<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title>Diegolima.org: Vivendo Livre - Latest Comments</title><link>http://diegolima.disqus.com/</link><description></description><atom:link href="https://diegolima.disqus.com/comments.rss" rel="self"></atom:link><language>en</language><lastBuildDate>Tue, 04 Aug 2015 04:24:12 -0000</lastBuildDate><item><title>Re: Iptables Load Balancing in a Nutshell</title><link>http://www.diegolima.org/wordpress/?p=36#comment-2173311444</link><description>&lt;p&gt;Dear Diego. Really nice tutorial. How can we fix problems with sip calls and https sessions? we need to have loadbalance/failover per session and not per packet. how do we alter this config?&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">atux atux</dc:creator><pubDate>Tue, 04 Aug 2015 04:24:12 -0000</pubDate></item><item><title>Re: Intercepting network traffic (almost) invisibly</title><link>http://www.diegolima.org/wordpress/?p=37#comment-1755003371</link><description>&lt;p&gt;Um, Am @ work and decided to check-out some hacking tuts&lt;/p&gt;&lt;p&gt;Although I can't try the tutorial @ work unless i get home ...&lt;br&gt;I must say from the outlook of things and the explanation of the article ....&lt;br&gt;I think this is a pretty nice and awesome tutorial.&lt;/p&gt;&lt;p&gt;You Rock!!!!!!!!!!!&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Tersy Daisy</dc:creator><pubDate>Mon, 22 Dec 2014 14:32:09 -0000</pubDate></item><item><title>Re: Iptables Load Balancing in a Nutshell</title><link>http://www.diegolima.org/wordpress/?p=36#comment-1559596207</link><description>&lt;p&gt;we have done load balancing on two different links in exactly same way. However, we have observed an issue when particularly a SYN packet is lost or dropped in the network ( ISP1 ). In that case the user will retry sending it and our router ( load balance ) would send it to other link ( ISP2 ) according to iptables rule considering SYN as NEW connection state. However, the masquarade target still uses source IP as the IP address of ISP1. So 2nd time packet goes on ISP2 but with the source IP of ISP1. our ISP2 appears to be dropping these packets.&lt;/p&gt;&lt;p&gt;Has anyone observed this issue, can anyone suggest the solution ?&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Ravi Trivedi</dc:creator><pubDate>Tue, 26 Aug 2014 05:02:54 -0000</pubDate></item><item><title>Re: OpenLDAP: Migrando de slapd.conf para cn=config</title><link>http://www.diegolima.org/wordpress/?p=210#comment-1490129626</link><description>&lt;p&gt;Ao tentar baixar o arquivo de exemplo:&lt;br&gt;The requested URL /wordpress/wp-content/uploads/2010/10/slapd.conf was not found on this server.&lt;/p&gt;&lt;p&gt;Att,&lt;br&gt;Fábio Lima&lt;br&gt;Arripio&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Arripio Arripia</dc:creator><pubDate>Thu, 17 Jul 2014 13:38:13 -0000</pubDate></item><item><title>Re: Balanceamento de Links Fácil com IPTables</title><link>http://www.diegolima.org/wordpress/?p=38#comment-1142828991</link><description>&lt;p&gt;os parâmetros "–state", "–mode", "–probability" e "–set-mark" devem ser digitados com dois traços&lt;br&gt;quando se tenta copiar e colar da internet, esses dois traços se tornam 1 traço mais largo, portanto digite ao invés de copiar&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">William</dc:creator><pubDate>Thu, 28 Nov 2013 05:33:52 -0000</pubDate></item><item><title>Re: Balanceamento de Links Fácil com IPTables</title><link>http://www.diegolima.org/wordpress/?p=38#comment-1141433098</link><description>&lt;p&gt;No ubuntu 10.04 não rolou o comando&lt;/p&gt;&lt;p&gt;iptables -t mangle -A PREROUTING -m state –state new -m statistic –mode random –probability 0,5 -j MARK –set-mark 1&lt;/p&gt;&lt;p&gt;alguma dica ?&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">José Rodrigues Filho</dc:creator><pubDate>Wed, 27 Nov 2013 11:43:17 -0000</pubDate></item><item><title>Re: Zabbix Agent for DD-WRT-based Devices</title><link>http://www.diegolima.org/wordpress/?p=407#comment-1037823729</link><description>&lt;p&gt;Thank you very much for your work. I have just installed zabbix agent in my Tomato router, and it seems to work great. &lt;br&gt;It would be fantastic if you could port zabbix-server too.&lt;/p&gt;&lt;p&gt;Very good job!!&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Juanca</dc:creator><pubDate>Tue, 10 Sep 2013 20:45:32 -0000</pubDate></item><item><title>Re: Ingressando uma máquina Ubuntu Linux em um Domínio Windows AD</title><link>http://www.diegolima.org/wordpress/?p=106#comment-858971104</link><description>&lt;p&gt;boa tarde Diego, fiz todos os passos de seu tutorial. Deu tudo certe, porem quando tento me logar da a msg que a senha está errada. Você tem noção do que pode ser??&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">krosnell</dc:creator><pubDate>Wed, 10 Apr 2013 15:53:41 -0000</pubDate></item><item><title>Re: Script para tocar musicas com o PC Speaker</title><link>http://www.diegolima.org/wordpress/?p=11#comment-677856803</link><description>&lt;p&gt;link quebrado&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Miqueias</dc:creator><pubDate>Tue, 09 Oct 2012 20:13:25 -0000</pubDate></item><item><title>Re: Balanceamento de Links Fácil com IPTables</title><link>http://www.diegolima.org/wordpress/?p=38#comment-633140030</link><description>&lt;p&gt;Realmente muito bom o artigo. Gostaria de saber se essa solução traz também um failover, caso negativo, saberia como implementar o loadbalance+failover?&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">William</dc:creator><pubDate>Wed, 29 Aug 2012 10:11:14 -0000</pubDate></item><item><title>Re: OpenLDAP: Trabalhando com o cn=config</title><link>http://www.diegolima.org/wordpress/?p=271#comment-590655385</link><description>&lt;p&gt;Diego,&lt;/p&gt;&lt;p&gt;Obrigado compartilhar seu conhecimento&lt;/p&gt;&lt;p&gt;Robinson   &lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Robinson A Barbosa</dc:creator><pubDate>Tue, 17 Jul 2012 20:51:17 -0000</pubDate></item><item><title>Re: Iptables Load Balancing in a Nutshell</title><link>http://www.diegolima.org/wordpress/?p=36#comment-582631698</link><description>&lt;p&gt;what is the best way to prevent https packets from getting load-balanced? ie., create sticky sesssions(for a particular WAN/iptable) for https traffic only?&lt;/p&gt;&lt;p&gt;thanks&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">rsriram</dc:creator><pubDate>Mon, 09 Jul 2012 20:02:42 -0000</pubDate></item><item><title>Re: OpenLDAP: Migrando de slapd.conf para cn=config</title><link>http://www.diegolima.org/wordpress/?p=210#comment-563589381</link><description>&lt;p&gt;Olá Diego, no final do seu tutorial nós geramos a configuração no diretório /etc/ldap/slapd.d porém depois movemos ele para o /tmp? É isso mesmo? Não ficou muito claro... Quando deixamos o SLAPD_CONF= vazio, ele busca os ldifs do cn=config no /etc/ldap/sladp.d ou no /tmp? Abraços!&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Paulo</dc:creator><pubDate>Thu, 21 Jun 2012 08:43:36 -0000</pubDate></item><item><title>Re: OpenLDAP: Trabalhando com o cn=config</title><link>http://www.diegolima.org/wordpress/?p=271#comment-529740219</link><description>&lt;p&gt;A configuração funcionou, mas eu não consigo autenticar com cn=admin,cn=config. Peguei o seu arquivo slapd.conf de exemplo e alterei. No entanto, mantive a parte onde tem cn=admin, cn=config. Essa parte precisa ser alterada para alguma configuração específica? &lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Willthebill</dc:creator><pubDate>Tue, 15 May 2012 19:23:26 -0000</pubDate></item><item><title>Re: OpenLDAP: Trabalhando com o cn=config</title><link>http://www.diegolima.org/wordpress/?p=271#comment-514282021</link><description>&lt;p&gt; Muito bom!&lt;br&gt;Diego, como fazer para o samba autenticar no kerberos com ldap?&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Lima</dc:creator><pubDate>Mon, 30 Apr 2012 13:12:11 -0000</pubDate></item><item><title>Re: Iptables Load Balancing in a Nutshell</title><link>http://www.diegolima.org/wordpress/?p=36#comment-461472725</link><description>&lt;p&gt;What an Excellent article!&lt;br&gt;I've been looking for it for ages. VERY well explained. Congrats!  &lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Lorenzo</dc:creator><pubDate>Sat, 10 Mar 2012 10:45:52 -0000</pubDate></item><item><title>Re: Iptables Load Balancing in a Nutshell</title><link>http://www.diegolima.org/wordpress/?p=36#comment-446317999</link><description>&lt;p&gt;Hi Diego,&lt;/p&gt;&lt;p&gt;I am trying to use this solution as for a server that is load balancing the connections for a internal LAN. I have three interfaces (one for the internal LAN and the others for the ISPs). What I can get from your solution is how to NAT the internal LAN... Thanks in advance&lt;/p&gt;&lt;p&gt;Regards, Álvaro&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Alvaro</dc:creator><pubDate>Wed, 28 Dec 2011 12:28:52 -0000</pubDate></item><item><title>Re: Ingressando uma máquina Ubuntu Linux em um Domínio Windows AD</title><link>http://www.diegolima.org/wordpress/?p=106#comment-446317426</link><description>&lt;p&gt;Prezado Diego,&lt;/p&gt;&lt;p&gt;Estou tentando ingressar um máquina freebsd em um domínio com Windows Server 2008.&lt;br&gt;Não tenho acesso para instalar o likewise-open, pois é um servidor gerenciado por terceiro, mas ao executar o comando abaixo sempre retorna o mesmo erro.&lt;/p&gt;&lt;p&gt;#net ads join -U administrator -S &lt;a href="http://dc01.empresa.com" rel="nofollow noopener" target="_blank" title="dc01.empresa.com"&gt;dc01.empresa.com&lt;/a&gt;&lt;br&gt;#Enter administrator's password:&lt;br&gt;#Failed to join domain: failed to lookup DC info for domain 'EMPRESA.COM' over rpc: Access denied&lt;/p&gt;&lt;p&gt;Já desativei o firewall local do Windows Server, mas o erro continua.&lt;br&gt;Segundo a empresa que cuida da máquina freebsd está tudo ok e que o problema é no servidor de AD.&lt;br&gt;Mas não estou conseguindo identificar o que está bloqueado este processo.&lt;br&gt;Poderia me dar alguma dica por gentileza?&lt;/p&gt;&lt;p&gt;Obrigado,&lt;br&gt;Julio.&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Julio</dc:creator><pubDate>Tue, 13 Dec 2011 18:49:38 -0000</pubDate></item><item><title>Re: OpenLDAP: Migrando de slapd.conf para cn=config</title><link>http://www.diegolima.org/wordpress/?p=210#comment-446318060</link><description>&lt;p&gt;A maioria das informações foi escrita com base na documentação oficial do OpenLDAP 2.4, disponível em &lt;a href="http://www.openldap.org/doc/admin24" rel="nofollow noopener" target="_blank" title="www.openldap.org/doc/admin24"&gt;www.openldap.org/doc/admin24&lt;/a&gt;&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Diego Lima</dc:creator><pubDate>Sat, 05 Nov 2011 23:19:02 -0000</pubDate></item><item><title>Re: OpenLDAP: Migrando de slapd.conf para cn=config</title><link>http://www.diegolima.org/wordpress/?p=210#comment-446318032</link><description>&lt;p&gt;Informacoes maravilhosas aqui! ha um hyperlink da fonte eu posso ir para buscar mais informacoes?&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">MD</dc:creator><pubDate>Fri, 04 Nov 2011 21:00:09 -0000</pubDate></item><item><title>Re: OpenLDAP: Trabalhando com o cn=config</title><link>http://www.diegolima.org/wordpress/?p=271#comment-446317594</link><description>&lt;p&gt;Parabéns Diego!&lt;br&gt;Seu artigo é excelente, muito detalhado, pratico e didático.&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Márcio Pessoa</dc:creator><pubDate>Fri, 04 Nov 2011 16:40:15 -0000</pubDate></item><item><title>Re: Linux Personal Firewall Project</title><link>http://www.diegolima.org/wordpress/?p=42#comment-446317968</link><description>&lt;p&gt;Hello Diego,&lt;br&gt;It's been 3 years now since you started your personal firewall project.&lt;br&gt;I created my own personal firewall which informs a user whenever an app tries to make a connection&lt;br&gt;&lt;a href="https://sourceforge.net/projects/leopardflower/" rel="nofollow noopener" target="_blank" title="https://sourceforge.net/projects/leopardflower/"&gt;https://sourceforge.net/pro...&lt;/a&gt;&lt;br&gt;I would like to hear if you are interested to join forces.&lt;br&gt;Cheers.&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">abirvalg</dc:creator><pubDate>Tue, 18 Oct 2011 21:44:34 -0000</pubDate></item><item><title>Re: OpenLDAP: Migrando de slapd.conf para cn=config</title><link>http://www.diegolima.org/wordpress/?p=210#comment-446318069</link><description>&lt;p&gt;Eu estava pensando neste topico na semana passada. Vendo este artigo vou pesquisar mais sobre&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Alfeu Kboing</dc:creator><pubDate>Sun, 16 Oct 2011 00:19:36 -0000</pubDate></item><item><title>Re: Iptables Load Balancing in a Nutshell</title><link>http://www.diegolima.org/wordpress/?p=36#comment-446318044</link><description>&lt;p&gt;Hello Max,&lt;/p&gt;&lt;p&gt;If both sides are public IP addresses and you have your routing correctly set up then yes, you can skip the SNAT. It is there to assure that packets will go out with the correct public address and you'll get responses from servers in the way you expect to receive. However keep in mind that this will depend a lot on how your links are set up regarding routing (packets that go out on one link must be able to make their way back - always).&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Diego Lima</dc:creator><pubDate>Wed, 05 Oct 2011 14:29:30 -0000</pubDate></item><item><title>Re: Iptables Load Balancing in a Nutshell</title><link>http://www.diegolima.org/wordpress/?p=36#comment-446318010</link><description>&lt;p&gt;Thanks. This is a truely wonderful article for iptable based LLB.&lt;br&gt;However I have two questions:&lt;/p&gt;&lt;p&gt;1. Can I skip SNAT part if both sides are public ip address? If I did, will I have any issues?&lt;/p&gt;&lt;p&gt;# iptables -t nat -A POSTROUTING -o $LINK1_WAN_INTERFACE -j SNAT –to $LINK1_WAN_IP&lt;br&gt;# iptables -t nat -A POSTROUTING -o $LINK2_WAN_INTERFACE -j SNAT –to $LINK2_WAN_IP&lt;/p&gt;&lt;p&gt;2. Have anyone tested out performance? How high throughput can this iptable-based LLB achieve?&lt;/p&gt;</description><dc:creator xmlns:dc="http://purl.org/dc/elements/1.1/">Max He</dc:creator><pubDate>Wed, 05 Oct 2011 04:09:47 -0000</pubDate></item></channel></rss>