PSAD Quick Fix

I like psad. I use it often and I find the email reports really handy.

Here is an issue I faced in Ubuntu and the solution:

Instead of the reports I received an email with the following contents:

[-] You may just need to add a default logging rule to the /sbin/iptables
‘filter’ ‘INPUT’ chain on oxide-server.  For more information,
see the file “FW_HELP” in the psad sources directory or visit:

http://www.cipherdyne.org/psad/docs/fwconfig.html

[-] You may just need to add a default logging rule to the /sbin/ip6tables
‘filter’ ‘INPUT’ chain on oxide-server.  For more information,
see the file “FW_HELP” in the psad sources directory or visit:

http://www.cipherdyne.org/psad/docs/fwconfig.html

 

I found on the web several people with the same problem, so here is what worked for me:

  1. Enable ufw logging. Type in console as root: ufw logging on
  2. Type as root:
    iptables -A INPUT -j LOG
    iptables -A FORWARD -j LOG
    ip6tables -A INPUT -j LOG
    ip6tables -A FORWARD -j LOG
  3. Open /etc/ufw/before.rules and type before the COMMIT directive:
    -A INPUT -j LOG
    -A FORWARD -j LOG
  4. Open /etc/ufw/before6.rules and type before the COMMIT directive:
    -A INPUT -j LOG
    -A FORWARD -j LOG
  5. Restart ufw by typing as root:
    ufw disable
    ufw enable
  6. Test if it worked:
    psad –fw-analyze

I know that some parts appear to do very similar things but for a strange reason it worked only after the exact above procedure.

Hope it helps!
Vasilis

 

 

SWikipedia: S (named ess spelled ‘es’- in compound words; plural esses, forms/script: ) is the nineteenth (19th) letter in the ISO basic Latin alphabet.

Firefox 4.0 ubuntu installation [part 2]

In a previous post, I shared some terminal commands in order to install firefox 4 in ubuntu.

The problem is that when the stable version was out and I tried to update my current installation the version remained “pre xxx” and the title bar said “Minefield”.
So, I figured out how to get rid of it and install the latest and stable version…

STEP #1
Download the latest stable version from the official downlad page:
www.mozilla.com/firefox/
in tar.bz2 format.

STEP #2
Open a terminal window and go to the downloaded file directory.
for example: cd ~/downloads/
Then extract the archive: tar xjf firefox-4.0.tar.bz2

STEP #3
Remove the previous firefox installation:
sudo rm -r /opt/firefox
(don’t worry if this step fails)

STEP #4
Move the extracted firefox folder:
sudo mv firefox /opt/firefox

STEP #5
“Backup” the old Firefox launcher:
sudo mv /usr/bin/firefox /usr/bin/firefox-old

Create a symbolic link pointing to the new firefox installation:
sudo ln -s /opt/firefox/firefox /usr/bin/firefox

The icons/shortcuts usually don’t need update, but if they do point them to “firefox”.

STEP #6
Open firefox and go to the “About” selection under the “Help” menu, to check the running version.

 


Firefox 4 on ubuntu [part 1]

I have just installed the new firefox 4 on ubuntu and here is a quick guide to do so.

Open a new terminal window and copy-paste the following:}

sudo add-apt-repository ppa:ubuntu-mozilla-daily/ppa
sudo apt-get update  (this might take some time)
sudo apt-get install firefox-4.0

And you are ready to use firefox 4.

In my computer, I had to update manually some shortcuts, but this is not needed normally.
Bonus: You can test your new browser’s performance with Acid3. It scores really high, but to be honest the main reason I keep using firefox is the plugins.