daily system administration

Linux, Debian and the rest
any questions or comments: Tom@d7031.de

Monitoring Cisco Nexus 7000 switches with Icinga/Nagios

Cisco uses an different MIB to make information over SNMP for there NEXUS hardware available.tcomm.es has provided some plugins to monitor such switches espacially for the FRU-hardware. The original website is not available at the moment, so I’ve made a copy at github. All configuration examples are tested with a Nexus7000 C7010 and software version 5.1(2) and6.2(8). The following chapters shows some configurations: checking the power supplies I use the check_cisco_fru_ps-Plugin. Read more →

Configure Mozilla Firefox and Thunderbird company-wide

Mozilla Firefox and Thunderbird are wonderful tools to browse through the www and sending E-Mails. There are some ways to configure this both programms permantly(firefox.cfg|thunderbird.cfg) or temporarily (user.js). One way to deploy the setting company-wide is to use mozptch. But I use another way. With mozptch you have always change your GPO-Template to reflect new config-variables. I think it’s better to have plain text files and distribute this files if needed and changed. Read more →

CUPS and Samba as Printserver in a Samba/LDAP-Domain with Debian Lenny

This short howto is an update from my old howto and describes a Samba-(3.0.30-2) and CUPSYS-(1.3.7-5) configuration for a print server as member of a Samba-Domain with (Open)LDAP backend. This example is based on a debian lenny system (current in testing). First setting up the ldap-connections to get all users and groups. I use an OpenLDAP server (2.3.30-5+etch1) as backend for the samba PDC/BDC (3.0.24-6etch10). Install the necessary packages apt-get install libnss-ldap cupsys with there dependencies and edit the configs: Read more →

Deploy default User Settings for the first OpenOffice.org start (v3)

n version one and two of Openoffice.org you have to edit the Setup.xcu to set up user defaults and hide the registration wizard. This works mostly. In version three you can modify some files likesetup-calc.xcu or do some things like unopkg add –shared DisableFirstStartWzd.oxt on the local installation. But, I’ve a network with 200 machines to administrate. My way is to create default-user-settings for the first user-start once and deploy it with MS GPO’s in a MS Active Directory or with Nitrobit-GPO’s in a Samba/OpenLDAP-Domain. Read more →

Postfix and TLS (outdated)

After securing your mail-relaying between postfix as smarthost and postfix on a road-warrior, the next step to do is securing the transport way. E-Mail is clear text! Every (machine) can read it! Think about a open WLAN. The hotspot-provider can read your Mail! I’ve tested this setup with Debian Etch and Lenny (Postfix 2.3.8-2+etch1 and .2.5.5-1.1). First you need certificates. In this setup, these are used to encrypt the mail-transport NOT for authentication. Read more →