Click here for "Error Codes for Commercial Air Conditioners".(Japanese Version)

nuy

Debian10.13_en

Debian10.13 ; SNORT2 , Tripwire

1.SNORT2 Install Snort is an open source network intrusion d...
Debian10.13_en

Debian10.13 ; logwatch ,Disk Usage Check Script

1. Disk Usage Check Script 1.1 Script Creation Contents of d...
Debian10.13_en

Debian10.13 ; System Backup and Restore

1. System Backup 1.1 Backup under /var/www/html ① Create bac...
Debian10.13_en

Debian10.13 ; NTP ,FTP Server

1. Install an NTP server that provides time synchronization ...
Rocky Linux9.1_en

RockyLinux 9.1 ; System Backup and Restore

1.Website data backup 1-1.Backup under /var/www/html ①Create backup script file # cd /var/www/system # vi backup_html.sh 2.MySQL database backup ①Create backup script file # cd /var/www/system # vi db_my_backup.sh 3.Restore backup files under html ①Store HTML backup files in "/ (root)" directory 4.Restore Mysql backup file ①Save the database backup file to any directory and (In the example, the directory is "/var/www/backup/db_bak".)Extracting data
Rocky Linux9.1_en

RockyLinux 9.1 ; Suricata , Tripwire , Chkrootkit

Suricata SURICATA IDS/IPS is an open source IDS that monitors communications on the network and detects suspicious traffic. The basic mechanism is signature-based, so it can detect predefined unauthorized communications. Suricata is also characterized by its ability to provide protection as well as detection. 1.advance preparation ①Activate the EPEL Repository # dnf -y install epel-release Tripwire 1.Download and installation # cd /usr/local/src # wget https://rpmfind.net/linux/epel/9/Everything/x86_64/Packages/t/tripwire-2.4.3.7-13.el9.x86_64.rpm # rpm -Uvh tripwire-2.4.3.7-13.el9.x86_64.rpm Chkrootkit ①Download and install chkrootkit # cd /usr/local/src # wget https://launchpad.net/chkrootkit/main/0.55/+download/chkrootkit-0.55.tar.gz # tar xvf chkrootkit-0.55.tar.gz
Rocky Linux9.1_en

RockyLinux 9.1 ; MySQL8 , WordPress Install

Mysql8 Install # dnf -y install mysql-server charset.cnf   Create a new one with the following contents WordPress Install 1. Create database for Word Press As an example, assume database [wp_db] database user [wp_user] password [?W123456]
Rocky Linux9.1_en

RockyLinux 9.1 ; SSL Certificate Acquisition( Let's Encrypt ) , Apache SSL , Mail SSL/TLS

1.Obtain an SSL certificate ( Let's Encrypt ) Install the latest open ssl # dnf install openssl-devel 1.1 advance preparation 1.Package management system Snappy installed Since the SSL certificate issuing tool "certbot" of Let's Encrypt is recommended to be installed using "snap" after 2021, install Snapd first.(Can also be installed the traditional way with dnf or yum) 2. Converting Apache to https Install the following just in case # dnf -y install mod_ssl 3. SSL/TLS (Let's Encrypt) settings on the mail server 3.1 Obtaining a certificate for the mail server Obtain a certificate for the mail server, but it cannot be obtained in the same way as above, so the following with the "--standalone" option fails.
Rocky Linux9.1_en

RockyLinux 9.1 ; FTP Server , Samba File Server

1.FTP Server 1. 1 Vsftpd Install # dnf -y install vsftpd 1.2 Configure Vsftpd Save the unedited vsftpd.conf with .bak 3. File server installation with Samba Build a file server with access rights that requires user authentication with Samba. Installation Procedure ①Create shared folders with access rights that require user authentication ②Accessible group creation ③Creation of users belonging to accessible groups ④Configuration File Editing
Rocky Linux9.1_en

RockyLinux 9.1 ; SSH、firewalld 、NTP Server

1.Remote connection via SSH SSH is a service for connecting remotely to a server and is basically running immediately after the OS is installed, but the default settings are somewhat insecure. Here we will configure the default settings to increase the security of ssh connections. 1.1 Edit SSH service configuration file Modify the configuration file to change the SSH service settings. The SSH service configuration file is "/etc/ssh/sshd_config". 2.Firewall (firewalld) settings The firewall is set to firewalld as default and is enabled during OS installation. 4.NTP Server Build an NTP server to synchronize the server time with Japan Standard Time
Almalinux9.1_en

AlmaLinux 9.1 ; System Backup and Restore

1.Website data backup 1-1.Backup under /var/www/html ①Create backup script file # cd /var/www/system # vi backup_html.sh 2.MySQL database backup ①Create backup script file # cd /var/www/system # vi db_my_backup.sh 3.Restore backup files under html ①Store HTML backup files in "/ (root)" directory 4.Restore Mysql backup file ①Save the database backup file to any directory and (In the example, the directory is "/var/www/backup/db_bak".)Extracting data
Almalinux9.1_en

AlmaLinux 9.1 ; SSH、Firewalld、NTP Server

1.SSH remote connection SSH is a service for connecting remotely to a server and is basically running immediately after the OS is installed, but the default settings are somewhat insecure. Here we will configure the default settings to increase the security of ssh connections. 1.1 SSH service configuration file changes 2.How to set up a firewall (firewalld) In AlmaLinux, the firewall is set to firewalld by default and is enabled during OS installation. 4.NTP Server Build an NTP server to synchronize the server time with Japan Standard Time
Almalinux9.1_en

AlmaLinux 9.1 ; Authenticated SSH connection with key pair

SSH connection with authentication using public key cryptography Create public and private key pairs Create a public/private key pair for a user connecting to a Linux server using OpenSSH. Use ssh-keygen to create the key pair. The creation of a public/private key pair must be done as a user with remote login privileges. If you do not specify the destination and file name, id_ed25519 and id_eed25519.pub will be created in /home/(user name)/.ssh/. On the way, enter the password for the key.
Almalinux9.1_en

AlmaLinux 9.1 ; FTP Server , Samba FileServer Install

1.FTP Server 1. 1 Vsftpd Install # dnf -y install vsftpd 1.2 Configure Vsftpd Save the unedited vsftpd.conf with .bak 3. File server installation with Samba Build a file server with access rights that requires user authentication with Samba. Installation Procedure ①Create shared folders with access rights that require user authentication ②Accessible group creation ③Creation of users belonging to accessible groups ④Configuration File Editing
Almalinux9.1_en

AlmaLinux 9.1 ; SSL Certificate Acquisition( Let's Encrypt ) , Apache SSL , Mail SSL/TLS

1.Obtain an SSL certificate ( Let's Encrypt ) Install the latest open ssl # dnf install openssl-devel 1.1 advance preparation 1.Package management system Snappy installed Since the SSL certificate issuing tool "certbot" of Let's Encrypt is recommended to be installed using "snap" after 2021, install Snapd first.(Can also be installed the traditional way with dnf or yum) 2. Converting Apache to https Install the following just in case # dnf -y install mod_ssl 3. SSL/TLS (Let's Encrypt) settings on the mail server 3.1 Obtaining a certificate for the mail server Obtain a certificate for the mail server, but it cannot be obtained in the same way as above, so the following with the "--standalone" option fails.