Showing posts with label perfect. Show all posts
Showing posts with label perfect. Show all posts

Saturday, July 2, 2011

Script For Automatically Setting Up A Perfect Server On OpenSUSE 11.4 And Installing ISPConfig 3

, and in the end it also installs ISPConfig 3.

Please note: do not execute this script on an already working server, because this script may overwrite configuration files and break the running system. It is only meant to be used on a fresh installation of OpenSUSE 11.4.

If you are installing on OpenSUSE 11.2 or OpenSUSE 11.3, please be sure to use another version of this script (also available on www.howtoforge.com).

There are few things missing from the tutorial, as I have found it. I have made a script, based on the tutorial, that prepares a system, and which contains several steps that, if not done, leave the system unfinished in some way.

Notable additions:

fail2ban configurationSuSEfirewall2 enabled
Pure-ftpd configuration change (allow renames, change passive ports and permissions) Postfix certificate generation Apache SSL certificate generation, and switching ISPConfig to HTTPSFix of NameVirtualHost apache config with OpenSUSE (important for Apache to recognize multiple domains from ISPConfig) Setup of rdiff-backup with cron Fixed dovecot configuration to enable SSL and support courier-compatibilityFixed pam_mysql to work on 64-bit systemsFixed amavis to find clamd socketInstalled eAcceleratorFixed apache custom errors pathInstall and configure awstatsConfigure apache and awstats to use mod_logio for correct bandwidth measurement

The script is imperfect in the fact that it requires manual entries twice - when mysql_secure_install is run, and when ispconfig_update_svn is run. (I use svn, because ISPConfig latest SVN looks much nicer, but one can type stable as well - on production systems, you should use stable!)

Do

zypper update

and

reboot

before running this script.

Also better change host name (file HOSTNAME) manually with yast2 before running this script, so that OpenSUSE will put a proper name into Postfix configuration.

This script requires two manual actions:

First - when mysql_secure_install is run.
Second - for ISPConfig3 update, if SVN update is chosen, one may need to say 'y' to enable SSL, while for all other options - one can choose a default value by just pressing ENTER.

You should change the following variables in the script before you run it:

THIS_PLATFORM: Either x86_64 or i586.

MYSQLROOTPASS: Please change MYSQLROOTPASS, and be sure to enter it verbatim during the installation of mysql_secure_install.

MY_HOSTNAME, MY_DOMAIN: Change this to your server name. By default it's configured to server1.mydomain.com. If your web site hosts a complete domain, such as domain.com, still leave something for MY_HOSTNAME. server1 or host is a good name.

ISPCONFIG_TAR_GZ: Make sure that ISPCONFIG_TAR_GZ holds the latest available ISPConfig 3 version. Beware, that automatic piping to answer all the questions is set up to work with ISPConfig 3.0.3.3, and you may need to change that part of the script, if ISPConfig is of a later version.

Save the script on your server (e.g. /root/opensuse_ispconfig3.sh):

vi /root/opensuse_ispconfig3.sh

#!/bin/sh

# OpenSUSE 11.4 Perfect Server ISPConfig script by George Yohng (georgesc#oss3d.com)
# Script Version 2.1

# Do zypper update and reboot before running this script

# Also better change host name manually with yast2 before running this script.

# This script requires two manual actions.

# First - when mysql_secure_install is running. One should type a new mysql password, the same as here
# Second - for ISPConfig3 update. One should type 'svn' when the update type is asked
# For both of scripts, all other options are default, one can just press ENTER.


# Also, please change MYSQLROOTPASS below, and be sure to enter it verbatim
# during the installation of mysql_secure_install.

# Important: When setting an MX entry, point it to mail.yourdomain.com rather than
# just to yourdomain.com, and create a CNAME entry for mail. Otherwise it doesn't
# seem to work somehow.

# Platform is x86_64 or i586

THIS_PLATFORM

View the Original article

The Perfect Desktop - Fedora 15 i686 (GNOME)

(JavaScript must be enabled in your browser to view the large image as an image overlay.)

The Fedora Installer starts. Select your keyboard layout:



View the Original article

The Perfect Server - Fedora 15 x86_64 [ISPConfig 2]

ISPConfig3
- mod_speling is
not working ...NewsTutorials: GameTree Linux - Part 1 - Installation & ConfigurationChrome 12, What's new?Spice-Gtk-0.6 on Ubuntu 11.10 (Oneiric) after Libvirt upgrade up to 0.9.1Other Features Coming Up For Fedora 16Clouds Eventually BurstClouds Eventually BurstWeekend Project: Find Hidden Treasures in XFCE 4.8Cthulhu Lives in The Blog CaveGetting a system monitor applet back in Gnome 3Meet Thomas Thwaites, Desktop Summit Keynote SpeakermoreRecent commentsThank you very much. Very
15 hours 17 min agoRe: Re: Enabling the root account is not neccessary and not reco
17 hours 24 min agoUpgrade worked like a charm, thanks.
19 hours 11 min agoAddress family not supported by protocol - solution
21 hours 56 min agoRe: Yeah, Right
23 hours 41 min agoIt's a great tutorial , help
1 day 2 hours agoRe: Re: Migrating from windows to linux
1 day 12 hours agoI've got a problem with:
1 day 17 hours agoFAM package
1 day 17 hours agoRe: IMAP
1 day 18 hours agoNewsletterSubscribe to HowtoForge Newsletter
and stay informed about our latest HOWTOs and projects.(To unsubscribe from our newsletter, visit this link.)

View the Original article

Sunday, May 29, 2011

The Perfect Desktop - Kubuntu 11.04

(JavaScript must be enabled in your browser to view the large image as an image overlay.)

Select your language and click on the Install Kubuntu button to start the installation:



View the Original article

The Perfect Desktop - Ubuntu Studio 11.04

(JavaScript must be enabled in your browser to view the large image as an image overlay.)

Then select Install Ubuntu Studio:



View the Original article

Zentyal As A Gateway: The Perfect Setup

(JavaScript must be enabled in your browser to view the large image as an image overlay.)

 

2. Installation

Zentyal runs on top of Ubuntu Server so it will work on the same hardware. You can take a look at the Ubuntu-certified hardware page for more information. There are two ways to install Zentyal:

Using Zentyal installer that you can download from the project website. This is the recommended choice, it includes all package dependencies for offline install and also makes some custom configuration. Install on top of a working Ubuntu Server, you can find detailed info and URL for the repository in the Zentyal Installation Guide.



View the Original article

The Perfect Server - Fedora 15 x86_64 [ISPConfig 3]


mod_rewriteautomatic domain
expiry reminder to
clientsNewsBodhi Linux 1.1.0 ReviewUbuntu Ocelot takes shapeThe Perfect Server - Fedora 15 x86_64 ISPConfig 3HTC pays Microsoft $5 for every Android phoneX.Org Server 1.10.2 Brings A Bunch Of Bug-FixesXMonad: a tiling window managerMacPup 520 : Sleek, Lightweight enlightenment based derivative of Puppy Linux with Interface inspired by Mac Os XThe Underlying KWin Improvements In KDE 4.7Real-Time ReadyCanonical and Ubuntu Needs to Settle DownmoreRecent commentsRe: I'm missing something, at the end of step 2
6 hours 18 min agoRe: Re: Re: Re: Typo3 ImageMagic / GraphicMagic problem
15 hours 25 min agoAwsome
17 hours 29 sec agoRe: Shell
17 hours 4 min agoRe: Works better with Gridlock
18 hours 21 min agoRe: from where can i download
1 day 8 hours agoGood chance to get data off partitions with errors
1 day 8 hours agoRe: Re: Re: Re: Re: Re: Re: about this work
1 day 13 hours agobusy
1 day 14 hours agoApache2 error after installing ISPConfig3
1 day 17 hours agoNewsletterSubscribe to HowtoForge Newsletter
and stay informed about our latest HOWTOs and projects.(To unsubscribe from our newsletter, visit this link.)

View the Original article

The Perfect Desktop - Linux Mint 11 (Katya)

The system boots and starts a desktop that is run entirely in the RAM of your system (the Linux Mint installation DVD is also a Live-DVD) without changing anything on your hard disk. This has the advantage that you can test how Linux Mint works on your hardware before you finally install it.

This is how the Linux Mint desktop looks. Double-click the Install Linux Mint icon on the desktop to start the installation to the hard drive:



View the Original article

Thursday, April 7, 2011

Extending Perfect Server - Debian Squeeze [ISPConfig 3]


 


The following tutorial will extend the "Perfect Server.... " for ISPConfig 3 with BIND & Courier installed in Debian Squeeze. It explains how to change default ports (ssh, ispconfig, webmin), how to install some useful applications (webmin, roundcube, atop, htop, multitail, tiger etc), how to update awstats periodically (more than once a day) or whenever you want, how to create clients' data backups (periodically) accessible under their folder and finally it explains how to tweak your system for performance (mysqltuner, tuning-primer) or security (custom firewall rules, (D)Dos Deflate, fail2ban modified).


This tutorial works perfect for me, but I can not guarantee that it will work for you.


In specific this tutorial explains how to:

install Webmin and change it's port to 50000change the default port for ISPConfig from 8080 to 50443install Roundcube so as all users can access it over SSL (port 50443 -- as ISPConfig ) under /webmailextend fail2ban (for webmin, roundcube, ssh) and  apply a small patchinstall multitail and use a simple command to see all useful logschange the port 22 for SSH to 50022access phpmyadmin over SSL (port 50443 -- as ISPConfig ) under a different url than the default (e.g. /mydomaindb)install some useful apps/extensions to you server (htop, php-apc, iptraf, logwatch etc)update awstats manually or automatic whenever you wantimpove mysql settings using scripts like mysqltuner or tuning-primer that suggest which settings to tweak in your mysql installationharden you system (simple steps), by blocking specific --insistent-- IPs or networks, or/and by using custom rules to protect your server against simple ddos attacks, in companion with (D)Dos Deflate.create daily backup of clients' web folders and their databases in their folders, so as they will be able to download them

To follow this tutorial you have to read and apply the following:

- The Perfect Server - Debian Squeeze (Debian 6.0) With BIND & Courier [ISPConfig 3]

- If you want to access ISPconfig Panel and webmail through SSL I also assume that you followed the chapter 6.2 Enabling SSL For The ISPConfig Web Interface of The ISPConfig 3 manual or this post (This is only needed if you want to access the control panel AND the webmail interface through ssl on port 8080).


A note here: To NOT have problems after a future update do:

cp /etc/apache2/ssl/ispserver.crt /usr/local/ispconfig/interface/ssl/ispserver.crt
cp /etc/apache2/ssl/ispserver.key  /usr/local/ispconfig/interface/ssl/ispserver.key


and edit /etc/apache2/sites-enabled/000-ispconfig.vhost, removing the lines that you pasted following the manual, and uncommenting the default lines for SSL.

nano /etc/apache2/sites-enabled/000-ispconfig.vhost


The contents must look like:

[...]
# SSL Configuration

  SSLEngine On


  SSLCertificateFile /usr/local/ispconfig/interface/ssl/ispserver.crt
SSLCertificateKeyFile /usr/local/ispconfig/interface/ssl/ispserver.key
[...]


- If you followed the above, then I finally assume that you read the workaround about suExec and ISPConfig 3 in this post.


This how to, is a (major) updated version of  Easy RoundCube (Over SSL) And Webmin With fail2ban For ISPConfig 3 On Debian Squeeze with a lot more additions.


Before you proceed make sure that your server is functional, and you are satisfied with it.  If you follow this tutorial you will make a lot of changes, and this (by it's own) needs a lot of debugging in case of errors!

Please have in mind that if you install webmin you MUST be very careful in using it. You should not use webmin for editing settings of critical parts of ISPConfig (apache, postfix, imap, pop3, dns). Use it only in emergency cases or when you need to do things that DON'T interfere with ISPConfig (e.g. firewall, bootscripts, cron e.t.c)


To install webmin we must first install some dependencies:

apt-get install libapt-pkg-perl libauthen-pam-perl libio-pty-perl apt-show-versions


Download the latest webmin from http://www.webmin.com/download.html:

cd /tmp
wget http://prdownloads.sourceforge.net/webadmin/webmin_1.530_all.deb


and install it:

dpkg -i webmin_1.530_all.deb


Before changing a port to something else than the default, DON'T forget to add the port to your firewall. If you are using the defaults of ISPConfig, go to System -> Firewall and add the port you want (In this manual we will use 50000 for Webmin, 50443 for ISPConfig, 50022 for ssh). Save and DON'T remove old ports (8080, 10000, 22) until you are absolutely sure that the new ports are working.


To change the default port of webmin, edit the file /etc/webmin/miniserv.conf:

nano /etc/webmin/miniserv.conf


and change the Port=10000 and listen=10000 to Port=50000 and listen=50000. Restart webmin:

/etc/init.d/webmin restart


Visit https://www.example.com:50000 to install updates through webmin interface. You will have to accept the security warning, as the certificate of webmin is custom signed.


Before changing a port to something else than the default, DON'T forget to add the port to your firewall. If you are using the defaults of ISPConfig, go to System -> Firewall and add the port you want (In this manual we will use 50000 for Webmin, 50443 for ISPConfig, 50022 for ssh). Save and DON'T remove old ports (8080, 10000, 22) until you are absolutely sure that the new ports are working.


To change the default port of ISPConfig Control Panel (8080), to a different one (e.g. 50443):

nano /etc/apache2/sites-enabled/000-ispconfig.vhost


and make sure that all references to 8080 are changed to 50443. Mine looks like this (ONLY the first lines are showing):

[...]
Listen 50443
NameVirtualHost *:50443


[...]


Restart apache and access the control panel at https://www.example.com:50443:

/etc/init.d/apache2 restart

Extending Perfect Server - Debian Squeeze [ISPConfig 3] - Page 2

View the original article here


This post was made using the Auto Blogging Software from WebMagnates.org This line will not appear when posts are made after activating the software to full version.

Wednesday, April 6, 2011

The Perfect Desktop - OpenSUSE 11.4 (GNOME)

This tutorial shows how you can set up an OpenSUSE 11.4 desktop that is a full-fledged replacement for a Windows desktop, i.e. that has all the software that people need to do the things they do on their Windows desktops. The advantages are clear: you get a secure system without DRM restrictions that works even on old hardware, and the best thing is: all software comes free of charge.


I want to say first that this is not the only way of setting up such a system. There are many ways of achieving this goal but this is the way I take. I do not issue any guarantee that this will work for you!


To fully replace a Windows desktop, I want the OpenSUSE 11.4 desktop to have the following software installed:

The GIMP - free software replacement for Adobe Photoshop F-Spot - full-featured personal photo management application for the GNOME desktopGoogle Picasa - application for organizing and editing digital photosFirefoxOperaChromium - Google's open-source browser Flash Player 10 FileZilla- multithreaded FTP client Thunderbird - email and news clientEvolution - combines e-mail, calendar, address book, and task list management functionsTransmission BitTorrent ClientEmpathy - multi-platform instant messaging clientSkypeGoogle EarthXchat IRC - IRC client LibreOffice Writer - replacement for Microsoft Word LibreOffice Calc - replacement for Microsoft Excel Adobe ReaderGnuCash - double-entry book-keeping personal finance system, similar to Quicken Scribus - open source desktop publishing (DTP) applicationAmarok - audio player Audacity - free, open source, cross platform digital audio editorBanshee - audio player, can encode/decode various formats and synchronize music with Apple iPods MPlayer - media player (video/audio), supports WMA Rhythmbox Music Player - audio player, similar to Apple's iTunes, with support for iPods gtkPod - software similar to Apple's iTunes, supports iPod, iPod nano, iPod shuffle, iPod photo, and iPod miniXMMS - audio player similar to Winampdvd::rip - full featured DVD copy programSound Juicer CD Extractor - CD ripping tool, supports various audio codecsVLC Media Player - media player (video/audio)Helix PlayerTotem - media player (video/audio)Xine - media player, supports various formats; can play DVDs Brasero - CD/DVD burning programK3B - CD/DVD burning programMultimedia-CodecsBluefish - text editor, suitable for many programming and markup languagesKompozer - WYSIWYG HTML editor, similar to Macromedia Dreamweaver, but not as feature-rich (yet)Quanta Plus - web development environment, including a WYSIWYG editorVirtualBox - lets you run your old Windows desktop as a virtual machine under your Linux desktop, so you don't have to entirely abandon Windows TrueType fontsJavaRead/Write support for NTFS partitions

As you might have noticed, a few applications are redundant, for example there are two CD/DVD burning applications in my list (Brasero, K3B). If you know which one you like best, you obviously don't need to install the other applications, however if you like choice, then of course you can install both. The same goes for music players like Amarok, Banshee, Rhythmbox, XMMS or browsers (Firefox, Opera, Chromium).


I'm using the OpenSUSE 11.4 GNOME Live-CD in this tutorial to set up the system. You can download it from here: http://software.opensuse.org/114/en


I will use the username falko in this tutorial, and I will download all necessary files to falko's desktop which is equivalent to the directory /home/falko/Desktop. If you use another username (which you most probably do ;-)), please replace falko with your own username. So when I use a command like

cd /home/falko/Desktop


you must replace falko.


Download the OpenSUSE 11.4 GNOME Live-CD iso image, burn it onto a CD, and boot your computer from it:


Click to enlarge

Select openSUSE Live GNOME:


Click to enlarge

This is how the live desktop looks. Click on the Live Installer icon to start the installation:


Click to enlarge

The installer starts. Select your language and keyboard layout and click on Next:


Click to enlarge

Select your time zone:


Click to enlarge

On the partitioning screen, you can either customize the partitioning, or you accept the default partitioning (which is also available as LVM - select LVM Based if you'd like to use the default partitioning with LVM):


Click to enlarge

Create a user account for yourself. If you check Use this password for system administrator, your user password will also be the root password:


Click to enlarge

Before the actual installation begins, the installer displays a summary of your settings. If the settings are ok, click on the Install button:


Click to enlarge

Confirm that you want to begin the installation - the hard drive will be formatted:


Click to enlarge

An OpenSUSE 11.4 image with default settings is now being copied to the hard drive:


Click to enlarge

After the installation, the installer asks you to reboot the system. Click on Reboot Now - this will immediately reboot the computer:


Click to enlarge

Before the system boots up again, please remove the LiveCD from the CD drive.

The Perfect Desktop - OpenSUSE 11.4 (GNOME) - Page 2

View the original article here


This post was made using the Auto Blogging Software from WebMagnates.org This line will not appear when posts are made after activating the software to full version.

The Perfect Server - OpenSUSE 11.4 x86_64 [ISPConfig 2]

This is a detailed description about how to set up an OpenSUSE 11.4 server (x86_64) that offers all services needed by ISPs and hosters: Apache web server (SSL-capable), Postfix mail server with SMTP-AUTH and TLS, BIND DNS server, Proftpd FTP server, MySQL server, Dovecot POP3/IMAP, Quota, Firewall, etc. In the end you should have a system that works reliably, and if you like you can install the free webhosting control panel ISPConfig 2 (i.e., ISPConfig runs on it out of the box).


I will use the following software:

Web Server: Apache 2.2.17 with PHP 5.3.5, Ruby, and Python Database Server: MySQL 5.1.53Mail Server: PostfixDNS Server: BIND9FTP Server: proftpd POP3/IMAP: I will use Maildir format and therefore install Courier-POP3/Courier-IMAP.Webalizer for web site statistics

Please note that this setup does not work for ISPConfig 3! It is valid for ISPConfig 2 only!


I want to say first that this is not the only way of setting up such a system. There are many ways of achieving this goal but this is the way I take. I do not issue any guarantee that this will work for you!


To install such a system you will need the following:


In this tutorial I use the hostname server1.example.com with the IP address 192.168.0.100 and the gateway 192.168.0.1. These settings might differ for you, so you have to replace them where appropriate.


Boot from your OpenSUSE 11.4 DVD and select Installation:


Click to enlarge

Select your language, keyboard layout and accept the licence terms:


Click to enlarge

The installer analyzes your hardware and builds the software repository cache:


Click to enlarge

Select New Installation:


Click to enlarge

Select the region and timezone:


Click to enlarge

We select Other > Minimal Server Selection (Text Mode) here as we want to install a server without X-Window desktop. The X-Window system is not necessary to run the server and would slow down the system. We will do all administration tasks on the shell or through an SSH connection, e.g. via PuTTY from a remote desktop.


Click to enlarge The Perfect Server - OpenSUSE 11.4 x86_64 [ISPConfig 2] - Page 2

View the original article here


This post was made using the Auto Blogging Software from WebMagnates.org This line will not appear when posts are made after activating the software to full version.