Hardware :: Delegate Crypto Functions To Dedicated Processor?
Mar 5, 2010
On a bunch of servers, we use integrity checking tool on a large amount of data. Therefore, we compute SHA1 hash from a lot of files everyday. The CPU is a "generic" one, enough powerful for normal use, but get's totally saturated when integrity check begins. Is there any kind of server using a crypto-processor so as to delegate crypto functions to this dedicated processor?
View 7 Replies
ADVERTISEMENT
Mar 19, 2011
None of my daemon scripts work now, and the startup process displayed errors. Should I reinstall the OS and start from scratch, or is there a way to recover these files? Is there a way to rebuild the files I deleted?
View 2 Replies
View Related
Feb 12, 2010
My aim was to build a VERY simple smtp proxy under debian to handle mail from a port (51234) and forward it to the standard 25 port. I compile and install a "delegate" witch can handle easily that. It's working very well like that : delegated SERVER="smtp://anotherSmtpServer:25" -P51234
The strange thing is, it's working on my virtual test machine and on the dedicated server in local but I can't manage to use it trought internet. I test it like that. telnet [mySrv] 51234 Of course, no firewal, no deny host, no ined/xined, the service delegated is listening on the right port ... 2 clues : The port is answering trought internet with nmap as "51234/tcp open tcpwrapped" have a look at the tcpdump following :
[Code]....
View 2 Replies
View Related
Nov 9, 2010
I keep trying to convert a bunch of jpg files into pdf, but ImageMagick just seems to keep failing there. Well well, after three thousand fix and reinstall attempts (seriously, I've been trying to fix it for the last month or so), this is what I'm getting today:
[Code]...
View 3 Replies
View Related
Mar 11, 2010
Is it possible to define functions within other functions in C++? I know it is the case in other languages.
View 2 Replies
View Related
Jan 5, 2010
i have installed ubuntu in my laptop.since i have AMD processor fedora doesnt support AMD processor..the recent version fedora 12 supprots AMD processor.i am doing my final project in ns2 hence it should support tht too!!! Which is the best choice to override ubuntu grub fedora 12 or redhat linux.
View 3 Replies
View Related
Dec 25, 2010
I've got a Lenny system on a quad core system with 4GB of ram. Currently Linux www 2.6.26-2-amd64 #1 SMP Thu Nov 25 02:05:44 UTC 2010 x86_64
I've had it for a couple of years, and its been fine, very fast and reliable.
Lately, its got a problem: after its been running for a day or two, access using SSH, or TLS/HTTPS gets really slow. Painfully slow. A reboot returns the system to normal fast operation.
I can't think of anything that has changed, other than I got a new SSL cert and installed it.
The system is mostly a vanity domain server, with Apache HTTPD running a half dozen very low volume services. Its running bind9, mysql, and a few other things, nothing big, nothing that would load down a quad core with lots of ram. The disk is only 14% used.
View 4 Replies
View Related
Sep 22, 2010
How do you find what typs of crypto ciphers are supported.? I've dumped out /proc/crypto, which lists out a bunch of types, but none of the names listed seem to work. So far I have only got a couple types to work, the default(when I don't supply cryptsetup any cipher type) aes-cbc-plain and aes-ecb.
Since I don't even see aes-cbc-plain in /proc/crypto
View 4 Replies
View Related
Mar 27, 2016
I've got this weird problem: when I reboot my Debian 8.3 server, I have to run through the crypto unlocking processes for my encrypted volumes a few times before I actually get to a login screen. The operation times out 85% of the time, leaving me to reboot and try over and over until the system is happy.
Here's my partitioning setup (manually partitioned at install):
/boot: 500 MB, EXT2, nodev, nosuid, noexec
/tmp: 2 GB, EXT2, AES-256/xts-plain64 with RANDOM KEY
swap: 2.5 GB, AES-256/xts-plain 64 with RANDOM KEY
/: 35 GB, EXT4, AES-256/xts-plain 64 with PASSPHRASE
/var: 35 GB, EXT4, AES-256/xts-plain 64 with PASSPHRASE
/home: 45 GB, EXT4, AES-256/xts-plain 64 with PASSPHRASE
Here's the output from journalctl -b -p 3:
Code: Select allDate and time | server name | systemd[1]: Timed out waiting for device dev-sda5.device
Date and time | server name | systemd[1]: Dependency failed for Cryptography Setup for sda5_crypt
Date and time | server name | systemd[1]: Dependency failed for Encrypted Volumes
Date and time | server name | systemd[1]: Dependency failed for dev-mapper-sda5_crypt.device
Date and time | server name | systemd[1]: Dependency failed for /tmp
[Code] ....
I had the same problem in previous builds where I chose Twofish instead of AES, and I was hoping that the timeouts would be fixed by switching to AES as my CPU has the AES instruction set. Obviously that didn't make a damn bit of difference.
What am I doing wrong, or what should I change in my setup? The encryption is a requirement. Could the problem be caused by something as stupid as using a RANDOM KEY instead of a PASSPHRASE on /tmp and swap?
Debian 8.3 as OS version.
View 1 Replies
View Related
May 2, 2011
I recently bought two DreamPlugs and replaced the preinstalled aged Ubuntu 9.04 with Debian Squeeze on them.I built a Marvell Orion 2.6.35 kernel from git. OpenSSL performes lousy on this hardware (my VIA Nano with PadLock support gives me ~690 000k on 8192 size blocks):
[Code]...
View 1 Replies
View Related
Feb 17, 2010
Having installed 9,10 onto a laptop my cherubic daughter swicthed off the power (no battery) and upon restarting i am faced with "Starting Init crypto disks... OK) and there it stops!! I had hoped that I could go to recovery mode and fix it but am faced with the same stalling point. I see others are unresolved in this.
View 2 Replies
View Related
Nov 27, 2010
The Fedora 13 Visualization guide mentions the ability to use "shared physical device" to give virtual guest full access to a network device. Where can I find more info on setting this up. When installing my first guest, the drop down menu didn't supply this as an option. Eth0 and Eth1 were not selectable (e.g. grayed out).Is there a better section to ask KVM related question? If so, I'll move there.
I'm setting up my first KVM guest now, played aroudn with VMware briefly. I did spend a lot of time wtih VM on mainframes (yes, I'm old)... and from my research, KVM is "catching up" with what we could do in the old days.
View 4 Replies
View Related
Jun 17, 2010
right now i m using ubuntu 10.04 installed on virtual hard disk (wubi), but now i want to move it to dedicated hard drive partition. i found is to use LVPM however that software is NOT compatible with ubuntu 10.04. . .
View 3 Replies
View Related
Jun 9, 2010
I have software with a newsletter system - but because I have 16 clients per server they are currently all sending emails from the same (eth0) IP address DESPITE having a DEDICATED ip address per client account for their WEB address. If one spams (or gets spam complaints) then they all suffer - and I'd love to send their email via their unique IP address to stop this problem and to make the IP match their domain which has to be better at getting through spam filters anyway I'd have thought...
View 6 Replies
View Related
Jul 10, 2011
I want to rent a (root) linux server to run a vpn service on it. I want to allow people to use this vpn.
My questions are as follows:
- What kind of server/service should I rent - dedicated or vps?
- Is one IP-Address enough to connect, say, 100 user? (I plan to run IPsec or OpenVPN, maybe PPTP)
- What Bandwith and/or traffic limits I need to consider to make the service reasonably fast for the users?
- Which Linux-distro should I use? Ubuntu Server, CentOS, FreeBSD, Debian etc?
- How much RAM and HDD space is recommended for such an endevour?
- Any advice on the processor type the server should have?
- Is 100M network ok or better 1000M?
- What means 100Mbps shared bandwidth in contrast to 10Mbps dedicated guaranteed per server?
View 4 Replies
View Related
May 18, 2010
I am trying to connect to my VNC Server from a Windows 7 Box running TightVNC:I've followed all the instructions on this page:[URL]And I changed my xstartup scripts:
/etc/sysconfig/vncservers
# The VNCSERVERS variable is a list of display:user pairs.
#
[code]....
View 12 Replies
View Related
Nov 10, 2010
I'm accustomed to Ubuntu showing 3.9GB out of 4GB on my desktop. That's completely ordinary and expected: The kernel uses a dozen megs or so, which are not accounted for in the reported memory totals. After truncating, that brings us to 3.9GB.
I was expecting to see the same thing on my Elitebook 8740w, but System Monitor is reporting only 3.7GB instead, using the same version of Ubuntu. free -m shows:
total used free shared buffers cached
Mem: 3819 935 2883 0 80 287
-/+ buffers/cache: 567 3252
Swap: 4095 0 4095
That is to say, the total of 3819MB is not missing a mere dozen or so MB but a full 267MB from 4096MB! That's WAY too much to be accounted for by the kernel, so something else is going on!
Please note the following:BIOS shows the full 4GB, and so does lshw.
uname -a = Linux COMPNAME 2.6.35-22-generic #35-Ubuntu SMP Sat Oct 16 20:45:36 UTC 2010 x86_64 GNU/Linux
lspci | grep VGA = 01:00.0 VGA compatible controller: ATI Technologies Inc Broadway XT [Mobility Radeon HD 5800 Series]
That is to say, I really do have 4GB RAM, my mobo and BIOS recognize it, I really am running a 64-bit OS, and I really shouldn't have any kind of onboard graphics.
The devil lies in the details though: I SHOULDN'T have any kind of onboard graphics...but the best explanation I can come up with is that 256MB or so are being set aside for that purpose anyway. This is a mobile workstation with dedicated Firepro graphics (based on the Mobility Radeon HD 5800), and it's well beyond the range of laptops that include switchable graphics. However, it has an i5 processor, so I think it's conceivable that the laptop is being tricked into allocating RAM for integrated graphics. This is especially likely considering I get the same i915 error as the threadstarter here, and I have very similar command line output.
Presumed Problem: Long story short, I think Ubuntu is seeing the i5 processor and setting aside 256MB or so for the integrated graphics which it THINKS I have, which are actually totally unavailable to use on this particular laptop. If this is the case, does anyone know how to make it stop doing this, so I can make that memory accessible to the rest of the system?
Update: Interestingly, even Memtest is showing only 3952MB. This may or may not account for the full missing amount, but it obviously counts for a lot. I'm used to Memtest showing I think 4095MB on my desktop, meaning Memtest itself presumably only takes ~1MB. Actually, even on the laptop Memtest says only 1024KB are reserved, so 143MB are totally unaccounted for.
View 3 Replies
View Related
Jan 20, 2010
I have a linux box, which was given to me by a company with 3 dedicated IP addresses. My goal was to setup ssh tunnels on all three dedicated IP Addresses.
Via Putty, i am successfully able to create a tunnel to the box's on IP1 IP2 and IP3 - that is i can make incoming connections on all three IP's.
However, my problem lies when i attempt to USE the tunnel. AIn all instances, regardless of the IP i actually tunneled into the box with, it returns IP1 as an outgoing connection, i.e if i setup IE to use the tunnel, it will return my IP as IP1, even though i have created the tunenl via IP2/IP3.
What id liek to accomplish is that when i create a tunnel via IP1, then outgoing connections go via IP1, and when i create a tunnel via IP2, then outgoping connectiosn go via Ip2 etc.
After discussing this with a colleague of mine, he infomed me he had the same problem at one point, and that some configuration on the box was required - however he was unable to recall.
View 2 Replies
View Related
Jan 29, 2010
Wath should be the bandwidthd needed for a home dedicated server so i can run several sites on it?
View 1 Replies
View Related
Feb 4, 2010
The /var directory is 97% full on my dedicated server:
I would like to know if it is safe to clear it and how to clear it (assuming it will not disrupt/kill server services to do so).
I have Matrix control panel so i can view the storage etc but it does not have an way of clearing the /Var directory.
I have Putty Access to root but do not know which command to use.
I found a few threads but the information is not clear to me as there seems to be an assumption of basic knowledge I don't yet have.
My linux/ubuntu support that usually does this kind of thing for me is away and not contactable and my server is grinding to a halt and unable to store/send email.
I have only a very basic understanding of command line but really need to get this sorted ASAP.
View 3 Replies
View Related
Feb 4, 2010
I have a dedicated server and I am having email issues etc (seemingly) because the /var directory is 97% full
I would like to know if it is safe to clear it and how to clear it (assuming it will not disrupt/kill server services to do so).
I have a 'Matrix' control panel so i can view the storage etc but it does not have an way of clearing the /Var directory.
I have Putty Access to root but do not know much about command line access.
I found a few threads but the information is not clear to me as there seems to be an assumption of (basic?) knowledge I don't yet have.
My linux support guru that usually does this kind of thing for me is away and not contactable and my server is grinding to a halt and unable to store/send email.
I have only a very basic understanding of command line but really need to get this sorted ASAP.
Is it possible and SAFE to delete files via FTP from the /var/cache/apt/archives?
View 12 Replies
View Related
Jun 3, 2010
I really like to have my netbook be like a Cisco SPA502G, Cisco SPA525G, or any kind of business phone that's available. The current phone system I have is Asterisk.One of the advantage of having my netbook is that it has a battery and most desktop IP phones do not have one.
So, aren't there any Linux distros that act primarily as a "phone first; everything last?" (By "everything last," I meant anything like surfing the Internet, listen to music, etc." It's like having an advanced version of an SPA525G or a top-of-the-line Snom/Polycom business phone. I know this is way too much to ask about making my netbook act as a dedicated business phone, since I'll only be using one line per device. Like I mentioned, it's nice to be able to take my netbook with me whenever I go where there are wireless networks available, such as in college or a restaurant. Of course, I'll probably not expect to get a lot of features from Cisco SPA502G in a softphone. I can understand why anyone cannot imagine why I'd want to have so many features from SIP-based business phones, like intercom and G.722 codec ("high-definition voice," or "HD Voice"). Well, I'm a hobbyist; sometimes I like to put some of the features to use, like an intercom.
I used to try out Ekiga (supports G.722) and Twinkle (does not support G.722 as far as I've read), but I'd like to have something that integrates into the desktop environment--no, not the little icon that sits in a GNOME panel, but maybe a softphone that is docked to the right of the desktop with a resolution of 1024x600. This is something that is very useful to keep the softphone integrated into the panel while not overlapping with other non-softphone applications, such as Firefox or OpenOffice. Plus, the panel-based softphone can stay visible regardless of which application has focus, even if I maximize an application.
View 4 Replies
View Related
Jul 21, 2009
I was unable to access my dedicated server for few minutes. I have checked the apache error logs and found below notice:
[notice] caught SIGTERM, shutting down
I have tried to search from Google but could not find much information about this error.
View 2 Replies
View Related
Mar 29, 2011
When you need to change something on the server you can hook up a monitor and a keyboard and do it through the console.
I would like to hook up an external monitor in this fashion for a desktop. The current video card can only support a single display. So I was hoping there was someway to use a second monitor as just a permanent console since simple text shouldn't require a video card?
View 9 Replies
View Related
Jul 25, 2010
Im running VMware fusion on my mac book pro and i want to boot my physical ubuntu partition. After wasting hours trying to add the partitions directly into vmware grub complained that it couldn't find the correct partition.
I abandoned that avenue and created a 50MB vmware partition and installed GRUB2 on it so in the VMware i then attached the 50MB grub partition and the 250G physical drive. This all works fine however i cant seem to get GRUB2 to automatically populate the menu. On the GRUB2 partition i have /boot/grub/* and /etc/grub.d/ * and in the grub.cfg i have set GRUB_DISABLE_OS_PROBER=false
however when i run update-grub i get an error saying something like "mkconfig-grub cannot find / is dev mounted?" i can manually run /etc/grub.d/30_os-prober and it prints out a list of all my partitions which i can paste into grub.cfg however i dont want to have to manually do this for each kernel upgrade.Im doing all this via a 10.04 live CD.
View 2 Replies
View Related
Sep 29, 2010
if anyone can point me in the direction of a tutorial (step by step) how to make a virtual dedicated server using ubuntu to host a website?
View 1 Replies
View Related
Jan 29, 2011
I want to install Webmin on a dedicated remote server. I keep reading different blogs/tutorials etc about installing webmin on Ubunto server 10.10 but it seems too easy to be true. There is never any mention of requirements etc. I did read that even perl isn't needed pre install now and will install with webmin.But do i need to install lamp etc first or does it pull these in when Webmin its installed?
View 2 Replies
View Related
Mar 23, 2011
My workstation is on a network, let's say 10.100.0.0/24. I'm opening up an openVPN Tunnel to a test environment in my company, receiving a lot of routes to this network (address range 172.xx.yy.0). Everything is working fine so far. In this test environment I placed a number of virtual systems having their own private network (10.99.0.0/24). I have one machine in this virtual cluster which is able to forward incoming IP traffic to the others.
When I login to this gateway system, using the 172.xx.yy.zz address, I can logon to the others using the 10.99.aa.bb addresses. Fine so far. But I have to be able to call these machines with the 10.99.0.0/24 addresses from my laptop. So I tried to add a route like:
route add -net 10.99.0.0 netmask 255.255.255.0 gw 172.xx.yy.zz
Unfortunately I received an error messages:
SIOCADDRT: No such process
According to the entries in other forum articles (Google helps in most cases), I have to add a host route first:
route add -host 172.xx.yy.zz gw 172.well.defined.dest
View 1 Replies
View Related
Feb 4, 2011
I have a server running slackware 13.1, and it is running windows server 2003 with QEMU-KVM. I followed [URL , now two system can connect each other.
The problem is: I bought two dedicated IPs, and I wanna know how to setup these two system to be Internet Servers.(Nginx in slackware, IIS in 2003) I found some subjects but I can't find what I want.
View 2 Replies
View Related
Jan 3, 2011
I currently want to set up a network with 2 Ubuntu servers (mail and web) in a DMZ in order to separate them from an internal network. I want to use a dedicated Linux firewall. This firewall will have 3 network interfaces on it. One network interface will connect to the external router/modem (router and modem in one box), one interface will connect to the DMZ and the other interface will connect to the internal network. The router/modem lets you put, I think it's 1 or 2, interfaces in a DMZ.
But, when I think of any of the dedicated firewall's or servers' interfaces it doesn't make sense to me to put any of them in the router/modem's DMZ (I think it would be better for the dedicated firewall's and the servers' interfaces to have static private I.Ps ie 192.168.2.4 etc right?). What I mean is that even if, as far as the router/modem is concerned, none of the interfaces were in a DMZ, the area where the servers are would still effectively be a perimeter network and with such a set up would still be, effectively,a DMZ, right?
View 7 Replies
View Related