Category Archives: Notepad

An Open Letter Regrading Copyright Amendment (Online Infringement) Bill

TL;DR

Go to http://choice.good.do/nofilter/ and send an email.

As a web developer, internet filters scare both me and my clients. “But if your not doing anything wrong you shouldn’t have to worry” is the reply I hear from the crowd. Which would be true, until the protection mechanism fails. Labour tired to do a similar thing a few years ago & a few small business websites ‘accidentally’ ended up on the black list. Imagine if your small business site gets attacked or hacked, then it’s detected by the filter as a naughty one, ” o we better block it” the filter thinks. Your business is now practically dead in the water if you rely at all on having a working website (which is a lot these days).

There is also a fundamental technical issue at play, if a site is accessed via SSL (the little padlock next to the URL, the https – like this one does), then nothing between my browser and the server should be able to read the contents. (Although thanks to our mate Ed, we know that the NSA unwraps these packets and then rewards them because they have the keys to the kingdom). So if all I have to do in theory is have a secure site to bypass the block, all should be well right? If they can block it, then something is fundamental to internet security will need to be broken, or they block based on the servers IP address.

But in this day and age one IP address doesn’t equal one website. One IP address equals multiple websites. So when the filter blocks one site, multiple sites could fall down too. Again as a small business, you are stuffed. (At least until you can get a new IP address).

Thanks to the guys at choice, we can all create awareness around this issue (I have added to the original email).

http://choice.good.do/nofilter/

Hi Catherine,

Similarly to the metadata bill (which was sadly passed), I’m concerned about this one.

It is the equivalent to blocking roads & streets in high crime neighbourhoods, because cars might drive on those roads, which may or may have passengers that may or may not commit a crime in them.

I am asking you to vote against the Copyright Amendment (Online Infringement) Bill.

This Bill will make internet service providers police consumers’ downloads with an industry-run internet filter.

But this isn’t just about stopping Pirate Bay – it covers sites for online tools like Virtual Private Networks (VPNs) that help consumers get around the ‘Australia tax’ and access legitimate content from overseas.

The law will also prevent other parties from seeking to have site blocks removed, for example if it’s in the public interest or it’s blocked accidentally.

If you won’t vote against the Bill, then I ask you to make sure that it won’t accidentally capture legitimate websites, including VPNs.

Also please ensure that other parties can make public interest arguments when the courts are considering imposing or varying website-blocking orders. Without this, it will be a one-sided, uncontested application process, which is worrying given the potential for legitimate sites to be blocked.

Specific recommendations for addressing these problems can be found in CHOICE’s submission to the inquiry, available at http://www.aph.gov.au/Parliamentary_Business/Committees/Senate/Legal_and_Constitutional_Affairs/Copyright_Bill_2015/Submissions (submission no. 34).

When the U.S tired to do a similar thing with their SOPA Bill a few years ago, the internet went black to make politicians wake up, and see that the entertainment industry cannot control the internet. Unfortunately we don’t have the same power here in Australia, but hopefully through an open conversation with all parties, not just the entertainment industry we can find a better solution to the issue of copyright infringement.

Thanks

Andrew Bennett

QNAP to Zentyal Rsync Backup

This is how I got a backup from a QNAP nas to Zentyal working (I understand that most people probably want to do this the other way around…)

QNAP TS-231 running 4.1.3 Build 20150408
Zentyal 3.5

  1. Setting up rsync on Zentyal: http://howden.net.au/thowden/2012/11/rsync-on-debian/
  2. Testing rsync on QNAP:
    1. Open up ‘Backup Station’ App
    2. Go to ‘Rsync’ under ‘Remote Replication
    3. Create a new replication job, use the following settings:
      • Remote Replication Job Name:
      • Remote site:
        Name or IP: [IP address of Zentyal box].
        Username: [Zentyal Admin User]
        Password: [Zentyal Admin Pass]

        Port Number: 873

      Hopefully the test should run successfully, if you cat /var/log/rsyncd you should see the connection, but it probably fails on finding /var/www/pub folder

    4. If everything works, go ahead and update the configuration files, and set locations to their final paths

    I can’t work out how to get this working over SSH just yet.

Zentyal 4.1 Software RAID

TL;DR: Zentyal Software RAID Setup.

Unfortunately it isn’t all that easy or straight forward for a targeted server disto to easily allow

  1. Start Install in ‘Expert’ mode.
  2. Go through install until you get to partitions.
  3. Select the partitioning method as ‘Manual’.
  4. First create ’empty’ partitions on each drive (I actually did this within PartedMagic).
  5. Then create the Software RAID (I created 1 MD device with RAID 1).
  6. Then you can create the LVM partitions (I used the Guided Partition step to automatically create everything, otherwise you can do it manually by hand).

Thanks to Rafaelwolf.com

Endian Transparent Proxy and Hamachi Gateway Issue

Update: works around 95% of the time, but isn’t perfect.

After recently upgrading from IPCop to Endian for a clients router, we discovered an issue that wasn’t there with IPCop.
All the users connecting in via the Hamachi gateway also had there traffic passed through the squid proxy server at the office.

While most organaizations would encorrage this, it was an uninttended side effect, and brought the small slow ADSL connection to its knees.

After trying to fiddle with proxy.pac files, IP Tables rules, etc it seems the easiest option is to simply ban the IP address in proxy.

      Create a static DHCP address for the client
      Go to Proxy -> HTTP -> Access Policy. Add a new access policy
      Select the following values:
      Source Type: Network/IP
      Destination Type:
      Insert Source Network/IPs: Add the IP addresses from Step 1.
      Access policy: Deny access
      Position: First position

      Create Policy

      Test on a remote client using Speedtest.net or IPChicken

Early testing has shown that there aren’t any issues with this, the client still downloads the proxy.pac file, then finds out it can’t use the Proxy (Chrome seems to add it to a Ban list), and carries on connecting as usual.

Extended testing shows that every now & then Endian still gets asked to handle the request & gets a ‘denied’ response. So not a perfect solution, it still half works.

Data Retention Laws

Here is a list of resources/articles around the proposed new Data Retention Laws.

The proposed bill

http://www.aph.gov.au/~/media/02%20Parliamentary%20Business/24%20Committees/244%20Joint%20Committees/PJCIS/DataRetention2014/FinalReport_27February2015.pdf

General Articles

March 2015
March 10
http://www.abc.net.au/lateline/content/2015/s4195092.htm
March 2 2015

February 2015

February 27, 2015

February 26, 2015

February 22, 2015

February 19, 2015

February 5, 2015

2014

August 7, 2014

Activism

Electronic Frontiers Australia Citizens Not Suspects
Beyond Green’s Curious George

If you have more resources to add, let us know in the comments.

Toshiba M400 – Clone / Restore Hard Drive issue STOP: 0x00000007B 0x7B issue

Here is a tough one, cloning or restoring a backup to a new drive for a Toshiba M400 returns a BSOD with Stop 0x7B error.

Here is how to fix it.

  1. Install New Drive into drive bay
  2. Boot M400 and press Esc
  3. When prompted “Check system. Then press [F1] key.” press F1, to enter the BIOS
  4. Use Page Down key to go to the 3rd page and change the Built-in HDD from JBOD to 1RAID-0
  5. When you save you will be prompted for the top secert code, this is: 1 2 3 4 [enter]
  6. Save and exit the BIOS
  7. Complete the system restore/ clone (if cloning from one drive to another, for performance I find it better to take the 2 drives and plug them into 2 SATA ports on another computer and clone there, much faster than an Image or using an external enclosure

A big thanks to the guys here: http://forums.toshiba.com/t5/General-Troubleshooting/M400-Restore-Issue/td-p/25211 for their help and input.

WordPress MU Organise uploads

In a WPMU install there is no check box for “Organize my uploads into month- and year-based folders”

Instead you need to do the following:

network dashboard > my sites > sites

then edit each site, select site settings

then scroll down to “Uploads Use Yearmonth Folders”.
1= yes year/month,
0 = no year month, instead upload to /siteid/files/

Thanks to http://premium.wpmudev.org/forums/topic/how-do-i-turn-on-the-check-box-for-yearmonth-folder

Endian Firewall and Office 365 Outlook not connecting

Problem: Switching from IPCop to Endian Community 3 resulted in Outlook not connecting to the Office 365 servers.

Solution: It appears the issue is with Squid (see http://www.squid-cache.org/mail-archive/squid-users/201308/0269.html). Office 365 resolves outlook.office365.com to 25 different addresses, but Squid defaults to try the first 10 then give up. To fix add the line: forward_max_tries 25
But where to do so in Endian?

Adding extra squid configuration options in Endian 3:
The Squid config is at /etc/squid/squid.conf – BUT this is rebuild every time you save the web GUI instead to add custom options, add them into /var/efw/proxy/custom.tmpl

For example:
SSH in:
cd /var/efw/proxy/
vi custom.tmpl
[add the following:] forward_max_tries 25

Then resave the settings in the Web gui to force the rebuild of the /etc/squid/squid.conf file.
Then check to see that the settings are there with the following command:
cat /etc/squid/squid.conf
And look for #begin custom.tmpl

State of the Wireless Speaker

For those interested in a quick birds eye view of the state of the wireless speaker market I’ve created this quick (and I meant super quick) Google Sheet for a client.

State of the Wireless Speaker

It includes:

Sonos
Play 1
Play 3
Play 5

BOSE
SoundTouch

Pure
Jongo T2
Jongo T4

Samsung
Wireless Audio Hub
M3 Wireless
M5 Wireless
M7

Presonus
Eris E5

Is is in no way a review of any kind (other than cost at this moment in time). I have not personally had any time to play with these speakers in any sort of detail. (I do however have a pair of Presonus studio monitors). If it’s useful, that’s great. If not, I wish you well on your journey.