<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>RandomStringOfWords &#187; server</title>
	<atom:link href="http://randomstringofwords.com/tag/server/feed/" rel="self" type="application/rss+xml" />
	<link>http://randomstringofwords.com</link>
	<description>RandomStringOfWords.com &#124;&#124; RSoW.com</description>
	<lastBuildDate>Fri, 13 Aug 2010 18:54:41 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.1</generator>
		<item>
		<title>From Colocation to Reselling.. Getting rid of 1and1</title>
		<link>http://randomstringofwords.com/colocation-server-upgrade/</link>
		<comments>http://randomstringofwords.com/colocation-server-upgrade/#comments</comments>
		<pubDate>Sat, 28 Nov 2009 00:51:43 +0000</pubDate>
		<dc:creator>Jason</dc:creator>
				<category><![CDATA[RandomStrings]]></category>
		<category><![CDATA[server]]></category>

		<guid isPermaLink="false">http://info.rsow.com/?p=721</guid>
		<description><![CDATA[I have used 1and1.com as my web service provider for a good long time now..  They have treated me well  enough and I am pretty happy with them with regards to their hardware.. Their servers are rock solid, you get exactly what you pay for and they don&#8217;t price gouge you..  I have had one [...]]]></description>
			<content:encoded><![CDATA[<div id="attachment_722" class="wp-caption alignright" style="width: 68px"><img class="size-full wp-image-722" title="1 and 1" src="http://randomstringofwords.com/wp-content/uploads/2009/11/logo_1and1.gif" alt="1 and 1" width="58" height="58" /><p class="wp-caption-text">dead to me</p></div>
<p>I have used 1and1.com as my web service provider for a good long time now..  They have treated me well  enough and I am pretty happy with them with regards to their hardware.. Their servers are rock solid, you get exactly what you pay for and they don&#8217;t price gouge you..  I have had one of their linux root boxes now for going on 3 years and have always been fairly happy with it..</p>
<p>Recently I have wanted to do some stuff that required a windows server, and now what with the closure of the Fan Films Forum I no longer have to worry about 100% up time.. So I&#8217;m decided to go ahead and take this opportunity to convert my server over from the fedoracore 6 linux box to a windows 2008 server box..  Yay..  Good times..</p>
<p><span id="more-721"></span></p>
<p>The other nice thing is that by making this change I&#8217;ll be reducing my monthly cost by about $40..  Yay for money saving..</p>
<p>I&#8217;ll let you know how this goes.. There may be some down time but likely not very much..</p>
<p>Update #1:</p>
<p>Okay I have the windows server up and running..  I&#8217;m using IIS instead of Apache (cause its windows) and it&#8217;s a little slower, BUT I think its likely due to the machines network infrastructure and not the difference between IIS and Apache.  This website loads in 1.5 seconds under my new server as opposed to 0.8 seconds under the old one.    Pings to this server hit at 50ms were as pings to the old one hit at 30ms.   Frankly, it&#8217;s a minor difference and I&#8217;m not worried about it..  If it becomes an issue I&#8217;ll complain to my host..</p>
<p>I&#8217;m still in the process of moving things over.. so for the time being everything lives in two places..</p>
<p>With this change I think I&#8217;m going to be focusing on &#8220;randomstringofwords.com&#8221; again.. Meaning, that will be the primary URL not &#8220;rsow.com&#8221;.. Both will work of course, but no one but me knows what RSOW stands for so it sorta loses something..</p>
<p>I&#8217;m also going to ditch the INFO part.. Previously I had planned to have all manner of different URLS.</p>
<p>Update #2:</p>
<p>So I have to admit I&#8217;m extremely disappointed with 1and1..  I have had some questions about the windows server package they sold me that they basically told me they wouldn&#8217;t answer.. &#8220;It&#8217;s not our job&#8221; was the response I got more often than not..</p>
<p>This sort of thing exemplified the issues I have always had with 1and1.. if you had a support issue you were boned..  Their hardware was good but I can get iron anywhere.. its the support of that iron that should be what they are selling..</p>
<p>It took me a long time to sort out my issues and get everything working, only to find out the machine they gave me only had 1 gig of memory..  (not enough for what ANYONE would need)..   I asked for another stick of memory to be put in the box and the answer was &#8220;No.&#8221; ..  Not &#8220;We&#8217;re sorry but.. &#8220;,  Not &#8220;So sorry for the inconvenience but.. &#8220;.. but NO..</p>
<p>I asked them to help me open SSH to the box and they were boggled.  They couldn&#8217;t understand why I would want SSH open to a windows box, but once I explained it and got htem to realize i twas worth doing they explained that it wasn&#8217;t their place to help me administer my box.   Wow..  really?   He also told me that SSH was insecure and that&#8217;s the reason it wasn&#8217;t open by default after I pointed out that FTP and Telnet by default was open..</p>
<p>Wait.. what?!  SSH isn&#8217;t secure?  It stands for &#8220;Secure Shell&#8221;..  Hell passwords are sent in the clear in FTP and Telnet..  Unreal..</p>
<p>I also pointed out that the windows box was twice as slow as my linux box and that the subnet really seemed flooded as my ping to the box was twice as high as it was to my linux box..  No comment from them on that.. in fact he kind of ignored that comment..</p>
<p>Ultimately I had to just cancel the new windows box.  It just couldn&#8217;t perform anywhere near where I would have needed it or where i tshould have considering the price..</p>
<p>Here&#8217;s the best part;</p>
<p>I was trying to cancel my account while heading to lunch with some coworkers..  I called them up and had a conversation with the billing department that amazed everyone in the car, and caused them to burst out laughing at a couple points.</p>
<p>I gave them my user ID, and then my contract ID after which he asked for my admin password.  Uh.. you want the password I type in?  That&#8217;s an automatically generated password that yall gave me.. I can&#8217;t change it.. You should know it..  But fine.. I gave it to him 3 or 4 times and it just wasnt going through..   He said well I can send it to you again..  wait. .what?  You are going to email me the password and then I&#8217;m to read it back to you?  What the fuck is the point of that?</p>
<p>I told him that hey why don&#8217;t we just go by the credit card you have on file.. since that&#8217;s in my pocket and all..  He said, no no that&#8217;s not secure..  That could be phished for.. What the fuck dude.. I have given you my customer ID a unique 10 digit number, my contract ID a unique 12 digit number, my name and what not.. etc.. and you&#8217;re going to email me the password I have to give you to continue..</p>
<p>It stands to reason that if I have the two ID&#8217;s I got them from the email account in the first damn place.. how is that more secure?!   unreal..</p>
<p>So yeah.. I eventually go that one closed and started looking for a new host..</p>
<p>My co-worker chad suggested <a href="http://secure.hostgator.com/cgi-bin/affiliates/clickthru.cgi?id=jellis" target="_blank">hostgator.com</a> as a replacement host..  So far I&#8217;m extremely impressed.. I got the reseller account so I could have control over giving friends and family accounts and websites too..  So far everything is great..  The best part is the speed.. it&#8217;s easily more than double the speed of my linux box..</p>
<p>At the very bottom of this page you should see something that says ## of queries in ### seconds.   Well on my old linux box it was usually 0.8 seconds, on my windows box it was 1.6 seconds..   That&#8217;s just the time it took to generate the data.. The actual load time from my linux box could be as much as 7 seconds..</p>
<p>Look at it now.. what is it?   That&#8217;s how much faster it is..  For me it says 0.38 seconds which translates to roughly 2.3 seconds of load time..  For the exact same page..</p>
<p>That&#8217;s nice.. speed is good.. I dunno what their hardware or pipe is but hostgator has good stuff..  Far better than 1and1..   Also hostgator uses Cpanel which in my mind beats the hell out of Plesk..</p>
<p>Either way.. Gonna keep working with it and will let you know how much better it is as I figure it out..  Right now I&#8217;m happier and will be moving all my old stuff off 1and1 completely in short order..</p>
<p style="text-align: center;"><a href="http://secure.hostgator.com/cgi-bin/affiliates/clickthru.cgi?id=jellis" target="_blank"><img class="aligncenter" src="http://www.hostgator.com/affiliates/banners/hostgator-300x250.gif" alt="" /></a></p>
]]></content:encoded>
			<wfw:commentRss>http://randomstringofwords.com/colocation-server-upgrade/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>25man Malygos</title>
		<link>http://randomstringofwords.com/malygos/</link>
		<comments>http://randomstringofwords.com/malygos/#comments</comments>
		<pubDate>Mon, 19 Jan 2009 03:14:08 +0000</pubDate>
		<dc:creator>Jason</dc:creator>
				<category><![CDATA[WoW]]></category>
		<category><![CDATA[bullshit]]></category>
		<category><![CDATA[lag]]></category>
		<category><![CDATA[server]]></category>
		<category><![CDATA[world of warcraft]]></category>

		<guid isPermaLink="false">http://info.rsow.com/?p=229</guid>
		<description><![CDATA[So we have been playing a LOT of World of Warcraft of late.  I must admit I&#8217;m very much enjoying it for the most part.  But we have gotten to the point where we are farming the end game content because by and large, it&#8217;s way too easy. All that is except Malygos.   We have [...]]]></description>
			<content:encoded><![CDATA[<div id="attachment_228" class="wp-caption alignright" style="width: 160px"><img class="size-thumbnail wp-image-228" title="lichking_2" src="http://info.rsow.com/wp-content/uploads/2009/01/lichking_2-150x150.jpg" alt="Not Malygos, but a cool pic" width="150" height="150" /><p class="wp-caption-text">Not Malygos, but cool</p></div>
<p>So we have been playing a LOT of World of Warcraft of late.  I must admit I&#8217;m very much enjoying it for the most part.  But we have gotten to the point where we are farming the end game content because by and large, it&#8217;s way too easy.</p>
<p>All that is except Malygos.   We have beaten Malygos before but for whatever reason our guild can&#8217;t seem to pull it&#8217;s collective head out 9 times out of 10.  Things just go wrong.</p>
<p>That&#8217;s fine and acceptable except they all seem to think we are going to one shot him and move on. Over confidence is our down fall, but not our only one.  The real issue isn&#8217;t our guild or our game play, but rather the fucking lag!</p>
<p><span id="more-229"></span></p>
<p>We have the same issue in 25man Nax killing Thadius..  The server always lags out on us at exactly the same time, every time.  It&#8217;s almost like this is blizzards cunning plan to make the content more difficult..</p>
<p>Pretty hard core burning hatred from me when we get in there and the game lags out.  Malygos is probably the easiest boss in the T7 content, but the lag during phase 2 screws us every time.. (Or just about &#8212; it took us like 8 tries tonight to kill him due to lag.)</p>
<p>Blizzard needs to fix this.  I can&#8217;t tell you how many times we have failed at Thaddius too for the exact same reason.. just lag.  It&#8217;s pretty darn hard to fight a boss when the timer keeps counting down but the game stops for everyone..</p>
]]></content:encoded>
			<wfw:commentRss>http://randomstringofwords.com/malygos/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Server hacked</title>
		<link>http://randomstringofwords.com/server-hacked/</link>
		<comments>http://randomstringofwords.com/server-hacked/#comments</comments>
		<pubDate>Tue, 15 Jan 2008 20:32:05 +0000</pubDate>
		<dc:creator>Jason</dc:creator>
				<category><![CDATA[RSoW.com]]></category>
		<category><![CDATA[apache]]></category>
		<category><![CDATA[bot]]></category>
		<category><![CDATA[FedoraCore]]></category>
		<category><![CDATA[hacker]]></category>
		<category><![CDATA[htaccess]]></category>
		<category><![CDATA[server]]></category>
		<category><![CDATA[software]]></category>

		<guid isPermaLink="false">http://info.rsow.com/server-hacked/</guid>
		<description><![CDATA[Yay! Everything is back and working nicely. The nice thing about having your server hacked is that you end up having to put everything back &#8212; which yes is a colossal pain in the ass, but you will just about always put it back in better shape than it was in to begin with. My [...]]]></description>
			<content:encoded><![CDATA[<p>Yay! Everything is back and working nicely.  The nice thing about having your server hacked is that you end up having to put everything back &#8212; which yes is a colossal pain in the ass, but you will just about always put it back in better shape than it was in to begin with.</p>
<p><span id="more-106"></span>My old server was FedoraCore2.. *shudder*  I wasn&#8217;t given a choice there.. it was core2 or nothing. And since it was out of date pretty much the day I was given it, it was doomed to be hacked at some point.  I knew that going into it.. Eh what can ya do.</p>
<p>Well, it happened.  Sometime last week someone rooted the box.  They did a pretty thorough job of it too, though the more I looked at it the more I thought it was a script kiddie instead of someone that&#8217;s actually clever..</p>
<p>They went through and added a program that listened on port 50030 for some sort of command before it went out and did it&#8217;s misdeeds..  Then went through the trouble of replacing every tool that you would normally use to detect these things with their own custom version which hid the running process..</p>
<p>That&#8217;s not even the sneaky part..  they also went through and set the attrib of those files to make them undeletable even by root.  Annoying.</p>
<p>So instead of trying to save the box, and undo the fuckery that they had installed.  I just wiped it.  I installed a much later version of the OS and all new stuff.. restored the database, and all things are now happy.</p>
<p>It was a good learning experience and interesting for the most part.  It really went a long way to point out that I&#8217;m a software engineer, not a server admin.  And it really seems like the more you are one, the less you are the other..  I&#8217;m trying to learn this stuff, but its a lot of magic to me at this point.  I mean there is so much to know, I don&#8217;t see how anyone could know it all.</p>
<p>Add to the fact that the internet is by it very nature a warzone and this server/hacker thing is an eternal arms race and I begin to think, why the hell bother?   I want a server is the obvious answer..</p>
<p>As always I don&#8217;t blame the hacker .. its a game really.. I wish I knew how they got in, not so I could hack other boxes but so I could make it safe on mine &#8212; this is something I&#8217;ll likely never learn.</p>
<p>So this is what I did once I got a fresh install on the box &#8212; I put this here for me so I can do it quickly and easily next time;</p>
<p>less /etc/inittab &#8212; make sure we are in rc level 3, if not change it and reboot</p>
<p>chkconfig &#8211;list | grep 3:on  &#8212; Shows run level of services managed through init.d make sure everything is on you want on, and off that you don&#8217;t want.</p>
<blockquote><p>Only do this if you want sendmail off, which you likely wont want because PHP needs it.</p></blockquote>
<blockquote><p>chkconfig &#8211;level 3 sendmail off &#8212; turn off sendmail so it doesn&#8217;t start on boot and annoy me constantly<br />
service sendmail stop &#8212; turn off sendmail (smtp port 25 is now closed)</p></blockquote>
<p>cd /etc/cron.daily &#8212; turn off the annoying logwatch email spam which is again an annoyance.</p>
<p>netstat -pan | grep LIST  &#8212; Show a list of all open ports/listeners<br />
nmap localhost &#8212; does the same thing, make sure they don&#8217;t conflict</p>
<p>useradd [newuser]<br />
passwd [newuser]</p>
<p>visudo &#8212; Add [newuser] to the sudoers list<br />
log out as root and relog in as [newuser]</p>
<p>sudo yum install vim &#8212; install VIM because I prefer it as my remote editor<br />
sudo vim /etc/ssh/sshd_config &#8212; set PermitRootLogin to no so that root can&#8217;t SSH into the box</p>
<p>sudo yum list all &gt; ~/rpm-avail.txt &#8212; get a list of everything installable, its easier to get a grep on the file</p>
<p>sudo yum -y install httpd php mysql mysql-server php-mysql  &#8212; Install traditional LAMP setup</p>
<p>sudo /sbin/service mysqld start &#8212; Start up mysqld<br />
sudo /sbin/service httpd start &#8212; Start up apache</p>
<p>sudo /sbin/chkconfig &#8211;level 3 mysqld on &#8212; Make sure mysqld starts on reboot<br />
sudo /sbin/chkconfig &#8211;level 3 httpd on &#8212; Make sure apache starts on reboot</p>
<p>We don&#8217;t want people hitting our MySQL from out side so we need to make sure its only listening to the internal port.. Not sure why this isn&#8217;t the default setting.</p>
<p>sudo vim /etc/my.cnf  &#8212; Add &#8220;bind-address=127.0.0.1&#8243; to the [mysqld] block<br />
mysqladmin -u root password &#8216;new-password&#8217;</p>
<p>We want to keep people from using our apache as a proxy, so;<br />
sudo vim /etc/httpd/conf/httpd.conf<br />
Comment out LoadModule proxy_{anything} and restart apache<br />
Change the AllowOverride None to AllowOverride ALL in the root directory (this lets .htaccess changes work)</p>
<p>Now create the various databases and restore those bad boys using the database user/passwords appropriate for those.</p>
<p>Restore the files to their correct places and make sure the virtual host information is correct in httpd.conf</p>
<p>Also, change the logrotate.conf to rotate the httpd logs daily instead of weekly.. otherwise they get biggish..</p>
<p>aaaannd.. GO!</p>
]]></content:encoded>
			<wfw:commentRss>http://randomstringofwords.com/server-hacked/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
