<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>Guia do Administrador de Sistemas</title>
	<atom:link href="http://adrianomendes.wordpress.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://adrianomendes.wordpress.com</link>
	<description>Este site tem como objetivo compartilhar scripts, tutoriais e dicas.</description>
	<lastBuildDate>Mon, 31 Oct 2011 12:19:07 +0000</lastBuildDate>
	<language>pt-br</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='adrianomendes.wordpress.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://s2.wp.com/i/buttonw-com.png</url>
		<title>Guia do Administrador de Sistemas</title>
		<link>http://adrianomendes.wordpress.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://adrianomendes.wordpress.com/osd.xml" title="Guia do Administrador de Sistemas" />
	<atom:link rel='hub' href='http://adrianomendes.wordpress.com/?pushpress=hub'/>
		<item>
		<title>Comando for para compactar logs</title>
		<link>http://adrianomendes.wordpress.com/2011/10/07/comando-for-para-compactar-logs/</link>
		<comments>http://adrianomendes.wordpress.com/2011/10/07/comando-for-para-compactar-logs/#comments</comments>
		<pubDate>Fri, 07 Oct 2011 04:00:23 +0000</pubDate>
		<dc:creator>Adriano Mendes</dc:creator>
				<category><![CDATA[Comandos]]></category>
		<category><![CDATA[comandos]]></category>

		<guid isPermaLink="false">http://adrianomendes.wordpress.com/?p=218</guid>
		<description><![CDATA[Com este comando você pode compactar varios arquivos de log de uma vez for compactar in `ls /var/log/messages*.log`; do echo &#8220;tar -zcvpf ${compactar}.tar.gz ${compactar} &#38;&#38; rm ${compactar}&#8221;; done Filed under: Comandos Tagged: comandos<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=adrianomendes.wordpress.com&amp;blog=3430002&amp;post=218&amp;subd=adrianomendes&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Com este comando você pode compactar varios arquivos de log de uma vez</p>
<p>for compactar in `ls /var/log/messages*.log`; do echo &#8220;tar -zcvpf ${compactar}.tar.gz ${compactar} &amp;&amp; rm ${compactar}&#8221;; done</p>
<br />Filed under: <a href='http://adrianomendes.wordpress.com/category/comandos/'>Comandos</a> Tagged: <a href='http://adrianomendes.wordpress.com/tag/comandos-2/'>comandos</a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/adrianomendes.wordpress.com/218/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/adrianomendes.wordpress.com/218/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/adrianomendes.wordpress.com/218/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/adrianomendes.wordpress.com/218/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/adrianomendes.wordpress.com/218/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/adrianomendes.wordpress.com/218/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/adrianomendes.wordpress.com/218/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/adrianomendes.wordpress.com/218/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/adrianomendes.wordpress.com/218/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/adrianomendes.wordpress.com/218/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/adrianomendes.wordpress.com/218/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/adrianomendes.wordpress.com/218/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/adrianomendes.wordpress.com/218/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/adrianomendes.wordpress.com/218/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=adrianomendes.wordpress.com&amp;blog=3430002&amp;post=218&amp;subd=adrianomendes&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://adrianomendes.wordpress.com/2011/10/07/comando-for-para-compactar-logs/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/4267b4af0715a5715f27391dbae72059?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">Adriano</media:title>
		</media:content>
	</item>
		<item>
		<title>Extensões painel  de controle</title>
		<link>http://adrianomendes.wordpress.com/2011/10/07/extensoes-painel-de-controle/</link>
		<comments>http://adrianomendes.wordpress.com/2011/10/07/extensoes-painel-de-controle/#comments</comments>
		<pubDate>Fri, 07 Oct 2011 03:48:41 +0000</pubDate>
		<dc:creator>Adriano Mendes</dc:creator>
				<category><![CDATA[cpl]]></category>
		<category><![CDATA[extensões painel de controle]]></category>

		<guid isPermaLink="false">http://adrianomendes.wordpress.com/?p=206</guid>
		<description><![CDATA[Segue uma relação de extensões utilizadas para acesso ao painel de controle. Estas utilizadas quando vamos criar alguma GPO e temos que restringir o acesso nem todas eu inclui a descrição pois estava com um pouco de preguiça em olhar uma por uma access.cpl &#8211; Opções de acessibilidade appwiz.cpl &#8211; Adcionar ou remover programas desk.cpl [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=adrianomendes.wordpress.com&amp;blog=3430002&amp;post=206&amp;subd=adrianomendes&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Segue uma relação de extensões utilizadas para acesso ao painel de controle.</p>
<p>Estas utilizadas quando vamos criar alguma GPO e temos que restringir o acesso nem todas eu inclui a descrição pois estava com um pouco de preguiça em olhar uma por uma</p>
<p>access.cpl &#8211; Opções de acessibilidade<br />
appwiz.cpl &#8211; Adcionar ou remover programas<br />
desk.cpl &#8211; Propriedades de video<br />
firewall.cpl &#8211; Firewall XP<br />
hdwwiz.cpl &#8211; Assistente para adcionr novo hardware<br />
inetcpl.cpl &#8211; Propriedades da internet<br />
intl.cpl &#8211; Região e idioma<br />
irprops.cpl<br />
joy.cpl<br />
main.cpl<br />
mmsys.cpl<br />
ncpa.cpl<br />
netsetup.cpl &#8211; Assistente de configuração de rede<br />
nusrmgr.cpl &#8211; Conta de usuário<br />
nwc.cpl<br />
odbccp32.cpl &#8211; Fonte de dados ODBC<br />
powercfg.cpl &#8211; Opções de energia<br />
sysdm.cpl &#8211; Propriedades de Sistema<br />
telephon.cpl &#8211; Opções de telefone e modem<br />
timedate.cpl &#8211; Data e hora<br />
wscui.cpl &#8211; Central de cegurança<br />
wuaucpl.cpl &#8211; Janela de atualização do windows</p>
<p>regedt32.exe &#8211; Abre o regedit</p>
<br /> Tagged: <a href='http://adrianomendes.wordpress.com/tag/cpl/'>cpl</a>, <a href='http://adrianomendes.wordpress.com/tag/extensoes-painel-de-controle/'>extensões painel de controle</a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/adrianomendes.wordpress.com/206/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/adrianomendes.wordpress.com/206/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/adrianomendes.wordpress.com/206/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/adrianomendes.wordpress.com/206/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/adrianomendes.wordpress.com/206/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/adrianomendes.wordpress.com/206/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/adrianomendes.wordpress.com/206/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/adrianomendes.wordpress.com/206/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/adrianomendes.wordpress.com/206/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/adrianomendes.wordpress.com/206/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/adrianomendes.wordpress.com/206/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/adrianomendes.wordpress.com/206/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/adrianomendes.wordpress.com/206/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/adrianomendes.wordpress.com/206/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=adrianomendes.wordpress.com&amp;blog=3430002&amp;post=206&amp;subd=adrianomendes&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://adrianomendes.wordpress.com/2011/10/07/extensoes-painel-de-controle/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/4267b4af0715a5715f27391dbae72059?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">Adriano</media:title>
		</media:content>
	</item>
		<item>
		<title>Registrando a dll cdonts</title>
		<link>http://adrianomendes.wordpress.com/2011/10/07/registrando-a-dll-cdonts/</link>
		<comments>http://adrianomendes.wordpress.com/2011/10/07/registrando-a-dll-cdonts/#comments</comments>
		<pubDate>Fri, 07 Oct 2011 03:37:45 +0000</pubDate>
		<dc:creator>Adriano Mendes</dc:creator>
				<category><![CDATA[cdonts]]></category>
		<category><![CDATA[dll]]></category>
		<category><![CDATA[registrando]]></category>

		<guid isPermaLink="false">http://adrianomendes.wordpress.com/?p=204</guid>
		<description><![CDATA[Para registrar a dll cdonts muito utilizada com asp para envio de e-mails você deve executar este comando Logue com administrador ou com algum usuário que possua direitos administrativos não precisa ser administrador da rede basta ser adm do servidor ou do desktop abra o cmd e navegue até o diretório C:\WINDOWS\system32&#62; e execute o [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=adrianomendes.wordpress.com&amp;blog=3430002&amp;post=204&amp;subd=adrianomendes&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Para registrar a dll cdonts muito utilizada com asp para envio de e-mails você deve executar este comando</p>
<p>Logue com administrador ou com algum usuário que possua direitos administrativos não precisa ser administrador da rede basta ser adm do servidor ou do desktop</p>
<p>abra o cmd  e navegue até o diretório C:\WINDOWS\system32&gt; e execute o comando abaixo</p>
<p>C:\WINDOWS\system32&gt;regsvr32.exe cdonts.dll</p>
<br /> Tagged: <a href='http://adrianomendes.wordpress.com/tag/cdonts/'>cdonts</a>, <a href='http://adrianomendes.wordpress.com/tag/dll/'>dll</a>, <a href='http://adrianomendes.wordpress.com/tag/registrando/'>registrando</a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/adrianomendes.wordpress.com/204/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/adrianomendes.wordpress.com/204/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/adrianomendes.wordpress.com/204/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/adrianomendes.wordpress.com/204/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/adrianomendes.wordpress.com/204/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/adrianomendes.wordpress.com/204/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/adrianomendes.wordpress.com/204/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/adrianomendes.wordpress.com/204/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/adrianomendes.wordpress.com/204/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/adrianomendes.wordpress.com/204/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/adrianomendes.wordpress.com/204/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/adrianomendes.wordpress.com/204/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/adrianomendes.wordpress.com/204/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/adrianomendes.wordpress.com/204/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=adrianomendes.wordpress.com&amp;blog=3430002&amp;post=204&amp;subd=adrianomendes&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://adrianomendes.wordpress.com/2011/10/07/registrando-a-dll-cdonts/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/4267b4af0715a5715f27391dbae72059?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">Adriano</media:title>
		</media:content>
	</item>
		<item>
		<title>Bloquear radio online</title>
		<link>http://adrianomendes.wordpress.com/2011/10/07/bloquear-radio-online/</link>
		<comments>http://adrianomendes.wordpress.com/2011/10/07/bloquear-radio-online/#comments</comments>
		<pubDate>Fri, 07 Oct 2011 03:33:51 +0000</pubDate>
		<dc:creator>Adriano Mendes</dc:creator>
		
		<guid isPermaLink="false">http://adrianomendes.wordpress.com/?p=201</guid>
		<description><![CDATA[# Regra para bloqueio de extensões de rádios online / arquivos de streaming acl streaming rep_mime_type ^video/x-ms-asf acl music urlpath_regex -i \.aif$ \.aifc$ \.aiff$ \.asf$ \.asx$ \.avi$ \.au$ \.m3u$ \.med$ \.mp3$ \.m1v$ \.mp2$ \.mp2v$ \.mpa$ \.mov$ \.mpe$ \.mpg$ \.mpeg$ \.ogg$ \.pls$ \.ram$ \.ra$ \.ram$ \.snd$ \.wma$ \.wmv$ \.wvx$ \.mid$ \.midi$ \.rmi$ http_access deny music http_reply_access [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=adrianomendes.wordpress.com&amp;blog=3430002&amp;post=201&amp;subd=adrianomendes&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p># Regra para bloqueio de extensões de rádios online / arquivos de streaming</p>
<p>acl streaming rep_mime_type ^video/x-ms-asf<br />
acl music urlpath_regex -i \.aif$ \.aifc$ \.aiff$ \.asf$ \.asx$ \.avi$ \.au$ \.m3u$ \.med$ \.mp3$ \.m1v$ \.mp2$ \.mp2v$ \.mpa$ \.mov$ \.mpe$ \.mpg$ \.mpeg$ \.ogg$ \.pls$ \.ram$ \.ra$ \.ram$ \.snd$ \.wma$ \.wmv$ \.wvx$ \.mid$ \.midi$ \.rmi$ </p>
<p>http_access deny music<br />
http_reply_access deny music</p>
<p>http_access deny streaming<br />
http_reply_access deny streaming </p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/adrianomendes.wordpress.com/201/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/adrianomendes.wordpress.com/201/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/adrianomendes.wordpress.com/201/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/adrianomendes.wordpress.com/201/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/adrianomendes.wordpress.com/201/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/adrianomendes.wordpress.com/201/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/adrianomendes.wordpress.com/201/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/adrianomendes.wordpress.com/201/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/adrianomendes.wordpress.com/201/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/adrianomendes.wordpress.com/201/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/adrianomendes.wordpress.com/201/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/adrianomendes.wordpress.com/201/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/adrianomendes.wordpress.com/201/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/adrianomendes.wordpress.com/201/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=adrianomendes.wordpress.com&amp;blog=3430002&amp;post=201&amp;subd=adrianomendes&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://adrianomendes.wordpress.com/2011/10/07/bloquear-radio-online/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/4267b4af0715a5715f27391dbae72059?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">Adriano</media:title>
		</media:content>
	</item>
		<item>
		<title>Squid &#8211; Instalação e configuração</title>
		<link>http://adrianomendes.wordpress.com/2010/03/19/squid-instalacao-e-configuracao/</link>
		<comments>http://adrianomendes.wordpress.com/2010/03/19/squid-instalacao-e-configuracao/#comments</comments>
		<pubDate>Fri, 19 Mar 2010 04:53:16 +0000</pubDate>
		<dc:creator>Adriano Mendes</dc:creator>
		
		<guid isPermaLink="false">http://adrianomendes.wordpress.com/2010/03/19/squid-instalacao-e-configuracao/</guid>
		<description><![CDATA[###### Criar diretorio cd / mkdir firewall cd firewall ###### DOWNLOAD SQUID 3.0 wget http://www.squid-cache.org/Versions/v3/3.0/squid-3.0.STABLE11.tar.gz ###### Verifique se o usuário do squid já existe grep squid /etc/passwd ##### Se aparecer algo assim ##### squid : x : 23:23::/var/spool/squid:/dev/null ##### O usuário já está cadastrado no sistema ###### Caso não exista você deve cria-lo groupadd squid [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=adrianomendes.wordpress.com&amp;blog=3430002&amp;post=133&amp;subd=adrianomendes&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>###### Criar diretorio<br />
cd /<br />
mkdir firewall<br />
cd firewall</p>
<p>###### DOWNLOAD SQUID 3.0<br />
wget http://www.squid-cache.org/Versions/v3/3.0/squid-3.0.STABLE11.tar.gz</p>
<p>###### Verifique se o usuário do squid já existe<br />
grep squid /etc/passwd</p>
<p>##### Se aparecer algo assim<br />
##### squid : x : 23:23::/var/spool/squid:/dev/null<br />
##### O usuário já está cadastrado no sistema<br />
###### Caso não exista você deve cria-lo<br />
groupadd squid<br />
useradd – g squid – s /dev/null squid &gt;/dev/null 2&gt;&amp;1</p>
<p>###### Descompactar o arquivo<br />
tar -xzvf squid-3.0.STABLE11.tar.gz<br />
cd squid-3.0.STABLE11</p>
<p>######<br />
./configure &#8211; - prefix=/usr/local/squid &#8211; - enable-linux-netfilter<br />
make all<br />
make install</p>
<p>###### Criar diretorio de LOG do SQUID<br />
mkdir -p /var/log/squid<br />
mkdir -p /usr/local/squid/var/cache</p>
<p>##### De permissão para o usuário squid no diretorio de logs<br />
chown -R squid.squid /var/log/squid<br />
chown -R squid.squid /usr/local/squid/var</p>
<p>##### Crie um link simbolico<br />
cd /bin<br />
/usr/local/squid/sbin/squid squid</p>
<p>##### O SQUID JÁ ESTÁ INSTALADO VAMOS CONFIGURAR O SQUID.CONF</p>
<p>CONFIGURANDO O SQUID.CONF</p>
<p>###### Crie os arquivos<br />
###### downloads,block,unblock,radioonline,dominio_bloqueado,semcache<br />
###### neste caminho /usr/local/squid/etc/arquivos/</p>
<p>mkdir -p /usr/local/squid/etc/arquivos/<br />
touch /usr/local/squid/etc/arquivos/downloads<br />
touch /usr/local/squid/etc/arquivos/block<br />
touch /usr/local/squid/etc/arquivos/unblock<br />
touch /usr/local/squid/etc/arquivos/radiosonline<br />
touch /usr/local/squid/etc/arquivos/dominio_bloqueado<br />
touch /usr/local/squid/etc/arquivos/semcache</p>
<p>###### De permissão de execução nestes arquivos</p>
<p>chmod 775 /usr/local/squid/etc/arquivos/downloads<br />
chmod 775 /usr/local/squid/etc/arquivos/block<br />
chmod 775 /usr/local/squid/etc/arquivos/unblock<br />
chmod 775 /usr/local/squid/etc/arquivos/radiosonline<br />
chmod 775 /usr/local/squid/etc/arquivos/dominio_bloqueado<br />
chmod 775 /usr/local/squid/etc/arquivos/semcache</p>
<p>##### Acesse o diretorio /usr/local/squid/etc/ e faça um backup do squid.conf original<br />
cd /usr/local/squid/etc/<br />
cp squid.conf backup_squid.conf</p>
<p>##### Agora vamos editar o squid.conf<br />
##### Acesse o arquivo squid.conf e apague tudo que está la dentro e acrescente estas linhas abaixo<br />
##### Note que em algum campos não adcionei endereço IP neste caso você deve adequar as condigurações<br />
##### de acordo com sua rede<br />
vi squid.conf</p>
<p>#################################################################################<br />
###### Atualizado em 23/12/2008 por Adriano Mendes Aguiar #######################<br />
#################################################################################<br />
###### Restringe o seu PROXY apenas para este IP 				#<br />
###### Aqui utilizei um proxy transparente destá forma não houve a necessidade  #<br />
###### de configurar no browser o proxy						#<br />
#################################################################################</p>
<p>http_port ip_do_seu_proxy:3128 transparent<br />
icp_port 0</p>
<p>#################################################################################<br />
########################## Configurações de cache ###############################<br />
#################################################################################</p>
<p>cache_mem 256 MB<br />
maximum_object_size 4096 KB<br />
store_avg_object_size 4 KB<br />
visible_hostname SUAEMPRESA.COM.BR<br />
cache_dir ufs /usr/local/squid/var/cache 1000 8 128<br />
cache_access_log /var/log/squid/access.log<br />
cache_log /var/log/squid/cache.log<br />
cache_store_log none<br />
emulate_httpd_log off<br />
connect_timeout 15000 seconds<br />
read_timeout 300 minutes<br />
cache_mgr Administrador<br />
cache_effective_user squid<br />
cache_effective_group squid<br />
dns_nameservers ip_do_seu_dns</p>
<p>#################################################################################<br />
############################### ACLS PARA USUARIOS ##############################<br />
#################################################################################<br />
################ AQUI VOCÊ PODE DECLARAR TODOS OS IPS DA REDE ###################<br />
#################################################################################<br />
acl desktop1 src 10.1.1.1/255.255.255.255<br />
acl desktop2 src 10.1.1.2/255.255.255.255<br />
acl desktop3 src 10.1.1.3/255.255.255.255<br />
acl desktop4 src 10.1.1.4/255.255.255.255<br />
acl desktop5 src 10.1.1.5/255.255.255.255</p>
<p>#################################################################################<br />
################################# DEMAIS ACLS ###################################<br />
#################################################################################<br />
acl manager proto cache_object<br />
acl localhost src 127.0.0.1/255.255.255.255</p>
<p>#################################################################################<br />
########### DECLARANDO OS SITES QUE PODEM SER LIBERADOS OU BLOQUEADOS ###########<br />
#################################################################################<br />
acl uol.com.br url_regex uol.com.br<br />
acl terra.com.br url_regex terra.com.br<br />
acl ig.com.br url_regex ig.com.br<br />
acl video.globo.com url_regex video.globo.com</p>
<p>acl SSL_ports port 443 444 447 563 7443.<br />
acl Safe_ports port 80 21 443 444 447 563 777 591 488 280 70 210 6330 7443 1024-65535 50000-50002<br />
acl CONNECT method CONNECT</p>
<p>acl downloads urlpath_regex &#8220;/usr/local/squid/etc/arquivos/downloads&#8221;<br />
acl blacklist url_regex &#8220;/usr/local/squid/etc/arquivos/block&#8221;.<br />
acl whitelist url_regex &#8220;/usr/local/squid/etc/arquivos/unblock&#8221;.<br />
acl streaming rep_mime_type ^video/x-ms-asf &#8220;/usr/local/squid/etc/arquivos/radioonline&#8221;<br />
acl dominio_bloqueado dstdomain &#8220;/usr/local/squid/etc/arquivos/dominio_bloqueado&#8221;.<br />
acl cache urlpath_regex &#8220;/usr/local/squid/etc/arquivos/semcache&#8221;?</p>
<p>acl rede_interna src RANGE_DA_SUA_REDE MASCARA_DE_REDE </p>
<p>#################################################################################<br />
###### SE VOCÊ TIVER MAIS DE UM GATEWAY NA SUA REDE AQUI VOCÊ PODE DEFINIR ######<br />
###################### QUAL GATEWAY O SQUID IRA UTILIZAR ########################<br />
###### SE VOCÊ UTILIZA APENAS UM GATEWAY NÃO IRÁ PRECISAR DESTAS LINHAS #########<br />
#################################################################################<br />
acl gateway_1 src &#8220;/usr/local/squid/etc/arquivos/gtw1&#8243;<br />
tcp_outgoing_address IP_DO_GATEWAY_1 gateway_1</p>
<p>acl gateway_2 src &#8220;/usr/local/squid/etc/bloqueados/gtw2&#8243;<br />
tcp_outgoing_address IP_DO_GATEWAY_2 gateway_2</p>
<p>#################################################################################<br />
########################    PERMISSOES DE ACESSO   ##############################<br />
#################################################################################</p>
<p>http_access allow uol.com.br<br />
http_access allow terra.com.br<br />
http_access allow ig.com.br</p>
<p>#################################################################################<br />
##############################    NEGA ACESSO   #################################<br />
#################################################################################</p>
<p>http_access deny all video.globo.com<br />
http_reply_access deny all video.globo.com</p>
<p>http_access deny dominio_bloqueado<br />
http_reply_access deny dominio_bloqueado</p>
<p>http_access deny streaming<br />
http_reply_access deny all streaming</p>
<p>http_access deny downloads<br />
http_reply_access deny all downloads</p>
<p>http_access deny all !Safe_ports<br />
http_access allow localhost manager<br />
http_access allow all manager<br />
http_access allow all CONNECT !SSL_ports<br />
http_access allow all !blacklist<br />
http_access allow all whitelist<br />
http_access allow all rede_interna<br />
icp_access allow all<br />
miss_access allow all<br />
no_cache deny cache</p>
<p>################################################################################<br />
##### Adcione estas linhas no arquivo /usr/local/squid/etc/arquivos/downloads ##<br />
################################################################################<br />
^video/x-ms-asf-plugin$<br />
^video/x-ms-asf$<br />
^video/mpeg$<br />
^video/x-ms-wmv$<br />
^video/quicktime$<br />
^audio/mpeg$<br />
.ACM$<br />
.acm$<br />
.bat$<br />
.pif$<br />
.bin$<br />
.cue$<br />
.COM$<br />
.com$<br />
.Com$<br />
.dll$<br />
.DLL$<br />
.exe$<br />
.iso$<br />
.ISO$<br />
.Mp3$<br />
.MP3$<br />
.mP3$<br />
.mp3$<br />
.mpg$<br />
.MPG$<br />
.Mpg$<br />
.mPg$<br />
.mpG$<br />
.MpG$<br />
.mpeg$<br />
.MPEG$<br />
.MPEg$<br />
.MPeg$<br />
.Mpeg$<br />
.mPEG$<br />
.mpEG$<br />
.mpeG$<br />
.MpeG$<br />
.MpEg$<br />
.wma$<br />
.WMA$<br />
.Wma$<br />
.WMa$<br />
.wMA$<br />
.wmA$<br />
.WmA$<br />
.wMa$<br />
.wav$<br />
.scr$<br />
.SRC$<br />
.Src$<br />
.Src$<br />
.sRC$<br />
.srC$<br />
.RTF$<br />
.rtf$<br />
.tar.gz$<br />
.tgz$<br />
.tar$<br />
.TAR$<br />
.tar.bz2$<br />
.tbz$<br />
.rar$<br />
.zip$<br />
.PIF$<br />
.pif$<br />
.PPS$<br />
.pps$<br />
.ppt$<br />
.wmv$<br />
.WMV$<br />
.Wmv$<br />
.WMv$<br />
.wMV$<br />
.wmV$<br />
.WmV$<br />
.wMv$<br />
.au<br />
.asx$<br />
.mms$<br />
.aif$<br />
.aifc$<br />
.aiff$<br />
.asf$<br />
.asx$<br />
.avi$<br />
.au$$<br />
.m3u$<br />
.med$<br />
.m1v$<br />
.mp2$<br />
.mp2v$<br />
.mpa$<br />
.mov$<br />
.mpe$<br />
.ogg$<br />
.pls$<br />
.ram$<br />
.ra$<br />
.ram$<br />
.snd$<br />
.wvx$<br />
.mid$<br />
.midi$<br />
.rmi$<br />
.mpeg$<br />
.mpg$<br />
.rm$<br />
.ogm$<br />
.wmv$<br />
.pls$<br />
.flv$<br />
.cab$</p>
<p>################################################################################<br />
######### Adcione estas linhas no arquivo /usr/local/squid/etc/arquivos/block ##<br />
######### Neste arquivo você deve adcionar os sites que devem ser bloqueados ###<br />
################################################################################<br />
orkut.com<br />
msn.com<br />
hotmail.com</p>
<p>################################################################################<br />
####### Adcione estas linhas no arquivo /usr/local/squid/etc/arquivos/unblock ##<br />
######### Neste arquivo você deve adcionar os sites que devem ser liberados ####<br />
################################################################################<br />
www.google.com.br<br />
www.cade.com.br</p>
<p>################################################################################<br />
## Adcione estas linhas no arquivo /usr/local/squid/etc/arquivos/radiosonline ##<br />
######### Neste arquivo você deve adcionar as extensões de radios online #######<br />
################################################################################<br />
.asx$<br />
.mms$<br />
.aif$<br />
.aifc$<br />
.aiff$<br />
.asf$<br />
.asx$<br />
.avi$<br />
.au$$<br />
.m3u$<br />
.med$<br />
.m1v$<br />
.mp2$<br />
.mp2v$<br />
.mpa$<br />
.mov$<br />
.mpe$<br />
.ogg$<br />
.pls$<br />
.ram$<br />
.ra$<br />
.ram$<br />
.snd$<br />
.wvx$<br />
.mid$<br />
.midi$<br />
.rmi$<br />
.mpeg$<br />
.mpg$<br />
.rm$<br />
.ogm$<br />
.wma$<br />
.wmv$<br />
.pls$<br />
.flv$</p>
<p>###################################################################################<br />
#adcione estas linhas no arquivo /usr/local/squid/etc/arquivos/dominio_bloqueado ##<br />
##### Neste arquivo você deve adcionar os dominios que devem ser bloqueados #######<br />
###################################################################################<br />
.ac<br />
.ad<br />
.ae<br />
.af<br />
.ag<br />
.ai<br />
.al<br />
.am<br />
.an<br />
.ao<br />
.aq<br />
.as<br />
.at<br />
.aw<br />
.ax<br />
.az<br />
.ba<br />
.bb<br />
.bd<br />
.be<br />
.bf<br />
.bg<br />
.bh<br />
.bi<br />
.bj<br />
.bm<br />
.bn<br />
.bo<br />
.bs<br />
.bt<br />
.bv<br />
.bw<br />
.by<br />
.bz<br />
.cax<br />
.cc<br />
.cd<br />
.cf<br />
.cg<br />
.ch<br />
.ci<br />
.ck<br />
.cm<br />
.cn<br />
.cr<br />
.cu<br />
.cv<br />
.cx<br />
.cy<br />
.cz<br />
.de<br />
.dj<br />
.dk<br />
.dm<br />
.do<br />
.dz<br />
.ec<br />
.ee<br />
.eg<br />
.eh<br />
.er<br />
.es<br />
.et<br />
.eu<br />
.fi<br />
.fj<br />
.fk<br />
.fm<br />
.fo<br />
.fr<br />
.ga<br />
.gb<br />
.gd<br />
.ge<br />
.gf<br />
.gg<br />
.gh<br />
.gi<br />
.gl<br />
.gm<br />
.gn<br />
.gp<br />
.gq<br />
.gr<br />
.gs<br />
.gt<br />
.gu<br />
.gw<br />
.gy<br />
.hk<br />
.hm<br />
.hn<br />
.hr<br />
.ht<br />
.hu<br />
.id<br />
.ie<br />
.il<br />
.im<br />
.in<br />
.io<br />
.iq<br />
.ir<br />
.is<br />
.it<br />
.je<br />
.jm<br />
.jo<br />
.jp<br />
.ke<br />
.kg<br />
.kh<br />
.ki<br />
.km<br />
.kn<br />
.kp<br />
.kr<br />
.kw<br />
.ky<br />
.kz<br />
.la<br />
.lb<br />
.lc<br />
.li<br />
.lk<br />
.lr<br />
.ls<br />
.lt<br />
.lu<br />
.lv<br />
.ly<br />
.ma<br />
.mc<br />
.md<br />
.me<br />
.mg<br />
.mh<br />
.mk<br />
.ml<br />
.mm<br />
.mn<br />
.mo<br />
.mp<br />
.mq<br />
.mr<br />
.ms<br />
.mt<br />
.mu<br />
.mv<br />
.mw<br />
.my<br />
.mz<br />
.na<br />
.nc<br />
.ne<br />
.nf<br />
.ng<br />
.ni<br />
.nl<br />
.no<br />
.np<br />
.nr<br />
.nu<br />
.nz<br />
.om<br />
.pa<br />
.pe<br />
.pf<br />
.pg<br />
.ph<br />
.pk<br />
.pl<br />
.pm<br />
.pn<br />
.pr<br />
.ps<br />
.pt<br />
.pw<br />
.py<br />
.qa<br />
.re<br />
.ro<br />
.rs<br />
.ru<br />
.rw<br />
.sa<br />
.sb<br />
.sc<br />
.sd<br />
.se<br />
.sg<br />
.sh<br />
.si<br />
.sj<br />
.sk<br />
.sl<br />
.sm<br />
.sn<br />
.so<br />
.sr<br />
.st<br />
.su<br />
.sv<br />
.sy<br />
.sz<br />
.tc<br />
.td<br />
.tf<br />
.tg<br />
.th<br />
.tj<br />
.tk<br />
.tl<br />
.tm<br />
.tn<br />
.to<br />
.tp<br />
.tr<br />
.tt<br />
.tw<br />
.tz<br />
.ua<br />
.ug<br />
.uk<br />
.um<br />
.us<br />
.uy<br />
.uz<br />
.va<br />
.vc<br />
.ve<br />
.vg<br />
.vi<br />
.vn<br />
.vu<br />
.wf<br />
.ws<br />
.ye<br />
.yt<br />
.yu<br />
.za<br />
.zm<br />
.zw</p>
<p>###################################################################################<br />
########  adcione estas linhas no arquivo /usr/local/squid/etc/arquivos/semcache ##<br />
# Neste arquivo você deve adcionar os arquivos ou páginas que não ter cache #######<br />
###################################################################################<br />
.jpg<br />
.jpeg<br />
.gif</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/adrianomendes.wordpress.com/133/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/adrianomendes.wordpress.com/133/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/adrianomendes.wordpress.com/133/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/adrianomendes.wordpress.com/133/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/adrianomendes.wordpress.com/133/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/adrianomendes.wordpress.com/133/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/adrianomendes.wordpress.com/133/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/adrianomendes.wordpress.com/133/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/adrianomendes.wordpress.com/133/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/adrianomendes.wordpress.com/133/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/adrianomendes.wordpress.com/133/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/adrianomendes.wordpress.com/133/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/adrianomendes.wordpress.com/133/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/adrianomendes.wordpress.com/133/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=adrianomendes.wordpress.com&amp;blog=3430002&amp;post=133&amp;subd=adrianomendes&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://adrianomendes.wordpress.com/2010/03/19/squid-instalacao-e-configuracao/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/4267b4af0715a5715f27391dbae72059?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">Adriano</media:title>
		</media:content>
	</item>
		<item>
		<title>OpenVPN &#8211; Instalar e configurar</title>
		<link>http://adrianomendes.wordpress.com/2010/03/19/openvpb-instalar-e-configurar/</link>
		<comments>http://adrianomendes.wordpress.com/2010/03/19/openvpb-instalar-e-configurar/#comments</comments>
		<pubDate>Fri, 19 Mar 2010 04:44:54 +0000</pubDate>
		<dc:creator>Adriano Mendes</dc:creator>
				<category><![CDATA[configurando openvpn]]></category>
		<category><![CDATA[configurar openvpn]]></category>
		<category><![CDATA[openvpn]]></category>
		<category><![CDATA[openvpn instalar e configirar]]></category>
		<category><![CDATA[VPN Site-to-Site]]></category>

		<guid isPermaLink="false">http://adrianomendes.wordpress.com/2010/03/19/openvpb-instalar-e-configurar/</guid>
		<description><![CDATA[Este artigo demonstra como podemos fechar uma VPN Site-to-Site entre 2 redes. Todas as configurações utilizadas foram feitas em ambiente de teste e produção. VPN Site-to-Site Sistema Operacional &#8211; Fedora Core release 5 (Bordeaux) em ambas as máquinas. Matriz: * Hostname &#8211; FW_Matriz * Ip Lan ETH0 &#8211; 10.2.30.1 * Ip Wan ETH1 -200.200.200.200 * [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=adrianomendes.wordpress.com&amp;blog=3430002&amp;post=130&amp;subd=adrianomendes&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Este artigo demonstra como podemos fechar uma VPN Site-to-Site entre 2 redes. Todas as configurações utilizadas foram feitas em ambiente de teste e produção.</p>
<p>VPN Site-to-Site<br />
Sistema Operacional &#8211; Fedora Core release 5 (Bordeaux) em ambas as máquinas.</p>
<p>Matriz:</p>
<p>    * Hostname &#8211; FW_Matriz<br />
    * Ip Lan ETH0 &#8211; 10.2.30.1<br />
    * Ip Wan ETH1 -200.200.200.200<br />
    * Rede Matriz &#8211; 10.2.30.0/24 </p>
<p>Filial:</p>
<p>    * Hostname &#8211; FW_Filial<br />
    * Ip Lan ETH0 &#8211; 10.2.40.1<br />
    * Ip Wan ETH1 &#8211; 200.201.202.203<br />
    * Rede Filial &#8211; 10.2.40.0/24 </p>
<p>Configurando nossa VPN na Matriz:</p>
<p>O OpenVPN trabalha em 3 modos: nenhuma criptografia (apenas o túnel), criptografia com chaves estáticas e no modo TLS, em que as chaves são trocadas periodicamente.</p>
<p>Neste caso vou utilizar criptografia com chaves estáticas.</p>
<p>Dependências necessárias:</p>
<p>    * openssl<br />
    * lzo<br />
    * pam<br />
    * openssl-devel<br />
    * lzo-devel<br />
    * pam-devel </p>
<p>Faça download do pacote LZO:</p>
<p>$ wget http://www.oberhumer.com/opensource/lzo/download/lzo-2.02.tar.gz<br />
$ tar -xzvf lzo-2.02.tar.gz<br />
$ cd cd lzo-2.02<br />
$ ./configure &#8211;prefix=/usr &#8211;enable-shared &amp;&amp; make<br />
# make install &amp;&amp; install -v -m755 -d /usr/share/doc/lzo-2.02 &amp;&amp; install -v -m644 doc/* /usr/share/doc/lzo-2.02</p>
<p>Faça o download da versão mais recente do openVPN: http://openvpn.net/index.php/downloads.html</p>
<p>$ wget http://openvpn.net/release/openvpn-2.0.9.tar.gz<br />
$ tar -xzvf openvpn-2.0.9.tar.gz<br />
$ cd openvpn-2.0.9<br />
$ ./configure<br />
$ make<br />
# make install</p>
<p>Ou instale pelo método mais prático:</p>
<p># yum install openvpn openssl lzo pam openssl-devel lzo-devel pam-devel </p>
<p>Configurando a matriz<br />
Depois de instalado devemos gerar uma chave criptografada.</p>
<p># openvpn -genkey -secret /etc/openvpn/static.key</p>
<p>A chave foi gerada no diretório /etc/openvpn.</p>
<p>Dê um cat no arquivo apenas para visualização:</p>
<p># cat /etc/openvpn/static.key</p>
<p>O resultado será algo assim:</p>
<p>#<br />
# 2048 bit OpenVPN static key<br />
#<br />
&#8211; BEGIN OpenVPN Static key V1 &#8211;<br />
0cfdaa32103e4c666c45812dabda87a1<br />
4f545e028388469311sssb9d67e16f0<br />
f063f47f21ff6b5f85fbcaaa0a7d3b9c91b<br />
e08f712d8352b6b4db74c58d018d41fe<br />
eb337713ce2a2171cebad4c6ac475016<br />
bb985c23f51e0e737f4caa5850c17f21e5<br />
f4f851074e9f8e4aaea9465d024b7d0fb01d<br />
8fc9a01d47e32892ff71e0ef328986cc4aa4<br />
842c1a4bbb476549493e92ec40364963f<br />
dd6cc0c0cf49b902f46418b813805e0c<br />
f43d7dd183422ec3bb1fc7cc863b3a80<br />
e004b29c0193f799a01ac7c0ee73f52661<br />
ea075a64f26bc046d889978b1e8d9f5e8<br />
9a478c0fe7dfc0a134779b1beee791e90ddc<br />
706c7a01a3d3e30bfc697e4b31a19069<br />
b08d45c8b4b436255c7979af1ba52a0c<br />
&#8211; END OpenVPN Static key V1 &#8211;</p>
<p>Agora acesse o diretório:</p>
<p># cd /etc/openvpn</p>
<p>Crie um backup do arquivo original openvpn.conf:</p>
<p># mv openvpn.conf openvpn.conf.ori</p>
<p>Crie o arquivo novamente:</p>
<p># touch openvpn.conf</p>
<p>E preencha-o com esse conteúdo:</p>
<p>############### Configuração matriz ################<br />
dev tun<br />
ifconfig 10.2.60.1 10.2.60.2<br />
cd /etc/openvpn<br />
secret static.key<br />
port 5000<br />
comp-lzo<br />
user nobody<br />
group nobody<br />
ping 10<br />
log /var/log/openvpn_matriz.log<br />
log-append /var/log/openvpn_matriz.log<br />
verb 6 </p>
<p>Em seguida vamos iniciar a conexão no servidor, faltando apenas configurar a filial.</p>
<p>Execute o seguinte comando no servidor da Matriz:</p>
<p># openvpn -config /etc/openvpn/openvpn.conf -daemon</p>
<p>Ou digite:</p>
<p># /etc/init.d/openvpn start</p>
<p>Caso não apresente nenhum erro digite no prompt:</p>
<p># ifconfig</p>
<p>E verifique se a interface tun0 está up.</p>
<p>tun0 Link encap:Point-to-Point Protocol<br />
     inet addr:10.2.60.1 P-t-P:10.2.60.2 Mask:255.255.255.255<br />
     UP POINTOPOINT RUNNING NOARP MULTICAST MTU:1255 Metric:1<br />
     RX packets:1383257 errors:0 dropped:0 overruns:0 frame:0<br />
    TX packets:1144968 errors:0 dropped:0 overruns:0 carrier:0<br />
    collisions:0 txqueuelen:10<br />
    RX bytes:82865921 (79.0 Mb) TX bytes:383951667 (366.1 Mb)</p>
<p>Se aparecer algo assim, a configuração da matriz já está ok, faltando apenas liberar a porta 5000.</p>
<p>Agora para se certificar que o serviço está rodando na porta correta, digite no prompt:</p>
<p># netstat -putan</p>
<p>O resultado será algo parecido com isso, note que o OPENVPN está rodando na porta 5000 em cima de UDP:</p>
<p>Active Internet connections (servers and established)<br />
Proto Recv-Q Send-Q Local Address Foreign Address State PID/Program name<br />
tcp 0 0 0.0.0.0:199 0.0.0.0:* LISTEN 2692/snmpd<br />
tcp 0 0 0.0.0.0:22 0.0.0.0:* LISTEN 1780/sshd<br />
tcp 0 20 10.2.30.1:22 10.2.30.3:4347 ESTABLISHED 21703/1<br />
udp 0 0 0.0.0.0:5000 0.0.0.0:* 30704/openvpn<br />
udp 0 0 0.0.0.0:161 0.0.0.0:* 2692/snmpd</p>
<p>Se você estiver em dúvida se o serviço está rodando, digite no prompt:</p>
<p># ps aux<br />
root      2700  0.0  0.2   1588   416 tty3     Ss+  Feb12   0:00 /sbin/mingetty tty3<br />
root      2701  0.0  0.2   1588   416 tty4     Ss+  Feb12   0:00 /sbin/mingetty tty4<br />
root      2702  0.0  0.2   1584   412 tty5     Ss+  Feb12   0:00 /sbin/mingetty tty5<br />
root      2703  0.0  0.2   1588   416 tty6     Ss+  Feb12   0:00 /sbin/mingetty tty6<br />
root      2793  0.0  0.0      0     0 ?        S131072] S=[107520-&gt;131072]<br />
Thu Feb 19 16:39:14 2009 us=104491 UDPv4 link local (bound): [undef]:5000<br />
Thu Feb 19 16:39:14 2009 us=104578 UDPv4 link remote: [undef]<br />
Thu Feb 19 16:39:18 2009 us=990824 UDPv4 READ [60] from 200.201.200.203:5000: DATA len=60<br />
Thu Feb 19 16:39:18 2009 us=991365 Peer Connection Initiated with 200.201.200.203:5000<br />
Thu Feb 19 16:39:18 2009 us=991922 Initialization Sequence Completed<br />
Thu Feb 19 16:39:24 2009 us=462779 UDPv4 WRITE [60] to 200.201.200.203:5000: DATA len=60<br />
Thu Feb 19 16:39:24 2009 us=468669 UDPv4 READ [196] from 200.201.200.203:5000: DATA len=196<br />
Thu Feb 19 16:39:34 2009 us=671371 UDPv4 READ [60] from 200.201.200.203:5000: DATA len=60<br />
Thu Feb 19 16:39:44 2009 us=757217 UDPv4 READ [60] from 200.201.200.203:5000: DATA len=60<br />
Thu Feb 19 16:39:54 2009 us=986099 UDPv4 READ [60] from 200.201.200.203:5000: DATA len=60<br />
Thu Feb 19 16:40:05 2009 us=6781 UDPv4 READ [60] from 200.201.200.203:5000: DATA len=60<br />
Thu Feb 19 16:40:15 2009 us=246863 UDPv4 READ [60] from 200.201.200.203:5000: DATA len=60<br />
Thu Feb 19 16:40:15 2009 us=613320 TUN READ [60]<br />
Thu Feb 19 16:40:15 2009 us=613817 UDPv4 WRITE [100] to 200.201.200.203:5000: DATA len=100<br />
Thu Feb 19 16:40:15 2009 us=620200 UDPv4 READ [100] from 200.201.200.203:5000: DATA len=100<br />
Thu Feb 19 16:40:15 2009 us=620570 TUN WRITE [60]<br />
Thu Feb 19 16:40:16 2009 us=613581 TUN READ [60]<br />
Thu Feb 19 16:40:16 2009 us=614243 UDPv4 WRITE [100] to 200.201.200.203:5000: DATA len=100</p>
<p>Dica: Toda vez que você reiniciar o OPENVPN suas rotas serão perdidas.</p>
<p>Para que isso não aconteça, acesse o diretório /etc/openvpn e crie um arquivo chamado openvpn-startup:</p>
<p># cd /etc/openvpn<br />
# touch openvpn-startup<br />
# chmod 777 openvpn-startup</p>
<p>Dentro do arquivo &#8220;openvpn-startup&#8221; adicione as rotas que você precisa, fazendo isso toda vez que o openVPN for iniciando as rotas serão criadas automaticamente.</p>
<p>Para entender o por quê disso, dê um cat em /etc/init.d/openvpn e dê uma olhada no script de inicialização do OPENVPN. Note que em um determinado momento ele procura um arquivo openvpn-startup para ser executado durante o processo de inicialização. </p>
<br /> Tagged: <a href='http://adrianomendes.wordpress.com/tag/configurando-openvpn/'>configurando openvpn</a>, <a href='http://adrianomendes.wordpress.com/tag/configurar-openvpn/'>configurar openvpn</a>, <a href='http://adrianomendes.wordpress.com/tag/openvpn/'>openvpn</a>, <a href='http://adrianomendes.wordpress.com/tag/openvpn-instalar-e-configirar/'>openvpn instalar e configirar</a>, <a href='http://adrianomendes.wordpress.com/tag/vpn-site-to-site/'>VPN Site-to-Site</a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/adrianomendes.wordpress.com/130/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/adrianomendes.wordpress.com/130/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/adrianomendes.wordpress.com/130/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/adrianomendes.wordpress.com/130/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/adrianomendes.wordpress.com/130/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/adrianomendes.wordpress.com/130/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/adrianomendes.wordpress.com/130/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/adrianomendes.wordpress.com/130/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/adrianomendes.wordpress.com/130/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/adrianomendes.wordpress.com/130/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/adrianomendes.wordpress.com/130/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/adrianomendes.wordpress.com/130/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/adrianomendes.wordpress.com/130/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/adrianomendes.wordpress.com/130/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=adrianomendes.wordpress.com&amp;blog=3430002&amp;post=130&amp;subd=adrianomendes&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://adrianomendes.wordpress.com/2010/03/19/openvpb-instalar-e-configurar/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://0.gravatar.com/avatar/4267b4af0715a5715f27391dbae72059?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">Adriano</media:title>
		</media:content>
	</item>
	</channel>
</rss>
