"Christian E. Lysel" <news.sunsite.dk@spindelnet.dk> wrote:
>Hvad er et minimalistisk system?
Jeg kan som sagt kun byde paa "forholdsvis minimalistisk".
Nedenstaaende er fra en maskine, jeg gik i gang med at installere
for en maaneds tid siden og aldrig kom videre med. Derfor er den
stadig lidt mere minimalistisk end mine oevrige maskine, og af
samme grund er pakkerne ogsaa lidt uopdaterede.
Jeg vil tro, at ca 10% er noget, jeg selv har efterinstalleret -
herunder ogsaa traceroute (!). Som det kan ses, har jeg leget
lidt med at sammenligne diverse firewall-scripts, saa der er en
syndig forvirring af baade ipchains, iptables og forskellige
scripts:
>s2
# dpkg -l
>Desired=Unknown/Install/Remove/Purge/Hold
>| Status=Not/Installed/Config-files/Unpacked/Failed-config/Half-installed
>|/ Err?=(none)/Hold/Reinst-required/X=both-problems (Status,Err:
>uppercase=bad)
>||/ Name Version Description
>+++-=======================-=======================-==============================================================
>ii adduser 3.47 Add and remove users and groups
>ii apt 0.5.4 Advanced front-end for dpkg
>ii apt-utils 0.5.4 APT utility programs
>ii at 3.1.8-11 Delayed job execution and batch processing
>ii base-config 1.33.18 Debian base configuration package
>ii base-files 3.0.2 Debian base system miscellaneous files
>ii base-passwd 3.4.1 Debian Base System Password/Group Files
>ii bash 2.05a-11 The GNU Bourne Again SHell
>ii bsdmainutils 5.20020211-4.99 More utilities from FreeBSD.
>ii bsdutils 2.11n-4 Basic utilities from 4.4BSD-Lite.
>ii console-common 0.7.14 Basic infrastructure for text console configuration
>ii console-data 1999.08.29-24 Keymaps, fonts, charset maps, fallback tables for console-tool
>ii console-tools 0.2.3-23.3 Linux console and font utilities.
>ii console-tools-libs 0.2.3-23.3 Shared libraries for Linux console and font manipulation.
>ii cpio 2.4.2-39 GNU cpio -- a program to manage archives of files.
>ii cron 3.0pl1-72 management of regular background processing
>ii debconf 1.0.32 Debian configuration management system
>ii debianutils 1.16 Miscellaneous utilities specific to Debian.
>ii dhcp-client 2.0pl5-11 DHCP Client
>ii diff 2.7-29 File comparison utilities
>ii dpkg 1.9.21 Package maintenance system for Debian
>ii e2fsprogs 1.27-2 The EXT2 file system utilities and libraries.
>ii ed 0.2-19 The classic unix line editor
>ii fdutils 5.3-7 Linux floppy utilities
>ii fileutils 4.1-10 GNU file management utilities
>ii findutils 4.1.7-2 utilities for finding files--find, xargs, and locate
>rc firewall-easy 0.30-5 Easy to use packet filter firewall (usually zero config)
>ii gawk 3.1.0-3 GNU awk, a pattern scanning and processing language
>ii gettext-base 0.10.40-5 GNU Internationalization utilities for the base system
>ii grep 2.4.2-3 GNU grep, egrep and fgrep.
>ii groff-base 1.17.2-15.woody.1 GNU troff text-formatting system (base system components)
>ii gzip 1.3.2-3woody1 The GNU compression utility.
>ii hdparm 4.5-1.2 Tune hard disk parameters for high performance.
>ii host 20000331-3 Utility for Querying DNS Servers
>ii hostname 2.09 A utility to set/show the host name or domain name
>ii ifupdown 0.6.4-4 High level tools to configure network interfaces
>ii info 4.1-2 Standalone GNU Info documentation browser
>ii ipchains 1.3.10-15 Network firewalling for Linux 2.2.x
>ii iproute 20010824-8 Professional tools to control the networking in Linux kernels
>ii iptables 1.2.6a-5 IP packet filter administration tools for 2.4.4+ kernels
>ii joe 2.8-20 user friendly full screen text editor
>ii klogd 1.4.1-10 Kernel Logging Daemon
>ii less 374-4 A file pager program, similar to more(1)
>ii libc6 2.2.5-11.5 GNU C Library: Shared libraries and Timezone data
>ii libcap1 1.10-12 support for getting/setting POSIX.1e capabilities
>ii libdb2 2.7.7.0-7 The Berkeley database routines (run-time files).
>ii libdb3 3.2.9-16 Berkeley v3 Database Libraries [runtime]
>ii libgdbmg1 1.7.3-27 GNU dbm database routines (runtime version). [libc6 version]
>ii libident 0.22-2 simple RFC1413 client library - runtime
>ii libldap2 2.0.23-6.3 OpenLDAP libraries.
>ii liblockfile1 1.03 NFS-safe locking library, includes dotlockfile program
>ii libncurses5 5.2.20020112a-7 Shared libraries for terminal handling
>ii libnewt0 0.50.17-9.6 Not Erik's Windowing Toolkit - text mode windowing with slang
>ii libpam-modules 0.72-35 Pluggable Authentication Modules for PAM
>ii libpam-runtime 0.72-35 Runtime support for the PAM library
>ii libpam0g 0.72-35 Pluggable Authentication Modules library
>ii libpcap0 0.6.2-2 System interface for user-level packet capture.
>ii libpcre3 3.4-1.1 Philip Hazel's Perl Compatible Regular Expression library
>ii libpopt0 1.6.2-7 lib for parsing cmdline parameters
>ii libreadline4 4.2a-5 GNU readline and history libraries, run-time libraries.
>ii libsasl7 1.5.27-3 Authentication abstraction library.
>ii libssl0.9.6 0.9.6c-2.woody.3 SSL shared libraries
>ii libstdc++2.10-glibc2.2 2.95.4-11woody1 The GNU stdc++ library
>ii libwrap0 7.6-9 Wietse Venema's TCP wrappers library
>ii lilo 22.2-3 LInux LOader - The Classic OS loader can load Linux and others
>ii login 20000902-12 System login tools
>ii logrotate 3.5.9-8 Log rotation utility
>ii mailx 8.1.2-0.20020411cvs-1 A simple mail user agent.
>ii makedev 2.3.1-58 Creates device files in /dev.
>ii man-db 2.3.20-18 The on-line manual pager
>ii manpages 1.39-1.1 Man pages about using a Linux system.
>ii mawk 1.3.3-8 a pattern scanning and text processing language
>ii mbr 1.1.5-1 Master Boot Record for IBM-PC compatible computers.
>ii modconf 0.2.43 Device Driver Configuration
>ii modutils 2.4.15-1 Linux module utilities.
>ii mount 2.11n-4 Tools for mounting and manipulating filesystems.
>ii nano 1.0.6-2 free Pico clone with some new features
>ii ncurses-base 5.2.20020112a-7 Descriptions of common terminal types
>ii ncurses-bin 5.2.20020112a-7 Terminal-related programs and man pages
>ii net-tools 1.60-4 The NET-3 networking toolkit
>ii netbase 4.07 Basic TCP/IP networking system
>ii netkit-inetd 0.10-9 The Internet Superserver
>ii netkit-ping 0.10-9 The ping utility from netkit
>ii ntp 4.1.0-8 Daemon and utilities for full NTP v4 timekeeping participation
>ii ntp-simple 4.1.0-8 NTP v4 daemon for simple systems.
>ii nvi 1.79-20 4.4BSD re-implementation of vi.
>ii passwd 20000902-12 Change and administer password and group data.
>ii pciutils 2.1.9-4 Linux PCI Utilities (for 2.[1234].x kernels)
>ii perl-base 5.6.1-8.2 The Pathologically Eclectic Rubbish Lister.
>ii postfix 1.1.11-0.woody2 A high-performance mail transport agent
>ii postfix-ldap 1.1.11-0.woody2 LDAP map support for Postfix
>ii postfix-pcre 1.1.11-0.woody2 PCRE map support for Postfix
>ii ppp 2.4.1.uus-4 Point-to-Point Protocol (PPP) daemon.
>ii pppconfig 2.0.14 A text menu based utility for configuring ppp.
>ii pppoe 3.3-1.1 PPP over Ethernet driver
>ii pppoeconf 0.9.10.6 configures PPPoE/ADSL
>ii procps 2.0.7-8 The /proc file system utilities.
>ii psmisc 20.2-2.1 Utilities that use the proc filesystem
>ii sed 3.02-8 The GNU sed stream editor.
>ii setserial 2.17-24 Controls configuration of serial ports.
>ii shellutils 2.0.11-11 The GNU shell programming utilities.
>ii shorewall 1.2.12-1 Shoreline Firewall (Shorewall)
>ii shorewall-doc 1.2.12-1 Shoreline Firewall (Shorewall) Documentation
>ii slang1 1.4.4-7.2 The S-Lang programming library - runtime version.
>ii ssh 3.4p1-1 Secure rlogin/rsh/rcp replacement (OpenSSH)
>ii sysklogd 1.4.1-10 System Logging Daemon
>ii syslinux 1.66-1 Bootloader for Linux/i386 using MS-DOS floppies
>ii sysvinit 2.84-2woody1 System-V like init.
>ii tar 1.13.25-2 GNU tar
>ii tasksel 1.18 Tool for selecting tasks for installation on Debian system
>ii tcpd 7.6-9 Wietse Venema's TCP wrapper utilities
>ii telnet 0.17-18 The telnet client.
>ii textutils 2.0-12 The GNU text file processing utilities.
>ii traceroute 1.4a12-9 Traces the route taken by packets over a TCP/IP network.
>ii util-linux 2.11n-4 Miscellaneous system utilities.
>ii whiptail 0.50.17-9.6 Displays user-friendly dialog boxes from shell scripts.
>ii zlib1g 1.1.4-1 compression library - runtime
Det blev trods alt ogsaa til en del:
>s2
# df
>Filesystem 1k-blocks Used Available Use% Mounted on
>/dev/hda3 6087808 156824 5621736 3% /
>/dev/hda1 7746 2883 4463 40% /boot
>Hvad siger en "ps ax" og en "netstat -na"?
>s2
# ps ax
> PID TTY STAT TIME COMMAND
> 1 ? S 0:05 init
> 2 ? SW 0:00 [keventd]
> 3 ? SWN 0:48 [ksoftirqd_CPU0]
> 4 ? SW 0:05 [kswapd]
> 5 ? SW 0:00 [bdflush]
> 6 ? SW 0:03 [kupdated]
> 7 ? SW 0:00 [i2oevtd]
> 8 ? SW 1:40 [kjournald]
> 46 ? SW 0:00 [khubd]
> 80 ? SW 0:02 [kjournald]
> 162 ? S 1:31 /sbin/syslogd
> 165 ? S 0:24 /sbin/klogd
> 173 ? S 0:00 /usr/sbin/inetd
> 181 ? S 0:00 /usr/sbin/sshd
> 184 ? SL 0:00 /usr/sbin/ntpd
> 187 ? S 0:38 /usr/sbin/ntpd
> 188 ? S 0:00 /usr/sbin/atd
> 191 ? S 0:00 /usr/sbin/cron
> 1034 tty1 S 0:00 /sbin/getty 38400 tty1
> 1035 tty2 S 0:00 /sbin/getty 38400 tty2
> 1036 tty3 S 0:00 /sbin/getty 38400 tty3
> 1037 tty4 S 0:00 /sbin/getty 38400 tty4
> 1038 tty5 S 0:00 /sbin/getty 38400 tty5
> 1039 tty6 S 0:00 /sbin/getty 38400 tty6
> 7317 ? S 0:02 /usr/sbin/sshd
> 7319 pts/0 S 0:00 -bash
> 7321 pts/0 R 0:01 ps ax
>s2
# netstat -na
>Active Internet connections (servers and established)
>Proto Recv-Q Send-Q Local Address Foreign Address State
>tcp 0 0 0.0.0.0:37 0.0.0.0:* LISTEN
>tcp 0 0 0.0.0.0:9 0.0.0.0:* LISTEN
>tcp 0 0 0.0.0.0:13 0.0.0.0:* LISTEN
>tcp 0 0 0.0.0.0:22 0.0.0.0:* LISTEN
>tcp 52 0 10.0.5.2:22 10.0.5.17:1284 ESTABLISHED
>udp 0 0 0.0.0.0:9 0.0.0.0:*
>udp 0 0 192.168.2.66:123 0.0.0.0:*
>udp 0 0 10.0.5.2:123 0.0.0.0:*
>udp 0 0 127.0.0.1:123 0.0.0.0:*
>udp 0 0 0.0.0.0:123 0.0.0.0:*
>Active UNIX domain sockets (servers and established)
>Proto RefCnt Flags Type State I-Node Path
>unix 5 [ ] DGRAM 138 /dev/log
>unix 2 [ ] DGRAM 259
>unix 2 [ ] DGRAM 247
>unix 2 [ ] DGRAM 173
--
Allan Olesen, Lunderskov.
Danske musikere tjener penge ved ulovlig softwarekopiering.