<?xml version="1.0"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="de">
	<id>https://wikimirror.piraten.tools/wiki/index.php?action=history&amp;feed=atom&amp;title=LQPP%2Finstallation-betriebssystem-rogers</id>
	<title>LQPP/installation-betriebssystem-rogers - Versionsgeschichte</title>
	<link rel="self" type="application/atom+xml" href="https://wikimirror.piraten.tools/wiki/index.php?action=history&amp;feed=atom&amp;title=LQPP%2Finstallation-betriebssystem-rogers"/>
	<link rel="alternate" type="text/html" href="https://wikimirror.piraten.tools/wiki/index.php?title=LQPP/installation-betriebssystem-rogers&amp;action=history"/>
	<updated>2026-04-21T07:12:45Z</updated>
	<subtitle>Versionsgeschichte dieser Seite in Piratenwiki Mirror</subtitle>
	<generator>MediaWiki 1.35.14</generator>
	<entry>
		<id>https://wikimirror.piraten.tools/wiki/index.php?title=LQPP/installation-betriebssystem-rogers&amp;diff=55681166&amp;oldid=prev</id>
		<title>imported&gt;Wiskyhotel: Kategorie:LiquidFeedback</title>
		<link rel="alternate" type="text/html" href="https://wikimirror.piraten.tools/wiki/index.php?title=LQPP/installation-betriebssystem-rogers&amp;diff=55681166&amp;oldid=prev"/>
		<updated>2010-08-28T05:10:55Z</updated>

		<summary type="html">&lt;p&gt;Kategorie:LiquidFeedback&lt;/p&gt;
&lt;p&gt;&lt;b&gt;Neue Seite&lt;/b&gt;&lt;/p&gt;&lt;div&gt;=Configuration of rogers.lqfb.piratenpartei.de=&lt;br /&gt;
&lt;br /&gt;
==RAID==&lt;br /&gt;
&lt;br /&gt;
*2x36,4GB (ID0,ID1), RAID 1+0 plus 1x36,4GB (ID2) als Spare&lt;br /&gt;
**Maximum boot partition disabled&lt;br /&gt;
*1x36,4 GB (ID3) nicht verwendet&lt;br /&gt;
&lt;br /&gt;
==Installation debian==&lt;br /&gt;
&lt;br /&gt;
-&amp;gt; Install&lt;br /&gt;
-&amp;gt; English&lt;br /&gt;
-&amp;gt; other&lt;br /&gt;
-&amp;gt; Europe&lt;br /&gt;
-&amp;gt; Gemarny&lt;br /&gt;
-&amp;gt; German&lt;br /&gt;
&lt;br /&gt;
-&amp;gt; Primary network interface eth0&lt;br /&gt;
-&amp;gt; Hostname: rogers&lt;br /&gt;
-&amp;gt; Domain Name: lqfb.piratenpartei.de&lt;br /&gt;
&lt;br /&gt;
-&amp;gt; Manual&lt;br /&gt;
-&amp;gt; cciss/c0d0&lt;br /&gt;
-&amp;gt; Create a new partition&lt;br /&gt;
-&amp;gt; 15GB, primary, beginning, ext3 at /, Bootable flag ON&lt;br /&gt;
-&amp;gt; create new partition&lt;br /&gt;
-&amp;gt; 10GB, primary, beginning, &lt;br /&gt;
-&amp;gt; use as: physical volume for encryption&lt;br /&gt;
-&amp;gt; AES,256,cbc-essiv:sha256,passphrase,yes,off&lt;br /&gt;
-&amp;gt; create new partition&lt;br /&gt;
-&amp;gt; 5,0GB, primary, beginning, ext3 on /var/log&lt;br /&gt;
-&amp;gt; create new partition&lt;br /&gt;
-&amp;gt; REST, primary, beginning, &lt;br /&gt;
-&amp;gt; use as: physical volume for encryption&lt;br /&gt;
-&amp;gt; AES/256/cbc-essiv:sha256/Random key/no/off&lt;br /&gt;
-&amp;gt; configure encrypted volumes&lt;br /&gt;
-&amp;gt; yes&lt;br /&gt;
-&amp;gt; yes again&lt;br /&gt;
-&amp;gt; passphrase c0d0p2 according to security manifest&lt;br /&gt;
-&amp;gt; Select c0d0p2&lt;br /&gt;
-&amp;gt; Ext3, mount_point /var/lib&lt;br /&gt;
-&amp;gt; Done setting ...&lt;br /&gt;
-&amp;gt; select c0d0p4, swap&lt;br /&gt;
-&amp;gt; Done setting&lt;br /&gt;
-&amp;gt; Finish partitioning and write changes to disk&lt;br /&gt;
-&amp;gt; YES&lt;br /&gt;
-&amp;gt; (watch the progress bar or do something else)&lt;br /&gt;
&lt;br /&gt;
-&amp;gt; root passwort according to security manifest&lt;br /&gt;
-&amp;gt; system user alx&lt;br /&gt;
-&amp;gt; alx passwort &lt;br /&gt;
&lt;br /&gt;
-&amp;gt; Germany&lt;br /&gt;
-&amp;gt; mirror: ftp.de.debian.org&lt;br /&gt;
-&amp;gt; no&lt;br /&gt;
-&amp;gt; no&lt;br /&gt;
-&amp;gt; deselect standard system&lt;br /&gt;
-&amp;gt; grub YES&lt;br /&gt;
-&amp;gt; Continue&lt;br /&gt;
&lt;br /&gt;
==Configuration==&lt;br /&gt;
&lt;br /&gt;
Update packages&lt;br /&gt;
 apt-get update&lt;br /&gt;
 apt-get upgrade&lt;br /&gt;
&lt;br /&gt;
===LF-Dependencies===&lt;br /&gt;
&lt;br /&gt;
 apt-get install  lighttpd postgresql libpq-dev lua5.1 liblua5.1-0-dev build-essential ghc  libghc6-parsec-dev imagemagick tig&lt;br /&gt;
 &lt;br /&gt;
 vim /etc/apt/sources.list&lt;br /&gt;
     Add deb http://www.backports.org/debian etch-backports main contrib non-free to &lt;br /&gt;
 wget -O - http://backports.org/debian/archive.key | apt-key add -&lt;br /&gt;
install and configure etckeeper&lt;br /&gt;
 apt-get install etckeeper git-core metastore -t etch-backports&lt;br /&gt;
 cd /etc&lt;br /&gt;
 etckeeper init&lt;br /&gt;
 git add .&lt;br /&gt;
 etckeeper commit 'Initial commit'&lt;br /&gt;
 git gc &lt;br /&gt;
 &lt;br /&gt;
ssh-install&lt;br /&gt;
 apt-get install openssh-server&lt;br /&gt;
&lt;br /&gt;
===Komfort===&lt;br /&gt;
 aptitude install screen&lt;br /&gt;
 apt-get install bash-completion less&lt;br /&gt;
bash-completion einkommentieren&lt;br /&gt;
 vi /etc/bash.bashrc&lt;br /&gt;
 # enable bash completion in interactive shells&lt;br /&gt;
 if [ -f /etc/bash_completion ]; then&lt;br /&gt;
    . /etc/bash_completion&lt;br /&gt;
 fi&lt;br /&gt;
 apt-get install vim-nox&lt;br /&gt;
 update-alternatives --config editor&lt;br /&gt;
  selection number 4&lt;br /&gt;
&lt;br /&gt;
===Nutzer registrieren und ssh-key-login===&lt;br /&gt;
 adduser mpd&lt;br /&gt;
 adduser ibo&lt;br /&gt;
Keys eintragen&lt;br /&gt;
  su - alx&lt;br /&gt;
  mkdir .ssh&lt;br /&gt;
  chmod go-rwx .ssh&lt;br /&gt;
  vi .ssh/authorized_keys&lt;br /&gt;
  su - mpd&lt;br /&gt;
  mkdir .ssh&lt;br /&gt;
  chmod go-rwx .ssh&lt;br /&gt;
  vi .ssh/authorized_keys&lt;br /&gt;
  su - ibo&lt;br /&gt;
  mkdir .ssh&lt;br /&gt;
  chmod go-rwx .ssh&lt;br /&gt;
  vi .ssh/authorized_keys&lt;br /&gt;
 exit&lt;br /&gt;
&lt;br /&gt;
===MTA===&lt;br /&gt;
 apt-get install postfix&lt;br /&gt;
  -&amp;gt; Internet Site&lt;br /&gt;
  -&amp;gt; lqfb.piratenpartei.de&lt;br /&gt;
 vim /etc/postfix/main.cf&lt;br /&gt;
  -&amp;gt; mydomain = lqfb.piratenpartei.de&lt;br /&gt;
  -&amp;gt; myorigin = lqfb.piratenpartei.de&lt;br /&gt;
  -&amp;gt; masquerade_domains = $mydomain&lt;br /&gt;
  -&amp;gt; #relayhost =&lt;br /&gt;
&lt;br /&gt;
===sudo installieren===&lt;br /&gt;
 apt-get install sudo&lt;br /&gt;
 visudo&lt;br /&gt;
  Einkommentieren: %sudo ALL=NOPASSWD: ALL &lt;br /&gt;
 vi /etc/group&lt;br /&gt;
  -&amp;gt; sudo:x:27:alx,ibo,mpd&lt;br /&gt;
&lt;br /&gt;
===SSH-Config===&lt;br /&gt;
 vi /etc/ssh/sshd_config&lt;br /&gt;
Kein direkter root-Login&lt;br /&gt;
 PermitRootLogin no &lt;br /&gt;
Kein Kennwort-basierender Login&lt;br /&gt;
 PasswordAuthentication no&lt;br /&gt;
SSH-Daemon neustarten&lt;br /&gt;
 /etc/init.d/ssh restart&lt;br /&gt;
&lt;br /&gt;
===RAID-Controler===&lt;br /&gt;
&lt;br /&gt;
 apt-get install arrayprobe&lt;br /&gt;
 wget &amp;quot;http://switch.dl.sourceforge.net/project/cciss/cciss_vol_status/cciss_vol_status-1.06.tar.gz&amp;quot;&lt;br /&gt;
 tar xvfz cciss_vol_status-1.06.tar.gz&lt;br /&gt;
 aptitude install build-essential&lt;br /&gt;
 cd cciss_vol_status-1.06&lt;br /&gt;
 ./configure&lt;br /&gt;
 make&lt;br /&gt;
 make install&lt;br /&gt;
 cd ..&lt;br /&gt;
&lt;br /&gt;
===array-configuration-utility===&lt;br /&gt;
 wget ftp://ftp.hp.com/pub/softlib2/software1/pubsw-linux/p414707558/v59422/hpacucli-8.50-6.0.noarch.rpm&lt;br /&gt;
 apt-get install alien&lt;br /&gt;
 alien hpacucli-8.50-6.0.noarch.rpm &lt;br /&gt;
 dpkg -i hpacucli_8.50-7_i386.deb &lt;br /&gt;
&lt;br /&gt;
==== array config ====&lt;br /&gt;
gib mir sparedrives&lt;br /&gt;
status:&lt;br /&gt;
 hpacucli controller slot=0 physicaldrive all show&lt;br /&gt;
add all unassigned drives as spares&lt;br /&gt;
 hpacucli controller slot=0 array A add spares=allunassigned&lt;br /&gt;
status again:&lt;br /&gt;
 hpacucli controller slot=0 physicaldrive all show&lt;br /&gt;
&lt;br /&gt;
=== Ilo network config ===&lt;br /&gt;
10.134.168.156/30 wobei 157=me 158=you&lt;br /&gt;
&lt;br /&gt;
=== system network config ===&lt;br /&gt;
vi /etc/network/interfaces&lt;br /&gt;
 auto eth0&lt;br /&gt;
 auto eth1&lt;br /&gt;
 iface eth0 inet static&lt;br /&gt;
   address194.150.168.158&lt;br /&gt;
   network 194.150.168.156&lt;br /&gt;
   netmask 255.255.255.252&lt;br /&gt;
   gateway 194.150.168.157&lt;br /&gt;
 iface eth1 inet static&lt;br /&gt;
   address 192.168.2.165&lt;br /&gt;
   network 192.168.2.0&lt;br /&gt;
   netmask 255.255.255.0&lt;br /&gt;
&lt;br /&gt;
 vi /etc/resolv.conf&lt;br /&gt;
  nameserver  141.1.1.1&lt;br /&gt;
&lt;br /&gt;
===firewall-regeln===&lt;br /&gt;
&lt;br /&gt;
Script aus git://git@github.com:lqpp/liquidfeedback.git verwenden&lt;br /&gt;
 cd /opt/liquid_feedback/etc/init.d/&lt;br /&gt;
 cp solas /etc/init.d/&lt;br /&gt;
 sudo /etc/init.d/solas&lt;br /&gt;
&lt;br /&gt;
=== ntp ===&lt;br /&gt;
 sudo apt-get install ntp&lt;br /&gt;
 sudo apt-get install ntpdate &lt;br /&gt;
&lt;br /&gt;
===Munin===&lt;br /&gt;
&lt;br /&gt;
Munin-Node installieren&lt;br /&gt;
 sudo apt-get install munin-node&lt;br /&gt;
 sudo vim /etc/munin/munin-node.conf&lt;br /&gt;
  -&amp;gt; Insert Line &amp;quot;allow ^$IP$&amp;quot; - $IP is address of munin-master&lt;br /&gt;
  -&amp;gt; uncomment host_name rogers.lqfb.piratenpartei.de&lt;br /&gt;
&lt;br /&gt;
====Munin-Postgres-Plugin installieren====&lt;br /&gt;
&lt;br /&gt;
install perl-dbi-module&lt;br /&gt;
 sudo apt-get install libdbd-pg-perl&lt;br /&gt;
&lt;br /&gt;
Plugins installieren&lt;br /&gt;
 cd /usr/share/munin/plugins/&lt;br /&gt;
 sudo wget http://pgfoundry.org/frs/download.php/2096/muninpgplugins-0.2.2.tar.gz&lt;br /&gt;
 sudo tar xvzf muninpgplugins-0.2.2.tar.gz&lt;br /&gt;
 sudo ln -s /usr/share/munin/plugins/muninpgplugins/pg__connections /etc/munin/plugins/pg_liquid_feedback_pp_connections&lt;br /&gt;
 sudo ln -s /usr/share/munin/plugins/muninpgplugins/pg__db_size /etc/munin/plugins/pg_liquid_feedback_pp_db_size&lt;br /&gt;
 sudo ln -s /usr/share/munin/plugins/muninpgplugins/pg__locks /etc/munin/plugins/pg_liquid_feedback_pp_locks&lt;br /&gt;
 sudo ln -s /usr/share/munin/plugins/muninpgplugins/pg__stat_bgwriter /etc/munin/plugins/pg_liquid_feedback_pp_stat_bgwriter&lt;br /&gt;
 sudo ln -s /usr/share/munin/plugins/muninpgplugins/pg__stat_database /etc/munin/plugins/pg_liquid_feedback_pp_stat_database&lt;br /&gt;
 sudo ln -s /usr/share/munin/plugins/muninpgplugins/pg__statio_tables /etc/munin/plugins/pg_liquid_feedback_pp_statio_tables&lt;br /&gt;
 sudo ln -s /usr/share/munin/plugins/muninpgplugins/pg__stat_tables /etc/munin/plugins/pg_liquid_feedback_pp_stat_tables&lt;br /&gt;
 sudo vim /etc/munin/plugin-conf.d/munin-node&lt;br /&gt;
 -&amp;gt; [pg_liquid_feedback_pp*]&lt;br /&gt;
        user postgres&lt;br /&gt;
        env.dbname liquid_feedback_pp&lt;br /&gt;
 sudo vim /etc/postgresql/8.3/main/postgresql.conf&lt;br /&gt;
 -&amp;gt;           stats_start_collector = true&lt;br /&gt;
               stats_block_level = true&lt;br /&gt;
 sudo /etc/init.d/postgres restart&lt;br /&gt;
 sudo /etc/init.d/munin-node restart&lt;br /&gt;
 &lt;br /&gt;
====Lighttpd-Plugin installieren====&lt;br /&gt;
&lt;br /&gt;
 install lwf:usermodule - metapackage&lt;br /&gt;
 sudo apt-get install libwww-perl&lt;br /&gt;
plugin-symbolic links&lt;br /&gt;
 sudo ln -s /usr/share/munin/plugins/apache_volume /etc/munin/plugins/apache_volume&lt;br /&gt;
 sudo ln -s /usr/share/munin/plugins/apache_processes /etc/munin/plugins/apache_processes&lt;br /&gt;
 sudo ln -s /usr/share/munin/plugins/apache_accesses /etc/munin/plugins/apache_accesses&lt;br /&gt;
 sudo vim /etc/munin/plugin-conf.d/munin-node&lt;br /&gt;
 -&amp;gt; [apache_*]&lt;br /&gt;
         env.ports 443&lt;br /&gt;
         env.url http://127.0.0.1:%d/status?auto&lt;br /&gt;
         env.ssl yes&lt;br /&gt;
lighttp-mod-status aktivieren&lt;br /&gt;
 sudo lighttpd-enable-mod status&lt;br /&gt;
munin-node neustarten&lt;br /&gt;
 sudo /etc/init.d/lighttpd force-reload&lt;br /&gt;
 sudo /etc/init.d/munin-node restart&lt;br /&gt;
&lt;br /&gt;
====ntp-plugin====&lt;br /&gt;
&lt;br /&gt;
 cd /etc/munin/plugins/&lt;br /&gt;
 sudo ln -s /usr/share/munin/plugins/ntp_offset .&lt;br /&gt;
 sudo ln -s /usr/share/munin/plugins/ntp_states .&lt;br /&gt;
 sudo /etc/init.d/munin-node restart&lt;br /&gt;
&lt;br /&gt;
=== SSL zertifikat ===&lt;br /&gt;
# Martin hat ein self signed erstellt und installiert&lt;br /&gt;
&lt;br /&gt;
 #schlüsselverzeichnis erstellen&lt;br /&gt;
 mkdir -p /etc/lighttpd/ssl/lqfb.piratenpartei.de&lt;br /&gt;
 #schlüssel erstellen&lt;br /&gt;
 openssl genrsa -des3 -out lqfb.piratenpartei.de.key 1024&lt;br /&gt;
 #das passwort des schlüssels entfernen&lt;br /&gt;
 openssl rsa -in lqfb.piratenpartei.de.key -out lqfb.piratenpartei.de.nopass.key &lt;br /&gt;
 # Certificate signing request erstellen.&lt;br /&gt;
 openssl req -new -key lqfb.piratenpartei.de.nopass.key -out lqfb.piratenpartei.de.csr&lt;br /&gt;
&lt;br /&gt;
 Country Name (2 letter code) [AU]:de&lt;br /&gt;
 State or Province Name (full name) [Some-State]:Germany&lt;br /&gt;
 Locality Name (eg, city) []:Berlin&lt;br /&gt;
 Organization Name (eg, company) [Internet Widgits Pty Ltd]:Piratenpartei Deutschland&lt;br /&gt;
 Organizational Unit Name (eg, section) []:Liquid Feedback&lt;br /&gt;
 Common Name (eg, YOUR name) []:*.lqfb.piratenpartei.de&lt;br /&gt;
 Email Address []:admins@lqfb.piratenpartei.de&lt;br /&gt;
&lt;br /&gt;
 Please enter the following 'extra' attributes&lt;br /&gt;
 to be sent with your certificate request&lt;br /&gt;
 A challenge password []:&lt;br /&gt;
 An optional company name []:&lt;br /&gt;
&lt;br /&gt;
=== nrpe (nagios remote plugin execution ) ===&lt;br /&gt;
 sudo apt-get install nagios-nrpe-server&lt;br /&gt;
change remote host ip&lt;br /&gt;
 diff --git a/nagios/nrpe.cfg b/nagios/nrpe.cfg&lt;br /&gt;
 index f21cdab..97749e2 100644&lt;br /&gt;
 --- a/nagios/nrpe.cfg&lt;br /&gt;
 +++ b/nagios/nrpe.cfg&lt;br /&gt;
 @@ -76,7 +76,8 @@ nrpe_group=nagios&lt;br /&gt;
 #&lt;br /&gt;
 # NOTE: This option is ignored if NRPE is running under either inetd or xinetd&lt;br /&gt;
 &lt;br /&gt;
 -allowed_hosts=127.0.0.1&lt;br /&gt;
 +#allowed_hosts=127.0.0.1&lt;br /&gt;
 +allowed_hosts=127.0.0.1, 212.12.52.210&lt;br /&gt;
&lt;br /&gt;
&amp;lt;noinclude&amp;gt;[[Kategorie:LiquidFeedback]]&amp;lt;/noinclude&amp;gt;&lt;/div&gt;</summary>
		<author><name>imported&gt;Wiskyhotel</name></author>
	</entry>
</feed>