YFI - customize & securing

Diskusi tentang Ubuntu Server baik webserver, database server, samba server dan service lainnya serta jaringan menggunakan Sistem Operasi Ubuntu.
User avatar
q_p
Posts: 3109
Joined: 14 Oct 2012, 13:01
Contact:

YFI - customize & securing

Postby q_p » 09 Dec 2013, 18:56

[align:center][img:center]http://s20.postimg.org/jy8b0o9yl/Screenshot_from_2013_12_09_18_30_14.png[/img]
[img:center]http://s20.postimg.org/mtle7jdyl/yfi_login.png[/img][/align]

[align:center][size:17pt]YFi Hotspot Manager - Customize & securing[/size][/align]
Ganti Password "User system" dan "User root" Ubuntu
[size:8pt][font:Courier New]~# sudo su
~# passwd sytem
~# passwd[/font][/size]
Ganti sources.list ke repo Indonesia asli
[size:8pt][font:Courier New]~# mv /etc/apt/sources.list /etc/apt/sources.list_
~# nano /etc/apt/sources.list
~# apt-get update[/font][/size]
Ganti timezone ke Asia/Jakarta
[size:8pt][font:Courier New]~# mv /etc/timezone /etc/timezone_
~# nano /etc/timezone
[color:#990000]Asia/Jakarta[/color]
~# dpkg-reconfigure --frontend noninteractive tzdata
~# date[/font][/size]
Install ntp-server
[font:Courier New][size:8pt]~# apt-get install ntp
~# nano /etc/ntp.conf
[color:#990000]server ntp.ubuntu.com
server pool.ntp.org[/color]
~# nano /etc/default/rcS
[color:#990000]#
# /etc/default/rcS
#
# Default settings for the scripts in /etc/rcS.d/
#
# For information about these variables see the rcS(5) manual page.
#
# This file belongs to the "initscripts" package.
TMPTIME=0
SULOGIN=no
DELAYLOGIN=no
UTC=no
VERBOSE=no
FSCKFIX=no[/color]
~# touch /etc/cron.daily/ntpdate
~# chmod +x /etc/cron.daily/ntpdate
~# nano /etc/cron.daily/ntpdate
[color:#990000]ntpdate ntp.ubuntu.com pool.ntp.org [/color]
~# service ntp restart
~# date[/size][/font]
Tambahkan password pada mysql[size:8pt][font:Courier New]
~# mysqladmin -u root password '1234'
~# mysql -u root -p'1234' -e 'show databases;'[/font][/size]
Install phpmyadmin untuk mengganti password "user root" pada YFi Hotspot Manager[font:Courier New][size:8pt]
~# nano /etc/nginx/sites-available/default
[color:#990000]
...
...
location ~ \.php$ {
fastcgi_split_path_info ^(.+\.php)(/.+)$;
astcgi_pass unix:/var/run/php5-fpm.sock;
fastcgi_index index.php;
include fastcgi_params;
try_files $uri =404;
fastcgi_intercept_errors on;
fastcgi_param SCRIPT_FILENAME /usr/share/nginx/www$fastcgi_script_name;
fastcgi_param DOCUMENT_ROOT /usr/share/nginx/www;
}
...
...
[/color]
~# apt-get install phpmyadmin
~# cd /usr/share/nginx/www
~# ln -s /usr/share/phpmyadmin
~# service nginx restart
[/font][/size]
Uninstall phpmyadmin setelah selesai mengganti password "user root" pada YFi Hotspot Manager
[font:Courier New][size:8pt]~# apt-get purge phpmyadmin[/size][/font]
Install arpon
[font:Courier New][size:8pt]~# apt-get install arpon[/size][/font]



[align:center][size:8pt][font:Courier New]
Download YFi Hotspot Manager Beta-6-1.1.ova
download Oracle VirtualBox lengkap dengan extention-nya
https://help.ubuntu.com/10.04/serverguide/NTP.html
http://www.radiusdesk.com/getting_started/install_ubuntu_nginx
http://www.radiusdesk.com/getting_started/vm_windows_virtualbox
http://arpon.sourceforge.net/

[/font][/size][/align]

[align:center][size:8pt][font:Courier New][/font][/size][/align]
User avatar
sr_aja
Posts: 602
Joined: 10 Dec 2012, 11:21
Location: Jakarta

Re: YFI - customize & securing

Postby sr_aja » 10 Dec 2013, 17:06

wow.. mantep... surantep...
User avatar
q_p
Posts: 3109
Joined: 14 Oct 2012, 13:01
Contact:

Re: YFI - customize & securing

Postby q_p » 10 Dec 2013, 22:33

lah ini kebetulan ada mastah-nya mysql. phpmyadmin saya pakai karena nyoba2 pakai command-nya mysql gagal melulu.
[sql]root@hotspot:~# mysql -u root -p'1234' -e 'show databases;'
+--------------------+
| Database |
+--------------------+
| information_schema |
| mysql |
| performance_schema |
| test |
| yfi |
+--------------------+[/sql]

[sql]+-------------+-------------------------------------------------+------+-----+---------+-------+
| Field | Type | Null | Key | Default | Extra |
+-------------+-------------------------------------------------+------+-----+---------+-------+
| id | char(36) | NO | PRI | NULL | |
| username | varchar(127) | NO | | NULL | |
| password | varchar(50) | NO | | NULL | |
| name | varchar(50) | NO | | NULL | |
| surname | varchar(50) | NO | | NULL | |
| address | varchar(200) | NO | | NULL | |
| phone | varchar(50) | NO | | NULL | |
| email | varchar(100) | NO | | NULL | |
| active | tinyint(1) | NO | | 0 | |
| cap | enum('soft','hard','local','degrade','prepaid') | YES | | hard | |
| data | varchar(50) | NO | | NA | |
| time | varchar(50) | NO | | NA | |
| group_id | char(36) | NO | | NULL | |
| radcheck_id | int(11) | NO | | 0 | |
| profile_id | char(36) | NO | | | |
| user_id | char(36) | NO | | | |
| realm_id | char(36) | NO | | | |
| language_id | char(36) | NO | | | |
| created | datetime | NO | | NULL | |
| modified | datetime | NO | | NULL | |
+-------------+-------------------------------------------------+------+-----+---------+-------+
20 rows in set (0.00 sec)[/sql]
di dalam field "username" dan "password" di atas, ada "query (betul ?)" yaitu username=root dan password=admin(yang ini bukan cleartext). bagaimana ya mas sr_aja commandnya untuk update/ganti query tsb ??
User avatar
sr_aja
Posts: 602
Joined: 10 Dec 2012, 11:21
Location: Jakarta

Re: YFI - customize & securing

Postby sr_aja » 11 Dec 2013, 11:33

ahh si akang ini suka bercanda..., saya mah bukan mastah.. cuman modam man aja ama gugling deh..
konon orang make mysqladmin buat merubah password root, ada juga sih yg pakai perintah SET PASSWORD, biasanya kalau merubah di mysqlnya, harus di flush privilage setelahnya, baru deh dia mau...

jam terbang si akang lebih banyak dibanding saya kok, ehhbtw pati itu deket ngak ama pekalongan?
User avatar
q_p
Posts: 3109
Joined: 14 Oct 2012, 13:01
Contact:

Re: YFI - customize & securing

Postby q_p » 11 Dec 2013, 15:31

Masih jauh mas, 4-5 jam lagi ke arah surabaya :)
FLUSH PRIVILAGE ? sudah kok mas, hanya saja tidak bisa langsung convert dari 'clear-text' ke 'hash'. Jika kita input password tersebut dengan aplikasi YFi, langsung convert 'cleartext' ke 'hash'.
[sql]mysql> select password('1234');
+-------------------------------------------+
| password('1234') |
+-------------------------------------------+
| *A4B6157319038724E3560894F7F932C8886EBFCF |
+-------------------------------------------+
1 row in set (0.00 sec)[/sql]
User avatar
sr_aja
Posts: 602
Joined: 10 Dec 2012, 11:21
Location: Jakarta

Re: YFI - customize & securing

Postby sr_aja » 11 Dec 2013, 15:39

hmmm nganeh...
coba di bongkar lagi koneksi ke db dari yfi nya, dia make hash default mysql yaa?

saya pernah baca tulisan mas sokam ttg enkripsi di mysql, hanya saja cuman sekedar baca, maklum imlementasi aye, hanya sesuai kebutuhan :D
nanti kapan2 aye maen ke markas om q_p ya.. kalau ada waktu, rejeki dan kesempatan.. Amin
biar bisa berguru
User avatar
q_p
Posts: 3109
Joined: 14 Oct 2012, 13:01
Contact:

Re: YFI - customize & securing

Postby q_p » 11 Dec 2013, 16:09

Kalau ada waktu silahkan datang, kebetulan besok tanggal 1 JAN (mulai jam 9 pagi s/d selesai) teman2 penggiat opensource sekitar Pati pada ngumpul di warnet.
User avatar
faqeeh
Posts: 24
Joined: 28 Feb 2011, 17:02
Location: Pati Pesantenan, Jawadwipa, Nuswantara.
Contact:

Re: YFI - customize & securing

Postby faqeeh » 17 Dec 2013, 16:53

Warnet mana Bos? aku yo wong Pati kok... :D masih pemula perlu banyak belajar ini saya..
User avatar
q_p
Posts: 3109
Joined: 14 Oct 2012, 13:01
Contact:

Re: YFI - customize & securing

Postby q_p » 27 Jun 2014, 06:31

Radius Desk versi terbaru.
[img:center]http://s20.postimg.org/z6oynsnzh/radius_desk.png[/img]

Return to “Ubuntu Server”

Who is online

Users browsing this forum: No registered users and 4 guests