4 Golden Lessons From The Apprentice by A.Williams

4 Golden Lessons From The Apprentice by A.Williams

Remember Melissa from The Apprentice? Yeah, neither do I. She did something unthinkable during some random task on the first episode of last season and got the axe. The same happened to Chris, Jennifer W., poor ol' Toral, and every other Tom, Dick and Harry who did something completely half-witted on national television.

Everyone watches the show and rolls their eyes in disbelief, completely convinced that they can outperform any one of these mindless candidates. But is this true? When the pressure's on, would you be able to impress dear ol' Donald and avoid the wrath of his spine-tingling, hair-raising catchphrase, "You're fired?"

Whether you find yourself in the audition room for the next Apprentice or in the conference room down the hall from your cubicle, here are some of the golden rules to succeed in business, Trump-style.

1- Keep it simple
It's Monday morning, 9 a.m. Your boss suddenly announces you' re going to be presenting your proposal to the company shareholders tomorrow. The sound of his, "You better make it good, Johnson," keeps resonating in your ears. In the midst of heart-pounding panic and a clammy, cold sweat, you think, "This has to be big -- I want music, I want effects, I want costumes!" But let's put a hold on this Broadway production before you make a fool of yourself.

The first golden rule of becoming successful in business is keeping it simple. Bigger is not necessarily better. For illustrative purposes, let's take a look at a past episode of The Apprentice. The teams were told they had to create a campaign to generate the most customer phone calls to a Shania Twain perfume hotline. One team hired people to wear sandwich boards and advertise the campaign by word-of-mouth, while the other team thought outside the box, plastering Shania Twain posters all over horse and buggy carriages, ultimately experiencing a shameful defeat.

The lesson of this story: people can sell, horses can't. While the music, effects and costumes might seem like an impressive, "outside-the-box" kind of move, you're better off going back to basics (i.e. a well-rehearsed speech, some handouts organized in drab, gray folders and maybe a short PowerPoint presentation). This foolproof method will have you lunching with the execs in no time.

There are reasons why a good suit is associated with success and not stupidity...

2- Research, research, research
Going into a presentation or writing a report without doing the proper research is on par with crossing the street blindfolded -- you're simply screwed.

Apprentice teams who missed out on executive interviews for marketing tasks usually ended up suffering humiliating losses ( la Capital Edge's loss after skipping an interview with executives for a Star Wars campaign).

You may have a brilliant idea for that BMW campaign, but all those bells and whistles might prove pointless if you haven't performed the necessary research. Put aside your great models in lingerie and dancing bears idea for a while, and have a chat with the BMW executives -- what's their target audience? What do they envision? What would they hate? If you get the scoop straight from the source, you'll be sure to impress.

3- No more Mr. Nice Guy
Have you seen Office Space? Not only does it portray the truth about life in the workplace, but it also shows a man living out every disgruntled worker's fantasy -- telling his boss exactly what he thinks. You'd think this would get him fired, but, instead, he gets promoted.

If Office Space taught me anything, it's that most jobs will leave you miserable and that nice guys definitely finish last.

Let's apply this idea to the ever-so-compelling Apprentice. Remember that episode when Excel stole the megapho nes from Capital Edge, destroying their competitor's campaign? While many of us with a conscience wouldn't even fathom the idea of stealing to win, these contestants didn't think twice. The outcome of this devilishly sly act? A congratulatory pat on the head by none other than Donald Trump himself, along with a landslide victory.

What's the moral of this story? Well, there isn't one -- morals have no place in business. It's a dog-eat-dog world, so if you think you have the perfect plan to sabotage Billy's promotion and nab it for yourself, don't bat an eye -- Trump says it's okay.

4- Dress for success
This might be a shallow lesson, but it's a golden one nonetheless. If you dress the part, you'll feel the part; and if you feel the part, you'll eventually become the part. So, go downtown and hit some swanky shops. You're going to need the basics -- a black suit and a blue suit (single-breasted jacket with three buttons, flat-fr ont pants), black leather shoes (no laces), and a varied color palette of dress shirts and ties (with no distracting patterns). It doesn't end with clothing, though. You must always be well groomed (neat hair, clean shaven) and do not overload on the after-shave.

You don't need to be tall, dark and handsome to succeed in business, but you need to appear in such a way that people will take you seriously.

I don't know about you, but I can't recall an unattractive, badly dressed contestant winning the big Apprentice-ship. After all, that guy with the bowties was fired well into the beginning of the season.

putting it all together

Each lesson might be difficult to integrate into your daily work routine at first, but if you ease your way into each lesson, one at a time, you'll notice an immediate improvement in your work performance. So go ahead, give 'em a try and make "The Donald" proud.


p/s:
No more Mr. Nice Guy , be meant

Solaris: Recovering From Soft Partition Problems

Recovering From Soft Partition Problems

The following sections show how to recover configuration information for soft partitions. You should only use these techniques if all of your state database replicas have been lost and you do not have a current or accurate copy of metastat -p output, the md.cf file, or an up-to-date md.tab file.

How to Recover Configuration Data for a Soft Partition

At the beginning of each soft partition extent, a sector is used to mark the beginning of the soft partition extent. These hidden sectors are called extent headers and do not appear to the user of the soft partition. If all Solaris Volume Manager configuration is lost, the disk can be scanned in an attempt to generate the configuration data.

This procedure is a last option to recover lost soft partition configuration information. The metarecover command should only be used when you have lost both your metadb and your md.cf files, and your md.tab is lost or out of date.


Note - This procedure only works to recover soft partition information, and does not assist in recovering from other lost configurations or for recovering configuration information for other Solaris Volume Manager volumes.



Note - If your configuration included other Solaris Volume Manager volumes that were built on top of soft partitions, you should recover the soft partitions before attempting to recover the other volumes.


Configuration information about your soft partitions is stored on your devices and in your state database. Since either of these sources could be corrupt, you must tell the metarecover command which source is reliable.

First, use the metarecover command to determine whether the two sources agree. If they do agree, the metarecover command cannot be used to make any changes. If the metarecover command reports an inconsistency, however, you must examine its output carefully to determine whether the disk or the state database is corrupt, then you should use the metarecover command to rebuild the configuration based on the appropriate source.

  1. Read the Background Information About Soft Partitions.

  2. Review the soft partition recovery information by using the metarecover command.

    metarecover component-p {-d }

    In this case, component is the c*t*d*s* name of the raw component. The -d option indicates to scan the physical slice for extent headers of soft partitions.

    For more information, see the metarecover(1M) man page.


p/s: soft partitions is the best way to extend the 7 slices in solaris volume manager, it has capability to slice it to how many space that we want but it will slow down the performance a little bit

SSH: TIME_WAIT problem

The TIME_WAIT problem


Sometimes a forwarded port mysteriously hangs around after the forwarding SSH session has gone away. You try a command you've used successfully several times in a row and suddenly get an error message:
$ ssh1 -L2001:localhost:21 server.example.com
Local: bind: Address already in use
(This happens commonly if you're experimenting with port forwarding, trying to get something to work.) You know that you have no active SSH command listening on port 2001, so what's going on? If you use the netstat command to look for other listeners on that port, you may see a connection hanging around in the TIME_WAIT state:
$ netstat -an | grep 2001
tcp 0 0 127.0.0.1:2001 127.0.0.1:1472 TIME_WAIT
The TIME_WAIT state is an artifact of the TCP protocol. In certain situations, the teardown of a TCP connection can leave one of its socket endpoints unusable for a short period of time, usually only a few minutes. As a result, you cannot reuse the port for TCP forwarding (or anything else) until the teardown completes. If you're impatient, choose another port for the time being (say, 2002 instead of 2001) and get on with your work, or wait a short time for the port to become usable again.


source: http://www.unix.org.ua/orelly/networking_2ndEd/ssh/ch09_02.htm

p/s: This is why sometimes we faced this issue "
Local: bind: Address already in use"

SKIP - Simple Key management for Internet Protocols

SKIP - Simple Key management for Internet Protocols

SKIP, which provides IP-Level cryptography, much like SSH, is available for Linux. A quick overview from http://www.skip.org states:

SKIP secures the network at the IP packet level. Any networked application gains the benefits of encryption, without requiring modification. SKIP is unique in that an Internet host can send an encrypted packet to another host without requiring a prior message exchange to set up a secure channel. SKIP is particularly well-suited to IP networks, as both are stateless protocols. Some of the advantages of SKIP include:
  • No connection setup overhead

  • High availability - encryption gateways that fail can reboot and resume decrypting packets instantly, without having to renegotiate (potentially thousands) of existing connections

  • Allows uni-directional IP (for example, IP broadcast via satellite or cable)

  • Scalable multicast key distribution

  • SKIP gateways can be configured in parallel to perform instant-failover

There is a wealth of information available at http://www.skip.org as well as the actual Linux implementation available at http://www.tik.ee.ethz.ch/~skip/



INFO: Kaitan Tidur Dan Keletihan



INFO: Kaitan Tidur Dan Keletihan
source: mailing list

Badan letih dan lesu walaupun kita merasakan telah berehat dan tidur secukupnya. Mengapakah hal ini berlaku?. Lazimnya kita bangun awal pada hari bekerja dan bangun lewat pada hari tidak bekerja atau cuti umum. Kita seolah-olah "balas dendam" kerana merasakan tidak cukup tidur pada hari bekerja. Namun yang berlaku adalah sebaliknya, badan kita semakin letih dan lesu.

Sebenarnya, pola tidur sedemikian telah mengganggu putaran biologi dalam badan anda atau "biological clock". Gangguan inilah yang menyumbang kepada keletihan tubuh badan anda. Menurut Timothy Rogers, Pengarah Pusat Kajian Masalah Tidur dari Hospital Henry Ford di Detroit, AS, badan kita mengeluarkan sejenis hormon kecergasan yang dipanggil cortisol. Sekiranya anda bangun tidur jam 7 pagi, cortisol akan dirembeskan 3 jam awal iaitu jam 4 pagi sebagai persediaan untuk anda bangun dan aktif.

Oleh itu, sekiranya anda mengamalkan corak tidur seperti di atas, jadual cortisol terganggu. Cortisol telah dikeluarkan pada jam 4 pagi tetapi pada hari itu anda bangun jam 11 pagi. Akibatnya, ketika anda bangun hormon kecergasan telah tiada. Anda akan merasa letih dan lesu walaupun tidur melebihi 8 jam sehari.

Jadi, jika anda mahukan kecergasan berpanjangan, jagalah amalan tidur anda agar tidak mengganggu putaran biologi di dalam tubuh anda. Tiada gangguan ini bermakna anda akan cergas, bertenaga dan aktif.



p/s: Patut la aku tdo lama letih :D
Selamat Berpuasa

Air Zam-Zam < dari kajian seorang Profesor

Kelebihan Air Zam-Zam dari kajian Profesor Jepun

Air merupakan salah satu rahmat Allah kepada manusia, Manusia tidak boleh hidup tanpa air, dan manusia tidak boleh hidup tanpa rahmat dari Allah. Ustaz kemudian bercerita bahawa dia telah berkesempatan menghadiri satu seminar mengenai AIR yang berlangsung di Hotel Istana baru-baru ini yang mana kebanyakan participant yang hadir terdiri daripada orang bukan Islam kecuali 2 orang (Ustaz Abdullah dan seorang Pensyarah dari UM).

Penceramahnya seorang Profesor yg pakar tentang air dari Jepun.
Beliau menunjukkan hasil kajiannya mengenai air, beberapa slide
ditunjukkan dan dipancarkan dilayar putih kepada hadirin sekelian.
Sampel-sampel air yang diambil dari berbagai sumber air (sungai,
laut,perigi dan bermacam lagi).

Maka terpancarlah berbagai-bagai rupa bentuk susunan molekul-molekul air tersebut. Ada yang berupa seolah-olah seperti jin tetapi
samar-samar, tidak begitu jelas (dengan telinga yang besar, bertanduk dan sebagainya)rupa yang menggerunkan dan menakutkan. Lalu Profesor itu berkata "banyak lagi sampel-sampel air ! yang lain tetapi rupa molekul-molekulnya hampir sama, sekarang saya nak tunjukkan sampel air yang berlainan dari sampel-sampel air yang saya tunjukkan tadi" Profesor itu pun tunjukkan, maka terpancarkan satu rupa bentuk molekul air yang tersusun cantik berupa seolah-olah seperti berlian (bersegi-segi) ,bersinar- sinar dan sinarannya mengeluarkan warna-warna yang menarik melebihi 12 warna.

MasyaAllah, cantik. Lalu profesor bertanya "Siapakah di antara kamu semua ya! ng tahu sampel air apakah ini".
Hadirin semua senyap, dan kemudian, Pensyarah dari UM mengangkat tangan dan
menjawab "saya rasa itu adalah sampel air zam-zam".
Profesor berkenaan memanggil Pensyarah tersebut naik ke atas dan bertanya "Berikan saya sebab kenapa awak berkata air itu adalah air zam-zam.
"Kerana air zam-zam adalah air yang termulia didunia ini" Jawab Pensyarah. Profesor berkata "Saya tak tahu samada betul atau tidak air zam-zam itu mulia tetapi memang betul ini adalah sampel air zam-zam." Kemudian Professor mengatakan bahawa, kata-kata juga dapat mempengaruhi rupa bentuk molekul-molekul air.

Lalu didalam dewan itu mereka membuat experiment bagaimanakah yang dikatakan kata-kata dapat menpengaruhi rupa bentuk molikul-molikul air. Semua hadirin dikehendaki membaca sesuatu kepada air mineral masing-masing. Lalu seorang volunteer bangun untuk menguji bagaimana rupa air yang telah dibaca. B! ila ditunjukkan diskrin, nampak molikul air membentuk seolah-olah seperti tokong cina (dengan janggut yg panjang dan perut yg buncit).
Bila tiba giliran Ustaz, air yang dibaca dengan Al-Fatihah, Selawat dan Ayat Kursi maka nampaklah rupa molikul air seperti berlian dan berkilau-kilau.

... Subhanallah. Lalu Ustaz disuruh oleh Profesor menbaca sebarang ayat/kata-kata yang tidak baik...maka nampaklah diskrin molikul air berupa seperti sel-sel barah.
Subhanallah. .... daripada ceramah yang Ustaz sampaikan ini marilah
kita sama-sama mengambil iktibar daripadanya. Ini adalah kata-kata dari Ustaz Abdullah : "Jika hendak air itu merasa manis maka masukkanlah gula, jika hendak air itu berwarna maka masukkanlah pewarna dan jika hendak air itu mulia maka masukanlah ayat-ayat yang mulia kepadanya".

How to Remove Windows Genuine Advantage Notifications

How to Remove Windows Genuine Advantage Notifications


Windows genuine advantage notifications occur when your computer hasn't passed the validation test. The validation test can be failed due to being sold a pirated (non-genuine) copy of XP, or because you have changed your XP product key to a software-generated key. The failed validation installs three types of notifications on your computer: one on the log in screen, one log in timer, and one balloon. It also stops updates from Microsoft and disables your ability to install IE7 and Windows Media Player 11. This solution can get rid of all three notifications, even though you will still not be able to update. Unfortunately, you can only update if you buy a valid Microsoft product key again.

Steps

  1. If you have only just installed Windows Genuine Advantage notifications, simply using the system restore function will remove the program. Then refuse to accept the WGA update next time Windows updates... otherwise, proceeed as detailed below.
  2. # Open System32 by either A or B of the following methods:

    • a)
      Click "Start", "Run", then type-in "System32". Click "Okay".
    • b) Find System32 manually by clicking "Start" > "My Computer" > "(X:)" (Replacing "X" with the drive letter of the host of Windows) > "Windows" > "System32".

  3. In "System32", go to "Tools" > "Folder options" > click on the tab, "View" > Uncheck "Hide extensions for known file types". Now you can begin...
  4. Check to make sure the window that comes up has a full screen of various files. The files are in alphabetical order, which makes it easier to locate the specific file.
  5. Find "WgaLogon.dll" and rename it "WgaLogon.dll.bak".
  6. Create an empty copy of WgaLogon.dll:

    • Right click on a blank space in System32 and select "New" > "Text Document".
    • Leave the text document empty and label it "WgaLogon.dll". Press Enter (on your keyboard).
    • You may get a warning from the above step that says, "If you change a file name extension, the file may become unusable. Are you sure you want to change it?". Click "Yes" on this warning.
  7. Be ready to complete the next two steps very quickly! Find "WgaTray.exe" in "System32" and delete it. You will then have 5 seconds to find "WgaTray.exe" in the Task Manager (the next step).
  8. Immediately open Task Manager. You can do this by pressing the Ctrl, Shift, and Esc keys simultaneously or right clicking the Taskbar and selecting "Task Manager". Click on the process tab and end "WgaTray.exe".
  9. Restart your computer once you have finished. All the notification messages should be gone.


Tips

  • This process will only get rid of the notifications, and will not validate your copy of XP. It will remove the timer at the beginning of your XP log on, the white notice on the log on screen, and the annoying yellow star that appears in the bottom right corner of the screen.
  • This is easier to do if you have someone reading the steps to you while you do it.
  • You may need to Find Hidden Files and Folders in Windows to get to System32 manually.
  • If task manager programs are moving, click the title of the "user name" column to freeze them.
  • If you are having problems after this, disable the updates before rebooting.
  • There is a program called RemoveWGA which does all of this for you. Just run the program, click yes, and you're done. (See External Links, below.)
  • If you have problems changing files in the System32 directory, you will have to turn off "system restore". "Start" -> "Control Panel" -> "System" -> "System Restore" -> Check the "Turn off system restore" check box.


Warnings

  • Do not edit anything but this in System32, or it could cause system start up failure.
  • If you are new to computers, do not attempt this because if you modify the wrong file you may crash your computer.

‘Pengendali laman blog ibarat penembak curi’ > my comment

‘Pengendali laman blog ibarat penembak curi’


KUALA LUMPUR: Datuk Shaziman Abu Mansor semalam mencabar pengendali laman forum atau blog yang berselindung di sebalik nama samaran untuk tampil dan berdebat secara terbuka mengenai pelbagai isu semasa.


Timbalan Menteri Tenaga, Air dan Komunikasi itu berkata tindakan kumpulan yang mengkritik pihak tertentu termasuk kerajaan tetapi enggan mendedahkan identiti sebenar seperti penembak curi.

Katanya, kumpulan itu harus menghentikan kerja yang sia-sia dan tidak bertanggungjawab itu.



“Bukannya berlindung di sebalik blog atau laman web yang tidak bertanggungjawab,” katanya menjawab soalan tambahan Dr Tan Seng Giaw (DAP-Kepong) di Dewan Rakyat semalam.

Tan meminta kerajaan mengawal tindakan pihak yang tidak bertanggungjawab menyalahgunakan Internet untuk tujuan tidak baik.

Shaziman berkata, kerajaan pada dasarnya tidak mempunyai peruntukan undang-undang mengawal internet termasuk laman forum dan blog berikutan Akta Komunikasi dan Multimedia 1998 serta jaminan Koridor Raya Multimedia (MSC), menyekat penggunaan Internet.

"Sehubungan itu, saya mengharapkan kebijaksanaan rakyat menilai kesahihan pelbagai isu yang digembar-gemburkan di dalam internet.

“Kita boleh memantau dengan mendaftarkan semua blog atau laman web di dalam negara kita, tetapi kita jangan lupa, rakyat kita masih boleh mendaftar blog milik mereka di luar negara,” katanya yang menyifatkan perkara itu bukan hanya berlaku di Malaysia, tetapi di seluruh dunia serta sukar dibendung.

Menjawab soalan asal Chong Eng (DAP-Bukit Mertajam), Shaziman berkata, kerajaan mengekalkan prinsip membiarkan pengendali stesen televisyen menjalankan proses saringan masing-masing dan tidak berhasrat mengetatkan kawalan siaran berita dan rancangan televisyen tempatan.

-------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
COMMENT AKU :

1 - Laman web tidak pernah disekat ketika era reformasi kerana untuk menyekat laman web ia adalah sesuatu yang mustahil jika ianya dipublish dari pelayan luar negara (bukan bermaksud aku menyokong reformasi), cuma kebebasan bersuara melalui laman web bagi aku adalah hak individu.

2 - BLOGGER juga adalah seperti penulis, mereka akan menggunakan nama samaran so ungkapan penembak curi yang dilemparkan amat tidak sesuai - bagaimana dengan penulis akhbar harian/gossip?

3 - quote dari berita atas - "Sehubungan itu, saya mengharapkan kebijaksanaan rakyat menilai kesahihan pelbagai isu yang digembar-gemburkan di dalam internet." : ya, rakyat malaysia bijak-bijak semuanya buat apa nak risau kalau berita tersebut tidak betul dan tidak sahih

4 - "Kita boleh memantau dengan mendaftarkan semua blog atau laman web" - kalau empunya dihost di malaysia boleh lah, inikan dunia IT its global be realistic

5 - no comment on stupid comment i heard lately regarding blog lah, internet lah etc.

p/s: pesan atok aku, jangan takut kepada bayang-bayang sendiri nanti kita sendiri yang menggelabah tibah :)

Solaris Hardening Checklist

Solaris Security Hardening Checklist


  1. Was OS loaded from an official Solaris CD?
  2. Are partitions large enough to accommodate patches and upgrades?
  3. Was Tripwire used to baseline the system before connecting it to a network?
  4. Is the system at he current patch level?
  5. Are there 2 system back ups? One on site, one off site?
  6. Is OpenBoot Security level set to command or full?
  7. Has OpenBoot banner been changed?
  8. Has screen autolock been turned on?
  9. Does the system implement Filesystem Quotas?
  10. Does the system have a complex permissions scheme? If so have ACL’s been implemented?
  11. What files/directories have SetUID bit turned on?
  12. Are any files with SetUID bit turned on shell scripts?
  13. Is there a group password that must be used with the newgrp command?
  14. Is root umask set to 077 or 027?
  15. Check system device permissions
  16. Use ASET, COPS, Tiger Tripwire and lsof to audit filesystem.
  17. Make sure no files in /etc are group or other writeable
  18. Make sure /var/adm/utmp and /var/adm/utmpx are 644
  19. Has ls command been aliased to show hidden files?
  20. Has rm command been aliased to ask for verification?
  21. Have filesystem inode numbers been randomized?
  22. Have daemon, lp, bin, sys, adm, uucp, nuucp, listen, nobody, and noaccess accounts been locked?
  23. Have sysadmin and sys groups been locked?
  24. Do any PATH or LD_LIBRARY_PATH statements contain “.”?
  25. Are permissions on /etc/passwd –rw-r—r--?
  26. Are permissions on /etc/shadow –r--------?
  27. Check /etc/default/passwd to ensure password aging and length.
  28. Use grpck to check consistency of /etc/group
  29. Are permissions on /etc/group –rw-r—r--?
  30. Can root log in from console only?
  31. Is su available only to admins?
  32. Are all su attemps logged?
  33. Is system name part of shell prompt for root and other admins?
  34. Has /etc/system been configured to prevent stack-based buffer overflows?
  35. Check /etc/default/cron and crontab files.
  36. Ensure that proper /etc/cron.d/cron.allow and cron.deny files are set up.
  37. Check /var/spool/cron/atjobs file.
  38. Ensure that proper /etc/cron.d/at.allow and at.deny files are set up.
  39. Make sure that scripts and programs launched by cron are readable only by owner.
  40. Are failed login attempts logged to loginlog?
  41. Is ip_forwarding turned off if machine is not used as a router?
  42. Has logcheck auditing tool been installed and used?
  43. Is the system configured to ignore redirects?
  44. If system is not used as a router, is ip_forward_directed_broadcasts turned off?
  45. Is ip_forward_src_routed turned off?
  46. Is root the only user with execute privileges for snoop?
  47. Has auth (identd) been disabled at the firewall by blocking TCP and UDP port 113?
  48. Is sendmail daemon running on a system that is not a mail server?
  49. Has /etc/mail/sendmail.cf been configured to prevent message source routing?
  50. Does only the print service have write access to the print device?
  51. Are only needed services running?
  52. Has inetd tracing been turned on?
  53. HasTCPWrappers been implemented?
  54. Make sure there is not a /etc/hosts.equiv file unless absolutely necessary.
  55. Has Secure Shell (ssh) been installed?
  56. Has anonymous ftp been turned off?
  57. Has ftpd logging been turned on for logging and debugging?
  58. Have root,uupc, and bin been added to /etc/ftpusers file to prohibit ftp connections?
  59. Has tftp been turned off?
  60. Is a GUI installed only on necessary systems?
  61. Is there any type of Intrusion Detection System installed?
  62. Has Diffie-Hellman or Kerberos Authentication been configured?
  63. Has IPsec been implemented?
  64. If DNS is used, has a Split-Horizon DNS architecture been implemented?
  65. If DNS is used, has BIND version been configured to stop illicit zone transfers?
  66. Is the latest version of BIND being used?
  67. If NIS is used, have NIS maps been moved out of /etc directory?
  68. If NIS is used, does root user have the only read and write access to /var/yp directory?
  69. Is NIS domain name different from DNS domain name?
  70. If NIS is used, has /var/yp/securenets beent implemented to make NIS maps available only to specific networks or systems?
  71. Are NIS clients bound to specific servers?
  72. Use rpcinfo –b option to detect illicit NIS servers.
  73. If NIS or NIS+ is used, does nsswitch.conf specify “passwd: hosts nis” or “passwd: hosts nisplus” to keep root account local?
  74. If NIS+ is used, ensure that there are no rights for “nobody” using niscat command.
  75. If NIS+ is used, does “nobody” have access rights?
  76. If NIS+ is used, is security level set to at least 2?
  77. If NIS+ is used, is it administered with admintool?
  78. Are all NIS+ tables backed up daily?
  79. Are NIS+ transactions flushed daily?
  80. Has nscd caching been disabled?
  81. If NFS is used, have systems that can mount an NFS directory been restricted with the share command in /etc/dfs/dfstab?
  82. Are permanent NFS client mounts set up in /etc/vfstab?
  83. Has NFS Portmon been set in /etc/system?
  84. Are any servers NFS clients?
  85. Have indirect automounter maps been set up?
  86. Is automounter browsing disabled on NFS clients?
  87. Have all services been commented out of /etc/inetd.conf?
  88. Are permissions on sulog and loginlog set to 640?
  89. Has /etc/issue file been created to display warning banner for telnet logins?
  90. Has /etc/default/login been set so that root cannot telnet into the system directly?
  91. Has /etc/default/telnetd been configured to remove the OS banner?
  92. Has /etc/default/ftpd been configured with a warning banner?
  93. Has the wheel group been created and su command in both /usr/bin/su and /sbin/su.static limited to it?
  94. Have permissions on .rhost,.netrc, and /etc/host.equiv been set to 0?
  95. Have TCP initial sequences been randomized by setting TCP_STRONG_ISS=2 in /etc/default/inetinit?
  96. Has ulimit been set to 0 in the system profile to restrict core file generation?
  97. Are there any unnecessary world writeable files?
  98. Do all users have a password set in /etc/shadow?
  99. Does each user have his/her own account and not a shared account?
  100. Does each user have a unique UID?
  101. Has CD-ROM drive been removed from servers after initial installation?
  102. Is SetUID disabled on local and remote disk partition mounts?
  103. Are any guest or default accounts on the system?
  104. Have all inactive user accounts been removed?
  105. Do only authorized users have write access to any bin or lib directories?
  106. Check for all . directories and ensure their validity.
  107. Have ICMP type 17 packets (MASKREQ) been blocked at the router or firewall?
P/S: SAVE FOR MY REFERENCE

:- STARTING TODAY I'LL INCLUDE MOOD OF THE DAY (MOTD) NOT MESSAGE OF THE DAY (MOTD) LIKE RESIDE IN THE UNIX SYSTEMS :)

MOTD : :-)

Surat Terbuka Untuk CITY

Semakin ramai golongan kreatif di Malaysia, ini antara contohnya haha lawak ahh read the rest:

Kepada Sdra Pengantin,Tahniah di atas perkahwinan sdr yang bakal menjelang. Kami kawan-kawansemuanya mengucapkan tahniah dan selamat berbahagia, serta semoga jodohberpanjangan, dan insya Allah kami hadir di majlis saudara.

Bagaimanapun, setelah mengambil tahap kemeluatan rakyat Malaysia terhadaplaporan-laporan media berkaitan persiapan perkahwinan beberapa ‘celebrity’tempatan yang bakal berlangsung, sukacita kami mencadangkan kepada sdrdan bakal isteri agar tidak terjebak dalam perkara-perkara yang tidaksenonoh seperti berikut:

(1) Sekiranya sdr bercadang mengadakan majlis perkahwinan di pusat-pusat persidangan seperti Kuala Lumpur Convention Centre, diharap sdr dapat memberi pertimbangan kepada pengguna-pengguna jalanraya di sekeliling tempat majlis itu diadakan. Besar harapan kami sekiranya sdr tidak menyekat atau mengubah laluan trafik, terutamanya ketika sdr mengadakan raptai penuh majlis perkahwinan pada hari dan masa orang-orang tengah sibuk nak pergi atau balik dari kerja.

(2) Kami tidak mempunyai halangan sekiranya sdr dan isteri mengimpikan majlis perkahwinan ala “Cinderella”. Mana-mana pasangan pengantin juga berhak memilih tema-tema seperti “Beauty and The Beast”, “Snow White & The Seven Dwarfs”, “Happy Happy Puffy Amy Yumi”, “PowerPuff Girls”, “Courage The Cowardly Dog”, malah ala “Basic Instinct” atau “XXX”, err, maksud saya,”X-Men”, sekali pun. Kami hanya memohon jasa baik sdr agar tidak menghuraikan impian sdr dengan panjang lebar dalam surat khabar contohnya tentang gaun pengantin tujuh lapis (tak panas ke?), kek tujuh tingkat dengan bertangga, naik kereta kuda tujuh roda dan sebagainya. Sesungguhnya, dalam zaman di mana kita perlu memulihara alam sekitar, amat tidak wajar sekal banyak pokok terpaksa dikorbankan untuk diproses menjadi kertas suratkhabar, tetapi dicetak dengan cerita-cerita fantasi seperti itu.

(3) Adalah juga dicadangkan agar sdr dan pihak keluarga belah pengantin perempuan, utamanya ibu bapa mertua, membuat “message alignment” agartidak mengeluarkan kenyataan-kenyataan yang bercanggah berkaitanperkara-perkara seperti duit hantaran. Sesungguhnya kami tidak mempunyai apa-apa halangan tentang jumlah duit hantaran, sama ada RM88,888.88 atau RM22,222.22 atau RM00,000.00, dan juga tidak hirau sama sekali sekiranya duit hantaran itu dibayar dalam bentuk Ringgit Malaysia, rupiah Indonesia atau menggunakan kad kredit. Yang penting, sdr dan isteri selamat diijabkabulkan denganmemenuhi syariah.

(4) Sekiranya sdr dan isteri bertuah menerima tawaran mana-mana stesentelevisyen agar majlis sdr disiarkan secara langsung di tv kelak, besar harapan kami sekiranya sdr memaklumkan stesen televisyen tersebut agar tidak membatalkan rancangan-rancangan lain yang lebih penting dan bermakna seperti EPL, CSI, dan Formula 1.

Kami juga mengucapkan tahniah sekiranya demi memenuhi permintaan segelintir peminat sdr, sdr perlu melangsungkan majlis perkahwinan tambahan di Indonesia, Inner Mongolia, Swaziland, Bukina Faso atau Solomon Islands, tetapi kami amat amat amat berterima kasih sekiranya sdr memaklumkan kepada semua stesen televisyen di Malaysia agar tidak menyiarkan majlis perkahwinan sdr sepanjang masa, termasuk semasa tayangan Berita Perdana. Mujurlah Akademi Fantasia sudah selesai.

Kalau tidak, harus pusingan Final AF terpaksa ditangguh semata-mata nak menyiarkan majlis perkahwinan sdr. Bukankah itu akan menjejaskan pendapatan syarikat-syarikat telekomunikasi negara (Maxis, Celcom, Digi), seterusnya membawa kepada kemerosotan ekonomi?

Jasa baik sdr dan bakal isteri dalam memberi pertimbangan yang adil dan sewajarnya kepada rayuan rakyat marhaen seperti kami amat kami alu-alukan dan didahului dengan setinggi-tinggi penghargaan dan jutaan terima kasih. Semoga pernikahan sdr dan bakal isteri direstui dan diberkahi Allahs.w.t.Aaaamin.

Selamat menjadi Pengantin Baru (tanpa menyusahkan orang lain)!

Salam hormat,Siti K.



p/s: Satu lagi lawak yang biasa kedengaran semenjak dia mau kawin ni ialah about Tiara, City and Serena :D