Wednesday, August 20, 2008

Fwd: HOW TO PASSWORD PROTECT A JBOSS URL OR DIRECTORY



---------- Forwarded message ----------
From: ERIC TENG <ericteng177@gmail.com>
Date: Wed, Aug 20, 2008 at 2:40 PM
Subject: HOW TO PASSWORD PROTECT A JBOSS URL OR DIRECTORY
To: "KEVIN FRANCIS @ WAVELET Francis" <kevinfrancis@wavelet.biz>
Cc: "Vincent Lee @ Wavelet Lee" <vincent@wavelet.biz>, "Janet Tan @ Wavelet Janet" <janet@wavelet.biz>


Francis,

Found the solution of "HOW TO PASSWORD PROTECT A JBOSS URL" (url can but Jboss App or a simple directory under the jboss deployment root dir).

Following is the instruction, Just add the following to "/usr/java/jboss/server/default/deploy/jbossweb-tomcat50.sar/conf/web.xml" file:

===============START OF TEXT ================

       <security-constraint>
               <web-resource-collection>
                       <web-resource-name>All resources</web-resource-name>
                       <description>Protects all resources</description>
                       <url-pattern>/backup</url-pattern>
               </web-resource-collection>
               <auth-constraint>
                       <role-name>WebAppUser</role-name>
               </auth-constraint>
       </security-constraint>

       <security-role>
               <role-name>WebAppUser</role-name>
       </security-role>

       <login-config>
               <auth-method>BASIC</auth-method>
               <realm-name>Test Realm</realm-name>
       </login-config>

===============END OF TEXT ================


"url-pattern" tag is the key here, regular expression is accepted. I also suspected that the role-name is security-role can be OMITTED, but didn't try that. Also, the research is not quite done, you may need to study the format of "login-config.xml" file to include username and password, or I suspect that by change the option on "login-config" tag, you can instruct JBOSS to refer the user login info using Linux OS's.

Try with following on your browser:

1. http://localhost:8080/emp
2. http://localhost:8080/wavelet-supplier
3. http://localhost:8080/backup



Found above on http://wiki.jboss.org/wiki/SecureAWebApplicationInJBoss


Regards,
Eric Teng







--
=========================
Phone : +6012-6018838
Website : www.wavelet.biz
=========================

Wednesday, July 2, 2008

Accounting Software

You would probably know by now, with reference to what you are having, that an accounting software records & processes accounting transactions within functional modules such as:
  • A/R & A/P
  • General Ledger
  • Billing
  • Stock/Inventory
  • Purchase Order
  • Sales Order
Agree?

But, your growth plans and complexity in business processes somehow demands more than the above mentioned functionalities.

Well... as a matter of fact, with your expanding manpower, number of outlets & offices and the skyrocketed amount of volume in inventory & sales, additional features & functions under core modules are actually not really too much to ask for...

Believe it or not! There are actually business owners out there with a very conservative thinking that naturally sets investment in an appropriate solution for their own company as one of the lowest priorities when it comes to business expansion.

I personally do not support this practice.

Why? Well, some "traditional" entrepreneurs that I have met are quite often comfortable with their current software.

But, are they really comfortable? Or are they comfortable with the fact that their employees, those actually USING the software are comfortable?

Perhaps so.

But, how often do you have a majority of your accountants, warehouse managers or even cashiers to be aligned with the CEO's vision and plans? If you do, you have my heartiest congratulations and take it from me, don't fire them!

It is quite needless to say that you operates in a competitive industry. I mean... who doesn't?

Competitive advantage may require creative strategies. And to deploy creative marketing tactics, you will need tools. For example, can your current software bloom your business by allowing customers to buy online via E-Commerce? No? Can your current software retains and grow your customers rather than buying from your competitors by automating a customer loyalty programme?

If you are still scrolling down & reading this line, I guess it is fair to assume that I've somehow described the limitations of your current software, and has proven itself to be one of your current challenges for business growth at the rate you have envisioned.

If that is really the case, its high time to seat back behind the yellow light and give your company's current accounting software some thoughts and consider an ERP instead.

www.wavelet.biz

Tuesday, July 1, 2008

Blog

Perhaps, your aim to open up more branches may be influenced by your ambition to convey confidence and stability to your customers, leverage on the economy of scale and etc...

One particularly compelling reason for branching out and increase your network might be your desire to fill a need in the marketplace and gradually enjoy the increase piece in the pie.

However, managing multiple stores requires a different system. In today's K-economy, knowledge is power and the need to obtaining business critical information as you want it, is inevitable.

In multi branches management, there are vital functions such as from inventory, trading & finance perspective that needs to be well centralized, perhaps in the main office (headquarters) itself.

A real solution for multi branches management allows easy access for you to convey critical data from each branches on a real time basis, allowing all locations to operate in a standardized manner and be updated to stay on the same page. From management perspective, it is equally crucial to be able to obtain vital business intelligences gathered from all locations in a single reporting tool.

To many people's disappointment, common softwares that you can find off the shelf do not really allows you maximize the fullest potential and the power of network.

www.wavelet.biz

Saturday, February 2, 2008

Gartner Highlights Key Predictions for IT Organisations and Users in 2008 and Beyond

Source: http://gartner.com/it/page.jsp?id=593207


Gartner Highlights Key Predictions for IT Organisations and Users in 2008 and Beyond


Egham, UK, January 31, 2008 — Gartner, Inc. has highlighted 10 key predictions of events and developments that will affect IT and business in 2008 and beyond.

The predictions highlight areas where executives and IT professionals need to take action in 2008. The full impact of these trends may not appear this year, but executives need to act now so that they can exploit the trends for their competitive advantage.

"Selected from across our research areas as the most compelling and critical predictions, the trends and topics they address this year indicate a strong focus on individuals, the environment, and alternative ways of buying and selling IT services and technologies," said Daryl Plummer, managing vice president and Gartner Fellow. "These areas of focus imply a significant groundswell of change that may in turn change the entire industry."

These predictions are selected from more than 100 predictions that Gartner presents and reviews every year. These predictions focus on general technology areas rather than on specific industries or roles. This year's predictions include:

By 2011, Apple will double its U.S. and Western Europe unit market share in Computers. Apple's gains in computer market share reflect as much on the failures of the rest of the industry as on Apple's success. Apple is challenging its competitors with software integration that provides ease of use and flexibility; continuous and more frequent innovation in hardware and software; and an ecosystem that focuses on interoperability across multiple devices (such as iPod and iMac cross-selling).

By 2012, 50 per cent of traveling workers will leave their notebooks at home in favour of other devices. Even though notebooks continue to shrink in size and weight, traveling workers lament the weight and inconvenience of carrying them on their trips. Vendors are developing solutions to address these concerns: new classes of Internet-centric pocketable devices at the sub-$400 level; and server and Web-based applications that can be accessed from anywhere. There is also a new class of applications: portable personality that encapsulates a user's preferred work environment, enabling the user to recreate that environment across multiple locations or systems.

By 2012, 80 per cent of all commercial software will include elements of open-source technology. Many open-source technologies are mature, stable and well supported. They provide significant opportunities for vendors and users to lower their total cost of ownership and increase returns on investment. Ignoring this will put companies at a serious competitive disadvantage. Embedded open source strategies will become the minimal level of investment that most large software vendors will find necessary to maintain competitive advantages during the next five years.

By 2012, at least one-third of business application software spending will be as service subscription instead of as product license. With software as service (SaaS), the user organisation pays for software services in proportion to use. This is fundamentally different from the fixed-price perpetual license of the traditional on-premises technology. Endorsed and promoted by all leading business applications vendors (Oracle, SAP, Microsoft) and many Web technology leaders (Google, Amazon), the SaaS model of deployment and distribution of software services will enjoy steady growth in mainstream use during the next five years.

By 2011, early technology adopters will forgo capital expenditures and instead purchase 40 per cent of their IT infrastructure as a service. Increased high-speed bandwidth makes it practical to locate infrastructure at other sites and still receive the same response times. Enterprises believe that as service oriented architecture (SOA) becomes common "cloud computing" will take off, thus untying applications from specific infrastructure. This trend to accepting commodity infrastructure could end the traditional "lock-in" with a single supplier and lower the costs of switching suppliers. It means that IT buyers should strengthen their purchasing and sourcing departments to evaluate offerings. They will have to develop and use new criteria for evaluation and selection and phase out traditional criteria.

By 2009, more than one third of IT organizations will have one or more environmental criteria in their top six buying criteria for IT-related goods. Initially, the motivation will come from the wish to contain costs. Enterprise data centres are struggling to keep pace with the increasing power requirements of their infrastructures. And there is substantial potential to improve the environmental footprint, throughout the life cycle, of all IT products and services without any significant trade-offs in price or performance. In future, IT organisations will shift their focus from the power efficiency of products to asking service providers about their measures to improve energy efficiency.

By 2010, 75 per cent of organisations will use full life cycle energy and CO2 footprint as mandatory PC hardware buying criteria. Most technology providers have little or no knowledge of the full life cycle energy and CO2 footprint of their products. Some technology providers have started the process of life cycle assessments, or at least were asking key suppliers about carbon and energy use in 2007 and will continue in 2008. Most others using such information to differentiate their products will start in 2009 and by 2010 enterprises will be able to start using the information as a basis for purchasing decisions. Most others will stat some level of more detailed life cycle assessment in 2008.

By 2011, suppliers to large global enterprises will need to prove their green credentials via an audited process to retain preferred supplier status. Those organizations with strong brands are helping to forge the first wave of green sourcing policies and initiatives. These policies go well beyond minimizing direct carbon emissions or requiring suppliers to comply with local environmental regulations. For example, Timberland has launched a "Green Index" environmental rating for its shoes and boots. Home Depot is working on evaluation and audit criteria for assessing supplier submissions for its new EcoOptions product line.

By 2010, end-user preferences will decide as much as half of all software, hardware and services acquisitions made by IT. The rise of the Internet and the ubiquity of the browser interface have made computing approachable and individuals are now making decisions about technology for personal and business use. Because of this, IT organizations are addressing user concerns through planning for a global class of computing that incorporates user decisions in risk analysis and innovation of business strategy.

Through 2011, the number of 3-D printers in homes and businesses will grow 100-fold over 2006 levels. The technology lets users send a file of a 3-D design to a printer-like device that will carve the design out of a block of resin. A manufacturer can make scale models of new product designs without the expense of model makers. Or consumers can have models of the avatars they use online. Ultimately, manufacturers can consider making some components on demand without having an inventory of replacement parts. Printers priced less than $10,000 have been announced for 2008, opening up the personal and hobbyist markets.



--
=========================
Website: www.wavelet.biz
=========================

More Macs, More Mobile, More Open Source, Gartner Predicts

Gartner is predicting the trend, and they are quite accurate most of the time:

Source:
http://www.informationweek.com/news/showArticle.jhtml?articleID=206101436

More Macs, More Mobile, More Open Source, Gartner Predicts


By 2012, Gartner foresees mobile workers abandoning notebooks, despite their slowly diminishing size, for smaller, more portable mobile devices.


In the future there will be more Macs, more mobile devices, and more open source software.

At least that's how analysts with Gartner see it. The IT consulting and research firm on Thursday published 10 predictions for events and developments that will affect IT and businesses in the years ahead.

Gartner predicts that by 2011, Apple will have doubled its computer market share in the United States and Western Europe. It attributes Apple's rise both to the company's success and the failures of its rivals.

"Apple is challenging its competitors with software integration that provides ease of use and flexibility; continuous and more frequent innovation in hardware and software; and an ecosystem that focuses on interoperability across multiple devices (such as iPod and iMac cross-selling)," according to Gartner.

By 2012, Gartner foresees mobile workers abandoning notebooks, despite their slowly diminishing size, for smaller, more portable mobile devices. It describes these devices as "new classes of Internet-centric pocketable devices at the sub-$400 level." (Another word for this might be "iPhone.")

The year 2012 will also mark a time when 80% of all commercial software will include open source elements. Companies that fail to embrace open source software will be at a significant cost disadvantage, Gartner predicts.

Simultaneously, a third of business software spending will have moved from buying product licenses to service subscriptions. "The SaaS model of deployment and distribution of software services will enjoy steady growth in mainstream use during the next five years," according to Gartner.

By 2011, Gartner expects early technology adopters to buy at least 40% of their IT infrastructure as a service rather than as a capital expenditure. As if to confirm this trend, Amazon.com recently reported that the bandwidth utilized by Amazon Web Services, the company's pay-by-the-drink IT infrastructure, exceeded the bandwidth utilized by all of Amazon's global Web sites combined.

Only a year from now, Gartner believes that environmental criteria will be among the top six requirements for IT-related goods. And by 2010, the firm expects that three-quarters of organizations will consider full life-cycle energy and carbon dioxide footprint in making PC buying decisions. By 2011, it anticipates that companies will have to demonstrate their environmental credentials to maintain preferred supplier status.

IT groups will become more user-driven, Gartner projects, with more than half of all IT buying decisions being made at the behest of end users by 2010. "The rise of the Internet and the ubiquity of the browser interface have made computing approachable and individuals are now making decisions about technology for personal and business use," according to Gartner.

Finally, by 2011, Gartner expects the number of 3-D printers to increase 100-fold from their 2006 levels. With 3-D printers falling below $10,000, the firm expects consumers and business to warm to the idea of "printing" 3-D models.


--
=========================
Website: www.wavelet.biz
=========================

Wednesday, January 16, 2008

The beauty of Math



Beauty of Math!


1 x 8 + 1 = 9
12 x 8 + 2 = 98
123 x 8 + 3 = 987
1234 x 8 + 4 = 9876
12345 x 8 + 5 = 98765
123456 x 8 + 6 = 987654
1234567 x 8 + 7 = 9876543
12345678 x 8 + 8 = 98765432
123456789 x 8 + 9 = 987654321


1 x 9 + 2 = 11
12 x 9 + 3 = 111
123 x 9 + 4 = 1111
1234 x 9 + 5 = 11111

12345 x 9 + 6 = 111111
123456 x 9 + 7 = 1111111
1234567 x 9 + 8 = 11111111
12345678 x 9 + 9 = 111111111
123456789 x 9 +10= 1111111111


9 x 9 + 7 = 88
98 x 9 + 6 = 888
987 x 9 + 5 = 8888
9876 x 9 + 4 = 88888
98765 x 9 + 3 = 888888
987654 x 9 + 2 = 8888888
9876543 x 9 + 1 = 88888888
98765432 x 9 + 0 = 888888888


Brilliant, isn't it?

 

And look at this symmetry:


1 x 1 = 1
11 x 11 = 121
111 x 111 = 12321
1111 x 1111 = 1234321
11111 x 11111 = 123454321
111111 x 111111 = 12345654321
1111111 x 1111111 = 1234567654321
11111111 x 11111111 = 123456787654321
111111111 x 111111111=12345678987654321


Now, take a look at this...


101%

From a strictly mathematical viewpoint:


What Equals 100%?

What does it mean to give MORE than 100%?

Ever wonder about those people who say they are giving more than 100%?

We have all been in situations where someone wants you to

GIVE OVER 100%.

How about ACHIEVING 101%?

What equals 100% in life?


Here's a little mathematical formula that might help answer these questions:


If:

A B C D E F G H I J K L M N O P Q R S T U V W X Y Z

Is represented as:

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26.



If:


H-A-R-D-W-O-R- K

8+1+18+4+23+15+18+11 = 98%


And:

K-N-O-W-L-E-D-G-E

11+14+15+23+12+5+4+7+5 = 96%


But:

A-T-T-I-T-U-D-E

1+20+20+9+20+21+4+5 = 100%


THEN, look how far the love of God will take you:


L-O-V-E-O-F-G-O-D

12+15+22+5+15+6+7+15+4 = 101%


Therefore, one can conclude with mathematical certainty that:

While Hard Work and Knowledge will get you close, and Attitude will
get you there, It's the Love of God that will put you over the top!

It's up to you if you share this with your friends & loved ones just the way I did.




--
Canossian JPIC
canjpic@gmail.com

 


Be a better friend, newshound, and
know-it-all with Yahoo! Mobile. Try it now.

 


Get your free suite of Windows Live services! Windows Live




Never miss a thing. Make Yahoo your homepage.


--
=========================
Website: www.wavelet.biz
=========================

Monday, January 14, 2008

The fastest E-Commerce Website in Malaysia

Dear Everyone,

The fastest e-commerce website in Malaysia, and recognized for processing high volume of transactions within short time with the logistics system integrated with e-commerce, for the top e-commerce website in Malaysia -> blooming florist.
We are proud to say that, Wavelet is the software developer behind the scene.

Please see the comments in red below.

Best regards,
Vincent
ps. Wavelet logo is at the bottom left hand corner of the page ;-)

=======================================================================
Source: http://www.star-techcentral.com/tech/story.asp?file=/2007/9/20/itfeature/18922150&sec=itfeature

Please see the ones highlighted in red below:

Challenges and hurdles

By CHRISTY LEE S.W.

Thursday September 20, 2007

THOUGH e-commerce has been around in Malaysia since the mid-nineties, it is still in its infancy stages even today, said Martin Cheah, Blooming.com.my's managing director.  

"Compared to countries like Hong Kong and Europe, we have a lot of catching up to do," he said. 

The Malaysian broadband infrastructure also leaves much to be desired.  

"Broadband access is critical for the growth of e-commerce here. If you set up an online retail store, you'll want to put many pictures of your product for your customers to see," said Richard Tan, managing director of Interbase Resources Sdn Bhd, the company that runs local online auctioneer Lelong.com.my

"If you're using dial-up, these pictures will take too long to load, and that would make it less convenient to shop online," he said. 

Referring to Alexa.com, Rodney Koh, creative director of XL-Shop Dot Com Sdn Bhd, said that Malaysian websites hosted locally are at least 70% slower than other websites around the world.  

"It'll be hard for us to compete with other e-commerce sites on a global level if our pages take too long too load," he said. 

At press time, the fastest site of the bunch is Blooming.com.my – it takes an average of 1.7 seconds to load, and is faster than 63% of the websites around the world. 

Credit card woes
Another big issue is the lack of an easily accessible online payment system.  

"It is very difficult for an e-commerce merchant to apply for a credit card transaction service to include in their website," said Tan. 

He said financial institutions only approve certain sites that are established, which is a serious stumbling block for upstarts.  

Koh agreed that the credit card facility in Malaysia is still immature.  

"We had to resort to using services from an overseas credit card company, and this forces us to charge in US dollars," he said.  

He said his company would occasionally come across a credit card fraud case. 

"But the percentage is still small enough that the business is still worth doing," he said.  

Koh said he also maintains a PayPal account, but any money that goes into it has to be spent online because it does not allow withdrawal in Malaysia.  

Tan believes that financial institutions should look at what other overseas companies do mitigate the problem. 

He said e-commerce merchants should also be careful when dealing with suspicious orders.  

"The Government also has a role to play in this. It has the authority to pass laws and legislations – so that criminals involved in fraud are punished – it serves as a deterrent to the rest," said Cheah.  

Comfort zone
These factors have been blamed for the majority of Malaysians still uncomfortable about shopping online. 

According to MPH's Kee, Malaysians generally shy away from buying products online because they think it isn't safe. 

"Also, you can't really see or hold the product in your hand, and the payment process is usually complicated," he said. 

The challenge, said Tan, is in getting the public to get past their fears of fraud and to trust online transactions. 

"We have yet to build a culture where people are comfortable and confident in buying and selling products online," he said. 

He said credit card fraud should not be used as a reason to shy away from the service.  

"If you buy something online and you do not receive your order, you can always call your bank to cancel the transaction," he said.  

"In fact, it is even easier for credit card fraud to occur offline," he added. 

Tan believes that Malaysia is still far behind in online retail. 

"Three percent of the total retail sales in the United States comes from e-commerce.  

"If e-commerce (excluding online ticketing sales) was 3% of the retail sales in Malaysia, which amounted to RM59.5bil last year, it would be more than RM1bil – and we're definitely behind that," he said.  

He said Malaysia needs more players to create a larger community of buyers and sellers. 

"The more companies there are involved in e-commerce, the more comfortable the public will be when it comes to shopping online," said Tan. 

Unique problems
In addition to these common issues, each company also faces problems that are unique to their own businesses.  

For example, Blooming.com.my probably faces the biggest challenge compared to the rest when it comes to packaging and transporting its products. 

Its main product, flowers, need to be kept refrigerated to maintain freshness.  

"Unlike products like books, flowers do not take a certain shape which you can box up and deliver just like that," said Cheah.  

Kee said MPH Online faces a challenge in getting Malaysians excited enough about buying books. 

"The book industry here grows quite slowly, due to the lack of a strong reading culture in Malaysia," he said. 

For XL-Shop.com, taxation is an issue.  

"Unlike Hong Kong and Singapore, our imports are taxed, so this puts us at a disadvantage where pricing is concerned," said Koh.







--
=========================
Website: www.wavelet.biz
=========================

EU Opens New Probes of Microsoft

Source: Wall Street Journal.

EU Opens New Probes of Microsoft
Regulators to Focus on Office Software, Web Browsers
By CHARLES FORELLE
January 14, 2008 11:48 a.m.

BRUSSELS—The European Union, fresh from victory in a landmark
antitrust case against Microsoft Corp., has opened a second and
potentially more costly complaint.

European Commission regulators Monday announced they have launched two
new formal investigations into the software giant's business
practices, setting the stage for a renewed clash between the American
tech mainstay and the EU's increasingly powerful antitrust cops.
[More on the case] MORE ON THE CASE

• Microsoft Again Faces EU Heat
12/14/07
• Microsoft Yields in EU Antitrust Battle
10/23/07
• EU Court Rejects Microsoft's Appeal
9/18/07

This time, the commission is focusing on two core areas of Microsoft's
business: its Web browser, Internet Explorer; and Office, its
massively profitable software suite. The EU is examining whether
Microsoft harms alternative browser vendors by including Internet
Explorer with its ubiquitous Windows operating system, and whether it
harms alternative office-suite vendors by controlling the file format
used to store office documents.

The cases stem from two complaints, one from Norwegian browser-vendor
Opera Software ASA filed last month, the other a 2006 charge from the
European Committee for Interoperable Systems, a group led by
International Business Machines Corp. and other Microsoft rivals that
has been a driving force in Europe's antitrust pursuit of the company.

In addition to touching on Office, the IBM-led group's complaint
addresses Microsoft's refusal "to disclose interoperability
information across a broad range of products," according to the EU,
indicating that the regulators could make an even broader case.

In a statement, Microsoft said it would cooperate with the probes and
was "committed to ensuring" that the company is "in full compliance
with European law."

In 2004, after a contentious six-year probe, the EU charged Microsoft
with illegally shutting out rival Sun Microsystems Inc. by withholding
computer code needed to make Sun's computers work with Windows-based
machines, and with abusing its Windows monopoly by bundling
media-player software with the operating system. It assessed a record
€497 million ($612 million) fine.

That case ended in dramatic fashion last September, when an EU court
vindicated the EU's position in stark terms, leaving Microsoft with
little to do but capitulate. A month later, the company said it
wouldn't pursue further appeals, ending the case.

Besides the fines -- which could total billions of euros -- the
practical effect was fairly small. Standalone media players had
declined in importance as Web-based video ascended, and the types of
machines Sun wanted access to represent a small plume of a
many-feathered market.

But EU regulators had won a critical precedent: The judges on the
Court of First Instance confirmed the illegality of a monopolist's
bundling products, and confirmed the EU's power to compel a dominant
company to share so-called interoperability information.

Write to Charles Forelle at charles.forelle@wsj.com

--
--------------
WAVELET SOLUTIONS SDN BHD 632468W (www.wavelet.biz)
GC-43, Ground Floor, Block C,
Kelana Square, 17 Jalan SS7/26,
Kelana Jaya, 47301 Selangor, Malaysia.
H/P: +6012-6018838
Tel: +603-78042207
Fax: +603-78042281
-------------
CONFIDENTIAL NOTE:
The information contained in this email is intended only for the use
of the individual or entity named above and may contain information
that is privileged, confidential and exempt from disclosure under
applicable law. If you are not the intended recipient, you are hereby
notified that any dissemination, distribution or copying of this
communication is strictly prohibited. If you have received this
message in error, please immediately notify the sender and delete the
mail. Thank you.

Friday, January 11, 2008

Fwd: Security Enhanced Linux for FTP

---------- Forwarded message ----------
From: Vincent Lee <leehongfay@yahoo.com>
Date: Nov 20, 2006 10:40 AM
Subject: Security Enhanced Linux for FTP
To: Wavelet Google <wavelet@googlegroups.com>


Guys,
when you are using fedora 5, or latest versions of linux, you may encounter
some difficulty using the server for FTP, read the manual below, that will save
you tonnes of time.
Cheers
Vincent

http://www.die.net/doc/linux/man/man8/ftpd_selinux.8.html

ftpd_selinux(8) - Linux man page
NAME
ftpd_selinux - Security Enhanced Linux Policy for the ftp daemon
DESCRIPTION

Security-Enhanced Linux secures the ftpd server via flexible mandatory access
control.
FILE_CONTEXTS
SELinux requires files to have an extended attribute to define the file type.
Policy governs the access daemons have to these files. If you want to share
files anonymously, you must label the files and directories public_content_t.
So if you created a special directory /var/ftp, you would need to label the
directory with the chcon tool.

chcon -R -t public_content_t /var/ftp
If you want to setup a directory where you can upload files to you must label
the files and directories ftpd_anon_rw_t. So if you created a special directory
/var/ftp/incoming, you would need to label the directory with the chcon tool.
chcon -t public_content_rw_t /var/ftp/incoming
You must also turn on the boolean allow_ftpd_anon_write.
setsebool -P allow_ftpd_anon_write=1
If you want to make this permanant, i.e. survive a relabel, you must add an
entry to the file_contexts.local file.
/etc/selinux/POLICYTYPE/contexts/files/file_contexts.local
/var/ftp(/.*)? system_u:object_r:public_content_t /var/ftp/incoming(/.*)?
system_u:object_r:public_content_rw_t

BOOLEANS
SELinux ftp daemon policy is customizable based on least access required. So by
default SElinux does not allow users to login and read their home directories.
If you are setting up this machine as a ftpd server and wish to allow users to
access their home directorories, you need to set the ftp_home_dir boolean.

setsebool -P ftp_home_dir 1
ftpd can run either as a standalone daemon or as part of the xinetd domain. If
you want to run ftpd as a daemon you must set the ftpd_is_daemon boolean.
setsebool -P ftpd_is_daemon 1
You can disable SELinux protection for the ftpd daemon by executing:
setsebool -P ftpd_disable_trans 1
service vsftpd restart
system-config-securitylevel is a GUI tool available to customize SELinux policy
settings.

AUTHOR
This manual page was written by Dan Walsh <dwalsh@redhat.com>.

SEE ALSO

Confucius once said that individuals gain wisdom in three ways:
"First, by reflection, which is noblest; second, by imitation, which
is easiest; and third by experience, which is the bitterest."
--------------------
WAVELET SOLUTIONS SDN BHD 632468W (www.wavelet.biz)
GC-43, Ground Floor, Block C,
Kelana Square, 17 Jalan SS7/26,
Kelana Jaya, 47301 Selangor, Malaysia.
H/P: +6012-6018838
Tel: +603-78042207
Fax: +603-78042281
--------------------
CONFIDENTIAL NOTE:
The information contained in this email is intended only for the use
of the individual or entity named above and may contain information
that is privileged, confidential and exempt from disclosure under
applicable law. If you are not the intended recipient, you are hereby
notified that any dissemination, distribution or copying of this
communication is strictly prohibited. If you have received this
message in error, please immediately notify the sender and delete the
mail. Thank you.

--
--------------
WAVELET SOLUTIONS SDN BHD 632468W (www.wavelet.biz)
GC-43, Ground Floor, Block C,
Kelana Square, 17 Jalan SS7/26,
Kelana Jaya, 47301 Selangor, Malaysia.
H/P: +6012-6018838
Tel: +603-78042207
Fax: +603-78042281
-------------
CONFIDENTIAL NOTE:
The information contained in this email is intended only for the use
of the individual or entity named above and may contain information
that is privileged, confidential and exempt from disclosure under
applicable law. If you are not the intended recipient, you are hereby
notified that any dissemination, distribution or copying of this
communication is strictly prohibited. If you have received this
message in error, please immediately notify the sender and delete the
mail. Thank you.