(136)spice protocol 

In computing, SPICE (the Simple Protocol for Independent Computing Environments) is a remote-display system built for virtual environments which allows users to view a computing "desktop" environment - not only on its computer-server machine, but also from anywhere on the Internet and using a wide variety of machine architectures.





sshpass: 用於非互動的ssh 密碼驗證

 ssh登陸不能在命令列中指定密碼,也不能以shell中隨處可見的,sshpass 的出現,解決了這一問題。它允許你用 -p 引數指定明文密碼,然後直接登入遠端伺服器。 它支援密碼從命令列,檔案,環境變數中讀取
它也完全支援新的IKEv2協議的Linux 2.6核心。結合IKEv1和IKEv2模式與大多數其他基於IPSec的VPN產品。重點專案是strongSwan強認證機制,使用X.509公 開金鑰證書和可選的安全儲存私鑰對智慧卡通過一個標準化的PKCS # 11介面。一個特點是使用的X.509屬性證書實現了先進的訪問控制方案的基礎上組的成員。




(141)smb dump support



伺服器所在的機房禁ping ,我如何監控伺服器的情況 ?下面和大家介紹一個軟體tcping,這個軟體是針對TCP監控的,也可以看到ping 值,即使機房禁PING,伺服器禁PING了,也可以通過它來監控伺服器的情況。除了ping ,它還有一個功能,監聽埠的狀態。


簡單的說, tcpreplay是一種pcap包的重放工具, 它可以將用ethreal, wireshark工具抓
下來的包原樣或經過任意修改後重放回去. 它允許你對報文做任意的修改(主要是指對2層
, 3層, 4層報文頭), 指定重放報文的速度等, 這樣tcpreplay就可以用來複現抓包的情景
以定位bug, 以極快的速度重放從而實現壓力測試.


thttpd is a simple, small, portable, fast, and secure HTTP server.


tinc is a Virtual Private Network (VPN) daemon that usestunnelling and encryption to create a secure private networkbetween hosts on the Internet. tinc is Free Software and licensedunder the GNUGeneral Public License version 2 or later. Because the VPNappears to the IP level network code as a normal network device,there is no need to adapt any existing software. This allows VPNsites to share information with each other over the Internetwithout exposing any information to others. In addition, tinc hasthe following features:


tinyhttpd 是一個不到 500 行的超輕量型 Http Server,用來學習非常不錯,可以幫助我們真正理解伺服器程式的本質。




The Tor network is a group of volunteer-operated servers that allows people to improve their privacy and security on the Internet. Tor's users employ this network by connecting through a series of virtual tunnels rather than making a direct connection, thus allowing both organizations and individuals to share information over public networks without compromising their privacy. Along the same line, Tor is an effective censorship circumvention tool, allowing its users to reach otherwise blocked destinations or content. Tor can also be used as a building block for software developers to create new communication tools with built-in privacy features.




Tvheadend is a TV streaming server and recorder for Linux, FreeBSD and Android supporting DVB-S, DVB-S2, DVB-C, DVB-T, ATSC, ISDB-T, IPTV, SAT>IP and HDHomeRun as input sources.

UDPcast is a file transfer tool that can send data simultaneously tomany destinations on a LAN. This can for instance be used to installentire classrooms of PC's at once. The advantage of UDPcast overusing other methods (nfs, ftp, whatever) is that UDPcast usesUDP's multicast abilities: it won't take longer to install 15machines than it would to install just 2.

ulogd 守護程式是一種使用者態伺服器可以監聽來自核心的防火牆日誌指令,並且能夠將其寫到任何您希望的檔案中,甚至是 PostgreSQL 或 MySQL 資料庫。使用諸如 fwanalog、fwlogwatch 或 lire 日誌分析工具將會很輕鬆地弄懂您的防火牆日誌。


uShare is a UPnP (TM) A/V & DLNA Media Server. It implements the server component that provides UPnP media devices with information on available multimedia files. uShare uses the built-in http server of libupnp to stream the files to clie


ussp-push is aOBEX object pusher for Linux, using the BlueZBlueTooth stack. The original ussp-pushimplementation required explicit binding to RFCOMM channels before theusage, that made it quite cumbersome to use. I added BlueTooth nameresolution, SDP service resolution, and direct access to remoteBlueTooth listening channels.The syntax now supported by ussp-pushis:


VDE is a virtual switch that can connect multiple virtual machines together, both local and remote.

Components of the VDE architecture are VDE switches (virtual counterpart of

ethernet switches) and VDE cables (virtual counterpart of a crossed-cable used to connect two switches).


vnStat is a console-based network traffic monitor for Linux and BSD that keepsa log of network traffic for the selected interface(s). It uses the networkinterface statistics provided by the kernel as information source. This meansthat vnStat won't actually be sniffing any traffic and also ensures light useof system resources. 


vpnc - client for cisco vpn concentrator
vpnc is supposed to work with:

Cisco VPN concentrator 3000 Series
Cisco IOS routers
Cisco PIX / ASA Zecurity Appliances
Supported Authentications: Hybrid, Pre-Shared-Key + XAUTH, Pre-Shared-Key
Supported IKE DH-Groups: dh1 dh2 dh5
Supported Hash Algo (IKE/IPSEC): md5 sha1
Supported Encryptions (IKE/IPSEC): (null) (1des) 3des aes128 aes192 aes256
Perfect Forward Secrecy: nopfs dh1 dh2 dh5
vsftpd 是“very secure FTP daemon”的縮寫,安全性是它的一個最大的特點。vsftpd 是一個 UNIX 類作業系統上執行的伺服器的名字,它可以執行在諸如 Linux、BSD、Solaris、 HP-UNIX等系統上面,是一個完全免費的、開放原始碼的ftp伺服器軟體,支援很多其他的 FTP 伺服器所不支援的特徵。比如:非常高的安全性需求、頻寬限制、良好的可伸縮性、可建立虛擬使用者、支援IPv6、速率高等。


VTun 是一個功能很強的軟體,可以利用它來建立 TCP/IP 上的虛擬通道,而且通道的數目可以不受限制,完全依照機器的能力而定,並且在應用上可以作為 VPN、Mobil IP、Shaped Internet access、Ethernet tunnel 與 IP address saving 的基礎。



(162)wireless tools 

The Linux Wireless Extension and the Wireless Tools are an OpenSource project sponsored by Hewlett Packard (through mycontribution) since 1996, and build with the contribution of manyLinux users all over the world.

The Wireless Extension (WE) is a generic API allowing a driverto expose to the user space configuration and statistics specific tocommon Wireless LANs. The beauty of it is that a single set of toolcan support all the variations of Wireless LANs, regardless of theirtype (as long as the driver support Wireless Extension). Anotheradvantage is these parameters may be changed on the fly withoutrestarting the driver (or Linux).

The Wireless Tools (WT) is a set of tools allowing tomanipulate the Wireless Extensions. They use a textual interface andare rather crude, but aim to support the full WirelessExtension. There are many other tools youcan use with Wireless Extensions, however Wireless Tools is thereference implementation.

網路封包分析軟體的功能可想像成 "電工技師使用電錶來量測電流、電壓、電阻" 的工作 - 只是將場景移植到網路上,並將電線替換成網路線。在過去,網路封包分析軟體是非常昂貴的,或是專門屬於營利用的軟體。Ethereal的出現改變了這一切。在GNUGPL通用許可證的保障範圍底下,使用者可以以免費的代價取得軟體與其原始碼,並擁有針對其原始碼修改及客製化的權利。Ethereal是目前全世界最廣泛的網路封包分析軟體之一。
我一直在用的網路分析工具,支援windows和linux 都是圖形介面的,這裡支援的話,會是什麼樣呢,需要個螢幕嗎?暫時未知
WPA Supplicant is a Wi-Fi Protected Access (WPA) client and IEEE 802.1X supplicant. It implements WPA key negotiation with a WPA Authenticator and Extensible Authentication Protocol (EAP) authentication with an Authentication Server. In addition, it controls the roaming and IEEE 802.11 authentication/association of the wireless LAN driver. This is useful for connecting to a password protected wireless access point.

This package is known to build and work properly using an LFS-7.10 platform. 


To access the nl802154 netlink inteface and also for checkingthe network connectivity you will need the wpan-tools.


netlink library libnl.

These tools contains:

based on the wireless iw tool.

Ping utility on IEEE 802.15.4 level.



* 基於時間段的訪問控制
* 功能完備的log功能,即可以記錄連線成功也可以記錄連線失敗的行為
* 能有效的防止DoS攻擊(Denial of Services)
* 能限制同時執行的同一型別的伺服器數目
* 能限制啟動的所有伺服器數目
* 能限制log檔案大小
* 將某個服務繫結在特定的系統介面上,從而能實現只允許私有網路訪問某項服務
* 能實現作為其他系統的代理。如果和ip偽裝結合可以實現對內部私有網路的訪問
xinetd用括號括起的、擴充套件了的語法取代了inetd中的通用的行。另外,還添加了日誌和訪問控制功能。 雖然inetd可以使用Venema的 tcp_wrappers軟體(tcpd) 控制 TCP 的連線,但是你不能用它來控制 UDP 連線。此外,inetd對RPC(portmapper)型別的服務也處理不好。另外,雖然使用 inetd 你可以控制連線速度 ( 通過給wait或是no wait 變數附加一個數值,例如nowait.1表示每隔一秒鐘一個例項),你不能控制例項的最大數。這能導致程序表攻擊(例如,一個有效的拒絕服務攻擊)。通過使用xinetd,我們可以防止Dos。
xinetd 對所有的服務都進行紀錄,日誌儲存到檔案 /var/adm/xinetd.log中,並且使用配置檔案/etc/xinetd.conf。


Xtables-addons 是一個代替 Linux 核心和 iptables 舊的 patch-o-matic 包,無需對核心原始碼進行補丁,無需重編譯核心。


ZNC is an IRC network bouncer or BNC. It can detach the client from the actual IRC server, and also from selected channels. Multiple clients from different locations can connect to a single ZNC account simultaneously and therefore appear under the same nickname on IRC. It supports SSL secured connections and IPv6.