2026年2月6日 星期五

LEAF 7.x 預設設定

#修改 /etc/crontab
cat >>/etc/crontab <<'EOF'
*/20 *     * * *   root    /root/marklog.sh
0    *     * * *   root    /root/archivelog.sh
EOF

#修改 /etc/default/local.stop 
cat >>/etc/default/local.stop  <<'EOF'
/root/marklog.sh
/root/archivelog.sh
EOF

#新增 /root/marklog.sh 
cat >/root/marklog.sh <<'EOF'
#!/bin/sh
_log=/var/log/shorewall.log
_xx=$(date +"%Y-%m-%d %H:%M:%S");
echo "### MARK ${_xx}" >>${_log}
EOF

#新增 /root/archivelog.sh
cat >/root/archivelog.sh  <<'EOF'
#!/bin/sh
#:> /var/log/conntrackd.log;
date >/tmp/archive.sh.run
echo $$>>/tmp/archive.sh.run

ADEV=/dev/vda
AMNT=/mnta
ADIR=${AMNT}/archive
LOGDIR=/var/log

Exit_safely (){ umount -f ${AMNT};  rmdir ${AMNT}; }

/usr/bin/logrotate
[ -d $AMNT ]||mkdir -p $AMNT
mount |grep ${AMNT}
[ $? -gt 0 ]&&{ mount $ADEV $AMNT && trap Exit_safely EXIT|| exit 1; }

echo aaa
[ -d ${ADIR} ]||mkdir -p ${ADIR}
for i in $LOGDIR/*.gz;do [ -f "$i" ]||exit;done

for i in $LOGDIR/*.gz;do
t=$(basename $i)
t=${t%.gz}-$(date +%Y%m%d_%H%M%S).gz
echo $i $t
mv $i ${ADIR}/$t
done
EOF

TiddlyWiki 輸入 --

 ``--ab ``

&#45;&#45;ab

使用 /proc 取得 ip address

 cat /proc/net/fib_trie

Proxmox VE 選擇開機 Kernel

查看所有可用的核心版本
proxmox-boot-tool kernel list 

系統自動載入特定版本
proxmox-boot-tool kernel pin 6.5.11-8-pve

換回最新版本
proxmox-boot-tool kernel unpin

Debian 13 安裝 QNAP Qfinder

sudo apt update
sudo apt install wget gdebi-core libglib2.0-0 libnss3 libatk1.0-0 libcups2 libdrm2 libgbm1 zenity



2026年2月4日 星期三

更改 Samba AD DNS Forward

編輯 /etc/samba/smb.conf

[global]
        dns forwarder = 192.168.1.1


Debian 13 安裝 Samba 升級 DC 建立網域

安裝軟體
apt install -y sudo
apt install -y samba-ad-dc winbind libpam-winbind libnss-winbind
apt install -y acl attr samba samba-dsdb-modules samba-vfs-modules winbind libpam-winbind libnss-winbind libpam-krb5 krb5-config krb5-user dnsutils net-tools

apt install samba krb5-config winbind smbclient -y
apt install ldb-tools  -y

systemctl stop smbd nmbd winbind
systemctl disable smbd nmbd winbind
systemctl mask smbd nmbd winbind

升級 Domain Controller
mv /etc/samba/smb.conf /etc/samba/smb.conf.ori
samba-tool domain provision --use-rfc2307 --interactive

mv /etc/krb5.conf /etc/krb5.conf.ori
ln -s /var/lib/samba/private/krb5.conf /etc/krb5.conf   

systemctl start samba-ad-dc

測試
smbclient -L localhost -U%
samba-tool domain level show