1.) Jos jedna nova distra. Od kuda je nastala ?

Puppy nije izveden ni iz jedne poznate distribucije. Razvijen je u Australiji kao "Linux from scratch" i objavljen polovicom 2003.
Iza njega osobno stoji Barry Kauler rano umirovljeni profesor i developer.

2.) Znam, znam ....Sve te live distr-e su samo demo verzije za pokazivanje, spore su pri radu i ne raspoznaju hardware...

Puppy nije spora distra. Jednostavno projektirana je za brzo dizanje sa cd-a ili tvrdog diska, usb-a, .... , a izabrane aplikacije su lake i brze. Probajte za pocetak surfanje Seamonkey-em pa se uvjerite...Puppy inace ima respektabilnu kolekciju driver-a "out of the box"

3.) Da, ali ova ti distra nije kompatibilna s ostalim poznatim distrama i ima svoj sustav upravljanja paketima. Ipak navikao sam na deb, rpm ili slack tgz pakete.

Puppy ima alate za pretvaranje paketa. Jednostavno, vrlo jednostavno moze se deb, rpm, tgz pretvoriti u puppy "pet format".

Puppy 5 serija koja se intenzivno razvija bazira se na novom revolucionarnom Puppy Bilderu zvanom WOOF http://www.puppylinux.com/woof/index.html

Vidim da zelis Puppy-a kompatibilnog s Ubuntu-om. Pa dobro zasto ga ne "izbildas" izravno koristeci Ubuntu repozitorije.

Ako te interesira rezultat provjeri kako funkcionira UPUP (Jaunty PUPPY na 80Mb) http://ftp.linux.hr/puppylinux/test/woof-alpha7/

4.) Kakav ti je to linux, kad ne mogu na njemu iskompajlirati kernel ?

Svatko moze ako hoce iskompajlirati kernel/module u Puppy-u. Recimo da je to ostavljeno za naprednije korisnike..., ali kako si ti napredniji za tebe je pripremljen Puppy-kernel-source_XXX.sfs kojega mozes skinuti i sa linux server-a u Hrvatskoj, naravno zajedno s kompajler-om.
Kad se odlucis za kompajliranje dignes ga u RAM s Menu | System | Boot Manager -om i nastavis prema uputama na http://www.puppylinux.com/development/compilekernel.htm

4.1) Primjetio sam da ti je kernel nekako arhaican...ipak 2.6.30.X...

Razvoj kernela i puppy-a postaje jako dinamican. Uostalom zasto ne preuzmes vec "pechirani" izvorni kod http://puppylinux.com/sources/kernel-

5) Covjece pa ti ulazis u root promt sto se nikako ne preporuca. Gdje su ti "permissions denied ?"

Puppy stiti svoj "pupsave" file koji se moze enkriptati i backupirati i karakateristican je za svakog od korisnika. Ulaz u sustav je inace otvoren radi jednostavnosti pristupa. Ako bas zelis mozes dodati svakog od korisnika sa klasicnim login-om. Ali sjeti se samo kako si kao pocetnik buljio u ekran i pitao se sto je to root te bio sretan kad si otkrio gksu oliti kdesu.

6) JWM (Joe Window Manager) ? Nikad cuo !!! Osim toga jako mi slici na Win98, ne ne... to je prestaromodno.

Tocno, ali prelaznici s Windows-a trebaju za pocetak nesto poznato , tako da mogu odmah koristiti aplikacije na najlaksi nacin. To ne znaci da se Puppy neda iskonfigurirati za neki od poznatih window manager-a. Potrebno je samo instalirati dodatni paket. Minimalisticki wmii_3.1.5 i ratpoison rade kao da su radjeni za Puppy-a.

7) Ipak neke mi se aplikacije uopce ne svidjaju, a one koje volim nemas na Puppy CD-u ? Kad bih bar mogao sloziti samo svoj CD..

Kolekcija na CD-u samo je jedan od izbora. Naravno Puppy ima na svom repozitoriju mnogo vise aplikacija. Moguce je zapeci vlastiti CD sa izabranim programima. Derivati Puppy-a zovu se Pupplet-i i mogu se skinuti s

npr. Firefox, Opera, Mplayer, Lastfm, Streamripper....

8) Nemas osnovni Open Office paket. Kako cu otvoriti odp i ppt file format ?

Open Office je poveci paket programa koji ukljucuje i simpress. Puppy ga aktivira kao posebni modul boot manager-om za konfiguraciju sto se namjesta kod prvog bootanja ili po zelji.

9) Ispis s lspci ti je nepotpun. Kako cu jednostavno ustanoviti pci sucelj-a i pripadajuce kernel module ?

U Menu-u | System poziva se programcic Puppscan interface information. Ovdje pregledno mozes pregledati hardware informacije i pipadajuce kernel module.

10) Hej pa ti koristis misa vise nego je to uobicajeno. Gdje su ti shortcut-ovi ?

Jasno, jasno ipak izgleda da imam previse navika od Windoza. Ipak JWM (Joe Windows Manager) ima pod Menu | Desktop | JWM Configuration mogucnost konfiguracije shortcut-ova. Pokusat cu ih koristiti sto vise, ali to ne ide tako lako...

11) Shortcut Alt+F2 kojim otvaras program gmrun za brzi unos aplikacija ti ne radi. Gle, pa nemas ni dokumentaciju za JWM.

Potrebno je uci u Menu | Desktop | JWM Configuration | Keyboard_Shortcuts te pod action upisati exec:gmrun. Dokumentacija za JWM se nalazi na

12) Gle, najbolji shell bash nije ti standardno namjesten vec moram stalno ukucavati bash.

Tocno ovo je smetalo mnoge korisnike pa je od verzije 2.17 bash standardan.

13) Kakva ti je to Distra bez Emacs-a i Lispa? Zanemarujes GEEKY STYLE !!!
Iako ga nema u standardnoj kolekciji moguce ga je doinstalirati.

Uostalom zasto ne preuzmes vec pripravljeni derivat/puplet thnake**s ugradjenim LISPom ?

14) Ja sam ti staromodan. Volim kompajlirati source. Uostalom gdje ti je kompajler ?

Kompajler se distribuira kao devx_4xx.sfs datoteka i moze se naci na http://ftp.linux.hr/puppylinux/sfs_modules-4/. Potrebno je samo omoguciti dizanje u ram konfiguracijom u Puppy BootManager-u.

15) Kako da pisem po ntfs particiji ? Moram li instalirati ntfs-3g ?

Covjece pa on ti je na osnovnom CD-u kao i vecina ostalih alata bez kojih se ne izlazi...

16) Ipak sigurno ne mozes pokrenuti 3-d desktop. Distra ti je simpa ali samo za slaba racunala. Ne ipak ne mogu bez "kocke koja se okrece"....

Razvoj Pupy-a ne spava. Nadam se da nemas nista protiv da zavrtis compiz fusion na Puppy 3.X http://youtube.com/watch?v=u30ciyNkPAk
Naravno potrebno je samo skinuti Puplet wNOP sa http://www.tombh.co.uk/CF/about.php i imati racunalo mladje od 5 godina.

17) Ukljucio sam USB, ali ga Puppy ne raspoznaje.

To samo znaci da koristis stariju verziju od 4.0. Za one koji ne vole rucno mauntanje Puppy je od verzije 4.0 uveo udev hotplug sustav specificno prilagodjen za Puppy. Inace Puppy koristi i tradicionalni pristup rucnog montiranja jednostavnim pritiskom na ikonicu "drive". Vecina Puppy korisnika zeli nauciti sto radi i zasto radi. Korisno za proces ucenja, zar ne ?

18) Ja sam ti digitalni umjetnik. Previse multimedijalnih aplikacija trebam naknadno doinstalirati. Potrebno mi je nešto kao sto je Dynebolic linux.

Puppy ima odgovor i za umjetnike. Isprobaj zato http://www.grafpup.org.
Blender, Gimp, Inkscape, Scribus... sve je tu na dohvat ruke ukljucujuci i sve potrebne drive-re. Nakon podizanja u ram aplikacije se izvode i brze nego na defaultnim glomaznim distram-a.

19) Usta su ti puna hvale, ali na internetu postoji pravo brdo malih distribucija. Zasto bi bas odabrao Puppy ?

Linux je svijet izbora. Mozda ce ti ovaj preglednik pomoci...

20) Radi li Puppy na ASUS EEE PC-u ?

Derivat Puppy-a PUPEEE snimio sam na USB. Ne sumnjam da nece raditi na EEEPC-u. Pa Puppy se je medju prvima razvijao i kao OS na flash-u.


21) Ocigledno, Puppy je zaista brz, vjerojatno zato sto se izvrsava izravno iz RAM-a ?
Ali npr. i Gentoo SysRescueCD se moze potpuno podici u RAM pa postaje brz!

Tocno, ali specificnost Puppy-a je da je postupak bootanja brz i ne traje cijelu vjecnost ;).
Puppy ne prozdire RAM da bi zauzvrat brzo radio.
Objasnjenje slojevite strukture Puppy-a mozes pronaci na stranici u nastavku.

22) Ipak kad je toliko dobar zasto nema i KDE verziju ?

KDE se dade dodatno instalirati kao kde.sfs paket. Isprobao sam najbrzi KDE za kojeg znam, a i ti ga mozes skinuti sa stranice http://lhpup.org/.

23) Sve mi to lici nekako jednostavno, za igranje. A kad ce me zaboliti glava od problema ?
Upravo tako. Puppy je i zamisljen kao Linux za zadovoljstvo mnostva korisnika. Glava neka i dalje boli developer-e.

24) Zar je moguce da Puppy nema niti jedan fork projekt? Cuo sam naime da se Puppy vodi precvrsto rukom njegovog tvorca.
Koliko znam svjetli primjer uspjesnog fork projekta je MuppyLinux.
Njegov tvorac jedan je od najaktivnijih je clanova PuppyForuma i sve sto napravi za Muppy ponudi i za Puppy. Jedina primjedba bi bila da ne zeli odustati od kompatibilnosti s KDE-o i GNOME-om. Kao evropski Puppy preporucio bi ga svakome jer ima englesku, njemacku i francusku lokalizaciju.

25) Zasto u postupku instalacije moram izabrati "si"(slovensku) tipkovnicu da bi dobio hrvatske znakove č,ć,ž, š.đ. Ako izaberem "croat" tipkovnicu uporno dobivam znakove za "cz" tipkovnicu.

Tocno radi se o bugu u skripti xorgwizard.
cr) #croat
Prijavio sam bug na PuppyForumu, ali jos uvijek nije ispravljen.

26) Jeli moguca lokalizacija PuppyLinux-a na hrvatski jezik uz koristenje lokalizacijskih datoteka *.mo ostalih distri/programa ?
U izborniku Desktop - Chooselocale country localization moguce je instalirati hr_HR locale. Nova se lokalna datoteka pojavljuje u /usr/lib/locale/hr_HR.
Pri tome se mijenja LANG globalna varijabla u /etc/profile na LANG=hr_HR.
Na puppy forumu pronasao sam i dobar howto koji se moze primjeniti i za nase prilike.


original Dec 2 3:52am


Ponekad se dogodi da smo pronašli ili konstruirali nekakvu relativno složenu komandnu liniju i ne želimo kroz taj proces prolaziti ponovo. Ovo mjesto je zamišljeno kao mala baza takvih znanja -- navalite!

Startavanje Xnesta sa nekim window managerom (npr./usr/local/bin/rvwm):

xinit /usr/local/bin/rvwm -- /usr/X11R6/bin/Xnest :1 -geometry 800x600 -ac


Xnest :1
DISPLAY=:1 /usr/local/bin/rvwm

(druga varjanta ponekad ne radi)


Imate wireles karticu /dev/wlan0, i izlazak na internet preko /dev/eth0 i želite postati router ostatku ekipe:

echo 1 > /proc/sys/net/ipv4/ip_forward
iptables -t nat -A POSTROUTING -o wlan0 -j MASQUERADE na "serveru"
a route add default gw "server-ip" na clientu

Prženje CD-a

cdrecord -scanbus dev=ATA

skanira uređaje, a

cdrecord -v dev=ATA:a,b,c img.iso

prži cd. Parametre a b i c prepišemo iz izlaza scanbusa

X background

Mjenja defaultnu pozadinu X-a

xsetroot -solid color

Automatsko startanje Screena

if [ "$STY" = "" ]; then
exec screen -RR

stavi u ~/.bashrc

original Dec 14 5:56am


Student talijanskog i južnoslavenskih jezika i književnosti u Zagrebu, aktivist Umaškog pokreta za slobodu. Živi dokaz da ne moraš biti ne znam kakav IT stručnjak da bi bio sposoban vrtit linux u svakodnevnom korištenju kompjutera (internet, pisanje/čitanje, glazba, video/filmovi, igrice...). Makar, istina je i to da sam se u samom početku strašno izdrkavao s njim... :-p Zato sam danas spreman da svoja skromna znanja i vještine koja sam do sada stekao podijelim s apsolutnim početnicima.

Na svom kopjuteru vrtim Ubuntu.


  • Osnovna znanja i vještine kod korištenja GNU/Linuxa, osobito Ubuntua, ali i ostalih Debianovih potomaka.
  • Audio streaming s Internet DJ Console-om.
  • Uređivanje teksta u OpenOffice.org Writeru
  • Filozofiranje o slobodnom softveru i slobodnoj kulturi
  • Znanje o književnosti
  • jezične vještine hrvatskog (i srpskog), slovenskog i talijanskog jezika i teorijsko znanje o njima


  • Slobodu ;-)
  • Proizvodnja zvuka i glazbe u softveru za GNU/Linux sustave, pogotovo u trackerima
  • Dizajniranje Gnome i Xfce tema
  • Enkripcija (GPG) i anonimnost na mreži
  • Bilo što što mu u nekom trenutku zatreba ili padne na pamet
  • Pomoć kad eventualno degdje zapne

original Dec 1 9:53am

  Datum   Razmjenjivac   PC Hardware   CD Boot   HD Boot   USB Boot   Primjedba  
  02-06-07   ZdraVko   Toshiba TECRA A8-103   Da   -   -   ndiswrapper load windows driver-a  
  02-06-07   NitRo   ??wireless   Da   neuspio pokusaj instalacije na HD i aktivacija GRUB-a zbog potrgane particijske tablice   -   -  
  15-05-07   ZeljkoWriter   Duron 700   Da   -   -   puppy215ce  
  10-06-07   Libervisco   Intel Core 2 Duo E6320, 1GB RAM, 80GB Seagate Barracuda HD, Optiarc AD-5170A DVD ,Gigabyte 965P mobo.   Da   -   -   "cannot find Puppy on 'idecd' boot media."  

(barba Ive)

  Dell Inspiron 1300   Da   -   -  

potrebno rucno podesavanje xorg.conf ]
radi besprijekorno i s instalacijom na tvrdi disk. Isprobano na Puppy301(http://www.lhpup.org - KDE Puppy)

  31-01-2009   Alen   Toshiba S 1800-750   Ne   -   -   http://www.razmjenavjestina.org/[SajamZajebaneOpremeBoot-ao do komandne linije - Ima prastari (10years old) video chipset Trident Cyberblade/i1; Pokusati s izmjenjenim xorgwizardom "http://www.tinyurl.com/alenovtrident"  

original Jul 8 1:20am

Umjesto uvoda

Dobrodošli na moju stranicu na Razmjeni vještina!

Zovem se Kruno.


Imam potrebu za odgovorima o:

  • podešavanje znakovnih stranica na Linux-u
  • make yourself liveCD Linux distribution
  • networking

Isus vas voli.



Nedavno sam si na laptop instalirao Ubuntu distribuciju Linuxa. Mogu priznati da dobro radi. Na trenutak sam se razočarao činjenicom da s Ubuntuom ne mogu reproducirati MP3-datoteke, ali sam ubrzo obaviješten da je MP3 vlasnički
zapis; umjesto MP3-zapisa se preporuča Vorbis OGG. Na sljedećim Razmjenama vještina ću predložiti malu raspravu o temi zapisa glazbenih datoteka (MP3 ili OGG?).

31. 8. 2005., KP.


Već sam vam nekoliko puta spomenuo da koristim programski jezik Tcl; njegovo ime je kratica izraza "Tool Command Language". Radi se o jednostavnom i moćnom programskom jeziku. Uz pomoć njegove biblioteke Tk (kratica za "Toolkit") moguće je na jednostavan način graditi elemente slikovnog okruženja (prozori, gumbi, upisna polja i drugo).

Nakon kratkog teoretskog uvoda možemo odmah uzeti stvari u ruke i napraviti mali opit. Pokrenite ljusku Wish instalacije Tcl-a na vašoj omiljenoj Linux-distribuciji i upišite ovaj kod (nakon upisa naredbe pritisnite tipku Enter):

  label .l1 -text "Hello!"  

Zatim upišite naredbu:

  pack .l1  

Na prozoru uz konzolu za upis naredbi biste trebali vidjeti mali prozor s oznakom (labelom) "Hello!".

Za danas, toliko...

25. 9. 2005., KP.


Ako sam već napisao par rečenica o Tcl-u, onda bih vas podsjetio na awk, svoj omiljeni skriptni programski jezik. Njegovi tvorci, Aho, Weinberger i Kernighan, osmislili su ga kao sredstvo za pretraživanje i obradu tekst datoteka. Nastao je 1977. godine i još se aktivno primjenjuje u suvremenoj praksi.

Ako želite uz pomoć programskog jezika awk pronaći neki uzorak u tekst datoteci, upišite ovu naredbu:

  awk '/uzorak/' datoteka  

Na ovaj način awk primjenjujete poput programskog pomagala grep.

Broj redaka u tekst datoteci možete prebrojati primjenom ove awk skriptice:

  awk '{ i ++ } END { print i }' datoteka  

awk je, kao što zapažate, poseban po mogućnosti da program napišete u retku za upis naredbi. Naravno, program možete smjestiti u tekstovnu datoteku, pa ga pozvati naredbom:

  awk -f program datoteka  

8. 10. 2005., KP.

grep u boji

BuD je već dao savjet za grepanje u boji, a ja sam odlučio o tome još jednom napisati, sebi za podsjetnik.

Klasični alat za pretraživanje teksta, grep, od pojave izvedbe 2.5 ima mogućnost prikaza u boji traženog uzorka. Boja se u novoj izvedbi grep-a uključuje primjenom prekidača --color. Provjerite izvedbu grep-a na vašem računalu uz pomoć prekidača --ver.

Slobodno isprobajte bojanje uzroka u grep-u izvršenjem naredbe

  ps grep --color bash  

Trebali biste vidjeti sve retke u kojima je riječ bash, a ta riječ bi trebala biti u boji (by default je to crvena boja).

Da biste izbjegli eksplicitno navođenje prekidača --color, u datoteku .bashrc (ili u datoteku postavki ljuske koju koristite) umetnite alias:

  alias grep='grep --color=always'  

Sada uz pomoć grep-a možete vizalno provjeriti što se zaista tražili.

28. 02. 2006., KP.

Intro u C

Na nekoliko prethodnih Razmjena vještina razgovarali smo o C-u. Ovdje je prezentacija o temeljima C-a: C.sxi Prezentacija_o_Cu

15. 04. 2006., KP.

Regularni izraz u vi-u

Ovaj regularni izraz sam nedavno skovao da bih, s vi editorom, postavio znakove "> " na početak retka za Reply u poruci:

  %s/^/> /gc  

Postavljanje točke na kraj predikata (pretvorba predikata u Prolog


04. 11. 2006., KP.

Rad na CUC-u 2007

Moj rad o udaljenom pristupu s Windows- na Linux-računalo:


19. 11. 2007., KP.

Rad na CUC-u 2008

Rad o prijepisu datoteka s Linux- na Windows-računalo na CUC-u 2008.

13. 12. 2008., KP.




original Nov 19 6:16am


1.) Email & GNUPG - rijeseno !

(primjenu gpg-a razjasnio BuD. Enigmail radi medjutim samo pod Thunderbird-om >=2.0 ili Seamonkey mail-om >= 1.1. Ostaje da se isto pokusa napraviti pod Pine-om i Mutt-om).
Nakon repeticije gradiva koju je proveo MarcellMars odlucio sam se za instalaciju najbrzeg E-mail client-a kojeg znam, a koji vec odavno podrzava GNUPG i IMAP. Claws Mail 2.9.0 radi bez greske zahvaljujuci Hiroyuki Yamamoto iz Japana <hiro-y@kcn.ne.jp> te sam ga odmah postavio kao default-ni na svom Puppy 2.17.

2) Tiddlywiki Blog Tool

3) Prakticna iskustva s racunalima hladjenim vodom. Prihvacaju se i druga tehnicka rjesenja za tihi rad primjerana domacim uvjetima.

Odlucio sam se za hladjene zrakom, ugradio Big Tower(CHIEFTEC GX-01B-OP), navodno dobro hladi, ali huci li ga huci...sve bih dao da ga usutkam..

4) Linux boot s PCMCI CF kartice (Compact Flash). Gentoo je to navodno rijesio, ali ne znam kako ?

5) PXE Network boot sa stroja pod XP-om i/ili Ubuntu-om. Nasao sam principijelno rjesenje na. Sad ga je potrebno samo tehnicki i ostvariti. "Glomazni kernel" imam, a ostalo...snaci cemo se... - Nakon uspostave vrela distribucija na bljak-u ( vrelo distribucija demonstracija ) potrebno bi bilo puppy postaviti na bljak-ov pxe-boot. Pribavio sam glomazni initrd.gz kojeg bi sad trebalo editirati/pripasati zasto mi treba pomoc.

6) Koristenje Gentoo binarnih paketa na Puppylinux-u. Dakako trebalo bi nekako izvuci binarni paket prije instalacije. (na ostalim je linux-ima to prije - make install - kad se stvara puppy pet format).

Teoretski to je uredu, ali prakticki nema smisla. Mozda bi trebalo koristiti gotove Sabayon pakete ? Jedna od mogucnosti je i Gentoo radjen na Puppy jezgri. Ideja je vrlo interesantna i nalazi se na http://www.simplux.org.

7)Pomoc pri konfiguraciji kucne heterogene mreze od 3 racunala.

1. PC Intel Core 2 Quad Q6600 2,4 GHz ; 4 GB RAM ; GeForce8800 GTS; HDD 320 GB;
Osnovni je sustav XP game konzola. U postupku je instalacija 64 bitnog Ubuntu-a u dual boot-u

2. PC Intel Pentium 4 1,8 Ghz; 1Mb RAM-a; GeForce 6200; HDD 1x320 GB & 2x80 GB
dual boot Ubuntu Dapper Drake & XP . Printer HP 970 Cxi prikljucen je lokalno na paralelnom port-u.

3. Laptop IBM R32 pod Puppy Linux-om 3.1

Za sada mreza je konfigurirana kao peer to peer s prikljuckom na adsl preko wire router-a
Siemens C-010-i sa statickim IP adresama.
U prvom je koraku potrebno iskristalizirati osnovni koncept mreze serverskog tip-a.
Preferirao bi instalaciju ako je to moguce i vise Virtual Private Linux Server-a na jakoj masini te dijeljenje resursa jake masine kao terminal server-a ......

O svemu tome premalo znam .... pa zato i trebam pomoc...razmjenjivaca..

8) Konfiguraciju za Dynebolic Afro Linux CD i to verziju koja radi na Laptop-u IBM R32

Kao deklarirani korisnik javio se je DrGspot koji je ponudio demo CD. Izgleda obecavajuce s velikim razvojnim potencijalom...Potrebno odmah ubaciti driver za joystick tipkovnice te poboljsati koristenje RAM-a jer aplikacije trepere....

9) Tragam za poklonicima malih distribucija radi opcenite razmjene iskustava. Osim DrGspot(Dynebolic) i KruNo (DSL - Krunek) nisam jos nazalost sreo nikoga drugog-a.

original Oct 8 4:38am


CroPuppianNudi (poveznica "nema" znaci samo da jos nisu napisane pisane smjernice)

Br. Vjestina Poveznica Primjedba
0 jos sam Windoza http://www.goosee.com/best/index.html ipak na svoj nacin
1 instalacija puppy-a boot-aj puppy cd za pocetak pritisni Enter
1.1 instalacija puppy na HD http://www.puppylinux.com/hard-puppy.htm provjeri na Grub promt-u >find /vmlinuz
1.2 USB Boot bez podrske BIOS-a http://www.murga-linux.com/puppy/viewtopic.php?t=16950 instalacija GRUB-a na CD
2 pokretanje puppy-a isto kao instalacija blabla
3 instalacija Liberation fontova http://www.linux.hr/modules/newbb/viewtopic.php?topic_id=750&forum=3&post_id=8542#forumpost8542 kompatibilnost s windows core fontovima
3.1 shortcut-ovi za tipkovnicu Menu - Desktop - JWM Configuration narihtaj
4 ircanje http://f0rked.com/articles/irssi xchat kao klasika, ali ipak pobjedjuje irsii
5 p2p mreze, torrent download nema nista lakse s pupctorrent
5.1 standardni download wget http://www.editcorp.com/personal/lars_appel/wget/wget_7.html#SEC31 da, da wget moze sve i vise od ...
6 konfiguracija pisaca nema lokalni i mrezni
7 instalacija standardnih alternativnih window manager-a Fluxbox, IceWM, XFCE ; http://www.tuxfiles.org/linuxhelp/changeman.html potrebno doinstaliranje dodatnih paketa
7.1 instalacija egzoticnih WM wmii, dwm, awesome ????; http://www.xwinman.org/basics.php
7.2 instalacija geeky WM ion, stumpwm ... ???
7.3 konfiguracija rvwm nema ???super light wm razmjene vjestina
7.4 pokreni vise window manager-a na istom host-u svakodnevnedovitljivostionelineri xnest u akciji
7.4 cool desktop ala RV nema prozirni usidreni terminal bez okvira, conky ali sve s JWM prema ideji dboto
8 konverzija audio formata nema nista lakse s Soxgui audio conversion
9 konverzija video formata nema ????
10 przenje cd-a i dvd-a nema lakse nego NERO
11 particioniranje i formatiranje nema nista lakse s Pdisk partition manager-om
11.1 zabunom sam izbrisao datoteku sa svog diska/usb-a http://www.cgsecurity.org/wiki/TestDisk_Download zbilja radi uvjerio me filippo
12 probijanje "zaboravljene" root zaporke nema ne provodi se jer puppy stiti svoj sadrzaj u enkriptiranoj datoteci
13 Gnupg nema upareno s enigmail-om kuzi BuD; s firefox extenzijom fireGPG moguca primjena i s GMAIL -MarcellMars
14 razmjena podataka s drugim PC-om nema MS Windows ili bilo koji drugi OS
15 Tiddly Wiki Blog http://www.picigin.net/logcells/; http://www.anshul.info/blogwiki.html kako poceti zna samo MarcellMars
15a GTD Tool ala Tiddly Wiki http://monkeygtd.tiddlyspot.com/ Jesi li za osobnu produktivnost ??
15b Wiki na USB stapicu http://sourceforge.net/projects/stickwiki vise o svemu PhilipB
16 Wordpress Blog tool nema instaliran lokalno na Puppy XAMPP serveru
17 Backup podataka nema cijele particije, ali moze i MS Windows sistemske datoteke
18 Instalacija Freemind software-a nema postoji dodatni paket za instalaciju koji zahtjeva Sun Java JRE.(DrGspot) Primjenu pri razvoju Web-a nudi HorzA
19 integracija hr lokalizacije http://lokalizacija.linux.hr po DrGspot-u potrebno se upoznati s prevođenjem na http://www.rilinux.hr/index.php?pid=dist
20 citanje MS chm datoteka ne treba Otvori Menu-Document-ChmSee
21 editiranje grafike nema instaliraj gimp pomocu pet installer-a
21.1 animirani gif http://kiberkomunist.wordpress.com/2007/09/19/intervju-u-glasu-istre-povodom-yaxwe-a/ ???
21.2 2D animacija nema ???
22 editiranje vektorske grafike nema inkscapelite je na standardnom cd-u
23 irfan viewer pod linuxom http://www.murga-linux.com/puppy/viewtopic.php?t=17359 da treba nam wine i najbolji preglednik radi besprijekorno dokazuje AcO
24 laptop projekcija nema isprobano sa sony projektorom, jednostavno radi "out of the box"
93 bluetooth ..npr mobitel i laptop.. na prvom uredjaju odredi zaporku, za ostalo pitaj KruNo
94 FLAC audio codec - instaliraj vlc player s flac codec-om
95 puppy na virtual masini-QEMU Puppy http://www.erikveen.dds.nl/qemupuppy/index.html http://www.erikveen.dds.nl/qemupuppy/images/qemupuppytje.gif kopiraj na USB i aktiviraj pod MS Windows/*nix na bilo kojem PC-u
96 TVNC http://www.tightvnc.com/ nista lakse Menu-Network-TightVNC
97 Koriscenje resursa jakog racunala na LAN-u pristupom preko laptop-a nema openssh server i BuD
98 mutt geek email client http://mutt.blackfish.org.uk/overview/ konfiguracija Budd
99 ssh tunneling http://www.suso.org/docs/shell/ssh.sdf; http://www.buzzsurf.com/surfatwork/; http://bud.bljak.org/?p=26 ...ali LesH zna, a BuD razmjenljuje
99a java ssh client http://www.appgate.com/products/80_MindTerm/ opla ..Java...i Vedran
100 tor nema ?????
101 Aplikacije midi produkcije http://www.murga-linux.com/puppy/viewtopic.php?p=127919&search_id=1919590073#127919 low-latency kernel patch, Ingo Molnar
101a Zamjeni tipkovnicu i misa gamepad-om http://git.savannah.nongnu.org/gitweb/?p=topot.git MarcellMars
101b Snimi 4 kanalnu glazbu nema MarcellMars i jack u akciji
102 kismet&aircrack http://dotpups.de/dotpups/Wifi/wireless-utilities/ ...dosta za wirelless ???pitajte BuD
103 ispis mape s web-a oliti tshark u akciji http://blog.rot13.org/2007/10/stitching_maps_together.html http://www.razmjenavjestina.org/[DpavLin]
104 koristi jedan mis za vise ekrana http://synergy2.sourceforge.net/about.html instaliraj synergy i gui quicksynergy isprobao BuD
105 Kreiraj vlastitu pristupnu tocku na LapTop-u s Atheros Wirelless karticom ethernet wifi bridge ipak ne zaboravi instalirati bridge-utils te pokrenuti dhcp server na lokalnoj mrezi - vjerujete smislio Dobrica, a potvrdio Bud :)
150 puppy s gentoo-om kao underdog linux-om http://www.puppyos.net/blog/index.php?entry=entry070325-044449 potrebna instalacija Sabayon-a i pomoc AkA - kao laksa ipak se pokazala instalacija Gentoo 2007.0 Minimal CD-a uz 2 tjedna konfiguracije

original Dec 15 5:40am


Dobrica Pavlinušić


Linux hacker since 1995.

Razmjenjivač od 2006.

Stranice: http://www.rot13.org/~dpavlin/

Blog: http://blog.rot13.org/

Privatni wiki: http://wiki.rot13.org/rot13/

e-mail adresa: (yeah right spam bots!)

Best of na ovom wikiju

Postovi sa mog bloga

  • dspace shibboleth config and debug

    Configuring shibboleth is always somewhat confusing for me, so I decided to write this blog post to document how configuration for dspace is done and debugged.

    This information is scattered over documentation and dspace-tech mailing list so hopefully this will be useful to someone, at least me if I ever needed to do this again.

    First step is to install mod-shib for apache: apt install libapache2-mod-shib Now there are two files which have to be modified with your information, /etc//shibboleth/shibboleth2.xml which defines configuration and /etc/shibboleth/attribute-map.xml to define which information will be passwd from shibboleth to application.


    Here we have to define headers which dspace expects, so it can get information from upstream idenitity provider.

    diff --git a/shibboleth/attribute-map.xml b/shibboleth/attribute-map.xml
    index 1a4a3b0..a8680da 100644
    --- a/shibboleth/attribute-map.xml
    +++ b/shibboleth/attribute-map.xml
    @@ -163,4 +163,34 @@

    + <!-- In addition to the attribute mapping, DSpace expects the following Shibboleth Headers to be set:
    + - SHIB-NETID
    + - SHIB-MAIL
    + These are set by mapping the respective IdP attribute (left hand side) to the header attribute (right hand side).
    + -->
    + <Attribute name="urn:oid:0.9.2342.19200300.100.1.1" id="SHIB-NETID"/>
    + <Attribute name="urn:mace:dir:attribute-def:uid" id="SHIB-NETID"/>
    + <Attribute name="hrEduPersonPersistentID" nameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic" id="SHIB-NETID"/>
    + <Attribute name="urn:oid:0.9.2342.19200300.100.1.3" id="SHIB-MAIL"/>
    + <Attribute name="urn:mace:dir:attribute-def:mail" id="SHIB-MAIL"/>
    + <Attribute name="mail" nameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic" id="SHIB-MAIL"/>
    + <Attribute name="urn:oid:" id="SHIB-GIVENNAME"/>
    + <Attribute name="urn:mace:dir:attribute-def:givenName" id="SHIB-GIVENNAME"/>
    + <Attribute name="givenName" nameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic" id="SHIB-GIVENNAME"/>
    + <Attribute name="urn:oid:" id="SHIB-SURNAME"/>
    + <Attribute name="urn:mace:dir:attribute-def:sn" id="SHIB-SURNAME"/>
    + <Attribute name="sn" nameFormat="urn:oasis:names:tc:SAML:2.0:attrname-format:basic" id="SHIB-SURNAME"/>


    This is main configuration file for shibd. First we need to add OutOfProcess and InProcess to include useful information in shibd.log which are very useful.

    diff --git a/shibboleth/shibboleth2.xml b/shibboleth/shibboleth2.xml
    index ddfb98a..7b55987 100644
    --- a/shibboleth/shibboleth2.xml
    +++ b/shibboleth/shibboleth2.xml
    @@ -2,15 +2,46 @@

    - <OutOfProcess tranLogFormat="%u|%s|%IDP|%i|%ac|%t|%attr|%n|%b|%E|%S|%SS|%L|%UA|%a" />
    + <!-- The OutOfProcess section contains properties affecting the shibd daemon. -->
    + <OutOfProcess logger="shibd.logger" tranLogFormat="%u|%s|%IDP|%i|%ac|%t|%attr|%n|%b|%E|%S|%SS|%L|%UA|%a">
    + <!--
    + <Extensions>
    + <Library path="odbc-store.so" fatal="true"/>
    + </Extensions>
    + -->
    + </OutOfProcess>

    + <!--
    + The InProcess section contains settings affecting web server modules.
    + Required for IIS, but can be removed when using other web servers.
    + -->
    + <InProcess logger="native.logger">
    + <ISAPI normalizeRequest="true" safeHeaderNames="true">
    + <!--
    + Maps IIS Instance ID values to the host scheme/name/port. The name is
    + required so that the proper <Host> in the request map above is found without
    + having to cover every possible DNS/IP combination the user might enter.
    + -->
    + <Site id="1" name="sp.example.org"/>
    + <!--
    + When the port and scheme are omitted, the HTTP request's port and scheme are used.
    + If these are wrong because of virtualization, they can be explicitly set here to
    + ensure proper redirect generation.
    + -->
    + <!--
    + <Site id="42" name="virtual.example.org" scheme="https" port="443"/>
    + -->
    + </ISAPI>
    + </InProcess>
    By default, in-memory StorageService, ReplayCache, ArtifactMap, and SessionCache
    are used. See example-shibboleth2.xml for samples of explicitly configuring them.

    <!-- The ApplicationDefaults element is where most of Shibboleth's SAML bits are defined. -->
    - <ApplicationDefaults entityID="https://sp.example.org/shibboleth"
    + <ApplicationDefaults entityID="https://repository.clarin.hr/Shibboleth.sso/Metadata"
    REMOTE_USER="eppn subject-id pairwise-id persistent-id"

    @@ -31,8 +62,8 @@
    entityID property and adjust discoveryURL to point to discovery service.
    You can also override entityID on /Login query string, or in RequestMap/htaccess.
    - <SSO entityID="https://idp.example.org/idp/shibboleth"
    - discoveryProtocol="SAMLDS" discoveryURL="https://ds.example.org/DS/WAYF">
    + <SSO
    + discoveryProtocol="SAMLDS" discoveryURL="https://discovery.clarin.eu">

    @@ -68,6 +99,10 @@
    <MetadataProvider type="XML" validate="true" path="partner-metadata.xml"/>
    + <MetadataProvider type="XML" url="https://login.aaiedu.hr/shib/saml2/idp/metadata.php" backingFilePath="aaieduhr-metadata.xml" maxRefreshDelay="3600" />

    <!-- Example of remotely supplied batch of signed metadata. -->


    To make upstream identity provider connect to us, we need valid certificate so we need /etc//shibboleth/sp-encrypt-cert.pem and /etc/shibboleth/sp-encrypt-key.pem.
    Since we are using Let's encrypt for certificates, I'm using shell script to move them over and change permissions so shibd will accept them.

    dpavlin@repository:/etc/shibboleth$ cat update-certs.sh
    #!/bin/sh -xe
    cp -v /etc/letsencrypt/live/repository.clarin.hr/privkey.pem sp-encrypt-key.pem
    cp -v /etc/letsencrypt/live/repository.clarin.hr/cert.pem sp-encrypt-cert.pem
    chown -v _shibd:_shibd sp-*.pem
    /etc/init.d/shibd restart

    dspace configuration

    We are using upstream dspace docker which includes local.cfg from outside using docker bind, but also re-defines shibboleth headers so we need to restore them to default names defined before in /etc/shibboleth/attribute-map.xml.

    diff --git a/docker/local.cfg b/docker/local.cfg
    index 168ab0dd42..6f71be32cf 100644
    --- a/docker/local.cfg
    +++ b/docker/local.cfg
    @@ -14,3 +14,22 @@
    # test with: /dspace/bin/dspace dsprop -p rest.cors.allowed-origins

    handle.prefix = 20.500.14615
    +shibboleth.discofeed.url = https://repository.clarin.hr/Shibboleth.sso/DiscoFeed
    +plugin.sequence.org.dspace.authenticate.AuthenticationMethod = org.dspace.authenticate.PasswordAuthentication
    +plugin.sequence.org.dspace.authenticate.AuthenticationMethod = org.dspace.authenticate.ShibAuthentication
    +# in sync with definitions from /etc/shibboleth/attribute-map.xml
    +authentication-shibboleth.netid-header = SHIB-NETID
    +authentication-shibboleth.email-header = SHIB-MAIL
    +authentication-shibboleth.firstname-header = SHIB-GIVENNAME
    +authentication-shibboleth.lastname-header = SHIB-SURNAME
    +# Should we allow new users to be registered automatically?
    +authentication-shibboleth.autoregister = true

    example of working login

    ==> /var/log/shibboleth/shibd.log <==
    2024-11-18 17:18:40 INFO XMLTooling.StorageService : purged 2 expired record(s) from storage

    ==> /var/log/shibboleth/transaction.log <==
    2024-11-18 17:27:42|Shibboleth-TRANSACTION.AuthnRequest|||https://login.aaiedu.hr/shib/saml2/idp/metadata.php||||||urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST||||||

    ==> /var/log/shibboleth/shibd.log <==
    2024-11-18 17:27:42 INFO Shibboleth.SessionCache [1] [default]: new session created: ID (_e37d7f0b8ea3ff4d718b3e2c68d81e45) IdP (https://login.aaiedu.hr/shib/saml2/idp/metadata.php) Protocol(urn:oasis:names:tc:SAML:2.0:protocol) Address (

    ==> /var/log/shibboleth/transaction.log <==
    2024-11-18 17:27:42|Shibboleth-TRANSACTION.Login|https://login.aaiedu.hr/shib/saml2/idp/metadata.php!https://repository.clarin.hr/Shibboleth.sso/Metadata!303a3b0f72c5e29bcbdf35cab3826e62|_e37d7f0b8ea3ff4d718b3e2c68d81e45|https://login.aaiedu.hr/shib/saml2/idp/metadata.php|_3b8a8dc87db05b5e6abf8aaf9d5c67e6ebc62a2eed|urn:oasis:names:tc:SAML:2.0:ac:classes:PasswordProtectedTransport|2024-11-18T17:01:57|SHIB-GIVENNAME(1),SHIB-MAIL(2),SHIB-NETID(1),SHIB-SURNAME(1),persistent-id(1)|303a3b0f72c5e29bcbdf35cab3826e62|urn:oasis:names:tc:SAML:2.0:bindings:HTTP-POST||urn:oasis:names:tc:SAML:2.0:status:Success|||Mozilla/5.0 (X11; Linux x86_64; rv:134.0) Gecko/20100101 Firefox/134.0|

    boken urf-8 in shibboleth user first name or surname

    You might think that now everything works, but dspace will try to re-encode utf-8 characters received from upstream shibboleth using iso-8859-1 breaking accented characters in process. It has configuration for it, but by default it's false.

    root@4880a3097115:/usr/local/tomcat/bin# /dspace/bin/dspace dsprop -p authentication-shibboleth.reconvert.attributes

    So we need to modify dspace-angular/docker/local.cfg and turn it on:

    # incomming utf-8 from shibboleth AAI

  • WordPress comment spam - what to do about it and how

    Let's assume that you inherited WordPress installation (or three) with tens of instances (or hundreds in this case) which are generating spam using comments. I will try to describe problem here and suggest solution which doesn't require clicking in WordPress but instead using wp cli which is faster and easier especially if you don't have administrative account on all those WordPress instances. Interested? Read on.

    WordPress comment spam

    If you try googling around how to prevent WordPress comment spam, you will soon arrive at two solutions:

    • changing default_comment_status to closed which will apply to all new posts
    • changing comment_status on all existing posts to close
    However, this is not full solution, since media in WordPress can also have comments enabled, and those two steps above won't solve spam from media. There are plugins to disable media comments, but since we have many WordPress instances I wanted to find solution which doesn't require modifying each of them. And there is simple solution using close_comments_for_old_posts option which will basically do same thing after close_comments_days_old days (which by default is 14).

    So, in summary, all this can easily be done using following commands in wp cli:

    wp post list --post-status=publish --post_type=post --comment_status=open --format=ids \
            | xargs -d ' ' -I % wp post update % --comment_status=closed
    wp option update default_comment_status closed
    wp option update close_comments_for_old_posts 1

    If wp cli doesn't work for you (for example if your WordPress instance is so old that wp cli is returning errors for some plugins instead of working) you can achieve same thing using SQL (this assumes that wp db query is working, but if it doesn't you can always connect using mysql and login and password from wp-config.php):

    cat << __SQL__ | wp db query
    update wp_posts set comment_status='closed' where comment_status != 'closed' ;
    update wp_options set option_value = 'closed' where option_name = 'default_comment_status' and option_value != 'closed' ;
    update wp_options set option_value = 1 where option_name = 'close_comments_for_old_posts' and option_value != 1
    This is also faster option, because all SQL SQL queries are invoked using single wp db query call (and this since php instance startup which can time some time).

    Cleaning up held or spam comments

    After you disabled new spam in comments, you will be left with some amount of comments which are marked as spam or left in held status if your WordPress admins didn't do anything about them. To cleanup database, you can use following to delete spam or held comments:

    wp comment delete $(wp comment list --status=spam --format=ids) --force
    wp comment delete $(wp comment list --status=hold --format=ids) --force

    Disabling contact form spam

    All spam is not result of comments, some of it might come through contact form. To disable those, you can disable comment plugin which will leave ugly markup on page without it enabled, but spams will stop.

    # see which contact plugins are active
    wp plugin list | grep contact
    contact-form-7  active  none
    contact-form-7-multilingual     active  none    1.2.1
    # disable them
    wp plugin deactivate contact-form-7

  • freeradius testing and logging

    If you are put in front of working radius server which you want to upgrade, but this is your first encounter with radius, following notes might be useful to get you started.

    Goal is to to upgrade system and test to see if everything still works after upgrade.


    First way to test radius is radtest which comes with freeradius and enables you to verify if login/password combination results in successful auth.

    You have to ensure that you have client in our case in /etc/freeradius/3.0/clients-local.conf file:

    client {
        ipv4addr    =
        secret      = testing123
        shortname   = test-localhost
    Restart freeradius and test
    # systemctl restart freeradius
    # radtest username@example.com PASSword 0 testing123
    Sent Access-Request Id 182 from to length 86
        User-Name = "username@example.com"
        User-Password = "PASSword"
        NAS-IP-Address =
        NAS-Port = 0
        Message-Authenticator = 0x00
        Cleartext-Password = "PASSword"
    Received Access-Accept Id 182 from to length 115
        Connect-Info = "NONE"
        Configuration-Token = "djelatnik"
        Callback-Number = "username@example.com"
        Chargeable-User-Identity = 0x38343431636162353262323566356663643035613036373765343630333837383135653766376434
        User-Name = "username@example.com"
    # tail /var/log/freeradius/radius.log
    Tue Dec 27 19:41:15 2022 : Info: rlm_ldap (ldap-aai): Opening additional connection (11), 1 of 31 pending slots used
    Tue Dec 27 19:41:15 2022 : Auth: (9) Login OK: [user@example.com] (from client test-localhost port 0)
    This will also test connection to LDAP in this case.

    radsniff -x

    To get dump of radius traffic on production server to stdout, use radsniff -x.

    This is useful, but won't get you encrypted parts of EAP.

    freeradius logging

    To see all protocol decode from freeradius, you can run it with -X flag in terminal which will run it in foreground with debug output.

    # freeradius -X
    If you have ability to run isolated freeradius for testing, this is easiest way to see all configuration parsed (and warnings!) and decoded EAP traffic.

    generating more verbose log file

    Adding -x to /etc/default/freeradius or to radius command-line will generate debug log in log file. Be mindful about disk space usage for additional logging! But to see enough debugging in logs to see which EAP type is unsupported like:

    dpavlin@deenes:~/radius-tools$ grep 'unsupported EAP type' /var/log/freeradius/radius.log
    (27) eap-aai: Peer NAK'd asking for unsupported EAP type PEAP (25), skipping...
    (41) eap-aai: Peer NAK'd asking for unsupported EAP type PEAP (25), skipping...
    (82) eap-aai: Peer NAK'd asking for unsupported EAP type PEAP (25), skipping...
    (129) eap-aai: Peer NAK'd asking for unsupported EAP type PEAP (25), skipping...
    (142) eap-aai: Peer NAK'd asking for unsupported EAP type PEAP (25), skipping...
    you will need to use -xx (two times x) to get enough debugging log. Again, monitor disk usage carefully.

    EAP radius testing using eapol_test from wpa_supplicant

    To test EAP we need to build eapol_test tool from wpa_supplicant.

    wget http://w1.fi/releases/wpa_supplicant-2.10.tar.gz
    cd wpa_supplicant-/wpa_supplicant
    $ cp defconfig .config
    $ vi .config
    # install development libraries needed
    apt install libssl-dev libnl-3-dev libnl-genl-3-dev libnl-route-3-dev
    make eapol_test


    Now ne need configuration file for wpa_supplicant which tests EAP:

    Now we can test against our radius server (with optional certificate test):
    # ./wpa_supplicant-2.10/wpa_supplicant/eapol_test -c ffzg.conf -s testing123
    and specifying your custom CA cert:
    # ./wpa_supplicant-2.10/wpa_supplicant/eapol_test -c ffzg.conf -s testing123 -o /etc/freeradius/3.0/certs/fRcerts/server-cert.pem
    This will generate a lot of output, but in radius log you should see
    Tue Dec 27 20:00:33 2022 : Auth: (9)   Login OK: [username@example.com] (from client test-localhost port 0 cli 02-00-00-00-00-01 via TLS tunnel)
    Tue Dec 27 20:00:33 2022 : Auth: (9) Login OK: [username@example.com] (from client test-localhost port 0 cli 02-00-00-00-00-01)


    This seems like a part of tibial knowledge (passed to me by another sysadmin), but to make GTC work, change of default_eap_type to gtc under ttls and add gtc section:

            ttls {
                    # ... rest of config...
                    default_eap_type = gtc
                    # ... rest of config...
            gtc {
                    challenge = "Password: "
                    auth_type = LDAP
    and changing wpa-supplicant configuration to:
    CLONE dupli deenes:/home/dpavlin# cat eduroam-ttls-gtc.conf


    To make PEAP GTC work, I needed to add:

    diff --git a/freeradius/3.0/mods-available/eap-aai b/freeradius/3.0/mods-available/eap-aai
    index 245b7eb..6b7cefb 100644
    --- a/freeradius/3.0/mods-available/eap-aai
    +++ b/freeradius/3.0/mods-available/eap-aai
    @@ -73,5 +73,11 @@ eap eap-aai {
                    auth_type = LDAP
    +       # XXX 2023-01-06 dpavlin - peap
    +       peap {
    +               tls = tls-common
    +               default_eap_type = gtc
    +               virtual_server = "default"
    +       }
    which then can be tested with:

  • Local domains and caching bind server without Internet connection

    What do do when you have bind as caching resolver which forwards to your DNS servers which do recursive resolving and host primary and secondary of your local domains and upstream link goes down?

    To my surprise, caching server can't resolve your local domains although both primary and secondary of those domains are still available on your network and can resolve your domains without problem (when queried directly).

    That's because caching server tries to do recursive resolving using root servers which aren't available if your upstream link is down, so even your local domains aren't available to clients using caching server.

    Solution is simple if you know what it is. Simply add your local zones on caching server with type forward:

    zone "ffzg.hr" {
        type forward;
        forwarders {
    zone "ffzg.unizg.hr" {
        type forward;
        forwarders {
    This will work, since queries for those zones are no longer recursive queries, so they don't need root servers which aren't available without upstream link.

  • dovecot maildir on compressed zfs pool

    This is a story about our mail server which is coming close to it's disk space capacity:

    root@mudrac:/home/prof/dpavlin# df -h
    Filesystem      Size  Used Avail Use% Mounted on
    /dev/vda1        20G  7.7G   11G  42% /
    /dev/vdb        4.0T  3.9T   74G  99% /home
    /dev/vdc        591G  502G   89G  85% /home/stud

    You might say that it's easy to resize disk and provide more storage, but unfortunately it's not so easy. We are using ganeti for our virtualization platform, and current version of ganeti has limit of 4T for single drbd disk.

    This can be solved by increasing third (vdc) disk and moving some users to it, but this is not ideal. Another possibility is to use dovecot's zlib plugin to compress mails. However, since our Maildir doesn't have required S=12345 as part of filename to describe size of mail, this solution also wasn't applicable to us.

    Installing lvm would allow us to use more than one disk to provide additional storage, but since ganeti already uses lvm to provide virtual disks to instance this also isn't ideal.

    OpenZFS comes to rescue

    Another solution is to use OpenZFS to provide multiple disks as single filesystem storage, and at the same time provide disk compression. Let's create a pool:

    zpool create -o ashift=9 mudrac /dev/vdb
    zfs create mudrac/mudrac
    zfs set compression=zstd-6 mudrac
    zfs set atime=off mudrac
    We are using ashift of 9 instead of 12 since it uses 512 bytes blocks on storage (which is supported by our SSD storage) that saves quite a bit of space:
    root@t1:~# df | grep mudrac
    Filesystem      1K-blocks       Used Available Use% Mounted on
    mudrac/mudrac  3104245632 3062591616  41654016  99% /mudrac/mudrac # ashift=12
    m2/mudrac      3104303872 2917941376 186362496  94% /m2/mudrac     # ashift=9
    This is saving of 137Gb just by choosing smaller ashift.

    Most of our e-mail are messages kept on server, but rarely accessed. Because of that I opted to use zstd-6 (instead of default zstd-3) to compress it as much as possible. But, to be sure it's right choice, I also tested zstd-12 and zstd-19 and results are available below:

    Compression levels higher than 6 seem to need at least 6 cores to compress data, so zstd-6 seemed like best performance/space tradeoff, especially if we take into account additional time needed for compression to finish.

    bullseye kernel for zfs and systemd-nspawn

    To have zfs, we need recent kernel. Instead of upgrading whole server to bullseye at this moment, I decided to boot bullseye with zfs and start unmodified installation using systemd-nspawn. This is easy using following command line:

    systemd-nspawn --directory /mudrac/mudrac/ --boot --machine mudrac --network-interface=eth1010 --hostname mudrac
    but it's not ideal for automatic start of machine, so better solution is to use machinectl and systemd service for this. Converting this command-line into nspawn is non-trivial, but after reading man systemd.nspawn configuration needed is:
    root@t1:~# cat /etc/systemd/nspawn/mudrac.nspawn
    # ln -s /mudrac/mudrac /var/lib/machines/
    # don't chown files
    Please note that we are not using WorkingDirectory (which would copy files from /var/lib/machines/name) but instead just created symlink to zfs filesystem in /var/lib/machines/.

    To enable and start container on boot, we can use:

    systemctl enable systemd-nspawn@mudrac
    systemctl start systemd-nspawn@mudrac

    Keep network device linked to mac address

    Predictable network device names which bullseye uses should provide stable network device names. This seems like clean solution, but in testing I figured out that adding additional disks will change name of network devices. Previously Debian used udev to provide mapping between network interface name and device mac using /etc/udev/rules.d/70-persistent-net.rules. Since this is no longer the case, solution is to define similar mapping using systemd network like this:

    root@t1:~# cat /etc/systemd/network/11-eth1010.link

    Increasing disk space

    When we do run out of disk space again, we could add new disk and add it to zfs pool using:

    root@t2:~# zpool set autoexpand=on mudrac
    root@t2:~# zpool add mudrac /dev/vdc
    Thanks to autoexpand=on above, this will automatically make new space available. However, if we increase existing disk up to 4T new space isn't visible immediately since zfs has partition table on disk, so we need to extend device to use all space available using:
    root@t2:~# zpool online -e mudrac vdb

    zfs snapshots for backup

    Now that we have zfs under our mail server, it's logical to also use zfs snapshots to provide nice, low overhead incremental backup. It's as easy as:

    zfs snap mudrac/mudrac@$( date +%Y-%m-%d )
    in cron.daliy and than shipping snapshots to backup machine. I did look into existing zfs snapshot solutions, but they all seemed a little bit too complicated for my use-case, so I wrote zfs-snap-to-dr.pl which copies snapshots to backup site.

    To keep just and two last snapshots on mail server simple shell snippet is enough:

    zfs list -r -t snapshot -o name -H mudrac/mudrac > /dev/shm/zfs.all
    tail -2 /dev/shm/zfs.all > /dev/shm/zfs.tail-2
    grep -v -f /dev/shm/zfs.tail-2 /dev/shm/zfs.all | xargs -i zfs destroy {}
    Using shell to create and expire snapshots and simpler script to just transfer snapshots seems to me like better and more flexible solution than implementing it all in single perl script. In a sense, it's the unix way of small tools which do one thing well. Only feature which zfs-snap-to-dr.pl has aside from snapshot transfer is ability to keep just configurable number of snapshots on destination which enables it to keep disk usage under check (and re-users already collected data about snapshots).

    This was interesting journey. In future, we will migrate mail server to bullseye and remove systemd-nspawn (it feels like we are twisting it's hand using it like this). But it does work, and is simple solution which will come handy in future.

  • Track your configuration using git

    I have a confession to make: etckeeper got me spoiled. I really like ability to track changes in git and have it documented in git log. However, this time I was working on already installed machine which didn't have much files in /etc for etckeeper, but I wanted to have peace of mind with configuration in git.

    This got me thinking: I could create git in root (/) of file-system and than track any file using it. Since this is three servers I could also use other two nodes to make a backup of configuration by pushing to them.

    To make this working first I need to do init git repository and create branch with same name as short version of hostname (this will allow us to push and pull with unique branch name on each machine):

    # cd /
    # git init
    # git checkout -b $( hostname -s )
    With this done, all I have to do now is add and commit a file that I want to change (to preserve original version), make changes and commit it after change. To make first step easier, I created script which allows me to do git ac /path/to/file that will add file to git and commit original version in just one command (ac = add+commit).
    # cat /usr/local/bin/git-ac
    git add $*
    git commit -m $1 $*
    With this in place, I now have nice log of one server. Now it's time to repeat it on each machine and use git remote add host1 host1:/.git to add other hosts.

    Since I have some commits in branch with short hostname, it's also right moment to issue git branch -d master to remove master branch which we don't use (and will clutter out output later).

    We can fetch branches from other servers manually, but since we already have that information in git remote I wrote another quick script:

    # cat /usr/local/bin/git-f
    git remote | xargs -i git fetch {}
    With this I can issue just git f to fetch all branches on all hosts. If I want to push changes to other nodes, I can do git p which is similar script:
    # cat /usr/local/bin/git-p
    # disable push with git remote set-url --push pg-edu no_push
    git remote | xargs -i git push {} $( hostname -s )
    There is also a note how to disable push to some remote (if you don't want to have full history there, but want to pull from it).

    With this in place, you will get nice log of changes in git, and since every host hast branch of all other hosts, you can even use git cherry-pick to get same change on multiple hosts. Last useful hint is to use git branch -va which will show all branches together with sha of last commit which can be used to cherry pick last commit. If you need older commits, you can always issue git log on remote branch and pick up commit that you need.

    Last step is to add cron job in cron.daily to commit changes daily which you forgot to commit:

    # cat /etc/cron.daily/cron-commit
    cd /
    git commit -m $( date +%Y-%m-%dT%H%M%S ) -a
    With everything documented here, you have easy to use git in which you can track changes of any file on your file-system. There is one additional note: if file that you want to track is on nfs mount, you will need to add and commit it from outside of nfs mount (specifying full path to file on nfs) because if you are inside nfs mount git will complain that there is no git repository there.

  • mysql database with latin1 charset and utf8 data

    I know that it's 2021, but we are still having problems with encoding in mysql (MariaDB in this cane, but problem is smilar). This time, it's application which I inherited which saves utf-8 data into database which is declared as latin1.

    How can you check if this is problem with your database too?

    MariaDB [ompdb]> show create database ompdb ;
    | Database | Create Database                                                  |
    | ompdb    | CREATE DATABASE `ompdb` /*!40100 DEFAULT CHARACTER SET latin1 */ |
    Alternative way is to invoke mysqldump ompdb and example file generated. Why is this a problem? If we try SQL query on one of tables:
    MariaDB [ompdb]> select * from submission_search_keyword_list where keyword_text like 'al%ir' ;
    | keyword_id | keyword_text |
    |       3657 | alzir        |
    |       1427 | alžir       |
    You can clearly see double-encoded utf8 which should be alžir. This is because our client is connecting using utf8 charset, getting utf8 data in binary form so we see double-encoding. So we can try to conntect using latin1 with:
    root@omp-clone:/home/dpavlin# mysql --default-character-set=latin1 ompdb
    MariaDB [ompdb]> select * from submission_search_keyword_list where keyword_text like 'al%ir' ;
    | keyword_id | keyword_text |
    |       3657 | alzir        |
    |       1427 | alžir       |
    Note that everything is still not well, because grid after our utf8 data is not aligned well.

    Googling around, you might find that possible solution is to add --default-character-set=latin1 to mysqldump, edit all occurrences of latin1 to utf8 (utf8mb4 is better choice) and reload database, and problem is solved, right?

    If we try to do that, we will get following error:

    ERROR 1062 (23000) at line 1055 in file: '1.sql': Duplicate entry 'alžir' for key 'submission_search_keyword_text'
    Why is this? MySQL uses collation setting to remove accents from data, so it treats alzir and alžir as same string. Since we have both of them in our data, this is not good enough. Also, editing database manually always makes me nervous, so we will using following to get database dump without declaration of encoding (due to --skip-opt option), but using latin1 for dumping data:
    mysqldump ompdb --skip-set-charset --default-character-set=latin1 --skip-opt > /tmp/1.sql
    Next, we need to create database with collation which preserves everything (utf8mb4_bin) using:
    CREATE DATABASE omp2 CHARACTER SET = 'utf8mb4' COLLATE 'utf8mb4_bin' ;
    Finally we should be able to reload created dump without errors:
    mysql omp2 < /tmp/1.sql

    One additional benefit of using --skip-opt for mysqldump is that every insert is split into individual line. So if you want to have correct collation and skip data which is invalid (which might be possible depending on where data is) you can use same mysqldump file and add -f flag when reloading dump like mysql -f omp2 < /tmp/1.sql which will report data that have errors, but insert everything else into database.

  • request tracker where ldap users have multiple mail addresses

    We have been using request tracker for years but recently changed how many e-mail addresses we keep in LDAP mail attribute. Up until now, we stored just our local e-mail addresses there, but lately we also added external addresses that our users have.

    This created a problem when users try to send e-mail from external address to our rt. To test this, I have account usertest which has dpavlin@example.com as first mail in LDAP and dpavlin@m.example.com as second one and I'm sending e-mail from dpavlin@m.example.com like this:

    swaks --to sysadmin@rt.example.com --from dpavlin@m.example.com
    Result is following log which seems very verbose, but is also useful in understanding what is going wrong:

    [14188] [Fri Apr 16 07:57:26 2021] [debug]: Going to create user with address 'dpavlin@m.example.com' (/usr/local/share/request-tracker4/lib/RT/Interface/Email/Auth/MailFrom.pm:100)
    [14188] [Fri Apr 16 07:57:26 2021] [debug]: RT::Authen::ExternalAuth::CanonicalizeUserInfo called by RT::Authen::ExternalAuth /usr/local/share/request-tracker4/plugins/RT-Authen-ExternalAuth/lib/RT/Authen/ExternalAuth.pm 886 with: Comments: Autocreated on ticket submission, Disabled: , EmailAddress: dpavlin@m.example.com, Name: dpavlin@m.example.com, Password: , Privileged: , RealName: (/usr/local/share/request-tracker4/plugins/RT-Authen-ExternalAuth/lib/RT/Authen/ExternalAuth.pm:793)
    [14188] [Fri Apr 16 07:57:26 2021] [debug]: Attempting to get user info using this external service: FFZG_LDAP (/usr/local/share/request-tracker4/plugins/RT-Authen-ExternalAuth/lib/RT/Authen/ExternalAuth.pm:801) [14188] [Fri Apr 16 07:57:26 2021] [debug]: Attempting to use this canonicalization key: Name (/usr/local/share/request-tracker4/plugins/RT-Authen-ExternalAuth/lib/RT/Authen/ExternalAuth.pm:810)
    [14188] [Fri Apr 16 07:57:26 2021] [debug]: LDAP Search === Base: dc=ffzg,dc=hr == Filter: (&(objectClass=*)(uid=dpavlin@m.example.com)) == Attrs: co,uid,postalCode,physicalDeliveryOfficeName,uid,streetAddress,telephoneNumber,hrEduPersonUniqueID,cn,l,st,mail (/usr/local/share/request-tracker4/plugins/RT-Authen-ExternalAuth/lib/RT/Authen/ExternalAuth/LDAP.pm:358)
    [14188] [Fri Apr 16 07:57:26 2021] [debug]: Attempting to use this canonicalization key: EmailAddress (/usr/local/share/request-tracker4/plugins/RT-Authen-ExternalAuth/lib/RT/Authen/ExternalAuth.pm:810)
    [14188] [Fri Apr 16 07:57:26 2021] [debug]: LDAP Search === Base: dc=ffzg,dc=hr == Filter: (&(objectClass=*)(mail=dpavlin@m.example.com)) == Attrs: co,uid,postalCode,physicalDeliveryOfficeName,uid,streetAddress,telephoneNumber,hrEduPersonUniqueID,cn,l,st,mail (/usr/local/share/request-tracker4/plugins/RT-Authen-ExternalAuth/lib/RT/Authen/ExternalAuth/LDAP.pm:358)
    [14188] [Fri Apr 16 07:57:26 2021] [info]: RT::Authen::ExternalAuth::CanonicalizeUserInfo returning Address1: , City: Zagreb, Comments: Autocreated on ticket submission, Country: , Disabled: , EmailAddress: dpavlin@example.com, ExternalAuthId: usertest@example.com, Gecos: usertest, Name: usertest, Organization: , Password: , Privileged: , RealName: Testičić Probišić Đž, State: , WorkPhone: 014092209, Zip: (/usr/local/share/request-tracker4/plugins/RT-Authen-ExternalAuth/lib/RT/Authen/ExternalAuth.pm:869)
    [14188] [Fri Apr 16 07:57:26 2021] [crit]: User could not be created: User creation failed in mailgateway: Name in use (/usr/local/share/request-tracker4/lib/RT/Interface/Email.pm:243)
    [14188] [Fri Apr 16 07:57:26 2021] [warning]: Couldn't load user 'dpavlin@m.example.com'.giving up (/usr/local/share/request-tracker4/lib/RT/Interface/Email.pm:876)
    [14188] [Fri Apr 16 07:57:26 2021] [crit]: User could not be loaded: User 'dpavlin@m.example.com' could not be loaded in the mail gateway (/usr/local/share/request-tracker4/lib/RT/Interface/Email.pm:243)
    [14188] [Fri Apr 16 07:57:26 2021] [error]: Could not load a valid user: RT could not load a valid user, and RT's configuration does not allow for the creation of a new user for this email (dpavlin@m.example.com). You might need to grant 'Everyone' the right 'CreateTicket' for the queue SysAdmin. (/usr/local/share/request-tracker4/lib/RT/Interface/Email.pm:243)

    I'm aware that lines are long, and full of data but they describe problem quite well:

    1. RT tries to find user with e-mail address dpavlin@m.example.com (which doesn't exist since RT uses just first e-mail from LDAP which is dpavlin@example.com)
    2. then it tries to create new user with dpavlin@m.example.com, but runs another search over ldap to make sure it won't create duplicate user
    3. this will find user in ldap due to second email adress and gives wrong error message.
    As log file is very detailed and include path to files used and line numbers solution was simple additional check for this exact case:
    --- /usr/share/request-tracker4/plugins/RT-Authen-ExternalAuth/lib/RT/Authen/ExternalAuth/LDAP.pm.orig  2017-04-05 14:57:22.932000146 +0200
    +++ /usr/share/request-tracker4/plugins/RT-Authen-ExternalAuth/lib/RT/Authen/ExternalAuth/LDAP.pm       2021-04-16 15:49:34.800001819 +0200
    @@ -429,6 +429,12 @@
    +    # FIXME -- dpavlin 2021-04-16 -- check if e-mail from ldap is same as incomming one
    +    if ( $key eq 'mail' && $value ne $params{EmailAddress}) {
    +       $RT::Logger->debug( "LDAP mail check return not found key = $key value = $value $params{EmailAddress}");
    +       $found = 0;
    +    }
         undef $ldap;
         undef $ldap_msg;
    If e-mail address we found in LDAP is not the same one we did lookup on in CanonicalizeUserInfo we just ignore it.

    I think that nicely shows power of good logs and open source software written in scripting language which you can modify in the place for your (slightly broken) configuration.

  • openocd, raspberry pi and unknown stm32

    If you ever needed to connect to JTAG or SWD on stm32 and tried to search for solutions on Internet, you quickly realized that amount of information is overwhelming. However, fear not. If you have Raspberry Pi and few wires, you are already half-way there.


    For me, this whole adventure started when I got non-working sensor which had swd header and blob over chip. This was not my first swd experiment. Thanks to great Hackaday Remoticon 2020 The Hackers Guide to Hardware Debugging by Matthew Alt I had already tried to connect using swd from Raspberry Pi to bluepill (which is stm32f103) so I had some experience with that. Now I also had unknown device so I can try what I can do with it.

    For a start, you can notice that device have UART TX and RX pins already soldered, so first step was to connect normal 3.3V serial to those pins and see if we have some output. And I did. I could see that it's contacting sensor chip and trying to initiate NBIoT connection, but fails. So next step was to solder SWD pins, and connect them to Raspberry Pi. For that, I created openocd configuration rpi4-zc-swd.cfg and uncommeted bottom of configuration to get first idea what chip is on the board (since it's covered with blob):

    swd newdap chip cpu -enable
    dap create chip.dap -chain-position chip.cpu
    target create chip.cpu cortex_m -dap chip.dap
    dap info
    I did made some assumptions where, for example that chip is cortex_m, but since it has swd header, there was a good chance it was.

    However, since this sensor tries to get measurements in some configurable interval, just connecting using openocd didn't work since sensor after power up and sensor check went into sleep. While I could re-plug sensor repeatably, this is not needed since there is also rst pin (connected to pin 22 on Raspberry pi) which we can toggle from shell using:

    raspi-gpio set 22 op
    raspi-gpio get 22
    raspi-gpio set 22 dl
    raspi-gpio get 22
    raspi-gpio set 22 dh
    raspi-gpio get 22
    This woke up sensor again, and I was able to connect to it using openocd and was greeted with following output:
    root@rpi4:/home/pi/openocd-rpi2-stm32# openocd -f rpi4-zc-swd.cfg
    Open On-Chip Debugger 0.11.0+dev-00062-g6405d35f3-dirty (2021-03-27-16:05)
    Licensed under GNU GPL v2
    For bug reports, read
    Info : BCM2835 GPIO JTAG/SWD bitbang driver
    Info : clock speed 100 kHz
    Info : SWD DPIDR 0x0bc11477
    Info : chip.cpu: hardware has 4 breakpoints, 2 watchpoints
    Info : starting gdb server for chip.cpu on 3333
    Info : Listening on port 3333 for gdb connections
    AP ID register 0x04770031
            Type is MEM-AP AHB3
    MEM-AP BASE 0xf0000003
            Valid ROM table present
                    Component base address 0xf0000000
                    Peripheral ID 0x00000a0447
                    Designer is 0x0a0, STMicroelectronics
                    Part is 0x447, Unrecognized
                    Component class is 0x1, ROM table
                    MEMTYPE system memory present on bus
    So, indeed this was STMicroelectronics chip, but unknown model. However, using Info : SWD DPIDR 0x0bc11477 and googling that I figured out that it's probably STM32L0xx which again made sense.

    So I started openocd -f rpi4-zc-swd.cfg -f target/stm32l0_dual_bank.cfg and telnet 4444 to connect to it and I was able to dump flash. However, I had to be quick since sensor will power off itself after 30 seconds or so. Solution was easy, I toggled again rst pin and connected using gdb which stopped cpu and left sensor powered on.

    However, all was not good since quick view into 64K dump showed that at end of it there was partial AT command, so dump was not whole. So I opened STM32L0x1 page and since mcu was LQFP 48 with 128k my mcu was STM32L081CB. So I restarted openocd -f rpi4-zc-swd.cfg -f target/stm32l0_dual_bank.cfg and got two flash banks:

    > flash banks
    #0 : stm32l0.flash (stm32lx) at 0x08000000, size 0x00010000, buswidth 0, chipwidth 0
    #1 : stm32l0.flash1 (stm32lx) at 0x08010000, size 0x00010000, buswidth 0, chipwidth 0
    So I was able to dump them both and got full firmware. It was also very useful, because at one point I did write flash in gdb instead in telnet 4444 connection and erased one of sensors which I was able to recover using dump which I obtained.

    This however, produced another question for me: since flash is same on all sensors, where are setting which can be configured in sensor (and wasn't changed by re-flashing firmware). Since chip also has 6k of eeprom this was logical place to put it. However, openocd doesn't have bult-in support to dump eeprom from those chips. However, I did found post Flashing STM32L15X EEPROM with STLink under Linux which modified openocd to support reading and writing of eeprom back in 2015 but is not part of upstream openocd.

    I didn't want to return to openocd from 2015 or port changes to current version, but I didn't have to. Since I was only interested in dumping eeprom I was able to dump it using normal mdw command:

    > mdw 0x08080000 1536
    1536 is number of 32-bit words in 6k eeprom (1536 * 4 = 6144). And indeed setting which are configurable where stored in eeprom.

    This was fun journey into openocd and stm32, so I hope this will help someone to get started. All configuration files are available at https://github.com/dpavlin/openocd-rpi2-stm32.

  • Grove Beginner Kit sensors show graphs using InfluxDB and Grafana

    grove-beginer-kit-for-arduino.png Several months ago, I got Grove Beginner Kit For Arduino for review. I wanted to see if this board would be good fit for my friends which aren't into electronics to get them started with it.

    So, I started with general idea: collect values from sensors, send them to InfluxDB and create graphs using Grafana. In my opinion, showing graphs of values from real world is good way to get started with something which is not possible without little bit of additional hardware, and might be good first project for people who didn't get to try Arduino platform until now.

    Kit is somewhat special: out of the box, it comes as single board with all sensors already attached, so to start using it, you just need to connect it to any usb port (it even comes with usb cable for that purpose). It also has plastic stand-offs which will provide isolation of bottom side from surface on which it's placed.

    It provides following sensors on board:

    LED Digital D4
    Buzzer Digital D5
    OLEDDisplay 0.96" I2C I2C, 0x78(default)
    ButtonDigital D6
    Rotary Potentiometer Analog A0
    LightAnalog A6
    SoundAnalog A2
    Temperature & Humidity SensorDigital D3
    Air Pressure Sensor I2C I2C, 0x77(default) / 0x76(optional)
    3-Axis Accelerator I2C I2C, 0x19(default)

    So I decided to show temperature, humidity, pressure, light and sound. I also added ability to show measurements on built-in oled display if you press button. Why the button press? In my experience, oled displays are prone to burn-in, and since main usage of this sensor board will be sending data to the cloud, it would be wasteful to destroy oled display which won't be used most of the time.

    Programming Arduino sketch was easy using Groove Kit wiki pages which nicely document everything you will need to get you started. However, I noticed that wiki suggest to use Arduino libraries which have Grove in it's name, so I was wondering why is that so. Turns out that DHT11 temperature and humidity sensor and BMP280 temperature and pressure sensor use older version of Adafruit libraries which aren't compatible with latest versions on github. So, I tested latest versions from Adafruit and they work without any problems, just like Grove version. If you are already have them installed, there is no need to install additional Grove versions.

    If you deploy sensor like this (probably connected to small Linux single board computer) it would be useful if it would be possible to update software on it witout need to run full Arduino IDE (and keyboard and mouse), so I decided to write a Makefile which uses and installs arduino-cli which is go re-implementation of support which is available in Arduino IDE, but written in go that enables usage from command-line (over ssh for example).


    So if you are interested in trying this out, and want to get graphs similar to one above, go to GroveSensor github repository clone it to your Raspberry Pi, issue make to build it and make upload to send it to your board. You will also need to edit influx.sh to point it to your InfluxDB instance, and you can start creating graphs in Grafana. All this will also work on other platforms (like x86, amd64 or aarm64) thanks to arduino-cli install script.

  • ipmi serial console using grub and systemd

    I must admit that Linux administration is getting better with years. I was configuring IPMI serial console on old machines (but with recent Debian) so I decided to find out which is optimal way to configure serial console using systemd.

    First, let's inspect ipmi and check it's configuration to figure out baud-rate for serial port:

    root@lib10:~# ipmitool sol info 1
    Info: SOL parameter 'Payload Channel (7)' not supported - defaulting to 0x01
    Set in progress                 : set-complete
    Enabled                         : true
    Force Encryption                : true
    Force Authentication            : false
    Privilege Level                 : ADMINISTRATOR
    Character Accumulate Level (ms) : 50
    Character Send Threshold        : 220
    Retry Count                     : 7
    Retry Interval (ms)             : 1000
    Volatile Bit Rate (kbps)        : 57.6
    Non-Volatile Bit Rate (kbps)    : 57.6
    Payload Channel                 : 1 (0x01)
    Payload Port                    : 623
    Notice that there is 1 after info. This is serial port which is sol console. If you run ipmitool without this parameter or with zero, you will get error:
    root@alfa:~# ipmitool sol info 0
    Error requesting SOL parameter 'Set In Progress (0)': Invalid data field in request
    Don't panic! There is ipmi sol console, but on ttyS1!

    To configure serial console for Linux kernel we need to add something like console=ttyS1,57600 to kernel command-line in grub, and configuring correct serial port and speed:

    GRUB_SERIAL_COMMAND="serial --speed=57600 --unit=1 --word=8 --parity=no --stop=1"
    All required changes to default configuration are below:
    root@lib10:/etc# git diff
    diff --git a/default/grub b/default/grub
    index b8a096d..2b855fb 100644
    --- a/default/grub
    +++ b/default/grub
    @@ -6,7 +6,8 @@
     GRUB_DISTRIBUTOR=`lsb_release -i -s 2< /dev/null || echo Debian`
    -GRUB_CMDLINE_LINUX_DEFAULT="boot=zfs rpool=lib10 bootfs=lib10/ROOT/debian-1"
    +# serial console speed from ipmitool sol info 1
    +GRUB_CMDLINE_LINUX_DEFAULT="console=ttyS1,57600 root=ZFS=lib10/ROOT/debian-1"
     # Uncomment to enable BadRAM filtering, modify to suit your needs
    @@ -16,6 +17,8 @@ GRUB_CMDLINE_LINUX=""
     # Uncomment to disable graphical terminal (grub-pc only)
    +GRUB_SERIAL_COMMAND="serial --speed=57600 --unit=1 --word=8 --parity=no --stop=1"
     # The resolution used on graphical terminal
     # note that you can use only modes which your graphic card supports via VBE
    So in the end, there is noting to configure on systemd side. If you want to know why, read man 8 systemd-getty-generator

  • Playing video on WS2812 panel

    It all started more than a week ago when I was given 10x10 panel of ws2812 leds designed to be broken apart into individual boards. I might have said at that moment: "It is a panel, it's just missing a few wires", and so this story begins...


    It took me the whole day to add those few wires and turn it into panel.


    I started testing it using Arduino Nano with wrong FastLED example (which supports just 4 ws8212) and wondered why I'm not getting the whole panel to light up. After some sleep, I tried Adafruit example, fixed one broken data out-in wire in middle of panel and I got this:

    Thumbnail image for IMG_20200302_105830.jpg

    So, playing video on this panel should be easy now, right?

    First, I had to make a choice of platform to drive the panel. While my 10x10 panel with 100 leds needed just 300 bytes for single frame, I didn't want to have a video sending device wired to it. So, esp8266 was logical choice to provide network connectivity to the panel without usb connection (which we still need, but just for power).

    At first, I took the Lolin Node MCU clone, which doesn't have 5V broken out (why?), and its VIN pin has a diode between USB 5V pin and VIN, and diode voltage drop is enough to make ws2812 dark all the time.
    Switching to Weemos D1 mini did help there, but what to run on it? I found some examples that where too clever for me (for 8x8 panel, they use jpeg and just decode single 8x8 block to show it which won't work for my 10x10 panel).
    After a bit of googling, it seems to me that https://github.com/Aircoookie/WLED project is somewhat of Tasmota for WS2812 on ESP8266, so I decided to use it. While it's not designed to support WS2812 matrix but simple stripes, it has UDP realtime control which enables it to send 302 byte UDP packet (300 bytes of RGB data and two byte header).

    So I started writing scripts which are at https://github.com/dpavlin/WLED-video to first convert video to raw frames using something as simple as ff2rgb.sh:

    dpavlin@nuc:/nuc/esp8266/WLED-video$ cat ff2rgb.sh
    #!/bin/sh -xe
    test ! -d $f.rgb && mkdir $f.rgb || rm -v $f.rgb/*.png
    ffmpeg -i $f -vf scale=10x10 $f.rgb/%03d.png
    ls $f.rgb/*.png | xargs -i convert {} -rotate 180 -gamma 0.3 -depth 8 {}.rgb
    To send frames I wrote simple send.pl script. I would have loved to be able to use bash udp support or some standard utility (like netcat or socat) to send frames, but null values in data didn't work well with shell pipes and I wasn't able to make it work.
    I also figured out that I have to modify gamma values for my frames so that colors are somewhat more correct (I had flame video which had blue hues on it without gamma correction). This is somewhat strange because WLED does have gamma correction for colors turned on, but it doesn't help and turning it off also doesn't help. So, gamma correction in pre-processing it is...

    And since I already had perl script to send UDP packets, I decided to open ffmpeg from it and make single script ff2wled.pl which sends video to panel like this:

    dpavlin@nuc:/nuc/esp8266/WLED-video$ ./ff2wled.pl rick.gif


    Was it all worth it? Honestly, no. The panel is small enough that video playback is really too much for such small resolution and it would be so much easier to buy ready-made panel with more leds. But, I did learn a few tricks with ffmpeg, and hopefully somebody else will benefit from this post.

  • BalCCon 2k19 - So, is Android a Linux?

    Last weekend I had pleasure to attend BalCCon 2k19 and present my talk So, is Android a Linux? which is embedded below. It was great conference and I hope that my talk gave some food for though and hints how to run Linux on Android devices.

  • Emulate IR remote for TV or HVAC from command-line using Tasmota

    I don't have TV remote. I did get one, but as soon as I installed TV I realized that it's quite annoying to find remote to turn TV on when I sit with my wireless keyboard (computer is the only device connected to TV). So, I added keyboard shortcut using xbindkeys, addad IR led to Raspberry Pi, configured lirc and was happy about it. And then, buster with kernel 4.19 came and everything changed.

    Send IR to TV

    Upgrade to 4.19 kernel should be easy, only thing you have to do (if your IR sending diode is on pin 18) is to enable new overlay:

    # pwm works only on 18
    This does not work reliably for me on Raspberry Pi 1. My TV detect roughly every third key press and this makes command-line TV remote solution useless because you can use TV menus to setup picture any more.

    So, I had to do something. Getting up and pressing button on TV is not something that I can live with after having this automation working for year (and TV remote was missing by now). But, I had all required components.

    Few weeks ago, I removed IR send/receive board from RMmini 3 and documented it's pinout:


    I was also in the middle of flashing Sonoff-Tasmota to bunch of Tackin plugs so it seemed like logical step to flash Tasmota to NodeMCU board, connect RMmini 3 IR board to it and give it a try. And I'm glad I did.

    I used to have http server (simple perl script) running on Raspberry Pi which used irsend to send IR codes. From xbindkey perspective, my configuration used curl and all I had to do to get IR working again was changing my script to use mosquitto instead of irsend:

    mosquitto_pub -h rpi2 -q 2 -t cmnd/ir/IRSend -m '{"protocol": "NEC","bits": 32, "data": 0x20DF10EF}'
    At this point I realized that I can put this into .xbindkeyrc and contact esp8266 directly. This didn't work... You can't have double quotes in commands which are executed and I had to put it into shell script and call that.

    And to my amazement, there was noticeable difference in response time of TV. In retrospect, this seemed obvious because my TV nuc is much faster than Raspberry Pi, but this was probably the most unexpected benefit of this upgrade.

    When I said that you have to connect IR receiver and sender on NodeMCU pins, you have to take care not to hit pins that have special purpose on power-up. For example, if you connect something that will pull to ground on powerup (IR led for example) to gpio0 esp8266 will stay in boot loader mode. gpio2 and gpio16 are led pins on nodemcu board, so don't use them (and define them as Led1i and Led2i in configuration).

    Having LEDs configured in tasmota allows me to extend my shell script and blink led after IR code has been sent:

    dpavlin@nuc:~$ cat tv-on.sh 
    mosquitto_pub -h rpi2 -q 2 -t cmnd/ir/IRSend -m '{"protocol": "NEC","bits": 32, "data": 0x20DF10EF}'
    mosquitto_pub -h rpi2 -q 2 -t cmnd/ir/LedPower -m 1
    mosquitto_pub -h rpi2 -q 2 -t cmnd/ir/LedPower -m 0

    Send IR to HVAC

    By pure luck, just a few days latter, my friend wanted to control his ACs from computer. Again tasmota came to the rescue. Since HVAC support in tasmota will increase firmware size over 512Kb (which breaks OTA upgrade on 1Mb modules) it's not compiled in by default. However, you can edit sonoff/my_user_config.h and uncomment it:

        #define USE_IR_HVAC                          // Support for HVAC systems using IR (+3k5 code)
        #define USE_IR_HVAC_TOSHIBA                  // Support IRhvac Toshiba protocol
        #define USE_IR_HVAC_MITSUBISHI               // Support IRhvac Mitsubischi protocol
        #define USE_IR_HVAC_LG                       // Support IRhvac LG protocol
        #define USE_IR_HVAC_FUJITSU                  // Support IRhvac Fujitsu protocol
        #define USE_IR_HVAC_MIDEA                    // Support IRhvac Midea/Komeco protocol
    However, if you want to keep OTA update working, you will also have to turn off some other configuration options (I don't use Domoticz or Home Assistant) to keep firmware size below 512Kb.

    To create IR sender, I decided to add IR LED, transistor and resistor to existing ESP-01 module with DHT11 board (which has 3.3v regulator on it) according to the following DaveCAD(tm) drawing:


    If you are wondering why I'm connecting IR led to RX pin (gpio3), it's because gpio0 is special, gpio2 is already used for dht11 and TX (which is gpio1) is also special. Since we don't need serial, using single pin left RX saves the day. And this is the picture of the first prototype (on which I tried all pins until I settled on RX):


    With all this in place and quick re-flash, we where than able to issue commands like this to control AC:

    mosquitto_pub -h rpi2 -t 'cmnd/ir/irhvac' -m '{ "Vendor": "Mitsubishi", "Power": 1, "Mode":"Cold", "Temp": 25}'
    mosquitto_pub -h rpi2 -t 'cmnd/ir/irhvac' -m '{ "Vendor": "Mitsubishi", "Power": 0}'
    So, with all this, I hope that you don't have any excuse not to control your IR devices from a command-line.

    Update: Just to make sure that you don't think this is my best soldering ever here is also picture of 4 more modules which will be distributed to my friends.

    IMG_20190802_134752 (1).jpg

  • DORS/CLUC 2019: Mainline kernel on ARM Tegra20 devices that are left behind on 2.6 kernels

    Is it possible to take obsolete Android device and port it to mainline kernel with Debian? (make RaspberryPi-like device)

    Here is transcript of presentation:

    I hope that you have enjoyed the first day of DORS

    CLUC. My name is Dobrica Pavlinušić

    and today I will talk about to you about

    how you can take the old Android device

    and port the latest software on it. Over

    there is my prop for this presentation

    which tries to prove that it's really

    possiblei. So the question is: is it

    possible to take the old Android device,

    in this case very old Android device, and

    run latest Linux on it? In my case I

    wanted to make something which would be

    comparable to Respberry Pi which basically

    for me means that I could run Debian on

    it. So what is our device? Our device is

    Tegra tablet from 2011 which is actually

    quite a high-end tablet for that age, it

    has two cores with 1 Gb RAM, it has

    64 Gb of emmc storage, if you

    remember in 2011 that's a huge amount of

    storage, it has quite nice display and

    Wi-Fi, GPS and stuff like that. The things

    which were available from the

    manufacturer is really old 2.6.36 kernel

    fortunately available in source code

    which is very helpful with quite a lot

    of changes, there was also schematic

    available from the OEM manufacturer

    which actually produced that laptop for

    Lenovo which was quite fortunate but not

    as useful as you might think

    so if you can't find the same schematic

    for your Android tablet or device don't

    don't despair it's not obligatory there

    is quite good Tegra support in the

    mainline kernel and as you'll see there

    is also separately developed driver

    which supports

    both 2d and 3d acceleration as you can

    see it's my prop over there, and they

    were available really cheaply locally

    basically I bought it at Njuškalo

    which is our local secondhand resale

    kind of site. So what is the first step

    if you want to do something like that? My

    suggestion is to try to find the serial

    port on your device. It would be really

    really helpful when you try to do that

    because first thing you want to do is

    get some kind of feedback from your

    tablet. In my case see the screen didn't

    work so the serial port was really

    invaluable to see whether I am actually

    doing something or not. In this case I

    had a schematic so I knew that there is

    a four pin port somewhere on the tablet

    on which is serial port, I also from the

    schematic knew that this serial port is

    connected directly to the Tegra

    processor which in my case meant that

    this serial port is 1.8 volts which

    means that you don't want to connect it

    to 3.3 volt device although Tegra CPUs

    might be 3.3 volt tolerable but, I don't

    know, you don't want to try that on your

    device. But there is 1.8 volts serial

    cable available from China which are

    basically often often dubbed iPhone

    cables because it uses the same voltage

    but it's just the serial at 1.8 volts.

    Why do I have the picture of the serial

    port? Because in this case this was not

    the only unpopulated connector of the on

    the board with 4 pins, so learn from my

    mistakes and don't try every possible

    connector and until you find the right

    one. It took me quite quite some time to

    figure out that maybe it's under the

    shield and it really was! The other thing

    which you want to have some ability to

    do and you almost always have: basically

    you always have it -- is to be able to run

    your own code on the device. Why do you

    always have that on the Android devices?

    Because when manufacturers create the

    device you should be able

    somehow to load the initial firmware on

    it. So if we have any ARM device either

    Allwinner, Rockchip, Tegra or anything,

    there is a way to actually load your own

    code on it, so that's not the showstopper.

    Tegra is somewhat specific because there

    is ability to lock Tegra bootloader

    so you can't load the non-authorized

    software on it, but this was not the case

    in this case. In Tegra it's called APX

    mode, you can enter it using two keyboard

    presses and with tegrarcm from github

    you can actually create the binary file

    which you can send to your tablet and

    make it do something.

    This ability to to load

    something on the device which is at that


    unmodified enables you to actually

    experiment safely because you can always

    put something, try if it works, and you

    didn't actually change the device itself.

    Although this tablet was so unusable

    because it had so old Anrdoid that

    market didn't support

    it so it wasn't so essential.

    But you know, if this is your only device,

    you probably don't want to break it in

    your first experiment. But just have

    in mind that you won't break your device,

    it's always possible to recover it

    whatever the device is. So far what we

    have? We have working 2.6 kernel with all

    the changes needed to actually make this

    tablet work which isn't really very

    useful but it's nice because we can see


    did they change to make this tablet

    work. I had a serial port and I had the

    ability to run my own code. So what is

    the first step? The first step is to have

    some kind of bootloader which will load

    our Linux kernel. On ARM devices this

    is u-boot and since this tablet is

    actually based on Ventana reference

    design from Nvidia, which you can

    actually figure out by looking at 2.6

    kernel, it was really simple to try to

    compile u-boot, try it out with APX

    and it worked!

    Few steps later I also ... got the

    serial output out of the bootloader

    which was the good first step, but

    display was completely blank. So what did I


    I took the diff from the 2.6

    kernel and looked what did they modify

    to make the display work? I ported that

    and I got even display in u-boot! mmm

    Victory! I said "port changes" -- it might

    seem extremely complicated or hard. but

    basically that's it! On the left side you

    see the changes which original

    developers made for 2.6 kernel and on

    the right side you can see the changes

    which I made in u-boot to make it work

    basically you compare the names of

    the variables, you change the few ones

    and it works. Once I had u-boot the

    next step was actually to compile the

    kernel and make it work. As I mentioned

    earlier there is the grate driver

    project which basically supports 2d and

    3d acceleration on Tegra devices so I

    actually started with it because I

    wanted 2d and 3d and video decoding I

    started in the same way I looked at 2.6

    kernel tried to port the display, it

    should be possible to define display

    in device tree itself, for some reason

    it did not work for me so this was few lines

    of diff in kernel itself, but other

    than that, all the other things were

    basically device tree configuration.

    I had to configure the buttons

    on the laptop to generate keyboard

    events and from 2.6 kernel it wasn't

    clear whether the button is both pull-up

    or pulldown but you try one, you try the

    other, and if you make a mistake, if you

    said that button is pulled down and it's

    pull up the thing which will happen is

    that when you press the button it

    it won't release, so you will figure it

    out. Basically some buttons are pull up

    some buttons are pull down, you just

    experiment a little and it will work out.

    Then I added a few additional

    modules which were supported in upstream

    kernel already, like a temperature sensor

    compass and there is also in tablet

    accelerometer which should be

    supported by the kernel module, but

    currently doesn't work -- work in

    progress -- but all in all this diff --stat

    at the bottom of the slide are all the

    changes which were required to make this

    tablet, over there, which actually started

    screensaver, working on the latest kernel

    not really so hard at all, right? As the

    next step and probably the most

    important thing which I learned during

    this process, is actually that you want

    to develop using NFS root. You don't

    actually want to experiment on the

    device itself because it's so convenient

    to actually edit files in VI on your NFS

    server which in my case is just a

    ordinary laptop instead of editing it on

    the device itself especially if the

    device itself doesn't have the keyboard.

    Right now I do have the keyboard but

    when I started I didn't have any device

    and it's you know it's really much more

    variable to do that on on your normal

    development machine. NFS will also enable

    you to to try different devices but the

    prerequisite for that is actually to

    have the USB Ethernet device which is

    supported by u-boot

    unfortunately u-boot support very few

    USB Ethernet dongle so you will have to

    find the one which is supported or port

    changes from some other USB dongle which

    is also not that hard but it wasn't

    needed because I actually had a dongle

    which is supported. The second

    interesting thing I learned here is the

    one marked here in yellow which is that

    the kernel configuration

    because you say to u-boot ok please

    use the DHCP acquire MAC address and

    then load the kernel and initramfs

    from the from the server and once

    you start the kernel the kernel also has

    the option to acquire address over DHCP but

    unfortunately that didn't work I suspect

    that it's problem with initialization of

    the USB interface in kernel so the

    interface is not initialized correctly

    or something, but you can always hard

    code the IP address and that worked. If

    you want more info about making u-boot

    work with the NFS root and

    configuration of dnsmasq the last link

    here is actually the wiki page in which

    you can find more information. And then I

    had the tablet which was somewhat

    working but the problem was that I

    couldn't charge it. Since this tablet is

    from 2011 you would expect that the

    battery is quite dead and it really is

    quite dead but it's really annoying that

    you can actually work several hours on

    your tablet and then you have to take

    another device which was charging during


    time so I wanted to somehow make it work

    to make it work always, to have it

    always powered on and to be able to charge

    it from the USB. The problem is that this

    particular tablet is very sensitive to

    the 5 volt rail and if you don't have

    stable 5 volt rail it will try to

    to pull as much as 2 amps if the battery

    is totally flat and if the voltage drops

    a little bit below 5 volts it will

    just give up and say okay I won't charge

    so the tablet was charging quite nice

    when powered off but didn't charge with

    power on, so what could I do?

    Other than draw nice graphs which show

    my problems? Well I can look at 2.6

    kernel and see what did they do to actually

    make it work? This tablet is also

    somewhat specific in regards to other

    Android tablets because it has another

    processor which is 8051 core which

    basically talks with battery so I don't

    have direct connection with the

    battery controller but I have it through

    the firmware in that microcontroller

    which is connected to the Tegra device

    using i2c. This was in one sense annoying

    because if I could directly drive the

    battery charger it would be much easier

    but on the other hand that meant that

    the solution was rather simple I just

    had to send one i2c

    command copied from the 2.6 kernel and

    the tablet would start charging

    win/win/win and as you can see on the

    demo after recompiling the whole GL

    stack including libdrm, mesa and opentegra

    video driver I actually have x11 running

    on it without any problems whatsoever

    So what works and what doesn't?

    from the i2c devices on the left which

    are basically the list of the devices

    from the 2.6 kernel we can see that

    audio, charging, compas, power and

    temperature are working as is, the things

    which are denoted by the small hand are

    actually the things which I had to do


    unfortunately the cameras are not

    supported but you know they're lousy

    cameras from 2011 and this tablet is

    still better than the Raspberry Pi

    diplay works, HDMI probably works, I didn't

    really test it the main drawback is that

    the touchscreen on this device is

    the SPI device which currently doesn't

    work for me the SPI doesn't work at all

    keys were really easy those were the key

    is connected to GPIO just a little bit

    of device tree, the vibrator there is a

    small vibrating motor in the tablet,

    actually doesn't work for me I really

    don't know why there is nothing special

    in 2.6 kernel for it but if I toggle the

    pin nothing happens and it does work in

    2.6 so more work needs to be done

    there is also the proximity sensor which

    works also one simple GPIO there is the

    Wi-Fi and 3G modem which works because

    it's the simple USB device there is the

    internal flash connected to MMC which

    also works and the SD card I think that

    SD card actually works but it's a big SD

    card so I just didn't have any handy to

    test it. [Adapter?] yeah sure but with 64 Gb

    of emmc which has 40 Mb of

    transfer rate why would I even try the

    SD card right? So was it worth it? For me

    it surely is! If the goal was to

    be able to type apt-get update

    I have achieved that goal. So if you have

    more devices you can spend one of

    them to actually figure out what is what

    is on the board, and this is one of the

    tablets disassembled into into separate

    pieces still working as you can see it

    has the LED it works but there are also

    few things left to do. For a start the

    SPI controller doesn't work which is

    quite strange I think I configured

    everything but surely there is the

    problem between me and and the code I

    wrote. In mainstream kernel there is similar

    driver for the touchpad which is used in

    surface Microsoft Surface 3 but that

    driver actually use ACPI tables to

    initialize and on the arm devices we

    would need the device tree to do that

    and I actually wrote the code which

    actually query the device tree

    it's really simple you just

    you just add a few defines in kernel

    module and it will also query the device

    tree but since the SPI doesn't work for

    me currently unfortunately touch as

    of today doesn't still work embedded

    controller will need a little bit more

    work and it's actually more essential

    because I would really like to be able

    to plug in the power and for

    battery to start charging immediately as

    opposed to me starting the shell script

    but you know for now it actually works

    and cameras are are supported the

    problem with cameras it should be really

    easy from the perspective of the kernel

    driver developer the cameras are

    relatively simple i2c devices because

    you just have to set up the camera

    the cameras are CSI and they will start

    streaming frames to memory of Tegra

    Tegra hardware support decode of

    that in memory and all should be golden

    but the video4linux 2 API in kernel

    is currently changing so all the

    examples for the camera similar to

    mine are actually examples for the old

    way of doing things as opposed to new

    one so this is somewhat something which

    I have to do at some later date

    still real Linux distribution on

    this device is much more useful than

    obsolete Android and if you enjoy this

    or you have some Tegra 2 device you can

    find additional notes here on the other

    hand if you don't have Tegra device but

    some other Android tablet on which you

    want to do something like this you can

    try some of the following links if you

    have allwinner

    or rockchip device I suggest to take a

    look at armbian which is probably

    the most well-known and best ARM based

    Linux distro for the devices if you have

    the OMAP based device which is

    basically the Nexus 7 or older Nexus

    phones there is talk from fosdem which

    goes into more details what you can do

    they are also quite well supported in -

    in mainstream kernel and the last

    alternative is postmarketOS which goal

    is to bring longer life to all the

    devices so in a sense similar goal to

    mine it's based on Alpine which is

    basically why I didn't use that but it

    does have the support for Samsung Galaxy

    Tab 10 which is also

    tera device and this source

    code for this device actually got me

    the courage to actually try this because

    I could see all the changes between main

    line and support needed for one Tegra

    device which wasn't supported before and

    I said

    this doesn't seem so hard it wasn't it

    wasn't useful for any practical

    practical I didn't copy any code I the

    tablets are different enough that it

    wasn't directly reusable but it gave me

    the courage to actually

    try it out so hopefully this will

    motivate you to revive some of your old

    Android devices. Do you have any

    questions? this the same grate driver

    supports Tegra 3 the Tegra 2 and newer

    so Tegra 3 is also supported

    although depending on which Tegra you

    have these days they usually have locked

    bootloader but...

    if you can update Android on your

    Tegra device there is a possibility to

    actually replace the Android kernel with

    the kernel which has kexec as opposed

    of using u-boot to boot the kernel you

    actually install your own kernel which

    is some version which is supported on

    your device and you then you can do with

    the kexec to the current kernel so

    it's also possible I actually do have I

    actually got a new friend from Germany

    during this project because I started

    documenting everything on the wiki as I

    was working and he contacted me and said

    oh I have the Tegra tablet also for two

    years I'm so happy I found you and he

    actually sent me the keyboard this is

    why I now have the keyboard and didn't

    have it and this one is locked so I will

    try that that kexec trick in the

    future and document it on the wiki so

    this might be helpful any other

    questions? [How much did it cost?] It was it was between 100

    between 80 and 100 kunas depending on

    the on the state of disrepair which is

    for the international audience between

    11-12 euros and like 14 right so they

    were really cheap I have a bunch of them


Postovi sa blogova koji su meni interesantni

