Linux

UB、RH、LD、FB……

Build OpenConnect VPN server AnyConnect (ocserv)

This article had written the,But never had a chance to do the experiment too--estimation,Anyway, writing,I will come,Everyone if necessary in conjunction with a look at ... ...?note,Please refer to theLatest notes

To build on the server ocserv,Should first install dependency

Download ocserv

access ft[……]

Click link to continue reading...

Why UNIX systems, such as the hidden directory to point at the beginning?

we all know,exist Windows Hidden folders are invisible,They some system files,While others arevirus。If you have to display words,After warning system,You can be in the form of semi-transparent folder to see this folder,Systems in order to identify a folder is hidden,It has a "-s"Properties,Protected by the system。

So a lot of people are new to Linux、OSX,Will be very[……]

Click link to continue reading...

Open nat masquerading and port forwarding on ufw

Possible until now,You have been very skilled how to open nat and port forwarding on Linux - after all, this operation may also require a server at the time of deployment。But its operation is too cumbersome,Especially when we use edit iptables ufw after that,But you can not directly edit the iptables,This time in the end what to do it?

want使用 ufw[……]

Click link to continue reading...

Ali cloud Ubuntu update image source

Update:for some reason,Ali cloud is no longer recommended updates the source,Give youThis page,Click to go can help you generate USTC mirror automatically depending on the version update source。

In order to facilitate their own domestic vps server configuration updates,Usually all you need to change and update the source dns,Do not try to patch ............ otherwise life short,NetEase previously used source but recently always cramp,So nowRecommended Ali cloud

Another[……]

Click link to continue reading...

Under Ubuntu more simple firewall Uncomplicated Firewall

we all know,Among Linux system has a very fast hardware firewall is called iptables,It can do far exceeds the scope of the firewall, but ......,usually,We only used it as a firewall to use。

but,If you just want a port policy,That does not seem to need to face iptables That lengthy configuration commands。Now,I'll introduce you to the other a more[……]

Click link to continue reading...

SNI Proxy accelerate the deployment of anti-Generation Web access without certificate

We all know that you can use nginx trans-generation capabilities to achieve cross-border access network,but,This approach has a lot of constraints,For example, it is difficult to achieve login authentication,For example, the need for a separate forwarding module compiler to do,For example, you need to have a valid signature ssl certificates, etc.。

this time,We introduce an additional artifact SNI Proxy,With dnsmasq can be achieved with sniproxy[……]

Click link to continue reading...

Compile and install anti-pollution dnscrypt-wrapper build DNS server

All to known,I want to get them abroad towards LAN DNS information,Will certainly suffer keywordPollution。to this end,Some people thinkUse exception port,For example, instead of using 5353 as the current DNS dedicated port 53-- Girl Friend Wall Only 53 pollution;It was also thought of using a TCP connection request,Because DNS response mechanism参考 DHCPI decided itaccept[……]

Click link to continue reading...

ShadowSocks build servers on vps

demand

now,With gfw upgrade we need more and more scientific grounds Internet,But the most common VPN speed is getting slower and slower because of interference,For now,SS is a good alternative to。Now that you have your own vps,You may wish to use it to give yourself easily build a server SS。

installation

Since the routing system is Ubuntu vps,I will be using the command on Ubuntu[……]

Click link to continue reading...