WIth newer Linux installs, there has been a huge problem with old kernels not being cleaned up automatically. For some people, this has caused their package manager to get stuck with an out of storage error. Until they can remove the issue, their system is stuck in APT-Hell. Not good at all. This article has been updated to add cleaning up kernels to the list.
Original Article Continues
I decided to write this entry after reading an article over a Lifehacker by Whitson Gordon titled What Kind of Maintenance Do I Need to Do on My Windows PC.
What kind of maintenance do I need to do on my Ubuntu/Debian/APT-based PC? Good question. It is pretty simple … for desktops. This article is for APT-based desktop system maintenance, NOT for Linux servers. Linux servers need just a little more love to stay happy. I haven’t used RPM-based distros in many years, so I’m not comfortable providing commands to accomplish the things you need to do, but the methods will be similar.
Let’s get started.
Install System and Application Patches/Updates
This will patch the OS and all your applications.
$ sudo apt-get update; sudo apt-get dist-upgrade
Don’t worry. This only updates the current distro to new packages and new kernels. It will not install a new release.
Read about more tips below.
There’s an old SSL/TLS security hole (from 11/2009) that has been out and patched for over a year (since 2/2010), but it appears that many major websites haven’t bothered patching it. CVE-2009-3555
The guys over at ssltls.de have a list. Seems that consistently patching is tough for many organizations. The list is pretty shocking for who is and isn’t patched. Take a look and be afraid. There are lots of big banks on the unpatched list. Scary. The list is not comprehensive, so just because your site or bank aren’t listed, doesn’t mean they are consistently patched.
- home.americanexpress.com is patched, but
- www.americanexpress.com cannot be confirmed as patched.
There are attacks in the wild that take advantage of this issue. I need to check whether my SSL sites are vulnerable too. Here’s an SSL checker
I hope you will indulge me and allow a non-technology post.
Recently I found myself with a bottle of Coconut Rum and didn’t know what to do with it. I like rum and I love coconut, so this was a good problem to have. Google to the rescue, but as much as I enjoy rum AND coconut, nothing tasted as good as a Piña Colada using the standard mix in a bottle from my local grocery. That seemed sad to me, so after trying a few recipes like
- Coconut Cola (great if you like coconut and rum and cokes)
- Coconut Orange (a little too tangy for me)
- Goombay Smash
- A Day At The Beach
- The Bianca Pop (good to get an evening started)
You can find more coconut rum drinks.
I decided to try to smooth some of the bite a few of those drinks had by mixing things I liked, while not getting too complex. I call it TheFu:
Use a Highball Glass
- 3 oz orange juice
- 3 oz pineapple juice
- 1 1/2 oz coconut rum
Fill glass with 50% crushed ice, add rum, then add both juices and stir.
Nothing too complex, but the OJ and Pineapple really complement the coconut rum. Without both juices, there’s just a little too much bite for me. I tried drinks with just 1 or the other. It was a tough day of experimentation. ;) Sure, there are other drinks that can be made with a few other ingredients, but I was
b) without those other ingredients.
The Piña Colada is still very tasty, but who wants a 350 calorie drink all the time when a 200 calorie drink that is pretty easy to make, without any mess, no blender to clean up, is just slightly less tasty? I still like the coconut rum and coke just as much, but as long as there’s OJ and pineapple juice in da house, this new drink will be it.
Perhaps I need to pick up some grenadine?
7/3/11 Update: Seems there’s a very similar recipe to TheFu called Jack-is-Back
- 2 oz Coconut Rum
- 2 oz Pineapple juice
- 2 oz Orange juice
similar, but not quite.
Adobe has decided to stop development for their fairly new Adobe-AIR platform on desktop Linux. For some reason, they will continue development on Android. Huh? Doesn’t Adobe know that Android is Linux?
AIR on 64-bit Linux Sucked
I tried AdobeAIR on a 64-bit Linux desktop about a yr ago to try a stock tracking app. It was slow and heavy so I removed it. Where I work, we dislike proprietary solutions that force vendor lock-in. AIR will not be installed on any of our machines regardless of OS and we advise our clients of the issues with AIR and all proprietary tools. The same applies to Silverlight. We won’t install it here and recommend that our clients do not as well. I would remove Flash if there wouldn’t be a revolt and I’ve already removed Adobe Acrobat from all our systems. We use alternatives with better security (or just fewer attackers). Adobe management doesn’t seem to understand how to build software that can be secure. They certainly haven’t shown a desire to do this based on the number of unfixed zero day exploits published continuously.
Whenever I visit a new website and they ask me to create a new login, I always wonder how that data is stored, especially the password. Some clues to poor password management:
- plain text
- hashed without a salt
- support knows it
- the system can email your password back to you
- the system displays your password on a web page.
Theres a website that tracks sites with poor password management called PlainTextOffenders.com . That site estimates that 30% of all websites aren’t handling passwords appropriately. If you know of an offending website, let the plain-text-offenders know and publicize it. Sometimes that spotlight is enough to get the company to change.
Many of us backup important data to optical disks like CDROM or DVD media. Over time, that media is known to fail. This means that every 5-10 years, a plan to migrate all the critical data to newer media needs to be included. It also means that when data is stored to this type of media, steps should be taken to protect the data. Recently, I had a need to pull some data, old family movies, from a DVD. The movies were stored as xvid/mp3 data inside an AVI container. Anyway, after loading the disk onto a network drive, the movie began playing, then abruptly stopped about 2 minutes into the hour long movie. I have other copies on other media … somewhere, but this would be a good opportunity to try a contingency plan that I’ve been using for at least 10 years.
Read more below.
What should kids know to be reasonably safe? That’s a tough question.
Below is a draft Kid-Safety Checklist for parents to work through with their kids.
All kids do need to know these things.
Today I wanted to add another OS to a netbook, an Asus Eee. My common practice is to boot a gparted ISO from a USB flash drive, move some data and partitions around and add a new logical partition to the end of the extended partition space. Write everything back out to disk. Then I’d boot the install disk/ISO and install to that newly created partition. Life was good, usually.
Today, I was greeted with gparted showing unallocated for the entire drive, all 160GB – unallocated. Ouch. This is the first time I’ve had partition table issues, ever, in over 20 yrs.