quarta-feira, 24 de setembro de 2025

SMBv1 Windows 10/11

Para habilitar o acesso do Windows em compartilhamentos sem suporte SMBV2/V3.

- Lembrando que não é recomendado, mas em casos de sistemas legados!!!!!

 No PowerShell com Administrador

Habilitar.:

Enable-WindowsOptionalFeature -Online -FeatureName SMB1Protocol

Passo 3.:

Set-SmbClientConfiguration -RequireSecuritySignature $false

Passo 4.:

Set-SmbClientConfiguration -EnableInsecureGuestLogons $true

segunda-feira, 15 de setembro de 2025

Certificados do vCenter 6.5 expirados

Download Vcert  

vCert

July 25, 2022|vCenter, vSphere

*** UPDATED 28APR2025 ***

Broadcom made a public KB for vCert! This is outstanding! Be sure to pull the latest version from the Broadcom site.

 https://knowledge.broadcom.com/external/article/385107/vcert-scripted-vcenter-expired-certific.html 


***Updated Version 23NOV2024***


I got a copy of this program from VMware through an SR when they helped a customer of mine. It is called vCert. This little program is super simple to use and works pretty great. It does everything and anything to do with Certificates on your vCenters. Unfortunately, VMware has not made this public yet. I wish they would.

Works on 6.x, 7.x and 8.x vCenter.

***With that said, use at your own risk. This is not supported by VMware Engineering. I recommend cold snaps on everything in your SSO Domain before you change anything.***


How to set up vCert!


1. Grab a copy of the vCert from here: https://tinyurl.com/yc3w8nd9

2. SSH to your vCenter.

3. cd /home/root

4. vi vCert

5. Copy the text from the file you downloaded to the vCert file you just created. Your line count should be 9320.

6. Save the file  :wq

7. Make the file executable: chmod +x vCert

8. Run the program: ./vCert


Menu options:  

1. Check current certificates status

2. Check CA certificates in VMDir and VECS

3. View Certificate Info

4. Generate certificate report

5. Check SSL Trust Anchors

6. Update SSL Trust Anchors

7. Replace the Machine SSL certificate

8. Replace the Solution User certificates

9. Replace the VMCA certificate and re-issue Machine SSL

   and Solution User certificates

10. Replace the Authentication Proxy certificate

11. Replace the Auto Deploy CA certificate

12. Replace the VMware Directory Service certificate

13. Replace the SSO STS Signing certificate(s)

14. Replace all certificates with VMCA-signed

   certificates

15. Clear all certificates in the BACKUP_STORE

   in VECS

16. Check vCenter Extension thumbprints

17. Check for SSL Interception

18. Check STS server certificate configuration

19. Check Smart Card authentication configuration

20. Restart reverse proxy service

21. Restart all VMware services

E. Exit


I find I mostly use options 1, 6, and 14.

terça-feira, 12 de maio de 2020

ERRO NA HORA DE MUDAR WIN 1O HOME PARA PRO

Quando é feito uma instalação do Windows 10 e ela ativa automaticamente com Windows 10 home e quando tentamos mudar para o Windows 10 PRO ele apresenta erro e não aceita a sua chave mesmo sendo válida.

USAR: VK7JG-NPHTM-C97JM-9MPGT-3V66T    obs. sem estar conectado na internet.

Após ele atualizar para o Windows 10 Pro, trocar a chave do Windows colocando a chave válida.


segunda-feira, 30 de setembro de 2019

ZCS OSE cannot start after upgrade to 8.8.15

       

        amavis                  Running
        dnscache                Running
        ldap                    Running
        logger                  Running
        mailbox                 Stopped
                zmmailboxdctl is not running.
        memcached               Running
        mta                     Running
        opendkim                Running
        proxy                   Running
        service webapp          Stopped
                zmmailboxdctl is not running.
        snmp                    Running
        spell                   Running
        stats                   Running
        zimbra webapp           Stopped
                zmmailboxdctl is not running.
        zimbraAdmin webapp      Stopped
                zmmailboxdctl is not running.
        zimlet webapp           Stopped
                zmmailboxdctl is not running.

        zmconfigd               Running


1. error in /opt/zimbra/log/mailbox.log

ERROR [main] [] Versions - DB Version Mismatch: ours=111 from DB=109
FATAL [main] [] system - Data version mismatch. Reinitialize or upgrade the backend data store



zimbra@zimbra:cd /opt/zimbra/libexec/scripts/
zimbra@zimbra:~/libexec/scripts$ ./migrate20190401-ZimbraChat.pl
Wed Jul 31 10:56:53 2019: Verified schema version 109.
Wed Jul 31 10:56:55 2019: Verified schema version 109.
Wed Jul 31 10:56:55 2019: Updating DB schema version from 109 to 110.
zimbra@zimbra:~/libexec/scripts$ ./migrate20190611-ZimbraChat.pl
Wed Jul 31 10:57:04 2019: Verified schema version 110.
Wed Jul 31 10:57:06 2019: Verified schema version 110.
Wed Jul 31 10:57:06 2019: Updating DB schema version from 110 to 111

2. update zmlocalconfig 

zimbra@zimbra:zmlocalconfig -e mailboxd_java_options="-server -Dhttps.protocols=TLSv1,TLSv1.1,TLSv1.2 -Djdk.tls.client.protocols=TLSv1,TLSv1.1,TLSv1.2 -Djava.awt.headless=true -XX:+UseG1GC -Dsun.net.inetaddr.ttl=${networkaddress_cache_ttl} -Dorg.apache.jasper.compiler.disablejsr199=true -XX:+UnlockExperimentalVMOptions -XX:G1NewSizePercent=15 -XX:G1MaxNewSizePercent=45 -XX:SoftRefLRUPolicyMSPerMB=1 -XX:-OmitStackTraceInFastThrow -verbose:gc -Xlog:gc*=info,safepoint=info:file=/opt/zimbra/log/gc.log:time:filecount=20,filesize=10m -Djava.net.preferIPv4Stack=true -XX:+HeapDumpOnOutOfMemoryError -XX:CompileCommandFile=.hotspot_compiler -XX:HeapDumpPath=/opt/zimbra/log -XX:ErrorFile=/opt/zimbra/log/hs_err_pid%p.log"


 zmcontrol stop
 zmcontrol start

CentOS Linux release 7.7.1908 (Core)

fonte: https://forums.zimbra.org

sexta-feira, 10 de fevereiro de 2017

Como melhorar a performace do FireBird

Como melhorar a performace do FireBird


                 Para melhorar o desempenho do FireBird é preciso ajusta algumas configurações.
                 No servidor, localize o arquivo firebird.conf, ele fica na pasta onde foi instalado o FireBird (Ex.: C:\Program Files\Firebird\2.5\). Dependendo da configuração do servidor a configuração do FireBird pode mudar.
                 A baixo seguem alguma configurações que podem ser usadas para melhorar o desempenho.
 
 
  • Configuração para servidor com processador dual-core, e pelo menos 4GB memória:
    DefaultDbCachePages = 4096
    FileSystemCacheThreshold = 67108864
    FileSystemCacheSize = 70
    CpuAffinityMask = 3

  • Configuração para servidor com processador dual-core, e pelo menos 8GB memória:
    DefaultDbCachePages = 8192
    FileSystemCacheThreshold = 134217728
    FileSystemCacheSize = 70
    CpuAffinityMask = 3

  • Configuração para servidor com processador quad-core, e acima de 8GB memória:
    DefaultDbCachePages = 16384
    FileSystemCacheThreshold = 268435456
    FileSystemCacheSize = 80
    CpuAffinityMask = 3

          Para complementar o ideal é fazer um Backup/Restore da base de dados com o parâmetro Page Size igual a configuração usada no parâmetro DefaultDbCachePages, definido no firebird.conf.


https://datalansistemas.blogspot.com.br

segunda-feira, 17 de agosto de 2015

Download Windows 10

Pessoal segue o link para baixar o Windows 10 / atualizar, assim não precisa esperar o agendamento.

https://www.microsoft.com/pt-br/software-download/windows10

só escolher 32 ou 64.


Instalação e configuração de certificados SSL no seu servidor Zimbra

/opt/zimbra/bin/zmcertmgr createcsr comm -new -keysize 2048 -subject "/C=BR/ST=SIGLADOESTADO/L=NOME DA CIDADE/O=NOME DA EMPRESA/OU=TI/CN=seudominio.tld"

Uma vez recebido seu e-mail com os arquivos de certificado você receberá os seguintes arquivos:

  1. AddTrustExternalCARoot.crt
  2. SSLRSAAddTrustCA.crt
  3. SSLSADomainValidationSecureServerCA.crt
  4. seudominio_tld.crt
Efetuando a instalação do certificado

Crie o bundle dos certificados  CA da seguinte maneria, copie o conteúdo dos arquivos acima 1,2,3 para o arquivo

/opt/zimbra/ssl/zimbra/commercial/commercial_ca.crt

dentro do seu Zimbra.
Copie o arquivoseudominio.tld.crt
para este mesmo diretório ficando da seguinte maneira
/opt/zimbra/ssl/zimbra/commercial/seudominio.tld.crt
Execute como #ROOT o seguinte comando para validar o certificado a ser instalado, lembre-se de estar dentro do diretório/opt/zimbra/ssl/zimbra/commercial
/opt/zimbra/bin/zmcertmgr verifycrt comm ./commercial.key ./seudominio.tld.crt ./commercial_ca.crt
Você deverá receber isto como saída do comando:
** Verifying ./mail_frtec.com.br.crt against ./commercial.key
** Certificate (./mail_frtec.com.br.crt) and private key (./commercial.key) match.
** Valid Certificate: ./mail_frtec.com.br.crt: OK
Uma vez testado, efetue a instalação do certificado da seguinte maneira:
/opt/zimbra/bin/zmcertmgr deploycrt comm ./mail_frtec.com.br.crt ./commercial_ca.crt
A saída do comando deverá ser similar a abaixo:
** Verifying ./mail_frtec.com.br.crt against /opt/zimbra/ssl/zimbra/commercial/commercial.key Certificate (./mail_frtec.com.br.crt) and private key (/opt/zimbra/ssl/zimbra/commercial/commercial.key) match. Valid Certificate: ./mail_frtec.com.br.crt: OK **
Copying ./mail_frtec.com.br.crt to /opt/zimbra/ssl/zimbra/commercial/commercial.crt **
Appending ca chain ./commercial_ca.crt to /opt/zimbra/ssl/zimbra/commercial/commercial.crt cp: `./commercial_ca.crt' and `/opt/zimbra/ssl/zimbra/commercial/commercial_ca.crt' are the same file ** Importing certificate /opt/zimbra/ssl/zimbra/commercial/commercial_ca.crt to CACERTS as zcs-user-commercial_ca...done. ** NOTE: mailboxd must be restarted in order to use the imported certificate. **
Saving server config key zimbraSSLCertificate...done. ** Saving server config key zimbraSSLPrivateKey...done. **
Installing mta certificate and key...done. **
Installing slapd certificate and key...done. **
Installing proxy certificate and key...done. **
Creating pkcs12 file /opt/zimbra/ssl/zimbra/jetty.pkcs12...done. **
Creating keystore file /opt/zimbra/mailboxd/etc/keystore...done. **
Installing CA to /opt/zimbra/conf/ca...done.

Para verificar o certificado instalado, utilize o comando:
/opt/zimbra/bin/zmcertmgr viewdeployedcrt

sexta-feira, 10 de abril de 2015

Endian Firewall Community 3.0.5-beta1 released


Endian Firewall Community 3.0.5-beta1 has been released and is now available for download. This new minor release contains many improvements and closes more than 350 issues.
The most prominent improvements in this new release are:
  • "Network types" have been added to the network wizard and uplink editor to be able to distinguish between firewall setups in different network topologies.
  • Support for transparent implementations through a new bridge mode has been added.
  • With the new TPROXY support in the HTTP proxy it is now possible to create firewall rules, routing policies and other rules based on the source IP address even if the proxy is being used.
  • The complete rewrite of the event management engine results in better performance when analyzing log files and sending notifications.
  • The anti-virus engine has been updated.
  • Many security vulnerabilities have been fixed.
  • Hardware support has been improved.

terça-feira, 19 de novembro de 2013

Endian Firewall Community 3.0 BETA 2

Endian Firewall Community 3.0 BETA 2

Endian firewall: 1.363.525 downloads and counting - Be part of our growing community!

Hey folks, Endian is back again!Do you want to be part of this community?
Endian calls for the best and brightest users to enhance its community and make Endian Firewall improving and spreading all over the world. Together we can do more and better!
So join the crew, and become part of our extended team.How? Download the latest, Endian Firewall Community 3.0 Beta 2 version and start making your own tests. (Want to glance at the brand-new features, first? 
…And once I made them? How to share my findings?And here’s the next news of the day. You can easily report the outcome of your trials on Jira, our new bug tracker, finally open to the community!
If you did report some bugs relevant to the previous release on Mantis, don’t panic! It will remain open in read-only mode to everyone, including our developers and QA team.
For those who prefer a stable and tested version, the Endian team reminds that Endian Firewall Community 2.5.2 release dates back to just a few weeks ago.
For upgrades  from the Development Channel (bleeding edge): please note that after the upgrade you may need to re - configure some modules.

This release includes the following changes:

  • Web Security
    • HTTPS filtering
  • E-mail Security
    • SMTP Proxy: Domain Management
    • SMTP Delivery Status Notification configuration
  • Virtual Private Networking
    • IPsec
      • Encryption: Null, 3DES, CAST-128, AES 128/192/256-bit,
      • Blowfish 128/192/256-bit, Twofish 128/192/256-bit,
      • Serpent 128/192/256-bit, Camellia 128/192/256-bit
      • Hash algorithms: MD5, SHA1, SHA2 256/384/512-bit, AESXCBC
      • IKEv2
    • OpenVPN
      • Support for TUN mode
      • Connections page for VPN users
  • User Management & Authentication
    • User management for OpenVPN
    • Integrated certificate authority
    • External certificate authority support
    • User password and certificate management (two-factor authentication)
  • Logging and Reporting
    • Live network traffic monitoring (powered by ntopng)
    • System status graphs are not lost at every reboot
    • Images for SMTP mail statistics graphs
  • Miscellaneous fixing and improvements
    • Serial port speed is now always set to 115200bps
    • Fixed password changing from the console menu
    • Sanitized logs

sábado, 19 de outubro de 2013

Telligent adquire Zimbra da VMware

Tenho o prazer de dizer que Telligent , líder no mercado de software social empresarial, anunciou hoje que adquiriu da VMware os ativos globais do Zimbra. Telligent e Zimbra irá fundir sob a marca Zimbra para formar uma empresa de software que oferece uma suíte de colaboração social unificado construído para a era pós-PC.
Por que a combinação? Zimbra e soluções Level Up! São ambos projetados para colaboração e têm capacidades complementares. Telligent oferece empresa colaboração social, incluindo comunicação em tempo real, redes sociais, mensagens instantâneas e comunidades online. Emparelhado com Zimbra para classe empresarial e-mail, calendário e colaboração, a oferta combinada irá cobrir todo o espectro de colaboração.
Sob a marca Zimbra, software Zimbra continuará a ser disponibilizada no local e na nuvem através da empresa e seus parceiros. A nova empresa também vai manter a sua presença em todo o mundo, com escritórios em Dallas, Palo Alto, Tóquio, Londres e Pune, na Índia.Zimbra será conduzido por uma equipa de gestão integrada, sob a liderança de Patrick Brandt, CEO da Telligent. Zimbra receberá investimentos da VMware juntamente com outros investidores, e VMware vai ser um parceiro estratégico do novo Zimbra, ajudando a garantir a continuidade de longo prazo para clientes e parceiros.
"Nosso objetivo é voltar Zimbra para suas raízes como um líder de software de colaboração independente, com uma vibrante comunidade de código aberto", diz Patrick Brandt, CEO da Telligent. "Esta fusão é um reflexo de como as pessoas colaboram hoje - é sobre inovação em tecnologia social, mobile e nuvem. Estamos empenhados em oferecer produtos inovadores aos nossos clientes e parceiros, e estamos empenhados em ser aberto. "
Não se espera que a aquisição de impactar o próximo grande lançamento do Zimbra (JudasPriest) , prevista para o início do próximo ano. De fato, novas capacidades sociais para o Zimbra, juntamente com os projetos já planejados, como o HTML5 offline Web App, HTML5 Toque Web App, Exchange Web Services e "always on" Grade Arquitetura Carrier, vai estar em exposição no grupo de usuários da companhia combinada conferência, The Big Sociais, 23-25 ​​setembro de 2013 em Dallas, TX. Mais informações sobre a conferência de grupo de usuários, incluindo sessões e palestrantes Zimbra, serão comunicados nas próximas semanas.
Leia o press release para saber mais sobre a aquisição da Zimbra por Telligent.
Leia o blog da empresa VMware para o VMware perspectiva sobre a aquisição e fusão de Zimbra e Telligent.

sexta-feira, 11 de outubro de 2013

Convertendo disco VMware Player para Esxi

Depois de copiado a maquina virtual para o Esxi, acessar o Esxi via ssh


# vmkfstools -i /vmfs/volumes/datastore1/discovm.vmdk /vmfs/volumes/datastore1/discovm-new.vmdk

Aumentando Tamanho Anexo e Mensagem no Zimbra

Alterar o tamanho máximo para anexos:
zimbra@mail:~$ zmprov mcf zimbraFileUploadMaxSize 35600000

Alterar o tamanho máximo para as mensagens:
zimbra@mail:~$ zmprov mcf zimbraMtaMaxMessageSize 35700000

quinta-feira, 10 de outubro de 2013

ZIMBRA 8 Gerando e Instalando SSL 2048

1 - Gerando Certificado

# /opt/zimbra/bin/zmcertmgr createcsr comm -new -keysize 2048 -subject "/C=GB/ST=England/L=London/O=Company Name/OU=Company Branch Name/CN=mail.yourdomain.com" -subjectAltNames mail.yourdomain.com

2 - Mandar Arquivo ou conteúdo para unidade certificadora;

# /opt/zimbra/ssl/zimbra/commercial/commercial.csr

3 - Com o arquivo de retorno em mãos:

# vi /tmp/commercial.crt

colocar conteúdo passado pela unidade certificadora

********Seu Certificado


# vi /tmp/ca.crt

colocar conteúdo Root CA Certificate


******** Pegar no site do Certificado

# vi /tmp/ca_intermediary.crt

colocar conteúdo passado pela unidade certificadora


********CERTIFICADO INTERMEDIÁRIO

# vi /tmp/ca_chain.crt
colocar conteúdo Root CA Certificate
colocar conteúdo CERTIFICADO INTERMEDIÁRIO

4 - Verificando se está tudo OK

# /opt/zimbra/bin/zmcertmgr verifycrt comm /tmp/commercial.crt /tmp/ca_chain.crt

5 - Instalar Certificado

# /opt/zimbra/bin/zmcertmgr deploycrt comm /tmp/commercial.crt /tmp/ca_chain.crt

6 - Verificar Certificado instalado

# /opt/zimbra/bin/zmcertmgr viewdeployedcrt

7 - Reiniciar serviços do Zimbra

# su - zimbra
# zmcontrol restart

****** Todo esse trabalho via texto e não via console web do zimbra pelo fato de via web mesmo marcando para gerar o certificado em 2048 estava gerando em 1024;
teste realizado no site:


http://certlogik.com

att.

Ricardo Anibolete
ricardo.anibolete@frtec.com.br
41 8812-6506