Posted on 1 Comment

Vista Fails to Connect to Samba

I was (still am) a huge fan of the e-smith gateway server (now SME Server see also http://contribs.org) which was a very simplistic way to take almost any computer and have it up and running as a email, web, database server and more in under 2 hours. It has reliably been my development server of choice for years although my next nix server is likely to be Ubuntu.

I am having a problem getting Vista to authenticate across the network to allow me to browse directories and work on my development files. As it turns out, the default Vista security is set to use only NTLMv2 authentication. Samba can’t handle this. One solution is:

To solve the problem run secpol.msc to get into the Local Security Policy screen. Goto "Security Options" then find "Network Security: LAN Manager authentcation level." Change it from "NTVLM2 responses only" to "LM and NTLM – use NTLMv2 session security if negociated”.

Now, to exasperate the problem, Vista Home Premium does not have secpol.msc. Instead you must manually edit the registry. Use caution when editing the registry! Run regedit. Navigate to HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa. Look for the key LmCompatibilityLevel, right click, choose modify, and change the number to the appropriate value of 0 to 5.

0 – Clients use LM and NTLM authentication, but they never use NTLMv2 session security. Domain controllers accept LM, NTLM, and NTLMv2 authentication.

1 – Clients use LM and NTLM authentication, and they use NTLMv2 session security if the server supports it. Domain controllers accept LM, NTLM, and NTLMv2 authentication.

2 – Clients use only NTLM authentication, and they use NTLMv2 session security if the server supports it. Domain controller accepts LM, NTLM, and NTLMv2 authentication.

3 – Clients use only NTLMv2 authentication, and they use NTLMv2 session security if the server supports it. Domain controllers accept LM, NTLM, and NTLMv2 authentication.

4 – Clients use only NTLMv2 authentication, and they use NTLMv2 session security if the server supports it. Domain controller refuses LM authentication responses, but it accepts NTLM and NTLMv2.

5 – Clients use only NTLMv2 authentication, and they use NTLMv2 session security if the server supports it. Domain controller refuses LM and NTLM authentication responses, but it accepts NTLMv2.

[Source, Microsoft TechNet, LmCompatibilityLevel]

In this case, to support Samba, I want the value to change from the default of 3 to 1.

After doing this, reboot for the change to take affect. Next, read Security Watch The Most Misunderstood Windows Security Setting of All Time.

See also.

Posted on 9 Comments

Are family stickers on cars dangerous?

For an eon, I have wanted to put the decals representing our family on the van. This past Mother’s Day I made a greater effort to find them and came across several people admonishing the stickers as careless parenting and dangerous to our children. I felt compelled to comment:

The DC Internet Caucus panel on kids and predation has determined that the media has misrepresented the way that children are preyed upon. Although we want to protect our children, being realistic about threats is important because overprotecting them can be just as harmful. Just think, if you teach your children to jump from every shadow, they may grow up to believe that stickers on a car might actually make your child more vulnerable to a child predator.

Yesterday, Evie, a child abuse awareness volunteer added commentary stating that those of us thinking people were being overly paranoid or overly protective were wearing rose colored glasses and not living in the real world. I felt compelled to comment further:

Evie, I’m a realist but while you think we are viewing the word through rose colored glasses, I think you are jaded because you work with the problem.

When I worked as a quality assurance engineer my job was to find problems and when I left the office I continued finding problems. I found billboards with misspellings. Newspapers with poor grammar. Stuff in my life that was assembled wrong. And so forth. But the truth of the matter was that although these were “problems” for the common person, and on the grand scheme of things, they were inconsequential.

I think the quality of our life, and the ability for our children to grow up confident rather than afraid, out weights over the top paranoid reactions to events that have a low likelihood of ever happening to most people.

I am a scout leader and have been trained on child safety and protecting our children. I am a father of five. I want no harm to come to my children or anyone else’s. But like the woman who allowed her 9 year old to travel the subway alone, I want my children to live life to its fullest. I want them street smart but trusting because I believe by breeding trust we help make the problems go away. Don’t treat symptoms; treat problems. Ask the adults around you and I think you will find most of us lived as a child safely being away from home all day long and not abiding by any of the safety recommendations of this day and we all turned out okay. Using reasonable safety measures and common sense makes our children very safe today.

Yes, abductions are easy. So is drowning but that didn’t stop me from taking my children to the ocean and letting them have the time of their lives this summer.

I feel bad for the children Evie has had to help. They should have never been in such a predicament. Isn’t it true that most child abductions are by friends or family? or someone otherwise close to the victim? If so, the stickers really don’t make a difference do they? According to Duhaime.org, 75% of abductions are by friends or family with most abductions being by a parent in a custody dispute.

Evie, you do not live in the real world. You live in a microcosm and broadcast it upon the real world. No insult intended.

How children lost the right to roam in four generations is written on a UK website but certainly reflects similarly to how our children in the United States are treated. As a parent, the thought of my children roaming to areas where I cannot locate them is terrifying but that thought is hypocritical. As a child, I was told to be home at a certain time. I might go out and be in the woods for 6 hours. As long as I got home before 5pm, I didn’t get in trouble. And I would play without a watch. I knew the time based upon where the sun hit the tree tops. My mother had no way to contact me other than a loud shout. Today we have cell phones and FRS radios and GPS trackers. With such technology, why do we keep our children closer than ever? Shouldn’t we allow them the opportunity to explore and grow? Instead we keep them close to home. Doesn’t that encourage more indoor play? Or sedentary computer gaming? Perhaps keeping our children on a short leash and teaching them that no one can be trusted is not good for their health, mental stability, or overall development. Kids need the adventure of ‘risky’ play.

See also:How Far Did You Roam As A Child?

Posted on 5 Comments

How to have sex while 5 children are in the house

Someone has finally figured out how to have intimate moments without fear of scaring the minds of your youth by having them accidentally walk in on mom and dad being gross. See this worksafe link for the details. Via BoingBoing.

QSleeper

  • 1.25″ Polycarbonate Bulletproof Plating/Shielding
  • Bio-Chemical Filtered Ventilation
  • Rebreather
  • Control Panel Mode Selection (i.e., Basic System Ops., Intruder Setting, Energy Status, Lock Down, etc.)
  • Cover & Door Actuators w/ Emergency Release
  • One way see through head cover (reflective mirror on 2 sides and front)
  • Safety Features (Proximity Sensor, O2 Sensor, Smoke Det., Motion Det. Ect,)
  • Emergency Communication system (Cellular, Short-wave Radio, CB ect.)
  • Audio Amplifier (Amplify sound from out side unit)
  • Air/Water Tight Sealing
  • External Override Key Pad & Remote Control
  • Battery Backup Power
  • Toiletry system

Source, QSleeper

Please remember the vasectomy campaign!

Posted on 1 Comment

Who put me on this soap box? With a tinfoil hat?!

Is Oak Ridge getting rougher? My reply to Atomic Tumor:

I often wonder if its not that things are getting rougher but that things are getting smaller. Years ago living in a small down with 3 television stations, the focus was on local news with bits of highlights of nation and world the half hour before local. I am sure school shootings happened but if you were in Wilmington North Carolina and the shooting was in Denver Colorado, it didn’t really impact you.

Now as the shooting is happening its beeping across cell phones around the globe like a stock ticker. We know everything about everyone as it happens. That’s good! But we must maintain a sense of perspective which is hard to do under the current fear mongering administration. The government, the media, and the preachers have people scared into giving up their rights! These people aren’t thinking; baaaa baaaa. Re-read 1984. Look at the what’s happening in the UK and how it could easily happen here. Watch Wag the Dog. I’m not saying go totally tinfoil hat on us, but if we don’t shock some common sense into some people, we are going to speed down a bad path. GW Bush 2008!

As an example, the Rocky Elementary School Principal is adamant that the children’s safety at the school relies on enclosing the entire property in a horrifically ugly hurricane fence. Will it have barbed wire? This will destroy a community school. No one will be able to use the playground on the weekends. Home values will fall. Is there really a threat to the children? I haven’t seen it and I’m not stupid or blind. But the principal is so caught up in the security assessment by some for profit firm (that’s what the firm is supposed to do!) that he doesn’t even want people talking about the fence.

In summary, we are now inundated with information that makes the world smaller but also stresses us with somebody else’s problem. Fear mongers react instead of respond thinking “this will happen to us” and in an oddly self-fulfilling prophecy, their lives get scarier because of the increased security due to "the threat."

[Source, AtomicTumor]

Update: Suzanne point out that the crime figures reflect that Oak Ridge is just getting rougher. From City-data.com crime index (higher means more crime, U.S. average = 323.2):

  • 2000 = 361.1
  • 2001 = 368.8
  • 2002 = 462.5
  • 2003 = 478.4
  • 2004 = 506.7
  • 2005 = 507.1
  • 2006 = 450.3
Posted on Leave a comment

My Famous Wife

Cathy is quoted in the Knoxnews article How goes security in schools?.

“I like the SROs. They’re good people, and they give the students the sense of ‘somebody’s there and is keeping an eye out,’ ” said Cathy McCaughan, mother of students at Bearden middle and high schools.

But, she said, “I don’t know if they’re keeping an eye out for the kids so much (as) the vice principals’ disciplinary issues.”

Posted on Leave a comment

Orweillian of the Day

All those cameras and now "give us your keys."

People in the UK who encrypt their data are now obliged by law to give up the encryption keys to law enforcement officials…[Source]

Note: I have not confirmed the above against any other sources.

Per capita there are more surveillance cameras in the UK than any other country in the world…

The average city dweller can expect to be captured on film every five minutes…

Source, UK Something to watch over us, BBC News

Posted on Leave a comment

Consultants – Warranties

Every now and then you get a phone call that goes something like this "That code you wrote for us a year (or more) ago doesn’t work anymore. We were thinking of doing more work with you but if we can’t get this fixed we may have to go with someone else." The proper answer is "No problem. That will be $x per hour to troubleshoot since we do not currently have a contract." The real answer is usually "ok. I’ll look into that real quick." because a) you know darn well the real answer will send them packing b) you are a nice guy and like them and c) you haven’t yet reached a level of financial stability to be blowing off customers (note: you’ll fix c if you use the real answer more often).

When your code doesn’t change and after a length of time it suddenly doesn’t work, the problem is almost always with the web host or the client. Sometimes they have discovered a very well hidden bug but rarely. In my case, the permissions on the directory which the application used to upload files had changed to not allow for uploading. How do permissions magically change? They don’t.