<?xml version="1.0" encoding="UTF-8"?> <rss
version="2.0"
xmlns:content="http://purl.org/rss/1.0/modules/content/"
xmlns:wfw="http://wellformedweb.org/CommentAPI/"
xmlns:dc="http://purl.org/dc/elements/1.1/"
xmlns:atom="http://www.w3.org/2005/Atom"
xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
> <channel><title>マルクのブロッグ &#187; Asus WL-520GU</title> <atom:link href="http://b.cpalm.org/tag/asus-wl-520gu/feed/" rel="self" type="application/rss+xml" /><link>http://b.cpalm.org</link> <description>馬魯酷+單車+Linux+PSP+3DS+PSVita</description> <lastBuildDate>Mon, 05 Dec 2011 08:34:51 +0000</lastBuildDate> <language>en</language> <sy:updatePeriod>hourly</sy:updatePeriod> <sy:updateFrequency>1</sy:updateFrequency> <generator>http://wordpress.org/?v=3.2.1</generator> <item><title>建立 openvpn server &amp; client key 給 tomatoVPN 使用</title><link>http://b.cpalm.org/2010/07/create-openvpn-server-client-key-for-tomatovpn-use/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=create-openvpn-server-client-key-for-tomatovpn-use</link> <comments>http://b.cpalm.org/2010/07/create-openvpn-server-client-key-for-tomatovpn-use/#comments</comments> <pubDate>Thu, 08 Jul 2010 11:21:52 +0000</pubDate> <dc:creator>マルク</dc:creator> <category><![CDATA[硬體]]></category> <category><![CDATA[軟體]]></category> <category><![CDATA[Asus WL-520GU]]></category> <category><![CDATA[Buffalo WHR-G54S]]></category> <category><![CDATA[Linux]]></category> <category><![CDATA[openvpn]]></category> <category><![CDATA[tomatoVPN]]></category> <guid
isPermaLink="false">http://b.cpalm.org/?p=549</guid> <description><![CDATA[先安裝 lzo #cd /root #wget http://www.oberhumer.com/opensource/lzo/download/lzo-2.03.tar.gz #tar zxvf  lzo-2.03.tar.gz #cd lzo-2.03 #./configure &#38;&#38; make &#38;&#38; make install 再安裝 openvpn 2.1.1 (lzo 必須要先安裝，不然下面的安裝會出錯) #cd /root #wget http://openvpn.net/release/openvpn-2.1.1.tar.gz #tar zxvf openvpn-2.1.1.tar.gz #cd openvpn-2.1.1 #./configure &#38;&#38; make &#38;&#38; make install # cd /root # cp -rv openvpn-2.1.1/easy-rsa ./ (如果是用 tar 方式安裝，則 easy-rsa 會在 openvpn-2.1.1 的資料夾裡。) # cd  ~/easy-rsa [...]]]></description> <content:encoded><![CDATA[<p>先安裝 lzo</p><p>#cd /root<br
/> #wget http://www.oberhumer.com/opensource/lzo/download/lzo-2.03.tar.gz<br
/> #tar zxvf  lzo-2.03.tar.gz<br
/> #cd lzo-2.03<br
/> #./configure &amp;&amp; make &amp;&amp; make install</p><p>再安裝 openvpn 2.1.1 (lzo 必須要先安裝，不然下面的安裝會出錯)<br
/> #cd /root<br
/> #wget http://openvpn.net/release/openvpn-2.1.1.tar.gz<br
/> #tar zxvf openvpn-2.1.1.tar.gz<br
/> #cd openvpn-2.1.1<br
/> #./configure &amp;&amp; make &amp;&amp; make install</p><p><span
id="more-549"></span><br
class="spacer_" /></p><p># cd /root</p><p># cp -rv openvpn-2.1.1/easy-rsa ./</p><p>(如果是用 tar 方式安裝，則 easy-rsa 會在 openvpn-2.1.1 的資料夾裡。)</p><p># cd  ~/easy-rsa</p><p># vi vars</p><p>export KEY_COUNTRY="TW"</p><p>export KEY_PROVINCE="Taiwan"</p><p>export KEY_CITY="Taipei"</p><p>export KEY_ORG="TomatoVPN"</p><p>export KEY_EMAIL="<span
class="mh-email">y<a
href='http://www.google.com/recaptcha/mailhide/d?k=01zOU_MR-vYyFeO-PuyAmCPw==&amp;c=d4hFhwl4Trx1fq6ZVe2xFw==' onclick="window.open('http://www.google.com/recaptcha/mailhide/d?k=01zOU_MR-vYyFeO-PuyAmCPw==&amp;c=d4hFhwl4Trx1fq6ZVe2xFw==', '', 'toolbar=0,scrollbars=0,location=0,statusbar=0,menubar=0,resizable=0,width=500,height=300'); return false;" title="Reveal this e-mail address">...</a>@email.com</span>"</p><p><br
class="spacer_" /></p><p># source ./vars</p><p># ./clean-all</p><p># ./build-ca<br
/> (以下為問答交談的畫面，請注意輸入，因為不能使用刪除鍵。)</p><blockquote><p>Country Name (2 letter code) [TW]:</p><p>State or Province Name (full name) [Taiwan]:</p><p>Locality Name (eg, city) [Taipei]:</p><p>Organization Name (eg, company) [TomatoVPN]:</p><p>Organizational Unit Name (eg, section) []:Home</p><p>Common Name (eg, your name or your server&#8217;s hostname) [TomatoVPN CA]:</p><p>Name []:Home</p><p>Email Address [<span
class="mh-email">y<a
href='http://www.google.com/recaptcha/mailhide/d?k=01zOU_MR-vYyFeO-PuyAmCPw==&amp;c=d4hFhwl4Trx1fq6ZVe2xFw==' onclick="window.open('http://www.google.com/recaptcha/mailhide/d?k=01zOU_MR-vYyFeO-PuyAmCPw==&amp;c=d4hFhwl4Trx1fq6ZVe2xFw==', '', 'toolbar=0,scrollbars=0,location=0,statusbar=0,menubar=0,resizable=0,width=500,height=300'); return false;" title="Reveal this e-mail address">...</a>@email.com</span>]:</p></blockquote><p>&#8212;&#8211;[建立 vpn server 的相關 key 組]&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;</p><p># ./build-key-server vpnsrv</p><p>&#8230;&#8230;</p><blockquote><p>Country Name (2 letter code) [TW]:</p><p>State or Province Name (full name) [Taiwan]:</p><p>Locality Name (eg, city) [Taipei]:</p><p>Organization Name (eg, company) [TomatoVPN]:</p><p>Organizational Unit Name (eg, section) []:Home</p><p>Common Name (eg, your name or your server&#8217;s hostname) [vpnsrv]:</p><p>Name []:Home</p><p>Email Address [<span
class="mh-email">y<a
href='http://www.google.com/recaptcha/mailhide/d?k=01zOU_MR-vYyFeO-PuyAmCPw==&amp;c=d4hFhwl4Trx1fq6ZVe2xFw==' onclick="window.open('http://www.google.com/recaptcha/mailhide/d?k=01zOU_MR-vYyFeO-PuyAmCPw==&amp;c=d4hFhwl4Trx1fq6ZVe2xFw==', '', 'toolbar=0,scrollbars=0,location=0,statusbar=0,menubar=0,resizable=0,width=500,height=300'); return false;" title="Reveal this e-mail address">...</a>@email.com</span>]:</p></blockquote><p>&#8230;&#8230;.. (以下兩個都按 Enter 跳過。)</p><p>A challenge password []:</p><p>An optional company name []:</p><p>&#8230;&#8230;..<br
/> (以下兩個都回答 y 即可)</p><p>Sign the certificate? [y/n]:y</p><p>1 out of 1 certificate requests certified, commit? [y/n]y</p><p>Write out database with 1 new entries</p><p>Data Base Updated</p><p>&#8212;&#8212;[dh1024]&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;</p><p># ./build-dh</p><p>&#8212;&#8211;[以下為  VPN SERVER 填寫到 tomatovpn 對應的欄位---------------------------------------------</p><p>Certificate Authority -&gt; 開啟 ca.crt 並全選-&gt;複製 -&gt; 貼上</p><p>Server Certificate -&gt; 開啟 vpnsrv.crt 並全選-&gt;複製 -&gt; 貼上</p><p>Server Key -&gt; 開啟 vpnsrv.key 並全選-&gt;複製 -&gt; 貼上</p><p>Diffie Hellman parameters -&gt;開啟 dh1024.pem 並全選-&gt;複製 -&gt; 貼上</p><p>================================================================</p><p>[Client-Part]</p><p># cd /tmp</p><p># cp -rv easy-key client</p><p>( If you want to copy second client key.) -&gt; 非必要步驟</p><p>(# cp -rv easy-key client1) -&gt; 非必要步驟</p><p># cd client</p><p># source ./vars</p><p># ./build-key vpnclient1</p><p>Generating a 1024 bit RSA private key</p><p>&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;&#8230;++++++</p><p>&#8230;&#8230;&#8230;&#8230;++++++</p><p>writing new private key to &#8216;vpnclient1.key&#8217;</p><p>&#8212;&#8211;</p><p>You are about to be asked to enter information that will be incorporated</p><p>into your certificate request.</p><p>What you are about to enter is what is called a Distinguished Name or a DN.</p><p>There are quite a few fields but you can leave some blank</p><p>For some fields there will be a default value,</p><p>If you enter &#8216;.&#8217;, the field will be left blank.</p><p>&#8212;&#8211;</p><blockquote><p>Country Name (2 letter code) [TW]:</p><p>State or Province Name (full name) [Taiwan]:</p><p>Locality Name (eg, city) [Taipei]:</p><p>Organization Name (eg, company) [TomatoVPN]:</p><p>Organizational Unit Name (eg, section) []:</p><p>Common Name (eg, your name or your server&#8217;s hostname) [vpnclient1]:</p><p>Name []:</p><p>Email Address [<span
class="mh-email">y<a
href='http://www.google.com/recaptcha/mailhide/d?k=01zOU_MR-vYyFeO-PuyAmCPw==&amp;c=d4hFhwl4Trx1fq6ZVe2xFw==' onclick="window.open('http://www.google.com/recaptcha/mailhide/d?k=01zOU_MR-vYyFeO-PuyAmCPw==&amp;c=d4hFhwl4Trx1fq6ZVe2xFw==', '', 'toolbar=0,scrollbars=0,location=0,statusbar=0,menubar=0,resizable=0,width=500,height=300'); return false;" title="Reveal this e-mail address">...</a>@email.com</span>]:</p></blockquote><p><br
class="spacer_" /></p><p>Please enter the following &#8216;extra&#8217; attributes</p><p>to be sent with your certificate request</p><p>(以下兩個可以按 Enter 跳過)</p><p>A challenge password []:</p><p>An optional company name []:</p><p>Using configuration from /tmp/client/openssl.cnf</p><p>Check that the request matches the signature</p><p>Signature ok</p><p>The Subject&#8217;s Distinguished Name is as follows</p><blockquote><p>countryName           :&#8217;TW&#8217;</p><p>stateOrProvinceName   : &#8216;Taiwan&#8217;</p><p>localityName          : &#8216;Taipei&#8217;</p><p>organizationName      :PRINTABLE:&#8217;TomatoVPN&#8217;</p><p>commonName            :PRINTABLE:&#8217;vpnclient1&#8242;</p><p>emailAddress          :IA5STRING:&#8217;<span
class="mh-email">y<a
href='http://www.google.com/recaptcha/mailhide/d?k=01zOU_MR-vYyFeO-PuyAmCPw==&amp;c=d4hFhwl4Trx1fq6ZVe2xFw==' onclick="window.open('http://www.google.com/recaptcha/mailhide/d?k=01zOU_MR-vYyFeO-PuyAmCPw==&amp;c=d4hFhwl4Trx1fq6ZVe2xFw==', '', 'toolbar=0,scrollbars=0,location=0,statusbar=0,menubar=0,resizable=0,width=500,height=300'); return false;" title="Reveal this e-mail address">...</a>@email.com</span>&#8217;</p></blockquote><p>Certificate is to be certified until Jul 19 11:17:27 2019 GMT (3650 days)</p><p>(以下兩項也是都回答 y 即可)</p><p>Sign the certificate? [y/n]:y</p><p>1 out of 1 certificate requests certified, commit? [y/n]y</p><p>Write out database with 1 new entries</p><p>Data Base Updated</p><p>&#8212;[到這裡為止，該做的 KEY 都做完了。]&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;</p><p>(接下來要 sign vpnclient1 的 key 了)</p><p># cp keys/vpnclient1.csr ../easy-rsa/keys/</p><p># cp keys/vpnclient1.key ../easy-rsa/keys/</p><p># cd ../easy-rsa</p><p># source ./vars</p><p># ./sign-req vpnclient1</p><p>Using configuration from /tmp/easy-rsa/openssl.cnf</p><p>Check that the request matches the signature</p><p>Signature ok</p><p>The Subject&#8217;s Distinguished Name is as follows</p><blockquote><p>countryName           :PRINTABLE:&#8217;TW&#8217;</p><p>stateOrProvinceName   :PRINTABLE:&#8217;Taiwan&#8217;</p><p>localityName          :PRINTABLE:&#8217;Taipei&#8217;</p><p>organizationName      :PRINTABLE:&#8217;TomatoVPN&#8217;</p><p>commonName            :PRINTABLE:&#8217;vpnclient1&#8242;</p><p>emailAddress          :IA5STRING:&#8217;<span
class="mh-email">y<a
href='http://www.google.com/recaptcha/mailhide/d?k=01zOU_MR-vYyFeO-PuyAmCPw==&amp;c=d4hFhwl4Trx1fq6ZVe2xFw==' onclick="window.open('http://www.google.com/recaptcha/mailhide/d?k=01zOU_MR-vYyFeO-PuyAmCPw==&amp;c=d4hFhwl4Trx1fq6ZVe2xFw==', '', 'toolbar=0,scrollbars=0,location=0,statusbar=0,menubar=0,resizable=0,width=500,height=300'); return false;" title="Reveal this e-mail address">...</a>@email.com</span>&#8217;</p></blockquote><p>Certificate is to be certified until Jul 19 11:20:48 2019 GMT (3650 days)</p><p>(以下兩個回答 y 即可)</p><p>Sign the certificate? [y/n]:y</p><p>1 out of 1 certificate requests certified, commit? [y/n]y</p><p>Write out database with 1 new entries</p><p>Data Base Updated</p><p>======================================================================</p><p>ca ca.crt<br
/> cert vpnclient1.crt<br
/> key vpnclient1.key</p><p>以上3個為 vpnclient 的 KEY。</p><p>======================================================================</p> ]]></content:encoded> <wfw:commentRss>http://b.cpalm.org/2010/07/create-openvpn-server-client-key-for-tomatovpn-use/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>tomato1.27vpn3.6 更新札記</title><link>http://b.cpalm.org/2010/04/tomato1-27vpn3-6-%e6%9b%b4%e6%96%b0%e6%9c%ad%e8%a8%98/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=tomato1-27vpn3-6-%25e6%259b%25b4%25e6%2596%25b0%25e6%259c%25ad%25e8%25a8%2598</link> <comments>http://b.cpalm.org/2010/04/tomato1-27vpn3-6-%e6%9b%b4%e6%96%b0%e6%9c%ad%e8%a8%98/#comments</comments> <pubDate>Thu, 08 Apr 2010 17:03:06 +0000</pubDate> <dc:creator>マルク</dc:creator> <category><![CDATA[硬體]]></category> <category><![CDATA[軟體]]></category> <category><![CDATA[Asus WL-520GU]]></category> <category><![CDATA[Buffalo WHR-G54S]]></category> <category><![CDATA[firmware]]></category> <category><![CDATA[tomato]]></category> <category><![CDATA[tomatoVPN]]></category> <guid
isPermaLink="false">http://b.cpalm.org/?p=489</guid> <description><![CDATA[如果你尚未更新至 tomato 的韌體，請參照下面網址來更新: http://code.google.com/p/twtomato/w/list 以下更新方法適用 已為 tomatovpn 或已是 tomato 的韌體適用: tomatoVPN官網 使用機型: Buffalo WHR-G54S 更新用的檔案: tomatovpn-1.27vpn3.6.7z 裡的 tomato.trx 更名為 tomato.bin 下載網址:  點這裡下載檔案名稱: tomatovpn-1.27vpn3.6.7z &#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8211; 使用機型: Asus WL-520GU 更新用的檔案: tomatovpn-ND-1.27vpn3.6.7z 裡的 tomato-ND.trx 下載網址:  點這裡下載 檔案名稱: tomatovpn-ND-1.27vpn3.6.7z 更新步驟: 1.連到後台 192.168.x.x 的 ip 2. 找到左邊的 Administration -&#62; Upgrade  -&#62; Upgrade Firmware 的頁面 3. 點擊 「瀏覽」，依上頭的機型並選擇對應的檔案，然後點 Upgrade. 4. 依畫面指示，等候1分多鐘，幾乎快 [...]]]></description> <content:encoded><![CDATA[<p>如果你尚未更新至 tomato 的韌體，請參照下面網址來更新:</p><p><a
href="http://code.google.com/p/twtomato/w/list" target="_blank">http://code.google.com/p/twtomato/w/list</a></p><p><span
style="font-size: medium;"><strong>以下更新方法適用 已為 tomatovpn 或已是 tomato 的韌體適用:</strong></span></p><p><a
href="http://tomatovpn.keithmoyer.com/" target="_blank">tomatoVPN官網</a></p><p>使用機型: Buffalo WHR-G54S <br
/>更新用的檔案: tomatovpn-1.27vpn3.6.7z 裡的 tomato.<strong><span
style="color: #0000ff;">trx</span></strong> <strong>更名為 tomato.<span
style="color: #ff0000;">bin</span> </strong></p><p>下載網址:  點<a
href="http://tomatovpn.tomatomod.de/release/1.27vpn3.6/" target="_blank">這裡</a>下載<br
/>檔案名稱: tomatovpn-1.27vpn3.6.7z<span
id="more-489"></span></p><p>&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8211;</p><p>使用機型: Asus WL-520GU</p><p>更新用的檔案: tomatovpn-ND-1.27vpn3.6.7z 裡的 tomato-ND.trx</p><p>下載網址:  點<a
href="http://tomatovpn.tomatomod.de/release/1.27vpn3.6/" target="_blank">這裡</a>下載</p><p>檔案名稱: tomatovpn-ND-1.27vpn3.6.7z</p><p>更新步驟:</p><p>1.連到後台 192.168.x.x 的 ip</p><p>2. 找到左邊的 Administration -&gt; Upgrade  -&gt; Upgrade Firmware 的頁面</p><p>3. 點擊 「瀏覽」，依上頭的機型並選擇對應的檔案，然後點 Upgrade.</p><p>4. 依畫面指示，等候1分多鐘，幾乎快 2 分鐘了。反正不要中斷或按重整或中斷電源，這些都是不可以做的事情。</p><p>5. 待設定畫面恢復後，進入檢查設定並啟動未啟動的設定。</p><p>=====================================================</p><p>tomatoVPN 的 change log 看下面官方的 BLOG 吧。</p><p><a
href="http://tomatovpn.keithmoyer.com/2010/01/127vpn35.html" target="_blank">http://tomatovpn.keithmoyer.com/2010/01/127vpn35.html</a></p><ul><li>Moved to Tomato 1.27 baseline<ul><li><small><a
href="http://polarcloud.com/tomato_126">Tomato 1.26 changelog</a></small></li><li><small><a
href="http://polarcloud.com/tomato_127">Tomato 1.27 changelog</a></small></li></ul></li><li><span
style="background-color: #0000ff;">Upgraded  to OpenVPN 2.1.1 </span><ul><li><small><a
href="http://openvpn.net/index.php/open-source/documentation/change-log/71-21-change-log.html">OpenVPN  changelog</a></small></li></ul></li><li>Fixed  "exclusive" option for accepting DNS</li><li>Omit key/certs that aren&#8217;t  filled in in the GUI<ul><li>This should allow people to create user/pass  only configs &#8211; likely to be added to the GUI in the future</li></ul></li><li>Fix  some TAP connection issues</li><li>Option to <em>not</em> leave existing  default gateway in place while VPN is running</li><li>Option is now to  start VPN with WAN, not just with router<ul><li>If wan goes down and  back up, VPN service will be stopped and restarted</li></ul></li><li>"Poll  Interval" option in GUI to periodically check if the VPN is running,  and restart it if not.</li><li>Various code cleanups/improvements and  adaptations to the updated Tomato components</li></ul><p>=====================================================</p><p>offical tomato change log as below:</p><p><a
href="http://www.polarcloud.com/tomato_127" target="_blank">http://www.polarcloud.com/tomato_127</a><br
/>Tomato 1.27<br
/>Submitted by jon on Sun, 2009-11-29 11:44</p><p>Version 1.27</p><p> * Fix DDNS "-1&#8243; error when service used HTTPS.</p><p>Tomato 1.26<br
/>Submitted by jon on Thu, 2009-11-26 22:43</p><p>Version 1.26</p><p> * Allow a different port to be entered in Basic:Network:Static DNS (enter as "ip:port"). Be aware that dnsmasq must act as the DNS server (the default setting) when not using the normal port 53.<br
/> * Allow DHCP to serve the user-entered gateway (in Basic:Network) if the option in Advanced:DHCP is enabled.<br
/> * Do not start miniupnpd early to avoid warning messages.<br
/> * Update Australian DST (need to re-select), add Darwin, Brisbane TZ. Thanks to Peter O. for the info.<br
/> * Avoid double loading of tomato.css<br
/> * Fix possible null dereference in sendpage<br
/> * Collapsed all menus. For the old look, set nvram: "web_mx=status,bwm,tools"<br
/> * Obscured some key/password fields when not in focus.<br
/> * Accept more than two MAC addresses per IP address (ex: one IP for a laptop either wired or wireless [one at a time]). Note: Some computers may not like seeing the same IP unless it&#8217;s restarted.<br
/> * Added LED options back in Admin:Buttons/LED.<br
/> * Added ID for WLA2-G54L, TrueMobile 2300 thanks to Nick B. and David J.<br
/> * Added EditDNS thanks to Keith M.<br
/> * Added UTC+4:30 Kabul time zone.<br
/> * Fixed port set validation allowed more than what could be handled.<br
/> * Allow rstats to log if WAN port is used for LAN.<br
/> * Update dnsmasq to 2.51, miniupnpd 1.4, busybox 1.14.4, matrixssl 1.8.8.<br
/> =====================================================</p> ]]></content:encoded> <wfw:commentRss>http://b.cpalm.org/2010/04/tomato1-27vpn3-6-%e6%9b%b4%e6%96%b0%e6%9c%ad%e8%a8%98/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> <item><title>用 puttygen.exe 做 key 給 myentunnel/tomato sshd 使用</title><link>http://b.cpalm.org/2009/08/%e7%94%a8-puttygen-exe-%e5%81%9a-key-%e7%b5%a6-myentunneltomato-sshd-%e4%bd%bf%e7%94%a8/?utm_source=rss&#038;utm_medium=rss&#038;utm_campaign=%25e7%2594%25a8-puttygen-exe-%25e5%2581%259a-key-%25e7%25b5%25a6-myentunneltomato-sshd-%25e4%25bd%25bf%25e7%2594%25a8</link> <comments>http://b.cpalm.org/2009/08/%e7%94%a8-puttygen-exe-%e5%81%9a-key-%e7%b5%a6-myentunneltomato-sshd-%e4%bd%bf%e7%94%a8/#comments</comments> <pubDate>Wed, 05 Aug 2009 00:00:50 +0000</pubDate> <dc:creator>マルク</dc:creator> <category><![CDATA[ASUS RT-N16]]></category> <category><![CDATA[TomatoUSB]]></category> <category><![CDATA[硬體]]></category> <category><![CDATA[軟體]]></category> <category><![CDATA[Asus WL-520GU]]></category> <category><![CDATA[myentunnel]]></category> <category><![CDATA[Port Forward]]></category> <category><![CDATA[putty]]></category> <category><![CDATA[puttygen]]></category> <category><![CDATA[sshd]]></category> <category><![CDATA[tomato]]></category> <category><![CDATA[tomatoUSB]]></category> <category><![CDATA[tomatoVPN]]></category> <category><![CDATA[轉埠]]></category> <guid
isPermaLink="false">http://b.cpalm.org/?p=367</guid> <description><![CDATA[用 puttygen.exe 做 key 給 myentunnel/tomato sshd 使用 1. 下載 puttygen.exe ，http://www.chiark.greenend.org.uk/~sgtatham/putty/download.html [點我快速下載] ， 並啟動 puttygen.exe。 2.修改 Number of bits in a generated key 為 2048 → 並點 Generate。 3. 在產生 key 必須移動鼠標作為亂數的種子。 4. 等候 putty key generator 產生 public &#38; private key. 5.藍色框框: 為 public key (公鑰) tomato sshd server : Administration → Admin [...]]]></description> <content:encoded><![CDATA[<h3>用 puttygen.exe 做 key 給 myentunnel/tomato sshd 使用</h3><p>1. 下載 puttygen.exe ，http://www.chiark.greenend.org.uk/~sgtatham/putty/download.html<br
/> <a
href="http://tartarus.org/~simon/putty-snapshots/x86/puttygen.exe">[點我快速下載]</a> ， 並啟動 puttygen.exe。</p><p><a
href="http://b.cpalm.org/wp-content/uploads/2009/08/Putty_Key_Step1.jpg"><img
class="alignnone size-full wp-image-369" title="Putty_Key_Step1" src="http://b.cpalm.org/wp-content/uploads/2009/08/Putty_Key_Step1.jpg" alt="Putty_Key_Step1" width="483" height="470" /></a></p><p><span
id="more-367"></span><br
/> 2.修改 Number of bits in a generated key 為 2048 → 並點 Generate。<br
/> <a
href="http://b.cpalm.org/wp-content/uploads/2009/08/Putty_Key_Step2_bits_type.jpg"><img
class="alignnone size-full wp-image-370" title="Putty_Key_Step2_bits_type" src="http://b.cpalm.org/wp-content/uploads/2009/08/Putty_Key_Step2_bits_type.jpg" alt="Putty_Key_Step2_bits_type" width="483" height="470" /></a></p><p>3. 在產生 key 必須移動鼠標作為亂數的種子。<br
/> <a
href="http://b.cpalm.org/wp-content/uploads/2009/08/Putty_Key_Step3_move_your_cursor.jpg"><img
class="alignnone size-full wp-image-371" title="Putty_Key_Step3_move_your_cursor" src="http://b.cpalm.org/wp-content/uploads/2009/08/Putty_Key_Step3_move_your_cursor.jpg" alt="Putty_Key_Step3_move_your_cursor" width="483" height="470" /></a></p><p>4. 等候 putty key generator 產生 public &amp; private key.<br
/> <a
href="http://b.cpalm.org/wp-content/uploads/2009/08/Putty_Key_Step4_Generateing_key.jpg"><img
class="alignnone size-full wp-image-372" title="Putty_Key_Step4_Generateing_key" src="http://b.cpalm.org/wp-content/uploads/2009/08/Putty_Key_Step4_Generateing_key.jpg" alt="Putty_Key_Step4_Generateing_key" width="483" height="470" /></a></p><p>5.藍色框框: 為 public key (公鑰)<br
/> tomato sshd server : Administration → Admin Access → Authorized Keys 的欄位貼上。<br
/> Linux server: /home/users/.ssh/authorized_keys<br
/> 黃色框框: key comment (金鑰的註解，可註明用途及日期)<br
/> 綠色框框: key passphrase (金鑰的保護密碼，不知道密碼的人，就會無法使用。)<br
/> 紫色框框: Save Public key (儲存公開金鑰，可以不用儲存，只要有私鑰可以再度產生出來。)<br
/> 紅色框框: Save Private key (儲存私人金鑰，此金鑰極為重要，不可亂丢)</p><p><a
href="http://b.cpalm.org/wp-content/uploads/2009/08/Putty_Key_Step5_Generated_public_private_key.jpg"><img
class="alignnone size-full wp-image-373" title="Putty_Key_Step5_Generated_public_private_key" src="http://b.cpalm.org/wp-content/uploads/2009/08/Putty_Key_Step5_Generated_public_private_key.jpg" alt="Putty_Key_Step5_Generated_public_private_key" width="483" height="470" /></a></p><p>6.Myentunnel: 請存成 keyfile.ppk , 如果有 profile ,ex: cpalm-keyfile.ppk , ( &#8211; ) 減號為檔名分隔符號。</p><p><a
href="http://b.cpalm.org/wp-content/uploads/2009/08/Putty_Key_Step6_Save_your_Key.jpg"><img
class="alignnone size-full wp-image-374" title="Putty_Key_Step6_Save_your_Key" src="http://b.cpalm.org/wp-content/uploads/2009/08/Putty_Key_Step6_Save_your_Key.jpg" alt="Putty_Key_Step6_Save_your_Key" width="563" height="386" /></a></p><p>7.(非必要步驟) 把產生的私鑰順便轉成 linux ssh 用的 私鑰格式。<br
/> Conversions → Export OpenSSH key → openssh.ppk 即可。<br
/> <a
href="http://b.cpalm.org/wp-content/uploads/2009/08/Putty_Key_Step7_Save_your_Key_for_linux_ssh_use.jpg"><img
class="alignnone size-full wp-image-375" title="Putty_Key_Step7_Save_your_Key_for_linux_ssh_use" src="http://b.cpalm.org/wp-content/uploads/2009/08/Putty_Key_Step7_Save_your_Key_for_linux_ssh_use.jpg" alt="Putty_Key_Step7_Save_your_Key_for_linux_ssh_use" width="482" height="472" /></a></p><p>8. 在 Tomato sshd  的 authroized keys 欄位，貼入公鑰(public key) → Save → Start Now.</p><p><a
href="http://b.cpalm.org/wp-content/uploads/2009/08/Putty_Key_Step8_Paste_your_Key_for_tomato_sshd_authorized_keys.jpg"><img
class="alignnone size-full wp-image-377" title="Putty_Key_Step8_Paste_your_Key_for_tomato_sshd_authorized_keys" src="http://b.cpalm.org/wp-content/uploads/2009/08/Putty_Key_Step8_Paste_your_Key_for_tomato_sshd_authorized_keys.jpg" alt="Putty_Key_Step8_Paste_your_Key_for_tomato_sshd_authorized_keys" width="579" height="328" /></a><br
/> 如欲轉載，請註明出處，謝謝。</p> ]]></content:encoded> <wfw:commentRss>http://b.cpalm.org/2009/08/%e7%94%a8-puttygen-exe-%e5%81%9a-key-%e7%b5%a6-myentunneltomato-sshd-%e4%bd%bf%e7%94%a8/feed/</wfw:commentRss> <slash:comments>0</slash:comments> </item> </channel> </rss>
