<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>SysAdmin | Luis Cacho</title><link>https://luiscachog.io/category/sysadmin/</link><atom:link href="https://luiscachog.io/category/sysadmin/index.xml" rel="self" type="application/rss+xml"/><description>SysAdmin</description><generator>Wowchemy (https://wowchemy.com)</generator><language>en-us</language><lastBuildDate>Fri, 23 Jun 2023 00:00:00 +0000</lastBuildDate><image><url>https://luiscachog.io/media/icon_hu4fa4dbbaafd6f1b45a88958b9b4a0dd0_11007_512x512_fill_lanczos_center_3.png</url><title>SysAdmin</title><link>https://luiscachog.io/category/sysadmin/</link></image><item><title>cURL to a specific target hostname</title><link>https://luiscachog.io/garden/curl-target-hostname/</link><pubDate>Fri, 23 Jun 2023 00:00:00 +0000</pubDate><guid>https://luiscachog.io/garden/curl-target-hostname/</guid><description>&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">&lt;span class="c1"># Mockup command&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">curl -kv -H &lt;span class="s2">&amp;#34;Host: &amp;lt;target hostname&amp;gt;&amp;#34;&lt;/span> &amp;lt;protocol&amp;gt;://&amp;lt;server ip address&amp;gt;:&amp;lt;port&amp;gt;
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="c1"># Example command&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">curl -kv -H &lt;span class="s2">&amp;#34;Host: myapp.apps.example.com&amp;#34;&lt;/span> https://152.10.10.1:443
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div></description></item><item><title>Fix a borg lock issue</title><link>https://luiscachog.io/garden/borg-break-lock-issue/</link><pubDate>Fri, 23 Jun 2023 00:00:00 +0000</pubDate><guid>https://luiscachog.io/garden/borg-break-lock-issue/</guid><description>&lt;p>When you get the error:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">&lt;span class="c1"># Example command&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="c1"># ERROR output&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">borg info ssh://asdbqw55@a3rbqwrx.repo.borg.com/./repo
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">Enter passphrase &lt;span class="k">for&lt;/span> key ssh://asdbqw55@a3rbqwrx.repo.borg.com/./repo:
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">Failed to create/acquire the lock /Users/lcacho/.cache/borg/34961807af9e356640e09e9973ef4664598ee6706e4c2bccc4b2770c15e09d2b/lock.exclusive &lt;span class="o">(&lt;/span>timeout&lt;span class="o">)&lt;/span>.
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="c1"># Fix&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">borg break-lock ssh://asdbqw55@a3rbqwrx.repo.borg.com/./repo
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>&lt;strong>References:&lt;/strong>&lt;/p>
&lt;ul>
&lt;li>&lt;sup id="fnref:1">&lt;a href="#fn:1" class="footnote-ref" role="doc-noteref">1&lt;/a>&lt;/sup> Borg Break Lock&lt;/li>
&lt;/ul>
&lt;div class="footnotes" role="doc-endnotes">
&lt;hr>
&lt;ol>
&lt;li id="fn:1">
&lt;p>&lt;a href="https://borgbackup.readthedocs.io/en/stable/usage/lock.html#borg-break-lock" target="_blank" rel="noopener">https://borgbackup.readthedocs.io/en/stable/usage/lock.html#borg-break-lock&lt;/a>&amp;#160;&lt;a href="#fnref:1" class="footnote-backref" role="doc-backlink">&amp;#x21a9;&amp;#xfe0e;&lt;/a>&lt;/p>
&lt;/li>
&lt;/ol>
&lt;/div></description></item><item><title>Python Alternatives in RHEL based OS</title><link>https://luiscachog.io/garden/python-alternatives-in-rhel/</link><pubDate>Thu, 22 Jun 2023 00:00:00 +0000</pubDate><guid>https://luiscachog.io/garden/python-alternatives-in-rhel/</guid><description>&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">&lt;span class="c1"># To configure the unversioned `python` command to Python 3.11&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">alternatives --set python /usr/bin/python3.11
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="c1"># To configure the unversioned `python` command to Python 2&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">alternatives --set python /usr/bin/python2
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>&lt;strong>References:&lt;/strong>&lt;/p>
&lt;ul>
&lt;li>&lt;sup id="fnref:1">&lt;a href="#fn:1" class="footnote-ref" role="doc-noteref">1&lt;/a>&lt;/sup>Configure python on RHEL8&lt;/li>
&lt;/ul>
&lt;div class="footnotes" role="doc-endnotes">
&lt;hr>
&lt;ol>
&lt;li id="fn:1">
&lt;p>&lt;a href="https://access.redhat.com/solutions/5380941" target="_blank" rel="noopener">https://access.redhat.com/solutions/5380941&lt;/a>&amp;#160;&lt;a href="#fnref:1" class="footnote-backref" role="doc-backlink">&amp;#x21a9;&amp;#xfe0e;&lt;/a>&lt;/p>
&lt;/li>
&lt;/ol>
&lt;/div></description></item><item><title>Change the field separator in awk</title><link>https://luiscachog.io/garden/awk-field-separator/</link><pubDate>Thu, 19 Aug 2021 00:00:00 +0000</pubDate><guid>https://luiscachog.io/garden/awk-field-separator/</guid><description>&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">awk -F &lt;span class="s2">&amp;#34;:&amp;#34;&lt;/span> &lt;span class="s1">&amp;#39;{print $1}&amp;#39;&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="c1"># or if you want to do it programatically&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">awk &lt;span class="s1">&amp;#39;BEGIN { FS=&amp;#34;:&amp;#34; } { print $1 }&amp;#39;&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="c1"># or you can also use a regular expression as a field separator.&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="c1"># The following will print &amp;#34;bar&amp;#34; by using a regular expression to set the number &amp;#34;10&amp;#34; as a separator.&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="nb">echo&lt;/span> &lt;span class="s2">&amp;#34;foo 10 bar&amp;#34;&lt;/span> &lt;span class="p">|&lt;/span> awk -F&lt;span class="s1">&amp;#39;[0-9][0-9]&amp;#39;&lt;/span> &lt;span class="s1">&amp;#39;{print $2}&amp;#39;&lt;/span>
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div></description></item><item><title>MySQL Database Size</title><link>https://luiscachog.io/garden/mysql-database-size/</link><pubDate>Fri, 06 Aug 2021 00:00:00 +0000</pubDate><guid>https://luiscachog.io/garden/mysql-database-size/</guid><description>&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-mysql" data-lang="mysql">&lt;span class="line">&lt;span class="cl">&lt;span class="k">SELECT&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="n">table_schema&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="k">AS&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="s2">&amp;#34;Database&amp;#34;&lt;/span>&lt;span class="p">,&lt;/span>&lt;span class="w">
&lt;/span>&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="w">&lt;/span>&lt;span class="nf">ROUND&lt;/span>&lt;span class="p">(&lt;/span>&lt;span class="nf">SUM&lt;/span>&lt;span class="p">(&lt;/span>&lt;span class="n">data_length&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="o">+&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="n">index_length&lt;/span>&lt;span class="p">)&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="o">/&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="mi">1024&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="o">/&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="mi">1024&lt;/span>&lt;span class="p">,&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="mi">2&lt;/span>&lt;span class="p">)&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="k">AS&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="s2">&amp;#34;Size (MB)&amp;#34;&lt;/span>&lt;span class="w">
&lt;/span>&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="w">&lt;/span>&lt;span class="k">FROM&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="n">information_schema&lt;/span>&lt;span class="p">.&lt;/span>&lt;span class="kp">TABLES&lt;/span>&lt;span class="w">
&lt;/span>&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="w">&lt;/span>&lt;span class="k">GROUP&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="k">BY&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="n">table_schema&lt;/span>&lt;span class="p">;&lt;/span>&lt;span class="w">
&lt;/span>&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div></description></item><item><title>AIX Tunning commands</title><link>https://luiscachog.io/garden/aix-tunning/</link><pubDate>Sun, 01 Aug 2021 00:00:00 +0000</pubDate><guid>https://luiscachog.io/garden/aix-tunning/</guid><description>&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">no -a &amp;gt; no.txt
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">vmo -L &amp;gt; vmo.txt
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">ioo -L &amp;gt; ioo.txt
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div></description></item><item><title>My journey to become CKA and CKAD</title><link>https://luiscachog.io/my-journey-to-become-cka-and-ckad/</link><pubDate>Thu, 26 Nov 2020 00:00:00 +0000</pubDate><guid>https://luiscachog.io/my-journey-to-become-cka-and-ckad/</guid><description>&lt;p>Hi, people that read me!&lt;/p>
&lt;p>I usually don&amp;rsquo;t write about my achievements. Still, I&amp;rsquo;m proud of what I did, and in this post I want to share my journey to that back in July I passed two essential certifications for me,
the CKA (Certified Kubernetes Administrator) and the CKAD (Certified Kubernetes Application Developer).
Those certs are important to me because one of my professional goals is to apply all my knowledge as an SRE (Site Reliabilty Engineer),
so I&amp;rsquo;m putting all my effort to get trained and gain experience as I believe that Kubernetes is and will continue to be widely used by the industry I want to be part of that.&lt;/p>
&lt;p>I put a lot of hours/practice on my study lately, but my journey started probably 3 years ago, or even more time (don&amp;rsquo;t remember exacly).
Still, I remember that I become interested when I was talking with my friends &lt;a href="https://twitter.com/yazpik" target="_blank" rel="noopener">@yazpik&lt;/a> and &lt;a href="https://twitter.com/tonyskapunk" target="_blank" rel="noopener">@tonyskapunk&lt;/a>
about the new stuff that is comming on tech, by that time they were running a &lt;a href="https://www.meetup.com/Kubernetes-San-Antonio/" target="_blank" rel="noopener">Kubernetes Meetup&lt;/a>
at the &lt;a href="https://rackspace.com" target="_blank" rel="noopener">Castle&lt;/a> and I started to assist to each meetup.&lt;/p>
&lt;p>Being honest, at the begginning, I barely understand all the concepts and projects that the speakers were talking about but once I started to get involved reading blog posts,
practicing (Yeah I did the &lt;a href="https://github.com/kelseyhightower/kubernetes-the-hard-way" target="_blank" rel="noopener">&amp;lsquo;Kubernetes the Hard way&amp;rsquo;&lt;/a> on &lt;a href="https://kubernetes.io/docs/tasks/tools/install-minikube/" target="_blank" rel="noopener">minikube&lt;/a>),
also began to follow and test other exciting projects like &lt;a href="https://rancher.com/" target="_blank" rel="noopener">Rancher&lt;/a>.
So after a while, I started to understand better what the speaker was trying to communicate.
And that helps me a lot to understand not only the basics but some good projects that work in conjunction with Kubernetes.&lt;/p>
&lt;p>With all the meetings that were held on Rackspace I get involved and I wanted to keep learning more so,
I decided to assist to &lt;a href="https://events19.linuxfoundation.org/events/kubecon-cloudnativecon-north-america-2018/" target="_blank" rel="noopener">Kubecon North America 2018&lt;/a> that was held on Seattle,
and I like to think that this set of conferences opened my mind for all the Kubernetes environment,
and I feel that I need to keep learning even more about this awesome technology, that keeps me motivated to get my certifications too,
in a nutshell I feel inspired about the conferences, the comunity, everything and I want to be part of it.&lt;/p>
&lt;p>Talking about community, in that kubecon I met with some Latin-American friends that were interested in Kubernetes like
&lt;a href="https://twitter.com/domix" target="_blank" rel="noopener">@domix&lt;/a>, &lt;a href="https://twitter.com/_marKox" target="_blank" rel="noopener">@marKox&lt;/a>,both from México, and &lt;a href="https://twitter.com/EdduMelendez" target="_blank" rel="noopener">@EdduMelendez&lt;/a> from Peru,
that from their trenches they are trying to grow the Kubernetes community on Spanish.&lt;/p>
&lt;figure id="figure-kubecon-2018">
&lt;div class="d-flex justify-content-center">
&lt;div class="w-100" >&lt;img alt="Mexicanos in Kubecon 2018"
src="https://luiscachog.io/media/posts/my-journey-to-become-a-cka-and-ckad/kubecon-2018.gif"
loading="lazy" data-zoomable />&lt;/div>
&lt;/div>&lt;figcaption>
Mexicanos in Kubecon 2018
&lt;/figcaption>&lt;/figure>
&lt;p>But returning to my certifications path, after a while I decided that I will have the certs by the end on this year, so back in March I get more serious studying and purchased the excellent course
&lt;a href="https://kodekloud.com/courses/certified-kubernetes-administrator-cka/" target="_blank" rel="noopener">Certified Kubernetes Administrator (CKA) with Practice Tests&lt;/a> a course by
&lt;a href="https://twitter.com/mmumshad" target="_blank" rel="noopener">Mumshad Mannambeth&lt;/a> that I highly recommend to reinforce the theory and also,
becasue includes exercises similar to the exam that you can practice.&lt;/p>
&lt;p>Once I feelt confident in me and my knowledge I get my coupon to present the CKA exam, and I passed!&lt;/p>
&lt;figure id="figure-cka-cert">
&lt;div class="d-flex justify-content-center">
&lt;div class="w-100" >&lt;img alt="My CKA Certification" srcset="
/media/posts/my-journey-to-become-a-cka-and-ckad/cka_hu0f32465aeb1b84b477b34e639cca04fc_5358425_d9b14c1de3eff13616047bd87d1eaa9e.webp 400w,
/media/posts/my-journey-to-become-a-cka-and-ckad/cka_hu0f32465aeb1b84b477b34e639cca04fc_5358425_1d053af47cb5d7f80e5481ce9b01cdbc.webp 760w,
/media/posts/my-journey-to-become-a-cka-and-ckad/cka_hu0f32465aeb1b84b477b34e639cca04fc_5358425_1200x1200_fit_q90_h2_lanczos_3.webp 1200w"
src="https://luiscachog.io/media/posts/my-journey-to-become-a-cka-and-ckad/cka_hu0f32465aeb1b84b477b34e639cca04fc_5358425_d9b14c1de3eff13616047bd87d1eaa9e.webp"
width="760"
height="587"
loading="lazy" data-zoomable />&lt;/div>
&lt;/div>&lt;figcaption>
My CKA Certification
&lt;/figcaption>&lt;/figure>
&lt;p>I need tell you, it wasn&amp;rsquo;t easy, mostly because you need to be careful with the time/value of the questions and you need to weigh to reach the passing score, for this exam it was 74%.&lt;/p>
&lt;p>Of course after I get the CKA certitification, I was super happy but on my train of thoughts, I keep thinking that I can use the CKA study as leverage to get the CKAD.&lt;/p>
&lt;p>I already have the fundamentals of a CKA and just need some extra study to complement the CKAD curriculum, so I got commited (my wife too),
and right away I got my CKAD exam coupon and I scheduled the test 2 weeks appart after I decided to get the cert
(That&amp;rsquo;s 3 weeks appart after I took the CKA exam).&lt;/p>
&lt;p>My approach works, I passed the CKAD certification!&lt;/p>
&lt;figure id="figure-ckad-cert">
&lt;div class="d-flex justify-content-center">
&lt;div class="w-100" >&lt;img alt="My CKAD Certification" srcset="
/media/posts/my-journey-to-become-a-cka-and-ckad/ckad_hu65ed50906ed16f3f565df85d46351117_5396439_83eca461f641ce40130efa967122fba7.webp 400w,
/media/posts/my-journey-to-become-a-cka-and-ckad/ckad_hu65ed50906ed16f3f565df85d46351117_5396439_cd6e3a6afba04723f90ddae290c0ab1d.webp 760w,
/media/posts/my-journey-to-become-a-cka-and-ckad/ckad_hu65ed50906ed16f3f565df85d46351117_5396439_1200x1200_fit_q90_h2_lanczos_3.webp 1200w"
src="https://luiscachog.io/media/posts/my-journey-to-become-a-cka-and-ckad/ckad_hu65ed50906ed16f3f565df85d46351117_5396439_83eca461f641ce40130efa967122fba7.webp"
width="760"
height="587"
loading="lazy" data-zoomable />&lt;/div>
&lt;/div>&lt;figcaption>
My CKAD Certification
&lt;/figcaption>&lt;/figure>
&lt;p>Now that I&amp;rsquo;m certified on Kubernetes I will look to be more involved in Cloud Native initiatives on my company,
to apply the knowledge that I already have on current or new projects, and as always keep learning!&lt;/p></description></item><item><title>Backing Up a Ruckus Switch Config</title><link>https://luiscachog.io/backing-up-ruckus-config/</link><pubDate>Sat, 21 Nov 2020 00:00:00 +0000</pubDate><guid>https://luiscachog.io/backing-up-ruckus-config/</guid><description>&lt;p>I want to do some changes on my home network to improve the performance, so I will implement VLANs on my network.
But before I do that I want to document how to perform a backup of my Ruckus ICX 7150 Switch.&lt;/p>
&lt;p>In a &lt;a href="https://luiscachog.io/configure-ruckus-switch/">past post&lt;/a> I mentioned how to enable ssh and web cofiguration on the Ruckus switch,
so my first attemtp was to download the configuration file from the web interface but unfortunately it is not possible to do it, there is not an option for that.
What I did is go to the &lt;a href="http://docs.ruckuswireless.com/fastiron/hardware/icx7150-installguide/GUID-25306120-376C-44B2-BAE7-3D969EC889A3.html" target="_blank" rel="noopener">documentation&lt;/a>
and found the &lt;code>copy&lt;/code> command but I need a &lt;a href="https://en.wikipedia.org/wiki/Trivial_File_Transfer_Protocol" target="_blank" rel="noopener">TFTP server&lt;/a> to be able to download the backup file.&lt;/p>
&lt;p>Let&amp;rsquo;s start!&lt;/p>
&lt;ol>
&lt;li>
&lt;p>Install a TFTP server - This is easy will depend on your Operative System, for my is an ArchLinux laptop.&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">yay -Sy atftp
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>The configuration file for atftp is &lt;code>/etc/conf.d/atftpd&lt;/code>&lt;/p>
&lt;/li>
&lt;li>
&lt;p>Next step, is login on your Ruckus switch and perform the copy command:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">ssh &amp;lt;USER&amp;gt;@&amp;lt;SWITCH-IP&amp;gt;
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">copy running-config tftp &amp;lt;TFTP-SERVER-IP&amp;gt; myconfig.cfg
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="c1">#In my case is:&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">ssh ruckus@192.168.50.5
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">copy running-config tftp 192.168.50.4 myconfig.cfg
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>Verify that the file is on your TFTP server, by default, the configured directory for atftp is &lt;code>/srv/atftp/&lt;/code> so you should go that location and verify that the generated file is created.&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">&lt;span class="nb">cd&lt;/span> /srv/atftp
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">ls -la
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;/ol>
&lt;p>That&amp;rsquo;s all, you can restore your switch configuration if needed.&lt;/p>
&lt;p>Bye!&lt;/p></description></item><item><title>Gestion de History</title><link>https://luiscachog.io/gestion-de-history/</link><pubDate>Tue, 03 Dec 2019 00:00:00 +0000</pubDate><guid>https://luiscachog.io/gestion-de-history/</guid><description>&lt;details class="toc-inpage d-print-none " open>
&lt;summary class="font-weight-bold">Table of Contents&lt;/summary>
&lt;nav id="TableOfContents">
&lt;ul>
&lt;li>&lt;a href="#mostrar-la-fecha-y-hora-de-cuando-escribimos-comandos">Mostrar la fecha y hora de cuando escribimos comandos&lt;/a>&lt;/li>
&lt;li>&lt;a href="#control-del-tamaño-del-archivo-de-logs-histórico">Control del tamaño del archivo de logs histórico&lt;/a>
&lt;ul>
&lt;li>&lt;a href="#control-de-duplicados-en-el-histórico">Control de duplicados en el histórico&lt;/a>&lt;/li>
&lt;li>&lt;a href="#path-para-guardar-el-archivo-de-logs-histórico">Path para guardar el archivo de logs histórico&lt;/a>&lt;/li>
&lt;/ul>
&lt;/li>
&lt;/ul>
&lt;/nav>
&lt;/details>
&lt;p>El archivo de logs histórico (history) tiene varias opciones que podemos cambiar para tener un mejor control del mismo.
Aquí vamos a ver algunas opciones para el control y gestión del fichero del log histórico (history).&lt;/p>
&lt;h2 id="mostrar-la-fecha-y-hora-de-cuando-escribimos-comandos">Mostrar la fecha y hora de cuando escribimos comandos&lt;/h2>
&lt;p>Para mostrar la fecha y hora en el formato que requieras puedes agregas las lineas siguientes:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">&lt;span class="nb">export&lt;/span> &lt;span class="nv">HISTTIMEFORMAT&lt;/span>&lt;span class="o">=&lt;/span>&lt;span class="s1">&amp;#39;- %F %T - &amp;#39;&lt;/span>
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;h2 id="control-del-tamaño-del-archivo-de-logs-histórico">Control del tamaño del archivo de logs histórico&lt;/h2>
&lt;p>Tenemos dos variables de entorno para ello, &lt;em>HISTSIZE&lt;/em> y &lt;em>HISTFILESIZE&lt;/em>, que indican el tamaño del fichero, por ejemplo:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">&lt;span class="nv">HISTSIZE&lt;/span>&lt;span class="o">=&lt;/span>&lt;span class="m">1000&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="nv">HISTFILESIZE&lt;/span>&lt;span class="o">=&lt;/span>&lt;span class="m">1000&lt;/span>
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>Con esto hacemos que el tamaño máximo del fichero de logs histórico sea de 1000 comandos o líneas.&lt;/p>
&lt;div class="alert alert-note">
&lt;div>
&lt;p>Si ponemos el tamaño de la variable &lt;em>HISTSIZE&lt;/em> a &lt;strong>cero&lt;/strong> hacemos que no se guarde nada en el archivo de logs histórico&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">&lt;span class="nb">export&lt;/span> &lt;span class="nv">HISTSIZE&lt;/span>&lt;span class="o">=&lt;/span>&lt;span class="m">0&lt;/span>
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>
&lt;/div>
&lt;/div>
&lt;h3 id="control-de-duplicados-en-el-histórico">Control de duplicados en el histórico&lt;/h3>
&lt;p>En el log histórico se van guardando &lt;strong>TODOS&lt;/strong> los comandos que se van introduciendo aunque repitamos 20 veces el mismo comando, se guardará 20 veces, lo cual es en ocasiones una perdida de espacio.
Por lo que podemos usar la variable &lt;em>HISTCONTROL&lt;/em> para hacer 2 cosas:&lt;/p>
&lt;ul>
&lt;li>Eliminar los duplicados consecutivos con &lt;em>ignoredups&lt;/em>.&lt;/li>
&lt;li>Eliminar los duplicados sean o no consecutivos con &lt;em>erasedups&lt;/em>.&lt;/li>
&lt;/ul>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">&lt;span class="nv">HISTCONTROL&lt;/span>&lt;span class="o">=&lt;/span>ignoredups
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="nv">HISTCONTROL&lt;/span>&lt;span class="o">=&lt;/span>erasedups
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;h3 id="path-para-guardar-el-archivo-de-logs-histórico">Path para guardar el archivo de logs histórico&lt;/h3>
&lt;p>Por defecto el histórico se guarda en &lt;code>~/.bash_history&lt;/code> pero podemos indicar donde guardarlo con la variable &lt;em>HISTFILE&lt;/em>.&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">&lt;span class="nv">HISTFILE&lt;/span>&lt;span class="o">=&lt;/span>~/.bitacora.
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>Un truco muy bueno cuando en un mismo servidor entran varios administradores que se pasan a root y poder controlar y guardar que hace cada uno es:
Guardar un archivo de logs histórico por cada uno de ellos.
Lo puedes hacer de la siguiente forma:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">&lt;span class="nv">HISTSIZE&lt;/span>&lt;span class="o">=&lt;/span>&lt;span class="m">5000&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="nv">HISTFILESIZE&lt;/span>&lt;span class="o">=&lt;/span>&lt;span class="m">5000&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="nv">HISTFILE&lt;/span>&lt;span class="o">=&lt;/span>/root/.bash_hist-&lt;span class="k">$(&lt;/span>who am i &lt;span class="p">|&lt;/span> awk &lt;span class="s1">&amp;#39;{print $1}&amp;#39;&lt;/span>&lt;span class="p">;&lt;/span>&lt;span class="nb">exit&lt;/span>&lt;span class="k">)&lt;/span>
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>Con esto se guardará en el home de del usuario root un archivo de logs histórico por cada uno de los usuarios que se hayan pasado a root.
El tamaño se puede ampliar o reducir a gusto. También podemos poner que ignore duplicados.&lt;/p>
&lt;p>Todas estas variables debemos ponerlas en un archivo donde se activen al arranque que puede ser &lt;code>~/.bashrc&lt;/code>.&lt;/p>
&lt;p>Espero les sea útilidad.&lt;/p>
&lt;p>&amp;#x1f604;&lt;/p></description></item><item><title>Docker Login the Right Way</title><link>https://luiscachog.io/docker-login-the-right-way/</link><pubDate>Wed, 15 May 2019 00:00:00 +0000</pubDate><guid>https://luiscachog.io/docker-login-the-right-way/</guid><description>&lt;details class="toc-inpage d-print-none " open>
&lt;summary class="font-weight-bold">Table of Contents&lt;/summary>
&lt;nav id="TableOfContents">
&lt;ul>
&lt;li>&lt;a href="#credential-store">Credential Store&lt;/a>&lt;/li>
&lt;li>&lt;a href="#docker-credential-helpers">Docker Credential Helpers&lt;/a>&lt;/li>
&lt;li>&lt;a href="#docker-credential-secret-service">docker-credential-secret service&lt;/a>&lt;/li>
&lt;/ul>
&lt;/nav>
&lt;/details>
&lt;h1 id="docker-login-the-right-way">Docker Login the right Way&lt;/h1>
&lt;p>Hi again!&lt;/p>
&lt;p>It is been a while since I wrote something here, as always, there is no much time for a hobby.&lt;/p>
&lt;p>I&amp;rsquo;ve been working for a while with docker, not a production level, but for some applications that I use at work.
And since the &lt;a href="https://www.zdnet.com/article/docker-hub-hack-exposed-data-of-190000-users/" target="_blank" rel="noopener">Docker Hub Data breach&lt;/a>
I put more atention on the security of my data/credentials, so I investigate a little about and found this official
repository &lt;a href="https://github.com/docker/docker-credential-helpers/" target="_blank" rel="noopener">https://github.com/docker/docker-credential-helpers/&lt;/a> from Docker where are the supported credential helpers.&lt;/p>
&lt;h2 id="credential-store">Credential Store&lt;/h2>
&lt;p>Docker keeps our credentials saved on a JSON file located on &lt;code>~/.docker/config.json&lt;/code>,
but unfortunatelly credentials are just encrypted on base64,
here is an &lt;a href="https://fosdem.org/2019/schedule/event/base64_not_encryption/" target="_blank" rel="noopener">articule/video&lt;/a> where there is an explanation for the why it is a bad idea to just use base64 encryption.&lt;/p>
&lt;p>The following is a diagram on how a plain text storage works:&lt;/p>
&lt;figure id="figure-docker-plain-text-storage">
&lt;div class="d-flex justify-content-center">
&lt;div class="w-100" >&lt;img alt="Plain Text Storage" srcset="
/media/posts/docker-login-the-right-way/DockerPlainTextCredentials_hu371181661409e61f690ceccfb695d5d5_82530_0db582c8916ffc5cd1b1225c42276838.webp 400w,
/media/posts/docker-login-the-right-way/DockerPlainTextCredentials_hu371181661409e61f690ceccfb695d5d5_82530_b27b4b3bd220158c0d85a61a2d4ae88b.webp 760w,
/media/posts/docker-login-the-right-way/DockerPlainTextCredentials_hu371181661409e61f690ceccfb695d5d5_82530_1200x1200_fit_q90_h2_lanczos_3.webp 1200w"
src="https://luiscachog.io/media/posts/docker-login-the-right-way/DockerPlainTextCredentials_hu371181661409e61f690ceccfb695d5d5_82530_0db582c8916ffc5cd1b1225c42276838.webp"
width="760"
height="570"
loading="lazy" data-zoomable />&lt;/div>
&lt;/div>&lt;figcaption>
Plain Text Storage
&lt;/figcaption>&lt;/figure>
&lt;p>Here is an example on how &lt;code>~/.docker/config.json&lt;/code> looks like when is using plain text credentials:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">cat ~/.docker/config.json
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="o">{&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl"> &lt;span class="s2">&amp;#34;auths&amp;#34;&lt;/span>: &lt;span class="o">{&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl"> &lt;span class="s2">&amp;#34;https://index.docker.io/v1/&amp;#34;&lt;/span>: &lt;span class="o">{&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl"> &lt;span class="s2">&amp;#34;auth&amp;#34;&lt;/span>: &lt;span class="s2">&amp;#34;azRjaDA6c3VwZXJzZWNyZXRwYXNzd29yZAo=&amp;#34;&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl"> &lt;span class="o">}&lt;/span>,
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl"> &lt;span class="s2">&amp;#34;quay.io&amp;#34;&lt;/span>: &lt;span class="o">{&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl"> &lt;span class="s2">&amp;#34;auth&amp;#34;&lt;/span>: &lt;span class="s2">&amp;#34;azRjaDA6c3VwZXJzZWNyZXRwYXNzd29yZAo=&amp;#34;&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl"> &lt;span class="o">}&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl"> &lt;span class="o">}&lt;/span>,
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl"> &lt;span class="s2">&amp;#34;HttpHeaders&amp;#34;&lt;/span>: &lt;span class="o">{&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl"> &lt;span class="s2">&amp;#34;User-Agent&amp;#34;&lt;/span>: &lt;span class="s2">&amp;#34;Docker-Client/18.09.6 (linux)&amp;#34;&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl"> &lt;span class="o">}&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="o">}&lt;/span>
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>After a successful &lt;code>docker login&lt;/code> command,
Docker stores a base64 encoded string from the concatenation of the username, a colon, and the password and associates this string to the registry the user is logging into:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">$ &lt;span class="nb">echo&lt;/span> &lt;span class="nv">azRjaDA6c3VwZXJzZWNyZXRwYXNzd29yZAo&lt;/span>&lt;span class="o">=&lt;/span> &lt;span class="p">|&lt;/span> base64 -d -
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">luiscachog:supersecretpassword
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>A &lt;code>docker logout&lt;/code> command removes the entry from the JSON file for the given registry:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">$ docker &lt;span class="nb">logout&lt;/span> quay.io
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">Remove login credentials &lt;span class="k">for&lt;/span> quay.io
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">$ cat ~/.docker/config.json
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="o">{&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl"> &lt;span class="s2">&amp;#34;auths&amp;#34;&lt;/span>: &lt;span class="o">{&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl"> &lt;span class="s2">&amp;#34;https://index.docker.io/v1/&amp;#34;&lt;/span>: &lt;span class="o">{&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl"> &lt;span class="s2">&amp;#34;auth&amp;#34;&lt;/span>: &lt;span class="s2">&amp;#34;azRjaDA6c3VwZXJzZWNyZXRwYXNzd29yZAo=&amp;#34;&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl"> &lt;span class="o">}&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl"> &lt;span class="o">}&lt;/span>,
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl"> &lt;span class="s2">&amp;#34;HttpHeaders&amp;#34;&lt;/span>: &lt;span class="o">{&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl"> &lt;span class="s2">&amp;#34;User-Agent&amp;#34;&lt;/span>: &lt;span class="s2">&amp;#34;Docker-Client/18.09.6 (linux)&amp;#34;&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl"> &lt;span class="o">}&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="o">}&lt;/span>
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;h2 id="docker-credential-helpers">Docker Credential Helpers&lt;/h2>
&lt;p>Since docker version &lt;code>1.11&lt;/code> implements support from an external credential store for registry authentication.
That means we can use a native keychain of the OS. Using an external store is more secure than storing on a &amp;ldquo;plain text&amp;rdquo; Docker configuration file.&lt;/p>
&lt;figure id="figure-docker-secure-storage">
&lt;div class="d-flex justify-content-center">
&lt;div class="w-100" >&lt;img alt="Secure Storage" srcset="
/media/posts/docker-login-the-right-way/DockerSecureCredentials_huadaed0eecd0771dd576c62f4a77f8685_87803_dfab2c86655b67a2dd7b453f742b7daa.webp 400w,
/media/posts/docker-login-the-right-way/DockerSecureCredentials_huadaed0eecd0771dd576c62f4a77f8685_87803_67d1fdd1b117feb8b3cab43352b4a5be.webp 760w,
/media/posts/docker-login-the-right-way/DockerSecureCredentials_huadaed0eecd0771dd576c62f4a77f8685_87803_1200x1200_fit_q90_h2_lanczos_3.webp 1200w"
src="https://luiscachog.io/media/posts/docker-login-the-right-way/DockerSecureCredentials_huadaed0eecd0771dd576c62f4a77f8685_87803_dfab2c86655b67a2dd7b453f742b7daa.webp"
width="760"
height="543"
loading="lazy" data-zoomable />&lt;/div>
&lt;/div>&lt;figcaption>
Secure Storage
&lt;/figcaption>&lt;/figure>
&lt;p>In order to use a external credential store, we need a program to interact with.&lt;/p>
&lt;p>The actual list of &amp;ldquo;official&amp;rdquo; Docker Credential Helper is:&lt;/p>
&lt;ol>
&lt;li>docker-credential-osxkeychain: Provides a helper to use the OS X keychain as credentials store.&lt;/li>
&lt;li>docker-credential-secretservice: Provides a helper to use the D-Bus secret service as credentials store.&lt;/li>
&lt;li>docker-credential-wincred: Provides a helper to use Windows credentials manager as store.&lt;/li>
&lt;li>docker-credential-pass: Provides a helper to use pass as credentials store.&lt;/li>
&lt;/ol>
&lt;h2 id="docker-credential-secret-service">docker-credential-secret service&lt;/h2>
&lt;p>On this post we will explore the docker-credential-secretservice and how to configure it.&lt;/p>
&lt;ol>
&lt;li>
&lt;p>We need to download and install the helper.
You can find the lastest release on &lt;a href="https://github.com/docker/docker-credential-helpers/releases" target="_blank" rel="noopener">https://github.com/docker/docker-credential-helpers/releases&lt;/a>.
Download it, extract it and make it executable.&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">wget https://github.com/docker/docker-credential-helpers/releases/download/v0.6.2/docker-credential-secretservice-v0.6.2-amd64.tar.gz
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">tar -xf docker-credential-secretservice-v0.6.2-amd64.tar.gz
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">chmod +x docker-credential-secretservice
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">sudo mv docker-credential-secretservice /usr/local/bin/
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>Then, we need to specify the credential store in the file &lt;code>~/.docker/config.json&lt;/code> to tell docker to use it.
The value must be the one after the prefix &lt;code>docker-credential-&lt;/code>. In this case:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-json" data-lang="json">&lt;span class="line">&lt;span class="cl">&lt;span class="p">{&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl"> &lt;span class="nt">&amp;#34;credsStore&amp;#34;&lt;/span>&lt;span class="p">:&lt;/span> &lt;span class="s2">&amp;#34;secretservice&amp;#34;&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="p">}&lt;/span>
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>To facilite the configuration and do not make mistakes, you can run:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">sed -i &lt;span class="s1">&amp;#39;0,/{/s/{/{\n\t&amp;#34;credsStore&amp;#34;: &amp;#34;secretservice&amp;#34;,/&amp;#39;&lt;/span> ~/.docker/config.json
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;/ol>
&lt;p>From now we are uning an external store, so if you are currently logged in, you must run &lt;code>docker logout&lt;/code> to remove the credentials from the file and run &lt;code>docker login&lt;/code> tostart using the new ones.&lt;/p>
&lt;p>Let me know how this works for you.&lt;/p>
&lt;p>&lt;strong>References:&lt;/strong>&lt;/p>
&lt;ul>
&lt;li>Docker Credential Helpers repository&lt;sup id="fnref:1">&lt;a href="#fn:1" class="footnote-ref" role="doc-noteref">1&lt;/a>&lt;/sup>&lt;/li>
&lt;li>Docker Credential Store Documentation&lt;sup id="fnref:2">&lt;a href="#fn:2" class="footnote-ref" role="doc-noteref">2&lt;/a>&lt;/sup>&lt;/li>
&lt;li>Slides about this topic &lt;sup id="fnref:3">&lt;a href="#fn:3" class="footnote-ref" role="doc-noteref">3&lt;/a>&lt;/sup>&lt;/li>
&lt;/ul>
&lt;div class="footnotes" role="doc-endnotes">
&lt;hr>
&lt;ol>
&lt;li id="fn:1">
&lt;p>&lt;a href="https://github.com/docker/docker-credential-helpers" target="_blank" rel="noopener">Docker Credential Helpers&lt;/a>&amp;#160;&lt;a href="#fnref:1" class="footnote-backref" role="doc-backlink">&amp;#x21a9;&amp;#xfe0e;&lt;/a>&lt;/p>
&lt;/li>
&lt;li id="fn:2">
&lt;p>&lt;a href="https://docs.docker.com/engine/reference/commandline/login/#credentials-store" target="_blank" rel="noopener">docker cli documentation&lt;/a>&amp;#160;&lt;a href="#fnref:2" class="footnote-backref" role="doc-backlink">&amp;#x21a9;&amp;#xfe0e;&lt;/a>&lt;/p>
&lt;/li>
&lt;li id="fn:3">
&lt;p>&lt;a href="https://www.slideshare.net/DavidYeung22/can-we-stop-saving-docker-credentials-in-plain-text-now" target="_blank" rel="noopener">Stop saving credential tokens in text files&lt;/a>&amp;#160;&lt;a href="#fnref:3" class="footnote-backref" role="doc-backlink">&amp;#x21a9;&amp;#xfe0e;&lt;/a>&lt;/p>
&lt;/li>
&lt;/ol>
&lt;/div></description></item><item><title>Bulk Delete Rackspace Cloud Files data via API</title><link>https://luiscachog.io/bulk-delete-cloud-files-api/</link><pubDate>Wed, 13 Feb 2019 00:00:00 +0000</pubDate><guid>https://luiscachog.io/bulk-delete-cloud-files-api/</guid><description>&lt;p>Sometimes it is necessary to delete all the content of the Cloud Files containers, however, the API does not have a proper method to delete the data and the containers on the same API call.
Also, accoring to the documentation, you can only delete &lt;strong>empty&lt;/strong> containers.&lt;/p>
&lt;p>So, in cases where you need to delete the &lt;strong>data and the containers&lt;/strong> at the same time, you should follow the next steps:&lt;/p>
&lt;ol>
&lt;li>
&lt;p>Download &lt;a href="https://github.com/cloudnull/turbolift" target="_blank" rel="noopener">Turbolift&lt;/a>, I know it is an old tool.&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">git clone https://github.com/cloudnull/turbolift
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="nb">cd&lt;/span> turbolift
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>In order to get and isolated installation, we are going to create a Python Virtual Environment (virtualenv)&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">mkvirtualenv turbolift
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">workon turbolift
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>Install the tool&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">pip install turbolift
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>Now, prior to start to play with the API calls, we need to grab some data to authenticate with the API:&lt;/p>
&lt;table>
&lt;thead>
&lt;tr>
&lt;th>Variable&lt;/th>
&lt;th>Definition&lt;/th>
&lt;/tr>
&lt;/thead>
&lt;tbody>
&lt;tr>
&lt;td>USERNAME&lt;/td>
&lt;td>This is the Rackspace Public Cloud username&lt;/td>
&lt;/tr>
&lt;tr>
&lt;td>APIKEY&lt;/td>
&lt;td>This is your API-KEY&lt;/td>
&lt;/tr>
&lt;tr>
&lt;td>REGION&lt;/td>
&lt;td>This is the Region where the Cloud Files are located (dfw, ord, iad, lon, hkg)&lt;/td>
&lt;/tr>
&lt;tr>
&lt;td>TOKEN&lt;/td>
&lt;td>The TOKEN is generated after you get authenticated&lt;/td>
&lt;/tr>
&lt;tr>
&lt;td>ENDPOINT&lt;/td>
&lt;td>This ENDPOINT is given also after you get authenticated&lt;/td>
&lt;/tr>
&lt;/tbody>
&lt;/table>
&lt;/li>
&lt;li>
&lt;p>Next step, we are going to use &lt;a href="https://curl.haxx.se/" target="_blank" rel="noopener">cURL&lt;/a>, to perform all the API calls:&lt;/p>
&lt;ul>
&lt;li>First of all, get the TOKEN:&lt;/li>
&lt;/ul>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">&lt;span class="nv">USERNAME&lt;/span>&lt;span class="o">=&lt;/span>YOUR-USERNAME
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="nv">APIKEY&lt;/span>&lt;span class="o">=&lt;/span>YOUR-APIKEY
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="nv">TOKEN&lt;/span>&lt;span class="o">=&lt;/span>&lt;span class="k">$(&lt;/span>curl -s -XPOST https://identity.api.rackspacecloud.com/v2.0/tokens &lt;span class="se">\
&lt;/span>&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="se">&lt;/span> -d&lt;span class="s1">&amp;#39;{&amp;#34;auth&amp;#34;:{&amp;#34;RAX-KSKEY:apiKeyCredentials&amp;#34;:{&amp;#34;username&amp;#34;:&amp;#34;&amp;#39;&lt;/span>&lt;span class="nv">$USERNAME&lt;/span>&lt;span class="s1">&amp;#39;&amp;#34;,&amp;#34;apiKey&amp;#34;:&amp;#34;&amp;#39;&lt;/span>&lt;span class="nv">$APIKEY&lt;/span>&lt;span class="s1">&amp;#39;&amp;#34;}}}&amp;#39;&lt;/span> &lt;span class="se">\
&lt;/span>&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="se">&lt;/span> -H&lt;span class="s2">&amp;#34;Content-type:application/json&amp;#34;&lt;/span> &lt;span class="p">|&lt;/span> jq &lt;span class="s1">&amp;#39;.access.token.id&amp;#39;&lt;/span> &lt;span class="p">|&lt;/span> tr -d &lt;span class="s2">&amp;#34;\&amp;#34;&amp;#34;&lt;/span>&lt;span class="k">)&lt;/span>
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;ul>
&lt;li>Next step, get the ENDPOINT:&lt;/li>
&lt;/ul>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">&lt;span class="nv">ENDPOINT&lt;/span>&lt;span class="o">=&lt;/span>&lt;span class="k">$(&lt;/span>curl -s -XPOST https://identity.api.rackspacecloud.com/v2.0/tokens &lt;span class="se">\
&lt;/span>&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="se">&lt;/span> -d&lt;span class="s1">&amp;#39;{&amp;#34;auth&amp;#34;:{&amp;#34;RAX-KSKEY:apiKeyCredentials&amp;#34;:{&amp;#34;username&amp;#34;:&amp;#34;&amp;#39;&lt;/span>&lt;span class="nv">$CL_USERNAME&lt;/span>&lt;span class="s1">&amp;#39;&amp;#34;,&amp;#34;apiKey&amp;#34;:&amp;#34;&amp;#39;&lt;/span>&lt;span class="nv">$APIKEY&lt;/span>&lt;span class="s1">&amp;#39;&amp;#34;}}}&amp;#39;&lt;/span> &lt;span class="se">\
&lt;/span>&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="se">&lt;/span> -H&lt;span class="s2">&amp;#34;Content-type:application/json&amp;#34;&lt;/span> &lt;span class="p">|&lt;/span> jq &lt;span class="s1">&amp;#39;.access.serviceCatalog[] | select((.name==&amp;#34;cloudFiles&amp;#34;) or (.name==&amp;#34;cloudFilesCDN&amp;#34;)) | {name} + .
&lt;/span>&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="s1"> endpoints[] | .publicURL&amp;#39;&lt;/span> &lt;span class="p">|&lt;/span> tr -d &lt;span class="s2">&amp;#34;\&amp;#34;&amp;#34;&lt;/span> &lt;span class="p">|&lt;/span> grep -v cdn &lt;span class="p">|&lt;/span> grep -i &lt;span class="nv">$REGION&lt;/span>&lt;span class="k">)&lt;/span>
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>In this case we are skipping all te CDN endpoints, but you can add them if is necessary.&lt;/p>
&lt;/li>
&lt;li>
&lt;p>With all the collected data, next step is use turbolift to delete the Cloud Files container and their data. To do it, I use a for-loop:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">&lt;span class="k">for&lt;/span> i in &lt;span class="k">$(&lt;/span>curl -s -H &lt;span class="s2">&amp;#34;X-Auth-Token: &lt;/span>&lt;span class="nv">$TOKEN&lt;/span>&lt;span class="s2">&amp;#34;&lt;/span> &lt;span class="nv">$ENDPOINT&lt;/span>&lt;span class="k">)&lt;/span>&lt;span class="p">;&lt;/span> &lt;span class="k">do&lt;/span> turbolift -u &lt;span class="nv">$USERNAME&lt;/span> -a &lt;span class="nv">$APIKEY&lt;/span> --os-rax-auth &lt;span class="nv">$REGION&lt;/span> delete -c &lt;span class="nv">$i&lt;/span> &lt;span class="p">;&lt;/span> &lt;span class="k">done&lt;/span>
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;/ol>
&lt;p>Now, you have all the Data and Cloud Files containers deleted on one region.&lt;/p>
&lt;p>&amp;#x1f604;&lt;/p></description></item><item><title>Configure SSH on a Ruckus Switch</title><link>https://luiscachog.io/configure-ruckus-switch/</link><pubDate>Tue, 20 Nov 2018 00:00:00 +0000</pubDate><guid>https://luiscachog.io/configure-ruckus-switch/</guid><description>&lt;p>I just have a Ruckus ICX 7150 Switch on my home and I&amp;rsquo;m trying to get access under ssh and web, to easy configuration and security instead of use telnet.
So, I logged in using telnet and then run the following commands to configure a username/password and begin to receive petitions over port 22(ssh) and port 443(https).
Let&amp;rsquo;s begin!&lt;/p>
&lt;ol>
&lt;li>
&lt;p>We will connect via telnet to the switch.&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">telnet SWITCH_IP
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>Once we are on the Switch CLI as a optional step, we can configure an IP on the switch.&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">device&amp;gt; &lt;span class="nb">enable&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">device# configure terminal
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">device&lt;span class="o">(&lt;/span>config&lt;span class="o">)&lt;/span>&lt;span class="c1"># ip address IP_ADDRESS/CIDR&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">device&lt;span class="o">(&lt;/span>config&lt;span class="o">)&lt;/span>&lt;span class="c1"># ip default-gateway IP_GATEWAY&lt;/span>
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>Now, the next steps are for generate a SSL certificate, a username/password, activate password to login and enable thw web access and ssh access.&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">device&lt;span class="o">(&lt;/span>config&lt;span class="o">)&lt;/span>&lt;span class="c1"># crypto-ssl certificate generate&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">device&lt;span class="o">(&lt;/span>config&lt;span class="o">)&lt;/span>&lt;span class="c1"># username USERNAME password PASSWORD&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">device&lt;span class="o">(&lt;/span>config&lt;span class="o">)&lt;/span>&lt;span class="c1"># aaa authentication login default local&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">device&lt;span class="o">(&lt;/span>config&lt;span class="o">)&lt;/span>&lt;span class="c1"># aaa authentication web-server default local&lt;/span>
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>It may take several minutes to generate the certificate key. After that, save the configuration.&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">device&lt;span class="o">(&lt;/span>config&lt;span class="o">)&lt;/span>&lt;span class="c1"># write memory&lt;/span>
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;/ol>
&lt;p>Now you are able to login on your switch using ssh or web.&lt;/p>
&lt;p>&lt;strong>References:&lt;/strong>&lt;/p>
&lt;ul>
&lt;li>Blog with ruckus commands &lt;sup id="fnref:1">&lt;a href="#fn:1" class="footnote-ref" role="doc-noteref">1&lt;/a>&lt;/sup>&lt;/li>
&lt;/ul>
&lt;div class="footnotes" role="doc-endnotes">
&lt;hr>
&lt;ol>
&lt;li id="fn:1">
&lt;p>&lt;a href="https://docs.ruckuswireless.com/fastiron/08.0.50/fastiron-08050-commandref/GUID-E60DB55B-5E68-40EC-A999-73C6C071EFF7.html" target="_blank" rel="noopener">Ruckus ICX7150-C12P – Initial Configuration&lt;/a>&amp;#160;&lt;a href="#fnref:1" class="footnote-backref" role="doc-backlink">&amp;#x21a9;&amp;#xfe0e;&lt;/a>&lt;/p>
&lt;/li>
&lt;/ol>
&lt;/div></description></item><item><title>Set a hugo blog on Kubernetes</title><link>https://luiscachog.io/blog-hugo-docker-k8s-quay/</link><pubDate>Mon, 18 Jun 2018 00:00:00 +0000</pubDate><guid>https://luiscachog.io/blog-hugo-docker-k8s-quay/</guid><description>&lt;details class="toc-inpage d-print-none " open>
&lt;summary class="font-weight-bold">Table of Contents&lt;/summary>
&lt;nav id="TableOfContents">
&lt;ul>
&lt;li>&lt;a href="#overview">Overview&lt;/a>
&lt;ul>
&lt;li>&lt;a href="#architecture">Architecture&lt;/a>&lt;/li>
&lt;/ul>
&lt;/li>
&lt;li>&lt;a href="#containerized">Containerized&lt;/a>
&lt;ul>
&lt;li>&lt;a href="#dockerfile">Dockerfile&lt;/a>&lt;/li>
&lt;/ul>
&lt;/li>
&lt;/ul>
&lt;/nav>
&lt;/details>
&lt;h2 id="overview">Overview&lt;/h2>
&lt;p>Since last year I been trying to become an SRE (Site Reliability Engineer), so I been involved with some emerging technologies, like ansible, docker and on this time with kubernetes.&lt;/p>
&lt;p>This time, I will try to explain how I containerized my blog using:&lt;/p>
&lt;ul>
&lt;li>&lt;a href="https://gohugo.io/" target="_blank" rel="noopener">Hugo&lt;/a>&lt;/li>
&lt;li>&lt;a href="https://www.docker.com/" target="_blank" rel="noopener">Docker&lt;/a>&lt;/li>
&lt;li>&lt;a href="https://kubernetes.io/" target="_blank" rel="noopener">Kubernetes&lt;/a>&lt;/li>
&lt;li>&lt;a href="https://quay.io/" target="_blank" rel="noopener">Quay&lt;/a>&lt;/li>
&lt;li>&lt;a href="https://github.com" target="_blank" rel="noopener">Git&lt;/a>&lt;/li>
&lt;/ul>
&lt;h3 id="architecture">Architecture&lt;/h3>
&lt;p>So, I take some ideas from &lt;a href="https://www.civo.com/learn/using-civo-k3s-service-to-host-your-blog-in-hugo-using-github-actions" target="_blank" rel="noopener">here&lt;/a> and I modify them and adapt the architecture described to my options.&lt;/p>
&lt;p>The principal changes that I made are:&lt;/p>
&lt;ul>
&lt;li>My Kubernetes cluster is running on 2 cloud server on Rackspace Public Cloud&lt;/li>
&lt;li>The container registry that I&amp;rsquo;m using is Quay&lt;/li>
&lt;li>Rackspace Public Cloud does not support a Kubernetes LoadBalancer service automatically,
so I simulate that behavior adding a Cloud Load Balancer manually after the Kubernetes service provide me the port.&lt;/li>
&lt;/ul>
&lt;figure id="figure-blog-hugo-architecture">
&lt;div class="d-flex justify-content-center">
&lt;div class="w-100" >&lt;img alt="Architecture" srcset="
/media/posts/blog-hugo-docker-k8s-quay/architecture_hu8b96b5b52b85b051d387a2869880f3ab_113861_90038fb3c81eb33b4ff587d44167dbfc.webp 400w,
/media/posts/blog-hugo-docker-k8s-quay/architecture_hu8b96b5b52b85b051d387a2869880f3ab_113861_422b03095e3febbbd91dbb98eee4f1ca.webp 760w,
/media/posts/blog-hugo-docker-k8s-quay/architecture_hu8b96b5b52b85b051d387a2869880f3ab_113861_1200x1200_fit_q90_h2_lanczos_3.webp 1200w"
src="https://luiscachog.io/media/posts/blog-hugo-docker-k8s-quay/architecture_hu8b96b5b52b85b051d387a2869880f3ab_113861_90038fb3c81eb33b4ff587d44167dbfc.webp"
width="760"
height="486"
loading="lazy" data-zoomable />&lt;/div>
&lt;/div>&lt;figcaption>
Architecture
&lt;/figcaption>&lt;/figure>
&lt;h2 id="containerized">Containerized&lt;/h2>
&lt;p>I use &lt;a href="https://gohugo.io/" target="_blank" rel="noopener">Hugo&lt;/a> to deploy my blog, I used to do it as mentioned on &lt;a href="https://luiscachog.io/deployment-hugo-site-git-hooks/" target="_blank" rel="noopener">this&lt;/a> previous post (In Spanish).&lt;/p>
&lt;p>Now, as a part of containerize the blog it make sense to me to create two stages as described &lt;a href="https://www.civo.com/learn/using-civo-k3s-service-to-host-your-blog-in-hugo-using-github-actions" target="_blank" rel="noopener">here&lt;/a>:&lt;/p>
&lt;ul>
&lt;li>The first stage is a defined build environment containing all required build tools (hugo, pygments) and the source of the website (Git repository).&lt;/li>
&lt;li>The second stage is the build artifact (HTML and assets), from the first stage and a webserver to serve the artifact over HTTP.&lt;/li>
&lt;/ul>
&lt;h3 id="dockerfile">Dockerfile&lt;/h3>
&lt;p>Here is the Dockerfile that containerize the blog:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">FROM ubuntu:latest as STAGEONE
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="c1"># install hugo&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">ENV &lt;span class="nv">HUGO_VERSION&lt;/span>&lt;span class="o">=&lt;/span>0.41
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">ADD https://github.com/gohugoio/hugo/releases/download/v&lt;span class="si">${&lt;/span>&lt;span class="nv">HUGO_VERSION&lt;/span>&lt;span class="si">}&lt;/span>/hugo_&lt;span class="si">${&lt;/span>&lt;span class="nv">HUGO_VERSION&lt;/span>&lt;span class="si">}&lt;/span>_Linux-64bit.tar.gz /tmp/
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">RUN tar -xf /tmp/hugo_&lt;span class="si">${&lt;/span>&lt;span class="nv">HUGO_VERSION&lt;/span>&lt;span class="si">}&lt;/span>_Linux-64bit.tar.gz -C /usr/local/bin/
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="c1"># install syntax highlighting&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">RUN apt-get update
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">RUN apt-get install -y python3-pygments
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="c1"># build site&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">COPY &lt;span class="nb">source&lt;/span> /source
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">RUN hugo --source&lt;span class="o">=&lt;/span>/source/ --destination&lt;span class="o">=&lt;/span>/public/
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">FROM nginx:stable-alpine
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">RUN apk --update add curl bash
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">RUN rm /etc/nginx/conf.d/default.conf
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">COPY modules/nginx.luiscachog.io.conf /etc/nginx/conf.d/luiscachog.io.conf
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">COPY --from&lt;span class="o">=&lt;/span>STAGEONE /public/ /usr/share/nginx/html/
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">EXPOSE &lt;span class="m">80&lt;/span> &lt;span class="m">443&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">MAINTAINER Luis Cacho &amp;lt;luiscachog@gmail.com&amp;gt;
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;h4 id="first-stage">First Stage&lt;/h4>
&lt;ul>
&lt;li>Fetch the lastest Ubuntu image and name as &lt;strong>STAGEONE&lt;/strong>&lt;/li>
&lt;li>Install the last available &lt;strong>hugo&lt;/strong> version from source.&lt;/li>
&lt;li>Install &lt;strong>pygments&lt;/strong> library to use it for highlighting.&lt;/li>
&lt;li>Build the site with &lt;strong>hugo&lt;/strong> and the output is set on &lt;strong>/public&lt;/strong> as a build artifact.&lt;/li>
&lt;/ul>
&lt;h4 id="second-stage">Second Stage&lt;/h4>
&lt;ul>
&lt;li>Fetch the lastest stable nginx alpine image.&lt;/li>
&lt;li>Update the image and install some utilities.&lt;/li>
&lt;li>Delete the &lt;strong>default&lt;/strong> nginx configuration file.&lt;/li>
&lt;li>Copy the configuration files needed from the repository root directory.&lt;/li>
&lt;li>Copy the build artifact &lt;strong>/public&lt;/strong> from the previous stage (&lt;strong>STAGEONE&lt;/strong>)&lt;/li>
&lt;/ul></description></item><item><title>My First Contribution to OpenStack project</title><link>https://luiscachog.io/my-first-contribution-to-openstack/</link><pubDate>Thu, 15 Mar 2018 00:00:00 +0000</pubDate><guid>https://luiscachog.io/my-first-contribution-to-openstack/</guid><description>&lt;p>I been working since last year using &lt;a href="https://www.ansible.com/" target="_blank" rel="noopener">Ansible&lt;/a> for fun and to trying to get prepared to become a DevOps, so I found an excelent OpenStack project called &lt;a href="https://github.com/openstack/ara" target="_blank" rel="noopener">ARA Records Ansible&lt;/a>.&lt;/p>
&lt;figure id="figure-ansible-logo">
&lt;div class="d-flex justify-content-center">
&lt;div class="w-100" >&lt;img alt="Ansible Logo" srcset="
/media/posts/my-first-contribution-to-openstack/Ansible-Logo_hub884469535c087589ce6d86f0418926d_8020_e8654a6c9737fb6cf9a9d6a845d8f829.webp 400w,
/media/posts/my-first-contribution-to-openstack/Ansible-Logo_hub884469535c087589ce6d86f0418926d_8020_34c2626c3a799dab177de63acc44cc35.webp 760w,
/media/posts/my-first-contribution-to-openstack/Ansible-Logo_hub884469535c087589ce6d86f0418926d_8020_1200x1200_fit_q90_h2_lanczos_3.webp 1200w"
src="https://luiscachog.io/media/posts/my-first-contribution-to-openstack/Ansible-Logo_hub884469535c087589ce6d86f0418926d_8020_e8654a6c9737fb6cf9a9d6a845d8f829.webp"
width="760"
height="760"
loading="lazy" data-zoomable />&lt;/div>
&lt;/div>&lt;figcaption>
Ansible Logo
&lt;/figcaption>&lt;/figure>
&lt;figure id="figure-ara-logo">
&lt;div class="d-flex justify-content-center">
&lt;div class="w-100" >&lt;img alt="ARA Logo" srcset="
/media/posts/my-first-contribution-to-openstack/ARA-Logo_hu17e4256629a5c6ba45baa8e753225cf6_37253_b02dfcb5baf4780ab653a7834a9e4c0a.webp 400w,
/media/posts/my-first-contribution-to-openstack/ARA-Logo_hu17e4256629a5c6ba45baa8e753225cf6_37253_303171032104318092c9459674593e15.webp 760w,
/media/posts/my-first-contribution-to-openstack/ARA-Logo_hu17e4256629a5c6ba45baa8e753225cf6_37253_1200x1200_fit_q90_h2_lanczos_3.webp 1200w"
src="https://luiscachog.io/media/posts/my-first-contribution-to-openstack/ARA-Logo_hu17e4256629a5c6ba45baa8e753225cf6_37253_b02dfcb5baf4780ab653a7834a9e4c0a.webp"
width="760"
height="556"
loading="lazy" data-zoomable />&lt;/div>
&lt;/div>&lt;figcaption>
ARA Logo
&lt;/figcaption>&lt;/figure>
&lt;p>Basically it is a project from the OpenStack community that makes it easier to understand and troubleshoot your Ansible roles and playbooks.
If you want more information, please refer to the &lt;a href="http://ara.readthedocs.io/en/latest/" target="_blank" rel="noopener">Documentation Page&lt;/a>.&lt;/p>
&lt;p>Anyhow, I just found a little bug on the Ansible Role to install ARA &lt;a href="https://opendev.org/recordsansible/ansible-role-ara" target="_blank" rel="noopener">ansible-role-ara&lt;/a> on Debian based distros and just send the patch to fix it.&lt;/p>
&lt;p>Here is the link to my &lt;a href="https://opendev.org/recordsansible/ansible-role-ara/commit/3e194e169070213c0bcfd007c97222ce318c6556" target="_blank" rel="noopener">contribution&lt;/a>.&lt;/p>
&lt;p>And, as I am proud of my first commit on a big project here is the screenshot too:&lt;/p>
&lt;figure id="figure-first-openstack-contrib">
&lt;div class="d-flex justify-content-center">
&lt;div class="w-100" >&lt;img alt="My First OpenStack Contribution" srcset="
/media/posts/my-first-contribution-to-openstack/OpenStack-Contribution_hue50cae8c9a4f3ce2cc82fba8663fd3f2_54865_0af5728d9b6f3d8f558a246cb97b792f.webp 400w,
/media/posts/my-first-contribution-to-openstack/OpenStack-Contribution_hue50cae8c9a4f3ce2cc82fba8663fd3f2_54865_6aa243ac01ede5843567d9273ddd14a0.webp 760w,
/media/posts/my-first-contribution-to-openstack/OpenStack-Contribution_hue50cae8c9a4f3ce2cc82fba8663fd3f2_54865_1200x1200_fit_q90_h2_lanczos_3.webp 1200w"
src="https://luiscachog.io/media/posts/my-first-contribution-to-openstack/OpenStack-Contribution_hue50cae8c9a4f3ce2cc82fba8663fd3f2_54865_0af5728d9b6f3d8f558a246cb97b792f.webp"
width="748"
height="699"
loading="lazy" data-zoomable />&lt;/div>
&lt;/div>&lt;figcaption>
My First OpenStack Contribution
&lt;/figcaption>&lt;/figure>
&lt;p>I feel happy and motivated to still learn about this Open-Source project and a lot more.&lt;/p>
&lt;p>&amp;#x1f604;&lt;/p></description></item><item><title>Deployment de un sitio estatico con Hugo y Git Hooks</title><link>https://luiscachog.io/deployment-hugo-site-git-hooks/</link><pubDate>Mon, 05 Mar 2018 00:00:00 +0000</pubDate><guid>https://luiscachog.io/deployment-hugo-site-git-hooks/</guid><description>&lt;details class="toc-inpage d-print-none " open>
&lt;summary class="font-weight-bold">Table of Contents&lt;/summary>
&lt;nav id="TableOfContents">
&lt;ul>
&lt;li>&lt;a href="#motivación">Motivación&lt;/a>
&lt;ul>
&lt;li>&lt;a href="#consideraciones">Consideraciones&lt;/a>&lt;/li>
&lt;/ul>
&lt;/li>
&lt;li>&lt;a href="#instruciones">Instruciones&lt;/a>
&lt;ul>
&lt;li>&lt;a href="#consideraciones-técnicas">Consideraciones técnicas&lt;/a>&lt;/li>
&lt;li>&lt;a href="#autenticación-mediante-llaves-ssh">Autenticación mediante llaves SSH&lt;/a>&lt;/li>
&lt;li>&lt;a href="#configuración-sitio-con-hugo">Configuración sitio con Hugo&lt;/a>&lt;/li>
&lt;li>&lt;a href="#configuración-del-repositorio-git-en-el-servidor-de-desarrollo-1ra-parte">Configuración del repositorio Git en el servidor de desarrollo 1ra parte&lt;/a>&lt;/li>
&lt;li>&lt;a href="#configuración-del-repositorio-git-en-el-servidor-productivo">Configuración del repositorio Git en el servidor productivo&lt;/a>&lt;/li>
&lt;li>&lt;a href="#configuración-del-repositorio-git-en-el-servidor-de-desarrollo-2da-parte">Configuración del repositorio Git en el servidor de desarrollo 2da parte&lt;/a>&lt;/li>
&lt;/ul>
&lt;/li>
&lt;/ul>
&lt;/nav>
&lt;/details>
&lt;h2 id="motivación">Motivación&lt;/h2>
&lt;p>Estoy intentando escribir un poco más en mi blog, ya que noté que muchas veces no lo hacia muy a menudo
por que al llegar a la consola de administración de Wordpress, habia que dar bastantes clicks para llegar al menu de &amp;ldquo;Posts&amp;rdquo;,
además de que cada vez que entraba había un plugin diferente que actualizar, y verificar que nada se rompiera con
las nuevas actualizaciónes, en pocas palabras hay que darle bastante mantenimiento a un sitio con Wordpress,
y además de eso había que dedicarse a escribir el post.&lt;/p>
&lt;p>Otra razón por lo que opté hacer el cambio de plataforma, es que al estar tratando de convertirme en DevOps, es necesario,
desde mi punto de vista; tratar automatizar/scriptear la mayoria de tus tareas que realizas día a día, y con &lt;a href="https://gohugo.io/" title="Hugo" target="_blank" rel="noopener">Hugo&lt;/a> considero que se puede realizar este objetivo también.&lt;/p>
&lt;h3 id="consideraciones">Consideraciones&lt;/h3>
&lt;p>Una vez que decidí migrarme de Wordpress, el siguiente paso era decidir a que plataforma mudarme.
De entrada la plataforma que queria probar era un &lt;a href="https://en.wikipedia.org/wiki/Static_web_page" target="_blank" rel="noopener">Static Site Generator&lt;/a>,
aqui otro &lt;a href="https://cloudcannon.com/blog/what-is-a-static-website/" target="_blank" rel="noopener">link&lt;/a> de por que usar un Static Site Generator.&lt;/p>
&lt;p>Partiendo de lo anterior, las opciones que me parecieron interesantes fueron:&lt;/p>
&lt;ul>
&lt;li>&lt;a href="https://gohugo.io" target="_blank" rel="noopener">Hugo&lt;/a>&lt;/li>
&lt;li>&lt;a href="https://jekyllrb.com" target="_blank" rel="noopener">Jekyll&lt;/a>&lt;/li>
&lt;li>&lt;a href="http://octopress.org/" target="_blank" rel="noopener">Octopress&lt;/a>&lt;/li>
&lt;li>&lt;a href="https://hexo.io/" target="_blank" rel="noopener">Hexo&lt;/a>&lt;/li>
&lt;/ul>
&lt;p>Cada una de las opciones tiene diferentes caracteristicas, que no vamos a discutir en este post,
sin embargo las carteristicas que me convencieron de usar &lt;a href="https://gohugo.io/" title="Hugo" target="_blank" rel="noopener">Hugo&lt;/a> por encima de las otras alternativas fueron:&lt;/p>
&lt;ul>
&lt;li>Consta solamente de un binario, que comparado con las otras posibilidades hay que instalar todo un ambiente de desarrollo/producción.&lt;/li>
&lt;li>Es bastante rápido.&lt;/li>
&lt;li>Es Multi-plataforma&lt;/li>
&lt;li>Tiene diversos &lt;a href="https://themes.gohugo.io/" target="_blank" rel="noopener">temas&lt;/a>&lt;/li>
&lt;/ul>
&lt;h2 id="instruciones">Instruciones&lt;/h2>
&lt;h3 id="consideraciones-técnicas">Consideraciones técnicas&lt;/h3>
&lt;p>El ambiente consta de:&lt;/p>
&lt;ul>
&lt;li>1 servidor productivo donde esta instalado hugo, git y un servidor web (apache o nginx) , haremos todos los deployments usando el usuario admin, ojo que no es el usuario root.&lt;/li>
&lt;li>1 servidor/equipo de desarrollo, de igual forma que cuenta con hugo y git, en mi caso, es mi computadora personal y mi usuario es luiscachog.&lt;/li>
&lt;li>1 cuenta de &lt;a href="https://github.com" target="_blank" rel="noopener">github.com&lt;/a>&lt;/li>
&lt;/ul>
&lt;h3 id="autenticación-mediante-llaves-ssh">Autenticación mediante llaves SSH&lt;/h3>
&lt;p>El primer paso es realizar el intercambio de llaves SSH entre el equipo de desarrollo y el equipo productivo. Para ello seguimos los siguientes pasos:&lt;/p>
&lt;ol>
&lt;li>
&lt;p>Generar la llave SSH, tendrás que contestar algunas preguntas, entre las cuales está si quieres ponerle un password, a lo cual deberas dejarlo en blanco para que no te pida contraseña.&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">luiscachog@dev-server:~$ ssh-keygen
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>Copiar la llave SSH hacia el equipo productivo:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">luiscachog@dev-server:~$ ssh-copy-id admin@IP_servidor_productivo
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>Verificar que te puedas conectar desde tu servidor de desarrollo, con tu usuario al servidor productivo, con el usuario que realizará los deployments.&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">luiscachog@dev-server:~$ ssh admin@162.125.2.30 hostname
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>En este caso, debera de mostrarte el hostname del servidor productivo sin pedirte el password.&lt;/p>
&lt;/li>
&lt;/ol>
&lt;h3 id="configuración-sitio-con-hugo">Configuración sitio con Hugo&lt;/h3>
&lt;p>El siguiente paso es configurar nuestro ambiente de desarrollo con Hugo y Git.&lt;/p>
&lt;ol>
&lt;li>
&lt;p>Para instalar ambos en Ubuntu o derivados debes de ejecutar:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">luiscachog@dev-server:~$ sudo apt install hugo git
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>Para tener la version más actualizada de hugo puedes seguir los pasos descritos en este &lt;a href="https://gohugo.io/getting-started/installing/" target="_blank" rel="noopener">link&lt;/a>&lt;/p>
&lt;/li>
&lt;li>
&lt;p>Vamos a crear un directorio de trabajo para nuestro sitio estatico&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">luiscachog@dev-server:~$ mkdir ~/sites
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">luiscachog@dev-server:~$ &lt;span class="nb">cd&lt;/span> ~/sites
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>Crearemos un nuevo sitio usando el comando hugo&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">luiscachog@dev-server:~$ hugo new site luiscachog.io
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">Congratulations! Your new Hugo site is created in /home/luiscachog/sites/luiscachog.io.
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">Just a few more steps and you&lt;span class="err">&amp;#39;&lt;/span>re ready to go:
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">1.- Download a theme into the same-named folder.
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl"> Choose a theme from https://themes.gohugo.io/, or
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl"> create your own with the &lt;span class="s2">&amp;#34;hugo new theme &amp;lt;THEMENAME&amp;gt;&amp;#34;&lt;/span> command.
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">2.- Perhaps you want to add some content. You can add single files
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl"> with &lt;span class="s2">&amp;#34;hugo new &amp;lt;SECTIONNAME&amp;gt;/&amp;lt;FILENAME&amp;gt;.&amp;lt;FORMAT&amp;gt;&amp;#34;&lt;/span>.
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">3.- Start the built-in live server via &lt;span class="s2">&amp;#34;hugo server&amp;#34;&lt;/span>.
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">Visit https://gohugo.io/ &lt;span class="k">for&lt;/span> quickstart guide and full documentation.
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>Cuando termine de correr el comando se podra apreciar los siguientes directorios y archivos&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">luiscachog@dev-server:~$ &lt;span class="nb">cd&lt;/span> luiscachog.io
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">luiscachog@dev-server:~$ ls
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">archetypes config.toml content data layouts static themes
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">luiscachog@dev-server:~$ tree
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">.
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">├── archetypes
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">│   └── default.md
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">├── config.toml
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">├── content
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">├── data
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">├── layouts
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">├── static
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">└── themes
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="m">6&lt;/span> directories, &lt;span class="m">2&lt;/span> files
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>El siguiente paso es agregar un tema, puedes encontrar uno que te guste en &lt;a href="https://themes.gohugo.io/" target="_blank" rel="noopener">https://themes.gohugo.io/&lt;/a>&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">git init
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">git submodule add https://github.com/budparr/gohugo-theme-ananke.git themes/ananke
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="c1"># Edit your config.toml configuration file&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="c1"># and add the new theme.&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="nb">echo&lt;/span> &lt;span class="s1">&amp;#39;theme = &amp;#34;ananke&amp;#34;&amp;#39;&lt;/span> &amp;gt;&amp;gt; config.toml
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>Como recomendación adicional en este paso, puedes realizar un fork del tema que te guste en github para poder realizar modificaciones y proponer cambios al mismo,
contribuyendo de esa forma a su desarrollo, para hacerlo, sigue los pasos:&lt;/p>
&lt;ol>
&lt;li>Realizar un fork del tema, sigue esta &lt;a href="https://docs.github.com/en/get-started/quickstart/contributing-to-projects" target="_blank" rel="noopener">guia&lt;/a> para hacerlo.&lt;/li>
&lt;li>Al realizar el fork, tendras en tus repositorios de github el tema que quieras, por lo que tendras que ejecutar los mismos comandos del punto anterior,
pero el repositorio del tema apuntara a tu usario en github&lt;/li>
&lt;/ol>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">git init
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">git submodule add https://github.com/luiscachog/gohugo-theme-ananke.git themes/ananke
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="c1"># Edit your config.toml configuration file&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="c1"># and add the new theme.&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="nb">echo&lt;/span> &lt;span class="s1">&amp;#39;theme = &amp;#34;ananke&amp;#34;&amp;#39;&lt;/span> &amp;gt;&amp;gt; config.toml
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>Vamos a crear un post de prueba para verificar que todo esta funcionando correctamente&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">hugo new posts/my-first-post.md
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="nb">echo&lt;/span> &lt;span class="s2">&amp;#34;Hola Mundo&amp;#34;&lt;/span> &amp;gt;&amp;gt; content/posts/my-first-post.md
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>El comando anterior creara un archivo en la ruta content/posts/my-first-post.md, y el contenido será:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-yaml" data-lang="yaml">&lt;span class="line">&lt;span class="cl">&lt;span class="nn">---&lt;/span>&lt;span class="w">
&lt;/span>&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="w">&lt;/span>&lt;span class="nt">title&lt;/span>&lt;span class="p">:&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="s2">&amp;#34;My First Post&amp;#34;&lt;/span>&lt;span class="w">
&lt;/span>&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="w">&lt;/span>&lt;span class="nt">date&lt;/span>&lt;span class="p">:&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="ld">2018-02-28T12:02:38&lt;/span>&lt;span class="m">-06&lt;/span>&lt;span class="p">:&lt;/span>&lt;span class="m">00&lt;/span>&lt;span class="w">
&lt;/span>&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="w">&lt;/span>&lt;span class="nt">draft&lt;/span>&lt;span class="p">:&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="kc">true&lt;/span>&lt;span class="w">
&lt;/span>&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="w">&lt;/span>&lt;span class="nn">---&lt;/span>&lt;span class="w">
&lt;/span>&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="w">&lt;/span>&lt;span class="l">Hola Mundo!!!&lt;/span>&lt;span class="w">
&lt;/span>&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>Finalmente, probaremos que nuestro sitio estatico con nuestro post se muestren de manera local, en nuestro servidor de desarrollo.
Cabe mencionar, que por defecto el comando &amp;lsquo;hugo server&amp;rsquo; no mostrará los posts que tengan la opción &amp;lsquo;draft: true&amp;rsquo;, por ello se agrega la bandera -D&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">luiscachog@dev-server:~$ hugo server -D
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;/ol>
&lt;h3 id="configuración-del-repositorio-git-en-el-servidor-de-desarrollo-1ra-parte">Configuración del repositorio Git en el servidor de desarrollo 1ra parte&lt;/h3>
&lt;p>En el paso pasado, realizamos la inicialización del repositorio dentro del directorio del sitio estatico:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">luiscachog@dev-server:~$ &lt;span class="nb">pwd&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">/home/luiscachog/sites/luiscachog.io
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">luiscachog@dev-server:~$ git status
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">On branch master
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">Initial commit
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">Changes to be committed:
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl"> &lt;span class="o">(&lt;/span>use &lt;span class="s2">&amp;#34;git rm --cached &amp;lt;file&amp;gt;...&amp;#34;&lt;/span> to unstage&lt;span class="o">)&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl"> new file: .gitmodules
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl"> new file: themes/ananke
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">Untracked files:
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl"> &lt;span class="o">(&lt;/span>use &lt;span class="s2">&amp;#34;git add &amp;lt;file&amp;gt;...&amp;#34;&lt;/span> to include in what will be committed&lt;span class="o">)&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl"> archetypes/
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl"> config.toml
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl"> content/
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl"> themes/ananke/
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>Ahora, para tener el repositorio publico, tenemos que &lt;a href="https://docs.github.com/en/repositories/creating-and-managing-repositories/creating-a-new-repository" target="_blank" rel="noopener">crear&lt;/a> el repositorio
en &lt;a href="https://github.com" target="_blank" rel="noopener">github.com&lt;/a> y configurarlo como un repositorio remoto&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">luiscachog@dev-server:~$ git add *
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">luiscachog@dev-server:~$ git commit -m &lt;span class="s2">&amp;#34;First commit&amp;#34;&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">luiscachog@dev-server:~$ git remote add origin https://github.com/luiscachog/luiscachog.io
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">luiscachog@dev-server:~$ git push -u origin master
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;h3 id="configuración-del-repositorio-git-en-el-servidor-productivo">Configuración del repositorio Git en el servidor productivo&lt;/h3>
&lt;p>Para poder ocupar los hooks de git es necesario hacer una primera copia inicial del repositorio en el que vamos a trabajar, con la particularidad de que el repositorio clonado debe ser del tipo &lt;a href="http://www.saintsjd.com/2011/01/what-is-a-bare-git-repository/" target="_blank" rel="noopener">bare&lt;/a>.&lt;/p>
&lt;p>En nuestro servidor productivo haremos:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">admin@prod-server:~$ mkdir sites
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">admin@prod-server:~$ &lt;span class="nb">cd&lt;/span> sites
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">admin@prod-server:~$ git clone --bare https://github.com/luiscachog/luiscachog.io luiscachog.io.git
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;h4 id="configuración-del-hook">Configuración del hook&lt;/h4>
&lt;ol>
&lt;li>
&lt;p>Ya que tenemos nuestro repositorio tipo bare en el servidor productivo vamos a crear el script que mandará a llamar el hook de git.&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">admin@prod-server:~$ &lt;span class="nb">cd&lt;/span> sites/luiscachog.io.git/hooks
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">admin@prod-server:~$ vim post-update
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>Y agregamos algo asi:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">&lt;span class="cp">#!/bin/bash
&lt;/span>&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="cp">&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="nv">GIT_REPO&lt;/span>&lt;span class="o">=&lt;/span>&lt;span class="nv">$HOME&lt;/span>/luiscachog.io.git
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="nv">WORKING_DIRECTORY&lt;/span>&lt;span class="o">=&lt;/span>/var/www/vhosts/luiscachog.io/working_hugo
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="nv">PUBLIC_WWW&lt;/span>&lt;span class="o">=&lt;/span>/var/www/vhosts/luiscachog.io/public_html
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="nv">BACKUP_WWW&lt;/span>&lt;span class="o">=&lt;/span>/var/www/vhosts/luiscachog.io/backup_html
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="nv">MY_DOMAIN&lt;/span>&lt;span class="o">=&lt;/span>luiscachog.io
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="nb">set&lt;/span> -e
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">rm -rf &lt;span class="nv">$WORKING_DIRECTORY&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">rsync -aqz &lt;span class="nv">$PUBLIC_WWW&lt;/span>/ &lt;span class="nv">$BACKUP_WWW&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="nb">trap&lt;/span> &lt;span class="s2">&amp;#34;echo &amp;#39;A problem occurred. Reverting to backup.&amp;#39;; rsync -aqz --del &lt;/span>&lt;span class="nv">$BACKUP_WWW&lt;/span>&lt;span class="s2">/ &lt;/span>&lt;span class="nv">$PUBLIC_WWW&lt;/span>&lt;span class="s2">; rm -rf &lt;/span>&lt;span class="nv">$WORKING_DIRECTORY&lt;/span>&lt;span class="s2">&amp;#34;&lt;/span> EXIT
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">git clone &lt;span class="nv">$GIT_REPO&lt;/span> &lt;span class="nv">$WORKING_DIRECTORY&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">mkdir -p &lt;span class="nv">$WORKING_DIRECTORY&lt;/span>/themes
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">rm -rf &lt;span class="nv">$PUBLIC_WWW&lt;/span>/*
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">/home/admin/bin/hugo -v -s &lt;span class="nv">$WORKING_DIRECTORY&lt;/span> -d &lt;span class="nv">$PUBLIC_WWW&lt;/span> -b &lt;span class="s2">&amp;#34;http://&lt;/span>&lt;span class="si">${&lt;/span>&lt;span class="nv">MY_DOMAIN&lt;/span>&lt;span class="si">}&lt;/span>&lt;span class="s2">&amp;#34;&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="nb">trap&lt;/span> - EXIT
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>Damos permisos de ejecución al script&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">admin@prod-server:~$ chmod +x post-update
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>Probamos que nuestro script funcione adecuadamente:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">admin@prod-server:~$ ~/sites/luiscachog.io.git/hooks/post-update
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">Cloning into &lt;span class="s1">&amp;#39;/var/www/vhosts/luiscachog.io/working_hugo&amp;#39;&lt;/span>...
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="k">done&lt;/span>.
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="m">0&lt;/span> draft content
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="m">0&lt;/span> future content
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="m">4&lt;/span> pages created
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="m">0&lt;/span> paginator pages created
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="m">0&lt;/span> tags created
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="m">1&lt;/span> categories created
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">in &lt;span class="m">26&lt;/span> ms
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>Podras verificar tu nuevo post en la URL de su sitio:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">http://production_domain_or_IP
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;/ol>
&lt;h3 id="configuración-del-repositorio-git-en-el-servidor-de-desarrollo-2da-parte">Configuración del repositorio Git en el servidor de desarrollo 2da parte&lt;/h3>
&lt;p>Una vez tenemos configurado nuestro repositorio en el servidor de producción, procedemos a agregarlo como repositorio remoto en nuestro servidor de desarrollo&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">luiscachog@dev-server:~$ &lt;span class="nb">cd&lt;/span> /home/luiscachog/sites/luiscachog.io
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">luiscachog@dev-server:~$ git remote add prod admin@IP_servidor_productivo:luiscachog.io
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">luiscachog@dev-server:~$ git ls-remote prod
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">d1b0b73528ab3117170ef74e133d0194dd2bc88a HEAD
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">d1b0b73528ab3117170ef74e133d0194dd2bc88a refs/heads/master
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>Puedes verificar los repositorios remotos con el comando:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">luiscachog@dev-server:~$ git remote -v
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">origin git@github.com:luiscachog/luiscachog.io.git &lt;span class="o">(&lt;/span>fetch&lt;span class="o">)&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">origin git@github.com:luiscachog/luiscachog.io.git &lt;span class="o">(&lt;/span>push&lt;span class="o">)&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">prod admin@IP_servidor_productivo:luiscachog.io.git &lt;span class="o">(&lt;/span>fetch&lt;span class="o">)&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">prod admin@IP_servidor_productivo:luiscachog.io.git &lt;span class="o">(&lt;/span>push&lt;span class="o">)&lt;/span>
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>Ahora cada vez que realizemos un push hacia el remote llamado &amp;lsquo;prod&amp;rsquo; se llamara la función del hook.&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">luiscachog@dev-server:~$ &lt;span class="nb">cd&lt;/span> /home/luiscachog/sites/luiscachog.io
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">luiscachog@dev-server:~$ hugo new posts/Testing-Deployment.md
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">luiscachog@dev-server:~$ &lt;span class="nb">echo&lt;/span> &lt;span class="s2">&amp;#34;Deployment Test&amp;#34;&lt;/span> &amp;gt;&amp;gt; content/posts/Testing-Deployment.md
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">luiscachog@dev-server:~$ git add *
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">luiscachog@dev-server:~$ git commit -m &lt;span class="s1">&amp;#39;Deployment test with git hooks&amp;#39;&lt;/span>
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>Este es el comando que hace la magia:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">luiscachog@dev-server:~$ git push prod master
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">Counting objects: 3, &lt;span class="k">done&lt;/span>.
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">Delta compression using up to &lt;span class="m">8&lt;/span> threads.
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">Compressing objects: 100% &lt;span class="o">(&lt;/span>3/3&lt;span class="o">)&lt;/span>, &lt;span class="k">done&lt;/span>.
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">Writing objects: 100% &lt;span class="o">(&lt;/span>3/3&lt;span class="o">)&lt;/span>, &lt;span class="m">310&lt;/span> bytes &lt;span class="p">|&lt;/span> &lt;span class="m">0&lt;/span> bytes/s, &lt;span class="k">done&lt;/span>.
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">Total &lt;span class="m">3&lt;/span> &lt;span class="o">(&lt;/span>delta 2&lt;span class="o">)&lt;/span>, reused &lt;span class="m">0&lt;/span> &lt;span class="o">(&lt;/span>delta 0&lt;span class="o">)&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">remote: Cloning into &lt;span class="s1">&amp;#39;/var/www/vhosts/luiscachog.io/working_hugo&amp;#39;&lt;/span>...
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">remote: &lt;span class="k">done&lt;/span>.
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">remote: Cloning into &lt;span class="s1">&amp;#39;/var/www/vhosts/luiscachog.io/working_hugo/themes/hugo-future-imperfect&amp;#39;&lt;/span>...
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">remote: INFO 2018/03/01 03:12:34 Using config file: /var/www/vhosts/luiscachog.io/working_hugo/config.toml
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">remote: Building sites … INFO 2018/03/01 03:12:34 syncing static files to /var/www/vhosts/luiscachog.io/public_html/
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">remote:
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">remote: &lt;span class="p">|&lt;/span> EN
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">remote: +------------------+----+
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">remote: Pages &lt;span class="p">|&lt;/span> &lt;span class="m">10&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">remote: Paginator pages &lt;span class="p">|&lt;/span> &lt;span class="m">0&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">remote: Non-page files &lt;span class="p">|&lt;/span> &lt;span class="m">0&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">remote: Static files &lt;span class="p">|&lt;/span> &lt;span class="m">3&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">remote: Processed images &lt;span class="p">|&lt;/span> &lt;span class="m">0&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">remote: Aliases &lt;span class="p">|&lt;/span> &lt;span class="m">1&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">remote: Sitemaps &lt;span class="p">|&lt;/span> &lt;span class="m">1&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">remote: Cleaned &lt;span class="p">|&lt;/span> &lt;span class="m">0&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">remote:
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">remote: Total in &lt;span class="m">44&lt;/span> ms
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">To admin@IP_servidor_productivo:luiscachog.io.git
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl"> d5b0671..cvc4dee master -&amp;gt; master
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>Listo ya podemos probar nuestro sitio&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">http://luiscachog.io
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>Con esto el siguiente paso que realizare es hacer el deployment de mi servidor para el blog usando Ansible.&lt;/p>
&lt;p>Nos Vemos!!!&lt;/p>
&lt;p>&lt;strong>References:&lt;/strong>
Digital Ocean blog post &lt;sup id="fnref:1">&lt;a href="#fn:1" class="footnote-ref" role="doc-noteref">1&lt;/a>&lt;/sup>&lt;/p>
&lt;div class="footnotes" role="doc-endnotes">
&lt;hr>
&lt;ol>
&lt;li id="fn:1">
&lt;p>&lt;a href="https://www.digitalocean.com/community/tutorials/how-to-deploy-a-hugo-site-to-production-with-git-hooks-on-ubuntu-14-04" target="_blank" rel="noopener">Digital Ocean&lt;/a>&amp;#160;&lt;a href="#fnref:1" class="footnote-backref" role="doc-backlink">&amp;#x21a9;&amp;#xfe0e;&lt;/a>&lt;/p>
&lt;/li>
&lt;/ol>
&lt;/div></description></item><item><title>Improve WD MyCloud performance</title><link>https://luiscachog.io/improve-wd-mycloud-performance/</link><pubDate>Fri, 16 Feb 2018 00:00:00 +0000</pubDate><guid>https://luiscachog.io/improve-wd-mycloud-performance/</guid><description>&lt;p>I&amp;rsquo;ve just noticed that my NAS a &lt;a href="https://www.westerndigital.com/products/network-attached-storage/wd-my-cloud-expert-series-ex2-ultra#WDBVBZ0040JCH-NESN" target="_blank" rel="noopener">Western Digital My Cloud EX2&lt;/a> is going slower,
so I decided to investigate about what can I do to improve its performance.&lt;/p>
&lt;p>I assume that you already configure ssh on your NAS device.
If is not configured you can follow the next instructions: &lt;a href="https://support-en.wd.com/app/answers/detailweb/a_id/12861" target="_blank" rel="noopener">https://support-en.wd.com/app/answers/detailweb/a_id/12861&lt;/a>&lt;/p>
&lt;h2 id="stop-indexing-services">Stop Indexing Services&lt;/h2>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">/etc/init.d/wdmcserver stop
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">/etc/init.d/wdphotodbmerger stop
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>To do it forever, you should create the cronjob as:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">crontab -e
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>And add the following lines:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">@reboot /bin/sh /etc/init.d/wdmcserverd stop
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">@reboot /bin/sh /etc/init.d/wdphotodbmerger stop
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>&lt;strong>References:&lt;/strong>&lt;/p>
&lt;ul>
&lt;li>Western Digital knowledge base link&lt;sup id="fnref:1">&lt;a href="#fn:1" class="footnote-ref" role="doc-noteref">1&lt;/a>&lt;/sup>&lt;/li>
&lt;/ul>
&lt;div class="footnotes" role="doc-endnotes">
&lt;hr>
&lt;ol>
&lt;li id="fn:1">
&lt;p>&lt;a href="https://support-en.wd.com/app/answers/detailweb/a_id/12861" target="_blank" rel="noopener">How to enable SSH (Secure Shell) on a My Cloud EX2 device&lt;/a>&amp;#160;&lt;a href="#fnref:1" class="footnote-backref" role="doc-backlink">&amp;#x21a9;&amp;#xfe0e;&lt;/a>&lt;/p>
&lt;/li>
&lt;/ol>
&lt;/div></description></item><item><title>WordPress with Let's Encrypt SSL Certificate on a Load Balancer</title><link>https://luiscachog.io/wordpress-lets-encrypt-ssl-certificate-load-balancer/</link><pubDate>Sun, 03 Sep 2017 00:00:00 +0000</pubDate><guid>https://luiscachog.io/wordpress-lets-encrypt-ssl-certificate-load-balancer/</guid><description>&lt;p>Hi again,&lt;/p>
&lt;p>As many of you know a lot of &amp;ldquo;Production&amp;rdquo; applications need to be configured to provide High Availability.
With that in mind, a best practice architecture to your application is to add a Load Balancer as a front end who distribute your traffic between your application nodes,
as you can appreciate on the next image:&lt;/p>
&lt;figure id="figure-ha-load-balancer">
&lt;div class="d-flex justify-content-center">
&lt;div class="w-100" >&lt;img alt="HA Load Balancer diagram" srcset="
/media/posts/wordpress-lets-encrypt-ssl-certificate-load-balancer/LoadBalancerHA_huebbf17380e8f6fabe11a80fc093dace1_79250_35d1701724397631ee8d755949b6ae4b.webp 400w,
/media/posts/wordpress-lets-encrypt-ssl-certificate-load-balancer/LoadBalancerHA_huebbf17380e8f6fabe11a80fc093dace1_79250_5dad269015cb44aa479976dd0b5659d2.webp 760w,
/media/posts/wordpress-lets-encrypt-ssl-certificate-load-balancer/LoadBalancerHA_huebbf17380e8f6fabe11a80fc093dace1_79250_1200x1200_fit_q90_h2_lanczos_3.webp 1200w"
src="https://luiscachog.io/media/posts/wordpress-lets-encrypt-ssl-certificate-load-balancer/LoadBalancerHA_huebbf17380e8f6fabe11a80fc093dace1_79250_35d1701724397631ee8d755949b6ae4b.webp"
width="760"
height="662"
loading="lazy" data-zoomable />&lt;/div>
&lt;/div>&lt;figcaption>
HA Load Balancer diagram
&lt;/figcaption>&lt;/figure>
&lt;h2 id="ssl-offloading">SSL Offloading&lt;/h2>
&lt;p>In this case, my &amp;ldquo;Production&amp;rdquo; application is my blog, and I will install a SSL Certificate on the Cloud Load Balancer(CLB)
to offloading the encryption/decryption to the CLB instead of doing it on the webserver.
That way your webservers uses port 80 (HTTP), as always, and you serve your content trought port 443(HTTPS).&lt;/p>
&lt;figure id="figure-ssl-offloading">
&lt;div class="d-flex justify-content-center">
&lt;div class="w-100" >&lt;img alt="SSL-Offloading diagram" srcset="
/media/posts/wordpress-lets-encrypt-ssl-certificate-load-balancer/SSL-Offloading_hu8f744432393ec982cce29c1ca941e414_24258_ff5647092c335f508c65542f46c4bdb0.webp 400w,
/media/posts/wordpress-lets-encrypt-ssl-certificate-load-balancer/SSL-Offloading_hu8f744432393ec982cce29c1ca941e414_24258_b3cb8a94ae9c78f78469d7a1fe4e5f56.webp 760w,
/media/posts/wordpress-lets-encrypt-ssl-certificate-load-balancer/SSL-Offloading_hu8f744432393ec982cce29c1ca941e414_24258_1200x1200_fit_q90_h2_lanczos.webp 1200w"
src="https://luiscachog.io/media/posts/wordpress-lets-encrypt-ssl-certificate-load-balancer/SSL-Offloading_hu8f744432393ec982cce29c1ca941e414_24258_ff5647092c335f508c65542f46c4bdb0.webp"
width="760"
height="238"
loading="lazy" data-zoomable />&lt;/div>
&lt;/div>&lt;figcaption>
SSL-Offloading diagram
&lt;/figcaption>&lt;/figure>
&lt;p>Here are the what I use to configure my WordPress with SSL Certificate:&lt;/p>
&lt;ul>
&lt;li>SSL Certificate issued using Let&amp;rsquo;s Encrypt&lt;/li>
&lt;li>A Client of Let&amp;rsquo;s Encrypt called acme&lt;/li>
&lt;li>A Cloud Load Balancer&lt;/li>
&lt;li>A WordPress installation&lt;/li>
&lt;/ul>
&lt;h3 id="step-1-install-acmesh-client">Step 1: Install acme.sh client&lt;/h3>
&lt;p>There is a lot of &lt;a href="https://letsencrypt.org/docs/client-options/" target="_blank" rel="noopener">ACME clients&lt;/a> supported by Let&amp;rsquo;s Encrypt, the most popular is &lt;a href="https://certbot.eff.org" target="_blank" rel="noopener">Certbot.&lt;/a> However, I prefer to use &lt;a href="https://github.com/Neilpang/acme.sh" target="_blank" rel="noopener">acme.sh&lt;/a>.&lt;/p>
&lt;p>Let&amp;rsquo;s install it:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">git clone https://github.com/Neilpang/acme.sh.git
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="nb">cd&lt;/span> acme.sh
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="c1"># Create a data home directory&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">sudo mkdir -p /opt/acme/data
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="c1"># Actual command to install it&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">bash acme.sh --install --home /opt/acme --config-home /opt/acme/data --certhome /opt/acme/data/ssl-certs --accountemail your@email.com
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;h3 id="step-2-issue-ssl-certificate">Step 2: Issue SSL Certificate&lt;/h3>
&lt;p>Once acme.sh is installed, we proceed to issue our first SSL Certificate:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">/opt/acme/acme.sh --issue -d example.com -w /var/www/vhosts/example.com/public_html
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="o">[&lt;/span>Mon Aug &lt;span class="m">25&lt;/span> 06:04:07 UTC 2017&lt;span class="o">]&lt;/span> Creating domain key
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="o">[&lt;/span>Mon Aug &lt;span class="m">25&lt;/span> 06:04:07 UTC 2017&lt;span class="o">]&lt;/span> The domain key is here: /opt/acme/data/ssl-certs/example.com/example.com.key
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="o">[&lt;/span>Mon Aug &lt;span class="m">25&lt;/span> 06:04:07 UTC 2017&lt;span class="o">]&lt;/span> Single &lt;span class="nv">domain&lt;/span>&lt;span class="o">=&lt;/span>&lt;span class="s1">&amp;#39;example.com&amp;#39;&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="o">[&lt;/span>Mon Aug &lt;span class="m">25&lt;/span> 06:04:07 UTC 2017&lt;span class="o">]&lt;/span> Getting domain auth token &lt;span class="k">for&lt;/span> each domain
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="o">[&lt;/span>Mon Aug &lt;span class="m">25&lt;/span> 06:04:07 UTC 2017&lt;span class="o">]&lt;/span> Getting webroot &lt;span class="k">for&lt;/span> &lt;span class="nv">domain&lt;/span>&lt;span class="o">=&lt;/span>&lt;span class="s1">&amp;#39;example.com&amp;#39;&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="o">[&lt;/span>Mon Aug &lt;span class="m">25&lt;/span> 06:04:07 UTC 2017&lt;span class="o">]&lt;/span> Getting new-authz &lt;span class="k">for&lt;/span> &lt;span class="nv">domain&lt;/span>&lt;span class="o">=&lt;/span>&lt;span class="s1">&amp;#39;example.com&amp;#39;&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="o">[&lt;/span>Mon Aug &lt;span class="m">25&lt;/span> 06:04:08 UTC 2017&lt;span class="o">]&lt;/span> The new-authz request is ok.
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="o">[&lt;/span>Mon Aug &lt;span class="m">25&lt;/span> 06:04:08 UTC 2017&lt;span class="o">]&lt;/span> Verifying:example.com
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="o">[&lt;/span>Mon Aug &lt;span class="m">25&lt;/span> 06:04:11 UTC 2017&lt;span class="o">]&lt;/span> Success
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="o">[&lt;/span>Mon Aug &lt;span class="m">25&lt;/span> 06:04:11 UTC 2017&lt;span class="o">]&lt;/span> Verify finished, start to sign.
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="o">[&lt;/span>Mon Aug &lt;span class="m">25&lt;/span> 06:04:11 UTC 2017&lt;span class="o">]&lt;/span> Cert success.
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">-----BEGIN CERTIFICATE-----
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">MIIE/zCCA+egAwIBAgISA2AIs/G8gWjkRkNOUb7zmqh1MA0GCSqGSIb3DQEBCwUA
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">MEoxCzAJBgNVBAYTAlVTMRYwFAYDVQQKEw1MZXQncyBFbmNyeXB0MSMwIQYDVQQD
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">ExpMZXQncyBFbmNyeXB0IEF1dGhvcml0eSBYMzAeFw0xNzA4MjgwNTA0MDBaFw0x
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">NzExMjYwNTA0MDBaMBkxFzAVBgNVBAMTDmNvb2tpZWxhYnMubmV0MIIBIjANBgkq
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">hkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAo8/4fXH0dOHcSlyXpsBoULhwQYkz4m0J
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">MegRHU2mhyy/jfKWM6KHDxHpFWUFajLJ/ORE4uncvjmRYeSVBxgv2R2cYoZyKd6v
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">txT+Cdj3jD9fBfDerfdfsdfsd6Y6mlr6Im61afKsFXIgLsprBpK22JU6HOz+0Fdo
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">lan09aaF8zLPtVzdfJw9MU55K7nzerxO8j4ro2lve0PHExkMIBCrXey50wcuqQRY
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">hwkbbXsm+wTES7TCn3tooSzFq6ore3JrSckxhFQ96EOea0s9CgYnw4d9rU/b3jyK
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">bFCILEJK64vgFHx0qvd0hBJFJG/HUtAXAVrFQjjlZlCmCMbnee1UTQIDAQABo4IC
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">DjCCAgowDgYDVR0pasoasoasogWgMB0GA1UdJQQWMBQGCCsGAQUFBwMBBggrBgEF
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">BQcDAjAMBgNVHRMBAf8EAjAAMB0GA1UdDgQWBBR2KRpXKKgTorwfXpo44wgKyFUl
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">QzAfBgNVHSMEGDAWgBSoSmpjBH3duubRObemRWXv86jsoTBvBggrBgEFBQcBAQRj
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">MGEwLgYIKwYBBQUHMAASdTdddHA6Ly9vY3NwLmludC14My5sZXRzZW5jcnlwdC5v
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">cmcwLwYIKwYBBQUHMAKGI2h0dHA6Ly9jZXJ0LmludC14My5sZXRzZW5jcnlwdC5v
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">cmcvMBkGA1UdEQQSMBCCDmNvb2tpZWxhYnMubmV0MIH+BgNVHSAEgfYwgfMwCAYG
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">Z4EMAQIBMIHmBgsrBgEEAYLfEwEBATCB1jAmBggrBgEFBQcCARYaaHR0cDovL2Nw
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">cy5sZXRzZW5jcnlwdC5vcmcwgasGCCsGAQUFBwICMIGeDIGbVGhpcyBDZXJ0aWZp
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">Y2F0ZSBtYXkgb25seSBiZSByZWxpZWQgdXBvbiBieSBSZWx5aW5nIFBhcnRpZXMg
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">YW5kIG9ubHkgaW4gYWNjb3JkYW5jZSB3aXRoIHRoZSBDZXJ0aWZpY2F0ZSBQb2xp
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">Y3kgZm91bmQgYXQgaHR0cHM6Ly9sZXRzZW5jcnlwdC5vcmcvcmVwb3NpdG9yeS8w
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">DQYJKoZIhvcNAQELBQADggEBAFVGs82tzyVER6U0x7p/Q+6xplDFd6ap/dVX9G6i
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">eRPf4ayGykPSH9J3ewu398LOQd3DE93oWbqc7PfEC40Z5HqvCEY3fl9auep99/IF
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">rwhf36J7PXvEsPrUB6pxNFSBw9WX366Z1MP8qoIzm3XYEpp2D/SPniWY5+eQ42Pj
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">WNxxVksA4kFUF9wgKcrsCNTm0X8GZj5HUXC1OwtlopY2w42QrAMGwz1jM4nxv5Mc
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">Jim+nT0zmJUhAdQi8ocDjAl2PvcfdgfmkMr9IWH3al/GJSKy3a9Cq+BaIsIUYi6E
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">8M8Mj+00ONNn1folm9aVn+FW5fVCaxYN32ir8PnoTWkOXK8&lt;span class="o">=&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">-----END CERTIFICATE-----
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="o">[&lt;/span>Mon Aug &lt;span class="m">25&lt;/span> 06:04:11 UTC 2017&lt;span class="o">]&lt;/span> Your cert is in /opt/acme/data/ssl-certs/example.com/example.com.cer
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="o">[&lt;/span>Mon Aug &lt;span class="m">25&lt;/span> 06:04:11 UTC 2017&lt;span class="o">]&lt;/span> Your cert key is in /opt/acme/data/ssl-certs/example.com/example.com.key
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="o">[&lt;/span>Mon Aug &lt;span class="m">25&lt;/span> 06:04:11 UTC 2017&lt;span class="o">]&lt;/span> The intermediate CA cert is in /opt/acme/data/ssl-certs/example.com/ca.cer
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="o">[&lt;/span>Mon Aug &lt;span class="m">25&lt;/span> 06:04:11 UTC 2017&lt;span class="o">]&lt;/span> And the full chain certs is there: /opt/acme/data/ssl-certs/example.com/fullchain.cer
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>Where the explained options are:&lt;/p>
&lt;p>-issue: Issue a new certificate&lt;/p>
&lt;p>-d (-domain) : Specifies a domain, used to issue, renew or revoke, etc.&lt;/p>
&lt;p>-w (-webroot) : Specifies the web root folder for web root mode. This is the DocumentRoot where your site is hosted and it is necessary to verify it by Let&amp;rsquo;s Encrypt.&lt;/p>
&lt;h3 id="step-3-install-ssl-certificate-on-cloud-load-balancer">Step 3: Install SSL Certificate on Cloud Load Balancer&lt;/h3>
&lt;p>So, at this moment we have our SSL Certificate, Private Key, and Intermediate CA Certificate ready to install on our Cloud Load Balancer (CLB)&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">Your cert is in /opt/acme/data/ssl-certs/example.com/example.com.cer
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">Your cert key is in /opt/acme/data/ssl-certs/example.com/example.com.key
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">The intermediate CA cert is in /opt/acme/data/ssl-certs/example.com/ca.cer
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>So we should go to &lt;a href="https://login.rackspace.com" target="_blank" rel="noopener">https://login.rackspace.com&lt;/a> -&amp;gt; Rackspace Cloud -&amp;gt; Networking -&amp;gt; Cloud Load Balancers:&lt;/p>
&lt;figure id="figure-clb-01">
&lt;div class="d-flex justify-content-center">
&lt;div class="w-100" >&lt;img alt="Rackspace Portal - Cloud Loud Balancer" srcset="
/media/posts/wordpress-lets-encrypt-ssl-certificate-load-balancer/CLB01_hu0c51bf85f3cc4b2d02a66a66d81aa589_40856_54a3e1d860e47c88df6fb2b14ba443b0.webp 400w,
/media/posts/wordpress-lets-encrypt-ssl-certificate-load-balancer/CLB01_hu0c51bf85f3cc4b2d02a66a66d81aa589_40856_f218066512ada5e455967f465b00b323.webp 760w,
/media/posts/wordpress-lets-encrypt-ssl-certificate-load-balancer/CLB01_hu0c51bf85f3cc4b2d02a66a66d81aa589_40856_1200x1200_fit_q90_h2_lanczos_3.webp 1200w"
src="https://luiscachog.io/media/posts/wordpress-lets-encrypt-ssl-certificate-load-balancer/CLB01_hu0c51bf85f3cc4b2d02a66a66d81aa589_40856_54a3e1d860e47c88df6fb2b14ba443b0.webp"
width="760"
height="242"
loading="lazy" data-zoomable />&lt;/div>
&lt;/div>&lt;figcaption>
Rackspace Portal - Cloud Loud Balancer
&lt;/figcaption>&lt;/figure>
&lt;p>Then, to Optional Features and Enable/Configure on &amp;ldquo;Secure Traffic SSL&amp;rdquo;&lt;/p>
&lt;figure id="figure-clb-02">
&lt;div class="d-flex justify-content-center">
&lt;div class="w-100" >&lt;img alt="Rackspace Portal - Cloud Loud Balancer" srcset="
/media/posts/wordpress-lets-encrypt-ssl-certificate-load-balancer/CLB02_hu7ffc5949d0d179fc2236bf5a390f623a_11064_a2285930ece3ab5f674dbcdacb01b0a4.webp 400w,
/media/posts/wordpress-lets-encrypt-ssl-certificate-load-balancer/CLB02_hu7ffc5949d0d179fc2236bf5a390f623a_11064_f1299d84830e0d3fafe67ea941e04cae.webp 760w,
/media/posts/wordpress-lets-encrypt-ssl-certificate-load-balancer/CLB02_hu7ffc5949d0d179fc2236bf5a390f623a_11064_1200x1200_fit_q90_h2_lanczos_3.webp 1200w"
src="https://luiscachog.io/media/posts/wordpress-lets-encrypt-ssl-certificate-load-balancer/CLB02_hu7ffc5949d0d179fc2236bf5a390f623a_11064_a2285930ece3ab5f674dbcdacb01b0a4.webp"
width="732"
height="356"
loading="lazy" data-zoomable />&lt;/div>
&lt;/div>&lt;figcaption>
Rackspace Portal - Cloud Loud Balancer
&lt;/figcaption>&lt;/figure>
&lt;p>Finally, we add our SSL Certificate, Private Key, and Intermediate CA Certificate to the CLB and save the configuration:&lt;/p>
&lt;figure id="figure-clb-03">
&lt;div class="d-flex justify-content-center">
&lt;div class="w-100" >&lt;img alt="Rackspace Portal - Cloud Loud Balancer" srcset="
/media/posts/wordpress-lets-encrypt-ssl-certificate-load-balancer/CLB03_hu67fb6ffec3d9916d394540c9ded24748_14067_5e34a2dc24277d867dd5c175629aa89a.webp 400w,
/media/posts/wordpress-lets-encrypt-ssl-certificate-load-balancer/CLB03_hu67fb6ffec3d9916d394540c9ded24748_14067_c6786992a49821398553ae41e9200fb7.webp 760w,
/media/posts/wordpress-lets-encrypt-ssl-certificate-load-balancer/CLB03_hu67fb6ffec3d9916d394540c9ded24748_14067_1200x1200_fit_q90_h2_lanczos_3.webp 1200w"
src="https://luiscachog.io/media/posts/wordpress-lets-encrypt-ssl-certificate-load-balancer/CLB03_hu67fb6ffec3d9916d394540c9ded24748_14067_5e34a2dc24277d867dd5c175629aa89a.webp"
width="534"
height="573"
loading="lazy" data-zoomable />&lt;/div>
&lt;/div>&lt;figcaption>
Rackspace Portal - Cloud Loud Balancer
&lt;/figcaption>&lt;/figure>
&lt;h3 id="step-4-configure-wordpress">Step 4: Configure WordPress&lt;/h3>
&lt;p>We are almost done, at this time we already have configured our SSL on the CLB to provide WordPress over HTTPS, however, WordPress is still with HTTP, so we need to reconfigure our WordPress with SSL.&lt;/p>
&lt;h4 id="database-queries">Database queries&lt;/h4>
&lt;p>First of all, we should update the links from http to https; we are going to do it directly on the database doing the following queries:&lt;/p>
&lt;div class="alert alert-warning">
&lt;div>
Change all instances of &lt;code>example.com&lt;/code> to your own. If you have the &lt;code>www&lt;/code> as part of your WordPress Address(URL) in the WordPress Settings, add the &amp;lsquo;www&amp;rsquo;.
&lt;/div>
&lt;/div>
&lt;p>Also, if you have a custom table prefix in the WordPress database, something other than the default &amp;lsquo;wp_&amp;rsquo;, then you must change all the instances of &amp;lsquo;wp_&amp;rsquo; to your own table prefix.&lt;/p>
&lt;ol>
&lt;li>
&lt;p>Update any embedded attachments/img that use http:This one updates the src attributes that use double quotes:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-sql" data-lang="sql">&lt;span class="line">&lt;span class="cl">&lt;span class="k">UPDATE&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="o">`&lt;/span>&lt;span class="n">wp_posts&lt;/span>&lt;span class="o">`&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="k">SET&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="n">post_content&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="o">=&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="k">REPLACE&lt;/span>&lt;span class="p">(&lt;/span>&lt;span class="n">post_content&lt;/span>&lt;span class="p">,&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="s1">&amp;#39;src=\&amp;#34;http://example.com&amp;#39;&lt;/span>&lt;span class="p">,&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="err">\&lt;/span>&lt;span class="w">
&lt;/span>&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="w">&lt;/span>&lt;span class="s1">&amp;#39;src=\&amp;#34;https://example.com&amp;#39;&lt;/span>&lt;span class="p">)&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="k">WHERE&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="n">post_content&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="k">LIKE&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="s1">&amp;#39;%src=\&amp;#34;http://example.com%&amp;#39;&lt;/span>&lt;span class="p">;&lt;/span>&lt;span class="w">
&lt;/span>&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>This one takes care of any src attributes that use single quotes:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-sql" data-lang="sql">&lt;span class="line">&lt;span class="cl">&lt;span class="k">UPDATE&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="o">`&lt;/span>&lt;span class="n">wp_posts&lt;/span>&lt;span class="o">`&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="k">SET&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="n">post_content&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="o">=&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="k">REPLACE&lt;/span>&lt;span class="p">(&lt;/span>&lt;span class="n">post_content&lt;/span>&lt;span class="p">,&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="s1">&amp;#39;src=\&amp;#39;&lt;/span>&lt;span class="n">http&lt;/span>&lt;span class="p">:&lt;/span>&lt;span class="o">//&lt;/span>&lt;span class="n">example&lt;/span>&lt;span class="p">.&lt;/span>&lt;span class="n">com&lt;/span>&lt;span class="s1">&amp;#39;, \
&lt;/span>&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="s1">&amp;#39;&lt;/span>&lt;span class="n">src&lt;/span>&lt;span class="o">=&lt;/span>&lt;span class="err">\&lt;/span>&lt;span class="s1">&amp;#39;https://example.com&amp;#39;&lt;/span>&lt;span class="p">)&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="k">WHERE&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="n">post_content&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="k">LIKE&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="s1">&amp;#39;%src=\&amp;#39;&lt;/span>&lt;span class="n">http&lt;/span>&lt;span class="p">:&lt;/span>&lt;span class="o">//&lt;/span>&lt;span class="n">example&lt;/span>&lt;span class="p">.&lt;/span>&lt;span class="n">com&lt;/span>&lt;span class="o">%&lt;/span>&lt;span class="s1">&amp;#39;;
&lt;/span>&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>Update any hard-coded URLs for links.This one updates the URL for href attributes that use double quotes:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-sql" data-lang="sql">&lt;span class="line">&lt;span class="cl">&lt;span class="k">UPDATE&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="o">`&lt;/span>&lt;span class="n">wp_posts&lt;/span>&lt;span class="o">`&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="k">SET&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="n">post_content&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="o">=&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="k">REPLACE&lt;/span>&lt;span class="p">(&lt;/span>&lt;span class="n">post_content&lt;/span>&lt;span class="p">,&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="s1">&amp;#39;href=\&amp;#34;http://example.com&amp;#39;&lt;/span>&lt;span class="p">,&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="err">\&lt;/span>&lt;span class="w">
&lt;/span>&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="w">&lt;/span>&lt;span class="s1">&amp;#39;href=\&amp;#34;https://example.com&amp;#39;&lt;/span>&lt;span class="p">)&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="k">WHERE&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="n">post_content&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="k">LIKE&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="s1">&amp;#39;%href=\&amp;#34;http://example.com%&amp;#39;&lt;/span>&lt;span class="p">;&lt;/span>&lt;span class="w">
&lt;/span>&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>This one updates the URL for href attributes that use single quotes:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-sql" data-lang="sql">&lt;span class="line">&lt;span class="cl">&lt;span class="k">UPDATE&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="o">`&lt;/span>&lt;span class="n">wp_posts&lt;/span>&lt;span class="o">`&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="k">SET&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="n">post_content&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="o">=&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="k">REPLACE&lt;/span>&lt;span class="p">(&lt;/span>&lt;span class="n">post_content&lt;/span>&lt;span class="p">,&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="s1">&amp;#39;href=\&amp;#39;&lt;/span>&lt;span class="n">http&lt;/span>&lt;span class="p">:&lt;/span>&lt;span class="o">//&lt;/span>&lt;span class="n">example&lt;/span>&lt;span class="p">.&lt;/span>&lt;span class="n">com&lt;/span>&lt;span class="s1">&amp;#39;, \
&lt;/span>&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="s1">&amp;#39;&lt;/span>&lt;span class="n">href&lt;/span>&lt;span class="o">=&lt;/span>&lt;span class="err">\&lt;/span>&lt;span class="s1">&amp;#39;https://example.com&amp;#39;&lt;/span>&lt;span class="p">)&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="k">WHERE&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="n">post_content&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="k">LIKE&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="s1">&amp;#39;%href=\&amp;#39;&lt;/span>&lt;span class="n">http&lt;/span>&lt;span class="p">:&lt;/span>&lt;span class="o">//&lt;/span>&lt;span class="n">example&lt;/span>&lt;span class="p">.&lt;/span>&lt;span class="n">com&lt;/span>&lt;span class="o">%&lt;/span>&lt;span class="s1">&amp;#39;;
&lt;/span>&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>Update any &amp;ldquo;pinged&amp;rdquo; links:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-sql" data-lang="sql">&lt;span class="line">&lt;span class="cl">&lt;span class="k">UPDATE&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="o">`&lt;/span>&lt;span class="n">wp_posts&lt;/span>&lt;span class="o">`&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="k">SET&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="n">pinged&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="o">=&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="k">REPLACE&lt;/span>&lt;span class="p">(&lt;/span>&lt;span class="n">pinged&lt;/span>&lt;span class="p">,&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="s1">&amp;#39;http://example.com&amp;#39;&lt;/span>&lt;span class="p">,&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="err">\&lt;/span>&lt;span class="w">
&lt;/span>&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="w">&lt;/span>&lt;span class="s1">&amp;#39;https://example.com&amp;#39;&lt;/span>&lt;span class="p">)&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="k">WHERE&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="n">pinged&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="k">LIKE&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="s1">&amp;#39;%http://example.com%&amp;#39;&lt;/span>&lt;span class="p">;&lt;/span>&lt;span class="w">
&lt;/span>&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>This step is just a confirmation step to make sure that there are no remaining http URLs for your site in the wp_posts table, except the GUID URLs.&lt;/p>
&lt;p>You must replace WP_DB_NAME, near the beginning of the query, with the name of your database.&lt;/p>
&lt;p>This will confirm that nowhere in the wp_posts table is there a remaining http URL, outside of the GUID column. This ignores URLs in the GUID column.&lt;/p>
&lt;p>This query only searches; it does not replace anything, nor make any changes. So, this is safe to run. It’s a safe and quick way to check the wp_posts table while ignoring the guid column.&lt;/p>
&lt;p>This SQL query should return an empty set. That would mean that it found no http URLs for your site. (This is all just 1 query. It’s 1 very,
very long line.)&lt;/p>
&lt;/li>
&lt;/ol>
&lt;div class="alert alert-warning">
&lt;div>
&lt;pre>&lt;code>Remember to replace WP_DB_NAME, near the beginning of the query, with the name of your database.
&lt;/code>&lt;/pre>
&lt;/div>
&lt;/div>
&lt;pre>&lt;code>```sql
SELECT * FROM `WP_DB_NAME`.`wp_posts` WHERE (CONVERT(`ID` USING utf8) LIKE \
'%%http://example.com%%' OR CONVERT(`post_author` USING utf8) LIKE '%%http://example.com%%' \
OR CONVERT(`post_date` USING utf8) LIKE '%%http://example.com%%' \
OR CONVERT(`post_date_gmt` USING utf8) LIKE '%%http://example.com%%' \
OR CONVERT(`post_content` USING utf8) LIKE '%%http://example.com%%' \
OR CONVERT(`post_title` USING utf8) LIKE '%%http://example.com%%' \
OR CONVERT(`post_excerpt` USING utf8) LIKE '%%http://example.com%%' \
OR CONVERT(`post_status` USING utf8) LIKE '%%http://example.com%%' \
OR CONVERT(`comment_status` USING utf8) LIKE '%%http://example.com%%' \
OR CONVERT(`ping_status` USING utf8) LIKE '%%http://example.com%%' \
OR CONVERT(`post_password` USING utf8) LIKE '%%http://example.com%%' \
OR CONVERT(`post_name` USING utf8) LIKE '%%http://example.com%%' \
OR CONVERT(`to_ping` USING utf8) LIKE '%%http://example.com%%' \
OR CONVERT(`pinged` USING utf8) LIKE '%%http://example.com%%' \
OR CONVERT(`post_modified` USING utf8) LIKE '%%http://example.com%%' \
OR CONVERT(`post_modified_gmt` USING utf8) LIKE '%%http://example.com%%' \
OR CONVERT(`post_content_filtered` USING utf8) LIKE '%%http://example.com%%' \
OR CONVERT(`post_parent` USING utf8) LIKE '%%http://example.com%%' \
OR CONVERT(`menu_order` USING utf8) LIKE '%%http://example.com%%' \
OR CONVERT(`post_type` USING utf8) LIKE '%%http://example.com%%' \
OR CONVERT(`post_mime_type` USING utf8) LIKE '%%http://example.com%%' \
OR CONVERT(`comment_count` USING utf8) LIKE '%%http://example.com%%');
```
&lt;/code>&lt;/pre>
&lt;ol>
&lt;li>
&lt;p>Now, we move to the wp_comments table. This changes any comment author URLs that point to the http version of your site.
This is in case you&amp;rsquo;ve ever replied to a comment while your URL was pointing to http.&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-sql" data-lang="sql">&lt;span class="line">&lt;span class="cl">&lt;span class="k">UPDATE&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="o">`&lt;/span>&lt;span class="n">wp_comments&lt;/span>&lt;span class="o">`&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="k">SET&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="n">comment_author_url&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="o">=&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="k">REPLACE&lt;/span>&lt;span class="p">(&lt;/span>&lt;span class="n">comment_author_url&lt;/span>&lt;span class="p">,&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="err">\&lt;/span>&lt;span class="w">
&lt;/span>&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="w">&lt;/span>&lt;span class="s1">&amp;#39;http://example.com&amp;#39;&lt;/span>&lt;span class="p">,&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="s1">&amp;#39;https://example.com&amp;#39;&lt;/span>&lt;span class="p">)&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="k">WHERE&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="n">comment_author_url&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="err">\&lt;/span>&lt;span class="w">
&lt;/span>&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="w">&lt;/span>&lt;span class="k">LIKE&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="s1">&amp;#39;%http://example.com%&amp;#39;&lt;/span>&lt;span class="p">;&lt;/span>&lt;span class="w">
&lt;/span>&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>This updates the content of the comments on your site. If there are any links in the comments that are linking to an http URL on your site, they will be updated to https.&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-sql" data-lang="sql">&lt;span class="line">&lt;span class="cl">&lt;span class="k">UPDATE&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="o">`&lt;/span>&lt;span class="n">wp_comments&lt;/span>&lt;span class="o">`&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="k">SET&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="n">comment_content&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="o">=&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="k">REPLACE&lt;/span>&lt;span class="p">(&lt;/span>&lt;span class="n">comment_content&lt;/span>&lt;span class="p">,&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="s1">&amp;#39;http://example.com&amp;#39;&lt;/span>&lt;span class="p">,&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="err">\&lt;/span>&lt;span class="w">
&lt;/span>&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="w">&lt;/span>&lt;span class="s1">&amp;#39;https://example.com&amp;#39;&lt;/span>&lt;span class="p">)&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="k">WHERE&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="n">comment_content&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="k">LIKE&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="s1">&amp;#39;%http://example.com%&amp;#39;&lt;/span>&lt;span class="p">;&lt;/span>&lt;span class="w">
&lt;/span>&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>Now we move to the wp_postmeta table. This takes care of any custom post meta that points to the http version of your site.&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-sql" data-lang="sql">&lt;span class="line">&lt;span class="cl">&lt;span class="k">UPDATE&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="o">`&lt;/span>&lt;span class="n">wp_postmeta&lt;/span>&lt;span class="o">`&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="k">SET&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="o">`&lt;/span>&lt;span class="n">meta_value&lt;/span>&lt;span class="o">`&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="o">=&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="k">REPLACE&lt;/span>&lt;span class="p">(&lt;/span>&lt;span class="n">meta_value&lt;/span>&lt;span class="p">,&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="s1">&amp;#39;http://example.com&amp;#39;&lt;/span>&lt;span class="p">,&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="err">\&lt;/span>&lt;span class="w">
&lt;/span>&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="w">&lt;/span>&lt;span class="s1">&amp;#39;https://example.com&amp;#39;&lt;/span>&lt;span class="p">)&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="k">WHERE&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="n">meta_value&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="k">LIKE&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="s1">&amp;#39;%http://example.com%&amp;#39;&lt;/span>&lt;span class="p">;&lt;/span>&lt;span class="w">
&lt;/span>&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>Now we move to the wp_options table. Update the &lt;strong>WordPress Address (URL)&lt;/strong> and &lt;strong>Site Address (URL)&lt;/strong>.&lt;/p>
&lt;p>For the WordPress Address URL, you may have to modify example.com.
If you have WordPress installed in some other directory, then modify this according to your own WordPress URL.
For example, some people have WordPress installed in a subdirectory named &amp;ldquo;blog&amp;rdquo;, and so their WordPress Address would be &lt;a href="https://example.com/blog" target="_blank" rel="noopener">https://example.com/blog&lt;/a>.&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-sql" data-lang="sql">&lt;span class="line">&lt;span class="cl">&lt;span class="k">UPDATE&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="o">`&lt;/span>&lt;span class="n">wp_options&lt;/span>&lt;span class="o">`&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="k">SET&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="o">`&lt;/span>&lt;span class="n">option_value&lt;/span>&lt;span class="o">`&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="o">=&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="s2">&amp;#34;https://example.com&amp;#34;&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="err">\&lt;/span>&lt;span class="w">
&lt;/span>&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="w">&lt;/span>&lt;span class="k">WHERE&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="o">`&lt;/span>&lt;span class="n">wp_options&lt;/span>&lt;span class="o">`&lt;/span>&lt;span class="p">.&lt;/span>&lt;span class="o">`&lt;/span>&lt;span class="n">option_name&lt;/span>&lt;span class="o">`&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="o">=&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="s1">&amp;#39;siteurl&amp;#39;&lt;/span>&lt;span class="p">;&lt;/span>&lt;span class="w">
&lt;/span>&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>This one will update the Site Address URL (this is the home page of your site):&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-sql" data-lang="sql">&lt;span class="line">&lt;span class="cl">&lt;span class="k">UPDATE&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="o">`&lt;/span>&lt;span class="n">wp_options&lt;/span>&lt;span class="o">`&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="k">SET&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="o">`&lt;/span>&lt;span class="n">option_value&lt;/span>&lt;span class="o">`&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="o">=&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="s2">&amp;#34;https://example.com&amp;#34;&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="err">\&lt;/span>&lt;span class="w">
&lt;/span>&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="w">&lt;/span>&lt;span class="k">WHERE&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="o">`&lt;/span>&lt;span class="n">wp_options&lt;/span>&lt;span class="o">`&lt;/span>&lt;span class="p">.&lt;/span>&lt;span class="o">`&lt;/span>&lt;span class="n">option_name&lt;/span>&lt;span class="o">`&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="o">=&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="s1">&amp;#39;home&amp;#39;&lt;/span>&lt;span class="p">;&lt;/span>&lt;span class="w">
&lt;/span>&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;/ol>
&lt;h4 id="wordpress-control-panel">WordPress Control Panel&lt;/h4>
&lt;p>Besides, with run the queries directly on the database, we can update, or verify, the blog URLs, by going to Settings &amp;gt; General&lt;/p>
&lt;p>And updating your WordPress Address (URL) and Site Address (URL) address fields.&lt;/p>
&lt;figure id="figure-wp-change-url">
&lt;div class="d-flex justify-content-center">
&lt;div class="w-100" >&lt;img alt="WordPress - Change URL" srcset="
/media/posts/wordpress-lets-encrypt-ssl-certificate-load-balancer/WP-ChangeURL_hu6e2977f116eeda53ba50094ce74f270b_11971_cd086c622daa44e7dfc8388d6c27f831.webp 400w,
/media/posts/wordpress-lets-encrypt-ssl-certificate-load-balancer/WP-ChangeURL_hu6e2977f116eeda53ba50094ce74f270b_11971_a1cee76f695748cc9b27d52f28e41672.webp 760w,
/media/posts/wordpress-lets-encrypt-ssl-certificate-load-balancer/WP-ChangeURL_hu6e2977f116eeda53ba50094ce74f270b_11971_1200x1200_fit_q90_h2_lanczos_3.webp 1200w"
src="https://luiscachog.io/media/posts/wordpress-lets-encrypt-ssl-certificate-load-balancer/WP-ChangeURL_hu6e2977f116eeda53ba50094ce74f270b_11971_cd086c622daa44e7dfc8388d6c27f831.webp"
width="760"
height="262"
loading="lazy" data-zoomable />&lt;/div>
&lt;/div>&lt;figcaption>
WordPress - Change URL
&lt;/figcaption>&lt;/figure>
&lt;h4 id="wordpress-config-file">WordPress Config File&lt;/h4>
&lt;p>Finally, we should add the following line to our &lt;strong>wp_config.php&lt;/strong> file&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">&lt;span class="nv">$_SERVER&lt;/span>&lt;span class="o">[&lt;/span>&lt;span class="s1">&amp;#39;HTTPS&amp;#39;&lt;/span>&lt;span class="o">]=&lt;/span>&lt;span class="s1">&amp;#39;on&amp;#39;&lt;/span>&lt;span class="p">;&lt;/span>
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>Now, you have configured WordPress with Let&amp;rsquo;s Encrypt SSL Certificate on a Load Balancer.&lt;/p></description></item><item><title> Build a Dynamic DNS Client with Rackspace API</title><link>https://luiscachog.io/build-a-dynamc-dns-client-with-rackspace-api/</link><pubDate>Mon, 11 Apr 2016 00:00:00 +0000</pubDate><guid>https://luiscachog.io/build-a-dynamc-dns-client-with-rackspace-api/</guid><description>&lt;p>This time I&amp;rsquo;ve want to create a homemade Server with my Raspberry Pi2 and publish it using my own sub-domain,
the main problem is that the ISP provide me an dynamic IP and we should ensure that if my IP address change the sub-domain record should point to the new IP.&lt;/p>
&lt;p>The instructions assume that you:&lt;/p>
&lt;ul>
&lt;li>
&lt;p>Have a domain&lt;/p>
&lt;/li>
&lt;li>
&lt;p>Have already changed your NS records to point to dns1.stabletransit.com and dns2.stabletransit.com.&lt;/p>
&lt;/li>
&lt;/ul>
&lt;ol>
&lt;li>
&lt;p>You should download the latest version of rsdns from github&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">&lt;span class="nb">cd&lt;/span> ~/bin/
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">git clone https://github.com/linickx/rsdns.git
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>Go to your Rackspace portal &lt;a href="https://login.rackspace.com/" target="_blank" rel="noopener">https://login.rackspace.com/&lt;/a> and grab your Username &amp;amp; API key (It&amp;rsquo;s under &amp;ldquo;Your Account&amp;rdquo; -&amp;gt; &amp;ldquo;Account Settings&amp;rdquo; -&amp;gt; &amp;ldquo;API Key&amp;rdquo;)&lt;/p>
&lt;/li>
&lt;li>
&lt;p>Create a configuration file for rsdns (~/.rsdns_config) with your settings.&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">&lt;span class="cp">#!/bin/bash
&lt;/span>&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="cp">&lt;/span>&lt;span class="nv">RSUSER&lt;/span>&lt;span class="o">=&lt;/span>lcacho
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="nv">RSAPIKEY&lt;/span>&lt;span class="o">=&lt;/span>&lt;span class="m">1234567890&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="nv">RSPATH&lt;/span>&lt;span class="o">=&lt;/span>~/bin/rsdns/
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>You need your domain created on Rackspace(It&amp;rsquo;s under &amp;ldquo;Networking&amp;rdquo; -&amp;gt; &amp;ldquo;Cloud DNS&amp;rdquo; -&amp;gt; &amp;ldquo;Create Domain&amp;rdquo;) if you don&amp;rsquo;t have your domain created you are able to created using rsdns:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">./rsdns-domain.sh -d www.luiscachog.io -e lcacho@luisachog.io
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>Once you have a domain setup you need to create an A record.
To create the A record you going to need an IP address, you can use &lt;a href="http://icanhazip.com" target="_blank" rel="noopener">http://icanhazip.com&lt;/a> to get your actual current IP.
Again to create a record you are able to do it from Rackspace panel (It&amp;rsquo;s under &amp;ldquo;Networking&amp;rdquo; -&amp;gt; &amp;ldquo;Cloud DNS&amp;rdquo; -&amp;gt; YOUR_DOMAIN -&amp;gt; &amp;ldquo;Add Record&amp;rdquo;) or you can use rsdns:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">./rsdns-a.sh -n dynamic-host.luiscachog.io -i 123.123.123.123 -t &lt;span class="m">3600&lt;/span>
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>In the above the TTL is set to 1hr (3600 secs), this is so that DNS caches do not keep the record too long. That&amp;rsquo;s all the pre-work done, now lets get your dynamic host setup!&lt;/p>
&lt;/li>
&lt;li>
&lt;p>The script to update your a record is rsdns-dc.sh, and you run it like this:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">./rsdns-dc.sh -n dynamic-host.luiscachog.io
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>The script uses icanhazip to get your current IP, it then update the A record with it.&lt;/p>
&lt;p>I never switch off my router so I have create a created a cronjob to run that script every 2 hours,
plus the 1hr TTL should mean that the record is roughly in sync with my IP without making unnecessary requests&lt;/p>
&lt;/li>
&lt;li>
&lt;p>I use CentOS, so I can simply drop the following file called rsdns-dc into /etc/cron.d/ with this&amp;hellip;&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">vim /etc/cron.d/rsdns-dc
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">* */2 * * * lcacho /home/lcacho/bin/rsdns/rsdns-dc.sh -n dynamic-host.luiscachog.io &lt;span class="p">&amp;amp;&lt;/span>&amp;gt;/dev/null
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;/ol>
&lt;p>Now we are done! Private Dynamic DNS on your own zone using the Rackspace API.&lt;/p></description></item><item><title>Spamassassin Error: cannot create user preferences file //.spamassassin/user_prefs: Permission denied on VestaCP - CentOS</title><link>https://luiscachog.io/spamassassin-error-on-vestacp-centos/</link><pubDate>Wed, 08 Apr 2015 00:00:00 +0000</pubDate><guid>https://luiscachog.io/spamassassin-error-on-vestacp-centos/</guid><description>&lt;p>When you configure spamassassin on VestaCP (CentOS) sometimes you might have some problems with the autolearn feature and also with the bayes plugin of spamassassin.&lt;/p>
&lt;p>The error looks like:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">more /var/log/maillog
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">Apr &lt;span class="m">5&lt;/span> 00:31:00 vestaserver01 spamd&lt;span class="o">[&lt;/span>1353&lt;span class="o">]&lt;/span>: spamd: connection from localhost &lt;span class="o">[&lt;/span>127.0.0.1&lt;span class="o">]&lt;/span> at port &lt;span class="m">37022&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">Apr &lt;span class="m">5&lt;/span> 00:31:00 vestaserver01 spamd&lt;span class="o">[&lt;/span>1353&lt;span class="o">]&lt;/span>: spamd: setuid to nobody succeeded
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">Apr &lt;span class="m">5&lt;/span> 00:31:00 vestaserver01 spamd&lt;span class="o">[&lt;/span>1353&lt;span class="o">]&lt;/span>: spamd: creating default_prefs: //.spamassassin/user_prefs
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">Apr &lt;span class="m">5&lt;/span> 00:31:00 vestaserver01 spamd&lt;span class="o">[&lt;/span>1353&lt;span class="o">]&lt;/span>: config: cannot create user preferences file //.spamassassin/user_prefs: No such file or directory
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">Apr &lt;span class="m">5&lt;/span> 00:31:00 vestaserver01 spamd&lt;span class="o">[&lt;/span>1353&lt;span class="o">]&lt;/span>: spamd: failed to create readable default_prefs: //.spamassassin/user_prefs
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">Apr &lt;span class="m">5&lt;/span> 00:31:00 vestaserver01 spamd&lt;span class="o">[&lt;/span>1353&lt;span class="o">]&lt;/span>: spamd: checking message &lt;span class="p">&amp;amp;&lt;/span>lt&lt;span class="p">;&lt;/span>5520C87B.8020009@example.com&lt;span class="p">&amp;amp;&lt;/span>gt&lt;span class="p">;&lt;/span> &lt;span class="k">for&lt;/span> nobody:99
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">Apr &lt;span class="m">5&lt;/span> 00:31:00 vestaserver01 spamd&lt;span class="o">[&lt;/span>1353&lt;span class="o">]&lt;/span>: plugin: &lt;span class="nb">eval&lt;/span> failed: bayes: &lt;span class="o">(&lt;/span>in learn&lt;span class="o">)&lt;/span> locker: safe_lock: cannot create tmp lockfile
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">/.spamassassin/bayes.lock.vestaserver01.example.com.1353 &lt;span class="k">for&lt;/span> /.spamassassin/bayes.lock: No such file or directory
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">Apr &lt;span class="m">5&lt;/span> 00:31:00 vestaserver01 spamd&lt;span class="o">[&lt;/span>1353&lt;span class="o">]&lt;/span>: spamd: clean message &lt;span class="o">(&lt;/span>-1.0/5.0&lt;span class="o">)&lt;/span> &lt;span class="k">for&lt;/span> nobody:99 in 0.2 seconds, &lt;span class="m">3138&lt;/span> bytes.
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">Apr &lt;span class="m">5&lt;/span> 00:31:00 vestaserver01 spamd&lt;span class="o">[&lt;/span>1353&lt;span class="o">]&lt;/span>: spamd: result: . &lt;span class="m">0&lt;/span> - ALL_TRUSTED,HTML_MESSAGE &lt;span class="nv">scantime&lt;/span>&lt;span class="o">=&lt;/span>0.2,size&lt;span class="o">=&lt;/span>3138,user&lt;span class="o">=&lt;/span>nobody,uid&lt;span class="o">=&lt;/span>999,required_score&lt;span class="o">=&lt;/span>5.0,rhost&lt;span class="o">=&lt;/span>localhost,raddr&lt;span class="o">=&lt;/span>127.0.0.1,rport&lt;span class="o">=&lt;/span>37022,mid&lt;span class="o">=&lt;/span>&lt;span class="p">&amp;amp;&lt;/span>lt&lt;span class="p">;&lt;/span>5520C87B.8020009@example.com&lt;span class="p">&amp;amp;&lt;/span>gt&lt;span class="p">;&lt;/span>,autolearn&lt;span class="o">=&lt;/span>unavailable
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>Basically the error are the permissions on: //.spamassassin/user_prefs&lt;/p>
&lt;p>To fix it follow the next steps:&lt;/p>
&lt;ol>
&lt;li>
&lt;p>Create the user spamd, in order to avoid to run spamassassin with the user nobody:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">groupadd -g &lt;span class="m">1001&lt;/span> spamd
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">useradd -u &lt;span class="m">1001&lt;/span> -g spamd -s /sbin/nologin -d /var/lib/spamassassin spamd
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">mkdir /var/lib/spamassassin
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">chown spamd:spamd /var/lib/spamassassin&amp;lt;/pre&amp;gt;
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>Edit the file /etc/exim/exim.conf.&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">vi /etc/exim/exim.conf
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>Change the line:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">&lt;span class="nv">spam&lt;/span> &lt;span class="o">=&lt;/span> nobody:true/defer_ok
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>to&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">&lt;span class="nv">spam&lt;/span> &lt;span class="o">=&lt;/span> spamd:true/defer_ok
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>Restart exim an spamassassin&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">/etc/init.d/exim restart
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">/etc/init.d/spamassassin restart
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>After that verify that the files &lt;strong>bayes_seen, bayes_toks and user_prefs&lt;/strong> exists on the spamd home (In this case /var/lib/spamassassin)&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">&lt;span class="nb">pwd&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">/var/lib/spamassassin
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">ls -la
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">total &lt;span class="m">40&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">drwxr-xr-x &lt;span class="m">3&lt;/span> spamd spamd &lt;span class="m">4096&lt;/span> Apr &lt;span class="m">7&lt;/span> 17:58 .
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">drwxr-xr-x &lt;span class="m">36&lt;/span> root root &lt;span class="m">4096&lt;/span> Feb &lt;span class="m">25&lt;/span> 00:56 ..
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">-rw------- &lt;span class="m">1&lt;/span> spamd spamd &lt;span class="m">12288&lt;/span> Apr &lt;span class="m">2&lt;/span> 21:34 bayes_seen
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">-rw------- &lt;span class="m">1&lt;/span> spamd spamd &lt;span class="m">12288&lt;/span> Apr &lt;span class="m">2&lt;/span> 17:34 bayes_toks
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">-rw-r--r-- &lt;span class="m">1&lt;/span> spamd spamd &lt;span class="m">1869&lt;/span> Apr &lt;span class="m">1&lt;/span> 17:18 user_prefs
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;/ol>
&lt;p>Done!&lt;/p></description></item><item><title>SFTP Jailed</title><link>https://luiscachog.io/sftp-jailed/</link><pubDate>Tue, 31 Mar 2015 00:00:00 +0000</pubDate><guid>https://luiscachog.io/sftp-jailed/</guid><description>&lt;p>To configure your server to use a jailed user on SFTP you should do:&lt;/p>
&lt;ol>
&lt;li>
&lt;p>Edit the sshd_config file&lt;/p>
&lt;p>We need to comment the following line:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">Subsystem sftp /usr/libexec/openssh/sftp-server
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>And add the uncomment line, your modification will be same as:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">&lt;span class="c1"># Subsystem sftp /usr/libexec/openssh/sftp-server&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">Subsystem sftp internal-sftp
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>Also, at the end of the file we should to add the next lines:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">Match Group sftponly
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">ChrootDirectory %h
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">X11Forwarding no
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">AllowTCPForwarding no
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">ForceCommand internal-sftp
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>After save all the changes, we must restart the sshd daemon&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">service sshd restart
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>Add &lt;strong>sftponly&lt;/strong> group&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">groupadd sftponly
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;ol>
&lt;li>Add jailed user and add to &lt;strong>sftponly&lt;/strong> group&lt;/li>
&lt;/ol>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">useradd -m USERNAME
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">passwd USERNAME
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">usermod -aG sftponly,apache USERNAME
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>&lt;strong>IMPORTANT&lt;/strong>: Create directory and establish correct permissions&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">chown root:root /home/USERNAME
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">chmod &lt;span class="m">755&lt;/span> /home/USERNAME
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">mkdir /home/USERNAME/TEST.DOMAIN.COM
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">chown apache:apache /home/USERNAME/TEST.DOMAIN.COM
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">chmod &lt;span class="m">775&lt;/span> /home/USERNAME/TEST.DOMAIN.COM
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">mkdir /var/www/vhost/TEST.DOMAIN.COM
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">chown apache:apache /var/www/vhost/TEST.DOMAIN.COM
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">chmod &lt;span class="m">775&lt;/span> /var/www/vhost/TEST.DOMAIN.COM
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>Note: &lt;em>If you have any connection problem please double check the permissions on the folders and check the logs on /var/log/secure&lt;/em>&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">tail -f /var/log/secure
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>Mount DocumentRoot path on jailed user home directory&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">mount -o bind,noatime /var/www/vhost/TEST.DOMAIN.COM/ /home/USERNAME/TEST.DOMAIN.COM
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>Make the mount point permanent, editing the fstab file:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">vi /etc/fstab
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>Add the mount point at the end of the file:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">/var/www/vhost/TEST.DOMAIN.COM/ /home/USERNAME/TEST.DOMAIN.COM none bind,noatime &lt;span class="m">0&lt;/span> &lt;span class="m">0&lt;/span>
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>Save and exit&lt;/p>
&lt;/li>
&lt;li>
&lt;p>Test connection:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">sftp SERVERIP
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;/ol></description></item><item><title>View sources IP's in Apache Logs behind a Load Balancer</title><link>https://luiscachog.io/view-sources-ips-apache-logs-behind-loadbalancer/</link><pubDate>Fri, 13 Feb 2015 00:00:00 +0000</pubDate><guid>https://luiscachog.io/view-sources-ips-apache-logs-behind-loadbalancer/</guid><description>&lt;p>When you use the Rackspace Cloud Load Balancers, it is common that the IP logged in Apache is the Private IP (ServiceNet) from the Cloud Load Balancer, however, we can fix that.&lt;/p>
&lt;p>We can view sources IP&amp;rsquo;s in Apache Logs doing some changes on Apache configuration file and also on the vhosts configuration files.&lt;/p>
&lt;p>On your Apache configuration file, you should to find the line:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">LogFormat &lt;span class="s2">&amp;#34;%h %l %u %t \&amp;#34;%r\&amp;#34; %&amp;amp;gt;s %b \&amp;#34;%{Referer}i\&amp;#34; \&amp;#34;%{User-Agent}i\&amp;#34;&amp;#34;&lt;/span> combined
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>Modified to:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">LogFormat &lt;span class="s2">&amp;#34;%{X-Forwarded-For}i %h %l %u %t \&amp;#34;%r\&amp;#34; %&amp;amp;gt;s %O \&amp;#34;%{Referer}i\&amp;#34; \&amp;#34;%{User-Agent}i\&amp;#34;&amp;#34;&lt;/span> combined
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>And also, on your vhosts configuration files you should to change the &amp;ldquo;combined&amp;rdquo; LogFormat definition will then be called in a &amp;ldquo;CustomLog&amp;rdquo; entry specific to your VirtualHost configuration.
Here is an example VirtualHost definition to show you what I&amp;rsquo;m referring to:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">ServerAdmin webmaster@example.com
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">DocumentRoot /var/www/html/example.com
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">ServerName example.com
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">ErrorLog logs/example.com-error_log
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">CustomLog logs/example.com-access_log combined
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>After adding the X-Forwarded-For definition to the LogFormat definition, you can restart Apache and view the logs to notice the difference.
If all is done properly, you will see an actual public IP in the first field of your logs instead of the Cloud Load Balancer IP.&lt;/p></description></item><item><title>Yosemite stuck on boot process</title><link>https://luiscachog.io/yosemite-stuck-boot-process/</link><pubDate>Thu, 08 Jan 2015 00:00:00 +0000</pubDate><guid>https://luiscachog.io/yosemite-stuck-boot-process/</guid><description>&lt;p>Sometimes, I&amp;rsquo;m having problems with my Mac, when it&amp;rsquo;s sleep (hibernate) and I tried to &amp;ldquo;wake up&amp;rdquo; the Mac doesn&amp;rsquo;t start, and it shows me a Black Screen.
So, I&amp;rsquo;ve rebooted and after that it is stuck on the boot process.&lt;/p>
&lt;p>So, I&amp;rsquo;ve found these solution to avoid that Yosemite stuck on the boot process:&lt;/p>
&lt;p>A. Enter to Single-user or verbose mode&lt;/p>
&lt;ol>
&lt;li>
&lt;p>Shutdown the Mac&lt;/p>
&lt;/li>
&lt;li>
&lt;p>Press the power button to start the computer&lt;/p>
&lt;/li>
&lt;li>
&lt;p>Immediately press and hold the Command Key and either of the following&lt;/p>
&lt;/li>
&lt;/ol>
&lt;pre>&lt;code>* the &amp;quot;s&amp;quot; key for single-user mode (Command-S)
* the &amp;quot;v&amp;quot; key for verbose mode (Command-V)
&lt;/code>&lt;/pre>
&lt;p>B. When you login on the Mac, you should run the following commands:&lt;/p>
&lt;pre>&lt;code>```shell
/sbin/mount -uw /
rm -rf /System/Library/Caches/*
rm /private/var/db/BootCache.playlsit
reboot
```
&lt;/code>&lt;/pre>
&lt;p>After the reboot, your Mac will boot as always.&lt;/p>
&lt;p>🙂&lt;/p></description></item><item><title>How to Update a ThemeForest Theme with the Envato WordPress Toolkit</title><link>https://luiscachog.io/update-themeforest-themes-envato-wordpress-toolkit/</link><pubDate>Mon, 10 Nov 2014 00:00:00 +0000</pubDate><guid>https://luiscachog.io/update-themeforest-themes-envato-wordpress-toolkit/</guid><description>&lt;p>I&amp;rsquo;ve purchased some themes on ThemeForest.com because they&amp;rsquo;re great. So this time I want to write about &amp;ldquo;How to Update ThemeForest Themes with the Envato WordPress Toolkit&amp;rdquo;.&lt;/p>
&lt;p>First of all, Envato WordPress Toolkit it is very similar to a WordPress plugin.
The installation it is the only difference. So I will explain how install the &amp;ldquo;plugin&amp;rdquo; and how to use in order to get the last update from your theme.&lt;/p>
&lt;ol>
&lt;li>
&lt;p>Envato WordPress Toolkit is NOT available on WordPress Repositories, so you will to download from Github. &lt;a href="https://github.com/envato/envato-wordpress-toolkit" target="_blank" rel="noopener">https://github.com/envato/envato-wordpress-toolkit&lt;/a>&lt;/p>
&lt;/li>
&lt;li>
&lt;p>After you download the .ZIP file, you should be able to install from the WordPress Plugin Manager. Or you could upload the &lt;strong>envato-wordpress-toolkit&lt;/strong> folder to the &lt;code>/wp-content/plugins/&lt;/code> directory.&lt;/p>
&lt;/li>
&lt;li>
&lt;p>Activate the Plugin from the WordPress Plugin Manager.&lt;/p>
&lt;/li>
&lt;li>
&lt;p>You will need to generate an API key from your Themeforest account.&lt;/p>
&lt;ol>
&lt;li>In order to get your API key from Themeforest, you should login to themeforest.com, go to your dashboard and click on &lt;strong>My Settings&lt;/strong> The API Keys screen allows you to generate a free API key.&lt;/li>
&lt;/ol>
&lt;figure id="figure-envato-api-key">
&lt;div class="d-flex justify-content-center">
&lt;div class="w-100" >&lt;img alt="Generate Envato API Key" srcset="
/media/posts/update-themeforest-themes-envato-wordpress-toolkit/generate-api-key_hu79f87149a8509f91806f4c36cecc87ef_48069_4eb5737a3c03bed98c53647532a3f590.webp 400w,
/media/posts/update-themeforest-themes-envato-wordpress-toolkit/generate-api-key_hu79f87149a8509f91806f4c36cecc87ef_48069_766063b7ba80e0dd8b93f3fee0009839.webp 760w,
/media/posts/update-themeforest-themes-envato-wordpress-toolkit/generate-api-key_hu79f87149a8509f91806f4c36cecc87ef_48069_1200x1200_fit_q90_h2_lanczos_3.webp 1200w"
src="https://luiscachog.io/media/posts/update-themeforest-themes-envato-wordpress-toolkit/generate-api-key_hu79f87149a8509f91806f4c36cecc87ef_48069_4eb5737a3c03bed98c53647532a3f590.webp"
width="585"
height="493"
loading="lazy" data-zoomable />&lt;/div>
&lt;/div>&lt;figcaption>
Generate Envato API Key
&lt;/figcaption>&lt;/figure>
&lt;/li>
&lt;li>
&lt;p>Once the API connection has been established you will see a list of themes that can be auto installed.
If you don&amp;rsquo;t see any themes and are certain you&amp;rsquo;ve done everything correct, there is a good chance the theme author has not updated their theme to be available for auto install and update.
If that&amp;rsquo;s the case, please contact the theme author and ask them to update their theme&amp;rsquo;s information.&lt;/p>
&lt;figure id="figure-envato-theme-autoupdate">
&lt;div class="d-flex justify-content-center">
&lt;div class="w-100" >&lt;img alt="Envato Theme Autoupdate" srcset="
/media/posts/update-themeforest-themes-envato-wordpress-toolkit/theme-autoupdate_hu268c77734e5fb68b0dd1f925fae254b4_10949_23f0595c735a2755b0781d9e01fffb7e.webp 400w,
/media/posts/update-themeforest-themes-envato-wordpress-toolkit/theme-autoupdate_hu268c77734e5fb68b0dd1f925fae254b4_10949_e50aef30fc005b4250dd78e628dcf77e.webp 760w,
/media/posts/update-themeforest-themes-envato-wordpress-toolkit/theme-autoupdate_hu268c77734e5fb68b0dd1f925fae254b4_10949_1200x1200_fit_q90_h2_lanczos_3.webp 1200w"
src="https://luiscachog.io/media/posts/update-themeforest-themes-envato-wordpress-toolkit/theme-autoupdate_hu268c77734e5fb68b0dd1f925fae254b4_10949_23f0595c735a2755b0781d9e01fffb7e.webp"
width="543"
height="94"
loading="lazy" data-zoomable />&lt;/div>
&lt;/div>&lt;figcaption>
Envato Theme Autoupdate
&lt;/figcaption>&lt;/figure>
&lt;/li>
&lt;/ol>
&lt;p>This &amp;ldquo;plugin&amp;rdquo; very helpful to get your themes updated. I hope works for you as well as with me.&lt;/p></description></item><item><title>MySQL reset root password</title><link>https://luiscachog.io/mysql-reset-root-password/</link><pubDate>Wed, 30 Jul 2014 00:00:00 +0000</pubDate><guid>https://luiscachog.io/mysql-reset-root-password/</guid><description>&lt;p>Hello,&lt;/p>
&lt;p>This time I share with you the faster and more secure method to reset the root password of MySQL.&lt;/p>
&lt;p>This method is faster because the downtime is between 1 or 2 seconds (MySQL restart time) and it is more secure because the mysqld is not started without grants on the tables.&lt;/p>
&lt;p>The steps are:&lt;/p>
&lt;ol>
&lt;li>
&lt;p>Create text file /var/lib/mysql/mysql-init with the sintaxis to reset the password for user root:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">vim /var/lib/mysql/mysql-init
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-sql" data-lang="sql">&lt;span class="line">&lt;span class="cl">&lt;span class="k">SET&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="n">PASSWORD&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="k">FOR&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="s1">&amp;#39;root&amp;#39;&lt;/span>&lt;span class="o">@&lt;/span>&lt;span class="s1">&amp;#39;localhost&amp;#39;&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="o">=&lt;/span>&lt;span class="w"> &lt;/span>&lt;span class="n">PASSWORD&lt;/span>&lt;span class="p">(&lt;/span>&lt;span class="s1">&amp;#39;new_password&amp;#39;&lt;/span>&lt;span class="p">);&lt;/span>&lt;span class="w">
&lt;/span>&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>Add under the [mysqld] stanza on the file /etc/my.cnf:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">init-file&lt;span class="o">=&lt;/span>/var/lib/mysql/mysql-init
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>Restart the mysqld service:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">service mysqld restart
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;li>
&lt;p>Remove the init-file line from /etc/my.cnf&lt;/p>
&lt;/li>
&lt;li>
&lt;p>Remove /var/lib/mysql/mysql-init&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">rm /var/lib/mysql/mysql-init
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;/li>
&lt;/ol>
&lt;p>And after that, you can access again to your mysql instance.&lt;/p>
&lt;p>&amp;#x1f604;&lt;/p></description></item><item><title>MySQL without password</title><link>https://luiscachog.io/mysql-without-password/</link><pubDate>Tue, 15 Apr 2014 00:00:00 +0000</pubDate><guid>https://luiscachog.io/mysql-without-password/</guid><description>&lt;p>The common form to log in to MySQL server, is running a mysql command with your login credentials and server&amp;rsquo;s IP address as arguments. For example:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">mysql -u &lt;span class="nv">$MYSQL_ROOT&lt;/span> -p&lt;span class="nv">$MYSQL_PASS&lt;/span>
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>However, besides the inconvenience of typing extra arguments, using plain-text login credentials in a command line like above is really not a secure way to access a MySQL server.&lt;/p>
&lt;p>MySQL offers a way for you to log in to MySQL server without password, by using an external MySQL configuration file. In Linux, there are two different kinds of MySQL configuration files:&lt;/p>
&lt;ol>
&lt;li>/etc/my.cnf and&lt;/li>
&lt;li>~/.my.conf&lt;/li>
&lt;/ol>
&lt;p>While any system-wide MySQL configuration is defined in /etc/my.cnf, any user-specific MySQL configuration is stored in ~/.my.cnf.
You can leverage ~/.my.cnf, to define your MySQL login credential in the file.&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">vim ~/.my.cnf
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>We put our MySQL user in the configuration file:&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">&lt;span class="o">[&lt;/span>client&lt;span class="o">]&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="nv">user&lt;/span>&lt;span class="o">=&lt;/span>root
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">&lt;span class="nv">password&lt;/span>&lt;span class="o">=&lt;/span>&lt;span class="nv">$PASSWORD_ROOT&lt;/span>
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>Make sure to have the configuration file readable to you only.&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">chmod &lt;span class="m">0600&lt;/span> ~/.my.cnf
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div>&lt;p>Once ~/.my.cnf is created, simply typing mysql command will let you log in to the MySQL server as root, and you no longer need to provide login password separately.&lt;/p>
&lt;div class="highlight">&lt;pre tabindex="0" class="chroma">&lt;code class="language-shell" data-lang="shell">&lt;span class="line">&lt;span class="cl">mysql
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">Welcome to the MySQL monitor. Commands end with &lt;span class="p">;&lt;/span> or &lt;span class="se">\g&lt;/span>.
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">Your MySQL connection id is &lt;span class="m">14787&lt;/span>
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">Server version: 5.1.73 Source distribution
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">Copyright &lt;span class="o">(&lt;/span>c&lt;span class="o">)&lt;/span> 2000, 2013, Oracle and/or its affiliates. All rights reserved.
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">Oracle is a registered trademark of Oracle Corporation and/or its
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">affiliates. Other names may be trademarks of their respective
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">owners.
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">Type &lt;span class="s1">&amp;#39;help;&amp;#39;&lt;/span> or &lt;span class="s1">&amp;#39;\h&amp;#39;&lt;/span> &lt;span class="k">for&lt;/span> help. Type &lt;span class="s1">&amp;#39;\c&amp;#39;&lt;/span> to clear the current input statement.
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">
&lt;/span>&lt;/span>&lt;span class="line">&lt;span class="cl">mysql&amp;gt;
&lt;/span>&lt;/span>&lt;/code>&lt;/pre>&lt;/div></description></item></channel></rss>