Pwn Plug Community Edition 1.1 Installation Guide



Similar documents
The embedded Linux quick start guide lab notes

Changing Password for Ingate Firewalls/SIParators Rickard Nilsson

Procedure to Create and Duplicate Master LiveUSB Stick

Application Development Kit for Android Installation Guide

SheevaPlug Development Kit README Rev. 1.2

[HOW TO RECOVER AN INFINITI/EVOLUTION MODEM IDX ] 1

Introduction to Operating Systems

c. Securely insert the Ethernet cable from your cable or DSL modem into the Internet port (B) on the WGT634U. Broadband modem

VoIP Laboratory B How to re flash an IP04

AXE027 PICAXE USB CABLE

Matrix 510/520 User Guide

Reboot the ExtraHop System and Test Hardware with the Rescue USB Flash Drive

Wireless Mobile Broadband Setup Guide for Linux OS

Buildroot Workshop. Libre Software Meeting Thomas Petazzoni Free Electrons

Yun Shield User Manual VERSION: 1.0. Yun Shield User Manual 1 / 22.

Hands-on MESH Network Exercise Workbook

Honeywell Internet Connection Module

Quick Start Guide. Quick Start Guide. taskit GmbH. for Portux920T EU / SW Portux Mini-PC Portux Panel-PC Panel-Card MoLUX Stamp

Information Sheet IS13011A. VS Series - Recovering / Installing the Operating System. (For Software Version 4.x) Issue

Booting Palacios/Kitten and Palacios/Linux Over the Network Using PXE

Wavelink Avalanche Mobility Center Linux Reference Guide

Managing Software and Configurations

Quick Start Guide. Cisco SPA232D Mobility Enhanced ATA

User Manual. Onsight Management Suite Version 5.1. Another Innovation by Librestream

Basic Router and Switch Instructions (Cisco Devices)

Chapter 4 Management. Viewing the Activity Log

Guidelines for Using an Ethernet Printer. - Mac OS X - Rev. 1.0

Network Monitoring User Guide Pulse Appliance

Addonics T E C H N O L O G I E S. NAS Adapter. Model: NASU Key Features

Getting started with ARM-Linux

Table of Contents. Rebit 5 Help

IPMI Firmware Update (AMI) In WEB-GUI/DOS/WIN/Linux

SNMP Manager User s Manual

NetPoint Configuration Guide. for thin clients

TimeIPS Server. IPS256T Virtual Machine. Installation Guide

Howto: Changing Password for an Ingate Firewall 1450/1500/1550/1600/1650/1900 or Ingate SIParator 45/50/55/60/65/90

Digi Connect Wan 3G Application Guide Update the firmware, backup and restore the configuration of a Digi Connect Wan 3G using a USB flash drive.

Polycom CMA System Upgrade Guide

In the following installation procedures, do not disconnect the Mediatrix 3000 Series while the LEDs are flashing.

SNMP Manager User s Manual

Network/IP Camera Set up and Re-programming. Leopard Imaging Inc. Jan, 2013.

Networking. General networking. Networking overview. Common home network configurations. Wired network example. Wireless network examples

Quick Start Guide. Cisco SPA100 Series Analog Telephone Adapters. SPA112 Two Port Phone Adapter SPA122 ATA with Router

Debugging Network Communications. 1 Check the Network Cabling

Virtual Appliance for VMware Server. Getting Started Guide. Revision Warning and Disclaimer

Version 1.0. File System. Network Settings

The Barracuda Network Connector. System Requirements. Barracuda SSL VPN

HOWTO: Set up a Vyatta device with ThreatSTOP in router mode

Chapter 3 Management. Remote Management

LOCKSS on LINUX. Installation Manual and the OpenBSD Transition 02/17/2011

How Do I Recover infiniti Remotes and Line Cards?

Waspmote IDE. User Guide

PBX DIGITAL TELEPHONE EXCHANGE MAINTENANCE GUIDE

integration tools setup guide SIM 3 Remote Guide to controlling a SIM 3 Audio Analyzer remotely over a network connection from a laptop

USER MANUAL for USB to serial converter (PL2303)

Enabling individual experiments in KAUMesh Case Study Final Report

2010 MegaPath Inc. All rights reserved. Confidential and Proprietary 2

VoIP Zone Controller: 4-Port Audio Out Operations Guide

Integrated Management 2.1. Network Management Applications and Device Managers Configuration

Apple Server Diagnostics User Guide. For Version 3X106

TE100-P21/TEW-P21G Windows 7 Installation Instruction

YubiKey OSX Login. yubico. Via Yubico-PAM Challenge-Response. Version 1.6. October 24, 2015

DKTCOMEGA AONode Management Module User Documentation

BeagleBone Black: Installing Operating Systems

P-2612HNU-Fx n ADSL2+ VoIP IAD DEFAULT LOGIN DETAILS. Firmware V3.00 Edition 1, 1/2010. Password: 1234 User Name: admin Password: 1234

How to configure Linksys SPA for VOIP Connections

HL2170W Windows Network Connection Repair Instructions

Asterisk SIP Trunk Settings - Vestalink

ACP ThinManager Tech Notes Troubleshooting Guide

Chapter 6 Using Network Monitoring Tools

How To Check If Your Router Is Working Properly On A Nr854T Router (Wnr854) On A Pc Or Mac) On Your Computer Or Ipad (Netbook) On An Ipad Or Ipa (Networking

Setting up Digi Connect Wi-SP or Digi ConnectPort TS W Devices On a Secured Wireless Network for use with Veriteq viewlinc

How to install PowerChute Network Shutdown on VMware ESXi 3.5, 4.0 and 4.1

How to Install Applications (APK Files) on Your Android Phone

Field Alert - FA B

Welcome. Unleash Your Phone

February Fabric OS. Password Recovery Notes. Supporting Fabric OS v6.x, v5.x, v4.x, v3.x, v2.6.x

How Do I Upgrade Firmware and Save Configurations on PowerConnect Switches?

Broadband Router ESG-103. User s Guide

Job Aid: Replacing the Hard Drive on the Avaya S8710 Media Servers R2.2 or Later

Positron G-320 Business Phone System Setup Guide

AP6511 First Time Configuration Procedure

Getting Started Guide

BIT COMMANDER. Serial RS232 / RS485 to Ethernet Converter

Equalizer VLB Beta I. Copyright 2008 Equalizer VLB Beta I 1 Coyote Point Systems Inc.

ipac-5010 User Guide + -

Track One Building a connected home automation device with the Digi ConnectCore Wi-i.MX51 using LinuxLink

MobileLite Wireless G2 5-in-1 Mobile Companion User Manual

Management Software. Web Browser User s Guide AT-S106. For the AT-GS950/48 Gigabit Ethernet Smart Switch. Version Rev.

Configuring MassTransit Server to listen on ports less than 1024 using WaterRoof on Macintosh Workstations

1 MAXDATA Modular System Firmware Update

Install Guide for JunosV Wireless LAN Controller

1-Port Wireless USB 2.0 Print Server Model # APSUSB201W. Quick Installation Guide. Ver. 2A

BF2CC Daemon Linux Installation Guide

Intel Entry Storage System SS4000-E

Lab Configuring Access Policies and DMZ Settings

PREFACE iss.01 -

CommandCenter Secure Gateway

Ethernet 241 Discovery Tool User Manual

Transcription:

Copyright 2012 Rapid Focus Security, LLC, DBA Pwnie Express. Revision 5.21.2012 Pwn Plug Community Edition 1.1 Installation Guide Contents: Legal stuff Release 1.1 Features Download the installation package Configure a TFTP server Connect to the Pwn Plug serial console Upgrade the Pwn Plug U-boot software Upgrade the Pwn Plug Linux kernel Install the Pwn Plug 1.1 root filesystem Community Edition Support WARNING: This installation process will permanently erase all data on your Pwn Plug. Any data you wish to preserve should be copied from your Pwn Plug to an SD card or USB flash drive before proceeding. Legal stuff The Pwn Plug Community Edition software image is provided free of charge under the GNU Public License (http:// www.gnu.org/licenses/gpl.html). All Pwnie Express / Rapid Focus Security products are for legally authorized uses only. By using this software you accept all responsibility for its use. As with any software application, any downloads/transfers of this software are subject to export controls under the U.S. Commerce Department's Export Administration Regulations (EAR). By using this software you certify your complete understanding of and compliance with these regulations. Release 1.1 Features OS & performance improvements: OS upgraded to Debian 6 (Squeeze) 20-second boot up Faster file-system (UBIFS) New wireless features: Support for 802.11n and hundreds of new wireless devices

JP Ronin s Bluetooth pentesting suite Kismet new-core with Ubertooth support Zigbee support (thanks Travis Goodspeed!)..and of course, more tools! Over 50 new pentesting tools Web app testing tools, including w3af Database/SQL testing tools THC IPv6 toolkit VoIP testing tools Download the installation package If you haven t done so already, the Pwn Plug installation package can be downloaded from here: http://www.pwnieexpress.com/downloads.html Note: The current Community Edition package name is pwnplug_1.1_community_5-21-2012.tar.gz Configure a TFTP server The Pwn Plug will download the installation files from this TFTP server during the installation process. Note: These instructions are specific to Ubuntu/Debian-based distributions (Backtrack 5 recommended). Other *nix variants may be used as your TFTP server, though the specific configuration steps may vary. 1. Open a command terminal on the Linux computer you ll be using as the TFTP server. 2. Enter the following commands (as the root user) to set up the TFTP server: # mkdir /tftproot # chmod 777 /tftproot # apt-get install openbsd-inetd tftpd # echo "tftp dgram udp wait nobody /usr/sbin/tcpd /usr/sbin/in.tftpd / tftproot" > /etc/inetd.conf # service openbsd-inetd restart Tip: If a software firewall is running on your TFTP server, either disable it during this installation process or create a rule allowing inbound connections to UDP port 69. 3. Copy the Pwnie Express update package to the TFTP root: # cp pwnplug_1.1_community_5-21-2012.tar.gz /tftproot 4. Extract the contents of the Pwnie Express update package: # cd /tftproot

# tar zxvf pwnplug_1.1_community_5-21-2012.tar.gz Connect to the Pwn Plug serial console 1. Power up the Pwn Plug and connect the Ethernet interface to the same network as the TFTP server. 2. Connect the supplied mini-usb cable between the plug s mini-usb serial port and a Linux machine. On some older Linux kernels, the following commands may be required: # modprobe usbserial # modprobe ftdi_sio vendor=0x9e88 product=0x9e8f Tip: For Windows/Mac systems see: http://plugcomputer.org/plugwiki/index.php/serial_terminal 3. Connect to the plug s serial console using screen: # screen /dev/ttyusb0 115200 Tip: If screen terminates after a few seconds, use dmesg to confirm the plug is showing up as a USB serial device. Example: [15360.948161] usb 5-3: FTDI USB Serial Device converter now attached to ttyusb0 If the serial interface is showing up as something other than ttyusb0 (such as ttyusb1), adjust the screen command accordingly. 3. Press ENTER twice Tip: If a login/command prompt does not appear, try CTRL+C. 4. At the login prompt, login as root. The default root user password is: pwnplug8000 Tip: To exit a screen session, press CTRL+A, then backslash ( \ ) Upgrade the Pwn Plug U-boot software Tip: Copying the U-boot commands directly from this document and pasting into the Marvell>> prompt is recommended whenever possible. 1. In the Pwn Plug bash prompt type reboot and press ENTER 2. Tap the ENTER key during plug startup to enter the U-boot console ("Marvell>>" prompt). Tip: If you miss the 3-second startup window, use a paper clip to press the plug s reset button. The reset button is behind the small hole to the right of the plug s SD card slot. 3. Check your U-boot version by entering the following command: version 4. If your U-boot version matches the output below, your U-boot is already up to date - skip to the next section Upgrade the Pwn Plug Linux kernel. Otherwise, continue to the next step.

U-Boot 2011.12 (Jan 08 2012-21:53:47) 5. Enter the following command at the Marvell>> prompt. print ethaddr Tip: Do *not* press any navigational keys (arrow keys, Home/End, etc) while in the U-boot console as this may interfere with your terminal commands. 6. Copy the MAC address provided and paste it into a temporary text file (you will need it later). 7. Enter the following command to acquire an IP address from your DHCP server. dhcp 8. Enter the following command to confirm connectivity to your TFTP server (where x.x.x.x is the IP address of your TFTP server). ping x.x.x.x 9. If the plug does not immediately respond with Host x.x.x.x is alive, verify the plug and TFTP server are on the same network. 10. Enter the following command (where x.x.x.x is the IP address of your TFTP server). setenv serverip x.x.x.x 11. Enter the following command to download the new U-boot image to a temporary location in memory. You will see a string of # symbols during the download. tftpboot 0x0800000 u-boot.kwb Important: If you see Loading: T T T..., this indicates a timeout while trying to contact the TFTP server. If this occurs, verify network connectivity between the plug and the TFTP server, verify the TFTP server is running and listening on UDP port 69, then reset the plug and return to step 1 in this section. 12. Enter the following two commands to erase the U-boot partition and write the new U-boot image. nand erase 0x0 0x60000 nand write 0x0800000 0x0 0x60000 13. Enter the following command to reboot the plug, then immediately tap the ENTER key during plug startup to reenter the U-boot console ("Marvell>>" prompt). reset 14. Enter the following command (where xx:xx:xx:xx:xx:xx is the MAC address copied in step 4). setenv ethaddr xx:xx:xx:xx:xx:xx 15. Enter the following command to save your changes.

saveenv Upgrade the Pwn Plug Linux kernel Tip: Copying the U-boot commands directly from this document and pasting into the Marvell>> prompt is recommended whenever possible. 1. Enter the following command to download the Linux 2.6.37 kernel image (where x.x.x.x is the IP address of your TFTP server). dhcp 0x2000000 x.x.x.x:sheeva-2.6.37-uimage 2. Enter the following two commands to erase the kernel partition and write the new kernel image. nand erase 0x100000 0x400000 nand write 0x2000000 0x100000 0x400000 Install the Pwn Plug 1.1 root filesystem Tip: Copying the U-boot commands directly from this document and pasting into the Marvell>> prompt is recommended whenever possible. 1. Enter the following command to download the root filesystem image (where x.x.x.x is the IP address of your TFTP server). Note the download may take several minutes. dhcp 0x2000000 x.x.x.x:pwnplug_1.1_community_ubinized_5-21-2012.img 2. Enter the following two commands to erase the filesystem partition and write the new filesystem image. Note that writing the filesystem image to flash memory ( nand write command) typically takes 3-5 minutes. nand erase 0x500000 0x1fb00000 nand write.e 0x2000000 0x500000 0x14680000 3. Copy the following command block and paste into the Marvell>> prompt. Note this is all one command. setenv bootargs console=ttys0,115200 mtdparts=orion_nand:0x400000@0x100000(uimage),0x1fb00000@0x500000(rootfs) ubi.mtd=1 root=ubi0:rootfs rootfstype=ubifs;setenv bootcmd 'nand read.e 0x800000 0x100000 0x400000; bootm 0x800000';setenv mainlinelinux yes;setenv arcnumber 2097 4. Enter the following two commands to save your changes and reset your plug. saveenv

reset 5. Allow the plug to fully boot the newly flashed operating system (do not press any keys during startup). 6. Login (root:pwnplug8000) and verify the Pwnie Express splash message is displayed, showing the newly flashed kernel version and Pwn Plug software version. Community Edition Support Public support forum for Community Edition software can be found here: http://forum.pwnieexpress.com/