[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[no subject]



> Yep. I have a 12 year old who knows how to use a boot floppy with Fedora
> Core 2 and a series of kickstart files I've been modifying over time.
> Beats me having to "cut my own grass".  :)
Hmmmm... Knows kickstart installs and mows grass.  That's a strong resume.    
Is he finacially motivated? 


On Tuesday 06 July 2004 02:19 pm, James P. Kinney III wrote:
> On Mon, 2004-07-05 at 23:16, Christopher Fowler wrote:
&gt; &gt; <a  rel="nofollow" href="http://www.hotbrick.com/vpn1200.html";>http://www.hotbrick.com/vpn1200.html</a>
&gt; &gt;
&gt; &gt; Try that one out.
&gt; &gt;
&gt; &gt; I know I'll draw flames bit I tend to see two mindsets in this list
&gt; &gt; group.
&gt; &gt;
&gt; &gt; The first one is those who want to reinvent the wheel to learn the
&gt; &gt; internals. The others are those who value their money far more than their
&gt; &gt; time.
&gt;
&gt; That's one way to look at it. I usually wind up in the &quot;reinvent the
&gt; wheel&quot; camp as I want to _know_ what is going on with what I support. In
&gt; reality, I don't reinvent the wheel, though. I do what Linux is based. I
&gt; start from the work of giants before me and tailor a solution to my
&gt; clients needs. Most of the time the &quot;standard&quot; solutions are just fine.
&gt; Over time, however, all of the standard solutions turn into custom
&gt; solutions as the clients needs change. I've been locked into situations
&gt; before using &quot;smart&quot; hardware. It is an unsatisfying experience being
&gt; tasked with fitting the square peg into the round hole.
&gt;
&gt; &gt; When you start doing consultgin you realize that your time could
&gt; &gt; be valuable.  You start doing crazy stuff like paying other people
&gt; &gt; to cut your grass.
&gt;
&gt; Yep. I have a 12 year old who knows how to use a boot floppy with Fedora
&gt; Core 2 and a series of kickstart files I've been modifying over time.
&gt; Beats me having to &quot;cut my own grass&quot;.  :)
&gt;
&gt; &gt; On Mon, Jul 05, 2004 at 11:01:07PM -0400, David Hamm wrote:
&gt; &gt; &gt; Chris,
&gt; &gt; &gt;
&gt; &gt; &gt; &gt; Sub $100 is a good target but might not have all the features.
&gt; &gt; &gt;
&gt; &gt; &gt; Your right and that's why I posed the question to the group.  The unit
&gt; &gt; &gt; I am considering is this one.
&gt; &gt; &gt;
&gt; &gt; &gt; <a  rel="nofollow" href="http://www.netgear.com/products/details/FVL328.php?view=sb";>http://www.netgear.com/products/details/FVL328.php?view=sb</a>
&gt; &gt; &gt;
&gt; &gt; &gt; It sells for around $400.00 but doesn't support OSPF.  I was hoping
&gt; &gt; &gt; someone on the list had experience some other vendor and could suggest
&gt; &gt; &gt; a firewall that did support OSPF  Recently I installed a layer 3 switch
&gt; &gt; &gt; from D-Link the price was much less than expected, it worked great and
&gt; &gt; &gt; was easy to set up.  I'd hoped to get a simlar experience from on this
&gt; &gt; &gt; firewall
&gt; &gt; &gt;
&gt; &gt; &gt; Thanks for your suggestions.  I seem to remember something about a
&gt; &gt; &gt; &quot;hot? brick&quot; firewall too.
&gt; &gt; &gt;
&gt; &gt; &gt; On Monday 05 July 2004 09:41 pm, Christopher Fowler wrote:
&gt; &gt; &gt; &gt; Honestly though what I do at home is different that what I would
&gt; &gt; &gt; &gt; reccomend a commercail outfit.  I would never ask one of my customers
&gt; &gt; &gt; &gt; to go to BestBuy and purchase a firewall for their corporation.
&gt; &gt; &gt; &gt;
&gt; &gt; &gt; &gt; I've seen a sub $500 product that also looked good.  It was called a
&gt; &gt; &gt; &gt; Hot Brick. I believe the 12 port unit was $600 and the 6 port was
&gt; &gt; &gt; &gt; under 5.  In reality all I need for my firewall device is a Wan port
&gt; &gt; &gt; &gt; and Lan port. Cisco switches can make up for the rest.
&gt; &gt; &gt; &gt;
&gt; &gt; &gt; &gt; I have a habit of buying cheap switches from Micro Center that have
&gt; &gt; &gt; &gt; rebates. For me that is okay.  I have many on the network and it
&gt; &gt; &gt; &gt; seems that they just do not like to work very well together.  I have
&gt; &gt; &gt; &gt; to place my laptop on an old 10mb hub because SMB traffic fails on
&gt; &gt; &gt; &gt; these switches. Everything else works great.  It could be Zinc
&gt; &gt; &gt; &gt; Whiskers or the fact these are cheap products that are geared for the
&gt; &gt; &gt; &gt; end user at home.
&gt; &gt; &gt; &gt;
&gt; &gt; &gt; &gt; On Mon, Jul 05, 2004 at 05:36:16PM -0400, David Hamm wrote:
&gt; &gt; &gt; &gt; &gt; On Monday 05 July 2004 11:13 am, James P. Kinney III wrote:
&gt; &gt; &gt; &gt; &gt; &gt; There is a series of firewall products whose name brand escapes
&gt; &gt; &gt; &gt; &gt; &gt; me (search on slashdot) that has a backdoor password that was
&gt; &gt; &gt; &gt; &gt; &gt; embedded. The patch was a flash upgrade that turned off the
&gt; &gt; &gt; &gt; &gt; &gt; password use from the outside connection. Further study showed
&gt; &gt; &gt; &gt; &gt; &gt; the power reset would revert back to the default allow remote
&gt; &gt; &gt; &gt; &gt; &gt; login with backdoor password.
&gt; &gt; &gt; &gt; &gt;
&gt; &gt; &gt; &gt; &gt; The units you are speaking of are Linksys's WRT54G and NetGear's
&gt; &gt; &gt; &gt; &gt; WG602. They are both both wireless gateways and I didn't find
&gt; &gt; &gt; &gt; &gt; similar problems with other products from these manufacturers.
&gt; &gt; &gt; &gt; &gt;
&gt; &gt; &gt; &gt; &gt; &gt; see above. If I get the time today, I'll dig up the references I
&gt; &gt; &gt; &gt; &gt; &gt; was reading on this. It's about 2 months old (or so)
&gt; &gt; &gt; &gt; &gt; &gt;
&gt; &gt; &gt; &gt; &gt; &gt; The VPN in many off the shelf devices is PPtP which has numerous,
&gt; &gt; &gt; &gt; &gt; &gt; well known vulnerabilities. PPtP is used often as it is easy to
&gt; &gt; &gt; &gt; &gt; &gt; do and older M$ machines support it easily with little support
&gt; &gt; &gt; &gt; &gt; &gt; needed to set it up.
&gt; &gt; &gt; &gt; &gt; &gt;
&gt; &gt; &gt; &gt; &gt; &gt; When I think of a VPN, I'm thinking IPSec with pre-shared keys.
&gt; &gt; &gt; &gt; &gt; &gt; There are many firewall boxes that support IPSec with pre-shared
&gt; &gt; &gt; &gt; &gt; &gt; keys. None are in the $100 range. All require additional license
&gt; &gt; &gt; &gt; &gt; &gt; purchase for multiple VPN client access.
&gt; &gt; &gt; &gt; &gt; &gt;
&gt; &gt; &gt; &gt; &gt; &gt; A _real_ VPN server can act as the end point for the VPN tunnel.
&gt; &gt; &gt; &gt; &gt; &gt; Most of the firewall devices out there _support_ VPN by merely
&gt; &gt; &gt; &gt; &gt; &gt; passing IPSec datagrams freely. They do not act as a VPN server
&gt; &gt; &gt; &gt; &gt; &gt; or client.
&gt; &gt; &gt; &gt; &gt;
&gt; &gt; &gt; &gt; &gt; Take a look at this.  If you still don't believe they do IPSec we
&gt; &gt; &gt; &gt; &gt; can have a VNC session and you can watch me set up a couple of
&gt; &gt; &gt; &gt; &gt; tunnels if you still don't believe it.
&gt; &gt; &gt; &gt; &gt;
&gt; &gt; &gt; &gt; &gt; <a  rel="nofollow" href="http://netgear.com/products/prod_details.php?prodID=129&amp;view=sb";>http://netgear.com/products/prod_details.php?prodID=129&amp;view=sb</a>
&gt; &gt; &gt; &gt; &gt;
&gt; &gt; &gt; &gt; &gt; &gt; **NOTE** I don't regularly check all the stats on new network
&gt; &gt; &gt; &gt; &gt; &gt; hardware that does in silicon what I prefer to do in RAM. The
&gt; &gt; &gt; &gt; &gt; &gt; last sweep of firewall technology I did was Feb. 2004 and that
&gt; &gt; &gt; &gt; &gt; &gt; was of corporate firewall products that support IPSec. None of
&gt; &gt; &gt; &gt; &gt; &gt; those was less than $1500.
&gt; &gt; &gt; &gt; &gt; &gt;
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; All of the off-the-shelf firewall devices are generic boxes
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; that are cookie cutter rule sets for a limited set of
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; protection scenarios. The ability to ssh into the firewall
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; and adjust as needed is absolutely priceless.
&gt; &gt; &gt; &gt; &gt; &gt; &gt;
&gt; &gt; &gt; &gt; &gt; &gt; &gt; Yes, I like ssh and IPtables too but this isn't a problem for
&gt; &gt; &gt; &gt; &gt; &gt; &gt; that solution.
&gt; &gt; &gt; &gt; &gt; &gt;
&gt; &gt; &gt; &gt; &gt; &gt; Then have the client spend the $100 for &quot;The Emperors New
&gt; &gt; &gt; &gt; &gt; &gt; Clothes&quot; firewall product. Make sure you get a release of
&gt; &gt; &gt; &gt; &gt; &gt; liability document signed before you put it in. If it is a
&gt; &gt; &gt; &gt; &gt; &gt; product that _you_ recommend, you WILL be the first person called
&gt; &gt; &gt; &gt; &gt; &gt; on a problem. I have found supporting products that I don't have
&gt; &gt; &gt; &gt; &gt; &gt; complete and full access to difficult at best and impossible at
&gt; &gt; &gt; &gt; &gt; &gt; worst. I don't like being in the position of having the
&gt; &gt; &gt; &gt; &gt; &gt; responsibility for a situation but not the authority to do what I
&gt; &gt; &gt; &gt; &gt; &gt; see is best to make the solution happen.
&gt; &gt; &gt; &gt; &gt;
&gt; &gt; &gt; &gt; &gt; I'm sorry, this discussion has ended as far as I am concerned.  The
&gt; &gt; &gt; &gt; &gt; only real help I got was from Chris suggesting I look at a new
&gt; &gt; &gt; &gt; &gt; vendor.  The above comments don't posses and characteristics of
&gt; &gt; &gt; &gt; &gt; prductive dialog and could easily be detrimental to some.
&gt; &gt; &gt; &gt; &gt;
&gt; &gt; &gt; &gt; &gt; &gt; &gt; On Sunday 04 July 2004 08:31 pm, James P. Kinney III wrote:
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; On Sun, 2004-07-04 at 16:15, David Hamm wrote:
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; Thanks for the links and suggestions but this firewall is
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; for a client and building a custom firewall will not be
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; price competitive; Especially if you consider the ease of
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; use available for $100 from Netgear and D-Link.
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt;
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; Both of those have known security issues. Neither support VPN
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; connections directly. Having a hardware device that has had a
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; backdoor password that is HARDCODED into the silicon and well
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; published is a waste of cash. One the power blinks, they go
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; back to the default backdoor settings.
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt;
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; The upfront cost of buying a supportable setup is negligible
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; compared to the replacement cost over time of upgrading the
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; firewall hardware system everytime a new feature to stop a
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; new style of attack is not upgradeable by a flash of the
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; bios.
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt;
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; All of the off-the-shelf firewall devices are generic boxes
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; that are cookie cutter rule sets for a limited set of
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; protection scenarios. The ability to ssh into the firewall
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; and adjust as needed is absolutely priceless.
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt;
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; Besides, how else are you going to run Bob's ruleset?!
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt;
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; On Sunday 04 July 2004 03:40 pm, Dow Hurst wrote:
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; David Hamm wrote:
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; Hi,
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt;
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; I'm looking for a firewall that supports IPSEC for VPN
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; and OSPF. Netgear has
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; stuff I found attractive but with no OSPF support.
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; Moving parts (ie fans and
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; disks ), and user licensing are out. Anyone have any
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; suggestions?
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt;
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; Thanks.
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; _______________________________________________
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; Ale mailing list
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; Ale at ale.org
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; <a  rel="nofollow" href="http://www.ale.org/mailman/listinfo/ale";>http://www.ale.org/mailman/listinfo/ale</a>
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt;
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; Look at building it yourself using Slackware, Bob Toxen's
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; second edition of his book, and a Epia based fanless
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; supersmall machine with dual builtin NICs.  His book has
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; drop in iptables rules that are excellent. Once you get
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; that far then going thru the IPSEC Howto is not too
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; difficult.  Just involves a kernel module compile and
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; insertion.
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt;
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt;
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt;
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; Links:
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; <a  rel="nofollow" href="http://www.tldp.org/HOWTO/VPN-Masquerade-HOWTO.html#toc3";>http://www.tldp.org/HOWTO/VPN-Masquerade-HOWTO.html#toc3</a>
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; <a  rel="nofollow" href="http://www.impsec.org/linux/masquerade/ip_masq_vpn.html";>http://www.impsec.org/linux/masquerade/ip_masq_vpn.html</a>
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; <a  rel="nofollow" href="http://www.onlamp.com/pub/a/bsd/2004/03/11/Big_Scary_Daem";>http://www.onlamp.com/pub/a/bsd/2004/03/11/Big_Scary_Daem</a>
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt;ons.ht ml (this is one idea)
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt;
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt;
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; _______________________________________________
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; Ale mailing list
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; Ale at ale.org
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; <a  rel="nofollow" href="http://www.ale.org/mailman/listinfo/ale";>http://www.ale.org/mailman/listinfo/ale</a>
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt;
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; _______________________________________________
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; Ale mailing list
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; Ale at ale.org
&gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; &gt; <a  rel="nofollow" href="http://www.ale.org/mailman/listinfo/ale";>http://www.ale.org/mailman/listinfo/ale</a>
&gt; &gt; &gt; &gt; &gt; &gt; &gt;
&gt; &gt; &gt; &gt; &gt; &gt; &gt; _______________________________________________
&gt; &gt; &gt; &gt; &gt; &gt; &gt; Ale mailing list
&gt; &gt; &gt; &gt; &gt; &gt; &gt; Ale at ale.org
&gt; &gt; &gt; &gt; &gt; &gt; &gt; <a  rel="nofollow" href="http://www.ale.org/mailman/listinfo/ale";>http://www.ale.org/mailman/listinfo/ale</a>
&gt; &gt; &gt; &gt; &gt;
&gt; &gt; &gt; &gt; &gt; _______________________________________________
&gt; &gt; &gt; &gt; &gt; Ale mailing list
&gt; &gt; &gt; &gt; &gt; Ale at ale.org
&gt; &gt; &gt; &gt; &gt; <a  rel="nofollow" href="http://www.ale.org/mailman/listinfo/ale";>http://www.ale.org/mailman/listinfo/ale</a>
&gt; &gt; &gt; &gt;
&gt; &gt; &gt; &gt; _______________________________________________
&gt; &gt; &gt; &gt; Ale mailing list
&gt; &gt; &gt; &gt; Ale at ale.org
&gt; &gt; &gt; &gt; <a  rel="nofollow" href="http://www.ale.org/mailman/listinfo/ale";>http://www.ale.org/mailman/listinfo/ale</a>
&gt; &gt; &gt;
&gt; &gt; &gt; _______________________________________________
&gt; &gt; &gt; Ale mailing list
&gt; &gt; &gt; Ale at ale.org
&gt; &gt; &gt; <a  rel="nofollow" href="http://www.ale.org/mailman/listinfo/ale";>http://www.ale.org/mailman/listinfo/ale</a>
&gt; &gt;
&gt; &gt; _______________________________________________
&gt; &gt; Ale mailing list
&gt; &gt; Ale at ale.org
&gt; &gt; <a  rel="nofollow" href="http://www.ale.org/mailman/listinfo/ale";>http://www.ale.org/mailman/listinfo/ale</a>
&gt; &gt;
&gt; &gt; !DSPAM:40ea18c2181221150815787!


</pre>
<!--X-Body-of-Message-End-->
<!--X-MsgBody-End-->
<!--X-Follow-Ups-->
<hr>
<ul><li><strong>Follow-Ups</strong>:
<ul>
<li><strong><a name="00193" href="msg00193.html">[ale] OT: Firewall purchase</a></strong>
<ul><li><em>From:</em> jkinney at localnetsolutions.com (James P. Kinney III)</li></ul></li>
</ul></li></ul>
<!--X-Follow-Ups-End-->
<!--X-References-->
<ul><li><strong>References</strong>:
<ul>
<li><strong><a name="00073" href="msg00073.html">[ale] OT: Firewall purchase</a></strong>
<ul><li><em>From:</em> ale at spinnerdog.com (David Hamm)</li></ul></li>
<li><strong><a name="00139" href="msg00139.html">[ale] OT: Firewall purchase</a></strong>
<ul><li><em>From:</em> cfowler at outpostsentinel.com (Christopher Fowler)</li></ul></li>
<li><strong><a name="00160" href="msg00160.html">[ale] OT: Firewall purchase</a></strong>
<ul><li><em>From:</em> jkinney at localnetsolutions.com (James P. Kinney III)</li></ul></li>
</ul></li></ul>
<!--X-References-End-->
<!--X-BotPNI-->
<ul>
<li>Prev by Date:
<strong><a href="msg00180.html">[ale] Sound problems in Debian 2.6 kernel</a></strong>
</li>
<li>Next by Date:
<strong><a href="msg00182.html">[ale] Sound problems in Debian 2.6 kernel</a></strong>
</li>
<li>Previous by thread:
<strong><a href="msg00169.html">[ale] OT: Firewall purchase</a></strong>
</li>
<li>Next by thread:
<strong><a href="msg00193.html">[ale] OT: Firewall purchase</a></strong>
</li>
<li>Index(es):
<ul>
<li><a href="maillist.html#00181"><strong>Date</strong></a></li>
<li><a href="threads.html#00181"><strong>Thread</strong></a></li>
</ul>
</li>
</ul>

<!--X-BotPNI-End-->
<!--X-User-Footer-->
<!--X-User-Footer-End-->
</body>
</html>