/srv/irclogs.ubuntu.com/2008/01/28/#ubuntu-server.txt

MatBoyfaulkes-, but the project is great :)00:16
=== talaren is now known as pteague
pteagueanybody know which package i need for the jeos kernel headers?05:18
ScottKYour odds of getting a good answer go way up after the European business day has started.05:20
Enty|workHello05:37
Enty|workWhy is it that JFS is considerably slower when I'm entering a directory than ReiserFS?05:45
antdedyetpteague: "apt-get install linux-headers-`uname -r`" doesn't get what's needed?06:29
AnRkeywhere are the runlevel scripts for ubuntu?07:54
AnRkeyi want to run a command just before the server halts07:54
AnRkeyand another for when it's fully booted07:55
_rubenAnRkey: /etc/event.d/07:59
AnRkeythanks08:00
AnRkeywill this work for bootup? ln -s /root/scripts/beepstartup /etc/rc2.d/S98beepstartup08:04
_rubenguess so08:04
AnRkeygonna play with it 2night when i can reboot the server08:09
AnRkeythanks _ruben, much appreciated08:10
krautmoin08:12
_rubenmoan08:13
nocturnHi guys11:26
nocturnI have an ldap server on Ubuntu11:26
nocturnI user libnss-ldap, but it fails to resolve users unless I'm root11:27
nocturncan anyone help me?11:27
sorenmok0: Hi. Could you send me the exact commands you use to invoke kvm?11:31
=== ember_ is now known as ember
=== lamont` is now known as lamont
GargoyleGreetings freenoders12:44
faulkes-yes, I suppose for some of us it is morning12:56
=== \sh_away is now known as \sh
faulkes-personally, I blame the universe12:56
fishorquestion for everyone: smb.conf with defaul settings allow  guest users, is it security issue or option. If it should be, why we do not redirect wrong user to guest by default? Just with  "map to gust = Bad User"13:14
faulkes-it depends on the environment in which you intend to integrate samba13:22
fishordesktop13:23
fishordo ubuntu have different smb.confs for desktop and server ?13:24
faulkes-while this is not ubuntu or samba policy that I know of, I generally take the typical firewall stance13:24
faulkes-deny everything, allow by exception13:25
fishorso defaul settings is buggy in both situations13:25
faulkes-no, the above is only my opinion13:26
fishorok.13:26
fishorthis is realy secure openion ;)13:26
faulkes-but there are situations where it may be better suited to have guest access allowed by default13:27
faulkes-such as say, a small business without full-time it support13:28
faulkes-package configuration will not replace active administration13:28
fishorthis question is actualy more about samba <> win xp issue. Defaul ubuntu share will allow guest and deny wron user.  Gnome Nautilus-smbbrowser will try to sign in with $user and this will fail, so after this it will take second try and login with guest. WinXp will try only login with $user13:31
fishorso lot of users have truble to share some thing with win xp users13:31
fishorand at the same time there is gust actually open. so why we do not provide "map to gust" by default ?13:32
fishors/gust/guest/13:32
ivoksomg13:57
ivoksthat's it. sophos sucks big time :(13:57
sorenivoks: sophos?14:04
ivoksright, anti-virus software14:04
ivoksacctually, anti-virus wannabe software :)14:04
sorenAh.14:04
ivoksbat. low14:05
ivokstime to go off14:05
spiekeyhello!14:11
spiekeyi am using vmware 1.0.4 server on my ubuntu box.14:11
spiekeyas soon as i add ldap to /etc/nsswitch.conf my vmware behaves strange.14:12
spiekeyi need to click "start virtual machine", wait until i get an error, and then start it again. Then it works.14:12
spiekeyany idea where i could start debugging? the syslog show no errors14:12
fishorspiekey: probybly this can be vm-host issue14:26
fishortry qemu or kvm14:26
fishorat first if it guest problem you need enable virtal tty to debug it online14:28
AnRkeywhen i boot my server I get a message about my root file system having errors, a check runs and then it fails to pass the check15:08
AnRkeyhow do i run fsck manually15:08
AnRkeyhow do i boot into single user mode?15:08
spiekeywhere can i get a hardy iso image? Can you download it yet?15:10
AnRkeyspiekey, #ubuntu+115:13
spiekeyhuh?15:13
AnRkeyspiekey, /join #ubuntu+115:13
AnRkeythats the chat room for ubuntu hardy or 8.0415:14
AnRkeyalso try cdimages.ubuntu.com15:14
AnRkeyhttp://cdimages.ubuntu.com/daily/current/15:14
spiekeythx!!15:15
AnRkeynp15:15
_rubenAnRkey: when it fails, doesnt it offer you a single user prompt right away?15:16
faulkes-when you reboot, boot into recovery mode15:18
AnRkey_ruben, no15:19
AnRkeyfaulkes-, tried that15:19
AnRkeyit hangs after15:19
AnRkeyafter the scan that it runs15:19
AnRkeyregardless of single user mode or not15:19
AnRkeyit's a software raid setup15:19
AnRkeyi gotta run15:19
AnRkeybbl15:19
AnRkeythanks anyhoo15:19
sorenmok0: Around?16:44
mok0soren: yep16:44
mok0wassup?16:44
soren12:31:29 < soren> mok0: Hi. Could you send me the exact commands you use to invoke kvm?16:44
nxvl_worksoren: did you are/go on/to the sprint?16:45
mok0soren: hang on...16:45
sorennxvl_work: Yes, all of last week.16:45
nxvl_worksoren: oh, so it's over, how was it?16:47
nxvl_worksoren: tons of work?16:47
mok0soren, kvm -k da -m 1024 -net nic -net tap -smp 4 -daemonize -nographic /home/octo1_jeos.raw16:47
sorennxvl_work: Pretty much :)16:48
nxvl_workdid you have some photos?16:48
sorenmok0: Hehe..16:49
sorenmok0: I know why you're having problems.16:49
mok0soren: :-)16:49
* mok0 awaits with suspense the explanation16:50
sorenmok0: kvm -k da -m 1024 -net nic,macaddr=08:12:34:56:78:01  -net tap -smp 4 -daemonize -nographic /home/octo1_jeos.raw16:50
sorenmok0: And on the next one:16:50
sorenmok0: kvm -k da -m 1024 -net nic,macaddr=08:12:34:56:78:02  -net tap -smp 4 -daemonize -nographic /home/octo1_jeos.raw16:50
sorenetc..16:50
sorenThey both had the same mac.16:50
mok0Ah!16:50
mok0soren: so, this is just some bogus mac you choose?16:51
sorenmok0: Yes.16:51
mok0Cool, thanks!16:51
mok0soren: I guess all VMs need their own .raw file, yes?16:52
sorenThey don't have that now?16:52
mok0Yes, but your example above uses the same16:52
sorenOh, you should use 02:xx:xx:xx:xx:xx, by the way.16:52
sorenmok0: Right, my mistake.16:52
mok0soren: literally 02:xx ... etc?16:53
mok0soren: or just 02 as the first number16:53
sorenJust 02 as the first.16:53
mok0soren, cool I'll try it out right away16:53
* mok0 waits for the VMs to halt...16:55
mok0Hm they are in Sl mode16:55
sorenI can't believe I didn't realise this the other day.16:56
mok0soren: Hmm, I don't have properly configured VMs ATM :-(17:11
mok0soren: I will test it tomorrow and report back! I am sure it will work now :-)17:11
sorenmok0: So am I. :)17:16
ivokszul: here?17:43
zulivoks: yep17:43
ivoksi see drbd is pulled17:44
zulyep did it this morning17:44
ivoksso, no need for testing? it builds on 38617:44
ivoksand on amd6417:44
zulivoks: i would wait for the new linux-ubuntu-modules to come out then do some testing17:45
ivoksok17:45
=== pteague is now known as pteague_work
coffeedudedendrobates: ping18:11
=== ember_ is now known as ember
=== \sh is now known as \sh_away
methodskernel-patch-grsecurity2  why is this not in the list ?21:02
krautbecause it's to difficult to maintain21:39
krautand it has to many cons to put it in a mainstream repositority21:39
methodsso is there an offstream repo ?21:43
methodsand why is it refered to be anothe rpackage if its not a ubuntu package21:43
krautyou could build it with the vanilla-sources21:44
methodsyou mean patch the kernel and build it ?21:45
krautyep21:45
krautyou need to be really lucke to patch grsec into an non-vanilla kernel21:45
krauts/lucke/lucky21:45
methodswhy ?21:45
krautbecause grsec-patch won't be adaptive to an allready-patched kernel21:46
krautthere are to many differences21:46
methodsso what kinda patches does ubuntu put in ?21:46
methodscould i take the patches and apply them after that one ?21:46
krauthave a look into the changelog21:46
krauti don't think so21:47
methodswhich package is the source for the standard kernel ?21:52
krautwww.kernel.org21:53
methodsno i mean the ubuntu one21:54
methodsjust linux-source ?21:54
krautapt-cache search linux-image source21:54
methodsthanks21:57
Goosemoosehi guys22:11
Goosemooseany news on the active directory connection program that is supposed to come built into hardy, is it done yet?22:12
coffeedudedendrobates: Fyi... have found one bug in the Windows 2008 join support in the tarball I sent you.  Will have tyo be fixed before  I can send yo the final 4.0.4 release.22:14
dendrobatescoffeedude: I haven't received anything so far today.  is that what si holding it up?22:15
coffeedudedendrobates:  I sent out a tarball earlier today....You never got it ?22:16
coffeedudedendrobates: let me make sure it didn't bounce.22:16
dendrobatescoffeedude: nope22:16
schnuerpel_Any plans to update mysql to 5.0.51 in hardy?22:20
mathiazschnuerpel_: it's in the pipeline22:22
nxvl_work can someone point me to any howto on how to make that some accounts of my postfix can only deliver mails to the local domain an no any external one?22:25
Goosemoosecoffeedude, is the script setup to join a machine to a win domain?22:27
Goosemoosecoffeedude, i've been doing it the long manual way, but stopped to wait for what was being added into hardy22:27
lamontnxvl_work: while others can?22:27
nxvl_worklamont: yep22:28
nxvl_worklamont: some users can send mail to internet but some other not22:28
lamontwell, for starters, the user is who he claims to be, unless you push SASL on him22:28
nxvl_work!?22:29
lamontit might be easier to do it as recipient restrictions... local users all go to the 'permit' bucket, and then (by definition) anything left is internet, and you check the sender to see if he has access to send the email (by being on the whitelist)22:29
lamontnxvl_work: can you connect to port 25 on the machine and send data? then you are who you say you are, regardless of MTA22:29
nxvl_workah, ok ok22:29
nxvl_workit's behind a virus and spam server22:30
nxvl_workso itsn't easy to make that22:30
lamontso you're looking for sender/recipient restrictions22:30
nxvl_workyep22:30
lamontsee /usr/share/doc/postfix/RESTRICTION_CLASS_README.gz and  SMTPD_ACCESS_README.gz22:31
lamontyou may quite possibly find it easier to implement it in a policy daemon: SMTPD_POLICY_README.gz22:31
lamontI think those are all actually in the postfix-doc package22:32
lamontScottK: still no 2.4.722:33
ScottKThey are.22:33
ScottKYeah.22:33
ScottKAny signs of it?22:33
lamontwell, it's not on my mirror22:33
lamontOTOH, it'll check again in about 26 minutes. ...22:34
lamont+       Cleanup: the post-install script now requires that it is22:35
lamontI wonder if I should start using that...22:35
coffeedudeGoosemoose: yeah.  Specifically for AD domains.22:43
Goosemoosecoffeedude, can it use it now? i'm setting up my system to deploy 500 computers using the current version of edubuntu22:43
coffeedudeGoosemoose: You can.  We're still fixing the packaging and documentation is scarce.  latest stable releases are at http://archives.likewisesoftware.com/likewise-open/src/.  4.0.3 is the latest posted but 4.0.4 should be out in 24 hours.22:55
Goosemooseany big changes in 4.0.4?22:55
nxvl_worklamont: i found the solution -> http://www.postfix.org/FILTER_README.html22:58
nxvl_worklamont: thanx for your help22:58
* nxvl_work HUGS lamont22:58
lamontnp.  glad it was easier. :-)22:58
lamontthat's also delivered in postfix-doc, btw22:58
coffeedudeYeah.  More upstream merges from Samba and better adherence to Debian packaging policy.22:58
coffeedudeFunctionally (from the end user perspective) will be very similar.22:59
coffeedudeGoosemoose: ^^^^^^^^^^^^^^^^^^^^^^^^^^^^^22:59
Goosemooseok22:59
Goosemooselooking at the site now22:59
Goosemoosei just want an easy way to authenticate all users and map their folders since half the school computers are still running xp22:59
coffeedudeGoosemoose: And 4.0.5 will be out within the week hopefully which will have better error reporting if there is a problem with the join.23:00
Goosemooseok23:00
Goosemooseso is this basically gui or can i easily script this to run during the presed image deployment?23:00
coffeedudeGoosemoose: This is client logins.  You need Samba 3.2.0 when it is released to really plug likewise-winbindd (as a replace for upstream winbindd) with Samba.23:00
coffeedudeGoosemoose: both domainjoin-cli and domainjoin-gui (GTK)23:01
Goosemooseok23:01
coffeedudeGoosemoose: Just run "domainjoin-cli join ad.example.com Administrator"23:01
coffeedudeGoosemoose: back later.  Have to debug some code right now/.23:01
Goosemooseok23:01
Goosemoosethanks, ill try it out23:01
=== ember__ is now known as ember

Generated by irclog2html.py 2.7 by Marius Gedminas - find it at mg.pov.lt!