/srv/irclogs.ubuntu.com/2008/03/15/#ubuntu-server.txt

sommermindframe-: mrtg works great for that00:02
owhsommer: I've written up what I've found so far: https://wiki.ubuntu.com/OnnoBenschop/ubuntu-server/cron-bug00:08
sommercool00:09
sommerlooks good00:09
owhI'm just wondering if its something weird like, reboot - add script - fail, vs reboot - reload - add script - success - add script - success00:10
sommerhave you tested cron.hourly? ...wondering if it may be effected as well00:11
owhHmm, I thought that I invented that on my system, hardy has it too :) I'll check.00:12
owhsommer: So far two out of three act normally, but the one we care about missed the job by about 46 seconds, so I'll have to wait an hour :)00:21
sommerwow... maybe something with the hardware?00:22
owhI'm beginning to wonder if its an anacron interaction. The hourly job doesn't use anacron.00:22
sommerah... makes sense00:22
owhAs for hardware, the gutsy-server is a HP proliant, the gutsy-workstation is a Thinkpad and the hardy-server is a vmware-server00:23
gregbradyGood evening everyone.00:52
gregbradyWhat is the best way to go about setting up a proxy server in my home network in order to block certain sites from individual users?00:52
andguentevenin' :) (i'm thinking most of the room is fairly quiet...)00:52
andguentare you already running Ubuntu on a server, or server-esk box?00:53
Kamping_Kaiseryou'll need an authenticating proxy00:53
gregbradyUbuntu on a desktop00:53
gregbradyAll ubuntu machines.  5 in all00:53
gregbradyOver wireless00:54
Kamping_Kaisergregbrady, do you have one user per system?00:54
andguentis your router running ubuntu as well? or just 5 desktops00:54
gregbradyNo the three of us have access to all computers, except one main one.00:54
gregbradyRouter is a standard Belkin Pre-N00:54
andguentif you know exactly which websites you want to block, or exactly which websites you want to allow, squid will be the most popular proxy out there to learn00:55
gregbradyNo, not exact websites.00:56
gregbradyBut I guess I could build a list over time00:56
andguentif you want it to be a 'smart' filter that just blocks certain types of websites, that gets slightly harder, but still doable00:56
Kamping_Kaiserdansguardian is the only filtering proxy i have used, so its the only one i can really recomend00:56
gregbradyKamping_Kaiser, yup, I understand completely.  I'm looking for something maybe more generic, if that makes sense.00:57
andguentsame, dansguardian is a very nice key word based filter, but it usually is run with squid00:57
Kamping_Kaiserandguent, i'm aware of it running with anything else00:57
gregbradydansguardian just seems a bit daunting to install and manage.00:58
Kamping_Kaisergregbrady, are you after keyword filtering/sitelists, what sort uf stuff?00:58
Kamping_Kaiserits not as hard as you think, exept it has the hidden overhead of needing to configure squid00:59
gregbradyKamping_Kaiser, keyword and content00:59
gregbradyI would also like to monitor sites visited00:59
Kamping_Kaiserall proxys will log01:00
gregbradyYup, I know.01:01
andguentif you have a good guide, or are familiar with squid & dans, it can be 3 config files and maybe 10 lines of config entries, not bad for what it does01:02
gregbrady-no guide, and not familiar with squid or dans01:02
Kamping_Kaiser3 files?01:03
andguentsquid.conf, dansguadian.conf, dansguardianf1.conf, ack, and /etc/default/dansguardian01:03
andguentok, 4 :)01:03
Kamping_Kaiseryou dont /need/ to edit f1 *i havent*01:04
Kamping_Kaiseri dont remember default/dans01:04
andguentgoing off of memory, its possible i'm wrong, anywho, the point is it isn't difficult at all01:05
Kamping_Kaiseragreed on the point :)01:05
andguenttrying to track down a good guide01:06
gregbradyYeah, so am I!01:06
Kamping_Kaiserhttps://wiki.ubuntu.com/EdubuntuProxy any help?01:07
gregbradylet me check.  Be aware that I'm just running Ubuntu01:07
andguenteh, its all the same, just different software installed by default01:08
gregbradyThat's my understanding.  I'm relatively new so I just wanted to clarify.01:09
andguentas long as you can install dansguardian and squid, it really doesn't matter what you run it on01:10
andguentits actually possible to at least run squid on a commodity linksys router, but thats another project :P01:10
andguentKamping_Kaiser's link looks good, I found this guide as well which keeps it short and sweet:http://www.brianmathis.net/2007/11/30/howto-squid-and-dansguardian-with-dapper/01:11
owhgregbrady: Just to break in here, but many domestic wifi routers have filtering capacity built in.01:11
andguentI feel like they are both missing a few httpd_accel lines for squid01:11
gregbradyowh, yes, but it is pay by the month on my router01:13
owhgregbrady: Huh? In a domestic environment? How are you connected to the 'net?01:14
gregbradyowh rogers and a belkin router01:14
owhgregbrady: The belkin router is in your home?01:14
gregbradyowh yes01:15
gregbradyBelkin Pre-N 53020001:15
owhgregbrady: Then my point still stands. Many domestic routers have filtering built in, that is, you can access their web interface and setup some form of URL filtering. Not all, but many.01:15
owhgregbrady: Most of them are running some form of linux anyway :)01:16
gregbradyThis one relies on a service that you subscribe to01:16
* owh is googling.01:17
owhgregbrady: I get no hits at all with that model number.01:17
gregbradySorry, Ubuntu froze and crashed.01:20
Kamping_Kaiser:o01:20
owhgregbrady: That sounds like a bigger problem than filtering. I've only had that happen with hardware faults.01:20
gregbradyyeah, first time for everything.01:20
gregbradyToo bad, I was doing a lot of long running processes in the background01:21
owhDid you see my last comment: gregbrady: I get no hits at all with that model number.01:21
gregbradyowh, second please.  I have about 5 process to get started again.01:22
gregbradyMan, and they were running for the last about 4 hours.......01:23
gregbradyOk, back in business!01:26
gregbradyBelkin F5D8230-401:26
owhgregbrady: http://whirlpool.net.au/index.cfm?a=h_view&model_id=327 - look for manual, click the link, look for manual, download.01:31
gregbradyowh, it only has them for win/mac01:33
gregbradynope, found it01:33
owhgregbrady: Integrated Parental Control Web Content Filter: Belkin Parental Control allows you to set up your own policies and block any website you want. There is also an optional reporting feature (fee-based) that allows you to get a report showing you every website that was visited from your network (refer to your Parental Control User Manual for more information).01:36
gregbradyexactly, fee based01:36
owhgregbrady: Read it properly01:36
gregbradyowh, sorry page 10.  Parental controls.01:37
owhLet me make it clearer for you gregbrady: Integrated Parental Control Web Content Filter: Belkin Parental Control allows you to set up your own policies and block any website you want.01:37
andguentowh: I think he was looking for keyword/smart filtering of some sort01:38
gregbradyParental control is free for 6 months, which includes blocking anysite01:38
gregbradyThe last paragraph says what is included in the Parental controls, if subscribed to01:38
gregbradyowh, I could live with tracking and manual list creation if required01:39
gregbradyowh, maybe I'e misread it.01:40
gregbradyIs this a really unusual request for Ubuntu users to make?01:43
owhWell, on a ubuntu-server group, yes :)01:43
Kamping_Kaisergregbrady, request what?01:43
gregbradyowh, could be.01:43
gregbradyKamping_Kaiser, requesting an easy method for managing web access.01:44
andguentgregbrady: I'm more than happy to help getting squid and dansguardian up and running with you, i was just letting you check out alternate options in case they really did work for what you needed01:45
gregbradyandguent, nope, I understand your intent.01:45
gregbradyandguent, I guess I had hopes it would be easier.  I've never tried this before01:45
andguentthere may be other better ways to do it, but the squid and dans combo has been around for a while, and its the one i know [works]01:45
andguenti've heard smoothwall can be an easy install, but i've never used it01:46
gregbradyandguent, I will attempt to follow the directions I've already been given01:46
andguentthe long and the short of it is that there is no harm in trying it, at least not until you start permanently forcing custom iptables entries at boot, then you just need to remember where you made that change 6 months ago :)01:47
owhgregbrady: Everything in the manual indicates that the only part that is fee based is the reporting. I do not have access to the "Parental Control User Manual", but as the owner of the device you presumably do.01:47
gregbradyowh, nope and when you try to use the function, it asks you to login in and register, which of course does not work.01:48
owhgregbrady: If your domestic router does what you need then that will be far simpler to implement than anything else - unless you already have a central gateway linux box.01:48
gregbradyowh, I agree.01:48
owhgregbrady: Did you look on the CD that came with the device?01:48
andguentgregbrady: I can even try setting the same filter up here with you, i don't really have a need for it right now though01:48
gregbradyowh, I just googled and found out that that service no longer works.01:50
gregbradyowh, they were indeed subscription based, but it does not function anymore.01:50
owhgregbrady: Then perhaps contact Belkin and ask them what you need to do to enable filtering. Perhaps they have a new firmware version for you.01:51
gregbradyowh, I tried to get help with them before with VPN and that was a useless adventure.  No more Belkin products for me!  But, I'm stuck with what I have at the moment.01:51
owhandguent: I completely understand your response and it is correct if the router cannot do this, but only then. It might be a trivial thing to initially setup, apt-get install xyz, but maintaining it will be a challenge across several machines.01:52
gregbradyowh, exactly!!!!!01:52
gregbradyowh, that is why I wanted LSTP to work, but it does not work with a wireless server01:52
owhHuh?01:53
owhSays who?01:53
gregbradyI tried, with lots of help in the chatrooms, no luck01:53
andguentits all about deciding how complicated you want it, depending on the technical skill of those being filtered :)01:53
owhgregbrady: There is no earthly reason that I can think of, other than perhaps available bandwidth that might cause issues. (Bugs not withstanding.)01:54
gregbradyI thought LSTP sounded like a dream to me.  Maintain one main machine only......the rest are just thin clients with nothing to do on them.  Simple in theory.01:54
owhI suppose you could point all browsers at the same proxy server and lock that redirection down, then run the proxy/filter in one place and maintain it there. It will require that workstation to be on for anyone to browse, but it would work.01:55
Kamping_Kaiserowh, the key issue is devices dont netboot01:55
Kamping_Kaiser* netboot wireless01:55
Kamping_Kaiseranyway. afk01:55
owhKamping_Kaiser: So, put an initrd on the device and get it to connect.01:55
gregbradyThe whole thing is a lot more complex then I thought at first.01:55
owhgregbrady: It always is, which is why I was diverting you toward fixing your router :)01:56
gregbradyowh, Oh, I understand you completely and it would be awesome!01:56
gregbradyowh, Ubuntu is so easy to upkeep on individual machines....if I could just manage net access at one point, that would be awesome.01:57
owhgregbrady: As I said, configure one machine with andguent's assistance if so inclined, then redirect the proxy from all the other workstations to that same machine. Magic.01:58
gregbradyowh, or buy a proper router01:58
owhgregbrady: You can often throw money at anything to solve a problem :)01:59
gregbradyowh, good point, but this decision is not trivial.  I will have to maintain it as well.01:59
andguentafk for a bit, be back01:59
gregbradyowh, and this server has a bunch of hard drives in it that consume power.....more than a router I would imagine02:00
owhgregbrady: By several orders of magnitude.02:01
owhsommer: In case you're awake, the hourly jobs didn't run on hardy either.02:02
gregbradyowh, and I'm not really sure I understand exactly how the whole squid/dansguardian actually works, so if there is a problem it will be hard to fix.02:08
gregbradyowh, I like to understand the things I implement02:09
faulkes-gregbrady: a good policy02:21
faulkes-but nothing a bit of time and determination won't solve02:21
faulkes-squid is fairly straight forward once you do your config to your tastes02:21
gregbradyfaulkes- no doubt, I'm investing now.02:21
faulkes-I havent used dans so02:21
gregbradyfaulkes- I just have a problem blindly installing something.  It may work, but as soon as there is a glitch, and there will be glitches, then the real nightmare starts02:22
gregbradysquid and dans maybe perfect, I just have to read more to understand02:24
Kamping_Kaiseri love the way its set+forget after the iniital install02:25
gregbradyKamping_Kaiser, I'm still reading.....02:26
hatterI have a problem where the ubuntu server network lags intermittently for 3 or 4 seconds,  the server is primarily samba,  I have changed every piece of hardware,  any1 got any clues ?02:27
Kamping_Kaisergregbrady, not rushing you :)02:27
gregbradyKamping_Kaiser, nope, none taken.  I appreciate the help!02:27
andguentI'm back -- gregbrady: I'm more than happy to help with things, but it doesn't make sense for half a dozen people to all give you ideas at once :) I will keep quiet unless asked for something02:33
gregbradyandguent, thanks and no problem.  I'm just doing some research here for my own peace of mind.02:37
andguentthere are multiple ways on how to implement it, some are dead easy to revert (so easy that if you have 12 year olds+, it might not be effective..)02:39
andguentbut definitely read what you need02:40
Kamping_Kaiserafk. back as kgoetz in about 3003:00
gregbradyOk, trying to install03:18
gregbradytons more to read in squid.conf!03:21
andguentgregbrady: Questions for you (if you want to do some design planning...) What would you consider the highest computer skill level of those being blocked is? (IE does this filtering config need to be protected by passwords) Are you sure that the proxy server box you are setting up will always be on and available? Will that box have a static IP address?03:21
gregbradySkill level is minimal.....My son is 8.03:22
gregbradyThe server can always be on03:23
gregbradyServer can be static, I don't see an issue there.03:24
andguentgood good, if it hops around, family members will complain, including the one who shares your bed :)03:24
gregbradyhahahaha03:24
andguentalthough, i'm guessing most wives are more agreeable to porn filters then say.... rewiring all of the phones to go through voip, and then voip crashing....03:25
gregbradyI don't care about porn for the wife.03:25
gregbradyI only need to protect my son.  On all machines, except the server03:25
andguentyea, i know, but i'm sure she likes the idea... anywho, i'm getting us off topic03:26
gregbradyhahahah, for sure!03:26
andguentare you following a guide of any sort? most guides I have seen don't test things in phases very well, and you end up with a 4 part process that is broken somewhere in the middle :)03:27
gregbradyhttps://wiki.ubuntu.com/EdubuntuProxy03:28
gregbradyI've only installed the software and opened gedit03:28
gregbradywith squid.conf03:28
andguentok good, I would say get squid.conf adjusted as needed, and then pause there to test it and verify functionality03:29
gregbradyI must read to understand what I'm adjusting though.  I'm working on that now.03:30
andguenttake your time03:30
gregbradyIt says the default settings should be fine03:36
andguentonly one way to find out for sure :) I usually adjust things, but lets try the easy way first03:37
gregbradySo just turn it on?03:37
andguentyea, lets try that start command, and see if manually pointing your browser to your proxy gets you any connectivity03:38
gregbradyfailed03:38
gregbradyno worries.  I've never had one single thing work out of the box with default settings.03:39
andguentsquid failed to start? did it give a message? usually I would say avoid pasting numerous lines in a chat room, but we seem quiet enough in here tonight :)03:39
gregbrady * Starting Squid HTTP proxy squid                                               * Creating squid spool directory structure03:39
gregbradyFATAL: Could not determine fully qualified hostname.  Please set 'visible_hostname'03:39
gregbradySquid Cache (Version 2.6.STABLE14): Terminated abnormally.03:39
gregbradyCPU Usage: 0.004 seconds = 0.004 user + 0.000 sys03:39
gregbradyMaximum Resident Size: 0 KB03:39
gregbradyPage faults with physical i/o: 003:39
gregbradyAborted (core dumped)03:39
gregbradyFATAL: Could not determine fully qualified hostname.  Please set 'visible_hostname'03:39
gregbradySquid Cache (Version 2.6.STABLE14): Terminated abnormally.03:39
gregbradyCPU Usage: 0.012 seconds = 0.004 user + 0.008 sys03:39
gregbradyMaximum Resident Size: 0 KB03:39
gregbradyPage faults with physical i/o: 003:39
gregbradyAborted (core dumped)03:39
andguentok, lets try what it asks then, do you have a line in squid.conf that starts with 'visible_hostname' ?03:40
gregbradyalready working on that03:40
kgoetzback :)03:41
andguentexcellent, forgive me if I ask silly questions :)03:41
andguentkgoetz: we are just starting into basic squid configuring, both of us got distracted a bit while you were out :)03:42
gregbradyandguent, no problem03:42
gregbradyok, everything is commented out except the http_port line03:42
andguenti believe you can set visible_hostname to anything you want, just keep tinkering until squid restarts without complaining -- I could get my own squid started up here for good measure too....03:43
andguentCan I assume you are familiar with http://paste.ubuntu-nl.org/ just in case we need to exchange config files?03:45
gregbradyI only used that once03:46
kgoetzandguent: cool. i'm trying to get setup here, and having tecchnical issues ;|03:48
gregbradyI'm not sure what the hostname should be03:48
gregbradyWhat format?  In quotes?03:48
andguentshouldn't need quotes unless you have spaces or fancy characters03:48
gregbradyand the name is irrelevant?03:49
andguentI just put in a line on its own like this: 'visible_hostname goober'03:49
andguentyea, put it in as 'youPeskyKidsMadeMeResortToThisJustToShieldYourEyes' :)03:49
gregbradyok, squid started03:49
gregbradyconfirming now03:49
gregbradykeithclark@keithclark-desktop:~$ ps aux | grep squid03:50
gregbradyroot     20819  0.0  0.0   4780   652 ?        Ss   23:49   0:00 /usr/sbin/squid -D -sYC03:50
gregbradyproxy    20824  0.3  0.3   7000  4528 ?        S    23:49   0:00 (squid) -D -sYC03:50
gregbrady1000     20859  0.0  0.0   2976   756 pts/0    R+   23:50   0:00 grep squid03:50
andguentvia 'ps aux|grep squid' I assume? -- I have another confirm command to run: 'netstat -nltp|grep squid'03:50
andguentI get: tcp        0      0 0.0.0.0:3128            0.0.0.0:*               LISTEN     28667/(squid)03:51
gregbradyI guess that means no then03:51
gregbrady(Not all processes could be identified, non-owned process info03:52
gregbrady will not be shown, you would have to be root to see it all.)03:52
kgoetzcheck your logs too03:52
andguentyour command output was good, but netstat should show one line.... hmm, maybe 'sudo netstat -nltp|grep squid'03:52
gregbradyyup....03:53
gregbradysorry, a home distraction....03:53
andguenthappens :)03:53
gregbradyok, it was the tv03:53
gregbradyso, success at the moment03:53
andguentok, i personally like to test every phase so we know if we are standing on good ground or not, point your firefox manual proxy through localhost port 3128.... I can find exact menus in a sec03:54
gregbradyShould I not set my ip as static now for this machine?03:54
gregbradyAnd, should I be using my laptop to try this out now?03:54
andguenteh, lets confirm squid first, setting static IP can be the next step03:55
kgoetzpersonally i'd think ip is first, sine you want squid to listen on it03:55
andguentcurrently, its listening on all IPs, squid won't even care if you hop IPs, it will only matter to other computers, and none of them know about it yet03:56
andguentIn firefox, can you go Edit -> Preferences -> Advanced -> Network -> Settings -> Manual Proxy....03:57
andguentremember this location, we will need to undo it later....03:57
gregbradynot a problem03:57
andguentCheck off "Use this proxy server for all protocols", and enter for HTTP proxy: localhost, port 312803:57
andguentthen get a new tab up and just check your connection to google03:58
gregbradylocalhost=ip of server?03:58
andguentyou should actually be able to put that english in, exactly as spelled03:58
andguentIP would work too, but we might be changing that in a minute :)03:58
gregbradyok, google works fine.  how do I confirm it went through the proxy server?03:59
gregbradyI actually understand this so far!03:59
andguenttry 'tail /var/log/squid/access.log'03:59
andguentit should show your page hit, and your IP among other things04:00
gregbradyyup, it worked04:00
gregbradyso really, at this point, if I changed my other machines to point to this proxy server, tracking would be working?04:01
andguentgood good, in the end you will end up with two logs like that, dans will have its own04:01
andguentyes, at minimum, if you repeated the firefox proxy settings on every box, you could at least see what sites they are visiting04:01
andguentbut note that squid usually logs time stamps in non-english format04:02
gregbradyAwesome, you are good.  I actually followed this04:02
gregbradyandguent, I understand....I'm just happy with the progress04:02
andguentdans will have some easier logging to follow, i like to change date stamp to easier readable format, but thats later :)04:03
gregbradynow, I'm assuming, dansguardian sits between the proxy server and the net?04:03
andguentactually, the other way around, dans likes to get everything first, and then passes everything to squid04:03
andguentbut close :)04:03
gregbradyThat is what I meant04:04
andguentsquid is mostly there for speed and redirection functionality04:04
andguentah ok04:04
gregbradyinternet to dans, dans to squid, squid to client, client to browser?04:04
gregbradyand viseversa?04:04
andguenteither way, a static IP is a good idea before we get too far into this, feel free to undo your proxy settings in firefox before we forget about them...04:04
andguentmmmm, close...04:05
gregbradyok, still learning04:05
gregbradyproxy reset04:05
andguentfor outbound connections, the chain is workstation app (firefox) -> Dans on server -> Squid on server -> router -> internet, the return trip would be flipped04:05
gregbradygot you.04:06
kgoetziptables redirects > firefox settings04:06
gregbradyyeah, this is where I get a little confused.04:07
andguentdefinitely an option, with an 8 year old though, we can get away with the easy manual proxy for now if we want04:07
gregbradyI would have thought that dans would be installed and configured first then?04:07
andguenti think of squid as being the foundation, start from the link closest to the internet, and test backwards from there04:07
kgoetzandguent: i'd think iptables would be easier overall, as you dont need to reconfigure each client04:07
gregbradySo far my son does not mean to do what he does.04:08
gregbradyI got you.....04:08
gregbradySorry, just trying to figure all this out as we go.04:08
andguentmmm, iptables will need to be run on each workstation, unless this server is becoming the router, either way we are touching each workstation04:08
kgoetzi just assumed the server would become the default route04:09
gregbradyok, then the server will dole out ip addresses?04:09
gregbradydns serving duties?04:09
andguentit can be, but that requires some advanced firewalling --- none of this is required, but can be done04:09
andguentyou can leave dhcp and dns exactly as is if you want to keep it simple04:10
gregbradyno....the hardware firewall seems to be working....and I lend out some wireless to my neighbour04:10
gregbradyI dont' want his machine to be affected04:10
* kgoetz bites back a suggestion involving more complexty 04:11
kgoetzbad me!04:11
gregbradykgoetz, please let me hear them04:11
andguenti would say keep things as is, make the changes that are easiest to undo :) run with it for a week, and then make it more complex :)04:11
gregbradyI will keep simple, but I want to hear options04:11
andguentor throw another nic in the server, install shorewall, pull the belkin behind the new router, and make it a transparent proxy for all :)04:12
gregbradyMaybe I should have said this....I have a neighbour that cant' afford the internet access, so I let him use mine via wireless.  I don't want to change his settings.04:12
kgoetzset the gateway to be the default route for everything (so everything gets the option of using squid), and drop an iptables rule to route the neighbour through to th net directly not via squid04:12
gregbradyandguent, if I were to throw another nic in, I would just buy another router with everything built in.04:12
andguentif you have ubuntu (or really anything with iptables --- linux kernel 2.4 and up), its dead easy to force ALL port 80 outbound traffic to your filtering04:13
andguentyou could, but running a full linux server as a router is a massive amount of power, not only knowing what websites people have been to, but who is hogging all of that download speed, monitoring all ports, not just web traffic04:13
andguentiptraf is your friend, but its only useful if your server sees the connections going out to the internet04:14
gregbradyandguent, yes, I understand the benefits.04:14
andguenteither way, all of that stuff can be added later if you feel so inclined, not required for tonight :)04:14
andguentkgoetz: I agree you could definitely set his proxy box as the default gateway, but again, more complexity :)04:15
DrIPhi all04:15
DrIPi need to install my server without internet help!04:15
gregbradymy goal is to be able to get Matthew back online tomorrow with the least amount of trouble and the most amount of understanding so that I can manage it04:15
gregbradyBut I would so enjoy learning more with you guys!04:15
kris_phhello.. where can php.ini be located in gutsy?04:16
andguentDrIP: Any way the box can temporarily migrate to a place with internet? You probably don't need it for the cd installer, but its nice04:17
andguentkris_ph: 'locate php.ini'04:17
andguentgregbrady: are you ok setting the IP static or would you like help?04:17
DrIPandguent: sadly, no...04:17
gregbradyandguent, just point me....I think I know.04:17
DrIPi have resources to download a 'full dvd' if possiable04:17
andguentDrIP: how far can you install without the connection? a basic cd should work unless you know it will be missing software you want04:18
kris_phIs it a good practice to hide the versions of apache and php in http head request?04:18
DrIPit goes to about 83%04:18
DrIPkris_ph: yes04:18
andguentgregbrady: if you have gui on that box, it may be easiest to just use network manager to set things, default gateway and dns server can both probably be your belkin04:18
gregbradySystem, Administration, Network....04:18
kris_phDrIP: I got the list of php.ini already.. but the thing is.. which php.ini location I need to modify to hide php details?04:19
andguentgregbrady: IP address can be any similar address as the other units on your network, as long as the last number is different04:19
andguentkris_ph: usually /etc/php/apache/php.ini, but don't quote me on that :)04:20
kris_phDrIP: I just want to modify expose_php to OFF..04:20
kris_phandguent: thanks..04:20
DrIPkris_ph: andguent should better hear that question :p i have yetr to get a working install of ubuntu server >.<04:20
DrIPerr yea04:20
DrIPandguent: is there a dvd of server?04:21
andguentkris_ph: the real test is to figure out how to detect if that info is showing, adjust something, and see if the info dissapears04:21
DrIPi can not use internet... it *has* to be a serile server04:21
kris_phandguent: yeah.. I tested it already.. and I detected it that it is showing its apache version and php information..04:22
kris_phandguent: that's why I'm going to modify it.. ")04:22
andguentDrIP: any special software you will need to install? are you able to sneaker net any extra needed debs from another location?04:22
DrIPandguent: i just need wireless for my internet... but i can't use ndiswrapper and the linksys WMP11 isn't supported :(04:24
DrIP(and yes, i'm trying to get a server on wireless04:24
DrIP)04:24
gregbradyok, I think it is set04:24
gregbradyshould I logoff and back on to the network to be sure?04:24
andguentDrIP: http://www.ubuntu.com/getubuntu/downloadmirrors has dvd links at the bottom04:25
gregbradyok, that did not work04:25
DrIPahhhh04:25
andguentgregbrady: can you get a second computer available for IRC and then break your server network settings again so we can see how far it got?04:26
DrIPandguent: thanks :)04:26
andguentDrIP: np :)04:26
gregbradyI got as far as setting my static settings, then failure04:26
gregbradysystem04:27
gregbradyadmin04:27
andguentgregbrady: I'm assuming you are chatting from a different box then? is it still broken?04:27
gregbradynetwork04:27
gregbradywireless connection04:27
gregbradyproperties04:27
gregbradyuncheck roaming04:27
andguentyup, following.... if at all possible, it would be good if the sever was wired, but if it can't happen (and wireless has been working fine) then so be it04:28
andguentwith you so far04:28
gregbradyagain, server is wireless04:28
gregbradyEverything is wireless04:28
andguentit will work, as long as your wireless has been behaving :)04:29
DrIPandguent: eep those dvds are all client :|04:29
andguentDrIP: oh really? bleh, i thought there was a server edition04:29
gregbradyMy wireless has worked for over 4 years, it should be ok today04:29
DrIPyea :(04:29
DrIPhow can i get my server installed without internet...04:29
kris_phIs there anybody here who uses phpsysinfo?04:30
DrIPbrb... i need my lappy...04:30
gregbradyThen I find the Network Name, password type,password, I choose ip address subnet and so on04:30
andguentgregbrady: ok, where does the connection fail?04:30
gregbradywhen I close and reconnect04:30
gregbradyIt does not connect04:31
gregbradyyou know what, this is probably a propriety driver problem04:31
andguentafter hitting that reconnect, can you confirm the IP address was properly set via ifconfig?04:31
gregbradythat is why the lstp did not work04:31
andguenti couldn't tell you, it seems strange that any driver could do dhcp, but not static.... however it sounds like you have beat that bush to death already04:32
DrIPbbl04:33
andguenti assume youve double checked your gateway address, and still can't ping your gateway or anything?04:33
gregbradyyup, all my wireless cards across 6 machines in total are not supported04:33
gregbradyI have to use ndiswrapper, I believe04:34
andguentthat still should allow static IPs though...04:34
andguent....should..04:34
gregbradyNo, I came across this before04:34
gregbradybelkin+linux=no good04:35
andguentwell, then i guess we stick with dhcp then, put it back to roaming04:35
andguentcan you sign into your router and see about setting a dhcp reservation? anything you can do to prevent your server from changing IPs the better04:35
gregbradyno, too much of a pain for me as administrator to redirect when my server decides to change the address04:35
gregbradyBelkin has very simple, easy to use hardware.  Not powerful but very easy to setup under Windows, Unfortunately04:37
andguentany basic router should have that option, as long as you don't change routers you won't have a problem.... even if you do, if we keep the setup simple, you will just have to go into firefox and disable the proxy to bypass04:37
gregbradyI remember that Windows handles this problem......Belkin writes drivers for it, but not Linux.04:41
andguenti'm assuming you are able to web into your router?04:41
gregbradyyup04:41
andguenthave you confirmed that you can't set a reservation for your server?04:42
gregbradyyup04:42
andguent(sorry if ive asked this before)04:42
andguentbleh04:42
andguenti've never seen one not have the option in years, but I will leave it to Belkin to prove me wrong :)04:42
gregbradyWell, if you hear of a Belkin again, don't waste your time helping them out.04:43
andguentwe still can do the internet filter, i just don't know how often your server box changes IPs04:44
gregbradyThere is no VNC option, LSTP does not work, no internet filters and also no static ips04:44
gregbradyIt kind of makes it secure!04:44
andguentno VNC?? are you able to do file sharing at all or anything?04:45
gregbradynope04:45
gregbradyno tunnelling04:45
andguentcan you ping another workstation?04:45
gregbradyyes04:45
gregbradysorry, no vnc over the wan04:45
andguenttry setting up firefox on another computer to use your server's proxy IP...04:45
andguentjust for kicks04:46
gregbradythat will work04:46
gregbradybut if I try to setup a vnc from outside, no go04:46
gregbradyno settings for it04:46
andguentok, i misread you then, that would seem like a basic feature, but it shouldn't stop your internet filter project04:47
gregbradyno, it will work, but it is us the the dns server to have the same address, or me running around making changes04:47
gregbrady*up to the dns server04:47
andguentthe dns server is allowed to change, that shouldn't affect the filtering04:48
gregbradyno, just he proxy settings of all clients04:48
andguenteven if name lookups go direct to the internet, the actual page loading will still be filtered04:48
gregbradyok, hang on then, I misunderstand04:48
andguenti'm not sure if i'm understanding you... heh04:49
gregbradyok, sorry.....04:49
andguentI will hold my tongue a sec, mind explaining what you mean once more?04:49
gregbradythe server will not have a set ip address04:49
gregbradyhow can my clients find it?04:49
gregbradyhahaha, you can answer now!04:50
andguentnormally, computers don't change IP very often, even if using DHCP04:50
andguentit does happen, but it shouldn't be a regular thing04:50
gregbradyok, maybe I misunderstood, let's carry on then!!!!04:51
andguenti'm looking into dhcp client man pages now to see if there is a way you can keep it asking for the same address04:51
gregbradyI will also reseach, but let's carry on for now, agreed?04:51
andguentanother option is to see if name lookups work properly on your network.... samba style name broadcasts may take care of your problem (set proxy filter IP to server name)04:52
andguentyes, carry on we shall :)04:52
gregbradyI seem to also have a problem with samba name lookups....they take forever04:52
andguentok, squid works, lets get dans up and running, going back to the guide it says change one line, i think i want to do slightly more then that...04:53
andguentget yourself into that dansguardian.conf, we can page down together, i agree that you want to loose the UNCONFIGURED line04:54
gregbradyok, let me get that far.04:55
gregbradyshoot, I lost the address for the instructions after the network loss...do you have what I sent you?04:56
andguentyup04:56
andguenthttps://wiki.ubuntu.com/EdubuntuProxy04:56
gregbradyyup, I'm into the editing05:00
andguentok good, loose the UNCONFIGURED line if you havin't already, some other options in here are good to know about, but not required05:01
andguentloglevel = 3 is sometimes excessive, you can bump it down, but you start loosing track of what websites people have successfully gotten to05:02
andguentremember your /var/log/squid/access.log -- exact same concept, but for dans05:02
gregbradyok, so save it?05:03
andguenti actually recommend one other change05:03
gregbradyok, no problem05:03
andguentabout 5-6 pages down (depending on page size), track down virusscan = on05:03
andguentthis is a nice feature when it works, but leaving virusscanning on can cause headaches, and since you are all ubuntu, who the heck cares about viruses anyway? :)05:04
gregbradyit is on05:04
andguentturn it off, earmark it as something to tinker with later05:04
gregbradyI will turn it off05:04
andguentok, save, quit that file05:05
gregbradyok, saved05:05
andguentone more file that the guide doesn't touch.... same directory dansguardianf1.conf05:05
andguentin here, note how many other directories dans checks, that first page worth is just an fyi for things to browse through05:06
andguentnaughtynesslimit is something to note and tweak later, especially if while visiting medical websites, you and your wife get denied too often05:07
gregbradyfile not found05:07
andguentmmmm... /etc/dansguardian/dansguardianf1.conf ?05:07
gregbradynevermind......(turning red)05:08
andguentits all good :P I'm amazed I'm still typing this coherently :)05:08
gregbradyI'm sorry to keep you up......05:09
gregbradyI owe you a few drinks of choice05:09
andguentno no, quite alright05:09
Wrathtidewould a LAMP server be suitable for usage as a file server?05:09
andguentamusingly enough, i havin't done this filter setup in a while, i need the practice05:09
andguentWrathtide: it definitely can, but it will have extra programs running05:10
andguentas long as it is on a home network, and not exposed to the outside internet, it really doesn't matter either way -- do you trust the people on your network not to break your stuff? :)05:10
gregbradyI'm sorry guys, I appreciate the extra suggestions, but could we just keep it simple for tonight?  We've been at it for hours....I'd love to learn further about all options though!05:11
Wrathtideandguent: they would break it if they could :\05:11
Wrathtideinept fools, i just had to reformat the household pc05:11
andguentgregbrady: i'm assuming you got into dansguardianf1.conf? did you see my notes above?05:11
gregbradyoh yeah05:12
gregbradyand I'm ready05:12
andguentWrathtide: in that case, just do the normal install, setup samba with password requirements or read only the whole way, drop the lamp05:12
andguentgregbrady: I have not experimented with bypass options, but it might be worth tinkering with later, especially if your wife doesn't have the sudo password on this box :)05:13
gregbradyshe has sudo05:13
Wrathtideandguent: right now i have FreeNAS running an ssh server which is giving me better speeds than cif/nfs05:13
gregbrady(and other tools)05:13
andguentand virusscan reappears in this file, turn it off again for good measure (i think turning it off once is enough, but lets kill it until its dead)05:13
Wrathtideandguent: meh, ill just stick to freenas till i restore all the data back05:14
andguentWrathtide: speed is good, if it does what you want, dont kill yourself on something new :)05:14
Wrathtide=)05:14
Wrathtidethanks05:14
andguentgregbrady: I think we are done with this file, save quit05:14
gregbradydone05:14
andguentok, back to the guide, their next two steps sound good05:15
andguentstart, ps aux, cross fingers (in no particular order)05:15
andguentsudo /etc/init.d/dansguardian start && ps aux | grep dansguardian05:15
gregbradyandguent...you are addressing whom?05:16
andguentgregbrady: you, sorry, i assumed the room went empty again :)05:16
andguentkgoetz: You still around? :)05:17
gregbradyok, seems to have gone ok05:17
andguentgood good, lets do my netstat test again: 'sudo netstat -ntlp|grep dans'05:17
gregbradyand now to test?05:17
andguentshould give you 0.0.0.0:808005:17
gregbradytcp        0      0 0.0.0.0:8080            0.0.0.0:*               LISTEN     27394/dansguardian05:17
andguenteeeeexcellent05:18
gregbradyI'm excited here!05:18
andguentgo back to your firefox proxy settings, change the port from 3128 to 808005:18
gregbradyok05:18
andguentafter that, lets see if basic web visits still work05:18
gregbradyworks ok....I hope that is a good thing!05:19
andguentif you have success, your web visit should be logged in two places: 'tail /var/log/dansguardian/access.log' and 'tail /var/log/squid/access.log05:20
gregbradywooooooooooohoooooooooooooo05:21
andguentit might show a little differently, but your visit should get logged twice, telling you that your connection went through both programs05:21
andguentnow for the real test: visit badboys.com05:21
gregbradyYou are good!05:21
andguentyou should get a big red NO SOUP FOR YOU message05:21
gregbradyAccess denied05:22
andguentwonderful05:22
andguentyou have a functioning internet filter05:22
gregbradyYou are very very good!05:22
andguent:) I have practice05:22
andguenta few more tweaking files to consider... all in /etc/dansguardian:05:23
gregbradyI thank you for you understanding and putting up with my tantrums05:23
kgoetzandguent: sorry, yes i am05:23
kgoetzim/ rebuilding a system, so i'm paying attention to that05:24
andguentbannedexeceptionlist will cause some grief, will prevent you from downloading exe's, avi's, isos, and other sillyness, start commenting some of these out05:24
andguentkgoetz: no problem at all, just curious if anyone was watching05:24
kgoetzandguent: no, no one at all :)05:25
andguentgregbrady: Making sure you caught that file mention before I give more05:26
gregbradyandguent, you know what, I'm happy for today....thank you.......let's leave the rest until later!05:28
kgoetzexeptionsitelist is a good on too05:28
kgoetzincase it hasnt been meantioned ;)05:28
andguentdefinitely, i didn't want to dump my top 10 just yet, i think he might be off showing his wife or something :)05:28
gregbradyI hope it is ok if I come back here to learn again.  You have been great.05:29
andguentbannedexceptionlist just drives me batty, especially on a network with hundreds of windows boxes and all I want is a stinkin driver download05:29
andguentyup yup, i probably will be around :) please read all of the file names in /etc/dansguardian and be aware they are there, if you want to block a site, or unblock a site, start there05:30
andguentlike kgoetz mentioned, exceptionsitelist can be important (more so if you have windows boxes trying to hit updates.microsoft.com)05:30
kgoetzor archive.ubuntu.com ...05:31
andguentgo nuts setting proxy server settings in firefox and see who hits the wall first :) I'm sure there are ways to be notified if someone gets a denied message05:31
* kgoetz is afk for 20-3o min - getting mroe water05:32
andguentalso note what is within ./phraselists/, there are a lot of naughty words in there. I hear there are massive updated lists you can track down from somewhere, but i never got that far, the current setup does fairly well05:35
gregbradyshoot, now all my machines have no wireless access05:42
andguentuhhh, don't know what to do for you there.... reset the router?05:43
gregbradynope05:43
andguenteverything we did today should be completely opt-in, its not going to take anything over automatically05:44
gregbradyI think I will reinstall Linux on all machines and not worry about networking....it is not it's strong point.05:44
gregbradyEverytime I try to share directories or files in linux it is just a hassle05:45
andguent?? uhm, ok seems like a lot of work, sorry to hear that wifi is such a pain05:45
andguentmaybe tomorrow night we can play with samba :)05:45
gregbradyNo, wifi under xp is no problem05:45
kgoetzwifi always has ben (and will b for th forseable future) a pain05:46
kgoetz*sp05:46
gregbradynope, worked under xp with no issues05:46
kgoetzi'm not talking about xp...05:46
gregbradyoh, sorry05:46
gregbradyandguent, I appreciate the try though!05:47
gregbradyI have a ton of re-installing to do before I sleep!05:47
andguentare you wiping linux off or something?05:47
andguentor just reinstalling fresh05:47
gregbradyI need the protection working05:48
kgoetzpity you hav to use samba.05:48
kgoetzssh/nfs are so much easier05:48
andguenti've always found samba easier, but ive also been playing with it for roughly 7 years more05:49
gregbradyNo, I must go back to Windows!05:49
kgoetzandguent: how can samba posably be easier then anything else :o05:50
andguentjust keep one linux box for the filtering, you said wifi worked fine for 4 years!!05:50
gregbradyandguent, on your belief, I will keep linux until tomorrow05:51
andguentif it worked for 4 years, one night down is ok, really it is :)05:51
gregbradyNo, one night of porn....remember the reason05:51
gregbradyAny OS can direct all sites05:52
andguentsamba: set share level, create share, set perms on share, samba restart -- i do it in my sleep05:52
gregbradyThis seems to be a real hurt point for linux....if a solution can be found, maybe we could take advantage of it!05:53
kgoetzandguent: nfs: add share to export, optional extra controls, nfs reload05:53
andguentkgoetz: i'm sure its very easy, i've just never had a need, yeay for lowest common denomenator05:54
kgoetzandguent: heh, no joke05:55
gregbradyshoot, my internet is down except for the server now05:55
kgoetzssh is better05:55
andguent?05:55
kgoetzbut lets leave that alone05:55
andguentwhen you say down, you mean before or after firefox got additional proxy filter settings?05:56
kgoetzbbs05:56
andguentvia sshfs? fun toys there....05:56
andguentsamba seems to be able to pay bills better, most business users want windows, don't care what the server is as long as it works, nfs is only for linux users really..05:57
gregbradyShoot, the connection does not even come up05:58
andguentgregbrady: revert all browser proxy settings before assuming the connection is down :) if one is up, something must be working05:58
andguent??05:58
kgoetzandguent: s/linux/unix05:59
kgoetzsshd+unix desktops vfs== win05:59
andguentkgoetz: i stand corrected05:59
gregbradyno browser05:59
andguentwell, sit corrected...05:59
gregbradynew boot05:59
andguentnfs is only for *nix users really..06:00
gregbradyOk, none of my 5 machines boots to a workable network now.  I'm offline06:00
andguentgregbrady: ? how are you chatting?06:00
gregbradywhy?06:01
andguentare you using one of those 5 computers for irc?06:01
gregbradyYes, the server06:01
gregbradygood point06:02
andguentso, when you say the network is down, have you tested anything other than firefox? can anyone ping google?06:02
gregbradyI cant' get on the net06:02
andguentwhat message do you get when you ping www.google.com06:03
gregbradyI get ping results06:04
andguentok, if it gives you numbers, then your wireless is fine06:04
gregbradyok, so now it works!06:05
gregbradyWhy is that?06:05
andguentwhen you were using firefox to get to a site, what message was it giving? was it saying proxy unavailable, or malformed url?06:06
gregbradyunavailable06:06
andguentif you have any wireless weirdness, web browsing will now see the weirdness twice as often.... everyone has to go to your server, and then back out to the internet06:06
andguentthere are too many possible reasons why it dropped06:07
gregbradyOk, so the solution is?06:07
andguentbut if pinging google.com works, and the web browser doesn't, double check to make sure both filtering programs are running06:07
andguentalso keep in mind, if you restarted the server, it may take a minute for squid and dans to finish starting up06:08
gregbradyNo, all works well on the laptop....it just took 15 mins06:08
andguentdansguardian has an awful lot of data to search through in its own phraselists, squid is anal about its cache files, they both double check stuff on startup06:08
andguentdid this happen immediately after the server restarted?06:09
kris_phHello... is there a way to prevent users from accessing restricted sites with the use of proxysites like www.anonymouse.org?06:09
kgoetzstop users getting to those sites?06:10
andguenti dont think anonymouse is trying to offer that type of feature, but i only glanced at the page just now06:11
pnukeidheloo there06:12
gregbradyI will have to pay back somehow, thanks!06:12
pnukeidi was trying to install mysql 5.1 from source06:12
kgoetzgrrr. now i'm having network issues *grin*06:12
kris_phyeah.. preventing them going to restricted sites using anonymouse.. a good proxysite is www.proxycentre.com06:12
pnukeidbut i always have problem06:12
pnukeidanybody can help me ?06:12
kris_phif the user knows that site.. even if in your firewall you denied them accessing friendster.com or youtube.com... they could still be able to access those sites..06:13
kgoetzdepends on your proxy06:13
andguentgregbrady: good luck, i might be back on tomorrow night, or there should be hundreds of other people able to help, just don't install XP, its baaaad :) Goodnight everyone, good luck on your projects06:14
kris_phI don't think so.. IPcap can't even filter it...06:14
kgoetzipcap being IP level?06:14
gregbradyandguent, you are correct, I just got fustrated@06:14
kris_phdid you get what I mean?06:14
kgoetzkris_ph: i'm not sure i did06:15
kgoetzpnukeid: try #mysql, or are you installing from ubuntu source?06:15
pnukeidno i try install mysql from source06:16
kgoetzpnukeid: try #mysql06:16
pnukeidok thx..06:16
kris_phkgoetz: okay.. this is the case.. I want users in the LAN as well as in WLAN not be able to access www.friendster.com and www.youtube.com since it is an educational institution...but when they will now using proxysites like those ones I mentioned....well too bad..they could gain access06:16
kris_ph*know06:17
pnukeidmay be in here have experience with my problem too06:17
kgoetzkris_ph: i havent tried going to proxy sites in dans, so i dont know if it would catch stuff06:17
* kgoetz tries it out06:17
kris_phkgoetz: okay..try it out.. and tell me what happens...06:18
kgoetzkris_ph: whats a proxy i can try and use?06:19
kris_phkgoetz: in your router or in any firewall...try to deny users to access those sites...  you try www.proxycentre.com06:19
kris_phkgoetz: let's say... you block them accessing www.friendster.com then try to access www.friendster.com using www.proxycentre.com and tell me what happens..06:20
kgoetzkris_ph: i cant see a place to put in a custom site.06:21
kris_phkgoetz: ows.. I can't understand what you meant..06:22
kgoetzkris_ph: i want to try and visit 4chan (i know my proxy will block that) - but i cant see a way to do that at proxycentre06:23
kris_phkgoetz: in Enter the URL Address: you type the website URL ....then hit enter... and tell me what happens...06:25
kris_phkgoetz: you could find Enter the URL Address: in the webpage of www.proxycentre.com06:25
kgoetzah, i didnt see that option06:25
kgoetzkris_ph: dansguardian blocks this link (4chan)  http://www.proxycentre.com/index.php?q=aHR0cDovL3d3dy40Y2hhbi5vcmcv06:27
kgoetzreason is:06:27
kgoetz   ... has been denied for the following reason:06:27
kgoetz   Weighted phrase limit exceeded.06:27
kgoetz"2008.3.15 16:56:26 - 192.168.0.2 http://www.proxycentre.com/index.php?q=aHR0cDovL3d3dy40Y2hhbi5vcmcv *DENIED* Weighted phrase limit of 50 : 240 " (i've cut off teh text it blocked on)06:28
kgoetzinfact, using the proxy it was more sevearly blocked then without: " 2008.3.15 16:48:59 - 192.168.0.2 http://www.4chan.org/ *DENIED* Weighted phrase limit of 50 : 73"06:29
kris_phkgoetz: you mean.. dansguardian was able to filter it?06:30
kgoetzkris_ph: i mean exactly that06:30
* kgoetz wonders if he just shattered kris_ph 's filtering world06:45
* kgoetz must have07:01
MacKulkinanybody knows how to make a streaming server on linux using ipcam ?07:49
Jeeves_Morning08:02
Jeeves_Does anyone know if rsync 3.0 will make it into hardy?08:06
=== MacKulkin is now known as MacKulkinn
=== MacKulkinn is now known as MacKulkinnn
=== MacKulkinnn is now known as MacKulkin
=== MacKulkin is now known as Mackullkin
=== Mackullkin is now known as MaccKulkin
=== MaccKulkin is now known as MaacKulkin
=== MaacKulkin is now known as MmacKulkin
=== MmacKulkin is now known as |Quest|
=== |Quest| is now known as MacKulkin
=== MacKulkin is now known as |Quest|
=== |Quest| is now known as MacKulkin
pschulz01Evening...10:22
pschulz01Can anyone here recommend an SNMP tool that they actualll use?10:22
pschulz01(I am using cacti for some stuff..)10:22
=== MacKulkin is now known as Mackkulin
kris_phIs there a way to automatically update the ubuntu box everyday by its own?11:48
spiekeyhey!11:49
spiekeywhats wrong with this interfaces config? http://pastebin.ca/11:49
spiekeyerrr...http://pastebin.ca/94356811:49
nijabamorning11:51
spiekeyhi11:51
spiekeyi get: SIOCSIFFLAGS: Cannot assign requested address11:52
nijabakris_ph: just install unattended-upgrade11:52
kris_phwhat are the pros and cons with it?11:53
zulpros you dont have to worry about it, cons you worry about it breaking your system12:44
kris_phI've been receiving emails with these details: from Cron Daemon ; subject: Cron <smmsp@****> test -x /etc/init.d/sendmail && /usr/share/sendmail/sendmail cron-msp; Message: /usr/share/sendmail/sendmail: line 875: /usr/sbin/sendmail-msp: No such file or directory13:14
kris_phhow would I solve it? I will not be using sendmail anymore...13:15
kris_ph>I've been receiving emails with these details: from Cron Daemon ; subject: Cron <smmsp@****> test -x /etc/init.d/sendmail && /usr/share/sendmail/sendmail cron-msp; Message: /usr/share/sendmail/sendmail: line 875: /usr/sbin/sendmail-msp: No such file or directoryhow would I solve it? I will not be using sendmail anymore...13:18
faulkes-I take it you uninstalled sendmail via apt?13:33
=== joerlend__ is now known as XiXaQ
faulkes-dpkg -P <package>13:35
faulkes-which should purge anything (like config files) which are still kicking around13:35
=== cjwatson_ is now known as cjwatson
faulkes-nijaba: gonna grab a new copy of the survey and go after some of the recently submitted bugs13:58
kris_phhello... can anybody here point me to a link with guide on how to install fastcgi in ubuntu gutsy?14:29
gregbradygood morning all.15:01
gregbradyIs there a good dansguardian log analyzer out there?15:14
=== joerlend_ is now known as XiXaQ
soulcanyone here?17:03
soulcahhhhh17:37
soulcanyone know how to fix the eyecandy stuff ?17:37
gregbradyIs there a way to set a computer running ubuntu up to use a proxy server, no matter what?  I changed Firefox for my son, but then I see that he also uses other browsers, which defeat the purpose!19:19
timboyhey setting up dns here on my end my box's ip is 192.168.0.7 do I set that as nameserver in resolv.conf?19:49
timboyor do i set my isp's nameserver ip?19:50
timboynevermind I got it19:51
keithclarkHey every one, what is going on?  Pretty quiet in here!20:34
keithclarkKamping_Kaiser, this dansguardian is working wonders!  Thanks!20:55
takedown_hi, l'd like to now which more secure ubuntu or debian(not just out of the box), where security fixes comes faster or this same? I know ubuntu build with stack-protection features and have built-in apparmor support, when debian doesnt21:17
takedown_or give me a link please for a objective comparsion21:20
rglhi.22:30
rglwill hardy support xen out-of-box?22:31
Kamping_Kaiserrgl, being a xen client? i belive so22:35
Kamping_Kaisertakedown_, what sort of answer are you expecting in *ubuntu*-server?22:35
Kamping_Kaiserafk. heading out22:36
rglKamping_Kaiser, being a dom0.  the xen packages seem to live in "universe" rather than in the normal archive :/22:36
Kamping_Kaiserrgl, is dom0 a host or.../22:36
Kamping_Kaisers#/#?22:36
takedown_Kamping_Kaiser: idk, whatever22:37
rglKamping_Kaiser, dom0 is the host.  domU is the guest(?).22:37
Kamping_Kaiserrgl, host i'm not sure about, but i expect it will22:37
soneilrgl, I gather it's totally workable, just not the "supported" option.  ubuntu are going with kvm, but nothing stopping you using xen22:37
rglsoneil, oh I found the https://wiki.ubuntu.com/UbuntuWeeklyNewsletter/Issue76 which says just that.  thx.22:38
alstoneah here we are22:54
alstonehow do I get the distro name plz?23:03
ScottK2alstone: Look in /etc/lsb-release23:04

Generated by irclog2html.py 2.7 by Marius Gedminas - find it at mg.pov.lt!