/srv/irclogs.ubuntu.com/2008/11/16/#ubuntu-server.txt

yann2I am trying to setup an AD caching server, using kerberos and samba. The kerberos setup is done, the machine is part of the domain; how can i get samba to make it act as a domain controller? any link to a good documentation would be much appreciated00:08
XiXaQthis is cool stuff, I think :)00:10
XiXaQnever used thiese kinds of stuff before, so thiese technologies still have the new-smell. :)00:10
yann2well I think it's quite tough :/00:18
XiXaQtough is synonymous with cool in norwegian slang :)00:19
XiXaQhave you used many similar tools before?00:19
yann2well I've used samba for file sharing :P and got kerberos to work ^^00:21
yann2else, no00:21
yann2aaactually00:21
yann2automount, I think I've done this before00:21
yann2solaris actually uses automount by default - it's a very neat setup00:21
yann2be sure to have root in /root and you should be safe - it's not uncommon00:22
yann2as far as I understood automount enables you to spread user homes accross several servers, it's nice :)00:23
lukehasnonamethe irc logs are down00:36
lukehasnonameor something is wrong00:37
XiXaQI'm not entirely clear on what kerberos really is :)00:37
XiXaQyann2, but that sounds like a useful feature...00:38
yann2lukehasnoname > url of the irclogs?00:38
yann2lukehasnoname > depending on the bot I may be able to do something00:39
yann2http://logs.ubuntu-eu.org/freenode/2008/  < this? :/00:39
yann2*opening a ticket*00:39
yann2ah no seems fine - which logs lukehasnoname ?00:40
lukehasnonameirclogs.ubuntu.com00:40
XiXaQthe thing that's catching my attention at the moment, is the limit on 16 groups per user on ldap? That limit will easily be reached if you're going to base limitations on applications on that, such as who can run system monitor, etc.00:40
yann2right that's not me :) I'm off to bed, good night00:41
yann2XiXaQ > there is a limit of 14 groupes per user on NFS v3...00:41
yann2very, very, very painful in some cases00:41
XiXaQyann2, 14? Are you sure? I read about that just a few hours ago. I was recently certain the limit is 16?00:43
yann2I am speaking of NFS not ldap00:43
yann2could be 16 :)00:43
XiXaQbut you're right. It was NFS. :)00:43
yann2well then I can confirm, and I think that's for nfs v3 only00:44
XiXaQoh... But the applications will be local to the system, so that's probably not too important anyway..00:44
XiXaQI wonder how I can disallow users to run applications in their homes?00:47
yann2can't :)00:48
`6ogmount with noexec for a start.00:48
`6ogbut ultimately, you cant00:48
yann2ah :] anyway, good night00:48
`6ogyann2, aw, you beat me to it :p00:48
`6oglater mate00:48
XiXaQwhat does that mean?00:48
XiXaQif I mount /home with noexec, then files on that partition can't be executed?00:48
`6ogthey cant be run as executables. its still posible to run shell scripts with `sh scriptname` though (iirc)00:49
XiXaQah.00:52
=== `6og is now known as Kamping_Kaiser
paul68can someone help me out with the following problem I have this setup isp dlink router 192.168.0.1 eth1 192.168.0.10 server eth1 192.168.1.22 linksys ap. I can ping from my laptop which is attached to my dlink towards eth1 but not able to go futher. I cannot ping from my server my laptop which has ip 192.168.0.1 the server is not able to access the internet either what can I do to solve this01:23
teddy__I have chosen ubuntu-server as my server distro of choice..it used to be gentoo, and centos...02:59
teddy__ubuntu-server boots faster than any server distro i have seen.  Ubuntu-server is amazingly fast on the bootup.  However many installs in ubuntu-server do not complete fully, and require a lot of wwork to get them working.03:01
XiXaQteddy__, examples?03:13
=== DCPom is now known as DCPorn
=== DCPorn is now known as DCPom
krautmoin11:28
slytherinHi all. I was wondering what kind of updates to java stack would people like to have on server side. Is struts update and jsf addition, something that people are interested in?11:32
sidewalkis there any way to upgrade ubuntu server with something else than do-release-upgrade?13:17
Deepsyou could alter your sources.list and dist-upgrade, but it's not recommended13:18
sidewalki want to do a upgrade remotely13:20
sidewalkand the open ports to the machine are limited13:20
sidewalkwhere can i find documentation on it?13:23
sidewalkno links?13:30
Deepsubuntu homepage13:30
Deepsclick on server13:30
Deepsexplains how to do a command line upgrade13:30
Deepsand it can be done over ssh13:31
Deepswhich requires a single tcp port, by default port 2213:31
Deepssorry, get ubuntu has a link to 'how to upgrade'13:32
sidewalkwhen running that script, "do-release-upgrade" it wants to open a new ssh port, which i cannot access13:33
* Deeps has a try13:35
Deepsat what stage does it ask you to open a new ssh port?13:35
maswansidewalk: nah, it opens a new ssh port which you can connect to if something goes wrong with the normal ssh13:35
Deepsah, a failsafe sshd, smart13:36
sidewalktherefor i would like an alternate way of upgrading13:36
maswansidewalk: I've never had something go wrong with it, so I've never connected to that other sshd13:36
sidewalkokey13:36
sidewalkthen im with you :-)13:36
sidewalklets hope nothing goes wrong :P13:37
maswan(I've mostly just upgraded dapper->hardy though, I haven't tried intrepid yet)13:37
* Deeps cancels upgrade13:38
sidewalkim doing 7.10 ow13:38
lilliz[]Hi I have a ubuntu server 6.06 on a harddisk that I had to switch to another hardware, seems to boot ok but the NICs are not operativ is there some way to add drivers for it later ?15:21
lilliz[]Its basically the same hardware except that there might be a diffrent nic15:21
TwelveGaugeI'm trying to configure the DNS server for my website. I'm behind a router, do I use the local machine IP address or use my ISP IP address? Didn't have much luck using the ISP IP address.16:13
Deepsare you running the dns server on your local machine?16:16
Deepsif so, and you're behind a router/firewall/nat gateway, ensure port 53 (tcp + udp) is allowed and forwarded to the machine16:16
TwelveGaugeyeah16:17
TwelveGaugethey were open and forwarded but dig domain got nothing16:17
TwelveGaugeconfigured it using my ISP adress16:18
TwelveGaugeshould I use the local machine IP?16:18
TwelveGaugefor forwarding maybe?16:18
Deepson the machine, do dig @localhost domain16:20
Deepsif that doesn't work, the issue isn't network related, but rather your configuration of your dns server16:21
TwelveGaugeok... thanks.16:21
Deepsif you want more detailed help, gimme the domain in question and your wan ip16:22
TwelveGaugeI gotta reconfigure everything. started over from scratch since it wasn't working.16:28
TwelveGaugebut thanks16:28
XiXaQfor a mailserver, what's the best way to prevent spam? Spamhaus.org is one option. Is it expensive? Are there other such services that can be used? This will be a small mail system.16:56
paul68can someone help me out with a routing problem on my server17:16
zoopsterpaul68: just ask a question and someone may be able to help17:58
stiv2kuhh20:12
stiv2kwell, I swapped out the hard drive from my old machine into a new one20:13
stiv2kand it boots perfectly but I notice that there's no eth0 anymore20:13
stiv2kthe chip is intel 82801db networking20:13
stiv2ki cant really remember how to configure networking on command line20:13
stiv2kand furthermore why its gone like that20:14
stiv2ki think the driver might be e100 im not sure20:19
stiv2kanyone???20:35
ScottKstiv2k: Is the network card eth1 now then?20:36
stiv2kno20:36
stiv2kScottK, ifconfig only shows lo20:36
stiv2kim sure the driver is e100 btw20:37
stiv2kScottK, im stuck, I don't know how to make it recognize the chip20:37
ScottKI'm not sure.  When I've moved hard drives it's always just worked for me.20:42
stiv2kScottK, I think it has nothing to do w/ moving the hard drives but rather something with 8.10 and e10020:42
stiv2khttp://www.trap17.com/forums/installing-drivers-ubuntu-hardy-heron-t59623.html20:43
stiv2khttp://www.ubuntugeek.com/fix-for-intel-cards-with-broken-eeprom-e100-driver.html20:43
stiv2kScottK, ^20:43
* ScottK dunno.20:44
stiv2kScottK, where can I find more information about this so it hopefully gets resolved/20:45
stiv2k??20:45
ajmitchstiv2k: does 'ifconfig -a' show anything more?20:47
stiv2khold20:47
stiv2kajmitch, I swapped in another LAN card so that it works in the meantime20:47
stiv2kbut the e100 is built in so20:48
stiv2kits always there20:48
stiv2kajmitch, ifconfig -a shows it now20:48
ajmitchok, so it's detected but the interface isn't configured & up20:49
stiv2kajmitch, when I try to bring it up it says no such device20:49
ajmitchbringing it up with ifup, or ifconfig?20:50
stiv2kifup20:50
ajmitchifup only goes from configured interfaces in /etc/network/interfaces20:50
stiv2kajmitch, what do you suggest20:50
* ajmitch can't recall if udev still has a list of mac-device name mappigns20:51
ajmitchbut you could just put in the appropriate interface entry with whatever its new device name is in /etc/network/interfaces & bring it up20:52
* ajmitch hasn't had to reconfigure networking for a few releases20:52
stiv2kajmitch, i tried that20:53
stiv2khold20:53
stiv2kwtf!!!20:54
ajmitchsomething's working now?20:55
stiv2kum20:55
stiv2ki dont think so20:56
stiv2ki configured eth1 to be exactly like eth020:56
stiv2kthen I said ifup eth120:56
stiv2kand changed the network cable over to that device20:56
stiv2kFrom 192.168.1.118 icmp_seq=30 Destination Host Unreachable20:56
stiv2kand by configured I mean I configured it to be static ip20:56
ajmitchif they're exactly the same, with the same IP address & both interfaces up,  you'll have problems20:57
stiv2kwell only one of them is connected to the network20:57
stiv2kdoes it still matter?20:57
stiv2kshould I make the ip different then20:57
ajmitchit'd help20:57
stiv2kalright20:57
stiv2kok20:59
stiv2know they are both connected to the network20:59
stiv2kon different ips20:59
stiv2kif I ping the one that's known to work...21:00
stiv2khttp://stiv2k.info/phpsysinfo/21:00
stiv2koops21:00
stiv2k64 bytes from 192.168.1.10: icmp_seq=1 ttl=64 time=0.973 ms21:00
stiv2kand the other one (eth1)21:00
stiv2kFrom 192.168.1.118 icmp_seq=2 Destination Host Unreachable21:00
stiv2kajmitch, so it doesn't seem to be working at all21:00

Generated by irclog2html.py 2.7 by Marius Gedminas - find it at mg.pov.lt!