/srv/irclogs.ubuntu.com/2009/05/07/#ubuntu-server.txt

andolmathiaz: Brian Murray suggested that I might want to make a SRU proposal for bug #296952, regarding Ubuntu 8.04. While preparing (and testing) the debdiff I of course ran into bug #323755. Think this would be a good time to suggest a SRU for that bug as well?00:21
uvirtbotLaunchpad bug 296952 in mysql-dfsg-5.0 "mysqlhotcopy failed on table with hyphen in name" [Undecided,Fix released] https://launchpad.net/bugs/29695200:21
uvirtbotLaunchpad bug 323755 in mysql-dfsg-5.0 "server-cert.pem expired: "Not After : Jan 27 08:54:13 2009 GMT" - ssl related test suites fails because of expired certificates" [Undecided,Confirmed] https://launchpad.net/bugs/32375500:21
uvirtbotNew bug: #373012 in mysql-dfsg-5.0 (main) "package mysql-server-5.0 5.0.67-0ubuntu6 failed to install/upgrade: subprocess post-installation script returned error exit status 14" [Undecided,New] https://launchpad.net/bugs/37301200:21
mathiazandol: yes00:22
andolmathiaz: Ok, will do.00:23
marksmanI have an ubuntu lamp server and I would like it to display pertinent information directly to me when I login.  For example... serious apache/mysql errors.... penetration attempts.... etc.  Is this possible / a good idea?01:10
=== jes_ is now known as XiXaQ
mikegriffinmarksman: if you generate that stuff periodically and then display it, prolly not so bad. on the other hand, if the system is under load and simply logging in fires off a bunch of regex, you might have problems if the server is under load01:13
mikegriffinand i repeated myself there..01:14
mikegriffinmarksman: you might just install logwatch and have it emailed to you daily01:14
marksmanthat just emails all logfiles?01:14
mikegriffinno. you should 'apt-cache show logwatch'01:15
fbc-mxHi, does the 9.04 server give you an interface for managing samba or do you still need to manually edit conf files?01:19
darthanubisfbc-mx, the repos are the same as regualr ubuntu01:22
darthanubisbasically you can install a gui if you need01:22
darthanubisbut one is not provided as default01:22
darthanubisbecause, it is the SERVER edition01:22
fbc-mxdarthanubis, how would I go about locating a text based gui?01:23
darthanubissearch synaptic01:23
darthanubisor apt-cache01:23
darthanubisgoogle01:23
darthanubisetc.01:23
foxbuntutext based gui?01:23
foxbuntuuh? ssh?01:24
fbc-mxfoxbuntu, yeah like aptitude..01:24
foxbuntu:P01:24
foxbuntufbc-mx, sorry, Im not adding anything here...I am just feeling a little puncy so I am pulling your chain01:24
fbc-mxfoxbuntu, it's still a gui.. even if it's not running under gnome... and and it better than digging into conf files when all your interested in are results. Sometime you don't have the time to learn every setting in a conf and just want a gui to do the basics.01:25
mikegriffina gui will often break something while fixing another, i dont use them if possible01:26
foxbuntufbc-mx, to an extent yes01:26
foxbuntufbc-mx, what are you trying to accomplish on your server?01:28
foxbuntufbc-mx, other than a "text based gu"01:28
foxbuntus/gu/gui01:28
fbc-mxfoxbuntu, just basic management.. rights controls etc...01:29
foxbuntufbc-mx, then you might consider ebox01:29
fbc-mxfoxbuntu, I have to have a working Ubuntu samba server by Monday or my name is MUDD. I opened my big mouth at a management meeting and mentioned that a linux server would increase the uptime of the server, due to downtime cause by getting the windows server os infected all the time. So now I gotta make this happen.01:30
mikegriffinwhat is the recommended way to go about trying ebox? install u-server via iso and then ebox is the next package you install?01:31
mikegriffinfbc-mx: if the os is getting infected all of the time, you have other problems ftr01:31
foxbuntumikegriffin, that would be one way01:31
mikegriffinfbc-mx: you might just try swat?01:31
mikegriffinfoxbuntu: might there be a better way?01:31
mikegriffinfbc-mx: do not use swat apparently01:32
foxbuntumikegriffin, not really, you could do it in a VM to keep it contained while yo try it01:32
mikegriffini just didnt know if there was an image that set stuff up in a way specifically for ebox01:32
mikegriffinebox can find the existing stuff generally if it is pretty stock i guess01:33
foxbuntufbc-mx, being a windows consultant to pay the bills, if you have lots of down time and infections in your file server, you have other security issues in your infrastructure that need plugged01:33
fbc-mxmikegriffin, the Windows guy is a jerk and doesn't know what he should and doesn't want to put the work into tightening up network security. So I proposed a linux solution the just works.01:33
fbc-mxfoxbuntu, ebox looks right up my alley though...01:34
foxbuntufbc-mx, yeah...should be what you need01:34
foxbuntufbc-mx, but your also likely going to need ldap+kerbros support setup for samba01:34
darthanubisfbc-mx, webmin01:35
foxbuntudarthanubis, no no01:35
darthanubislol01:35
darthanubisbut a gui other than that is a-ok01:35
foxbuntudarthanubis, webmin != good01:35
mikegriffinis ebox an ubuntu thing? i dont see it on debian testing01:35
darthanubisfbc-mx, you said you did not care how stuff works01:35
foxbuntumikegriffin, yes...the the ubuntu-server management app01:35
darthanubisit does the job01:35
fbc-mxfoxbuntu, I typed "sudo shutdown now" and I get a recovery menu on ubuntu server.. Is there some new special command to get this done?01:36
foxbuntufbc-mx, yup, on servers you need to do sudo shotdown -P now01:36
mikegriffinwhat would be the diff between -h and -P ?01:36
foxbuntumikegriffin, man shutdown :)01:37
fbc-mxdarthanubis, No, I do. How ever I don't have the time right now to dig into it. I need a solution STAT. No like4 or 5 days after I read enough howto's to figure it out.01:37
darthanubisfoxbuntu, right01:37
mikegriffini did, sorry01:37
darthanubisfbc-mx, webmin works01:37
darthanubisNOW01:37
mikegriffindarthanubis: webmin works like windows 'works'01:37
darthanubisyou don't ahve to learn anything01:37
darthanubismikegriffin, but it works01:37
mikegriffindarthanubis: add a redirectperm in apache through webmin01:38
darthanubismikegriffin, the guy is lazy01:38
darthanubisi gave a lazy option01:38
darthanubiswindows is for the lazy01:38
darthanubiswe agree01:38
mikegriffinebox seems more intuitive01:38
* foxbuntu can see this is going to take a turn for the worse and returns to productive things01:38
mikegriffinha, thanks fox01:38
foxbuntulater guys01:38
darthanubisprescient01:38
darthanubisnice01:39
fbc-mxdarthanubis,  I'm using webmin manage our hosted company  webserver. So I'm quite familiar with it. However it just does too much. I wish I could like remove the plugins I will never use and it will only customize with the left over plugings and not continue to suggest option for plugins that aren't even installed.01:40
darthanubisit does that01:40
darthanubisit called modules01:40
darthanubisand they don't all have to be installed or used01:40
fbc-mxdarthanubis, yes, but I remove modules, and webmin continues to give me options for modules that aren't installed. I forgot what happened one time but I think I recall making a change to a domain, and it asked me if I wanted to sync it with a service the server wasn't even running, and the plugin wasn't even installed..  Which is why I shy away from webmin. webmin to me is like a lazy webmasters tool. For someone who knows the  rope, but chooses a nic01:43
fbc-mxe interface to do the work for you.01:43
darthanubisI seem to never have these nightmare experiences that others have?01:44
foxbuntudarthanubis, you're perfect!01:46
foxbuntuheh01:46
darthanubis:-P01:47
foxbuntuah man01:47
foxbuntuyour over...01:47
darthanubisfoxbuntu, what are you doing out of the ubuntu-mythtv channel?01:47
darthanubisget back where you belong01:47
foxbuntudarthanubis, Im never out of there :P01:48
darthanubis;)01:48
fbc-mxfoxbuntu, darthanubis , mikegriffin , well wish me luck. I think that I will crowned network guru after this coup, and the network guy will be demoted to some paper pusher job.01:53
foxbuntufbc-mx, gl...01:54
fbc-mxfoxbuntu, how do I make ubuntu server scan for a new NIC and set it up in the interfaces file?02:02
mikegriffinfbc-mx: the nic should be present, checked ifconfig -a ?02:10
fbc-mxmikegriffin, I thoguth maybe a modprobe but, I wouldn't even know where to start trying to identify which driver goes with which card.02:16
fbc-mxmikegriffin, yeah it is it's just not setup... I never knew that ifconfig-a would show me interface that weren't setup... kewl.. I learn somethign new every day.02:17
storrgieso i added a bad rule to ufw, how can i see a rule list so i can remove it?02:28
storrgiedoes ufw store that list some place?02:28
jmarsdenstorrgie: sudo ufw status   # shoudl show 6you what it is doing.  Then use sudo ufw delete whatever   to delete the bad rule02:29
storrgiehttp://pastebin.com/m6d347ffe02:30
storrgiedoes it store these in a file02:31
storrgieits not in /etc/ufw02:31
jdstrandstorrgie: /var/lib/ufw/user*rules02:31
jdstrandstorrgie: what was the command you used to add this errant rule?02:32
storrgielawl02:32
storrgieumm02:32
storrgiewell i want to add a port range02:32
storrgiespecifically 56000-5700002:33
storrgieallow all of them02:33
storrgiei dont remember... it did break it... like a bawsss02:33
jdstrandstorrgie: you don't have it in your command history?02:33
storrgiei did it 2 days ago02:33
storrgiethis box has been neglected02:33
jmarsdenUnless you type a lot it may well still be in your command history :)02:33
storrgiedo you know how to do port range?02:34
storrgieoh i bet it is02:34
storrgiei just dont want to hit up a billion times02:34
jmarsdenhistory | grep ufw02:34
storrgieummm02:34
storrgiei think i was a diff user02:34
storrgieone moment02:34
storrgieanyway while i look02:34
storrgiedo you know how to do port ranges02:34
jmarsdenman ufw suggests port ranges use a colon separator, so   sudo ufw allow 56000:57000/tcp  # looks reasonable to me02:35
jdstrandstorrgie: man ufw02:35
jdstrandit requires the extended syntax02:35
jdstrand$ sudo ufw allow proto tcp from any to any port 56000:5700002:36
storrgiehttp://pastebin.com/m435b223302:36
storrgieohh02:36
storrgieok lemme try that02:36
jdstrand(assuming you want tcp, if not, omit 'proto tcp'02:36
storrgieif i do will it do both?02:36
jdstrandyes02:37
storrgieso02:37
storrgiei deleted that line in user.rules02:37
storrgiebut when i do ufw status i get the same bad port error02:37
storrgiedo i need to bounce ufw?02:37
jdstrandstorrgie: what version of ufw are you using?02:37
storrgie0.23.202:38
jdstrand(actually, 'ufw allow 56000:57000/tcp' does work on jaunty)02:38
storrgiewell02:38
jdstrandstorrgie: can you paste your user.rules and user5.rules files?02:39
storrgielemme show you my user.rules02:39
jdstranderr user6.rules02:40
storrgiehttp://pastebin.com/m563e4f6e02:40
jdstrandstorrgie: ok, now do:02:40
storrgieok now im getting status not loaded02:40
jdstrand$ sudo ufw disable02:40
jdstrand$ sudo ufw enable02:40
storrgiejdstrand: now its fine i think02:41
storrgiejust need to add the range rule02:41
jdstrandstorrgie: when you edit user.rules by hand, you need to flush the rules and reload them by disabling and enabling02:42
jdstrandgenerally, editing user.rules is not recommended, but if you have to, you can02:42
storrgieahh02:42
storrgieok lemme show u my new rules02:42
storrgiehttp://pastebin.com/mc61beaa02:43
jdstrandstorrgie: that is what you want, no?02:43
storrgiei believe....02:43
storrgiescared!02:43
storrgieim gonna enable02:43
jdstrandstorrgie: did it work?02:45
storrgiei believe so...02:45
jdstrandstorrgie: sudo ufw status02:45
storrgieyea its outputting fine02:45
jdstrandok good02:45
storrgieit doesnt show me the default02:45
storrgieshould my default be deny?02:46
jdstrandstorrgie: that is the default policy, yes02:46
jdstrandstorrgie: sudo ufw status verbose02:46
storrgieexcellent02:46
storrgiethanks bud!02:46
storrgieadding ranges was pissing me off..02:46
jdstrandsure, np02:47
jdstrandI'll be sure to add a testcase for :56000:57000 and test on intrepid02:47
storrgieever use fail2ban?02:47
storrgieim in intrepid :D02:47
* jdstrand nods02:47
storrgie8.10 right?02:47
storrgieim on an OVH box, so custom kernel02:48
jdstrandyes, 8.10 is intrepid02:48
jdstrandand no, I don02:48
jdstrandt use fail2ban02:48
storrgieahh ok02:48
reidwhoever told me to use mpd... is now my favorite person in the world04:14
reidmpd is simply the best thing I've ever seen in my life04:14
reidso if that person is here right now.   Thanks =P04:15
=== mcasadevall is now known as NCOmmander
=== NCOmmander is now known as NCommander
=== lamont` is now known as lamont
TimReichhartcould anybody help me getting .citadel to come up on my server04:23
wizardslovakhello people04:26
wizardslovaki need someone to help me with email server04:31
TimReichhartyou having problems with a email server also04:33
wizardslovaknot problem04:44
wizardslovakTimReichhart: i want to install  and configure email server for my web site04:44
TimReichhartim trying to do the same thing04:44
TimReichhartI have been on this thing for almost a week now04:45
wizardslovakwell hopefully someone will come04:48
DobleHi folks, I have just installed squid on Ubuntu, following the ubuntu server guide, and I haven't changed any of the config other than the http_port and the visible_hostname, but when I try to browse from my PC using the proxy, I recieve an error "Access Denied - Access control configuration prevents your request from being allowed at this time." even though I am on a 10.x.x.x network and 10.0.0.0/8 is in the ACL allow list by default.04:48
wizardslovaki host my web site on my own server04:48
wizardslovakDoble: what are you trying to do>??04:49
Doblejust set up a really basic proxy04:50
Doblecaching and eventually bandwidth control04:50
wizardslovakhmmm04:50
wizardslovakDoble:  check this https://help.ubuntu.com/8.04/serverguide/C/squid.html04:52
twbDoble: by default, squid does not allow connections from anything but the localhost (i.e. the lo interface).04:54
twbDoble: this is to avoid sysadmins accidentally exposing the service to an untrusted network.04:54
twbDoble: if you examine the squid config file, you will see (commented out) examples referring to (IIRC) "our_networks".04:54
mikegriffingrep -v ^\# squid.conf, that will help04:55
twbmikegriffin: pah04:55
twbegrep -v '^[[:space:]]*($|#)' is the full one.04:55
twbBTW, you don't need to escape the octothorpe if it is preceded by a non-blank character.04:56
wizardslovakuuu people showed finally04:56
Doblethanks, I am doing what I should have done to begin with and reading Squid's user guide :) I will be back in a few minutes once i've read through the first few pages04:58
mikegriffinDoble: not if you figure it out04:59
wizardslovakemail server anyone?05:00
wizardslovaki got php installed , what to do so i can use phpmyadmin on it?05:09
wizardslovakwhat do you people think of this? http://www.howtoforge.com/virtual-users-domains-postfix-courier-mysql-squirrelmail-ubuntu8.1005:11
mikegriffinusing a mysql backend for postfix is usually overkill05:13
mikegriffinuse system accounts when you can05:13
wizardslovakwhats he difference btw using system accounts vs mysql accounts05:15
mikegriffinusing an sql backend requires some sort of intermediary authentication such as sasl but has more flexibility for large scaling05:21
wizardslovakwell i will host probably 5-10 email accounts on my web site05:22
wizardslovakno more05:22
Dobletwb: thanks, I'm still having some trouble, I've added an ACL, and allowed it, and even tried commenting out the "deny all" ACL at the bottom, but I still get an access denied error05:37
Dobletwb: nevermind, I had a stray space in one of my ACLs - looks like it's working now!05:41
wizardslovakwhat MX priority?05:47
mikegriffinwizardslovak: http://lmgtfy.com/?q=mx+record05:48
wizardslovaklol nice05:50
wizardslovakproblem is i want to mae MX on domain name and it asks me for mx priority ( default is 10) should i leave it or change it?05:50
mikegriffinone of those will likely work05:51
mikegriffinnight everybody05:51
wizardslovakok so i will leave 1005:51
wizardslovaknight mike05:51
mikegriffindamn it05:51
wizardslovakis ispconfig good to use?06:04
wizardslovakdifference btw webmin and ispconfig06:04
dexem!webmin06:14
ubottuwebmin is no longer supported in Debian and Ubuntu. It is not compatible with the way that Ubuntu packages handle configuration files, and is likely to cause unexpected issues with your system. See !ebox instead.06:14
wizardslovak!ebox06:23
ubottuebox is a web-based GUI interface for administering a server. It is designed to work with Ubuntu/Debian style configuration management. See https://help.ubuntu.com/community/eBox06:23
ballIs there a small "Powered by Ubuntu Server" badge somewhere for me to stick on Web pages?06:24
wizardslovakcheck google images06:25
ballI did, but I've not found anything appropriate.06:26
wizardslovakok so now i am f$%^&d06:26
ball?06:26
wizardslovaki was trying to install ispconfig , and now i cant see my website again06:27
wizardslovakhow can i remove it?06:27
wizardslovaki tried apt-get remove ispconfig but it says "couldnt find package ispconfig"06:28
mattt_did you install it via apt?  :)06:33
=== mattt_ is now known as mattt
wizardslovakok i used uninstall.php06:36
wizardslovaki dont have it nomore06:36
wizardslovakbut still i cannot see my website06:36
wizardslovakwww.wizzy.us06:37
wizardslovakbefore i installed it it worked fine06:37
wizardslovakshould i restart server or somethin?06:37
matttno idea06:38
wizardslovakdamn06:38
matttbut if ispconfig is anything like plesk ... good luck :)06:38
wizardslovakplesk??06:38
matttit's similar to ispconfig i believe06:38
wizardslovakhmm06:38
matttlets you config all your web hosting through an admin panel06:38
wizardslovakso you dont really know how to help me06:39
matttnope06:39
wizardslovakcan i check if apache is running06:39
matttsure06:39
mattttry 'apache2ctl status'06:39
mattt(provided you're using apache2)06:40
wizardslovakgive me sec trying to reset server06:40
wizardslovakdamn i am always stupid enought to try everything06:40
wizardslovakand then something is fucked06:40
matttlanguage06:41
wizardslovaksorry06:41
wizardslovakw3m: Can't load http://localhost:80/server-status.06:41
mattt:)06:41
mattt/etc/init.d/apache2 start06:41
wizardslovakhttp://pastebin.com/m131d273906:42
wizardslovakok i see apache config has something wrong06:43
matttoh06:43
matttsorry06:43
wizardslovak??06:43
matttyou need to use sudo06:44
mattt'sudo /etc/init.d/apache2 start'06:44
wizardslovak"apache2: Could not reliably determine the server's fully qualified domain name, using 127.0.1.1 for ServerName"06:44
wizardslovakso what do you think?06:47
wizardslovaki think my domain name has been changed06:47
wizardslovakwhats the default apache config file?06:47
=== RoAk is now known as RoAkSoAx
mattthmm, check under /etc/apache2/sites-enabled06:48
wizardslovaknothing06:49
wizardslovaki opened it with nano06:49
wizardslovakits folder with 000-default and 000-ispconfig.conf06:51
wizardslovakok what if i remove 000-ispconfig06:51
wizardslovakthen apache should read from wizzy.us06:51
wizardslovaki mean from 000-default06:52
wizardslovak??06:53
wizardslovakthen i would need to point apache to read from 000-default06:53
matttsorry, not familiar w/ ispconfig, so i don't know what changes it could have made06:55
matttwizardslovak: try moving 000-ispconfig.conf out of the way (ie. to /root or /tmp) and then restart06:56
wizardslovakok i removed it06:56
wizardslovakcommand /etc/init.d/apache2 restart??06:56
wizardslovakpache2: Could not reliably determine the server's fully qualified domain name, using 127.0.1.1 for ServerName06:57
wizardslovakapache2: Could not reliably determine the server's fully qualified domain name, using 127.0.1.1 for ServerName06:57
wizardslovakas i thought06:57
wizardslovaki need to change apache config file maybe06:57
matttcan you do this for me06:59
wizardslovaki am reading apache2.conf06:59
matttnetstat -na | grep :80 | grep LISTEN06:59
wizardslovakerror grep:80 command not found07:00
mattttry again07:00
mattt:)07:00
mattt"grep<SPACE>:80"07:00
wizardslovaktcp        0      0 0.0.0.0:80              0.0.0.0:*               LISTEN07:01
matttseems to be running then07:01
matttdude, try wizzy.us, it's working07:01
wizardslovaklol07:01
wizardslovakhow come?07:01
ballI'm going to bed.07:01
wizardslovaknite ball07:02
matttball: night07:02
wizardslovakok i see07:02
wizardslovakin apache2.conf07:02
wizardslovakthere is "07:02
wizardslovakInclude the virtual host configurations:07:02
wizardslovakInclude /etc/apache2/sites-enabled/07:02
matttcorrect07:03
wizardslovakso that mean by removing 000-ispconfig , apache read other file which is 00-default07:03
wizardslovakwhich is right one ;p07:03
matttwell07:03
matttit would have still read 00-default07:03
matttbut it would have read it AFTER 000-ispconfig07:03
wizardslovaki removed it07:04
matttright, but before you removed it07:04
wizardslovaki know07:04
wizardslovakuuu07:04
wizardslovaki feel better07:04
wizardslovakwhats stored in /tmp07:04
wizardslovaki se i got used 11mb out of 47107:05
mattttypically tmp files07:05
mattthey, gotta jet, brb07:05
* mattt is afk07:05
wizardslovaksure07:05
wizardslovakthat email how tos are pretty tough07:08
wizardslovakhow to add repository?07:23
oh_noesI need to allow a nonroot user access to bind to port 80 -- what options do I have in Ubuntu server 8.04?07:32
Kamping_Kaiseroh_noes, sudo?07:33
twboh_noes: the program that binds to port 80 must be setuid (or via sudo), and then immediately relinquish its privileges after binding.07:33
wizardslovakhmmm ebox doesnt work with 8.1007:34
twbOr, you could set up mod_proxy or mod_rewrite and connect it to the user's high-port binding.07:34
twbI think nginx can do that easily, too.07:34
oh_noesI dont want to grant the program sudo/root rights though.   100% on root user, except now with ability to bind to port 8007:35
twbWhat is this program?07:35
oh_noesand it needs to be done at the OS level, without application changes07:35
oh_noesjust a custom java app.07:36
twbWhy does it need port 80, specifically?07:36
oh_noesbecause it's a web server?07:36
oh_noesoops, -?07:36
twbWeb servers aren't required to use port 80.07:36
oh_noesbecause the business has a requirement to run it on port 80, I have the IT requirement to ensure its nto running as root07:37
twbThen we come back to16:38 <twb> Or, you could set up mod_proxy or mod_rewrite and connect it to the user's high-port binding.07:37
oh_noesin solaris it's just a matter of priv_netaddr access .. i was hoping something identical existed in debian stack07:37
twbYou run a simple service on port 80 that just redirects requests to the java app07:37
jmarsdenoh_noes: proxy it.  Or if you have a decent router between server and Internet, do the port mapping in the router instead.07:38
twbI'm not aware of anything like that, but that doesn't mean it doesn't exist.07:38
oh_noeshrmm, I wonder if apache2 can handle the data piping, similar to mod_jkk07:38
twbI'd say DNAT is overkill for this07:38
oh_noesDNAT is getting outside the scope of the initial requirements, obviously we want to random custom java on our servers as non-root07:39
oh_noesI just didnt think ubuntu would have such a hard time handle it07:39
wizardslovaksince we got here people ill ask07:40
wizardslovakdid anyone installed email server on ubuntu??07:40
Kamping_Kaiserwizardslovak, i'm sure theres an email server on ubuntu somewhere in the world07:41
Kamping_Kaiseroh_noes, the other option is no one here has bothered to do whatyou need.07:41
wizardslovaki know i need someone to guid me thru07:42
DawnLighthello. samba question, please. even though i've auto home directories configured, they seem to not appear in the list. if i don't set 'browseable = no' the homes share is visible. help? 'smbclient -L SERVA': http://pastebin.com/f2f9e6da5 testparm: http://pastebin.com/f6428611507:42
Kamping_Kaiserhave you followed the guide on the wiki(s)?07:43
twbDawnLight: home directories are only visible to the users that own them.  Dunno if that helps...07:43
DawnLighttwb: "The browseable flag for auto home directories will be inherited from the global browseable flag, not the [homes] browseable flag. This is useful as it means setting browseable = no in the [homes] section will hide the [homes] share but make any auto home directories visible."07:45
DawnLightso they're supposed to be visible07:45
arDoes anyone have any experience installing ehcp?07:47
* Nafallo doesn't even know what it is07:48
sorennxvl: This bit from the changelog needs to go: +    - Don't fail to run iptables-save if iptables module isn't loaded.07:48
sorennxvl: That's what this patch did: +  * Droped 0903-autoload-module-in-iptables-save.diff, fixed upstream07:48
arits a new web host control panel for Ubuntu07:48
Nafalloah07:49
arhttp://www.howtoforge.com/instaling_ehcp_on_debian_ubuntu#comment-388607:49
sorenNever heard of it.07:49
arits actually pretty nice07:49
arclean layout07:49
nxvlsoren: right i forgor to change that in the changelog07:49
nxvlforgot*07:49
nxvlsoren: you want me to prepare a new patch?07:50
arNafallo can you tell me how I could add these to my sources.list http://www.ehcp.net/?q=node/38907:50
arI went to the url but its just directories?07:50
arwhen I do install for ehcp it tells me my sources.list file contains very few sources07:51
ar???07:51
arI dont know what they mean by that07:51
sorennxvl: Nah, that seems to be the only problem, so I'll just do it for you.07:51
Nafalloar: sorry, I can't. I got to run.07:52
sorennxvl: I just need to test-build it, and I'll upload. Thanks for doing it!07:52
arok np thank you07:52
* nxvl HUGS soren 07:52
nxvlsoren: yeah, it was quite a lot of work, some patches didn't applied, so i needed to re-do them07:52
aranyone know how to add http://www.ehcp.net/?q=node/389 to source.list ?07:52
nxvlsoren: plus dig into changelogs to find out about that patch07:52
nxvlsoren: but i'm happy to help :D07:52
sorennxvl: Yeah, sorry I didn't tell you. I forgot all about submitting that stuff upstream.07:53
jmarsdenar: man sources.list    may offer some clues ... although that is a slightly odd-looking URL for a repository07:53
nxvlsoren: the issue was that the upstream changelog isn't in the source07:53
nxvlsoren: so i needed to go into the web page and start openning one by one the changelogs07:53
nxvlsoren: i noticed that it was included in the source, i saw some bits of the patch, and some other quite different07:54
aryeah agree jmarsden, I thought maybe it would be text I could copy and past into the source.list but its directories07:54
Kamping_Kaiserar, and i'd suggest you use a file in sources.list.d instead of editing the real thing07:54
arstrange07:54
nxvlsoren: so i went to the changelogs just to be sure07:54
sorennxvl: Yeah, the patch changed quite a bit while I was discussing it with upstream. that's the way it goes sometimes :)07:54
arhow come Kamping_Kaiser?07:54
nxvlsoren: plus the DM didn't document some changes that i noticed in some files07:54
nxvlsoren: i can imagine07:55
arnot wise to edit the source.list file?07:55
Kamping_Kaiserar, so if you screw up you can remove one file to remove the repo, instead of trying to fix a key system file07:55
jmarsdenar: That URL is just a page with an example sources.list on it... it is not a repo at all, from what I can see.07:56
wizardslovaki installed ebox , and it doesnt connect07:56
arGotcha Kamping thank you :)07:57
Kamping_Kaiserar, :)07:57
arjmarsden so I would just open a file and copy the text in a new file as Kamping mentioned?07:57
jmarsdenar: Well, only if those examples are exactly what you need for your system...07:57
wizardslovakhow to find directory??07:58
jmarsdenWhat is it that you want from a new repo anyway?  What software are you looking for?07:58
wizardslovakfind /directory07:58
arehcp says It's need for their web host control panel07:58
jmarsdenar: Seem dubious to me... that is just an example Intrepid /etc/apt/sources.list file07:59
arlol ok, thanks jmarsden!07:59
jmarsdenYou might want to edit your /etc/apt/sources.list and uncomment a few repositories that are currently commented, maybe??  is that what ehcp is wanting?08:00
arAm I allowed to paste here?08:01
ScottK!pastebin08:01
ubottupastebin is a service to post multiple-lined texts so you don't flood the channel. The Ubuntu pastebin is at http://paste.ubuntu.com (make sure you give us the URL for your paste - see also the channel topic)08:01
arThis is what it says here http://pastie.org/47090108:02
arThe thing is these are intrepid source.list files Im running Hardy?08:03
jmarsdenar: So it just wants to see a few more lines in the sources.list, so go ahead and edit yours and uncomment some (reasonable) ones.08:03
jmarsdenI'd suggest making sure you -security in there, as a start.  But really, that message is not an error, just "advice" you can ignore if you want to.08:04
arjmarsden theres nothing commented out in the source file http://pastie.org/47090308:04
jmarsdenar: Looks fine to me, ehcp is warning you about nothing important, just ignore the warning :)08:05
ar:) ok thanks Jmarsden08:06
arvind_khadrihi, in the smb.conf does uncomment mean remove the ; ?08:10
jmarsdenarvind_khadri: Yes, or the # -- whichever is at the start of the line you need to uncomment.08:12
arvind_khadrijmarsden: ; in this case08:13
arvind_khadrijmarsden: is it compulsory to enable cups in smb.conf to enable printing on a shared network08:15
jmarsdenarvind_khadri: I don't know, but I don't think so... I'd read the Samba docs to find out.08:16
sorennxvl: Uploaded.08:18
reidhey, anyone able to tell me real fast how to put a directory via ftp?08:25
reidtells me not a plain file, and cant find an option in 'man ftp'08:25
ha1331how to reinstall apache, in a way that the /etc/apache2 directory and it's contents is recreated08:28
ha1331all I get I reinstall is empty httpd.conf08:29
ha1331all I get if I reinst....08:29
sorenha1331: httpd.conf is empty by default.08:30
sorenha1331: Look at apache2.conf instead.08:30
ha1331sorenno, that's what I'm saying... no other configs than empty httpd.conf08:31
ha1331need to reinstall it in a manner that the /etc/apache2 is re-created08:32
sorenha1331: http://people.ubuntu.com/~soren/apache2-etc.tar.gz is a clean /etc/apache2 directory (from Jaunty(08:34
twbreid: FTP has no recursive put.08:41
twbreid: some clients implement it client-side by repeatedly calling PUT on files and CD/MKDIR(?) on dirs08:42
twbFailing that you can make an archive, e.g. tar --lzma -cf foo.tar.lzma foo; ftp -c put foo.tar.lzma fs08:42
wizardslovakwhen i install ebox , i still be able to control server over ssh ??08:44
sluimersHello, my postfix is complaining about greets to it's own hostname. -> http://ubuntuforums.org/showthread.php?p=7230610#post7230610 I don't understand it.09:09
arvind_khadrihow do i make a windows machine logon to DC which runs samba09:15
twbsluimers: it sounds like the problem is that your machine doesn't know if it's name is "mail.mydomainname.com" or "mydomainname.com"09:17
twbsluimers: probably your /etc/hostname, /etc/hosts and DNS records do not match.09:18
arvind_khadritwb: how do i make a windows machine logon to DC which runs samba??09:18
twbarvind_khadri: I don't know of care.09:18
twbarvind_khadri: I don't know oR care.09:19
arvind_khadritwb: where do i look  ?09:19
twbarvind_khadri: I've no idea.09:19
sluimersboth /etc/hostname and /etc/hosts say mydomainname.com09:19
sluimersthat's correct right?09:23
skiquelhi, I'm using bind9 to forward *.ldnm.lan to 127.0.0.1, and having trouble getting it to work. I have the code/some debug commands at http://ubuntuforums.org/showthread.php?t=115138209:23
sluimersmy MX (Mail Exchange) should go to mail.mydomainname.com09:23
sluimersI mean goes to09:23
twbsluimers: to be honest, I'm not too sure.09:24
sluimers... they should all match mydomainname.com?09:24
sluimersIt's making me so confused09:24
twbsluimers: I think the easiest way to fix the issue is to add an option to postfix that says "expect mail. sometimes".09:25
sluimerswhere to use mail.mydomainname.com and where I should use mydoainname.com09:25
twbsluimers: you'll have to talk to #postfix of wait for someone else here, to know how to do that.09:25
arvind_khadrihow do i make a windows machine logon to DC which runs samba09:55
=== jwstolk1 is now known as jwstolk
skiquelhi, I'm using bind9 to forward *.ldnm.lan to 127.0.0.1, and having trouble getting it to work. I have the code/some debug commands at http://ubuntuforums.org/showthread.php?t=115138210:46
NineTeen67CometWhat other php.ini file do I need to edit to enable more than 2mb upload to my apache/gallery .. ? I've got /etc/php5/cli/php.ini at 12M upload size and still it tells me 2mb max (in drupal) .. help?11:08
ivoksNineTeen67Comet: that's not the one11:33
Kamping_Kaiserclue is in the path (cli)11:35
ivoksreal path is /path/to/your/website/.htaccess :)11:35
Kamping_Kaiser:)11:36
NineTeen67CometKamping_Kaiser: okay I'll look around in ./drupal ..11:36
Chipzzno11:36
NineTeen67CometI didn't think the cli portion of php was the issue ..11:36
Chipzzyou need /etc/php5/apache2/php.ini11:36
Chipzz(assuming you use mod-php)11:37
NineTeen67CometChipzz: that sounds much more familure ..11:37
ivoksif you edit /etc/php5/apache2/php.ini, you'll have anoying questions on upgrade11:37
Chipzzand apache needs a restart for that setting to take effect11:37
Chipzz(not reload, restart)11:37
ivoksif you add /etc/php5/conf.d/my_cool.ini you'll avoid that anoying question11:37
sluimersHi, I have installed squirrelmail, what are my usrname and password?11:38
ivoksin both cases you'll impose some config to all of your sites11:38
sluimersWhere can I can find them?11:38
ivoksso, having it in .htaccess is the best thing to do11:38
NineTeen67Cometivoks: if I add my own .ini what info does it need? Basically just the maximum file size line?11:38
sluimersand how can I edit/add/remove new usernames and passwords?11:38
ivoksbut sure, just ignore me and do what Chipzz told you; then come back in couple of months and ask us the same question :)11:38
ivoksNineTeen67Comet: yes11:38
Chipzzivoks: that assumes you have AllowOverride All on in your vhost11:39
ivoksChipzz: sure11:39
Chipzzivoks: tssssk11:39
Kamping_Kaisersluimers, usually the same logins available via your imap server11:39
NineTeen67Cometivoks: Chipzz I'll have to see what my .config says about AllowOverride ..11:39
Chipzzivoks: I'ld say my solution is a lot more correct than yours :P11:39
ivoksChipzz: why is that?11:39
Chipzzivoks: and no, he will not come back11:39
Chipzzivoks: give me one reason why my suggestion wouldn't stick?11:40
Chipzzhint: there is none11:40
ivokshe will, once he answers 'Yes, overwrite package's conffile'11:40
ivoksi didn't say it wouldn't work11:40
Chipzz*sigh*11:40
* Chipzz hands ivoks a gun11:40
ivoksit's just that smart people came up with .d directories11:40
Chipzznow shoot yourself in the foot11:40
ivokswhich enable you to have custom changes11:40
Chipzzivoks: /etc/php5/conf.d/ is NOT meant for what you are suggesting11:41
arvind_khadrihttps://help.ubuntu.com/9.04/serverguide/C/samba-ldap.html is this fine for ldap configuration ?11:41
ivoksChipzz: ?11:41
Chipzzivoks: it's meant for php extensions to drop their .ini files in11:41
ivoksdoh...11:42
ivoksso, /etc/apache2/conf.d is of the same case?11:42
Chipzznot for making your own modifications11:42
ivoks /etc/amavis/conf.d also?11:42
ivoks /etc/modprobe.d/ also?11:42
ChipzzI would say it is, yes11:43
ivoksChipzz: if you don't understand it, don't put up a claim11:43
sluimersKamping_Kaiser, where can I see those logins available via my imap server?11:43
Chipzzivoks: I was about to say the same thing about you11:43
ivoksyes, extensions can put their .ini files11:43
ivoksbut it is also for custom files11:43
ivokslike all other packages11:44
Chipzzivoks: your argument is fundamentally broken. Since you're talking about different software packages, with different rules about parsing init-files, you can't make the comparison11:44
arvind_khadrii have ubuntu 8.04 , just installed samba and want to use ldap for authentication, how do i set it up ?11:44
Kamping_Kaisersluimers, depends how you configured it. couriers default is using pam, so anyone with a user account has an imap login11:44
sluimersbecause right now, I'm able to receive and send mail through mutt, but that is simply because no loginname nor password is being asked11:44
ivoksi give up11:45
sluimersany linux user account?11:45
Chipzzivoks: when you have 2 lines with the same setting, but a different value, different software may decide differently on which line wins11:45
ivokswhat should i know, i only package stuff :)11:45
Kamping_Kaisersluimers, what do you mean "any linux user account"11:45
Chipzzsome software only looks at the first line, some looks at the last line11:45
sluimersI tried using user:myname password:mylinuxpassword, but that doesn't work11:45
Chipzzso I call bullshit on your argument11:46
ivoksChipzz: those that look only one line don't have .d directories11:46
ivoksby design they don't have them11:46
ivoksothers, by design, have them11:46
sluimersall those written in etc/passwd11:46
Chipzzwhat crack are you on, exactly?11:46
Kamping_Kaisersluimers, auth.log will show you attempted logins11:47
Kamping_Kaiserassuming your using pam for logins...11:47
Chipzzthe existance of .d directories has nothing to do with what you say, rather with the ability of the software to cope with include directorives in their conf files11:47
ChipzzI again call bullshit on your argument11:47
sluimersuser root, user myname, user getmail?11:49
Chipzzivoks: what you're saying shows a very poor understanding. I can have one config file with 2 lines with the same setting. that does not relate to having a .d directory at all, it is a completely orthogonal issue11:50
sluimersso it's myname? but I tried myname, I tried the linux password of myname, it doesn't get me into squirrelmail11:50
Chipzzwhat I am referring to is how those issues are resolved. ie, first-match-wins or last-match-wins11:51
Kamping_Kaisersluimers, so fix your setup11:51
arvind_khadrihow do i populate ldap db ??11:59
Jeeves_ldapvi :)12:00
Kamping_KaiserJeeves_, :)12:00
arvind_khadriJeeves_: was that for me ?? i cant use it here... am actually using webmin as the front end ?12:01
Kamping_Kaiserarvind_khadri, then stop asking questions you dont want answers too.12:03
Kamping_Kaiser!tell arvind_khadri about webmin12:03
ubottuarvind_khadri, please see my private message12:03
arvind_khadriKamping_Kaiser: by i cant use it here i meant that i couldnt find that command on auto complete12:12
Kamping_Kaiserarvind_khadri, so install it12:13
arvind_khadriKamping_Kaiser: ok got it, i have a Windows server with all the users, how do i replicate the stuff on this machine ?12:14
Kamping_Kaiserno idea.12:14
arvind_khadriKamping_Kaiser: ldapsearch -xLLL -b cn=config -D cn=admin,cn=config -W olcDatabase={1}hdb  , i get invalid credentials12:28
VK7HSEIs there a way to purge spam mail from amavis on ubuntu-server ... if so what do I need to type in!12:40
arvind_khadriKamping_Kaiser: you there?12:54
Kamping_Kaiseryes, but i dont use any of that software12:55
henriquelmHello there13:04
uvirtbotNew bug: #346980 in system-config-printer (main) "Crash after searching network printer with Samba (dup-of: 368273)" [Medium,Triaged] https://launchpad.net/bugs/34698013:07
uvirtbotNew bug: #350697 in system-config-printer (main) "adding printer via samba crashes when looking for network printer (dup-of: 368273)" [Medium,Triaged] https://launchpad.net/bugs/35069713:08
henriquelm_is it possible to upgrade from ubuntu server 8.10 32bits to 8.10 64bits?13:13
Kamping_Kaiserafaik no13:13
=== jes_ is now known as XiXaQ
fevelhow can I verify if someone changed the password for the default user?14:04
fevelI am logged in as a user with root access through sudo14:04
arvind_khadrihi, i get invalid credentials even if i enter the correct password in ldap14:13
ivoksfevel: passwd -S14:14
fevelthanks14:14
feveltheres also chage14:15
ivoksfevel: but you need sudo for it, right?14:15
fevelyes14:15
ivokserr, you don't :)14:16
fevelboth worked14:16
ivokschage -l username14:16
fevelfor chage you do14:16
feveluyes14:16
ivoksarvind_khadri: what do you do, exactly?14:16
arvind_khadriivoks: am following the community documentation and setting up ldap, where i need to do ldapadd14:18
ivokshow do you run ldapadd?14:18
ivokscould you paste the command you are running?14:21
=== asac_ is now known as asac
oioiiihi14:40
oioiiiI'm trying to get coredumps to work (apache2.2.8 and ubuntu8.04lts)14:40
oioiiialready tried this: CoreDumpDirectory /tmp/apache2-gdb-dump in apache2.conf14:41
oioiii# mkdir -p /tmp/apache2-gdb-dump14:41
oioiii# chown www-data:www-data /tmp/apache2-gdb-dump14:41
oioiii# chmod 0777 /tmp/apache2-gdb-dump14:41
oioiii# echo 2 > /proc/sys/fs/suid_dumpable and # ulimit -c unlimited14:41
oioiiibut dont get dumps :-(14:41
oioiiiany hints?14:42
=== Nicke_ is now known as Nicke
=== MohammadBoozary is now known as Mohammad[B]
finite9quick Q. about apt-get updating a server... Do I need to script this in so that I do an apt-get upgrade every week for security upgrades?  I dont get informed when there are new updates like you do with Desktop edition.  Or is there a way to get informed on server without actually scripting an upgrade?15:29
ografinite9, https://help.ubuntu.com/community/AutomaticSecurityUpdates ?15:38
=== MohammadBoozary is now known as Mohammad[B]
dmcoeWhat would be some benefits to running a ubuntu server vs. a debian server?16:20
foxbuntudmcoe, Ubuntu > debian > windows16:21
foxbuntudmcoe, heh...sorry don't have a good answer for you, someone else might16:21
dmcoefoxbuntu: lol, thanks :-P16:21
geniidmcoe: You might want to check out http://www.ubuntu.com/products/whatisubuntu/serveredition it has lots of info specific to -server. Although I don't know if there is somehwere on there any debian vs ubuntu   type thing.16:23
ivoksdmcoe: newer kernel, predictive support cycle16:24
ivoksdmcoe: some newer services (dovecot for imap/pop comes to mind)16:24
RoAkSoAxivoks, thansk for the suggestions. I'll work with drbd later on since I will have to go in a few mins. Btw... could you also check qemu?16:26
ivoksRoAkSoAx: nxvl told you errors in qemu16:27
RoAkSoAxivoks, let me see :)16:27
RoAkSoAxivoks, oh yeah! didn't see the email... thanks :)16:28
ivokswhat was the name of that fire... thing16:28
RoAkSoAxivoks, firebug16:28
ivoksthat was uploaded16:29
RoAkSoAxivoks, btw, I have set up this wiki page... https://wiki.ubuntu.com/4nDr3s/Mentorship . there is a task list that I think it would help me... just leave some feedback about it,and if you agree so that we can work that way16:29
ivoksheh, you are your own mentor :)16:31
RoAkSoAxivoks, well i always have questions.. and guidance... that's way i thought that it would be better to track all those things based on what the mentor wikipage says :)16:31
ivoksRoAkSoAx: for other merges, surbscribe me first16:31
ivoksRoAkSoAx: so i could take a look at it, and i'll surbscribe main or universe sponsors16:32
RoAkSoAxivoks, ok cool16:32
ivoksRoAkSoAx: do you know how drbd works?16:32
ivokser... dpatch16:32
RoAkSoAxivoks, dpatch-edit-patch new.dpatch and then mamke the changes in the files and that's about it?16:33
foxbuntudmcoe, http://polishlinux.org/choose/comparison/?distro1=Ubuntu&distro2=Debian16:33
ivoksRoAkSoAx: also debian/patches/list16:33
ivoksRoAkSoAx: you need to add your patch in the list16:33
dmcoefoxbuntu: awesome site!!  Thanks!16:33
ivoksRoAkSoAx: it's also wise to apply other patches before creating your own16:34
ivoksRoAkSoAx: dpatch-edit-patch -a (iirc)16:34
ivokscause you might be editing a file that some other patch changes16:34
foxbuntuRoAkSoAx, are you trying to patch lirc?16:38
foxbuntuoh sorry nvm16:38
=== MohammadBoozary is now known as Mohammad[B]
* foxbuntu is half blind this morning16:38
Kamusinsomebody know if 8.04 has any load test tool (for make a stress test)?16:40
Hecatewhat kind of test do you wanna make?16:40
Hecatea fair amount of different tests can be easily done with the tools you have at hand.16:41
KamusinI need a hard disk test (I ran hdparm but I need other alternative), cpu load and memory16:42
=== dendrobates_ is now known as dendrobates
ivoksstres16:43
HecateKamusin, cpu load: dd if=/dev/urandom of=/dev/null bs=1K16:43
ivokser, stress16:43
Hecatewill only utilize a single core, though16:43
RoAkSoAxivoks, ok awesome16:43
KamusinI have a dual core CPU but it's ok :)16:44
RoAkSoAxivoks, now i really gtg... talk you later.. i'll do the changes later on take care :)16:44
HecateKamusin, memory: perl -e '$MEM = "\x00"; while(1) { $MEM .= $MEM; }'16:45
ivokscrashme is also nice16:45
ivoksapt-cache show crashme | grep -A2 WARNING16:46
KamusinI will search crashme :)16:47
Kamusinthank's ivoks  :)16:47
ivoksKamusin: try stress16:47
Kamusinivoks, ohh that's what I need!16:49
Kamusinsweet, a complete test is just all I need , ivoks  you are god16:49
skiquelhi, I'm using bind9 to forward *.ldnm.lan to 127.0.0.1, and having trouble getting it to work. I have the code/some debug commands at http://ubuntuforums.org/showthread.php?t=115138216:52
ivokscan you be a dns for 127.0.0.1/8 at all?16:55
ivoksskiquel: ?16:59
skiquelivoks: be a dns?17:02
* skiquel is very noobish17:02
acalvohello17:12
=== ScottK2 is now known as ScottK
ivoksskiquel: you want to resolve hostnames to 127.0.0.1?17:13
acalvoI'm trying to set up a PDC with LDAP and SAMBA, I've looked lots of tutorials, but none seems to help a lot with ubuntu17:13
acalvois there any good tutorial to start with?17:13
ivokswhat are the issues you are having?17:13
wizardslovakmorning people17:15
skiquelivoks: yeah17:15
ivoksskiquel: why? :)17:15
skiqueli can't get www.ldnm.lan / *.ldnm.lan to resolve to 127.0.0.117:15
ivoksskiquel: you want to do that for other computers, or only for your?17:15
skiquelbecause we need subdomains.17:15
acalvohas anyone set up ubuntu server as a PDC with samba 3.3.2, openldap 2.4.15, smbldap-tools 0.9.5-1?17:17
ivoksacalvo: what issues do you have?17:17
jmedinaacalvo: http://tuxjm.net/docs/cursos/Samba+OpenLDAP+PAM+NSS-4Ubuntu/html/ in Spanish, easy examples for easy copy & paste :D17:17
ivoksacalvo: you know, we can't help you if you don't tell us where the problem is17:17
acalvoivoks: sorry, didn't saw that your last message was for me17:18
wizardslovakdoes anyone know how to setup simple email server?17:18
ivoksskiquel: so, 'dig @ip_of_dns_server ldnm.lan' doesn't work?17:18
ivokswizardslovak: ubuntu 9.04 - sudo apt-get install dovecot-postfix17:18
wizardslovak8.1017:19
ivoksthen fire up your browser and visit help.ubuntu.com17:19
acalvoeverything seems to be working, I am able to log in using pam-ldap and nss-ldap, but whenever trying to join the domain, it creates the LDAP entry for the machine, asks to add the user and says no trusted relationship between the machine and the domain17:19
acalvojmedina, thanks, but it's a bit outdated17:19
wizardslovakif i will upgrade to 9.04 , will all my settings stay?17:20
ivokswizardslovak: https://help.ubuntu.com/8.10/serverguide/C/email-services.html17:20
acalvo(although I'll follow it again)17:20
ivokswizardslovak: they should, yes17:20
jmedinaacalvo: well I only use 8.04 LTS for production17:20
acalvojmedina, mm touché, maybe I should move to 8.04 instead...17:21
wizardslovakhow to backup 8.10?17:22
skiquelivoks:  that seems to be forwarding17:22
ivokswizardslovak: what do you want to backup?17:22
skiquelto 127.0.0.117:22
ivoksskiquel: great, then it works :)17:22
ivoksskiquel: that's what you wanted17:22
wizardslovakwell i want to back up all my settings/website in case upgrade will go wrong17:22
ivokswizardslovak: you have a web server?17:22
wizardslovakyes17:23
ivoksjust upgrade17:23
skiquelivoks: =] but apache isn't showing anything?17:23
ivokswizardslovak: if you haven't added any programs outside of ubuntu, you won't have a single issue17:23
wizardslovaki got :ebox17:23
ivokswizardslovak: eh...17:23
ivoksthat could be a problem17:24
ivoksskiquel: so? are we talking about dns or web?17:24
wizardslovakwell i am not using it anyways17:24
ivoksskiquel: do you understand what you have done?17:24
skiquelwell I'm not sure if my issue is DNS or not17:24
wizardslovaki will probably remove it17:24
ivoksskiquel: you've created a domain xyz.lan17:24
skiquelivoks: not at all17:24
ivoksskiquel: which points to localhost17:25
jmedinaacalvo: that works for some customer installations without problems, acalvo if you really need something from jaunty then troubleshout, which it is a little hard because a lot of components17:25
skiquelkk :)17:25
ivoksskiquel: that means that when i ask your dns server about xyz.lan17:25
ivoksskiquel: it will tell me that it's on my own machine17:25
ivoksskiquel: 127.0.0.117:25
skiquelbut pinging it17:25
ivoks127.x.x.x always points to your local machine17:25
skiquelits an unknown host17:25
skiquelis that normal?17:26
ivoksskiquel: yes if you don't use that server as a DNS for your machine17:26
acalvojmedina, I know, I was setting up a test server, and I need to move my current LDAP to a PDC, so it's kind of a playbox...17:26
ivoksskiquel: does your /etc/resolv.conf shows 'nameserver ip_of_your_dns_server'?17:26
skiquelis ip_of_dns_server my local ip?17:27
ivoksit's ip of your DNS17:27
skiquelim doing this all from a laptop, no other computers17:27
ivoksthe one with bind, the one you configured17:27
ivoksskiquel: then yes, IP of your laptop17:27
skiquelatm its pointing to my gateway (router admin ip)17:28
ivoksskiquel: notice how setting up bind for task like that was pointless17:28
ivoksskiquel: you could easily just add xyz.lan to /etc/hosts as an alias to 127.0.0.117:28
skiquelivoks, thanks17:28
ivoks:D17:28
skiquelwhat's your iQ?17:28
skiquelwhat's your day job?17:28
skiquelare you from canonical17:29
ivoks1) 5 2) sysadmin 3) no17:29
ivoksactually, no, i'm CTO17:29
ivoks:D17:29
skiquelnice17:30
RoAkSoAxivoks, i'm back17:30
ivoksRoAkSoAx: great ;)17:31
RoAkSoAxivoks, give me just a sec and i'll start working on drb17:31
RoAkSoAxd17:31
ivoksRoAkSoAx: you have 30 minutes, cause i have to leave then17:31
RoAkSoAxivoks, k, i'll fix the qemu changelog and i'll start working on drbd17:32
ivoksRoAkSoAx: one by one17:33
ivoksRoAkSoAx: and since this isn't server related, we could talk about it in ubuntu-motu17:33
wizardslovakwhats command for upgrade?17:33
ivokswizardslovak: do-release-upgrade17:33
wizardslovakapt-get dist-upgrade?17:33
wizardslovakap-get release-upgrade17:34
ivokswizardslovak: no; do-release-upgrade17:34
yann2yann@yann-work:~$ sudo do-release-upgrade17:36
yann2sudo: do-release-upgrade: command not found17:36
ivoksyann2: install update-manager-core17:36
wizardslovakyannn "do-release-upgrde"17:36
wizardslovakonly no sudo no tnothing17:36
ivokswizardslovak: of course sudo :D17:36
ivoksyou can't update without root privileges17:37
wizardslovaki didnt put sudo but i asked me for sudo password anyway17:37
yann2I wonder if this is going to make my notifications work, never got that17:37
ivokswizardslovak: nice, i didn't know that's possible17:37
wizardslovakme neighter17:37
yann2re17:38
yann2what's the package for the notifications?17:38
ivoksnotifications?17:38
yann2yeah, the cool jaunty notifications (sorry, desktop :( )17:39
ivoksnotify-osd17:39
ivoksnow move to #ubuntu :)17:40
acalvojmedina, thanks for your how-to (muchas gracias), but it seems that I've everything correctly... however, once logged using PAM-LDAP, I can't create files nor directories17:41
jmedinaacalvo: is nss working fine?17:42
acalvojmedina, ok... how to check nss?17:42
jmedinaacalvo: what error do you get?17:42
jmedinaacalvo: it is in the howto :D17:42
acalvoahahahah17:42
jmedinagetent passwd17:42
jmedinagetent group17:42
jmedinagetent passwd ldapuser17:42
yann2oh I had ubuntu-desktop uninstalled, good that's gonna be fine now :]17:42
acalvooh17:43
acalvoyes17:43
acalvoit is working17:43
jmedinaacalvo: ok17:43
jmedinaso what is the problem when you create files?17:44
acalvojmedina, no privileges17:44
jmedinaacalvo: why?17:44
acalvojmedina, oh, my bad...17:44
jmedinaacalvo: can you test from a logged in user17:44
jmedinaid17:44
acalvotest@ESCI-PDC:/$ id uid=1001(test) gid=513(Domain Users) groups=513(Domain Users)17:45
jmedinalooks fine17:46
geniiYou might not want that hyphen in your machine name btw17:46
acalvojmedina, ok, it was my bad17:46
acalvoI've used smbldap-useradd -m -P test17:46
acalvos/17:46
acalvos/-m/-a17:46
jmedinagenii: why not the "-" in hostnames?17:46
jmedina:D17:46
geniijmedina: I've found it's caused me grief previously17:47
jmedinagenii: I never have problems even with real TLD domains/hosts17:48
jmedinaacalvo: good so what s netx?17:48
jmedinanext17:48
acalvojmedina, well, stuck in the same prob17:48
acalvowhen joining the domain17:48
jmedinawhich one?17:48
acalvoit _seems_ to work17:48
acalvofinally, it asks my to add a user (if I want)17:48
acalvoI say "yes"17:48
acalvoand then it says "no trusted relationship between the machine and the domain"17:49
jmedinaacalvo: have you used the procedure described in my howto?17:49
acalvoI'm going thru right now :D17:49
jmedinaacalvo: check tha you use create machine scripts in smb.conf17:49
jmedinawell al lthat /usr/sbin/smblda-comandssss17:50
acalvoyes yes17:50
jmedinaacalvo: try to increase samba log level17:50
acalvoI've used the community how-to from Ubuntu17:50
jmedinaand try again, you might find more info in /var/log/samba/17:51
ivokswe should change topic to:17:51
ivoks'First time unix/linux admin? Discover the coolest feature ever: logs in /var/log!'17:52
=== MohammadBoozary is now known as Mohammad[B]
acalvojmedina, let' see... however, one step I didn't do was adding the WINS server in the wxp machine17:52
jmedinaivoks: sounds good :D17:53
joheyHi!17:53
joheyI need to configure my ubuntu server 8.04 to act as a router. I have set it up using ipmasq and dnsmasq. It works fine with no configuration, but now I want to set up some forwarding rules. Where do I start? I don't find any useful examples out there.17:53
jmedinaacalvo: it is not really needed, but windows netbios resolutions works in strange forms17:53
acalvoivoks, becoming a BOFH is not easy ;)17:53
jmedinamore when you have a lot of "Computer Browsers" machines in your network17:54
jmedinaipmasq?17:54
jmedinawhat is that?17:54
jmedinaacalvo: it is good to use WINS, so you avoid a lot of broadcast17:55
acalvojmedina, hope so!17:55
joheyjmedina, I don't really know. Some guide from back in time told me to install it.17:55
jmedinaacalvo: if you use DHCP you can send wins address to clients, and also the node type17:55
joheyjmedina, And it actually does some routing. :)17:55
acalvojmedina, I hope to do that in the production environment17:56
jmedinaacalvo:17:56
jmedinado you see your user and machine account with pdbedit -L17:56
jmedina?17:56
acalvoyes17:56
jmedinajohey: well if ipmasq dont provide fort forwardgint features you need to change to something else17:57
jmedinaI like shorewall, probably using ufw you can do that, Im not sure17:57
wizardslovaky17:58
joheyjmedina, It does I think, but I can't find out how. And the manual is quite thin. It seems like I should set up the rules using iptables.17:58
ivokswizardslovak: d17:58
ivoks:)17:58
wizardslovaksorry i forgot that i am on konv and in shell it asked for something17:59
joheyI know I had it working for some years ago using webmin. Is that still an option?17:59
joheyI think webmin used to use shorewall as a backend.17:59
ivoks! webmin18:00
ubottuwebmin is no longer supported in Debian and Ubuntu. It is not compatible with the way that Ubuntu packages handle configuration files, and is likely to cause unexpected issues with your system. See !ebox instead.18:00
acalvojmedina, well, it seems to join the domain correctly18:00
acalvonow it asks me to add a user18:00
wizardslovakjohey: try ebox18:00
acalvobut it already exists18:00
wizardslovak!ebox18:00
ubottuebox is a web-based GUI interface for administering a server. It is designed to work with Ubuntu/Debian style configuration management. See https://help.ubuntu.com/community/eBox18:00
acalvois it fine?18:00
joheyAlrite! I've never heard about it. Thanks!18:00
wizardslovaki just got it yesterday18:01
wizardslovakpretty good tho18:01
ivoksjohey: ebox-project.org18:01
acalvojmedina, ignore my last comment, you've it in your how-to, and now it worked...18:01
ivoksor not... :)18:01
dexemivoks: ebox-platform.com  ;)18:01
ivoksebox-platform.com18:01
acalvojmedina, so rebooting18:01
ivokshm... new buttons in google interface18:02
wizardslovakjohey: if you wan to intall it you need to get their web  into repos18:02
joheySo I can't install it using the guide in !ebox?18:03
wizardslovaki think you can18:04
wizardslovaki did it true repos18:04
jmedinaacalvo: so ?18:06
acalvojmedina, it worked, but I couldn't get to the romaing profile18:07
acalvoI'm checking if there is any permissions/settings bad18:07
jmedinaacalvo: check the logs :D18:08
acalvojmedina, yes!!18:09
wizardslovakwhat are osolete packages18:09
jmedinaacalvo: where are you from?18:09
acalvojmedina, but, why you didn't set any logon variables? like logon path, logon drive, logon home...18:10
acalvojmedina, spain :)18:10
jmedinaacalvo: becasuse I store that info in ldap entries18:10
jmedinaI dont enable them globally18:10
jmedinainstead in smbldap-tools config18:11
acalvojmedina, ok...18:11
jmedinaaand not all the users need logon drive/path18:12
acalvojmedina, aha...18:12
acalvostill can't get to the profile path18:12
jmedinaacalvo: how is configured?18:12
jmedinais the config shown in pdbedit -Lv user ?18:12
acalvoyes18:13
acalvoit is shown18:13
acalvoand the directory exists18:13
wizardslovakok update upgraded and ebox still works ;p;p18:13
acalvobut it seems to not map the user and group of the directory18:13
acalvoit shows 1000 100018:13
acalvodrwx------ 2 1000 1000 4,0K 2009-05-07 19:02 acalvo18:13
jmedinahow is parent dir?18:15
acalvodrwxrwxrwx  3 root root       4,0K 2009-05-07 19:15 profiles18:15
acalvohow can i recreate the profile dir?18:15
mathiazkirkland: are you running your mythtv on jaunty?18:15
jmedinaand what is acalvo uid/gid?18:15
acalvouid=1008(acalvo) gid=513(Domain Users) groups=513(Domain Users)18:16
mathiazkirkland: I'm looking into bug 32676818:16
uvirtbotLaunchpad bug 326768 in mysql-dfsg-5.0 "mysqld_safe thinks mysqld has crashed when it hasn't" [Undecided,Confirmed] https://launchpad.net/bugs/32676818:16
jmedinaacalvo: any acalvo entry in /etc/passwd?18:16
mathiazkirkland: and I'm not sure if the proposed fix is a good one18:16
acalvojmedina, no...18:16
mathiazkirkland: do you have issue when booting the mythtv backend?18:16
jmedinawho is 1000 uid?18:16
jmedinaacalvo: could you plase pastebin pdbedit -Lv acalvo output?18:17
acalvojmedina, don't know...18:17
robert-bQ: On ubuntu server 7.1, "apt-get update" previously has worked fine, but now returns errors on all packages. There is a 404 on 91.189.88.45, but I can ping that directly.18:17
acalvojmedina, http://pastebin.com/d14b1a8218:17
jmedinarobert-b: update your repos18:18
robert-bhow? or is there a doc online describing what's happened?18:19
kirklandmathiaz: i'm running frontends on jaunty, no backend though18:19
kirklandmathiaz: yeah, i was looking at that with superm118:19
mathiazkirkland: where you able to reproduce it?18:19
kirklandmathiaz: i don't have jaunty on a backend18:19
jmedinaacalvo: plase now: smbldap-usershow acalvo18:21
geniirobert-b: Use old-releases now that it's EOL18:21
acalvojmedina, http://pastebin.com/d3d9d8f1d (i've recreated it)18:21
hggdhrobert-b, please see https://wiki.ubuntu.com/Releases18:24
jmedinaacalvo: Im not sure if profile dir already existed, could you try to remove the profile dir and logout/login again, so it is automatically created18:24
acalvojmedina, so, if I log off from win xp and log in againt, it should recreate the dir?18:25
jmedinaacalvo: yeap18:25
acalvoI've tried removing the user, deleting the dir, relogin...18:25
acalvoand it is not working18:25
jmedinaacalvo: plase relogin to check new permisions18:25
acalvomoreover, now it gets the correct group (Domain Users) but it shows the id number for the user18:25
acalvodrwx------ 2 acalvo Domain Users 4,0K 2009-05-07 19:15 acalvo18:26
acalvoups18:26
acalvonot now18:26
acalvook, relogin'18:26
jmedinaacalvo: for roaming profiles with osers with more than 2 GB files you should consider Folder Redirection18:28
jmedinathat will imporove login times18:28
acalvojmedina, ok, I'll try to set up later18:29
acalvoonce I get the test system and the wxp test machine working18:29
acalvoweird, it does not get my profile, but I can reach it thru \\servername\profiles\user18:29
acalvoI don't get it18:31
acalvoit recreates the dir successfully18:31
acalvobut it says it can not access it18:31
acalvojmedina, if I try to join the domain from the ubuntu machine using net rpc join -U user, it says   could not open domain: NT_STATUS_ACCESS_DENIED18:32
acalvouf, gotta go18:34
acalvohope to catch you tomorrow here!18:34
acalvo:)18:34
jmedinaok18:34
acalvothanks a lot jmedina18:34
Scryeis the quagga maintainer here? ipv6 bgp md5 does not work18:39
geniirobert-b: Please do not message me, I assist in public channel only. I mean by "use old-releases"   is that 7.10 is now out of support. When this happens, the repositories are frozen and moved to old-releases.ubuntu.com    so this is what you require to put for and release which you are still using past it's End Of Life18:44
robert-bgenii: so I add that to /etc/apt/sources.list , correct?18:49
geniirobert-b: Rather than add it... you replace whatever says something like:  gb.archive.ubuntu.com           with it18:51
geniiBut otherwise, yes18:51
robert-bgenii: yes, I see it, for me is us.archive.ubuntu.com18:53
robert-bgenii: there are about 19 or 20 repositories in this file, none of them seem to work anymore18:54
geniirobert-b: Gutsy (7.10) is past it's End-Of-Life18:55
geniirobert-b: All repositories which began with us.archive.ubuntu.com    will no longer work for it. Only for releases which are still currently being supported18:55
robert-bgenii: my goal was to perform a distribution upgrade, am I doing the right thing here?18:56
geniirobert-b: If you put the old-releases repos, then follow the upgrade method outlined for 7.10 to 8.04 on the ubuntu upgrade page, you should be fine.18:57
geniirobert-b: See https://help.ubuntu.com/community/HardyUpgrades#Network%20Upgrade%20for%20Ubuntu%20Servers%20(Recommended)   for the 7.10->8.04 on servers18:58
robert-bgenii: ok, I see that. Is the correct syntax  "deb http://old-releases.ubuntu.com/ gutsy"19:01
geniirobert-b: Yes19:01
robert-bgenii: do I add anything after that, such as universe, main, multiverse and so on?19:03
geniirobert-b: I'm not sure if all former repositories are included when it becomes archived. Probably most of them, though. If you add all and then can't fetch package list for some, comment those out (would be my suggestion)19:04
robert-bgenii: ok. The only one that confuses me is gutsy-updates19:05
robert-bgenii: upgrades are going to be incremental? Step through each version one at a time?19:13
geniirobert-b: The usual thing is Long-Term-Support versions can go to next Long-Term-Support version. But otherwise, yes, incrementally19:14
robert-bgenii: ok, thanks.19:15
philsturgeonhey, can i preview virtualmin websites? on cPanel I can access sites via http://domain.com/~user19:16
jmedinavirtualmin?19:18
philsturgeonvirtualmin is to WHM what webmin is to cPanel19:18
philsturgeonvirtual host management, etc19:19
jmedinawell I really dont know webmin19:19
jmedinaI know whm/cpanel19:19
jmedinawith cpanel documentroot is /home/user/public_html19:19
jmedinaso you need virtualmin use same path if you want to preview with /~user/19:20
philsturgeonit uses the same path19:20
jmedinaand of course you need to enable and setup userdir module19:20
philsturgeoni assume its rewrite trickery19:20
philsturgeonahh19:20
philsturgeonjmedina: when trying to enable this apache complains about my lack of tld server name then says it cant bind to 0.0.0.0:8019:36
jmedinaphilsturgeon: is that the error or what you think it says?19:37
philsturgeonthe error19:37
jmedinammm19:37
jmedinaI dont think apache gives such a error19:37
philsturgeonahh no worries I got it in the end19:42
philsturgeonthanks for pointing me to userdir19:42
geniiUsually it says something like can't determine hostname, using 127.0.01     or so on19:42
danielsan474idea for server team: why don't add pentaho bi suite (community edition) on ppa or other repository?19:43
jmedinadanielsan474: you can start contributing packaging it19:44
jmedinadanielsan474: use lanchpad, how is called "blue prints"?19:44
danielsan474jmedina, thank you.19:46
danielsan474I'll post or try to do a blue print request for that19:46
drbobbhello, do you guys think a 32bit and 64bit install of ubuntu on the same machine could share a single /boot partition?19:57
_rubennever tried, but might very well be possible19:58
drbobboops probably not. the kernel and initrd files don't include the arch in their filenames, so I guess the names would clash20:00
drbobbthat's too bad really20:02
jmedinaI would install a 64bit OS with virtualization support20:02
jmedinathen run a 32bit virtualized ubuntu20:02
jmedinayou get mixed enviroments without rebooting20:03
Gargoyleevenin all20:03
drbobbwell never mind, actually I probably need to reinstall on my laptop because of package breakage I haven't found a way to fix, so I'd take the opportunity to switch to 64bits20:04
drbobbI have my / and /home on separate logical volumes, so it's not too painful an operation20:06
drbobbsomething weird happened to my scrollkeeper package: scrollkeeper-update called from postinstall scripts started segfaulting, preventing me from installing any further gnome packages20:09
drbobbi tried purging and reinstalling scrollkeeper, but that didn't help, now the package refuses to be configured and spits out a weird error20:10
ScottKdrbobb: #ubuntu is the channel for desktop support.20:11
drbobbScottK: I know, but when I was there nobody seemed to know what I was talking about20:11
ScottKWell that doesn't magically make it on topic for here.20:12
drbobbScottK: feel free to ignore my ranting then20:14
drbobbbut for the unlikely case that someone here might be able to make sense out of it, the error message is:20:24
drbobbI/O error : Attempt to load network entity http://www.oasis-open.org/docbook/xml/4.1.2/docbookx.dtd20:24
=== RoAk is now known as RoAkSoAx
uvirtbotNew bug: #373406 in krb5 (main) "Sync krb5 1.7dfsg~beta1-3 (main) from Debian unstable (main)." [Wishlist,Confirmed] https://launchpad.net/bugs/37340621:18
mathiazkirkland: byobu - nice... :)21:37
kirklandmathiaz: :-)  welcome back21:38
kirklandmathiaz: you already knew this word from your vast travels around the Orient?21:41
mathiazkirkland: actually no - :)21:41
mathiazkirkland: I haven't made my way to Japan...21:41
mathiazkirkland: ... yet21:41
mathiazsoren: server-karmic-automated-kvm-testing - is this targeting kvm itself or any server related packages?21:48
mathiazsoren: ie testing of the kvm package or using kvm to automate package testing?21:49
ZipmaOHi21:50
ZipmaOI want to find out why my server was restarted21:50
ZipmaOjust run a $cat syslog | grep reboot21:50
ZipmaOfound out the time the server was started again with that21:51
ZipmaObut just before that point of time there is no trace of a shutdown command in the syslog21:51
ZipmaOdoes this explicity tell me that the power was cut?21:51
cemcZipmaO: it would be a good probable cause... problems with the power, or a hard reset or something21:56
sorenmathiaz: KVM itself.21:57
ZipmaOok cemec21:57
sorenmathiaz: I see how I should have made that clearer. :)21:57
ZipmaONice, think I remember your name from this channel BTW21:57
ZipmaOThere is no trace of a explicit shutdown command from user, process or cron job.. guess I'll go for that as an answer21:58
stickystyleZipmaO:  is it hot in the server room? perhaps a thermal shutdown?21:59
mathiazsoren: great - it doesn't cover the same ideas as server-karmic-automate-pkg-testing-in-the-cloud21:59
stickystylemaybe a busted fan21:59
ZipmaONah, no thermal problem21:59
sorenmathiaz: Nope.21:59
ZipmaOI's hosted at a firends apartment, I'll ask him if they've had any power problems22:00
ZipmaOHowever, I know that it probably not is software-related22:01
ZipmaOthank's for the answers22:01
mathiazkees: wiki.ubuntu.com doesn't list dapper as being a supported release22:21
mathiazkees: until when is dapper supported?22:21
kirklandmathiaz: dapper is no longer supported on the desktop22:24
kirklandmathiaz: server it still is though22:24
kirklandmathiaz: at least that's my understanding22:24
ajmitchkirkland: wouldn't dapper be supported on the desktop for another month or so?22:27
kirklandajmitch: ah, i guess you're right ... 6.0622:28
kirklandajmitch: the 06 got me22:28
ajmitchyeah, the 6 week delay, though it still means another 2 years & a month of server support22:29
ajmitchso for the next LTS, will there be an easy way for server admins to see what is supported for 3 years vs 5?22:30
* ajmitch isn't sure if it's done on a strict package by package basis or not22:30
z33I need some help with installing postfix on ubuntu 8.10 i have been following the guide on ubuntu help but i am having issues, can someone please help me?22:34
ScottKajmitch: The other interesting case is that for Hardy, Ubuntu desktop is LTS, but Kubuntu is not.22:39
* ScottK is curious about what's supported on that after October.22:40
lamontajmitch: I've generally gone with the wag of ubuntu-desktop? 3 yrs.  ubuntu-standard? 5 yrs.  neither but still in main? hrm... good question22:45
ajmitchlamont: it's not something I need to worry about too much at the moment, but others will22:47
lamontyeah22:48
lamontand my version is nothing like canon22:48
* ajmitch is still mostly running debian on servers 22:48
stickystyleThings that are supported after oct for 6.06 server: http://people.ubuntu.com/~ubuntu-archive/seeds/ubuntu-server.dapper/server22:54
stickystylefrom https://lists.ubuntu.com/archives/ubuntu-server/2007-July/000541.html22:55
uvirtbotNew bug: #372737 in samba (main) "Samba Chokes  Randomly " [Undecided,Incomplete] https://launchpad.net/bugs/37273723:20

Generated by irclog2html.py 2.7 by Marius Gedminas - find it at mg.pov.lt!