/srv/irclogs.ubuntu.com/2010/01/26/#ubuntu-server.txt

PatrickDKerichammond, as response to your blog post :)00:10
PatrickDKI had issue with ubuntu ami not having ext4 support, but it did include mkfs.ext4 :)00:10
erichammondpquerna: Yes, The Canonical Ubuntu AMIs do run user-data as root on first boot if it starts with #! just like the Alestic AMIs. http://alestic.com/2009/06/ec2-user-data-scripts00:13
pquernaerichammond: sweet.00:13
erichammondPatrickDK: Which blog post? What AMI id?00:14
PatrickDKlet me see if I can find the ami number00:14
ruben23hi, anyone can suggest an opensource ticketing system..00:14
PatrickDKI had deleted the instanse I was testing with, and ext4 was just something I tried for the hell of it, and found /proc/filesystems didn't list support, and mount wouldn't mount it00:15
PatrickDKso I assume there wasn't a module for it build either00:15
PatrickDKI've been reading all your ec2 posts :) most informative posts in planet.ubuntu00:15
sbeattieruben23: request-tracker (aka rt) and roundup are the two I've seen used; IIRC trac can also be used as a ticketing system.00:20
ruben23sbeattie: thanks ill check thid00:23
PatrickDKami-1515f67c00:27
smoserpquerna, yes00:27
=== tonyyarusso is now known as Guest62353
=== Wandrewvious is now known as WALoeIII
geniiruben23: ticgit looks interesting, haven't used it tho00:55
erichammondPatrickDK:  ami-1515f67c is out of date.  You might want to upgrade to ami-bb709dd2.  Bug 428692 talks about ext4 support on EC2 kernels.01:15
uvirtbot`Launchpad bug 428692 in linux-ec2 "ec2 kernel needs CONFIG_BLK_DEV_LOOP=y and other config changes" [Medium,Triaged] https://launchpad.net/bugs/42869201:15
patdk-lapI had installed that ami, and ran apt-get to update it01:16
patdk-lapmaybe it needed a reboot :(01:16
erichammondpatdk-lap: It's not clear to me that ext4 is supported, even in the most recent EC2 AMI.  In any case, apt-get upgrade and reboot will not upgrade a kernel in EC2.01:34
uvirtbot`New bug: #512633 in eucalyptus (main) "CLC+Walrus+SC+CC installed even if node is preseeded" [Undecided,New] https://launchpad.net/bugs/51263302:32
=== erichammond1 is now known as erichammond
keessoren: I've updated the fetchmail/dovecot tests a bit more.  they work fine on karmic, so if dovecot changed for lucid, please update the tests.03:09
=== Guest62353 is now known as tonyyarusso
=== erichammond1 is now known as erichammond
=== __ruben__ is now known as _ruben
jiboumansgood mornig08:45
error404notfoundcan i hide ssh signature from apppearing in portscan?10:30
_rubenprobably not10:32
error404notfound_ruben: i guess i would need to recompile ssh from code to do that, right?10:32
error404notfoundi wonder why didn't ubutnu-server team did this, its better to  hide what runs where and which version.10:32
error404notfounddo this*10:33
* error404notfound super drunk:(10:33
_rubenhiding != security10:33
error404notfound_ruben: more layers, more time to breach, more secure10:33
error404notfoundthe less i show you, the more secure i am10:33
_rubenlets agree to disagree on that one10:34
error404notfoundthats the whole purpose of SSL, hiding via encryption10:34
error404notfoundhmm, okay :)10:34
jpdserror404notfound: Do you mean the host key fingerprint?10:35
error404notfoundjpds: nope, version signatures printed in portscan10:35
jpdserror404notfound: re: version> I believe the client software depends on this to know which protocol of SSH to abide to.10:36
error404notfoundjpds: hmmm, may be, can't say. will check into it..10:36
sorenI've never believed it makes any difference. Assuming that people actually look at this string before they toss their arsenal of exploit at you (another assumption I find questionable), and assuming that their check will go "Oh, I don't know which exact version of SSH this is. I might as well not try anything and just be on my merry way"10:43
soren...rather than "Oh, I don't know what version this is. I'll just try ALL my SSH exploits rather than just the ones meant for version X."...10:43
soren..then yes, it might make a tiny bit of a difference.10:44
jpdserror404notfound: https://bugzilla.mindrot.org/show_bug.cgi?id=764#c110:44
error404notfoundsoren: yes, but it makes a difference, of probably seconds...10:44
sorenWhat will make a /massive/ difference, though, is whether you are diligent in applying security updates when we publish them.10:44
uvirtbot`bugzilla.mindrot.org bug 764 in sshd "fully remove product and version information" [Enhancement,Closed: wontfix]10:44
sorenThat will make more of a differnce than /anything/ else.10:44
jpdserror404notfound: Security through obscurity, not the answer.10:46
sorenerror404notfound: If you're vulnerable, it doesn't matter whether you get broken into right now or in two seconds. Fix the problem rather than hiding it.10:46
error404notfoundhmm, guess i would go with the second option of running a VPN server on the machine and bind ssh to vpn ip, that way outside world won't even see it..10:48
uvirtbot`New bug: #512732 in libvirt (main) "package libvirt-bin 0.7.5-5ubuntu3 failed to install/upgrade: subprocess installed post-installation script returned error exit status 1" [Undecided,New] https://launchpad.net/bugs/51273210:56
mealstromI've got problem with permissions, I want to mount samba share (smb://server/share) (cifs from fstab) but only get read permission and w for created files (but not create or delete) . Windows user can mount it as network disk with rw. Also I have rw permission on smb://server/share . Where can be the problem ?12:34
zulwtf i l have to log on to nickserv in order to join the channel?13:09
zulmorning anyways13:12
laenMay be a weird question, but we're wondering (production environment) if we really need deb-src in the sources list?13:13
laenOr, if maybe, is there a way to check? We don't develop, we don't build from source.13:14
uvirtbot`New bug: #512777 in samba (main) "first login fails when NIC is managed by NM-wicd" [Undecided,New] https://launchpad.net/bugs/51277713:16
laenAnyone?13:30
sorenzul: Yeah, there's been a lot of problems lately with bots joining channels, posting links to sites that will turn your browser into a bot as well, etc. Or something.13:31
sorenzul: ...so I +R'ed the channel (as per advice from Freenode staff)13:32
sorenlaen: then you don't need it.13:32
zulsoren: ah ok13:32
laensoren: thanks, awesome. The system itself doesn't install stuff from deb-src'es either?13:32
sorenlaen: Never.13:32
laenCool.13:32
EtienneGhey soren!13:32
EtienneGsoren, is this a good place for vmbuilder qustions?13:33
sorenlaen: I belive it's configured by default to really deliver on the promise to make source available "right next to" the binary packages.13:33
sorenEtienneG: Everywhere is a good place to ask vmbuilder questions :)13:33
EtienneGsoren, I am having a problem with vmbuilder, and I think it might be due to the fact that I am trying to build a 32 bits on a 64 bits host13:34
sorenEtienneG: Time will tell if it's a good place to ge tanswers.13:34
sorenEtienneG: That should work.13:34
sorenEtienneG: what's the difficulty?13:34
laensoren: and you're a member of the ubuntu team, developer, or any special rank besides user?13:34
EtienneGsoren, well, I get a debootstrap error13:35
EtienneGlemme pastebin it13:35
sorenlaen: Something like that.13:35
sorenlaen: I work for Canonical on the Ubuntu server team.13:35
EtienneGsoren, http://ubuntu.pastebin.com/m288dcae013:36
laensoren: Just asking cause i need to report back to the rest of my team with reasons :) thanks!13:36
EtienneGsoren, this is an esxi vm i am trying to build, using an ISO13:36
EtienneGbrb13:37
sorenEtienneG: You can't install from a desktop ISO.13:37
sorenEtienneG: Desktop ISO's do not contain .deb's. You can install from server or alternate, but not desktop.13:37
sorenlaen: Any time.13:40
* EtienneG bang head13:40
EtienneGsoren, thanks a bunch, my bad!13:41
sorenEtienneG: No worries.13:42
EtienneGoh boy ...13:43
kworkdoes anyone use some like keeppass but what would have distribute password saving13:53
kworklike somekind of "password server"13:53
kworkwhere multiple users could hold passwords securely13:53
patdk-wkdamn, even the nightly build doesn't contain ext4 support :(14:10
patdk-wktested ami-bb709dd2 and ami-495ab72014:11
OmahnAnyone in here fancy having a look at why Puppet is broken in Lucid? https://bugs.launchpad.net/ubuntu/+source/puppet/+bug/50962514:36
uvirtbot`Launchpad bug 509625 in puppet "Puppet client is broken on Lucid Alpha 2" [Undecided,New]14:36
OmahnEtienneG: Another support case heading your way I suspect :-)14:39
EtienneGOmahn, hey Paul!14:40
OmahnHi :-)14:40
EtienneGfortunately, you have the whois info set to your real name, otherwise I would have been completely puzzled!14:40
Omahn;-)14:40
EtienneGOmahn, I am oversea for the next two weeks, on-site consulting14:40
OmahnI go by Omahn in IRC and on launchpad14:40
EtienneGOmahn, I doubt I will be handling your case this time :(14:41
OmahnAha, you might get a rest from this one then14:41
EtienneGOmahn, i am confident the gys at the support center can deal!  :)14:41
OmahnI'm sure they can. Any idea what the policy is for support cases on unreleased releases? I suspect the relevant devs might want to pay attention to this bug as puppet is due to go into main for lucid and it's currently broken.14:42
EtienneGOmahn, that's a big one14:43
EtienneGit is central to many blueprints, so I would expect it to get fixed indeed14:43
EtienneGno harm in filing a support case, it is going to be tracked in two places!14:43
EtienneGOmahn, just fyi, we are usually pretty reluctant to deal with cases on unreleased release (ouf, tautology!)14:44
OmahnEtienneG: I can appreciate that :-)14:44
EtienneGOmahn, reason being that stuff are actually expected to break from time to time, and it is hard to keep track14:44
OmahnI just thought the developers would have picked up on my bug report a bit sooner with it going to main.14:44
OmahnEtienneG: Understood.14:44
OmahnI've had a quick look at it myself but it's going to involve someone with ruby experience to fix.14:45
EtienneGOmahn, mathiaz is the ne who spent the most time on Puppet.  I guess you may poke him gently, especially yif you are colunterring to test a fix ;)14:45
EtienneG(ouch, so may typos, damn caffeine!)14:45
Omahn;-) I'll keep an eye out for mathiaz then and give him a gentle prod next time I see him online.14:46
EtienneGOmahn, no harm in filing a support case nonetheless14:47
EtienneGwe can track that on two fronts14:47
OmahnI'll do that, thanks.14:47
ttxzul: looking at eucalyptus apport hooks code, I think there is a typo on line 13 @ http://bazaar.launchpad.net/~ubuntu-branches/ubuntu/lucid/eucalyptus/lucid/annotate/head%3A/debian/source_eucalyptus.py14:48
zulttx: looking14:49
ttxalso "Eucalytptus" on line 4214:49
ttxrsponse on line 4814:49
EtienneGI always spells it eucalytpus14:50
EtienneGdamn annoying14:50
ttxbenefial on line 5814:50
ttxEtienneG: yes, I do the same14:50
zulttx: ok ill fix14:51
twbEtienneG: you need to get hippie-expand completion in your IRC client, then ;-)14:55
EtienneGtwb, what's that?14:55
EtienneGshang, is pmatulis in the office today?14:56
EtienneGshang, wrong channel, plese ignore14:56
twbhippie-expand is an interactive autoloaded Lisp function.  It is bound to M-/.  Try to expand text before point, using multiple methods.  The expansion functions in `hippie-expand-try-functions-list' are tried in order, until a possible expansion is found.  Repeated application of `hippie-expand' inserts successively possible expansions.14:57
EtienneGtwb, interesting14:58
twbEtienneG: you type, say, euc M-/, and it sees "eucalyptus" earlier in the scrollback and autocompletes on it14:58
EtienneGtwb, that is pretty useful inded14:59
sorenvim has the same thing.15:02
Eladwhen I type: ls -al /var/mail/root it shows "total 8" but only 2 items are listed. So I am assuming that I have mail, but when I run mutt, at the bottom of the page is shows "/var/mail/root is not a mailbox"15:03
Eladanyone else ever had a similar problem?15:03
sorenElad: How does "ls" show "total 8"?15:04
zulttx: fixed15:04
sorenElad: Oh, it's a Maildir?15:04
EladIt should be my mail dir15:04
sorenElad: Then you probably want to refer to it as /var/mail/root/ (note the slash at the end)15:04
ttxmathiaz: I'd be interested in getting some more explanation on your gPXE setup, so that I can use it / base my own setup on it15:04
Eladsoren: note, taken :)15:04
mathiazttx: yeah - I plan to blog about it real soon now15:05
mathiazttx: do you have a deadline?15:05
ttxmathiaz: I would have loved playing with it now, but I can wait until tomorrow :)15:05
mathiazttx: ok - I'll write something up later today then15:05
Eladsoren: when you run ls -a it displays "total x" where x is the number of items in the directory, well at least normally. So it says 8, but only 2 things are displayed. [1] . [2] ..15:06
Eladwhich is expected for an empty directory15:06
EladI don't know how the mail stuff works - which is why I'm a little confuse15:06
Eladconfused15:06
ttxmathiaz: don't let that prevent you from burning WIs, you're quite low :)15:07
Eladall I am really trying to do, is see what messages the machine has for the root user15:11
patdk-wkheh, both of you are wrong15:23
patdk-wkwhen doing ls -al15:23
patdk-wktotal is the amount of space used15:23
patdk-wknot total files15:23
patdk-wkand that would be correct, what elad said15:23
patdk-wk8, 8kbytes used, 4kbits for each file, . and ..15:24
Eladpatdk-wk: thanks for the info15:24
Eladpatdk-wk: I can see it now that you mentino it15:24
patdk-wkso that would be, NO MAIL :)15:24
_ruben4kbits + 4kbits != 8kbytes15:25
patdk-wkheh :)15:25
patdk-wkso used to typing in bits lately15:25
patdk-wk8kbytes used, 16kbits for each file :)15:25
_rubenso your bytes are 4 bits ?15:27
patdk-wkyep, they where cercumsized15:28
Eladlol15:28
mealstromI've got trouble with dhcpd.leases -- no leases at all :( .15:31
mealstromps ax | grep dhcpd -- /usr/sbin/dhcpd3 -q -pf /var/run/dhcp3-server/dhcpd.pid -cf /etc/dhcp3/dhcpd.conf eth1 eth315:31
mealstromand there is no -cl flag (for leases) .. any idea why?15:31
patdk-wkheh, mine is running without any flags15:32
mealstromsr. no -lf flag (lease file , and it should be /var/lib/dhcp3/dhcpd.leases)15:32
mealstromlucky one ). and how you know if someone gets it IP or not?15:33
mealstromplease check /var/lib/dhcp3/dhcpd.leases15:33
Jeeves_less /var/log/daemon.log15:33
patdk-wkhmm, you don't need to use -lf -pf and -cf if you want to OVERRIDE the defaults15:34
mealstromJeeves: only warning dhcpd: WARNING: Host declarations are global.  They are not limited to the scope you declared them in.  But its ok.15:34
patdk-wkby default, in 8.04 atleast, /var/state/dhcp/dhcpd.leases is where it is15:34
Jeeves_mealstrom: Do you see a DCHPDISCOVER, DHCPOFFER, DHCPREQUEST and DHCPACK >15:35
Jeeves_?15:35
uvirtbot`New bug: #512459 in samba (main) "Winbind failed to connect to AD: Program lacks support for encryption type" [High,Confirmed] https://launchpad.net/bugs/51245915:35
mealstrompatdk-wk:  im using 9.10 now, but with 8.04 were the same15:36
mealstromI don't specify  any flags. -cf -pf takes from default15:36
patdk-wklet me check my dhcpd on 9.1015:36
mealstromJeeves: in my dhcplient  Jan 26 17:20:01 skywalker dhclient: DHCPREQUEST of 192.168.1.20 on eth0 to 192.168.1.1 port 6715:37
mealstromJan 26 17:20:01 skywalker dhclient: DHCPACK of 192.168.1.20 from 192.168.1.115:37
mealstromJan 26 17:20:01 skywalker dhclient: bound to 192.168.1.20 -- renewal in 3471 seconds.15:37
Jeeves_mealstrom: Than you have a lease, 192.168.1.20 to be exact15:37
mealstromnope. I've got client lease on client side15:37
patdk-wkyep, on 9.10, it's using /var/lib/dhcp3/dhcpd.leases15:38
mealstromand no lease from dhcpd15:38
patdk-wkmine is working no issues on 9.10 :)15:38
mealstrompatdk-wk: ps ax | grep dhcpd please15:38
patdk-wk/usr/sbin/dhcpd3 -q -pf /var/run/dhcp3-server/dhcpd.pid -cf /etc/dhcp3/dhcpd.conf eth0 eth0.4 eth0.515:38
mealstromyou don't have -lf either15:39
patdk-wkya, cause it uses the default15:39
Jeeves_mealstrom: So where did you client get the ip from, if it's not from the dhcpd? :)15:39
patdk-wkwhy do you need to override a default?15:39
mealstromI don't need to override them15:39
patdk-wkthere is no need for -lf :)15:39
mealstromI just need dhcpd.leases to work15:39
mealstromJeeves: client takes and client side have got dhcplient.leases , and my server who gave it -- didn't15:40
patdk-wkwhere is the log info from the server?15:40
mealstromand I don't know why15:40
patdk-wkI see you posted dhclient, but not dhcpd15:40
patdk-wkis 192.168.1.1 the ip of your server running dhcpd?15:41
mealstrommy server messages.log15:41
mealstromJan 26 17:26:01 dreamguard dhcpd: DHCPACK on 192.168.2.25 to 00:21:91:2d:ef:7a via eth315:41
mealstromJan 26 17:40:12 dreamguard dhcpd: DHCPREQUEST for 192.168.1.20 from 00:19:5b:38:c9:5a via eth115:41
mealstromJan 26 17:40:12 dreamguard dhcpd: DHCPACK on 192.168.1.20 to 00:19:5b:38:c9:5a via eth115:41
patdk-wkdirectory permissions on /var/lib/dhcp3?15:41
mealstromhmm..15:41
mealstromdrwxr-xr-x  2 dhcpd     dhcpd    4096 2010-01-26 15:24 dhcp315:42
patdk-wkand dhcpd.leases doesn't exists?15:42
mealstrom-rw-r--r--  1 dhcpd dhcpd  126 2010-01-26 15:24 dhcpd.leases15:42
mealstromdhcpd    23787  0.0  0.0  15408  1136 ?        Ss   15:24   0:00 /usr/sbin/dhcpd3 -q -pf /var/run/dhcp3-server/dhcpd.pid -cf /etc/dhcp3/dhcpd.conf eth1 eth315:43
mealstrompermissions looks fine for me15:43
mealstromill try dirty hack with init.d15:44
_rubenmealstrom: i guess you do use dynamic leases and not static ones?15:45
Jeeves_mealstrom: init.d?15:45
Jeeves_/etc/default would be to efficient? :)15:45
patdk-wkdid you specify lease-file-name in dhcpd.conf?15:46
mealstrompatdk-wk: what it shoud be ?15:47
patdk-wkpersonally? I dont have it in my files :)15:47
patdk-wkbut if you use it, it will override you leases file15:47
mealstromJeeves_: hm, there is no -lf parameter in init.d15:47
mealstromI don't use it either15:47
mealstrommaybe its because global host declaration ?15:51
Jeeves_maybe it's in /etc/default/dhcp3-server?15:51
patdk-wkya, you defently have a bad config15:53
patdk-wkdunno if that can cause the leases file problem, but I think it might15:53
mealstromJeeves_: there is only interfaces are declared15:53
patdk-wkcause dhcp doesn't know what ip goes with what interface15:53
mealstromit should know15:54
mealstromcos I've got 2 subnets on 2 different nics15:54
mealstromwith static ip on them15:54
patdk-wkya, but the purposes of the leases file is for cross boot15:54
patdk-wkand things could change15:54
mealstromI've put declared hosts in subnets15:55
mealstromfor "fixed-address"15:55
patdk-wkwhere do you get that warning?15:56
uvirtbot`New bug: #507616 in apache2 (main) "CustomLog directive in apache2.conf makes it impossible to change default logging without editing the global config." [Wishlist,Confirmed] https://launchpad.net/bugs/50761615:56
patdk-wkhmm, I am not getting that warning15:57
patdk-wkand I have hosts outside subnet sections15:57
mealstrompatdk-wk: dhcpd: WARNING: Host declarations are global.  They are not limited to the scope you declared them in.15:58
patdk-wkoh, you put the hosts INSIDE a subnet15:58
patdk-wkinstead of outside, when you wanted them to work with both subnets?15:58
mealstromthey are already inside subnets15:58
patdk-wkthe fixed ip's on them don't match the subnet they are in is what it's saying15:58
mealstrom192.168.1.0/24 with 192.168.1.20 host15:59
mealstromthey match15:59
patdk-wkguess I am going have to see your config file to figure out what is wrong16:00
patdk-wknever had issues with dhcp, it's always worked fine, and I don't have a simple setup16:00
patdk-wkonly problem I had with dhcpd was ping-check was on :( making pxe boots take forever16:01
mealstromI've managed with pxe16:01
mealstromits ok )16:01
mealstromnow working on preseed configuration16:02
mealstromand I habent try options.preseed or something like this in dhcpd16:02
_ruben16:45 < _ruben> mealstrom: i guess you do use dynamic leases and not static ones?16:04
_rubenstatic leases (defined in dhcpd.conf) arent added to the leases file16:05
_rubenonly dynamic ones are16:05
mealstromhehehe...16:05
mealstromwhere you was 2 hours ago?16:05
_rubenhere :)16:06
mealstrom"you are so cruel "  :)16:06
_rubenonly you didnt ask here 2 hrs ago ;)16:06
_rubenanyway .. time to head home16:06
mealstrom). ok . lets check with dynamic ...16:07
uvirtbot`New bug: #512833 in bind9 (main) "package bind9 1:9.6.1.dfsg.P1-3ubuntu0.2 failed to install/upgrade: subprocess new pre-removal script returned error exit status 1" [Undecided,New] https://launchpad.net/bugs/51283316:11
incorrectis anyone putting together a ubuntu based firewall product like pfsense?16:13
jjohansensmoser: ec2 kernel update is being obnoxious, hopefully we will have something today but it has been a mess so far16:15
smoserpatches rebase ?16:15
zulincorrect: have use used ufw?16:21
zuljjohansen: hah hah ;)16:21
jjohansenzul: you sadist16:22
zuljjohansen: who me?16:22
jjohansenzul: yeah you :)16:22
zulhehe16:23
jjohansenzul: perhaps sadist is the wrong word, its not so much that you love others peoples misery its that you love that its not your misery16:23
zuljjohansen: yeah thats more true16:23
incorrectzul, nope i will have a look16:24
incorrectzul, can i build a NAT box with it?16:25
zulincorrect: you should be able to i think16:25
zuljdstrand: ^^^16:25
jpdsI don't think ufw supports NAT.16:26
patdk-wkuse shorewall then16:26
patdk-wkor is this an attempt to use a pretty gui? :(16:27
jdstrandthe ufw cli command does not support NAT. the ufw framework does (see 'man ufw-framework' and/or https://wiki.ubuntu.com/UncomplicatedFirewall for details)16:27
jdstrandincorrect: ^16:28
incorrectthanks16:28
incorrecti just found the same info16:28
mealstromduring ubuntu-server instalattion there is a lot of "Fail to download" files with *.udeb . Are they critical ? (I've make local mirror with apt-mirror) and there is no udeb files16:29
patdk-wkhmm, I have a whole crapload of udeb files in my mirror16:30
mealstromoem-config-check_2.0.6_all.udeb ?16:31
jpdsOmahn: Puppet is all fixed. :)16:31
incorrectok so is there anything more powerful than ufw?16:32
incorrectother than directly using iptables16:32
incorrectnot used iptables since 0516:33
patdk-wk/pool/main/u/ubiquity/oem-config-check_2.0.6_all.udeb16:33
mealstromyou've got it?16:33
patdk-wkyep16:33
patdk-wkand 2.0.10, 2.1.7 and 2.1.816:33
patdk-wkyour mirror is screwed :)16:33
jdstrandincorrect: if by more powerful you mean supports NAT without having to know iptables syntax, you might look at shorewall16:33
incorrectjdstrand, ok i will just remind myself about iptables16:34
* patdk-wk just stopped using iptables manually about 6 months ago, and switched to shorewall16:34
incorrecti want to use ubuntu so i can move ldap, munin, tftp and a bunch of other services off my kvm box16:34
mealstrompatdk-wk: what mirror you are using for sync ?16:35
patdk-wkus.archive.ubuntu.com16:35
mealstrom...hm ..16:35
patdk-wkI don't use apt-mirror, I found that a worthless attempt16:36
mealstromit didn't copy *.udeb files16:36
patdk-wkI use rsync16:37
jcastrothose are for the installer16:37
jcastroif you're just mirroring for updates and all that you don't need them16:37
patdk-wkI pxe boot the installer16:38
patdk-wkso I guess I need them16:38
mealstromI need em too16:38
mealstromyou ve made full mirror with rsync , right?16:38
jcastrograb a 2-stage rsync script from the wiki, that would work better I bet16:38
patdk-wkI make an almost complete mirror16:39
mealstromI've only need mirror for karmic16:39
patdk-wkwell, rsync can't do that16:39
patdk-wkit will sync all versions16:39
patdk-wkyou would have to read the toc's to do just the ones needed, that is what apt-mirror does16:39
patdk-wkbut only updates, not for installations16:40
patdk-wkthe next solution is to use squid :)16:40
patdk-wkand the just use a normal default mirror16:40
mealstromim using archive.ubuntu.com16:40
mealstromto use rsync for karmic only - a need a package parser16:41
patdk-wkna, rsync wouldn't be usefull that way either16:41
patdk-wkwould probably just have to wget each file16:41
uvirtbot`New bug: #512462 in bacula (main) "bacula-console-qt missing config file crash" [Undecided,New] https://launchpad.net/bugs/51246216:41
uvirtbot`New bug: #512863 in mysql-dfsg-5.0 (universe) "mysqld.sock not found after restart" [Undecided,New] https://launchpad.net/bugs/51286316:41
patdk-wkrsync is really for groups of files, I guess you could feed it a list, :(16:41
patdk-wkjust gets ugly fast16:41
mealstrompackage.gz has md5 sums for each package16:42
mealstromcrap... all missing files are from http://archive.ubuntu.com/ubuntu/dists/karmic/main/debian-installer16:42
patdk-wkwell, that is easy then16:43
patdk-wkzcat Packages.gz | awk '/^Filename: / { print $2; }'16:44
patdk-wkdownload all those files16:44
patdk-wkor feed that into a rsync list to download16:44
mealstromthere should be something easier16:49
* patdk-wk doesn't know how that is *hard*16:50
=== jjohansen is now known as waves
=== waves is now known as jjohansen
mealstrompatdk-wk: deb-XXX http://archive.ubuntu.com/ubuntu karmicXXXXXX main restricted universe multiverse main/debian-installer (+ univerce/debian and so on)17:13
mealstromthat's easier )17:13
patdk-wkthat doesn't download udeb files17:14
patdk-wkor will it?17:14
ScottKSpamAssassin 3.3.0 released!17:14
mealstromit downloafs17:14
ScottK\o/17:14
ScottKDaviey: ^^^17:14
mealstromapt-mirror gets package.gz parse it and downloads . all those *.udeb were in /debian-installer/i386(amd)/package.gz.17:15
mealstromso I've addet debian-installer to be mirrored localy17:15
patdk-wkjust got the email :)17:16
mealstromso it was karmic /main    and I've added karmic /main/debian-installer and that's all17:16
DavieyScottK: \o/18:09
DavieyScottK: I emailed the debian maintainer a while ago who pretty much said he had it in hand, but patches welcome18:09
smosererichammond, would you mind if i took runurl and added to ec2init ?18:30
smoserand is http://run.alestic.com/runurl the right runurl ? and any reason why it is #!/bin/bash not #!/bin/sh18:30
koolhead17hi all18:35
koolhead17hello kees18:35
* koolhead17 waves propagandist18:35
zulsmoser: you'll have to update the debian/copyright file if you do that just an fyi18:49
smoseryeah, i have other udpates there too18:49
=== rberger_ is now known as rberger
=== A-Tuin-ghost is now known as A-Tuin_
* soren just had a rockin' idea for Lucid+119:34
ajmitchsoren: demoting most of main?19:38
sorenNo, but also sounds like fun :)19:39
* ajmitch was just reading kees' suggestions about web apps19:40
keesmmmm profiles19:43
ajmitchI know some people who use moodle, but not sure if it's hosted on ubuntu or debian19:44
sorenkees: Has anyone ever done a profile for a webapp?19:45
keessoren: in a published package? not that I know of.  but I've personally profiled squirrelmail, wordpress, cacti, and awstats.19:47
ajmitchand for a PHP web app at that? Are apache modules still needed for that?19:47
keesoh, and mailman19:47
sorenkees: How?19:47
sorenkees: I mean... It's all run by Apache.19:47
ajmitchchanging hats?19:47
keesajmitch: yeah19:48
keessoren: mod_apparmor19:48
sorenkees: What if you have something that doesn't have a profile?19:48
sorenkees: Oh.19:48
* soren was not aware of such a thing19:48
* ajmitch found the spec for it for karmic19:48
jdstrandI've got moin19:48
keessoren: http://bazaar.launchpad.net/~apparmor-dev/apparmor/master/annotate/head%3A/profiles/apparmor.d/usr.lib.apache2.mpm-prefork.apache219:48
jdstrandkees: mdeslaur did phpsysinfo (but not really a big app)19:49
keesjdstrand: right, true.19:49
jdstrandit's hard to ship a profile in these webapps cause of the traditional issues with webapps in Debian/Ubuntu-- they can put stuff all over the place (including for virtual hosts)19:51
myk_robinsonevening, all19:51
jdstrandship an *enforcing* profile that is-- we can ship complain mode or disabled profiles19:51
keesjdstrand: I think it still might be possible in some cases.19:51
myk_robinsonI have a system we just built with 8*1.5TB hard drives. We have built a hardware raid and we are trying to partition the drives.19:51
myk_robinsonwe are having an issue creating a 9TB partition, any ideas?19:52
jdstrandoh I am not saying it is impossible, just difficult19:52
sorenmyk_robinson: What is the issue?19:52
patdk-wkmyk_robinson, using 64bit I hope19:52
mdeslaurwell, it may not be so bad for webapps19:52
mdeslaurdepending on what they do, they are usually restricted to their own directory anyway19:52
mdeslaurie: not many of them want to mess with system stuff19:52
ajmitchjdstrand: those problems exist just for trying to package web apps, especially those that have their own installer pages that want to write all over the filesystem to mode 777 files19:52
jdstrandmdeslaur: not for a default install-- but as soon as you go beyond it or have virtual hosts somewhere, then you get in trouble19:52
jdstrandajmitch: yeah :(19:53
mdeslaurjdstrand: yes, it's only good for default installations19:53
myk_robinsonsoren: partition length of 17500327425 secotrs exceeds the ms-dos-partition-table-imposed maximum of #########19:53
jdstrandeg, moin has a farmconfig19:53
sorenmyk_robinson: Yes. Don't use MS-DOS partition tables.19:53
mdeslaurif you're not using a default install, you're probably not using packages anyway19:53
jdstrandwhere do the non-default 'farmed' files go?19:53
myk_robinsonsoren: perhaps we missed a step, we'd like to format it to ext4, but never get the option19:53
sorenmyk_robinson: You want to use GPT. If you use parted for partitioning, it will sort all of this out for you.19:53
* patdk-wk just doesn't use partition tables at all19:53
patdk-wkjust format /dev/sda :)19:54
jdstrandmdeslaur: oh I don't know about that... moin is quite useful with farmconfig19:54
jdstrandmdeslaur: though you are surely right for some19:54
smoserjjohansen, ping19:54
patdk-wkmyk_robinson, think about just formatting ext4 right to the device, no partitions19:55
patdk-wkor if you do need them, put lvm right on it19:55
smoserhttps://bugs.launchpad.net/ubuntu/+bug/428692 any thoughts on possibly SRU-ing the minor changes to build in ext4 and loop ?19:55
uvirtbot`Launchpad bug 428692 in linux-ec2 "ec2 kernel needs CONFIG_BLK_DEV_LOOP=y and other config changes" [Medium,Triaged]19:55
myk_robinsonjust a sec, Jeremy is gonna take my place, he speaks the language better..19:56
jjohansensmoser: loop and ext4 should be builtin19:59
myk_robinsonsoren: patdk-wk: Ok...I have a total of 9.0TB available after a raid 6 configuration.  I want to partition using ext4.  I am using the ubuntu alternate install, and it is erroring out saying max msdox-partition-table-imposed maximum error19:59
jjohansensmoser: oh oops, SRU19:59
myk_robinsonhow do i get a new partition table and format this thing19:59
patdk-wkdo you need to boot from that drive?20:00
jjohansensmoser: I think that might be SRUable20:00
sorenSession on server testing in 5 seconds in #ubuntu-classroom20:00
myk_robinsonyes..well it is one logical volume, and i want a swap, a root, and a storage partition20:00
smosercould we move toward that? those changes would be extremely low likelyhood for regression as they're built in everywhere else20:00
jjohansensmoser: yeah, I will request an SRU for that20:01
patdk-wkmyk_robinson, hmm, boot partition causes in issue with how I would do it :(20:01
patdk-wkcan you select a different partition layout? maybe bsd?20:01
myk_robinsonwon't be a boot partition, will be in mbr20:01
smosercan you put a comment in that bug? someone is asking on ec2ubuntu and i'd liek to have some status there.20:01
patdk-wkI dunno the installer very good, never use it really20:01
patdk-wkyou have to have a boot partition, in your case, your boot partition would be / (root)20:02
myk_robinsonone second20:02
myk_robinsonmight have it20:02
myk_robinsoni gave the drive a new partition table and it is working20:03
myk_robinsonmust have been something goofed by suse when i tried installing using ext320:03
myk_robinsoncause ext3 has a max size of 4TB20:04
patdk-wkheh :) maybe it put the msdos table on there20:04
patdk-wkand ubuntu tried to reuse it20:04
myk_robinsondon't know..but it works20:04
myk_robinsonthanks for the help20:04
patdk-wkhmm, ext3 should be able to do 16tb20:04
myk_robinsonok..thought it said 4TB but may be wrong20:05
patdk-wk4tb is the max if using dunno20:05
myk_robinsonsuse crapped out on trying to do the 8.15TB parition20:05
patdk-wk2tb max using 1k blocks20:05
patdk-wk8tb max using 2k blocks20:05
patdk-wkmaybe you forgot to tell it to use 4k blocks :)20:05
patdk-wkext4 has same limits20:06
myk_robinsoncould be...it is now formatting the parition..should be a while so i will hopefully not have anymore problems20:06
myk_robinsonthanks for your help20:06
patdk-wkoh wait, no it doesn't, my bad :)20:06
patdk-wkit's filesize max out at 16tb :)20:06
myk_robinsonit can go to 1,000 TB20:06
myk_robinsonfilesize is 16tb yeah20:06
* ajmitch just saw the regression test ppa mentioned in the developer week session, how often is that meant to be updated?20:16
mealstromwhat should look like preseed user encrypted password ?20:45
mealstromd-i passwd/user-password-crypted password (what's next) [md5hashpass] or just md5hash pass ?20:45
geniimealstrom: I'm pretty sure just: d-i passwd/user-password-crypted password md5hash-here21:07
mealstromdoesn't work :)21:09
mealstrommd5sum is right for that ?21:10
mealstromoops :( wrong hash21:10
keessoren: the dovecot issue appears to be a real regression in dovecot.  I've filed: https://bugs.edge.launchpad.net/ubuntu/+source/dovecot/+bug/51297521:30
uvirtbot`Launchpad bug 512975 in dovecot "mail_location not set and autodetection failed: Mail storage autodetection failed with home=/home/USERNAME" [Undecided,New]21:30
mrayzenossIs it possible to use the Live Desktop CD to kickoff a server install?  The Live CD handles the EFI weirdness on my Mac, but I just want to use it as a server21:44
zulkees: i broke dovecot?21:49
mdeslaurmathiaz: fyi: upstream mysql bug for certs expiring in 2 days: http://bugs.mysql.com/bug.php?id=5064221:58
mathiazmdeslaur: great thanks21:58
patdk-wkmdeslaur, hehe, thanks, I have one expiring today :( luckly it's not critical :)21:58
keeszul: I think dovecot broke dovecot.  *shrug*  I don't have time to investigate today22:03
maxfilescan you run a desktop on the server environment/22:49
maxfiles?22:49
patdk-wkheh?22:51
patdk-wkyou mean, run ubuntu desktop on a server? sure22:51
maxfileswould it run slower or faster22:51
maxfilesI'm having an issue with my current desktop version22:52
maxfileswhere I did an update22:52
patdk-wknot much slower, shouldn't be noticable22:52
maxfilesand now none of my services will start22:52
patdk-wkit just installs all the gui stuff that server doesn't22:52
mealstromyou can run vnc server on it22:52
maxfilescant get apache, mysql, pureftpd to start at boot22:52
maxfileshave tried everything so far that I can think of22:52
maxfilesso I figured a fresh start would be useful22:53
patdk-wkdid you ever figure out why they wouldn't start?22:55
maxfilesno22:55
maxfilesI have tried every bit of software that I can think of after reading22:55
maxfilesasking for help and getting nowhere22:55
patdk-wkthe only reason for me, besides syntax errors22:55
patdk-wkis if the network ip's didn't come up correctly22:55
maxfilesthen it would be an ubuntu update that did that22:56
patdk-wkdunno22:56
patdk-wkI have never seen an ubuntu update kill something like that22:56
patdk-wkbut then, I dunno what all you have, that I might not22:56
maxfileswell I run irc, crons, ftp, apache, mysql for the most part22:57
maxfileshddtemp for temp monitoring22:57
maxfilesand I cant even get that to start22:57
maxfilesrunlevel says unknown when I use that23:00
maxfilesso I have no idea what run level I'm on23:00
patdk-wkI don't believe runlevels have been used for a long time23:00
patdk-wkbut have been imitated23:00
maxfilesok then why are they related to boot up rc0.d et el23:01
maxfilesor are they not23:01
mealstromwho used preseed file with password-crypt ?23:17
mealstromd-i passwd/user-password-crypted password md5    -- I've got problem after system install with this password. it doesn't match23:17
mealstromI've used htpasswd (from apache2) to create md5 hash and now don't know what password to put :(23:20
erichammondmealstrom: I recommend generating a new password and saving it this time.23:26
Italian_PlumberHello.  I am trying to add a new hard drive to my server, 804.  The BIOS correctly identifies the drive, but I can't mount it because I can't find it in the /dev directory.  I have a /dev/sda and /dev/sdb, but no /dev/sdc.  The machine already had a primary master and slave, and a secondary master.  I have added the new drive as the secondary slave.23:26
mealstromerichammond: I've generate md5 from text file. I've checked md5 for that file and command line input. they were the same23:27
erichammondmealstrom: Ah, I misunderstood and thought you had lost the password.23:31
tarskiso i got my ubuntu server to be my router, it's doing fine, im wondering if i use a switch connecting two laptops to the switch and the switch to the router/server, if i assign those laptops static IP's in the range i specified on my server, will i get internet on both?23:36
mealstrominternet *** router *** swich ** N-laptops  --- yes23:37
erichammondmealstrom: You might try generating the encrypted password using this command: openssl passwd -l file:$PASSWORDFILE23:39
mealstromerichammond: thanks for advise23:39
erichammonder, that option should be -1 (one), so: openssl passwd -1 file:$PASSWORDFILE23:40
erichammondargh, with no space after "file:"23:40
erichammondActually tested this one: openssl passwd -1 file:$PASSWORDFILE23:41
mealstromhow to arg md5 ?23:41
erichammondThe -1 means "md5"23:41
erichammondTo see other options: openssl passwd -help23:42
erichammond(where -help is not a valid option)23:42
erichammondAlso, for other info: man htpasswd23:42
erichammonder, man openssl23:42
erichammondcan't type today23:42
mealstromyes, I've got it23:42
erichammondor think23:42
erichammondOdd, looks like TMTOWTDO, so this also works: openssl passwd -1 -in $PASSWORDFILE23:44
erichammondbut nobody ever accused Unix/Linux command lines of being consistent.23:46
mealstromill try to remap hdd in system to see what password there was actually stored23:48
RoyKerichammond: erm, what's wrong with the unix commandline?23:59

Generated by irclog2html.py 2.7 by Marius Gedminas - find it at mg.pov.lt!