/srv/irclogs.ubuntu.com/2010/03/17/#ubuntu-server.txt

Mojo-Perhaps I'll try a different OS.00:03
Mojo-Thanks for the help anyway.00:08
BookmanI am trying to install a printer on ttyUSB0 with a ppd file using lpadmin, but all I get back is 'No such file or directory'  lpadmin -p Star -i usb:/dev/ttyUSB0?baud=9600 -P tsp651.ppd01:05
=== erichammond1 is now known as erichammond
MTecknologyWhich package provides pecl?03:28
MTecknology!pecl03:29
MTecknology!search pecl03:30
ubottuFound:03:30
Piciapt-cache search pecl reveals a few candidates.03:30
MTecknologyPici: thanks03:31
MTecknologyWhen I try to run pecl, it things pecl and php should be in /usr/local/bin/ instead of /usr/bin/03:39
MTecknologyany ideas why - or how to correct this? purging and reinstalling php5-dev and php-pear didn't do the trick03:40
MTecknologyoops - logged out and back in - works now :P03:41
drmhello can someone assist me with a Ubuntu 9.04 lamp sever issue or point me in the direction i need to go05:33
lifelessperhaps, if you describe the issue ;)05:34
drmI am new to Linux and I am attempting to set up an Ubuntu 9.04 desktop with LAMP server to access from my other PC for testing php code05:35
drmI cannot access the other LINUX pc or login to the website nor FTP access05:35
drmit works and then it stops working and I am new to LINUX and have no idea where to even start searching for a correct answer05:36
drmwhen ever I try to go to the Linux website is says " URL is invalid and cannot be loaded"05:39
drmbut I can access it fine from the LINUX PC05:39
persiawhat URL?05:40
drmon my other computer?05:40
drmhttp://ubuntu/dtm05:41
persiaThis works on one machine, and not on the other, right?05:41
drmthis is what I use ot http://localhost/dtm05:41
drmworks on the linux (host ) machine but not another from my network05:41
persiaTry using the same URL in both places.05:41
persiaI suspect it's a host name issue.05:42
drmalready did that and same result05:42
drmon the Host pc it works fine05:42
drmother PC no good05:42
drmeven tried http/127.0.0.1/dtm and same issue05:42
faileaswhy use the hostname while testing?05:42
persiaOK.  What kind of network do you have?  Is there a network administrator?  s there a router?05:42
persiafaileas: Good point!05:43
drmhttp://127.0.0.1/dtm I mean05:43
faileaser.. 127.0.0.1 won't work05:43
drmwired network05:43
faileasyou need the ip address of the server there, not localhost05:43
faileasdrm: run 'ifconfig' on the server  and find out its IP. then try 'http://(server ip)/drm05:45
faileas' on the client05:45
drmit normally works when I first installed it with http://ubuntu/dtm just fine and then stops. I am sure it is a configuration issue I just do not know where to start looking05:45
faileasurgh05:45
faileasdon't use hostnames.05:45
faileasuse the server's ip address.05:45
faileasunless you have a VERY specific setup, its going to cause more headaches ;)05:45
drmwill try that but what would cause FTP to stop working as well when both work for a while05:47
faileasactually, what i don't get is how it works at all05:48
drmLOL well it does05:48
drmfor a while anyways05:48
drmthen it changes its mind and I am sure it is something I a m doing05:49
drmso noone can point me toward any specific configuration file or other area to start looking?05:55
Psi-JackJust out of pure curiosity, does ubuntu's xen stuff allow to install debian domU's?05:56
Psi-JackI notice than Ubuntu 9.10 has newer versions available for xen stuff, but in some specific cases I need debian.05:57
drmif I knew I would tell you but I am a newbie myself to LINUX and UBUNTU05:57
Psi-Jackyeah, I'm far from it. heh05:57
drmThe URL is not valid and cannot be loaded.05:59
larsemilhmm go skiing fore some hours or go ice fishing for some hours...?06:15
SandGorgonhey guys.. I am looking into configuration management for our hosted web servers. We want to freeze a particular configuration (maybe even that website should be coming from a particular tag of svn) and if anything accidentally changes, it should revert back to the good configuration. Anyone have any opinions about Puppet, cfengine, bcfg2 ?07:06
TeTeTSandGorgon: if you look for something really simple, take a shot at etckeeper07:20
Psi-JackInteresting. Ubuntu 9.10 Server has the whole Enterprise Cloud installation stuff.07:47
learningclouds:-D07:47
learningcloudswho is a veteran on enterprise cloud?07:49
learningcloudsanybody??07:49
learningcloudshow do catch some body to chat in irc channal?07:51
Psi-JackMaybe when people are awake? ;)07:56
Psi-JackI think most everyone here is in the US, like myself. I'm just up extremely early. ;)07:56
learningcloudsmost pepole come from us?07:56
learningcloudsoh god.you must on sleeping.07:57
learningcloudsHI Eric. can you saw my msg ?07:58
learningcloudsmaybe irc server is so slow to transaction msg.08:00
learningcloudsO:-)08:02
TeTeTlearningclouds: probably just ask a question and someone will pick it up08:07
TeTeTttx: do you know if there are any problems with using multiple TB for Walrus S3? Has anyone ever attempted this?08:08
ttxTB?08:08
TeTeTttx: Tera Byte of Storage08:08
ttxah :)08:08
learningcloudswhat is walrus s3?08:08
ttxTeTeT: I didn't try personally.08:09
TeTeTlearningclouds: part of the Ubuntu Enterprise Cloud system, where the image file resides, and a part of persistent storage08:09
ttx"walrus" is the eucalyptus equivalent of Amazon S308:09
learningcloudsoh. very fresh to me.08:10
TeTeTttx: do you know if the buckets can grow dynamically?08:10
ttxTeTeT: I must admit I haven't exercised Walrus so much, so no, I don't know.08:10
TeTeTttx: there's a size limit in the config web UI08:10
TeTeTttx: thanks anyway, will try to figure it out on my own then ...08:10
learningcloudswho know what is the differences in private cloud and enterprise's cloud?08:12
Psi-JackOh.08:12
Psi-JackLovely.08:12
Psi-JackI just installed Ubuntu Server 9.10 Enterprise Cloud, and trying to login with the initial default username/password admin/admin, doesn't work. Says, admin, not found.08:13
learningcloudswhere is a training org on ubuntu cloud in Asia?08:15
TeTeTlearningclouds: we have a training partner in Taiwan, Geego.08:17
TeTeTlearningclouds: not sure if there is a strict difference between private and enterprise cloud, IMO you can exchange these terms08:18
learningcloudswhere is Geego?08:18
TeTeTPsi-Jack: wait for a few minutes, then try again08:18
Psi-JackWow, sheash.08:18
Psi-JackWhy did it take 5-10 minutes just to be able to login?08:18
TeTeTlearningclouds: http://webapps.ubuntu.com/partners/training/08:19
learningcloudsoh .thanks08:19
TeTeTPsi-Jack: it was a bug, been fixed. Did you install ubuntu-updates?08:19
Psi-JackNot yet. Freshly installed system.08:20
Psi-JackI did tell it to auto update security releases though.08:20
TeTeTPsi-Jack: it's not a security update, so you will have to use apt-get update; apt-get upgrade to get i08:21
TeTeTit08:21
Psi-JackUnderstood.08:21
Psi-JackHmmm08:26
Psi-JackWhat DOES this "Cloud" use for virtualization anyway? xen? kvm?08:26
TeTeTPsi-Jack: kvm, check the hypervisor setting in /etc/eucalyptus/eucalyptus.conf08:29
* Psi-Jack shivers.08:31
Psi-JackOkay. Bye bye Eucalyptus.08:31
learningcloudsto go to Taiwan is not so convenient.i am in Mainland.08:34
Psi-JackOh wait. It has options for kvm and xen. Cool.08:34
Psi-JackI might be able to live then. ;)08:35
uvirtbotNew bug: #540121 in openssh (main) "does not terminate at computer shutdown" [Undecided,New] https://launchpad.net/bugs/54012109:26
bronto2how to apply updates from cli?09:39
TeTeTbronto2: sudo apt-get update; sudo apt-get upgrade09:39
bronto2TeTeT, thanks09:40
bronto2another one: how do i figure out what ftpd daemon is installed?09:50
bronto2 ps -e|grep ftp09:52
bronto2 ?09:52
bronto2is sftp-server some sort of default on 'ubuntu server' ?09:53
bronto2or can i use pure-ftpd?09:53
persiabronto2: openssh-server is the common sftp server.09:55
bronto2persia, bingo!09:56
Psi-JackGoodie.09:57
Psi-Jackubuntu system's totally locked up nicely. Won't even reboot sanely. Just after a full brand new installation and apt-get upgrade09:57
bronto2this is the first time i have to manage a system via ssh prompt only, will be a brand new experience :P09:58
Hawkeyhi there... have a question.. is there some way how to set up firewall when i need to allow ssh connection from host like this? abcd*.server.net10:02
Hawkeyusing * mark to represent what ever symbol.. number usually10:03
sorenHawkey: There are mechanisms for doing that, but I can't recommend it. Lots of people can make their IP's resolve to whatever they want.10:06
Hawkeyknow that.. but here's the thing.. i need to connect to my server from mobile device.. and i doubt they will gimme static ip :(10:08
persiaHawkey: Consider having some bastion that accepts ssh from anywhere with a default shell of /bin/false or some such, and using ProxyCommand to tunnel connections from your mobile through the bastion into your real network.10:09
sorenHawkey: That makes it even more pointless.10:10
sorenHawkey: It sounds to me like you essentially want to open your server for ssh connections to anyone using the same mobile provider?10:10
Hawkeysoren yes... at least for host i'm recieving when connect from mobile phone10:11
Hawkeyand that host is dynamic :/10:12
sorenSo one wouldn't even have to spoof a PTR record, one would just have to happen to have the same mobile provider as you..10:12
sorenHawkey: I really think this is a waste of time.10:12
sorenHawkey: I think you should spend more time making sure that your password policies are sound, for instance.10:13
Hawkeysoren i know.. point is.. i have to have that access..10:13
Hawkeyneed it..10:13
sorenHawkey: I'm not telling you to close your firewall completely.10:13
sorenI'm telling you to just leave it open.10:13
Hawkeywell i use pretty hard password if you mean this10:13
sorenFor most intents and purposes, that is what you will be doing anyway. Limiting access to an ISP or anyone who wants to pretend to be on the same ISP is really not adding any real amount of security.10:14
persiaactually, it likely reduces security because it creates the false impression that there is a meaningful filter for auditing.10:15
* soren concurs10:17
Hawkeysoren i'm aware of that...10:17
Hawkeywhat do you thing about changing default port number to different.. it could help little bit right?10:18
sorenHawkey: Then whay are you doing it?10:18
Hawkeythinking now...10:18
Hawkeyor why?10:19
sorenYes, I meant "why".10:19
Hawkeyto allow me to connect to different server :-D..10:19
Hawkeywhich is locked on my static ip :-P10:19
sorenNo, that's not what I meant.10:19
sorenWhy bother with the firewall at all if you know that it's not adding any security=?10:19
persiaHawkey: So, you basically have two choices.  1) follow soren's advice and make the server secure, and don't lock down the firewall, and just proceed.  2) Get extra paranoid which involves extra hardware, extra networking, etc.  This doesn't make it secure, just harder to access.10:20
sorenHawkey: Moving it to a different port will likely help against the odd script kiddie. Anyone with half a clue will perhaps be delayed all of 30 seconds by a stunt like that.10:20
Hawkeywell because dont want to have all open.. want to restcirt it as much as possible10:20
persia(where 2) is some variation on the bastion I mentioned above, perhaps requiring knocking, etc., but for most cases a waste of time and money)10:20
a_okI want to proxy ftp from browser through an ubuntu server. what do I need for that?10:21
sorenHawkey: Ok, here's an analogy:10:21
sorenHawkey: Imagine there was a way to limit access to your server only from the northern hemisphere.10:21
persiaa_ok: squid can also do that.  There may be other choices.10:21
Hawkeysoren hmmm10:22
sorenHawkey: Doing so would still leave it open for half the planet.10:22
sorenHawkey: ...plus anyone who has access to another system on the northern hemisphere.10:22
persiaplus anyone who can spoof being in the northern hemisphere10:23
sorenHawkey: Which probably protects you from perhaps 30-40% of the planet... which is completely pointless.10:23
a_okpersia: I tried ftp-proxy but I think that is a reverse proxy will check out squid. lighter is better in this case10:23
Hawkeywell noone expect me has access to my server.. so i'm confused or dont understand whats your point10:24
sorenpersia: Right. I was assuming that hemisphere detector was infallible :)10:24
persiasoren: Ah, right.10:24
sorenHawkey: The point is that such a security measure could so trivially be bypassed that spending time adding it is pointless, and what's worse is that it will create a false sense of security.10:24
persiaHawkey: Basically, since you don't know your IP, a firewall rule is pointless.  The options are 1) leave it open (same level of security as a bad filter), or 2) do something expensive and complicated.10:25
Hawkeywell forgot time and money.. not a value atm..10:25
Hawkeypersia in the 2nd case ... could be more specific?10:25
sorenWhat the 2nd case is specifically is not the main point.10:26
sorenThe main point is that you are wasting your time with this firewall.10:26
sorenRegardless of what you do instead.10:26
Hawkeysoren i just want to add to fw rule to allow connection from ip like this aaa.*.bbb.ccc .. that was my original question... and got it.. its not possible right?10:26
Hawkeyneed to have exact full name10:27
* soren gives up10:27
Hawkeyno substitutions10:27
persiaHawkey: Set up some server outside the firewall.  Have it listen only on ssh (optionally only listen after knocks).  Set up the firewall to only accept ssh from that sever.  Set up a nameserver to have an internal domain.  Set up the external server to know about that domain.  Set up your client ssh_config to proxy stuff for that domain through the external host.10:27
persiaThis makes it harder.  It is still not secure.10:27
sorenHawkey: It's the same as not locking your door, but putting a sign on your front door saying: "The door is locked".10:28
Hawkeyhmm..10:29
persiaThe complicated solution is more like locking your door with a non-unique key.10:29
sorenOr locking your door, but leaving a great big window open right next to the door.10:29
DavieyHawkey: you can do ufw/iptables via subnets.. which would probably do what you are trying to do10:30
persiaIs it?  I've always liked bastions, because one needs to know the internal name as well as the other auth credentials.10:30
Davieyso only people on your ISP can connect.10:30
persiaDaviey: That's pointless though.10:30
Davieypersia: I disagree it's pointless, but it does address what the chap wants to do... Doesn't it?10:31
persiaIt does.  I just agree with soren that it's pointless, because anyone can apparently be from an ISP with minimal effort.10:31
Davieyconsidering most of my hacking attempts come from china and russia, limiting to a single ISP certainly decreaces the brute force potential massively.10:31
Davieyhmm10:31
DavieyPTR record is easy to spoof, agreed. UDP packets are easy, agreed.  However, TCP - forging the from is somewhat less easy :)10:32
persiaDaviey: Saying "only this ISP can get in" isn't secure.  Saying "everything but this ISP is sending pointless brute-force hack attempts that annoy me" is perhaps an excuse for a filter, but it's just relieving an annoyance, rather than being more secure, as such.10:32
sorenDaviey: No. It's as easy as signing up with that particular ISP.10:33
persiasoren: If you ever have time, I'd like a critique of the bastion approach, just from personal interest.  No rush of any kind: months later would also be appreciated.10:33
sorenDaviey: Something which thousands have already done.10:33
DavieyOh, i entirely agree it's not as secure as some options - but does add a level of security.  Coupled with something else, it should be pretty good.10:33
persiaOr asking someone with a botnet to give you access to a machine using that ISP.10:34
Davieyfail2ban / denyhosts etc10:34
sorenI think assuming that people using the same ISP as you are less malicious than anyone else is a mistake.10:34
persiaDaviey: These are tools to keep the logs cleaner.  They don't actually help that much against anyone actually wanting in.10:35
Hawkeypersia well.. that could be prevented when that isp is using dnssec, or am i totally out of dish?:P10:35
DavieyWell yes, but IME the majority of attempted hacks aren't targeted - just drive by pokes.  Therefore limiting to subnet, coupled with something else - is a pretty good solution IMO10:35
persiaHawkey: That only means it's really a machine from that ISP.  Could be a malicious customer.  Could be part of a botnet.10:35
persiaDaviey: I agree it doesn't hurt: I just don't believe it's actually more secure.10:36
Daviey:)10:37
sorenI just don't want someone come in here, ask for this sort of advice, and just tell them that "yeah, put this or that in hosts.allow", have a week pass, have him be succesfully hacked, and have him go "oh, why didn't those fuckers in #ubuntu-server say that this was a problem?".10:37
persia!ohmy10:37
ubottuPlease remember that all Ubuntu IRC channels share the same attitude of providing friendly and polite interaction with all users of all ages and cultures. Basically, this means no foul language and no abuse towards others.10:38
persiaBut, yeah.10:38
echosystmhey super cool dudes!10:38
echosystmso, i have a question10:38
Davieysoren: Agreed.. i'm saying limiting to subnet COUPLED with something else, is better than just having something else.  And he did ask for that :)10:38
echosystmlets say someone was to forgo redhat/centos and try to install oracle on ubunt server10:38
echosystmwould the experience be somewhat akin to putting ones genitals in a grinder?10:39
DavieyO_o10:39
echosystmor do canonical take serious business serious10:39
persia!ohmy | echosystem10:39
ubottuechosystem: Please remember that all Ubuntu IRC channels share the same attitude of providing friendly and polite interaction with all users of all ages and cultures. Basically, this means no foul language and no abuse towards others.10:39
Davieyechosystm: Well for the last part, you might be better to direct the question towards Canonical.10:39
persiaOracle has this to say about running Oracle on Ubuntu: http://www.oracle.com/technology/tech/linux/install/xe-on-kubuntu.html10:40
persiaI suspect there are other guides for other products.10:40
sorenpersia: I think the #python channel gets it right. The regulars there refuse to answer people's questions if they seem to be on the wrong track.10:40
Hawkeysoren i'm aware of risk you're talking about... but i have no other option... need to connect from mobile device.. what ever risk it takes...10:40
sorenHawkey: You are either not understanding at all or not paying attention.10:40
sorenHawkey: I'm telling you to LEAVE THE FIREWALL OPEN!10:41
persiasoren: Aha.  I see.  Thanks.10:41
sorenOr not set one up at all.10:41
sorenIt's /pointless/.10:41
sorenHawkey: I'm /not/ tellling you to close it up, and not let anyone in.10:41
=== Airells is now known as airells
echosystmpersia bro, installing oracle xe is hardly comparable to 10g10:41
Hawkeybut you say that it's like i have leave opened.... what's the difference?10:42
sorenHawkey: None!10:42
persiaechosystm: My assertion is only that Oracle seems to have guides, not that the products are similar.10:42
sorenHawkey: That's the point!10:42
echosystmim more interested in what canoncals commercial alliances are like10:42
sorenHawkey: If there's no difference, don't waste your time.10:42
persiaechosystm: For that, as Daviey said, you'd do better to contact Canonical.10:42
echosystmi figured someone here would have experience?10:44
sorenHawkey: It's very, very simple. Adding the firewall will not increase security. So don't waste time setting one up. It will make no difference, so why do it?10:44
echosystmvendosr will tell you all kinds of crap10:44
Hawkeysoren well that's what i DO NOT want to.. i want to restrict it as much as possible.. not whole open... that's what i ask if there is an option to add that fckin rule...10:45
sorenWell, I'm not going to help you.10:45
sorenSimple as that.10:45
Hawkeysoren lol... not increase security? what a bullshit?10:45
sorenI've tried to explain why.10:45
Hawkeypoint was to minimalize the risk10:45
sorenWhatever. My life is way too short for this.10:47
* soren wanders off10:47
Hawkeyheh10:47
sorenpersia: I also have a bastion host. It's also convenient that you don't need public IP's for everything.10:50
persiaThat too :)10:51
Davieysoren: If we bring home + ipv6 into the mix.  I have the firewall rule of allowing my /64 to connect, but the rest of the internet blocked.  Therefore my security is the same, someone could get on my LAN (wifi perhaps), and connect to the servers - but the audience of people that can attack is reduced massively.11:05
DavieySame as a spamd server i run, that is firewalled off to only allow my ipv4 subnet to connect.. that is less for security, more abuse tho.11:05
EhrNhi all. We search a panel control for dedicate server. we have test webmin/virtualmin. Some admin here have a favorite panel ?11:06
DavieyEhrN: Generally all panels are sub-optimal, and we recommend against them.. what operations do you want to perform with the panel?11:07
EhrNMy boss create and host somes websites (Magento's commerce, CMS(drupal,Joomla),ERP) + mails + ftp account for each customers11:10
EhrNthe dedicated server is host by OVH11:10
sherrEhrN: are you relying on the panel to set everything up correctly and securely?11:11
sherrOr do you have an experienced sysadmin/person who knows how to configure servers?11:11
=== jussi01 is now known as o1
sherrBecause a "panel" is a bad idea probably - best to have someone who knows how to configure a server set things up. Security is a big concern!11:12
EhrNsherr, server security is ok. the panel is just for administrate a new customer's website/mail/ftp account/dns11:13
sherrOK - I don't use them and do not trust them. Be careful. Maybe this is what you are after :11:15
sherrhttp://www.ispconfig.org/11:15
sherrOr something like that. I have no experience of it though.11:15
=== o1 is now known as jussi01
EhrNyes i know ispconig11:17
EhrNehcp look like very nice too11:17
sorenDaviey: That's not the same at all.11:18
Davieysoren: Actually, it is - you are reducing the audience that can launch an attack.11:19
sorenDaviey: Yes. But you're doing it beyong the point at which the quantitaive difference that makes has become qualitative.11:20
sorens/beyong/beyond/ obviously.11:20
sorenAnd s/quantitaive/quantitative/11:20
sorenSeveral reasons:11:23
sorenI don't suppose you sell access to your home network to random strangers?11:24
sorenISP's tend to do that. You know... To stay in business and all that.11:24
Davieysoren: The IPv4 address space allows ~4,294,967,296 addresses, if you restrict it to just a /8 that makes the audience that can attack down to less than 16,777,216.. this is a pretty significant drop.  As i said, i'm not saying this should be the ONLY defence, but it certainly adds to the security by multiple levels.11:24
sorenI hear you.11:25
sorenAnd disagree.11:25
Davieysoren: I do sell access to my ipv4 allocation, and have services firewalled off to only that allocation :)11:25
sorenBeing on the same subnet as yourself (a subnet you don't control) does not make anyone more or less trustworthy.11:25
Davieyi didn't claim it did11:26
sorenThen it's pointless.11:26
* persia one had a job as a network admin where it was *required* to spoof addresses in order to log into management servers. Didn't stop anyone from doing it daily.11:26
sorenAll you're doing is reducing noise in your logs.11:26
persias/one/once/11:26
sorenpersia: Heh :)11:26
persiasoren: There is value in reducing that noise, as it makes it easier for folks to track goings on.11:26
FireCrotchpersia: grep -v does that just as well11:27
=== EhrN is now known as Ehrn_Eat
persiaFireCrotch: I don't claim otherwise.11:27
sorenpersia: Fair. I just don't think a firewall is the right tool for that job. And neither do you :)11:28
Davieysoren: the inverse of what i am saying is advertising a teenagers house party on facebook, and someone standing at the door asking people for tickets to get in.... Not advertising the party on facebook, would have reduced the people that turn up at the door and trying to force themselves in.11:28
DavieyBut you still have someone checking tickets, (ie denyhosts/fail2ban) for those that know about it, but you still don't want them to force themselves in.11:29
FireCrotchWhy would anyone in their right mind have ssh listening on a public interface to begin with?11:30
sorenFireCrotch: To get in?11:30
FireCrotchAllow ssh only from the internal network, and use a VPN11:31
sorenFireCrotch: Why would anyone in their right mind have VPN listening on a public interface to begin with?11:31
DavieyFireCrotch: so you have the VPN daemon listening on a public interface?11:31
soren(See what I just did there?)11:31
persiaFireCrotch: That just moves the issue. from ssh auth to vpn auth.11:31
Davieybah11:31
FireCrotchA VPN is a wayyyyy more secure way to do it11:32
sorenHahahahhah11:33
sorenFireCrotch: Why is that?11:33
* Daviey avoids this discussion. :)11:33
persiaheh11:33
sorenI can write a /really/ bad VPN server and a /really/ bad ssh server. Just as easily.11:33
persiaI once had a client that implemented VPN via ssh.11:34
sorenOne could easily argue that the previously discussed bastion host is a poor man's VPN.11:34
Davieypersia: vpn over ssh via tap \o/11:34
persiaDaviey: That's a lovely model!11:35
FireCrotch:( it's way too late at night for me to be pondering this topic11:35
DavieyI have been tempted to run a vpn tunnel, over ssh, which is over socks proxy, made via sshing over dns.11:35
persiasoren: Depends on the VPN implementation.  I've seen lots of places that have nice open access through the firewall to a concentrator on the internal network.11:36
FireCrotchor rather, way too early in the morning, now11:36
FireCrotchI should sleep haha11:36
persiaDaviey: might suffer a little latency that way.11:36
sorenpersia: Sorry, what depends on the VPN implementation?11:36
persiasoren: Whether a bastion host can be considered a poor man's VPN.11:36
Davieypersia: So i guess adding network conencting via packet radio wouldn't help? :)11:37
persiaMy preferred VPN implementaiton is always to bastion the concentrator, but I've seen it done other ways.11:37
persiaDaviey: Just remember to have your radio base station uplink via satellite, and you'll never notice.11:37
FireCrotchwhat was this argument even about to begin with?11:38
Daviey:)11:39
persiaFireCrotch: different viewpoints on convenient ways to pretend to be secure11:39
DavieyFireCrotch: soren is having a house party at his house, and he wants everyone to turn up :)11:39
Daviey(not true)11:40
sorenpersia: I think calling something a "poor mans something" leaves a lot of wiggle room for interpretation.11:40
persiasoren: I guess.  I just consider bastion vs. non-bastion completely separate from different classes of device usable to reroute packets inside some infrastructure.  Maybe I've seen too many annoying networks.11:41
sorenpersia: You're being very specific.11:43
sorenpersia: Assuming VPN is a mechanism that allows access to internal infrastructure to authenticated users..11:43
persiasoren: OK.  In that sense, just unfirewalled ssh is also VPN.11:44
sorenpersia: ..a bastion host is an implemention of VPN. Both have many other characteristics, but with that limited definition (which for many intents and purposes is suitable, I think), it holds.11:44
persiaI tend to think of "VPN" as some way to have an encrypted tunnel between two networks, over some other network (where one of those networks may be a /32)11:45
soren/32?11:45
sorenReally?11:45
sorenYou do VPN to localhost?11:45
persiaIt's not an uncommon profile for e.g. roaming sales force needing access to intranet, etc.11:46
persiaTends to be limited to some DMZ.11:46
sorenWhat would be the point of a loopback VPN connection?11:46
sorenI mean..11:46
persia /32 isn't necessarily loopback.11:47
sorena VPN connection from my laptop to my laptop is not going to get me anywhere?11:47
soren/32 only has one host in it.11:47
persiaNo, but a vpn from 10.0.0.1/32 to 172.19.24..192/29 is useful.11:47
persiaAnd for some applications, 192.168.73.43/32 to 10.101.57.34/32 might be useful.11:48
* soren stares11:48
sorenIn that example, what is 10.0.0.1 ?11:48
persiaMy laptop11:48
persiaBad IP, actually.11:48
sorenOk. Oh, sure, that makees sense.11:48
sorenI just got confused by the "one of those networks may be a /32" bit. One of the networks in the context was the foreign network.11:49
persiaBut that there *is* a tunnel is completely separable from how the concentrator is implemented.11:49
persiaForeign /32 was my second example.11:50
sorenAgreed.11:50
sorenNo, no.11:50
persiaMy laptop to one single server in a trusted infrastructure.11:50
sorenForeign as in the network that you're crossing.11:50
soren(the intenret)11:50
soreninternet.11:50
sorenMan, typing is difficult today.11:50
persiaOh, the tunnel media.  Yeah, that has to be larger than /32 :)11:51
sorenUsually, yes.11:51
persia(assumping IPv4 : /32 is a fine tunnel media for IPv6)11:51
sorenSorry, didn't mean to be difficult. It was the first think I thought of and just got very confused.11:51
soren:)11:51
soren"thing"!11:51
* soren decides to write some code instead11:52
zulmorning12:06
sorenDaviey: Do you have a trick for detecting the tun device on the server when you're creating tunnel using ssh?12:16
sorenDaviey: ...or do specify a specific one to make configuration easier?12:17
pmatulis"specify a specific" ?  ;)12:19
sorenErr..12:19
sorenYes :)12:19
MatBoymhh ubuntu cannot write the hosts.hfaxd file for hylafax12:31
zulttx: we are suppose to be doing iso testing today right?12:39
ttxzul: yes12:39
Davieysoren: do you mean ssh+tun vpn?12:58
Davieyfor your routing?13:00
smoserttx, ping, meeting ?13:03
ttxsmoser: meeting is at 1400 UTC, which is in one hour.13:04
smoserstupid time change13:04
ttxsmoser: :P13:04
ttxsmoser: the US should just use the same dates as the others :P13:05
smoseri wish i could come up with some snarky remark about why these dates are inherently better13:05
* smoser grew up in Indianapolis, the last hold out for "lets just *not* decide to change the time"13:06
andolttx: See you just added bug #356256 as a papercut. Plan on looking into the issue specifically in regards to slapd, or on a more general notes regarding database daemons?13:09
uvirtbotLaunchpad bug 356256 in openldap "dist-upgrade stops slapd" [Wishlist,Triaged] https://launchpad.net/bugs/35625613:09
ttxandol: there was a duplicate bug that just said "this is a papercut", I unified them13:09
ttxandol: doesn't mean we should accept it13:10
andolttx: Ahh13:10
ttxandol: we'll review it in one hour in the meeting -- but that doesn't seem to meet the "obvious way to fix" criteria13:10
andolttx: my impression as well, even if it surely would be a nice thing to do something about13:11
ttxsmoser: the current beta1 UEC images candidates have a ramdisk: is it a bug or a feature ?13:14
smoserfeatur13:14
smosere13:14
smoserwork around13:14
ttxI missed the memo, I guess13:14
ttxwhich bug ? the cloud-init / upstart thing ?13:14
smoseri commented in the bug... its a work around for bug 53149413:14
uvirtbotLaunchpad bug 531494 in upstart "cloud-init job not running in eucalyptus without ramdisk" [Critical,Incomplete] https://launchpad.net/bugs/53149413:14
* ttx looks13:15
smoserttx, i think its better than a release note "uec images boot only if you're lucky"13:15
ttxsmoser: certainly :)13:15
smoserthe other option was to put cloud-init back later13:15
smoserto run later.13:16
ttxsmoser: Note that I was ok with the no-ramdisk concept if it wasn't introducing new bugs -- I'm not opposed to drop it if that means a more stable system.13:16
ttxsmoser: We'll have to do a final choice by beta213:17
smoserttx, agree13:17
smoserthe scary thing to me, though, is that i don't understand why ramdisk would fix this per se13:17
smoserand neither does Keybuk13:17
smoserso i'm not convinced its not just a bandaid that reduces likelyhood of race13:18
ttxsmoser: I suspect it introduces a timing change which means you win the race (almost) all the time13:18
smoser:-(13:18
smoserright13:18
ttxsmoser: I tested the UEC images alright13:18
smoserand you were typically unlucky ?13:18
ttxno, lucky13:19
smoserbefore13:19
zulhah13:19
smoseryou used to be unlucky until you found the ramdisk, right ?13:19
ttxsmoser: I was unlucky when trying to start multiple instances13:19
smoserok.13:19
smoserdustin was  unlucky 90% of the time at least13:19
ttxI no longer am unlucky.13:19
nucc1hi, can anyone help? http://pastie.org/87372913:25
jalonsnucc1: the host has sender verification disabled - ensure your DNS names are valid, i.e. the ultimate recepient of your email can resolve app.domain.com13:29
jalonser, sorry, sender verification enabled13:29
jalonsalternately, white list/add to a no sender call back list on the mail daemon accepting mail for domain.com13:29
nucc1jalons, i can only edit the dns settings for domain.com, since it is a shared host.13:30
jalonsthen make sure the mail host can resolve app.domain.com, and welcome to sender verification hell13:31
nucc1jalons, or what should i do to make app.domain.com reply to sender verification requests?13:32
nucc1jalons, by mail host, you mean the mail server for domain.com? this means i should add an MX entry that points to app.domain.com ?13:32
jalonsnucc1: postfix by default should respond, unless you went a little tweak happy in main.cf13:32
nucc1jalons, i configured it with dpkg-reconfigure13:33
ameba23I have just installed ubuntu server on system with two raid harddrives and one nomal scsi. i chose to install the system on the non-raid drive, but i am getting grub error 21.  is it worth switching to lilo?13:33
jalonsnucc1: is the mail from the postfix server being presented to the mail server for domain.com as app.domain.com?  If the from address is not being rewritten to be from @domain.com and is coming from @app.domain.com then yes, you'll need an MX record on app.domain.com13:34
jalonsyou shouldn't, since it should make a call back as long as an A record points back to app.domain.com13:34
jalonsbut, it can't hurt13:34
ttxsmoser: we don't have specific tests for ebs root, so you should probably test them in parallel with their instance store equivalent ?13:35
smoserttx, yes, i'll just run them through the same set of tests13:36
smoserexcept that i will shut them down, and start back up13:36
smoserand verify they came back up13:36
ttxsmoser: make sure we get specific AMI entries i the ISO tracker for beta213:36
smoseri hate amis13:36
smoseranyway13:36
ttxsmoser: what do you propose ?13:37
smosernothing else. i just hate that this doubled the testing.13:37
ttxsmoser: I'm not sure how we can consolidate tests efficiently13:37
smoserand have no suggestions or good arguments that it should not have13:37
smoseri agree completely.13:37
smoserit just sucks.13:37
ttxsmoser: i'm pretty sure you will automate all that  :)13:37
smosersorry, sometimes i just like to complain for the sake of it.13:37
ttxsmoser: we /could/ get rid of the i386 images13:38
ttxsmoser: i'm not convinced they are useful13:38
ttxIn the same vein, testing UEC/i386 just doesn't make any sense.13:39
smoseryeah. i'll agree on uec.13:39
smoseri test/use i386 all the time on ec213:39
ttxsmoser: so both arch have their usefulness ?13:40
smoserits 1/4 the price of the cheapest x86_6413:40
ttxah13:40
ttxprice :)13:40
smoseryou rich people13:40
smoser:)13:40
smoserlet them eat cake and all that13:40
emilioeduardobhi! im trying to add a user in a server. with  useradd -s /bin/false  prueba3 but it fails saying Can't create `/etc/passwd': not space left on device. I did df -h and i see i have plenty of space. any ideas why?13:42
sherremilioeduardob: /etc/passwd? very worrying .... :-(13:47
ameba23I have just installed ubuntu server on system with two raid harddrives and one nomal scsi. i chose to install the system on the non-raid drive, but i am getting grub error 21.   i there a way i can install lilo, or boot from a floppy?13:47
emilioeduardobsherr, yeah.. is too wierd...13:48
sherrMaybe running out of inodes? Try : df -i13:48
emilioeduardobsherr, yup.. 100% used inodes :S13:49
emilioeduardobsherr, tks! at least i know now wht im against :P13:51
ameba23I have just installed ubuntu server on system with two raid harddrives and one nomal scsi. i chose to install the system on the non-raid drive, but i am getting grub error 21.   i there a way i can install lilo, or boot from a floppy?14:01
creatorbriHello. Question: I have am on Ubuntu connected to a Windows network. I need to access a Windows machine by its hostname for both Filesharing and http access (i.e. intranet, svn). But my Ubuntu pc can't see the hostname at all.14:02
creatorbriI have samba and smb-client installed14:03
creatorbrier, smbclient14:03
creatorbri More Details: I am running Ubuntu on a VM with a Bridged connection. My host machine (a Windows 7 pc) can access the windows server just fine.14:04
smosermathiaz, you have UEC rig in appropriate testing setup ?14:06
mathiazsmoser: I think so14:06
mathiazsmoser: but it may be wiped out to test the beta1 isos14:07
ameba23is it common for raid controllers to interfere with grub?14:07
sorenDaviey: Yes.14:11
sorenttx: I still expect to upload a fix for https://bugs.launchpad.net/bugs/460398 before beta 1.14:11
uvirtbotLaunchpad bug 460398 in server-papercuts "/etc/timezone is not set correctly" [Medium,In progress]14:11
sorenttx: I've just been procrastinating to see if I could fix more stuff before then.14:11
creatorbriQuestion: How can I access a Windows server by Hostname from within an Ubuntu VM? Details: I am running an Ubuntu VM on my Windows 7 laptop, which is connected to a Windows network. The Ubuntu VM is using a Bridged connection and can access the Internet fine. My laptop can access "\\server\" and "http://server/" just fine. I have samba and smbclient installed. But for some reason I can't access the windows server from my Ubuntu VM. 14:14
sherrcreatorbri: not really a #ubuntu-server relevant topic14:16
ttxsoren: ok14:16
sherrMight be better asking on the forums or #ubuntu14:16
sherrameba23: Disk order and layout can affect grub, yes. Whan you say "scsi" do you mean you have a real SCSI disk? Or do you mean SATA?14:20
=== airells is now known as Airells
ameba23er its SATA14:31
uvirtbotNew bug: #540279 in apache2 (main) "package apache2.2-common 2.2.11-2ubuntu2.6 failed to install/upgrade: il sottoprocesso post-installation script ha restituito un codice di errore 1" [Undecided,New] https://launchpad.net/bugs/54027914:32
ameba23sherr, Ive read some responses on forums to people having grub error 21 and a lot of people seem to say lilo works better but im not sure how to change it14:33
arch0njwgood morning all.  I know it is not standard practice to install a DE on ubuntu server, but I have reason to need something relatively lightweight.  A minimal install of gnome would be sufficient.14:39
arch0njwAny recommendations, please?14:39
arch0njwpm me if that is more appropriate.  I don't mean this to be a poll.14:39
faileasarch0njw: openbox is pretty minimal14:40
faileasor plain old x14:40
andolarch0njw: In case you want a more minimal gnome you can always do an "apt-get install ubuntu-desktop --no-install-recommends"14:40
arch0njwandol: oh?  Now there's something very new to me.  Interesting.14:41
arch0njwfaileas: Thank you.  I am familiar with good ol' OB.  However, I think the other person maintaining this server might find it a bit of a shock. I'd install FB if I had my way...14:41
andolarch0njw: As of 8.10 apt was set to also install Recommended packages by default, allowing alot of not-absolute-neccesary dependencies be moved from Dependency to Recommends.14:42
faileasarch0njw: or xfce, which is reasonably gnomelike14:46
arch0njwfaileas: Pondered that too.  I tried a straight xfce install once and embarassingly muddled my way through installing sufficient packages to make it usable14:47
faileaswell, there's xubuntu desktop ;)14:48
arch0njwfaileas: presumably I could use the --no-install-recommends there as well to get the least-most needed.14:48
faileasarch0njw: probably. try it on a VM first? ;p14:57
arch0njwfaileas: indeed :D14:58
arch0njwfaileas: andol: thank you for the advice :)  I'll be applying this wisdom soon ;)15:21
MatBoyon ubuntu no application sees the faxes of hylafax in the queue15:28
warmexxusI came in here the last couple days talking about SSH and losing connection while headless... The problem has been resolved with using the boot option "nomodeset". It's a bug that affects old dell dimensions with intel video chips. Sleep mode on the monitor locks the computer up. Nomodeset works to resolve.... just a FYI to anyone who can use it... :)15:35
NotscapeHi, does anybody here have experience in 6.06 (server) to 8.04 (server) direct upgrade ?15:37
Notscapemy 6.06 is a minimal LAMP instalation plus postfix, courier, squirrel, clamav, spamassassin, amavisd-new15:37
Notscapeonly was wondering if someone here had troubles or the procedure is straightforward15:38
=== Ehrn_Eat is now known as EhrN
_rubenNotscape: it *should* be straightforward15:41
Notscape_ruben: :p15:41
_rubenits a supported upgrade path .. then again, there's no guarantees for any upgrade scenario afaik15:42
Notscapemy experience in 6.06 (desktop) to 8.04 (desktop) was very bad15:44
Notscapeit didnt work15:44
Notscapelots of unresolvable libraries conflicts15:45
Notscapeit is true that i have less chance in server as it has less number of extra packages15:46
Notscapeless chance of failure i mean15:47
resnoI am having a hard time getting wsgi setup, I keep getting the error that wsgidaemonprocess is mispelled or module not included.15:50
sbeattieNotscape: make sure to use do-release-upgrade rather than editing sources and doing apt-get dist-upgrade.15:50
Notscapesbeattie: yes I will go that way . . . but just looking for someone with previous experience15:52
sbeattieNotscape: hrm, missing libraries... maybe make sure you have universe enabled before upgrading?15:55
sbeattie(dapper didn't enable universe by default)15:55
ttxsmoser: how is EC2 image testing doing so far ?16:10
smoseri've not started... been poking at my scripts to ebs-rootify them. i will be starting soon.16:11
ttxok16:11
ttxsmoser: we need to run "some test" soon enough to catch the kittenkiller.16:11
smoseryeah.16:11
smoserwill have "some test" in next 30 minutes, promise.16:11
ttxzul: you cover the upgrade testing ?16:12
resnoI am having a hard time getting wsgi setup, I keep getting the error that wsgidaemonprocess is mispelled or module not included.16:12
zulttx: yep when I get to it16:12
Notscapesee you, thanks16:13
=== RoAk is now known as RoAkSoAx
keeskirkland: can you point me to docs on setting up the shared screen session on ec2?17:09
SquidNoobhi17:09
mathiazhggdh: hi!17:26
mathiazhggdh: are you planning to do some uec testing today?17:26
SquidNoobI'm trying to set up a transparent proxy with squid, I have the latest version of iptables, which comes with the extension tproxy but I can not make it work.17:41
SquidNoobI'm using this rule:17:41
SquidNoobiptables -t mangle -A PREROUTING -p tcp --dport 80 -j TPROXY --tproxy-mark 0x1/0x1 --on-port 312917:41
SquidNoobBut I've seen on some forums that instead of using "iptables-t mangle" use "iptables-t tproxy" but this does not work with the current version of IPTables, Ineed to patch iptables again with TProxy patch or this is only for older versions?17:41
hggdhmathiaz: yes, when can we start?17:43
mathiazhggdh: whenever you want17:43
hggdhnow?17:43
hggdhor is it time for lunch?17:43
hggdhmathiaz: ^17:43
mathiazhggdh: now is a good time for me17:44
hggdhmathiaz: OK. What is it I am expected to do?17:44
mathiazhggdh: the test cases are outlined on the wiki at http://testcases.qa.ubuntu.com/Install/ServerEConfig17:45
hggdhmathiaz: er. replacing karmic by lucid, correct?17:46
mathiazhggdh: I've also updated the uec-testing-preseed branch with a README.testing to outline how to do the testing17:46
mathiazhggdh: not really.17:46
mathiazhggdh: the focus of the test cases are to test UEC itself, rather the images17:47
mathiazhggdh: there are other testcases covering the images themselves (for EC2 and UEC)17:47
hggdhmathiaz: which machine should I use?17:47
mathiazhggdh: IIRC you installed a topology yesterday17:48
mathiazhggdh: the test cases should be run from the Cloud Controller17:48
mathiazhggdh: (which is cempedak for most of the topologies)17:49
hggdhok, logging in to nickel17:51
mathiazhggdh: to reach cempedak, you need to go through tamarind17:52
mathiazhggdh: nickel is only used for PDU17:52
hggdhk17:53
mathiazhggdh: and control the power17:53
hggdhmathiaz: it does not seem I can reach cempedak from tamarind17:55
hggdhmy ssh request seems to hang17:56
mathiazhggdh: have you setup you ssh_config file as outlined in the README file in the uec-testing-preseed bzr branch?17:56
ZiderI have a problem with cryptdisk sometimes only creates /dev/mapper/name and sometimes both that and /dev/mapper/name_unformatted.. is there a known problem with this?17:56
mathiazhggdh: I can login in cempedak17:56
mathiazhggdh: if you setup a local .ssh/config file you'll be able to directly ssh into cempedak from your workstation17:57
Zideralso, how come the startup process tries to mount the maps before cryptdisk is finished creating them? :P17:57
DrNick_hi. is anyone here well versed in samba & Active Directory authentication using likewise-open?17:59
hggdhmathiaz: getting it in place17:59
=== astechgeek is now known as Guest28893
=== Guest28893 is now known as techgeek
hggdhmathiaz: and I am expected to login as ubuntu to cemdepak?18:05
mathiazhggdh: yes18:06
kirklandkees: see screenbin(1)18:43
KingMutycoz linux channel is so CLI-ish18:54
KingMutydudes18:56
KingMutymy network aint working18:56
bogeyd6oh noes KingMuty18:56
KingMutyso18:56
KingMutyanyone wanna help?18:57
KingMutywhy do haxors sleep with each other?18:58
KingMutycause they are fags that is why18:58
bogeyd6that was weird19:00
jiboumansguess he showed us...19:02
bogeyd6jiboumans, what was he even trying to say19:03
jiboumans'i am 13, hear me roar' ?19:03
bogeyd6perhaps19:03
bogeyd6sho is quiet up in this piece19:30
_rubensshhh19:33
bogeyd6go trolling, trolling on the channel19:33
bogeyd6lets go trolling, lets go trolling on the channel of ubuntu19:34
usuario_i need help using a switch to set up a dhcp server to share internet with 6 computers any thoughts20:01
DrNick_usuario_: yeah - plug all the computers into your switch, dhcp server included, then set up your dhcp server.  simple as that20:04
EdT2001Hello20:43
EdT2001if i set up an ubuntu media server will windows be able to map to it?20:43
EdT2001fu_ck you20:45
guntbert!language | EdT200120:46
ubottuEdT2001: Please watch your language and topic to help keep this channel family friendly.20:46
sorenGood riddance.20:50
jetolehey guys. I am new to preseeding and trying it out. Does anyone know how I can have a random host name auto assigned or if there is a way to use a schema to create a random host name?20:51
ikoniajetole: either dhcp or a script at start up20:58
jetoleikonia: how do I use a script at start up?21:02
ikoniajust write a script to take random letters (26 letters) and random numbers (0-9) pick a combination of say 12 of them and write them to /etc/host and /etc/hostname21:03
ikoniawhy you would want to do that, I don't know21:03
jetoleikonia: I'm planning on deploying a lot of machines and don't want to be prompted for the host name when I install21:03
ikoniaso set profiles, or use dhcp to set the hostnames, that would be better than a script21:04
jetolewhat do you mean profiles? I'm still new to this21:04
ikoniaprofiles could be anything like, a text file with a list of hostnames that cycles through and gets the next in the list for each install, the best way would be to have dhcp offer up hostnames21:05
jetoleok, I will look into dhcp21:05
ikoniathat's a good way of doing it, plus intergrates well in to future managment of the machines21:06
ikoniaeg: dns21:06
=== erichammond1 is now known as erichammond
jetoleikonia: what do you recommend for an apt caching system?21:08
=== erichammond1 is now known as erichammond
ikoniajetole: local mirror works well,21:09
ikoniamaybe squid hosting on a local mirror21:09
ikoniatons of options21:09
jetoleWell I'm looking at items like apt-proxy, apt-cacher-ng, debproxy etc21:09
jetolejust don't know which one I should go with21:10
ikoniado a little research and maybe do a proof of concept, experiement21:10
jetolewell the POC is exactly what I am doing now before the live deployment21:11
ikoniagreat, have a play and keep in the back of your mind scalability for your target deployment21:12
ikoniamust dash21:12
jetolek21:12
=== erichammond1 is now known as erichammond
=== rberger_ is now known as rberger
=== johe_ is now known as johe
=== rberger_ is now known as rberger
=== robbiew is now known as robbiew_
uvirtbotNew bug: #540596 in qemu-kvm (main) "NX memory not simulated for ARMv7 and above CPUs" [Undecided,New] https://launchpad.net/bugs/54059623:22
Sorellhey guys, I'm having issues with my UEC private setup23:40
SorellI have the server installed and23:40
Sorellhave the cluster controller and the nodes setup23:40
SorellI am getting an error though I and I have no idea where to go to fix it23:41
SorellI am getting not enough resources available: address (try --addressing private)23:41
Sorellbut when I try addressing private option the instance will never start23:42
Sorellany ideas23:42
alex88hi guys..can i ask here for ubuntu server lucid?23:44
twbalex88: sure.23:44
alex88ok, so..i'm trying ubuntu lucid server on virtualbox, i've tried cloud install, i've set 512mb of ram, install is fine, i've set host-attached network23:45
alex88host has 192.168.56.1, ubuntu cloud as guest has 192.168.56.223:46
alex88on boot it says: init: eucalyptus-network main process killed by term signal23:46
alex88then there aren't any eucalyptus process running, and i can't access gui23:46
alex88via https23:46
alex88also there aren't any java process running23:47
twbalex88: I don't do EUC yet, so I can't help.  Patiently wait for someone else to respond.23:48
alex88twb: thank you anyway..maybe there is a channel for cloud?23:50
twbHmm, maybe #ubuntu-euc?  /list doesn't work for me.23:50
twb!euc23:50
alex88nope..i'll wait here23:51
Sorell#ubuntu-cloud ;)23:51
Sorellno one really in there though23:52
alex88i've tried it..btw..i've done "service eucalyptus start"23:54
alex88and there are a lot of connections between 9001 port and others in localhost23:55
alex88oh...it's started23:55
alex88thank you anyway23:55
alex88=)23:55
alex88-.- username not found...23:56
alex88wtf..23:56

Generated by irclog2html.py 2.7 by Marius Gedminas - find it at mg.pov.lt!