/srv/irclogs.ubuntu.com/2010/09/22/#ubuntu-server.txt

theyranossomething is sending sigterm to anything that listens on port 2200:02
ethicalhack3rhi Guys, any one know how I install my remastered ubuntu server livecd to harddrive?00:04
ethicalhack3ris there a built in tool or external script I can use?00:05
JasonMSPI've got VSFTPD setup and working with TLS/SSL.  I'd like to configure it for virtual users on top of this.  I've tried a few solutions that have not worked.  I get login 530 error.  Does anyone have this working?00:05
kevinashCan anyone suggest a good backup script for MySQL 5.1 databases for use on Ubuntu Server 10.0.4? I've found a few on google but I'd like to know someone is using their chosen script with good results00:09
Four2zerohey guys, i was running samba for filesharing with windows 7 and now i installed ebox(zyntal) and was trying to configure it with samba but it woudn't work. now im stuck with multiple samba network on my windows 7 machine that will not go away, how can i make sure samba is still not running or installed ?00:12
Four2zeroI ran top and i dont see any smb services00:13
Skaagcan someone remind me how to tell apt not to upgrade a certain package?00:24
uvirtbotNew bug: #644799 in apache2 (main) "package apache2.2-common 2.2.14-5ubuntu8.2 failed to install/upgrade: Unterprozess installiertes post-installation-Skript gab den Fehlerwert 1 zurück" [Undecided,New] https://launchpad.net/bugs/64479900:46
uvirtbotNew bug: #644798 in apache2 (main) "package apache2.2-common 2.2.14-5ubuntu8.2 failed to install/upgrade: il sottoprocesso vecchio script di post-installation ha restituito lo stato di errore 1" [Undecided,New] https://launchpad.net/bugs/64479800:47
=== Wandrewvious is now known as WALoeIII
=== zz_sailerboy is now known as sailerboy
=== rberger_ is now known as rberger
uvirtbotNew bug: #644853 in apache2 (main) "package apache2.2-common 2.2.14-5ubuntu8.2 failed to install/upgrade: subprocess installed post-installation script returned error exit status 1" [Undecided,New] https://launchpad.net/bugs/64485303:32
=== _TechAway_ is now known as _Techie_
JasonMSPtrying to setup virtual users with VSFTPD using this http://viki.brainsware.org/?en/Virtual_Users_simple I get this error 530 Login incorrect.04:26
JasonMSPLogin failed.04:26
_Techie_JasonMSP, whats wrong with creating real users?04:39
pedahzurNot strictly server related, but this is on Ubuntu server, so....: Weird dependency problem: trying to install gitosis. Says it can't install because Depends: git-core (>= 1:1.5.0) but 1:1.7.3-0ppa2~hardy1 is installed.  Ideas?04:43
JasonMSPI was hoping for easy managemnt of users by only allowing them access using httpaswd to create users.  Basically it would keep the ftp users all in one place and not in the passwd file.04:46
JasonMSP _Techie_: I expect as things progress on our server that we will have more and more FTP users.  I don't want them to have shell access, or any other access to the system.04:47
sheyQuestion: I have a webcam on my Ubuntu Server in my office, and was wondering if there was a way I can install some sort of monitoring software so I can see my office, from home lets say. There is no X Server installed on it.04:55
sheyIs something like this possible?04:55
ecelisyes it is posible04:56
sheyWell, this is linux, I am sure everything is possible, care to elaborate?04:57
ecelisdepending on your webcam, you might make it to take still images and store them somewhere an then write some PHP or web front end05:00
eceliswhich can use imagemagik to create clips for  you to download05:01
ecelisor maybe an streaming solution such as videolan05:01
ecelisI have done the first one05:01
ecelisgoogle a bit, there are lots of resources about this out there05:01
erichammondshey: zoneminder is available in Ubuntu and seems to be popular, but I recommend the  "motion" software which is much easier to set up and can create simple video files to peruse.05:02
Datzhumm, just checking munin stats today. would there be any alarm seeing number of threads take a sudden jump? http://datzfunk.net/munin/localdomain/localhost.localdomain/threads.html05:35
DatzI just installed some updates today, I don't know if it would be related to any of them..05:36
twister004hi guys!...05:47
twister004hi guys!...05:47
twister004have a query on BIND in ubuntu... if i add a CNAME in the db.xx.xx file, do I need to restart/reload the BIND service on the DNS server?05:47
ehcahHello. Can anyone help me with the following error: "could not create key from $KEY_HMAC: bad base64 encoding". I have been systematicaly working through errors on getting DDNS up and running.05:51
uvirtbotNew bug: #644910 in apache2 (main) "Hardy: apache2-mpm-itk cannot be installed due to dependency" [Undecided,New] https://launchpad.net/bugs/64491006:06
SpamapSehcah: you're trying to do DDNS using rndc ?06:12
SpamapStwister004: reload, yes. Did you also make sure to change the serial number?06:13
ehcahyes06:14
ehcahI'm down to my final error.06:14
ehcahI've been at this for 8 hours.06:14
RoAkSoAxSpamapS: where's the HOWTO to set the loadbalancer in the cloud?06:15
SpamapSRoAkSoAx: still working on it. https://wiki.ubuntu.com/CloudLoadbalancingHowto06:16
SpamapSRoAkSoAx: I packaged clb today so it should make the instructions much simpler.06:16
RoAkSoAxSpamapS: ty :). Yeah I just saw it :). How do you feal about automatically starting/stoping webservers based on the load?06:17
SpamapSRoAkSoAx: I was discussing it with mathiaz though, and really, with the puppet stuff he's rolling out, it should be really easy to do puppet in the cloud.06:17
SpamapSRoAkSoAx: there are already a number of autoscaling solutions out there.06:17
RoAkSoAxSpamapS: oh I see06:18
SpamapSRoAkSoAx: I'm not really very proud of clb. It needs to switch to using basic AUTH.. and SSL06:18
SpamapSRoAkSoAx: but its purely a proof of concept at this point.06:19
RoAkSoAxSpamapS: well, that's how everything starts though :)06:19
SpamapSRoAkSoAx: my original goal was to make tools that worked just like the amazon ELB tools06:21
SpamapSactually i have some time this week, maybe I'll try that again06:21
RoAkSoAxSpamapS: well you can achieve that overtime06:22
RoAkSoAxSpamapS: if I knew how that works I'd help but unfortunately I don't since I don't use the cloud yet :(06:22
RoAkSoAxsince I don't really have the resources for this now06:24
sandGorgonanybody know what is the upgrade path for postgres 8.4 -> postgres 9.0 is on Ubuntu ? The problem is that installing postgres-9.0 overwrites the pg_config binary and so my upgrade command fails : http://ubuntu.pastebin.com/0FXhQUZC06:39
ttxSpamapS: I think the graph is still buggy08:18
SpamapSttx: maybe we should get one of those UV zappers for it?08:19
ttxThe solid line points in the middle of the inprogress now08:19
ttxand the dotted line points to something HIGHER than  the total amount of WI08:19
ttxI'm not exactly sure where that extra amount comes from though08:20
SpamapSttx: hmm, works fine on my personal page..08:20
SpamapShttp://people.canonical.com/~pitti/workitems/maverick/u/clint-fewbar-ubuntu-10.10.html08:20
SpamapSso maybe its a team thing08:20
ttxSpamapS: http://people.canonical.com/~pitti/workitems/maverick/canonical-server-ubuntu-10.10.html08:20
ttxSpamapS: it's recent08:20
SpamapShm maybe the paints are backwards for foreign/team08:21
SpamapSI think they are08:21
ttxrigth, therte shoudl be some foreign things08:21
ttxthe graph don't show them anymore08:21
SpamapSttx: I think they're behind the other stuff08:22
ttxso the three TODO's from hggdh don't add up on the bar08:22
ttxhmm, the difference is not "3" though08:23
ttxmore like "1"08:24
SpamapSit may be cumulative08:24
SpamapSthe foreign numbers are not missing in the previous milestone tho...08:25
ttxSpamapS: we need to fix it because it adds confusion on the meaning of the lines... I can have a shot at it if you want08:25
ttxhmm08:26
ttxI think it was introduced when I added TODOs on james plate08:27
SpamapSttx: should be pretty simple.. just 3 coordinates to get right ;)08:27
ttxSpamapS: why is http://people.canonical.com/~pitti/workitems/maverick/u/james-page-ubuntu-10.10.html using the classic burndown ?08:28
ttxhmm08:28
ttxthe team membership is not refreshed at every run, maybe08:28
SpamapSttx: those are explicitly set in config08:29
SpamapSttx: did not have an easy way to determine team membership08:29
ttxSpamapS: or maybe it's the 1 inprogress / foreign that screws it08:29
SpamapSor rather, did not take the time to do that. ;)08:29
ttx(from andresrl)08:29
ttxSpamapS: no need to duplicate effort -- want me to do it, or you're on it ?08:31
ttx(you should rather be sleeping, but hey)08:31
SpamapSttx: Yeah, I'm waiting for a build of drizzle then I'll be sleeping08:33
SpamapSttx: It looks to me like the stacking just isn't right08:33
SpamapSttx: if I generate a chart w/o inverted, I see some foreign done/inprogress08:34
ttxSpamapS: ah! you broke it!08:35
ttxSpamapS: that used to work alright ! :P08:35
ttx(I agreee it's pretty brittle, though) :)08:35
SpamapSttx: when it was 3 things (todo/done/postponed).. no foreign/team .. no blocked.. in progress.. inverted.. the manual chart build was a nice simple way to go08:36
SpamapSbut now.. it needs some dynamism08:36
ttxSpamapS: yep, it could use a bit of abstraction08:37
ttxor crazy things like an object to represent the data.08:37
SpamapSno, remembering what number has "todo foreign" in it is easy08:38
ttxSpamapS: except that it tends to change when you add new "stuff"08:39
ttxso it makes regressions easier (like this one)08:39
* SpamapS forgot to pay the bill on his lease for the sarcmark08:40
ttxSpamapS: heh, joking with me before I got my first coffee of the day is always dangerous :P08:41
SpamapSttx: got it08:48
ttxSpamapS: what was the offender ?08:49
SpamapSttx: bzr diff -c 228 lp:launchpad-work-items-tracker08:50
SpamapS>:08:50
SpamapSI was seriously just joking08:50
ttxah08:51
* ttx fetches coffee08:56
* RoyK steals ttx's coffee09:01
Name141Will ubuntu-server tell me when it needs to restart in the terminal ?09:47
Name141(over ssh)09:47
Name141(after an upgrade..)09:47
kklimondaName141: not after an upgrade (unless you are running a byobu) but after you log in, you will get a message in motd09:55
uvirtbotNew bug: #645009 in spamassassin (main) "spamd segfaults a message" [Undecided,New] https://launchpad.net/bugs/64500910:02
Name141kklimonda: So I wont notice anything after the upgrade but the new packages ?10:03
Name141kklimonda: but later on, it will tell me after a new login ?10:03
kklimondaName141: yes10:05
kklimondaName141: there aren't that many packages that require a restart - I think only kernel updates trigger the message10:06
uvirtbotNew bug: #645015 in apache2 (main) "package apache2.2-common 2.2.14-5ubuntu8.2 failed to install/upgrade: subprocess installed post-installation script returned error exit status 1" [Undecided,New] https://launchpad.net/bugs/64501510:06
Name141kklimonda: Ok, so instead of the disk and processes, etc.. I will see like "Hey baby, this OS needs a restart sugar.."10:07
kklimondaName141: you will see *** System restart required *** at the bottom of the motd10:08
Name141OK.10:08
=== Guest31805 is now known as lau
=== alonswartz_ is now known as alonswartz
=== kim0_away is now known as kim0
baffleOur VM management project: http://www.dropbox.com/gallery/1314391/1/Vilma%202010-09-22?h=9ba7cc11:11
uvirtbotNew bug: #645061 in clamav (main) "apparmor blocks freshclam process info after latest update" [Undecided,New] https://launchpad.net/bugs/64506111:21
lauhello, I am runnin exim4 4.69 on ubuntu box11:52
lauwhen I use the ubuntu init exim4 scrit and ps aux | grep exim I get11:52
lau/usr/sbin/exim4 -oP /var/run/exim4/eximqr.pid -q30m11:52
lauand the server is not listening on local if port 2511:53
lauIf I start it manually via /usr/sbin/exim4 -bd -q30m11:53
lauthe server is listenning on localhost 2511:54
lauwhy does the init script not start the daemon with the -bd option ?11:54
google-fulau, change the init script to do what you want11:58
uvirtbotNew bug: #645082 in bacula (main) "bacula misses requirement of gawk" [Undecided,New] https://launchpad.net/bugs/64508211:58
joschilau: what's the content of /etc/default/exim4? (use a pastebin)11:59
=== bastidrazor is now known as bastid_raZor
Davieyjdstrand, Are you free to talk about libvirt i386?12:13
laugood catch joschi thanks12:19
uvirtbotNew bug: #645126 in apache2 (main) "package apache2.2-common 2.2.14-5ubuntu8.2 failed to install/upgrade: subprocess installed post-installation script returned error exit status 1" [Undecided,New] https://launchpad.net/bugs/64512612:40
=== _Techie_ is now known as _TechAway_
mdeslaurttx: what was the outcome of the apache2 problem?12:55
ttxmdeslaur: looks like we have a pile of bugs coming in each time we upgrade apache12:56
ttxmdeslaur: when people manually play with mods.available12:56
mdeslauroh, yeah, the maintainer scripts are really fragile12:56
ttxmdeslaur: we should add some || true on the a2enmod call on the NEXT update12:57
ttxto make it less brittle12:57
mdeslaurttx: AFAIK, the server team has some pending apache2 stuff to push to lucid -proposed, so add it to them12:57
ttxmdeslaur: but that's nothing specific to your update12:57
mdeslaurttx: ok, cool :)12:57
* mdeslaur wipes sweat from forehead12:58
ttxmdeslaur: I overreacted to those 3 bug reports over the course of a couple hours12:59
ttxzul: if you're on top of that lucid-proposed  apache2 stuff that mdeslaur is talking about, please add that bug to your queue13:03
zulttx: acked13:26
zulwe need to do an apache-mpm-itk update for hardy if its not done already13:37
Davieyzul, mdeslaur is on that one :)13:38
zulDaviey: ah ok i just woke up ;)13:39
mdeslaurzul: I'll push them out as soon as they finish building13:39
jdstrandDaviey: hey. what's up?13:44
Davieyjdstrand, OK.. regarding this issue we have been seeing with i386 with libvirt.. /me finds bug number13:44
jdstrandmdeslaur: I wonder if we could have a reminder in umt for apache213:45
jdstrandbug #62805513:45
uvirtbotLaunchpad bug 628055 in libvirt "Instances don't start correctly: Security Labeling error running aa_change_profile()" [High,Incomplete] https://launchpad.net/bugs/62805513:45
jdstrandyes13:45
mdeslaurjdstrand: yeah, I was thinking about that13:45
Daviey62805513:45
Davieyyes!13:45
Davieyjdstrand, OK... pulling a euca libvirt.xml and trying to run it externally gives the same issue13:46
jdstrandmdeslaur: there are probably going to be other cases where we need to do funky stuff, so something general where we have '<package>:<commnet>' or something13:46
Daviey(on the same box, running a manual libvirt instances DOES work)13:46
* jdstrand is just thinking otoh13:46
DavieySo i'm guessing it's something in the xml which is causing an explosion13:46
jdstrandDaviey: interesting13:46
jdstrandDaviey: before we go that route. do the instances *ever* start in euca on i386 or they always fail?13:47
Davieyjdstrand, I can do one of two things to help... you can ssh to the box i'm seeing this on... or i can try and tar up the whole shindig including disk image.13:47
Davieyjdstrand, Well i did get a report of running... but went directly to terminate afterwards... I'm certain it's a red herring - but i didn't check the logs.13:48
jdstrandDaviey: ok. that is good-- it consistently fails13:48
DavieyI am reasonably conformable saying it's always failing13:48
jdstrandDaviey: what is this 'libvirt.xml' file?13:49
Davieyjdstrand, pastebin on the way13:49
hggdhI thought I had had a mix of failures & starts, but it ended up I was on the wrong version13:50
Davieyjdstrand, http://pastebin.daviey.com/QycQ/raw/ <-- this is what euca throws at libvirt13:51
Davieylibvirt, naturally adds the defaults.. want to see what libvirt generates?13:51
jdstrandDaviey: so that is the domain xml for an individual machine, correct?13:52
jdstrandDaviey: yes13:52
Davieyyeah13:52
jdstrandso there is no uuid, which implies this is doing a 'create'13:54
Davieyjdstrand, http://pb.daviey.com/Q8Pm/raw/13:55
Davieythat is what libvirt throws out13:55
mdlueckAnyone having trouble with US 10.04.1 LTS failing to recognize USB HDD's and USB Flash Drives? I verified and it correctly works with a USB Keyboard, so USB is not totally dead.13:57
jdstrandDaviey: right, so euca takes the first, does a create and ends up with the second-- is that accurate?13:57
jdstrandDaviey: if you take the second on its own and define it, it works?13:58
jdstrandDaviey: (eg, if you change the name and uuid)13:58
* jdstrand notices the 'sda' and thought euca was moving to 'vda'... (just an aside)13:59
Davieyjdstrand, no13:59
Davieythe second is what is in /etc/libvirt/qemu/14:00
Davieyi defined it, and tried to start14:00
jdstrandDaviey: that is what I meant14:00
Daviey(expecting it to work)14:00
Davieybut got the security labelling error14:00
mdlueckAnd what package should I even open a bug about USB drives not being recognized? The kernel itself, or... ???14:00
Davieywhich means there is something in the xml it doesn't like14:00
jdstrandDaviey: to get the second, it is doing a 'virsh create', no?14:01
jdstrandDaviey: or is it creating the 2nd on its own somehow?14:01
hggdhmdlueck: open the bug against linux, yes14:01
Davieyjdstrand, yeah, from a define i think14:02
jdstrandDaviey: I don't understand (that was an either/or)14:02
mdlueckhggdh: http://packages.ubuntu.com/lucid/linux correct???14:02
hggdhmdlueck: 'linux' means the current kernel *whatever version it is).14:03
mdlueckhggdh: K, thanks, I think I got to the correct place. Will log away.14:04
hggdhmdlueck: so 'ubuntu-bug linux' will grab all data considered interesting for kernel bugs14:04
mdlueckhggdh: Extra thanks!14:04
jdstrandDaviey: can you do:14:04
jdstrandqemu-img info /var/lib/eucalyptus/instances//admin/i-49C008EB/disk14:05
jdstrandDaviey: you know what, I'll take that ssh access14:05
Davieyjdstrand, ok :)14:06
Davieyjdstrand, i'll get that organised now14:06
jdstrandDaviey: ok, thanks14:13
jdstrandDaviey: so, am I allowed to do anything I want on this machine to triage this?14:13
jdstrandDaviey: hmmm, that machine has no machines defined14:15
Davieyjdstrand, you can, yes14:15
Davieyit's a throwaway machine14:15
jdstrandDaviey: can you get it to the point where it has just thrown the error? I'm sorry, I know next to nothing about euca specifics14:16
Davieyjdstrand, ok.. sorry for the delay14:18
Davieyjdstrand, are you seeing that?14:20
jdstrandDaviey: yes14:20
Davieyokay..14:20
jdstrandDaviey: how are /etc/libvirt/qemu/*xml being created?14:20
Davieyjdstrand, In that case... i found the one euca throws out, and did a virsh define14:20
jdstrandok14:21
jdstrandlet me see what the problem is, then we can figure out what is causing it14:21
Davieyjdstrand, feel free :)14:21
Davieyjdstrand, if the box goes bang, it's no concerns14:21
jdstrandI shouldn't be doing anything that crazy :)14:22
Davieyjdstrand, passwd in ~/PASSWD.txt if sudo times out14:23
jdstrandok :)14:23
ehcahDoes anyone here have experience setting up dyndns without installing their update client locally?14:32
pmatulisehcah: have you reason to believe that it's possible?14:34
ehcahI was running F12 and opendns without a client installed locally?14:35
Davieyjdstrand, looks like euca has done a garbage collect14:35
jdstrandDaviey: can we stop that? it is kinda a pain14:36
Davieyjdstrand, it "is stopped"... or at least the setting is made for this to be the case.14:36
Daviey:/14:36
Davieyjdstrand, I'll fire another instance over14:36
jdstrandDaviey: thanks14:36
Davieydone14:37
jdstrandDaviey: so, that one started?14:38
Davieygeez it has!14:38
jdstrandhold on14:38
Davieyhmm14:39
Davieyeuca thinks it has started14:39
Daviey(doesn't look like it to me tho)14:40
jdstrandDaviey: did it garbage collect again? I need the i-433... or at least something that doesn't keep disappearing14:46
hggdhjdstrand: Euca will garbage-collect all terminated instances14:47
Davieyhggdh, I've set the value that should stop it! :(14:47
Davieyjdstrand, I think we might need to cp -R it.14:47
Davieythen if it does collect, we can put it back in place14:47
hggdhDaviey: and, of course, you started it CLEAN=1?14:47
Davieyi-4BFC08F414:48
* hggdh hopes this is it14:48
Davieyhggdh, hmm... no14:48
jdstrandDaviey: are you restarting libvirt?14:49
Davieyjdstrand, no14:49
jdstrandmeh14:49
Davieyhggdh, MANUAL_INSTANCES_CLEANUP=114:49
Davieyjdstrand, i need to go AWOL soon... can you make sure you have a snapshot of that instance incase the garbage collect happens again?14:50
jdstrandlibvirt is hanging on me14:50
hggdhDaviey: and that goes where? In the -cc init?14:50
jdstrandok, there we go14:51
Davieyhggdh, i put it in both :)14:51
Davieyhggdh, /etc/eucalyptus/eucalyptus.conf14:51
jdstrandDaviey: it is gone already14:51
Davieybut it's failing to do it14:51
Daviey*sigh*14:51
jdstrandI'll do it totally outside of euca14:52
Davieyone moment14:52
Davieyjdstrand, see byobu window "1"14:53
Davieypress f414:53
Davieythat is ssh'd to the euca server14:53
Davieyif you press return on that, it will fire an instance14:53
jdstrandhow do I get back?14:54
Davieyf314:54
jdstrandno\14:54
jdstrandI hit something and it looks like another window was created14:54
Davieyyeah14:54
Davieyf2 = new window14:54
Davieyf3 = previous window14:54
Davieyf4 = next window14:55
jdstrandgotcha14:55
Davieyi think you hit f2 twice14:55
Davieyjdstrand, /me afk14:58
jdstrandk14:58
=== ivoks-afk is now known as ivoks
uvirtbotNew bug: #645288 in dovecot (main) "dovecot fails to find mailbox of new users" [Undecided,New] https://launchpad.net/bugs/64528815:56
zortonupdate-grub results in: "/usr/sbin/grub-probe: error: unknown filesystem"16:23
cdubyaI'm looking for recommendations on vulnerability scanners.....16:33
zortonnmap for single hosts, nessus has gone commercial but will scan a small number of hosts under the home license16:34
zortonnmap will also do full IP ranges now that I think of it, I suppose nessus is just more comprehensive16:35
cdubyazorton, I've used nmap on simpler scans internally (-F -T4 options) but I think that only scans the 100 most common ports. Is there a good reference on setting up "best practice" vulnerability scans that are comprehensive enough?16:44
zortonwell, if you want more port coverage just increase the port range nmap is using, if you do the full port range it will take more time per host16:46
zortonplus if you add in UDP16:46
=== ivoks is now known as ivoks-afk
SpamapSzorton: nessus is to nmap as MI5 is to 007 ;)17:00
zortonheh, nice one17:00
SpamapSI haven't used nessus in like, 5 years. Is it still being updated with new signatures/tests?17:01
zortoni've had a pentester run everything with nmap and shell scripting17:01
zortonoh yeah, they've just gone comercial now so the plugin feed is free to home use but requires a full up copy for commercial/gov/more than 10 or so hosts17:02
SpamapSmakes sense that was happening when I was playing with it17:03
zortonyeah, nothing really in the OSS world is keeping up and alive17:03
zortonwritting the plugins takes time and really should be done by someone being paid to do it17:03
SpamapSWho says open source precludes being paid to work on it? ;)17:05
\shdoes anybody has a clue how to prevent udev to overwrite an already created 70-persistent-net.rules file? whatever I do, it doesn't listen to the admin ;)17:05
SpamapS\sh: if its in /etc and has been changed, you should be prompted for what to do with it17:08
\shSpamapS: no...what I mean is that /lib/udev/rules.d/75-persistent-net.rules always triggers the write_net_rules script, which overwrites a 70-persistent-net.rules file from /etc/udev/rules.d/ .. I don't talk about packages17:10
zortonreally? I did a custom name for one of my network devices in that same file and didn't have any trouble17:10
\shzorton: on jaunty that worked...now I can reproduce it all the time17:11
\shnow == lucid17:11
zortonyeah, this is on lucid17:11
\shzorton: and I write it from scratch I don't change it manually when it was created by first startup17:11
zortonahhh, that might be why it didn't get overwritten.  I'm too lazy to write it from scratch17:12
\shzorton: well actually it's automatically written from scratch from out deployment system17:12
* SpamapS is completely and totally confused now17:14
\shSpamapS: why?17:19
uvirtbotNew bug: #645367 in drbd8 (main) "package drbd8-source 2:8.3.7-1ubuntu2.1 failed to install/upgrade: drbd8 kernel module failed to build" [Undecided,New] https://launchpad.net/bugs/64536717:32
ehcah! Static IP17:37
SpamapS\sh: I don't mess with udev stuff. ;)17:39
SpamapSI've struggled mightily to avoid having anything in a server more complicated that 2 bonded ethernet ports. Network complexity belongs on routers/switches/firewalls only.. and I don't use Linux for any of those. ;)17:40
zortoni'm with you on that one, the only thing i'm using it for is to give pretty names to the ethernet interfaces, admin, management, recorder and such17:42
SpamapSzorton: interesting17:47
zortonmakes life a little easier that's for sure17:48
SpamapSzorton: does it work for say,  tcpdump -i admin instead of tcpdump -i eth0 ?17:49
zortonyeah, it's accutaly the same mechanism that keeps eth0 bonded to the right mac address17:49
zortoncode that accesses the device dosen't care, eth0 is the same as admin17:50
zortonjust make sure you update /etc/network/interfaces with the right name first :)17:51
RoyKzorton: I just came in, but if you have replaced a nic, just reset the udev stuff to get eth0 back17:54
zortonRoyK: wan't the issue :)18:06
RoyK:)18:07
zortonthanks though, i'm currently fighting grub issues18:07
ehcahWhat would I search to find a tutorial on assigning specific clients, static IP's vs. DHCP. My LAN will have a combination of both. All my search's come back with makign eth0 or eth1 on my server static.  :(18:11
zortontake a peak at the manpage for interfaces18:12
RoyKehcah: you can use dhcp to assign static IPs18:12
RoyKimho a good solution18:13
RoyKehcah: example http://pastebin.com/DYYJ7B8c18:14
ehcahThat is what I would like to do, but can't find the option. I know on my previous box, there were files under bind dns that contained host hames and host ip's etc...18:14
RoyKehcah: you bind the mac address to a specific IP in the dhcp server18:15
RoyKoutside of the dynamic scope18:15
ehcahRoyK: Thanks' for the pastebin.18:15
RoyKdunno what happens if you allocate an address in the dynamic scope, though, but I guess you'll be playing with matches and gasoline18:16
ehcahMy last box wasn't ubuntu, (F12). Must have been done differently.18:16
RoyKehcah: same dhcp server on the two18:16
ehcahI'll paste one of the files from the box I haven't turned off yet.18:16
RoyKISC dhcpd18:16
ehcahjust a sec.18:16
uvirtbotNew bug: #645396 in samba (main) "package winbind 2:3.4.7~dfsg-1ubuntu3.2 failed to install/upgrade: subprocess installed post-installation script returned error exit status 1" [Undecided,New] https://launchpad.net/bugs/64539618:17
ehcahRoyK: This is an example. The host was already assigned at this point? http://paste.ubuntu.com/498635/18:18
ehcahRoyK: On second glance, those may be solely for the purpose of internal DNS?18:20
RoyKehcah: that's just DNS - that won't give you a fixed IP if the PC is offline for some time18:20
ehcahk.18:20
RoyKif using rfc1918 addresses, just allocate a /24 part for static IPs18:20
RoyKsay 192.168.0.0/24 for dynamic and 1.0/24 for static, set the netmask to 255.255.254.0 and they're on the same net18:21
ehcahI use webmin for management. I know it's not preferred for most of this group. Under DHCP, I have a Host & Host Group option that also allow me to assign a name, or IP via mac address?18:22
ehcahok.18:22
RoyK!webmin18:22
ubottuwebmin is no longer supported in Debian and Ubuntu. It is not compatible with the way that Ubuntu packages handle configuration files, and is likely to cause unexpected issues with your system. See !ebox instead.18:22
RoyK!ebox18:23
ubottuebox is a web-based GUI interface for administering a server. It is designed to work with Ubuntu/Debian style configuration management. See https://help.ubuntu.com/community/eBox18:23
ehcahAlright. Where it's description talks about not all modules being enabled, will it be difficult for me to install or enable the missing?18:25
ehcahWebmin has always been easy for me as it generally picks up everything that is installed on first opening.18:25
=== ivoks-afk is now known as ivoks
RoyKehcah: webmin was written for redhat, but isn't really compatible with debian-based distros18:26
ehcahok.18:27
ehcahI'm trying to install ebox now.18:27
Davieyjdstrand, Did you have any joy?18:30
jdstrandDaviey: I know what is failing. I don't know why yet18:33
Davieyjdstrand, OK... that is something :)18:33
jdstrandDaviey: please do not turn off that machine. I need the disk18:33
jdstrandDaviey: and am copying it over18:33
Davieyjdstrand, Okay.. that is fine.18:33
jdstrandI'm trying to reproduce locally18:33
Davieyjdstrand, I don't suppose you could, erm - run "ssh-import-lp-id davewalker" could you?  I've erm, sort of not made a note of the password.18:34
jdstrandINFO: Successfully authorized [davewalker]18:35
DavieyEven thought the machine is in arm distance... that just makes life easier :)18:35
Davieythanks!18:35
jdstrandsure18:35
jdstrandDaviey: btw, I've marked the bug confirmed and assigned it to me18:37
Davieyjdstrand, Expect many drinks at UDS.18:38
jdstrandhehe18:38
jdstrandI know right where the failure happens in virt-aa-helper, I just need to reproduce locally, and then I can hopefully zero in on it18:39
jdstrandI think it may be related to all their recent disk probing changes (which virt-aa-helper is affected by), but I need to investigate more18:40
=== BlackZ_ is now known as BlackZ
ehcahRoyK: Is ebox exclusively firefox or will Google Chrome work also?18:48
ehcahRoyk: I really don't like firefox. It's a pig. IMO18:48
RoyKehcah: I have no idea - I use the commandline for configuring servers :þ18:49
ehcahLOL18:50
=== luis__lopez is now known as luis_lopez
RoyKehcah: take some time reading some docs, playing with a system with the commandline, and you'll never go back to some fancy gui trying to do what's done in 30 seconds in the commandline18:52
RyanPI'm in need of some routing help. I have a machine with a bunch of OpenVPN tunnels into remote sites. I'd like to route traffic from the local office over the tunnels into the remote sites. I have the VPN tunnels set up, and I know how to setup routing on the local office computers. I'm not sure how to correctly allow the OpenVPN machine to forward packets over the tunnels. How do I do this?18:52
ehcahRoyK: Thank you for your assistance.18:52
RoyKehcah: that last comment was not meant as arrogant - just honest18:53
ehcahI know. You're a real Linux guy! :)  I'm not, and not offended at all.18:54
ehcahI'm trying to do as much command line as possible. But, I need google's assistance for that!!!  LOL18:54
RoyKeven my windoze-loving boss uses the commandline to configure linux18:54
RoyKsure, google (and man pages) are there to help18:55
ehcahIn the meantime, I'l try to get eBox up and running. The repos installed version 1.5. It looks like there is a 2.0 available under a new name of Zental? Have i got those packages mixed up on the web?18:56
RoyKehcah: not to be a bitch, but if you had spent five minutes looking through the dhcp config, you had been finished by now :P18:58
ehcahI actually made those changes before ebox. They were changes I could easily handle.19:00
ehcahebox would work best for me when I'm in unfamilliar territory.19:01
RoyKI don't really agree - if you're on unfamiliar territory, explore it and it'll be quite familiar next time you go there19:03
RyanPIt seems all I need to do is ask here, and then I can figure the question out myself. In answer to the OpenVPN question, it's just a simple NAT, but you have to be sure to actually type the commands correctly, like I wasn't doing.19:12
cemcwhat's the easiest/best way to turn a server install into a desktop install (and back) ?19:14
nich0scemc: What?19:16
cemcsay I've installed 10.04 server edition, but I want to turn it into desktop (install packages for X, gnome, etc)19:17
cemcis it enough to just install ubuntu-desktop package?19:17
nich0sI believe that package should cover just about everything.19:18
nich0sYou'll want to go through updaterc.rc and clear out any daemons set to load on start.19:18
nich0supdate-rc.d*19:19
cemcand can I go back to server after that? or going back is not se easy?19:19
bobslaedeHi, Im having a small problem with autofs and sshfs, as it seems that autofs doesnt recognize the pub_keys for the user, where sshfs does19:20
bobslaedeand Im not fond of the idea of creating pub keys for the root user19:20
nich0scemc: Ultimately you can remove any packages you want to.19:21
nich0scemc: Server edition is simply a base version of Ubuntu set up to function more like a server than a personal computer.19:22
cemcnich0s: I know, I was looking for an easy way ;) I guess there isn't, I can't just remove ubuntu-desktop :)19:22
cemcor I can do a list of all installed packages when I installed ubuntu-desktop, and apt-get purge them19:23
ScottKcemc: In theory, sudo apt-get remove ubuntu-desktop && apt-get autoremove would do it.19:23
ScottKYou can, although remember that even purge doesn't always put your system back exactly like it was before.19:23
cemcScottK: you think all those packages will be marked 'not needed' because I removed ubuntu-desktop? ;)19:23
ScottKSince they are pulled in by ubuntu-desktop and not installed directly, that should be the case.19:24
ScottKNo promised though.19:24
ScottK(I'd still keep the list)19:24
nich0spipe it in to a install log.19:24
RoyKcemc: if you want server and desktop on the same box, just install desktop and disable X when you don't need it anymore19:25
RoyKcemc: ubuntu desktop and server is really the same thing19:25
cemcI know, I was merely wondering about the theory in doing server->desktop and back19:26
cemcthanks for the tips19:26
RoyKcemc: just install desktop - the only problem will be that it's not supported for 5 years, but only a mere 3 years19:26
u92what is a .listing file is it like a thumbs.db?19:27
cemcRoyK: I guess that's ultimately is decided for every package individually, right?19:27
RoyKcemc: not sure, but then, I don't use desktop distros for my servers19:28
nich0sbobslaede: Something like http://www.tjansson.dk/?p=84 should help you out.19:29
cemcif you install ubuntu desktop it doesn't mean you won't get ANY updates after 3 years, you should get updates for 'server packages' if you have any installed, maybe you won't get update for say firefox19:30
cemcbut you should get updates for postfix, squid and the like, hm?19:30
nich0scemc: That's going to depend on which repos you're pinging with apt-get.19:30
nich0scemc: you should be able to uncomment the lines for universe, etc.19:31
ScottKnich0s: No.  All the server and desktop packages are in the same repository19:31
RoyKcemc: use a server distro for a server19:31
nich0scemc: /etc/apt/sources.list, I believe.19:31
lamontnich0s: there's no diff between the server and desktop repos19:31
* RoyK doesn't get why anyone would want X on a server19:32
lamontsome people like guis on their servers.  I've never really understood that so much either19:32
RoyKwell, X libs, of course, but then you can run commands over ssh19:32
cemcRoyK: I don't, it's just for argument's sake19:32
RoyKmenus belong in restaurants :)19:32
cemc:)19:33
ehcahAnyone using ebox 2.01 (Zentyal) and reccomend bypassing 1.5?19:35
* RoyK diverts ehcah to vimtutor19:36
bobslaedenich0s: thanks19:37
bobslaedenich0s: went with the root public key19:37
RoyKerm - do you allow root ssh logins?19:38
* RoyK thinks that's a BAD idea19:38
=== _TechAway_ is now known as _Techie_
bobslaedeRoyK: root login? not really19:56
bobslaedeRoyK: if that was for me anyway19:56
bobslaedeRoyK: its just that autofs doesnt see the correct public keys, like sshfs on its own does19:57
bobslaedeapparently still using the correct user to login19:57
bobslaedealtho im not 100% sure19:57
bobslaedebut it works now19:57
cemcsay I'm logged in as a user and want to do sudo command > afile.txt in a directory I don't have write permissions to as a normal user, how can I work around this?20:01
nich0ssudo -i20:02
nich0ssudo command > /dir/you/have/write/access/to/something.log20:02
cemcI knew this ;) no other way?20:03
cemcthat the logfile gets written directly to the current dir?20:03
cemchttp://pastebin.ubuntu.com/498693/20:03
_Techie_cemc, sudo command > /tmp/afile.txt && sudo mv /tmp/afile.txt ./20:06
cemc:)20:07
_Techie_that should do the trick20:07
cemcI knew this trick ;) is there any trick that doesn't require this one? :)20:08
_Techie_not that i can think of at 7a20:08
_Techie_7am*20:08
=== ian_brasil___ is now known as ian_brasil
cemcit's insane how fast a 10.04 server boots as a kvm guest ;)20:16
jdstrandDaviey: you can destroy that instance. I have what I need now and can reproduce locally20:18
Davieyjdstrand, ok - great.. i'll turn them off, as they are making the room warm now :)20:19
Davieyjdstrand, thanks for looking into it20:20
jdstrandDaviey: sure20:22
WinstonSmithhi ppl :) . just updated an remote server. is there a command that would let me restart all the affected services (apache, mysql, etc) in 1 go? or restart the whole runlevel? thx20:23
nich0sWinstonSmith: You could run a for loop.20:24
WinstonSmithnich0s, but that would require me knowing all the affected services20:24
nich0sWinstonSmith: That would be helpful information to have.20:26
WinstonSmithi sure could write a script that starts & stops a lot of services with a loop but i was looking for a way to "restart the runlevel" so to speak20:26
nich0sI'm not familiar with a way to restart a runlevel outside of reboot.20:28
WinstonSmithnich0s, ok. another thing learned. thanks !20:30
* WinstonSmith goes away to script 20:30
=== oxi_ is now known as oxi
=== _Techie_ is now known as _TechAway_
guntbert!runlevel | nich0s WinstonSmith  (just as a reminder)20:42
ubottunich0s WinstonSmith  (just as a reminder): In Ubuntu all runlevels except 0,1 and 6 are by default equal. Also keep in mind that Ubuntu now uses !Upstart instead of System V init so there is normally no /etc/inittab.20:42
WinstonSmithguntbert, thank you. but in my (very) limited knowledge the implementation of upstart is far from complete?20:46
guntbertWinstonSmith: that seems to be true, but that doesn't alter the fact that !all runlevels except 0,1 and 6 are by default equal"20:46
WinstonSmithguntbert, cause it seems not all services can be controlled properly by the "service" command20:46
guntbert"all...20:46
guntbertWinstonSmith: yes, some services are still handled by sysv init - but no differences between runlevels20:47
WinstonSmithguntbert, yes ok20:48
WinstonSmithguntbert, just curious : how does on add a service to upstart like update-rc in sysv?20:49
Four2zerocan ubuntu-server show the repos what's available such as version numbers of a software thats available without doing actual download first ?20:49
Four2zerois there a command for that ?20:49
guntbertWinstonSmith: not surem have a look at insserv please20:49
WinstonSmithok cheers have a nice 120:50
=== oxi_ is now known as oxi
g0tchaanyone have a script that auto adds ip addresses if the server got rebooted by any chance?20:59
guntbertg0tcha: ?20:59
g0tchaguntbert, i have a HE tunnel setup on my ubuntu server, if it gets rebooted, i have to readd everything manualy21:00
g0tchaso i thought mayb someone has a script that does it automaticly or something21:00
guntbertg0tcha: aha - no idea, sorry21:01
Four2zerocan ubuntu-server show the repos what's available such as version numbers of a software thats available without doing actual download first ?21:02
Four2zerois there a command for that ?21:02
g0tchaguntbert, np thanks for trying dued21:02
guntbertFour2zero: aptitude search ..., and aptitude show <package>21:04
Four2zerothank you guntbert21:05
guntbertFour2zero: you're welcome :-)21:05
Kyle__how do you setup a syslog server with rsyslogd?21:09
Kyle__There's no refrence to how to do it in the man page that Ic ould find.21:09
savidHi, I have a script in /etc/cron.d,   but I'm not sure if it's running.  Is there a way to verify whether or not the script is being executed?  Is there a log somewhere I can check?21:15
nakhlawisavid: ps -ef | grep <script name>21:16
savidnakhlawi,  it'd be difficult to tell using ps when it's just a cron.  The command runs very quickly.21:17
savidnakhlawi,  I'm pretty sure the command isn't running.  Just can't figure out why.21:18
nich0ssavid: Add a line to the end to the script which appends the time and date.21:18
savidnich0s, huh?  appends to what?21:18
savidIf I place a crontab in /etc/cron.d,  that crontab should be processed, right?21:19
nakhlawitry this: grep -l CRON /var/log/*21:21
guntbert!details | Kyle__21:22
ubottuKyle__: Please give us full details. For example: "I have a problem with ..., I'm running Ubuntu version .... When I try to do ..., I get the following output: ..., but I expected it to do ..."21:22
nakhlawisavid: also: grep CRON /var/log/*21:23
savidOk, I see where cron logs things.  I don't see anything about my crontab that I entered.21:24
nakhlawisavid: it means your script didn't run21:24
savidhttp://dpaste.com/247544/21:24
savidnakhlawi,  yeah,  I'm trying to figure out _why_ it didn't run21:25
savidI have it set up for ever minute21:25
guntbertsavid: did you give full paths to the files you want executed?21:26
savidguntbert, yes, but even if I didn't, shouldn't I see an error somewhere?21:26
nakhlawisavid: try adding it in /etc/crontab21:26
guntbertsavid: not necessarily21:27
savidIf I copy and paste the command into the shell it works fine21:31
savidguntbert,    shouldn't   /etc/crontab be referring to cron.d ?  I don't see it in there21:34
guntbertsavid: in your shell there are search paths set wich are probably not set in the cron environment21:34
savidguntbert,  I'm using absolute paths21:34
savidguntbert,  http://dpaste.com/247544/21:35
uvirtbotNew bug: #645532 in apache2 (main) "package apache2.2-common 2.2.14-5ubuntu8.2 failed to install/upgrade: subprocess installed post-installation script returned error exit status 1" [Undecided,New] https://launchpad.net/bugs/64553221:36
guntbertsavid: for a test: put a simple line there (use logger to write to the syslog) and try that21:37
savidguntbert, it's working when I crontab -e root's crontab.21:38
guntbertsavid: I see - I have to tell you that I'm already to tired to think properly - sorry21:39
savidguntbert, tell me about it :-P21:39
jdstrandDaviey: I have the fix for bug #62805521:39
uvirtbotLaunchpad bug 628055 in libvirt "Instances don't start correctly: Security Labeling error running aa_change_profile()" [High,Confirmed] https://launchpad.net/bugs/62805521:39
guntbertsavid: then call it a day and try tomorrow :-)21:40
savidguntbert,  heh,  unfortunately I have deadlines :-P21:40
savidoh well,  I'll keep working at it21:40
guntbertsavid: Good luck :-)21:40
=== _TechAway_ is now known as _Techie_
prettocan anyone show me why this is not working using iptables dnat http://pastebin.com/aevKupST? thanks in advance21:48
Ad0hi21:51
Ad0I have issues compiling a v4l2 driver21:51
Ad0 media/v4l2-ioctl.h: No such file or directory21:51
=== oxi_ is now known as oxi
sorenpretto: What do you expect it to do?21:57
Davieyjdstrand, you are full of awesome21:59
Ad0I guess I have to run and set up the script22:04
Ad0oops22:04
prettosoren, just to redirect http from external port 8080 to internal server at port 8022:05
ewookhey, anyone had perl , 5.10 it seems start bailing out on ya?22:05
prettosoren, as you can see the firewall is just a router22:06
ewookupgraded to latest patches (10.04), rebooted, and now things are just plain broke. did a new apt-get upgrade, it started to "re-install" bunch of packages, but still, ie - irssi is busted for my regular user, but now at least runs fine for root.22:08
sorenpretto: And what happens?22:09
=== marrusl is now known as marrusl_afk
=== marrusl_afk is now known as marrusl
prettosoren, from outside it shows filtered when i do a nmap -p 8080 serverip22:17
prettosoren, if i use the browse it ends in a timeout22:18
sorenpretto: And you're sure a) something is listening on  192.168.0.30:80 and b) that you can actually reach port 8080 on that box from the outside?22:19
hallynzul: around?22:23
hallynzul: for bug 645082, should i propose the trivial patch adding gawk to depends in debian/control, or do you want to handle it with upstream some way?22:24
uvirtbotLaunchpad bug 645082 in bacula "bacula misses requirement of gawk" [High,Confirmed] https://launchpad.net/bugs/64508222:24
prettosoren, yes, I can even ssh the server from the outside22:24
sorenpretto: On port 8080?22:24
prettosoren, no 2222:26
prettothe only one i want to redirect to another server is the port 80 soren22:27
sorenAnd I'm asking whether you're sure you can reach that port from the outside.22:27
sorenAnd you answer that you can reach another port.22:27
sorenwhich isn't what I'm asking.22:28
prettoyes, i do22:28
sorenwin 6122:28
sorenWhoops22:28
prettosoren, i can, the log shows it in the forward22:28
jdstrandDaviey, ttx: ok, uploaded fix for bug #628055. Can you guys follow up with whoever you need to to get that accepted? the debdiff is in the bug22:33
uvirtbotLaunchpad bug 628055 in libvirt "Instances don't start correctly on 32bit systems with large disk files" [High,Fix committed] https://launchpad.net/bugs/62805522:33
Davieyjdstrand, Thanks... i'll try and chase the release team - as it would be nice to get it on tomorrows ISO22:33
jdstrandDaviey: sounds great22:34
=== ivoks is now known as ivoks-afk
ehcahI'm going to get laughed at - again - but I can not get vnc working correctly. My xstartup file appears to be fine, but some files it references are not. I have an error opening the security policy, can init several files and finally a permission error. Does seem to matter if i start VNC as root or me?22:49
_Techie_is the release date for maverick 10/10/2010, or 11/10/2010 ?22:53
EtienneG_Techie_, the former22:55
=== Wandrewvious is now known as WALoeIII
_Techie_anyone wanna integrate a ssh server and some form of implementation of screen, so that i can re inatll my server without having to rip a graphics card out of my desktop to use the installer23:28
uvirtbotNew bug: #645630 in samba (main) "Unable to connect to CIFS host" [Undecided,New] https://launchpad.net/bugs/64563023:56
=== _Techie_ is now known as _TechAway_

Generated by irclog2html.py 2.7 by Marius Gedminas - find it at mg.pov.lt!