/srv/irclogs.ubuntu.com/2011/09/20/#ubuntu-server.txt

twb`smb: re vsftpd vs. lxc earlier, it looks like Debian "fixed" it by updating the version of vsftpd in stable to 2.3.4 -- bleh00:09
smoserlynxman, if its not in the packages now it will be thursday00:21
smoserit will be thursday00:22
Davieyseeing twb` online makes me sad.  It's a reminder that he has gone home, had an evening, slept, had breakfast, and gone back to the office - with me barely leaving the computer.00:24
patdk-lapheh00:28
twb`What is "breakfast"?00:46
twb`It's only 11AM, I have yet to break fast00:46
uvirtbotNew bug: #854343 in rabbitmq-server (main) "erlexec crashed with SIGSEGV in free()" [Undecided,New] https://launchpad.net/bugs/85434301:16
lynxmansmoser: rocking!01:55
smoserlynxman, it looks like that should have it01:56
smoserhttps://launchpad.net/ubuntu/+source/nova reports we're currently at revno 1173.  that commit went in at 117101:56
smoserso, fingers crossed, canonistack will have it soon.01:56
lynxmansmoser: While it's in the repo this week I'm happy01:58
smoserwe're hoping / expecting to grab another snapshot tomorrow morning01:58
smoserhttps://launchpad.net/nova/+milestone/2011.301:59
smoseri'm the only one on that list.01:59
smoserweee!01:59
lynxmansmoser: You have too much fun02:00
CluelessPersonhey guys, what would you suggest to use as an email server?02:10
qman__CluelessPerson, postfix is the recommended option, this is covered in some detail in the ubuntu server guide02:14
=== jjohansen is now known as jj-afk
CluelessPersonqman__,  Cool, thanks02:18
TohuwCan someone confirm the current kernel version in 11.04 server please? I have 2.6.28-11-server03:09
jmarsdenTohuw: rmadison -s natty-updates linux-server says:   linux-image-server | 2.6.38.11.26 | natty-updates | amd64, i38603:15
Tohuwhmmm. thanks, jmarsden. So, I have 11.04, 2.6.28-11-server, and am facing this problem:https://bugs.launchpad.net/ubuntu/+source/linux/+bug/852972 . Does anyone have any insights as to how I can get to a bootable system?03:22
uvirtbotLaunchpad bug 852972 in linux "Kernel 2.6.28 Returns NAK bailout from sendbytes on startup" [Undecided,Won't fix]03:22
TohuwFor some reason, Brad Figg decided my bug was against Jaunty, but it really isn't. The install started life as an 11.0403:24
jmarsdenTohuw: Ask about that in #ubuntu-bugs, and hopefully get that bug back to New or whatever status it should be in.03:26
TohuwThank you03:26
jmarsdenTohuw: You're welcome.03:26
CluelessPersonIs there a way to configure post fix to not need users to be on the system?03:33
CluelessPersonSo that you can just have as many users as you want, but don't need that many user accounts?03:33
jmarsdenTohuw: Hmmm, the natty base kernel is 2.6.38, not 2.6.28.  That might explain why people think you are running Jaunty :)03:33
TohuwHaha yes I just realized that03:34
TohuwI could have sworn it said a 2 there...03:34
Tohuw:(03:34
jmarsdenCluelessPerson: Yes, it is called virtual mailboxes.03:34
TohuwI suppose I'll just refile the bug... getting no feedback out of #ubuntu-bugs03:34
Tohuwjmarsden: why can't I pick a specific kernel to file the bug against, only the "linux" package?03:35
CluelessPersonjmarsden, Thanks.  I just wouldn't know what to search for in google to find those answers.03:35
TohuwAfter all, my bug is really 2.6.38-11-server specific, I believe03:35
qman__CluelessPerson, there's a few different ways to set them up, too, so make sure you stick with one guide03:35
CluelessPersonqman__, got it. :D03:37
jmarsdenCluelessPerson: For an example direct from the postfix documentation, read http://www.postfix.org/VIRTUAL_README.html#virtual_mailbox03:38
kaushalHi05:47
kaushalmy pastebin is here http://pastebin.ubuntu.com/693541/05:48
kaushalI have 2 physical CPU and 4 physical CPU05:48
kaushallet me pastebin it again05:50
kaushalhttp://pastebin.ubuntu.com/693544/05:50
kaushalcore is seen as 16 in 4 physical CPU and not as 3205:50
kaushalhelp me understand05:51
ajmitchone has hyperthreading & the other doesn't?05:52
kaushalwhich one has HT ?05:52
kaushal2 physical CPU or 4 physical CPU ?05:52
ajmitchprobably the first, if it's 2 CPUs of 4 cores each05:52
kaushaloh ok05:53
kaushalis there a way to see HT is enabled ?05:53
ajmitchht in the flags line should show if it's capable of it, not sure if it's enabled05:55
* ajmitch may be wrong there05:55
kaushalis there a way to see HT is enabled ?05:59
ajmitchafaik, just from looking at the numbers that you saw in /proc/cpuinfo - number of physical CPUs & number of cores06:02
twb`kaushal: you can often toggle it in the BIOS06:02
kaushaltwb`: ol06:05
kaushalok*06:05
uvirtbotNew bug: #854457 in samba (main) "Panic or segfault in Samba every 30 mins" [Undecided,New] https://launchpad.net/bugs/85445706:41
DavieyMorning rat fans!06:56
=== smb` is now known as smb
iuytfrhello07:09
iuytfris it possible to backup file with tar ?07:09
greppyiuytfr: yes.07:10
iuytfrhow ?07:11
Davieyiuytfr: The question is far too opened ended.07:12
uvirtbotNew bug: #706354 in ntp "dpkg-maintscript-helper: warning: environment variable DPKG_MAINTSCRIPT_PACKAGE missing" [Undecided,Confirmed] https://launchpad.net/bugs/70635407:13
=== jj-afk is now known as jjohansen
iuytfrjust give me some clues to begin07:16
airtonixwtb double check on amazon web services network load07:41
=== sanderj is now known as Sander^work
uvirtbotNew bug: #854518 in samba (main) "package libsmbclient 2:3.5.8~dfsg-1ubuntu2.2 failed to install/upgrade: subprocess dpkg-deb --fsys-tarfile returned error exit status 2" [Undecided,New] https://launchpad.net/bugs/85451808:31
=== himcesjf1 is now known as himcesjf
koolhead11hi all08:32
stiv2khi09:29
stiv2ki noticed something weird with my server09:29
stiv2kit tries to give a dynamic ip to eth009:30
stiv2kwhenever i plug the cable in09:30
stiv2keven though its configured static in /etc/network/interfaces09:30
stiv2kalso it seemed to try to 'renew' the lease on its own and my server became inaccessible for a short while09:30
ersisounds weird indeed. Mind pasting your interfaces file on fpaste.org?09:30
stiv2klol fpaste.org09:30
stiv2kone sec09:31
stiv2kersi: http://fpaste.org/JxLO/09:31
ersi@aspire .. Is this a laptop? Do you have NetworkManager running?09:33
stiv2kits a netbook09:33
stiv2kthere is no graphical interface09:33
stiv2kbut i use wicd for the wireless card (wifi disabled right now)09:33
ersioh, I get your 'lol' now. I just took whatever pastebin was in my memory :)09:33
stiv2knot sure about network manager though09:34
stiv2kheh09:34
ersiwell, wicd is a 'network manager'09:34
stiv2kersi: does it manage wired interfaces?09:34
ersiI would not be suprised if wicd is making this happen. Does it happen if you leave wicd off?09:34
ersiYes, wired and wireless. It's a full fledged network manager09:35
stiv2kok09:35
stiv2kthat probably explains it09:35
ersiprobably, but I'm unfortunally not certain09:35
stiv2ki should probably just configure wicd to use a static ip and then leave /etc/network/interfaces as it was09:35
ersicheck if there's any way for it to leave your wired interfaces09:35
ersiyeah, sounds like a good plan09:35
stiv2klets put it to the test09:35
iuytfrhello09:37
iuytfrthere09:37
iuytfrthere is one memory which is in failure on my server09:37
iuytfrhow to find the one in failure ?09:38
ersiYou remove the sticks and test them one by one with memtest09:39
ersiThat's what I would do.09:39
iuytfrno09:47
iuytfrthat's boring09:47
iuytfri want to identify the one in failed by cli09:47
RoyKhrmf... I have this apache virtualhost, enabled under /etc/apache/sites-enabled/icinga.nilu.no.conf. Even though the config looks right, apache falls through to the 'default' site. See http://paste.ubuntu.com/693652/ for the virtualhost09:48
RoyKI've seen this before, but never managed to fix it without removing the default site - any idea how I can fix this?09:49
iuytfrwhere is no ?09:50
iuytfricinga lol09:50
iuytfrthat's a perfect solution to hacking your server09:51
iuytfrwell do you ensite your conf ?09:53
just-a-visitorRoyK: please see http://httpd.apache.org/docs/2.2/vhosts/name-based.html  "The main host goes away" section should refer to your situation.09:57
ersiiuytfr: Well, good luck and tell me if you find a solution10:01
ersiOnly thing I could imagine would be if you'd somehow correspond the memory locations that are broken to which stick handles that location10:01
iuytfryou can also find with dmidecode10:11
Joe-anyone have any experience using pptp on a virtual interface, or routing all of its traffic over one?10:31
=== J__ is now known as Joe-
jasonmsphey all..  Easy question here.  I just created a new logrotate file that I want to run now.  I thought the command logrotate newfile would run it now but it didn't seem to work.  What am i missing?10:52
jasonmspnevermind.  Ran with -d and then -f.  All is well.10:54
nigelbHi, I'm awfully confused with bash on a lucid machine.11:53
nigelbI'm sourching a file in our .bashrc and setting some environment variables11:54
nigelbbut those variables don't seem to be accessible from any cron11:54
nigelbEven though my cron has a (. /home/username/.bashrc && /path/to/script)11:54
nigelbthe script doesn't seem to know of any of the environment variables which is in another file and sourced in .bashrc11:55
nigelbThoughts? :)11:55
Davieynigelb: Hmm.. so you've caught on that cron doesn't know about evn variables.. good.12:02
DavieyI normally declare them *IN* the crontab.12:03
DavieyOdd that sourcing doesn't work :/12:03
nigelbDaviey: Yeah12:24
nigelbBUt I have a bunch of common variables.12:25
nigelbCommon to the code I'm deploying. Like, its part of the codebase.  So we source all that into the user's bashrc12:25
jamespageDaviey: I just prepared a MP for the merge of asterisk from debian if you would like to review12:33
iuytfrhi12:35
iuytfrwhat is the tool for simulating traffic12:35
Davieyjamespage: rocking, will do12:50
jamespageDaviey: I reviewed the upstream changelog and it appears to be bugfix/secfix only12:51
jamespagebut would appreciate a second opinion12:51
jamespagethere are **alot** of them12:51
Davieyjamespage: yeah, seemed silly to even consider cherry pickin12:52
jamespageDaviey: I was unsure about the VCS change in the MP - the branch it points to seems out-of-date so we might drop that12:53
Davieyjamespage: Yes, that must go - please12:55
jamespageDaviey: ack - I'll remove it now12:55
jamespageswitch back to debian stuff12:55
Davieynigelb: so, crontab isn't using bash?12:56
Davieynigelb: stock .bashrc isn't suitable for sourcing.12:56
nigelbDaviey: crontab is using bash.12:56
Davieynigelb: create a crontab with:12:57
nigelbDaviey: and we have done it before12:57
DavieyMAILTO:nigel@funkyguy.com12:57
Daviey* * * * *  . /home/dave/.bashrc && env12:57
Davieyemail address and ~ needs updating.12:57
hallynhggdh: hey, my bugcontrol membership is about to expire, and it told me to ping you about it :)12:58
Davieyhallyn: You know you get it for free now, right?12:59
Davieyhallyn: you are in two teams which give you indirect membership.  What more do you want? :_)13:00
nigelbDaviey: I sort of hacked a fix.13:04
nigelbI sourced the file which has our custom env varibales13:05
nigelbthat fixes "most" problems13:05
nigelbThe rest, I'll just manually correct the scripts to work with that.13:05
zulDaviey: will you hate me even more if i uploaded a new nova snapshot today?13:05
Davieyzul: no, we've planned for it.13:07
nigelbzul: I like how you assume that Daviey hates you already :P13:07
zulDaviey: ok...i have to check the tarball first13:07
jamespageDaviey: asterisk branch updated13:07
zulnigelb: oh i already know he has lots of love for me13:07
Davieyzul: Can you merge vish's branch?13:07
Davieyzul: dnsmasq-utils one.. and might want to check how change our conf to enable it by default.13:08
zulDaviey: right did the new dnsmasq make it in?13:08
Davieyzul: yup13:08
Davieywell, i cherry picked that single part.13:09
zulDaviey: where is it right now?13:09
zullike bug number etc etc etc13:09
Davieyhttps://code.launchpad.net/~vishvananda/nova/ubuntu/+merge/7587513:11
Davieyand bug to reference is bug 85277113:12
uvirtbotLaunchpad bug 852771 in nova "dhcp leases are not released on instance termination" [Medium,Confirmed] https://launchpad.net/bugs/85277113:12
hallynDaviey: ok then i'll ignore :)13:13
zulDaviey: thanks13:14
hallynzul: I'm trusting that you still have the nova-spawning-multiple-containers bug under control.  Pls ping if you want me to look at it after all.13:14
zulhallyn: yeah its still on my list13:15
hallynzul: excellent13:17
zulhallyn: i know where its failing though at least13:17
hallynmy last reproduction attempt was still failing due to the other nova bug you were solving :)13:18
DavieyThat is like looking down the barrel of a rifle, whilst holding the trigger and saying - "well, i know where the bullet comes from"13:18
Guest76352Hi I'm trying to install server 11.04 amd64 but the installation hangs around the network config point before partitioning). Could anyone help with why, (server 10.04 installs fine)?13:23
Davieywho wants to review a diff i'm about to upload?13:31
Daviey(limited time offer, open to anyone)13:32
pmatulisGuest76352: feel like trying the 11.10 beta?13:35
koolhead11zul: around13:40
zulkoolhead11: kind of...kind of busy right now13:41
koolhead11zul: openstack-dashboard is broken pkg13:41
zulkoolhead11: yeah debdiff welcomeed13:42
koolhead11zul: http://paste.ubuntu.com/693777/  python-django-mailer seems to be the culprit13:45
zulkoolhead11: cool...can you open up a bug about it...ill try to have a look at it today13:46
Guest76352pmatulis: is that going to be lts?13:46
pmatulisGuest76352: no13:46
koolhead11zul: cool. at same time i will try installing dashboard using the github source.13:46
Guest76352pmatulis: but 12.04 will be?13:46
pmatulisGuest76352: yes13:47
koolhead11i will use keystone packge from our oneiric repo13:47
Guest76352pmatulis: so if I install 11.10 beta I can just update and will, somewhere around release day, be using the stable version?13:47
pmatulisGuest76352: yes13:48
Guest76352pmatulis: ok then, I'll give it a go - I just booted from the 11.04 desktop cd alright and it's found my LSI SAS OK13:49
=== scar[w]_ is now known as scar[w]
Davieyzul: Have you added conf for nova to use dnsmasq-utils thingy by default?14:05
zulDaviey: yep i added vishy changes and doing a testbuild and testrun14:05
Davieyawesome.14:06
zulvishy changes being the add dnsmasq-utils and updating the nova-sudoers14:06
koolhead11zul: https://bugs.launchpad.net/openstack-dashboard/+bug/854732 let me know if you need more info14:13
uvirtbotLaunchpad bug 854732 in openstack-dashboard "Broken openstack-dashboard package" [Undecided,New]14:13
zulkoolhead11: thanks14:13
Davieykoolhead11: More info, in the form of a patch, would be great14:20
koolhead11Daviey: ?14:23
Davieykoolhead11: If you had a patch which fixes it, it would be great! :)14:24
koolhead11Daviey: i will try installing it from the source. The way dashboard keeps changing it must be 2 difficult to keep updating dashboard package.14:28
Davieykoolhead11: well we need to update soon.14:30
koolhead11Daviey: after 22ned once diablo relases will be good time i think. :)14:30
Davieyheh14:31
robbiewjamespage: call time?14:35
jamespagerobbiew: sure14:35
robbiewjamespage: g+?14:35
jamespagerobbiew, +!14:35
jamespageor +114:35
robbiewheh14:36
=== himcesjf1 is now known as himcesjf
zulDaviey: the problem is that quantum is a package dependency of dashboard now14:47
Guest76352pmatulis: so far so good, 11.10 b is installing and it's way past where 11.04 go stuck (which looks to perhaps be the ipv6 bit)14:51
pmatulisGuest76352: how did you try installing 11.04?14:52
pmatulisGuest76352: sounds fishy (10.04 good, 11.04 bad, 11.10 good), after confirming beta is good you may consider remaking your 11.04 CD (or however you installed).  also consider testing 10.1014:53
Davieyzul: quantum?!14:58
Davieydo we care for this release?14:58
Davieyoh!14:58
zulDaviey: yes and no14:58
Davieydashboard is a dep of quantum!14:58
Davieyi see14:58
Davieybah14:58
Guest76352pmatulis: 11.04 was a default install. I ran the media test also15:02
Guest76352pmatulis: with 10.04, 11.04 and 11.10 all just boot from CD and hit 'Install Ubuntu'15:03
Guest76352pmatulis: 11.04 just gets stuck around the network config area before the partitioning - tried it 3 or 4 times15:03
pmatulisGuest76352: if you want to help you can re-attempt a 11.04 install and when it gets stuck get to a console (alt-F2) and look at the logs15:04
pmatulis/var/log/installer/syslog15:04
Guest76352Yeah I don't mind doing that15:04
Guest76352be good if I could help15:05
zulDaviey: nova has been uploaded15:08
robbiewDaviey: hey...so with eucalyptus still broken....do we want to consider removing it from the archive and either pulling the upcoming 3.0 release into partner or pointing users to the eucalyptus website?15:08
robbiewzul: \o/15:09
zulrobbiew: it isnt the final version :(15:09
robbiew /o\15:09
zulrobbiew: should be there friday15:10
hallynsmoser: if you're not going to have time to sanity-check bug 850309, can you re-assign it to SpamapS?  (and if he doesn't have time, he can toss it back ot me and i'll just "go for it")15:10
uvirtbotLaunchpad bug 850309 in libvirt "libvirt fails to autostart VM attached to a bridged port" [Medium,Confirmed] https://launchpad.net/bugs/85030915:10
robbiew *\o/*15:10
* robbiew stops his irc mime practice15:10
hallynhere i thought those were pom-poms :)15:12
hallyn"give me a j!  give me a u!  give me a j..."15:12
gondoii'm having the hardest time figuring out the differences between the -virtual kernel and the -server15:13
gondoican anyone help?15:13
hallyni think virtual has xen support and fewer hw drivers15:13
hallynaiui it's designed to run optimally in cloud instances15:14
Davieyrobbiew: So, it looks like it is much closer to being fixed than ever15:17
robbiewDaviey: ah15:17
DavieyI think let it run, and hopefuly fixed before release - if not, SRU15:17
Davieyjamespage and SpamapS have both touched it this week.15:18
robbiewDaviey: well jamespage is less confident than you are15:18
robbiew;)15:18
robbiewDaviey: if it's busted at release, I'm fearful of users upgrading without reading release notes...and breaking their Euca deployment15:19
Davieyrobbiew: yeah, that is valid.15:20
Davieyjamespage: Has upstream responded for your call for help?15:21
Davieyrobbiew: The problem is, that even just removing it from the archive, will still result in a broken system... it's not euca that induced the explosion, it's the depends.15:22
DavieySo it's not even as if they can upgrade, and still keep the euca version from Natty.15:22
jamespageDaviey: actually yes they have - yesterday15:22
jamespageI'd not spotted the update15:22
robbiewDaviey: ah, damn15:22
robbiewjamespage: doh!15:22
jamespagebug 85161115:22
Davieyjames, james, james15:22
uvirtbotLaunchpad bug 851611 in eucalyptus "Oneiric: Upgrade to 2.0.1+bzr1256 blocks" [High,Confirmed] https://launchpad.net/bugs/85161115:22
robbiewfired15:23
gondoihallyn: yeah I know it has specifically the /proc/xen hooks, but wasn't sure if there was anthing else15:23
gondoihallyn: thanks15:23
jamespageas penance I'll look at it now15:23
robbiewlol15:23
lynxmanmorning fellas o/15:26
koolhead11hey lynxman15:27
Olotilahow do i change keyboard layout to scandic?15:30
jamespageDaviey: apologies your optimism was well founded15:30
Davieyjamespage: Initial signs look promising?15:33
jamespageDaviey: yes15:33
DavieyGreat, now we need to sort out the nova to openstack migration path ;)15:34
savidIs there some kind of tool I can use to get update notifications for my ubuntu servers?  Something like update manager for desktop,   but something I can access remotely that is aggregated for all my servers?15:35
Daviey!landscape | savid15:36
ubottusavid: Landscape makes the management and monitoring of Ubuntu systems simple and effective by combining world-class support with easy to use online management tools. https://landscape.canonical.com/15:36
DavieyAnything else is going to require some thought..15:36
savidHmm, looks cool, but no free/open-source solutions?15:37
Davieynagios or zabbix could also do it, but would require some hacking15:38
savidOk.  Thanks!15:38
dokoDaviey, get I faster bug fixes when I chase you down on this channel? ;-P15:40
dokoDaviey, zul, ping on bug 83110015:40
uvirtbotLaunchpad bug 831100 in mysql-cluster-7.0 "mysql-cluster-7.0 version 7.1.9a-0ubuntu1 failed to build in oneiric" [High,Confirmed] https://launchpad.net/bugs/83110015:40
zuldoko: ill take care of that one as well15:40
Davieydoko: Okay - If you use ~ubuntu-server, you get 10 free L3 ping-on-irc credits. :)15:41
Davieydoko / zul: 831100 is in the unapproved queue15:41
DavieyI uploaded it a few hours ago15:41
zulDaviey: ah ok15:42
dokoL3?15:43
Davieydoko: Level 3.15:51
Davieyzul: wow, fast fix on php-imap!15:56
zulDaviey: i didnt do it15:56
Davieyah15:57
Daviey\sh fixed it15:58
smosergondoi, the answer is mostly 'nothing'16:03
jamespageDaviey: working now - just booted an instances OK16:03
smoserhallyn, sorry, i didn't know that had gotten assigned to me.16:03
hallynsmoser: whoa - did it not send you an email?16:03
smoseri get like 40,000 emails from launchpad16:03
hallynshould run a filter for 'has beena ssigned to you' :)16:04
dokozul: and any idea about the php-gettext failure?16:04
gondoismoser: hallyn: another difference I've seen is /dev/sda vs /dev/xvda16:04
gondoi:/16:04
zuldoko: not yet16:04
hallynsmoser: like i say just lemme knwo if you have no time for that16:04
gondoismoser: hallyn: cept for mav which sticks to sda16:04
Davieysmoser: i'm close to using /dev/null as my Maildir store, i keep running out of inodes.16:06
smosergondoi, -virtual is basically -server with a subset of modules16:06
smoserdrivers not relevant to "virtual" are removed. so install size is vastly smaller16:07
zullynxman: you said you were going to do a merge for puppet 2.7.3? you will probably need a FFE16:07
lynxmanzul: yeah I'm working on that right now, it's not too many lines, ffe?16:08
lynxmanzul: ah yeah, exception :)16:08
lynxmanzul: would make the puppet users happy, that's all the reasons I can think of16:08
zullynxman: and then pay with your blood...i mean beer16:08
lynxmanzul: my blood is beer at this point already :)16:08
aot2002How can I check my virtual host file when I used to use apachectl?16:12
smosergondoi, that will be gone post maverick16:12
gondoismoser: yeah, it's fixed in natty16:12
smoser"fixed"16:13
gondoilol16:13
gondoismoser: so speaking of removed modules :D16:13
gondoihttps://bugs.launchpad.net/ubuntu/+source/linux/+bug/76180916:13
smoserplesae open a bug16:13
uvirtbotLaunchpad bug 761809 in linux "Quota modules are missing from the package" [Undecided,Expired]16:13
smoserah, you did.16:13
gondoilol16:13
gondoibeen there a while16:13
smosergondoi, sorry for missing that.16:14
gondoismoser: no prob16:14
gondoiobviously it hasn't been hurting us too bad, but we do still get complaints16:14
smoserplease verify it is the case on the oneiric kernel (just unpacking that and listing modujles is enough), then copy me on it, and move it from 'expired' to 'confirmed'16:14
gondoik16:15
smosergondoi, i think we can get that fixed in oneiric16:15
gondoisweet16:15
gondoiwhat about backporting?16:15
aot2002how do I check the syntax of changes in sites-available directory?16:17
gondoismoser: specifically lucid16:18
smosergondoi, well, it has to be fixed in oneiric first16:19
gondoik16:19
smoseri believe on lucid you can just use the -server modules, right?16:19
smoseri know that sucks.16:19
gondoismoser: yes and no, it blows things up cause of the /dev/sda change with using -server16:20
gondoismoser: it can be done, but we will need to rework a few things16:20
smosergondoi, but you can just cheat, right and lay down the -server modules on top of -virtual install ?16:21
gondoismoser: ahh yes, that is actually the current "workaround" ;-)16:22
Davieymultitask++16:22
gondoismoser: how can I unpack the deb package to the directory the file is currently in?16:28
smoserdpkg -c <deb here> .16:28
smoserwait16:28
smoserdpkg -x16:28
smoserhm..16:28
smoseractually -c will give you contents16:28
smoser-x extract16:28
gondoiahhh I overlooked that one16:29
gondoithanks16:29
smosergondoi, so...16:32
smoserapparently there is a '-virtual-extras' package coming to an 11.10 release near you16:32
gondoi..16:33
smoserand it will have the modules that are in -server that were stripped.16:33
smoserso you can get them that way.16:33
gondoihmm16:33
gondoiyou see that on launchpad somewhere?16:33
gondoiand what about lucid :( "LTS"16:34
smosergondoi, right. checking on that.16:35
gondoiokay16:35
smoserso the way to request that is to have it fixed in devleopment release16:35
smoserand then request it to be SRU'd16:35
smoserby "target"ing it to lucid16:35
smoserbut the -extras will not be SRUd16:36
=== mrmist_ is now known as mrmist
crassis there a way to have a block device in qemu mapped on to a directory on the host? or something like a directory on the host presented as a cifs server?16:56
patdk-wkwith qemu? doubt it16:58
crassoh, wow, there is for the second question... now can I use it through libvirt?16:58
crassyeah the first, would be pretty difficult (but I don't think theoretically impossible)16:59
patdk-wkit is with vmware, not sure if virtualbox does it also16:59
crasspatdk-wk: not following, what is with vmware?17:00
patdk-wkit can mount directories as a shared folder in the vm17:00
crassahh, ok, that must be over cifs/smb or some network fs, sounds like17:01
patdk-wknope17:01
patdk-wkit looks like cifs, but it's a custom thing17:01
crasshmm, then there would have to be special drivers for it17:01
patdk-wkyep17:02
patdk-wkvmhgfs17:03
crassunfortunately it looks like libvirt doesn't support the -smb option for qemu, might there be an xml option for passing an arbitrary string to the qemu command line?17:04
patdk-wkdunno, never used libvert17:09
patdk-wknormally just run qemu directly17:09
crassits pretty nice for managing your vms in an agnostic way, though iirc it ony supports qemu and xen right now17:11
robbiewadam_g: need to push back our 1:1 by 30min...let me know if that's a problem17:17
=== lullabud is now known as warzauwynn
adam_grobbiew: fine by me17:30
slybootsIm curiuos, if your running several ubunut servers at one time.. Are there any ways of managing them from a single infterface (other than Landscape, which isnt free)17:34
slybootsRight now Im finding it hard-going to manage packages and software and security across several machines17:40
lynxmanDaviey: bug #854899 submitted for Puppet package FFE17:47
uvirtbotLaunchpad bug 854899 in puppet "Update to puppet-2.7.3" [Undecided,New] https://launchpad.net/bugs/85489917:47
zulhallyn: you should about to reuse cgroups shouldnt you?17:58
hallynrephrase17:58
hallynzul: assuming you mean't 'should be able to', yes.18:02
hallynof course if you didn't rmdir it before, and you try to mkdir it now, you will get an error...18:02
hallynbest to rmdir(); if error and error is not -ENOENT then assume it's still in use; else mkdir18:03
zulhallyn: cool....me lunches18:11
smoserutlemming, it would seem we have to re-roll images18:16
smoserbug 85492718:16
uvirtbotLaunchpad bug 854927 in openssl "wget, curl can't verify certificates" [Undecided,New] https://launchpad.net/bugs/85492718:16
* utlemming acks18:17
gondoismoser: I know we've already had that conversation regarding the ticket, just figured it could be documented18:17
=== Ursinha is now known as Ursinha-lunch
utlemmingsmoser: I'm going to mark that bug as high18:26
smoseri was just going to ask in ubuntu-release if it would cause global respin18:26
smoserso yes, i woudl say "high"18:26
smoser:18:26
smoser:)18:26
utlemmingmarked as high and confirmed18:27
zuljamespage: im not able to reproduce the concurrency bug18:37
zuljamespage: however i suspect what happens when you switch from kvm to lxc nova reuses the same instances and confuses the hell out of the libvirt because you are restarting the same vms wth the same name18:39
crasshallyn: how hard would it be to make a debug build of qemu?18:48
hallyncrass: not that hard.  in fact can't you just load the debuginfo package?18:55
hallyncrass: see http://askubuntu.com/questions/53708/how-to-create-debuginfo-package18:57
hallyncrass: if you want to compile your own anyway, still not bad.  do 'pull-lp-source qemu-kvm', make your changes, then either 'fakeroot debian/rules build; fakeroot debian/rules binary', or dpkg -S -us -uc and then use pbuilder to build18:58
crassthanks hallyn, let me look into those options18:58
hallyn(or sbuild, but that takes a bit more initial setup, though it's worth it if you'll be doing a lot of builds)18:58
hallynnp18:58
=== med_out is now known as medberry
cjs226anyone using imfile with rsyslog?19:03
cjs226I'm having a problem where imfile is sending the same lines over and over to my central server.  I assume it has something to do with the statefile not being used even though it's set in the config: https://gist.github.com/122991319:09
uvirtbotNew bug: #756107 in php-imap (universe) "php-imap version 5.3.5-0ubuntu1 failed to build on i386" [High,Fix released] https://launchpad.net/bugs/75610719:13
uvirtbotNew bug: #854614 in nova "metadata service local-hostname is not fqdn" [Undecided,New] https://launchpad.net/bugs/85461419:13
uvirtbotNew bug: #854899 in puppet (main) "Update to puppet-2.7.3" [Undecided,New] https://launchpad.net/bugs/85489919:13
uvirtbotNew bug: #854946 in eucalyptus (universe) "Rampart's configuration on Ubuntu's package doesn't define a default ClockSkewBuffer" [Undecided,New] https://launchpad.net/bugs/85494619:13
Davieyadam_g: patdk-wk is seeing this, do you think that is related to what you saw.. http://pb.daviey.com/bh4Z/ ?19:14
uvirtbotNew bug: #854555 in postfix (main) "package postfix 2.8.2-1ubuntu2.1 failed to install/upgrade: il sottoprocesso vecchio script di post-installation ha restituito lo stato di errore 75" [Low,Invalid] https://launchpad.net/bugs/85455519:14
uvirtbotNew bug: #854705 in bind9 (main) "dig returns 0 regardless of result of query" [Undecided,New] https://launchpad.net/bugs/85470519:14
uvirtbotNew bug: #854731 in nova (main) "PPA: nova_sudoers has bad dnsmasq line" [Medium,Fix committed] https://launchpad.net/bugs/85473119:14
uvirtbotNew bug: #854779 in vm-builder (universe) "change behavior on ubuntu with proxy apt" [Undecided,New] https://launchpad.net/bugs/85477919:14
DavieyWho wants to have a go at landing the patch attached to bug 854946 in oneiric?19:21
uvirtbotLaunchpad bug 854946 in eucalyptus "Rampart's configuration on Ubuntu's package doesn't define a default ClockSkewBuffer" [Undecided,New] https://launchpad.net/bugs/85494619:21
philsfhi, I need to create lots of user accounts in batch, and some of them I'm importing from debian servers, and I'd like to use those hashed passwords. However lucid's chpasswd utility (1:4.1.4.2-1ubuntu2.2) doesn't offer the -e parameter for supplying encrypted passwords, whereas debian's version (1:4.1.1-6+lenny1) does. Short of using debian lenny's chpasswd binary directly, is there a "proper" way of supplying encrypted passwords in lucid?19:31
patdk-wkI always just edit /etc/shadow19:32
genii-aroundphilsf: Perhaps usermod -p <hashed-password> name19:41
philsfgenii-around, Will try that, thanks.19:44
Davieyjdstrand: Am i correct in saying that adding the 'fix' for bug 844935 to Ubuntu, doesn't change anything for us?19:54
uvirtbotLaunchpad bug 844935 in nova "Nova should not assume the default iptables INPUT filter policy is accept" [Medium,Fix committed] https://launchpad.net/bugs/84493519:54
dv310p3rI've added my user to www-data, and I've added www-data to my group. If the owner of all the directorys and the files is my user, shouldn't I not get any permissions errors.19:54
DavieyDROP is just evil IMO.19:54
coleixHi anyone knows howto set up openvpn? I´ve been following this guide http://goo.gl/cwFeF and http://goo.gl/ZCElC but it just wont start, it always says fail to start daemon.19:55
GeorgeJHello19:55
GeorgeJI'm trying to get some virtualization runnng on an ubuntu-server with KVM19:55
GeorgeJIs there any decent management interface I could use?19:55
jdstrandDaviey: it shouldn't no, cause we don't enable a firewall by default19:55
Davieyjdstrand: thought so, thanks for the confirmation.19:57
adam_gDaviey: regarding that iscsi thing, im not sure. need more detail?19:58
Davieypatdk-wk: Are you able to provide more detail to adam_g, regarding your iscsi issue?19:59
patdk-wknot so far20:00
patdk-wkthe only thing I see, it all starts up, mounts the iscsi filesystem20:00
patdk-wkthen says, starting network20:00
patdk-wkthen it says, waiting for network, 60 seconds20:01
patdk-wk...20:01
patdk-wk...20:01
patdk-wkthen it continues on normally20:01
patdk-wkI won't have time to check more into it till later tonight20:01
patdk-wkbut I booted wrong the first time, on an old alpha kernel/initrd, and it didn't pause20:01
patdk-wkbut all 4 of my iscsi tests, did20:01
patdk-wkmy 2 local drive installs, didn't have that issue20:02
patdk-wkall 6 installs, used vmxnet3 nic20:03
patdk-wkI can probably try on real hardware tomorrow, doing an iscsi test20:03
patdk-wkonly the client machines are virtualized, the dhcp/dns/iscsi/... servers are real20:04
uvirtbotNew bug: #855023 in openssh (main) "64 bit ssh client fails to connect, 32 bit succeeds" [Undecided,New] https://launchpad.net/bugs/85502320:07
Davieythanks patdk-wk20:15
adam_gi wonder if this is related to bug #847782?20:19
uvirtbotLaunchpad bug 847782 in netcfg "installer writes a permanent ethernet entry in interfaces file" [High,Confirmed] https://launchpad.net/bugs/84778220:19
creatorbriI think I've been hacked. Can someone help me?20:19
qman__depends on what exactly you need help with20:21
Davieyjdstrand: Is there any chance of socat being security MIR reviewed today?20:21
jdstrandDaviey: I am doing it now20:22
jdstrandDaviey: it may not be done today, but I am actively working on it20:22
creatorbriqman: agreed -- its a bit lengthy, I just didn't want to waste my time if no one is here :)20:22
Davieyjdstrand: rocking, appreciated20:23
creatorbriI've got a suspicious cron entry involving a "y2kupdate" entry, daemons shutting down 'on their own', and instances of extremely high I/O and CPU activity without explanation20:24
creatorbriI've shut down the server, but I need to get back into it and fix this without giving the perpetrator access again20:24
SpamapSDaviey: should we drop collectd and ganglia's MIR's ?20:24
qman__I'm afraid that's nigh impossible20:24
qman__the most effective way and only certain way is to reload the server and reconfigure your software20:25
SpamapSoh thats a bit extreme20:25
SpamapSunplug the network.. see if you can get your data off safely..20:26
SpamapSthen reinstall20:26
qman__of course20:26
qman__I didn't mean to give up on his data20:26
qman__what I'm saying is, once a server is rooted, none of the binaries can be trusted20:26
creatorbriwell yeah I'd definitely rather not lose all my data -- but problem is, I'm running on Linode, so all I have is console -- anyone know if I can boot up in the console but disable SSH, Apache, etc?20:26
qman__boot to single user20:27
qman__binaries are still not trustworthy though20:27
creatorbrifair point about the binaries qman -- I hadn't considered that but you're right, I should just offload all my data and start over..20:27
creatorbriI really wish I knew how this happened so I could prevent it.. I thought I was being careful heh20:28
creatorbriunfortunately i'm no security expert20:28
qman__what software do you run20:28
creatorbriapache, mysql, postfix/dovecot -- those are the main ones20:29
qman__the most common points of entry are badly configured SSH or other remote access, and badly written PHP sites20:29
qman__if the attacker is at all smart, he would have deleted the logs telling you anything about it20:29
qman__remote logging is the only way around that20:30
SpamapSSSH is the most likely if you were up to date w/ security20:30
creatorbrihm, its very possible a PHP app is the culprit actually20:30
creatorbriwell20:31
creatorbrihm20:31
hgb^harryqman__: what are examples for badly configured ssh, besides weak passwords?20:31
qman__weak keys20:31
qman__permitting root login if you don't need it20:31
qman__and using password authentication on a multiuser system, where you don't know all the passwords are good20:31
SpamapShgb^harry: strong passwords will fall too20:31
qman__yep20:32
qman__can be a combination too20:32
SpamapSpassword auth, honestly, is a *bad* idea. period.20:32
qman__a bad site can get the attacker read access to password hashes20:32
=== Ursinha-lunch is now known as Ursinha
qman__and a few rainbow tables later, they have root20:32
creatorbrihm, good point20:33
SpamapScreatorbri: one common thing too is that they'll steal your strong password from some other site during a hack, then try the same strong password with the same username on a bunch of machines.20:33
qman__and you should _never_ allow password authentication and root access20:34
SpamapSkeys at least require them to steal *the key*20:34
qman__ubuntu's default setup prevents root from logging on at all with a password, so permitrootlogon is yes20:34
creatorbriOK so what I need to figure out now, is how to get access to my data safely, without allowing the attacker further access20:34
qman__but if you set a root password, you need to either disable password auth or permitrootlogon20:34
qman__if linode gets you a 'local' console, boot single user and shut off all the services20:35
jdstrandDaviey: actually, I do have a question (in the bug), but am not blocking on it20:35
qman__then enable a vector for you to get to it20:35
SpamapScreatorbri: since you have console, you can use something super hacky like zmodem to download a tarball of it. ;)20:35
qman__but that's still not perfect20:35
qman__a hacked kernel or other secret service might be installed20:35
creatorbrihmm20:36
SpamapSagain, just get the data, and leave everything else behind20:36
qman__yep20:36
SpamapSif they were able to sneak a hack into your data.... god help you ;)20:36
* Daviey looks, jdstrand 20:36
SpamapScreatorbri: also why aren't you backing up your data?20:36
* SpamapS goes to lunch20:37
creatorbridang.. I just realized the high I/O, CPU, and Network activity this morning probably means they've downloaded loads of stuff.. including data20:37
creatorbrisigh20:37
qman__if you're worried about legal issues, don't blow away the old server20:38
qman__just shut it down and make a new one20:38
qman__also, any passwords you used for anything on that machine are no good, change them if you've shared with anything else20:39
creatorbri*nod*20:39
koolhead17(02:05:49  IST) qman__: a hacked kernel or other secret service might be installed20:40
creatorbriWell thanks for your help qman.. guess I've got some work ahead of me.20:43
Davieyjdstrand: Do i understand that glance (bug 801299) MIR is accepted, accepting the lack of SSL support?21:04
uvirtbotLaunchpad bug 801299 in glance "[MIR]glance" [High,Incomplete] https://launchpad.net/bugs/80129921:04
jdstrandDaviey: I told zul yesterday I need to look at it. all the mirs on on my todo for this week21:05
jdstrandDaviey: I need to come up to speed on them as they were only recently handed off to me21:06
Davieyjdstrand: ah, ok - missed that.21:06
Davieyzul: nova is now depwait, waiting on glance.21:06
Davieyjdstrand: understood.21:06
lynxmanDaviey: any news about #818177 ? This one is a nasty one if we let it slip into Oneiric21:16
lynxmanbug 81817721:16
uvirtbotLaunchpad bug 818177 in udev "HP DL380G5 root disk mounted read-only on boot and boot fails" [High,Confirmed] https://launchpad.net/bugs/81817721:16
Davieylynxman: If you were at the server meeting earlier today, you'd know. :P21:18
lynxmanDaviey: *blushes*21:19
lynxmanDaviey: I didn't know I was supposed to go :)21:19
Davieylynxman: Oh, i thought you were part of the Ubuntu Server community.. my mistake :P21:19
lynxmanDaviey: lol, so sorry21:20
* lynxman adds +1 to beers owed to Daviey21:20
hallynDaviey: lynxman: I assume that's the same thing I'm trying to wrap my head around21:42
tony_787I have questioin -> 8 WinXP SP3 computers are connected to single Ubuntu Server using a Switch device and a wireless ADSL router which has internet in it is also connected to the Switch device.. All the computers are receiving internet & also the server. What I want is I want to block certain website to these computers.. How can I achieve this using Ubuntu Server or something else ? Please Help21:43
lynxmanhallyn: I think so...21:43
Davieyhallyn: And i believe it might also be hitting iscsi.21:44
hallynDaviey: right i'ts just udev21:44
Davieypatdk-wk hit something, perhaps similar.. as did adam_g21:44
Davieyliving the dream.21:45
lynxmanDaviey: we all hit the same rock, isn't that fun :)21:46
lynxmanDaviey: that rock is pretty promiscuous as far as I'm concerned21:46
hallynlynxman: have made any progress with it?21:48
lynxmanhallyn: adam_g proposed a patc21:49
lynxmanhallyn: patch even21:49
Davieyadam_g's patch was nacked.21:52
DavieyI'll chase it tomorrow with foundations21:52
lynxmanDaviey: so slangasek is on it right?21:52
* lynxman has deja-vu21:53
tony_787anybody !21:58
Davieylynxman: i thought smoser thought that he was, but jhunt is assigned.22:02
lynxmanDaviey: hmm...22:02
hallyntony_787: look at ufw22:04
* hallyn out, bbl22:04
tony_787so it will apply to all computers running windows xp ?22:06
hallynno.  assuming the ubutu server is a gateway, it can filter based on the xp box' ip addresses22:07
hallyn(or just their subnet)22:07
tony_787i see22:08
lynxmanDaviey: would be good to ping jhunt and see how it goes22:08
=== medberry is now known as med_out
=== kentb is now known as kentb-out
Davieylynxman: keep up at the back22:18
Davieysee -devel22:18
lynxmanDaviey: aha :)22:18
lynxmanDaviey: what's that vacation thing?22:20
Davieylynxman: i think it is where you are away from the office, working from McDonalds wifi instead.22:21
lynxmanDaviey: so that for me is when the power goes out22:22
=== skrewler_ is now known as skrewler
Davieyzul: So, dashboard depends on python-django-mailer, this is not in Debian or Ubuntu.  Are you planning to package it?22:35
uvirtbotNew bug: #855136 in samba (main) "package samba 2:3.5.11~dfsg-1ubuntu1 failed to install/upgrade: ErrorMessage: package samba is not ready for configuration  cannot configure (current status `half-installed')" [Undecided,New] https://launchpad.net/bugs/85513622:35
zulDaviey: yeah im pretty sure i did though23:04
zulDaviey: ill work on it tonight after liam goes to bed23:05
=== maknz_ is now known as maknz
=== cloakable_ is now known as cloakable
=== erichammond1 is now known as erichammond

Generated by irclog2html.py 2.7 by Marius Gedminas - find it at mg.pov.lt!