/srv/irclogs.ubuntu.com/2012/10/04/#ubuntu-server.txt

=== cpg is now known as cpg|away
=== matsubara is now known as matsubara-afk
SpamapSDaviey: I'm not sure I expect a spec from that one.. being a roundtable, its more to gather the interested parties in the room and do a checkup on where we're at00:54
AaronMickDeeWhat's the easiest way to set up a virtual machine server with Ubuntu? I host all my stuff on my box, but a lot of the stuff hosted is for friends. I'd rather just give them a virtual machine rather than a user account. Any ideas?01:03
sarnoldAaronMickDee: qemu/kvm is pretty awesome.01:04
DavieySpamapS: I want a drafter that is the person responsible for driving the roundtable then :)01:14
=== cpg|away is now known as cpg
=== cpg is now known as cpg|away
=== cpg|away is now known as cpg
=== n0ts_off is now known as n0ts
uvirtbotNew bug: #1030276 in mysql-5.5 (main) "package mysql-server-5.5 5.5.24-0ubuntu0.12.04.1 failed to install/upgrade: tiến trình con đã cài đặt văn lệnh post-installation trả lại lỗi, trạng thái thoát 1" [Medium,Expired] https://launchpad.net/bugs/103027604:26
uvirtbotNew bug: #1030342 in mysql-5.5 (main) "package mysql-server-5.5 5.5.24-0ubuntu0.12.04.1 failed to install/upgrade: subproces installed post-installation script gaf een foutwaarde 1 terug" [Undecided,Expired] https://launchpad.net/bugs/103034204:26
=== dendrobates is now known as dendro-afk
koolhead17Daviey: around06:34
=== eshlox_ is now known as eshlox
brontosaurusrexwhat would i use for spider/search engine for a small intranet site ?07:38
brontosaurusrexlike a local google07:38
xnoxbrontosaurusrex: http://www.searchblox.com/ ?07:40
xnoxbrontosaurusrex: or well "Google Mini"07:41
brontosaurusrex$5000 per server?07:42
brontosaurusrexit must be free07:42
=== mcclurmc_away is now known as mcclurmc
Davieykoolhead17: hey08:03
chris|brontosaurusrex, you could try yacy08:03
brontosaurusrextested searchblox, its messy08:42
brontosaurusrexchris|, p2p part can be disabled i hope?08:43
Japjezow/w 15709:01
Japjemeh09:01
frojndHi there. I just got an ubuntu 12.4 server to my hands and I'm seeking somekind of a handbook, or server guide. I don't find this https://help.ubuntu.com/12.04/serverguide/index.html guide pretty informative. Can you suggest me any good guides? Or wikis?09:17
xnoxfrojnd: what do you actually want to learn / know?09:25
RoyK!ask09:28
ubottuPlease don't ask to ask a question, simply ask the question (all on ONE line and in the channel, so that others can read and follow it easily). If anyone knows the answer they will most likely reply. :-) See also !patience09:28
frojndxnox_: everything :)09:30
frojndCurrently I'm adding users that will do some programming on the server09:30
frojndI'd like to create a user that has admin access so I can disable root login09:30
xnox_frojnd: by default root is disabled on ubuntu. the first account has sudo rights. and it looks like you are after "linux CLI" instead of server tasks....09:32
frojndI've put the user to sudo group (if it will want to do some maintainance work) like this: # usermod -aG sudo newuser09:32
frojndxnox_: ok so I can safely read "debian handbook" for tasks like this09:32
frojndxnox_: I got ssh access with only root09:33
xnox_frojnd: yes. debian handbook, debian-administrator website, http://ubuntu-manual.org/09:33
RoyKyou can turn off root login over ssh in /etc/ssh/sshd_config09:33
frojndThe problem is that when I login with this newuser and try to do sudo something it gives me incorrect password attempt09:34
frojndxnox_: tnx09:34
frojndRoyK: but first I have to put some users into admin group I persume09:34
frojnddon't wanna lock myself out09:34
RoyKfrojnd: sudo prompts for the *user's* password, not the root password09:34
frojndRoyK: exactly09:34
frojndand it tells me it's wrong09:34
frojndlet me check if I'm in sudo group09:34
frojndwith that user09:35
* frojnd is apologizing for multiple lines - won't happen again09:35
frojndOk. So it was my wrong password :/ :)09:36
frojndtime to disable root login09:38
Adri2000zul: keystone and python-keystoneclient minor fixes proposed through merge proposal in LP, fyi.09:48
maruqhi guys09:52
maruqI'm trying to setup ntpd on 12.04 on ec2.09:52
frojndHm.. I have 2 hard drivs: sda and sdb. Both are 250GB. Now / boot swap etc (system) is innstalled on sda and I've assign 200GB from sdb for /home. But I think 250GB for / is too much?09:52
maruqas far as I can tell, it's install ntp package, set the servers, then enable independent_wallclock09:52
maruq12.04 seems to have moved the /proc/sys/xen dir. any idea where I should be looking for indepenent_wallclock now?09:53
=== remix_auei is now known as remix_tj
=== cpg is now known as cpg|away
=== n0ts is now known as n0ts_off
edgyHi, I just want to understand where the recovery kernel argument in grub.cfg coming from or documented? or is it ubuntu specific?11:00
rbasakedgy: for grub 2, try /etc/grub.d and /etc/default/grub11:04
edgyrbasak: may be you didn't understand my question, isn't ubuntu has an entry that would allow you to go to recovery mode?11:08
edgyrbasak: : grub.cfg contains linux /boot/vmlinuz-3.5.0-16-generic root=/dev/mapper/vg00-lv_root ro recovery ... What's recovery here referes to?11:12
rbasakedgy: it signals to the initramfs that recovery is requested. See /usr/share/initramfs-tools/init11:14
edgyrbasak: but there is no kernel option called recovery, where is this documented? the init file you refer me to contains recovery=y, so what?11:16
rbasakedgy: userspace can make use of kernel options too. It's common for bootstrapping to pass things into userspace from the bootloader this way. Userspace bootstrap programs examine /proc/cmdline to see all arguments that the kernel received, and the kernel ignores arguments that it doesn't recognise.11:17
rbasakedgy: /usr/share/initramfs-tools/init parses /proc/cmdline and sets its variable recovery=y if recovery was on the cmdline11:17
edgyrbasak: ok so the recovery option is passed to which user space program?11:18
maruqhi guys. anyone know how I enable independent_wallclock in 12.04 on EC2? /proc/sys/xen doesn't seem to exist11:18
rbasakedgy: the initramfs init script, which comes from /usr/share/initramfs-tools/init11:18
edgyrbasak: and how the initramfs init script would handle it? the code there is not enough for me to understand11:20
Davieymaruq: try, sysctl -w xen.independent_wallclock=111:21
edgyrbasak: it's just saying for x in $(cat /proc/cmdline); do recovery) recovery=y11:21
rbasakedgy: not sure, sorry. I recover my systems by hand so never used the recovery feature. I would read the code to find out11:21
rbasakedgy: so look for where else it uses the recovery variable11:21
maruqDaviey: just tried. I get 'error: "xen.independent_wallclock" is an unknown key' :(11:21
edgyrbasak: exactly that was the question I grepped the whole initramfs and no where else used this variable11:22
edgyrbasak: how do you do it manually?11:22
Davieymaruq: Ah, HVM instances won't have it.11:22
Davieymaruq: I think you already get it for free.  I assume you have ntpd running?11:22
rbasakApart from on the "exec run-init" line?11:23
rbasakLooks like it gets upstart to fire a "recovery" event. The next place to look is in upstart's configuration for jobs that fire on that event.11:23
rbasakI use a recovery disc11:23
maruqDaviey: yeah, I installed ntp package, went with default settings & restarted the service11:24
edgyrbasak: I used to do it by passing init=/bin/bash which gives me a recovery shell, too11:24
maruqDaviey: 'less /sys/devices/system/clocksource/clocksource0/current_clocksource' says "xen"11:24
rbasakUsually if something's wrong it just drops down to a recovery shell anyway11:24
rbasakI haven't had to use init=/bin/sh in years11:25
maruqDaviey: Is there a way I can confirm that it's actually using the timeservers?11:25
Davieymaruq: Sorry, i don't know.  Maybe someone else will have a better answer11:25
uvirtbotNew bug: #1061537 in lxc (universe) "invalid syntax in apparmor profile abstractions/lxc/container-base" [Undecided,New] https://launchpad.net/bugs/106153711:26
Davieymaruq: syslog should contain ntpd info11:27
maruqDaviey: this is what I'm seeing in syslog: https://gist.github.com/f4f927d94e5dec938e06 is that correct?11:29
edgyrbasak: there seems to be a loop here? ls -l /lib/recovery-mode/recovery-mode/recovery-mode11:30
edgylrwxrwxrwx 1 root root 18 Jun 22 15:54 /lib/recovery-mode/recovery-mode/recovery-mode -> /lib/recovery-mode11:30
rbasakProbably useful when working with chroots11:31
edgyrbasak: don't know11:34
edgyrbasak: ok thanks for you help11:36
zapotahhi11:57
zapotahafter the latest updates something went wrong11:58
zapotahone of the bridge interfaces wont come up11:58
zapotahconfiguration is as follows11:58
zapotahtwo nics11:58
zapotahwith lacp bond011:58
zapotahvlan interface vlan40 with bridge to bond0.4011:58
zapotaha few other vlan interfaces as well11:59
zapotahbut the bond0.40 wont come up11:59
zapotahvlan100 interface with bridge to bond0.100 comes up and cat /proc/net/vlan/config shows that everything is working fine with that one12:01
zapotahproblem being here that atm four servers that have the vlan 40 attached wont start12:02
zapotahrunning xen on the server12:03
=== doko__ is now known as doko
=== dendro-afk is now known as dendrobates
smbSpamapS, stgraber, So I got one more iteration to fix bug 1021471. Probably SpamapS could have a look at the latest (and now only) packages at people~smb/clonetst12:30
uvirtbotLaunchpad bug 1021471 in linux "clone() hang when creating new network namespace (dmesg show unregister_netdevice: waiting for lo to become free. Usage count = 2)" [High,Triaged] https://launchpad.net/bugs/102147112:31
uvirtbotNew bug: #1061565 in tomcat7 (main) "package tomcat7 7.0.26-1ubuntu1.1 failed to install/upgrade: subprocess installed post-installation script returned error exit status 1" [Undecided,New] https://launchpad.net/bugs/106156512:31
Davieyzul: what is the difference between nova-novncproxy and nova-vncproxy?12:33
zulDaviey:  im not 100% sure12:36
Davieyzul: it's a change after f312:37
zulDaviey:  no difference in my opinon it still uess novnc12:39
melmothDaviey, one is to use with horizon, the other with a java client.12:39
melmothohh, may be i m confusing with novnc..12:40
melmothfrom http://docs.openstack.org/trunk/openstack-compute/admin/content/faq-about-vnc.html :12:41
Davieyzul / melmoth: There difference is the package namees. :).. It seems we switched package names after f312:41
melmothnova-vncproxy was removed from the nova source tree. The Essex analog for this process is nova-novncproxy, which is provided by an external project.12:41
melmothso it looks like there has been some name changed from diable to essex.12:42
zulDaviey: bah sorry i didnt notice12:42
Davieyhmm12:42
Davieywe still build it from nova tho?12:42
Davieyzul: The thread on the OS mailing list.. I'm trying to work out if it's a trivial doc fix12:43
melmothi must admit i was really confused finding the right package for the right kind of proxy (novnc for horizon and nova-vncproxy for the java client)12:43
zulDaviey: ok ill try to reproduce the upgrade issue though and double check things12:44
Davieymelmoth: yeah, i don't want to give poor advice12:44
Davieyzul: i did just reproduce it12:44
Davieyzul: it's not an upgrade issue, a plain install issue12:44
zulgrrr12:45
Davieyzul: I am about to reply with, "In your apt-get install line, can you replace nova-vncproxy with nova-novncproxy.  This was a change made after Folsom-3, and the documentation hasn't been updated to reflect." - but i want to make sure that is accurate12:45
DavieyFWIW, it does /install/12:45
Davieybut is it what the user wants :)12:45
zulDaviey:  right12:46
* Daviey adds some ubiquity 12:46
zulDaviey: right you are more awake :)12:48
koolhead17hey zul12:50
zulkoolhead17: hi12:50
koolhead17Daviey: which doc you are talking about sir? Do i need to modify something :)12:50
Davieykoolhead17: yeah, possibly12:53
Davieykoolhead17: It's not your fault.12:54
* xnox ponders if Daviey meant English noun "ubiquity" or the Ubiquity - Ubuntu Installer....12:56
koolhead17Daviey: just let me know what changes are needed will do. In a meanwhile with new quantum pkg in place we will push quantum doc too :)12:56
koolhead17in the same doc12:56
Davieyxnox: not the installer12:56
* xnox is back in the installer then12:57
Davieykoolhead17: rocking !12:57
jasonmspgood morning all..  What is the meaning of  this first part of  a cronjob  "root [ -O /tmp/dir.cache]"  I'm used to seeing if statements as in "root if [-x " but i can't find any reference to this on a web search.13:29
SpamapSsmb: downloading your latest fixed kernel now13:45
smbSpamapS, Great. :)13:46
skritehey all, i am looking for an easy to configure mail server distro i can build and run in a vm for our company... any ideas?13:49
SpamapSskrite: http://www.turnkeylinux.org/search/luceneapi_node/mail%20type:appliance ... these would probably work13:53
SpamapSskrite: Zimbra in particular is pretty nice.13:53
skriteSpamapS: thanks13:54
zulDaviey: based on andrew's comment on the ec2 bug https://github.com/openstack/nova/blob/master/nova/db/sqlalchemy/migrate_repo/versions/107_add_instance_id_mappings.py it doesnt happen when the table is created and migrated14:45
uvirtbotNew bug: #1060404 in lxc (main) "update-grub runs and fails in containers" [High,Confirmed] https://launchpad.net/bugs/106040414:51
uvirtbotNew bug: #1061665 in nova (main) "Filter scheduler not respecting the force_hosts hint" [Undecided,New] https://launchpad.net/bugs/106166515:04
koolhead17i see Daviey live :)15:25
SpamapSsmb: you going to be around for a bit longer? Just now about to test that kernel15:26
chmacdenyhosts has started blocking localhost on a handful of machines in the last 24 hours. Any idea what's going on?15:26
chmacI'm not aware of anything that's changed on our setup.15:26
=== dendrobates is now known as dendro-afk
SpamapSchmac: sounds like a bug.. localhost should be whitelisted15:40
chmacSpamapS: Right, sounds odd, and what caused it to flare up now, on 3 servers, within 24 hours of each other, all with similar configs...15:41
chmacI'll double check the whitelisting.15:41
chmacI only noticed the issue because monit can't connect on localhost, so it thinks sshd is down, restarts it a few times, then times out. Meanwhile, it's running all the time.15:41
moosehey15:52
moosehas anyone compared chroot to virtualbox?15:53
moosehello?15:56
holsteinmoose: hey.. you can just ask.. if anyone knows they will answer15:56
mooseok15:57
holsteini have only used Vbox, and its arguably "easier" i would say.. thought the chroot might be less overhead if thats what you want/need.. theres Vbox headless (text mode)15:57
moosewhat are the pros and cons of chroot vs [3~[3~[3~[3~[F[3L:/ok15:58
moosewhich one is more secure?15:58
holsteini wouldnt trust any casual answer on the IRC about that... i would say if you are experience, either can be as secure as you need15:59
moosehow much resources does a virtual box need compared to chroot?16:01
holsteinmoose: i have only used Vbox, but i would just set both up and see..16:01
mooseok16:02
moosethank u16:02
SpamapSmoose: chroot and virtualbox are like a bicycle and a car... pretty hard to compare16:04
SpamapSholstein: and don't be silly, chroot cannot be as secure as a VM.16:04
moosemy server has only 500mb of m,16:05
SpamapSmoose: heh, thats not a server then :)16:05
SpamapSyou might be using it to serve things, but its not a server computer :)16:05
moosewell, not a sver for virtual box maybe, but chroot might be ok16:05
holsteinSpamapS: i still think it would depend on the use case and the skill level.. but like i said, i use Vbox..16:05
SpamapSsmb: initial result seems positive!16:06
SpamapShallyn: ^^ smb's newest kernel seems to address the issue16:06
mooseis 500 RAM not enough for a server? min is only 125mb16:07
SpamapScrap16:07
SpamapS[  455.352556] unregister_netdevice: waiting for lo to become free. Usage count = 116:07
SpamapShallyn: spoke too soon16:07
hallynwhat did his newest kernel do?16:08
SpamapSNo idea he hasn't been sharing patches16:08
hallyni wonder how hard it woudl be to 'just' yank the routing cache :)16:08
SpamapSjust posting kernels which I try ;)16:08
SpamapSroot     16118  0.0  0.0  27532  1032 ?        Ds   09:07   0:00 lxc-start --daemon -n clint-local-ci-u1-0 -l DEBUG -o /home/clint/.juju/data/clint-local-ci/units/u1-0/container.log16:08
SpamapSdead16:08
SpamapSsmb: n/m, still broken16:08
hallynSpamapS: i meant what approach did that kernel take to trying to fix it16:08
SpamapShallyn: *no idea*16:08
hallynok16:09
SpamapShallyn: you'd have to ask smb16:09
SpamapS[  577.079821] rtdbg: fib_disable_ip(lo/ffff880164917000/ffff880073e68000, -1)16:09
SpamapSseems to be printing that out a lot16:09
hallyni did, implicitly :)  irc is a wonderful thing16:09
moosehow do i supress [D[D[D[D[D[D[D[D[D[3~[3~[3~[3~[3~[3~[3~[D[D[D[D[D[D[D[D[3~[3~[3~[3~[3~[3~[3~[3~[F[A[A[A[B[B[B[B[B[B[3~[3~[3~[3~[3~16:10
SpamapShallyn: could this be avoided at all by restarting the lxc-net service between lxc-stop/lxc-destroy and lxc-start ?16:10
SpamapSmoose: use the right $TERM setting16:11
hallynSpamapS: no16:12
SpamapSyeah just tried that16:12
SpamapShallyn: anything we can put in the instances to clear out the route cache right before halt?16:12
hallynSpamapS: what we could try,16:12
SpamapSat this point, I'm not really confident that we'll have a solution for 12.10's release16:13
hallynwhat we could do is stash away /proc/self/ns/net for the open container16:13
hallynor actually, mnt16:13
hallynthen use that after container shuts down to flush the route cache16:13
hallynbut really, smb's earlier kernel tried to do that from th ekernel, and it didn't work16:13
hallynso my guess would be that your write to the 'flush' file would hang, waiting for a mutex to P16:14
hallyni still think that despite assumptions we've made, it would be worth bisecting upstream kernel both for the commit breaking it, and teh commit fixing it16:14
hallynnoone has AFAIK *verified* that dropping the route cache fixed it16:15
hallynif need be i'll spin up a bigmem.xlarge or whatever amazon instance and start the bisection, but i've been waiting to hear whether smb is doing that already16:15
SpamapShallyn: right, there is a lot of change between here and there16:15
SpamapShallyn: how does that work, bisecting on amazon?16:16
hallynSpamapS: does an upstream kernel havethe needed supprot to boot inamazon?  i figure it would work the same way as installing a new kernel .deb16:16
hallyni.e i was assuming EBS instances can boot whatever grub says to16:17
SpamapShallyn: you'd have to ask smoser and utlemming.. I'm just not sure how it would work16:17
hallynstill going to wait for smb.  i dont' want to duplicate work16:17
hallynmeanwhile i have to piss off upstart :)16:17
SpamapSI admit that I usually put my hands on my ears and sing "Camp town ladies" whenever people talk about the kernel16:17
sarnold(that's an option? :)16:18
hallynyes, but your punishment is dealing with php :)16:18
sarnoldhallyn: ooh, that's cold.16:18
smoserhallyn, ebs (or instance store) boot with "pvgrub"16:19
smoserwhich reads /boot/grub/menu.lst16:19
smoseras far as upstream kernels having the right stuff, i suspect that current upstream can be configured to boot correctly.16:20
=== dendro-afk is now known as dendrobates
hallynsmoser: "boot with pvgrub" - where do i specify that?16:20
utlemminghallyn: that happens automatically with AWS16:21
utlemmingpvgrub is specific to Xen16:22
hallyncool16:23
hallynthx16:23
smoserit happens automatically with our images in pvgrub16:24
smoseryou register with a kernel16:24
smoserour images are registered with the pvgrub "kernel"16:24
smoser(since 10.04)16:24
RoyKhm... apt-btrfs-snapshot looks like a jolly good idea, but does it integrate with grub to allow booting from the previous snapshot somehow?16:49
=== PreciseOne is now known as IdleOne
=== mcclurmc is now known as mcclurmc_away
xnoxRoyK: initramfs does not support booting of any subvolumes bug @17:28
xnoxRoyK: so, no. You can change @ to achive the same I believe.17:28
xnoxbut I have not tried.17:29
zapotahi stated earlier that something was broken with the latest updates17:29
zapotahdont know if its the devs fault or whoevers17:29
zapotahbut specifying in the /etc/network/interfaces a vlan40 interface and a line with bridge_ports bond0.40 does not create a sub interface bond0.4017:30
zapotahit created a bond0.100 interface which was the first specified17:31
zapotahin interface vlan10017:31
zapotahmanually specifying bond0.100 bond0.40 etc with vlan-raw-device bond0 works17:32
zapotahafter that stuff works like it used to17:32
zapotahdont know if the problem lies with ubuntu17:33
zapotahpackage vlan or ifenslave17:33
zapotahcan anyone say if ubuntu has the lacp function built-in nowadays or is the ifenslave still required17:34
zapotah?17:34
zapotahifenslave package*17:34
resnoany suggestions about sys admin blogs i should read?17:50
howdyHello. Has anyone here created a dhcp server? If so, if I have a network such as [modem] -> dhcp server -> [switch] -> client .... and the client can talk to the dhcp server... what would be stopping the client from accessing the internet? I tried to open some ports through iptables but it doesnt seem to like me. Any thoughts?17:54
sarnoldhowdy: if you're assigning RFC 1918 non-routable addresses to your clients, you'll also need a network address translation firewall: http://en.wikipedia.org/wiki/Network_address_translation17:55
patdk-lapdhcp server has nothing to do with accessing internet17:56
howdyWell, I know it's to assign ips. But I guess I'm misunderstanding something.17:57
howdysarnold: Thanks.17:59
PoapfelEverytime I try to restart my network I get this error message http://paste42.de/4195/ is there another way to restart the network?18:12
Jeeves_Poapfel: No. They broke networking restart while porting it to upstart18:16
hallynzul: do you have any ideas on bug 1057024 ?  i don't...18:17
uvirtbotLaunchpad bug 1057024 in libvirt "internal error Process exited while reading console log output: char device redirected to /dev/pts/1 error when creating a vm" [High,Confirmed] https://launchpad.net/bugs/105702418:17
hallyni can't reproduce it.  everythign looks kosher18:17
hallynit sure looks like libvirt-qemu user simply can't access /dev/kvm.  but perms are correct18:17
sarnoldhallyn: any AA rejects?18:18
hallynsarnold: hm, i haven't asked for that info, as i don't see how it's possible :)  but i'm getting desparate enough...18:19
zulhallyn: i havent seen that before but this looks suspicious:18:20
zulhttp://pastebin.ubuntu.com/1260491/18:20
hallynzul: i know!  but /dev/kvm is owned by kvm group, with group write perms18:20
hallynpsivaa: hi18:20
psivaahallyn, hi18:20
hallynpsivaa: sarnold was just suggesting maybe there's apparmor perms problem.18:21
hallyncan you pastebin the tail end of /var/log/syslog?18:21
zulhallyn: im asking for the dmesg output as well18:21
psivaasure, 1 sec18:21
hallynzul: psivaa is the bug submitter18:21
zulpsivaa:  oh hi18:21
zulhallyn: can you re-load the module18:22
zuland then restart libvirt18:22
hallynzul: note *i* can't reproduce the bug18:22
zulhallyn: yeah googling doesnt have anything interesting18:23
psivaahallyn, zul https://pastebin.canonical.com/75924/ is the syslog18:23
hallynwait a sec18:23
hallynpsivaa: jinkeys, that requires 2-factor auth for me to read18:24
psivaahallyn, ohh yea, what other form could i paste?18:25
zulpsivaa:  dmesg please18:25
hallynpsivaa: oh hey.  do you by chance have vmware or virtualbox installed?18:26
psivaahallyn, yes, i do have it installed18:26
psivaazul, is canonical pastebin ok for you?18:26
hallyngah!18:26
zulpsivaa:  prefer not :)18:27
hallynpsivaa: can you unload its kernel modules?18:27
psivaahallyn, not sure how to do that :)18:27
hallynwe may want to call this a linux kernel (kvm module) bug, but that'll be the problem18:27
hallynpsivaa: can you pastebin 'lsmod ' output?18:27
hallynor just apt-get purge virtualbox, if you don't actually use it18:27
hallynbut for testing we should be able to just rmmod the module (once we know its name)18:28
smbhallyn, SpamapS, Not sharing patches is a lie. You should for a change read the bug report. It basically now does yank the route cache as it is supposed to18:28
hallynsmb: ?  who is not sharing patches?18:28
smbWith the debug kernel you should actually see it in the logs18:28
psivaazul, hallyn: https://pastebin.canonical.com/75926/ is the dmesg, sorry i dont have anyother means now :$18:28
smbhallyn, Though SpamapS was telling that I would not ;)18:29
smbthough18:29
smb*thought18:29
smbgah18:29
hallynsmb: im' 99% sure he didn't mean whatever he said quite like that18:29
PoapfelJeeves_: ?18:29
Poapfelso there is no way to restart it?18:29
hallynsmb: are you able to/have you been doing a bisect to determine where the bug was introduced or fixed?  should i be trying that?18:29
SpamapSsmb: indeed I was a liar. :)18:29
hallyn(bisecting upstream, not ubuntu kernel)18:30
psivaalsmod https://pastebin.canonical.com/75927/18:30
smbhallyn, I am 100% sure I am overstating the fact ;)18:30
smbThe problem with net is that they a) replaced the whole route cache by something different between 3.5 and 3.618:30
smbThat makes bisecting a major pain in the rectum18:31
SpamapSsmb: I'm still running the affected machine so, do you need any more dmesg's or such?18:31
hallynsmb: right, but i was thinking of bisecting 3.2 .. 3.5 to figure out where it was introduced18:31
hallynsmb: hey do you know offhand the name of the virtualbox kernel module?18:31
smbPlus they have some fixes in the pipe (linux-next) that also targeted a similar sounding issue18:31
Jeeves_Poapfel: You can ifdown, but that will probably disconnect you18:31
Jeeves_screen , ifdown ; ifup mght work18:32
smbhallyn, hm no. Some dkms thing...18:32
hallynsmb: yeah, finding the commit that fixes it is IMO less likely to work :)18:32
hallynok thx,18:32
hallynpsivaa: drat, i can't find the virtual box kernel module in your lsmod list.  Do you mind going through software center and removing virtualbox, to see if that fixes it?18:34
smbhallyn, seems there is 4 of them18:34
smbhallyn, vboxpci, vboxnetadp vboxdrv and vboxnetflt18:34
hallynoddly those aren't apparently loaded though18:34
smbNeither here apparently. I even forgot I installed it once18:35
psivaahallyn, i have purged virtualbox now but still its occurring18:35
hallynpsivaa: after a reboot?18:35
smbhallyn, No this time I am lying18:35
smbOr I cannot type the grep all the times I am trying18:36
hallynsmb: but if you'd like me to try the bisect (starting tonight) i'm happy to try18:36
psivaahallyn, is that ok if we continue a little later or tomorrow :), i need to urgently go out18:36
hallynpsivaa: of course - thanks!18:36
psivaahallyn, sorry aboutt that18:36
smbSpamapS, When things fail for you. Is it always a 1 reference left?18:36
hallyntalk to you tomorrow18:36
SpamapSsmb: yes, though I think that number goes up with the number of containers stopped18:37
smbSpamapS, I believe it was 2 when the route cache is involved (probably a factor of two) but maybe there is another leak left now18:37
Poapfelmy ipv6 connections breaks everytime a few minutes after a reboot, how I am suppose to fix this if I am not able to restart the network?18:37
SpamapSsmb: agreed, I think it was 2 before as well18:38
SpamapSsmb: with #24~smb1 it was 218:39
SpamapSsmb: and with #24~smb2 it was 1, and has been 1 ever since18:40
smbSpamapS, Right that also seemed to be consistent with the testcase for which I do not see a problem anymore.18:40
hallynwoot! progress :)18:40
SpamapSok, so what else bumps the refcount?18:41
smbSpamapS, Could you please post a complete /var/log/syslog file to the bug report18:41
SpamapSsmb: sure, doing that now18:41
smbSpamapS, Everything that uses the netdev18:41
smbSpamapS, Ok, then I can look at it tomorrow18:41
SpamapSsmb: attached18:45
smbSpamapS, thanks!18:46
smbSpamapS, Oh and btw, with the test case and without patches the problem would go away after somethimes up to 5 minutes18:47
smbSpamapS, It would be a valuable info if that also happens for this case18:47
SpamapSsmb: it has not gone away in 5 minutes for me.. but I may be screwing it up by doing another lxc-start (which then gets stuck in disk wait)18:48
SpamapSsmb: I'd swear that this time, with your current patch, it took longer for the unregister_netdevice messages to pop up18:49
smbSpamapS, Yeah, that would add to the theory that we now hit another problem which was hidden by the previous fail.18:50
delinquentmehey all .. I've got a server process I'm running and I've launched it through a SSH connection .. I would like the process to persist after I've closed the terminal18:50
smbThough I need to carefully go through the log there and compare addresses18:51
delinquentmehow can I do this?  ... i thought $ bundle exec trinidad & might do it18:51
delinquentmethat is not the case18:51
SpamapSsmb: are you reproducing locally still btw?18:51
sarnolddelinquentme: investigate screen, tmux, and nohup. nohup is easiest IFF it works.\18:52
SpamapSdelinquentme: if you just want it to keep running and you don't care much about being able to interact with it.. 'nohup programname &' does it18:52
delinquentmeactually I think i got it :D18:52
smbSpamapS, Well for me the problem was sort of fixed. But I only use the test C code and not too many times. So no18:52
SpamapSsmb: ok .. its fairly simple for me to reproduce with lxc-create/lxc-start/lxc-stop18:52
smbSpamapS, I guess I will have to try those steps on further debugging or see what would happen when modifying the test case a bit18:54
SpamapSsmb: sounds like something during the actual machine boot bumps the refcount and then the tear-down is missing that18:57
=== Skaag_ is now known as Skaag
smbSpamapS, Sounds like I should definitely see to be able to reproduce this locally and then enable the ugly warn_on on every get and put.18:59
smbSpamapS, Anyway what is interesting is that stgraber is less likely hitting that but would be doing the same thing...19:00
SpamapSsmb: the dreaded race condition19:00
SpamapSstgraber: ^^ are you testing on a system w/ SSD or slow disk?19:01
SpamapSMy SSD box definitely reproduces 100% while my older laptop sometimes doesn't.. I think.. its all me guessing19:01
smbThe disk would be a less likely suspect but who knows.19:02
SpamapSwell...19:02
SpamapSif things happen in a different order..19:02
SpamapSand there is a missing lock somewhere19:02
SpamapSwould explain a counter skew19:03
SpamapSsmb: I'm thinking the boot and/or shutdown of the container and its network configuration might be racing something else.19:03
SpamapSlike, lxc-wait .. which I realize now is in the mix, I just haven't been considering it part of the equation19:04
smbSpamapS, I would not completely rule it out, its just one suspect that rather comes later to your mind. First with how those refcounts are handled and net involved you would think of rcu and cpu based races...19:05
=== dendrobates is now known as dendro-afk
AresbyI'm considering mv'ing production resources to ubuntu-server.  Been exploring what's "in the release", as well the whole PPA infrastructure.  General question re: kernel -- how "vanilla" upstream are the kernels u-s uses & makes available?  Are they typically UN-patched upstream releases? more in line with Opensuse-esque franken-kernels?  Or something in-between?19:11
Aresby  For my usecase, I'd *prefer* to be as close to upstream kernel + upstream Xen (virtualization is mission-critical here) as possible ...19:11
patdk-laparesby, I don't know anything about suse kernels19:12
patdk-lapshould be just like redhat kernels19:12
patdk-lapa kernel version is picked, and that version is stuck to, and security patchs are backported to it19:12
patdk-lapthere are some custom stuff, but not much19:13
patdk-lapthe custom stuff I know of, is attempting to be ported into the normal kernel19:13
smbAresby, Quite upstream + stable patches. There were one or two patches but those are gone or are not really changing much.19:13
smb(or being separate drivers)19:14
Aresbypatdk-lap: ok, thanks.  I'll continue to read-up.  How amenable to DIY-build/use of newer kernels is U-S?  I assume there's likley PPAs that already do this --- but, if i DIY, I'd like the process to be less filled with distro-specific "gotchas".19:15
Aresbysmb: ARe thos patches Ubuntu-community generated/maintained?  From/thru Canonical?  or from Upstream itself?19:15
patdk-lapI normally just download the source, add my patch into the build19:16
patdk-lapand push it to a ppa :)19:16
patdk-lapsimple19:16
Aresbypatdk-lap: Heh, sure *that* part is.  It's the "Oh, btw, your custom-built kernel is gonna smoke your box" stuff that I'm worried abt ;-)19:17
Aresbyplus the "and don't let the door hit you in the ass on the way out of #irc" Centos-isms ...19:17
smbAresby, Community maintained in some sense I would say. Like aufs/overlayfs, some dm-raid45 one. Probably community in a wider sense.19:18
smbAresby, If you look at our public git trees there is a ubuntu subdir which contains all those. Everything else is more or less like a current upstream stable kernel of the same version19:19
Aresbysmb  ok.  tbh, I *am* banking on the assumption that I don't have to explain to folks in _here_ what 'enterprise' means, or why I might want a custom kernel build -- so "community" is far less of a risk.19:19
=== dendro-afk is now known as dendrobates
AresbyThanks!19:25
uvirtbotNew bug: #1052365 in samba (main) "pas la possibilte d installer derniere version de samba" [Undecided,Invalid] https://launchpad.net/bugs/105236519:26
zapotahso, anyone know if somethings changed with vlan or ifenslave or something with ubuntu networking for my described problem to pop up out of the blue with updates19:28
zapotahin /etc/network/interfaces thers an lacp bond interface over which ive created a few vlan bridges19:31
zapotahafter some updates this past few weeks i encountered a problem today in which i updated the xen hosts and they were apparently unable to create bond0.x subinterfaces corresponding to the vlans19:32
zapotahhad to manually specify the bond0.x subinterfaces for it to work again but i was wondering if theres been some fundamental change to the networking workings as of lately19:33
zapotahanyone?19:34
zapotahanyone at all?19:34
zapotahi lack the ability to troubleshoot the code and the inner workings of the linux networking stack so im asking if anyone would have any insight into this problem19:36
zapotahwe have production systems running with the exact same configuration as the lab setup i updated today and it would be extremely embarassing for them to stop working because of an update19:37
sarnoldzapotah: (if you're completely stuck here, consider also serverfault.com -- feels appropriate to me there, too, unless you've got a debian-specific bug of some sort..)19:39
AresbyIiuc, launchpad is the primary (only?) jumping off point for finding newer-than-release PPAs.  Still getting my sea-legs:  starting with search@launchpad, how do I find a/the "most-likely-to-be-production-reliable" PPA/pkg for a server app?  Let's, e.g., say MySQL v5.6 ...19:47
zapotahsarnold: im not stuck because the way i solved the problem in the lab env propably works for the production env as well.19:52
maswanAresby: production-reliable? then you need to know who runs it and trust them to ship [security] updates at a resonable pace.19:52
patdk-laparesby, percona19:54
zapotahsarnold: my concern is that the problem is more deeply rooted and as I am unable to debug it further than the functionality and how im able to work around the bug im somewhat concerned as to how to make sure the problem wont fatally affect the production systems19:54
Aresbymaswan: Well,  production-reliable-er ... Where I hail from (opensuse) there are different shades of repos -- from the 'official', to 'almost, or will be, official' to end-users' "hobby" repos.  I'm trying to get a sense for what's what @ubuntu.19:55
Aresby  patdk-lap That's not the question -- MySQL is an example.  I'm asking about ubuntu repos19:55
patdk-lapbut if your looking for, production/stable/reliable, you are NOT looking for mysql 5.619:55
patdk-laparesby, heh?19:55
sarnoldzapotah: makes sense :) It's way outside of my experience, and I wanted to make sure you weren't stuck with something bad ;)19:55
patdk-lapyou aren't making sense, if it isn't in ubuntu main repo, it's not going be production/stable/reliable/secutity patched19:56
patdk-lapunless it's done via a 3rd party19:56
Aresbypatdk-lap: Great.  Pick another app -- that's newer than what ubuntu-release ships.  The specific app is irrelevant to my question.19:56
patdk-lapand your completely on your own there19:56
patdk-lapyes, and your going have to either do it yourself, or find someone you trust/pay to do it19:56
patdk-lapit's the same way for rhel19:57
patdk-lapno difference19:57
AresbySo @ubuntu it's either in "main" or it's not dealt with in bugs/lists/community etc?19:57
=== Nafallo is now known as ubot2
patdk-lapmain is handled19:58
maswanpatdk-lap: eh, some of it can be decently supported. like pitti's postgresqls.19:58
patdk-lapanything else is handled by whoever handles it :)19:58
=== ubot2 is now known as Nafallo
maswanbut yeah, if you need something newer than currently released, you're usually better off waiting 6 months and jumping onto a non-LTS19:59
patdk-laprhel is the same, they handle what is in their repo, what is outside it, they don't handle, epel, or any other repo you locate19:59
Aresbymaswan: Assuming that "pitti's postgresqls" means a PPAC that's widely adopted/used, and/or built by someone s with good track-record, how does one go about find the "pitti-ish" repos?20:00
patdk-lapif you want newer than what is supported, it's not going be production/stable/... by ubuntu20:00
zapotahI know that the people on this channel are propably not financially invested in the development of ubuntu so theyre not bound to give and find answers to difficult problems but if canonical makes folks to believe that ubuntu is an enterprise ready platform i wish problems like this wouldnt rise no matter what20:01
maswanAresby: By knowing and maybe having a chat with the maintainer.20:01
patdk-lapzapotah, I can't help you, I have never had your issue, my vlans and bonded interfaces work fine20:02
Aresbymaswan: Not ideal, but fair/reasonable point.  Thanks.20:02
zapotahpatdk-lap: any idea what couldve caused this kind of problem with a xen host?20:02
zapotahits work-aroundable sure20:03
patdk-lapheh xen?20:03
patdk-laptry simplifing the issue20:03
maswanAresby: some might have stated policies. but in general you don't want to run production services on things outside the dist20:03
patdk-lapyour throwing too many *issues* into it20:03
zapotahpatdk-lap: how come?20:03
patdk-lapto hard to know *who* or *what* broke it20:03
patdk-lapxen has been gone from ubuntu for a long time now20:04
Aresbymaswan: Sure.  Just a matter of "outside the dist" means different things @ different distros -- and I'm learning @ubuntu.20:04
zapotahpatdk-lap: uhh how come? the latest xen has been provided by the main repo until a few months ago20:04
patdk-lapanything outside the dist, would be, not by default included :)20:04
maswanAresby: there is a bit of difference between "main" and "universe" too, "main" is promised support from canonical, "universe" is "community supported". real security fixes go fine in universe, but getting bug fixes through kan be iffy at times depending on who is handling it etc.20:05
zapotahhavent checked lately but xen 4.1.2 was provided by the main repo until just a little while ago20:06
zapotahi know ubuntu favors kvm nowadays20:06
patdk-lapI dropped all xen support back when it went out in 10.0420:06
patdk-lapbut still, does the issue only happen when using xen?20:07
patdk-lapdo you know?20:07
zapotahunfortunately i dont have a non-hypervisor host to make sure20:07
Aresbyzapotah: xen 4.2 builds and functions cleanly on Ubuntu 12, fwiw.  One of the reasons I'm looking at switching TO ubuntu.  this was my starting point: https://help.ubuntu.com/community/Xen20:08
zapotahAresby: i know ive tried20:08
zapotahAresby: xenapi and ovmf support at build requires some modifying of the Makefiles and env variable¨s20:11
maswanAresby: That said, if you are really needing something not in the dist, using a ppa is a good starting point though, and a good starting point if you need to build your own packages.20:11
Aresbymaswan: Noted, thanks.20:12
maswanAresby: you just want to be sure you're following upstream's security announces etc in case the ppa goes stale20:12
Aresbymaswan: yep20:13
Aresbyzapotah: there _were_ some mods required in my 1st runthroughs.  In general, it seems that Xen upstream's "most native" dev env is Debian.  Which, iiuc, should make Ubuntu easily doable.20:14
Aresbymaswan: "really needing something" varies.  I'm certainly not a glutton for punishment, but it's oft-happened that an 'official repo' @distro has pkg-brokenness with little interest in, or urgency about, pushing fixes.  When that happens, I look for those "pitti-ish" repos, or DIY ...20:17
=== cpg|away is now known as cpg
=== Ursinha_ is now known as Ursinha
zapotahAresby: i think it required the modifying of the static GCC44 variable and the nonfuncioning autodetection of the XML anc CURL configuration variables20:23
zapotahand with ovmf the version difference of GCC between debian and ubuntu20:24
zapotahbut after dealing with those it compiled without problems20:26
Aresbyzapotah: yep, reading Xen@Debian info atm ...20:26
zapotahashamed i have to admit i didnt have time to actually try it out if it actually worked20:27
zapotahbut i would guess it did20:27
zapotahlibvirt has some problems compiling atm with xen 4.2 but i guess everyonell have to wait for them to patch that atm20:30
zapotahproblem with libxl.h api20:30
zapotahtried to debug that but again it goes above my field of expertise20:31
Aresbyzapotah libxl challenges seem to be vendor-agnostic; there's enough to go around.  My hope is getting closer to upstream -- @ both kernel & xen -- will simplify matters.20:33
=== mcclurmc_away is now known as mcclurmc
=== cpg is now known as cpg|away
=== cpg|away is now known as cpg
=== Malediction_ is now known as Malediction
=== klaas_ is now known as klaas

Generated by irclog2html.py 2.7 by Marius Gedminas - find it at mg.pov.lt!