[00:31] when i login with ldap auth onto ubuntu.. my home directory is getting made with the wrong permissions :( i don't know how to even begin to tell you what i need to for you to help trouble shoot :) just commiserate with me for now! [00:37] gah [00:38] andygraybeal: which permissions does it get? which permissions would you like it to get instead? [00:38] i found the problem [00:38] andygraybeal: is there anything educational in /var/log/ that might indicate a config to change? [00:38] oh yay :) [00:38] two of the users in my ldap directory have the same UID number.... because did an import wrong [00:39] err.. i said the wrong thing.. i meant 'owner' and not permissions [00:39] thank you for responding [00:40] ugh, I've even seen that one before, mismatched local vs ldap-provided uids... ls -l always looked fine, but ls -ln showed te problem clearly.... [00:40] ls -ln ..hmmmmm [00:41] aah you rock, thank you for that [00:41] n means numbers? [00:41] yeah [00:41] nice [00:41] similar to netstat or some other commands that could look up numbers to names or not... [00:41] okay, i'm not usd to the convention [00:41] i'm still new-ish [00:42] even tohugh i've used this for more than 10 yrs [00:42] well, like many things on unix, you learn one and find it's different elsewhere :) [00:42] ah, then you're already familiar with that, hehe :) [00:43] well really i'm 34.. i startd in highschool-ish with bsd of some sort [00:43] anyway.. it's all good [00:43] i'm still totally new :) [00:44] this is my first time trying to configure ldap auth client logons :) [00:44] kerberos is still another bag of worms to me. [00:44] even though i know i need to understand it. [00:51] I've been told that growing the root volume on an EC2 instance takes hours, if impossible...is this true? Any assistance/guidance/etc? [00:53] i have an ec2 instance too :) [00:54] what storage container type do you have? [00:54] i have the simple basic one [00:54] i forget what it's called [00:59] amazon naming scheme is a little rediculous [01:02] bmorriso, where is this root volume located? [01:03] * Patrickdk always found changing out a ebs only took minutes [01:03] yea, i think i have ebs [01:03] ebs is the default in ubuntu image [01:04] ebs is not a simple/basic one though :) [01:04] but it is, the safer one [01:05] Patrickdk, it is ebs /dev/sda1 [01:05] it's only 8G and needs to be grown [01:07] Does anyone have a good script to rsync an entire Ubuntu server in full? [01:07] For super-easy referencing or restore [01:11] okay, i think the owner is set correctly on my home folder, now i'm getting an auth error saying 'nologin' where do i change this to say /bin/bash (or something... i'm assuming) [01:15] andygraybeal, chsh? [01:16] Patrickdk, hmm.. okay [01:16] i'm trying to login auth from a ldap server. [01:17] so i'm a little confused. [01:17] chsh? [01:17] if it doesn't work, your ldap config is highly unusual [01:17] no, i understand. [01:18] :) [01:18] i'm sure it is unusual [01:19] it says the 'user' doesn't exist in passwd [01:19] it's an ldap user... in my ldap config i have an entry: 'loginshell' it's value is /bin/bash [01:21] i've never ever been able to login with ldap client auth in my life.... if i get this it will be an event. [01:21] login with ldap client? [01:21] you just need to configure your pam correctly [01:22] ah pam [01:22] pam i sso evil [01:22] thank you for the hint though [01:22] definitely underdocumented.. === r0tha is now known as whois === whois is now known as r0tha [01:37] i apologize, i'm reading this: https://help.ubuntu.com/community/LDAPClientAuthentication [01:37] it doesn't say anything about a shell [01:38] andygraybeal, that works, but it gives you no mangement, except doing it directly via ldap [01:38] atleast I think that is how it is [01:38] i have an entry in ldap, 'loginshell' = '/bin/bash' .. i hoped that'd cover it :( [01:38] but ihave no idea, i'm grasping :) [01:39] i thin everythign is or should be managed from my ldap :) [01:39] no, that isn't the issue [01:39] the issue is, do you want it to be read only [01:39] or do you want normal tools to update it, like passwd, chsh, adduser, ... [01:40] if not, you will have to use or create your own user admin system [01:40] well, i am using zentyal as my backend. [01:40] it's got user mgmt built in. if your not familiar with it.. it's a webified server admin thing. [01:40] personally I perfer to build them myself [01:41] i know, i know, everyone does. i'm not exactly smart. [01:41] i'm not exactly sure how this is going to roll... i was hoping to give it a test drive [01:42] see how i feel about it [01:43] any thoughts you have would be helpful, if you have any more. [01:43] omg.. it works [01:44] i don't know why it didn't work for a second there.. but it is working now.. holy crap!!!!! [01:44] this is the first time i ever got this to work! [01:44] how exciting [01:44] i don't understand any of it :) === DaIRCKing is now known as GTAXL [02:31] anyway, i'm celebrating :) [03:18] i have a server loaded with 13.04 beta 2, just installed vsftpd and enabled local user (after restarting service)but i am not able to log in === Laogeodritt| is now known as Laogeodritt [03:58] Logging into my server and it has started being very slow to give me a prompt [03:59] the last line from the ssh login is [03:59] debug1: Entering interactive session. [03:59] so it isn't actually connecting thats slow [04:00] happens when I su to another user as well [04:01] about 10 seconds [04:07] it happens after the motd [04:33] How would anyone recommend learning more about ubuntu server, are there any lessons or tutorials online I should visit? [04:34] EvilEyeCorp: The server guide (mentioned in the channel topic) is a good place to start. [04:34] lol thanks [04:35] You'd be amazed how often people just assume some random page on the internet is better than the actual documentation. [04:35] Don't worry about it. [04:37] Yeah I just dove into it about a week ago and I am just getting the basics down [05:35] greetings I am having some troule connecting via ssh from outside my local network. I have port 22 forwarded. I am currently running 4 csgo servers and a minecraft server. I can ping my server from outside. I can ssh into server from within my local network no worries. Any suggestions on where to look. When I try to connect from outside I get "No route to host" [06:25] hi all === acrocity_ is now known as acrocity [07:15] My name is Olivier and since a couple of day my Ubuntu Server 12.10 is having a problems [07:16] I have a headless server which I could reach with putty [07:16] I had it configured as a LAMP server [07:16] with Webmin configured on [07:17] When I connect a screen I see the server booting (RAM tests, disk mounting, ... all going fine) [07:18] but after that nothing [07:18] no connection with any tool anymore ftp,putty,webmin not reachable [07:19] Can anybody help me on how to debug this issue [07:19] This is the best I can tell about my problem, if more info is needed feel free to ask [07:21] my machine is a SIEMENS primergy econel 100 === smb` is now known as smb === rbasak-test is now known as rbasak [08:50] smoser, roaksoax: https://wiki.ubuntu.com/RaringRingtail/TechnicalOverview#Ubuntu_Server [08:50] can you guys take a run at MAAS and simple streams please === cod3r is now known as baba [12:12] How can i find out what's causing my system to "block" tty1 on ubuntu server 12.10- there's no login screen after bootup. i can type but i can login only by accessing some other tty [12:13] the last output is "Skipping profile /etc/apparmor.d/disable: usr.sbin.rsyslogd " [12:22] I'll try to disable update-motd on bootup... [12:28] it helps not.. gets stuck right after apparmor or during [12:29] check your upstart logs [12:30] (and check if the tty1 job is even there etc) [12:42] jamespage: ping https://code.launchpad.net/~zulcss/nova/nova-final/+merge/160626 [12:49] zul " * debian/control: Add iptables dependency." [12:49] I thought the missing dep was ebtables? [12:49] or was that a typo? [12:49] its for nova-api [12:50] jamespage: its in the api-metadata.filters [12:51] hi, having trouble getting apache running on ubuntu server [12:51] do i need to change any permissions for the default setup to work [12:52] using var/www [12:55] jon__: No, it should just work. [12:55] hmm [12:55] jon__: Have you looked at /var/log/apache2/error.log ? [12:55] ok [12:55] no [12:55] i will [12:56] basically i have cloud server with rackspace [12:56] i installed apache [12:56] pointed my nameservers at rackspace dns [12:57] but when i go to required domain in broswer get an error saying firefox cant find server [12:58] ive used dig / whois etc and seems ok there [12:58] so thinking its my apache setup [12:59] jon__: does it work by ip address? [12:59] zul, +1 [12:59] jamespage: thanks [12:59] just giong to do a test build before uploading === hachre1 is now known as hachre [13:02] pmatulis: yes it does [13:02] it seems [13:04] hi guys... What's the best free program to design networks ?? [13:04] Diegonat: whiteboard and marker [13:05] <[tla]> hi. i have a 12.10 server install and have accidentally overwritten the passwd and shadow files. passwd- is there but obviously i cannot move it back and pwconv because i cant sudo anymore. concerned that as the root volume is on device mapper i may not be able to recover by rebooting into recovery mode kernel. any advice / guidence appreciated before i reboot. :s [13:05] Nafallo, ahahahah [13:05] come on [13:05] you know what I mean =) [13:05] thank you pmatulis [13:05] no seriously... that's my advice when designing networks :-) [13:06] i just need to figure out why domain name doesnt resolve [13:06] Nafallo, tell me the second best then =D [13:07] because i cannot take the whiteboard with me [13:07] =) [13:07] Diegonat: spreadsheet, pencil and rubber :-) [13:07] COME ON!! [13:07] =D [13:08] Diegonat: dia? gns3? [13:08] depending on what you're trying to achieve. === dduffey_afk is now known as dduffey [13:12] jon__: it's a DNS problem. either your configuration (nothing to do with apache btw) or the DNS servers themselves do not have the answer to your query. ① try to query some other name (ex: host google.com) and ② did you tell the DNS servers about your domain name? [13:12] ...either your configuration is wrong (nothing... [13:29] roy_k? [13:29] RoyK? [13:29] sopp [13:44] zul: hey there. I was wondering if you made any progress on that libvirt-lxcapi driver? (just wondering as it's now on the LXC 1.0 roadmap) [13:44] adam_g/jamespage: I have more cloud updates for you when you get a chance http://people.canonical.com/~chucks/ca [13:45] stgraber: no ive been busy with other things [13:45] patdk-wk: ? [13:45] pm === wedgwood_away is now known as wedgwood [14:06] I got a question about raid configuration [14:12] LargePrime: you can share it and see if someone have an answer [14:12] has* [14:12] ya. just getting my thoughts together... [14:13] I am ordering a dedicated server with 2 SSDs [14:13] I would like to configur them with part of the space as raid 1 and the rest raid 0 [14:13] and have no idea what i am doing [14:14] so 1) can this me done? 2) guide? link? what to google? [14:34] yes you can do it [14:34] butwhy [14:35] just make two partitions on each drive, same layout, and then make a mdraid from one pair of partiton with raid1 and the other with raid0 [14:35] mdadm [14:35] is the tool [14:36] haha [14:36] oops [14:36] mt [14:39] LargePrime: . [14:41] ok [14:41] again I have no idea [14:41] so if that is what i want to do.... is there a guide? [14:55] zul: to check, python-melange is also deprecated ? [14:55] Daviey: it is [15:15] matsubara: ping [15:15] matsubara: are you testing maas on raring isos? [15:16] plars, yes [15:16] hehe I think you are the third person that asked me that today [15:16] matsubara: you're very popular today I guess :) [15:17] matsubara: ok, some people were wondering about results for it [15:17] jamespage, looking at that bug you commented: https://bugs.launchpad.net/keystone/+bug/1073569 [15:17] Launchpad bug 1073569 in nova "Jenkins jobs fail because of incompatibility between sqlalchemy-migrate and the newest sqlalchemy-0.8.0b1" [Undecided,Fix committed] [15:17] plars, our CI tests does most of the testing described in the wiki page, but I'll try it manually installing the ISO from scratch just to be sure (and cover some other test cases that are not covered by CI) [15:18] there is a CVE reference for CVE-2012-4573 [15:18] yolanda: The v1 API in OpenStack Glance Grizzly, Folsom (2012.2), and Essex (2012.1) allows remote authenticated users to delete arbitrary non-protected images via an image deletion request, a different vulnerability than CVE-2012-5482. (http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-4573) [15:20] matsubara: but does your ci test install from the latest raring iso? [15:20] matsubara: with iso testing, we want to obviously check what's really on the iso, as opposed to what *should* be on it :) [15:21] yolanda, I see - well the CVE references on that bug look wonky [15:22] plars, it uses a testbed for each release. the test bed comes from: CLOUDIMGURL=http://cloud-images.ubuntu.com/$RELEASE/current/ [15:22] which I suspect is not what you want tested [15:22] ok, so i remove it? [15:23] yolanda, yeah [15:23] yolanda, I think something odd happened in LP - https://bugs.launchpad.net/bugs/cve/2012-4573 [15:23] there is no way its that many bugs :-) [15:23] yolanda, nova looks OK btw [15:24] nice! [15:26] i did a minor fix also in horizon now, the same problem with email, i have something misconfigured [15:27] jamespage: I see your name in rsyslog's changelog; are you still looking afther this pkg ? [15:27] caribouwell I touched it once [15:27] caribou, ^^ [15:27] jamespage: too bad for you ;-) [15:28] whats up? [15:28] jamespage: I got something fixed upstream that I'd like to have into our pkg [15:28] caribou, critical bug? [15:28] jamespage: we provide 5.8.11 which is no longer supported [15:28] jamespage: [15:29] jamespage: $PreserveFQDN functionality is broken [15:30] yolanda, one comment on keystone [15:38] jamespage, i'll recheck it [15:39] for some reason quilt showed me that the patch wasn't applying, but maybe there was some problem with the merge [15:39] jamespage: remember bug #1066845 [15:39] Launchpad bug 1066845 in nova "nova-novncproxy is not running; Suggest: novnc should be Depends" [High,Fix released] https://launchpad.net/bugs/1066845 [15:40] caribou, I do yes [15:40] jamespage: it's now in Raring, should I do the SRU process even if it's in cloud-archive ? [15:41] caribou, well quantal folsom packages are currently verified for most recent SRU and should be accepted +7 days [15:41] so we could stack it after that [15:41] if its important enought to SRU [15:41] jamespage: what about precise , [15:41] ? [15:42] caribou, folsom packages go through quantal SRU process before going to precise [15:42] cloud archive that is [15:42] jamespage: ok, I see [15:42] jamespage: so what should I do ? format the bug for SRU ? [15:43] caribou, we kept getting bumped by security fixes - which is why the last lot have been pending for 2 months [15:43] jamespage: yeah, I noticed that [15:43] caribou, I would really debate whether its SRU worthy TBH [15:44] caribou, can you sit on it for a bit - there is another point release for folsom to get out after the current one [15:44] I'll make sure it get swept up with that [15:44] jamespage: sure [15:46] zul: stgraber: drat, my dnsmasq.d 'fix' for libvirt in raring and precise are wrong. [15:46] *sigh* [15:46] whats wrong/ [15:48] jamespage: ok, will do. thanks [15:48] /etc/dnsmasq.d-available was being created in debian/tmp, never got cpied into the package [15:48] got my first 0-day raring sru [15:49] (the fix is trivial, at least) [15:54] jamespage, i refreshed the patch, actually only a bit of all was needed, the other bits were already upstream [15:59] jamespage, i see your approval, so i do the merge? not sure about permissions [16:00] yolanda, you don't need todo anything for approved things - I'll take care of the upload and pushes as sponsor [16:01] so i link my branches to the tracking bug? [16:10] When will 13.04 be released? [16:10] Tomorrow 00.00? [16:10] halvors: tomorrow, when its done. [16:11] Generally sometime after dinner in the UK [16:27] I've just built a VM using KVM but am unable to ssh into the machine === Jikan is now known as Jikai [16:47] roaksoax: can you look at bug 1172336 urgently please [16:47] Launchpad bug 1172336 in maas "MAAS server reference to AvahiBoot wiki page that does not exist" [Undecided,New] https://launchpad.net/bugs/1172336 [16:47] roaksoax: I'd like to understand where the page went. [16:48] parallel21: I assume you've checked the obvious (that sshd is running in the guest) [16:48] Daviey: i think upostream never removed this message [16:48] Daviey: since we decided to drop the avahi boot image [16:48] markthomas: I have no way of doing so [16:48] to my knowledge [16:48] didn't we? [16:49] parallel21: I believe there's a command from the host to access the VM directly. One sec. [16:49] roaksoax: Hmm, possibly [16:50] parallel21: Do you have virsh? [16:50] markthomas: yes [16:50] I believe you can use virsh to access the console. [16:50] Daviey: yeah, we did drop the image to do this... (Remember it was the image to be placed on USB stick and make it discover a MAAS server and enlist the machjine)) [16:50] markthomas: Is this it? virsh --connect qemu+ssh://user@host/system [16:51] parallel21: Let me check my notes [16:51] parallel21: try virsh console [16:51] back in 2 min. === Jikai is now known as Jikan [16:53] roaksoax: well, I don't think it is a release blocker. Can you reintroduce a wiki page explaining that the functionality is deprecated, and raise an upstream task? [16:54] Daviey: Already in the process :) [16:55] perfect! [16:55] markthomas: "Escape character is ^]" "error: internal error cannot find character device (null)" [16:56] parallel21: Hmm... [16:56] one sec [17:02] I found a tip online saying I need to add a serial console declaration in the xml file [17:03] I've edited the vm using "virsh edit vm3" [17:03] But when I boot the vm it rewrites the xml file [17:04] parallel21: the changes made with virsh edit don't survive a reboot? [17:07] trying virsh reboot now [17:07] Yeah, my edits never take [17:07] Hmm... [17:08] The vm is running: That's when I do "virsh edit vm3" Make my changes and save [17:08] Could it be the xml is not being placed in the right place [17:10] I wouldn't think so. Where do you keep the XML? [17:10] anyone here that knows where mdadm is initialized, as in finding raids and assembling them? nested raids are broken and seem to be broken since at least precise. see bug 1171945 [17:10] Launchpad bug 1171945 in mdadm "Nested RAID levels aren't started after reboot" [Undecided,Confirmed] https://launchpad.net/bugs/1171945 [17:10] It's just the a tmp file. "/tmp/virshtY9V2t.xml" [17:13] RoyK: as far as I know we only support 0, 1, 5, 6, 10 raid levels, the rest is questionable in its usefulness. [17:13] RoyK: my recommendation to use LVM instead of "0" level nested or not, and that works quite well. [17:14] parallel21: try virsh dumpxml, then redirect to a file. Edit the file, and run virsh define against the file. Not sure if that will work, but I don't konw why your changes are not persisting. [17:14] parallel21: Actually, if you have the XML in tmp, skip the first part. Do the virsh define against your edited file. [17:16] parallel21: meanwhile, let me ask you this: do you have access to a system with xorg and virt-manager installed? [17:18] markthomas: I do not. I was hoping to be able to do it all through the command-line. I found my error, looks like it was getting compiled into the xml file. But still hasn't solved the "Escape character is ^]" error [17:18] parallel21: Yeah, we need to try to connect to the console. Without virt-manager, we'll have to try to do this the hard way [17:20] I have this error when using the virsh console command: "qemuDomainOpenConsole:10906 : internal error cannot find character device (null)" from /var/log/libvirt/libvirtd.log [17:24] Success! kinda [17:25] markthomas: I did the dumpxml to a different file. Edited that file and redefine the vm using that xml [17:25] parallel21: can you post some of your /var/log/libvirt excerpts to pastepin.ubuntu.com? [17:27] http://pastebin.ubuntu.com/5598873/ [17:28] not it hangs at virsh console [17:31] parallel21: looking into this... [17:32] markthomas: wow, parallel21's logs sure look ugly. I don't know where you are in debugging it, but perhaps some debsums disk-checking would be useful... [17:33] sarnold: thanks. Haven't gotten too far with it, yet. [17:33] markthomas: thanks :) [17:33] Running virsh ttyconsole vm3 returns /dev/pts/4 [17:37] Working on a shell script, how do I echo a variable with other text? Does this look correct? echo "The backups were succesfully copied from $backup_files to $destination [17:37] Praxi: Yes. You may also want to check out #bash, and the links in the topic of #bash [17:38] its own channel, well ok then! ty Pici ! [17:39] parallel21: let's back up a step and try sarnold's suggestion: Run debsums against your qemu-kvm package, and other kvm-related packages you have installed. [17:41] parallel21: and libvirt-bin, libvirt0, etc [17:42] Is there a way to list all kvm related packages? [17:42] debsums for libvirt-bin, libvirt0, kvm all pass with OK === matsubara is now known as matsubara-afk [17:43] parallel21: if there is one, I don't know it. Just apt-cache depends or whatever it is. [17:43] Okay. One sec. [17:44] roaksoax, matsubara-afk: fighting with trying to get maas to do something for me here, in an admitedly less than ideal setup. I've got it at least seeming to respond to the tftp request when I boot a machine, but it seems to timeout. Any logs I can look at? nothing seems to show up under /var/log/maas/* that I can tell [17:47] markthomas: I just ran debsums on everything and everything checks out [17:47] parallel21: Okay. Well, one sec. I may have an idea, assuming the VM works properly. [17:48] sarnold: do you know if KVM starts a VNC server process for a guest automatically? [17:49] markthomas: I think it only creates the vnc if you pass -vnc on the command line [17:49] markthomas: at least, the manpage says something about "normally, SDL is used .." [17:49] .. and my running VMs all have -vnc on the command line [17:49] sarnold: Merci. [17:50] I could rebuild the instance passing the command [17:50] parallel21: Can you restart your VM with -vnc so we can try to connect with a VNC viewer on another box? [17:50] good. [17:50] Could I just restart? Or does it require a rebuild? [17:51] plars: pserv.log maas.log [17:51] plars: did you run maas-import-pxe-files? [17:52] parallel21,markthomas: you'll need a argument to -vnc as well, I think it wants the IP and X display number to use.. e.g. -vnc 127.0.0.1:4 [17:52] roaksoax: I did [17:53] roaksoax: both of those are empty [17:53] sarnold, parallel21: I believe if you include something like the following in the devices section in your XML it will achieve the same thing: [17:53] [17:55] markthomas: woot :) [17:55] This is the xml file running [17:55] http://pastebin.ubuntu.com/5598942/ [17:55] sarnold: I had a guest that was built with virt-manager lying around. Was just trying to figure out how it does what it does. [17:56] parallel21: That will work. If you can grab a box with any GUI and VNC viewer installed, you can tunnel a VNC session over SSH and you won't have to change the listen address. [17:56] I think. [17:56] plars: ok i';m gonna restart the tests since i've been getting pulled to bugs [17:56] plars: in what test are you? [17:58] I'll need to add a firewall rule for my machine to the server. What port does vnc run by default? [17:58] roaksoax: well, I was mostly just going through the install one, but wanted to see if I could take it a step further and actually get it talking [17:58] 5900 it looks like [17:59] clear [17:59] ls [17:59] err [17:59] smoser: do we still a maas devenv? [17:59] we do right? [17:59] plars: yeah just send me the logs [17:59] parallel21: You shouldn't need a firewall rule if you tunnel over SSH. The answer to your question is 5900-590x depending on the display number. Should be :0 in this case, so 5900. [18:00] roaksoax: the logs are empty [18:00] plars: weird... are you sure they pxe boot from maas [18:00] plars: can you send me a screenshot? [18:01] xnox: erm - it works with lucid === Ursinha is now known as Ursinha-afk [18:02] Does the vnc client allow ssh tunneling? or do I setup it up like so " ssh -L 5900:localhost:5900 -N -f -l user hostname" [18:03] RoyK: sure. not everything that works or worked is inherently supported. Can you please tell me why you use "0" level instead of lvm? [18:03] RoyK: with or without RAID levels for redundancy. [18:04] parallel21: I believe so [18:04] xnox: well, it's rather useful, raid-0 on top of raid-5 will redistribute the data if the raid is extended. afaik lvm will not [18:05] xnox: also, it doesn't make sense of not supporting something that works, and worked in previous versions of ubuntu === cmagina_away is now known as cmagina [18:07] can I see the reason for rejection of juju-core in raring anywhere? [18:07] roaksoax, we dont relaly have a maas devenv. virtual-maas really took over that need. [18:07] xnox: ^maybe you know? last time I just got an email, and I wasn't the owner of the packaging branch for this one [18:07] smoser: yeah the only problem is that virtual maas depends on juju :) [18:07] mgz: Yes [18:08] mgz: #ubuntu-release and the FFE tracking bug [18:08] why do you think virtual maas depends on juju? [18:08] ah. for setup. i see. [18:09] mgz: many reasons. But none of them are fatal, in a sense they should be fixed and reuploaded and accepted as an sru to introduce that new package. [18:09] yeah, we wanted to separate that out. [18:09] mgz: there is no ultimate requirement to have it in the release pocket. [18:09] ah, the bug gets updated? didn't last time... [18:09] mgz: There was bit of a bun fight both on the bug and in #ubuntu-release [18:10] mgz: it's irregular. But SRU/release are happy to introduce the new source package juju-core as an SRU, such that it's top-notch the first time people can install it from the supported archive. [18:10] (teams that is) [18:11] oh, and isn't the bug fun... [18:12] mgz: i'm just relaying the discussions i have overheard in #ubuntu-release and further debates around the table here. [18:12] I [18:12] I'll read the log [18:12] smoser: yeah, well In my case I can setup my own env pretty quickly, but test cases such as plars might be more complicated [18:12] mgz: no problem. [18:13] markthomas: I'm on a mac. I have vnc-viewer. I've tunnel the port over using ssh. I get a warning that this connection will be unencrypted without a vnc license. I hit continue and it connects briefly and then closes the connection [18:13] parallel21: try Chicken of the VNC. I find it less problematic than others like RealVNC Viewer. [18:13] parallel21: free to download, and does work with KVM [18:14] markthomas: will do [18:15] So this must be the problem [18:15] http://i.imgur.com/s2ulMiD.png [18:16] parallel21: your VM is frelled. [18:16] So rebuild [18:17] parallel21: looks that way. Did it have anything important on it that wasn't backed up? [18:17] markthomas: Nay… this was just a test setup. Is there a place I can find templates to work from? I'm looking to setup a vm running just nginx and php on a single core [18:20] markthomas: this is my build command http://pastebin.ubuntu.com/5599005/ [18:21] parallel21: I haven't used vmbuilder. I'll have to look into it. [18:21] What do you use? [18:21] roaksoax, plars http://bazaar.launchpad.net/~smoser/maas/maas-pkg-test/files [18:21] i'm following that right now for testing raring [18:22] parallel21: I've been using virt-manager to build from ISO for the guests I have. [18:22] zul, those CA packages LGTM [18:22] parallel21: but it looks like it's time for me to learn vmbuilder [18:22] adam_g: cool thanks [18:24] markthomas: I'm gonna rebuild once more and see if I get a working formula down [18:32] Daviey: ping can we can cinder and nova through the queue please? they contain an upstart typo and fixes for the CA [18:32] pmatulis: hi [18:33] smoser: ah, this looks useful [18:33] smoser: do these still work on raring? [18:33] i got most of the way through before a system hung (it was an instance) [18:35] zul: looking [18:36] zul: i need a bug for iptables dependency [18:39] Daviey: damn it [18:39] do you want me to make one now/ [18:40] zul: yes please. It's far too late to not have an upload without a decent bug [18:44] Daviey: coming right up [18:47] Daviey: so i made a boo boo...adam_g already +1 while it was still stuck in the queue so the staging ppa has the changelog without the bug number can we remove the old one from the ppa and i can reupload it? [18:49] zul: it's not possible to upload the identical version. You will need to make it ~cloud1 [18:50] Daviey: ok will do [18:50] (which you can just do) [18:52] zul: can you add a bit more meat to the iptables bug please === matsubara-afk is now known as matsubara [19:02] plars, do you have the dhcp server running? === medberry is now known as med_ [19:03] matsubara: I do [19:05] plars, and your node get an ip address but then doesn't get the image to pxe boot the node? [19:08] matsubara: right, it gets an ip in the range I specified, tftp starts, then after a few seconds I get "TFTP open timeout" [19:09] plars, did you run maas-import-pxe-files? [19:09] yes [19:09] did it finish successfully? what do you get in pserv.log? [19:09] matsubara: nothing in pserv.log - it's empty [19:09] when the node does the tftp request, what shows up in the pserv.log? [19:09] oh [19:10] I think I've seen that before. can't remember what the issue was. /me thinks [19:11] plars, what do you have in your /etc/maas/dhcpd.conf? [19:11] matsubara: In the interest of full disclosure, I *do* have another dhcp server on the network (my router) which I haven't touched. But the ip I get every time is the first one from the range that I specified in maas, and it didn't even start to dhcp/tftp from netboot until I installed maas-dhcp and set that up [19:12] plars, I've seen the TFTP open timeout issue when the next-server is set to 127.0.0.1 in the dhcpd.conf [19:12] did you run sudo dpkg-reconfigure maas and changed the URL for the pxe server? [19:12] matsubara: http://paste.ubuntu.com/5599118/ [19:13] hmm... no I didn't === Ursinha-afk is now known as Ursinha [19:13] I never saw anything about running dpkg-reconfigure, maybe I overlooked it [19:13] plars, the package might pick the wrong interface during install [19:14] matsubara: it doesn't ask me for anything [19:15] plars, sorry, dpkg-reconfigure maas-region-controller [19:20] no effect after setting it there [19:20] I don't seem to have a next-server in that dhcpd.conf [19:21] plars, I'm setting up the VM so I can try to reproduce. just a minute [19:24] zul, whats the point of symlinking from /etc/bash_completion.d/ to /usr/share/doc/python-novaclient? why not just install the completion file into /etc/bash_completion.d/? [19:24] adam_g: thats the way people do it apparently [19:27] plars, so you have two dhcp servers in the network segment? http://www.bootix.com/support/problems_solutions/pxe_e32_tftp_open_timeout.html says having the dhcp server running on different machines than the one the tftp is running from might cause the timeout problem [19:27] could you try adding next-server 192.168.1.1 (assuming this is your pxe server address), restart maas-dhcp and then reboot the node? [19:27] matsubara: the dhcp server I'm getting the ip from is *definitely* maas though [19:27] plars, yeah, that's odd indeed [19:28] according to the page above tftp client should assume the tftp server is the same it got its ip from [19:29] plars, maybe a firewall rule is blocking the tftp requests? [19:30] Oh dear. You are seeing a timeout? [19:31] matsubara: not a firewall between these systems, all on the same subnet [19:31] plars: What hardware is the client? [19:31] Daviey: don't get too paranoid just yet, this is my first time really trying to set up maas [19:31] Daviey: a spare laptop I have around here for testing [19:32] plars: So, it could be buggy pxe implementation. We had this with an enterprise grade server, https://bugs.launchpad.net/maas/+bug/1155556 [19:32] Launchpad bug 1155556 in python-tx-tftp "HP ProLiant DL380 G7 tftps kernel, but initrd tracebacks in tftp server. DL380 G6 succeeds." [Undecided,Fix released] [19:34] interesting, not sure if I have another machine here I can use at the moment to try === Miaoyie is now known as nouitfvf [19:55] markthomas: I have since restart the process and I dunno what I've done differently. But everything seems to work. I think I didn't powerdown a machine one time and instead used the destroy to power down it. Anyway… thanks for all the help! [19:56] parallel21: Glad you got it figured out. [20:18] ima ask a noob question. how do i undo "iptables -A INPUT -m iprange --src-range ip.add.ress.0-ip.add.ress.255 -j DROP" a link or search critera would be cool [20:19] and thanks you === acrocity_ is now known as acrocity === markthomas1 is now known as markthomas [20:51] LargePrime: 'iptables --help', look specifically at the --list, --line-numbers and --delete options [20:54] thanks maxb === bean__ is now known as julian-delphiki [21:28] smoser, hallyn, stgraber, zul, Daviey et al: Why does the KVM FAQ say to not run NTP on kvm guests? It appears to just be out of date. Is there any tech reason not to these days (seems to be tech reasons to actually RUN ntpd on guests). Ref: https://help.ubuntu.com/community/KVM/FAQ [21:28] smoser, hallyn, stgraber, zul, Daviey et al: Why does the KVM FAQ say to not run NTP on kvm guests? It appears to just be out of date. Is there any tech reason not to these days (seems to be tech reasons to actually RUN ntpd on guests). Ref: https://help.ubuntu.com/community/KVM/FAQ [21:29] (looks like an artifact from 2008 on the FAQ that may no longer be valid in current kvm.) [22:01] med_: yeah i've talked to him about that yesterday [22:02] as you guessed, it's probably a very old suggestion, and it's also the community docs, not the server guide. i had no idea that was being suggested. [22:03] hi, I want to know if ubuntu-server kernel comes with napi support enabled.... [22:25] hallyn, many thanks. [22:26] hallyn: does that mean we -should- run ntpd on both guests and hosts? [22:27] (I always thought the guests would wind up being very wrong about clock drift and drive the clocks further away from reality..) [22:30] sarnold, the research indicates it's probably a good idea to do both. And if you can point the guests at the host as master, that's ideal. [22:30] sarnold: yeah I thin you want to run it on both [22:31] (in a cloud, you may have no clue about the host of course) [22:31] sarnold: note that ntp only adjusts how jiffies are accounted in the kernel - it doesn't change the hwclock, so guests wont' affect host and vice versa [22:35] hallyn: this is where I get mighty fuzzy on details... I thought that the cpu-based clock source that the kernel uses to keep track of time would propogate from host to guests when the host's time is updated.. (cpu counter? hrtimer? man it's been ages..) [22:39] sarnold: my impression was it doesn't change the clock frequency, it's just that when clock interrupts arrive, it changes how often it bumps the jiffies [22:39] hallyn: well, cool, that's one old folklorism I can remove from my brain :) thanks [22:40] sarnold: i'm not 100% convinced. and of course if yo'ure right then ntp in guests means they're fighting each other [22:42] but no i'm pretty sure it's right [22:43] pfew :) [23:07] so i al looking at installing/replacing the kernel on my dedicated server. 12.10 any recommendations? desktop and server kernels are merged now right? [23:07] http://pastie.org/7711965 is the list i have i gues [23:28] LargePrime: for a server, use 12.04 [23:28] the LTS releases are the best for servers [23:29] and since 8.04 is out of support in a week, and 10.04 is oldish, 12.04 will probably be the best unless you have special needs [23:30] well i think it too late. and yes, generaly i fell like i am special needs, but that is not ubuntu related [23:30] well not specifically === wedgwood is now known as wedgwood_away [23:31] I only use LTS on servers [23:31] I would say that it depends on the server. If it's the kind of server where you value up-to-date-ness of software and don't mind upgrading every 6 months, then track the latest release. Otherwise, stick with LTSes [23:31] the non-LTSes tend to be far less tested