[00:00] <sarnold> Brian21: are both disks identical?
[00:00] <Brian21> no
[00:00] <Patrickdk> they need to be the same size
[00:00] <Brian21> physically ?
[00:01] <sarnold> yes
[00:01] <Patrickdk> this is one reason to use partitions :)
[00:01] <Patrickdk> besides making it easier to replace a failed disk
[00:01] <sarnold> you can partition them both to make them have a same-sized partition..
[00:02] <Brian21> hmm  I was trying to create like 100 gb disk to test it out
[00:04] <Brian21> one of the server i got 3 hard drive (2) 1 tb and (1) 2 tb on server2 i have one 250 gig
[00:05] <Brian21> I'm open for any suggestions
[00:05] <Patrickdk> suggestions about what?
[00:06] <Brian21> if I can specify lower size with out using the whole disk?
[00:07] <Patrickdk> you do know what a partition is right?
[00:08] <Brian21> yes its a logical section of the hard drive..
[00:11] <Brian21> well i guess im going to use virtualbox and c if that helps
[00:14] <Brian21> Thanks for your help
[00:33] <sarnold> Brian21: have fun :)
[00:59] <ssfdre38> how do i do the insmod for iptables
[01:21] <ssfdre38> ok im trying to use iptables and i keep on getting iptables v1.4.12: can't initialize iptables table `filter': Table does not exist (do you need to insmod?)
[01:21] <ssfdre38> Perhaps iptables or your kernel needs to be upgraded.
[01:22] <ssfdre38> can i get some help to get it started back up
[01:23] <sarnold> ssfdre38: as a start, modprobe ip_tables
[01:24] <sarnold> ssfdre38: there's a lot of other modules you can load; 'filter' will require the iptable_filter module to be loaded. I'm curious if it'll be automatically loaded or not
[01:34] <qman__> ssfdre38, it's loaded by default, so if you didn't do something to prevent it from loading, you're seeing a red herring
[02:15] <martisj> morning
[02:15] <martisj> anybody had issues with apc 3.1.3p1-2 and apc unable to allocate memory for pool :....
[02:15] <martisj> ?
[02:16] <martisj> it's filling up our logs quicker than we can delete it :)
[02:16] <martisj> on ubuntu 10.04.03
[02:17] <martisj> 10.04.3 LTS that is
[02:17] <martisj> Lucid :)
[02:18] <qman__> https://bugs.php.net/bug.php?id=58982
[02:19] <qman__> also, you're pretty far out of date on updates
[02:19] <qman__> the .4 point release was out a long time ago
[02:21] <martisj> qman__: thanks I am fully aware. but this is a choice senior dev dude has made, don't ask me why
[02:21] <martisj> he was running the staging server on 12.xx
[02:21] <martisj> but moved everything over to the one lucid server
[02:21] <martisj> ?! :S
[02:21] <qman__> I'm not saying that running lucid is the problem (though you don't have much life left at this point)
[02:21] <qman__> just that your lucid server is way out of date
[02:22] <qman__> and if this bug is in an official ubuntu package, it's probably been fixed in an update
[02:25] <qman__> maybe not: https://launchpad.net/ubuntu/lucid/amd64/php-apc/
[02:25] <qman__> shows that as the latest version there
[02:25] <Patrickdk> more likely out of shm memory
[02:26] <Patrickdk> oh, that is what that bug report is about
[02:43] <martisj> Patrickdk: according to our config it says apc.shm_size=30
[02:50] <martisj> i tried doing the apc.mmap_file_mask = /tmp/apc.XXXXXX but it gave this error: apc_mmap: ftruncate failed: File too large
[02:52] <martisj> I shoujld probably install pecl
[03:02] <monuto> anybody feel like helping an ubuntu/linux noob? =)
[03:03] <monuto> im running ubuntu 12.04. trying to use the chat program empathy, and i'm having trouble with a plugin for skype.
[03:07] <martisj> monuto: is this on ubuntu server ?
[03:50] <VsioZashibis> hi guys. how can i change default crontab editor from nano to vi ?
[04:25] <thumper> VsioZashibis: tried "export EDITOR=vi" ?
[04:27] <qman__> VsioZashibis, update-alternatives --set editor /usr/bin/vim
[04:28] <LargePrime> hello
[04:29] <LargePrime> I am looking for advice on setting up a ssh user for a quick and dirty VPN
[04:29] <LargePrime> How can i give ssh to a user with a key, but keep them from running commands to accessing the server?
[04:31] <qman__> you can't
[04:31] <qman__> the only way to sort of accomplish that is to chroot them
[04:31] <qman__> they still have a shell though and can still run things
[04:32] <qman__> it's less effort to set up a VPN proper than to wall off a shell account in the manner you desire
[04:37] <LargePrime> thans qman__
[04:37] <sarnold> yes, setting up a real vpn would be easier; that said, if you really want to go down the route of locking down an ssh user, here's some suggestions: http://wiki.apparmor.net/index.php/Pam_apparmor_example
[04:38] <sarnold> VsioZashibis: I always just apt-get purge nano first thing, I never want to use nano so goodbye. :) hehe
[04:38] <VsioZashibis> I got it thanks gusy
[04:38] <VsioZashibis> guys*
[04:40] <LargePrime> ok so while we are at it, best practice for setting up a vpn?
[04:43] <sarnold> LargePrime: I enjoyed using an ipsec vpn eight years ago, it Just Worked. the other VPNs I saw at the time were more annoying to configure and less reliable.
[04:44] <sarnold> LargePrime: that said, I've heard good things about openvpn.
[04:49] <qman__> LargePrime, I use openvpn, the setup isn't too bad and if you use easyrsa, making the keys is super simple
[04:50] <LargePrime> pointers, tips, best practice? Links?
[04:50] <qman__> there's probably a section on it in the server guide, I set mine up about five years ago and haven't touched it since
[04:50] <LargePrime> i mean i have openvpn
[04:50] <LargePrime> how often do you add /remove users?
[04:51] <qman__> not that often, but you just generate or delete the key sets
[04:51] <qman__> I've also never had any reliability issues, the only time it ever went down was during a hard drive failure
[04:53] <qman__> I was unable to restore the whole server so I just installed a new VM, copied my configs over, and it worked perfect
[04:53] <sarnold> haha :)
[04:53] <qman__> source was 8.04, destination 12.04
[05:20] <LargePrime> thanks qman__  and sarnold
[05:44] <ssfdre38> ok im trying to block an ip address from my server and i get this error http://pastebin.com/4e9MZ7MJ when i do it on iptables, does anyone know how to fix it?
[05:46] <sarnold> ssfdre38: what does lsmod | grep -i ipt   show?  What does iptables -n -L  show?
[05:47] <ssfdre38> http://pastebin.com/EE0ehp29 and http://pastebin.com/skhhEw77
[05:48] <sarnold> ssfdre38: interesting. do you know why /proc/modules isn't there?
[05:48] <ssfdre38> nope
[05:49] <sarnold> ssfdre38: try sudo mount -t proc proc /proc
[05:49] <ssfdre38> its already mounted
[05:50] <sarnold> proc is mounted but not modules file? very curious.
[05:50] <sarnold> is your kernel compiled without modules support?
[05:51] <ssfdre38> i didnt tell it not to be
[05:51] <ssfdre38> it was working before hand
[05:51] <sarnold> CONFIG_MODULES in your kernel configuration..
[05:56] <ssfdre38> i dont even know where that is at as i never really messed with that
[06:00] <sarnold> ssfdre38: do you have a /proc/config.gz file? or a /boot/config-`uname -r` file?
[06:00] <ssfdre38> i do have the first one
[06:00] <sarnold> aha, cool, how about gzip -cd /proc/config.gz | grep MODULES  ?
[06:01] <ssfdre38> http://pastebin.com/GmEdjfVC
[06:01] <ssfdre38> sorry its just one of those days
[06:02] <sarnold> ssfdre38: well, okay. you'll either need to recompile your kernel to include iptables, or you'll need to recompile your kernel to include loadable modules _and_ iptables modules.
[06:03] <sarnold> ssfdre38: if you just want to drop traffic from one IP, check this out: http://www.cyberciti.biz/tips/how-do-i-drop-or-block-attackers-ip-with-null-routes.html
[06:04] <sarnold> (I'm not sure that's the best guide, the domain name is certainly .. troubling .. but the commands look about right.)
[06:11] <ssfdre38> well its just i moved my work's sites onto my server and so some stuff has came along with it that im dealing with that crashed theirs so its just one of those days to find and remove all day
[06:11] <sarnold> :(
[06:12] <ssfdre38> yea its just one of those days with me
[08:32] <johndoe2> Hi. I made a big bummer by starting  "sudo apt-get remove linux-image-3.2.0-2*". Now it's removing all my kernels in a loop, it seems. Can I interrupt it somehow? So far, I just stopped the process.
[08:37] <johndoe2> johndoe2, I found a solution :-)
[08:40] <MACscr> If i wanted to boot ubuntu through pxe/nfs and then have it run from memory, any suggestions on doing this? Im not trying to install from pxe, I simply want to have diskless servers. I will though probably need to create some sort of custom image I would think as i do need to have certain software installed. Not 100% sure how that would work. It would be for an openstack compute node.
[08:42] <xnox> MACscr: look into edubuntu, i think they support such installation type out of the box, using LTSP
[08:46] <MACscr> xnox: ok, these will be servers though
[08:47] <MACscr> i will check into it closer though
[08:48] <xnox> MACscr: I guess you want to boot that node from volume then for openstack. Maybe openstack specific forums is better, e.g. https://ask.openstack.org/question/49/any-hint-for-a-compute-node-diskless-setup-only-iscsi-netapp-persistant-disk-for-vms/
[08:49] <xnox> MACscr: cause yet, edubuntu ltsp stuff is kind of geared towards a beefy server exporting ubuntu install (with desktop) to thin & fat clients.
[09:02] <MACscr> xnox: thanks for the edu link nonetheless. Cool stuff
[09:42] <ole`01> Hi. I have a problem with mime type of .webm videos. On my local machine, php gets the correct mime type, which is video/webm. But my virtual server gets it as application/octet-stream. Configuration has been made through a file /etc/apache/conf.d/mimetypes.conf which defines webm, ogg and mp4 via 'AddType video/webm .webm' ...
[12:49] <msafi> I'm using SSH to administer a server on Amazon cloud and reading a book on Ubuntu server administration
[12:50] <msafi> The book talks about the possibility of installing a GUI...can I really install and use a GUI through SSH?
[12:50]  * msafi doesn't wanna install a GUI and not be able to use it...
[12:51] <mardraum> you can tunnel X11 over ssh, yes
[12:51] <mardraum> why on earth you would want to is another question
[12:52] <Pici> It will be extremely slow... also, there are not that many gui front ends for things that are meant to be installed on headless servers.
[12:53] <Pici> and if there are, they're web based.
[12:54] <msafi> It sounds complicated even
[12:54] <msafi> Many people these days administer servers using SSH, so I'm not sure why this popular book is covering GUIs
[12:55] <mardraum> because it's a popular book? :P
[12:55] <mardraum> written for noobs
[12:55] <msafi> This is the one: http://www.amazon.com/Beginning-Ubuntu-Server-Administration-Professional/dp/1590599233/
[12:56] <msafi> Anyway, thanks for the help. I'll go ahead and skip the GUI section...
[13:43] <zul> roaksoax:  https://code.launchpad.net/~zulcss/glance/refreshed/+merge/178298
[13:53] <psivaa> hallyn: reported bug #1207675 for an lxc test failure in the saucy smoke suite. has happened twice out of 4 attempts.
[13:58] <resno> i have vsftpd setup but it wont let my user create a directory, but it will allow them to upload files.
[14:33] <resno> you cant stop apparmor?
[14:43] <zul> roaksoax:  https://code.launchpad.net/~zulcss/nova/refreshed-1/+merge/178314
[17:17] <d4m> Seeing bad signature errors on ubuntu repos on ec2 and s3, any maintainers here?
[17:19] <jdhigh9000> anybody know if using symlinks from thunderbird to the mail folder /home/user/mail will work with mutt?
[17:20] <sarnold> jdhigh9000: I'd be careful to use read-only mode in mutt, no need to seriously confuse thunderbird
[17:21] <jdhigh9000> sarnold: thanks for the heads up. im a newbie :)
[17:59] <mgw> If I set up 2 or more dhcp peers, will omapi updates (and leases, for that matter) propagate across the peers? Or is the peer system merely for ensuring multiple servers are not trying to answer dchp requests?
[18:22] <mynameisdeleted> so... custom ubuntu install designed around one piece of software as an appliance
[18:23] <mynameisdeleted> plan to distribute as a virtualbox image, but maybe later a cdd for server.. I think best way to make it work in every server or virtual environment is as a kcikstart file that works with regular install cd
[18:24] <mynameisdeleted> I want this to ask user to configure stuff onthe first boot before the first login too.. software settings
[19:30] <TimothyA1> hello, this morning I did an apt-get upgrade and it appears GRUB has been failing in a couple of ways. the server has a software RAID-1 setup and /dev/md1 and /dev/md2 as its disks. These are pastes of output of prior diagnostics: http://paste.ubuntu.com/5941192/ http://paste.ubuntu.com/5941199/
[19:31] <TimothyA1> is this machine still safe to reboot?
[19:32] <sarnold> TimothyA1: I'd be scared too...
[19:33] <TimothyA1> I've had GRUB complain multiple times in the past, but then it at least still showed /dev/md1 and /dev/md2 as an option to install it
[19:33] <TimothyA1> now it only gave /dev/md1 as an option and complained it could not find the drive
[19:34] <TimothyA1> if I were to reboot the machine and it wouldn't boot up, would there be a way to fix this in a recovery shell?
[19:37] <TimothyA1> I'm rebooting...
[19:39] <TimothyA1> it's safe :D
[19:39] <TimothyA1> fwew
[19:40] <TimothyA1> now on to a different issue; why is apt holding back my mysql-server packages?
[19:40] <sarnold> TimothyA1: nice!
[19:41] <TimothyA1> ....and the PHP update broke PHP... excellent
[19:41]  * TimothyA1 bangs his head on the wall
[19:44] <TimothyA1> okay, that's fixed. now, the mysql-server issue...
[19:45] <TimothyA1> The following packages have been kept back:  mysql-client-5.5 mysql-server-5.5 mysql-server-core-5.5
[21:22] <koolhead17> adam_g, hola
[21:23] <adam_g> koolhead17, highvoltage
[21:23] <adam_g> er
[21:23] <adam_g> koolhead17, hi
[21:23] <adam_g> :)
[21:23] <koolhead17> adam_g, how have you been sir?
[21:23] <adam_g> koolhead17, doing good, you?
[21:24] <koolhead17> adam_g, alive/sleepless
[21:24] <koolhead17> insomniac
[21:28] <koolhead17> arosales, hi there
[21:29] <koolhead17> its been while i spoke to folks here
[23:20] <arosales> koolhead17, hello
[23:20] <arosales> koolhead17, sorry for the late reply.
[23:46] <pHcF> hi, i'm looking for a tool to sit in the front of my server stack and able to check for a HTTP parameter in a request's body and redirect it to a specific server, like a reverse HTTP proxy… i tried nginx to do this, but i'm not very happy with it
[23:50] <sarnold> pHcF: apache can also reverse proxy, but I might have expected nginx to do a better job of it. whta didn't you like about nginx?
[23:50] <pHcF> first because I can't check for a specific http parameter in request's body if it's POST or PUT
[23:51] <pHcF> (because it starts handling redirects/rewrite rules before having all the data of the request)
[23:59] <Brian21> hi everyone