/srv/irclogs.ubuntu.com/2014/04/10/#ubuntu-uk.txt

=== Lcawte is now known as Lcawte|Away
=== Guest38218 is now known as Monotoko
=== map is now known as Guest67946
mappsmorning05:20
mappssweet05:25
mappsjudge judy on:D05:25
diploMorning all07:31
diplomapps: Really.... judge judy! :/07:31
MooDoodiplo: phew, glad you said that07:32
diplo:P07:34
=== feisar is now known as Guest51581
JamesTaitGood morning all; happy Safety Pin Day! :-D08:27
brobostigonmorning boys and girls.08:44
MooDoohello brobostigon08:50
brobostigonmorning MooDoo08:50
bashrc_morning08:53
brobostigonmorning bashrc_08:56
=== bashrc_ is now known as bashrc
foobarryspam txt from giffgaff :@09:35
brobostigonoh dear.09:36
* davmor2 prods JamesTait with a safety pin to see if he pops like a balloon? No but he does scream like a girl09:43
JamesTaitHow rude!09:43
MooDooEveryones servers patched?09:46
brobostigonyes.09:47
awilkinsI get spamtxt from Domino's Pizza09:49
davmor2MooDoo: I'm still trying to run the test on mine it doesn't like starttls it appears :(10:24
MooDoodavmor2: :(10:34
bashrcI patched my server yesterday10:42
foobarryi run scientigic linux- self patching10:43
bashrcyou also have to regenerate any SSL certificates10:44
MooDoofoobarry: is that any good?  I've been looking at it10:47
foobarryWFM10:47
foobarryi've run large desktop infrastructures too using it10:49
foobarryand servers of course10:49
foobarryi also like centos10:50
foobarrybut i dont think centos is configged for security updates via cron OOTB10:50
foobarryi want to get the blue shell ! http://www.amazon.co.uk/gp/product/B00B8QDNW2/ref=s9_simh_gw_p63_d0_i3?pf_rd_m=A3P5ROKL5A1OLE&pf_rd_s=center-2&pf_rd_r=1J9THJXHCE26R14R2XM6&pf_rd_t=101&pf_rd_p=455344027&pf_rd_i=46829410:53
foobarryoh, not at that price10:54
MooDoobloomin heart bleed11:35
=== Lcawte|Away is now known as Lcawte
awilkinsYeah12:08
awilkinsDo we really think we need to change passwords?12:08
awilkinsI have about 80 in my password manager12:09
popeyi changed a few12:09
popeybased on advice from the lastpass security audit tool12:09
awilkinsYeah, I might change my gmail at least12:09
popeywhich is fricking amazing12:09
popeyi have 2fa on gmail12:09
awilkinsYeah, I suppose I should sort that out12:09
MooDoohttps://www.dropbox.com/s/n96uuv10ehjspng/BLOG-HEARTBEAT.jpg :D12:18
popeyhah12:27
popeyi used to love that show12:28
popeyuh, 20 years ago12:28
MooDooyeah just throught it was funny as i'm dealing with a lot of heartbleed issues :D12:31
MartijnVdSMooDoo: everyone is :|12:33
SuperMattMooDoo: lawls12:35
SuperMattMooDoo: you have *no idea* how many heart bleed issues I'm dealing with12:35
SuperMattlet's just say that we're only a little snowed under, and you have to imagine that with immense levels of sarcasm12:36
MartijnVdSSuperMatt: now imagine dealing with (local council) government12:37
SuperMattMartijnVdS: ouch12:39
SuperMattthe one thing I keep hearing though is "no, don't restart httpd now" and I'm just like "lol you mean that your security is less important than 10 seconds downtime? OK!"12:39
MartijnVdSSuperMatt: good thing we had DigiNotar here a few years ago, and there are procedures/protocols now12:40
MooDooSuperMatt: yup we're soo busy12:44
SuperMattjust take the number of servers you're dealing with, then scale it up *many* times and you'll realise how busy we are!12:48
MooDooSuperMatt: pah i've more servers that you :p12:53
popeyI had zero to patch \o/13:06
popeyhurrah for no ssl13:06
MartijnVdSpopey: ...13:06
MartijnVdSI even had to patch my Synology NAS13:06
popeyi have nothing that does https, nothing at all13:06
foobarryi'm on holiday this week13:07
popey\o/13:07
foobarrynot sure if \o/ or /o\13:07
popeynice timing13:07
MooDooMartijnVdS: oh rats forgot about my NAS13:08
MartijnVdSMooDoo: http://ukdl.synology.com/download/criticalupdate/update_pack/4458-2/ if it's a synology13:08
MooDoono netgear, but it's old, so I'm not sure if it's even affected lol13:09
foobarrymost of my servers self updated but applications might need a closer look13:10
MartijnVdSyeah, I rebooted my servers to be on the safe side13:11
foobarryits amazing how quickly 4yr olds can get good as games like mario kart13:12
foobarry:-|13:12
foobarryalthough he's clicked on internet play sometimes. explains a lot. sometimes i've played on the internet and thought..is this guy drunk or just 4yrs old13:13
MartijnVdSfoobarry: you could too.. if you only played it as intensely and often as they do13:13
foobarryheh.. he plays prob 1hr a week on sat mornings13:14
foobarryand talks about it for 7 days in between13:14
MooDoofoobarry: my son is 5 and the same with minecraft, i've just let him use fraps so he can record his own videos lol13:18
* popey coughs up http://podcast.ubuntu-uk.org/2014/04/10/s07e02-the-one-where-everybody-finds-out/13:31
brobostigon:)13:32
* Laney just heard the f-bomb13:49
LaneyOUTRAGEOUS13:49
MooDoothe what?13:49
brobostigonis it a gasous anal axpulsion.?13:50
brobostigonexpulsion*13:50
Laneysimilar13:51
popeyyeah ⍨13:51
brobostigoni see.13:52
* brobostigon gets a match13:52
andrewebdevwas listening to a linux podcast last night regarding mir, and just as it got to the point where I was too frustrated to continue listening, reason popped it's in the door in the form of popey14:05
popeyhaha14:05
popeyLinux Unplugged?14:05
andrewebdevyeah14:05
popeythanks14:06
=== bashrc_ is now known as bashrc
daftykinshrmm, probably not wise for a web server to be going 20MB into swap?17:03
mappssweet17:56
mappshey daftykins17:56
mappsprob not17:56
mapps:D17:56
daftykins^_^17:56
daftykinshallo17:57
mapps:)17:58
diddledanlots of interesting announcements: https://cloud.google.com/events/google-cloud-platform-live/18:46
mappshm19:26
mappscloud sucks daftykins19:26
daftykinstab complete fail!19:27
SuperMattcloud doesn't suck, it's just most people suck at using it!19:51
SuperMattfor instance, if you want to use wordpress on a bunch of load balanced servers, you're going to have a bad time19:53
bigcalmGood morning peeps :)19:58
SuperMattit's morning already? but I don't want to go back to work yet19:59
SuperMattthere are still too many heartbleed tickets!19:59
daftykinslol19:59
shaunough.  I had to deal with that today, which was unexpected20:00
shaunomostly trying to find a reassuring way to say "don't worry, we're so hopelessly out of date that we weren't exposed"20:01
SuperMattI'm still unsure about resetting passwords and renewing certs20:02
SuperMattI figure that if attacks against heartbleed were going to affect me, I would have been got by now20:02
shaunohonestly, I think for most people it's largely hypothetical20:04
shaunothe more realistic worry (imho) is that people like yahoo were exposed.  targets big enough for someone to go fishing if they had some shiney new sploit before it was public20:05
SuperMattindeed20:05
shaunoI mean, it's nice that there's a dance to go through if you want the peace of mind.  but I'd be more worried about my accounts on others' systems, than my own20:06
shaunoone thing that did raise an eyebrow though, is people scanning 443 on their own ranges to see what needs to be updated20:07
diddledanshauno: "we're aware of the issue and at this point we believe our systems are no-longer vulnerable"20:08
diddledanwhere no-longer == hadn't been in the first place20:08
shaunorather than just "update all the things", they're assuming https is the only place they're using ssl20:08
diddledanat least ssh isn't an issue :-)20:08
diddledanbut smtps and pop3s and imaps are probably vulnerable20:09
diddledanI donno what microsoft-world uses for ssl?20:09
diddledansome in-house thing I guess20:10
diddledanmicrosoft closed sauce20:10
SuperMattthe command I've used most today: lsof -n | grep ssl | DEL20:11
SuperMattto see if any services had a preloaded version of openssl still in memory20:11
diddledan| DEL?20:11
daftykinswhat's the third portion?20:11
SuperMattoops, grep DEL20:11
shaunoI wouldn't be surprised to find openssl on windows.  it's bsd licensed, so it'll crop up everywhere20:11
diddledanI used sudo grep libcrypto /proc/*/maps | grep '(deleted)' | cut -d/ -f3 | uniq | xargs ps20:12
diddledanthat way it tells me what processes I need to restart20:12
SuperMattmine's a little quicker :P20:12
SuperMattbut it does the same20:12
shaunoI think mine's been "paste" :(  so much email.  so so much.20:13
daftykinslol20:15
shauno(my first day back since the start of the month, so ..)20:16
=== bashrc_ is now known as bashrc
daftykinsshauno: you part timer!20:22
shaunoI try :D20:22
shaunoI even booked "bring your child to work day" off as vacation20:22
bigcalmPotato batteries!20:28
diddledanshauno: but you don't have a child20:28
bigcalmPerfect reason not to be in work that day20:29
bigcalmChildren do not make for a productive work environment20:29
shaunoit's for their benefit, really.  they don't need a humbug :)20:29
daftykinslol20:30
daftykinsbag of humbugs!20:31
daftykinsthat'd pacify them20:31
diddledanshauno: but the lolz20:32
diddledanshauno: of being humbuggery20:32
diddledanI know being a grouch can take a lot of effort, but it's surely worth it when you ruin everyone's day, no?20:33
diddledanhttp://blog.fastmail.fm/2014/04/10/when-two-factor-authentication-is-not-enough/20:53
dennyHeyla. I seem to have lost the ability to listen to 'net radio stations. I'm inclined to blame my new ISP, but just before I call them up and shout at them, what else should I check?  Rhythmbox on 12.04, happy to install something else to see if that works, less happy to upgrade distro version right this second.  Tried running Rhythmbox from command-line, didn't get any useful errors (just the usual Gtk mess).20:56
daftykinsdenny: what are you testing?21:00
dennyactually, it just occurred to me to try from the laptop.  That works.  So um... Rhythmbox on my 12.04 desktop doesn't work (but did a week ago when I last used it), Rhythmbox on my 13.10 laptop on the same network does work.  You tell me what I should test.  :)21:03
dennyTrying to play http://radio.bassjunkees.com:8442/listen.pls (as an example, although no 'net radio station works.  Local files do still play.)21:03
diddledanreactos is still going? https://www.indiegogo.com/projects/reactos-community-edition21:06
daftykinsdenny: try running rhythmbox from a terminal to see if it's erroring21:07
diddledandaftykins: he already did that21:07
diddledanlast sentence :-p21:08
daftykinsoh yeah21:08
daftykinssorry i went out and came back21:08
daftykinsXD21:08
diddledanlol21:08
diddledandamn you all for not being ircrack-addicts like me!21:08
daftykinsi went to buy snacks so i could be, damn it man!21:08
diddledanmm, tasty treats!21:09
dennyyeah, it just throws those errors Gtk applications always throw  :-p21:09
* daftykins extracts a tube from a 100% extra free jaffa cakes box21:09
diddledangtk really is verbose21:09
dennyI swear Gtk is made out of matchsticks21:09
dennynot glued together, just balanced end on end21:09
diddledanI don't get why they moan when every app moans in the same way21:09
diddledandaftykins: 100% extra free!?!!21:10
diddledannow that's bargain!21:10
daftykins>:D21:10
Aluehi,I am Alue. I have some Ubuntu 12.04 boot error. Please help.23:34
daftykinsit's quite late here. you'd be better off with asking in #ubuntu23:35
Alue???23:35
daftykinsask in #ubuntu23:35
Aluewell thanks.23:36
diddledandenny: I've just tried that radio station on a 12.04.4 freshly installed - it worked fine for me23:59
diddledanthat's 64bittyness23:59
diddledanI can try on a 32bit install if you like23:59

Generated by irclog2html.py 2.7 by Marius Gedminas - find it at mg.pov.lt!