/srv/irclogs.ubuntu.com/2014/10/01/#ubuntu-server.txt

=== thumper-afk is now known as thumper
sandprickleI setup postfix+dovecot starting with mail-stack-delivery, and virtual users are not working. Bounces all mail but that addressed to the mail username that matches my local username. The %d in mail_home and mail_location doesn't seem to be expanding.00:57
=== rcj` is now known as rcj
=== markthomas is now known as markthomas|away
=== Sachiru is now known as Guest6649
=== tempnick is now known as Sachiru
mgwLogos01: thanks, changing bootdev to the dev path (/dev/sdb) worked.02:15
=== lionel_ is now known as lionel
hfausthi guys, how are you?02:53
iDealzanyone have any experience with rebuilding broken RAID arrays?  I had a drive fail completely in an mdadm array 5 and now when I boot my server it boots into initramfs prompt. I believe I need to boot from a CD to get into root, but dont know where to go from there04:23
rostamHI I am using ubuntu 14.04. I have used debootstrap --downloadonly to download required packages for debootstrap. It works fine, but I see some of the packages have naming convention I do not understand: For example:  zlib1g_1%3a1.2.8.dfsg-1ubuntu1_amd64.deb, But not all the packages have this issue, could someone please help me? thx04:49
sarnoldrostam: I assume it is a : from epoch versioning, 1:1.2.8.dfsg-1ubuntu105:20
=== arrrghhhAWAY is now known as arrrghhh
lordievaderGood morning.06:29
Aisonhi06:34
Aisonis it possible, that ufw is just for simple settings?06:35
lordievaderAison: Imo, yes.06:35
lordievaderYou can do simple things, like allow/drop/reject connections but anything more complex... well then you have to write iptables rules.06:36
Aisonyes, I know how to write iptables rules, but my problem is also, that ufw is not removing my custom rules after "ufw disable"06:36
Aisonmaybe it's best to use ufw just for filtering of incoming connections06:38
lordievaderWhat custom rules are you talking about? Those created with ufw?06:39
Aisoneg. things like that:06:39
Aison-A POSTROUTING -o bond0.2 -s 10.35.0.0/16 -j SNAT --to-source 212.51.145.8906:39
Aisonmany of those06:39
lordievaderAison: I take that you created those outside of UFW, ofcourse it won't remove those.06:40
Aisonyes, when I take them outside, then it is my responsibility :)06:40
=== kickinz1|afk is now known as kickinz1
=== kickinz1 is now known as kickinz1|afk
hxmhow to know if i am vulnerable to shellshock?07:47
ikoniathere are various tests on the web07:48
lordievaderhxm: If you regularly update your machine you should no longer be vunerable, given you run a supported version.07:49
cynicallemonhxm: making sure your run updates is a good way07:49
hxmi am updated, i just wanted to know07:49
hxmyou know, panic attack07:49
cynicallemonhxm: https://www.digitalocean.com/community/tutorials/how-to-protect-your-server-against-the-shellshock-bash-vulnerability07:51
=== kickinz1|afk is now known as kickinz1
Aisonargh, wie liest man ipv6 netzmasken?!? muss ich verschiedene subnetze so schreiben 2a02:168:200f:0001::/56, 2a02:168:200f:0002::/56, 2a02:168:200f:0003::/5607:59
Aisonoder so 2a02:168:200f:0100::/56, 2a02:168:200f:0200::/56, 2a02:168:200f:0300::/5607:59
Aisondamn, sorry, wrong channel08:01
Aisonlol08:01
=== kickinz1 is now known as kickinz1|afk
henkjanAison: sipcalc is a nice utility for ipv6 addresses/netmasks08:02
=== kickinz1|afk is now known as kickinz1
hxmi run the bash version GNU bash, versiĆ³n 4.2.45(1)-release (x86_64-pc-linux-gnu)08:02
hxmis that the lastest one?08:02
hxmi try to upgrade bash and it says is the latest08:02
henkjanAison: see output https://p.6core.net/p/Yk3YdNzzdosBDVWhW1WYbtE208:02
Aison:D08:03
hxmnp fixed08:04
=== kickinz1 is now known as kickinz1|afk
jamespageadam_g, comments on mp - missing patch?08:35
=== bilde2910|away is now known as bilde2910
jamespagezul, coreycb: hmm the ironic driver landed in nova for c110:00
jamespagerc1 rather10:00
jamespageadam_g, ironicclient sync from debian (1.2.x)10:07
jamespagesorry 0.2.x10:07
=== Lcawte|Away is now known as Lcawte
rostamHI I see some of the ubuntu packages have extra field: "1%3a" for example  zlib1g_1%3a1.2.8.dfsg-1ubuntu1_amd64.deb. Is this epoch version?  in any case does it have any difference with the package which does not have that extra characthers?  The problem I have I can not use those packages in my http server to download them, the extra packages break the download process.  Thanks10:56
rbasakrostam: yes, it's for the epoch. The ':' character is in the filename but gets escaped due to HTTP requirements.11:15
rostamrbasak, if I rename the package (removing extra 1%3a) would cause any issue, or is there a better way doing this? thanks11:21
rbasakrostam: a better way of doing what?11:22
rostamrbasak,  I want to remove the "1%3a" from package name?11:23
jamespagezul, stevedore internal versioning was causing issues so I uploaded 1.0.0 and 1.0.0.0 so that I can actually test glance properly11:24
zulbah11:25
Odd_Blokerostam: '1:' is part of the version, not part of the package name.11:27
rostamOdd_Bloke, ok, so when package is downloaded through http, the  "1:" changes to "1%3a"  ??11:32
Odd_Blokerostam: ':' is not a legal character in URL paths so it's encoded to %3a.11:32
rostamOdd_Bloke, thanks, now I got it.11:34
Odd_Blokerostam: :)11:35
jamespagecoreycb, look at you on your IPv6 address :-)11:37
* jamespage stops poking coreycb11:37
jdstrandlordievader: ufw by default does not flush the primary chains since it by default does not manage the primary change. you should be able to adjust /etc/default/ufw to have MANAGE_BUILTINS=yes, but this may have other side-effects. see /etc/default/ufw for details11:40
jdstrands/primary change/primary chains/11:41
lordievaderjdstrand: I don't use UFW ;)11:43
jdstrandoh whoops11:43
jdstrandAison: ^11:44
=== Lcawte is now known as Lcawte|Away
=== Lcawte|Away is now known as Lcawte
=== Lcawte is now known as Lcawte|Away
jamespagezul, coreycb: almost have nova and glance done12:07
coreycbjamespage, heh :)12:54
jamespagecoreycb, hello12:54
coreycbjamespage, hey12:54
coreycbjamespage, would you mind taking a look at this to see if it looks good so far?  https://code.launchpad.net/~corey.bryant/ceilometer/2014.2-rc1/+merge/23661012:58
coreycbjamespage, I think I need to pip install to verify some things12:58
coreycbjamespage, oh and I can take ironic12:59
jamespagecoreycb, adam_g already did12:59
coreycbjamespage, oh sweet, thanks adam_g !12:59
jamespagecoreycb, interesting - http://specs.openstack.org/openstack/ceilometer-specs/specs/juno/ipmi.html13:00
coreycbjamespage, yeah pretty cool13:02
jamespagezul, sigh13:03
jamespageVersionConflict: (oslo.config 1.4.0.0-a5 (/usr/lib/python2.7/dist-packages), Requirement.parse('oslo.config>=1.4.0'))13:03
jamespagedealing with it now13:03
zulnova?13:03
jamespagezul, no glance13:08
jamespagezul, I've uploaded new versions of stevedore, oslo.config and oslo.rootwrap with additional .0's to deal with final release/pre-release versioning stuff13:10
zulack13:10
jamespagebug 137371413:19
uvirtbotLaunchpad bug 1373714 in openstack-dashboard "openstack-dashboard next charms don't properly support vip_cidr" [High,New] https://launchpad.net/bugs/137371413:19
jamespagezul, gah - boto and eventlet are also causing problems...13:36
* jamespage sighs13:36
* zul shakes his head13:36
zulas in how?13:36
jamespagezul, for some reason bits of glance use pbr for stuff, and boto and eventlet don't match from a version perspective13:41
zuljamespage:  gah...you should be able to get around that by patching the requirements.txt13:42
jamespagezul, yeah - but the eventlet problem is in oslo.vmware as well13:42
jamespageI can fix that13:42
zulok13:42
jamespagebut its a pita13:42
zuljamespage:  i feel your pain13:42
jamespagezul, bumping eventlet to 0.15.2 is a 25k diff13:43
jamespagelots of py3 compat work13:43
jamespagemakes me nervous13:43
jamespageboto might not be so bad13:43
jamespagezul, boto - 22k diff13:44
jamespageagain lots of py3 compat13:44
rbasakutlemming: bug 1375252 interests me. Is cloud-init resetting the hostname as I'd expect here, based on what Azure says, or is walinuxagent supposed to be doing something extra-clever here?13:59
uvirtbotLaunchpad bug 1375252 in walinuxagent "Hostname change is not preserved across reboot on Azure Ubuntu VMs" [Undecided,Confirmed] https://launchpad.net/bugs/137525213:59
jcastrojamespage, sorry those openstack charm bugs I filed were not descriptive, I was filing them on the spot. Now that I am back I'll get you more info.14:05
jamespagejcastro, awesome14:06
jcastrojamespage, you don't have an orange box do you?14:06
jamespagejcastro, nope14:06
jamespagezul, coreycb: We are scheduled to publish 2014.1.3 on Thurs Oct. 2nd for14:10
jamespagewowser14:10
jamespage^^ gaughen :-)14:10
coreycbjamespage, ok yep14:11
coreycbjamespage, busy week!~14:11
jamespagecoreycb, yes indeed14:11
coreycbjamespage, so if something is in universe it can't be a dep in debian/control?14:14
jamespagecoreycb, well it can but will need a MIR14:15
jamespagecoreycb, which one?14:15
coreycbtox is required to generate ceilometer.conf14:16
coreycbjamespage, ^14:16
jamespagegreat...14:16
coreycbjamespage, and tests get fubar if I don't include python-pysnmp4 in build-depends14:17
coreycbbut maybe that's just a rules file change, not sure14:17
jamespagecoreycb, pysnmp4 is already under MIR - waiting for security team review14:17
coreycbjamespage, ah, cool14:17
coreycbjamespage, guess I should have remembered that, my name is in the bug14:18
coreycb:)14:18
jamespagecoreycb, hmm tox14:23
coreycbjamespage, hmm.. tox..14:25
coreycbjamespage, can we try to MIR?14:26
jamespagecoreycb, use "bash tools/config/generate_sample.sh -b . -p ceilometer -o etc/ceilometer"14:27
jamespageand bypass tox14:27
coreycbjamespage, nice, that works14:31
coreycbjamespage, ceilometer is ready for review - https://code.launchpad.net/~corey.bryant/ceilometer/2014.2-rc1/+merge/23661015:24
=== hxm is now known as Guest63200
queeqhttp://pastebin.com/H9LALpSP15:51
queeqLast lines are actually on different lines, just got malformed when pasted15:51
queeqPackets are marked:15:53
queeq  194 15982 MARK       icmp --  *      br0     0.0.0.0/0            0.0.0.0/0            MARK set 0x1515:53
queeqAnyone?15:59
=== Azelphur_ is now known as Azelphur
=== baggar11_ is now known as baggar11
=== Locke2002 is now known as Guest15594
=== ikonia_ is now known as ikonia
=== Pici` is now known as Pici
=== Lcawte|Away is now known as Lcawte
AisonI guess isc-dhcp-server-ldap is not supporting DHCPv6?16:51
Aisonat least in the schema file there is no dhcpSubnet616:52
|\nwhat should i check first of all, if i see "dhclient.c:2277: Failed to send 300 byte long packet over fallback interface."17:00
jamespagecoreycb, zul: can you guys handle the remaining rc1's please17:05
jamespageI have a load of charm review/work to finish for eod tomorrow and need to switch focus17:05
coreycbjamespage, sure17:05
zuljamespage:  sure17:05
smoserrbasak, http://blog.oddbit.com/2013/10/04/automatic-dns-entries-for-libvirt-domains/17:15
smoserstubled across that . and thought of uvt17:15
smoserdoes parsing of leases file.17:15
smoserthat is actually really nice. and combined with 'incron' as suggeted. really neat17:19
=== Lcawte is now known as Lcawte|Away
rbasaksmoser: I hate things that involve modifying /etc/hosts17:30
rbasaksmoser: but an nss module would be nice!17:30
smoserrbasak, it doesn't require modiying /etc/hosts17:31
smoserwell, the whole solution does.17:31
smoserbut you could just use the parsing libvirt for domain->ip17:32
Logos01smoser: My apologies, what are you trying to do? (Catch me up)17:33
smoserwell, determine an ip address for a libvirt domain.17:34
Logos01You could nuke the need for network manager by just sticking w/ dnsmasq and using pkill -SIGHUP dnsmasq whenever there's an inotify event.17:35
smoseri have no need of network manager.17:35
Logos01I'm reading the oddbit.com blog page.17:35
smosermostly i was just interested in parsing of libvirt xml and dnsmasq.17:36
Logos01dnsmasq is pretty straightforward in these things.17:37
smoser?17:37
smoserthe problem is17:37
smoser a.) you start a domain in libvirt named 'smfoo'. it dhcp's and gets an ip address.17:38
Logos01If I understand it you want to be able to obtain the ip address of an arbitrary libvirt domain/guest.17:38
smoser b.) you want to ssh to 'smfoo'17:38
Logos01Right.17:38
smoserbut smfoo is not resolvable dnswise.17:38
smoserso you have to do that.17:38
Logos01And there are ways to make that viable.17:38
smoserwhich do not require guest modification?17:38
Logos01Nope.17:39
Logos01I am in the habit of using dnsmasq as a local DNS cache on my boxes.17:40
Logos01So my resolv.conf points to 127.0.0.117:40
Logos01This allows me to have whatever upstreams I like -- I could for example have my local dnsmasq instance reference the libvirt dnsmasq as an upstream.17:40
patdk-wkonly issue with that is, no dnssec support17:41
Logos01The libvirt upstream one will provide responses for its dhcp clients (or at least their leases)17:41
smoserLogos01, no it wont.17:41
Logos01patdk-wk: dnsmasq can do dnssec.17:41
smoserit will provide dns for those that provided it with a hostname on dhcp request.17:42
smoserand if you launch 10 instances of a disk image that have 'foo' in /etc/hostname it fails.17:42
smoseravahi is the other guest modification way to publish your name.17:43
smoserwhich is what uvtool uses now. but i dont want the guest modification.17:43
Logos01I'm not in the habit of reusing hostnames during provisioning.17:43
rbasaksmoser: I'm basically doing the same parsing inside uvtool.17:44
smoseroh. i didn't know that.17:44
smoser:)17:44
rbasaksmoser: writing /etc/hosts dynamically just feels bad to me.17:44
Logos01So you want systems to have a shared local hostname, not have that be modified during dhclient lease acquisition, and still have the ability to address a system by hostname upon startup ?17:44
rbasaksmoser: for example, have fun with guests inserting interesting hostnames :)17:44
smoserLogos01, "provisioning".17:44
smoseri want no "provisioning".17:44
Logos01smoser: Then you want no systems.17:44
rbasakZeroconf solves the problem.17:45
smoseri have cloud-init and ubuntu cloud images.17:45
Logos01Manual provisioning is still provisioning.17:45
smoseri download them and run them.17:45
smoseri dont modify them.17:45
rbasakBut avahi-daemon+libnss-mdns didn't seem reliable enough.17:45
Logos01That's a form of provisioning.17:45
smoserthats what i want to avoid.17:45
smoser"guest modification"17:45
Logos01Then let dhclient assign the hostname.17:45
rbasakI want sensibly named hosts.17:46
rbasakTHat I specified at the commandline17:46
Logos01Yeah, there's a meaningful part of the conversation missing here.17:46
smoserrbasak, actually, the dhclient being run with the hostname17:50
smoseris more doable now.17:50
smoserand in the future the nocloud data source would be able to set that.17:50
=== Lcawte|Away is now known as Lcawte
smoserthe change is that now in utopic, the neworking will not come up until after cloud-init has searched local datasources17:50
patdk-wkoh? when did dnsmasq get dnssec17:51
Logos01Not sure when, but: http://www.thekelleys.org.uk/dnsmasq/docs/dnsmasq-man.html17:52
Logos01"It can be configured to do DNSSEC validation."17:52
Logos01http://lists.thekelleys.org.uk/pipermail/dnsmasq-discuss/2014q1/008086.html <-- looks like it was Q1 2014.17:53
Logos01Made it into 14.04 w/ dnssec support.17:54
smoserLogos01, what did you mean by "let dhclient assign the hostname" ?17:58
tafa2eh17:59
Logos01smoser: I mean you have your dhcp server assign hostnames for the guests.17:59
smoseri dont know that i follow.18:00
tafa2whathttp://askubuntu.com/questions/104918/how-to-get-hostname-from-dhcp-server18:00
tafa22 seconds in google18:00
tafa2i didnt read it18:00
smoserguest modification, tafa2.18:01
tafa2smoser I came late... but you want to give dhcp clients hostnames server by your dhcp server?18:01
tafa2*served18:02
smosernever mind.18:03
smoserit seems this could be fairly well solved with a dnsmasq '--script' or '--luascript'.18:14
smoserlibvirt runs dnsmsasq with dhcp-hostsfile and addn-hosts . the script could then read libvirt, and populate the dnsmasq specific hosts with the new entry.18:15
smoseryou'd still have to query the dnsmasq nameserver to get the response, but youcoudl do it ther.e18:15
Logos01smoser: That is not guest modification.18:15
Logos01Guest modification is something done by an automatic provisioning process.18:15
Logos01Allowing dhcp server to assign hostnames when dhclient is run is a different story.18:16
smoserbut you ahve to modify the guest.18:16
smoserto make it set its hostname.18:16
smoseri dont know. maybe i'm missing something.18:16
=== kickinz1|afk is now known as kickinz1
=== markthomas|away is now known as markthomas
Logos01smoser: dhclient *should*, if 'instructed' to do so by the dhcp server, assign the hostname for the dhclient guest.18:47
Logos01You have to configure your dhcp server to instruct the dhclient binary to set the hostname.18:48
smoserreally ? i dont think that generally sounds like good advice.18:49
smoserwhat if i have 2 NICS both dhcp on different networks with different lease times.18:50
smoserseems unpredictable.18:50
=== kickinz1 is now known as kickinz1|afk
=== Guest15594 is now known as Locke2002
jrwreni prefer cloud-init setting my hostname :p19:20
=== bilde2910 is now known as bilde2910|away
=== bilde2910|away is now known as bilde2910
=== bilde2910 is now known as bilde2910|away
=== bilde2910|away is now known as bilde2910
=== Guest63200 is now known as hxm
[F_F]Ubuntu = Linux + Cancer + Aids20:51
[F_F]specially AIDS20:51
bastidrazorhaha, all curable and revolutionary20:54
=== bilde2910 is now known as bilde2910|away
=== bilde2910|away is now known as bilde2910
hxmhi21:08
hxmi have apache2 running, the 80 port is busy, now i have a process with webinterface that i want to run in port 80 too21:08
hxmi changed the listening host but it still says is in use21:09
hxmhow can i do that?21:09
=== bilde2910 is now known as bilde2910|away
geniihxm: You changed the port for apache to something else?21:21
hxmno, i found a solution using proxy_mod and proxypass21:21
geniiAh, good.21:23
Aisonhow can I run a dhcpv6 server and dhcpv4 server at the same time?!?21:48
Aisonthe strange thing is, i've got a isc-dhcp-server in /etc/init.d/21:50
Aisonand a isc-dhcp-server.conf and isc-dhcp-server6.conf in /etc/init21:50
Aison...-21:50
[F_F]I guess you need both static IP's first21:52
[F_F]IPv4 static and IPv6 static21:52
Aisonyes, i've got both, but somehow isc-dhcp-server have got no ipv6 version21:54
[F_F]hmmm21:55
[F_F]that's odd21:55
[F_F]http://knowledgelayer.softlayer.com/learning/adding-ipv6-ubuntu-systems21:55
[F_F]https://secure.evorack.com/portal/knowledgebase.php?action=displayarticle&id=1721:56
[F_F]hope that helps21:56
Aisonwhen I try to start, I get subnet6 statement is only supported in DHCPv6 mode.21:57
Aisonworks now :)21:59
[F_F]Where does 2 links helpful?22:00
[F_F]or not?22:00
Aisonnot directly, the addresses were correctly set22:00
Aisonbut the config file had the wrong name ^^22:01
[F_F]awwww :(22:01
hallynjdstrand: any complaints to /sys/firmware/devicetree/** r, in the libvirt-qemu template?22:08
hallyn(this is for bug 1374554)22:08
uvirtbotLaunchpad bug 1374554 in libvirt "ppc64el virsh start fails" [High,Confirmed] https://launchpad.net/bugs/137455422:08
jdstrandhallyn: none22:11
hallynthanks, pushing22:11
qman__Bug 1358925 still being an annoyance :/22:17
uvirtbotLaunchpad bug 1358925 in postfix "root alias does not get set" [Undecided,New] https://launchpad.net/bugs/135892522:17
=== bilde2910|away is now known as bilde2910

Generated by irclog2html.py 2.7 by Marius Gedminas - find it at mg.pov.lt!