/srv/irclogs.ubuntu.com/2014/11/05/#ubuntu-server.txt

=== exixt_ is now known as exixt
=== arosales_ is now known as arosales
=== zz_DenBeiren is now known as DenBeiren
=== markthomas|away is now known as markthomas
=== markthomas is now known as markthomas|away
MrPPSAnyone here have any details about the recently released repo updates to dovecot-core on ubuntu 12.04?02:57
MrPPSCan't find anything on the website that's newer than the april updates02:57
sarnoldMrPPS: I believe it was to allow turning off sslv302:57
MrPPSah ok, so no major things that might break?02:58
MrPPSat the moment, I'm cloning the server to apply updates there, just for testing02:58
sarnoldMrPPS: click on the little triangle next to "1:2.0.19-0ubuntu2.2" here, https://launchpad.net/ubuntu/+source/dovecot02:58
MrPPSah, cheers :) thanks sarnold!02:59
sarnoldMrPPS: there's no reports of any problems yet, and at least one user found that it worked :)02:59
MrPPS:D03:00
hariomHi, my server is behind NAT and has static ip 192.168.150.151. The firewall is getting another private connection and traffic is forwarded to this server's IP. The IP address of this private line is 10.0.65.66 . How can I add static route from server to this private line. Private line gw is 10.0.65.67 and domain is 10.0.65.205:58
hariomI tried "route add -net 10.0.65.2 gw 10.0.65.67" but I am getting this msg: "SIOCADDRT: No such process"05:59
igoryonya_hello, I've set a physical nic to 0.0.0.0 promisc and a tap0 to 0.0.0.0, connected them to a bridge, but the virtual machine still doesn't see the net, visible from that physical nic. when I configure the virtual machine's address with an address of the same subnet, that the physical card is connected to.06:53
cmddit would have to be routed on the firewall, not the server07:26
cmddthat is if the firewall is what is seperating the two networks07:27
=== liam_ is now known as Guest91925
=== bilde2910|away is now known as bilde2910
=== DenBeiren is now known as zz_DenBeiren
=== markthomas|away is now known as markthomas
lordievaderGood morning.08:45
=== chmurifree is now known as chmuri
=== exixt is now known as exixt_
sorensmoser: Hi! Do you have a minute?10:49
=== Lcawte|Away is now known as Lcawte
=== freyes is now known as zz_freyes
Voyagemy skype calling to a U.S number does not works via my ISP, I have a vps, I plan to make ssh tunnel and do all by that. Is it possible? and will it be of help?11:52
KartagisVoyage: why doesn't it work? blocked port?12:06
Voyagedont know..12:10
Voyageskype works but no calls12:10
KartagisVoyage: have you got credits?12:16
=== Lcawte is now known as Lcawte|Away
VoyageKartagis,  yes12:35
Voyageit works by other isps12:35
KartagisVoyage: try ssh tunneling then12:35
Kartagisif not, vpn12:35
VoyageKartagis,  ok, How can I ssh tunnel?12:35
Kartagisman ssh12:44
Kartagislook for -L parameter12:44
Voyageso ssh -D 39101     wont work for skype?12:48
KartagisVoyage: I have once used ssh tunneling, years ago; and used -L12:56
=== Lcawte|Away is now known as Lcawte
hallynstgraber: remind me, re lxc.vs.apparmor packaging.  lxc does not have a conflicts for older apparmor, it updates the apparmor profiles in debian/rules based on the targer arch.  So what would force someone on an older systrem who updates lxc, to get the newer apparmor that doesn't balk on the new rules?13:42
hallynI'm trying to figure out how to handle it best in libvirt, in lue of the cloud archives (trusty-on-precise which currently is causing apparmor to be uninstalled)13:42
hallyni suppose thta since utopic is now released it can't relaly be an issue13:44
etohello13:49
etoi would like to ask question about server variant is this right channel?13:49
=== zz_freyes is now known as freyes
lordievadereto: Yes, see /topic13:54
etookay i have trouble figuring out which server version will have working systemd13:54
etoi am especially interested in upcoming LTS release13:54
hallyneto: it's meant to be enabled in the next (15.04) release by default, but that's not absolutely certain.  16.04 is definately meant to use it13:58
hallynstgraber: ah, i see, dh_gencontrol section does the depends in lxc.  very good13:59
etohallyn: how far 16.04 is?13:59
hallynApril 201613:59
hallynstgraber: (though i'm not sure how to do a dh_gencontrol override in the libvirt packaging :)14:00
etohallyn: okay and according to my info next one is 14.something14:00
caribouhallyn: I'm reading an article on the topic by Raphael Hertzog (in french); he's talking about using DEB_DH_GENCONTROL_ARGS_ALL14:09
caribouhallyn: http://goo.gl/viozTZ (if you read french)14:10
hallyncertainly no technical french :)  i'm going to try it in a build/libvirt-bin:: section14:16
etoso can i at least swith to systemd on Ubuntu Server 14.04.1 LTS ?14:16
etoor where to ask question like that?14:17
KaltizI am trying to install nis but it gets stuck at Setting up nis (3.17-32ubuntu6)  I am running Ubuntu Server 14.10 any ideas?14:28
refjNetinstall hangs 20 minutes after fetching Packages.gz when installing 14.04 with preseed via iPXE. Been scouring google for a week to look solution. Found several bugs from 12.04 and earlier, where this is related to net-retriever. Anyone here experience the same issue?14:44
hallyneto: no.  you can experimentally try systemd on 14.10 (at least some ppl have tested it), not 14.04.  #ubuntu-devel may be the better place to ask14:48
caribouhallyn: I'm just testing conditional gencontrol atm14:49
hallynhm, so that post shows it differently...  my way didn't work so i'll try that now ;)14:50
refjOk, how do I generate a post installation report to use as a base for a bug report regarding the possible net-retriever issue?14:52
caribouhallyn: I'm trying a mix of the lxc tests & the post syntax.14:53
Kaltizmanaged to get the NIS package to install but now it does not seem to have an init.d script14:54
=== broder_ is now known as broder
hallyncaribou: hah, there is an english version? http://raphaelhertzog.com/2010/09/27/different-dependencies-between-debian-and-ubuntu-but-common-source-package/15:24
=== edwardly_ is now known as edwardly
=== freyes is now known as zz_freyes
michelehi there15:51
caribouhallyn: didn't know abou it15:52
micheleI need to change the ethernet (p2p1) address from dhcp to static (and I'm using NetworkManager) on an ubuntu server. The server is remote. I have ssh and root access. Any ideas?15:52
alreece45... NetworkManager on a server?15:59
tewardyeah i was about to say15:59
tewardthat's kind of unusual to have network manager on a server15:59
michelethat's right16:04
micheleI can remove it though16:04
=== daker__ is now known as daker
=== liam_ is now known as Guest86958
pmatulishallyn: re https://bugs.launchpad.net/ubuntu/+source/lxc/+bug/1081786 , if i have this in the host's /etc/default/lxc the container should be using it?  i have squid-deb-proxy set up17:01
uvirtbotLaunchpad bug 1081786 in lxc "lxc-create doesn't take advantage of the apt proxy" [Wishlist,Fix released]17:01
pmatulisMIRROR="http://10.0.3.1:8000"17:01
pmatulishallyn: it doesn't17:01
hallynpmatulis: depends how you created the container I think.  Did you use the ubuntu template?17:06
pmatulishallyn: lemme check17:06
pmatulishallyn: used ' -t ubuntu '17:07
hallynpmatulis: by any chance doe sjust adding '/ubuntu' at end of the MIRROR help?17:14
pmatulishallyn: lemme check17:14
pmatulishallyn: but i should be able to check if the container has *any* proxy configuration right?17:15
hallynyeah the template definately should be using what you give it both for debootstrap and to cat into the /etc/apt/sources.list in the container (just checked the script)17:15
hallynpmatulis: cat /etc/apt/sources.list in the container17:15
pmatulishallyn: nothing added17:16
hallynwhich release is this in?  (not that it's changed in a long time)17:17
pmatulishallyn: my host is trusty17:18
hallynpmatulis: so the other thing you're supposed to be able to do is set APT_PROXY which will then be put into the container's /etc/apt/apt.conf.d/70proxy...  but MIRROR is supposed to work17:18
pmatulishallyn: where/how do i set APT_PROXY again?17:19
hallyn/etc/default/lxc should work17:20
etoty hallyn17:20
hallynpmatulis: oh, you might try "lxc-create -t ubuntu ... -- ... --mirror=http://10.0.3.1:8000"17:21
hallynbut again i can't explain why it's not working17:21
pmatulishallyn: will try17:21
pmatulishallyn: dunno, i don't see any difference using --mirror17:29
hallynpmatulis: ok.  lemme spin up a host i can reproduce on.17:31
pmatulishallyn: this is what i used:17:31
pmatulissudo lxc-create -t ubuntu -n $NAME -P $DISK_DIR -- -S $SSH_KEY -r $RELEASE --mirror=http://10.0.3.1:800017:31
=== zz_freyes is now known as freyes
=== freyes is now known as zz_freyes
hallynpmatulis: oh,17:35
hallynpmatulis: i bet you had pre-generated a cache image.17:35
hallyncan you try adding -F?17:35
pmatulishallyn: ah, i would need to re-generate17:35
hallyni've got a test running, but lemme know if sudo lxc-create -t ubuntu -n $NAME -P $DISK_DIR -- -S $SSH_KEY -r $RELEASE --mirror=http://10.0.3.1:8000 -F works17:36
=== zz_freyes is now known as freyes
pmatulishallyn: it's taking the mirror option now but evidently i need to hack at its value in order to build a valid URL17:51
hallynpmatulis: ok, cool.  (my test failed, but due to some proxy badness, sigh)17:57
monokromeDoes anyone know if this version of SSL is vulnerable to heartbleed? It's the version in our Ubuntu server.18:52
monokromeOpenSSL 1.0.1 14 Mar 201218:52
monokromebuilt on: Thu Aug 7 13:42:02 UTC 201418:52
qman__Heartbleed was in April so probably not, but we need the package version to tell for sure18:53
monokromeAnother machine has 1.0.1f which I think is also vulnerable?18:53
monokromeOh, how can I get the package version?18:53
ogra_all supported releases had security updates long ago ... as long as you run something supported and kept it up to date with security fixes you will be fine18:53
qman__dpkg -l | grep openssl18:53
monokromeThanks, I'll try that18:54
monokrome1.0.1-4ubuntu5.1718:54
qman__Then compare against the security announcement18:54
ogra_note that major versions dont get bumped for security patches18:54
monokromeYeah, but the version should be 1.0.1g if it is fixed (unless someone moved a patch into an older version) right?18:55
ogra_1.0.1-4ubuntu5.17 = upstream 1.0.1 ... debian patchset 4 ... ubuntu patchset 5 ... ubuntu--security patchset 1718:55
qman__USN-2165-118:55
monokromeogra_: Could you help me understand how you found that?18:55
ogra_if you have the patch it will be one of the 17 security fixes ... the major version will not be touched18:56
qman__That's what the version number means18:56
monokromeOkay18:56
ogra_so no matter if it is e or f, what counts is the 17 an dteh relation to the matching USN18:56
qman__http://www.ubuntu.com/usn/usn-2165-1/18:56
ogra_so it was fixed in 5.12 ... you are on 5.17 ... and should be safe18:57
monokromeOh, okay. I'll bookmark that security notices site18:59
monokromeThanks for the help :)18:59
ogra_:)18:59
pmatulishallyn: on your trusty host can you create a lucid container?  it never works for me19:17
=== freyes is now known as zz_freyes
=== zz_freyes is now known as freyes
=== wedgwood1 is now known as wedgwood
rostamhi I am using ubuntu 14.04. When I type the command, domainname it returns empty. How could I fix that? thanks20:45
sarnoldrostam: do you really want to use NIS??20:46
rostamsarnold, We use dns in our system setup, I thought domainname should return dns server IP address???20:48
sarnoldrostam: nope, domainname is for NIS20:51
=== exixt_ is now known as exixt
rostamsarnold, thanks21:04
rostamQuestion how could I retrieved the dns server Ip address on my system?21:07
geniicat /etc/resolv.conf21:09
=== exixt is now known as exixt_
rostamgenii, thanks21:11
geniinp21:11
geniiquikole: Please stop spamming in private message21:13
FilthyMacNastyany of you server people familiar with clonezilla server?21:22
=== bilde2910 is now known as bilde2910|away
=== elliotd123__ is now known as elliotd123
hallynpmatulis: a lucid container?  heh, i haven't tried tha tin a long time22:28
pmatulishallyn: yeah, me too but i needed one today22:29
* hallyn chekcs whehter download template supports that22:29
hallynpmatulis: the download template supports it22:29
pmatulishallyn: the telltale symptom is22:30
pmatulis'Can not write log, openpty() failed (/dev/pts not mounted?)'22:30
hallynpmatulis: that's with 'lxc-create -t ubuntu -n container -- -r lucid' ?22:30
hallynpmatulis: or does that also happen with the download template?22:31
hallynin either case, please file a bug.  but if the download templat eworks that would be a workaround for you22:31
pmatulishallyn: same command i gave before.  also tried with -F22:31
pmatulisi'm not sure what the download template is22:32
* pmatulis needs to eat22:33
stgraberpmatulis: lxc-create -t download -n container -- -d ubuntu -r lucid -a amd6422:33
=== Lcawte is now known as Lcawte|Away
hallynpmatulis: ^ yeah what stgraber said.  Like I say in either case please file a bug, it sounds to me like actually a debootstrap bug, but since we support lucid through 2015 on server it shoudl still be owrking22:37
Joe_knockHi.23:11
Joe_knockHow do I use the sed command on this line of text: @require(dirname(__FILE__).'/php/login.php'); ?? I want to remove this line of text from about 5 files.23:11
pmatulishallyn: oh, yes, i am using a template (-t).  like my command showed (?)23:18
pmatulissudo lxc-create -t ubuntu -n $NAME -P $DISK_DIR -- -S $SSH_KEY -r $RELEASE23:18
Joe_knockpmatulis: I'm not sure I understand you.23:19
pmatulisJoe_knock: i was talking to hallyn23:21
Joe_knockokay. no problem23:21
FilthyMacNastypmatulis: I'm certain I dunnot understand you23:22
hallynpmatulis: the download templat eis also just another template, but it downloads pre-built tarballs from linuxcontainers.org.  i suspect that 'lxc-create -t download -n l1 -- -d ubuntu -r lucid -a amd64' will work23:23
hallynas a workaround23:23
* hallyn out, bbl23:23
=== Locke2002 is now known as Guest5332
hallyn(that is, a full night's sleep later :)23:23
pmatulishallyn: ohhhh23:24
Joe_knockaah I solved my own issue. yikes23:47

Generated by irclog2html.py 2.7 by Marius Gedminas - find it at mg.pov.lt!