/srv/irclogs.ubuntu.com/2014/11/06/#ubuntu-server.txt

=== exixt_ is now known as exixt
=== markthomas is now known as markthomas|away
=== zz_DenBeiren is now known as DenBeiren
FilthyMacNastyany of you server peoples know how to pxe boot a multiple image server?00:56
FilthyMacNastybecause I'm lost00:57
sarnold"multiple image server"?00:57
FilthyMacNastydell d620 dell d630 dell 830 all windows 7 pro00:57
FilthyMacNastyI have a full on installed machine in each flavor, would like to create an image for each and then pxe boot the other 40 or so mixed machines I have00:58
FilthyMacNastyand I dont want to fiddle with the winders aik00:58
=== markthomas|away is now known as markthomas
=== markthomas is now known as markthomas|away
sarnoldFilthyMacNasty: hmm. I've used maas to pxeboot a handful of virtual machines before but really don't know how well it would handle windows images, sorry01:01
LinStatSDRyou can01:01
LinStatSDRdeployment services if hes using windows01:01
LinStatSDRIt has a setup wizard that's not bad01:02
LinStatSDRBut you would probably have a better time doing multicast if you're worried about bandwidth doing it all at once01:02
FilthyMacNastyI'm currently using clonezilla live cd to image them but I would think I could pxe boot to something01:03
LinStatSDRDoing this on what server os?01:03
Joe_knocksarnold: Is there a way I can specify using tail over a period of time? I'd like to check changes that occurred in a directory over the past 10 hours.01:07
Joe_knockI helped someone else recently to install a PXE server. Can I share the install stuff with you? FilthyMacNasty01:08
Joe_knockfascinating username, btw.01:08
sarnoldJoe_knock: you can use find's -mmin predicate to try to find files modified more recently than a certain number of minutes ago; there's no way to find out what part of the file might be newer or older01:12
Joe_knocksarnold: Thanks. found a solution here: http://stackoverflow.com/questions/5242501/how-to-find-the-files-that-are-created-in-the-last-hour-in-unix01:16
FilthyMacNastysorry for the delay, my previous mirc computer bought the farm01:23
FilthyMacNastyubuntu servers stuck in a windows world01:24
FilthyMacNastybleh01:24
WilliamDotATi like windows for some things01:27
WilliamDotATi also see a place for OSX01:28
WilliamDotATim not radical enough for this channel01:28
sarnoldenjoy :)  http://www.windows93.net/01:29
WilliamDotAThaha01:30
WilliamDotATincluding ILOVEYOU trojan txt in root01:30
WilliamDotATfunny thing01:30
Joe_knockwindows for gaming, yes.01:31
WilliamDotATi saw that the enw Nvidia drivers are now on-par with Windows01:31
Joe_knockand I think the hardcore channel you're looking for is #ubuntu-radicals01:31
WilliamDotATthey're binary of course01:31
WilliamDotATbut still01:31
WilliamDotAT+ Steam + Source Engine/Unreal = not bad01:31
WilliamDotATPortal 2 works far better on my Linux than on my Mac system01:32
Joe_knockI cant wait to get a new system. I can do PC gaming once again thereafter.01:32
WilliamDotATmine is still ok for gaming01:33
WilliamDotATi will just buy a new GPU for GTA V01:34
WilliamDotATR290X or so01:34
Joe_knocklaptop or desktop?01:36
WilliamDotAThaha01:45
WilliamDotATdesktop01:45
=== TDog_ is now known as TDog
=== TDog_ is now known as TDog
=== lkthomas_ is now known as lkthomas
=== liam_ is now known as Guest77235
lordievaderGood morning.08:29
=== sync0new is now known as sync0pate
=== exixt is now known as exixt_
=== DenBeiren is now known as zz_DenBeiren
=== zz_DenBeiren is now known as DenBeiren
dirk__hi11:02
dirk__I need help in networking with ubuntu 14.0411:02
dirk__could someone help?11:03
dirk__hey, someone here?11:03
=== kickinz1|afk is now known as kickinz1
=== DenBeiren is now known as zz_DenBeiren
=== kickinz1 is now known as kickinz1|afk
pmatulismorning12:13
=== Lcawte|Away is now known as Lcawte
=== Lcawte is now known as Lcawte|Away
=== exixt_ is now known as exixt
dine909ive created a ubuntu installation using debootstrap - got it booting, and workiing - however my network adaptors dont up automatically, although work fine when i manually up them13:27
dine909what is the glue ubuntu uses to do this?13:28
dine909(its a trusty dist)13:28
dine909(that i created)13:28
dine909root13:33
dine909eek13:33
=== kickinz1|afk is now known as kickinz1
=== rcj is now known as Guest40311
=== kickinz1 is now known as kickinz1|afk
xperiahi all. small question. is there a reason why mysql5.6 is not the default database in ubuntu 14.10 ? from what i have read it should be about 3 times faster than the mysql5.5 version shipped and installed with ubuntu by default?14:17
rbasakxperia: there were issues with the transition, so we decided to delay it until this cycle.14:18
rbasakxperia: eg. http://lists.alioth.debian.org/pipermail/pkg-mysql-maint/2014-September/007015.html14:19
xperiarbasak: ahh yeah understand it full. i tryed yesterday to install mariadb10.1 on my ubuntu 14.04 to get much more functionality like master master replication and it did not worked out. had several dependecies problem with access apparmour restriction. had to go back to mysql 5.5. lucky all went good. thanks for the link. reading it right now.14:20
=== zz_DenBeiren is now known as DenBeiren
=== freyes is now known as zz_freyes
=== zz_freyes is now known as freyes
fixmypc956I am trying to follow this instructable http://www.instructables.com/id/How-to-Host-Your-Own-Cloud-v20/?ALLSTEPS to start my own cloud...cant get it to work. please help14:34
xperiafixmypc956: it looks like a very simple apache file server. did you followed all the steps described?14:39
fixmypc956well im stuck where i need to make a directory14:40
fixmypc956i already have my directories made where i want my files14:40
LinStatSDRMorning14:41
fixmypc956morning14:41
xperiafixmypc956: in the configuration file there is the path where you need to have this directorys. usali it is in /var/www there you need to make simple sudo mkdir /var/www/yourdirectorys and should be fine.14:42
xperiaactually should find there allready also the html file that is showed when you call the apache server over a webbrowser like http://localipadressofyourserver/14:44
xperiasomething like "it works" should appear14:44
xperiaahh sorry you changed the port so the url would be need to be  http://localipadressofyourserver:8080/14:47
fixmypc956ok let me check this14:47
=== bilde2910|away is now known as bilde2910
LinStatSDRAnyone familiar with running Maven on ubuntu 14.0415:00
cyphermoxsmoser: hallyn: rbasak: I've been preparing an update to isc-dhcp -- merge with Debian and some apparmor profile additions for dhclient, I don't currently have very much of a server setup here ready, so I was wondering if you'd be willing to help test dhcpd before I go upload it15:44
=== kickinz1|afk is now known as kickinz1
=== kickinz1 is now known as kickinz1|afk
smosercyphermox, well, the most i could do really is put it into some cloud instances15:46
cyphermoxok15:47
rbasakcyphermox: I don't have any specific paces to put it through either, sorry.15:52
cyphermoxack15:53
=== Guest40311 is now known as rcj
=== rcj is now known as Guest80531
=== kickinz1|afk is now known as kickinz1
hallyncyphermox: where is the proposed package?16:32
hallyn(it's just about EOD here but i can aim to build+test it in a container or two)16:32
cyphermoxI've tested the server bits quickly by breaking my own network, I think it will be alright ;)16:33
cyphermoxso, thanks, but you don't need to stay around after all16:33
hallyncyphermox: great, good night :)16:44
cyphermoxgood night!16:44
john___I've got a weird problem, On my Ubuntu server when i try to ping my Printer that's connected on my LAN network i'm getting "ping: sendmsg: Operation not permitted", when I disable UFW pinging the printer works perfectly. I also tried an arp-scan on localhost and the printer does not get listed there at all.17:18
john___Any idea what might be the problem here?17:18
patdk-wk_your firewall :)17:21
john___Seems like arp-a finds my printer while doing arp-a instead of arp-scan, I just wonder what's causing the pinging problem tho17:21
john___That's pretty obvious :) but i'm unfamiliar to configure a UFW firewall rule to allow the pinging to the device :)17:22
patdk-wk_heh?17:23
patdk-wk_you just allow ping17:23
patdk-wk_oviously arp works, likely cause you didn't block it17:23
patdk-wk_but you blocked ping17:23
john___Pinging works succesfully on other devices on the network17:23
patdk-wk_most people never block arp17:23
john___it's just the printer17:23
patdk-wk_so?17:23
patdk-wk_not sure what that has to do with it17:23
patdk-wk_when you get, operation not permitted17:24
patdk-wk_that means your computer says it's not allowed17:24
patdk-wk_that normally means one of two things17:24
patdk-wk_no route to it, or firewall17:24
=== exixt is now known as exixt_
john___must be firewall then cause arp-a lists "(192.168.0.59) at (mac) [ether] on eth0"17:25
john___(printer)17:25
=== exixt_ is now known as exixt
john___patdk-wk would adding certain rules in my firewall to allow icmp ping solve this?17:27
patdk-wk_sure, if done in the correct order17:28
john___ok, thank you17:28
=== kickinz1 is now known as kickinz1|afk
=== Lcawte|Away is now known as Lcawte
=== patdk-wk_ is now known as patdk-wk
=== bilde2910 is now known as bilde2910|away
jarnoanyone know abit about subnetting here?21:16
jarnofor 2 subnets Network Class C 211.16.17.0/24 & 211.16.17.0/25 Subnetmask 255.255.255.0 & 255.255.255.128 what would be the network adres?21:18
jarnoboth 211.16.17.0?21:18
sarnoldugh I don't know what you're trying to do but overlapping networks like that with different netmask lengths sounds like a recipe to endless frustration and hatred21:19
guntbertsarnold: +121:24
=== Guest80531 is now known as rcj
=== Lcawte is now known as Lcawte|Away
=== rcj is now known as Guest64490
Joe_knocksarnold: How would I check a facebook link that may contain malware without using the browser (or safely) ?21:32
=== bilde2910|away is now known as bilde2910
Joe_knockDoes anybody know how to analyze a tcpdump output?22:35
jhobbsopen it with wireshark22:37
igoryonyatcpdump shows the line: packets dropped by interface, how can I see which packets were dropped?22:41
jhobbsyou can't, they were dropped22:42
igoryonyajhobbs, so, how do I tackle the problem then, my pings don't get replied from some subnets and I need to determine, what makes them drop.22:48
jhobbsigoryonya, your interfaces shouldn't be dropping traffic unless they are very busy - is that the case?22:50
igoryonyajhobbs, no, I wouldn't say so, it's a newly installed server. Packets are being dropped on a virtual machine it's interface is being configured to connect to the ISP with the IP address behind a NAT (the ISP gives NATted addresses from the 172.16.0.0/16 network) all the addresses from that net ping, and dns resolves, but the internet addresses don't get replies to the vm, although, when I monitored with tcpdump on the tap0 interface from the host mach22:55
igoryonyaine, the pings to the internet addresses return with a reply packet.22:55
Joe_knockDoes this tcpdump: 14:56:27.742567 IP 174.143.140.137.80 > 192.168.2.21.45704: Flags [S.], seq 3555324792, ack 2292208597, win 5792, options [mss 1452,sackOK,TS val 593134436 ecr 91197600,nop,wscale 6], length 022:58
Joe_knockMean this:22:58
Joe_knocka packet of length 0 was received from the sender22:58
Joe_knockIt looks like the sender and receiver acknowledged each other though22:58
WhiteIntelhello, does the command "ip route add" persist the static routes also after a reboot?23:01
sarnoldJoe_knock: it's hard to check a possibly-malicious link safely; if you grab the contents with curl or wget that'll sometimes be sufficient; when I'm confident something is evil, I'll stick a very tight apparmor profile on wget for the download to prevent an exploit from easily working23:02
sarnoldWhiteIntel: no, it only modifies the current routing table; if you want it persistent you have to take other steps23:02
WhiteIntelsarnold: ok, and what steps if have to take23:02
tafa2does anyone backup their servers to S3? If so does anyone have a particular strategy in place? Like a write only user with no delete rights incase the server is ever compromised an attacker wouldn't be able to delete your backup as well?23:03
Joe_knocksarnold: It is an example I am trying to work through. I'm trying to understand what tcpdump is for and what the output means (based on the example). [what it means = what is it telling me in laymans terms]23:03
sarnoldWhiteIntel: depends on what you're doing; modifying /etc/network/interfaces isn't a bad starting place though23:03
sarnoldJoe_knock: oh, nice, tcpdump is an awesome tool.23:04
WhiteIntelsarnold: you mean the config directive "up route add -net"?23:04
jhobbsJoe_knock: wireshark can be a lot easier to understand if you're getting started23:04
Joe_knockokay I see you were answering a previous question sarnold23:04
jhobbsJoe_knock: it interprets packets a lot more for you, and can do stuff like follow a particular connection23:05
jhobbstshark also if gui is hard23:05
Joe_knockjhobbs: I am installing that software. It is open source and not in binary, right?23:05
jhobbsigoryonya: watching for ping replies along all the interfaces back to the VM is the right thing to do; you don't see the responses at all in the VM i guess?23:05
jhobbsJoe_knock: yes it's open source23:06
sarnoldWhiteIntel: yeah, if what you're doing fits there, anyway23:06
igoryonyajhobbs, I see the responces in vm to 172.16.0.0/16 subnet, but not to the global internet addresses, although, tcpdump shows that replies from global addresses get all the way up to tap0 of the virtual machine connected to. So they traverse through the real nic -> bridge -> tap, but only 172.16.... get to the actual vm.23:08
Joe_knockjhobbs: I see that this tool is for network admins. Gonna be fun using it.23:08
jhobbsJoe_knock: or for developers - it's an essential for anyone doing anything interesting with networking23:09
jhobbsigoryonya: do you have iptables rules set that may be interfering?23:09
jhobbsi have to run, good luck23:09
WhiteIntelsarnold: is there a wiki page for the exact syntax? I have to set some routes that donĀ“t have a gw only an other address => via an other net23:10
Joe_knockThanks. take care jhobbs23:10
sarnoldWhiteIntel: none that I know of; the resolvconf manpage and interfaces manpages describe the interfaces format, and the ip-route manpage describes the ip route interface..23:11
sarnoldWhiteIntel: there's a huge pile of interesting stuff here: http://lartc.org/ -- but I suspect it's suffered bitrot, and it was never very good at distro-specific details23:12
WhiteIntelsanrold: ok I will have a look at this, thank you very much!: )23:12
igoryonyajhobbs, no packets were being able to pass to the vm, then I temporarily made an iptables rule to accept all the forward packets, and started getting replies to the 172 subnet, but didn't get any replies to global with that rule. then i added rules to iptables that pass all the packets from and to the phisical nic, connected to the isp, bridge and the tap, so, unless, I've missed something, none of the traffic on this route is blocked. iptables on the23:14
igoryonya vm show no rules attached to it at all.23:14
igoryonyajhobbs, can I show you my iptables config, maybe you can see something that I've missed?23:14
=== exixt is now known as exixt_
=== sync0new is now known as sync0pate

Generated by irclog2html.py 2.7 by Marius Gedminas - find it at mg.pov.lt!