=== markthomas is now known as markthomas|away | ||
=== zz_DenBeiren is now known as DenBeiren | ||
=== alai is now known as alai-vacation | ||
=== stiv2k_ is now known as stiv2k | ||
nilesh | Hello, what is the proper method to allow tcpdump in apparmor when it is in enforcing mode? | 05:38 |
---|---|---|
nilesh | I tried aa-genprof, but that doesn't work. I'm still getting permission denied when it goes back in enforcing mode. | 05:39 |
jjohansen | nilesh: what does the DENIED message in the logs look like? | 06:16 |
jjohansen | grep DENIED /var/log/syslog | 06:16 |
jjohansen | or | 06:16 |
jjohansen | dmesg | grep DENIED | 06:17 |
nilesh | jjohansen: it's denying all kinds of sockets | 06:30 |
nilesh | and this happens for mysqld, tcpdump, dhclient | 06:30 |
nilesh | currently I've put all of them in complain mode | 06:30 |
nilesh | even checked apparmor_parser, and the final profile file does contain the relevant declarations (net_raw, inet, etc) | 06:31 |
jjohansen | nilesh: right but what are the messages, can you pastebin them? I could then tell you what rules you need to add | 06:31 |
nilesh | one second | 06:31 |
nilesh | jjohansen: here https://gist.github.com/anonymous/17aed11fde3276b44449 | 06:34 |
jjohansen | nilesh: what release are you running? And did you replace the profile? | 06:38 |
jjohansen | The profile looks like it has the necessary rules | 06:38 |
nilesh | it's natty with 3.2 kernel... (this is used for some custom software, so we are unable to upgrade to a supported ubuntu version right now) | 06:41 |
nilesh | the work is in progress | 06:41 |
jjohansen | nilesh: okay, so this seems to be familiar, I'll see if I can dig up a bug. | 06:42 |
* nilesh fingers crossed | 06:43 | |
jjohansen | nilesh: hrmm, I didn't find it, would you be willing to try a newer compiler? | 06:49 |
jjohansen | nilesh: actually just try | 06:50 |
jjohansen | sudo apparmor_parser -r /etc/apparmor.d/usr.sbin.tcpdump | 06:50 |
jjohansen | first and check that the profile was properly reloaded | 06:50 |
jjohansen | nilesh: okay its looking like I can't build a natty package in the ppa anymore, I will have to see if I can't setup locally to do it | 07:04 |
jjohansen | nilesh: the other thing you could paste me is the output of | 07:07 |
jjohansen | apparmor_parser -QT -S /etc/apparmor.d/usr.sbin.tcpdump | hexdump -C | 07:07 |
jjohansen | nilesh: I am going to step away for a few hours and will look at this more when I get back | 07:11 |
nilesh | jjohansen: https://nileshgr.com/tcpdump_apparmor_hexdump | 08:07 |
=== Lcawte|Away is now known as Lcawte | ||
=== Lcawte is now known as Lcawte|Away | ||
lordievader | Good morning | 08:53 |
=== Lcawte|Away is now known as Lcawte | ||
jamespage | jodh, morning | 09:35 |
jodh | jamespage: hi! | 09:35 |
jamespage | jodh, so.... is doko the only foundations team person who deals with python? I have a core language problem I need resolving in 12.04 | 09:36 |
jamespage | but I'm not 100% comfortable doing the update myself | 09:36 |
jamespage | https://bugs.launchpad.net/ubuntu/+source/python2.7/+bug/1081022 | 09:36 |
uvirtbot | Launchpad bug 1081022 in python2.7 "logging.SysLogHandler doesn't close UNIX socket when connection failed" [Undecided,Fix released] | 09:36 |
jodh | jamespage: not just doko - we have barry of course. But he's on vac now. | 09:39 |
jamespage | hmm I can't find doko on irc either | 09:39 |
jodh | jamespage: I think doko should be around later. If not, then slangasek/stgraber might be the best bet. | 09:42 |
jamespage | jodh, ack - I'll ping doko later | 09:55 |
jamespage | I'm happy todo the SRU - just wanted a expert review of my patch pre-upload | 09:55 |
Odd_Bloke | Am I right in thinking that the ordering of dependencies in /etc/init.d/.depend.* isn't significant (i.e. a: b c is equivalent to a: c b)? | 10:00 |
qis | Hi! Would you suggest using the ubuntu LTS server image as a workstation base to get rid of ubuntu-specific GUI applications? | 10:04 |
qis | For Android and Chromium development. | 10:04 |
qis | Or rather the desktop version and manually uninstall all unrequired software? | 10:04 |
lordievader | qis: I'd use the server iso or the mini iso, indeed. | 10:06 |
qis | lordievader: Thanks. | 10:07 |
qis | I'll go with the server iso since I need a postgresql database anyway. | 10:07 |
jadesoturi | hi all. im in a process of purchasing a new hp proliant dl380p server, and hp is pushing me to get a HP 512MB P-series Smart Array Flash Backed Write Cache for caching most accessed files from the raid array on to the OS ssd. is there a software/free way of doing this without loosing much performance? | 10:17 |
jadesoturi | from what i understand, its possible to achieve this using LVM with 1 vg and 2 lvs - 1 for "slow" raid and 1 for the SSD raid array... | 10:19 |
jadesoturi | but is it as good as using the smart array option= | 10:19 |
sheptard | jadesoturi: zfs + l2arc on ssd | 10:23 |
jadesoturi | sheptard, ok. zfs as filesystem for the OS then ? | 10:23 |
jadesoturi | have to googel l2arc. :P heh e | 10:23 |
sheptard | it's the caching part of zfs | 10:24 |
jadesoturi | ok. and this would give me the same results as using that smart cache controller? | 10:25 |
sheptard | well | 10:25 |
jadesoturi | and i am still able to use LVM ? | 10:25 |
sheptard | if you want something simple that just works, go with what you were thinking and the 'smart' cache controller | 10:25 |
jadesoturi | cause im thinking of setting up a encrypted LVM on top of the raid(will be handeled by the built in raid controller) | 10:25 |
jadesoturi | ok.. l2arc is complicated setup ? | 10:26 |
sheptard | zfs is different | 10:26 |
=== Lcawte is now known as Lcawte|Away | ||
sheptard | l2arc is part of zfs | 10:27 |
sheptard | I'd just go your route | 10:27 |
sheptard | and haggle HP down on the price of the controller | 10:27 |
jadesoturi | ok. never used ZFS, so know little about it.. :) | 10:27 |
jadesoturi | this is a "Barebone" server that we will be expanding later on. but performance is crucial, so if a little more work gets me the extra horsepower im willing to do it.:P hehe | 10:28 |
sheptard | if performance is critical, why are you encrypting | 10:28 |
Lightsword | I’m trying to use ubuntu-server as a proxy with iptables, I’m using these rules but it doesn’t seem to be working https://gist.github.com/jameshilliard/45d4bcf840533116bf07 | 10:29 |
jadesoturi | well, as i understand, that does not affect performance, since its decrypted on boot, or does it actually encrypt all the time. safety is important since it will be handling personal client information.. | 10:30 |
Eggs_ | jadesoturi: you dont really want to use any raid card with ZFS as it messes with it, so i suggest using the cache, though the 512MB seems very small | 10:31 |
jadesoturi | yeah, thats why i wanted to use a part of the os ssd for that instead.. | 10:31 |
jadesoturi | Eggs_, so software raid would be better then ? | 10:31 |
sheptard | jadesoturi: if you're going to spend all that money on a hw raid controller, might as well use it as a hw raid controller | 10:32 |
jadesoturi | well. the HW raid controller is part of the proliant dl380p chassie.. so cant really opt out it, but i can choose not to use it if l2arc is safer/better.. | 10:33 |
Eggs_ | jadesoturi: with the raid controller you will have more headaches than its worth on ZFS | 10:33 |
jadesoturi | that smart array cache is just an addon.. | 10:33 |
jadesoturi | Eggs_, ok.. | 10:33 |
sheptard | jadesoturi: does it have battery backup at least? | 10:33 |
jadesoturi | so how does one secury one self from drive failure on ZFS ? | 10:34 |
jadesoturi | sheptard, the smart array controller or the built in raid controller? | 10:34 |
mardraum | can't you set the controller to JBOD? | 10:34 |
jadesoturi | mardraum, dont have it in hand yet, so not sure, but most likely.. | 10:34 |
mardraum | jadesoturi: you choose a raid level you are comfortable with in terms of redundancy | 10:35 |
Eggs_ | jadesoturi: ZFS is designed to be used with direct access to the disks for fault tollerance, you `scrub` the disks and it checks the checksums against a table and corrects any bit rot | 10:35 |
White_Cat | is there a mail server that I can use with ubuntu-server. I was looking at postfix but that requires creation of ubuntu accounts per each email account. I'd rather keep the two seperate | 10:37 |
jadesoturi | ok. so what happens when a drive fails then? dataloss? how is redundancy handeled? | 10:38 |
maswan | the hp raid "flash-backed" raid controller is a raid controller with 512MB write-back RAM cache | 10:38 |
maswan | the flash comes in as the fallback when power is lost, then it gets flushed to flash | 10:38 |
maswan | (only need small caps instead of the big batteries of old raid controllers with write-back cache) | 10:39 |
maswan | it is not accessable as a disk from the OS for zil or so | 10:39 |
jadesoturi | ok.. thanks for the info:) so the "caching part is handeled by the raid controller then, without ubuntu ever knowing about it then? | 10:40 |
jadesoturi | i just want a safe and redundant solution wthout having to cash out all of my money. | 10:41 |
Eggs_ | jadesoturi: you can set drives as hotswappable, if a drive fails the new one picks up, or you can manullly replace the drive without rebooting, very similar to what raid controller does but its all software based | 10:44 |
jadesoturi | ok.. so it is a software raid with a different name then:) ehhe | 10:45 |
jadesoturi | how many drives can fail before there will be dataloss? | 10:45 |
mardraum | jadesoturi: the reality is though, since you are ponying up the cash for a decent server, it does have decent hardware RAID | 10:45 |
mardraum | jadesoturi: depends on your RAID level, every time | 10:45 |
mardraum | and this is coming from a big ZFS guy (me, though not on ubuntu). | 10:46 |
Eggs_ | jadesoturi: you can set up RAID5,6,10 etc | 10:46 |
Eggs_ | jadesoturi: i use ZFS as a large store, 20TB | 10:46 |
sheptard | ~140'ish TB here | 10:47 |
jadesoturi | ok. let me get this straight.. if i use ZFS, then i should NOT use the built in raid, but use software raid instead? (ref. your comment about ZFS being picky with hw raid)? is this correct? | 10:47 |
mardraum | jadesoturi: ZFS is your entire RAID solution, you present the disks to it as JBOD | 10:48 |
jadesoturi | we are going for raid 6 to begin with, and over to raid 60 later, as it has better write performance( just cant afford all the drives to begin with).. starting with 3tb and the plan is to extend to 15TB by q3 2015.. | 10:48 |
mardraum | you don't sound like you know much about this or are willing to research (no offense). If you don't want to get fired, go with the HP RAID, which is perfectly good. | 10:48 |
jadesoturi | mardraum, thanks you, exactly what i was wondering about.. | 10:49 |
jadesoturi | well. i know enough about raid, nut not zfs,, got a little confused here.. | 10:49 |
mardraum | I would suggest get this into production and in your spare time play with ZFS and understand it more | 10:50 |
jadesoturi | and i am willing to do the research, this being part of it.. always best to talk to people who deal with it on a regular basis, isnt it? | 10:50 |
Eggs_ | jadesoturi: zfs has only recently become native to linux, it used to be fuse and its much better now, its defintatly worth a test | 10:50 |
jadesoturi | most likely is what im gonna do - start off with hd raid and lvm cache, and move one to ZFS once i know more about it.. :) | 10:51 |
=== Lcawte|Away is now known as Lcawte | ||
jadesoturi | Eggs_, i will play with it a little and see. thank you so much for the help.. just one last question: the LVM cache feature - anyone used it or have any performance info on it? tried google but cant seem to find much in terms of comparison. | 10:52 |
Eggs_ | jadesoturi: i guess any kind of caching system depends entirly on the data your accessing, what is it used for? | 10:53 |
jadesoturi | document archive with php processing, pdfs, docx, jpegs etc.. | 10:54 |
jadesoturi | i know i can use dmcache, bcache etc also, but not sure witch one is best suited for the setup we are doing here.. | 10:55 |
jadesoturi | anyways. thank you for great answers.. gonne stick around in here:) but have to run to a meeting.. be back later to bug you guys some more if its ok ;) | 10:56 |
=== MeltedDed is now known as MeltedLux | ||
jadesoturi | checked up on it, the built in controller does not support JBOD, solution is single raid0 drives, but that does really work in the long run... looks like raid+lvm it is untill i get a LSI sas controller and learn zfs some more,, shame.. i liked what i read about it... | 11:25 |
qis | Is there a guide how to install cloud9 on a local ubuntu 14.04 server? | 11:29 |
qis | Yes, I tried googling for it. A lot of noise! | 11:29 |
qis | Hmm, I'll just make a VM snapshot and try the instructions on https://github.com/ajaxorg/cloud9/ | 11:31 |
daviiiddddddd | hi | 11:33 |
daviiiddddddd | someone can help me plz? | 11:33 |
daviiiddddddd | i've reinstalled dhcp-server, but /etc/dhcp is empty. | 11:33 |
daviiiddddddd | i need to configure dhcp.conf in order to customize my net | 11:33 |
daviiiddddddd | but folder is empty :( | 11:34 |
daviiiddddddd | noone can help me? | 11:40 |
jadesoturi | http://ubuntuserverguide.com/2012/06/how-install-dhcp-server-on-ubuntu-server.html | 11:42 |
qis | Is there a real ubuntu documentation? | 11:42 |
qis | Like FreeBSDs handbook. | 11:42 |
qis | Or can I just use the debian documentation for server configuration and management? | 11:43 |
qis | At least the pre-systemd one. | 11:43 |
Eggs_ | qis: i dont think so, ubuntu messes with the networking a lot so its not going to be the same as debian | 11:45 |
Eggs_ | qis: but i dont really know more than that sorry | 11:45 |
qis | Ok. | 11:45 |
jadesoturi | qis, if you have allready checked the documentation on help.ubuntu.com then forums/google is your best bet i guess | 11:47 |
qis | jadesoturi: Forums have a long response time. Google and forum search usually return a lot of noise in form of outdated or inept answers. | 11:48 |
jadesoturi | valid point.. but guess thats the reality of the internets now-a-days. | 11:49 |
=== Bilge- is now known as Bilge | ||
=== Lcawte is now known as Lcawte|Away | ||
=== a1berto_ is now known as a1berto | ||
zul | jamespage: https://bugs.launchpad.net/cinder/+bug/1403068 | 13:54 |
uvirtbot | Launchpad bug 1403068 in cinder "Tests fail with python 2.7.9" [Undecided,New] | 13:54 |
jamespage | \o/ | 13:54 |
zul | jamespage: same with neutron | 13:56 |
=== Noskcaj_ is now known as Noskcaj | ||
=== yokel_ is now known as yokel | ||
=== ValicekB_ is now known as ValicekB | ||
jadesoturi | what filesystem would you recommend for a relativly large raid6+lvm setup ? 3-4tb to begin with and will be growing uo to 15-20tb during the next year. files are mostly pictures and docx/pds with normal size. | 15:12 |
jadesoturi | im thinking btrfs or XFS, (ZFS will be considered later, not supported on current hardware due to lack of JBOD) or will a regualar ext4 do ? | 15:13 |
* patdk-wk just uses ext4 | 15:14 | |
patdk-wk | due to lack of xfs knowledge | 15:14 |
patdk-wk | I have ran ext4 systems upto 26tb | 15:14 |
patdk-wk | btrfs, heh, has not been good to me | 15:14 |
jadesoturi | hehe ok:) isnt the limit 16TB on ext4 ? | 15:14 |
patdk-wk | many years ago | 15:14 |
jadesoturi | okok.. | 15:14 |
jadesoturi | well iknow btrfs might be a little unsafe, but supposted to perform very nice, right? and is heading to replace ext4 as the "main" fs in distros? | 15:15 |
patdk-wk | that can be very much debated :) | 15:16 |
patdk-wk | sure every thing someone makes they would love to be the default | 15:16 |
jadesoturi | thing is every file that will be written will first be preprocessed in php, do this might be a bit CPU intensive need a FS that is not so resource hungry, but still able to perform nicely:) | 15:16 |
patdk-wk | but the btrfs teams priories are not inline with that goal :) | 15:16 |
jadesoturi | eheh that is true, just read some noise on the internets about it.. | 15:16 |
patdk-wk | yes, they dream about that | 15:17 |
patdk-wk | but they fail to *do the dirty work* to make btrfs usable enough for that goal | 15:17 |
patdk-wk | and instead put effort into pretty things | 15:17 |
jadesoturi | ok. so what you are saying is that btrfs is a nogo in a production system ? | 15:17 |
patdk-wk | personally? use btrfs on data you don't care about | 15:17 |
jadesoturi | that leaves xfs and ext4 - where xfs is the best thing for big files, but how does it go with files from 1 to maybe 25mb ? | 15:18 |
jadesoturi | cause thats the regular size of the files for that server.. | 15:18 |
patdk-wk | why is xfs best for big files? | 15:18 |
patdk-wk | last benchmark I did, ext4 and xfs for large files where the same | 15:18 |
jadesoturi | apperntly redhat did some test etc and measured very nice performance on 200mb+ filesizes.. | 15:19 |
patdk-wk | except when deleting LOTS of LARGE files, xfs would be craploads faster | 15:19 |
patdk-wk | but ext4, heh, most of that was fixed | 15:19 |
jadesoturi | hmm ok. so from what you are saying, not much to gain from xfs ? | 15:19 |
patdk-wk | there are gains with xfs | 15:19 |
patdk-wk | but there are issues too | 15:19 |
patdk-wk | so you have to pick what your willing to deal with | 15:20 |
patdk-wk | for me, it's lack of knowledge to fix it, when it goes wrong | 15:20 |
jhobbs | rbasak: howdy | 15:20 |
ppetraki | xfs plays better with raid | 15:20 |
jadesoturi | ppetraki, really ? this will be a raid6/60 setup with lvm on top and ssds in raid 1 for the os... | 15:20 |
jhobbs | rbasak: know much cloud-init? got any ideas what's going on here? https://bugs.launchpad.net/maas/+bug/1402861 | 15:21 |
uvirtbot | Launchpad bug 1402861 in maas "cloud-config-url ignored, install fails" [Undecided,New] | 15:21 |
jhobbs | rbasak: i think cloud-init is timing out trying to reach cloud-config-url and is silently failing, but i'm not sure how to prove it | 15:21 |
ppetraki | jadesoturi, https://raid.wiki.kernel.org/index.php/RAID_setup#XFS | 15:21 |
jadesoturi | thank you. ill have a look :) | 15:21 |
ppetraki | you'll want a wide stripe, like 256K.. and your SSDs, you should over provision them by 20% to give the garbage collector headroom e.g. only allocate 80% of the disk | 15:22 |
jadesoturi | ok... this will be a hw raid, using the builtin p420i smart array controller from hp... but should i also use the xfs on the os drives? these drives will just run the os and be used for caching from the raid array. | 15:25 |
ppetraki | jadesoturi, that would come down to preference, ext4 would be fine for OS. | 15:26 |
ppetraki | jadesoturi, you should also just test it with fio, see how the array behaves wrt that filesystem | 15:27 |
ppetraki | jadesoturi, RAID60 is a little overkill IMHO, customers tend to put off spare replacements... | 15:27 |
jadesoturi | well. my boss wants safety, so this gives him 2 drives fail before shit goes down... and this being a big array and all.. | 15:29 |
jadesoturi | also, i read it has better write performance then raid 6 | 15:29 |
patdk-wk | what size disks? | 15:29 |
ppetraki | jadesoturi, you could install a cache to get better read performance | 15:29 |
jadesoturi | 900gb SAS 10k drives.. | 15:29 |
ppetraki | jadesoturi, like rapid disk | 15:29 |
jadesoturi | ppetraki, im going to go for lvm caching to the ssd drives.. | 15:30 |
jadesoturi | hp wants me to buy smart cache though.. but its so pricy.. | 15:30 |
jadesoturi | what is rapid disk ? | 15:30 |
patdk-wk | what are you optimizing for? | 15:30 |
patdk-wk | writes? reads? | 15:30 |
patdk-wk | and what kinds of writes/reads do you have? | 15:31 |
patdk-wk | and what size is your working set? | 15:31 |
jadesoturi | well. preferebly both... | 15:31 |
patdk-wk | you can't have both :) | 15:31 |
ppetraki | jadesoturi, http://www.rapiddisk.org/ | 15:31 |
patdk-wk | unless both are equal, then it's not optimized :) | 15:31 |
jadesoturi | hehe. appertly zfs has both if i understand it correctly, but thats another story.. | 15:32 |
ppetraki | jadesoturi, it's a writethrough mem cache, so all your reads will come from memory | 15:32 |
patdk-wk | normally, I only ever optimize for writes, as my servers only do writes | 15:32 |
patdk-wk | reads are all cached in ram | 15:32 |
patdk-wk | zfs optimizes HEAVY on writes | 15:32 |
ppetraki | jadesoturi, so... you won't need the 0 in RAID 60 | 15:32 |
patdk-wk | and causes read hell | 15:32 |
patdk-wk | this is why zfs needs lots of ram | 15:32 |
* ppetraki can't stand zfs, can't wait to get a new hd in laptop to give it the boot | 15:33 | |
* ppetraki correction btrfs :) | 15:33 | |
* patdk-wk hugs his zfs systems | 15:33 | |
jadesoturi | hehe so split opinions on this matter:P | 15:33 |
ppetraki | I'm sure it works, btrfs, not so much | 15:33 |
patdk-wk | well, the issue with zfs, and btrfs, is it optimizes writes, cause it's cow | 15:34 |
patdk-wk | so all writes are APPENDED to the end of the disk | 15:34 |
patdk-wk | nice stream writes, from your random writes | 15:34 |
patdk-wk | so it's fast | 15:34 |
jadesoturi | well. the system will be running a php/mysql web app where users will be uploading files(mostly jpegs and some pdfs) and doing some revieing of this files and editing the db.. so i guess we need to optimize for writes.. | 15:34 |
patdk-wk | the problem is, when you read that data back in, it becomes purely random reads | 15:34 |
patdk-wk | this will cause HUGE performance issues, if you attempt to do a *streaming read* backup job | 15:35 |
ppetraki | jadesoturi, so back to parity, yeah, RAID5/6 whatever, just make sure you actually have hotspares. RAID 0+ anything increases your liability because if you lose a member, your data is gone. With the failure rate of drives these days it's easy to lose both your parity drives in RAID6 in the span of a few days | 15:35 |
=== bilde2910|away is now known as bilde2910 | ||
jadesoturi | hmm ok. so you saying go for raid6 instead of 60 ? also, still better to have 2 drive failover then 1..... | 15:36 |
patdk-wk | you should never use raid5 :) | 15:37 |
jadesoturi | yeah. sort of got that - got a long as email from dell the other day where they officially recommended to move away from raid5 .. lol | 15:37 |
ppetraki | raid6 + several hot spares + read cache like rapiddisk or equiv | 15:37 |
ppetraki | and test test test with fio :) | 15:38 |
jadesoturi | ok. can i use lvm cache(dmcache) instead of rapiddisk ? since rapiddisk cache to dram right? and we are a little low on our specs to start with.. | 15:38 |
patdk-wk | I dunno about hotspares | 15:39 |
patdk-wk | it's better to make them a parity disk than a spare if you can | 15:39 |
patdk-wk | so if you went raid6 + 3 spare, I would do raid60 +1spare instead | 15:40 |
ppetraki | sure you can use the lvm version. Though you might want to add more RAM, especially if you're using SSDs. it's cheaper than NAND flash that's for sure and last longer :) | 15:40 |
patdk-wk | only lasts as long as the power does :) | 15:41 |
jadesoturi | well. we will be starting with 6 drives, need 4 to build the array,, so 2 can go for spare... power is on UPS and emergency generator, we are strting with 32gb and planing to up it to 128 during next year.. | 15:41 |
ppetraki | well, I just assume people have the power thing figured out by now... | 15:41 |
jadesoturi | ppetraki, you were talking about raid0+ something being not safe as if you loose a member your out of luck, but isnt thats why raid60 is nice? cause it adds that "safety" option.. | 15:42 |
jadesoturi | allowing for 2 drives to fail before your out of luck ? | 15:43 |
=== bilde2910 is now known as bilde2910|away | ||
jadesoturi | anyways.. got to run now, be back tomorrow or later tonight. cots to catch that bus. thanks for great insight guys:) i think we will go for XFS on the raid array and ext4 on the OS drives with raid6 to start with and then move on to 60 once we get some more drives inside:) | 15:44 |
ppetraki | jadesoturi, *if* you keep up the RAID6 yeah, it works. but memory is cheaper than disk and you're not caching the world | 15:47 |
patdk-wk | ppetraki, your forgetting about a huge issue though | 15:48 |
patdk-wk | one large raid6 is fine and good | 15:48 |
* ppetraki little distracted by work | 15:48 | |
patdk-wk | except when 1 disk is bad | 15:48 |
patdk-wk | then your performance goes down to 20% what it was | 15:48 |
patdk-wk | till the rebuild completes | 15:48 |
ppetraki | patdk-wk, that's what hotspares are for | 15:48 |
patdk-wk | no | 15:48 |
patdk-wk | it has to rebuild | 15:48 |
patdk-wk | TILL it is rebuilt, your screwed | 15:48 |
ppetraki | well, sure, it took a fault | 15:48 |
patdk-wk | doing a raid60, will mitigate that, only 70% | 15:49 |
ppetraki | it's all about context and the availability of the application, if you need something that's nonstop then buy an equalogic | 15:49 |
patdk-wk | cause half of it, is stil lfull speed | 15:49 |
ppetraki | sure, with twice the disks | 15:49 |
ppetraki | SSDs aren't cheap | 15:49 |
patdk-wk | equalogic? | 15:49 |
ppetraki | you have a valid point | 15:49 |
patdk-wk | ours kept going down, about 3times a year, they are cold storage mode now, we don't even power them up anymore | 15:51 |
patdk-wk | anything that needs good reliability and speed we put onto pure systems | 15:51 |
patdk-wk | 3years now, and 0 failures from over a dozen of those | 15:52 |
ppetraki | I don't know what's up with your deployment. I work with a storage dev formally from EQL so that sort of uptime comes as a surprise to me | 15:52 |
patdk-wk | or well, several failures, but nothing service impacting, and rarely performance impacting | 15:52 |
patdk-wk | it was just a unit connecting via 8g fc, to a vmware cluster | 15:53 |
patdk-wk | just had problem after problem after problem | 15:53 |
patdk-wk | or rather, it worked fine, till stressed, then would fall over | 15:54 |
ppetraki | I don't doubt your experience, it just strikes me as odd. | 15:54 |
patdk-wk | the whole thing seemed odd, have some others without issues | 15:55 |
patdk-wk | but they never get stressed | 15:55 |
patdk-wk | and the unit that was having issues, without production data now, runs fine | 15:55 |
patdk-wk | but distrust has been built | 15:55 |
ppetraki | it is odd, usually they work hard to rectify stuff like that | 16:00 |
rbasak | jhobbs: sorry, otp since you pinged | 16:03 |
=== bilde2910|away is now known as bilde2910 | ||
=== Guest29894 is now known as hxm | ||
=== DenBeiren is now known as zz_DenBeiren | ||
=== Lcawte|Away is now known as Lcawte | ||
=== markthomas|away is now known as markthomas | ||
diegoholiveira | guys, i wrote a upstart script and when I call it with sudo service my-service start it does not back to prompt, it keeps running forever. How can i made it back to prompt? | 17:00 |
sheptard | & | 17:03 |
diegoholiveira | i try it without success :( | 17:04 |
diegoholiveira | i also try to use nohup with & | 17:04 |
=== genii is now known as ChristmasPresent | ||
=== ChristmasPresent is now known as genii | ||
=== martinst is now known as martins-afk | ||
=== martins-afk is now known as martinst | ||
=== martinst is now known as martins-afk | ||
=== genii is now known as ChristmasPresent | ||
=== ChristmasPresent is now known as genii | ||
=== genii is now known as ChristmasPresent | ||
=== ChristmasPresent is now known as genii | ||
HellMind | my pptp client is adding a route rule before it connects, how can I disable that feature | 19:46 |
bekks | HellMind: Most likely it add the route after it connects, doesnt it? | 19:47 |
HellMind | bekks: no, thats the default route, before it adds some route to not loss connectivity to the server, here is an example: 190.210.182.172 dev lo scope link src 192.168.0.1 | 19:48 |
HellMind | 190.210.182.172 is the pptp server, 192.168.0.1 is the client box ip, | 19:48 |
bekks | A route using the loopback interface?! | 19:49 |
HellMind | yes, it seems if for avoid using the new defaultroute to connect to the pptp server | 19:54 |
HellMind | ugly but it does that | 19:54 |
bekks | HellMind: Could you pastebin netstat -rn please? | 19:56 |
HellMind | http://pastebin.com/uLRiQznM | 19:57 |
HellMind | bekks | 19:57 |
bekks | HellMind: You are using xen as well. | 19:57 |
HellMind | yes | 19:58 |
bekks | HellMind: And that route you are talking about is a host route, not a defaultroute. | 19:58 |
HellMind | yep, the pptp server ip | 19:58 |
HellMind | when I do pon thatpptp it adds it | 19:58 |
HellMind | if I remove it it got added again | 19:58 |
bekks | But thats no defaultroute. | 19:59 |
HellMind | isnt added using ip.up ip.down cuz it never executes those | 19:59 |
HellMind | the default route is 192.168.0.1 which is the same ip as the server | 19:59 |
HellMind | I use ip rule (marks) to choose routes | 19:59 |
bekks | But you dont have a defaultroute, no matter which tool you use. | 20:00 |
HellMind | Which? | 20:00 |
bekks | ? | 20:06 |
=== fridaynext is now known as golftdi | ||
=== golftdi is now known as fridaynext | ||
=== markthomas is now known as markthomas|away | ||
=== martins-afk is now known as martinst | ||
redfox | Hi, i've a problem with apt.-get on kernel ... someoune could "save me"? | 20:51 |
redfox | linux-generic : Depends: linux-headers-generic (= 3.2.0.69.82) but 3.2.0.74.88 is to be installed | 20:52 |
sarnold | redfox: perhaps your mirror has an inconsistent set of packages; it'd be a little bit of work to add new servers for e.g. germany-based servers, but it is likely to let you continue | 20:54 |
=== _thumper_ is now known as thumper | ||
redfox | there was an error on /boot partition, was too little, so I deleted old kernel (not the one that is "incriminated") | 20:55 |
redfox | I made autoremove options and after made so | 20:55 |
redfox | sarnold: what do you mean? | 20:56 |
sarnold | redfox: well, your /etc/apt/sources.list will probably include something like it.archive.ubuntu.com, right? if you add similar lines for de.archive.ubuntu.com, you'll download package lists from two mirror networks, and there's a good chance the other mirror will be updated by now | 20:57 |
sarnold | redfox: ... hmm, is the real problem that you're out of drive space to install them? I thought it gave different errors for that.. | 20:58 |
kevindf | Does a bind9 dns server use alot of hardware resources on a network with ~ 3 pc's | 20:59 |
kevindf | Just to set up some A records on my network | 20:59 |
kevindf | for* | 21:00 |
redfox | sarnold: I made the change on source, without success, the errors are: dpkg: dependency problems prevent configuration of linux-generic: | 21:00 |
redfox | linux-generic depends on linux-image-generic (= 3.2.0.69.82); however: | 21:00 |
redfox | Package linux-image-generic is not configured yet. | 21:00 |
redfox | linux-generic depends on linux-headers-generic (= 3.2.0.69.82); however: | 21:00 |
redfox | Version of linux-headers-generic on system is 3.2.0.74.88. | 21:00 |
sarnold | redfox: did you re-run apt-get update first? | 21:01 |
redfox | sure | 21:01 |
sarnold | kevindf: feel free to use the weakest, oldest machine you own for that job | 21:01 |
sarnold | redfox: hmm. maybe you've got worse problems then :/ | 21:01 |
redfox | I know .... any suggest to reinstall old modules ? | 21:02 |
sarnold | redfox: how much free space do you have on /boot ? | 21:02 |
kevindf | sarnold: That's kind of the problem :) I'm using weak old machines, one of them is running a Zabbix, webmin, apache, mysql server and other one apache, teamspeak, openvpn server | 21:03 |
redfox | 236M 187M 37M 84% /boot | 21:03 |
redfox | df | 21:03 |
kevindf | i wonder if i could add a dns server up to that on one of the servers | 21:03 |
redfox | sarnold: this is output on apt-get dist-upgrade | 21:03 |
redfox | The following packages have unmet dependencies. | 21:03 |
redfox | linux-generic : Depends: linux-headers-generic (= 3.2.0.69.82) but 3.2.0.74.88 is installed | 21:03 |
redfox | linux-image-generic : Depends: linux-image-3.2.0-69-generic but it is not installed | 21:03 |
sarnold | redfox: yeah, cleaning some older kernels might help; you can apt-get purge linux-headers-generic and linux-generic, apt-get purge older kernels, then apt-get install linux-generic and linux-headers-generic again (to make sure you keep getting security updates) | 21:04 |
redfox | sarnold: the problem is that apt-get before want to solve conflict | 21:05 |
sarnold | redfox: that's why I like to remove the packages that introduce the specific version requirements.. | 21:05 |
redfox | any ideas? | 21:06 |
sarnold | redfox: any luck with apt-get purge linux-generic linux-headers-generic ? | 21:09 |
redfox | sarnold no it wants to install before linux eneric .. .that has unmet dependance | 21:10 |
genii | That might be painful if you don't reinstall linux-image-generic immediately again afterwards | 21:10 |
sarnold | genii: indeed, that's the last bit of advice from earlier :) hehe | 21:10 |
redfox | it don't want to install | 21:10 |
redfox | there's a way to "tell" to ignore the depends? | 21:11 |
redfox | only for this 2 package for now? | 21:11 |
sarnold | redfox: not easily; purging packages until apt is content with its database is often the easiest way out | 21:12 |
redfox | but I can't purge it | 21:13 |
redfox | apt-get purge linux.... can't execute before it don't solve the pgrade problems | 21:13 |
=== markthomas|away is now known as markthomas | ||
sarnold | redfox: can you pastebin the results from the most recent apt-get purge linux-generic linux-headers-generic attempt? | 21:14 |
redfox | http://pastebin.com/jq7qDY5E | 21:15 |
redfox | this is apt-get -f install | 21:16 |
redfox | http://pastebin.com/WHWYC0ve | 21:16 |
sarnold | redfox: okay, now try this: apt-get purge linux-generic linux-headers-generic linux-image-generic | 21:17 |
sarnold | redfox: it'll probably throw another error message.. | 21:17 |
redfox | NO ERROR | 21:18 |
redfox | now I'll reinstall it? | 21:18 |
redfox | apt-get install linux-generic linux-headers-generic linux-image-generic | 21:18 |
redfox | sarnold you save my life :) | 21:19 |
sarnold | redfox: now check out dpkg -l 'linux*' | grep ii -- prune that list as needed | 21:19 |
redfox | sarnold: what you mean? | 21:20 |
sarnold | redfox: chances are good you've got four to six kernels installed; I suggest deleting all but two kernels. keep the kernel you're running, keep the newest kernel, and if they're the same, keep one more :) | 21:21 |
redfox | sarnold: http://pastebin.com/aCHtqUcQ | 21:21 |
sarnold | redfox: and what does uname -r show? | 21:22 |
redfox | 3.2.0-37-generic | 21:22 |
redfox | I didnt reboot | 21:22 |
sarnold | it's been a while, hehe :) | 21:22 |
redfox | yes | 21:23 |
redfox | sarnold: so I can do easily: apt-get remove linux-headers-3.2.0-68 linux-headers-3.2.0-68-generic linux-image-3.2.0-68-generic | 21:25 |
sarnold | redfox: yeah, and keep going; I think this ought to do what you want: http://paste.ubuntu.com/9544128/ | 21:25 |
redfox | sarnold: Wonderful, now I have only 2 kerner. 74 last and 37. should I reboot and purge 37 too? | 21:27 |
sarnold | redfox: not yet | 21:28 |
sarnold | redfox: reinstall the metapackages, first, apt-get install linux-generic linux-headers-generic linux-image-generic | 21:29 |
redfox | for all say .... is already the newest version. | 21:29 |
sarnold | redfox: okay, I -think- you're put back together again :) | 21:30 |
redfox | fiuuu let's try to reboot? | 21:30 |
sarnold | redfox: don't delete the -37 right away, though, it's served you well lately, you might as well hold on to it while testing the -74 :) | 21:31 |
redfox | sarnold: ok so reboot? or there are other check that you want me to do .. to be sure | 21:31 |
genii | It's always good to keep at least one other previous working kernel around | 21:32 |
sarnold | redfox: I think you're good for rebooting | 21:33 |
redfox | I'm doing | 21:33 |
redfox | sarnold: WOW i'ts up | 21:35 |
sarnold | redfox: :D | 21:36 |
redfox | and the kernel is the last | 21:36 |
sarnold | redfox: you might want to take the german mirrors back out of your apt sources, maybe just comment them out; you ddon't really need to download all the lists twice, and out-of-sync mirrors doesn't happen all that often | 21:36 |
adsf_ | bitfury: test | 21:37 |
redfox | sarnold: yeah I put back the original mirror list ... I must thank you .... you save me :) | 21:37 |
sarnold | redfox: great :) have fun! | 21:37 |
adsf_ | bitfury: test | 21:37 |
=== beisner- is now known as beisner | ||
=== martinst is now known as martins-afk | ||
=== a1berto_ is now known as a1berto | ||
=== martins-afk is now known as martinst | ||
=== Lcawte is now known as Lcawte|Away | ||
=== paralle21_ is now known as parallel21 | ||
=== martinst is now known as martins-afk | ||
=== martins-afk is now known as martinst | ||
=== martinst is now known as martins-afk |
Generated by irclog2html.py 2.7 by Marius Gedminas - find it at mg.pov.lt!