/srv/irclogs.ubuntu.com/2018/11/02/#ubuntu-server.txt

=== markthom- is now known as markthomas
=== crimastergogo_ is now known as crimastergogo
dholbachhiya09:34
dholbacha colleague of mine is running into https://bugs.launchpad.net/cloud-images/+bug/1792543 - who could help out with this?09:35
ubottuLaunchpad bug 1792543 in cloud-images "EKS AMI init process should not rely on non-standard tags and AWS CLI" [Undecided,New]09:35
vltHello. In a (typical?) RAID10 => LUKS => LVM setup, where would you insert a fast SSD (or two of them as RAID1) as bcache device? And does the RAID10 then still make much sense or would you replace it with RAID5 or 6?09:42
dholbachOdd_Bloke: ^ can you help with this bug or is it somebody else?09:54
openfirevlt: Frankly, I would never replace RAID10 with any kind of parity RAID setup. As for the caching option...11:49
openfirevlt: I would add the SSD as an LVM caching volume.11:49
openfirevlt: Rather than using bcache/dm-cache directly.11:51
openfirevlt: man 7 lvmcache11:52
cryptodanthis weekend my dell pe 4600 will be retired and replaced with a more modern hp mp350l dual 2.0ghz hexacore setup12:23
vltopenfire: Thanks for your answers. I'll definitely have a look at lvmcache. Why would you never use parity RAID instead of RAID10? I thought parity RAID's weakness is writing and that should be covered by the caching device. What other reasons are tehre?12:35
openfirevlt: Undetectable data corruption due to read errors during rebuilds. Most (all?) storage vendors consider parity RAID a dinosaur these days.12:44
vltAh, ok.12:46
fricklerjamespage: can you please check https://bugs.launchpad.net/ubuntu/+source/ceph/+bug/1750848 ? I'm confused how a rebuild of mimic can fix an issue with luminous.15:00
ubottuLaunchpad bug 1750848 in ceph (Ubuntu) "ceph 12.2.3 lint" [Low,Fix released]15:01
fricklernice name btw, cosmic disco ;)15:01
jamespagefrickler: some of the changelog history is missing from the comment; I did a load of work to cleanup the lintian awarnings on the mimic packages15:02
jamespageI won't backport that15:02
jamespageit does not materially effect the function of the package15:02
fricklerjamespage: o.k., understood, but the plan would still be to support latest 12.2.x for the time being, just not fix that issue there, correct?15:03
jamespageyup15:03
fricklerok, thx15:04
dholbachhiya jamespage - how are you?15:23
dholbachdo you know who could help with https://bugs.launchpad.net/cloud-images/+bug/1792543?15:23
ubottuLaunchpad bug 1792543 in cloud-images "EKS AMI init process should not rely on non-standard tags and AWS CLI" [Undecided,New]15:23
zetherooI am trying to setup static IP on 18.04 server by editing /etc/netplan/50-cloud-init.yaml16:09
zetherooSo far I can ping internal IP's and external domain names (google.com) but I cannot ping any internal hostname's16:10
zetheroothis is what the config looks like https://paste.ubuntu.com/p/rshmvDyC5X/16:11
zetheroowhat am I missing?16:12
tewardzetheroo: does it give you a specific error message?  have you verified they're all on the same subnet?  Are they on different subnets and there's a firewall restricting access?16:12
tewardzetheroo: is there an internal search domain?16:12
tewardcheck another system for any 'searhc domains' that it defaults to16:12
zetherooteward: I am trying to reach hostnames on the same network in the same domain16:12
tewardthat might be necessary16:12
tewardfor the DNS resolutoin to work proper16:12
zetherooyes, but where do I enter that info?16:13
tewardhttps://netplan.io/examples#dhcp-and-static-addressing16:13
tewardnameservers > search16:13
tewardunderneath the ethernet device config16:13
zetherooah ok16:13
zetheroobrilliant - thanks16:14
=== jelly is now known as khajiit
=== khajiit is now known as jelly
cyphermoxteward: thanks16:59
dougquaidI'm in the process of hardening an ubuntu server. Is there some software that I can scan the server with that will find vulnerabilities?17:09
lotuspsychjedougquaid: i like lynis as nice scanning tool, but security has very wide ranges17:10
lotuspsychjedougquaid: you can harden your server on so many different ways17:10
lotuspsychjedougquaid: first thing is gathering info on everything, like a hacker would do17:10
lotuspsychje!security | dougquaid17:11
ubottudougquaid: Security Updates are dealt with here:  https://help.ubuntu.com/community/Security - See also !root, !firewall, !server, and !usn17:11
dougquaidthanks17:11
lotuspsychjedougquaid: nmap is also very good for information gathering on your ip's/locally and remotely17:12
lotuspsychjedougquaid: can you share with us wich services you run from your server?17:13
tewardcyphermox: for?  oh, the netplan thing with zetheroo?17:14
giacohello17:20
giacoI am installing ubuntu server on a machine that has no graphical output, but I have a serial terminal 115200n8. I am supposed to pass additional kernel command line parameters such as "console=tty0 console=ttyS0,115200n8" but I can't find in the install menu where I am supposed to type it17:22
giacoBy sending F3 it says "To use one of these boot methods, type it at the prompt, optionally followed by any boot parameters. For example: boot: install acpi=off", but if I do "install console=tty0 console=ttyS0,115200n8" it says "Loading install... failed: No such file or directory"17:24
giacosame for "expert console=tty0 console=ttyS0,115200n8" "Loading expert... failed: No such file or directory"17:25
cyphermoxteward: yup17:25
giacobut if I do "memtest" it goes "Loading /install/mt86plus... ok", so the boot prompt seems working. Are "install" and "expert" correct references?17:27
tewardcyphermox: ah, cool.  yeah i keep that examples page bookmarked :P17:29
tewardsince it explains some of those questions real easy :)17:29
cyphermoxteward: yup, and I'll do one big update of it very soon17:29
giacocould you please confirm me that the "install" and "expert" boot options are correct? The documentation is mesleading17:29
tewardcyphermox: cool, let me know when that happens, can't wait to see even more examples and know even more about Netplan!  :D17:31
giacothank you for your consideration. I'm dropping ubuntu server for a good debian, which has a working install bootloader17:37
Ussatwat ?19:01
UssatI have never had an issue with a Ubuntu install bootloader19:01
masonUssat: You need to be more special to encounter it.19:02
UssatI see, reading up19:02
UssatI have not installed a debian in a long time, but I dont expect its a lot different19:03
masonNot for the server install, certainly.19:04
xnoxgiaco, i typically use F6 to modify the cmdline of the installer.20:13
xnoxgiaco, i don't think failing to pass the right cmdlines is considered to be a broken bootloader, especially since this is installer only and not the installed system.20:14
giacoxnox: contrary to what you are saying, failing to add kernel parameter at boot, especially at intaller boot, can be considered a severe fault20:15
giacoxnox: moreover, using the ubuntu netinstall image the behaviour is different and the same command line options are working20:16
xnoxgiaco, are you using non-ubuntu netinstall images and those are broken?20:16
giacoso is the the ubuntu server 18.04 iso (the ~900MB one) that is not working20:16
giacoxnox: no, the ubuntu netinstall is working, the normal iso is not20:17
xnoxgiaco, live or non-live one? cause the live one, which uses subiquity, has probably incorrect help text on the scren.20:17
xnoxgiaco, right, we should fix that. One second, let me give you two links.20:17
xnoxgiaco, http://cdimage.ubuntu.com/releases/bionic/release/ubuntu-18.04.1-server-amd64.iso  this is the "old" server installer, which uses d-i, and should use all the same kernel cmdline parameteres as netinstall image does.20:18
giacothis is the one that did not work https://www.ubuntu.com/download/server20:18
giacoxnox: I don't think is a matter of bootloader feature availability: the parameters are passed straight to the kernel20:19
giacobtw I've succeeded in installing ubuntu server 18.04 using netinstall + parameters "console=tty0 console=ttyS0,115200n8"20:20
xnoxgiaco, eeeee..... well..... some of them are also parsed by initramfs, and also parsed by installer, to launch the installer on the right console.20:20
xnoxgiaco, i suspect that the one pointed at https://www.ubuntu.com/download/server is a subiquity based one, and doesn't in fact support multiple consoles and doesn't start installer on ttyS020:21
xnoxonly starts it on tty020:21
xnoxactually tty120:21
giacowell, I need ttyS0 anyway, which is not started by default on netinstall20:21
xnoxgiaco, we have two server .iso; this looks like a legitimate bug in one of them; please try this iso http://cdimage.ubuntu.com/releases/bionic/release/ubuntu-18.04.1-server-amd64.iso20:22
xnoxthis one must support console=ttyS0,115200n et.al. correctly; and the same params as netinstall does, as they are built similarly.20:22
xnoxthe image from https://www.ubuntu.com/download/server is very different beast.20:22
giacoI didn't know that, sadly20:22
xnoxgiaco, or like for other architectures look at http://cdimage.ubuntu.com/releases/bionic/release/ to download for the whatever arch you need it for20:22
giacoBut now I'm into configuring the new system, I don't really have time to go back and retry20:23
xnoxgiaco, i'm sorry =/ this is quite low-level details, and i know this because well, i build these images.20:23
giacoCan I keep it as homework for next time?20:23
xnoxgiaco, i will open the bug report to fix console=ttyS0 support on the other image (the one from https://www.ubuntu.com/download/server )20:24
giacoxnox: oh, well. Thank you for helping me20:24
xnoxgiaco, btw. on the https://www.ubuntu.com/download/server there is a link to these other images20:24
giacoI'm curious: why splitting?20:24
xnoxgiaco, under the green button tehre is "see our alternative downloads." in blue20:24
giacois there a "dev/prod" into ubuntu server installer ?20:25
xnoxgiaco, we are working on making the new one; but clearly it would be irresponsible to stop building the old one, given that it is impossible to find all corner cases.20:25
giacoxnox: right. Well, glad to help20:25
xnoxcause we re-wrote the installer from scratch (the new one)20:25
xnoxplus we dont' have encryption yet in the new one20:26
xnoxgiaco, so yeah, hence the download page does say "This release uses our new installer, Subiquity. If you need support for options not implemented in Subiquity, such as encrypted filesystem support, the traditional installer can be found on the alternative downloads page."20:26
xnoxor in your case "has buggy console="20:26
xnox=)20:26
giacoxnox: well, you know, I just went through XD20:28
xnoxgiaco, can you explain again to me your system you are using? you need to boot it using console=ttyS0,115200n8 but it is otherwise x86_64 machine right?20:28
xnoxwith a serial connection / bootloader on the serial console?20:28
xnoxhttps://bugs.launchpad.net/subiquity/+bug/177096220:28
ubottuLaunchpad bug 1770962 in subiquity "Support serial-port based install" [Undecided,New]20:28
giacoxnox: yes, this https://www.pcengines.ch/apu3a2.htm20:28
xnoxthanks.20:29
xnoxgiaco, for now please use the alternative iso, i pointed you to =/20:29
xnoxalso, once installed, Ubuntu is so much nicer than Debian ;-)20:29
giacoxnox: and I connect with this https://www.pcengines.ch/usbcom1a.htm20:30
tewardxnox: subiquity supports RAID (software, FAKERAID, hardware RAID controllers-controlled arrays, etc.), right?20:30
xnoxgiaco, thanks.20:31
xnoxgiaco, and when you booted that broken iso; it did boot and show bootloader (cause you are describing things like F3 and etc) but you didn't manage to boot to installer, correct?20:31
giacothanks to you. I didn't know I was looking at something new. I tend to consider the boot part of solid server OS quite bulletproof. I not even considerer an "old option". My fault20:32
xnoxgiaco, this is helpful. i'm sorry you had this experience, but i'm glad you shared it with us.20:32
xnoxgiaco, i might want to update the website to also mention that serial console is not working.20:32
xnoxgiaco, note, on all other architectures we are still pointing to old installer, as those are typically done via non-graphical terminals.20:33
giacoI confirm. I was able to see the bootloader menu, preff F-keys, type at boot: prompt, start memtest. But install, expert, cli and other were not accepting console options. Without them I was that it was loading something but hey no feedback no party20:33
xnoxCool, thanks!20:33
giaco* Without them I saw that something was loading20:34
xnoxgiaco, yeah, most likely there was a very pretty installer on tty1 which you couldn't see.20:34
xnoxgiaco, if you launch the new ISO in a qemu/kvm you will see how simple, and pretty it is. Full-terminal curses ui, with minimal steps, import of ssh keys, and very quick install speed.20:35
giacoI tend to be the guy with null-modem cables in 201820:36
xnox=))))))))))))))) but also! thank you =)20:36
xnoxgiaco, i might try to fix this, and will try to ping you when it's done.20:36
xnoxgiaco, can you subscribe to https://bugs.launchpad.net/subiquity/+bug/1770962 ?20:36
ubottuLaunchpad bug 1770962 in subiquity "Support serial-port based install" [Undecided,New]20:36
xnoxjust added a comment to that bug report, about your experience.20:37
xnoxteward, LVM, RAID, Bonds, Vlans => are all there.20:37
xnoxteward, fakeraid is partial20:38
giacook, new network manager. What is netplan? And why is not picking my interfaces? Error in network definition //etc/netplan/01-netcfg.yaml line 9 column 10: br0: interface enp1s0 is not defined21:10
giacobut ip a | grep enp1s0: enp1s0: <NO-CARRIER,BROADCAST,MULTICAST,UP> mtu 1500 qdisc mq state DOWN group default qlen 100021:10

Generated by irclog2html.py 2.7 by Marius Gedminas - find it at mg.pov.lt!