/srv/irclogs.ubuntu.com/2019/08/30/#ubuntu.txt

deltabwhich screen mode is it?00:00
sarnoldthere's a handful of consoles.. vga text, vesafb, something else I think.. they're all pretty limited. using a terminal emulator will almost certainly give you better results: faster, way more glyphs, more features, fewer bugs, etc00:00
henninbis there a command that I can run to tell me the screen mode? I will try and google the answer.00:00
sarnoldthe text console is *insanely* limited00:00
deltabhenninb: are you using the console to aovid X/Wayland overhead, or because the hardware doesn't support graphics?00:12
henninbyes, I was trying to avoid x/Wayland.00:16
henninbmy hardware is 1 year old00:17
doug16khow does one determine which device is "scsi_eh_10"? -> https://gist.github.com/doug65536/2c23a82bd7bef9fd72e1d12ce287c87d00:25
doug16kguessing it's a USB-UAS drive? which one though?00:26
sarnolddoug16k: I don't think it's 1:1 with drives00:28
sarnolddoug16k: my laptop has five of those threads but only two drives; my Big Machine with .. uh .. fifteen?ish? drives in it has seven of those threads00:29
doug16kah, they are worker thread names?00:29
doug16kya, must be, bottom of call stack is kthread_create_worker_on_cpu. thanks00:32
sarnoldI've never taken a look at them before, either :) I've been content tosee there's loads of worker threaders of various sorts..00:32
tomreynthis looks like a reeeeally old kernel image.00:34
sarnoldtomreyn: you sure? the 4.15.60 in there feels like it came from this proposed kernel https://launchpad.net/ubuntu/+source/linux/4.15.0-60.6700:36
sarnoldtomreyn: what suggests to you it's old?00:36
tomreynhmm, you're right, i was thinking 4.15 was replaced by 4.1800:37
tomreynbut i guess 4.15 is GA, and i mixed it up00:37
OerHekshttps://launchpad.net/ubuntu/+source/linux/4.15.0-60.67 in proposed00:37
tomreynmy bad, sorry00:38
sarnoldaha then that makes sense :)00:38
OerHekswhy proposed? and not hwe?00:39
Betalis it need to let .la files with .so or I can delete them?01:09
sarnoldBetal: it's probably best to leave those .la files there; without them, you'll have trouble building software01:11
Betalsarnold: but what if Iam not going to build01:11
sarnoldBetal: well, if you're *never* going to build, then that's probably fine; why bother though?01:13
=== zbenjamin is now known as Guest28293
=== zbenjamin_ is now known as zbenjamin
henninbsarnold i was able to get ter-powerline-v16b.psf to work in the console, tty1.01:28
sarnoldhenninb: sweet!01:28
sarnoldhenninb: is that packaged for ubuntu? I don't spot it with apt-file search01:29
henninbno, I found it on a git repo.01:29
sarnoldbummer01:29
sarnoldanyway, nice to know there's choices :)01:29
sarnoldthanks especiallyh for reporting back01:29
henninbi alway appreciate getting ideas and thoughts from folks.01:30
sarnoldsame here01:30
henninbthanks for your responses.01:30
AlericHi - can someone please help me fix my audio?  I rebooted because I heard some "cpu" noises in the background (very soft, but normally I don't hear that). After the reboot I have no audio at all anymore.01:37
AlericThe "reason" as far as I can tell is that there is no longer a 'system:playback_1' and system:playback_2 in JACK.  Aka, my soundcard no longer connects to JACK :/01:38
MrPlayfairhow to minimise shell?01:42
MrPlayfairopposite of ctrl shift +01:42
MrPlayfairah ctrl -01:42
MrPlayfairty01:42
AlericHmmpf - I'm now using alsa_out to to recreate a JACK client and that works! So apparently something broke reading my .asoundrc since the last apt upgrade (this the first reboot since that)01:46
khanredI'm trying to install Ubuntu on a partition on one of my drives, but I keep getting the following error: "The ext4 file system creation in partition #1of SCSI7 (0,0,0) (sdc) failed." --- What can I do about this?01:51
sarnoldkhanred: are there any details in a log file? another terminal or console? are there any messages in dmesg?01:54
khanredsarnold: i'll take a look01:54
khanredsarnold: these are my "important" logs - https://paste.ubuntu.com/p/Q7gF9f6p3D/01:57
sarnoldkhanred: hmm, I'm not sure those actually point out the error; the usb one *might*, if you're trying to install to usb..02:02
khanredI'm not trying to install usb02:02
sarnoldkhanred: the couldn't get size, and UEFI db list looks like it's probably harmless https://forums.opensuse.org/showthread.php/535324-MODSIGN-Couldn-t-get-UEFI-db-list02:02
khanredok02:02
khanredlet me send the whole logs02:03
OerHeksdid you boot ubuntu in uefi mode?02:03
khanredyes02:03
OerHeksno partitions on sdc?02:04
khanredhttp://paste.ubuntu.com/p/2zB2w943vF/02:06
khanredFull logs02:06
khanred"/dev/sdc1 already mounted or mount point busy" seems kind of interesting02:10
OerHeksis this in xorg or wayland?02:12
khanredI think xorg02:14
khanredit's 18.0402:14
sarnoldkhanred: what's mounted there?02:17
khanredoh what the hell02:18
khanredsdc is the flash drive i'm booting from to do the installation.....02:19
khanredand it's also where i've been trying to install the OS for some reason02:19
khanredLet me try _not_ doing that....02:19
sarnoldkhanred: that's probably worth a bug report, if you have the time and inclination :) it could probably try harder to communicate about that one :)02:20
khanredAlright, i'll do that02:20
sarnoldthanks!02:20
khanredok so02:23
khanredI can see the partition I want in disks, but not when I run the installer02:23
magic_ninja_workkhanred, is it lvm02:29
khanredno02:29
khanredbtw, im trying to create this partition/install on a separate disk from the one I have Windows on02:30
khanredthis is frustrating02:49
OerHekskhanred, what are our partitiosn look like? sudo fdisk -l  on paste.ubuntu.com02:58
OerHeksis sdc nvme?03:00
khanredits a hybrid drive03:00
OerHeksoh oke, not worth to mention immediatly03:01
khanredOerHeks: http://paste.ubuntu.com/p/5p5f2jwzcK/03:02
sarnoldnvmes ought ot show up on /dev/nvme*03:03
doug16kthat's the last dime sandisk gets out of me. got a 64GB USB flash drive, dead in 2.5 months03:05
doug16kbarely used03:06
doug16kworks for maybe 20 minutes then goes dead, then all I/Os to it hang03:06
=== mnemonic is now known as Guest69482
khanredOerHeks: Did you find anything of interest?03:11
lotuspsychjethink for nvme you need to advance partitioning03:12
sarnolddoug16k: ouch :(03:12
khanredI don't have an nvme drive..03:13
=== mmidgett is now known as mTeK
cluelesspersonhi all04:23
cluelesspersonso currently I'm on the adventure of trying to define my own sound/speaker configurations04:24
nexiude-facto: i found how to get dns proper working with network manager04:51
nexiuhttps://askubuntu.com/questions/233222/how-can-i-disable-the-dns-that-network-manager-uses04:51
nexiu;)04:51
MJCDHey is there a chan for ubuntu-based distro makers?05:31
MJCDjust making something noob for our teams use05:31
OerHeks!alis05:34
ubottuAlis is an IRC service to help you find channels. For help on using it, see "/msg Alis help list" or ask in #freenode. Example usage: "/msg Alis list http"05:34
OerHeksi have no clue about fork channels, good luck05:34
=== coffeeguy is now known as zenguy
cluelesspersonwhat's up?05:58
MaxLanarHi. I'm trying to ssh log in as root from a debian to a ubuntu with pubkey auth. I can do so as regular user, it works well. Then I copied /home/user/.ssh/authorized_key in /root/.ssh/authorized_key, I have 'PermitRootLogin prohibit-password', 'PubkeyAuthentication yes' and 'AuthorizedKeysFile      .ssh/authorized_keys' in /etc/ssh/sshd_config. The permissions are good (700 for .ssh folder, 664 for08:24
MaxLanarauthorizedkeysfile). I did systemctl restart ssh. I activated the root account (set password, then 'passwd -u root').  No matter what 'ssh root@m.y.i.p' still gives me 'Permission denied (publickey).'08:24
MaxLanarWhat do I miss ?08:26
Oolno need to put 700 to the authorized_keys file… did your chown the file ? did you restart ssh service ?08:26
lblumeMaxLanar: 664 is not good for a keyfile, it means anybody in the group can modify it, that isblocking08:26
HabbieMaxLanar, ^ try 644; if that doesn't help, it's log reading time08:28
MaxLanarHabbie: lblume: No more luck with 644 :/. I pastebin the result with ssh -v ?08:31
HabbieMaxLanar, yes, please pastebin ssh -v, and also paste logging from the -server- during your attempt08:31
Habbiefor example, if 664 was the issue, ssh -v would not tell you that08:31
avernoshello, i broke my network interface file by mistake. i think i broke lo interface now cant get any networking08:34
MaxLanarFor the sshd log on the server I check /var/log/auth.log ?08:35
avernoshow can i fix this?08:35
HabbieMaxLanar, that would be my guess08:36
MaxLanarOol: authorized_keys is own by root. Yes I restarted ssh service (systemctl restart ssh)08:36
lblumeThe .ssh directory is also owned by root?08:37
MaxLanarlblume: yes08:37
lblumeWell, time for the server logs, they'll likely be interesting :)08:38
MaxLanarssh -v root@192.168.1.100 : https://paste.debian.net/1097973/08:40
OerHekstry the username, not root?08:41
MaxLanarOerHeks: the username ?08:41
MaxLanar'cat /var/log/auth |grep -v cron:session' on the server : https://paste.debian.net/1097974/08:44
OerHekserr,  i am wrong08:45
OerHeksAuthorizedKeysFile      .ssh/authorized_keys, this might need a full path?08:46
Habbieno, that's fine08:47
lblumeMaxLanar: Permissions/ownership on the directory above .ssh (/root ?) also good? Else raise sshd's LogLevel to debug to get more details what it does.08:52
cluelesspersonMaxLanar      PermitRootLogin without-password08:54
MaxLanarlblume: /root is 700 and owned by root08:54
MaxLanarcluelessperson: That is good08:54
cluelesspersonMaxLanar    chown root:root  -R ~/.ssh && chmod 600 -R ~/.ssh08:56
cluelesspersonI think08:56
V7Hey all08:57
V7Is it possible to change root password?08:57
V7Of mysql root*08:58
V7Already tried using mysql documentation and mysql_secure* script. No result.08:58
HabbieV7, are you able to log in to mysql?08:58
V7Yes, with an empty password like "sudo mysql"08:58
V7All in all, root persists asking empty password08:58
cluelesspersonI thought mysql has an internal password you have to manage08:59
Habbiei learned this yesterday - the default now is to check what user is connecting09:00
Habbieso 'sudo mysql' just works09:00
Habbieand then you can add a passworded account, via GRANT i suppose09:00
V7Habbie: So, is it possible to change mysql root's password?09:00
cluelesspersonyes09:02
HabbieV7, it is possible to make another root account with a password, or to remove the socket auth from the account you have and give it a password09:02
HabbieV7, i recommend the first option09:02
cluelesspersonI don't recall how off the top of my head though09:02
Habbiesomething like this https://stackoverflow.com/questions/41846000/mariadb-password-and-unix-socket-authentication-for-root09:02
V7Thank you Habbie, but now it's important to create a root password for mysql09:04
V7For now it have an empty password09:05
MaxLanarOK, that was the dumbest error. The log 'Could not open authorized keys '/root/.ssh/authorized_keys': No such file or directory' made me aware that my file lacked a 's' in the end.... Sorry for the disturbance and thank you all for the help.09:05
HabbieV7, for now you have an empty password that only works if the person connecting is root09:06
HabbieV7, that's not a problem09:06
MaxLanar(I had 'authorized_keys' and 'authorized_key' in my /home/user/.ssh/ (don't remember why), then I copied the file with the wrong name to /root/.ssh :/)09:07
OerHeksgood find09:09
V7You can merge tham to *keys one09:09
acresearch1people   ubuntu 18.04 has PYMOL python2 in apt  how can i install the newst PYMOL python3 ?09:10
OerHeksnot, see https://packages.ubuntu.com/search?keywords=python3-pymol09:11
OerHeksupgrade to disco?09:11
Oolwith pip3 install ?09:12
rhoksHi there.09:13
rhoksis it possible to install or have google calendar and set it up with notifications on ubuntu?09:14
Habbierhoks, Evolution can do that09:14
acresearch1OerHeks: apt search python3-pymol   -> nothing09:14
acresearch1OerHeks: upgrade to disco?   what is disco?09:14
OerHeks!disco09:15
ubottuUbuntu 19.04 (Disco Dingo) is the 30th release of Ubuntu, supported until January 2020.  Release Notes: http://ubottu.com/y/dingo09:15
V7!discoball09:15
acresearch1OerHeks: oh, so i can't install it in my current OS ha?09:15
OerHeksmaybe if you build it yourself?09:15
OerHeksor see the answer of Ool09:16
acresearch1OerHeks: hmmm    what file should i look for to attempt to build it myself?09:16
Oolperhaps asking in #python09:16
acresearch1Ool: ok09:17
rhoksHabbie, I see. Because several other solutions on the web want you to install their own repositories and stuff.09:17
Habbierhoks, in general, try to avoid that indeed09:17
brokencycleHello! On 18.04, I have the following problem with my secondary SSD: Initially, it was ext4.09:18
brokencycleI wanted to reformat it as xfs (no backup required, it's just for testing), but running09:18
brokencyclemkfs -t xfs /dev/sdb1 always gives me a kernel panic. The machine has the latest updates as of yesterday.09:18
brokencycleHow can I have an XFS on that disk, please?09:19
Habbierhoks, i note that in my gnome preferences, i can also add a google account, but i don't know what that does09:20
Habbiebrokencycle, do you have details of the kernel panic?09:20
cluelesspersonI prefer not to have my OS in anyway attached to various social media crap09:21
rhoksYes Habbie I kinda read about that, but I was unsure of giving google access to my ubuntu machine, they already monitor everything we do on our browsers and emails.. But I guess if I'm gonna start scheduling my whole life on their Calendar service I guess I could just do it and connect my local user to my google account :S09:22
Habbierhoks, i don't think that gives google access to your machine09:23
rhoksHabbie, perhaps, but in the world we live in I wouldn't be surprised if a whistleblower defects from google and shows us that they somehow hack their way in when people login like that09:24
Habbierhoks, then, by all means, limit your exposure, and configure just the calendar in one app09:25
cluelesspersonrhoks   by all the accounts and dealings I've had with google employees, it seems that google currently understands the responsibility of consumer data, and avoids abusing it as much as possible.09:26
brokencycle@Habbie: I don't know how to capture it. I basically only IPMI access.09:27
cluelesspersonalso, the types of people that develop those systems, are often the type of people that can't be easily manipulated into thinking it's okay to abuse people.09:27
Habbiebrokencycle, ok09:27
Habbiebrokencycle, anyway, a panic indicates a serious hardware or software problem09:27
Habbiebrokencycle, so, without wanting to be rude, the first question is not 'how can i please use XFS here'09:27
brokencyclethe machine is brand new, and the software is just a generic Ubuntu 18.04, now 18.04.309:28
brokencycleIt worked fine when I had ext4 on that disk, it just craps out when I try to reformat that as XFS.09:28
cluelesspersonbrokencycle   You'd have to get the machine into a state where you can reasonably run another tool or debug or trace while running that function/command09:29
cluelesspersonso perhaps boot a liveboot, or ram based configuration, and perform the format using that, streaming the trace data somewhere.09:29
brokencycleI am open to suggestions: I can ssh into the machine, but when the kernel panics, I'm obviously out of luck doing anything else on it.09:30
brokencycleWhat do you suggest?09:30
brokencycleIf I do a hard reset, the machine comes up just fine, but I don't know a way forward from there.09:31
brokencycleIf the kernel panic was written to disk somewhere, that would be great. Then I'd just collect that after reboot.09:32
cluelesspersonbrokencycle   So, partition the disk, write the log of the operation/trace to another partition while you format the test partition.09:32
brokencycleRunning the mkfs command does not produce any output. You mean, I should strace it?09:34
brokencycleI mean, it works for ~20 seconds or so before the kernel panics.09:35
cluelesspersonbrokencycle  I'm not familiar with general kernel debugging, but I would start googling how to debug, log, dump, etc.09:36
brokencycleok... thank you!09:38
rhoksYeah, I was gonna try to login to google via gnome Habbie but gnome asked for permission to everything basically (to see, edit, delete contacts and emails and whatnot)... So I'm gonna go with the evolution route. I suppose sudo apt install evolution is all thats needed to install it?09:40
Habbieprobably09:41
rhokssome website wanted me to first install this repo ppa:gnome3-team/gnome3-staging09:41
rhoksfor some reason before installing evolution Habbie09:41
Habbiethat would give you a newer gnome and evolution i suppose09:42
rhoksalright this is taking far too long I will get back to it tomorrow maybe, I'll use a chrome tab to schedule the day and print it for now :)09:43
rhoksthanks for the help Habbie09:43
Habbienp, good luck :)09:43
toffeHi09:44
toffeis it possible for me to create multiple interfaces with different ip addresses and mac addresses on my pc towards the same vlan?09:44
toffeI need to "spoof" 500+ units09:44
toffeSo instead of 500 VM i though I could use 500 "virtual nic's" ?09:45
Habbietoffe, yes, make a bridge and tie a bunch of virtual interfaces with different MACs to it09:45
Habbietoffe, brctl is key09:45
toffeThanks09:45
toffeI'll look into it. Just gonna find a server who can handle this software .P09:45
opiosHi09:46
opiosThis is what i have for my firewall rule https://pastebin.com/DfJ7JrZE, i can run that script and do ufw enable and everything is okay but when i reboot the server i cannot access it via ssh!!09:47
opiosin those rules i tried to drop everything but ssh connections09:47
opios<opios> Hi09:54
opios<opios> This is what i have for my firewall rule https://pastebin.com/DfJ7JrZE, i can run that script and do ufw enable and everything is okay but when i reboot the server i cannot access it via ssh!!09:54
opios<opios> in those rules i tried to drop everything but ssh connections09:54
tomreynshow iptables -L after applying those rules.09:55
geirhaopios: did you get tomreyn's message?09:59
opiosno10:00
geirha<tomreyn> show iptables -L after applying those rules.10:01
EriC^^opios: i dont think those rules are persistent if you used iptables to add them10:03
EriC^^opios: https://askubuntu.com/questions/119393/how-to-save-rules-of-the-iptables10:04
opiosEriC^^, damn i didnt know that i need to run the iptabe commands everytime10:27
opiosso my iptables rules are good i just need to make sure they are save and running after each boot10:27
B|ack0phi10:29
EriC^^opios: dunno about the rules tbh, but yeah you have to run it every time after rebooting10:30
opioshttps://pastebin.com/DfJ7JrZE10:30
B|ack0pi still get error report popup but no crash report in /var/crash10:30
tomreynopios: apt show iptables-persistent10:38
tomreynB|ack0p: does the error popup provide any details? do you see any related record in   journalctl -b | nc termbin.com 9999  ?10:39
B|ack0ptomreyn: unfortunately no detail shown on the error report popup10:40
B|ack0pthat s why it is annoying everytime i boot to ubuntu it popups10:40
B|ack0plet me check10:40
opiostomreyn, yeah i went with iptables-persistent10:40
opiosthanks10:40
B|ack0ptomreyn: https://termbin.com/7fmt10:41
tomreynB|ack0p: what about it?10:41
B|ack0ptomreyn: that s the input of your command10:43
B|ack0pjournalctl -b | nc termbin.com 999910:43
tomreynB|ack0p: yes, right. please look for errors yourself first, then point to them on this output.10:44
B|ack0pok10:45
B|ack0pError calling StartServiceByName for org.gnome.ScreenSaver: GDBus.Error:org.freedesktop.DBus.Error.Spawn.ChildExited: Process org.gnome.ScreenSaver exited with status10:49
=== tinoco is now known as rafaeldtinoco
B|ack0pAug 30 13:26:40 uthink-x61 gnome-shell[1340]: Error looking up permission: GDBus.Error:org.freedesktop.portal.Error.NotFound: No entry for geolocation10:50
B|ack0pthere are many errors related DBus and GDBus10:51
B|ack0pwhat are they about?10:51
tomreyngnome / gtk related errors are often, but not always, insignificant10:53
B|ack0pare they critical errors?10:53
B|ack0pi have found 1 hardware error:10:54
B|ack0pAug 30 13:26:30 uthink-x61 kernel: tpm tpm0: [Hardware Error]: Adjusting reported timeouts: A 10000->10000us B 10000->10000us C 0->752000us D 0->752000us10:54
B|ack0ptpm might be thinkpad power manager?10:54
tomreynmore likley trusted platform module10:54
tomreyndo you have gnome-screensaver installed?10:54
B|ack0ptomreyn: i installed gnome tweak extensions other day in a package10:55
B|ack0pi dont know know if it contains screensave10:55
B|ack0pr10:55
B|ack0pi dont know if i have or not10:55
tomreynis the package "gnome-screensaver" installed?10:55
B|ack0pi disabled all extensions but let me check10:55
tomreynapt list gnome-screensaver10:56
tomreynit either says [installed] or not10:56
B|ack0pok10:56
B|ack0pgnome-screensaver/bionic,now 3.6.1-8ubuntu3 amd64 [installed,automatic]10:56
B|ack0pit seems installed but i dont know how and when10:57
B|ack0pmaybe installed inside package somehow10:57
tomreynwhich desktop manager do you use? which desktop?10:57
B|ack0pgnome10:57
tomreyngnome-shell is mentioned on your logs, you i guess you use that as a desktop environment. do you use gdm as a login manager?10:57
B|ack0pubuntu 18/04 default desktop10:57
B|ack0pbut just to try i installed gnome session flashback10:58
B|ack0pto try gnome classic on 18/0410:58
B|ack0pbut i am on default gnome at the moment10:58
tomreynok, this will be why you have gnome-screensaver installed.10:58
tomreyngnome-shell doesn't use it, but -flashback may10:58
B|ack0pi logged in few times after i installed in gnome classic10:58
B|ack0pdoes it cause error popup and system freeze?10:59
tomreyni suspect this may cause the error reporting popup: <B|ack0p> Error calling StartServiceByName for org.gnome.ScreenSaver: GDBus.Error:org.freedesktop.DBus.Error.Spawn.ChildExited: Process org.gnome.ScreenSaver exited with status10:59
tomreynwhich is probably due to gnome-screensaver10:59
tomreyn...starting and failing under gnome-shell11:00
B|ack0pearlier as i mentioned i faced system freeze 4 times11:00
tomreynyou did not mention "freeze" before11:00
B|ack0pit didnt happen recently but it may11:00
B|ack0ptomreyn: i did few days ago11:00
B|ack0pand you suggested me tty11:00
tomreynhah, well, my memory is not perfect11:00
B|ack0pnot happening recently but it may happen11:01
tomreyni "suggested you tty"?11:01
B|ack0pif freeze happens you suggested me sysrq and tty11:01
B|ack0pto check what happens11:01
B|ack0pand collect some reports etc11:01
tomreynoh i think i'm recalling, i suggested you try blindly switching to a tty and try to ctrl-alt-del to see whether it is just a graphics issue.11:02
B|ack0pbut didnt happen yet11:02
B|ack0pyes exactly11:02
brokencycleJust FYI: It seems to be a kernel bug in 4.15.0-58.64 because the problem went away with 5.0.0-25.26~18.04.111:03
B|ack0pbrokencycle: what bug?11:03
brokencycleThe XFS kernel panic bug.11:03
B|ack0phm11:03
brokencycleI have asked about it earlier today. Short version: "mkfs.xfs /dev/sdb1" results in a kernel panic on "my" machine.11:05
B|ack0ptomreyn: if i uninstall gnome flashback will i get rid of those errors related with gnome shell?11:05
brokencycleAnd reproducible so, I've tried almost 10 times, with different disks11:05
freakynlHi, what's the best way to avoid dynamic IPv6 addresses? I have configured it statically through netplan, I just want it to use the static address. I do *not* want to disable RA as it's needed for redundancy on the uplink (the router advertisements) - only need to get rid of the dynamic addresses. Happens now that bind for examples sends notifies from the dynamic address and that's really undesirable, it11:06
tomreynbrokencycle: did you report a bug?11:06
freakynlshould always send from it's static address11:06
brokencyclenot yet, but it's on the list. someone pointed me to the very useful package 'linux-crashdump'11:07
brokencycleI've collected the output of that11:07
tomreynB|ack0p: you could then uninstall gnome-screensaver (maybe you already can do so now), which should prevent the failure of gnome-screensaver starting on the gnome-shell session. which may get rid of the popup message you see.11:07
B|ack0pi did apt purge gnome-session-flashback but only some kbs removed.11:08
tomreynbrokencycle: feel free to show the output so maybe we can tell whether it can be specific to your system or configuration somehow (and not a generic bug)11:08
B|ack0peven screensaver not removed . i now removed screensaver manually11:09
B|ack0ppackage was more than 100mbs how comes it only removes just some kbs11:09
brokencycletomreyn: I need to talk to someone first, and it's several megabytes. the system is a fairly generic dell r440.11:09
brokencyclebrand new, too11:09
tomreynB|ack0p: the "gnome-flashback" package is a meta package, you'll need to remove all the packages it depends on (which are not required by other packages you wish to keep)11:09
tomreyn... if you want it completely gone11:10
B|ack0pi want complete uninstall if possible11:10
B|ack0pbut i cant find one by one installed packs11:10
tomreynB|ack0p: /var/log/apt/history.log* lists the packages which were recently requested to be installed11:11
B|ack0pi am not sure if DBus and GDBus errors related to flashback11:11
tomreynme neither, but probably not11:11
B|ack0ptomreyn: do you know what? i just got popup error report after i purged screensaver :p11:11
B|ack0pwithout detail11:12
BluesKajHiyas all11:12
B|ack0pit usually pops up once when i boot to ubuntu11:12
tomreynwhat does "popup error report" say then?11:12
B|ack0pno details..11:12
B|ack0pjust popup11:12
tomreynwhat does it look like?11:12
tomreyntake a screen shot next time11:12
B|ack0plooks like same as usual11:12
B|ack0pok if it happens after reboot i will do11:12
tomreynand note down the time it happens11:13
tomreynthen companre to    journalctl -b | nc termbin.com 999911:13
B|ack0pok11:13
B|ack0pthx a lot11:14
tomreyngood luck11:14
toffeHabbie: I've set up the raspberry pi now to fake those interfaces is it veth you thought about when telling me about virtual interfaces?11:23
Habbietoffe, i'm not sure what they would be called, sorry11:24
toffeOk thanks :)11:24
MRD365Hi11:54
lotuspsychjewelcome MRD36511:54
lotuspsychjeMRD365: what can we do for you today?11:54
MRD365I need lots of money11:55
DiplomatHey! For some reason my VPS clock stays behind the real clock. VPS host said that their host's clock is working fine.. so now I have no idea what might be wrong. Any ideas?11:56
tomreynwhich virtualization is it, which ubuntuversion is it?11:56
DiplomatRight now the time difference is like 30 minutes11:56
tomreynis the VM's clock bound to that of the host?11:57
MRD365Can you all hack?11:57
=== Etua_ is now known as Etua
DiplomatVMware I think and it's ubuntu 14.04 (yes it's very old, but we are running some legacy stuff). I'm thinking about updating to 18.04 but I'm not 100% sure yet11:57
tomreyn!ot | MRD36511:57
ubottuMRD365: #ubuntu is the Ubuntu support channel, for all Ubuntu-related support questions. Please register with NickServ (see /msg ubottu !register) and use #ubuntu-offtopic for other topics (though our !guidelines apply there too). Thanks!11:57
tomreyn...as you very well know11:57
DiplomatTomreyn: I have absolutely no idea.. but I know they are using that VMware datacenter software11:58
MRD365Do you know METASPLOIT?11:58
tomreynMRD365: stop11:58
debouncerWhile I playin' a game via Steam, probably my graphical card crashes.11:59
MRD365Ok I'm sorry11:59
debouncerI don't know how it gets triggered but i got a black screen during the game and monitor says no cable connected.11:59
anddamhowdy, how do I type a double prime using compose key on 18.04?11:59
tomreynDiplomat: virt-what can tell you which virtualization is in use.11:59
debouncerSince hdmi cable directly connected to graphical card, I suspect a driver crash.11:59
debouncerCan someone help to troubleshoot it please?11:59
lotus|i5!details | debouncer11:59
ubottudebouncer: Please elaborate; your question or issue may not seem clear or detailed enough for people to help you. Please give more detailed information; for example, we might need errors, steps, relevant configuration files, Ubuntu version, and hardware information. Use a !pastebin to avoid flooding the channel.11:59
DiplomatTomreyn: it's vmware11:59
MRD365Am from Indonesia12:00
MRD365are you?12:00
M_aDMRD365: if you like to chitchat join #ubuntu-offtopic12:00
lotus|i5MRD365: only ubuntu support questions here please12:00
MRD365Ok, I just found out12:00
tomreynDiplomat: what does this report?   cat /sys/devices/system/clocksource/clocksource*/current_clocksource12:01
Diplomattsc12:02
tomreynDiplomat: oh i missed that you're running an !EOL version, no support here, sorry.12:02
DiplomatLol, it's very eol12:03
debouncerlotus|i5: https://pastebin.com/PVJcbXyG12:04
lotus|i5debouncer: for gtx cards, you might try a bit higher driver version12:05
lotus|i5debouncer: what shows in: ubuntu-drivers list plz?12:05
debouncer43012:06
lotus|i5debouncer: try to switch to 430 and reboot plz12:06
debounceralright12:07
debouncerwhere is system backlog for graphical card? do you know?12:07
tomreynjournalctl -kb -1 | nc termbin.com 9999    to check + share you last kernel sessions' dmesg; decrease -1 further for earlier logs. --list-boots  to list all boots.12:08
debounceri want to check while installing the new driver12:08
tomreyndmesg -w   or  journalctl -kf   in a separate window to run a logwatch on kernel messages12:08
tomreyn(ctrl-c to end it)12:09
debouncerthanks12:09
=== phd is now known as pav
tomreynomit the k to journalctl if you want to watch all logs12:10
Surfer2011^hello, is there anything needed to be taken care of using rsync with ntfs drives?12:22
Surfer2011i get this error:  ERROR: Warning! /bin/rm failed.12:22
HabbieSurfer2011, that does not look like a message from rsync12:31
Surfer2011rsnapshot my bad using rsync12:32
pavSurfer2011, are you talking abut Ubuntu standard on some non-standard ntfs drivers? ntfs-3g?12:33
Surfer2011/dev/disk/by-label/LaCie /srv/dev-disk-by-label-LaCie ntfs defaults,nofail 0 212:33
Surfer2011is the fstab entry12:33
MalgorathHey I have one of those BIOS mobo raids that I think is just software raid, I have to 8TB drives Identical I'm wanting to raid but when I set it up with BIOS correctly(was seen normally by windows so I know an OS can see all 14.7TB of space when I do a raid0 on it,  my issue is when I do fdisk -l I see the raid but its only 1.8TB in available space, any ideas or tips?12:37
OolMalgorath: without multiboot better to not use fake raid but real soft raid: mdadm . https://help.ubuntu.com/community/FakeRaidHowto12:40
Oolwith multiboot, I don't know12:40
MalgorathOol, was wondering that, wondering if a raid is even worth the hassle12:41
Malgorathbtw not multibooting, just had windows on it and replaced it with ubuntu 19.0412:41
MalgorathDecided if I need windows my laptop can run that horrible OS for gaming12:42
EriC^^Surfer2011: do you have write permissions on the ntfs as your user?12:42
EriC^^(that you're running rsync as)12:43
Malgorathbrb going to turn off the bios raid stuff12:44
Surfer2011yes i should12:44
Surfer2011i do12:47
blip99guys, what on earth is juju? https://packages.ubuntu.com/xenial/juju-mongo-tools3.212:53
lotus|i5!juju12:54
ubottuJuju is a open source devops platform created to allow rapid deployment of applications in the cloud. More info at  https://juju.ubuntu.com/12:54
blip99In newer versions of ubuntu it's called mongo-tools, what is this juju thing for Xenial?12:54
blip99aaaah12:54
blip99It sounded so dodgy I thought it was a scam :D12:54
blip99thanks lotus|i512:54
blip99awesome :)12:55
blip99thank you mr. juju12:55
lotus|i5welcome blip9912:55
blip99lotus|i5, do juju packages require extra config?  I installed this package I linked, but no mongo tools show up.  no mongodump etc..13:00
blip99`juju-mongo-tools3.2/xenial,now 3.2.4+ds-0ubuntu1 amd64 [installed]`13:01
Mechanismusanyone know of a decent one-liner to tell if I've already run `pam-auth-update --enable mkhomedir`?13:03
HabbieMechanismus, why? looks safe to run twice13:04
Mechanismusbecause I have it in a salt state and I don't want that state to run every time I apply the high state13:05
MechanismusI'm trying to get my salt states setup such that I can easily tell if a node has changes to apply.  I need to add an 'unless' to the mkhomedir state so that it detects whether it needs to be run.13:07
Habbiediff --git a/pam.d/common-session b/pam.d/common-session13:07
Habbie+session        optional                        pam_mkhomedir.so13:07
Habbiethat is what i observe as a change in /etc when i run it13:07
Habbiei trust you can 'unless' on that13:08
Mechanismusyeah I was thinking about grepping for "pam_mkhomedir.so" in common-session but I wonder if there's a better way13:08
Habbiepam-auth-update really doesn't do much more than that either13:09
iffraffHi, I have a laptop with an onboard intel video card and a nvidia card.  I think it's not an uncommon setup.  I can't get it to display two external 4k monitors.  So I'm thinking of getting an external graphics card that would connect via usb -c or thunderwhatever.13:54
iffraffTwo questions 1) does this sound reasonable?13:54
iffraff2) what external graphics card is most likely to not give me trouble with ubuntu?13:54
v0lksmanI have a directory of alias files (each file defines an alias), can't seem to get them to load automatically using bashrc something like . /path/to/dir/*13:58
v0lksmananyone know how to get them all to load?13:58
Habbiefor f in path/to/dir/* ; do . $f ; done13:58
v0lksmanthe example I provided loads the first found in the directory13:59
Habbieyes13:59
v0lksmanyeah loop them eh?  ok..thanks!13:59
Habbieuse . "$f"13:59
Habbiein case there's whitespace in one of the names13:59
trenchiffraff: https://hackernoon.com/recipe-nvidia-titan-x-as-external-gpu-on-ubuntu-laptop-9df2dfc02fc6 pretty straight forward13:59
iffrafftrench: but isn't nvidia notorious for having crappy linux drivers?14:02
v0lksmanHabbie: thanks!14:03
trenchiffraff: try and check if it works, if it doesn't send the stuff back?14:06
iffraffcan you return video cards?  I guess I kind of assumed you could not14:08
Habbieiffraff, that's not a ubuntu support question in any shape or form :)14:10
pragmaticenigmaiffraff: When researching anything with Linux, always pay attention to the date of publication. If it is more than a 3 years old, it is probably way out-dated as the Linux community is continuously evolving and changing faster than articles can be published. As for your 4k issue, are you certain that there isn't a limitation of the graphics card on how many displays it can drive at 4k... in a laptop form factor space is a premium14:11
pragmaticenigmaand heat dissipation is a problem. You would need to consult the laptop specifications to find out what your computer is capable of. You can use an external graphics card, though you will want to verify that your laptop has the right USB Type C support for that feature. Some USB-C ports do not have the required bandwidth for the data transfer needed.14:11
iffraffHabbie:  what video cards work best with ubuntu is not relevant to ubuntu?14:11
Habbieiffraff, i meant the 'return' question, not the rest, sorry14:11
pragmaticenigmaiffraff: As what "works best" is not a support question. It is a polling question, and it is preferred that you ask those types of questions in #ubuntu-offtopic14:12
iffraffpragmaticenigma: so the laptop is supposed to support multiple 4k monitorns, but it is also supposed to run windows, and i believe windows has some magic driver that bridges the two video cards.  Hence I'm thinking of external video card. Is the main concern when using an external video card the connection ( I see that mentioned the most )? my system does have thunderbolt 3.  so that should have the bandwidth14:14
pragmaticenigmaiffraff: Nvidia is the maker of the driver for windows, and they offer a driver for Linux as well. It is true that sometimes the Nvidia Linux driver is a little behind in feature parity with the Windows, but that usually is seen more in the CUDA availability and prsently some of the RTX capabilities. There is no magic driver, just that system architecture can switch from the lower powered Intel graphics chip for graphics14:19
pragmaticenigmaprocessing to the Nivida chipset. That is a feature that I haven't seen fully implemented at this time. The volunteers here usually recommend that a user chooses either Nvidia or the Intel from the BIOS/UEFI setup and stick with one or the other.14:19
iffraffYes, however to get the advertised dual 4k output you have to use both. I believe14:21
pragmaticenigmaiffraff: I would start with making sure the computer is setup to use the Nvidia chipset, full time. The inability of the unit to drive both of the external monitors makes me believe the issue might be that you're running on the Intel chipset, and not the Nvidia14:21
=== lotus|i5 is now known as lotuspsychje
iffraffI did switch the chipset ( or check the chipset ) both manually via cli, and via the nvidia gui.  Logged off and back on etc. So I'm fairly sure I was on nvidia.14:22
pragmaticenigmaiffraff: Are you trying to drive two external monitors and the laptop screen at the same time (giving you 3 displays?)14:23
iffraffno, I don't need the laptop monitor.  That said it's possible that while testing the laptop was open. What would happen is I had a thunderbolt to hdmi splitter and it would only ever display one monitor.  However, which monitor depended on the order of hookup.  so I know both monitors and cables did work.14:25
pragmaticenigmaiffraff: That's a bandwidth limitation of the splitter14:26
pragmaticenigmaiffraff: to drive two displays, they'd both need to be connected independently to the laptops graphics ports14:27
iffraffI actually tried a number of splitters, including these sort of all in one laptop docking things, like the pluggable https://www.amazon.com/Plugable-Charging-Specific-Thunderbolt-DisplayPort/dp/B0779K9DG2/ref=sr_1_5?crid=PUASATCMPDOK&keywords=pluggable+usb+3.0+docking+station&qid=1567175265&s=gateway&sprefix=pluggable%2Caps%2C275&sr=8-514:28
iffraffthat one is usb-c but I also tried one that was thunderbolt14:28
banisterfiendyo guys, given a path to an executable on disk -- what's the best way to find out all instances of it (i.e PIDs) ?14:29
pragmaticenigmabanisterfiend: look at "man ps"14:29
lordcirth_banisterfiend, 'lsof /bin/foo' might do it14:29
banisterfiendpragmaticenigma lol, i mean in the C API sorry14:30
Laserburnhey guys.  I bought a Dell R710 server with no OS.  Downloaded Ubuntu 18.04 LTS and put it on a USB stick.  Every time I try to boot the installer, after the grub menu, I get an "out of range" error on my monitor.  I googled for solutions, but the vga switches in the grub menu have not worked.  Does anyone have any idea what I can do?  My monitor's14:41
Laserburn native res is 1920x1080 and supports 59/60/120/144hz.14:41
ioriaLaserburn, have you tried 'nomodeset' ?14:42
LaserburnI have not14:42
Laserburnwill try14:42
lotuspsychjeLaserburn: see also the #ubuntu-server channel for likeminded server volunteers14:43
Laserburnthanks!14:43
Elodinhello, i just installed ubuntu, and i would like to see the grub at startup, how can i do that?14:49
lotuspsychjeElodin: hold shift at boot14:49
Elodinthanks14:49
Elodini was thinking i was crazy... it was booting too fast for me to see the grub14:50
Oolor set it into /etc/default/grub: https://help.ubuntu.com/community/Grub214:50
=== juboxi is now known as jubo2
Oolhttps://askubuntu.com/questions/16042/how-to-get-to-the-grub-menu-at-boot-time14:53
=== saint__ is now known as saint_
rapidwaveI upgraded to Disco and now icons seem like windows 95. Where did the better icons go?15:48
brutseri dont understand this, i create header file for dm-crypt (dd if=/dev/zero bs=1049600 count=1 of=myheader) - then i encrypt sda (cryptsetup luksFormat --hash=sha512 --key-size=512 --header myheader /dev/sda) - after that command, the header file (myheader) is now 16.0M in size - why did that happen? i want the header file to stay at the minimum ~1.16:11
brutser1M size why it grow to 16.0M??16:11
tomreyntry specifying --keyfile-size16:18
tomreynoh actually, ignore me16:19
tomreynbrutser: looks like you'll need --align-payload 016:22
tomreynat least this example says so https://superuser.com/questions/823922/dm-cryptluks-can-i-have-a-separate-header-without-storing-it-on-the-luks-encry16:23
brutsertomreyn: i thought so too, but i tried that already16:30
brutsertomreyn: actually had the exact same post in front of me16:31
rexwin_Command 'tailf' not found16:33
rexwin_in my ubuntu VM machine16:33
Ben64tailf is depreciated16:35
brutsertomreyn: it's easy to reproduce > create test.txt with Hello World! inside NEXT dd if=/dev/zero bs=1049600 count=1 of=myheader NEXT cryptsetup luksFormat test.txt --header myheader --align-payload 0 --cipher twofish16:36
brutseryou tell me if myheader grew to 16.0M or not16:36
EoflaOErexwin_: Tailf is deprecated, so replace it with tail -f. Explain what you want to do so we can helpmyou further.16:37
EoflaOEhelp you*16:37
rexwin_I got in now16:38
ausjkeusb camera /dev/video0: fd=open(/dev/video0); unplug camera; /dev/video0 file gone immediately;can I still safely close the now missing device file via close(fd)?16:42
Habbieausjke, yes16:44
Habbieausjke, what you can't do is read or write from it - that would error (but it would still be safe, just need to handle the errors)16:45
ausjkeHabbie: now I insert the usb-camera back, and a new /dev/video0 is created, so I just need open/close again.16:53
ausjkei have a race condition, when camera unplug, before I detect that and close that fd, usb-camera is re-inserted, but /dev/video0 is still held due to not-closed-in-time, so kernel create /dev/video1 instead for the camera, and my code breaks16:54
ausjkemy program will show /dev/video0(deleted) under /proc/PID/fd for this hotplug usb device16:55
Habbieausjke, your code should not expect the camera to always be on 0, indeed17:04
banisterfiendhii, what's the best way to find out all the PIDS that were started from a specific path? i.e how do i find all the PIDs for instances of /usr/bin/hexchat17:05
Habbiebanisterfiend, you can do a bunch of things but they will all, inside, check /proc/*/exe and /proc/*/maps and /proc/*/fd17:06
banisterfiendHabbie thanks do you know how to list all PIDs in system so i can iterate through them with /proc/<PID/exe ?17:07
Habbiebanisterfiend, yes, list /proc and filter out all non-numbers17:07
banisterfiendHabbie hm, that's the only way? i was hoping there'd be something like: /proc/pids or some such would just return the pids17:08
ioriabanisterfiend, you mean something like 'pstree -p ' ? or what ?17:09
Habbiebanisterfiend, not that i know of17:09
Habbiebanisterfiend, ps just reads /proc17:09
Habbiepstree -p also just scans /proc17:09
banisterfiendHabbie alrighty thanks17:16
mithrisonI'm using gstrunner to stream video on port 5000, the command runs with no problem however the port doesn't open. how can I troubleshoot it. (I'm on Raspbian, by default iptables seems to be disabled)17:55
molinothello17:56
molinotI have a PC with 16GB of RAM, it has a 2GB swap file, should I augment the size to 4GB? Is any other size preferable? I don't plan to use hibernation at the moment18:03
lotuspsychjemithrison: router could block port?18:04
mithrisonhmm good point18:04
leftyfbmithrison: you're having this issue on raspbian?18:04
lotuspsychjemolinot: got an ssd or spinner?18:05
molinotlotuspsychje, ssd18:06
leftyfbmolinot: if you're not going to use hibernation, then disable swap completely. It's pretty useless with 16G of memory18:06
lotuspsychjemolinot: ^18:06
lotuspsychjemolinot: was that a manual partitioning, or did you let ubuntu setup choose?18:06
molinotleftyfb, I open many tabs at once, and the PC becomes slower18:07
leftyfbmolinot: swap isn't going to help you18:07
=== dionysus70 is now known as dionysus69
lotuspsychjemolinot: wich ubuntu are you running?18:08
molinotlotuspsychje, I don't remember, I think I let it choose, but several versions ago. I have the latest 19.0418:08
mithrisonleftyfb yes. it's an issue on raspbian18:09
leftyfbmithrison: then why are you asking in #ubuntu?18:09
lotuspsychjemolinot: if 19.04 with ssd & 16g ram going slow, then there's a bottleneck somewhere18:09
molinotlotuspsychje, I think the Chrome tabs eat more and more memory18:10
tomreynbrutser: maybe that's a matter of luks 1 vs luks 218:11
lotuspsychjemolinot: i always tweak a bit more with installing preload & haveged, disabled unwanted services/systemd units, clean system with bleachbit, uninstall unneeded packages18:12
molinotlotuspsychje, alas, I use htop and it is the tabs who eat the memory, alas, when there is few left, it doesn't eat from the wwap file...18:14
lotuspsychjemolinot: did you compare with other browsers, lets say chromium18:14
molinotwell, I have it installed, I could give it a tray18:15
molinottry18:15
sarnoldI strongly recommend keeping swap enabled; the kernel can make better memory management decisions if it has some place to stuff data that processes don't appear to be using18:15
sarnoldyou only need a gigabyte or two of the stuff18:15
molinotperhaps I have it disabled or something18:16
leftyfbmolinot: I have 75 tabs open on a laptop with 16G. Among other applications open. I'm only using 3.4G of memory18:17
molinotleftyfb, chrome or chromium?18:18
leftyfbchrome18:18
leftyfband I have a ton of extensions running as well18:18
molinotI have 8GB eaten with around 18 tabs open18:19
kokokonhttps://www.cisecurity.org/advisory/a-vulnerability-in-google-chrome-could-allow-for-arbitrary-code-execution_2019-086/18:20
kokokoncan ubuntu be updated?18:20
kokokonI mean can chromium maintainer update chromium browser18:21
EoflaOEkokokon: You can request the maintainers to update it.18:21
sarnoldmolinot: does shift-escape in your browser bring up a tool to show you which tabs are consuming memory and cpu and so on?18:21
tomreynkokokon: chromium-browser seems to already have this fix18:23
kokokontomreyn mine is not the latest18:24
sarnoldtomreyn: hmm I'm not sure we do -- I don't see CVE-2019-5869 on https://launchpad.net/ubuntu/+source/chromium-browser/+changelog18:24
tomreyni was inspecting version numbers https://packages.ubuntu.com/search?keywords=chromium-browser&exact=118:24
lotuspsychjekokokon: your ubuntu version and chromium version plz?18:24
tomreynhttps://www.cisecurity.org/advisory/a-vulnerability-in-google-chrome-could-allow-for-arbitrary-code-execution_2019-086/ states "Google Chrome versions prior to 76.0.3809.132"18:24
Habbiesarnold, 5869 isn't even present in your CVE tracker18:24
tomreynit could be chrome only, of course18:24
kokokon 76.0.3809.132  ubuntu 18.0418:25
molinotsarnold, I have a lot of subframes in strage sites18:25
sarnoldHabbie: yeah, but that's less surprising.. we often release the browsers before we triage the cves18:25
lotuspsychjekokokon: ok tnx18:25
Habbiesarnold, ah18:25
EoflaOEkokokon: You can request them to update it18:25
kokokonthem who?18:25
kokokonsarnold are you the chromium maintainer?18:26
sarnoldkokokon: no18:26
kokokonMaintainer: Ubuntu Developers.18:26
sarnoldalas our browser guy is on vacation18:26
kokokonso I should update it manually right?18:27
tomreynhttps://chromium.googlesource.com/chromium/src/+/51abe396b9580d43d53046180a4f95fdfe5140d9 is the fixed commit18:29
kokokontomreyn so I just find impact file on a system, change it and restart browser?18:32
tomreynso i did not compare version numbers properly. https://chromereleases.googleblog.com/2019/08/stable-channel-update-for-desktop_26.html states that 76.0.3809.132 is the fixed version, but according to https://launchpad.net/ubuntu/+source/chromium-browser/+changelog and https://packages.ubuntu.com/search?keywords=chromium-browser&exact=1 ubuntu has 76.0.3809.100 based builds, which are probably still affected18:33
kokokonyes18:36
kokokonwhats the easiest way to upgrade to 132?18:36
pennTellerHi guys, sometimes when I move my mouse pointer to the right side of my screen all my windows kind of shift to the left side (as if they were trying to hide) how does one stop this from happening?18:40
_KaszpiR_google-chrome-stable/stable,now 76.0.3809.132-1 amd64 [installed]18:40
_KaszpiR_  The web browser from Google18:40
_KaszpiR_it's available18:41
kokokonyes chrome however chromium?18:41
kokokonthere is an arch linux package18:41
kokokonso there must be a source code somewhere18:41
sarnoldkokokon: you could switch from the .deb packaged chromium-browser to the snap packaged browser: https://snapcraft.io/chromium18:44
tomreynor temporarily use https://download-chromium.appspot.com/18:45
_KaszpiR_chromium beta ppa18:46
tomreynthere's also https://launchpad.net/~canonical-chromium-builds/+archive/ubuntu/stage18:47
brutsertomreyn: https://cdn.kernel.org/pub/linux/utils/cryptsetup/v2.1/v2.1.0-ReleaseNotes < at the top it's explained18:47
brutserit's some space they reserve for future use, but it's insane, 16M for a header18:48
tomreynbrutser: so it's LUKS1 vs LUKS2 indeed i see18:48
brutseri feel 1M is already sufficient18:48
tomreynit's been a while that i've seen someone sainyg 15 MB extra was "insane"18:48
brutseryea :)18:49
brutsertomreyn: yes it's only for luks2 yes, do you know what are the downsides for using luks1?18:49
brutsersecurity in mind ^18:49
tomreyni assume the release notes you pointed to will discuss it. one difference is that luks 1 only has a single copy of the header, whereas luks 2 has two.18:50
brutserok18:51
=== nshireTimeout is now known as nshire
thawayon my LTS 16 server, some programs stopped accepting valid SSL certificates unless I explicitly set /etc/ssl/certs/ca-certificates.crt as the CA file.  what might have gone wrong?19:29
kyle__thaway: entirely depends on the cert(s) and the software.  Any chance they're they're EV certs?  Because I think those all got recently deprecated.19:37
kyle__Same goes for just extra long certs.19:37
thawaywhat are EV certs?19:38
thawaythe programs that had issues were RoundCube (i.e. PHP) and wget19:39
thawayat least those are the ones with problems I noticed so far19:39
thawayok reading this now: https://en.wikipedia.org/wiki/Extended_Validation_Certificate19:40
kyle__example of the of the wget calls that's giving you issues?19:40
thawaywget https://github.com/wikimedia/mediawiki-extensions-YouTube/archive/master.tar.gz19:41
thawayand RoundCube failed to connect to my own LetsEncrypt-certed host, so I don't think it's EV-related19:42
kyle__Run this for me: dpkg -l ca-certificates19:42
thaway(the LE cert was certainfly fresh; Thunderbird would still connect to it)19:42
thawayVersion: 20170717~16.04.219:42
kyle__(well, that's the package name on 18.04)19:42
kokokonsarnold i have installed latest with snap however it is yet to appear in the menu19:43
kyle__Err..... I don't have a 16.04 box infront of me, but that seems rather old... when's the last time you updated?19:43
kokokonCommand 'chromium' is available in '/snap/bin/chromium'The command could not be located because '/snap/bin' is not included in the PATH environment variable.19:43
sarnoldkokokon: you may need to log out and log in again to get a new PATH environment variable set up19:44
kyle__thunderbird is a mozilla project app.  I think all the moz stuff uses internal ssl systems with an internal certificate store.19:44
kokokonok19:44
thawayI update regularly...19:44
thawayhmm, my web host might have screwed this one19:45
thawaysources.list contains their addresses (strato)19:45
tomreynca-certificates 20170717~16.04.2 is the latest on xenial19:45
kyle__Damn.  That's just ... werid.19:45
kyle__Thanks tomreyn.19:45
thawaytomreyn: oh ok19:45
kyle__OK.  Hrumm.  You can use a -k in the wget or curl call, if you realy want, but I wonder if maybe they're mitm the stuff for a load balancer or something ugly.19:46
thawaywget's -k seems irrelevant.  installing curl to test...19:47
thawaycurl doesn't complain about the cert but downloads an HTML file saying "you're being redirected" -_-  one point for wget on this one :P19:49
tomreynthaway: so you're saying that    wget -qO /dev/null https://github.com    gives an error message -which? - but    wget -qO /dev/null --ca-certificate /etc/ssl/certs/ca-certificates.crt https://github.com   does not?19:49
thawaytomreyn: correct.  the error is:  cannot verify github.com's certificate, issued by ‘CN=DigiCert SHA2 Extended Validation Server CA,OU=www.digicert.com,O=DigiCert Inc,C=US’:  Unable to locally verify the issuer's authority.19:51
kyle__wget is for downloading, curl is for interacting directly with REST apis.  At least, that's how I think of it.19:51
thawaymakes sense19:52
tomreynso this suggests that the compiled in CA path of this wget build you're using differs from /etc/ssl/certs/ca-certificates.crt19:52
tomreynreadlink -f $(which wget)19:52
tomreyndpkg -S $(readlink -f $(which wget))19:52
tomreynwhat do those return?19:52
thawaytomreyn: /usr/bin/wget and package wget19:54
thawaywget version:  1.17.1-1ubuntu1.519:54
tomreynand it's not only happening with wget you said, right?19:54
tomreynstill, can you show    sha256sum /usr/bin/wget19:55
thawayc31d3e52ddcc0d9c32c79f43febf5e1609cce5ae60546e112163c4329f52cbd919:55
thawayI had a similar problem with RoundCube, which is a web-based email client written in PHP19:56
tomreyni see a matching hash on a system i manage19:56
thaway(just disabled cert checking for that one as it connects to localhost anyway)19:57
gonfhow do I download all files WITHOUT subdirectories using wget?19:57
B|ack0phi. i am having these errors and fails: https://paste.ubuntu.com/p/XXjrQMQHmk/19:57
kyle__wget -r -l1 I think.  Recurse with a depth of 119:57
B|ack0phow can i fix them?19:57
B|ack0pone or some of them is causing system error popup everytime i boot into ubuntu 18.0419:58
B|ack0psystem error report popup*19:58
B|ack0precently i faced that popup at 10.54pm19:58
gonfkyle__, thats what I thought too but it keeps downloading the subdirs anyway:|19:58
tomreynthaway: do you have /etc/wgetrc or ~/.wgetrc or /etc/netrc or ~/.netrc ?19:59
B|ack0pin the paste you can see possible fails/errors related to that error19:59
thawaygonf: maybe -l 0?19:59
kyle__gonf: Ooh.  Humm.  I know -l0 will recurse indefinately.  Mayb eI have to re-read the man page19:59
* kyle__ hasn't read the wget one in probably 5 years19:59
B|ack0prelated to that time*20:00
gonf-l 0 means idd inf20:00
tomreynthaway: and is the system time set correctly?20:00
sarnoldB|ack0p: pop into #snappy -- hopefully someone will know how to track down which snap icons are missing20:00
kyle__Wow.  I forgot how bad that manpage is.20:00
thawaytomreyn: only /etc/wgetrc and the only uncommented line is passive_ftp=on20:01
B|ack0phmm20:01
B|ack0psarnold: is it related to snap apps?20:01
sarnoldB|ack0p: yes20:01
tomreynthaway: but none of the other three files is present?20:02
SignalsOutI'm gonna say it!20:02
thawaytomreyn: correct20:03
B|ack0psarnold: they seem to be sleeping..20:04
B|ack0pi have 7 same error log this:20:05
B|ack0pAug 30 22:54:19 uthink-x61 gnome-software[3571]: Failed to load snap icon: local snap has no icon20:05
B|ack0pand other one: Aug 30 22:54:17 uthink-x61 nautilus[3933]: Called "net usershare info" but it failed: Failed to execute child process “net” (No such file or directory)20:05
tomreynthaway: i tested the same command i provided you earlier, the one you reported fails with "cannot verify github.com's certificate, issued by ‘CN=DigiCert SHA2 Extended Validation Server CA,OU=www.digicert.com,O=DigiCert Inc,C=US’:  Unable to locally verify the issuer's authority." unless you specify --ca_certificate=/etc/ssl/certs/ca-certificates.crt .  it works without errors on my test system. which puzzles me somewhat.20:06
sarnoldB|ack0p: yeah, it's a friday before a US weekend, and after end of usual office hours in europe.. it might not be real busy20:06
sarnoldB|ack0p: that net usershare info would be easy to fix by installing samba-common-bin but if you don't have it now then you probably don't care about doing SMB networking20:06
B|ack0psarnold: i am not sure about samba20:07
B|ack0pand if it is necessary i can install?20:08
B|ack0pif you look at full log here: https://termbin.com/xlo920:08
thawaytomreyn: thanks.  yes, it's very weird.  I'm sure I haven't fiddled with anything that could have caused it.  the RoundCube problem came "out of nowhere".  got a report from a user one day when I hadn't done anything on the server in a while...20:08
B|ack0pat time 22.54.02 there is about 5 fails about fwupd20:09
B|ack0pAug 30 22:54:02 uthink-x61 fwupd[3593]: disabling plugin because: failed to....20:09
B|ack0pis it firewire? and why is it failing? is it error or normal?20:09
sarnoldB|ack0p: fwupd is a firmware update tool -- I think those messages are probably normal enough20:11
tomreynsarnold: would you have any idea as to why wget on xenial (proper latest deb, but have not checked the libs) would start throwing cert validation errors ("cannot verify github.com's certificate, [..] Unable to locally verify the issuer's authority.") unless it's run with --ca-certificate /etc/ssl/certs/ca-certificates.crt ?20:12
tomreynthis is thaway's issue, i can't think of much other than libs being replaced by third parties' now.20:12
sarnoldtomreyn: quite often an unhashed /etc/ssl/certs directory will make it hard to do validation -- I believe update-ca-certificates should reforce the process20:12
sarnoldtomreyn: indeed using someone else's libraries could give that trouble..20:13
tomreynbut would it not use the /etc/ssl/certs/ca-certificates.crt file either way?20:13
tomreyni mean in case the rest of /etc/ssl/certs/ is not up to date20:13
sarnoldhmm not sure there20:14
tomreynokay, i'm not certain either really20:14
sarnoldtomreyn: but perhaps if whoever built the hypothetical other libraries didn't use a similar enough set of configure flags..20:14
gonfso I couldn't download only the files, but I used the index.html to grep only files..:| not sure if there is other way.. but using this for now:x20:14
tomreynyes20:14
sarnoldtomreyn: did you find out if the crypto libs have been replaced?20:15
tomreynnow how do we tell which libs are being used20:15
tomreynnot yet, that's next20:15
tomreynldd or something better20:15
thawayI use one third-party package source for php/mysql stuff, let me check what it was called20:15
sarnoldldd's easy. It's not great but it's easy. :)20:15
tomreyni just always thnk of https://catonmat.net/ldd-arbitrary-code-execution20:15
thawayondrej's apache2 and php sources for xenial20:16
sarnoldtomreyn: yes :(20:16
tomreynthere was an alternative, was it readelf or objdump?20:16
thawaybtw strace on wget indicates it doesn't touch /etc/ssl/certs ... BUT!  open("/usr/lib/ssl/cert.pem", O_RDONLY)20:17
thawaynot sure if relevant20:17
thawayoh and the result of the open() call is ENOENT20:18
sarnoldtomreyn: readelf -d will show the libraries that an object file wants to use, but since it's not *executing* the thing, the way ldd does, you don't get to find out what the loader will actually load for them. just the names.20:18
tomreynah right, this was the problem with this approach, thanks sarnold!20:18
tomreynso we have    readelf -d $(which wget) | grep NEEDED20:19
tomreynor just    ldd $(which wget)20:19
thawayI decided to trust the wget executable and ran the ldd one.  among the results: libssl.so.1.0.0 => /lib/x86_64-linux-gnu/libssl.so.1.0.0 (0x00007f52e7279000)20:20
tomreynthaway: ^ can you show the full output of    ldd $(which wget)   on a pastebin?20:21
tomreynthaway: and then   sha256sum /lib/x86_64-linux-gnu/libssl.so.1.0.0 /lib/x86_64-linux-gnu/libcrypto.so.1.0.0    and any other libs if you like20:21
thawayhere's the full ldd result: http://dpaste.com/3NQS9G920:24
thawayand the shas: http://dpaste.com/3J542FR20:25
tomreynthaway: does /usr/lib/ssl/cert.pem exist?20:25
thawaytomreyn: nope20:25
tomreynoh you said ENOENT, sorry20:25
thawaynp20:26
tomreynhmm those checksums match as well here20:26
tomreynso by default wget doesn't use the CA file (ca-certificates.crt), it uses certificates directly based on their serials.20:29
tomreynit looks them up in /usr/lib/ssl/certs which is actually a symlink to /etc/ssl/certs20:29
tomreynthaway: did you maybe disable some CAs you don't trust lately?20:30
thawaytomreyn: didn't disable any CAs.  by the way /usr/lib/ssl/certs isn't a symlink on my system.20:30
thawaycontents of the dir: http://dpaste.com/3H50XPT20:31
tomreynthaway: interesting. can you     readlink -f /usr/lib/ssl/certs/244b5494.020:31
thawayno actual certs there it seems20:32
tomreynis ca-certificates installed?20:33
tomreynoh yes, we had this initially20:33
thawayyup20:33
thawaybtw I ran update-ca-certificates but it made no difference20:33
tomreynthaway: according to    dpkg -S  /usr/lib/ssl/certs/*   which package do thee files belong to?20:35
thawaytomreyn: interesting: while the directory itself is from openssl, the contents don't belong to any package  (dpkg -S says "no path found that matches pattern")20:37
tomreyndo you have gitlab-ce installed?20:37
thawaynope20:37
thawaythe timestamps of the files in the dir are from 2017 and 2018 though20:38
tomreyni don't knwo what it is, but something you ran or installed oin this system thought it'd be a good idea to remove the symlink and place these files there20:38
tomreyndo you have /etc/ssl/certs/244b5494.0 ?20:39
thawaytomreyn: nope, the contents of the dir are these: http://dpaste.com/3H50XPT20:39
thawaytomreyn: oh nvm, wait20:39
thawayI thought you meant /usr/lib/ssl/certs.  yes I have that file in /etc/ssl/certs/20:40
tomreynand is it a symlink to DigiCert_High_Assurance_EV_Root_CA.pem in the same directory=?20:40
thawaytomreyn: yes20:41
tomreynsome of those files you have (but should not have) in  /usr/lib/ssl/certs would be available at this location on Centos systems according to https://blog.hazrulnizam.com/renewing-ssl-certificates/20:42
tomreyni reallydon't know what caused things to be overwritten on your system, but personally i'd make sure i'm the only admin, and i know what i'm doing then.20:43
tomreynor that all admins are legitimate and know what they are doing20:43
thawayI'm the only admin and ssh login requires a private key i.e. password-only auth is disabled20:43
tomreynit shoul dbe easy to fix now that we know what the problem is. unfortunately we do not know what caused it, or whether it will happen again.20:43
thawayhmm, so the problem is that these files were created in 2017/2018 and now they're out of date?  that at least makes sense20:45
thawayespecially since I have no clue what I might have done back then :-)20:45
=== Roy_Mustang is now known as A_D
tomreynno, the problem is that /usr/lib/ssl/certs is a directory (not a symlink to /etc/ssl/certs), contains files of unknown origin, and20:45
tomreyn...that's it20:46
thawaywell yeah, but they were created in 2017/2018, so I was wondering why the problem only really surfaced now20:46
tomreynyou don't know that, all you see is timestamps of files.20:47
tomreynso far it does not looks like anyone falsified those, but they may just have been extracted from some tarball and moved there.20:47
thawayhmm, indeed, can be forged.  but if they were really created then by mistake, it could be that they're simply outdated now, right?20:47
tomreynyou call it "outdated", i call it "should never exist". they're not part of any package you have installed.20:48
tomreynand there are no such files at this location in xenial#20:49
thawaytomreyn: I understand how you mean, but I mean in terms of cert-validation.  in other words, is it a possibility that they've been there since 2018/2017, and wget/RoundCube didn't make problems because the certs there were "valid" until now?20:50
tomreynmaybe.20:50
thawaythanks a ton for the help btw.  to be honest the server is for kind of a political project and I do expect hacking attempts, but nothing CIA-level, just script kiddies :P20:52
tomreyni'd not be happy if i found out that files of unknown origin defined the CAs my system is configured to trust.20:52
thawayindeed.  there shouldn't be a problem with deleting them and making /usr/lib/ssl/certs a symlink to /etc/ssl/certs again, right?20:53
thaway(guess I'll move them away just in case rather than deleting)20:53
tomreynthis should make     wget -qO /dev/null https://github.com   run without error again20:54
thawayhuh, can't move the directory: http://dpaste.com/0S7Y4RS20:57
tomreynis this a VPS? which kind of?20:57
HobadeeSo I tried enabling SELinux on Ubuntu 18.04.3, and it locked everything out; my SSH connection dropped and when I tried rebooting, it failed with a bunch of "Permission Denied" errors.  Why?20:58
thawaytomreyn: it's a VPS from the company STRATO AG.  don't know what kinds there are.20:58
HobadeeI used the "default" SELinux type20:58
tomreynthaway: virt-what (package and same name command) can tell you20:59
thawayhmm, / is a "vzfs" mount which apparently is a virtual fs type that allows sharing between containers21:00
thawaytomreyn: openvz21:00
tomreynthaway: blame strato then21:00
thawayI'll contact their support :)21:00
thawaythanks a lot again!21:00
tomreynthis is pretty bad really, but they made mistakes liek this before21:00
thaurwylthIs there a lot of 19.10 alpha/daily discussion on, well, pretty much anywhere, such as Ubuntuforums? I'm guessing not, but then again, I'm asking rather than guessing.21:01
tomreyn!ubuntu+1 | thaurwylth21:02
ubottuthaurwylth: Eoan Ermine is the codename for Ubuntu 19.10 - Support only in #ubuntu+121:02
tomreynHobadee: so you installed and enabled selinux and assumed it would just work?21:03
Hobadeetomreyn: Yup.  I assumed the default policy would at least allow the system to boot....21:04
tomreyndid you also disable apparmor?21:04
Hobadeetomreyn: Yes, disabled apparmor21:04
Hobadeepurged it completely21:05
tomreynby default policy, do you mean you installed package "selinux-policy-default"?21:05
Hobadeeyes, and in /etc/selinux/config I have SELINUXTYPE=default21:05
tomreyni see. well, i never tried, am not sure what to expect in this situation21:06
HobadeeI would expect it to work somewhat... :-/21:07
tomreynthere's also selinux-basics, which looks like it's mean to create a workable configuration21:07
tomreynbut generally i wouldn't expect selinux on ubuntu to work, definitely not out of the box.21:07
tomreyni.e. i'd expect what you reported21:08
pyexHow I create a folder as zipped filename like: filename.zip -> filename/21:21
tomreynzip a -r filename.zip filename/    i think, check the man page to be sure21:23
tomreynpyex: actually it's just    zip -r filename.zip filename/21:25
Elodinhello, which file should i cat to get the cpu temperature?21:26
tomreynyou'd probably run a command instead, such as "sensors"21:27
pyexfor i in *.zip; do unzip "$i" -d "$i"; done "error:checkdir:  cannot create extraction directory: File exists21:28
tomreynElodin: actually, this might work: cat /sys/class/thermal/thermal_zone*/temp21:28
pyexI have to multi zip files, I need to extract each filename to in folder21:28
Elodintomreyn: there isnt such a folder thermal_zone21:28
tomreynElodin: also none which starts with this name?21:29
pyexhow extrac to filename as same filename to folder?21:29
cluelesspersonpyex   basename or dirname21:29
Elodintomreyn: i have thermal/ but not the child21:29
cluelesspersondepending on what your actual question is21:30
tomreynElodin: the proper module is probably not loaded, yet. install lm-sensors, run sensors-detect. if this is very recent hardware, download the "sensors-detect" perl script from lm-sensor's github instead.21:30
Elodintomreyn: already did this21:31
tomreynElodin: and "sensors" now reports what?21:31
Elodintomreyn: it reports something, but it's probably wrong21:32
pyexcluelessperson, : basename21:32
Elodintomreyn: lemme backref the story21:32
Elodintomreyn: i just bought this cpu and it was idling 40C on bios, i decided to stress it with stress test software and see how temp would behave. I have been running 100% workload for all cpus and temperature doesnt change21:33
tomreynElodin: that would also make me think you're not looking at the right sensor.21:35
Elodintomreyn: there aren't any other sensors to look at21:36
Elodinmaybe i dont have the kernel modules21:37
Elodinfuck ill try another ubuntu21:37
tomreynsensors-detect would print which modules need to be loaded21:38
tomreynplease watch the language21:38
hggdhElodin: please mind your language21:38
Elodinoh sorry21:38
tomreynnot all mainboards, chipsets, cpus / architectures may be supported out of the box, or at all. it can take some research.21:39
Elodintomreyn: okay, i'm running sensors-detect again it asks me to allow to scan things in my mother board21:40
Elodini'm saying yes to all right21:40
tomreyni would not recommend that, better go with defaults21:40
tomreynthere is --auto21:40
Elodinoh21:40
Elodinokay it told me smething about lm78 driver and asked me to add it to /etc/modules21:41
Elodinso how do i load this module21:42
AavarWhat is the name of the Ubuntu channel for other stuff (not support)?21:43
Bashing-om!ot | ava21:44
ubottuava: #ubuntu is the Ubuntu support channel, for all Ubuntu-related support questions. Please register with NickServ (see /msg ubottu !register) and use #ubuntu-offtopic for other topics (though our !guidelines apply there too). Thanks!21:44
tomreynElodin: like any other module: modprobe lm7821:44
AavarBashing-om, wnx21:44
Aavartnx21:45
speeder39_Hello21:48
Aavarspeeder39_, hello21:48
speeder39_Hi Aavar are you in the USA21:49
Aavarspeeder39_, why do you ask?21:49
=== Aavar is now known as Aavar_
=== Aavar_ is now known as Aavar
mystichad to reinstall ubuntu after a boot menu mess up..  but forgotten how to install veracrypt so cant open my encrypted folder22:02
mysticdoe anyone know how ?22:03
mysticthink i found it,  copy and paste in terminal, should work22:04
ironpillowhi all, I am testing out my applications and I am install a lot of deb packages on specific hardware. right now I am reinstalling (clean install ubuntu) everything I want to test the whole system. Is there a way to restore the system to original install or somehow clean the system. I can't use VM because I need access to specific hardware. I tried KVM but I am not able to get the NIC passthrough to work. Any advice?22:34
sarnoldironpillow: you could probasbly use dpkg --get-selections and --set-selections to standardize the set of initial packages.. iirc apt install -f will then make those happen22:36
sarnoldyou could also make a smallish filesystem and use dd to just blat around the disk image22:38
Elodinhello, everthing is saying [FAILED] on boot proccess22:41
Elodinwhy would that be22:41
saorThe services failed to start22:42
Elodinthat much i know. i was wondering what would be reasons for it to happen22:42
sarnoldElodin: check journalctl once your up, hopefully you'll be able to spot the trouble22:42
Elodinits happening on usbboots and diskboots22:42
Elodini cant bootup22:42
Elodineverything FAILED22:43
ironpillowsarnold: I will also be install custom applications and will be creating numerous directories. This is outside of dpkg22:43
saorElodin: Even liveCD?22:43
Elodinsaor: live usb yes22:43
sarnoldironpillow: rsync perhaps?22:43
ironpillowsarnold: sorry for being unclear. I am testing the install process of the application. It will install kernel module and create directories. I want to test when and why application might fail during it's install stage22:45
sarnoldironpillow: oh :) and here I was suggesting the thing to let you side step the installer because those are usually brittle and slow :)22:46
ironpillowsarnold: :). I current process: 1. install new ubuntu on the hardware. 2. Install dpkg packages. 3. Install custom applications and kernel modules. 4. Make sure that custom applications and kernel modules are installed correctly each time code change is made.22:47
=== lborda is now known as lborda_afk
bray90820Is there anyway to add a folder to the genome sidebar in 19.0423:59
bray90820*Gnome23:59

Generated by irclog2html.py 2.7 by Marius Gedminas - find it at mg.pov.lt!