/srv/irclogs.ubuntu.com/2023/06/22/#ubuntu.txt

=== Irrelevant80 is now known as Irrelevant8
Guest34Hello00:28
Guest34Just found a VPN website using Cloudflare HTTPS cert, and Google Analitics :o00:29
Guest34I'm seriously distrusting most VPNS I see now00:29
Guest34Nord, PIA, Ivacy's site all look the same lol00:30
Guest34I think the only choice is to self-host lol00:30
=== ord is now known as quem
newoiii00:33
newseus noia00:33
sarnoldGuest34: oh yeah, that's 1000% shady market. I think there's two big companies that own dozens of brands.00:44
sarnoldGuest34: but hey, that's what it takes to watch netflix from other countries00:45
Guest34yeah, i want to self-host, but I get DNS leaks randomly00:45
=== 020AAC5X5 is now known as nerdopolis
highrateno man page for itoa() ?00:59
highratenot used anymore?00:59
sarnoldhighrate: I don't think I've ever seen one; sprintf or asprintf are the usual tools01:03
JanCor some variation thereof01:09
=== chris14_ is now known as chris14
jholmanGood day.  I'm trying to follow https://help.ubuntu.com/community/Full_Disk_Encryption_Howto_2019 and am seeking help with that.      I need to have a VM with FDE, and I'm using Oracle Virtualbox.  I chose Xubuntu 22.04.2 , DLed the install ISO, and followed the Howto.  It all seemed to work, as far as I could tell, until I got to the end.03:12
jholmanNow that I have rebooted, I get prompted for the passphrase for the master key, which seeeeeeems to go okay as far as I can tell, but in the fullness of time I get 'Volume group 'vgxubuntu" not found' and "Cannot process volume group vgxubuntu" and eventually a busybox shell.  Help?03:12
Guest34Get got a live one boys03:19
Guest34we got*03:19
Guest34oh03:20
Guest34jsut want to encrypt ur disk03:20
Guest34very easy03:20
Guest34Is the VM.. KVM?03:20
jholmanNo, it's Oracle VirtualBox03:20
jholmanHost OS is Windows 1003:20
Guest34idk, ive only ran linux in real system03:21
=== ord is now known as quem
jholmanWell, as far as I can tell, it shouldn't matter.  Virtualbox should be presenting to the guest OS as if it was just any ol' (crappy, slow, mediocre) hardware.03:21
Guest34yeah03:22
Guest34but the filesystem way be different03:22
Guest34may03:22
jholmanI'm concerned that there's an error in the Howto that I'm not savvy enough to troubleshoot.03:22
Guest34or something about how it works03:22
jholmanThat howto should be *creating* the filesystem.03:22
jholmanAnd, I mean, I think it is.03:23
karlHello05:10
=== blaklistd9 is now known as blaklistd
Guest34hi05:36
Guest34Im getting two answers05:36
Guest34ls /etc/openvpn05:36
Guest34I see both update-resolv-conf  update-systemd-resolved05:36
Guest34theres supposed to be just 105:36
Guest34not both05:36
Guest66Hi guys, Im trying to setup a self-hosted VPS VPN, and Im having problems with DNS for both OPenVPN and Wireguard. With OPenVPN, it connects, changes my IP, but DNS is unchanged home ISP DNS, with wireguard, DNS changes to servers DNS, for a while, then reverts back entirely to home ISP DNS. I belive this is do to resolv.conf or systemd-resolve or05:40
Guest66whatever changing my DNS. How do I encrypt my DNS queries to the VPN server during the VPN connection? Literally hundereds of VPN companies do this, so I know its possible, but I can't figure out how to do that. I don't want plaintext DNS traversing the network so home ISP can't see the sites I'm loading. Help pls.05:40
=== blaklistd2 is now known as blaklistd
guivercjholman, why not use Lubuntu 22.04 ?   It offers full-disk encryption by default using the installer (using `calamares` it has newer install scripts that the ubiquity installer uses)06:33
MoistSenpaii agree Lubuntu is good06:35
weedmicjholman: i missed the original conversation, but some computers have encryption available at the bios level.  you will have to type a password each time you turn it on though, before it load the os.06:35
* guiverc said ^ as its a flavor that offers full disk encryption 'out of the box' (since 18.10)06:35
jholmanyyyyyyyeah, I guess I'm fine with lxde.  xfce/lxde/whatever.06:38
jholmanI dunno, I'm kinda wondering if I'm overcomplicating, I think the xubuntu installer also had an option to encrypt, though I don't know quite what it does.  the Howto I linked above was also linked by the "compliance" documents from the company I'm trying to do contract work for06:40
MoistSenpaiLubuntu is very light its great06:42
jholmanso I kinda wanted to be as faithful to that as it's possible to be...  at least, without me having to learn what all that cryptsetup stuff is actually doing, or what that pvcreate stuff is actually doing...06:42
guivercjholman, fyi:  Lubuntu hasn't used LXDE for years...   (18.10 was first LXQt when they upgraded install scripts to include full.disk.encryption out-of-the-box)...   You can change desktop though if needed06:52
MoistSenpaiit just uses default sus crypto06:59
MoistSenpaiaes-128 etc06:59
andrew_lol07:06
=== Xcynth is now known as xcynth
=== xcynth is now known as xcynth_
=== xcynth_ is now known as xcynth
jholmanWell, I used the out-of-the-box Xubuntu installer's FDE, which I probably should have tried first, and it did seem to work without complimcations.  However, can see why the Howto ( https://help.ubuntu.com/community/Full_Disk_Encryption_Howto_2019 ) doesn't use it: as far as I can tell the swap and boot partitions are not encrypted.  I guess I'll08:24
jholmanjust hope that's good enough for the people who I'm trying to satisfy with this whole FDE business.08:24
akikjholman: "It is focused on modifying the Ubuntu Desktop installer process in the minimum possible way to allow it to install with an encrypted /boot/ and root file-system." efi esp can't be encrypted08:26
jholmanWhat are you quoting?08:27
akikjholman: https://help.ubuntu.com/community/Full_Disk_Encryption_Howto_201908:27
jholmanSorry, that makes more sense.  Hmn, yes, you're right, it's pretty clear about that and yet I missed it.08:28
jholmanAnd to be clear, what I meant was that the *default installer* (which I have now used) does not seem to leave the swap and boot encrypted.08:28
jholmanAnd that's why the Howto doesn't simply say "use the default installer"08:29
jholman(I mean, perhaps that's why.  Perhaps that's part of why.)08:29
jholmanThis is all following up to my long question a few hours ago, about how following the Howto failed me.  *shrug*08:30
MoistSenpaiAre u still trying to encrypt ur disk08:30
MoistSenpaiIt takes 5 minutes08:30
MoistSenpaiJust reformat and install08:30
MoistSenpaiselect Encrypt Installation08:30
akikjholman: the guide you linked makes the boot work so, they you need to enter the decryption password before even getting the grub menu08:31
jholmanakik: yeah, I did all that.  and it still doesn't boot.08:31
weedmicjholman: did you check to see if your machine supports "BIOS encryption is a feature that encrypts the data on your hard drive using a key that is stored in the BIOS. This means that even if someone removes your hard drive and connects it to another device, they will not be able to access your data without the key."08:32
jholmanweedmic: I did not, because I need it to be demonstrable in a screenshot of a partition editor08:32
jholmanagain, the reason I'm doing all this is to be inline with a corporate security-compliance requirement08:33
jholmanthey want a screenshot of a partition editor (gparted or equiv)08:33
yukiupwill snaps in the future be installable without an assert file? its just not as elegant.08:34
weedmicone culd take a pic of the comptuer booting, stopping as it says you must type in password, then continuing - we have done this to all olaptops08:34
yukiupfor offline install, etc08:34
jholmanAgain, I was only coming back to report having *solved it*, though perhaps somewhat inadequately.  My bad, maybe reports of solutions aren't wanted here.08:35
akikjholman: ubuntu will be the only os on the ssd?08:36
jholmanWhen I was a more active member in the community a few decades ago, that was just considered good form.  My apologies.08:36
jholmanUbuntu is the only OS in the virtual "HDD".  The host OS is another matter entirely.08:36
jholmanAnyway, that's all.  Have a good evening.08:37
akikjholman: what boots it?08:37
jholmanWhat boots what?08:37
akikjholman: the virtual hdd08:37
jholmanIt's called Virtualbox, it's virtualization software that is Oracle-branded these days, I believe they bought it a long time ago.08:37
akikjholman: and you've configured it for uefi booting?08:38
jholmanNo, currently it's configured for BIOS.08:39
jholmanVirtualBox does have a checkbox to use "EFI" (it doesn't *say* UEFI, which made me a little nervous, so I left it default, which was unchecked)08:39
jholmanThe checkbox says "Enable EFI (special OSes only)".  Amusing wording.08:40
akikjholman: ok that should be possible08:40
jholmanAgain, it's not only possible, it's working.08:40
akikjholman: oh i thought it failed boot08:40
jholmanThe old thing failed boot.  I have changed strategy, and the new strategy is working, and that's what my message of 16 minutes ago says.08:41
akikjholman: but /boot remained unencrypted?08:41
akikjholman: i did that setup some months ago, but on an uefi booting lapto08:42
jholmanFour hours ago I was trying to use the Howto, I came in to ask for help, no one had any suggestions other than "Did you try Lubuntu instead", eventually I gave up on the howto and used the default installer.  And, as I reported just now, the difference between the Howto and the default installer seems to be that the default installer does NOT08:43
jholmanencrypt /boot (but it is working for me), whereas the Howto is definitely encrypting /boot (it did encrypt it, but then it failed booting for some reason involving being unable to find /vgxubuntu or something like that)08:43
jholmanSo.08:43
jholmanInstead of the Howto, which seems to have been aim-higher-and-miss, I'm just using the default installer, which seems to be aim-lower-but-works.08:43
jholmanI'm sure the Howto is overall pretty good, and I don't know what I did wrong, or what's wrong, or whatever, which is why I was asking 4 hours ago.  IRC used to be more active than this, I guess.08:44
jholmanAnyway.  Sorry for coming back to report on my alternate approach and success, it seems to have created confusion rather than been helpful.  As I say, the community used to be different.08:44
jholmanHave a good night/day/whatever!08:45
=== shuck is now known as Guest7893
=== shuck is now known as Guest4873
weedmicI was informed by "updates discover" that there is a dell system firmware Latitude_5430_1.13.1 udpate.  I am correct that it is not downloaded in anyway and I must go to dell and fetch it myself?11:00
weedmicor, is is somewhere other than ...Downloads ?11:00
=== Guest330 is now known as krabador
ravagesudo fwupdmgr update11:11
weedmicravage ty, i see that in my notes pencilled in from 1.12, but not typed into the database11:14
=== spyspirit1 is now known as spyspirit
=== shuck is now known as Guest6315
=== liefer3964 is now known as liefer396
ChaappAnyone using Ubuntu Pro?13:07
lotuspsychjehats your actual question Chaapp13:07
lotuspsychje*whats13:07
CrinHello13:10
ChaappHello13:10
tarzeauHello13:10
CrinI have an issue with reloading udev rules13:15
Crin"sudo udevadm control --reload-rules && sudo udevadm trigger"gives permision denied13:15
weedmicCrin: doesn't udevadm require a path?13:17
Crinall the things i could find online said no13:18
Crinalso i get a huge list of paths with permission denied as i used the command so it recursivly goes through them?13:19
weedmicwhat happens when you do something simple like "udevadm info"?13:19
Crinok i know the issue13:22
Crini used 2 command on 1 line with && but didnt add sudo to "udevadmn trgger" >.>13:23
Crinthanks anyway13:23
=== spyspirit9 is now known as spyspirit
ograCrin, on a sidenote, this is completely useless in recent udev ... it uses inotify to watch the rules dirs anyway and will do the reload iternally in an automatic way once it detects changes in /etc/udev/rules.d or /lib/udev/rules.d, so you dont really need the above anymore (that was true 10y ago though)13:53
bothello13:55
=== bot is now known as Guest1329
Guest1329chatGPT here13:56
geosmilehttps://dpaste.org/nPZPd - anyone knows why "sudo -i" wont work for me? how to fix this?15:04
=== root is now known as Guest6536
nteodosiogeosmile, do you have more context?15:21
geosmileusermod -aG sudo john - ran this twice already. note that the error is not "not in sudoers file" or "incorrect password". It has to do something with the PKCS module.15:22
nteodosioCan you use your smart card for other sort of authentication as normal?15:25
geosmilenteodosio, this machine has no smart card - not sure how to remove it15:26
nteodosioYou use no smart card on that machine, nor have you ever used one?15:27
geosmilenteodosio, correct15:27
nteodosioThen what about apt remove libpam-{p11,pkcs11}?15:28
nteodosioAh nevermind you don't have sudo access apparently15:29
geosmilenteodosio, i do have sudo access - just not as the user i need15:30
nteodosioI'd try removing those packages then.15:32
geosmilenteodosio, thanks! That helped. the error messages went away. It wont take my password - let me double check that though15:32
nteodosioGreat, but is the problem considered solved if it won't take your password?15:33
geosmilenteodosio, something is wierd. I change the password using passwd john. Then I paste that exact password in sudo -i--and i get incorrect password?15:34
geosmileany ideas ?15:34
geosmilenteodosio, https://dpaste.org/TZHa815:35
nteodosioHmm you set up john's password, not root's.15:36
jhutchinsnteodosio: Cut-and-paste can pick up non-display characters like a return at the end.  Try pasting the password into a terminal, then copy and paste that.15:36
geosmilejhutchins, trying15:37
jhutchinsnteodosio: Also, many apps return "incorrect password" for most authentication falures, no matter what the cause.  Make sure you are a member of the sudo(ers?) group.15:37
nteodosioMaybe I'm remembering wrong because I don't activate root anymore, but aren't you supposed to passwd root?15:37
jhutchinsnteodosio: Yeah, that's right, sudo requires user password, su - requires root.15:39
geosmilejhutchins, I tried again, this time by even typing it manually - same problem!15:39
jhutchinsgeosmile: See above.15:39
jhutchinsnteodosio: I'm always picking the wrong nick, sorry.  I think you've got it.15:40
nteodosiojhutchins, ah true su - is for root password, thanks for the refresher15:40
nteodosioyeah no problem about that, I got it :)15:40
geosmilejhutchins, I typed the password manually this time, same problem. And I did add john to the sudoers group multiple times.15:42
geosmileusermod -aG sudo john - to be precise15:43
nteodosiogeosmile, has john been in sudoers since the start of your session, or have you added him during the session?15:43
geosmilecould it be some setting on the machine that does not allow users to become root?15:43
geosmilenteodosio, I've run that command before i came here15:44
nteodosioWell the fact that you can "sudo" otherwise but only not "sudo -i" makes that moot as far as I can tell... I'm out of ideas.15:45
jhutchinsgeosmile: Did you log out and log back in after you added the group?  What does "groups" say?15:45
geosmilegroups => john sudo15:45
geosmilejhutchins, on the same machine, I can run sudo -i using a different user, but not john.15:46
jhutchinsnteodosio: If you want a root shell you can either set a password for the root account, or use something like sudo -i to open a root shell as a regular user.15:47
jhutchinsI learned on systems where there wasn't a mechanism for a regular user to do admin tasks, you had to log in as an admin (root).15:48
nteodosio...which provides a new idea: Do you have the root password, geosmile? Can you su?15:48
geosmileI've another user on that machine which is in the sudoers group - and that user works perfectly.15:48
geosmileI've not touched root password/login15:49
jhutchinsI suppose another problem could be non-printing characters actually IN the password.15:52
jhutchinsgeosmile: How are you accessing theis system?  Is this a physical, one console direct login?15:52
geosmilejhutchins, I'm sshing to the system using ssh mylogin@ip - then i do sudo -i - then i do su john - that works. But when i do sudo -i from john's account - incorrect password15:53
jhutchinsgeosmile: What system are you connecting FROM?15:53
jhutchinsgeosmile: How about su - ?  Become root? You can become john from sudo -i because you're root.15:56
jhutchinsgeosmile: Are you sure the root password is set?  Can you open a console (Ctrl-Alt-F1) and log in as root?15:56
jhutchinsUm, that assumes physical access...15:56
jhutchinsWhat about ssh root@system?15:57
jhutchins(root login is probably blocked, but it's worth a try.15:57
geosmilejhutchins, let me try16:02
geosmilejhutchins, if i do passwd root - it says NewPassword - which means its not set?16:02
jhutchinsgeosmile: I think that's what it means.16:16
micha_IIRC `passwd $username` is used by root to reset a user's password16:18
jhutchinsAs a user it prompts for current password, as root I think it just prompts for the new one.  Figures you're already god, why bother with more passwords.16:19
micha_The old password prompt is for normal users calling `passwd` without a username to change their own password16:19
jhutchinsmicha_: Right.16:19
aymerichello16:47
aymericwhat can i do!16:47
lotuspsychjeaymeric: you can ask an ubuntu question here16:50
aymerichow does it work16:51
hggdhaymeric: this is an Ubuntu community support channel. People pop in and present their problem/question and -- hopefully -- someone knows the answer16:53
hggdhon the other hand, this is not a generic chat channel16:53
=== halvors1 is now known as halvors
spmkdeHey guys, is anyone of you aware of a good introduction/documentation of the package workflow from debian to ubuntu? I.e. when and how packages are propagated from debian to ubuntu?17:33
=== halvors1 is now known as halvors
jhutchinsDon't we send people in ninja costumes to break in at night and steal the Debian packages?17:58
jhutchinsspmkde: Is there a particular package you're interested in?17:59
ograit used to be like that ... but after 19y working from home we all got fat and lazy and stopped fitting the ninja costumes17:59
jhutchinsOohh, right.17:59
ograpackages are auto-imported from debian unstable into launchpad (and thus the archive) from the start of a release cycle until debian import freeze (see the respective release schedules for a certain ubuntu release for when this is)18:01
spmkdejhutchins: I am interested in the versions for package ufw. I just stumbled upon the rmadison script which gives a good idea on which releases contain different package version18:01
ograpackages that have ubuntu changes (indicated by an -XubuntuX in the version string) will have to be manually merged by developers18:01
spmkdeogra: thank you! what's the debian import freeze? is this a date determined by ubuntu?18:03
ograit is a planned date when a new rlease schedule is established ahead of starting a release ... see https://discourse.ubuntu.com/t/mantic-minotaur-release-schedule/34989 for the currently in-develppment release18:05
jhutchinsIsn't the freeze somewhat flexible, depending on how testing is going?18:49
ogranot rally18:51
ogra*really18:51
ograthe schedule is usually pretty stictly sticked to ... IIRC we only had one or two releases where dates slipped18:53
ogra... or if you count in 6.06 where it was re-done mid-cycle to extend the cycle by 2 months for the very first LTS ...18:54
hans_what happened to libapache2-mod-cgi19:04
hans_and how do i enable the cgi module in apache on ubuntu 22.04?19:04
jhutchinsogra: You're talking about the Ubuntu schedule, not the Debian schedule, right?19:06
hans_dunno what happened to the package, but it seems "a2enmod cgid " works now, without that package being installed19:07
jhutchinshans_: They shuffled some components around with the different engines being more accessible now.19:07
hans_i ran `sudo apt install apache2` and edited /etc/apache2/sites-enabled/000-default.conf from "VirtualHost *:80"  to "VirtualHost *:82", why is apache still trying to bind to port 80? (i got nginx on port 80)19:10
hans_jhutchins: oh i see, thanks19:10
jhutchinshans_: sometimes the port's defined in more than one place/file.19:11
jhutchins(Obviously you've restarted...)19:12
hans_restarted? the OS, no. the apache server? it never started in the first place, crashed while trying to bind to port 80.19:12
hans_but `sudo service apache2 start` doesn't start it, still crashes trying to bind to port 80. trying to look for 80 in the conf files tho19:13
hans_ohh found it: Listen 80  in /etc/apache2/ports.conf19:14
hans_.. i think the Listen directive is a new thing in Ubuntu? iirc previously the ports to listen to would be inferred by just the VirtualHost directives19:15
hans_.. previously is probably years ago tho19:15
hans_anyhow works now :)19:16
ograjhutchins, yes, indeed19:17
=== tomaw_ is now known as tomaw
=== docmax is now known as Guest6847
xMopxthat news about red hat is so crazy21:41
xMopxno longer open source lol21:41
xMopxit's a good day to be a debian/ubuntu user21:42
bantaWait what the hell happened21:43
xMopxthey are locking their source code behind paid subscriptions21:44
xMopxhttps://www.phoronix.com/news/Red-Hat-CentOS-Stream-Sources21:44
gordonjcpoh well21:45
gordonjcpwonder what that'll do for DaVinci Resolve21:45
gordonjcpthey killed CentOS21:45
bantarip21:46
gordonjcpthat caused rumblings in the DR community21:46
bantaI've never messed with redhat so far, just moved from Arch to Mint on the main desktop21:47
xMopxi've only ever used it at work21:48
gordonjcpI used redhat 621:49
gordonjcpnot RHEL 621:49
gordonjcpredhat 621:49
gordonjcpin the late 90s21:49
gordonjcpPHP3 was still very new and shiny then21:49
bantaI briefly distro-hopped to fedora for a week or so, if that counts21:50
=== ubuntu is now known as Guest5694
Guest5694have a serious issue. I have 3 OS's. Windows 10, Ubuntu 22.04 and ParrotOS. On ubuntu I installed a grub theme and now I cant boot into any OS's from the grub menu. Any guidance on resolving this. I'm currently on chat using the live CD22:03
Guest5694any ideas on fixing grub from the live CD22:11
meanininstall boot repair,22:19
meanin!bootrepair22:20
ubottuBoot-Repair is a simple tool to repair frequent boot issues you may encounter in Ubuntu. See https://help.ubuntu.com/community/Boot-Repair for more info.22:20
seer__NitNot officially an ubuntu question but how do I find the list of keyboard shortcuts in chrome (too many tabs to see them all and no way to slide down to the end, grr)22:48
seer__duh, google it. https://support.google.com/chrome/answer/157179?hl=en&co=GENIE.Platform%3DDesktop22:49
seer__lol celticfrog (misreading)22:53
=== seer__ is now known as morgan43

Generated by irclog2html.py 2.7 by Marius Gedminas - find it at mg.pov.lt!