[00:07] <shoreditch-samur> hi all, how often do you upgrade your kernel? I'm using mainline (https://github.com/bkw777/mainline) and upgrade my kernel once every 2-3 weeks. It's probably a bit excessive.
[00:09] <rbox> sounds like you should jsut stick to the kernel ubuntu provides
[00:09] <rbox> and update it whne there is an update
[00:09] <oerheks> +1
[00:10] <oerheks> mainline are experimental builds, thanks for testing
[00:11] <shoreditch-samur> right-o, thanks
[00:52] <RaimondRaj> Job for apache2.service failed because the control process exited with error code.
[00:52] <RaimondRaj> See "systemctl status apache2.service" and "journalctl -xeu apache2.service" for details.
[00:52] <RaimondRaj> what does this means
[00:54] <mybalzitch> it means run that command to find out why it won't start
[00:59] <RaimondRaj> if i know why is not run then why should i ask here.. be fore advice people ur brain to think and read carefully the question
[01:03] <rbox> RaimondRaj: you asked "what does this mean"... and the answer is "it means run the command that output is telling you to run"
[01:04] <RaimondRaj> i try it so many time
[01:04] <RaimondRaj> still error
[01:04] <RaimondRaj> oh god
[01:09] <superfrio> join #ubuntu-es
[01:10] <superfrio> j #ubuntu-es
[01:21] <SuperLag> Is there a way to use the Nvidia drivers with Secure Boot enabled?
[01:21] <SuperLag> or is it an either/or situation?
[01:34] <rbox> SuperLag: if you sign your own stuff and enroll your key
[01:34] <rbox> SuperLag: bug secureboot doesnt really get you much
[03:40] <origamikid> hi
[03:49] <lunatiq> I managed to figure out my Ombi issue. ty for the help everyone.
[04:22] <blecki> hello
[04:59] <HornySlayer9001> bigmac
[05:44] <hank_> hi. im new to ubuntu, ive been a linux noob for over 10 years. im trying to not break this install. i want to configure pulseaudio. will it cause problems to install pavucontrol?
[05:47] <Bashing-om> !info pipewire | hank_
[05:50] <Bashing-om> hank_: ^ pipewire is the newest thing - see in terminal ' apt show pipewire ' .
[06:07] <SuperLag> rbox: I got it figured out.
[06:12] <vvizualizer> Hello, how does this works???
[07:04] <johndripper> hi
[07:04] <vordlo> Hey @johndripper
[07:04] <johndripper> hey @vordlo wassup
[07:05] <vordlo> Not much new to the ubuntu community. So just exploring around! Wbu?
[07:07] <johndripper> I need help I was following this guide http://prizma.bmstu.ru/~exmortis/posts/2015-04-23-opendingux-qemu.html to cross compile malta kernel
[07:07] <johndripper> but after i type make gcw0-qemu_defconfig
[07:08] <johndripper> it says /bin/sh: 1: /opt/opendingux-toolchain/usr/bin/mipsel-linux-gcc: not found
[07:08] <johndripper>  but i have it in my /opt
[07:08] <johndripper> can someone tell whats wrong?
[07:08] <johndripper> I have the toolchain in /opt
[08:37] <ian_> Hi, I'm having trouble setting up openssh for passwordless access to a new install of ubuntu22.04
[08:38] <ian_> Permissions seam OK. ssh-copy-id worked fine.
[08:43] <ian_> .ssh has permissions 700, /ssh/authorized_keys has 600. There is no id_ra on target machine.
[08:45] <alkisg> ian_: you can login via keys, but not passwordlessly?
[08:46] <ian_> I can login via keys to every other machine. This on prompts for my password.
[08:46] <alkisg> *via password, sorry
[08:46] <alkisg> Did you use ssh-copy-id, or did you just manually create authorized_keys?
[08:47] <ian_> I used ssh-copy_id,
[08:48] <ian_> I'm really confused, because I have installed ubuntu22.04.3 many times before, and not had this problem.
[08:48] <alkisg> Try `journalctl -fb` on the target machine, while you're trying to login, and `ssh -v target-machine` to connect
[08:50] <ian_> ian@metis:~$ journalctl -fb
[08:50] <ian_> Jan 22 15:30:01 metis CRON[2641]: (root) CMD ([ -x /etc/init.d/anacron ] && if [ ! -d /run/systemd/system ]; then /usr/sbin/invoke-rc.d anacron start >/dev/null; fi)
[08:50] <ian_> Jan 22 15:30:01 metis CRON[2640]: pam_unix(cron:session): session closed for user root
[08:50] <ian_> Jan 22 15:34:23 metis update-notifier[2174]: gtk_widget_get_scale_factor: assertion 'GTK_IS_WIDGET (widget)' failed
[08:50] <ian_> Jan 22 15:34:23 metis update-notifier[2174]: gtk_widget_get_scale_factor: assertion 'GTK_IS_WIDGET (widget)' failed
[08:50] <ian_> Jan 22 15:35:01 metis systemd[1]: Condition check resulted in Run anacron jobs being skipped.
[08:53] <alkisg> ian_: use pastebin to send data to the channel
[08:53] <alkisg> !paste
[08:53] <ian__> OK
[08:57] <ian__> alkisg I have the pastebin - how do I get the URL to add here?
[09:03] <alkisg> ian__: when you paste things to a pastebin, it replies with the URL
[09:04] <ian__> https://dpaste.com/4B4ADUUY9
[09:25] <alkisg> ian__: and the `journalctl -fb` from your ssh target machine?
[09:26] <ian__> akjisg - Found the problem. The authorized_keys file set up by ssh-copy-id is in the wrong format. #
[09:26] <alkisg> 👍
[09:34] <ian__> alkisg - Had to start my windows M/C and copy the line from puttygen into authorized keys. Then things started to work.
[09:34] <ian__> alkisg - thanks for your help.
[11:08] <nshire> today I got an update dialogue saying I needed ubuntu pro to install some updates, like various vlc plugin updates.
[11:08] <nshire> looks like they were security updates. I have a token to use on this machine, but why are security updates requiring pro?
[11:09] <ravage> !pro | nshire
[11:20] <pagios> hello, if i want to enctypt mainly all my OS partitions/disks, should i encrypt when i inisially install the OS or is it OK to use LUKS after the OS is installed unecnrypted?
[11:22] <Paris> when installing i'd say, since it includes the OS.
[11:22] <Paris> otherwise you risk breaking your boot and things.
[11:36] <linuxr_> hello there, I'm looking for a solution to synchronize my files to various computers using a centralized server, where the data should be encrypted at all times, anyone any ideas?
[11:39] <gry> nextcloud?
[11:42] <linuxr_> I don't think nextcloud does this, gry, I don't just need a remote storage, but rather a remote encrypted volume that I can somehow mount locally
[11:42] <CosmicDJ> linuxr_: samba/nfs on a luks encrypted device?
[11:43] <linuxr_> CosmicDJ, the data should be encrypted on the remote (e.g. cloud) host at all times
[11:44] <d3vil> syncthing?
[11:45] <gry> :)
[11:50] <d3vil> linuxr_: https://docs.syncthing.net/users/untrusted.html
[11:52] <linuxr_> d3vil, thanks, I'll have a read
[12:15] <VovaCh> Hello! Can I run old dos soft on ubuntu?
[12:16] <CosmicDJ> VovaCh: dosbox
[12:18] <VovaCh> And, is where anyone, who use pebble smart watch elnk display and pebble sdk?
[12:29] <lotuspsychje> !discuss | VovaCh
[13:28] <mrblack> wow nostalgic irc. anyone around for a question?
[13:34] <ravage> !ask | mrblack
[13:36] <mrblack> true that, i just didnt know if id stick around if no one was active. its late here.. anywho im trying to activate cgi on my apache server and wondering if i put the script alias in my virtual host file or the main apache.conf
[13:36] <mrblack> thanks
[13:41] <BluesKaj> Hi all
[13:42] <mrblack> hi *waves like an idiot*
[14:17] <wyre> hi guys! does Ubuntu 12.04.5 support UEFI?
[14:17] <leftyfb> wyre: Ubuntu 12.04 was released over 10 years ago. It's completely unsupported. Do not use it.
[14:18] <wyre> leftyfb, sure but my workmates don't agree with that ...
[14:19] <wyre> so I'm trying to boot a Ubuntu 12 live media in a UEFI system and ... it doesn't apaprently support it
[14:19] <leftyfb> wyre: sorry to hear that. There's absoultely no reason Ubuntu 12.04 should still be used in production today. Time to upgrade
[14:19] <leftyfb> wyre: do not install it. Install 22.04
[14:28] <Anjor> Your workmates are morons.
[14:28] <leftyfb> Anjor: that's unnecessary. Please don't do that
[14:28] <Anjor> Show them this chat, please. Show them that I, me, Anjor, called them morons.
[14:28] <leftyfb> !CoC | Anjor
[14:33] <mrblack> maybe his just trolling with that question? im having abit of troubles running cgi on my apache, think iv added the scriptalias directive to the virltual host file and restarted but with no luck im getting url isnt found on this server.....
[14:34] <mrblack> bit unsure what to do, got any tips?
[14:34] <leftyfb> mrblack: there might be more targeted support for your issue in #ubuntu-server or #apache
[14:34] <mrblack> oh sorry wrong place. haha been 20 years since i used irc
[14:57] <cart_> Hello everyone. Is there a FileSystem that is encrypted and uses decryption on file reads?
[14:57] <cart_> or writes for that matter
[15:02] <leftyfb> cart_: I hope not
[15:04] <mrreboot> hi guys
[15:04] <mrreboot> what is this
[15:12] <cart_> leftyfb: Why not? How does encrypting your disc in linux work if you select it in the setup?
[15:13] <leftyfb> cart_: the volume is encrypted, you decrypt it at boot
[15:13] <cart_> leftyfb: But surely not the entire disc?
[15:14] <leftyfb> hence the term Full Disk Encryption
[15:14] <leftyfb> you can chose to encrypt the entire disk or not
[15:15] <cart_> leftyfb: Ok sorry what I mean is, When you encrypt the disc surely it decrypts as it reads?
[15:15] <cart_> You give the key. It then stores the decrypted key which it then uses to access files or write files
[15:15] <cart_> If I am not mistaken
[15:16] <cart_> Because decrypting the entire drive on startup sounds wild
[15:16] <ravage> https://en.m.wikipedia.org/wiki/Linux_Unified_Key_Setup
[15:16] <leftyfb> ravage: https://docs.fedoraproject.org/en-US/quick-docs/encrypting-drives-using-LUKS/#:~:text=LUKS%20uses%20the%20kernel%20device,use%20of%20the%20cryptsetup%20utility.
[15:17] <ravage> ?
[15:18] <leftyfb> sorry, that was meant for cart_
[15:21] <ravage> So it does not decrypt all data on mount of course. You get a new device that represents the decrypted state and blocks are de- and encrypted when needed
[15:21] <ravage> But it is in no way file based 
[15:25] <cart_> leftyfb: So when using LUKS. How easy is it to get the keys that are required to access the disc when the machine is on and you are the admin?
[15:25] <cart_> ravage: Right ok that is what I had in mind yes
[15:26] <cart_> ravage: Basically there is a key between the OS and the FS and somewhere the blocks get decrypted and encrypted as whatever they contain is needed
[15:26] <cart_> ?
[15:26] <leftyfb> cart_: what exactly is your ubuntu support question? If you're looking to debate or learn the level of security LUKS provides, I would recommend asking in #security
[15:26] <cart_> leftyfb: Holy shit I did not actually knew that channel exists. Thanks!
[15:28] <TomyWork> since upgrading to kubuntu 22.04 from 18.04, ssh-agent keeps asking me to confirm the use of the key. I don't think it really adds any security, so can I turn that off somehow? :)
[16:11] <ghostbuster> is there a way to upgrade qemu beyond 4.2 in focal? jammy has 6.2
[16:15] <leftyfb> !latest | ghostbuster
[16:17] <leftyfb> ghostbuster: there are ways, though aren't really supported here
[16:17] <leftyfb> compile, PPA, some community-maintained snap package
[16:18] <leftyfb> ghostbuster: is there a particular feature you need that isn't available in 4.2?
[16:19] <wyre> leftyfb, the problem is we have a system with Ubuntu 12.04 booting in UEFI mode ... but we are not sure why using this KVM adapter https://www.kvm-switches-online.com/mpuiq-vmcdp.html just keyboard works
[16:20] <wyre> xinput shows also a mouse core pointer for the adapter
[16:20] <wyre> but it's not working ...
[16:20] <wyre> so not sure if you could give me some idea about what could I check
[16:20] <leftyfb> wyre: upgrade to a release that was released in the last 10 years
[16:21] <leftyfb> 20.04 or 22.04. The latter being the recommended path
[16:25] <ghostbuster> leftyfb: i think i'm hitting this bug https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=918950
[16:25] -ubottu:#ubuntu- Debian bug 918950 in qemu-system-x86 "qemu-system-x86: can't use virtual FAT disk images: 'Initialization of device ide-hd failed: Block node is read-only'" [Normal, Open]
[17:06] <Haris_> hello all
[17:06] <Haris_> how do I initialize mysqld with custom datadir for first time run?
[17:07] <ravage> i would keep the datadir and mount it or use a bind mount
[17:08] <Haris_> mount? disk vol is ready. configured in apparmor as well
[17:08] <Haris_> mysql restart gives error
[17:09] <Haris_> mysql-systemd-start[455734]: MySQL system database not found in /custom/mysqld/datadir/path. Please run mysqld --initialize.
[17:09] <Haris_> mysqld --initialize does nothing
[17:09] <Haris_> 8.0.19 stock from ubuntu repo for focal
[17:10] <ravage> if this is a new system focal is not the system i would start with
[17:10] <ravage> get jammy
[17:10] <Haris_> can't change the OS version in the short term. will look into it
[17:11] <Haris_> on first look .. jammay is the same version though
[17:12] <Haris_> do-release-upgrade?
[17:12] <ravage> you can do that. or do a fresh install
[17:12] <ravage> and by mount i mean something like:
[17:12] <ravage> tank/mysql-data        179G   17G  162G  10% /var/lib/mysql
[17:12] <ravage> tank/mysql-log         167G  4,4G  162G   3% /var/log/mysql
[17:13] <ravage> so you mount the storage you want to use to the default locations
[17:14] <Haris_> don't want the default locations. have it working on another box. just need to finish on this one
[17:17] <Haris_> I think I found the problem
[17:19] <Haris_> E: Unable to locate package sg3_utils
[17:35] <Haris_> how can I verify my custom paths for mysql config are whitelisted in apparmor config? is there a way to syntax check or dump its config for a single app?
[17:38] <Haris_> please ignore. all good
[17:44] <Haris_> how to safely upgrade to jammy? its a brand new VM. but can't re-do the VM in short term. it took a lot of work to bring it this far
[17:54] <Haris_> mysqld --initialize didn't create all the system tables. what extra params go with it?
[17:56] <Haris_> https://dpaste.com/4P275VXSB
[18:09] <ll8> quaquaqua
[20:09] <nshirelaptop> is it possible to unmount / after booting so I can expand its partition?
[20:09] <nshirelaptop> or can this only be done from something like live media
[20:09] <nshirelaptop> *liveusb
[20:13] <bprompt> nshirelaptop: hmmm I'd do it from a live session, much safer
[20:13] <nshirelaptop> yeah, I'll wait till I get home where I have a usb install disk and importantly, a laptop charger
[23:31] <blackot> Hi everyone, sorry for offtop, but where i can full list of channels for offtopic :)
[23:33] <oerheks> !alis