#arpnetworks 2009-10-16,Fri

↑back Search ←Prev date Next date→ Show only urls(Click on time to select a line by its url)

WhoWhatWhen
bobbywhmm, I haven't ever used named/bind before, always had it managed, but I don't mind doing some reading [00:00]
up_the_ironsI use vi
;)
[00:00]
bobbywvi?? [00:01]
up_the_ironsbobbyw: to be honest, if you're starting from scratch, don't start with bind. for an authoritative-only DNS server, use "nsd": http://www.nlnetlabs.nl/projects/nsd/
bind is like sendmail
old, buggy
just look at isc.org for a TON of security vulnerabilities that are coming out even in the last few weeks
[00:01]
bobbywup_the_irons: good to know thanks [00:02]
obsidiethi equate setting up bind with being trampled by a rhino. [00:02]
up_the_ironsnp [00:02]
jeevi use djbdns [00:03]
bobbyw"BIND is among the top vulnerabilities present on Unix systems"
you guys use portmanager or portupgrade?
[00:03]
obsidiethupgrade for me. [00:07]
bobbywyeah, I have used upgrade before
always see both
[00:07]
obsidiethso doing the opposite would probably be better. [00:07]
bobbywlol
obsidieth: always self deprecating?
[00:07]
obsidiethi have precious little experience with bsd. [00:08]
bobbywobsidieth: ah [00:08]
................ (idle for 1h16mn)
***visinin has quit IRC ("these walls keep") [01:24]
RadaI'm experiencing some I/O lag atm [01:34]
.... (idle for 17mn)
up_the_ironsRada: there is a large spike in disk I/O [01:51]
Radanot from me I hope D: [01:51]
up_the_ironscopying a base image to another server, but it shouldn't load the box *that* much
gahh.. when will it finish
[01:51]
Radadon't worry, i just wanted to make sure it wasn't my image that was slowing things down. [01:52]
up_the_ironsyeah, i don't think it is you [01:53]
RadaSo, finally got around moving nixy.dk to the vps :) [02:00]
up_the_ironsnice! [02:01]
RadaThe cool thing about ccTLD's is that there are still lots of four-letter domains available [02:02]
up_the_ironsRada: yup
bad thing is, as I just realized renewing nti.st, they can be expensive ;) $55 to renew!
Rada: your copyright still says 2007 ;)
[02:10]
RadaLook again. [02:14]
up_the_ironshahaha, nice [02:15]
RadaOh and probably my "hosted by" line needs updating [02:17]
up_the_ironshehe [02:25]
....................................... (idle for 3h11mn)
***heavysixer has joined #arpnetworks [05:36]
mike-burnsportmaster is pretty sweet; I put my vote in for it.
Rubyconf isn't at a hotel this year; it's far away from civilization, from what I understand.
I saw Chef demo'ed a few Ruby/RailsConfs ago and it looked really nice. Uses XMPP for everything, right? It's made "for the cloud".
[05:41]
***heavysixer has quit IRC () [05:42]
toddfi wouuld not compare you to slicehost, they are xen and linux only for guest oses [05:46]
***vtoms has joined #arpnetworks [05:48]
toddflooks like linode is the same [05:51]
I left handrolling sources in the dust in 1997 when i found openbsd, because there is no guarantee i will remember and build them the same each time
ports from OpenBSD does a thing other bsds do not do as well
namely all ports installationss go from build to fake dir to packafe and then the package is installed
freebsd is notorious for suggesting to install/upgrade from the ports tree because ops happen in the Makefile of the ports tree that are not put into packages
[06:04]
.... (idle for 19mn)
***heavysixer has joined #arpnetworks [06:25]
...................... (idle for 1h48mn)
srouteportmaster here too.
sroute has never had issues with portmaster and dealing with FreeBSD ports, not on servers and not on my two X workstations
[08:13]
Nat_UB_sroute: me either...never done a fbsd desktop however
Maybe add that to the list...
[08:15]
mike-burnsI've had to figure out what I did to the ports tree or local ports DB quite a few times. Seems to have gotten better over the ages though. [08:17]
jeevfreebsd rules, just upgrading ports sucks [08:17]
mike-burnsMy only complaint with port upgrading is the time it takes. [08:17]
jeevmine is sometimes you get pop ups and dont notice it
and it sits there for 20 minutes
and also, the -dforce_pkg_register stuff
in all caps.
you have to make uninstal or deinstall, whaever it was and sometimes it doesn't unregister and crap
[08:18]
mike-burnsI recommend portmaster.
Fixes the unnoticed popups problem, at least.
[08:18]
jeevwill look into it, i use portmanager or whatever portupgrade is
(sometimes)
[08:19]
mike-burnsThe FORCE_PKG_REGISTER stuff is obnoxious; not sure how it happens. [08:19]
jeevwhen the package is already isntalled or soemthing
i fgorget
[08:20]
mike-burnsYeah, but I'm not sure how it gets into a state where it's installing a package that is already installed. [08:22]
jeevupgrade perhaps
what is arp's cpu's runing
Xwhat?
CPU: QEMU Virtual CPU version 0.9.1 (2677.54-MHz K8-class CPU)
forgot
[08:23]
***visinin has joined #arpnetworks [08:26]
jeevi did a bench with unixbench-wht from webhostingtalk
2.67 arp (arp vps at 3am) got a 59.4 and a 2.5ghz e5420 single virtual cpu (same set up but slackware and kvm/qemu-kvm from git) got a 58 (although i have 1gb ram on this and 768 on the arp one). the benchmark is pretty low on freebsd naturally
the e5420 is my set up at the office
[08:27]
.......... (idle for 47mn)
http://pastebin.ca/DQ94jDbG password arp weird. my second test on my box with 768 ram had a higher score file copy somethinw ent up [09:15]
***vtoms has quit IRC ("Leaving.")
Nat_UB_ has quit IRC ("Lost terminal")
[09:19]
toddfbenchmarking vps's should be understood to be an exercise in determining how the resources you've been allocate fluctuate over time
given the nature of a vps, what you get is highly dependent upon what others are doing on the same host system at the same time
which is quite clearly un-deterministic
[09:24]
jeevyea i know, my box only had this running
anyway
you're apparently a book of answers
[09:27]
toddfwith experience with unix dating back to 1993 .. I would hope I have at least a few clues [09:29]
jeev:> [09:30]
toddfme personally, I'm happy to have found a VPS that doesn't ask $100/mo for a decent sized virtual system that runs OpenBSD
I have a bsdvm account I'm going to cancel because I can't wash the taste of NAT they do to offer public IP's (you get an internal one and they nat the public one to you..)
the fact that arpnetworks does IPv6 is a huge plus for me also
[09:31]
jeevyea
tell me about it, some vps's want more than a dedicated server is
[09:33]
toddfI'd actually challenge anyone to find anything out there that matches arpnetworks wrt OpenBSD and price [09:33]
jeeveww, they nat ?
heh
never heard of bsdvm but heh that's nasty
but they'v got decent prices
[09:33]
toddfja, calpop.com has nice $99/mo specials for 4U boxen, I don't quite have my hosting biz up to payin that yet
bsdvm uses vwmare
so you need a windows desktop to see console or vnc unencrypted
[09:34]
***vtoms has joined #arpnetworks [09:44]
...... (idle for 28mn)
Mrdbgi has quit IRC (Read error: 110 (Connection timed out)) [10:12]
............... (idle for 1h11mn)
Nat_UB_ has joined #arpnetworks [11:23]
bobbyw30 peeps in irc, new record :) [11:30]
....... (idle for 32mn)
up_the_irons30! [12:02]
.......... (idle for 46mn)
***bobbyw has left [12:48]
Nat_UB_29 hehehehe [12:51]
***coil is now known as looooooooooooool
looooooooooooool is now known as coil
ballen has joined #arpnetworks
[12:52]
.......... (idle for 46mn)
ballen is now known as ballen|away [13:41]
ballen|away is now known as ballen [13:48]
............ (idle for 57mn)
vtoms has quit IRC ("Leaving.") [14:45]
.... (idle for 16mn)
ballen is now known as ballen|away [15:01]
.... (idle for 15mn)
heavysixer has quit IRC ("BAMPF!") [15:16]
............ (idle for 58mn)
cablehead has quit IRC ("Leaving.")
cablehead has joined #arpnetworks
timburke has quit IRC (Remote closed the connection)
ballen|away is now known as ballen
cablehead has quit IRC (Client Quit)
cablehead has joined #arpnetworks
[16:14]
.... (idle for 19mn)
ballen@up_the_irons: around? [16:36]
up_the_ironsballen: yeah, doing some HA testing atm.. got your new order, thanks!! [16:36]
ballencool, an ETA on setup? [16:37]
up_the_ironsballen: unfortunately, I may have to delay new orders some; a new server that was supposed to arrive today, did not, and i'm almost out of capacity; the order rate has shot way up in the last couple days (I guess this is a problem I want to have ;) [16:38]
ballenhow much of a delay? [16:39]
up_the_ironsi should have the new server up and running by monday, and provisioning will continue at that point [16:40]
ballenup_the_irons: we're in a bit of a predicament, our VPN policy was changed today and I have three people including myself that can't do much of any work [16:40]
up_the_ironswow [16:41]
ballenyea tell me about it [16:41]
dj_gokuballen: I will see you my VPS but it will cost you :) [16:51]
ballenhah [16:52]
..... (idle for 21mn)
***heavysixer has joined #arpnetworks [17:13]
.... (idle for 15mn)
ballen is now known as ballen|away [17:28]
.................. (idle for 1h29mn)
ballen|away is now known as ballen [18:57]
visinin has quit IRC ("sleep") [19:10]
bobbyw has joined #arpnetworks [19:22]
Mrdbgi has joined #arpnetworks [19:32]
bobbywany nsd users around? [19:34]
dj_gokubobbyw: what is your question? [19:47]
bobbywdj_goku: can't find any good info it seems [19:47]
dj_gokubobbyw: your talking about: http://en.wikipedia.org/wiki/NSD right? [19:49]
bobbywdj_goku: I really just want to do the most simple setup I can to get my domain names up
yeah
that's what up_the_irons recommended last night
[19:49]
dj_gokubobbyw: ahh cool [19:51]
bobbywdj_goku: didn't you say you use djbdns [19:55]
dj_gokubobbyw: nope. [19:56]
bobbywoh [19:56]
dj_gokuwhat is dns?
:)
[19:56]
bobbywmust have been some one else last night [19:56]
dj_gokulets see [19:56]
bobbywdj_goku: heh, you don't use dns? [19:56]
dj_gokujeev:
argh
its was jeev.
[19:56]
bobbywah [20:02]
***timburke has joined #arpnetworks [20:05]
....... (idle for 33mn)
heavysixer has quit IRC () [20:38]
......... (idle for 40mn)
jeev? [21:18]
.... (idle for 18mn)
dj_gokuhehe that is funny
heavysixer is uh, from KC... where I am from :)
wait
up_the_irons: haha you know heavysixer?!
haha cool.
[21:36]
bobbywbobbyw any good dns resources, so confusing [21:49]
jeevuse djbdns
it's easy
[21:49]
dj_gokubobbyw: use Bind? hehe [21:55]
bobbywdj_goku: no! [21:55]
jeevtakes 10 seconds to install djbdns
what distro are you using
os
[21:56]
bobbywjeev: freebsd [21:56]
dj_gokubind isn't default? [21:56]
jeevi dont even use ports for djbdns/daemontools
i just paste something in and it does it
just a little shell script
[21:56]
bobbyw?
really?
[21:56]
jeev? [21:56]
dj_goku? [21:57]
bobbyw? [21:57]
jeev? [21:57]
dj_gokudj_goku thought he would join in the ? [21:57]
bobbyw?
....
[21:57]
dj_goku... --- ... [21:57]
bobbywtell me about this shell script you speak of jeev [21:57]
mike-burnsNot using ports seems like a maintanance nightmare. [21:58]
jeevmike-burns, i've never seen an update for djbdns ;) [21:58]
mike-burnsHa. [21:58]
dj_gokudj_goku thinks everyone should know ... --- ... :) [21:58]
bobbywdj_goku: wtf does that mean? [21:59]
jeevpassword arp http://www.pastebin.ca/TWYbOsJO
that first installs everything and sets up a dnscache on 127.0.0.1
for resolver
[21:59]
dj_gokubobbyw: SOS [21:59]
jeevpw add user tinydns
pw add user dnslog
tinydns-conf tinydns dnslog /etc/tinydns
[21:59]
bobbywdj_goku: ah gotcha [21:59]
jeevwoops, put the ns1 ip after /etc/tinydns
ln -s /etc/tinydns /service
sleep 5
svstat /service/tinydns
and viola
obviously, then you have to learn how to use the data file
[21:59]
mike-burnsIt's in the ports tree, too. [22:00]
jeevtrue [22:00]
dj_gokuhaha [22:00]
jeevthat's just my version from 10 years ago or whatever it was [22:00]
mike-burnsLast updated in September, for IPv6 bug fixes.
http://www.freshports.org/dns/djbdns/
[22:00]
bobbywmike-burns: you use djbdns? [22:00]
mike-burnsNope.
I don't use any djb* tools; the packaging system frightens me.
I just use BIND 'cause it comes with the system.
[22:00]
jeevdunno [22:02]
ballenany one ever use AT&T Uverse service [22:04]
jeevyea ballen, i do
weird, i'v enever seen one of these for djbdns. https://www.isc.org/node/474
;)
[22:04]
ballenin what city? [22:05]
jeevyet i've seen hundredss for bind!
los angeles
[22:05]
ballenhow do you like it [22:05]
jeevgreat. [22:05]
ballenwhat kind of speeds do you get? [22:05]
mike-burnsWell, I mean, the ISC can't be bothered with software only three people use. [22:06]
ballenthey people that run ISC are some really cool people FYI [22:06]
mike-burnsOh I totally believe it. [22:07]
ballenalthough it does take a special person to "love" DNS [22:07]
mike-burnsI can only imagine that they're very ... interesting. [22:08]
ballenreally nice, incredably smart and think at a very large "I'm taking care of the internet scale"
talked to a group of ISC folks at a conference last year
[22:09]
mike-burnsThat's an insane responsibility that they have. [22:10]
ballengave em crap about the overhyped vuln that was around that time
apparently it was actually serious
[22:10]
mike-burnsAt their level every vuln must be serious. [22:10]
ballenno this one was a big one
what the hell was it, was the one was all secret
[22:11]
jeev18 megs ballen
whenever possible, i max out my connect
[22:11]
ballenkaminsky thats it
hows the ping time, heard theres some issues
[22:12]
jeevi really haven't played any net games in a while
i haven't noticed any lag at all
[22:14]
ballenhmm cool [22:15]
jeevi do notice traceroute's are gay
definitely win win if your next option is charter
[22:15]
ballendo a traceroute to arpnetworks and post it would ya?
other option is TimeWarner
[22:15]
jeevdo you "steal" or are you legit [22:15]
ballenin Austin, TX
legit
[22:16]
jeevcause you can mod a modem, clone a business mac, get 16/1 or 16/2 with QoS for free
lol
yea the trace's are lame
2,3,4 hop *
[22:16]
ballenseems like they would figured that out [22:16]
jeevfigure what out [22:17]
ballenthat you're running a cloned modem [22:17]
jeevmy pfsense router, after the first lightspeed route, it's * * * * *
from windows, it's
na ballen, i've only had charter's go bad, from people cancelling or something
but the people who i've given time warner to, 4 people
haven't called me in 18 months
[22:17]
ballenjust curious have you looked up what level of crime that is
misdemeanor or felony
[22:18]
jeevi duno, i dont do it at home so i duno [22:18]
ballenah
so just the enabler then ;-)
[22:19]
jeevhttp://www.pastebin.ca/JbwFxcmk pass arp [22:19]
ballenso looks like a good chunk of the lag is between you and your gateway from ATT
albiet 21ms isn't bad
[22:21]
jeevi duno if the name is right but
att is gay for sending everything from LA to irvine
[22:22]
ballenyea that is a bit out of the way [22:22]
jeevdamn where the php gurus are
at
[22:23]
ballenI know ATT has a lot of territory in Austin, but I think Verizon has some FIOS in the area so I'm trying to track down where so I can find an apartment with FIOS [22:24]
jeevfios would be awesome [22:24]
ballenyea my friend just got in the Balitmore area
got the 15/5 plan
[22:24]
jeevi think i'd go nuts with the best plan [22:25]
ballenspeed test's at like 23/12
yea 50 down would be nice
seems a bit overkill
I just want as much upload as I can get
[22:25]
jeevheh
50 is almost pointless if people like att continue being losers with bandwidth
[22:25]
ballenhell I'd take a std cable internet plan if the up/down was reversed [22:26]
bobbywwhat you need upload for? [22:26]
ballenright now backing up crap tons of data [22:26]
bobbywah [22:26]
ballenalthough I'd like max out the backup service
likely*
[22:27]
.................. (idle for 1h29mn)
***Mrdbgi has quit IRC (Read error: 110 (Connection timed out)) [23:56]

↑back Search ←Prev date Next date→ Show only urls(Click on time to select a line by its url)