#arpnetworks 2010-04-05,Mon

↑back Search ←Prev date Next date→ Show only urls(Click on time to select a line by its url)

WhoWhatWhen
***ziyourenxiang has joined #arpnetworks [04:41]
.................... (idle for 1h39mn)
vtoms has joined #arpnetworks [06:20]
............ (idle for 57mn)
heavysixer has joined #arpnetworks
ChanServ sets mode: +o heavysixer
[07:17]
.......... (idle for 48mn)
fink has joined #arpnetworks [08:05]
finkRandalSchwartz: thanks for your help re: zfs, i've got everything running on the 768 vps, seems to be fine so far [08:07]
RandalSchwartzcool!
install zfs-snapshot-mgmt too
then you get auto snapshots
[08:07]
finkok [08:08]
j3mhow do you get zfs on / installed on the vps? [08:17]
RandalSchwartzyou boot from the CD, follow the instructions
fink just did this... he has experience
based on my experience
[08:17]
finkhaha [08:17]
RandalSchwartzI've done it twice now :) [08:17]
j3mokay, that is my misunderstanding, I don't have a vps yet, didn't realize you could boot from a cd [08:18]
RandalSchwartzyes - a virtual Freebsd-8 release CD is always installed [08:18]
finkj3m: yea i didn't know either. arpnetworks should have a wiki! then we can post our experiences [08:18]
RandalSchwartzso you can "boot" from it if something hoses on your maindrive [08:18]
j3mthat is handy :) [08:18]
RandalSchwartzthis cuts down on Garry's support time for those of us who know [08:19]
j3mis zfs io performance okay on vps? I mean compared to zfs single disk or a 2-disk mirror on real hardware? [08:23]
RandalSchwartzfast enough for me. :)
keep in mind, the underlying disk is raid already
so you don't need to use raidz
but the snapshots and other things are worth the trip
[08:23]
finkj3m: speed was not my major concern, as much as the other benefits of zfs, such as management/backups [08:24]
j3mI've been using it locally and zfs + jails is very nice [08:24]
finkj3m: yea, exactly
i'm only worried about using it with under 1gig of ram
[08:24]
RandalSchwartzzfs adjusts automatically for that [08:25]
j3myeah, box here has 1.5 [08:25]
RandalSchwartzit used to require some sysctl tuning
now it just works
[08:25]
finkRandalSchwartz: oh ok, cool. i read about cyschubert's laptop here: http://wiki.freebsd.org/ZFSTuningGuide [08:26]
j3m8.0 does seem to be a huge improvement
anyone ever try to get iredmail working in a jail?
[08:26]
finkj3m: heh, i was just looking at iredmail last night
i think i will try it soon
[08:28]
j3mI tried here but it really wanted 127.0.0.1 to work
tried to manually fix all the configs... but no luck yet
[08:29]
finkRandalSchwartz: do you have any links on not needing to tune for zfs? the handbook still says we should
j3m: you're trying the betas?
[08:30]
j3myes, was trying beta3 [08:30]
RandalSchwartzhmm. something I read googling around for error messages
don't remember now
might have been a misinterpretation
[08:30]
j3mfink: I cloned the Mercurial repository now, going to try and fix the scripts it uses to set things up [08:32]
finkRandalSchwartz: maybe it applies to hte new stuff in 8.1
j3m: cool, i'd like to know how it goes
j3m: are you using ldap or mysql?
[08:32]
j3mldap is required
so I am using that
it still uses mysql I think as well, can't remember for sure
[08:32]
finkdo you have an existing ldap db? [08:33]
j3mno
installed on a fresh jail, the setup script installs all the ports it needs
the ldap actually worked fine
[08:33]
finkok [08:34]
j3mI could use the admin web interface to manage email accounts and whatnot
it just wasn't able to recieve mail and pass it through all the seperate steps for spam and virus stuff
lots of 127.0.0.1 ports involved there
[08:34]
finkj3m: right, that's annoying [08:35]
RandalSchwartzgood thing there's 65,000 ports :) [08:35]
j3myeah, lol [08:35]
finki'm planning on having the mailserver, db, various webservers in different jails, so it will take a lot of hacking, i assume… [08:35]
RandalSchwartzimagine if the boys at berkely had only given a single byte value for that [08:36]
finkpays to think ahead [08:36]
RandalSchwartzwell, ipv4 wasn't far enough ahead
but who knew that there'd be this many internet machines
[08:37]
j3myeah, supprising IPv4 worked as long as it did
fink: I'm doing basically that locally now, but the mailserver part isn't quite there yet...
fink: it's not actually that much hacking, most things work fine in jails
[08:38]
finkj3m: i mean, to get all the jails to work with iredmail [08:40]
j3moh... yeah, if you are going to split that up it might get dicey
good luck, lol
:)
I have never been very good at getting a working mailserver configuration that actually did everything I wanted it to
[08:41]
finkj3m: yea, that's why iredmail looks cool [08:42]
j3miredmail looks like the easiest way [08:42]
finkplus it's python, so it's easy to hack, hopefully [08:42]
j3mhowever, it's meant to be all on one server
all you have to do one a clean jail is run it's setup script
on*
[08:42]
finkj3m: yea but i don't want the webserver & db & email server etc all running in one jail [08:44]
j3mI didn't like that idea either, but the amount of work to change it seemed too much to bother
especially with jails and snapshots
as long as those services are all used only for the mail, at least the entire mail system is isolated
and I would just firewall off all the ports except smtp and imap ones
can use ssh port forwarding to access the web interface when needed
at least that's my plan once I get iredmail working...
[08:45]
finkj3m: sounds reasonable [08:52]
...... (idle for 29mn)
***ziyourenxiang has quit IRC (Quit: ziyourenxiang) [09:21]
....................................... (idle for 3h12mn)
dxtrUhm, up_the_irons [12:33]
This is bad. Realbad.
Real vad*
bad!
Christ :P
[12:38]
Hum. If I sign my message (GPG) - what does that mean? That I'm including my key and stuff? [12:52]
.... (idle for 19mn)
toddfheh
signing only gives enough of a fingerprint to proove it was your key that signed it
change one char inside the message, signature is invalid
change one char inside the signature, signature is invalid
thats all
if you understood public key cryptography .. this would be a no brainer ;-)
[13:11]
***yoberi has joined #arpnetworks [13:13]
dxtrtoddf: I thought I did :D [13:16]
yoberiHi all, does anyone know if the arpnetworks VPS accounts include dedicated ipv4 addresses? Will I need to learn ipv6 to use any arpnetworks services? Thanks. [13:16]
dxtrGarry should really update his pgp key
It was like revoked last year
[13:20]
toddfyoberi: yes and no [13:21]
yoberitoddf: please do explain! [13:22]
toddfyoberi: http://arpnetworks.com/vps says clearly 'Dedicated IPs' and 'Native IPv6 network' [13:22]
j3mthey do include ipv4 addresses, 1 for free, you don't need to learn ipv6, though you should [13:23]
toddfyou can use or not your IPv6 allocation
should, yes, I like this ;-)
[13:23]
yoberiWill I be able to host such services as a mail relay (as an offsite backup)? [13:23]
toddfjust look at the disk and the mem and the bandiwdth .. if you don't exceed those you're good to go [13:24]
yoberij3m: okay that's sweet. I just need one ipv4 address to tackle my current issues. Would like an excuse to learn ipv6 as well [13:24]
toddfbackups might require some thinking given the price of disk but mail seems quite easily doable [13:24]
dxtrtoddf: I assume you don't have any kind of responsibility? :) [13:24]
toddfdxtr: quite the opposite, own and run my own business, this is `fun' for me [13:25]
dxtrtoddf: Right [13:25]
yoberiI'm really just looking for a backup for when both of our ISPs is down, or the mail server is being serviced [13:25]
toddfyoberi: up to you to configure the system as you wish, you get the mem and disk and bandwidth, and the ability to ask for a different iso to be available if you are not liking what is there by default, and the VPS is yours to do with what you wish (though illegal activity is frowned upon here, otherwise, go have fun) [13:26]
yoberitoddf: sounds great-- just what I need to handle backup offsite services. Thanks for the tips/advice. [13:27]
dxtrtoddf: Hey, could you check my pgp key out? :)
11C1331A - I sent that to a key server at least
[13:29]
toddfgpg: requesting key 11C1331A from hkp server keys.gnupg.net
gpg: key 11C1331A: public key "Kim Lidström <dexter@dxtr.cc>" imported
gpg: Total number processed: 1
gpg: imported: 1 (RSA: 1)
$ gpg --list-keys 11C1331A
pub 4096R/11C1331A 2010-04-05
uid Kim Lidström <dexter@dxtr.cc>
sub 4096R/DC3E3F11 2010-04-05
[13:31]
dxtrtoddf: Cool
But does that give you my public key?
[13:31]
***schmir has joined #arpnetworks [13:42]
........ (idle for 38mn)
schmir has quit IRC (Remote host closed the connection) [14:20]
finkon the console server: what keycombo is this? [Enter `^Ec?' for help]
oh, got it nvm
[14:28]
up_the_ironsctrl-e followed by 'c' followed by '?' [14:30]
finkthanks [14:30]
up_the_ironsnp
anyone got an ipad yet? ;)
[14:30]
..... (idle for 23mn)
amdpropheti've got 6
kidding, i wish i had even one
[14:56]
dxtrHey, up_the_irons [15:06]
jlgaddisheh, i was gonna try to get bruce schneier to sign my pgp key the other day, but i settled for signing my book [15:19]
up_the_ironsLOL [15:20]
j3mlol [15:20]
amdprophetROFL [15:20]
j3mmet him at a party once
wish I would have been less inebriated, lol
ah well...
[15:20]
jlgaddisj3m: i wish that a lot [15:29]
j3mlol [15:29]
jlgaddisoff to chase a tornado, later [15:38]
...... (idle for 29mn)
dxtrHow the hell does this work!? :(
Mutt an gnupg
[16:07]
j3mdxtr: something like this - http://codesorcery.net/old/mutt/mutt-gnupg-howto [16:09]
dxtrj3m: Yeah, I saw that
But I was like "wtf!?" when I sent my friend a key (And vice versa) and all we saw was the signature
[16:10]
j3mnot sure, never tried gnupg with mutt... [16:12]
up_the_ironsdxtr: I usually hit: (p)gp followed by (b)oth (sign and encrypt) [16:14]
dxtrup_the_irons: Yeah, well, do I really want to encrypt it before I got his key? :D [16:15]
up_the_ironsdxtr: no, you need his pub key to encrypt it for him [16:16]
dxtrExactly
Well, we tried to send each other our public keys but all we saw (in mutt) was the signatures
But apparently it worked
[16:16]
aumorning [16:22]
up_the_ironsdxtr: you should see something like this near the top of the message:
[-- The following data is PGP/MIME encrypted --]
[16:22]
dxtrup_the_irons: Yeah :) [16:22]
RandalSchwartzup_the_irons - did you feel the quake yesterday? [16:22]
up_the_ironsRandalSchwartz: no, was driving at the time [16:22]
RandalSchwartzI'm happy I wasn't up on the 44th floor [16:22]
dxtr44th floor? I don't think we have that many building with 44 floors here :D [16:23]
up_the_ironshehe [16:23]
dxtrbuildings
On the other hand we have like ~10,000,000 citizens
[16:24]
aunew yorkers? [16:25]
dxtrMake that ~9,500,000 [16:26]
RandalSchwartzYes - my office is on the 44th floor of the 9th tallest building in LA
(Paul Hastings)
I'm eye-level with the continuous cop copters :)
[16:35]
dxtrThat's sick
I'm getting sick when I'm at the second floor in this apartment
.. AND THE KITCHEN IS ON THE SECOND FLOOR
[16:35]
RandalSchwartzwow [16:38]
dxtr:D
I'm still amazed how my last VPS can reach pretty good speeds (Stockholm<->LA) while my home ISP doesn't
To the VPS I've got here that is
[16:39]
auhej dxtr :) [16:44]
dxtrau: Hej? [16:45]
aunot a swede? [16:46]
dxtrYes I am [16:46]
auwas saying hello :P [16:47]
dxtrViking, gräv bort skåne, etc.
True swede o
[16:47]
auI know little swedish :P I am from Australia [16:47]
dxtrOh
I thought we knew each other or something :P
[16:48]
...... (idle for 28mn)
***fink has quit IRC (Quit: fink)
z0mbie has joined #arpnetworks
[17:16]
z0mbiehi
admin?
[17:20]
***z0mbie has quit IRC (Client Quit) [17:24]
z0mbie has joined #arpnetworks [17:36]
download has joined #arpnetworks [17:43]
z0mbiesux [17:43]
downloadhi
mel
[17:43]
z0mbielol
dont have admin
[17:43]
***download has quit IRC ()
z0mbie has quit IRC (Quit: suck my dick)
[17:49]
dxtrAt least he's being mature about it [17:55]
.................. (idle for 1h29mn)
***fink has joined #arpnetworks [19:24]
........ (idle for 38mn)
Ehtyar has quit IRC (Remote host closed the connection)
Ehtyar has joined #arpnetworks
[20:02]
............... (idle for 1h11mn)
heavysixer has quit IRC (Quit: heavysixer) [21:14]
aubbl [21:26]
...... (idle for 27mn)
***fink has quit IRC (Quit: fink) [21:53]
........................ (idle for 1h57mn)
au has quit IRC (Quit: ZNC - http://znc.sourceforge.net) [23:50]

↑back Search ←Prev date Next date→ Show only urls(Click on time to select a line by its url)