#arpnetworks 2010-05-28,Fri

↑back Search ←Prev date Next date→ Show only urls(Click on time to select a line by its url)

WhoWhatWhen
dxtrup_the_irons o [00:06]
Do some support now :D [00:12]
........... (idle for 51mn)
***LT has joined #arpnetworks [01:03]
...... (idle for 26mn)
sentabi_co has joined #arpnetworks
jwfoxjr has quit IRC (Ping timeout: 258 seconds)
jwfoxjr has joined #arpnetworks
[01:29]
sentabi_co has quit IRC (Ping timeout: 264 seconds)
sentabi_co has joined #arpnetworks
schmir has joined #arpnetworks
[01:38]
.... (idle for 16mn)
visinin has quit IRC (Quit: sleep)
sentabi_co has quit IRC (Ping timeout: 272 seconds)
sentabi_co has joined #arpnetworks
[02:01]
...... (idle for 28mn)
sentabi_co has quit IRC (Ping timeout: 240 seconds)
sentabi_co has joined #arpnetworks
schmir has quit IRC (Read error: Connection reset by peer)
[02:30]
schmir has joined #arpnetworks [02:38]
........... (idle for 50mn)
infraredup_the_irons: thanks :) [03:28]
***schmir has quit IRC (Ping timeout: 240 seconds)
schmir has joined #arpnetworks
sentabi_co has quit IRC (Ping timeout: 272 seconds)
sentabi_co has joined #arpnetworks
[03:29]
infrared has quit IRC (Quit: leaving) [03:44]
..... (idle for 21mn)
schmir has quit IRC (Remote host closed the connection)
schmir has joined #arpnetworks
[04:05]
.... (idle for 19mn)
sentabi_co has quit IRC () [04:27]
schmir has quit IRC (Ping timeout: 260 seconds)
schmir has joined #arpnetworks
[04:37]
...... (idle for 26mn)
heavysixer has joined #arpnetworks
ChanServ sets mode: +o heavysixer
[05:07]
jwfoxjr has quit IRC (Remote host closed the connection) [05:13]
..... (idle for 23mn)
ziyourenxiang has joined #arpnetworks [05:36]
...... (idle for 25mn)
cedwardsI have a pf question for those that are more experienced with pf than I (read: everyone). [06:01]
***ziyourenxiang has quit IRC (Quit: ziyourenxiang) [06:03]
mhoranWe might have an answer. [06:16]
cedwardsI use BIND locally in a forward-only configuration.
my forwarders are 8.8.8.8 and 8.8.4.4 (Google).
The oddity that I'm trying to understand / resolve is this output in my daily logs:
http://pastebin.com/mxVDuNGG
if I'm initiating the connection I wouldn't think there would be problems getting back in. If they are initiating a connection, 1) why? 2) sholud that be something I let through?
and if so how to I allow randomized destination ports, or do I set a source port allow rule?
[06:19]
leanderwith udp there is no such thing as a connection or session
this seems so be the return traffic that contains the answer of your dns queries
http://www.openbsd.org/faq/pf/filter.html#udpstate describes this more detailed
[06:24]
cedwardsthe strange thing is that DNS is functioning as I would expect.
so I'm sure some/most requests are being answered and returned properly.
I just started noticing those lines in my logs though, so I thought it was worth looking into.
[06:28]
leandercould also be that this is return dns traffic that arrives after the timeout is reached [06:30]
cedwardsin which case it's harmless [06:32]
leanderyes
you could increase the timeout in PF
default is 10 seconds
[06:33]
cedwardsdoesn't sound like it's too critical. I may just watch it and see if it keeps up.
I've found a few more pf related lines in my logs. I think I need to learn how to read this output better.
[06:35]
***RandalSchwartz has quit IRC (Quit: updating OS) [06:51]
.... (idle for 15mn)
RandalSchwartz has joined #arpnetworks [07:06]
RandalSchwartzYeay - upgraded to 8.0-release-p3
Had troubles booting the box though... maybe I was just impatient
looked like it was sitting at the freebsd boot menu
so I hard-cycled it one more time, and everything worked the second time
[07:06]
***vtoms has joined #arpnetworks [07:14]
cedwardsmine didn't seem to have any problems coming up, thankfully. [07:16]
RandalSchwartzwell - yeah, the smaller $20 VPS worked just fine
maybe the big 200GB disk took a bit to verify
[07:19]
.... (idle for 18mn)
anyway, I'm now at least protected against the latest OPIE potential attack [07:37]
.... (idle for 16mn)
***schmir has quit IRC (Ping timeout: 265 seconds) [07:53]
.... (idle for 17mn)
schmir has joined #arpnetworks [08:10]
schmir has quit IRC (Remote host closed the connection) [08:17]
..... (idle for 20mn)
LT has quit IRC (Quit: Leaving) [08:37]
............ (idle for 55mn)
cedwards has quit IRC (Quit: leaving)
cedwards has joined #arpnetworks
[09:32]
.... (idle for 15mn)
vtoms has quit IRC (Quit: Leaving.) [09:50]
..... (idle for 23mn)
jdoeRandalSchwartz: haven't bothered rebooting yet. The kernel patch bit doesn't actually affect me. [10:13]
RandalSchwartzyou're not using anything with logins? [10:13]
jdoeopie isn't a kernel patch
the kernel patch is for the nfs fix
[10:13]
RandalSchwartzhave you restarted the services then?
so they link to the new shared lib?
[10:14]
cedwardsmy box just went crazy and I had to hard-boot it. strange. [10:15]
jdoeit's already disabled for ossh, I don't use ftp
so I should be safe on that front too.
at least, that's my understanding.
gotta say though, I love how freebsd doesn't have a kernel patch every 30 seconds.
[10:15]
bob^^freebsd <3 [10:17]
***viq has quit IRC (Quit: Shin! Shin! Sei! Kyu! Sai!) [10:21]
cedwardszfs ftw
I just did some major maintenance on my webserver, and the whole time I was thinking to myself "I did a snapshot yesterday. No need to worry"
[10:35]
...... (idle for 25mn)
jdoecedwards: tell that to Joyent ;) [11:01]
cedwardsman it is _so_ dead at work today. [11:13]
RandalSchwartzthree day weekend [11:14]
cedwardsmy boss started his on Wed. [11:15]
jdoequiet here too. [11:16]
RandalSchwartz"a little TOO quiet...." [11:16]
***vinnyt has joined #arpnetworks
vinnyt has quit IRC (Client Quit)
vinnyt has joined #arpnetworks
vinnyt has quit IRC (Client Quit)
[11:24]
....... (idle for 32mn)
visinin has joined #arpnetworks [12:01]
RandalSchwartzis it too early to say Gary Coleman died of some sort of different stroke? [12:07]
mike-burnsNah, we just said that at work. [12:09]
RandalSchwartzheh
so I wasn't the only one thinking it
I wonder if the press is very careful not to call it a Stroke for that reason
[12:11]
jdoeI doubt it. Headlines are written for pagerank not to be clever, they're clearly trying to cash in on the highly desired "intercranial hemorrhage" search market... [12:13]
RandalSchwartz"stroke 'em if you got 'em" [12:15]
visininaw dude come on :(
we don't need to bring sexism into this
[12:16]
RandalSchwartzheh - looks like the tweet crowd beat me too it [12:18]
"Gary Coleman used to be under 4 feet. Now he's four feet under!" [12:28]
***cedwards has quit IRC (Quit: leaving) [12:31]
.... (idle for 15mn)
cedwards has joined #arpnetworks [12:46]
.... (idle for 19mn)
cmeiklejohn has quit IRC (Ping timeout: 260 seconds) [13:05]
cedwardswish me luck. doing a perl5.8 -> 5.10 port upgrade on one of my jails. [13:17]
RandalSchwartzRandalSchwartz cues the jailhouse blues music [13:18]
........ (idle for 38mn)
***visinin has quit IRC (Quit: leaving) [13:56]
................... (idle for 1h32mn)
jdoehrm... [15:28]
***bob^^ has quit IRC (Quit: Changing server)
bob^^ has joined #arpnetworks
AndrewBC has quit IRC (Ping timeout: 248 seconds)
AndrewBC_ has joined #arpnetworks
[15:34]
........ (idle for 36mn)
AndrewBC_ is now known as AndrewBC [16:14]
..... (idle for 23mn)
heavysixer has quit IRC (Quit: heavysixer) [16:37]
................. (idle for 1h20mn)
BarberRonny has quit IRC (Quit: leaving) [17:57]
.... (idle for 15mn)
infrared has joined #arpnetworks [18:12]
infraredhi [18:24]
...... (idle for 28mn)
cedwardshi [18:52]
...... (idle for 27mn)
***heavysixer has joined #arpnetworks
ChanServ sets mode: +o heavysixer
[19:19]
.... (idle for 19mn)
heavysixer has quit IRC (Quit: heavysixer) [19:38]
..... (idle for 23mn)
jdoewhee. [20:01]
RandalSchwartzwhee! [20:02]
...... (idle for 29mn)
jdoehrm.
I thought File::Fetch was core... maybe only in 5.12 :/
[20:31]
RandalSchwartznever [20:31]
jdoehrm
File::Fetch was new in 5.10
... so why doesn't my 5.10 install have it.
oh it does.
... but my shebang is /usr/bin, not /opt/csw/bin
... and /usr/bin is 5.8
jdoe very, very slowly connects the dots.
ugh. Speaking of very slowly, perl 5.8.4 was released April 23rd, 2004.
naturally, it's the default perl in the OpenSolaris dev builds...
[20:32]
.... (idle for 16mn)
***cedwards has quit IRC (Quit: leaving) [20:51]

↑back Search ←Prev date Next date→ Show only urls(Click on time to select a line by its url)