#arpnetworks 2013-08-29,Thu

↑back Search ←Prev date Next date→ Show only urls(Click on time to select a line by its url)

WhoWhatWhen
***brycec has quit IRC (Ping timeout: 264 seconds)
brycec has joined #arpnetworks
brachiation has quit IRC (Quit: leaving)
brachiation has joined #arpnetworks
[00:00]
toddfbrycec: must be blind, I haven't seen that popup (support contract/license) for proxmox) [00:10]
..... (idle for 22mn)
***rgouveia has quit IRC (Ping timeout: 246 seconds)
rgouveia has joined #arpnetworks
rgouveia has quit IRC (Changing host)
rgouveia has joined #arpnetworks
[00:32]
............ (idle for 55mn)
freedomcode has quit IRC (Read error: Connection reset by peer) [01:29]
brachiation has quit IRC (Quit: leaving)
brachiation has joined #arpnetworks
brachiation has quit IRC (Client Quit)
brachiation has joined #arpnetworks
[01:43]
first2know has quit IRC (Remote host closed the connection)
hive-mind has quit IRC (Remote host closed the connection)
hive-mind has joined #arpnetworks
[01:54]
............. (idle for 1h1mn)
first2know has joined #arpnetworks [02:57]
....... (idle for 31mn)
first2know has quit IRC (Remote host closed the connection)
first2know has joined #arpnetworks
[03:28]
................................................... (idle for 4h12mn)
sunil has joined #arpnetworks [07:41]
...... (idle for 29mn)
mike-burns has quit IRC (Ping timeout: 246 seconds) [08:10]
mike-burns has joined #arpnetworks
ChanServ sets mode: +o mike-burns
[08:18]
...... (idle for 25mn)
ziyourenxiang has joined #arpnetworks
first2know has quit IRC (Ping timeout: 240 seconds)
first2know has joined #arpnetworks
[08:43]
mikeputnam<3 http://www.youtube.com/watch?v=A43JOxLa5MM [08:44]
rgouveiahehe [08:45]
***ziyourenxiang has quit IRC (Client Quit) [08:47]
rgouveiasome ppl here are running proxmox? I'm trying to get vnc working, without being through the java plugin, but can't
shouldn't this work: /bin/nc -l -p 5900 -w 1 -c '/usr/sbin/qm vncproxy 100' ? I always get 'no connection : Connection timed out'
while '/usr/sbin/qm vncproxy 100' gives me: RFB 003.008
[08:55]
toddfI'll help in a sec
here are my crib notes:
$ cat proxmoxssl
Note: user@pam for local auth
Note: example inetd.conf entry: "59100 stream tcp nowait root /usr/sbin/qm qm vncproxy 100"
Note: apt-get install openbsd-inetd
/usr/local/lib/ssvnc/ssvnc_cmd -proxy vencrypt://10.255.3.129:59701 10.255.3.129:59701 -noraiseonbeep
see if they get you further ;-)
I'm not familiar with using nc as an inetd replacement, I'd rather use the real deal
[08:57]
..... (idle for 22mn)
brycechow would _me_ being the blind one work in that scenario? :P 00:10:09 >>@toddf<< brycec: must be blind, I haven't seen that popup (support contract/license) for proxmox)
Anyhow, it's the first thing that I see when I login https://dl.dropboxusercontent.com/u/3167967/screenshot_2013-08-29_09-23-16.png
[09:21]
rgouveiatoddf: will test and report back :-)
brycec: yeah, I got that too everytime I log in
[09:28]
brycecOoh good thinking on the inetd entry, toddf [09:35]
toddfbrycec: I'm blind, I don't see the popup, sorry it was misunderstood
brycec: its slightly hackish as you have to manually allocate a port per vm, but quite less mem intensive than java to access consoles (though conserver is also a good idea too)
[09:36]
brycecSooo much easier and nicer than Java :) And if I just keep using sequential ID's, I can just dump a bunch in inetd and forget about it [09:38]
rgouveiatoddf: and there's another prob with the java plugin, i have a box with and old java version which doesn't run even [09:39]
toddfI wish I could figure out how to tell proxmox to set perms on a serial unix socket properly; my choices are a) allocate tcp ports for proxmox serial ports for conserver or b) use unix sockets and manually chmod them everytime a vm is stopped/started; perhaps someone with conserver fu can suggest how to do the chmod from the conserver config though
brycec: indeed
[09:39]
***reardencode has joined #arpnetworks [09:40]
rgouveiagood news, at least now it connects! but still: Connected to RFB server, using protocol version 3.8 Server did not offer supported security type
using vncviewer here
gonna try ssvnc
[09:41]
reardencodehmm, just had to reboot my VM on kvr19, seemed to have gotten into a bad IO state or something [09:47]
rgouveiatoddf: btw, your setup notes are here http://pve.proxmox.com/wiki/Vnc_2.0#configure_Proxmox_host_for_TLS_connections [09:48]
toddfvncviewer does not do the ssl bits, the ssvnc cmdline above is all I have gotten to work, if you get something else to work, please do share
someday I'll understand what this spice thing is and why people are excited for newer versions of proxmox to support it
[09:48]
brycecthe cirucuit sim?
Oh "SPICE (protocol), a remote-connection sharing protocol"
[09:50]
toddfyeah that [09:50]
brycecfrom what I've heard, it's everything that makes RDP good, but free and open source
Apparently it's already in QEMU as of March 2010.
[09:50]
toddflooks like that webpage is missing the ssvnc bits to let unix hit console via that mechanism
sure it exists, I still don't know how I could use it ;-(
[09:51]
brycecyou could use the html5 client [09:52]
toddf$ qemu-system-i386 -h 2>&1 | grep -i spice
-spice [port=port][,tls-port=secured-port][,x509-dir=<dir>]
enable spice
[09:52]
brycecwell someday you'll get around to trying it out :p [09:52]
toddfbrycec: !@#%!@#%$!@^%@!#$!@#$ ok talk to me about this html5 client. I have no infoz on how to do it yet my friend insists it works yet I have no browser that can connect to his consoles without java. [09:52]
brycechttp://en.wikipedia.org/wiki/SPICE_(protocol)#spice-html5 all the info I have on it now. Oh and http://cgit.freedesktop.org/spice/spice-html5/ [09:53]
toddfoh html5 spice client.
I thought you meant html5 vnc ssl client.
[09:53]
brycecoh, yeah, fuck that [09:53]
toddflooks like there's a spice-gtk and virt-viewer that might talk spice in ports of OpenBSD.. hmm.. [09:54]
rgouveiatoddf: got it to work! :-) you saved me again [09:55]
toddfanybody: if you figure out how to use spice to talk to qemu and/or kvm and/or proxmox let me know in a brief note like I did above for rgouveia and proxmox + ssl vnc consoles [09:55]
brycecdoes it have to be ssl vnc?
would you acceupt unencrypted vnc?
[09:56]
toddfbrycec: 'qm vncproxy' speaks nothing else [09:56]
brycechttp://pve.proxmox.com/wiki/Vnc_2.0 suggests that can be disabled [09:56]
rgouveiatested with ssvnc [09:56]
toddfbrycec: if you can get encription all the way to kvm/qemu why would you ever want to disable it? [09:57]
brycectoddf: because it blocks old clients?
toddf: SPICE has its own encryption too
[09:57]
toddfbrycec: well, theres that. I see your url suggests a way to do it w/out inetd and traditional unencrypted vnc. nice too.
brycec: i bet as a corilary you could do a 'ps awwwx' and note how to do it directly with tls and not with the proxmox unix socket thing, probably break web ui consoles, but who cares if you don't use them eh?
[09:58]
rgouveiaguys, I've just tried with args stuff in the 100.conf and it works with vncviewer [10:04]
toddfindeed me too [10:05]
rgouveiai prefer that one ;-) [10:06]
toddfargs: -serial tcp:localhost:5000,server,nowait -vnc 192.168.2.250:300,x509,password
indeed its much more straightforward
[10:06]
rgouveiai'm already used doing ssh -L with vncviewer [10:06]
toddfI have openvpn to my friend's proxmox system and ipsec to a clients so using ssh -L is not needed here ;-)
/usr/bin/kvm -id 300 -chardev socket,id=qmp,path=/var/run/qemu-server/300.qmp,server,nowait -mon chardev=qmp,mode=control -vnc unix:/var/run/qemu-server/300.vnc,x509,password -pidfile /var/run/qemu-server/300.pid -daemonize -name 4.v.freedaemon.com -smp sockets=1,cores=1 -cpu Opteron_G5 -nodefaults -boot menu=on -vga cirrus -k en-us -m 1024 -cpuunits 100 -serial tcp:localhost:5000,server,nowait -vnc 192.168.2.250:300,x509,password ...
... -device piix3-usb-uhci,id=uhci,bus=pci.0,addr=0x1.0x2 -device usb-tablet,id=tablet,bus=uhci.0,port=1 -device virtio-balloon-pci,id=balloon0,bus=pci.0,addr=0x3 -drive file=/mnt/pve/nfsToddsCrap/images/300/vm-300-disk-1.qcow2,if=none,id=drive-ide0,format=qcow2,aio=native,cache=none -device ide-hd,bus=ide.0,unit=0,drive=drive-ide0,id=ide0,bootindex=100 -drive ...
... file=/mnt/pve/nfsToddsCrap/images/300/vm-300-disk-2.qcow2,if=none,id=drive-ide1,format=qcow2,cache=unsafe,aio=native -device ide-hd,bus=ide.0,unit=1,drive=drive-ide1,id=ide1 -device lsi,id=scsihw0,bus=pci.0,addr=0x5 -drive if=none,id=drive-scsi2,media=cdrom,aio=native -device scsi-cd,bus=scsihw0.0,scsi-id=2,drive=drive-scsi2,id=scsi2 -netdev type=tap,id=net0,ifname=tap300i0,script=/var/lib/qemu-server/pve-bridge -device ...
... e1000,romfile=,mac=CA:5F:74:03:4B:46,netdev=net0,bus=pci.0,addr=0x12,id=net0
looks like having multiple -vnc args results in only the last one applying
root@proxmox:/var/run/qemu-server# netstat -an | grep 30..vnc
unix 2 [ ACC ] STREAM LISTENING 19057 /var/run/qemu-server/303.vnc
unix 2 [ ACC ] STREAM LISTENING 19344 /var/run/qemu-server/304.vnc
unix 2 [ ACC ] STREAM LISTENING 18852 /var/run/qemu-server/302.vnc
unix 2 [ ACC ] STREAM LISTENING 18638 /var/run/qemu-server/301.vnc
[10:07]
rgouveiagotta go, thanks toddf and brycec again! ttyl [10:09]
toddfso I guess if you wanna use the web ui with java and also hit it w/out the inetd approach will let you choose, otherwise, there's the args: method that forces it to only listen on a tcp socket [10:10]
........ (idle for 36mn)
***first2know has quit IRC (Remote host closed the connection) [10:46]
..... (idle for 24mn)
up_the_ironsbrycec | you could use the html5 client
brycec: what html5 client? :)
oh, html5 spice...
[11:10]
toddf: so kvm supports the x509 option for "-vnc" arg..? nice
toddf: what is the default arg they use for it to listen on <something> to connect to the web ui?
just wondering...
[11:17]
..... (idle for 21mn)
brycecup_the_irons: by default it listens on a socket that the web ui taps somehow (via netcat)
-vnc unix:/var/run/qemu-server/101.vnc,x509,password
is the arg to qemu
and the "qm vncproxy" command is a perl script that opens the socket and listens on a port
it's apparently called whenever I click "console"
[11:40]
toddfand the 'secure' reality is .. it listens on port 5900 long enough to establish a connection or times out; too many people hitting 'console' at the same moment doesn't exactly bode well for my tastes
up_the_irons: if your kvm instances support the x509 option, I'd be willing to submit a support request to ask that that be tweaked for my vm's .. then I wouldn't have to ssh tunnel to get to them securely anymore
[11:56]
brycecHey I figured out how I can replicate VirtualBox's savestate! I just run the entire proxbox instance in a VirtualBox VM of its own. VMs inside a VM, nothing can go wrong! (But it can go slowly :P) [11:59]
toddfsavestate?
is that similar to kvm/qemu's 'stop' then 'savevm' ?
(which requires qcow2 though but anyway)
[11:59]
brycectoddf: more like a hibernate, but from the outside of the machine [12:02]
toddfthis is exactly what I described [12:03]
brycec(Saves all state, ram, etc to disk and freezes the VM)
I thought stop was equivalent to a hard poweroff?
brycec is new to KVM
[12:03]
toddf'stop' halts the virtual hardware cold, 'savevm' preserves state, you can 'quit' then 'kvm/qemu -loadvm' upon bootup and resume after rebooting the host [12:03]
brycecSo I can savevm after I've stopped? [12:04]
toddfI am confuzeled as to how multiple vm images can be saved, and if the state of the disk is consistent if you run multiple vm's in sequence, but you can do that too and explore what the ramifications are
yes
if you don't give savevm a name it will choose one for you
it saves ram and hardware state (presuming your disk image is capable of storing it)
aka raw is not eligible
[12:04]
brycecsure, I get that
I was under the impression that "stop" would kill the process and once killed, that state information would no longer be available (like unplugging a computer)
But hey, TIL
[12:04]
toddf(qemu) or (kvm) prompt 'stop' literally turns the cpu utilization to 0 for that instance on the host os [12:06]
brycecAh, so probably not the same as the Stop button in proxmox. (I'd have to pull up the "monitor" tab to issue commands to qemu itself) [12:06]
***N3RG4L has quit IRC (Ping timeout: 248 seconds)
N3RG4L has joined #arpnetworks
[12:20]
toddfcorrect
proxmox stop = cmdline quit
cmdline stop = 'pause all emulation for this guest'
[12:25]
***first2know has joined #arpnetworks [12:27]
brycecthanks for the clarification toddf [12:31]
up_the_ironsbrycec: toddf: ah ok
toddf: i see the x509 option in the man page, but i think my libvirt is too old
[12:41]
...... (idle for 29mn)
toddfah so your libvirt can't do it. feel free to either a) close my support request or b) keep it around as a pet until newer libvirt can handle it [13:11]
brycecOr what about migrate toddf to the new boxes (>=KVR19 i think?) that have the newer stuff? [13:18]
up_the_ironsi still think the newer boxes libvirt can't do it [13:29]
mercutiodebian old packages again? :) [13:29]
up_the_ironsno we're on Ubuntu [13:30]
mercutioahh
ubuntu has old xen
but i have no idea what it's doing with qemu
looks like 1.0 in precise
looks like even old libvirt had some bugs with x509 so must have had some support
[13:30]
***N3RG4L has quit IRC (Ping timeout: 248 seconds)
N3RG4L has joined #arpnetworks
FreeSpencer has quit IRC (Excess Flood)
[13:39]
FreeSpencer has joined #arpnetworks
FreeSpencer has quit IRC (Changing host)
FreeSpencer has joined #arpnetworks
[13:46]
FreeSpencer is now known as alphajeus40 [13:51]
..... (idle for 20mn)
alphajeus40 is now known as FreeSpencer
lteo has quit IRC (Changing host)
lteo has joined #arpnetworks
[14:11]
...................................... (idle for 3h9mn)
Hien has quit IRC (Quit: leaving)
Hien has joined #arpnetworks
[17:22]
....... (idle for 33mn)
N3RG4L has quit IRC (Ping timeout: 248 seconds)
N3RG4L has joined #arpnetworks
[17:59]
...... (idle for 28mn)
brycecso it turns out that using SPICE in Proxmox is *insanely* easy
http://pve.proxmox.com/wiki/SPICE

Pretty much, set the gfx card to SPICE, you'll then have a SPICE button beside Console - click to download a config and run remote-viewer $file (or setup your browser to run it)
no more Java!
[18:30]
...... (idle for 27mn)
Pro-tip: Be sure you're clicking the correct Shutdown button.
brycec just shutdown the host, not the VM
[18:58]
jpalmerTest [19:02]
brycecTest? [19:02]
jpalmerYep [19:02]
brycecGuess it works then. [19:02]
jpalmerTesting my irssi proxy from tablet irc client [19:02]
brycecnice
It's handy
[19:03]
jpalmerYea [19:03]
brycecbut eventually I switched to znc [19:03]
jpalmerOK, back to work!
Why znc?
[19:03]
brycecGosh, I dunno... I guess because I saw other respected users on devio.us using it, so I gave it a shot and it feels good, solid, and mature
Real light too
irssi-proxy was fine, ubt I wanted a bouncer to get some backlog when I'd connect from my tablet
[19:04]
jpalmerAhh [19:06]
m0undsi just use screen and irssi
m0unds isn't hip
[19:06]
jpalmerSame, screen and irssi. Just setup irssi-proxy
Just need to find a decent irc client for android now
[19:08]
m0undswhen i used android, i used andirc
dunno if it still exists, but it was alright
[19:08]
brycecthat sound familiar, think I used that
the lack of tab-completion was annoying
[19:09]
m0undsi think it was the defacto android irc client for a long time [19:09]
brycecI know I tried a half dozen [19:09]
m0undsi found a pretty nice free ssh client for my ipad - server manager or something like that
supports ctrl + alt onscreen keys and stuff - i just use that to resume my screen session for irc from that particular device
http://www.spin.com/articles/chris-friedrich-caspian-bassist-dead/ <- bummer
[19:10]
gizmoguycan I go home yet? [19:17]
m0undsgizmoguy: you have my permission [19:18]
gizmoguym0unds: you should be my boss
I've just got back from a large work lunch that I organised
help finished off a couple jugs of ber
beer*
not like I'm gonna be much use
I'm glad it's read-only friday
[19:20]
m0undshahahaha
i want beer
[19:23]
brycecfwiw toddf once I disabled the pve-enterprise apt repo, the web gui stopped bitching about a license key. [19:36]
.............. (idle for 1h8mn)
up_the_ironsI'm enjoying weechat-android
brycec: so spice runs in your browser or how does that work?
[20:44]
read only Friday LOL [20:52]
............ (idle for 57mn)
brycecup_the_irons: I'm running virt-viewer http://virt-manager.org/
er http://spice-space.org/download.html
not sure which is "right" since I used a package
Apparently there is an HTML5 client though
[21:49]
up_the_ironsbrycec: ah ok [21:55]
brycecWhy I'm pissed off at Chunkhost: http://brycesawesomeapp.com/BryceBot/WhyBryceBotIsNowRetarded.png [22:00]
up_the_ironsbrycec: doesn't Chunkhost put like 100 VMs on a box? ;) [22:01]
brycecWouldn't surprise me
They moved me a few weeks ago, and it went to shit
as you can see
(Also, there is a disappointing lack of IPv6 among all y'all that clicked that.)
[22:01]
gizmoguybrycec: I'm not the one letting the team down [22:04]
brycecgizmoguy: you're in .nz eh? [22:04]
gizmoguyI'm 2001:df0
yup
[22:04]
brycecsadly you're the only ipv6 hit [22:04]
gizmoguythe rest of you should be ashamed [22:05]
up_the_ironsbrycec: lol
brycec: yeah i don't have ipv6 at home
[22:05]
bryceclame. At least tunnel that [22:05]
gizmoguyI can finally turn my v6 on again at home [22:05]
brycectunnel through ARP even [22:05]
gizmoguybrycec: I was tunneling at home, but it killed my youtube performance [22:05]
up_the_ironsi've tried it the past, performance was bad and i don't know why [22:06]
brycecwell congrats on native v6 gizmoguy [22:06]
up_the_ironsgizmoguy: same [22:06]
gizmoguyhowever I see google as of 2 days ago have finally rolled out v6 to all the GGC nodes in NZ
so I might finally get decent youtube performance on v6
[22:06]
brycecbrycec gets full perf with HE [22:06]
gizmoguybrycec: just hit you from the other machine on my desk
on 2001:bd00 I think
[22:08]
brycecso you did dead:beef [22:08]
gizmoguy:) [22:08]
brycec2400:bd00:dead:beef:: [22:08]
gizmoguydead:beef ftw [22:08]
brycecbrycec loves those peaks - over 1 second wait on a single IO operation
brycec goes-a-stabbin
Chunkhost didn't used to be so bad...
Oh well, they drove me to ARP
And ARP is much better (though I have yet to migrate all my services, obviously)
[22:09]
.... (idle for 19mn)
up_the_ironsthere is a corollary somewhere... all services start out good
otherwise they would not have survived to become bad
[22:28]
....... (idle for 31mn)
brachiationdoes anyone here use arch much? [23:00]
brycecbrycec [23:00]
brachiationi'm debating on whether to give it another try [23:00]
brycecnot on a VM, but I do. [23:00]
brachiationjust for general purpose desktop use. [23:00]
brycecExactly what I use it for
And I'm quite happy with it
[23:01]
brachiationi'm mostly used to debian stable and testing. [23:01]
brycecheh, well get used to Sid :p
That said, my desktops rarely break
[23:01]
brachiationmy only concer with sid is there would be months of updates downtime when testing freezes. [23:02]
brycecI wasn't suggesting Sid, only comparing Arch to Sid
i.e. rolling-release, bleeding edge
[23:02]
brachiationi may give is a shot then. i havent used it in about 8 months or so.
and not for very long.
[23:03]
brycecwell now you get systemd, have fun [23:03]
brachiationbrachiation is very excited to switch distros. [23:04]
bryceclol
probably smart to try it in a VM first
Learn any idiosyncrasies etc to minimize downtime when you do switch
[23:04]
brachiationi'll just put all my dotfiles and keys on another machine while i switch over.
i don't keep much on my desktop pc.
and i need to repartition anyway. i think 30 gigs is too much for a system partition.
[23:05]
brycec10 seemed safe... but I bump into that sometimes, so I'd rec 15
Android sdks take up an inordinate amount of space
[23:07]
brachiationand i do want to mess with android sdk eventually :) [23:07]
brycecSo do I. Then I sit down to do a Hello World or similar, but alas it's still in Java and I loathe and detest Java.
Android Studio is nice, but you still have to write Java :(
[23:08]
brachiationbah, java.
i love how the windows java has you install crapware.
[23:11]
brycecoh, you mean java itself? :p [23:11]
brachiationmakes me kind of weary of oracle.
lol
[23:11]
brycec(you can un-check the crapware during install/update)
How is Ask.com even a thing still?
[23:12]
brachiationyeah i know about unchecking it, but i love how it is checked by default. [23:12]
brycecWell for now, I stick to web-based stuff. The web is so insanely cross-platform, it's glorious [23:12]
brachiationand Flash for windows has you install McAfee by default. [23:12]
brycecwell at least that's potentially useful
"here's a condom" vs "here's a sticker"
brycec couldn't come up with anything more useless than a sticker, sorry stickers
[23:13]
brachiationyou don't like toolbars? http://i.imgur.com/Ko5QcQl.jpg [23:14]
bryceclol digg
And this is why IE constantly bitches at you to speed up your IE experience and disable addons
[23:14]
brachiationIE should just have a default homepage of firefox.com
then it self destructs after 1 use.
[23:15]
mike-burnsYou can use Scala instead of Java for Android dev. [23:16]
brycecThat's not really an improvement... [23:16]
mike-burnsI disagree. [23:17]
brycecokay, it's better than Java
but way too Java-like for my taste
[23:17]
mike-burnsYou still need to use the Android SDK, so everything is going to have Java class names. [23:18]
brycecbrycec adds Java to the list of languages to learn someday [23:18]
brachiationi'm still learning the basics of programming at all.
so by the time i get around to java, android may be dead.
maybe sailfish OS will take its' place.
[23:19]
brycecI just wish Google could eat its own dogfood with Android and use Go (instead/in addition to Java) [23:20]
mike-burnsGo is not really an improvement...
brachiation: The basics of programming, like wearing cargo pants and hiking boots to the office, staying up too late, and drinking Mountain Dew?
[23:20]
brachiationyes, yes, and yes. [23:23]
bryceclol [23:24]
brachiationmy sleep patterns are a mess, and have been for the last 6 years.
and i am addicted to caffeine pretty bad.
though not sure about the cargo pants and boots.
[23:24]
brycecI'm drinking cherry coke and wearing cargo shorts with sandals... but I'm writing documentation and testing out proxmox. If I were programming, there were be gummy bears. [23:24]
brachiationswedish fish is my candy of choice. [23:25]
brycecMmm got a baggy of those at home
Gummy foods and profiling ftw
[23:25]
brachiationhaha [23:25]
brycecohshit, 2330 here... I need to get home [23:26]
..... (idle for 20mn)
hazardousim hungry now ...
.......... dammit
[23:46]

↑back Search ←Prev date Next date→ Show only urls(Click on time to select a line by its url)