#arpnetworks 2014-07-15,Tue

↑back Search ←Prev date Next date→ Show only urls(Click on time to select a line by its url)

WhoWhatWhen
up_the_ironsCaZe: yes, http://support.arpnetworks.com/kb/main/is-there-a-firewall-filter-rate-limit-or-similar-device-applied-to-my-traffic [00:19]
....... (idle for 31mn)
Guest28513farstrucker [00:50]
***Guest28513 is now known as farstrucker [00:50]
.......... (idle for 46mn)
farstrucker/win 6 [01:36]
................. (idle for 1h20mn)
***jcv has quit IRC (*.net *.split)
toeshred has quit IRC (*.net *.split)
tellnes has quit IRC (*.net *.split)
sga0 has quit IRC (*.net *.split)
novae_ has quit IRC (*.net *.split)
koan has quit IRC (*.net *.split)
twobithacker has quit IRC (*.net *.split)
hive-mind has quit IRC (*.net *.split)
anisfarhana has quit IRC (*.net *.split)
gizmoguy has quit IRC (*.net *.split)
SpeedBus has quit IRC (*.net *.split)
medum has quit IRC (*.net *.split)
raptelan has quit IRC (*.net *.split)
CaZe has quit IRC (*.net *.split)
qbit has quit IRC (*.net *.split)
reardencode has quit IRC (*.net *.split)
staticsafe has quit IRC (*.net *.split)
mike-burns has quit IRC (*.net *.split)
brycec has quit IRC (*.net *.split)
joepie91 has quit IRC (*.net *.split)
milki has quit IRC (*.net *.split)
b^_^d has quit IRC (*.net *.split)
meingtsla has quit IRC (*.net *.split)
pjs has quit IRC (*.net *.split)
mercutio has quit IRC (*.net *.split)
jpalmer has quit IRC (*.net *.split)
[02:56]
jcv has joined #arpnetworks
toeshred has joined #arpnetworks
tellnes has joined #arpnetworks
sga0 has joined #arpnetworks
novae_ has joined #arpnetworks
koan has joined #arpnetworks
twobithacker has joined #arpnetworks
hive-mind has joined #arpnetworks
anisfarhana has joined #arpnetworks
gizmoguy has joined #arpnetworks
SpeedBus has joined #arpnetworks
medum has joined #arpnetworks
raptelan has joined #arpnetworks
CaZe has joined #arpnetworks
qbit has joined #arpnetworks
reardencode has joined #arpnetworks
staticsafe has joined #arpnetworks
mike-burns has joined #arpnetworks
sinisalo.freenode.net sets mode: +o mike-burns
milki has joined #arpnetworks
b^_^d has joined #arpnetworks
meingtsla has joined #arpnetworks
pjs has joined #arpnetworks
mercutio has joined #arpnetworks
jpalmer has joined #arpnetworks
[03:01]
brycec has joined #arpnetworks
joepie91 has joined #arpnetworks
[03:09]
................... (idle for 1h30mn)
farstrucker has quit IRC (Quit: Lost terminal) [04:39]
.......................... (idle for 2h9mn)
anisfarhana has quit IRC (Ping timeout: 272 seconds) [06:48]
anis has joined #arpnetworks [06:53]
...... (idle for 25mn)
NiTeMaRe has joined #arpnetworks [07:18]
................................... (idle for 2h51mn)
CaZeup_the_irons: Oh, I thought it were more aggressive than that.
s/it/the limits/
[10:09]
BryceBot<CaZe> up_the_irons: Oh, I thought the limits were more aggressive than that. [10:09]
CaZeCaZe implements his own [10:09]
brycecMost likely, up_the_irons doesn't want to interfere [too much], just enough to curtail the most flagrant attacks. One should never rely on their hosting provider (unless you're paying for management) to handle basic security, of course. [10:14]
up_the_ironsup_the_irons nods [10:16]
brycecThe rate limit is more for ARP's network's protection than your own - limit the flood upstream to keep the downstream waters calm. [10:17]
....... (idle for 32mn)
CaZeWell, I use publickey.
It's just annoying to have my logs fill up.
[10:49]
brycecpf rate-limit syntax is stupid easy :) as is setting up fail2ban (depending on your OS) [10:50]
CaZeYeah, I've already set it up. I just never bothered to in the first place. [10:50]
........................................ (idle for 3h17mn)
***eryc has quit IRC (*.net *.split)
carvite has quit IRC (*.net *.split)
toddf has quit IRC (Ping timeout: 260 seconds)
carvite has joined #arpnetworks
toddf has joined #arpnetworks
ChanServ sets mode: +o toddf
eryc has joined #arpnetworks
[14:07]
............. (idle for 1h0mn)
Hien has quit IRC (Ping timeout: 240 seconds)
Hien has joined #arpnetworks
[15:12]
.......... (idle for 46mn)
RandalSchwartz has joined #arpnetworks [16:00]
RandalSchwartzRandalSchwartz waves [16:00]
staticsafehey RandalSchwartz [16:00]
RandalSchwartzso I'm still not sure I understand how to get to the console of my dedicated box
do I just need to be on the VPN?
[16:01]
brycecYes [16:01]
RandalSchwartzok - I'm on the VPN, now what. :) [16:01]
brycecup_the_irons: Are you around to help RandalSchwartz ?
I know that you pull up a web page
[16:02]
RandalSchwartzI see an IPMI URL [16:02]
brycecPresumably using the private VPN address of your box
Probably that address, yes.
[16:02]
RandalSchwartzOh wait, I remember... we got this far before
then it is broken because Java is broken on OSX.
[16:02]
up_the_ironshttp://support.arpnetworks.com/kb/dedicated-servers/how-do-i-access-my-arp-metal-dedicated-server-console
it's pretty clear under "Console Access"
[16:02]
brycec*ahem* Did I say FAQ-bot, or did I say up_the_irons? :P [16:03]
RandalSchwartzOhh.. it actually works now. [16:03]
brycec(You're right though, it is plain and clear) [16:03]
up_the_ironsbrycec: BryceBot should should answer with FAQ links ;) [16:03]
RandalSchwartzis it the "console redirection" that I want? [16:03]
brycecSomeday it might [16:03]
up_the_irons:) [16:03]
RandalSchwartzhow do I get the equivalent of the VNC console? [16:03]
brycec(Though I've just started learning Ruby, so I'm going to try and keep PHP out of my head for a little while) [16:04]
RandalSchwartzand if I want 8.4 instead of 8.3 release, is that a support request? [16:05]
brycecI think you just load the appropriate ISO and reboot the machine to the CD
See the "Virtual Media" section on the FAQ article
[16:05]
RandalSchwartzright - I see that I can *upload* an 8.4 image... but I'd rather not upload if it's already there somewhere. :) [16:06]
brycecRandalSchwartz: No it's not uploading. Read the FAQ carefully. it's linked to ARP's ISO library. [16:06]
RandalSchwartzok
that FAQ doesn't talk about how to VNC though
[16:06]
brycecTo access your server's console, click Remote Control -> Console Redirection -> Launch Console [16:07]
RandalSchwartzI tried Launch Console... did nothing.
is it supposed to launch some sort of thing like "chicken of the vnc"?
[16:07]
brycecSo it DOES talk about it, but the button isn't working for you apparently. [16:07]
up_the_ironsit launches a Java app that is equiv to VNC [16:07]
RandalSchwartzyeah, not working :( [16:08]
mnathaniRandalSchwartz: trying using a windows VM [16:08]
RandalSchwartzok - so my virtual media looks like isomfsbsd-8.3-RELEASE-amd64.iso [16:08]
mnathanijava generally works better on windows [16:09]
RandalSchwartzthe iso library pages do not talk about iso[16:09] <up_the_irons> odd, OSX usually isn't an OS where i get a lot of headaches with this stuff [16:09]
up_the_irons(if you're on Linux, like me, THEN it can be a bit tricky ;) [16:09]
RandalSchwartzdo I just cut-n-paste FreeBSD-8.3-RELEASE-amd64-dvd1.iso into the last part of that box?
oops. 8.4 of course
[16:09]
up_the_ironsreardencode: Read the Virtual Media section of the FAQ link above
woops
[16:09]
RandalSchwartzOh - there is no dvd [16:09]
up_the_ironsRandalSchwartz: ^
Path to image: iso<filename>
"Replace <filename> with the ISO filename listed in our ISO Library"
and there's a link to the library
[16:09]
RandalSchwartzlisten - I'm looking at all that
and I'm not stupid
it says "you can change..."
and "here are the isos"
but not how to adapt a web page with links into a form fillout box
do I need to put iso in front of the link?
[16:10]
up_the_ironsYes, it says verbatim:
"Fill in the form as follows:"
and then "Path to image: iso<filename>"
[16:11]
RandalSchwartzwhere are you seeing that? [16:11]
up_the_ironsare we reading the same thing?
http://support.arpnetworks.com/kb/dedicated-servers/how-do-i-access-my-arp-metal-dedicated-server-console
[16:11]
RandalSchwartzOh crap... more scrolling
yes
[16:11]
up_the_ironsscroll down to "Virtual Media" [16:11]
RandalSchwartzmy fault for not scrolling [16:11]
up_the_ironsnp [16:12]
RandalSchwartzBut I'll have to find the wget URL for 8.4 [16:12]
brycecRandalSchwartz: No need, 8.4 is already available [16:12]
RandalSchwartzNope
not 8.4 dvd
[16:13]
brycecOh you specifically want the -dvd1.iso [16:13]
up_the_ironsRandalSchwartz: gimme a URL and i'll wget it real fast for ya [16:13]
RandalSchwartzNo - not urgent right now [16:13]
up_the_ironsk [16:13]
RandalSchwartzI have a half dozen other issues
that's what happens when I'm sitting across from Neil
[16:13]
up_the_ironsthen whenever you're ready just send the URL to support@ [16:13]
brycecup_the_irons: http://mirrors.arpnetworks.com/freebsd/ISO-IMAGES-amd64/8.4/FreeBSD-8.4-RELEASE-amd64-dvd1.iso [16:14]
mnathanihttp://mirrors.arpnetworks.com/FreeBSD/ISO-IMAGES-amd64/8.4/FreeBSD-8.4-RELEASE-amd64-dvd1.iso
that should work
[16:14]
brycecmnathani: o/ [16:14]
up_the_irons:) [16:14]
RandalSchwartzthe console redirect is erroring in safari with Failed to load resource: Frame load interrupted
maybe chrome will work betterr
[16:14]
mnathanibrycec: jinx [16:14]
brycecup_the_irons: Just wondering - do you deduplicate, hardlink from ISO_Library to the mirrors?
Er, from the mirror'd copy to ISO_Library
[16:14]
up_the_ironsRandalSchwartz: chrome will probably be better
brycec: lol no i just copy it over ;)
would probably be smart to hardlink or something...
[16:15]
brycecup_the_irons: And you complain about running out of disk space? :P [16:15]
up_the_irons8.4 -dvd1 is now there [16:16]
brycecup_the_irons: find freebsd/ <etc> -iname '*.iso' -exec ln -f {} ISO_Libary/ +
Or something about like that
[16:16]
up_the_ironsHOT [16:16]
brycecOverwrites existing files with the hardlink [16:16]
RandalSchwartzugh - security issues
launch.jnlp can't be opened because it is from an unidentifed devleoper
[16:18]
brycecThank you Mr. Jobs [16:19]
up_the_ironsyeah u have to click trust on the dialog [16:19]
RandalSchwartznope - got past that dialog... failed at "self signed cert" step [16:19]
up_the_ironssounds like you need to loosen your security settings [16:20]
RandalSchwartzNot sure where that would be
there were no prefs on the java executor
[16:20]
brycecSystem Preferences -> Security maybe? [16:20]
up_the_ironsi'm not sure i've had that problem before; a self signed cert should be OK [16:21]
mnathaniRandalSchwartz: check out http://superuser.com/questions/404178/importing-a-self-signed-ssl-certificate-on-macos [16:21]
RandalSchwartzjava complained
it's not the browser complaining
[16:21]
mnathanioh [16:22]
brycecRandalSchwartz: http://faq.mydocsonline.com/786/mdodesktop-jnlp-cant-be-opened-because-it-is-from-an-unidentified-developer/
It's not Java, it's OSX
[16:22]
RandalSchwartzYes - I already got past that step
this is the NEXT step
[16:22]
brycecSorry thought you were stuck on │16:18:38 RandalSchwartz | launch.jnlp can't be opened because it is from an unidentifed devleoper
(I didn't see where you got past that)
[16:23]
RandalSchwartzYeah - I got past that [16:24]
............ (idle for 56mn)
hazardousyou should be able to just 2fingertap/rightclick
and click open
iirc that automatically only blocks doubleclick executions
but you can 'open anyway' via context menu
[17:20]
brycec(It's been established that he got past that part.)
But you have a good tip.
[17:25]
RandalSchwartzeven setting "allow applications downloaded from anywhere" in preferences doesn't help
just checked
is there any chance you can give that download a real cert, not a self-cert?
[17:36]
..... (idle for 22mn)
pjsRandalSchwartz Do you have fbsd in virtualbox / vagrant for salt testing? [18:00]
RandalSchwartznot for salt testing no [18:02]
pjsHow about vagrant / fbsd period?
I've got the latest vagrant and vbox. I can't seem to avoid errors related to "mount_virtualbox_shared_folder".. looks like my synced_folders are mounted OK but it never runs the salt provisioner because this error happens..
[18:04]
RandalSchwartzyou have to use NFS [18:06]
pjsRight, I am using nfs
here, let me paste my Vagrantfile
(if you don't mind taking a look)
[18:06]
RandalSchwartzthe timing for NFS and direct salt provisioning is broken
the NFS mounts too late
[18:07]
pjsof course it does :-/
ok
[18:07]
RandalSchwartzso I just boot the box, then highstate myself [18:07]
pjsyea
ok
[18:07]
RandalSchwartzahh! solved the java problem !
requires system preferences -> java
security tab, move slider to medium
I can now see my server's console!
[18:10]
pjsRandalSchwartz would you mind sharing your Vagrantfile with me? Just want to make sure I'm not mising something.. my box is taking like 3 minutes to boot [18:20]
RandalSchwartzyeah gimme sec [18:21]
pjsawesome.. thanks man [18:21]
RandalSchwartz... http://pastebin.com/9yKEdfuJ [18:22]
pjsright on.. thank you [18:22]
RandalSchwartzI built the basebox with https://github.com/wunki/vagrant-freebsd [18:22]
pjsThat's what I used too [18:23]
RandalSchwartzthen I disabled the FreeBSD: { enabled: no } for repos
and point at my own poudriere
then pkg upgrade, pkg install py27-salt
[18:25]
pjsRandalSchwartz Do you use pkg to keep salt updated via salt? Someone in #salt gave me a statefile that uses the git repo to stay updated.. pretty nifty [18:27]
RandalSchwartzI have poudriere build things
I like packages... build once, install 6 times
[18:27]
pjswoah.. salt provisioner is running :)
the missing piece was mounting . to /vagrant instead of /usr/home/vagrant (where I was trying before)
[18:27]
RandalSchwartzunfortunately, 2014.1.7 is broken from ports
I installed it, and borked my system
luckily, I had a 2014.1.4 around
[18:28]
pjserror: pathspec '2014.1.7' did not match any file(s) known to git.
grrr
[18:28]
............ (idle for 58mn)
CaZeWell that's better.
Only 13 lines of log from brute force attempts in the last 8 hours.
[19:26]
brycecThat's quite reasonable [19:27]

↑back Search ←Prev date Next date→ Show only urls(Click on time to select a line by its url)