Guest28513: farstrucker
***: Guest28513 is now known as farstrucker
farstrucker: /win 6
***: jcv has quit IRC (*.net *.split)
toeshred has quit IRC (*.net *.split)
tellnes has quit IRC (*.net *.split)
sga0 has quit IRC (*.net *.split)
novae_ has quit IRC (*.net *.split)
koan has quit IRC (*.net *.split)
twobithacker has quit IRC (*.net *.split)
hive-mind has quit IRC (*.net *.split)
anisfarhana has quit IRC (*.net *.split)
gizmoguy has quit IRC (*.net *.split)
SpeedBus has quit IRC (*.net *.split)
medum has quit IRC (*.net *.split)
raptelan has quit IRC (*.net *.split)
CaZe has quit IRC (*.net *.split)
qbit has quit IRC (*.net *.split)
reardencode has quit IRC (*.net *.split)
staticsafe has quit IRC (*.net *.split)
mike-burns has quit IRC (*.net *.split)
brycec has quit IRC (*.net *.split)
joepie91 has quit IRC (*.net *.split)
milki has quit IRC (*.net *.split)
b^_^d has quit IRC (*.net *.split)
meingtsla has quit IRC (*.net *.split)
pjs has quit IRC (*.net *.split)
mercutio has quit IRC (*.net *.split)
jpalmer has quit IRC (*.net *.split)
jcv has joined #arpnetworks
toeshred has joined #arpnetworks
tellnes has joined #arpnetworks
sga0 has joined #arpnetworks
novae_ has joined #arpnetworks
koan has joined #arpnetworks
twobithacker has joined #arpnetworks
hive-mind has joined #arpnetworks
anisfarhana has joined #arpnetworks
gizmoguy has joined #arpnetworks
SpeedBus has joined #arpnetworks
medum has joined #arpnetworks
raptelan has joined #arpnetworks
CaZe has joined #arpnetworks
qbit has joined #arpnetworks
reardencode has joined #arpnetworks
staticsafe has joined #arpnetworks
mike-burns has joined #arpnetworks
sinisalo.freenode.net sets mode: +o mike-burns
milki has joined #arpnetworks
b^_^d has joined #arpnetworks
meingtsla has joined #arpnetworks
pjs has joined #arpnetworks
mercutio has joined #arpnetworks
jpalmer has joined #arpnetworks
brycec has joined #arpnetworks
joepie91 has joined #arpnetworks
farstrucker has quit IRC (Quit: Lost terminal)
anisfarhana has quit IRC (Ping timeout: 272 seconds)
anis has joined #arpnetworks
NiTeMaRe has joined #arpnetworks
CaZe: up_the_irons: Oh, I thought it were more aggressive than that.
s/it/the limits/
BryceBot: <CaZe> up_the_irons: Oh, I thought the limits were more aggressive than that.
-: CaZe implements his own
brycec: Most likely, up_the_irons doesn't want to interfere [too much], just enough to curtail the most flagrant attacks. One should never rely on their hosting provider (unless you're paying for management) to handle basic security, of course.
-: up_the_irons nods
brycec: The rate limit is more for ARP's network's protection than your own - limit the flood upstream to keep the downstream waters calm.
CaZe: Well, I use publickey.
It's just annoying to have my logs fill up.
brycec: pf rate-limit syntax is stupid easy :) as is setting up fail2ban (depending on your OS)
CaZe: Yeah, I've already set it up. I just never bothered to in the first place.
***: eryc has quit IRC (*.net *.split)
carvite has quit IRC (*.net *.split)
toddf has quit IRC (Ping timeout: 260 seconds)
carvite has joined #arpnetworks
toddf has joined #arpnetworks
ChanServ sets mode: +o toddf
eryc has joined #arpnetworks
Hien has quit IRC (Ping timeout: 240 seconds)
Hien has joined #arpnetworks
RandalSchwartz has joined #arpnetworks
-: RandalSchwartz waves
staticsafe: hey RandalSchwartz
RandalSchwartz: so I'm still not sure I understand how to get to the console of my dedicated box
do I just need to be on the VPN?
brycec: Yes
RandalSchwartz: ok - I'm on the VPN, now what. :)
brycec: up_the_irons: Are you around to help RandalSchwartz ?
I know that you pull up a web page
RandalSchwartz: I see an IPMI URL
brycec: Presumably using the private VPN address of your box
Probably that address, yes.
RandalSchwartz: Oh wait, I remember... we got this far before
then it is broken because Java is broken on OSX.
up_the_irons: http://support.arpnetworks.com/kb/dedicated-servers/how-do-i-access-my-arp-metal-dedicated-server-console
it's pretty clear under "Console Access"
brycec: *ahem* Did I say FAQ-bot, or did I say up_the_irons? :P
RandalSchwartz: Ohh.. it actually works now.
brycec: (You're right though, it is plain and clear)
up_the_irons: brycec: BryceBot should should answer with FAQ links ;)
RandalSchwartz: is it the "console redirection" that I want?
brycec: Someday it might
up_the_irons: :)
RandalSchwartz: how do I get the equivalent of the VNC console?
brycec: (Though I've just started learning Ruby, so I'm going to try and keep PHP out of my head for a little while)
RandalSchwartz: and if I want 8.4 instead of 8.3 release, is that a support request?
brycec: I think you just load the appropriate ISO and reboot the machine to the CD
See the "Virtual Media" section on the FAQ article
RandalSchwartz: right - I see that I can *upload* an 8.4 image... but I'd rather not upload if it's already there somewhere. :)
brycec: RandalSchwartz: No it's not uploading. Read the FAQ carefully. it's linked to ARP's ISO library.
RandalSchwartz: ok
that FAQ doesn't talk about how to VNC though
brycec: To access your server's console, click Remote Control -> Console Redirection -> Launch Console
RandalSchwartz: I tried Launch Console... did nothing.
is it supposed to launch some sort of thing like "chicken of the vnc"?
brycec: So it DOES talk about it, but the button isn't working for you apparently.
up_the_irons: it launches a Java app that is equiv to VNC
RandalSchwartz: yeah, not working :(
mnathani: RandalSchwartz: trying using a windows VM
RandalSchwartz: ok - so my virtual media looks like isomfsbsd-8.3-RELEASE-amd64.iso
mnathani: java generally works better on windows
RandalSchwartz: the iso library pages do not talk about iso[16:09] <up_the_irons> odd, OSX usually isn't an OS where i get a lot of headaches with this stuff
up_the_irons: (if you're on Linux, like me, THEN it can be a bit tricky ;)
RandalSchwartz: do I just cut-n-paste FreeBSD-8.3-RELEASE-amd64-dvd1.iso into the last part of that box?
oops. 8.4 of course
up_the_irons: reardencode: Read the Virtual Media section of the FAQ link above
woops
RandalSchwartz: Oh - there is no dvd
up_the_irons: RandalSchwartz: ^
Path to image: iso<filename>
"Replace <filename> with the ISO filename listed in our ISO Library"
and there's a link to the library
RandalSchwartz: listen - I'm looking at all that
and I'm not stupid
it says "you can change..."
and "here are the isos"
but not how to adapt a web page with links into a form fillout box
do I need to put iso in front of the link?
up_the_irons: Yes, it says verbatim:
"Fill in the form as follows:"
and then "Path to image: iso<filename>"
RandalSchwartz: where are you seeing that?
up_the_irons: are we reading the same thing?
http://support.arpnetworks.com/kb/dedicated-servers/how-do-i-access-my-arp-metal-dedicated-server-console
RandalSchwartz: Oh crap... more scrolling
yes
up_the_irons: scroll down to "Virtual Media"
RandalSchwartz: my fault for not scrolling
up_the_irons: np
RandalSchwartz: But I'll have to find the wget URL for 8.4
brycec: RandalSchwartz: No need, 8.4 is already available
RandalSchwartz: Nope
not 8.4 dvd
brycec: Oh you specifically want the -dvd1.iso
up_the_irons: RandalSchwartz: gimme a URL and i'll wget it real fast for ya
RandalSchwartz: No - not urgent right now
up_the_irons: k
RandalSchwartz: I have a half dozen other issues
that's what happens when I'm sitting across from Neil
up_the_irons: then whenever you're ready just send the URL to support@
brycec: up_the_irons: http://mirrors.arpnetworks.com/freebsd/ISO-IMAGES-amd64/8.4/FreeBSD-8.4-RELEASE-amd64-dvd1.iso
mnathani: http://mirrors.arpnetworks.com/FreeBSD/ISO-IMAGES-amd64/8.4/FreeBSD-8.4-RELEASE-amd64-dvd1.iso
that should work
brycec: mnathani: o/
up_the_irons: :)
RandalSchwartz: the console redirect is erroring in safari with Failed to load resource: Frame load interrupted
maybe chrome will work betterr
mnathani: brycec: jinx
brycec: up_the_irons: Just wondering - do you deduplicate, hardlink from ISO_Library to the mirrors?
Er, from the mirror'd copy to ISO_Library
up_the_irons: RandalSchwartz: chrome will probably be better
brycec: lol no i just copy it over ;)
would probably be smart to hardlink or something...
brycec: up_the_irons: And you complain about running out of disk space? :P
up_the_irons: 8.4 -dvd1 is now there
brycec: up_the_irons: find freebsd/ <etc> -iname '*.iso' -exec ln -f {} ISO_Libary/ +
Or something about like that
up_the_irons: HOT
brycec: Overwrites existing files with the hardlink
RandalSchwartz: ugh - security issues
launch.jnlp can't be opened because it is from an unidentifed devleoper
brycec: Thank you Mr. Jobs
up_the_irons: yeah u have to click trust on the dialog
RandalSchwartz: nope - got past that dialog... failed at "self signed cert" step
up_the_irons: sounds like you need to loosen your security settings
RandalSchwartz: Not sure where that would be
there were no prefs on the java executor
brycec: System Preferences -> Security maybe?
up_the_irons: i'm not sure i've had that problem before; a self signed cert should be OK
mnathani: RandalSchwartz: check out http://superuser.com/questions/404178/importing-a-self-signed-ssl-certificate-on-macos
RandalSchwartz: java complained
it's not the browser complaining
mnathani: oh
brycec: RandalSchwartz: http://faq.mydocsonline.com/786/mdodesktop-jnlp-cant-be-opened-because-it-is-from-an-unidentified-developer/
It's not Java, it's OSX
RandalSchwartz: Yes - I already got past that step
this is the NEXT step
brycec: Sorry thought you were stuck on │16:18:38 RandalSchwartz | launch.jnlp can't be opened because it is from an unidentifed devleoper
(I didn't see where you got past that)
RandalSchwartz: Yeah - I got past that
hazardous: you should be able to just 2fingertap/rightclick
and click open
iirc that automatically only blocks doubleclick executions
but you can 'open anyway' via context menu
brycec: (It's been established that he got past that part.)
But you have a good tip.
RandalSchwartz: even setting "allow applications downloaded from anywhere" in preferences doesn't help
just checked
is there any chance you can give that download a real cert, not a self-cert?
pjs: RandalSchwartz Do you have fbsd in virtualbox / vagrant for salt testing?
RandalSchwartz: not for salt testing no
pjs: How about vagrant / fbsd period?
I've got the latest vagrant and vbox. I can't seem to avoid errors related to "mount_virtualbox_shared_folder".. looks like my synced_folders are mounted OK but it never runs the salt provisioner because this error happens..
RandalSchwartz: you have to use NFS
pjs: Right, I am using nfs
here, let me paste my Vagrantfile
(if you don't mind taking a look)
RandalSchwartz: the timing for NFS and direct salt provisioning is broken
the NFS mounts too late
pjs: of course it does :-/
ok
RandalSchwartz: so I just boot the box, then highstate myself
pjs: yea
ok
RandalSchwartz: ahh! solved the java problem !
requires system preferences -> java
security tab, move slider to medium
I can now see my server's console!
pjs: RandalSchwartz would you mind sharing your Vagrantfile with me? Just want to make sure I'm not mising something.. my box is taking like 3 minutes to boot
RandalSchwartz: yeah gimme sec
pjs: awesome.. thanks man
RandalSchwartz: ... http://pastebin.com/9yKEdfuJ
pjs: right on.. thank you
RandalSchwartz: I built the basebox with https://github.com/wunki/vagrant-freebsd
pjs: That's what I used too
RandalSchwartz: then I disabled the FreeBSD: { enabled: no } for repos
and point at my own poudriere
then pkg upgrade, pkg install py27-salt
pjs: RandalSchwartz Do you use pkg to keep salt updated via salt? Someone in #salt gave me a statefile that uses the git repo to stay updated.. pretty nifty
RandalSchwartz: I have poudriere build things
I like packages... build once, install 6 times
pjs: woah.. salt provisioner is running :)
the missing piece was mounting . to /vagrant instead of /usr/home/vagrant (where I was trying before)
RandalSchwartz: unfortunately, 2014.1.7 is broken from ports
I installed it, and borked my system
luckily, I had a 2014.1.4 around
pjs: error: pathspec '2014.1.7' did not match any file(s) known to git.
grrr
CaZe: Well that's better.
Only 13 lines of log from brute force attempts in the last 8 hours.
brycec: That's quite reasonable