1151627037 Q * Piet Quit: :tiuQ 1151627066 Q * FireEgl Ping timeout: 480 seconds 1151627280 N * sarnold sars 1151627761 J * FireEgl Atlantica@Atlantica.US.TO 1151629773 Q * meandtheshell Quit: bye bye ... 1151630816 Q * sladen Killed (services.oftc.net (Too many invalid passwords)) 1151630821 J * sladen paul@starsky.19inch.net 1151631733 J * DarthVader ~Aniken@203.177.212.163 1151633919 J * mire ~mire@64-167-222-85.COOL.ADSL.VLine.Verat.NET 1151642066 J * Viper0482 ~Viper0482@p5497680A.dip.t-dialin.net 1151642268 J * coocoon ~coocoon@p54A06C5D.dip.t-dialin.net 1151642891 M * coocoon morning 1151642927 J * Hollow_ ~hollow@cl-52.muc-02.de.sixxs.net 1151643202 Q * Hollow Ping timeout: 480 seconds 1151644922 Q * Viper0482 Remote host closed the connection 1151645001 Q * Hollow_ Remote host closed the connection 1151645007 J * Hollow ~hollow@cl-52.muc-02.de.sixxs.net 1151645999 J * crazy_penguin ~Unknown@86.105.69.248 1151646347 N * otaku42_away otaku42 1151646348 M * crazy_penguin good morning ladies and gentlemans! a good morning to all of you! 1151646364 M * crazy_penguin :) 1151646375 M * tokkee Good morning crazy_penguin ;-) 1151646390 M * tokkee crazy_penguin: You do sound very motivated ;-) 1151646418 M * crazy_penguin yes 1151646421 M * crazy_penguin i'm happy 1151646424 M * crazy_penguin :) 1151646599 A * tokkee is tired... ;-) 1151647311 J * zkbrsnie ~zkbrsnie@83-64-146-226.klosterneuburg.xdsl-line.inode.at 1151647797 Q * cdrx Ping timeout: 480 seconds 1151648377 J * Zaki[] ~Zaki@212.107.127.184 1151648535 Q * Nam Ping timeout: 480 seconds 1151648742 Q * Zaki_ Ping timeout: 480 seconds 1151649355 Q * click Ping timeout: 480 seconds 1151650089 J * schimmi ~sts@port-212-202-73-176.dynamic.qsc.de 1151650305 J * Nam ~nam@S0106001195551ff0.va.shawcable.net 1151650502 Q * DarthVader Ping timeout: 480 seconds 1151650524 J * ||Cobra|| ~cob@pc-csa01.science.uva.nl 1151650985 J * cdrx ~legoater@cimai.net4.nerim.net 1151651178 J * DarthVader ~Aniken@203.177.212.163 1151651849 Q * Hollow Remote host closed the connection 1151651855 J * Hollow ~hollow@cl-52.muc-02.de.sixxs.net 1151652102 Q * pisco Read error: Connection reset by peer 1151652965 Q * Aiken Ping timeout: 480 seconds 1151652982 Q * pusling Ping timeout: 480 seconds 1151653100 J * pusling pusling@195.215.29.124 1151653602 Q * schimmi Ping timeout: 480 seconds 1151654717 J * dna ~naucki@dialer-150-241.kielnet.net 1151654857 Q * crazy_penguin Ping timeout: 480 seconds 1151655130 J * meandtheshell ~markus@85-124-175-107.dynamic.xdsl-line.inode.at 1151655647 J * Milf ~Miranda@ipsio71.ipsi.fraunhofer.de 1151656728 J * schimmi ~sts@aquila.tcs.ifi.lmu.de 1151657268 J * dlezcano ~dlezcano@cimai.net4.nerim.net 1151657892 Q * cdrx Quit: Leaving 1151658484 J * s0undt3c1 ~s0undt3ch@bl7-241-64.dsl.telepac.pt 1151658484 Q * s0undt3ch Read error: Connection reset by peer 1151658495 N * s0undt3c1 s0undt3ch 1151658776 Q * DarthVader Quit: Leaving 1151658937 J * shedi ~siggi@ipfw-gw.ec.is 1151660151 J * click click@ti511110a080-2110.bb.online.no 1151660430 J * DarthVader ~Aniken@203.177.212.163 1151660784 J * Viper0482 ~Viper0482@p5497680A.dip.t-dialin.net 1151661742 Q * michal` Ping timeout: 480 seconds 1151662085 J * michal` ~michal@www.rsbac.org 1151663268 Q * mcp Read error: Connection reset by peer 1151663275 J * mcp ~hightower@wolk-project.de 1151663492 Q * otaku42 Ping timeout: 480 seconds 1151664803 Q * weasel Ping timeout: 480 seconds 1151664887 J * weasel weasel@asteria.debian.or.at 1151664986 J * otaku42 ~otaku42@legolas.otaku42.de 1151665047 N * otaku42 Guest113 1151665413 J * ntrs ~ntrs@62.162.190.139 1151665413 Q * Hollow Read error: Connection reset by peer 1151665467 J * Hollow ~hollow@cl-52.muc-02.de.sixxs.net 1151667462 M * phedny I am now having a question about mixed x86 and x86_64 contexts 1151667501 M * phedny is it possible (on a x86_64 kernel) to have the host running a completelly 32-bit install, to still have 64-bit vservers? 1151667565 M * phedny the point is that I'm thinking about a 64-bit desktop PC, but I want my main X environment in 32-bit so Java and Flash and things like that wil lwork 1151667618 M * Viper0482 i have a 64 bit system and just installed a 32 bit browser so java and flash is working fine 1151667686 M * phedny what distro do you use? and was it easy to setup? 1151667698 M * Viper0482 fedora core 5 1151667737 Q * DarthVader Ping timeout: 480 seconds 1151667781 M * Viper0482 i just created a new i386.repo in /etc/yum.repo.d/ 1151667862 M * Viper0482 and replaced the $basearch with i386 1151667958 M * phedny hmm, okay 1151667975 M * phedny well, maybe I'll give that a try, but I'm not used to running FC ;) 1151667984 M * phedny tkz anyway :) 1151668093 M * Viper0482 no problem 1151668363 M * coocoon daniel_hozac: ping 1151668415 J * DarthVader ~Aniken@203.177.212.163 1151668484 M * FaUl_ phedny: running 64bit-vservers on 32bit-host should work 1151668912 Q * DarthVader Ping timeout: 480 seconds 1151669177 M * harry FaUl_: ?????? 1151669181 M * harry how would you do that? 1151669222 Q * Johan Ping timeout: 480 seconds 1151669254 M * FaUl_ harry: well, let me be more detailed: on an x86_64 vserver enabled kernel with 32bit userland on the host it should be no problem to install an x86_64 guest-system 1151669305 M * harry how would a 64 bit lib convert addresses to 32 bits without possible loss of address space etc??? 1151669309 J * Plnt ~someone@goodspeed.vscht.cz 1151669312 M * harry the other way around should never be a problem 1151669500 M * phedny harry: but at what point does such a lib then need to convert addresses? 1151669597 M * harry phedny: all jumps are 32 bits addresses on your host 1151669606 M * harry in you virtual servers, they are 64 bits 1151669614 M * harry how will that ever work??? 1151669626 A * harry looks up a 64 bit address 1151669627 M * phedny but the host and the guests don't interact with jumps? 1151669635 M * phedny the kernel is 64 bit 1151669647 M * harry ? 1151669650 M * harry ah, mkay 1151669655 M * harry then, it might be possible 1151669671 M * harry sry, i misread 1151669674 M * phedny like, my plan will be: 1151669686 M * harry i thought a x86 cpu, 32 bit libs/system and 64 bit vservers 1151669688 M * harry will never work 1151669701 M * phedny install 32 bit distro, compile 64 bit kernel and then run 64 bit vserver(s) 1151669713 M * harry yeah, that's no prob 1151669736 M * phedny no, but since I have to buy a new PC, I'll pick a 64-bit CPU so it may last for some upcoming years 1151669784 M * harry good idea 1151669801 M * harry cool song now: 1151669803 M * harry mms://clusterstreamhobo.telenet-ops.be/Qmusic_high 1151669806 J * Johan ~finger@lounge.datux.nl 1151669820 M * phedny also I'm thinking whether it would be wise to invest in a dual core CPU or just pick a single core one 1151669830 M * harry cliff richard and the young ones 1151669843 M * harry depends on what you want to do with it 1151669848 M * phedny most of the time it will not make sense for me, but sometimes (espacially Java startups) I have to wait 1151669875 A * harry uses a dual p3-800 @ home 1151669888 M * harry quite nice... but i don't need more cpu's for desktop work 1151669899 M * phedny :) 1151669910 M * phedny I'm thinking to integrate some services into vservers 1151669915 M * phedny on my desktop 1151669918 M * harry then again... my laptop is a centrino 1,73GHz 1151669924 M * harry and this irc runs... on a p200 :) 1151669926 M * phedny to safe money for additional hardware 1151669934 M * harry *save ;) 1151669939 M * phedny :) 1151670001 M * phedny let's rephrase to: keep the money in safe hands :p 1151671721 J * cdrx ~legoater@cimai.net4.nerim.net 1151671814 M * r_marvin one question: if the vservers aren't unified, i lose the "memory sharing" feature? 1151671894 Q * tokkee Quit: server reboot 1151672335 J * cattivik ~andrea@service.cab.unipd.it 1151672633 M * cattivik my new host with 2.6.17-vs2.0.2-rc24 seems to be awfully slow with loading modules and (or?) dealing with software raid... :( 1151672647 Q * dna Quit: Verlassend 1151672667 M * cattivik but also the debian 2.6.17-vserver pre-compiled kernel is *very* slow in this box... 1151672694 M * cattivik i suspect i'm wrong somewhere but i could not say where 1151673196 Q * zkbrsnie Quit: 1151673445 J * tokkee tokkee@casella.verplant.org 1151673506 Q * shedi Quit: Leaving 1151673653 J * tanjix ~j.eichler@office.star-hosting.de 1151673658 M * tanjix hi @ll 1151674536 J * tempoks tempoks@virtual.kk4.biz 1151674541 M * tempoks hi 1151674553 M * tempoks can i use vserver without kernel rebuild? 1151674555 Q * kir Read error: Connection reset by peer 1151674567 J * kir ~kir@swsoft-mipt-nat.sw.ru 1151674569 M * tempoks because i have now vserver what is maked uml 1151674706 J * doener ~doener@i577BA632.versanet.de 1151674717 M * doener hidiho 1151674750 J * crazy_penguin ~Unknown@86.105.69.248 1151675303 M * Milf Yum doener 1151675575 N * Bertl_oO Bertl 1151675578 M * Bertl morning folks! 1151675584 M * doener hi Bertl 1151675627 M * Bertl tempoks: hmm, unless you already have a vserver kernel, I'd say no :) 1151675645 Q * click Ping timeout: 480 seconds 1151675688 M * coocoon hello bertl 1151675718 Q * tempoks Quit: leaving 1151675748 M * doener Bertl: heh, whatever he asked, I guess he didn't like your answer ;) 1151675769 M * Bertl probably :/ 1151676015 Q * schimmi Ping timeout: 480 seconds 1151676166 M * r_marvin sorry to ask again, i'll try to rephrase: besides disk space, what disadvantages do i have if i don't use unified vservers? 1151676199 M * r_marvin i'm more interested in the "shared memory" part, and i'm not quite familiar with how it works 1151676238 M * tanjix i am using util-vserver from debian package. is it possible to change the path to the vservers, originally @ /var/lib/vservers to /vservers ? 1151676242 M * tanjix what is the config file to change that? 1151676243 M * Bertl r_marvin: none 1151676263 M * Bertl tanjix: you have to rebuild the tools to change the default 1151676266 M * doener tanjix: /etc/vservers/.defaults/vdirbase 1151676274 M * doener change that symlink 1151676287 M * Bertl tanjix: but you can adjust athe symlink and/or specify a new one for each guest 1151676300 M * Bertl tanjix: btw, LTNS! 1151676315 M * r_marvin so the kernel manages to figure out that all libc's are the same and share that memory space , for example ? 1151676327 M * tanjix Bertl: LTNS? :) 1151676358 M * Bertl tanjix: Long Time No See :) 1151676377 M * tanjix Bertl: ahh :) Yes, It's long time ago i've been here :) 1151676381 M * Bertl r_marvin: nope, that's the 'shared' part of the unification 1151676403 M * tanjix doener: Just changing the symlink will create all new vservers under /vservers ? 1151676410 M * Bertl r_marvin: if the libcs are not unified, they will be mapped again and again ... 1151676424 Q * cdrx Read error: Operation timed out 1151676452 M * r_marvin Bertl: any useful documentation about that? i couldn't find something relevant in the wiki 1151676485 M * Bertl r_marvin: it's no special magic, it's just using what is already there on linux 1151676505 M * Bertl r_marvin: basically all caching and mapping in linux (most unices too) go via the inode 1151676533 M * r_marvin ok, so i _have_ to unify at least the libs to save memory, right? 1151676533 M * Bertl r_marvin: hard links (the mechanism used for unification) are references to a single inode 1151676550 M * r_marvin i understood (partially) the disk part 1151676560 M * Bertl r_marvin: so iif you want the gain, you have to unify them :) 1151676580 M * Bertl r_marvin: with the devel branch, you also get CoW (copy on write) 1151676582 M * r_marvin i avoided unification until now, because it's a drag with updates 1151676588 M * tanjix and another question: can "vserver ... build ..." only create debian vservers or other dists too ? 1151676615 M * Bertl r_marvin: how so? 1151676638 M * Bertl tanjix: many variants, have you checked the alpha util-vserver page? 1151676643 M * doener tanjix: There's another reference in /usr/lib/util-vserver/util-vserver-vars, you might need to adjust that as well 1151676644 M * r_marvin well, i update my vservers one at a time 1151676656 M * r_marvin and that would spoil the unified files 1151676662 M * Bertl r_marvin: that's perfectly fine with unification 1151676678 M * Bertl r_marvin: you re-unify them afterwards (or better use vhashify) 1151676699 M * r_marvin also, i believe that permissions might need to be the same (as it's the same inode) 1151676713 M * Bertl that is correct 1151676728 M * Bertl check this (tanjix and r_marvin): http://linux-vserver.org/alpha+util-vserver 1151676733 M * tanjix Bertl: No, i think i have not. Is there a doc on how to create e.g. a suse or FC vserver ? 1151676758 M * tanjix doener: i looked in that file but don't really get on well with ? 1151676782 Q * coocoon Quit: 1151676830 N * Guest113 otaku42_away 1151676871 M * doener tanjix: search for __DEFAULT and you should find the relevant parts... but AFAICT these vars are just a fallback if something's wrong with the vdirbase symlink 1151677010 M * micah hi all 1151677097 M * tanjix vs-master:~# vserver rh9 build -m apt-rpm --hostname vserver.sh --netdev eth0 --interface 192.168.3.1 -- -d fc1 1151677097 M * tanjix mount: mount point /etc/rpm does not exist 1151677097 M * tanjix vs-master:~# 1151677111 M * tanjix must there be iso images or something like that ? 1151677125 M * micah is there a way to remove /proc entries from a vserver? a chkrootkit process that runs every night tries to access /proc/1/fd and gets a permission denied, if it didn't exist it wouldn't look at it 1151677213 M * Bertl micah: if you start your own init inside, it will be able to access that 1151677227 M * Bertl micah: it's part of the fake init blend through 1151677241 M * Bertl micah: but IMHO the chrootkit is broken if it checks that 1151677343 M * doener Bertl: well, or the rootkit is broken by producing a situation that needs such a check to find the rootkit... and I doubt that the rootkit author will fix that 1151677368 M * micah Bertl: i think chkrootkit is looking for hidden or otherwise strange /proc entries 1151677378 M * micah not actually trying to scan the floppy drive :) 1151677405 M * doener micah: "fd" is "file descriptors" not "floppy disk" :) 1151677422 M * micah so the init would have to be configured in /etc/vservers/, not just started by hand inside the vserver? 1151677461 M * Bertl micah: the thing is, the chrootkit is (for whatever reason) trying to access stdin of init 1151677473 M * Bertl *oops* stdout 1151677501 M * Bertl but that makes no real sense to me, except if that happens from 1151677519 M * Bertl a typical 'find' scan which does not except procfs 1151677550 M * Bertl so IMHO the 'proper' fix would be to teach the rootkit not to look in procfs for example 1151677579 M * micah ahh, that could be... I should look at chkrootkit to see what its doing, I just thought removing /proc/1/fd would be easier than mucking around in that code 1151677622 M * micah so i do have an init process running in the vserver, is it the wrong type? 1151677623 M * micah root 1 0.0 0.0 1956 548 ? S Jun01 3:01 init [2] 1151677643 M * doener Bertl: how do you know if it's stdin or stdout? did you just strace that locally? 1151677676 M * Bertl doener: no, I just guessed it, 0 = stdin, 1 = stdout, 2 = stderr 1151677727 M * doener Bertl: I know, but the path was just /proc/1/fd actually... AFAICT there's no fd involved yet.. just the directory 1151677778 M * Bertl doener: right you are ... *getting some coffee now* 1151677799 M * doener ah, you read that as .../fd/1 :) did consider that 1151677802 M * doener s/did/didn't/ 1151677935 M * tanjix Do I need any isos or s.th oin my host machine to create e.g. an rh9 vserver? Didn't really relaize the working method :( 1151678031 M * doener tanjix: debian host, right? all build methods except debootstrap need the used tools to be already installed (debootstrap is fetched from the debian repository as it works virtually everywhere) 1151678055 M * doener so you apt-rpm based build fails, because debian has no apt-rpm 1151678056 M * tanjix doener: Correct, it's a debian sarge host machine 1151678125 M * tanjix doener: i wrote some line above an error when trying to user vserver rh9 build .... 1151678139 M * tanjix doener: it said "mount: mount point /etc/rpm does not exist" 1151678143 M * doener tanjix: yeah, I just explained the error ;) 1151678143 M * Bertl doener: it's easy to install the missing stuff nowadays 1151678171 M * tanjix doener: ok, but i don't understand :( so i must install apt-rpm ? 1151678175 M * Bertl doener: I managed to install a centos guest with yum on a debian system without issues (even was an alpha!) 1151678178 M * doener Bertl: how would that work for apt-rpm? doesn't that conflict with "apt-deb"? 1151678202 Q * Viper0482 Quit: one day, i'll find this peer guy and then i'll reset his connection!! 1151678217 M * doener Bertl: debian sarge? if it was etch, ok, there's yum for etch.... for sarge you need a backport or install yum yourself AFAIK 1151678219 J * Viper0482 ~Viper0482@p5497680A.dip.t-dialin.net 1151678230 M * Bertl doener: sarge + tons of backports :) 1151678265 M * Bertl doener: but does sarge without backports work for anybody? 1151678283 M * doener Bertl: sure, I know lots of servers that run plain sarge... 1151678345 M * doener and I forgot that you like home-grown distros... are you still running that Mandrake 8.2(?) beast? 1151678375 M * Bertl yeah, it's a mandrake 8.2/9.1/2006.0/2007.0 hybrid now :) 1151678404 M * Bertl probably I should switch to LFS :) 1151678520 A * doener still wonders how you manage to a) keep that thing running, b) not mess up between distro and homegrown rpms, c) keep up with security issues... 1151678715 Q * Viper0482 Read error: Operation timed out 1151678858 M * tanjix doener: can you give me a shor doc on how to get that to work? :) 1151678905 J * schimmi ~sts@port-212-202-73-176.dynamic.qsc.de 1151678966 M * doener tanjix: you should probably ask Bertl instead, I never tried that on sarge 1151679000 M * Bertl tanjix: well, it was actually quite simple, I first started with adding all the backport stuff to my sources.list 1151679001 M * tanjix ok, @ Bertl: can you give a short explanation? :) 1151679017 M * Bertl tanjix: then I installed yum (via apt-get install) and checked that it worked 1151679029 M * tanjix Bertl: can you give me the sources for the backports you used ? 1151679033 M * Bertl tanjix: then I updated the tools to the latest backports version 1151679077 M * Bertl tadeb http://www.backports.org/debian/ sarge-backports main 1151679077 M * Bertl deb-src http://www.backports.org/debian/ sarge-backports main 1151679081 M * Bertl -ta 1151679107 M * Bertl I'll upload that, you need to tweak the preferences too 1151679157 M * Bertl nah, don't have access to that machine right now ... 1151679175 M * Bertl but google for setting up backports, that should give you the required hints 1151679182 J * idelac idelac@geodet.geof.hr 1151679218 M * Bertl welcome idelac! 1151679224 M * idelac hello 1151679336 M * tanjix Bertl: I added that to my sources.list. now apt-get install yum ? 1151679366 M * Bertl try that, might work (you might have to add the version somehow) 1151679382 M * Bertl something like this: 1151679383 M * Bertl apt-get -t sarge-backports install yum 1151679402 J * Viper0482 ~Viper0482@p5497661B.dip.t-dialin.net 1151679404 M * tanjix ok, running. this will install a lot of other stuff on my machine 1151679410 M * tanjix finished 1151679420 M * tanjix how can i test if it works ? 1151679429 Q * idelac Quit: BitchX: now with wings 1151679463 M * Bertl tanjix: try to update util-vserver too 1151679482 M * Bertl (similar command) 1151679503 M * tanjix done 1151679576 M * Bertl now try 1151679586 J * cdrx ~legoater@cap31-3-82-227-199-249.fbx.proxad.net 1151679588 M * Bertl vserver centos build -m yum -- -d centos42 1151679618 M * tanjix vs-master:/vservers# vserver centos build -m yum -- -d centos42 1151679618 M * tanjix mount: mount point /etc/rpm does not exist 1151679618 M * tanjix vs-master:/vservers# 1151679652 M * Bertl mkdir /etc/rpm 1151679688 M * tanjix did so, now: 1151679689 M * tanjix Warning, could not load sqlite, falling back to pickle 1151679689 M * tanjix http://mirror.centos.org/centos/4.2/updates/i386/repodata/repomd.xml: [Errno 14] HTTP Error 404: Not Found 1151679689 M * tanjix Trying other mirror. 1151679689 M * tanjix Cannot open/read repomd.xml file for repository: update 1151679690 M * tanjix failure: repodata/repomd.xml from update: [Errno 256] No more mirrors to try. 1151679690 M * tanjix Error: failure: repodata/repomd.xml from update: [Errno 256] No more mirrors to try. 1151679730 M * Bertl ah, I got the repsoitory updates too .. sec maybe I can find them 1151679792 M * Bertl try http://www.c2root.be/distri.tgz 1151679834 M * Bertl you want to unpack that and move the contents into /etc/vservers/.distributions/ 1151679840 M * tanjix ok 1151679851 M * Bertl i.e. without the 'distributions' 1151679929 M * tanjix finished. now trying again ? 1151679934 M * Bertl yup 1151679947 M * tanjix same error 1151679955 M * Bertl the mirror one? 1151679974 M * Bertl that is unusual, your networking/resolving is okay? 1151679975 M * tanjix complete output when trying again: 1151679981 M * tanjix vs-master:~# vserver centos build -m yum -- -d centos42 1151679981 M * tanjix You are using a version of yum which is insecure and broken in chroot 1151679981 M * tanjix related operations; either apply the patches shipped in the 'contrib/' 1151679981 M * tanjix directory of util-vserver, or ask the author of yum to apply them 1151679981 M * tanjix (preferred). 1151679982 M * tanjix In the meantime, 'vyum' will continue with dirty hacks which might not 1151679982 M * tanjix work when the vserver is running and local DOS attacks are possible. 1151679984 M * tanjix Execution will continue in 5 seconds... 1151679984 M * tanjix Warning, could not load sqlite, falling back to pickle 1151679986 M * tanjix http://mirror.centos.org/centos/4.2/updates/i386/repodata/repomd.xml: [Errno 14] HTTP Error 404: Not Found 1151679986 M * tanjix Trying other mirror. 1151679988 M * tanjix Cannot open/read repomd.xml file for repository: update 1151679988 M * tanjix failure: repodata/repomd.xml from update: [Errno 256] No more mirrors to try. 1151679990 M * tanjix Error: failure: repodata/repomd.xml from update: [Errno 256] No more mirrors to try. 1151679990 M * tanjix vs-master:~# 1151679992 M * tanjix yes, it is ok 1151680003 M * Bertl try to use paste.linux-vserver.org for more than 3 lines or so) 1151680009 M * tanjix ok :) 1151680030 M * Bertl are you sure you did put the contents into the right dir :) 1151680035 M * tanjix yes 1151680038 M * tanjix in the dir you told me 1151680057 M * Bertl okay, let's try with the following sequence of commands: 1151680069 M * Bertl mv /etc/vservers/.distributions /etc/vservers/.distributions.old 1151680092 M * Bertl tar xzfC distri.tgz /etc/vservers/ 1151680104 M * Bertl mv /etc/vservers/distributions /etc/vservers/.distributions 1151680174 M * tanjix done 1151680177 M * Bertl ah, you did an 'apt-get update' after you added the backports, yes? 1151680188 M * tanjix sure :) 1151680193 M * Bertl okay, good, try again 1151680234 M * tanjix http://paste.linux-vserver.org/138 1151680297 M * Bertl seems the 4.2 mirror is gone, try with centos4 instead 1151680312 M * Bertl ah, centos43 even better :) 1151680318 M * tanjix centos4 works 1151680352 Q * FireEgl Ping timeout: 480 seconds 1151680393 M * Bertl there are yum repositories for many distros, all of them should work with a little tweaking of the .distribution files 1151680430 M * Bertl tanjix: you might want to add a 'yum on debian' page to the wiki :) 1151680443 M * micah so looking at chkrootkit, it calls a program called ifpromisc which determines if devices are improperly in promisc. mode, or hidden in odd ways 1151680460 M * micah and does it this way: 1151680460 M * micah * inodes from /proc/net/packet, when a match is found, the processes exe 1151680460 M * micah * is stored */ 1151680486 M * micah basically walking the process fd dir 1151680514 M * Bertl and init shows up in /proc/net/packet or what? 1151680529 M * micah and doing things like this: if (snprintf(path, sizeof(path), "/proc/%s/fd", process) == -1) 1151680599 M * Bertl where does 'process' come from? 1151680633 M * micah no, nothing is in /proc/net/packet, looking for process 1151680676 M * Milf Hey Bertl, I tried 2.6.17-vs2.0.2-rc23.2-smp-VS_REMAP_SADDR but that also didn't solve my localhost problem. 1151680687 M * Bertl daniel_hozac, doener, micah, @all@: btw, I had a funny idea, maybe you can comment on it: 1151680695 M * Milf So one last question: What is the problem with mapping localhost into just one Guest on the server? 1151680696 M * tanjix Bertl: http://paste.linux-vserver.org/139 - is that ok ? 1151680719 M * micah huh, it only is called like: lk_processes(); 1151680724 M * micah err, walk_processes(); 1151680728 M * Bertl Milf: I still assume a configuration issue on your side ... 1151680758 M * Bertl micah: does that start at 1 and iterate over all pids (up to 65535) or what? 1151680767 M * Milf I tried all that, changed all parameters that responded to either 127.0.0.1 or localhost, but that didn't help either. 1151680787 M * Bertl tanjix: seems to happen sometimes, didn't figure out why 1151680802 M * tanjix Bertl: ok, then it shouldn't matter 1151680816 M * Bertl Milf: we will investigate it, but we need a simple test case 1151680829 M * Bertl daniel_hozac, doener, micah, @all@: back to my idea :) 1151680842 M * Milf Thing is, I probably won't be able to keep my current job longer than the end of the year. So I don't care, I just want to get some cool things done. :) 1151680860 M * Milf Bertl: Who do you mean when you say 'we will investigate'? 1151680918 M * Bertl what if we release 2.0.2 _and_ shortly after the 2.1.1 as 2.2.0 and just make two 'stable' trees instead of one? and have a new devel tree 2.3.x with all the v6 stuff and such? 1151680927 M * tanjix the centos mirror seems to be veeeeery slow :) 1151680942 M * Bertl Milf: you, me, the others :) 1151680968 M * micah Bertl: looks like it walks over every process ID on the system 1151680981 M * Milf Ok, I don't have too much time left today. So tell me if I can prepare anything for the investigation. 1151680985 A * micah ponders bertl's idea 1151680989 M * Bertl micah: then changing it to starting at 2 instead of one should fix it 1151681005 M * Bertl micah: and if init is compromised, you can save the chrootkit anyways :) 1151681019 M * Bertl -ch 1151681022 M * Hollow Bertl: well, why not release 2.1.1 and put v6 and such in 2.2.2? 1151681028 M * Hollow 2.1.2 1151681044 M * micah Bertl: yes, but that means hacking that code, i'd much rather just make a vserver config option to enable an init, if possible 1151681058 M * Bertl Hollow: thing is, after all that testing and fixing up, the devel tree got pretty stable itself 1151681118 M * Hollow do you plan to add new features to 2.0.*? 1151681138 M * micah thinking of people coming into the project trying to figure out which patchset to use, they are going to look at the two stable ones and need to be able to make a decision about which they should use 1151681147 M * Bertl in this case, we would basically stop adding features to 2.0.x 1151681157 M * Bertl (only bugfixes) 1151681173 M * Hollow in other words, 2.2 would be the new stable 1151681180 M * Bertl and would continue developing in 2.3.x, releasing stable 2.2.x as new stable, yes 1151681186 J * stefani ~stefani@tsipoor.banerian.org 1151681188 M * Bertl very similar to 2.4 and 2.6 kernel 1151681193 M * Bertl welcome stefani! 1151681198 M * Hollow yeah, that's ok with me 1151681200 M * stefani alo, salut 1151681274 M * Bertl micah: of course we would label them slightly different (e.g. very stable legacy tree) and stable main tree or so) and give some kind of comparison referring to 2.4 and 2.6 as examples ... 1151681275 M * Hollow but apropos stable.. i got some strange error lately... when starting apache shmget return ENOSPC, but no limits are set, and ipcs on the host shows much sem arrays 1151681312 M * Bertl Hollow: sounds like shmem which is not cleaned up 1151681313 M * Hollow can this be caused by "reboot -f" in guests? 1151681329 M * Bertl Hollow: only if you use dynamic contexts :) 1151681351 M * Hollow ah yeah, please let's disable them completely in 2.2 ;) 1151681359 M * micah hehe 1151681360 M * Hollow s(disable/remove/ 1151681374 M * Bertl that would be my choice then, same for the _very_ old legacy stuff 1151681392 M * Hollow finally :) 1151681397 M * Hollow like the old net stuff? 1151681409 M * tanjix Bertl: it gives out a lot of "errors" á la: No math for: PACKAGE-NAME 1151681480 M * Bertl Hollow: for now it's just a weird idea, need some more input first .) 1151681492 M * micah let me make sure I understand... first release 2.0.2 as the next stable release. Then shortly thereafter release 2.1.1 as a 2.2.0 stable release. So there would be stable release 2.0.2 and 2.2.0? 1151681513 M * Bertl micah: yes, similar to 2.4 and 2.6 kernels 1151681524 M * micah ah, i understand... 1151681531 M * tanjix Bertl: http://paste.linux-vserver.org/140 1151681547 M * r_marvin more like 2.2 and 2.4 , as 2.7 appears to be missing 1151681587 M * Bertl r_marvin: right 1151681590 M * tanjix btw: using centos43 does not work 1151681632 M * Bertl tanjix: okay, but the basic install stuff seems to work (you are on your own here, but you might bug debian folks regarding yum and friends) 1151681674 M * Bertl tanjix: I did a centos42 install here a week (or two) ago, when the mirror still had it 1151681684 M * tanjix I tried to start ht evserver now, but it does not work 1151681691 M * tanjix it says there would be no config ? 1151681697 M * tanjix must i create that by hand ? 1151681709 M * Bertl no, the config is created by the build process 1151681734 M * tanjix ahh, my fault 1151681740 M * tanjix just mistyped the name 1151681767 M * micah Bertl: i dont think its a bad idea, however I think people are going to want to be able to make educated decisions about which stable that they should use 1151681774 M * Bertl tanjix: depending on the distro, you might need to set the initstyle to plain/sysv 1151681793 M * Bertl micah: that's a good job for the feature matrix, IMHO 1151681796 M * micah Bertl: so people will be always asking here why they should use stable 2.0.2 over 2.2.0 1151681841 M * Bertl http://linux-vserver.org/Release+FAQ 1151681847 M * micah right, so the answer would be usually -- if you need to maintain legacy because you haven't transitioned, you should use 2.0.2, otherwise you should use 2.2.0 1151681858 M * Bertl precisely 1151681876 J * Freezo ~user@nat-7.progress-tvk.ru 1151681882 M * Bertl welcome Freezo! 1151681892 M * tanjix Bertl: vserver started, the standard install does not include ssh, right? 1151681905 M * Bertl micah: we drop a lot of legacy stuff from 2.2.x and keep all the old stuff in 2.0.2 1151681928 M * Bertl tanjix: probably not, you can try vyum to add it 1151681967 Q * ||Cobra|| Remote host closed the connection 1151681975 M * Freezo hi 1151681976 M * tanjix hmm, how ? :) there is no help page fpr vyum :( 1151682044 Q * Freezo Quit: 1151682131 M * Bertl tanjix: vyum --help 1151682148 M * tanjix i tried vyum centos -- install ssh 1151682154 M * Bertl it's a wrapper for yum, so it takes all options and stuff like yum 1151682166 M * tanjix i dont know the usage of yum :( 1151682172 M * Bertl never used yum, so I do not know either :) 1151682412 Q * Milf Ping timeout: 480 seconds 1151682717 M * tanjix hm would it be easier to use guest images ? 1151683136 J * coocoon ~coocoon@p54A07175.dip.t-dialin.net 1151683199 M * tanjix what do i have to enter for the following variables: 1151683199 M * tanjix IPROOTMASK= 1151683199 M * tanjix IPROOTBCAST= 1151683388 M * Bertl tanjix: they are not used with new style config 1151683406 M * tanjix ok, but the deploy.sh script wans them :( 1151683424 M * Bertl no idea what the 'deploy.sh' script is or does :) 1151683450 M * Bertl or do you talk about in guest config files? 1151683461 M * tanjix http://debian.marlow.dk/vserver/guest/ 1151683473 M * tanjix i try to use thoise images 1151683476 M * Bertl that is very outdated legacy stuff ... 1151683491 M * Bertl you are better off if you create the guests with the skeleton method 1151683504 M * Bertl and 'just' fill in the acutal image contents 1151683545 M * tanjix hm, could you explain what you mean ? 1151683948 M * matti Bertl: Have a minute? 1151683949 M * matti ;] 1151684092 M * Bertl sure ... 1151684549 J * romke ~romke@procyon.romke.net 1151684551 M * romke hi 1151684598 M * Bertl wb romke! 1151684804 Q * sladen Ping timeout: 480 seconds 1151685466 M * Bertl okay, off for now (have to clean up a little), back later 1151685490 N * Bertl Bertl_oO 1151686216 Q * dlezcano Quit: Leaving 1151687670 Q * cattivik Quit: Client exiting 1151688896 M * s0undt3ch hello ppl 1151688913 M * s0undt3ch I'm setting up bind inside a guest 1151688941 M * s0undt3ch do I need to setup localhost.zone and 127.zone? 1151689194 N * sars sarnold 1151690232 Q * ntrs Ping timeout: 480 seconds 1151691137 Q * schimmi Quit: Verlassend 1151692052 M * waldi s0undt3ch: no, but it is better to do it 1151692671 M * s0undt3ch waldi: so, if we haven't got access to 127...... what will it do for us? 1151693158 M * s0undt3ch I am inside a guest, so I have no lo device 1151693706 P * romke 1151695015 M * r_marvin you might still get questions about it anyway 1151695039 J * ntrs ~ntrs@62.162.190.139 1151695124 M * s0undt3ch r_marvin: was that for me? 1151695155 M * r_marvin yes 1151695490 M * s0undt3ch r_marvin: which questions? bind might be questioned about localhost ir 127....? 1151695507 M * r_marvin yes, i meant queries 1151695551 M * s0undt3ch r_marvin: so should I not comment out the default settings for localhost and 127.xxx? 1151695557 M * s0undt3ch would the defaults do? 1151695908 M * r_marvin probably 1151695928 M * r_marvin as a side note, you DO know about the capset thingy? 1151695938 M * s0undt3ch nope :) 1151696190 M * s0undt3ch what should I know? 1151696315 M * daniel_hozac http://linux-vserver.org/some_hints_from_john see BIND 1151696394 M * daniel_hozac err, i meant http://linux-vserver.org/ProblematicPrograms 1151696697 M * s0undt3ch k, thanks 1151696835 J * shedi ~siggi@dsl-220-183.hive.is 1151697436 J * bonbons ~bonbons@83.222.39.166 1151697760 J * tuxmania ~bonbons@83.222.39.166 1151697762 Q * phreak`` Ping timeout: 480 seconds 1151698054 M * Hollow bonbons: ping 1151698082 Q * bonbons Ping timeout: 480 seconds 1151698085 M * Hollow :/ 1151698098 M * daniel_hozac might have better luck with tuxmania ;) 1151698120 M * Hollow ic.. ;) 1151698151 J * ntrs_ ~ntrs@62.162.191.207 1151698178 J * phreak`` ~phreak``@140.211.166.183 1151698267 Q * cdrx Ping timeout: 480 seconds 1151698612 Q * ntrs Ping timeout: 480 seconds 1151698830 N * tuxmania bonbons 1151698837 M * bonbons Hollow: pong 1151698881 M * Hollow bonbons: initng was /sbin/initng and handled like normal init on boot, right? 1151698930 M * bonbons yep 1151698942 M * Hollow ok, thanks 1151698976 M * bonbons you have two options when building initng, either it's /sbin/initng or if it's compiled to replace init in place it's /sbin/init (but then user should be knowing what he's doing) 1151699087 P * meandtheshell 1151700379 Q * mire Quit: Leaving 1151700563 Q * ntrs_ Quit: Leaving 1151700722 Q * bonbons Quit: Leaving 1151701160 Q * shedi Ping timeout: 480 seconds 1151701744 J * shedi ~siggi@dsl-220-183.hive.is 1151702802 Q * nox Ping timeout: 480 seconds 1151702948 P * stefani I'm Parting (the water) 1151703102 J * nox ~nox@noxlux.de 1151704415 J * click click@ti511110a080-0727.bb.online.no 1151704599 J * FireEgl Atlantica@Atlantica.US 1151705757 J * _mcp ~hightower@wolk-project.de 1151705939 Q * mcp Read error: Connection reset by peer 1151706294 Q * Viper0482 Remote host closed the connection 1151706562 Q * crazy_penguin Quit: Ex-Chat