1194048206 Q * meandtheshell Quit: Leaving. 1194048308 J * mire_ ~mire@71-168-222-85.adsl.verat.net 1194050972 M * paulproteus Is there any way to make losetup work inside a vserver? 1194052797 M * daniel_hozac sure, just give the guest a loop device or two. 1194052809 M * daniel_hozac mounting will require a capability though. 1194053251 J * esa ~esa@ip-87-238-2-45.adsl.cheapnet.it 1194054268 Q * esa Read error: Connection reset by peer 1194054345 J * esa ~esa@ip-87-238-2-45.adsl.cheapnet.it 1194055235 Q * mire_ Ping timeout: 480 seconds 1194061263 J * tanjix tanjix@77.37.0.222 1194061489 Q * tanjix2 Ping timeout: 480 seconds 1194061493 J * tanjix2 ~tanjix@office.star-hosting.de 1194061744 Q * tanjix Ping timeout: 480 seconds 1194061801 J * tanjix tanjix@77.37.0.222 1194062222 Q * tanjix2 Ping timeout: 480 seconds 1194062282 Q * tanjix Ping timeout: 480 seconds 1194064014 J * tanjix ~tanjix@dslb-084-058-008-101.pools.arcor-ip.net 1194064330 J * tanjix2 ~tanjix@office.star-hosting.de 1194064497 Q * tanjix Ping timeout: 480 seconds 1194072642 N * ensc Guest326 1194072652 J * ensc ~irc-ensc@p54B4F6DC.dip.t-dialin.net 1194072761 Q * Guest326 Ping timeout: 480 seconds 1194072969 M * AStorm daniel_hozac: it's a pity I can't give a capability to just mount in a certain dir 1194072971 M * AStorm like a barrier 1194072998 M * AStorm so no idjit can mount over /bin of the vserver 1194073062 M * AStorm a barrier similar to chroot barrier could be done, but the way it's currently done it takes an FS flag 1194073074 M * AStorm and there aren't many more left 1194073165 M * AStorm or... make a capability that binds to a dentry 1194073180 M * AStorm hmm... 1194073191 M * AStorm or support brand new filesystem capabilities :D 1194073710 M * Bertl_oO AStorm: why allow an idjit to mount in the first place? 1194073825 M * AStorm Bertl_oO: desktop inside a VServer is tempting, but nah, Xen is more suited to that kind of thing 1194073836 M * AStorm and maybe I need to change the mount from inside the VServer 1194073842 M * AStorm (it's an archive of mails done in this way) 1194073866 M * Bertl_oO you or the idjit? 1194073889 A * AStorm 1194073901 M * AStorm actually, cron inside the VServer 1194073913 M * AStorm I could move the operation to the host though 1194073920 M * Bertl_oO well, _you_ can always do that on the host 1194073925 J * JonB ~NoSuchUse@kg1-98.kollegiegaarden.dk 1194074048 M * AStorm Bertl_oO: it eats a lot of CPU 1194074062 M * Bertl_oO hmm? 1194074937 M * Bertl_oO okay, off to bed now .. have a good one everyone! 1194074946 N * Bertl_oO Bertl_zZ 1194075770 J * mire_ ~mire@71-168-222-85.adsl.verat.net 1194076150 P * click_ [IRSSI] 1194076738 Q * hparker Quit: g'nite 1194077102 Q * mire_ Ping timeout: 480 seconds 1194077700 Q * JonB Quit: This computer has gone to sleep 1194077762 Q * toidinamai Quit: Leaving 1194078156 Q * zLinux Ping timeout: 480 seconds 1194078869 J * tanjix ~tanjix@dslb-084-058-008-101.pools.arcor-ip.net 1194079098 J * dna ~dna@58-193-dsl.kielnet.net 1194079267 Q * tanjix2 Ping timeout: 480 seconds 1194079354 Q * tanjix Ping timeout: 480 seconds 1194080355 N * _Radiance Radiance 1194080606 J * friendly12345 ~friendly@ppp59-167-134-217.lns3.mel6.internode.on.net 1194082466 J * bonbons ~bonbons@2001:960:7ab:0:20b:5dff:fec7:6b33 1194082594 Q * phreak``_ Quit: Reconnecting 1194082625 J * phreak`` ~phreak``@deimos.barfoo.org 1194082888 J * yang yang@yang.netrep.oftc.net 1194083070 J * zLinux ~zLinux@88.213.36.247 1194083238 N * esa eSa| 1194083654 J * zLinux_ ~zLinux@88.213.16.36 1194083717 Q * zLinux Ping timeout: 480 seconds 1194084488 Q * friendly12345 Quit: Leaving. 1194085792 Q * yang Server closed connection 1194086010 M * igraltist hi 1194086240 M * matti :) 1194086751 J * DLange ~dlange@p57A326DE.dip0.t-ipconnect.de 1194087040 J * JonB ~NoSuchUse@kg1-98.kollegiegaarden.dk 1194087311 Q * dna Quit: Verlassend 1194088546 Q * matti Ping timeout: 480 seconds 1194088821 Q * mattzerah Quit: GONE! 1194088843 N * Bertl_zZ Bertl 1194088848 M * Bertl morning folks! 1194089181 M * JonB hey be 1194089183 M * JonB Bertl: 1194089289 M * Bertl JonB: hey, what's up? 1194089315 J * esa ~esa@ip-87-238-2-45.adsl.cheapnet.it 1194089316 Q * lilalinux_ Ping timeout: 480 seconds 1194089392 Q * eSa| Ping timeout: 480 seconds 1194090044 Q * JonB Quit: This computer has gone to sleep 1194090748 Q * phreak`` Quit: restarting irssi 1194091021 J * mire_ ~mire@168-171-222-85.adsl.verat.net 1194091374 N * esa eSa| 1194091559 J * toidinamai ~frank@svenska.toidinamai.de 1194092126 J * fxiny ~fxiny@host37-35-dynamic.48-82-r.retail.telecomitalia.it 1194092212 Q * zLinux_ Ping timeout: 480 seconds 1194092376 Q * Aiken Quit: Leaving 1194092625 J * zLinux_ ~zLinux@88.213.16.62 1194092975 M * fxiny hi all : i'm running debian etch 2.6.18-5-vserver-686 . /etc/vservers//cache symplink pointing to /etc/vservers/.defaults/cachebase/ is broken , everything works fine but there is nothing down cachebase dir , not even if a start a vserver 1194093019 M * Bertl so why is that a problem if everything works fine? 1194093068 M * fxiny because i'm curioues . i'd like to know what is supposed to be down cachebase 1194093075 M * fxiny curious* 1194093190 M * Bertl check out http://www.nongnu.org/util-vserver/doc/conf/configuration.html 1194093219 M * fxiny nice ! 1194093228 M * Bertl no idea why it is there on debian, but broken :) 1194093280 M * fxiny it answers to my next quesiton too : /var/run/vservers.rev symlinks :) 1194093298 M * Bertl great! :) 1194093346 M * fxiny is not really about curiousity : i feel like an idiot when cloning deleting and renaming cache broken symlink ;) 1194093389 M * Bertl why would you 'clone, delete and rename' it? 1194093524 M * fxiny because it points to a different vserver 1194093543 M * Bertl how did that happen? 1194093655 M * fxiny say i'm cloning VS0 , cp /var/lib/vservers/VS0 and /etc/VS0 then rm cache run vdir and ln -s back all symlinks : am i wrong ? 1194093677 M * Bertl hmm, why would you do that? 1194093704 M * fxiny to avoid downloading again etch base system 1194093711 M * Bertl I mean, why would you use cp for that, instead of the tools who can do that for you? 1194093737 M * Bertl besides that, you can install the proper debootstrap cache and keep the packets locally 1194093790 M * fxiny this is a PII 400 ,it takes longer 1194093794 M * fxiny :) 1194093820 M * Bertl well, using the rsync or clone build methods will take shorter than your current approach :) 1194093835 M * Bertl especially as you do not have to mess with the symlinks 1194093864 M * fxiny lovely 1194094066 M * fxiny anyway i'm having fun with vserver , going for those cloning docs :) 1194094080 M * Bertl check out 'vserver - build --help' 1194094095 M * Bertl (and of course, vserver --help) 1194094111 M * Bertl glad that you have fun with Linux-VServer, btw! 1194094186 M * fxiny oh yeahh great fun :i think i won't go back to a "normal" kernel ;) 1194094212 M * fxiny since i can run it on my dear old box , i have a fat fast one but somehow i hate it 1194094243 M * Bertl at some point, you might want to check out recent devel releases, which ahve a bunch of new features 1194094449 M * fxiny atm i'm runnign two versers : one host bitlbee and the other one vsftp and ssh plus a restricted shell . don't like rssh and scponly cause i need to keep a windows user in a chrooted dir . he connects with winscp and only mysecureshell keeps him in a dir for all i know 1194094471 M * fxiny i'll check git-shell later on 1194095057 Q * mire_ Ping timeout: 480 seconds 1194095822 M * Bertl 1194095913 J * derjohn ~derjohn@80.69.41.3 1194096211 J * mire_ ~mire@168-171-222-85.adsl.verat.net 1194096286 J * JonB ~NoSuchUse@kg1-98.kollegiegaarden.dk 1194097032 Q * mire_ Ping timeout: 480 seconds 1194099438 J * mire ~mire@79-168-222-85.adsl.verat.net 1194101012 Q * duckx Remote host closed the connection 1194101049 J * duckx ~Duck@81.57.39.234 1194103212 J * hparker ~hparker@linux.homershut.net 1194106106 J * meandtheshell ~markus@85.127.114.170 1194107984 Q * toidinamai Ping timeout: 480 seconds 1194108226 J * toidinamai ~frank@svenska.toidinamai.de 1194108722 Q * mire Ping timeout: 480 seconds 1194108804 Q * JonB Quit: Leaving 1194110343 J * tanjix tanjix@77.37.0.222 1194110875 J * matti matti@acrux.romke.net 1194111746 J * click click@ti511110a080-1849.bb.online.no 1194111856 J * dowdle ~dowdle@67-42-174-141.blng.qwest.net 1194111911 Q * dowdle 1194112284 Q * zbyniu Ping timeout: 480 seconds 1194113002 J * mire ~mire@248-169-222-85.adsl.verat.net 1194113601 J * virtuoso ~s0t0na@ppp91-122-170-244.pppoe.avangard-dsl.ru 1194113601 Q * virtuoso_ Read error: Connection reset by peer 1194113892 Q * zLinux_ Remote host closed the connection 1194114482 J * JonB ~NoSuchUse@kg1-98.kollegiegaarden.dk 1194114817 Q * JonB Quit: This computer has gone to sleep 1194115336 Q * almak Remote host closed the connection 1194116729 Q * fxiny Ping timeout: 480 seconds 1194117138 Q * bonbons Quit: Leaving 1194118239 J * zLinux ~zLinux@88.213.16.62 1194118679 J * mwagner122 ~mwagner23@pD9E3CD4E.dip.t-dialin.net 1194118928 M * mwagner122 question: Hi guys, when I try to run 'vserver myserver hashify' it seems to create the .hash subdir with all the checksums correctly. However the size of my /server-directory isnt getting smaller at all (i checked with 'du ./server1 -h'). Any1 has an idea? I think its not creating any links... thx alot 1194118969 M * AStorm it won't 1194118976 M * AStorm these are hardlinks 1194118988 M * Bertl mwagner122: so almost no space is used up 1194118990 M * AStorm :-> 1194119000 M * Bertl mwagner122: that's all the beauty about it :) 1194119049 M * mwagner122 i think i didnt fully understand the concept. i want to remove the redundancy of all the same libraries and stuff... but how come the size of the folder is still the same? shouldnt the copies of the duplicate files (duplicate with host) in the vserver be replaced by links? 1194119099 M * AStorm mwagner122: it's not really the same: check df 1194119116 M * AStorm they are replaced by links, but du reads the file size 1194119122 M * AStorm not whether it's a hardlink 1194119128 M * mwagner122 i did check "df" and it was even less space on disk because of the hash dir 1194119153 M * AStorm hmmm 1194119158 M * AStorm now that sounds wrong 1194119159 M * Bertl mwagner122: first, there is no unification with the host 1194119171 M * Bertl for several reasons, one being security 1194119180 M * mwagner122 so it unifies only with other servers? 1194119185 M * Bertl yes, precisely 1194119202 M * Bertl second, to utilize unification, you have to be on the same filesystem 1194119219 M * mwagner122 i am on same filesystem 1194119223 M * mwagner122 no different partition etc 1194119253 M * Bertl okay, so in theory you could unify with the host, nevertheless, I would not advise to do so 1194119271 M * mwagner122 ic.. ok, my main question seems to be now: how can i check if unification worked? directory size still seems to be the same 1194119295 M * Bertl that won't really change if you are using du 1194119315 M * mwagner122 du always seems to follow hard links? how can i check otherwise? 1194119315 M * Bertl but try to unify two guests, then your total disk space shown by df should increase 1194119336 M * Bertl mwagner122: there is no 'following' with hard links 1194119357 M * Bertl mwagner122: two hard links to the same inode are indistinquishable for eachother 1194119364 M * Bertl *from 1194119367 M * daniel_hozac (assuming you restart the guests to free the files currently in use) 1194119411 M * mwagner122 thanks bertl, last question: how can i specify which hosts are "checked" for unification? i checked the faq entry to vhashify and it doesnt tell which vservers are "searched" 1194119440 M * daniel_hozac the ones you tell it to. 1194119441 M * Bertl mwagner122: daniel_hozac is the one who has all the details :) 1194119449 M * daniel_hozac you need to run vserver hashify for all your guests. 1194119464 M * mwagner122 so if i run "vserver myserver hashify" it means that it will check "myserver" against all other vservers and create hardlinks? 1194119471 M * daniel_hozac no. 1194119484 M * mwagner122 (just in myserver-dir) 1194119507 M * daniel_hozac that means it will create hardlinks to identical files already in .hash, and for files which aren't in there already, it will link them. 1194119586 M * mwagner122 daniel_hozac, so i have to run "vserver myserver hashify" against all my vservers. when i get to a server > 1 disk-space will free up? 1194119599 M * daniel_hozac that's the idea. 1194119602 M * mwagner122 aaah 1194119626 M * mwagner122 now i got it. the faq entry to that topic doesnt make that clear. i always thought it would check against the host 1194119632 M * mwagner122 thanks alot :) 1194119654 M * daniel_hozac you're welcome! 1194119725 M * Bertl mwagner122: note, if you want per guest disk limits, you have to put the guests on a shared but separate (from the host) partition 1194119799 M * mwagner122 bertl, really? why is that? if they are on same partition i cannot use unification? 1194119830 M * Bertl no, the problem there is that you need filesystem tagging for the disk limits on a shared partition 1194119843 M * Bertl and you need a shared partition for the hard links to work 1194119901 M * Bertl and finally, for safety reasons, you cannot easily tag the root filesystem 1194119938 M * mwagner122 so the hard links will go on the seperate partition as well 1194119943 M * mwagner122 to make them work 1194119945 M * mwagner122 right? 1194119952 M * mwagner122 (the .hash dir) 1194119964 M * Bertl yep 1194119975 M * mwagner122 thx 1194119981 M * Bertl this way, you can have your cake and eat it too :) 1194120006 M * daniel_hozac just to recap, to be able to use all features but the user/group quota, you need to have a separate /vservers filesystem. 1194120056 M * mwagner122 k , thx 1194120060 M * Bertl of course, you can keep your current setup if you do not need the disk limits 1194120111 M * mwagner122 i need disk limits badly. i thought about creating a fixed-sized filesystem and mount it for each vserver 1194120443 J * Aiken ~james@ppp59-167-115-173.lns3.bne4.internode.on.net 1194120452 M * Bertl wb Aiken! 1194120463 M * Aiken hi 1194121606 P * mwagner122 1194122419 J * JonB ~NoSuchUse@kg1-98.kollegiegaarden.dk 1194123234 Q * JonB Quit: This computer has gone to sleep 1194123527 J * Blissex ~Blissex@82-69-39-138.dsl.in-addr.zen.co.uk 1194124299 Q * meandtheshell Quit: Leaving. 1194126449 J * lilalinux ~plasma@80.69.41.3 1194126734 J * zbyniu ~zbyniu@host13-188.crowley.pl 1194127067 Q * lilalinux Remote host closed the connection 1194127475 M * Hollow Bertl: don't know if you remember, but i had weird clock "jumps" on a bunch of my boxes .. upgrading from 2.6.20 to 2.6.22 helped, clocks are now ok on all boxes again *shrug* 1194127488 M * Bertl ah, interesting ... 1194127644 M * Bertl okay, off to bed for today ... cya! 1194127659 N * Bertl Bertl_zZ 1194128132 Q * FireEgl Quit: Bye... 1194128315 J * dowdle ~dowdle@67-42-174-141.blng.qwest.net 1194129285 J * larsivi ~larsivi@101.84-48-201.nextgentel.com 1194130669 Q * tanjix Ping timeout: 480 seconds 1194130765 Q * michal Ping timeout: 480 seconds 1194131120 J * tanjix tanjix@77.37.0.222 1194131435 J * michal ~michal@www.rsbac.org 1194131610 M * phrost anyone know what features of grsec the grsec+vserver patch supports? 1194131613 M * phrost full RBAC or just PaX? 1194131625 M * phrost if RBAC, can you configure it per vserver? 1194132111 M * igraltist i think the pax not really work 1194132232 Q * mire Ping timeout: 480 seconds 1194132422 Q * larsivi Quit: Konversation terminated! 1194132582 Q * tanjix Ping timeout: 480 seconds 1194132905 M * bzed phrost: the patch supports them all - as in: you can activate all features. there's a readme which mentions what you should not activate 1194133148 M * snooze bleh, i should've looked at that readme before i wasted some hours finding it out myself :p 1194133289 M * bzed snooze: me too :D 1194133402 Q * DLange Quit: Bye, bye. Hasta luego. 1194133428 M * snooze CONFIG_GRKERNSEC_CHROOT_DOUBLE & CONFIG_GRKERNSEC_CHROOT_CHMOD i still have set though, seems to work this far 1194133838 M * igraltist pax and vserver what i see is not work 1194134370 J * mire ~mire@248-169-222-85.adsl.verat.net