1218672347 Q * dowdle Remote host closed the connection 1218673800 J * doener_ ~doener@i577B8F96.versanet.de 1218673905 Q * doener Ping timeout: 480 seconds 1218676275 Q * bzed Remote host closed the connection 1218676283 J * bzed ~bzed@devel.recluse.de 1218677258 Q * pisco Remote host closed the connection 1218677616 J * pisco ~pisco@tor.noreply.org 1218679206 Q * infowolfe Read error: Connection reset by peer 1218679304 J * infowolfe ~infowolfe@c-67-160-149-42.hsd1.or.comcast.net 1218680558 Q * infowolfe Quit: infowolfe 1218680695 M * Supaplex How do I adapt the last section on http://oldwiki.linux-vserver.org/Recipes ? or should I just be lazy and allow the guest to steal it? Should this work for vlans too? eg, eth1.0010 1218682421 T * * http://linux-vserver.org/ |stable 2.2.0.7, devel 2.3.0.34, grsec 2.2.0.7|util-vserver-0.30.215|libvserver-1.0.2|vserver-utils-1.0.3| He who asks a question is a fool for a minute; he who doesn't ask is a fool for a lifetime -- share the gained knowledge on the Wiki, and we forget about the minute. 1218682421 T * ChanServ - 1218688090 J * cryptronic ~oli@p54A3B6EA.dip0.t-ipconnect.de 1218688559 J * ntrs ~ntrs@77.29.67.182 1218689775 Q * cryptronic Quit: Leaving. 1218691089 J * ntrs_ ~ntrs@77.29.67.182 1218691090 Q * ntrs Read error: Connection reset by peer 1218691290 J * infowolfe ~infowolfe@c-67-160-149-42.hsd1.or.comcast.net 1218691351 N * Bertl_zZ Bertl 1218691354 M * Bertl morning folks! 1218694817 Q * pisco Remote host closed the connection 1218694845 J * pisco ~pisco@tor.noreply.org 1218695253 Q * larsivi Quit: Konversation terminated! 1218695263 M * pmjdebruijn morning Bertl 1218695330 A * Supaplex waves to Bertl 1218695378 M * Supaplex Bertyl, How do I adapt the last section on http://oldwiki.linux-vserver.org/Recipes to /etc/vservers/guest/interfaces/x/ ? or should I just be lazy and allow the guest to steal it? Should this work for vlans too? eg, eth1.0010 1218695392 A * Supaplex hopes yes on the vlans 1218695411 M * pmjdebruijn Supaplex: we do it 1218695443 M * Supaplex sweet. and how? interface/n/ style, or just let the guest steal it off the host? 1218695493 M * pmjdebruijn interface/dev = eth1.1234 1218695509 M * pmjdebruijn Supaplex: of course you need the vlan module loaded into your kernel 1218695525 M * Supaplex right. 8021q or whatever it is. 1218695542 M * Supaplex but I want the guest to have its own routing table too, like in the oldwiki page. 1218695789 M * pmjdebruijn oh no clue 1218695880 M * Supaplex well at least I know vlans are a vserver supported thing. 1218695895 M * Supaplex more power to get management to use it. :P 1218696102 M * pmjdebruijn well it works for us 1218696781 J * dna ~dna@25-243-dsl.kielnet.net 1218697886 N * DoberMann[ZZZzzz] DoberMann 1218698007 N * ensc Guest1649 1218698007 Q * Guest1649 Remote host closed the connection 1218698017 J * ensc ~irc-ensc@77.235.182.26 1218698035 J * sharkjaw ~gab@149-67-194.231210.adsl.tele2.no 1218698258 Q * MooingLemur Quit: Leaving 1218698683 J * larsivi ~larsivi@85.221.53.194 1218699400 J * loddafni1 ~mike@193.170.48.107 1218700238 J * kir ~kir@swsoft-msk-nat.sw.ru 1218701570 Q * pmenier_off Quit: Konversation terminated! 1218701636 Q * FireEgl Ping timeout: 480 seconds 1218702169 Q * dna Quit: Verlassend 1218702251 J * FireEgl FireEgl@adsl-220-216-118.bhm.bellsouth.net 1218702531 J * derjohn_mob ~aj@51.42.69.80.in-addr.net-lab.net 1218705541 J * pisco__ ~pisco@tor.noreply.org 1218705603 Q * pisco Remote host closed the connection 1218706099 J * raphinou ~rb@88.197.235.176 1218706108 M * raphinou hi! 1218706143 M * raphinou I have set up networking for guests according to http://linux-vserver.org/Networking_vserver_guests 1218706427 M * raphinou and it works great! 1218706440 M * raphinou (I just debugged my problem ;-) 1218706791 J * ntrs__ ~ntrs@77.29.75.60 1218706871 M * nox have probs with ssh forwarding with 2.6.25.4-vs2.3.x-vs2.3.0.34.11 1218706878 M * nox http://paste.linux-vserver.org/12363 1218707221 Q * ntrs_ Ping timeout: 480 seconds 1218708073 Q * fosco Quit: leaving 1218708808 J * friendly ~friendly@ppp59-167-89-100.lns2.mel6.internode.on.net 1218708984 M * ard nox : do you have auto_single_ip turned on in your config? 1218709004 M * ard together with auto_localhost? 1218709087 M * ard try echo '~SINGLE_IP' > /etc/vservers//nflags 1218709109 M * ard between stopping and starting your vserver 1218709186 M * ard CONFIG_VSERVER_AUTO_LBACK and CONFIG_VSERVER_AUTO_SINGLE cannot both be y (actually they can but it will break things) 1218710179 J * fosco ~fosco@212.85.148.86 1218710673 Q * fosco Quit: Reconnecting 1218710674 J * fosco fosco@marx.wirefull.org 1218711050 M * weeble Hey all - is there a way to hide the host's routes/IP addresses from the guests? 1218711091 J * TheWanted ~TheWanted@91.144.18.120 1218711164 M * TheWanted can some 1 help me to setup vnc on debian ? i got some problems coz i got DC while proccessing some commands 1218711541 Q * TheWanted 1218712293 J * nenolod_ ~nenolod@ip70-189-74-62.ok.ok.cox.net 1218712344 Q * nenolod Read error: Connection reset by peer 1218712991 J * docelic ~docelic@78.134.198.146 1218712998 M * Bertl weeble: they should be hidden, unless they are 'used' by the guest 1218713040 M * Bertl raphinou: good to hear :) 1218713384 J * RenOS ~renos@athedsl-4416950.home.otenet.gr 1218713429 M * RenOS hello all 1218713457 M * Bertl hello RenOS! 1218713472 M * RenOS how are you doing Bertl ? 1218713741 Q * Aiken Remote host closed the connection 1218713896 M * weeble Bertl, nope, I can see all the routes (route -n) and the external interface in the guest. 1218713908 M * weeble Running: 2.6.22-vs2.2.0.7-gentoo 1218713922 M * weeble Is there a flag I should put somewhere? 1218714172 M * Bertl hmm, let's upload the output of testme.sh, the output of 'vserver-info - SYSINFO' and the contents of /proc/virtual//* as well as /proc/virtnet//* 1218714522 M * weeble http://paste.linux-vserver.org/12364 <- I know I'm running some older utils, but I updating them requires a dependancy that I'm trying to avoid. 1218715067 Q * friendly Quit: Leaving. 1218715074 M * Bertl older utils is a joke, they are ancient :) 1218715132 M * Bertl and I think that might be your problem, unless you specified weird nflags 1218715154 M * Bertl http://linux-vserver.org/Capabilities_and_Flags 1218715173 M * Bertl HIDE_NETIF is what you want there 1218715183 M * Bertl (which is default, btw) 1218715420 Q * raphinou Quit: Leaving 1218715782 M * weeble I don't think I've specified any nflags 1218715789 M * weeble I'll read about the Caps though 1218715968 M * weeble I've (taken a guess and) put HIDE_NETIF in /etc/vservers/etch/nflags, and restarted - still no difference. 1218716047 M * weeble I see it is described as "Hide foreign network interfaces" - I wonder what is classed as foreign, and also if it includes routes in that too? 1218716112 M * Bertl weeble: I'm pretty sure your tools do not support this 1218716123 M * weeble Oh, it's the tools that do that? 1218716142 M * Bertl well, the tools have to specify the flags to the kernel 1218716148 M * weeble Aah 1218716161 M * Bertl the kernel obviously has support for that, but the tools are far too old to know about it 1218716166 M * weeble OK 1218716171 M * weeble I'll upgrade --nodeps 1218716207 M * Bertl what dependancies keep you at 0.30.210? 1218716250 M * Bertl I always thought I'm ancient with my mandrake 8.x/9.x 1218716288 M * weeble In Gentoo, util-vserver wants to upgrade coreutils, which wants to upgrade util-linux, which I don't want to upgrade, as it changes something that I can't recall right now, but it was important enough for me to mask it :) 1218716326 M * weeble http://paste.linux-vserver.org/12365 1218716329 M * weeble If you're curious 1218716334 M * weeble I'm sure it's a Gentoo thing, btw 1218716338 M * weeble Not a Vserver thing. 1218716378 M * Bertl interesting .. well, try with 0.30.214, maybe that is fine? 1218716384 Q * SpComb Ping timeout: 480 seconds 1218716400 M * weeble Yep 1218716417 M * weeble I've found in the past lots of Gentoo "dependancies" aren't actually needed. 1218716441 M * weeble Like corefonts requiring all of Xlibs, etc - when in fact, I was running a headless webserver that wanted it for PHP. 1218716499 M * weeble You know, for some bizarre reason, I assumed that the kernel read the /etc/vserver files, and that util-vserver was just for building, starting and stopping. 1218716511 M * Bertl that's the point where I change the dependancies for mandriva packages 1218716537 M * Bertl nah, reading files from the kernel is not a good idea 1218716539 M * weeble I used to file bugs with Gentoo, but I just got: Well, foobar-1.2.3 is old, you shouldn't be using it anyway. 1218716568 M * weeble Bertl, yep - even I realise that giving it more than 2 seconds of thought. :) 1218716655 M * weeble After emerging the utils, I get this message, admonishing me to run: setattr --barrier /dump/vservers 1218716668 M * weeble Even that info isn't correct, according to you. :) 1218716708 M * Bertl it might be correct, but it might be wrong too :) 1218716712 M * weeble I hate to say it, but I can still see the interface IP, and all the routes from the host. 1218716713 M * weeble etch:/# route -n | wc -l 1218716713 M * weeble 128 1218716737 M * weeble Yes, but if you say that there is a way that it can be never wrong... :) 1218716741 M * Bertl did you restart the guest?, check the network flags 1218716749 M * weeble Yep, I restarted it 1218716753 M * weeble How to check them? 1218716754 M * Bertl you want to see the bit for HIDE_NETIF 1218716761 M * weeble /proc/.... 1218716776 M * Bertl grep Flags /proc/virtnet/22/* 1218716784 M * Bertl 0x02000000 1218716787 M * weeble 0000000402000000 1218716837 M * weeble Is it a 64 bit thing? 1218716875 M * Bertl IIRC, we reduced visibility somewhat in 2.3.x 1218716904 M * Bertl but still you should not be able to see e.g. routes on different network interfaces 1218716916 M * weeble I can see them all. 1218716927 M * weeble They're tap interfaces mainly 1218716941 M * weeble Aaah 1218716949 M * weeble It hides the interface name with a * 1218716970 M * weeble Unless it's eth2 (my external one) 1218716975 M * Bertl okay, they should be completely hidden on 2.3.x 1218716978 M * weeble But that's not quite what I was after :0 1218716979 M * weeble :) 1218716996 M * weeble OK 1218717013 M * weeble Seems like whatever I'm after is always available in a slightly newer version. :) 1218717024 M * weeble How's the IPv6 doing? Is it in as standard now? 1218717033 M * Bertl yep 1218717038 M * weeble w00t 1218717040 M * weeble As of...? 1218717047 M * Bertl 2.3.x 1218717105 M * weeble You're an absolute star. 1218717122 M * weeble And you take the time to help out people too. 1218717125 M * Bertl btw, if you feel like 2.2.x is the way to go, it shouldn't be too hard to hide the unrelated routes there 1218717132 M * weeble Oh? 1218717143 M * weeble That would be even better for now, if you can tell me how to do it? 1218717169 M * Bertl yep, strace the route command (with -fF) 1218717179 M * weeble Inside the guest? 1218717198 M * Bertl yep, then look in the kernel source for the interface it is using (e.g. netlink) 1218717223 M * Bertl compare the selection mechanism there between 2.2.x and 2.3.x 1218717244 M * Bertl then use the 2.3.x one instead (only a few lines of changes, IIRC) 1218717250 M * weeble Hmmm. :) 1218717318 M * weeble I hear what you're saying, and I could probably do it, but I think I'll just grab a newer vserver source. I forget which 2.3 daniel_hozac suggested out of 2.3.0.29 and 2.3.0.34 1218717340 M * Bertl do you prefer 2.6.25 or 2.6.26? 1218717353 M * weeble No idea - is there much difference? I'm on 2.6.22 now 1218717383 M * Bertl 2.6.25is more tested, but we could use testing on 2.6.26 :) 1218717387 M * weeble Hah 1218717403 M * weeble OK 1218717407 M * weeble I'll bite the bullet. 1218717413 M * Bertl http://vserver.13thfloor.at/Experimental/patch-2.6.26.2-vs2.3.0.35.diff 1218717587 J * SpComb terom@zapotek.paivola.fi 1218717814 J * dna ~dna@218-238-dsl.kielnet.net 1218718153 M * RenOS I'll have a go too 1218718192 M * Bertl excellent, please report any issues you might encounter (and of course, success too :) 1218718203 M * RenOS of course Bertl 1218718276 M * Bertl I just found a harddisk with a totally recent 2.2.17 kernel :) 1218718308 M * RenOS does it boot? 1218718314 M * pmjdebruijn Bertl: since when did you develop an interest for archeology? 1218718328 M * Bertl of course, the kernel is 486k in size 1218718362 M * Bertl pmjdebruijn: it's a hobby of mine, I hide unused disks somewhere and every now and then I start digging :) 1218718400 M * RenOS Bertl, is that a new idea for off line backups? 1218718473 M * Bertl seems I was using suse back then, and coding on capi (isdn) 1218718490 M * RenOS 5.2 ? 1218718828 M * pmjdebruijn lol 1218718992 M * Bertl 6.2 (Zoot) 1218719013 M * Bertl Redhat, was the basesyste 1218719195 M * Bertl next week I'll check the DAT backups from 1995 :) 1218719575 M * trippeh 2.6.26.2-vs2.3.0.35 works for me, so far ;) 1218719589 M * trippeh Just need to fix a mainline driver, but thats not vservsers problem ;) 1218719604 M * RenOS Bertl, any new features we should be looking at the new release? 1218719604 Q * sharkjaw Remote host closed the connection 1218719621 M * sid3windr suse 6.2 was great 1218719647 M * Bertl RenOS: nothing really new there, 'just' ports to the new kernel releases 1218719664 M * RenOS Bertl, ok then 1218719887 M * ard w00t... it doesn't contain the dontuse anymore :-) 1218719904 M * Bertl not even the pre :) 1218719916 M * ard Now for 2.6.26.2 itself ;-) 1218719938 M * Bertl so what more can you expect ... go for it! 1218719950 M * daniel_hozac a pony? 1218719951 M * daniel_hozac :) 1218719956 M * Bertl LOL 1218719966 M * Bertl old, but good 1218720267 M * matti Bertl: :))))) 1218720291 M * matti Bertl: Especially for you... my famous "square smile": :-] 1218720294 A * RenOS needs to get a faster PC... 1218721142 M * Bertl hey matti! 1218721695 Q * RenOS Quit: rebooting 1218722435 Q * larsivi Ping timeout: 480 seconds 1218722453 Q * duckx Read error: Connection reset by peer 1218724689 J * RenOS ~renos@athedsl-4416950.home.otenet.gr 1218724711 M * RenOS hello.. 1218724726 M * RenOS up to know 2.6.26.2-vs2.3.0.35 seems pretty ok 1218724743 M * RenOS I booted 3 vservers locally and one over NFS without problem 1218724752 M * Bertl good to now :) 1218724772 M * RenOS vlimits apply ok 1218725093 M * Bertl excellent! 1218725113 M * RenOS Bertl, any tests you would like me to run ? 1218725200 Q * SpComb Ping timeout: 480 seconds 1218725215 M * Bertl testme.sh and testfs.sh wouldn't hurt, be careful with the testfs though, it will format the given device 1218725244 M * Bertl of course, any 'other' tests are always welcome, as diversity is the best way to spot issues 1218725264 M * RenOS of course 1218725343 M * RenOS testme.sh: http://paste.linux-vserver.org/12366 1218725375 M * RenOS I'm afraid have to skip the testfs.sh since my block device has other files than vservers 1218725497 M * Bertl you could use a loop device (file based) or lvm volume for that 1218725514 M * RenOS loopdevice sounds great 1218725518 M * RenOS I 1218725526 M * RenOS l'll create a guest in there 1218725585 M * Bertl no need to create anything, besides a file of roughly 30MB 1218725597 M * Bertl (for xfs a little more, IIRC) 1218725682 Q * kir Quit: Leaving. 1218725797 M * RenOS I got the file, I did a mkfs and I mounted it. I then use the /dev/loop0 device fot the testfs.sf script? 1218725851 M * Bertl nah 1218725871 M * Bertl you just do the losetup (for the file) and specify the loop device to the testfs.sh script 1218725877 M * RenOS cool, it has a help page :-p 1218725890 M * Bertl it will create various filesystems on that device 1218726099 M * RenOS testfs:sh: http://paste.linux-vserver.org/12368 1218726111 M * RenOS (I don't have support for some FS in the kernel) 1218726120 J * cryptronic ~oli@p54A3B6EA.dip0.t-ipconnect.de 1218726167 M * Bertl you might also miss the userspace support for some 1218726191 M * RenOS probably. I stripped down the kernel to make it compile faster (<1hr) 1218726271 M * Bertl so xfs misses userspace, while reiserfs userspace is present, but kernel support missing 1218726291 M * Bertl jfs misses userspace too (no idea about the kernel support for those) 1218726314 M * RenOS yeap, reiserfs,xfs,jfs are all out from the kernel 1218726334 M * Bertl so the remainder is fine 1218726387 M * RenOS good to know :-) 1218726414 M * Bertl hehe, well, success, success, success should have given you some hints :) 1218726440 M * Bertl although, you never know, could be a tricky bug in the script *G* 1218726452 M * RenOS I saw many failures as well, plus I noticed that the script doesn't unmount always 1218726474 M * Bertl really? that sounds fishy 1218726496 M * RenOS # 1218726496 M * RenOS [001]# succeeded. 1218726496 M * RenOS # 1218726496 M * RenOS mount: /mnt not mounted already, or bad option 1218726516 M * RenOS that was under the mke2fs 1218726519 M * Bertl in the test you uploaded, you had not a single failure 1218726556 M * Bertl you might have specified a mount point you used before? 1218726564 M * RenOS I got some no space left on the device warnings 1218726565 M * Bertl (with the loop mount?) 1218726574 M * Bertl those are part of the tests 1218726581 M * RenOS no, the mount point was free 1218726619 M * Bertl if you like, you can repeat it with -vvvxyz 1218726625 M * Bertl and maybe -F ext2 1218726631 M * RenOS sure, why not 1218726692 M * RenOS http://paste.linux-vserver.org/12369 1218726995 M * Bertl so as you can see, the 'failing mount' is part of the test too :) 1218726995 M * RenOS yes 1218727002 M * Bertl mount -o remount,rw,tag /mnt cannot succeed, because it would change the tagging 1218727313 J * kiorky_ ~kiorky@cryptelium.net 1218727352 Q * kiorky Remote host closed the connection 1218727455 M * micah Bertl: i believe waldi is trying to get the latest patch into the debian kernel but has run into a compile problem with the bindmount piece 1218727478 M * micah Bertl: wondering if you might have an idea, the compile error is here: http://paste.debian.net/14720/ 1218727498 M * micah the specific code can be seen here: svn cat svn://svn.debian.org/kernel/dists/sid/linux-2.6/debian/patches/features/all/vserver/bindmount-dev.patch 1218727642 M * Bertl well, then remove it for now 1218727657 M * Bertl it is a debian specific modification after all 1218727683 M * Bertl but I don't think that it takes more than a few minutes to adapt 1218727751 M * micah i'm not sure I understand the modification 1218727855 M * Bertl power outage here .. brb 1218727911 M * micah k 1218728101 M * Bertl so, better 1218728130 M * Bertl well, as I understand it, this patch allows to do some chroot related bind mounts inside a guest 1218728159 M * Bertl i.e. when you want to build a chroot inside a guest with devices (which is something debian seems to require now and then) 1218728259 M * Bertl and according to the diff data, it does this by checking for nodev mounts, and propagating this flag to make them 'secure' 1218728422 M * micah Bertl: ok, that makes sense, sounds like a useful feature actually, I didn't know it existed before :) 1218728454 J * ntrs_ ~ntrs@77.29.65.152 1218728548 M * micah Bertl: do you think this is something that you might adopt in the future? 1218728663 M * micah ah, now I see that the compile problem that waldi is having is not with the patch itself, but with a missing include in the vserver patch 1218728831 Q * ntrs__ Ping timeout: 480 seconds 1218729357 J * dowdle ~dowdle@scott.coe.montana.edu 1218729570 M * Bertl hmm? that sounds interesting 1218729586 M * Bertl i.e. you have compile issues _without_ any debian patches? 1218729626 M * Bertl s/you/waldi/? 1218729694 M * micah Bertl: not sure, he had to go now... he said that there was a missing include in your patch and then he had to run 1218729708 M * micah when he returns I'll ask him 1218729789 M * Bertl okay, TIA 1218730112 M * nox ard: great. that helped! thx! 1218730235 M * Bertl nap attack ... bbl 1218730240 N * Bertl Bertl_zZ 1218730759 J * bonbons ~bonbons@2001:960:7ab:0:2c0:9fff:fe2d:39d 1218730840 J * john ~john@glou.nurvnet.org 1218730842 M * john hi all 1218730872 M * john I'm trying to setup my openvpn server in a vserver and am having issues (that I expected to have) with the tun and tap devices 1218730900 M * john when I mentioned these issues I was told that I would have to create the devices manually 1218730935 M * john is there a way to allow it to work without having to configure the devices one by one ? 1218731346 Q * pisco__ Remote host closed the connection 1218731439 J * pisco ~pisco@tor.noreply.org 1218732513 A * john busily reads the faq 1218733628 Q * RenOS Quit: later.... 1218734141 J * pmenier ~pmenier@ACaen-152-1-104-233.w83-115.abo.wanadoo.fr 1218734217 N * DoberMann DoberMann[PullA] 1218734297 Q * derjohn_mob Ping timeout: 480 seconds 1218734446 Q * ntrs_ Ping timeout: 480 seconds 1218734807 Q * pmenier Ping timeout: 480 seconds 1218734822 J * pmenier ~pmenier@ACaen-152-1-56-53.w83-115.abo.wanadoo.fr 1218736008 Q * balbir Ping timeout: 480 seconds 1218736146 N * Bertl_zZ Bertl 1218736153 M * Bertl back now ... 1218736576 N * DoberMann[PullA] DoberMann 1218736682 J * balbir ~balbir@122.167.241.97 1218737374 M * sid3windr hmh 1218737380 M * sid3windr apache going to sponsor vserver? :o :) 1218737381 J * docelic_ ~docelic@78.134.199.31 1218737527 M * Bertl hmm? 1218737789 Q * docelic Ping timeout: 480 seconds 1218737894 M * sid3windr on the ml 1218737895 M * sid3windr Saw the thread on the list archives and was even compelled to subscribe to 1218737895 M * sid3windr the list to say that we certainly could pitch in a couple of hundred euros 1218737896 M * sid3windr towards this. 1218737902 M * sid3windr From: Gregory (Grisha) Trubetskoy 1218737916 M * Bertl ah, i.c. 1218738064 A * sid3windr assumes people's email address shows who they are representing 1218738065 M * sid3windr :) 1218738126 N * phedny Guest1707 1218738126 N * Guest1245 phedny 1218738136 N * Guest1707 phedny_ 1218739397 Q * docelic_ Quit: http://www.spinlocksolutions.com/ 1218740274 J * SpComb terom@zapotek.paivola.fi 1218740353 M * john hi Bertl 1218740447 M * john Bertl: I'm working at getting openvpn working in my vserver and am making good progress. Since I'm rebuilding my openvpn config I decided to have a go with the client-config-dir option but don't understand how it can work since openvpn isn't able to dynamically assign tun interfaces (don't know if that's because it's running in a vserver or not) 1218740809 M * Bertl a guest can use all the assigned IPs for e.g. a tun device 1218740849 Q * loddafni1 Remote host closed the connection 1218740855 M * john Bertl: so I can have multiple clients connected with only one tun device on the vserver openvpn server ? 1218740869 M * john Bertl: don't I need 1 tun device per client ? 1218740894 M * Bertl nope 1218740924 M * Bertl the tun device is just a mechanism for a userspace program to inject packets into the network stack 1218740982 M * john ok 1218741005 M * john but I need to add the ip that will be used on the tun device for each tunnel right ? 1218741017 M * Bertl yep 1218741054 M * john ok sounds clear enough. at least I understand (a bit better) how openvpn works now :) 1218741072 M * john so all I have to do it get my client-conf-dir working correctly 1218741081 J * xdr_ ~xdr@135-173-96-87.cust.blixtvik.se 1218741100 M * john Bertl: is using a /31 netmask messy with openvpn ? 1218741111 Q * xdr_ 1218741252 J * xdr_ ~xdr@135-173-96-87.cust.blixtvik.se 1218741274 Q * xdr Ping timeout: 480 seconds 1218741343 Q * xdr_ 1218741382 J * larsivi ~larsivi@221.80-202-217.nextgentel.com 1218741503 J * loddafnir ~mike@193.170.48.107 1218741689 J * xdr ~xdr@135-173-96-87.cust.blixtvik.se 1218742423 J * ntrs_ ~ntrs@77.29.65.152 1218742597 Q * pisco Ping timeout: 480 seconds 1218742890 J * quote ~quote@pomoc.ircnet.com 1218742909 J * xdr_ ~xdr@135-173-96-87.cust.blixtvik.se 1218742962 Q * xdr_ 1218742970 J * pisco_ ~pisco@tor.noreply.org 1218743773 M * Bertl not more than /27 :) 1218747463 N * nenolod_ nenolod 1218747906 Q * dna Quit: Verlassend 1218748020 M * john Bertl: ok, thats a shame :/ 1218748057 M * daniel_hozac you realize a /31 makes absolutely no sense, right? 1218748106 J * Aiken ~Aiken@ppp118-208-53-42.lns4.bne1.internode.on.net 1218748406 Q * ntrs_ Ping timeout: 480 seconds 1218748940 M * micah what keeps a guest root from creating a directory entry with a specific inode number that can be a duplicate of an inode for a file in some other context? 1218749005 M * daniel_hozac you can't specify what inode number you want. 1218749021 M * daniel_hozac and keeping track of inodes is the filesystems job. 1218749022 M * Bertl micah: hmm, how'd you do that? 1218749241 M * micah i'm not sure, someone asked me that question, and I assumed that you couldn't do that 1218749248 M * micah but I'm asking him if he knows a way to do that 1218749276 M * Bertl yes, please ... and let us know if 1218749302 M * micah yeah, i suspect that there isn't a way 1218750117 M * micah ah, he said that he doesn't know if thats possible just that "it just seems like that might be something that a kernel or system library might expose to the superuser in some" 1218750127 M * micah sorry "....some cases" 1218750135 N * DoberMann DoberMann[ZZZzzz] 1218750350 Q * FireEgl Quit: Leaving... 1218750564 Q * larsivi Read error: Connection reset by peer 1218750575 J * larsivi ~larsivi@221.80-202-217.nextgentel.com 1218750800 J * yarihm ~yarihm@84-74-147-84.dclient.hispeed.ch 1218750814 M * daniel_hozac it's not. 1218751018 Q * bonbons Quit: Leaving 1218751581 J * derjohn_mob ~aj@e180207034.adsl.alicedsl.de 1218751632 M * john daniel_hozac: http://www.faqs.org/rfcs/rfc3021.html 1218752710 Q * cryptronic Quit: Leaving. 1218753045 Q * ricola Ping timeout: 480 seconds 1218753244 J * ricola ~ricola@pepin.poivron.org 1218754028 Q * yarihm Quit: Leaving 1218754252 J * FireEgl FireEgl@adsl-220-216-118.bhm.bellsouth.net 1218754847 Q * larsivi Ping timeout: 480 seconds 1218755155 J * duckx ~Duck@81.57.39.234 1218755933 M * Supaplex Bertl: greetings fine lad =) 1218756177 Q * dowdle Remote host closed the connection 1218756338 M * Bertl Supaplex: 2u2! 1218756351 M * Bertl although I'm almost off to bed now ... 1218756483 M * Supaplex I still don't understand how the vserver guest will use one routing table-id over the default. If I create the routes in a different table-id, how do I ensure a guest of my choice is using that over the default? 1218756559 M * Supaplex I have two guests that I'm using for traffic testing. I need traffic destined for guest two to leave the box on one vlan assigned to one guest, traverse a router (for testing), and return to the second guest. I'm in a pinch w/o hardware until next week. 1218756561 M * daniel_hozac ip rule add from lookup X 1218756595 M * Supaplex humm I didn't know that existed. 1218756611 M * Supaplex where X is the table-id? 1218756624 A * Supaplex pokes in the man page a little 1218756777 M * Bertl off to bed now ... have a good one everyone! 1218756831 N * Bertl Bertl_zZ 1218758290 Q * loddafnir Remote host closed the connection