1248308281 Q * dowdle Remote host closed the connection 1248309922 J * greenwich38 ~bjw@659AABASB.tor-irc.dnsbl.oftc.net 1248310078 P * greenwich38 1248310838 J * thierryp ~thierry@38.104.126.78 1248310859 Q * thierryp 1248313780 J * ousado ~johnny@p5B3C2EF9.dip0.t-ipconnect.de 1248313856 J * hparker ~hparker@2001:470:1f0f:32c:290:96ff:fe50:40fa 1248314126 M * Bertl off to bed now .. have a good one everyone! 1248314130 N * Bertl Bertl_zZ 1248314213 Q * ousado__ Ping timeout: 480 seconds 1248316944 Q * geb Quit: / 1248317922 Q * SHINSAKU 1248318042 J * saulus_ ~saulus@c207129.adsl.hansenet.de 1248318452 Q * SauLus Ping timeout: 480 seconds 1248318460 N * saulus_ SauLus 1248318827 Q * Piet Remote host closed the connection 1248318952 J * Piet ~piet@659AABATE.tor-irc.dnsbl.oftc.net 1248320438 J * SHINSAKU ~Shinsaku@chello084010157123.chello.pl 1248320973 Q * hparker Quit: Read error: 104 (Peer reset by connection) 1248324187 J * doener ~doener@i59F5637C.versanet.de 1248324291 Q * doener_ Ping timeout: 480 seconds 1248329491 Q * balbir_ Ping timeout: 480 seconds 1248330608 Q * FireEgl Quit: Leaving... 1248330921 J * PhatJ ~PhatJ@24-231-253-101.dhcp.aldl.mi.charter.com 1248330951 M * PhatJ i cannot seem to encourage iptables to port-forward a udp port into a guest 1248330989 M * PhatJ doesn't work: /sbin/iptables -t nat -A PREROUTING -i eth0 -s ! 10.10.10.0/24 -m udp -p udp --dport 5060 -j DNAT --to-destination 10.10.10.4:5060 1248331002 M * PhatJ i started without -i eth0 (no change 1248331036 M * PhatJ using dummy0 on guests 1248331119 M * PhatJ debian lenny on host and guests 1248331151 J * davidkarban ~david@193.85.217.71 1248332915 J * dna ~dna@128-205-103-86.dynamic.dsl.tng.de 1248334719 J * Pazzo ~ugelt@reserved-225136.rol.raiffeisen.net 1248337304 J * balbir_ ~balbir@59.145.136.1 1248340126 Q * balbir_ Ping timeout: 480 seconds 1248340462 M * harry kbad: yesh 1248340846 J * gnuk ~F404ror@pla93-3-82-240-11-251.fbx.proxad.net 1248341770 J * balbir_ ~balbir@59.145.136.1 1248341920 Q * SHINSAKU 1248341967 J * BartVB ~bartvb@a80-127-243-221.dial.xs4all.nl 1248342268 J * geb ~geb@AOrleans-253-1-29-5.w92-140.abo.wanadoo.fr 1248342272 M * geb hi 1248342554 M * BartVB Sorry, quick question. Just upgraded vserver (debian etch to lenny) and now there seems to be a problem with my 127.0.0.69 loopback address that I added to one of the vservers. ifconfig doesn't show the address, 'ip a' does, if I ping it I get replies from 127.0.0.1? If I use netcat to listen on that IP connections get dropped immediately by netcat with an 'invalid connection to 127.0.0.1 from 127.0.0.1'? Any ideas? 1248342556 Q * balbir_ Ping timeout: 480 seconds 1248342636 N * Bertl_zZ Bertl 1248342641 M * sid3windr well that ifconfig does not show it is normal 1248342643 M * Bertl morning folks! 1248342646 M * sid3windr on the rest I can't comment :) 1248342648 M * sid3windr heya Bertl 1248342650 M * BartVB Morning 1248342668 M * Bertl BartVB: upgrade between what kernel versions? 1248342671 M * BartVB sid3windr, hmm, true. I should have know about the ifconfig part :D 1248342688 M * BartVB 2.6.8 to 2.6.26 :) 1248342698 M * BartVB quite a step up 1248342713 M * sid3windr yeah, that's a few years gone by =) 1248342729 M * BartVB I can ping 127.0.0.69 from the host BTW 1248342747 M * BartVB progress is slow over here :P 1248342768 M * fback Bertl: morning! 1248342775 M * fback Bertl: was it good one? ;) 1248342778 M * Bertl BartVB: well, between those kernels, there have been a lot of changes too, one of them is the lback isolation 1248342838 M * Bertl BartVB: i.e. unless you explicitely remove it, the guest gets assigned a 'private' localhost address, which is used to do back and forward mapping for 127. 1248342873 M * BartVB nice :) So I can just use 127.0.0.1 without having everything on the interface appearing on the public internet? Great! 1248342914 M * Bertl well, that hasen't really changed since back then (where you could do the same before :) 1248342950 M * Bertl but the loopback stuff is now better isolated and for userspace almost indistinguishable from a real 127.0.0.1 1248342957 M * hijacker_ hey fellows 1248342971 M * BartVB hmm, just tried it and indeed.. 127.0.0.1 = external IP (or so it seems) 1248342987 M * hijacker_ when do we expect the vserver patch for 2.6.30.2 ? 1248342995 M * Bertl BartVB: really depends on your config 1248343022 M * BartVB currently setting up a web frontend with a proxy, using localhost to enable communication between frontend and backend server but that's rather problematic if the backend ends up on the public internet :) 1248343043 M * Bertl hijacker_: I presume the one for 2.6.30.1 fails for you? 1248343053 M * hijacker_ Bertl, nope, have not tried it 1248343064 M * hijacker_ i normally expect to see the same kernel versions in the patches? 1248343073 M * hijacker_ then i download ;-) and patch 1248343082 M * BartVB worked around that by setting up a 127.0.0.69 address for this vhost which seemed to work pretty well. With the new version I'll have to use iptables to secure the backend server or is there Another Way? 1248343140 M * Bertl you can still use the 127.0.0.69 with the new kernel, you just have to configure it properly 1248343206 M * Bertl the first question here is, are they in separate guests or on the same one? 1248343212 M * BartVB same guest 1248343239 M * BartVB 127.0.0.69 is not in /etc/network/interfaces on the host, the vserver host creates it. 1248343241 M * Bertl then you simply want to disable the single ip special casing (put ~single_ip in nflags) and use 127.0.0.1 for that 1248343276 M * Bertl (the guest will get its own loopback address automatically) 1248343303 M * BartVB Going to figure out how to do that, thanks!! 1248343306 M * BartVB again :D 1248343358 M * BartVB I guess it's time to find a donation page on the vserver project pages :D 1248343519 M * Bertl if you want to donate money, please contact me in private, there are some options there for companies and private persons 1248344284 J * friendly ~friendly@ppp121-44-193-30.lns10.mel4.internode.on.net 1248344392 J * balbir_ ~balbir@59.145.136.1 1248344963 Q * eyck Ping timeout: 480 seconds 1248345183 Q * BartVB Quit: This computer has gone to sleep 1248346121 M * harry kbad: mail me, if you've got a q 1248346124 M * harry hmm... 1248346127 M * harry and if you come back ;0 1248346128 M * harry ;) 1248346968 Q * friendly Quit: Leaving. 1248348429 M * hijacker_ hey Bertl, do you suggest I try with the 2.6.30.1 patch for 2.6.30.2 kernel ? 1248348557 J * eyck Zs2IKlik@nat06.nowanet.pl 1248348755 M * Bertl hijacker_: nah, just use the patch for 2.6.30.2 :) 1248348837 Q * balbir_ Remote host closed the connection 1248349725 J * vServer_User ~vServer_U@host90-152-0-28.ipv4.regusnet.com 1248349736 M * vServer_User bertl - you about? 1248349981 M * Bertl yep 1248350831 Q * arekm Quit: leaving 1248351054 M * vServer_User i've got a server you can play with for today if you want 1248351415 Q * geb Remote host closed the connection 1248352710 M * richi_ Vertl, when will the patch for the 30.1 be stable? 1248352713 M * richi_ Bertl* 1248352724 M * richi_ Vertl - Virtual Bertl ;D 1248353295 M * hijacker_ Bertl, thanks ;-> 1248353677 M * Bertl richi_: in a few years, but I doubt 30.1 will be current then :) 1248353734 M * Bertl vServer_User: tx, but I have a bunch of servers to 'play with' already ... could you recreate the issue you were reporting last time? 1248353755 M * richi_ ups sry: i mean 2.6.30.1 with the new vserver pathc 1248353828 M * richi_ patch* 1248353839 M * richi_ moah its to hot for my brain 38°C ... 1248353891 M * richi_ vserver has a bad aspect...ähm a bad side... what ever...now i have 1000 vservers and need 1 admin more ;D 1248353989 M * richi_ oh what i forgott under debian sid or testing, i got this error(but everything works): secure-mount: mount(): Invalid -> argument vserver blabla build 1248354021 N * dave0gone dave0 1248354042 M * Bertl sounds like a debian issue, try with mainline (kernel + recent utils) if the issue remains, please let us know 1248354083 M * Bertl richi_: the patches for 2.6.30.x will get out of 'pre' pretty soon, if that is what you mean 1248354089 M * richi_ i'am ussing 2.6.30.1 and vserver patch with drbd and ocfs2 1248354107 M * richi_ mainline and debian? ^^ 1248354135 M * richi_ well the pre3 works nice.... 1248354168 M * richi_ there are soemtimes ext3 erros "no space left" but who cares about... i'am using ocfs2 and it works nice :) 1248354179 M * Bertl that is fixed in pre3 1248354184 M * Bertl *pre4 I mean 1248354199 M * richi_ i got this error only bye man db updates... 1248354224 M * richi_ but i'am not really using ext3... so its not a problem for me... 1248354245 M * richi_ its fast, works with drbd and ocfs so its nice :) 1248354314 M * Bertl glad to hear :) 1248354393 M * richi_ well the transform_server2air_conditioner() function is still missing, but maybe couse linux doesnt support the transformers arch :P 1248354519 M * Bertl the problem is, transformers are hard to come by, even harder to do kernel testing on them :) 1248354636 M * richi_ maybe ur microwave is one and you dont know it? :) 1248354666 M * Bertl my microwave oven is currently broken, so I'm somewhat sure it isn't ... but yeah, who knows 1248354738 M * richi_ broken? Have you tried to update it? Never change a running microwave ;) 1248356811 J * geb ~geb@AOrleans-253-1-29-5.w92-140.abo.wanadoo.fr 1248357444 J * hparker ~hparker@2001:470:1f0f:32c:290:96ff:fe50:40fa 1248357643 J * uva bno@118-160-160-186.dynamic.hinet.net 1248357808 N * dave0 dave0gone 1248361703 Q * davidkarban Quit: Ex-Chat 1248362206 J * mxs_ mxs@p4FCCBC71.dip.t-dialin.net 1248362344 M * vServer_User hmmmm, i think quota is behaving funny wiht the newer kernel too 1248362466 M * Bertl please define 'funny' and 'newer kernel' :) 1248362511 Q * mxs Ping timeout: 480 seconds 1248362536 J * dowdle ~dowdle@scott.coe.montana.edu 1248362910 M * vServer_User i'm still trying to trace it 1248362926 M * vServer_User the /home dir is rbind in a vserver from the parent 1248363062 M * vServer_User i think that it is counting the files on /home on the parent and then counting again for those in the vserver 1248363718 Q * Pazzo Quit: Ex-Chat 1248364190 M * vServer_User ignore me 1248364194 M * vServer_User i made a big boo boo 1248364680 Q * geb Quit: / 1248364970 J * bonbons ~bonbons@2001:960:7ab:0:2c0:9fff:fe2d:39d 1248365699 N * dave0gone dave0 1248368446 Q * vServer_User 1248368522 Q * pmenier Quit: Konversation terminated! 1248368677 Q * bonbons Quit: Leaving 1248368723 J * bonbons ~bonbons@2001:960:7ab:0:2c0:9fff:fe2d:39d 1248369918 M * PhatJ do I need to do anything specific to allow two guests to communicate via UDP with each other? 1248369942 M * PhatJ i can ssh between two guests perfectly fine, but UDP doesn't seem to be happening 1248369964 M * Bertl sounds more like a firewall issue to me 1248369977 M * PhatJ i am running debian hosts and guests with dummy0 - followed the howto 1248370013 M * PhatJ guests dont' have iptables and i have followed the howto on setting up networking in the guests to use private ip addresses 1248370027 M * Bertl yes, but your host? 1248370057 M * PhatJ i have followed the howto to setup the host with only the SNAT rule to allow guests access to the internet 1248370071 J * FireEgl FireEgl@173-16-9-10.client.mchsi.com 1248370099 M * daniel_hozac we'll want an iptables -nvL and iptables -t nat -nvL 1248370192 M * Bertl then run 'tcpdump -vvnei lo udp' on the host, and try your udp connection :) 1248370255 M * PhatJ there is one way communication, for sure - i see the initial request but the response isn't coming back 1248370280 M * PhatJ here is my current config - setup to port forward 5060 from the host into one guest and use masquerade instead of the SNAT 1248370286 M * PhatJ http://pastebin.ca/1504551 1248370319 M * PhatJ the port forwarding is working and one-way communication from one guest to the other is working, but the response isn't making it back to the guest 1248370324 M * PhatJ Bertl: trying your suggestion now 1248370385 M * PhatJ Bertl: i see lots of spewage, but it looks like only one direction 1248370470 M * PhatJ and here is the actual script containing the iptables commands on the host: http://pastebin.ca/1504558 1248370472 M * Bertl okay, now verify that the guest (the ip) you are talking to actually exists 1248370496 M * Bertl i.e. double check the IP in the tcpdump with your guest IP 1248370498 M * daniel_hozac you might want to try using nc to test the connection. 1248370506 M * PhatJ it does, for sure - i can see the UDP coming in and it trying to send it out 1248370514 M * PhatJ btw, i am running asterisk and openser (voip) 1248370520 M * PhatJ on these two guests 1248370524 M * Bertl 'trying' to send out means? 1248370540 M * PhatJ when i turn up debug in asterisk it says its trying to send out the UDP response 1248370545 M * PhatJ but gets nothing back 1248370556 M * Bertl do you see that response in the tcpdump? 1248370583 M * Bertl if not, then it is never sent (by asterisk) 1248370586 M * PhatJ it looks one way in tcpdump 1248370613 M * Bertl I'd suggest to test with nc (netcat) as suggested by daniel_hozac 1248370636 M * PhatJ trying netcat 1248370755 J * arekm arekm@carme.pld-linux.org 1248371283 M * PhatJ (UNKNOWN) [10.10.10.5] 5060 (sip) open 1248371289 M * PhatJ (UNKNOWN) [10.10.10.4] 5060 (sip) open 1248371303 M * PhatJ each was ran from the other guest 1248371323 M * PhatJ very odd 1248372410 J * maharaja raoul@93-189-26-52.rev.ipax.at 1248372425 M * maharaja hi there 1248372435 M * maharaja long time no see ;) 1248372459 M * Bertl indeed 1248372492 M * maharaja i have a question regarding bind mounts... vnamespace -e myvserver -- mount --bind /data/ /vservers/myvserver/data/ failes me for 2.3.0.x (ubuntu precompiled packages that i found via the wiki) 1248372533 M * Bertl util-vserver version? 1248372557 M * maharaja 0.30.216-pre2772 1248372565 M * maharaja from ubuntu jaunty repository 1248372580 M * Bertl probably too old, what is the approximate kernel version? 1248372600 M * maharaja 2.6.28-11-vserver, VS-API: 0x00020304 1248372620 M * Bertl well, I'd say, get a better kernel and newer util-vserver :) 1248372720 M * maharaja define better :) 1248372786 M * Bertl 2.6.27.x or 2.6.29.x or if you like to do testing, 2.6.30.x 1248372836 M * maharaja hehe 1248372842 M * maharaja i will end up testing, i guess ;) 1248372857 M * maharaja originally, i planned to revive my old home-server that i havn't booted in 3yrs 1248372877 M * maharaja well, lets see where i put my compile environment 1248374177 Q * gnuk Quit: NoFeature 1248374855 Q * mxs_ Remote host closed the connection 1248374857 J * mxs mxs@p4FCCBC71.dip.t-dialin.net 1248379125 J * ktwilight_ ~keliew@52.12-240-81.adsl-dyn.isp.belgacom.be 1248379125 Q * ktwilight Read error: Connection reset by peer 1248380249 J * SHINSAKU ~Shinsaku@chello084010157123.chello.pl 1248380307 Q * ghislainocfs21 Quit: Leaving. 1248380788 Q * hparker Quit: Read error: 104 (Peer reset by connection) 1248382241 Q * dna Quit: Verlassend 1248384060 Q * uva Ping timeout: 480 seconds 1248384708 N * dave0 dave0gone 1248385399 Q * bonbons Quit: Leaving 1248390580 J * geb ~geb@AOrleans-253-1-47-97.w92-140.abo.wanadoo.fr 1248392155 M * puck Is there any reliable way to know the vserver patch version ? The /proc/virtual/info have VCIVersion but I can not decode it 1248392164 M * puck (pasted from an internal IRC channel) 1248392167 M * daniel_hozac no. 1248392178 M * daniel_hozac uname -r is your best bet. 1248392190 M * puck Debian don't stick the patch version in there 1248392218 M * daniel_hozac in that case, you're pretty much screwed. i'm sure you can somehow work your ways backwards from that, but... 1248392231 M * puck damn, that is a pain 1248392302 M * puck Does VCI_VERSION change with each patch? 1248392310 M * daniel_hozac no. 1248392356 M * puck damn 1248392711 Q * bzed Remote host closed the connection 1248392716 J * bzed ~bzed@devel.recluse.de 1248392933 J * hparker ~hparker@2001:470:1f0f:32c:290:96ff:fe50:40fa 1248393520 Q * SHINSAKU