1381280661 J * thierryp ~thierry@2a01:e35:2e2b:e2c0:199f:64d0:885c:b2d1 1381281144 Q * thierryp Ping timeout: 480 seconds 1381284753 M * Bertl_oO off to bed now ... have a good one everyone! 1381284758 N * Bertl_oO Bertl_zZ 1381291467 J * thierryp ~thierry@2a01:e35:2e2b:e2c0:d4db:8086:1f94:3dda 1381291954 Q * thierryp Ping timeout: 480 seconds 1381291961 Q * ggherdov Ping timeout: 480 seconds 1381295947 J * thierryp ~thierry@2a01:e35:2e2b:e2c0:48ee:acc9:d144:9a1c 1381296773 Q * Defaultti Quit: Quitting. 1381298864 J * ggherdov uid11402@ealing.irccloud.com 1381300800 J * Ghislain ~aqueos@adsl1.aqueos.com 1381301243 Q * Romster Ping timeout: 480 seconds 1381302014 J * Defaultti defaultti@lakka.kapsi.fi 1381302834 Q * thierryp Remote host closed the connection 1381304050 Q * Aiken Remote host closed the connection 1381304185 J * Aiken ~Aiken@2001:44b8:2168:1000:21f:d0ff:fed6:d63f 1381305008 J * Romster ~romster@202.168.100.149.dynamic.rev.eftel.com 1381307935 N * Bertl_zZ Bertl 1381307939 M * Bertl morning folks! 1381308362 M * hijacker morning 1381310086 M * Ghislain hello there 1381313818 M * Bertl off for now ... bbl 1381313822 N * Bertl Bertl_oO 1381316367 Q * ircuser-1 Ping timeout: 480 seconds 1381316928 Q * nou charon.oftc.net reticulum.oftc.net 1381316928 Q * nox_ charon.oftc.net reticulum.oftc.net 1381316928 Q * _are_ charon.oftc.net reticulum.oftc.net 1381316928 Q * Bertl_oO charon.oftc.net reticulum.oftc.net 1381316928 Q * Defaultti charon.oftc.net reticulum.oftc.net 1381316928 Q * eyck charon.oftc.net reticulum.oftc.net 1381316928 Q * disposable charon.oftc.net reticulum.oftc.net 1381316928 Q * Rockj charon.oftc.net reticulum.oftc.net 1381316928 Q * ex charon.oftc.net reticulum.oftc.net 1381316928 Q * sladen charon.oftc.net reticulum.oftc.net 1381316928 Q * DLange charon.oftc.net reticulum.oftc.net 1381316928 Q * mnemoc charon.oftc.net reticulum.oftc.net 1381316928 Q * ggherdov charon.oftc.net reticulum.oftc.net 1381316928 Q * fback charon.oftc.net reticulum.oftc.net 1381316928 Q * harry_ charon.oftc.net reticulum.oftc.net 1381316928 Q * PowerKe_ charon.oftc.net reticulum.oftc.net 1381316928 Q * wmp charon.oftc.net reticulum.oftc.net 1381316928 Q * swenTjuln charon.oftc.net reticulum.oftc.net 1381316928 Q * _BWare_ charon.oftc.net reticulum.oftc.net 1381316928 Q * _nono_ charon.oftc.net reticulum.oftc.net 1381316928 Q * AndrewLee charon.oftc.net reticulum.oftc.net 1381316928 Q * Aiken charon.oftc.net reticulum.oftc.net 1381316928 Q * cuba33ci charon.oftc.net reticulum.oftc.net 1381316928 Q * clopez charon.oftc.net reticulum.oftc.net 1381316928 Q * bzed charon.oftc.net reticulum.oftc.net 1381316928 Q * hparker charon.oftc.net reticulum.oftc.net 1381316928 Q * rootard charon.oftc.net reticulum.oftc.net 1381316928 Q * mikeez charon.oftc.net reticulum.oftc.net 1381316928 Q * distemper charon.oftc.net reticulum.oftc.net 1381316928 Q * brambles charon.oftc.net reticulum.oftc.net 1381316928 Q * ncopa charon.oftc.net reticulum.oftc.net 1381316928 Q * _Shiva_ charon.oftc.net reticulum.oftc.net 1381316928 Q * jrayhawk charon.oftc.net reticulum.oftc.net 1381316928 Q * ivan` charon.oftc.net reticulum.oftc.net 1381316928 Q * Ghislain charon.oftc.net reticulum.oftc.net 1381316928 Q * sannes charon.oftc.net reticulum.oftc.net 1381316928 Q * transacid charon.oftc.net reticulum.oftc.net 1381316928 Q * BlackPanx charon.oftc.net reticulum.oftc.net 1381316928 Q * ser charon.oftc.net reticulum.oftc.net 1381316928 Q * aurel42 charon.oftc.net reticulum.oftc.net 1381316928 Q * sid3windr charon.oftc.net reticulum.oftc.net 1381316928 Q * morfoh charon.oftc.net reticulum.oftc.net 1381316928 Q * Jb_boin charon.oftc.net reticulum.oftc.net 1381316928 Q * fosco charon.oftc.net reticulum.oftc.net 1381316928 Q * kshannon_ charon.oftc.net reticulum.oftc.net 1381316928 Q * guerby charon.oftc.net reticulum.oftc.net 1381316928 Q * Wonka charon.oftc.net reticulum.oftc.net 1381316928 Q * karasz charon.oftc.net reticulum.oftc.net 1381316928 Q * Romster charon.oftc.net reticulum.oftc.net 1381316928 Q * arekm charon.oftc.net reticulum.oftc.net 1381316928 Q * l0kit charon.oftc.net reticulum.oftc.net 1381316928 Q * padde charon.oftc.net reticulum.oftc.net 1381316930 Q * ntrs charon.oftc.net reticulum.oftc.net 1381316930 Q * vasko charon.oftc.net reticulum.oftc.net 1381316930 Q * Vudumen charon.oftc.net reticulum.oftc.net 1381316930 Q * MooingLemur charon.oftc.net reticulum.oftc.net 1381316930 Q * daniel_hozac charon.oftc.net reticulum.oftc.net 1381316930 Q * hijacker charon.oftc.net reticulum.oftc.net 1381316930 Q * _br_ charon.oftc.net reticulum.oftc.net 1381316930 Q * Hunger charon.oftc.net reticulum.oftc.net 1381316999 J * Aiken ~Aiken@2001:44b8:2168:1000:21f:d0ff:fed6:d63f 1381316999 J * Defaultti defaultti@lakka.kapsi.fi 1381316999 J * Ghislain ~aqueos@adsl1.aqueos.com 1381316999 J * ggherdov uid11402@ealing.irccloud.com 1381316999 J * eyck ~eyck@nat08.nowanet.pl 1381316999 J * cuba33ci ~cuba33ci@114-36-235-14.dynamic.hinet.net 1381316999 J * DLange ~DLange@dlange.user.oftc.net 1381316999 J * mnemoc ~amery@geeks.cl 1381316999 J * disposable disposable@shell.websupport.sk 1381316999 J * sladen ~paul@starsky.19inch.net 1381316999 J * Rockj rockj@hodge.geekrevolution.net 1381316999 J * ex ~ex@valis.net.pl 1381316999 J * clopez ~tau@neutrino.es 1381316999 J * bzed ~bzed@bzed.netrep.oftc.net 1381316999 J * fback fback@red.fback.net 1381316999 J * sannes ~ace@cm-84.211.100.82.getinternet.no 1381316999 J * ncopa ~test@3.203.202.84.customer.cdi.no 1381316999 J * hparker ~hparker@0000fb24.user.oftc.net 1381316999 J * transacid ~transacid@transacid.de 1381316999 J * harry_ ~harry@enzoverder.be 1381316999 J * BlackPanx ~kvirc@31.15.133.178 1381316999 J * nou Chaton@causse.larzac.fr.eu.org 1381316999 J * ser ~ser@host1.tldp.ibiblio.org 1381316999 J * ivan` ~ivan`@000130ca.user.oftc.net 1381316999 J * _Shiva_ shiva@whatcha.looking.at 1381316999 J * rootard ~rootard@pirlshell.lpl.arizona.edu 1381316999 J * mikeez ~mike@ks367289.kimsufi.com 1381316999 J * brambles lechuck@s0.barwen.ch 1381316999 J * distemper ~user@2001:4dd0:ff00:9484:3f2f:58c8:2997:3dd2 1381316999 J * jrayhawk ~jrayhawk@nursie.omgwallhack.org 1381316999 J * PowerKe_ ~tom@94-227-30-112.access.telenet.be 1381316999 J * wmp ~wmp@2001:41d0:1:8616::1 1381316999 J * _nono_ ~gomes@licencieux.ircam.fr 1381316999 J * swenTjuln ~Marko@195.95.173.243 1381316999 J * AndrewLee ~andrew@n201.enc.hlc.edu.tw 1381316999 J * _BWare_ ~itsme@31.25.99.5 1381316999 J * Wonka produziert@chaos.in-kiel.de 1381316999 J * fosco fosco@marx.wirefull.org 1381316999 J * kshannon_ ~kris@kris.shannon.id.au 1381316999 J * sid3windr luser@bastard-operator.from-hell.be 1381316999 J * aurel42 ~aurel@sid.a42.de 1381316999 J * karasz ~karasz@00015555.user.oftc.net 1381316999 J * Jb_boin ~dedior@proxad.eu 1381316999 J * morfoh ~morfoh@chewbacca.easy-cloud.net 1381316999 J * guerby ~guerby@ip165-ipv6.tetaneutral.net 1381316999 J * nox_ ~bnc@2a01:4f8:140:40a2:6667::952 1381316999 J * _are_ ~quassel@2a01:238:4325:ca00:f065:c93c:f967:9285 1381316999 J * Bertl_oO herbert@IRC.13thfloor.at 1381317008 J * Romster ~romster@202.168.100.149.dynamic.rev.eftel.com 1381317008 J * arekm ~arekm@000161e0.user.oftc.net 1381317008 J * l0kit ~1oxT@0001b54e.user.oftc.net 1381317008 J * padde ~padde@patrick-nagel.net 1381317008 J * ntrs ~ntrs@vault08.rosehosting.com 1381317008 J * daniel_hozac ~daniel@h149n2-spaa-a12.ias.bredband.telia.com 1381317008 J * MooingLemur ~troy@phx-pnap.pinchaser.com 1381317008 J * Hunger hunger@proactivesec.com 1381317008 J * hijacker ~hijacker@213.91.163.5 1381317008 J * _br_ ~bjoern_of@213-239-215-232.clients.your-server.de 1381317008 J * vasko ~vasko@unreal.rainside.sk 1381317008 J * Vudumen ~vudumen@perverz.hu 1381318494 J * beng_ ~BenG@cpc35-aztw23-2-0-cust207.18-1.cable.virginmedia.com 1381318906 J * ircuser-1 ~ircuser-1@35.222-62-69.ftth.swbr.surewest.net 1381323103 J * alpha_one_x86 ~kvirc@190.186.23.77 1381323263 M * alpha_one_x86 I remain blocked on my simple patch, some body to help me? 1381326254 Q * ncopa Quit: Leaving 1381326407 J * ncopa ~test@3.203.202.84.customer.cdi.no 1381327867 N * l0kit Guest1923 1381327872 J * l0kit ~1oxT@0001b54e.user.oftc.net 1381328271 Q * Guest1923 Ping timeout: 480 seconds 1381329092 Q * beng_ Quit: I Leave 1381330764 Q * jrklein Quit: No Ping reply in 180 seconds. 1381330776 J * jrklein ~osx@proxy.dnihost.net 1381331587 Q * geb_ Read error: Connection reset by peer 1381331606 J * geb ~geb@mars.gebura.eu.org 1381331955 J * acesabe ~acesabe@bmex-gw.bristolwireless.net 1381332036 M * acesabe any pointers on why a remote server only responds to vserver host IP rather than guest IP 1381332051 M * acesabe this is a Debian system running Zabbix 1381332066 M * acesabe all confs in Zabbix define the set guest IP 1381332095 M * acesabe *all* remote servers (running Zabbix agent) in fact 1381332749 M * Bertl_oO responds means? 1381332771 M * acesabe well works 1381332826 M * Bertl_oO so you assigned the guest the host IP:? 1381332852 M * acesabe I assigned the guest the guest IP 1381332877 M * Bertl_oO and _the_guest_ responds only to host IP traffic, yes? 1381332883 M * acesabe so it seems 1381332915 M * Bertl_oO in that case your isolation is severely broken or you have firewall rules mapping host IPs to guest IPs 1381332936 M * acesabe no firewall afaik 1381332943 M * Bertl_oO or the guest is not answering at all 1381332957 M * Bertl_oO check with a service which logs inside the guest, for example sshd 1381332975 M * acesabe ok... 1381332977 M * Bertl_oO see if your 'connection' to the guest actually ends inside the guest 1381333008 M * acesabe checking 1381333055 M * acesabe ssh logs to auth.log 1381333059 M * acesabe all seems ok 1381333368 M * Bertl_oO so the log inside the guest shows a connect attempt to ssh when you ssh to the host? 1381333382 M * acesabe yep 1381333397 M * Bertl_oO what IPs do you see inside the guest with 'ip a l' 1381333426 M * acesabe just the guest 1381333455 M * acesabe (and localhost of course) 1381333461 M * Bertl_oO that means that something maps your host IP to the guest or your isolation is severely broken 1381333472 M * Bertl_oO what kernel/patch/util-vserver version do you use_ 1381333474 M * Bertl_oO ? 1381333488 Q * arekm Remote host closed the connection 1381333506 M * acesabe one rolled by one of our guys here 1381333506 M * acesabe let me check 1381333565 M * acesabe 3.2.48-vs2.3.2.16-beng is the kernel not sure about patch/util-vserver 1381333570 M * acesabe can check 1381333578 M * Bertl_oO vserver-info - SYSINFO 1381333584 M * acesabe k 1381333610 M * acesabe # vserver-info 1381333610 M * acesabe Versions: 1381333610 M * acesabe Kernel: 3.2.48-vs2.3.2.16-beng 1381333610 M * acesabe VS-API: 0x00020308 1381333611 M * acesabe VCI: 0x0000000013001f11 1381333612 M * acesabe util-vserver: 0.30.216-pre3038-squeeze0.2; Oct 2 2012, 20:12:21 1381333614 M * acesabe Features: 1381333616 M * acesabe CC: gcc, gcc (Debian 4.4.5-8) 4.4.5 1381333618 M * acesabe CPPFLAGS: '' 1381333620 M * acesabe CFLAGS: '-g -O2 -std=c99 -Wall -pedantic -W -funit-at-a-time' 1381333622 M * acesabe build/host: x86_64-pc-linux-gnu/x86_64-pc-linux-gnu 1381333624 M * acesabe Use dietlibc: yes 1381333626 M * acesabe Build C++ programs: 1381333628 M * acesabe Build C99 programs: yes 1381333628 M * Bertl_oO looks good so far (use pastebin next time) 1381333630 M * acesabe Available APIs: compat,v11,fscompat,v13,net,v21,v22,v23,netv2 1381333632 M * acesabe ext2fs Source: e2fsprogs 1381333634 M * acesabe syscall(2) invocation: alternative 1381333636 M * acesabe vserver(2) syscall#: 236/glibc 1381333638 M * acesabe crypto api: nss 1381333642 M * acesabe python bindings: yes 1381333644 M * acesabe use library versioning: yes 1381333646 M * acesabe yeah 1381333662 M * Bertl_oO so I presume something on your host is DNATing host IPs to the guest IP 1381333684 M * acesabe best check for IPTables rules... 1381333689 M * Bertl_oO tcpdump -vvnei ethX -port 22 should show what happens (change ethX to your inbound interface) 1381333705 J * arekm ~arekm@000161e0.user.oftc.net 1381333734 M * acesabe on server or guest? 1381333757 M * Bertl_oO on the host 1381333764 M * acesabe k 1381333870 M * acesabe tcpdump -vvnei -i eth3 -port 22 1381333870 M * acesabe tcpdump: invalid option -- 'o' 1381333872 M * acesabe odd 1381333880 M * acesabe (was missing -i) 1381334445 M * Bertl_oO the i in vvnei is for the interface 1381334465 M * Bertl_oO so probably you typed something different 1381334479 M * acesabe just getting error about invalid option in a load of different syntaxes! 1381334481 M * acesabe odd! 1381334560 M * acesabe ok -port should have been just port 1381334606 M * acesabe ok so masses of this 1381334607 M * acesabe http://paste.debian.net/54371/ 1381334649 M * acesabe let me try while logged in direct to guest not via host.. 1381334671 M * acesabe ah 1381334862 M * acesabe output just gets drowned in ssh connection used to issue the tcpdump command! 1381334877 M * acesabe this is a remote vserver host 1381334946 J * bonbons ~bonbons@2001:a18:20f:4601:59eb:7ca5:77c3:962 1381335478 J * paradigm-X ~username@pool-71-170-154-175.dllstx.fios.verizon.net 1381336550 M * acesabe will have to revisit this one another time.... 1381336642 M * paradigm-X If I have overlooked it, perhaps someone can point out a link to where I can find any information about special considerations in regard to how to connect two or more vserver guests internally only, i.e., without making use of the external network, if possible? 1381336954 Q * acesabe Remote host closed the connection 1381338403 M * Bertl_oO there are several options: 1381338431 M * Bertl_oO 1) you can share certain namespaces between guests (e.g. filesystem, sockets) 1381338455 M * Bertl_oO 2) you can communicate over local IPs (i.e. IPs not routed to the outside) 1381338478 M * Bertl_oO 3) you can use a daemon on the host to relay communication between guests 1381338510 M * Bertl_oO special considerations? well, depends on what way you want to go and what your requirements are 1381338600 M * paradigm-X Hello, Bertl_oO. 1381338887 M * paradigm-X Let me start by looking at the second option. If I want to set up local IPs, would it be done in the same way as I set up the IPs for external networks? That is, I put entries in "/etc/vservers/(vsX)/interfaces/*". 1381340056 M * Bertl_oO for example, putting them on 'lo' will denote them as local IPs 1381340090 M * Bertl_oO blocking any unwanted traffic with iptables, you can restrict any communication to a specific group of guests 1381340592 M * alpha_one_x86 My vserver patch isolation: http://files.first-world.info/temp/vserver-isolation-3.10-A.diff 1381340684 M * Bertl_oO 3.10.15 and "paste on the channel" was what I said 1381340872 M * Bertl_oO (this is labeled 3.10 but actually against 3.10.14-vs2.3.x I presume) 1381342531 M * Bertl_oO patch? 1381342734 M * Bertl_oO alpha_one_x86: the updated patch? 1381342770 M * alpha_one_x86 http://files.first-world.info/temp/vserver-isolation-3.10-B.diff 1381343134 M * Bertl_oO your 'problem' is easy to fix, you need to adjust the sched_class definition to take two arguments for pick_next_task instead of one 1381343158 M * Bertl_oO but I'm currently fixing a bunch of other obvious bugs which keep the kernel from compiling 1381343347 M * alpha_one_x86 when it will be the kernel into C++... :( 1381343365 M * Bertl_oO hopefully never :) 1381343384 M * alpha_one_x86 Gcc is switching on c++ 1381343415 M * Bertl_oO IMHO c++ is one of the worst languages conceived 1381343457 M * Bertl_oO it is unnecessarily complicated, the compilers are usually buggy and the language is not really powerful 1381343504 M * alpha_one_x86 but pointer on function mostly, can be hard for the beginer... no? 1381343566 M * Bertl_oO and overloaded operators or virtual methods are more intuitive? 1381343577 M * alpha_one_x86 you fix the bug where, into the vserver branch? 1381343603 M * Bertl_oO the build is running now, I'll upload a fixed patch shortly 1381343613 M * alpha_one_x86 Bertl_oO: for me yes, after it's maybe because I use it more frequently 1381343648 Q * guerby Ping timeout: 480 seconds 1381343651 M * Bertl_oO but note: it is completely untested, and it looks like parts of the 'changes' are already upstream, so I'd suspect a few things to break 1381343712 M * alpha_one_x86 I will do some test 1381343937 J * guerby ~guerby@ip165-ipv6.tetaneutral.net 1381344436 M * Bertl_oO alpha_one_x86: http://vserver.13thfloor.at/ExperimentalT/delta-3.10.15-vs2.3.6.6-isol1.diff 1381345575 J * druschka ~druschka@82.192.23.118 1381346572 Q * druschka Quit: druschka 1381346590 J * druschka ~druschka@82.192.23.118 1381347218 M * alpha_one_x86 compil 1381348806 J * gyutyuglf gyutyuglf@86.126.58.151 1381349339 Q * gyutyuglf 1381349345 Q * druschka Quit: druschka 1381351466 M * alpha_one_x86 I try it, and go the return tomorrow 1381351500 Q * alpha_one_x86 Quit: KVIrc KVIrc Aria 4.3.1, revision: 6250, sources date: 20120701, built on: 2013-08-29 12:08:18 UTC http://www.kvirc.net/ 1381351600 Q * paradigm-X Quit: leaving 1381354330 Q * bonbons Quit: Leaving 1381356489 Q * guerby Quit: Leaving 1381356510 J * guerby ~guerby@ip165-ipv6.tetaneutral.net 1381357927 Q * hparker Remote host closed the connection 1381359462 Q * Ghislain Quit: Leaving.