-
Cere0
very very free
-
Cere0
I like to very thing if I'm able to do the work.
-
Cere0
I'm already in party mode.
-
Cere0
I almost forgot why I came here.
-
Cere0
apt install moo && yum pacmen.then.do? pacman install freebsd.to : moo.
-
» Cere0 likes mickey mouseys.
-
polyex
if we only allow public key ssh in, any good reason user accounts should still have a pw?
-
mason
polyex: sudo
-
polyex
what if it's an account that i never sudo to? i ssh in to it with pubkey then i sudo to other accounts
-
mason
passwordless sudo to other accounts sounds like more of a problem than the account itself having a password it doesn't use for anything else
-
polyex
no, no. i publickey ssh into an account, then sudo (WITH PASSWORD) to other accounts. so any reason to keep a pw on the account i ssh into?
-
mason
polyex: sudo uses that account's password, not the target account's password
-
mason
If you're talking su, then that's a different story.
-
psychonate
Does FreeBSD use PAM with sshd and crond to ensure that an account has a password set?
-
polyex
lol my bad
-
psychonate
I'm more used Linux, so I really don't know yet.
-
mason
psychonate: There's the same UsePAM in sshd_config that everyone has.
-
polyex
if an account can sudo as root without a pw should the account still have a pw?
-
mason
polyex: Then that account *is* root, effectively, and it should have a password. I don't see a downside to having a password, vs "hey, you got to my console, now you win"
-
polyex
what if the sudo spec is user ALL=(ALL) NOPASSWD: ALL?
-
psychonate
Sounds like locking the doors but leaving the key in the ignition.
-
polyex
ya i dont like it. i dont know any other way to let ansible configure my system
-
polyex
ill ask in their chan again maybe there's something new
-
Cere0
unable to install a flash disk drive
-
Cere0
not bootable,
-
Cere0
I sad, I shall quit this room.
-
Cere0
No more free wine, for me.
-
polyex
ya there's no better way psychonate
-
polyex
feels weird to me too but that's how ansible works
-
Cere0
I was a 7.141592 FreeBSD fan, either now I'm not on this channel anymore, or I should be very quiet.
-
Soni
we want to improve freebsd torrents with btv2 among other things, anyone wanna help?
-
wez
Don't most ISPs and hosting sites rate limit or block torrents these days?
-
Soni
not webtorrents, no
-
Soni
but freebsd torrent packaging is uh. well it completely sucks for webtorrents.
-
Soni
kinda hard to support freebsd when it's packaged in such a deeply incompatible way.
-
Soni
(it's a simple fix, tho potentially non-trivial)
-
thorongil
is there a compelling reason to use UEFI with FreeBSD?
-
skered
Because it's the only option in some cases?
-
thorongil
hmmm. even on a single-boot machine?
-
edenist
There's probably systems which don't offer legacy boot? I haven't seen any myself but I would assume by now they exist?
-
thorongil
fortunately, the system in question supports both
-
polyex
how do we remove the pw for a user? so the only way to access it is through pubkey ssh
-
_Random
what command do I need to run to identify the bluetooth devices available on my laptop.
-
Soni
we're gonna sleep, trans rights o/
-
Chargen
re lo
-
Chargen
who will be attending EU BSD con in Vienna
-
polyex
chargen
-
polyex
you left before i could tell u the channel on efnet dude
-
Chargen
hey
-
Chargen
oh sorry. I joined efnet and #freebsd but only 30 were there (all asleep)
-
polyex
pm
-
Chargen
ok
-
Bsims
Howdy
-
Cere0
howdy yourself Bsims
-
Bsims
I'm still learning BSD. I've ran Debian for over 20 years. I actively dislike systemd
-
polyex
ya go hello yourself
-
Bsims
Heh polyex I heard that makes hair grow on your palms
-
Cere0
Bsims, I'm one part of you, we make all-one in the universe.
-
Cere0
I think Joe Biden wear nikes.
-
Bsims
Lol raising my kid right. Das 6yo prefers unix to windows for the KDE Mr potato head clone
-
Cere0
Beside the fact he likes sport
-
Cere0
And I do.
-
Cere0
It's too Herlea, for me.
-
bit
hmz
-
Bsims
I do archery and pistol shooting as my sports
-
polyex
nice
-
Cere0
Bang!
-
Cere0
They.
-
saltd
she
-
polyex
is there any better way to disable user login than setting its shell to /usr/sbin/nologin?
-
Chargen
you mean to stop probing at certain usernames/accountnames that may be processes?
-
polyex
ya stuff like that
-
polyex
i found 'pw lock' i'll read on that
-
Chargen
oki
-
polyex
i wonder if an account that's been locked can still have services run as that uid
-
polyex
im gonna try it
-
Chargen
good one
-
_Random
what command do I need to run to identify the bluetooth devices available on my laptop.
-
_Random
i have lenovo t430 i5-3380 quad core
-
_Random
identify the hardware
-
polyex
maybe ls /dev/<bt driver> ?
-
polyex
i disable bt so i dunno about using it sorry
-
_Random
no go but thanks polyex: :-)
-
polyex
:(
-
Chargen
lsbth would be nice ey
-
_Random
no go but wireless lan 03:00.0 Network controller: Intel Corporation Centrino Advanced-N 6205 [Taylor Peak] (rev 34)
-
_Random
thanks Chargen: :-((
-
_Random
the card has no wifi.
-
_Random
I'll check out what other wifi cards that I might have
-
polyex
it's dirty but if you grep dmesg for bluetooth that might say stuff
-
PAUL007
I cant connect to lan its showing re0 state link up/down in loop it was working when i installed first time
-
debdrup
PAUL007: sounds very much like a faulty NIC, but you can try net/realtek-re-kmod as a replacement driver to see if that works better.
-
debdrup
net/realtek-re-kmod is the completely unmodified version of the driver from Realtek, whereas the one in FreeBSD has been modified to make use of iflib and had various other changes toit.
-
debdrup
s/it./\ it./
-
debdrup
-
VimDiesel
Title: Torrents - FreeBSD Wiki
-
PAUL007
debdrup how do i install it
-
PAUL007
it dosent shows my wifi interface now which was on installtion menu
-
Soni
debdrup: yeah that sucks for this
-
spacewalker2
Hello, I observed on my NAS (13.1-RELEASE-p2) that a find (
termbin.com/xdeu) command runs and causes many IO operations on my pools which are separated to zroot. During installing this machine I checked the periodic scripts with "grep -R find /etc/periodic/ /usr/local/etc/periodic/", figuring out which of them are using a find command. I disabled additionally to the defaults
-
spacewalker2
daily_clean_disks_enable, weekly_noid_enable, security_status_chksetuid_enable and security_status_neggrpperm_enable. I grepped through the whole system but couldn't really figure out where this is coming from. Probably there are shell variables in use and this find is puzzled together in the yet unknown shell script. Also, I didn't manage to catch the whole find command line because I wasn't fast
-
spacewalker2
enough at that time. Does anybody have some hint here? Thanks in advance!
-
spacewalker2
My nearest guess would be maybe /usr/libexec/locate.updatedb
-
PAUL007
vidcontrol doesnot show any modes
-
spacewalker2
But I checked it is also disabled in periodic.conf.
-
Soni
debdrup: would like to ship freebsd with
distrorrent.github.io but freebsd packaging sucks for it
-
VimDiesel
Title: Distrorrent
-
llua
notactionable statement.
-
dadv
Hi! I have small FreeBSD virtual machine at Hetzner, installed long time ago. Recently I upgraded it to 12.3-STABLE/amd64 via source upgrade. I have IPSec tunnel to the VM and the VM acts as router with NAT for traffice coming from the tunnel, serving it as some kind of LAN. It works using vtnet0 interface as external one. I use ipfw nat and vtnet0 has TSO disabled. However, I found that routing speed is very low unless I do: ifconfig vtnet0 -rxcsum, in that
-
dadv
case speed increases 10x upto 100MByte/s for some large https transfer and it decreases back to about 130KByte/s if I do: ifconfig vtnet0 rxcsum
-
dadv
s/100Mbyte/10Mbyte/
-
dadv
still, the difference is quite big
-
dadv
How do I debug this?
-
PAUL007
sometimes lan dosent work , shows waiting for route info dhcp 30s ...
-
PAUL007
something to change in router ?
-
dadv
check wires
-
dadv
if it is wired net
-
PAUL007
wire is fine shows connected
-
PAUL007
now its working i restart netif service
-
PAUL007
vesa module shows fail to register and cant change resolution
-
dadv
AFAIR vesa driver does not support changing resolutions in X.org
-
dadv
you need vendor driver for resulution control in X
-
PAUL007
i need to change tty resolution
-
dadv
which version do you use?
-
PAUL007
13.1
-
V_PauAmma_V
000000000000000000000000
-
V_PauAmma_V
Ooops.
-
V_PauAmma_V
hindsight: being able to spot horse hooves
-
V_PauAmma_V
clopping on the street and 0identify10 1t0he sound from
-
V_PauAmma_V
100-150m away. I'm not sure I'd have heard or noticed it
-
V_PauAmma_V
Grr.
-
debdrup
Soni: the project used to host torrents, but the web seeds had at least one rce which combined with a zero-day privesc led to what's described in detail here:
freebsd.org/news/2012-compromise
-
VimDiesel
Title: FreeBSD.org intrusion announced November 17th 2012 | The FreeBSD Project
-
Soni
debdrup: huh, neat
-
Soni
debdrup: we have a hard time believing you tho - webseeds are just hotlinks, really
-
debdrup
Soni: maybe it was just a regular torrent client that had an RCE then.
-
Soni
sure, that happens all the time
-
debdrup
I suggest you discuss it with so@
-
Soni
it's (much) less of an issue when it's running in the browser, ofc
-
debdrup
I doubt there's going to be much in the way of change.
-
Soni
the biggest issue with torrents is SHAttered but there's BTv2 which solves that (ofc it's still hard to find BTv2 support and e.g. webtorrent doesn't currently support it)
-
debdrup
It's a moot point, because getting something largely untested stood up on project infrastructure, when a former variant of it was likely the culprit in one of the very few compromises the project has happened, probably means it isn't gonna happen until after the heatdeath of the universe.
-
debdrup
s/happened/had/
-
debdrup
There's plenty of ways to download FreeBSD, and if webseeds as you say are just direct links, then I don't see how you're prevented from creating torrent files with direct links as the URI structure isn't likely to change and can be found in manifest files last I checked (the checksum files, specifically).
-
mason
-
VimDiesel
Title: Torrents - FreeBSD Wiki
-
Soni
debdrup: they're just direct links but for webseeds to work with webtorrents (which is tbh mostly optional and we're happy to work around it if we need to) they need Access-Control-Allow-Origin: *, aka CORS
-
Soni
but that's mostly for mirrors to figure out
-
Soni
(does freebsd have mirrors?)
-
bittin
yeah
-
Soni
it'd be nice if freebsd provided official .torrent files but eh :shrug:
-
sshow
is this considered the "official best way" to jail GUI applications?
wiki.freebsd.org/JailingGUIApplications
-
VimDiesel
Title: JailingGUIApplications - FreeBSD Wiki
-
rtprio
Soni: how often do you download isos to rquire official torrent links
-
sshow
How can I list all packages installed from ports?
-
mason
sshow: pkg info
-
sshow
mason: I can't seem to filter out packages built from ports/source
-
mason
Ah, I don't know that there's a real distinction.
-
sshow
I want to know what packages I've built from source :)
-
mason
s/real/recorded/
-
Soni
rtprio: as often as fucking up the install XD
-
yuripv
sshow: packages installed from remote repository seems to have the following line in info: repo_type : binary
-
sshow
I think I get the results I want from `pkg query '%n %R' | grep -v FreeBSD`, where %R is the source repository ('unknown-repository' for non-matches)
-
polyex
why does `service -e` dump warning into /var/log/messages "/usr/sbin/service: WARNING: $ is not set properly" how tf do i debug that?
-
rtprio
polyex: for $ or other services?
-
polyex
what?
-
rtprio
i get a bunch of /usr/sbin/service: WARNING: $nsd_enable is not set properly - see rc.conf(5). but not for '$'
-
polyex
what are you setting wrong?
-
rtprio
i think it's just a message when they're unset
-
polyex
if everyone has those warnings what are we doing wrong?
-
rtprio
look at checkyesno in /etc/rc.subr
-
polyex
WARNING: $sndiod_enable is not set properly i get that 1 too
-
polyex
hmm
-
rtprio
i don't think it's harmful
-
polyex
shouldn't these have settings in /etc/defaults/rc.conf set properly?
-
polyex
well ya but still
-
rtprio
if they were in base they would, but most of mine seem to be in /usr/local/etc/rc.d
-
rtprio
like i have git installed but wtf would i git_daemon_enable. and obvs there's no default in /etc/defaults/rc.conf
-
polyex
oh wow most (all?) of my warns come from /usr/local/etc/rc.d too
-
polyex
so maybe it's flakey packages
-
rtprio
so to silence them set all them _enable=NO
-
polyex
can packages with a default rc.d script include defaults?
-
rtprio
yes, they do, but _enable isn't one of them, unset it's assumed to be false
-
polyex
like should git_daemon_enable=NO be in /usr/local/etc/rc.d/git_daemon
-
rtprio
it does: : ${git_daemon_enable:=NO}
-
polyex
so why the warn?
-
rtprio
i'm not sure
-
polyex
dont make sense man
-
V_PauAmma_V
F/win
-
polyex
?
-
jakewilliami
How does one create a znode in C? I have `znode_t i;` to initialise the variable, and I am running `cc` with `-I /usr/lib/libzpool.so`, but I am getting `error: use of undeclared identifier 'znode_t`. What do I need to import to aloow me to crreate `znode`s?
-
jgh
there will be a declaration for that typedef and the (likely) struct it uses, in some .h file. You'll need to find that and #include it
-
mason
grep -r of /usr/include didn't turn it up, looking here on 13.1, FWIW
-
mason
But it might be there in /usr/src somewhere. I seem not to have a box with that populated.
-
parv
Files located via "locate" in stable/13 tree :
termbin.com/pxt0
-
jakewilliami
jgh, mason, thanks, I’ll take a look in /usr/include or /usr/src. I was looking in /usr/lib
-
mason
Oh, right, and that was a declaration issue, not a definition. Missed that.