00:00:12 very very free 00:00:30 I like to very thing if I'm able to do the work. 00:01:57 I'm already in party mode. 00:02:32 I almost forgot why I came here. 00:04:00 apt install moo && yum pacmen.then.do? pacman install freebsd.to : moo. 00:07:49 * Cere0 likes mickey mouseys. 00:19:34 if we only allow public key ssh in, any good reason user accounts should still have a pw? 00:19:54 polyex: sudo 00:20:34 what if it's an account that i never sudo to? i ssh in to it with pubkey then i sudo to other accounts 00:23:28 passwordless sudo to other accounts sounds like more of a problem than the account itself having a password it doesn't use for anything else 00:24:48 no, no. i publickey ssh into an account, then sudo (WITH PASSWORD) to other accounts. so any reason to keep a pw on the account i ssh into? 00:25:53 polyex: sudo uses that account's password, not the target account's password 00:26:20 If you're talking su, then that's a different story. 00:26:36 Does FreeBSD use PAM with sshd and crond to ensure that an account has a password set? 00:26:45 lol my bad 00:27:18 I'm more used Linux, so I really don't know yet. 00:27:47 psychonate: There's the same UsePAM in sshd_config that everyone has. 00:27:48 if an account can sudo as root without a pw should the account still have a pw? 00:29:06 polyex: Then that account *is* root, effectively, and it should have a password. I don't see a downside to having a password, vs "hey, you got to my console, now you win" 00:30:25 what if the sudo spec is user ALL=(ALL) NOPASSWD: ALL? 00:33:18 Sounds like locking the doors but leaving the key in the ignition. 00:34:20 ya i dont like it. i dont know any other way to let ansible configure my system 00:34:33 ill ask in their chan again maybe there's something new 00:41:15 unable to install a flash disk drive 00:41:27 not bootable, 00:51:47 I sad, I shall quit this room. 00:52:05 No more free wine, for me. 00:52:24 ya there's no better way psychonate 00:52:35 feels weird to me too but that's how ansible works 00:52:56 I was a 7.141592 FreeBSD fan, either now I'm not on this channel anymore, or I should be very quiet. 01:04:37 we want to improve freebsd torrents with btv2 among other things, anyone wanna help? 01:06:39 Don't most ISPs and hosting sites rate limit or block torrents these days? 01:08:52 not webtorrents, no 01:09:27 but freebsd torrent packaging is uh. well it completely sucks for webtorrents. 01:09:59 kinda hard to support freebsd when it's packaged in such a deeply incompatible way. 01:10:42 (it's a simple fix, tho potentially non-trivial) 01:16:32 is there a compelling reason to use UEFI with FreeBSD? 01:24:51 Because it's the only option in some cases? 01:35:49 hmmm. even on a single-boot machine? 01:43:35 There's probably systems which don't offer legacy boot? I haven't seen any myself but I would assume by now they exist? 01:45:13 fortunately, the system in question supports both 02:57:23 how do we remove the pw for a user? so the only way to access it is through pubkey ssh 02:58:59 <_Random> what command do I need to run to identify the bluetooth devices available on my laptop. 03:13:08 we're gonna sleep, trans rights o/ 04:10:32 re lo 04:10:55 who will be attending EU BSD con in Vienna 04:11:45 chargen 04:11:52 you left before i could tell u the channel on efnet dude 04:11:52 hey 04:12:25 oh sorry. I joined efnet and #freebsd but only 30 were there (all asleep) 04:13:31 pm 04:13:36 ok 05:09:51 Howdy 05:11:01 howdy yourself Bsims 05:12:20 I'm still learning BSD. I've ran Debian for over 20 years. I actively dislike systemd 05:12:22 ya go hello yourself 05:12:49 Heh polyex I heard that makes hair grow on your palms 05:12:55 Bsims, I'm one part of you, we make all-one in the universe. 05:15:20 I think Joe Biden wear nikes. 05:15:41 Lol raising my kid right. Das 6yo prefers unix to windows for the KDE Mr potato head clone 05:15:43 Beside the fact he likes sport 05:16:12 And I do. 05:17:12 It's too Herlea, for me. 05:17:12 hmz 05:17:30 I do archery and pistol shooting as my sports 05:19:49 nice 05:20:18 Bang! 05:20:56 They. 05:23:10 she 05:25:29 is there any better way to disable user login than setting its shell to /usr/sbin/nologin? 05:34:01 you mean to stop probing at certain usernames/accountnames that may be processes? 05:34:21 ya stuff like that 05:34:36 i found 'pw lock' i'll read on that 05:34:45 oki 05:35:42 i wonder if an account that's been locked can still have services run as that uid 05:35:45 im gonna try it 05:36:05 good one 05:50:47 <_Random> what command do I need to run to identify the bluetooth devices available on my laptop. 05:52:38 <_Random> i have lenovo t430 i5-3380 quad core 05:54:35 <_Random> identify the hardware 05:54:48 maybe ls /dev/ ? 05:55:00 i disable bt so i dunno about using it sorry 05:58:59 <_Random> no go but thanks polyex: :-) 06:00:07 :( 06:06:35 lsbth would be nice ey 06:08:51 <_Random> no go but wireless lan 03:00.0 Network controller: Intel Corporation Centrino Advanced-N 6205 [Taylor Peak] (rev 34) 06:11:54 <_Random> thanks Chargen: :-(( 06:12:08 <_Random> the card has no wifi. 06:12:52 <_Random> I'll check out what other wifi cards that I might have 06:13:04 it's dirty but if you grep dmesg for bluetooth that might say stuff 09:55:32 I cant connect to lan its showing re0 state link up/down in loop it was working when i installed first time 10:16:01 PAUL007: sounds very much like a faulty NIC, but you can try net/realtek-re-kmod as a replacement driver to see if that works better. 10:16:48 net/realtek-re-kmod is the completely unmodified version of the driver from Realtek, whereas the one in FreeBSD has been modified to make use of iflib and had various other changes toit. 10:17:19 s/it./\ it./ 10:19:25 Soni: https://wiki.freebsd.org/Torrents 10:19:26 Title: Torrents - FreeBSD Wiki 10:24:29 debdrup how do i install it 10:29:13 it dosent shows my wifi interface now which was on installtion menu 11:47:50 debdrup: yeah that sucks for this 11:52:14 Hello, I observed on my NAS (13.1-RELEASE-p2) that a find (https://termbin.com/xdeu) command runs and causes many IO operations on my pools which are separated to zroot. During installing this machine I checked the periodic scripts with "grep -R find /etc/periodic/ /usr/local/etc/periodic/", figuring out which of them are using a find command. I disabled additionally to the defaults 11:52:21 daily_clean_disks_enable, weekly_noid_enable, security_status_chksetuid_enable and security_status_neggrpperm_enable. I grepped through the whole system but couldn't really figure out where this is coming from. Probably there are shell variables in use and this find is puzzled together in the yet unknown shell script. Also, I didn't manage to catch the whole find command line because I wasn't fast 11:52:27 enough at that time. Does anybody have some hint here? Thanks in advance! 12:01:05 My nearest guess would be maybe /usr/libexec/locate.updatedb 12:02:27 vidcontrol doesnot show any modes 12:05:34 But I checked it is also disabled in periodic.conf. 13:12:28 debdrup: would like to ship freebsd with https://distrorrent.github.io/ but freebsd packaging sucks for it 13:12:28 Title: Distrorrent 13:31:21 notactionable statement. 13:58:54 Hi! I have small FreeBSD virtual machine at Hetzner, installed long time ago. Recently I upgraded it to 12.3-STABLE/amd64 via source upgrade. I have IPSec tunnel to the VM and the VM acts as router with NAT for traffice coming from the tunnel, serving it as some kind of LAN. It works using vtnet0 interface as external one. I use ipfw nat and vtnet0 has TSO disabled. However, I found that routing speed is very low unless I do: ifconfig vtnet0 -rxcsum, in that 13:58:54 case speed increases 10x upto 100MByte/s for some large https transfer and it decreases back to about 130KByte/s if I do: ifconfig vtnet0 rxcsum 14:00:48 s/100Mbyte/10Mbyte/ 14:01:05 still, the difference is quite big 14:01:28 How do I debug this? 14:30:08 sometimes lan dosent work , shows waiting for route info dhcp 30s ... 14:30:23 something to change in router ? 14:33:21 check wires 14:33:29 if it is wired net 14:38:26 wire is fine shows connected 14:38:49 now its working i restart netif service 14:41:05 vesa module shows fail to register and cant change resolution 14:55:24 AFAIR vesa driver does not support changing resolutions in X.org 14:55:57 you need vendor driver for resulution control in X 14:57:08 i need to change tty resolution 15:03:42 which version do you use? 15:04:29 13.1 15:26:00 000000000000000000000000 15:26:10 Ooops. 15:26:50 hindsight: being able to spot horse hooves 15:26:50 clopping on the street and 0identify10 1t0he sound from 15:26:51 100-150m away. I'm not sure I'd have heard or noticed it 15:27:15 Grr. 16:34:08 Soni: the project used to host torrents, but the web seeds had at least one rce which combined with a zero-day privesc led to what's described in detail here: https://www.freebsd.org/news/2012-compromise/ 16:34:09 Title: FreeBSD.org intrusion announced November 17th 2012 | The FreeBSD Project 16:58:50 debdrup: huh, neat 17:00:52 debdrup: we have a hard time believing you tho - webseeds are just hotlinks, really 17:01:39 Soni: maybe it was just a regular torrent client that had an RCE then. 17:02:07 sure, that happens all the time 17:02:12 I suggest you discuss it with so@ 17:02:22 it's (much) less of an issue when it's running in the browser, ofc 17:02:42 I doubt there's going to be much in the way of change. 17:02:50 the biggest issue with torrents is SHAttered but there's BTv2 which solves that (ofc it's still hard to find BTv2 support and e.g. webtorrent doesn't currently support it) 17:04:21 It's a moot point, because getting something largely untested stood up on project infrastructure, when a former variant of it was likely the culprit in one of the very few compromises the project has happened, probably means it isn't gonna happen until after the heatdeath of the universe. 17:04:41 s/happened/had/ 17:05:51 There's plenty of ways to download FreeBSD, and if webseeds as you say are just direct links, then I don't see how you're prevented from creating torrent files with direct links as the URI structure isn't likely to change and can be found in manifest files last I checked (the checksum files, specifically). 17:40:42 There's always https://wiki.freebsd.org/Torrents 17:40:43 Title: Torrents - FreeBSD Wiki 18:13:41 debdrup: they're just direct links but for webseeds to work with webtorrents (which is tbh mostly optional and we're happy to work around it if we need to) they need Access-Control-Allow-Origin: *, aka CORS 18:13:51 but that's mostly for mirrors to figure out 18:13:59 (does freebsd have mirrors?) 18:14:08 yeah 18:15:37 it'd be nice if freebsd provided official .torrent files but eh :shrug: 18:25:14 is this considered the "official best way" to jail GUI applications? https://wiki.freebsd.org/JailingGUIApplications 18:25:15 Title: JailingGUIApplications - FreeBSD Wiki 18:29:30 Soni: how often do you download isos to rquire official torrent links 18:32:54 How can I list all packages installed from ports? 18:33:18 sshow: pkg info 18:36:52 mason: I can't seem to filter out packages built from ports/source 18:37:35 Ah, I don't know that there's a real distinction. 18:38:12 I want to know what packages I've built from source :) 18:39:05 s/real/recorded/ 18:45:22 rtprio: as often as fucking up the install XD 18:48:18 sshow: packages installed from remote repository seems to have the following line in info: repo_type : binary 19:06:39 I think I get the results I want from `pkg query '%n %R' | grep -v FreeBSD`, where %R is the source repository ('unknown-repository' for non-matches) 19:29:01 why does `service -e` dump warning into /var/log/messages "/usr/sbin/service: WARNING: $ is not set properly" how tf do i debug that? 19:43:04 polyex: for $ or other services? 19:43:18 what? 19:43:43 i get a bunch of /usr/sbin/service: WARNING: $nsd_enable is not set properly - see rc.conf(5). but not for '$' 19:44:01 what are you setting wrong? 19:44:12 i think it's just a message when they're unset 19:44:13 if everyone has those warnings what are we doing wrong? 19:44:45 look at checkyesno in /etc/rc.subr 19:45:10 WARNING: $sndiod_enable is not set properly i get that 1 too 19:46:14 hmm 19:46:43 i don't think it's harmful 19:46:44 shouldn't these have settings in /etc/defaults/rc.conf set properly? 19:46:49 well ya but still 19:47:21 if they were in base they would, but most of mine seem to be in /usr/local/etc/rc.d 19:47:48 like i have git installed but wtf would i git_daemon_enable. and obvs there's no default in /etc/defaults/rc.conf 19:48:43 oh wow most (all?) of my warns come from /usr/local/etc/rc.d too 19:48:53 so maybe it's flakey packages 19:49:03 so to silence them set all them _enable=NO 19:49:07 can packages with a default rc.d script include defaults? 19:49:35 yes, they do, but _enable isn't one of them, unset it's assumed to be false 19:49:40 like should git_daemon_enable=NO be in /usr/local/etc/rc.d/git_daemon 19:50:06 it does: : ${git_daemon_enable:=NO} 19:50:14 so why the warn? 19:50:32 i'm not sure 19:51:13 dont make sense man 21:05:58 F/win 21:12:41 ? 23:23:29 How does one create a znode in C? I have `znode_t i;` to initialise the variable, and I am running `cc` with `-I /usr/lib/libzpool.so`, but I am getting `error: use of undeclared identifier 'znode_t`. What do I need to import to aloow me to crreate `znode`s? 23:39:47 there will be a declaration for that typedef and the (likely) struct it uses, in some .h file. You'll need to find that and #include it 23:40:31 grep -r of /usr/include didn't turn it up, looking here on 13.1, FWIW 23:40:53 But it might be there in /usr/src somewhere. I seem not to have a box with that populated. 23:44:07 Files located via "locate" in stable/13 tree : https://termbin.com/pxt0 23:57:16 jgh, mason, thanks, I’ll take a look in /usr/include or /usr/src. I was looking in /usr/lib 23:58:37 Oh, right, and that was a declaration issue, not a definition. Missed that.