-
ngortheone
upgrade to current == build from source, no/
-
ngortheone
is there another way?
-
rtprio
ngortheone: you could install one of the snapshots
-
rtprio
but ... from an existing system. uh, that would be rough
-
ngortheone
rtprio: you are right, downloading snaphot iso and installing from scratch or tarball and using it as boot env...
-
rtprio
i should really read a little more scrollback before replying
-
Reinhilde
my name is technical, last name debt
-
ngortheone
Reinhilde: you must be a welcome friend in tech startups and huge IT enterprises
-
Reinhilde
surprisingly, no
-
Reinhilde
but I find my way in >:3
-
ngortheone
lol
-
Reinhilde
ah yes, discord linux bros calling BSDers hipsters who only complain
-
xtile
happens every day, it's not news
-
xtile
solve the problem by not using discord
-
xtile
disregard GNU/Linux users the same way you disregard Windows and Mac users
-
rtprio
Reinhilde: i had "technical debt broker" on my internal title at one of my previous jobs
-
Lovis_IX
Hello folks, Happy upgrade day :-)
-
Lovis_IX
Reinhilde: discard users are hipsters who don't knoe how Internet or conputer xorks. For them it's magical. I did know anything about discord, even I have a old account).
-
Reinhilde
somewhat
-
Lovis_IX
sorry, I mean discord
-
xtile
Lovis_IX: they're not hipsters, they're mainstream, however.
-
xtile
as unfortunate as that is
-
xtile
excited to upgrade my freebsd desktop and openbsd server this week
-
Lovis_IX
xtile: I am so excited to upgrade my work laptop, but it's yet available in european mirror :-( (and I have noting else importent to do0
-
» xtile nods
-
xtile
i'm patient, i can wait a couple days. you can be patient too, I hope. :3
-
xtile
it only became april 11 a few minutes ago where i am
-
xtile
which is the listed release date
-
Lovis_IX
xtile: I MUST be patient and it's april 11 for 9 hours now in France.
-
» xtile nods
-
parv
Must be tiring being ahead of the time (with respect to some other places) ...
-
meena
I got my hands on an Azure HPC instance, but the infiniband devices aren't showing up.
-
meena
there should be one or two mellanox (mlx5en(4)) nics, but there's just one hn(4) device
-
meena
pciconv -lv doesn't show them either
-
meena
what's funny is that dmesg doesn't show anything any more about mlx since i upgraded to 13.2
-
meena
that is the opposite of what i expected
-
parv
No mellons for you, meena!
-
» parv is aghast for missing on "mellans". For the love of puns!
-
parv
meena, To ask the obvious is "mkx5en" module already loaded?
-
parv
s/k/l/
-
meena
not according to kldstat
-
parv
Load that sucker!
-
parv
The manual page list the syntax to stuff in "loader.conf"
-
meena
sudo kldload -v mlx5en
-
meena
kldload: can't load mlx5en: module already loaded or in kernel
-
parv
phhbttt :-|
-
parv
"kldstat -v" might have noted that
-
meena
kldstat -hv | grep -i mlx 174 pci/mlx
-
meena
173 mlx/mlxd
-
meena
411 pci/lkpi_mlx5_core_pci_table
-
henri
-
VimDiesel
Title: dpaste/yy3c (Plain Text)
-
henri
I connect the same ssid use Linux iwctl very fast,but in my pc freebsd wpa_supplicant alway error
-
debdrup
do they have the same configuration?
-
henri
same ssid and password
-
debdrup
sorry, i should've clarified
-
debdrup
does wpa_supplicant.conf have the same configuration on both systems
-
henri
In linux,I use iwd,not wpa_supplicant.I think the two is diff.
-
debdrup
Well, there you go.
-
debdrup
they're different software, so you can't assume they should behave the same
-
henri
yeah,but wpa_supplicant so slow?
-
henri
is there any way to use iwd on freebsd?
-
debdrup
wpa_supplicant is part of the freebsd base system, but it's contributed from
launchpad.net/wpasupplicant so the person to ask is reinhard tartler
-
VimDiesel
Title: wpa_supplicant in Launchpad
-
debdrup
i don't know what iwd is, so i assume it's something linux-specific
-
henri
I use maybe 1 min to connect to net in bsd,I can't stand it.
-
sfox
it's a virus
-
henri
I guess in your pc,maybe not too long,right?
-
debdrup
it isn't slow at all for me
-
henri
I can't unstand why sometimes it works not so long,just 10s maybe,but sometimes,too too long.It make me crazy.
-
debdrup
and i see that iwd is licensed as gplv2, so it can't be imported into the base system - and even if it could be in ports, it seems to have a heck of a lot of dependencies like dbus and netlink (both of which could in theory be used, since both are available in some form, depending on what version of freebsd you're using), but also something called "main event loop", "Timers" (capitalized, so i assume
-
debdrup
it's something special) plus a bunch of primitives which i'd be surprised if freebsd implements
-
debdrup
what you _can_ try is enabling fast_reauth in wpa_supplicant.conf(5), though i don't know if it's going to fix your exact issue
-
sfox
i didn't know iwd depends on dbus
-
debdrup
well, it depends on a library which needs dbus
-
debdrup
at least according to the documentation i can find
-
henri
i give it a try.
-
debdrup
i can't tell you what could be the source of the delay, i can only speculate
-
debdrup
it could be anything from differening txpower values, improperly configured base station, or even a bug in wpa_supplicant (though i wouldn't necessarily assume that as the first option, since wpa_supplicant has had pretty wide usage over the years, including on linux)
-
meena
wouldn't the logs have something to speculate about?
-
debdrup
that's entirely possible, but i've seen no longs
-
debdrup
s/longs$/logs/
-
henri
my log is here
bsd.to/yy3c
-
VimDiesel
Title: dpaste/yy3c (Plain Text)
-
henri
CTRL-EVENT-SCAN-FAILED many times
-
henri
what cause it?
-
debdrup
the scan is failing because the access point temporarily disables authentication when the 4-way handshake is failing
-
debdrup
you're not providing it the right key, according to the CTRL-EVENT-SSID-TEMP-DISABLED
-
debdrup
so you probably mistyped your password or the syntax for the configuration file
-
henri
and I give another success try
bsd.to/rjpk
-
VimDiesel
Title: dpaste/rjpk (Plain Text)
-
debdrup
do you live close to other people?
-
henri
yeah,if you mean some people around me.
-
debdrup
even if there isn't anyone actively trying to do a wifi deauthentication attack, if you've got regular people around you who've got a bunch of hardware, it's not out of the question that one of them have misconfigured it (or it's been misconfigured from the manufacturer) so that what essentially ends up happening is the same as a wifi deauthentication attack
-
debdrup
that'd produce the behaviour you're seeing, where sometimes you can auth quickly and other times you can't
-
debdrup
none of this precludes what is aid before either, by the way
-
debdrup
s/aid/said/
-
henri
you mean someone use something like airmon-ng to attack me, it cause I can't connect quickly,Maybe I guess.
-
debdrup
no, it doesn't have to be someone trying to attack you
-
debdrup
if you live near a hotel, wifi deauthentication attacks are a well-known thing they do to prevent their guests from using the guests own access points (because they want the guest to pay)
-
debdrup
and similarly, it can also be someone near you who has a badly configured piece of hardware (i believe this is how wifi deauthentication attacks were discovered, initially?)
-
henri
ok,then,if i use my phone hotspot,I should connect quickly
-
debdrup
a misconfigured device or hotel chain trying to gouge money out of people would also affect your phone hotspot
-
henri
I understand,maybe the school surely do this.
-
debdrup
you'd have to travel somewhere without ANY people within range of any of your devices (ie. +300 meters from anyone)
-
henri
school ask us to pay money for month network.gouge money,as you say,so it's the conclusion,thx debdrup
-
debdrup
there's a proposal for 802.11w, which is supposed to fix part of the issue with wifi deauthentication, but it doesn't fix the wifi deauthentication attack on the 4-way handshake (which is what it looks like you're struggling with)
-
debdrup
it's unfortunately just a result of 802.11 being a shared medium
-
debdrup
(and greed)
-
debdrup
DOCSIS has a similar deauthentication attack, but at least there the ISP can spot who's doing it on the CMTS - and there's much less benefit to doing it on DOCSIS
-
debdrup
the curse of having worked as a network administrator is that you also have to work with wireless
-
henri
it occur to me,why Linux stable,anyway?
-
debdrup
haven't got a clue
-
kezdryx
how can i update if im running FreeBSD donut 13.2-RELEASE FreeBSD 13.2-RELEASE releng/13.2-n254617-525ecfdad597 GENERIC amd64
-
kezdryx
or is that the latest?
-
debdrup
i never said all of the above was t he reason why, just that it can happen
-
henri
yep
-
henri
-
debdrup
kezdryx: freebsd-update fetch will tell you
-
kezdryx
ok
-
debdrup
err, sorry
-
debdrup
freebsd-update updatesready
-
debdrup
or maybe i'm misremembering what they're for, it's been too long since i used -RELASE
-
debdrup
s/LASE$/LEASE/
-
kezdryx
no updates to install
-
kezdryx
on either
-
kezdryx
should i rollback?
-
debdrup
why would you do that?
-
kezdryx
then reinstall?
-
debdrup
what are you trying to accomplish?
-
debdrup
13.2 has been out for less than 24 hours, expecting updates that soon is a bit much
-
kezdryx
because IDS says some of the sha255 numbers are off
-
kezdryx
i updated on april 7th
-
debdrup
then say that to begin with
-
debdrup
if you updated on april 7th, you updated before -RELEASE was out
-
kezdryx
oops
-
kezdryx
=(
-
debdrup
whoever told you to go update seems to be the one to ask how to fix this, because they got you into this mess
-
kezdryx
that was me
-
debdrup
how did you know to update?
-
debdrup
the announcement hadn't gone out
-
kezdryx
figured id just do it
-
debdrup
welp.
-
debdrup
what files are the checksums failing on?
-
kezdryx
hold on gotta rerun ids
-
debdrup
you might wanna set the PAGER environment variable to cat or something else, so you can pipe it to a file
-
debdrup
check the freebsd-update(8) manual page
-
debdrup
but for reference, whenever you're updating FreeBSD to major or minor releases, -RELEASE isn't out until a mail from the release engineering team has been sent to the announce@ mailing list
-
debdrup
even if someone else tells you it's fine to update, they probably don't know what they're talking about
-
kezdryx
group master.passwd passwd pwd.db shells spwd.db and sysctl.conf
-
kezdryx
will do next time
-
dch
kezdryx: are these the files that are different between your box & what IDS shows?
-
kezdryx
yers
-
kezdryx
yes
-
dch
ok those are all fine
-
debdrup
yeah, those should be files
-
debdrup
s/files/fine/
-
dch
group contains user<->group membership mappings
-
debdrup
those are all files that're changed by a bunch of things like installing/updating packages or modifying the system intentionally
-
dch
the passwd/pwd/spwd ones are all related to adding users
-
dch
shell is a list of what shells can be used by users (e.g. if you add bash/zsh from ports)
-
dch
and sysctl is always a local thing
-
dch
I need a tip on how to have Makefile that does A on amd64 and B on aarch64
-
dch
so, do different things based on architecture
-
dch
mmm could I put $(sysctl -n hw.machine_arch) in as a Makefile target perhaps
-
debdrup
dch: is it make or BSD make?
-
debdrup
BSD make has a LOT more conditionals
-
dch
its our make debdrup
-
debdrup
that's BSD make then
-
debdrup
check the Conditionals part of the manual page
-
kezdryx
so im stuck?
-
dch
debdrup: ok, there's a built in var `MACHINE_ARCH`
-
dch
so `build: ${MACHINE_ARCH}` DWIM
-
debdrup
dch: I don't think that works for what you want, it only checks the present machine's arch
-
debdrup
via uname -p
-
debdrup
..unless that's what you want
-
dch
debdrup: in this case its exactly what I want, this build script will be run on the native h/w each time
-
debdrup
ah, fair
-
debdrup
yeah then MACHINE_ARCH will do it
-
dch
I would like to figure out how to make it truly cross-platform but for the moment a simple dirty hack is sufficient
-
dch
kezdryx: it's not clear what you're stuck on, AFAICT you're on a perfectly normal FreeBSD release there
-
dch
for example, here's an arm64 13.2-RELEASE I upgraded this morning:
-
dch
FreeBSD fmrl71 13.2-RELEASE FreeBSD 13.2-RELEASE releng/13.2-n254617-525ecfdad597 GENERIC arm64
-
kezdryx
did you updage today or earlier?
-
dch
this is from today
-
kezdryx
update
-
kezdryx
oh
-
dch
but over the last week I have done repeated migrations on other boxes
-
kezdryx
debdrup: now theres two
-
dch
and if you updated before the official announcement, `freebsd-update IDS` will tell you whats wrong
-
kezdryx
and several of his boxen
-
debdrup
i don't care.
-
dch
which as we discussed above, looks like nothing is out of date
-
kezdryx
heh
-
debdrup
it's a dumb idea to update before -RELEASE is out.
-
kezdryx
dch see, you updated to soon too
-
debdrup
even when I ran -RELEASE, I waited at least until the security officer took over the releng branch, but usually longer
-
dch
kezdryx: the one from this morning, is definitely post official announcement
-
debdrup
unless i'm updating because of a security announcement, i'm _NEVER_ ever going to update as soon as i can
-
kezdryx
so i made a mistake, geeze crucify me
-
epony
ok
-
dch
kezdryx: debdrup is just sharing his experience, no worries. I tend to upgrade late in general, but I have some infra where I try to apply the BETA & RC for test purposes
-
epony
I recompile all the time from source on systems with the capacity.
-
epony
that's usually 1-2 systems per fleet
-
epony
for personal deployments, you don't have to do that
-
epony
also no need to be that conservative unless jumping releases
-
epony
how conservative, depends how well you track the changelog
-
mason
That's puzzling actually. Why is there the 1-2 week gap in handing new releases over to the sec team?
-
feurig
morning
-
feurig
Does anyone know how often packages with known vulnerabilities get updated?
-
feurig
Finally getting everything up to 13.1-p7 and pkg audit is showing curl as having multiple vulnerabilities.
-
victori
hmm 13.2 has the wg driver? I don't see it in the conf
-
adonis
is there a proper way to remove the lib32 system components?
-
nmz-
release notes mention nproc(1) but theres no manpage when you click
-
thorre
13.2 here I come
-
armin
tobias: !
-
tobias
hi! :)
-
tobias
i'm trying the new 13.2 release in a QEMU VM
-
tobias
first of all, is there a way to boot the amd64 version with just serial console enabled? ("-nographic -vga none" in QEMU)
-
tobias
it appears to get stuck on "Starting the BTX loader"
-
tobias
i can boot with "-display curses -vga std" though. also, i can select "Cons: Serial" in the bootloader then. would be nicer completely without the need for a virtual GPU of course.
-
tobias
-
ElectricJozin
Under:
cgit.freebsd.org You have 3 branches, where is the packages branch? (pkg)
-
VimDiesel
Title: FreeBSD Git repositories
-
ElectricJozin
I want to figure out whats the current Quarterly release yet I cant find "pkg.FreeBSD.org/${ABI}/quarterly" in GIT form
-
ElectricJozin
I assume it to be 2023Q2 (but that would mean that a 2023Q3 branch would already be created, which it isnt, not in the ports tree atleast)
-
rwp
ElectricJozin, I don't know (I am not a contributor) but AFAIK it's here
cgit.freebsd.org/ports
-
VimDiesel
Title: ports - FreeBSD ports tree
-
ElectricJozin
rwp, and so some of those packages are compiled into binaries and shipped right?
-
ElectricJozin
If thats the case what determines what packages are shipped
-
rwp
I have this article queued up in my reading list for when I get some time:
freebsdfoundation.org/wp-content/uploads/2022/03/mingrone.pdf
-
rwp
-
VimDiesel
Title: FreeBSD Porter's Handbook | FreeBSD Documentation Portal
-
rwp
AFAIK *all* of those packages are compiled into binary packages available from the binary package repository.
-
rwp
Except obsolete packages do get removed when appropriate.
-
nimaje
and license reasons (hm, well, I think they even get build, but then not put in the pkg repo when the license doesn't allow official packages) (hm, and obsolete stuff still gets build as long as the port exists and isn't marked broken or ignored)
-
prg_
three cheers for 13.2 ! \o/
-
» prg_ celebrates
-
oldfashionedcow
:P
-
oldfashionedcow
I finally figured out sway!
-
oldfashionedcow
-
VimDiesel
Title: Imgur: The magic of the Internet
-
prg
wayland? that's not very oldfashioned :P
-
» prg jokes
-
oldfashionedcow
prg: :D
-
adonis
Is there a reason why pkg-config is not available inside jails?
-
adonis
my base system has it but not my jails
-
ngortheone
adonis: pkg-config is a package that you can install with pkg
-
adonis
oh
-
ngortheone
pkg which (which pkg-config)
-
ngortheone
/usr/local/bin/pkg-config was installed by package pkgconf-1.8.1,1
-
ngortheone
it is not part of pkg the package manager, it is a different tool with overlapping name
-
adonis
ngortheone: Yea I see that, for some reason I thought it was part of base FreeBSD..
-
adonis
Thankfully the solution was simple :)
-
meena
can I set KERNCONF in src.conf or src-env.conf?
-
debdrup
Well, it's in make.conf(5)..
-
debdrup
src-env.conf is for the source environment, not for the source itself - if that makes sense
-
debdrup
So for example, it controls object directory creation, meta-mode, and dir-deps - all things that have to do with control of how the environment the source is built in.
-
meena
aye
-
meena
why is KERNCONF in make.conf and not in src.conf?
-
debdrup
Because things outside of the source tree can make use of it.
-
debdrup
I can't remember if there's anything that does anymore, but I think at one point the ports framework did.
-
debdrup
Maybe something third-party does/did too?
-
dvl
-
VimDiesel
Title: Conference Schedule - BSDCan 2023
-
ngortheone
yiss