-
polyex
where can we watch the asiabsdcon 2023 and 2024 vids?
-
mns
rwp: thanks for that info, that fixed it.
-
rwp
:-)
-
BillyJoeBob
So, why powerdxx over powerd on my Lenovo T590?
-
rwp
And then BillyJoeBob left just as I was going to talk about powerdxx working for me when powerd does not.
-
rennj
-
rennj
The JFrog Security Research team has recently discovered and reported a leaked access token with administrator access to Python’s, PyPI’s and Python Software Foundation’s GitHub repositories, which was leaked in a public Docker container hosted on Docker Hub.
-
rennj
the suck!
-
erk
oops
-
rennj
Docker Hub that planted millions of malicious repositories nearly 20% of these public repositories (almost three million repositories!) actually hosted malicious content.
-
rennj
haha
-
rennj
CI/CD
-
rennj
who was it in this channel talking that crap
-
rennj
pisses me off..like google or m$ is secure or valid place for info. idiots. kubernetes/ssh and python w00t...
-
erk
I am actually a bit surprised that it took more than a year to find.
-
rennj
m$ solarwinds backdoored everyone..and they probably sat on that shit for 3 letter agencys
-
rennj
when disk space was small, you did not include compilers or interpreters on the box..perl/python/cc on the server..nah, hacker needs to bring their own env, not going to provide it.
-
rtprio
ok, grandpa, you tell 'em
-
rtprio
but now it's time for bed
-
rennj
how about removing the shells
-
rennj
or even better in-memory /ram os..
-
rennj
oxide computer /smart os went that route
-
rtprio
how about unplugging it from the switch
-
rennj
static os, always loaded from good image.
-
rennj
disk drive well anyone can change the os
-
rennj
not .iso that fixed in time
-
rennj
boot cdrom
-
rennj
if you need a chain of trust..
-
rennj
nah shove 15GB of shit on disk and hope it doesn't get backdoored
-
rennj
tripwire/aide it perhaps you get lucky
-
rennj
-
rennj
-
rennj
am i going to get a bit flip on CRC check-summed .iso file ? written in time, like i said. i know it loads into ram, and i can verify the checksums.
-
rennj
-
rennj
a hd,ssd,usb,sd card is read/writeable..but .iso is closed session, write once, read many ...w0rm drive
-
rennj
During the first 2.5 years of flight, the spacecraft reported a nearly constant single-bit error rate of about 280 errors per day.
-
rennj
-
clapont
hi, everyone!
-
clapont
rennj: recently I found some FDDs that I used in 1998, they still work but they are 1.44MBs only... the best archival storage (that I know) seems to be the tapes; LTO-5 or LTO-6, after them the density becomes too high imho, the time would ack if they succeed to keep the data for very long time
-
rennj
par-2
-
rennj
par backups
-
rennj
zfs needs the 2 value
-
rennj
-
rennj
sun,hp also had foo like it
-
clapont
zfs needs two storage medium at the same time, for mirroring; I doubt that two simetrical LTO drives could ensure this requirement
-
rennj
-
rennj
yeah zfs needs the 2
-
rennj
not up to date on btrfs foobar..perhaps they copied
-
clapont
for decades long archival storage one should weight a lot if he goes for a LTO tape or a zfs mirror; I saw LTO tapes failing
-
rennj
lto is only option anyway..dlt lost
-
rennj
can go wrong with Verbatim, i know sony is killing off blueray/dvd
-
rennj
cant go wrong // correction
-
rennj
i had robot dvd burning machines...
-
clapont
btrfs? I think btrfs kind of went away since RedHat switched to xfs root some years ago; I liked and used btrfs on my laptop maybe 7 years ago
-
rennj
young minds dvd-studio
-
rennj
-
rennj
Solaris, HP-UX, AIX, Tru64, as well as Linux and Microsoft Windows NT. Key applications for DVD Studio include archival and distribution of large multimedia files, document imaging, GIS, and similar industries
-
clapont
I remember there was some kind of dvd, 100gbs capable, promising archival capabilities but I did not succeed to buy the tape+medium somewhere in 2020 then I lost the track of it
-
rennj
that was 24 years ago !!!
-
rennj
i feel old
-
rennj
i figure btrfs probably copied all the good features of other systems, is what im saying
-
rennj
no clue on it, i dont use it, i think ibm/redhat may push it..if i recall
-
rennj
unlike ubuntu which has openzfs
-
clapont
1-2 years ago, ubuntu had zfs as option for / ; you needed internet connection at the install time and it would be done; otherwise, ext4 for root
-
clapont
I mean, zfs on linux is still behind of zfs on bsd; I think I had zfs on / with FreeBSD 9
-
rennj
i think its all openzfs now
-
rennj
fbsd.linux,openindiana,winblows
-
rennj
everybody is on same page now
-
rennj
crapple even
-
rennj
2020: ZFS on Linux was renamed to OpenZFS and added FreeBSD support, unifying the codebase for both platforms.[\
-
rennj
-
rennj
-
clapont
oh, funny:
github.com/openzfsonwindows/ZFSin; I did not know that does exist, even. I kind of forgot about Windows :-)
-
rennj
yeah the grind of tiring to keep up with technology changes
-
rennj
yeah the grind of trying to keep up with technology changes
-
clapont
Windows Update was fixing some bugs and restart to find new bugs introduced and so on.. I quit that path in 2004
-
rennj
-
rennj
-
rennj
just 2 examples
-
rennj
-
rennj
-
clapont
-
clapont
-
rennj
ACPI tables in uefi is crazy stupid.
-
rennj
let alone intel me/amd psp..ring -3 foo BMC
-
rennj
lenovo did m-i-t-m attack just with acpi table
-
rennj
ring -3 is BMC, ring -2 smm, ring -1 is vmm...before you even get to ring 0
-
rennj
one laptop per child closest x86 got to open source
-
rennj
forth boot prom/openfirmware and national semi/amd geode cpu..all open source except for broadcom 802.11s wifi mesh
-
rennj
the wifi drive was binary blob
-
rennj
but the rest of laptop was open
-
clapont
olpc, thank you for reminding of it! olpc had drivers in 2.2.x kernels; I forgot about that nice idea, I'll check how it progresses
-
rennj
uefi is huge cluster fuck..
-
rennj
olpc is dead
-
rennj
long dead...
-
rennj
cell phones in kids pockets now
-
clapont
but hey, Uefi laptops have Safe Boot :-)
-
rennj
-
rennj
-
rennj
ffects-products-from-other-vendors.html
-
rennj
-
rennj
SMM (System Management Mode). ring -2
-
rennj
-
rennj
their own site
-
rennj
Potential Impact: Man-in-the-Middle Attack
-
clapont
-
clapont
but has too low specs
-
rennj
yeah i want amd ryzen power!
-
rennj
risc-v someday perhaps
-
rennj
Thunderbird RISC-V CPU
-
rennj
Thunderbird "supercomputer-on-a-chip"
-
rennj
1,536 64-bit superscalar RISC-V CPU cores. Four chips can be installed on a single accelerator card, in a form factor similar to a GPU.
-
rennj
-
rennj
Move over GPUs, with 1,536 cores the Thunderbird RISC-V CPU is ready to eat your lunch
-
rennj
could be vaporware..will see, earlier adopters get burned
-
clapont
wow! with chips like that, one needs the interfaces for usb/video/keyb/etc and the laptop is complete
-
rennj
-
rennj
tomshardware probably way more details
-
nimaje
hm "InspireSemi claims a 30-60% power efficiency compared to similarly capable solutions." bad journalism or bad announcment or just bad hardware? if it is only 1/3-2/3 as efficient as compareable products, then why should I choose that one?
-
nimaje
and it seems like it is just an accelerator board, not a CPU
-
rennj
yeah a pciE card
-
rennj
like a gpu card
-
rennj
buy a nvidia rtx4090 or Thunderbird
-
rennj
cuda / rocm or general purpose
-
rennj
no need for fancy libs
-
Dooshki
Ah, finally, a PCIe card to take care of my email!
-
rennj
heh, with the right libs to abstract the hardware away.
-
rennj
cuda/rocm/foobar..still need software abstraction for hardware
-
» Dooshki was poking fun at the name
-
rennj
vmebus < isa < sbus < pci < pciE...busses
-
clapont
> vlbus! :-)
-
Dooshki
Ah yes, finally I'll be able to play SimCity 2000 (re: vlbus)
-
Dooshki
but perhaps this discussion should be moved to #freebsd-social
-
polyduekes
if the repo
github.com/freebsd/freebsd-ports is read only mirror then what's with all those commits in there, shouldn't they be in bugzilla instead?
-
vkarlsen
The commits are mirrored from the official git repo
-
polyduekes
then instead of github usernames, shouldn't a bot be a author of those commits?
-
polyduekes
or are they not auto mirrored ? :/
-
nimaje
why would you rewrite commits for a mirror? the author should be the original email that is in the commit, why do you think it is a github username?
-
dch
any recommendations for a desktop pdf viewer that can do 2-up (screen shows 2 pages, left and right )
-
dkeav
evince?
-
vkarlsen
dch: okular can do that
-
dch
thanks dkeav , vkarlsen
-
dch
welp both want a lot of downloads
-
Ltning
If a freebsd-update fetch or cron has been run overnight, after I upgraded from 13 to 14 but before I ran the third "install" step (to get rid of old libs) - how can I get rid of the old libs?
-
Ltning
The state that freebsd-update kept after the upgrade/install steps is now lost, because of the automated overnight run which I forgot to prevent from happening
-
polyduekes
nimaje: what do you mean? for example the author of commit
freebsd/freebsd-ports 851ec02 is
github.com/nunotexbsd which is cpearly a github username
-
polyduekes
*clearly
-
vkarlsen
polyduekes: GitHub maps it to existing GH users where they do exist
-
polyduekes
vkarlsen: oh that explains, thanks
-
Dooshki
I think the mappings are done based on the email addresses listed under the github account
-
nimaje
the author is Nuno Teixeira <eduardo⊙Fo> as can be seen via git show 851ec025a5bb3b43b80a0d05c6dfc642815e2706 in the ports repo
-
dch
wow, it turns out firefox is a perfectly suitable command-line pdf reader in 2-up mode. And I need no more dependencies.
-
polyduekes
Dooshki: i don't think so since in some cases like in
freebsd/freebsd-ports 8adfe16 the email isn't listed under the github account
-
vkarlsen
They're not always publicly listed :)
-
nimaje
so, github leaks that information via their website?
-
polyduekes
vkarlsen: lol, today i learnt also btw if you got any reference to how the whole mapping and mirroring works, i would be glad to read it :)
-
vkarlsen
polyduekes: I don't know exactly how it's done, but the man page for git-push talks about a --mirror option. I'd start there.
-
polyduekes
vkarlsen: oh thanks, i will look at that
-
jbo
cracauer still going strong
-
BarnabasDK
any particular reason zfs set sharenfs informs you every use that "No SMB support in FreeBSD yet."
-
BarnabasDK
I am not trying to use SMB
-
rtprio
then why are you setting it?
-
rtprio
if you're not trying to use it?
-
BarnabasDK
"sharenfs"
-
BarnabasDK
nfs not smb
-
BarnabasDK
I haven't checked the source, but I think this is just a log info to the console in either case
-
BarnabasDK
since it does what it is supposed to do nfs wise
-
BarnabasDK
.. I think
-
rtprio
uh i use sharenfs and don't think i've ever seen that
-
BarnabasDK
strange
-
BarnabasDK
-
BarnabasDK
well for some strange reason it also shares to smb, which explains the error, but not why it tries to do so
-
BarnabasDK
after having manually turned of the smb sharing for all pools on the NAS the error is no more. I must have turned on smb sharing, but don't remember doing so
-
BarnabasDK
am still getting a client timeout however
-
rtprio
i've not used nfsv4 but connection refused makes me think that nfsd v4 isn't running on the freebsd system
-
BarnabasDK
it isn't see the rc.conf
-
BarnabasDK
I find it very confusing what is provided by zfs and what is not
-
rtprio
all 'zfs set sharenfs' does is add a line to /etc/zfs/exports
-
rtprio
but it's the right way™
-
BarnabasDK
sure
-
rtprio
what is provided by zfs? it's the filesystem. what do filesystems pfovide? files.
-
rtprio
not sure i understand what you're asking
-
BarnabasDK
zfs is not really a file system :-)
-
BarnabasDK
disk pool manager
-
BarnabasDK
please look at my pastebin
-
BarnabasDK
what exactly is provided by zfs and what is not?
-
polyex
does ports just have the current version or all versions?
-
polyex
of each port
-
BarnabasDK
depends on how you use ports I think
-
polyex
like i wonder if i can use ports to retrieve all the past port versions of nginx so i can build and use the exact version i want
-
BarnabasDK
if you use them via GIT / SVN then naturally you have history
-
BarnabasDK
if you have a FreeBSD ISO - then its probably a snapshot?
-
polyex
not what im asking. im asking about the ports system itself
-
polyex
im looking at cgit and it shows me a port's history going back basically forever so that's promising
-
polyex
but i wonder where it's getting that source from
-
BarnabasDK
VCS?
-
BarnabasDK
as I said above
-
polyex
ports doesn't store the source of the port does it?
-
polyex
just where to get the source from
-
BarnabasDK
at some point CVS was moved to SVN that then again was moved to GIT
-
BarnabasDK
are you confusing the pkg package manager and ports?
-
BarnabasDK
pkg distributes packages binary - a parallel to apt in the linux world
-
polyex
ya im asking about ports not packages
-
BarnabasDK
ok - I don't understand your question then
-
BarnabasDK
ports are source
-
polyex
ports is how to build the port AND the source code?
-
BarnabasDK
if you install something that way - it requires you to compile it
-
BarnabasDK
It was the last time I checked
-
BarnabasDK
but - I haven't used ports in quite a while after pkg was introduced - in the "old days" before pkg you always had to compile before installing
-
BarnabasDK
how to build a port would also not be a part of the ports system (make, gmake, cmake etc) - its a part of whatever gizmo you want to build
-
BarnabasDK
I don't think two ports do it the same way
-
polyex
well first i need to find out if a port contains the source code for the port, or info on where to fetch the source from
-
BarnabasDK
-
BarnabasDK
seems it is the standard dist + freebsd patches - but once you build it - you should have the entire source set in the ports folder - else I don't see how it can build it
-
polyex
well it could in theory download the source from wherever the port says it lives, but it looks like a port's source is stored in the ports db
-
polyex
that has to be a huge repo. all source for all software that can be built on freebsd through ports system. wow i wonder how big it is
-
BarnabasDK
well - I only see patch files
-
polyex
is that like a diff?
-
BarnabasDK
a patch file is a format of a file you can apply to a source set to change the code
-
polyex
ok so ports stores, for every port, the port's entire source code, from start to present, in the form of original checkin + patchset for each version
-
BarnabasDK
in either case - you need to have the source on disk to apply those
-
BarnabasDK
where do you see the entire source set?
-
polyex
in the files dir
-
BarnabasDK
I only see patch files in the ones I have checked
-
polyex
ok so if the port doesn't contain the source code for the port, then point to where a port refers to the source externally
-
BarnabasDK
here is patch for hurl
-
BarnabasDK
-
polyex
maybe it's the master_sites key in Makefile
-
polyex
so if a port's code isn't stored in the port, why bring in code patches? just get the code and build it
-
BarnabasDK
because if something is written for linux / gcc it may not compile on freebsd with llvm/clang
-
polyex
so patches are changes to a port's source code in order to get it working on freebsd?
-
BarnabasDK
so in order to build it on freebsd - you may need patches
-
polyex
ah
-
BarnabasDK
different locations for libs etc etc etc
-
jbo
why is everything pain
-
polyex
?
-
jbo
just pain
-
BillyJoeBob
Anyone use swayidle?
-
BillyJoeBob
I'm having issues where my laptop doesn't lock when it goes to sleep. When I try to run the command for swayidle I get:
paste.debian.net/1323111
-
BillyJoeBob
I thought maybe it's because I don't allow processes to see other user's/group's processes so I changed that and still the same error.