-
luke_jobless_sb
I am cleaning up. To look for packages to remove, how can I have a list of dependent packages?
-
voy4g3r2
luke_jobless_sb: you can use pkg info -r or pkg info -f
-
voy4g3r2
both require passing the package you are referring too
-
voy4g3r2
do a man pkg-info which will give you a little more details and options you can tweak
-
luke_jobless_sb
voy4g3r2: thank you
-
luke_jobless_sb
does anyone know any drawback if i disable aws ssm-user?
-
bbsl
Hi. I am running freebsd 14.1 unfortunately (maybe) I want to use datadog for monitoring and Im not sure how to best "attack" this. My first thought was using a port but this was deprecated and after deleting the third line that sets "size" for a given package in the Makefile I thought better of it. I tried to build from source but datadog somehow managed to make that not so easy even though I
-
bbsl
thought this agent was written in go its a ball of python code to get it to build. Then I remembered that freebsd now has a build of podman so I could maybe run it via podman but when I tried that I fail with
privatebin.net/?dc6b894d502d5a8b#EP…95zHFSZ59HHuv34fgo2AnJKB37DdVoev7i8 . Anyhow so this is my step back. Im a noob at FreeBsd as you can tell so I need some advice as to
-
bbsl
viable/fewest hacks route ways to attack this I think.
-
Alver
bbsl: that looks like your podman environment isn't clean/ready
-
Alver
Are you doing this on a plain host or in a jail?
-
bbsl
Alver: Podman Im trying to make work via plain host. I didnt reboot yet (perhaps I should) but I followed the FreeBsd section here
podman.io/docs/installation to set it up
-
bbsl
Also it wasnt clear to me why podman needs to run in the background via a service. I thought on linux that was one of the main selling points of podman, that it didnt need a "daemon" but I might be misunderstading whats happening on FreeBsd also in addition to why :o)
-
bbsl
Anyways if I can run datadog-agent via podman that solves my problems (except it runs as root which I guess is not great perhaps) but if there are less hacky solutions that are more in line with how one would solve this on FreeBsd please share those.
-
DarkUranium
I actually wonder, how does one get a manpage on a specific shell builtin?
-
DarkUranium
I guess it's all in 1 big page for the shell itself?
-
TommyC
Depends on the shell. Bash has "help" so you can type something like: "help declare" and it'll output the bit about the declare option.
-
uwe
zsh has `man zshbuiltins`
-
comrumino
is Dragon RTL8125BG supported out of the box?
-
CrtxReavr
If you're going to use zsh, you may as well just go full retard:
ohmyz.sh
-
CrtxReavr
(It prolly also means you're an emacs person.)
-
mfisher
didn't know about that domain hack... spiffy
-
CrtxReavr
domain hack?
-
mfisher
-
johnjaye
it says flicker uses south korea for the domain flic.kr
-
aquamo4k
as I'm old, i knew the guy who sold ing.com to ing. he used to have a machine called scream.ing.com :-)
-
mfisher
awesome
-
CrtxReavr
I used to work for EMC. . . part of emc i worked for was formerly DataGeneral. .
-
CrtxReavr
Most of our lab shit still used dg.com sub-domaims and dg.com itself redirected to emc.com publically
-
CrtxReavr
An EMC salesman, w/o auth "sold" dg.com to DollarGeneral.
-
CrtxReavr
This kicked-off shit-storm of work for us.
-
Tenkawa
CrtxReavr: Never worked "for" them but used multiple Symms, and CLARiiON's over my career heheh
-
mfisher
whoa
-
CrtxReavr
Most of the clariion devs were old DG/UX coders.
-
CrtxReavr
Huge tallents
-
Tenkawa
heh.. Yeah
-
Tenkawa
I was at AT&T at the time..
-
CrtxReavr
Was an honor just to see them work, let alone collaborate with them and actually teach 'em a few tricks.
-
CrtxReavr
They had mad stories.
-
Tenkawa
Indeed
-
Tenkawa
NCR storage people had some wild stories too
-
Tenkawa
I spent tine there in the 90's
-
CrtxReavr
DG/UX had some really cutting edge features that either inpired other platforms or were sadly lost to time and media misdirection.
-
CrtxReavr
First OS to use a memory FS for /dev/
-
aquamo4k
the Clariion Disks arrays ... memories. When I was at SGI we have the v1 RAID-3 only model, DB-9 fibre channel. I went through 4 generations of those disk arrays :-)
-
aquamo4k
I would connect two full racks to one SGI, and mirror across them so I could safely update their firmware, used XLV/XFS which was pretty good for the era
-
CrtxReavr
Had a service wrapper kernel module that could Make any TCP based service fault tollerant with their NUMA tech.
-
Rajnhildacho
«I've seen things you people wouldn't believe...»
-
aquamo4k
yeah, and now gone like tears in the rain ... :-)
-
Tenkawa
Not sure if anyone else is running much on any arm64 boxes with freebsd but I've been pleased currently even with some limited hardware ...
-
Hecate
Tenkawa: nice to hear!
-
Tenkawa
Hecate: yeah the RK3588 working actually came as a surprise
-
Hecate
Tenkawa: it looks like a lovely thing! What's the use?
-
Tenkawa
Hecate: I am a hobbyist now that I'm retired... My old career though was db/os building/devel
-
Tenkawa
I do this for fun and to stay up to date
-
Tenkawa
I'm curious to see if I can get one of my RISC-V machines running on it too heh...
-
aquamo4k
i am going to give the latest on AWS a try today on graviton and see how it behaves
-
luke_jobless_sb
aquamo4k: ssm-user is confuses me for process view. it sticks to my jail activities. i wonder if there we have any drawback of disabling ssm-user
-
luke_jobless_sb
aquamo4k: works beautiful beside this
-
luke_jobless_sb
before a reinvenion of wheel, is there any configuration of partial parallel starts of jails?
-
luke_jobless_sb
I have a governing jail that should start first and all others in parallel
-
drobban_
luke_jobless_sb: depend?
-
drobban_
-
» luke_jobless_sb erases his code
-
drobban_
luke: =D haha
-
dandyn
anyone here who is good at IPFW?
-
CrtxReavr
Probably better to ask your question, vs. take a poll.
-
dandyn
Oct 22 00:00:25 MyComp kernel: ipfw: 65500 Deny UDP 192.168.1.1:45824 192.168.1.255:7788 in via em0
-
dandyn
got em in /var/log/security every min.
-
CrtxReavr
pastbin your 'ipfw show' output.
-
dandyn
-
CrtxReavr
192.168.1.1 is your ip?
-
dandyn
default gateway
-
CrtxReavr
So not your FreeBSD host?
-
dandyn
WAN-Router-Server
-
dandyn
nope
-
CrtxReavr
This an AWS instance?
-
Tenkawa
I found a few hits for 7788
-
CrtxReavr
arp -an | fgrep 192.168.1.1
-
Tenkawa
Unreal, Quicktime, and 1 trojan
-
Tenkawa
(trojan attempt)
-
Tenkawa
TCP has more but those were the main UDP packet types
-
mzar
dandyn: what is your issue? are you concerned about this blocked broadcast? want to link it with service? disappointed with IPFW filtering it? or anything else?
-
dandyn
I wanna know what it is.
-
dandyn
:)
-
dandyn
I dont have unreal, Quicktime, or trojan on a new installed freebsd 14.1
-
mzar
ha.. then fire up sniffer, like tcpdump or wireshark, catch this datagram and let us know
-
CrtxReavr
I saw a lot of hits about different network devices sending 7788/udp broadcasts every minute.
-
Tenkawa
Mono uses it too
-
Tenkawa
yeah Asus
-
dandyn
asus router yes
-
dandyn
but this is ydp?
-
dandyn
udp
-
Tenkawa
yeah Asus uses udp plenty
-
dandyn
okok
-
mzar
broadcast won't work for tcp, so udp is reasonable choice
-
Tenkawa
indeed
-
BinGOs
spray and pray
-
mzar
there is a lot of noise in network, it resembles me white noise
-
CrtxReavr
-
dandyn
CrtxReavr: they say tcp.. but this is UDP hmm..
-
dandyn
in your link
-
dandyn
this is as far as I have come too
-
dandyn
but maybe like mzar said, sniff it
-
dandyn
any sinple lightweight sniffer?
-
CrtxReavr
-
CrtxReavr
I think it's a nothing burger.
-
CrtxReavr
If it bothers you, smash router.
-
dandyn
:)
-
Tenkawa
dandyn: you don't have a Netgear sitting in there somewhere too do you?
-
dandyn
nope
-
Tenkawa
Ok.. they use it too
-
dandyn
I see
-
dandyn
so lan IP ...1.1 is default gateway, what is ...1.255 ?
-
dandyn
what might that be?
-
dandyn
the gateway in this case is dhcp server "asus router" yes?
-
BinGOs
if it is /24 then 255 is the whole network.
-
Tenkawa
Ok.. that doc didn't list it but I found another that says it is used on tcp "and" udp
-
Tenkawa
for minimally the asus RT-AX56U
-
Tenkawa
possibly others
-
dandyn
"192.168.1.255 is a private IP address and directly related to your Wi-Fi network. It is the chain of numbers you use to access the router admin page."
-
Tenkawa
(that showed up in a firmware update)
-
Tenkawa
192.168.1.255 is a (old terminology) bclass c broadcast ip
-
Tenkawa
s/bclass/class
-
CrtxReavr
That's likely the broadcast ip for your lan.
-
CrtxReavr
ifconfig would tell us
-
Tenkawa
indeed
-
CrtxReavr
you use bash?
-
CrtxReavr
alias tb='ncat termbin.com 9999'
-
dandyn
broadcast 192.168.1.255
-
CrtxReavr
ifconfig | tb
-
dandyn
tb not found :)
-
CrtxReavr
15:29 < CrtxReavr> alias tb='ncat termbin.com 9999'
-
dandyn
aha sorry
-
CrtxReavr
Just an easy way to pastebin from the cli
-
dandyn
cool
-
CrtxReavr
it'll print a simple url you can share
-
dandyn
ok so it has something to to with default gateway IP and broadcast IP, and thereby the router?
-
BinGOs
yes, the router is broadcasting looking for friends
-
dandyn
aha :)
-
CrtxReavr
yeah. . . whatever this service is. . .
-
dandyn
okok, how can I stop it from fill up the /log/security file?
-
CrtxReavr
BTW, it's a router, not a gateway. . . gateway is sloppy and imprecise in 99.99% of cases.
-
dandyn
can we ignore it somehow?
-
CrtxReavr
you could add a silent drop for it.
-
dandyn
that sounds interesting
-
dandyn
where can I read about that?
-
dandyn
"silent drop"
-
mzar
you can beging with "man ipfw"
-
dandyn
aye :)
-
dandyn
thnx all!
-
BinGOs
A rule without 'log' keyword is a silent rule.
-
BinGOs
(apparently). I am no ipfw expert.
-
BinGOs
caveat emptor etc
-
CrtxReavr
-
dandyn
thnx <3
-
ivy
i just realised we now have support for enforced .1q tagging on SR-IOV PF interfaces, which means SR-IOV support is no longer completely useless
-
ivy
(added back in May, but i missed it)
-
DarkUranium
Any AppJail users here? I'm trying it out, but I ran into a problem.
-
Mexis
my keyboard wont work with freebed but works with one if i add it via usb
-
Mexis
on laptop
-
Mexis
rough
-
DarkUranium
tl;dr trying to make a Linux jail with a ':<random>' vnet gives me 'ifconfig: interface 251cb06c45d does not exist'
-
ivy
unrelated, i'm getting a very strange error from buildworld that i don't understand:
0x0.st/XlCr.txt
-
ivy
it seems like something failed but it didn't print/log the failing command?
-
ivy
hmm, deleting <objdir>/tmp fixed it but that should not be necessary, need to debug this more after this build is done