-
jauntyd-
beastie!
-
jauntyd-
he's such a rockstar lol
-
jauntyd-
does the bobblehead have a name?
-
f451
ivy: "this is a well known bug which has been open for months" got a bug ref? also what happens when zfs sent from within the enc dataset
-
f451
:s/sent/send/g
-
luke_jobless_sb
meeting screen was loading i thought my internet was lagging lol
-
beastie
hi jauntyd :)
-
cation
are Linux clients able to connect to a FreeBSD NFS server using NFS over TLS? I can see the handshake completing when running tlsservd in debug mode on the server but after a while, I get an input/output error on the client. if I disable TLS on both the client and server, the connection is fine
-
Alver
cation: I haven't done it myself. Is the certificate used for the server signed by a CA that the client trusts?
-
the_oz
Wouldn't you be running debug mode on the linux client?
-
Zenithium
hi, quick question. i get really annoying random screen glitches with my rx 7700 xt using drm-kmod amdgpu. is there anything i can do about this rn or do i just have to wait until more recent drivers are ported? heres an example of what it looks like:
imgur.com/E7uk62Y
-
cation
it's trusted, Alver, I can see the handshake completing in the tlshd.service log on the client
-
Alver
cation: hm, that's most odd
-
cation
aha!
-
cation
switching to xprtsec=mtls on the client worked (after generating a certificate)
-
cation
xprtsec=tls (without a client certificate) wasn't working for some reason
-
ZedHedTed
cation: nice name. stay positive!
-
Alver
cation: interesting! And nice too - mtls is nicer than plain tls
-
Alver
... well, that is... did you have to (or can you) whitelist client certificates?
-
l00py
normally when i make a bhyve vm i give it a vol from the root zfs. but can we give a bhyve vm an entire external flash drive?
-
rtprio
i would expect that you could
-
l00py
cool!
-
rtprio
weather or not it's a good idea....
-
l00py
why not a good idea?
-
rtprio
depending on what the vm does, it's a good way to burn through your flash drive
-
l00py
what about a samsung 990 pro nvme?
-
rtprio
that would probably last a bit longer
-
l00py
what would be fast but last better? like a wd red ssd?
-
rtprio
i wouldn't expect you to have any problems with a nvme
-
l00py
ok great ty
-
cation
haha thanks ZedHedTed
-
cation
Alver, I don't think I saw anything in the configuration lets you whitelist individual certificates, but you give a path to one or more CA certificates that the client certificates have to be signed by. I'm just using my own self-signed CA, but I think what companies generally do is have an intermediate CA that they only use to sign client certificates
-
dvl
-
dh
Nice
-
oden
hello. what's up?
-
Hecate
yo yo yo
-
Hecate
gonna put my second freebsd box in prod, to host CI runners
-
Hecate
this time not only for my personal projects
-
Hecate
happy to have jails and all
-
rtprio
what CI are you using, just wondering
-
Hecate
rtprio: it's going to power a gitlab CI runner
-
rtprio
cool
-
Hecate
for the GHC haskell compiler
-
markmcb
are there pre-release notes anywhere for 14.2-BETAs?
-
jauntyd
does anyone have an agenda link(s) for summit day 2?
-
kevans
-
jauntyd
ty
-
kevans
(in general for these kinds of things you can follow links from wiki.f.o/DevSummit, fyi, though it does get kind of twisty for some events)
-
zip
suppose I want to run something from ports in a jail...
-
zip
do I build the jail then build the port in the jail, or is it better to build it outside the jail and then import it somehow?
-
ivy
zip: if your build ports yourself, use poudriere, then you end up with a repository of packages which you can install into as many jails as you like (accessible by pkg over local filesystem mount, http, etc)
-
zip
ooo, neat
-
zip
I ran a "make fetch" and it's doing more compilation than i thought was implied by that
-
zip
guess i should have snapshotted my root directory first
-
luke_jobless_sb
i didn't know people do about laptops in summit. i should pull up my acient thinkpad
-
ek
luke_jobless_sb: What's that now?
-
luke_jobless_sb
well it's not for summit, just for sake of being relavant for current topics in this channel