-
mjp
if no microcode message is printed, the CPU already has the latest microcode version OR the .conf file was not read/loaded correct, i think it is probably the first as the config looks correct
-
specialbomb
I should probably also use the microcode update service :x
-
osin_
hi, guys, can you tell me, what should I do: I want to try freebsd on virtual machine, but preinstalled version don't have enough space. Need I create another virtual disk or I can somehow expand the disk?
-
specialbomb
theres a lot of variables there. how are you virtualizing?
-
osin_
I'm using virt-manager, so is this an answer? :D
-
specialbomb
well you can increase the size of the disk image using whatever method your virtualization toolset gives you. then, you will want to boot into a separate vm image and mount the expanded one so you can edit the partitions and expand the filesystems. At least thats how I imagine it would go
-
osin_
yes, that's pretty much how I imagine it, but the thing is, I don't know exactly how to do it. I'm just asking if there's a guide
-
specialbomb
I did a little bit of googling and found some fourum posts:
-
specialbomb
-
specialbomb
it probably wont be exactly the same for the vm image but the gpart and growfs commands are what's important
-
specialbomb
I havent used the vm image but I would assume it uses UFS
-
osin_
there is a choice
-
osin_
thanks for link, didn't know how to google it correctly
-
tuaris
rtprio: I know the configuration of wireguard itself is the same everywhere, but my questions is more around setting up the freebsd specific stuff such as how to enable the service and where to put the config files.
-
specialbomb
wireguard gets set up as an interface, there is no wireguard service. you would use ifconfig to bring it up
-
specialbomb
-
specialbomb
you should be able to bring up that man page in your own system as well
-
kerneldove_
i got a bash script that runs a program of mine in a tmux session. it's like tmux new-session -s foo 'myapp -f /path/to/config -v run > /home/me/app.log 2>&1; exec $SHELL'. but when myapp had seg fault, that error wasn't put into the app.log, it was over in the tmux session. why?
-
specialbomb
thats def weird. did you give that a google? seems like it could be a common issue
-
kerneldove_
maybe the seg fault is from bash and not the program?
-
specialbomb
does it work when you use any other program in place of your app? do some rudimentary testing and take the unstable program variable
-
specialbomb
*take out the unstable program variable
-
kerneldove_
ok i needed: tmux new-session -s foo 'exec > /home/me/app.log 2>&1; myapp -f /home/me/myapp.conf -v start'
-
kerneldove_
i think that'll work
-
codin
Hi, I've recently installed FreBSD 14.3 and I see a ~constant stream of input errors on an Intel 82583V NIC, which leads to a dip in throughput. I'm stress testing the system and try to route at full 1Gbps full duplex through the router. How can I figure out what's causing these errors ?
-
codin
I bootstrapped the system from a live memstick image. I repeated the test with previous versions 14.2, 14.1 and 13.1. These versions manage to recover from the input errors and achieve full 1Gbps RX & TX.
-
codin
I noticed that the following threads kernel{if_io_tqg_1} and kernel{if_io_tqg_3} consume more CPU while the system returns input errors.
-
codin
The system routes between em1 and em2
-
kerneldove_
is it possible to freebsd-update a 14.3 to a specific patchlevel like p3 instead of 'newest'? i have a feeling p5 has a bug causing system crashes but i wanna verify first
-
rwp
kerneldove_, Yes. But the way is to compile from source. git clone the repo. Checkout the patch level you want to build. Compile it. Then install from that build of it.
-
rwp
It is actually a pretty straight forward process.
-
kerneldove_
eh ya i'll pass. i'll just install 14.3 and not update
-
kerneldove_
really should be able to run freebsd-update fetch -p 3 or something
-
rwp
I think everyone using FreeBSD should do a source compile at least onces. Then they will know how to do it when they need/want to do something special with it.
-
kerneldove_
i've done it dozens of times, i know the process. i don't have time for that
-
rwp
I don't recommend watching it crank through it. I would launch it and then let it run and come back in an hour or three and it will be done.
-
rwp
I happen to be running on a source built system right now.
-
specialbomb
I should do a source build at some point, sounds fun. I need more goobers to test on though. I am not sure how difficult it is to src install when I need ZFS
-
specialbomb
*zfs root
-
Reinhilde
what's a goober?
-
rwp
I am also running root on zfs and wouldn't have it any other way.
-
specialbomb
Reinhilde: haha its just what I call boxes, computers, anything that I can install and boot something on
-
specialbomb
I have a few spare laptops that I could test on probably
-
specialbomb
rwp: I guess I just dont really know about the src installation process. I'm sure theres info about it in the handbook
-
rtprio
kerneldove_: you should use /usr/sbin/daemon
-
kerneldove_
ya eventually i will but tmux is working fine for now
-
rwp
-
dch
specialbomb: building from source is easy enough. If you have zfs, use beinstall(8) which will install the built sources into a new boot environment
-
dch
perfection
-
dch
when you're ready to build from sources feel free to ask for more info here. It's not hard to do, but there are a couple of useful *.conf files where some guidance is handy.
-
kerneldove_
what are bursts of "Limiting closed port RST response ..." messages in /var/log/messages?
-
cpet
something is having fun with a closed port
-
cpet
look at log_in_vain to have those logged
-
kerneldove_
ok ty. should i blackhole them
-
kerneldove_
?
-
cpet
I personally do
-
kerneldove_
net.inet.tcp.blackhole=2
-
kerneldove_
net.inet.udp.blackhole=1 <-- both of these settings?
-
cpet
add these to rc.conf
-
cpet
log_in_vain="2"
-
kerneldove_
so don't set net.inet.tcp.blackhole=2
-
kerneldove_
net.inet.udp.blackhole=1 ? or DO set those in addition to log in vain?
-
cpet
and do service netoptions restart
-
cpet
it does the same thing
-
cpet
i personally do a sysrc log_in_vain="2" && service netoptions restart
-
cpet
vs adding stuff to sysctl.conf that aren't already a rc.conf arg
-
cpet
remembe doing sysctl bleh.blah.bleh=x will not make it perm until you add it to /etc/sysctl.conf
-
cpet
you also have some other options
-
cpet
you can lower the threshhold or increase it
-
cpet
net.inet.icmp.icmplim: 200
-
kerneldove_
sorry i guess i'm dumb i didn't catch if you set net.inet.tcp.blackhole=2
-
cpet
or you can disregard those msgs by doing
-
kerneldove_
net.inet.udp.blackhole=1 or not?
-
cpet
net.inet.icmp.icmplim_output: 1
-
cpet
setting that to 0
-
cpet
setting log_in_vain="2"
-
cpet
and restart netoptions does exactly what you doing with that OID
-
cpet
log_in_vain="0" # >=1 to log connects to ports w/o listeners.
-
cpet
er no sorry
-
cpet
youre right hah
-
cpet
yeah add those blackhole= as mentioned before
-
cpet
log_in_vain logs those connection attempts
-
cpet
blackhole just makes it so it doesnt respond and appears to hang
-
cpet
net.inet.tcp.icmp_may_rst=0
-
cpet
that may or may not break things but it helps
-
cpet
I am guessing you do have a firewall setup ?
-
» cpet pokes ketas
-
ketas
you have come here
-
kerneldove_
ya i have a fw
-
kerneldove_
it's ports that are sometimes used, and hence open to the fw, that are getting probed, i imagine
-
kerneldove_
i got the bios updated so now we'll see if 14.3-p5 still core dumps
-
cpet
thats part of having something online
-
ketas
limiting rst is antidos feature
-
kerneldove_
ketas ya and it's a good feature, but i was thinking about just blackholing entirely, with net.inet.tcp.blackhole=2
-
kerneldove_
net.inet.udp.blackhole=1
-
kerneldove_
i already have udp blackhole, was thinking about adding tcp blackhole
-
cpet
log_in_vain is overkill but im curious whp probes my closed ports
-
kerneldove_
ya i personally don't care who i just wanna cut noise in logs and network traffic/work for server
-
ketas
well you can fw block it too
-
kerneldove_
how so? i use pf
-
cpet
block icmp
-
kerneldove_
but then i can't ping can i?
-
cpet
you can allow those
-
cpet
pass in on $ext_if proto icmp icmp-type echoreq
-
cpet
etc..
-
black2
guys what's up
-
ketas
blocking icmps eh
-
ketas
hmm
-
cpet
if you alow icmp out you can ping
-
» cpet blocks ketas
-
» ketas passes ir
-
ketas
it
-
kerneldove_
ketas you said it can be blocked in fw, how?
-
ketas
just drop it all
-
kerneldove_
what is 'it'?
-
ketas
drop mic like it's hot
-
black2
icmps?
-
ketas
you wanted to block tcp?
-
black2
i think ping uses port #4 right?
-
cpet
4 and 8
-
cpet
echoreq echorep
-
ketas
icmp haz types
-
ketas
haa
-
ketas
has
-
cpet
some people block icmp some people don't
-
cpet
some people block pings other don't
-
black2
yeah I like those who don't
-
cpet
some peole set drop-policy to drop others don't
-
ketas
but you can block all in fw
-
ketas
can block flooders by ip too
-
ketas
that could backfire but
-
cpet
i would ask to post your firewall config
-
cpet
but these days people are weird like that
-
cpet
about*
-
kerneldove_
sysctl net.inet.tcp.blackhole can be set to 3 as well, must be a new 1. Setting net.inet.tcp.blackhole=3 extends the behavior of value 2 by also dropping unexpected segments on listening ports without sending a RST, offering further protection against certain scanning techniques
-
kerneldove_
a new 1 meaning new option
-
cpet
yeap
-
ketas
man -P 'less -p " overload "' pf.conf
-
ketas
is an option
-
ketas
3 is new 1 :p
-
dch
I like that one
-
cpet
but not the other one
-
kerneldove_
hur
-
Retrofan
Hi
-
cpet
Hi
-
Retrofan
My Znc is broken for about month
-
cpet
why dont you fix it ?
-
ketas
why did you wait so long
-
Retrofan
it's not mine ircnow
-
cpet
oh well that would do it
-
Retrofan
My problem now it's not that ZNC
-
cpet
Ok what is the problem now
-
Retrofan
I don't know what is happening on the internet the last 10 days
-
cpet
neither do we
-
cpet
we need them logs
-
Retrofan
anyone here uses hosting like Linode or something like that
-
cpet
i run a VPS on contabo in germany
-
Lateralus
I use Vultr VPS, cheap but correct
-
Retrofan
cpet: be careful we may face legal problems if you didn't super secured your server from AI
-
cpet
it basically just runs a ircd
-
Retrofan
I will explain
-
» cpet gets some water, a NOS and some chips
-
cpet
AI is basically a information miner, if you host things that aren't yours well thats on you not AI
-
cpet
ketas: guess we lost him
-
Reinhilde
wreh?
-
cpet
still waiting on this so called legal action
-
Retrofan
cpet: there is an organized AI bots attacks that happens from September (I think from July but it was lesser) till now, but now it's stronger.. On 8 Nov Linode contacted me (but I didn't read the msg :p ) saying that there is an physical problems on the server that runs my service (I am sure it's only me).. and they will move it to a new one, after the move on the next day 9 Nov.. a ToS...
-
Retrofan
...Violation msg sent to me (I also didn't notice XD ) saying that some company in Spain "comvive" works on security and hosting, is listed my server IP within the last Ddos happen on them.. also the next day 10 Nov, some really weird mail service in Italy "tana.it", is listing me in login-attacks (trying to access some of user account).. also didn't that.. I noticed on 11 Nov, when my...
-
Retrofan
...website is went down.. and my sim card no more works.. I noticed many international calls from India (that Spain company have data centers in India) and Spain...
-
cpet
yeap this is the wrong place for that
-
ketas
wha
-
Retrofan
yeah, looks like.. but do you noticed any heavy attacks on ssh, irc or http last months?
-
cpet
nope
-
Retrofan
The more weirder is that on the same day 8 Nov many data centers in India having heavy traffic problems.. also in Us-east Georgia
-
cpet
guess someone is a victim of "install it and forget then complain when weird things happen"
-
Retrofan
cpet: they used a php RCE
-
ketas
how did sim enter this picture
-
Retrofan
I scanned all my server and it's clean
-
Retrofan
ketas: those company wants to take legal action.. if I didn't move
-
Retrofan
I have also many strange reports from weird numbers in last two days on my number.. so my sim card company took an action
-
ketas
oh that way
-
Retrofan
ketas: I also I feel that linode given my contact information to them..
-
ketas
the fuck tho :)
-
Retrofan
bec. I have two numbers on my account linode.. the two numbers the same thing happened to them
-
Retrofan
thay send +700K request testing many exploits in less than 2 hours, until found the perfect one..
-
ketas
wait your vps got owned?
-
Retrofan
yeah
-
Retrofan
and they used it in nearly every way they could abuse
-
Retrofan
hacked other servers, used as Zombie in DDos and login-attacks
-
Retrofan
only in few hours
-
ketas
eh
-
ketas
phones, tho, still?
-
ketas
who bans admin phones
-
Retrofan
My sim is disabled now XD
-
Retrofan
so no more calls
-
kerneldove_
how did your vps being owned f with your phone?
-
Retrofan
?
-
kerneldove_
nvm
-
kerneldove_
why does /var/log/messages have swap_pager: cannot allocate bio in it if system is only using 10% of swap?
-
cpet
think you are missing some of that message
-
ketas
well admins could be slow to respond, could at maximum take it down, nevermind the fucking with paying customer
-
kerneldove_
no that's all of it
-
Retrofan
my vps have been hacked using some php RCE.. then after they abused my server.. and the affected companies contacted Linode.. linode gived them as I think my phone numbers.. calling me many times.. then some other strange numbers reported me and my sim is disabled now
-
kerneldove_
php lol, switch to rust
-
Retrofan
mediawiki
-
Retrofan
and phpbb
-
ketas
who's the phone co?
-
ketas
ask them too?
-
Retrofan
"On November 8 2025, customers using services hosted in our Mumbai (in-bom-2) and Chennai (in-maa) datacenters may have experienced packet loss and connection timeouts due to an issue with a third party transit provider. "
-
ketas
they got owned too?
-
ketas
:)
-
Retrofan
this linode nearly all vps companies have the same problems
-
kerneldove_
saaaarr
-
Retrofan
and all ips attacked me is from India and Indonesia
-
kerneldove_
someone did the needful all over their datacenter
-
kerneldove_
shocking
-
Retrofan
yeah
-
ketas
btw which lto i want if i want to play with tapes at home?
-
Retrofan
also in USA
-
ketas
6? 5?
-
Retrofan
George
-
kerneldove_
just don't use php it suck
-
kerneldove_
always has
-
Retrofan
this also affected cloud flare, and found some interesting article on bbc on the same day of the heavy attack
-
Retrofan
-
Retrofan
Linode refuses to talk, and said to me the security of the vps is on the customer
-
ketas
why there's a constant water need in dc anyway
-
Retrofan
-
ketas
using evap cooling?
-
Retrofan
you can also see here all their problems in last 10 days
-
Retrofan
+5 Emergency, not only them also there are many other vps in the same time have nearly the same problems.. this a bizarre international attack..
-
Retrofan
So be careful
-
kerneldove_
just find a smaller provider. screw big names like linode and hurdur
-
Retrofan
yeah
-
kerneldove_
there's probably a 0 day hypervisor escape going around
-
kerneldove_
vps is big risk. just get a cheap dedicated bare metal
-
kerneldove_
from a smaller provider
-
Retrofan
I think the hackers got into one of the vps in the network there in india and entered every other server on linode
-
ketas
that would be fun
-
Retrofan
and all of this are automated by AI
-
Retrofan
crazy O_o
-
kerneldove_
just use ai bro
-
ketas
-
ketas
entire infra was busted
-
ketas
even company mail :)
-
kerneldove_
Retrofan, track down the guy that hacked your phpbb vps and murder him
-
Retrofan
heh, you mean AI
-
Retrofan
all of this are bots AI
-
flatdog
an be solved :)
-
ketas
rm -f the ai
-
Retrofan
Ah
-
flatdog
s/an/can
-
ketas
:)
-
Retrofan
flatdog: how are yout
-
flatdog
met is good, no problem
-
kenrap
write an AI bot that "murders" their AI bots :P
-
flatdog
oroborus, the snake eating its tail. Cool idea
-
ketas
tho right now you can still target the puppermasters
-
Retrofan
But..
-
Koston
isn't that what trollbots on twitter have been doing for years already, arguing between each other
-
Retrofan
The weirdest thing here the attack on that weird mail website
-
Retrofan
tana.it
-
Koston
fully outsourced outrage culture. love it.
-
Retrofan
it's a private one
-
ketas
flatdog: what if it reaches the head
-
flatdog
problem solved
-
Retrofan
they attacked a specified users wants to read their private mails
-
flatdog
no more headaches for hoomans
-
Retrofan
and I don't know if they are behind the weird reports on my phone number
-
Retrofan
Sim is no more usable now, need to go to the company
-
kerneldove_
it's 2025 you don't have to be ashamed of calling The Manhole voiceline anymore
-
kerneldove_
be out and proud Retrofan
-
ketas
a what
-
flatdog
brb, wife said something about lunch
-
flatdog
*hooman one
-
ketas
how did you source a wife
-
flatdog
cannot remember, it happened 40+ years ago
-
flatdog
laterz
-
kerneldove_
wtf
-
ketas
lead_pipe23: romans liked you
-
dch
ugh poudriere is failing to extract to /tmp/ today
-
» dch wonders what changed
-
kerneldove_
i can't imagine living with someone for that long
-
kerneldove_
i don't even like having weekend guests
-
kerneldove_
good for them but to me having a family is weird
-
ketas
kerneldove_ likes aloneness
-
kerneldove_
ya
-
kerneldove_
i can't imagine having to negotiate my living conditions with another person permanently
-
Retrofan
Family is good, not bad
-
ketas
-
kerneldove_
i already said good for them, just not for me
-
kerneldove_
nah i'm orderly that's a shithole
-
kerneldove_
it's not like i 'never grew up' or smth
-
Retrofan
I also forgot to share my desktop screenshot
-
Retrofan
-
Koston
definitely strong late 90s flare going on there
-
ketas
hah
-
ketas
what the de?
-
ketas
nt3.5ws :p
-
Retrofan
I like that image looks nice on desktop
-
cpet
is that the freebsd port or an actual next system?
-
cpet
afterstep
-
cpet
never mind heh
-
Retrofan
Gworkspace running
ibb.co/BKzMG6Zh
-
Retrofan
*Gnustep
-
Retrofan
I like after.. but the 2.0 version is unusable
-
cpet
well seeing how x11amp has been removed years ago
-
cpet
we may have found why your VPS was owned
-
cpet
:D
-
Koston
lol
-
cpet
not to mention staroffice was decomisisoned years ago as well
-
cpet
realplayer has been a thing since like what 2005?
-
cpet
think the only thing on that screenshot that is modern is the monkey icon
-
cpet
now since im bored lets do some digging
-
cpet
it was removed in 2015
-
dch
mm so poudriere fails if WRKDIRPREFIX=/tmp but works if WRKDIRPREFIX=/tmp2 with identical mount params
-
dch
wat
-
Retrofan
cpet: This not staroffice
-
cpet
why would you change the wrkdirprefix
-
Retrofan
this the leates Openoffice
-
Retrofan
I like the star's icon
-
cpet
ah i see
-
cpet
i kind of like libreoffice
-
dch
cpet: so it all ends up in /tmp/ whether I build in tree or via poudriere
-
cpet
well check the mount options cause /tmp i think has noexec nosuid
-
Retrofan
cpet: to be honest I was using mediawiki version form 2012; bec I hate JS
-
cpet
which is all neded by poudriere to build
-
cpet
only if you use the rootless building
-
cpet
Retrofan: fail
-
dch
yeah it fails in extract, which is very odd
-
cpet
never had a reason to do that i setup poudriere and use the html frontend
-
Retrofan
but phpbb was the leatest
-
Retrofan
I modifed a theme to be nearly 0 JS
-
cpet
Retrofan: php is bad anything thats not fixed ASAP will get owned
-
cpet
Retrofan: especially if you run wordpress
-
cpet
thios is why I use hugo
-
Retrofan
No wordpress heh the whole website is static web 1.0 html
-
cpet
last i checked nothing really can be done with vanilla html
-
Retrofan
I used a blog uses markdown, and heavy modified it to 100% static
-
Retrofan
That wiki never touched it since 2022
-
Retrofan
and I forget it
-
Retrofan
That attack is so dengrous they are not only attacking in one way, they nearly all protcols, AI scan for security holes and make bots test it
-
Retrofan
irc and ssh and http
-
Retrofan
and many more
-
Retrofan
So we now have clever worms XD
-
cpet
you are using old as hell software
-
cpet
then complaing your stuff got owned
-
Retrofan
?
-
cpet
what teh hell?
-
Retrofan
phpbb is not old
-
Retrofan
only mediawiki
-
Retrofan
and they hacked both in less than hour
-
Koston
in less than an hour, counted from..?
-
Retrofan
I can see in logs
-
Retrofan
bots was trying many different ways
-
Retrofan
and found the right
-
Reinhilde
i have considered writing my own forum software
-
Retrofan
It's only me hacked you can see nearly all the company have the same problem now..
-
Reinhilde
in Tcl
-
Retrofan
NIc
-
Retrofan
nice
-
Reinhilde
not done it yet. but i should
-
Retrofan
make it html 3.2
-
Retrofan
my server also hacked many other servers, and acted as a zombie
-
cpet
may want to read up on properly securing your server
-
ketas
lol my server hacked
-
cpet
kind of curious of logs
-
cpet
ketas: dont confuse your server with your mind
-
ketas
my hacks are ok
-
cpet
Retrofan: i only ask cause my pf has blocked over 3k IPs
-
cpet
and a bunch of 404's from random php crap
-
Retrofan
ketas: what?
-
ketas
i don't even watch what mine logs
-
cpet
4.217.221.186|Wed 12 Nov 2025 06:59:52 -0600|404|961|GET /enclas.php HTTP/1.1|||Host:
-
cpet
etc..
-
Retrofan
yeah
-
ketas
ports are funny too
-
Retrofan
it's and international attack
-
Retrofan
they are working from sep
-
Retrofan
but now look like they took over india
-
ketas
there's ALL sorts of scans nowadays
-
» cpet scans ketas
-
» cpet ketas has ssh running
-
Retrofan
ketas
-
Retrofan
I scanned 3 times using ClamAV
-
Retrofan
I am using linux vps
-
cpet
clamav is as useless as it gets
-
Retrofan
and nothing their
-
Retrofan
I think it's a 0 day
-
Retrofan
or somthing like SQL slammer
-
Retrofan
writes it self to memory
-
Retrofan
only
-
cpet
Retrofan: its not hard to random try thing and use them without anyone knowing for months
-
Retrofan
cpet: it only attack servers, I think that no one way; bec AI writes the code for attacking
-
Retrofan
and after get in it makes it attack other servers on company
-
cpet
gets in from where ssh exploit
-
Retrofan
then DDos some security services
-
Retrofan
and trying to hack some weird people
-
Retrofan
I think it's mafia or something organized
-
Retrofan
cpet: gets in from everywhere
-
cpet
i see
-
Retrofan
my ssh is super sucred and they tried and faild
-
Retrofan
but got in from php
-
Retrofan
it's AI
-
Retrofan
many ways many thing
-
Retrofan
The only thing I am scared of is they may stole my visa, like what they done for my phone number
-
Retrofan
my sim useless now
-
Retrofan
Data centers is heating up.. and people can't afford water in many places
-
Retrofan
The modern world is scary
-
cpet
its not scary just greedy
-
Koston
I thought we were championing equality and celebrating diversity
-
Retrofan
Oh, they closed the ticket
-
ketas
skynet became online
-
Retrofan
I can start my server now.. but I will let it down for couple days
-
cpet
skynet is after ketas and Retrofan
-
Retrofan
Be careful also cloud flare is affected
-
cpet
hah
-
cpet
its always either cloudflare or amazon
-
Retrofan
I can't trust their security now
-
Koston
didn't cloudflare recently ddos itself?
-
cpet
i personally never did
-
cpet
Koston: link or it never happened
-
Retrofan
Koston: oh
-
Retrofan
only read about problems in india
-
Koston
-
Retrofan
that affected the service
-
black2
guys
-
black2
what you talking about man?
-
Retrofan
yeah
-
black2
sounds hysterical
-
cpet
black2: im bored so im just listening
-
cpet
Koston: hah
-
Retrofan
I will send links of the last problems with them.. hold a sec
-
cpet
all i got form this is dont use linode
-
cpet
heh
-
Retrofan
-
cpet
that is from 2021
-
black2
cf is never a good-will actor in the industry
-
Retrofan
Xd
-
Retrofan
my bad
-
black2
did you guys hear about the founder's downfall in life?
-
Retrofan
There one which new
-
Retrofan
hold a sec
-
black2
feel sorry for that guy
-
cpet
black2: link or it never happened
-
cpet
i guess i can google but
-
cpet
you kind of started it
-
cpet
so pay up
-
black2
pending result...
-
cpet
rain check opk
-
black2
The Devastating Decline of a Brilliant Young Coder by WIRED
-
black2
-
black2
they really should do a lot of the things they've done
-
cpet
this is exclusively for members
-
black2
shouldnt*
-
cpet
pfft
-
black2
you can bypass that with wayback machine I think
-
black2
well I can read the whole thing here
-
black2
you want the pdf? cpet
-
Koston
tl;dr, the guy got dementia in his early 30s
-
cpet
an S-1 IPO filing that it made public today, “Tragically, Lee stepped down from Cloudflare in 2015, suffering the debilitating effects of Frontotemporal Dementia, a rare neurological disease.”
-
cpet
damn :(
-
Retrofan
I can't find cloudflare
-
cpet
I have PTSD, Chronic kidney disease at stage 3 and my hands get numb
-
cpet
but still sucks :(
-
Retrofan
but I got many other ones
-
Retrofan
-
Retrofan
In same time of linode
-
cpet
anything with cloud in it is bound to have issues
-
black2
"cloud" is a buff term
-
black2
similar derivatives include "Internet of Things" and "Big Data"
-
Koston
search for linode, first hit description: Linode Kubernetes Engine Managed K8s container orchestration engine for containerized workloads.
-
Koston
what an absolute bullshit bingo jackpot line
-
Reinhilde
buzzword bingo
-
black2
can anyone tell the difference between AI, ML and DL anymore?
-
black2
Koston: that sounds bogus and pompous.
-
Retrofan
I am scared now on my money and visa
-
black2
Retrofan: what VISA?
-
Retrofan
I don't know if they are hacked or somethin.. but how my phone number leaked.. and got reports on it
-
Retrofan
sim card is no more working
-
remiliascarlet
black2: Probably his foreign residency, since "visa" is spelled in all lowercase.
-
Retrofan
?
-
Retrofan
oh
-
Retrofan
I mean my credit card
-
remiliascarlet
Then that's Visa, not visa.
-
Retrofan
We here use term "visa" for all credit cards
-
remiliascarlet
Or VISA rather.
-
remiliascarlet
I call both VISA and Mastercard just "Slavecard" because of them constantly going after entertainment and censoring it all to death just because their CEO's don't like it.
-
black2
remiliascarlet: hey did I talk to you before? Are you the Japenese person who stayed in #fsf quite often?
-
remiliascarlet
I'm Japanese, though I don't think I was in #fsf for that long.
-
black2
yeah they cut the donation money of wikileaks back then. that was scary man.
-
black2
a debit is the best I can stand. I never will get a credit card despite constant temptations by the bank employees.
-
remiliascarlet
I was in #gnu before, but I was constantly being attacked with "you're cringe" after having sided with RMS.
-
black2
remiliascarlet: okay but nice to talk to you again. I think you are the person then.
-
remiliascarlet
I have debit cards only. Not because I can't get credit cards, I just don't trust them.
-
black2
why? because of the RMS's supposed connection to Marvin Minsky?
-
black2
that's fallacy
-
remiliascarlet
I simply said that cancelling the very man that made GNU and FSF possible in the first place was a very bad move, and the political activists there didn't like that.
-
ketas
cpet: you are not dying?
-
[tj]
this is off topic, please move the conversation elsewhere
-
black2
[tj]: okay man chill
-
[tj]
you gotta get a head of things
-
Retrofan
oh, mine is debit not credit..
-
black2
I think we'd best take it elsewhere? remiliascarlet
-
remiliascarlet
black2: Watch out, he's an operator. Might move this to #freebsd-social.
-
black2
[tj]: wdym "head of things"?
-
black2
remiliascarlet: okay
-
cpet
theirs always that one person
-
cpet
ketas: not yet
-
cpet
black2: proper management of those plastics is key
-
Reinhilde
ops should always be opped up; the libera catalyst rule considered harmful
-
black2
cpet: what plastics?
-
cpet
black2: cards?
-
black2
okay right
-
black2
I only have a few and they sit in my drawer so I should be fine
-
Reinhilde
-social, now
-
ketas
wtf catalyst
-
cpet
ketas: please stay on topic
-
cpet
and tell me with py-openssl isnt found
-
Reinhilde
something must be done about this colla of cryptofascists.
-
cpet
Reinhilde: kdegames fails cause py-openssl was renamed to py-pyopenssl
-
cpet
now sadly i use pkg
-
cpet
so compiling would render me recompilg kde
-
cpet
and well no :)
-
Reinhilde
uh, huh. 's always struck me that freebsd's packaging is strange sometimes
-
Retrofan
After KDE 4 came out.. KDE became useless
-
cpet
i like KDE xfce4 for my lower end systems
-
cpet
i liked E as well but they have a very strange release cycle
-
cpet
and I have seen them release like 4 releases in a day
-
ketas
e?
-
ketas
oh that e
-
cpet
eketas
-
Retrofan
bye
-
CrtxReavr
cpet, don't be that guy.
-
kerneldove_
ok i reinstalled 14.3, didn't update so i'm not at patch 5, and starting up my server app. we'll see if i get an OS crash again
-
kerneldove_
got bios updated so it's not that
-
CrtxReavr
Just because you have the lastest BIOS, doesn't mean it isn't a turd.
-
kerneldove_
well it was shitting when it had the older bios so there's nothing more i can do at this point
-
kerneldove_
last thing left to try is if the p5 change to udp code is the culprit
-
kerneldove_
my server app is heavy on udp
-
CrtxReavr
p5 as in perl?
-
kerneldove_
patch level 5
-
kerneldove_
the latest 14.3 patch level
-
cpet
CrtxReavr: what guy ?
-
CrtxReavr
09:12 < cpet> ketas: please stay on topic
-
cpet
CrtxReavr: please stay on topic man
-
kerneldove_
are you guys flirting?
-
kerneldove_
jc
-
cpet
kerneldove_: ive known CrtxReavr since probably aroound 2001
-
kerneldove_
well i guess you guys have a really strong bond formed and i'm sure you guys will be happy together
-
CrtxReavr
And he gets worse every year.
-
kerneldove_
you two are so cute. perfect couple
-
cpet
now hes flirting
-
kerneldove_
all this time and the flame is still alive
-
cpet
hah
-
» CrtxReavr gags kerneldove_ with fragmented UDP.
-
kerneldove_
:/
-
cpet
kerneldove_: you did it not me
-
cpet
hrm sudo was remade in rust
-
kerneldove_
nice!
-
cpet
-
kerneldove_
i wonder if its behavior is exactly the same or if it did the coreutils jig
-
cpet
-
cpet
hah
-
» cpet moves along
-
cpet
-
kerneldove_
i'll give it a try
-
cpet
i still use sendmail despite it being not used any more due to bad rep of being insecure
-
cpet
so bleh :)
-
CrtxReavr
It's a piece of software with a long history.
-
CrtxReavr
It's also very mature.
-
cpet
also was rewritten
-
CrtxReavr
That said, however, I find postfix to be much easier to configure and keep secure.
-
CrtxReavr
And hell, it's damned near as mature as sendmail these days.
-
cpet
i like opensmtpd
-
cpet
syntax is almost in par with pf
-
cpet
Sendmail is 42 yrs old 1 yr older than myself
-
cpet
Postfix is 26 yr old
-
cpet
according to the trustworthy wikipedia
-
CrtxReavr
I just remember with postfix, everything I needed to know about configuring it was in the comments of the included .conf file.
-
cpet
Exim is older
-
cpet
I always got confused with the hosts stuff
-
CrtxReavr
Isn't exim a client?
-
cpet
server
-
CrtxReavr
o_O
-
V_PauAmma_V
Are you thinking of exmh?
-
cpet
exim
-
cpet
-
» V_PauAmma_V meant that for CrtxReavr.
-
cpet
oh
-
cpet
Exim was the default mail server in Directadmin
-
cpet
but they cut freebsd support for some reason
-
cpet
In March 2023 a study performed by E-Soft, Inc.,[5] approximated that 59% of the publicly reachable mail-servers on the Internet ran Exim.
-
cpet
CrtxReavr: :)
-
CrtxReavr
Conclusion exim admins didn't now how to not report a version tag.
-
cpet
now how
-
CrtxReavr
Is it popular in India & China?
-
cpet
i dont know
-
CrtxReavr
I'm just baffled as to how it could have been so under the radar for me.
-
cpet
no body is perfect not even grammar people
-
CrtxReavr
"Nobody."
-
cpet
this isn't about me man
-
CrtxReavr
Hey,you teed me up so nicely there.
-
cpet
I get lucky so often
-
CrtxReavr
You know, if you were to track down my Junior & Senior High English teachers and tell that them I grew up to be a grammar zealot, they'd never believe you.
-
cpet
tell that them ?
-
cpet
s/that//
-
CrtxReavr
tell them that I
-
cpet
yes
-
CrtxReavr
or drop the 'that' - that works too.
-
cpet
too many that's
-
cpet
so I have a script that fetch ip's from access.log based on 404, random shell code, and some other crap
-
cpet
just in the last 72 hours it has blocked around 4000 IP's
-
cpet
not to mention it has taken me a while to block all that censys scanning bs
-
cpet
CrtxReavr: I graduated in August, yay me
-
cpet
luckily grammar is not part of it or else I would of failed miserably
-
cpet
heh
-
CrtxReavr
Finally finished beauty school, eh?
-
cpet
cyberSecurity
-
cpet
i guess to computer it's beauty school
-
cpet
pccard was removed
-
cpet
pccard.4*
-
kerneldove_
cpet wtf 4k ips. you run a porn site or some other hot target?
-
kerneldove_
i'm glad i don't run any public facing services
-
CrtxReavr
kerneldove_, never exposed ssh to the internet before?
-
kerneldove_
ya but that's the not the same as a website
-
kerneldove_
with ssh it's easy to know if it's legit vs not traffic
-
rtprio
probably ai crawlers "found" you
-
rtprio
not at all surprising these days
-
CrtxReavr
Long before AI crawlers was web crawlers.
-
CrtxReavr
I love it when you can watch your logs, see them download your robots.txt, then immediately hit everything you tell them not to index.
-
rtprio
ah, the old days
-
CrtxReavr
That's all still very much a thing.
-
Macer
lol
-
Macer
-
Macer
Joshua just wants to play a game.
-
CrtxReavr
Was Matthew Broderick 12 when they made that movie?
-
CrtxReavr
"I'd piss on the spark plug if I thought it'd do any good!"
-
Macer
He was very young for sure.
-
Macer
-
Macer
This part had me dying laughing.
-
CrtxReavr
I'm old, but I never owned a cradle modem.
-
CrtxReavr
``30 GOTO 20 `` would have been a lot more efficient.
-
CrtxReavr
Thisd odysee it's own video site, or another YT aggregator?
-
specialbomb
CrtxReavr: on my home network I begun just opening up wireguard tunnels instead of keeping ssh open, way better option imo
-
specialbomb
wg was a blessing upon us mortals
-
kevans
my home vpn situation improved greatly with the conversion from openvpn to wg
-
specialbomb
Jason Donenfeld is genuinely one of my favorite dudes, his projects are great. I use pass daily
-
skered
kevans: In what way?
-
» skered is openvpn with pfsense
-
bdrewery
I moved from openvpn to headscale and have had so many problems
-
skered
I've always been hungup on the config/routing of wireguard.
-
skered
I'd hope it would be no different than openvpn (even though it's mostly done for you in pfsense).
-
specialbomb
its not that hard! you should read the introduction to the concepts of wg on the official webpage. its beautifully simple actually
-
specialbomb
so simple it makes you wonder why no one really did it before. really genius stuff
-
skered
Well everytime I'm thinking about it I'm remote... over openvpn... I get scared.
-
skered
I'll have to try again.
-
specialbomb
dont be scared, be curious!
-
» skered will do it at home via phone. Don't like breaking things when I'm not there
-
specialbomb
you can experiment with it locally on two machines too if you wanna poke around at that
-
ketas
why is cpet trying to date CrtxReavr and me
-
ketas
:p
-
specialbomb
is that what you want?
-
mason
I struggle to find a reason to use VPNs when there's ssh handy.l
-
rtprio
mason: because it's a drag to ssh port forward all the time
-
mason
Eh, SOCKS makes it pretty easy.
-
mason
If I had to do a ton of UDP I might change my mind. But I never do.
-
rtprio
not everything is web either
-
mason
Other things can use SOCKS, but yeah.
-
mason
Huh. TIL SOCKS5 can do UDP.
-
specialbomb
i would say using emcrypted encapsulation would be a better idea in most cases
-
cpet
ketas: dont be weird man
-
rtj
aye cpet
-
specialbomb
drama in the love triangle!
-
cpet
no thats ketas being ketas
-
rtj
This looks neat, anybody use this before?
github.com/DtxdF/AppJail
-
cpet
not sure I trust a project that has such big donation images
-
cpet
heh
-
specialbomb
LOL
-
specialbomb
ill still handwrite my jails for now I think. cool though
-
cpet
the inhouse jail manager in rc is good enough for me
-
ketas
i have problems with that
-
rtj
cpet: same I'm a simple man
-
ketas
and thing it came from
-
ketas
why one can't just install a port :p
-
ketas
unsure
-
rtj
I'm sure there is a use case for someone.
-
ketas
yeah
-
cpet
i dont think any of the new jail managers fix any of the issues that make people want to create new ones
-
cpet
cbd is a beast of a ugly and confusing app
-
cpet
but it works when its setup
-
cpet
cbsd*
-
ketas
never used any of them somehow
-
cpet
ketas: dont be like CrtxReavr who never herd of exim
-
ketas
i never used that
-
ketas
used qmail and postfix
-
ketas
oh yeah strange ideas
-
ketas
why that's a thing in linux anyway i wonder
-
ketas
i can get the idea
-
ketas
but it's another damn wrapper
-
cpet
linux uses systemd which is a overly complicated beast as well
-
ketas
systemd asids
-
ketas
aside
-
ketas
but those containers?
-
cpet
kind of like the idea of OCI
-
ketas
wtf oci even was
-
ketas
Oracle Cloud Infrastructure?
-
cpet
open container infra
-
ketas
Open Container Initiative ?
-
ketas
:p
-
cpet
-
cpet
-
r0ni
ya know docker, podman, that stuff
-
ketas
that whole thing seems like someone rubbing and go like... now how do we make everyone suffer as much as windows users when they want to install programs
-
ketas
rubbing hands
-
specialbomb
containers arent a bad idea, its more seemingly everyone wants to do it differently and its frustrating
-
specialbomb
thats my perception at least
-
cpet
same with jail managers
-
cpet
:)
-
specialbomb
I just use the rc script!
-
specialbomb
it worky good
-
cpet
it worky
-
cpet
heh
-
specialbomb
i need to reorganize my jails and datasets. I want to make it so each jail has its own ZFS dataset so I can snapshot more granularly. I first started working with freebsd in general a few months ago so my architecture is a bit naive :P
-
cpet
finally got all these url regex crap working
-
cpet
now all these *.php pings give Connection Closed
-
cpet
specialbomb: been working with freebsd for 28 years
-
cpet
specialbomb: :D
-
specialbomb
im in love with it!
-
cpet
done you get weird too
-
cpet
dont
-
ketas
i installed 4.6
-
cpet
actually when did 2.2.8 come out
-
specialbomb
I mean, im no professional, but I love the freebsd way of doing things
-
cpet
ok 27 years
-
specialbomb
ive run into so few problems, and the documentation is a ton better than a lot of other operating systems ive fooled with. its never been easier to answer my own questions
-
ketas
hah
-
ketas
yes
-
cpet
specialbomb: asking the wrong questions then
-
specialbomb
im not experienced, so they arent hard questions :p
-
cpet
ask ketas all your questions he knows all the things
-
ketas
-
ketas
love the synopsis
-
specialbomb
terrifying
-
cpet
every command is like that
-
cpet
think i sent in a ML requesting a rewrite to a more informative -h output
-
cpet
the reply was not good so gave up
-
ketas
of what
-
ketas
lsof?
-
cpet
all commands
-
ketas
well it fragments
-
specialbomb
thats one hell of a request.
-
cpet
if you know C sed and some magic
-
cpet
its not really
-
ketas
did someone get pissed
-
cpet
people always get pissed when I say something
-
cpet
hah
-
ketas
why
-
ketas
:p
-
cpet
i guess im too direct for most people
-
ketas
why you hate /root/
-
ketas
:p
-
cpet
cause installing everything to /root is bad
-
ketas
btw where to put custom things in hier anyway?
-
ketas
noone really fines you
-
cpet
hier is an illusion
-
ketas
there is no fs police
-
cpet
yes
-
specialbomb
I suppose I dont really know what you mean by "rewrite to a more informative -h output" for "all commands"
-
cpet
usage: rm [-f | -i] [-dIPRrvWx] file ... unlink [--] file
-
ketas
poudriere uses /xxxdirxxx in it's jails
-
ketas
but i chose /root/ for less confusion
-
specialbomb
what would be your ideal output?
-
cpet
Application Options: --config=PATH Configuration file location (~/.irssi/config) --home=PATH Irssi home dir location (~/.irssi)
-
ketas
somebody recently put /root 750 into mtree
-
cpet
this makes me have to do a man rm
-
cpet
read
-
ketas
which craps me
-
cpet
and then go on so i want rm -i
-
cpet
now if rm was like irssi
-
cpet
i can go yeah i want -i and rf
-
ketas
i can't decide where to go
-
cpet
go any where
-
ketas
zpools go /xxx
-
specialbomb
ah, I guess im always having a man page open anyway so I suppose it doesnt bug me much
-
cpet
zpools goto /beer
-
specialbomb
pools of beer... nice
-
ketas
i mean you can write anywhere as long as it won't confuse you or others
-
cpet
beer 448G 52.9G 395G - - 1% 11% 1.00x ONLINE -
-
cpet
root@server:/var/log/hiawatha #
-
cpet
we all need a beer dataset
-
ketas
nanobsd did put things into /root/ as well
-
cpet
ive only used nanobsd once
-
specialbomb
I named my main storage pool boulder
-
specialbomb
heh
-
cpet
specialbomb: i drink a lot of beer so its a reminder
-
cpet
specialbomb: kind of why I own unix.beer
-
ketas
one could choose never to be used dir in / as well
-
ketas
like /custom
-
cpet
cause I drink the beers while doing unix stuffs
-
ketas
opt srv whatever could be used as well
-
specialbomb
nice domain
-
cpet
mail/openwebmail||2021-02-01|Has expired: Does not use modern Perl syntax and no development activity since 2006
-
ketas
i've see /data\d+ or /virt\d+ being used
-
cpet
aww
-
ketas
whatever
-
specialbomb
I havent hosted a website in a long time :(
-
cpet
i host one using a mini pc that sits right next to my router
-
ketas
Copyright © 2001-2025 Open WebMail Project
-
ketas
they used $year i thinl
-
ketas
k
-
specialbomb
I just dont have a lot to say, so I dont need to host a site!
-
ketas
-
cpet
i have a patch bin
-
ketas
unsure
-
cpet
-
cpet
trying to see why kdegames doesnt compile
-
specialbomb
KDE was my de of choice when I was a lot younger, ive been meaning to try it out again
-
ketas
-
cpet
Installing py311-pyopenssl-25.3.0_1,1...
-
cpet
pkg-static: py311-pyopenssl-25.3.0_1,1 conflicts with py311-openssl-25.0.0_1,1 (installs files into the same place). Problematic file: /usr/local/lib/python3.11/site-packages/OpenSSL/SSL.py
-
ketas
on those jails & oci
-
ketas
was it renamed lately?
-
specialbomb
yeah I was thinking about that one lately ketas haha
-
ketas
or those are two things?
-
cpet
ah
-
cpet
so MOVED isnt the same as RENAME?
-
ketas
it should be moved
-
ketas
delete it?
-
cpet
i cant
-
ketas
why?
-
cpet
it will remove about 900 ports
-
ketas
always can
-
ketas
-f
-
cpet
guess ill just wait until packages are rebuilt
-
specialbomb
900 dependencies? sure sounds like kde
-
ketas
pkg create -nv
-
cpet
specialbomb: i like KDE its the most complete DE
-
cpet
specialbomb: however people hate it
-
ketas
first
-
ketas
or so
-
specialbomb
cpet: I took the i3 pill a long time ago and never really went back haha. I've gotten so used to my own little setup that I look like an idiot when I have to use someone elses computer
-
ketas
looks like it's rust time again
-
ketas
o/` lets rust again o/`
-
cpet
-
cpet
why?
-
cpet
it was done 27 hours ago
-
ketas
hmm
-
ketas
unsure why naming
-
ketas
it's already a py openssl
-
ketas
py py openssl?
-
specialbomb
time to email the committer
-
ketas
it's upstream name but still
-
specialbomb
ah so the project renamed?
-
ketas
unsure if it did
-
cpet
think all those were renamed to pyname
-
cpet
er py-pyname
-
ketas
imagine if new port comes and is named py-openssl
-
cpet
i was just wondering cause I wanted kdegames
-
ketas
:p
-
ketas
you should calm your desires
-
specialbomb
nah, next it will be python-opensecuresocketlayer
-
ketas
openbuffy
-
ketas
secure socket slayer
-
specialbomb
hah
-
cpet
ketas: please stay on topic
-
ketas
:p