-
satanist
is this set in the router advertisement? doesn't sound like it's going to work
-
mewt
that's what the VPS provider says to do, but it may be shorthand for something else
-
mewt
I can see a link-local IP if I ping link-local broadcast. I've never really seen it use *anything* beyond a link-local IP so far
-
satanist
::1 is the locahost address so you would send to lo
-
mewt
...exciting, why didn't I remember that
-
satanist
you could try to manual set the default gateway to the link-local address from which the router advertisements are send
-
mewt
I have once, seemingly to no avail...
-
mewt
I'll try it again I suppose, moment
-
satanist
don't forget to include the %interfacename for the route
-
mewt
-
mewt
This is what happens in tcpdump if I restart rtsold
-
mewt
ping6 on anything just gives "ping6: UDP connect: No route to host"
-
satanist
about your config, have you actually "accept rtadv" in rc.conf or "accept_rtadv" and it was a paste error?
-
mewt
(I did add the interface name)
-
mewt
accept_rtadv
-
mewt
just checked
-
mewt
I guess I can scrub out the identifying stuff and just paste my whole rc.conf, if you like
-
mewt
-
satanist
sorry I don't have time anymore, need to go to sleep
-
mewt
ok, that's fine
-
mewt
maybe it can be useful to someone else
-
polarian
-
polarian
dont get me wrong I support its foss movement, but their linux way of looking at the world has just flung mud accidentally at FreeBSD
-
polarian
I am sure people here know that the issue with GPL is not because FreeBSD want to appease big corporations and feed the latest big corpa tech solution, its down to the fact GPL has "firendly fire" so many open source projects get tramped in the GPL movement, not just that, but the GPL is legally ambiguous and difficult to enforce (800 lines of FSF ramble)
-
mewt
doesn't seem like SLAAC is working at all
-
polarian
To be honest I dont blame its foss, or most the Linux users spreading this narrative. I blame the FSF. The FSF has campaigned for decades how the GPL protects consumers, and the only people who would hate the GPL are evil corporations or people who want to violate user freedom. The idea that GPL == freedom has been permanently engraved into many FOSS developers brains, and the idea of freedom
-
polarian
without GPL is just incomprehendable to many Linux users.
-
polarian
Sorry for the rant, it makes me so mad when people without knowing the history act like GPL eradication was a matter of appeasing companies.
-
polarian
mewt: show me your rc.conf?
-
mewt
-
mewt
has a couple things anonymized
-
mewt
but that's it
-
mewt
tcpdump output, also anonymized
bpa.st/Z3OQ
-
mewt
that's from restarting netif service
-
mewt
I only have a link-local IP still
-
wavefunction
Also, no one *wants* to challenge/enforce the GPL because, whether it gets enforced or not will be an absolute *sea change* event
-
wavefunction
Kinda like how Google/Oracle API situation happened -- once courts ruled API implementation absolutely _does not count_ as infringement, bam, it's "settled law"
-
polarian
-
polarian
fucking c*nt
-
polarian
I swear if I don't close linkedin right now I will make myself unemployable for the rest of my life!
-
polarian
And we wonder why people dont adopt BSD when you have senior sysadmins spreading the narrative that FreeBSD is a "corporate slave OS"
-
mewt
that does seem extremely...sensationalized
-
oxyhyxo
it protects the time they invested in learning linuxisms
-
oxyhyxo
and also preempts having to learn anything new
-
polarian
mewt: whats with dhcpc6?
-
polarian
its one or the other...
-
mewt
one or the other, huh?
-
polarian
well technically not
-
polarian
sorry ignore that
-
polarian
im half asleep you can use dhcpv6 as well
-
polarian
also why the c?
-
polarian
is that a typo?
-
polarian
anyways for SLAAC you dont use DHCPv6 at all
-
polarian
mewt: can you verify that you have SLAAC support from the router
-
polarian
the router must broadcast router advertisements
-
mewt
The tcpdump log shows a router advertisement, I guess I need to check the content of that?
-
mewt
one sec
-
polarian
hmmm
-
polarian
the tcpdump seems fine
-
polarian
whats your ifconfig output?
-
mewt
[let me quickly anonymize and paste that...]
-
polarian
wavefunction: ugh copyright is a pain in the arse
-
mewt
-
mewt
is this helpful?
-
mewt
if that looks ok, maybe I'll poke the provider
-
polarian
mewt: wait is this a server?
-
mewt
yeah, it's a VPS
-
polarian
if so most hosting providers I know of use DHCPv6-PD
-
polarian
you sure they support SLAAC?
-
polarian
SLAAC is often used on client networks, not server networks (although I dont see any reason it cant be used for servers too)
-
mewt
let me double check
-
polarian
some others dont even use any sort of automatic IPv4/IPv6 config and instead use cloud-init to inject static allocations
-
polarian
but yeah I dont see anything wrong here, unless freebsd is bugged
-
polarian
rtsold will send solicitation, and afaik it also listens for adv
-
polarian
and the ifconfig for the interface looks fine
-
polarian
if you want to see my IPv6 setup (working) its as simple as this:
-
polarian
-
mewt
yeah, they don't have much documentation on this, honestly. Would be happy to see yours
-
polarian
(note lagg'ing wifi isn't supported, and causes issues, but thats how you do SLAAC)
-
polarian
this is client side not server
-
mewt
mk
-
polarian
mewt: contact them, I would assume its DHCPv6-PD or its static allocated
-
mewt
nope, another OS's guide for the VPS provider says SLAAC with no privacy addressing
-
mewt
err
-
mewt
VPS provider's guide for a nother OS
-
mewt
another*
-
polarian
mewt: not sure then, I just got back from a meetup so I am too tired to help out
-
polarian
hopefully someone whos got more energy can help out
-
mewt
I did find something interesting
-
mewt
when I manually dump the router advertisement, and then configure that address in place of accept_rtadv
-
mewt
somehow, that address gets assigned to lo0
-
mewt
at least according to netstat
-
polarian
linkedin has rate limited my posts, probably for the best, I kinda got a little heated and decided to reply to every post which discredited the achievement of FreeBSD becoming GPL-free
-
polarian
is it going to change peoples opinions? no. Is it going to make me seem like a arsehole? yes. Why did I do it? Idk... I love BSD and people lying about it angered me. Did I waste my time and labour? definitely!
-
bsdrobert
first mistake was having a linkedin
-
polarian
bsdrobert: need work :(
-
polarian
money doesn't grow on trees
-
polarian
but making enemies with people is a bad way to find work too xDDDDDDD
-
bsdrobert
lol
-
wez
heh, I'll employ you polarian :P If I had any opened positions... and a business
-
polarian
wez: if only it was that easy xD
-
wez
:)
-
polarian
no shortage of non-profit work to do ;)
-
polarian
but you want food on the table? good luck! :p
-
wez
non-profit sure makes a lot of profit for the people up top
-
kevans
polarian: what do you consider your skill set?
-
polarian
kevans: breaking freebsd docs :p Jokes aside, im a rather useless junior in a market with very few junior positions. System administration, network, security and software in that order, the last I barely touched in the past 5 years. However it was a fun realisation when I realised the days of junior sysadmin positions are long over... did some contracting (mainly did networking though, got a
-
polarian
pfsense contract though which was a ton of fun!) and then back to being useless!
-
polarian
I should break a few more ports while I am at it too!
-
polarian
wez: hey still counts as experience! >:)
-
Macer
i was watching earth final conflict.. and after aliens come to earth.. humanity was doing video calls using.. mci
-
polarian
alright gn all!
-
polarian
dont let rs232 bite!
-
mewt
ok, I got it working
-
mewt
It needs static config with my eui64 as the IP. Somehow setting the default gateway in rc.conf didn't work, but seems to be working now without changing anything, so maybe I simply hallucinated one reboot/restart of netif
-
mewt
it first showed signs of life after setting the gateway directly with route. Still don't know why, but it's been good through multiple reboots now
-
xway
┌────────────────────────────────────────┐
-
xway
│ SYSTEM PROCESS CASUALTIES │
-
xway
├────────────────────────────────────────┤
-
xway
│ 💀 Killed (Zombies) : 0 │
-
xway
│ 🩹 Injured (Suspended) : 0 │
-
xway
│ 💔 Heart Broken (OOM/F) : 0 │
-
xway
└────────────────────────────────────────┘
-
xway
Press Ctrl+C to exit.
-
dkeav
wtf, i've done better in wolfenstein
-
dkeav
were you even trying
-
Reinhilde
xway, 1. please never post that again, 2. where did you get that?
-
Reinhilde
i'm impressed that something with emojis isn't f*cking up my terminal like it usually does
-
bsdrobert
i like it
-
angry_vincent
so, ports still has no updates. what kind of damage was done by that problematic commit? ( with big size blob )
-
polarian
angry_vincent: well rebuilding the entire port tree probably cost hefty amounts of cpu cycles :p
-
polarian
the port rebuild should be done now
-
kevans
angry_vincent: polarian: builds have been stopped to avoid putting out a pkg repo that will soon not be reproducible
-
polarian
kevans: what? elaborate? I don't understand
-
kevans
in progress builds would have started from commit hashes that are going away soon
-
nimaje
polarian: you have to only rebuild the commits since the problematic commit, not all commits and it shouldn't be that many commits since then, also recreating commits isn't that expensive, my guess is that planning how to do everything else is the time consuming part, like stopping building the packages
-
kevans
-
polarian
ohhhhhhhh
-
polarian
if you rebuild the hashes will change
-
polarian
I get it now!
-
polarian
I am curious about whats up with the fastly mirror though in #pkg
-
polarian
anyways thx kevans for the good explanation!
-
CrtxReavr
Reinhilde, it's all in the fonts you have supported in your terminal.
-
Reinhilde
CrtxReavr, I never asked about that. I was asking where that user received that ASCII art drawing.
-
CrtxReavr
Neither those emojis or the box characters are part of the ASCII character set.
-
CrtxReavr
s/or/nor
-
Reinhilde
"ASCII art" is commonly used to refer also to art that requires codepoints not part of ASCII. Perhaps "text art" might be better?
-
Reinhilde
But please, spare us your pedantry. Thank you.
-
CrtxReavr
No. . . I think that would be called ANSI Art.
-
Reinhilde
but it's not necessarily ANSI compliant either.
-
CrtxReavr
This page refers to ASCII as "Basic Latin.":
symbl.cc/en/unicode-table
-
CrtxReavr
Not the fastest loading site, but it does have a lot to load.
-
polarian
for fuck sake
-
polarian
serial geli decryption still wont pop up with uefi boot either
-
polarian
i swear this has been the biggest waste of time in my life
-
polarian
I honestly have no fucking clue what else to try
-
polarian
fuck it im just going to bugzilla it
-
polarian
fucked off about this
-
dnp1
polarian: submit after you cool off
-
kevans
polarian: did you try loader.env as I suggested?
-
polarian
kevans: heh, what was I meant to stick in there again :p
-
polarian
dnp1: dw im calm :p
-
kevans
polarian: boot_serial="YES"
-
kevans
maybe boot_multicons="YES" as well? I don't remember how the combinations work at the moment
-
polarian
isnt that just /etc/loader.conf?
-
polarian
sorry
-
polarian
s/loader/boot/
-
polarian
nooooo
-
polarian
s/etc/boot/
-
polarian
oh for fuck sake
-
polarian
holdddddd up
-
kevans
polarian: no, it's on the ESP.
-
kevans
the thing that you aren't trying to decrypt
-
polarian
I swear /boot is the ESP
-
polarian
s/swear/thought/
-
polarian
oh boy did my Arch Linux knowledge fuck me ;p
-
kevans
/boot/efi is where we mount the ESP these days
-
kevans
/boot is on your rootfs
-
polarian
yeah sorry I have been helping someone with arch linux too much recently
-
tsoome
no, if you have recent fbsd, then your esp is likely mounted in /boot/esp
-
polarian
I just instictively thought /boot would be the ESP
-
polarian
kevans: thanks
-
polarian
hmmm
-
polarian
so in theory how do you do bios boot if /boot is encrypted?
-
tsoome
then your stage2 will ask password
-
polarian
wait no because /boot contains the loader itself?
-
tsoome
(gptzfsboot/zfsboot/... whatever else is there)
-
polarian
and efi is empty
-
kevans
tsoome: stage2 can't do serial without access to /boot.config on the encrypted partition, afaict
-
polarian
oh wait wrong terminal
-
polarian
kevans: so can you stick it onto an unencrypted partition then?
-
polarian
surely theres a way to do this for bios boot too
-
polarian
welp explains the frustration, I had a fatal misunderstanding about what was encrypted and what wasn't
-
tsoome
see if /etc/fstab has entry for /boot/efi - if there is, mount it. if not, mount it manually by providing disk device too
-
polarian
kevans: wait how does bios boot work then
-
polarian
my laptop I am using right now for desktop uses bios booting with geli
-
tsoome
kevans yes, thats too, but at least it can use local console.
-
polarian
there wont be anything in /boot/efi
-
polarian
so how does it boot the loader if /boot is encrypted?
-
kevans
polarian: bios doesn't have equivalent to the ESP
-
polarian
I know
-
polarian
thats my point
-
kevans
that's why we just read /boot.config off of rootfs
-
polarian
sure.
-
polarian
but if /boot is encrypted like you said it was
-
kevans
this is why i told you the setup just cannot work
-
polarian
how does geli decrypt?
-
kevans
bios boot can tell the partition is encrypted and know to ask for the passphrase, just like uefi
-
polarian
but that requires the first stage still?
-
kevans
the first stages aren't in the rootfs
-
polarian
oh...
-
tsoome
first stage is in freebsd-boot ;)
-
polarian
cant you put a boot.config in there then? :p
-
polarian
oh wait there was a talk about this a while back I watched...
-
polarian
so /dev/ada0p1 is freebsd-boot, that contains the first stage correct?
-
tsoome
yes.
-
polarian
right so in theory, couldn't you embed a config into that :p
-
tsoome
what is your rootfs? ufs? zfs?
-
polarian
zfs
-
polarian
okay this makes sense now, I completely forgot about the freebsd-boot partition
-
tsoome
and partitioning is GPT?
-
polarian
yes
-
tsoome
so you use gptzfsboot for stage1
-
polarian
how do people learn all of this stuff, I always found low level a mystery :p
-
tsoome
by using one skill humans have;)
-
polarian
learning yeah I know
-
tsoome
reading;)
-
polarian
but I am convinced a lot of it comes from experience and tinkering
-
tsoome
ok lets see
-
polarian
also is there docs on freebsd.env
-
polarian
man doesn't have anything and I checked the serial page
-
polarian
hmmm so if I want to geli decrypt using freebsd-boot, I assume its theoretically possible to hard code the configs in?
-
polarian
(an issue for another day because I have a bios server I want to repeat this setup with :p)
-
tsoome
the problem with gptzfsboot is, the "console" is hardwired as common/cons.c:uint8_t ioctrl = IO_KEYBOARD; this can be overwritten, but to do that you either have to use config file - that wont work with encryption, or compile your own binary with default changed.
-
polarian
tsoome: for efi kevans said you can use loader.env but my issue is I can't find docs on this, and thats frustrating me :p
-
tsoome
loader.env is usable in UEFI, it is stored on ESP next to your loader.efi file
-
tsoome
it works because ESP is not encrypted.
-
kevans
pedantic, but specifically the /efi/freebsd one
-
polarian
how come theres no man page for loader.env?
-
tsoome
feel free to add it:) someone has to write it.
-
izder456
I will be acquiring a mid-2010 intel imac mini with a nvidia dgpu soon. Im thinking of setting up a debian linux jail on freebsd with it to host jellyfin. would i have any issues with using the nvidia gpu for the encoding the media? It would need the r304 nvidia driver cos the dgpu is quite old. Im trying to guage how well this setup will work so i can make plans accordingly.
-
polarian
tsoome: wait you wrote a thesis on bootloaders, no wonder you are so knowledgable. I was trying to find if you are a freebsd dev or not and I instead found the paper ;p
-
tsoome
ok, need to go afk for a bit. you can find reference about loader.env in stand/efi/loader/main.c
-
polarian
tsoome: thx
-
polarian
kevans: so you have been reading the srcs for this info then?
-
kevans
parts of it, but i also remember from when we added it
-
polarian
come to think about this, this would make a really cool talk!
-
polarian
everyone keeps asking "why dont you just use a kvm"
-
polarian
(friends that is)
-
polarian
and im like "but serial is cool :p"
-
polarian
im scrubbing through the src rn
-
polarian
wait isnt the loader meant to autodetect serial?
-
polarian
so VID_SER_BOTH will do both
-
tsoome
autodetect - sure. but if your system does not provide serial console redirection, then we have no way of knowing if it is meant to be used for console.
-
polarian
read_loader_env("LoaderEnv", "/efi/freebsd/loader.env", false);
-
tsoome
yes, thats the path from your esp
-
kevans
oh yes, sorry, I was wrong about the syntax
-
polarian
yes
-
polarian
thats what im figuring out rn
-
kevans
it should be the same as /boot.config
-
polarian
the sntax
-
polarian
and it was read_loader_env which I read actually worried about tsoome because I was finding where it was parsed to try to decypher the syntax
-
polarian
the option I want from the source is VID_SER_BOTH
-
polarian
case VID_SER_BOTH:
-
polarian
setenv("console", "efi,comconsole", 1);
-
polarian
^^^ thats why :)
-
kevans
I believe you want -hD
-
polarian
but wheres the actual syntax :)
-
polarian
reader_loader_env() passes it to parse_loader_efi_config()
-
polarian
wait no im wrong
-
polarian
efi_freebsd_getenv
-
polarian
but unfortunately my neovim config cant seem to find the definition of it...
-
polarian
kevans: where did you get that from? :p
-
kevans
./libefi/efienv.c:63:efi_freebsd_getenv(const char *v, void *data, size_t *len)
-
kevans
eventually the trail leads to sys/kern/subr_boot.c
-
polarian
ohhh thats why neovim cant find it, its because its launched within the loader dir
-
kevans
yes, we go everywhere :-)
-
polarian
xD
-
polarian
working configs also tend to help :p
-
polarian
gimme a sec while I figure out the src tree, not an osdev :p
-
polarian
nah my nvim dotfiles just dont work across files for some reason :p
-
polarian
hah
-
polarian
Now it makes more sense
-
Reinhilde
help i'm being serialized
-
polarian
RB_MULTIPLE is -D, and its - because of if (*v == '-') and then RB_SERIAL is -h so thats how you got -hD :D
-
polarian
kevans: thanks for nudging me until I figured it out :p
-
polarian
appreciated!
-
polarian
~and preventing an existential crisis in the process~ ;p
-
» kevans nods
-
kevans
i wish the answer wasn't "you have to use uefi for this setup," but alas- the ESP does simplify things
-
polarian
osdev really is a useful skill, which I should really learn :p
-
polarian
kevans: wellllll...
-
polarian
after this is done, im not giving up on bios :p
-
polarian
in theory I just need to hard code the stage-1 loader into multicons no?
-
kevans
yes
-
polarian
(whenever "in theory" is used, it always means "yes but not that simple")
-
polarian
question... why isn't boot_multicons default?
-
polarian
seems like a more sane default...
-
polarian
~especially when you cant configure it because of encryption~
-
kevans
iirc it's only semi-recent that earlier boot stages could do geli
-
polarian
ah... welp I guess the moral of the story is "Learn to hack src" :p
-
Reinhilde
src hacking is good
-
polarian
yeah not when you're an idiot (like me) :p
-
polarian
I did want a src patch by EBC 2026
-
polarian
it was this years goal... but yeah... too unrealistic imo
-
angry_vincent
ok, so it was yuripv who committed that github-copilot-cli
-
polarian
fuz offered to help but I just got caught up in other stuff
-
polarian
angry_vincent: and broke the port tree heh
-
polarian
I guess forgetting to check "git status" happens to the best of people then?
-
angry_vincent
i do remember he is adding quite complex code into port's Makefiles
-
angry_vincent
which looks like violation of port's phases
-
angry_vincent
but it is just an observation, i do not blame
-
angry_vincent
www/py-yt-dlp-ejs is an example
-
angry_vincent
in do-fetch phase
-
angry_vincent
ideally, do-fetch phase have to only "fetch"
-
angry_vincent
and not doing any npm and extracting
-
angry_vincent
there extract phase for extracting
-
polarian
watch this not work still :p
-
angry_vincent
so, his commit bit must be suspended and he learned to not do complex code in port's Makefiles. gentoo, for example has this sorted
-
tsoome
multicons is not default because of the zoo out there - one never knows which system will go bad on it.
-
wavefunction
lol I am reading the Github "managing large files" page
-
wavefunction
I can't stop laughing at how bad they are at this
-
kerneldove
what's the normal way to handle log data generated in a jail? like running nginx in a jail, do you put the nginx log in the jail or outside of it in the host?
-
mvanbaak
this very much depends on the setup. at home I have a simple setup and log inside the jail. but as soon as the logs are a bit more important I ship them to a central logging server
-
kerneldove
good call tyvm
-
mvanbaak
sure thing! good luck
-
dvl
kerneldove: I put the logs in the jail, then use syslog-ng on the host to send them to victoria-logs. Always, for me, logs generated in a jail are in the jail.
-
polarian
tsoome: do it for bios boot only then, most use EFI anyways :p
-
tsoome
I can not claim what most use:)
-
polarian
well if its not configurable it ought to be default IMO :p
-
polarian
orrrrr
-
polarian
hmmm...
-
tsoome
I see that you see;)
-
polarian
right now its hard coded
-
polarian
maybe a tool could be written to automate it
-
polarian
iirc settings can be overwriten by make
-
polarian
so a simple userspace tool could be written which takes in your disk eg: /dev/ada0 (or just ada0) and then builds the correct options you want for the freebsd-boot and then writes it to the partition for you?
-
polarian
and obviously when I suggest such a thing I suggest I should learn to be useful and do it myself xD
-
kevans
angry_vincent: yuripv did not, though
-
kevans
s/though/no/
-
polarian
I assume my idea was shit considering it was ignored :D
-
kerneldove
ok thx dvl i'm thinking the same
-
polarian
andddddddddddddddddddd
-
polarian
it still doesn't work
-
polarian
I added -hD to /boot/efi/efi/freebsd/loader.env
-
polarian
doesn't seem to have done anything
-
polarian
cat /boot/efi/efi/freebsd/loader.env
-
polarian
-hD
-
kevans
hmm
-
kevans
i bet we probe in `devinit()`, right before we parse args and read the environment
-
polarian
I dont know how to debug freebsd loader :/
-
kerneldove
im experimenting with packaging web services as jails. so let's say i need to get assets into a jail for the web service to serve out. but i don't wanna do 2 things: i don't wanna give every container its own public ip because that's a waste. and i don't want to use the jail host because i'm making jails as self-sufficient as possible
-
kerneldove
can i make it so you ssh/rsync into jail host's ip, but using a port that's mapped to the jail?
-
polarian
kerneldove: cant you just use vnet jails?
-
kerneldove
well the jails have vnet ya but so what's yor idea?
-
kerneldove
polarian
-
polarian
kerneldove: why not just sftp it in then?
-
polarian
where is this "asset" coming from?
-
kerneldove
sftp into them /how/? if they don't have their own ip
-
kerneldove
from my dev computer