01:18.52 | *** join/#ubuntu-utah linuxalien (n=linuxali@gateway.publicvpn.net) |
01:20.54 | linuxalien | Hi people |
01:20.59 | linuxalien | Work is boring. |
01:33.33 | linuxalien | stab it in the face! |
01:33.42 | linuxalien | Oops...sorry, I get like that after watching werewolf movies. |
01:33.46 | maquis | linuxalien: you any good with postfix? |
01:34.14 | linuxalien | Nopers. I won't be either if I keep using macs |
01:35.57 | maquis | what mail server to macs use? |
01:36.41 | linuxalien | Hmmm good question. I'm a client side person. Haven't messed with their servers yet. |
01:37.48 | maquis | ah |
01:44.10 | linuxalien | I'd be curious to pick up a book though. |
01:52.12 | maquis | i'm trying to manage my own web/mail/sql server |
01:52.17 | maquis | and it's gettng to be a pain |
01:52.23 | maquis | particularly since i'm a student |
01:52.23 | maquis | :) |
01:53.38 | maquis | it ends up in the "go here if you need an excuse for procrastinating" pile |
01:53.40 | linuxalien | Oh that bite.s Good luk |
01:53.47 | maquis | thx :) |
01:54.04 | maquis | less than a month until i can get out of the student position |
01:59.41 | linuxalien | You're welcome. |
02:14.33 | maquis | for future reference |
02:14.55 | maquis | while debian wants the aliases file in /etc/aliases, centos expects it in /etc/postfix/aliases |
02:15.18 | linuxalien | Wow, interesting. |
02:15.29 | linuxalien | I need to keep reading up on the linux stuff |
02:15.56 | maquis | what parts do you need to read up on? |
02:19.16 | maquis | linuxalien: if you decide to start setting up some server stuff, i do not exceptionally recommend changing what distro your server is on too often |
02:19.21 | maquis | it's great for learning, but quite frustrating |
02:19.48 | linuxalien | Yeah, true... I'd want to stick with ubuntu maybe |
02:21.28 | linuxalien | I gotta get it running in Virtual PC |
02:21.28 | maquis | or... |
02:21.32 | maquis | maybe it needs it in both places |
02:21.33 | linuxalien | I'll find a FAQ on that |
02:21.36 | maquis | now *that* is weird |
02:22.10 | linuxalien | Yeah, true. Both places would be kinda strange but may be an attempt to stay compatible or something. |
02:22.12 | linuxalien | Not sure |
02:22.22 | maquis | yeah |
02:22.26 | maquis | i'm just linking them |
02:22.33 | linuxalien | Cool |
02:23.08 | maquis | doh |
02:24.40 | maquis | i broke something again |
02:27.36 | linuxalien | That's computers for ya |
02:27.45 | maquis | i fixed it again |
02:27.54 | linuxalien | hehehe |
02:27.58 | maquis | (this is the story of my life with computers, it seems like) |
02:30.25 | linuxalien | Yeah, same here |
02:30.58 | maquis | hmmm |
02:31.06 | maquis | i don't think i can change my preferences for uug email... |
02:31.39 | linuxalien | Bummer. How come/ |
02:31.41 | linuxalien | ? |
02:32.15 | maquis | because the uug website/server/whatever is currently held together with bubble-gum |
02:32.24 | maquis | and it's not even sticky bubble-gum |
02:32.32 | maquis | and there's not even string or floss with it |
02:33.19 | linuxalien | Wow, nice. They should fix it. :P |
02:33.34 | maquis | yeah |
02:36.45 | linuxalien | Run it on a mac-mini |
02:36.48 | linuxalien | ;) |
02:36.51 | maquis | lol |
02:37.03 | maquis | if you want to provide the machine, i'm sure nobody would complain |
02:37.08 | linuxalien | I bet in some cases, a mac-mini would make a good server |
02:37.09 | maquis | i think we're running on the last machine that was donated |
02:37.20 | linuxalien | Hey, if I had the money I'd get an old G4 mac mini for you guys |
02:37.22 | maquis | a mac mini would be a *ton* nicer than the current machine |
02:37.44 | maquis | aside from the fact that our current machine has 3 or 4 hard drives smashed in it |
02:37.47 | maquis | 3 |
02:37.47 | maquis | because we had 4 |
02:37.54 | maquis | and then we let the magic smoke out of 1 |
02:38.10 | maquis | it's an ancient machine, though |
02:38.39 | maquis | which explains why, during the elections over a yea ago, it got accidentally DDOSd |
02:38.58 | maquis | (it's bad when 2 or 3 people running scripts can accidentally DDOS a machine) |
02:39.24 | maquis | ooh... |
02:39.40 | maquis | i think if i try to go around the back way, i might be able to get into the mailing list stuff on the server |
02:39.51 | maquis | if worst comes to worst, i don't think they've changed the root password |
02:43.14 | maquis | erm... |
02:43.16 | maquis | this sucks |
02:45.48 | linuxalien | Yeah, getting DDoS'ed sucks |
02:46.56 | maquis | actually... that was somewhatfunny :) |
02:48.42 | linuxalien | hehehe Well, I'd be kinda mad at the peeps that did that |
02:48.52 | maquis | nah |
02:48.58 | maquis | it was the people running for office |
02:49.04 | maquis | during the elections |
02:49.06 | linuxalien | Oh nice. hehehe |
02:49.10 | maquis | ddos'ing the machines with scripts |
02:49.15 | maquis | voting scripts.. |
02:49.16 | maquis | :) |
02:49.22 | linuxalien | Oh nice haha |
02:49.44 | maquis | democracy |
02:54.03 | linuxalien | Yeah hehehe |
02:54.31 | maquis | :) |
02:54.35 | maquis | it was april fools day :) |
02:56.15 | *** join/#ubuntu-utah synic_ (n=squish@66.236.72.104.ptr.us.xo.net) |
02:58.20 | maquis | uug elections are always fun |
02:58.41 | maquis | they happen on or around april fools day, which allows for some fun pranks |
02:58.51 | maquis | etc |
03:15.01 | linuxalien | hehehehe |
03:15.06 | linuxalien | Cool |
03:50.01 | *** join/#ubuntu-utah Kuyaedz (n=Kuyaedz@kuyaedz.fttp.xmission.com) |
03:50.26 | Kuyaedz | I think we should bomb Turkey |
03:56.23 | linuxalien | Sounds fun |
03:56.49 | Kuyaedz | Just got hit from Turkey again |
03:56.58 | linuxalien | Oh great |
03:57.01 | linuxalien | on ubuntu? |
03:57.11 | linuxalien | Those turkish hackers are annoying |
03:57.22 | Kuyaedz | its an ubuntu web server but its a vhcs flaw.. distro-unrelated. |
03:57.50 | Kuyaedz | I've spent the last little while tracking more Turkish IP ranges so I can block them all. |
03:58.01 | linuxalien | That sucks |
03:58.08 | linuxalien | I'm off work. Talk to you when I get home. |
03:58.58 | Kuyaedz | later |
03:59.04 | linuxalien | later |
04:15.21 | *** join/#ubuntu-utah herlo (n=herlo@12.184.89.194) |
04:15.28 | Kuyaedz | hey hey |
04:15.34 | herlo | hola |
04:15.50 | herlo | been at Knott's Berry Farm all day with my son! |
04:15.50 | Kuyaedz | herlo: any good with iptables? |
04:16.00 | herlo | I can probably help, what's up? |
04:16.34 | Kuyaedz | I got hit from Turkey again on my webserver (vhcs vulnerability). I found a blacklist generator at http://blacklist.linuxadmin.org |
04:16.46 | herlo | okay |
04:16.56 | Kuyaedz | ...but this blacklists based on port. I'm trying to remember the right syntax for just block-all, not just per port. |
04:17.08 | herlo | just drop the port specification |
04:17.13 | herlo | so something like this |
04:17.29 | Kuyaedz | iptables -A INPUT -t filter -s ip.address -j DROP ? |
04:17.46 | herlo | iptables -A INPUT -s 170.44.98.0/24 -j DROP |
04:17.54 | herlo | yeah, something like that |
04:17.59 | herlo | filter is default table |
04:18.18 | Kuyaedz | so I don't need filter? |
04:18.23 | herlo | you can block entire ip ranges by using CIDR notation |
04:18.40 | herlo | no, you don't if that's your intent, there's also nat and mangle tables |
04:19.36 | Kuyaedz | I've been using 'iptables -A INPUT -t filter -s $x -j DROP' where $x = IP/range |
04:19.53 | Kuyaedz | ..just wanted a second pair of eyes to see if that was right. |
04:19.59 | herlo | yep, looks fine |
04:20.30 | herlo | I really can't believe I am able to pull that stuff right from my head so easily |
04:20.33 | Kuyaedz | Looks like I only had originally blacklisted one of the many Turkey based subnets. Hopefully this takes care of the rest. |
04:20.57 | herlo | you could block an entire class B network with /16 |
04:23.13 | herlo | also iptables does support VLSN as well, so if you don't know the exact CIDR notation, you could use /255.255.255.0 for example |
04:39.13 | Kuyaedz | I am tempted to block some of these other countries too.. just for good measure |
04:39.35 | Kuyaedz | doubt I need/want much traffic from places like Korea, Taiwan & Russia |
04:40.18 | herlo | you sure? |
04:40.40 | Kuyaedz | no, just paranoid at this point |
04:40.59 | herlo | yeah, you know how to test it right? |
04:41.25 | Kuyaedz | can't think right now.. tell me |
04:41.56 | herlo | just modify the ip address to match something you own, test that range |
04:42.06 | herlo | test the limits especially |
04:42.26 | herlo | like if its a /25 bit mask, make sure to check 1 - 128 |
04:44.10 | Kuyaedz | ..right |
04:44.16 | Kuyaedz | man I'm tired now |
04:46.36 | herlo | how come? |
04:46.43 | herlo | it's only 10:45 |
04:47.11 | Kuyaedz | just been working on sites & now this server issue all day |
04:47.17 | Kuyaedz | just kind of worn out mentally |
04:48.14 | herlo | yeah, understandable |
04:50.00 | Kuyaedz | I'm going to wrap it up tonite. Thanks for the tips |
04:50.00 | Kuyaedz | ttyl |
04:50.06 | herlo | gnight |
04:51.31 | *** join/#ubuntu-utah linuxalien (n=linuxali@c-24-2-85-20.hsd1.ut.comcast.net) |
05:04.51 | linuxalien | Hi people |
05:55.08 | *** part/#ubuntu-utah linuxalien (n=linuxali@c-24-2-85-20.hsd1.ut.comcast.net) |
10:59.51 | Dapper606 | If people from Poland are called Poles, why aren't people from Holland called Holes? |
12:23.50 | *** join/#ubuntu-utah linuxalien (n=linuxali@gateway.publicvpn.net) |
15:10.46 | atoponce | !uptime |
15:10.47 | Dapper606 | Dapper606 has been up for: 2 week(s) 3 day(s) 0 hour(s) 38 minute(s) 17 second(s). |
15:10.52 | atoponce | ?? Dapper606 |
15:10.54 | Dapper606 | dapper606[1]: Ubuntu-Utah bot for maintaining tasks in the channel |
15:10.56 | Dapper606 | dapper606[2]: See my position in the Egghead contest: http://uptime.eggheads.org/?botnick=dapper606 |
15:27.49 | atoponce | Dapper606: it's time to reboot |
15:31.03 | Dapper606 | I seem to be experiencing technical difficulties. Tell Pistos, or complain in http://purepistos.net/forums . |
15:36.18 | *** join/#ubuntu-utah Dapper606 (n=atoponce@c-24-2-85-66.hsd1.ut.comcast.net) |
15:37.38 | *** join/#ubuntu-utah atoponce (n=aaron@c-24-2-85-66.hsd1.ut.comcast.net) |
15:39.41 | *** mode/#ubuntu-utah [+o atoponce] by ChanServ |
15:40.15 | *** mode/#ubuntu-utah [+o Dapper606] by atoponce |
16:29.16 | *** join/#ubuntu-utah herlo (n=herlo@12.184.89.194) |
17:27.14 | *** join/#ubuntu-utah TacoJockey (n=linuxali@gateway.publicvpn.net) |
19:42.42 | *** join/#ubuntu-utah linuxalien (n=linuxali@gateway.publicvpn.net) |
19:45.40 | linuxalien | Hi beefers! |
21:18.38 | herlo | atoponce: September has 3 e's, you're post is missing one |
21:30.23 | atoponce | i need to take advantage of the spell checking that google toolbar provides |
21:31.12 | atoponce | thx |
21:39.56 | herlo | yeah, I understand the desire, btw, flock has built in blog posting, and I think it does spell checking too |
22:07.13 | *** join/#ubuntu-utah Kuyaedz (n=Kuyaedz@kuyaedz.fttp.xmission.com) |