mastodontech.de ist einer von vielen unabhängigen Mastodon-Servern, mit dem du dich im Fediverse beteiligen kannst.
Offen für alle (über 16) und bereitgestellt von Markus'Blog

Serverstatistik:

1,4 Tsd.
aktive Profile

#sysadminproblems

0 Beiträge0 Beteiligte0 Beiträge heute
IBBoard<p>From a user agent: "In_the_test_phase,_if_the_Thinkbot_brings_you_trouble,_please_block_its_IP_address._Thank_you."</p><p>How about you DON'T WRITE A FUCKING SHITTY SCRAPER THAT ABUSES WEBSITES AND THEN RUN IT FROM DOZENS OF IP ADDRESSES 😒</p><p><a href="https://hachyderm.io/tags/SysAdminProblems" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SysAdminProblems</span></a> <a href="https://hachyderm.io/tags/Scrapers" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Scrapers</span></a> <a href="https://hachyderm.io/tags/Bots" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Bots</span></a></p>
IBBoard<p>Me: I should find a way to migrate products from WooCommerce to LiteCart for my wife. I'm sure there's a sensible database structure.</p><p>WooCommerce: Fuck, no! We're a Wordpress plugin! We're a bastardised mess of code that shoe-horns EVERYTHING into being a 'post'. Even in the "new" system! 🙃</p><p><a href="https://hachyderm.io/tags/Wordpress" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Wordpress</span></a> <a href="https://hachyderm.io/tags/SysAdminProblems" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SysAdminProblems</span></a> 😐</p>
The Fury 🐧💻❗️🔥:verified:<p>I'm starting to think <a href="https://infosec.exchange/tags/redhatsatellite" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>redhatsatellite</span></a> doesn't *actually* sync packages unless you refresh the manifest first. <a href="https://infosec.exchange/tags/redhat" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>redhat</span></a> <a href="https://infosec.exchange/tags/rhel" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>rhel</span></a> <a href="https://infosec.exchange/tags/sysadmin" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>sysadmin</span></a> <a href="https://infosec.exchange/tags/linux" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>linux</span></a> <a href="https://infosec.exchange/tags/sysadminproblems" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>sysadminproblems</span></a> <a href="https://infosec.exchange/tags/sysadminlife" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>sysadminlife</span></a></p>
Kevin Karhan :verified:<p>The whole <a href="https://infosec.space/tags/AI" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>AI</span></a> <a href="https://infosec.space/tags/Enshittification" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Enshittification</span></a> <a href="https://infosec.space/tags/shitshow" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>shitshow</span></a> is so bad, at work entire address blocks as big as /12 have to be blocklisted because they basically <a href="https://infosec.space/tags/DDoS" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>DDoS</span></a> clients unless we'd want to bankrupt customers for <a href="https://infosec.space/tags/bezos" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>bezos</span></a>' <a href="https://infosec.space/tags/scraper" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>scraper</span></a> <a href="https://infosec.space/tags/bots" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>bots</span></a>! </p><ul><li>If it was my decision the entire <a href="https://infosec.space/tags/aws" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>aws</span></a> <a href="https://infosec.space/tags/ASN16509" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ASN16509</span></a> would've been blocked!</li></ul><p><a href="https://infosec.space/tags/Sysadmin" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Sysadmin</span></a> <a href="https://infosec.space/tags/SysadminProblems" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SysadminProblems</span></a> <a href="https://infosec.space/tags/Amazon" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Amazon</span></a> <a href="https://infosec.space/tags/ITsec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ITsec</span></a> <a href="https://infosec.space/tags/InfoSec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>InfoSec</span></a> <a href="https://infosec.space/tags/ComSec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ComSec</span></a> <a href="https://infosec.space/tags/OpSec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>OpSec</span></a> <a href="https://infosec.space/tags/Tech" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Tech</span></a> <a href="https://infosec.space/tags/GAFAMs" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>GAFAMs</span></a> <a href="https://infosec.space/tags/AllGafamsAreEvil" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>AllGafamsAreEvil</span></a> <a href="https://infosec.space/tags/AllGafamsAreBad" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>AllGafamsAreBad</span></a></p>
IBBoard<p>`apt update` - "2 packages can be upgraded. Run 'apt list --upgradable' to see them."<br>`apt list --upgradable` - "Here are the two packages"<br>`apt upgrade` - "Nothing to install. Two packages are held back because of phasing"</p><p>That's awesome, Ubuntu. Top class information as ever. You're a real production-ready distro with these deb packages 😐</p><p>They could at least have a "list without phased" option 🙄</p><p><a href="https://hachyderm.io/tags/Ubuntu" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Ubuntu</span></a> <a href="https://hachyderm.io/tags/SysAdminProblems" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SysAdminProblems</span></a> <a href="https://hachyderm.io/tags/Linux" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Linux</span></a></p>
The Fury 🐧💻❗️🔥:verified:<p>Boy, the systems I patched today are having a harder time waking up after a reboot than me this morning. <a href="https://infosec.exchange/tags/patching" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>patching</span></a> <a href="https://infosec.exchange/tags/rhel" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>rhel</span></a> <a href="https://infosec.exchange/tags/redhat" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>redhat</span></a> <a href="https://infosec.exchange/tags/linux" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>linux</span></a> <a href="https://infosec.exchange/tags/admin" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>admin</span></a> <a href="https://infosec.exchange/tags/linuxadmin" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>linuxadmin</span></a> <a href="https://infosec.exchange/tags/unixadmin" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>unixadmin</span></a> <a href="https://infosec.exchange/tags/sysadmin" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>sysadmin</span></a> <a href="https://infosec.exchange/tags/sysadminproblems" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>sysadminproblems</span></a> <a href="https://infosec.exchange/tags/sysadminlife" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>sysadminlife</span></a></p>
argv minus one<p>Pulled my hair out trying to figure out why the hell <a href="https://mastodon.sdf.org/tags/Thunderbird" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Thunderbird</span></a> could only see ~2000 out of the total ~16000 messages in a folder in an <a href="https://mastodon.sdf.org/tags/IMAP" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>IMAP</span></a> account I just configured.</p><p>It would briefly flash “16000 messages” and then show “2000 messages”.</p><p>Eventually I figured out that it's because, on the server side, most of those email files (Maildir++ format) had the wrong owner, so <a href="https://mastodon.sdf.org/tags/Dovecot" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Dovecot</span></a> couldn't read them.</p><p>🤦‍♂️ Yep, that'll do it. One `chown -R` later, emails are pouring in.</p><p><a href="https://mastodon.sdf.org/tags/SysadminProblems" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SysadminProblems</span></a></p>
argv minus one<p>Downside of <a href="https://mastodon.sdf.org/tags/laptops" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>laptops</span></a> not having a built-in <a href="https://mastodon.sdf.org/tags/Ethernet" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Ethernet</span></a> port any more: it can use a USB adapter for wired <a href="https://mastodon.sdf.org/tags/networking" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>networking</span></a>, but then I can't assign it a static <a href="https://mastodon.sdf.org/tags/IP" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>IP</span></a> <a href="https://mastodon.sdf.org/tags/IPaddress" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>IPaddress</span></a> based on its MAC address on the <a href="https://mastodon.sdf.org/tags/DHCP" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>DHCP</span></a> server. 😭 <a href="https://mastodon.sdf.org/tags/SysadminProblems" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SysadminProblems</span></a></p>
IBBoard<p>Apparently there aren't any active Puppet modules for dealing with DKIM or DMARC. No releases in a year or more, and no compatibility with Puppet 8 😕</p><p><a href="https://hachyderm.io/tags/SysAdminProblems" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SysAdminProblems</span></a> <a href="https://hachyderm.io/tags/Puppet" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Puppet</span></a></p>
IBBoard<p>I really wish there was a (simple) way to drop specific IPv4 ranges on an IPv6 server that's receiving connections via a reverse proxy.</p><p>There's some Alibaba hosts HAMMERING my server (at least compared to everyone else!). I can block them in Apache, but that still logs the connection. But I don't want them to get that far.</p><p>But I can't firewall them because the firewall rules just see the reverse proxy 😞</p><p><a href="https://hachyderm.io/tags/SysAdminProblems" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SysAdminProblems</span></a></p>
The Fury 🐧💻❗️🔥:verified:<p>Red Hat Satellite is still trash. That is all. <a href="https://infosec.exchange/tags/monday" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>monday</span></a> <a href="https://infosec.exchange/tags/sysadmin" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>sysadmin</span></a> <a href="https://infosec.exchange/tags/sysadminproblems" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>sysadminproblems</span></a> <a href="https://infosec.exchange/tags/sysadminlife" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>sysadminlife</span></a> <a href="https://infosec.exchange/tags/redhat" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>redhat</span></a> <a href="https://infosec.exchange/tags/linux" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>linux</span></a> <a href="https://infosec.exchange/tags/rhel" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>rhel</span></a> <a href="https://infosec.exchange/tags/redhatsatellite" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>redhatsatellite</span></a></p>
IBBoard<p>Testing some updated SpamAssassin rules. "RCVD_IN_VALIDITY_CERTIFIED" is matching _but_ `spamassassin -t` also prints "Excessive Number of Queries". So it's possible that it's misinterpreting a response 🤔</p><p><a href="https://hachyderm.io/tags/SpamAssassin" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SpamAssassin</span></a> <a href="https://hachyderm.io/tags/SysAdminProblems" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SysAdminProblems</span></a></p>
fasel<p><a href="https://ohai.social/tags/debian" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>debian</span></a> <a href="https://ohai.social/tags/sysadminproblems" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>sysadminproblems</span></a></p>
Carsten<p>WTF! 🤯 Nach knapp 2 Stunden Rumfummeln musste ich feststellen, dass ein einfacher Neustart des Docker Service auf dem Host die neue DNS-Konfiguration übernommen hätte! 😤 Jetzt hat der nginxpm endlich Internet und kann erfolgreich Let's Encrypt Zertifikate anfordern. MEINE FRESSE! <a href="https://nrw.social/tags/SysAdminProblems" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SysAdminProblems</span></a> <a href="https://nrw.social/tags/Docker" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Docker</span></a> <a href="https://nrw.social/tags/DevOps" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>DevOps</span></a></p>
IBBoard<p>"Can't connect to socket [127.0.0.1]:10025 using module IO::Socket::IP"</p><p>That would be because you're on an IPv6 server and it's listening on ::1, like it says in your config 🧐</p><p><a href="https://hachyderm.io/tags/SysAdminProblems" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SysAdminProblems</span></a></p>
The Fury 🐧💻❗️🔥:verified:<p>So, almost three and a half hours later, <a href="https://infosec.exchange/tags/patching" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>patching</span></a> was finished. Normally, it should take one to one and a half hours, but a lot of little things came up. Nothing I haven't dealt with before.</p><p>One system had its RPM broken by our automation (again). So, I had to rebuild it. While reviewing the updates on each system, I noticed a conf file on a system that created a new one. I ran a diff on it and the original but it didn't seem like it was anything serious, so I didn't merge it and figured I could table it until we're all back on Wednesday and I could talk to the <a href="https://infosec.exchange/tags/SME" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SME</span></a> about it. </p><p>After the patching was done, several production sites wouldn't come up. I knew it was a race condition that happens sometimes that causes webserver service to go down. I just couldn't remember which server hosted the services. Luckily, a coworker was online and remembered which one it was. All the necessary services got restarted, and everything worked again.</p><p>So at least now I don't have to cover the two hours not covered by tomorrow and Tuesday's holiday hours (I work 9 hours most days), plus I get almost an hour and a half to leave early sometime this or next week!</p><p><a href="https://infosec.exchange/tags/sysadmin" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>sysadmin</span></a> <a href="https://infosec.exchange/tags/sysadminproblems" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>sysadminproblems</span></a> <a href="https://infosec.exchange/tags/sysadminlife" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>sysadminlife</span></a> <a href="https://infosec.exchange/tags/linux" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>linux</span></a> <a href="https://infosec.exchange/tags/rhel" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>rhel</span></a> <a href="https://infosec.exchange/tags/redhat" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>redhat</span></a> <a href="https://infosec.exchange/tags/linuxadmin" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>linuxadmin</span></a></p>
The Fury 🐧💻❗️🔥:verified:<p>Production patching is really going slow today. <a href="https://infosec.exchange/tags/sysadmin" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>sysadmin</span></a> <a href="https://infosec.exchange/tags/sysadminproblems" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>sysadminproblems</span></a> <a href="https://infosec.exchange/tags/sysadminlife" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>sysadminlife</span></a> <a href="https://infosec.exchange/tags/unix" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>unix</span></a> <a href="https://infosec.exchange/tags/linux" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>linux</span></a> <a href="https://infosec.exchange/tags/unixadmin" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>unixadmin</span></a> <a href="https://infosec.exchange/tags/linuxadmin" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>linuxadmin</span></a> <a href="https://infosec.exchange/tags/RHEL" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>RHEL</span></a> <a href="https://infosec.exchange/tags/redhat" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>redhat</span></a></p>