DuckCorp Projects: Issues
https://projects.duckcorp.org/
https://projects.duckcorp.org/favicon.ico?1669909042
2022-08-28T14:08:34Z
DuckCorp Projects
Redmine
DuckCorp Infrastructure - Bug #779 (Resolved): Upgrade NextCloud (from 23.0.8 to 24.0.4)
https://projects.duckcorp.org/issues/779
2022-08-28T14:08:34Z
Pierre-Louis Bonicoli
pierre-louis.bonicoli@ir5.eu
<p>Upgrade instructions: <code>toushirou</code>@<code>/srv/www/sites/stuff.milkypond.org/README.Duck</code>.</p>
<pre>
2022-08-28T15:34:59+00:00 Disabled incompatible app: breezedark
2022-08-28T15:34:59+00:00 Disabled incompatible app: end_to_end_encryption
2022-08-28T15:34:59+00:00 Disabled incompatible app: epubreader
2022-08-28T15:34:59+00:00 Disabled incompatible app: spreed
2022-08-28T15:34:59+00:00 Disabled incompatible app: twofactor_admin
2022-08-28T15:34:59+00:00 Disabled incompatible app: weather
</pre>
Supported apps:
<ul>
<li><a href="https://apps.nextcloud.com/apps/end_to_end_encryption" class="external">end_to_end_encryption</a></li>
<li><a href="https://apps.nextcloud.com/apps/breezedark" class="external">breezedark</a></li>
<li><a href="https://apps.nextcloud.com/apps/spreed" class="external">spreed</a></li>
</ul>
Unsupported/Unmaintained apps:
<ul>
<li>weather (disabled): <a class="external" href="https://github.com/nextcloud/weather/issues/102">https://github.com/nextcloud/weather/issues/102</a></li>
<li>twofactor_admin (enabled but the <code>occ</code> command <code> twofactorauth:admin:generate-code</code> doesn't appears ?): <a class="external" href="https://github.com/ChristophWurst/twofactor_admin/issues/229">https://github.com/ChristophWurst/twofactor_admin/issues/229</a></li>
</ul>
Patch applied:
<ul>
<li>epubreader: <a class="external" href="https://github.com/e-alfred/epubreader/issues/44">https://github.com/e-alfred/epubreader/issues/44</a> (patch attached)</li>
</ul>
DuckCorp Infrastructure - Bug #778 (Resolved): Upgrade NextCloud (from 23.0.7 to 23.0.8)
https://projects.duckcorp.org/issues/778
2022-08-28T12:36:32Z
Pierre-Louis Bonicoli
pierre-louis.bonicoli@ir5.eu
<p>Upgrade instructions: <code>toushirou</code>@<code>/srv/www/sites/stuff.milkypond.org/README.Duck</code>.</p>
DuckCorp Infrastructure - Bug #746 (Rejected): unexpected restart of Toushirou host
https://projects.duckcorp.org/issues/746
2021-12-13T14:16:57Z
Pierre-Louis Bonicoli
pierre-louis.bonicoli@ir5.eu
<p>Today Toushirou was restarted unexpectedly. It seems that this restart wasn't due a command.</p>
<p>The server was restarted after <code>Dec 13 10:07:03</code> (UTC+1). I unlocked the encrypted encryption around 13h15 (UTC+1).</p>
<p><code>syslog</code> contains:<br /><pre>
Dec 13 10:06:52 Toushirou postfix/smtpd[1353160]: disconnect from <redacted> ehlo=2 starttls=1 mail=1 rcpt=1 bdat=1 quit=1 commands=7
Dec 13 10:07:03 Toushirou stunnel: LOG5[8632]: Connection closed: 182 byte(s) sent to TLS, 20 byte(s) sent to socket
@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@
[...]
@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@^@
Dec 13 13:18:38 Toushirou systemd-udevd[631]: Using default interface naming scheme 'v247'.
Dec 13 13:18:38 Toushirou systemd-udevd[630]: Using default interface naming scheme 'v247'.
Dec 13 13:18:38 Toushirou lvm[578]: 3 logical volume(s) in volume group "extra" monitored
</pre></p>
<p>The filesystem journals were recovered:<br /><pre>
Dec 13 13:18:38 Toushirou systemd-fsck[791]: /dev/md0 was not cleanly unmounted, check forced.
Dec 13 13:18:38 Toushirou systemd-fsck[790]: /dev/mapper/main-ldap: recovering journal
Dec 13 13:18:38 Toushirou systemd-fsck[790]: /dev/mapper/main-ldap: clean, 14/23616 files, 9468/94208 blocks
Dec 13 13:18:38 Toushirou systemd[1]: Finished File System Check on /dev/mapper/main-ldap.
Dec 13 13:18:38 Toushirou systemd-fsck[787]: /dev/mapper/main-ftp: recovering journal
Dec 13 13:18:38 Toushirou systemd-fsck[787]: /dev/mapper/main-ftp: clean, 1042/1966080 files, 4094072/7864320 blocks
Dec 13 13:18:38 Toushirou systemd[1]: Finished File System Check on /dev/mapper/main-ftp.
Dec 13 13:18:38 Toushirou systemd-fsck[794]: /dev/mapper/main-logs: recovering journal
Dec 13 13:18:38 Toushirou systemd-fsck[794]: /dev/mapper/main-logs: Clearing orphaned inode 524490 (uid=0, gid=4, mode=0100640, size=186)
Dec 13 13:18:38 Toushirou systemd-fsck[794]: /dev/mapper/main-logs: Clearing orphaned inode 525136 (uid=0, gid=4, mode=0100640, size=2261619)
[...]
Dec 13 13:18:38 Toushirou systemd-fsck[794]: /dev/mapper/main-logs: clean, 3025/915712 files, 701679/3661824 blocks
Dec 13 13:18:38 Toushirou systemd[1]: Finished File System Check on /dev/mapper/main-logs.
Dec 13 13:18:38 Toushirou systemd-fsck[797]: /dev/mapper/main-mysql: recovering journal
Dec 13 13:18:38 Toushirou systemd-fsck[797]: /dev/mapper/main-mysql: clean, 1706/305216 files, 302945/1220608 blocks
Dec 13 13:18:38 Toushirou systemd[1]: Finished File System Check on /dev/mapper/main-mysql.
Dec 13 13:18:38 Toushirou systemd-fsck[801]: /dev/mapper/main-projects: recovering journal
Dec 13 13:18:38 Toushirou systemd-fsck[801]: /dev/mapper/main-projects: clean, 15384/977280 files, 2501362/3932160 blocks
Dec 13 13:18:38 Toushirou systemd[1]: Finished File System Check on /dev/mapper/main-projects.
Dec 13 13:18:38 Toushirou systemd-fsck[805]: /dev/mapper/main-stuffcloud: recovering journal
Dec 13 13:18:38 Toushirou systemd-fsck[805]: /dev/mapper/main-stuffcloud: clean, 184647/8519680 files, 22560629/34078720 blocks
Dec 13 13:18:38 Toushirou systemd[1]: Finished File System Check on /dev/mapper/main-stuffcloud.
Dec 13 13:18:38 Toushirou systemd-fsck[810]: /dev/mapper/main-var: recovering journal
Dec 13 13:18:38 Toushirou systemd-fsck[810]: /dev/mapper/main-var: Clearing orphaned inode 136445 (uid=0, gid=0, mode=0100664, size=11567160)
Dec 13 13:18:38 Toushirou systemd-fsck[810]: /dev/mapper/main-var: Clearing orphaned inode 136045 (uid=0, gid=0, mode=0100664, size=9253600)
[...]
Dec 13 13:18:38 Toushirou systemd-fsck[810]: /dev/mapper/main-var: clean, 43941/305216 files, 677459/1220608 blocks
Dec 13 13:18:38 Toushirou systemd[1]: Finished File System Check on /dev/mapper/main-var.
Dec 13 13:18:38 Toushirou systemd-fsck[811]: /dev/mapper/main-tmp: recovering journal
Dec 13 13:18:38 Toushirou systemd-fsck[811]: /dev/mapper/main-tmp: Clearing orphaned inode 20 (uid=0, gid=0, mode=0100666, size=0)
Dec 13 13:18:38 Toushirou systemd-fsck[811]: /dev/mapper/main-tmp: Clearing orphaned inode 50 (uid=128, gid=136, mode=0100600, size=0)
[...]
Dec 13 13:18:38 Toushirou systemd-fsck[811]: /dev/mapper/main-tmp: clean, 3380/121920 files, 20791/487424 blocks
Dec 13 13:18:38 Toushirou systemd[1]: Finished File System Check on /dev/mapper/main-tmp.
Dec 13 13:18:38 Toushirou systemd-fsck[814]: /dev/mapper/main-vcs: recovering journal
Dec 13 13:18:38 Toushirou systemd-fsck[814]: /dev/mapper/main-vcs: clean, 62639/183264 files, 334140/732160 blocks
Dec 13 13:18:38 Toushirou systemd[1]: Finished File System Check on /dev/mapper/main-vcs.
Dec 13 13:18:38 Toushirou systemd-fsck[817]: /dev/mapper/main-vmail: recovering journal
Dec 13 13:18:38 Toushirou systemd-fsck[817]: /dev/mapper/main-vmail: Clearing orphaned inode 1314229 (uid=5111, gid=5111, mode=0100600, size=2543956)
[...]
Dec 13 13:18:38 Toushirou systemd-fsck[817]: /dev/mapper/main-vmail: clean, 38189/1966080 files, 3862291/7864320 blocks
Dec 13 13:18:38 Toushirou systemd[1]: Finished File System Check on /dev/mapper/main-vmail.
Dec 13 13:18:38 Toushirou systemd[1]: Finished File System Check on /dev/mapper/extra-lxd.
Dec 13 13:18:38 Toushirou systemd-fsck[827]: /dev/mapper/extra-home: recovering journal
Dec 13 13:18:38 Toushirou systemd-fsck[827]: /dev/mapper/extra-home: clean, 576437/19660800 files, 60022856/78643200 blocks
Dec 13 13:18:38 Toushirou systemd[1]: Finished File System Check on /dev/mapper/extra-home.
Dec 13 13:18:38 Toushirou systemd-fsck[791]: /dev/md0: 348/64000 files (23.9% non-contiguous), 63264/255936 blocks
Dec 13 13:18:38 Toushirou systemd-fsck[819]: /dev/mapper/main-www: recovering journal
Dec 13 13:18:38 Toushirou systemd-fsck[819]: /dev/mapper/main-www: clean, 417149/9175040 files, 7579187/36700160 blocks
Dec 13 13:18:38 Toushirou systemd[1]: Finished File System Check on /dev/mapper/main-www.
</pre></p>
<p>Thanks to GuiHome and Victor for letting me know that the NextCloud service was unavailable.</p>
<p>Once the server has been restarted there was an error with the hivane network link. Hence some service were unavailable. The nerim link worked. <br /><pre>
root@Toushirou:~# systemctl --failed
UNIT LOAD ACTIVE SUB DESCRIPTION
● apache2.service loaded failed failed The Apache HTTP Server
● ifup@eth\x2dwan\x2dhivane.service loaded failed failed ifup for eth-wan-hivane
● matrix-appservice-irc.service loaded failed failed Matrix AppService IRC
● networking.service loaded failed failed Raise network interfaces
</pre></p>
<pre>
root@Toushirou:~# ifdown --force eth-wan-hivane
RTNETLINK answers: Cannot assign requested address
RTNETLINK answers: Cannot assign requested address
root@Toushirou:~# ifup --force eth-wan-hivane
Waiting for DAD... Timed out
ifup: failed to bring up eth-wan-hivane
</pre>
<p>I remember the timed out issue occurred when the last time the server was moved from a rack to another. I tried the <code>ifdown</code>/<code>ifup</code> commands several times (until the <code>Timed out</code> disappeared).</p>
<p>The logs show that the timed out issue occurred at boot:<br /><pre>
Dec 13 13:18:45 Toushirou sh[1562]: Waiting for DAD... Timed out
Dec 13 13:18:45 Toushirou sh[1496]: ifup: failed to bring up eth-wan-hivane
</pre></p>
<p>Next I restarted <code>apache2.service</code> and <code>matrix-appservice-irc.service</code>, then I updated <code>/lib/systemd/system/lxd.socket</code> in order to fix a typo:<br /><pre>Dec 13 15:48:22 Toushirou systemd[1]: /lib/systemd/system/lxd.socket:8: Unit must be of type service, ignoring: lxd.servcie
</pre><br />After that i ran <code>systemctl daemon-reload</code> and <code>lxc list</code> then the redmine LXC container restarted.</p>
<p>At this time I tried to create this issue using redmine:https://projects.duckcorp.org/ but an issue occurred after i tried to authenticate: the redmine web interface showed an error: <code>"Cannot assign requested address - connect(2) for [2001:67c:1740:9001::c1c8:2ab1]:636"</code>.</p>
<p>The restart of the <code>slapd</code> service (which was listening on IPv6 but not IPv4) fixed this issue.</p>
DuckCorp Infrastructure - Bug #726 (Resolved): /etc/stunnel/certs/duckcorp_stunnel_redis_Orfeo.pe...
https://projects.duckcorp.org/issues/726
2021-07-08T22:43:06Z
Pierre-Louis Bonicoli
pierre-louis.bonicoli@ir5.eu
<p>On Orfeo: <code>/etc/stunnel/certs/duckcorp_stunnel_redis_Orfeo.pem</code> certificate is expired.</p>
DuckCorp Infrastructure - Bug #698 (Resolved): replication wasn't working on db-ldap-2
https://projects.duckcorp.org/issues/698
2020-05-28T02:29:00Z
Pierre-Louis Bonicoli
pierre-louis.bonicoli@ir5.eu
<p><code>db-ldap-2.duckcorp.org</code> and <code>db-ldap-1.duckcorp.org</code> were desynchronized: <code>pierre-louis</code> account wasn't available on <code>db-ldap-2.duckcorp.org</code>.</p>
<p>In order to fix this issue, I restarted slapd service on toushirou (<code>systemctl restart slapd</code>).</p>
<p>Here are the logs of <code>slapd.service</code>:<br /><pre>
-- Logs begin at Mon 2020-05-18 03:15:02 CEST, end at Thu 2020-05-28 04:24:00 CEST. --
May 18 14:58:04 Toushirou slapd[3394]: slap_global_control: unrecognized control: 1.3.6.1.4.1.42.2.27.8.5.1
May 18 16:58:30 Toushirou slapd[3394]: connection_input: conn=1016 deferring operation: too many executing
May 18 20:44:05 Toushirou slapd[3394]: connection_input: conn=1016 deferring operation: too many executing
May 18 20:44:25 Toushirou slapd[3394]: connection_input: conn=1016 deferring operation: too many executing
May 18 22:04:35 Toushirou slapd[3394]: connection_input: conn=1016 deferring operation: too many executing
May 19 00:44:33 Toushirou slapd[3394]: connection_input: conn=1016 deferring operation: too many executing
May 19 03:43:39 Toushirou slapd[3394]: connection_input: conn=1016 deferring operation: too many executing
May 19 15:09:35 Toushirou slapd[3394]: connection_read(26): no connection!
May 19 16:31:36 Toushirou slapd[3394]: connection_input: conn=1016 deferring operation: too many executing
May 19 16:31:53 Toushirou slapd[3394]: connection_input: conn=1016 deferring operation: too many executing
May 19 19:10:07 Toushirou slapd[3394]: connection_read(35): no connection!
May 19 19:10:07 Toushirou slapd[3394]: connection_read(24): no connection!
May 19 22:13:59 Toushirou slapd[3394]: connection_read(37): no connection!
May 19 22:14:07 Toushirou slapd[3394]: connection_read(41): no connection!
May 19 22:41:01 Toushirou slapd[3394]: connection_read(40): no connection!
May 20 01:06:14 Toushirou slapd[3394]: conn=61577 op=0 do_bind: ber_scanf failed
May 20 03:04:59 Toushirou slapd[3394]: connection_input: conn=1016 deferring operation: too many executing
May 20 05:03:11 Toushirou slapd[3394]: connection_input: conn=1016 deferring operation: too many executing
May 20 10:16:29 Toushirou slapd[3394]: do_syncrep2: rid=004 (-1) Can't contact LDAP server
May 20 10:16:29 Toushirou slapd[3394]: do_syncrep2: rid=002 (-1) Can't contact LDAP server
May 20 10:16:29 Toushirou slapd[3394]: do_syncrepl: rid=004 rc -1 retrying (2 retries left)
May 20 10:16:29 Toushirou slapd[3394]: do_syncrepl: rid=002 rc -1 retrying (2 retries left)
May 20 10:16:41 Toushirou slapd[3394]: slap_client_connect: URI=ldap://db-ldap-1.duckcorp.org Error, ldap_start_tls failed (-1)
May 20 10:16:41 Toushirou slapd[3394]: do_syncrepl: rid=004 rc -1 retrying (1 retries left)
May 20 10:16:51 Toushirou slapd[3394]: slap_client_connect: URI=ldap://db-ldap-1.duckcorp.org Error, ldap_start_tls failed (-1)
May 20 10:16:51 Toushirou slapd[3394]: do_syncrepl: rid=002 rc -1 retrying (1 retries left)
May 20 10:17:01 Toushirou slapd[3394]: slap_client_connect: URI=ldap://db-ldap-1.duckcorp.org Error, ldap_start_tls failed (-1)
May 20 10:17:01 Toushirou slapd[3394]: do_syncrepl: rid=004 rc -1 retrying
May 20 10:17:05 Toushirou slapd[3394]: slap_client_connect: URI=ldap://db-ldap-1.duckcorp.org Error, ldap_start_tls failed (-1)
May 20 10:17:05 Toushirou slapd[3394]: do_syncrepl: rid=002 rc -1 retrying
May 20 10:17:24 Toushirou slapd[3394]: slap_client_connect: URI=ldap://db-ldap-1.duckcorp.org Error, ldap_start_tls failed (-1)
May 20 10:17:24 Toushirou slapd[3394]: slap_client_connect: URI=ldap://db-ldap-1.duckcorp.org Error, ldap_start_tls failed (-1)
May 20 10:17:24 Toushirou slapd[3394]: do_syncrepl: rid=004 rc -1 retrying (2 retries left)
May 20 10:17:24 Toushirou slapd[3394]: do_syncrepl: rid=002 rc -1 retrying (2 retries left)
May 20 10:17:56 Toushirou slapd[3394]: slap_client_connect: URI=ldap://db-ldap-1.duckcorp.org Error, ldap_start_tls failed (-1)
May 20 10:17:56 Toushirou slapd[3394]: do_syncrepl: rid=004 rc -1 retrying (1 retries left)
May 20 10:18:05 Toushirou slapd[3394]: slap_client_connect: URI=ldap://db-ldap-1.duckcorp.org Error, ldap_start_tls failed (-1)
May 20 10:18:05 Toushirou slapd[3394]: do_syncrepl: rid=002 rc -1 retrying (1 retries left)
May 20 10:18:36 Toushirou slapd[3394]: slap_client_connect: URI=ldap://db-ldap-1.duckcorp.org Error, ldap_start_tls failed (-1)
May 20 10:18:40 Toushirou slapd[3394]: slap_client_connect: URI=ldap://db-ldap-1.duckcorp.org Error, ldap_start_tls failed (-1)
May 20 10:18:40 Toushirou slapd[3394]: do_syncrepl: rid=002 rc -1 retrying
May 20 10:19:17 Toushirou slapd[3394]: slap_client_connect: URI=ldap://db-ldap-1.duckcorp.org Error, ldap_start_tls failed (-1)
May 20 10:19:17 Toushirou slapd[3394]: slap_client_connect: URI=ldap://db-ldap-1.duckcorp.org Error, ldap_start_tls failed (-1)
May 20 10:19:17 Toushirou slapd[3394]: do_syncrepl: rid=004 rc -1 quitting
May 20 10:19:17 Toushirou slapd[3394]: do_syncrepl: rid=002 rc -1 quitting
May 20 14:37:58 Toushirou slapd[3394]: connection_input: conn=1016 deferring operation: too many executing
May 20 15:40:15 Toushirou slapd[3394]: connection_input: conn=1016 deferring operation: too many executing
May 20 16:25:01 Toushirou slapd[3394]: connection_input: conn=1016 deferring operation: too many executing
May 20 16:44:58 Toushirou slapd[3394]: connection_input: conn=1016 deferring operation: too many executing
May 20 17:49:45 Toushirou slapd[3394]: connection_input: conn=1016 deferring operation: too many executing
May 20 17:50:06 Toushirou slapd[3394]: connection_input: conn=1016 deferring operation: too many executing
May 20 19:15:34 Toushirou slapd[3394]: connection_input: conn=1016 deferring operation: too many executing
May 20 19:15:57 Toushirou slapd[3394]: connection_input: conn=1016 deferring operation: too many executing
May 20 21:26:32 Toushirou slapd[3394]: connection_input: conn=1016 deferring operation: too many executing
May 20 21:52:44 Toushirou slapd[3394]: connection_read(43): no connection!
May 20 21:52:52 Toushirou slapd[3394]: connection_read(37): no connection!
May 20 22:08:55 Toushirou slapd[3394]: connection_read(15): no connection!
May 20 23:27:19 Toushirou slapd[3394]: connection_input: conn=1016 deferring operation: too many executing
May 21 01:07:08 Toushirou slapd[3394]: connection_input: conn=1016 deferring operation: too many executing
May 21 04:24:50 Toushirou slapd[3394]: connection_input: conn=1016 deferring operation: too many executing
May 21 06:01:22 Toushirou slapd[3394]: connection_input: conn=1016 deferring operation: too many executing
May 21 12:21:33 Toushirou slapd[3394]: connection_input: conn=1016 deferring operation: too many executing
May 21 16:43:53 Toushirou slapd[3394]: connection_input: conn=1016 deferring operation: too many executing
May 21 16:44:10 Toushirou slapd[3394]: connection_input: conn=1016 deferring operation: too many executing
May 21 23:36:27 Toushirou slapd[3394]: connection_read(35): no connection!
May 22 00:56:11 Toushirou slapd[3394]: connection_read(43): no connection!
May 22 01:11:53 Toushirou slapd[3394]: connection_read(40): no connection!
May 22 01:12:03 Toushirou slapd[3394]: connection_read(26): no connection!
May 22 02:47:32 Toushirou slapd[3394]: connection_read(42): no connection!
May 22 03:19:33 Toushirou slapd[3394]: connection_read(36): no connection!
May 22 16:36:11 Toushirou slapd[3394]: connection_read(35): no connection!
May 22 23:20:19 Toushirou slapd[3394]: connection_read(15): no connection!
May 23 00:35:39 Toushirou slapd[3394]: connection_read(28): no connection!
May 23 01:26:12 Toushirou slapd[3394]: connection_read(34): no connection!
May 23 02:46:12 Toushirou slapd[3394]: connection_read(35): no connection!
May 23 21:24:26 Toushirou slapd[3394]: connection_read(38): no connection!
May 23 21:40:25 Toushirou slapd[3394]: connection_read(37): no connection!
May 24 00:21:30 Toushirou slapd[3394]: connection_read(35): no connection!
May 24 00:53:33 Toushirou slapd[3394]: connection_read(23): no connection!
May 24 15:44:52 Toushirou slapd[3394]: <= mdb_substring_candidates: (uid) not indexed
May 24 15:44:52 Toushirou slapd[3394]: <= mdb_substring_candidates: (uid) not indexed
May 24 15:44:52 Toushirou slapd[3394]: <= mdb_substring_candidates: (uid) not indexed
May 24 15:44:53 Toushirou slapd[3394]: <= mdb_substring_candidates: (uid) not indexed
May 24 15:44:53 Toushirou slapd[3394]: <= mdb_substring_candidates: (uid) not indexed
May 24 15:44:59 Toushirou slapd[3394]: <= mdb_substring_candidates: (uid) not indexed
May 24 15:45:02 Toushirou slapd[3394]: <= mdb_substring_candidates: (uid) not indexed
May 24 15:45:02 Toushirou slapd[3394]: <= mdb_substring_candidates: (uid) not indexed
May 24 15:45:03 Toushirou slapd[3394]: <= mdb_substring_candidates: (uid) not indexed
May 24 15:45:03 Toushirou slapd[3394]: <= mdb_substring_candidates: (uid) not indexed
May 24 15:45:03 Toushirou slapd[3394]: <= mdb_substring_candidates: (uid) not indexed
May 24 15:45:03 Toushirou slapd[3394]: <= mdb_substring_candidates: (uid) not indexed
May 24 15:45:03 Toushirou slapd[3394]: <= mdb_substring_candidates: (uid) not indexed
May 24 15:45:03 Toushirou slapd[3394]: <= mdb_substring_candidates: (uid) not indexed
May 24 15:45:03 Toushirou slapd[3394]: <= mdb_substring_candidates: (uid) not indexed
May 24 15:55:30 Toushirou slapd[3394]: connection_read(37): no connection!
May 24 16:11:22 Toushirou slapd[3394]: connection_read(22): no connection!
May 24 16:34:58 Toushirou slapd[3394]: <= mdb_substring_candidates: (uid) not indexed
May 24 16:35:08 Toushirou slapd[3394]: <= mdb_substring_candidates: (uid) not indexed
May 24 16:35:09 Toushirou slapd[3394]: <= mdb_substring_candidates: (uid) not indexed
May 24 16:35:09 Toushirou slapd[3394]: <= mdb_substring_candidates: (uid) not indexed
May 24 16:35:10 Toushirou slapd[3394]: <= mdb_substring_candidates: (uid) not indexed
May 24 16:35:10 Toushirou slapd[3394]: <= mdb_substring_candidates: (uid) not indexed
May 24 17:06:40 Toushirou slapd[3394]: connection_read(35): no connection!
May 24 22:28:20 Toushirou slapd[3394]: connection_read(35): no connection!
May 24 22:28:23 Toushirou slapd[3394]: connection_read(39): no connection!
May 24 22:44:24 Toushirou slapd[3394]: connection_read(36): no connection!
May 24 23:16:44 Toushirou slapd[3394]: connection_read(34): no connection!
May 25 00:05:58 Toushirou slapd[3394]: connection_read(41): no connection!
May 25 00:06:05 Toushirou slapd[3394]: connection_read(30): no connection!
May 25 00:22:03 Toushirou slapd[3394]: connection_read(26): no connection!
May 25 00:38:08 Toushirou slapd[3394]: connection_read(40): no connection!
May 25 00:38:22 Toushirou slapd[3394]: connection_read(15): no connection!
May 25 00:54:28 Toushirou slapd[3394]: connection_read(34): no connection!
May 25 10:19:11 Toushirou slapd[3394]: connection_input: conn=77688 deferring operation: too many executing
May 25 12:39:50 Toushirou slapd[3394]: connection_input: conn=77688 deferring operation: too many executing
May 26 00:01:56 Toushirou slapd[3394]: connection_read(39): no connection!
May 26 00:17:57 Toushirou slapd[3394]: connection_read(34): no connection!
May 26 00:33:51 Toushirou slapd[3394]: connection_read(39): no connection!
May 26 00:34:18 Toushirou slapd[3394]: connection_read(27): no connection!
May 26 00:50:57 Toushirou slapd[3394]: connection_read(27): no connection!
May 26 00:50:58 Toushirou slapd[3394]: connection_read(33): no connection!
May 26 01:23:07 Toushirou slapd[3394]: connection_read(38): no connection!
May 26 09:28:09 Toushirou slapd[3394]: connection_input: conn=77688 deferring operation: too many executing
May 26 11:21:01 Toushirou slapd[3394]: connection_input: conn=77688 deferring operation: too many executing
May 26 12:37:12 Toushirou slapd[3394]: connection_read(35): no connection!
May 26 16:16:54 Toushirou slapd[3394]: connection_input: conn=77688 deferring operation: too many executing
May 26 20:11:28 Toushirou slapd[3394]: connection_read(34): no connection!
May 26 21:15:23 Toushirou slapd[3394]: connection_read(28): no connection!
May 27 00:38:19 Toushirou slapd[3394]: connection_read(41): no connection!
May 27 18:52:09 Toushirou slapd[3394]: connection_read(47): no connection!
May 27 18:52:15 Toushirou slapd[3394]: connection_read(28): no connection!
May 27 18:52:26 Toushirou slapd[3394]: connection_read(43): no connection!
May 27 19:56:32 Toushirou slapd[3394]: connection_read(40): no connection!
May 27 19:56:39 Toushirou slapd[3394]: connection_read(40): no connection!
May 27 21:51:12 Toushirou slapd[3394]: connection_read(38): no connection!
May 27 21:51:18 Toushirou slapd[3394]: connection_read(26): no connection!
May 27 22:07:00 Toushirou slapd[3394]: connection_read(15): no connection!
May 27 22:07:19 Toushirou slapd[3394]: connection_read(22): no connection!
May 27 22:39:01 Toushirou slapd[3394]: connection_read(26): no connection!
May 27 23:01:56 Toushirou slapd[3394]: connection_read(33): no connection!
May 27 23:18:10 Toushirou slapd[3394]: connection_read(49): no connection!
May 28 01:10:25 Toushirou slapd[3394]: connection_read(37): no connection!
May 28 01:10:33 Toushirou slapd[3394]: connection_read(39): no connection!
May 28 01:42:20 Toushirou slapd[3394]: connection_read(38): no connection!
May 28 04:18:56 Toushirou systemd[1]: Stopping LSB: OpenLDAP standalone server (Lightweight Directory Access Protocol)...
May 28 04:18:56 Toushirou slapd[3394]: daemon: shutdown requested and initiated.
May 28 04:18:56 Toushirou slapd[3394]: slapd shutdown: waiting for 0 operations/tasks to finish
May 28 04:18:57 Toushirou slapd[3394]: DIGEST-MD5 common mech free
May 28 04:18:57 Toushirou slapd[3394]: DIGEST-MD5 common mech free
May 28 04:18:57 Toushirou slapd[3394]: slapd stopped.
May 28 04:18:57 Toushirou slapd[6990]: Stopping OpenLDAP: slapd.
May 28 04:18:57 Toushirou systemd[1]: slapd.service: Succeeded.
May 28 04:18:57 Toushirou systemd[1]: Stopped LSB: OpenLDAP standalone server (Lightweight Directory Access Protocol).
May 28 04:18:57 Toushirou systemd[1]: slapd.service: Consumed 4h 4min 55.502s CPU time.
May 28 04:18:57 Toushirou systemd[1]: Starting LSB: OpenLDAP standalone server (Lightweight Directory Access Protocol)...
May 28 04:18:57 Toushirou slapd[7001]: @(#) $OpenLDAP: slapd (Apr 20 2020 18:19:54) $
May 28 04:18:57 Toushirou slapd[7003]: slapd starting
May 28 04:18:57 Toushirou slapd[6995]: Starting OpenLDAP: slapd.
May 28 04:18:57 Toushirou systemd[1]: Started LSB: OpenLDAP standalone server (Lightweight Directory Access Protocol).
May 28 04:18:57 Toushirou slapd[7003]: syncrepl_message_to_entry: rid=002 DN: dc=milkypond,dc=org, UUID: 5e25ffb0-34d0-103a-826b-1b8e95bf3725
May 28 04:18:57 Toushirou slapd[7003]: syncrepl_entry: rid=002 LDAP_RES_SEARCH_ENTRY(LDAP_SYNC_ADD) tid 1effd700
May 28 04:18:57 Toushirou slapd[7003]: syncrepl_entry: rid=002 inserted UUID 5e25ffb0-34d0-103a-826b-1b8e95bf3725
May 28 04:18:57 Toushirou slapd[7003]: syncrepl_entry: rid=002 be_search (0)
May 28 04:18:57 Toushirou slapd[7003]: syncrepl_entry: rid=002 dc=milkypond,dc=org
May 28 04:18:57 Toushirou slapd[7003]: syncrepl_entry: rid=002 be_add dc=milkypond,dc=org (68)
May 28 04:18:57 Toushirou slapd[7003]: syncrepl_entry: rid=002 be_modify dc=milkypond,dc=org (0)
May 28 04:18:57 Toushirou slapd[7003]: syncrepl_message_to_entry: rid=002 DN: cn=admin,dc=milkypond,dc=org, UUID: 5e299e0e-34d0-103a-826c-1b8e95bf3725
May 28 04:18:57 Toushirou slapd[7003]: syncrepl_entry: rid=002 LDAP_RES_SEARCH_ENTRY(LDAP_SYNC_ADD) tid 1effd700
May 28 04:18:57 Toushirou slapd[7003]: syncrepl_entry: rid=002 inserted UUID 5e299e0e-34d0-103a-826c-1b8e95bf3725
May 28 04:18:57 Toushirou slapd[7003]: syncrepl_entry: rid=002 be_search (0)
May 28 04:18:57 Toushirou slapd[7003]: syncrepl_entry: rid=002 cn=admin,dc=milkypond,dc=org
May 28 04:18:57 Toushirou slapd[7003]: syncrepl_entry: rid=002 be_add cn=admin,dc=milkypond,dc=org (68)
May 28 04:18:57 Toushirou slapd[7003]: syncrepl_entry: rid=002 be_modify cn=admin,dc=milkypond,dc=org (0)
May 28 04:18:57 Toushirou slapd[7003]: syncrepl_message_to_entry: rid=002 DN: ou=People,dc=milkypond,dc=org, UUID: 5e2e345a-34d0-103a-826d-1b8e95bf3725
[...]
</pre></p>
DuckCorp Infrastructure - Bug #697 (Resolved): Fix "Found variable using reserved name: port" (an...
https://projects.duckcorp.org/issues/697
2020-05-07T13:47:32Z
Pierre-Louis Bonicoli
pierre-louis.bonicoli@ir5.eu
<p>ansible-role-ssh: Don't use reserved name 'port'</p>
<p>Fix this warning:</p>
<pre>
[WARNING]: Found variable using reserved name: port
</pre>
<p>Once merged the following patch will be required on the main repository:<br /><pre>
--- a/ansible/roles/dc-base/tasks/main.yml
+++ b/ansible/roles/dc-base/tasks/main.yml
@@ -52,7 +52,7 @@
import_role:
name: ssh
vars:
- port: "{{ ssh.port }}"
+ sshd_port: "{{ ssh.port }}"
listen_addresses: "{{ ssh.listen_addresses }}"
# for GuiHome streaming
enable_gatewayports: "{{ inventory_hostname == 'Toushirou' }}"
</pre></p>
DuckCorp Infrastructure - Bug #669 (Resolved): WARNING: Ignoring deprecated option DetectBrokenEx...
https://projects.duckcorp.org/issues/669
2019-08-24T09:51:43Z
Pierre-Louis Bonicoli
pierre-louis.bonicoli@ir5.eu
<p>This warning is received on dc-admins mailing list every hour:<br /><pre>
[DC-Admins] Cron <clamav@Toushirou> [ -x /usr/sbin/clamav-unofficial-sigs ] && /usr/sbin/clamav-unofficial-sigs
WARNING: Ignoring deprecated option DetectBrokenExecutables at /etc/clamav/clamd.conf:40
</pre></p>
DuckCorp Infrastructure - Bug #659 (Resolved): Toushirou: unable to decrypt root partition at boot
https://projects.duckcorp.org/issues/659
2019-07-15T23:53:44Z
Pierre-Louis Bonicoli
pierre-louis.bonicoli@ir5.eu
<p>Network interface name in initramfs configuration was wrong.</p>
<p>Closed by <a class="changeset" title="Toushirou: fix initramfs iface name This update has been successfully tested and is already appl..." href="https://projects.duckcorp.org/projects/dc-admin/repository/duckcorp-infra/revisions/4278dccfa464a6897d43762720285b4e3a20dd82">4278dccfa464a6897d43762720285b4e3a20dd82</a></p>
DuckCorp Infrastructure - Bug #653 (Resolved): Fix logcheck regex
https://projects.duckcorp.org/issues/653
2019-05-25T09:50:06Z
Pierre-Louis Bonicoli
pierre-louis.bonicoli@ir5.eu
<p>Fix these errors:<br /><pre>
Cron <logcheck@Orfeo> if [ -x /usr/sbin/logcheck ]; then nice -n10 /usr/sbin/logcheck; fi
grep: /tmp/logcheck.TZdmWT/ignore/dc:29: Unmatched ( or \(
grep: /tmp/logcheck.TZdmWT/ignore/dc:31: Unmatched ( or \(
</pre></p>
<p>Fixed by <a class="external" href="https://projects.duckcorp.org/projects/dc-admin/repository/revisions/a8373a5690178cf345a2b2bde39efb6d700b15fd">https://projects.duckcorp.org/projects/dc-admin/repository/revisions/a8373a5690178cf345a2b2bde39efb6d700b15fd</a></p>
<p>Deployed using:<br /><pre>ANSIBLE_DISPLAY_SKIPPED_HOSTS=0 ANSIBLE_DISPLAY_OK_HOSTS=0 ansible-playbook -i hosts.yml playbooks/common.yml --diff</pre></p>
DuckCorp Infrastructure - Bug #635 (Resolved): invalid group 'prj-bip-webmasters'
https://projects.duckcorp.org/issues/635
2018-09-09T23:43:05Z
Pierre-Louis Bonicoli
pierre-louis.bonicoli@ir5.eu
<blockquote>
<p>Cron <root@Toushirou> ionice -c3 srv_ftp_bip_update<br />chown: invalid group: 'pilou:prj-bip-webmasters'</p>
</blockquote>
<p>group <code>prj-bip-webmasters</code> doesn't exist:</p>
<blockquote>
<p>$ getent group prj-bip-webmasters<br />$ ls <del>l /srv/ftp/ftp.duckcorp.org/public/bip/bip-0.9.0-rc.1.tar.gz<br />-rw-r--r-</del> 1 pilou 15101 273464 Nov 13 2016 /srv/ftp/ftp.duckcorp.org/public/bip/bip-0.9.0-rc.1.tar.gz</p>
</blockquote>
It seems group <code>prj-bip-webmasters</code> existed but has been removed:
<ul>
<li>should this group be created</li>
<li>or should <code>prj-bip-devs</code> be used instead ?</li>
</ul>
DuckCorp Infrastructure - Bug #511 (Resolved): DSA-3793-1 : update passwd and login packages
https://projects.duckcorp.org/issues/511
2017-02-25T13:55:31Z
Pierre-Louis Bonicoli
pierre-louis.bonicoli@ir5.eu
<p>The following command was used:<br /><pre>
ansible 'all:!Elwing' -m apt -a "name=login,passwd,uidmap state=latest update_cache=yes only_upgrade=yes"
</pre></p>
<p><code>rkhunter</code> script fails on <code>Toushirou</code>:<br /><pre>
Toushirou | FAILED! => {
"cache_update_time": 1488027681,
"cache_updated": true,
"changed": false,
"failed": true,
"msg": "'/usr/bin/apt-get -y -o \"Dpkg::Options::=--force-confdef\" -o \"Dpkg::Options::=--force-confold\" --only-upgrade install 'passwd'' failed: E: Problem executing scripts DPkg::Post-Invoke 'if [ -x /usr/bin/rkhunter ] && grep -qiE '^APT_AUTOGEN=.?(true|yes)' /etc/default/rkhunter; then /usr/share/rkhunter/scripts/rkhupd.sh; fi'\nE: Sub-process returned an error code\n",
"stderr": "E: Problem executing scripts DPkg::Post-Invoke 'if [ -x /usr/bin/rkhunter ] && grep -qiE '^APT_AUTOGEN=.?(true|yes)' /etc/default/rkhunter; then /usr/share/rkhunter/scripts/rkhupd.sh; fi'\nE: Sub-process returned an error code\n",
"stderr_lines": [
"E: Problem executing scripts DPkg::Post-Invoke 'if [ -x /usr/bin/rkhunter ] && grep -qiE '^APT_AUTOGEN=.?(true|yes)' /etc/default/rkhunter; then /usr/share/rkhunter/scripts/rkhupd.sh; fi'",
"E: Sub-process returned an error code"
],
"stdout": "Reading package lists...\nBuilding dependency tree...\nReading state information...\nThe following packages will be upgraded:\n passwd\n1 upgraded, 0 newly installed, 0 to remove and 27 not upgraded.\nNeed to get 970 kB of archives.\nAfter this operation, 325 kB disk space will be freed.\nGet:1 http://security.debian.org/ jessie/updates/main passwd amd64 1:4.2-3+deb8u3 [970 kB]\nFetched 970 kB in 0s (2593 kB/s)\n(Reading database ... \r(Reading database ... 5%\r(Reading database ... 10%\r(Reading database ... 15%\r(Reading database ... 20%\r(Reading database ... 25%\r(Reading database ... 30%\r(Reading database ... 35%\r(Reading database ... 40%\r(Reading database ... 45%\r(Reading database ... 50%\r(Reading database ... 55%\r(Reading database ... 60%\r(Reading database ... 65%\r(Reading database ... 70%\r(Reading database ... 75%\r(Reading database ... 80%\r(Reading database ... 85%\r(Reading database ... 90%\r(Reading database ... 95%\r(Reading database ... 100%\r(Reading database ... 269474 files and directories currently installed.)\r\nPreparing to unpack .../passwd_1%3a4.2-3+deb8u3_amd64.deb ...\r\nUnpacking passwd (1:4.2-3+deb8u3) over (1:4.2-3+deb8u1) ...\r\nProcessing triggers for man-db (2.7.0.2-5) ...\r\nSetting up passwd (1:4.2-3+deb8u3) ...\r\nWaiting for lock file..10..20..30..40..50..60..70..80..90..100..110..120..130..140..150..160..170..180..190..200..210..220..230..240..250..260..270..280..290..300\nUnable to get the lock file: rkhunter has not run!\n",
"stdout_lines": [
"Reading package lists...",
"Building dependency tree...",
"Reading state information...",
"The following packages will be upgraded:",
" passwd",
"1 upgraded, 0 newly installed, 0 to remove and 27 not upgraded.",
"Need to get 970 kB of archives.",
"After this operation, 325 kB disk space will be freed.",
"Get:1 http://security.debian.org/ jessie/updates/main passwd amd64 1:4.2-3+deb8u3 [970 kB]",
"Fetched 970 kB in 0s (2593 kB/s)",
"(Reading database ... ",
"(Reading database ... 5%",
"(Reading database ... 10%",
"(Reading database ... 15%",
"(Reading database ... 20%",
"(Reading database ... 25%",
"(Reading database ... 30%",
"(Reading database ... 35%",
"(Reading database ... 40%",
"(Reading database ... 45%",
"(Reading database ... 50%",
"(Reading database ... 55%",
"(Reading database ... 60%",
"(Reading database ... 65%",
"(Reading database ... 70%",
"(Reading database ... 75%",
"(Reading database ... 80%",
"(Reading database ... 85%",
"(Reading database ... 90%",
"(Reading database ... 95%",
"(Reading database ... 100%",
"(Reading database ... 269474 files and directories currently installed.)",
"Preparing to unpack .../passwd_1%3a4.2-3+deb8u3_amd64.deb ...",
"Unpacking passwd (1:4.2-3+deb8u3) over (1:4.2-3+deb8u1) ...",
"Processing triggers for man-db (2.7.0.2-5) ...",
"Setting up passwd (1:4.2-3+deb8u3) ...",
"Waiting for lock file..10..20..30..40..50..60..70..80..90..100..110..120..130..140..150..160..170..180..190..200..210..220..230..240..250..260..270..280..290..300",
"Unable to get the lock file: rkhunter has not run!"
]
</pre></p>
<p>After upgrade, the following checks were performed:</p>
<ul>
<li><pre>
ansible 'all:!Elwing' -i hosts -m shell -a 'test "$(dpkg-query -W -f\${Version} passwd)" = "1:4.2-3+deb8u3"'
</pre></li>
<li><pre>
ansible 'all:!Elwing' -i hosts -m shell -a 'test "$(dpkg-query -W -f\${Version} login)" = "1:4.2-3+deb8u3"'
</pre></li>
</ul>
DuckCorp Infrastructure - Bug #506 (Resolved): Review branch orfeo_remove_old_ip
https://projects.duckcorp.org/issues/506
2017-02-06T15:51:36Z
Pierre-Louis Bonicoli
pierre-louis.bonicoli@ir5.eu
<p>Please, could you review the branch called <code>orfeo_remove_old_ip</code> (admin repository) ?</p>
<p>Thanks in advance :)</p>
DuckCorp Infrastructure - Bug #502 (Resolved): Reboot servers (orfeo, jinta, thorfinn, toushirou)
https://projects.duckcorp.org/issues/502
2017-01-26T12:39:13Z
Pierre-Louis Bonicoli
pierre-louis.bonicoli@ir5.eu
<p>Servers were upgraded to Debian 8.7 and need a reboot.</p>
DuckCorp Infrastructure - Bug #488 (Resolved): Apply debian security updates
https://projects.duckcorp.org/issues/488
2016-02-25T23:40:01Z
Pierre-Louis Bonicoli
pierre-louis.bonicoli@ir5.eu
Apply debian security updates on the following hosts:
<ul>
<li>toushirou</li>
<li>thorfinn</li>
<li>jinta</li>
<li>orfeo</li>
</ul>
<p>Jinta is currently unavailable.</p>
Bip - Bug #481 (In Progress): Fix log level for erroneous messages
https://projects.duckcorp.org/issues/481
2015-10-13T12:54:28Z
Pierre-Louis Bonicoli
pierre-louis.bonicoli@ir5.eu
<p>Bip should display IRC <a href="https://tools.ietf.org/html/rfc1459#section-6" class="external">errors</a> sent by IRC servers using <code>error</code> log level.</p>
<p>The current behaviour is:<br /><pre>
13-10-2015 14:48:14 DEBUG: ":irc.server.local 432 * Pilou :Nickname too long, max. 9 characters
</pre></p>