02:07 | andygraybeal_ has left IRC (andygraybeal_!~andy@h202.49.188.173.dynamic.ip.windstream.net, Read error: Connection reset by peer) | |
02:10 | andygraybeal has joined IRC (andygraybeal!~andy@h202.49.188.173.dynamic.ip.windstream.net) | |
02:18 | andygraybeal has left IRC (andygraybeal!~andy@h202.49.188.173.dynamic.ip.windstream.net, Quit: Ex-Chat) | |
02:49 | gbaman has left IRC (gbaman!~gbaman@host81-148-184-31.in-addr.btopenworld.com, Remote host closed the connection) | |
02:50 | gbaman has joined IRC (gbaman!~gbaman@host81-148-184-31.in-addr.btopenworld.com) | |
02:55 | gbaman has left IRC (gbaman!~gbaman@host81-148-184-31.in-addr.btopenworld.com, Ping timeout: 246 seconds) | |
03:08 | telex has left IRC (telex!teletype@freeshell.de, Remote host closed the connection) | |
03:10 | telex has joined IRC (telex!teletype@freeshell.de) | |
03:51 | gbaman has joined IRC (gbaman!~gbaman@host81-148-184-31.in-addr.btopenworld.com) | |
04:12 | gbaman has left IRC (gbaman!~gbaman@host81-148-184-31.in-addr.btopenworld.com, Ping timeout: 252 seconds) | |
06:07 | vsuojanen has joined IRC (vsuojanen!~valtteri@83-136-248-31.uk-lon1.host.upcloud.com) | |
06:39 | vmlintu has joined IRC (vmlintu!~vmlintu@a91-152-200-70.elisa-laajakaista.fi) | |
06:46 | mikkel has joined IRC (mikkel!~mikkel@mail.dlvs.dk) | |
07:21 | vmlintu has left IRC (vmlintu!~vmlintu@a91-152-200-70.elisa-laajakaista.fi, Ping timeout: 246 seconds) | |
07:37 | vmlintu has joined IRC (vmlintu!~vmlintu@a91-152-200-70.elisa-laajakaista.fi) | |
07:44 | khildin has joined IRC (khildin!~khildin@ip-83-134-135-161.dsl.scarlet.be) | |
07:45 | Fenuks has joined IRC (Fenuks!~Fenuks@mail.c-lan.ru) | |
08:10 | work_alkisg is now known as alkisg | |
08:16 | AndChat91056 has joined IRC (AndChat91056!~AndChat91@213.55.184.230) | |
08:17 | AndChat91056 has left IRC (AndChat91056!~AndChat91@213.55.184.230, Client Quit) | |
09:01 | uXus has left IRC (uXus!~uXus@217.77.222.72, Quit: ail bi bek) | |
09:02 | ogra_ has left IRC (ogra_!~ogra_@p5098ed03.dip0.t-ipconnect.de, Ping timeout: 256 seconds) | |
09:04 | uXus has joined IRC (uXus!~uXus@217.77.222.72) | |
09:05 | ogra_ has joined IRC (ogra_!~ogra_@p5098ed03.dip0.t-ipconnect.de) | |
10:59 | alkisg is now known as work_alkisg | |
11:34 | khildin has left IRC (khildin!~khildin@ip-83-134-135-161.dsl.scarlet.be, Ping timeout: 255 seconds) | |
12:27 | vsuojanen has left IRC (vsuojanen!~valtteri@83-136-248-31.uk-lon1.host.upcloud.com, Remote host closed the connection) | |
12:37 | gbaman has joined IRC (gbaman!~gbaman@host81-148-184-31.in-addr.btopenworld.com) | |
12:45 | gbaman has left IRC (gbaman!~gbaman@host81-148-184-31.in-addr.btopenworld.com, Ping timeout: 246 seconds) | |
13:30 | gbaman has joined IRC (gbaman!~gbaman@host81-148-184-31.in-addr.btopenworld.com) | |
13:40 | telex has left IRC (telex!teletype@freeshell.de, Remote host closed the connection) | |
13:42 | telex has joined IRC (telex!teletype@freeshell.de) | |
14:11 | FGXR6 has left IRC (FGXR6!~phantom@ppp121-44-115-148.lns20.syd4.internode.on.net, Ping timeout: 272 seconds) | |
14:21 | ricotz has joined IRC (ricotz!~rico@ubuntu/member/ricotz) | |
14:22 | Fenuks has left IRC (Fenuks!~Fenuks@mail.c-lan.ru, Ping timeout: 256 seconds) | |
14:22 | AlexPortable has joined IRC (AlexPortable!uid7568@gateway/web/irccloud.com/x-azdymuognnegatfl) | |
14:24 | FGXR6 has joined IRC (FGXR6!~phantom@ppp118-211-211-203.lns20.syd4.internode.on.net) | |
14:48 | callan has joined IRC (callan!c0c53646@gateway/web/freenode/ip.192.197.54.70) | |
14:53 | <callan> hi everyone, is it possible to deny users of my LTSP network from logging into the router via SSH?
| |
14:53 | oops, i meant server, not router
| |
14:55 | <ogra_> since the LTSP loin process is tied to ssh that would be quite difficult
| |
14:55 | *login
| |
15:21 | mikkel has left IRC (mikkel!~mikkel@mail.dlvs.dk, Quit: Leaving) | |
15:25 | <callan> maybe this is more of a linux question but, say on one of my clients i SSH into the server with a regular account, i am finding that i can view files within non-readable directories
| |
15:26 | say i have /home/acct1/file.txt, and /home/acct1 has no user read access, but /home/acct1/file.txt DOES have read access, i can read it
| |
15:26 | <jammcq> that's the 'execute' bit of permissions on the directory that you need to set
| |
15:26 | <callan> within the thin client environment, i get permission denied, which i would expect, but when SSHing into the server, i can read it
| |
15:26 | <jammcq> 'execute' on a directory is 'search'
| |
15:27 | <callan> i would like to deny reading of the files though
| |
15:27 | <ogra_> debian (and by inheritance ubuntu) sets that by default on home dirs so people can share files easily
| |
15:28 | <callan> yes, and i've changed that because i don't want that
| |
15:28 | <jammcq> what are the perms on the directory?
| |
15:28 | <ogra_> right, thats up to you :)
| |
15:28 | <callan> 751 right now
| |
15:28 | i was under the impression that if a directory is unreadable by a user, all files in that directory should also be unreadable
| |
15:28 | am i wrong there?
| |
15:29 | <jammcq> are the other people in the same group?
| |
15:30 | 0751 would be 'execute' for all
| |
15:30 | maybe 0750 would be more appropriate
| |
15:31 | S_IXUSR (00100) execute/search by owner ("search" applies for direcā
| |
15:31 | tories, and means that entries within the directory
| |
15:31 | can be accessed)
| |
15:31 | <ogra_> or even 0700 if you are paranoid :)
| |
15:31 | <jammcq> that's the output of: man 2 chmod
| |
15:31 | S_IXGRP and S_IXOTH are the same way
| |
15:32 | <callan> ok if i change the file to 750 it seems to work the way i want
| |
15:32 | <jammcq> yeah, that's what I'd expect
| |
15:32 | <callan> so i guess what i'm confused about is what the point of the read permission is if i can "execute" a text file
| |
15:33 | <jammcq> read perms on a directory? or on a flat file?
| |
15:33 | <callan> on a file, say a text file
| |
15:33 | <jammcq> read and execute are 2 different things.
| |
15:33 | not all flat files are executable
| |
15:34 | <callan> here's my example
| |
15:35 | so if i set "/home/acct1" to 751, i can read test.txt using "vim /home/acct1/test.txt"
| |
15:35 | with another account that has no group or owner relation
| |
15:35 | <jammcq> yes, because the DIRECTORY has the execute bit set
| |
15:35 | meaning they can access files in that directory
| |
15:36 | <callan> hmm ok
| |
15:36 | <jammcq> but they probably can't do a 'ls -l' on it
| |
15:36 | <callan> that's right
| |
15:36 | ok i think i've got it straight in my head now, thanks for your help
| |
15:36 | <jammcq> so they can't get a listing of what's in the directory, but if they know the pathname, they can access files in the directory
| |
15:37 | no prob
| |
15:42 | callan has left IRC (callan!c0c53646@gateway/web/freenode/ip.192.197.54.70, Quit: Page closed) | |
15:47 | vagrantc has joined IRC (vagrantc!~vagrant@freegeek/vagrantc) | |
16:03 | gbaman has left IRC (gbaman!~gbaman@host81-148-184-31.in-addr.btopenworld.com, Remote host closed the connection) | |
16:04 | gbaman has joined IRC (gbaman!~gbaman@host81-148-184-31.in-addr.btopenworld.com) | |
16:31 | stgraber has left IRC (stgraber!~stgraber@ubuntu/member/stgraber, Ping timeout: 252 seconds) | |
16:35 | Faith has joined IRC (Faith!~paty@unaffiliated/faith) | |
16:46 | stgraber has joined IRC (stgraber!~stgraber@shell.stgraber.org) | |
16:46 | stgraber has left IRC (stgraber!~stgraber@shell.stgraber.org, Changing host) | |
16:46 | stgraber has joined IRC (stgraber!~stgraber@ubuntu/member/stgraber) | |
17:31 | AlexPortable has left IRC (AlexPortable!uid7568@gateway/web/irccloud.com/x-azdymuognnegatfl, Quit: Connection closed for inactivity) | |
17:54 | doctari has left IRC (doctari!~doctari@2602:30a:2ccf:9f00:18fd:5aec:b26d:7ae5, Ping timeout: 265 seconds) | |
18:07 | slige has joined IRC (slige!c71589a3@gateway/web/freenode/ip.199.21.137.163) | |
18:36 | <slige> HI - we're running LTSP on Edubuntu 12.04. Just moved to amd64 fm i386. Now in clients, get "printing service not available." in system setting/printing. Pointers for fixing please?
| |
18:38 | <vagrantc> how did you move from i386 to amd64? reinstall?
| |
18:41 | <slige> Edubuntu was already 64-bit. Did 64-bit LTSP commands and updated DHCP server to point to amd64 files. Clients boot fine - run apps, etc. Server has three printers installed.
| |
18:46 | <highvoltage> slige: do you know how your printing was set up? did you perhaps have cups installed in your old think client chroot that's not there anymore? or was there something specified in the old lts.conf?
| |
18:49 | <slige> I copied lts.conf to amd64 location (no printing stuff in it). Let's assume I've completely forgotten how I set up server in 2012. CUPS is in chroot (checked). How to fire it up in client?
| |
18:51 | <highvoltage> check /etc/cups/cups.conf on the old chroot and compare
| |
18:52 | (also on old server if applicable)
| |
18:52 | alkisg has joined IRC (alkisg!~alkisg@ubuntu/member/alkisg) | |
18:56 | gothaggis has joined IRC (gothaggis!~growland@corp.heavyhammer.com) | |
18:58 | <gothaggis> hello, i am having a problem - i am using active directory auth w/ ubuntu 14.04 ltsp server. i can ssh into the server using AD username/password no problem, however if I boot up a thin client, and use that same username/password, it just says "No Response from Server: Restarting" any ideas?
| |
18:58 | i'm using winbind/samba for ADauth
| |
19:00 | and i don't even see an attempt to login in /var/log/auth.log
| |
19:00 | <alkisg> !screen_02
| |
19:00 | <ltsp`> screen_02: To get a root shell on an Ubuntu thin client: https://help.ubuntu.com/community/UbuntuLTSP/ClientTroubleshooting#Using_a_shell_SCREEN
| |
19:00 | <alkisg> Try ssh user@server from there
| |
19:00 | Change user, keep server exactly as "server", don't use another hostname or ip
| |
19:04 | slige: thin or fat clients? thin clients don't need cups in the chroot unless you're using localapps
| |
19:06 | <gothaggis> alkisg i am able to ssh using the shell screen without a problem
| |
19:06 | <alkisg> gothaggis: what was the exact command that you used?
| |
19:07 | <gothaggis> if i go back to the gui, it still does the 'no reponse from server' thing
| |
19:07 | <alkisg> Also, did you get a prompt to accept the keys?
| |
19:07 | <gothaggis> oh wait
| |
19:07 | <slige> (blink) I have no /etc/cups in old chroot. I'm surprised. Thanks for the pointers - I'll be back tomorrow if I can't get it.
| |
19:07 | <gothaggis> the command i used was ssh username@thinclientserver
| |
19:07 | <alkisg> Don't use thinclientserver, use server
| |
19:08 | <slige> thin clients. Hmmm - new chroot has cups in chroot.
| |
19:08 | <alkisg> It shouldn't matter anyway, the session is in the server
| |
19:08 | <gothaggis> ahhhhhh
| |
19:09 | if i do that, it says connect to host server 22 connection refused
| |
19:09 | <alkisg> That's a good place to start troubleshooting :)
| |
19:09 | <gothaggis> i bet my lts.conf is not correct
| |
19:09 | thanks ;)
| |
19:09 | <alkisg> getltscfg -a, cat /etc/hosts etc on the client
| |
19:09 | There's LDM_SERVER=xxx in lts.conf if you need it
| |
19:12 | gothaggis has left IRC (gothaggis!~growland@corp.heavyhammer.com, Remote host closed the connection) | |
19:13 | <slige> thanks for your ideas. Back another day.
| |
19:14 | slige has left IRC (slige!c71589a3@gateway/web/freenode/ip.199.21.137.163) | |
19:22 | gbaman has left IRC (gbaman!~gbaman@host81-148-184-31.in-addr.btopenworld.com, Remote host closed the connection) | |
19:37 | gbit has left IRC (gbit!~gbti@unaffiliated/gbit, Quit: leaving) | |
19:40 | gbaman has joined IRC (gbaman!~gbaman@host81-148-184-31.in-addr.btopenworld.com) | |
19:41 | vagrantc has left IRC (vagrantc!~vagrant@freegeek/vagrantc, Ping timeout: 272 seconds) | |
19:41 | AlexPortable has joined IRC (AlexPortable!uid7568@gateway/web/irccloud.com/x-qsvfevgtzzkmqtfa) | |
19:42 | gbti has joined IRC (gbti!~gbti@unaffiliated/gbit) | |
19:46 | telex has left IRC (telex!teletype@freeshell.de, Remote host closed the connection) | |
19:48 | telex has joined IRC (telex!teletype@freeshell.de) | |
20:09 | vagrantc has joined IRC (vagrantc!~vagrant@freegeek/vagrantc) | |
20:16 | alkisg has left IRC (alkisg!~alkisg@ubuntu/member/alkisg, Remote host closed the connection) | |
20:55 | Faith has left IRC (Faith!~paty@unaffiliated/faith, Quit: Saindo) | |
21:06 | vmlintu has left IRC (vmlintu!~vmlintu@a91-152-200-70.elisa-laajakaista.fi, Ping timeout: 264 seconds) | |
21:07 | FrozenZia has left IRC (FrozenZia!pbrown@evo.paivola.fi, Ping timeout: 250 seconds) | |
21:09 | FrozenZia has joined IRC (FrozenZia!~pbrown@evo.paivola.fi) | |
23:03 | adrianorg has left IRC (adrianorg!~adrianorg@179.187.29.96.dynamic.adsl.gvt.net.br, Ping timeout: 264 seconds) | |
23:04 | adrianorg has joined IRC (adrianorg!~adrianorg@179.179.76.27) | |
23:16 | ricotz has left IRC (ricotz!~rico@ubuntu/member/ricotz, Quit: Ex-Chat) | |
23:31 | AlexPortable has left IRC (AlexPortable!uid7568@gateway/web/irccloud.com/x-qsvfevgtzzkmqtfa, Quit: Connection closed for inactivity) | |
23:36 | andygraybeal has joined IRC (andygraybeal!~andy@h202.49.188.173.dynamic.ip.windstream.net) | |