PAM: External radius for password / internal LDAP for the rest

2012-12-06 Thread Denny Schierz
hi, at the moment we importing every day students from a external LDAP server and copy them into our local LDAP tree. So we have a own password database, in LDAP. Now we have access to the main radius for the whole university so we can authenticate most of our users via the radius, but not all.

Re: Squeeze|Cups: pdftops and high CPU load

2012-11-11 Thread Denny Schierz
hi, Am 09.11.2012 um 16:32 schrieb Brian : > No, you will need Wheezy at least. The switching from Ghostscript to > Poppler is done via the cups-filters package, which does not exist in > Squeeze. phu … I'am unsure, but this machine is only a print server, so maybe I can Wheezy give a try … the

Squeeze|Cups: pdftops and high CPU load

2012-11-09 Thread Denny Schierz
hi, I'am admin from a poolroom with 100 diskless clients from a university and have problems with Cups under Squeeze and high CPU load, if students printing PDFs (which is mostly the default case) . I can see that the process "pdftops" takes 100% CPU for several seconds or up to 3-4 minutes, wh

Cups: Shared vs unshared priner and broadcasts

2012-10-26 Thread Denny Schierz
hi, we have a big PC poolroom with 3 printers, that are shared and used via broadcast. The clients can use them, without any password. These printers are also available for the external users with there own laptops. Access to them is only allowed via username/password, but the printers aren't s

(solved) Re: Squeeze Debootstrap stoops on NFS4 Solaris10 share (on zfs dataset)

2012-04-24 Thread Denny Schierz
Am 24.04.2012 um 13:58 schrieb Denny Schierz: > hi, > > I have problems to get debootstrap squeeze /path/to/nfs4_solaris/share. It > extracting several archives and than you get a prompt, without any messages. > > [...] > I: Extracting libtext-wrapi18n-perl... > I

Squeeze Debootstrap stoops on NFS4 Solaris10 share (on zfs dataset)

2012-04-24 Thread Denny Schierz
hi, I have problems to get debootstrap squeeze /path/to/nfs4_solaris/share. It extracting several archives and than you get a prompt, without any messages. [...] I: Extracting libtext-wrapi18n-perl... I: Extracting mawk... I: Extracting libncurses5... I: Extracting ncurses-base... I: Extracting

Re: FAI Squeeze and SPARC

2012-02-16 Thread Denny Schierz
hi, I'm closer to success: boot net3:dhcp root=/dev/nfs boot=live init=/init nfsroot:192.168.1.1:/srv/fai-sparc/nfsroot ip=eth3: debug the live.log shows: + mount -t aufs -o noatime,noxino,dirs=/cow=rw:/live/image/live/filesystem.dir=rr aufs /root mount: mounting aufs on /root failed:

FAI Squeeze and SPARC

2012-02-16 Thread Denny Schierz
hi, I try to get FAI working for my SPARC machines and build a own kernel and let the kernel create the initrd. The most problem is the size of the tftp bootimage, which does not exceed 9.5MB, otherwise it can't load anymore. The complete SPARC environment was create under the target (config +

Re: Squeeze64: LD_LIBRARY_PATH / ignored or overwritten under X *SOLVED*

2012-01-13 Thread Denny Schierz
hi, Am 12.01.2012 um 23:11 schrieb Andrei Popescu: > On Jo, 12 ian 12, 12:58:42, Denny Schierz wrote: >> >> What could be the problem? > > Your display manager doesn't source the system shell configuration > files. If you need a solution per user put that stuff

Re: Squeeze64: LD_LIBRARY_PATH / ignored or overwritten under X

2012-01-12 Thread Denny Schierz
hi, Am 12.01.2012 um 13:56 schrieb emmanuel segura: > Try to use /etc/ld.so.conf for load your library nope, Sun Java parses the LD_LIBRARY_PATH variable, so it won't work: https://bugs.launchpad.net/ubuntu/+source/xorg/+bug/366728 http://www.mail-archive.com/ubuntu-bugs@lists.ubuntu.com/msg1511

Squeeze64: LD_LIBRARY_PATH / ignored or overwritten under X

2012-01-12 Thread Denny Schierz
hi, I've created a file /etc/profile.d/path.sh with: LD_LIBRARY_PATH="$LD_LIBRARY_PATH:/usr/lib/jni" export LD_LIBRARY_PATH If you log in on a plain shell, it works, but if you log in via X (kde/gnome/fluxbox) and open a terminal (konsole/gnome-terminal/xterm) my special path "/usr/lib/jni" i

Squeeze: Create LVM from 2x raid5 + 12x 2TB disks

2011-11-01 Thread Denny Schierz
hi, my problem is, that I loosing several terabytes 12 x 2TB I create on one JBOD with 12 disks two raid 5 with one spare: mdadm --create /dev/md7 --level=5 -x 1 --raid-disks=5 --bitmap=internal /dev/sd["cdefgh"]1 mdadm --create /dev/md8 --level=5 -x 1 --raid-disks=5 --bitmap=internal /de

LDAP: Switch to SHA512 Hash Lenny/Squeeze

2011-10-17 Thread Denny Schierz
hi, we want switch from old DES crypt to SHA512 on our Lenny and Squeeze images. It works for local accounts, but I'm not sure, if it works also in LDAP. If I change the password from a LDAP user, than I expecting a longer string: local user: foobar:$6$rounds=65536$7NJOqSFw $UDB6zSUxHiFwnTs/cZv

Re: Squeeze: Possible? Don't resolv NFS Links/path

2011-09-08 Thread Denny Schierz
hi, Am Donnerstag, den 08.09.2011, 11:30 +0100 schrieb Darac Marjal: > Presumably you have a symlink such as: > /home/foobar -> /nethome/disc01/users/homes/foobar > > You could try using pam-mount to create a bind mount in /home/$user. I'm not sure, if it fits for ~2000 students ... but intere

Squeeze: Possible? Don't resolv NFS Links/path

2011-09-08 Thread Denny Schierz
hi, We have the NFS homes on something like: /nethome/disc01/users/homes/foobar /nethome/disc02/users/homes/bla /nethome/disc03/users/homes/golem and a special mountpoint for /home, that contains links to the real homepath: pwd shows "/nethome/disc02/users/homes/bla" instead of /home/bla. But n

Why nfs fstab entries need if-up? -> kernel level autoconfiguration / initramfs

2011-08-30 Thread Denny Schierz
hi, from my point of view, it is a bug: I build a new diskless rootfs based on Squeeze and most works, but NFS mounts from /etc/fstab. I search a very long time, whats the reason and found it. This enries are only mounted, if the if-up.d/mountnfs is executed. But in my case, it doesn't work, becau

Re: sed or awk: decode base64 string in passwd-like file

2011-07-01 Thread Denny Schierz
hi, Am Freitag, den 01.07.2011, 00:24 +0200 schrieb Javier Barroso: > perl -F: -a -ne ' $F1=`echo $F[1] | openssl base64 -d`; print join > (":",$F[0],$F1,@F[2 .. $#F])' file thanks, I try it :-) cu Denny signature.asc Description: This is a digitally signed message part

Re: sed or awk: decode base64 string in passwd-like file

2011-07-01 Thread Denny Schierz
hi, Am Freitag, den 01.07.2011, 00:03 +0200 schrieb Arno Schuring: > > echo e0NSWVBUfVUx= | openssl base64 -d > I certainly hope you're not expecting to recover the plaintext nope :-) They are still crypted, but readable for other Daemons, like Dovecot: If you do some like: echo e0NSWVBUfVUx=

sed or awk: decode base64 string in passwd-like file

2011-06-29 Thread Denny Schierz
hi, I have a file with strings like: tes...@domain.foo:e0NSWVBUfVUx=:500:12002::/imap/spool/domain.foo/%1n/% n:storage=50 I need to decode the second field (password field), with something like: echo e0NSWVBUfVUx= | openssl base64 -d How can I do this with all other lines? I have already a sm

NFS rootfs initramfs NFSv4

2011-03-11 Thread Denny Schierz
hi, we want to use the security advantages from NFSv4 for our diskless clients. I Build the initrams under Squeeze but the client won't boot, if I tell Solaris10 to accept NFSv4 only :-/ I saw the bug #409271 (http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=409271) for Lenny, but why doesn't sup

Clarkdale VGA (HDMI) support under Lenny?

2011-03-07 Thread Denny Schierz
hi, we want to change the studies pc pool and switch to a new i3 Clarkdale CPU with integrated graphic card. We have a recently kernel (2.6.36), running, but how good is the support from Lenny itself? The display is connected via HDMI. The mainboard is a Zotac H55ITX-C-E. Any suggestions? cu den

Lenny -> Squeeze : Apache2:LDAP SSL auth not working anymore

2011-03-06 Thread Denny Schierz
hi, after upgrading Lenny to Squeeze, ldap auth over .htacces/virtual-host.config stops working when using SSL. I've searched hours on friday and though packages are missing or broken. Apache2 brings only "Internal Server Error", but nothing in the error/debug logfiles. Apache asks for the use

Re: Two node storage failover with lvm and ISCSI

2011-02-24 Thread Denny Schierz
hi, Am Montag, den 21.02.2011, 17:16 -0600 schrieb Stan Hoeppner: > I'm guessing your setup is different than this or you wouldn't be > askig > about RAID. Could you please describe your storage back end? 4 x LSI 630J Storage with 12 x SAS HDD connected to a SAS Switch. From the SAS switch one

Re: Two node storage failover with lvm and ISCSI

2011-02-21 Thread Denny Schierz
hi Stan, Am Sonntag, den 20.02.2011, 20:13 -0600 schrieb Stan Hoeppner: > It's not clear to me at this point if you need real time > file/filesystem sharing or simply manual fail over from a dead host to > a backup server. than it's my fault :-) I want failover (the second in your words). If nod

Re: Two node storage failover with lvm and ISCSI

2011-02-20 Thread Denny Schierz
hi, Am Freitag, den 18.02.2011, 20:37 +0800 schrieb Justin Jereza: > I'd consider running clvm + gfs2 instead. That way, both nodes can > stay up and connected to the same filesystem at the same time. The > only decision left would be which node to use. OTOH, you can have an > HA configuration as

Two node storage failover with lvm and ISCSI

2011-02-18 Thread Denny Schierz
hi, we have two nodes connected to one big SAS storage (LSI 630j Jbod) with SAS HBAs and they can see all disks at same time. Now we want build a failover construct for lvm with ISCSI: LSI Jbod -> node* | raid | lvm | ISCSI -> Global IP ->> Client If the primary node fails, start raid on node tw

Re: Lenny Apache2: ReverseProxy -> https -> http://localhost:port

2011-01-26 Thread Denny Schierz
hi, Am Montag, den 24.01.2011, 11:41 -0700 schrieb Bob Proulx: > Turn the rewrite engine on and then try it again. I think that is the > missing component for you. > > RewriteEngine On nothing helps. It's all the same. Maybe a bug, or unsupported. Or a configuration problem with the proxy mo

Lenny Apache2: ReverseProxy -> https -> http://localhost:port

2011-01-24 Thread Denny Schierz
hi, I don't know, whats the problem: My ReverseProxy works with non-ssl to non-ssl, but not from ssl to non-ssl: == NameVirtualHost 1.2.3.4:443 ServerAdmin webmas...@foobar.bla ServerName www.foobar.bla SSLEngine on SSLCertificateFile "/etc/ssl/c

Re: NIS: /etc/nsswitch seems (a bit) ignored from /usr/bin/passwd *solved*

2010-05-10 Thread Denny Schierz
hi, nscd was the problem. He cached the local passwd ... cu denny signature.asc Description: Dies ist ein digital signierter Nachrichtenteil

NIS: /etc/nsswitch seems (a bit) ignored from /usr/bin/passwd

2010-05-08 Thread Denny Schierz
hi, I have a real strange problem. We have a NIS system with Debian Lenny clients and LDAP as second system, but LDAP is not the problem here. I want, that the user have to use the passwd command (cause of cracklib support via pam). Here some facts on one client: /etc/nsswitch.conf passwd: file

Re: compiling ZSNES from source

2009-06-27 Thread Denny Schierz
hi, Am Samstag, den 27.06.2009, 13:59 +0800 schrieb Umarzuki Mochlis: > # sdl-config --version > 1.2.13 > that is weird. > config.log >> http://pastebin.com/f5459ec04 > hope somebody can give me direction on solving this. you need the header package from sdl: aptitude install libsdl1.2-dev cu

Lenny/Ubuntu: ipsec over ipv6

2009-06-26 Thread Denny Schierz
hi, i don't get it working. I want to create a vpn tunnel between two computers connected with a sixxs IPv6 address. I use on one side Debian Lenny with freeswan and on the other side Ubuntu 8.10 (intrepid). my ipsec conf and verify: left: ### # ipsec verify Che

Re: manipulate initrd from Debian installer

2008-07-14 Thread Denny Schierz
hi, Mark Allums schrieb: > Ahh, I beg your pardon. no problem at all ;-) > I don't see where you made the modules or installed them. (You said in > your earlier post that you copied them to a directory.) However, it i copied them from /lib/modules to the unpacked initrd dir. > looks like yo

Re: manipulate initrd from Debian installer

2008-07-14 Thread Denny Schierz
hi Mark, Mark Allums schrieb: >> Where to start... well, I don't know your level of sophistication with >> the kernel, but did you compile the kernel the "Debian way" or the shame on me ;-) I used the Debian way via make-kpkg --rootcmd fakeroot kernel_image --initrd --append_to_version=.denny

Re: manipulate initrd from Debian installer

2008-07-14 Thread Denny Schierz
hi Mark, Mark Allums schrieb: >> Where to start... well, I don't know your level of sophistication with >> the kernel, but did you compile the kernel the "Debian way" or the shame on me ;-) I used the Debian way via make-kpkg --rootcmd fakeroot kernel_image --initrd --append_to_version=.denny

manipulate initrd from Debian installer

2008-07-14 Thread Denny Schierz
hi, i have to recompile a kernel (2.6.25.9) to get some hardware working, for example network cards and 3ware SCSI SATA controller from the installer (debian-testing-amd64-netinst.iso). But I'm unable to create a valid kernel and/or initrd. i did something like: # mount loop .iso # copy the cont

manipulate initrd from Debian installer

2008-07-14 Thread Denny Schierz
hi, i have to recompile a kernel (2.6.25.9) to get some hardware working, for example network cards and 3ware SCSI SATA controller from the installer (debian-testing-amd64-netinst.iso). But I'm unable to create a valid kernel and/or initrd. i did something like: # mount loop .iso # copy the cont

Re: how to install ,deb files?

2007-10-22 Thread Denny Schierz
hi, Pantor schrieb: > would you be able to advice, please, how to install .deb files. Say > amaya_wx-9.55-2_i386.deb file that's lie of the Desktop now. > Thank's a lot. dpkg -i ~/Desktop/amaya_wx-9.55-2_i386.deb as root. cu denny -- Stoppt den Überwachungswahn - Stoppt den Schäuble Katalog:

Etch: Problem Grub, AMD64, initrd, Error 16, Inconsistent filesystem structure

2007-09-21 Thread Denny Schierz
hi, i want to install etch on softraid1 with AMD64 packages. Testing grub fails all the time. It is a Root Server without physical access to it. any suggestions? ### root (hd0,0) grub> kernel /vmlinuz kernel /vmlinuz [Linux-bzImage, setup=0x1e00, size=0x16fb27] grub> initrd /initrd.i