[Bug 1810827] Re: /usr/sbin/smbd:6:dump_core:smb_panic_s3:smb_panic:change_to_user_internal:smbd_smb2_request_check_tcon

2019-01-08 Thread Andreas Hasenack
This might be https://bugzilla.samba.org/show_bug.cgi?id=13690 ** Bug watch added: Samba Bugzilla #13690 https://bugzilla.samba.org/show_bug.cgi?id=13690 -- You received this bug notification because you are a member of Ubuntu Server, which is subscribed to samba in Ubuntu. https://bugs.launc

[Bug 1810798] Re: package squid 3.5.12-1ubuntu7.6 failed to install/upgrade: subprocess installed post-installation script returned error exit status 4

2019-01-08 Thread Andreas Hasenack
Thanks for filing this bug in Ubuntu. This is the error reported in the logs: Installing new version of config file /etc/init.d/squid ... Failed to restart squid.service: Transaction is destructive. See system logs and 'systemctl status squid.service' for details. invoke-rc.d: initscript squid, ac

[Bug 1810736] Re: Please merge 1:1.0.74-1 into disco

2019-01-08 Thread Andreas Hasenack
** Merge proposal linked: https://code.launchpad.net/~kstenerud/ubuntu/+source/tgt/+git/tgt/+merge/361434 ** Changed in: tgt (Ubuntu) Assignee: (unassigned) => Karl Stenerud (kstenerud) ** Changed in: tgt (Ubuntu) Status: New => In Progress -- You received this bug notification

[Bug 1810418] Re: package samba-common 2:4.3.11+dfsg-0ubuntu0.16.04.18 failed to install/upgrade: subprocesso script post-installation instalado retornou erro do status de saída 10

2019-01-08 Thread Andreas Hasenack
This is the error: dpkg: erro ao processar o pacote samba-common (--configure): subprocesso script post-installation instalado retornou erro do status de saída 10 Unfortunately there isn't much to go on here. If you are still willing to help, I would ask you do edit /var/lib/dpkg/info/samba-com

[Bug 1809003] Re: version mismatch in smartmontools?

2019-01-08 Thread Andreas Hasenack
Our package is currently a sync from debian, so as soon as Debian updates it over there, we will get it in ubuntu as well. For the moment, I'll mark this bug as low prio, as it's not clear what issues the version mismatch is causing other than, well, being a mismatch. ** Changed in: smartmontools

[Bug 1807246] Re: after upgrading to bionic, my session forgets who I am frequently

2019-01-08 Thread Andreas Hasenack
** Changed in: sssd (Ubuntu) Assignee: (unassigned) => Andreas Hasenack (ahasenack) ** Changed in: sssd (Ubuntu) Importance: Undecided => Medium ** Changed in: sssd (Ubuntu) Status: Triaged => In Progress -- You received this bug notification because you are a member

[Bug 1324062] Re: No lua 5.2 support

2019-01-08 Thread Andreas Hasenack
** Changed in: nginx (Ubuntu) Importance: High => Wishlist -- You received this bug notification because you are a member of Ubuntu Server, which is subscribed to apache2 in Ubuntu. https://bugs.launchpad.net/bugs/1324062 Title: No lua 5.2 support To manage notifications about this bug go

[Bug 1807439] Re: openvpn crashes when run with fips openssl

2019-01-08 Thread Andreas Hasenack
** Also affects: openvpn (Ubuntu Cosmic) Importance: Undecided Status: New -- You received this bug notification because you are a member of Ubuntu Server, which is subscribed to the bug report. https://bugs.launchpad.net/bugs/1807439 Title: openvpn crashes when run with fips openssl

[Bug 1324062] Re: No lua 5.2 support

2019-01-08 Thread Andreas Hasenack
nginx: trusty: lua 5.1 xenial: lua 5.1 bionic: uses libluajit-5.1.so.2 cosmic: uses libluajit-5.1.so.2 disco: uses libluajit-5.1.so.2 I also quickly grepped the nginx package source in all these ubuntu releases and there is no reference to lua5.2, just lua5.1. ... quick googling ... Found https:

[Bug 1323930] Re: mod_lua.so missing from 14.04 install (apache2-bin, 2.4.7-1ubuntu4))

2019-01-08 Thread Andreas Hasenack
Trusty is almost end-of-life, we don't think it's worth fixing it there. People should have moved on to another LTS by now, given there are two available: xenial and bionic. Sorry this bug remained open and not handled for so long. ** Changed in: apache2 (Ubuntu Trusty) Status: Confirmed =

[Bug 1324062] Re: No lua 5.2 support

2019-01-08 Thread Andreas Hasenack
Disco: apache2-bin has mod_lua linked with lua5.2 Cosmic: apache2-bin has mod_lua linked with lua5.2 Bionic: apache2-bin has mod_lua linked with lua5.2 xenial: apache2-bin has mod_lua linked with lua5.1 trusty: apache2-bin has NO mod_lua (see #1323930) I'm marking the apache2 task as resolved. **

[Bug 1323930] Re: mod_lua.so missing from 14.04 install (apache2-bin, 2.4.7-1ubuntu4))

2019-01-08 Thread Andreas Hasenack
This is easy to fix in trusty, my only question is regarding the change we would be introducing and the SRU policy. Apache in trusty was released with essentially no lua support, and this change would add that back in (as was the original intention). As a consequence, the apache2-bin package would

[Bug 1323930] Re: mod_lua.so missing from 14.04 install (apache2-bin, 2.4.7-1ubuntu4))

2019-01-08 Thread Andreas Hasenack
I added a trusty task to this bug, since it's still not fixed there. I'll mark 1432989 as a duplicate. ** Also affects: apache2 (Ubuntu Trusty) Importance: Undecided Status: New -- You received this bug notification because you are a member of Ubuntu Server, which is subscribed to apac

[Bug 1432989] Re: Apache2 default installation has lua module but no library

2019-01-08 Thread Andreas Hasenack
*** This bug is a duplicate of bug 1323930 *** https://bugs.launchpad.net/bugs/1323930 ** This bug has been marked a duplicate of bug 1323930 mod_lua.so missing from 14.04 install (apache2-bin, 2.4.7-1ubuntu4)) -- You received this bug notification because you are a member of Ubuntu Serve

[Bug 1324062] Re: No lua 5.2 support

2019-01-08 Thread Andreas Hasenack
Nowadays this seems worse, as disco has all 3 main 5.x versions of lua in the repo: andreas@nsnx:~$ rmadison lua5.1 lua5.2 lua5.3 -s disco lua5.1 | 5.1.5-8.1build2 | disco/universe | source, amd64, arm64, armhf, i386, ppc64el, s390x lua5.2 | 5.2.4-1.1build1 | disco | source lua5.2

[Bug 1807439] Re: openvpn crashes when run with fips openssl

2019-01-08 Thread Andreas Hasenack
Thanks for all this testing! Could you please convert the debdiffs into actual merge proposals against openvpn? It's easier to review. For example, the dep3 header in the xenial patch: +Description: Use FIPS algos in openvpn +Bug-Ubuntu: +Forwarded: not-needed +Author: Stephan Mueller +--- +Open

[Bug 1810844] Re: libknet-dev universe dependency

2019-01-07 Thread Andreas Hasenack
** Description changed: corosync is a sync from debian, and in version 3.0.0-1 they added a dependency on libknet-dev (kronos net). In Ubuntu, libknet-dev is in universe. https://salsa.debian.org/ha-team/corosync/commit/ca28efda4c8647ba262367c076e54d4787f529e0 https://salsa.debian.o

[Bug 1810844] Re: libknet-dev universe dependency

2019-01-07 Thread Andreas Hasenack
** Description changed: corosync is a sync from debian, and in version 3.0.0-1 they added a dependency on libknet-dev (kronos net). In Ubuntu, libknet-dev is in universe. https://salsa.debian.org/ha-team/corosync/commit/ca28efda4c8647ba262367c076e54d4787f529e0 https://salsa.debian.o

[Bug 1810844] [NEW] libknet-dev universe dependency

2019-01-07 Thread Andreas Hasenack
Public bug reported: corosync is a sync from debian, and in version 3.0.0-1 they added a dependency on libknet-dev (kronos net). In Ubuntu, libknet-dev is in universe. https://salsa.debian.org/ha-team/corosync/commit/ca28efda4c8647ba262367c076e54d4787f529e0 https://salsa.debian.org/ha-team/corosy

[Bug 1810817] [NEW] FTBFS: test fails during build in s390x

2019-01-07 Thread Andreas Hasenack
act_test_03:391 FAILED memcmp(md5_string, "940cba86658fbceb582faecd2b5975d1", 33) == 0 FAIL test/cabd_test (exit status: 1) ** Affects: libmspack (Ubuntu) Importance: Undecided Assignee: Andreas Hasenack (ahasenack) Status: In Progress ** Affects: libmspack (Debian) Importance: Unknown

[Bug 1810817] Re: FTBFS: test fails during build in s390x

2019-01-07 Thread Andreas Hasenack
Upstream fix: https://github.com/kyz/libmspack/commit/c19e707936947b45cf05bc9aaee68517c6c2aca6 -- You received this bug notification because you are a member of Ubuntu Server, which is subscribed to libmspack in Ubuntu. https://bugs.launchpad.net/bugs/1810817 Title: FTBFS: test fails during bu

[Bug 1807439] Re: openvpn crashes when run with fips openssl

2019-01-07 Thread Andreas Hasenack
Taking a look -- You received this bug notification because you are a member of Ubuntu Server, which is subscribed to the bug report. https://bugs.launchpad.net/bugs/1807439 Title: openvpn crashes when run with fips openssl To manage notifications about this bug go to: https://bugs.launchpad.

[Bug 1806035] Re: smbd fails to start in default config if winbind is running

2018-12-21 Thread Andreas Hasenack
** Changed in: samba (Ubuntu) Assignee: (unassigned) => Andreas Hasenack (ahasenack) ** Changed in: samba (Ubuntu) Status: Confirmed => In Progress -- You received this bug notification because you are a member of Ubuntu Server, which is subscribed to samba in Ubuntu.

[Bug 1808526] Re: package samba 2:4.8.4+dfsg-2ubuntu2.1 failed to install/upgrade: installed samba package post-installation script subprocess returned error exit status 1

2018-12-14 Thread Andreas Hasenack
Thanks for filing this bug in Ubuntu. This is the error that was reported: get_guest_info3 failed with NT_STATUS_NO_SUCH_USER ERROR: failed to setup guest info. get_guest_info3 failed with NT_STATUS_NO_SUCH_USER ERROR: failed to setup guest info. get_guest_info3 failed with NT_STATUS_NO_

[Bug 1806060] Re: Newer versions of killall (Ubuntu 18.04+) fail when signal specified in capitals

2018-12-13 Thread Andreas Hasenack
** Changed in: psmisc (Ubuntu Bionic) Status: Triaged => In Progress ** Changed in: psmisc (Ubuntu Cosmic) Status: Triaged => In Progress ** Changed in: psmisc (Ubuntu Bionic) Importance: Undecided => High ** Changed in: psmisc (Ubuntu Cosmic) Importance: Undecided => High *

[Bug 1807743] Re: QEMU timerfd_create support on PowerPC

2018-12-13 Thread Andreas Hasenack
** Changed in: qemu (Ubuntu Xenial) Status: Confirmed => In Progress ** Changed in: qemu (Ubuntu Xenial) Assignee: (unassigned) => Christian Ehrhardt  (paelzer) -- You received this bug notification because you are a member of Ubuntu Server, which is subscribed to qemu in Ubuntu. ht

[Bug 1808117] Re: package winbind 2:4.7.6+dfsg~ubuntu-0ubuntu2.6 failed to install/upgrade: installed winbind package post-installation script subprocess returned error exit status 1

2018-12-13 Thread Andreas Hasenack
Thanks for filing this bug in Ubuntu. This is the error that was reported: Job for winbind.service failed because the control process exited with error code. See "systemctl status winbind.service" and "journalctl -xe" for details. invoke-rc.d: initscript winbind, action "restart" failed. [0;1;31

[Merge] ~ahasenack/ubuntu/+source/symfony:disco-symfony-3.4.18 into ubuntu/+source/symfony:debian/sid

2018-12-12 Thread Andreas Hasenack
The proposal to merge ~ahasenack/ubuntu/+source/symfony:disco-symfony-3.4.18 into ubuntu/+source/symfony:debian/sid has been updated. Status: Approved => Merged For more details, see: https://code.launchpad.net/~ahasenack/ubuntu/+source/symfony/+git/symfony/+merge/359137 -- Your team Ubuntu

[Bug 1803689] Re: Login with client cert times out

2018-12-12 Thread Andreas Hasenack
Apache will be updated soon in disco. As for this specific bug, I need to setup a test scenario. -- You received this bug notification because you are a member of Ubuntu Server, which is subscribed to apache2 in Ubuntu. https://bugs.launchpad.net/bugs/1803689 Title: Login with client cert time

[Bug 1807177] Re: Package samba-vfs-modules missing file glusterfs.so

2018-12-10 Thread Andreas Hasenack
It's not like that. The Depends field is populated from debian/control, and from automatically calculated dependencies (like that ldd trick). The moment a package lists something in Depends, if that something cannot be installed, then the package itself will not be installed. It doesn't matter if y

[Bug 1630413] Re: segfault in server/mpm/event/event.c:process_socket

2018-12-10 Thread Andreas Hasenack
> However, I would prefer that someone with more Apache experience reviewed the fix. Right, that was actually my (very unclear, sorry) point when I commented on upstream's interest in this, since they would be experienced reviewers. -- You received this bug notification because you are a member

[Bug 1797926] Re: host crashed with SIGABRT in isc_assertion_failed()

2018-12-06 Thread Andreas Hasenack
** Changed in: bind9 (Ubuntu) Assignee: (unassigned) => Andreas Hasenack (ahasenack) ** Changed in: bind9 (Ubuntu) Status: Triaged => In Progress -- You received this bug notification because you are a member of Ubuntu Server, which is subscribed to the bug report.

[Bug 1807177] Re: Package samba-vfs-modules missing file glusterfs.so

2018-12-06 Thread Andreas Hasenack
> Gluster and Samba install independently and the module in question (to my > understanding) > is only enabled if specifically configured If gluster support is enabled and shipped in samba-vfs-modules, which is in main, then this samba-vfs-modules will grow a dependency on gluster- common, which

[Bug 1804648] Re: host utility doesn't support switch -U (force UDP)

2018-12-06 Thread Andreas Hasenack
Upstream bug with patch: https://gitlab.isc.org/isc- projects/bind9/issues/769 -- You received this bug notification because you are a member of Ubuntu Server, which is subscribed to bind9 in Ubuntu. https://bugs.launchpad.net/bugs/1804648 Title: host utility doesn't support switch -U (force U

[Bug 1807177] Re: Package samba-vfs-modules missing file glusterfs.so

2018-12-06 Thread Andreas Hasenack
Thanks for filing this bug in Ubuntu. The Ubuntu samba build does not contain glusterfs support because the glusterfs packages are in the Universe pocket, and samba is in main. As such it cannot depend on glusterfs. In bug https://bugs.launchpad.net/ubuntu/+source/glusterfs/+bug/1274247, an attem

[Bug 1804648] Re: host utility doesn't support switch -U (force UDP)

2018-12-06 Thread Andreas Hasenack
27;T': break; + case 'U': break; case 'W': break; default: show_usage(); I'll give it a try and submit upstream if it works. ** Changed in: bind9 (Ubuntu) Assignee: (unassigned) => Andreas Hasenack (aha

[Bug 1630413] Re: segfault in server/mpm/event/event.c:process_socket

2018-12-05 Thread Andreas Hasenack
I'm not sure how likely this bug is to get attention from upstream for an old version of apache, unless the problem still happens with the latest release. Any ideas? -- You received this bug notification because you are a member of Ubuntu Server, which is subscribed to the bug report. https://bug

[Bug 1680224] Re: auto.smb fails on Windows administrative shares

2018-12-05 Thread Andreas Hasenack
I haven't revisited this yet due to lack of time. Whoever gets to this next should check the current version of autofs, and also the list of available patches for the version shipped in older ubuntu releases. -- You received this bug notification because you are a member of Ubuntu Server, which i

[Bug 1806421] Re: perl_bulk_gets patch breaks some scripts

2018-12-05 Thread Andreas Hasenack
What is the failure you get when running https://github.com/alaskacommunications/nagios_check_keepalived/blob/master/check_keepalived_vrrp.pl on ubuntu bionic? You only showed the undef errors when switching to SNMPv1 -- You received this bug notification because you are a member of Ubuntu Server

[Bug 1806501] Re: package amavisd-new 1:2.11.0-1ubuntu2 failed to install/upgrade: installed amavisd-new package post-installation script subprocess returned error exit status 1

2018-12-05 Thread Andreas Hasenack
Thanks for filing this bug in Ubuntu. This is the error that was reported in the logs you supplied: invoke-rc.d: initscript amavis, action "start" failed. ● amavis.service - LSB: Starts amavisd-new mailfilter Loaded: loaded (/etc/init.d/amavis; generated) Active: failed (Result: exit-code) s

[Bug 1806421] Re: perl_bulk_gets patch breaks some scripts

2018-12-05 Thread Andreas Hasenack
Link to mentioned patch: https://sourceforge.net/p/net- snmp/patches/1278/ -- You received this bug notification because you are a member of Ubuntu Server, which is subscribed to net-snmp in Ubuntu. https://bugs.launchpad.net/bugs/1806421 Title: perl_bulk_gets patch breaks some scripts To man

[Bug 1806491] Re: package mysql-server-5.7 5.7.24-0ubuntu0.18.04.1 failed to install/upgrade: installed mysql-server-5.7 package post-installation script subprocess returned error exit status 1

2018-12-05 Thread Andreas Hasenack
Thanks for filing this bug in Ubuntu. This is the error reported in the logs: ERROR: Unable to start MySQL server: mysqld: [ERROR] Found option without preceding group in config file /etc/mysql/my.cnf at line 23! mysqld: [ERROR] Fatal error in defaults handling. Program aborted! All config optio

[Bug 1792298] Re: keepalived: MISC healthchecker's exit status is erroneously treated as a permanent error

2018-12-05 Thread Andreas Hasenack
That patch is applied upstream in the package shipped in bionic and later ** Also affects: keepalived (Ubuntu Xenial) Importance: Undecided Status: New ** Changed in: keepalived (Ubuntu) Status: Triaged => Fix Released ** Changed in: keepalived (Ubuntu Xenial) Status: New

[Bug 1792298] Re: keepalived: MISC healthchecker's exit status is erroneously treated as a permanent error

2018-12-05 Thread Andreas Hasenack
Thanks for the patch and testing instructions ** Tags added: bitesize server-next ** Changed in: keepalived (Ubuntu) Status: Incomplete => Triaged ** Changed in: keepalived (Ubuntu) Importance: Undecided => Medium -- You received this bug notification because you are a member of Ubun

[Bug 1627083] Re: ipt_CLUSTERIP is deprecated and it will removed soon, use xt_cluster instead

2018-12-05 Thread Andreas Hasenack
For strongswan, I found a reference in a 2018 workshop to work on xt_cluster support: https://wiki.strongswan.org/projects/strongswan/wiki/Linux_IPsec_Workshop_2018 No open bug reports about moving from ipt_CLUSTERIP to xt_cluster, just references in old bugs about how that was wanted, but just no

[Bug 1773956] Re: [apparmor] missing entry for CLUSTERIP (used by strongswan HA plugin)

2018-12-05 Thread Andreas Hasenack
** Changed in: strongswan (Ubuntu Cosmic) Status: Incomplete => Confirmed ** Changed in: strongswan (Ubuntu Bionic) Status: Incomplete => Confirmed -- You received this bug notification because you are a member of Ubuntu Server, which is subscribed to the bug report. https://bugs.l

[Bug 1780534] Re: Default usr.lib.ipsec.stroke profile causes segfault for 'ipsec status'

2018-12-05 Thread Andreas Hasenack
** Changed in: strongswan (Ubuntu) Status: Triaged => In Progress ** Changed in: strongswan (Ubuntu) Assignee: (unassigned) => Christian Ehrhardt  (paelzer) -- You received this bug notification because you are a member of Ubuntu Server, which is subscribed to the bug report. https:

[Bug 1773956] Re: [apparmor] missing entry for CLUSTERIP (used by strongswan HA plugin)

2018-12-05 Thread Andreas Hasenack
** Changed in: strongswan (Ubuntu) Status: Triaged => In Progress ** Changed in: strongswan (Ubuntu) Assignee: (unassigned) => Christian Ehrhardt  (paelzer) -- You received this bug notification because you are a member of Ubuntu Server, which is subscribed to the bug report. https:

[Bug 1795813] Re: fix for SIGSEGV when using mysql plugin

2018-12-05 Thread Andreas Hasenack
** Changed in: strongswan (Ubuntu) Status: Triaged => In Progress ** Changed in: strongswan (Ubuntu) Assignee: (unassigned) => Christian Ehrhardt  (paelzer) -- You received this bug notification because you are a member of Ubuntu Server, which is subscribed to the bug report. https:

[Bug 1806401] Re: Please merge a 5.7.x version for Ubuntu 19.04

2018-12-05 Thread Andreas Hasenack
** Changed in: strongswan (Ubuntu) Status: Triaged => In Progress ** Changed in: strongswan (Ubuntu) Assignee: (unassigned) => Christian Ehrhardt  (paelzer) -- You received this bug notification because you are a member of Ubuntu Server, which is subscribed to strongswan in Ubuntu.

[Bug 1806035] Re: smbd fails to start in default config if winbind is running

2018-12-04 Thread Andreas Hasenack
** Tags added: block-proposed -- You received this bug notification because you are a member of Ubuntu Server, which is subscribed to samba in Ubuntu. https://bugs.launchpad.net/bugs/1806035 Title: smbd fails to start in default config if winbind is running To manage notifications about this

[Bug 1442972] Re: Unable to access location Failed to mount Windows share: Invalid argument

2018-12-04 Thread Andreas Hasenack
Please open a new bug about it, using apport-bug if possible, and stating the problem accurately, i.e., which command or action failed, its parameters, etc. -- You received this bug notification because you are a member of Ubuntu Server, which is subscribed to samba in Ubuntu. https://bugs.launc

[Bug 1786508] Re: Use of uninitialized value $ARGV[0] in string eq at /usr/sbin/eximstats line 563

2018-12-03 Thread Andreas Hasenack
The only dep8 failure now is sbuild on i386, and it's because of https://bugs.launchpad.net/ubuntu/+source/sbuild/+bug/1806388 That can only be fixed via an SRU of sbuild itself. -- You received this bug notification because you are a member of Ubuntu Server, which is subscribed to exim4 in Ubun

[Bug 1791139] Re: postfix-mysql package upgrade results in server configuration error

2018-12-03 Thread Andreas Hasenack
The only dep8 failure now is sbuild on i386, and it's because of https://bugs.launchpad.net/ubuntu/+source/sbuild/+bug/1806388 That can only be fixed via an SRU of sbuild itself. -- You received this bug notification because you are a member of Ubuntu Server, which is subscribed to the bug repor

[Bug 1806035] Re: smbd fails to start in default config if winbind is running

2018-11-30 Thread Andreas Hasenack
** Bug watch added: Samba Bugzilla #13697 https://bugzilla.samba.org/show_bug.cgi?id=13697 ** Also affects: samba via https://bugzilla.samba.org/show_bug.cgi?id=13697 Importance: Unknown Status: Unknown -- You received this bug notification because you are a member of Ubuntu Serv

[Bug 1806035] Re: smbd fails to start in default config if winbind is running

2018-11-30 Thread Andreas Hasenack
>From >https://docs.fedoraproject.org/en-US/fedora/f29/release-notes/sysadmin/File_Servers/: """ Finally, Samba 4.9 differentiates between anonymous and guest access via SMB protocol. A side effect of this is that it is now required to have a mapping for BUILTIN\Guests group. The mapping can be

[Bug 1806035] Re: smbd fails to start in default config if winbind is running

2018-11-30 Thread Andreas Hasenack
Mailing list threads: - https://lists.samba.org/archive/samba/2018-November/219540.html "Standalone Update 4.8.5 -> 4.9.2 smb fails to start ERROR: failed to setup guest info" - https://lists.samba.org/archive/samba/2018-October/219059.html "smb.service fails to start after openSUSE Tumbleweed up

[Bug 1806035] [NEW] smbd fails to start in default config if winbind is running

2018-11-30 Thread Andreas Hasenack
Public bug reported: In disco, with samba 4.9.x, smbd fails to start in the default configuration if winbind is already running: sudo apt install samba winbind ... invoke-rc.d: initscript smbd, action "start" failed. ... Errors were encountered while processing: samba E: Sub-process /usr/bin/dpk

[Bug 1773956] Re: [apparmor] missing entry for CLUSTERIP (used by strongswan HA plugin)

2018-11-29 Thread Andreas Hasenack
@xooloo, can you please show the actual apparmor DENIED messages from your logs? A simple configuration setup that is enough to show them would also be extremely helpful. I'm hoping there is no need to establish a vpn with another node to show this issue. -- You received this bug notification bec

[Bug 201786] Re: ssh Agent admitted failure to sign using the key on big endian machines

2018-11-29 Thread Andreas Hasenack
According to https://bugs.launchpad.net/ubuntu/+source/seahorse/+bug/1420522 it's fixed in seahorse 3.30, which is present in ubuntu cosmic and later. >From https://bugzilla.redhat.com/show_bug.cgi?id=1435924, this should >reproduce the problem: 1. Generate a ssh key using the keytype ed25519 and

[Bug 1805178] Re: Apparmor should include letsencrypt directory for Slapd

2018-11-29 Thread Andreas Hasenack
I'm removing apparmor from the affected list because the apparmor profile is shipped with slapd. ** No longer affects: apparmor (Ubuntu) -- You received this bug notification because you are a member of Ubuntu Server, which is subscribed to openldap in Ubuntu. https://bugs.launchpad.net/bugs/180

[Bug 1805178] Re: Apparmor should include letsencrypt directory for Slapd

2018-11-29 Thread Andreas Hasenack
Thanks for filing this bug in Ubuntu. First, let me suggest that any local modifications to apparmor profiles be made in /etc/apparmor.d/local instead of the profile in /etc/apparmor.d, otherwise you will get dpkg conf prompts with every upgrade. For slapd, for example, you have /etc/apparmor.d/lo

[Bug 1805115] Re: problem with (ubuntu/cosmic)mawk /^[[:space:]]*

2018-11-29 Thread Andreas Hasenack
Confirmed working with gawk, failing with mawk. -- You received this bug notification because you are a member of Ubuntu Server, which is subscribed to mawk in Ubuntu. https://bugs.launchpad.net/bugs/1805115 Title: problem with (ubuntu/cosmic)mawk /^[[:space:]]*https://bugs.launchpad.net/ubun

[Bug 1805115] Re: problem with (ubuntu/cosmic)mawk /^[[:space:]]*

2018-11-29 Thread Andreas Hasenack
Fails from trusty onwards, all the way to disco. use this to test: printf %s '; rel="next", ; rel="last"' | mawk ' BEGIN { RS=", "; FS="; "; OFS=": " }

[Bug 1805017] Re: package mysql-server-5.7 5.7.24-0ubuntu0.18.04.1 failed to install/upgrade: installed mysql-server-5.7 package post-installation script subprocess returned error exit status 1

2018-11-29 Thread Andreas Hasenack
Thanks for filing this bug in Ubuntu. This is the error: Paramétrage de mysql-server-5.7 (5.7.24-0ubuntu0.18.04.1) ... update-alternatives: utilisation de « /etc/mysql/mysql.cnf » pour fournir « /etc/mysql/my.cnf » (my.cnf) en mode automatique Renaming removed key_buffer and myisam-recover option

[Bug 1790430] Re: Nonce issues with auth_digest when running behind an reverse proxy

2018-11-29 Thread Andreas Hasenack
I'm sorry, but I need a better reproducer case. You said initial auth is happening at the apache reverse proxy, and that is a rhel machine if I understood you correctly, so not applicable here. -- You received this bug notification because you are a member of Ubuntu Server, which is subscribed to

[Bug 1805791] Re: package samba 2:4.7.6+dfsg~ubuntu-0ubuntu2.5 failed to install/upgrade: installed samba package post-installation script subprocess returned error exit status 1 The error message com

2018-11-29 Thread Andreas Hasenack
Thanks for filing this bug in Ubuntu. This seems to be a duplicate of bug #1731502, where there was no network available when nmbd was restarted: Status: "nmbd: No local IPv4 non-loopback interfaces available, waiting for interface ..." This is weird, because you say the error happens everyti

[Bug 1606331] Re: StringIndexOutOfBoundsException - Tomcat8.0.32

2018-11-28 Thread Andreas Hasenack
Uploaded to xenial-proposed, waiting for SRU team approval. ** Changed in: tomcat8 (Ubuntu Xenial) Assignee: Nish Aravamudan (nacc) => Karl Stenerud (kstenerud) -- You received this bug notification because you are a member of Ubuntu Server, which is subscribed to the bug report. https://bu

[Bug 551701] Re: odbc_config missing

2018-11-26 Thread Andreas Hasenack
Confirmed by running MonetDB's ./configure that unixodbc 2.3.6-0.1 or later (in cosmic and later) is fine: ... checking odbcinst.h usability... yes checking odbcinst.h presence... yes checking for odbcinst.h... yes checking for SQLGetPrivateProfileString in -lodbcinst... yes checking for SQLGetDia

[Bug 1772858] Re: Please backport Postfix 3.3.1 bugfix release to bionic (for Docker/container deployments)

2018-11-26 Thread Andreas Hasenack
Thanks for filing this bug in Ubuntu, and sorry for getting to it so late. This seems like a reasonable bugfix request. Upstream patch that brought postfix from 3.3.0 to 3.3.1 and includes the fix: https://github.com/vdukhovni/postfix/commit/1d4b403e285f09103644695560cca406c5400163 The actual fi

[Bug 1772915] Re: Documentation on PHP session garbage collection needs updating.

2018-11-26 Thread Andreas Hasenack
Thanks for filing this bug in Ubuntu, and sorry for taking so long to get to it. This seems like a reasonable request. ** Changed in: php5 (Ubuntu) Status: New => Triaged ** Changed in: php5 (Ubuntu) Importance: Undecided => Low ** Tags added: bitesize -- You received this bug notif

[Bug 1769521] Re: package mysql-server-5.7 5.7.22-0ubuntu0.16.04.1 failed to install/upgrade: subprocess installed post-installation script returned error exit status 1

2018-11-26 Thread Andreas Hasenack
I was in error in my previous triage. The apparmor errors are not related to this bug I believe, but probably just a duplicate of https://bugs.launchpad.net/ubuntu/+source/mysql-5.7/+bug/1735424 I just tried on a fresh xenial lxd the command "sudo tasksel install lamp-server" and it worked flawles

[Bug 1529355] Re: authzprovideralias-defined authz provider can't be used in Ubuntu14

2018-11-26 Thread Andreas Hasenack
Package uploaded to trusty-proposed, pending approval by the sru team. -- You received this bug notification because you are a member of Ubuntu Server, which is subscribed to the bug report. https://bugs.launchpad.net/bugs/1529355 Title: authzprovideralias-defined authz provider can't be used

[Bug 1529355] Re: authzprovideralias-defined authz provider can't be used in Ubuntu14

2018-11-26 Thread Andreas Hasenack
** Description changed: [Impact] AuthzProviderAlias are invisible to the authz provider inside a virtualhost stanza. This is a regression from hardy. Sites affected by this bug might be leaking pages that were denied previously, because access is just granted. [Test Case] On

[Bug 1805046] Re: Vokoscreen problem upon first ever attempt to install. package samba 2:4.3.11+dfsg-0ubuntu0.16.04.13 failed to install/upgrade: subprocess installed post-installation script returned

2018-11-26 Thread Andreas Hasenack
Thanks for filing this bug in Ubuntu. This is the error that was logged: Job for smbd.service failed because the control process exited with error code. See "systemctl status smbd.service" and "journalctl -xe" for details. invoke-rc.d: initscript smbd, action "start" failed. ● smbd.s

[Bug 1529355] Re: authzprovideralias-defined authz provider can't be used in Ubuntu14

2018-11-24 Thread Andreas Hasenack
** Description changed: [Impact] AuthzProviderAlias are invisible to the authz provider inside a virtualhost stanza. This is a regression from hardy. Sites affected by this bug might be leaking pages that were denied previously, because access is just granted. [Test Case] On

[Bug 1529355] Re: authzprovideralias-defined authz provider can't be used in Ubuntu14

2018-11-24 Thread Andreas Hasenack
** Description changed: [Impact] + AuthzProviderAlias are invisible to the authz provider inside a virtualhost stanza. This is a regression from hardy. - * An explanation of the effects of the bug on users and +  * An explanation of the effects of the bug on users and - * justification

[Bug 1529355] Re: authzprovideralias-defined authz provider can't be used in Ubuntu14

2018-11-24 Thread Andreas Hasenack
** Description changed: + [Impact] + + * An explanation of the effects of the bug on users and + + * justification for backporting the fix to the stable release. + + * In addition, it is helpful, but not required, to include an +explanation of how the upload fixes this bug. + + [Test Ca

[Bug 1769304] Re: Apache2 mod_remoteip+rewrite allows client to forge IP address

2018-11-23 Thread Andreas Hasenack
Would be good to have a simple test case for this bug. -- You received this bug notification because you are a member of Ubuntu Server, which is subscribed to the bug report. https://bugs.launchpad.net/bugs/1769304 Title: Apache2 mod_remoteip+rewrite allows client to forge IP address To manag

[Bug 1769304] Re: Apache2 mod_remoteip+rewrite allows client to forge IP address

2018-11-23 Thread Andreas Hasenack
This is fixed in bionic and later. Leaving a task open for xenial. Links to the upstream fix: https://svn.apache.org/viewvc?view=revision&revision=1767483 https://github.com/apache/httpd/commit/950093162e445141c5126e4d11e6466e3184b0ce ** Also affects: apache2 (Ubuntu Xenial) Importance: Undec

[Bug 1529355] Re: authzprovideralias-defined authz provider can't be used in Ubuntu14

2018-11-23 Thread Andreas Hasenack
; In Progress ** Changed in: apache2 (Ubuntu) Assignee: (unassigned) => Andreas Hasenack (ahasenack) -- You received this bug notification because you are a member of Ubuntu Server, which is subscribed to the bug report. https://bugs.launchpad.net/bugs/1529355 Title: authzprovideralias-define

[Bug 1529355] Re: authzprovideralias-defined authz provider can't be used in Ubuntu14

2018-11-23 Thread Andreas Hasenack
https://code.launchpad.net/~ahasenack/ubuntu/+source/apache2/+git/apache2/+ref /trusty-apache-authzalias-1529355 -- You received this bug notification because you are a member of Ubuntu Server, which is subscribed to the bug report. https://bugs.launchpad.net/bugs/1529355 Title: authzprovidera

[Bug 1529355] Re: authzprovideralias-defined authz provider can't be used in Ubuntu14

2018-11-23 Thread Andreas Hasenack
https://github.com/apache/httpd/commit/4f06dd51b464b66f956ae577f068b16486d3920b -- You received this bug notification because you are a member of Ubuntu Server, which is subscribed to the bug report. https://bugs.launchpad.net/bugs/1529355 Title: authzprovideralias-defined authz provider can't

[Bug 1803838] Re: Mailman Upgrade to 2.1.29 - Ubuntu 16.04

2018-11-23 Thread Andreas Hasenack
Current state of mailman in the Security Team's CVE tracker: http://people.canonical.com/~ubuntu-security/cve/pkg/mailman.html At the moment, these are in a needs-triage state: CVE-2018-0618 and CVE-2018-13796 ** CVE added: https://cve.mitre.org/cgi-bin/cvename.cgi?name=2018-0618 ** CVE added:

[Bug 1803838] Re: Mailman Upgrade to 2.1.29 - Ubuntu 16.04

2018-11-23 Thread Andreas Hasenack
A "blanket" bug like this, requesting a big upgrade, is unlikely to be resolved. I think it's best to highlight a specific issue in a specific bug report, even if you end up with multiple reports. Then someone working on it can decide whether it's best to backport a fix, or upgrade the version. Usu

[Bug 1803795] Re: fancontrol shows errors and doesn't seem to work

2018-11-23 Thread Andreas Hasenack
Thanks for filing the upstream bug. That is the best place for this discussion. I'll mark this bug as "confirmed" in the meantime, but we will need a new upstream version or a patch from them to fix this in Ubuntu. ** Changed in: lm-sensors (Ubuntu) Status: Incomplete => Confirmed ** Also

[Bug 1804655] Re: package samba 2:4.7.6+dfsg~ubuntu-0ubuntu2.4 failed to install/upgrade: installed samba package post-installation script subprocess returned error exit status 1

2018-11-22 Thread Andreas Hasenack
*** This bug is a duplicate of bug 1731502 *** https://bugs.launchpad.net/bugs/1731502 Thanks for filing this bug in Ubuntu. This seems to be a duplicate of bug #1731502, where there was no network available when nmbd was restarted: Status: "nmbd: No local IPv4 non-loopback interfaces ava

[Bug 712108] Re: shared ssl session cache support not possible out of the box

2018-11-22 Thread Andreas Hasenack
After 7 years, we better start from scratch, so marking this bug as NEW. ** Changed in: apache2 (Ubuntu) Assignee: Chuck Short (zulcss) => (unassigned) ** Changed in: apache2 (Ubuntu) Status: Confirmed => New -- You received this bug notification because you are a member of Ubuntu S

[Bug 1803795] Re: fancontrol shows errors and doesn't seem to work

2018-11-21 Thread Andreas Hasenack
Thanks for filing this bug in Ubuntu. The error was kind of detected by the script: ... cat: hwmon0/fan1_input: Invalid argument Fan hwmon0/fan1_input has not returned to speed, please investigate! As the output says, it's not guaranteed to work with all motherboards: "Note that many motherbo

[Bug 1803689] Re: Login with client cert times out

2018-11-20 Thread Andreas Hasenack
Just pulling up some commits: mod_ssl: Correctly merge configurations that have client certificates… https://github.com/apache/httpd/commit/c4db6aaf8eabc2cc9849900b08ba4ccd2228da12 mod_ssl: We need to get the SSL_CTX for further processing https://github.com/apache/httpd/commit/5b0b68bdfd5a9ac5de

[Bug 1803689] Re: Login with client cert times out

2018-11-20 Thread Andreas Hasenack
Do you have logs of this failure? I wonder if https://bugs.launchpad.net/ubuntu/+source/apache2/+bug/1802630 is the same issue -- You received this bug notification because you are a member of Ubuntu Server, which is subscribed to apache2 in Ubuntu. https://bugs.launchpad.net/bugs/1803689 Title:

[Bug 1802630] Re: apache ssl auth failed in renegotiation

2018-11-20 Thread Andreas Hasenack
Wonder if it's related to this: https://bugs.launchpad.net/ubuntu/+source/apache2/+bug/1803689 -- You received this bug notification because you are a member of Ubuntu Server, which is subscribed to apache2 in Ubuntu. https://bugs.launchpad.net/bugs/1802630 Title: apache ssl auth failed in ren

[Bug 1735424] Re: apparmor profile needs entries to support NUMA

2018-11-20 Thread Andreas Hasenack
I see the same, plus one more, apparmor denials on a fresh up-to-date bionic system where I just install "mysql-server": [ter nov 20 15:30:58 2018] audit: type=1400 audit(1542741161.387:263): apparmor="DENIED" operation="open" namespace="root//lxd-bionic-mysql_" profile="/usr/sbin/mysqld" name=

[Bug 1658233] Re: missing apparmor rules

2018-11-20 Thread Andreas Hasenack
And also still present in disco: [ter nov 20 15:38:42 2018] audit: type=1400 audit(1542741624.527:358): apparmor="DENIED" operation="open" namespace="root//lxd-disco-mysql_" profile="/usr/sbin/mysqld" name="/sys/devices/system/node/" pid=2842 comm="mysqld" requested_mask="r" denied_mask="r" fsu

[Bug 1658233] Re: missing apparmor rules

2018-11-20 Thread Andreas Hasenack
Confirmed I also see this on bionic. -- You received this bug notification because you are a member of Ubuntu Server, which is subscribed to mysql-5.7 in Ubuntu. Matching subscriptions: main https://bugs.launchpad.net/bugs/1658233 Title: missing apparmor rules To manage notifications about th

[Bug 1803633] Re: package sa-compile 3.4.2-0ubuntu0.14.04.1 failed to install/upgrade: subprocess installed post-installation script returned error exit status 25

2018-11-20 Thread Andreas Hasenack
You should check the output of "apt-cache policy", look for the distribution name in there. They should all be from the same distribution (trusty, for example). You should not have a mix. Ubuntu doesn't do that. I'm sorry but I can't troubleshoot this for you any further, as it's no longer a bug.

[Bug 1803633] Re: package sa-compile 3.4.2-0ubuntu0.14.04.1 failed to install/upgrade: subprocess installed post-installation script returned error exit status 25

2018-11-20 Thread Andreas Hasenack
Indeed, you seem to be using a mix of trusty and xenial packages. In particular, your libc6-dev 2.23-0ubuntu10 package comes from xenial, and your sa-compile 3.4.2-0ubuntu0.14.04.1 comes from trusty. I'm afraid this is not supported and is likely to break, as indeed has happened. The sa-compile p

[Bug 1800159] Re: keepalived ip_vs

2018-11-19 Thread Andreas Hasenack
Can you share your config /etc/keepalived/keepalived.conf ? -- You received this bug notification because you are a member of Ubuntu Server, which is subscribed to keepalived in Ubuntu. https://bugs.launchpad.net/bugs/1800159 Title: keepalived ip_vs To manage notifications about this bug go t

[Bug 1796189] Re: apparmor DENIED errors

2018-11-19 Thread Andreas Hasenack
** Merge proposal unlinked: https://code.launchpad.net/~ahasenack/ubuntu/+source/squid/+git/squid/+merge/359000 -- You received this bug notification because you are a member of Ubuntu Server, which is subscribed to squid in Ubuntu. https://bugs.launchpad.net/bugs/1796189 Title: apparmor D

[Bug 1796189] Re: apparmor DENIED errors

2018-11-19 Thread Andreas Hasenack
Brief irc conversation about these changes, from https://irclogs.ubuntu.com/2018/10/04/%23ubuntu-devel.html#t18:22: out 04 15:22:27 infinity: apply this to /etc/apparmor.d/usr.sbin.squid: https://pastebin.ubuntu.com/p/R6Z84ZdsfP/ out 04 15:22:41 then issue sudo apparmor_parser -r -T -W

<    7   8   9   10   11   12   13   14   15   16   >