golinux | As mentioned at the meet today "Onion site STILL not responding" https://lists.dyne.org/lurker/message/20191213.024743.b00949e3.en.html | 05:55 |
---|---|---|
LeePen | Does anybody know anything about the onion setup? | 11:38 |
LeePen | fsmithred: golinx: That is the new beowulf xfce4-session packages built with xscreensaver as the default. | 11:49 |
LeePen | I also included i3lock as another alternative. | 11:49 |
LeePen | AFAICS it prevents pulling in lightdm. Can you verify it works as you want? | 11:50 |
LeePen | Thanks. | 11:50 |
LeePen | golinux: Sorry for misspelling you :( | 11:50 |
LeePen | I have just had a look on pkgmirror and tor is installed there but not running. Is that the main onion server? | 11:57 |
Evilham | golinux: the onion config is available on the server but is disabled | 11:59 |
Evilham | there is no comment as to why it's disabled | 11:59 |
LeePen | Actually, I think it might be. Looking in syslog.6.gz it went OOM on 6 December as was killed | 12:00 |
LeePen | /var/log/syslog.7.gz:Dec 6 09:29:56 pkgmirror kernel: [60198413.585371] Out of memory: Kill process 29310 (tor) score 11 or sacrifice child | 12:00 |
LeePen | /var/log/syslog.7.gz:Dec 6 09:29:56 pkgmirror kernel: [60198413.585395] Killed process 29310 (tor) total-vm:108356kB, anon-rss:46880kB, file-rss:640kB, shm | 12:00 |
LeePen | Happy if I restart it an see if that helps? | 12:01 |
LeePen | Evilham: where are you seeing disabled onion config on pkgmirror? | 12:12 |
Evilham | LeePen: pkgmstar's nginx settings /etc/nginx/sites-{available,enabled}) | 12:17 |
LeePen | Thanks. Do you know where onion is served from then? | 12:19 |
Evilham | nowhere :-D | 12:20 |
Evilham | it should be that host, it even has the keys | 12:21 |
Evilham | for the hidden service | 12:21 |
Evilham | there is just no documentation as to who why when it was disabled | 12:21 |
LeePen | So the oom tor server is irrelevant? | 12:21 |
rrq | afaict the current (pkgmaster) nginx config serves that domain for localhost | 12:22 |
Evilham | oom? | 12:22 |
rrq | I would have thought you'll need a tor server running | 12:23 |
rrq | to service the toor connectivity, then this tor server would (I guess) access packages via nginx on localhost | 12:23 |
rrq | tooo many ooos | 12:24 |
rrq | (but a toor expert added to this room would make one of us) | 12:24 |
rrq | tooo man ooos | 12:25 |
rrq | (getting late:) | 12:25 |
rrq | (where's my stone now again) | 12:26 |
Evilham | ehm no, that's not the way this works, you run tor (it's running) setup a hidden service (it's setup: /var/lib/tor/hidden_service), setup which ports are forwarded (80 is) then setup the webserver to serve the onion address (this bit isn't set up, apparently willingly, no reason why) | 12:27 |
Evilham | the forwarded ports and so on are setup in /etc/tor/torrc | 12:27 |
Evilham | so: everything is set up, and there is a sites-available config for this (grep -r onion /etc/nginx), it just appears to have been disabled | 12:28 |
Evilham | and there is no mention of any of that in the READMEs | 12:28 |
rrq | but isn't there an enabled service stanza in sites-enabled/pkgmaster ? | 12:29 |
Evilham | O.รด since w hen does grep not follow symlinks?! | 12:31 |
* Evilham goes read man grep again | 12:31 | |
LeePen | I know, I noticed that last week and it suprised me too. | 12:31 |
LeePen | And tor isn't running. It was killed on 6 December by the oom killer | 12:32 |
Evilham | ffs, this is GNU's grep being weird | 12:32 |
Evilham | BSD's grep -r does the thing I expect, it also implements -R, GNU's grep -r doe snot follow symlinks and -R does | 12:32 |
Evilham | aaaaanyway... | 12:32 |
LeePen | So it is there in the nginx config. | 12:33 |
Evilham | did someone just restart the tor service? xD | 12:39 |
LeePen | Yes. me. | 12:40 |
Evilham | well, I think that was all that was needed | 12:40 |
LeePen | Good. | 12:40 |
Evilham | $ torsocks curl devuanfwojg73k6r.onion | 12:40 |
Evilham | did you check what state the daemon claimed to be in before that? | 12:41 |
LeePen | Maybe when we were fiddling with dak an amprolla last weekend the host ran out of memory and culled it. | 12:41 |
LeePen | Evilham: Yes. Not running. | 12:41 |
Evilham | oh | 12:42 |
Evilham | that's... not impossible | 12:42 |
Evilham | that's what you meant by oom tor server | 12:42 |
Evilham | maybe | 12:42 |
LeePen | It was killed on 6 December. | 12:42 |
Evilham | rrq: think it's safe to reboot pkgmaster? | 12:42 |
Evilham | at this point I'd be more confident with just rebooting as that'll make sure everything is up | 12:43 |
rrq | can we go to -infra | 12:43 |
Evilham | aye | 12:43 |
fsmithred | LeePen, it looks like it's working. I did a debootstrap install and then went in and added task-desktop and task-xfce-desktop. I got slim instead of lightdm. But I could not log in - error was something like "can't execute login command" | 16:05 |
fsmithred | I edited the login command in /etc/slim.conf and that fixed it. | 16:05 |
fsmithred | changed 'login_cmd /etc/X11/Xsession %session' | 16:06 |
fsmithred | to: login_cmd exec /bin/bash -login /etc/X11/Xsession %session | 16:06 |
mason | fsmithred: I think you can just add task-desktop and task-xfce-desktop to the end of your debootstrap line and get it all at once. | 16:06 |
fsmithred | oops. First one should have exec before the /etc/X11 | 16:06 |
fsmithred | oh yeah, or --include | 16:07 |
fsmithred | that's ok, I wasn't exactly sure which packages I would install | 16:07 |
fsmithred | forgot the kernel the first time - made it hard to boot | 16:07 |
mason | heh | 16:08 |
fsmithred | oh, I did something else before I edited that line: I installed libpam-ck-connector, which bumped out elogind | 16:09 |
fsmithred | (and libpam-elogind) | 16:09 |
fsmithred | I'll put those back and see if it still works | 16:10 |
fsmithred | yes, it works with either libpam-elogind or libpam-ck-connector | 16:14 |
LeePen | fsmithred: Thanks. I will look at the login cmd later. I think I changed it, but maybe it needed to stay the way it was. | 16:42 |
fsmithred | xscreensaver works | 17:01 |
fsmithred | forgot about that, and I came back to see it working. | 17:01 |
LeePen | fsmithred: Is /etc/X11/Xsession not executable on your system? It is on the ones I have seen. | 19:52 |
fsmithred | LeePen, it is executable | 20:02 |
LeePen | OK. Does login_cmd exec /etc/X11/Xsession work? | 20:04 |
LeePen | Surely we don't need an extra shell? | 20:04 |
fsmithred | LeePen, I get: login_cmd: command not found | 20:15 |
LeePen | OK. I'll just revert my change. | 20:16 |
fsmithred | did I not install something I need? | 20:17 |
fsmithred | also, I was unable to stop slim with '/etc/init.d/slim stop' | 20:17 |
fsmithred | ok, that works now. Not sure what happened. | 20:20 |
LeePen | Great. | 20:21 |
fsmithred | LeePen, just got report that eudev-3.2.2-17 installs and works correctly. | 22:36 |
Generated by irclog2html.py 2.17.0 by Marius Gedminas - find it at https://mg.pov.lt/irclog2html/!