frabbit | what do i have to do to make the output of "lynis audit system" that i write into a file looks liek the output i get when it is displayed on the terminal? | 00:09 |
---|---|---|
frabbit | i mean i catn see the colors when i open that file with lynx for example | 00:10 |
frabbit | *cant | 00:11 |
frabbit | instead i have these (bash?) color codes there | 00:12 |
gnarface | they're ANSI color codes. emacs and bash support them. (off by default in emacs) ... not sure what else. i know lynx won't. web browsers won't. | 00:17 |
gnarface | vim might, but i'd assume if so it's off by default there too | 00:18 |
gnarface | i've only used them in emacs in the built-in shell, but this looks like info for enabling it everywhere: https://stackoverflow.com/questions/23378271/how-do-i-display-ansi-color-codes-in-emacs-for-any-mode | 00:19 |
frabbit | zeah in vim neither sorry forgot to mention | 00:20 |
frabbit | *yeah | 00:20 |
frabbit | oh i have no emacs | 00:21 |
frabbit | i think i use screen then again | 00:21 |
gnarface | there's a link on there for how to enable it in shell-mode, which is much easier | 00:21 |
gnarface | oh, screen might hose emacs | 00:21 |
frabbit | shell-mode? | 00:21 |
gnarface | yes, there's a built-in terminal emulator in emacs | 00:22 |
gnarface | M-x shell | 00:22 |
frabbit | oh i see | 00:22 |
frabbit | ive heard emacs is an os? =D | 00:23 |
gnarface | there have been simpler ones | 00:23 |
frabbit | ok =) | 00:23 |
gnarface | you might want to also make some edits to your ~/.bashrc if you want to make use of those fancy ANSI colors in the emacs shell | 00:24 |
gnarface | mine is from a pretty old copy, but you can probably still figure out what section i changed to this, it's not a big file: http://paste.debian.net/1149650/ | 00:25 |
frabbit | gnarface: but i dont want emacs xD | 00:25 |
frabbit | i just found that colors in lynis audit usefull to quick check important notes | 00:25 |
gnarface | oh, well this ~/.bashrc edit will let you see them in your regular shell too when you use ls | 00:25 |
frabbit | yeah i know | 00:26 |
frabbit | but i wnated to see the colors in a file <( | 00:26 |
frabbit | *;) | 00:26 |
gnarface | yea, but here's a thing about me. the argument "waaa, nothing but emacs will do this so i'm just going to pout" isn't going to gain any traction with me | 00:27 |
frabbit | never mind i will read it like before, on the tty with screen and 1 billion lines to scroll back to xD | 00:27 |
gnarface | i have to assume there's certainly a simpler solution i just don't know what it is. emacs was one of the first linux programs i was exposed to and i shamelessly use it for all kinds of things nothing else can do | 00:28 |
frabbit | gnarface: what? xD i cant translate that | 00:29 |
frabbit | ok | 00:29 |
gnarface | if you're ever in a situation where you've got to open a text file that's too big, and every text editor chokes on it.... try emacs :) | 00:30 |
frabbit | hm.. wipe syncs after it finishes, but that stocks because dd is working on that hdd... | 00:31 |
frabbit | ctrl+c doesnt help... | 00:31 |
frabbit | gnarface: ok =D | 00:31 |
gnarface | sometimes you have to also add patience | 00:31 |
gnarface | you can jam your I/O up good | 00:32 |
frabbit | gnarface: zeah.. but io wait for ten minutes now... =( | 00:32 |
gnarface | i advise avoid doing that | 00:32 |
gnarface | i know what you're talking about, i've done it here accidentally too once or twice. it can take like 20 minutes to unfreeze i think. depending on how you called it you might just have to wait for it to finish | 00:33 |
frabbit | i had that problem once and i killed the wipe proces but then the tty was dead and i got stock there when i changed to that tty... | 00:33 |
gnarface | yea, i don't know a way out of that one. don't do that | 00:33 |
frabbit | ok | 00:33 |
frabbit | it must have been finished already | 00:34 |
frabbit | was just a text file with 200 lines | 00:34 |
frabbit | probably i have to wait for dd to finish | 00:34 |
frabbit | it at 17 GB now... from 160 GB... | 00:35 |
frabbit | xD | 00:35 |
frabbit | *of | 00:35 |
frabbit | since ive installed ssh ive 2 new ports open here. can i close them when im nt using ssh adn open them again when i want to use it, or will that break something? | 01:04 |
gnarface | frabbit: you can just stop sshd, though if you have 2 ports open then you have more than just ssh running; ssh only uses one port | 01:08 |
gnarface | frabbit: (no, that won't break anything) | 01:08 |
frabbit | oh! | 01:08 |
frabbit | so what does that mean that i have two ports open here? =( | 01:08 |
gnarface | it means you need to stop TWO things, not just one | 01:09 |
gnarface | i can only guess what the other thing is. mabye it's portmap? | 01:09 |
gnarface | maybe it's your mail server | 01:09 |
frabbit | xD yeah but u said ssh only uses one port so were did that other ssh port came from? | 01:10 |
frabbit | i didnt opened them... | 01:10 |
frabbit | wait | 01:10 |
frabbit | 1. tcp protocol and program name is sshd 2. is tcp6 protocol and program name is sshd | 01:11 |
frabbit | both are LISTEN | 01:11 |
gnarface | oh | 01:11 |
frabbit | is that bad? | 01:11 |
gnarface | no it's just sshd listening on ipv6 and ipv4 both. i'm always disabling ipv6 here still so i forgot it would do that. | 01:12 |
frabbit | phew... | 01:12 |
* frabbit resists a heart attack... | 01:12 | |
frabbit | gnarface: how did u disable ipv6? | 01:13 |
frabbit | i have only wrote ipv4 addresses in interfaces... | 01:14 |
frabbit | or is that in the router? | 01:14 |
gnarface | well, it's both really | 01:14 |
* frabbit looks at his stupid isp roter that has its own will... | 01:14 | |
frabbit | gnarface: ok so router ionly here... =( | 01:15 |
frabbit | *only | 01:15 |
gnarface | well, the trick is if your virtual servers don't support ipv6 then nothing inside them will either | 01:16 |
gnarface | but most services should be able to be set to listen onlyl on a specific ip | 01:17 |
gnarface | only* | 01:17 |
gnarface | the sshd_config defaults to listening on all, but it's simple to change | 01:17 |
frabbit | hmm.. in the router is no ipv6 address... | 01:18 |
frabbit | it sazs i have only i ipv4 one | 01:18 |
frabbit | *says | 01:18 |
gnarface | if your router and your ISP won't pass ipv6 traffic then it's only relevant on your LAN anyway | 01:18 |
frabbit | oh wait there is one! | 01:19 |
frabbit | LAN IPv6 Address | 01:19 |
gnarface | i can't imagine a single advantage to having IPV6 that's LAN-side-only on a LAN with only 1 machine | 01:20 |
frabbit | IT SEEMS THAT I CANT DISABLE IT... O_0 | 01:21 |
frabbit | oh sorry | 01:21 |
frabbit | caps lock | 01:21 |
frabbit | the menu where that addres can be found says that it is possible that i cannot connect to my router anymore when i change something there... | 01:21 |
frabbit | ULA, MTU... i dont have a clue whats this... | 01:22 |
gnarface | MTU should be 1500 don't change it | 01:23 |
gnarface | i don't know what ULA is | 01:23 |
frabbit | gnarface: probably german translation... wait... | 01:24 |
frabbit | Unique Local Address? | 01:24 |
gnarface | maybe the same as the gateway IP? | 01:25 |
gnarface | or the public IP? | 01:25 |
gnarface | i don't know | 01:25 |
gnarface | maybe it's the MAC address | 01:25 |
gnarface | or just the ipv6 one | 01:25 |
frabbit | en.wikipedia.org/wiki/Unique_local_address | 01:26 |
MinceR | Uncommitted Logical Array | 01:26 |
frabbit | MinceR: thats what ive found too, but that doesnt make sence in that context ;) | 01:27 |
MinceR | :) | 01:28 |
frabbit | like the Underground Literally Alliance | 01:28 |
frabbit | =) | 01:28 |
fsmithred | Unfair License Agreement | 01:28 |
frabbit | lol | 01:29 |
frabbit | gnarface: ive stopped ssh with "service ssh stop" | 01:29 |
fsmithred | ports gone now? | 01:30 |
frabbit | yes =) | 01:30 |
frabbit | can i prevet ssh startin automaticallz while booting the computer? i just want to start it manually if i need ssh | 01:31 |
frabbit | *prevent | 01:31 |
frabbit | oh these typos makes me crazy.... | 01:31 |
gnarface | you can override daemon startups by manipulating the symlinks in the /etc/rc?.d/ directories | 01:32 |
gnarface | there's a utility to change them in groups called update-rc.d (check the man page) | 01:32 |
gnarface | but you can just change them by hand too | 01:32 |
frabbit | ah ok cool. thx => | 01:32 |
frabbit | update-rc.d ssh disable | 01:37 |
frabbit | will that work? | 01:37 |
gnarface | uh, i think so, or something similar anyway | 01:37 |
frabbit | but i cant break anything with that? | 01:38 |
gnarface | you can but in this case you probably won't because you shouldn't have anything else on the system named ssh | 01:38 |
frabbit | gnarface: how could u know? =o | 01:39 |
frabbit | =) | 01:39 |
gnarface | well i know there's only one debian package that provides /etc/init.d/ssh so if you have another one then your problem is self-inflicted | 01:39 |
frabbit | ok =) | 01:40 |
frabbit | done | 01:40 |
frabbit | output is: insserv: warning: current start runlevel(s) (empty) of script `ssh' overrides LSB defaults (2 3 4 5). | 01:40 |
frabbit | and: insserv: warning: current stop runlevel(s) (2 3 4 5) of script `ssh' overrides LSB defaults (empty). | 01:41 |
gnarface | yea it'll probably complain about that at every boot now but it will also not start it anymore | 01:41 |
frabbit | is that.. fine? | 01:41 |
gnarface | yes, that's fine | 01:41 |
frabbit | cool! =D | 01:41 |
frabbit | ty again =D | 01:41 |
gnarface | it's reporting the expected warning about what you told it to do | 01:41 |
frabbit | and whe i want to start ssh i just run the service command | 01:42 |
gnarface | yes, these commands should be basically equivalent: "service ssh start" and "/etc/init.d/ssh start" | 01:42 |
frabbit | ah i see | 01:42 |
frabbit | ive rent a virtual server and that thing has several ports open | 01:43 |
frabbit | some ports must be open so i can connect but probably not all of them... | 01:44 |
gnarface | if it's devuan then all the other services should be able to be started and stopped in the same way | 01:44 |
frabbit | its debian (didnt figured out yet hoe to install devuan there) | 01:44 |
frabbit | *how | 01:44 |
frabbit | first thing i learned was how to log in there and then how to copy files there | 01:45 |
frabbit | with ssh and scp | 01:45 |
frabbit | its my first server | 01:46 |
gnarface | oh, congrats | 01:47 |
frabbit | btw debian was installed by default i didnt choose debian there, but the alternatives are ubuntu and... mint i think? | 01:47 |
gnarface | ssh and scp are super useful | 01:47 |
frabbit | gnarface: thank you! =D | 01:47 |
frabbit | gnarface: yeah that was pretty cool to get my stuff there | 01:47 |
frabbit | ah.. im ot again... =/ | 01:48 |
gnarface | you might be able to upgrade the VPS in place to devuan, i've succeeded at that before for some of them, but you might not want to risk it. even if you succeed i can't speak personally for how the hosting provider will feel about that (some may not care, some do) | 01:50 |
* frabbit $scp off-topic.lines frabbit@debianfork:/home/debianfork | 01:51 | |
fonky | hi all | 08:53 |
fonky | what is the alternative to the command systemd-resolve --status ? | 08:53 |
fonky | im trying out stubby | 08:53 |
fonky | and only found some info online that deals with systemd sadly | 08:54 |
fonky | do i need a resolver like bind9? | 08:54 |
fonky | sorry dns server if i install stubby | 08:54 |
fonky | or souch, if anyone willing to shed some light on the matter would be nice, ty in advance | 08:55 |
fonky | do i only run /etc/init.d/netoworking restart? | 08:56 |
fonky | oh, and one more, the commands dig and nslookup | 09:05 |
fonky | what package? | 09:05 |
fonky | if anyone willing, ty in advance | 09:06 |
zatumil | bind-dnsutils, generally you can apt-file search or use https://www.debian.org/distrib/packages#search_contents for debian packages | 09:13 |
fonky | nevermind ty | 09:18 |
fonky | 09:32 | |
ukine | does "web server" in tasksel grab apache or nginx on stable, anybody know? | 12:47 |
zatumil | apache2, https://pkginfo.devuan.org/stage/ascii/ascii/task-web-server_3.39+devuan1.9.html | 12:53 |
ukine | ty zatumil | 13:01 |
ukine | i was highly suspicious it was the tried and true apache2 but wasn't sure :] | 13:02 |
ukine | like that option has been forever already | 13:02 |
ukine | forever to me ;] | 13:02 |
beaglebonius | help | 14:57 |
beaglebonius | which package contains the command "startx" ?? is there a way to look that up? | 14:58 |
DNied | beaglebonius: apt-file search startx | 14:59 |
beaglebonius | thank you | 14:59 |
beaglebonius | apt-file is not available on my system... | 15:00 |
DNied | beaglebonius: so install it... apt install apt-file | 15:00 |
beaglebonius | thank you | 15:01 |
fsmithred | and then apt-file update | 15:23 |
Hum | How about naming the G release after 9965 GNU? Devuan GNU, a GNU/Linux Distribution?! ;) | 21:09 |
MinceR | :) | 21:10 |
MinceR | sounds good to me | 21:10 |
golinux_ | Maybe in another 10 years. If the internet still exists by then | 21:13 |
golinux_ | (Nothing like being in the present) | 21:13 |
MinceR | :> | 21:14 |
Hum | In 10 years? What will happen to Debian, that they release more then 26 releases in such a short time? | 21:16 |
Hum | ;) | 21:16 |
golinux_ | Hum: GNU would be 4 releases after Beowulf. At the rate we can get devuan out the door, it could take that long before we get there. | 22:17 |
Hum | golinux_: Oh yes, you are right. | 22:19 |
golinux_ | :) | 22:19 |
sauron- | hi, how do i disable hibernate and suspend from terminal? | 23:57 |
Generated by irclog2html.py 2.17.0 by Marius Gedminas - find it at https://mg.pov.lt/irclog2html/!