Recent Questions - Server Fault |
- Tomcat Web Application Manager: Log files for deployed *.war files
- Logrotate Servce Failure
- Shouldn't dhclient confirm its lease after a carrier loss?
- Container killed by oom-killer during docker update
- dracut-install: ERROR: installing 'sgdisk' dracut: FAILED
- Strange hex-code in Windows root certificate prevents trust in Thunderbird
- Setup a reverse proxy and web server at the same time with Nginx
- Timezone for Google analytics tables and update timing for yesterday table log
- Optimise WSUS for work-from-home users
- 451 4.3.0 Temporary lookup failure - iRedMail - Ubuntu Server
- How can I point my domain to Google for a static website?
- Pinging only names with zone name - BIND DNS Server
- velero - Storage location ownership \ additional permissions (aws s3)
- Linux partition sizes for a locally-deployed (via docker) django web application with postgresql database
- Attach network disk as direct
- How to fix ws and socket.io memory leak?
- Openstack not able to connect port 5000
- I have 50 servers. Want to update /etc/hosts file using ansible [closed]
- Extra ip rule table breaking my connectivity with container
- How to mount disks based on a ansible facts ansible_devices ids?
- Connect to remote minikube cluster using kubectl
- letsencrypt failed authorization procedure
- How to restrict access to a specific file on iis windows 2012
- ansible not working become
- How to configure Array on DL360 GEN 8 Server Running Ubuntu
- Docker 1.6.0 on RHEL 6.5 with SELinux, can't run containers without root
- What actions in Office 365 trigger requests for new SAML tokens?
- How should I manually add IP addresses to denyhosts?
- Asterisk / Elastix Address Book and Call Recording
- Connecting to network printer(s) using net use
Tomcat Web Application Manager: Log files for deployed *.war files Posted: 08 Jun 2021 04:05 AM PDT i am auditing a tomcat server for the first time and could not find a sufficient solution for my problem. I guess i am here on the right platform for my question. The client uses Tomcat Web Application Manager for deploying *.war files. For sampling reasons i need a reliable list of all deployed war-files in a specific time period. Is there a log which contains all deployments or is there a log file for each deployment? I am really thankful for your advises in advance. Oliver |
Posted: 08 Jun 2021 02:35 AM PDT My logrotate service failes. It complains about a duplicate entry for modsecurity. However, Any thought? |
Shouldn't dhclient confirm its lease after a carrier loss? Posted: 08 Jun 2021 04:12 AM PDT I'm investigating an issue with a Ubuntu server acting as the Internet gateway for a branch office stopped working after being switched to a new Internet connection. The IP address on the external interface is acquired from the ISP router via DHCP. When the interface was disconnected from the old line and connected to the new one, there was no Internet connectivity. Checking the log, I found that the Ethernet link on the interface had come up but was still trying to use the IP address it had been using on the old line. There weren't any The way I understand DHCP, if the link on an Ethernet interface is going down and up again, the machine should assume that it might have been moved to a different network segment, and consequently try to reacquire its IP address before using it again. Am I wrong? |
Container killed by oom-killer during docker update Posted: 08 Jun 2021 02:07 AM PDT I use docker to host several web services. There are mainly composed with Apache/nginx, PHP and a MySQL database. Currently, I have 38 containers. If I use
During the last maintenance, I noticed an available update from 20.10.6 to 20.10.7 and updated. After the update, ~50% of the containers do not restart with error Exited 137 oom-kill. The containers have the "unless-stopped" restart policy. During the update the ram available was Ok and clearly show when containers were killed : In a similar situation (stop/start docker), a reboot, the issue is not present. I would like to know why these containers were killed with oom-killer ? Should I take care of "free" RAM instead of "available" RAM ? How can I avoid this situation in the future ? |
dracut-install: ERROR: installing 'sgdisk' dracut: FAILED Posted: 08 Jun 2021 02:01 AM PDT When i do a Centos 8 routine update from below command. I got a below error, i have no idea on how to fix this, Any guidance on how to fix this will very valuable. |
Strange hex-code in Windows root certificate prevents trust in Thunderbird Posted: 08 Jun 2021 01:24 AM PDT We are using Windows CA for S/MIME certificates and in order for this to work with external recipients, we routinely exchange signed mails in order to establish trust or sometimes transmit our root CA in particular when multiple interlnal users are needed. Now, I face a problem with an external recipient not being able to establish this in a straighhtforward manner (they are using Thunderbird). The cause seems to be a strange issue I can observe with the certificates:
Since they are a long-term contact, they already had an older root CA cert of ours in their trust store. That one seems to have had the "correct" name in it and worked, but is of course long expired. On the other hand, that difference between names seems to be what prevents correct installation of our current root CA cert ... Q: How can it be that our current user certs show this difference between issuer specified in the cert itself and the name in the actual CA cert (and internally, no system complains abot this difference)? What can I do in order to correct this problem (preferably with all existing user certs, but perhaps only for all newly created certs)? |
Setup a reverse proxy and web server at the same time with Nginx Posted: 08 Jun 2021 01:14 AM PDT I am trying to configure Nginx to do the reverse proxy and web service function at the same time. From what I understood from the documentation, it could be something similar to this: However, when I try to access example1, it is sending me to the root of example2. What could I be doing wrong Thank you in advance. |
Timezone for Google analytics tables and update timing for yesterday table log Posted: 08 Jun 2021 01:09 AM PDT We are working to utilize the GA log in GCP, but we are not so sure about the time zone for GA log tables and when/ what time the table logs are automatically updated everyday. Please share with us any ideas for this! Thank you! |
Optimise WSUS for work-from-home users Posted: 08 Jun 2021 01:08 AM PDT Good day We self-host our infrastructure. Most users work from home using poor Internet connections. Using SSL VPN to connect to the Main Office to access their network resources, WSUS is one of those. Besides MS E5 and third-party options, is there a well documented method of getting over 150 users up to date via WSUS remotely. I have approved Security and Critical updates, but from the Dashboard there are still computers either not signed in for the past 30 days or updates needed by computers. We do not have the resources to add a secondary WSUS. I did read up on some of the similar posts. It is close to my situation but we need a practical way of ensuring reliable updates that can be approved by our WSUS. Would a GPO be sufficient? Can I accomplish this with 1 WSUS and no additional servers? |
451 4.3.0 Temporary lookup failure - iRedMail - Ubuntu Server Posted: 08 Jun 2021 01:04 AM PDT I'm new to this area and I configured an ubuntu server with iRedMail. It receives from gmail.com but when trying to send emails using PHPMailer (SMTP) I get the following error. Tried to figure out what is wrong by referring to Google resources. But could not find an answer. Please help. SMTP ERROR: RCPT TO command failed: 451 4.3.0 ***@sample.co: Temporary lookup failure |
How can I point my domain to Google for a static website? Posted: 08 Jun 2021 01:03 AM PDT How can I point my domain to Google for a static website? I have tried using the A record that I found from "Load Balancing." But it still doesn't work. |
Pinging only names with zone name - BIND DNS Server Posted: 08 Jun 2021 01:01 AM PDT I try configure BIND DNS Server on pfsense. I have record 'pfsensetest' and zone name 'test.net'. I can ping 'pfsensetest.test.net', but can't ping 'pfsensetest'. |
velero - Storage location ownership \ additional permissions (aws s3) Posted: 08 Jun 2021 12:24 AM PDT We configure our velero backups (on account A) to store the backups on a second trusted account (account B) s3 bucket. The backups have the ownership of the velero account (account A) and is the only account who has permissions to the backups. As of version 1.6, it is possible to use secrets to provide unique credentials for the storage provider. Is it possible to allow for the use of a different arn role instead of a credential file? alternatively (and preferably) is it possible to configure velero to automatically add permissions or change the ownership of the backup to the bucket owner (account B)? Thanks for the help :) |
Posted: 08 Jun 2021 12:23 AM PDT I plan to deploy in an ubuntu server, via docker, a django web application with postgresql database in a local machine within a local network. I believe that docker volumes live in the /var/lib/docker/volumes directory of the host computer. My question is: I suppose this means that when I prepare the host machine, I will have to allot a large portion to the root directory? Are there ideal sizes (e.g. in terms of percentage of disk space) for the partitions of the host machine? This may sound trivial, but I would like to get confirmation before I start working on the deployment. Thanks so much. |
Posted: 08 Jun 2021 12:03 AM PDT Is where way to attach network disk as direct without creating VHD etc? I want to connect drive directly from one computer to other by network by like iSCSI but without creating VHD. Not acceptable:
Highly likely Windows/Windows Server program |
How to fix ws and socket.io memory leak? Posted: 08 Jun 2021 03:59 AM PDT I have read that there is a memory leak occurring in both node.js websocket modules ws and socket.io. It has existed for years and am wondering how to fix it. It is mentioned in the following, to name a few:
Given it is now 2021, is setting the perMessageDeflate key to false and perhaps preloading jemalloc still the best solution? |
Openstack not able to connect port 5000 Posted: 08 Jun 2021 12:25 AM PDT I recently started working on openstack-train(centos7). I created 2 nodes on virtualbox which are on subnet 192.168.56.0/24. I read and followed the official train docs and encountered issue when i was installing keystone module. When i run any openstack command like openstack network list i get this error.
PS: node1 is the controller node has 192.168.56.2 static ip and installed keystone on it. The procedures i have taken:
I was on this step: https://docs.openstack.org/keystone/train/install/keystone-users-rdo.html |
I have 50 servers. Want to update /etc/hosts file using ansible [closed] Posted: 08 Jun 2021 12:03 AM PDT I would like to update /etc/hosts file using ansible playbook to all my 50 servers. |
Extra ip rule table breaking my connectivity with container Posted: 08 Jun 2021 01:22 AM PDT I have host with one interface that has the ip This is the list of ip rules: And this is the routing table 30400: When I try to ping the container As soon as I delete the rule UPDATEAdding bridge info as requested in the comments: |
How to mount disks based on a ansible facts ansible_devices ids? Posted: 08 Jun 2021 01:39 AM PDT i'm trying to mount disks when a ansible device correspond a specific ids name: google-pgdata |
Connect to remote minikube cluster using kubectl Posted: 08 Jun 2021 12:47 AM PDT I am looking to see if I can connect to a remote minikube cluster (Ubuntu box) using local (Mac) kubectl. I currently use Docker and can do this very easily using I was wondering if there was anything similar for minikube/kubectl? I have found a few articles that mention that I need to copy my remote Is there a similar tool available, or if not, could someone help me with steps needed to connect to a remote cluster? Remote Machine Currently I use the And have a number of Local machine |
letsencrypt failed authorization procedure Posted: 08 Jun 2021 12:07 AM PDT I'm receiving the following error when attempting to renew my ssl certificate
IMPORTANT NOTES: - The following errors were reported by the server:
|
How to restrict access to a specific file on iis windows 2012 Posted: 08 Jun 2021 04:06 AM PDT IIS on Windows 2012 R2 A website has a number of directories and in one of those directories is restricted-page.html to which I want to restrict access to all except a particular windows user. The rest of the site is to be freely browsable by anybody. Following instructions at https://weblogs.asp.net/gurusarkar/setting-authorization-rules-for-a-particular-page-or-folder-in-web-config I expected that putting the following web.config into the directory containing restricted-page.html would work. However, users can't browse into the containing directory without requiring authentication. Could anyone advise? |
Posted: 08 Jun 2021 04:06 AM PDT I'm using task ansible playbook.yml editProxy.sh run playbook ansible-playbook palybook.yml --extra-vars='ansible_become_pass=passwd script copy to servers, and not return error changed: [10.1.1.1] But changes on the server do not happen, if you run the script manually on the server, the changes take place. What could be the problem |
How to configure Array on DL360 GEN 8 Server Running Ubuntu Posted: 08 Jun 2021 12:07 AM PDT Hi all I have an DL360 GEN 8 Machine. And I need to install ubuntu server on it. However. Accourding to HP, THE Dyanamic Smart Array System is not support. Since I would love to make use of array.. Given that I have 4 Terra bytes of disk .. Which I need to configure Raid 1.
Is there any possible way to achive this Raid without HP Dynamic Array system. ???
Below is the message from HP. Which says that I need to disable Smart array before I can be able to run Ubuntu
|
Docker 1.6.0 on RHEL 6.5 with SELinux, can't run containers without root Posted: 08 Jun 2021 03:08 AM PDT I'm trying to run a container on a RHEL 6.5 but I keep hitting this problem: When run as user 'root', the container starts fine but the problem appears again when trying to switch to another user: This is a specific container built by us, based on CentOS 6.5 an that runs Postgres. The Dockerfile to build it has "USER postgres" in it, and it works fine elsewhere except these servers. I can reproduce the same behaviour with a busybox container: The RHEL 6.5 host has SELinux enabled. We have other other hosts where SELinux and this container works fine there. The audit log for this host looks clean, no error messages that I can see when trying to run the container. This is what we've tried so far:
Also run a strace session for the 'su ' command within the container but could not see much beyond these: The full strace dump is here in case it's needed: http://pastebin.com/42C2B8LP. We're not sure what to look for next, any ideas? |
What actions in Office 365 trigger requests for new SAML tokens? Posted: 08 Jun 2021 02:00 AM PDT We're in the process of diagnosing an issue where our on-premise ADFS servers stop accepting requests from the ADFS proxy servers for short (5m intervals). One behavior that we're having difficulty understanding is that when ADFS stops responding, Outlook client users get prompted to re-authenticate, and get disconnected when the token request times out. One suggestion was that there is some sort of network session reset, but we have been unable to identify this happening on the network path for Outlook users. Per the documentation and Microsoft support, users are issued login tokens with a default TTL of 8 hours. If that were true, why are the users being challenged to re-authenticate? |
How should I manually add IP addresses to denyhosts? Posted: 08 Jun 2021 02:00 AM PDT I have a few IP addresses I want to add manually to denyhosts because they're huge sources of inbound spam. What's the best way to do this? Or should I not be messing with it? I want to manually add these to denyhosts, but I don't see a way to do it through any program options. I see nothing in It looks like it could be as simple as adding a line to /etc/hosts.deny, but since the process to delete an IP (see here on ServerFault and the DenyHosts FAQ) involves updating six files, it makes me think it's not "Can't You Just... add the IP to the file?". |
Asterisk / Elastix Address Book and Call Recording Posted: 08 Jun 2021 04:06 AM PDT I am trying to build a small asterisk based PBX using Elastix. It'll be having 4 FXO (2 nos.no ISDN, normal analog POTS, 2 nos. GSM connections using a GSM Terminal) and 4 FXS (2 IP Phones and 2 Android SIP Client). I am confused about the following two issues and need your help:
Thanks a lot for your time |
Connecting to network printer(s) using net use Posted: 08 Jun 2021 03:57 AM PDT I was asked to add pinters to all users on a terminal server. There is a VPN connection between the terminal server and the network where the printer is installed. I do not have much experience with network shares, but I managed to connect to the printer manually. (win+r > \192.168.xx.xx). After entering my credentials (Domain: ADAM.local) I see the shares in explorer, including a couple of printers. Double-clicking a printer adds it to the "printers and devices" and I am able to select it as a printer wehn trying to print a document. I was hoping to be able to use "net use" to write a script that will connect a user to the printer on startup. I tried using Could anyone help me with the syntax and parameters for the net use command? |
You are subscribed to email updates from Recent Questions - Server Fault. To stop receiving these emails, you may unsubscribe now. | Email delivery powered by Google |
Google, 1600 Amphitheatre Parkway, Mountain View, CA 94043, United States |
No comments:
Post a Comment