From 1be510f9529cb082f802408b472a77d074b394c0 Mon Sep 17 00:00:00 2001 From: Nicolas Vigier Date: Sun, 14 Apr 2013 13:46:12 +0000 Subject: Add zarb MLs html archives --- zarb-ml/mageia-sysadm/2010-November/000129.html | 77 + zarb-ml/mageia-sysadm/2010-November/000130.html | 93 + zarb-ml/mageia-sysadm/2010-November/000131.html | 104 + zarb-ml/mageia-sysadm/2010-November/000132.html | 101 + zarb-ml/mageia-sysadm/2010-November/000133.html | 78 + zarb-ml/mageia-sysadm/2010-November/000134.html | 101 + zarb-ml/mageia-sysadm/2010-November/000135.html | 93 + zarb-ml/mageia-sysadm/2010-November/000136.html | 90 + zarb-ml/mageia-sysadm/2010-November/000137.html | 86 + zarb-ml/mageia-sysadm/2010-November/000138.html | 114 + zarb-ml/mageia-sysadm/2010-November/000139.html | 132 + zarb-ml/mageia-sysadm/2010-November/000140.html | 134 + zarb-ml/mageia-sysadm/2010-November/000141.html | 99 + zarb-ml/mageia-sysadm/2010-November/000142.html | 69 + zarb-ml/mageia-sysadm/2010-November/000143.html | 93 + zarb-ml/mageia-sysadm/2010-November/000144.html | 68 + zarb-ml/mageia-sysadm/2010-November/000145.html | 63 + zarb-ml/mageia-sysadm/2010-November/000146.html | 118 + zarb-ml/mageia-sysadm/2010-November/000147.html | 121 + zarb-ml/mageia-sysadm/2010-November/000148.html | 85 + zarb-ml/mageia-sysadm/2010-November/000149.html | 78 + zarb-ml/mageia-sysadm/2010-November/000150.html | 93 + zarb-ml/mageia-sysadm/2010-November/000151.html | 93 + zarb-ml/mageia-sysadm/2010-November/000152.html | 117 + zarb-ml/mageia-sysadm/2010-November/000153.html | 109 + zarb-ml/mageia-sysadm/2010-November/000154.html | 109 + zarb-ml/mageia-sysadm/2010-November/000155.html | 148 + zarb-ml/mageia-sysadm/2010-November/000156.html | 202 + zarb-ml/mageia-sysadm/2010-November/000157.html | 117 + zarb-ml/mageia-sysadm/2010-November/000158.html | 88 + zarb-ml/mageia-sysadm/2010-November/000159.html | 98 + zarb-ml/mageia-sysadm/2010-November/000160.html | 315 ++ zarb-ml/mageia-sysadm/2010-November/000161.html | 95 + zarb-ml/mageia-sysadm/2010-November/000162.html | 93 + zarb-ml/mageia-sysadm/2010-November/000163.html | 72 + zarb-ml/mageia-sysadm/2010-November/000164.html | 70 + zarb-ml/mageia-sysadm/2010-November/000165.html | 71 + zarb-ml/mageia-sysadm/2010-November/000166.html | 76 + zarb-ml/mageia-sysadm/2010-November/000167.html | 112 + zarb-ml/mageia-sysadm/2010-November/000168.html | 82 + zarb-ml/mageia-sysadm/2010-November/000169.html | 84 + zarb-ml/mageia-sysadm/2010-November/000170.html | 105 + zarb-ml/mageia-sysadm/2010-November/000171.html | 82 + zarb-ml/mageia-sysadm/2010-November/000172.html | 73 + zarb-ml/mageia-sysadm/2010-November/000173.html | 78 + zarb-ml/mageia-sysadm/2010-November/000174.html | 85 + zarb-ml/mageia-sysadm/2010-November/000175.html | 84 + zarb-ml/mageia-sysadm/2010-November/000176.html | 98 + zarb-ml/mageia-sysadm/2010-November/000177.html | 133 + zarb-ml/mageia-sysadm/2010-November/000178.html | 92 + zarb-ml/mageia-sysadm/2010-November/000179.html | 140 + zarb-ml/mageia-sysadm/2010-November/000180.html | 116 + zarb-ml/mageia-sysadm/2010-November/000181.html | 82 + zarb-ml/mageia-sysadm/2010-November/000182.html | 70 + zarb-ml/mageia-sysadm/2010-November/000183.html | 76 + zarb-ml/mageia-sysadm/2010-November/000184.html | 77 + zarb-ml/mageia-sysadm/2010-November/000185.html | 111 + zarb-ml/mageia-sysadm/2010-November/000186.html | 93 + zarb-ml/mageia-sysadm/2010-November/000187.html | 71 + zarb-ml/mageia-sysadm/2010-November/000188.html | 111 + zarb-ml/mageia-sysadm/2010-November/000189.html | 157 + zarb-ml/mageia-sysadm/2010-November/000190.html | 113 + zarb-ml/mageia-sysadm/2010-November/000191.html | 129 + zarb-ml/mageia-sysadm/2010-November/000192.html | 88 + zarb-ml/mageia-sysadm/2010-November/000193.html | 83 + zarb-ml/mageia-sysadm/2010-November/000194.html | 183 + zarb-ml/mageia-sysadm/2010-November/000195.html | 81 + zarb-ml/mageia-sysadm/2010-November/000196.html | 93 + zarb-ml/mageia-sysadm/2010-November/000197.html | 93 + zarb-ml/mageia-sysadm/2010-November/000198.html | 88 + zarb-ml/mageia-sysadm/2010-November/000199.html | 98 + zarb-ml/mageia-sysadm/2010-November/000200.html | 86 + zarb-ml/mageia-sysadm/2010-November/000201.html | 78 + zarb-ml/mageia-sysadm/2010-November/000202.html | 188 + zarb-ml/mageia-sysadm/2010-November/000203.html | 79 + zarb-ml/mageia-sysadm/2010-November/000204.html | 88 + zarb-ml/mageia-sysadm/2010-November/000205.html | 85 + zarb-ml/mageia-sysadm/2010-November/000206.html | 90 + zarb-ml/mageia-sysadm/2010-November/000207.html | 87 + zarb-ml/mageia-sysadm/2010-November/000208.html | 96 + zarb-ml/mageia-sysadm/2010-November/000209.html | 91 + zarb-ml/mageia-sysadm/2010-November/000210.html | 149 + zarb-ml/mageia-sysadm/2010-November/000211.html | 96 + zarb-ml/mageia-sysadm/2010-November/000212.html | 95 + zarb-ml/mageia-sysadm/2010-November/000213.html | 127 + zarb-ml/mageia-sysadm/2010-November/000214.html | 137 + zarb-ml/mageia-sysadm/2010-November/000215.html | 86 + zarb-ml/mageia-sysadm/2010-November/000216.html | 94 + zarb-ml/mageia-sysadm/2010-November/000217.html | 89 + zarb-ml/mageia-sysadm/2010-November/000218.html | 87 + zarb-ml/mageia-sysadm/2010-November/000219.html | 85 + zarb-ml/mageia-sysadm/2010-November/000220.html | 87 + zarb-ml/mageia-sysadm/2010-November/000221.html | 87 + zarb-ml/mageia-sysadm/2010-November/000222.html | 86 + zarb-ml/mageia-sysadm/2010-November/000223.html | 96 + zarb-ml/mageia-sysadm/2010-November/000224.html | 107 + zarb-ml/mageia-sysadm/2010-November/000225.html | 108 + zarb-ml/mageia-sysadm/2010-November/000226.html | 97 + zarb-ml/mageia-sysadm/2010-November/000227.html | 86 + zarb-ml/mageia-sysadm/2010-November/000228.html | 82 + zarb-ml/mageia-sysadm/2010-November/000229.html | 91 + zarb-ml/mageia-sysadm/2010-November/000230.html | 83 + zarb-ml/mageia-sysadm/2010-November/000231.html | 87 + zarb-ml/mageia-sysadm/2010-November/000232.html | 119 + zarb-ml/mageia-sysadm/2010-November/000233.html | 168 + zarb-ml/mageia-sysadm/2010-November/000234.html | 86 + zarb-ml/mageia-sysadm/2010-November/000235.html | 73 + zarb-ml/mageia-sysadm/2010-November/000236.html | 88 + zarb-ml/mageia-sysadm/2010-November/000237.html | 95 + zarb-ml/mageia-sysadm/2010-November/000238.html | 87 + zarb-ml/mageia-sysadm/2010-November/000239.html | 110 + zarb-ml/mageia-sysadm/2010-November/000240.html | 90 + zarb-ml/mageia-sysadm/2010-November/000241.html | 101 + zarb-ml/mageia-sysadm/2010-November/000242.html | 87 + zarb-ml/mageia-sysadm/2010-November/000243.html | 70 + zarb-ml/mageia-sysadm/2010-November/000244.html | 73 + zarb-ml/mageia-sysadm/2010-November/000245.html | 86 + zarb-ml/mageia-sysadm/2010-November/000246.html | 104 + zarb-ml/mageia-sysadm/2010-November/000247.html | 86 + zarb-ml/mageia-sysadm/2010-November/000248.html | 77 + zarb-ml/mageia-sysadm/2010-November/000249.html | 85 + zarb-ml/mageia-sysadm/2010-November/000250.html | 162 + zarb-ml/mageia-sysadm/2010-November/000251.html | 98 + zarb-ml/mageia-sysadm/2010-November/000252.html | 86 + zarb-ml/mageia-sysadm/2010-November/000253.html | 97 + zarb-ml/mageia-sysadm/2010-November/000254.html | 85 + zarb-ml/mageia-sysadm/2010-November/000255.html | 91 + zarb-ml/mageia-sysadm/2010-November/000256.html | 92 + zarb-ml/mageia-sysadm/2010-November/000257.html | 87 + zarb-ml/mageia-sysadm/2010-November/000258.html | 98 + zarb-ml/mageia-sysadm/2010-November/000259.html | 94 + zarb-ml/mageia-sysadm/2010-November/000260.html | 109 + zarb-ml/mageia-sysadm/2010-November/000261.html | 72 + zarb-ml/mageia-sysadm/2010-November/000262.html | 171 + zarb-ml/mageia-sysadm/2010-November/000263.html | 87 + zarb-ml/mageia-sysadm/2010-November/000264.html | 87 + zarb-ml/mageia-sysadm/2010-November/000265.html | 111 + zarb-ml/mageia-sysadm/2010-November/000266.html | 114 + zarb-ml/mageia-sysadm/2010-November/000267.html | 73 + zarb-ml/mageia-sysadm/2010-November/000268.html | 90 + zarb-ml/mageia-sysadm/2010-November/000269.html | 108 + zarb-ml/mageia-sysadm/2010-November/000270.html | 96 + zarb-ml/mageia-sysadm/2010-November/000271.html | 92 + zarb-ml/mageia-sysadm/2010-November/000272.html | 84 + zarb-ml/mageia-sysadm/2010-November/000273.html | 84 + zarb-ml/mageia-sysadm/2010-November/000274.html | 84 + zarb-ml/mageia-sysadm/2010-November/000275.html | 84 + zarb-ml/mageia-sysadm/2010-November/000276.html | 148 + zarb-ml/mageia-sysadm/2010-November/000277.html | 117 + zarb-ml/mageia-sysadm/2010-November/000278.html | 114 + zarb-ml/mageia-sysadm/2010-November/000279.html | 84 + zarb-ml/mageia-sysadm/2010-November/000280.html | 86 + zarb-ml/mageia-sysadm/2010-November/000281.html | 82 + zarb-ml/mageia-sysadm/2010-November/000282.html | 82 + zarb-ml/mageia-sysadm/2010-November/000283.html | 85 + zarb-ml/mageia-sysadm/2010-November/000284.html | 104 + zarb-ml/mageia-sysadm/2010-November/000285.html | 86 + zarb-ml/mageia-sysadm/2010-November/000286.html | 89 + zarb-ml/mageia-sysadm/2010-November/000287.html | 104 + zarb-ml/mageia-sysadm/2010-November/000288.html | 100 + zarb-ml/mageia-sysadm/2010-November/000289.html | 119 + zarb-ml/mageia-sysadm/2010-November/000290.html | 181 + zarb-ml/mageia-sysadm/2010-November/000291.html | 100 + zarb-ml/mageia-sysadm/2010-November/000292.html | 85 + zarb-ml/mageia-sysadm/2010-November/000293.html | 88 + zarb-ml/mageia-sysadm/2010-November/000294.html | 143 + zarb-ml/mageia-sysadm/2010-November/000295.html | 81 + zarb-ml/mageia-sysadm/2010-November/000296.html | 97 + zarb-ml/mageia-sysadm/2010-November/000297.html | 121 + zarb-ml/mageia-sysadm/2010-November/000298.html | 112 + zarb-ml/mageia-sysadm/2010-November/000299.html | 137 + zarb-ml/mageia-sysadm/2010-November/000300.html | 84 + zarb-ml/mageia-sysadm/2010-November/000301.html | 88 + zarb-ml/mageia-sysadm/2010-November/000302.html | 85 + zarb-ml/mageia-sysadm/2010-November/000303.html | 102 + zarb-ml/mageia-sysadm/2010-November/000304.html | 166 + zarb-ml/mageia-sysadm/2010-November/000305.html | 83 + zarb-ml/mageia-sysadm/2010-November/000306.html | 136 + zarb-ml/mageia-sysadm/2010-November/000307.html | 85 + zarb-ml/mageia-sysadm/2010-November/000308.html | 85 + zarb-ml/mageia-sysadm/2010-November/000309.html | 117 + zarb-ml/mageia-sysadm/2010-November/000310.html | 216 + zarb-ml/mageia-sysadm/2010-November/000311.html | 80 + zarb-ml/mageia-sysadm/2010-November/000312.html | 74 + zarb-ml/mageia-sysadm/2010-November/000313.html | 84 + zarb-ml/mageia-sysadm/2010-November/000314.html | 102 + zarb-ml/mageia-sysadm/2010-November/000315.html | 80 + zarb-ml/mageia-sysadm/2010-November/000316.html | 86 + zarb-ml/mageia-sysadm/2010-November/000317.html | 91 + zarb-ml/mageia-sysadm/2010-November/000318.html | 77 + zarb-ml/mageia-sysadm/2010-November/000319.html | 157 + zarb-ml/mageia-sysadm/2010-November/000320.html | 110 + zarb-ml/mageia-sysadm/2010-November/000321.html | 92 + zarb-ml/mageia-sysadm/2010-November/000322.html | 117 + zarb-ml/mageia-sysadm/2010-November/000323.html | 121 + zarb-ml/mageia-sysadm/2010-November/000324.html | 69 + zarb-ml/mageia-sysadm/2010-November/000325.html | 81 + zarb-ml/mageia-sysadm/2010-November/000326.html | 76 + zarb-ml/mageia-sysadm/2010-November/000327.html | 82 + zarb-ml/mageia-sysadm/2010-November/000328.html | 111 + zarb-ml/mageia-sysadm/2010-November/000329.html | 96 + zarb-ml/mageia-sysadm/2010-November/000330.html | 159 + zarb-ml/mageia-sysadm/2010-November/000331.html | 89 + zarb-ml/mageia-sysadm/2010-November/000332.html | 109 + zarb-ml/mageia-sysadm/2010-November/000333.html | 100 + zarb-ml/mageia-sysadm/2010-November/000334.html | 103 + zarb-ml/mageia-sysadm/2010-November/000335.html | 115 + zarb-ml/mageia-sysadm/2010-November/000336.html | 92 + zarb-ml/mageia-sysadm/2010-November/000337.html | 93 + zarb-ml/mageia-sysadm/2010-November/000338.html | 91 + zarb-ml/mageia-sysadm/2010-November/000339.html | 81 + zarb-ml/mageia-sysadm/2010-November/000340.html | 153 + zarb-ml/mageia-sysadm/2010-November/000341.html | 100 + zarb-ml/mageia-sysadm/2010-November/000342.html | 99 + zarb-ml/mageia-sysadm/2010-November/000343.html | 134 + zarb-ml/mageia-sysadm/2010-November/000344.html | 91 + zarb-ml/mageia-sysadm/2010-November/000345.html | 67 + zarb-ml/mageia-sysadm/2010-November/000346.html | 182 + zarb-ml/mageia-sysadm/2010-November/000347.html | 87 + zarb-ml/mageia-sysadm/2010-November/000348.html | 75 + zarb-ml/mageia-sysadm/2010-November/000349.html | 75 + zarb-ml/mageia-sysadm/2010-November/000350.html | 75 + zarb-ml/mageia-sysadm/2010-November/000351.html | 75 + zarb-ml/mageia-sysadm/2010-November/000352.html | 75 + zarb-ml/mageia-sysadm/2010-November/000353.html | 75 + zarb-ml/mageia-sysadm/2010-November/000354.html | 75 + zarb-ml/mageia-sysadm/2010-November/000355.html | 75 + zarb-ml/mageia-sysadm/2010-November/000356.html | 75 + zarb-ml/mageia-sysadm/2010-November/000357.html | 75 + zarb-ml/mageia-sysadm/2010-November/000358.html | 75 + zarb-ml/mageia-sysadm/2010-November/000359.html | 102 + zarb-ml/mageia-sysadm/2010-November/000360.html | 74 + zarb-ml/mageia-sysadm/2010-November/000361.html | 74 + zarb-ml/mageia-sysadm/2010-November/000362.html | 74 + zarb-ml/mageia-sysadm/2010-November/000363.html | 74 + zarb-ml/mageia-sysadm/2010-November/000364.html | 74 + zarb-ml/mageia-sysadm/2010-November/000365.html | 97 + zarb-ml/mageia-sysadm/2010-November/000366.html | 80 + zarb-ml/mageia-sysadm/2010-November/000367.html | 72 + zarb-ml/mageia-sysadm/2010-November/000368.html | 98 + zarb-ml/mageia-sysadm/2010-November/000369.html | 72 + zarb-ml/mageia-sysadm/2010-November/000370.html | 72 + zarb-ml/mageia-sysadm/2010-November/000371.html | 95 + zarb-ml/mageia-sysadm/2010-November/000372.html | 78 + zarb-ml/mageia-sysadm/2010-November/000373.html | 85 + zarb-ml/mageia-sysadm/2010-November/000374.html | 69 + zarb-ml/mageia-sysadm/2010-November/000375.html | 85 + zarb-ml/mageia-sysadm/2010-November/000376.html | 68 + zarb-ml/mageia-sysadm/2010-November/000377.html | 95 + zarb-ml/mageia-sysadm/2010-November/000378.html | 89 + zarb-ml/mageia-sysadm/2010-November/000379.html | 175 + zarb-ml/mageia-sysadm/2010-November/000380.html | 151 + zarb-ml/mageia-sysadm/2010-November/000381.html | 373 ++ zarb-ml/mageia-sysadm/2010-November/000382.html | 101 + zarb-ml/mageia-sysadm/2010-November/000383.html | 108 + zarb-ml/mageia-sysadm/2010-November/000384.html | 95 + zarb-ml/mageia-sysadm/2010-November/000385.html | 97 + zarb-ml/mageia-sysadm/2010-November/000386.html | 117 + zarb-ml/mageia-sysadm/2010-November/000387.html | 96 + zarb-ml/mageia-sysadm/2010-November/000388.html | 110 + zarb-ml/mageia-sysadm/2010-November/000389.html | 107 + zarb-ml/mageia-sysadm/2010-November/000390.html | 133 + zarb-ml/mageia-sysadm/2010-November/000391.html | 118 + zarb-ml/mageia-sysadm/2010-November/000392.html | 100 + zarb-ml/mageia-sysadm/2010-November/000393.html | 129 + zarb-ml/mageia-sysadm/2010-November/000394.html | 171 + zarb-ml/mageia-sysadm/2010-November/000395.html | 76 + zarb-ml/mageia-sysadm/2010-November/000396.html | 86 + zarb-ml/mageia-sysadm/2010-November/000397.html | 73 + zarb-ml/mageia-sysadm/2010-November/000398.html | 96 + zarb-ml/mageia-sysadm/2010-November/000399.html | 98 + zarb-ml/mageia-sysadm/2010-November/000400.html | 104 + zarb-ml/mageia-sysadm/2010-November/000401.html | 101 + zarb-ml/mageia-sysadm/2010-November/000402.html | 105 + zarb-ml/mageia-sysadm/2010-November/000403.html | 121 + zarb-ml/mageia-sysadm/2010-November/000404.html | 127 + zarb-ml/mageia-sysadm/2010-November/000405.html | 215 + zarb-ml/mageia-sysadm/2010-November/000406.html | 126 + zarb-ml/mageia-sysadm/2010-November/000407.html | 124 + zarb-ml/mageia-sysadm/2010-November/000408.html | 130 + zarb-ml/mageia-sysadm/2010-November/000409.html | 87 + zarb-ml/mageia-sysadm/2010-November/000410.html | 82 + zarb-ml/mageia-sysadm/2010-November/000411.html | 192 + zarb-ml/mageia-sysadm/2010-November/000412.html | 133 + zarb-ml/mageia-sysadm/2010-November/000413.html | 140 + zarb-ml/mageia-sysadm/2010-November/000414.html | 155 + zarb-ml/mageia-sysadm/2010-November/000415.html | 176 + zarb-ml/mageia-sysadm/2010-November/000416.html | 80 + zarb-ml/mageia-sysadm/2010-November/000417.html | 112 + zarb-ml/mageia-sysadm/2010-November/000418.html | 133 + zarb-ml/mageia-sysadm/2010-November/000419.html | 135 + zarb-ml/mageia-sysadm/2010-November/000420.html | 85 + zarb-ml/mageia-sysadm/2010-November/000421.html | 110 + zarb-ml/mageia-sysadm/2010-November/000422.html | 85 + zarb-ml/mageia-sysadm/2010-November/000423.html | 119 + zarb-ml/mageia-sysadm/2010-November/000424.html | 134 + zarb-ml/mageia-sysadm/2010-November/000425.html | 144 + zarb-ml/mageia-sysadm/2010-November/000426.html | 89 + zarb-ml/mageia-sysadm/2010-November/000427.html | 71 + zarb-ml/mageia-sysadm/2010-November/000428.html | 144 + zarb-ml/mageia-sysadm/2010-November/000429.html | 107 + zarb-ml/mageia-sysadm/2010-November/000430.html | 121 + zarb-ml/mageia-sysadm/2010-November/000431.html | 109 + zarb-ml/mageia-sysadm/2010-November/000432.html | 112 + zarb-ml/mageia-sysadm/2010-November/000433.html | 92 + zarb-ml/mageia-sysadm/2010-November/000434.html | 92 + zarb-ml/mageia-sysadm/2010-November/000435.html | 122 + zarb-ml/mageia-sysadm/2010-November/000436.html | 78 + zarb-ml/mageia-sysadm/2010-November/000437.html | 78 + zarb-ml/mageia-sysadm/2010-November/000438.html | 107 + zarb-ml/mageia-sysadm/2010-November/000439.html | 78 + zarb-ml/mageia-sysadm/2010-November/000440.html | 79 + zarb-ml/mageia-sysadm/2010-November/000441.html | 123 + zarb-ml/mageia-sysadm/2010-November/000442.html | 79 + zarb-ml/mageia-sysadm/2010-November/000443.html | 79 + zarb-ml/mageia-sysadm/2010-November/000444.html | 79 + zarb-ml/mageia-sysadm/2010-November/000445.html | 105 + zarb-ml/mageia-sysadm/2010-November/000446.html | 79 + zarb-ml/mageia-sysadm/2010-November/000447.html | 79 + zarb-ml/mageia-sysadm/2010-November/000448.html | 79 + zarb-ml/mageia-sysadm/2010-November/000449.html | 79 + zarb-ml/mageia-sysadm/2010-November/000450.html | 79 + zarb-ml/mageia-sysadm/2010-November/000451.html | 93 + zarb-ml/mageia-sysadm/2010-November/000452.html | 105 + zarb-ml/mageia-sysadm/2010-November/000453.html | 103 + zarb-ml/mageia-sysadm/2010-November/000454.html | 78 + zarb-ml/mageia-sysadm/2010-November/000455.html | 106 + zarb-ml/mageia-sysadm/2010-November/000456.html | 78 + zarb-ml/mageia-sysadm/2010-November/000457.html | 82 + zarb-ml/mageia-sysadm/2010-November/000458.html | 93 + zarb-ml/mageia-sysadm/2010-November/000459.html | 79 + zarb-ml/mageia-sysadm/2010-November/000460.html | 119 + zarb-ml/mageia-sysadm/2010-November/000461.html | 79 + zarb-ml/mageia-sysadm/2010-November/000462.html | 87 + zarb-ml/mageia-sysadm/2010-November/000463.html | 93 + zarb-ml/mageia-sysadm/2010-November/000464.html | 118 + zarb-ml/mageia-sysadm/2010-November/000465.html | 165 + zarb-ml/mageia-sysadm/2010-November/000466.html | 106 + zarb-ml/mageia-sysadm/2010-November/000467.html | 127 + zarb-ml/mageia-sysadm/2010-November/000468.html | 101 + zarb-ml/mageia-sysadm/2010-November/000469.html | 77 + zarb-ml/mageia-sysadm/2010-November/000470.html | 101 + zarb-ml/mageia-sysadm/2010-November/000471.html | 77 + zarb-ml/mageia-sysadm/2010-November/000472.html | 77 + zarb-ml/mageia-sysadm/2010-November/000473.html | 77 + zarb-ml/mageia-sysadm/2010-November/000474.html | 77 + zarb-ml/mageia-sysadm/2010-November/000475.html | 77 + zarb-ml/mageia-sysadm/2010-November/000476.html | 77 + zarb-ml/mageia-sysadm/2010-November/000477.html | 115 + zarb-ml/mageia-sysadm/2010-November/000478.html | 413 ++ zarb-ml/mageia-sysadm/2010-November/000479.html | 88 + zarb-ml/mageia-sysadm/2010-November/000480.html | 169 + zarb-ml/mageia-sysadm/2010-November/000481.html | 99 + zarb-ml/mageia-sysadm/2010-November/000482.html | 108 + zarb-ml/mageia-sysadm/2010-November/000483.html | 80 + zarb-ml/mageia-sysadm/2010-November/000484.html | 98 + zarb-ml/mageia-sysadm/2010-November/000485.html | 80 + zarb-ml/mageia-sysadm/2010-November/000486.html | 96 + zarb-ml/mageia-sysadm/2010-November/000487.html | 87 + zarb-ml/mageia-sysadm/2010-November/000488.html | 77 + zarb-ml/mageia-sysadm/2010-November/000489.html | 150 + zarb-ml/mageia-sysadm/2010-November/000490.html | 89 + zarb-ml/mageia-sysadm/2010-November/000491.html | 94 + zarb-ml/mageia-sysadm/2010-November/000492.html | 88 + zarb-ml/mageia-sysadm/2010-November/000493.html | 102 + zarb-ml/mageia-sysadm/2010-November/000494.html | 106 + zarb-ml/mageia-sysadm/2010-November/000495.html | 76 + zarb-ml/mageia-sysadm/2010-November/000496.html | 64 + zarb-ml/mageia-sysadm/2010-November/000497.html | 82 + zarb-ml/mageia-sysadm/2010-November/000498.html | 649 +++ zarb-ml/mageia-sysadm/2010-November/000499.html | 307 ++ zarb-ml/mageia-sysadm/2010-November/000500.html | 135 + zarb-ml/mageia-sysadm/2010-November/000501.html | 104 + zarb-ml/mageia-sysadm/2010-November/000502.html | 80 + zarb-ml/mageia-sysadm/2010-November/000503.html | 117 + zarb-ml/mageia-sysadm/2010-November/000504.html | 81 + zarb-ml/mageia-sysadm/2010-November/000505.html | 107 + zarb-ml/mageia-sysadm/2010-November/000506.html | 81 + zarb-ml/mageia-sysadm/2010-November/000507.html | 128 + zarb-ml/mageia-sysadm/2010-November/000508.html | 125 + zarb-ml/mageia-sysadm/2010-November/000509.html | 137 + zarb-ml/mageia-sysadm/2010-November/000510.html | 82 + zarb-ml/mageia-sysadm/2010-November/000511.html | 82 + zarb-ml/mageia-sysadm/2010-November/000512.html | 86 + zarb-ml/mageia-sysadm/2010-November/000513.html | 82 + zarb-ml/mageia-sysadm/2010-November/000514.html | 82 + zarb-ml/mageia-sysadm/2010-November/000515.html | 113 + zarb-ml/mageia-sysadm/2010-November/000516.html | 105 + zarb-ml/mageia-sysadm/2010-November/000517.html | 124 + zarb-ml/mageia-sysadm/2010-November/000518.html | 136 + zarb-ml/mageia-sysadm/2010-November/000519.html | 136 + zarb-ml/mageia-sysadm/2010-November/000520.html | 112 + zarb-ml/mageia-sysadm/2010-November/000521.html | 109 + zarb-ml/mageia-sysadm/2010-November/000522.html | 71 + zarb-ml/mageia-sysadm/2010-November/000523.html | 73 + zarb-ml/mageia-sysadm/2010-November/000524.html | 76 + zarb-ml/mageia-sysadm/2010-November/000525.html | 83 + zarb-ml/mageia-sysadm/2010-November/000526.html | 89 + zarb-ml/mageia-sysadm/2010-November/000527.html | 118 + zarb-ml/mageia-sysadm/2010-November/000528.html | 97 + zarb-ml/mageia-sysadm/2010-November/000529.html | 234 + zarb-ml/mageia-sysadm/2010-November/000530.html | 86 + zarb-ml/mageia-sysadm/2010-November/000531.html | 76 + zarb-ml/mageia-sysadm/2010-November/000532.html | 86 + zarb-ml/mageia-sysadm/2010-November/000533.html | 90 + zarb-ml/mageia-sysadm/2010-November/000534.html | 121 + zarb-ml/mageia-sysadm/2010-November/000535.html | 133 + zarb-ml/mageia-sysadm/2010-November/000536.html | 83 + zarb-ml/mageia-sysadm/2010-November/000537.html | 82 + zarb-ml/mageia-sysadm/2010-November/000538.html | 85 + zarb-ml/mageia-sysadm/2010-November/000539.html | 80 + zarb-ml/mageia-sysadm/2010-November/000540.html | 109 + zarb-ml/mageia-sysadm/2010-November/000541.html | 103 + zarb-ml/mageia-sysadm/2010-November/000542.html | 100 + zarb-ml/mageia-sysadm/2010-November/000543.html | 117 + zarb-ml/mageia-sysadm/2010-November/000544.html | 82 + zarb-ml/mageia-sysadm/2010-November/000545.html | 124 + zarb-ml/mageia-sysadm/2010-November/000546.html | 107 + zarb-ml/mageia-sysadm/2010-November/000547.html | 122 + zarb-ml/mageia-sysadm/2010-November/000548.html | 133 + zarb-ml/mageia-sysadm/2010-November/000549.html | 93 + zarb-ml/mageia-sysadm/2010-November/000550.html | 102 + zarb-ml/mageia-sysadm/2010-November/000551.html | 201 + zarb-ml/mageia-sysadm/2010-November/000552.html | 68 + zarb-ml/mageia-sysadm/2010-November/000553.html | 99 + zarb-ml/mageia-sysadm/2010-November/000554.html | 97 + zarb-ml/mageia-sysadm/2010-November/000555.html | 120 + zarb-ml/mageia-sysadm/2010-November/000556.html | 69 + zarb-ml/mageia-sysadm/2010-November/000557.html | 102 + zarb-ml/mageia-sysadm/2010-November/000558.html | 127 + zarb-ml/mageia-sysadm/2010-November/000559.html | 186 + zarb-ml/mageia-sysadm/2010-November/000560.html | 88 + zarb-ml/mageia-sysadm/2010-November/000561.html | 96 + zarb-ml/mageia-sysadm/2010-November/000562.html | 94 + zarb-ml/mageia-sysadm/2010-November/000563.html | 104 + zarb-ml/mageia-sysadm/2010-November/000564.html | 113 + zarb-ml/mageia-sysadm/2010-November/000565.html | 128 + zarb-ml/mageia-sysadm/2010-November/000566.html | 121 + zarb-ml/mageia-sysadm/2010-November/000567.html | 212 + zarb-ml/mageia-sysadm/2010-November/000568.html | 128 + zarb-ml/mageia-sysadm/2010-November/000569.html | 112 + zarb-ml/mageia-sysadm/2010-November/000570.html | 265 ++ zarb-ml/mageia-sysadm/2010-November/000571.html | 124 + zarb-ml/mageia-sysadm/2010-November/000572.html | 127 + zarb-ml/mageia-sysadm/2010-November/000573.html | 149 + zarb-ml/mageia-sysadm/2010-November/000574.html | 69 + zarb-ml/mageia-sysadm/2010-November/000575.html | 135 + zarb-ml/mageia-sysadm/2010-November/000576.html | 69 + zarb-ml/mageia-sysadm/2010-November/000577.html | 69 + zarb-ml/mageia-sysadm/2010-November/000578.html | 69 + zarb-ml/mageia-sysadm/2010-November/000579.html | 69 + zarb-ml/mageia-sysadm/2010-November/000580.html | 69 + zarb-ml/mageia-sysadm/2010-November/000581.html | 69 + zarb-ml/mageia-sysadm/2010-November/000582.html | 69 + zarb-ml/mageia-sysadm/2010-November/000583.html | 69 + zarb-ml/mageia-sysadm/2010-November/000584.html | 69 + zarb-ml/mageia-sysadm/2010-November/000585.html | 69 + zarb-ml/mageia-sysadm/2010-November/000586.html | 69 + zarb-ml/mageia-sysadm/2010-November/000587.html | 69 + zarb-ml/mageia-sysadm/2010-November/000588.html | 69 + zarb-ml/mageia-sysadm/2010-November/000589.html | 111 + zarb-ml/mageia-sysadm/2010-November/000590.html | 69 + zarb-ml/mageia-sysadm/2010-November/000591.html | 177 + zarb-ml/mageia-sysadm/2010-November/000592.html | 146 + zarb-ml/mageia-sysadm/2010-November/000593.html | 97 + zarb-ml/mageia-sysadm/2010-November/000594.html | 274 ++ zarb-ml/mageia-sysadm/2010-November/000595.html | 75 + zarb-ml/mageia-sysadm/2010-November/000596.html | 144 + zarb-ml/mageia-sysadm/2010-November/000597.html | 90 + zarb-ml/mageia-sysadm/2010-November/000598.html | 125 + zarb-ml/mageia-sysadm/2010-November/000599.html | 77 + zarb-ml/mageia-sysadm/2010-November/000600.html | 123 + zarb-ml/mageia-sysadm/2010-November/000601.html | 126 + zarb-ml/mageia-sysadm/2010-November/000602.html | 65 + zarb-ml/mageia-sysadm/2010-November/000603.html | 92 + zarb-ml/mageia-sysadm/2010-November/000604.html | 65 + zarb-ml/mageia-sysadm/2010-November/000605.html | 65 + zarb-ml/mageia-sysadm/2010-November/000606.html | 65 + zarb-ml/mageia-sysadm/2010-November/000607.html | 65 + zarb-ml/mageia-sysadm/2010-November/000608.html | 92 + zarb-ml/mageia-sysadm/2010-November/000609.html | 127 + zarb-ml/mageia-sysadm/2010-November/000610.html | 88 + zarb-ml/mageia-sysadm/2010-November/000611.html | 111 + zarb-ml/mageia-sysadm/2010-November/000612.html | 128 + zarb-ml/mageia-sysadm/2010-November/000613.html | 74 + zarb-ml/mageia-sysadm/2010-November/000614.html | 109 + zarb-ml/mageia-sysadm/2010-November/000615.html | 139 + zarb-ml/mageia-sysadm/2010-November/000616.html | 123 + zarb-ml/mageia-sysadm/2010-November/000617.html | 117 + zarb-ml/mageia-sysadm/2010-November/000618.html | 101 + zarb-ml/mageia-sysadm/2010-November/000619.html | 93 + zarb-ml/mageia-sysadm/2010-November/000620.html | 113 + zarb-ml/mageia-sysadm/2010-November/000621.html | 322 ++ zarb-ml/mageia-sysadm/2010-November/000622.html | 84 + zarb-ml/mageia-sysadm/2010-November/000623.html | 172 + zarb-ml/mageia-sysadm/2010-November/000624.html | 87 + zarb-ml/mageia-sysadm/2010-November/000625.html | 62 + zarb-ml/mageia-sysadm/2010-November/000626.html | 62 + zarb-ml/mageia-sysadm/2010-November/000627.html | 62 + zarb-ml/mageia-sysadm/2010-November/000628.html | 86 + zarb-ml/mageia-sysadm/2010-November/000629.html | 62 + zarb-ml/mageia-sysadm/2010-November/000630.html | 115 + zarb-ml/mageia-sysadm/2010-November/000631.html | 62 + zarb-ml/mageia-sysadm/2010-November/000632.html | 86 + zarb-ml/mageia-sysadm/2010-November/000633.html | 91 + zarb-ml/mageia-sysadm/2010-November/000634.html | 126 + zarb-ml/mageia-sysadm/2010-November/000635.html | 131 + zarb-ml/mageia-sysadm/2010-November/000636.html | 97 + zarb-ml/mageia-sysadm/2010-November/000637.html | 87 + zarb-ml/mageia-sysadm/2010-November/000638.html | 112 + zarb-ml/mageia-sysadm/2010-November/000639.html | 93 + zarb-ml/mageia-sysadm/2010-November/000640.html | 95 + zarb-ml/mageia-sysadm/2010-November/000641.html | 92 + zarb-ml/mageia-sysadm/2010-November/000642.html | 105 + zarb-ml/mageia-sysadm/2010-November/000643.html | 125 + zarb-ml/mageia-sysadm/2010-November/000644.html | 118 + zarb-ml/mageia-sysadm/2010-November/000645.html | 119 + zarb-ml/mageia-sysadm/2010-November/000646.html | 144 + zarb-ml/mageia-sysadm/2010-November/000647.html | 141 + zarb-ml/mageia-sysadm/2010-November/000648.html | 102 + zarb-ml/mageia-sysadm/2010-November/000649.html | 132 + zarb-ml/mageia-sysadm/2010-November/000650.html | 95 + zarb-ml/mageia-sysadm/2010-November/000651.html | 93 + zarb-ml/mageia-sysadm/2010-November/000652.html | 88 + zarb-ml/mageia-sysadm/2010-November/000653.html | 89 + zarb-ml/mageia-sysadm/2010-November/000654.html | 88 + zarb-ml/mageia-sysadm/2010-November/000655.html | 95 + zarb-ml/mageia-sysadm/2010-November/000656.html | 108 + zarb-ml/mageia-sysadm/2010-November/000657.html | 88 + zarb-ml/mageia-sysadm/2010-November/000658.html | 105 + zarb-ml/mageia-sysadm/2010-November/000659.html | 117 + zarb-ml/mageia-sysadm/2010-November/000660.html | 99 + zarb-ml/mageia-sysadm/2010-November/000661.html | 117 + zarb-ml/mageia-sysadm/2010-November/000662.html | 97 + zarb-ml/mageia-sysadm/2010-November/000663.html | 150 + zarb-ml/mageia-sysadm/2010-November/000664.html | 162 + zarb-ml/mageia-sysadm/2010-November/000665.html | 131 + zarb-ml/mageia-sysadm/2010-November/000666.html | 97 + zarb-ml/mageia-sysadm/2010-November/000667.html | 115 + zarb-ml/mageia-sysadm/2010-November/000668.html | 118 + zarb-ml/mageia-sysadm/2010-November/000669.html | 85 + zarb-ml/mageia-sysadm/2010-November/000670.html | 89 + zarb-ml/mageia-sysadm/2010-November/000671.html | 93 + zarb-ml/mageia-sysadm/2010-November/000672.html | 147 + zarb-ml/mageia-sysadm/2010-November/000673.html | 89 + zarb-ml/mageia-sysadm/2010-November/000674.html | 93 + zarb-ml/mageia-sysadm/2010-November/000675.html | 88 + zarb-ml/mageia-sysadm/2010-November/000676.html | 90 + zarb-ml/mageia-sysadm/2010-November/000677.html | 86 + zarb-ml/mageia-sysadm/2010-November/000678.html | 86 + zarb-ml/mageia-sysadm/2010-November/000679.html | 86 + zarb-ml/mageia-sysadm/2010-November/000680.html | 93 + zarb-ml/mageia-sysadm/2010-November/000681.html | 90 + zarb-ml/mageia-sysadm/2010-November/000682.html | 108 + zarb-ml/mageia-sysadm/2010-November/000683.html | 475 ++ zarb-ml/mageia-sysadm/2010-November/000684.html | 80 + zarb-ml/mageia-sysadm/2010-November/000685.html | 64 + zarb-ml/mageia-sysadm/2010-November/000686.html | 64 + zarb-ml/mageia-sysadm/2010-November/000687.html | 64 + zarb-ml/mageia-sysadm/2010-November/000688.html | 64 + zarb-ml/mageia-sysadm/2010-November/000689.html | 64 + zarb-ml/mageia-sysadm/2010-November/000690.html | 64 + zarb-ml/mageia-sysadm/2010-November/000691.html | 111 + zarb-ml/mageia-sysadm/2010-November/000692.html | 64 + zarb-ml/mageia-sysadm/2010-November/000693.html | 85 + zarb-ml/mageia-sysadm/2010-November/000694.html | 63 + zarb-ml/mageia-sysadm/2010-November/000695.html | 84 + zarb-ml/mageia-sysadm/2010-November/000696.html | 90 + zarb-ml/mageia-sysadm/2010-November/000697.html | 87 + zarb-ml/mageia-sysadm/2010-November/000698.html | 98 + zarb-ml/mageia-sysadm/2010-November/000699.html | 94 + zarb-ml/mageia-sysadm/2010-November/000700.html | 87 + zarb-ml/mageia-sysadm/2010-November/000701.html | 91 + zarb-ml/mageia-sysadm/2010-November/000702.html | 61 + zarb-ml/mageia-sysadm/2010-November/000703.html | 61 + zarb-ml/mageia-sysadm/2010-November/000704.html | 89 + zarb-ml/mageia-sysadm/2010-November/000705.html | 86 + zarb-ml/mageia-sysadm/2010-November/000706.html | 111 + zarb-ml/mageia-sysadm/2010-November/000707.html | 134 + zarb-ml/mageia-sysadm/2010-November/000708.html | 86 + zarb-ml/mageia-sysadm/2010-November/000709.html | 87 + zarb-ml/mageia-sysadm/2010-November/000710.html | 105 + zarb-ml/mageia-sysadm/2010-November/000711.html | 62 + zarb-ml/mageia-sysadm/2010-November/000712.html | 61 + zarb-ml/mageia-sysadm/2010-November/000713.html | 62 + zarb-ml/mageia-sysadm/2010-November/000714.html | 62 + zarb-ml/mageia-sysadm/2010-November/000715.html | 62 + zarb-ml/mageia-sysadm/2010-November/000716.html | 62 + zarb-ml/mageia-sysadm/2010-November/000717.html | 97 + zarb-ml/mageia-sysadm/2010-November/000718.html | 62 + zarb-ml/mageia-sysadm/2010-November/000719.html | 62 + zarb-ml/mageia-sysadm/2010-November/000720.html | 102 + zarb-ml/mageia-sysadm/2010-November/000721.html | 194 + zarb-ml/mageia-sysadm/2010-November/000722.html | 87 + zarb-ml/mageia-sysadm/2010-November/000723.html | 88 + zarb-ml/mageia-sysadm/2010-November/000724.html | 77 + zarb-ml/mageia-sysadm/2010-November/000725.html | 95 + zarb-ml/mageia-sysadm/2010-November/000726.html | 113 + zarb-ml/mageia-sysadm/2010-November/000727.html | 74 + zarb-ml/mageia-sysadm/2010-November/000728.html | 87 + zarb-ml/mageia-sysadm/2010-November/000729.html | 91 + zarb-ml/mageia-sysadm/2010-November/000730.html | 89 + zarb-ml/mageia-sysadm/2010-November/000731.html | 61 + zarb-ml/mageia-sysadm/2010-November/000732.html | 110 + zarb-ml/mageia-sysadm/2010-November/000733.html | 62 + zarb-ml/mageia-sysadm/2010-November/000734.html | 62 + zarb-ml/mageia-sysadm/2010-November/000735.html | 62 + zarb-ml/mageia-sysadm/2010-November/000736.html | 62 + zarb-ml/mageia-sysadm/2010-November/000737.html | 62 + zarb-ml/mageia-sysadm/2010-November/000738.html | 62 + zarb-ml/mageia-sysadm/2010-November/000739.html | 62 + zarb-ml/mageia-sysadm/2010-November/000740.html | 415 ++ zarb-ml/mageia-sysadm/2010-November/000741.html | 62 + zarb-ml/mageia-sysadm/2010-November/000742.html | 78 + zarb-ml/mageia-sysadm/2010-November/000743.html | 88 + zarb-ml/mageia-sysadm/2010-November/000744.html | 90 + zarb-ml/mageia-sysadm/2010-November/000745.html | 93 + zarb-ml/mageia-sysadm/2010-November/000746.html | 88 + zarb-ml/mageia-sysadm/2010-November/000747.html | 87 + zarb-ml/mageia-sysadm/2010-November/000748.html | 94 + zarb-ml/mageia-sysadm/2010-November/000749.html | 104 + zarb-ml/mageia-sysadm/2010-November/000750.html | 320 ++ zarb-ml/mageia-sysadm/2010-November/000751.html | 189 + zarb-ml/mageia-sysadm/2010-November/000752.html | 104 + zarb-ml/mageia-sysadm/2010-November/000753.html | 97 + zarb-ml/mageia-sysadm/2010-November/000754.html | 69 + zarb-ml/mageia-sysadm/2010-November/000755.html | 104 + zarb-ml/mageia-sysadm/2010-November/000756.html | 69 + zarb-ml/mageia-sysadm/2010-November/000757.html | 69 + zarb-ml/mageia-sysadm/2010-November/000758.html | 95 + zarb-ml/mageia-sysadm/2010-November/000759.html | 69 + zarb-ml/mageia-sysadm/2010-November/000760.html | 97 + zarb-ml/mageia-sysadm/2010-November/000761.html | 70 + zarb-ml/mageia-sysadm/2010-November/000762.html | 70 + zarb-ml/mageia-sysadm/2010-November/000763.html | 97 + zarb-ml/mageia-sysadm/2010-November/000764.html | 90 + zarb-ml/mageia-sysadm/2010-November/000765.html | 93 + zarb-ml/mageia-sysadm/2010-November/000766.html | 102 + zarb-ml/mageia-sysadm/2010-November/000767.html | 94 + zarb-ml/mageia-sysadm/2010-November/000768.html | 759 +++ zarb-ml/mageia-sysadm/2010-November/000769.html | 93 + zarb-ml/mageia-sysadm/2010-November/000770.html | 93 + zarb-ml/mageia-sysadm/2010-November/000771.html | 101 + zarb-ml/mageia-sysadm/2010-November/000772.html | 100 + zarb-ml/mageia-sysadm/2010-November/000773.html | 93 + zarb-ml/mageia-sysadm/2010-November/000774.html | 148 + zarb-ml/mageia-sysadm/2010-November/000775.html | 68 + zarb-ml/mageia-sysadm/2010-November/000776.html | 67 + zarb-ml/mageia-sysadm/2010-November/000777.html | 135 + zarb-ml/mageia-sysadm/2010-November/000778.html | 103 + zarb-ml/mageia-sysadm/2010-November/000779.html | 100 + zarb-ml/mageia-sysadm/2010-November/000780.html | 93 + zarb-ml/mageia-sysadm/2010-November/000781.html | 95 + zarb-ml/mageia-sysadm/2010-November/000782.html | 111 + zarb-ml/mageia-sysadm/2010-November/000783.html | 92 + zarb-ml/mageia-sysadm/2010-November/000784.html | 106 + zarb-ml/mageia-sysadm/2010-November/000785.html | 110 + zarb-ml/mageia-sysadm/2010-November/000786.html | 103 + zarb-ml/mageia-sysadm/2010-November/000787.html | 78 + zarb-ml/mageia-sysadm/2010-November/000788.html | 82 + zarb-ml/mageia-sysadm/2010-November/000789.html | 83 + zarb-ml/mageia-sysadm/2010-November/000790.html | 78 + zarb-ml/mageia-sysadm/2010-November/000791.html | 75 + zarb-ml/mageia-sysadm/2010-November/000792.html | 84 + zarb-ml/mageia-sysadm/2010-November/000793.html | 80 + zarb-ml/mageia-sysadm/2010-November/000794.html | 93 + zarb-ml/mageia-sysadm/2010-November/000795.html | 84 + zarb-ml/mageia-sysadm/2010-November/000796.html | 117 + zarb-ml/mageia-sysadm/2010-November/000797.html | 123 + zarb-ml/mageia-sysadm/2010-November/000798.html | 69 + zarb-ml/mageia-sysadm/2010-November/000799.html | 94 + zarb-ml/mageia-sysadm/2010-November/000800.html | 94 + zarb-ml/mageia-sysadm/2010-November/000801.html | 68 + zarb-ml/mageia-sysadm/2010-November/000802.html | 202 + zarb-ml/mageia-sysadm/2010-November/000803.html | 95 + zarb-ml/mageia-sysadm/2010-November/000804.html | 201 + zarb-ml/mageia-sysadm/2010-November/000805.html | 95 + zarb-ml/mageia-sysadm/2010-November/000806.html | 116 + zarb-ml/mageia-sysadm/2010-November/000807.html | 107 + zarb-ml/mageia-sysadm/2010-November/000808.html | 109 + zarb-ml/mageia-sysadm/2010-November/000809.html | 74 + zarb-ml/mageia-sysadm/2010-November/000810.html | 206 + zarb-ml/mageia-sysadm/2010-November/000811.html | 97 + zarb-ml/mageia-sysadm/2010-November/000812.html | 123 + zarb-ml/mageia-sysadm/2010-November/000813.html | 86 + zarb-ml/mageia-sysadm/2010-November/000814.html | 898 ++++ zarb-ml/mageia-sysadm/2010-November/000815.html | 160 + zarb-ml/mageia-sysadm/2010-November/000816.html | 84 + zarb-ml/mageia-sysadm/2010-November/000817.html | 86 + zarb-ml/mageia-sysadm/2010-November/000818.html | 110 + zarb-ml/mageia-sysadm/2010-November/000819.html | 77 + zarb-ml/mageia-sysadm/2010-November/000820.html | 104 + zarb-ml/mageia-sysadm/2010-November/000821.html | 77 + zarb-ml/mageia-sysadm/2010-November/000822.html | 103 + zarb-ml/mageia-sysadm/2010-November/000823.html | 97 + zarb-ml/mageia-sysadm/2010-November/000824.html | 96 + zarb-ml/mageia-sysadm/2010-November/000825.html | 87 + zarb-ml/mageia-sysadm/2010-November/000826.html | 78 + zarb-ml/mageia-sysadm/2010-November/000827.html | 99 + zarb-ml/mageia-sysadm/2010-November/000828.html | 98 + zarb-ml/mageia-sysadm/2010-November/000829.html | 155 + zarb-ml/mageia-sysadm/2010-November/000830.html | 125 + zarb-ml/mageia-sysadm/2010-November/000831.html | 93 + zarb-ml/mageia-sysadm/2010-November/000832.html | 95 + zarb-ml/mageia-sysadm/2010-November/000833.html | 95 + zarb-ml/mageia-sysadm/2010-November/000834.html | 74 + zarb-ml/mageia-sysadm/2010-November/000835.html | 91 + zarb-ml/mageia-sysadm/2010-November/000836.html | 81 + zarb-ml/mageia-sysadm/2010-November/000837.html | 70 + zarb-ml/mageia-sysadm/2010-November/000838.html | 103 + zarb-ml/mageia-sysadm/2010-November/000839.html | 70 + zarb-ml/mageia-sysadm/2010-November/000840.html | 95 + zarb-ml/mageia-sysadm/2010-November/000841.html | 70 + zarb-ml/mageia-sysadm/2010-November/000842.html | 70 + zarb-ml/mageia-sysadm/2010-November/000843.html | 70 + zarb-ml/mageia-sysadm/2010-November/000844.html | 83 + zarb-ml/mageia-sysadm/2010-November/000845.html | 95 + zarb-ml/mageia-sysadm/2010-November/000846.html | 95 + zarb-ml/mageia-sysadm/2010-November/000847.html | 69 + zarb-ml/mageia-sysadm/2010-November/000848.html | 69 + zarb-ml/mageia-sysadm/2010-November/000849.html | 148 + zarb-ml/mageia-sysadm/2010-November/000850.html | 103 + zarb-ml/mageia-sysadm/2010-November/000851.html | 69 + zarb-ml/mageia-sysadm/2010-November/000852.html | 94 + zarb-ml/mageia-sysadm/2010-November/000853.html | 69 + zarb-ml/mageia-sysadm/2010-November/000854.html | 101 + zarb-ml/mageia-sysadm/2010-November/000855.html | 69 + zarb-ml/mageia-sysadm/2010-November/000856.html | 69 + zarb-ml/mageia-sysadm/2010-November/000857.html | 108 + zarb-ml/mageia-sysadm/2010-November/000858.html | 188 + zarb-ml/mageia-sysadm/2010-November/000859.html | 104 + zarb-ml/mageia-sysadm/2010-November/000860.html | 95 + zarb-ml/mageia-sysadm/2010-November/000861.html | 110 + zarb-ml/mageia-sysadm/2010-November/000862.html | 104 + zarb-ml/mageia-sysadm/2010-November/000863.html | 144 + zarb-ml/mageia-sysadm/2010-November/000864.html | 105 + zarb-ml/mageia-sysadm/2010-November/000865.html | 199 + zarb-ml/mageia-sysadm/2010-November/000866.html | 190 + zarb-ml/mageia-sysadm/2010-November/000867.html | 99 + zarb-ml/mageia-sysadm/2010-November/000868.html | 95 + zarb-ml/mageia-sysadm/2010-November/000869.html | 101 + zarb-ml/mageia-sysadm/2010-November/000870.html | 69 + zarb-ml/mageia-sysadm/2010-November/000871.html | 95 + zarb-ml/mageia-sysadm/2010-November/000872.html | 96 + zarb-ml/mageia-sysadm/2010-November/000873.html | 112 + zarb-ml/mageia-sysadm/2010-November/000874.html | 103 + zarb-ml/mageia-sysadm/2010-November/000875.html | 95 + zarb-ml/mageia-sysadm/2010-November/000876.html | 109 + zarb-ml/mageia-sysadm/2010-November/000877.html | 95 + zarb-ml/mageia-sysadm/2010-November/000878.html | 97 + zarb-ml/mageia-sysadm/2010-November/000879.html | 95 + zarb-ml/mageia-sysadm/2010-November/000880.html | 127 + zarb-ml/mageia-sysadm/2010-November/000881.html | 102 + zarb-ml/mageia-sysadm/2010-November/000882.html | 98 + zarb-ml/mageia-sysadm/2010-November/000883.html | 109 + zarb-ml/mageia-sysadm/2010-November/000884.html | 133 + zarb-ml/mageia-sysadm/2010-November/000885.html | 144 + zarb-ml/mageia-sysadm/2010-November/000886.html | 69 + zarb-ml/mageia-sysadm/2010-November/000887.html | 94 + zarb-ml/mageia-sysadm/2010-November/000888.html | 122 + zarb-ml/mageia-sysadm/2010-November/000889.html | 98 + zarb-ml/mageia-sysadm/2010-November/000890.html | 82 + zarb-ml/mageia-sysadm/2010-November/000891.html | 90 + zarb-ml/mageia-sysadm/2010-November/000892.html | 98 + zarb-ml/mageia-sysadm/2010-November/000893.html | 93 + zarb-ml/mageia-sysadm/2010-November/000894.html | 120 + zarb-ml/mageia-sysadm/2010-November/000895.html | 93 + zarb-ml/mageia-sysadm/2010-November/000896.html | 95 + zarb-ml/mageia-sysadm/2010-November/000897.html | 245 + zarb-ml/mageia-sysadm/2010-November/000898.html | 106 + zarb-ml/mageia-sysadm/2010-November/000899.html | 219 + zarb-ml/mageia-sysadm/2010-November/000900.html | 77 + zarb-ml/mageia-sysadm/2010-November/000901.html | 128 + zarb-ml/mageia-sysadm/2010-November/000902.html | 111 + zarb-ml/mageia-sysadm/2010-November/000903.html | 104 + zarb-ml/mageia-sysadm/2010-November/000904.html | 102 + zarb-ml/mageia-sysadm/2010-November/000905.html | 104 + zarb-ml/mageia-sysadm/2010-November/000906.html | 104 + zarb-ml/mageia-sysadm/2010-November/000907.html | 103 + zarb-ml/mageia-sysadm/2010-November/000908.html | 142 + zarb-ml/mageia-sysadm/2010-November/000909.html | 106 + zarb-ml/mageia-sysadm/2010-November/000910.html | 112 + zarb-ml/mageia-sysadm/2010-November/000911.html | 84 + zarb-ml/mageia-sysadm/2010-November/000912.html | 80 + zarb-ml/mageia-sysadm/2010-November/000913.html | 106 + zarb-ml/mageia-sysadm/2010-November/000914.html | 109 + zarb-ml/mageia-sysadm/2010-November/000915.html | 323 ++ zarb-ml/mageia-sysadm/2010-November/000916.html | 77 + zarb-ml/mageia-sysadm/2010-November/000917.html | 158 + zarb-ml/mageia-sysadm/2010-November/000918.html | 156 + zarb-ml/mageia-sysadm/2010-November/000919.html | 101 + zarb-ml/mageia-sysadm/2010-November/000920.html | 79 + zarb-ml/mageia-sysadm/2010-November/000921.html | 127 + zarb-ml/mageia-sysadm/2010-November/000922.html | 99 + zarb-ml/mageia-sysadm/2010-November/000923.html | 99 + zarb-ml/mageia-sysadm/2010-November/000924.html | 101 + zarb-ml/mageia-sysadm/2010-November/000925.html | 101 + zarb-ml/mageia-sysadm/2010-November/000926.html | 101 + zarb-ml/mageia-sysadm/2010-November/000927.html | 116 + zarb-ml/mageia-sysadm/2010-November/000928.html | 106 + zarb-ml/mageia-sysadm/2010-November/000929.html | 124 + zarb-ml/mageia-sysadm/2010-November/000930.html | 102 + zarb-ml/mageia-sysadm/2010-November/000931.html | 82 + zarb-ml/mageia-sysadm/2010-November/000932.html | 131 + zarb-ml/mageia-sysadm/2010-November/000933.html | 78 + zarb-ml/mageia-sysadm/2010-November/000934.html | 80 + zarb-ml/mageia-sysadm/2010-November/000935.html | 104 + zarb-ml/mageia-sysadm/2010-November/000936.html | 99 + zarb-ml/mageia-sysadm/2010-November/000937.html | 96 + zarb-ml/mageia-sysadm/2010-November/000938.html | 97 + zarb-ml/mageia-sysadm/2010-November/000939.html | 98 + zarb-ml/mageia-sysadm/2010-November/000940.html | 306 ++ zarb-ml/mageia-sysadm/2010-November/000941.html | 97 + zarb-ml/mageia-sysadm/2010-November/000942.html | 80 + zarb-ml/mageia-sysadm/2010-November/000943.html | 82 + zarb-ml/mageia-sysadm/2010-November/000944.html | 110 + zarb-ml/mageia-sysadm/2010-November/000945.html | 180 + zarb-ml/mageia-sysadm/2010-November/000946.html | 110 + zarb-ml/mageia-sysadm/2010-November/000947.html | 121 + zarb-ml/mageia-sysadm/2010-November/000948.html | 107 + zarb-ml/mageia-sysadm/2010-November/000949.html | 87 + zarb-ml/mageia-sysadm/2010-November/000950.html | 84 + zarb-ml/mageia-sysadm/2010-November/000951.html | 201 + zarb-ml/mageia-sysadm/2010-November/000952.html | 112 + zarb-ml/mageia-sysadm/2010-November/000953.html | 89 + zarb-ml/mageia-sysadm/2010-November/000954.html | 96 + zarb-ml/mageia-sysadm/2010-November/000955.html | 105 + zarb-ml/mageia-sysadm/2010-November/000956.html | 94 + zarb-ml/mageia-sysadm/2010-November/000957.html | 87 + zarb-ml/mageia-sysadm/2010-November/000958.html | 132 + zarb-ml/mageia-sysadm/2010-November/000959.html | 143 + zarb-ml/mageia-sysadm/2010-November/000960.html | 157 + zarb-ml/mageia-sysadm/2010-November/000961.html | 96 + zarb-ml/mageia-sysadm/2010-November/000962.html | 91 + zarb-ml/mageia-sysadm/2010-November/000963.html | 187 + zarb-ml/mageia-sysadm/2010-November/000964.html | 80 + zarb-ml/mageia-sysadm/2010-November/000965.html | 109 + zarb-ml/mageia-sysadm/2010-November/000966.html | 64 + zarb-ml/mageia-sysadm/2010-November/000967.html | 83 + zarb-ml/mageia-sysadm/2010-November/000968.html | 92 + zarb-ml/mageia-sysadm/2010-November/000969.html | 61 + zarb-ml/mageia-sysadm/2010-November/000970.html | 61 + zarb-ml/mageia-sysadm/2010-November/000971.html | 99 + zarb-ml/mageia-sysadm/2010-November/000972.html | 88 + zarb-ml/mageia-sysadm/2010-November/000973.html | 102 + zarb-ml/mageia-sysadm/2010-November/000974.html | 1382 ++++++ zarb-ml/mageia-sysadm/2010-November/000975.html | 130 + zarb-ml/mageia-sysadm/2010-November/000976.html | 114 + zarb-ml/mageia-sysadm/2010-November/000977.html | 87 + zarb-ml/mageia-sysadm/2010-November/000978.html | 105 + zarb-ml/mageia-sysadm/2010-November/000979.html | 93 + zarb-ml/mageia-sysadm/2010-November/000980.html | 117 + zarb-ml/mageia-sysadm/2010-November/000981.html | 115 + zarb-ml/mageia-sysadm/2010-November/000982.html | 213 + zarb-ml/mageia-sysadm/2010-November/000983.html | 137 + zarb-ml/mageia-sysadm/2010-November/000984.html | 82 + zarb-ml/mageia-sysadm/2010-November/000985.html | 58 + zarb-ml/mageia-sysadm/2010-November/000986.html | 65 + zarb-ml/mageia-sysadm/2010-November/000987.html | 86 + zarb-ml/mageia-sysadm/2010-November/000988.html | 90 + zarb-ml/mageia-sysadm/2010-November/000989.html | 84 + zarb-ml/mageia-sysadm/2010-November/000990.html | 83 + zarb-ml/mageia-sysadm/2010-November/000991.html | 84 + zarb-ml/mageia-sysadm/2010-November/000992.html | 85 + zarb-ml/mageia-sysadm/2010-November/000993.html | 92 + zarb-ml/mageia-sysadm/2010-November/000994.html | 85 + zarb-ml/mageia-sysadm/2010-November/000995.html | 87 + zarb-ml/mageia-sysadm/2010-November/000996.html | 54 + zarb-ml/mageia-sysadm/2010-November/author.html | 4387 +++++++++++++++++ zarb-ml/mageia-sysadm/2010-November/date.html | 4387 +++++++++++++++++ zarb-ml/mageia-sysadm/2010-November/index.html | 1 + zarb-ml/mageia-sysadm/2010-November/subject.html | 4387 +++++++++++++++++ zarb-ml/mageia-sysadm/2010-November/thread.html | 5497 ++++++++++++++++++++++ 873 files changed, 111409 insertions(+) create mode 100644 zarb-ml/mageia-sysadm/2010-November/000129.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000130.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000131.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000132.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000133.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000134.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000135.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000136.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000137.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000138.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000139.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000140.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000141.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000142.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000143.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000144.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000145.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000146.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000147.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000148.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000149.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000150.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000151.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000152.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000153.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000154.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000155.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000156.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000157.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000158.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000159.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000160.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000161.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000162.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000163.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000164.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000165.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000166.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000167.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000168.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000169.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000170.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000171.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000172.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000173.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000174.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000175.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000176.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000177.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000178.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000179.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000180.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000181.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000182.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000183.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000184.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000185.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000186.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000187.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000188.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000189.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000190.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000191.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000192.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000193.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000194.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000195.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000196.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000197.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000198.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000199.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000200.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000201.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000202.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000203.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000204.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000205.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000206.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000207.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000208.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000209.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000210.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000211.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000212.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000213.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000214.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000215.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000216.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000217.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000218.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000219.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000220.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000221.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000222.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000223.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000224.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000225.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000226.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000227.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000228.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000229.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000230.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000231.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000232.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000233.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000234.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000235.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000236.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000237.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000238.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000239.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000240.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000241.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000242.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000243.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000244.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000245.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000246.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000247.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000248.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000249.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000250.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000251.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000252.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000253.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000254.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000255.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000256.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000257.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000258.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000259.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000260.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000261.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000262.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000263.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000264.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000265.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000266.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000267.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000268.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000269.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000270.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000271.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000272.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000273.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000274.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000275.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000276.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000277.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000278.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000279.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000280.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000281.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000282.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000283.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000284.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000285.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000286.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000287.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000288.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000289.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000290.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000291.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000292.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000293.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000294.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000295.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000296.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000297.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000298.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000299.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000300.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000301.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000302.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000303.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000304.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000305.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000306.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000307.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000308.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000309.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000310.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000311.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000312.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000313.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000314.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000315.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000316.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000317.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000318.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000319.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000320.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000321.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000322.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000323.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000324.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000325.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000326.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000327.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000328.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000329.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000330.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000331.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000332.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000333.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000334.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000335.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000336.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000337.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000338.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000339.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000340.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000341.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000342.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000343.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000344.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000345.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000346.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000347.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000348.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000349.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000350.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000351.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000352.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000353.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000354.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000355.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000356.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000357.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000358.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000359.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000360.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000361.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000362.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000363.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000364.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000365.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000366.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000367.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000368.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000369.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000370.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000371.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000372.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000373.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000374.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000375.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000376.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000377.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000378.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000379.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000380.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000381.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000382.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000383.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000384.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000385.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000386.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000387.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000388.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000389.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000390.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000391.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000392.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000393.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000394.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000395.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000396.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000397.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000398.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000399.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000400.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000401.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000402.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000403.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000404.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000405.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000406.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000407.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000408.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000409.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000410.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000411.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000412.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000413.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000414.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000415.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000416.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000417.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000418.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000419.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000420.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000421.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000422.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000423.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000424.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000425.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000426.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000427.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000428.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000429.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000430.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000431.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000432.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000433.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000434.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000435.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000436.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000437.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000438.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000439.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000440.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000441.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000442.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000443.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000444.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000445.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000446.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000447.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000448.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000449.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000450.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000451.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000452.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000453.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000454.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000455.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000456.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000457.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000458.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000459.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000460.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000461.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000462.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000463.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000464.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000465.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000466.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000467.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000468.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000469.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000470.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000471.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000472.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000473.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000474.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000475.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000476.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000477.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000478.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000479.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000480.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000481.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000482.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000483.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000484.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000485.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000486.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000487.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000488.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000489.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000490.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000491.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000492.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000493.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000494.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000495.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000496.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000497.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000498.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000499.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000500.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000501.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000502.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000503.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000504.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000505.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000506.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000507.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000508.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000509.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000510.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000511.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000512.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000513.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000514.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000515.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000516.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000517.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000518.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000519.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000520.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000521.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000522.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000523.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000524.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000525.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000526.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000527.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000528.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000529.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000530.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000531.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000532.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000533.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000534.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000535.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000536.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000537.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000538.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000539.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000540.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000541.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000542.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000543.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000544.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000545.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000546.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000547.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000548.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000549.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000550.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000551.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000552.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000553.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000554.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000555.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000556.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000557.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000558.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000559.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000560.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000561.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000562.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000563.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000564.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000565.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000566.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000567.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000568.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000569.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000570.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000571.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000572.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000573.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000574.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000575.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000576.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000577.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000578.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000579.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000580.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000581.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000582.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000583.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000584.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000585.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000586.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000587.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000588.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000589.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000590.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000591.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000592.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000593.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000594.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000595.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000596.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000597.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000598.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000599.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000600.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000601.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000602.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000603.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000604.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000605.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000606.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000607.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000608.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000609.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000610.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000611.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000612.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000613.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000614.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000615.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000616.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000617.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000618.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000619.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000620.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000621.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000622.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000623.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000624.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000625.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000626.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000627.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000628.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000629.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000630.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000631.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000632.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000633.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000634.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000635.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000636.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000637.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000638.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000639.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000640.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000641.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000642.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000643.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000644.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000645.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000646.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000647.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000648.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000649.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000650.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000651.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000652.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000653.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000654.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000655.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000656.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000657.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000658.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000659.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000660.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000661.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000662.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000663.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000664.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000665.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000666.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000667.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000668.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000669.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000670.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000671.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000672.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000673.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000674.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000675.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000676.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000677.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000678.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000679.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000680.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000681.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000682.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000683.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000684.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000685.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000686.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000687.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000688.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000689.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000690.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000691.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000692.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000693.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000694.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000695.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000696.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000697.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000698.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000699.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000700.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000701.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000702.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000703.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000704.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000705.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000706.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000707.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000708.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000709.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000710.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000711.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000712.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000713.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000714.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000715.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000716.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000717.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000718.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000719.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000720.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000721.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000722.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000723.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000724.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000725.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000726.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000727.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000728.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000729.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000730.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000731.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000732.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000733.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000734.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000735.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000736.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000737.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000738.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000739.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000740.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000741.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000742.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000743.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000744.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000745.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000746.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000747.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000748.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000749.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000750.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000751.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000752.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000753.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000754.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000755.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000756.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000757.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000758.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000759.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000760.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000761.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000762.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000763.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000764.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000765.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000766.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000767.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000768.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000769.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000770.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000771.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000772.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000773.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000774.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000775.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000776.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000777.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000778.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000779.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000780.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000781.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000782.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000783.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000784.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000785.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000786.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000787.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000788.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000789.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000790.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000791.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000792.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000793.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000794.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000795.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000796.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000797.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000798.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000799.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000800.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000801.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000802.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000803.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000804.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000805.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000806.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000807.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000808.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000809.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000810.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000811.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000812.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000813.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000814.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000815.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000816.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000817.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000818.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000819.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000820.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000821.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000822.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000823.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000824.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000825.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000826.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000827.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000828.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000829.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000830.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000831.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000832.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000833.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000834.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000835.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000836.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000837.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000838.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000839.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000840.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000841.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000842.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000843.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000844.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000845.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000846.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000847.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000848.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000849.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000850.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000851.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000852.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000853.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000854.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000855.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000856.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000857.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000858.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000859.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000860.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000861.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000862.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000863.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000864.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000865.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000866.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000867.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000868.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000869.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000870.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000871.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000872.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000873.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000874.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000875.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000876.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000877.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000878.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000879.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000880.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000881.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000882.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000883.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000884.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000885.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000886.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000887.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000888.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000889.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000890.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000891.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000892.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000893.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000894.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000895.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000896.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000897.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000898.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000899.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000900.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000901.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000902.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000903.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000904.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000905.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000906.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000907.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000908.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000909.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000910.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000911.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000912.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000913.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000914.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000915.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000916.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000917.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000918.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000919.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000920.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000921.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000922.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000923.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000924.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000925.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000926.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000927.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000928.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000929.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000930.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000931.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000932.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000933.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000934.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000935.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000936.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000937.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000938.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000939.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000940.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000941.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000942.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000943.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000944.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000945.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000946.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000947.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000948.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000949.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000950.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000951.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000952.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000953.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000954.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000955.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000956.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000957.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000958.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000959.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000960.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000961.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000962.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000963.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000964.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000965.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000966.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000967.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000968.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000969.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000970.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000971.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000972.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000973.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000974.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000975.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000976.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000977.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000978.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000979.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000980.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000981.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000982.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000983.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000984.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000985.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000986.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000987.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000988.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000989.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000990.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000991.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000992.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000993.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000994.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000995.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/000996.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/author.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/date.html create mode 120000 zarb-ml/mageia-sysadm/2010-November/index.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/subject.html create mode 100644 zarb-ml/mageia-sysadm/2010-November/thread.html (limited to 'zarb-ml/mageia-sysadm/2010-November') diff --git a/zarb-ml/mageia-sysadm/2010-November/000129.html b/zarb-ml/mageia-sysadm/2010-November/000129.html new file mode 100644 index 000000000..244aa0153 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000129.html @@ -0,0 +1,77 @@ + + + + [Mageia-sysadm] list of things to do + + + + + + + + + +

[Mageia-sysadm] list of things to do

+ Michael scherer + misc at zarb.org +
+ Mon Nov 1 00:15:44 CET 2010 +

+
+ +
On Sun, Oct 31, 2010 at 06:38:00PM +0100, nicolas vigier wrote:
+> On Fri, 29 Oct 2010, Dexter Morgan wrote:
+> 
+> > 
+> > I can help for the BS too.
+> > 
+> > what still need to be done  ?
+> 
+> What still needs to be done :
+>  - package (or update package) iurt and install it on build nodes
+
+and please make sure it work out of the box even on packagers computer, this would
+greatly help :)
+( or if it cannot be done, please list what should be done to make it work )
+
+>  - setup ssh keys to allow ssh access from valstar to build nodes, from
+>    ~mageia account (or someone else has better name to replace ~mandrake
+>    account ?)
+
+~builder ?
+
+-- 
+Michael Scherer
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000130.html b/zarb-ml/mageia-sysadm/2010-November/000130.html new file mode 100644 index 000000000..62de05bcc --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000130.html @@ -0,0 +1,93 @@ + + + + [Mageia-sysadm] About build system setup + + + + + + + + + +

[Mageia-sysadm] About build system setup

+ Michael scherer + misc at zarb.org +
+ Mon Nov 1 00:30:23 CET 2010 +

+
+ +
 
+>  * to submit builds, packagers will use "mdvsys/repsys submit" from their
+>    computer, or from Cauldron test nodes. mdvsys/repsys require ssh to
+>    connect to valstar and run youri wrapper. We will setup a restricted
+>    shell to only allow commands needed by mdvsys/repsys, and ssh/git
+>    (valstar is also the svn/git server). On Mandriva svn server we used
+>    this script as the default shell to restrict to only ssh/git commands :
+>    http://svn.gna.org/svn/savane/trunk/backend/accounts/sv_membersh.pl
+>    We can update this script to also allow commands used by mdvsys/repsys.
+
+While I am obviously biased towards mdvsys, can we simplify everything by just keeping
+mdvsys in the documentation ?
+
+Can we also use some CNAME for valstar role ( if we need to move it on another server ).
+Ie, we should not directly use the name of the servers anywhere, except when obviously required.
+
+
+>  * On Mandriva build system we had one ~mandrake user doing everything
+>    (build bots, scheduler, mirrors, sign packages ...). Now we can split
+>    this to have one user for each task. We can have the following users :
+>    - buildbot (to run iurt on build nodes)
+>    - schedbot (youri/ulri/emi)
+>    - signbot (sign packages)
+>    However we already have a mirror user on valstar. Is it ok, or should
+>    we rename it to "mirrorbot" ? Or remove the "bot" suffix from other
+>    users ?
+
++1 for the split, that's a great idea.
+And +1 for keeping the bot suffix to avoid clash. So for consistency,
+I would vote "mirrorbot" too. ( even if I do not really think it will change much ).
+
+( and in fact, I would even push to use _foo for system daemon user on the distro side, like
+apple does, as this also prevent clash, but I disgress )
+-- 
+Michael Scherer
+
+
+ + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000131.html b/zarb-ml/mageia-sysadm/2010-November/000131.html new file mode 100644 index 000000000..5c9f130ee --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000131.html @@ -0,0 +1,104 @@ + + + + [Mageia-sysadm] About build system setup + + + + + + + + + +

[Mageia-sysadm] About build system setup

+ Olivier Thauvin + nanardon at nanardon.zarb.org +
+ Mon Nov 1 02:49:40 CET 2010 +

+
+ +
* nicolas vigier (boklm at mars-attacks.org) wrote:
+> Hello,
+> 
+> After some discussions tonight with blino on IRC about build system,
+> some infos :
+> 
+> 
+>  * On Mandriva build system we had one ~mandrake user doing everything
+>    (build bots, scheduler, mirrors, sign packages ...). Now we can split
+>    this to have one user for each task. We can have the following users :
+>    - buildbot (to run iurt on build nodes)
+>    - schedbot (youri/ulri/emi)
+>    - signbot (sign packages)
+>    However we already have a mirror user on valstar. Is it ok, or should
+>    we rename it to "mirrorbot" ? Or remove the "bot" suffix from other
+>    users ?
+
+I created the mirror user to be the owner the mirror tree. The username
+can be changed, at time it only exists in passwd file to wait ldap,
+a massive chown() is also still possible (the mirror tree is less than
+1MB... at time).
+
+May I also suggest we split 'mirror' user in two part:
+- one owning the top level tree and "static" data, or data we push
+  manually (iso, doc, ...)
+- one having permission on distro then able to redo hdlist and push rpms.
+
+Maybe it is too much ?
+
+Talking about mirror, you can push everything you need to setup BS on
+mirror tree until you respect the structure. rsync.mageia still point to
+ryu.zarb.
+
+-- 
+
+Olivier Thauvin
+CNRS  -  LATMOS
+♖ ♘ ♗ ♕ ♔ ♗ ♘ ♖
+-------------- next part --------------
+A non-text attachment was scrubbed...
+Name: not available
+Type: application/pgp-signature
+Size: 197 bytes
+Desc: not available
+URL: </pipermail/mageia-sysadm/attachments/20101101/6e5f95d0/attachment.asc>
+
+ + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000132.html b/zarb-ml/mageia-sysadm/2010-November/000132.html new file mode 100644 index 000000000..9de72e553 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000132.html @@ -0,0 +1,101 @@ + + + + [Mageia-sysadm] 2010.1 kernel with the vmscan fix + + + + + + + + + +

[Mageia-sysadm] 2010.1 kernel with the vmscan fix

+ Buchan Milne + bgmilne at mandriva.org +
+ Mon Nov 1 11:47:51 CET 2010 +

+
+ +
On Sunday, 24 October 2010 07:28:55 Thomas Backlund wrote:
+> Hi,
+> there is now a kernel-2.6.33.7-2.1mnb for 2010.1 at:
+> 
+> http://tmb.mine.nu/Mandriva/2010.1/
+> http://tmb2.mine.nu/Mandriva/2010.1/
+> 
+> With the fix:
+> - vmscan: raise the bar to PAGEOUT_IO_SYNC stalls
+>    (Fixes "system goes unresponsive under memory pressure and lots of
+>     dirty/writeback pages" bug. (http://lkml.org/lkml/2010/4/4/86))
+> 
+> 
+> This was also suggested by blino to help the BS
+
+This is definitely a huge improvement:
+
+[root at tiger ~]# uname -r
+2.6.33.7-desktop-2.1mnb
+[root at tiger ~]# time dd if=/media/smartdrive/isos/mandriva/mandriva-linux-
+free-2010-spring-i586/mandriva-linux-free-2010-spring-i586.iso 
+of=/dev/sdc;uptime
+9107456+0 records in
+9107456+0 records out
+4663017472 bytes (4.7 GB) copied, 7075.81 s, 659 kB/s
+4.83user 60.63system 1:57:55elapsed 0%CPU (0avgtext+0avgdata 3216maxresident)k
+18186800inputs+9107456outputs (1major+260minor)pagefaults 0swaps
+ 11:38:07 up 17:35, 21 users,  load average: 4.57, 5.00, 5.23
+
+While this was running, the system was quite responsive, in fact I didn't 
+notice that it was under load, whereas before, with dd'ing an ISO from a USB 
+hard drive to a slow USB flash disk, load average was higher, and my system 
+was almost unusable (even just switching between running applications was 
+tedious). Unfortunately, due to a 20-month-old having learned how to operate 
+switches, I booted into this kernel without notice, so I didn't validate my 
+previous experience on the previous kernel with exactly the same operation, 
+but I am quite sure I have experienced it before on 2.6.33.x.
+
+Regards,
+Buchan
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000133.html b/zarb-ml/mageia-sysadm/2010-November/000133.html new file mode 100644 index 000000000..4d126a0f4 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000133.html @@ -0,0 +1,78 @@ + + + + [Mageia-sysadm] About build system setup + + + + + + + + + +

[Mageia-sysadm] About build system setup

+ nicolas vigier + boklm at mars-attacks.org +
+ Mon Nov 1 12:16:39 CET 2010 +

+
+ +
On Mon, 01 Nov 2010, Michael scherer wrote:
+
+>  
+> >  * to submit builds, packagers will use "mdvsys/repsys submit" from their
+> >    computer, or from Cauldron test nodes. mdvsys/repsys require ssh to
+> >    connect to valstar and run youri wrapper. We will setup a restricted
+> >    shell to only allow commands needed by mdvsys/repsys, and ssh/git
+> >    (valstar is also the svn/git server). On Mandriva svn server we used
+> >    this script as the default shell to restrict to only ssh/git commands :
+> >    http://svn.gna.org/svn/savane/trunk/backend/accounts/sv_membersh.pl
+> >    We can update this script to also allow commands used by mdvsys/repsys.
+> 
+> While I am obviously biased towards mdvsys, can we simplify everything by just keeping
+> mdvsys in the documentation ?
+
+Ok.
+
+> Can we also use some CNAME for valstar role ( if we need to move it on another server ).
+> Ie, we should not directly use the name of the servers anywhere, except when obviously required.
+
+Something like pkgsubmit.mageia.org ?
+
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000134.html b/zarb-ml/mageia-sysadm/2010-November/000134.html new file mode 100644 index 000000000..69eae724d --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000134.html @@ -0,0 +1,101 @@ + + + + [Mageia-sysadm] [69] install task-bs-cluster-chroot and iurt on build nodes + + + + + + + + + +

[Mageia-sysadm] [69] install task-bs-cluster-chroot and iurt on build nodes

+ root at mageia.org + root at mageia.org +
+ Mon Nov 1 12:22:21 CET 2010 +

+
+ +
Revision: 69
+Author:   blino
+Date:     2010-11-01 12:22:21 +0100 (Mon, 01 Nov 2010)
+Log Message:
+-----------
+install task-bs-cluster-chroot and iurt on build nodes
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-10-31 19:35:57 UTC (rev 68)
++++ puppet/manifests/nodes.pp	2010-11-01 11:22:21 UTC (rev 69)
+@@ -82,20 +82,16 @@
+ node jonund {
+ # Location: IELO datacenter (marseille)
+ #
+-# TODO:
+-# - iurt
+-#
+ 	include default_mageia_server
++	include default_mageia_buildnode
+     timezone::timezone { "Europe/Paris": }
+ }
+ 
+ node ecosse {
+ # Location: IELO datacenter (marseille)
+ #
+-# TODO:
+-# - iurt
+-#
+ 	include default_mageia_server
++	include default_mageia_buildnode
+     timezone::timezone { "Europe/Paris": }
+ }
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101101/572a41ff/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000135.html b/zarb-ml/mageia-sysadm/2010-November/000135.html new file mode 100644 index 000000000..1c4e8e0e3 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000135.html @@ -0,0 +1,93 @@ + + + + [Mageia-sysadm] [70] install task-bs-cluster-chroot and iurt on build nodes (common class) + + + + + + + + + +

[Mageia-sysadm] [70] install task-bs-cluster-chroot and iurt on build nodes (common class)

+ root at mageia.org + root at mageia.org +
+ Mon Nov 1 12:23:02 CET 2010 +

+
+ +
Revision: 70
+Author:   blino
+Date:     2010-11-01 12:23:02 +0100 (Mon, 01 Nov 2010)
+Log Message:
+-----------
+install task-bs-cluster-chroot and iurt on build nodes (common class)
+
+Modified Paths:
+--------------
+    puppet/manifests/common.pp
+
+Modified: puppet/manifests/common.pp
+===================================================================
+--- puppet/manifests/common.pp	2010-11-01 11:22:21 UTC (rev 69)
++++ puppet/manifests/common.pp	2010-11-01 11:23:02 UTC (rev 70)
+@@ -73,3 +73,14 @@
+     include ntp
+     include postfix::simple_relay
+ }
++
++class default_mageia_buildnode {
++    # build node common settings
++
++    # we could have the following skip list to use less space:
++    # '/(drakx-installer-binaries|drakx-installer-advertising|gfxboot|drakx-installer-stage2|mandriva-theme)/'
++    $package_list = ['task-bs-cluster-chroot', 'iurt']
++    package { $package_list:
++        ensure => installed;
++    }
++}
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101101/2ba46366/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000136.html b/zarb-ml/mageia-sysadm/2010-November/000136.html new file mode 100644 index 000000000..451bfe276 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000136.html @@ -0,0 +1,90 @@ + + + + [Mageia-sysadm] About build system setup + + + + + + + + + +

[Mageia-sysadm] About build system setup

+ nicolas vigier + boklm at mars-attacks.org +
+ Mon Nov 1 12:25:02 CET 2010 +

+
+ +
On Mon, 01 Nov 2010, Olivier Thauvin wrote:
+
+> * nicolas vigier (boklm at mars-attacks.org) wrote:
+> > Hello,
+> > 
+> > After some discussions tonight with blino on IRC about build system,
+> > some infos :
+> > 
+> > 
+> >  * On Mandriva build system we had one ~mandrake user doing everything
+> >    (build bots, scheduler, mirrors, sign packages ...). Now we can split
+> >    this to have one user for each task. We can have the following users :
+> >    - buildbot (to run iurt on build nodes)
+> >    - schedbot (youri/ulri/emi)
+> >    - signbot (sign packages)
+> >    However we already have a mirror user on valstar. Is it ok, or should
+> >    we rename it to "mirrorbot" ? Or remove the "bot" suffix from other
+> >    users ?
+> 
+> I created the mirror user to be the owner the mirror tree. The username
+> can be changed, at time it only exists in passwd file to wait ldap,
+> a massive chown() is also still possible (the mirror tree is less than
+> 1MB... at time).
+> 
+> May I also suggest we split 'mirror' user in two part:
+> - one owning the top level tree and "static" data, or data we push
+>   manually (iso, doc, ...)
+> - one having permission on distro then able to redo hdlist and push rpms.
+
+Ok. "mirrorstatic" user for static data pushed manually (or repositories
+that should not change), and "mirrorbot" user for repositories data
+pushed by youri bot ?
+
+
+ + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000137.html b/zarb-ml/mageia-sysadm/2010-November/000137.html new file mode 100644 index 000000000..c41ba7d04 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000137.html @@ -0,0 +1,86 @@ + + + + [Mageia-sysadm] Packages SVN + + + + + + + + + +

[Mageia-sysadm] Packages SVN

+ nicolas vigier + boklm at mars-attacks.org +
+ Mon Nov 1 16:25:35 CET 2010 +

+
+ +
Hello,
+
+To avoid the problem of a growing svn repository full of old tarballs, I
+think it is a good time to start using separate repositories for binary
+files.
+
+repsys has a branch called "binrepo-svn" with support for separate
+binary repositories :
+http://git.mandriva.com/?p=projects/repsys.git;a=summary
+The README file is interesting :
+http://git.mandriva.com/?p=projects/repsys.git;a=blob;f=BRANCH;h=ebb87c7d6d20daa476ed49990b150ac45b02ddf4;hb=binrepo-svn
+
+About packages import, I would not import a copy of Mandriva svn, but
+instead do something like this :
+  for file in *.src.rpm
+  do
+    mdvsys import $file
+  done
+We lose all svn history, but it allows us to have a much smaller
+repository (without all the tarballs history), and we can keep a
+readonly copy of Mandriva repository somewhere for reference.
+
+What do you think ?
+
+Nicolas
+
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000138.html b/zarb-ml/mageia-sysadm/2010-November/000138.html new file mode 100644 index 000000000..8edec3369 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000138.html @@ -0,0 +1,114 @@ + + + + [Mageia-sysadm] [71] add reminder for urpmi.update -a + + + + + + + + + +

[Mageia-sysadm] [71] add reminder for urpmi.update -a

+ root at mageia.org + root at mageia.org +
+ Mon Nov 1 23:04:53 CET 2010 +

+
+ +
Revision: 71
+Author:   blino
+Date:     2010-11-01 23:04:53 +0100 (Mon, 01 Nov 2010)
+Log Message:
+-----------
+add reminder for urpmi.update -a
+
+Modified Paths:
+--------------
+    puppet/manifests/common.pp
+
+Modified: puppet/manifests/common.pp
+===================================================================
+--- puppet/manifests/common.pp	2010-11-01 11:23:02 UTC (rev 70)
++++ puppet/manifests/common.pp	2010-11-01 22:04:53 UTC (rev 71)
+@@ -72,6 +72,9 @@
+     include base_packages
+     include ntp
+     include postfix::simple_relay
++
++# TODO:
++# - run urpmi.update -a in a cron job
+ }
+ 
+ class default_mageia_buildnode {
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101101/88ba5abc/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000139.html b/zarb-ml/mageia-sysadm/2010-November/000139.html new file mode 100644 index 000000000..6cf25907d --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000139.html @@ -0,0 +1,132 @@ + + + + [Mageia-sysadm] [72] - setup a cronjob for urpmi_update ( your wish is my command, blino ) + + + + + + + + + +

[Mageia-sysadm] [72] - setup a cronjob for urpmi_update ( your wish is my command, blino )

+ root at mageia.org + root at mageia.org +
+ Mon Nov 1 23:50:42 CET 2010 +

+
+ +
Revision: 72
+Author:   misc
+Date:     2010-11-01 23:50:42 +0100 (Mon, 01 Nov 2010)
+Log Message:
+-----------
+- setup a cronjob for urpmi_update ( your wish is my command, blino ) 
+
+Modified Paths:
+--------------
+    puppet/manifests/common.pp
+
+Modified: puppet/manifests/common.pp
+===================================================================
+--- puppet/manifests/common.pp	2010-11-01 22:04:53 UTC (rev 71)
++++ puppet/manifests/common.pp	2010-11-01 22:50:42 UTC (rev 72)
+@@ -62,6 +62,16 @@
+ 
+ }
+ 
++class urpmi_update {
++    cron { urpmi_update:
++        user => root,
++        hour => 3,
++        minute => 14,
++        command => "urpmi.update -a",
++    }
++
++}
++
+ class default_mageia_server {
+     include timezone
+ 
+@@ -72,9 +82,7 @@
+     include base_packages
+     include ntp
+     include postfix::simple_relay
+-
+-# TODO:
+-# - run urpmi.update -a in a cron job
++    include urpmi_update
+ }
+ 
+ class default_mageia_buildnode {
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101101/6533944e/attachment-0001.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000140.html b/zarb-ml/mageia-sysadm/2010-November/000140.html new file mode 100644 index 000000000..e98264e59 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000140.html @@ -0,0 +1,134 @@ + + + + [Mageia-sysadm] Packages SVN + + + + + + + + + +

[Mageia-sysadm] Packages SVN

+ Michael Scherer + misc at zarb.org +
+ Tue Nov 2 00:24:09 CET 2010 +

+
+ +
Le lundi 01 novembre 2010 à 16:25 +0100, nicolas vigier a écrit :
+> Hello,
+> 
+> To avoid the problem of a growing svn repository full of old tarballs, I
+> think it is a good time to start using separate repositories for binary
+> files.
+> 
+> repsys has a branch called "binrepo-svn" with support for separate
+> binary repositories :
+> http://git.mandriva.com/?p=projects/repsys.git;a=summary
+> The README file is interesting :
+> http://git.mandriva.com/?p=projects/repsys.git;a=blob;f=BRANCH;h=ebb87c7d6d20daa476ed49990b150ac45b02ddf4;hb=binrepo-svn
+> 
+> About packages import, I would not import a copy of Mandriva svn, but
+> instead do something like this :
+>   for file in *.src.rpm
+>   do
+>     mdvsys import $file
+>   done
+> We lose all svn history, but it allows us to have a much smaller
+> repository (without all the tarballs history), and we can keep a
+> readonly copy of Mandriva repository somewhere for reference.
+> 
+> What do you think ?
+
+My main fear would be that this code is basically untested. So could we
+please do a full test run before ( like let people test the repository
+at least once before declaring this is "production" )
+?
+
+We should write a test procedure, with error cases :
+= import =
+ - import a package
+ - import a binary rpm
+ - import a random file ( and see it doesn't work ) 
+ - reimport a rpm already present
+= checkout = 
+ - checkout a package 
+ - checkout a package that do not exist yet
+ - commit a change
+ - commit something that violate something fobidden by hook
+ - change the tarball and commit it
+  
+= submit  
+ - submit it
+ - submit a non existing rpm 
+ - submit a rpm with some problem in the srpm 
+  - missing macros
+ - submit a rpm without increasing the release/version
+ - submit a older rpm 
+ - submit a rpm that violate some youri rules ( or rpmlint one )
+
+= build =
+ - build a rpm
+ - build a rpm that do not work
+   - missing builddeps ( ie, at rpm level )
+   - error in the build ( segfault, missing file )
+   - over capacity ( memory, disk space )
+ - build a backport
+ - build a update
+ - build a rpm  with arch and noarch
+ - build rpm with ArchExcluded
+ - build a rpm for only one of the 2 arch ( or even no valid arch, like
+sparc )
+
+and maybe test the robustness of every component ( ie, how does the
+server react if we stop ecosse/jonund, how does the main scheduler work
+if we stop something else, etc ).
+
+I tried to be exhaustive, but I guess I wasn't, so do not hesitate to
+complete :)
+
+-- 
+Michael Scherer
+
+
+ + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000141.html b/zarb-ml/mageia-sysadm/2010-November/000141.html new file mode 100644 index 000000000..8a8595d8a --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000141.html @@ -0,0 +1,99 @@ + + + + [Mageia-sysadm] Puppet backport + + + + + + + + + +

[Mageia-sysadm] Puppet backport

+ Michael Scherer + misc at zarb.org +
+ Tue Nov 2 01:10:35 CET 2010 +

+
+ +
Hi,
+
+Since I was planning to use extlookup ( so the passwords can be stored
+outside of svn ), I will likely rebuild puppet latest version 2.6.2, as
+the feature is included. 
+
+Any objections ?
+The changelog is on
+http://projects.puppetlabs.com/projects/puppet/wiki/Release_Notes 
+
+-- 
+Michael Scherer
+
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000142.html b/zarb-ml/mageia-sysadm/2010-November/000142.html new file mode 100644 index 000000000..65cf4ba59 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000142.html @@ -0,0 +1,69 @@ + + + + [Mageia-sysadm] About build system setup + + + + + + + + + +

[Mageia-sysadm] About build system setup

+ Michael Scherer + misc at zarb.org +
+ Tue Nov 2 01:55:57 CET 2010 +

+
+ +
Le lundi 01 novembre 2010 à 12:16 +0100, nicolas vigier a écrit :
+> On Mon, 01 Nov 2010, Michael scherer wrote:
+
+> > Can we also use some CNAME for valstar role ( if we need to move it on another server ).
+> > Ie, we should not directly use the name of the servers anywhere, except when obviously required.
+> 
+> Something like pkgsubmit.mageia.org ?
+
+Yep, good name.
+
+
+-- 
+Michael Scherer
+
+
+ + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000143.html b/zarb-ml/mageia-sysadm/2010-November/000143.html new file mode 100644 index 000000000..f2ff7c0b2 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000143.html @@ -0,0 +1,93 @@ + + + + [Mageia-sysadm] ldap deployement + + + + + + + + + +

[Mageia-sysadm] ldap deployement

+ Thierry Vignaud + thierry.vignaud at gmail.com +
+ Tue Nov 2 09:53:25 CET 2010 +

+
+ +
On 29 October 2010 20:45, Michael Scherer <misc at zarb.org> wrote:
+> Catalyst permit to use mod_perl, fastcgi, standalone daemon and cgi for
+> deployement. Each have its pros and cons, anyone has a opinion on it ?
+
+fastcgi enables to be http server agnostic (think nginx).
+Otherwise mod_perl & fastcgi should be as fast.
+Dunno for the standalone server
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000144.html b/zarb-ml/mageia-sysadm/2010-November/000144.html new file mode 100644 index 000000000..71f848bbf --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000144.html @@ -0,0 +1,68 @@ + + + + [Mageia-sysadm] Packages SVN + + + + + + + + + +

[Mageia-sysadm] Packages SVN

+ Thierry Vignaud + thierry.vignaud at gmail.com +
+ Tue Nov 2 09:55:21 CET 2010 +

+
+ +
On 1 November 2010 16:25, nicolas vigier <boklm at mars-attacks.org> wrote:
+> We lose all svn history, but it allows us to have a much smaller
+> repository (without all the tarballs history), and we can keep a
+> readonly copy of Mandriva repository somewhere for reference.
+>
+> What do you think ?
+
+Loosing history makes me cry.
+Couldn't we try to script sg that removes the big objects from SVN
+while exporting/reimporting it?
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000145.html b/zarb-ml/mageia-sysadm/2010-November/000145.html new file mode 100644 index 000000000..078134b59 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000145.html @@ -0,0 +1,63 @@ + + + + [Mageia-sysadm] About build system setup + + + + + + + + + +

[Mageia-sysadm] About build system setup

+ Thierry Vignaud + thierry.vignaud at gmail.com +
+ Tue Nov 2 09:58:39 CET 2010 +

+
+ +
On 1 November 2010 02:49, Olivier Thauvin <nanardon at nanardon.zarb.org> wrote:
+> I created the mirror user to be the owner the mirror tree. The username
+> can be changed, at time it only exists in passwd file to wait ldap,
+> a massive chown() is also still possible (the mirror tree is less than
+> 1MB... at time).
+
+Tree size doesn't matter, the number of files does more.
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000146.html b/zarb-ml/mageia-sysadm/2010-November/000146.html new file mode 100644 index 000000000..b3e66074b --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000146.html @@ -0,0 +1,118 @@ + + + + [Mageia-sysadm] planning for sysadmin task + + + + + + + + + +

[Mageia-sysadm] planning for sysadmin task

+ Thierry Vignaud + thierry.vignaud at gmail.com +
+ Tue Nov 2 10:42:59 CET 2010 +

+
+ +
On 30 October 2010 10:55, Michael Scherer <misc at zarb.org> wrote:
+>> At some extent, RPM dependencies would be a useful thing for setting
+>> up the application but this mostly happens once (first install) and
+>> can be easily hosted within the web application itself (and then
+>> handle the error) - WordPress and Drupal do it for instance.
+>
+> It also prevent the removal of used dependencies.
+> This can happen either when we are cleaning the server, or when we
+> upgrade the server, or another application.
+
+(Please quote!!!)
+Indeed. Last example was ganglias which was broken on mdv bs b/c
+it seems it was installed as a tarball instead as a package and got
+broken when someone cleaned up some deps which rpm couldn't
+know were needed by not packaged stuff
+
+>> So we can discuss this further with other future webteam members but I
+>> will seriously not manage a production environment that goes through
+>> packaging for app updates.
+>
+> Well, if creating a package is just a single command ( as would be a
+> upgrade to the production server ), I do not think it will be much of a
+> problem. The only issue is to find someone skilled enough to create a
+> shell script for that and I do not really think that it will be a big
+> problem. We have a team of 8 admins and there is several volunteers
+> eager to help, it would be quite weird to have no one able to do it in
+> time.
+
+What's more, MDV example shows that we should go for the simpler
+usage, aka using packaged web apps that got security updates.
+Just look at kenobi that hosts a web server and was running for years
+an outdated distro
+with no more updates, where nobody cared that web apps got broken, and the like.
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000147.html b/zarb-ml/mageia-sysadm/2010-November/000147.html new file mode 100644 index 000000000..3d52f6a85 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000147.html @@ -0,0 +1,121 @@ + + + + [Mageia-sysadm] ldap deployement + + + + + + + + + +

[Mageia-sysadm] ldap deployement

+ Olivier Thauvin + nanardon at nanardon.zarb.org +
+ Tue Nov 2 10:56:39 CET 2010 +

+
+ +
* Thierry Vignaud (thierry.vignaud at gmail.com) wrote:
+> On 29 October 2010 20:45, Michael Scherer <misc at zarb.org> wrote:
+> > Catalyst permit to use mod_perl, fastcgi, standalone daemon and cgi for
+> > deployement. Each have its pros and cons, anyone has a opinion on it ?
+> 
+> fastcgi enables to be http server agnostic (think nginx).
+> Otherwise mod_perl & fastcgi should be as fast.
+> Dunno for the standalone server
+
+I use Standalone server at work, with apache mod_proxy and it work fine.
+Catalyst has a --fork option (if your code support it) and each
+connection is handle inside an eval() to ensure it won't stop at first
+issue.
+
+I had issue with encoding using fastcgi (the reason I switched to a
+standalone server).
+
+CGI method work fine, but catalyst use per design a lot of perl modules,
+meaning a lot of perl files to load at each startup, this can cause load
+issue.
+
+The only thing I haven't test yet is mod_perl.
+
+> _______________________________________________
+> Mageia-sysadm mailing list
+> Mageia-sysadm at mageia.org
+> https://www.mageia.org/mailman/listinfo/mageia-sysadm
+-- 
+
+Olivier Thauvin
+CNRS  -  LATMOS
+♖ ♘ ♗ ♕ ♔ ♗ ♘ ♖
+-------------- next part --------------
+A non-text attachment was scrubbed...
+Name: not available
+Type: application/pgp-signature
+Size: 197 bytes
+Desc: not available
+URL: </pipermail/mageia-sysadm/attachments/20101102/e1356b59/attachment.asc>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000148.html b/zarb-ml/mageia-sysadm/2010-November/000148.html new file mode 100644 index 000000000..04179b217 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000148.html @@ -0,0 +1,85 @@ + + + + [Mageia-sysadm] About build system setup + + + + + + + + + +

[Mageia-sysadm] About build system setup

+ Olivier Thauvin + nanardon at nanardon.zarb.org +
+ Tue Nov 2 10:58:34 CET 2010 +

+
+ +
* Thierry Vignaud (thierry.vignaud at gmail.com) wrote:
+> On 1 November 2010 02:49, Olivier Thauvin <nanardon at nanardon.zarb.org> wrote:
+> > I created the mirror user to be the owner the mirror tree. The username
+> > can be changed, at time it only exists in passwd file to wait ldap,
+> > a massive chown() is also still possible (the mirror tree is less than
+> > 1MB... at time).
+> 
+> Tree size doesn't matter, the number of files does more.
+
+The size does matter for mirror needing to download it again.
+
+But I can reformulate: the mirror is still small and contains only few
+files.
+
+> _______________________________________________
+> Mageia-sysadm mailing list
+> Mageia-sysadm at mageia.org
+> https://www.mageia.org/mailman/listinfo/mageia-sysadm
+-- 
+
+Olivier Thauvin
+CNRS  -  LATMOS
+♖ ♘ ♗ ♕ ♔ ♗ ♘ ♖
+-------------- next part --------------
+A non-text attachment was scrubbed...
+Name: not available
+Type: application/pgp-signature
+Size: 197 bytes
+Desc: not available
+URL: </pipermail/mageia-sysadm/attachments/20101102/92aa5707/attachment-0001.asc>
+
+ + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000149.html b/zarb-ml/mageia-sysadm/2010-November/000149.html new file mode 100644 index 000000000..78e47dabc --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000149.html @@ -0,0 +1,78 @@ + + + + [Mageia-sysadm] Packages SVN + + + + + + + + + +

[Mageia-sysadm] Packages SVN

+ Olivier Blin + mageia at blino.org +
+ Tue Nov 2 11:04:14 CET 2010 +

+
+ +
Thierry Vignaud <thierry.vignaud at gmail.com> writes:
+
+> On 1 November 2010 16:25, nicolas vigier <boklm at mars-attacks.org> wrote:
+>> We lose all svn history, but it allows us to have a much smaller
+>> repository (without all the tarballs history), and we can keep a
+>> readonly copy of Mandriva repository somewhere for reference.
+>>
+>> What do you think ?
+>
+> Loosing history makes me cry.
+> Couldn't we try to script sg that removes the big objects from SVN
+> while exporting/reimporting it?
+
+IIRC, there was such a script being worked on at Mandriva, bogdano or
+spuk would know.
+
+About losing history, maybe it's something we will have to go through,
+not to risk importing copyrighted/trademarked material.
+
+-- 
+Olivier Blin - blino
+
+ + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000150.html b/zarb-ml/mageia-sysadm/2010-November/000150.html new file mode 100644 index 000000000..542f30776 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000150.html @@ -0,0 +1,93 @@ + + + + [Mageia-sysadm] planning for sysadmin task + + + + + + + + + +

[Mageia-sysadm] planning for sysadmin task

+ nicolas vigier + boklm at mars-attacks.org +
+ Tue Nov 2 11:44:34 CET 2010 +

+
+ +
On Sat, 30 Oct 2010, Michael Scherer wrote:
+
+> 
+> It also prevent the removal of used dependencies. 
+> This can happen either when we are cleaning the server, or when we
+> upgrade the server, or another application. 
+
+I think we should avoid installing packages manually on the servers, and
+always add them in the puppet configuration to install them.
+
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000151.html b/zarb-ml/mageia-sysadm/2010-November/000151.html new file mode 100644 index 000000000..70ebe3937 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000151.html @@ -0,0 +1,93 @@ + + + + [Mageia-sysadm] planning for sysadmin task + + + + + + + + + +

[Mageia-sysadm] planning for sysadmin task

+ nicolas vigier + boklm at mars-attacks.org +
+ Tue Nov 2 11:45:49 CET 2010 +

+
+ +
On Tue, 02 Nov 2010, Thierry Vignaud wrote:
+
+> 
+> (Please quote!!!)
+> Indeed. Last example was ganglias which was broken on mdv bs b/c
+> it seems it was installed as a tarball instead as a package and got
+> broken when someone cleaned up some deps which rpm couldn't
+> know were needed by not packaged stuff
+
+Are you sure ? From what I remember, ganglia was installed using
+packages.
+
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000152.html b/zarb-ml/mageia-sysadm/2010-November/000152.html new file mode 100644 index 000000000..2479b32df --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000152.html @@ -0,0 +1,117 @@ + + + + [Mageia-sysadm] [73] add pkgsubmit.mageia.org in dns + + + + + + + + + +

[Mageia-sysadm] [73] add pkgsubmit.mageia.org in dns

+ root at mageia.org + root at mageia.org +
+ Tue Nov 2 12:20:50 CET 2010 +

+
+ +
Revision: 73
+Author:   boklm
+Date:     2010-11-02 12:20:50 +0100 (Tue, 02 Nov 2010)
+Log Message:
+-----------
+add pkgsubmit.mageia.org in dns
+
+Modified Paths:
+--------------
+    puppet/modules/bind/templates/zones/mageia.org.zone
+
+Modified: puppet/modules/bind/templates/zones/mageia.org.zone
+===================================================================
+--- puppet/modules/bind/templates/zones/mageia.org.zone	2010-11-01 22:50:42 UTC (rev 72)
++++ puppet/modules/bind/templates/zones/mageia.org.zone	2010-11-02 11:20:50 UTC (rev 73)
+@@ -3,7 +3,7 @@
+ ; $Id$
+ $TTL	3D
+ @       IN      SOA     ns0.zarb.org.   mageia.org.  (
+-        2010100507	; Serial
++        2010110200	; Serial
+         21600		; Refresh
+         3600		; Retry
+         2419200		; Expire
+@@ -62,6 +62,7 @@
+ donation    IN  CNAME www-aufml
+ 
+ puppetmaster  IN  CNAME valstar
++pkgsubmit   IN CNAME valstar
+ 
+ ; temporary
+ ;forum       IN A 140.211.167.148
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101102/f09d780c/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000153.html b/zarb-ml/mageia-sysadm/2010-November/000153.html new file mode 100644 index 000000000..737ea66e8 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000153.html @@ -0,0 +1,109 @@ + + + + [Mageia-sysadm] [74] make both dns server master servers + + + + + + + + + +

[Mageia-sysadm] [74] make both dns server master servers

+ root at mageia.org + root at mageia.org +
+ Tue Nov 2 13:55:45 CET 2010 +

+
+ +
Revision: 74
+Author:   boklm
+Date:     2010-11-02 13:55:44 +0100 (Tue, 02 Nov 2010)
+Log Message:
+-----------
+make both dns server master servers
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-02 11:20:50 UTC (rev 73)
++++ puppet/manifests/nodes.pp	2010-11-02 12:55:44 UTC (rev 74)
+@@ -116,7 +116,7 @@
+ # - LDAP slave (for external traffic maybe)
+ #
+ 	include default_mageia_server
+-    include bind::bind_slave
++    include bind::bind_master
+     timezone::timezone { "Europe/Paris": }
+ # Other services running on this server :
+ # - meetbot
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101102/2be1080f/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000154.html b/zarb-ml/mageia-sysadm/2010-November/000154.html new file mode 100644 index 000000000..cd9b71732 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000154.html @@ -0,0 +1,109 @@ + + + + [Mageia-sysadm] [75] - add the zone on the 2nd master node + + + + + + + + + +

[Mageia-sysadm] [75] - add the zone on the 2nd master node

+ root at mageia.org + root at mageia.org +
+ Tue Nov 2 14:15:52 CET 2010 +

+
+ +
Revision: 75
+Author:   misc
+Date:     2010-11-02 14:15:52 +0100 (Tue, 02 Nov 2010)
+Log Message:
+-----------
+- add the zone on the 2nd master node
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-02 12:55:44 UTC (rev 74)
++++ puppet/manifests/nodes.pp	2010-11-02 13:15:52 UTC (rev 75)
+@@ -117,6 +117,8 @@
+ #
+ 	include default_mageia_server
+     include bind::bind_master
++    bind::zone_master { "mageia.org": }
++    bind::zone_master { "mageia.fr": } 
+     timezone::timezone { "Europe/Paris": }
+ # Other services running on this server :
+ # - meetbot
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101102/b21f2ded/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000155.html b/zarb-ml/mageia-sysadm/2010-November/000155.html new file mode 100644 index 000000000..8a5734534 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000155.html @@ -0,0 +1,148 @@ + + + + [Mageia-sysadm] [76] dns servers moved to ns0.mageia.org and ns1.mageia.org + + + + + + + + + +

[Mageia-sysadm] [76] dns servers moved to ns0.mageia.org and ns1.mageia.org

+ root at mageia.org + root at mageia.org +
+ Tue Nov 2 14:16:02 CET 2010 +

+
+ +
Revision: 76
+Author:   boklm
+Date:     2010-11-02 14:16:01 +0100 (Tue, 02 Nov 2010)
+Log Message:
+-----------
+dns servers moved to ns0.mageia.org and ns1.mageia.org
+
+Modified Paths:
+--------------
+    puppet/modules/bind/templates/zones/mageia.fr.zone
+    puppet/modules/bind/templates/zones/mageia.org.zone
+
+Modified: puppet/modules/bind/templates/zones/mageia.fr.zone
+===================================================================
+--- puppet/modules/bind/templates/zones/mageia.fr.zone	2010-11-02 13:15:52 UTC (rev 75)
++++ puppet/modules/bind/templates/zones/mageia.fr.zone	2010-11-02 13:16:01 UTC (rev 76)
+@@ -2,8 +2,8 @@
+ ; local modifications will be lost
+ ; $Id$
+ $TTL	3D
+-@       IN      SOA     ns0.zarb.org.   mageia.fr.  (
+-        2008111801	; Serial
++@       IN      SOA     ns0.mageia.org.   mageia.fr.  (
++        2010110200	; Serial
+         21600		; Refresh
+         3600		; Retry
+         2419200		; Expire
+@@ -11,8 +11,8 @@
+         )
+ 
+ ; nameservers
+-@	IN      NS      ns0.zarb.org.
+-@	IN      NS      ns1.zarb.org.
++@	IN      NS      ns0.mageia.org.
++@	IN      NS      ns1.mageia.org.
+ 
+ @   IN      MX 10   mx0.zarb.org.
+ @   IN      MX 20   mx1.zarb.org.
+
+Modified: puppet/modules/bind/templates/zones/mageia.org.zone
+===================================================================
+--- puppet/modules/bind/templates/zones/mageia.org.zone	2010-11-02 13:15:52 UTC (rev 75)
++++ puppet/modules/bind/templates/zones/mageia.org.zone	2010-11-02 13:16:01 UTC (rev 76)
+@@ -3,7 +3,7 @@
+ ; $Id$
+ $TTL	3D
+ @       IN      SOA     ns0.zarb.org.   mageia.org.  (
+-        2010110200	; Serial
++        2010110201	; Serial
+         21600		; Refresh
+         3600		; Retry
+         2419200		; Expire
+@@ -11,8 +11,8 @@
+         )
+ 
+ ; nameservers
+-@	IN      NS      ns0.zarb.org.
+-@	IN      NS      ns1.zarb.org.
++@	IN      NS      ns0.mageia.org.
++@	IN      NS      ns1.mageia.org.
+ 
+ @   IN      MX 10   mx0.zarb.org.
+ @   IN      MX 20   mx1.zarb.org.
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101102/0e8b7932/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000156.html b/zarb-ml/mageia-sysadm/2010-November/000156.html new file mode 100644 index 000000000..b7dca78f4 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000156.html @@ -0,0 +1,202 @@ + + + + [Mageia-sysadm] planning for sysadmin task + + + + + + + + + +

[Mageia-sysadm] planning for sysadmin task

+ Romain d'Alverny + rdalverny at gmail.com +
+ Tue Nov 2 14:40:18 CET 2010 +

+
+ +
On Sat, Oct 30, 2010 at 10:55, Michael Scherer <misc at zarb.org> wrote:
+> Le mardi 26 octobre 2010 à 16:39 +0200, Romain d'Alverny a écrit :
+>> At some extent, RPM dependencies would be a useful thing for setting
+>> up the application but this mostly happens once (first install) and
+>> can be easily hosted within the web application itself (and then
+>> handle the error) - WordPress and Drupal do it for instance.
+>
+> It also prevent the removal of used dependencies.
+> This can happen either when we are cleaning the server, or when we
+> upgrade the server, or another application.
+
+As a web developer, I don't expect a production server to change,
+apart from security updates (which should not remove some package,
+unless that's a specific case that is handled offline at first).
+
+If that's for a server upgrade/reinstall, then the webapp should:
+ - have this documented (in some preinstall validation script);
+ - handle this (warning in case of missing dependencies and going
+offlinle if really needed).
+
+> If tomorrow, we discover a huge security hole in php-hugesecurityhole
+> rpm, we need to know who use it to assess the security of the
+> infrastructure. And without knowing what other packages use the rpm,
+> this is gonna be slightly complicated to know if we are affected or not.
+
+Indeed.
+
+However, in the past 6 years both at Mandriva and elsewhere, I do not
+remember a situation where this could not be managed without packaging
+(we did not package web apps):
+ - only used library packages were installed;
+ - if an issue was raised for an installed package, web team was
+notified and a check on both sides (server and app); some times we had
+to code around a missing feature;
+ - when it happened that a package was missing (removed, or
+undocumented when doing a new fresh install), that meant at most a few
+minutes of (managed) service unavailability.
+
+>> So we can discuss this further with other future webteam members but I
+>> will seriously not manage a production environment that goes through
+>> packaging for app updates.
+>
+> Well, if creating a package is just a single command ( as would be a
+> upgrade to the production server ), I do not think it will be much of a
+> problem. The only issue is to find someone skilled enough to create a
+> shell script for that and I do not really think that it will be a big
+> problem. We have a team of 8 admins and there is several volunteers
+> eager to help, it would be quite weird to have no one able to do it in
+> time.
+
+It's not about "in time". It's about "instantly". Or in a matter of a
+single click; as soon as a feature is in, working, reviewed and
+approved by webmasters, it should go online asap (unless there's a
+specific milestone constraint).
+
+Yet I believe this is not an obstacle to RPM packaging, unless there
+are big changes in the app process/layout.
+
+Provided we speak about the same type of web app, of course.
+
+ - I am ok to use packages to deploy some web apps, like
+infrastructure, libraries, slow pace deployment/updates web apps
+(still, with care);
+
+ - I am not confortable at all to use a packaging system to deploy web
+apps that will get frequent updates (main website and related web
+services, blogs, forums, ideas, etc.) or even specific
+rollback/offmode procedures. And I would prefer the web app to take
+care itself of missing dependencies (stopping the service and
+providing a feedback about the fix to be done). Relying on a SCM +
+scripts deploy/check mechanism seems a lot more flexible, fast and
+platform agnostic to me. But I may be wrong.
+
+If we can have a specific build platform for webapps into packages and
+have these easily deploy with pre/post install scripts doing their job
+on a test server, then a prod server, why not. But I really see this
+as a huge payload at this point for a not so obvious gain.
+
+Or we could have a dual approach with only core components of a webapp
+being packaged, and more moving ones being deployed by versioning.
+Still...
+
+Not related to packaging, but that's a complement to the discussion,
+we may need that a privileged access is available to lead webmasters
+(logs read access, shell access to webapps root and config).
+
+
+>> That does not mean I don't care about security - that means that
+>> there's a balance to find and that web developers have to be in charge
+>> of their apps security as well. So if that means we need to have
+>> separate servers to isolate risks, so be it. If that means we need to
+>> go for a different type of hosting, so be it.
+>
+> Separating server do not really help much, if there is a security
+> problem, it will be there wherever you are.
+
+Depends where the exploit comes from: if it comes from the application
+or a specific library, separating servers does help; you kill the
+compromised instance and reload a fresh new one. If it comes from
+system level components, that's another issue.
+
+> We will have work to do to be sure the server is clean after being audited,
+
+I'd be more radical. If a server hosting a web app is compromised, we
+audit it, but we reinstall a full clean one and redeploy the
+applications.
+
+> the reputation will be affected none the less, and if the server is used for
+> spam/attack/whatever, we have to take care of this.
+
+Sure. But things do break. Nothing to be ashamed of. We have to live
+with this and balance security requirements with flexibility as well.
+
+Security is not only a server-level issue, it's an app-level issue as
+well. Leaving webapps developers with no clue/hand over the
+server-level conf/knowledge is not going to help. At least, lead
+webmasters are not supposed to be illiterate regarding system
+administration.
+
+Romain
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000157.html b/zarb-ml/mageia-sysadm/2010-November/000157.html new file mode 100644 index 000000000..cc20ad3d2 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000157.html @@ -0,0 +1,117 @@ + + + + [Mageia-sysadm] [77] add champagne in dns + + + + + + + + + +

[Mageia-sysadm] [77] add champagne in dns

+ root at mageia.org + root at mageia.org +
+ Tue Nov 2 15:41:49 CET 2010 +

+
+ +
Revision: 77
+Author:   boklm
+Date:     2010-11-02 15:41:48 +0100 (Tue, 02 Nov 2010)
+Log Message:
+-----------
+add champagne in dns
+
+Modified Paths:
+--------------
+    puppet/modules/bind/templates/zones/mageia.org.zone
+
+Modified: puppet/modules/bind/templates/zones/mageia.org.zone
+===================================================================
+--- puppet/modules/bind/templates/zones/mageia.org.zone	2010-11-02 13:16:01 UTC (rev 76)
++++ puppet/modules/bind/templates/zones/mageia.org.zone	2010-11-02 14:41:48 UTC (rev 77)
+@@ -3,7 +3,7 @@
+ ; $Id$
+ $TTL	3D
+ @       IN      SOA     ns0.zarb.org.   mageia.org.  (
+-        2010110201	; Serial
++        2010110202	; Serial
+         21600		; Refresh
+         3600		; Retry
+         2419200		; Expire
+@@ -27,6 +27,7 @@
+ vm-gandi     IN A       95.142.164.207
+ kouign-amann IN A       95.142.164.207
+ krampouezh   IN A       95.142.164.207
++champagne    IN A	217.70.188.116
+ 
+ www-aufml   IN  A       91.121.11.63
+ forum       IN  A       88.191.127.89
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101102/d696791c/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000158.html b/zarb-ml/mageia-sysadm/2010-November/000158.html new file mode 100644 index 000000000..bb1ed60c3 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000158.html @@ -0,0 +1,88 @@ + + + + [Mageia-sysadm] [77] add champagne in dns + + + + + + + + + +

[Mageia-sysadm] [77] add champagne in dns

+ nicolas vigier + boklm at mars-attacks.org +
+ Tue Nov 2 16:10:26 CET 2010 +

+
+ +
On Tue, 02 Nov 2010, root at mageia.org wrote:
+
+> add champagne in dns
+
+And now, puppet is also running on champagne.
+
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000159.html b/zarb-ml/mageia-sysadm/2010-November/000159.html new file mode 100644 index 000000000..b810fc514 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000159.html @@ -0,0 +1,98 @@ + + + + [Mageia-sysadm] planning for sysadmin task + + + + + + + + + +

[Mageia-sysadm] planning for sysadmin task

+ Thierry Vignaud + thierry.vignaud at gmail.com +
+ Tue Nov 2 16:44:11 CET 2010 +

+
+ +
On 2 November 2010 11:45, nicolas vigier <boklm at mars-attacks.org> wrote:
+> On Tue, 02 Nov 2010, Thierry Vignaud wrote:
+>
+>>
+>> (Please quote!!!)
+>> Indeed. Last example was ganglias which was broken on mdv bs b/c
+>> it seems it was installed as a tarball instead as a package and got
+>> broken when someone cleaned up some deps which rpm couldn't
+>> know were needed by not packaged stuff
+>
+> Are you sure ? From what I remember, ganglia was installed using
+> packages.
+
+Maybe it was at some point.
+But when I looked why ganglia was dead, packages were not owned by any
+packages and thus it failed to run due to missing requires.
+The machine did got changed (a year ago?)
+Though the breakage happens much more recently I think
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000160.html b/zarb-ml/mageia-sysadm/2010-November/000160.html new file mode 100644 index 000000000..ba272f230 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000160.html @@ -0,0 +1,315 @@ + + + + [Mageia-sysadm] [78] add module to install shell to restrict access to only svn, git, and later package submit + + + + + + + + + +

[Mageia-sysadm] [78] add module to install shell to restrict access to only svn, git, and later package submit

+ root at mageia.org + root at mageia.org +
+ Tue Nov 2 18:55:53 CET 2010 +

+
+ +
Revision: 78
+Author:   boklm
+Date:     2010-11-02 18:55:53 +0100 (Tue, 02 Nov 2010)
+Log Message:
+-----------
+add module to install shell to restrict access to only svn, git, and later package submit
+
+Added Paths:
+-----------
+    puppet/modules/restrictshell/
+    puppet/modules/restrictshell/manifests/
+    puppet/modules/restrictshell/manifests/init.pp
+    puppet/modules/restrictshell/templates/
+    puppet/modules/restrictshell/templates/membersh-conf.pl
+    puppet/modules/restrictshell/templates/sv_membersh.pl
+
+Added: puppet/modules/restrictshell/manifests/init.pp
+===================================================================
+--- puppet/modules/restrictshell/manifests/init.pp	                        (rev 0)
++++ puppet/modules/restrictshell/manifests/init.pp	2010-11-02 17:55:53 UTC (rev 78)
+@@ -0,0 +1,29 @@
++#TODO: add support for pkgsubmit
++class restrictshell {
++  $allow_svn = "0"
++  $allow_git = "0"
++  $allow_rsync = "0"
++  $allow_pkgsubmit = "0"
++
++  class allow_svn_git_pkgsubmit {
++    $allow_svn = "1"
++    $allow_git = "1"
++    $allow_pkgsubmit = "1"
++  }
++
++  file { '/usr/local/bin/sv_membersh.pl':
++    ensure => present,
++    owner => root,
++    group => root,
++    mode => 755,
++    content => template("restrictshell/sv_membersh.pl"),
++  }
++
++  file { '/etc/membersh-conf.pl':
++    ensure => present,
++    owner => root,
++    group => root,
++    mode => 755,
++    content => template("restrictshell/membersh-conf.pl"),
++  }
++}
+
+Added: puppet/modules/restrictshell/templates/membersh-conf.pl
+===================================================================
+--- puppet/modules/restrictshell/templates/membersh-conf.pl	                        (rev 0)
++++ puppet/modules/restrictshell/templates/membersh-conf.pl	2010-11-02 17:55:53 UTC (rev 78)
+@@ -0,0 +1,13 @@
++$use_svn = "<%= allow_svn %>";
++$bin_svn = "/usr/bin/svnserve";
++$regexp_svn = "^svnserve -t\$";
++#@prepend_args_svn = ( '-r', '/svn' );
++ at prepend_args_svn = ();
++
++$use_git = "<%= allow_git %>";
++$bin_git = "/usr/bin/git-shell";
++
++$use_rsync = "<%= allow_rsync %>";
++$bin_rsync = "/usr/bin/rsync";
++$regexp_rsync = "^rsync --server";
++$regexp_dir_rsync = "^/.*";
+
+
+Property changes on: puppet/modules/restrictshell/templates/membersh-conf.pl
+___________________________________________________________________
+Added: svn:executable
+   + *
+
+Added: puppet/modules/restrictshell/templates/sv_membersh.pl
+===================================================================
+--- puppet/modules/restrictshell/templates/sv_membersh.pl	                        (rev 0)
++++ puppet/modules/restrictshell/templates/sv_membersh.pl	2010-11-02 17:55:53 UTC (rev 78)
+@@ -0,0 +1,150 @@
++#!/usr/bin/perl
++# This file is part of the Savane project
++# <http://gna.org/projects/savane/>
++#
++# $Id$
++#
++# Copyright 2004-2005 (c) Loic Dachary <loic--gnu.org>
++#                         Mathieu Roy <yeupou--gnu.org>
++#                         Timothee Besset <ttimo--ttimo.net>
++#
++# The Savane project is free software; you can redistribute it and/or
++# modify it under the terms of the GNU General Public License
++# as published by the Free Software Foundation; either version 2
++# of the License, or (at your option) any later version.
++#
++# The Savane project is distributed in the hope that it will be useful,
++# but WITHOUT ANY WARRANTY; without even the implied warranty of
++# MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
++# GNU General Public License for more details.
++#
++# You should have received a copy of the GNU General Public License
++# along with the Savane project; if not, write to the Free Software
++# Foundation, Inc., 51 Franklin St, Fifth Floor, Boston, MA  02110-1301  USA
++#
++#
++
++# Login shell for people who should only have limited access.
++# You probably should add/modify the following option of your sshd_config
++# like below (see sshd_config manual for more details):
++#     PermitEmptyPasswords no
++#     PasswordAuthentication no
++#     AllowTcpForwarding no
++
++use strict;
++
++$ENV{PATH}="/bin:/usr/bin";
++$ENV{CVSEDITOR}="/bin/false";
++
++# Import conf options
++our $use_cvs = "0";
++our $bin_cvs = "/usr/bin/cvs";
++ 
++our $use_scp = "0";
++our $bin_scp = "/usr/bin/scp";
++our $regexp_scp = "^(scp .*-t /upload)|(scp .*-t /var/ftp)";
++
++our $use_sftp = "0";
++our $bin_sftp = "/usr/lib/sftp-server";
++our $regexp_sftp = "^(/usr/lib/ssh/sftp-server|/usr/lib/sftp-server|/usr/libexec/sftp-server|/usr/lib/openssh/sftp-server)";
++
++our $use_rsync = "0";
++our $bin_rsync = "/usr/bin/rsync";
++our $regexp_rsync = "^rsync --server";
++our $regexp_dir_rsync = "^(/upload)|(/var/ftp)";
++
++our $use_svn = "0";
++our $bin_svn = "/usr/bin/svnserve";
++our $regexp_svn = "^svnserve -t";
++our @prepend_args_svn = ( '-r', '/svn' );
++
++our $use_git = "0";
++our $bin_git = "/usr/bin/git-shell";
++
++# Open configuration file
++if (-e "/etc/membersh-conf.pl") {
++    do "/etc/membersh-conf.pl" or die "System misconfiguration, contact administrators. Exiting";
++} else {
++    die "System misconfiguration, contact administrators. Exiting";
++} 
++
++# A configuration file /etc/membersh-conf.pl must exists and be executable.
++# Here come an example:
++#
++# $use_cvs = "1";
++# $bin_cvs = "/usr/bin/cvs";
++# 
++# $use_scp = "1";
++# $bin_scp = "/usr/bin/scp";
++# $regexp_scp = "^scp .*-t (/upload)|(/var/ftp)";
++
++# $use_sftp = "1";
++# $bin_sftp = "/usr/lib/sftp-server";
++# $regexp_sftp = "^(/usr/lib/ssh/sftp-server|/usr/lib/sftp-server|/usr/libexec/sftp-server)";
++#
++# $use_rsync = "1";
++# $bin_rsync = "/usr/bin/rsync";
++# $regexp_rsync = "^rsync --server";
++# $regexp_dir_rsync = "^(/upload)|(/var/ftp)";
++
++
++if ($#ARGV == 1 and $ARGV[0] eq "-c") {
++    if ($use_cvs and $ARGV[1] eq 'cvs server') {
++	
++	# Run a cvs server command
++        exec($bin_cvs, 'server') or die("Failed to exec $bin_cvs: $!");
++
++    } elsif ($use_scp and 
++	     $ARGV[1] =~ m:$regexp_scp:) {
++
++	# Authorize scp command
++        my (@args) = split(' ', $ARGV[1]);
++        shift(@args);             
++        exec($bin_scp, @args);
++
++    } elsif ($use_sftp and 
++	     $ARGV[1] =~ m:$regexp_sftp:) {
++	
++	# Authorize sftp login
++        exec($bin_sftp) or die("Failed to exec $bin_sftp: $!");
++
++    } elsif ($use_rsync and 
++	     $ARGV[1] =~ m:$regexp_rsync:) {
++
++	my ($rsync, @rest) = split(' ', $ARGV[1]);
++	my ($dir) = $rest[$#rest];
++
++	# Authorize rsync command, if the directory is acceptable
++	if ($dir =~ m:$regexp_dir_rsync:) {
++            exec($bin_rsync, @rest) or die("Failed to exec $bin_rsync: $!");
++        } 
++	
++    } elsif ($use_svn and
++	     $ARGV[1] =~ m:$regexp_svn:) {
++	
++	# authorize svnserve in tunnel mode, with the svn root prepended
++        my (@args) = @prepend_args_svn;
++	my (@args_user) = split(' ', $ARGV[1]);
++	shift( @args_user );
++	push( @args, @args_user );
++	exec($bin_svn, @args) or die("Failed to exec $bin_svn: $!");
++
++    } elsif ($use_git and $ARGV[1] =~ m:git-.+:) {
++	
++	# Delegate filtering to git-shell
++        exec($bin_git, @ARGV) or die("Failed to exec $bin_git: $!");
++
++    }
++}
++
++unless (-e "/etc/membersh-errormsg") {
++    print STDERR "You tried to execute: @ARGV[1..$#ARGV]\n";
++    print STDERR "Sorry, you are not allowed to execute that command.\n";
++} else {
++    open(ERRORMSG, "< /etc/membersh-errormsg");
++    while (<ERRORMSG>) {
++	print STDERR $_;
++    }
++    close(ERRORMSG);
++}
++exit(1);
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101102/51ca00d6/attachment-0001.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000161.html b/zarb-ml/mageia-sysadm/2010-November/000161.html new file mode 100644 index 000000000..4e80faaac --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000161.html @@ -0,0 +1,95 @@ + + + + [Mageia-sysadm] Packages SVN + + + + + + + + + +

[Mageia-sysadm] Packages SVN

+ Luca Berra + bluca at vodka.it +
+ Tue Nov 2 22:41:54 CET 2010 +

+
+ +
On Tue, Nov 02, 2010 at 09:55:21AM +0100, Thierry Vignaud wrote:
+>On 1 November 2010 16:25, nicolas vigier <boklm at mars-attacks.org> wrote:
+>> We lose all svn history, but it allows us to have a much smaller
+>> repository (without all the tarballs history), and we can keep a
+>> readonly copy of Mandriva repository somewhere for reference.
+>>
+>> What do you think ?
+>
+>Loosing history makes me cry.
+
++1 here
+
+>Couldn't we try to script sg that removes the big objects from SVN
+>while exporting/reimporting it?
+
+-- 
+Luca Berra -- bluca at vodka.it
+
+ + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000162.html b/zarb-ml/mageia-sysadm/2010-November/000162.html new file mode 100644 index 000000000..65ba17069 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000162.html @@ -0,0 +1,93 @@ + + + + [Mageia-sysadm] Packages SVN + + + + + + + + + +

[Mageia-sysadm] Packages SVN

+ Michael Scherer + misc at zarb.org +
+ Wed Nov 3 03:48:09 CET 2010 +

+
+ +
Le mardi 02 novembre 2010 à 11:04 +0100, Olivier Blin a écrit :
+> Thierry Vignaud <thierry.vignaud at gmail.com> writes:
+> 
+> > On 1 November 2010 16:25, nicolas vigier <boklm at mars-attacks.org> wrote:
+> >> We lose all svn history, but it allows us to have a much smaller
+> >> repository (without all the tarballs history), and we can keep a
+> >> readonly copy of Mandriva repository somewhere for reference.
+> >>
+> >> What do you think ?
+> >
+> > Loosing history makes me cry.
+> > Couldn't we try to script sg that removes the big objects from SVN
+> > while exporting/reimporting it?
+> 
+> IIRC, there was such a script being worked on at Mandriva, bogdano or
+> spuk would know.
+
+I am pretty sure that Thierry can write one for us :)
+
+> About losing history, maybe it's something we will have to go through,
+> not to risk importing copyrighted/trademarked material.
+
+What would be trademarked in the svn log ?
+
+And more ever, what would be trademarked that we could not remove once
+we found out ?
+
+
+One reason to keep history is that it contains the name of those who
+worked on the spec, and thus may be required as they have a part of the
+copyright on the spec files. And therefor, dropping this information may
+actually be illegal. 
+
+
+-- 
+Michael Scherer
+
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000163.html b/zarb-ml/mageia-sysadm/2010-November/000163.html new file mode 100644 index 000000000..97d41ecbc --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000163.html @@ -0,0 +1,72 @@ + + + + [Mageia-sysadm] Packages SVN + + + + + + + + + +

[Mageia-sysadm] Packages SVN

+ Luca Berra + bluca at vodka.it +
+ Wed Nov 3 07:30:27 CET 2010 +

+
+ +
On Wed, Nov 03, 2010 at 03:48:09AM +0100, Michael Scherer wrote:
+>One reason to keep history is that it contains the name of those who
+>worked on the spec, and thus may be required as they have a part of the
+>copyright on the spec files. And therefor, dropping this information may
+>actually be illegal. 
+
+This is a real problem, unfortunately we already have it in mandriva
+since packages were imported in svn, losing all cvs history.
+
+I would not worsen it
+
+L.
+
+-- 
+Luca Berra -- bluca at vodka.it
+
+ + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000164.html b/zarb-ml/mageia-sysadm/2010-November/000164.html new file mode 100644 index 000000000..ab1262807 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000164.html @@ -0,0 +1,70 @@ + + + + [Mageia-sysadm] Packages SVN + + + + + + + + + +

[Mageia-sysadm] Packages SVN

+ Buchan Milne + bgmilne at multilinks.com +
+ Wed Nov 3 08:18:55 CET 2010 +

+
+ +
On Wednesday, 3 November 2010 03:48:09 Michael Scherer wrote:
+
+> One reason to keep history is that it contains the name of those who
+> worked on the spec, and thus may be required as they have a part of the
+> copyright on the spec files. And therefor, dropping this information may
+> actually be illegal.
+
+That also brings up the question of whether we should have explicit licensing 
+statements in spec files (I believe SuSE did this at one stage, not sure if 
+they still have it).
+
+Regards,
+Buchan
+
+ + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000165.html b/zarb-ml/mageia-sysadm/2010-November/000165.html new file mode 100644 index 000000000..775c65916 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000165.html @@ -0,0 +1,71 @@ + + + + [Mageia-sysadm] Packages SVN + + + + + + + + + +

[Mageia-sysadm] Packages SVN

+ Thierry Vignaud + thierry.vignaud at gmail.com +
+ Wed Nov 3 08:28:06 CET 2010 +

+
+ +
On 3 November 2010 07:30, Luca Berra <bluca at vodka.it> wrote:
+>> One reason to keep history is that it contains the name of those who
+>> worked on the spec, and thus may be required as they have a part of the
+>> copyright on the spec files. And therefor, dropping this information may
+>> actually be illegal.
+>
+> This is a real problem, unfortunately we already have it in mandriva
+> since packages were imported in svn, losing all cvs history.
+
+err, we still have CVS around (ro).
+but it doesn't contain any direct info about who did what since it was
+auto commit by the bot on upload.
+Though one can retrieve that info from the package changelog.
+
+We also lose the SVN once. We still have the rpm changelog (we didn't
+have SILENT back in those days)
+
+ + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000166.html b/zarb-ml/mageia-sysadm/2010-November/000166.html new file mode 100644 index 000000000..7bc93cac9 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000166.html @@ -0,0 +1,76 @@ + + + + [Mageia-sysadm] Packages SVN + + + + + + + + + +

[Mageia-sysadm] Packages SVN

+ Olivier Blin + mageia at blino.org +
+ Wed Nov 3 08:30:17 CET 2010 +

+
+ +
Michael Scherer <misc at zarb.org> writes:
+
+>> About losing history, maybe it's something we will have to go through,
+>> not to risk importing copyrighted/trademarked material.
+>
+> What would be trademarked in the svn log ?
+
+Not in the log message, but in the commit contents.
+
+> And more ever, what would be trademarked that we could not remove once
+> we found out ?
+
+Names, images, themes, colors.
+Since there is still no svn obliterate command, this is quite hard to
+remove once imported.
+
+-- 
+Olivier Blin - blino
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000167.html b/zarb-ml/mageia-sysadm/2010-November/000167.html new file mode 100644 index 000000000..f4e815c3d --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000167.html @@ -0,0 +1,112 @@ + + + + [Mageia-sysadm] Packages SVN + + + + + + + + + +

[Mageia-sysadm] Packages SVN

+ nicolas vigier + boklm at mars-attacks.org +
+ Wed Nov 3 10:20:16 CET 2010 +

+
+ +
On Wed, 03 Nov 2010, Michael Scherer wrote:
+
+> Le mardi 02 novembre 2010 à 11:04 +0100, Olivier Blin a écrit :
+> > Thierry Vignaud <thierry.vignaud at gmail.com> writes:
+> > 
+> > > On 1 November 2010 16:25, nicolas vigier <boklm at mars-attacks.org> wrote:
+> > >> We lose all svn history, but it allows us to have a much smaller
+> > >> repository (without all the tarballs history), and we can keep a
+> > >> readonly copy of Mandriva repository somewhere for reference.
+> > >>
+> > >> What do you think ?
+> > >
+> > > Loosing history makes me cry.
+> > > Couldn't we try to script sg that removes the big objects from SVN
+> > > while exporting/reimporting it?
+> > 
+> > IIRC, there was such a script being worked on at Mandriva, bogdano or
+> > spuk would know.
+> 
+> I am pretty sure that Thierry can write one for us :)
+
+If it works well. But I'm not sure it is easy to do.
+
+> 
+> > About losing history, maybe it's something we will have to go through,
+> > not to risk importing copyrighted/trademarked material.
+> 
+> What would be trademarked in the svn log ?
+
+Mandriva logos for instance.
+
+> And more ever, what would be trademarked that we could not remove once
+> we found out ?
+> 
+> 
+> One reason to keep history is that it contains the name of those who
+> worked on the spec, and thus may be required as they have a part of the
+> copyright on the spec files. And therefor, dropping this information may
+> actually be illegal. 
+
+We would keep the rpm changelog at least.
+
+
+ + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000168.html b/zarb-ml/mageia-sysadm/2010-November/000168.html new file mode 100644 index 000000000..294d18666 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000168.html @@ -0,0 +1,82 @@ + + + + [Mageia-sysadm] Packages SVN + + + + + + + + + +

[Mageia-sysadm] Packages SVN

+ Samuel Verschelde + stormi at laposte.net +
+ Wed Nov 3 10:08:48 CET 2010 +

+
+ +
+Le mercredi 3 novembre 2010 03:48:09, Michael Scherer a écrit :
+> One reason to keep history is that it contains the name of those who
+> worked on the spec, and thus may be required as they have a part of the
+> copyright on the spec files. And therefor, dropping this information may
+> actually be illegal. 
+> 
+
+History also allows to see who modified what in the specs, which is useful if you need to ask for information to the right person. Also knowing when some modifications were made to the spec can help understanding them. I often use this when working on a package I don't know well and when some parts of the spec confuse me. 
+
+Regards
+
+Samuel Verschelde
+
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000169.html b/zarb-ml/mageia-sysadm/2010-November/000169.html new file mode 100644 index 000000000..9cb7704cb --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000169.html @@ -0,0 +1,84 @@ + + + + [Mageia-sysadm] Packages SVN + + + + + + + + + +

[Mageia-sysadm] Packages SVN

+ Michael Scherer + misc at zarb.org +
+ Wed Nov 3 11:26:48 CET 2010 +

+
+ +
Le mercredi 03 novembre 2010 à 08:30 +0100, Olivier Blin a écrit :
+> Michael Scherer <misc at zarb.org> writes:
+> 
+> >> About losing history, maybe it's something we will have to go through,
+> >> not to risk importing copyrighted/trademarked material.
+> >
+> > What would be trademarked in the svn log ?
+> 
+> Not in the log message, but in the commit contents.
+
+If we treat this content like we treat the tarballs, then we could
+workaround the problem, no ?
+
+> > And more ever, what would be trademarked that we could not remove once
+> > we found out ?
+> 
+> Names, images, themes, colors.
+> Since there is still no svn obliterate command, this is quite hard to
+> remove once imported.
+
+So this would also mean we will import only after having cleaned the
+various packages ?
+
+This mean then that a review must be started ASAP ( in my humble
+opinion ).
+-- 
+Michael Scherer
+
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000170.html b/zarb-ml/mageia-sysadm/2010-November/000170.html new file mode 100644 index 000000000..a46ce2802 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000170.html @@ -0,0 +1,105 @@ + + + + [Mageia-sysadm] [79] - add buchan key + + + + + + + + + +

[Mageia-sysadm] [79] - add buchan key

+ root at mageia.org + root at mageia.org +
+ Wed Nov 3 11:44:22 CET 2010 +

+
+ +
Revision: 79
+Author:   misc
+Date:     2010-11-03 11:44:22 +0100 (Wed, 03 Nov 2010)
+Log Message:
+-----------
+- add buchan key
+
+Modified Paths:
+--------------
+    puppet/manifests/common.pp
+
+Modified: puppet/manifests/common.pp
+===================================================================
+--- puppet/manifests/common.pp	2010-11-02 17:55:53 UTC (rev 78)
++++ puppet/manifests/common.pp	2010-11-03 10:44:22 UTC (rev 79)
+@@ -59,7 +59,14 @@
+         user => "root"
+     }
+ 
++    ssh_authorized_key { "ssh key buchan":
++        type => "ssh-dss",
++        key => "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",
++        user => "root"
++    }
+ 
++
++
+ }
+ 
+ class urpmi_update {
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101103/646d1c64/attachment-0001.html>
+
+ + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000171.html b/zarb-ml/mageia-sysadm/2010-November/000171.html new file mode 100644 index 000000000..af9ca2451 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000171.html @@ -0,0 +1,82 @@ + + + + [Mageia-sysadm] Packages SVN + + + + + + + + + +

[Mageia-sysadm] Packages SVN

+ Thierry Vignaud + thierry.vignaud at gmail.com +
+ Wed Nov 3 12:12:40 CET 2010 +

+
+ +
On 3 November 2010 10:20, nicolas vigier <boklm at mars-attacks.org> wrote:
+>> > > Loosing history makes me cry.
+>> > > Couldn't we try to script sg that removes the big objects from SVN
+>> > > while exporting/reimporting it?
+>> >
+>> > IIRC, there was such a script being worked on at Mandriva, bogdano or
+>> > spuk would know.
+>>
+>> I am pretty sure that Thierry can write one for us :)
+>
+> If it works well. But I'm not sure it is easy to do.
+
+let's look at what was done by the brazilian team first
+and we could still ask svn authors about ideas.
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000172.html b/zarb-ml/mageia-sysadm/2010-November/000172.html new file mode 100644 index 000000000..20eaa57b9 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000172.html @@ -0,0 +1,73 @@ + + + + [Mageia-sysadm] Packages SVN + + + + + + + + + +

[Mageia-sysadm] Packages SVN

+ Thierry Vignaud + thierry.vignaud at gmail.com +
+ Wed Nov 3 12:13:46 CET 2010 +

+
+ +
On 3 November 2010 11:26, Michael Scherer <misc at zarb.org> wrote:
+>> > And more ever, what would be trademarked that we could not remove once
+>> > we found out ?
+>>
+>> Names, images, themes, colors.
+>> Since there is still no svn obliterate command, this is quite hard to
+>> remove once imported.
+>
+> So this would also mean we will import only after having cleaned the
+> various packages ?
+>
+> This mean then that a review must be started ASAP ( in my humble
+> opinion ).
+
+Indeed since that could mean delaying mageia startup (& first release)
+by a long time.
+there're stuff in *mandriva*, web servers, ...
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000173.html b/zarb-ml/mageia-sysadm/2010-November/000173.html new file mode 100644 index 000000000..99eb1189b --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000173.html @@ -0,0 +1,78 @@ + + + + [Mageia-sysadm] Packages SVN + + + + + + + + + +

[Mageia-sysadm] Packages SVN

+ Thierry Vignaud + thierry.vignaud at gmail.com +
+ Wed Nov 3 12:14:40 CET 2010 +

+
+ +
On 3 November 2010 10:20, nicolas vigier <boklm at mars-attacks.org> wrote:
+>> One reason to keep history is that it contains the name of those who
+>> worked on the spec, and thus may be required as they have a part of the
+>> copyright on the spec files. And therefor, dropping this information may
+>> actually be illegal.
+>
+> We would keep the rpm changelog at least.
+
+and what about work in progress that's only in SVN?
+cleanups, ... that hasn't yet been submited and thus hasn't ended in a
+real rpm package yet?
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000174.html b/zarb-ml/mageia-sysadm/2010-November/000174.html new file mode 100644 index 000000000..0a4ac6f7f --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000174.html @@ -0,0 +1,85 @@ + + + + [Mageia-sysadm] Packages SVN + + + + + + + + + +

[Mageia-sysadm] Packages SVN

+ Michael Scherer + misc at zarb.org +
+ Wed Nov 3 12:51:10 CET 2010 +

+
+ +
Le mercredi 03 novembre 2010 à 12:14 +0100, Thierry Vignaud a écrit :
+> On 3 November 2010 10:20, nicolas vigier <boklm at mars-attacks.org> wrote:
+> >> One reason to keep history is that it contains the name of those who
+> >> worked on the spec, and thus may be required as they have a part of the
+> >> copyright on the spec files. And therefor, dropping this information may
+> >> actually be illegal.
+> >
+> > We would keep the rpm changelog at least.
+> 
+> and what about work in progress that's only in SVN?
+> cleanups, ... that hasn't yet been submited and thus hasn't ended in a
+> real rpm package yet?
+
+While this is important, I fear this will only be less than 40 packages.
+Ie, something that could be managed by hand if needed.
+
+-- 
+Michael Scherer
+
+
+ + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000175.html b/zarb-ml/mageia-sysadm/2010-November/000175.html new file mode 100644 index 000000000..0b6ce39c7 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000175.html @@ -0,0 +1,84 @@ + + + + [Mageia-sysadm] Puppet backport + + + + + + + + + +

[Mageia-sysadm] Puppet backport

+ Michael Scherer + misc at zarb.org +
+ Wed Nov 3 16:05:35 CET 2010 +

+
+ +
Le mardi 02 novembre 2010 à 01:10 +0100, Michael Scherer a écrit :
+> Hi,
+> 
+> Since I was planning to use extlookup ( so the passwords can be stored
+> outside of svn ), I will likely rebuild puppet latest version 2.6.2, as
+> the feature is included. 
+> 
+> Any objections ?
+> The changelog is on
+> http://projects.puppetlabs.com/projects/puppet/wiki/Release_Notes 
+
+No objections, so I rebuild and installed it on all nodes with a ssh
+loop ( as it was a quick and one shot task ), maybe we could look on a
+better system, boklm ? 
+
+-- 
+Michael Scherer
+
+
+ + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000176.html b/zarb-ml/mageia-sysadm/2010-November/000176.html new file mode 100644 index 000000000..cb1b1212b --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000176.html @@ -0,0 +1,98 @@ + + + + [Mageia-sysadm] Packages SVN + + + + + + + + + +

[Mageia-sysadm] Packages SVN

+ Olivier Blin + mageia at blino.org +
+ Wed Nov 3 16:39:27 CET 2010 +

+
+ +
Michael Scherer <misc at zarb.org> writes:
+
+> Le mercredi 03 novembre 2010 à 08:30 +0100, Olivier Blin a écrit :
+>> Michael Scherer <misc at zarb.org> writes:
+>> 
+>> >> About losing history, maybe it's something we will have to go through,
+>> >> not to risk importing copyrighted/trademarked material.
+>> >
+>> > What would be trademarked in the svn log ?
+>> 
+>> Not in the log message, but in the commit contents.
+>
+> If we treat this content like we treat the tarballs, then we could
+> workaround the problem, no ?
+
+How so?
+
+>> > And more ever, what would be trademarked that we could not remove once
+>> > we found out ?
+>> 
+>> Names, images, themes, colors.
+>> Since there is still no svn obliterate command, this is quite hard to
+>> remove once imported.
+>
+> So this would also mean we will import only after having cleaned the
+> various packages ?
+>
+> This mean then that a review must be started ASAP ( in my humble
+> opinion ).
+
+Yes, I started looking at that back in August, and mentionned this in
+the project chan.
+
+On a minimal install without suggests, I found this files with
+the "mandriva" name: http://pastebin.com/r5fEpUpQ
+
+These are the most obvious to start with.
+
+But we should check with the board if we want to go that far.
+
+-- 
+Olivier Blin - blino
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000177.html b/zarb-ml/mageia-sysadm/2010-November/000177.html new file mode 100644 index 000000000..6262fd867 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000177.html @@ -0,0 +1,133 @@ + + + + [Mageia-sysadm] Packages SVN + + + + + + + + + +

[Mageia-sysadm] Packages SVN

+ Michael Scherer + misc at zarb.org +
+ Wed Nov 3 18:05:51 CET 2010 +

+
+ +
Le mercredi 03 novembre 2010 à 16:39 +0100, Olivier Blin a écrit :
+> Michael Scherer <misc at zarb.org> writes:
+> 
+> > Le mercredi 03 novembre 2010 à 08:30 +0100, Olivier Blin a écrit :
+> >> Michael Scherer <misc at zarb.org> writes:
+> >> 
+> >> >> About losing history, maybe it's something we will have to go through,
+> >> >> not to risk importing copyrighted/trademarked material.
+> >> >
+> >> > What would be trademarked in the svn log ?
+> >> 
+> >> Not in the log message, but in the commit contents.
+> >
+> > If we treat this content like we treat the tarballs, then we could
+> > workaround the problem, no ?
+> 
+> How so?
+
+Well, in fact, it depend on what we do not want to include.
+
+For data ( icones, theme, images ), we can simply put them outside of
+the svn, like we plan to do for tarballs. 
+
+For colors, that's indeed trickier, depending on the way they are
+specified. I assume that colors in a patch could indeed be hard to
+avoid. 
+
+On the other hand, I also think that saying that a C/perl source code is
+violating a trademark about color would be a big stretch. 
+
+Could we check what is exactly trademarked ?
+
+I have check on http://inpi.fr/ , and it seems that the name is
+trademarked, and the logo. Nothing about colors or theme ( even if I
+think we should change them for obvious identity related reason ). 
+( and the name "optango", but this tell me nothing )
+
+I have also checked on
+http://www.copat.de/markenformen/mne_markenformen.htm , nothing for
+colors and mandriva or mandrakesoft. 
+
+The OHIM ( http://oami.europa.eu/ ) also return nothing for Mandriva; so
+does the USPTO.
+
+And their FAQ only speak of the star logo :
+http://www.mandriva.com/fr/mentions-legales/mentions-legales#graphics
+
+
+> >> > And more ever, what would be trademarked that we could not remove once
+> >> > we found out ?
+> >> 
+> >> Names, images, themes, colors.
+> >> Since there is still no svn obliterate command, this is quite hard to
+> >> remove once imported.
+> >
+> > So this would also mean we will import only after having cleaned the
+> > various packages ?
+> >
+> > This mean then that a review must be started ASAP ( in my humble
+> > opinion ).
+> 
+> Yes, I started looking at that back in August, and mentionned this in
+> the project chan.
+> 
+> On a minimal install without suggests, I found this files with
+> the "mandriva" name: http://pastebin.com/r5fEpUpQ
+> 
+> These are the most obvious to start with.
+> 
+> But we should check with the board if we want to go that far.
+
+Sure. But what is exactly the question :) ?
+
+
+-- 
+Michael Scherer
+
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000178.html b/zarb-ml/mageia-sysadm/2010-November/000178.html new file mode 100644 index 000000000..d220a2228 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000178.html @@ -0,0 +1,92 @@ + + + + [Mageia-sysadm] Packages SVN + + + + + + + + + +

[Mageia-sysadm] Packages SVN

+ Olivier Blin + mageia at blino.org +
+ Wed Nov 3 18:16:29 CET 2010 +

+
+ +
Michael Scherer <misc at zarb.org> writes:
+
+>> > If we treat this content like we treat the tarballs, then we could
+>> > workaround the problem, no ?
+>> 
+>> How so?
+>
+> Well, in fact, it depend on what we do not want to include.
+>
+> For data ( icones, theme, images ), we can simply put them outside of
+> the svn, like we plan to do for tarballs. 
+
+The plan is to put tarballs in an additional SVN, right?
+We still have to deal with that.
+
+>> > So this would also mean we will import only after having cleaned the
+>> > various packages ?
+>> >
+>> > This mean then that a review must be started ASAP ( in my humble
+>> > opinion ).
+
+[...]
+
+>> But we should check with the board if we want to go that far.
+>
+> Sure. But what is exactly the question :) ?
+
+Do we filter potentially trademarked/copyrighted content in the src
+packages before initial import?
+Or do we import the whole Mandriva SVN as is to bootstrap?
+
+IHMO, we shouldn't take the risk of hosting Mandriva material, even if
+this will slow down the process.
+
+-- 
+Olivier Blin - blino
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000179.html b/zarb-ml/mageia-sysadm/2010-November/000179.html new file mode 100644 index 000000000..784618e68 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000179.html @@ -0,0 +1,140 @@ + + + + [Mageia-sysadm] Packages SVN + + + + + + + + + +

[Mageia-sysadm] Packages SVN

+ Michael Scherer + misc at zarb.org +
+ Wed Nov 3 20:45:49 CET 2010 +

+
+ +
Le mercredi 03 novembre 2010 à 18:16 +0100, Olivier Blin a écrit :
+> Michael Scherer <misc at zarb.org> writes:
+> 
+> >> > If we treat this content like we treat the tarballs, then we could
+> >> > workaround the problem, no ?
+> >> 
+> >> How so?
+> >
+> > Well, in fact, it depend on what we do not want to include.
+> >
+> > For data ( icones, theme, images ), we can simply put them outside of
+> > the svn, like we plan to do for tarballs. 
+> 
+> The plan is to put tarballs in an additional SVN, right?
+> We still have to deal with that.
+
+I tought the plan was to place the tarball outside of a VCS, ie either
+download it on demand, or placed in a cache. So we could simply remove
+them from the cache when needed.
+
+Now, maybe I misunderstood the new system, so could you explain what it
+will be ?
+
+
+> >> > So this would also mean we will import only after having cleaned the
+> >> > various packages ?
+> >> >
+> >> > This mean then that a review must be started ASAP ( in my humble
+> >> > opinion ).
+> 
+> [...]
+> 
+> >> But we should check with the board if we want to go that far.
+> >
+> > Sure. But what is exactly the question :) ?
+> 
+> Do we filter potentially trademarked/copyrighted content in the src
+> packages before initial import?
+> Or do we import the whole Mandriva SVN as is to bootstrap?
+> 
+> IHMO, we shouldn't take the risk of hosting Mandriva material, even if
+> this will slow down the process.
+
+We would not be more at fault than plf.zarb.org or any mirrors on that
+regard ( especially mirrors ). And they could hardly say "using our GPL
+software is a violation of our trademark" without being inconsistent on
+that matter, and they didn't protect their mark . 
+
+Hence my request for a specialized lawyer for the non visible cases, and
+see what would be considered as a fair use based on existing judgement.
+ 
+While I agree that we should of course not use the name Mandriva in a
+very visible way ( since this is not a method ), having it in the svn
+for a non released software is likely less a problem. 
+
+For example, based on the only similar case of people who have been
+really sued and lost I can think of ( ie mandrake ), there is still case
+where Mandrake word is displayed :
+- in bugzilla ( older bugs )
+- in the website html code ( <meta> )
+- in the mail archive, almost everywhere for old archives
+( http://lists.mandriva.com/cooker/2003-01/ )
+- the FAQ I gave previously ( question 10 ) 
+- in the changelog of mandriva-theme-Free-1.4.7-2mdv2010.1
+- in the provides and obsoletes of this package
+- in the readonly CVS 
+- in the filename /etc/rc.d/init.d/mandrake_firstime
+
+and it would also likely be in svn if svn existed at that time, and
+would not have been crashed. ( since it is in CVS )
+
+[misc at sisay ~] $ urpmf -i mandrake 2>&1 | wc -l
+1652
+
+They have likely contacted a lawyer ( at least, I hope so, even if we
+cannot be sure ), and based on that decided that this were fair use of
+the trademark ( at least, the lawyer of the opposite party did ). 
+
+Or maybe they are just careless or too busy, given the problem in
+FAQ :/ 
+
+-- 
+Michael Scherer
+
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000180.html b/zarb-ml/mageia-sysadm/2010-November/000180.html new file mode 100644 index 000000000..e48197973 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000180.html @@ -0,0 +1,116 @@ + + + + [Mageia-sysadm] Packages SVN + + + + + + + + + +

[Mageia-sysadm] Packages SVN

+ Olivier Blin + mageia at blino.org +
+ Wed Nov 3 21:25:56 CET 2010 +

+
+ +
Michael Scherer <misc at zarb.org> writes:
+
+>> > For data ( icones, theme, images ), we can simply put them outside of
+>> > the svn, like we plan to do for tarballs. 
+>> 
+>> The plan is to put tarballs in an additional SVN, right?
+>> We still have to deal with that.
+>
+> I tought the plan was to place the tarball outside of a VCS, ie either
+> download it on demand, or placed in a cache. So we could simply remove
+> them from the cache when needed.
+>
+> Now, maybe I misunderstood the new system, so could you explain what it
+> will be ?
+
+I didn't go much in details in the repsys doc boklm sent in the initial
+message of this thread, but IIRC, it mentionned having a SVN repo for
+SOURCES-bin
+
+>> IHMO, we shouldn't take the risk of hosting Mandriva material, even if
+>> this will slow down the process.
+>
+> We would not be more at fault than plf.zarb.org or any mirrors on that
+> regard ( especially mirrors ). And they could hardly say "using our GPL
+> software is a violation of our trademark" without being inconsistent on
+> that matter, and they didn't protect their mark . 
+
+Using their free software is ok, but using it by keeping their brand
+is probably not.
+
+> Hence my request for a specialized lawyer for the non visible cases, and
+> see what would be considered as a fair use based on existing judgement.
+
+Agreed
+
+> While I agree that we should of course not use the name Mandriva in a
+> very visible way ( since this is not a method ), having it in the svn
+> for a non released software is likely less a problem. 
+>
+> For example, based on the only similar case of people who have been
+> really sued and lost I can think of ( ie mandrake ), there is still case
+> where Mandrake word is displayed :
+
+[...]
+
+> They have likely contacted a lawyer ( at least, I hope so, even if we
+> cannot be sure ), and based on that decided that this were fair use of
+> the trademark ( at least, the lawyer of the opposite party did ). 
+>
+> Or maybe they are just careless or too busy, given the problem in
+> FAQ :/ 
+
+I think that Hearst was more concerned about the company and product
+names (as well as images), it was probably not very cost-effective for
+them to push too much in details.
+But in our case, we are operating in the same market as Mandriva, and
+they could get very picky.
+
+-- 
+Olivier Blin - blino
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000181.html b/zarb-ml/mageia-sysadm/2010-November/000181.html new file mode 100644 index 000000000..d17af3f9f --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000181.html @@ -0,0 +1,82 @@ + + + + [Mageia-sysadm] Packages SVN + + + + + + + + + +

[Mageia-sysadm] Packages SVN

+ nicolas vigier + boklm at mars-attacks.org +
+ Wed Nov 3 21:41:15 CET 2010 +

+
+ +
On Wed, 03 Nov 2010, Olivier Blin wrote:
+
+> Michael Scherer <misc at zarb.org> writes:
+> 
+> >> > For data ( icones, theme, images ), we can simply put them outside of
+> >> > the svn, like we plan to do for tarballs. 
+> >> 
+> >> The plan is to put tarballs in an additional SVN, right?
+> >> We still have to deal with that.
+> >
+> > I tought the plan was to place the tarball outside of a VCS, ie either
+> > download it on demand, or placed in a cache. So we could simply remove
+> > them from the cache when needed.
+> >
+> > Now, maybe I misunderstood the new system, so could you explain what it
+> > will be ?
+> 
+> I didn't go much in details in the repsys doc boklm sent in the initial
+> message of this thread, but IIRC, it mentionned having a SVN repo for
+> SOURCES-bin
+
+Yes, this version of repsys is still using SVN to store the binary
+files, but on a separate SVN repository. It makes it possible to clean
+history on this binary repository (for instance at each new release of
+the distribution).
+
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000182.html b/zarb-ml/mageia-sysadm/2010-November/000182.html new file mode 100644 index 000000000..678c2089e --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000182.html @@ -0,0 +1,70 @@ + + + + [Mageia-sysadm] Packages SVN + + + + + + + + + +

[Mageia-sysadm] Packages SVN

+ Olivier Blin + mageia at blino.org +
+ Wed Nov 3 21:47:17 CET 2010 +

+
+ +
nicolas vigier <boklm at mars-attacks.org> writes:
+
+>> I didn't go much in details in the repsys doc boklm sent in the initial
+>> message of this thread, but IIRC, it mentionned having a SVN repo for
+>> SOURCES-bin
+>
+> Yes, this version of repsys is still using SVN to store the binary
+> files, but on a separate SVN repository. It makes it possible to clean
+> history on this binary repository (for instance at each new release of
+> the distribution).
+
+But we would still have the whole history in the cauldron branch, right?
+-- 
+Olivier Blin - blino
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000183.html b/zarb-ml/mageia-sysadm/2010-November/000183.html new file mode 100644 index 000000000..34a6146fa --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000183.html @@ -0,0 +1,76 @@ + + + + [Mageia-sysadm] Packages SVN + + + + + + + + + +

[Mageia-sysadm] Packages SVN

+ nicolas vigier + boklm at mars-attacks.org +
+ Wed Nov 3 22:01:47 CET 2010 +

+
+ +
On Wed, 03 Nov 2010, Olivier Blin wrote:
+
+> nicolas vigier <boklm at mars-attacks.org> writes:
+> 
+> >> I didn't go much in details in the repsys doc boklm sent in the initial
+> >> message of this thread, but IIRC, it mentionned having a SVN repo for
+> >> SOURCES-bin
+> >
+> > Yes, this version of repsys is still using SVN to store the binary
+> > files, but on a separate SVN repository. It makes it possible to clean
+> > history on this binary repository (for instance at each new release of
+> > the distribution).
+> 
+> But we would still have the whole history in the cauldron branch, right?
+
+We can also remove history on cauldron binary branch, although it will
+require to stop new commits for a few minutes/hours, doing something like
+this :
+http://robmayhew.com/delete-parts-of-subversion-history/
+
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000184.html b/zarb-ml/mageia-sysadm/2010-November/000184.html new file mode 100644 index 000000000..4aeebffc4 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000184.html @@ -0,0 +1,77 @@ + + + + [Mageia-sysadm] Packages SVN + + + + + + + + + +

[Mageia-sysadm] Packages SVN

+ Olivier Blin + mageia at blino.org +
+ Wed Nov 3 23:12:53 CET 2010 +

+
+ +
nicolas vigier <boklm at mars-attacks.org> writes:
+
+> We can also remove history on cauldron binary branch, although it will
+> require to stop new commits for a few minutes/hours, doing something like
+> this :
+> http://robmayhew.com/delete-parts-of-subversion-history/
+
+Right, we could do in such a way.
+Each N distro branch could contain binary history from N-1 to N.
+
+For example when we release 2011.1, we would have binary history in the
+2011.1 distro branch from 2011.0 to 2011.1, and start cauldron from a
+one-revision copy.
+
+Though, there is a disadvantage that could get problematic, when we do
+backports, we would have to copy the binaries to all target distros, and
+it would not be a cheap SVN copy anymore.
+This could get pretty big with games and OOo...
+
+-- 
+Olivier Blin - blino
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000185.html b/zarb-ml/mageia-sysadm/2010-November/000185.html new file mode 100644 index 000000000..3856282ea --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000185.html @@ -0,0 +1,111 @@ + + + + [Mageia-sysadm] [80] - add a module for apache + + + + + + + + + +

[Mageia-sysadm] [80] - add a module for apache

+ root at mageia.org + root at mageia.org +
+ Thu Nov 4 02:09:23 CET 2010 +

+
+ +
Revision: 80
+Author:   misc
+Date:     2010-11-04 02:09:23 +0100 (Thu, 04 Nov 2010)
+Log Message:
+-----------
+- add a module for apache
+
+Added Paths:
+-----------
+    puppet/modules/apache/
+    puppet/modules/apache/manifests/
+    puppet/modules/apache/manifests/init.pp
+
+Added: puppet/modules/apache/manifests/init.pp
+===================================================================
+--- puppet/modules/apache/manifests/init.pp	                        (rev 0)
++++ puppet/modules/apache/manifests/init.pp	2010-11-04 01:09:23 UTC (rev 80)
+@@ -0,0 +1,32 @@
++class apache {
++
++    class base {
++        package { "apache-mpm-prefork":
++            ensure => installed
++        }
++    
++        service { apache: 
++            ensure => running,
++            subscribe => [ Package['apache-mpm-prefork'] ],
++            path => "/etc/init.d/httpd"
++        }
++    }
++    
++    class mod_php inherits base {
++        package { "apache-mod_php":
++            ensure => installed
++        }
++    }
++
++    class mod_perl inherits base {
++        package { "apache-mod_perl":
++            ensure => installed
++        }
++    }
++
++    class mod_wsgi inherits base {
++        package { "apache-mod_wsgi":
++            ensure => installed
++        }
++    }
++}
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101104/b0674c10/attachment.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000186.html b/zarb-ml/mageia-sysadm/2010-November/000186.html new file mode 100644 index 000000000..ab8ac5e9f --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000186.html @@ -0,0 +1,93 @@ + + + + [Mageia-sysadm] [81] - install apache on alamut and krampoueh + + + + + + + + + +

[Mageia-sysadm] [81] - install apache on alamut and krampoueh

+ root at mageia.org + root at mageia.org +
+ Thu Nov 4 02:19:58 CET 2010 +

+
+ +
Revision: 81
+Author:   misc
+Date:     2010-11-04 02:19:58 +0100 (Thu, 04 Nov 2010)
+Log Message:
+-----------
+- install apache on alamut and krampoueh 
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-04 01:09:23 UTC (rev 80)
++++ puppet/manifests/nodes.pp	2010-11-04 01:19:58 UTC (rev 81)
+@@ -76,6 +76,8 @@
+     bind::zone_master { "mageia.org": }
+     bind::zone_master { "mageia.fr": } 
+     timezone::timezone { "Europe/Paris": }
++    # for catdap and epoll
++    include apache::mod_perl
+ }
+ 
+ # buildnode
+@@ -132,6 +134,7 @@
+ # - setup blog
+ #
+ 	include default_mageia_server
++    include apache::base
+ }
+ 
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101104/bcf4fb79/attachment-0001.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000187.html b/zarb-ml/mageia-sysadm/2010-November/000187.html new file mode 100644 index 000000000..a4492775c --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000187.html @@ -0,0 +1,71 @@ + + + + [Mageia-sysadm] [81] - install apache on alamut and krampoueh + + + + + + + + + +

[Mageia-sysadm] [81] - install apache on alamut and krampoueh

+ Thierry Vignaud + thierry.vignaud at gmail.com +
+ Thu Nov 4 02:37:42 CET 2010 +

+
+ +
On 4 November 2010 02:19,  <root at mageia.org> wrote:
+> Revision 81 Author misc Date 2010-11-04 02:19:58 +0100 (Thu, 04 Nov 2010)
+>
+> Log Message
+>
+> - install apache on alamut and krampoueh
+
+btw regular writing is "krampouezh", krampoueh is regional
+variation/prononciation (and minority what's more, majority spelling
+being /krampou'z/)
+not that important...
+and if we're only considering 1 pancake, it should be krampouezhenn
+my 2 cents
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000188.html b/zarb-ml/mageia-sysadm/2010-November/000188.html new file mode 100644 index 000000000..d19b76b36 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000188.html @@ -0,0 +1,111 @@ + + + + [Mageia-sysadm] Packages SVN + + + + + + + + + +

[Mageia-sysadm] Packages SVN

+ Luca Berra + bluca at vodka.it +
+ Thu Nov 4 07:48:40 CET 2010 +

+
+ +
On Wed, Nov 03, 2010 at 11:12:53PM +0100, Olivier Blin wrote:
+>nicolas vigier <boklm at mars-attacks.org> writes:
+>
+>> We can also remove history on cauldron binary branch, although it will
+>> require to stop new commits for a few minutes/hours, doing something like
+>> this :
+>> http://robmayhew.com/delete-parts-of-subversion-history/
+>
+>Right, we could do in such a way.
+>Each N distro branch could contain binary history from N-1 to N.
+>
+>For example when we release 2011.1, we would have binary history in the
+>2011.1 distro branch from 2011.0 to 2011.1, and start cauldron from a
+>one-revision copy.
+>
+>Though, there is a disadvantage that could get problematic, when we do
+>backports, we would have to copy the binaries to all target distros, and
+>it would not be a cheap SVN copy anymore.
+>This could get pretty big with games and OOo...
+
+I wonder why use svn at all in order to store blobs
+IMHO it does not give any advantage
+source tarballs in packages are usually compressed, so no delta is
+possible, besides that sources are usually removed and the new one is
+added, so it wont be even tried.
+removing something from SVN is a PITA
+creating a branch for each distro will waste enormous amounts of space,
+and will create the issue pointed above by blino.
+
+why not just use flat files to store flat files?
+iirc redhat is doing this to store files
+
+if i were to design this i would index flat files by sha
+and modify repsys/mdvsys in order to commit a file containing the sha in
+svn://specrepo/package/SOURCES/foo-0.0.1.tar.xz instead of the real blob
+and checkout the real file from file://binrepo/hashed_dir/sha instead of
+the dummy.
+
+Cleanup can be done programmatically by retrieving dummy files from the
+specrepo, with a set criteria (eg stuff tagged with a distro release
+number), and killing the unreferenced ones.
+
+This would also be useful spacewise, because we could safely kill blobs
+that were never released: when in cauldron we upload a svn/git version
+of foo to test, but in the release a real version is included. After a
+while killing all the foo-0.0.1.svn203892 that never went into a release
+would be nice and noone will miss them.
+
+It would also allow to share the same blob beetween two different
+packages, maybe less useful, but it would come for free.
+
+L.
+
+-- 
+Luca Berra -- bluca at vodka.it
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000189.html b/zarb-ml/mageia-sysadm/2010-November/000189.html new file mode 100644 index 000000000..bb575bf40 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000189.html @@ -0,0 +1,157 @@ + + + + [Mageia-sysadm] [82] ACLs: + + + + + + + + + +

[Mageia-sysadm] [82] ACLs:

+ root at mageia.org + root at mageia.org +
+ Thu Nov 4 13:06:16 CET 2010 +

+
+ +
Revision: 82
+Author:   buchan
+Date:     2010-11-04 13:06:15 +0100 (Thu, 04 Nov 2010)
+Log Message:
+-----------
+ACLs:
+  Add ACLs required for self-registration application to registrar system group
+  Allow Account admins to unlock accounts (write to pwdAccountLockedTime)
+  Allow users to update their email address and preferredLanguage
+Schema:
+  Switch to rfc2307bis (replacing nis.schema and autofs.schema)
+  Add LPK
+
+Modified Paths:
+--------------
+    puppet/modules/openldap/templates/mandriva-dit-access.conf
+    puppet/modules/openldap/templates/slapd.conf
+
+Modified: puppet/modules/openldap/templates/mandriva-dit-access.conf
+===================================================================
+--- puppet/modules/openldap/templates/mandriva-dit-access.conf	2010-11-04 01:19:58 UTC (rev 81)
++++ puppet/modules/openldap/templates/mandriva-dit-access.conf	2010-11-04 12:06:15 UTC (rev 82)
+@@ -19,6 +19,13 @@
+ 	by * break
+ 
+ # userPassword access
++# Allow account registration to write userPassword of unprivileged users accounts
++access to dn.subtree="ou=People,dc=mageia,dc=org" 
++	filter="(&(objectclass=inetOrgPerson)(!(objectclass=posixAccount)))"
++	attrs=userPassword,pwdReset
++	by group/groupOfNames/member.exact="cn=registrars,ou=system groups,dc=mageia,dc=org" +a
++	by * +0 break
++
+ # shadowLastChange is here because it needs to be writable by the user because
+ # of pam_ldap, which will update this attr whenever the password is changed.
+ # And this is done with the user's credentials
+@@ -68,7 +75,7 @@
+ 
+ # pwdReset, so the admin can force an user to change a password
+ access to dn.subtree="dc=mageia,dc=org"
+-	attrs=pwdReset
++	attrs=pwdReset,pwdAccountLockedTime
+ 	by group.exact="cn=Account Admins,ou=System Groups,dc=mageia,dc=org" write
+ 	by * read
+ 
+@@ -80,7 +87,7 @@
+ 
+ # let the user change some of his/her attributes
+ access to dn.subtree="ou=People,dc=mageia,dc=org"
+-	attrs=carLicense,homePhone,homePostalAddress,mobile,pager,telephoneNumber
++	attrs=carLicense,homePhone,homePostalAddress,mobile,pager,telephoneNumber,mail,preferredLanguage
+ 	by self write
+ 	by * break
+ 
+@@ -139,6 +146,17 @@
+ 	by group.exact="cn=DNS Readers,ou=System Groups,dc=mageia,dc=org" read
+ 	by * none
+ 
++# registration - allow registrar group to create basic unprivileged accounts
++access to dn.subtree="ou=People,dc=mageia,dc=org" 
++	attrs="objectClass" 
++	val="inetOrgperson" 
++	by group/groupOfNames/member.exact="cn=registrars,ou=system groups,dc=mageia,dc=org" write by * +0 break
++
++access to dn.subtree="ou=People,dc=mageia,dc=org" 
++	attrs="cn,sn,gn,mail,entry,children" 
++	by group/groupOfNames/member.exact="cn=registrars,ou=system groups,dc=mageia,dc=org" +a break
++	by * +0 break
++
+ # MTA
+ # XXX - what else can we add here? Virtual Domains? With which schema?
+ access to dn.one="ou=People,dc=mageia,dc=org"
+
+Modified: puppet/modules/openldap/templates/slapd.conf
+===================================================================
+--- puppet/modules/openldap/templates/slapd.conf	2010-11-04 01:19:58 UTC (rev 81)
++++ puppet/modules/openldap/templates/slapd.conf	2010-11-04 12:06:15 UTC (rev 82)
+@@ -7,9 +7,9 @@
+ include	/usr/share/openldap/schema/krb5-kdc.schema
+ #include /usr/share/openldap/schema/kerberosobject.schema
+ include	/usr/share/openldap/schema/misc.schema
+-include	/usr/share/openldap/schema/nis.schema
++include	/usr/share/openldap/schema/rfc2307bis.schema
+ include	/usr/share/openldap/schema/openldap.schema 
+-include /usr/share/openldap/schema/autofs.schema
++#include /usr/share/openldap/schema/autofs.schema
+ include /usr/share/openldap/schema/samba.schema
+ include /usr/share/openldap/schema/kolab.schema
+ include /usr/share/openldap/schema/evolutionperson.schema
+@@ -19,6 +19,7 @@
+ include /usr/share/openldap/schema/dhcp.schema
+ include /usr/share/openldap/schema/dyngroup.schema
+ include /usr/share/openldap/schema/ppolicy.schema
++include /usr/share/openldap/schema/openssh-lpk_openldap.schema
+ 
+ #include	/etc/openldap/schema/local.schema
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101104/5c4bc26c/attachment.html>
+
+ + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000190.html b/zarb-ml/mageia-sysadm/2010-November/000190.html new file mode 100644 index 000000000..2583c4173 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000190.html @@ -0,0 +1,113 @@ + + + + [Mageia-sysadm] Packages SVN + + + + + + + + + +

[Mageia-sysadm] Packages SVN

+ nicolas vigier + boklm at mars-attacks.org +
+ Thu Nov 4 15:57:35 CET 2010 +

+
+ +
On Thu, 04 Nov 2010, Luca Berra wrote:
+
+> On Wed, Nov 03, 2010 at 11:12:53PM +0100, Olivier Blin wrote:
+>> nicolas vigier <boklm at mars-attacks.org> writes:
+>>
+>>> We can also remove history on cauldron binary branch, although it will
+>>> require to stop new commits for a few minutes/hours, doing something like
+>>> this :
+>>> http://robmayhew.com/delete-parts-of-subversion-history/
+>>
+>> Right, we could do in such a way.
+>> Each N distro branch could contain binary history from N-1 to N.
+>>
+>> For example when we release 2011.1, we would have binary history in the
+>> 2011.1 distro branch from 2011.0 to 2011.1, and start cauldron from a
+>> one-revision copy.
+
+I'm not sure we need to keep history from N-1 to N (which is previous
+cooker versions), maybe we can erase it. And only have history from
+N (release date) to N + updates.
+
+>> Though, there is a disadvantage that could get problematic, when we do
+>> backports, we would have to copy the binaries to all target distros, and
+>> it would not be a cheap SVN copy anymore.
+>> This could get pretty big with games and OOo...
+
+Yes.
+
+> I wonder why use svn at all in order to store blobs
+> IMHO it does not give any advantage
+
+The advantage is that it is easier to implement, and already implemented
+now in a repsys branch on git. But it is still possible to replace the
+SVN binary repositories with something else later.
+
+> source tarballs in packages are usually compressed, so no delta is
+> possible, besides that sources are usually removed and the new one is
+> added, so it wont be even tried.
+> removing something from SVN is a PITA
+
+Removing something from SVN is not very difficult, if removing all
+history before a commit (and not only some of the files).
+
+> creating a branch for each distro will waste enormous amounts of space,
+> and will create the issue pointed above by blino.
+>
+> why not just use flat files to store flat files?
+> iirc redhat is doing this to store files
+>
+> if i were to design this i would index flat files by sha
+> and modify repsys/mdvsys in order to commit a file containing the sha in
+> svn://specrepo/package/SOURCES/foo-0.0.1.tar.xz instead of the real blob
+> and checkout the real file from file://binrepo/hashed_dir/sha instead of
+> the dummy.
+
+It can be a good idea, but it requires some work to implement it. I
+think it's something that can be done later.
+
+
+ + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000191.html b/zarb-ml/mageia-sysadm/2010-November/000191.html new file mode 100644 index 000000000..589a4a67f --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000191.html @@ -0,0 +1,129 @@ + + + + [Mageia-sysadm] [83] - module to manage subversion snapshot + + + + + + + + + +

[Mageia-sysadm] [83] - module to manage subversion snapshot

+ root at mageia.org + root at mageia.org +
+ Thu Nov 4 15:59:38 CET 2010 +

+
+ +
Revision: 83
+Author:   misc
+Date:     2010-11-04 15:59:38 +0100 (Thu, 04 Nov 2010)
+Log Message:
+-----------
+- module to manage subversion snapshot 
+
+Added Paths:
+-----------
+    puppet/modules/subversion/
+    puppet/modules/subversion/manifests/
+    puppet/modules/subversion/manifests/init.pp
+
+Added: puppet/modules/subversion/manifests/init.pp
+===================================================================
+--- puppet/modules/subversion/manifests/init.pp	                        (rev 0)
++++ puppet/modules/subversion/manifests/init.pp	2010-11-04 14:59:38 UTC (rev 83)
+@@ -0,0 +1,52 @@
++# should be replaced by vcsrepo
++# https://github.com/reductivelabs/puppet-vcsrepo
++# but not integrated in puppet directly for the moment
++class subversion {
++
++
++    class server {
++        package { "subversion-server":
++            ensure => installed,
++        }
++    }
++
++    # TODO create proper hook directory ( see zarb.org )
++    # create documentation
++    # - group who can commit 
++
++#    define repository ($group => "svn") {
++#        # $name ==> lieu du checkout 
++#        exec { "svnadmin create $name":
++#            path => "/usr/bin:/usr/sbin:/bin",
++#            creates => $name             
++#        }
++#        # TODO complete documentation
++#        file { "$name":
++#            mode => 660
++#            recurse => true
++#        } 
++#        # file pour les hooks
++#    }
++
++
++    class client {
++        package { subversion:
++            ensure => installed,
++        }
++    }
++
++    # TODO ensure that subversion ishere
++    #      allow to configure the snapshot refresh interval
++    define snapshot($source, $refresh, $user = 'root')  {
++        exec { "/usr/bin/svn co $source $name":
++            creates => $name,           
++            user => $user,  
++        }
++
++        cron { "update $name":
++           command => "cd $name && /usr/bin/svn update -q",
++           user => $user,
++           minute => '*/5'
++        }   
++    }
++}
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101104/facfc10d/attachment.html>
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000192.html b/zarb-ml/mageia-sysadm/2010-November/000192.html new file mode 100644 index 000000000..f7d06de12 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000192.html @@ -0,0 +1,88 @@ + + + + [Mageia-sysadm] [84] - since catdap use fcgid ( in the example file given by buchan ), let' s add this + + + + + + + + + +

[Mageia-sysadm] [84] - since catdap use fcgid ( in the example file given by buchan ), let' s add this

+ root at mageia.org + root at mageia.org +
+ Thu Nov 4 16:53:24 CET 2010 +

+
+ +
Revision: 84
+Author:   misc
+Date:     2010-11-04 16:53:24 +0100 (Thu, 04 Nov 2010)
+Log Message:
+-----------
+- since catdap use fcgid ( in the example file given by buchan ), let's add this
+
+Modified Paths:
+--------------
+    puppet/modules/apache/manifests/init.pp
+
+Modified: puppet/modules/apache/manifests/init.pp
+===================================================================
+--- puppet/modules/apache/manifests/init.pp	2010-11-04 14:59:38 UTC (rev 83)
++++ puppet/modules/apache/manifests/init.pp	2010-11-04 15:53:24 UTC (rev 84)
+@@ -24,6 +24,13 @@
+         }
+     }
+ 
++    class mod_fcgid inherits base {
++        package { "apache-mod_fcgid":
++            ensure => installed
++        }
++    }
++
++
+     class mod_wsgi inherits base {
+         package { "apache-mod_wsgi":
+             ensure => installed
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101104/ba0b195f/attachment-0001.html>
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000193.html b/zarb-ml/mageia-sysadm/2010-November/000193.html new file mode 100644 index 000000000..adc7bae38 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000193.html @@ -0,0 +1,83 @@ + + + + [Mageia-sysadm] [85] - not needed directly in the node, will be pulled by application + + + + + + + + + +

[Mageia-sysadm] [85] - not needed directly in the node, will be pulled by application

+ root at mageia.org + root at mageia.org +
+ Thu Nov 4 16:54:00 CET 2010 +

+
+ +
Revision: 85
+Author:   misc
+Date:     2010-11-04 16:54:00 +0100 (Thu, 04 Nov 2010)
+Log Message:
+-----------
+- not needed directly in the node, will be pulled by application
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-04 15:53:24 UTC (rev 84)
++++ puppet/manifests/nodes.pp	2010-11-04 15:54:00 UTC (rev 85)
+@@ -76,8 +76,6 @@
+     bind::zone_master { "mageia.org": }
+     bind::zone_master { "mageia.fr": } 
+     timezone::timezone { "Europe/Paris": }
+-    # for catdap and epoll
+-    include apache::mod_perl
+ }
+ 
+ # buildnode
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101104/b5e29ad4/attachment.html>
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000194.html b/zarb-ml/mageia-sysadm/2010-November/000194.html new file mode 100644 index 000000000..997fb8d37 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000194.html @@ -0,0 +1,183 @@ + + + + [Mageia-sysadm] [86] Configure iurt on bs nodes and install conf files + + + + + + + + + +

[Mageia-sysadm] [86] Configure iurt on bs nodes and install conf files

+ root at mageia.org + root at mageia.org +
+ Thu Nov 4 17:34:59 CET 2010 +

+
+ +
Revision: 86
+Author:   dmorgan
+Date:     2010-11-04 17:34:59 +0100 (Thu, 04 Nov 2010)
+Log Message:
+-----------
+Configure iurt on bs nodes and install conf files
+
+Modified Paths:
+--------------
+    puppet/manifests/common.pp
+    puppet/manifests/nodes.pp
+
+Added Paths:
+-----------
+    puppet/modules/iurt/
+    puppet/modules/iurt/manifests/
+    puppet/modules/iurt/manifests/init.pp
+    puppet/modules/iurt/templates/
+    puppet/modules/iurt/templates/.iurt.cauldron.conf
+
+Modified: puppet/manifests/common.pp
+===================================================================
+--- puppet/manifests/common.pp	2010-11-04 15:54:00 UTC (rev 85)
++++ puppet/manifests/common.pp	2010-11-04 16:34:59 UTC (rev 86)
+@@ -92,13 +92,3 @@
+     include urpmi_update
+ }
+ 
+-class default_mageia_buildnode {
+-    # build node common settings
+-
+-    # we could have the following skip list to use less space:
+-    # '/(drakx-installer-binaries|drakx-installer-advertising|gfxboot|drakx-installer-stage2|mandriva-theme)/'
+-    $package_list = ['task-bs-cluster-chroot', 'iurt']
+-    package { $package_list:
+-        ensure => installed;
+-    }
+-}
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-04 15:54:00 UTC (rev 85)
++++ puppet/manifests/nodes.pp	2010-11-04 16:34:59 UTC (rev 86)
+@@ -83,7 +83,7 @@
+ # Location: IELO datacenter (marseille)
+ #
+ 	include default_mageia_server
+-	include default_mageia_buildnode
++	include iurt
+     timezone::timezone { "Europe/Paris": }
+ }
+ 
+@@ -91,7 +91,7 @@
+ # Location: IELO datacenter (marseille)
+ #
+ 	include default_mageia_server
+-	include default_mageia_buildnode
++	include iurt
+     timezone::timezone { "Europe/Paris": }
+ }
+ 
+
+Added: puppet/modules/iurt/manifests/init.pp
+===================================================================
+--- puppet/modules/iurt/manifests/init.pp	                        (rev 0)
++++ puppet/modules/iurt/manifests/init.pp	2010-11-04 16:34:59 UTC (rev 86)
+@@ -0,0 +1,21 @@
++class default_mageia_buildnode {
++
++    # build node common settings
++    # we could have the following skip list to use less space:
++    # '/(drakx-installer-binaries|drakx-installer-advertising|gfxboot|drakx-installer-stage2|mandriva-theme)/'
++    $package_list = ['task-bs-cluster-chroot', 'iurt']
++    package { $package_list:
++        ensure => installed;
++    }
++
++    file { '/home/buildbot/.iurt.cauldron.conf':
++        ensure => present,
++        owner => buildbot,
++        group => buildbot,
++        mode => 644,
++        require => Package["iurt"],
++        content => "template("buildsystem/.iurt.cauldron.conf")"
++    }
++
++}
++
+
+Added: puppet/modules/iurt/templates/.iurt.cauldron.conf
+===================================================================
+--- puppet/modules/iurt/templates/.iurt.cauldron.conf	                        (rev 0)
++++ puppet/modules/iurt/templates/.iurt.cauldron.conf	2010-11-04 16:34:59 UTC (rev 86)
+@@ -0,0 +1,30 @@
++{
++ supported_arch => [ 'i586', 'x86_64' ],
++ all_media => { 'main' => [ 'release' ], 'contrib' => [ 'release' ] },
++ upload => 'schedbot at pkgsubmit:~/uploads/',
++ upload_queue => 'schedbot at pkgsubmit:~/uploads/queue/',
++ unwanted_packages => '^monotone-',
++ repository => '/mnt/BIG/dis/',
++ rsync_to => 'schedbot at pkgsubmit:/mnt/BIG/dis/uploads/build/',
++ log_url => 'http://pkgsubmit.mageia.org/queue/build/',
++ admin => 'mageia-sysadm at mageia.org',
++ iurt_root_command => '/home/buildbot/iurt-trunk/iurt_root_command',
++ packager => 'Iurt the rebuild bot <mageia-sysadm at mageia.org>',
++ sendmail => 0,
++ build_timeout => {
++  'default' => 18000,
++   'gcc' => 57600,
++   'paraview' => 115200,
++   'salome' => 57600,
++   'itk' => 115200,
++   'wrapitk' => 115200,
++   'kernel-rt' => 57600,
++   'kernel-xen' => 57600,
++   'kernel-tmb' => 57600,
++   'openoffice.org' => 345600,
++   'openoffice.org64' => 345600,
++   'openoffice.org-go-ooo' => 345600,
++   'openoffice.org64-go-ooo' => 345600
++ },
++}
++
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101104/03b1fd43/attachment.html>
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000195.html b/zarb-ml/mageia-sysadm/2010-November/000195.html new file mode 100644 index 000000000..f0b7bf0ab --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000195.html @@ -0,0 +1,81 @@ + + + + [Mageia-sysadm] [86] Configure iurt on bs nodes and install conf files + + + + + + + + + +

[Mageia-sysadm] [86] Configure iurt on bs nodes and install conf files

+ Thierry Vignaud + thierry.vignaud at gmail.com +
+ Thu Nov 4 17:45:49 CET 2010 +

+
+ +
On 4 November 2010 17:34,  <root at mageia.org> wrote:
+> Revision 86 Author dmorgan Date 2010-11-04 17:34:59 +0100 (Thu, 04 Nov 2010)
+>
+> Log Message
+>
+> Configure iurt on bs nodes and install conf files
+
+(...)
+
+> Added: puppet/modules/iurt/templates/.iurt.cauldron.conf
+> ===================================================================
+> --- puppet/modules/iurt/templates/.iurt.cauldron.conf	
+> (rev 0)
+> +++ puppet/modules/iurt/templates/.iurt.cauldron.conf	2010-11-04 16:34:59
+> UTC (rev 86)
+> @@ -0,0 +1,30 @@
+> +{
+> + supported_arch => [ 'i586', 'x86_64' ],
+> + all_media => { 'main' => [ 'release' ], 'contrib' => [ 'release' ] },
+> + upload => 'schedbot at pkgsubmit:~/uploads/',
+> + upload_queue => 'schedbot at pkgsubmit:~/uploads/queue/',
+> + unwanted_packages => '^monotone-',
+
+Can we exclude msec too :-) ?
+
+ + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000196.html b/zarb-ml/mageia-sysadm/2010-November/000196.html new file mode 100644 index 000000000..6acfe4b12 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000196.html @@ -0,0 +1,93 @@ + + + + [Mageia-sysadm] [87] - add the directory for password and external data + + + + + + + + + +

[Mageia-sysadm] [87] - add the directory for password and external data

+ root at mageia.org + root at mageia.org +
+ Thu Nov 4 17:47:06 CET 2010 +

+
+ +
Revision: 87
+Author:   misc
+Date:     2010-11-04 17:47:06 +0100 (Thu, 04 Nov 2010)
+Log Message:
+-----------
+- add the directory for password and external data
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-04 16:34:59 UTC (rev 86)
++++ puppet/manifests/nodes.pp	2010-11-04 16:47:06 UTC (rev 87)
+@@ -45,6 +45,15 @@
+         creates => "/etc/puppet/manifests/site.pp"
+     }
+ 
++    file { "extdata":
++        path => "/etc/puppet/extdata",
++        ensure => directory,
++        owner => puppet,
++        group => puppet,
++        mode => 700,
++        recurse => true
++    }
++
+     package {"puppet-server":
+         ensure => "installed"
+     }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101104/d2b9be56/attachment.html>
+
+ + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000197.html b/zarb-ml/mageia-sysadm/2010-November/000197.html new file mode 100644 index 000000000..86a8ecfa5 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000197.html @@ -0,0 +1,93 @@ + + + + [Mageia-sysadm] [88] Fix iurt init.pp + + + + + + + + + +

[Mageia-sysadm] [88] Fix iurt init.pp

+ root at mageia.org + root at mageia.org +
+ Thu Nov 4 17:48:28 CET 2010 +

+
+ +
Revision: 88
+Author:   dmorgan
+Date:     2010-11-04 17:48:27 +0100 (Thu, 04 Nov 2010)
+Log Message:
+-----------
+Fix iurt init.pp
+
+Modified Paths:
+--------------
+    puppet/modules/iurt/manifests/init.pp
+
+Modified: puppet/modules/iurt/manifests/init.pp
+===================================================================
+--- puppet/modules/iurt/manifests/init.pp	2010-11-04 16:47:06 UTC (rev 87)
++++ puppet/modules/iurt/manifests/init.pp	2010-11-04 16:48:27 UTC (rev 88)
+@@ -1,4 +1,4 @@
+-class default_mageia_buildnode {
++class iurt {
+ 
+     # build node common settings
+     # we could have the following skip list to use less space:
+@@ -13,8 +13,7 @@
+         owner => buildbot,
+         group => buildbot,
+         mode => 644,
+-        require => Package["iurt"],
+-        content => "template("buildsystem/.iurt.cauldron.conf")"
++        content => template("iurt/.iurt.cauldron.conf")
+     }
+ 
+ }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101104/82187a63/attachment-0001.html>
+
+ + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000198.html b/zarb-ml/mageia-sysadm/2010-November/000198.html new file mode 100644 index 000000000..6c6dc4c9f --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000198.html @@ -0,0 +1,88 @@ + + + + [Mageia-sysadm] [86] Configure iurt on bs nodes and install conf files + + + + + + + + + +

[Mageia-sysadm] [86] Configure iurt on bs nodes and install conf files

+ Olivier Blin + mageia at blino.org +
+ Thu Nov 4 17:49:02 CET 2010 +

+
+ +
Thierry Vignaud <thierry.vignaud at gmail.com> writes:
+
+> On 4 November 2010 17:34,  <root at mageia.org> wrote:
+>> Revision 86 Author dmorgan Date 2010-11-04 17:34:59 +0100 (Thu, 04 Nov 2010)
+>>
+>> Log Message
+>>
+>> Configure iurt on bs nodes and install conf files
+>
+> (...)
+>
+>> Added: puppet/modules/iurt/templates/.iurt.cauldron.conf
+>> ===================================================================
+>> --- puppet/modules/iurt/templates/.iurt.cauldron.conf	
+>> (rev 0)
+>> +++ puppet/modules/iurt/templates/.iurt.cauldron.conf	2010-11-04 16:34:59
+>> UTC (rev 86)
+>> @@ -0,0 +1,30 @@
+>> +{
+>> + supported_arch => [ 'i586', 'x86_64' ],
+>> + all_media => { 'main' => [ 'release' ], 'contrib' => [ 'release' ] },
+>> + upload => 'schedbot at pkgsubmit:~/uploads/',
+>> + upload_queue => 'schedbot at pkgsubmit:~/uploads/queue/',
+>> + unwanted_packages => '^monotone-',
+>
+> Can we exclude msec too :-) ?
+
+Not exclude the package, but maybe configure msec files not to run heavy
+tasks (especially find on remote mountpoints ...)
+
+-- 
+Olivier Blin - blino
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000199.html b/zarb-ml/mageia-sysadm/2010-November/000199.html new file mode 100644 index 000000000..e9f4b5537 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000199.html @@ -0,0 +1,98 @@ + + + + [Mageia-sysadm] [89] - fix the header stolen from zarb + + + + + + + + + +

[Mageia-sysadm] [89] - fix the header stolen from zarb

+ root at mageia.org + root at mageia.org +
+ Thu Nov 4 17:50:03 CET 2010 +

+
+ +
Revision: 89
+Author:   misc
+Date:     2010-11-04 17:50:03 +0100 (Thu, 04 Nov 2010)
+Log Message:
+-----------
+- fix the header stolen from zarb
+- add identity vhost
+
+Modified Paths:
+--------------
+    puppet/modules/bind/templates/zones/mageia.org.zone
+
+Modified: puppet/modules/bind/templates/zones/mageia.org.zone
+===================================================================
+--- puppet/modules/bind/templates/zones/mageia.org.zone	2010-11-04 16:48:27 UTC (rev 88)
++++ puppet/modules/bind/templates/zones/mageia.org.zone	2010-11-04 16:50:03 UTC (rev 89)
+@@ -1,9 +1,9 @@
+-; cfengine-distributed file
++; puppet-distributed file
+ ; local modifications will be lost
+ ; $Id$
+ $TTL	3D
+ @       IN      SOA     ns0.zarb.org.   mageia.org.  (
+-        2010110202	; Serial
++        2010110203	; Serial
+         21600		; Refresh
+         3600		; Retry
+         2419200		; Expire
+@@ -65,6 +65,8 @@
+ puppetmaster  IN  CNAME valstar
+ pkgsubmit   IN CNAME valstar
+ 
++identity    IN CNAME alamut
++
+ ; temporary
+ ;forum       IN A 140.211.167.148
+ ;wiki            IN      A       88.191.83.84
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101104/6a79baca/attachment.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000200.html b/zarb-ml/mageia-sysadm/2010-November/000200.html new file mode 100644 index 000000000..49a448d8a --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000200.html @@ -0,0 +1,86 @@ + + + + [Mageia-sysadm] [86] Configure iurt on bs nodes and install conf files + + + + + + + + + +

[Mageia-sysadm] [86] Configure iurt on bs nodes and install conf files

+ Michael Scherer + misc at zarb.org +
+ Thu Nov 4 17:52:47 CET 2010 +

+
+ +
Le jeudi 04 novembre 2010 à 17:45 +0100, Thierry Vignaud a écrit :
+> On 4 November 2010 17:34,  <root at mageia.org> wrote:
+> > Revision 86 Author dmorgan Date 2010-11-04 17:34:59 +0100 (Thu, 04 Nov 2010)
+> >
+> > Log Message
+> >
+> > Configure iurt on bs nodes and install conf files
+> 
+> (...)
+> 
+> > Added: puppet/modules/iurt/templates/.iurt.cauldron.conf
+> > ===================================================================
+> > --- puppet/modules/iurt/templates/.iurt.cauldron.conf	
+> > (rev 0)
+> > +++ puppet/modules/iurt/templates/.iurt.cauldron.conf	2010-11-04 16:34:59
+> > UTC (rev 86)
+> > @@ -0,0 +1,30 @@
+> > +{
+> > + supported_arch => [ 'i586', 'x86_64' ],
+> > + all_media => { 'main' => [ 'release' ], 'contrib' => [ 'release' ] },
+> > + upload => 'schedbot at pkgsubmit:~/uploads/',
+> > + upload_queue => 'schedbot at pkgsubmit:~/uploads/queue/',
+> > + unwanted_packages => '^monotone-',
+> 
+> Can we exclude msec too :-) ?
+
+and why is monotone excluded ?
+-- 
+Michael Scherer
+
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000201.html b/zarb-ml/mageia-sysadm/2010-November/000201.html new file mode 100644 index 000000000..e1561df40 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000201.html @@ -0,0 +1,78 @@ + + + + [Mageia-sysadm] mga-mirrors: svn load + + + + + + + + + +

[Mageia-sysadm] mga-mirrors: svn load

+ Olivier Thauvin + nanardon at nanardon.zarb.org +
+ Thu Nov 4 17:56:04 CET 2010 +

+
+ +
Hello,
+
+FYI, I just reload the svn of mga-mirrors into soft/ svn on
+svn.mageia.org.
+
+New changes on this software will be done here for now.
+
+Regards.
+
+-- 
+
+Olivier Thauvin
+CNRS  -  LATMOS
+♖ ♘ ♗ ♕ ♔ ♗ ♘ ♖
+-------------- next part --------------
+A non-text attachment was scrubbed...
+Name: not available
+Type: application/pgp-signature
+Size: 197 bytes
+Desc: not available
+URL: </pipermail/mageia-sysadm/attachments/20101104/f50c207f/attachment.asc>
+
+ + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000202.html b/zarb-ml/mageia-sysadm/2010-November/000202.html new file mode 100644 index 000000000..b357ca423 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000202.html @@ -0,0 +1,188 @@ + + + + [Mageia-sysadm] [90] - add a catdap module + + + + + + + + + +

[Mageia-sysadm] [90] - add a catdap module

+ root at mageia.org + root at mageia.org +
+ Thu Nov 4 17:57:29 CET 2010 +

+
+ +
Revision: 90
+Author:   misc
+Date:     2010-11-04 17:57:29 +0100 (Thu, 04 Nov 2010)
+Log Message:
+-----------
+- add a catdap module
+
+Added Paths:
+-----------
+    puppet/modules/catdap/
+    puppet/modules/catdap/manifests/
+    puppet/modules/catdap/manifests/init.pp
+    puppet/modules/catdap/templates/
+    puppet/modules/catdap/templates/catdap_local.yml
+    puppet/modules/catdap/templates/catdap_vhost.conf
+
+Added: puppet/modules/catdap/manifests/init.pp
+===================================================================
+--- puppet/modules/catdap/manifests/init.pp	                        (rev 0)
++++ puppet/modules/catdap/manifests/init.pp	2010-11-04 16:57:29 UTC (rev 90)
+@@ -0,0 +1,43 @@
++class catdap {
++
++    include subversion
++    include subversion::client
++    include apache::mod_fcgid
++
++    $catdap_location = "/var/www/identity"
++
++    # TODO switch to a proper rpm packaging
++    $rpm_requirement = ['perl-Catalyst-Runtime', 
++"perl-Catalyst-Action-RenderView", "perl-Catalyst-Model-LDAP-FromAuthentication", "perl-Catalyst-P-A-Store-LDAP", "perl-Catalyst-Plugin-Authentication", "perl-Catalyst-Plugin-Captcha",
++"perl-Catalyst-Plugin-ConfigLoader", "perl-Catalyst-Plugin-I18N", "perl-Catalyst-Plugin-Session-Store-File", "perl-Catalyst-Plugin-Static-Simple",
++"perl-Catalyst-P-S-State-Cookie", "perl-Catalyst-P-S-Store-File", "perl-Catalyst-Runtime", "perl-Catalyst-View-Email",
++"perl-Catalyst-View-TT", "perl-Config-General", "perl-Crypt-CBC", "perl-Data-UUID",
++"perl-Email-Valid", "perl-Moose", "perl-namespace-autoclean", "perl-Test-Simple" ]
++
++    package { $rpm_requirement:
++        ensure => installed
++    }
++
++    subversion::snapshot { $catdap_location:
++        source =>   "svn+ssh://svn.mageia.org/srv/mx2-dd0/svn/soft/identity/CatDap/branches/live"
++    }
++
++    # add a catdap config file
++    file { "$catdap_location/catdap_local.yml":
++        ensure => present,
++        owner => apache,
++        mode => 600,
++        content => template("catdap/catdap_local.yml") 
++    }
++
++    # add a apache vhost
++    file { "identity.$domain.conf":
++        path => "/etc/httpd/conf/vhosts.d/$name",
++        ensure => "present",
++        owner => root,
++        group => root,
++        mode => 644,
++        notify => Service['apache'],
++        content => template("catdap/catdap_vhost.conf")
++    }    
++}
+
+Added: puppet/modules/catdap/templates/catdap_local.yml
+===================================================================
+--- puppet/modules/catdap/templates/catdap_local.yml	                        (rev 0)
++++ puppet/modules/catdap/templates/catdap_local.yml	2010-11-04 16:57:29 UTC (rev 90)
+@@ -0,0 +1,37 @@
++<%
++# domain come from facter
++
++dc_suffix = 'dc=' + domain.gsub('.',',dc=')
++
++ldap_server = 'ldap' + domain
++
++ldap_password = extlookup('catdap_password')
++
++ldap_account = 'cn=catdap-valstar,ou=System Accounts,' + dc_suffix
++%>
++
++organisation: Mageia
++apptitle: Mageia Identity Management
++emailfrom: noreply@<%= domain %>
++
++Model::Proxy:
++    base:      ou=People,<%= dc_suffix %>
++    dn:        <%= ldap_account %>
++    password:  <%= ldap_password %>
++
++Model::User:
++    base:      <%= dc_suffix %>
++    host:      <%= ldap_server %>
++    start_tls: 1
++
++authentication:
++    default_realm: ldap
++    realms:
++        ldap:
++            store:
++                ldap_server: <%= ldap_server %>
++                binddn: <%= dc_suffix %>
++                bindpw: <%= ldap_password %>
++                user_basedn: ou=People,<%= dc_suffix %>
++                role_basedn: <%= dc_suffix %>
++
+
+Added: puppet/modules/catdap/templates/catdap_vhost.conf
+===================================================================
+--- puppet/modules/catdap/templates/catdap_vhost.conf	                        (rev 0)
++++ puppet/modules/catdap/templates/catdap_vhost.conf	2010-11-04 16:57:29 UTC (rev 90)
+@@ -0,0 +1,15 @@
++<VirtualHost *:80>
++        ServerName identity.<%= domain %>
++        # Serve static content directly
++        DocumentRoot  <%= catdap_location %>/root
++        Alias /static <%= catdap_location %>/root/static
++
++        Alias / <%= catdap_location %>/script/catdap_fastcgi.pl/
++
++        <Directory <%= catdap_location %>/script>
++                Options +ExecCGI
++                SetHandler fcgid-script
++                Allow from all
++        </Directory>
++</VirtualHost>
++
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101104/95f17423/attachment.html>
+
+ + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000203.html b/zarb-ml/mageia-sysadm/2010-November/000203.html new file mode 100644 index 000000000..f71de165a --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000203.html @@ -0,0 +1,79 @@ + + + + [Mageia-sysadm] [91] - add the include for extlookup, as needed by previous commit + + + + + + + + + +

[Mageia-sysadm] [91] - add the include for extlookup, as needed by previous commit

+ root at mageia.org + root at mageia.org +
+ Thu Nov 4 17:58:39 CET 2010 +

+
+ +
Revision: 91
+Author:   misc
+Date:     2010-11-04 17:58:39 +0100 (Thu, 04 Nov 2010)
+Log Message:
+-----------
+- add the include for extlookup, as needed by previous commit
+
+Modified Paths:
+--------------
+    puppet/manifests/site.pp
+
+Modified: puppet/manifests/site.pp
+===================================================================
+--- puppet/manifests/site.pp	2010-11-04 16:57:29 UTC (rev 90)
++++ puppet/manifests/site.pp	2010-11-04 16:58:39 UTC (rev 91)
+@@ -1,2 +1,3 @@
++import "extlookup"
+ import "common"
+ import "nodes"
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101104/25364d38/attachment-0001.html>
+
+ + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000204.html b/zarb-ml/mageia-sysadm/2010-November/000204.html new file mode 100644 index 000000000..133134e9f --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000204.html @@ -0,0 +1,88 @@ + + + + [Mageia-sysadm] [92] - deploy catdap ( 1st try ) + + + + + + + + + +

[Mageia-sysadm] [92] - deploy catdap ( 1st try )

+ root at mageia.org + root at mageia.org +
+ Thu Nov 4 17:58:54 CET 2010 +

+
+ +
Revision: 92
+Author:   misc
+Date:     2010-11-04 17:58:53 +0100 (Thu, 04 Nov 2010)
+Log Message:
+-----------
+- deploy catdap ( 1st try )
+---Cette ligne, et les suivantes ci-dessous, seront ignor?\195?\169es--
+
+M    manifests/nodes.pp
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-04 16:58:39 UTC (rev 91)
++++ puppet/manifests/nodes.pp	2010-11-04 16:58:53 UTC (rev 92)
+@@ -85,6 +85,8 @@
+     bind::zone_master { "mageia.org": }
+     bind::zone_master { "mageia.fr": } 
+     timezone::timezone { "Europe/Paris": }
++
++    include catdap
+ }
+ 
+ # buildnode
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101104/db882c74/attachment.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000205.html b/zarb-ml/mageia-sysadm/2010-November/000205.html new file mode 100644 index 000000000..d9aecd981 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000205.html @@ -0,0 +1,85 @@ + + + + [Mageia-sysadm] [93] - oups, forgot to commit the file. + + + + + + + + + +

[Mageia-sysadm] [93] - oups, forgot to commit the file.

+ root at mageia.org + root at mageia.org +
+ Thu Nov 4 18:01:16 CET 2010 +

+
+ +
Revision: 93
+Author:   misc
+Date:     2010-11-04 18:01:16 +0100 (Thu, 04 Nov 2010)
+Log Message:
+-----------
+- oups, forgot to commit the file. used for extlookup, so we can store password
+outside of the public svn : http://www.devco.net/archives/2009/08/31/complex_data_and_puppet.php
+
+Added Paths:
+-----------
+    puppet/manifests/extlookup.pp
+
+Added: puppet/manifests/extlookup.pp
+===================================================================
+--- puppet/manifests/extlookup.pp	                        (rev 0)
++++ puppet/manifests/extlookup.pp	2010-11-04 17:01:16 UTC (rev 93)
+@@ -0,0 +1,4 @@
++# see http://www.devco.net/archives/2009/08/31/complex_data_and_puppet.php
++$extlookup_datadir = "/etc/puppet/extdata"
++$extlookup_precedence = ["%{fqdn}", "common"]
++
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101104/25520644/attachment.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000206.html b/zarb-ml/mageia-sysadm/2010-November/000206.html new file mode 100644 index 000000000..1d5740d23 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000206.html @@ -0,0 +1,90 @@ + + + + [Mageia-sysadm] [86] Configure iurt on bs nodes and install conf files + + + + + + + + + +

[Mageia-sysadm] [86] Configure iurt on bs nodes and install conf files

+ Olivier Blin + mageia at blino.org +
+ Thu Nov 4 18:05:36 CET 2010 +

+
+ +
Michael Scherer <misc at zarb.org> writes:
+
+> Le jeudi 04 novembre 2010 à 17:45 +0100, Thierry Vignaud a écrit :
+>> On 4 November 2010 17:34,  <root at mageia.org> wrote:
+>> > Revision 86 Author dmorgan Date 2010-11-04 17:34:59 +0100 (Thu, 04 Nov 2010)
+>> >
+>> > Log Message
+>> >
+>> > Configure iurt on bs nodes and install conf files
+>> 
+>> (...)
+>> 
+>> > Added: puppet/modules/iurt/templates/.iurt.cauldron.conf
+>> > ===================================================================
+>> > --- puppet/modules/iurt/templates/.iurt.cauldron.conf	
+>> > (rev 0)
+>> > +++ puppet/modules/iurt/templates/.iurt.cauldron.conf	2010-11-04 16:34:59
+>> > UTC (rev 86)
+>> > @@ -0,0 +1,30 @@
+>> > +{
+>> > + supported_arch => [ 'i586', 'x86_64' ],
+>> > + all_media => { 'main' => [ 'release' ], 'contrib' => [ 'release' ] },
+>> > + upload => 'schedbot at pkgsubmit:~/uploads/',
+>> > + upload_queue => 'schedbot at pkgsubmit:~/uploads/queue/',
+>> > + unwanted_packages => '^monotone-',
+>> 
+>> Can we exclude msec too :-) ?
+>
+> and why is monotone excluded ?
+
+That's history from the Mandriva BS, probably some reason on
+maintainers@ ML ...
+
+-- 
+Olivier Blin - blino
+
+ + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000207.html b/zarb-ml/mageia-sysadm/2010-November/000207.html new file mode 100644 index 000000000..7faadfff8 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000207.html @@ -0,0 +1,87 @@ + + + + [Mageia-sysadm] [94] - remove duplicate packages + + + + + + + + + +

[Mageia-sysadm] [94] - remove duplicate packages

+ root at mageia.org + root at mageia.org +
+ Thu Nov 4 18:06:29 CET 2010 +

+
+ +
Revision: 94
+Author:   misc
+Date:     2010-11-04 18:06:29 +0100 (Thu, 04 Nov 2010)
+Log Message:
+-----------
+- remove duplicate packages
+
+Modified Paths:
+--------------
+    puppet/modules/catdap/manifests/init.pp
+
+Modified: puppet/modules/catdap/manifests/init.pp
+===================================================================
+--- puppet/modules/catdap/manifests/init.pp	2010-11-04 17:01:16 UTC (rev 93)
++++ puppet/modules/catdap/manifests/init.pp	2010-11-04 17:06:29 UTC (rev 94)
+@@ -10,7 +10,7 @@
+     $rpm_requirement = ['perl-Catalyst-Runtime', 
+ "perl-Catalyst-Action-RenderView", "perl-Catalyst-Model-LDAP-FromAuthentication", "perl-Catalyst-P-A-Store-LDAP", "perl-Catalyst-Plugin-Authentication", "perl-Catalyst-Plugin-Captcha",
+ "perl-Catalyst-Plugin-ConfigLoader", "perl-Catalyst-Plugin-I18N", "perl-Catalyst-Plugin-Session-Store-File", "perl-Catalyst-Plugin-Static-Simple",
+-"perl-Catalyst-P-S-State-Cookie", "perl-Catalyst-P-S-Store-File", "perl-Catalyst-Runtime", "perl-Catalyst-View-Email",
++"perl-Catalyst-P-S-State-Cookie", "perl-Catalyst-P-S-Store-File", "perl-Catalyst-View-Email",
+ "perl-Catalyst-View-TT", "perl-Config-General", "perl-Crypt-CBC", "perl-Data-UUID",
+ "perl-Email-Valid", "perl-Moose", "perl-namespace-autoclean", "perl-Test-Simple" ]
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101104/4e36d8c8/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000208.html b/zarb-ml/mageia-sysadm/2010-November/000208.html new file mode 100644 index 000000000..898d45a00 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000208.html @@ -0,0 +1,96 @@ + + + + [Mageia-sysadm] [95] - fix missing default argument + + + + + + + + + +

[Mageia-sysadm] [95] - fix missing default argument

+ root at mageia.org + root at mageia.org +
+ Thu Nov 4 18:14:35 CET 2010 +

+
+ +
Revision: 95
+Author:   misc
+Date:     2010-11-04 18:14:35 +0100 (Thu, 04 Nov 2010)
+Log Message:
+-----------
+- fix missing default argument
+
+Modified Paths:
+--------------
+    puppet/modules/subversion/manifests/init.pp
+
+Modified: puppet/modules/subversion/manifests/init.pp
+===================================================================
+--- puppet/modules/subversion/manifests/init.pp	2010-11-04 17:06:29 UTC (rev 94)
++++ puppet/modules/subversion/manifests/init.pp	2010-11-04 17:14:35 UTC (rev 95)
+@@ -37,7 +37,7 @@
+ 
+     # TODO ensure that subversion ishere
+     #      allow to configure the snapshot refresh interval
+-    define snapshot($source, $refresh, $user = 'root')  {
++    define snapshot($source, $refresh = '*/5', $user = 'root')  {
+         exec { "/usr/bin/svn co $source $name":
+             creates => $name,           
+             user => $user,  
+@@ -46,7 +46,7 @@
+         cron { "update $name":
+            command => "cd $name && /usr/bin/svn update -q",
+            user => $user,
+-           minute => '*/5'
++           minute => $refresh
+         }   
+     }
+ }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101104/fa9edc2a/attachment-0001.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000209.html b/zarb-ml/mageia-sysadm/2010-November/000209.html new file mode 100644 index 000000000..a16cd0b08 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000209.html @@ -0,0 +1,91 @@ + + + + [Mageia-sysadm] [96] - fix the service name ( as i cannot name it apache, i need to use a alias ) + + + + + + + + + +

[Mageia-sysadm] [96] - fix the service name ( as i cannot name it apache, i need to use a alias )

+ root at mageia.org + root at mageia.org +
+ Thu Nov 4 18:42:21 CET 2010 +

+
+ +
Revision: 96
+Author:   misc
+Date:     2010-11-04 18:42:21 +0100 (Thu, 04 Nov 2010)
+Log Message:
+-----------
+- fix the service name ( as i cannot name it apache, i need to use a alias )
+
+Modified Paths:
+--------------
+    puppet/modules/apache/manifests/init.pp
+
+Modified: puppet/modules/apache/manifests/init.pp
+===================================================================
+--- puppet/modules/apache/manifests/init.pp	2010-11-04 17:14:35 UTC (rev 95)
++++ puppet/modules/apache/manifests/init.pp	2010-11-04 17:42:21 UTC (rev 96)
+@@ -5,10 +5,10 @@
+             ensure => installed
+         }
+     
+-        service { apache: 
++        service { httpd: 
++            alias => apache,
+             ensure => running,
+             subscribe => [ Package['apache-mpm-prefork'] ],
+-            path => "/etc/init.d/httpd"
+         }
+     }
+     
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101104/9e1c92f1/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000210.html b/zarb-ml/mageia-sysadm/2010-November/000210.html new file mode 100644 index 000000000..146da0616 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000210.html @@ -0,0 +1,149 @@ + + + + [Mageia-sysadm] [97] - refactor the vhost + + + + + + + + + +

[Mageia-sysadm] [97] - refactor the vhost

+ root at mageia.org + root at mageia.org +
+ Thu Nov 4 18:51:06 CET 2010 +

+
+ +
Revision: 97
+Author:   misc
+Date:     2010-11-04 18:51:05 +0100 (Thu, 04 Nov 2010)
+Log Message:
+-----------
+- refactor the vhost
+- fix the url used for svn checkout
+- add a requires from catdap config to svn checkout for ordering purpose
+- move extlookup call outside of template
+- fix the name of apache config file
+- fix the naming of the ldap server  
+
+Modified Paths:
+--------------
+    puppet/modules/catdap/manifests/init.pp
+    puppet/modules/catdap/templates/catdap_local.yml
+    puppet/modules/catdap/templates/catdap_vhost.conf
+
+Modified: puppet/modules/catdap/manifests/init.pp
+===================================================================
+--- puppet/modules/catdap/manifests/init.pp	2010-11-04 17:42:21 UTC (rev 96)
++++ puppet/modules/catdap/manifests/init.pp	2010-11-04 17:51:05 UTC (rev 97)
+@@ -5,6 +5,7 @@
+     include apache::mod_fcgid
+ 
+     $catdap_location = "/var/www/identity"
++    $catdap_vhost = "identity.$domain"
+ 
+     # TODO switch to a proper rpm packaging
+     $rpm_requirement = ['perl-Catalyst-Runtime', 
+@@ -19,7 +20,7 @@
+     }
+ 
+     subversion::snapshot { $catdap_location:
+-        source =>   "svn+ssh://svn.mageia.org/srv/mx2-dd0/svn/soft/identity/CatDap/branches/live"
++        source => "svn://svn.mageia.org/soft/identity/CatDap/branches/live"
+     }
+ 
+     # add a catdap config file
+@@ -27,12 +28,14 @@
+         ensure => present,
+         owner => apache,
+         mode => 600,
+-        content => template("catdap/catdap_local.yml") 
++        content => template("catdap/catdap_local.yml"),
++        require => Subversion::Snapshot[$catdap_location]
+     }
+ 
++    $catdap_password = extlookup('catdap_password')
+     # add a apache vhost
+-    file { "identity.$domain.conf":
+-        path => "/etc/httpd/conf/vhosts.d/$name",
++    file { "$catdap_vhost.conf":
++        path => "/etc/httpd/conf/vhosts.d/$catdap_vhost.conf",
+         ensure => "present",
+         owner => root,
+         group => root,
+
+Modified: puppet/modules/catdap/templates/catdap_local.yml
+===================================================================
+--- puppet/modules/catdap/templates/catdap_local.yml	2010-11-04 17:42:21 UTC (rev 96)
++++ puppet/modules/catdap/templates/catdap_local.yml	2010-11-04 17:51:05 UTC (rev 97)
+@@ -3,9 +3,9 @@
+ 
+ dc_suffix = 'dc=' + domain.gsub('.',',dc=')
+ 
+-ldap_server = 'ldap' + domain
++ldap_server = 'ldap.' + domain
+ 
+-ldap_password = extlookup('catdap_password')
++ldap_password = catdap_password
+ 
+ ldap_account = 'cn=catdap-valstar,ou=System Accounts,' + dc_suffix
+ %>
+
+Modified: puppet/modules/catdap/templates/catdap_vhost.conf
+===================================================================
+--- puppet/modules/catdap/templates/catdap_vhost.conf	2010-11-04 17:42:21 UTC (rev 96)
++++ puppet/modules/catdap/templates/catdap_vhost.conf	2010-11-04 17:51:05 UTC (rev 97)
+@@ -1,5 +1,5 @@
+ <VirtualHost *:80>
+-        ServerName identity.<%= domain %>
++        ServerName <%= catdap_vhost %>
+         # Serve static content directly
+         DocumentRoot  <%= catdap_location %>/root
+         Alias /static <%= catdap_location %>/root/static
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101104/3ce91e85/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000211.html b/zarb-ml/mageia-sysadm/2010-November/000211.html new file mode 100644 index 000000000..90aaa9fa3 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000211.html @@ -0,0 +1,96 @@ + + + + [Mageia-sysadm] [98] - move the call to extlookup before the template, not after + + + + + + + + + +

[Mageia-sysadm] [98] - move the call to extlookup before the template, not after

+ root at mageia.org + root at mageia.org +
+ Thu Nov 4 19:03:39 CET 2010 +

+
+ +
Revision: 98
+Author:   misc
+Date:     2010-11-04 19:03:39 +0100 (Thu, 04 Nov 2010)
+Log Message:
+-----------
+- move the call to extlookup before the template, not after 
+
+Modified Paths:
+--------------
+    puppet/modules/catdap/manifests/init.pp
+
+Modified: puppet/modules/catdap/manifests/init.pp
+===================================================================
+--- puppet/modules/catdap/manifests/init.pp	2010-11-04 17:51:05 UTC (rev 97)
++++ puppet/modules/catdap/manifests/init.pp	2010-11-04 18:03:39 UTC (rev 98)
+@@ -23,7 +23,8 @@
+         source => "svn://svn.mageia.org/soft/identity/CatDap/branches/live"
+     }
+ 
+-    # add a catdap config file
++    $catdap_password = extlookup('catdap_password')
++    
+     file { "$catdap_location/catdap_local.yml":
+         ensure => present,
+         owner => apache,
+@@ -32,7 +33,6 @@
+         require => Subversion::Snapshot[$catdap_location]
+     }
+ 
+-    $catdap_password = extlookup('catdap_password')
+     # add a apache vhost
+     file { "$catdap_vhost.conf":
+         path => "/etc/httpd/conf/vhosts.d/$catdap_vhost.conf",
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101104/4b7d6c53/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000212.html b/zarb-ml/mageia-sysadm/2010-November/000212.html new file mode 100644 index 000000000..a0e0b4282 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000212.html @@ -0,0 +1,95 @@ + + + + [Mageia-sysadm] [99] - add a cname for ldap ( for identity ) + + + + + + + + + +

[Mageia-sysadm] [99] - add a cname for ldap ( for identity )

+ root at mageia.org + root at mageia.org +
+ Thu Nov 4 19:18:14 CET 2010 +

+
+ +
Revision: 99
+Author:   misc
+Date:     2010-11-04 19:18:14 +0100 (Thu, 04 Nov 2010)
+Log Message:
+-----------
+- add a cname for ldap ( for identity )
+
+Modified Paths:
+--------------
+    puppet/modules/bind/templates/zones/mageia.org.zone
+
+Modified: puppet/modules/bind/templates/zones/mageia.org.zone
+===================================================================
+--- puppet/modules/bind/templates/zones/mageia.org.zone	2010-11-04 18:03:39 UTC (rev 98)
++++ puppet/modules/bind/templates/zones/mageia.org.zone	2010-11-04 18:18:14 UTC (rev 99)
+@@ -3,7 +3,7 @@
+ ; $Id$
+ $TTL	3D
+ @       IN      SOA     ns0.zarb.org.   mageia.org.  (
+-        2010110203	; Serial
++        2010110204	; Serial
+         21600		; Refresh
+         3600		; Retry
+         2419200		; Expire
+@@ -64,6 +64,7 @@
+ 
+ puppetmaster  IN  CNAME valstar
+ pkgsubmit   IN CNAME valstar
++ldap        IN CNAME valstar
+ 
+ identity    IN CNAME alamut
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101104/147611be/attachment-0001.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000213.html b/zarb-ml/mageia-sysadm/2010-November/000213.html new file mode 100644 index 000000000..f8ca00d7d --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000213.html @@ -0,0 +1,127 @@ + + + + [Mageia-sysadm] [100] - add config for mga-mirrors + + + + + + + + + +

[Mageia-sysadm] [100] - add config for mga-mirrors

+ root at mageia.org + root at mageia.org +
+ Thu Nov 4 19:25:09 CET 2010 +

+
+ +
Revision: 100
+Author:   nanardon
+Date:     2010-11-04 19:25:08 +0100 (Thu, 04 Nov 2010)
+Log Message:
+-----------
+- add config for mga-mirrors
+
+Modified Paths:
+--------------
+    puppet/modules/bind/templates/zones/mageia.org.zone
+
+Added Paths:
+-----------
+    puppet/modules/mga-mirrors/
+    puppet/modules/mga-mirrors/manifests/
+    puppet/modules/mga-mirrors/manifests/init.pp
+    puppet/modules/mga-mirrors/templates/
+
+Modified: puppet/modules/bind/templates/zones/mageia.org.zone
+===================================================================
+--- puppet/modules/bind/templates/zones/mageia.org.zone	2010-11-04 18:18:14 UTC (rev 99)
++++ puppet/modules/bind/templates/zones/mageia.org.zone	2010-11-04 18:25:08 UTC (rev 100)
+@@ -3,7 +3,7 @@
+ ; $Id$
+ $TTL	3D
+ @       IN      SOA     ns0.zarb.org.   mageia.org.  (
+-        2010110204	; Serial
++        2010110401	; Serial
+         21600		; Refresh
+         3600		; Retry
+         2419200		; Expire
+@@ -67,6 +67,7 @@
+ ldap        IN CNAME valstar
+ 
+ identity    IN CNAME alamut
++mirrors     IN CNAME alamut
+ 
+ ; temporary
+ ;forum       IN A 140.211.167.148
+
+Added: puppet/modules/mga-mirrors/manifests/init.pp
+===================================================================
+--- puppet/modules/mga-mirrors/manifests/init.pp	                        (rev 0)
++++ puppet/modules/mga-mirrors/manifests/init.pp	2010-11-04 18:25:08 UTC (rev 100)
+@@ -0,0 +1,19 @@
++class mga-mirrors {
++
++    include apache::mod_fcgid
++
++    package { 'mga-mirrors':
++        ensure => installed
++    }
++
++    # add a apache vhost
++    file { "mirrors.$domain.conf":
++        path => "/etc/httpd/conf/vhosts.d/$name",
++        ensure => "present",
++        owner => root,
++        group => root,
++        mode => 644,
++        notify => Service['apache'],
++        content => template("mga-mirrors/mirrors_vhost.conf")
++    }    
++}
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101104/b15f07a0/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000214.html b/zarb-ml/mageia-sysadm/2010-November/000214.html new file mode 100644 index 000000000..ae0ef65ad --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000214.html @@ -0,0 +1,137 @@ + + + + [Mageia-sysadm] [101] - merge the current puppet snapshot system with the new module + + + + + + + + + +

[Mageia-sysadm] [101] - merge the current puppet snapshot system with the new module

+ root at mageia.org + root at mageia.org +
+ Thu Nov 4 19:25:13 CET 2010 +

+
+ +
Revision: 101
+Author:   misc
+Date:     2010-11-04 19:25:13 +0100 (Thu, 04 Nov 2010)
+Log Message:
+-----------
+- merge the current puppet snapshot system with the new module
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+    puppet/modules/subversion/manifests/init.pp
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-04 18:25:08 UTC (rev 100)
++++ puppet/manifests/nodes.pp	2010-11-04 18:25:13 UTC (rev 101)
+@@ -17,34 +17,13 @@
+     include rsyncd
+     include mirror
+     include openldap::master 
++    include subversion::client
++    
+ 
+-    # for puppet svn checkout
+-    package {"subversion":
+-        ensure => "installed"
++    subversion::snapshot { "/etc/puppet":
++        source => "svn://vm-gandi.mageia.org/adm/puppet/"
+     }
+ 
+-    # svn spam log with 
+-    # Oct 26 13:30:01 valstar svn: No worthy mechs found
+-    # without it, source http://mail-index.netbsd.org/pkgsrc-users/2008/11/23/msg008706.html 
+-    # 
+-    package {"lib64sasl2-plug-anonymous":
+-        ensure => "installed"
+-    }
+-
+-    # update the puppet snapshot 
+-    cron { puppet_update:
+-           command => "cd /etc/puppet && /usr/bin/svn update -q",
+-           user => root,
+-           minute => '*/5'
+-    }
+-
+-    exec { puppet_etc:
+-        cwd => "/etc/",
+-        command => "/usr/bin/svn co svn://vm-gandi.mageia.org/adm/puppet/",
+-        user => "root",
+-        creates => "/etc/puppet/manifests/site.pp"
+-    }
+-
+     file { "extdata":
+         path => "/etc/puppet/extdata",
+         ensure => directory,
+
+Modified: puppet/modules/subversion/manifests/init.pp
+===================================================================
+--- puppet/modules/subversion/manifests/init.pp	2010-11-04 18:25:08 UTC (rev 100)
++++ puppet/modules/subversion/manifests/init.pp	2010-11-04 18:25:13 UTC (rev 101)
+@@ -33,6 +33,13 @@
+         package { subversion:
+             ensure => installed,
+         }
++        # svn spam log with 
++        # Oct 26 13:30:01 valstar svn: No worthy mechs found
++        # without it, source http://mail-index.netbsd.org/pkgsrc-users/2008/11/23/msg008706.html 
++        # 
++        package {"lib64sasl2-plug-anonymous":
++            ensure => "installed"
++        }
+     }
+ 
+     # TODO ensure that subversion ishere
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101104/a56f9ee8/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000215.html b/zarb-ml/mageia-sysadm/2010-November/000215.html new file mode 100644 index 000000000..7e065c8d8 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000215.html @@ -0,0 +1,86 @@ + + + + [Mageia-sysadm] [102] - mga-mirrors is on alamut + + + + + + + + + +

[Mageia-sysadm] [102] - mga-mirrors is on alamut

+ root at mageia.org + root at mageia.org +
+ Thu Nov 4 19:37:23 CET 2010 +

+
+ +
Revision: 102
+Author:   nanardon
+Date:     2010-11-04 19:37:23 +0100 (Thu, 04 Nov 2010)
+Log Message:
+-----------
+- mga-mirrors is on alamut
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-04 18:25:13 UTC (rev 101)
++++ puppet/manifests/nodes.pp	2010-11-04 18:37:23 UTC (rev 102)
+@@ -66,6 +66,7 @@
+     timezone::timezone { "Europe/Paris": }
+ 
+     include catdap
++    include mga-mirrors
+ }
+ 
+ # buildnode
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101104/ffabe1a8/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000216.html b/zarb-ml/mageia-sysadm/2010-November/000216.html new file mode 100644 index 000000000..1b8a11819 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000216.html @@ -0,0 +1,94 @@ + + + + [Mageia-sysadm] [103] - add config for mga-mirrors + + + + + + + + + +

[Mageia-sysadm] [103] - add config for mga-mirrors

+ root at mageia.org + root at mageia.org +
+ Thu Nov 4 19:38:47 CET 2010 +

+
+ +
Revision: 103
+Author:   nanardon
+Date:     2010-11-04 19:38:47 +0100 (Thu, 04 Nov 2010)
+Log Message:
+-----------
+- add config for mga-mirrors
+
+Added Paths:
+-----------
+    puppet/modules/mga-mirrors/templates/mirrors_vhost.conf
+
+Added: puppet/modules/mga-mirrors/templates/mirrors_vhost.conf
+===================================================================
+--- puppet/modules/mga-mirrors/templates/mirrors_vhost.conf	                        (rev 0)
++++ puppet/modules/mga-mirrors/templates/mirrors_vhost.conf	2010-11-04 18:38:47 UTC (rev 103)
+@@ -0,0 +1,15 @@
++<VirtualHost *:80>
++        ServerName identity.<%= domain %>
++        # Serve static content directly
++        DocumentRoot  /dev/null
++
++        Alias / /usr/bin/mga_mirrors_fastcgi.pl/
++        FastCgiServer /usr/bin/mga_mirrors_fastcgi.pl -processes 4 -idle-timeout 30
++
++        <Directory <%= catdap_location %>/script>
++                Options +ExecCGI
++                SetHandler fcgid-script
++                Allow from all
++        </Directory>
++</VirtualHost>
++
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101104/b4f04a45/attachment-0001.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000217.html b/zarb-ml/mageia-sysadm/2010-November/000217.html new file mode 100644 index 000000000..6618c675c --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000217.html @@ -0,0 +1,89 @@ + + + + [Mageia-sysadm] [104] - remove broken and useless declaration + + + + + + + + + +

[Mageia-sysadm] [104] - remove broken and useless declaration

+ root at mageia.org + root at mageia.org +
+ Thu Nov 4 19:39:37 CET 2010 +

+
+ +
Revision: 104
+Author:   nanardon
+Date:     2010-11-04 19:39:37 +0100 (Thu, 04 Nov 2010)
+Log Message:
+-----------
+- remove broken and useless declaration
+
+Modified Paths:
+--------------
+    puppet/modules/mga-mirrors/templates/mirrors_vhost.conf
+
+Modified: puppet/modules/mga-mirrors/templates/mirrors_vhost.conf
+===================================================================
+--- puppet/modules/mga-mirrors/templates/mirrors_vhost.conf	2010-11-04 18:38:47 UTC (rev 103)
++++ puppet/modules/mga-mirrors/templates/mirrors_vhost.conf	2010-11-04 18:39:37 UTC (rev 104)
+@@ -6,10 +6,5 @@
+         Alias / /usr/bin/mga_mirrors_fastcgi.pl/
+         FastCgiServer /usr/bin/mga_mirrors_fastcgi.pl -processes 4 -idle-timeout 30
+ 
+-        <Directory <%= catdap_location %>/script>
+-                Options +ExecCGI
+-                SetHandler fcgid-script
+-                Allow from all
+-        </Directory>
+ </VirtualHost>
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101104/964e55e3/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000218.html b/zarb-ml/mageia-sysadm/2010-November/000218.html new file mode 100644 index 000000000..56f93ed3d --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000218.html @@ -0,0 +1,87 @@ + + + + [Mageia-sysadm] [105] - fix file name + + + + + + + + + +

[Mageia-sysadm] [105] - fix file name

+ root at mageia.org + root at mageia.org +
+ Thu Nov 4 19:45:33 CET 2010 +

+
+ +
Revision: 105
+Author:   nanardon
+Date:     2010-11-04 19:45:33 +0100 (Thu, 04 Nov 2010)
+Log Message:
+-----------
+- fix file name
+
+Modified Paths:
+--------------
+    puppet/modules/mga-mirrors/manifests/init.pp
+
+Modified: puppet/modules/mga-mirrors/manifests/init.pp
+===================================================================
+--- puppet/modules/mga-mirrors/manifests/init.pp	2010-11-04 18:39:37 UTC (rev 104)
++++ puppet/modules/mga-mirrors/manifests/init.pp	2010-11-04 18:45:33 UTC (rev 105)
+@@ -8,7 +8,7 @@
+ 
+     # add a apache vhost
+     file { "mirrors.$domain.conf":
+-        path => "/etc/httpd/conf/vhosts.d/$name",
++        path => "/etc/httpd/conf/vhosts.d/$name.$domain.conf",
+         ensure => "present",
+         owner => root,
+         group => root,
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101104/d6f88d19/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000219.html b/zarb-ml/mageia-sysadm/2010-November/000219.html new file mode 100644 index 000000000..6789e1f6e --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000219.html @@ -0,0 +1,85 @@ + + + + [Mageia-sysadm] [106] - fix vhost name + + + + + + + + + +

[Mageia-sysadm] [106] - fix vhost name

+ root at mageia.org + root at mageia.org +
+ Thu Nov 4 19:54:40 CET 2010 +

+
+ +
Revision: 106
+Author:   nanardon
+Date:     2010-11-04 19:54:40 +0100 (Thu, 04 Nov 2010)
+Log Message:
+-----------
+- fix vhost name
+
+Modified Paths:
+--------------
+    puppet/modules/mga-mirrors/templates/mirrors_vhost.conf
+
+Modified: puppet/modules/mga-mirrors/templates/mirrors_vhost.conf
+===================================================================
+--- puppet/modules/mga-mirrors/templates/mirrors_vhost.conf	2010-11-04 18:45:33 UTC (rev 105)
++++ puppet/modules/mga-mirrors/templates/mirrors_vhost.conf	2010-11-04 18:54:40 UTC (rev 106)
+@@ -1,5 +1,5 @@
+ <VirtualHost *:80>
+-        ServerName identity.<%= domain %>
++        ServerName mirrors.<%= domain %>
+         # Serve static content directly
+         DocumentRoot  /dev/null
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101104/3601b1e1/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000220.html b/zarb-ml/mageia-sysadm/2010-November/000220.html new file mode 100644 index 000000000..04973f62f --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000220.html @@ -0,0 +1,87 @@ + + + + [Mageia-sysadm] [107] - add missing Requires + + + + + + + + + +

[Mageia-sysadm] [107] - add missing Requires

+ root at mageia.org + root at mageia.org +
+ Thu Nov 4 19:56:38 CET 2010 +

+
+ +
Revision: 107
+Author:   misc
+Date:     2010-11-04 19:56:37 +0100 (Thu, 04 Nov 2010)
+Log Message:
+-----------
+- add missing Requires
+
+Modified Paths:
+--------------
+    puppet/modules/catdap/manifests/init.pp
+
+Modified: puppet/modules/catdap/manifests/init.pp
+===================================================================
+--- puppet/modules/catdap/manifests/init.pp	2010-11-04 18:54:40 UTC (rev 106)
++++ puppet/modules/catdap/manifests/init.pp	2010-11-04 18:56:37 UTC (rev 107)
+@@ -8,7 +8,7 @@
+     $catdap_vhost = "identity.$domain"
+ 
+     # TODO switch to a proper rpm packaging
+-    $rpm_requirement = ['perl-Catalyst-Runtime', 
++    $rpm_requirement = ['perl-Catalyst-Runtime',"perl-FCGI", 'perl-Catalyst-Plugin-Authorization-Roles', 
+ "perl-Catalyst-Action-RenderView", "perl-Catalyst-Model-LDAP-FromAuthentication", "perl-Catalyst-P-A-Store-LDAP", "perl-Catalyst-Plugin-Authentication", "perl-Catalyst-Plugin-Captcha",
+ "perl-Catalyst-Plugin-ConfigLoader", "perl-Catalyst-Plugin-I18N", "perl-Catalyst-Plugin-Session-Store-File", "perl-Catalyst-Plugin-Static-Simple",
+ "perl-Catalyst-P-S-State-Cookie", "perl-Catalyst-P-S-Store-File", "perl-Catalyst-View-Email",
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101104/8c291c64/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000221.html b/zarb-ml/mageia-sysadm/2010-November/000221.html new file mode 100644 index 000000000..65a52c2d2 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000221.html @@ -0,0 +1,87 @@ + + + + [Mageia-sysadm] [108] - fix the dns to not include zarb.org reference + + + + + + + + + +

[Mageia-sysadm] [108] - fix the dns to not include zarb.org reference

+ root at mageia.org + root at mageia.org +
+ Thu Nov 4 19:57:12 CET 2010 +

+
+ +
Revision: 108
+Author:   misc
+Date:     2010-11-04 19:57:12 +0100 (Thu, 04 Nov 2010)
+Log Message:
+-----------
+- fix the dns to not include zarb.org reference
+
+Modified Paths:
+--------------
+    puppet/modules/bind/templates/zones/mageia.org.zone
+
+Modified: puppet/modules/bind/templates/zones/mageia.org.zone
+===================================================================
+--- puppet/modules/bind/templates/zones/mageia.org.zone	2010-11-04 18:56:37 UTC (rev 107)
++++ puppet/modules/bind/templates/zones/mageia.org.zone	2010-11-04 18:57:12 UTC (rev 108)
+@@ -2,7 +2,7 @@
+ ; local modifications will be lost
+ ; $Id$
+ $TTL	3D
+-@       IN      SOA     ns0.zarb.org.   mageia.org.  (
++@       IN      SOA     ns0.mageia.org.   mageia.org.  (
+         2010110401	; Serial
+         21600		; Refresh
+         3600		; Retry
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101104/686674e6/attachment-0001.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000222.html b/zarb-ml/mageia-sysadm/2010-November/000222.html new file mode 100644 index 000000000..bec17f039 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000222.html @@ -0,0 +1,86 @@ + + + + [Mageia-sysadm] [109] - allow mirrors user to connect to db + + + + + + + + + +

[Mageia-sysadm] [109] - allow mirrors user to connect to db

+ root at mageia.org + root at mageia.org +
+ Thu Nov 4 19:57:15 CET 2010 +

+
+ +
Revision: 109
+Author:   nanardon
+Date:     2010-11-04 19:57:15 +0100 (Thu, 04 Nov 2010)
+Log Message:
+-----------
+- allow mirrors user to connect to db
+
+Modified Paths:
+--------------
+    puppet/modules/postgresql/templates/pg_hba.conf
+
+Modified: puppet/modules/postgresql/templates/pg_hba.conf
+===================================================================
+--- puppet/modules/postgresql/templates/pg_hba.conf	2010-11-04 18:57:12 UTC (rev 108)
++++ puppet/modules/postgresql/templates/pg_hba.conf	2010-11-04 18:57:15 UTC (rev 109)
+@@ -79,6 +79,7 @@
+ # Nanar:
+ # This bypass global config for specific user/base
+ host   epoll            epoll           127.0.0.1/32            md5
++host   mirrors          mirrors         127.0.0.1/32            md5
+ 
+ # "local" is for Unix domain socket connections only
+ local   all             all                                     ident
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101104/4b1c634b/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000223.html b/zarb-ml/mageia-sysadm/2010-November/000223.html new file mode 100644 index 000000000..143df7c57 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000223.html @@ -0,0 +1,96 @@ + + + + [Mageia-sysadm] [92] - deploy catdap ( 1st try ) + + + + + + + + + +

[Mageia-sysadm] [92] - deploy catdap ( 1st try )

+ Michael Scherer + misc at zarb.org +
+ Thu Nov 4 20:02:39 CET 2010 +

+
+ +
Le jeudi 04 novembre 2010 à 17:58 +0100, root at mageia.org a écrit :
+> Revision: 92
+> Author:   misc
+> Date:     2010-11-04 17:58:53 +0100 (Thu, 04 Nov 2010)
+> Log Message:
+> -----------
+> - deploy catdap ( 1st try )
+
+Ok so catdap is deployed, using fastcgi ( because it was what buchan
+used, there is not special reason to prefer this to mod_perl ).
+
+It is mostly working, given the problem fixed on commit 99.
+
+Please, do not use it yet, as we are still testing it ( and fixing it )
+
+Now, what is needed :
+
+- setup a ssl vhost ( as there is password involved )
+   - which bring the issue of SNI ( my own attempt have been mixed )
+
+- make a rpm ( cause I think it will be easier to maintain )
+
+- maybe backport one of the requires on 2010.1,
+( perl-Catalyst-P-S-Store-File )
+
+- translate it ( I will do my part for french and review the missing
+string, like I did for epoll, and try to convince translator later )
+
+- fix some css issue ( rda will be looking at it ), and later provides a
+better one.
+
+- test fully and announce it
+
+Maybe Buchan also have a TODO list of the needed features ?  
+
+next stop, epoll and mga::mirror ( nanar is working on the latter ).
+
+-- 
+Michael Scherer
+
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000224.html b/zarb-ml/mageia-sysadm/2010-November/000224.html new file mode 100644 index 000000000..6c6926c78 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000224.html @@ -0,0 +1,107 @@ + + + + [Mageia-sysadm] [92] - deploy catdap ( 1st try ) + + + + + + + + + +

[Mageia-sysadm] [92] - deploy catdap ( 1st try )

+ Olivier Thauvin + nanardon at nanardon.zarb.org +
+ Thu Nov 4 20:14:35 CET 2010 +

+
+ +
* Michael Scherer (misc at zarb.org) wrote:
+> Le jeudi 04 novembre 2010 à 17:58 +0100, root at mageia.org a écrit :
+> > Revision: 92
+> > Author:   misc
+> > Date:     2010-11-04 17:58:53 +0100 (Thu, 04 Nov 2010)
+> > Log Message:
+> > -----------
+> > - deploy catdap ( 1st try )
+> 
+> - maybe backport one of the requires on 2010.1,
+> ( perl-Catalyst-P-S-Store-File )
+
+If it cause issue, it can be replaced by
+perl-Catalyst-P-S-Store-FastMap, the one I am using for mga-mirrors.
+
+> 
+> - translate it ( I will do my part for french and review the missing
+> string, like I did for epoll, and try to convince translator later )
+> 
+> - fix some css issue ( rda will be looking at it ), and later provides a
+> better one.
+> 
+> - test fully and announce it
+> 
+> Maybe Buchan also have a TODO list of the needed features ?  
+> 
+> next stop, epoll and mga::mirror ( nanar is working on the latter ).
+
+mga::mirror is on its way, epoll is setup, just need some apache config.
+
+> 
+> -- 
+> Michael Scherer
+> 
+> _______________________________________________
+> Mageia-sysadm mailing list
+> Mageia-sysadm at mageia.org
+> https://www.mageia.org/mailman/listinfo/mageia-sysadm
+-- 
+
+Olivier Thauvin
+CNRS  -  LATMOS
+♖ ♘ ♗ ♕ ♔ ♗ ♘ ♖
+-------------- next part --------------
+A non-text attachment was scrubbed...
+Name: not available
+Type: application/pgp-signature
+Size: 197 bytes
+Desc: not available
+URL: </pipermail/mageia-sysadm/attachments/20101104/1834f2b2/attachment.asc>
+
+ + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000225.html b/zarb-ml/mageia-sysadm/2010-November/000225.html new file mode 100644 index 000000000..b8dcadb40 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000225.html @@ -0,0 +1,108 @@ + + + + [Mageia-sysadm] [110] - add the config file in svn + + + + + + + + + +

[Mageia-sysadm] [110] - add the config file in svn

+ root at mageia.org + root at mageia.org +
+ Thu Nov 4 21:34:59 CET 2010 +

+
+ +
Revision: 110
+Author:   misc
+Date:     2010-11-04 21:34:59 +0100 (Thu, 04 Nov 2010)
+Log Message:
+-----------
+- add the config file in svn 
+
+Modified Paths:
+--------------
+    puppet/modules/mga-mirrors/manifests/init.pp
+
+Added Paths:
+-----------
+    puppet/modules/mga-mirrors/templates/mga-mirrors.ini
+
+Modified: puppet/modules/mga-mirrors/manifests/init.pp
+===================================================================
+--- puppet/modules/mga-mirrors/manifests/init.pp	2010-11-04 18:57:15 UTC (rev 109)
++++ puppet/modules/mga-mirrors/manifests/init.pp	2010-11-04 20:34:59 UTC (rev 110)
+@@ -15,5 +15,16 @@
+         mode => 644,
+         notify => Service['apache'],
+         content => template("mga-mirrors/mirrors_vhost.conf")
+-    }    
++    }
++ 
++    $password = extlookup("mga_mirror_password")
++ 
++    file { "mga-mirrors.ini": 
++        path => "/etc/mga-mirrors.ini",    
++        ensure => "present",
++        owner => apache,
++        group => apache,
++        mode => 600,
++        content => template("mga-mirrors/mga-mirrors.ini")
++    }
+ }
+
+Added: puppet/modules/mga-mirrors/templates/mga-mirrors.ini
+===================================================================
+--- puppet/modules/mga-mirrors/templates/mga-mirrors.ini	                        (rev 0)
++++ puppet/modules/mga-mirrors/templates/mga-mirrors.ini	2010-11-04 20:34:59 UTC (rev 110)
+@@ -0,0 +1,4 @@
++[db]
++pgconn=host=pgsql;dbname=mirrors
++user=mirrors
++password=<%= password %>
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101104/9416a342/attachment.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000226.html b/zarb-ml/mageia-sysadm/2010-November/000226.html new file mode 100644 index 000000000..dbe34f272 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000226.html @@ -0,0 +1,97 @@ + + + + [Mageia-sysadm] [111] - fix email in SOa + + + + + + + + + +

[Mageia-sysadm] [111] - fix email in SOa

+ root at mageia.org + root at mageia.org +
+ Thu Nov 4 21:38:09 CET 2010 +

+
+ +
Revision: 111
+Author:   misc
+Date:     2010-11-04 21:38:09 +0100 (Thu, 04 Nov 2010)
+Log Message:
+-----------
+- fix email in SOa
+- add a alias for postgresql on alamut for mirror
+
+Modified Paths:
+--------------
+    puppet/modules/bind/templates/zones/mageia.org.zone
+
+Modified: puppet/modules/bind/templates/zones/mageia.org.zone
+===================================================================
+--- puppet/modules/bind/templates/zones/mageia.org.zone	2010-11-04 20:34:59 UTC (rev 110)
++++ puppet/modules/bind/templates/zones/mageia.org.zone	2010-11-04 20:38:09 UTC (rev 111)
+@@ -2,8 +2,8 @@
+ ; local modifications will be lost
+ ; $Id$
+ $TTL	3D
+-@       IN      SOA     ns0.mageia.org.   mageia.org.  (
+-        2010110401	; Serial
++@       IN      SOA     ns0.mageia.org.   root.mageia.org.  (
++        2010110402	; Serial
+         21600		; Refresh
+         3600		; Retry
+         2419200		; Expire
+@@ -68,7 +68,7 @@
+ 
+ identity    IN CNAME alamut
+ mirrors     IN CNAME alamut
+-
++pgsql       IN CNAME alamut
+ ; temporary
+ ;forum       IN A 140.211.167.148
+ ;wiki            IN      A       88.191.83.84
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101104/96f26c47/attachment.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000227.html b/zarb-ml/mageia-sysadm/2010-November/000227.html new file mode 100644 index 000000000..b1882c608 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000227.html @@ -0,0 +1,86 @@ + + + + [Mageia-sysadm] [112] - also allow connection using main interface + + + + + + + + + +

[Mageia-sysadm] [112] - also allow connection using main interface

+ root at mageia.org + root at mageia.org +
+ Thu Nov 4 23:51:37 CET 2010 +

+
+ +
Revision: 112
+Author:   nanardon
+Date:     2010-11-04 23:51:36 +0100 (Thu, 04 Nov 2010)
+Log Message:
+-----------
+- also allow connection using main interface
+
+Modified Paths:
+--------------
+    puppet/modules/postgresql/templates/pg_hba.conf
+
+Modified: puppet/modules/postgresql/templates/pg_hba.conf
+===================================================================
+--- puppet/modules/postgresql/templates/pg_hba.conf	2010-11-04 20:38:09 UTC (rev 111)
++++ puppet/modules/postgresql/templates/pg_hba.conf	2010-11-04 22:51:36 UTC (rev 112)
+@@ -79,7 +79,9 @@
+ # Nanar:
+ # This bypass global config for specific user/base
+ host   epoll            epoll           127.0.0.1/32            md5
++host   epoll            epoll           212.85.158.146/32            md5
+ host   mirrors          mirrors         127.0.0.1/32            md5
++host   mirrors          mirrors         212.85.158.146/32            md5
+ 
+ # "local" is for Unix domain socket connections only
+ local   all             all                                     ident
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101104/67d97f65/attachment-0001.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000228.html b/zarb-ml/mageia-sysadm/2010-November/000228.html new file mode 100644 index 000000000..4a469bef5 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000228.html @@ -0,0 +1,82 @@ + + + + [Mageia-sysadm] [113] - fix pgsql hostname + + + + + + + + + +

[Mageia-sysadm] [113] - fix pgsql hostname

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 00:17:20 CET 2010 +

+
+ +
Revision: 113
+Author:   nanardon
+Date:     2010-11-05 00:17:19 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+- fix pgsql hostname
+
+Modified Paths:
+--------------
+    puppet/modules/mga-mirrors/templates/mga-mirrors.ini
+
+Modified: puppet/modules/mga-mirrors/templates/mga-mirrors.ini
+===================================================================
+--- puppet/modules/mga-mirrors/templates/mga-mirrors.ini	2010-11-04 22:51:36 UTC (rev 112)
++++ puppet/modules/mga-mirrors/templates/mga-mirrors.ini	2010-11-04 23:17:19 UTC (rev 113)
+@@ -1,4 +1,4 @@
+ [db]
+-pgconn=host=pgsql;dbname=mirrors
++pgconn=host=pgsql.mageia.org;dbname=mirrors
+ user=mirrors
+ password=<%= password %>
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/6e53411d/attachment.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000229.html b/zarb-ml/mageia-sysadm/2010-November/000229.html new file mode 100644 index 000000000..99d841971 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000229.html @@ -0,0 +1,91 @@ + + + + [Mageia-sysadm] [114] - allow postgres connection using IPv6 + + + + + + + + + +

[Mageia-sysadm] [114] - allow postgres connection using IPv6

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 00:19:31 CET 2010 +

+
+ +
Revision: 114
+Author:   nanardon
+Date:     2010-11-05 00:19:31 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+- allow postgres connection using IPv6
+
+Modified Paths:
+--------------
+    puppet/modules/postgresql/templates/pg_hba.conf
+
+Modified: puppet/modules/postgresql/templates/pg_hba.conf
+===================================================================
+--- puppet/modules/postgresql/templates/pg_hba.conf	2010-11-04 23:17:19 UTC (rev 113)
++++ puppet/modules/postgresql/templates/pg_hba.conf	2010-11-04 23:19:31 UTC (rev 114)
+@@ -79,9 +79,11 @@
+ # Nanar:
+ # This bypass global config for specific user/base
+ host   epoll            epoll           127.0.0.1/32            md5
+-host   epoll            epoll           212.85.158.146/32            md5
++host   epoll            epoll           212.85.158.146/32       md5
++host   epoll            epoll           2a02:2178:2:7::2/128    md5
+ host   mirrors          mirrors         127.0.0.1/32            md5
+-host   mirrors          mirrors         212.85.158.146/32            md5
++host   mirrors          mirrors         212.85.158.146/32       md5
++host   mirrors          mirrors           2a02:2178:2:7::2/128    md5
+ 
+ # "local" is for Unix domain socket connections only
+ local   all             all                                     ident
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/206153a4/attachment.html>
+
+ + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000230.html b/zarb-ml/mageia-sysadm/2010-November/000230.html new file mode 100644 index 000000000..58fde15ae --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000230.html @@ -0,0 +1,83 @@ + + + + [Mageia-sysadm] [115] - add NameVirtualHost directive + + + + + + + + + +

[Mageia-sysadm] [115] - add NameVirtualHost directive

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 00:49:05 CET 2010 +

+
+ +
Revision: 115
+Author:   nanardon
+Date:     2010-11-05 00:49:05 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+- add NameVirtualHost directive
+
+Modified Paths:
+--------------
+    puppet/modules/mga-mirrors/templates/mirrors_vhost.conf
+
+Modified: puppet/modules/mga-mirrors/templates/mirrors_vhost.conf
+===================================================================
+--- puppet/modules/mga-mirrors/templates/mirrors_vhost.conf	2010-11-04 23:19:31 UTC (rev 114)
++++ puppet/modules/mga-mirrors/templates/mirrors_vhost.conf	2010-11-04 23:49:05 UTC (rev 115)
+@@ -1,3 +1,4 @@
++NameVirtualHost *:80
+ <VirtualHost *:80>
+         ServerName mirrors.<%= domain %>
+         # Serve static content directly
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/b82129a3/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000231.html b/zarb-ml/mageia-sysadm/2010-November/000231.html new file mode 100644 index 000000000..4bdc208f5 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000231.html @@ -0,0 +1,87 @@ + + + + [Mageia-sysadm] [116] - allow to access to web app + + + + + + + + + +

[Mageia-sysadm] [116] - allow to access to web app

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 00:53:46 CET 2010 +

+
+ +
Revision: 116
+Author:   nanardon
+Date:     2010-11-05 00:53:46 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+- allow to access to web app
+
+Modified Paths:
+--------------
+    puppet/modules/mga-mirrors/templates/mirrors_vhost.conf
+
+Modified: puppet/modules/mga-mirrors/templates/mirrors_vhost.conf
+===================================================================
+--- puppet/modules/mga-mirrors/templates/mirrors_vhost.conf	2010-11-04 23:49:05 UTC (rev 115)
++++ puppet/modules/mga-mirrors/templates/mirrors_vhost.conf	2010-11-04 23:53:46 UTC (rev 116)
+@@ -7,5 +7,8 @@
+         Alias / /usr/bin/mga_mirrors_fastcgi.pl/
+         FastCgiServer /usr/bin/mga_mirrors_fastcgi.pl -processes 4 -idle-timeout 30
+ 
++        <Location />
++            Allow from all
++        </Location>
+ </VirtualHost>
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/f21c785e/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000232.html b/zarb-ml/mageia-sysadm/2010-November/000232.html new file mode 100644 index 000000000..615aee686 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000232.html @@ -0,0 +1,119 @@ + + + + [Mageia-sysadm] [117] - add a alias for apache package ( so we can change the engine ) + + + + + + + + + +

[Mageia-sysadm] [117] - add a alias for apache package ( so we can change the engine )

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 01:12:11 CET 2010 +

+
+ +
Revision: 117
+Author:   misc
+Date:     2010-11-05 01:12:10 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+- add a alias for apache package ( so we can change the engine )
+- add a file to cleanly add the 2 directive for VirtualHost on 80 and 443 
+without having to import the whole apache config in svn ( as this would be annoying to merge later ) 
+
+Modified Paths:
+--------------
+    puppet/modules/apache/manifests/init.pp
+
+Added Paths:
+-----------
+    puppet/modules/apache/templates/
+    puppet/modules/apache/templates/customization.conf
+
+Modified: puppet/modules/apache/manifests/init.pp
+===================================================================
+--- puppet/modules/apache/manifests/init.pp	2010-11-04 23:53:46 UTC (rev 116)
++++ puppet/modules/apache/manifests/init.pp	2010-11-05 00:12:10 UTC (rev 117)
+@@ -2,6 +2,7 @@
+ 
+     class base {
+         package { "apache-mpm-prefork":
++            alias => apache,
+             ensure => installed
+         }
+     
+@@ -10,6 +11,17 @@
+             ensure => running,
+             subscribe => [ Package['apache-mpm-prefork'] ],
+         }
++
++        file { "customization.conf":
++            ensure => present,
++            path => "/etc/httpd/conf/customization.conf",
++            content => template("apache/customization.conf"),
++            require => Package["apache"],
++            notify => Service["apache"],
++            owner => root,
++            group => root,
++            mode => 644,
++        }
+     }
+     
+     class mod_php inherits base {
+
+Added: puppet/modules/apache/templates/customization.conf
+===================================================================
+--- puppet/modules/apache/templates/customization.conf	                        (rev 0)
++++ puppet/modules/apache/templates/customization.conf	2010-11-05 00:12:10 UTC (rev 117)
+@@ -0,0 +1,2 @@
++NameVirtualHost *:80
++NameVirtualHost *:443
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/2c60603f/attachment-0001.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000233.html b/zarb-ml/mageia-sysadm/2010-November/000233.html new file mode 100644 index 000000000..a78fa318a --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000233.html @@ -0,0 +1,168 @@ + + + + [Mageia-sysadm] [118] - add epoll config + + + + + + + + + +

[Mageia-sysadm] [118] - add epoll config

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 01:22:24 CET 2010 +

+
+ +
Revision: 118
+Author:   nanardon
+Date:     2010-11-05 01:22:23 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+- add epoll config
+
+Modified Paths:
+--------------
+    puppet/modules/bind/templates/zones/mageia.org.zone
+
+Added Paths:
+-----------
+    puppet/modules/epoll/
+    puppet/modules/epoll/manifests/
+    puppet/modules/epoll/manifests/init.pp
+    puppet/modules/epoll/templates/
+    puppet/modules/epoll/templates/epoll.yml
+    puppet/modules/epoll/templates/epoll_vhost.conf
+
+Modified: puppet/modules/bind/templates/zones/mageia.org.zone
+===================================================================
+--- puppet/modules/bind/templates/zones/mageia.org.zone	2010-11-05 00:12:10 UTC (rev 117)
++++ puppet/modules/bind/templates/zones/mageia.org.zone	2010-11-05 00:22:23 UTC (rev 118)
+@@ -68,6 +68,7 @@
+ 
+ identity    IN CNAME alamut
+ mirrors     IN CNAME alamut
++epoll       IN CNAME alamut
+ pgsql       IN CNAME alamut
+ ; temporary
+ ;forum       IN A 140.211.167.148
+
+Added: puppet/modules/epoll/manifests/init.pp
+===================================================================
+--- puppet/modules/epoll/manifests/init.pp	                        (rev 0)
++++ puppet/modules/epoll/manifests/init.pp	2010-11-05 00:22:23 UTC (rev 118)
+@@ -0,0 +1,30 @@
++class epoll {
++
++    include apache::mod_fcgid
++
++    package { 'Epoll':
++        ensure => installed
++    }
++
++    # add a apache vhost
++    file { "epoll.$domain.conf":
++        path => "/etc/httpd/conf/vhosts.d/$name.$domain.conf",
++        ensure => "present",
++        owner => root,
++        group => root,
++        mode => 644,
++        notify => Service['apache'],
++        content => template("epoll/epoll_vhost.conf")
++    }
++ 
++    $password = extlookup("epoll_password")
++ 
++    file { "epoll.yml": 
++        path => "/etc/epoll.yml",    
++        ensure => "present",
++        owner => apache,
++        group => apache,
++        mode => 600,
++        content => template("epoll/epoll.yml")
++    }
++}
+
+Added: puppet/modules/epoll/templates/epoll.yml
+===================================================================
+--- puppet/modules/epoll/templates/epoll.yml	                        (rev 0)
++++ puppet/modules/epoll/templates/epoll.yml	2010-11-05 00:22:23 UTC (rev 118)
+@@ -0,0 +1,11 @@
++---
++name: Vote
++# db: connection, see libpq documentation
++# dbname=BASENAME;host=SERVER;user=USER;password=PASS
++db: dbname=epoll;host=localhost;user=epoll;password=<%= password %>
++# The smtp serveur to use, default is localhost
++# smtp:
++# This change the poll creation behavior, instead ask want confirmation by
++# mail
++# it ask for this password (in clear)
++# newpollpasswd:
+
+Added: puppet/modules/epoll/templates/epoll_vhost.conf
+===================================================================
+--- puppet/modules/epoll/templates/epoll_vhost.conf	                        (rev 0)
++++ puppet/modules/epoll/templates/epoll_vhost.conf	2010-11-05 00:22:23 UTC (rev 118)
+@@ -0,0 +1,14 @@
++NameVirtualHost *:80
++<VirtualHost *:80>
++        ServerName epoll.<%= domain %>
++        # Serve static content directly
++        DocumentRoot  /dev/null
++
++        Alias / /usr/bin/epoll_fastcgi.pl/
++        FastCgiServer /usr/bin/epoll_fastcgi.pl -processes 4 -idle-timeout 30
++
++        <Location />
++            Allow from all
++        </Location>
++</VirtualHost>
++
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/d9fbaddc/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000234.html b/zarb-ml/mageia-sysadm/2010-November/000234.html new file mode 100644 index 000000000..22226e744 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000234.html @@ -0,0 +1,86 @@ + + + + [Mageia-sysadm] [119] - epoll is on alamut + + + + + + + + + +

[Mageia-sysadm] [119] - epoll is on alamut

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 01:30:44 CET 2010 +

+
+ +
Revision: 119
+Author:   nanardon
+Date:     2010-11-05 01:30:44 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+- epoll is on alamut
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-05 00:22:23 UTC (rev 118)
++++ puppet/manifests/nodes.pp	2010-11-05 00:30:44 UTC (rev 119)
+@@ -67,6 +67,7 @@
+ 
+     include catdap
+     include mga-mirrors
++    include epoll
+ }
+ 
+ # buildnode
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/5af4489f/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000235.html b/zarb-ml/mageia-sysadm/2010-November/000235.html new file mode 100644 index 000000000..71a1412ec --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000235.html @@ -0,0 +1,73 @@ + + + + [Mageia-sysadm] SVN Migration + + + + + + + + + +

[Mageia-sysadm] SVN Migration

+ Dexter Morgan + dmorganec at gmail.com +
+ Fri Nov 5 01:34:28 CET 2010 +

+
+ +
Hello dear sysadm team,
+
+We will need to migrate the SVN from krampouezh to valstar.
+
+Your accounts ( + ssh keys ) have been migrated to the new server (
+valstar.mageia.org ) and you just need to connect and add a password.
+
+I would like to migrate tomorow. When is the best time to do this
+tomorow ? ( regarding what you do, when you plan to commit, ... )
+
+---
+Regards,
+Dexter Morgan
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000236.html b/zarb-ml/mageia-sysadm/2010-November/000236.html new file mode 100644 index 000000000..8afca1fdd --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000236.html @@ -0,0 +1,88 @@ + + + + [Mageia-sysadm] [120] - add a configuration so postgresql is not uselessly reload on each run on alamut + + + + + + + + + +

[Mageia-sysadm] [120] - add a configuration so postgresql is not uselessly reload on each run on alamut

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 01:39:10 CET 2010 +

+
+ +
Revision: 120
+Author:   misc
+Date:     2010-11-05 01:39:09 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+- add a configuration so postgresql is not uselessly reload on each run on alamut
+
+Modified Paths:
+--------------
+    puppet/modules/postgresql/manifests/init.pp
+
+Modified: puppet/modules/postgresql/manifests/init.pp
+===================================================================
+--- puppet/modules/postgresql/manifests/init.pp	2010-11-05 00:30:44 UTC (rev 119)
++++ puppet/modules/postgresql/manifests/init.pp	2010-11-05 00:39:09 UTC (rev 120)
+@@ -6,7 +6,8 @@
+     service { postgresql:
+         ensure => running,
+         subscribe => Package["postgresql9.0-server"],
+-        restart => "/etc/rc.d/init.d/postgresql reload"
++        restart => "/etc/rc.d/init.d/postgresql reload",
++        hasstatus => true,
+     }
+ 
+     file { '/etc/pam.d/postgresql':
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/6a8d03ec/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000237.html b/zarb-ml/mageia-sysadm/2010-November/000237.html new file mode 100644 index 000000000..908626053 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000237.html @@ -0,0 +1,95 @@ + + + + [Mageia-sysadm] [121] - refactor the domain name + + + + + + + + + +

[Mageia-sysadm] [121] - refactor the domain name

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 01:58:36 CET 2010 +

+
+ +
Revision: 121
+Author:   misc
+Date:     2010-11-05 01:58:36 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+- refactor the domain name
+
+Modified Paths:
+--------------
+    puppet/modules/epoll/manifests/init.pp
+
+Modified: puppet/modules/epoll/manifests/init.pp
+===================================================================
+--- puppet/modules/epoll/manifests/init.pp	2010-11-05 00:39:09 UTC (rev 120)
++++ puppet/modules/epoll/manifests/init.pp	2010-11-05 00:58:36 UTC (rev 121)
+@@ -2,13 +2,14 @@
+ 
+     include apache::mod_fcgid
+ 
++    $vhost = "epoll.$domain"
+     package { 'Epoll':
+         ensure => installed
+     }
+ 
+     # add a apache vhost
+-    file { "epoll.$domain.conf":
+-        path => "/etc/httpd/conf/vhosts.d/$name.$domain.conf",
++    file { "$vhost.conf":
++        path => "/etc/httpd/conf/vhosts.d/$vhost.conf",
+         ensure => "present",
+         owner => root,
+         group => root,
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/3cf63745/attachment-0001.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000238.html b/zarb-ml/mageia-sysadm/2010-November/000238.html new file mode 100644 index 000000000..79c3fbf85 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000238.html @@ -0,0 +1,87 @@ + + + + [Mageia-sysadm] [122] - use the refactored vhost + + + + + + + + + +

[Mageia-sysadm] [122] - use the refactored vhost

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 02:01:29 CET 2010 +

+
+ +
Revision: 122
+Author:   misc
+Date:     2010-11-05 02:01:29 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+- use the refactored vhost
+- remove the directive NameVirtualHost, as we are already taking care of it elsewhere
+
+Modified Paths:
+--------------
+    puppet/modules/epoll/templates/epoll_vhost.conf
+
+Modified: puppet/modules/epoll/templates/epoll_vhost.conf
+===================================================================
+--- puppet/modules/epoll/templates/epoll_vhost.conf	2010-11-05 00:58:36 UTC (rev 121)
++++ puppet/modules/epoll/templates/epoll_vhost.conf	2010-11-05 01:01:29 UTC (rev 122)
+@@ -1,6 +1,5 @@
+-NameVirtualHost *:80
+ <VirtualHost *:80>
+-        ServerName epoll.<%= domain %>
++        ServerName <%= vhost %>
+         # Serve static content directly
+         DocumentRoot  /dev/null
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/b8985f48/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000239.html b/zarb-ml/mageia-sysadm/2010-November/000239.html new file mode 100644 index 000000000..75b94229e --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000239.html @@ -0,0 +1,110 @@ + + + + [Mageia-sysadm] [123] - refactor the vhost setting, and clean it + + + + + + + + + +

[Mageia-sysadm] [123] - refactor the vhost setting, and clean it

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 02:04:35 CET 2010 +

+
+ +
Revision: 123
+Author:   misc
+Date:     2010-11-05 02:04:35 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+- refactor the vhost setting, and clean it
+
+Modified Paths:
+--------------
+    puppet/modules/mga-mirrors/manifests/init.pp
+    puppet/modules/mga-mirrors/templates/mirrors_vhost.conf
+
+Modified: puppet/modules/mga-mirrors/manifests/init.pp
+===================================================================
+--- puppet/modules/mga-mirrors/manifests/init.pp	2010-11-05 01:01:29 UTC (rev 122)
++++ puppet/modules/mga-mirrors/manifests/init.pp	2010-11-05 01:04:35 UTC (rev 123)
+@@ -1,4 +1,6 @@
+ class mga-mirrors {
++    
++    $vhost = "mirrors.$domain"
+ 
+     include apache::mod_fcgid
+ 
+@@ -7,8 +9,8 @@
+     }
+ 
+     # add a apache vhost
+-    file { "mirrors.$domain.conf":
+-        path => "/etc/httpd/conf/vhosts.d/$name.$domain.conf",
++    file { "$vhost.conf":
++        path => "/etc/httpd/conf/vhosts.d/$vhost.conf",
+         ensure => "present",
+         owner => root,
+         group => root,
+
+Modified: puppet/modules/mga-mirrors/templates/mirrors_vhost.conf
+===================================================================
+--- puppet/modules/mga-mirrors/templates/mirrors_vhost.conf	2010-11-05 01:01:29 UTC (rev 122)
++++ puppet/modules/mga-mirrors/templates/mirrors_vhost.conf	2010-11-05 01:04:35 UTC (rev 123)
+@@ -1,6 +1,5 @@
+-NameVirtualHost *:80
+ <VirtualHost *:80>
+-        ServerName mirrors.<%= domain %>
++        ServerName <%= vhost %>
+         # Serve static content directly
+         DocumentRoot  /dev/null
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/65d06fe8/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000240.html b/zarb-ml/mageia-sysadm/2010-November/000240.html new file mode 100644 index 000000000..d9c839750 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000240.html @@ -0,0 +1,90 @@ + + + + [Mageia-sysadm] [124] - add a class for mod_fastcgi + + + + + + + + + +

[Mageia-sysadm] [124] - add a class for mod_fastcgi

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 02:08:22 CET 2010 +

+
+ +
Revision: 124
+Author:   misc
+Date:     2010-11-05 02:08:21 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+- add a class for mod_fastcgi
+
+Modified Paths:
+--------------
+    puppet/modules/apache/manifests/init.pp
+
+Modified: puppet/modules/apache/manifests/init.pp
+===================================================================
+--- puppet/modules/apache/manifests/init.pp	2010-11-05 01:04:35 UTC (rev 123)
++++ puppet/modules/apache/manifests/init.pp	2010-11-05 01:08:21 UTC (rev 124)
+@@ -42,6 +42,11 @@
+         }
+     }
+ 
++    class mod_fastcgi inherits base {
++        package { "apache-mod_fastcgi":
++            ensure => installed
++        }
++    }
+ 
+     class mod_wsgi inherits base {
+         package { "apache-mod_wsgi":
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/d6b2fdfd/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000241.html b/zarb-ml/mageia-sysadm/2010-November/000241.html new file mode 100644 index 000000000..6196369f7 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000241.html @@ -0,0 +1,101 @@ + + + + [Mageia-sysadm] [125] - install the module that we use in practice + + + + + + + + + +

[Mageia-sysadm] [125] - install the module that we use in practice

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 02:09:41 CET 2010 +

+
+ +
Revision: 125
+Author:   misc
+Date:     2010-11-05 02:09:41 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+- install the module that we use in practice
+
+Modified Paths:
+--------------
+    puppet/modules/epoll/manifests/init.pp
+    puppet/modules/mga-mirrors/manifests/init.pp
+
+Modified: puppet/modules/epoll/manifests/init.pp
+===================================================================
+--- puppet/modules/epoll/manifests/init.pp	2010-11-05 01:08:21 UTC (rev 124)
++++ puppet/modules/epoll/manifests/init.pp	2010-11-05 01:09:41 UTC (rev 125)
+@@ -1,6 +1,6 @@
+ class epoll {
+ 
+-    include apache::mod_fcgid
++    include apache::mod_fastcgi
+ 
+     $vhost = "epoll.$domain"
+     package { 'Epoll':
+
+Modified: puppet/modules/mga-mirrors/manifests/init.pp
+===================================================================
+--- puppet/modules/mga-mirrors/manifests/init.pp	2010-11-05 01:08:21 UTC (rev 124)
++++ puppet/modules/mga-mirrors/manifests/init.pp	2010-11-05 01:09:41 UTC (rev 125)
+@@ -2,7 +2,7 @@
+     
+     $vhost = "mirrors.$domain"
+ 
+-    include apache::mod_fcgid
++    include apache::mod_fastcgi
+ 
+     package { 'mga-mirrors':
+         ensure => installed
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/1626d8c8/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000242.html b/zarb-ml/mageia-sysadm/2010-November/000242.html new file mode 100644 index 000000000..5432e651e --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000242.html @@ -0,0 +1,87 @@ + + + + [Mageia-sysadm] [126] - oups, the path was wrong + + + + + + + + + +

[Mageia-sysadm] [126] - oups, the path was wrong

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 03:13:15 CET 2010 +

+
+ +
Revision: 126
+Author:   misc
+Date:     2010-11-05 03:13:15 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+- oups, the path was wrong
+
+Modified Paths:
+--------------
+    puppet/modules/apache/manifests/init.pp
+
+Modified: puppet/modules/apache/manifests/init.pp
+===================================================================
+--- puppet/modules/apache/manifests/init.pp	2010-11-05 01:09:41 UTC (rev 125)
++++ puppet/modules/apache/manifests/init.pp	2010-11-05 02:13:15 UTC (rev 126)
+@@ -14,7 +14,7 @@
+ 
+         file { "customization.conf":
+             ensure => present,
+-            path => "/etc/httpd/conf/customization.conf",
++            path => "/etc/httpd/conf.d/customization.conf",
+             content => template("apache/customization.conf"),
+             require => Package["apache"],
+             notify => Service["apache"],
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/0b642624/attachment-0001.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000243.html b/zarb-ml/mageia-sysadm/2010-November/000243.html new file mode 100644 index 000000000..945d4c6f8 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000243.html @@ -0,0 +1,70 @@ + + + + [Mageia-sysadm] [ANNOUNCE] SVN Migration + + + + + + + + + +

[Mageia-sysadm] [ANNOUNCE] SVN Migration

+ Dexter Morgan + dmorganec at gmail.com +
+ Fri Nov 5 08:44:31 CET 2010 +

+
+ +
Hi,
+
+Please do not commit on the SVN, it is beeing migrated on the new server.
+
+I will mail back when all is back to normal
+
+---
+Regards
+Dexter Morgan
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000244.html b/zarb-ml/mageia-sysadm/2010-November/000244.html new file mode 100644 index 000000000..cc1ae966f --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000244.html @@ -0,0 +1,73 @@ + + + + [Mageia-sysadm] [92] - deploy catdap ( 1st try ) + + + + + + + + + +

[Mageia-sysadm] [92] - deploy catdap ( 1st try )

+ Romain d'Alverny + rdalverny at gmail.com +
+ Fri Nov 5 09:28:31 CET 2010 +

+
+ +
On Thu, Nov 4, 2010 at 20:02, Michael Scherer <misc at zarb.org> wrote:
+> - fix some css issue ( rda will be looking at it ), and later provides a
+> better one.
+
+Not having installed on my side, I need to see how it runs on
+identity.mageia.org at least; but I can't access the app, it's offline
+for now.
+
+I'm first going to sanitize the HTML and CSS and then making a new
+minimal structure/style.
+
+> - test fully and announce it
+
+I suggest we test it, and extend the pool of people using it slowly to
+test it further, before a full blown announcement.
+
+Romain
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000245.html b/zarb-ml/mageia-sysadm/2010-November/000245.html new file mode 100644 index 000000000..23f3aba14 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000245.html @@ -0,0 +1,86 @@ + + + + [Mageia-sysadm] [130] test + + + + + + + + + +

[Mageia-sysadm] [130] test

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 11:09:38 CET 2010 +

+
+ +
Revision: 130
+Author:   dmorgan
+Date:     2010-11-05 11:09:38 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+test
+
+Modified Paths:
+--------------
+    puppet/fileserver.conf
+
+Modified: puppet/fileserver.conf
+===================================================================
+--- puppet/fileserver.conf	2010-11-05 10:08:48 UTC (rev 129)
++++ puppet/fileserver.conf	2010-11-05 10:09:38 UTC (rev 130)
+@@ -1,6 +1,7 @@
+ # This file consists of arbitrarily named sections/modules
+ # defining where files are served from and to whom
+ 
++
+ # Define a section 'files'
+ # Adapt the allow/deny settings to your needs. Order
+ # for allow/deny does not matter, allow always takes precedence
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/9322106a/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000246.html b/zarb-ml/mageia-sysadm/2010-November/000246.html new file mode 100644 index 000000000..ba1f0a712 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000246.html @@ -0,0 +1,104 @@ + + + + [Mageia-sysadm] [131] valstar is now the svn server + + + + + + + + + +

[Mageia-sysadm] [131] valstar is now the svn server

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 11:16:47 CET 2010 +

+
+ +
Revision: 131
+Author:   dmorgan
+Date:     2010-11-05 11:16:46 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+valstar is now the svn server
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+    puppet/modules/subversion/manifests/init.pp
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-05 10:09:38 UTC (rev 130)
++++ puppet/manifests/nodes.pp	2010-11-05 10:16:46 UTC (rev 131)
+@@ -18,6 +18,7 @@
+     include mirror
+     include openldap::master 
+     include subversion::client
++    include subversion::server
+     
+ 
+     subversion::snapshot { "/etc/puppet":
+
+Modified: puppet/modules/subversion/manifests/init.pp
+===================================================================
+--- puppet/modules/subversion/manifests/init.pp	2010-11-05 10:09:38 UTC (rev 130)
++++ puppet/modules/subversion/manifests/init.pp	2010-11-05 10:16:46 UTC (rev 131)
+@@ -8,6 +8,11 @@
+         package { "subversion-server":
+             ensure => installed,
+         }
++
++        package { "perl-SVN-Notify-Config":
++            ensure => installed,
++        }
++
+     }
+ 
+     # TODO create proper hook directory ( see zarb.org )
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/11bf5e3b/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000247.html b/zarb-ml/mageia-sysadm/2010-November/000247.html new file mode 100644 index 000000000..e467d3db2 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000247.html @@ -0,0 +1,86 @@ + + + + [Mageia-sysadm] [132] test + + + + + + + + + +

[Mageia-sysadm] [132] test

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 11:20:30 CET 2010 +

+
+ +
Revision: 132
+Author:   dmorgan
+Date:     2010-11-05 11:20:30 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+test
+
+Modified Paths:
+--------------
+    puppet/fileserver.conf
+
+Modified: puppet/fileserver.conf
+===================================================================
+--- puppet/fileserver.conf	2010-11-05 10:16:46 UTC (rev 131)
++++ puppet/fileserver.conf	2010-11-05 10:20:30 UTC (rev 132)
+@@ -1,7 +1,6 @@
+ # This file consists of arbitrarily named sections/modules
+ # defining where files are served from and to whom
+ 
+-
+ # Define a section 'files'
+ # Adapt the allow/deny settings to your needs. Order
+ # for allow/deny does not matter, allow always takes precedence
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/3fcc533d/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000248.html b/zarb-ml/mageia-sysadm/2010-November/000248.html new file mode 100644 index 000000000..057112863 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000248.html @@ -0,0 +1,77 @@ + + + + [Mageia-sysadm] [ANNOUNCE] SVN Migration + + + + + + + + + +

[Mageia-sysadm] [ANNOUNCE] SVN Migration

+ Dexter Morgan + dmorganec at gmail.com +
+ Fri Nov 5 12:00:31 CET 2010 +

+
+ +
On Fri, Nov 5, 2010 at 8:44 AM, Dexter Morgan <dmorganec at gmail.com> wrote:
+> Hi,
+>
+> Please do not commit on the SVN, it is beeing migrated on the new server.
+>
+> I will mail back when all is back to normal
+>
+> ---
+> Regards
+> Dexter Morgan
+>
+
+Hi,
+
+The svn is now fully operationnal on the new server.
+The DNS have been updated too
+
+
+Regards
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000249.html b/zarb-ml/mageia-sysadm/2010-November/000249.html new file mode 100644 index 000000000..07e78fd52 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000249.html @@ -0,0 +1,85 @@ + + + + [Mageia-sysadm] [133] SVN server is on valstar + + + + + + + + + +

[Mageia-sysadm] [133] SVN server is on valstar

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 12:03:32 CET 2010 +

+
+ +
Revision: 133
+Author:   dmorgan
+Date:     2010-11-05 12:03:31 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+SVN  server is on valstar
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-05 10:20:30 UTC (rev 132)
++++ puppet/manifests/nodes.pp	2010-11-05 11:03:31 UTC (rev 133)
+@@ -3,7 +3,6 @@
+ # Location: IELO datacenter (marseille)
+ #
+ # TODO:
+-# - SVN server
+ # - GIT server
+ # - setup urli build scheduler
+ # - setup youri
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/5ca046f7/attachment.html>
+
+ + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000250.html b/zarb-ml/mageia-sysadm/2010-November/000250.html new file mode 100644 index 000000000..e5265cc5c --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000250.html @@ -0,0 +1,162 @@ + + + + [Mageia-sysadm] [134] Finalise registration ACLs + + + + + + + + + +

[Mageia-sysadm] [134] Finalise registration ACLs

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 13:19:23 CET 2010 +

+
+ +
Revision: 134
+Author:   buchan
+Date:     2010-11-05 13:19:23 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+Finalise registration ACLs
+Restrict anonymous access (to none)
+Add some additional ACLs to put back some access that previously relied on anonymous
+Listen on all IP addresses, and ldapi
+Assign localSSF matching ssf requirement, so we allow ldapi,ldaps,ldap+start_tls
+
+Modified Paths:
+--------------
+    puppet/modules/openldap/templates/ldap.sysconfig
+    puppet/modules/openldap/templates/mandriva-dit-access.conf
+    puppet/modules/openldap/templates/slapd.conf
+
+Modified: puppet/modules/openldap/templates/ldap.sysconfig
+===================================================================
+--- puppet/modules/openldap/templates/ldap.sysconfig	2010-11-05 11:03:31 UTC (rev 133)
++++ puppet/modules/openldap/templates/ldap.sysconfig	2010-11-05 12:19:23 UTC (rev 134)
+@@ -3,7 +3,7 @@
+ SLAPDSYSLOGLOCALUSER="local4"
+ 
+ # SLAPD URL list 
+-SLAPDURLLIST="ldap://127.0.0.1/ ldaps://127.0.0.1/"
++SLAPDURLLIST="ldap:/// ldaps:/// ldapi:///"
+ 
+ # Config file to use for slapd
+ #SLAPDCONF=/etc/openldap/slapd.conf
+
+Modified: puppet/modules/openldap/templates/mandriva-dit-access.conf
+===================================================================
+--- puppet/modules/openldap/templates/mandriva-dit-access.conf	2010-11-05 11:03:31 UTC (rev 133)
++++ puppet/modules/openldap/templates/mandriva-dit-access.conf	2010-11-05 12:19:23 UTC (rev 134)
+@@ -85,11 +85,24 @@
+ 	by dnattr=owner write
+ 	by * break
+ 
++# registration - allow registrar group to create basic unprivileged accounts
++access to dn.subtree="ou=People,dc=mageia,dc=org" 
++	attrs="objectClass" 
++	val="inetOrgperson" 
++	by group/groupOfNames/member.exact="cn=registrars,ou=system groups,dc=mageia,dc=org" =a
++	by * +0 break
++
++access to dn.subtree="ou=People,dc=mageia,dc=org" 
++	filter="(!(objectclass=posixAccount))"
++	attrs=cn,sn,gn,mail,entry,children
++	by group/groupOfNames/member.exact="cn=registrars,ou=system groups,dc=mageia,dc=org" =a
++	by * +0 break
++
+ # let the user change some of his/her attributes
+ access to dn.subtree="ou=People,dc=mageia,dc=org"
+ 	attrs=carLicense,homePhone,homePostalAddress,mobile,pager,telephoneNumber,mail,preferredLanguage
+ 	by self write
+-	by * break
++	by * +0 break
+ 
+ # create new accounts
+ access to dn.regex="^([^,]+,)?ou=(People|Group|Hosts),dc=mageia,dc=org$"
+@@ -146,17 +159,7 @@
+ 	by group.exact="cn=DNS Readers,ou=System Groups,dc=mageia,dc=org" read
+ 	by * none
+ 
+-# registration - allow registrar group to create basic unprivileged accounts
+-access to dn.subtree="ou=People,dc=mageia,dc=org" 
+-	attrs="objectClass" 
+-	val="inetOrgperson" 
+-	by group/groupOfNames/member.exact="cn=registrars,ou=system groups,dc=mageia,dc=org" write by * +0 break
+ 
+-access to dn.subtree="ou=People,dc=mageia,dc=org" 
+-	attrs="cn,sn,gn,mail,entry,children" 
+-	by group/groupOfNames/member.exact="cn=registrars,ou=system groups,dc=mageia,dc=org" +a break
+-	by * +0 break
+-
+ # MTA
+ # XXX - what else can we add here? Virtual Domains? With which schema?
+ access to dn.one="ou=People,dc=mageia,dc=org"
+
+Modified: puppet/modules/openldap/templates/slapd.conf
+===================================================================
+--- puppet/modules/openldap/templates/slapd.conf	2010-11-05 11:03:31 UTC (rev 133)
++++ puppet/modules/openldap/templates/slapd.conf	2010-11-05 12:19:23 UTC (rev 134)
+@@ -40,6 +40,14 @@
+ TLSCertificateKeyFile   /etc/ssl/openldap/ldap.pem
+ TLSCACertificateFile    /etc/ssl/openldap/ldap.pem
+ 
++# Give ldapi connection some security
++localSSF 56
++# Require at least this security, so we allow:
++# ldapi
++# ldap+start_tls
++# ldaps
++security ssf=56
++
+ loglevel 256
+ 
+ database	bdb
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/eaebe76e/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000251.html b/zarb-ml/mageia-sysadm/2010-November/000251.html new file mode 100644 index 000000000..17906ee01 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000251.html @@ -0,0 +1,98 @@ + + + + [Mageia-sysadm] [137] Catdap needs some search access as well + + + + + + + + + +

[Mageia-sysadm] [137] Catdap needs some search access as well

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 13:30:14 CET 2010 +

+
+ +
Revision: 137
+Author:   buchan
+Date:     2010-11-05 13:30:14 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+Catdap needs some search access as well
+Also allow catdap to write preferredLanguage
+
+Modified Paths:
+--------------
+    puppet/modules/openldap/templates/mandriva-dit-access.conf
+
+Modified: puppet/modules/openldap/templates/mandriva-dit-access.conf
+===================================================================
+--- puppet/modules/openldap/templates/mandriva-dit-access.conf	2010-11-05 12:27:43 UTC (rev 136)
++++ puppet/modules/openldap/templates/mandriva-dit-access.conf	2010-11-05 12:30:14 UTC (rev 137)
+@@ -89,13 +89,13 @@
+ access to dn.subtree="ou=People,dc=mageia,dc=org" 
+ 	attrs="objectClass" 
+ 	val="inetOrgperson" 
+-	by group/groupOfNames/member.exact="cn=registrars,ou=system groups,dc=mageia,dc=org" =a
++	by group/groupOfNames/member.exact="cn=registrars,ou=system groups,dc=mageia,dc=org" =asrx
+ 	by * +0 break
+ 
+ access to dn.subtree="ou=People,dc=mageia,dc=org" 
+ 	filter="(!(objectclass=posixAccount))"
+-	attrs=cn,sn,gn,mail,entry,children
+-	by group/groupOfNames/member.exact="cn=registrars,ou=system groups,dc=mageia,dc=org" =a
++	attrs=cn,sn,gn,mail,entry,children,preferredLanguage
++	by group/groupOfNames/member.exact="cn=registrars,ou=system groups,dc=mageia,dc=org" =asx
+ 	by * +0 break
+ 
+ # let the user change some of his/her attributes
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/6b8c511f/attachment.html>
+
+ + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000252.html b/zarb-ml/mageia-sysadm/2010-November/000252.html new file mode 100644 index 000000000..31fac3527 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000252.html @@ -0,0 +1,86 @@ + + + + [Mageia-sysadm] [135] Correct authentication binddn + + + + + + + + + +

[Mageia-sysadm] [135] Correct authentication binddn

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 13:20:46 CET 2010 +

+
+ +
Revision: 135
+Author:   buchan
+Date:     2010-11-05 13:20:46 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+Correct authentication binddn
+
+Modified Paths:
+--------------
+    puppet/modules/catdap/templates/catdap_local.yml
+
+Modified: puppet/modules/catdap/templates/catdap_local.yml
+===================================================================
+--- puppet/modules/catdap/templates/catdap_local.yml	2010-11-05 12:19:23 UTC (rev 134)
++++ puppet/modules/catdap/templates/catdap_local.yml	2010-11-05 12:20:46 UTC (rev 135)
+@@ -30,7 +30,7 @@
+         ldap:
+             store:
+                 ldap_server: <%= ldap_server %>
+-                binddn: <%= dc_suffix %>
++                binddn: <%= ldap_account %>
+                 bindpw: <%= ldap_password %>
+                 user_basedn: ou=People,<%= dc_suffix %>
+                 role_basedn: <%= dc_suffix %>
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/3201ca16/attachment-0001.html>
+
+ + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000253.html b/zarb-ml/mageia-sysadm/2010-November/000253.html new file mode 100644 index 000000000..b484ee10f --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000253.html @@ -0,0 +1,97 @@ + + + + [Mageia-sysadm] [139] Add a few more dependencies + + + + + + + + + +

[Mageia-sysadm] [139] Add a few more dependencies

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 13:34:15 CET 2010 +

+
+ +
Revision: 139
+Author:   buchan
+Date:     2010-11-05 13:34:15 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+Add a few more dependencies
+--This line, and those below, will be ignoed--
+
+M    puppet/modules/catdap/manifests/init.pp
+
+Modified Paths:
+--------------
+    puppet/modules/catdap/manifests/init.pp
+
+Modified: puppet/modules/catdap/manifests/init.pp
+===================================================================
+--- puppet/modules/catdap/manifests/init.pp	2010-11-05 12:30:45 UTC (rev 138)
++++ puppet/modules/catdap/manifests/init.pp	2010-11-05 12:34:15 UTC (rev 139)
+@@ -13,7 +13,9 @@
+ "perl-Catalyst-Plugin-ConfigLoader", "perl-Catalyst-Plugin-I18N", "perl-Catalyst-Plugin-Session-Store-File", "perl-Catalyst-Plugin-Static-Simple",
+ "perl-Catalyst-P-S-State-Cookie", "perl-Catalyst-P-S-Store-File", "perl-Catalyst-View-Email",
+ "perl-Catalyst-View-TT", "perl-Config-General", "perl-Crypt-CBC", "perl-Data-UUID",
+-"perl-Email-Valid", "perl-Moose", "perl-namespace-autoclean", "perl-Test-Simple" ]
++"perl-Email-Valid", "perl-Moose", "perl-namespace-autoclean", "perl-Test-Simple",
++"perl-Crypt-Blowfish", "perl-Email-Date-Format", "perl-YAML-LibYAML",
++]
+ 
+     package { $rpm_requirement:
+         ensure => installed
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/ecf387d7/attachment.html>
+
+ + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000254.html b/zarb-ml/mageia-sysadm/2010-November/000254.html new file mode 100644 index 000000000..c89547c86 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000254.html @@ -0,0 +1,85 @@ + + + + [Mageia-sysadm] [136] - fix the svn server name + + + + + + + + + +

[Mageia-sysadm] [136] - fix the svn server name

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 13:27:43 CET 2010 +

+
+ +
Revision: 136
+Author:   misc
+Date:     2010-11-05 13:27:43 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+- fix the svn server name
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-05 12:20:46 UTC (rev 135)
++++ puppet/manifests/nodes.pp	2010-11-05 12:27:43 UTC (rev 136)
+@@ -21,7 +21,7 @@
+     
+ 
+     subversion::snapshot { "/etc/puppet":
+-        source => "svn://vm-gandi.mageia.org/adm/puppet/"
++        source => "svn://svn.mageia.org/adm/puppet/"
+     }
+ 
+     file { "extdata":
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/e1b963c2/attachment.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000255.html b/zarb-ml/mageia-sysadm/2010-November/000255.html new file mode 100644 index 000000000..74dc6798a --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000255.html @@ -0,0 +1,91 @@ + + + + [Mageia-sysadm] [140] Open read access for users to contact-type details for now + + + + + + + + + +

[Mageia-sysadm] [140] Open read access for users to contact-type details for now

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 13:38:44 CET 2010 +

+
+ +
Revision: 140
+Author:   buchan
+Date:     2010-11-05 13:38:44 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+Open read access for users to contact-type details for now
+
+Modified Paths:
+--------------
+    puppet/modules/openldap/templates/mandriva-dit-access.conf
+
+Modified: puppet/modules/openldap/templates/mandriva-dit-access.conf
+===================================================================
+--- puppet/modules/openldap/templates/mandriva-dit-access.conf	2010-11-05 12:34:15 UTC (rev 139)
++++ puppet/modules/openldap/templates/mandriva-dit-access.conf	2010-11-05 12:38:44 UTC (rev 140)
+@@ -102,7 +102,7 @@
+ access to dn.subtree="ou=People,dc=mageia,dc=org"
+ 	attrs=carLicense,homePhone,homePostalAddress,mobile,pager,telephoneNumber,mail,preferredLanguage
+ 	by self write
+-	by * +0 break
++	by users read
+ 
+ # create new accounts
+ access to dn.regex="^([^,]+,)?ou=(People|Group|Hosts),dc=mageia,dc=org$"
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/a0aca1d5/attachment.html>
+
+ + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000256.html b/zarb-ml/mageia-sysadm/2010-November/000256.html new file mode 100644 index 000000000..947eb1f0e --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000256.html @@ -0,0 +1,92 @@ + + + + [Mageia-sysadm] [139] Add a few more dependencies + + + + + + + + + +

[Mageia-sysadm] [139] Add a few more dependencies

+ Michael Scherer + misc at zarb.org +
+ Fri Nov 5 13:39:04 CET 2010 +

+
+ +
Le vendredi 05 novembre 2010 à 13:34 +0100, root at mageia.org a écrit :
+> Revision: 139
+> Author:   buchan
+> Date:     2010-11-05 13:34:15 +0100 (Fri, 05 Nov 2010)
+> Log Message:
+> -----------
+> Add a few more dependencies
+>
+> Modified Paths:
+> --------------
+>     puppet/modules/catdap/manifests/init.pp
+> 
+> Modified: puppet/modules/catdap/manifests/init.pp
+> ===================================================================
+> --- puppet/modules/catdap/manifests/init.pp	2010-11-05 12:30:45 UTC (rev 138)
+> +++ puppet/modules/catdap/manifests/init.pp	2010-11-05 12:34:15 UTC (rev 139)
+> @@ -13,7 +13,9 @@
+>  "perl-Catalyst-Plugin-ConfigLoader", "perl-Catalyst-Plugin-I18N", "perl-Catalyst-Plugin-Session-Store-File", "perl-Catalyst-Plugin-Static-Simple",
+>  "perl-Catalyst-P-S-State-Cookie", "perl-Catalyst-P-S-Store-File", "perl-Catalyst-View-Email",
+>  "perl-Catalyst-View-TT", "perl-Config-General", "perl-Crypt-CBC", "perl-Data-UUID",
+> -"perl-Email-Valid", "perl-Moose", "perl-namespace-autoclean", "perl-Test-Simple" ]
+> +"perl-Email-Valid", "perl-Moose", "perl-namespace-autoclean", "perl-Test-Simple",
+> +"perl-Crypt-Blowfish", "perl-Email-Date-Format", "perl-YAML-LibYAML",
+> +]
+
+Maybe it could be the time for a rpm ?
+ 
+-- 
+Michael Scherer
+
+
+ + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000257.html b/zarb-ml/mageia-sysadm/2010-November/000257.html new file mode 100644 index 000000000..f9d3e67a3 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000257.html @@ -0,0 +1,87 @@ + + + + [Mageia-sysadm] [138] use a cname for puppet + + + + + + + + + +

[Mageia-sysadm] [138] use a cname for puppet

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 13:30:45 CET 2010 +

+
+ +
Revision: 138
+Author:   misc
+Date:     2010-11-05 13:30:45 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+use a cname for puppet
+
+Modified Paths:
+--------------
+    puppet/puppet.conf
+
+Modified: puppet/puppet.conf
+===================================================================
+--- puppet/puppet.conf	2010-11-05 12:30:14 UTC (rev 137)
++++ puppet/puppet.conf	2010-11-05 12:30:45 UTC (rev 138)
+@@ -12,8 +12,7 @@
+     ssldir = $vardir/ssl
+ 
+ [puppetd]
+-    # TODO switch to a CNAME
+-    server = valstar.mageia.org
++    server = puppetmaster.mageia.org
+ 
+     # The file in which puppetd stores a list of the classes
+     # associated with the retrieved configuratiion.  Can be loaded in
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/7b5d28b1/attachment.html>
+
+ + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000258.html b/zarb-ml/mageia-sysadm/2010-November/000258.html new file mode 100644 index 000000000..48c364a07 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000258.html @@ -0,0 +1,98 @@ + + + + [Mageia-sysadm] [141] Give registrar group read access to some attributes again, and reduce users access + + + + + + + + + +

[Mageia-sysadm] [141] Give registrar group read access to some attributes again, and reduce users access

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 13:41:39 CET 2010 +

+
+ +
Revision: 141
+Author:   buchan
+Date:     2010-11-05 13:41:38 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+Give registrar group read access to some attributes again, and reduce users access
+ added in previous commit
+
+Modified Paths:
+--------------
+    puppet/modules/openldap/templates/mandriva-dit-access.conf
+
+Modified: puppet/modules/openldap/templates/mandriva-dit-access.conf
+===================================================================
+--- puppet/modules/openldap/templates/mandriva-dit-access.conf	2010-11-05 12:38:44 UTC (rev 140)
++++ puppet/modules/openldap/templates/mandriva-dit-access.conf	2010-11-05 12:41:38 UTC (rev 141)
+@@ -95,14 +95,14 @@
+ access to dn.subtree="ou=People,dc=mageia,dc=org" 
+ 	filter="(!(objectclass=posixAccount))"
+ 	attrs=cn,sn,gn,mail,entry,children,preferredLanguage
+-	by group/groupOfNames/member.exact="cn=registrars,ou=system groups,dc=mageia,dc=org" =asx
++	by group/groupOfNames/member.exact="cn=registrars,ou=system groups,dc=mageia,dc=org" =asrx
+ 	by * +0 break
+ 
+ # let the user change some of his/her attributes
+ access to dn.subtree="ou=People,dc=mageia,dc=org"
+ 	attrs=carLicense,homePhone,homePostalAddress,mobile,pager,telephoneNumber,mail,preferredLanguage
+ 	by self write
+-	by users read
++	by users +sx
+ 
+ # create new accounts
+ access to dn.regex="^([^,]+,)?ou=(People|Group|Hosts),dc=mageia,dc=org$"
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/10b27670/attachment-0001.html>
+
+ + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000259.html b/zarb-ml/mageia-sysadm/2010-November/000259.html new file mode 100644 index 000000000..a9768aafc --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000259.html @@ -0,0 +1,94 @@ + + + + [Mageia-sysadm] [142] Try and allow users to identify the groups another user is in + + + + + + + + + +

[Mageia-sysadm] [142] Try and allow users to identify the groups another user is in

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 14:03:27 CET 2010 +

+
+ +
Revision: 142
+Author:   buchan
+Date:     2010-11-05 14:03:26 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+Try and allow users to identify the groups another user is in
+
+Modified Paths:
+--------------
+    puppet/modules/openldap/templates/mandriva-dit-access.conf
+
+Modified: puppet/modules/openldap/templates/mandriva-dit-access.conf
+===================================================================
+--- puppet/modules/openldap/templates/mandriva-dit-access.conf	2010-11-05 12:41:38 UTC (rev 141)
++++ puppet/modules/openldap/templates/mandriva-dit-access.conf	2010-11-05 13:03:26 UTC (rev 142)
+@@ -83,8 +83,12 @@
+ access to dn.regex="^cn=[^,]+,ou=(System Groups|Group),dc=mageia,dc=org$"
+ 	attrs=member
+ 	by dnattr=owner write
+-	by * break
++	by users +sx
+ 
++access to dn.regex="^cn=[^,]+,ou=(System Groups|Group),dc=mageia,dc=org$"
++	attrs=cn,description
++	by users read
++
+ # registration - allow registrar group to create basic unprivileged accounts
+ access to dn.subtree="ou=People,dc=mageia,dc=org" 
+ 	attrs="objectClass" 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/58fd4aee/attachment.html>
+
+ + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000260.html b/zarb-ml/mageia-sysadm/2010-November/000260.html new file mode 100644 index 000000000..cec4ab8aa --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000260.html @@ -0,0 +1,109 @@ + + + + [Mageia-sysadm] [138] use a cname for puppet + + + + + + + + + +

[Mageia-sysadm] [138] use a cname for puppet

+ Michael Scherer + misc at zarb.org +
+ Fri Nov 5 14:42:35 CET 2010 +

+
+ +
Le vendredi 05 novembre 2010 à 13:30 +0100, root at mageia.org a écrit :
+> Revision: 138
+> Author:   misc
+> Date:     2010-11-05 13:30:45 +0100 (Fri, 05 Nov 2010)
+> Log Message:
+> -----------
+> use a cname for puppet
+
+for the record, this broke puppet on all node, as noted by buchan :
+
+14:05:09|  blingme> info: Not using expired catalog for
+valstar.mageia.org from cache; expired at Fri Nov 05 14:00:46 +0100 2010
+14:20:43|  blingme> err: Could not retrieve catalog; skipping run
+14:21:12|  blingme> err: Could not retrieve catalog from remote server:
+hostname was not match with the server certificate
+
+the fix is explained here :
+
+http://projects.puppetlabs.com/projects/puppet/wiki/Ruby_Ssl_2007_006
+
+change the config on server side, 
+give the name of the vhost, 
+restart puppetmasterd,
+fix puppet on all nodes :
+   be sure that server = puppetmaster.mageia.org
+   restart puppet
+
+I plan to deploy puppet packages using puppet to avoid this next time
+( as this would also help to deploy report, and other nifty stuff ).
+
+But this cause some trouble with the puppetmaster, as it use the same
+config file than puppet agent ( /etc/puppet/puppet.conf ), so since the
+file on server is managed by svn ( ie, directly in the root ),
+the puppet.conf file must be in sync with the one deployed for the
+client ).
+
+I see 2 solutions :
+- keep in sync puppet.conf with modules/puppet/templates/puppet.conf 
+- (re)move puppet.conf so it doesn't conflict, and be sure that puppet
+deploy the proper one even on the master 
+
+First one is ugly and error prone ( but work as that's I use on my own
+server ), but the 2nd one is untested so maybe I have missed a obvious
+point. 
+
+WDYT ?
+
+-- 
+Michael Scherer
+
+
+ + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000261.html b/zarb-ml/mageia-sysadm/2010-November/000261.html new file mode 100644 index 000000000..5c21e42f7 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000261.html @@ -0,0 +1,72 @@ + + + + [Mageia-sysadm] [138] use a cname for puppet + + + + + + + + + +

[Mageia-sysadm] [138] use a cname for puppet

+ nicolas vigier + boklm at mars-attacks.org +
+ Fri Nov 5 14:59:00 CET 2010 +

+
+ +
On Fri, 05 Nov 2010, Michael Scherer wrote:
+
+> 
+> I see 2 solutions :
+> - keep in sync puppet.conf with modules/puppet/templates/puppet.conf 
+> - (re)move puppet.conf so it doesn't conflict, and be sure that puppet
+> deploy the proper one even on the master 
+
+I don't understand 2nd solution. But 1st solution seems ok.
+
+But maybe new changes to puppet.conf on clients are going to be very
+rare, so it can be ok if managed managed manually ?
+
+
+ + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000262.html b/zarb-ml/mageia-sysadm/2010-November/000262.html new file mode 100644 index 000000000..d55dc3838 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000262.html @@ -0,0 +1,171 @@ + + + + [Mageia-sysadm] [143] adding check_new-blog-post on champagne + + + + + + + + + +

[Mageia-sysadm] [143] adding check_new-blog-post on champagne

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 15:16:41 CET 2010 +

+
+ +
Revision: 143
+Author:   dams
+Date:     2010-11-05 15:16:41 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+adding check_new-blog-post on champagne
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+
+Added Paths:
+-----------
+    puppet/modules/blog/
+    puppet/modules/blog/manifests/
+    puppet/modules/blog/manifests/init.pp
+    puppet/modules/blog/templates/
+    puppet/modules/blog/templates/check_new-blog-post.sh
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-05 13:03:26 UTC (rev 142)
++++ puppet/manifests/nodes.pp	2010-11-05 14:16:41 UTC (rev 143)
+@@ -125,6 +125,8 @@
+ #
+ 	include default_mageia_server
+     include apache::base
++    #include postfix
++    include blog
+ }
+ 
+ 
+
+Added: puppet/modules/blog/manifests/init.pp
+===================================================================
+--- puppet/modules/blog/manifests/init.pp	                        (rev 0)
++++ puppet/modules/blog/manifests/init.pp	2010-11-05 14:16:41 UTC (rev 143)
+@@ -0,0 +1,24 @@
++#TODO: add the creation of the user 'blog' in puppet
++class blog {
++	package { 'wget':
++        	ensure => installed
++    	}
++	package { 'postfix':
++                ensure => installed
++        }
++	file { "check_new-blog-post":
++        	path => "/home/blog/check_new-blog-post.sh",
++        	ensure => present,
++        	owner => blog,
++        	group => blog,
++        	mode => 755,
++        	content => template("blog/check_new-blog-post.sh")
++    	}
++	cron { blog:
++        	user => blog,
++        	hour => 0,
++        	minute => 15,
++        	command => "/home/blog/check_new-blog-post.sh",
++        	require => File["check_new-blog-post"],
++    	}
++}
+
+Added: puppet/modules/blog/templates/check_new-blog-post.sh
+===================================================================
+--- puppet/modules/blog/templates/check_new-blog-post.sh	                        (rev 0)
++++ puppet/modules/blog/templates/check_new-blog-post.sh	2010-11-05 14:16:41 UTC (rev 143)
+@@ -0,0 +1,32 @@
++#!/bin/sh
++
++# Initialization
++PATH_TO_FILE="/home/blog"
++/usr/bin/wget -qO $PATH_TO_FILE"/RSS_new" http://blog.mageia.org/?feed=rss2
++/bin/date +"%d:%m:%Y %H:%M" > $PATH_TO_FILE"/last_check"
++
++# Check if RSS_old exists
++if [ ! -f $PATH_TO_FILE"/RSS_old" ]
++	then
++		/bin/cp $PATH_TO_FILE"/RSS_new" $PATH_TO_FILE"/RSS_old"
++		/bin/rm -rf $PATH_TO_FILE"/RSS_new" $PATH_TO_FILE"/last_check"
++		exit 1
++fi
++
++# Check if a new blog post on EN needs to be translated on other blogs
++tmp_new=$(/bin/grep 'lastBuildDate' $PATH_TO_FILE"/RSS_new")
++tmp_old=$(/bin/grep 'lastBuildDate' $PATH_TO_FILE"/RSS_old")
++if [ "$tmp_old" = "$tmp_new" ]
++	then
++		# Nothing new
++		echo "NO" >> $PATH_TO_FILE"/last_check"
++	else
++		# New post to translate
++		echo "YES" >> $PATH_TO_FILE"/last_check"
++		echo "blablabla" /bin/mail -s "New entry on English Blog to translate" damien at damsweb.net
++		echo $DATE
++fi
++
++# Clean tmp files and copy RSS_new to RSS_old
++/bin/cp $PATH_TO_FILE"/RSS_new" $PATH_TO_FILE"/RSS_old"
++/bin/rm -rf $PATH_TO_FILE"/RSS_new"
+
+
+Property changes on: puppet/modules/blog/templates/check_new-blog-post.sh
+___________________________________________________________________
+Added: svn:executable
+   + *
+Added: svn:eol-style
+   + native
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/54824d95/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000263.html b/zarb-ml/mageia-sysadm/2010-November/000263.html new file mode 100644 index 000000000..2a726918e --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000263.html @@ -0,0 +1,87 @@ + + + + [Mageia-sysadm] [144] Allow a bit more access to groups + + + + + + + + + +

[Mageia-sysadm] [144] Allow a bit more access to groups

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 15:27:41 CET 2010 +

+
+ +
Revision: 144
+Author:   buchan
+Date:     2010-11-05 15:27:41 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+Allow a bit more access to groups
+
+Modified Paths:
+--------------
+    puppet/modules/openldap/templates/mandriva-dit-access.conf
+
+Modified: puppet/modules/openldap/templates/mandriva-dit-access.conf
+===================================================================
+--- puppet/modules/openldap/templates/mandriva-dit-access.conf	2010-11-05 14:16:41 UTC (rev 143)
++++ puppet/modules/openldap/templates/mandriva-dit-access.conf	2010-11-05 14:27:41 UTC (rev 144)
+@@ -86,7 +86,7 @@
+ 	by users +sx
+ 
+ access to dn.regex="^cn=[^,]+,ou=(System Groups|Group),dc=mageia,dc=org$"
+-	attrs=cn,description
++	attrs=cn,description,objectClass,gidNumber
+ 	by users read
+ 
+ # registration - allow registrar group to create basic unprivileged accounts
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/759032de/attachment-0001.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000264.html b/zarb-ml/mageia-sysadm/2010-November/000264.html new file mode 100644 index 000000000..94b74b0ea --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000264.html @@ -0,0 +1,87 @@ + + + + [Mageia-sysadm] [145] fix the mail address and message on blog + + + + + + + + + +

[Mageia-sysadm] [145] fix the mail address and message on blog

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 15:34:52 CET 2010 +

+
+ +
Revision: 145
+Author:   dams
+Date:     2010-11-05 15:34:52 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+fix the mail address and message on blog
+
+Modified Paths:
+--------------
+    puppet/modules/blog/templates/check_new-blog-post.sh
+
+Modified: puppet/modules/blog/templates/check_new-blog-post.sh
+===================================================================
+--- puppet/modules/blog/templates/check_new-blog-post.sh	2010-11-05 14:27:41 UTC (rev 144)
++++ puppet/modules/blog/templates/check_new-blog-post.sh	2010-11-05 14:34:52 UTC (rev 145)
+@@ -23,7 +23,7 @@
+ 	else
+ 		# New post to translate
+ 		echo "YES" >> $PATH_TO_FILE"/last_check"
+-		echo "blablabla" /bin/mail -s "New entry on English Blog to translate" damien at damsweb.net
++		echo "A new blog post is waiting for translation" /bin/mail -s "New entry on English Blog" mageia-blogteam at mageia.org
+ 		echo $DATE
+ fi
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/663e2fd1/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000265.html b/zarb-ml/mageia-sysadm/2010-November/000265.html new file mode 100644 index 000000000..d5ba076e8 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000265.html @@ -0,0 +1,111 @@ + + + + [Mageia-sysadm] [146] fix the path to '/usr/local/bin' '/var/lib/blog' + + + + + + + + + +

[Mageia-sysadm] [146] fix the path to '/usr/local/bin' '/var/lib/blog'

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 15:51:49 CET 2010 +

+
+ +
Revision: 146
+Author:   dams
+Date:     2010-11-05 15:51:49 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+fix the path to '/usr/local/bin' '/var/lib/blog'
+
+Modified Paths:
+--------------
+    puppet/modules/blog/manifests/init.pp
+    puppet/modules/blog/templates/check_new-blog-post.sh
+
+Modified: puppet/modules/blog/manifests/init.pp
+===================================================================
+--- puppet/modules/blog/manifests/init.pp	2010-11-05 14:34:52 UTC (rev 145)
++++ puppet/modules/blog/manifests/init.pp	2010-11-05 14:51:49 UTC (rev 146)
+@@ -7,7 +7,7 @@
+                 ensure => installed
+         }
+ 	file { "check_new-blog-post":
+-        	path => "/home/blog/check_new-blog-post.sh",
++        	path => "/usr/local/bin/check_new-blog-post.sh",
+         	ensure => present,
+         	owner => blog,
+         	group => blog,
+@@ -18,7 +18,7 @@
+         	user => blog,
+         	hour => 0,
+         	minute => 15,
+-        	command => "/home/blog/check_new-blog-post.sh",
++        	command => "/usr/local/bin/check_new-blog-post.sh",
+         	require => File["check_new-blog-post"],
+     	}
+ }
+
+Modified: puppet/modules/blog/templates/check_new-blog-post.sh
+===================================================================
+--- puppet/modules/blog/templates/check_new-blog-post.sh	2010-11-05 14:34:52 UTC (rev 145)
++++ puppet/modules/blog/templates/check_new-blog-post.sh	2010-11-05 14:51:49 UTC (rev 146)
+@@ -1,7 +1,7 @@
+ #!/bin/sh
+ 
+ # Initialization
+-PATH_TO_FILE="/home/blog"
++PATH_TO_FILE="/var/lib/blog"
+ /usr/bin/wget -qO $PATH_TO_FILE"/RSS_new" http://blog.mageia.org/?feed=rss2
+ /bin/date +"%d:%m:%Y %H:%M" > $PATH_TO_FILE"/last_check"
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/0aa5bdc4/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000266.html b/zarb-ml/mageia-sysadm/2010-November/000266.html new file mode 100644 index 000000000..35de78c02 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000266.html @@ -0,0 +1,114 @@ + + + + [Mageia-sysadm] [138] use a cname for puppet + + + + + + + + + +

[Mageia-sysadm] [138] use a cname for puppet

+ Michael Scherer + misc at zarb.org +
+ Fri Nov 5 15:57:55 CET 2010 +

+
+ +
Le vendredi 05 novembre 2010 à 14:59 +0100, nicolas vigier a écrit :
+> On Fri, 05 Nov 2010, Michael Scherer wrote:
+> 
+> > 
+> > I see 2 solutions :
+> > - keep in sync puppet.conf with modules/puppet/templates/puppet.conf 
+> > - (re)move puppet.conf so it doesn't conflict, and be sure that puppet
+> > deploy the proper one even on the master 
+> 
+> I don't understand 2nd solution. But 1st solution seems ok.
+
+cd $CHECKOUT_OF_PUPPET
+svn rm puppet.conf 
+svn commit 
+
+then, on next cron update on puppetmaster :
+svn up   will remove puppet.conf
+
+then puppet agent will kick in, recreate the config file and all is
+well.
+
+Then later, updates are handled like all others file managed by puppet.
+( we should just be sure that we do not ask puppet to reload when the
+file change and while it is updating itself )
+
+Or I hope so.
+We may have to add the puppet file by hand for the migration however.
+
+
+> But maybe new changes to puppet.conf on clients are going to be very
+> rare, so it can be ok if managed managed manually ?
+
+I was planning on enabling some features after more tests :
+- reporting, so we get mail when there is a error ( once I have tested
+the feature, doing mistakes is not so easy :p )
+
+- filebucket, so file are saved if the were manually edited on the
+server ( useful to prevent errors ), didn't play with it
+
+- there is also a system of plugin, that could be used if we start to
+manage urpmi with it ( I have such a plugin, except it is not finished
+and do not work and not public ), and this requires "pluginsync = true"
+in agent
+
+- puppet config file may change ( they changed it for 2.6 ) and so may
+requires cluster wide update to remove warning
+
+I also think we could use storedconfig in the futur ( puppet node send
+their configuration to the master ), but this doesn't requires config on
+client, afaik. 
+
+
+
+-- 
+Michael Scherer
+
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000267.html b/zarb-ml/mageia-sysadm/2010-November/000267.html new file mode 100644 index 000000000..693fb21cb --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000267.html @@ -0,0 +1,73 @@ + + + + [Mageia-sysadm] SQL Server + + + + + + + + + +

[Mageia-sysadm] SQL Server

+ nicolas vigier + boklm at mars-attacks.org +
+ Fri Nov 5 16:19:12 CET 2010 +

+
+ +
On Thu, 28 Oct 2010, Michael Scherer wrote:
+
+> 
+> Given the activity around mysql and forks, wouldn't it be safer for us
+> to use postgresql when possible for the moment ?
+> ( not that I think it will change much, IMHO, even if nanar will say me
+> that postgresql >> mysql )
+
+As everybody seems to agree, I think we can use postgresql when
+possible, and MySQL otherwise.
+
+I added it on this page :
+http://www.mageia.org/wiki/doku.php?id=sysadmin#sql_databases
+
+
+ + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000268.html b/zarb-ml/mageia-sysadm/2010-November/000268.html new file mode 100644 index 000000000..1149af5b6 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000268.html @@ -0,0 +1,90 @@ + + + + [Mageia-sysadm] [147] remove the check for postfix not to duplicate the 'postfix' module + + + + + + + + + +

[Mageia-sysadm] [147] remove the check for postfix not to duplicate the 'postfix' module

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 16:29:35 CET 2010 +

+
+ +
Revision: 147
+Author:   dams
+Date:     2010-11-05 16:29:35 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+remove the check for postfix not to duplicate the 'postfix' module
+
+Modified Paths:
+--------------
+    puppet/modules/blog/manifests/init.pp
+
+Modified: puppet/modules/blog/manifests/init.pp
+===================================================================
+--- puppet/modules/blog/manifests/init.pp	2010-11-05 14:51:49 UTC (rev 146)
++++ puppet/modules/blog/manifests/init.pp	2010-11-05 15:29:35 UTC (rev 147)
+@@ -3,9 +3,9 @@
+ 	package { 'wget':
+         	ensure => installed
+     	}
+-	package { 'postfix':
+-                ensure => installed
+-        }
++	#package { 'postfix':
++        #        ensure => installed
++        #}
+ 	file { "check_new-blog-post":
+         	path => "/usr/local/bin/check_new-blog-post.sh",
+         	ensure => present,
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/9d0d9e0a/attachment.html>
+
+ + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000269.html b/zarb-ml/mageia-sysadm/2010-November/000269.html new file mode 100644 index 000000000..b879b9549 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000269.html @@ -0,0 +1,108 @@ + + + + [Mageia-sysadm] [92] - deploy catdap ( 1st try ) + + + + + + + + + +

[Mageia-sysadm] [92] - deploy catdap ( 1st try )

+ Buchan Milne + bgmilne at multilinks.com +
+ Fri Nov 5 13:52:16 CET 2010 +

+
+ +
On Thursday, 4 November 2010 20:14:35 Olivier Thauvin wrote:
+> * Michael Scherer (misc at zarb.org) wrote:
+> > Le jeudi 04 novembre 2010 à 17:58 +0100, root at mageia.org a écrit :
+> > > Revision: 92
+> > > Author:   misc
+> > > Date:     2010-11-04 17:58:53 +0100 (Thu, 04 Nov 2010)
+> > > Log Message:
+> > > -----------
+> > > - deploy catdap ( 1st try )
+> > 
+> > - maybe backport one of the requires on 2010.1,
+> > ( perl-Catalyst-P-S-Store-File )
+
+?
+$ rpm -q --whatprovides "perl(Catalyst::Plugin::Session::Store::File)"
+perl-Catalyst-Plugin-Session-Store-File-0.180.0-1mdv2010.1
+
+Or do you mean it is not available on 2010.0?
+
+> If it cause issue, it can be replaced by
+> perl-Catalyst-P-S-Store-FastMap, the one I am using for mga-mirrors.
+
+Yes, would work fine.
+
+There is also Plugin::Session::Store::DBIC, which would allow sessions to 
+persist across multiple frontend servers ... but catdap sessions should not 
+persist for long, catdap should not get that many hits.
+
+BTW., we should add a cron job to clean /tmp/catdap/session/data/. I will add 
+it to the future package.
+
+> > - translate it ( I will do my part for french and review the missing
+> > string, like I did for epoll, and try to convince translator later )
+> > 
+> > - fix some css issue ( rda will be looking at it ), and later provides a
+> > better one.
+> > 
+> > - test fully and announce it
+
+If testing doesn't include all "real" contributors, we should announce it 
+first to them, ensure most are registered, to provide some final testing etc.
+
+> > Maybe Buchan also have a TODO list of the needed features ?
+
+I will make a list shortly ... I still may need to finalise some ACLs to get 
+all existing features working.
+
+BTW, with the last few changes I made via puppet, the application is working, 
+self-registration works. If you don't yet have an account in LDAP, please 
+register ...
+
+Regards,
+Buchan
+
+ + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000270.html b/zarb-ml/mageia-sysadm/2010-November/000270.html new file mode 100644 index 000000000..8133643c3 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000270.html @@ -0,0 +1,96 @@ + + + + [Mageia-sysadm] [148] add the creation of '/var/lib/blog/' in init.pp + + + + + + + + + +

[Mageia-sysadm] [148] add the creation of '/var/lib/blog/' in init.pp

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 16:39:56 CET 2010 +

+
+ +
Revision: 148
+Author:   dams
+Date:     2010-11-05 16:39:56 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+add the creation of '/var/lib/blog/' in init.pp
+
+Modified Paths:
+--------------
+    puppet/modules/blog/manifests/init.pp
+
+Modified: puppet/modules/blog/manifests/init.pp
+===================================================================
+--- puppet/modules/blog/manifests/init.pp	2010-11-05 15:29:35 UTC (rev 147)
++++ puppet/modules/blog/manifests/init.pp	2010-11-05 15:39:56 UTC (rev 148)
+@@ -1,4 +1,5 @@
+-#TODO: add the creation of the user 'blog' in puppet
++#TODO: 
++# - add the creation of the user 'blog' in puppet
+ class blog {
+ 	package { 'wget':
+         	ensure => installed
+@@ -14,6 +15,12 @@
+         	mode => 755,
+         	content => template("blog/check_new-blog-post.sh")
+     	}
++	file { "/var/lib/blog/":
++                ensure => present,
++                owner => blog,
++                group => blog,
++                mode => 644
++        }
+ 	cron { blog:
+         	user => blog,
+         	hour => 0,
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/49325889/attachment.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000271.html b/zarb-ml/mageia-sysadm/2010-November/000271.html new file mode 100644 index 000000000..4612ff773 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000271.html @@ -0,0 +1,92 @@ + + + + [Mageia-sysadm] [149] fix 'ensure' to 'directory' + + + + + + + + + +

[Mageia-sysadm] [149] fix 'ensure' to 'directory'

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 16:46:46 CET 2010 +

+
+ +
Revision: 149
+Author:   dams
+Date:     2010-11-05 16:46:46 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+fix 'ensure' to 'directory'
+
+Modified Paths:
+--------------
+    puppet/modules/blog/manifests/init.pp
+
+Modified: puppet/modules/blog/manifests/init.pp
+===================================================================
+--- puppet/modules/blog/manifests/init.pp	2010-11-05 15:39:56 UTC (rev 148)
++++ puppet/modules/blog/manifests/init.pp	2010-11-05 15:46:46 UTC (rev 149)
+@@ -15,11 +15,12 @@
+         	mode => 755,
+         	content => template("blog/check_new-blog-post.sh")
+     	}
+-	file { "/var/lib/blog/":
+-                ensure => present,
++	file { "/var/lib/blog":
++                ensure => directory,
+                 owner => blog,
+                 group => blog,
+-                mode => 644
++                mode => 644,
++		recurse  => true
+         }
+ 	cron { blog:
+         	user => blog,
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/bb9022a9/attachment.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000272.html b/zarb-ml/mageia-sysadm/2010-November/000272.html new file mode 100644 index 000000000..785475746 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000272.html @@ -0,0 +1,84 @@ + + + + [Mageia-sysadm] [150] remove 'recurse' + + + + + + + + + +

[Mageia-sysadm] [150] remove 'recurse'

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 16:51:23 CET 2010 +

+
+ +
Revision: 150
+Author:   dams
+Date:     2010-11-05 16:51:23 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+remove 'recurse'
+
+Modified Paths:
+--------------
+    puppet/modules/blog/manifests/init.pp
+
+Modified: puppet/modules/blog/manifests/init.pp
+===================================================================
+--- puppet/modules/blog/manifests/init.pp	2010-11-05 15:46:46 UTC (rev 149)
++++ puppet/modules/blog/manifests/init.pp	2010-11-05 15:51:23 UTC (rev 150)
+@@ -20,7 +20,6 @@
+                 owner => blog,
+                 group => blog,
+                 mode => 644,
+-		recurse  => true
+         }
+ 	cron { blog:
+         	user => blog,
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/6e506cca/attachment.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000273.html b/zarb-ml/mageia-sysadm/2010-November/000273.html new file mode 100644 index 000000000..bb032c348 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000273.html @@ -0,0 +1,84 @@ + + + + [Mageia-sysadm] [151] add 'timezone' for 'champagne' + + + + + + + + + +

[Mageia-sysadm] [151] add 'timezone' for 'champagne'

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 16:54:24 CET 2010 +

+
+ +
Revision: 151
+Author:   dams
+Date:     2010-11-05 16:54:24 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+add 'timezone' for 'champagne'
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-05 15:51:23 UTC (rev 150)
++++ puppet/manifests/nodes.pp	2010-11-05 15:54:24 UTC (rev 151)
+@@ -125,6 +125,7 @@
+ #
+ 	include default_mageia_server
+     include apache::base
++    timezone::timezone { "Europe/Paris": }
+     #include postfix
+     include blog
+ }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/64b6559a/attachment.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000274.html b/zarb-ml/mageia-sysadm/2010-November/000274.html new file mode 100644 index 000000000..7809d064b --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000274.html @@ -0,0 +1,84 @@ + + + + [Mageia-sysadm] [152] fix 'cron' + + + + + + + + + +

[Mageia-sysadm] [152] fix 'cron'

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 17:04:11 CET 2010 +

+
+ +
Revision: 152
+Author:   dams
+Date:     2010-11-05 17:04:11 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+fix 'cron'
+
+Modified Paths:
+--------------
+    puppet/modules/blog/manifests/init.pp
+
+Modified: puppet/modules/blog/manifests/init.pp
+===================================================================
+--- puppet/modules/blog/manifests/init.pp	2010-11-05 15:54:24 UTC (rev 151)
++++ puppet/modules/blog/manifests/init.pp	2010-11-05 16:04:11 UTC (rev 152)
+@@ -23,7 +23,6 @@
+         }
+ 	cron { blog:
+         	user => blog,
+-        	hour => 0,
+         	minute => 15,
+         	command => "/usr/local/bin/check_new-blog-post.sh",
+         	require => File["check_new-blog-post"],
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/73b0eff8/attachment-0001.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000275.html b/zarb-ml/mageia-sysadm/2010-November/000275.html new file mode 100644 index 000000000..98c5566cb --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000275.html @@ -0,0 +1,84 @@ + + + + [Mageia-sysadm] [153] fix typo :p + + + + + + + + + +

[Mageia-sysadm] [153] fix typo :p

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 17:07:12 CET 2010 +

+
+ +
Revision: 153
+Author:   dams
+Date:     2010-11-05 17:07:12 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+fix typo :p
+
+Modified Paths:
+--------------
+    puppet/modules/blog/manifests/init.pp
+
+Modified: puppet/modules/blog/manifests/init.pp
+===================================================================
+--- puppet/modules/blog/manifests/init.pp	2010-11-05 16:04:11 UTC (rev 152)
++++ puppet/modules/blog/manifests/init.pp	2010-11-05 16:07:12 UTC (rev 153)
+@@ -25,6 +25,6 @@
+         	user => blog,
+         	minute => 15,
+         	command => "/usr/local/bin/check_new-blog-post.sh",
+-        	require => File["check_new-blog-post"],
++        	require => File["check_new-blog-post"]
+     	}
+ }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/147ae895/attachment.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000276.html b/zarb-ml/mageia-sysadm/2010-November/000276.html new file mode 100644 index 000000000..dc22b67bf --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000276.html @@ -0,0 +1,148 @@ + + + + [Mageia-sysadm] [154] - add puppet module, based on my own setup + + + + + + + + + +

[Mageia-sysadm] [154] - add puppet module, based on my own setup

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 19:20:23 CET 2010 +

+
+ +
Revision: 154
+Author:   misc
+Date:     2010-11-05 19:20:22 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+- add puppet module, based on my own setup
+
+Added Paths:
+-----------
+    puppet/modules/puppet/
+    puppet/modules/puppet/manifests/
+    puppet/modules/puppet/manifests/init.pp
+    puppet/modules/puppet/templates/
+    puppet/modules/puppet/templates/puppet.conf
+
+Added: puppet/modules/puppet/manifests/init.pp
+===================================================================
+--- puppet/modules/puppet/manifests/init.pp	                        (rev 0)
++++ puppet/modules/puppet/manifests/init.pp	2010-11-05 18:20:22 UTC (rev 154)
+@@ -0,0 +1,34 @@
++
++class puppet {
++    class client {
++        package { puppet:
++            ensure => installed
++        }
++    
++        service { puppet:
++            ensure => running,
++            subscribe => [ Package[puppet], File["/etc/puppet/puppet.conf"]]
++        }
++
++        file { "/etc/puppet/puppet.conf":
++            ensure => present,
++            owner => root,
++            group => root,
++            mode => 644,
++            content => template("puppet/puppet.conf"),
++            require => Package[puppet]
++        }
++    }
++
++    class master inherits client {
++        package { puppet-server:
++            ensure => installed
++        }
++    
++        service { puppetmaster:
++            ensure => running,
++            path => "/etc/init.d/puppetmaster",
++            subscribe => [ Package[puppet-server], File["/etc/puppet/puppet.conf"]]
++        }
++    }
++}
+
+Added: puppet/modules/puppet/templates/puppet.conf
+===================================================================
+--- puppet/modules/puppet/templates/puppet.conf	                        (rev 0)
++++ puppet/modules/puppet/templates/puppet.conf	2010-11-05 18:20:22 UTC (rev 154)
+@@ -0,0 +1,27 @@
++[main]
++    # The Puppet log directory.
++    # The default value is '$vardir/log'.
++    logdir = /var/log/puppet
++
++    # Where Puppet PID files are kept.
++    # The default value is '$vardir/run'.
++    rundir = /var/run/puppet
++
++    # Where SSL certificates are kept.
++    # The default value is '$confdir/ssl'.
++    ssldir = $vardir/ssl
++
++[puppetd]
++    server = puppetmaster.<%= domain %>
++
++    # The file in which puppetd stores a list of the classes
++    # associated with the retrieved configuratiion.  Can be loaded in
++    # the separate ``puppet`` executable using the ``--loadclasses``
++    # option.
++    # The default value is '$confdir/classes.txt'.
++    classfile = $vardir/classes.txt
++
++    # Where puppetd caches the local configuration.  An
++    # extension indicating the cache format is added automatically.
++    # The default value is '$confdir/localconfig'.
++    localconfig = $vardir/localconfig
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/f93ae7f2/attachment.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000277.html b/zarb-ml/mageia-sysadm/2010-November/000277.html new file mode 100644 index 000000000..d7557a473 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000277.html @@ -0,0 +1,117 @@ + + + + [Mageia-sysadm] [155] - deploy puppet on puppet nodes + + + + + + + + + +

[Mageia-sysadm] [155] - deploy puppet on puppet nodes

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 19:20:55 CET 2010 +

+
+ +
Revision: 155
+Author:   misc
+Date:     2010-11-05 19:20:55 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+- deploy puppet on puppet nodes
+
+Modified Paths:
+--------------
+    puppet/manifests/common.pp
+    puppet/manifests/nodes.pp
+
+Modified: puppet/manifests/common.pp
+===================================================================
+--- puppet/manifests/common.pp	2010-11-05 18:20:22 UTC (rev 154)
++++ puppet/manifests/common.pp	2010-11-05 18:20:55 UTC (rev 155)
+@@ -82,13 +82,12 @@
+ class default_mageia_server {
+     include timezone
+ 
+-# to include later
+     include openssh
+-#   include puppet
+     include default_ssh_root_key
+     include base_packages
+     include ntp
+     include postfix::simple_relay
+     include urpmi_update
++    include puppet::client
+ }
+ 
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-05 18:20:22 UTC (rev 154)
++++ puppet/manifests/nodes.pp	2010-11-05 18:20:55 UTC (rev 155)
+@@ -18,7 +18,7 @@
+     include openldap::master 
+     include subversion::client
+     include subversion::server
+-    
++    include puppet::master
+ 
+     subversion::snapshot { "/etc/puppet":
+         source => "svn://svn.mageia.org/adm/puppet/"
+@@ -33,10 +33,6 @@
+         recurse => true
+     }
+ 
+-    package {"puppet-server":
+-        ensure => "installed"
+-    }
+-
+     package {"task-bs-cluster-main":
+         ensure => "installed"
+     }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/31a49f42/attachment.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000278.html b/zarb-ml/mageia-sysadm/2010-November/000278.html new file mode 100644 index 000000000..8a5332095 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000278.html @@ -0,0 +1,114 @@ + + + + [Mageia-sysadm] [156] move extdata to the module + + + + + + + + + +

[Mageia-sysadm] [156] move extdata to the module

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 19:20:57 CET 2010 +

+
+ +
Revision: 156
+Author:   misc
+Date:     2010-11-05 19:20:57 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+move extdata to the module
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+    puppet/modules/puppet/manifests/init.pp
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-05 18:20:55 UTC (rev 155)
++++ puppet/manifests/nodes.pp	2010-11-05 18:20:57 UTC (rev 156)
+@@ -23,16 +23,6 @@
+     subversion::snapshot { "/etc/puppet":
+         source => "svn://svn.mageia.org/adm/puppet/"
+     }
+-
+-    file { "extdata":
+-        path => "/etc/puppet/extdata",
+-        ensure => directory,
+-        owner => puppet,
+-        group => puppet,
+-        mode => 700,
+-        recurse => true
+-    }
+-
+     package {"task-bs-cluster-main":
+         ensure => "installed"
+     }
+
+Modified: puppet/modules/puppet/manifests/init.pp
+===================================================================
+--- puppet/modules/puppet/manifests/init.pp	2010-11-05 18:20:55 UTC (rev 155)
++++ puppet/modules/puppet/manifests/init.pp	2010-11-05 18:20:57 UTC (rev 156)
+@@ -30,5 +30,14 @@
+             path => "/etc/init.d/puppetmaster",
+             subscribe => [ Package[puppet-server], File["/etc/puppet/puppet.conf"]]
+         }
++
++        file { "extdata":
++            path => "/etc/puppet/extdata",
++            ensure => directory,
++            owner => puppet,
++            group => puppet,
++            mode => 700,
++            recurse => true
++        }
+     }
+ }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/f1f409db/attachment-0001.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000279.html b/zarb-ml/mageia-sysadm/2010-November/000279.html new file mode 100644 index 000000000..f75780d7d --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000279.html @@ -0,0 +1,84 @@ + + + + [Mageia-sysadm] [157] - add default setting for exec class + + + + + + + + + +

[Mageia-sysadm] [157] - add default setting for exec class

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 19:20:58 CET 2010 +

+
+ +
Revision: 157
+Author:   misc
+Date:     2010-11-05 19:20:58 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+- add default setting for exec class
+
+Modified Paths:
+--------------
+    puppet/manifests/common.pp
+
+Modified: puppet/manifests/common.pp
+===================================================================
+--- puppet/manifests/common.pp	2010-11-05 18:20:57 UTC (rev 156)
++++ puppet/manifests/common.pp	2010-11-05 18:20:58 UTC (rev 157)
+@@ -1,4 +1,7 @@
++# to not repeat the setting everywhere 
++Exec { path => "/usr/bin:/bin:/usr/sbin:/sbin:/usr/local/bin:/usr/local/sbin/" }
+ 
++
+ class base_packages {
+     # packages installed everywhere 
+     # asked by misc : screen, vim-enhanced, htop, lsof, tcpdump, less
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/9b49ab17/attachment.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000280.html b/zarb-ml/mageia-sysadm/2010-November/000280.html new file mode 100644 index 000000000..281a1f626 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000280.html @@ -0,0 +1,86 @@ + + + + [Mageia-sysadm] [158] - try to be sure that svn::client is installed if needed + + + + + + + + + +

[Mageia-sysadm] [158] - try to be sure that svn::client is installed if needed

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 19:20:59 CET 2010 +

+
+ +
Revision: 158
+Author:   misc
+Date:     2010-11-05 19:20:59 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+- try to be sure that svn::client is installed if needed
+
+Modified Paths:
+--------------
+    puppet/modules/subversion/manifests/init.pp
+
+Modified: puppet/modules/subversion/manifests/init.pp
+===================================================================
+--- puppet/modules/subversion/manifests/init.pp	2010-11-05 18:20:58 UTC (rev 157)
++++ puppet/modules/subversion/manifests/init.pp	2010-11-05 18:20:59 UTC (rev 158)
+@@ -50,6 +50,9 @@
+     # TODO ensure that subversion ishere
+     #      allow to configure the snapshot refresh interval
+     define snapshot($source, $refresh = '*/5', $user = 'root')  {
++
++        include svn::client
++
+         exec { "/usr/bin/svn co $source $name":
+             creates => $name,           
+             user => $user,  
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/91647bfd/attachment.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000281.html b/zarb-ml/mageia-sysadm/2010-November/000281.html new file mode 100644 index 000000000..05c9be86e --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000281.html @@ -0,0 +1,82 @@ + + + + [Mageia-sysadm] [159] do not hardcode mageia.org in mga-mirrors config + + + + + + + + + +

[Mageia-sysadm] [159] do not hardcode mageia.org in mga-mirrors config

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 19:21:00 CET 2010 +

+
+ +
Revision: 159
+Author:   misc
+Date:     2010-11-05 19:21:00 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+do not hardcode mageia.org in mga-mirrors config
+
+Modified Paths:
+--------------
+    puppet/modules/mga-mirrors/templates/mga-mirrors.ini
+
+Modified: puppet/modules/mga-mirrors/templates/mga-mirrors.ini
+===================================================================
+--- puppet/modules/mga-mirrors/templates/mga-mirrors.ini	2010-11-05 18:20:59 UTC (rev 158)
++++ puppet/modules/mga-mirrors/templates/mga-mirrors.ini	2010-11-05 18:21:00 UTC (rev 159)
+@@ -1,4 +1,4 @@
+ [db]
+-pgconn=host=pgsql.mageia.org;dbname=mirrors
++pgconn=host=pgsql.<%= domaine %>;dbname=mirrors
+ user=mirrors
+ password=<%= password %>
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/d7882c49/attachment.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000282.html b/zarb-ml/mageia-sysadm/2010-November/000282.html new file mode 100644 index 000000000..5698451b8 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000282.html @@ -0,0 +1,82 @@ + + + + [Mageia-sysadm] [160] - oups, fix typo + + + + + + + + + +

[Mageia-sysadm] [160] - oups, fix typo

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 19:26:22 CET 2010 +

+
+ +
Revision: 160
+Author:   misc
+Date:     2010-11-05 19:26:22 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+- oups, fix typo
+
+Modified Paths:
+--------------
+    puppet/modules/mga-mirrors/templates/mga-mirrors.ini
+
+Modified: puppet/modules/mga-mirrors/templates/mga-mirrors.ini
+===================================================================
+--- puppet/modules/mga-mirrors/templates/mga-mirrors.ini	2010-11-05 18:21:00 UTC (rev 159)
++++ puppet/modules/mga-mirrors/templates/mga-mirrors.ini	2010-11-05 18:26:22 UTC (rev 160)
+@@ -1,4 +1,4 @@
+ [db]
+-pgconn=host=pgsql.<%= domaine %>;dbname=mirrors
++pgconn=host=pgsql.<%= domain %>;dbname=mirrors
+ user=mirrors
+ password=<%= password %>
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/109049cb/attachment.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000283.html b/zarb-ml/mageia-sysadm/2010-November/000283.html new file mode 100644 index 000000000..a16594593 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000283.html @@ -0,0 +1,85 @@ + + + + [Mageia-sysadm] [161] - fix wrong class name + + + + + + + + + +

[Mageia-sysadm] [161] - fix wrong class name

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 19:28:13 CET 2010 +

+
+ +
Revision: 161
+Author:   misc
+Date:     2010-11-05 19:28:12 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+- fix wrong class name
+
+Modified Paths:
+--------------
+    puppet/modules/subversion/manifests/init.pp
+
+Modified: puppet/modules/subversion/manifests/init.pp
+===================================================================
+--- puppet/modules/subversion/manifests/init.pp	2010-11-05 18:26:22 UTC (rev 160)
++++ puppet/modules/subversion/manifests/init.pp	2010-11-05 18:28:12 UTC (rev 161)
+@@ -51,7 +51,7 @@
+     #      allow to configure the snapshot refresh interval
+     define snapshot($source, $refresh = '*/5', $user = 'root')  {
+ 
+-        include svn::client
++        include subversion::client
+ 
+         exec { "/usr/bin/svn co $source $name":
+             creates => $name,           
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/3b54cc74/attachment-0001.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000284.html b/zarb-ml/mageia-sysadm/2010-November/000284.html new file mode 100644 index 000000000..372fdd1d9 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000284.html @@ -0,0 +1,104 @@ + + + + [Mageia-sysadm] [162] - replaced by puppet module + + + + + + + + + +

[Mageia-sysadm] [162] - replaced by puppet module

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 19:28:50 CET 2010 +

+
+ +
Revision: 162
+Author:   misc
+Date:     2010-11-05 19:28:49 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+- replaced by puppet module
+
+Removed Paths:
+-------------
+    puppet/puppet.conf
+
+Deleted: puppet/puppet.conf
+===================================================================
+--- puppet/puppet.conf	2010-11-05 18:28:12 UTC (rev 161)
++++ puppet/puppet.conf	2010-11-05 18:28:49 UTC (rev 162)
+@@ -1,27 +0,0 @@
+-[main]
+-    # The Puppet log directory.
+-    # The default value is '$vardir/log'.
+-    logdir = /var/log/puppet
+-
+-    # Where Puppet PID files are kept.
+-    # The default value is '$vardir/run'.
+-    rundir = /var/run/puppet
+-
+-    # Where SSL certificates are kept.
+-    # The default value is '$confdir/ssl'.
+-    ssldir = $vardir/ssl
+-
+-[puppetd]
+-    server = puppetmaster.mageia.org
+-
+-    # The file in which puppetd stores a list of the classes
+-    # associated with the retrieved configuratiion.  Can be loaded in
+-    # the separate ``puppet`` executable using the ``--loadclasses``
+-    # option.
+-    # The default value is '$confdir/classes.txt'.
+-    classfile = $vardir/classes.txt
+-
+-    # Where puppetd caches the local configuration.  An
+-    # extension indicating the cache format is added automatically.
+-    # The default value is '$confdir/localconfig'.
+-    localconfig = $vardir/localconfig
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/c3625e6e/attachment.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000285.html b/zarb-ml/mageia-sysadm/2010-November/000285.html new file mode 100644 index 000000000..af14d6139 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000285.html @@ -0,0 +1,86 @@ + + + + [Mageia-sysadm] [163] - add configuration for puppetmaster name + + + + + + + + + +

[Mageia-sysadm] [163] - add configuration for puppetmaster name

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 19:32:45 CET 2010 +

+
+ +
Revision: 163
+Author:   misc
+Date:     2010-11-05 19:32:45 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+- add configuration for puppetmaster name
+
+Modified Paths:
+--------------
+    puppet/modules/puppet/templates/puppet.conf
+
+Modified: puppet/modules/puppet/templates/puppet.conf
+===================================================================
+--- puppet/modules/puppet/templates/puppet.conf	2010-11-05 18:28:49 UTC (rev 162)
++++ puppet/modules/puppet/templates/puppet.conf	2010-11-05 18:32:45 UTC (rev 163)
+@@ -11,6 +11,9 @@
+     # The default value is '$confdir/ssl'.
+     ssldir = $vardir/ssl
+ 
++[puppetmasterd] 
++    certname = puppetmaster.<%= domain %>
++
+ [puppetd]
+     server = puppetmaster.<%= domain %>
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/93d9a9b5/attachment.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000286.html b/zarb-ml/mageia-sysadm/2010-November/000286.html new file mode 100644 index 000000000..b433c54cf --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000286.html @@ -0,0 +1,89 @@ + + + + [Mageia-sysadm] [164] - migrate to the new config file format + + + + + + + + + +

[Mageia-sysadm] [164] - migrate to the new config file format

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 19:34:23 CET 2010 +

+
+ +
Revision: 164
+Author:   misc
+Date:     2010-11-05 19:34:23 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+- migrate to the new config file format
+
+Modified Paths:
+--------------
+    puppet/modules/puppet/templates/puppet.conf
+
+Modified: puppet/modules/puppet/templates/puppet.conf
+===================================================================
+--- puppet/modules/puppet/templates/puppet.conf	2010-11-05 18:32:45 UTC (rev 163)
++++ puppet/modules/puppet/templates/puppet.conf	2010-11-05 18:34:23 UTC (rev 164)
+@@ -11,10 +11,10 @@
+     # The default value is '$confdir/ssl'.
+     ssldir = $vardir/ssl
+ 
+-[puppetmasterd] 
++[master] 
+     certname = puppetmaster.<%= domain %>
+ 
+-[puppetd]
++[agent]
+     server = puppetmaster.<%= domain %>
+ 
+     # The file in which puppetd stores a list of the classes
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/72f886a0/attachment.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000287.html b/zarb-ml/mageia-sysadm/2010-November/000287.html new file mode 100644 index 000000000..598c3e291 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000287.html @@ -0,0 +1,104 @@ + + + + [Mageia-sysadm] [165] - use mv -f instead of cp + rm ( shorter, cleaner ) + + + + + + + + + +

[Mageia-sysadm] [165] - use mv -f instead of cp + rm ( shorter, cleaner )

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 19:46:09 CET 2010 +

+
+ +
Revision: 165
+Author:   misc
+Date:     2010-11-05 19:46:09 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+- use mv -f instead of cp + rm ( shorter, cleaner )
+- move file creation later rather than creating it and removing it after 
+
+Modified Paths:
+--------------
+    puppet/modules/blog/templates/check_new-blog-post.sh
+
+Modified: puppet/modules/blog/templates/check_new-blog-post.sh
+===================================================================
+--- puppet/modules/blog/templates/check_new-blog-post.sh	2010-11-05 18:34:23 UTC (rev 164)
++++ puppet/modules/blog/templates/check_new-blog-post.sh	2010-11-05 18:46:09 UTC (rev 165)
+@@ -3,16 +3,16 @@
+ # Initialization
+ PATH_TO_FILE="/var/lib/blog"
+ /usr/bin/wget -qO $PATH_TO_FILE"/RSS_new" http://blog.mageia.org/?feed=rss2
+-/bin/date +"%d:%m:%Y %H:%M" > $PATH_TO_FILE"/last_check"
+ 
+ # Check if RSS_old exists
+ if [ ! -f $PATH_TO_FILE"/RSS_old" ]
+ 	then
+-		/bin/cp $PATH_TO_FILE"/RSS_new" $PATH_TO_FILE"/RSS_old"
+-		/bin/rm -rf $PATH_TO_FILE"/RSS_new" $PATH_TO_FILE"/last_check"
++		/bin/mv -f $PATH_TO_FILE"/RSS_new" $PATH_TO_FILE"/RSS_old"
+ 		exit 1
+ fi
+ 
++/bin/date +"%d:%m:%Y %H:%M" > $PATH_TO_FILE"/last_check"
++
+ # Check if a new blog post on EN needs to be translated on other blogs
+ tmp_new=$(/bin/grep 'lastBuildDate' $PATH_TO_FILE"/RSS_new")
+ tmp_old=$(/bin/grep 'lastBuildDate' $PATH_TO_FILE"/RSS_old")
+@@ -28,5 +28,4 @@
+ fi
+ 
+ # Clean tmp files and copy RSS_new to RSS_old
+-/bin/cp $PATH_TO_FILE"/RSS_new" $PATH_TO_FILE"/RSS_old"
+-/bin/rm -rf $PATH_TO_FILE"/RSS_new"
++/bin/mv -f $PATH_TO_FILE"/RSS_new" $PATH_TO_FILE"/RSS_old"
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/419db9fc/attachment.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000288.html b/zarb-ml/mageia-sysadm/2010-November/000288.html new file mode 100644 index 000000000..f905bb313 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000288.html @@ -0,0 +1,100 @@ + + + + [Mageia-sysadm] [166] - enable reporting, as explained on http://projects.puppetlabs.com/ projects/1/wiki/Reports_And_Reporting + + + + + + + + + +

[Mageia-sysadm] [166] - enable reporting, as explained on http://projects.puppetlabs.com/ projects/1/wiki/Reports_And_Reporting

+ root at mageia.org + root at mageia.org +
+ Fri Nov 5 19:58:30 CET 2010 +

+
+ +
Revision: 166
+Author:   misc
+Date:     2010-11-05 19:58:30 +0100 (Fri, 05 Nov 2010)
+Log Message:
+-----------
+- enable reporting, as explained on http://projects.puppetlabs.com/projects/1/wiki/Reports_And_Reporting
+
+Modified Paths:
+--------------
+    puppet/modules/puppet/templates/puppet.conf
+
+Added Paths:
+-----------
+    puppet/modules/puppet/templates/tagmail.conf
+
+Modified: puppet/modules/puppet/templates/puppet.conf
+===================================================================
+--- puppet/modules/puppet/templates/puppet.conf	2010-11-05 18:46:09 UTC (rev 165)
++++ puppet/modules/puppet/templates/puppet.conf	2010-11-05 18:58:30 UTC (rev 166)
+@@ -13,10 +13,12 @@
+ 
+ [master] 
+     certname = puppetmaster.<%= domain %>
++    reports = tagmail
+ 
+ [agent]
+     server = puppetmaster.<%= domain %>
+ 
++    report = true
+     # The file in which puppetd stores a list of the classes
+     # associated with the retrieved configuratiion.  Can be loaded in
+     # the separate ``puppet`` executable using the ``--loadclasses``
+
+Added: puppet/modules/puppet/templates/tagmail.conf
+===================================================================
+--- puppet/modules/puppet/templates/tagmail.conf	                        (rev 0)
++++ puppet/modules/puppet/templates/tagmail.conf	2010-11-05 18:58:30 UTC (rev 166)
+@@ -0,0 +1 @@
++err: mageia-sysadm@<%= domain %>
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101105/c883fba2/attachment-0001.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000289.html b/zarb-ml/mageia-sysadm/2010-November/000289.html new file mode 100644 index 000000000..772dc8ac9 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000289.html @@ -0,0 +1,119 @@ + + + + [Mageia-sysadm] [167] - add a define to ease catalyst application deployement + + + + + + + + + +

[Mageia-sysadm] [167] - add a define to ease catalyst application deployement

+ root at mageia.org + root at mageia.org +
+ Sat Nov 6 00:29:17 CET 2010 +

+
+ +
Revision: 167
+Author:   misc
+Date:     2010-11-06 00:29:16 +0100 (Sat, 06 Nov 2010)
+Log Message:
+-----------
+- add a define to ease catalyst application deployement
+
+Modified Paths:
+--------------
+    puppet/modules/apache/manifests/init.pp
+
+Added Paths:
+-----------
+    puppet/modules/apache/templates/vhost_catalyst_app.conf
+
+Modified: puppet/modules/apache/manifests/init.pp
+===================================================================
+--- puppet/modules/apache/manifests/init.pp	2010-11-05 18:58:30 UTC (rev 166)
++++ puppet/modules/apache/manifests/init.pp	2010-11-05 23:29:16 UTC (rev 167)
+@@ -53,4 +53,19 @@
+             ensure => installed
+         }
+     }
++
++    define vhost_catalyst_app($script, $process = 4, $force_ssl = false) {
++
++        include apache::mod_fastcgi 
++
++        file { "$name.conf":
++            path => "/etc/httpd/conf/vhosts.d/$name.conf",
++            ensure => "present",
++            owner => root,
++            group => root,
++            mode => 644,
++            notify => Service['apache'],
++            content => template("apache/vhost_catalyst_app.conf")
++        }
++    }
+ }
+
+Added: puppet/modules/apache/templates/vhost_catalyst_app.conf
+===================================================================
+--- puppet/modules/apache/templates/vhost_catalyst_app.conf	                        (rev 0)
++++ puppet/modules/apache/templates/vhost_catalyst_app.conf	2010-11-05 23:29:16 UTC (rev 167)
+@@ -0,0 +1,13 @@
++<VirtualHost *:80>
++        ServerName <%= vhost %>
++        # Serve static content directly
++        DocumentRoot  /dev/null
++
++        Alias <%= script %>/ /
++        FastCgiServer <%= script %> -processes <%= process %> -idle-timeout 30
++
++        <Location />
++            Allow from all
++        </Location>
++</VirtualHost>
++
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101106/7353c0c4/attachment.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000290.html b/zarb-ml/mageia-sysadm/2010-November/000290.html new file mode 100644 index 000000000..d0ede1268 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000290.html @@ -0,0 +1,181 @@ + + + + [Mageia-sysadm] [168] - refactor catalyst application config using a common class ( catdap is next ) + + + + + + + + + +

[Mageia-sysadm] [168] - refactor catalyst application config using a common class ( catdap is next )

+ root at mageia.org + root at mageia.org +
+ Sat Nov 6 00:41:37 CET 2010 +

+
+ +
Revision: 168
+Author:   misc
+Date:     2010-11-06 00:41:36 +0100 (Sat, 06 Nov 2010)
+Log Message:
+-----------
+- refactor catalyst application config using a common class ( catdap is next )
+
+Modified Paths:
+--------------
+    puppet/modules/epoll/manifests/init.pp
+    puppet/modules/mga-mirrors/manifests/init.pp
+
+Removed Paths:
+-------------
+    puppet/modules/epoll/templates/epoll_vhost.conf
+    puppet/modules/mga-mirrors/templates/mirrors_vhost.conf
+
+Modified: puppet/modules/epoll/manifests/init.pp
+===================================================================
+--- puppet/modules/epoll/manifests/init.pp	2010-11-05 23:29:16 UTC (rev 167)
++++ puppet/modules/epoll/manifests/init.pp	2010-11-05 23:41:36 UTC (rev 168)
+@@ -1,23 +1,15 @@
+ class epoll {
+ 
+-    include apache::mod_fastcgi
+-
+     $vhost = "epoll.$domain"
++
+     package { 'Epoll':
+         ensure => installed
+     }
+-
+-    # add a apache vhost
+-    file { "$vhost.conf":
+-        path => "/etc/httpd/conf/vhosts.d/$vhost.conf",
+-        ensure => "present",
+-        owner => root,
+-        group => root,
+-        mode => 644,
+-        notify => Service['apache'],
+-        content => template("epoll/epoll_vhost.conf")
++    
++    apache::vhost_catalyst_app { $vhost:
++        script => /usr/bin/epoll_fastcgi.pl 
+     }
+- 
++     
+     $password = extlookup("epoll_password")
+  
+     file { "epoll.yml": 
+
+Deleted: puppet/modules/epoll/templates/epoll_vhost.conf
+===================================================================
+--- puppet/modules/epoll/templates/epoll_vhost.conf	2010-11-05 23:29:16 UTC (rev 167)
++++ puppet/modules/epoll/templates/epoll_vhost.conf	2010-11-05 23:41:36 UTC (rev 168)
+@@ -1,13 +0,0 @@
+-<VirtualHost *:80>
+-        ServerName <%= vhost %>
+-        # Serve static content directly
+-        DocumentRoot  /dev/null
+-
+-        Alias / /usr/bin/epoll_fastcgi.pl/
+-        FastCgiServer /usr/bin/epoll_fastcgi.pl -processes 4 -idle-timeout 30
+-
+-        <Location />
+-            Allow from all
+-        </Location>
+-</VirtualHost>
+-
+
+Modified: puppet/modules/mga-mirrors/manifests/init.pp
+===================================================================
+--- puppet/modules/mga-mirrors/manifests/init.pp	2010-11-05 23:29:16 UTC (rev 167)
++++ puppet/modules/mga-mirrors/manifests/init.pp	2010-11-05 23:41:36 UTC (rev 168)
+@@ -2,23 +2,14 @@
+     
+     $vhost = "mirrors.$domain"
+ 
+-    include apache::mod_fastcgi
+-
+     package { 'mga-mirrors':
+         ensure => installed
+     }
+ 
+-    # add a apache vhost
+-    file { "$vhost.conf":
+-        path => "/etc/httpd/conf/vhosts.d/$vhost.conf",
+-        ensure => "present",
+-        owner => root,
+-        group => root,
+-        mode => 644,
+-        notify => Service['apache'],
+-        content => template("mga-mirrors/mirrors_vhost.conf")
++    apache::vhost_catalyst_app { $vhost:
++        script => /usr/bin/mga_mirrors_fastcgi.pl 
+     }
+- 
++
+     $password = extlookup("mga_mirror_password")
+  
+     file { "mga-mirrors.ini": 
+
+Deleted: puppet/modules/mga-mirrors/templates/mirrors_vhost.conf
+===================================================================
+--- puppet/modules/mga-mirrors/templates/mirrors_vhost.conf	2010-11-05 23:29:16 UTC (rev 167)
++++ puppet/modules/mga-mirrors/templates/mirrors_vhost.conf	2010-11-05 23:41:36 UTC (rev 168)
+@@ -1,13 +0,0 @@
+-<VirtualHost *:80>
+-        ServerName <%= vhost %>
+-        # Serve static content directly
+-        DocumentRoot  /dev/null
+-
+-        Alias / /usr/bin/mga_mirrors_fastcgi.pl/
+-        FastCgiServer /usr/bin/mga_mirrors_fastcgi.pl -processes 4 -idle-timeout 30
+-
+-        <Location />
+-            Allow from all
+-        </Location>
+-</VirtualHost>
+-
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101106/d6a616a0/attachment.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000291.html b/zarb-ml/mageia-sysadm/2010-November/000291.html new file mode 100644 index 000000000..05028135e --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000291.html @@ -0,0 +1,100 @@ + + + + [Mageia-sysadm] [169] - oups, fix error + + + + + + + + + +

[Mageia-sysadm] [169] - oups, fix error

+ root at mageia.org + root at mageia.org +
+ Sat Nov 6 00:45:28 CET 2010 +

+
+ +
Revision: 169
+Author:   misc
+Date:     2010-11-06 00:45:28 +0100 (Sat, 06 Nov 2010)
+Log Message:
+-----------
+- oups, fix error
+
+Modified Paths:
+--------------
+    puppet/modules/epoll/manifests/init.pp
+    puppet/modules/mga-mirrors/manifests/init.pp
+
+Modified: puppet/modules/epoll/manifests/init.pp
+===================================================================
+--- puppet/modules/epoll/manifests/init.pp	2010-11-05 23:41:36 UTC (rev 168)
++++ puppet/modules/epoll/manifests/init.pp	2010-11-05 23:45:28 UTC (rev 169)
+@@ -7,7 +7,7 @@
+     }
+     
+     apache::vhost_catalyst_app { $vhost:
+-        script => /usr/bin/epoll_fastcgi.pl 
++        script => "/usr/bin/epoll_fastcgi.pl" 
+     }
+      
+     $password = extlookup("epoll_password")
+
+Modified: puppet/modules/mga-mirrors/manifests/init.pp
+===================================================================
+--- puppet/modules/mga-mirrors/manifests/init.pp	2010-11-05 23:41:36 UTC (rev 168)
++++ puppet/modules/mga-mirrors/manifests/init.pp	2010-11-05 23:45:28 UTC (rev 169)
+@@ -7,7 +7,7 @@
+     }
+ 
+     apache::vhost_catalyst_app { $vhost:
+-        script => /usr/bin/mga_mirrors_fastcgi.pl 
++        script => "/usr/bin/mga_mirrors_fastcgi.pl" 
+     }
+ 
+     $password = extlookup("mga_mirror_password")
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101106/47715b2c/attachment.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000292.html b/zarb-ml/mageia-sysadm/2010-November/000292.html new file mode 100644 index 000000000..1568584b8 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000292.html @@ -0,0 +1,85 @@ + + + + [Mageia-sysadm] [170] - oups again, fix the order of arguments + + + + + + + + + +

[Mageia-sysadm] [170] - oups again, fix the order of arguments

+ root at mageia.org + root at mageia.org +
+ Sat Nov 6 00:49:19 CET 2010 +

+
+ +
Revision: 170
+Author:   misc
+Date:     2010-11-06 00:49:19 +0100 (Sat, 06 Nov 2010)
+Log Message:
+-----------
+- oups again, fix the order of arguments
+
+Modified Paths:
+--------------
+    puppet/modules/apache/templates/vhost_catalyst_app.conf
+
+Modified: puppet/modules/apache/templates/vhost_catalyst_app.conf
+===================================================================
+--- puppet/modules/apache/templates/vhost_catalyst_app.conf	2010-11-05 23:45:28 UTC (rev 169)
++++ puppet/modules/apache/templates/vhost_catalyst_app.conf	2010-11-05 23:49:19 UTC (rev 170)
+@@ -3,7 +3,7 @@
+         # Serve static content directly
+         DocumentRoot  /dev/null
+ 
+-        Alias <%= script %>/ /
++        Alias / <%= script %>/
+         FastCgiServer <%= script %> -processes <%= process %> -idle-timeout 30
+ 
+         <Location />
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101106/a020a854/attachment-0001.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000293.html b/zarb-ml/mageia-sysadm/2010-November/000293.html new file mode 100644 index 000000000..202407d9a --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000293.html @@ -0,0 +1,88 @@ + + + + [Mageia-sysadm] [171] - allow transifex user to connect to transifex database + + + + + + + + + +

[Mageia-sysadm] [171] - allow transifex user to connect to transifex database

+ root at mageia.org + root at mageia.org +
+ Sat Nov 6 08:10:15 CET 2010 +

+
+ +
Revision: 171
+Author:   nanardon
+Date:     2010-11-06 08:10:14 +0100 (Sat, 06 Nov 2010)
+Log Message:
+-----------
+- allow transifex user to connect to transifex database
+
+Modified Paths:
+--------------
+    puppet/modules/postgresql/templates/pg_hba.conf
+
+Modified: puppet/modules/postgresql/templates/pg_hba.conf
+===================================================================
+--- puppet/modules/postgresql/templates/pg_hba.conf	2010-11-05 23:49:19 UTC (rev 170)
++++ puppet/modules/postgresql/templates/pg_hba.conf	2010-11-06 07:10:14 UTC (rev 171)
+@@ -83,7 +83,10 @@
+ host   epoll            epoll           2a02:2178:2:7::2/128    md5
+ host   mirrors          mirrors         127.0.0.1/32            md5
+ host   mirrors          mirrors         212.85.158.146/32       md5
+-host   mirrors          mirrors           2a02:2178:2:7::2/128    md5
++host   mirrors          mirrors         2a02:2178:2:7::2/128    md5
++host   transifex        transifex       127.0.0.1/32            md5
++host   transifex        transifex       212.85.158.146/32       md5
++host   transifex        transifex       2a02:2178:2:7::2/128    md5
+ 
+ # "local" is for Unix domain socket connections only
+ local   all             all                                     ident
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101106/13515153/attachment.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000294.html b/zarb-ml/mageia-sysadm/2010-November/000294.html new file mode 100644 index 000000000..b11335d04 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000294.html @@ -0,0 +1,143 @@ + + + + [Mageia-sysadm] [172] - manage pg_ident.conf for postgresql + + + + + + + + + +

[Mageia-sysadm] [172] - manage pg_ident.conf for postgresql

+ root at mageia.org + root at mageia.org +
+ Sat Nov 6 08:22:44 CET 2010 +

+
+ +
Revision: 172
+Author:   nanardon
+Date:     2010-11-06 08:22:44 +0100 (Sat, 06 Nov 2010)
+Log Message:
+-----------
+- manage pg_ident.conf for postgresql
+
+Modified Paths:
+--------------
+    puppet/modules/postgresql/manifests/init.pp
+
+Added Paths:
+-----------
+    puppet/modules/postgresql/templates/pg_ident.conf
+
+Modified: puppet/modules/postgresql/manifests/init.pp
+===================================================================
+--- puppet/modules/postgresql/manifests/init.pp	2010-11-06 07:10:14 UTC (rev 171)
++++ puppet/modules/postgresql/manifests/init.pp	2010-11-06 07:22:44 UTC (rev 172)
+@@ -37,4 +37,14 @@
+         require => Package["postgresql9.0-server"],
+         notify => [Service["postgresql"]]
+     }
++
++    file { '/var/lib/pgsql/data/pg_ident.conf':
++        ensure => present,
++        owner => postgres,
++        group => postgres,
++        mode => 600,
++        content => template("postgresql/pg_ident.conf"),
++        require => Package["postgresql9.0-server"],
++        notify => [Service["postgresql"]]
++    }
+ }
+
+Added: puppet/modules/postgresql/templates/pg_ident.conf
+===================================================================
+--- puppet/modules/postgresql/templates/pg_ident.conf	                        (rev 0)
++++ puppet/modules/postgresql/templates/pg_ident.conf	2010-11-06 07:22:44 UTC (rev 172)
+@@ -0,0 +1,42 @@
++# PostgreSQL User Name Maps
++# =========================
++#
++# Refer to the PostgreSQL documentation, chapter "Client
++# Authentication" for a complete description.  A short synopsis
++# follows.
++#
++# This file controls PostgreSQL user name mapping.  It maps external
++# user names to their corresponding PostgreSQL user names.  Records
++# are of the form:
++#
++# MAPNAME  SYSTEM-USERNAME  PG-USERNAME
++#
++# (The uppercase quantities must be replaced by actual values.)
++#
++# MAPNAME is the (otherwise freely chosen) map name that was used in
++# pg_hba.conf.  SYSTEM-USERNAME is the detected user name of the
++# client.  PG-USERNAME is the requested PostgreSQL user name.  The
++# existence of a record specifies that SYSTEM-USERNAME may connect as
++# PG-USERNAME.
++#
++# If SYSTEM-USERNAME starts with a slash (/), it will be treated as a
++# regular expression.  Optionally this can contain a capture (a
++# parenthesized subexpression).  The substring matching the capture
++# will be substituted for \1 (backslash-one) if present in
++# PG-USERNAME.
++#
++# Multiple maps may be specified in this file and used by pg_hba.conf.
++#
++# No map names are defined in the default configuration.  If all
++# system user names and PostgreSQL user names are the same, you don't
++# need anything in this file.
++#
++# This file is read on server startup and when the postmaster receives
++# a SIGHUP signal.  If you edit the file on a running system, you have
++# to SIGHUP the postmaster for the changes to take effect.  You can
++# use "pg_ctl reload" to do that.
++
++# Put your actual configuration here
++# ----------------------------------
++
++# MAPNAME       SYSTEM-USERNAME         PG-USERNAME
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101106/5ee10c09/attachment.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000295.html b/zarb-ml/mageia-sysadm/2010-November/000295.html new file mode 100644 index 000000000..e7b2f2ba6 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000295.html @@ -0,0 +1,81 @@ + + + + [Mageia-sysadm] [173] - root on the server is accepted as postgres user + + + + + + + + + +

[Mageia-sysadm] [173] - root on the server is accepted as postgres user

+ root at mageia.org + root at mageia.org +
+ Sat Nov 6 08:24:40 CET 2010 +

+
+ +
Revision: 173
+Author:   nanardon
+Date:     2010-11-06 08:24:40 +0100 (Sat, 06 Nov 2010)
+Log Message:
+-----------
+- root on the server is accepted as postgres user
+
+Modified Paths:
+--------------
+    puppet/modules/postgresql/templates/pg_ident.conf
+
+Modified: puppet/modules/postgresql/templates/pg_ident.conf
+===================================================================
+--- puppet/modules/postgresql/templates/pg_ident.conf	2010-11-06 07:22:44 UTC (rev 172)
++++ puppet/modules/postgresql/templates/pg_ident.conf	2010-11-06 07:24:40 UTC (rev 173)
+@@ -40,3 +40,4 @@
+ # ----------------------------------
+ 
+ # MAPNAME       SYSTEM-USERNAME         PG-USERNAME
++any             root                    postgres
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101106/d918262e/attachment.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000296.html b/zarb-ml/mageia-sysadm/2010-November/000296.html new file mode 100644 index 000000000..2c8af9ed0 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000296.html @@ -0,0 +1,97 @@ + + + + [Mageia-sysadm] [174] - make 'psql -U postgres' as root working + + + + + + + + + +

[Mageia-sysadm] [174] - make 'psql -U postgres' as root working

+ root at mageia.org + root at mageia.org +
+ Sat Nov 6 08:42:49 CET 2010 +

+
+ +
Revision: 174
+Author:   nanardon
+Date:     2010-11-06 08:42:49 +0100 (Sat, 06 Nov 2010)
+Log Message:
+-----------
+- make 'psql -U postgres' as root working
+
+Modified Paths:
+--------------
+    puppet/modules/postgresql/templates/pg_hba.conf
+    puppet/modules/postgresql/templates/pg_ident.conf
+
+Modified: puppet/modules/postgresql/templates/pg_hba.conf
+===================================================================
+--- puppet/modules/postgresql/templates/pg_hba.conf	2010-11-06 07:24:40 UTC (rev 173)
++++ puppet/modules/postgresql/templates/pg_hba.conf	2010-11-06 07:42:49 UTC (rev 174)
+@@ -89,7 +89,7 @@
+ host   transifex        transifex       2a02:2178:2:7::2/128    md5
+ 
+ # "local" is for Unix domain socket connections only
+-local   all             all                                     ident
++local   all             all                                     ident map=local
+ # IPv4 local connections:
+ host    all             all             127.0.0.1/32            pam
+ # IPv6 local connections:
+
+Modified: puppet/modules/postgresql/templates/pg_ident.conf
+===================================================================
+--- puppet/modules/postgresql/templates/pg_ident.conf	2010-11-06 07:24:40 UTC (rev 173)
++++ puppet/modules/postgresql/templates/pg_ident.conf	2010-11-06 07:42:49 UTC (rev 174)
+@@ -40,4 +40,4 @@
+ # ----------------------------------
+ 
+ # MAPNAME       SYSTEM-USERNAME         PG-USERNAME
+-any             root                    postgres
++local           root                    postgres
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101106/01caa596/attachment-0001.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000297.html b/zarb-ml/mageia-sysadm/2010-November/000297.html new file mode 100644 index 000000000..a8ddfeaf3 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000297.html @@ -0,0 +1,121 @@ + + + + [Mageia-sysadm] [175] - notice the file is in svn + + + + + + + + + +

[Mageia-sysadm] [175] - notice the file is in svn

+ root at mageia.org + root at mageia.org +
+ Sat Nov 6 10:00:37 CET 2010 +

+
+ +
Revision: 175
+Author:   nanardon
+Date:     2010-11-06 10:00:37 +0100 (Sat, 06 Nov 2010)
+Log Message:
+-----------
+- notice the file is in svn
+
+Modified Paths:
+--------------
+    puppet/modules/postgresql/templates/pg_hba.conf
+    puppet/modules/postgresql/templates/postgresql.conf
+
+Property Changed:
+----------------
+    puppet/modules/postgresql/templates/pg_hba.conf
+    puppet/modules/postgresql/templates/postgresql.conf
+
+Modified: puppet/modules/postgresql/templates/pg_hba.conf
+===================================================================
+--- puppet/modules/postgresql/templates/pg_hba.conf	2010-11-06 07:42:49 UTC (rev 174)
++++ puppet/modules/postgresql/templates/pg_hba.conf	2010-11-06 09:00:37 UTC (rev 175)
+@@ -75,6 +75,8 @@
+ 
+ 
+ # TYPE  DATABASE        USER            CIDR-ADDRESS            METHOD
++# This file is in mageia svn:
++# $Id$
+ 
+ # Nanar:
+ # This bypass global config for specific user/base
+
+
+Property changes on: puppet/modules/postgresql/templates/pg_hba.conf
+___________________________________________________________________
+Added: svn:keywords
+   + Id
+
+Modified: puppet/modules/postgresql/templates/postgresql.conf
+===================================================================
+--- puppet/modules/postgresql/templates/postgresql.conf	2010-11-06 07:42:49 UTC (rev 174)
++++ puppet/modules/postgresql/templates/postgresql.conf	2010-11-06 09:00:37 UTC (rev 175)
+@@ -1,7 +1,11 @@
+ # -----------------------------
+ # PostgreSQL configuration file
+ # -----------------------------
+-#
++
++# This file is in mageia's svn:
++# $Id$
++
++
+ # This file consists of lines of the form:
+ #
+ #   name = value
+
+
+Property changes on: puppet/modules/postgresql/templates/postgresql.conf
+___________________________________________________________________
+Added: svn:keywords
+   + Id
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101106/ec9d7c2c/attachment.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000298.html b/zarb-ml/mageia-sysadm/2010-November/000298.html new file mode 100644 index 000000000..227663bd3 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000298.html @@ -0,0 +1,112 @@ + + + + [Mageia-sysadm] [176] - add a type for vhost redirection to ssl ( for epoll and catdap, once we have https ) + + + + + + + + + +

[Mageia-sysadm] [176] - add a type for vhost redirection to ssl ( for epoll and catdap, once we have https )

+ root at mageia.org + root at mageia.org +
+ Sat Nov 6 10:36:03 CET 2010 +

+
+ +
Revision: 176
+Author:   misc
+Date:     2010-11-06 10:36:03 +0100 (Sat, 06 Nov 2010)
+Log Message:
+-----------
+- add a type for vhost redirection to ssl ( for epoll and catdap, once we have https )
+
+Modified Paths:
+--------------
+    puppet/modules/apache/manifests/init.pp
+
+Added Paths:
+-----------
+    puppet/modules/apache/templates/vhost_ssl_redirect.conf
+
+Modified: puppet/modules/apache/manifests/init.pp
+===================================================================
+--- puppet/modules/apache/manifests/init.pp	2010-11-06 09:00:37 UTC (rev 175)
++++ puppet/modules/apache/manifests/init.pp	2010-11-06 09:36:03 UTC (rev 176)
+@@ -54,8 +54,20 @@
+         }
+     }
+ 
+-    define vhost_catalyst_app($script, $process = 4, $force_ssl = false) {
++    define vhost_redirect_ssl() {
++        file { "redirect_ssl_$name.conf":
++            path => "/etc/httpd/conf/vhosts.d/redirect_ssl_$name.conf",
++            ensure => "present",
++            owner => root,
++            group => root,
++            mode => 644,
++            notify => Service['apache'],
++            content => template("apache/vhost_ssl_redirect.conf")
++        }
++    }
+ 
++    define vhost_catalyst_app($script, $process = 4, $use_ssl = false) {
++
+         include apache::mod_fastcgi 
+ 
+         file { "$name.conf":
+
+Added: puppet/modules/apache/templates/vhost_ssl_redirect.conf
+===================================================================
+--- puppet/modules/apache/templates/vhost_ssl_redirect.conf	                        (rev 0)
++++ puppet/modules/apache/templates/vhost_ssl_redirect.conf	2010-11-06 09:36:03 UTC (rev 176)
+@@ -0,0 +1,4 @@
++<VirtualHost *:80>
++        ServerName <%= vhost %>
++        Redirect / https://<%= vhost %>/
++</VirtualHost>
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101106/c723cc9b/attachment.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000299.html b/zarb-ml/mageia-sysadm/2010-November/000299.html new file mode 100644 index 000000000..b3effbf7e --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000299.html @@ -0,0 +1,137 @@ + + + + [Mageia-sysadm] [177] Add puppet conf for transifex + + + + + + + + + +

[Mageia-sysadm] [177] Add puppet conf for transifex

+ root at mageia.org + root at mageia.org +
+ Sat Nov 6 12:18:39 CET 2010 +

+
+ +
Revision: 177
+Author:   dmorgan
+Date:     2010-11-06 12:18:39 +0100 (Sat, 06 Nov 2010)
+Log Message:
+-----------
+Add puppet conf for transifex
+
+Added Paths:
+-----------
+    puppet/modules/transifex/
+    puppet/modules/transifex/manifests/
+    puppet/modules/transifex/manifests/init.pp
+    puppet/modules/transifex/templates/
+    puppet/modules/transifex/templates/20-engines.conf
+
+Added: puppet/modules/transifex/manifests/init.pp
+===================================================================
+--- puppet/modules/transifex/manifests/init.pp	                        (rev 0)
++++ puppet/modules/transifex/manifests/init.pp	2010-11-06 11:18:39 UTC (rev 177)
+@@ -0,0 +1,17 @@
++class transifex {
++  package { 'transifex':
++    ensure => installed
++  }
++  package { 'postfix':
++    ensure => installed
++  }
++
++  file { "check_new-blog-post":
++    path => "/etc/transifex/20-engines.conf",
++    ensure => present,
++    owner => root,
++    group => root,
++    mode => 755,
++    content => template("transifex/20-engines.conf")
++  }
++}
+
+Added: puppet/modules/transifex/templates/20-engines.conf
+===================================================================
+--- puppet/modules/transifex/templates/20-engines.conf	                        (rev 0)
++++ puppet/modules/transifex/templates/20-engines.conf	2010-11-06 11:18:39 UTC (rev 177)
+@@ -0,0 +1,33 @@
++### ENGINE CONFIGURATION
++# Database and caching
++
++## Database configuration
++
++# http://docs.djangoproject.com/en/dev/ref/settings/#database-engine
++DATABASE_ENGINE = 'postgresql_psycopg2'
++# Use file path for sqlite3
++DATABASE_NAME = 'transifex'
++# The following are not used for sqlite3
++DATABASE_USER = 'transifex'
++DATABASE_PASSWORD = 'transifex'
++DATABASE_HOST = 'pgsql.mageia.org'           # Set to empty string for local socket
++DATABASE_PORT = ''             # Set to empty string for default
++
++## Caching (optional)
++
++CACHE_BACKEND = 'locmem://'
++# For memcached: CACHE_BACKEND = 'memcached://127.0.0.1:11211/'
++# No caching: CACHE_BACKEND = 'dummy://'
++
++CACHE_MIDDLEWARE_SECONDS = 3600
++CACHE_MIDDLEWARE_KEY_PREFIX = 'tx'
++CACHE_MIDDLEWARE_ANONYMOUS_ONLY = True
++
++# Note: Additional caching configuration takes place in 50-project.conf in the
++# MIDDLEWARE_CLASSES option.
++
++# Database settings for unittests
++TEST_CHARSET = "utf8"
++TEST_COLLATION = "utf8_general_ci"
++TEST_DATABASE_CHARSET = TEST_CHARSET
++TEST_DATABASE_COLLATION = TEST_COLLATION
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101106/ca6f3397/attachment.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000300.html b/zarb-ml/mageia-sysadm/2010-November/000300.html new file mode 100644 index 000000000..3c979a92b --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000300.html @@ -0,0 +1,84 @@ + + + + [Mageia-sysadm] [178] include transifex + + + + + + + + + +

[Mageia-sysadm] [178] include transifex

+ root at mageia.org + root at mageia.org +
+ Sat Nov 6 12:20:01 CET 2010 +

+
+ +
Revision: 178
+Author:   dmorgan
+Date:     2010-11-06 12:20:01 +0100 (Sat, 06 Nov 2010)
+Log Message:
+-----------
+include transifex
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-06 11:18:39 UTC (rev 177)
++++ puppet/manifests/nodes.pp	2010-11-06 11:20:01 UTC (rev 178)
+@@ -54,6 +54,7 @@
+     include catdap
+     include mga-mirrors
+     include epoll
++    include transifex
+ }
+ 
+ # buildnode
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101106/b2908cf8/attachment.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000301.html b/zarb-ml/mageia-sysadm/2010-November/000301.html new file mode 100644 index 000000000..95e94b736 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000301.html @@ -0,0 +1,88 @@ + + + + [Mageia-sysadm] [179] Remove postfix require + + + + + + + + + +

[Mageia-sysadm] [179] Remove postfix require

+ root at mageia.org + root at mageia.org +
+ Sat Nov 6 12:23:38 CET 2010 +

+
+ +
Revision: 179
+Author:   dmorgan
+Date:     2010-11-06 12:23:38 +0100 (Sat, 06 Nov 2010)
+Log Message:
+-----------
+Remove postfix require
+
+Modified Paths:
+--------------
+    puppet/modules/transifex/manifests/init.pp
+
+Modified: puppet/modules/transifex/manifests/init.pp
+===================================================================
+--- puppet/modules/transifex/manifests/init.pp	2010-11-06 11:20:01 UTC (rev 178)
++++ puppet/modules/transifex/manifests/init.pp	2010-11-06 11:23:38 UTC (rev 179)
+@@ -2,10 +2,7 @@
+   package { 'transifex':
+     ensure => installed
+   }
+-  package { 'postfix':
+-    ensure => installed
+-  }
+-
++  
+   file { "check_new-blog-post":
+     path => "/etc/transifex/20-engines.conf",
+     ensure => present,
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101106/37c9ac37/attachment.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000302.html b/zarb-ml/mageia-sysadm/2010-November/000302.html new file mode 100644 index 000000000..78cd319e9 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000302.html @@ -0,0 +1,85 @@ + + + + [Mageia-sysadm] [180] Shame on me, I forgot a pipe... + + + + + + + + + +

[Mageia-sysadm] [180] Shame on me, I forgot a pipe...

+ root at mageia.org + root at mageia.org +
+ Sat Nov 6 13:20:34 CET 2010 +

+
+ +
Revision: 180
+Author:   dams
+Date:     2010-11-06 13:20:34 +0100 (Sat, 06 Nov 2010)
+Log Message:
+-----------
+Shame on me, I forgot a pipe...
+
+Modified Paths:
+--------------
+    puppet/modules/blog/templates/check_new-blog-post.sh
+
+Modified: puppet/modules/blog/templates/check_new-blog-post.sh
+===================================================================
+--- puppet/modules/blog/templates/check_new-blog-post.sh	2010-11-06 11:23:38 UTC (rev 179)
++++ puppet/modules/blog/templates/check_new-blog-post.sh	2010-11-06 12:20:34 UTC (rev 180)
+@@ -23,7 +23,7 @@
+ 	else
+ 		# New post to translate
+ 		echo "YES" >> $PATH_TO_FILE"/last_check"
+-		echo "A new blog post is waiting for translation" /bin/mail -s "New entry on English Blog" mageia-blogteam at mageia.org
++		echo "A new blog post is waiting for translation" | /bin/mail -s "New entry on English Blog" mageia-blogteam at mageia.org
+ 		echo $DATE
+ fi
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101106/59b8ee84/attachment.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000303.html b/zarb-ml/mageia-sysadm/2010-November/000303.html new file mode 100644 index 000000000..69475083f --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000303.html @@ -0,0 +1,102 @@ + + + + [Mageia-sysadm] [181] - refactor the directory name for apache vhost config + + + + + + + + + +

[Mageia-sysadm] [181] - refactor the directory name for apache vhost config

+ root at mageia.org + root at mageia.org +
+ Sat Nov 6 18:39:17 CET 2010 +

+
+ +
Revision: 181
+Author:   misc
+Date:     2010-11-06 18:39:16 +0100 (Sat, 06 Nov 2010)
+Log Message:
+-----------
+- refactor the directory name for apache vhost config
+
+Modified Paths:
+--------------
+    puppet/modules/apache/manifests/init.pp
+
+Modified: puppet/modules/apache/manifests/init.pp
+===================================================================
+--- puppet/modules/apache/manifests/init.pp	2010-11-06 12:20:34 UTC (rev 180)
++++ puppet/modules/apache/manifests/init.pp	2010-11-06 17:39:16 UTC (rev 181)
+@@ -1,5 +1,7 @@
+ class apache {
+ 
++    $vhost_dir = "/etc/httpd/conf/vhosts.d"
++ 
+     class base {
+         package { "apache-mpm-prefork":
+             alias => apache,
+@@ -56,7 +58,7 @@
+ 
+     define vhost_redirect_ssl() {
+         file { "redirect_ssl_$name.conf":
+-            path => "/etc/httpd/conf/vhosts.d/redirect_ssl_$name.conf",
++            path => "$vhost_dir/redirect_ssl_$name.conf",
+             ensure => "present",
+             owner => root,
+             group => root,
+@@ -71,7 +73,7 @@
+         include apache::mod_fastcgi 
+ 
+         file { "$name.conf":
+-            path => "/etc/httpd/conf/vhosts.d/$name.conf",
++            path => "$vhost_dir/$name.conf",
+             ensure => "present",
+             owner => root,
+             group => root,
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101106/a438e187/attachment-0001.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000304.html b/zarb-ml/mageia-sysadm/2010-November/000304.html new file mode 100644 index 000000000..a3dd08f83 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000304.html @@ -0,0 +1,166 @@ + + + + [Mageia-sysadm] [182] - add django support with wsgi + + + + + + + + + +

[Mageia-sysadm] [182] - add django support with wsgi

+ root at mageia.org + root at mageia.org +
+ Sat Nov 6 18:50:15 CET 2010 +

+
+ +
Revision: 182
+Author:   misc
+Date:     2010-11-06 18:50:14 +0100 (Sat, 06 Nov 2010)
+Log Message:
+-----------
+- add django support with wsgi
+
+Modified Paths:
+--------------
+    puppet/modules/apache/manifests/init.pp
+
+Added Paths:
+-----------
+    puppet/modules/apache/templates/django.wsgi
+    puppet/modules/apache/templates/vhost_django_app.conf
+
+Modified: puppet/modules/apache/manifests/init.pp
+===================================================================
+--- puppet/modules/apache/manifests/init.pp	2010-11-06 17:39:16 UTC (rev 181)
++++ puppet/modules/apache/manifests/init.pp	2010-11-06 17:50:14 UTC (rev 182)
+@@ -1,6 +1,7 @@
+ class apache {
+ 
+     $vhost_dir = "/etc/httpd/conf/vhosts.d"
++    $wsgi_dir = "/usr/local/lib/wsgi"
+  
+     class base {
+         package { "apache-mpm-prefork":
+@@ -54,6 +55,13 @@
+         package { "apache-mod_wsgi":
+             ensure => installed
+         }
++
++        file { $wsgi_dir:
++            ensure => directory,
++            owner => root,
++            group => root,
++            mode => 644,
++        }
+     }
+ 
+     define vhost_redirect_ssl() {
+@@ -82,4 +90,29 @@
+             content => template("apache/vhost_catalyst_app.conf")
+         }
+     }
++
++    define vhost_django_app($module, $module_path = '/usr/share') {
++        include apache::mod_wsgi
++
++        file { "$name.conf":
++            path => "$vhost_dir/$name.conf",
++            ensure => "present",
++            owner => root,
++            group => root,
++            mode => 644,
++            notify => Service['apache'],
++            content => template("apache/vhost_django_app.conf")
++        }
++
++        # fichier django wsgi
++        file { "$name.wsgi":
++            path => "$wsgi_dir/$name.wsgi",
++            ensure => "present",
++            owner => root,
++            group => root,
++            mode => 755,
++            notify => Service['apache'],
++            content => template("apache/django.wsgi")
++        }
++    }
+ }
+
+Added: puppet/modules/apache/templates/django.wsgi
+===================================================================
+--- puppet/modules/apache/templates/django.wsgi	                        (rev 0)
++++ puppet/modules/apache/templates/django.wsgi	2010-11-06 17:50:14 UTC (rev 182)
+@@ -0,0 +1,9 @@
++#!/usr/bin/python
++import os, sys
++sys.path.append('<%= module_path  %>')
++os.environ['DJANGO_SETTINGS_MODULE'] = '<%= module =%>.settings'
++
++import django.core.handlers.wsgi
++
++application = django.core.handlers.wsgi.WSGIHandler()
++
+
+Added: puppet/modules/apache/templates/vhost_django_app.conf
+===================================================================
+--- puppet/modules/apache/templates/vhost_django_app.conf	                        (rev 0)
++++ puppet/modules/apache/templates/vhost_django_app.conf	2010-11-06 17:50:14 UTC (rev 182)
+@@ -0,0 +1,12 @@
++<VirtualHost *:80>
++        ServerName <%= name %>
++        # Serve static content directly
++        DocumentRoot  /dev/null
++
++        WSGIScriptAlias / <%= wsgi_dir%>/<%= name %>.wsgi
++
++        <Location />
++            Allow from all
++        </Location>
++</VirtualHost>
++
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101106/08460f1b/attachment.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000305.html b/zarb-ml/mageia-sysadm/2010-November/000305.html new file mode 100644 index 000000000..152c202f9 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000305.html @@ -0,0 +1,83 @@ + + + + [Mageia-sysadm] [183] - use name instead of the vhost variable + + + + + + + + + +

[Mageia-sysadm] [183] - use name instead of the vhost variable

+ root at mageia.org + root at mageia.org +
+ Sat Nov 6 18:50:16 CET 2010 +

+
+ +
Revision: 183
+Author:   misc
+Date:     2010-11-06 18:50:16 +0100 (Sat, 06 Nov 2010)
+Log Message:
+-----------
+- use name instead of the vhost variable
+
+Modified Paths:
+--------------
+    puppet/modules/apache/templates/vhost_catalyst_app.conf
+
+Modified: puppet/modules/apache/templates/vhost_catalyst_app.conf
+===================================================================
+--- puppet/modules/apache/templates/vhost_catalyst_app.conf	2010-11-06 17:50:14 UTC (rev 182)
++++ puppet/modules/apache/templates/vhost_catalyst_app.conf	2010-11-06 17:50:16 UTC (rev 183)
+@@ -1,5 +1,5 @@
+ <VirtualHost *:80>
+-        ServerName <%= vhost %>
++        ServerName <%= name %>
+         # Serve static content directly
+         DocumentRoot  /dev/null
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101106/d21d5aa9/attachment.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000306.html b/zarb-ml/mageia-sysadm/2010-November/000306.html new file mode 100644 index 000000000..604554e74 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000306.html @@ -0,0 +1,136 @@ + + + + [Mageia-sysadm] [184] Fix ident + + + + + + + + + +

[Mageia-sysadm] [184] Fix ident

+ root at mageia.org + root at mageia.org +
+ Sat Nov 6 20:56:02 CET 2010 +

+
+ +
Revision: 184
+Author:   dmorgan
+Date:     2010-11-06 20:56:02 +0100 (Sat, 06 Nov 2010)
+Log Message:
+-----------
+Fix ident
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-06 17:50:16 UTC (rev 183)
++++ puppet/manifests/nodes.pp	2010-11-06 19:56:02 UTC (rev 184)
+@@ -41,10 +41,9 @@
+ # - wiki
+ # - pastbin
+ # - LDAP slave
+-# - transifex
+ # - SQL server
+ # 
+-	include default_mageia_server
++	  include default_mageia_server
+     include bind::bind_master
+     include postgresql
+     bind::zone_master { "mageia.org": }
+@@ -61,16 +60,16 @@
+ node jonund {
+ # Location: IELO datacenter (marseille)
+ #
+-	include default_mageia_server
+-	include iurt
++	  include default_mageia_server
++	  include iurt
+     timezone::timezone { "Europe/Paris": }
+ }
+ 
+ node ecosse {
+ # Location: IELO datacenter (marseille)
+ #
+-	include default_mageia_server
+-	include iurt
++	  include default_mageia_server
++	  include iurt
+     timezone::timezone { "Europe/Paris": }
+ }
+ 
+@@ -83,7 +82,7 @@
+ # - buy the server
+ # - install the server in datacenter
+ #
+-	include default_mageia_server
++	  include default_mageia_server
+ } 
+ 
+ # gandi-vm
+@@ -94,7 +93,7 @@
+ # - secondary MX
+ # - LDAP slave (for external traffic maybe)
+ #
+-	include default_mageia_server
++	  include default_mageia_server
+     include bind::bind_master
+     bind::zone_master { "mageia.org": }
+     bind::zone_master { "mageia.fr": } 
+@@ -110,7 +109,7 @@
+ # - setup mageia.org web site
+ # - setup blog
+ #
+-	include default_mageia_server
++	  include default_mageia_server
+     include apache::base
+     timezone::timezone { "Europe/Paris": }
+     #include postfix
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101106/24f3dd3c/attachment.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000307.html b/zarb-ml/mageia-sysadm/2010-November/000307.html new file mode 100644 index 000000000..124356f3b --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000307.html @@ -0,0 +1,85 @@ + + + + [Mageia-sysadm] [185] Use bug tracker word instead of bugzilla + + + + + + + + + +

[Mageia-sysadm] [185] Use bug tracker word instead of bugzilla

+ root at mageia.org + root at mageia.org +
+ Sat Nov 6 21:22:22 CET 2010 +

+
+ +
Revision: 185
+Author:   dmorgan
+Date:     2010-11-06 21:22:21 +0100 (Sat, 06 Nov 2010)
+Log Message:
+-----------
+Use bug tracker word instead of bugzilla
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-06 19:56:02 UTC (rev 184)
++++ puppet/manifests/nodes.pp	2010-11-06 20:22:21 UTC (rev 185)
+@@ -33,7 +33,7 @@
+ # Location: IELO datacenter (marseille)
+ #
+ # TODO:
+-# - bugzilla
++# - Bug Tracker
+ # - nagios
+ # - api
+ # - mail server
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101106/f37d892a/attachment-0001.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000308.html b/zarb-ml/mageia-sysadm/2010-November/000308.html new file mode 100644 index 000000000..66793f4f1 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000308.html @@ -0,0 +1,85 @@ + + + + [Mageia-sysadm] [186] Add review board to isntall + + + + + + + + + +

[Mageia-sysadm] [186] Add review board to isntall

+ root at mageia.org + root at mageia.org +
+ Sat Nov 6 21:31:35 CET 2010 +

+
+ +
Revision: 186
+Author:   dmorgan
+Date:     2010-11-06 21:31:35 +0100 (Sat, 06 Nov 2010)
+Log Message:
+-----------
+Add review board to isntall
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-06 20:22:21 UTC (rev 185)
++++ puppet/manifests/nodes.pp	2010-11-06 20:31:35 UTC (rev 186)
+@@ -34,6 +34,7 @@
+ #
+ # TODO:
+ # - Bug Tracker
++# - Review board
+ # - nagios
+ # - api
+ # - mail server
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101106/4dc98141/attachment.html>
+
+ + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000309.html b/zarb-ml/mageia-sysadm/2010-November/000309.html new file mode 100644 index 000000000..b927fab77 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000309.html @@ -0,0 +1,117 @@ + + + + [Mageia-sysadm] [187] - add bugs access to bugs database + + + + + + + + + +

[Mageia-sysadm] [187] - add bugs access to bugs database

+ root at mageia.org + root at mageia.org +
+ Sun Nov 7 00:18:57 CET 2010 +

+
+ +
Revision: 187
+Author:   nanardon
+Date:     2010-11-07 00:18:57 +0100 (Sun, 07 Nov 2010)
+Log Message:
+-----------
+- add bugs access to bugs database
+- apply hostssl to network connection other than localhost
+- think to local IPv6 connection
+
+Modified Paths:
+--------------
+    puppet/modules/postgresql/templates/pg_hba.conf
+
+Modified: puppet/modules/postgresql/templates/pg_hba.conf
+===================================================================
+--- puppet/modules/postgresql/templates/pg_hba.conf	2010-11-06 20:31:35 UTC (rev 186)
++++ puppet/modules/postgresql/templates/pg_hba.conf	2010-11-06 23:18:57 UTC (rev 187)
+@@ -80,16 +80,26 @@
+ 
+ # Nanar:
+ # This bypass global config for specific user/base
+-host   epoll            epoll           127.0.0.1/32            md5
+-host   epoll            epoll           212.85.158.146/32       md5
+-host   epoll            epoll           2a02:2178:2:7::2/128    md5
+-host   mirrors          mirrors         127.0.0.1/32            md5
+-host   mirrors          mirrors         212.85.158.146/32       md5
+-host   mirrors          mirrors         2a02:2178:2:7::2/128    md5
+-host   transifex        transifex       127.0.0.1/32            md5
+-host   transifex        transifex       212.85.158.146/32       md5
+-host   transifex        transifex       2a02:2178:2:7::2/128    md5
++host      epoll            epoll           127.0.0.1/32            md5
++host      epoll            epoll           ::1                     md5
++hostssl   epoll            epoll           212.85.158.146/32       md5
++hostssl   epoll            epoll           2a02:2178:2:7::2/128    md5
+ 
++host      mirrors          mirrors         127.0.0.1/32            md5
++host      mirrors          mirrors         ::1                     md5
++hostssl   mirrors          mirrors         212.85.158.146/32       md5
++hostssl   mirrors          mirrors         2a02:2178:2:7::2/128    md5
++
++host      transifex        transifex       127.0.0.1/32            md5
++host      transifex        transifex       ::1                     md5
++hostssl   transifex        transifex       212.85.158.146/32       md5
++hostssl   transifex        transifex       2a02:2178:2:7::2/128    md5
++
++host      bugs             bugs            127.0.0.1/32            md5
++host      bugs             bugs            ::1                     md5
++hostssl   bugs             bugs            212.85.158.146/32       md5
++hostssl   bugs             bugs            2a02:2178:2:7::2/128    md5
++
+ # "local" is for Unix domain socket connections only
+ local   all             all                                     ident map=local
+ # IPv4 local connections:
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101107/d89e93e3/attachment.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000310.html b/zarb-ml/mageia-sysadm/2010-November/000310.html new file mode 100644 index 000000000..7c81f407c --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000310.html @@ -0,0 +1,216 @@ + + + + [Mageia-sysadm] [188] First commit for the puppet bugzilla module + + + + + + + + + +

[Mageia-sysadm] [188] First commit for the puppet bugzilla module

+ root at mageia.org + root at mageia.org +
+ Sun Nov 7 01:46:55 CET 2010 +

+
+ +
Revision: 188
+Author:   dmorgan
+Date:     2010-11-07 01:46:55 +0100 (Sun, 07 Nov 2010)
+Log Message:
+-----------
+First commit for the puppet bugzilla module
+
+Added Paths:
+-----------
+    puppet/modules/bugzilla/
+    puppet/modules/bugzilla/manifests/
+    puppet/modules/bugzilla/manifests/init.pp
+    puppet/modules/bugzilla/templates/
+    puppet/modules/bugzilla/templates/localconfig
+
+Added: puppet/modules/bugzilla/manifests/init.pp
+===================================================================
+--- puppet/modules/bugzilla/manifests/init.pp	                        (rev 0)
++++ puppet/modules/bugzilla/manifests/init.pp	2010-11-07 00:46:55 UTC (rev 188)
+@@ -0,0 +1,16 @@
++class bugzilla {
++
++    package { bugzilla
++        ensure => installed;
++    }
++
++    file { '/etc/bugzilla/localconfig':
++        ensure => present,
++        owner => root,
++        group => root,
++        mode => 644,
++        content => template("bugzilla/localconfig")
++    }
++
++}
++
+
+Added: puppet/modules/bugzilla/templates/localconfig
+===================================================================
+--- puppet/modules/bugzilla/templates/localconfig	                        (rev 0)
++++ puppet/modules/bugzilla/templates/localconfig	2010-11-07 00:46:55 UTC (rev 188)
+@@ -0,0 +1,110 @@
++
++# If you are using Apache as your web server, Bugzilla can create .htaccess
++# files for you that will instruct Apache not to serve files that shouldn't
++# be accessed from the web browser (like your local configuration data and non-cgi
++# executable files).  For this to work, the directory your Bugzilla
++# installation is in must be within the jurisdiction of a <Directory> block
++# in the httpd.conf file that has 'AllowOverride Limit' in it.  If it has
++# 'AllowOverride All' or other options with Limit, that's fine.
++# (Older Apache installations may use an access.conf file to store these
++# <Directory> blocks.)
++# If this is set to 1, Bugzilla will create these files if they don't exist.
++# If this is set to 0, Bugzilla will not create these files.
++$create_htaccess = 0;
++
++# Usually, this is the group your web server runs as.
++# If you have a Windows box, ignore this setting.
++# If you have use_suexec switched on below, this is the group Apache switches
++# to in order to run Bugzilla scripts.
++# If you do not have access to the group your scripts will run under,
++# set this to "". If you do set this to "", then your Bugzilla installation
++# will be _VERY_ insecure, because some files will be world readable/writable,
++# and so anyone who can get local access to your machine can do whatever they
++# want. You should only have this set to "" if this is a testing installation
++# and you cannot set this up any other way. YOU HAVE BEEN WARNED!
++# If you set this to anything other than "", you will need to run checksetup.pl
++# asroot, or as a user who is a member of the specified group.
++$webservergroup = 'apache';
++
++# Set this if Bugzilla runs in an Apache SuexecUserGroup environment.
++# (If your web server runs control panel software (cPanel, Plesk or similar),
++# or if your Bugzilla is to run in a shared hosting environment, then you are
++# almost certainly in an Apache SuexecUserGroup environment.)
++# If you have a Windows box, ignore this setting.
++# If set to 0, Bugzilla will set file permissions as tightly as possible.
++# If set to 1, Bugzilla will set file permissions so that it may work in an
++# SuexecUserGroup environment. The difference is that static files (CSS,
++# JavaScript and so on) will receive world read permissions.
++$use_suexec = 0;
++
++# What SQL database to use. Default is mysql. List of supported databases
++# can be obtained by listing Bugzilla/DB directory - every module corresponds
++# to one supported database and the name corresponds to a driver name.
++$db_driver = 'pg';
++
++# The DNS name of the host that the database server runs on.
++$db_host = 'pgsql.mageia.org';
++
++# The name of the database
++$db_name = 'bugs';
++
++# Who we connect to the database as.
++$db_user = 'bugs';
++
++# Enter your database password here. It's normally advisable to specify
++# a password for your bugzilla database user.
++# If you use apostrophe (') or a backslash (\) in your password, you'll
++# need to escape it by preceding it with a '\' character. (\') or (\)
++# (Far simpler just not to use those characters.)
++$db_pass = 'bugs';
++
++# Sometimes the database server is running on a non-standard port. If that's
++# the case for your database server, set this to the port number that your
++# database server is running on. Setting this to 0 means "use the default
++# port for my database server."
++$db_port = 0;
++
++# MySQL Only: Enter a path to the unix socket for MySQL. If this is
++# blank, then MySQL's compiled-in default will be used. You probably
++# want that.
++$db_sock = '';
++
++# Should checksetup.pl try to verify that your database setup is correct?
++# (with some combinations of database servers/Perl modules/moonphase this
++# doesn't work)
++$db_check = 1;
++
++# With the introduction of a configurable index page using the
++# template toolkit, Bugzilla's main index page is now index.cgi.
++# Most web servers will allow you to use index.cgi as a directory
++# index, and many come preconfigured that way, but if yours doesn't
++# then you'll need an index.html file that provides redirection
++# to index.cgi. Setting $index_html to 1 below will allow
++# checksetup.pl to create one for you if it doesn't exist.
++# NOTE: checksetup.pl will not replace an existing file, so if you
++#       wish to have checksetup.pl create one for you, you must
++#       make sure that index.html doesn't already exist
++$index_html = 0;
++
++# For some optional functions of Bugzilla (such as the pretty-print patch
++# viewer), we need the cvs binary to access files and revisions.
++# Because it's possible that this program is not in your path, you can specify
++# its location here.  Please specify the full path to the executable.
++$cvsbin = '/usr/bin/cvs';
++
++# For some optional functions of Bugzilla (such as the pretty-print patch
++# viewer), we need the interdiff binary to make diffs between two patches.
++# Because it's possible that this program is not in your path, you can specify
++# its location here.  Please specify the full path to the executable.
++$interdiffbin = '/usr/bin/interdiff';
++
++# The interdiff feature needs diff, so we have to have that path.
++# Please specify the directory name only; do not use trailing slash.
++$diffpath = '/usr/bin';
++
++# This secret key is used by your installation for the creation and
++# validation of encrypted tokens to prevent unsolicited changes,
++# such as bug changes. A random string is generated by default.
++# It's very important that this key is kept secret. It also must be
++# very long.
++$site_wide_secret = 'FLDtMWoTaBMifoR5CXo8yAFkeHNzCDra8BwWv6HDgGIvRLVMahTgl6wmD43RaY2pwrrY2xcTUkEX0sGOw7ZPnjwbqx56DtNqHMNDnkS43wywBMfhw0w798zFqAOMYySyPPdEIGg9ZJ1KOtHPk4jW6WVvaHpLjZQEmJYqygVmUaxsSwxdWCQcRPKmQtZqGjvWCwuiTtGOKUhEBbpCIIX20Yw5N50tNq95VzYC08Qw4FGp0stDsx82wNNxdnK1m9KZ';
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101107/8fc391ff/attachment-0001.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000311.html b/zarb-ml/mageia-sysadm/2010-November/000311.html new file mode 100644 index 000000000..8c05a3b49 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000311.html @@ -0,0 +1,80 @@ + + + + [Mageia-sysadm] [188] First commit for the puppet bugzilla module + + + + + + + + + +

[Mageia-sysadm] [188] First commit for the puppet bugzilla module

+ Michael scherer + misc at zarb.org +
+ Sun Nov 7 03:17:13 CET 2010 +

+
+ +
On Sun, Nov 07, 2010 at 01:46:55AM +0100, root at mageia.org wrote:
+> Revision: 188
+> Author:   dmorgan
+> Date:     2010-11-07 01:46:55 +0100 (Sun, 07 Nov 2010)
+> Log Message:
+> -----------
+> First commit for the puppet bugzilla module
+
+we didn't really decide to install bugzilla, according to the meeting agenda for
+monday. While it may be the one we end to choose, it doesn't have xml-rpc 
+(requested by stormi for mageia-app-db, see discuss ml) and it is notable that 
+users do find bugzilla intuitive. So i think we should first gather functionnal 
+requirements before deploying it ( not to mention that we may end using a forked code
+, which would requires a different methodology ).
+
+( but indeed, wr should send the agenda on a public ml :/ )
+-- 
+Michael Scherer
+
+ + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000312.html b/zarb-ml/mageia-sysadm/2010-November/000312.html new file mode 100644 index 000000000..de4e97c02 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000312.html @@ -0,0 +1,74 @@ + + + + [Mageia-sysadm] [186] Add review board to isntall + + + + + + + + + +

[Mageia-sysadm] [186] Add review board to isntall

+ Michael scherer + misc at zarb.org +
+ Sun Nov 7 03:23:56 CET 2010 +

+
+ +
On Sat, Nov 06, 2010 at 09:31:35PM +0100, root at mageia.org wrote:
+> Revision: 186
+> Author:   dmorgan
+> Date:     2010-11-06 21:31:35 +0100 (Sat, 06 Nov 2010)
+> Log Message:
+> -----------
+> Add review board to isntall
+
+who asked for it ?
+i do not think this was discussed, and given the current type of 
+contribution we have, I am not sure it will be suiable. At least, 
+I think this should first be discussed with packager, no ( and also 
+with sysadmin if we find it suitable, maintainable, etc )
+
+-- 
+Michael Scherer
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000313.html b/zarb-ml/mageia-sysadm/2010-November/000313.html new file mode 100644 index 000000000..3cf95a1b8 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000313.html @@ -0,0 +1,84 @@ + + + + [Mageia-sysadm] secret key might be secret ? + + + + + + + + + +

[Mageia-sysadm] secret key might be secret ?

+ Philippe DIDIER + philippedidier at laposte.net +
+ Sun Nov 7 03:28:56 CET 2010 +

+
+ +
 En parcourant : Mageia-sysadmin Archives, je suis tombé sur ce post
+https://www.mageia.org/pipermail/mageia-sysadm/2010-November/000310.html
+
+Dans les dernières lignes il y a cela :
+
+It's very important that this key is kept secret
+
+Il y a ensuite une clé .... !
+J'espère que cette clé n'est pas celle qui doit rester secrète !!!
+
+Si c'est le cas, tu devrais faire disparaître ce post ... ou modifier
+secrètement la clé !
+
+Si ce n'est pas le cas, excuse-moi de t'avoir alarmer pour rien !
+
+Amicalement,
+Philippe
+
+
+
+
+ + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000314.html b/zarb-ml/mageia-sysadm/2010-November/000314.html new file mode 100644 index 000000000..157a6433c --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000314.html @@ -0,0 +1,102 @@ + + + + [Mageia-sysadm] secret key might be secret ? + + + + + + + + + +

[Mageia-sysadm] secret key might be secret ?

+ Olivier Thauvin + nanardon at nanardon.zarb.org +
+ Sun Nov 7 04:58:41 CET 2010 +

+
+ +
* Philippe DIDIER (philippedidier at laposte.net) wrote:
+>  En parcourant : Mageia-sysadmin Archives, je suis tombé sur ce post
+> https://www.mageia.org/pipermail/mageia-sysadm/2010-November/000310.html
+> 
+> Dans les dernières lignes il y a cela :
+> 
+> It's very important that this key is kept secret
+> 
+> Il y a ensuite une clé .... !
+> J'espère que cette clé n'est pas celle qui doit rester secrète !!!
+> 
+> Si c'est le cas, tu devrais faire disparaître ce post ... ou modifier
+> secrètement la clé !
+
+This list is in english.
+
+So, Didier report that we commit in our svn the config of bugzilla and
+it contains a secret key at the end (plus db password BTW...). 
+
+This will have to fix before making the tools online...
+
+> 
+> Si ce n'est pas le cas, excuse-moi de t'avoir alarmer pour rien !
+
+Thanks a lot for the warning !
+
+-- 
+
+Olivier Thauvin
+CNRS  -  LATMOS
+♖ ♘ ♗ ♕ ♔ ♗ ♘ ♖
+-------------- next part --------------
+A non-text attachment was scrubbed...
+Name: not available
+Type: application/pgp-signature
+Size: 197 bytes
+Desc: not available
+URL: </pipermail/mageia-sysadm/attachments/20101107/bcc9c416/attachment.asc>
+
+ + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000315.html b/zarb-ml/mageia-sysadm/2010-November/000315.html new file mode 100644 index 000000000..b23df09f7 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000315.html @@ -0,0 +1,80 @@ + + + + [Mageia-sysadm] [186] Add review board to isntall + + + + + + + + + +

[Mageia-sysadm] [186] Add review board to isntall

+ Dexter Morgan + dmorganec at gmail.com +
+ Sun Nov 7 09:40:19 CET 2010 +

+
+ +
On Sun, Nov 7, 2010 at 3:23 AM, Michael scherer <misc at zarb.org> wrote:
+> On Sat, Nov 06, 2010 at 09:31:35PM +0100, root at mageia.org wrote:
+>> Revision: 186
+>> Author:   dmorgan
+>> Date:     2010-11-06 21:31:35 +0100 (Sat, 06 Nov 2010)
+>> Log Message:
+>> -----------
+>> Add review board to isntall
+>
+> who asked for it ?
+> i do not think this was discussed, and given the current type of
+> contribution we have, I am not sure it will be suiable. At least,
+> I think this should first be discussed with packager, no ( and also
+> with sysadmin if we find it suitable, maintainable, etc )
+
+i addedd it to not forgot, but reviewboard is something we _must_ have
+to allow more contribution to our own projects, tools, code, ...
+This is much better to use this than sending a patch on bugzilla.
+
+what do you mean suitable ?
+Projects like kde use it since a long time so they have already tested
+and we would know if there were any maintainance issue
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000316.html b/zarb-ml/mageia-sysadm/2010-November/000316.html new file mode 100644 index 000000000..64b9e7272 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000316.html @@ -0,0 +1,86 @@ + + + + [Mageia-sysadm] Use of Reviewboard + + + + + + + + + +

[Mageia-sysadm] Use of Reviewboard

+ Dexter Morgan + dmorganec at gmail.com +
+ Sun Nov 7 09:45:00 CET 2010 +

+
+ +
Hi,
+
+i would like us to use reviewboard to allow and encourage more contribution.
+
+"
+ Review Board is a powerful web-based code review tool that offers
+developers an easy way to handle code reviews. It scales well from
+small projects to large companies and offers a variety of tools to
+take much of the stress and time out of the code review process.
+
+For too long, code reviews have been too much of a chore. This is
+largely due to the lack of quality tools available, leaving developers
+to resort to e-mail and bug tracker-based solutions. "
+
+an example of review on kde reviewboard :
+
+http://reviewboard.kde.org/r/5775/
+
+
+I don't see any reason to not use it but please give your opinion.
+
+Regards
+D.Morgan
+
+ + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000317.html b/zarb-ml/mageia-sysadm/2010-November/000317.html new file mode 100644 index 000000000..aa34c47fc --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000317.html @@ -0,0 +1,91 @@ + + + + [Mageia-sysadm] Use of Reviewboard + + + + + + + + + +

[Mageia-sysadm] Use of Reviewboard

+ Dexter Morgan + dmorganec at gmail.com +
+ Sun Nov 7 10:37:31 CET 2010 +

+
+ +
On Sun, Nov 7, 2010 at 9:45 AM, Dexter Morgan <dmorganec at gmail.com> wrote:
+> Hi,
+>
+> i would like us to use reviewboard to allow and encourage more contribution.
+>
+> "
+>  Review Board is a powerful web-based code review tool that offers
+> developers an easy way to handle code reviews. It scales well from
+> small projects to large companies and offers a variety of tools to
+> take much of the stress and time out of the code review process.
+>
+> For too long, code reviews have been too much of a chore. This is
+> largely due to the lack of quality tools available, leaving developers
+> to resort to e-mail and bug tracker-based solutions. "
+>
+> an example of review on kde reviewboard :
+>
+> http://reviewboard.kde.org/r/5775/
+>
+>
+> I don't see any reason to not use it but please give your opinion.
+>
+> Regards
+> D.Morgan
+>
+
+And in addition it can be used with PostgreSQL
+
+ + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000318.html b/zarb-ml/mageia-sysadm/2010-November/000318.html new file mode 100644 index 000000000..648952606 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000318.html @@ -0,0 +1,77 @@ + + + + [Mageia-sysadm] secret key might be secret ? + + + + + + + + + +

[Mageia-sysadm] secret key might be secret ?

+ Philippe DIDIER + philippedidier at laposte.net +
+ Sun Nov 7 10:44:27 CET 2010 +

+
+ +
 Sorry for the French... but I wrote to Misc address (not to speak of
+this on the list itself and make visitors pay attention to it) and this
+post was apparently forwarded to the list...
+
+Anyway ... happy it was useful !
+
+Better to say a stupid thing than nothing, when we have some doubts !
+(that's what I say to people aboard when I'm skipping)
+
+Thanks for your job !
+
+Philippe
+
+ + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000319.html b/zarb-ml/mageia-sysadm/2010-November/000319.html new file mode 100644 index 000000000..a0e230525 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000319.html @@ -0,0 +1,157 @@ + + + + [Mageia-sysadm] [189] - add a alias not dependent on the pogsql version + + + + + + + + + +

[Mageia-sysadm] [189] - add a alias not dependent on the pogsql version

+ root at mageia.org + root at mageia.org +
+ Sun Nov 7 14:04:26 CET 2010 +

+
+ +
Revision: 189
+Author:   misc
+Date:     2010-11-07 14:04:26 +0100 (Sun, 07 Nov 2010)
+Log Message:
+-----------
+- add a alias not dependent on the pogsql version 
+- do not reload on restart ( as this may have side effect )
+- explicitly ask for reload on config file change ( with exec service reload )
+- use shorter name for file, with a common variable 
+
+Modified Paths:
+--------------
+    puppet/modules/postgresql/manifests/init.pp
+
+Modified: puppet/modules/postgresql/manifests/init.pp
+===================================================================
+--- puppet/modules/postgresql/manifests/init.pp	2010-11-07 00:46:55 UTC (rev 188)
++++ puppet/modules/postgresql/manifests/init.pp	2010-11-07 13:04:26 UTC (rev 189)
+@@ -1,15 +1,25 @@
+ class postgresql {
++    
++    $pgsql_data = "/var/lib/pgsql/data/"
++
+     package { 'postgresql9.0-server':
++        alias => "postgresql-server",
+         ensure => installed
+     }
+ 
+     service { postgresql:
+         ensure => running,
+-        subscribe => Package["postgresql9.0-server"],
+-        restart => "/etc/rc.d/init.d/postgresql reload",
++        subscribe => Package["postgresql-server"],
+         hasstatus => true,
+     }
+ 
++    exec { "service postgresql reload":
++        refreshonly => true,
++        subscribe => [ File["postgresql.conf"], 
++                       File["pg_ident.conf"],
++                       File["pg_hba.conf"] ]
++    }
++
+     file { '/etc/pam.d/postgresql':
+         ensure => present,
+         owner  => root,
+@@ -18,33 +28,33 @@
+         content => template("postgresql/pam"),
+     }
+ 
+-    file { '/var/lib/pgsql/data/postgresql.conf':
++    file { "postgresql.conf":
++        path => "$pgsql_data/$name",
+         ensure => present,
+         owner => postgres,
+         group => postgres,
+         mode => 600,
+         content => template("postgresql/postgresql.conf"),
+-        require => Package["postgresql9.0-server"],
+-        notify => [Service["postgresql"]]
++        require => Package["postgresql-server"],
+     }
+     
+-    file { '/var/lib/pgsql/data/pg_hba.conf':
++    file { 'pg_hba.conf':
++        path => "$pgsql_data/$name",
+         ensure => present,
+         owner => postgres,
+         group => postgres,
+         mode => 600,
+         content => template("postgresql/pg_hba.conf"),
+-        require => Package["postgresql9.0-server"],
+-        notify => [Service["postgresql"]]
++        require => Package["postgresql-server"],
+     }
+ 
+-    file { '/var/lib/pgsql/data/pg_ident.conf':
++    file { 'pg_ident.conf':
++        path => "$pgsql_data/$name",
+         ensure => present,
+         owner => postgres,
+         group => postgres,
+         mode => 600,
+         content => template("postgresql/pg_ident.conf"),
+-        require => Package["postgresql9.0-server"],
+-        notify => [Service["postgresql"]]
++        require => Package["postgresql-server"],
+     }
+ }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101107/fa973fab/attachment.html>
+
+ + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000320.html b/zarb-ml/mageia-sysadm/2010-November/000320.html new file mode 100644 index 000000000..3f580d27d --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000320.html @@ -0,0 +1,110 @@ + + + + [Mageia-sysadm] [190] - my trick about using $name do not work as expected + + + + + + + + + +

[Mageia-sysadm] [190] - my trick about using $name do not work as expected

+ root at mageia.org + root at mageia.org +
+ Sun Nov 7 14:07:01 CET 2010 +

+
+ +
Revision: 190
+Author:   misc
+Date:     2010-11-07 14:07:01 +0100 (Sun, 07 Nov 2010)
+Log Message:
+-----------
+- my trick about using $name do not work as expected
+
+Modified Paths:
+--------------
+    puppet/modules/postgresql/manifests/init.pp
+
+Modified: puppet/modules/postgresql/manifests/init.pp
+===================================================================
+--- puppet/modules/postgresql/manifests/init.pp	2010-11-07 13:04:26 UTC (rev 189)
++++ puppet/modules/postgresql/manifests/init.pp	2010-11-07 13:07:01 UTC (rev 190)
+@@ -29,7 +29,7 @@
+     }
+ 
+     file { "postgresql.conf":
+-        path => "$pgsql_data/$name",
++        path => "$pgsql_data/postgresql.conf",
+         ensure => present,
+         owner => postgres,
+         group => postgres,
+@@ -39,7 +39,7 @@
+     }
+     
+     file { 'pg_hba.conf':
+-        path => "$pgsql_data/$name",
++        path => "$pgsql_data/pg_hba.conf",
+         ensure => present,
+         owner => postgres,
+         group => postgres,
+@@ -49,7 +49,7 @@
+     }
+ 
+     file { 'pg_ident.conf':
+-        path => "$pgsql_data/$name",
++        path => "$pgsql_data/pg_ident.conf",
+         ensure => present,
+         owner => postgres,
+         group => postgres,
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101107/8e79ab87/attachment.html>
+
+ + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000321.html b/zarb-ml/mageia-sysadm/2010-November/000321.html new file mode 100644 index 000000000..bea68291e --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000321.html @@ -0,0 +1,92 @@ + + + + [Mageia-sysadm] [191] - fix the name of the file ( or it will conflict with blog class ) + + + + + + + + + +

[Mageia-sysadm] [191] - fix the name of the file ( or it will conflict with blog class )

+ root at mageia.org + root at mageia.org +
+ Sun Nov 7 14:17:29 CET 2010 +

+
+ +
Revision: 191
+Author:   misc
+Date:     2010-11-07 14:17:28 +0100 (Sun, 07 Nov 2010)
+Log Message:
+-----------
+- fix the name of the file ( or it will conflict with blog class ) 
+
+Modified Paths:
+--------------
+    puppet/modules/transifex/manifests/init.pp
+
+Modified: puppet/modules/transifex/manifests/init.pp
+===================================================================
+--- puppet/modules/transifex/manifests/init.pp	2010-11-07 13:07:01 UTC (rev 190)
++++ puppet/modules/transifex/manifests/init.pp	2010-11-07 13:17:28 UTC (rev 191)
+@@ -3,7 +3,7 @@
+     ensure => installed
+   }
+   
+-  file { "check_new-blog-post":
++  file { "20-engines.conf":
+     path => "/etc/transifex/20-engines.conf",
+     ensure => present,
+     owner => root,
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101107/b97d0b1e/attachment.html>
+
+ + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000322.html b/zarb-ml/mageia-sysadm/2010-November/000322.html new file mode 100644 index 000000000..a7e4b7524 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000322.html @@ -0,0 +1,117 @@ + + + + [Mageia-sysadm] Use of Reviewboard + + + + + + + + + +

[Mageia-sysadm] Use of Reviewboard

+ Michael scherer + misc at zarb.org +
+ Sun Nov 7 15:08:26 CET 2010 +

+
+ +
On Sun, Nov 07, 2010 at 09:45:00AM +0100, Dexter Morgan wrote:
+> Hi,
+> 
+> i would like us to use reviewboard to allow and encourage more contribution.
+> 
+> "
+>  Review Board is a powerful web-based code review tool that offers
+> developers an easy way to handle code reviews. It scales well from
+> small projects to large companies and offers a variety of tools to
+> take much of the stress and time out of the code review process.
+> 
+> For too long, code reviews have been too much of a chore. This is
+> largely due to the lack of quality tools available, leaving developers
+> to resort to e-mail and bug tracker-based solutions. "
+> 
+> an example of review on kde reviewboard :
+> 
+> http://reviewboard.kde.org/r/5775/
+> 
+> 
+> I don't see any reason to not use it but please give your opinion.
+
+Well, for sysadmin team, I do not see us receiveing much patchs at the moment (
+ie, 0 since the start of the team ), and I think that for the moment again, 
+a email based review would be enough for the start.
+
+So this may be overkill until people start to send us lots of patch. 
+Now, maybe the developpers ( ie -dev, -webteam ) may have others needs too, but no mail
+was sent on -dev for the moment, so I will assume that we will be users of this tool and
+not them. So unless we as sysadm team decide to do more code review ( ie, puppet review ),
+it will not be used by us.
+
+More ever, the more web application we maintain, the
+more it will difficult to upgrade the underlying framework. 
+
+In the case of transifex and reviewboard, they are both written in django.
+And as a python/django coder and maintainer, I fear that we will have sooner or 
+later a conflict of version to solve. While Django API is labeled as stable, 
+they add new features, which may requires
+updates to the core, which then may cause trouble to other applications.
+
+I have nothing against reviewboard or the idea by itself, and it may be valuable, 
+but I do think we should have demand coming from our community, before deploying
+things. Maybe the review process will not be what others want. One of the goal 
+was to listen more to others, and that's exactly what we need to do. ( and to be credible,
+it would be nice to also present alternative software, to show we took the
+more suitable one, not the one that one of us happen to know the best ).
+
+I would prefer to see "we have this need, we need to solve it with this procedure"
+rather than "here is a tool that I like, and we should install it" :/
+
+Ie, be task focused rather than product focused. 
+
+-- 
+Michael Scherer
+
+ + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000323.html b/zarb-ml/mageia-sysadm/2010-November/000323.html new file mode 100644 index 000000000..f5e7062cd --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000323.html @@ -0,0 +1,121 @@ + + + + [Mageia-sysadm] [186] Add review board to isntall + + + + + + + + + +

[Mageia-sysadm] [186] Add review board to isntall

+ Michael scherer + misc at zarb.org +
+ Sun Nov 7 15:29:06 CET 2010 +

+
+ +
On Sun, Nov 07, 2010 at 09:40:19AM +0100, Dexter Morgan wrote:
+> On Sun, Nov 7, 2010 at 3:23 AM, Michael scherer <misc at zarb.org> wrote:
+> > On Sat, Nov 06, 2010 at 09:31:35PM +0100, root at mageia.org wrote:
+> >> Revision: 186
+> >> Author:   dmorgan
+> >> Date:     2010-11-06 21:31:35 +0100 (Sat, 06 Nov 2010)
+> >> Log Message:
+> >> -----------
+> >> Add review board to isntall
+> >
+> > who asked for it ?
+> > i do not think this was discussed, and given the current type of
+> > contribution we have, I am not sure it will be suiable. At least,
+> > I think this should first be discussed with packager, no ( and also
+> > with sysadmin if we find it suitable, maintainable, etc )
+> 
+> i addedd it to not forgot, but reviewboard is something we _must_ have
+> to allow more contribution to our own projects, tools, code, ...
+> This is much better to use this than sending a patch on bugzilla.
+
+A tool do not replace a process. If there is no one to do code review,
+the tool will not be used. We cannot dictate "now, we do code review" without 
+discussing with others involved persons first ( ie, coders, maybe mackagers ).
+Maybe they would prefer a different way of doing it ( like email, like doing it on irc,
+like doing it like postgresql ). If we want to empower the community as a whole, 
+the community must do its own choices.
+
+I do think code review is a good idea. And I do like reviewboard, don't get me wrong.
+But before installing it and using it, others peoples must see how it can be useful, 
+how it work, etc.
+
+This also mean to agree on procedure, ie, do we let people propose patch on bugzilla ?
+Who can review ? Who has the final word to say ? 
+
+Ie, the tool must be derivated by the workflow, not the reverse. So first a workflow 
+must be found, IMHO. 
+
+And all of this requires to have the team in place, and to have someone involved
+into trying to convince people of using best practices. Even if we will 
+likely be right in the end, what is needed is that procedure like this are feel
+welcomed by contributers, rather than imposed. This is indeed a more lengthy process, yes
+and this is frustrating, yes. And this also may end differently that what we would
+want, yes. 
+
+> 
+> what do you mean suitable ?
+> Projects like kde use it since a long time so they have already tested
+> and we would know if there were any maintainance issue
+
+Well, transifex is also used since a long time by other projects ( Fedora for
+example ), and no one raised the maintenace issues here afaik, 
+despites them being know ( at least in the pre 1.0 version ). 
+
+We also need to check if it support ldap and others things : 
+- users in ldap, 
+- dynamic acls based on ldap, ( ie, let all people in the sysadm team review patch for sysadm )
+- a non webbased config (for puppet integration, or we would lose auditing and the advantage of vcs ).
+
+1 seems ok. 2 and 3, rather not :/ 
+
+( and this make me think this may not be the case for transifex etheir, and that we 
+should have checked ). 
+-- 
+Michael scherer
+
+ + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000324.html b/zarb-ml/mageia-sysadm/2010-November/000324.html new file mode 100644 index 000000000..780aad3eb --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000324.html @@ -0,0 +1,69 @@ + + + + [Mageia-sysadm] [188] First commit for the puppet bugzilla module + + + + + + + + + +

[Mageia-sysadm] [188] First commit for the puppet bugzilla module

+ Thierry Vignaud + thierry.vignaud at gmail.com +
+ Sun Nov 7 15:56:29 CET 2010 +

+
+ +
On 7 November 2010 03:17, Michael scherer <misc at zarb.org> wrote:
+> we didn't really decide to install bugzilla, according to the meeting agenda for
+> monday. While it may be the one we end to choose, it doesn't have xml-rpc
+> (requested by stormi for mageia-app-db, see discuss ml)
+
+err...
+http://www.bugzilla.org/docs/3.6/en/html/api/Bugzilla/WebService/Server/XMLRPC.html
+
+> and it is notable that users do find bugzilla intuitive.
+
+I'm not sure of that.
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000325.html b/zarb-ml/mageia-sysadm/2010-November/000325.html new file mode 100644 index 000000000..499a490f7 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000325.html @@ -0,0 +1,81 @@ + + + + [Mageia-sysadm] [188] First commit for the puppet bugzilla module + + + + + + + + + +

[Mageia-sysadm] [188] First commit for the puppet bugzilla module

+ Michael scherer + misc at zarb.org +
+ Sun Nov 7 16:17:50 CET 2010 +

+
+ +
On Sun, Nov 07, 2010 at 03:56:29PM +0100, Thierry Vignaud wrote:
+> On 7 November 2010 03:17, Michael scherer <misc at zarb.org> wrote:
+> > we didn't really decide to install bugzilla, according to the meeting agenda for
+> > monday. While it may be the one we end to choose, it doesn't have xml-rpc
+> > (requested by stormi for mageia-app-db, see discuss ml)
+> 
+> err...
+> http://www.bugzilla.org/docs/3.6/en/html/api/Bugzilla/WebService/Server/XMLRPC.html
+
+That's nice that it changed, I was not sure since we never used it at mandriva 
+( now, we may have used a older version, which would have explained it ).
+Yet, we need to find if it fullfill stormi's need ( but I assume it will ). 
+ 
+> > and it is notable that users do find bugzilla intuitive.
+> 
+> I'm not sure of that.
+
+Well, some people complained of it :/
+( that doesn't mean they are right, but at least, we can take
+this in account ).
+
+-- 
+Michael Scherer
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000326.html b/zarb-ml/mageia-sysadm/2010-November/000326.html new file mode 100644 index 000000000..2fd0572a8 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000326.html @@ -0,0 +1,76 @@ + + + + [Mageia-sysadm] modos + + + + + + + + + +

[Mageia-sysadm] modos

+ Maât + maat at vilarem.net +
+ Sun Nov 7 21:48:31 CET 2010 +

+
+ +
Voilà la liste pour l'alias moderation
+
+stephengermany at earthlink.net (Stephen Germany aka Germ)
+megastorage74 at gmail.com (Stéphane Flavigny  aka stef74)
+aurelien.goll at gmail.com (Aurélien Goll  aka Ohan)
+
+omejean at yahoo.fr (Olivier Méjean aka goom)
+rom1dep at gmail.com (Romain ??? aka rom1dep)
+ashledombos at hodo.fr (Raphael Jadot aka ashledombos)
+maat-ml at vilarem.net (Pascal Vilarem aka maat)
+
+
+Thanks guys :)
+Maât
+
+ + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000327.html b/zarb-ml/mageia-sysadm/2010-November/000327.html new file mode 100644 index 000000000..5056aaa3c --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000327.html @@ -0,0 +1,82 @@ + + + + [Mageia-sysadm] [188] First commit for the puppet bugzilla module + + + + + + + + + +

[Mageia-sysadm] [188] First commit for the puppet bugzilla module

+ Dexter Morgan + dmorganec at gmail.com +
+ Mon Nov 8 00:05:18 CET 2010 +

+
+ +
On Sun, Nov 7, 2010 at 4:17 PM, Michael scherer <misc at zarb.org> wrote:
+> On Sun, Nov 07, 2010 at 03:56:29PM +0100, Thierry Vignaud wrote:
+>> On 7 November 2010 03:17, Michael scherer <misc at zarb.org> wrote:
+>> > we didn't really decide to install bugzilla, according to the meeting agenda for
+>> > monday. While it may be the one we end to choose, it doesn't have xml-rpc
+>> > (requested by stormi for mageia-app-db, see discuss ml)
+>>
+>> err...
+>> http://www.bugzilla.org/docs/3.6/en/html/api/Bugzilla/WebService/Server/XMLRPC.html
+>
+> That's nice that it changed, I was not sure since we never used it at mandriva
+> ( now, we may have used a older version, which would have explained it ).
+> Yet, we need to find if it fullfill stormi's need ( but I assume it will ).
+>
+>> > and it is notable that users do find bugzilla intuitive.
+>>
+>> I'm not sure of that.
+>
+> Well, some people complained of it :/
+> ( that doesn't mean they are right, but at least, we can take
+> this in account ).
+
+what bug trackers do you propose ?
+we need to go quite quick to have this available.
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000328.html b/zarb-ml/mageia-sysadm/2010-November/000328.html new file mode 100644 index 000000000..f6f17a89c --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000328.html @@ -0,0 +1,111 @@ + + + + [Mageia-sysadm] [117] - clean the code ( cache is unused, and get_date too, I checked check_upload_tree ) + + + + + + + + + +

[Mageia-sysadm] [117] - clean the code ( cache is unused, and get_date too, I checked check_upload_tree )

+ root at mageia.org + root at mageia.org +
+ Mon Nov 8 00:06:36 CET 2010 +

+
+ +
Revision: 117
+Author:   misc
+Date:     2010-11-08 00:06:36 +0100 (Mon, 08 Nov 2010)
+Log Message:
+-----------
+- clean the code ( cache is unused, and get_date too, I checked check_upload_tree )
+
+Modified Paths:
+--------------
+    build_system/iurt/trunk/emi
+
+Modified: build_system/iurt/trunk/emi
+===================================================================
+--- build_system/iurt/trunk/emi	2010-11-06 17:49:58 UTC (rev 116)
++++ build_system/iurt/trunk/emi	2010-11-07 23:06:36 UTC (rev 117)
+@@ -29,7 +29,7 @@
+ 
+ use strict;
+ use MDK::Common;
+-use Iurt::Config qw(config_usage get_date config_init dump_cache init_cache get_author_email);
++use Iurt::Config qw(config_usage config_init get_author_email);
+ use Iurt::Process qw(check_pid);
+ use Iurt::Mail qw(sendmail);
+ use Iurt::File qw(check_upload_tree);
+@@ -109,11 +109,8 @@
+ $run{pidfile} = "upload";
+ my $pidfile = check_pid(\%run);
+ 
+-#my $cache = init_cache(\%run, $config, { arch => {} });
+ my $cache =  { arch => {} };
+ 
+-my ($_fulldate, $daydate) = get_date();
+-$run{daydate} = $daydate;
+ 
+ my $todo = "$config->{queue}/todo/";
+ my $done = "$config->{queue}/done/";
+@@ -284,6 +281,5 @@
+     }
+ }
+ 
+-#dump_cache(\%run);
+ exit();
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101108/18b9cf91/attachment.html>
+
+ + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000329.html b/zarb-ml/mageia-sysadm/2010-November/000329.html new file mode 100644 index 000000000..b040f7808 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000329.html @@ -0,0 +1,96 @@ + + + + [Mageia-sysadm] [192] - add a mod_ssl class + + + + + + + + + +

[Mageia-sysadm] [192] - add a mod_ssl class

+ root at mageia.org + root at mageia.org +
+ Mon Nov 8 00:30:39 CET 2010 +

+
+ +
Revision: 192
+Author:   misc
+Date:     2010-11-08 00:30:39 +0100 (Mon, 08 Nov 2010)
+Log Message:
+-----------
+- add a mod_ssl class
+
+Modified Paths:
+--------------
+    puppet/modules/apache/manifests/init.pp
+
+Modified: puppet/modules/apache/manifests/init.pp
+===================================================================
+--- puppet/modules/apache/manifests/init.pp	2010-11-07 13:17:28 UTC (rev 191)
++++ puppet/modules/apache/manifests/init.pp	2010-11-07 23:30:39 UTC (rev 192)
+@@ -51,6 +51,12 @@
+         }
+     }
+ 
++    class mod_ssl inherits base {
++        package { "apache-mod_ssl":
++            ensure => installed
++        }
++    }
++
+     class mod_wsgi inherits base {
+         package { "apache-mod_wsgi":
+             ensure => installed
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101108/ac9288fc/attachment.html>
+
+ + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000330.html b/zarb-ml/mageia-sysadm/2010-November/000330.html new file mode 100644 index 000000000..ec56f0b52 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000330.html @@ -0,0 +1,159 @@ + + + + [Mageia-sysadm] [193] - remove tabulation ( so indentation is really fixed ) + + + + + + + + + +

[Mageia-sysadm] [193] - remove tabulation ( so indentation is really fixed )

+ root at mageia.org + root at mageia.org +
+ Mon Nov 8 00:36:49 CET 2010 +

+
+ +
Revision: 193
+Author:   misc
+Date:     2010-11-08 00:36:49 +0100 (Mon, 08 Nov 2010)
+Log Message:
+-----------
+- remove tabulation ( so indentation is really fixed )
+- clean old comments ( ie, things we deployed )
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-07 23:30:39 UTC (rev 192)
++++ puppet/manifests/nodes.pp	2010-11-07 23:36:49 UTC (rev 193)
+@@ -9,7 +9,6 @@
+ # - setup restricted shell access to allow "mdvsys submit" to work
+ # - setup maintainers database (with web interface)
+ # - mirroring (Nanar)
+-# - LDAP master
+ #
+     include default_mageia_server
+     timezone::timezone { "Europe/Paris": }
+@@ -40,11 +39,10 @@
+ # - mail server
+ # - mailing list server
+ # - wiki
+-# - pastbin
++# - pastebin
+ # - LDAP slave
+-# - SQL server
+ # 
+-	  include default_mageia_server
++    include default_mageia_server
+     include bind::bind_master
+     include postgresql
+     bind::zone_master { "mageia.org": }
+@@ -61,16 +59,16 @@
+ node jonund {
+ # Location: IELO datacenter (marseille)
+ #
+-	  include default_mageia_server
+-	  include iurt
++    include default_mageia_server
++    include iurt
+     timezone::timezone { "Europe/Paris": }
+ }
+ 
+ node ecosse {
+ # Location: IELO datacenter (marseille)
+ #
+-	  include default_mageia_server
+-	  include iurt
++    include default_mageia_server
++    include iurt
+     timezone::timezone { "Europe/Paris": }
+ }
+ 
+@@ -82,8 +80,8 @@
+ # TODO:
+ # - buy the server
+ # - install the server in datacenter
+-#
+-	  include default_mageia_server
++# - install a backup system
++    include default_mageia_server
+ } 
+ 
+ # gandi-vm
+@@ -94,7 +92,7 @@
+ # - secondary MX
+ # - LDAP slave (for external traffic maybe)
+ #
+-	  include default_mageia_server
++    include default_mageia_server
+     include bind::bind_master
+     bind::zone_master { "mageia.org": }
+     bind::zone_master { "mageia.fr": } 
+@@ -110,10 +108,9 @@
+ # - setup mageia.org web site
+ # - setup blog
+ #
+-	  include default_mageia_server
++    include default_mageia_server
+     include apache::base
+     timezone::timezone { "Europe/Paris": }
+-    #include postfix
+     include blog
+ }
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101108/e8975eb5/attachment-0001.html>
+
+ + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000331.html b/zarb-ml/mageia-sysadm/2010-November/000331.html new file mode 100644 index 000000000..feb6caa8f --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000331.html @@ -0,0 +1,89 @@ + + + + [Mageia-sysadm] [118] - remove wrong import, to fix catdap + + + + + + + + + +

[Mageia-sysadm] [118] - remove wrong import, to fix catdap

+ root at mageia.org + root at mageia.org +
+ Mon Nov 8 01:09:25 CET 2010 +

+
+ +
Revision: 118
+Author:   misc
+Date:     2010-11-08 01:09:25 +0100 (Mon, 08 Nov 2010)
+Log Message:
+-----------
+- remove wrong import, to fix catdap 
+
+Modified Paths:
+--------------
+    identity/CatDap/branches/live/lib/CatDap/Controller/Root.pm
+
+Modified: identity/CatDap/branches/live/lib/CatDap/Controller/Root.pm
+===================================================================
+--- identity/CatDap/branches/live/lib/CatDap/Controller/Root.pm	2010-11-07 23:06:36 UTC (rev 117)
++++ identity/CatDap/branches/live/lib/CatDap/Controller/Root.pm	2010-11-08 00:09:25 UTC (rev 118)
+@@ -1,5 +1,4 @@
+ package CatDap::Controller::Root;
+-use Static::Simple;
+ use Moose;
+ use namespace::autoclean;
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101108/641842a6/attachment.html>
+
+ + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000332.html b/zarb-ml/mageia-sysadm/2010-November/000332.html new file mode 100644 index 000000000..7cbd94f3a --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000332.html @@ -0,0 +1,109 @@ + + + + [Mageia-sysadm] [194] - add a hook to serve static file with apache directly + + + + + + + + + +

[Mageia-sysadm] [194] - add a hook to serve static file with apache directly

+ root at mageia.org + root at mageia.org +
+ Mon Nov 8 01:18:44 CET 2010 +

+
+ +
Revision: 194
+Author:   misc
+Date:     2010-11-08 01:18:44 +0100 (Mon, 08 Nov 2010)
+Log Message:
+-----------
+- add a hook to serve static file with apache directly
+
+Modified Paths:
+--------------
+    puppet/modules/apache/manifests/init.pp
+    puppet/modules/apache/templates/vhost_catalyst_app.conf
+
+Modified: puppet/modules/apache/manifests/init.pp
+===================================================================
+--- puppet/modules/apache/manifests/init.pp	2010-11-07 23:36:49 UTC (rev 193)
++++ puppet/modules/apache/manifests/init.pp	2010-11-08 00:18:44 UTC (rev 194)
+@@ -82,7 +82,7 @@
+         }
+     }
+ 
+-    define vhost_catalyst_app($script, $process = 4, $use_ssl = false) {
++    define vhost_catalyst_app($script, $location = '', $process = 4, $use_ssl = false) {
+ 
+         include apache::mod_fastcgi 
+ 
+
+Modified: puppet/modules/apache/templates/vhost_catalyst_app.conf
+===================================================================
+--- puppet/modules/apache/templates/vhost_catalyst_app.conf	2010-11-07 23:36:49 UTC (rev 193)
++++ puppet/modules/apache/templates/vhost_catalyst_app.conf	2010-11-08 00:18:44 UTC (rev 194)
+@@ -2,7 +2,9 @@
+         ServerName <%= name %>
+         # Serve static content directly
+         DocumentRoot  /dev/null
+-
++<% if location then %>
++        Alias /static <%= location %>/root/static
++<% endif %>
+         Alias / <%= script %>/
+         FastCgiServer <%= script %> -processes <%= process %> -idle-timeout 30
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101108/017de46d/attachment.html>
+
+ + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000333.html b/zarb-ml/mageia-sysadm/2010-November/000333.html new file mode 100644 index 000000000..5b4793127 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000333.html @@ -0,0 +1,100 @@ + + + + [Mageia-sysadm] [195] add bugs.mageia.org + + + + + + + + + +

[Mageia-sysadm] [195] add bugs.mageia.org

+ root at mageia.org + root at mageia.org +
+ Mon Nov 8 01:21:42 CET 2010 +

+
+ +
Revision: 195
+Author:   boklm
+Date:     2010-11-08 01:21:42 +0100 (Mon, 08 Nov 2010)
+Log Message:
+-----------
+add bugs.mageia.org
+
+Modified Paths:
+--------------
+    puppet/modules/bind/templates/zones/mageia.org.zone
+
+Modified: puppet/modules/bind/templates/zones/mageia.org.zone
+===================================================================
+--- puppet/modules/bind/templates/zones/mageia.org.zone	2010-11-08 00:18:44 UTC (rev 194)
++++ puppet/modules/bind/templates/zones/mageia.org.zone	2010-11-08 00:21:42 UTC (rev 195)
+@@ -3,7 +3,7 @@
+ ; $Id$
+ $TTL	3D
+ @       IN      SOA     ns0.mageia.org.   root.mageia.org.  (
+-        2010110500	; Serial
++        2010110800	; Serial
+         21600		; Refresh
+         3600		; Retry
+         2419200		; Expire
+@@ -70,6 +70,7 @@
+ mirrors     IN CNAME alamut
+ epoll       IN CNAME alamut
+ pgsql       IN CNAME alamut
++bugs        IN CNAME alamut
+ ; temporary
+ ;forum       IN A 140.211.167.148
+ ;wiki            IN      A       88.191.83.84
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101108/1b6e5120/attachment.html>
+
+ + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000334.html b/zarb-ml/mageia-sysadm/2010-November/000334.html new file mode 100644 index 000000000..ca896ccf4 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000334.html @@ -0,0 +1,103 @@ + + + + [Mageia-sysadm] [196] - add logic for using ssl certificate ( no SNI for the moment, but should be done later ) + + + + + + + + + +

[Mageia-sysadm] [196] - add logic for using ssl certificate ( no SNI for the moment, but should be done later )

+ root at mageia.org + root at mageia.org +
+ Mon Nov 8 01:37:59 CET 2010 +

+
+ +
Revision: 196
+Author:   misc
+Date:     2010-11-08 01:37:59 +0100 (Mon, 08 Nov 2010)
+Log Message:
+-----------
+- add logic for using ssl certificate ( no SNI for the moment, but should be done later )
+
+Modified Paths:
+--------------
+    puppet/modules/apache/templates/vhost_catalyst_app.conf
+
+Modified: puppet/modules/apache/templates/vhost_catalyst_app.conf
+===================================================================
+--- puppet/modules/apache/templates/vhost_catalyst_app.conf	2010-11-08 00:21:42 UTC (rev 195)
++++ puppet/modules/apache/templates/vhost_catalyst_app.conf	2010-11-08 00:37:59 UTC (rev 196)
+@@ -1,4 +1,17 @@
+-<VirtualHost *:80>
++<% if use_ssl then
++    port = 443
++else
++    port = 80
++end
++%>
++
++<VirtualHost *:<%= port %>>
++<% if use_ssl then %>
++        SSLEngine on
++        #TODO deploy SNI later 
++        SSLCertificateFile /etc/ssl/apache/apache.pem
++        SSLCertificateKeyFile /etc/ssl/apache/apache.pem
++<% end %>
+         ServerName <%= name %>
+         # Serve static content directly
+         DocumentRoot  /dev/null
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101108/b8c55f9f/attachment.html>
+
+ + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000335.html b/zarb-ml/mageia-sysadm/2010-November/000335.html new file mode 100644 index 000000000..18e1f3023 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000335.html @@ -0,0 +1,115 @@ + + + + [Mageia-sysadm] [197] - deploy catdap with ssl and fastcgi + + + + + + + + + +

[Mageia-sysadm] [197] - deploy catdap with ssl and fastcgi

+ root at mageia.org + root at mageia.org +
+ Mon Nov 8 01:41:39 CET 2010 +

+
+ +
Revision: 197
+Author:   misc
+Date:     2010-11-08 01:41:39 +0100 (Mon, 08 Nov 2010)
+Log Message:
+-----------
+- deploy catdap with ssl and fastcgi
+
+Modified Paths:
+--------------
+    puppet/modules/catdap/manifests/init.pp
+
+Modified: puppet/modules/catdap/manifests/init.pp
+===================================================================
+--- puppet/modules/catdap/manifests/init.pp	2010-11-08 00:37:59 UTC (rev 196)
++++ puppet/modules/catdap/manifests/init.pp	2010-11-08 00:41:39 UTC (rev 197)
+@@ -35,14 +35,21 @@
+         require => Subversion::Snapshot[$catdap_location]
+     }
+ 
++    apache::vhost_catalyst_app { $catdap_vhost:
++        location => $catdap_location,
++        use_ssl => true,
++    }
++
++    apache::vhost_redirect_ssl { $catdap_vhost: }
++
+     # add a apache vhost
+-    file { "$catdap_vhost.conf":
+-        path => "/etc/httpd/conf/vhosts.d/$catdap_vhost.conf",
+-        ensure => "present",
+-        owner => root,
+-        group => root,
+-        mode => 644,
+-        notify => Service['apache'],
+-        content => template("catdap/catdap_vhost.conf")
+-    }    
++#    file { "$catdap_vhost.conf":
++#        path => "/etc/httpd/conf/vhosts.d/$catdap_vhost.conf",
++#        ensure => "present",
++#        owner => root,
++#        group => root,
++#        mode => 644,
++#        notify => Service['apache'],
++#        content => template("catdap/catdap_vhost.conf")
++#    }    
+ }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101108/86ccfbf1/attachment-0001.html>
+
+ + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000336.html b/zarb-ml/mageia-sysadm/2010-November/000336.html new file mode 100644 index 000000000..343bac6e1 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000336.html @@ -0,0 +1,92 @@ + + + + [Mageia-sysadm] [198] - forgot to give the script ( I didn' t found how to make sure that puppet read my mind ) + + + + + + + + + +

[Mageia-sysadm] [198] - forgot to give the script ( I didn' t found how to make sure that puppet read my mind )

+ root at mageia.org + root at mageia.org +
+ Mon Nov 8 01:44:13 CET 2010 +

+
+ +
Revision: 198
+Author:   misc
+Date:     2010-11-08 01:44:13 +0100 (Mon, 08 Nov 2010)
+Log Message:
+-----------
+- forgot to give the script ( I didn't found how to make sure that puppet read my mind )
+
+Modified Paths:
+--------------
+    puppet/modules/catdap/manifests/init.pp
+
+Modified: puppet/modules/catdap/manifests/init.pp
+===================================================================
+--- puppet/modules/catdap/manifests/init.pp	2010-11-08 00:41:39 UTC (rev 197)
++++ puppet/modules/catdap/manifests/init.pp	2010-11-08 00:44:13 UTC (rev 198)
+@@ -36,6 +36,7 @@
+     }
+ 
+     apache::vhost_catalyst_app { $catdap_vhost:
++        script => "$catdap_location/script/catdap_fastcgi.pl",
+         location => $catdap_location,
+         use_ssl => true,
+     }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101108/54233885/attachment.html>
+
+ + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000337.html b/zarb-ml/mageia-sysadm/2010-November/000337.html new file mode 100644 index 000000000..507c26761 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000337.html @@ -0,0 +1,93 @@ + + + + [Mageia-sysadm] [199] - fix syntax error in the template ( TODO add a check in pre-commit ) + + + + + + + + + +

[Mageia-sysadm] [199] - fix syntax error in the template ( TODO add a check in pre-commit )

+ root at mageia.org + root at mageia.org +
+ Mon Nov 8 01:47:09 CET 2010 +

+
+ +
Revision: 199
+Author:   misc
+Date:     2010-11-08 01:47:08 +0100 (Mon, 08 Nov 2010)
+Log Message:
+-----------
+- fix syntax error in the template ( TODO add a check in pre-commit )
+
+Modified Paths:
+--------------
+    puppet/modules/apache/templates/vhost_catalyst_app.conf
+
+Modified: puppet/modules/apache/templates/vhost_catalyst_app.conf
+===================================================================
+--- puppet/modules/apache/templates/vhost_catalyst_app.conf	2010-11-08 00:44:13 UTC (rev 198)
++++ puppet/modules/apache/templates/vhost_catalyst_app.conf	2010-11-08 00:47:08 UTC (rev 199)
+@@ -17,7 +17,7 @@
+         DocumentRoot  /dev/null
+ <% if location then %>
+         Alias /static <%= location %>/root/static
+-<% endif %>
++<% end %>
+         Alias / <%= script %>/
+         FastCgiServer <%= script %> -processes <%= process %> -idle-timeout 30
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101108/43d83843/attachment.html>
+
+ + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000338.html b/zarb-ml/mageia-sysadm/2010-November/000338.html new file mode 100644 index 000000000..349585355 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000338.html @@ -0,0 +1,91 @@ + + + + [Mageia-sysadm] [200] - fix template here too + + + + + + + + + +

[Mageia-sysadm] [200] - fix template here too

+ root at mageia.org + root at mageia.org +
+ Mon Nov 8 01:48:05 CET 2010 +

+
+ +
Revision: 200
+Author:   misc
+Date:     2010-11-08 01:48:05 +0100 (Mon, 08 Nov 2010)
+Log Message:
+-----------
+- fix template here too
+
+Modified Paths:
+--------------
+    puppet/modules/apache/templates/vhost_ssl_redirect.conf
+
+Modified: puppet/modules/apache/templates/vhost_ssl_redirect.conf
+===================================================================
+--- puppet/modules/apache/templates/vhost_ssl_redirect.conf	2010-11-08 00:47:08 UTC (rev 199)
++++ puppet/modules/apache/templates/vhost_ssl_redirect.conf	2010-11-08 00:48:05 UTC (rev 200)
+@@ -1,4 +1,4 @@
+ <VirtualHost *:80>
+-        ServerName <%= vhost %>
+-        Redirect / https://<%= vhost %>/
++        ServerName <%= name %>
++        Redirect / https://<%= name %>/
+ </VirtualHost>
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101108/e62c1eb6/attachment.html>
+
+ + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000339.html b/zarb-ml/mageia-sysadm/2010-November/000339.html new file mode 100644 index 000000000..e84998ad7 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000339.html @@ -0,0 +1,81 @@ + + + + [Mageia-sysadm] puppet stopped on all nodes ? + + + + + + + + + +

[Mageia-sysadm] puppet stopped on all nodes ?

+ Michael Scherer + misc at zarb.org +
+ Mon Nov 8 01:55:46 CET 2010 +

+
+ +
Hi,
+
+it seems that puppet was stopped on all nodes. 
+
+For the 2 gandi vm, the reason is simple, that's older distro that were
+not upgraded to latest puppet. I will take care of building a backport
+for them.
+
+For the 2010.1 node, this is weirder. I will see what happened tomorow,
+if I found the time, but feel free to investigate ( it may be related to
+logrotate, as I am tracking a bug on this since months ).
+
+-- 
+Michael Scherer
+
+
+ + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000340.html b/zarb-ml/mageia-sysadm/2010-November/000340.html new file mode 100644 index 000000000..0ae728e7a --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000340.html @@ -0,0 +1,153 @@ + + + + [Mageia-sysadm] [201] - I refactored too much this doesn't work as intended for define + + + + + + + + + +

[Mageia-sysadm] [201] - I refactored too much this doesn't work as intended for define

+ root at mageia.org + root at mageia.org +
+ Mon Nov 8 02:12:49 CET 2010 +

+
+ +
Revision: 201
+Author:   misc
+Date:     2010-11-08 02:12:49 +0100 (Mon, 08 Nov 2010)
+Log Message:
+-----------
+- I refactored too much this doesn't work as intended for define 
+
+Modified Paths:
+--------------
+    puppet/modules/apache/manifests/init.pp
+    puppet/modules/apache/templates/vhost_django_app.conf
+
+Modified: puppet/modules/apache/manifests/init.pp
+===================================================================
+--- puppet/modules/apache/manifests/init.pp	2010-11-08 00:48:05 UTC (rev 200)
++++ puppet/modules/apache/manifests/init.pp	2010-11-08 01:12:49 UTC (rev 201)
+@@ -1,8 +1,5 @@
+ class apache {
+ 
+-    $vhost_dir = "/etc/httpd/conf/vhosts.d"
+-    $wsgi_dir = "/usr/local/lib/wsgi"
+- 
+     class base {
+         package { "apache-mpm-prefork":
+             alias => apache,
+@@ -62,7 +59,7 @@
+             ensure => installed
+         }
+ 
+-        file { $wsgi_dir:
++        file { "/usr/local/lib/wsgi":
+             ensure => directory,
+             owner => root,
+             group => root,
+@@ -72,7 +69,7 @@
+ 
+     define vhost_redirect_ssl() {
+         file { "redirect_ssl_$name.conf":
+-            path => "$vhost_dir/redirect_ssl_$name.conf",
++            path => "/etc/httpd/conf/vhosts.d/redirect_ssl_$name.conf",
+             ensure => "present",
+             owner => root,
+             group => root,
+@@ -87,7 +84,7 @@
+         include apache::mod_fastcgi 
+ 
+         file { "$name.conf":
+-            path => "$vhost_dir/$name.conf",
++            path => "/etc/httpd/conf/vhosts.d/$name.conf",
+             ensure => "present",
+             owner => root,
+             group => root,
+@@ -101,7 +98,7 @@
+         include apache::mod_wsgi
+ 
+         file { "$name.conf":
+-            path => "$vhost_dir/$name.conf",
++            path => "/etc/httpd/conf/vhosts.d/$name.conf",
+             ensure => "present",
+             owner => root,
+             group => root,
+@@ -112,7 +109,7 @@
+ 
+         # fichier django wsgi
+         file { "$name.wsgi":
+-            path => "$wsgi_dir/$name.wsgi",
++            path => "/usr/local/lib/wsgi/$name.wsgi",
+             ensure => "present",
+             owner => root,
+             group => root,
+
+Modified: puppet/modules/apache/templates/vhost_django_app.conf
+===================================================================
+--- puppet/modules/apache/templates/vhost_django_app.conf	2010-11-08 00:48:05 UTC (rev 200)
++++ puppet/modules/apache/templates/vhost_django_app.conf	2010-11-08 01:12:49 UTC (rev 201)
+@@ -3,7 +3,7 @@
+         # Serve static content directly
+         DocumentRoot  /dev/null
+ 
+-        WSGIScriptAlias / <%= wsgi_dir%>/<%= name %>.wsgi
++        WSGIScriptAlias / /usr/local/lib/wsgi/<%= name %>.wsgi
+ 
+         <Location />
+             Allow from all
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101108/4aec9ca7/attachment-0001.html>
+
+ + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000341.html b/zarb-ml/mageia-sysadm/2010-November/000341.html new file mode 100644 index 000000000..c83fafa20 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000341.html @@ -0,0 +1,100 @@ + + + + [Mageia-sysadm] [202] - deploy the tagmail configuration file, so we get error on manifest application + + + + + + + + + +

[Mageia-sysadm] [202] - deploy the tagmail configuration file, so we get error on manifest application

+ root at mageia.org + root at mageia.org +
+ Mon Nov 8 02:16:11 CET 2010 +

+
+ +
Revision: 202
+Author:   misc
+Date:     2010-11-08 02:16:10 +0100 (Mon, 08 Nov 2010)
+Log Message:
+-----------
+- deploy the tagmail configuration file, so we get error on manifest application
+
+Modified Paths:
+--------------
+    puppet/modules/puppet/manifests/init.pp
+
+Modified: puppet/modules/puppet/manifests/init.pp
+===================================================================
+--- puppet/modules/puppet/manifests/init.pp	2010-11-08 01:12:49 UTC (rev 201)
++++ puppet/modules/puppet/manifests/init.pp	2010-11-08 01:16:10 UTC (rev 202)
+@@ -39,5 +39,15 @@
+             mode => 700,
+             recurse => true
+         }
++
++        file { '/etc/puppet/tagmail.conf':
++            ensure => present,
++            owner => puppet,
++            group => puppet,
++            mode => 700,
++            recurse => true
++            content => template("puppet/tagmail.conf"),
++       } 
++        
+     }
+ }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101108/a6d214d9/attachment.html>
+
+ + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000342.html b/zarb-ml/mageia-sysadm/2010-November/000342.html new file mode 100644 index 000000000..970ae87d0 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000342.html @@ -0,0 +1,99 @@ + + + + [Mageia-sysadm] [188] First commit for the puppet bugzilla module + + + + + + + + + +

[Mageia-sysadm] [188] First commit for the puppet bugzilla module

+ Michael Scherer + misc at zarb.org +
+ Mon Nov 8 02:29:59 CET 2010 +

+
+ +
Le lundi 08 novembre 2010 à 00:05 +0100, Dexter Morgan a écrit :
+> On Sun, Nov 7, 2010 at 4:17 PM, Michael scherer <misc at zarb.org> wrote:
+> > On Sun, Nov 07, 2010 at 03:56:29PM +0100, Thierry Vignaud wrote:
+> >> On 7 November 2010 03:17, Michael scherer <misc at zarb.org> wrote:
+> >> > we didn't really decide to install bugzilla, according to the meeting agenda for
+> >> > monday. While it may be the one we end to choose, it doesn't have xml-rpc
+> >> > (requested by stormi for mageia-app-db, see discuss ml)
+> >>
+> >> err...
+> >> http://www.bugzilla.org/docs/3.6/en/html/api/Bugzilla/WebService/Server/XMLRPC.html
+> >
+> > That's nice that it changed, I was not sure since we never used it at mandriva
+> > ( now, we may have used a older version, which would have explained it ).
+> > Yet, we need to find if it fullfill stormi's need ( but I assume it will ).
+> >
+> >> > and it is notable that users do find bugzilla intuitive.
+> >>
+> >> I'm not sure of that.
+> >
+> > Well, some people complained of it :/
+> > ( that doesn't mean they are right, but at least, we can take
+> > this in account ).
+> 
+> what bug trackers do you propose ?
+> we need to go quite quick to have this available.
+
+We first need to know for whom it must be available and who will use it.
+ 
+for packagers ? for coders ? for webteam ?
+for other teams ( like us ) ? 
+
+If so, did we take the time to ask "what would you need in a bug
+tracker", as this will have a impact on the model and field ( ie, if we
+force version/release/srpm, this will not mean much for sysadm bugs, if
+we add a field for the server, this is not useful for others, etc ).
+
+What I think we should do first is gather list of requirements, see how
+and who will use it, and then decide.
+
+-- 
+Michael Scherer
+
+
+ + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000343.html b/zarb-ml/mageia-sysadm/2010-November/000343.html new file mode 100644 index 000000000..e64809d4d --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000343.html @@ -0,0 +1,134 @@ + + + + [Mageia-sysadm] [203] - remove uneeded include, and remove the old config file + + + + + + + + + +

[Mageia-sysadm] [203] - remove uneeded include, and remove the old config file

+ root at mageia.org + root at mageia.org +
+ Mon Nov 8 02:47:08 CET 2010 +

+
+ +
Revision: 203
+Author:   misc
+Date:     2010-11-08 02:47:08 +0100 (Mon, 08 Nov 2010)
+Log Message:
+-----------
+- remove uneeded include, and remove the old config file
+
+Modified Paths:
+--------------
+    puppet/modules/catdap/manifests/init.pp
+
+Removed Paths:
+-------------
+    puppet/modules/catdap/templates/catdap_vhost.conf
+
+Modified: puppet/modules/catdap/manifests/init.pp
+===================================================================
+--- puppet/modules/catdap/manifests/init.pp	2010-11-08 01:16:10 UTC (rev 202)
++++ puppet/modules/catdap/manifests/init.pp	2010-11-08 01:47:08 UTC (rev 203)
+@@ -1,9 +1,5 @@
+ class catdap {
+ 
+-    include subversion
+-    include subversion::client
+-    include apache::mod_fcgid
+-
+     $catdap_location = "/var/www/identity"
+     $catdap_vhost = "identity.$domain"
+ 
+@@ -42,15 +38,4 @@
+     }
+ 
+     apache::vhost_redirect_ssl { $catdap_vhost: }
+-
+-    # add a apache vhost
+-#    file { "$catdap_vhost.conf":
+-#        path => "/etc/httpd/conf/vhosts.d/$catdap_vhost.conf",
+-#        ensure => "present",
+-#        owner => root,
+-#        group => root,
+-#        mode => 644,
+-#        notify => Service['apache'],
+-#        content => template("catdap/catdap_vhost.conf")
+-#    }    
+ }
+
+Deleted: puppet/modules/catdap/templates/catdap_vhost.conf
+===================================================================
+--- puppet/modules/catdap/templates/catdap_vhost.conf	2010-11-08 01:16:10 UTC (rev 202)
++++ puppet/modules/catdap/templates/catdap_vhost.conf	2010-11-08 01:47:08 UTC (rev 203)
+@@ -1,15 +0,0 @@
+-<VirtualHost *:80>
+-        ServerName <%= catdap_vhost %>
+-        # Serve static content directly
+-        DocumentRoot  <%= catdap_location %>/root
+-        Alias /static <%= catdap_location %>/root/static
+-
+-        Alias / <%= catdap_location %>/script/catdap_fastcgi.pl/
+-
+-        <Directory <%= catdap_location %>/script>
+-                Options +ExecCGI
+-                SetHandler fcgid-script
+-                Allow from all
+-        </Directory>
+-</VirtualHost>
+-
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101108/4d4ccdba/attachment.html>
+
+ + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000344.html b/zarb-ml/mageia-sysadm/2010-November/000344.html new file mode 100644 index 000000000..4343637c5 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000344.html @@ -0,0 +1,91 @@ + + + + [Mageia-sysadm] [204] - fix manifests + + + + + + + + + +

[Mageia-sysadm] [204] - fix manifests

+ root at mageia.org + root at mageia.org +
+ Mon Nov 8 02:48:07 CET 2010 +

+
+ +
Revision: 204
+Author:   misc
+Date:     2010-11-08 02:48:07 +0100 (Mon, 08 Nov 2010)
+Log Message:
+-----------
+- fix manifests
+
+Modified Paths:
+--------------
+    puppet/modules/puppet/manifests/init.pp
+
+Modified: puppet/modules/puppet/manifests/init.pp
+===================================================================
+--- puppet/modules/puppet/manifests/init.pp	2010-11-08 01:47:08 UTC (rev 203)
++++ puppet/modules/puppet/manifests/init.pp	2010-11-08 01:48:07 UTC (rev 204)
+@@ -45,7 +45,6 @@
+             owner => puppet,
+             group => puppet,
+             mode => 700,
+-            recurse => true
+             content => template("puppet/tagmail.conf"),
+        } 
+         
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101108/e5c608dc/attachment.html>
+
+ + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000345.html b/zarb-ml/mageia-sysadm/2010-November/000345.html new file mode 100644 index 000000000..ff210f37c --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000345.html @@ -0,0 +1,67 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Mon Nov 8 02:49:15 CET 2010 +

+
+ +
Mon Nov 08 02:49:15 +0100 2010 /Stage[main]/Iurt/File[/home/buildbot/.iurt.cauldron.conf]/ensure (err): change from absent to present failed: Could not set 'present on ensure: No such file or directory - /home/buildbot/.iurt.cauldron.conf.puppettmp_2881 at /etc/puppet/modules/iurt/manifests/init.pp:17
+
+ + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000346.html b/zarb-ml/mageia-sysadm/2010-November/000346.html new file mode 100644 index 000000000..a6b7adc34 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000346.html @@ -0,0 +1,182 @@ + + + + [Mageia-sysadm] [205] - no need to have a hidden file in the svn repository and puppet config + + + + + + + + + +

[Mageia-sysadm] [205] - no need to have a hidden file in the svn repository and puppet config

+ root at mageia.org + root at mageia.org +
+ Mon Nov 8 02:54:30 CET 2010 +

+
+ +
Revision: 205
+Author:   misc
+Date:     2010-11-08 02:54:30 +0100 (Mon, 08 Nov 2010)
+Log Message:
+-----------
+- no need to have a hidden file in the svn repository and puppet config
+
+Modified Paths:
+--------------
+    puppet/modules/iurt/manifests/init.pp
+
+Added Paths:
+-----------
+    puppet/modules/iurt/templates/iurt.cauldron.conf
+
+Removed Paths:
+-------------
+    puppet/modules/iurt/templates/.iurt.cauldron.conf
+
+Modified: puppet/modules/iurt/manifests/init.pp
+===================================================================
+--- puppet/modules/iurt/manifests/init.pp	2010-11-08 01:48:07 UTC (rev 204)
++++ puppet/modules/iurt/manifests/init.pp	2010-11-08 01:54:30 UTC (rev 205)
+@@ -13,7 +13,7 @@
+         owner => buildbot,
+         group => buildbot,
+         mode => 644,
+-        content => template("iurt/.iurt.cauldron.conf")
++        content => template("iurt/iurt.cauldron.conf")
+     }
+ 
+ }
+
+Deleted: puppet/modules/iurt/templates/.iurt.cauldron.conf
+===================================================================
+--- puppet/modules/iurt/templates/.iurt.cauldron.conf	2010-11-08 01:48:07 UTC (rev 204)
++++ puppet/modules/iurt/templates/.iurt.cauldron.conf	2010-11-08 01:54:30 UTC (rev 205)
+@@ -1,30 +0,0 @@
+-{
+- supported_arch => [ 'i586', 'x86_64' ],
+- all_media => { 'main' => [ 'release' ], 'contrib' => [ 'release' ] },
+- upload => 'schedbot at pkgsubmit:~/uploads/',
+- upload_queue => 'schedbot at pkgsubmit:~/uploads/queue/',
+- unwanted_packages => '^monotone-',
+- repository => '/mnt/BIG/dis/',
+- rsync_to => 'schedbot at pkgsubmit:/mnt/BIG/dis/uploads/build/',
+- log_url => 'http://pkgsubmit.mageia.org/queue/build/',
+- admin => 'mageia-sysadm at mageia.org',
+- iurt_root_command => '/home/buildbot/iurt-trunk/iurt_root_command',
+- packager => 'Iurt the rebuild bot <mageia-sysadm at mageia.org>',
+- sendmail => 0,
+- build_timeout => {
+-  'default' => 18000,
+-   'gcc' => 57600,
+-   'paraview' => 115200,
+-   'salome' => 57600,
+-   'itk' => 115200,
+-   'wrapitk' => 115200,
+-   'kernel-rt' => 57600,
+-   'kernel-xen' => 57600,
+-   'kernel-tmb' => 57600,
+-   'openoffice.org' => 345600,
+-   'openoffice.org64' => 345600,
+-   'openoffice.org-go-ooo' => 345600,
+-   'openoffice.org64-go-ooo' => 345600
+- },
+-}
+-
+
+Copied: puppet/modules/iurt/templates/iurt.cauldron.conf (from rev 198, puppet/modules/iurt/templates/.iurt.cauldron.conf)
+===================================================================
+--- puppet/modules/iurt/templates/iurt.cauldron.conf	                        (rev 0)
++++ puppet/modules/iurt/templates/iurt.cauldron.conf	2010-11-08 01:54:30 UTC (rev 205)
+@@ -0,0 +1,30 @@
++{
++ supported_arch => [ 'i586', 'x86_64' ],
++ all_media => { 'main' => [ 'release' ], 'contrib' => [ 'release' ] },
++ upload => 'schedbot at pkgsubmit:~/uploads/',
++ upload_queue => 'schedbot at pkgsubmit:~/uploads/queue/',
++ unwanted_packages => '^monotone-',
++ repository => '/mnt/BIG/dis/',
++ rsync_to => 'schedbot at pkgsubmit:/mnt/BIG/dis/uploads/build/',
++ log_url => 'http://pkgsubmit.mageia.org/queue/build/',
++ admin => 'mageia-sysadm at mageia.org',
++ iurt_root_command => '/home/buildbot/iurt-trunk/iurt_root_command',
++ packager => 'Iurt the rebuild bot <mageia-sysadm at mageia.org>',
++ sendmail => 0,
++ build_timeout => {
++  'default' => 18000,
++   'gcc' => 57600,
++   'paraview' => 115200,
++   'salome' => 57600,
++   'itk' => 115200,
++   'wrapitk' => 115200,
++   'kernel-rt' => 57600,
++   'kernel-xen' => 57600,
++   'kernel-tmb' => 57600,
++   'openoffice.org' => 345600,
++   'openoffice.org64' => 345600,
++   'openoffice.org-go-ooo' => 345600,
++   'openoffice.org64-go-ooo' => 345600
++ },
++}
++
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101108/0fc65550/attachment-0001.html>
+
+ + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000347.html b/zarb-ml/mageia-sysadm/2010-November/000347.html new file mode 100644 index 000000000..fa128e472 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000347.html @@ -0,0 +1,87 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ Michael Scherer + misc at zarb.org +
+ Mon Nov 8 03:07:19 CET 2010 +

+
+ +
Le lundi 08 novembre 2010 à 02:49 +0100, report at valstar.mageia.org a
+écrit :
+> Mon Nov 08 02:49:15 +0100 2010 /Stage[main]/Iurt/File[/home/buildbot/.iurt.cauldron.conf]/ensure (err): change from absent to present failed: Could not set 'present on ensure: No such file or directory - /home/buildbot/.iurt.cauldron.conf.puppettmp_2881 at /etc/puppet/modules/iurt/manifests/init.pp:17
+
+Since I have enabled error messages ( commit 166 and 202 ) sent by mail,
+we now receive error when puppet apply a manifest.
+
+This one failed because the /home/buildbot/.iurt.cauldron.conf file
+cannot be created, because /home/buildbot do not exist. 
+
+So 2 questions : 
+- do we really need to have a hidden config file ( afaik, this was done
+mainly to not clutter the home directory of regular user ), and do we
+really need to place iurt configuration file in /home/foo when foo is
+not a real user but a system one ?. 
+
+Wouldn't it make sense to do like any other software and place it
+in /etc/iurt/iurt.cauldron.conf ?
+
+-- 
+Michael Scherer
+
+
+ + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000348.html b/zarb-ml/mageia-sysadm/2010-November/000348.html new file mode 100644 index 000000000..f33857012 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000348.html @@ -0,0 +1,75 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Mon Nov 8 03:19:16 CET 2010 +

+
+ +
Mon Nov 08 03:19:15 +0100 2010 /Stage[main]/Iurt/File[/home/buildbot/.iurt.cauldron.conf]/ensure (err): change from absent to present failed: Could not set 'present on ensure: No such file or directory - /home/buildbot/.iurt.cauldron.conf.puppettmp_7417 at /etc/puppet/modules/iurt/manifests/init.pp:17
+
+ + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000349.html b/zarb-ml/mageia-sysadm/2010-November/000349.html new file mode 100644 index 000000000..34c5c7703 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000349.html @@ -0,0 +1,75 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Mon Nov 8 03:49:16 CET 2010 +

+
+ +
Mon Nov 08 03:49:16 +0100 2010 /Stage[main]/Iurt/File[/home/buildbot/.iurt.cauldron.conf]/ensure (err): change from absent to present failed: Could not set 'present on ensure: No such file or directory - /home/buildbot/.iurt.cauldron.conf.puppettmp_6844 at /etc/puppet/modules/iurt/manifests/init.pp:17
+
+ + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000350.html b/zarb-ml/mageia-sysadm/2010-November/000350.html new file mode 100644 index 000000000..53141fb1a --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000350.html @@ -0,0 +1,75 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Mon Nov 8 04:19:17 CET 2010 +

+
+ +
Mon Nov 08 04:19:17 +0100 2010 /Stage[main]/Iurt/File[/home/buildbot/.iurt.cauldron.conf]/ensure (err): change from absent to present failed: Could not set 'present on ensure: No such file or directory - /home/buildbot/.iurt.cauldron.conf.puppettmp_9722 at /etc/puppet/modules/iurt/manifests/init.pp:17
+
+ + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000351.html b/zarb-ml/mageia-sysadm/2010-November/000351.html new file mode 100644 index 000000000..e3701307e --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000351.html @@ -0,0 +1,75 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Mon Nov 8 04:49:23 CET 2010 +

+
+ +
Mon Nov 08 04:49:23 +0100 2010 /Stage[main]/Iurt/File[/home/buildbot/.iurt.cauldron.conf]/ensure (err): change from absent to present failed: Could not set 'present on ensure: No such file or directory - /home/buildbot/.iurt.cauldron.conf.puppettmp_4167 at /etc/puppet/modules/iurt/manifests/init.pp:17
+
+ + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000352.html b/zarb-ml/mageia-sysadm/2010-November/000352.html new file mode 100644 index 000000000..7ea41dedb --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000352.html @@ -0,0 +1,75 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Mon Nov 8 05:19:24 CET 2010 +

+
+ +
Mon Nov 08 05:19:24 +0100 2010 /Stage[main]/Iurt/File[/home/buildbot/.iurt.cauldron.conf]/ensure (err): change from absent to present failed: Could not set 'present on ensure: No such file or directory - /home/buildbot/.iurt.cauldron.conf.puppettmp_102 at /etc/puppet/modules/iurt/manifests/init.pp:17
+
+ + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000353.html b/zarb-ml/mageia-sysadm/2010-November/000353.html new file mode 100644 index 000000000..d660c8f3a --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000353.html @@ -0,0 +1,75 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Mon Nov 8 05:49:25 CET 2010 +

+
+ +
Mon Nov 08 05:49:24 +0100 2010 /Stage[main]/Iurt/File[/home/buildbot/.iurt.cauldron.conf]/ensure (err): change from absent to present failed: Could not set 'present on ensure: No such file or directory - /home/buildbot/.iurt.cauldron.conf.puppettmp_3794 at /etc/puppet/modules/iurt/manifests/init.pp:17
+
+ + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000354.html b/zarb-ml/mageia-sysadm/2010-November/000354.html new file mode 100644 index 000000000..736af2dfd --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000354.html @@ -0,0 +1,75 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Mon Nov 8 06:19:25 CET 2010 +

+
+ +
Mon Nov 08 06:19:25 +0100 2010 /Stage[main]/Iurt/File[/home/buildbot/.iurt.cauldron.conf]/ensure (err): change from absent to present failed: Could not set 'present on ensure: No such file or directory - /home/buildbot/.iurt.cauldron.conf.puppettmp_426 at /etc/puppet/modules/iurt/manifests/init.pp:17
+
+ + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000355.html b/zarb-ml/mageia-sysadm/2010-November/000355.html new file mode 100644 index 000000000..fb53e0941 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000355.html @@ -0,0 +1,75 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Mon Nov 8 06:49:26 CET 2010 +

+
+ +
Mon Nov 08 06:49:26 +0100 2010 /Stage[main]/Iurt/File[/home/buildbot/.iurt.cauldron.conf]/ensure (err): change from absent to present failed: Could not set 'present on ensure: No such file or directory - /home/buildbot/.iurt.cauldron.conf.puppettmp_616 at /etc/puppet/modules/iurt/manifests/init.pp:17
+
+ + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000356.html b/zarb-ml/mageia-sysadm/2010-November/000356.html new file mode 100644 index 000000000..201ae0321 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000356.html @@ -0,0 +1,75 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Mon Nov 8 07:19:27 CET 2010 +

+
+ +
Mon Nov 08 07:19:27 +0100 2010 /Stage[main]/Iurt/File[/home/buildbot/.iurt.cauldron.conf]/ensure (err): change from absent to present failed: Could not set 'present on ensure: No such file or directory - /home/buildbot/.iurt.cauldron.conf.puppettmp_5790 at /etc/puppet/modules/iurt/manifests/init.pp:17
+
+ + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000357.html b/zarb-ml/mageia-sysadm/2010-November/000357.html new file mode 100644 index 000000000..86bc6b2a2 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000357.html @@ -0,0 +1,75 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Mon Nov 8 07:49:28 CET 2010 +

+
+ +
Mon Nov 08 07:49:28 +0100 2010 /Stage[main]/Iurt/File[/home/buildbot/.iurt.cauldron.conf]/ensure (err): change from absent to present failed: Could not set 'present on ensure: No such file or directory - /home/buildbot/.iurt.cauldron.conf.puppettmp_7337 at /etc/puppet/modules/iurt/manifests/init.pp:17
+
+ + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000358.html b/zarb-ml/mageia-sysadm/2010-November/000358.html new file mode 100644 index 000000000..b8289ea8c --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000358.html @@ -0,0 +1,75 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Mon Nov 8 08:19:29 CET 2010 +

+
+ +
Mon Nov 08 08:19:28 +0100 2010 /Stage[main]/Iurt/File[/home/buildbot/.iurt.cauldron.conf]/ensure (err): change from absent to present failed: Could not set 'present on ensure: No such file or directory - /home/buildbot/.iurt.cauldron.conf.puppettmp_2645 at /etc/puppet/modules/iurt/manifests/init.pp:17
+
+ + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000359.html b/zarb-ml/mageia-sysadm/2010-November/000359.html new file mode 100644 index 000000000..233d069c7 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000359.html @@ -0,0 +1,102 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ Olivier Blin + mageia at blino.org +
+ Mon Nov 8 08:40:53 CET 2010 +

+
+ +
Michael Scherer <misc at zarb.org> writes:
+
+> This one failed because the /home/buildbot/.iurt.cauldron.conf file
+> cannot be created, because /home/buildbot do not exist. 
+
+We should add the user in some ldap, and create the homedir
+automatically.
+How can we do that?
+
+> So 2 questions : 
+> - do we really need to have a hidden config file ( afaik, this was done
+> mainly to not clutter the home directory of regular user )
+
+(it was present only in ~mandrake)
+
+> and do we
+> really need to place iurt configuration file in /home/foo when foo is
+> not a real user but a system one ?. 
+>
+> Wouldn't it make sense to do like any other software and place it
+> in /etc/iurt/iurt.cauldron.conf ?
+
+/etc/iurt/cauldron.conf looks fine.
+It should work with attached patch.
+
+-------------- next part --------------
+A non-text attachment was scrubbed...
+Name: iurt-sysconfig.patch
+Type: text/x-patch
+Size: 787 bytes
+Desc: not available
+URL: </pipermail/mageia-sysadm/attachments/20101108/a7bc2d4d/attachment.bin>
+-------------- next part --------------
+
+-- 
+Olivier Blin - blino
+
+ + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000360.html b/zarb-ml/mageia-sysadm/2010-November/000360.html new file mode 100644 index 000000000..8bc1167a6 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000360.html @@ -0,0 +1,74 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Mon Nov 8 08:49:29 CET 2010 +

+
+ +
Mon Nov 08 08:49:29 +0100 2010 /Stage[main]/Iurt/File[/home/buildbot/.iurt.cauldron.conf]/ensure (err): change from absent to present failed: Could not set 'present on ensure: No such file or directory - /home/buildbot/.iurt.cauldron.conf.puppettmp_9585 at /etc/puppet/modules/iurt/manifests/init.pp:17
+
+ + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000361.html b/zarb-ml/mageia-sysadm/2010-November/000361.html new file mode 100644 index 000000000..630672d12 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000361.html @@ -0,0 +1,74 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Mon Nov 8 09:19:30 CET 2010 +

+
+ +
Mon Nov 08 09:19:30 +0100 2010 /Stage[main]/Iurt/File[/home/buildbot/.iurt.cauldron.conf]/ensure (err): change from absent to present failed: Could not set 'present on ensure: No such file or directory - /home/buildbot/.iurt.cauldron.conf.puppettmp_99 at /etc/puppet/modules/iurt/manifests/init.pp:17
+
+ + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000362.html b/zarb-ml/mageia-sysadm/2010-November/000362.html new file mode 100644 index 000000000..44edc27f9 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000362.html @@ -0,0 +1,74 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Mon Nov 8 09:49:31 CET 2010 +

+
+ +
Mon Nov 08 09:49:31 +0100 2010 /Stage[main]/Iurt/File[/home/buildbot/.iurt.cauldron.conf]/ensure (err): change from absent to present failed: Could not set 'present on ensure: No such file or directory - /home/buildbot/.iurt.cauldron.conf.puppettmp_2274 at /etc/puppet/modules/iurt/manifests/init.pp:17
+
+ + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000363.html b/zarb-ml/mageia-sysadm/2010-November/000363.html new file mode 100644 index 000000000..ed8b625e5 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000363.html @@ -0,0 +1,74 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Mon Nov 8 10:19:32 CET 2010 +

+
+ +
Mon Nov 08 10:19:32 +0100 2010 /Stage[main]/Iurt/File[/home/buildbot/.iurt.cauldron.conf]/ensure (err): change from absent to present failed: Could not set 'present on ensure: No such file or directory - /home/buildbot/.iurt.cauldron.conf.puppettmp_7774 at /etc/puppet/modules/iurt/manifests/init.pp:17
+
+ + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000364.html b/zarb-ml/mageia-sysadm/2010-November/000364.html new file mode 100644 index 000000000..3439ec064 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000364.html @@ -0,0 +1,74 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Mon Nov 8 10:49:33 CET 2010 +

+
+ +
Mon Nov 08 10:49:32 +0100 2010 /Stage[main]/Iurt/File[/home/buildbot/.iurt.cauldron.conf]/ensure (err): change from absent to present failed: Could not set 'present on ensure: No such file or directory - /home/buildbot/.iurt.cauldron.conf.puppettmp_9611 at /etc/puppet/modules/iurt/manifests/init.pp:17
+
+ + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000365.html b/zarb-ml/mageia-sysadm/2010-November/000365.html new file mode 100644 index 000000000..257578348 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000365.html @@ -0,0 +1,97 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ nicolas vigier + boklm at mars-attacks.org +
+ Mon Nov 8 11:02:12 CET 2010 +

+
+ +
On Mon, 08 Nov 2010, Michael Scherer wrote:
+
+> Le lundi 08 novembre 2010 à 02:49 +0100, report at valstar.mageia.org a
+> écrit :
+> > Mon Nov 08 02:49:15 +0100 2010 /Stage[main]/Iurt/File[/home/buildbot/.iurt.cauldron.conf]/ensure (err): change from absent to present failed: Could not set 'present on ensure: No such file or directory - /home/buildbot/.iurt.cauldron.conf.puppettmp_2881 at /etc/puppet/modules/iurt/manifests/init.pp:17
+> 
+> Since I have enabled error messages ( commit 166 and 202 ) sent by mail,
+> we now receive error when puppet apply a manifest.
+> 
+> This one failed because the /home/buildbot/.iurt.cauldron.conf file
+> cannot be created, because /home/buildbot do not exist. 
+> 
+> So 2 questions : 
+> - do we really need to have a hidden config file ( afaik, this was done
+> mainly to not clutter the home directory of regular user ), and do we
+> really need to place iurt configuration file in /home/foo when foo is
+> not a real user but a system one ?. 
+
+I think we should set home directory for non real users to
+/var/lib/something.
+
+> Wouldn't it make sense to do like any other software and place it
+> in /etc/iurt/iurt.cauldron.conf ?
+
+Yes, I think it would make sense.
+
+
+ + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000366.html b/zarb-ml/mageia-sysadm/2010-November/000366.html new file mode 100644 index 000000000..5eb4f1726 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000366.html @@ -0,0 +1,80 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ nicolas vigier + boklm at mars-attacks.org +
+ Mon Nov 8 11:05:09 CET 2010 +

+
+ +
On Mon, 08 Nov 2010, Olivier Blin wrote:
+
+> Michael Scherer <misc at zarb.org> writes:
+> 
+> > This one failed because the /home/buildbot/.iurt.cauldron.conf file
+> > cannot be created, because /home/buildbot do not exist. 
+> 
+> We should add the user in some ldap, and create the homedir
+> automatically.
+> How can we do that?
+
+As this user is only used on build nodes, do we need to have it in ldap,
+or a local user would be enough ? Maybe we can instead create this user
+and homedir using puppet ?
+
+
+ + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000367.html b/zarb-ml/mageia-sysadm/2010-November/000367.html new file mode 100644 index 000000000..d84f433d4 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000367.html @@ -0,0 +1,72 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Mon Nov 8 11:19:33 CET 2010 +

+
+ +
Mon Nov 08 11:19:33 +0100 2010 /Stage[main]/Iurt/File[/home/buildbot/.iurt.cauldron.conf]/ensure (err): change from absent to present failed: Could not set 'present on ensure: No such file or directory - /home/buildbot/.iurt.cauldron.conf.puppettmp_4999 at /etc/puppet/modules/iurt/manifests/init.pp:17
+
+ + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000368.html b/zarb-ml/mageia-sysadm/2010-November/000368.html new file mode 100644 index 000000000..d04590b4b --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000368.html @@ -0,0 +1,98 @@ + + + + [Mageia-sysadm] [206] - disable until we decided on how to fix it + + + + + + + + + +

[Mageia-sysadm] [206] - disable until we decided on how to fix it

+ root at mageia.org + root at mageia.org +
+ Mon Nov 8 11:36:36 CET 2010 +

+
+ +
Revision: 206
+Author:   misc
+Date:     2010-11-08 11:36:35 +0100 (Mon, 08 Nov 2010)
+Log Message:
+-----------
+- disable until we decided on how to fix it
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-08 01:54:30 UTC (rev 205)
++++ puppet/manifests/nodes.pp	2010-11-08 10:36:35 UTC (rev 206)
+@@ -60,7 +60,7 @@
+ # Location: IELO datacenter (marseille)
+ #
+     include default_mageia_server
+-    include iurt
++    #include iurt
+     timezone::timezone { "Europe/Paris": }
+ }
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101108/76d6af4a/attachment.html>
+
+ + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000369.html b/zarb-ml/mageia-sysadm/2010-November/000369.html new file mode 100644 index 000000000..05f596cf3 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000369.html @@ -0,0 +1,72 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Mon Nov 8 11:49:33 CET 2010 +

+
+ +
Mon Nov 08 11:49:33 +0100 2010 /Stage[main]/Iurt/File[/home/buildbot/.iurt.cauldron.conf]/ensure (err): change from absent to present failed: Could not set 'present on ensure: No such file or directory - /home/buildbot/.iurt.cauldron.conf.puppettmp_852 at /etc/puppet/modules/iurt/manifests/init.pp:17
+
+ + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000370.html b/zarb-ml/mageia-sysadm/2010-November/000370.html new file mode 100644 index 000000000..3ad83c6ae --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000370.html @@ -0,0 +1,72 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Mon Nov 8 12:19:34 CET 2010 +

+
+ +
Mon Nov 08 12:19:34 +0100 2010 /Stage[main]/Iurt/File[/home/buildbot/.iurt.cauldron.conf]/ensure (err): change from absent to present failed: Could not set 'present on ensure: No such file or directory - /home/buildbot/.iurt.cauldron.conf.puppettmp_3622 at /etc/puppet/modules/iurt/manifests/init.pp:17
+
+ + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000371.html b/zarb-ml/mageia-sysadm/2010-November/000371.html new file mode 100644 index 000000000..cdd249a40 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000371.html @@ -0,0 +1,95 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ Michael Scherer + misc at zarb.org +
+ Mon Nov 8 12:30:23 CET 2010 +

+
+ +
Le lundi 08 novembre 2010 à 11:05 +0100, nicolas vigier a écrit :
+> On Mon, 08 Nov 2010, Olivier Blin wrote:
+> 
+> > Michael Scherer <misc at zarb.org> writes:
+> > 
+> > > This one failed because the /home/buildbot/.iurt.cauldron.conf file
+> > > cannot be created, because /home/buildbot do not exist. 
+> > 
+> > We should add the user in some ldap, and create the homedir
+> > automatically.
+> > How can we do that?
+> 
+> As this user is only used on build nodes, do we need to have it in ldap,
+> or a local user would be enough ? Maybe we can instead create this user
+> and homedir using puppet ?
+
+Do we need to have synced uid ?
+If no, then puppet would be enough.
+
+If yes, then it would be cleaner imho to have them in ldap.
+
+And having it in ldap would however prevent someone from taking this uid
+using catdap.
+
+( which remind me that we may have to create some kind of blacklist for
+that in the software ).
+
+-- 
+Michael Scherer
+
+
+ + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000372.html b/zarb-ml/mageia-sysadm/2010-November/000372.html new file mode 100644 index 000000000..1b35bc106 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000372.html @@ -0,0 +1,78 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ Thomas Backlund + tmb at iki.fi +
+ Mon Nov 8 12:32:53 CET 2010 +

+
+ +
Michael Scherer skrev 8.11.2010 13:30:
+
+> And having it in ldap would however prevent someone from taking this uid
+> using catdap.
+>
+> ( which remind me that we may have to create some kind of blacklist for
+> that in the software ).
+>
+
+Why would we even allow people to change uid in catdap ?
+
+--
+Thomas
+
+ + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000373.html b/zarb-ml/mageia-sysadm/2010-November/000373.html new file mode 100644 index 000000000..48cbb58c6 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000373.html @@ -0,0 +1,85 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ Ahmad Samir + ahmadsamir3891 at gmail.com +
+ Mon Nov 8 12:49:28 CET 2010 +

+
+ +
On 8 November 2010 13:32, Thomas Backlund <tmb at iki.fi> wrote:
+> Michael Scherer skrev 8.11.2010 13:30:
+>
+>> And having it in ldap would however prevent someone from taking this uid
+>> using catdap.
+>>
+>> ( which remind me that we may have to create some kind of blacklist for
+>> that in the software ).
+>>
+>
+> Why would we even allow people to change uid in catdap ?
+>
+
+catdap auto-assigns uid's, right? so it could take a uid you want to
+use / are using for something else (in this case since buildbot isn't
+in LDAP catdap won't reserve its uid and that might cause some
+clash... that is, IIUC :)).
+
+-- 
+Ahmad Samir
+
+ + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000374.html b/zarb-ml/mageia-sysadm/2010-November/000374.html new file mode 100644 index 000000000..65bfa2223 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000374.html @@ -0,0 +1,69 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Mon Nov 8 12:49:35 CET 2010 +

+
+ +
Mon Nov 08 12:49:35 +0100 2010 /Stage[main]/Iurt/File[/home/buildbot/.iurt.cauldron.conf]/ensure (err): change from absent to present failed: Could not set 'present on ensure: No such file or directory - /home/buildbot/.iurt.cauldron.conf.puppettmp_5339 at /etc/puppet/modules/iurt/manifests/init.pp:17
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000375.html b/zarb-ml/mageia-sysadm/2010-November/000375.html new file mode 100644 index 000000000..37d60e617 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000375.html @@ -0,0 +1,85 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ Michael Scherer + misc at zarb.org +
+ Mon Nov 8 12:58:21 CET 2010 +

+
+ +
Le lundi 08 novembre 2010 à 13:32 +0200, Thomas Backlund a écrit :
+> Michael Scherer skrev 8.11.2010 13:30:
+> 
+> > And having it in ldap would however prevent someone from taking this uid
+> > using catdap.
+> >
+> > ( which remind me that we may have to create some kind of blacklist for
+> > that in the software ).
+> >
+> 
+> Why would we even allow people to change uid in catdap ?
+
+s/uid/login/ in fact.
+
+And we let people choose their own login, so we must have something to
+prevent error.
+
+-- 
+Michael Scherer
+
+
+ + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000376.html b/zarb-ml/mageia-sysadm/2010-November/000376.html new file mode 100644 index 000000000..1fe9e623e --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000376.html @@ -0,0 +1,68 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Mon Nov 8 13:00:23 CET 2010 +

+
+ +
Mon Nov 08 13:00:23 +0100 2010 /Stage[main]/Iurt/File[/home/buildbot/.iurt.cauldron.conf]/ensure (err): change from absent to present failed: Could not set 'present on ensure: No such file or directory - /home/buildbot/.iurt.cauldron.conf.puppettmp_3441 at /etc/puppet/modules/iurt/manifests/init.pp:17
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000377.html b/zarb-ml/mageia-sysadm/2010-November/000377.html new file mode 100644 index 000000000..9f07dfc6e --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000377.html @@ -0,0 +1,95 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ Olivier Blin + mageia at blino.org +
+ Mon Nov 8 13:03:02 CET 2010 +

+
+ +
Michael Scherer <misc at zarb.org> writes:
+
+>> > > This one failed because the /home/buildbot/.iurt.cauldron.conf file
+>> > > cannot be created, because /home/buildbot do not exist. 
+>> > 
+>> > We should add the user in some ldap, and create the homedir
+>> > automatically.
+>> > How can we do that?
+>> 
+>> As this user is only used on build nodes, do we need to have it in ldap,
+>> or a local user would be enough ? Maybe we can instead create this user
+>> and homedir using puppet ?
+>
+> Do we need to have synced uid ?
+
+I am not sure we need, I don't think we need it right now.
+
+> If no, then puppet would be enough.
+>
+> If yes, then it would be cleaner imho to have them in ldap.
+>
+> And having it in ldap would however prevent someone from taking this uid
+> using catdap.
+
+Yep, it would be nice to have it in ldap.
+
+But we still need to automate the homedirs creation
+
+-- 
+Olivier Blin - blino
+
+ + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000378.html b/zarb-ml/mageia-sysadm/2010-November/000378.html new file mode 100644 index 000000000..688b68967 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000378.html @@ -0,0 +1,89 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ Michael Scherer + misc at zarb.org +
+ Mon Nov 8 13:20:00 CET 2010 +

+
+ +
Le lundi 08 novembre 2010 à 13:03 +0100, Olivier Blin a écrit :
+> Michael Scherer <misc at zarb.org> writes:
+
+> > If no, then puppet would be enough.
+> >
+> > If yes, then it would be cleaner imho to have them in ldap.
+> >
+> > And having it in ldap would however prevent someone from taking this uid
+> > using catdap.
+> 
+> Yep, it would be nice to have it in ldap.
+> 
+> But we still need to automate the homedirs creation
+
+Puppet can do it.
+
+We can also first start to have theses users in puppet, and later move
+them to ldap ( after all, that's what is planned  for our own users, I
+guess ).
+
+And for real users, pam_mkhomedir ?
+
+-- 
+Michael Scherer
+
+
+ + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000379.html b/zarb-ml/mageia-sysadm/2010-November/000379.html new file mode 100644 index 000000000..6603659bc --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000379.html @@ -0,0 +1,175 @@ + + + + [Mageia-sysadm] [207] add default vhost with redirection to www.mageia.org + + + + + + + + + +

[Mageia-sysadm] [207] add default vhost with redirection to www.mageia.org

+ root at mageia.org + root at mageia.org +
+ Mon Nov 8 14:13:14 CET 2010 +

+
+ +
Revision: 207
+Author:   boklm
+Date:     2010-11-08 14:13:13 +0100 (Mon, 08 Nov 2010)
+Log Message:
+-----------
+add default vhost with redirection to www.mageia.org
+
+Modified Paths:
+--------------
+    puppet/modules/apache/manifests/init.pp
+
+Added Paths:
+-----------
+    puppet/modules/apache/templates/00_default_vhosts.conf
+
+Modified: puppet/modules/apache/manifests/init.pp
+===================================================================
+--- puppet/modules/apache/manifests/init.pp	2010-11-08 10:36:35 UTC (rev 206)
++++ puppet/modules/apache/manifests/init.pp	2010-11-08 13:13:13 UTC (rev 207)
+@@ -22,6 +22,16 @@
+             group => root,
+             mode => 644,
+         }
++
++        file { "00_default_vhosts.conf":
++            path => "/etc/httpd/conf/vhosts.d/00_default_vhosts.conf",
++            ensure => "present",
++            owner => root,
++            group => root,
++            mode => 644,
++            notify => Service['apache'],
++            content => template("apache/00_default_vhosts.conf")
++        }
+     }
+     
+     class mod_php inherits base {
+
+Added: puppet/modules/apache/templates/00_default_vhosts.conf
+===================================================================
+--- puppet/modules/apache/templates/00_default_vhosts.conf	                        (rev 0)
++++ puppet/modules/apache/templates/00_default_vhosts.conf	2010-11-08 13:13:13 UTC (rev 207)
+@@ -0,0 +1,65 @@
++# $Id: 00_default_vhosts.conf 250119 2008-07-26 14:51:31Z oden $
++# $HeadURL: svn+ssh://svn.mandriva.com/svn/packages/cooker/apache-conf/current/SOURCES/00_default_vhosts.conf $
++# This is an example VirtualHosts configuration.
++#
++# Since Apache 1.3.19, we modified the setup to include some nice tricks:
++#
++# - We added the User and Group directives so VirtualHosts now work with
++#   suexec directive. If set, Apache will run all cgi scripts under that
++#   user and group (provided the uid and gid are > 100 for security). The
++#   directories and cgi files *must* belong to that user/group for the
++#   feature to work
++#
++# - We added the Setenv VLOG directive. This works in conjunction with
++#   the CustomLog in common.conf. When Setenv VLOG is set, apache will
++#   create a /var/log/httpd/VLOG-YYYY-MM-<ServerName>.log instead of logging
++#   to access_log. Use this instead of defining a special logfile for
++#   each vhost, otherwise you eat up file descriptors.
++#
++# - You can also specify a path for the VLOG for each Vhost, for example,
++#   to place the logs in each user's directory. However, if you want to
++#   use the file for accounting, place it in a directory owned by root,
++#   otherwise the user will be able to erase it.
++#
++# - I suggest only including the ErrorLog *only* if the vhost will use
++#   cgi scripts. Again, it saves file descriptors! 
++
++
++################# IP-based Virtual Hosts 
++# <VirtualHost 192.168.2.100>
++# User jmdault
++# Group jmdault
++# DocumentRoot /home/jmdault/public_html
++# ServerName test2.com
++# Setenv VLOG /home/jmdault/logs
++# ErrorLogs /home/jmdault/test2-error_log
++# </VirtualHost>
++
++################# Named VirtualHosts
++# NameVirtualHost 111.222.33.44
++# <VirtualHost 111.222.33.44>
++# ServerName www.domain.tld
++# ServerPath /domain
++# DocumentRoot /web/domain
++# </VirtualHost>
++
++#<VirtualHost alice.com>
++#    ServerName alice.com
++#    # normal vhost configs
++#	<IfModule peruser.c>
++#	    # this must match a Processor line
++#	    ServerEnvironment alice users /home/alice
++#
++#	    # these are optional - defaults to the values specified above
++#	    MinSpareProcessors 4
++#	    MaxProcessors 20
++#	</IfModule>
++#</VirtualHost>
++
++<VirtualHost *:80>
++	DocumentRoot /var/www/html
++	<Location />
++		Allow from all
++	</Location>
++	Redirect / http://www.mageia.org/
++</VirtualHost>
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101108/fa4ce81d/attachment-0001.html>
+
+ + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000380.html b/zarb-ml/mageia-sysadm/2010-November/000380.html new file mode 100644 index 000000000..c6bfa30f1 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000380.html @@ -0,0 +1,151 @@ + + + + [Mageia-sysadm] [208] - remove comment ( not really needed ) + + + + + + + + + +

[Mageia-sysadm] [208] - remove comment ( not really needed )

+ root at mageia.org + root at mageia.org +
+ Mon Nov 8 14:30:00 CET 2010 +

+
+ +
Revision: 208
+Author:   misc
+Date:     2010-11-08 14:30:00 +0100 (Mon, 08 Nov 2010)
+Log Message:
+-----------
+- remove comment ( not really needed )
+- use domain instead of hardcoding the url
+
+Modified Paths:
+--------------
+    puppet/modules/apache/templates/00_default_vhosts.conf
+
+Modified: puppet/modules/apache/templates/00_default_vhosts.conf
+===================================================================
+--- puppet/modules/apache/templates/00_default_vhosts.conf	2010-11-08 13:13:13 UTC (rev 207)
++++ puppet/modules/apache/templates/00_default_vhosts.conf	2010-11-08 13:30:00 UTC (rev 208)
+@@ -1,65 +1,7 @@
+-# $Id: 00_default_vhosts.conf 250119 2008-07-26 14:51:31Z oden $
+-# $HeadURL: svn+ssh://svn.mandriva.com/svn/packages/cooker/apache-conf/current/SOURCES/00_default_vhosts.conf $
+-# This is an example VirtualHosts configuration.
+-#
+-# Since Apache 1.3.19, we modified the setup to include some nice tricks:
+-#
+-# - We added the User and Group directives so VirtualHosts now work with
+-#   suexec directive. If set, Apache will run all cgi scripts under that
+-#   user and group (provided the uid and gid are > 100 for security). The
+-#   directories and cgi files *must* belong to that user/group for the
+-#   feature to work
+-#
+-# - We added the Setenv VLOG directive. This works in conjunction with
+-#   the CustomLog in common.conf. When Setenv VLOG is set, apache will
+-#   create a /var/log/httpd/VLOG-YYYY-MM-<ServerName>.log instead of logging
+-#   to access_log. Use this instead of defining a special logfile for
+-#   each vhost, otherwise you eat up file descriptors.
+-#
+-# - You can also specify a path for the VLOG for each Vhost, for example,
+-#   to place the logs in each user's directory. However, if you want to
+-#   use the file for accounting, place it in a directory owned by root,
+-#   otherwise the user will be able to erase it.
+-#
+-# - I suggest only including the ErrorLog *only* if the vhost will use
+-#   cgi scripts. Again, it saves file descriptors! 
+-
+-
+-################# IP-based Virtual Hosts 
+-# <VirtualHost 192.168.2.100>
+-# User jmdault
+-# Group jmdault
+-# DocumentRoot /home/jmdault/public_html
+-# ServerName test2.com
+-# Setenv VLOG /home/jmdault/logs
+-# ErrorLogs /home/jmdault/test2-error_log
+-# </VirtualHost>
+-
+-################# Named VirtualHosts
+-# NameVirtualHost 111.222.33.44
+-# <VirtualHost 111.222.33.44>
+-# ServerName www.domain.tld
+-# ServerPath /domain
+-# DocumentRoot /web/domain
+-# </VirtualHost>
+-
+-#<VirtualHost alice.com>
+-#    ServerName alice.com
+-#    # normal vhost configs
+-#	<IfModule peruser.c>
+-#	    # this must match a Processor line
+-#	    ServerEnvironment alice users /home/alice
+-#
+-#	    # these are optional - defaults to the values specified above
+-#	    MinSpareProcessors 4
+-#	    MaxProcessors 20
+-#	</IfModule>
+-#</VirtualHost>
+-
+ <VirtualHost *:80>
+ 	DocumentRoot /var/www/html
+ 	<Location />
+ 		Allow from all
+ 	</Location>
+-	Redirect / http://www.mageia.org/
++	Redirect / http://www.<%= domain %>/
+ </VirtualHost>
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101108/1b807d14/attachment.html>
+
+ + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000381.html b/zarb-ml/mageia-sysadm/2010-November/000381.html new file mode 100644 index 000000000..8bf0a90ff --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000381.html @@ -0,0 +1,373 @@ + + + + [Mageia-sysadm] [119] removes old style, narrower doc format + + + + + + + + + +

[Mageia-sysadm] [119] removes old style, narrower doc format

+ root at mageia.org + root at mageia.org +
+ Mon Nov 8 16:00:25 CET 2010 +

+
+ +
Revision: 119
+Author:   rda
+Date:     2010-11-08 16:00:25 +0100 (Mon, 08 Nov 2010)
+Log Message:
+-----------
+removes old style, narrower doc format
+
+Modified Paths:
+--------------
+    identity/CatDap/branches/live/root/static/style/ttsite.css
+    identity/CatDap/branches/live/root/template/layout
+
+Modified: identity/CatDap/branches/live/root/static/style/ttsite.css
+===================================================================
+--- identity/CatDap/branches/live/root/static/style/ttsite.css	2010-11-08 00:09:25 UTC (rev 118)
++++ identity/CatDap/branches/live/root/static/style/ttsite.css	2010-11-08 15:00:25 UTC (rev 119)
+@@ -1,45 +1,14 @@
+-
+-html {
+-    margin: 0;
++html, body {
++    background: #ccc;
+ }
+ 
+-body { 
+-    /*background-color: #ccc;*/
+-    color: #000;
+-    margin: 0;
+-    padding: 0px;
++#doc {
++    -webkit-box-shadow: 0 0 10px #aaa;
++    -moz-box-shadow: 0 0 10px #aaa;
++    box-shadow: 0 0 10px #aaa;
++    background: #fff; 
+ }
+ 
+-#header {
+-    background-color: #eee;
+-    border-bottom: 0px solid #fff;
+-}
+-
+-#footer {
+-    background-color: #ccc;
+-    text-align: center;
+-    /*border-top: 1px solid #000;*/
+-    position: absolute;
+-    /*top: 99%;*/
+-    float: bottom;
+-    left: 0px;
+-    width: 100%;
+-    height: 1em;
+-    padding: 0px;
+-    padding-bottom: 2px;
+-    top: 100%;
+-}
+-
+-#content {
+-    padding: 10px;
+-    vertical-align: top;
+-}
+-
+-h1.title {
+-    padding: 4px;
+-    margin: 0px;
+-}
+-
+ .message {
+     color: #000;
+ }
+@@ -48,203 +17,39 @@
+     color: #f00;
+ }
+ 
+-
+-/* Some stuff from skidoo_too.css */
+-#outerColumnContainer
+-{
+-	/* reserves space for the left and right columns. you can use either
+-	 * padding, margins, or borders, depending on your needs. however you
+-	 * can use the border method to create a background color for both left
+-	 * and right columns
+-	 */
+-	/*height: 98%;*/
+-	border-left: solid 12em #eee;
+-	border-right: solid 0em #eee;
+-	/*border-bottom: solid 1em #fff;*/
+-}
+-#innerColumnContainer
+-{
+-	border: solid 0px #000;
+-	border-width: 0 0px;
+-	margin: 0 -1px;		/* compensate for the borders because of
+-				   100% width declaration */
+-	width: 100%;
+-	/*height: 90%;*/
+-	/*z-index: 1;*/
+-    	background-color: #fff;
+-	float: right;
+-}
+-#leftColumn, #middleColumn, #rightColumn, * html #SOWrap
+-{
+-	overflow: visible;	/* fix for IE italics bug */
+-	position: relative;	/* fix some rendering issues */
+-}
+-#SOWrap
+-{
+-	float: left;
+-	margin: 0 -1px 0 0;
+-	width: 100%;
+-	/*z-index: 3;*/
+-}
+-#middleColumn
+-{
+-	float: right;
+-	margin: 0 0 0 -1px;
+-	width: 100%;
+-	/*z-index: 5;*/
+-}
+-#leftColumn
+-{
+-	float: left;
+-	margin: 0 1px 0 -12em;
+-	width: 12em;
+-	/*z-index: 4;*/
+-	height: 100%;
+-    	background-color: #eee;
+-}
+-#rightColumn
+-{
+-	float: right;
+-	width: 14em;
+-	margin: 0 -14em 0 1px;
+-	/*z-index: 2;*/
+-}
+-
+-/* vertical navigation stuff. mostly exactly as seen in the vnav.css styleheet
+- * in the original skidoo layout.
+- */
+-.vnav
+-{
+-	margin: 0em 0;
+-}
+-.vnav ul, .vnav ul li
+-{
+-	margin: 0;
+-	padding: 0;
+-	list-style-type: none;
+-	display: block;
+-}
+-.vnav ul
+-{
+-	border: solid 0px #fff;
+-	border-bottom-width: 0;
+-}
+-.vnav ul li
+-{
+-	border-bottom: solid 0px #fff;
+-}
+-.vnav ul li, .vnav ul li a
+-{
+-	margin: 0;
+-	display: block;
+-	padding: 0;
+-	line-height: normal;
+-}
+-.vnav ul li a
+-{
+-	display: block;
+-	padding: 2px 5px 3px 5px;
+-}
+-.vnav ul li a, .vnav ul li a:link, .vnav ul li a:visited, .vnav ul li a:active, .vnav ul li a:hover
+-{
+-	text-decoration: none;
+-	cursor: pointer;
+-	background-color: #eee;
+-	color: #000;
+-}
+-
+-.vnav ul li a:hover
+-{
+-	text-decoration: none;
+-	background-color: #ccc;
+-}
+-
+-
+-.vnav h3
+-{
+-	margin-bottom: 0;
+-	padding-bottom: 0;
+-	font-size: 126%;
+-}
+-* html .vnav ul li a/* hide from IE5.0/Win & IE5/Mac */
+-{
+-	height: 0.01%;
+-}
+-* html .vnav ul
+-{
+-	position: relative;	/* IE needs this to fix a rendering problem */
+-}
+-
+ /* horizontal navigation elements. create a DIV element with the class hnav
+  * and stick one unordered list inside it to generate a horizontal menu.
+  */
+ .hnav
+ {
+-	border-bottom: solid 0px #fff;
+-	text-align: center;
++    border-bottom: solid 0px #fff;
++    text-align: center;
+ }
+ .hnav, .hnav ul li a
+ {
+-	/* need to middor veritcal padding on .hnav and child anchor elements
+-	 * because the anchors are _not_ block elements. since they are not
+-	 * block elements web browsers will not expand .hnav to contain them
+-	 * even with the extra padding. by applying the same padding to both
+-	 * the parent .hnav _looks_ like its containing the child anchor
+-	 * elements. 
+-	 */
+-	padding-top: 3px;
+-	padding-bottom: 4px;
++    /* need to middor veritcal padding on .hnav and child anchor elements
++     * because the anchors are _not_ block elements. since they are not
++     * block elements web browsers will not expand .hnav to contain them
++     * even with the extra padding. by applying the same padding to both
++     * the parent .hnav _looks_ like its containing the child anchor
++     * elements. 
++     */
++    padding-top: 3px;
++    padding-bottom: 4px;
+ }
+ .hnav ul, .hnav ul li
+ {
+-	display: inline;
+-	list-style-type: none;
+-	margin: 0;
+-	padding: 0;
++    display: inline;
++    list-style-type: none;
++    margin: 0;
++    padding: 0;
+ }
+ .hnav ul li a
+ {
+-	margin: 0 -1px 0 0;
+-	padding-left: 10px;
+-	padding-right: 10px;	/* short-hand padding attribute would overwrite
+-				   top/bottom padding set in a previous rule */
+-	border-left: solid 0px #000;
+-	border-right: solid 0px #000;
+-	white-space: nowrap;
++    margin: 0 -1px 0 0;
++    padding-left: 10px;
++    padding-right: 10px;
++    border-left: solid 0px #000;
++    border-right: solid 0px #000;
++    white-space: nowrap;
+ }
+-.hnav ul li a:link, .hnav ul li a:visited, .hnav ul li a:active, .hnav ul li a:hover
+-{
+-	text-decoration: none;
+-	color: #7f899a;
+-}
+-.hnav ul li a:hover
+-{
+-	text-decoration: none;
+-	background-color: #ccc;
+-}
+-.hnav ul li span.divider
+-{
+-	display: none;
+-}
+-* html .hnav ul li, * html .hnav ul li a
+-{
+-	width: 1%; /* IE/Mac needs this */
+-	display: inline-block;	/* IE/Mac needs this */
+-	/* \*/
+-		width: auto;
+-		display: inline;
+-	/* reset above hack */
+-}
+-* html .hnav, * html .hnav ul a
+-{
+-	/* \*/ height: 0.01%; /* hasLayout hack to fix render bugs in IE/Win. 
+-				 IE/Mac will ignore this rule. */
+-}
+-* html .HNAV
+-{
+-	padding: 0;	/* IE5/Win will resize #hnav to fit the heights of its
+-			   inline children that have vertical padding. So this
+-			   incorrect case selector hack will be applied only by
+-			   IE 5.x/Win */
+-}
+-
+
+Modified: identity/CatDap/branches/live/root/template/layout
+===================================================================
+--- identity/CatDap/branches/live/root/template/layout	2010-11-08 00:09:25 UTC (rev 118)
++++ identity/CatDap/branches/live/root/template/layout	2010-11-08 15:00:25 UTC (rev 119)
+@@ -1,4 +1,4 @@
+-<div id="doc4" class="yui-t7">
++<div id="doc" class="yui-t7">
+     <div id="hd" role="banner">
+     [% PROCESS template/header %]
+     </div>
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101108/027589ff/attachment.html>
+
+ + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000382.html b/zarb-ml/mageia-sysadm/2010-November/000382.html new file mode 100644 index 000000000..0464b815e --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000382.html @@ -0,0 +1,101 @@ + + + + [Mageia-sysadm] [120] style update + + + + + + + + + +

[Mageia-sysadm] [120] style update

+ root at mageia.org + root at mageia.org +
+ Mon Nov 8 16:23:02 CET 2010 +

+
+ +
Revision: 120
+Author:   rda
+Date:     2010-11-08 16:23:02 +0100 (Mon, 08 Nov 2010)
+Log Message:
+-----------
+style update
+
+Modified Paths:
+--------------
+    identity/CatDap/branches/live/root/static/style/ttsite.css
+
+Modified: identity/CatDap/branches/live/root/static/style/ttsite.css
+===================================================================
+--- identity/CatDap/branches/live/root/static/style/ttsite.css	2010-11-08 15:00:25 UTC (rev 119)
++++ identity/CatDap/branches/live/root/static/style/ttsite.css	2010-11-08 15:23:02 UTC (rev 120)
+@@ -9,6 +9,8 @@
+     background: #fff; 
+ }
+ 
++#hd, #ft, #nav, #content, .inside { padding: 1em; }
++
+ .message {
+     color: #000;
+ }
+@@ -22,8 +24,6 @@
+  */
+ .hnav
+ {
+-    border-bottom: solid 0px #fff;
+-    text-align: center;
+ }
+ .hnav, .hnav ul li a
+ {
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101108/e9a1a8be/attachment-0001.html>
+
+ + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000383.html b/zarb-ml/mageia-sysadm/2010-November/000383.html new file mode 100644 index 000000000..5b1873060 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000383.html @@ -0,0 +1,108 @@ + + + + [Mageia-sysadm] [121] style update + + + + + + + + + +

[Mageia-sysadm] [121] style update

+ root at mageia.org + root at mageia.org +
+ Mon Nov 8 16:30:29 CET 2010 +

+
+ +
Revision: 121
+Author:   rda
+Date:     2010-11-08 16:30:29 +0100 (Mon, 08 Nov 2010)
+Log Message:
+-----------
+style update
+
+Modified Paths:
+--------------
+    identity/CatDap/branches/live/root/static/style/ttsite.css
+    identity/CatDap/branches/live/root/template/layout
+
+Modified: identity/CatDap/branches/live/root/static/style/ttsite.css
+===================================================================
+--- identity/CatDap/branches/live/root/static/style/ttsite.css	2010-11-08 15:23:02 UTC (rev 120)
++++ identity/CatDap/branches/live/root/static/style/ttsite.css	2010-11-08 15:30:29 UTC (rev 121)
+@@ -9,7 +9,7 @@
+     background: #fff; 
+ }
+ 
+-#hd, #ft, #nav, #content, .inside { padding: 1em; }
++#hd, #ft, #nav, #content, .inside { padding: 0 1em 0.5em 0; }
+ 
+ .message {
+     color: #000;
+
+Modified: identity/CatDap/branches/live/root/template/layout
+===================================================================
+--- identity/CatDap/branches/live/root/template/layout	2010-11-08 15:23:02 UTC (rev 120)
++++ identity/CatDap/branches/live/root/template/layout	2010-11-08 15:30:29 UTC (rev 121)
+@@ -9,7 +9,7 @@
+                 <li><a href="[% c.uri_for(subpage.page) %]">[% l(subpage.title) %]</a></li>
+             [% END %]
+             </ul>
+-            
++
+             <div class="inside">
+             [% IF errors %]
+                 <span class="error">
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101108/ee080b54/attachment.html>
+
+ + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000384.html b/zarb-ml/mageia-sysadm/2010-November/000384.html new file mode 100644 index 000000000..e4fcc0b1c --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000384.html @@ -0,0 +1,95 @@ + + + + [Mageia-sysadm] About build system setup + + + + + + + + + +

[Mageia-sysadm] About build system setup

+ nicolas vigier + boklm at mars-attacks.org +
+ Mon Nov 8 16:56:03 CET 2010 +

+
+ +
On Sun, 31 Oct 2010, nicolas vigier wrote:
+
+> 
+>  * On Mandriva build system we had one ~mandrake user doing everything
+>    (build bots, scheduler, mirrors, sign packages ...). Now we can split
+>    this to have one user for each task. We can have the following users :
+>    - buildbot (to run iurt on build nodes)
+
+After discussing this on irc with misc and blino today it seems that
+"iurt" would be a better username for running iurt on build nodes.
+It would be more clear what the account is used for. Also, buildbot
+could be confusing because of http://buildbot.net/
+
+>    - schedbot (youri/ulri/emi)
+
+As this one will be used by more than one tool, I think we can keep
+schedbot.
+
+>    - signbot (sign packages)
+
+This one will be used by a script that does not exist yet, so we can
+call this script "signbot".
+
+I have added the list of usernames on this page :
+http://www.mageia.org/wiki/doku.php?id=sysadmin#usernames
+
+
+ + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000385.html b/zarb-ml/mageia-sysadm/2010-November/000385.html new file mode 100644 index 000000000..9fb7b80ee --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000385.html @@ -0,0 +1,97 @@ + + + + [Mageia-sysadm] Usernames, uids, and groups + + + + + + + + + +

[Mageia-sysadm] Usernames, uids, and groups

+ nicolas vigier + boklm at mars-attacks.org +
+ Mon Nov 8 17:29:24 CET 2010 +

+
+ +
Hello,
+
+On some machines like the svn server, we need to use pam_ldap to allow
+users access with their ldap accounts. But on others servers like
+alamut (web services), or the build nodes, normal users have no reason
+to login. On those servers, do you think we should restrict access with
+ssh configuration and a group, or disable pam_ldap completly on those
+servers and only use local accounts ?
+
+We also need to decide what UID ranges we use for local accounts, and for
+ldap accounts.
+
+And groups. I think we could use the following groups :
+ * posix : promotes the user as posixAccount+sshPublicKey (in ldap), and
+   allows access to the svn and git using svn+ssh:// and git+ssh://
+ * packager : allows commits in packages repository, package submit using
+   mdvsys, additional permissions on bugzilla, access to the packages
+   maintainers database, etc ...
+ * web : for members of web team, allows commits in web repository
+ * documentation, translator, qa, marketing, etc ... : 
+ * packagerapprentice, webapprentice, etc ... : for apprentices, with
+   more restricted access
+ * sysadm : gives admin permissions on all applications
+
+What do you think ?
+
+Nicolas
+
+
+ + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000386.html b/zarb-ml/mageia-sysadm/2010-November/000386.html new file mode 100644 index 000000000..ef8c404f1 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000386.html @@ -0,0 +1,117 @@ + + + + [Mageia-sysadm] Usernames, uids, and groups + + + + + + + + + +

[Mageia-sysadm] Usernames, uids, and groups

+ Romain d'Alverny + rdalverny at gmail.com +
+ Mon Nov 8 17:40:24 CET 2010 +

+
+ +
On Mon, Nov 8, 2010 at 17:29, nicolas vigier <boklm at mars-attacks.org> wrote:
+> On some machines like the svn server, we need to use pam_ldap to allow
+> users access with their ldap accounts. But on others servers like
+> alamut (web services), or the build nodes, normal users have no reason
+> to login. On those servers, do you think we should restrict access with
+> ssh configuration and a group, or disable pam_ldap completly on those
+> servers and only use local accounts ?
+
+What would be the risk(s) to use specific ldap groups for that
+purpose? (managing all access in a similar way may be better, no?)
+
+> And groups. I think we could use the following groups :
+>  * posix : promotes the user as posixAccount+sshPublicKey (in ldap), and
+>   allows access to the svn and git using svn+ssh:// and git+ssh://
+>  * packager : allows commits in packages repository, package submit using
+>   mdvsys, additional permissions on bugzilla, access to the packages
+>   maintainers database, etc ...
+>  * web : for members of web team, allows commits in web repository
+>  * documentation, translator, qa, marketing, etc ... :
+>  * packagerapprentice, webapprentice, etc ... : for apprentices, with
+>   more restricted access
+>  * sysadm : gives admin permissions on all applications
+
+LDAP groups should as well map team membership. So marketing team guys
+would belong to such a marketingTeam group then.
+
+> What do you think ?
+
+We probably won't nail this one in one shot :-)
+
+As for web, we would need three roles:
+ - web-apprentice
+ - web (commits to web repos and pushes to tests servers)
+ - webmaster (pushes to prod servers)
+
+We need groups as well for (not exclusive):
+ - being a team representative (that is, in the Council)
+ - being an association member (eligible and elector)
+ - being a board member
+ - being the chair(wo)man
+
+Are group belonging/ownership a "one-time" record or does it get
+archived? (to access a history of past membership). Or should such a
+history be built separately?
+
+Romain
+
+ + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000387.html b/zarb-ml/mageia-sysadm/2010-November/000387.html new file mode 100644 index 000000000..ca9206689 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000387.html @@ -0,0 +1,96 @@ + + + + [Mageia-sysadm] Groups, and UID ranges + + + + + + + + + +

[Mageia-sysadm] Groups, and UID ranges

+ Buchan Milne + bgmilne at multilinks.com +
+ Mon Nov 8 16:53:04 CET 2010 +

+
+ +
Right, so https://identity.mageia.org has been up for a while, and has most 
+features we need right now working (some others will be fixed, hopefully 
+today, by some more ACL fixes on the OpenLDAP side).
+
+For users that have registered (and are basically just inetOrgPerson entries 
+with cn,givenName,sn,mail,userPassword,preferredLanguage), the interface 
+(will) allow a member of the 'Account Admin' group to promote the account to a 
+posixAccount+sshPublicKey account. This will assign the next uid (taken from 
+the current uidNumber value of the sambaUnixIdPool object, which is 
+incremented on this sambaUnixIdPool object, before the account is promoted, in 
+order to allow us to use slapo-unique if we want), and the gidNumber from a 
+list of posixGroups.
+
+The list of groups presented is based on the results of an LDAP search.
+
+So, to proceed, we need to:
+-create some groups
+-decide on the UID/GID range we want to assign to users in LDAP
+
+After a user has been promoted, an account admin is able to add the user to 
+additional groups and add their ssh public key.
+
+We need to decide if we want users to be able to update their ssh public key 
+themselves. It is merely a matter of ACL+entry in the 
+catdap.yml/catdap_local.yml to change this.
+
+I will try and work on the ACLs later today, and ensure we are ready to point 
+applications and nss/pam at LDAP soon.
+
+Regards,
+Buchan
+
+ + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000388.html b/zarb-ml/mageia-sysadm/2010-November/000388.html new file mode 100644 index 000000000..67edef406 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000388.html @@ -0,0 +1,110 @@ + + + + [Mageia-sysadm] [196] - add logic for using ssl certificate ( no SNI for the moment, but should be done later ) + + + + + + + + + +

[Mageia-sysadm] [196] - add logic for using ssl certificate ( no SNI for the moment, but should be done later )

+ Buchan Milne + bgmilne at multilinks.com +
+ Mon Nov 8 10:25:16 CET 2010 +

+
+ +
On Monday, 8 November 2010 01:37:59 root at mageia.org wrote:
+> Revision: 196
+> Author:   misc
+> Date:     2010-11-08 01:37:59 +0100 (Mon, 08 Nov 2010)
+> Log Message:
+> -----------
+> - add logic for using ssl certificate ( no SNI for the moment, but should
+> be done later )
+> 
+> Modified Paths:
+> --------------
+>     puppet/modules/apache/templates/vhost_catalyst_app.conf
+> 
+> Modified: puppet/modules/apache/templates/vhost_catalyst_app.conf
+> ===================================================================
+> --- puppet/modules/apache/templates/vhost_catalyst_app.conf	2010-11-08
+> 00:21:42 UTC (rev 195) +++
+> puppet/modules/apache/templates/vhost_catalyst_app.conf	2010-11-08
+> 00:37:59 UTC (rev 196) @@ -1,4 +1,17 @@
+> -<VirtualHost *:80>
+> +<% if use_ssl then
+> +    port = 443
+> +else
+> +    port = 80
+> +end
+> +%>
+> +
+> +<VirtualHost *:<%= port %>>
+> +<% if use_ssl then %>
+> +        SSLEngine on
+> +        #TODO deploy SNI later
+> +        SSLCertificateFile /etc/ssl/apache/apache.pem
+> +        SSLCertificateKeyFile /etc/ssl/apache/apache.pem
+
+These paths should possible also use macro names, as at present 
+identity.magiea.org has a certificate for alamut.mageia.org. While the cert is 
+currently self-signed, we should try and limit those certificate validation 
+problems that we can limit without too much effort.
+
+> +<% end %>
+>          ServerName <%= name %>
+>          # Serve static content directly
+>          DocumentRoot  /dev/null
+
+
+Regards,
+Buchan
+
+ + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000389.html b/zarb-ml/mageia-sysadm/2010-November/000389.html new file mode 100644 index 000000000..e4e95556c --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000389.html @@ -0,0 +1,107 @@ + + + + [Mageia-sysadm] my work in progress + + + + + + + + + +

[Mageia-sysadm] my work in progress

+ Dexter Morgan + dmorganec at gmail.com +
+ Mon Nov 8 21:24:37 CET 2010 +

+
+ +
hi all,
+
+
+just to tell you things i work in :
+
+-> Transifex almost done ( i am looking with upstream what is wrong on
+our configuration )
+-> Bugzilla ( for test purposes as long as we have not decided which
+one we really wants to use )
+-> Sympa with ldap integration ( maybe around tue/wed for this to be done )
+
+For bugzilla, testing this early have allowed us to detect an issue
+between bugzilla and latest posgreSQL.
+If someone wants to help me for bugzilla, just contact me on IRC so i
+can provide you an admin account
+
+---
+Regards,
+D.Morgan
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000390.html b/zarb-ml/mageia-sysadm/2010-November/000390.html new file mode 100644 index 000000000..a6823fcc9 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000390.html @@ -0,0 +1,133 @@ + + + + [Mageia-sysadm] [209] - fix mask for database declaration + + + + + + + + + +

[Mageia-sysadm] [209] - fix mask for database declaration

+ root at mageia.org + root at mageia.org +
+ Tue Nov 9 00:01:23 CET 2010 +

+
+ +
Revision: 209
+Author:   misc
+Date:     2010-11-09 00:01:23 +0100 (Tue, 09 Nov 2010)
+Log Message:
+-----------
+- fix mask for database declaration
+
+Modified Paths:
+--------------
+    puppet/modules/postgresql/templates/pg_hba.conf
+
+Modified: puppet/modules/postgresql/templates/pg_hba.conf
+===================================================================
+--- puppet/modules/postgresql/templates/pg_hba.conf	2010-11-08 13:30:00 UTC (rev 208)
++++ puppet/modules/postgresql/templates/pg_hba.conf	2010-11-08 23:01:23 UTC (rev 209)
+@@ -81,22 +81,22 @@
+ # Nanar:
+ # This bypass global config for specific user/base
+ host      epoll            epoll           127.0.0.1/32            md5
+-host      epoll            epoll           ::1                     md5
++host      epoll            epoll           ::1/128                 md5
+ hostssl   epoll            epoll           212.85.158.146/32       md5
+ hostssl   epoll            epoll           2a02:2178:2:7::2/128    md5
+ 
+ host      mirrors          mirrors         127.0.0.1/32            md5
+-host      mirrors          mirrors         ::1                     md5
++host      mirrors          mirrors         ::1/128                 md5
+ hostssl   mirrors          mirrors         212.85.158.146/32       md5
+ hostssl   mirrors          mirrors         2a02:2178:2:7::2/128    md5
+ 
+ host      transifex        transifex       127.0.0.1/32            md5
+-host      transifex        transifex       ::1                     md5
++host      transifex        transifex       ::1/128                 md5
+ hostssl   transifex        transifex       212.85.158.146/32       md5
+ hostssl   transifex        transifex       2a02:2178:2:7::2/128    md5
+ 
+ host      bugs             bugs            127.0.0.1/32            md5
+-host      bugs             bugs            ::1                     md5
++host      bugs             bugs            ::1/128                 md5
+ hostssl   bugs             bugs            212.85.158.146/32       md5
+ hostssl   bugs             bugs            2a02:2178:2:7::2/128    md5
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101109/e302d387/attachment-0001.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000391.html b/zarb-ml/mageia-sysadm/2010-November/000391.html new file mode 100644 index 000000000..a4ec00bf6 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000391.html @@ -0,0 +1,118 @@ + + + + [Mageia-sysadm] [210] Add sympa to pgsql + + + + + + + + + +

[Mageia-sysadm] [210] Add sympa to pgsql

+ root at mageia.org + root at mageia.org +
+ Tue Nov 9 00:18:51 CET 2010 +

+
+ +
Revision: 210
+Author:   dmorgan
+Date:     2010-11-09 00:18:50 +0100 (Tue, 09 Nov 2010)
+Log Message:
+-----------
+Add sympa to pgsql
+
+Modified Paths:
+--------------
+    puppet/modules/postgresql/templates/pg_hba.conf
+
+Modified: puppet/modules/postgresql/templates/pg_hba.conf
+===================================================================
+--- puppet/modules/postgresql/templates/pg_hba.conf	2010-11-08 23:01:23 UTC (rev 209)
++++ puppet/modules/postgresql/templates/pg_hba.conf	2010-11-08 23:18:50 UTC (rev 210)
+@@ -100,6 +100,11 @@
+ hostssl   bugs             bugs            212.85.158.146/32       md5
+ hostssl   bugs             bugs            2a02:2178:2:7::2/128    md5
+ 
++host      sympa            sympa           127.0.0.1/32            md5
++host      sympa            sympa           ::1/128                 md5
++hostssl   sympa            sympa           212.85.158.146/32       md5
++hostssl   sympa            sympa           2a02:2178:2:7::2/128    md5
++
+ # "local" is for Unix domain socket connections only
+ local   all             all                                     ident map=local
+ # IPv4 local connections:
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101109/40056ff2/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000392.html b/zarb-ml/mageia-sysadm/2010-November/000392.html new file mode 100644 index 000000000..71124079a --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000392.html @@ -0,0 +1,100 @@ + + + + [Mageia-sysadm] Question about Sympa + + + + + + + + + +

[Mageia-sysadm] Question about Sympa

+ Dexter Morgan + dmorganec at gmail.com +
+ Tue Nov 9 01:15:43 CET 2010 +

+
+ +
Hello,
+
+in alamut we have sympa 6.0.2, the last version is 6.1.x and contains
+in its changelog "WE STRONGLY SUGGEST YOU TO UPGRADE ANY PREVIOUS
+VERSION TO 6.1.1"
+There is a lot of changes and they looks interesting (
+http://www.sympa.org/distribution/latest-stable/NEWS ).
+
+What do you think about this ? do we only update our sympa to last
+6.0.x version or do we switch to sympa 6.1.x ?
+
+thanks a lot
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000393.html b/zarb-ml/mageia-sysadm/2010-November/000393.html new file mode 100644 index 000000000..ab5d4ed5f --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000393.html @@ -0,0 +1,129 @@ + + + + [Mageia-sysadm] Question about Sympa + + + + + + + + + +

[Mageia-sysadm] Question about Sympa

+ Olivier Thauvin + nanardon at nanardon.zarb.org +
+ Tue Nov 9 01:41:48 CET 2010 +

+
+ +
* Dexter Morgan (dmorganec at gmail.com) wrote:
+> Hello,
+> 
+> in alamut we have sympa 6.0.2, the last version is 6.1.x and contains
+> in its changelog "WE STRONGLY SUGGEST YOU TO UPGRADE ANY PREVIOUS
+> VERSION TO 6.1.1"
+> There is a lot of changes and they looks interesting (
+> http://www.sympa.org/distribution/latest-stable/NEWS ).
+> 
+> What do you think about this ? do we only update our sympa to last
+> 6.0.x version or do we switch to sympa 6.1.x ?
+
+I don't have a rule that work all the time about this.
+
+The main question is "what would we update and what is the cost ?".
+
+By cost understand: the time to backport it, the problem this new
+version can cause and will we be affected by potentials bug fixed by
+this version.
+
+In doubt, do nothing,  it will still be time to upgrade later.
+
+> 
+> thanks a lot
+> _______________________________________________
+> Mageia-sysadm mailing list
+> Mageia-sysadm at mageia.org
+> https://www.mageia.org/mailman/listinfo/mageia-sysadm
+-- 
+
+Olivier Thauvin
+CNRS  -  LATMOS
+♖ ♘ ♗ ♕ ♔ ♗ ♘ ♖
+-------------- next part --------------
+A non-text attachment was scrubbed...
+Name: not available
+Type: application/pgp-signature
+Size: 197 bytes
+Desc: not available
+URL: </pipermail/mageia-sysadm/attachments/20101109/ac9d9ba8/attachment.asc>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000394.html b/zarb-ml/mageia-sysadm/2010-November/000394.html new file mode 100644 index 000000000..47670e1a2 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000394.html @@ -0,0 +1,171 @@ + + + + [Mageia-sysadm] [211] - replace hardcoded domain by a variable, to ease reuse of the module + + + + + + + + + +

[Mageia-sysadm] [211] - replace hardcoded domain by a variable, to ease reuse of the module

+ root at mageia.org + root at mageia.org +
+ Tue Nov 9 03:21:57 CET 2010 +

+
+ +
Revision: 211
+Author:   misc
+Date:     2010-11-09 03:21:57 +0100 (Tue, 09 Nov 2010)
+Log Message:
+-----------
+- replace hardcoded domain by a variable, to ease reuse of the module 
+
+Modified Paths:
+--------------
+    puppet/modules/openldap/templates/slapd.conf
+
+Modified: puppet/modules/openldap/templates/slapd.conf
+===================================================================
+--- puppet/modules/openldap/templates/slapd.conf	2010-11-08 23:18:50 UTC (rev 210)
++++ puppet/modules/openldap/templates/slapd.conf	2010-11-09 02:21:57 UTC (rev 211)
+@@ -1,3 +1,9 @@
++<%
++dc_suffix = 'dc=' + domain.gsub('.',',dc=')
++path_module_directory = "/usr/lib" + ( architecture == "x86_64" ? '64' : '') + "/openldap"
++
++%>
++
+ # slapd.conf template
+ include	/usr/share/openldap/schema/core.schema
+ include	/usr/share/openldap/schema/cosine.schema
+@@ -26,10 +32,6 @@
+ pidfile		/var/run/ldap/slapd.pid
+ argsfile	/var/run/ldap/slapd.args
+ 
+-<%
+-path_module_directory = "/usr/lib" + ( architecture == "x86_64" ? '64' : '') + "/openldap"
+-%>
+-
+ modulepath	<%= path_module_directory %>
+ moduleload	back_monitor.la
+ moduleload	syncprov.la
+@@ -51,9 +53,9 @@
+ loglevel 256
+ 
+ database	bdb
+-suffix		"dc=mageia,dc=org"
++suffix		"<%= dc_suffix %>"
+ directory	/var/lib/ldap
+-rootdn		"cn=manager,dc=mageia,dc=org"
++rootdn		"cn=manager,<%= dc_suffix %>"
+ 
+ checkpoint 256 5
+ # 32Mbytes, can hold about 10k posixAccount entries
+@@ -81,7 +83,7 @@
+ syncprov-sessionlog 100
+ 
+ overlay ppolicy
+-ppolicy_default "cn=default,ou=Password Policies,dc=mageia,dc=org"
++ppolicy_default "cn=default,ou=Password Policies,<%= dc_suffix %>"
+ ppolicy_hash_cleartext yes
+ ppolicy_use_lockout yes
+ 
+@@ -94,15 +96,15 @@
+ #refint_nothing "uid=LDAP Admin,ou=System Accounts,dc=example,dc=com"
+ 
+ authz-regexp "gidNumber=0\\\+uidNumber=0,cn=peercred,cn=external,cn=auth"
+-	"uid=Account Admin,ou=System Accounts,dc=mageia,dc=org"
+-authz-regexp ^uid=([^,]+),cn=[^,]+,cn=auth$ uid=$1,ou=People,dc=mageia,dc=org
++	"uid=Account Admin,ou=System Accounts,<%= dc_suffix %>"
++authz-regexp ^uid=([^,]+),cn=[^,]+,cn=auth$ uid=$1,ou=People,<%= dc_suffix %>
+ 
+ include /etc/openldap/mandriva-dit-access.conf
+ 
+ 
+ database monitor
+ access to dn.subtree="cn=Monitor"
+-	by group.exact="cn=LDAP Monitors,ou=System Groups,dc=mageia,dc=org" read
+-	by group.exact="cn=LDAP Admins,ou=System Groups,dc=mageia,dc=org" read
++	by group.exact="cn=LDAP Monitors,ou=System Groups,<%= dc_suffix %>" read
++	by group.exact="cn=LDAP Admins,ou=System Groups,<%= dc_suffix %>" read
+ 	by * none
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101109/3dd92efc/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000395.html b/zarb-ml/mageia-sysadm/2010-November/000395.html new file mode 100644 index 000000000..f7077f3fe --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000395.html @@ -0,0 +1,76 @@ + + + + [Mageia-sysadm] Groups, and UID ranges + + + + + + + + + +

[Mageia-sysadm] Groups, and UID ranges

+ Luca Berra + bluca at vodka.it +
+ Tue Nov 9 07:37:15 CET 2010 +

+
+ +
On Mon, Nov 08, 2010 at 04:53:04PM +0100, Buchan Milne wrote:
+>After a user has been promoted, an account admin is able to add the user to 
+>additional groups and add their ssh public key.
+>
+>We need to decide if we want users to be able to update their ssh public key 
+>themselves. It is merely a matter of ACL+entry in the 
+>catdap.yml/catdap_local.yml to change this.
+i believe it makes sense
+
+
+-- 
+Luca Berra -- bluca at vodka.it
+
+ + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000396.html b/zarb-ml/mageia-sysadm/2010-November/000396.html new file mode 100644 index 000000000..4ac72cf04 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000396.html @@ -0,0 +1,86 @@ + + + + [Mageia-sysadm] Usernames, uids, and groups + + + + + + + + + +

[Mageia-sysadm] Usernames, uids, and groups

+ Luca Berra + bluca at vodka.it +
+ Tue Nov 9 07:53:42 CET 2010 +

+
+ +
On Mon, Nov 08, 2010 at 05:29:24PM +0100, nicolas vigier wrote:
+>Hello,
+>
+>On some machines like the svn server, we need to use pam_ldap to allow
+>users access with their ldap accounts. But on others servers like
+>alamut (web services), or the build nodes, normal users have no reason
+>to login. On those servers, do you think we should restrict access with
+>ssh configuration and a group, or disable pam_ldap completly on those
+>servers and only use local accounts ?
+you should be able to configure nss_ldap/pam_ldap to only allow certain
+users/group (pam_filter directive)
+unfortunately pam_ldap does not allow storing its configuration in ldap,
+but it can be delivered with puppet.
+
+local accounts are a pain to maintain
+
+-- 
+Luca Berra -- bluca at vodka.it
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000397.html b/zarb-ml/mageia-sysadm/2010-November/000397.html new file mode 100644 index 000000000..d3a74be69 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000397.html @@ -0,0 +1,73 @@ + + + + [Mageia-sysadm] Groups, and UID ranges + + + + + + + + + +

[Mageia-sysadm] Groups, and UID ranges

+ Luca Berra + bluca at vodka.it +
+ Tue Nov 9 07:54:45 CET 2010 +

+
+ +
On Mon, Nov 08, 2010 at 04:53:04PM +0100, Buchan Milne wrote:
+>I will try and work on the ACLs later today, and ensure we are ready to point 
+>applications and nss/pam at LDAP soon.
+btw, are we going with padl or ldapd ?
+
+L.
+
+-- 
+Luca Berra -- bluca at vodka.it
+
+ + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000398.html b/zarb-ml/mageia-sysadm/2010-November/000398.html new file mode 100644 index 000000000..dd6a00737 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000398.html @@ -0,0 +1,96 @@ + + + + [Mageia-sysadm] install of a websvn on svn server ? + + + + + + + + + +

[Mageia-sysadm] install of a websvn on svn server ?

+ Dexter Morgan + dmorganec at gmail.com +
+ Tue Nov 9 12:46:53 CET 2010 +

+
+ +
Hi,
+
+Now that svn is moved on the final server, can we plan to install a websvn ?
+
+regard,
+
+D.Morgan
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000399.html b/zarb-ml/mageia-sysadm/2010-November/000399.html new file mode 100644 index 000000000..39450f25f --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000399.html @@ -0,0 +1,98 @@ + + + + [Mageia-sysadm] install of a websvn on svn server ? + + + + + + + + + +

[Mageia-sysadm] install of a websvn on svn server ?

+ nicolas vigier + boklm at mars-attacks.org +
+ Tue Nov 9 13:21:40 CET 2010 +

+
+ +
On Tue, 09 Nov 2010, Dexter Morgan wrote:
+
+> Hi,
+> 
+> Now that svn is moved on the final server, can we plan to install a websvn ?
+
+Yes. First we need to decide which software we want to use. Do you have
+an idea ?
+
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000400.html b/zarb-ml/mageia-sysadm/2010-November/000400.html new file mode 100644 index 000000000..5113dee54 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000400.html @@ -0,0 +1,104 @@ + + + + [Mageia-sysadm] install of a websvn on svn server ? + + + + + + + + + +

[Mageia-sysadm] install of a websvn on svn server ?

+ Dexter Morgan + dmorganec at gmail.com +
+ Tue Nov 9 13:28:58 CET 2010 +

+
+ +
On Tue, Nov 9, 2010 at 1:21 PM, nicolas vigier <boklm at mars-attacks.org> wrote:
+> On Tue, 09 Nov 2010, Dexter Morgan wrote:
+>
+>> Hi,
+>>
+>> Now that svn is moved on the final server, can we plan to install a websvn ?
+>
+> Yes. First we need to decide which software we want to use. Do you have
+> an idea ?
+
+
+honnestly i only know http://websvn.tigris.org/
+
+
+do you know some more that we can discuss ?
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000401.html b/zarb-ml/mageia-sysadm/2010-November/000401.html new file mode 100644 index 000000000..1d821dee5 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000401.html @@ -0,0 +1,101 @@ + + + + [Mageia-sysadm] install of a websvn on svn server ? + + + + + + + + + +

[Mageia-sysadm] install of a websvn on svn server ?

+ Romain d'Alverny + rdalverny at gmail.com +
+ Tue Nov 9 13:47:09 CET 2010 +

+
+ +
On Tue, Nov 9, 2010 at 13:28, Dexter Morgan <dmorganec at gmail.com> wrote:
+> honnestly i only know http://websvn.tigris.org/
+>
+> do you know some more that we can discuss ?
+
+If you use a forge (redmine, indefero, gitorious for git), you have a
+scm web interface as well. But I guess this wouldn't qualify for the
+distribution as such anyway.
+
+Websvn looks nice.
+
+Romain
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000402.html b/zarb-ml/mageia-sysadm/2010-November/000402.html new file mode 100644 index 000000000..8961f0814 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000402.html @@ -0,0 +1,105 @@ + + + + [Mageia-sysadm] install of a websvn on svn server ? + + + + + + + + + +

[Mageia-sysadm] install of a websvn on svn server ?

+ Dexter Morgan + dmorganec at gmail.com +
+ Tue Nov 9 14:06:09 CET 2010 +

+
+ +
On Tue, Nov 9, 2010 at 1:47 PM, Romain d'Alverny <rdalverny at gmail.com> wrote:
+> On Tue, Nov 9, 2010 at 13:28, Dexter Morgan <dmorganec at gmail.com> wrote:
+>> honnestly i only know http://websvn.tigris.org/
+>>
+>> do you know some more that we can discuss ?
+>
+> If you use a forge (redmine, indefero, gitorious for git), you have a
+> scm web interface as well. But I guess this wouldn't qualify for the
+> distribution as such anyway.
+>
+> Websvn looks nice.
+>
+> Romain
+
+yes we will next need to speak about the forge and which tool to use
+:) but this is an other story :)
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000403.html b/zarb-ml/mageia-sysadm/2010-November/000403.html new file mode 100644 index 000000000..1afd44442 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000403.html @@ -0,0 +1,121 @@ + + + + [Mageia-sysadm] install of a websvn on svn server ? + + + + + + + + + +

[Mageia-sysadm] install of a websvn on svn server ?

+ Samuel Verschelde + stormi at laposte.net +
+ Tue Nov 9 14:13:54 CET 2010 +

+
+ +
+Le mardi 9 novembre 2010 14:06:09, Dexter Morgan a écrit :
+> 
+> On Tue, Nov 9, 2010 at 1:47 PM, Romain d'Alverny <rdalverny at gmail.com> wrote:
+> > On Tue, Nov 9, 2010 at 13:28, Dexter Morgan <dmorganec at gmail.com> wrote:
+> >> honnestly i only know http://websvn.tigris.org/
+> >>
+> >> do you know some more that we can discuss ?
+> >
+> > If you use a forge (redmine, indefero, gitorious for git), you have a
+> > scm web interface as well. But I guess this wouldn't qualify for the
+> > distribution as such anyway.
+> >
+> > Websvn looks nice.
+> >
+> > Romain
+> 
+> yes we will next need to speak about the forge and which tool to use
+> :) but this is an other story :)
+> _______________________________________________
+> Mageia-sysadm mailing list
+> Mageia-sysadm at mageia.org
+> https://www.mageia.org/mailman/listinfo/mageia-sysadm
+> 
+> 
+
+websvn seems to be the most basic tool you can find, viewvc is far better (this is the one used at mandriva) and there may be other powerful alternatives.
+
+Regards
+
+Samuel
+
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000404.html b/zarb-ml/mageia-sysadm/2010-November/000404.html new file mode 100644 index 000000000..d5b2f9ac0 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000404.html @@ -0,0 +1,127 @@ + + + + [Mageia-sysadm] install of a websvn on svn server ? + + + + + + + + + +

[Mageia-sysadm] install of a websvn on svn server ?

+ Dexter Morgan + dmorganec at gmail.com +
+ Tue Nov 9 14:31:06 CET 2010 +

+
+ +
On Tue, Nov 9, 2010 at 2:13 PM, Samuel Verschelde <stormi at laposte.net> wrote:
+>
+> Le mardi 9 novembre 2010 14:06:09, Dexter Morgan a écrit :
+>>
+>> On Tue, Nov 9, 2010 at 1:47 PM, Romain d'Alverny <rdalverny at gmail.com> wrote:
+>> > On Tue, Nov 9, 2010 at 13:28, Dexter Morgan <dmorganec at gmail.com> wrote:
+>> >> honnestly i only know http://websvn.tigris.org/
+>> >>
+>> >> do you know some more that we can discuss ?
+>> >
+>> > If you use a forge (redmine, indefero, gitorious for git), you have a
+>> > scm web interface as well. But I guess this wouldn't qualify for the
+>> > distribution as such anyway.
+>> >
+>> > Websvn looks nice.
+>> >
+>> > Romain
+>>
+>> yes we will next need to speak about the forge and which tool to use
+>> :) but this is an other story :)
+>> _______________________________________________
+>> Mageia-sysadm mailing list
+>> Mageia-sysadm at mageia.org
+>> https://www.mageia.org/mailman/listinfo/mageia-sysadm
+>>
+>>
+>
+> websvn seems to be the most basic tool you can find, viewvc is far better (this is the one used at mandriva) and there may be other powerful alternatives.
+>
+> Regards
+>
+> Samuel
+
+tks for you answer.
+
+can you tell some other alternatives ? so we can take a look to them
+and choose the one that fit the more our needs.
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000405.html b/zarb-ml/mageia-sysadm/2010-November/000405.html new file mode 100644 index 000000000..e8d5cd50e --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000405.html @@ -0,0 +1,215 @@ + + + + [Mageia-sysadm] [212] Close more anon access, and open up read access to some inetOrgPerson attrs to users + + + + + + + + + +

[Mageia-sysadm] [212] Close more anon access, and open up read access to some inetOrgPerson attrs to users

+ root at mageia.org + root at mageia.org +
+ Tue Nov 9 15:25:10 CET 2010 +

+
+ +
Revision: 212
+Author:   buchan
+Date:     2010-11-09 15:25:10 +0100 (Tue, 09 Nov 2010)
+Log Message:
+-----------
+Close more anon access, and open up read access to some inetOrgPerson attrs to users
+
+Modified Paths:
+--------------
+    puppet/modules/openldap/templates/mandriva-dit-access.conf
+
+Modified: puppet/modules/openldap/templates/mandriva-dit-access.conf
+===================================================================
+--- puppet/modules/openldap/templates/mandriva-dit-access.conf	2010-11-09 02:21:57 UTC (rev 211)
++++ puppet/modules/openldap/templates/mandriva-dit-access.conf	2010-11-09 14:25:10 UTC (rev 212)
+@@ -33,7 +33,7 @@
+         attrs=shadowLastChange
+         by self write
+         by group.exact="cn=Account Admins,ou=System Groups,dc=mageia,dc=org" write
+-        by * read
++        by users read
+ access to dn.subtree="dc=mageia,dc=org"
+ 	attrs=userPassword
+ 	by group.exact="cn=Account Admins,ou=System Groups,dc=mageia,dc=org" write
+@@ -53,7 +53,7 @@
+ # password policies
+ access to dn.subtree="ou=Password Policies,dc=mageia,dc=org"
+ 	by group.exact="cn=Account Admins,ou=System Groups,dc=mageia,dc=org" write
+-	by * read
++	by users read
+ 
+ # samba password attributes
+ # by self not strictly necessary, because samba uses its own admin user to
+@@ -77,16 +77,18 @@
+ access to dn.subtree="dc=mageia,dc=org"
+ 	attrs=pwdReset,pwdAccountLockedTime
+ 	by group.exact="cn=Account Admins,ou=System Groups,dc=mageia,dc=org" write
+-	by * read
++	by self read
+ 
+ # group owner can add/remove/edit members to groups
+ access to dn.regex="^cn=[^,]+,ou=(System Groups|Group),dc=mageia,dc=org$"
+ 	attrs=member
+ 	by dnattr=owner write
++	by group.exact="cn=Account Admins,ou=System Groups,dc=mageia,dc=org" write
+ 	by users +sx
+ 
+ access to dn.regex="^cn=[^,]+,ou=(System Groups|Group),dc=mageia,dc=org$"
+ 	attrs=cn,description,objectClass,gidNumber
++	by group.exact="cn=Account Admins,ou=System Groups,dc=mageia,dc=org" write
+ 	by users read
+ 
+ # registration - allow registrar group to create basic unprivileged accounts
+@@ -106,7 +108,7 @@
+ access to dn.subtree="ou=People,dc=mageia,dc=org"
+ 	attrs=carLicense,homePhone,homePostalAddress,mobile,pager,telephoneNumber,mail,preferredLanguage
+ 	by self write
+-	by users +sx
++	by users read
+ 
+ # create new accounts
+ access to dn.regex="^([^,]+,)?ou=(People|Group|Hosts),dc=mageia,dc=org$"
+@@ -122,21 +124,21 @@
+ access to dn.regex="^(sambaDomainName=[^,]+,)?dc=mageia,dc=org$"
+ 	attrs=children,entry, at sambaDomain, at sambaUnixIdPool
+ 	by group.exact="cn=Account Admins,ou=System Groups,dc=mageia,dc=org" write
+-	by * read
++	by users read
+ 
+ # samba ID mapping
+ access to dn.regex="^(sambaSID=[^,]+,)?ou=Idmap,dc=mageia,dc=org$"
+ 	attrs=children,entry, at sambaIdmapEntry
+ 	by group.exact="cn=Account Admins,ou=System Groups,dc=mageia,dc=org" write
+ 	by group.exact="cn=IDMAP Admins,ou=System Groups,dc=mageia,dc=org" write
+-	by * read
++	by users read
+ 
+ # global address book
+ # XXX - which class(es) to use?
+ access to dn.regex="^(.*,)?ou=Address Book,dc=mageia,dc=org"
+ 	attrs=children,entry, at inetOrgPerson, at evolutionPerson, at evolutionPersonList
+ 	by group.exact="cn=Address Book Admins,ou=System Groups,dc=mageia,dc=org" write
+-	by * read
++	by users read
+ 
+ # dhcp entries
+ # XXX - open up read access to anybody?
+@@ -150,13 +152,13 @@
+ access to dn.regex="^([^,]+,)?ou=sudoers,dc=mageia,dc=org$"
+ 	attrs=children,entry, at sudoRole
+ 	by group.exact="cn=Sudo Admins,ou=System Groups,dc=mageia,dc=org" write
+-	by * read
++	by users read
+ 
+ # dns
+ access to dn="ou=dns,dc=mageia,dc=org"
+ 	attrs=entry, at extensibleObject
+ 	by group.exact="cn=DNS Admins,ou=System Groups,dc=mageia,dc=org" write
+-	by * read
++	by users read
+ access to dn.sub="ou=dns,dc=mageia,dc=org"
+ 	attrs=children,entry, at dNSZone
+ 	by group.exact="cn=DNS Admins,ou=System Groups,dc=mageia,dc=org" write
+@@ -169,7 +171,7 @@
+ access to dn.one="ou=People,dc=mageia,dc=org"
+ 	attrs=@inetLocalMailRecipient,mail
+ 	by group.exact="cn=MTA Admins,ou=System Groups,dc=mageia,dc=org" write
+-	by * read
++	by users read
+ 
+ # KDE Configuration
+ access to dn.sub="ou=KDEConfig,dc=mageia,dc=org"
+@@ -178,5 +180,5 @@
+ 
+ # last one
+ access to dn.subtree="dc=mageia,dc=org" attrs=entry,uid,cn
+-	by * read
++	by users read
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101109/431b95e6/attachment-0001.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000406.html b/zarb-ml/mageia-sysadm/2010-November/000406.html new file mode 100644 index 000000000..f2a020444 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000406.html @@ -0,0 +1,126 @@ + + + + [Mageia-sysadm] Question about Sympa + + + + + + + + + +

[Mageia-sysadm] Question about Sympa

+ Colin Guthrie + mageia at colin.guthr.ie +
+ Tue Nov 9 15:56:43 CET 2010 +

+
+ +
'Twas brillig, and Olivier Thauvin at 09/11/10 00:41 did gyre and gimble:
+> * Dexter Morgan (dmorganec at gmail.com) wrote:
+>> Hello,
+>>
+>> in alamut we have sympa 6.0.2, the last version is 6.1.x and contains
+>> in its changelog "WE STRONGLY SUGGEST YOU TO UPGRADE ANY PREVIOUS
+>> VERSION TO 6.1.1"
+>> There is a lot of changes and they looks interesting (
+>> http://www.sympa.org/distribution/latest-stable/NEWS ).
+>>
+>> What do you think about this ? do we only update our sympa to last
+>> 6.0.x version or do we switch to sympa 6.1.x ?
+> 
+> I don't have a rule that work all the time about this.
+> 
+> The main question is "what would we update and what is the cost ?".
+> 
+> By cost understand: the time to backport it, the problem this new
+> version can cause and will we be affected by potentials bug fixed by
+> this version.
+> 
+> In doubt, do nothing,  it will still be time to upgrade later.
+
+So those CSS, CSRF, brute force and DoS attack vectors the changelog
+mentions are nothing to worry about then?
+
+Col
+
+
+-- 
+
+Colin Guthrie
+mageia(at)colin.guthr.ie
+http://colin.guthr.ie/
+
+Day Job:
+  Tribalogic Limited [http://www.tribalogic.net/]
+Open Source:
+  Mageia Contributor [http://www.mageia.org/]
+  PulseAudio Hacker [http://www.pulseaudio.org/]
+  Trac Hacker [http://trac.edgewall.org/]
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000407.html b/zarb-ml/mageia-sysadm/2010-November/000407.html new file mode 100644 index 000000000..164402e98 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000407.html @@ -0,0 +1,124 @@ + + + + [Mageia-sysadm] Usernames, uids, and groups + + + + + + + + + +

[Mageia-sysadm] Usernames, uids, and groups

+ Buchan Milne + bgmilne at multilinks.com +
+ Tue Nov 9 14:14:41 CET 2010 +

+
+ +
On Monday, 8 November 2010 17:29:24 nicolas vigier wrote:
+> Hello,
+
+Why a new thread?
+
+> On some machines like the svn server, we need to use pam_ldap to allow
+> users access with their ldap accounts. But on others servers like
+> alamut (web services), or the build nodes, normal users have no reason
+> to login.
+
+But, sysadm members have a reason, and I see no reason to increase their 
+overhead with local accounts.
+
+> On those servers, do you think we should restrict access with
+> ssh configuration and a group, or disable pam_ldap completly on those
+> servers and only use local accounts ?
+
+I was planning for pam_ldap's pam_groupdn option. E.g. a 'sysadm' group.
+
+> We also need to decide what UID ranges we use for local accounts, and for
+> ldap accounts.
+> 
+> And groups. I think we could use the following groups :
+>  * posix : promotes the user as posixAccount+sshPublicKey (in ldap), and
+>    allows access to the svn and git using svn+ssh:// and git+ssh://
+
+I think it would be better to try and provide VCS commit access without shell 
+access. This is easy enough for subversion with mod_dav_svn.
+
+>  * packager : allows commits in packages repository, package submit using
+>    mdvsys,
+
+How are we submitting to mdvsys? Command-line? API?
+
+>    additional permissions on bugzilla,
+
+What permissions do packagers need that non-packager committer don't?
+
+>    access to the packages
+>    maintainers database, etc ...
+
+
+>  * web : for members of web team, allows commits in web repository
+>  * documentation, translator, qa, marketing, etc ... :
+>  * packagerapprentice, webapprentice, etc ... : for apprentices, with
+>    more restricted access
+
+This is svn commit but no mdvsys access?
+
+>  * sysadm : gives admin permissions on all applications
+
+There is 'Account Admin' "system" group in LDAP, which allows any modification 
+to any users. But, should system administration necessarily mean all access in 
+all applications?
+
+Regards,
+Buchan
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000408.html b/zarb-ml/mageia-sysadm/2010-November/000408.html new file mode 100644 index 000000000..f4732c3ed --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000408.html @@ -0,0 +1,130 @@ + + + + [Mageia-sysadm] Usernames, uids, and groups + + + + + + + + + +

[Mageia-sysadm] Usernames, uids, and groups

+ Buchan Milne + bgmilne at multilinks.com +
+ Tue Nov 9 14:25:51 CET 2010 +

+
+ +
On Monday, 8 November 2010 17:40:24 Romain d'Alverny wrote:
+> On Mon, Nov 8, 2010 at 17:29, nicolas vigier <boklm at mars-attacks.org> wrote:
+> > On some machines like the svn server, we need to use pam_ldap to allow
+> > users access with their ldap accounts. But on others servers like
+> > alamut (web services), or the build nodes, normal users have no reason
+> > to login. On those servers, do you think we should restrict access with
+> > ssh configuration and a group, or disable pam_ldap completly on those
+> > servers and only use local accounts ?
+> 
+> What would be the risk(s) to use specific ldap groups for that
+> purpose? (managing all access in a similar way may be better, no?)
+
+Both have advantages and disadvantages, but the disadvantages for local 
+accounts increase with N*M (e.g. total number of operations to remove an 
+old/compromised account), whereas the disadvantages for LDAP increase with N.
+
+where N=number of users and M=number of hosts.
+
+Usually by the time N*M > 50 it becomes difficult to be sure passwords have 
+been removed everywhere etc.
+
+> > And groups. I think we could use the following groups :
+> >  * posix : promotes the user as posixAccount+sshPublicKey (in ldap), and
+> >   allows access to the svn and git using svn+ssh:// and git+ssh://
+> >  * packager : allows commits in packages repository, package submit using
+> >   mdvsys, additional permissions on bugzilla, access to the packages
+> >   maintainers database, etc ...
+> >  * web : for members of web team, allows commits in web repository
+> >  * documentation, translator, qa, marketing, etc ... :
+> >  * packagerapprentice, webapprentice, etc ... : for apprentices, with
+> >   more restricted access
+> >  * sysadm : gives admin permissions on all applications
+> 
+> LDAP groups should as well map team membership. So marketing team guys
+> would belong to such a marketingTeam group then.
+> 
+> > What do you think ?
+> 
+> We probably won't nail this one in one shot :-)
+> 
+> As for web, we would need three roles:
+>  - web-apprentice
+>  - web (commits to web repos and pushes to tests servers)
+>  - webmaster (pushes to prod servers)
+> 
+> We need groups as well for (not exclusive):
+>  - being a team representative (that is, in the Council)
+
+The current ACLs allow the DN listed in the 'manager' (single-valued) 
+attribute of a group to modify the member attribute of this group.
+
+Or, do we need these as mailing lists as well?
+
+>  - being an association member (eligible and elector)
+>  - being a board member
+>  - being the chair(wo)man
+> 
+> Are group belonging/ownership a "one-time" record or does it get
+> archived? (to access a history of past membership). Or should such a
+> history be built separately?
+
+Archiving isn't that easy, I would prefer a record to be kept when 
+appropriate.
+
+Regards,
+Buchan
+
+ + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000409.html b/zarb-ml/mageia-sysadm/2010-November/000409.html new file mode 100644 index 000000000..876520ef2 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000409.html @@ -0,0 +1,87 @@ + + + + [Mageia-sysadm] Usernames, uids, and groups + + + + + + + + + +

[Mageia-sysadm] Usernames, uids, and groups

+ Buchan Milne + bgmilne at multilinks.com +
+ Tue Nov 9 14:28:30 CET 2010 +

+
+ +
On Tuesday, 9 November 2010 07:53:42 Luca Berra wrote:
+> On Mon, Nov 08, 2010 at 05:29:24PM +0100, nicolas vigier wrote:
+> >Hello,
+> >
+> >On some machines like the svn server, we need to use pam_ldap to allow
+> >users access with their ldap accounts. But on others servers like
+> >alamut (web services), or the build nodes, normal users have no reason
+> >to login. On those servers, do you think we should restrict access with
+> >ssh configuration and a group, or disable pam_ldap completly on those
+> >servers and only use local accounts ?
+> 
+> you should be able to configure nss_ldap/pam_ldap to only allow certain
+> users/group (pam_filter directive)
+
+pam_groupdn may be better, unless we use memberOf (e.g. slapo-memberof).
+
+> unfortunately pam_ldap does not allow storing its configuration in ldap,
+
+slapd+nssov allows this ... but it isn't trivial, and I haven't played with it 
+much.
+
+Regards,
+Buchan
+
+ + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000410.html b/zarb-ml/mageia-sysadm/2010-November/000410.html new file mode 100644 index 000000000..ba64c0ce3 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000410.html @@ -0,0 +1,82 @@ + + + + [Mageia-sysadm] Groups, and UID ranges + + + + + + + + + +

[Mageia-sysadm] Groups, and UID ranges

+ Buchan Milne + bgmilne at multilinks.com +
+ Tue Nov 9 14:31:27 CET 2010 +

+
+ +
On Tuesday, 9 November 2010 07:54:45 Luca Berra wrote:
+> On Mon, Nov 08, 2010 at 04:53:04PM +0100, Buchan Milne wrote:
+> >I will try and work on the ACLs later today, and ensure we are ready to
+> >point applications and nss/pam at LDAP soon.
+> 
+> btw, are we going with padl or ldapd ?
+
+For now, nss_ldap, maybe +nscd (to avoid symbol issues).
+
+In future, maybe ldapd, slapd+nssov, or sssd may be better options. But, in my 
+current environments, nss_ldap usually isn't a problem (but nscd is, when it 
+sometimes manages to forget local accounts!).
+
+However, I have seen too many people with ldapd problems, and I am not sure 
+all features we may want (e.g. SASL GSSAPI support) is available ... but 
+again, I haven't tested it that much.
+
+Regards,
+Buchan
+
+ + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000411.html b/zarb-ml/mageia-sysadm/2010-November/000411.html new file mode 100644 index 000000000..015141ad7 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000411.html @@ -0,0 +1,192 @@ + + + + [Mageia-sysadm] [213] - rename iurt to buildsystem + + + + + + + + + +

[Mageia-sysadm] [213] - rename iurt to buildsystem

+ root at mageia.org + root at mageia.org +
+ Tue Nov 9 16:01:12 CET 2010 +

+
+ +
Revision: 213
+Author:   misc
+Date:     2010-11-09 16:01:12 +0100 (Tue, 09 Nov 2010)
+Log Message:
+-----------
+- rename iurt to buildsystem
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+    puppet/modules/buildsystem/manifests/init.pp
+
+Added Paths:
+-----------
+    puppet/modules/buildsystem/
+
+Removed Paths:
+-------------
+    puppet/modules/iurt/
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-09 14:25:10 UTC (rev 212)
++++ puppet/manifests/nodes.pp	2010-11-09 15:01:12 UTC (rev 213)
+@@ -60,7 +60,7 @@
+ # Location: IELO datacenter (marseille)
+ #
+     include default_mageia_server
+-    #include iurt
++    #include buildsystem::buildnode
+     timezone::timezone { "Europe/Paris": }
+ }
+ 
+@@ -68,7 +68,7 @@
+ # Location: IELO datacenter (marseille)
+ #
+     include default_mageia_server
+-    include iurt
++    include buildsystem::buildnode
+     timezone::timezone { "Europe/Paris": }
+ }
+ 
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/iurt/manifests/init.pp	2010-11-09 14:25:10 UTC (rev 212)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-09 15:01:12 UTC (rev 213)
+@@ -1,20 +1,38 @@
+-class iurt {
++class buildsystem {
+ 
+-    # build node common settings
+-    # we could have the following skip list to use less space:
+-    # '/(drakx-installer-binaries|drakx-installer-advertising|gfxboot|drakx-installer-stage2|mandriva-theme)/'
+-    $package_list = ['task-bs-cluster-chroot', 'iurt']
+-    package { $package_list:
+-        ensure => installed;
++    class buildnode {
++        include iurt
+     }
+ 
+-    file { '/home/buildbot/.iurt.cauldron.conf':
+-        ensure => present,
+-        owner => buildbot,
+-        group => buildbot,
+-        mode => 644,
+-        content => template("iurt/iurt.cauldron.conf")
++    class iurt {
++
++        $home_dir = "/home/buildbot/"
++        $build_login = "buildbot"
++        # build node common settings
++        # we could have the following skip list to use less space:
++        # '/(drakx-installer-binaries|drakx-installer-advertising|gfxboot|drakx-installer-stage2|mandriva-theme)/'
++        $package_list = ['task-bs-cluster-chroot', 'iurt']
++        package { $package_list:
++            ensure => installed;
++        }
++
++        file { "$home_dir/.iurt.cauldron.conf":
++            ensure => present,
++            owner => $build_login,
++            group => $build_login,
++            mode => 644,
++            content => template("iurt/iurt.cauldron.conf")
++        }
++
++        group {"$build_login": 
++            ensure => present,
++        }
++
++        user {"$build_login":
++            ensure => present,
++            comment => "System user use to run build bots"    
++            managehome => true,
++            shell => "/bin/bash",
++        }
+     }
+-
+ }
+-
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101109/572273c3/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000412.html b/zarb-ml/mageia-sysadm/2010-November/000412.html new file mode 100644 index 000000000..ed32f0e39 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000412.html @@ -0,0 +1,133 @@ + + + + [Mageia-sysadm] install of a websvn on svn server ? + + + + + + + + + +

[Mageia-sysadm] install of a websvn on svn server ?

+ Samuel Verschelde + stormi at laposte.net +
+ Tue Nov 9 16:52:34 CET 2010 +

+
+ +
+Le mardi 9 novembre 2010 14:31:06, Dexter Morgan a écrit :
+> 
+> On Tue, Nov 9, 2010 at 2:13 PM, Samuel Verschelde <stormi at laposte.net> wrote:
+> >
+> > Le mardi 9 novembre 2010 14:06:09, Dexter Morgan a écrit :
+> >>
+> >> On Tue, Nov 9, 2010 at 1:47 PM, Romain d'Alverny <rdalverny at gmail.com> wrote:
+> >> > On Tue, Nov 9, 2010 at 13:28, Dexter Morgan <dmorganec at gmail.com> wrote:
+> >> >> honnestly i only know http://websvn.tigris.org/
+> >> >>
+> >> >> do you know some more that we can discuss ?
+> >> >
+> >> > If you use a forge (redmine, indefero, gitorious for git), you have a
+> >> > scm web interface as well. But I guess this wouldn't qualify for the
+> >> > distribution as such anyway.
+> >> >
+> >> > Websvn looks nice.
+> >> >
+> >> > Romain
+> >>
+> >> yes we will next need to speak about the forge and which tool to use
+> >> :) but this is an other story :)
+> >> _______________________________________________
+> >> Mageia-sysadm mailing list
+> >> Mageia-sysadm at mageia.org
+> >> https://www.mageia.org/mailman/listinfo/mageia-sysadm
+> >>
+> >>
+> >
+> > websvn seems to be the most basic tool you can find, viewvc is far better (this is the one used at mandriva) and there may be other powerful alternatives.
+> >
+> > Regards
+> >
+> > Samuel
+> 
+> tks for you answer.
+> 
+> can you tell some other alternatives ? so we can take a look to them
+> and choose the one that fit the more our needs.
+
+In fact websvn looks good. I thought it was the svn http interface which is shipped with a default svn install, because when I clicked http://websvn.tigris.org/svn/websvn/ (user guest, no password), I got the basic view. 
+
+Having a second look at websvn, it looks great.
+
+Regards
+
+Samuel
+
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000413.html b/zarb-ml/mageia-sysadm/2010-November/000413.html new file mode 100644 index 000000000..086887056 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000413.html @@ -0,0 +1,140 @@ + + + + [Mageia-sysadm] install of a websvn on svn server ? + + + + + + + + + +

[Mageia-sysadm] install of a websvn on svn server ?

+ Samuel Verschelde + stormi at laposte.net +
+ Tue Nov 9 17:05:08 CET 2010 +

+
+ +
+Le mardi 9 novembre 2010 16:52:34, Samuel Verschelde a écrit :
+> 
+> Le mardi 9 novembre 2010 14:31:06, Dexter Morgan a écrit :
+> > 
+> > On Tue, Nov 9, 2010 at 2:13 PM, Samuel Verschelde <stormi at laposte.net> wrote:
+> > >
+> > > Le mardi 9 novembre 2010 14:06:09, Dexter Morgan a écrit :
+> > >>
+> > >> On Tue, Nov 9, 2010 at 1:47 PM, Romain d'Alverny <rdalverny at gmail.com> wrote:
+> > >> > On Tue, Nov 9, 2010 at 13:28, Dexter Morgan <dmorganec at gmail.com> wrote:
+> > >> >> honnestly i only know http://websvn.tigris.org/
+> > >> >>
+> > >> >> do you know some more that we can discuss ?
+> > >> >
+> > >> > If you use a forge (redmine, indefero, gitorious for git), you have a
+> > >> > scm web interface as well. But I guess this wouldn't qualify for the
+> > >> > distribution as such anyway.
+> > >> >
+> > >> > Websvn looks nice.
+> > >> >
+> > >> > Romain
+> > >>
+> > >> yes we will next need to speak about the forge and which tool to use
+> > >> :) but this is an other story :)
+> > >> _______________________________________________
+> > >> Mageia-sysadm mailing list
+> > >> Mageia-sysadm at mageia.org
+> > >> https://www.mageia.org/mailman/listinfo/mageia-sysadm
+> > >>
+> > >>
+> > >
+> > > websvn seems to be the most basic tool you can find, viewvc is far better (this is the one used at mandriva) and there may be other powerful alternatives.
+> > >
+> > > Regards
+> > >
+> > > Samuel
+> > 
+> > tks for you answer.
+> > 
+> > can you tell some other alternatives ? so we can take a look to them
+> > and choose the one that fit the more our needs.
+> 
+> In fact websvn looks good. I thought it was the svn http interface which is shipped with a default svn install, because when I clicked http://websvn.tigris.org/svn/websvn/ (user guest, no password), I got the basic view. 
+> 
+> Having a second look at websvn, it looks great.
+> 
+> Regards
+> 
+> Samuel
+> 
+
+One thing to check about websvn, though, is how it handles big repositories, because there seems to be a lot of JS in the interface, I'd like to see how it handles directories with 10000 subdirectories (we could also organise the repository so that no directory contains 10000 elements :)).
+
+Samuel
+
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000414.html b/zarb-ml/mageia-sysadm/2010-November/000414.html new file mode 100644 index 000000000..ba2f2133d --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000414.html @@ -0,0 +1,155 @@ + + + + [Mageia-sysadm] install of a websvn on svn server ? + + + + + + + + + +

[Mageia-sysadm] install of a websvn on svn server ?

+ Michael scherer + misc at zarb.org +
+ Tue Nov 9 18:48:23 CET 2010 +

+
+ +
On Tue, Nov 09, 2010 at 02:31:06PM +0100, Dexter Morgan wrote:
+ 
+> can you tell some other alternatives ? so we can take a look to them
+> and choose the one that fit the more our needs.
+
+We should maybe start by explicting the needs ?
+
+I can propose some :
+
+- must be able to enumerate distant svn ( unless we place it on valstar
+, and I think we shouldn't for security reasons, as this is the
+server that old all passwords and the future gpg key of
+the distribution, among others, so it should IMHO be kept free
+of interaction with internet as much as possible  )
+
+- must be able to cope with big repository ( as Mandriva still suffer from 
+problem when looking at the svn for packages ). The patch for directory
+limitation seems to have applied and lost on the viewvc we used ( one
+more reason to use rpm of the distribution and to push patch upstream )
+
+- must not be a ressources hog ( as it will likely be indexed sooner
+or later by Google or a search engine, even if we can suppose
+that robots.txt will be used to prevent that ). This also exclude 
+all setup based on basic CGI, for well know performance reasons.
+
+- must be maintained, packaged, without a history full of security hole
+that would make Berlin wall look rock solid in comparaison.
+
+- do we plan to host git repository ? It seems so ( we did at mandriva, 
+and I think a growing number of contributers will want it ). Others
+SCMs ? I do not know, but we should ask. ( but I never seen people asking
+for bzr and hg hosting, maybe nanar for darcs ). We can also say this is
+not the goal of this tool, as we did fr mdv.
+
+- must be easy to theme 
+- should be without recompiling the whole rpm
+- should not need to copy the css ( ie, take a distant one, as this
+will ease the job of the webteam and help on perfs )
+
+- should support ACLs. While we do not need for the moment, but
+this may be a need that will arise for the secteam or for keeping password
+( see my previous mail about it for extlookup, puppet and so one ).
+
+If we decide we need ACLs, we need to find how to plug them to ldap. 
+A simple apache module could do the trick, depend on the url used.
+
+- should support non text content ( to display imagess )
+for website for example.
+
+- must handle diff ( for text )
+
+- should support syntax highligthing
+
+And finally, maybe ask directly to the people who will use if 
+they have some needs not fullfilled by the current tools ( without
+getting out of the scope of the use case "look at svn using the web" )
+
+For example, a link to the bugtracker when we see #foo123 in commit message 
+would be nice. Some people also would like to see a nice ajax interface,
+and some would like to have it working without it.
+
+And for tools proposal we can either use
+websvn, viewvc, or try to use redmine/trac and hide everything 
+( and I think we should rather avoid this solution ).
+Some people on stackoverlow.com seems to say that usvn could be 
+used too ( even if it does much more than what we think ).
+
+There is also some other non free solution, like fisheye, but I would
+not recommend for obvious reasons.
+-- 
+Michael Scherer
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000415.html b/zarb-ml/mageia-sysadm/2010-November/000415.html new file mode 100644 index 000000000..455351df8 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000415.html @@ -0,0 +1,176 @@ + + + + [Mageia-sysadm] install of a websvn on svn server ? + + + + + + + + + +

[Mageia-sysadm] install of a websvn on svn server ?

+ Dexter Morgan + dmorganec at gmail.com +
+ Tue Nov 9 19:29:56 CET 2010 +

+
+ +
On Tue, Nov 9, 2010 at 6:48 PM, Michael scherer <misc at zarb.org> wrote:
+> On Tue, Nov 09, 2010 at 02:31:06PM +0100, Dexter Morgan wrote:
+>
+>> can you tell some other alternatives ? so we can take a look to them
+>> and choose the one that fit the more our needs.
+>
+> We should maybe start by explicting the needs ?
+>
+> I can propose some :
+>
+> - must be able to enumerate distant svn ( unless we place it on valstar
+> , and I think we shouldn't for security reasons, as this is the
+> server that old all passwords and the future gpg key of
+> the distribution, among others, so it should IMHO be kept free
+> of interaction with internet as much as possible  )
+
+Of course, i was thinking to add it on alamut or krampouezh
+
+> - must be able to cope with big repository ( as Mandriva still suffer from
+> problem when looking at the svn for packages ). The patch for directory
+> limitation seems to have applied and lost on the viewvc we used ( one
+> more reason to use rpm of the distribution and to push patch upstream )
+
+I think that here the main pb is that not a lot of that kind of tools
+are used on big repos, so we may have
+"surprises" when used.
+
+> - must not be a ressources hog ( as it will likely be indexed sooner
+> or later by Google or a search engine, even if we can suppose
+> that robots.txt will be used to prevent that ). This also exclude
+> all setup based on basic CGI, for well know performance reasons.
+
+how to know this ? is there some benchmark like tests ?
+
+> - must be maintained, packaged, without a history full of security hole
+> that would make Berlin wall look rock solid in comparaison.
+
+makes sense
+
+> - do we plan to host git repository ? It seems so ( we did at mandriva,
+> and I think a growing number of contributers will want it ). Others
+> SCMs ? I do not know, but we should ask. ( but I never seen people asking
+> for bzr and hg hosting, maybe nanar for darcs ). We can also say this is
+> not the goal of this tool, as we did fr mdv.
+
+for git this is an other story i think, that we will discuss on an
+other story and btw having a git repo is i think a must have.
+
+> - must be easy to theme
+> - should be without recompiling the whole rpm
+> - should not need to copy the css ( ie, take a distant one, as this
+> will ease the job of the webteam and help on perfs )
+>
+> - should support ACLs. While we do not need for the moment, but
+> this may be a need that will arise for the secteam or for keeping password
+> ( see my previous mail about it for extlookup, puppet and so one ).
+
+i was just speaking of a websvn like, just a tool to "see" the svn not
+to modify it.
+
+> If we decide we need ACLs, we need to find how to plug them to ldap.
+> A simple apache module could do the trick, depend on the url used.
+>
+> - should support non text content ( to display imagess )
+> for website for example.
+>
+> - must handle diff ( for text )
+>
+> - should support syntax highligthing
+>
+> And finally, maybe ask directly to the people who will use if
+> they have some needs not fullfilled by the current tools ( without
+> getting out of the scope of the use case "look at svn using the web" )
+>
+> For example, a link to the bugtracker when we see #foo123 in commit message
+> would be nice. Some people also would like to see a nice ajax interface,
+> and some would like to have it working without it.
+>
+> And for tools proposal we can either use
+> websvn, viewvc, or try to use redmine/trac and hide everything
+> ( and I think we should rather avoid this solution ).
+> Some people on stackoverlow.com seems to say that usvn could be
+> used too ( even if it does much more than what we think ).
+>
+> There is also some other non free solution, like fisheye, but I would
+> not recommend for obvious reasons.
+> --
+> Michael Scherer
+> _______________________________________________
+> Mageia-sysadm mailing list
+> Mageia-sysadm at mageia.org
+> https://www.mageia.org/mailman/listinfo/mageia-sysadm
+>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000416.html b/zarb-ml/mageia-sysadm/2010-November/000416.html new file mode 100644 index 000000000..60db4a85e --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000416.html @@ -0,0 +1,80 @@ + + + + [Mageia-sysadm] secret key might be secret ? + + + + + + + + + +

[Mageia-sysadm] secret key might be secret ?

+ Dexter Morgan + dmorganec at gmail.com +
+ Tue Nov 9 21:17:12 CET 2010 +

+
+ +
On Sun, Nov 7, 2010 at 10:44 AM, Philippe DIDIER
+<philippedidier at laposte.net> wrote:
+>  Sorry for the French... but I wrote to Misc address (not to speak of
+> this on the list itself and make visitors pay attention to it) and this
+> post was apparently forwarded to the list...
+>
+> Anyway ... happy it was useful !
+>
+> Better to say a stupid thing than nothing, when we have some doubts !
+> (that's what I say to people aboard when I'm skipping)
+>
+> Thanks for your job !
+>
+> Philippe
+
+Hi,
+
+ this is not the key used by the bugzilla apps, but you are right this
+is better to remove it from the file to forgot to change it if we need
+to reinstall the server one day.
+
+
+thanks for the hint.
+
+ + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000417.html b/zarb-ml/mageia-sysadm/2010-November/000417.html new file mode 100644 index 000000000..e485bdd84 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000417.html @@ -0,0 +1,112 @@ + + + + [Mageia-sysadm] [214] Remove the secret key from the file ( even if this is not the one used ) + + + + + + + + + +

[Mageia-sysadm] [214] Remove the secret key from the file ( even if this is not the one used )

+ root at mageia.org + root at mageia.org +
+ Tue Nov 9 21:19:13 CET 2010 +

+
+ +
Revision: 214
+Author:   dmorgan
+Date:     2010-11-09 21:19:13 +0100 (Tue, 09 Nov 2010)
+Log Message:
+-----------
+Remove the secret key from the file ( even if this is not the one used )
+  A new one will be recreated with checksetup.pl when needed.
+
+Modified Paths:
+--------------
+    puppet/modules/bugzilla/templates/localconfig
+
+Modified: puppet/modules/bugzilla/templates/localconfig
+===================================================================
+--- puppet/modules/bugzilla/templates/localconfig	2010-11-09 15:01:12 UTC (rev 213)
++++ puppet/modules/bugzilla/templates/localconfig	2010-11-09 20:19:13 UTC (rev 214)
+@@ -102,9 +102,3 @@
+ # Please specify the directory name only; do not use trailing slash.
+ $diffpath = '/usr/bin';
+ 
+-# This secret key is used by your installation for the creation and
+-# validation of encrypted tokens to prevent unsolicited changes,
+-# such as bug changes. A random string is generated by default.
+-# It's very important that this key is kept secret. It also must be
+-# very long.
+-$site_wide_secret = 'FLDtMWoTaBMifoR5CXo8yAFkeHNzCDra8BwWv6HDgGIvRLVMahTgl6wmD43RaY2pwrrY2xcTUkEX0sGOw7ZPnjwbqx56DtNqHMNDnkS43wywBMfhw0w798zFqAOMYySyPPdEIGg9ZJ1KOtHPk4jW6WVvaHpLjZQEmJYqygVmUaxsSwxdWCQcRPKmQtZqGjvWCwuiTtGOKUhEBbpCIIX20Yw5N50tNq95VzYC08Qw4FGp0stDsx82wNNxdnK1m9KZ';
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101109/a3b74a26/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000418.html b/zarb-ml/mageia-sysadm/2010-November/000418.html new file mode 100644 index 000000000..3650c97f4 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000418.html @@ -0,0 +1,133 @@ + + + + [Mageia-sysadm] [215] add sudo module + + + + + + + + + +

[Mageia-sysadm] [215] add sudo module

+ root at mageia.org + root at mageia.org +
+ Tue Nov 9 23:48:05 CET 2010 +

+
+ +
Revision: 215
+Author:   boklm
+Date:     2010-11-09 23:48:04 +0100 (Tue, 09 Nov 2010)
+Log Message:
+-----------
+add sudo module
+
+Added Paths:
+-----------
+    puppet/modules/sudo/
+    puppet/modules/sudo/manifests/
+    puppet/modules/sudo/manifests/init.pp
+    puppet/modules/sudo/templates/
+    puppet/modules/sudo/templates/sudoers
+
+Added: puppet/modules/sudo/manifests/init.pp
+===================================================================
+--- puppet/modules/sudo/manifests/init.pp	                        (rev 0)
++++ puppet/modules/sudo/manifests/init.pp	2010-11-09 22:48:04 UTC (rev 215)
+@@ -0,0 +1,20 @@
++class sudo {
++    package { sudo:
++	ensure => installed;
++    }
++
++    file { "/etc/sudoers.d":
++        ensure => directory,
++        mode => 700,
++        owner => root,
++        group => root,
++    }
++
++    file { "/etc/sudoers":
++	ensure => present,
++	owner => root,
++	group => root,
++	mode => 600,
++	content => template("sudo/sudoers")
++    }
++}
+
+Added: puppet/modules/sudo/templates/sudoers
+===================================================================
+--- puppet/modules/sudo/templates/sudoers	                        (rev 0)
++++ puppet/modules/sudo/templates/sudoers	2010-11-09 22:48:04 UTC (rev 215)
+@@ -0,0 +1 @@
++#includedir /etc/sudoers.d
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101109/e544f6fc/attachment-0001.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000419.html b/zarb-ml/mageia-sysadm/2010-November/000419.html new file mode 100644 index 000000000..b75c46c99 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000419.html @@ -0,0 +1,135 @@ + + + + [Mageia-sysadm] [216] add sudoers rule for iurt + + + + + + + + + +

[Mageia-sysadm] [216] add sudoers rule for iurt

+ root at mageia.org + root at mageia.org +
+ Tue Nov 9 23:57:33 CET 2010 +

+
+ +
Revision: 216
+Author:   boklm
+Date:     2010-11-09 23:57:33 +0100 (Tue, 09 Nov 2010)
+Log Message:
+-----------
+add sudoers rule for iurt
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Added Paths:
+-----------
+    puppet/modules/buildsystem/templates/sudoers.iurt
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-09 22:48:04 UTC (rev 215)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-09 22:57:33 UTC (rev 216)
+@@ -5,6 +5,7 @@
+     }
+ 
+     class iurt {
++        include sudo
+ 
+         $home_dir = "/home/buildbot/"
+         $build_login = "buildbot"
+@@ -24,6 +25,14 @@
+             content => template("iurt/iurt.cauldron.conf")
+         }
+ 
++        file { "/etc/sudoers.d/iurt":
++            ensure => present,
++            owner => root,
++            group => root,
++            mode => 600,
++            content => template("iurt/sudoers.iurt")
++        }
++
+         group {"$build_login": 
+             ensure => present,
+         }
+
+Added: puppet/modules/buildsystem/templates/sudoers.iurt
+===================================================================
+--- puppet/modules/buildsystem/templates/sudoers.iurt	                        (rev 0)
++++ puppet/modules/buildsystem/templates/sudoers.iurt	2010-11-09 22:57:33 UTC (rev 216)
+@@ -0,0 +1 @@
++<%= build_login %>	ALL = NOPASSWD: /usr/sbin/iurt_root_command
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101109/81cac381/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000420.html b/zarb-ml/mageia-sysadm/2010-November/000420.html new file mode 100644 index 000000000..1c0212cfd --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000420.html @@ -0,0 +1,85 @@ + + + + [Mageia-sysadm] Puppet Report for ecosse.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for ecosse.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Tue Nov 9 23:59:02 CET 2010 +

+
+ +
Tue Nov 09 23:59:02 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Syntax error at 'managehome'; expected '}' at /etc/puppet/modules/buildsystem/manifests/init.pp:43 on node ecosse.mageia.org
+Tue Nov 09 23:59:02 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000421.html b/zarb-ml/mageia-sysadm/2010-November/000421.html new file mode 100644 index 000000000..b66beb006 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000421.html @@ -0,0 +1,110 @@ + + + + [Mageia-sysadm] [217] fix syntax error + + + + + + + + + +

[Mageia-sysadm] [217] fix syntax error

+ root at mageia.org + root at mageia.org +
+ Wed Nov 10 00:00:28 CET 2010 +

+
+ +
Revision: 217
+Author:   boklm
+Date:     2010-11-10 00:00:28 +0100 (Wed, 10 Nov 2010)
+Log Message:
+-----------
+fix syntax error
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-09 22:57:33 UTC (rev 216)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-09 23:00:28 UTC (rev 217)
+@@ -39,7 +39,7 @@
+ 
+         user {"$build_login":
+             ensure => present,
+-            comment => "System user use to run build bots"    
++            comment => "System user use to run build bots",
+             managehome => true,
+             shell => "/bin/bash",
+         }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101110/88729c66/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000422.html b/zarb-ml/mageia-sysadm/2010-November/000422.html new file mode 100644 index 000000000..c07411a91 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000422.html @@ -0,0 +1,85 @@ + + + + [Mageia-sysadm] Puppet Report for ecosse.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for ecosse.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 10 00:00:38 CET 2010 +

+
+ +
Wed Nov 10 00:00:38 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Could not find template 'iurt/iurt.cauldron.conf' at /etc/puppet/modules/buildsystem/manifests/init.pp:25 on node ecosse.mageia.org
+Wed Nov 10 00:00:38 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000423.html b/zarb-ml/mageia-sysadm/2010-November/000423.html new file mode 100644 index 000000000..a3ad17092 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000423.html @@ -0,0 +1,119 @@ + + + + [Mageia-sysadm] [218] fix path name (iurt module renamed to buildsystem) + + + + + + + + + +

[Mageia-sysadm] [218] fix path name (iurt module renamed to buildsystem)

+ root at mageia.org + root at mageia.org +
+ Wed Nov 10 00:02:34 CET 2010 +

+
+ +
Revision: 218
+Author:   boklm
+Date:     2010-11-10 00:02:34 +0100 (Wed, 10 Nov 2010)
+Log Message:
+-----------
+fix path name (iurt module renamed to buildsystem)
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-09 23:00:28 UTC (rev 217)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-09 23:02:34 UTC (rev 218)
+@@ -22,7 +22,7 @@
+             owner => $build_login,
+             group => $build_login,
+             mode => 644,
+-            content => template("iurt/iurt.cauldron.conf")
++            content => template("buildsystem/iurt.cauldron.conf")
+         }
+ 
+         file { "/etc/sudoers.d/iurt":
+@@ -30,7 +30,7 @@
+             owner => root,
+             group => root,
+             mode => 600,
+-            content => template("iurt/sudoers.iurt")
++            content => template("buildsystem/sudoers.iurt")
+         }
+ 
+         group {"$build_login": 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101110/69419863/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000424.html b/zarb-ml/mageia-sysadm/2010-November/000424.html new file mode 100644 index 000000000..489dc9bb5 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000424.html @@ -0,0 +1,134 @@ + + + + [Mageia-sysadm] [219] fix permissions on sudoers files + + + + + + + + + +

[Mageia-sysadm] [219] fix permissions on sudoers files

+ root at mageia.org + root at mageia.org +
+ Wed Nov 10 00:13:20 CET 2010 +

+
+ +
Revision: 219
+Author:   boklm
+Date:     2010-11-10 00:13:19 +0100 (Wed, 10 Nov 2010)
+Log Message:
+-----------
+fix permissions on sudoers files
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+    puppet/modules/sudo/manifests/init.pp
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-09 23:02:34 UTC (rev 218)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-09 23:13:19 UTC (rev 219)
+@@ -29,7 +29,7 @@
+             ensure => present,
+             owner => root,
+             group => root,
+-            mode => 600,
++            mode => 440,
+             content => template("buildsystem/sudoers.iurt")
+         }
+ 
+
+Modified: puppet/modules/sudo/manifests/init.pp
+===================================================================
+--- puppet/modules/sudo/manifests/init.pp	2010-11-09 23:02:34 UTC (rev 218)
++++ puppet/modules/sudo/manifests/init.pp	2010-11-09 23:13:19 UTC (rev 219)
+@@ -5,7 +5,7 @@
+ 
+     file { "/etc/sudoers.d":
+         ensure => directory,
+-        mode => 700,
++        mode => 711,
+         owner => root,
+         group => root,
+     }
+@@ -14,7 +14,7 @@
+ 	ensure => present,
+ 	owner => root,
+ 	group => root,
+-	mode => 600,
++	mode => 440,
+ 	content => template("sudo/sudoers")
+     }
+ }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101110/eed5a589/attachment-0001.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000425.html b/zarb-ml/mageia-sysadm/2010-November/000425.html new file mode 100644 index 000000000..c9b3efb3d --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000425.html @@ -0,0 +1,144 @@ + + + + [Mageia-sysadm] Usernames, uids, and groups + + + + + + + + + +

[Mageia-sysadm] Usernames, uids, and groups

+ nicolas vigier + boklm at mars-attacks.org +
+ Wed Nov 10 01:01:21 CET 2010 +

+
+ +
On Tue, 09 Nov 2010, Buchan Milne wrote:
+
+> On Monday, 8 November 2010 17:29:24 nicolas vigier wrote:
+> > Hello,
+> 
+> Why a new thread?
+
+I only received your email after creating this thread.
+
+> 
+> > On some machines like the svn server, we need to use pam_ldap to allow
+> > users access with their ldap accounts. But on others servers like
+> > alamut (web services), or the build nodes, normal users have no reason
+> > to login.
+> 
+> But, sysadm members have a reason, and I see no reason to increase their 
+> overhead with local accounts.
+
+Maybe not on alamut, but on build nodes, I don't think user accounts for
+sysadmins will be very useful. The only reason to login to those nodes
+will be to check/fix iurt problems, which requires root permissions.
+
+> > On those servers, do you think we should restrict access with
+> > ssh configuration and a group, or disable pam_ldap completly on those
+> > servers and only use local accounts ?
+> 
+> I was planning for pam_ldap's pam_groupdn option. E.g. a 'sysadm' group.
+> 
+> > We also need to decide what UID ranges we use for local accounts, and for
+> > ldap accounts.
+> > 
+> > And groups. I think we could use the following groups :
+> >  * posix : promotes the user as posixAccount+sshPublicKey (in ldap), and
+> >    allows access to the svn and git using svn+ssh:// and git+ssh://
+> 
+> I think it would be better to try and provide VCS commit access without shell 
+> access. This is easy enough for subversion with mod_dav_svn.
+
+Is there the same for git ?
+But we already need need (restricted) shell access for mdvsys submit.
+
+> 
+> >  * packager : allows commits in packages repository, package submit using
+> >    mdvsys,
+> 
+> How are we submitting to mdvsys? Command-line? API?
+
+With mdvsys, and a restricted shell on valstar allowing access to only
+/usr/share/repsys/create-srpm, svn and git commands.
+
+> 
+> >    additional permissions on bugzilla,
+> 
+> What permissions do packagers need that non-packager committer don't?
+
+Maybe none, I'm not sure.
+
+> >    access to the packages
+> >    maintainers database, etc ...
+> 
+> 
+> >  * web : for members of web team, allows commits in web repository
+> >  * documentation, translator, qa, marketing, etc ... :
+> >  * packagerapprentice, webapprentice, etc ... : for apprentices, with
+> >    more restricted access
+> 
+> This is svn commit but no mdvsys access?
+
+Yes.
+
+> 
+> >  * sysadm : gives admin permissions on all applications
+> 
+> There is 'Account Admin' "system" group in LDAP, which allows any modification 
+> to any users. But, should system administration necessarily mean all access in 
+> all applications?
+
+I think yes, at least for applications managed by sysadmin team.
+
+Nicolas
+
+
+ + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000426.html b/zarb-ml/mageia-sysadm/2010-November/000426.html new file mode 100644 index 000000000..a6fefc4f0 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000426.html @@ -0,0 +1,89 @@ + + + + [Mageia-sysadm] password and puppet + + + + + + + + + +

[Mageia-sysadm] password and puppet

+ Michael Scherer + misc at zarb.org +
+ Fri Nov 5 00:20:05 CET 2010 +

+
+ +
Hi,
+
+as those who carefully read all commit have noted, I have used extlookup
+( as planned ) to store the password outside of svn.
+
+For now, the passwords are in /etc/puppet/extdata/common.csv, on
+valstar. The format is :
+name_of_the_password,password
+
+To get the password, in a puppet manifest, just use :
+
+$password = extlookup('name_of_the_password')
+
+and then use $password in template or in the manifest ( variable from
+the manifest can be used directly in the templates ).
+Look at the catdap module to see how I did it.
+You can also look at
+http://docs.puppetlabs.com/references/2.6.1/function.html#extlookup
+( and on the web ).
+
+The file is read protected by puppet in valstar config.
+ 
+However, there is no back up, and no auditing of change. Therefore, I
+propose to use some private git/svn for this, any idea or remark ?
+
+( I would also suggest to send mail on commit without the diff, as
+knowing we have added a password is not critical, the content is the
+only thing important  ).
+
+WDYT ?
+-- 
+Michael Scherer
+
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000427.html b/zarb-ml/mageia-sysadm/2010-November/000427.html new file mode 100644 index 000000000..cd662b232 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000427.html @@ -0,0 +1,71 @@ + + + + [Mageia-sysadm] password and puppet + + + + + + + + + +

[Mageia-sysadm] password and puppet

+ nicolas vigier + boklm at mars-attacks.org +
+ Wed Nov 10 01:15:50 CET 2010 +

+
+ +
On Fri, 05 Nov 2010, Michael Scherer wrote:
+
+> 
+> The file is read protected by puppet in valstar config.
+>  
+> However, there is no back up, and no auditing of change. Therefore, I
+> propose to use some private git/svn for this, any idea or remark ?
+> 
+> ( I would also suggest to send mail on commit without the diff, as
+> knowing we have added a password is not critical, the content is the
+> only thing important  ).
+> 
+> WDYT ?
+
+This looks like a good idea.
+
+
+ + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000428.html b/zarb-ml/mageia-sysadm/2010-November/000428.html new file mode 100644 index 000000000..be16ebefd --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000428.html @@ -0,0 +1,144 @@ + + + + [Mageia-sysadm] [220] add support for pkgsubmit in restricted shell + + + + + + + + + +

[Mageia-sysadm] [220] add support for pkgsubmit in restricted shell

+ root at mageia.org + root at mageia.org +
+ Wed Nov 10 01:46:54 CET 2010 +

+
+ +
Revision: 220
+Author:   boklm
+Date:     2010-11-10 01:46:53 +0100 (Wed, 10 Nov 2010)
+Log Message:
+-----------
+add support for pkgsubmit in restricted shell
+
+Modified Paths:
+--------------
+    puppet/modules/restrictshell/templates/membersh-conf.pl
+    puppet/modules/restrictshell/templates/sv_membersh.pl
+
+Modified: puppet/modules/restrictshell/templates/membersh-conf.pl
+===================================================================
+--- puppet/modules/restrictshell/templates/membersh-conf.pl	2010-11-09 23:13:19 UTC (rev 219)
++++ puppet/modules/restrictshell/templates/membersh-conf.pl	2010-11-10 00:46:53 UTC (rev 220)
+@@ -11,3 +11,6 @@
+ $bin_rsync = "/usr/bin/rsync";
+ $regexp_rsync = "^rsync --server";
+ $regexp_dir_rsync = "^/.*";
++
++$use_pkgsubmit = "<%= allow_pkgsubmit %>";
++
+
+Modified: puppet/modules/restrictshell/templates/sv_membersh.pl
+===================================================================
+--- puppet/modules/restrictshell/templates/sv_membersh.pl	2010-11-09 23:13:19 UTC (rev 219)
++++ puppet/modules/restrictshell/templates/sv_membersh.pl	2010-11-10 00:46:53 UTC (rev 220)
+@@ -61,6 +61,10 @@
+ our $use_git = "0";
+ our $bin_git = "/usr/bin/git-shell";
+ 
++our $use_pkgsubmit = "0";
++our $regexp_pkgsubmit = "^/usr/share/repsys/create-srpm ";
++our $bin_pkgsubmit = "/usr/share/repsys/create-srpm";
++
+ # Open configuration file
+ if (-e "/etc/membersh-conf.pl") {
+     do "/etc/membersh-conf.pl" or die "System misconfiguration, contact administrators. Exiting";
+@@ -86,6 +90,8 @@
+ # $bin_rsync = "/usr/bin/rsync";
+ # $regexp_rsync = "^rsync --server";
+ # $regexp_dir_rsync = "^(/upload)|(/var/ftp)";
++#
++# $use_pkgsubmit = "1";
+ 
+ 
+ if ($#ARGV == 1 and $ARGV[0] eq "-c") {
+@@ -133,7 +139,12 @@
+ 	
+ 	# Delegate filtering to git-shell
+         exec($bin_git, @ARGV) or die("Failed to exec $bin_git: $!");
++    } elsif ($use_pkgsubmit and 
++	     $ARGV[1] =~ m:$regexp_pkgsubmit:) {
+ 
++	my ($createsrpm, @rest) = split(' ', $ARGV[1]);
++
++	exec($bin_pkgsubmit, @rest) or die("Failed to exec $bin_pkgsubmit: $!");
+     }
+ }
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101110/7ab975ea/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000429.html b/zarb-ml/mageia-sysadm/2010-November/000429.html new file mode 100644 index 000000000..ff25f030f --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000429.html @@ -0,0 +1,107 @@ + + + + [Mageia-sysadm] [221] - do not hardcode the domainname ( for reusability ) + + + + + + + + + +

[Mageia-sysadm] [221] - do not hardcode the domainname ( for reusability )

+ root at mageia.org + root at mageia.org +
+ Wed Nov 10 01:54:29 CET 2010 +

+
+ +
Revision: 221
+Author:   misc
+Date:     2010-11-10 01:54:29 +0100 (Wed, 10 Nov 2010)
+Log Message:
+-----------
+- do not hardcode the domainname ( for reusability )
+
+Modified Paths:
+--------------
+    puppet/modules/bugzilla/templates/localconfig
+
+Modified: puppet/modules/bugzilla/templates/localconfig
+===================================================================
+--- puppet/modules/bugzilla/templates/localconfig	2010-11-10 00:46:53 UTC (rev 220)
++++ puppet/modules/bugzilla/templates/localconfig	2010-11-10 00:54:29 UTC (rev 221)
+@@ -43,7 +43,7 @@
+ $db_driver = 'pg';
+ 
+ # The DNS name of the host that the database server runs on.
+-$db_host = 'pgsql.mageia.org';
++$db_host = 'pgsql.<%= domain %>';
+ 
+ # The name of the database
+ $db_name = 'bugs';
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101110/8539eb7b/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000430.html b/zarb-ml/mageia-sysadm/2010-November/000430.html new file mode 100644 index 000000000..0cde9c38f --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000430.html @@ -0,0 +1,121 @@ + + + + [Mageia-sysadm] [222] - do not store password in clear in the svn + + + + + + + + + +

[Mageia-sysadm] [222] - do not store password in clear in the svn

+ root at mageia.org + root at mageia.org +
+ Wed Nov 10 01:57:44 CET 2010 +

+
+ +
Revision: 222
+Author:   misc
+Date:     2010-11-10 01:57:44 +0100 (Wed, 10 Nov 2010)
+Log Message:
+-----------
+- do not store password in clear in the svn
+
+Modified Paths:
+--------------
+    puppet/modules/bugzilla/manifests/init.pp
+    puppet/modules/bugzilla/templates/localconfig
+
+Modified: puppet/modules/bugzilla/manifests/init.pp
+===================================================================
+--- puppet/modules/bugzilla/manifests/init.pp	2010-11-10 00:54:29 UTC (rev 221)
++++ puppet/modules/bugzilla/manifests/init.pp	2010-11-10 00:57:44 UTC (rev 222)
+@@ -4,6 +4,7 @@
+         ensure => installed;
+     }
+ 
++    $password = extlookup("bugzilla_password")
+     file { '/etc/bugzilla/localconfig':
+         ensure => present,
+         owner => root,
+
+Modified: puppet/modules/bugzilla/templates/localconfig
+===================================================================
+--- puppet/modules/bugzilla/templates/localconfig	2010-11-10 00:54:29 UTC (rev 221)
++++ puppet/modules/bugzilla/templates/localconfig	2010-11-10 00:57:44 UTC (rev 222)
+@@ -56,7 +56,7 @@
+ # If you use apostrophe (') or a backslash (\) in your password, you'll
+ # need to escape it by preceding it with a '\' character. (\') or (\)
+ # (Far simpler just not to use those characters.)
+-$db_pass = 'bugs';
++$db_pass = '<%= password %>';
+ 
+ # Sometimes the database server is running on a non-standard port. If that's
+ # the case for your database server, set this to the port number that your
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101110/6e7596c3/attachment-0001.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000431.html b/zarb-ml/mageia-sysadm/2010-November/000431.html new file mode 100644 index 000000000..46aab75bf --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000431.html @@ -0,0 +1,109 @@ + + + + [Mageia-sysadm] Question about Sympa + + + + + + + + + +

[Mageia-sysadm] Question about Sympa

+ Michael Scherer + misc at zarb.org +
+ Wed Nov 10 02:15:22 CET 2010 +

+
+ +
Le mardi 09 novembre 2010 à 14:56 +0000, Colin Guthrie a écrit :
+> 'Twas brillig, and Olivier Thauvin at 09/11/10 00:41 did gyre and gimble:
+> > * Dexter Morgan (dmorganec at gmail.com) wrote:
+> >> Hello,
+> >>
+> >> in alamut we have sympa 6.0.2, the last version is 6.1.x and contains
+> >> in its changelog "WE STRONGLY SUGGEST YOU TO UPGRADE ANY PREVIOUS
+> >> VERSION TO 6.1.1"
+> >> There is a lot of changes and they looks interesting (
+> >> http://www.sympa.org/distribution/latest-stable/NEWS ).
+> >>
+> >> What do you think about this ? do we only update our sympa to last
+> >> 6.0.x version or do we switch to sympa 6.1.x ?
+> > 
+> > I don't have a rule that work all the time about this.
+> > 
+> > The main question is "what would we update and what is the cost ?".
+> > 
+> > By cost understand: the time to backport it, the problem this new
+> > version can cause and will we be affected by potentials bug fixed by
+> > this version.
+> > 
+> > In doubt, do nothing,  it will still be time to upgrade later.
+> 
+> So those CSS, CSRF, brute force and DoS attack vectors the changelog
+> mentions are nothing to worry about then?
+
+Then we need to issue a security update I guess.
+
+
+-- 
+Michael Scherer
+
+
+ + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000432.html b/zarb-ml/mageia-sysadm/2010-November/000432.html new file mode 100644 index 000000000..95a704034 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000432.html @@ -0,0 +1,112 @@ + + + + [Mageia-sysadm] [223] - add key of thomas, sent by private mail + + + + + + + + + +

[Mageia-sysadm] [223] - add key of thomas, sent by private mail

+ root at mageia.org + root at mageia.org +
+ Wed Nov 10 03:16:19 CET 2010 +

+
+ +
Revision: 223
+Author:   misc
+Date:     2010-11-10 03:16:19 +0100 (Wed, 10 Nov 2010)
+Log Message:
+-----------
+- add key of thomas, sent by private mail
+
+Modified Paths:
+--------------
+    puppet/manifests/common.pp
+
+Modified: puppet/manifests/common.pp
+===================================================================
+--- puppet/manifests/common.pp	2010-11-10 00:57:44 UTC (rev 222)
++++ puppet/manifests/common.pp	2010-11-10 02:16:19 UTC (rev 223)
+@@ -68,8 +68,14 @@
+         user => "root"
+     }
+ 
++    ssh_authorized_key { "ssh key tmb":
++        type => "ssh-dss",
++        key => "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",
++        user => "root"
++    }
+ 
+ 
++
+ }
+ 
+ class urpmi_update {
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101110/a4c75cfb/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000433.html b/zarb-ml/mageia-sysadm/2010-November/000433.html new file mode 100644 index 000000000..5efd59d96 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000433.html @@ -0,0 +1,92 @@ + + + + [Mageia-sysadm] Usernames, uids, and groups + + + + + + + + + +

[Mageia-sysadm] Usernames, uids, and groups

+ Luca Berra + bluca at vodka.it +
+ Wed Nov 10 07:56:58 CET 2010 +

+
+ +
On Wed, Nov 10, 2010 at 01:01:21AM +0100, nicolas vigier wrote:
+>On Tue, 09 Nov 2010, Buchan Milne wrote:
+>> On Monday, 8 November 2010 17:29:24 nicolas vigier wrote:
+>> > On some machines like the svn server, we need to use pam_ldap to allow
+>> > users access with their ldap accounts. But on others servers like
+>> > alamut (web services), or the build nodes, normal users have no reason
+>> > to login.
+>> 
+>> But, sysadm members have a reason, and I see no reason to increase their 
+>> overhead with local accounts.
+>
+>Maybe not on alamut, but on build nodes, I don't think user accounts for
+>sysadmins will be very useful. The only reason to login to those nodes
+>will be to check/fix iurt problems, which requires root permissions.
+i have a couple of doubts with this
+1) root password handling: if you plan to use root account to logon to
+build nodes you have to manage communicating the password securely to
+all people who would need that.
+2) Accountability. No idea in France, but here system administratros
+need to be accounted (*).
+
+for the above reasons i believe it would be better if sysadm use their
+own account to logon and sudo to do maintainance tasks
+
+(*) actually this is not strictly true. it depends on which kind of
+data they handle, but 99% of companies prefer going the stricter way.
+
+L.
+
+-- 
+Luca Berra -- bluca at vodka.it
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000434.html b/zarb-ml/mageia-sysadm/2010-November/000434.html new file mode 100644 index 000000000..c5df4509e --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000434.html @@ -0,0 +1,92 @@ + + + + [Mageia-sysadm] Usernames, uids, and groups + + + + + + + + + +

[Mageia-sysadm] Usernames, uids, and groups

+ nicolas vigier + boklm at mars-attacks.org +
+ Wed Nov 10 11:55:00 CET 2010 +

+
+ +
On Wed, 10 Nov 2010, Luca Berra wrote:
+
+> On Wed, Nov 10, 2010 at 01:01:21AM +0100, nicolas vigier wrote:
+>> On Tue, 09 Nov 2010, Buchan Milne wrote:
+>>> On Monday, 8 November 2010 17:29:24 nicolas vigier wrote:
+>>> > On some machines like the svn server, we need to use pam_ldap to allow
+>>> > users access with their ldap accounts. But on others servers like
+>>> > alamut (web services), or the build nodes, normal users have no reason
+>>> > to login.
+>>>
+>>> But, sysadm members have a reason, and I see no reason to increase their 
+>>> overhead with local accounts.
+>>
+>> Maybe not on alamut, but on build nodes, I don't think user accounts for
+>> sysadmins will be very useful. The only reason to login to those nodes
+>> will be to check/fix iurt problems, which requires root permissions.
+> i have a couple of doubts with this
+> 1) root password handling: if you plan to use root account to logon to
+> build nodes you have to manage communicating the password securely to
+> all people who would need that.
+
+We don't use password, we use ssh keys added to the root account by
+puppet.
+
+> 2) Accountability. No idea in France, but here system administratros
+> need to be accounted (*).
+
+When someone runs "sudo su -" or something equivalent there is no
+accountability on what he did after that.
+
+
+ + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000435.html b/zarb-ml/mageia-sysadm/2010-November/000435.html new file mode 100644 index 000000000..5a692da6e --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000435.html @@ -0,0 +1,122 @@ + + + + [Mageia-sysadm] [224] Add 'nail' on 'blog' and 'mod_php' on 'champagne' + + + + + + + + + +

[Mageia-sysadm] [224] Add 'nail' on 'blog' and 'mod_php' on 'champagne'

+ root at mageia.org + root at mageia.org +
+ Wed Nov 10 11:58:04 CET 2010 +

+
+ +
Revision: 224
+Author:   dams
+Date:     2010-11-10 11:58:04 +0100 (Wed, 10 Nov 2010)
+Log Message:
+-----------
+Add 'nail' on 'blog' and 'mod_php' on 'champagne'
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+    puppet/modules/blog/manifests/init.pp
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-10 02:16:19 UTC (rev 223)
++++ puppet/manifests/nodes.pp	2010-11-10 10:58:04 UTC (rev 224)
+@@ -110,6 +110,7 @@
+ #
+     include default_mageia_server
+     include apache::base
++    include apache::mod_php
+     timezone::timezone { "Europe/Paris": }
+     include blog
+ }
+
+Modified: puppet/modules/blog/manifests/init.pp
+===================================================================
+--- puppet/modules/blog/manifests/init.pp	2010-11-10 02:16:19 UTC (rev 223)
++++ puppet/modules/blog/manifests/init.pp	2010-11-10 10:58:04 UTC (rev 224)
+@@ -4,9 +4,9 @@
+ 	package { 'wget':
+         	ensure => installed
+     	}
+-	#package { 'postfix':
+-        #        ensure => installed
+-        #}
++	package { 'nail':
++                ensure => installed
++        }
+ 	file { "check_new-blog-post":
+         	path => "/usr/local/bin/check_new-blog-post.sh",
+         	ensure => present,
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101110/1df1e2f1/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000436.html b/zarb-ml/mageia-sysadm/2010-November/000436.html new file mode 100644 index 000000000..363c009c2 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000436.html @@ -0,0 +1,78 @@ + + + + [Mageia-sysadm] Puppet Report for champagne.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for champagne.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 10 11:59:27 CET 2010 +

+
+ +
Wed Nov 10 11:59:24 +0100 2010 /Stage[main]/Postfix::Base/Service[postfix]/ensure (err): change from stopped to running failed: Could not start Service[postfix]: Execution of '/sbin/service postfix start' returned 1:  at /etc/puppet/modules/postfix/manifests/init.pp:12
+
+ + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000437.html b/zarb-ml/mageia-sysadm/2010-November/000437.html new file mode 100644 index 000000000..5d942afe6 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000437.html @@ -0,0 +1,78 @@ + + + + [Mageia-sysadm] Puppet Report for champagne.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for champagne.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 10 12:00:03 CET 2010 +

+
+ +
Wed Nov 10 12:00:03 +0100 2010 /Stage[main]/Postfix::Base/Service[postfix]/ensure (err): change from stopped to running failed: Could not start Service[postfix]: Execution of '/sbin/service postfix start' returned 1:  at /etc/puppet/modules/postfix/manifests/init.pp:12
+
+ + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000438.html b/zarb-ml/mageia-sysadm/2010-November/000438.html new file mode 100644 index 000000000..a435cc633 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000438.html @@ -0,0 +1,107 @@ + + + + [Mageia-sysadm] Puppet Report for champagne.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for champagne.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 10 12:01:15 CET 2010 +

+
+ +
Wed Nov 10 12:01:11 +0100 2010 /Stage[main]/Apache::Mod_php/Package[apache-mod_php]/ensure (err): change from absent to present failed: Execution of '/usr/sbin/urpmi --auto apache-mod_php' returned 14: 
+
+    http://mirrors.gandi.net/mandriva/official/2010.0/i586/media/main/release/ccp-0.4.1-3mdv2010.0.noarch.rpm
+        0% of 0 completed, ETA = --:--:--, speed = 0                                   100% of 18531 completed, ETA = --:--:--, speed = 904k                                                                                                     http://mirrors.gandi.net/mandriva/official/2010.0/i586/media/main/updates/php-ctype-5.3.3-0.1mdv2010.0.i586.rpm
+        0% of 0 completed, ETA = --:--:--, speed = 0                                   0% of 0 completed, ETA = --:--:--, speed = 0                                                                                                              http://mirrors.gandi.net/mandriva/official/2010.0/i586/media/main/updates/php-session-5.3.3-0.1mdv2010.0.i586.rpm
+...retrieving failed: curl: (22) The requested URL returned error: 404
+        0% of 0 completed, ETA = --:--:--, speed = 0                                                                                                              http://mirrors.gandi.net/mandriva/official/2010.0/i586/media/main/updates/php-dom-5.3.3-0.1mdv2010.0.i586.rpm
+...retrieving failed: curl: (22) The requested URL returned error: 404
+        0% of 0 completed, ETA = --:--:--, speed = 0                                                                                                              http://mirrors.gandi.net/mandriva/official/2010.0/i586/media/main/updates/php-hash-5.3.3-0.1mdv2010.0.i586.rpm
+...retrieving failed: curl: (22) The requested URL returned error: 404
+        0% of 0 completed, ETA = --:--:--, speed = 0                                                                                                              http://mirrors.gandi.net/mandriva/official/2010.0/i586/media/main/updates/libphp5_common5-5.3.3-0.1mdv2010.0.i586.rpm
+...retrieving failed: curl: (22) The requested URL returned error: 404
+        0% of 0 completed, ETA = --:--:--, speed = 0                                                                                                              http://mirrors.gandi.net/mandriva/official/2010.0/i586/media/main/updates/php-timezonedb-2010.9-0.3mdv2010.0.i586.rpm
+...retrieving failed: curl: (22) The requested URL returned error: 404
+        100% of 61952 completed, ETA = --:--:--, speed = 2242k                                                                                                    http://mirrors.gandi.net/mandriva/official/2010.0/i586/media/main/updates/php-posix-5.3.3-0.1mdv2010.0.i586.rpm
+        0% of 61952 completed, ETA = --:--:--, speed = 0                                                                                                          
+...retrieving failed: curl: (22) The requested URL returned error: 404
+...retrieving failed: curl failed: exited with 22
+
+Installation failed, some files are missing:
+    http://mirrors.gandi.net/mandriva/official/2010.0/i586/media/main/updates/php-ctype-5.3.3-0.1mdv2010.0.i586.rpm
+    http://mirrors.gandi.net/mandriva/official/2010.0/i586/media/main/updates/php-session-5.3.3-0.1mdv2010.0.i586.rpm
+    http://mirrors.gandi.net/mandriva/official/2010.0/i586/media/main/updates/php-dom-5.3.3-0.1mdv2010.0.i586.rpm
+    http://mirrors.gandi.net/mandriva/official/2010.0/i586/media/main/updates/php-hash-5.3.3-0.1mdv2010.0.i586.rpm
+    http://mirrors.gandi.net/mandriva/official/2010.0/i586/media/main/updates/libphp5_common5-5.3.3-0.1mdv2010.0.i586.rpm
+    http://mirrors.gandi.net/mandriva/official/2010.0/i586/media/main/updates/php-timezonedb-2010.9-0.3mdv2010.0.i586.rpm
+    http://mirrors.gandi.net/mandriva/official/2010.0/i586/media/main/updates/php-posix-5.3.3-0.1mdv2010.0.i586.rpm
+You may need to update your urpmi database.
+
+Wed Nov 10 12:01:13 +0100 2010 /Stage[main]/Postfix::Base/Service[postfix]/ensure (err): change from stopped to running failed: Could not start Service[postfix]: Execution of '/sbin/service postfix start' returned 1:  at /etc/puppet/modules/postfix/manifests/init.pp:12
+
+ + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000439.html b/zarb-ml/mageia-sysadm/2010-November/000439.html new file mode 100644 index 000000000..75235c595 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000439.html @@ -0,0 +1,78 @@ + + + + [Mageia-sysadm] Puppet Report for champagne.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for champagne.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 10 12:03:11 CET 2010 +

+
+ +
Wed Nov 10 12:02:28 +0100 2010 /Stage[main]/Postfix::Base/Service[postfix]/ensure (err): change from stopped to running failed: Could not start Service[postfix]: Execution of '/sbin/service postfix start' returned 1:  at /etc/puppet/modules/postfix/manifests/init.pp:12
+
+ + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000440.html b/zarb-ml/mageia-sysadm/2010-November/000440.html new file mode 100644 index 000000000..42c9e477c --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000440.html @@ -0,0 +1,79 @@ + + + + [Mageia-sysadm] Puppet Report for champagne.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for champagne.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 10 12:06:34 CET 2010 +

+
+ +
Wed Nov 10 12:06:34 +0100 2010 /Stage[main]/Postfix::Base/Service[postfix]/ensure (err): change from stopped to running failed: Could not start Service[postfix]: Execution of '/sbin/service postfix start' returned 1:  at /etc/puppet/modules/postfix/manifests/init.pp:12
+
+ + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000441.html b/zarb-ml/mageia-sysadm/2010-November/000441.html new file mode 100644 index 000000000..9435800d8 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000441.html @@ -0,0 +1,123 @@ + + + + [Mageia-sysadm] [225] Remove 'nail' on 'blog' and add 'mailx' on 'postfix' + + + + + + + + + +

[Mageia-sysadm] [225] Remove 'nail' on 'blog' and add 'mailx' on 'postfix'

+ root at mageia.org + root at mageia.org +
+ Wed Nov 10 12:13:46 CET 2010 +

+
+ +
Revision: 225
+Author:   dams
+Date:     2010-11-10 12:13:45 +0100 (Wed, 10 Nov 2010)
+Log Message:
+-----------
+Remove 'nail' on 'blog' and add 'mailx' on 'postfix'
+
+Modified Paths:
+--------------
+    puppet/modules/blog/manifests/init.pp
+    puppet/modules/postfix/manifests/init.pp
+
+Modified: puppet/modules/blog/manifests/init.pp
+===================================================================
+--- puppet/modules/blog/manifests/init.pp	2010-11-10 10:58:04 UTC (rev 224)
++++ puppet/modules/blog/manifests/init.pp	2010-11-10 11:13:45 UTC (rev 225)
+@@ -4,9 +4,6 @@
+ 	package { 'wget':
+         	ensure => installed
+     	}
+-	package { 'nail':
+-                ensure => installed
+-        }
+ 	file { "check_new-blog-post":
+         	path => "/usr/local/bin/check_new-blog-post.sh",
+         	ensure => present,
+
+Modified: puppet/modules/postfix/manifests/init.pp
+===================================================================
+--- puppet/modules/postfix/manifests/init.pp	2010-11-10 10:58:04 UTC (rev 224)
++++ puppet/modules/postfix/manifests/init.pp	2010-11-10 11:13:45 UTC (rev 225)
+@@ -4,7 +4,9 @@
+         package { postfix:
+             ensure => installed
+         }
+-
++	package { 'mailx':
++                ensure => installed
++        }
+         service { postfix:
+             ensure => running,
+             subscribe => [ Package['postfix']],
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101110/47746b65/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000442.html b/zarb-ml/mageia-sysadm/2010-November/000442.html new file mode 100644 index 000000000..93fa5261b --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000442.html @@ -0,0 +1,79 @@ + + + + [Mageia-sysadm] Puppet Report for champagne.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for champagne.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 10 12:15:17 CET 2010 +

+
+ +
Wed Nov 10 12:15:16 +0100 2010 /Stage[main]/Postfix::Base/Package[mailx]/ensure (err): change from absent to present failed: Could not find package mailx
+
+ + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000443.html b/zarb-ml/mageia-sysadm/2010-November/000443.html new file mode 100644 index 000000000..ef1b4376c --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000443.html @@ -0,0 +1,79 @@ + + + + [Mageia-sysadm] Puppet Report for champagne.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for champagne.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 10 12:15:44 CET 2010 +

+
+ +
Wed Nov 10 12:15:43 +0100 2010 /Stage[main]/Postfix::Base/Package[mailx]/ensure (err): change from absent to present failed: Could not find package mailx
+
+ + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000444.html b/zarb-ml/mageia-sysadm/2010-November/000444.html new file mode 100644 index 000000000..4842a8c9b --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000444.html @@ -0,0 +1,79 @@ + + + + [Mageia-sysadm] Puppet Report for champagne.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for champagne.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 10 12:16:22 CET 2010 +

+
+ +
Wed Nov 10 12:16:22 +0100 2010 /Stage[main]/Postfix::Base/Package[mailx]/ensure (err): change from absent to present failed: Could not find package mailx
+
+ + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000445.html b/zarb-ml/mageia-sysadm/2010-November/000445.html new file mode 100644 index 000000000..9d86752e2 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000445.html @@ -0,0 +1,105 @@ + + + + [Mageia-sysadm] [226] Change 'mailx' for 'nail' + + + + + + + + + +

[Mageia-sysadm] [226] Change 'mailx' for 'nail'

+ root at mageia.org + root at mageia.org +
+ Wed Nov 10 12:17:07 CET 2010 +

+
+ +
Revision: 226
+Author:   dams
+Date:     2010-11-10 12:17:07 +0100 (Wed, 10 Nov 2010)
+Log Message:
+-----------
+Change 'mailx' for 'nail'
+
+Modified Paths:
+--------------
+    puppet/modules/postfix/manifests/init.pp
+
+Modified: puppet/modules/postfix/manifests/init.pp
+===================================================================
+--- puppet/modules/postfix/manifests/init.pp	2010-11-10 11:13:45 UTC (rev 225)
++++ puppet/modules/postfix/manifests/init.pp	2010-11-10 11:17:07 UTC (rev 226)
+@@ -4,7 +4,7 @@
+         package { postfix:
+             ensure => installed
+         }
+-	package { 'mailx':
++	package { 'nail':
+                 ensure => installed
+         }
+         service { postfix:
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101110/0b26c8a4/attachment-0001.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000446.html b/zarb-ml/mageia-sysadm/2010-November/000446.html new file mode 100644 index 000000000..e5ef6547f --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000446.html @@ -0,0 +1,79 @@ + + + + [Mageia-sysadm] Puppet Report for champagne.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for champagne.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 10 12:17:47 CET 2010 +

+
+ +
Wed Nov 10 12:17:47 +0100 2010 /Stage[main]/Postfix::Base/Package[mailx]/ensure (err): change from absent to present failed: Could not find package mailx
+
+ + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000447.html b/zarb-ml/mageia-sysadm/2010-November/000447.html new file mode 100644 index 000000000..6e48bd100 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000447.html @@ -0,0 +1,79 @@ + + + + [Mageia-sysadm] Puppet Report for champagne.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for champagne.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 10 12:18:06 CET 2010 +

+
+ +
Wed Nov 10 12:18:06 +0100 2010 /Stage[main]/Postfix::Base/Package[mailx]/ensure (err): change from absent to present failed: Could not find package mailx
+
+ + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000448.html b/zarb-ml/mageia-sysadm/2010-November/000448.html new file mode 100644 index 000000000..a74a3e41b --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000448.html @@ -0,0 +1,79 @@ + + + + [Mageia-sysadm] Puppet Report for champagne.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for champagne.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 10 12:18:24 CET 2010 +

+
+ +
Wed Nov 10 12:18:24 +0100 2010 /Stage[main]/Postfix::Base/Package[mailx]/ensure (err): change from absent to present failed: Could not find package mailx
+
+ + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000449.html b/zarb-ml/mageia-sysadm/2010-November/000449.html new file mode 100644 index 000000000..746bbc7ff --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000449.html @@ -0,0 +1,79 @@ + + + + [Mageia-sysadm] Puppet Report for champagne.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for champagne.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 10 12:19:19 CET 2010 +

+
+ +
Wed Nov 10 12:19:19 +0100 2010 /Stage[main]/Postfix::Base/Package[mailx]/ensure (err): change from absent to present failed: Could not find package mailx
+
+ + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000450.html b/zarb-ml/mageia-sysadm/2010-November/000450.html new file mode 100644 index 000000000..ac41e9805 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000450.html @@ -0,0 +1,79 @@ + + + + [Mageia-sysadm] Puppet Report for champagne.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for champagne.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 10 12:19:46 CET 2010 +

+
+ +
Wed Nov 10 12:19:45 +0100 2010 /Stage[main]/Postfix::Base/Package[mailx]/ensure (err): change from absent to present failed: Could not find package mailx
+
+ + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000451.html b/zarb-ml/mageia-sysadm/2010-November/000451.html new file mode 100644 index 000000000..79fe0cc79 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000451.html @@ -0,0 +1,93 @@ + + + + [Mageia-sysadm] Puppet Report for champagne.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for champagne.mageia.org

+ nicolas vigier + boklm at mars-attacks.org +
+ Wed Nov 10 12:22:55 CET 2010 +

+
+ +
On Wed, 10 Nov 2010, report at valstar.mageia.org wrote:
+
+> Wed Nov 10 12:06:34 +0100 2010 /Stage[main]/Postfix::Base/Service[postfix]/ensure (err): change from stopped to running failed: Could not start Service[postfix]: Execution of '/sbin/service postfix start' returned 1:  at /etc/puppet/modules/postfix/manifests/init.pp:12
+
+The problem was that /etc/hosts didn't contain localhost, which
+prevented postfix from starting.
+
+I don't know what removed it. This was the content of the hosts file :
+
+n217.70.188.116	web1
+
+n217.70.188.116	web1
+
+
+# --- Gandi DHCP Script ---
+# --- End ---
+
+
+ + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000452.html b/zarb-ml/mageia-sysadm/2010-November/000452.html new file mode 100644 index 000000000..d00c7e92b --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000452.html @@ -0,0 +1,105 @@ + + + + [Mageia-sysadm] [227] Change 'urpmi.update -a' to be done all the 4 hours + + + + + + + + + +

[Mageia-sysadm] [227] Change 'urpmi.update -a' to be done all the 4 hours

+ root at mageia.org + root at mageia.org +
+ Wed Nov 10 12:23:10 CET 2010 +

+
+ +
Revision: 227
+Author:   dams
+Date:     2010-11-10 12:23:09 +0100 (Wed, 10 Nov 2010)
+Log Message:
+-----------
+Change 'urpmi.update -a' to be done all the 4 hours
+
+Modified Paths:
+--------------
+    puppet/manifests/common.pp
+
+Modified: puppet/manifests/common.pp
+===================================================================
+--- puppet/manifests/common.pp	2010-11-10 11:17:07 UTC (rev 226)
++++ puppet/manifests/common.pp	2010-11-10 11:23:09 UTC (rev 227)
+@@ -81,8 +81,7 @@
+ class urpmi_update {
+     cron { urpmi_update:
+         user => root,
+-        hour => 3,
+-        minute => 14,
++        hour => 4,
+         command => "urpmi.update -a",
+     }
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101110/c817c59c/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000453.html b/zarb-ml/mageia-sysadm/2010-November/000453.html new file mode 100644 index 000000000..f946c0cbe --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000453.html @@ -0,0 +1,103 @@ + + + + [Mageia-sysadm] [228] Fix for the 'minutes' of 'urpmi.update -a' on already installed cron + + + + + + + + + +

[Mageia-sysadm] [228] Fix for the 'minutes' of 'urpmi.update -a' on already installed cron

+ root at mageia.org + root at mageia.org +
+ Wed Nov 10 12:26:55 CET 2010 +

+
+ +
Revision: 228
+Author:   dams
+Date:     2010-11-10 12:26:55 +0100 (Wed, 10 Nov 2010)
+Log Message:
+-----------
+Fix for the 'minutes' of 'urpmi.update -a' on already installed cron
+
+Modified Paths:
+--------------
+    puppet/manifests/common.pp
+
+Modified: puppet/manifests/common.pp
+===================================================================
+--- puppet/manifests/common.pp	2010-11-10 11:23:09 UTC (rev 227)
++++ puppet/manifests/common.pp	2010-11-10 11:26:55 UTC (rev 228)
+@@ -82,6 +82,7 @@
+     cron { urpmi_update:
+         user => root,
+         hour => 4,
++	minute => *,
+         command => "urpmi.update -a",
+     }
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101110/4d2aea30/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000454.html b/zarb-ml/mageia-sysadm/2010-November/000454.html new file mode 100644 index 000000000..321da8b55 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000454.html @@ -0,0 +1,78 @@ + + + + [Mageia-sysadm] Puppet Report for champagne.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for champagne.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 10 12:30:06 CET 2010 +

+
+ +
Wed Nov 10 12:30:06 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Could not parse for environment production: Syntax error at '*'; expected '}' at /etc/puppet/manifests/common.pp:85 on node champagne.mageia.org
+
+ + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000455.html b/zarb-ml/mageia-sysadm/2010-November/000455.html new file mode 100644 index 000000000..926ce2d6a --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000455.html @@ -0,0 +1,106 @@ + + + + [Mageia-sysadm] [229] Fix the crontab for 'urpmi.update -a' + + + + + + + + + +

[Mageia-sysadm] [229] Fix the crontab for 'urpmi.update -a'

+ root at mageia.org + root at mageia.org +
+ Wed Nov 10 12:37:11 CET 2010 +

+
+ +
Revision: 229
+Author:   dams
+Date:     2010-11-10 12:37:10 +0100 (Wed, 10 Nov 2010)
+Log Message:
+-----------
+Fix the crontab for 'urpmi.update -a'
+
+Modified Paths:
+--------------
+    puppet/manifests/common.pp
+
+Modified: puppet/manifests/common.pp
+===================================================================
+--- puppet/manifests/common.pp	2010-11-10 11:26:55 UTC (rev 228)
++++ puppet/manifests/common.pp	2010-11-10 11:37:10 UTC (rev 229)
+@@ -81,8 +81,8 @@
+ class urpmi_update {
+     cron { urpmi_update:
+         user => root,
+-        hour => 4,
+-	minute => *,
++        hour => */4,
++	minute => 0,
+         command => "urpmi.update -a",
+     }
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101110/115aac46/attachment-0001.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000456.html b/zarb-ml/mageia-sysadm/2010-November/000456.html new file mode 100644 index 000000000..e261bac44 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000456.html @@ -0,0 +1,78 @@ + + + + [Mageia-sysadm] Puppet Report for champagne.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for champagne.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 10 12:40:20 CET 2010 +

+
+ +
Wed Nov 10 12:40:19 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Could not parse for environment production: Syntax error at '*'; expected '}' at /etc/puppet/manifests/common.pp:84 on node champagne.mageia.org
+
+ + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000457.html b/zarb-ml/mageia-sysadm/2010-November/000457.html new file mode 100644 index 000000000..de016be5a --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000457.html @@ -0,0 +1,82 @@ + + + + [Mageia-sysadm] Usernames, uids, and groups + + + + + + + + + +

[Mageia-sysadm] Usernames, uids, and groups

+ Michael Scherer + misc at zarb.org +
+ Wed Nov 10 13:32:47 CET 2010 +

+
+ +
Le mercredi 10 novembre 2010 à 11:55 +0100, nicolas vigier a écrit :
+> On Wed, 10 Nov 2010, Luca Berra wrote:
+>
+> > 2) Accountability. No idea in France, but here system administratros
+> > need to be accounted (*).
+> 
+> When someone runs "sudo su -" or something equivalent there is no
+> accountability on what he did after that.
+
+Even more cunning, emacs or vim can run process ( except that vim has a
+mode where it can prevent it with -Z, do not know for emacs ).
+
+-- 
+Michael Scherer
+
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000458.html b/zarb-ml/mageia-sysadm/2010-November/000458.html new file mode 100644 index 000000000..6fe63266e --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000458.html @@ -0,0 +1,93 @@ + + + + [Mageia-sysadm] Changes to the svn + + + + + + + + + +

[Mageia-sysadm] Changes to the svn

+ Michael Scherer + misc at zarb.org +
+ Wed Nov 10 13:43:14 CET 2010 +

+
+ +
Hi,
+
+I forgot to mail that I have added a pre-commit check for puppet file
+syntax. While on it, I have added a check to prevent root from
+committing, and to avoid empty message logs.
+
+I am currently testing the same feature for erb templates on a private
+puppet deployment, and so will likely later add it once it had enough
+testing from me. I am also pondering about easing the deployment of such
+scripts for others repositories, along with tests for php, perl, python,
+and maybe also test for dns zone, openldap, etc syntax ( and no test for
+tt catalyst templates, unfortunately  ).
+
+-- 
+Michael Scherer
+
+
+ + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000459.html b/zarb-ml/mageia-sysadm/2010-November/000459.html new file mode 100644 index 000000000..653d5886c --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000459.html @@ -0,0 +1,79 @@ + + + + [Mageia-sysadm] Puppet Report for valstar.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for valstar.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 10 13:44:30 CET 2010 +

+
+ +
Wed Nov 10 13:44:30 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Could not parse for environment production: Syntax error at '*'; expected '}' at /etc/puppet/manifests/common.pp:84 on node valstar.mageia.org
+
+ + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000460.html b/zarb-ml/mageia-sysadm/2010-November/000460.html new file mode 100644 index 000000000..cbe3206d3 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000460.html @@ -0,0 +1,119 @@ + + + + [Mageia-sysadm] [230] - fix the cronjob + + + + + + + + + +

[Mageia-sysadm] [230] - fix the cronjob

+ root at mageia.org + root at mageia.org +
+ Wed Nov 10 13:46:50 CET 2010 +

+
+ +
Revision: 230
+Author:   misc
+Date:     2010-11-10 13:46:49 +0100 (Wed, 10 Nov 2010)
+Log Message:
+-----------
+- fix the cronjob 
+- some whitespace fix
+
+Modified Paths:
+--------------
+    puppet/manifests/common.pp
+
+Modified: puppet/manifests/common.pp
+===================================================================
+--- puppet/manifests/common.pp	2010-11-10 11:37:10 UTC (rev 229)
++++ puppet/manifests/common.pp	2010-11-10 12:46:49 UTC (rev 230)
+@@ -73,19 +73,15 @@
+         key => "AAAAB3NzaC1kc3MAAACBAMFaCUsen6ZYH8hsjGK0tlaguduw4YT2KD3TaDEK24ltKzvQ+NDiPRms1zPhTpRL0p0U5QVdIMxm/asAtuiMLMxdmU+Crry6s110mKKY2930ZEk6N4YJ4DbqSiYe2JBmpJVIEJ6Betgn7yZRR2mRM7j134PddAl8BGG+RUvzib7JAAAAFQDzu/G2R+6oe3vjIbbFpOTyR3PAbwAAAIEAmqXAGybY9CVgGChSztPEdvaZ1xOVGJtmxmlWvitWGpu8m5JBf57VhzdpT4Fsf4fiVZ7NWiwPm1DzqNX7xCH7IPLPK0jQSd937xG9Un584CguNB76aEQXv0Yl5VjOrC3DggIEfZ1KLV7GcpOukw0RerxKz99rYAThp6+qzBIrv38AAACBAKhXi7uNlajescWFjiCZ3fpnxdyGAgtKzvlz60mGKwwNyaQCVmPSmYeBI2tg1qk+0I5K6LZUxWkdhuE1UfvAbIrEdwyD8p53dPg1J9DpdQ1KqApeKqLxO02KJtfomuy3cRQXmdfOTovYN7zAu1NCp51uUNTzhIpDHx0MZ6bsWSFv",
+         user => "root"
+     }
+-
+-
+-
+ }
+ 
+ class urpmi_update {
+     cron { urpmi_update:
+         user => root,
+-        hour => */4,
+-	minute => 0,
++        hour => '*/4',
++        minute => 0,
+         command => "urpmi.update -a",
+     }
+-
+ }
+ 
+ class default_mageia_server {
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101110/7f6c3256/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000461.html b/zarb-ml/mageia-sysadm/2010-November/000461.html new file mode 100644 index 000000000..078bad46a --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000461.html @@ -0,0 +1,79 @@ + + + + [Mageia-sysadm] Puppet Report for valstar.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for valstar.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 10 13:47:17 CET 2010 +

+
+ +
Wed Nov 10 13:47:17 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Could not parse for environment production: Syntax error at '*'; expected '}' at /etc/puppet/manifests/common.pp:84 on node valstar.mageia.org
+
+ + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000462.html b/zarb-ml/mageia-sysadm/2010-November/000462.html new file mode 100644 index 000000000..5de9a1401 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000462.html @@ -0,0 +1,87 @@ + + + + [Mageia-sysadm] Changes to the svn + + + + + + + + + +

[Mageia-sysadm] Changes to the svn

+ nicolas vigier + boklm at mars-attacks.org +
+ Wed Nov 10 13:50:59 CET 2010 +

+
+ +
On Wed, 10 Nov 2010, Michael Scherer wrote:
+
+> Hi,
+> 
+> I forgot to mail that I have added a pre-commit check for puppet file
+> syntax. While on it, I have added a check to prevent root from
+> committing, and to avoid empty message logs.
+
+Good !
+Is it planned to add them to puppet ?
+
+
+ + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000463.html b/zarb-ml/mageia-sysadm/2010-November/000463.html new file mode 100644 index 000000000..7b8cbcf31 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000463.html @@ -0,0 +1,93 @@ + + + + [Mageia-sysadm] Changes to the svn + + + + + + + + + +

[Mageia-sysadm] Changes to the svn

+ Michael Scherer + misc at zarb.org +
+ Wed Nov 10 13:55:20 CET 2010 +

+
+ +
Le mercredi 10 novembre 2010 à 13:50 +0100, nicolas vigier a écrit :
+> On Wed, 10 Nov 2010, Michael Scherer wrote:
+> 
+> > Hi,
+> > 
+> > I forgot to mail that I have added a pre-commit check for puppet file
+> > syntax. While on it, I have added a check to prevent root from
+> > committing, and to avoid empty message logs.
+> 
+> Good !
+> Is it planned to add them to puppet ?
+
+Yup, except I do not see how it could be done in a elegant way.
+( ie, declare the svn repository in puppet, and then link the needed
+script to the proper directory ).
+-- 
+Michael Scherer
+
+
+ + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000464.html b/zarb-ml/mageia-sysadm/2010-November/000464.html new file mode 100644 index 000000000..c1eda4b20 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000464.html @@ -0,0 +1,118 @@ + + + + [Mageia-sysadm] [122] apply patch from blino to use config file from /etc/iurt + + + + + + + + + +

[Mageia-sysadm] [122] apply patch from blino to use config file from /etc/iurt

+ root at mageia.org + root at mageia.org +
+ Wed Nov 10 13:58:50 CET 2010 +

+
+ +
Revision: 122
+Author:   boklm
+Date:     2010-11-10 13:58:50 +0100 (Wed, 10 Nov 2010)
+Log Message:
+-----------
+apply patch from blino to use config file from /etc/iurt
+
+Modified Paths:
+--------------
+    build_system/iurt/trunk/iurt2
+
+Modified: build_system/iurt/trunk/iurt2
+===================================================================
+--- build_system/iurt/trunk/iurt2	2010-11-08 15:30:29 UTC (rev 121)
++++ build_system/iurt/trunk/iurt2	2010-11-10 12:58:50 UTC (rev 122)
+@@ -388,14 +388,16 @@
+ chomp $real_arch;
+ my $HOME = $ENV{HOME};
+ my $configfile = "$HOME/.iurt.$run{distro_tag}.conf";
++my $sysconfigfile = "/etc/iurt/$run{distro_tag}.conf";
+ 
+-plog('DEBUG', "load config: $configfile");
+-my $config;
+-if (-f $configfile) {
+-    $config = eval(cat_($configfile))
+-	or die "FATAL $program_name: syntax error in $configfile";
+-} else {
+-    $config = {};
++my $config = {};
++foreach my $f ($configfile, $sysconfigfile) {
++    plog('DEBUG', "load config: $f");
++    if (-f $f) {
++        $config = eval(cat_($f))
++          or die "FATAL $program_name: syntax error in $f";
++        last;
++    }
+ }
+ 
+ if ($run{repository}) {
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101110/6bad3d22/attachment-0001.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000465.html b/zarb-ml/mageia-sysadm/2010-November/000465.html new file mode 100644 index 000000000..dd02892d1 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000465.html @@ -0,0 +1,165 @@ + + + + [Mageia-sysadm] Usernames, uids, and groups + + + + + + + + + +

[Mageia-sysadm] Usernames, uids, and groups

+ Buchan Milne + bgmilne at multilinks.com +
+ Wed Nov 10 10:10:18 CET 2010 +

+
+ +
On Wednesday, 10 November 2010 01:01:21 nicolas vigier wrote:
+> On Tue, 09 Nov 2010, Buchan Milne wrote:
+> > On Monday, 8 November 2010 17:29:24 nicolas vigier wrote:
+
+> > > On some machines like the svn server, we need to use pam_ldap to allow
+> > > users access with their ldap accounts. But on others servers like
+> > > alamut (web services), or the build nodes, normal users have no reason
+> > > to login.
+> > 
+> > But, sysadm members have a reason, and I see no reason to increase their
+> > overhead with local accounts.
+> 
+> Maybe not on alamut, but on build nodes, I don't think user accounts for
+> sysadmins will be very useful. The only reason to login to those nodes
+> will be to check/fix iurt problems, which requires root permissions.
+
+Root privileges, and how a user logs in, are different things.
+
+IMHO, the only time a sysadmin should log in directly as root is to fix a 
+problem that is preventing authentication from working (e.g. problem booting, 
+bringing network up, fixing name resolution etc. etc.).
+
+> > > On those servers, do you think we should restrict access with
+> > > ssh configuration and a group, or disable pam_ldap completly on those
+> > > servers and only use local accounts ?
+> > 
+> > I was planning for pam_ldap's pam_groupdn option. E.g. a 'sysadm' group.
+> > 
+> > > We also need to decide what UID ranges we use for local accounts, and
+> > > for ldap accounts.
+> > > 
+> > > And groups. I think we could use the following groups :
+> > >  * posix : promotes the user as posixAccount+sshPublicKey (in ldap),
+> > >  and
+> > >  
+> > >    allows access to the svn and git using svn+ssh:// and git+ssh://
+> > 
+> > I think it would be better to try and provide VCS commit access without
+> > shell access. This is easy enough for subversion with mod_dav_svn.
+> 
+> Is there the same for git ?
+
+Not really. AFAIU, the model for git is that there should be no such thing as 
+authorization ...
+
+> But we already need need (restricted) shell access for mdvsys submit.
+
+Why? In the original repsys model, a request to "build pkg foo rXXXX for 
+release Y" was all that was required. While I agree it may be quicker to go 
+with mdvsys/iurt etc. now, why should submission require shell access? AFAIK, 
+other similar tools (koji, OBS) don't.
+
+> > >  * packager : allows commits in packages repository, package submit
+> > >  using
+> > >  
+> > >    mdvsys,
+> > 
+> > How are we submitting to mdvsys? Command-line? API?
+> 
+> With mdvsys, and a restricted shell on valstar allowing access to only
+> /usr/share/repsys/create-srpm, svn and git commands.
+> 
+> > >    additional permissions on bugzilla,
+> > 
+> > What permissions do packagers need that non-packager committer don't?
+> 
+> Maybe none, I'm not sure.
+> 
+> > >    access to the packages
+> > >    maintainers database, etc ...
+> > >  
+> > >  * web : for members of web team, allows commits in web repository
+> > >  * documentation, translator, qa, marketing, etc ... :
+> > >  * packagerapprentice, webapprentice, etc ... : for apprentices, with
+> > >  
+> > >    more restricted access
+> > 
+> > This is svn commit but no mdvsys access?
+> 
+> Yes.
+> 
+> > >  * sysadm : gives admin permissions on all applications
+> > 
+> > There is 'Account Admin' "system" group in LDAP, which allows any
+> > modification to any users. But, should system administration necessarily
+> > mean all access in all applications?
+> 
+> I think yes, at least for applications managed by sysadmin team.
+
+From a security/governance perspective, this would normally not be a good 
+idea, as powers should be separated ...
+
+Regards,
+Buchan
+
+ + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000466.html b/zarb-ml/mageia-sysadm/2010-November/000466.html new file mode 100644 index 000000000..54829960b --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000466.html @@ -0,0 +1,106 @@ + + + + [Mageia-sysadm] [211] - replace hardcoded domain by a variable, to ease reuse of the module + + + + + + + + + +

[Mageia-sysadm] [211] - replace hardcoded domain by a variable, to ease reuse of the module

+ Buchan Milne + bgmilne at multilinks.com +
+ Tue Nov 9 14:35:50 CET 2010 +

+
+ +
On Tuesday, 9 November 2010 03:21:57 root at mageia.org wrote:
+> Revision: 211
+> Author:   misc
+> Date:     2010-11-09 03:21:57 +0100 (Tue, 09 Nov 2010)
+> Log Message:
+> -----------
+> - replace hardcoded domain by a variable, to ease reuse of the module
+> 
+> Modified Paths:
+> --------------
+>     puppet/modules/openldap/templates/slapd.conf
+> 
+> Modified: puppet/modules/openldap/templates/slapd.conf
+> ===================================================================
+> --- puppet/modules/openldap/templates/slapd.conf	2010-11-08 23:18:50 
+UTC
+> (rev 210) +++ puppet/modules/openldap/templates/slapd.conf	2010-11-09
+> 02:21:57 UTC (rev 211) @@ -1,3 +1,9 @@
+
+There is also mandriva-dit-access.conf, but doing this more or less reverts it 
+to the file delivered with openldap-mandriva-dit, except for the local 
+modifications to:
+1. provide registrar with minimal write access
+2. disable anon access
+3. put back some access that previously relied on "by * read" which maybe 
+should not be "by users read".
+
+Since (2) and (3) are generally useful, and (1) could probably be done with a 
+separate include file specific to mageia, maybe openldap-mandriva-dit should 
+deliver a puppet template file, which may be useful more generally?
+
+Regards,
+Buchan
+
+ + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000467.html b/zarb-ml/mageia-sysadm/2010-November/000467.html new file mode 100644 index 000000000..b54dabe2d --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000467.html @@ -0,0 +1,127 @@ + + + + [Mageia-sysadm] [231] Add mysql + + + + + + + + + +

[Mageia-sysadm] [231] Add mysql

+ root at mageia.org + root at mageia.org +
+ Wed Nov 10 15:00:37 CET 2010 +

+
+ +
Revision: 231
+Author:   dams
+Date:     2010-11-10 15:00:36 +0100 (Wed, 10 Nov 2010)
+Log Message:
+-----------
+Add mysql
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+
+Added Paths:
+-----------
+    puppet/modules/mysql/
+    puppet/modules/mysql/manifests/
+    puppet/modules/mysql/manifests/init.pp
+    puppet/modules/mysql/templates/
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-10 12:46:49 UTC (rev 230)
++++ puppet/manifests/nodes.pp	2010-11-10 14:00:36 UTC (rev 231)
+@@ -111,6 +111,7 @@
+     include default_mageia_server
+     include apache::base
+     include apache::mod_php
++    include mysql
+     timezone::timezone { "Europe/Paris": }
+     include blog
+ }
+
+Added: puppet/modules/mysql/manifests/init.pp
+===================================================================
+--- puppet/modules/mysql/manifests/init.pp	                        (rev 0)
++++ puppet/modules/mysql/manifests/init.pp	2010-11-10 14:00:36 UTC (rev 231)
+@@ -0,0 +1,14 @@
++class mysql {
++
++    package { 'mysql':
++        ensure => installed
++    }
++    package { 'mod_mysql':
++        ensure => installed
++    }
++
++    service { mysqld:
++        ensure => running,
++        subscribe => Package["mysql"],
++    }
++}
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101110/7aecd714/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000468.html b/zarb-ml/mageia-sysadm/2010-November/000468.html new file mode 100644 index 000000000..8398ba4a8 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000468.html @@ -0,0 +1,101 @@ + + + + [Mageia-sysadm] [232] Fix cron for check new blog post + + + + + + + + + +

[Mageia-sysadm] [232] Fix cron for check new blog post

+ root at mageia.org + root at mageia.org +
+ Wed Nov 10 15:03:49 CET 2010 +

+
+ +
Revision: 232
+Author:   dams
+Date:     2010-11-10 15:03:49 +0100 (Wed, 10 Nov 2010)
+Log Message:
+-----------
+Fix cron for check new blog post
+
+Modified Paths:
+--------------
+    puppet/modules/blog/manifests/init.pp
+
+Modified: puppet/modules/blog/manifests/init.pp
+===================================================================
+--- puppet/modules/blog/manifests/init.pp	2010-11-10 14:00:36 UTC (rev 231)
++++ puppet/modules/blog/manifests/init.pp	2010-11-10 14:03:49 UTC (rev 232)
+@@ -20,7 +20,7 @@
+         }
+ 	cron { blog:
+         	user => blog,
+-        	minute => 15,
++        	minute => '*/15',
+         	command => "/usr/local/bin/check_new-blog-post.sh",
+         	require => File["check_new-blog-post"]
+     	}
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101110/88983ac8/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000469.html b/zarb-ml/mageia-sysadm/2010-November/000469.html new file mode 100644 index 000000000..1b6ac9d7b --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000469.html @@ -0,0 +1,77 @@ + + + + [Mageia-sysadm] Puppet Report for champagne.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for champagne.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 10 15:05:29 CET 2010 +

+
+ +
Wed Nov 10 15:05:29 +0100 2010 /Stage[main]/Mysql/Package[mod_mysql]/ensure (err): change from absent to present failed: Execution of '/usr/sbin/urpmi --auto mod_mysql' returned 1: No package named mod_mysql
+The following packages contain mod_mysql: lighttpd-mod_mysql_vhost
+You should use "-a" to use all of them
+
+ + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000470.html b/zarb-ml/mageia-sysadm/2010-November/000470.html new file mode 100644 index 000000000..acfe8aa13 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000470.html @@ -0,0 +1,101 @@ + + + + [Mageia-sysadm] [233] Fix mod_mysql + + + + + + + + + +

[Mageia-sysadm] [233] Fix mod_mysql

+ root at mageia.org + root at mageia.org +
+ Wed Nov 10 15:10:49 CET 2010 +

+
+ +
Revision: 233
+Author:   dams
+Date:     2010-11-10 15:10:48 +0100 (Wed, 10 Nov 2010)
+Log Message:
+-----------
+Fix mod_mysql
+
+Modified Paths:
+--------------
+    puppet/modules/mysql/manifests/init.pp
+
+Modified: puppet/modules/mysql/manifests/init.pp
+===================================================================
+--- puppet/modules/mysql/manifests/init.pp	2010-11-10 14:03:49 UTC (rev 232)
++++ puppet/modules/mysql/manifests/init.pp	2010-11-10 14:10:48 UTC (rev 233)
+@@ -3,7 +3,7 @@
+     package { 'mysql':
+         ensure => installed
+     }
+-    package { 'mod_mysql':
++    package { 'lighttpd-mod_mysql_vhost':
+         ensure => installed
+     }
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101110/a7d7feee/attachment-0001.html>
+
+ + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000471.html b/zarb-ml/mageia-sysadm/2010-November/000471.html new file mode 100644 index 000000000..16cbc0cb0 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000471.html @@ -0,0 +1,77 @@ + + + + [Mageia-sysadm] Puppet Report for champagne.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for champagne.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 10 15:11:17 CET 2010 +

+
+ +
Wed Nov 10 15:11:17 +0100 2010 /Stage[main]/Mysql/Package[mod_mysql]/ensure (err): change from absent to present failed: Execution of '/usr/sbin/urpmi --auto mod_mysql' returned 1: No package named mod_mysql
+The following packages contain mod_mysql: lighttpd-mod_mysql_vhost
+You should use "-a" to use all of them
+
+ + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000472.html b/zarb-ml/mageia-sysadm/2010-November/000472.html new file mode 100644 index 000000000..f9f9af490 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000472.html @@ -0,0 +1,77 @@ + + + + [Mageia-sysadm] Puppet Report for champagne.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for champagne.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 10 15:12:02 CET 2010 +

+
+ +
Wed Nov 10 15:12:02 +0100 2010 /Stage[main]/Mysql/Package[mod_mysql]/ensure (err): change from absent to present failed: Execution of '/usr/sbin/urpmi --auto mod_mysql' returned 1: No package named mod_mysql
+The following packages contain mod_mysql: lighttpd-mod_mysql_vhost
+You should use "-a" to use all of them
+
+ + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000473.html b/zarb-ml/mageia-sysadm/2010-November/000473.html new file mode 100644 index 000000000..ca6474364 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000473.html @@ -0,0 +1,77 @@ + + + + [Mageia-sysadm] Puppet Report for champagne.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for champagne.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 10 15:12:24 CET 2010 +

+
+ +
Wed Nov 10 15:12:23 +0100 2010 /Stage[main]/Mysql/Package[mod_mysql]/ensure (err): change from absent to present failed: Execution of '/usr/sbin/urpmi --auto mod_mysql' returned 1: No package named mod_mysql
+The following packages contain mod_mysql: lighttpd-mod_mysql_vhost
+You should use "-a" to use all of them
+
+ + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000474.html b/zarb-ml/mageia-sysadm/2010-November/000474.html new file mode 100644 index 000000000..19ce8d8e8 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000474.html @@ -0,0 +1,77 @@ + + + + [Mageia-sysadm] Puppet Report for champagne.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for champagne.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 10 15:13:01 CET 2010 +

+
+ +
Wed Nov 10 15:13:01 +0100 2010 /Stage[main]/Mysql/Package[mod_mysql]/ensure (err): change from absent to present failed: Execution of '/usr/sbin/urpmi --auto mod_mysql' returned 1: No package named mod_mysql
+The following packages contain mod_mysql: lighttpd-mod_mysql_vhost
+You should use "-a" to use all of them
+
+ + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000475.html b/zarb-ml/mageia-sysadm/2010-November/000475.html new file mode 100644 index 000000000..0c76d7068 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000475.html @@ -0,0 +1,77 @@ + + + + [Mageia-sysadm] Puppet Report for champagne.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for champagne.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 10 15:13:31 CET 2010 +

+
+ +
Wed Nov 10 15:13:31 +0100 2010 /Stage[main]/Mysql/Package[mod_mysql]/ensure (err): change from absent to present failed: Execution of '/usr/sbin/urpmi --auto mod_mysql' returned 1: No package named mod_mysql
+The following packages contain mod_mysql: lighttpd-mod_mysql_vhost
+You should use "-a" to use all of them
+
+ + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000476.html b/zarb-ml/mageia-sysadm/2010-November/000476.html new file mode 100644 index 000000000..cf76110d2 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000476.html @@ -0,0 +1,77 @@ + + + + [Mageia-sysadm] Puppet Report for champagne.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for champagne.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 10 15:14:01 CET 2010 +

+
+ +
Wed Nov 10 15:14:01 +0100 2010 /Stage[main]/Mysql/Package[mod_mysql]/ensure (err): change from absent to present failed: Execution of '/usr/sbin/urpmi --auto mod_mysql' returned 1: No package named mod_mysql
+The following packages contain mod_mysql: lighttpd-mod_mysql_vhost
+You should use "-a" to use all of them
+
+ + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000477.html b/zarb-ml/mageia-sysadm/2010-November/000477.html new file mode 100644 index 000000000..fd037c9d7 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000477.html @@ -0,0 +1,115 @@ + + + + [Mageia-sysadm] [211] - replace hardcoded domain by a variable, to ease reuse of the module + + + + + + + + + +

[Mageia-sysadm] [211] - replace hardcoded domain by a variable, to ease reuse of the module

+ Michael Scherer + misc at zarb.org +
+ Wed Nov 10 15:16:28 CET 2010 +

+
+ +
Le mardi 09 novembre 2010 à 14:35 +0100, Buchan Milne a écrit :
+> On Tuesday, 9 November 2010 03:21:57 root at mageia.org wrote:
+> > Revision: 211
+> > Author:   misc
+> > Date:     2010-11-09 03:21:57 +0100 (Tue, 09 Nov 2010)
+> > Log Message:
+> > -----------
+> > - replace hardcoded domain by a variable, to ease reuse of the module
+> > 
+> > Modified Paths:
+> > --------------
+> >     puppet/modules/openldap/templates/slapd.conf
+> > 
+> > Modified: puppet/modules/openldap/templates/slapd.conf
+> > ===================================================================
+> > --- puppet/modules/openldap/templates/slapd.conf	2010-11-08 23:18:50 
+> UTC
+> > (rev 210) +++ puppet/modules/openldap/templates/slapd.conf	2010-11-09
+> > 02:21:57 UTC (rev 211) @@ -1,3 +1,9 @@
+> 
+> There is also mandriva-dit-access.conf, but doing this more or less reverts it 
+> to the file delivered with openldap-mandriva-dit, except for the local 
+> modifications to:
+> 1. provide registrar with minimal write access
+> 2. disable anon access
+> 3. put back some access that previously relied on "by * read" which maybe 
+> should not be "by users read".
+> 
+> Since (2) and (3) are generally useful, and (1) could probably be done with a 
+> separate include file specific to mageia, maybe openldap-mandriva-dit should 
+> deliver a puppet template file, which may be useful more generally?
+
+I do not really understand, so maybe I am wrong.
+
+Then it would requires erb, facter and likely puppet to be useful to
+others people, so that doesn't seems very flexible ?
+
+( on the other hand, feel free to merge change in the package if you
+find them useful, you are the ldap guru )
+
+-- 
+Michael Scherer
+
+
+ + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000478.html b/zarb-ml/mageia-sysadm/2010-November/000478.html new file mode 100644 index 000000000..2eb1f83b7 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000478.html @@ -0,0 +1,413 @@ + + + + [Mageia-sysadm] [234] First commit for sympa module + + + + + + + + + +

[Mageia-sysadm] [234] First commit for sympa module

+ root at mageia.org + root at mageia.org +
+ Wed Nov 10 15:34:31 CET 2010 +

+
+ +
Revision: 234
+Author:   dmorgan
+Date:     2010-11-10 15:34:31 +0100 (Wed, 10 Nov 2010)
+Log Message:
+-----------
+First commit for sympa module
+
+Added Paths:
+-----------
+    puppet/modules/sympa/
+    puppet/modules/sympa/manifests/
+    puppet/modules/sympa/manifests/init.pp
+    puppet/modules/sympa/templates/
+    puppet/modules/sympa/templates/sympa.conf
+
+Added: puppet/modules/sympa/manifests/init.pp
+===================================================================
+--- puppet/modules/sympa/manifests/init.pp	                        (rev 0)
++++ puppet/modules/sympa/manifests/init.pp	2010-11-10 14:34:31 UTC (rev 234)
+@@ -0,0 +1,20 @@
++class sympa {
++
++    $package_list = ['sympa', 'sympa-www']
++
++    package { $package_list:
++        ensure => installed;
++    }
++
++    $password = extlookup("sympa_password")
++
++    file { '/etc/sympa/sympa.conf':
++        ensure => present,
++        owner => root,
++        group => root,
++        mode => 644,
++        content => template("sympa/sympa.conf")
++    }
++
++}
++
+
+Added: puppet/modules/sympa/templates/sympa.conf
+===================================================================
+--- puppet/modules/sympa/templates/sympa.conf	                        (rev 0)
++++ puppet/modules/sympa/templates/sympa.conf	2010-11-10 14:34:31 UTC (rev 234)
+@@ -0,0 +1,291 @@
++###\\\\ Directories and file location ////###
++
++## Directory containing mailing lists subdirectories
++home    /var/lib/sympa
++
++## Directory for configuration files ; it also contains scenari/ and templates/ directories
++etc     /etc/sympa
++
++## File containing Sympa PID while running.
++## Sympa also locks this file to ensure that it is not running more than once. Caution : user sympa need to write access without special privilegee.
++pidfile /var/run/sympa/sympa.pid
++
++pidfile_distribute      /var/run/sympa/sympa-distribute.pid
++
++pidfile_creation        /var/run/sympa/sympa-creation.pid
++
++pidfile_bulk    /var/run/sympa/bulk.pid
++
++## Umask used for file creation by Sympa
++umask   027
++
++## Directory containing available NLS catalogues (Message internationalization)
++localedir       /usr/share/locale
++
++## The main spool containing various specialized spools
++## All spool are created at runtime by sympa.pl
++spool   /var/spool/sympa
++
++## Incoming spool
++queue   /var/spool/sympa/msg
++
++## Bounce incoming spool
++queuebounce     /var/spool/sympa/bounce
++
++## Automatic list creation spool
++queueautomatic  /var/spool/sympa/automatic
++
++## 
++queuedigest     /var/spool/sympa/digest
++
++## 
++queuemod        /var/spool/sympa/moderation
++
++## 
++queuetopic      /var/spool/sympa/topic
++
++## 
++queueauth       /var/spool/sympa/auth
++
++## 
++queueoutgoing   /var/spool/sympa/outgoing
++
++## 
++queuetask       /var/spool/sympa/task
++
++## 
++queuesubscribe  /var/spool/sympa/subscribe
++
++## URL to a virtual host.
++http_host       http://domain.tld
++
++## The directory where Sympa stores static contents (CSS, members pictures, documentation) directly delivered by Apache
++static_content_path     /var/lib/sympa/static_content
++
++## The URL mapped with the static_content_path directory defined above
++static_content_url      /static-sympa
++
++###\\\\ Syslog ////###
++
++## The syslog facility for sympa
++## Do not forget to edit syslog.conf
++syslog  mail
++
++## Communication mode with syslogd is either unix (via Unix sockets) or inet (use of UDP)
++log_socket_type unix
++
++## Log intensity
++## 0 : normal, 2,3,4 for debug
++log_level       0
++
++log_smtp        off
++
++## Number of months that elapse before a log is expired.
++logs_expiration_period  3
++
++###\\\\ General definition ////###
++
++## Main robot hostname
++domain  mageia.org
++
++## Listmasters email list comma separated
++## Sympa will associate listmaster privileges to these email addresses (mail and web interfaces). Some error reports may also be sent to these addresses.
++listmaster      listmaster at mageia.org
++
++## Local part of sympa email adresse
++## Effective address will be \[EMAIL\]@\[HOST\]
++email   sympa
++
++## Who is able to create lists
++## This parameter is a scenario, check sympa documentation about scenarios if you want to define one
++create_list     public_listmaster
++
++edit_list       owner
++
++###\\\\ Tuning ////###
++
++## Use of binary version of the list config structure on disk: none | binary_file
++## Set this parameter to "binary_file" if you manage a big amount of lists (1000+) ; it should make the web interface startup faster
++cache_list_config       none
++
++## Sympa commands priority
++sympa_priority  1
++
++## Default priority for list messages
++default_list_priority   5
++
++## Default timeout between two scheduled synchronizations of list members with data sources.
++default_ttl     3600
++
++## Default timeout between two action-triggered synchronizations of list members with data sources.
++default_distribution_ttl        300
++
++## Default priority for a packet to be sent by bulk.
++sympa_packet_priority   5
++
++request_priority        0
++
++owner_priority  9
++
++## The minimum number of packets in database before the bulk forks to increase sending rate
++## 
++bulk_fork_threshold     1
++
++## The max number of bulks that will run on the same server.
++## 
++bulk_max_count  3
++
++## the number of seconds a slave bulk will remain running without processing a message before it spontaneously dies.
++## 
++bulk_lazytime   600
++
++## The number of seconds a master bulk waits between two packets number checks.
++## Keep it small if you expect brutal increases in the message sending load.
++bulk_wait_to_fork       10
++
++## the number of seconds a bulk sleeps between starting a new loop if it didn't find a message to send.
++## Keep it small if you want your server to be reactive.
++bulk_sleep      1
++
++## Secret used by Sympa to make MD5 fingerprint in web cookies secure
++## Should not be changed ! May invalid all user password
++#cookie 123456789
++
++## If set to "on", enables support of legacy characters
++## 
++legacy_character_support_feature        off
++
++## The default maximum size (in bytes) for messages (can be re-defined for each list)
++max_size        5242880
++
++## comma separated list of operations for which blacklist filter is applied
++## Setting this parameter to "none" will hide the blacklist feature
++use_blacklist   send,create_list
++
++## Specify which rfc2369 mailing list headers to add
++rfc2369_header_fields   help,subscribe,unsubscribe,post,owner,archive
++
++## Specify header fields to be removed before message distribution
++remove_headers  X-Sympa-To,X-Family-To,Return-Receipt-To,Precedence,X-Sequence,Disposition-Notification-To
++
++bounce_warn_rate        30
++
++bounce_halt_rate        50
++
++###\\\\ Internationalization ////###
++
++## Default lang (ca | cs | de | el | es | et_EE | en_US | fr | fi | hu | it | ja_JP | ko | nl | nb_NO | oc | pl | pt_BR | ru | sv | tr | vi | zh_CN | zh_TW)
++## This is the default language used by Sympa
++lang    en_US
++
++## Supported languages
++## This is the set of language that will be proposed to your users for the Sympa GUI. Don't select a language if you don't have the proper locale packages installed.
++supported_lang  ca,cs,de,el,es,et_EE,en_US,fr,fi,hu,it,ja_JP,ko,nl,nb_NO,oc,pl,pt_BR,ru,sv,tr,vi,zh_CN,zh_TW
++
++###\\\\ Errors management ////###
++
++## Bouncing email rate for warn list owner
++#bounce_warn_rate       20
++
++## Bouncing email rate for halt the list (not implemented)
++## Not yet used in current version, Default is 50
++#bounce_halt_rate       50
++
++## Task name for expiration of old bounces
++#expire_bounce_task     daily
++
++## Welcome message return-path
++## If set to unique, new subcriber is removed if welcome message bounce
++#welcome_return_path    unique
++
++###\\\\ MTA related ////###
++
++## Path to the MTA (sendmail, postfix, exim or qmail)
++## should point to a sendmail-compatible binary (eg: a binary named "sendmail" is distributed with Postfix)
++sendmail        /usr/sbin/sendmail
++
++## Maximum number of recipients per call to Sendmail. The nrcpt_by_domain.conf file allows a different tuning per destination domain.
++nrcpt   25
++
++## Max. number of different domains per call to Sendmail
++avg     10
++
++## Max. number of Sendmail processes (launched by Sympa) running simultaneously
++## Proposed value is quite low, you can rise it up to 100, 200 or even 300 with powerfull systems.
++maxsmtp 40
++
++###\\\\ Plugin ////###
++
++## Path to the antivirus scanner engine
++## supported antivirus : McAfee/uvscan, Fsecure/fsav, Sophos, AVP and Trend Micro/VirusWall
++#antivirus_path /usr/local/uvscan/uvscan
++
++## Antivirus pluggin command argument
++#antivirus_args --secure --summary --dat /usr/local/uvscan
++
++###\\\\ S/MIME pluggin ////###
++
++## Path to OpenSSL
++## Sympa knowns S/MIME if openssl is installed
++#openssl        /usr/bin/ssl
++
++## The directory path use by OpenSSL for trusted CA certificates
++#capath /etc/sympa/ssl.crt
++
++##  This parameter sets the all-in-one file where you can assemble the Certificates of Certification Authorities (CA)
++#cafile /usr/local/apache/conf/ssl.crt/ca-bundle.crt
++
++## User CERTs directory
++ssl_cert_dir    /var/lib/sympa/X509-user-certs
++
++crl_dir /var/lib/sympa/crl
++
++## Password used to crypt lists private keys
++#key_passwd     your_password
++
++###\\\\ Database ////###
++
++## Database type (mysql | Pg | Oracle | Sybase | SQLite)
++## be carefull to the case
++db_type Pg
++
++## Name of the database
++## with SQLite, the name of the DB corresponds to the DB file
++db_name sympa
++
++## The host hosting your sympa database
++db_host pgsql.<%= domain %>;
++
++## The database port
++db_port 5432/tcp
++
++## Database user for connexion
++db_user sympa
++
++## Database password (associated to the db_user)
++## What ever you use a password or not, you must protect the SQL server (is it a not a public internet service ?)
++db_passwd       <%= password %>;
++
++## Database private extention to user table
++## You need to extend the database format with these fields
++#db_additional_user_fields      age,address
++
++## Database private extention to subscriber table
++## You need to extend the database format with these fields
++#db_additional_subscriber_fields        billing_delay,subscription_expiration
++
++###\\\\ Web interface ////###
++
++## Sympa's main page URL
++wwsympa_url     http://ml.mageia.org/
++
++## If a spam filter (like spamassassin or j-chkmail) add a smtp headers to tag spams, name of this header (example X-Spam-Status)
++antispam_tag_header_name        X-Spam-Status
++
++## The regexp applied on this header to verify message is a spam (example \s*Yes)
++antispam_tag_header_spam_regexp ^\s*Yes
++
++## The regexp applied on this header to verify message is NOT a spam (example \s*No)
++antispam_tag_header_ham_regexp  ^\s*No
++
++
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101110/8e39b52e/attachment-0001.html>
+
+ + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000479.html b/zarb-ml/mageia-sysadm/2010-November/000479.html new file mode 100644 index 000000000..5cc4896e4 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000479.html @@ -0,0 +1,88 @@ + + + + [Mageia-sysadm] Usernames, uids, and groups + + + + + + + + + +

[Mageia-sysadm] Usernames, uids, and groups

+ nicolas vigier + boklm at mars-attacks.org +
+ Wed Nov 10 15:38:32 CET 2010 +

+
+ +
On Wed, 10 Nov 2010, Buchan Milne wrote:
+
+> > But we already need need (restricted) shell access for mdvsys submit.
+> 
+> Why? In the original repsys model, a request to "build pkg foo rXXXX for 
+> release Y" was all that was required. While I agree it may be quicker to go 
+> with mdvsys/iurt etc. now, why should submission require shell access? AFAIK, 
+> other similar tools (koji, OBS) don't.
+
+Yes, mdvsys is only using ssh to submit the request (calling create-srpm
+with some arguments). We can maybe use something else than ssh to submit
+the request, if the setup on the servers and support in mdvsys can be
+done without too much work.
+
+What other protocol do you suggest for sending the build requests ?
+I see Koji is using SSL certificates or Kerberos for authentication.
+
+
+ + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000480.html b/zarb-ml/mageia-sysadm/2010-November/000480.html new file mode 100644 index 000000000..f4ec65d88 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000480.html @@ -0,0 +1,169 @@ + + + + [Mageia-sysadm] [235] Add ldap template file + + + + + + + + + +

[Mageia-sysadm] [235] Add ldap template file

+ root at mageia.org + root at mageia.org +
+ Wed Nov 10 15:56:47 CET 2010 +

+
+ +
Revision: 235
+Author:   dmorgan
+Date:     2010-11-10 15:56:47 +0100 (Wed, 10 Nov 2010)
+Log Message:
+-----------
+Add ldap template file
+
+Modified Paths:
+--------------
+    puppet/modules/sympa/manifests/init.pp
+    puppet/modules/sympa/templates/sympa.conf
+
+Added Paths:
+-----------
+    puppet/modules/sympa/templates/ldap_alias_manager.conf
+
+Modified: puppet/modules/sympa/manifests/init.pp
+===================================================================
+--- puppet/modules/sympa/manifests/init.pp	2010-11-10 14:34:31 UTC (rev 234)
++++ puppet/modules/sympa/manifests/init.pp	2010-11-10 14:56:47 UTC (rev 235)
+@@ -7,6 +7,7 @@
+     }
+ 
+     $password = extlookup("sympa_password")
++    $ldappass = extlookup("sympa_ldap")
+ 
+     file { '/etc/sympa/sympa.conf':
+         ensure => present,
+@@ -16,5 +17,12 @@
+         content => template("sympa/sympa.conf")
+     }
+ 
++    file { '/etc/sympa/ldap_alias_manager.conf':
++        ensure => present,
++        owner => root,
++        group => root,
++        mode => 644,
++        content => template("sympa/ldap_alias_manager.conf")
++    }
+ }
+ 
+
+Added: puppet/modules/sympa/templates/ldap_alias_manager.conf
+===================================================================
+--- puppet/modules/sympa/templates/ldap_alias_manager.conf	                        (rev 0)
++++ puppet/modules/sympa/templates/ldap_alias_manager.conf	2010-11-10 14:56:47 UTC (rev 235)
+@@ -0,0 +1,24 @@
++## This configuration file is used by the ldap_alias_manager.pl ; it allows to manage mail aliases in an LDAP directory
++## To make sympa use the ldap_alias_manager.pl script, you should edit the 'ldap_manager' sympa.conf parameter
++## To use this file, you should copy it to the /home/sympa/etc/ directory
++
++#LDAP server host
++ldap_host ldap.<%= domain %>
++
++#LDAP bind DN
++cn=alamut-sympa,ou=System Accounts,dc=mageia,dc=org
++#LDAP bind password
++ldap_bind_pwd <%= ldappass %>
++
++#LDAP Base DN
++ldap_base_dn ou=mail,dc=mageia,dc=org
++
++#LDAP Mail attribute
++ldap_mail_attribute mail
++
++#LDAP SSL
++ldap_ssl 0
++
++#LDAP CA Chain file
++#ldap_cachain /etc/ldap/cert/cachain.pem
++~                                         
+
+Modified: puppet/modules/sympa/templates/sympa.conf
+===================================================================
+--- puppet/modules/sympa/templates/sympa.conf	2010-11-10 14:34:31 UTC (rev 234)
++++ puppet/modules/sympa/templates/sympa.conf	2010-11-10 14:56:47 UTC (rev 235)
+@@ -254,7 +254,7 @@
+ db_name sympa
+ 
+ ## The host hosting your sympa database
+-db_host pgsql.<%= domain %>;
++db_host pgsql.<%= domain %>
+ 
+ ## The database port
+ db_port 5432/tcp
+@@ -264,7 +264,7 @@
+ 
+ ## Database password (associated to the db_user)
+ ## What ever you use a password or not, you must protect the SQL server (is it a not a public internet service ?)
+-db_passwd       <%= password %>;
++db_passwd       <%= password %>
+ 
+ ## Database private extention to user table
+ ## You need to extend the database format with these fields
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101110/d239584d/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000481.html b/zarb-ml/mageia-sysadm/2010-November/000481.html new file mode 100644 index 000000000..905aabe39 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000481.html @@ -0,0 +1,99 @@ + + + + [Mageia-sysadm] [236] Fix typo + + + + + + + + + +

[Mageia-sysadm] [236] Fix typo

+ root at mageia.org + root at mageia.org +
+ Wed Nov 10 16:06:07 CET 2010 +

+
+ +
Revision: 236
+Author:   dmorgan
+Date:     2010-11-10 16:06:07 +0100 (Wed, 10 Nov 2010)
+Log Message:
+-----------
+Fix typo
+
+Modified Paths:
+--------------
+    puppet/modules/sympa/templates/ldap_alias_manager.conf
+
+Modified: puppet/modules/sympa/templates/ldap_alias_manager.conf
+===================================================================
+--- puppet/modules/sympa/templates/ldap_alias_manager.conf	2010-11-10 14:56:47 UTC (rev 235)
++++ puppet/modules/sympa/templates/ldap_alias_manager.conf	2010-11-10 15:06:07 UTC (rev 236)
+@@ -6,7 +6,7 @@
+ ldap_host ldap.<%= domain %>
+ 
+ #LDAP bind DN
+-cn=alamut-sympa,ou=System Accounts,dc=mageia,dc=org
++ldap_bind_dn cn=alamut-sympa,ou=System Accounts,dc=mageia,dc=org
+ #LDAP bind password
+ ldap_bind_pwd <%= ldappass %>
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101110/beb56046/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000482.html b/zarb-ml/mageia-sysadm/2010-November/000482.html new file mode 100644 index 000000000..8bef6cd10 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000482.html @@ -0,0 +1,108 @@ + + + + [Mageia-sysadm] [237] add ml and lists subdomains + + + + + + + + + +

[Mageia-sysadm] [237] add ml and lists subdomains

+ root at mageia.org + root at mageia.org +
+ Wed Nov 10 16:08:17 CET 2010 +

+
+ +
Revision: 237
+Author:   boklm
+Date:     2010-11-10 16:08:17 +0100 (Wed, 10 Nov 2010)
+Log Message:
+-----------
+add ml and lists subdomains
+
+Modified Paths:
+--------------
+    puppet/modules/bind/templates/zones/mageia.org.zone
+
+Modified: puppet/modules/bind/templates/zones/mageia.org.zone
+===================================================================
+--- puppet/modules/bind/templates/zones/mageia.org.zone	2010-11-10 15:06:07 UTC (rev 236)
++++ puppet/modules/bind/templates/zones/mageia.org.zone	2010-11-10 15:08:17 UTC (rev 237)
+@@ -3,7 +3,7 @@
+ ; $Id$
+ $TTL	3D
+ @       IN      SOA     ns0.mageia.org.   root.mageia.org.  (
+-        2010110800	; Serial
++        2010111000	; Serial
+         21600		; Refresh
+         3600		; Retry
+         2419200		; Expire
+@@ -71,6 +71,8 @@
+ epoll       IN CNAME alamut
+ pgsql       IN CNAME alamut
+ bugs        IN CNAME alamut
++ml          IN CNAME alamut
++lists       IN CNAME alamut
+ ; temporary
+ ;forum       IN A 140.211.167.148
+ ;wiki            IN      A       88.191.83.84
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101110/0add170f/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000483.html b/zarb-ml/mageia-sysadm/2010-November/000483.html new file mode 100644 index 000000000..91ff9b606 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000483.html @@ -0,0 +1,80 @@ + + + + [Mageia-sysadm] Usernames, uids, and groups + + + + + + + + + +

[Mageia-sysadm] Usernames, uids, and groups

+ Buchan Milne + bgmilne at multilinks.com +
+ Wed Nov 10 13:27:00 CET 2010 +

+
+ +
On Wednesday, 10 November 2010 11:55:00 nicolas vigier wrote:
+> On Wed, 10 Nov 2010, Luca Berra wrote:
+
+> > 2) Accountability. No idea in France, but here system administratros
+> > need to be accounted (*).
+> 
+> When someone runs "sudo su -" or something equivalent there is no
+> accountability on what he did after that.
+
+Don't ever give blanket unaudited sudo. For editing files, provide sudoedit 
+rules. For commands that can not be specified in advance:
+
+(this one requires a bit of setup, but is superior)
+# urpmi eash
+
+or consider sudosh (but, it only logs locally, so I didn't package it).
+
+Regards,
+Buchan
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000484.html b/zarb-ml/mageia-sysadm/2010-November/000484.html new file mode 100644 index 000000000..9e48e8f79 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000484.html @@ -0,0 +1,98 @@ + + + + [Mageia-sysadm] [238] Fix php-mysql + + + + + + + + + +

[Mageia-sysadm] [238] Fix php-mysql

+ root at mageia.org + root at mageia.org +
+ Wed Nov 10 17:05:35 CET 2010 +

+
+ +
Revision: 238
+Author:   dams
+Date:     2010-11-10 17:05:35 +0100 (Wed, 10 Nov 2010)
+Log Message:
+-----------
+Fix php-mysql
+
+Modified Paths:
+--------------
+    puppet/modules/mysql/manifests/init.pp
+
+Modified: puppet/modules/mysql/manifests/init.pp
+===================================================================
+--- puppet/modules/mysql/manifests/init.pp	2010-11-10 15:08:17 UTC (rev 237)
++++ puppet/modules/mysql/manifests/init.pp	2010-11-10 16:05:35 UTC (rev 238)
+@@ -3,7 +3,7 @@
+     package { 'mysql':
+         ensure => installed
+     }
+-    package { 'lighttpd-mod_mysql_vhost':
++    package { 'php-mysql':
+         ensure => installed
+     }
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101110/6c19003d/attachment-0001.html>
+
+ + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000485.html b/zarb-ml/mageia-sysadm/2010-November/000485.html new file mode 100644 index 000000000..7855e729c --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000485.html @@ -0,0 +1,80 @@ + + + + [Mageia-sysadm] Usernames, uids, and groups + + + + + + + + + +

[Mageia-sysadm] Usernames, uids, and groups

+ nicolas vigier + boklm at mars-attacks.org +
+ Wed Nov 10 17:25:41 CET 2010 +

+
+ +
On Wed, 10 Nov 2010, Buchan Milne wrote:
+
+> On Wednesday, 10 November 2010 11:55:00 nicolas vigier wrote:
+> > On Wed, 10 Nov 2010, Luca Berra wrote:
+> 
+> > > 2) Accountability. No idea in France, but here system administratros
+> > > need to be accounted (*).
+> > 
+> > When someone runs "sudo su -" or something equivalent there is no
+> > accountability on what he did after that.
+> 
+> Don't ever give blanket unaudited sudo. For editing files, provide sudoedit 
+> rules. For commands that can not be specified in advance:
+
+Hmm, I don't think we should try to restrict what admins can edit or
+run, or we will spend too much time managing permissions. And I'm not
+sure what we're trying to avoid here, untrusted people should not be in
+sysadmin team.
+
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000486.html b/zarb-ml/mageia-sysadm/2010-November/000486.html new file mode 100644 index 000000000..ad993e4a4 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000486.html @@ -0,0 +1,96 @@ + + + + [Mageia-sysadm] Usernames, uids, and groups + + + + + + + + + +

[Mageia-sysadm] Usernames, uids, and groups

+ Luca Berra + bluca at vodka.it +
+ Wed Nov 10 17:57:36 CET 2010 +

+
+ +
On Wed, Nov 10, 2010 at 01:27:00PM +0100, Buchan Milne wrote:
+>On Wednesday, 10 November 2010 11:55:00 nicolas vigier wrote:
+>> On Wed, 10 Nov 2010, Luca Berra wrote:
+>
+>> > 2) Accountability. No idea in France, but here system administratros
+>> > need to be accounted (*).
+>> 
+>> When someone runs "sudo su -" or something equivalent there is no
+>> accountability on what he did after that.
+sure, except the fact itself :P
+
+>Don't ever give blanket unaudited sudo. For editing files, provide sudoedit 
+>rules. For commands that can not be specified in advance:
+
+note that current sudo has a bug regarding wildcards,
+
+http://www.gratisoft.us/bugs/show_bug.cgi?id=449
+
+>(this one requires a bit of setup, but is superior)
+># urpmi eash
+>
+>or consider sudosh (but, it only logs locally, so I didn't package it).
+
+newer sudo implement the logging functionality, so sudosh is no longer
+needed
+
+as for the local log only with sudosh i had implemented by making it log
+on an nfs share (with root_squash), thus preventing admins on nfs client
+to muck with the logs.
+
+i will look at EAS tough, seems interesting.
+
+
+-- 
+Luca Berra -- bluca at vodka.it
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000487.html b/zarb-ml/mageia-sysadm/2010-November/000487.html new file mode 100644 index 000000000..a0069903e --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000487.html @@ -0,0 +1,87 @@ + + + + [Mageia-sysadm] Usernames, uids, and groups + + + + + + + + + +

[Mageia-sysadm] Usernames, uids, and groups

+ Luca Berra + bluca at vodka.it +
+ Wed Nov 10 18:04:29 CET 2010 +

+
+ +
On Wed, Nov 10, 2010 at 01:32:47PM +0100, Michael Scherer wrote:
+>Le mercredi 10 novembre 2010 à 11:55 +0100, nicolas vigier a écrit :
+>> On Wed, 10 Nov 2010, Luca Berra wrote:
+>>
+>> > 2) Accountability. No idea in France, but here system administratros
+>> > need to be accounted (*).
+>> 
+>> When someone runs "sudo su -" or something equivalent there is no
+>> accountability on what he did after that.
+>
+>Even more cunning, emacs or vim can run process ( except that vim has a
+>mode where it can prevent it with -Z, do not know for emacs ).
+
+it is better to use sudoedit for editing files, it will copy the
+original file to a temporary copy, revert to caller uid, let user edit
+the file, and move it into place afterwards.
+
+another options is using noexec (sudo will preload a shlib overriding
+exec calls)
+
+L.
+
+-- 
+Luca Berra -- bluca at vodka.it
+
+ + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000488.html b/zarb-ml/mageia-sysadm/2010-November/000488.html new file mode 100644 index 000000000..9c9b94c20 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000488.html @@ -0,0 +1,77 @@ + + + + [Mageia-sysadm] Usernames, uids, and groups + + + + + + + + + +

[Mageia-sysadm] Usernames, uids, and groups

+ nicolas vigier + boklm at mars-attacks.org +
+ Wed Nov 10 18:11:21 CET 2010 +

+
+ +
On Wed, 10 Nov 2010, Luca Berra wrote:
+
+> On Wed, Nov 10, 2010 at 01:27:00PM +0100, Buchan Milne wrote:
+>> On Wednesday, 10 November 2010 11:55:00 nicolas vigier wrote:
+>>> On Wed, 10 Nov 2010, Luca Berra wrote:
+>>
+>>> > 2) Accountability. No idea in France, but here system administratros
+>>> > need to be accounted (*).
+>>>
+>>> When someone runs "sudo su -" or something equivalent there is no
+>>> accountability on what he did after that.
+> sure, except the fact itself :P
+
+You could hide it easily. Edit a script called "backup.sh" containing
+"exec bash" and run it with sudo.
+
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000489.html b/zarb-ml/mageia-sysadm/2010-November/000489.html new file mode 100644 index 000000000..4c2947675 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000489.html @@ -0,0 +1,150 @@ + + + + [Mageia-sysadm] [239] continue sympa config. + + + + + + + + + +

[Mageia-sysadm] [239] continue sympa config.

+ root at mageia.org + root at mageia.org +
+ Wed Nov 10 18:21:43 CET 2010 +

+
+ +
Revision: 239
+Author:   dmorgan
+Date:     2010-11-10 18:21:43 +0100 (Wed, 10 Nov 2010)
+Log Message:
+-----------
+continue sympa config.
+
+ldap_alias_entry.tt2 need to be fixed when the mail server will be ON.
+
+Modified Paths:
+--------------
+    puppet/modules/sympa/manifests/init.pp
+
+Added Paths:
+-----------
+    puppet/modules/sympa/templates/auth.conf
+    puppet/modules/sympa/templates/ldap_alias_entry.tt2
+
+Modified: puppet/modules/sympa/manifests/init.pp
+===================================================================
+--- puppet/modules/sympa/manifests/init.pp	2010-11-10 16:05:35 UTC (rev 238)
++++ puppet/modules/sympa/manifests/init.pp	2010-11-10 17:21:43 UTC (rev 239)
+@@ -24,5 +24,21 @@
+         mode => 644,
+         content => template("sympa/ldap_alias_manager.conf")
+     }
++
++    file { '/etc/sympa/auth.conf':
++        ensure => present,
++        owner => root,
++        group => root,
++        mode => 644,
++        content => template("sympa/auth.conf")
++    }
++
++    file { '/etc/sympa/ldap_alias_entry.tt2':
++        ensure => present,
++        owner => root,
++        group => root,
++        mode => 644,
++        content => template("sympa/ldap_alias_entry.tt2")
++    }
+ }
+ 
+
+Added: puppet/modules/sympa/templates/auth.conf
+===================================================================
+--- puppet/modules/sympa/templates/auth.conf	                        (rev 0)
++++ puppet/modules/sympa/templates/auth.conf	2010-11-10 17:21:43 UTC (rev 239)
+@@ -0,0 +1,13 @@
++ldap
++        host                            ldap.mageia.org:389
++        timeout                         30
++        suffix                          dc=mageia,dc=org
++        get_dn_by_uid_filter            (uid=[sender])
++        get_dn_by_email                 (|(mail=[sender])(mailalternateaddress=[sender]))
++        email_attribute                 mail
++        scope                           sub
++
++
++user_table
++        regexp                 .*
++
+
+Added: puppet/modules/sympa/templates/ldap_alias_entry.tt2
+===================================================================
+--- puppet/modules/sympa/templates/ldap_alias_entry.tt2	                        (rev 0)
++++ puppet/modules/sympa/templates/ldap_alias_entry.tt2	2010-11-10 17:21:43 UTC (rev 239)
+@@ -0,0 +1,11 @@
++dn: cn=[% list.alias %],cn=[% list.domain %],[% ldap_base_dn %]
++objectClass: top
++objectClass: mailAlias
++objectClass: mailRecipient
++cn: [% list.alias %]
++mail: [% list.alias %]@[% list.domain %]
++mailTransportMode: [% list.command %]
++mailAccountStatus: active
++mailHost: mail1.example.com
++
++# vim: ft=ldif
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101110/bb5ae506/attachment.html>
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000490.html b/zarb-ml/mageia-sysadm/2010-November/000490.html new file mode 100644 index 000000000..eb47b3e7f --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000490.html @@ -0,0 +1,89 @@ + + + + [Mageia-sysadm] Usernames, uids, and groups + + + + + + + + + +

[Mageia-sysadm] Usernames, uids, and groups

+ nicolas vigier + boklm at mars-attacks.org +
+ Wed Nov 10 18:25:38 CET 2010 +

+
+ +
On Wed, 10 Nov 2010, Luca Berra wrote:
+
+> On Wed, Nov 10, 2010 at 01:32:47PM +0100, Michael Scherer wrote:
+>> Le mercredi 10 novembre 2010 à 11:55 +0100, nicolas vigier a écrit :
+>>> On Wed, 10 Nov 2010, Luca Berra wrote:
+>>>
+>>> > 2) Accountability. No idea in France, but here system administratros
+>>> > need to be accounted (*).
+>>>
+>>> When someone runs "sudo su -" or something equivalent there is no
+>>> accountability on what he did after that.
+>>
+>> Even more cunning, emacs or vim can run process ( except that vim has a
+>> mode where it can prevent it with -Z, do not know for emacs ).
+>
+> it is better to use sudoedit for editing files, it will copy the
+> original file to a temporary copy, revert to caller uid, let user edit
+> the file, and move it into place afterwards.
+
+Unless the list of files you are allowed to edit is very limited, it is
+very easy to open a root shell by editing a config file.
+
+> another options is using noexec (sudo will preload a shlib overriding
+> exec calls)
+
+But you have an editor running as root, and you can then edit any file.
+
+
+ + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000491.html b/zarb-ml/mageia-sysadm/2010-November/000491.html new file mode 100644 index 000000000..22bf3da71 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000491.html @@ -0,0 +1,94 @@ + + + + [Mageia-sysadm] Usernames, uids, and groups + + + + + + + + + +

[Mageia-sysadm] Usernames, uids, and groups

+ Luca Berra + bluca at vodka.it +
+ Wed Nov 10 18:40:58 CET 2010 +

+
+ +
On Wed, Nov 10, 2010 at 06:25:38PM +0100, nicolas vigier wrote:
+>On Wed, 10 Nov 2010, Luca Berra wrote:
+>
+>> On Wed, Nov 10, 2010 at 01:32:47PM +0100, Michael Scherer wrote:
+>>> Le mercredi 10 novembre 2010 à 11:55 +0100, nicolas vigier a écrit :
+>>>> On Wed, 10 Nov 2010, Luca Berra wrote:
+>>>>
+>>>> > 2) Accountability. No idea in France, but here system administratros
+>>>> > need to be accounted (*).
+>>>>
+>>>> When someone runs "sudo su -" or something equivalent there is no
+>>>> accountability on what he did after that.
+>>>
+>>> Even more cunning, emacs or vim can run process ( except that vim has a
+>>> mode where it can prevent it with -Z, do not know for emacs ).
+>>
+>> it is better to use sudoedit for editing files, it will copy the
+>> original file to a temporary copy, revert to caller uid, let user edit
+>> the file, and move it into place afterwards.
+>
+>Unless the list of files you are allowed to edit is very limited, it is
+>very easy to open a root shell by editing a config file.
+not with sudoedit
+
+>> another options is using noexec (sudo will preload a shlib overriding
+>> exec calls)
+>
+>But you have an editor running as root, and you can then edit any file.
+the idea is that the editor runs as unprivileged user
+
+-- 
+Luca Berra -- bluca at vodka.it
+
+ + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000492.html b/zarb-ml/mageia-sysadm/2010-November/000492.html new file mode 100644 index 000000000..a651c8c83 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000492.html @@ -0,0 +1,88 @@ + + + + [Mageia-sysadm] Usernames, uids, and groups + + + + + + + + + +

[Mageia-sysadm] Usernames, uids, and groups

+ Luca Berra + bluca at vodka.it +
+ Wed Nov 10 18:46:05 CET 2010 +

+
+ +
On Wed, Nov 10, 2010 at 06:11:21PM +0100, nicolas vigier wrote:
+>On Wed, 10 Nov 2010, Luca Berra wrote:
+>
+>> On Wed, Nov 10, 2010 at 01:27:00PM +0100, Buchan Milne wrote:
+>>> On Wednesday, 10 November 2010 11:55:00 nicolas vigier wrote:
+>>>> On Wed, 10 Nov 2010, Luca Berra wrote:
+>>>
+>>>> > 2) Accountability. No idea in France, but here system administratros
+>>>> > need to be accounted (*).
+>>>>
+>>>> When someone runs "sudo su -" or something equivalent there is no
+>>>> accountability on what he did after that.
+>> sure, except the fact itself :P
+>
+>You could hide it easily. Edit a script called "backup.sh" containing
+>"exec bash" and run it with sudo.
+
+Agreed,
+there are many ways an admin can cover its tracks.
+The best you can do with current unix semantics is maintain a record
+somewhere that user x did administrative tasks on server y at a
+specified time, I don't know if any of this is actually required by
+mageia, and if i am just chasing ghosts.
+
+L.
+
+-- 
+Luca Berra -- bluca at vodka.it
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000493.html b/zarb-ml/mageia-sysadm/2010-November/000493.html new file mode 100644 index 000000000..ab0586eea --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000493.html @@ -0,0 +1,102 @@ + + + + [Mageia-sysadm] Usernames, uids, and groups + + + + + + + + + +

[Mageia-sysadm] Usernames, uids, and groups

+ nicolas vigier + boklm at mars-attacks.org +
+ Wed Nov 10 18:54:01 CET 2010 +

+
+ +
On Wed, 10 Nov 2010, Luca Berra wrote:
+
+> On Wed, Nov 10, 2010 at 06:25:38PM +0100, nicolas vigier wrote:
+>> On Wed, 10 Nov 2010, Luca Berra wrote:
+>>
+>>> On Wed, Nov 10, 2010 at 01:32:47PM +0100, Michael Scherer wrote:
+>>>> Le mercredi 10 novembre 2010 à 11:55 +0100, nicolas vigier a écrit :
+>>>>> On Wed, 10 Nov 2010, Luca Berra wrote:
+>>>>>
+>>>>> > 2) Accountability. No idea in France, but here system administratros
+>>>>> > need to be accounted (*).
+>>>>>
+>>>>> When someone runs "sudo su -" or something equivalent there is no
+>>>>> accountability on what he did after that.
+>>>>
+>>>> Even more cunning, emacs or vim can run process ( except that vim has a
+>>>> mode where it can prevent it with -Z, do not know for emacs ).
+>>>
+>>> it is better to use sudoedit for editing files, it will copy the
+>>> original file to a temporary copy, revert to caller uid, let user edit
+>>> the file, and move it into place afterwards.
+>>
+>> Unless the list of files you are allowed to edit is very limited, it is
+>> very easy to open a root shell by editing a config file.
+> not with sudoedit
+
+With sudoedit too. Many config files are shell scripts or perl scripts
+that you can edit to run other commands. Many config files also contain
+paths for programs, libraries or plugins, environement variables or
+other things that you can use to run anything you want. So unless you
+can edit only a very limited number of files, there are many ways to
+open a root shell.
+
+>>> another options is using noexec (sudo will preload a shlib overriding
+>>> exec calls)
+>>
+>> But you have an editor running as root, and you can then edit any file.
+> the idea is that the editor runs as unprivileged user
+
+I was talking about noexec option here.
+
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000494.html b/zarb-ml/mageia-sysadm/2010-November/000494.html new file mode 100644 index 000000000..4e97c2529 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000494.html @@ -0,0 +1,106 @@ + + + + [Mageia-sysadm] [240] Change transifex password + + + + + + + + + +

[Mageia-sysadm] [240] Change transifex password

+ root at mageia.org + root at mageia.org +
+ Thu Nov 11 00:58:34 CET 2010 +

+
+ +
Revision: 240
+Author:   dmorgan
+Date:     2010-11-11 00:58:34 +0100 (Thu, 11 Nov 2010)
+Log Message:
+-----------
+Change transifex password
+
+Modified Paths:
+--------------
+    puppet/modules/transifex/manifests/init.pp
+    puppet/modules/transifex/templates/20-engines.conf
+
+Modified: puppet/modules/transifex/manifests/init.pp
+===================================================================
+--- puppet/modules/transifex/manifests/init.pp	2010-11-10 17:21:43 UTC (rev 239)
++++ puppet/modules/transifex/manifests/init.pp	2010-11-10 23:58:34 UTC (rev 240)
+@@ -2,7 +2,8 @@
+   package { 'transifex':
+     ensure => installed
+   }
+-  
++ 
++  $password = extlookup("transifex_password") 
+   file { "20-engines.conf":
+     path => "/etc/transifex/20-engines.conf",
+     ensure => present,
+
+Modified: puppet/modules/transifex/templates/20-engines.conf
+===================================================================
+--- puppet/modules/transifex/templates/20-engines.conf	2010-11-10 17:21:43 UTC (rev 239)
++++ puppet/modules/transifex/templates/20-engines.conf	2010-11-10 23:58:34 UTC (rev 240)
+@@ -9,7 +9,7 @@
+ DATABASE_NAME = 'transifex'
+ # The following are not used for sqlite3
+ DATABASE_USER = 'transifex'
+-DATABASE_PASSWORD = 'transifex'
++DATABASE_PASSWORD = '<%= password %>'
+ DATABASE_HOST = 'pgsql.mageia.org'           # Set to empty string for local socket
+ DATABASE_PORT = ''             # Set to empty string for default
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101111/29e24840/attachment.html>
+
+ + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000495.html b/zarb-ml/mageia-sysadm/2010-November/000495.html new file mode 100644 index 000000000..42048cb21 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000495.html @@ -0,0 +1,76 @@ + + + + [Mageia-sysadm] Usernames, uids, and groups + + + + + + + + + +

[Mageia-sysadm] Usernames, uids, and groups

+ Buchan Milne + bgmilne at multilinks.com +
+ Thu Nov 11 11:07:09 CET 2010 +

+
+ +
On Wednesday, 10 November 2010 13:32:47 Michael Scherer wrote:
+> Le mercredi 10 novembre 2010 à 11:55 +0100, nicolas vigier a écrit :
+> > On Wed, 10 Nov 2010, Luca Berra wrote:
+> > > 2) Accountability. No idea in France, but here system administratros
+> > > need to be accounted (*).
+> > 
+> > When someone runs "sudo su -" or something equivalent there is no
+> > accountability on what he did after that.
+> 
+> Even more cunning, emacs or vim can run process ( except that vim has a
+> mode where it can prevent it with -Z, do not know for emacs ).
+
+This is what sudoedit is for.
+
+Regards,
+Buchan
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000496.html b/zarb-ml/mageia-sysadm/2010-November/000496.html new file mode 100644 index 000000000..4ed9302b1 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000496.html @@ -0,0 +1,64 @@ + + + + [Mageia-sysadm] Puppet Report for valstar.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for valstar.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Fri Nov 12 00:52:29 CET 2010 +

+
+ +
Fri Nov 12 00:52:28 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: end of file reached
+Fri Nov 12 00:52:28 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000497.html b/zarb-ml/mageia-sysadm/2010-November/000497.html new file mode 100644 index 000000000..06d1df6da --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000497.html @@ -0,0 +1,82 @@ + + + + [Mageia-sysadm] Installing firewall + + + + + + + + + +

[Mageia-sysadm] Installing firewall

+ nicolas vigier + boklm at mars-attacks.org +
+ Fri Nov 12 18:30:46 CET 2010 +

+
+ +
Hello,
+
+The Mageia packages repository will be stored on valstar. As the
+repository will be needed on build nodes, it will have to be either
+mirrored or mounted via nfs (readonly). If we use nfs, I think we should
+first setup a firewall before installing the nfs server. A firewall
+would also be useful to filter connections to the pgsql/mysql servers,
+to the build nodes, etc ...
+
+I suggest using shorewall to manage the firewall configuration. Any
+comment about this ?
+
+I plan to write a shorewall module in puppet, test it on jonund first,
+without installing shorewall (only writting the config files), then
+install shorewall on jonund, and if we didn't lose access to jonund
+install it on other nodes.
+
+Nicolas
+
+
+ + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000498.html b/zarb-ml/mageia-sysadm/2010-November/000498.html new file mode 100644 index 000000000..b9021db3b --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000498.html @@ -0,0 +1,649 @@ + + + + [Mageia-sysadm] [241] Add a module to construct files from fragments. + + + + + + + + + +

[Mageia-sysadm] [241] Add a module to construct files from fragments.

+ root at mageia.org + root at mageia.org +
+ Fri Nov 12 18:42:23 CET 2010 +

+
+ +
Revision: 241
+Author:   boklm
+Date:     2010-11-12 18:42:22 +0100 (Fri, 12 Nov 2010)
+Log Message:
+-----------
+Add a module to construct files from fragments.
+
+Downloaded from https://github.com/ripienaar/puppet-concat/
+
+Added Paths:
+-----------
+    puppet/modules/concat/
+    puppet/modules/concat/CHANGELOG
+    puppet/modules/concat/README.markdown
+    puppet/modules/concat/files/
+    puppet/modules/concat/files/concatfragments.sh
+    puppet/modules/concat/files/null/
+    puppet/modules/concat/files/null/.gitignore
+    puppet/modules/concat/manifests/
+    puppet/modules/concat/manifests/fragment.pp
+    puppet/modules/concat/manifests/init.pp
+    puppet/modules/concat/manifests/setup.pp
+
+Added: puppet/modules/concat/CHANGELOG
+===================================================================
+--- puppet/modules/concat/CHANGELOG	                        (rev 0)
++++ puppet/modules/concat/CHANGELOG	2010-11-12 17:42:22 UTC (rev 241)
+@@ -0,0 +1,27 @@
++KNOWN ISSUES:
++- In 0.24.8 you will see inintended notifies, if you build a file
++  in a run, the next run will also see it as changed.  This is due
++  to how 0.24.8 does the purging of unhandled files, this is improved
++  in 0.25.x and we cannot work around it in our code.
++
++CHANGELOG:
++- 2010/02/19 - initial release
++- 2010/03/12 - add support for 0.24.8 and newer
++             - make the location of sort configurable
++             - add the ability to add shell comment based warnings to
++               top of files
++             - add the ablity to create empty files
++- 2010/04/05 - fix parsing of WARN and change code style to match rest
++               of the code
++             - Better and safer boolean handling for warn and force
++             - Don't use hard coded paths in the shell script, set PATH
++               top of the script
++             - Use file{} to copy the result and make all fragments owned
++               by root.  This means we can chnage the ownership/group of the
++               resulting file at any time.
++             - You can specify ensure => "/some/other/file" in concat::fragment
++               to include the contents of a symlink into the final file.
++- 2010/04/16 - Add more cleaning of the fragment name - removing / from the $name
++- 2010/05/22 - Improve documentation and show the use of ensure =>
++- 2010/07/14 - Add support for setting the filebucket behavior of files
++- 2010/10/04 - Make the warning message configurable
+
+Added: puppet/modules/concat/README.markdown
+===================================================================
+--- puppet/modules/concat/README.markdown	                        (rev 0)
++++ puppet/modules/concat/README.markdown	2010-11-12 17:42:22 UTC (rev 241)
+@@ -0,0 +1,103 @@
++What is it?
++===========
++
++A Puppet module that can construct files from fragments.
++
++Please see the comments in the various .pp files for details
++as well as posts on my blog at http://www.devco.net/
++
++Released under the Apache 2.0 licence
++
++Usage:
++------
++
++If you wanted a /etc/motd file that listed all the major modules
++on the machine.  And that would be maintained automatically even
++if you just remove the include lines for other modules you could
++use code like below, a sample /etc/motd would be:
++
++<pre>
++Puppet modules on this server:
++
++    -- Apache
++    -- MySQL
++</pre>
++
++Local sysadmins can also append to the file by just editing /etc/motd.local
++their changes will be incorporated into the puppet managed motd.
++
++<pre>
++# class to setup basic motd, include on all nodes
++class motd {
++   include concat::setup
++   $motd = "/etc/motd"
++
++   concat{$motd,
++      owner => root,
++      group => root,
++      mode  => 644
++   }
++
++   concat::fragment{"motd_header":
++      target => $motd,
++      content => "\nPuppet modules on this server:\n\n",
++      order   => 01,
++   }
++
++   # local users on the machine can append to motd by just creating
++   # /etc/motd.local
++   concat::fragment{"motd_local":
++      target => $motd,
++      ensure  => "/etc/motd.local",
++      order   => 15
++   }
++}
++
++# used by other modules to register themselves in the motd
++define motd::register($content="", $order=10) {
++   if $content == "" {
++      $body = $name
++   } else {
++      $body = $content
++   }
++
++   concat::fragment{"motd_fragment_$name":
++      target  => "/etc/motd",
++      content => "    -- $body\n"
++   }
++}
++
++# a sample apache module
++class apache {
++   include apache::install, apache::config, apache::service
++
++   motd::register{"Apache": }
++}
++</pre>
++
++Known Issues:
++-------------
++* In 0.24.8 you will see inintended notifies, if you build a file
++  in a run, the next run will also see it as changed.  This is due
++  to how 0.24.8 does the purging of unhandled files, this is improved
++  in 0.25.x and we cannot work around it in our code.
++
++Contributors:
++-------------
++**Paul Elliot**   
++
++ * Provided 0.24.8 support, shell warnings and empty file creation support.
++
++**Chad Netzer**
++
++ * Various patches to improve safety of file operations
++ * Symlink support
++
++**David Schmitt**
++
++ * Patch to remove hard coded paths relying on OS path
++ * Patch to use file{} to copy the resulting file to the final destination.  This means Puppet client will show diffs and that hopefully we can change file ownerships now
++
++Contact:
++--------
++You can contact me on rip at devco.net or follow my blog at http://www.devco.net I am also on twitter as ripienaar
+
+Added: puppet/modules/concat/files/concatfragments.sh
+===================================================================
+--- puppet/modules/concat/files/concatfragments.sh	                        (rev 0)
++++ puppet/modules/concat/files/concatfragments.sh	2010-11-12 17:42:22 UTC (rev 241)
+@@ -0,0 +1,123 @@
++#!/bin/bash
++
++# Script to concat files to a config file.
++#
++# Given a directory like this:
++# /path/to/conf.d
++# |-- fragments
++# |   |-- 00_named.conf
++# |   |-- 10_domain.net
++# |   `-- zz_footer
++#
++# The script supports a test option that will build the concat file to a temp location and 
++# use /usr/bin/cmp to verify if it should be run or not.  This would result in the concat happening
++# twice on each run but gives you the option to have an unless option in your execs to inhibit rebuilds.
++# 
++# Without the test option and the unless combo your services that depend on the final file would end up 
++# restarting on each run, or in other manifest models some changes might get missed.
++#
++# OPTIONS:
++#  -o	The file to create from the sources
++#  -d	The directory where the fragments are kept
++#  -t	Test to find out if a build is needed, basically concats the files to a temp
++#       location and compare with what's in the final location, return codes are designed
++#       for use with unless on an exec resource
++#  -w   Add a shell style comment at the top of the created file to warn users that it 
++#       is generated by puppet
++#  -f   Enables the creation of empty output files when no fragments are found
++#  -n	Sort the output numerically rather than the default alpha sort
++#
++# the command: 
++#
++#   concatfragments.sh -o /path/to/conffile.cfg -d /path/to/conf.d
++#
++# creates /path/to/conf.d/fragments.concat and copies the resulting 
++# file to /path/to/conffile.cfg.  The files will be sorted alphabetically
++# pass the -n switch to sort numerically.
++# 
++# The script does error checking on the various dirs and files to make
++# sure things don't fail.
++
++OUTFILE=""
++WORKDIR=""
++TEST=""
++FORCE=""
++WARN=""
++SORTARG="-z"
++
++PATH=/sbin:/usr/sbin:/bin:/usr/bin
++
++while getopts "o:s:d:tnw:f" options; do
++	case $options in
++		o ) OUTFILE=$OPTARG;;
++		d ) WORKDIR=$OPTARG;;
++		n ) SORTARG="-zn";;
++		w ) WARNMSG="$OPTARG";;
++		f ) FORCE="true";;
++		t ) TEST="true";;
++		* ) echo "Specify output file with -o and fragments directory with -d"
++		    exit 1;;
++	esac
++done
++
++# do we have -o?
++if [ x${OUTFILE} = "x" ]; then
++	echo "Please specify an output file with -o"
++	exit 1
++fi
++
++# do we have -d?
++if [ x${WORKDIR} = "x" ]; then
++	echo "Please fragments directory with -d"
++	exit 1
++fi
++
++# can we write to -o?
++if [ -a ${OUTFILE} ]; then
++	if [ ! -w ${OUTFILE} ]; then
++		echo "Cannot write to ${OUTFILE}"
++		exit 1
++	fi
++else
++	if [ ! -w `dirname ${OUTFILE}` ]; then
++		echo "Cannot write to `dirname ${OUTFILE}` to create ${OUTFILE}"
++		exit 1
++	fi
++fi
++
++# do we have a fragments subdir inside the work dir?
++if [ ! -d "${WORKDIR}/fragments" ]  && [ ! -x "${WORKDIR}/fragments" ]; then
++	echo "Cannot access the fragments directory"
++	exit 1
++fi
++
++# are there actually any fragments?
++if [ ! "$(ls -A ${WORKDIR}/fragments)" ]; then
++	if [ x${FORCE} = "x" ]; then
++		echo "The fragments directory is empty, cowardly refusing to make empty config files"
++		exit 1
++	fi
++fi
++
++cd ${WORKDIR}
++
++if [ x${WARNMSG} = "x" ]; then
++	: > "fragments.concat"
++else
++	echo -e "$WARNMSG" > "fragments.concat"
++fi
++
++# find all the files in the fragments directory, sort them numerically and concat to fragments.concat in the working dir
++find fragments/ -type f -follow -print0 |sort ${SORTARG}|xargs -0 cat >>"fragments.concat"
++
++if [ x${TEST} = "x" ]; then
++	# This is a real run, copy the file to outfile
++	cp fragments.concat ${OUTFILE}
++	RETVAL=$?
++else
++	# Just compare the result to outfile to help the exec decide
++	cmp ${OUTFILE} fragments.concat
++	RETVAL=$?
++fi
++
++exit $RETVAL
+
+
+Property changes on: puppet/modules/concat/files/concatfragments.sh
+___________________________________________________________________
+Added: svn:executable
+   + *
+Added: svn:eol-style
+   + native
+
+Added: puppet/modules/concat/files/null/.gitignore
+===================================================================
+Added: puppet/modules/concat/manifests/fragment.pp
+===================================================================
+--- puppet/modules/concat/manifests/fragment.pp	                        (rev 0)
++++ puppet/modules/concat/manifests/fragment.pp	2010-11-12 17:42:22 UTC (rev 241)
+@@ -0,0 +1,51 @@
++# Puts a file fragment into a directory previous setup using concat
++# 
++# OPTIONS:
++#   - target    The file that these fragments belong to
++#   - content   If present puts the content into the file
++#   - source    If content was not specified, use the source
++#   - order     By default all files gets a 10_ prefix in the directory
++#               you can set it to anything else using this to influence the
++#               order of the content in the file
++#   - ensure    Present/Absent or destination to a file to include another file
++#   - mode      Mode for the file
++#   - owner     Owner of the file
++#   - group     Owner of the file
++#   - backup    Controls the filebucketing behavior of the final file and
++#               see File type reference for its use.  Defaults to 'puppet'
++define concat::fragment($target, $content='', $source='', $order=10, $ensure = "present", $mode = 0644, $owner = root, $group = root, $backup = "puppet") {
++    $safe_name = regsubst($name, '/', '_', 'G')
++    $safe_target_name = regsubst($target, '/', '_', 'G')
++    $concatdir = $concat::setup::concatdir
++    $fragdir = "${concatdir}/${safe_target_name}"
++
++    # if content is passed, use that, else if source is passed use that
++    # if neither passed, but $ensure is in symlink form, make a symlink
++    case $content {
++        "": {
++                case $source {
++                        "": {
++                                case $ensure {
++                                    "", "absent", "present", "file", "directory": {
++                                        crit("No content, source or symlink specified")
++                                    }
++                                }
++                            }
++                   default: { File{ source => $source } }
++                }
++            }
++        default: { File{ content => $content } }
++    }
++
++    file{"${fragdir}/fragments/${order}_${safe_name}":
++        mode   => $mode,
++        owner  => $owner,
++        group  => $group,
++        ensure => $ensure,
++        backup => $backup,
++        alias  => "concat_fragment_${name}",
++        notify => Exec["concat_${target}"]
++    }
++}
++
++# vi:tabstop=4:expandtab:ai
+
+Added: puppet/modules/concat/manifests/init.pp
+===================================================================
+--- puppet/modules/concat/manifests/init.pp	                        (rev 0)
++++ puppet/modules/concat/manifests/init.pp	2010-11-12 17:42:22 UTC (rev 241)
+@@ -0,0 +1,164 @@
++# A system to construct files using fragments from other files or templates.
++#
++# This requires at least puppet 0.25 to work correctly as we use some 
++# enhancements in recursive directory management and regular expressions
++# to do the work here.
++#
++# USAGE:
++# The basic use case is as below:
++#
++# concat{"/etc/named.conf": 
++#    notify => Service["named"]
++# }
++#
++# concat::fragment{"foo.com_config":
++#    target  => "/etc/named.conf",
++#    order   => 10,
++#    content => template("named_conf_zone.erb")
++# }
++#
++# # add a fragment not managed by puppet so local users 
++# # can add content to managed file
++# concat::fragment{"foo.com_user_config":
++#    target  => "/etc/named.conf",
++#    order   => 12,
++#    ensure  => "/etc/named.conf.local"
++# }
++#
++# This will use the template named_conf_zone.erb to build a single 
++# bit of config up and put it into the fragments dir.  The file
++# will have an number prefix of 10, you can use the order option
++# to control that and thus control the order the final file gets built in.
++#
++# SETUP:
++# The class concat::setup defines a variable $concatdir - you should set this
++# to a directory where you want all the temporary files and fragments to be
++# stored.  Avoid placing this somewhere like /tmp since you should never
++# delete files here, puppet will manage them.
++#
++# There's some regular expression magic to figure out the puppet version but
++# if you're on an older 0.24 version just set $puppetversion = 24
++#
++# Before you can use any of the concat features you should include the 
++# class concat::setup somewhere on your node first.
++#
++# DETAIL:
++# We use a helper shell script called concatfragments.sh that gets placed
++# in /usr/local/bin to do the concatenation.  While this might seem more 
++# complex than some of the one-liner alternatives you might find on the net
++# we do a lot of error checking and safety checks in the script to avoid 
++# problems that might be caused by complex escaping errors etc.
++# 
++# LICENSE:
++# Apache Version 2
++#
++# LATEST:
++# http://github.com/ripienaar/puppet-concat/
++#
++# CONTACT:
++# R.I.Pienaar <rip at devco.net> 
++# Volcane on freenode
++# @ripienaar on twitter
++# www.devco.net
++
++
++# Sets up so that you can use fragments to build a final config file, 
++#
++# OPTIONS:
++#  - mode       The mode of the final file
++#  - owner      Who will own the file
++#  - group      Who will own the file
++#  - force      Enables creating empty files if no fragments are present
++#  - warn       Adds a normal shell style comment top of the file indicating
++#               that it is built by puppet
++#  - backup     Controls the filebucketing behavior of the final file and
++#               see File type reference for its use.  Defaults to 'puppet'
++#
++# ACTIONS:
++#  - Creates fragment directories if it didn't exist already
++#  - Executes the concatfragments.sh script to build the final file, this script will create
++#    directory/fragments.concat.   Execution happens only when:
++#    * The directory changes 
++#    * fragments.concat != final destination, this means rebuilds will happen whenever 
++#      someone changes or deletes the final file.  Checking is done using /usr/bin/cmp.
++#    * The Exec gets notified by something else - like the concat::fragment define
++#  - Copies the file over to the final destination using a file resource
++#
++# ALIASES:
++#  - The exec can notified using Exec["concat_/path/to/file"] or Exec["concat_/path/to/directory"]
++#  - The final file can be referened as File["/path/to/file"] or File["concat_/path/to/file"]  
++define concat($mode = 0644, $owner = "root", $group = "root", $warn = "false", $force = "false", $backup = "puppet") {
++    $safe_name   = regsubst($name, '/', '_', 'G')
++    $concatdir   = $concat::setup::concatdir
++    $version     = $concat::setup::majorversion
++    $fragdir     = "${concatdir}/${safe_name}"
++    $concat_name = "fragments.concat.out"
++    $default_warn_message = '# This file is managed by Puppet. DO NOT EDIT.'
++
++    case $warn {
++        'true',true,yes,on:   { $warnmsg = "$default_warn_message" }
++        'false',false,no,off: { $warnmsg = "" }
++        default:              { $warnmsg = "$warn" }
++    }
++
++    $warnmsg_escaped = regsubst($warnmsg, "'", "'\\\\''", 'G')
++    $warnflag = $warnmsg_escaped ? {
++        ''      => '',
++        default => "-w '$warnmsg_escaped'"
++    }
++
++    case $force {
++        'true',true,yes,on: { $forceflag = "-f" }
++        'false',false,no,off: { $forceflag = "" }
++        default: { fail("Improper 'force' value given to concat: $force") }
++    }
++
++    File{
++        owner  => root,
++        group  => root,
++        mode   => $mode,
++        backup => $backup
++    }
++
++    file{$fragdir:
++            ensure   => directory;
++
++         "${fragdir}/fragments":
++            ensure   => directory,
++            recurse  => true,
++            purge    => true,
++            force    => true,
++            ignore   => [".svn", ".git", ".gitignore"],
++            source   => $version ? {
++                            24      => "puppet:///concat/null",
++                            default => undef,
++                        },
++            notify   => Exec["concat_${name}"];
++
++         "${fragdir}/fragments.concat":
++            ensure   => present;
++
++         "${fragdir}/${concat_name}":
++            ensure   => present;
++
++         $name:
++            source   => "${fragdir}/${concat_name}",
++            owner    => $owner,
++            group    => $group,
++            checksum => md5,
++            mode     => $mode,
++            ensure   => present,
++            alias    => "concat_${name}";
++    }
++
++    exec{"concat_${name}":
++        user      => root,
++        group     => root,
++        notify    => File[$name],
++        subscribe => File[$fragdir],
++        alias     => "concat_${fragdir}",
++        require   => [ File["/usr/local/bin/concatfragments.sh"], File[$fragdir], File["${fragdir}/fragments"], File["${fragdir}/fragments.concat"] ],
++        unless    => "/usr/local/bin/concatfragments.sh -o ${fragdir}/${concat_name} -d ${fragdir} -t ${warnflag} ${forceflag}",
++        command   => "/usr/local/bin/concatfragments.sh -o ${fragdir}/${concat_name} -d ${fragdir} ${warnflag} ${forceflag}",
++    }
++}
+
+Added: puppet/modules/concat/manifests/setup.pp
+===================================================================
+--- puppet/modules/concat/manifests/setup.pp	                        (rev 0)
++++ puppet/modules/concat/manifests/setup.pp	2010-11-12 17:42:22 UTC (rev 241)
+@@ -0,0 +1,36 @@
++# Sets up the concat system.
++#
++# $concatdir should point to a place where you wish the fragments to
++# live. This should not be somewhere like /tmp since ideally these files
++# should not be deleted ever, puppet should always manage them
++#
++# $puppetversion should be either 24 or 25 to enable a 24 compatible
++# mode, in 24 mode you might see phantom notifies this is a side effect
++# of the method we use to clear the fragments directory.
++# 
++# The regular expression below will try to figure out your puppet version
++# but this code will only work in 0.24.8 and newer.
++#
++# It also copies out the concatfragments.sh file to /usr/local/bin
++class concat::setup {
++    $concatdir = "/var/lib/puppet/concat"
++    $majorversion = regsubst($puppetversion, '^[0-9]+[.]([0-9]+)[.][0-9]+$', '\1')
++
++    file{"/usr/local/bin/concatfragments.sh": 
++            owner  => root,
++            group  => root,
++            mode   => 755,
++            source => $majorversion ? {
++                        24      => "puppet:///concat/concatfragments.sh",
++                        default => "puppet:///modules/concat/concatfragments.sh"
++                      };
++
++         $concatdir: 
++            ensure => directory,
++            owner  => root,
++            group  => root,
++            mode   => 755;
++    }
++}
++
++# vi:tabstop=4:expandtab:ai
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101112/c7579815/attachment-0001.html>
+
+ + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000499.html b/zarb-ml/mageia-sysadm/2010-November/000499.html new file mode 100644 index 000000000..4eaf14229 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000499.html @@ -0,0 +1,307 @@ + + + + [Mageia-sysadm] [242] add shorewall module + + + + + + + + + +

[Mageia-sysadm] [242] add shorewall module

+ root at mageia.org + root at mageia.org +
+ Fri Nov 12 21:38:24 CET 2010 +

+
+ +
Revision: 242
+Author:   boklm
+Date:     2010-11-12 21:38:24 +0100 (Fri, 12 Nov 2010)
+Log Message:
+-----------
+add shorewall module
+
+Added Paths:
+-----------
+    puppet/modules/shorewall/
+    puppet/modules/shorewall/files/
+    puppet/modules/shorewall/files/footers/
+    puppet/modules/shorewall/files/footers/interfaces
+    puppet/modules/shorewall/files/footers/policy
+    puppet/modules/shorewall/files/footers/rules
+    puppet/modules/shorewall/files/footers/zones
+    puppet/modules/shorewall/files/headers/
+    puppet/modules/shorewall/files/headers/interfaces
+    puppet/modules/shorewall/files/headers/policy
+    puppet/modules/shorewall/files/headers/rules
+    puppet/modules/shorewall/files/headers/zones
+    puppet/modules/shorewall/manifests/
+    puppet/modules/shorewall/manifests/init.pp
+
+Added: puppet/modules/shorewall/files/footers/interfaces
+===================================================================
+--- puppet/modules/shorewall/files/footers/interfaces	                        (rev 0)
++++ puppet/modules/shorewall/files/footers/interfaces	2010-11-12 20:38:24 UTC (rev 242)
+@@ -0,0 +1 @@
++#LAST LINE -- DO NOT REMOVE
+
+Added: puppet/modules/shorewall/files/footers/policy
+===================================================================
+--- puppet/modules/shorewall/files/footers/policy	                        (rev 0)
++++ puppet/modules/shorewall/files/footers/policy	2010-11-12 20:38:24 UTC (rev 242)
+@@ -0,0 +1 @@
++#LAST LINE -- DO NOT REMOVE
+
+Added: puppet/modules/shorewall/files/footers/rules
+===================================================================
+--- puppet/modules/shorewall/files/footers/rules	                        (rev 0)
++++ puppet/modules/shorewall/files/footers/rules	2010-11-12 20:38:24 UTC (rev 242)
+@@ -0,0 +1 @@
++#LAST LINE -- DO NOT REMOVE
+
+Added: puppet/modules/shorewall/files/footers/zones
+===================================================================
+--- puppet/modules/shorewall/files/footers/zones	                        (rev 0)
++++ puppet/modules/shorewall/files/footers/zones	2010-11-12 20:38:24 UTC (rev 242)
+@@ -0,0 +1 @@
++#LAST LINE -- DO NOT REMOVE
+
+Added: puppet/modules/shorewall/files/headers/interfaces
+===================================================================
+--- puppet/modules/shorewall/files/headers/interfaces	                        (rev 0)
++++ puppet/modules/shorewall/files/headers/interfaces	2010-11-12 20:38:24 UTC (rev 242)
+@@ -0,0 +1,10 @@
++#
++# Shorewall version 4 - Interfaces File
++#
++# For information about entries in this file, type "man shorewall-interfaces"
++#
++# The manpage is also online at
++# http://www.shorewall.net/manpages/shorewall-interfaces.html
++#
++###############################################################################
++#ZONE	INTERFACE	BROADCAST	OPTIONS
+
+Added: puppet/modules/shorewall/files/headers/policy
+===================================================================
+--- puppet/modules/shorewall/files/headers/policy	                        (rev 0)
++++ puppet/modules/shorewall/files/headers/policy	2010-11-12 20:38:24 UTC (rev 242)
+@@ -0,0 +1,11 @@
++#
++# Shorewall version 4 - Policy File
++#
++# For information about entries in this file, type "man shorewall-policy"
++#
++# The manpage is also online at
++# http://www.shorewall.net/manpages/shorewall-policy.html
++#
++###############################################################################
++#SOURCE	DEST	POLICY		LOG	LIMIT:		CONNLIMIT:
++#				LEVEL	BURST		MASK
+
+Added: puppet/modules/shorewall/files/headers/rules
+===================================================================
+--- puppet/modules/shorewall/files/headers/rules	                        (rev 0)
++++ puppet/modules/shorewall/files/headers/rules	2010-11-12 20:38:24 UTC (rev 242)
+@@ -0,0 +1,11 @@
++#
++# Shorewall version 4 - Rules File
++#
++# For information on the settings in this file, type "man shorewall-rules"
++#
++# The manpage is also online at
++# http://www.shorewall.net/manpages/shorewall-rules.html
++#
++####################################################################################################################################################
++#ACTION		SOURCE		DEST		PROTO	DEST	SOURCE		ORIGINAL	RATE		USER/	MARK	CONNLIMIT	TIME
++#							PORT	PORT(S)		DEST		LIMIT		GROUP
+
+Added: puppet/modules/shorewall/files/headers/zones
+===================================================================
+--- puppet/modules/shorewall/files/headers/zones	                        (rev 0)
++++ puppet/modules/shorewall/files/headers/zones	2010-11-12 20:38:24 UTC (rev 242)
+@@ -0,0 +1,11 @@
++#
++# Shorewall version 4 - Zones File
++#
++# For information about this file, type "man shorewall-zones"
++#
++# The manpage is also online at
++# http://www.shorewall.net/manpages/shorewall-zones.html
++#
++###############################################################################
++#ZONE	TYPE		OPTIONS		IN			OUT
++#					OPTIONS			OPTIONS
+
+Added: puppet/modules/shorewall/manifests/init.pp
+===================================================================
+--- puppet/modules/shorewall/manifests/init.pp	                        (rev 0)
++++ puppet/modules/shorewall/manifests/init.pp	2010-11-12 20:38:24 UTC (rev 242)
+@@ -0,0 +1,102 @@
++class shorewall {
++  include concat::setup
++
++  define shorewallfile () {
++     $filename = "/etc/shorewall/${name}"
++     $header = "puppet:///modules/shorewall/headers/${name}"
++     $footer = "puppet:///modules/shorewall/footers/${name}"
++     concat{$filename:
++	owner => root,
++	group => root,
++	mode => 600,
++     }
++
++     concat::fragment{"${name}_header":
++     	target => $filename,
++	order => 1,
++	source => $header,
++     }
++
++     concat::fragment{"${name}_footer":
++     	target => $filename,
++	order => 99,
++	source => $footer,
++     }
++  }
++
++  ### Rules
++  shorewallfile{ rules: }
++  define rule_line($order = 50) {
++     $filename = "/etc/shorewall/rules"
++     $line = $name
++     concat::fragment{"newline_${name}":
++	target => $filename,
++	order => $order,
++	content => $line,
++     }
++  }
++  class allow_ssh_in {
++     rule_line { "ACCEPT all all tcp 22":
++     	order => 5,
++     }
++  }
++  class allow_dns_in {
++     rule_line { "ACCEPT net fw tcp 53" }
++     rule_line { "ACCEPT net fw udp 53" }
++  }
++  class allow_smtp_in {
++     rule_line { "ACCEPT net fw tcp 25" }
++  }
++  class allow_www_in {
++     rule_line { "ACCEPT net fw tcp 80" }
++  }
++
++  ### Zones
++  shorewallfile{ zones: }
++  define zone_line($order = 50) {
++     $filename = "/etc/shorewall/zones"
++     $line = $name
++     concat::fragment{"newline_${name}":
++	target => $filename,
++	order => $order,
++	content => $line,
++     }
++  }
++  class default_zones {
++     zone_line { "net     ipv4":
++	$order => 2,
++     }
++     zone_line { "fw      firewall":
++	$order => 3,
++     }
++  }
++
++  ### Policy
++  shorewallfile{ policy: }
++  define policy_line($order = 50) {
++     $filename = "/etc/shorewall/policy"
++     $line = $name
++     concat::fragment{"newline_${name}":
++	target => $filename,
++	order => $order,
++	content => $line,
++     }
++  }
++  class default_policy {
++     policy_line{ "fw	net	ACCEPT":
++     	$order => 2,
++     }
++     policy_line{ "net	all	DROP	info":
++     	$order => 3,
++     }
++     policy_line{ "all	all	REJECT	info":
++     	$order => 4,
++     }
++  }
++
++  class default_firewall() {
++     include default_zones
++     include default_policy
++     include allow_ssh_in
++  }
++}
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101112/b0723b5d/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000500.html b/zarb-ml/mageia-sysadm/2010-November/000500.html new file mode 100644 index 000000000..ce059c99f --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000500.html @@ -0,0 +1,135 @@ + + + + [Mageia-sysadm] [243] save shorewall config in /etc/shorewall_test for testing + + + + + + + + + +

[Mageia-sysadm] [243] save shorewall config in /etc/shorewall_test for testing

+ root at mageia.org + root at mageia.org +
+ Fri Nov 12 21:43:03 CET 2010 +

+
+ +
Revision: 243
+Author:   boklm
+Date:     2010-11-12 21:43:03 +0100 (Fri, 12 Nov 2010)
+Log Message:
+-----------
+save shorewall config in /etc/shorewall_test for testing
+
+Modified Paths:
+--------------
+    puppet/modules/shorewall/manifests/init.pp
+
+Modified: puppet/modules/shorewall/manifests/init.pp
+===================================================================
+--- puppet/modules/shorewall/manifests/init.pp	2010-11-12 20:38:24 UTC (rev 242)
++++ puppet/modules/shorewall/manifests/init.pp	2010-11-12 20:43:03 UTC (rev 243)
+@@ -1,8 +1,10 @@
+ class shorewall {
+   include concat::setup
+ 
++  $shorewalldir = "/etc/shorewall_test"
++
+   define shorewallfile () {
+-     $filename = "/etc/shorewall/${name}"
++     $filename = "${shorewalldir}/${name}"
+      $header = "puppet:///modules/shorewall/headers/${name}"
+      $footer = "puppet:///modules/shorewall/footers/${name}"
+      concat{$filename:
+@@ -27,7 +29,7 @@
+   ### Rules
+   shorewallfile{ rules: }
+   define rule_line($order = 50) {
+-     $filename = "/etc/shorewall/rules"
++     $filename = "${shorewalldir}/shorewall/rules"
+      $line = $name
+      concat::fragment{"newline_${name}":
+ 	target => $filename,
+@@ -54,7 +56,7 @@
+   ### Zones
+   shorewallfile{ zones: }
+   define zone_line($order = 50) {
+-     $filename = "/etc/shorewall/zones"
++     $filename = "${shorewalldir}/shorewall/zones"
+      $line = $name
+      concat::fragment{"newline_${name}":
+ 	target => $filename,
+@@ -74,7 +76,7 @@
+   ### Policy
+   shorewallfile{ policy: }
+   define policy_line($order = 50) {
+-     $filename = "/etc/shorewall/policy"
++     $filename = "${shorewalldir}/shorewall/policy"
+      $line = $name
+      concat::fragment{"newline_${name}":
+ 	target => $filename,
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101112/b0caf7cf/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000501.html b/zarb-ml/mageia-sysadm/2010-November/000501.html new file mode 100644 index 000000000..510ced1c5 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000501.html @@ -0,0 +1,104 @@ + + + + [Mageia-sysadm] [244] enable shorewall module on jonund + + + + + + + + + +

[Mageia-sysadm] [244] enable shorewall module on jonund

+ root at mageia.org + root at mageia.org +
+ Fri Nov 12 21:44:42 CET 2010 +

+
+ +
Revision: 244
+Author:   boklm
+Date:     2010-11-12 21:44:42 +0100 (Fri, 12 Nov 2010)
+Log Message:
+-----------
+enable shorewall module on jonund
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-12 20:43:03 UTC (rev 243)
++++ puppet/manifests/nodes.pp	2010-11-12 20:44:42 UTC (rev 244)
+@@ -62,6 +62,7 @@
+     include default_mageia_server
+     #include buildsystem::buildnode
+     timezone::timezone { "Europe/Paris": }
++    include shorewall::default_firewall
+ }
+ 
+ node ecosse {
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101112/bd4adb21/attachment-0001.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000502.html b/zarb-ml/mageia-sysadm/2010-November/000502.html new file mode 100644 index 000000000..6a7b296a7 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000502.html @@ -0,0 +1,80 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Fri Nov 12 21:45:00 CET 2010 +

+
+ +
Fri Nov 12 21:44:59 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Syntax error at '}'; expected '}' at /etc/puppet/modules/shorewall/manifests/init.pp:46 on node jonund.mageia.org
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000503.html b/zarb-ml/mageia-sysadm/2010-November/000503.html new file mode 100644 index 000000000..b7ab7a40e --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000503.html @@ -0,0 +1,117 @@ + + + + [Mageia-sysadm] [245] fix syntax + + + + + + + + + +

[Mageia-sysadm] [245] fix syntax

+ root at mageia.org + root at mageia.org +
+ Fri Nov 12 21:46:15 CET 2010 +

+
+ +
Revision: 245
+Author:   boklm
+Date:     2010-11-12 21:46:15 +0100 (Fri, 12 Nov 2010)
+Log Message:
+-----------
+fix syntax
+
+Modified Paths:
+--------------
+    puppet/modules/shorewall/manifests/init.pp
+
+Modified: puppet/modules/shorewall/manifests/init.pp
+===================================================================
+--- puppet/modules/shorewall/manifests/init.pp	2010-11-12 20:44:42 UTC (rev 244)
++++ puppet/modules/shorewall/manifests/init.pp	2010-11-12 20:46:15 UTC (rev 245)
+@@ -43,14 +43,14 @@
+      }
+   }
+   class allow_dns_in {
+-     rule_line { "ACCEPT net fw tcp 53" }
+-     rule_line { "ACCEPT net fw udp 53" }
++     rule_line { "ACCEPT net fw tcp 53": }
++     rule_line { "ACCEPT net fw udp 53": }
+   }
+   class allow_smtp_in {
+-     rule_line { "ACCEPT net fw tcp 25" }
++     rule_line { "ACCEPT net fw tcp 25": }
+   }
+   class allow_www_in {
+-     rule_line { "ACCEPT net fw tcp 80" }
++     rule_line { "ACCEPT net fw tcp 80": }
+   }
+ 
+   ### Zones
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101112/9705c3c6/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000504.html b/zarb-ml/mageia-sysadm/2010-November/000504.html new file mode 100644 index 000000000..ebfe1339d --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000504.html @@ -0,0 +1,81 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Fri Nov 12 21:46:21 CET 2010 +

+
+ +
Fri Nov 12 21:46:20 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Could not find class shorewall::default_firewall at /etc/puppet/manifests/nodes.pp:65 on node jonund.mageia.org
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000505.html b/zarb-ml/mageia-sysadm/2010-November/000505.html new file mode 100644 index 000000000..436ebba43 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000505.html @@ -0,0 +1,107 @@ + + + + [Mageia-sysadm] [246] fix syntax + + + + + + + + + +

[Mageia-sysadm] [246] fix syntax

+ root at mageia.org + root at mageia.org +
+ Fri Nov 12 21:46:50 CET 2010 +

+
+ +
Revision: 246
+Author:   boklm
+Date:     2010-11-12 21:46:50 +0100 (Fri, 12 Nov 2010)
+Log Message:
+-----------
+fix syntax
+
+Modified Paths:
+--------------
+    puppet/modules/shorewall/manifests/init.pp
+
+Modified: puppet/modules/shorewall/manifests/init.pp
+===================================================================
+--- puppet/modules/shorewall/manifests/init.pp	2010-11-12 20:46:15 UTC (rev 245)
++++ puppet/modules/shorewall/manifests/init.pp	2010-11-12 20:46:50 UTC (rev 246)
+@@ -96,7 +96,7 @@
+      }
+   }
+ 
+-  class default_firewall() {
++  class default_firewall {
+      include default_zones
+      include default_policy
+      include allow_ssh_in
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101112/d13e87ca/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000506.html b/zarb-ml/mageia-sysadm/2010-November/000506.html new file mode 100644 index 000000000..2112c04e0 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000506.html @@ -0,0 +1,81 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Fri Nov 12 21:46:56 CET 2010 +

+
+ +
Fri Nov 12 21:46:55 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Syntax error at 'order'; expected '}' at /etc/puppet/modules/shorewall/manifests/init.pp:69 on node jonund.mageia.org
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000507.html b/zarb-ml/mageia-sysadm/2010-November/000507.html new file mode 100644 index 000000000..c834ba442 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000507.html @@ -0,0 +1,128 @@ + + + + [Mageia-sysadm] [247] fix syntax + + + + + + + + + +

[Mageia-sysadm] [247] fix syntax

+ root at mageia.org + root at mageia.org +
+ Fri Nov 12 21:49:14 CET 2010 +

+
+ +
Revision: 247
+Author:   boklm
+Date:     2010-11-12 21:49:14 +0100 (Fri, 12 Nov 2010)
+Log Message:
+-----------
+fix syntax
+
+Modified Paths:
+--------------
+    puppet/modules/shorewall/manifests/init.pp
+
+Modified: puppet/modules/shorewall/manifests/init.pp
+===================================================================
+--- puppet/modules/shorewall/manifests/init.pp	2010-11-12 20:46:50 UTC (rev 246)
++++ puppet/modules/shorewall/manifests/init.pp	2010-11-12 20:49:14 UTC (rev 247)
+@@ -66,10 +66,10 @@
+   }
+   class default_zones {
+      zone_line { "net     ipv4":
+-	$order => 2,
++	order => 2,
+      }
+      zone_line { "fw      firewall":
+-	$order => 3,
++	order => 3,
+      }
+   }
+ 
+@@ -86,13 +86,13 @@
+   }
+   class default_policy {
+      policy_line{ "fw	net	ACCEPT":
+-     	$order => 2,
++     	order => 2,
+      }
+      policy_line{ "net	all	DROP	info":
+-     	$order => 3,
++     	order => 3,
+      }
+      policy_line{ "all	all	REJECT	info":
+-     	$order => 4,
++     	order => 4,
+      }
+   }
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101112/80b09c3c/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000508.html b/zarb-ml/mageia-sysadm/2010-November/000508.html new file mode 100644 index 000000000..300bedab3 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000508.html @@ -0,0 +1,125 @@ + + + + [Mageia-sysadm] [248] fix path + + + + + + + + + +

[Mageia-sysadm] [248] fix path

+ root at mageia.org + root at mageia.org +
+ Fri Nov 12 21:54:59 CET 2010 +

+
+ +
Revision: 248
+Author:   boklm
+Date:     2010-11-12 21:54:59 +0100 (Fri, 12 Nov 2010)
+Log Message:
+-----------
+fix path
+
+Modified Paths:
+--------------
+    puppet/modules/shorewall/manifests/init.pp
+
+Modified: puppet/modules/shorewall/manifests/init.pp
+===================================================================
+--- puppet/modules/shorewall/manifests/init.pp	2010-11-12 20:49:14 UTC (rev 247)
++++ puppet/modules/shorewall/manifests/init.pp	2010-11-12 20:54:59 UTC (rev 248)
+@@ -29,7 +29,7 @@
+   ### Rules
+   shorewallfile{ rules: }
+   define rule_line($order = 50) {
+-     $filename = "${shorewalldir}/shorewall/rules"
++     $filename = "${shorewalldir}/rules"
+      $line = $name
+      concat::fragment{"newline_${name}":
+ 	target => $filename,
+@@ -56,7 +56,7 @@
+   ### Zones
+   shorewallfile{ zones: }
+   define zone_line($order = 50) {
+-     $filename = "${shorewalldir}/shorewall/zones"
++     $filename = "${shorewalldir}/zones"
+      $line = $name
+      concat::fragment{"newline_${name}":
+ 	target => $filename,
+@@ -76,7 +76,7 @@
+   ### Policy
+   shorewallfile{ policy: }
+   define policy_line($order = 50) {
+-     $filename = "${shorewalldir}/shorewall/policy"
++     $filename = "${shorewalldir}/policy"
+      $line = $name
+      concat::fragment{"newline_${name}":
+ 	target => $filename,
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101112/efb54619/attachment-0001.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000509.html b/zarb-ml/mageia-sysadm/2010-November/000509.html new file mode 100644 index 000000000..82e9d4734 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000509.html @@ -0,0 +1,137 @@ + + + + [Mageia-sysadm] [249] change shorewall test dir + + + + + + + + + +

[Mageia-sysadm] [249] change shorewall test dir

+ root at mageia.org + root at mageia.org +
+ Fri Nov 12 21:57:58 CET 2010 +

+
+ +
Revision: 249
+Author:   boklm
+Date:     2010-11-12 21:57:58 +0100 (Fri, 12 Nov 2010)
+Log Message:
+-----------
+change shorewall test dir
+
+Modified Paths:
+--------------
+    puppet/modules/shorewall/manifests/init.pp
+
+Modified: puppet/modules/shorewall/manifests/init.pp
+===================================================================
+--- puppet/modules/shorewall/manifests/init.pp	2010-11-12 20:54:59 UTC (rev 248)
++++ puppet/modules/shorewall/manifests/init.pp	2010-11-12 20:57:58 UTC (rev 249)
+@@ -1,10 +1,8 @@
+ class shorewall {
+   include concat::setup
+ 
+-  $shorewalldir = "/etc/shorewall_test"
+-
+   define shorewallfile () {
+-     $filename = "${shorewalldir}/${name}"
++     $filename = "/tmp/shorewall/${name}"
+      $header = "puppet:///modules/shorewall/headers/${name}"
+      $footer = "puppet:///modules/shorewall/footers/${name}"
+      concat{$filename:
+@@ -29,7 +27,7 @@
+   ### Rules
+   shorewallfile{ rules: }
+   define rule_line($order = 50) {
+-     $filename = "${shorewalldir}/rules"
++     $filename = "/tmp/shorewall/rules"
+      $line = $name
+      concat::fragment{"newline_${name}":
+ 	target => $filename,
+@@ -56,7 +54,7 @@
+   ### Zones
+   shorewallfile{ zones: }
+   define zone_line($order = 50) {
+-     $filename = "${shorewalldir}/zones"
++     $filename = "/tmp/shorewall/zones"
+      $line = $name
+      concat::fragment{"newline_${name}":
+ 	target => $filename,
+@@ -76,7 +74,7 @@
+   ### Policy
+   shorewallfile{ policy: }
+   define policy_line($order = 50) {
+-     $filename = "${shorewalldir}/policy"
++     $filename = "/tmp/shorewall/policy"
+      $line = $name
+      concat::fragment{"newline_${name}":
+ 	target => $filename,
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101112/ede31812/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000510.html b/zarb-ml/mageia-sysadm/2010-November/000510.html new file mode 100644 index 000000000..32fd10892 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000510.html @@ -0,0 +1,82 @@ + + + + [Mageia-sysadm] Puppet Report for valstar.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for valstar.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Fri Nov 12 22:23:12 CET 2010 +

+
+ +
Fri Nov 12 22:23:12 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: end of file reached
+Fri Nov 12 22:23:12 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000511.html b/zarb-ml/mageia-sysadm/2010-November/000511.html new file mode 100644 index 000000000..2c55993be --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000511.html @@ -0,0 +1,82 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Fri Nov 12 22:57:29 CET 2010 +

+
+ +
Fri Nov 12 22:57:29 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Syntax error at '{'; expected '}' at /etc/puppet/modules/concat/manifests/init.pp:157 on node jonund.mageia.org
+Fri Nov 12 22:57:29 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000512.html b/zarb-ml/mageia-sysadm/2010-November/000512.html new file mode 100644 index 000000000..d4e96a860 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000512.html @@ -0,0 +1,86 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Fri Nov 12 22:59:32 CET 2010 +

+
+ +
Fri Nov 12 22:59:32 +0100 2010 /Stage[main]/Shorewall::Default_policy/Shorewall::Policy_line[all	all	REJECT	info]/Concat::Fragment[newline_all	all	REJECT	info]/File[/_tmp_shorewall_policy/fragments/4_newline_all	all	REJECT	info]/ensure (err): change from absent to present failed: Could not set 'present on ensure: No such file or directory - /_tmp_shorewall_policy/fragments/4_newline_all	all	REJECT	info.puppettmp_5851 at /etc/puppet/modules/concat/manifests/fragment.pp:49
+Fri Nov 12 22:59:32 +0100 2010 /Stage[main]/Shorewall::Default_policy/Shorewall::Policy_line[net	all	DROP	info]/Concat::Fragment[newline_net	all	DROP	info]/File[/_tmp_shorewall_policy/fragments/3_newline_net	all	DROP	info]/ensure (err): change from absent to present failed: Could not set 'present on ensure: No such file or directory - /_tmp_shorewall_policy/fragments/3_newline_net	all	DROP	info.puppettmp_8018 at /etc/puppet/modules/concat/manifests/fragment.pp:49
+Fri Nov 12 22:59:32 +0100 2010 /Stage[main]/Shorewall::Default_zones/Shorewall::Zone_line[net     ipv4]/Concat::Fragment[newline_net     ipv4]/File[/_tmp_shorewall_zones/fragments/2_newline_net     ipv4]/ensure (err): change from absent to present failed: Could not set 'present on ensure: No such file or directory - /_tmp_shorewall_zones/fragments/2_newline_net     ipv4.puppettmp_3039 at /etc/puppet/modules/concat/manifests/fragment.pp:49
+Fri Nov 12 22:59:32 +0100 2010 /Stage[main]/Shorewall::Default_policy/Shorewall::Policy_line[fw	net	ACCEPT]/Concat::Fragment[newline_fw	net	ACCEPT]/File[/_tmp_shorewall_policy/fragments/2_newline_fw	net	ACCEPT]/ensure (err): change from absent to present failed: Could not set 'present on ensure: No such file or directory - /_tmp_shorewall_policy/fragments/2_newline_fw	net	ACCEPT.puppettmp_2107 at /etc/puppet/modules/concat/manifests/fragment.pp:49
+Fri Nov 12 22:59:32 +0100 2010 /Stage[main]/Shorewall::Allow_ssh_in/Shorewall::Rule_line[ACCEPT all all tcp 22]/Concat::Fragment[newline_ACCEPT all all tcp 22]/File[/_tmp_shorewall_rules/fragments/5_newline_ACCEPT all all tcp 22]/ensure (err): change from absent to present failed: Could not set 'present on ensure: No such file or directory - /_tmp_shorewall_rules/fragments/5_newline_ACCEPT all all tcp 22.puppettmp_7873 at /etc/puppet/modules/concat/manifests/fragment.pp:49
+Fri Nov 12 22:59:32 +0100 2010 /Stage[main]/Shorewall::Default_zones/Shorewall::Zone_line[fw      firewall]/Concat::Fragment[newline_fw      firewall]/File[/_tmp_shorewall_zones/fragments/3_newline_fw      firewall]/ensure (err): change from absent to present failed: Could not set 'present on ensure: No such file or directory - /_tmp_shorewall_zones/fragments/3_newline_fw      firewall.puppettmp_8501 at /etc/puppet/modules/concat/manifests/fragment.pp:49
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000513.html b/zarb-ml/mageia-sysadm/2010-November/000513.html new file mode 100644 index 000000000..a6409c2e7 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000513.html @@ -0,0 +1,82 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Fri Nov 12 23:01:15 CET 2010 +

+
+ +
Fri Nov 12 23:01:15 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Unknown function notify at /etc/puppet/modules/concat/manifests/fragment.pp:40 on node jonund.mageia.org
+Fri Nov 12 23:01:15 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000514.html b/zarb-ml/mageia-sysadm/2010-November/000514.html new file mode 100644 index 000000000..73b0b191e --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000514.html @@ -0,0 +1,82 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Fri Nov 12 23:01:29 CET 2010 +

+
+ +
Fri Nov 12 23:01:29 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Unknown function notify at /etc/puppet/modules/concat/manifests/fragment.pp:40 on node jonund.mageia.org
+Fri Nov 12 23:01:29 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000515.html b/zarb-ml/mageia-sysadm/2010-November/000515.html new file mode 100644 index 000000000..633168a59 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000515.html @@ -0,0 +1,113 @@ + + + + [Mageia-sysadm] Installing firewall + + + + + + + + + +

[Mageia-sysadm] Installing firewall

+ Olivier Thauvin + nanardon at nanardon.zarb.org +
+ Fri Nov 12 23:05:04 CET 2010 +

+
+ +
* nicolas vigier (boklm at mars-attacks.org) wrote:
+> Hello,
+> 
+> The Mageia packages repository will be stored on valstar. As the
+> repository will be needed on build nodes, it will have to be either
+> mirrored or mounted via nfs (readonly). If we use nfs, I think we should
+> first setup a firewall before installing the nfs server. A firewall
+> would also be useful to filter connections to the pgsql/mysql servers,
+> to the build nodes, etc ...
+> 
+> I suggest using shorewall to manage the firewall configuration. Any
+> comment about this ?
+
+I saw you mostly wrote the shorewall, however, I don't like myself
+shroewall. Shorewall is nothing more than a set of scripts over iptables
+and I think it add a useless complexity over this last one.
+
+I widelly prefer to use directly iptables. I believe we are experienced
+enough to write iptables rules ourself.
+
+> 
+> I plan to write a shorewall module in puppet, test it on jonund first,
+> without installing shorewall (only writting the config files), then
+> install shorewall on jonund, and if we didn't lose access to jonund
+> install it on other nodes.
+
+Playing with firewall on computer we can access only by network, woot !
+
+I think access control can be done w/o using iptables.
+
+My 2 cents.
+
+> 
+> Nicolas
+> 
+> _______________________________________________
+> Mageia-sysadm mailing list
+> Mageia-sysadm at mageia.org
+> https://www.mageia.org/mailman/listinfo/mageia-sysadm
+-- 
+
+Olivier Thauvin
+CNRS  -  LATMOS
+♖ ♘ ♗ ♕ ♔ ♗ ♘ ♖
+-------------- next part --------------
+A non-text attachment was scrubbed...
+Name: not available
+Type: application/pgp-signature
+Size: 197 bytes
+Desc: not available
+URL: </pipermail/mageia-sysadm/attachments/20101112/a7099c8b/attachment.asc>
+
+ + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000516.html b/zarb-ml/mageia-sysadm/2010-November/000516.html new file mode 100644 index 000000000..40f8a1867 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000516.html @@ -0,0 +1,105 @@ + + + + [Mageia-sysadm] [250] include shorewall before shorewall::default_firewall + + + + + + + + + +

[Mageia-sysadm] [250] include shorewall before shorewall::default_firewall

+ root at mageia.org + root at mageia.org +
+ Fri Nov 12 23:29:17 CET 2010 +

+
+ +
Revision: 250
+Author:   boklm
+Date:     2010-11-12 23:29:17 +0100 (Fri, 12 Nov 2010)
+Log Message:
+-----------
+include shorewall before shorewall::default_firewall
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-12 20:57:58 UTC (rev 249)
++++ puppet/manifests/nodes.pp	2010-11-12 22:29:17 UTC (rev 250)
+@@ -62,6 +62,7 @@
+     include default_mageia_server
+     #include buildsystem::buildnode
+     timezone::timezone { "Europe/Paris": }
++    include shorewall
+     include shorewall::default_firewall
+ }
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101112/069e880e/attachment-0001.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000517.html b/zarb-ml/mageia-sysadm/2010-November/000517.html new file mode 100644 index 000000000..6b1e2e169 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000517.html @@ -0,0 +1,124 @@ + + + + [Mageia-sysadm] [251] add newlines at end of added lines + + + + + + + + + +

[Mageia-sysadm] [251] add newlines at end of added lines

+ root at mageia.org + root at mageia.org +
+ Fri Nov 12 23:29:49 CET 2010 +

+
+ +
Revision: 251
+Author:   boklm
+Date:     2010-11-12 23:29:49 +0100 (Fri, 12 Nov 2010)
+Log Message:
+-----------
+add newlines at end of added lines
+
+Modified Paths:
+--------------
+    puppet/modules/shorewall/manifests/init.pp
+
+Modified: puppet/modules/shorewall/manifests/init.pp
+===================================================================
+--- puppet/modules/shorewall/manifests/init.pp	2010-11-12 22:29:17 UTC (rev 250)
++++ puppet/modules/shorewall/manifests/init.pp	2010-11-12 22:29:49 UTC (rev 251)
+@@ -28,7 +28,7 @@
+   shorewallfile{ rules: }
+   define rule_line($order = 50) {
+      $filename = "/tmp/shorewall/rules"
+-     $line = $name
++     $line = "${name}\n"
+      concat::fragment{"newline_${name}":
+ 	target => $filename,
+ 	order => $order,
+@@ -55,7 +55,7 @@
+   shorewallfile{ zones: }
+   define zone_line($order = 50) {
+      $filename = "/tmp/shorewall/zones"
+-     $line = $name
++     $line = "${name}\n"
+      concat::fragment{"newline_${name}":
+ 	target => $filename,
+ 	order => $order,
+@@ -75,7 +75,7 @@
+   shorewallfile{ policy: }
+   define policy_line($order = 50) {
+      $filename = "/tmp/shorewall/policy"
+-     $line = $name
++     $line = "${name}\n"
+      concat::fragment{"newline_${name}":
+ 	target => $filename,
+ 	order => $order,
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101112/fffd1933/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000518.html b/zarb-ml/mageia-sysadm/2010-November/000518.html new file mode 100644 index 000000000..416c07bf6 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000518.html @@ -0,0 +1,136 @@ + + + + [Mageia-sysadm] [252] use shorewall for shorewall directory + + + + + + + + + +

[Mageia-sysadm] [252] use shorewall for shorewall directory

+ root at mageia.org + root at mageia.org +
+ Fri Nov 12 23:33:33 CET 2010 +

+
+ +
Revision: 252
+Author:   boklm
+Date:     2010-11-12 23:33:33 +0100 (Fri, 12 Nov 2010)
+Log Message:
+-----------
+use shorewall for shorewall directory
+
+Modified Paths:
+--------------
+    puppet/modules/shorewall/manifests/init.pp
+
+Modified: puppet/modules/shorewall/manifests/init.pp
+===================================================================
+--- puppet/modules/shorewall/manifests/init.pp	2010-11-12 22:29:49 UTC (rev 251)
++++ puppet/modules/shorewall/manifests/init.pp	2010-11-12 22:33:33 UTC (rev 252)
+@@ -1,8 +1,10 @@
+ class shorewall {
+   include concat::setup
+ 
++  $shorewalldir = "/tmp/shorewall"
++
+   define shorewallfile () {
+-     $filename = "/tmp/shorewall/${name}"
++     $filename = "${shorewalldir}/${name}"
+      $header = "puppet:///modules/shorewall/headers/${name}"
+      $footer = "puppet:///modules/shorewall/footers/${name}"
+      concat{$filename:
+@@ -27,7 +29,7 @@
+   ### Rules
+   shorewallfile{ rules: }
+   define rule_line($order = 50) {
+-     $filename = "/tmp/shorewall/rules"
++     $filename = "${shorewalldir}/rules"
+      $line = "${name}\n"
+      concat::fragment{"newline_${name}":
+ 	target => $filename,
+@@ -54,7 +56,7 @@
+   ### Zones
+   shorewallfile{ zones: }
+   define zone_line($order = 50) {
+-     $filename = "/tmp/shorewall/zones"
++     $filename = "${shorewalldir}/zones"
+      $line = "${name}\n"
+      concat::fragment{"newline_${name}":
+ 	target => $filename,
+@@ -74,7 +76,7 @@
+   ### Policy
+   shorewallfile{ policy: }
+   define policy_line($order = 50) {
+-     $filename = "/tmp/shorewall/policy"
++     $filename = "${shorewalldir}/policy"
+      $line = "${name}\n"
+      concat::fragment{"newline_${name}":
+ 	target => $filename,
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101112/4324c8f9/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000519.html b/zarb-ml/mageia-sysadm/2010-November/000519.html new file mode 100644 index 000000000..815d862cf --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000519.html @@ -0,0 +1,136 @@ + + + + [Mageia-sysadm] [253] don't use a variable for shorewall dir (not working) + + + + + + + + + +

[Mageia-sysadm] [253] don't use a variable for shorewall dir (not working)

+ root at mageia.org + root at mageia.org +
+ Fri Nov 12 23:36:51 CET 2010 +

+
+ +
Revision: 253
+Author:   boklm
+Date:     2010-11-12 23:36:51 +0100 (Fri, 12 Nov 2010)
+Log Message:
+-----------
+don't use a variable for shorewall dir (not working)
+
+Modified Paths:
+--------------
+    puppet/modules/shorewall/manifests/init.pp
+
+Modified: puppet/modules/shorewall/manifests/init.pp
+===================================================================
+--- puppet/modules/shorewall/manifests/init.pp	2010-11-12 22:33:33 UTC (rev 252)
++++ puppet/modules/shorewall/manifests/init.pp	2010-11-12 22:36:51 UTC (rev 253)
+@@ -1,10 +1,8 @@
+ class shorewall {
+   include concat::setup
+ 
+-  $shorewalldir = "/tmp/shorewall"
+-
+   define shorewallfile () {
+-     $filename = "${shorewalldir}/${name}"
++     $filename = "/tmp/shorewall/${name}"
+      $header = "puppet:///modules/shorewall/headers/${name}"
+      $footer = "puppet:///modules/shorewall/footers/${name}"
+      concat{$filename:
+@@ -29,7 +27,7 @@
+   ### Rules
+   shorewallfile{ rules: }
+   define rule_line($order = 50) {
+-     $filename = "${shorewalldir}/rules"
++     $filename = "/tmp/shorewall/rules"
+      $line = "${name}\n"
+      concat::fragment{"newline_${name}":
+ 	target => $filename,
+@@ -56,7 +54,7 @@
+   ### Zones
+   shorewallfile{ zones: }
+   define zone_line($order = 50) {
+-     $filename = "${shorewalldir}/zones"
++     $filename = "/tmp/shorewall/zones"
+      $line = "${name}\n"
+      concat::fragment{"newline_${name}":
+ 	target => $filename,
+@@ -76,7 +74,7 @@
+   ### Policy
+   shorewallfile{ policy: }
+   define policy_line($order = 50) {
+-     $filename = "${shorewalldir}/policy"
++     $filename = "/tmp/shorewall/policy"
+      $line = "${name}\n"
+      concat::fragment{"newline_${name}":
+ 	target => $filename,
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101112/8768fdcd/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000520.html b/zarb-ml/mageia-sysadm/2010-November/000520.html new file mode 100644 index 000000000..0851b2fec --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000520.html @@ -0,0 +1,112 @@ + + + + [Mageia-sysadm] Installing firewall + + + + + + + + + +

[Mageia-sysadm] Installing firewall

+ Eric Elena + eric.elena at telecom-paristech.org +
+ Sat Nov 13 00:04:35 CET 2010 +

+
+ +
Le vendredi 12 novembre 2010 à 23:05 +0100, Olivier Thauvin a écrit :
+> * nicolas vigier (boklm at mars-attacks.org) wrote:
+> > Hello,
+> > 
+> > The Mageia packages repository will be stored on valstar. As the
+> > repository will be needed on build nodes, it will have to be either
+> > mirrored or mounted via nfs (readonly). If we use nfs, I think we should
+> > first setup a firewall before installing the nfs server. A firewall
+> > would also be useful to filter connections to the pgsql/mysql servers,
+> > to the build nodes, etc ...
+> > 
+> > I suggest using shorewall to manage the firewall configuration. Any
+> > comment about this ?
+> 
+> I saw you mostly wrote the shorewall, however, I don't like myself
+> shroewall. Shorewall is nothing more than a set of scripts over iptables
+> and I think it add a useless complexity over this last one.
+> 
+> I widelly prefer to use directly iptables. I believe we are experienced
+> enough to write iptables rules ourself.
+> 
+> > 
+> > I plan to write a shorewall module in puppet, test it on jonund first,
+> > without installing shorewall (only writting the config files), then
+> > install shorewall on jonund, and if we didn't lose access to jonund
+> > install it on other nodes.
+> 
+> Playing with firewall on computer we can access only by network, woot !
+
+It's safe to play with a remote firewall ... as long as you don't forget
+to add a cron job to disable the firewall in case of trouble :) Even if
+there is something wrong with the configuration, downtime will be just a
+few minutes.
+There is also the tmux (screen) solution: create a new window, sleep XX
+&& disable firewall. But I don't think tmux is shipped by default.
+
+My 10 KRW,
+
+Eric
+
+> I think access control can be done w/o using iptables.
+> 
+> My 2 cents.
+> 
+> > 
+> > Nicolas
+
+
+
+
+ + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000521.html b/zarb-ml/mageia-sysadm/2010-November/000521.html new file mode 100644 index 000000000..a5d64f78d --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000521.html @@ -0,0 +1,109 @@ + + + + [Mageia-sysadm] Installing firewall + + + + + + + + + +

[Mageia-sysadm] Installing firewall

+ nicolas vigier + boklm at mars-attacks.org +
+ Sat Nov 13 01:12:33 CET 2010 +

+
+ +
On Fri, 12 Nov 2010, Olivier Thauvin wrote:
+
+> * nicolas vigier (boklm at mars-attacks.org) wrote:
+> > Hello,
+> > 
+> > The Mageia packages repository will be stored on valstar. As the
+> > repository will be needed on build nodes, it will have to be either
+> > mirrored or mounted via nfs (readonly). If we use nfs, I think we should
+> > first setup a firewall before installing the nfs server. A firewall
+> > would also be useful to filter connections to the pgsql/mysql servers,
+> > to the build nodes, etc ...
+> > 
+> > I suggest using shorewall to manage the firewall configuration. Any
+> > comment about this ?
+> 
+> I saw you mostly wrote the shorewall, however, I don't like myself
+> shroewall. Shorewall is nothing more than a set of scripts over iptables
+> and I think it add a useless complexity over this last one.
+> 
+> I widelly prefer to use directly iptables. I believe we are experienced
+> enough to write iptables rules ourself.
+
+For me, using shorewall is much more simple than writting iptables
+rules directly. I always forget iptables parameters, while shorewall
+rules are very simple. I don't know if managing iptables rules in puppet
+for different hosts would be as simple.
+
+> 
+> > 
+> > I plan to write a shorewall module in puppet, test it on jonund first,
+> > without installing shorewall (only writting the config files), then
+> > install shorewall on jonund, and if we didn't lose access to jonund
+> > install it on other nodes.
+> 
+> Playing with firewall on computer we can access only by network, woot !
+> 
+> I think access control can be done w/o using iptables.
+
+Some programs provide access control, but not all, and it is often more
+limited than what you can do with a firewall. It can also be more
+vulnerable in case of security issue in one of the services. So I think
+using a firewall might be better. Especially for build nodes where we
+don't know exactly what services will be installed in the chroot and
+maybe running during the builds.
+
+
+ + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000522.html b/zarb-ml/mageia-sysadm/2010-November/000522.html new file mode 100644 index 000000000..70d24accd --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000522.html @@ -0,0 +1,71 @@ + + + + [Mageia-sysadm] Installing firewall + + + + + + + + + +

[Mageia-sysadm] Installing firewall

+ nicolas vigier + boklm at mars-attacks.org +
+ Sat Nov 13 01:13:34 CET 2010 +

+
+ +
On Sat, 13 Nov 2010, Eric Elena wrote:
+
+> 
+> It's safe to play with a remote firewall ... as long as you don't forget
+> to add a cron job to disable the firewall in case of trouble :) Even if
+> there is something wrong with the configuration, downtime will be just a
+> few minutes.
+
+Good idea !
+
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000523.html b/zarb-ml/mageia-sysadm/2010-November/000523.html new file mode 100644 index 000000000..8dff35096 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000523.html @@ -0,0 +1,73 @@ + + + + [Mageia-sysadm] Installing firewall + + + + + + + + + +

[Mageia-sysadm] Installing firewall

+ Luca Berra + bluca at vodka.it +
+ Sat Nov 13 09:45:29 CET 2010 +

+
+ +
On Fri, Nov 12, 2010 at 11:05:04PM +0100, Olivier Thauvin wrote:
+>Playing with firewall on computer we can access only by network, woot !
+shorewall has a safe-restart feature, that will revert configuration if
+after appliying it does not receive a confirmation within 60 seconds.
+i wonder if there is a way to automate this?
+
+L.
+
+-- 
+Luca Berra -- bluca at vodka.it
+
+ + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000524.html b/zarb-ml/mageia-sysadm/2010-November/000524.html new file mode 100644 index 000000000..b878744c9 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000524.html @@ -0,0 +1,76 @@ + + + + [Mageia-sysadm] Usernames, uids, and groups + + + + + + + + + +

[Mageia-sysadm] Usernames, uids, and groups

+ nicolas vigier + boklm at mars-attacks.org +
+ Sat Nov 13 12:45:10 CET 2010 +

+
+ +
On Tue, 09 Nov 2010, Buchan Milne wrote:
+
+> > We also need to decide what UID ranges we use for local accounts, and for
+> > ldap accounts.
+> > 
+> > And groups. I think we could use the following groups :
+> >  * posix : promotes the user as posixAccount+sshPublicKey (in ldap), and
+> >    allows access to the svn and git using svn+ssh:// and git+ssh://
+> 
+> I think it would be better to try and provide VCS commit access without shell 
+> access. This is easy enough for subversion with mod_dav_svn.
+
+If we are using mod_dav_svn, do you know if we could use something like
+an SSL certificate stored in ldap for authentication, to avoid typing
+the ldap password for each request ?
+
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000525.html b/zarb-ml/mageia-sysadm/2010-November/000525.html new file mode 100644 index 000000000..44eec24c4 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000525.html @@ -0,0 +1,83 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ Michael Scherer + misc at zarb.org +
+ Mon Nov 15 01:41:30 CET 2010 +

+
+ +
Le vendredi 12 novembre 2010 à 21:45 +0100, report at valstar.mageia.org a
+écrit :
+> Fri Nov 12 21:44:59 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Syntax error at '}'; expected '}' at /etc/puppet/modules/shorewall/manifests/init.pp:46 on node jonund.mageia.org
+
+That's not good, that mean the check in svn do not work as expected.
+
+I have checked them 2 times, it seems to be ok, so if someone can give a
+look with a fresh view. I suspect a sh vs bash issue.
+-- 
+Michael Scherer
+
+
+ + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000526.html b/zarb-ml/mageia-sysadm/2010-November/000526.html new file mode 100644 index 000000000..5b35fdb20 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000526.html @@ -0,0 +1,89 @@ + + + + [Mageia-sysadm] [241] Add a module to construct files from fragments. + + + + + + + + + +

[Mageia-sysadm] [241] Add a module to construct files from fragments.

+ Michael Scherer + misc at zarb.org +
+ Mon Nov 15 01:44:44 CET 2010 +

+
+ +
Le vendredi 12 novembre 2010 à 18:42 +0100, root at mageia.org a écrit :
+> Revision: 241
+> Author:   boklm
+> Date:     2010-11-12 18:42:22 +0100 (Fri, 12 Nov 2010)
+> Log Message:
+> -----------
+> Add a module to construct files from fragments.
+> 
+> Downloaded from https://github.com/ripienaar/puppet-concat/
+
+Shall I suggest we place it in a different path so we know what should
+be updated from somewhere else. Ie, we keep modules for our own module
+and something like extern_modules for those we use written by someone
+else, along a note telling where they do come from ?
+
+I would also suggest that we switch to git in the future to use git
+submodule as the puppet community is very git oriented, but this is
+clearly not a priority since I susepct that not everybody know git and
+since we lack proper git hooks to check everything before commit.
+-- 
+Michael Scherer
+
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000527.html b/zarb-ml/mageia-sysadm/2010-November/000527.html new file mode 100644 index 000000000..2f1024c31 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000527.html @@ -0,0 +1,118 @@ + + + + [Mageia-sysadm] Installing firewall + + + + + + + + + +

[Mageia-sysadm] Installing firewall

+ Michael Scherer + misc at zarb.org +
+ Mon Nov 15 01:45:34 CET 2010 +

+
+ +
Le samedi 13 novembre 2010 à 01:12 +0100, nicolas vigier a écrit :
+> On Fri, 12 Nov 2010, Olivier Thauvin wrote:
+> 
+> > * nicolas vigier (boklm at mars-attacks.org) wrote:
+> > > Hello,
+> > > 
+> > > The Mageia packages repository will be stored on valstar. As the
+> > > repository will be needed on build nodes, it will have to be either
+> > > mirrored or mounted via nfs (readonly). If we use nfs, I think we should
+> > > first setup a firewall before installing the nfs server. A firewall
+> > > would also be useful to filter connections to the pgsql/mysql servers,
+> > > to the build nodes, etc ...
+> > > 
+> > > I suggest using shorewall to manage the firewall configuration. Any
+> > > comment about this ?
+> > 
+> > I saw you mostly wrote the shorewall, however, I don't like myself
+> > shroewall. Shorewall is nothing more than a set of scripts over iptables
+> > and I think it add a useless complexity over this last one.
+> > 
+> > I widelly prefer to use directly iptables. I believe we are experienced
+> > enough to write iptables rules ourself.
+> 
+> For me, using shorewall is much more simple than writting iptables
+> rules directly. I always forget iptables parameters, while shorewall
+> rules are very simple. I don't know if managing iptables rules in puppet
+> for different hosts would be as simple.
+
+I also prefer iptables, but on the other hand, I can understand people
+do not like it. I always found that firewall script lacked some form of
+abstractions, and there is usually lots of cut and paste everywhere
+( not to mention the use of bash ).
+
+So I would go for shorewall too.
+
+> > 
+> > > 
+> > > I plan to write a shorewall module in puppet, test it on jonund first,
+> > > without installing shorewall (only writting the config files), then
+> > > install shorewall on jonund, and if we didn't lose access to jonund
+> > > install it on other nodes.
+> > 
+> > Playing with firewall on computer we can access only by network, woot !
+> > 
+> > I think access control can be done w/o using iptables.
+> 
+> Some programs provide access control, but not all, and it is often more
+> limited than what you can do with a firewall. It can also be more
+> vulnerable in case of security issue in one of the services. So I think
+> using a firewall might be better. Especially for build nodes where we
+> don't know exactly what services will be installed in the chroot and
+> maybe running during the builds.
+
+We can have both. Ie firewall and access control. 
+
+-- 
+Michael Scherer
+
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000528.html b/zarb-ml/mageia-sysadm/2010-November/000528.html new file mode 100644 index 000000000..2b8a0e260 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000528.html @@ -0,0 +1,97 @@ + + + + [Mageia-sysadm] Installing firewall + + + + + + + + + +

[Mageia-sysadm] Installing firewall

+ Michael Scherer + misc at zarb.org +
+ Mon Nov 15 01:47:23 CET 2010 +

+
+ +
Le vendredi 12 novembre 2010 à 18:30 +0100, nicolas vigier a écrit :
+> Hello,
+> 
+> The Mageia packages repository will be stored on valstar. As the
+> repository will be needed on build nodes, it will have to be either
+> mirrored or mounted via nfs (readonly). If we use nfs, I think we should
+> first setup a firewall before installing the nfs server. A firewall
+> would also be useful to filter connections to the pgsql/mysql servers,
+> to the build nodes, etc ...
+> 
+> I suggest using shorewall to manage the firewall configuration. Any
+> comment about this ?
+
+I would rather prefer something a little bit higher level, but that's ok
+for a start. Having a good abstraction ( like some puppet class ) would
+be nice. We could also take a look at exported ressources too
+( http://projects.puppetlabs.com/projects/1/wiki/Exported_Resources ),
+so we could say "allow postgresql connexion from server running this
+class"
+
+> I plan to write a shorewall module in puppet, test it on jonund first,
+> without installing shorewall (only writting the config files), then
+> install shorewall on jonund, and if we didn't lose access to jonund
+> install it on other nodes.
+
+Technically, using puppet allow us to test on VM without much problem.
+
+And in fact, I would strongly suggest using VMs rather than our servers
+because this allow us to catch some stupid errors in the manifest that
+could help us in case of disaster recovery, or computer duplication. Not
+to mention than testing on production servers is not a good idea ( even
+if I suppose we all do this ).
+
+-- 
+Michael Scherer
+
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000529.html b/zarb-ml/mageia-sysadm/2010-November/000529.html new file mode 100644 index 000000000..21bb4f0ea --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000529.html @@ -0,0 +1,234 @@ + + + + [Mageia-sysadm] [254] Add params file + + + + + + + + + +

[Mageia-sysadm] [254] Add params file

+ root at mageia.org + root at mageia.org +
+ Mon Nov 15 01:51:36 CET 2010 +

+
+ +
Revision: 254
+Author:   dmorgan
+Date:     2010-11-15 01:51:36 +0100 (Mon, 15 Nov 2010)
+Log Message:
+-----------
+Add params file
+
+Modified Paths:
+--------------
+    puppet/modules/bugzilla/manifests/init.pp
+
+Added Paths:
+-----------
+    puppet/modules/bugzilla/templates/params
+
+Modified: puppet/modules/bugzilla/manifests/init.pp
+===================================================================
+--- puppet/modules/bugzilla/manifests/init.pp	2010-11-12 22:36:51 UTC (rev 253)
++++ puppet/modules/bugzilla/manifests/init.pp	2010-11-15 00:51:36 UTC (rev 254)
+@@ -5,13 +5,23 @@
+     }
+ 
+     $password = extlookup("bugzilla_password")
++    $passwordLdap = extlookup("bugzilla_ldap")
++
+     file { '/etc/bugzilla/localconfig':
+-        ensure => present,
+-        owner => root,
+-        group => root,
+-        mode => 644,
+-        content => template("bugzilla/localconfig")
++      ensure => present,
++      owner => root,
++      group => root,
++      mode => 644,
++      content => template("bugzilla/localconfig")
+     }
+ 
++
++    file { '/var/lib/bugzilla/params':
++      ensure => present,
++      owner => root,
++      group => root,
++      mode => 644,
++      content => template("bugzilla/params")
++    }
+ }
+ 
+
+Added: puppet/modules/bugzilla/templates/params
+===================================================================
+--- puppet/modules/bugzilla/templates/params	                        (rev 0)
++++ puppet/modules/bugzilla/templates/params	2010-11-15 00:51:36 UTC (rev 254)
+@@ -0,0 +1,107 @@
++%param = (
++           'LDAPBaseDN' => 'ou=People,dc=mageia,dc=org',
++           'LDAPbinddn' => 'cn=bugzilla-alamut,ou=System Accounts,dc=mageia,dc=org:<%= passwordLdap %>',
++           'LDAPfilter' => '',
++           'LDAPmailattribute' => 'mail',
++           'LDAPserver' => 'ldap.mageia.org',
++           'LDAPstarttls' => '1',
++           'LDAPuidattribute' => 'uid',
++           'RADIUS_NAS_IP' => '',
++           'RADIUS_email_suffix' => '',
++           'RADIUS_secret' => '',
++           'RADIUS_server' => '',
++           'allow_attach_url' => 0,
++           'allow_attachment_deletion' => 0,
++           'allow_attachment_display' => 0,
++           'allowbugdeletion' => 0,
++           'allowemailchange' => 1,
++           'allowloginid' => '0',
++           'allowuserdeletion' => 0,
++           'announcehtml' => '',
++           'attachment_base' => '',
++           'auth_env_email' => '',
++           'auth_env_id' => '',
++           'auth_env_realname' => '',
++           'bonsai_url' => '',
++           'chartgroup' => 'editbugs',
++           'commentonchange_resolution' => 0,
++           'commentonduplicate' => 0,
++           'confirmuniqueusermatch' => 1,
++           'cookiedomain' => '',
++           'cookiepath' => '/',
++           'createemailregexp' => '.*',                                                                                                     
++           'cvsroot' => '',                                                                                                                 
++           'cvsroot_get' => '',                                                                                                             
++           'defaultopsys' => '',                                                                                                            
++           'defaultplatform' => '',                                                                                                         
++           'defaultpriority' => '---',                                                                                                      
++           'defaultquery' => 'bug_status=NEW&bug_status=ASSIGNED&bug_status=REOPENED&emailassigned_to1=1&emailassigned_to2=1&emailreporter2=1&emailcc2=1&emailqa_contact2=1&order=Importance&long_desc_type=substring',                                                                 
++           'defaultseverity' => 'enhancement',                                                                                              
++           'docs_urlbase' => 'docs/%lang%/html/',                                                                                           
++           'duplicate_or_move_bug_status' => 'RESOLVED',
++           'emailregexp' => '^[\\w\\.\\+\\-=]+@[\\w\\.\\-]+\\.[\\w\\-]+$',
++           'emailregexpdesc' => 'A legal address must contain exactly one \'@\', and at least one \'.\' after the @.',
++           'emailsuffix' => '',
++           'globalwatchers' => '',
++           'inbound_proxies' => '',
++           'insidergroup' => '',
++           'letsubmitterchoosemilestone' => 1,
++           'letsubmitterchoosepriority' => 1,
++           'lxr_root' => '',
++           'lxr_url' => '',
++           'mail_delivery_method' => 'Sendmail',
++           'mailfrom' => 'bugzilla-daemon',
++           'makeproductgroups' => 0,
++           'maxattachmentsize' => '1000',
++           'maxlocalattachment' => '0',
++           'maxusermatches' => '1000',
++           'mostfreqthreshold' => '2',
++           'move-button-text' => 'Move To Bugscape',
++           'move-enabled' => 0,
++           'move-to-address' => 'bugzilla-import',
++           'move-to-url' => '',
++           'moved-default-component' => '',
++           'moved-default-product' => '',
++           'moved-from-address' => 'bugzilla-admin',
++           'movers' => '',
++           'musthavemilestoneonaccept' => 0,
++           'mybugstemplate' => 'buglist.cgi?bug_status=UNCONFIRMED&amp;bug_status=NEW&amp;bug_status=ASSIGNED&amp;bug_status=REOPENED&amp;emailassigned_to1=1&amp;emailreporter1=1&amp;emailtype1=exact&amp;email1=%userid%&amp;field0-0-0=bug_status&amp;type0-0-0=notequals&amp;value0-0-0=UNCONFIRMED&amp;field0-0-1=reporter&amp;type0-0-1=equals&amp;value0-0-1=%userid%',
++           'noresolveonopenblockers' => 0,
++           'proxy_url' => '',
++           'querysharegroup' => 'editbugs',
++           'quip_list_entry_control' => 'open',
++           'rememberlogin' => 'on',
++           'requirelogin' => '0',
++           'sendmailnow' => 1,
++           'shadowdb' => '',
++           'shadowdbhost' => '',
++           'shadowdbport' => '3306',
++           'shadowdbsock' => '',
++           'shutdownhtml' => '',
++           'smtp_debug' => 0,
++           'smtp_password' => '',
++           'smtp_username' => '',
++           'smtpserver' => 'localhost',
++           'specific_search_allow_empty_words' => 1,
++           'ssl_redirect' => 0,
++           'sslbase' => '',
++           'strict_isolation' => 0,
++           'timetrackinggroup' => 'editbugs',
++           'upgrade_notification' => 'latest_stable_release',
++           'urlbase' => 'http://bugs.mageia.org/',
++           'use_mailer_queue' => 0,
++           'use_see_also' => 1,
++           'usebugaliases' => 0,
++           'useclassification' => 0,
++           'usemenuforusers' => '0',
++           'useqacontact' => 0,
++           'user_info_class' => 'CGI',
++           'user_verify_class' => 'LDAP',
++           'usestatuswhiteboard' => 0,
++           'usetargetmilestone' => 0,
++           'usevisibilitygroups' => 0,
++           'usevotes' => 0,
++           'utf8' => 1,
++           'webdotbase' => 'http://www.research.att.com/~north/cgi-bin/webdot.cgi/%urlbase%',
++           'whinedays' => 7
++         );
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101115/20345dee/attachment-0001.html>
+
+ + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000530.html b/zarb-ml/mageia-sysadm/2010-November/000530.html new file mode 100644 index 000000000..89fb07b00 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000530.html @@ -0,0 +1,86 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ Michael Scherer + misc at zarb.org +
+ Mon Nov 15 02:54:49 CET 2010 +

+
+ +
Le lundi 15 novembre 2010 à 01:41 +0100, Michael Scherer a écrit :
+> Le vendredi 12 novembre 2010 à 21:45 +0100, report at valstar.mageia.org a
+> écrit :
+> > Fri Nov 12 21:44:59 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Syntax error at '}'; expected '}' at /etc/puppet/modules/shorewall/manifests/init.pp:46 on node jonund.mageia.org
+> 
+> That's not good, that mean the check in svn do not work as expected.
+> 
+> I have checked them 2 times, it seems to be ok, so if someone can give a
+> look with a fresh view. I suspect a sh vs bash issue.
+
+Seems I was wrong :
+http://projects.puppetlabs.com/issues/5081
+( after 30 minuts of debugging the issue )
+
+I will fix the check later after sleeping.
+-- 
+Michael Scherer
+
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000531.html b/zarb-ml/mageia-sysadm/2010-November/000531.html new file mode 100644 index 000000000..05241bd8e --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000531.html @@ -0,0 +1,76 @@ + + + + [Mageia-sysadm] [241] Add a module to construct files from fragments. + + + + + + + + + +

[Mageia-sysadm] [241] Add a module to construct files from fragments.

+ Olivier Blin + mageia at blino.org +
+ Mon Nov 15 07:40:29 CET 2010 +

+
+ +
Michael Scherer <misc at zarb.org> writes:
+
+> I would also suggest that we switch to git in the future to use git
+> submodule as the puppet community is very git oriented, but this is
+> clearly not a priority since I susepct that not everybody know git and
+> since we lack proper git hooks to check everything before commit.
+
+Isn't .git/hooks/pre-commit enough?
+
+-- 
+Olivier Blin - blino
+
+ + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000532.html b/zarb-ml/mageia-sysadm/2010-November/000532.html new file mode 100644 index 000000000..37c4fcf7f --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000532.html @@ -0,0 +1,86 @@ + + + + [Mageia-sysadm] [241] Add a module to construct files from fragments. + + + + + + + + + +

[Mageia-sysadm] [241] Add a module to construct files from fragments.

+ Michael Scherer + misc at zarb.org +
+ Mon Nov 15 12:46:15 CET 2010 +

+
+ +
Le lundi 15 novembre 2010 à 07:40 +0100, Olivier Blin a écrit :
+> Michael Scherer <misc at zarb.org> writes:
+> 
+> > I would also suggest that we switch to git in the future to use git
+> > submodule as the puppet community is very git oriented, but this is
+> > clearly not a priority since I susepct that not everybody know git and
+> > since we lack proper git hooks to check everything before commit.
+> 
+> Isn't .git/hooks/pre-commit enough?
+
+My understanding was that pre-commit is indeed what we would want, but
+it is run on the local computer before commit, not on the server, and so
+that would cause various deployment issues.
+
+What I wanted to have is a centralized check on the server where
+everybody push the commit, and that was slightly more complex ( with
+pre-receive and post-receive ).
+
+-- 
+Michael Scherer
+
+
+ + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000533.html b/zarb-ml/mageia-sysadm/2010-November/000533.html new file mode 100644 index 000000000..7b67aae9b --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000533.html @@ -0,0 +1,90 @@ + + + + [Mageia-sysadm] [241] Add a module to construct files from fragments. + + + + + + + + + +

[Mageia-sysadm] [241] Add a module to construct files from fragments.

+ Olivier Blin + mageia at blino.org +
+ Mon Nov 15 13:06:35 CET 2010 +

+
+ +
Michael Scherer <misc at zarb.org> writes:
+
+> Le lundi 15 novembre 2010 à 07:40 +0100, Olivier Blin a écrit :
+>> Michael Scherer <misc at zarb.org> writes:
+>> 
+>> > I would also suggest that we switch to git in the future to use git
+>> > submodule as the puppet community is very git oriented, but this is
+>> > clearly not a priority since I susepct that not everybody know git and
+>> > since we lack proper git hooks to check everything before commit.
+>> 
+>> Isn't .git/hooks/pre-commit enough?
+>
+> My understanding was that pre-commit is indeed what we would want, but
+> it is run on the local computer before commit, not on the server, and so
+> that would cause various deployment issues.
+>
+> What I wanted to have is a centralized check on the server where
+> everybody push the commit, and that was slightly more complex ( with
+> pre-receive and post-receive ).
+
+There's a pre-receive example about puppet files here:
+http://sexysexypenguins.com/2009/09/30/git-hooks-making-the-awesomest-rcs-evar-even-bettar/
+
+-- 
+Olivier Blin - blino
+
+ + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000534.html b/zarb-ml/mageia-sysadm/2010-November/000534.html new file mode 100644 index 000000000..86e759f03 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000534.html @@ -0,0 +1,121 @@ + + + + [Mageia-sysadm] Keep puppet module generic without hardcoding domain name + + + + + + + + + +

[Mageia-sysadm] Keep puppet module generic without hardcoding domain name

+ Michael Scherer + misc at zarb.org +
+ Mon Nov 15 18:03:46 CET 2010 +

+
+ +
Hi,
+
+Looking after most commits, I see that we often hardcode the domain name
+in the puppet manifest and template.
+
+I think we should avoid for various reasons :
+
+- hard coding anything is never good
+
+- if one day we fork again, or if we are forced to change project name
+( both have occurred in the past for mandriva, so maybe we could be
+proactive this time ), this would be easier for us ( or them, depending
+on the side of the fork we are ).
+
+- this greatly enhance the module reusability ( IE, I cut and past some
+module that I use on my server )
+
+- this is not really complex to achieve, thanks to templating
+
+and the more important reason :
+
+- this allow us to set up test VMs/servers without fiddling with DNS too
+much, and prevent stupid errors ( like changing /etc/hosts and
+forgetting this was changed ). 
+
+
+  
+So, if you agree with me, and if you see mageia.org in some templates
+files ( except in bind for obvious reason ), just replace this with <%=
+domain %>. See for example commit 221.
+
+This is the ERB syntax ( erb being the template engine of ruby and
+puppet ) for expanding the variable, see
+http://en.wikipedia.org/wiki/ERuby
+
+The list of variable to use can be found with the facter command.
+
+And for the ldap dc=mageia,dc=org, we can either add a variable to
+facter ( this would be cleaner, but more complex
+http://projects.puppetlabs.com/projects/1/wiki/Adding_Facts ), or use
+this in the template :
+
+<%
+dc_suffix = 'dc=' + domain.gsub('.',',dc=')
+%>
+
+<%= dc_suffix %>
+
+See commit 211 for example on how do this.
+
+
+Of course, if there is something I missed, do not hesitate to tell. 
+-- 
+Michael Scherer
+
+
+ + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000535.html b/zarb-ml/mageia-sysadm/2010-November/000535.html new file mode 100644 index 000000000..4df500b79 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000535.html @@ -0,0 +1,133 @@ + + + + [Mageia-sysadm] Backups + + + + + + + + + +

[Mageia-sysadm] Backups

+ Michael Scherer + misc at zarb.org +
+ Mon Nov 15 18:35:20 CET 2010 +

+
+ +
Hi ( again ),
+
+While doing some unrelated work, I have see that we do not have a backup
+strategy at the moment. 
+
+While a server is planned to be setup for this ( fiona ), we do not have
+it at the moment ( as this requires money, that requires a bank account,
+that requires feedback from french administration ).
+
+So, in order to decide, we need to know :
+- what do we backup ?
+  - ldap
+  - sql dump of the database
+  - svn dump ( which will lead to my next mail )
+  - /etc/ /usr/local/, in case someone forget to add something to puppet
+  - CA certificate, once we will have them
+  - gpg keys, once we have them
+  - logs, as required by french laws ( 1 year of logs, no precision
+about the amount of data in it ). My own experience with law enforcement
+agency showed me that it doesn't change much usually
+  - mail archives
+  - irc logs 
+
+See also with others teams if something was forbidden ( but since we
+should be the only one to have access to servers, this should not be a
+issue ).
+
+
+This requires some work, first to estimate the required ressources and
+the projected growth, then to decide the required strategy
+( incremential, full, etc ).
+ 
+I would also highlight the need to have encrypted backups for the more
+sensible set of data, to be sure that passwords keys and others do not
+leave valstar in cleartext, and are not stored in form that someone
+could decipher.
+
+Of course, the usual free/packaged/maintained/no-ressource-hog stanza
+apply for the software we will use.
+
+Any volunteer for the tasks :
+
+- evaluate the needs
+  - discuss with all teams to check we do not forget anything
+- propose and document a backup strategy, based on what we have and what
+we need
+  - off site backup is nice, but we may not have the choice
+  - take in account that a new server is planned, so check with dams
+( who was taked of taking care of this ) for the requirement
+
+- setup the backups 
+- setup some kind of monitoring of the backup ( disc space )
+  
+- check the backups are secure ( I can help on this part )
+
+- write a clear documentation about backup restauration 
+- do regular testing of the previous procedure
+
+ideally, a test of a emergency restoration would be nice ( ie, let's
+assume that alamut exploded and is unusable and need to be restored ),
+but this would requires a spare computer, lots of disk, bandwidth and
+time.
+
+-- 
+Michael Scherer
+
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000536.html b/zarb-ml/mageia-sysadm/2010-November/000536.html new file mode 100644 index 000000000..ee7984b03 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000536.html @@ -0,0 +1,83 @@ + + + + [Mageia-sysadm] modos + + + + + + + + + +

[Mageia-sysadm] modos

+ Michael Scherer + misc at zarb.org +
+ Mon Nov 15 18:56:11 CET 2010 +

+
+ +
Le dimanche 07 novembre 2010 à 21:48 +0100, Maât a écrit :
+> Voilà la liste pour l'alias moderation
+> 
+> stephengermany at earthlink.net (Stephen Germany aka Germ)
+> megastorage74 at gmail.com (Stéphane Flavigny  aka stef74)
+> aurelien.goll at gmail.com (Aurélien Goll  aka Ohan)
+> 
+> omejean at yahoo.fr (Olivier Méjean aka goom)
+> rom1dep at gmail.com (Romain ??? aka rom1dep)
+> ashledombos at hodo.fr (Raphael Jadot aka ashledombos)
+> maat-ml at vilarem.net (Pascal Vilarem aka maat)
+> 
+
+1) not all zarb.org admins are aware of everything discussed on irc for
+all hosted projects,, so if you send a request, please be more explicit 
+( unless you really want to have only 25% of the admin team caring of
+the request, and if this is not important to see that those 25% is
+taking some holidays )
+
+2) Why a alias and not a list ?
+
+I thought this was for discussion about the setup of the forum, and this
+warrant archives, and therefor a list.
+
+-- 
+Michael Scherer
+
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000537.html b/zarb-ml/mageia-sysadm/2010-November/000537.html new file mode 100644 index 000000000..fc08d175a --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000537.html @@ -0,0 +1,82 @@ + + + + [Mageia-sysadm] Installing firewall + + + + + + + + + +

[Mageia-sysadm] Installing firewall

+ Michael Scherer + misc at zarb.org +
+ Mon Nov 15 19:35:13 CET 2010 +

+
+ +
Le vendredi 12 novembre 2010 à 18:30 +0100, nicolas vigier a écrit :
+> Hello,
+> 
+> The Mageia packages repository will be stored on valstar. As the
+> repository will be needed on build nodes, it will have to be either
+> mirrored or mounted via nfs (readonly). If we use nfs, I think we should
+> first setup a firewall before installing the nfs server. 
+
+While I agree with the firewall part, NFS and portmap are not really
+very firewall friendly, as there is ( or used to be ) by default dynamic
+ports involved. We can fix them of course but this has to be taken in
+account. 
+
+So wouldn't it be easier to use a simple http source ?
+This would also open less ports on the firewall, les thing to check and
+supervise, and less work on writing puppet manifests.
+
+( and I will not add the fact that I deeply hate nfs for the amount of
+work it gave me on the Mandriva cluster )
+-- 
+Michael Scherer
+
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000538.html b/zarb-ml/mageia-sysadm/2010-November/000538.html new file mode 100644 index 000000000..930f84a94 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000538.html @@ -0,0 +1,85 @@ + + + + [Mageia-sysadm] Installing firewall + + + + + + + + + +

[Mageia-sysadm] Installing firewall

+ nicolas vigier + boklm at mars-attacks.org +
+ Mon Nov 15 19:54:54 CET 2010 +

+
+ +
On Mon, 15 Nov 2010, Michael Scherer wrote:
+
+> Le vendredi 12 novembre 2010 à 18:30 +0100, nicolas vigier a écrit :
+> > Hello,
+> > 
+> > The Mageia packages repository will be stored on valstar. As the
+> > repository will be needed on build nodes, it will have to be either
+> > mirrored or mounted via nfs (readonly). If we use nfs, I think we should
+> > first setup a firewall before installing the nfs server. 
+> 
+> While I agree with the firewall part, NFS and portmap are not really
+> very firewall friendly, as there is ( or used to be ) by default dynamic
+> ports involved. We can fix them of course but this has to be taken in
+> account. 
+> 
+> So wouldn't it be easier to use a simple http source ?
+> This would also open less ports on the firewall, les thing to check and
+> supervise, and less work on writing puppet manifests.
+> 
+> ( and I will not add the fact that I deeply hate nfs for the amount of
+> work it gave me on the Mandriva cluster )
+
+Yes, using http would be more simple, good idea. Is http sources
+supported in Iurt ?
+
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000539.html b/zarb-ml/mageia-sysadm/2010-November/000539.html new file mode 100644 index 000000000..0bf5641a7 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000539.html @@ -0,0 +1,80 @@ + + + + [Mageia-sysadm] [241] Add a module to construct files from fragments. + + + + + + + + + +

[Mageia-sysadm] [241] Add a module to construct files from fragments.

+ nicolas vigier + boklm at mars-attacks.org +
+ Mon Nov 15 20:06:49 CET 2010 +

+
+ +
On Mon, 15 Nov 2010, Michael Scherer wrote:
+
+> Le vendredi 12 novembre 2010 à 18:42 +0100, root at mageia.org a écrit :
+> > Revision: 241
+> > Author:   boklm
+> > Date:     2010-11-12 18:42:22 +0100 (Fri, 12 Nov 2010)
+> > Log Message:
+> > -----------
+> > Add a module to construct files from fragments.
+> > 
+> > Downloaded from https://github.com/ripienaar/puppet-concat/
+> 
+> Shall I suggest we place it in a different path so we know what should
+> be updated from somewhere else. Ie, we keep modules for our own module
+> and something like extern_modules for those we use written by someone
+> else, along a note telling where they do come from ?
+
+I think that's a good idea.
+
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000540.html b/zarb-ml/mageia-sysadm/2010-November/000540.html new file mode 100644 index 000000000..25a4b03ad --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000540.html @@ -0,0 +1,109 @@ + + + + [Mageia-sysadm] Installing firewall + + + + + + + + + +

[Mageia-sysadm] Installing firewall

+ Olivier Thauvin + nanardon at nanardon.zarb.org +
+ Mon Nov 15 20:23:11 CET 2010 +

+
+ +
* nicolas vigier (boklm at mars-attacks.org) wrote:
+> On Mon, 15 Nov 2010, Michael Scherer wrote:
+> 
+> > Le vendredi 12 novembre 2010 à 18:30 +0100, nicolas vigier a écrit :
+> > > Hello,
+> > > 
+> > > The Mageia packages repository will be stored on valstar. As the
+> > > repository will be needed on build nodes, it will have to be either
+> > > mirrored or mounted via nfs (readonly). If we use nfs, I think we should
+> > > first setup a firewall before installing the nfs server. 
+> > 
+> > While I agree with the firewall part, NFS and portmap are not really
+> > very firewall friendly, as there is ( or used to be ) by default dynamic
+> > ports involved. We can fix them of course but this has to be taken in
+> > account. 
+> > 
+> > So wouldn't it be easier to use a simple http source ?
+> > This would also open less ports on the firewall, les thing to check and
+> > supervise, and less work on writing puppet manifests.
+> > 
+> > ( and I will not add the fact that I deeply hate nfs for the amount of
+> > work it gave me on the Mandriva cluster )
+> 
+> Yes, using http would be more simple, good idea. Is http sources
+> supported in Iurt ?
+
+I don't want to say NFS is wonderfull, but being able launch "rpm -Uvh
+libfoo*.rpm" saved my life so many time I really think having the tree
+provided by NFS would be an advantage (even ro).
+
+About the firewall part, why not simply allowing everything from ours IP
+(the 4 or 5 servers we have) ?
+I don't imagine this would be more risky than having php on our
+server...
+
+Regards.
+
+-- 
+
+Olivier Thauvin
+CNRS  -  LATMOS
+♖ ♘ ♗ ♕ ♔ ♗ ♘ ♖
+-------------- next part --------------
+A non-text attachment was scrubbed...
+Name: not available
+Type: application/pgp-signature
+Size: 197 bytes
+Desc: not available
+URL: </pipermail/mageia-sysadm/attachments/20101115/84dc621c/attachment.asc>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000541.html b/zarb-ml/mageia-sysadm/2010-November/000541.html new file mode 100644 index 000000000..37341e8d6 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000541.html @@ -0,0 +1,103 @@ + + + + [Mageia-sysadm] [255] Do not hardcode domain + + + + + + + + + +

[Mageia-sysadm] [255] Do not hardcode domain

+ root at mageia.org + root at mageia.org +
+ Mon Nov 15 22:39:24 CET 2010 +

+
+ +
Revision: 255
+Author:   dmorgan
+Date:     2010-11-15 22:39:24 +0100 (Mon, 15 Nov 2010)
+Log Message:
+-----------
+Do not hardcode domain
+
+Modified Paths:
+--------------
+    puppet/modules/sympa/templates/sympa.conf
+
+Modified: puppet/modules/sympa/templates/sympa.conf
+===================================================================
+--- puppet/modules/sympa/templates/sympa.conf	2010-11-15 00:51:36 UTC (rev 254)
++++ puppet/modules/sympa/templates/sympa.conf	2010-11-15 21:39:24 UTC (rev 255)
+@@ -86,11 +86,11 @@
+ ###\\\\ General definition ////###
+ 
+ ## Main robot hostname
+-domain  mageia.org
++domain  <%= domain %>
+ 
+ ## Listmasters email list comma separated
+ ## Sympa will associate listmaster privileges to these email addresses (mail and web interfaces). Some error reports may also be sent to these addresses.
+-listmaster      listmaster at mageia.org
++listmaster      listmaster@<%= domain %>
+ 
+ ## Local part of sympa email adresse
+ ## Effective address will be \[EMAIL\]@\[HOST\]
+@@ -277,7 +277,7 @@
+ ###\\\\ Web interface ////###
+ 
+ ## Sympa's main page URL
+-wwsympa_url     http://ml.mageia.org/
++wwsympa_url     http://ml.<%= domain %>/
+ 
+ ## If a spam filter (like spamassassin or j-chkmail) add a smtp headers to tag spams, name of this header (example X-Spam-Status)
+ antispam_tag_header_name        X-Spam-Status
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101115/009f3820/attachment-0001.html>
+
+ + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000542.html b/zarb-ml/mageia-sysadm/2010-November/000542.html new file mode 100644 index 000000000..9f8f39ee7 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000542.html @@ -0,0 +1,100 @@ + + + + [Mageia-sysadm] Main tasks for the next days + + + + + + + + + +

[Mageia-sysadm] Main tasks for the next days

+ nicolas vigier + boklm at mars-attacks.org +
+ Tue Nov 16 00:12:39 CET 2010 +

+
+ +
Hello,
+
+As was decided in tonight IRC meeting, the priority tasks for sysadmin in
+the next days will be :
+ * the configuration of pam_ldap, nss_ldap, and everything needed to
+   allow commits from LDAP accounts on SVN
+ * the configuration of forums with LDAP accounts (to be finished)
+ * the configuration of sympa mailing lists server using LDAP for users
+   authentication
+
+We will then be able to provide SVN accounts to more people to work on
+other things in parrallel while we finish the setup of the build system.
+And create teams mailing lists.
+
+Regarding the packages repository in SVN :
+ * we will import all packages from source RPMs, using repsys, splitting
+   binary and spec files on separate svn repositories
+ * work will start to clean the packages from all Mandriva references,
+   logos, copyrighed contents, etc ... When finished, the binary
+   repository history will be erased.
+
+Regarding the soft/ repository :
+ * misc will send an email to discuss a new soft/ repository
+   organisation
+ * we will import a copy of the Mandriva soft/ repository as
+   svn.mageia.org/soft-cleaning, and will use this repository to clean
+   all projects. Each project when ready will be imported in the new
+   soft/ repository (when the new organisation has been decided). The
+   soft-cleaning repository will only be used to do the cleaning work
+   and will be erased when finished.
+
+You can find the meeting logs at this URL :
+http://meetbot.mageia.org/mageia-meeting/2010/mageia-meeting.2010-11-15-19.36.html
+http://meetbot.mageia.org/mageia-meeting/2010/mageia-meeting.2010-11-15-19.36.log.html
+
+Nicolas
+
+
+ + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000543.html b/zarb-ml/mageia-sysadm/2010-November/000543.html new file mode 100644 index 000000000..dd388e799 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000543.html @@ -0,0 +1,117 @@ + + + + [Mageia-sysadm] svn layout + + + + + + + + + +

[Mageia-sysadm] svn layout

+ Michael Scherer + misc at zarb.org +
+ Tue Nov 16 00:16:04 CET 2010 +

+
+ +
Hi,
+
+while working on a better svn puppet module, I realized ( yeah, I
+realized lots of thing lately ), that we are currently reusing the
+scheme of mandriva of having 4/5 svn repository without clear
+distinction between them and projects.
+
+This caused some issue in the past :
+- messy layout. Some directory also hold projects ( theme, rpm,
+buildsystem, among others ), and most don't. So finding some project is
+a little bit surprising ( like finding mdvsys ). 
+
+- this make backup and restoration a little bit more difficult. If there
+is a db corruption, then all developers are impacted. 
+
+- there is some push in the community for git ( see
+https://www.mageia.org/pipermail/mageia-webteam/2010-November/000018.html for example ). Separate svn will ease the migration effort if needed.
+
+  - once we migrate, we can block the whole svn that was migrated more
+easily ( like, removing blocking it as readonly, add a message , and
+later simply remove it ).
+
+  - the old svn will no longer be in the backup 
+
+- I also think it would be wise to have this split, as this would allow
+us more freedom when we will discuss of the forge ( ie, I think that
+hosting our own project like mdvsys would be perfect for the forge )
+
+So I propose that we start to use 1 svn per software project, instead of
+keeping the current structure.
+
+This would allow us to start more slowly on the import process and on
+the cleaning of older projects or not needed project ( like Fibric,
+aviator or krozat, or the various mancoosi project that we will maybe
+not use nor work on it  ).
+
+Nanar provided some others opinions during tonight meeting on
+http://meetbot.mageia.org/mageia-meeting/2010/mageia-meeting.2010-11-15-19.36.log.html#l-482 ( scroll up to see ).
+
+-- 
+Michael Scherer
+
+
+ + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000544.html b/zarb-ml/mageia-sysadm/2010-November/000544.html new file mode 100644 index 000000000..6b2f57010 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000544.html @@ -0,0 +1,82 @@ + + + + [Mageia-sysadm] Main tasks for the next days + + + + + + + + + +

[Mageia-sysadm] Main tasks for the next days

+ Dexter Morgan + dmorganec at gmail.com +
+ Tue Nov 16 00:49:43 CET 2010 +

+
+ +
On Tue, Nov 16, 2010 at 12:12 AM, nicolas vigier <boklm at mars-attacks.org> wrote:
+> Hello,
+>
+> As was decided in tonight IRC meeting, the priority tasks for sysadmin in
+> the next days will be :
+>  * the configuration of sympa mailing lists server using LDAP for users
+>   authentication
+
+this is about 80% done in alamut ( with puppet module created on svn ).
+we need to have buchan to add some LDAP infos in the tree first and
+
+in alamut in /usr/share/sympa/bin, you can try to simulate a ML creation
+
+perl ldap_alias_manager.pl -s add test mageia.org
+
+What need to be done is the mail server too ( to use as mailHost in sympa )
+
+---
+Regards
+D.Morgan
+
+ + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000545.html b/zarb-ml/mageia-sysadm/2010-November/000545.html new file mode 100644 index 000000000..c85dd0646 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000545.html @@ -0,0 +1,124 @@ + + + + [Mageia-sysadm] Main tasks for the next days + + + + + + + + + +

[Mageia-sysadm] Main tasks for the next days

+ Michael Scherer + misc at zarb.org +
+ Tue Nov 16 00:55:15 CET 2010 +

+
+ +
Le mardi 16 novembre 2010 à 00:12 +0100, nicolas vigier a écrit :
+> Hello,
+> 
+> As was decided in tonight IRC meeting, the priority tasks for sysadmin in
+> the next days will be :
+>  * the configuration of pam_ldap, nss_ldap, and everything needed to
+>    allow commits from LDAP accounts on SVN
+
+>  * the configuration of forums with LDAP accounts (to be finished)
+
+A first step would be to make sure that people in charge of forum read
+this list and are subscribed to it. And another step would be to know
+what they do, since I am spammed every day by the cron job who update of
+urpmi who is bounced to root at zarb alias, as the server is
+misconfigurated ( ie, it send mail to a alias that do not exist ).
+
+>  * the configuration of sympa mailing lists server using LDAP for users
+>    authentication
+
+We didn't really discussed how and what we will use ldap and sympa for,
+and that we setup without thinking first about the full picture.
+
+Ie, if sympa use ldap for authentication, does that mean that people
+will be forced to use identity to subscribe ? 
+How would it goes for moderation ?
+How would they do for subscription ?
+
+There is lots of topic that we didn't really discussed about ML setup
+like :
+ - list moderation policy 
+ - archiving
+ - migration from the old server ( especially for archives migrations )
+ - setting a proper spam filter, with greylisting and sympa integration
+ - web interface setup and requirement 
+ - etc, etc
+
+So we should not start by installing software on production server,
+testing it and saying "it is almost ready", but first by thinking about
+what we need and what will happen, test it elsewhere, and then deploy
+it. 
+
+
+> Regarding the soft/ repository :
+>  * misc will send an email to discuss a new soft/ repository
+>    organisation
+done
+
+>  * we will import a copy of the Mandriva soft/ repository as
+>    svn.mageia.org/soft-cleaning, and will use this repository to clean
+>    all projects. Each project when ready will be imported in the new
+>    soft/ repository (when the new organisation has been decided). The
+>    soft-cleaning repository will only be used to do the cleaning work
+>    and will be erased when finished.
+
+Without history ?
+
+Because there is software that do not requires cleaning ( like mdvsys or
+some software that were fully created by the community ).
+
+-- 
+Michael Scherer
+
+
+ + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000546.html b/zarb-ml/mageia-sysadm/2010-November/000546.html new file mode 100644 index 000000000..434ff0bc5 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000546.html @@ -0,0 +1,107 @@ + + + + [Mageia-sysadm] Installing firewall + + + + + + + + + +

[Mageia-sysadm] Installing firewall

+ Luca Berra + bluca at vodka.it +
+ Tue Nov 16 07:43:19 CET 2010 +

+
+ +
On Mon, Nov 15, 2010 at 08:23:11PM +0100, Olivier Thauvin wrote:
+>I don't want to say NFS is wonderfull, but being able launch "rpm -Uvh
+>libfoo*.rpm" saved my life so many time I really think having the tree
+>provided by NFS would be an advantage (even ro).
+
+nfs and automounter are an evil plan from sun to drive system
+administrator insane :)
+
+that said there is nothing better than that for sharing resources, and
+if thet are correctly configured they work flawlessly.
+
+>About the firewall part, why not simply allowing everything from ours IP
+>(the 4 or 5 servers we have) ?
+>I don't imagine this would be more risky than having php on our
+>server...
+
+i have a similar setup, where my frontend mail/web servers are hosted in
+a dc, in order to secure communication between those i just did:
+
+/etc/ipsec.conf
+spdadd X.Y.W.1 X.Y.W.2 any -P in ipsec
+         esp/transport//require
+         ah/transport//require;
+
+spdadd X.Y.W.1 X.Y.W.2 any -P in ipsec
+         esp/transport//require
+         ah/transport//require;
+
+/etc/racoon/psk
+X.Y.W.1 this_very_secret_string_you_no_guess
+X.Y.W.2 this_very_secret_string_you_no_guess
+
+/etc/shorewall/zones
+loc     ipsec   mode=transport
+
+/etc/shorewall/policy
+fw      loc     ACCEPT
+loc     fw      ACCEPT
+net     loc     NONE
+loc     net     NONE
+
+
+now i am sure that each host cannot be spoofed or intercepted.
+
+L.
+
+-- 
+Luca Berra -- bluca at vodka.it
+
+ + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000547.html b/zarb-ml/mageia-sysadm/2010-November/000547.html new file mode 100644 index 000000000..4416e3d8b --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000547.html @@ -0,0 +1,122 @@ + + + + [Mageia-sysadm] Backups + + + + + + + + + +

[Mageia-sysadm] Backups

+ Luca Berra + bluca at vodka.it +
+ Tue Nov 16 08:02:51 CET 2010 +

+
+ +
On Mon, Nov 15, 2010 at 06:35:20PM +0100, Michael Scherer wrote:
+>Hi ( again ),
+>
+>While doing some unrelated work, I have see that we do not have a backup
+>strategy at the moment. 
+>
+>While a server is planned to be setup for this ( fiona ), we do not have
+>it at the moment ( as this requires money, that requires a bank account,
+>that requires feedback from french administration ).
+>
+>So, in order to decide, we need to know :
+first, i would make a distinguo between data that need to be backed up
+and data that need to be archived
+
+
+>- what do we backup ?
+>  - ldap
+>  - sql dump of the database
+>  - svn dump ( which will lead to my next mail )
+>  - /etc/ /usr/local/, in case someone forget to add something to puppet
+>  - CA certificate, once we will have them
+>  - gpg keys, once we have them
+
+
+what do we archive ?
+>  - logs, as required by french laws ( 1 year of logs, no precision
+>about the amount of data in it ). My own experience with law enforcement
+>agency showed me that it doesn't change much usually
+>  - mail archives
+>  - irc logs 
+>
+then for each item evaluate what retention is needed
+(subject to discussion)
+ldap, sql, filesystemdata, certificate, keys
+         just keep a few versions in case of screwup or disaster
+svn
+         we probably need just one copy in case of disaster 
+
+logs
+         1 year
+mail,irc
+         forever? actually those are already archives, so probably we
+should move it to the 'backup' section
+
+then for each item find a solution
+
+>I would also highlight the need to have encrypted backups for the more
+>sensible set of data, to be sure that passwords keys and others do not
+>leave valstar in cleartext, and are not stored in form that someone
+>could decipher.
+>
+>Of course, the usual free/packaged/maintained/no-ressource-hog stanza
+>apply for the software we will use.
+
+>Any volunteer for the tasks :
+being the maintainer of bacula (and i use that regularily) i would like
+to help on some tasks, but i have no resources to lead a subproject.
+(btw it supports encrypted backups with public/private keys)
+
+L.
+
+-- 
+Luca Berra -- bluca at vodka.it
+
+ + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000548.html b/zarb-ml/mageia-sysadm/2010-November/000548.html new file mode 100644 index 000000000..5d5714f38 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000548.html @@ -0,0 +1,133 @@ + + + + [Mageia-sysadm] Main tasks for the next days + + + + + + + + + +

[Mageia-sysadm] Main tasks for the next days

+ Romain d'Alverny + rdalverny at gmail.com +
+ Tue Nov 16 09:01:55 CET 2010 +

+
+ +
On Tue, Nov 16, 2010 at 00:55, Michael Scherer <misc at zarb.org> wrote:
+> Le mardi 16 novembre 2010 à 00:12 +0100, nicolas vigier a écrit :
+>> [...]
+>>  * the configuration of sympa mailing lists server using LDAP for users
+>>    authentication
+>
+> We didn't really discussed how and what we will use ldap and sympa for,
+> and that we setup without thinking first about the full picture.
+>
+> Ie, if sympa use ldap for authentication, does that mean that people
+> will be forced to use identity to subscribe ?
+> How would it goes for moderation ?
+> How would they do for subscription ?
+
+I think that we must have two separate ways to:
+ - identify someone is a member of a team
+ - identify someone is subscribed to a team mailing-list
+
+because someone may want to follow team activity, without being
+formally involved in it.
+
+So whether we manage both in LDAP or only team-membership (and leave
+mailing-list subscription management to sympa alone), I don't know.
+
+> There is lots of topic that we didn't really discussed about ML setup
+> like :
+>  - list moderation policy
+
+Do you have an example of such a policy?
+
+>  - archiving
+
+Not sure it makes for all, but, subscriptions to public ml should
+state that all communications on these lists are archived.
+
+>  - migration from the old server ( especially for archives migrations )
+
+I don't know if we can import Mailman archives into Sympa ones. If
+not, maybe we should just copy plain archives into a specific place
+and put redirection rules for existing ones.
+
+>  - setting a proper spam filter, with greylisting and sympa integration
+
+How is it managed at this time with Mailman? Can't this be done after
+Sympa production setup?
+
+>  - web interface setup and requirement
+
+Isn't a sympa vanilla install correct for that?
+
+>>  * we will import a copy of the Mandriva soft/ repository as
+>>    svn.mageia.org/soft-cleaning, and will use this repository to clean
+>>    all projects. Each project when ready will be imported in the new
+>>    soft/ repository (when the new organisation has been decided). The
+>>    soft-cleaning repository will only be used to do the cleaning work
+>>    and will be erased when finished.
+>
+> Without history ?
+
+Without svn history, this what I thought we agreed on yesterday
+(checking http://meetbot.mageia.org/mageia-meeting/2010/mageia-meeting.2010-11-15-19.36.html
+it is).
+
+> Because there is software that do not requires cleaning ( like mdvsys or
+> some software that were fully created by the community ).
+
+Not related, but isn't this a supplementary reason to have a separate
+SVN repository for each project, and not a single one for soft/ (as it
+is today)?
+
+Cheers,
+
+Romain
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000549.html b/zarb-ml/mageia-sysadm/2010-November/000549.html new file mode 100644 index 000000000..f6b80b556 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000549.html @@ -0,0 +1,93 @@ + + + + [Mageia-sysadm] svn layout + + + + + + + + + +

[Mageia-sysadm] svn layout

+ Romain d'Alverny + rdalverny at gmail.com +
+ Tue Nov 16 09:15:24 CET 2010 +

+
+ +
On Tue, Nov 16, 2010 at 00:16, Michael Scherer <misc at zarb.org> wrote:
+> [...]
+> So I propose that we start to use 1 svn per software project, instead of
+> keeping the current structure.
+
++1
+
+> Nanar provided some others opinions during tonight meeting on
+> http://meetbot.mageia.org/mageia-meeting/2010/mageia-meeting.2010-11-15-19.36.log.html#l-482
+
+ - setting up a new repository is/should be costless (especially if we
+expect to setup some forge for projects)
+ - even if a given project takes only one single file, the single fact
+that it is a single project on its own makes it relevant to have its
+own repository
+ - when we need to get a full checkout of all projects, this need this
+to be scripted as to avoid having to manually check each project after
+the other (and because at some point, this will not be done by hand
+either)
+
+Or did I misunderstand Nanar points?
+
+Romain
+
+ + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000550.html b/zarb-ml/mageia-sysadm/2010-November/000550.html new file mode 100644 index 000000000..805766cb8 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000550.html @@ -0,0 +1,102 @@ + + + + [Mageia-sysadm] modos + + + + + + + + + +

[Mageia-sysadm] modos

+ Maât + maat at vilarem.net +
+ Tue Nov 16 11:56:48 CET 2010 +

+
+ +
Le 15/11/2010 18:56, Michael Scherer a écrit :
+> Le dimanche 07 novembre 2010 à 21:48 +0100, Maât a écrit :
+>   
+>> Voilà la liste pour l'alias moderation
+>>
+>> stephengermany at earthlink.net (Stephen Germany aka Germ)
+>> megastorage74 at gmail.com (Stéphane Flavigny  aka stef74)
+>> aurelien.goll at gmail.com (Aurélien Goll  aka Ohan)
+>>
+>> omejean at yahoo.fr (Olivier Méjean aka goom)
+>> rom1dep at gmail.com (Romain ??? aka rom1dep)
+>> ashledombos at hodo.fr (Raphael Jadot aka ashledombos)
+>> maat-ml at vilarem.net (Pascal Vilarem aka maat)
+>>     
+> 1) not all zarb.org admins are aware of everything discussed on irc for
+> all hosted projects,, so if you send a request, please be more explicit 
+> ( unless you really want to have only 25% of the admin team caring of
+> the request, and if this is not important to see that those 25% is
+> taking some holidays )
+>   
+You're right i should have given a little bit more precisions.
+
+> 2) Why a alias and not a list ?
+>
+> I thought this was for discussion about the setup of the forum, and this
+> warrant archives, and therefor a list.
+>
+>   
+yup in the end we need a private list with non-public archives
+
+
+But Anne and rda thought it was better to have the list installed on the
+final sympa server without having the need to migrate.
+
+So while waiting for this sympa server and to avoid unnecessary work for
+sysadmins we agreed to use at first an alias so taht moderators can
+start speaking to each other and get used to the tools
+
+
+
+
+
+
+
+
+
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000551.html b/zarb-ml/mageia-sysadm/2010-November/000551.html new file mode 100644 index 000000000..8d4e237e3 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000551.html @@ -0,0 +1,201 @@ + + + + [Mageia-sysadm] Main tasks for the next days + + + + + + + + + +

[Mageia-sysadm] Main tasks for the next days

+ Michael Scherer + misc at zarb.org +
+ Tue Nov 16 13:54:37 CET 2010 +

+
+ +
Le mardi 16 novembre 2010 à 09:01 +0100, Romain d'Alverny a écrit :
+> On Tue, Nov 16, 2010 at 00:55, Michael Scherer <misc at zarb.org> wrote:
+
+
+> > There is lots of topic that we didn't really discussed about ML setup
+> > like :
+> >  - list moderation policy
+> 
+> Do you have an example of such a policy?
+
+Nope, but I guess we can find some of them for
+debian/ubuntu/fedora/gentoo.
+
+http://fedoraproject.org/wiki/Hall_Monitor_Policy
+https://wiki.ubuntu.com/MailingLists
+http://www.debian.org/MailingLists/HOWTO_start_list
+
+( but most research give MLs guideline for users, that we already have )
+
+But this is also related to the creation of a team to take care of that,
+and to the policy of creation. Ie, who decide that list are created or
+not. 
+
+And also who take care of the list that are not tied to a team. And who
+can moderate a list, the moderation team alone, the team leader, the
+sysadmin, a combination of them, etc ?
+
+> >  - archiving
+> 
+> Not sure it makes for all, but, subscriptions to public ml should
+> state that all communications on these lists are archived.
+
+We also need to discuss what will be public and what will not. 
+
+And what do we do with thing like gmane ( nntp and public archiving ). A
+automated integration would be nice ( like automatically subscribe to
+their service when we offer a mailing list ), but this would require a
+script I guess.
+
+There is also the topic of ml<-> forum integration.
+
+> >  - migration from the old server ( especially for archives migrations )
+> 
+> I don't know if we can import Mailman archives into Sympa ones. If
+> not, maybe we should just copy plain archives into a specific place
+> and put redirection rules for existing ones.
+
+Even we do import, we will likely lose links, and therefore we will need
+to change 1) blog posts 2) mailing list archives. So a copy of the
+website should be done indeed. How long should we keep the url is open
+to discussion.
+
+> >  - setting a proper spam filter, with greylisting and sympa integration
+> 
+> How is it managed at this time with Mailman? Can't this be done after
+> Sympa production setup?
+
+For mailman, this is managed at the smtp server level, and we do not
+have any kind of integration ( but this will likely change as I am quite
+tired of cleaning the queue of some others zarb.org project with 100
+spam per month ).
+
+And by integration, it usually mean "moderation/rejection based on SMTP
+headers".
+
+For the moment, there is around 1 to 2 spam per day that end in the
+moderation queue for mageia lists. Without spam filtering and
+greylisting, I suspect it will be much more ( greylisting reduced the
+load of spam by 90% the day we deployed it ). And as the one that clean
+the moderation queue quite often, I am not thrilled of having a mail
+server without spam protection :)
+
+But my point is we need a proper ( read with proper filtering and
+redundancy ) smtp server before having a ml server.
+
+> >  - web interface setup and requirement
+> 
+> Isn't a sympa vanilla install correct for that?
+
+We have to check, and for this, we need to know what we want.
+
+I am quite confident that it can be tweaked to do what we want as it
+offer templating ( with TT2 ) like most of the perl applications we
+deployed.
+
+( and in fact, I also think we should add "template technology used" to
+the list of criteria for selecting application, as I do not think the
+web team will love to have 23 types of languages to learn for this )
+
+But we need to see if there is work needed on this part. I mostly see
+the need to remove some part of the interface for some users, and the
+need for usual theming and navbar.
+
+
+A recurrent problem on AUFML server was that we had a dual admin
+interface : some people were subscribed with drupal and ldap ( and a
+nightly synchronisation script ), and some with mailman. 
+
+Yet, people used mailman to unsubcribe ( as this was the logical thing
+to do, and since nothing prevented it on mailman side ), and some people
+were then re subscribed each night, leading to frustration ( and some
+angry mails toward admins ). 
+
+
+> >>  * we will import a copy of the Mandriva soft/ repository as
+> >>    svn.mageia.org/soft-cleaning, and will use this repository to clean
+> >>    all projects. Each project when ready will be imported in the new
+> >>    soft/ repository (when the new organisation has been decided). The
+> >>    soft-cleaning repository will only be used to do the cleaning work
+> >>    and will be erased when finished.
+> >
+> > Without history ?
+> 
+> Without svn history, this what I thought we agreed on yesterday
+> (checking http://meetbot.mageia.org/mageia-meeting/2010/mageia-meeting.2010-11-15-19.36.html
+> it is).
+
+The lose of history was for the packages, not for soft ( at least,
+that's what I understand, given the fact that "history" is said 5 times
+and all related to packages, not soft/ ).
+
+We all agree that some softwares will need to be cleaned from icons, but
+IMHO, most of them don't. I also think we can do miracles with git-svn
+and history rewriting ( except it may take time ). 
+
+But having worked on software without svn history, I can tell you it is
+a source of recurrent frustration. You look at some weird piece of code,
+you do not understand why it was done like this, you do svn blame ->
+"rev 443 admin: import of the old repository". You are screwed.
+
+> > Because there is software that do not requires cleaning ( like mdvsys or
+> > some software that were fully created by the community ).
+> 
+> Not related, but isn't this a supplementary reason to have a separate
+> SVN repository for each project, and not a single one for soft/ (as it
+> is today)?
+
+Yes, it is.
+
+-- 
+Michael Scherer
+
+
+ + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000552.html b/zarb-ml/mageia-sysadm/2010-November/000552.html new file mode 100644 index 000000000..6abb8f847 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000552.html @@ -0,0 +1,68 @@ + + + + [Mageia-sysadm] Main tasks for the next days + + + + + + + + + +

[Mageia-sysadm] Main tasks for the next days

+ Olivier Blin + mageia at blino.org +
+ Tue Nov 16 13:57:51 CET 2010 +

+
+ +
Michael Scherer <misc at zarb.org> writes:
+
+> We all agree that some softwares will need to be cleaned from icons, but
+> IMHO, most of them don't.
+
+How about the Mandriva brand/name ?
+
+-- 
+Olivier Blin - blino
+
+ + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000553.html b/zarb-ml/mageia-sysadm/2010-November/000553.html new file mode 100644 index 000000000..15015eae9 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000553.html @@ -0,0 +1,99 @@ + + + + [Mageia-sysadm] modos + + + + + + + + + +

[Mageia-sysadm] modos

+ Michael Scherer + misc at zarb.org +
+ Tue Nov 16 13:59:27 CET 2010 +

+
+ +
Le mardi 16 novembre 2010 à 11:56 +0100, Maât a écrit :
+> Le 15/11/2010 18:56, Michael Scherer a écrit :
+
+> > 2) Why a alias and not a list ?
+> >
+> > I thought this was for discussion about the setup of the forum, and this
+> > warrant archives, and therefor a list.
+> >
+> >   
+> yup in the end we need a private list with non-public archives
+
+I am quite concerned by the fact that we already have few public
+informations on what is going on for the forum setup ( or at least, I
+didn't found them ), and as such a private list will not help.
+
+I understand the need for a private list for the moderation part.
+
+But discussing new rules and the forum setup is IMO not something that
+warrant a private list, quite the contrary and therefor should be
+separate from the day-to-day operational needs.
+
+Ie : 
+"we need to discuss the opportunity creation of a new subforum" =>
+public, as this will impact users and they may have something to say, or
+at least, to know.
+
+"we need to know what we do with this misc guy that keep posting
+pictures of nude duck everywhere" => private
+
+"we need to receive mail when a moderated post is done" => private ( it
+is modearated to not be public, so that's logical to not publish it
+somewhere else ).
+
+"we need to discuss the creation of a new rules that forbid the posting
+of duck picture" => public
+
+So I propose to create a ml mageia-forumteam, with public archives, and
+later a mageia-forumteam-moderation, for modeartion purpose, with
+private archives.
+
+-- 
+Michael Scherer
+
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000554.html b/zarb-ml/mageia-sysadm/2010-November/000554.html new file mode 100644 index 000000000..e9316be46 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000554.html @@ -0,0 +1,97 @@ + + + + [Mageia-sysadm] [256] More verbose on new blog post to translate + + + + + + + + + +

[Mageia-sysadm] [256] More verbose on new blog post to translate

+ root at mageia.org + root at mageia.org +
+ Tue Nov 16 14:11:13 CET 2010 +

+
+ +
Revision: 256
+Author:   dams
+Date:     2010-11-16 14:11:13 +0100 (Tue, 16 Nov 2010)
+Log Message:
+-----------
+More verbose on new blog post to translate
+
+Modified Paths:
+--------------
+    puppet/modules/blog/templates/check_new-blog-post.sh
+
+Modified: puppet/modules/blog/templates/check_new-blog-post.sh
+===================================================================
+--- puppet/modules/blog/templates/check_new-blog-post.sh	2010-11-15 21:39:24 UTC (rev 255)
++++ puppet/modules/blog/templates/check_new-blog-post.sh	2010-11-16 13:11:13 UTC (rev 256)
+@@ -22,8 +22,11 @@
+ 		echo "NO" >> $PATH_TO_FILE"/last_check"
+ 	else
+ 		# New post to translate
++		cat $PATH_TO_FILE"/last_check" > $PATH_TO_FILE"/last_need_translation"
++		new_post=$(grep "title" $PATH_TO_FILE"/RSS_new" | head -n 2 | sed '1d' | sed 's/<title>//' | sed 's/<\/title>//' | sed 's/^[ \t]*//')
++		echo $new_post >> $PATH_TO_FILE"/last_need_translation"
+ 		echo "YES" >> $PATH_TO_FILE"/last_check"
+-		echo "A new blog post is waiting for translation" | /bin/mail -s "New entry on English Blog" mageia-blogteam at mageia.org
++		echo "A new blog post is waiting for translation\n\"$new_post\"" | /bin/mail -s "New entry on English Blog" mageia-blogteam at mageia.org
+ 		echo $DATE
+ fi
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101116/b4e0215b/attachment.html>
+
+ + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000555.html b/zarb-ml/mageia-sysadm/2010-November/000555.html new file mode 100644 index 000000000..4cb39c645 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000555.html @@ -0,0 +1,120 @@ + + + + [Mageia-sysadm] modos + + + + + + + + + +

[Mageia-sysadm] modos

+ Maât + maat at vilarem.net +
+ Tue Nov 16 14:17:04 CET 2010 +

+
+ +
Le 16/11/2010 13:59, Michael Scherer a écrit :
+> I am quite concerned by the fact that we already have few public
+> informations on what is going on for the forum setup ( or at least, I
+> didn't found them ), and as such a private list will not help.
+>
+> I understand the need for a private list for the moderation part.
+>   
+This is the goal of the list/alias we are currently speaking of :)
+
+> But discussing new rules and the forum setup is IMO not something that
+> warrant a private list, quite the contrary and therefor should be
+> separate from the day-to-day operational needs.
+>
+>   
+Agreed
+
+> Ie : 
+> "we need to discuss the opportunity creation of a new subforum" =>
+> public, as this will impact users and they may have something to say, or
+> at least, to know.
+>
+>   
+Yep and such discussions will be held on subforum dedicated to forum
+evolutions/improvements :)
+
+> "we need to know what we do with this misc guy that keep posting
+> pictures of nude duck everywhere" => private
+>
+>   
+Yes :)
+
+> "we need to receive mail when a moderated post is done" => private ( it
+> is modearated to not be public, so that's logical to not publish it
+> somewhere else ).
+>
+>   
+Yes also :)
+
+> "we need to discuss the creation of a new rules that forbid the posting
+> of duck picture" => public
+>
+>   
+Indeed (but sometimes we could have to deal privately with rules
+enforcements when for example someone found a way to bring trouble while
+still abiding by the rules)
+
+> So I propose to create a ml mageia-forumteam, with public archives, and
+> later a mageia-forumteam-moderation, for modeartion purpose, with
+> private archives.
+>   
+Atm we need moderation list to start building moderation team and we
+need one or 2 more moderators and i want this to be dealt with by
+moderators we already recruited through the alias/list so that they
+start to train themselves (working together, asking for peer advice,
+warning others of current moderation hot events...)+
+
+(For forum evolution i'd rather use a public subforum instead of a
+mailing list)
+
+Maât
+
+
+
+
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000556.html b/zarb-ml/mageia-sysadm/2010-November/000556.html new file mode 100644 index 000000000..601d07311 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000556.html @@ -0,0 +1,69 @@ + + + + [Mageia-sysadm] modos + + + + + + + + + +

[Mageia-sysadm] modos

+ nicolas vigier + boklm at mars-attacks.org +
+ Tue Nov 16 16:23:36 CET 2010 +

+
+ +
On Tue, 16 Nov 2010, Maât wrote:
+
+> > So I propose to create a ml mageia-forumteam, with public archives, and
+> > later a mageia-forumteam-moderation, for modeartion purpose, with
+> > private archives.
+> >   
+> Atm we need moderation list to start building moderation team and we
+> need one or 2 more moderators and i want this to be dealt with by
+> moderators we already recruited through the alias/list so that they
+> start to train themselves (working together, asking for peer advice,
+> warning others of current moderation hot events...)+
+
+Other than that, what is the current status about the forum setup ?
+
+
+ + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000557.html b/zarb-ml/mageia-sysadm/2010-November/000557.html new file mode 100644 index 000000000..890897c1f --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000557.html @@ -0,0 +1,102 @@ + + + + [Mageia-sysadm] [257] add MX records for ml.mageia.org + + + + + + + + + +

[Mageia-sysadm] [257] add MX records for ml.mageia.org

+ root at mageia.org + root at mageia.org +
+ Tue Nov 16 16:44:23 CET 2010 +

+
+ +
Revision: 257
+Author:   boklm
+Date:     2010-11-16 16:44:23 +0100 (Tue, 16 Nov 2010)
+Log Message:
+-----------
+add MX records for ml.mageia.org
+
+Modified Paths:
+--------------
+    puppet/modules/bind/templates/zones/mageia.org.zone
+
+Modified: puppet/modules/bind/templates/zones/mageia.org.zone
+===================================================================
+--- puppet/modules/bind/templates/zones/mageia.org.zone	2010-11-16 13:11:13 UTC (rev 256)
++++ puppet/modules/bind/templates/zones/mageia.org.zone	2010-11-16 15:44:23 UTC (rev 257)
+@@ -3,7 +3,7 @@
+ ; $Id$
+ $TTL	3D
+ @       IN      SOA     ns0.mageia.org.   root.mageia.org.  (
+-        2010111000	; Serial
++        2010111600	; Serial
+         21600		; Refresh
+         3600		; Retry
+         2419200		; Expire
+@@ -17,6 +17,9 @@
+ @   IN      MX 10   mx0.zarb.org.
+ @   IN      MX 20   mx1.zarb.org.
+ 
++ml  IN      MX 10   alamut.mageia.org.
++ml  IN      MX 20   krampouezh.mageia.org.
++
+ ; MX
+ ;@	IN	MX	10 mx0.zarb.org.
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101116/e38cd3df/attachment.html>
+
+ + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000558.html b/zarb-ml/mageia-sysadm/2010-November/000558.html new file mode 100644 index 000000000..38339d734 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000558.html @@ -0,0 +1,127 @@ + + + + [Mageia-sysadm] [258] add config for primary mail server (not ready for use yet) + + + + + + + + + +

[Mageia-sysadm] [258] add config for primary mail server (not ready for use yet)

+ root at mageia.org + root at mageia.org +
+ Tue Nov 16 17:05:31 CET 2010 +

+
+ +
Revision: 258
+Author:   boklm
+Date:     2010-11-16 17:05:30 +0100 (Tue, 16 Nov 2010)
+Log Message:
+-----------
+add config for primary mail server (not ready for use yet)
+
+Added Paths:
+-----------
+    puppet/modules/postfix/templates/primary_main.cf
+
+Added: puppet/modules/postfix/templates/primary_main.cf
+===================================================================
+--- puppet/modules/postfix/templates/primary_main.cf	                        (rev 0)
++++ puppet/modules/postfix/templates/primary_main.cf	2010-11-16 16:05:30 UTC (rev 258)
+@@ -0,0 +1,41 @@
++# Please be sure to read the /usr/share/doc/postfix/README.MDK file
++# to learn about differences from stock postfix to Mandriva package.
++# This file contains only the parameters changed from a default install
++# see /etc/postfix/main.cf.dist for a commented, fuller version of this file.
++
++<%
++path_daemon_directory = "/usr/lib" + ( architecture == "x86_64" ? '64' : '') + "/postfix/"
++%>
++
++# These are changed by postfix install script
++readme_directory = /usr/share/doc/postfix/README_FILES
++html_directory = /usr/share/doc/postfix/html
++sendmail_path = /usr/sbin/sendmail.postfix
++setgid_group = postdrop
++command_directory = /usr/sbin
++manpage_directory = /usr/share/man
++daemon_directory = <%= path_daemon_directory %>
++data_directory = /var/lib/postfix
++newaliases_path = /usr/bin/newaliases
++mailq_path = /usr/bin/mailq
++queue_directory = /var/spool/postfix
++mail_owner = postfix
++
++# User configurable parameters
++
++inet_interfaces = localhost
++inet_protocols = all
++mynetworks_style = host
++myhostname = <%= fqdn %>
++mydomain = <%= domain %>
++mydestination = <%= fqdn %>, ml.<%= domain %>
++myorigin = $mydomain
++#delay_warning_time = 4h
++smtpd_banner = $myhostname ESMTP $mail_name ($mail_version) (Mandriva Linux)
++unknown_local_recipient_reject_code = 450
++smtp-filter_destination_concurrency_limit = 2
++lmtp-filter_destination_concurrency_limit = 2
++smtpd_use_tls = yes
++smtpd_tls_cert_file = /etc/pki/tls/certs/postfix.pem
++smtpd_tls_key_file = /etc/pki/tls/private/postfix.pem
++smtpd_tls_CAfile = /etc/pki/tls/certs/ca-bundle.crt
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101116/7aa4fc66/attachment.html>
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000559.html b/zarb-ml/mageia-sysadm/2010-November/000559.html new file mode 100644 index 000000000..9056474de --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000559.html @@ -0,0 +1,186 @@ + + + + [Mageia-sysadm] Main tasks for the next days + + + + + + + + + +

[Mageia-sysadm] Main tasks for the next days

+ Michael Scherer + misc at zarb.org +
+ Tue Nov 16 17:45:00 CET 2010 +

+
+ +
Le mardi 16 novembre 2010 à 13:57 +0100, Olivier Blin a écrit :
+> Michael Scherer <misc at zarb.org> writes:
+> 
+> > We all agree that some softwares will need to be cleaned from icons, but
+> > IMHO, most of them don't.
+> 
+> How about the Mandriva brand/name ?
+
+Well, it depend, where exactly should it be cleaned ?
+
+Because I doubt that having the Mandriva word buried somewhere in a perl
+file is "using the Mandriva brand", especially if the file is not
+distributed in a tarball as a separate product. 
+
+Definition from wikipedia ( us laws, but I think this part is harmonized
+thanks to various treaties, and the french definition is similar ) :
+
+" a distinctive sign or indicator used by an individual, business
+organization, or other legal entity to identify that the products or
+services to consumers with which the trademark appears originate from a
+unique source, and to distinguish its products or services from those of
+other entities."
+
+If we don't use the name as a distinctive sign or indicator to identify
+a product or a service, then it is not used as a brand or a trademark.
+
+So if we do not use it as a brand or trademark, then the protection do
+not apply.
+
+For example, saying mandriva is not forbidden ( not yet :) ). On the
+other hand, calling a association mandriva-duck would be using the name
+as a brand/trademark and therefor would requires autorisation ( or be
+risky ).
+
+So, my own analysis :
+
+If the name is displayed in a released product to identify it, yes, this
+is problematic. In the rpm name, in the interface like "mandriva control
+center" in title or "about page", in the documentation.
+
+If the name is used in email, or for copyright notice, then we need to
+keep it ( as doing otherwise would be seen as copyright violation ).
+
+If the name is used in a comment, in a procedure or variable name, or in
+a url for technical reason, I do not think it need to be removed
+( except for technical reason, obviously ). 
+
+Now, the tricky part : 
+If we have a file in svn that would display the name in such a way that
+would be used as brand, it this a problem ?
+
+I think it is not, as long as we do not distribute this as a product
+( ie, release a tarball ), nor encourage people to use the old version
+( ie if we say "use the old svn version as the feature are much better
+with all unfixed bug" ). We will be clearly doing the contrary, ie
+distribute fixed software ( with fixed meaning without actively using
+Mandriva name in such a way that we will use it as a brand, distribute
+mean "putting a tarball on our server" ) and push usually the latest
+version. 
+
+Hearst lawyers didn't asked to remove the name from svn/cvs afaik.
+Neither did mozilla asked Debian to do so for the mozilla/iceweasel
+case. 
+
+
+For example, let's take urpmi :
+[misc at virgo ~] $ grep -i -s  mandriva $(rpm -ql urpmi) | grep -v
+Copyright
+
+I removed Copyright because that's legal mention that IMO we need to
+keep.
+
+And so it give :
+/usr/share/doc/urpmi/NEWS is not using the mark ( 2 links and 2
+explanation upon a new feature about mandriva kernel ), this is ot used
+as a distinctive sign.
+
+/usr/lib/perl5/vendor_perl/5.10.0/urpm.pm
+used in the description of the tool.
+
+urpm - Mandriva perl tools to handle the urpmi database
+
+this one is likely be something we will need to change if we distribute
+the module. 
+
+
+/usr/lib/perl5/vendor_perl/5.10.0/urpm/cfg.pm
+-> url to the mirror, can be kept in svn ( but need to be changed to
+work again )
+
+
+/usr/lib/perl5/vendor_perl/5.10.0/urpm/media.pm
+
+$distribconf->settree('mandriva');
+
+name is used as a constant, this is not displayed anywhere. Therefore,
+no problem in keeping it in the history.
+
+/usr/lib/perl5/vendor_perl/5.10.0/urpm/mirrors.pm
+
+-> a procedure called    _mandriva_mirrorlist. Not a trademark
+violation, as this is never displayed. It should be indeed changed to be
+cleaner.
+And some urls used by the procedure.
+
+
+/usr/lib/perl5/vendor_perl/5.10.0/urpm/msg.pm
+
+a comment telling this come from svn.mandriva.com. Not a trademark
+violation.
+
+So basically, for urpmi ( a old version ), the only thing to change is
+the documentation. And as long as we do not distribute it ( ie, in a
+package or in a tarball ), I think it is not used as a distinctive
+sign. 
+
+I will also add that Mandriva is a trademark, but mdv and mdk are not.
+
+Therefore, except the various mandriva-foo-config ( who are more
+configuration than software ) and rpm-mandriva-setup, the software name
+will likely not be a problem.
+
+
+Now, if we decide that we also need to clean svn, we can use git and
+tailor to do some trick to clean the source code ( ie, in the case of
+urpmi, remove the name mandriva from the pod documentation ).
+ 
+-- 
+Michael Scherer
+
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000560.html b/zarb-ml/mageia-sysadm/2010-November/000560.html new file mode 100644 index 000000000..40fb11ca5 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000560.html @@ -0,0 +1,88 @@ + + + + [Mageia-sysadm] [258] add config for primary mail server (not ready for use yet) + + + + + + + + + +

[Mageia-sysadm] [258] add config for primary mail server (not ready for use yet)

+ Luca Berra + bluca at vodka.it +
+ Tue Nov 16 23:10:11 CET 2010 +

+
+ +
On Tue, Nov 16, 2010 at 05:05:31PM +0100, root at mageia.org wrote:
+>+inet_interfaces = localhost
+uhm
+
+>+inet_protocols = all
+>+mynetworks_style = host
+>+myhostname = <%= fqdn %>
+>+mydomain = <%= domain %>
+>+mydestination = <%= fqdn %>, ml.<%= domain %>
+uhm, shouldn't it also accept for $mydomain
+
+>+myorigin = $mydomain
+>+#delay_warning_time = 4h
+>+smtpd_banner = $myhostname ESMTP $mail_name ($mail_version) (Mandriva Linux)
+>+unknown_local_recipient_reject_code = 450
+remember to remove this
+
+
+
+-- 
+Luca Berra -- bluca at vodka.it
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000561.html b/zarb-ml/mageia-sysadm/2010-November/000561.html new file mode 100644 index 000000000..09b55a72a --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000561.html @@ -0,0 +1,96 @@ + + + + [Mageia-sysadm] [259] Comment MX entries this breaks alamut + + + + + + + + + +

[Mageia-sysadm] [259] Comment MX entries this breaks alamut

+ root at mageia.org + root at mageia.org +
+ Wed Nov 17 02:19:19 CET 2010 +

+
+ +
Revision: 259
+Author:   dmorgan
+Date:     2010-11-17 02:19:19 +0100 (Wed, 17 Nov 2010)
+Log Message:
+-----------
+Comment MX entries this breaks alamut
+
+Modified Paths:
+--------------
+    puppet/modules/bind/templates/zones/mageia.org.zone
+
+Modified: puppet/modules/bind/templates/zones/mageia.org.zone
+===================================================================
+--- puppet/modules/bind/templates/zones/mageia.org.zone	2010-11-16 16:05:30 UTC (rev 258)
++++ puppet/modules/bind/templates/zones/mageia.org.zone	2010-11-17 01:19:19 UTC (rev 259)
+@@ -17,8 +17,8 @@
+ @   IN      MX 10   mx0.zarb.org.
+ @   IN      MX 20   mx1.zarb.org.
+ 
+-ml  IN      MX 10   alamut.mageia.org.
+-ml  IN      MX 20   krampouezh.mageia.org.
++;ml  IN      MX 10   alamut.mageia.org.
++;ml  IN      MX 20   krampouezh.mageia.org.
+ 
+ ; MX
+ ;@	IN	MX	10 mx0.zarb.org.
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101117/26acb749/attachment-0001.html>
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000562.html b/zarb-ml/mageia-sysadm/2010-November/000562.html new file mode 100644 index 000000000..3fa8ce270 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000562.html @@ -0,0 +1,94 @@ + + + + [Mageia-sysadm] [260] Increase serial + + + + + + + + + +

[Mageia-sysadm] [260] Increase serial

+ root at mageia.org + root at mageia.org +
+ Wed Nov 17 02:22:36 CET 2010 +

+
+ +
Revision: 260
+Author:   dmorgan
+Date:     2010-11-17 02:22:36 +0100 (Wed, 17 Nov 2010)
+Log Message:
+-----------
+Increase serial
+
+Modified Paths:
+--------------
+    puppet/modules/bind/templates/zones/mageia.org.zone
+
+Modified: puppet/modules/bind/templates/zones/mageia.org.zone
+===================================================================
+--- puppet/modules/bind/templates/zones/mageia.org.zone	2010-11-17 01:19:19 UTC (rev 259)
++++ puppet/modules/bind/templates/zones/mageia.org.zone	2010-11-17 01:22:36 UTC (rev 260)
+@@ -3,7 +3,7 @@
+ ; $Id$
+ $TTL	3D
+ @       IN      SOA     ns0.mageia.org.   root.mageia.org.  (
+-        2010111600	; Serial
++        2010111700	; Serial
+         21600		; Refresh
+         3600		; Retry
+         2419200		; Expire
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101117/5ce86052/attachment.html>
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000563.html b/zarb-ml/mageia-sysadm/2010-November/000563.html new file mode 100644 index 000000000..85240bc38 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000563.html @@ -0,0 +1,104 @@ + + + + [Mageia-sysadm] [257] add MX records for ml.mageia.org + + + + + + + + + +

[Mageia-sysadm] [257] add MX records for ml.mageia.org

+ Dexter Morgan + dmorganec at gmail.com +
+ Wed Nov 17 02:28:32 CET 2010 +

+
+ +
On Tue, Nov 16, 2010 at 4:44 PM,  <root at mageia.org> wrote:
+> Revision 257 Author boklm Date 2010-11-16 16:44:23 +0100 (Tue, 16 Nov 2010)
+>
+> Log Message
+>
+> add MX records for ml.mageia.org
+>
+> Modified Paths
+>
+> puppet/modules/bind/templates/zones/mageia.org.zone
+>
+> Modified: puppet/modules/bind/templates/zones/mageia.org.zone
+> ===================================================================
+> --- puppet/modules/bind/templates/zones/mageia.org.zone	2010-11-16 13:11:13
+> UTC (rev 256)
+> +++ puppet/modules/bind/templates/zones/mageia.org.zone	2010-11-16 15:44:23
+> UTC (rev 257)
+> @@ -3,7 +3,7 @@
+>  ; $Id$
+>  $TTL	3D
+>  @       IN      SOA     ns0.mageia.org.   root.mageia.org.  (
+> -        2010111000	; Serial
+> +        2010111600	; Serial
+>          21600		; Refresh
+>          3600		; Retry
+>          2419200		; Expire
+> @@ -17,6 +17,9 @@
+>  @   IN      MX 10   mx0.zarb.org.
+>  @   IN      MX 20   mx1.zarb.org.
+>
+> +ml  IN      MX 10   alamut.mageia.org.
+> +ml  IN      MX 20   krampouezh.mageia.org.
+> +
+>  ; MX
+>  ;@	IN	MX	10 mx0.zarb.org.
+>
+
+Hi,
+
+i just have commented those 2 lines for the moment because it breaked
+alamut and breaks name resolution.
+
+ + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000564.html b/zarb-ml/mageia-sysadm/2010-November/000564.html new file mode 100644 index 000000000..fcbd8dca0 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000564.html @@ -0,0 +1,113 @@ + + + + [Mageia-sysadm] [257] add MX records for ml.mageia.org + + + + + + + + + +

[Mageia-sysadm] [257] add MX records for ml.mageia.org

+ Michael Scherer + misc at zarb.org +
+ Wed Nov 17 02:55:05 CET 2010 +

+
+ +
Le mercredi 17 novembre 2010 à 02:28 +0100, Dexter Morgan a écrit :
+> On Tue, Nov 16, 2010 at 4:44 PM,  <root at mageia.org> wrote:
+> > Revision 257 Author boklm Date 2010-11-16 16:44:23 +0100 (Tue, 16 Nov 2010)
+> >
+> > Log Message
+> >
+> > add MX records for ml.mageia.org
+> >
+> > Modified Paths
+> >
+> > puppet/modules/bind/templates/zones/mageia.org.zone
+> >
+> > Modified: puppet/modules/bind/templates/zones/mageia.org.zone
+> > ===================================================================
+> > --- puppet/modules/bind/templates/zones/mageia.org.zone	2010-11-16 13:11:13
+> > UTC (rev 256)
+> > +++ puppet/modules/bind/templates/zones/mageia.org.zone	2010-11-16 15:44:23
+> > UTC (rev 257)
+> > @@ -3,7 +3,7 @@
+> >  ; $Id$
+> >  $TTL	3D
+> >  @       IN      SOA     ns0.mageia.org.   root.mageia.org.  (
+> > -        2010111000	; Serial
+> > +        2010111600	; Serial
+> >          21600		; Refresh
+> >          3600		; Retry
+> >          2419200		; Expire
+> > @@ -17,6 +17,9 @@
+> >  @   IN      MX 10   mx0.zarb.org.
+> >  @   IN      MX 20   mx1.zarb.org.
+> >
+> > +ml  IN      MX 10   alamut.mageia.org.
+> > +ml  IN      MX 20   krampouezh.mageia.org.
+> > +
+> >  ; MX
+> >  ;@	IN	MX	10 mx0.zarb.org.
+> >
+> 
+> Hi,
+> 
+> i just have commented those 2 lines for the moment because it breaked
+> alamut and breaks name resolution.
+
+Can you explain a little bit more ?
+
+
+
+-- 
+Michael Scherer
+
+
+ + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000565.html b/zarb-ml/mageia-sysadm/2010-November/000565.html new file mode 100644 index 000000000..747c1b419 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000565.html @@ -0,0 +1,128 @@ + + + + [Mageia-sysadm] [257] add MX records for ml.mageia.org + + + + + + + + + +

[Mageia-sysadm] [257] add MX records for ml.mageia.org

+ Michael Scherer + misc at zarb.org +
+ Wed Nov 17 03:45:10 CET 2010 +

+
+ +
Le mercredi 17 novembre 2010 à 02:55 +0100, Michael Scherer a écrit :
+> Le mercredi 17 novembre 2010 à 02:28 +0100, Dexter Morgan a écrit :
+> > On Tue, Nov 16, 2010 at 4:44 PM,  <root at mageia.org> wrote:
+> > > Revision 257 Author boklm Date 2010-11-16 16:44:23 +0100 (Tue, 16 Nov 2010)
+> > >
+> > > Log Message
+> > >
+> > > add MX records for ml.mageia.org
+> > >
+> > > Modified Paths
+> > >
+> > > puppet/modules/bind/templates/zones/mageia.org.zone
+> > >
+> > > Modified: puppet/modules/bind/templates/zones/mageia.org.zone
+> > > ===================================================================
+> > > --- puppet/modules/bind/templates/zones/mageia.org.zone	2010-11-16 13:11:13
+> > > UTC (rev 256)
+> > > +++ puppet/modules/bind/templates/zones/mageia.org.zone	2010-11-16 15:44:23
+> > > UTC (rev 257)
+> > > @@ -3,7 +3,7 @@
+> > >  ; $Id$
+> > >  $TTL	3D
+> > >  @       IN      SOA     ns0.mageia.org.   root.mageia.org.  (
+> > > -        2010111000	; Serial
+> > > +        2010111600	; Serial
+> > >          21600		; Refresh
+> > >          3600		; Retry
+> > >          2419200		; Expire
+> > > @@ -17,6 +17,9 @@
+> > >  @   IN      MX 10   mx0.zarb.org.
+> > >  @   IN      MX 20   mx1.zarb.org.
+> > >
+> > > +ml  IN      MX 10   alamut.mageia.org.
+> > > +ml  IN      MX 20   krampouezh.mageia.org.
+> > > +
+> > >  ; MX
+> > >  ;@	IN	MX	10 mx0.zarb.org.
+> > >
+> > 
+> > Hi,
+> > 
+> > i just have commented those 2 lines for the moment because it breaked
+> > alamut and breaks name resolution.
+> 
+> Can you explain a little bit more ?
+
+So it turn out the zone was incorrect :
+
+ $ /usr/sbin/named-checkzone mageia.org ./mageia.org.zone 
+dns_master_load: ./mageia.org.zone:77: ml.mageia.org: CNAME and other
+data
+zone mageia.org/IN: loading from master file ./mageia.org.zone failed:
+CNAME and other data
+zone mageia.org/IN: not loaded due to errors.
+
+Ie, we cannot mix CNAME and MX for the same entry in the dns. So I have
+moved this to use a A and AAAA record for ml.mageia.org .
+
+I propose to add a check for dns zone in svn that will prevent this
+issue next time. ( we do have a working one at zarb that I will cut and
+paste ).
+
+
+-- 
+Michael Scherer
+
+
+ + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000566.html b/zarb-ml/mageia-sysadm/2010-November/000566.html new file mode 100644 index 000000000..2258ef61f --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000566.html @@ -0,0 +1,121 @@ + + + + [Mageia-sysadm] [261] - renable ml domain after fixing the CNAME issue + + + + + + + + + +

[Mageia-sysadm] [261] - renable ml domain after fixing the CNAME issue

+ root at mageia.org + root at mageia.org +
+ Wed Nov 17 03:45:43 CET 2010 +

+
+ +
Revision: 261
+Author:   misc
+Date:     2010-11-17 03:45:43 +0100 (Wed, 17 Nov 2010)
+Log Message:
+-----------
+- renable ml domain after fixing the CNAME issue
+
+Modified Paths:
+--------------
+    puppet/modules/bind/templates/zones/mageia.org.zone
+
+Modified: puppet/modules/bind/templates/zones/mageia.org.zone
+===================================================================
+--- puppet/modules/bind/templates/zones/mageia.org.zone	2010-11-17 01:22:36 UTC (rev 260)
++++ puppet/modules/bind/templates/zones/mageia.org.zone	2010-11-17 02:45:43 UTC (rev 261)
+@@ -3,7 +3,7 @@
+ ; $Id$
+ $TTL	3D
+ @       IN      SOA     ns0.mageia.org.   root.mageia.org.  (
+-        2010111700	; Serial
++        2010111701	; Serial
+         21600		; Refresh
+         3600		; Retry
+         2419200		; Expire
+@@ -17,8 +17,8 @@
+ @   IN      MX 10   mx0.zarb.org.
+ @   IN      MX 20   mx1.zarb.org.
+ 
+-;ml  IN      MX 10   alamut.mageia.org.
+-;ml  IN      MX 20   krampouezh.mageia.org.
++ml  IN      MX 10   alamut.mageia.org.
++ml  IN      MX 20   krampouezh.mageia.org.
+ 
+ ; MX
+ ;@	IN	MX	10 mx0.zarb.org.
+@@ -38,6 +38,10 @@
+ ; lost oasis
+ alamut      IN  A       212.85.158.146
+ alamut      IN  AAAA    2a02:2178:2:7::2
++; since we have a subdomain, we cannot use a CNAME
++ml          IN  A       212.85.158.146
++ml          IN  AAAA    2a02:2178:2:7::2
++
+ valstar     IN  A       212.85.158.147
+ valstar     IN  AAAA    2a02:2178:2:7::3
+ ecosse      IN  A       212.85.158.148
+@@ -74,7 +78,6 @@
+ epoll       IN CNAME alamut
+ pgsql       IN CNAME alamut
+ bugs        IN CNAME alamut
+-ml          IN CNAME alamut
+ lists       IN CNAME alamut
+ ; temporary
+ ;forum       IN A 140.211.167.148
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101117/f926c176/attachment.html>
+
+ + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000567.html b/zarb-ml/mageia-sysadm/2010-November/000567.html new file mode 100644 index 000000000..32eff9794 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000567.html @@ -0,0 +1,212 @@ + + + + [Mageia-sysadm] [262] - import mandriva script to export ssh keys ( need some cleaning ) + + + + + + + + + +

[Mageia-sysadm] [262] - import mandriva script to export ssh keys ( need some cleaning )

+ root at mageia.org + root at mageia.org +
+ Wed Nov 17 15:17:29 CET 2010 +

+
+ +
Revision: 262
+Author:   misc
+Date:     2010-11-17 15:17:29 +0100 (Wed, 17 Nov 2010)
+Log Message:
+-----------
+- import mandriva script to export ssh keys ( need some cleaning )
+
+Modified Paths:
+--------------
+    puppet/modules/restrictshell/manifests/init.pp
+
+Added Paths:
+-----------
+    puppet/modules/restrictshell/templates/ldap-sshkey2file.py
+
+Modified: puppet/modules/restrictshell/manifests/init.pp
+===================================================================
+--- puppet/modules/restrictshell/manifests/init.pp	2010-11-17 02:45:43 UTC (rev 261)
++++ puppet/modules/restrictshell/manifests/init.pp	2010-11-17 14:17:29 UTC (rev 262)
+@@ -26,4 +26,21 @@
+     mode => 755,
+     content => template("restrictshell/membersh-conf.pl"),
+   }
++
++  package { 'python-ldap':
++    ensure => installed,
++  }
++
++  file { '/usr/local/bin/ldap-sshkey2file.py':
++    ensure => present,
++    owner => root,
++    group => root,
++    mode => 755,
++    content => template("restrictshell/ldap-sshkey2file.py"),
++    requires => Package['python-ldap']
++  } 
++
++
++
++
+ }
+
+Added: puppet/modules/restrictshell/templates/ldap-sshkey2file.py
+===================================================================
+--- puppet/modules/restrictshell/templates/ldap-sshkey2file.py	                        (rev 0)
++++ puppet/modules/restrictshell/templates/ldap-sshkey2file.py	2010-11-17 14:17:29 UTC (rev 262)
+@@ -0,0 +1,92 @@
++#!/usr/bin/python
++
++import sys
++import os
++import random
++
++try:
++    import ldap
++except ImportError, e:
++    print "Please install python-ldap before running this program"
++    sys.exit(1)
++
++basedn="dc=mandriva,dc=com"
++peopledn="ou=people,%s" % basedn
++uris=['ldap://kenobi.mandriva.com','ldap://svn.mandriva.com']
++random.shuffle(uris)
++uri = " ".join(uris)
++timeout=5
++binddn="uid=sshkeyreader,ou=System Accounts,%s" % basedn
++pwfile="/etc/sshkeyreader.pw"
++# filter out disabled accounts also
++# too bad uidNumber doesn't support >= filters
++filter="(&(objectClass=inetOrgPerson)(objectClass=ldapPublicKey)(objectClass=posixAccount)(sshPublicKey=*)(!(shadowExpire=*)))"
++keypathprefix="/var/lib/config/pubkeys"
++
++def usage():
++    print "%s" % sys.argv[0]
++    print
++    print "Will fetch all enabled user accounts under %s" % peopledn
++    print "with ssh keys in them and write each one to"
++    print "%s/<login>/authorized_keys" % keypathprefix
++    print
++    print "This script is intented to be run from cron as root"
++    print
++
++def get_pw(pwfile):
++    try:
++        f = open(pwfile, 'r')
++    except IOError, e:
++        print "Error while reading password file, aborting"
++        print e
++        sys.exit(1)
++    pw = f.readline().strip()
++    f.close()
++    return pw
++
++def write_keys(keys, user, uid, gid):
++    try:
++        os.makedirs("%s/%s" % (keypathprefix,user), 0700)
++    except:
++        pass
++    keyfile = "%s/%s/authorized_keys" % (keypathprefix,user)
++    f = open(keyfile, 'w')
++    for key in keys:
++        f.write(key.strip() + "\n")
++    f.close()
++    os.chmod(keyfile, 0600)
++    os.chown(keyfile, uid, gid)
++    os.chmod("%s/%s" % (keypathprefix,user), 0700)
++    os.chown("%s/%s" % (keypathprefix,user), uid, gid)
++
++if len(sys.argv) != 1:
++    usage()
++    sys.exit(1)
++
++bindpw = get_pw(pwfile)
++
++try:
++    ld = ldap.initialize(uri)
++    ld.set_option(ldap.OPT_NETWORK_TIMEOUT, timeout)
++    ld.start_tls_s()
++    ld.bind_s(binddn, bindpw)
++    res = ld.search_s(peopledn, ldap.SCOPE_ONELEVEL, filter, ['uid','sshPublicKey','uidNumber','gidNumber'])
++    try:
++        os.makedirs(keypathprefix, 0701)
++    except:
++        pass
++    for result in res:
++        dn, entry = result
++        # skip possible system users
++        if int(entry['uidNumber'][0]) < 500:
++            continue
++        write_keys(entry['sshPublicKey'], entry['uid'][0], int(entry['uidNumber'][0]), int(entry['gidNumber'][0]))
++    ld.unbind_s()
++except Exception, e:
++    print "Error"
++    raise
++
++sys.exit(0)
++
++
++# vim:ts=4:sw=4:et:ai:si
+
+
+Property changes on: puppet/modules/restrictshell/templates/ldap-sshkey2file.py
+___________________________________________________________________
+Added: svn:executable
+   + *
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101117/f94d7af2/attachment.html>
+
+ + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000568.html b/zarb-ml/mageia-sysadm/2010-November/000568.html new file mode 100644 index 000000000..c45ee5f7e --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000568.html @@ -0,0 +1,128 @@ + + + + [Mageia-sysadm] [263] - adapt the script to our infrastructure ( ie, use our domain, and create the directory holding the key ) + + + + + + + + + +

[Mageia-sysadm] [263] - adapt the script to our infrastructure ( ie, use our domain, and create the directory holding the key )

+ root at mageia.org + root at mageia.org +
+ Wed Nov 17 15:28:30 CET 2010 +

+
+ +
Revision: 263
+Author:   misc
+Date:     2010-11-17 15:28:30 +0100 (Wed, 17 Nov 2010)
+Log Message:
+-----------
+- adapt the script to our infrastructure ( ie, use our domain, and create the directory holding the key ) 
+
+Modified Paths:
+--------------
+    puppet/modules/restrictshell/manifests/init.pp
+    puppet/modules/restrictshell/templates/ldap-sshkey2file.py
+
+Modified: puppet/modules/restrictshell/manifests/init.pp
+===================================================================
+--- puppet/modules/restrictshell/manifests/init.pp	2010-11-17 14:17:29 UTC (rev 262)
++++ puppet/modules/restrictshell/manifests/init.pp	2010-11-17 14:28:30 UTC (rev 263)
+@@ -31,6 +31,14 @@
+     ensure => installed,
+   }
+ 
++  $pubkeys_directory = "/var/lib/pubkeys"
++  file { $pubkeys_directory:
++    ensure => directory,
++    owner => root,
++    group => root,
++    mode => 755,
++  }
++
+   file { '/usr/local/bin/ldap-sshkey2file.py':
+     ensure => present,
+     owner => root,
+
+Modified: puppet/modules/restrictshell/templates/ldap-sshkey2file.py
+===================================================================
+--- puppet/modules/restrictshell/templates/ldap-sshkey2file.py	2010-11-17 14:17:29 UTC (rev 262)
++++ puppet/modules/restrictshell/templates/ldap-sshkey2file.py	2010-11-17 14:28:30 UTC (rev 263)
+@@ -9,10 +9,12 @@
+ except ImportError, e:
+     print "Please install python-ldap before running this program"
+     sys.exit(1)
+-
+-basedn="dc=mandriva,dc=com"
++<%
++dc_suffix = 'dc=' + domain.gsub('.',',dc=')
++%>
++basedn="<%= dc_suffix %>"
+ peopledn="ou=people,%s" % basedn
+-uris=['ldap://kenobi.mandriva.com','ldap://svn.mandriva.com']
++uris=['ldap://ldap.<%= domain %>']
+ random.shuffle(uris)
+ uri = " ".join(uris)
+ timeout=5
+@@ -21,7 +23,7 @@
+ # filter out disabled accounts also
+ # too bad uidNumber doesn't support >= filters
+ filter="(&(objectClass=inetOrgPerson)(objectClass=ldapPublicKey)(objectClass=posixAccount)(sshPublicKey=*)(!(shadowExpire=*)))"
+-keypathprefix="/var/lib/config/pubkeys"
++keypathprefix="<%= pubkeys_directory %>"
+ 
+ def usage():
+     print "%s" % sys.argv[0]
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101117/dbbd1aef/attachment.html>
+
+ + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000569.html b/zarb-ml/mageia-sysadm/2010-November/000569.html new file mode 100644 index 000000000..15666e3c8 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000569.html @@ -0,0 +1,112 @@ + + + + [Mageia-sysadm] [264] update binddn and password file + + + + + + + + + +

[Mageia-sysadm] [264] update binddn and password file

+ root at mageia.org + root at mageia.org +
+ Wed Nov 17 16:13:07 CET 2010 +

+
+ +
Revision: 264
+Author:   boklm
+Date:     2010-11-17 16:13:07 +0100 (Wed, 17 Nov 2010)
+Log Message:
+-----------
+update binddn and password file
+
+Modified Paths:
+--------------
+    puppet/modules/restrictshell/manifests/init.pp
+    puppet/modules/restrictshell/templates/ldap-sshkey2file.py
+
+Modified: puppet/modules/restrictshell/manifests/init.pp
+===================================================================
+--- puppet/modules/restrictshell/manifests/init.pp	2010-11-17 14:28:30 UTC (rev 263)
++++ puppet/modules/restrictshell/manifests/init.pp	2010-11-17 15:13:07 UTC (rev 264)
+@@ -1,10 +1,11 @@
+-#TODO: add support for pkgsubmit
+ class restrictshell {
+   $allow_svn = "0"
+   $allow_git = "0"
+   $allow_rsync = "0"
+   $allow_pkgsubmit = "0"
+ 
++  $ldap_pwfile = "/etc/ldap.secret"
++
+   class allow_svn_git_pkgsubmit {
+     $allow_svn = "1"
+     $allow_git = "1"
+
+Modified: puppet/modules/restrictshell/templates/ldap-sshkey2file.py
+===================================================================
+--- puppet/modules/restrictshell/templates/ldap-sshkey2file.py	2010-11-17 14:28:30 UTC (rev 263)
++++ puppet/modules/restrictshell/templates/ldap-sshkey2file.py	2010-11-17 15:13:07 UTC (rev 264)
+@@ -18,8 +18,8 @@
+ random.shuffle(uris)
+ uri = " ".join(uris)
+ timeout=5
+-binddn="uid=sshkeyreader,ou=System Accounts,%s" % basedn
+-pwfile="/etc/sshkeyreader.pw"
++binddn="cn=<%= fqdn %>,ou=Hosts," % basedn
++pwfile="<%= ldap_pwfile %>"
+ # filter out disabled accounts also
+ # too bad uidNumber doesn't support >= filters
+ filter="(&(objectClass=inetOrgPerson)(objectClass=ldapPublicKey)(objectClass=posixAccount)(sshPublicKey=*)(!(shadowExpire=*)))"
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101117/9a3e1b4a/attachment-0001.html>
+
+ + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000570.html b/zarb-ml/mageia-sysadm/2010-November/000570.html new file mode 100644 index 000000000..8a0f81108 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000570.html @@ -0,0 +1,265 @@ + + + + [Mageia-sysadm] [265] - add a proto module for taking care of pam ( need pam_ldap, etc support, and a review of the pam config file too ) + + + + + + + + + +

[Mageia-sysadm] [265] - add a proto module for taking care of pam ( need pam_ldap, etc support, and a review of the pam config file too )

+ root at mageia.org + root at mageia.org +
+ Wed Nov 17 16:35:10 CET 2010 +

+
+ +
Revision: 265
+Author:   misc
+Date:     2010-11-17 16:35:10 +0100 (Wed, 17 Nov 2010)
+Log Message:
+-----------
+- add a proto module for taking care of pam ( need pam_ldap, etc support, and a review of the pam config file too )
+
+Modified Paths:
+--------------
+    puppet/modules/apache/templates/vhost_catalyst_app.conf
+    puppet/modules/apache/templates/vhost_django_app.conf
+    puppet/modules/buildsystem/manifests/init.pp
+    puppet/modules/postfix/manifests/init.pp
+    puppet/modules/transifex/manifests/init.pp
+
+Added Paths:
+-----------
+    puppet/modules/pam/
+    puppet/modules/pam/manifests/
+    puppet/modules/pam/manifests/init.pp
+    puppet/modules/pam/templates/
+    puppet/modules/pam/templates/system-auth
+
+Modified: puppet/modules/apache/templates/vhost_catalyst_app.conf
+===================================================================
+--- puppet/modules/apache/templates/vhost_catalyst_app.conf	2010-11-17 15:13:07 UTC (rev 264)
++++ puppet/modules/apache/templates/vhost_catalyst_app.conf	2010-11-17 15:35:10 UTC (rev 265)
+@@ -15,6 +15,8 @@
+         ServerName <%= name %>
+         # Serve static content directly
+         DocumentRoot  /dev/null
++# header 
++
+ <% if location then %>
+         Alias /static <%= location %>/root/static
+ <% end %>
+
+Modified: puppet/modules/apache/templates/vhost_django_app.conf
+===================================================================
+--- puppet/modules/apache/templates/vhost_django_app.conf	2010-11-17 15:13:07 UTC (rev 264)
++++ puppet/modules/apache/templates/vhost_django_app.conf	2010-11-17 15:35:10 UTC (rev 265)
+@@ -4,7 +4,7 @@
+         DocumentRoot  /dev/null
+ 
+         WSGIScriptAlias / /usr/local/lib/wsgi/<%= name %>.wsgi
+-
++#footer
+         <Location />
+             Allow from all
+         </Location>
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-17 15:13:07 UTC (rev 264)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-17 15:35:10 UTC (rev 265)
+@@ -4,6 +4,22 @@
+         include iurt
+     }
+ 
++    class scheduler {
++        # ulri        
++    }
++
++    class dispatcher {
++        # emi
++    }
++    
++    class repsys {
++        package { 'repsys':
++
++        }
++
++
++    }
++
+     class iurt {
+         include sudo
+ 
+
+Added: puppet/modules/pam/manifests/init.pp
+===================================================================
+--- puppet/modules/pam/manifests/init.pp	                        (rev 0)
++++ puppet/modules/pam/manifests/init.pp	2010-11-17 15:35:10 UTC (rev 265)
+@@ -0,0 +1,27 @@
++class pam {
++
++  package { ["pam_ldap","nss_ldap", "pam_mkhomedir"]:
++    ensure => installed,  
++  }
++
++
++  file { "system-auth":
++     path => "/etc/pam.d/system-auth",
++     owner => root,
++     group => root,
++     mode => 644,
++     content => template("openldap/system-auth")
++  }
++  
++  # for server where only admin can connect
++  class admin_access {
++    $access_class = "admin"
++    file { "system-auth": }
++  }
++
++  # for server where people can connect with ssh ( git, svn )
++  class commiters_access {
++    $access_class = "commiters"
++    file { "system-auth": }
++  }
++}
+
+Added: puppet/modules/pam/templates/system-auth
+===================================================================
+--- puppet/modules/pam/templates/system-auth	                        (rev 0)
++++ puppet/modules/pam/templates/system-auth	2010-11-17 15:35:10 UTC (rev 265)
+@@ -0,0 +1,35 @@
++auth    required    pam_env.so
++# this part is here if the module don't exist
++# basically, the idea is to copy the exact detail of sufficient,
++# and add abort=ignore
++auth    [abort=ignore success=done new_authtok_reqd=done default=ignore]  pam_tcb.so shadow fork nullok prefix=$2a$ count=8
++auth    sufficient   pam_unix.so likeauth nullok
++auth    sufficient   pam_ldap.so use_first_pass
++<% if access_class = 'admin' %>
++auth    required     pam_wheel.so group=mga-sysadmin
++<% end %>
++<% if access_class = 'commiters' %>
++auth    required     pam_wheel.so group=mga-commiters
++<% end %>
++auth    required     pam_deny.so
++
++
++account sufficient  pam_localuser.so
++account sufficient  pam_ldap.so
++account required    pam_deny.so
++
++
++password    required    pam_cracklib.so retry=3 minlen=8 dcredit=-1 ucredit=-1 ocredit=-1 lcredit=-1 dcredit=0  ucredit=0 ucredit=0
++# TODO check this part too
++password    sufficient  pam_tcb.so use_authtok shadow write_to=shadow fork nullok prefix=$2a$ count=8 abort=ignore
++password    sufficient  pam_ldap.so use_authtok
++password    sufficient  pam_unix.so use_authtok nullok md5 shadow
++password    required    pam_deny.so
++
++session optional    pam_keyinit.so revoke
++# optional if there is a problem when creating the account
++session optional    pam_mkhomedir.so
++session required    pam_limits.so
++session required    pam_unix.so
++session optional    pam_ldap.so
++
+
+Modified: puppet/modules/postfix/manifests/init.pp
+===================================================================
+--- puppet/modules/postfix/manifests/init.pp	2010-11-17 15:13:07 UTC (rev 264)
++++ puppet/modules/postfix/manifests/init.pp	2010-11-17 15:35:10 UTC (rev 265)
+@@ -4,7 +4,7 @@
+         package { postfix:
+             ensure => installed
+         }
+-	package { 'nail':
++    	package { 'nail':
+                 ensure => installed
+         }
+         service { postfix:
+@@ -30,4 +30,17 @@
+             content => template("postfix/simple_relay_main.cf"),
+         }
+     }
++
++    class primary_smtp inherits base {
++        file { '/etc/postfix/main.cf':
++            content => template("postfix/primary_main.cf"),
++        }
++    }
++
++    class secondary_smtp inherits base {
++        file { '/etc/postfix/main.cf':
++            content => template("postfix/secondary_main.cf"),
++        }
++    }
++
+ }
+
+Modified: puppet/modules/transifex/manifests/init.pp
+===================================================================
+--- puppet/modules/transifex/manifests/init.pp	2010-11-17 15:13:07 UTC (rev 264)
++++ puppet/modules/transifex/manifests/init.pp	2010-11-17 15:35:10 UTC (rev 265)
+@@ -12,4 +12,8 @@
+     mode => 755,
+     content => template("transifex/20-engines.conf")
+   }
++
++  apache::vhost_django_app { "transifex.$domain":
++    module => "transifex" 
++  }  
+ }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101117/15a9175d/attachment.html>
+
+ + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000571.html b/zarb-ml/mageia-sysadm/2010-November/000571.html new file mode 100644 index 000000000..58e123622 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000571.html @@ -0,0 +1,124 @@ + + + + [Mageia-sysadm] [266] - better use heritance + + + + + + + + + +

[Mageia-sysadm] [266] - better use heritance

+ root at mageia.org + root at mageia.org +
+ Wed Nov 17 16:45:23 CET 2010 +

+
+ +
Revision: 266
+Author:   misc
+Date:     2010-11-17 16:45:22 +0100 (Wed, 17 Nov 2010)
+Log Message:
+-----------
+- better use heritance
+
+Modified Paths:
+--------------
+    puppet/modules/pam/manifests/init.pp
+
+Modified: puppet/modules/pam/manifests/init.pp
+===================================================================
+--- puppet/modules/pam/manifests/init.pp	2010-11-17 15:35:10 UTC (rev 265)
++++ puppet/modules/pam/manifests/init.pp	2010-11-17 15:45:22 UTC (rev 266)
+@@ -1,26 +1,28 @@
+ class pam {
+ 
+-  package { ["pam_ldap","nss_ldap", "pam_mkhomedir"]:
+-    ensure => installed,  
+-  }
++  class base {
++      package { ["pam_ldap","nss_ldap", "pam_mkhomedir"]:
++        ensure => installed,  
++      }
+ 
+-
+-  file { "system-auth":
+-     path => "/etc/pam.d/system-auth",
+-     owner => root,
+-     group => root,
+-     mode => 644,
+-     content => template("openldap/system-auth")
+-  }
++      file { "system-auth":
++         path => "/etc/pam.d/system-auth",
++         owner => root,
++         group => root,
++         mode => 644,
++         content => template("openldap/system-auth")
++      }
++  } 
+   
+   # for server where only admin can connect
+-  class admin_access {
++  class admin_access inherits base {
+     $access_class = "admin"
++    # not sure if this line is needed anymore, wil check later
+     file { "system-auth": }
+   }
+ 
+   # for server where people can connect with ssh ( git, svn )
+-  class commiters_access {
++  class commiters_access inherits base {
+     $access_class = "commiters"
+     file { "system-auth": }
+   }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101117/59a666cc/attachment.html>
+
+ + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000572.html b/zarb-ml/mageia-sysadm/2010-November/000572.html new file mode 100644 index 000000000..a1a2b2598 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000572.html @@ -0,0 +1,127 @@ + + + + [Mageia-sysadm] [267] - fix templates + + + + + + + + + +

[Mageia-sysadm] [267] - fix templates

+ root at mageia.org + root at mageia.org +
+ Wed Nov 17 16:50:32 CET 2010 +

+
+ +
Revision: 267
+Author:   misc
+Date:     2010-11-17 16:50:32 +0100 (Wed, 17 Nov 2010)
+Log Message:
+-----------
+- fix templates
+- add nsswitch.conf
+
+Modified Paths:
+--------------
+    puppet/modules/pam/manifests/init.pp
+
+Added Paths:
+-----------
+    puppet/modules/pam/templates/nsswitch.conf
+
+Modified: puppet/modules/pam/manifests/init.pp
+===================================================================
+--- puppet/modules/pam/manifests/init.pp	2010-11-17 15:45:22 UTC (rev 266)
++++ puppet/modules/pam/manifests/init.pp	2010-11-17 15:50:32 UTC (rev 267)
+@@ -10,8 +10,16 @@
+          owner => root,
+          group => root,
+          mode => 644,
+-         content => template("openldap/system-auth")
++         content => template("pam/system-auth")
+       }
++
++      file { "nsswitch.conf":
++         path => "/etc/nsswitch.conf",
++         owner => root,
++         group => root,
++         mode => 644,
++         content => template("pam/system-auth")
++      }
+   } 
+   
+   # for server where only admin can connect
+
+Added: puppet/modules/pam/templates/nsswitch.conf
+===================================================================
+--- puppet/modules/pam/templates/nsswitch.conf	                        (rev 0)
++++ puppet/modules/pam/templates/nsswitch.conf	2010-11-17 15:50:32 UTC (rev 267)
+@@ -0,0 +1,16 @@
++passwd:     files ldap [UNAVAIL=return]
++shadow:     files ldap [UNAVAIL=return]
++group:      files ldap [UNAVAIL=return]
++hosts:      files mdns4_minimal [NOTFOUND=return] dns
++bootparams: files
++ethers:     files
++netmasks:   files
++networks:   files
++protocols:  files
++rpc:        files
++services:   files
++netgroup:   files ldap
++publickey:  files
++automount:  files
++aliases:    files
++
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101117/28939af9/attachment-0001.html>
+
+ + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000573.html b/zarb-ml/mageia-sysadm/2010-November/000573.html new file mode 100644 index 000000000..446771626 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000573.html @@ -0,0 +1,149 @@ + + + + [Mageia-sysadm] [268] - add a postgrey module + + + + + + + + + +

[Mageia-sysadm] [268] - add a postgrey module

+ root at mageia.org + root at mageia.org +
+ Wed Nov 17 16:58:10 CET 2010 +

+
+ +
Revision: 268
+Author:   misc
+Date:     2010-11-17 16:58:10 +0100 (Wed, 17 Nov 2010)
+Log Message:
+-----------
+- add a postgrey module 
+
+Added Paths:
+-----------
+    puppet/modules/postgrey/
+    puppet/modules/postgrey/manifests/
+    puppet/modules/postgrey/manifests/init.pp
+    puppet/modules/postgrey/templates/
+    puppet/modules/postgrey/templates/postgrey.sysconfig
+    puppet/modules/postgrey/templates/whitelist_clients.local
+
+Added: puppet/modules/postgrey/manifests/init.pp
+===================================================================
+--- puppet/modules/postgrey/manifests/init.pp	                        (rev 0)
++++ puppet/modules/postgrey/manifests/init.pp	2010-11-17 15:58:10 UTC (rev 268)
+@@ -0,0 +1,31 @@
++class postgrey {
++    package { postgrey:
++        ensure => installed
++    }
++    
++    service { postgrey:
++        ensure => running,
++        path => "/etc/init.d/postgrey",
++        subscribe => [ Package[postgrey]]
++    }
++
++    file { "/etc/sysconfig/postgrey":
++        ensure => present,
++        owner => root,
++        group => root,
++        mode => 644,
++        content => template("postgrey/postgrey.sysconfig"),
++        notify => [ Service[postgrey] ],
++        require => Package[postgrey],    
++    }
++
++    file { "/etc/postfix/postgrey_whitelist_clients.local":
++        ensure => present,
++        owner => root,
++        group => root,
++        mode => 644,
++        content => template("postgrey/whitelist_clients.local"),
++        require => Package[postgrey],
++        notify => [ Service[postgrey]],
++    }
++}
+
+Added: puppet/modules/postgrey/templates/postgrey.sysconfig
+===================================================================
+--- puppet/modules/postgrey/templates/postgrey.sysconfig	                        (rev 0)
++++ puppet/modules/postgrey/templates/postgrey.sysconfig	2010-11-17 15:58:10 UTC (rev 268)
+@@ -0,0 +1,12 @@
++# change default configuration option here
++
++# SOCKET=$(postconf -h queue_directory)/extern/postgrey/socket
++# OPTIONS="--unix=$SOCKET"
++# DBPATH=/var/lib/postgrey
++# OPTIONS="$OPTIONS --dbdir=$DBPATH"
++
++# to use an inet connection instead of a socket
++#OPTIONS="--inet=127.0.0.1:10031"
++
++# enable whitelisting
++OPTIONS="$OPTIONS --auto-whitelist-clients"
+
+Added: puppet/modules/postgrey/templates/whitelist_clients.local
+===================================================================
+--- puppet/modules/postgrey/templates/whitelist_clients.local	                        (rev 0)
++++ puppet/modules/postgrey/templates/whitelist_clients.local	2010-11-17 15:58:10 UTC (rev 268)
+@@ -0,0 +1,5 @@
++# zarb
++ryu.zarb.org
++cthulhu.zarb.org
++
++
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101117/f634009c/attachment.html>
+
+ + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000574.html b/zarb-ml/mageia-sysadm/2010-November/000574.html new file mode 100644 index 000000000..51410290e --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000574.html @@ -0,0 +1,69 @@ + + + + [Mageia-sysadm] Puppet Report for alamut.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for alamut.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 17 17:00:51 CET 2010 +

+
+ +
Wed Nov 17 17:00:51 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: wrong header line format
+Wed Nov 17 17:00:51 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000575.html b/zarb-ml/mageia-sysadm/2010-November/000575.html new file mode 100644 index 000000000..165bb5b3f --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000575.html @@ -0,0 +1,135 @@ + + + + [Mageia-sysadm] [269] - fix templates ( again ) + + + + + + + + + +

[Mageia-sysadm] [269] - fix templates ( again )

+ root at mageia.org + root at mageia.org +
+ Wed Nov 17 17:25:42 CET 2010 +

+
+ +
Revision: 269
+Author:   misc
+Date:     2010-11-17 17:25:42 +0100 (Wed, 17 Nov 2010)
+Log Message:
+-----------
+- fix templates ( again )
+- add ldap.conf  
+
+Modified Paths:
+--------------
+    puppet/modules/pam/manifests/init.pp
+
+Added Paths:
+-----------
+    puppet/modules/pam/templates/ldap.conf
+
+Modified: puppet/modules/pam/manifests/init.pp
+===================================================================
+--- puppet/modules/pam/manifests/init.pp	2010-11-17 15:58:10 UTC (rev 268)
++++ puppet/modules/pam/manifests/init.pp	2010-11-17 16:25:42 UTC (rev 269)
+@@ -18,8 +18,15 @@
+          owner => root,
+          group => root,
+          mode => 644,
+-         content => template("pam/system-auth")
++         content => template("pam/nsswitch.conf")
+       }
++      file { "ldap.conf":
++         path => "/etc/ldap.conf",
++         owner => root,
++         group => root,
++         mode => 644,
++         content => template("pam/ldap.conf")
++      }
+   } 
+   
+   # for server where only admin can connect
+
+Added: puppet/modules/pam/templates/ldap.conf
+===================================================================
+--- puppet/modules/pam/templates/ldap.conf	                        (rev 0)
++++ puppet/modules/pam/templates/ldap.conf	2010-11-17 16:25:42 UTC (rev 269)
+@@ -0,0 +1,22 @@
++<%
++dc_suffix = 'dc=' + domain.gsub('.',',dc=')
++%>
++
++uri ldap://ldap.<%= domain %>
++base <%= dc_suffix %>
++pam_lookup_policy no
++pam_password exop
++nss_base_passwd ou=People,<%= dc_suffix %>?one
++nss_base_shadow ou=People,<%= dc_suffix %>?one
++nss_base_group  ou=Group,<%= dc_suffix %>?one
++
++nss_schema rfc2307bis
++nss_map_attribute uniqueMember member
++sudoers_base ou=sudoers,<%= dc_suffix %>
++#sudoers_debug 2
++
++<% if access_class = 'commiters' %>
++# for restricted access
++nss_override_attribute_value loginShell /usr/local/bin/sv_membersh.pl
++<% end %>
++
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101117/9b32b042/attachment.html>
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000576.html b/zarb-ml/mageia-sysadm/2010-November/000576.html new file mode 100644 index 000000000..0df1618df --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000576.html @@ -0,0 +1,69 @@ + + + + [Mageia-sysadm] Puppet Report for alamut.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for alamut.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 17 17:30:52 CET 2010 +

+
+ +
Wed Nov 17 17:30:52 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: wrong header line format
+Wed Nov 17 17:30:52 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000577.html b/zarb-ml/mageia-sysadm/2010-November/000577.html new file mode 100644 index 000000000..39f53fe18 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000577.html @@ -0,0 +1,69 @@ + + + + [Mageia-sysadm] Puppet Report for alamut.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for alamut.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 17 18:00:54 CET 2010 +

+
+ +
Wed Nov 17 18:00:54 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: wrong header line format
+Wed Nov 17 18:00:54 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000578.html b/zarb-ml/mageia-sysadm/2010-November/000578.html new file mode 100644 index 000000000..cd2b62605 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000578.html @@ -0,0 +1,69 @@ + + + + [Mageia-sysadm] Puppet Report for alamut.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for alamut.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 17 18:30:55 CET 2010 +

+
+ +
Wed Nov 17 18:30:55 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: wrong header line format
+Wed Nov 17 18:30:55 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000579.html b/zarb-ml/mageia-sysadm/2010-November/000579.html new file mode 100644 index 000000000..5948662d2 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000579.html @@ -0,0 +1,69 @@ + + + + [Mageia-sysadm] Puppet Report for alamut.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for alamut.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 17 19:00:57 CET 2010 +

+
+ +
Wed Nov 17 19:00:56 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: wrong header line format
+Wed Nov 17 19:00:56 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000580.html b/zarb-ml/mageia-sysadm/2010-November/000580.html new file mode 100644 index 000000000..fd0dde083 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000580.html @@ -0,0 +1,69 @@ + + + + [Mageia-sysadm] Puppet Report for alamut.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for alamut.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 17 19:30:57 CET 2010 +

+
+ +
Wed Nov 17 19:30:57 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: wrong header line format
+Wed Nov 17 19:30:57 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000581.html b/zarb-ml/mageia-sysadm/2010-November/000581.html new file mode 100644 index 000000000..2bbb2032e --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000581.html @@ -0,0 +1,69 @@ + + + + [Mageia-sysadm] Puppet Report for alamut.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for alamut.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 17 20:00:59 CET 2010 +

+
+ +
Wed Nov 17 20:00:58 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: wrong header line format
+Wed Nov 17 20:00:59 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000582.html b/zarb-ml/mageia-sysadm/2010-November/000582.html new file mode 100644 index 000000000..6dd0f92f6 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000582.html @@ -0,0 +1,69 @@ + + + + [Mageia-sysadm] Puppet Report for alamut.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for alamut.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 17 20:30:59 CET 2010 +

+
+ +
Wed Nov 17 20:30:59 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: wrong header line format
+Wed Nov 17 20:30:59 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000583.html b/zarb-ml/mageia-sysadm/2010-November/000583.html new file mode 100644 index 000000000..08ad24e53 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000583.html @@ -0,0 +1,69 @@ + + + + [Mageia-sysadm] Puppet Report for alamut.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for alamut.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 17 21:01:01 CET 2010 +

+
+ +
Wed Nov 17 21:01:01 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: wrong header line format
+Wed Nov 17 21:01:01 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000584.html b/zarb-ml/mageia-sysadm/2010-November/000584.html new file mode 100644 index 000000000..e04eee059 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000584.html @@ -0,0 +1,69 @@ + + + + [Mageia-sysadm] Puppet Report for alamut.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for alamut.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 17 21:31:01 CET 2010 +

+
+ +
Wed Nov 17 21:31:01 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: wrong header line format
+Wed Nov 17 21:31:01 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000585.html b/zarb-ml/mageia-sysadm/2010-November/000585.html new file mode 100644 index 000000000..7f8ce1de5 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000585.html @@ -0,0 +1,69 @@ + + + + [Mageia-sysadm] Puppet Report for alamut.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for alamut.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 17 21:39:08 CET 2010 +

+
+ +
Wed Nov 17 21:39:08 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: wrong header line format
+Wed Nov 17 21:39:08 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000586.html b/zarb-ml/mageia-sysadm/2010-November/000586.html new file mode 100644 index 000000000..5a1e5adde --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000586.html @@ -0,0 +1,69 @@ + + + + [Mageia-sysadm] Puppet Report for alamut.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for alamut.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 17 21:39:12 CET 2010 +

+
+ +
Wed Nov 17 21:39:12 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: wrong header line format
+Wed Nov 17 21:39:12 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000587.html b/zarb-ml/mageia-sysadm/2010-November/000587.html new file mode 100644 index 000000000..3fdf7157b --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000587.html @@ -0,0 +1,69 @@ + + + + [Mageia-sysadm] Puppet Report for alamut.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for alamut.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 17 21:39:26 CET 2010 +

+
+ +
Wed Nov 17 21:39:26 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: wrong header line format
+Wed Nov 17 21:39:26 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000588.html b/zarb-ml/mageia-sysadm/2010-November/000588.html new file mode 100644 index 000000000..dc8f01f49 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000588.html @@ -0,0 +1,69 @@ + + + + [Mageia-sysadm] Puppet Report for alamut.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for alamut.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 17 21:40:32 CET 2010 +

+
+ +
Wed Nov 17 21:40:32 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: wrong header line format
+Wed Nov 17 21:40:32 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000589.html b/zarb-ml/mageia-sysadm/2010-November/000589.html new file mode 100644 index 000000000..d39fc696e --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000589.html @@ -0,0 +1,111 @@ + + + + [Mageia-sysadm] [270] - oups, revert wrongly commited work in progress :/ + + + + + + + + + +

[Mageia-sysadm] [270] - oups, revert wrongly commited work in progress :/

+ root at mageia.org + root at mageia.org +
+ Wed Nov 17 21:43:29 CET 2010 +

+
+ +
Revision: 270
+Author:   misc
+Date:     2010-11-17 21:43:29 +0100 (Wed, 17 Nov 2010)
+Log Message:
+-----------
+- oups, revert wrongly commited work in progress :/
+
+Modified Paths:
+--------------
+    puppet/modules/apache/templates/django.wsgi
+    puppet/modules/transifex/manifests/init.pp
+
+Modified: puppet/modules/apache/templates/django.wsgi
+===================================================================
+--- puppet/modules/apache/templates/django.wsgi	2010-11-17 16:25:42 UTC (rev 269)
++++ puppet/modules/apache/templates/django.wsgi	2010-11-17 20:43:29 UTC (rev 270)
+@@ -1,7 +1,7 @@
+ #!/usr/bin/python
+ import os, sys
+ sys.path.append('<%= module_path  %>')
+-os.environ['DJANGO_SETTINGS_MODULE'] = '<%= module =%>.settings'
++os.environ['DJANGO_SETTINGS_MODULE'] = '<%= module %>.settings'
+ 
+ import django.core.handlers.wsgi
+ 
+
+Modified: puppet/modules/transifex/manifests/init.pp
+===================================================================
+--- puppet/modules/transifex/manifests/init.pp	2010-11-17 16:25:42 UTC (rev 269)
++++ puppet/modules/transifex/manifests/init.pp	2010-11-17 20:43:29 UTC (rev 270)
+@@ -13,7 +13,7 @@
+     content => template("transifex/20-engines.conf")
+   }
+ 
+-  apache::vhost_django_app { "transifex.$domain":
+-    module => "transifex" 
+-  }  
++#  apache::vhost_django_app { "transifex.$domain":
++#    module => "transifex" 
++#  }  
+ }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101117/3d5711c6/attachment.html>
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000590.html b/zarb-ml/mageia-sysadm/2010-November/000590.html new file mode 100644 index 000000000..4c35fbfc3 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000590.html @@ -0,0 +1,69 @@ + + + + [Mageia-sysadm] Puppet Report for alamut.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for alamut.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 17 21:43:55 CET 2010 +

+
+ +
Wed Nov 17 21:43:55 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: wrong header line format
+Wed Nov 17 21:43:55 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000591.html b/zarb-ml/mageia-sysadm/2010-November/000591.html new file mode 100644 index 000000000..b1f25892a --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000591.html @@ -0,0 +1,177 @@ + + + + [Mageia-sysadm] Main tasks for the next days + + + + + + + + + +

[Mageia-sysadm] Main tasks for the next days

+ Olivier Blin + mageia at blino.org +
+ Wed Nov 17 22:22:08 CET 2010 +

+
+ +
Michael Scherer <misc at zarb.org> writes:
+
+> So, my own analysis :
+>
+> If the name is displayed in a released product to identify it, yes, this
+> is problematic. In the rpm name, in the interface like "mandriva control
+> center" in title or "about page", in the documentation.
+
+Agreed
+
+> If the name is used in email, or for copyright notice, then we need to
+> keep it ( as doing otherwise would be seen as copyright violation ).
+
+Yes
+
+> If the name is used in a comment, in a procedure or variable name, or in
+> a url for technical reason, I do not think it need to be removed
+> ( except for technical reason, obviously ). 
+
+Agreed as well
+
+> Now, the tricky part : 
+> If we have a file in svn that would display the name in such a way that
+> would be used as brand, it this a problem ?
+>
+> I think it is not, as long as we do not distribute this as a product
+> ( ie, release a tarball ), nor encourage people to use the old version
+> ( ie if we say "use the old svn version as the feature are much better
+> with all unfixed bug" ). We will be clearly doing the contrary, ie
+> distribute fixed software ( with fixed meaning without actively using
+> Mandriva name in such a way that we will use it as a brand, distribute
+> mean "putting a tarball on our server" ) and push usually the latest
+> version. 
+
+If the SVN is public and contain packages like mandriva-release, that's
+opening the door for potential troubles.
+I think we should not take risk, and start cleaning packages of the
+Mandriva name in a private SVN, and only make public a new SVN repo
+starting from the cleaned packages, without any reference to previous
+Mandriva stuff.
+
+> Hearst lawyers didn't asked to remove the name from svn/cvs afaik.
+> Neither did mozilla asked Debian to do so for the mozilla/iceweasel
+> case. 
+
+Doesn't mean it won't happen for us :)
+
+> For example, let's take urpmi :
+> [misc at virgo ~] $ grep -i -s  mandriva $(rpm -ql urpmi) | grep -v
+> Copyright
+>
+> I removed Copyright because that's legal mention that IMO we need to
+> keep.
+>
+> And so it give :
+> /usr/share/doc/urpmi/NEWS is not using the mark ( 2 links and 2
+> explanation upon a new feature about mandriva kernel ), this is ot used
+> as a distinctive sign.
+>
+> /usr/lib/perl5/vendor_perl/5.10.0/urpm.pm
+> used in the description of the tool.
+>
+> urpm - Mandriva perl tools to handle the urpmi database
+>
+> this one is likely be something we will need to change if we distribute
+> the module. 
+
+Ok
+
+> /usr/lib/perl5/vendor_perl/5.10.0/urpm/cfg.pm
+> -> url to the mirror, can be kept in svn ( but need to be changed to
+> work again )
+>
+>
+> /usr/lib/perl5/vendor_perl/5.10.0/urpm/media.pm
+>
+> $distribconf->settree('mandriva');
+>
+> name is used as a constant, this is not displayed anywhere. Therefore,
+> no problem in keeping it in the history.
+>
+> /usr/lib/perl5/vendor_perl/5.10.0/urpm/mirrors.pm
+>
+> -> a procedure called    _mandriva_mirrorlist. Not a trademark
+> violation, as this is never displayed. It should be indeed changed to be
+> cleaner.
+> And some urls used by the procedure.
+
+I would feel safer if all these get burried and don't appear on our
+public website (viewvc).
+
+> /usr/lib/perl5/vendor_perl/5.10.0/urpm/msg.pm
+>
+> a comment telling this come from svn.mandriva.com. Not a trademark
+> violation.
+>
+> So basically, for urpmi ( a old version ), the only thing to change is
+> the documentation. And as long as we do not distribute it ( ie, in a
+> package or in a tarball ), I think it is not used as a distinctive
+> sign. 
+>
+> I will also add that Mandriva is a trademark, but mdv and mdk are not.
+>
+> Therefore, except the various mandriva-foo-config ( who are more
+> configuration than software ) and rpm-mandriva-setup, the software name
+> will likely not be a problem.
+
+Yep
+Same for drakx
+
+> Now, if we decide that we also need to clean svn, we can use git and
+> tailor to do some trick to clean the source code ( ie, in the case of
+> urpmi, remove the name mandriva from the pod documentation ).
+
+We can start working in a private svn to clean the Mandriva references,
+and only publish the last revision, containing a completely clean repo
+
+-- 
+Olivier Blin - blino
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000592.html b/zarb-ml/mageia-sysadm/2010-November/000592.html new file mode 100644 index 000000000..6391707f4 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000592.html @@ -0,0 +1,146 @@ + + + + [Mageia-sysadm] Main tasks for the next days + + + + + + + + + +

[Mageia-sysadm] Main tasks for the next days

+ Buchan Milne + bgmilne at multilinks.com +
+ Wed Nov 17 12:18:25 CET 2010 +

+
+ +
On Tuesday, 16 November 2010 00:55:15 Michael Scherer wrote:
+> Le mardi 16 novembre 2010 à 00:12 +0100, nicolas vigier a écrit :
+> > Hello,
+> > 
+> > As was decided in tonight IRC meeting, the priority tasks for sysadmin in
+> > 
+> > the next days will be :
+> >  * the configuration of pam_ldap, nss_ldap, and everything needed to
+> >  
+> >    allow commits from LDAP accounts on SVN
+
+I have created some "host" accounts in LDAP, so far for alamut and valstar, to 
+test that they have sufficient access for nss_ldap. I might need to open up 
+read access to member attributes of groups (at present, all users have search 
+access to member attribute, but not read, so you can determine if a user is a 
+member of a group, but not see all the members, this is probably sufficient 
+for assigning groups on login, but not sufficient for 'groups foo' or 'id foo' 
+to work as expected).
+
+However, we probably need to decide on a time and host to test this on, as 
+mistakes etc. with authentication configuration can be inconvenient.
+
+> >  
+> >  * the configuration of forums with LDAP accounts (to be finished)
+> 
+> A first step would be to make sure that people in charge of forum read
+> this list and are subscribed to it. And another step would be to know
+> what they do, since I am spammed every day by the cron job who update of
+> urpmi who is bounced to root at zarb alias, as the server is
+> misconfigurated ( ie, it send mail to a alias that do not exist ).
+
+Maybe these issues should be discussed with the web team today.
+
+> >  * the configuration of sympa mailing lists server using LDAP for users
+> >  
+> >    authentication
+> 
+> We didn't really discussed how and what we will use ldap and sympa for,
+> and that we setup without thinking first about the full picture.
+> 
+> Ie, if sympa use ldap for authentication, does that mean that people
+> will be forced to use identity to subscribe ?
+
+I was aiming for all users having *one* account, with one username and 
+password, from when they start (e.g. want to post on forum, subscribe to 
+mailing list) until they are on the sysadmin team, maintained on identity.
+
+I am not very familiar with sympa, but I was expecting that users would be 
+able to log in to the sympa web interface with their LDAP account, and 
+subscribe/unsubscribe there. Whether that subscription is maintained in LDAP 
+is IMHO not as relevant.
+
+In the case of "teams" that have corresponding groups in LDAP, it may make 
+sense to have corresponding automatic mailing lists (as it would reduce some 
+overhead).
+
+identity is used to manage the users identity information, and should be 
+authoritative for that, but I don't expect to have to add features for 
+administering every applications settings for a user (e.g. signature for 
+forum, digest settings for mailing lists etc.). Where there is more identity-
+related information that we may want to leverage in more than one application 
+(e.g. avatar or photo or mugshot or whatever), we can look at that.
+
+> How would it goes for moderation ?
+
+Nothing to do with LDAP (except possibly authenticating moderator on sympa web 
+interace).
+
+> How would they do for subscription ?
+
+Authenticate user against LDAP on login to sympa web interface, nothing more.
+
+dmorgan asked me to add some ACLs allowing addition of some data for mailing 
+lists, but as far as I could tell, it looked like aliases for mailing list 
+administration (e.g. xxx-subscribe at lists. etc.). Now, AFAICT, this is not 
+strictly required for sympa operation ... it all depends on the MTA setup. If 
+aliases are going to be in LDAP, then IMHO the existing 'MTA Admins' system 
+group should be used, and I will give it write access to a tree (e.g. ou=mail 
+or so) for aliases not related to users.
+
+But, I need to know what access is required for the non-user-authentication 
+features of sympa for which we would like to use LDAP as backend, so I can 
+assign sympa user to correct groups and check ACLs.
+
+Regards,
+Buchan
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000593.html b/zarb-ml/mageia-sysadm/2010-November/000593.html new file mode 100644 index 000000000..7bd47f681 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000593.html @@ -0,0 +1,97 @@ + + + + [Mageia-sysadm] [271] domain for mailing lists is ml.mageia.org + + + + + + + + + +

[Mageia-sysadm] [271] domain for mailing lists is ml.mageia.org

+ root at mageia.org + root at mageia.org +
+ Thu Nov 18 00:50:46 CET 2010 +

+
+ +
Revision: 271
+Author:   boklm
+Date:     2010-11-18 00:50:46 +0100 (Thu, 18 Nov 2010)
+Log Message:
+-----------
+domain for mailing lists is ml.mageia.org
+
+Modified Paths:
+--------------
+    puppet/modules/sympa/templates/sympa.conf
+
+Modified: puppet/modules/sympa/templates/sympa.conf
+===================================================================
+--- puppet/modules/sympa/templates/sympa.conf	2010-11-17 20:43:29 UTC (rev 270)
++++ puppet/modules/sympa/templates/sympa.conf	2010-11-17 23:50:46 UTC (rev 271)
+@@ -86,11 +86,11 @@
+ ###\\\\ General definition ////###
+ 
+ ## Main robot hostname
+-domain  <%= domain %>
++domain  ml.<%= domain %>
+ 
+ ## Listmasters email list comma separated
+ ## Sympa will associate listmaster privileges to these email addresses (mail and web interfaces). Some error reports may also be sent to these addresses.
+-listmaster      listmaster@<%= domain %>
++listmaster      listmaster at ml.<%= domain %>
+ 
+ ## Local part of sympa email adresse
+ ## Effective address will be \[EMAIL\]@\[HOST\]
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101118/4222e9fa/attachment.html>
+
+ + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000594.html b/zarb-ml/mageia-sysadm/2010-November/000594.html new file mode 100644 index 000000000..b18b75141 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000594.html @@ -0,0 +1,274 @@ + + + + [Mageia-sysadm] [272] add master.cf + + + + + + + + + +

[Mageia-sysadm] [272] add master.cf

+ root at mageia.org + root at mageia.org +
+ Thu Nov 18 01:21:40 CET 2010 +

+
+ +
Revision: 272
+Author:   boklm
+Date:     2010-11-18 01:21:40 +0100 (Thu, 18 Nov 2010)
+Log Message:
+-----------
+add master.cf
+
+Modified Paths:
+--------------
+    puppet/modules/postfix/manifests/init.pp
+
+Added Paths:
+-----------
+    puppet/modules/postfix/templates/primary_master.cf
+
+Modified: puppet/modules/postfix/manifests/init.pp
+===================================================================
+--- puppet/modules/postfix/manifests/init.pp	2010-11-17 23:50:46 UTC (rev 271)
++++ puppet/modules/postfix/manifests/init.pp	2010-11-18 00:21:40 UTC (rev 272)
+@@ -35,6 +35,10 @@
+         file { '/etc/postfix/main.cf':
+             content => template("postfix/primary_main.cf"),
+         }
++
++        file { '/etc/postfix/master.cf':
++            content => template("postfix/primary_master.cf"),
++        }
+     }
+ 
+     class secondary_smtp inherits base {
+
+Added: puppet/modules/postfix/templates/primary_master.cf
+===================================================================
+--- puppet/modules/postfix/templates/primary_master.cf	                        (rev 0)
++++ puppet/modules/postfix/templates/primary_master.cf	2010-11-18 00:21:40 UTC (rev 272)
+@@ -0,0 +1,170 @@
++#
++# Postfix master process configuration file.  For details on the format
++# of the file, see the master(5) manual page (command: "man 5 master").
++#
++# Do not forget to execute "postfix reload" after editing this file.
++#
++# The script postfix-chroot.sh can be used to set up a Postfix chroot
++# environment on your Mandrivalinux System.
++#
++# ==========================================================================
++# service type  private unpriv  chroot  wakeup  maxproc command + args
++#               (yes)   (yes)   (yes)   (never) (100)
++# ==========================================================================
++smtp	inet	n	-	y	-	-	smtpd
++#submission inet n       -       n       -       -       smtpd
++#  -o smtpd_tls_security_level=encrypt
++#  -o smtpd_sasl_auth_enable=yes
++#  -o smtpd_client_restrictions=permit_sasl_authenticated,reject
++#  -o milter_macro_daemon_name=ORIGINATING
++#smtps     inet  n       -       n       -       -       smtpd
++#  -o smtpd_tls_wrappermode=yes
++#  -o smtpd_sasl_auth_enable=yes
++#  -o smtpd_client_restrictions=permit_sasl_authenticated,reject
++#  -o milter_macro_daemon_name=ORIGINATING
++#628       inet  n       -       n       -       -       qmqpd
++pickup	fifo	n	-	y	60	1	pickup
++  -o content_filter=
++  -o receive_override_options=
++cleanup	unix	n	-	y	-	0	cleanup
++qmgr	fifo	n	-	y	300	1	qmgr
++#qmgr     fifo  n       -       n       300     1       oqmgr
++tlsmgr	unix	-	-	y	1000?	1	tlsmgr
++rewrite	unix	-	-	y	-	-	trivial-rewrite
++bounce	unix	-	-	y	-	0	bounce
++defer	unix	-	-	y	-	0	bounce
++trace	unix	-	-	y	-	0	bounce
++verify	unix	-	-	y	-	1	verify
++flush	unix	n	-	y	1000?	0	flush
++proxymap  unix  -       -       n       -       -       proxymap
++proxywrite unix -       -       n       -       1       proxymap
++smtp	unix	-	-	y	-	-	smtp
++# When relaying mail as backup MX, disable fallback_relay to avoid MX loops
++relay	unix	-	-	y	-	-	smtp
++	-o smtp_fallback_relay=
++#       -o smtp_helo_timeout=5 -o smtp_connect_timeout=5
++showq	unix	n	-	y	-	-	showq
++error	unix	-	-	y	-	-	error
++retry	unix	-	-	y	-	-	error
++discard	unix	-	-	y	-	-	discard
++local     unix  -       n       n       -       -       local
++virtual   unix  -       n       n       -       -       virtual
++lmtp	unix	-	-	y	-	-	lmtp
++anvil	unix	-	-	y	-	1	anvil
++scache	unix	-	-	y	-	1	scache
++#
++# ====================================================================
++# Interfaces to non-Postfix software. Be sure to examine the manual
++# pages of the non-Postfix software to find out what options it wants.
++#
++# Many of the following services use the Postfix pipe(8) delivery
++# agent.  See the pipe(8) man page for information about ${recipient}
++# and other message envelope options.
++# ====================================================================
++#
++# maildrop. See the Postfix MAILDROP_README file for details.
++# Also specify in main.cf: maildrop_destination_recipient_limit=1
++#
++#maildrop  unix  -       n       n       -       -       pipe
++#  flags=DRhu user=nobody argv=/usr/bin/maildrop -d ${recipient}
++#
++# ====================================================================
++#
++# Please See the Postfix CYRUS_README file for details
++# deliver interface (deprecated), to use this also use
++# postconf -e cyrus-deliver_destination_recipient_limit=1
++cyrus-deliver     unix  -       n       n       -       -       pipe
++  user=cyrus argv=/usr/lib/cyrus-imapd/deliver -e -r ${sender} -m ${extension} ${user}
++#
++# for default cyrus socket placement
++cyrus     unix  -       n       n       -       -       lmtp
++  -o lmtp_cache_connection=yes
++#
++# if you configure cyrus socket in the chroot jail
++cyrus-chroot     unix  -       -       y       -       -       lmtp
++  -o lmtp_cache_connection=yes
++#
++# for lmtp to cyrus via tcp
++cyrus-inet	unix	-	-	y	-	-	lmtp
++  -o lmtp_cache_connection=yes
++  -o lmtp_sasl_auth_enable=yes
++  -o lmtp_sasl_password_maps=hash:/etc/postfix/cyrus_lmtp_sasl_pass
++  -o lmtp_sasl_security_options=noanonymous
++#
++# ====================================================================
++#
++# See the Postfix UUCP_README file for configuration details.
++#
++#uucp      unix  -       n       n       -       -       pipe
++#  flags=Fqhu user=uucp argv=uux -r -n -z -a$sender - $nexthop!rmail ($recipient)
++#
++# ====================================================================
++#
++# Other external delivery methods.
++# These are not distributed with Mandrivalinux
++#
++#ifmail    unix  -       n       n       -       -       pipe
++#  flags=F user=ftn argv=/usr/lib/ifmail/ifmail -r $nexthop ($recipient)
++#
++#bsmtp     unix  -       n       n       -       -       pipe
++#  flags=Fq. user=bsmtp argv=/usr/local/sbin/bsmtp -f $sender $nexthop $recipient
++#
++#scalemail-backend unix -       n       n       -       2       pipe
++#  flags=R user=scalemail argv=/usr/lib/scalemail/bin/scalemail-store
++#  ${nexthop} ${user} ${extension}
++#
++#mailman   unix  -       n       n       -       -       pipe
++#  flags=FR user=list argv=/usr/lib/mailman/bin/postfix-to-mailman.py
++#  ${nexthop} ${user}
++#
++##### START OF CONTENT FILTER CUSTOMIZATIONS #####
++# Please see the Postfix FILTER_README for details.
++# These sample entries expect your content filter to
++# listen on port 10025 and to inject mail back into
++# postfix on port 10026.
++#
++# to enable such content filter run the command
++#    postconf -e content_filter=smtp-filter:127.0.0.1:10025
++#    postconf -e smtp-filter_destination_concurrency_limit=2
++# or
++#    postconf -e content_filter=lmtp-filter:127.0.0.1:10025
++#    postconf -e lmtp-filter_destination_concurrency_limit=2
++# and the command
++#    postconf -e receive_override_options=no_address_mappings
++#
++# adjust the value of ?mtp-filter_destination_concurrency_limit
++# to match the maximum number of process your content filter
++# will spawn.
++#
++127.0.0.1:10026	inet	n	-	y	-	-	smtpd
++  -o content_filter=
++  -o smtpd_restriction_classes=
++  -o smtpd_client_restrictions=permit_mynetworks,reject
++  -o smtpd_helo_restrictions=
++  -o smtpd_sender_restrictions=
++  -o smtpd_end_of_data_restrictions=
++  -o smtpd_etrn_restrictions=
++  -o smtpd_data_restrictions=
++  -o smtpd_delay_reject=no
++  -o smtpd_recipient_restrictions=permit_mynetworks,reject
++  -o mynetworks=127.0.0.0/8
++  -o smtpd_authorized_xforward_hosts=127.0.0.0/8
++  -o strict_rfc821_envelopes=yes
++  -o smtpd_error_sleep_time=0
++  -o smtpd_soft_error_limit=1001
++  -o smtpd_hard_error_limit=1000
++  -o receive_override_options=no_unknown_recipient_checks,no_header_body_checks
++#
++lmtp-filter	unix	-	-	y	-	-	lmtp
++  -o lmtp_data_done_timeout=1200
++  -o lmtp_send_xforward_command=yes
++  -o lmtp_cache_connection=no
++  -o max_use=20
++#
++smtp-filter	unix	-	-	y	-	-	smtp
++  -o smtp_data_done_timeout=1200
++  -o smtp_send_xforward_command=yes
++  -o max_use=20
++#
++##### END OF CONTENT FILTER CUSTOMIZATIONS #####
++
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101118/00f50fe3/attachment-0001.html>
+
+ + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000595.html b/zarb-ml/mageia-sysadm/2010-November/000595.html new file mode 100644 index 000000000..41b3b894c --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000595.html @@ -0,0 +1,75 @@ + + + + [Mageia-sysadm] [258] add config for primary mail server (not ready for use yet) + + + + + + + + + +

[Mageia-sysadm] [258] add config for primary mail server (not ready for use yet)

+ nicolas vigier + boklm at mars-attacks.org +
+ Thu Nov 18 01:42:04 CET 2010 +

+
+ +
On Tue, 16 Nov 2010, Luca Berra wrote:
+
+> On Tue, Nov 16, 2010 at 05:05:31PM +0100, root at mageia.org wrote:
+>> +inet_interfaces = localhost
+> uhm
+>
+>> +inet_protocols = all
+>> +mynetworks_style = host
+>> +myhostname = <%= fqdn %>
+>> +mydomain = <%= domain %>
+>> +mydestination = <%= fqdn %>, ml.<%= domain %>
+> uhm, shouldn't it also accept for $mydomain
+
+Yes, later.
+
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000596.html b/zarb-ml/mageia-sysadm/2010-November/000596.html new file mode 100644 index 000000000..d14d0ced8 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000596.html @@ -0,0 +1,144 @@ + + + + [Mageia-sysadm] [273] add config for sympa + + + + + + + + + +

[Mageia-sysadm] [273] add config for sympa

+ root at mageia.org + root at mageia.org +
+ Thu Nov 18 01:43:41 CET 2010 +

+
+ +
Revision: 273
+Author:   boklm
+Date:     2010-11-18 01:43:41 +0100 (Thu, 18 Nov 2010)
+Log Message:
+-----------
+add config for sympa
+
+Modified Paths:
+--------------
+    puppet/modules/postfix/manifests/init.pp
+    puppet/modules/postfix/templates/primary_main.cf
+    puppet/modules/postfix/templates/primary_master.cf
+
+Added Paths:
+-----------
+    puppet/modules/postfix/templates/primary_transport_regexp
+
+Modified: puppet/modules/postfix/manifests/init.pp
+===================================================================
+--- puppet/modules/postfix/manifests/init.pp	2010-11-18 00:21:40 UTC (rev 272)
++++ puppet/modules/postfix/manifests/init.pp	2010-11-18 00:43:41 UTC (rev 273)
+@@ -39,6 +39,10 @@
+         file { '/etc/postfix/master.cf':
+             content => template("postfix/primary_master.cf"),
+         }
++
++        file { '/etc/postfix/transport_regexp':
++            content => template("postfix/primary_transport_regexp"),
++        }
+     }
+ 
+     class secondary_smtp inherits base {
+
+Modified: puppet/modules/postfix/templates/primary_main.cf
+===================================================================
+--- puppet/modules/postfix/templates/primary_main.cf	2010-11-18 00:21:40 UTC (rev 272)
++++ puppet/modules/postfix/templates/primary_main.cf	2010-11-18 00:43:41 UTC (rev 273)
+@@ -28,8 +28,12 @@
+ mynetworks_style = host
+ myhostname = <%= fqdn %>
+ mydomain = <%= domain %>
+-mydestination = <%= fqdn %>, ml.<%= domain %>
++mydestination = <%= fqdn %>
+ myorigin = $mydomain
++relay_domains = $mydestination, ml.<%= domain %>
++transport_maps = regexp:/etc/postfix/transport_regexp
++sympa_destination_recipient_limit = 1
++sympabounce_destination_recipient_limit = 1
+ #delay_warning_time = 4h
+ smtpd_banner = $myhostname ESMTP $mail_name ($mail_version) (Mandriva Linux)
+ unknown_local_recipient_reject_code = 450
+
+Modified: puppet/modules/postfix/templates/primary_master.cf
+===================================================================
+--- puppet/modules/postfix/templates/primary_master.cf	2010-11-18 00:21:40 UTC (rev 272)
++++ puppet/modules/postfix/templates/primary_master.cf	2010-11-18 00:43:41 UTC (rev 273)
+@@ -116,6 +116,12 @@
+ #mailman   unix  -       n       n       -       -       pipe
+ #  flags=FR user=list argv=/usr/lib/mailman/bin/postfix-to-mailman.py
+ #  ${nexthop} ${user}
++
++sympa        unix  -       n       n       -       -       pipe
++  flags=R user=sympa argv=/usr/sbin/queue ${recipient}
++sympabounce  unix  -       n       n       -       -       pipe
++  flags=R user=sympa argv=/usr/sbin/bouncequeue ${user}
++
+ #
+ ##### START OF CONTENT FILTER CUSTOMIZATIONS #####
+ # Please see the Postfix FILTER_README for details.
+
+Added: puppet/modules/postfix/templates/primary_transport_regexp
+===================================================================
+--- puppet/modules/postfix/templates/primary_transport_regexp	                        (rev 0)
++++ puppet/modules/postfix/templates/primary_transport_regexp	2010-11-18 00:43:41 UTC (rev 273)
+@@ -0,0 +1,2 @@
++/^.*+owner\@ml\.mageia\.org$/ sympabounce:
++/^.*\@ml\.mageia\.org$/       sympa:
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101118/e00a58f2/attachment.html>
+
+ + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000597.html b/zarb-ml/mageia-sysadm/2010-November/000597.html new file mode 100644 index 000000000..53d871d7c --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000597.html @@ -0,0 +1,90 @@ + + + + [Mageia-sysadm] [274] use $domain + + + + + + + + + +

[Mageia-sysadm] [274] use $domain

+ root at mageia.org + root at mageia.org +
+ Thu Nov 18 01:47:19 CET 2010 +

+
+ +
Revision: 274
+Author:   boklm
+Date:     2010-11-18 01:47:19 +0100 (Thu, 18 Nov 2010)
+Log Message:
+-----------
+use $domain
+
+Modified Paths:
+--------------
+    puppet/modules/postfix/templates/primary_transport_regexp
+
+Modified: puppet/modules/postfix/templates/primary_transport_regexp
+===================================================================
+--- puppet/modules/postfix/templates/primary_transport_regexp	2010-11-18 00:43:41 UTC (rev 273)
++++ puppet/modules/postfix/templates/primary_transport_regexp	2010-11-18 00:47:19 UTC (rev 274)
+@@ -1,2 +1,5 @@
+-/^.*+owner\@ml\.mageia\.org$/ sympabounce:
+-/^.*\@ml\.mageia\.org$/       sympa:
++<%
++ml_domain = 'ml\.' + domain.gsub('.','\.')
++%>
++/^.*+owner\@<%= ml_domain %>$/ sympabounce:
++/^.*\@<%= ml_domain %>$/       sympa:
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101118/49b7fae8/attachment.html>
+
+ + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000598.html b/zarb-ml/mageia-sysadm/2010-November/000598.html new file mode 100644 index 000000000..3e9ea27b1 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000598.html @@ -0,0 +1,125 @@ + + + + [Mageia-sysadm] [275] add config for secondary MX + + + + + + + + + +

[Mageia-sysadm] [275] add config for secondary MX

+ root at mageia.org + root at mageia.org +
+ Thu Nov 18 01:57:01 CET 2010 +

+
+ +
Revision: 275
+Author:   boklm
+Date:     2010-11-18 01:57:00 +0100 (Thu, 18 Nov 2010)
+Log Message:
+-----------
+add config for secondary MX
+
+Added Paths:
+-----------
+    puppet/modules/postfix/templates/secondary_main.cf
+
+Copied: puppet/modules/postfix/templates/secondary_main.cf (from rev 270, puppet/modules/postfix/templates/simple_relay_main.cf)
+===================================================================
+--- puppet/modules/postfix/templates/secondary_main.cf	                        (rev 0)
++++ puppet/modules/postfix/templates/secondary_main.cf	2010-11-18 00:57:00 UTC (rev 275)
+@@ -0,0 +1,42 @@
++# Please be sure to read the /usr/share/doc/postfix/README.MDK file
++# to learn about differences from stock postfix to Mandriva package.
++# This file contains only the parameters changed from a default install
++# see /etc/postfix/main.cf.dist for a commented, fuller version of this file.
++
++<%
++path_daemon_directory = "/usr/lib" + ( architecture == "x86_64" ? '64' : '') + "/postfix/"
++%>
++
++# These are changed by postfix install script
++readme_directory = /usr/share/doc/postfix/README_FILES
++html_directory = /usr/share/doc/postfix/html
++sendmail_path = /usr/sbin/sendmail.postfix
++setgid_group = postdrop
++command_directory = /usr/sbin
++manpage_directory = /usr/share/man
++daemon_directory = <%= path_daemon_directory %>
++data_directory = /var/lib/postfix
++newaliases_path = /usr/bin/newaliases
++mailq_path = /usr/bin/mailq
++queue_directory = /var/spool/postfix
++mail_owner = postfix
++
++# User configurable parameters
++
++inet_interfaces = localhost
++inet_protocols = all
++mynetworks_style = host
++myhostname = <%= fqdn %>
++mydomain = <%= domain %>
++mydestination = <%= fqdn %>
++myorigin = $mydomain
++relay_domains = $mydestination, ml.<%= domain %>, <%= domain %>
++#delay_warning_time = 4h
++smtpd_banner = $myhostname ESMTP $mail_name ($mail_version) (Mandriva Linux)
++unknown_local_recipient_reject_code = 450
++smtp-filter_destination_concurrency_limit = 2
++lmtp-filter_destination_concurrency_limit = 2
++smtpd_use_tls = yes
++smtpd_tls_cert_file = /etc/pki/tls/certs/postfix.pem
++smtpd_tls_key_file = /etc/pki/tls/private/postfix.pem
++smtpd_tls_CAfile = /etc/pki/tls/certs/ca-bundle.crt
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101118/627f5a59/attachment.html>
+
+ + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000599.html b/zarb-ml/mageia-sysadm/2010-November/000599.html new file mode 100644 index 000000000..8351af493 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000599.html @@ -0,0 +1,77 @@ + + + + [Mageia-sysadm] [268] - add a postgrey module + + + + + + + + + +

[Mageia-sysadm] [268] - add a postgrey module

+ Luca Berra + bluca at vodka.it +
+ Thu Nov 18 08:02:16 CET 2010 +

+
+ +
On Wed, Nov 17, 2010 at 04:58:10PM +0100, root at mageia.org wrote:
+>Revision: 268
+>Author:   misc
+>Date:     2010-11-17 16:58:10 +0100 (Wed, 17 Nov 2010)
+>Log Message:
+>-----------
+>- add a postgrey module 
+
+be sure to put the critter behind something like:
+http://www.arschkrebs.de/postfix/postfix_greylisting.shtml
+it tends to be annoying otherwise
+
+L.
+
+-- 
+Luca Berra -- bluca at vodka.it
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000600.html b/zarb-ml/mageia-sysadm/2010-November/000600.html new file mode 100644 index 000000000..a6990d1ec --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000600.html @@ -0,0 +1,123 @@ + + + + [Mageia-sysadm] [123] Customize a little for mageia + + + + + + + + + +

[Mageia-sysadm] [123] Customize a little for mageia

+ root at mageia.org + root at mageia.org +
+ Thu Nov 18 10:16:44 CET 2010 +

+
+ +
Revision: 123
+Author:   dmorgan
+Date:     2010-11-18 10:16:43 +0100 (Thu, 18 Nov 2010)
+Log Message:
+-----------
+Customize a little for mageia
+
+Modified Paths:
+--------------
+    build_system/iurt/trunk/iurt2
+    build_system/iurt/trunk/ulri
+
+Modified: build_system/iurt/trunk/iurt2
+===================================================================
+--- build_system/iurt/trunk/iurt2	2010-11-10 12:58:50 UTC (rev 122)
++++ build_system/iurt/trunk/iurt2	2010-11-18 09:16:43 UTC (rev 123)
+@@ -76,7 +76,7 @@
+ };
+ 
+ my $program_name = 'iurt2';
+-my $VERSION = '0.6.2';
++my $VERSION = '0.6.4';
+ # sessing parameters
+ my $sudo = '/usr/bin/sudo';
+ my $arg = @ARGV;
+@@ -474,7 +474,7 @@
+     },
+     distribution => {
+ 	desc => 'Name of the packages distribution',
+-	default => 'Mandriva Linux'
++	default => 'Mageia'
+     },
+     home => {
+ 	desc => 'Home dir',
+@@ -550,7 +550,7 @@
+     },
+     vendor => {
+ 	desc => 'Name of the packages vendor',
+-	default => 'Mandriva'
++	default => 'Mageia.org'
+     },
+     additional_media => {
+ 	desc => 'Additional medias to be used',
+
+Modified: build_system/iurt/trunk/ulri
+===================================================================
+--- build_system/iurt/trunk/ulri	2010-11-10 12:58:50 UTC (rev 122)
++++ build_system/iurt/trunk/ulri	2010-11-18 09:16:43 UTC (rev 123)
+@@ -148,7 +148,7 @@
+     },
+     packager => {
+         desc => 'Default packager tag user by bot',
+-	default => 'Mandriva Team <http://www.mandrivaexpert.com>'
++	default => 'Mageia Team <http://www.mageia.org>'
+     },
+ );
+ config_usage(\%config_usage, $config) if $run{config_usage};
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101118/d6bb11e1/attachment.html>
+
+ + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000601.html b/zarb-ml/mageia-sysadm/2010-November/000601.html new file mode 100644 index 000000000..3cf12cfac --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000601.html @@ -0,0 +1,126 @@ + + + + [Mageia-sysadm] [276] Merge two modules: mysql and blog + + + + + + + + + +

[Mageia-sysadm] [276] Merge two modules: mysql and blog

+ root at mageia.org + root at mageia.org +
+ Thu Nov 18 10:50:41 CET 2010 +

+
+ +
Revision: 276
+Author:   dams
+Date:     2010-11-18 10:50:40 +0100 (Thu, 18 Nov 2010)
+Log Message:
+-----------
+Merge two modules: mysql and blog
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+    puppet/modules/blog/manifests/init.pp
+
+Removed Paths:
+-------------
+    puppet/modules/mysql/
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-18 00:57:00 UTC (rev 275)
++++ puppet/manifests/nodes.pp	2010-11-18 09:50:40 UTC (rev 276)
+@@ -111,10 +111,9 @@
+ # - setup blog
+ #
+     include default_mageia_server
++    timezone::timezone { "Europe/Paris": }
+     include apache::base
+     include apache::mod_php
+-    include mysql
+-    timezone::timezone { "Europe/Paris": }
+     include blog
+ }
+ 
+
+Modified: puppet/modules/blog/manifests/init.pp
+===================================================================
+--- puppet/modules/blog/manifests/init.pp	2010-11-18 00:57:00 UTC (rev 275)
++++ puppet/modules/blog/manifests/init.pp	2010-11-18 09:50:40 UTC (rev 276)
+@@ -1,6 +1,20 @@
+ #TODO: 
+ # - add the creation of the user 'blog' in puppet
+-class blog {
++class mysql {
++	package { 'mysql':
++        	ensure => installed
++    	}
++    	package { 'php-mysql':
++        	ensure => installed
++    	}
++
++	service { mysqld:
++        	ensure => running,
++        	subscribe => Package["mysql"],
++    	}
++}
++
++class check_new-blog-post {
+ 	package { 'wget':
+         	ensure => installed
+     	}
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101118/097fa3d8/attachment.html>
+
+ + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000602.html b/zarb-ml/mageia-sysadm/2010-November/000602.html new file mode 100644 index 000000000..77d4e9bd7 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000602.html @@ -0,0 +1,65 @@ + + + + [Mageia-sysadm] Puppet Report for champagne.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for champagne.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Thu Nov 18 10:55:57 CET 2010 +

+
+ +
Thu Nov 18 10:55:56 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Could not find class blog at /etc/puppet/manifests/nodes.pp:117 on node champagne.mageia.org
+
+ + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000603.html b/zarb-ml/mageia-sysadm/2010-November/000603.html new file mode 100644 index 000000000..30a321a46 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000603.html @@ -0,0 +1,92 @@ + + + + [Mageia-sysadm] [277] Fix error on nodes.php for champagne + + + + + + + + + +

[Mageia-sysadm] [277] Fix error on nodes.php for champagne

+ root at mageia.org + root at mageia.org +
+ Thu Nov 18 10:58:01 CET 2010 +

+
+ +
Revision: 277
+Author:   dams
+Date:     2010-11-18 10:58:01 +0100 (Thu, 18 Nov 2010)
+Log Message:
+-----------
+Fix error on nodes.php for champagne
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-18 09:50:40 UTC (rev 276)
++++ puppet/manifests/nodes.pp	2010-11-18 09:58:01 UTC (rev 277)
+@@ -114,7 +114,8 @@
+     timezone::timezone { "Europe/Paris": }
+     include apache::base
+     include apache::mod_php
+-    include blog
++    include blog::mysql
++    include blog::check_new-blog-post
+ }
+ 
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101118/0398689c/attachment.html>
+
+ + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000604.html b/zarb-ml/mageia-sysadm/2010-November/000604.html new file mode 100644 index 000000000..182205f0f --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000604.html @@ -0,0 +1,65 @@ + + + + [Mageia-sysadm] Puppet Report for champagne.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for champagne.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Thu Nov 18 10:58:37 CET 2010 +

+
+ +
Thu Nov 18 10:58:36 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Could not find class blog at /etc/puppet/manifests/nodes.pp:117 on node champagne.mageia.org
+
+ + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000605.html b/zarb-ml/mageia-sysadm/2010-November/000605.html new file mode 100644 index 000000000..650f9fe6f --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000605.html @@ -0,0 +1,65 @@ + + + + [Mageia-sysadm] Puppet Report for champagne.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for champagne.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Thu Nov 18 11:00:04 CET 2010 +

+
+ +
Thu Nov 18 11:00:03 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Could not find class blog::mysql at /etc/puppet/manifests/nodes.pp:117 on node champagne.mageia.org
+
+ + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000606.html b/zarb-ml/mageia-sysadm/2010-November/000606.html new file mode 100644 index 000000000..b672aaea8 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000606.html @@ -0,0 +1,65 @@ + + + + [Mageia-sysadm] Puppet Report for champagne.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for champagne.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Thu Nov 18 11:00:39 CET 2010 +

+
+ +
Thu Nov 18 11:00:39 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Could not find class blog::mysql at /etc/puppet/manifests/nodes.pp:117 on node champagne.mageia.org
+
+ + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000607.html b/zarb-ml/mageia-sysadm/2010-November/000607.html new file mode 100644 index 000000000..850fc75e0 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000607.html @@ -0,0 +1,65 @@ + + + + [Mageia-sysadm] Puppet Report for champagne.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for champagne.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Thu Nov 18 11:00:54 CET 2010 +

+
+ +
Thu Nov 18 11:00:53 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Could not find class blog::mysql at /etc/puppet/manifests/nodes.pp:117 on node champagne.mageia.org
+
+ + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000608.html b/zarb-ml/mageia-sysadm/2010-November/000608.html new file mode 100644 index 000000000..ae9a1638e --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000608.html @@ -0,0 +1,92 @@ + + + + [Mageia-sysadm] [278] Fix error on nodes.php for champagne (bis) + + + + + + + + + +

[Mageia-sysadm] [278] Fix error on nodes.php for champagne (bis)

+ root at mageia.org + root at mageia.org +
+ Thu Nov 18 11:03:23 CET 2010 +

+
+ +
Revision: 278
+Author:   dams
+Date:     2010-11-18 11:03:23 +0100 (Thu, 18 Nov 2010)
+Log Message:
+-----------
+Fix error on nodes.php for champagne (bis)
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-18 09:58:01 UTC (rev 277)
++++ puppet/manifests/nodes.pp	2010-11-18 10:03:23 UTC (rev 278)
+@@ -114,8 +114,7 @@
+     timezone::timezone { "Europe/Paris": }
+     include apache::base
+     include apache::mod_php
+-    include blog::mysql
+-    include blog::check_new-blog-post
++    include blog
+ }
+ 
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101118/851898f3/attachment.html>
+
+ + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000609.html b/zarb-ml/mageia-sysadm/2010-November/000609.html new file mode 100644 index 000000000..2c3d4a77b --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000609.html @@ -0,0 +1,127 @@ + + + + [Mageia-sysadm] [279] Change class + + + + + + + + + +

[Mageia-sysadm] [279] Change class

+ root at mageia.org + root at mageia.org +
+ Thu Nov 18 11:04:30 CET 2010 +

+
+ +
Revision: 279
+Author:   dams
+Date:     2010-11-18 11:04:30 +0100 (Thu, 18 Nov 2010)
+Log Message:
+-----------
+Change class
+
+Modified Paths:
+--------------
+    puppet/modules/blog/manifests/init.pp
+
+Modified: puppet/modules/blog/manifests/init.pp
+===================================================================
+--- puppet/modules/blog/manifests/init.pp	2010-11-18 10:03:23 UTC (rev 278)
++++ puppet/modules/blog/manifests/init.pp	2010-11-18 10:04:30 UTC (rev 279)
+@@ -1,9 +1,14 @@
+ #TODO: 
+ # - add the creation of the user 'blog' in puppet
+-class mysql {
++class blog {
+ 	package { 'mysql':
+         	ensure => installed
+     	}
++
++        package { 'wget':
++                ensure => installed
++        }
++
+     	package { 'php-mysql':
+         	ensure => installed
+     	}
+@@ -12,12 +17,7 @@
+         	ensure => running,
+         	subscribe => Package["mysql"],
+     	}
+-}
+-
+-class check_new-blog-post {
+-	package { 'wget':
+-        	ensure => installed
+-    	}
++	
+ 	file { "check_new-blog-post":
+         	path => "/usr/local/bin/check_new-blog-post.sh",
+         	ensure => present,
+@@ -26,12 +26,14 @@
+         	mode => 755,
+         	content => template("blog/check_new-blog-post.sh")
+     	}
++
+ 	file { "/var/lib/blog":
+                 ensure => directory,
+                 owner => blog,
+                 group => blog,
+                 mode => 644,
+         }
++
+ 	cron { blog:
+         	user => blog,
+         	minute => '*/15',
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101118/49b5f7d3/attachment.html>
+
+ + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000610.html b/zarb-ml/mageia-sysadm/2010-November/000610.html new file mode 100644 index 000000000..0cf8d4a99 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000610.html @@ -0,0 +1,88 @@ + + + + [Mageia-sysadm] Main tasks for the next days + + + + + + + + + +

[Mageia-sysadm] Main tasks for the next days

+ Thierry Vignaud + thierry.vignaud at gmail.com +
+ Thu Nov 18 14:42:03 CET 2010 +

+
+ +
On 16 November 2010 13:54, Michael Scherer <misc at zarb.org> wrote:
+>> > Without history ?
+>>
+>> Without svn history, this what I thought we agreed on yesterday
+>> (checking http://meetbot.mageia.org/mageia-meeting/2010/mageia-meeting.2010-11-15-19.36.html
+>> it is).
+>
+> The lose of history was for the packages, not for soft ( at least,
+> that's what I understand, given the fact that "history" is said 5 times
+> and all related to packages, not soft/ ).
+
+Indeed it's what I understood too.
+
+> We all agree that some softwares will need to be cleaned from icons, but
+> IMHO, most of them don't. I also think we can do miracles with git-svn
+> and history rewriting ( except it may take time ).
+>
+> But having worked on software without svn history, I can tell you it is
+> a source of recurrent frustration. You look at some weird piece of code,
+> you do not understand why it was done like this, you do svn blame ->
+> "rev 443 admin: import of the old repository". You are screwed.
+
+Yes. It's already painfull to work because one year was lost in SVN history.
+What's more it was the first year of SVN usage where we eventually did
+major refactoring now that it was possible with SVN in a sensible way
+(aka copying/spliting/moving files without loosing history).
+Same for packages where we lost one year of SVN and where we didn't
+import old CVS history (well that was history without commiter names
+and without changelog but still)
+
+ + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000611.html b/zarb-ml/mageia-sysadm/2010-November/000611.html new file mode 100644 index 000000000..fb4f79638 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000611.html @@ -0,0 +1,111 @@ + + + + [Mageia-sysadm] [280] add vhost_other_app and webapp_other defines + + + + + + + + + +

[Mageia-sysadm] [280] add vhost_other_app and webapp_other defines

+ root at mageia.org + root at mageia.org +
+ Thu Nov 18 16:55:03 CET 2010 +

+
+ +
Revision: 280
+Author:   boklm
+Date:     2010-11-18 16:55:02 +0100 (Thu, 18 Nov 2010)
+Log Message:
+-----------
+add vhost_other_app and webapp_other defines
+
+Modified Paths:
+--------------
+    puppet/modules/apache/manifests/init.pp
+
+Modified: puppet/modules/apache/manifests/init.pp
+===================================================================
+--- puppet/modules/apache/manifests/init.pp	2010-11-18 10:04:30 UTC (rev 279)
++++ puppet/modules/apache/manifests/init.pp	2010-11-18 15:55:02 UTC (rev 280)
+@@ -128,4 +128,29 @@
+             content => template("apache/django.wsgi")
+         }
+     }
++
++   define vhost_other_app($vhost_file) {
++        file { "$name.conf":
++            path => "/etc/httpd/conf/vhosts.d/$name.conf",
++            ensure => "present",
++            owner => root,
++            group => root,
++            mode => 644,
++            notify => Service['apache'],
++            content => template($vhost_file)
++        }
++   }
++
++   define webapp_other($webapp_file) {
++        $webappname = $name
++        file { "webapp_$name.conf":
++            path => "/etc/httpd/conf/webapps.d/$webappname.conf",
++            ensure => "present",
++            owner => root,
++            group => root,
++            mode => 644,
++            notify => Service['apache'],
++            content => template($webapp_file)
++        }
++   }
+ }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101118/e7b1de1e/attachment.html>
+
+ + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000612.html b/zarb-ml/mageia-sysadm/2010-November/000612.html new file mode 100644 index 000000000..213f37b78 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000612.html @@ -0,0 +1,128 @@ + + + + [Mageia-sysadm] [281] add vhost and webapp conf files + + + + + + + + + +

[Mageia-sysadm] [281] add vhost and webapp conf files

+ root at mageia.org + root at mageia.org +
+ Thu Nov 18 17:58:22 CET 2010 +

+
+ +
Revision: 281
+Author:   boklm
+Date:     2010-11-18 17:58:22 +0100 (Thu, 18 Nov 2010)
+Log Message:
+-----------
+add vhost and webapp conf files
+
+Modified Paths:
+--------------
+    puppet/modules/sympa/manifests/init.pp
+
+Added Paths:
+-----------
+    puppet/modules/sympa/templates/vhost_sympa.mageia.org.conf
+    puppet/modules/sympa/templates/webapp_sympa.conf
+
+Modified: puppet/modules/sympa/manifests/init.pp
+===================================================================
+--- puppet/modules/sympa/manifests/init.pp	2010-11-18 15:55:02 UTC (rev 280)
++++ puppet/modules/sympa/manifests/init.pp	2010-11-18 16:58:22 UTC (rev 281)
+@@ -40,5 +40,14 @@
+         mode => 644,
+         content => template("sympa/ldap_alias_entry.tt2")
+     }
++
++    include apache::mod_fcgid
++    apache::webapp_other{"sympa":
++	webapp_file => "sympa/webapp_sympa.conf",
++    }
++
++   apache::vhost_other_app { "ml.$domain":
++        vhost_file => "sympa/vhost_sympa.mageia.org.conf",
++   }
+ }
+ 
+
+Added: puppet/modules/sympa/templates/vhost_sympa.mageia.org.conf
+===================================================================
+--- puppet/modules/sympa/templates/vhost_sympa.mageia.org.conf	                        (rev 0)
++++ puppet/modules/sympa/templates/vhost_sympa.mageia.org.conf	2010-11-18 16:58:22 UTC (rev 281)
+@@ -0,0 +1,7 @@
++<VirtualHost *:80>
++	ServerName ml.<%= domain %>
++	DocumentRoot /usr/lib64/sympa/cgi
++	<Location />
++		Allow from all
++	</Location>
++</VirtualHost>
+
+Added: puppet/modules/sympa/templates/webapp_sympa.conf
+===================================================================
+--- puppet/modules/sympa/templates/webapp_sympa.conf	                        (rev 0)
++++ puppet/modules/sympa/templates/webapp_sympa.conf	2010-11-18 16:58:22 UTC (rev 281)
+@@ -0,0 +1,8 @@
++<Directory /usr/lib64/sympa/cgi>
++    Options ExecCGI
++    AddHandler fastcgi-script .fcgi
++    DirectoryIndex wwsympa-wrapper.fcgi
++
++    Order allow,deny
++    Allow from all
++</Directory>
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101118/076ef1cd/attachment.html>
+
+ + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000613.html b/zarb-ml/mageia-sysadm/2010-November/000613.html new file mode 100644 index 000000000..bd888fe41 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000613.html @@ -0,0 +1,74 @@ + + + + [Mageia-sysadm] [276] Merge two modules: mysql and blog + + + + + + + + + +

[Mageia-sysadm] [276] Merge two modules: mysql and blog

+ Michael Scherer + misc at zarb.org +
+ Thu Nov 18 18:02:22 CET 2010 +

+
+ +
Le jeudi 18 novembre 2010 à 10:50 +0100, root at mageia.org a écrit :
+> Revision: 276
+> Author:   dams
+> Date:     2010-11-18 10:50:40 +0100 (Thu, 18 Nov 2010)
+> Log Message:
+> -----------
+> Merge two modules: mysql and blog
+
+well, what if we want to use mysql for something else than the blog ?
+
+-- 
+Michael Scherer
+
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000614.html b/zarb-ml/mageia-sysadm/2010-November/000614.html new file mode 100644 index 000000000..49f335a0d --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000614.html @@ -0,0 +1,109 @@ + + + + [Mageia-sysadm] [282] We do not need those 2 files as we will not handle the alias in the ldap + + + + + + + + + +

[Mageia-sysadm] [282] We do not need those 2 files as we will not handle the alias in the ldap

+ root at mageia.org + root at mageia.org +
+ Thu Nov 18 18:14:17 CET 2010 +

+
+ +
Revision: 282
+Author:   dmorgan
+Date:     2010-11-18 18:14:16 +0100 (Thu, 18 Nov 2010)
+Log Message:
+-----------
+We do not need those 2 files as we will not handle the alias in the ldap
+
+Modified Paths:
+--------------
+    puppet/modules/sympa/manifests/init.pp
+
+Modified: puppet/modules/sympa/manifests/init.pp
+===================================================================
+--- puppet/modules/sympa/manifests/init.pp	2010-11-18 16:58:22 UTC (rev 281)
++++ puppet/modules/sympa/manifests/init.pp	2010-11-18 17:14:16 UTC (rev 282)
+@@ -17,14 +17,6 @@
+         content => template("sympa/sympa.conf")
+     }
+ 
+-    file { '/etc/sympa/ldap_alias_manager.conf':
+-        ensure => present,
+-        owner => root,
+-        group => root,
+-        mode => 644,
+-        content => template("sympa/ldap_alias_manager.conf")
+-    }
+-
+     file { '/etc/sympa/auth.conf':
+         ensure => present,
+         owner => root,
+@@ -33,13 +25,6 @@
+         content => template("sympa/auth.conf")
+     }
+ 
+-    file { '/etc/sympa/ldap_alias_entry.tt2':
+-        ensure => present,
+-        owner => root,
+-        group => root,
+-        mode => 644,
+-        content => template("sympa/ldap_alias_entry.tt2")
+-    }
+ 
+     include apache::mod_fcgid
+     apache::webapp_other{"sympa":
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101118/5ed2f26b/attachment-0001.html>
+
+ + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000615.html b/zarb-ml/mageia-sysadm/2010-November/000615.html new file mode 100644 index 000000000..979c9fb00 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000615.html @@ -0,0 +1,139 @@ + + + + [Mageia-sysadm] [283] Disable alias management, already managed in postfix, and remove unused files + + + + + + + + + +

[Mageia-sysadm] [283] Disable alias management, already managed in postfix, and remove unused files

+ root at mageia.org + root at mageia.org +
+ Thu Nov 18 18:22:22 CET 2010 +

+
+ +
Revision: 283
+Author:   boklm
+Date:     2010-11-18 18:22:21 +0100 (Thu, 18 Nov 2010)
+Log Message:
+-----------
+Disable alias management, already managed in postfix, and remove unused files
+
+Modified Paths:
+--------------
+    puppet/modules/sympa/templates/sympa.conf
+
+Removed Paths:
+-------------
+    puppet/modules/sympa/templates/ldap_alias_entry.tt2
+    puppet/modules/sympa/templates/ldap_alias_manager.conf
+
+Deleted: puppet/modules/sympa/templates/ldap_alias_entry.tt2
+===================================================================
+--- puppet/modules/sympa/templates/ldap_alias_entry.tt2	2010-11-18 17:14:16 UTC (rev 282)
++++ puppet/modules/sympa/templates/ldap_alias_entry.tt2	2010-11-18 17:22:21 UTC (rev 283)
+@@ -1,11 +0,0 @@
+-dn: cn=[% list.alias %],cn=[% list.domain %],[% ldap_base_dn %]
+-objectClass: top
+-objectClass: mailAlias
+-objectClass: mailRecipient
+-cn: [% list.alias %]
+-mail: [% list.alias %]@[% list.domain %]
+-mailTransportMode: [% list.command %]
+-mailAccountStatus: active
+-mailHost: mail1.example.com
+-
+-# vim: ft=ldif
+
+Deleted: puppet/modules/sympa/templates/ldap_alias_manager.conf
+===================================================================
+--- puppet/modules/sympa/templates/ldap_alias_manager.conf	2010-11-18 17:14:16 UTC (rev 282)
++++ puppet/modules/sympa/templates/ldap_alias_manager.conf	2010-11-18 17:22:21 UTC (rev 283)
+@@ -1,24 +0,0 @@
+-## This configuration file is used by the ldap_alias_manager.pl ; it allows to manage mail aliases in an LDAP directory
+-## To make sympa use the ldap_alias_manager.pl script, you should edit the 'ldap_manager' sympa.conf parameter
+-## To use this file, you should copy it to the /home/sympa/etc/ directory
+-
+-#LDAP server host
+-ldap_host ldap.<%= domain %>
+-
+-#LDAP bind DN
+-ldap_bind_dn cn=alamut-sympa,ou=System Accounts,dc=mageia,dc=org
+-#LDAP bind password
+-ldap_bind_pwd <%= ldappass %>
+-
+-#LDAP Base DN
+-ldap_base_dn ou=mail,dc=mageia,dc=org
+-
+-#LDAP Mail attribute
+-ldap_mail_attribute mail
+-
+-#LDAP SSL
+-ldap_ssl 0
+-
+-#LDAP CA Chain file
+-#ldap_cachain /etc/ldap/cert/cachain.pem
+-~                                         
+
+Modified: puppet/modules/sympa/templates/sympa.conf
+===================================================================
+--- puppet/modules/sympa/templates/sympa.conf	2010-11-18 17:14:16 UTC (rev 282)
++++ puppet/modules/sympa/templates/sympa.conf	2010-11-18 17:22:21 UTC (rev 283)
+@@ -288,4 +288,6 @@
+ ## The regexp applied on this header to verify message is NOT a spam (example \s*No)
+ antispam_tag_header_ham_regexp  ^\s*No
+ 
++# Disable alias management, already managed in postfix
++sendmail_aliases none
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101118/017c9001/attachment.html>
+
+ + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000616.html b/zarb-ml/mageia-sysadm/2010-November/000616.html new file mode 100644 index 000000000..264983e2b --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000616.html @@ -0,0 +1,123 @@ + + + + [Mageia-sysadm] [284] rename vhost template filename + + + + + + + + + +

[Mageia-sysadm] [284] rename vhost template filename

+ root at mageia.org + root at mageia.org +
+ Thu Nov 18 18:42:50 CET 2010 +

+
+ +
Revision: 284
+Author:   boklm
+Date:     2010-11-18 18:42:50 +0100 (Thu, 18 Nov 2010)
+Log Message:
+-----------
+rename vhost template filename
+
+Modified Paths:
+--------------
+    puppet/modules/sympa/manifests/init.pp
+
+Added Paths:
+-----------
+    puppet/modules/sympa/templates/vhost_ml.conf
+
+Removed Paths:
+-------------
+    puppet/modules/sympa/templates/vhost_sympa.mageia.org.conf
+
+Modified: puppet/modules/sympa/manifests/init.pp
+===================================================================
+--- puppet/modules/sympa/manifests/init.pp	2010-11-18 17:22:21 UTC (rev 283)
++++ puppet/modules/sympa/manifests/init.pp	2010-11-18 17:42:50 UTC (rev 284)
+@@ -32,7 +32,7 @@
+     }
+ 
+    apache::vhost_other_app { "ml.$domain":
+-        vhost_file => "sympa/vhost_sympa.mageia.org.conf",
++        vhost_file => "sympa/vhost_ml.conf",
+    }
+ }
+ 
+
+Copied: puppet/modules/sympa/templates/vhost_ml.conf (from rev 283, puppet/modules/sympa/templates/vhost_sympa.mageia.org.conf)
+===================================================================
+--- puppet/modules/sympa/templates/vhost_ml.conf	                        (rev 0)
++++ puppet/modules/sympa/templates/vhost_ml.conf	2010-11-18 17:42:50 UTC (rev 284)
+@@ -0,0 +1,7 @@
++<VirtualHost *:80>
++	ServerName ml.<%= domain %>
++	DocumentRoot /usr/lib64/sympa/cgi
++	<Location />
++		Allow from all
++	</Location>
++</VirtualHost>
+
+Deleted: puppet/modules/sympa/templates/vhost_sympa.mageia.org.conf
+===================================================================
+--- puppet/modules/sympa/templates/vhost_sympa.mageia.org.conf	2010-11-18 17:22:21 UTC (rev 283)
++++ puppet/modules/sympa/templates/vhost_sympa.mageia.org.conf	2010-11-18 17:42:50 UTC (rev 284)
+@@ -1,7 +0,0 @@
+-<VirtualHost *:80>
+-	ServerName ml.<%= domain %>
+-	DocumentRoot /usr/lib64/sympa/cgi
+-	<Location />
+-		Allow from all
+-	</Location>
+-</VirtualHost>
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101118/ebea2509/attachment.html>
+
+ + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000617.html b/zarb-ml/mageia-sysadm/2010-November/000617.html new file mode 100644 index 000000000..239586d23 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000617.html @@ -0,0 +1,117 @@ + + + + [Mageia-sysadm] Main tasks for the next days + + + + + + + + + +

[Mageia-sysadm] Main tasks for the next days

+ Michael Scherer + misc at zarb.org +
+ Thu Nov 18 19:05:10 CET 2010 +

+
+ +
Le mercredi 17 novembre 2010 à 22:22 +0100, Olivier Blin a écrit :
+> Michael Scherer <misc at zarb.org> writes:
+
+> > If the name is used in a comment, in a procedure or variable name, or in
+> > a url for technical reason, I do not think it need to be removed
+> > ( except for technical reason, obviously ). 
+> 
+> Agreed as well
+
+Maybe I misunderstood, but isn't it in contradiction with the
+fact that you would feel safer having things buried in the svn, as said
+later ?
+
+> 
+> If the SVN is public and contain packages like mandriva-release, that's
+> opening the door for potential troubles.
+
+More than any mirror distributing them ?
+( but again, i think we should rename them on import, that's cheap
+enough to be a good idea ).
+
+> > Hearst lawyers didn't asked to remove the name from svn/cvs afaik.
+> > Neither did mozilla asked Debian to do so for the mozilla/iceweasel
+> > case. 
+> 
+> Doesn't mean it won't happen for us :)
+
+Can you elaborate why would they be entitled to ask ?
+Trademark is what would be protected, and again, that mean the trademark
+is used as such.  
+
+
+> > /usr/lib/perl5/vendor_perl/5.10.0/urpm/mirrors.pm
+> >
+> > -> a procedure called    _mandriva_mirrorlist. Not a trademark
+> > violation, as this is never displayed. It should be indeed changed to be
+> > cleaner.
+> > And some urls used by the procedure.
+> 
+> I would feel safer if all these get burried and don't appear on our
+> public website (viewvc).
+
+Well, why ?
+
+> > Now, if we decide that we also need to clean svn, we can use git and
+> > tailor to do some trick to clean the source code ( ie, in the case of
+> > urpmi, remove the name mandriva from the pod documentation ).
+> 
+> We can start working in a private svn to clean the Mandriva references,
+> and only publish the last revision, containing a completely clean repo
+
+So you just volunteered to do the job. Thanks a lot ( yes, it was a
+trap ).
+
+In fact, it depend on what you call "private svn" exactly. Who will have
+access, who decide, etc.
+ ( and private is maybe not really open enough )
+
+-- 
+Michael Scherer
+
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000618.html b/zarb-ml/mageia-sysadm/2010-November/000618.html new file mode 100644 index 000000000..985937564 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000618.html @@ -0,0 +1,101 @@ + + + + [Mageia-sysadm] [285] - add a common ancestor to smtp server + + + + + + + + + +

[Mageia-sysadm] [285] - add a common ancestor to smtp server

+ root at mageia.org + root at mageia.org +
+ Thu Nov 18 19:07:50 CET 2010 +

+
+ +
Revision: 285
+Author:   misc
+Date:     2010-11-18 19:07:50 +0100 (Thu, 18 Nov 2010)
+Log Message:
+-----------
+- add a common ancestor to smtp server
+
+Modified Paths:
+--------------
+    puppet/modules/postfix/manifests/init.pp
+
+Modified: puppet/modules/postfix/manifests/init.pp
+===================================================================
+--- puppet/modules/postfix/manifests/init.pp	2010-11-18 17:42:50 UTC (rev 284)
++++ puppet/modules/postfix/manifests/init.pp	2010-11-18 18:07:50 UTC (rev 285)
+@@ -31,7 +31,11 @@
+         }
+     }
+ 
+-    class primary_smtp inherits base {
++    class smtp_server inherits base {
++        include postgrey
++    }
++
++    class primary_smtp inherits smtp_server {
+         file { '/etc/postfix/main.cf':
+             content => template("postfix/primary_main.cf"),
+         }
+@@ -45,7 +49,7 @@
+         }
+     }
+ 
+-    class secondary_smtp inherits base {
++    class secondary_smtp inherits smtp_server {
+         file { '/etc/postfix/main.cf':
+             content => template("postfix/secondary_main.cf"),
+         }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101118/d61e0d6d/attachment-0001.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000619.html b/zarb-ml/mageia-sysadm/2010-November/000619.html new file mode 100644 index 000000000..3ea967453 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000619.html @@ -0,0 +1,93 @@ + + + + [Mageia-sysadm] [286] - do include sympa process only if sympa class is used + + + + + + + + + +

[Mageia-sysadm] [286] - do include sympa process only if sympa class is used

+ root at mageia.org + root at mageia.org +
+ Thu Nov 18 19:10:02 CET 2010 +

+
+ +
Revision: 286
+Author:   misc
+Date:     2010-11-18 19:10:02 +0100 (Thu, 18 Nov 2010)
+Log Message:
+-----------
+- do include sympa process only if sympa class is used
+
+Modified Paths:
+--------------
+    puppet/modules/postfix/templates/primary_master.cf
+
+Modified: puppet/modules/postfix/templates/primary_master.cf
+===================================================================
+--- puppet/modules/postfix/templates/primary_master.cf	2010-11-18 18:07:50 UTC (rev 285)
++++ puppet/modules/postfix/templates/primary_master.cf	2010-11-18 18:10:02 UTC (rev 286)
+@@ -116,11 +116,12 @@
+ #mailman   unix  -       n       n       -       -       pipe
+ #  flags=FR user=list argv=/usr/lib/mailman/bin/postfix-to-mailman.py
+ #  ${nexthop} ${user}
+-
++<% if classes.include?('sympa') %>
+ sympa        unix  -       n       n       -       -       pipe
+   flags=R user=sympa argv=/usr/sbin/queue ${recipient}
+ sympabounce  unix  -       n       n       -       -       pipe
+   flags=R user=sympa argv=/usr/sbin/bouncequeue ${user}
++<% end %>
+ 
+ #
+ ##### START OF CONTENT FILTER CUSTOMIZATIONS #####
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101118/abd8e707/attachment.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000620.html b/zarb-ml/mageia-sysadm/2010-November/000620.html new file mode 100644 index 000000000..57f459812 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000620.html @@ -0,0 +1,113 @@ + + + + [Mageia-sysadm] [287] - merge primary config file to the secondary one + + + + + + + + + +

[Mageia-sysadm] [287] - merge primary config file to the secondary one

+ root at mageia.org + root at mageia.org +
+ Thu Nov 18 19:15:00 CET 2010 +

+
+ +
Revision: 287
+Author:   misc
+Date:     2010-11-18 19:15:00 +0100 (Thu, 18 Nov 2010)
+Log Message:
+-----------
+- merge primary config file to the secondary one
+- add some check in transport regexp
+
+Modified Paths:
+--------------
+    puppet/modules/postfix/templates/primary_transport_regexp
+    puppet/modules/postfix/templates/secondary_main.cf
+
+Modified: puppet/modules/postfix/templates/primary_transport_regexp
+===================================================================
+--- puppet/modules/postfix/templates/primary_transport_regexp	2010-11-18 18:10:02 UTC (rev 286)
++++ puppet/modules/postfix/templates/primary_transport_regexp	2010-11-18 18:15:00 UTC (rev 287)
+@@ -1,5 +1,8 @@
+ <%
+ ml_domain = 'ml\.' + domain.gsub('.','\.')
+ %>
++<%- if classes.include?('sympa') -%>
+ /^.*+owner\@<%= ml_domain %>$/ sympabounce:
+ /^.*\@<%= ml_domain %>$/       sympa:
++<%- end -%>
++
+
+Modified: puppet/modules/postfix/templates/secondary_main.cf
+===================================================================
+--- puppet/modules/postfix/templates/secondary_main.cf	2010-11-18 18:10:02 UTC (rev 286)
++++ puppet/modules/postfix/templates/secondary_main.cf	2010-11-18 18:15:00 UTC (rev 287)
+@@ -30,7 +30,16 @@
+ mydomain = <%= domain %>
+ mydestination = <%= fqdn %>
+ myorigin = $mydomain
+-relay_domains = $mydestination, ml.<%= domain %>, <%= domain %>
++relay_domains = $mydestination, 
++                ml.<%= domain %>, 
++<%- if classes.include?('primary_smtp') -%> 
++                <%= domain %>
++<%- end -%>
++transport_maps = regexp:/etc/postfix/transport_regexp
++<% if classes.include?('sympa') %>
++sympa_destination_recipient_limit = 1
++sympabounce_destination_recipient_limit = 1
++<% end %>
+ #delay_warning_time = 4h
+ smtpd_banner = $myhostname ESMTP $mail_name ($mail_version) (Mandriva Linux)
+ unknown_local_recipient_reject_code = 450
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101118/34aaedde/attachment.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000621.html b/zarb-ml/mageia-sysadm/2010-November/000621.html new file mode 100644 index 000000000..4d234cea6 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000621.html @@ -0,0 +1,322 @@ + + + + [Mageia-sysadm] [288] - finish the merge of the 2 config file + + + + + + + + + +

[Mageia-sysadm] [288] - finish the merge of the 2 config file

+ root at mageia.org + root at mageia.org +
+ Thu Nov 18 19:19:21 CET 2010 +

+
+ +
Revision: 288
+Author:   misc
+Date:     2010-11-18 19:19:21 +0100 (Thu, 18 Nov 2010)
+Log Message:
+-----------
+- finish the merge of the 2 config file
+
+Modified Paths:
+--------------
+    puppet/modules/postfix/manifests/init.pp
+
+Added Paths:
+-----------
+    puppet/modules/postfix/templates/main.cf
+    puppet/modules/postfix/templates/transport_regexp
+
+Removed Paths:
+-------------
+    puppet/modules/postfix/templates/primary_main.cf
+    puppet/modules/postfix/templates/primary_transport_regexp
+    puppet/modules/postfix/templates/secondary_main.cf
+
+Modified: puppet/modules/postfix/manifests/init.pp
+===================================================================
+--- puppet/modules/postfix/manifests/init.pp	2010-11-18 18:15:00 UTC (rev 287)
++++ puppet/modules/postfix/manifests/init.pp	2010-11-18 18:19:21 UTC (rev 288)
+@@ -33,26 +33,27 @@
+ 
+     class smtp_server inherits base {
+         include postgrey
++        file { '/etc/postfix/main.cf':
++            content => template("postfix/main.cf"),
++        }
++
++        file { '/etc/postfix/transport_regexp':
++            ensure => present,
++            owner => root, 
++            group => root, 
++            mode => 644, 
++            content => template("postfix/transport_regexp"),
++        }
++
+     }
+ 
+     class primary_smtp inherits smtp_server {
+-        file { '/etc/postfix/main.cf':
+-            content => template("postfix/primary_main.cf"),
+-        }
+-
+         file { '/etc/postfix/master.cf':
+             content => template("postfix/primary_master.cf"),
+         }
+-
+-        file { '/etc/postfix/transport_regexp':
+-            content => template("postfix/primary_transport_regexp"),
+-        }
+     }
+ 
+     class secondary_smtp inherits smtp_server {
+-        file { '/etc/postfix/main.cf':
+-            content => template("postfix/secondary_main.cf"),
+-        }
+     }
+ 
+ }
+
+Copied: puppet/modules/postfix/templates/main.cf (from rev 287, puppet/modules/postfix/templates/secondary_main.cf)
+===================================================================
+--- puppet/modules/postfix/templates/main.cf	                        (rev 0)
++++ puppet/modules/postfix/templates/main.cf	2010-11-18 18:19:21 UTC (rev 288)
+@@ -0,0 +1,51 @@
++# Please be sure to read the /usr/share/doc/postfix/README.MDK file
++# to learn about differences from stock postfix to Mandriva package.
++# This file contains only the parameters changed from a default install
++# see /etc/postfix/main.cf.dist for a commented, fuller version of this file.
++
++<%
++path_daemon_directory = "/usr/lib" + ( architecture == "x86_64" ? '64' : '') + "/postfix/"
++%>
++
++# These are changed by postfix install script
++readme_directory = /usr/share/doc/postfix/README_FILES
++html_directory = /usr/share/doc/postfix/html
++sendmail_path = /usr/sbin/sendmail.postfix
++setgid_group = postdrop
++command_directory = /usr/sbin
++manpage_directory = /usr/share/man
++daemon_directory = <%= path_daemon_directory %>
++data_directory = /var/lib/postfix
++newaliases_path = /usr/bin/newaliases
++mailq_path = /usr/bin/mailq
++queue_directory = /var/spool/postfix
++mail_owner = postfix
++
++# User configurable parameters
++
++inet_interfaces = localhost
++inet_protocols = all
++mynetworks_style = host
++myhostname = <%= fqdn %>
++mydomain = <%= domain %>
++mydestination = <%= fqdn %>
++myorigin = $mydomain
++relay_domains = $mydestination, 
++                ml.<%= domain %>, 
++<%- if classes.include?('primary_smtp') -%> 
++                <%= domain %>
++<%- end -%>
++transport_maps = regexp:/etc/postfix/transport_regexp
++<% if classes.include?('sympa') %>
++sympa_destination_recipient_limit = 1
++sympabounce_destination_recipient_limit = 1
++<% end %>
++#delay_warning_time = 4h
++smtpd_banner = $myhostname ESMTP $mail_name ($mail_version) (Mandriva Linux)
++unknown_local_recipient_reject_code = 450
++smtp-filter_destination_concurrency_limit = 2
++lmtp-filter_destination_concurrency_limit = 2
++smtpd_use_tls = yes
++smtpd_tls_cert_file = /etc/pki/tls/certs/postfix.pem
++smtpd_tls_key_file = /etc/pki/tls/private/postfix.pem
++smtpd_tls_CAfile = /etc/pki/tls/certs/ca-bundle.crt
+
+Deleted: puppet/modules/postfix/templates/primary_main.cf
+===================================================================
+--- puppet/modules/postfix/templates/primary_main.cf	2010-11-18 18:15:00 UTC (rev 287)
++++ puppet/modules/postfix/templates/primary_main.cf	2010-11-18 18:19:21 UTC (rev 288)
+@@ -1,45 +0,0 @@
+-# Please be sure to read the /usr/share/doc/postfix/README.MDK file
+-# to learn about differences from stock postfix to Mandriva package.
+-# This file contains only the parameters changed from a default install
+-# see /etc/postfix/main.cf.dist for a commented, fuller version of this file.
+-
+-<%
+-path_daemon_directory = "/usr/lib" + ( architecture == "x86_64" ? '64' : '') + "/postfix/"
+-%>
+-
+-# These are changed by postfix install script
+-readme_directory = /usr/share/doc/postfix/README_FILES
+-html_directory = /usr/share/doc/postfix/html
+-sendmail_path = /usr/sbin/sendmail.postfix
+-setgid_group = postdrop
+-command_directory = /usr/sbin
+-manpage_directory = /usr/share/man
+-daemon_directory = <%= path_daemon_directory %>
+-data_directory = /var/lib/postfix
+-newaliases_path = /usr/bin/newaliases
+-mailq_path = /usr/bin/mailq
+-queue_directory = /var/spool/postfix
+-mail_owner = postfix
+-
+-# User configurable parameters
+-
+-inet_interfaces = localhost
+-inet_protocols = all
+-mynetworks_style = host
+-myhostname = <%= fqdn %>
+-mydomain = <%= domain %>
+-mydestination = <%= fqdn %>
+-myorigin = $mydomain
+-relay_domains = $mydestination, ml.<%= domain %>
+-transport_maps = regexp:/etc/postfix/transport_regexp
+-sympa_destination_recipient_limit = 1
+-sympabounce_destination_recipient_limit = 1
+-#delay_warning_time = 4h
+-smtpd_banner = $myhostname ESMTP $mail_name ($mail_version) (Mandriva Linux)
+-unknown_local_recipient_reject_code = 450
+-smtp-filter_destination_concurrency_limit = 2
+-lmtp-filter_destination_concurrency_limit = 2
+-smtpd_use_tls = yes
+-smtpd_tls_cert_file = /etc/pki/tls/certs/postfix.pem
+-smtpd_tls_key_file = /etc/pki/tls/private/postfix.pem
+-smtpd_tls_CAfile = /etc/pki/tls/certs/ca-bundle.crt
+
+Deleted: puppet/modules/postfix/templates/primary_transport_regexp
+===================================================================
+--- puppet/modules/postfix/templates/primary_transport_regexp	2010-11-18 18:15:00 UTC (rev 287)
++++ puppet/modules/postfix/templates/primary_transport_regexp	2010-11-18 18:19:21 UTC (rev 288)
+@@ -1,8 +0,0 @@
+-<%
+-ml_domain = 'ml\.' + domain.gsub('.','\.')
+-%>
+-<%- if classes.include?('sympa') -%>
+-/^.*+owner\@<%= ml_domain %>$/ sympabounce:
+-/^.*\@<%= ml_domain %>$/       sympa:
+-<%- end -%>
+-
+
+Deleted: puppet/modules/postfix/templates/secondary_main.cf
+===================================================================
+--- puppet/modules/postfix/templates/secondary_main.cf	2010-11-18 18:15:00 UTC (rev 287)
++++ puppet/modules/postfix/templates/secondary_main.cf	2010-11-18 18:19:21 UTC (rev 288)
+@@ -1,51 +0,0 @@
+-# Please be sure to read the /usr/share/doc/postfix/README.MDK file
+-# to learn about differences from stock postfix to Mandriva package.
+-# This file contains only the parameters changed from a default install
+-# see /etc/postfix/main.cf.dist for a commented, fuller version of this file.
+-
+-<%
+-path_daemon_directory = "/usr/lib" + ( architecture == "x86_64" ? '64' : '') + "/postfix/"
+-%>
+-
+-# These are changed by postfix install script
+-readme_directory = /usr/share/doc/postfix/README_FILES
+-html_directory = /usr/share/doc/postfix/html
+-sendmail_path = /usr/sbin/sendmail.postfix
+-setgid_group = postdrop
+-command_directory = /usr/sbin
+-manpage_directory = /usr/share/man
+-daemon_directory = <%= path_daemon_directory %>
+-data_directory = /var/lib/postfix
+-newaliases_path = /usr/bin/newaliases
+-mailq_path = /usr/bin/mailq
+-queue_directory = /var/spool/postfix
+-mail_owner = postfix
+-
+-# User configurable parameters
+-
+-inet_interfaces = localhost
+-inet_protocols = all
+-mynetworks_style = host
+-myhostname = <%= fqdn %>
+-mydomain = <%= domain %>
+-mydestination = <%= fqdn %>
+-myorigin = $mydomain
+-relay_domains = $mydestination, 
+-                ml.<%= domain %>, 
+-<%- if classes.include?('primary_smtp') -%> 
+-                <%= domain %>
+-<%- end -%>
+-transport_maps = regexp:/etc/postfix/transport_regexp
+-<% if classes.include?('sympa') %>
+-sympa_destination_recipient_limit = 1
+-sympabounce_destination_recipient_limit = 1
+-<% end %>
+-#delay_warning_time = 4h
+-smtpd_banner = $myhostname ESMTP $mail_name ($mail_version) (Mandriva Linux)
+-unknown_local_recipient_reject_code = 450
+-smtp-filter_destination_concurrency_limit = 2
+-lmtp-filter_destination_concurrency_limit = 2
+-smtpd_use_tls = yes
+-smtpd_tls_cert_file = /etc/pki/tls/certs/postfix.pem
+-smtpd_tls_key_file = /etc/pki/tls/private/postfix.pem
+-smtpd_tls_CAfile = /etc/pki/tls/certs/ca-bundle.crt
+
+Copied: puppet/modules/postfix/templates/transport_regexp (from rev 287, puppet/modules/postfix/templates/primary_transport_regexp)
+===================================================================
+--- puppet/modules/postfix/templates/transport_regexp	                        (rev 0)
++++ puppet/modules/postfix/templates/transport_regexp	2010-11-18 18:19:21 UTC (rev 288)
+@@ -0,0 +1,8 @@
++<%
++ml_domain = 'ml\.' + domain.gsub('.','\.')
++%>
++<%- if classes.include?('sympa') -%>
++/^.*+owner\@<%= ml_domain %>$/ sympabounce:
++/^.*\@<%= ml_domain %>$/       sympa:
++<%- end -%>
++
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101118/848b6bcb/attachment-0001.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000622.html b/zarb-ml/mageia-sysadm/2010-November/000622.html new file mode 100644 index 000000000..3540667d4 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000622.html @@ -0,0 +1,84 @@ + + + + [Mageia-sysadm] [268] - add a postgrey module + + + + + + + + + +

[Mageia-sysadm] [268] - add a postgrey module

+ Michael Scherer + misc at zarb.org +
+ Thu Nov 18 20:09:54 CET 2010 +

+
+ +
Le jeudi 18 novembre 2010 à 08:02 +0100, Luca Berra a écrit :
+> On Wed, Nov 17, 2010 at 04:58:10PM +0100, root at mageia.org wrote:
+> >Revision: 268
+> >Author:   misc
+> >Date:     2010-11-17 16:58:10 +0100 (Wed, 17 Nov 2010)
+> >Log Message:
+> >-----------
+> >- add a postgrey module 
+> 
+> be sure to put the critter behind something like:
+> http://www.arschkrebs.de/postfix/postfix_greylisting.shtml
+> it tends to be annoying otherwise
+
+I was thinking on using http://www.pfixtools.org/trac/ later. 
+
+Except that I always forget to deploy it, or the name of the rpm.
+
+So for now, postgrey, as it is simple, used on zarb without much trouble
+and complain.
+
+
+
+-- 
+Michael Scherer
+
+
+ + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000623.html b/zarb-ml/mageia-sysadm/2010-November/000623.html new file mode 100644 index 000000000..f0c5a3eb1 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000623.html @@ -0,0 +1,172 @@ + + + + [Mageia-sysadm] [289] Add vhost and webapps.d files for bugzilla + + + + + + + + + +

[Mageia-sysadm] [289] Add vhost and webapps.d files for bugzilla

+ root at mageia.org + root at mageia.org +
+ Thu Nov 18 20:59:40 CET 2010 +

+
+ +
Revision: 289
+Author:   dmorgan
+Date:     2010-11-18 20:59:40 +0100 (Thu, 18 Nov 2010)
+Log Message:
+-----------
+Add vhost and webapps.d files for bugzilla
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+    puppet/modules/bugzilla/manifests/init.pp
+
+Added Paths:
+-----------
+    puppet/modules/bugzilla/templates/vhost_mageia.org.conf
+    puppet/modules/bugzilla/templates/webapp_bugzilla.conf
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-18 18:19:21 UTC (rev 288)
++++ puppet/manifests/nodes.pp	2010-11-18 19:59:40 UTC (rev 289)
+@@ -53,6 +53,7 @@
+     include mga-mirrors
+     include epoll
+     include transifex
++    include bugzilla
+ }
+ 
+ # buildnode
+
+Modified: puppet/modules/bugzilla/manifests/init.pp
+===================================================================
+--- puppet/modules/bugzilla/manifests/init.pp	2010-11-18 18:19:21 UTC (rev 288)
++++ puppet/modules/bugzilla/manifests/init.pp	2010-11-18 19:59:40 UTC (rev 289)
+@@ -23,5 +23,14 @@
+       mode => 644,
+       content => template("bugzilla/params")
+     }
++
++    include apache::mod_fcgid
++    apache::webapp_other{"bugzilla":
++        webapp_file => "bugzilla/webapp_bugzilla.conf",
++      }
++
++    apache::vhost_other_app { "bugs.$domain":
++      vhost_file => "bugzilla/vhost_bugs.mageia.org.conf",
++    }
+ }
+ 
+
+Added: puppet/modules/bugzilla/templates/vhost_mageia.org.conf
+===================================================================
+--- puppet/modules/bugzilla/templates/vhost_mageia.org.conf	                        (rev 0)
++++ puppet/modules/bugzilla/templates/vhost_mageia.org.conf	2010-11-18 19:59:40 UTC (rev 289)
+@@ -0,0 +1,13 @@
++<%
++path_data_directory = "/usr/lib" + ( architecture == "x86_64" ? '64' : '') + "/bugzilla"
++%>
++
++<VirtualHost *:80>
++        ServerName bugs.mageia.org
++        DocumentRoot /usr/share/bugzilla/www
++        Alias /bugzilla/data <%= path_data_directory %>
++        Alias /bugzilla /usr/share/bugzilla/www
++        <Location />
++                Allow from all
++        </Location>
++</VirtualHost>
+
+Added: puppet/modules/bugzilla/templates/webapp_bugzilla.conf
+===================================================================
+--- puppet/modules/bugzilla/templates/webapp_bugzilla.conf	                        (rev 0)
++++ puppet/modules/bugzilla/templates/webapp_bugzilla.conf	2010-11-18 19:59:40 UTC (rev 289)
+@@ -0,0 +1,35 @@
++<%
++path_data_directory = "/usr/lib" + ( architecture == "x86_64" ? '64' : '') + "/bugzilla"
++%>
++
++<Directory /usr/share/bugzilla/www>
++    Order allow,deny
++    Allow from all
++
++    Options ExecCGI
++    DirectoryIndex index.cgi
++</Directory>
++
++# The duplicates.rdf must be accessible, as it is used by
++# duplicates.xul
++<Directory <%= path_data_directory %>>
++    <Files duplicates.rdf>
++        Order allow,deny
++        Allow from all
++    </Files>
++</Directory>
++
++# The dot files must be accessible to the public webdot server
++# The png files locally created locally must be accessible
++<Directory <%= path_data_directory %>/webdot>
++    <FilesMatch \.dot$>
++        Order deny,allow
++        Deny from all
++        Allow from research.att.com
++    </FilesMatch>
++
++    <FilesMatch \.png$>
++        Order allow,deny
++        Allow from all
++    </FilesMatch>
++</Directory>
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101118/e35be4af/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000624.html b/zarb-ml/mageia-sysadm/2010-November/000624.html new file mode 100644 index 000000000..2b318dd98 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000624.html @@ -0,0 +1,87 @@ + + + + [Mageia-sysadm] [290] Do not hardcode the domain name + + + + + + + + + +

[Mageia-sysadm] [290] Do not hardcode the domain name

+ root at mageia.org + root at mageia.org +
+ Thu Nov 18 21:01:08 CET 2010 +

+
+ +
Revision: 290
+Author:   dmorgan
+Date:     2010-11-18 21:01:07 +0100 (Thu, 18 Nov 2010)
+Log Message:
+-----------
+Do not hardcode the domain name
+
+Modified Paths:
+--------------
+    puppet/modules/bugzilla/templates/vhost_mageia.org.conf
+
+Modified: puppet/modules/bugzilla/templates/vhost_mageia.org.conf
+===================================================================
+--- puppet/modules/bugzilla/templates/vhost_mageia.org.conf	2010-11-18 19:59:40 UTC (rev 289)
++++ puppet/modules/bugzilla/templates/vhost_mageia.org.conf	2010-11-18 20:01:07 UTC (rev 290)
+@@ -3,7 +3,7 @@
+ %>
+ 
+ <VirtualHost *:80>
+-        ServerName bugs.mageia.org
++        ServerName bugs.<%= domain %>
+         DocumentRoot /usr/share/bugzilla/www
+         Alias /bugzilla/data <%= path_data_directory %>
+         Alias /bugzilla /usr/share/bugzilla/www
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101118/aa415336/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000625.html b/zarb-ml/mageia-sysadm/2010-November/000625.html new file mode 100644 index 000000000..d43cf4f18 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000625.html @@ -0,0 +1,62 @@ + + + + [Mageia-sysadm] Puppet Report for alamut.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for alamut.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Thu Nov 18 21:02:56 CET 2010 +

+
+ +
Thu Nov 18 21:02:56 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Syntax error at 'ensure'; expected '}' at /etc/puppet/modules/bugzilla/manifests/init.pp:4 on node alamut.mageia.org
+Thu Nov 18 21:02:56 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000626.html b/zarb-ml/mageia-sysadm/2010-November/000626.html new file mode 100644 index 000000000..ff10b092d --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000626.html @@ -0,0 +1,62 @@ + + + + [Mageia-sysadm] Puppet Report for alamut.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for alamut.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Thu Nov 18 21:19:00 CET 2010 +

+
+ +
Thu Nov 18 21:19:00 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Could not find class bugzilla at /etc/puppet/manifests/nodes.pp:56 on node alamut.mageia.org
+Thu Nov 18 21:19:00 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000627.html b/zarb-ml/mageia-sysadm/2010-November/000627.html new file mode 100644 index 000000000..567cfef56 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000627.html @@ -0,0 +1,62 @@ + + + + [Mageia-sysadm] Puppet Report for alamut.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for alamut.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Thu Nov 18 21:22:46 CET 2010 +

+
+ +
Thu Nov 18 21:22:46 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Could not find template 'bugzilla/vhost_bugs.mageia.org.conf' at /etc/puppet/modules/apache/manifests/init.pp:140 on node alamut.mageia.org
+Thu Nov 18 21:22:46 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000628.html b/zarb-ml/mageia-sysadm/2010-November/000628.html new file mode 100644 index 000000000..d3c95f757 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000628.html @@ -0,0 +1,86 @@ + + + + [Mageia-sysadm] [291] Fix bugzilla init.pp + + + + + + + + + +

[Mageia-sysadm] [291] Fix bugzilla init.pp

+ root at mageia.org + root at mageia.org +
+ Thu Nov 18 21:23:56 CET 2010 +

+
+ +
Revision: 291
+Author:   dmorgan
+Date:     2010-11-18 21:23:56 +0100 (Thu, 18 Nov 2010)
+Log Message:
+-----------
+Fix bugzilla init.pp
+
+Modified Paths:
+--------------
+    puppet/modules/bugzilla/manifests/init.pp
+
+Modified: puppet/modules/bugzilla/manifests/init.pp
+===================================================================
+--- puppet/modules/bugzilla/manifests/init.pp	2010-11-18 20:01:07 UTC (rev 290)
++++ puppet/modules/bugzilla/manifests/init.pp	2010-11-18 20:23:56 UTC (rev 291)
+@@ -1,6 +1,6 @@
+ class bugzilla {
+ 
+-    package { bugzilla
++    package { 'bugzilla':
+         ensure => installed;
+     }
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101118/6325fee4/attachment-0001.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000629.html b/zarb-ml/mageia-sysadm/2010-November/000629.html new file mode 100644 index 000000000..a29a7dfa6 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000629.html @@ -0,0 +1,62 @@ + + + + [Mageia-sysadm] Puppet Report for alamut.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for alamut.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Thu Nov 18 21:25:20 CET 2010 +

+
+ +
Thu Nov 18 21:25:20 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Could not find template 'bugzilla/vhost_bugs.mageia.org.conf' at /etc/puppet/modules/apache/manifests/init.pp:140 on node alamut.mageia.org
+Thu Nov 18 21:25:20 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000630.html b/zarb-ml/mageia-sysadm/2010-November/000630.html new file mode 100644 index 000000000..ccfdb2367 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000630.html @@ -0,0 +1,115 @@ + + + + [Mageia-sysadm] [292] Fix vhost_bugs.mageia.org.conf filename + + + + + + + + + +

[Mageia-sysadm] [292] Fix vhost_bugs.mageia.org.conf filename

+ root at mageia.org + root at mageia.org +
+ Thu Nov 18 21:26:30 CET 2010 +

+
+ +
Revision: 292
+Author:   dmorgan
+Date:     2010-11-18 21:26:30 +0100 (Thu, 18 Nov 2010)
+Log Message:
+-----------
+Fix vhost_bugs.mageia.org.conf filename
+
+Added Paths:
+-----------
+    puppet/modules/bugzilla/templates/vhost_bugs.mageia.org.conf
+
+Removed Paths:
+-------------
+    puppet/modules/bugzilla/templates/vhost_mageia.org.conf
+
+Copied: puppet/modules/bugzilla/templates/vhost_bugs.mageia.org.conf (from rev 290, puppet/modules/bugzilla/templates/vhost_mageia.org.conf)
+===================================================================
+--- puppet/modules/bugzilla/templates/vhost_bugs.mageia.org.conf	                        (rev 0)
++++ puppet/modules/bugzilla/templates/vhost_bugs.mageia.org.conf	2010-11-18 20:26:30 UTC (rev 292)
+@@ -0,0 +1,13 @@
++<%
++path_data_directory = "/usr/lib" + ( architecture == "x86_64" ? '64' : '') + "/bugzilla"
++%>
++
++<VirtualHost *:80>
++        ServerName bugs.<%= domain %>
++        DocumentRoot /usr/share/bugzilla/www
++        Alias /bugzilla/data <%= path_data_directory %>
++        Alias /bugzilla /usr/share/bugzilla/www
++        <Location />
++                Allow from all
++        </Location>
++</VirtualHost>
+
+Deleted: puppet/modules/bugzilla/templates/vhost_mageia.org.conf
+===================================================================
+--- puppet/modules/bugzilla/templates/vhost_mageia.org.conf	2010-11-18 20:23:56 UTC (rev 291)
++++ puppet/modules/bugzilla/templates/vhost_mageia.org.conf	2010-11-18 20:26:30 UTC (rev 292)
+@@ -1,13 +0,0 @@
+-<%
+-path_data_directory = "/usr/lib" + ( architecture == "x86_64" ? '64' : '') + "/bugzilla"
+-%>
+-
+-<VirtualHost *:80>
+-        ServerName bugs.<%= domain %>
+-        DocumentRoot /usr/share/bugzilla/www
+-        Alias /bugzilla/data <%= path_data_directory %>
+-        Alias /bugzilla /usr/share/bugzilla/www
+-        <Location />
+-                Allow from all
+-        </Location>
+-</VirtualHost>
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101118/70475792/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000631.html b/zarb-ml/mageia-sysadm/2010-November/000631.html new file mode 100644 index 000000000..e077e42bb --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000631.html @@ -0,0 +1,62 @@ + + + + [Mageia-sysadm] Puppet Report for alamut.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for alamut.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Thu Nov 18 21:26:55 CET 2010 +

+
+ +
Thu Nov 18 21:26:55 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Could not find template 'bugzilla/vhost_bugs.mageia.org.conf' at /etc/puppet/modules/apache/manifests/init.pp:140 on node alamut.mageia.org
+Thu Nov 18 21:26:55 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000632.html b/zarb-ml/mageia-sysadm/2010-November/000632.html new file mode 100644 index 000000000..dc3d2d576 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000632.html @@ -0,0 +1,86 @@ + + + + [Mageia-sysadm] [293] Bugzilla is ready, we need to create the componments now + + + + + + + + + +

[Mageia-sysadm] [293] Bugzilla is ready, we need to create the componments now

+ root at mageia.org + root at mageia.org +
+ Thu Nov 18 22:24:37 CET 2010 +

+
+ +
Revision: 293
+Author:   dmorgan
+Date:     2010-11-18 22:24:36 +0100 (Thu, 18 Nov 2010)
+Log Message:
+-----------
+Bugzilla is ready, we need to create the componments now
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-18 20:26:30 UTC (rev 292)
++++ puppet/manifests/nodes.pp	2010-11-18 21:24:36 UTC (rev 293)
+@@ -32,7 +32,6 @@
+ # Location: IELO datacenter (marseille)
+ #
+ # TODO:
+-# - Bug Tracker
+ # - Review board
+ # - nagios
+ # - api
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101118/4e973995/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000633.html b/zarb-ml/mageia-sysadm/2010-November/000633.html new file mode 100644 index 000000000..9737bf20e --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000633.html @@ -0,0 +1,91 @@ + + + + [Mageia-sysadm] [268] - add a postgrey module + + + + + + + + + +

[Mageia-sysadm] [268] - add a postgrey module

+ Luca Berra + bluca at vodka.it +
+ Thu Nov 18 22:30:21 CET 2010 +

+
+ +
On Thu, Nov 18, 2010 at 08:09:54PM +0100, Michael Scherer wrote:
+>Le jeudi 18 novembre 2010 à 08:02 +0100, Luca Berra a écrit :
+>> On Wed, Nov 17, 2010 at 04:58:10PM +0100, root at mageia.org wrote:
+>> >Revision: 268
+>> >Author:   misc
+>> >Date:     2010-11-17 16:58:10 +0100 (Wed, 17 Nov 2010)
+>> >Log Message:
+>> >-----------
+>> >- add a postgrey module 
+>> 
+>> be sure to put the critter behind something like:
+>> http://www.arschkrebs.de/postfix/postfix_greylisting.shtml
+>> it tends to be annoying otherwise
+>
+>I was thinking on using http://www.pfixtools.org/trac/ later. 
+>
+>Except that I always forget to deploy it, or the name of the rpm.
+>
+>So for now, postgrey, as it is simple, used on zarb without much trouble
+>and complain.
+
+never tried pfixtools, i have some exp with postgrey, sqlgray and
+policyd.
+In any case i am quite happy restricting graylisting to what appear to
+be client ranges (most spammer nowadays use botnets) and avoid risking
+false positives from poor souls trapped behing a bugged mta.
+I am also very happy with dnswl, but it has now become a paid service.
+
+
+L.
+
+-- 
+Luca Berra -- bluca at vodka.it
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000634.html b/zarb-ml/mageia-sysadm/2010-November/000634.html new file mode 100644 index 000000000..fab215fd5 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000634.html @@ -0,0 +1,126 @@ + + + + [Mageia-sysadm] [294] - start to merge simple relay, and add some basic antispam filtering + + + + + + + + + +

[Mageia-sysadm] [294] - start to merge simple relay, and add some basic antispam filtering

+ root at mageia.org + root at mageia.org +
+ Thu Nov 18 23:34:59 CET 2010 +

+
+ +
Revision: 294
+Author:   misc
+Date:     2010-11-18 23:34:59 +0100 (Thu, 18 Nov 2010)
+Log Message:
+-----------
+- start to merge simple relay, and add some basic antispam filtering 
+
+Modified Paths:
+--------------
+    puppet/modules/postfix/templates/main.cf
+
+Modified: puppet/modules/postfix/templates/main.cf
+===================================================================
+--- puppet/modules/postfix/templates/main.cf	2010-11-18 21:24:36 UTC (rev 293)
++++ puppet/modules/postfix/templates/main.cf	2010-11-18 22:34:59 UTC (rev 294)
+@@ -23,16 +23,22 @@
+ 
+ # User configurable parameters
+ 
++<% if classes.include?('postfix::simple_relay') %>
+ inet_interfaces = localhost
++<% else %>
++inet_interfaces = all
++<% end %>
++
+ inet_protocols = all
+ mynetworks_style = host
+ myhostname = <%= fqdn %>
+ mydomain = <%= domain %>
+ mydestination = <%= fqdn %>
+ myorigin = $mydomain
++<%- if classes.include?('postfix::smtp_server') -%> 
+ relay_domains = $mydestination, 
+                 ml.<%= domain %>, 
+-<%- if classes.include?('primary_smtp') -%> 
++<%- if classes.include?('postfix::primary_smtp') -%> 
+                 <%= domain %>
+ <%- end -%>
+ transport_maps = regexp:/etc/postfix/transport_regexp
+@@ -49,3 +55,23 @@
+ smtpd_tls_cert_file = /etc/pki/tls/certs/postfix.pem
+ smtpd_tls_key_file = /etc/pki/tls/private/postfix.pem
+ smtpd_tls_CAfile = /etc/pki/tls/certs/ca-bundle.crt
++
++<% if classes.include?('postfix::smtp_server') %>
++smtpd_recipient_restrictions =
++#    not done yet
++#    permit_sasl_authenticated
++    permit_mynetworks
++    reject_unauth_destination
++    reject_unauth_pipelining
++    reject_non_fqdn_recipient
++    reject_non_fqdn_sender
++    reject_non_fqdn_hostname
++    reject_invalid_hostname
++    reject_unknown_recipient_domain
++    reject_unknown_sender_domain
++    reject_unknown_client
++  <% if classes.include?('postgrey') %>
++    check_policy_service unix:extern/postgrey/socket
++  <% end %>
++<% end %>
++
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101118/088566ce/attachment-0001.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000635.html b/zarb-ml/mageia-sysadm/2010-November/000635.html new file mode 100644 index 000000000..c0bc5293f --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000635.html @@ -0,0 +1,131 @@ + + + + [Mageia-sysadm] [295] Add 30-site.conf ( WIP ) + + + + + + + + + +

[Mageia-sysadm] [295] Add 30-site.conf ( WIP )

+ root at mageia.org + root at mageia.org +
+ Fri Nov 19 00:20:22 CET 2010 +

+
+ +
Revision: 295
+Author:   dmorgan
+Date:     2010-11-19 00:20:22 +0100 (Fri, 19 Nov 2010)
+Log Message:
+-----------
+Add 30-site.conf ( WIP )
+
+Modified Paths:
+--------------
+    puppet/modules/transifex/manifests/init.pp
+
+Added Paths:
+-----------
+    puppet/modules/transifex/templates/30-site.conf
+
+Modified: puppet/modules/transifex/manifests/init.pp
+===================================================================
+--- puppet/modules/transifex/manifests/init.pp	2010-11-18 22:34:59 UTC (rev 294)
++++ puppet/modules/transifex/manifests/init.pp	2010-11-18 23:20:22 UTC (rev 295)
+@@ -13,6 +13,15 @@
+     content => template("transifex/20-engines.conf")
+   }
+ 
++  file { "30-site.conf":
++    path => "/etc/transifex/30-site.conf",
++    ensure => present,
++    owner => root,
++    group => root,
++    mode => 755,
++    content => template("transifex/30-site.conf")
++  }
++
+ #  apache::vhost_django_app { "transifex.$domain":
+ #    module => "transifex" 
+ #  }  
+
+Added: puppet/modules/transifex/templates/30-site.conf
+===================================================================
+--- puppet/modules/transifex/templates/30-site.conf	                        (rev 0)
++++ puppet/modules/transifex/templates/30-site.conf	2010-11-18 23:20:22 UTC (rev 295)
+@@ -0,0 +1,26 @@
++# Sites
++SITE_ID = 1
++# Your site's domain. This is used only in this file.
++SITE_DOMAIN = ''
++
++ADMINS = (
++    # ('Your Name', 'your_email at domain.com'),
++)
++
++MANAGERS = ADMINS
++
++DEBUG = True
++TEMPLATE_DEBUG = DEBUG
++SERVE_MEDIA = DEBUG
++
++# This defines who can see {% if debug %}{% endif %} blocks
++INTERNAL_IPS=('127.0.0.1',)
++
++# Email sending
++EMAIL_HOST = 'localhost'
++EMAIL_HOST_USER = ''
++EMAIL_HOST_PASSWORD = ''
++SITE_DOMAIN = 'mageia.org'
++EMAIL_USE_TLS = True
++EMAIL_PORT = 587
++DEFAULT_FROM_EMAIL = 'noreply@%s' % SITE_DOMAIN
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101119/90fcb09b/attachment.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000636.html b/zarb-ml/mageia-sysadm/2010-November/000636.html new file mode 100644 index 000000000..b11e06064 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000636.html @@ -0,0 +1,97 @@ + + + + [Mageia-sysadm] [296] - move the declaration to the top of the file, less confusing. + + + + + + + + + +

[Mageia-sysadm] [296] - move the declaration to the top of the file, less confusing.

+ root at mageia.org + root at mageia.org +
+ Fri Nov 19 01:03:41 CET 2010 +

+
+ +
Revision: 296
+Author:   misc
+Date:     2010-11-19 01:03:41 +0100 (Fri, 19 Nov 2010)
+Log Message:
+-----------
+- move the declaration to the top of the file, less confusing.
+- do not hardcode domain name 
+
+Modified Paths:
+--------------
+    puppet/modules/transifex/templates/30-site.conf
+
+Modified: puppet/modules/transifex/templates/30-site.conf
+===================================================================
+--- puppet/modules/transifex/templates/30-site.conf	2010-11-18 23:20:22 UTC (rev 295)
++++ puppet/modules/transifex/templates/30-site.conf	2010-11-19 00:03:41 UTC (rev 296)
+@@ -1,7 +1,7 @@
+ # Sites
+ SITE_ID = 1
+ # Your site's domain. This is used only in this file.
+-SITE_DOMAIN = ''
++SITE_DOMAIN = '<%= domain %>'
+ 
+ ADMINS = (
+     # ('Your Name', 'your_email at domain.com'),
+@@ -20,7 +20,6 @@
+ EMAIL_HOST = 'localhost'
+ EMAIL_HOST_USER = ''
+ EMAIL_HOST_PASSWORD = ''
+-SITE_DOMAIN = 'mageia.org'
+ EMAIL_USE_TLS = True
+ EMAIL_PORT = 587
+ DEFAULT_FROM_EMAIL = 'noreply@%s' % SITE_DOMAIN
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101119/5279ec41/attachment.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000637.html b/zarb-ml/mageia-sysadm/2010-November/000637.html new file mode 100644 index 000000000..fc772b818 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000637.html @@ -0,0 +1,87 @@ + + + + [Mageia-sysadm] [297] - do not use TLS, will not work + + + + + + + + + +

[Mageia-sysadm] [297] - do not use TLS, will not work

+ root at mageia.org + root at mageia.org +
+ Fri Nov 19 01:04:05 CET 2010 +

+
+ +
Revision: 297
+Author:   misc
+Date:     2010-11-19 01:04:05 +0100 (Fri, 19 Nov 2010)
+Log Message:
+-----------
+- do not use TLS, will not work
+
+Modified Paths:
+--------------
+    puppet/modules/transifex/templates/30-site.conf
+
+Modified: puppet/modules/transifex/templates/30-site.conf
+===================================================================
+--- puppet/modules/transifex/templates/30-site.conf	2010-11-19 00:03:41 UTC (rev 296)
++++ puppet/modules/transifex/templates/30-site.conf	2010-11-19 00:04:05 UTC (rev 297)
+@@ -20,6 +20,6 @@
+ EMAIL_HOST = 'localhost'
+ EMAIL_HOST_USER = ''
+ EMAIL_HOST_PASSWORD = ''
+-EMAIL_USE_TLS = True
++EMAIL_USE_TLS = False
+ EMAIL_PORT = 587
+ DEFAULT_FROM_EMAIL = 'noreply@%s' % SITE_DOMAIN
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101119/cbb00190/attachment.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000638.html b/zarb-ml/mageia-sysadm/2010-November/000638.html new file mode 100644 index 000000000..a36b87db2 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000638.html @@ -0,0 +1,112 @@ + + + + [Mageia-sysadm] [298] - add some documentation + + + + + + + + + +

[Mageia-sysadm] [298] - add some documentation

+ root at mageia.org + root at mageia.org +
+ Fri Nov 19 01:24:14 CET 2010 +

+
+ +
Revision: 298
+Author:   misc
+Date:     2010-11-19 01:24:14 +0100 (Fri, 19 Nov 2010)
+Log Message:
+-----------
+- add some documentation
+
+Modified Paths:
+--------------
+    puppet/modules/subversion/manifests/init.pp
+
+Modified: puppet/modules/subversion/manifests/init.pp
+===================================================================
+--- puppet/modules/subversion/manifests/init.pp	2010-11-19 00:04:05 UTC (rev 297)
++++ puppet/modules/subversion/manifests/init.pp	2010-11-19 00:24:14 UTC (rev 298)
+@@ -18,8 +18,20 @@
+     # TODO create proper hook directory ( see zarb.org )
+     # create documentation
+     # - group who can commit 
++    # - array for who get mail on what ( hash )
++    # - array of where the directory is updated
+ 
+-#    define repository ($group => "svn") {
++    # later, deploy a backup file ( ie, cron job to do a dump in some directory )
++    # TODO 
++    # what about pre commit ?
++    # - name of a template file ?
++    # - prepare a template for file checking ?
++    #   - openldap
++    #   - named
++    #   - puppet
++    #   - perl/ php syntax
++
++    define repository ($group = "svn" ) {
+ #        # $name ==> lieu du checkout 
+ #        exec { "svnadmin create $name":
+ #            path => "/usr/bin:/usr/sbin:/bin",
+@@ -30,8 +42,8 @@
+ #            mode => 660
+ #            recurse => true
+ #        } 
+-#        # file pour les hooks
+-#    }
++#        un hook par defaut qui fait un for i en pre, un hook par defaut qui fait un post
++    }
+ 
+ 
+     class client {
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101119/81093634/attachment.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000639.html b/zarb-ml/mageia-sysadm/2010-November/000639.html new file mode 100644 index 000000000..9fb30a71b --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000639.html @@ -0,0 +1,93 @@ + + + + [Mageia-sysadm] [299] add directory that will hold the various hooks scripts + + + + + + + + + +

[Mageia-sysadm] [299] add directory that will hold the various hooks scripts

+ root at mageia.org + root at mageia.org +
+ Fri Nov 19 01:24:15 CET 2010 +

+
+ +
Revision: 299
+Author:   misc
+Date:     2010-11-19 01:24:15 +0100 (Fri, 19 Nov 2010)
+Log Message:
+-----------
+add directory that will hold the various hooks scripts
+
+Modified Paths:
+--------------
+    puppet/modules/subversion/manifests/init.pp
+
+Modified: puppet/modules/subversion/manifests/init.pp
+===================================================================
+--- puppet/modules/subversion/manifests/init.pp	2010-11-19 00:24:14 UTC (rev 298)
++++ puppet/modules/subversion/manifests/init.pp	2010-11-19 00:24:15 UTC (rev 299)
+@@ -12,6 +12,13 @@
+         package { "perl-SVN-Notify-Config":
+             ensure => installed,
+         }
++       
++        $local_dir = "/usr/local/share/subversion/"
++        $local_dirs = ["$local_dir/pre-commit.d", "$local_dir/post-commit.d"] 
++        file { $local_dir:
++            ensure => directory,
++        }
++        # mettre tout les scripts dans le repertoire
+ 
+     }
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101119/e421b653/attachment-0001.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000640.html b/zarb-ml/mageia-sysadm/2010-November/000640.html new file mode 100644 index 000000000..cc6e5e951 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000640.html @@ -0,0 +1,95 @@ + + + + [Mageia-sysadm] [300] - add the generic hook + + + + + + + + + +

[Mageia-sysadm] [300] - add the generic hook

+ root at mageia.org + root at mageia.org +
+ Fri Nov 19 01:24:16 CET 2010 +

+
+ +
Revision: 300
+Author:   misc
+Date:     2010-11-19 01:24:16 +0100 (Fri, 19 Nov 2010)
+Log Message:
+-----------
+- add the generic hook
+
+Added Paths:
+-----------
+    puppet/modules/subversion/templates/
+    puppet/modules/subversion/templates/hook_commit.sh
+
+Added: puppet/modules/subversion/templates/hook_commit.sh
+===================================================================
+--- puppet/modules/subversion/templates/hook_commit.sh	                        (rev 0)
++++ puppet/modules/subversion/templates/hook_commit.sh	2010-11-19 00:24:16 UTC (rev 300)
+@@ -0,0 +1,13 @@
++#!/bin/sh
++for script in $0.d/*; do
++    if [ ! -x "$script" ]; then
++        continue
++    fi
++
++    if [[ "$script" == *~ ]]; then
++        continue
++    fi
++
++    $script $@ || exit 1
++done
++
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101119/84c834af/attachment.html>
+
+ + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000641.html b/zarb-ml/mageia-sysadm/2010-November/000641.html new file mode 100644 index 000000000..1d1fcf56d --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000641.html @@ -0,0 +1,92 @@ + + + + [Mageia-sysadm] [302] add the interface for the define + + + + + + + + + +

[Mageia-sysadm] [302] add the interface for the define

+ root at mageia.org + root at mageia.org +
+ Fri Nov 19 01:24:18 CET 2010 +

+
+ +
Revision: 302
+Author:   misc
+Date:     2010-11-19 01:24:18 +0100 (Fri, 19 Nov 2010)
+Log Message:
+-----------
+add the interface for the define
+
+Modified Paths:
+--------------
+    puppet/modules/subversion/manifests/init.pp
+
+Modified: puppet/modules/subversion/manifests/init.pp
+===================================================================
+--- puppet/modules/subversion/manifests/init.pp	2010-11-19 00:24:17 UTC (rev 301)
++++ puppet/modules/subversion/manifests/init.pp	2010-11-19 00:24:18 UTC (rev 302)
+@@ -40,7 +40,10 @@
+ 
+     
+     define repository ($group = "svn",
+-                       $public = true) {
++                       $public = true,
++                       $commit_mail = [],
++                       $syntax_check = [],
++                       $extract_dir = []) {
+         # faire un script qui mets les permissions comme il faut
+         # http://svnbook.red-bean.com/nightly/fr/svn.serverconfig.multimethod.html
+         # $name ==> lieu du checkout
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101119/2d8f18dd/attachment-0001.html>
+
+ + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000642.html b/zarb-ml/mageia-sysadm/2010-November/000642.html new file mode 100644 index 000000000..b0da18db8 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000642.html @@ -0,0 +1,105 @@ + + + + [Mageia-sysadm] [303] add the default commit script and directory + + + + + + + + + +

[Mageia-sysadm] [303] add the default commit script and directory

+ root at mageia.org + root at mageia.org +
+ Fri Nov 19 01:24:20 CET 2010 +

+
+ +
Revision: 303
+Author:   misc
+Date:     2010-11-19 01:24:19 +0100 (Fri, 19 Nov 2010)
+Log Message:
+-----------
+add the default commit script and directory
+
+Modified Paths:
+--------------
+    puppet/modules/subversion/manifests/init.pp
+
+Modified: puppet/modules/subversion/manifests/init.pp
+===================================================================
+--- puppet/modules/subversion/manifests/init.pp	2010-11-19 00:24:18 UTC (rev 302)
++++ puppet/modules/subversion/manifests/init.pp	2010-11-19 00:24:19 UTC (rev 303)
+@@ -66,6 +66,24 @@
+             ensure => directory
+         }
+ 
++        $hooks = ["$name/hooks/pre-commit","$name/hooks/post-commit"]
++        file { "$hooks":
++            ensure => present,
++            owner => root,
++            group => root,
++            mode => 755,
++            content => template("subversion/hook_commit.sh")
++        }
++
++        $hooks_dir = ["$name/hooks/pre-commit.d","$name/hooks/post-commit.d"]
++        file { "$hooks_dir":
++            ensure => directory,
++            owner => root,
++            group => root,
++            mode => 755,
++        }
++
++    
+     }   
+ 
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101119/3f55be7e/attachment-0001.html>
+
+ + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000643.html b/zarb-ml/mageia-sysadm/2010-November/000643.html new file mode 100644 index 000000000..6d7014904 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000643.html @@ -0,0 +1,125 @@ + + + + [Mageia-sysadm] [301] set the server visibility + + + + + + + + + +

[Mageia-sysadm] [301] set the server visibility

+ root at mageia.org + root at mageia.org +
+ Fri Nov 19 01:24:17 CET 2010 +

+
+ +
Revision: 301
+Author:   misc
+Date:     2010-11-19 01:24:17 +0100 (Fri, 19 Nov 2010)
+Log Message:
+-----------
+set the server visibility
+
+Modified Paths:
+--------------
+    puppet/modules/subversion/manifests/init.pp
+
+Modified: puppet/modules/subversion/manifests/init.pp
+===================================================================
+--- puppet/modules/subversion/manifests/init.pp	2010-11-19 00:24:16 UTC (rev 300)
++++ puppet/modules/subversion/manifests/init.pp	2010-11-19 00:24:17 UTC (rev 301)
+@@ -38,21 +38,34 @@
+     #   - puppet
+     #   - perl/ php syntax
+ 
+-    define repository ($group = "svn" ) {
+-#        # $name ==> lieu du checkout 
+-#        exec { "svnadmin create $name":
+-#            path => "/usr/bin:/usr/sbin:/bin",
+-#            creates => $name             
+-#        }
++    
++    define repository ($group = "svn",
++                       $public = true) {
++        # faire un script qui mets les permissions comme il faut
++        # http://svnbook.red-bean.com/nightly/fr/svn.serverconfig.multimethod.html
++        # $name ==> lieu du checkout
++
++        # TODO set umask -> requires puppet 2.7.0
++        exec { "svnadmin create $name":
++            user => root,
++            group => $group,
++            creates => $name
++        }
+ #        # TODO complete documentation
+-#        file { "$name":
+-#            mode => 660
+-#            recurse => true
+-#        } 
+-#        un hook par defaut qui fait un for i en pre, un hook par defaut qui fait un post
+-    }
++#
++        file { "$name":
++            group => $group,
++            user => root,
++            mode => $public ? {
++                        true => 644,
++                        false => 640
++                    },
++            ensure => directory
++        }
+ 
++    }   
+ 
++
+     class client {
+         package { subversion:
+             ensure => installed,
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101119/6b793461/attachment-0001.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000644.html b/zarb-ml/mageia-sysadm/2010-November/000644.html new file mode 100644 index 000000000..f28e2d984 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000644.html @@ -0,0 +1,118 @@ + + + + [Mageia-sysadm] [304] implement the commit mail part + + + + + + + + + +

[Mageia-sysadm] [304] implement the commit mail part

+ root at mageia.org + root at mageia.org +
+ Fri Nov 19 01:24:21 CET 2010 +

+
+ +
Revision: 304
+Author:   misc
+Date:     2010-11-19 01:24:21 +0100 (Fri, 19 Nov 2010)
+Log Message:
+-----------
+implement the commit mail part
+
+Modified Paths:
+--------------
+    puppet/modules/subversion/manifests/init.pp
+
+Added Paths:
+-----------
+    puppet/modules/subversion/templates/hook_sendmail.pl
+
+Modified: puppet/modules/subversion/manifests/init.pp
+===================================================================
+--- puppet/modules/subversion/manifests/init.pp	2010-11-19 00:24:19 UTC (rev 303)
++++ puppet/modules/subversion/manifests/init.pp	2010-11-19 00:24:21 UTC (rev 304)
+@@ -83,6 +83,15 @@
+             mode => 755,
+         }
+ 
++        if $commit_mail {
++            file { "$name/hooks/post-commit.d/send_mail":
++                ensure => present,
++                owner => root,
++                group => root,
++                mode => 755,
++                content => template("subversion/hook_sendmail.pl")
++            }
++        }  
+     
+     }   
+ 
+
+Added: puppet/modules/subversion/templates/hook_sendmail.pl
+===================================================================
+--- puppet/modules/subversion/templates/hook_sendmail.pl	                        (rev 0)
++++ puppet/modules/subversion/templates/hook_sendmail.pl	2010-11-19 00:24:21 UTC (rev 304)
+@@ -0,0 +1,13 @@
++#!/usr/bin/perl -MSVN::Notify::Config=$0
++--- #YAML:1.0
++
++'':
++  PATH: "/usr/bin:/usr/local/bin"
++  handler: Alternative
++  alternative: HTML::ColorDiff
++  with-diff: 1
++  to:
++<% commit_mail.each do |mail|  %>
++    - <%= mail %>
++<% end %>
++  from: root@<%= domain %>
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101119/ec588584/attachment-0001.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000645.html b/zarb-ml/mageia-sysadm/2010-November/000645.html new file mode 100644 index 000000000..3ee0166f8 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000645.html @@ -0,0 +1,119 @@ + + + + [Mageia-sysadm] [305] - add logic to extract directory from svn on commit + + + + + + + + + +

[Mageia-sysadm] [305] - add logic to extract directory from svn on commit

+ root at mageia.org + root at mageia.org +
+ Fri Nov 19 01:24:22 CET 2010 +

+
+ +
Revision: 305
+Author:   misc
+Date:     2010-11-19 01:24:22 +0100 (Fri, 19 Nov 2010)
+Log Message:
+-----------
+- add logic to extract directory from svn on commit
+
+Modified Paths:
+--------------
+    puppet/modules/subversion/manifests/init.pp
+
+Added Paths:
+-----------
+    puppet/modules/subversion/templates/hook_extract.pl
+
+Modified: puppet/modules/subversion/manifests/init.pp
+===================================================================
+--- puppet/modules/subversion/manifests/init.pp	2010-11-19 00:24:21 UTC (rev 304)
++++ puppet/modules/subversion/manifests/init.pp	2010-11-19 00:24:22 UTC (rev 305)
+@@ -91,7 +91,17 @@
+                 mode => 755,
+                 content => template("subversion/hook_sendmail.pl")
+             }
+-        }  
++        }
++
++        if $extract_dir {
++            file { "$name/hooks/post-commit.d/extract_dir":
++                ensure => present,
++                owner => root,
++                group => root,
++                mode => 755,
++                content => template("subversion/hook_extract.pl")
++            }
++        }
+     
+     }   
+ 
+
+Added: puppet/modules/subversion/templates/hook_extract.pl
+===================================================================
+--- puppet/modules/subversion/templates/hook_extract.pl	                        (rev 0)
++++ puppet/modules/subversion/templates/hook_extract.pl	2010-11-19 00:24:22 UTC (rev 305)
+@@ -0,0 +1,10 @@
++#!/usr/bin/perl -MSVN::Notify::Config=$0
++--- #YAML:1.0
++<% extract_dir.each do |src,dest| %>
++
++'<%= src %>':
++  PATH: "/usr/bin:/usr/local/bin"
++  handler: Mirror
++  svn-binary: /usr/bin/svn
++  to: <%= dest %>
++<% end %>
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101119/9f05ca03/attachment.html>
+
+ + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000646.html b/zarb-ml/mageia-sysadm/2010-November/000646.html new file mode 100644 index 000000000..c8a529db5 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000646.html @@ -0,0 +1,144 @@ + + + + [Mageia-sysadm] [307] add check for root and empty commit + + + + + + + + + +

[Mageia-sysadm] [307] add check for root and empty commit

+ root at mageia.org + root at mageia.org +
+ Fri Nov 19 01:46:14 CET 2010 +

+
+ +
Revision: 307
+Author:   misc
+Date:     2010-11-19 01:46:14 +0100 (Fri, 19 Nov 2010)
+Log Message:
+-----------
+add check for root and empty commit
+
+Modified Paths:
+--------------
+    puppet/modules/subversion/manifests/init.pp
+
+Added Paths:
+-----------
+    puppet/modules/subversion/templates/no_empty_message
+    puppet/modules/subversion/templates/no_root_commit
+
+Modified: puppet/modules/subversion/manifests/init.pp
+===================================================================
+--- puppet/modules/subversion/manifests/init.pp	2010-11-19 00:46:13 UTC (rev 306)
++++ puppet/modules/subversion/manifests/init.pp	2010-11-19 00:46:14 UTC (rev 307)
+@@ -30,6 +30,22 @@
+         }
+ 
+         # mettre tout les scripts dans le repertoire
++        file { "$local_dir/pre-commit.d/no_root_commit":
++            ensure => present,
++            owner => root,
++            group => root,
++            mode => 755,
++            content => template('subversion/no_root_commit') 
++        }
++
++        file { "$local_dir/pre-commit.d/no_empty_message":
++            ensure => present,
++            owner => root,
++            group => root,
++            mode => 755,
++            content => template('subversion/no_empty_message') 
++        }
++
+         syntax_check{"check_perl":
+             regexp_ext => ".p[lm]$",
+             check_cmd => "perl -c"
+
+Added: puppet/modules/subversion/templates/no_empty_message
+===================================================================
+--- puppet/modules/subversion/templates/no_empty_message	                        (rev 0)
++++ puppet/modules/subversion/templates/no_empty_message	2010-11-19 00:46:14 UTC (rev 307)
+@@ -0,0 +1,12 @@
++#!/bin/sh
++
++REP="$1"
++TXN="$2"
++
++LOG=$(svnlook log -t "$TXN" "$REP")
++
++if ! echo "$LOG" | grep -qv '^$'; then
++    echo "no empty commit message allowed" >&2
++    exit 1
++fi
++
+
+Added: puppet/modules/subversion/templates/no_root_commit
+===================================================================
+--- puppet/modules/subversion/templates/no_root_commit	                        (rev 0)
++++ puppet/modules/subversion/templates/no_root_commit	2010-11-19 00:46:14 UTC (rev 307)
+@@ -0,0 +1,12 @@
++#!/bin/sh
++
++REP="$1"
++TXN="$2"
++
++author=$(svnlook author -t "$TXN" "$REP")
++
++if [ "$author" == 'root' ]; then
++    echo "no root commit allowed" >&2
++    exit 1
++fi
++
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101119/8377fa9a/attachment.html>
+
+ + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000647.html b/zarb-ml/mageia-sysadm/2010-November/000647.html new file mode 100644 index 000000000..e37035b2c --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000647.html @@ -0,0 +1,141 @@ + + + + [Mageia-sysadm] [306] - add a type to handle syntax check script + + + + + + + + + +

[Mageia-sysadm] [306] - add a type to handle syntax check script

+ root at mageia.org + root at mageia.org +
+ Fri Nov 19 01:46:13 CET 2010 +

+
+ +
Revision: 306
+Author:   misc
+Date:     2010-11-19 01:46:13 +0100 (Fri, 19 Nov 2010)
+Log Message:
+-----------
+- add a type to handle syntax check script
+
+Modified Paths:
+--------------
+    puppet/modules/subversion/manifests/init.pp
+
+Added Paths:
+-----------
+    puppet/modules/subversion/templates/syntax_check.sh
+
+Modified: puppet/modules/subversion/manifests/init.pp
+===================================================================
+--- puppet/modules/subversion/manifests/init.pp	2010-11-19 00:24:22 UTC (rev 305)
++++ puppet/modules/subversion/manifests/init.pp	2010-11-19 00:46:13 UTC (rev 306)
+@@ -18,16 +18,24 @@
+         file { $local_dir:
+             ensure => directory,
+         }
++
++        define syntax_check($regexp_ext,$check_cmd) {
++            file { "$local_dir/pre-commit.d/$name":
++                ensure => present,
++                owner => root,
++                group => root,
++                mode => 755,
++                content => template('subversion/syntax_check.sh') 
++            }
++        }
++
+         # mettre tout les scripts dans le repertoire
+-
++        syntax_check{"check_perl":
++            regexp_ext => ".p[lm]$",
++            check_cmd => "perl -c"
++        }
+     }
+ 
+-    # TODO create proper hook directory ( see zarb.org )
+-    # create documentation
+-    # - group who can commit 
+-    # - array for who get mail on what ( hash )
+-    # - array of where the directory is updated
+-
+     # later, deploy a backup file ( ie, cron job to do a dump in some directory )
+     # TODO 
+     # what about pre commit ?
+
+Added: puppet/modules/subversion/templates/syntax_check.sh
+===================================================================
+--- puppet/modules/subversion/templates/syntax_check.sh	                        (rev 0)
++++ puppet/modules/subversion/templates/syntax_check.sh	2010-11-19 00:46:13 UTC (rev 306)
+@@ -0,0 +1,21 @@
++#!/bin/sh
++
++REPOS="$1"
++TXN="$2"
++
++changed=`svnlook changed -t "$TXN" "$REPOS"`
++files=`echo $changed | awk '{print $2}'`
++if echo $files | grep <%= regexp_ext %>
++then
++   svnlook cat -t "$TXN" "$REPOS" "$files" | <%= check_cmd %>
++   if [ $? -ne 0 ]
++       then
++       echo "Syntax error in $files." 1>&2
++       echo "Check it with <%= check_cmd %>" 
++       exit 1
++   fi
++fi
++
++# All checks passed, so allow the commit.
++exit 0
++
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101119/9963eec9/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000648.html b/zarb-ml/mageia-sysadm/2010-November/000648.html new file mode 100644 index 000000000..d5ff0c2e0 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000648.html @@ -0,0 +1,102 @@ + + + + [Mageia-sysadm] [308] add support for syntax check in the repository define + + + + + + + + + +

[Mageia-sysadm] [308] add support for syntax check in the repository define

+ root at mageia.org + root at mageia.org +
+ Fri Nov 19 01:53:05 CET 2010 +

+
+ +
Revision: 308
+Author:   misc
+Date:     2010-11-19 01:53:05 +0100 (Fri, 19 Nov 2010)
+Log Message:
+-----------
+add support for syntax check in the repository define
+
+Modified Paths:
+--------------
+    puppet/modules/subversion/manifests/init.pp
+
+Modified: puppet/modules/subversion/manifests/init.pp
+===================================================================
+--- puppet/modules/subversion/manifests/init.pp	2010-11-19 00:46:14 UTC (rev 307)
++++ puppet/modules/subversion/manifests/init.pp	2010-11-19 00:53:05 UTC (rev 308)
+@@ -126,10 +126,20 @@
+                 content => template("subversion/hook_extract.pl")
+             }
+         }
+-    
+-    }   
+ 
++        $pre_commit_check = ['no_commit_log','no_root']
++        $pre_commit_check += $syntax_check
+ 
++        file { "$name/hooks/pre-commit.d/$pre_commit_check":
++            ensure => "/usr/local/share/subversion/pre-commit.d/$pre_commit_check",
++            owner => root,
++            group => root,
++            mode => 755
++        }
++
++    }
++
++
+     class client {
+         package { subversion:
+             ensure => installed,
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101119/add05e45/attachment-0001.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000649.html b/zarb-ml/mageia-sysadm/2010-November/000649.html new file mode 100644 index 000000000..de67b4b5d --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000649.html @@ -0,0 +1,132 @@ + + + + [Mageia-sysadm] [309] fix comments + + + + + + + + + +

[Mageia-sysadm] [309] fix comments

+ root at mageia.org + root at mageia.org +
+ Fri Nov 19 01:53:07 CET 2010 +

+
+ +
Revision: 309
+Author:   misc
+Date:     2010-11-19 01:53:06 +0100 (Fri, 19 Nov 2010)
+Log Message:
+-----------
+fix comments
+
+Modified Paths:
+--------------
+    puppet/modules/subversion/manifests/init.pp
+
+Modified: puppet/modules/subversion/manifests/init.pp
+===================================================================
+--- puppet/modules/subversion/manifests/init.pp	2010-11-19 00:53:05 UTC (rev 308)
++++ puppet/modules/subversion/manifests/init.pp	2010-11-19 00:53:06 UTC (rev 309)
+@@ -46,21 +46,23 @@
+             content => template('subversion/no_empty_message') 
+         }
+ 
++        # TODO : add check for
++        #    - ym       perl -MYAML -e 'YAML::LoadFile("-");'
++        #    - tt       ( do not seem to be possible, but this would be great )
++        #    - php      php -l
++        #    - python
++        #    - named    named-checkzone/named-checkconf ( may requires some interaction with facter/erb )
++        #    - po       msgfmt -c
++        #    - openldap , like named
++
+         syntax_check{"check_perl":
+             regexp_ext => ".p[lm]$",
+             check_cmd => "perl -c"
+         }
+     }
+ 
+-    # later, deploy a backup file ( ie, cron job to do a dump in some directory )
+     # TODO 
+-    # what about pre commit ?
+-    # - name of a template file ?
+-    # - prepare a template for file checking ?
+-    #   - openldap
+-    #   - named
+-    #   - puppet
+-    #   - perl/ php syntax
++    #   deploy a cronjob to make a backup file ( ie, dump in some directory )
+ 
+     
+     define repository ($group = "svn",
+@@ -68,9 +70,9 @@
+                        $commit_mail = [],
+                        $syntax_check = [],
+                        $extract_dir = []) {
+-        # faire un script qui mets les permissions comme il faut
++        # check permissions
+         # http://svnbook.red-bean.com/nightly/fr/svn.serverconfig.multimethod.html
+-        # $name ==> lieu du checkout
++        # $name ==> directory of the repo
+ 
+         # TODO set umask -> requires puppet 2.7.0
+         exec { "svnadmin create $name":
+@@ -153,8 +155,6 @@
+         }
+     }
+ 
+-    # TODO ensure that subversion ishere
+-    #      allow to configure the snapshot refresh interval
+     define snapshot($source, $refresh = '*/5', $user = 'root')  {
+ 
+         include subversion::client
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101119/98f495fa/attachment.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000650.html b/zarb-ml/mageia-sysadm/2010-November/000650.html new file mode 100644 index 000000000..785bb4e68 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000650.html @@ -0,0 +1,95 @@ + + + + [Mageia-sysadm] [310] - fix packages name for non x86_64 ( such as my test vm ) + + + + + + + + + +

[Mageia-sysadm] [310] - fix packages name for non x86_64 ( such as my test vm )

+ root at mageia.org + root at mageia.org +
+ Fri Nov 19 01:53:08 CET 2010 +

+
+ +
Revision: 310
+Author:   misc
+Date:     2010-11-19 01:53:08 +0100 (Fri, 19 Nov 2010)
+Log Message:
+-----------
+- fix packages name for non x86_64 ( such as my test vm )
+
+Modified Paths:
+--------------
+    puppet/modules/subversion/manifests/init.pp
+
+Modified: puppet/modules/subversion/manifests/init.pp
+===================================================================
+--- puppet/modules/subversion/manifests/init.pp	2010-11-19 00:53:06 UTC (rev 309)
++++ puppet/modules/subversion/manifests/init.pp	2010-11-19 00:53:08 UTC (rev 310)
+@@ -149,8 +149,13 @@
+         # svn spam log with 
+         # Oct 26 13:30:01 valstar svn: No worthy mechs found
+         # without it, source http://mail-index.netbsd.org/pkgsrc-users/2008/11/23/msg008706.html 
+-        # 
+-        package {"lib64sasl2-plug-anonymous":
++        #
++	$sasl2_package = $architecture ? {
++        	x86_64 => "lib64sasl2-plug-anonymous",
++        	default => "libsasl2-plug-anonymous"
++    	}
++ 	
++        package {"$sasl2_package":
+             ensure => "installed"
+         }
+     }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101119/88da2cfe/attachment.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000651.html b/zarb-ml/mageia-sysadm/2010-November/000651.html new file mode 100644 index 000000000..651084193 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000651.html @@ -0,0 +1,93 @@ + + + + [Mageia-sysadm] [311] - fix directory creation + + + + + + + + + +

[Mageia-sysadm] [311] - fix directory creation

+ root at mageia.org + root at mageia.org +
+ Fri Nov 19 01:53:55 CET 2010 +

+
+ +
Revision: 311
+Author:   misc
+Date:     2010-11-19 01:53:55 +0100 (Fri, 19 Nov 2010)
+Log Message:
+-----------
+- fix directory creation
+
+Modified Paths:
+--------------
+    puppet/modules/subversion/manifests/init.pp
+
+Modified: puppet/modules/subversion/manifests/init.pp
+===================================================================
+--- puppet/modules/subversion/manifests/init.pp	2010-11-19 00:53:08 UTC (rev 310)
++++ puppet/modules/subversion/manifests/init.pp	2010-11-19 00:53:55 UTC (rev 311)
+@@ -15,8 +15,11 @@
+        
+         $local_dir = "/usr/local/share/subversion/"
+         $local_dirs = ["$local_dir/pre-commit.d", "$local_dir/post-commit.d"] 
+-        file { $local_dir:
+-            ensure => directory,
++        file { [$local_dir,$local_dirs]:
++             owner => root,
++             group => root,
++             mode => 755,
++             ensure => directory,
+         }
+ 
+         define syntax_check($regexp_ext,$check_cmd) {
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101119/bb8ac1d6/attachment.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000652.html b/zarb-ml/mageia-sysadm/2010-November/000652.html new file mode 100644 index 000000000..6a49dd5fa --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000652.html @@ -0,0 +1,88 @@ + + + + [Mageia-sysadm] [312] - fix syntax error + + + + + + + + + +

[Mageia-sysadm] [312] - fix syntax error

+ root at mageia.org + root at mageia.org +
+ Fri Nov 19 01:53:56 CET 2010 +

+
+ +
Revision: 312
+Author:   misc
+Date:     2010-11-19 01:53:56 +0100 (Fri, 19 Nov 2010)
+Log Message:
+-----------
+- fix syntax error
+
+Modified Paths:
+--------------
+    puppet/modules/subversion/manifests/init.pp
+
+Modified: puppet/modules/subversion/manifests/init.pp
+===================================================================
+--- puppet/modules/subversion/manifests/init.pp	2010-11-19 00:53:55 UTC (rev 311)
++++ puppet/modules/subversion/manifests/init.pp	2010-11-19 00:53:56 UTC (rev 312)
+@@ -87,7 +87,7 @@
+ #
+         file { "$name":
+             group => $group,
+-            user => root,
++            owner => root,
+             mode => $public ? {
+                         true => 644,
+                         false => 640
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101119/ffcef7df/attachment.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000653.html b/zarb-ml/mageia-sysadm/2010-November/000653.html new file mode 100644 index 000000000..43347b44d --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000653.html @@ -0,0 +1,89 @@ + + + + [Mageia-sysadm] [313] - fix the array concatenation ( puppet is not python nor ruby ) + + + + + + + + + +

[Mageia-sysadm] [313] - fix the array concatenation ( puppet is not python nor ruby )

+ root at mageia.org + root at mageia.org +
+ Fri Nov 19 01:54:58 CET 2010 +

+
+ +
Revision: 313
+Author:   misc
+Date:     2010-11-19 01:54:58 +0100 (Fri, 19 Nov 2010)
+Log Message:
+-----------
+- fix the array concatenation ( puppet is not python nor ruby )
+
+Modified Paths:
+--------------
+    puppet/modules/subversion/manifests/init.pp
+
+Modified: puppet/modules/subversion/manifests/init.pp
+===================================================================
+--- puppet/modules/subversion/manifests/init.pp	2010-11-19 00:53:56 UTC (rev 312)
++++ puppet/modules/subversion/manifests/init.pp	2010-11-19 00:54:58 UTC (rev 313)
+@@ -132,8 +132,7 @@
+             }
+         }
+ 
+-        $pre_commit_check = ['no_commit_log','no_root']
+-        $pre_commit_check += $syntax_check
++        $pre_commit_check = ['no_commit_log','no_root', $syntax_check]
+ 
+         file { "$name/hooks/pre-commit.d/$pre_commit_check":
+             ensure => "/usr/local/share/subversion/pre-commit.d/$pre_commit_check",
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101119/f8cdb6cd/attachment-0001.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000654.html b/zarb-ml/mageia-sysadm/2010-November/000654.html new file mode 100644 index 000000000..0cdaa4381 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000654.html @@ -0,0 +1,88 @@ + + + + [Mageia-sysadm] [314] - svnadmin is not in subversion-server rpm + + + + + + + + + +

[Mageia-sysadm] [314] - svnadmin is not in subversion-server rpm

+ root at mageia.org + root at mageia.org +
+ Fri Nov 19 01:55:00 CET 2010 +

+
+ +
Revision: 314
+Author:   misc
+Date:     2010-11-19 01:54:59 +0100 (Fri, 19 Nov 2010)
+Log Message:
+-----------
+- svnadmin is not in subversion-server rpm
+
+Modified Paths:
+--------------
+    puppet/modules/subversion/manifests/init.pp
+
+Modified: puppet/modules/subversion/manifests/init.pp
+===================================================================
+--- puppet/modules/subversion/manifests/init.pp	2010-11-19 00:54:58 UTC (rev 313)
++++ puppet/modules/subversion/manifests/init.pp	2010-11-19 00:54:59 UTC (rev 314)
+@@ -5,7 +5,7 @@
+ 
+ 
+     class server {
+-        package { "subversion-server":
++        package { ["subversion-server", "subversion-tools"]:
+             ensure => installed,
+         }
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101119/47f9dc0e/attachment.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000655.html b/zarb-ml/mageia-sysadm/2010-November/000655.html new file mode 100644 index 000000000..200e8444a --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000655.html @@ -0,0 +1,95 @@ + + + + [Mageia-sysadm] [315] - fix the condition of the svn creation + + + + + + + + + +

[Mageia-sysadm] [315] - fix the condition of the svn creation

+ root at mageia.org + root at mageia.org +
+ Fri Nov 19 01:55:01 CET 2010 +

+
+ +
Revision: 315
+Author:   misc
+Date:     2010-11-19 01:55:01 +0100 (Fri, 19 Nov 2010)
+Log Message:
+-----------
+- fix the condition of the svn creation
+
+Modified Paths:
+--------------
+    puppet/modules/subversion/manifests/init.pp
+
+Modified: puppet/modules/subversion/manifests/init.pp
+===================================================================
+--- puppet/modules/subversion/manifests/init.pp	2010-11-19 00:54:59 UTC (rev 314)
++++ puppet/modules/subversion/manifests/init.pp	2010-11-19 00:55:01 UTC (rev 315)
+@@ -76,12 +76,13 @@
+         # check permissions
+         # http://svnbook.red-bean.com/nightly/fr/svn.serverconfig.multimethod.html
+         # $name ==> directory of the repo
+-
++	include subversion::server
+         # TODO set umask -> requires puppet 2.7.0
+         exec { "svnadmin create $name":
+             user => root,
+             group => $group,
+-            creates => $name
++            creates => "$name/hooks",
++	    require => Package['subversion-tools'],
+         }
+ #        # TODO complete documentation
+ #
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101119/edacdc62/attachment.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000656.html b/zarb-ml/mageia-sysadm/2010-November/000656.html new file mode 100644 index 000000000..928bcc9cf --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000656.html @@ -0,0 +1,108 @@ + + + + [Mageia-sysadm] [316] fix some cosmetics issue + + + + + + + + + +

[Mageia-sysadm] [316] fix some cosmetics issue

+ root at mageia.org + root at mageia.org +
+ Fri Nov 19 01:55:02 CET 2010 +

+
+ +
Revision: 316
+Author:   misc
+Date:     2010-11-19 01:55:02 +0100 (Fri, 19 Nov 2010)
+Log Message:
+-----------
+fix some cosmetics issue
+
+Modified Paths:
+--------------
+    puppet/modules/subversion/templates/hook_extract.pl
+    puppet/modules/subversion/templates/hook_sendmail.pl
+
+Modified: puppet/modules/subversion/templates/hook_extract.pl
+===================================================================
+--- puppet/modules/subversion/templates/hook_extract.pl	2010-11-19 00:55:01 UTC (rev 315)
++++ puppet/modules/subversion/templates/hook_extract.pl	2010-11-19 00:55:02 UTC (rev 316)
+@@ -1,10 +1,9 @@
+ #!/usr/bin/perl -MSVN::Notify::Config=$0
+ --- #YAML:1.0
+-<% extract_dir.each do |src,dest| %>
+-
++<%- extract_dir.each do |src,dest| -%>
+ '<%= src %>':
+   PATH: "/usr/bin:/usr/local/bin"
+   handler: Mirror
+   svn-binary: /usr/bin/svn
+   to: <%= dest %>
+-<% end %>
++<%- end -%>
+
+Modified: puppet/modules/subversion/templates/hook_sendmail.pl
+===================================================================
+--- puppet/modules/subversion/templates/hook_sendmail.pl	2010-11-19 00:55:01 UTC (rev 315)
++++ puppet/modules/subversion/templates/hook_sendmail.pl	2010-11-19 00:55:02 UTC (rev 316)
+@@ -7,7 +7,7 @@
+   alternative: HTML::ColorDiff
+   with-diff: 1
+   to:
+-<% commit_mail.each do |mail|  %>
++<%- commit_mail.each do |mail|  -%>
+     - <%= mail %>
+-<% end %>
++<%- end -%>
+   from: root@<%= domain %>
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101119/38c9cfcc/attachment.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000657.html b/zarb-ml/mageia-sysadm/2010-November/000657.html new file mode 100644 index 000000000..2110f1ed1 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000657.html @@ -0,0 +1,88 @@ + + + + [Mageia-sysadm] [317] - fix the check script + + + + + + + + + +

[Mageia-sysadm] [317] - fix the check script

+ root at mageia.org + root at mageia.org +
+ Fri Nov 19 01:55:03 CET 2010 +

+
+ +
Revision: 317
+Author:   misc
+Date:     2010-11-19 01:55:03 +0100 (Fri, 19 Nov 2010)
+Log Message:
+-----------
+- fix the check script
+
+Modified Paths:
+--------------
+    puppet/modules/subversion/templates/syntax_check.sh
+
+Modified: puppet/modules/subversion/templates/syntax_check.sh
+===================================================================
+--- puppet/modules/subversion/templates/syntax_check.sh	2010-11-19 00:55:02 UTC (rev 316)
++++ puppet/modules/subversion/templates/syntax_check.sh	2010-11-19 00:55:03 UTC (rev 317)
+@@ -5,7 +5,7 @@
+ 
+ changed=`svnlook changed -t "$TXN" "$REPOS"`
+ files=`echo $changed | awk '{print $2}'`
+-if echo $files | grep <%= regexp_ext %>
++if echo $files | grep "<%= regexp_ext %>"
+ then
+    svnlook cat -t "$TXN" "$REPOS" "$files" | <%= check_cmd %>
+    if [ $? -ne 0 ]
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101119/3fb61c1a/attachment.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000658.html b/zarb-ml/mageia-sysadm/2010-November/000658.html new file mode 100644 index 000000000..2c4012b05 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000658.html @@ -0,0 +1,105 @@ + + + + [Mageia-sysadm] [318] - fix regexp escaping + + + + + + + + + +

[Mageia-sysadm] [318] - fix regexp escaping

+ root at mageia.org + root at mageia.org +
+ Fri Nov 19 01:57:58 CET 2010 +

+
+ +
Revision: 318
+Author:   misc
+Date:     2010-11-19 01:57:58 +0100 (Fri, 19 Nov 2010)
+Log Message:
+-----------
+- fix regexp escaping
+
+Modified Paths:
+--------------
+    puppet/modules/subversion/manifests/init.pp
+
+Modified: puppet/modules/subversion/manifests/init.pp
+===================================================================
+--- puppet/modules/subversion/manifests/init.pp	2010-11-19 00:55:03 UTC (rev 317)
++++ puppet/modules/subversion/manifests/init.pp	2010-11-19 00:57:58 UTC (rev 318)
+@@ -59,9 +59,24 @@
+         #    - openldap , like named
+ 
+         syntax_check{"check_perl":
+-            regexp_ext => ".p[lm]$",
++            regexp_ext => "\.p[lm]$",
+             check_cmd => "perl -c"
+         }
++
++        syntax_check{"check_puppet":
++            regexp_ext => "\.pp$",
++            check_cmd => "puppet --color=false --confdir=/tmp --vardir=/tmp --parseonly"
++        }
++
++        syntax_check{"check_ruby":
++            regexp_ext => "\.rb$",
++            check_cmd => "ruby -c"
++        }
++
++        syntax_check{"check_puppet_templates":
++            regexp_ext => "modules/.*/templates/.*$",
++            check_cmd => "erb -x -T - | ruby -c"
++        }
+     }
+ 
+     # TODO 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101119/fb9d5c33/attachment-0001.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000659.html b/zarb-ml/mageia-sysadm/2010-November/000659.html new file mode 100644 index 000000000..ec9b1bd9a --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000659.html @@ -0,0 +1,117 @@ + + + + [Mageia-sysadm] [319] - rewrite the link setup part, as the array do not work like I believed they would + + + + + + + + + +

[Mageia-sysadm] [319] - rewrite the link setup part, as the array do not work like I believed they would

+ root at mageia.org + root at mageia.org +
+ Fri Nov 19 01:59:56 CET 2010 +

+
+ +
Revision: 319
+Author:   misc
+Date:     2010-11-19 01:59:56 +0100 (Fri, 19 Nov 2010)
+Log Message:
+-----------
+- rewrite the link setup part, as the array do not work like I believed they would
+
+Modified Paths:
+--------------
+    puppet/modules/subversion/manifests/init.pp
+
+Modified: puppet/modules/subversion/manifests/init.pp
+===================================================================
+--- puppet/modules/subversion/manifests/init.pp	2010-11-19 00:57:58 UTC (rev 318)
++++ puppet/modules/subversion/manifests/init.pp	2010-11-19 00:59:56 UTC (rev 319)
+@@ -79,6 +79,18 @@
+         }
+     }
+ 
++   
++    # FIXME ugly
++    define pre_commit_link($directory) {
++	file { "pre_commit_link-${name}":
++	    path => "$directory/$name",
++	    ensure => "/usr/local/share/subversion/pre-commit.d/$name",
++	    owner => root,
++	    group => root,
++	    mode => 755,
++	}
++    } 
++
+     # TODO 
+     #   deploy a cronjob to make a backup file ( ie, dump in some directory )
+ 
+@@ -148,15 +160,10 @@
+             }
+         }
+ 
+-        $pre_commit_check = ['no_commit_log','no_root', $syntax_check]
+ 
+-        file { "$name/hooks/pre-commit.d/$pre_commit_check":
+-            ensure => "/usr/local/share/subversion/pre-commit.d/$pre_commit_check",
+-            owner => root,
+-            group => root,
+-            mode => 755
+-        }
+-
++	pre_commit_link { ['no_empty_message','no_root_commit', $syntax_check]: 
++		directory => "$name/hooks/pre-commit.d/"
++	}
+     }
+ 
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101119/7d1bcd1e/attachment.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000660.html b/zarb-ml/mageia-sysadm/2010-November/000660.html new file mode 100644 index 000000000..b94c3e046 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000660.html @@ -0,0 +1,99 @@ + + + + [Mageia-sysadm] [320] - rewrite the others part too, for same reason ( arrays that do not work like I believed ) + + + + + + + + + +

[Mageia-sysadm] [320] - rewrite the others part too, for same reason ( arrays that do not work like I believed )

+ root at mageia.org + root at mageia.org +
+ Fri Nov 19 01:59:57 CET 2010 +

+
+ +
Revision: 320
+Author:   misc
+Date:     2010-11-19 01:59:57 +0100 (Fri, 19 Nov 2010)
+Log Message:
+-----------
+- rewrite the others part too, for same reason ( arrays that do not work like I believed )
+
+Modified Paths:
+--------------
+    puppet/modules/subversion/manifests/init.pp
+
+Modified: puppet/modules/subversion/manifests/init.pp
+===================================================================
+--- puppet/modules/subversion/manifests/init.pp	2010-11-19 00:59:56 UTC (rev 319)
++++ puppet/modules/subversion/manifests/init.pp	2010-11-19 00:59:57 UTC (rev 320)
+@@ -123,8 +123,7 @@
+             ensure => directory
+         }
+ 
+-        $hooks = ["$name/hooks/pre-commit","$name/hooks/post-commit"]
+-        file { "$hooks":
++        file { ["$name/hooks/pre-commit","$name/hooks/post-commit"]:
+             ensure => present,
+             owner => root,
+             group => root,
+@@ -132,8 +131,7 @@
+             content => template("subversion/hook_commit.sh")
+         }
+ 
+-        $hooks_dir = ["$name/hooks/pre-commit.d","$name/hooks/post-commit.d"]
+-        file { "$hooks_dir":
++        file { ["$name/hooks/post-commit.d", "$name/hooks/pre-commit.d"]:
+             ensure => directory,
+             owner => root,
+             group => root,
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101119/27e0f6b8/attachment-0001.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000661.html b/zarb-ml/mageia-sysadm/2010-November/000661.html new file mode 100644 index 000000000..5548a42ac --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000661.html @@ -0,0 +1,117 @@ + + + + [Mageia-sysadm] [321] - add some requires for ordering of the transaction + + + + + + + + + +

[Mageia-sysadm] [321] - add some requires for ordering of the transaction

+ root at mageia.org + root at mageia.org +
+ Fri Nov 19 01:59:59 CET 2010 +

+
+ +
Revision: 321
+Author:   misc
+Date:     2010-11-19 01:59:58 +0100 (Fri, 19 Nov 2010)
+Log Message:
+-----------
+- add some requires for ordering of the transaction
+
+Modified Paths:
+--------------
+    puppet/modules/subversion/manifests/init.pp
+
+Modified: puppet/modules/subversion/manifests/init.pp
+===================================================================
+--- puppet/modules/subversion/manifests/init.pp	2010-11-19 00:59:57 UTC (rev 320)
++++ puppet/modules/subversion/manifests/init.pp	2010-11-19 00:59:58 UTC (rev 321)
+@@ -128,7 +128,8 @@
+             owner => root,
+             group => root,
+             mode => 755,
+-            content => template("subversion/hook_commit.sh")
++            content => template("subversion/hook_commit.sh"),
++	    require => Exec["svnadmin create $name"],
+         }
+ 
+         file { ["$name/hooks/post-commit.d", "$name/hooks/pre-commit.d"]:
+@@ -136,6 +137,7 @@
+             owner => root,
+             group => root,
+             mode => 755,
++	    require => Exec["svnadmin create $name"],
+         }
+ 
+         if $commit_mail {
+@@ -144,7 +146,8 @@
+                 owner => root,
+                 group => root,
+                 mode => 755,
+-                content => template("subversion/hook_sendmail.pl")
++                content => template("subversion/hook_sendmail.pl"),
++	    	require => [Exec["svnadmin create $name"], Package['perl-SVN-Notify-Config']],
+             }
+         }
+ 
+@@ -154,7 +157,8 @@
+                 owner => root,
+                 group => root,
+                 mode => 755,
+-                content => template("subversion/hook_extract.pl")
++                content => template("subversion/hook_extract.pl"),
++	    	require => Exec["svnadmin create $name"],
+             }
+         }
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101119/ada35023/attachment-0001.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000662.html b/zarb-ml/mageia-sysadm/2010-November/000662.html new file mode 100644 index 000000000..0843cd9e0 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000662.html @@ -0,0 +1,97 @@ + + + + [Mageia-sysadm] [322] - testing show that perl-SVN-Notify-Mirror is required + + + + + + + + + +

[Mageia-sysadm] [322] - testing show that perl-SVN-Notify-Mirror is required

+ root at mageia.org + root at mageia.org +
+ Fri Nov 19 02:00:00 CET 2010 +

+
+ +
Revision: 322
+Author:   misc
+Date:     2010-11-19 02:00:00 +0100 (Fri, 19 Nov 2010)
+Log Message:
+-----------
+- testing show that perl-SVN-Notify-Mirror is required
+
+Modified Paths:
+--------------
+    puppet/modules/subversion/manifests/init.pp
+
+Modified: puppet/modules/subversion/manifests/init.pp
+===================================================================
+--- puppet/modules/subversion/manifests/init.pp	2010-11-19 00:59:58 UTC (rev 321)
++++ puppet/modules/subversion/manifests/init.pp	2010-11-19 01:00:00 UTC (rev 322)
+@@ -9,7 +9,7 @@
+             ensure => installed,
+         }
+ 
+-        package { "perl-SVN-Notify-Config":
++        package { ["perl-SVN-Notify-Config", "perl-SVN-Notify-Mirror"]:
+             ensure => installed,
+         }
+        
+@@ -158,7 +158,7 @@
+                 group => root,
+                 mode => 755,
+                 content => template("subversion/hook_extract.pl"),
+-	    	require => Exec["svnadmin create $name"],
++	    	require => [Package['perl-SVN-Notify-Mirror']],
+             }
+         }
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101119/7965a945/attachment-0001.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000663.html b/zarb-ml/mageia-sysadm/2010-November/000663.html new file mode 100644 index 000000000..c9635872b --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000663.html @@ -0,0 +1,150 @@ + + + + [Mageia-sysadm] [323] - try to workaround the missing feature of puppet about umask and Exec + + + + + + + + + +

[Mageia-sysadm] [323] - try to workaround the missing feature of puppet about umask and Exec

+ root at mageia.org + root at mageia.org +
+ Fri Nov 19 02:00:01 CET 2010 +

+
+ +
Revision: 323
+Author:   misc
+Date:     2010-11-19 02:00:01 +0100 (Fri, 19 Nov 2010)
+Log Message:
+-----------
+- try to workaround the missing feature of puppet about umask and Exec
+
+Modified Paths:
+--------------
+    puppet/modules/subversion/manifests/init.pp
+
+Added Paths:
+-----------
+    puppet/modules/subversion/templates/create_svn_repo.sh
+
+Modified: puppet/modules/subversion/manifests/init.pp
+===================================================================
+--- puppet/modules/subversion/manifests/init.pp	2010-11-19 01:00:00 UTC (rev 322)
++++ puppet/modules/subversion/manifests/init.pp	2010-11-19 01:00:01 UTC (rev 323)
+@@ -22,6 +22,15 @@
+              ensure => directory,
+         }
+ 
++	# workaround the lack of umask command in puppet < 2.7
++	file { "/usr/local/bin/create_svn_repo.sh":
++             ensure => present,
++             owner => root,
++             group => root,
++             mode => 755,
++             content => template('subversion/create_svn_repo.sh') 
++	} 
++
+         define syntax_check($regexp_ext,$check_cmd) {
+             file { "$local_dir/pre-commit.d/$name":
+                 ensure => present,
+@@ -105,7 +114,9 @@
+         # $name ==> directory of the repo
+ 	include subversion::server
+         # TODO set umask -> requires puppet 2.7.0
+-        exec { "svnadmin create $name":
++	# unfortunatly, umask is required
++	# http://projects.puppetlabs.com/issues/4424
++        exec { "/usr/local/bin/create_svn_repo.sh $name":
+             user => root,
+             group => $group,
+             creates => "$name/hooks",
+@@ -129,7 +140,7 @@
+             group => root,
+             mode => 755,
+             content => template("subversion/hook_commit.sh"),
+-	    require => Exec["svnadmin create $name"],
++	    require => Exec["/usr/local/bin/create_svn_repo.sh $name"],
+         }
+ 
+         file { ["$name/hooks/post-commit.d", "$name/hooks/pre-commit.d"]:
+@@ -137,7 +148,7 @@
+             owner => root,
+             group => root,
+             mode => 755,
+-	    require => Exec["svnadmin create $name"],
++	    require => File["$name/hooks/pre-commit"],
+         }
+ 
+         if $commit_mail {
+@@ -147,7 +158,7 @@
+                 group => root,
+                 mode => 755,
+                 content => template("subversion/hook_sendmail.pl"),
+-	    	require => [Exec["svnadmin create $name"], Package['perl-SVN-Notify-Config']],
++	    	require => [Package['perl-SVN-Notify-Config']],
+             }
+         }
+ 
+
+Added: puppet/modules/subversion/templates/create_svn_repo.sh
+===================================================================
+--- puppet/modules/subversion/templates/create_svn_repo.sh	                        (rev 0)
++++ puppet/modules/subversion/templates/create_svn_repo.sh	2010-11-19 01:00:01 UTC (rev 323)
+@@ -0,0 +1,7 @@
++#!/bin/bash
++umask 0002
++# needed for http://idolinux.blogspot.com/2010/05/subversion-svn-group-permissions.html
++svnadmin create --pre-1.6-compatible "$1"
++#chmod g+w "$1"/db/txn-current-lock
++#chmod g+w "$1"/db/transactions
++#chmod g+w "$1"/db/locks
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101119/3d3e2d10/attachment.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000664.html b/zarb-ml/mageia-sysadm/2010-November/000664.html new file mode 100644 index 000000000..c2981e7a3 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000664.html @@ -0,0 +1,162 @@ + + + + [Mageia-sysadm] [324] - add some documentation + + + + + + + + + +

[Mageia-sysadm] [324] - add some documentation

+ root at mageia.org + root at mageia.org +
+ Fri Nov 19 02:04:11 CET 2010 +

+
+ +
Revision: 324
+Author:   misc
+Date:     2010-11-19 02:04:11 +0100 (Fri, 19 Nov 2010)
+Log Message:
+-----------
+- add some documentation
+- clean some comment, move some code
+
+Modified Paths:
+--------------
+    puppet/modules/subversion/manifests/init.pp
+
+Modified: puppet/modules/subversion/manifests/init.pp
+===================================================================
+--- puppet/modules/subversion/manifests/init.pp	2010-11-19 01:00:01 UTC (rev 323)
++++ puppet/modules/subversion/manifests/init.pp	2010-11-19 01:04:11 UTC (rev 324)
+@@ -22,7 +22,7 @@
+              ensure => directory,
+         }
+ 
+-	# workaround the lack of umask command in puppet < 2.7
++ 	# workaround the lack of umask command in puppet < 2.7
+ 	file { "/usr/local/bin/create_svn_repo.sh":
+              ensure => present,
+              owner => root,
+@@ -31,17 +31,6 @@
+              content => template('subversion/create_svn_repo.sh') 
+ 	} 
+ 
+-        define syntax_check($regexp_ext,$check_cmd) {
+-            file { "$local_dir/pre-commit.d/$name":
+-                ensure => present,
+-                owner => root,
+-                group => root,
+-                mode => 755,
+-                content => template('subversion/syntax_check.sh') 
+-            }
+-        }
+-
+-        # mettre tout les scripts dans le repertoire
+         file { "$local_dir/pre-commit.d/no_root_commit":
+             ensure => present,
+             owner => root,
+@@ -67,6 +56,17 @@
+         #    - po       msgfmt -c
+         #    - openldap , like named
+ 
++        define syntax_check($regexp_ext,$check_cmd) {
++            file { "$local_dir/pre-commit.d/$name":
++                ensure => present,
++                owner => root,
++                group => root,
++                mode => 755,
++                content => template('subversion/syntax_check.sh') 
++            }
++        }
++
++
+         syntax_check{"check_perl":
+             regexp_ext => "\.p[lm]$",
+             check_cmd => "perl -c"
+@@ -103,7 +103,15 @@
+     # TODO 
+     #   deploy a cronjob to make a backup file ( ie, dump in some directory )
+ 
+-    
++    # documentation :
++    #    group : group that have commit access on the svn
++    #    public : boolean if the svn is readable by anybody or not
++    #    commit_mail : array of people who will receive mail after each commit
++    #    syntax_check : array of pre-commit script with syntax check to add
++    #    extract_dir : hash of directory to update upon commit ( with svn update ), 
++    #            initial checkout is not handled, nor the permission
++    #            TODO, handle the tags ( see svn::notify::mirror )
++
+     define repository ($group = "svn",
+                        $public = true,
+                        $commit_mail = [],
+@@ -122,9 +130,8 @@
+             creates => "$name/hooks",
+ 	    require => Package['subversion-tools'],
+         }
+-#        # TODO complete documentation
+-#
+-        file { "$name":
++        
++	file { "$name":
+             group => $group,
+             owner => root,
+             mode => $public ? {
+@@ -173,7 +180,6 @@
+             }
+         }
+ 
+-
+ 	pre_commit_link { ['no_empty_message','no_root_commit', $syntax_check]: 
+ 		directory => "$name/hooks/pre-commit.d/"
+ 	}
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101119/1e238adf/attachment.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000665.html b/zarb-ml/mageia-sysadm/2010-November/000665.html new file mode 100644 index 000000000..0aee3396a --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000665.html @@ -0,0 +1,131 @@ + + + + [Mageia-sysadm] [294] - start to merge simple relay, and add some basic antispam filtering + + + + + + + + + +

[Mageia-sysadm] [294] - start to merge simple relay, and add some basic antispam filtering

+ Luca Berra + bluca at vodka.it +
+ Fri Nov 19 08:35:54 CET 2010 +

+
+ +
On Thu, Nov 18, 2010 at 11:34:59PM +0100, root at mageia.org wrote:
+>+<% if classes.include?('postfix::simple_relay') %>
+> inet_interfaces = localhost
+>+<% else %>
+>+inet_interfaces = all
+>+<% end %>
+>+
+>+<% if classes.include?('postfix::smtp_server') %>
+you can safely add:
+smtpd_etrn_restrictions = reject
+you should add:
+smtpd_helo_required = yes
+if you do checks based on helo here
+>+smtpd_recipient_restrictions =
+>+#    not done yet
+>+#    permit_sasl_authenticated
+you should add
+reject_sender_login_mismatch
+and configure something like:
+smtpd_sender_login_maps =
+proxy:ldap:/etc/postfix/smtpd_sender_login_maps.cf
+server_host = ldaps://
+version = 3
+search_base = dc=mageia,dc=org
+query_filter = (|(mail=%s)(mailLocalAddress=%s))
+# use this with groupOfNames to allow people to send on behalf of an
+# alias (eg postmaster, abuse, etc)
+#special_result_attribute = owner
+result_attribute = uid
+
+>+    permit_mynetworks
+>+    reject_unauth_destination
+>+    reject_unauth_pipelining
+this one should not be here ^^^^
+put it into smtpd_data_restrictions, eg:
+smtpd_data_restrictions = reject_unauth_pipelining, reject_multi_recipient_bounce
+>+    reject_non_fqdn_recipient
+this should go before every permit to be useful, it is not useful at all
+after reject_unauth_destination.
+>+    reject_non_fqdn_sender
+i'd move it above permits, if some script fails, fix it.
+>+    reject_non_fqdn_hostname
+Note1: this restriction has been renamed in
+reject_non_fqdn_helo_hostname
+Note2: i reckon it as a bad idea, there are too many people unable to
+properly configure their mta to send an fqdn helo
+>+    reject_invalid_hostname
+Note: this restriction has been renamed in
+reject_non_fqdn_helo_hostname
+>+    reject_unknown_recipient_domain
+this one has no use after reject_unauth_destination
+>+    reject_unknown_sender_domain
+>+    reject_unknown_client
+Note1: this restriction has been renamed in
+reject_unknown_client_hostname
+Note2: this is _very_ strong, it will do both reverse and forward ns
+lookups and reject mail if they don't match, i have seen valid
+setup that fail under this condition, is better to graylist these
+
+you are missing
+reject_unlisted_recipient
+which should be setup together with
+local_recipient_maps
+and
+relay_recipient_maps
+
+i also have a number of possible additions, should i send those in?
+
+L.
+
+-- 
+Luca Berra -- bluca at vodka.it
+
+ + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000666.html b/zarb-ml/mageia-sysadm/2010-November/000666.html new file mode 100644 index 000000000..b12b8e5fc --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000666.html @@ -0,0 +1,97 @@ + + + + [Mageia-sysadm] [325] add www-test and blog-test + + + + + + + + + +

[Mageia-sysadm] [325] add www-test and blog-test

+ root at mageia.org + root at mageia.org +
+ Fri Nov 19 14:11:29 CET 2010 +

+
+ +
Revision: 325
+Author:   boklm
+Date:     2010-11-19 14:11:28 +0100 (Fri, 19 Nov 2010)
+Log Message:
+-----------
+add www-test and blog-test
+
+Modified Paths:
+--------------
+    puppet/modules/bind/templates/zones/mageia.org.zone
+
+Modified: puppet/modules/bind/templates/zones/mageia.org.zone
+===================================================================
+--- puppet/modules/bind/templates/zones/mageia.org.zone	2010-11-19 01:04:11 UTC (rev 324)
++++ puppet/modules/bind/templates/zones/mageia.org.zone	2010-11-19 13:11:28 UTC (rev 325)
+@@ -3,7 +3,7 @@
+ ; $Id$
+ $TTL	3D
+ @       IN      SOA     ns0.mageia.org.   root.mageia.org.  (
+-        2010111701	; Serial
++        2010111900	; Serial
+         21600		; Refresh
+         3600		; Retry
+         2419200		; Expire
+@@ -58,7 +58,9 @@
+ 
+ ; aliases
+ www         IN  CNAME www-zarb
++www-test    IN  CNAME champagne
+ blog        IN  CNAME www-zarb
++blog-test   IN  CNAME champagne
+ rsync       IN  CNAME www-zarb
+ 
+ ldap        IN  CNAME valstar
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101119/e9a844f4/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000667.html b/zarb-ml/mageia-sysadm/2010-November/000667.html new file mode 100644 index 000000000..2536f03b3 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000667.html @@ -0,0 +1,115 @@ + + + + [Mageia-sysadm] [294] - start to merge simple relay, and add some basic antispam filtering + + + + + + + + + +

[Mageia-sysadm] [294] - start to merge simple relay, and add some basic antispam filtering

+ Michael Scherer + misc at zarb.org +
+ Fri Nov 19 15:36:39 CET 2010 +

+
+ +
Le vendredi 19 novembre 2010 à 08:35 +0100, Luca Berra a écrit :
+> On Thu, Nov 18, 2010 at 11:34:59PM +0100, root at mageia.org wrote:
+> >+<% if classes.include?('postfix::simple_relay') %>
+> > inet_interfaces = localhost
+> >+<% else %>
+> >+inet_interfaces = all
+> >+<% end %>
+> >+
+> >+<% if classes.include?('postfix::smtp_server') %>
+> you can safely add:
+> smtpd_etrn_restrictions = reject
+> you should add:
+> smtpd_helo_required = yes
+> if you do checks based on helo here
+
+I will merge your proposals, I just need to be more familiar with what
+they mean ( in case later some issue arise ). And i also likely need to
+update zarb and others servers too :)
+
+> >+smtpd_recipient_restrictions =
+> >+#    not done yet
+> >+#    permit_sasl_authenticated
+>
+> you should add
+> reject_sender_login_mismatch
+> and configure something like:
+> smtpd_sender_login_maps =
+> proxy:ldap:/etc/postfix/smtpd_sender_login_maps.cf
+> server_host = ldaps://
+> version = 3
+> search_base = dc=mageia,dc=org
+> query_filter = (|(mail=%s)(mailLocalAddress=%s))
+> # use this with groupOfNames to allow people to send on behalf of an
+> # alias (eg postmaster, abuse, etc)
+> #special_result_attribute = owner
+> result_attribute = uid
+
+Well, that's disabled because we are not sure we should offer it ( I
+took the config from zarb.org ).
+
+
+> >+    reject_non_fqdn_hostname
+> Note1: this restriction has been renamed in
+> reject_non_fqdn_helo_hostname
+
+> Note2: i reckon it as a bad idea, there are too many people unable to
+> properly configure their mta to send an fqdn helo
+
+That's what we use at zarb, so far no one complained ( obviously, maybe
+that's because we reject their mail ... )
+
+> i also have a number of possible additions, should i send those in?
+
+Yup, why not, I will integrate them later.  
+-- 
+Michael Scherer
+
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000668.html b/zarb-ml/mageia-sysadm/2010-November/000668.html new file mode 100644 index 000000000..3dc5832fa --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000668.html @@ -0,0 +1,118 @@ + + + + [Mageia-sysadm] [326] - merge luca berra proposal + + + + + + + + + +

[Mageia-sysadm] [326] - merge luca berra proposal

+ root at mageia.org + root at mageia.org +
+ Fri Nov 19 21:18:58 CET 2010 +

+
+ +
Revision: 326
+Author:   misc
+Date:     2010-11-19 21:18:57 +0100 (Fri, 19 Nov 2010)
+Log Message:
+-----------
+- merge luca berra proposal
+
+Modified Paths:
+--------------
+    puppet/modules/postfix/templates/main.cf
+
+Modified: puppet/modules/postfix/templates/main.cf
+===================================================================
+--- puppet/modules/postfix/templates/main.cf	2010-11-19 13:11:28 UTC (rev 325)
++++ puppet/modules/postfix/templates/main.cf	2010-11-19 20:18:57 UTC (rev 326)
+@@ -42,10 +42,12 @@
+                 <%= domain %>
+ <%- end -%>
+ transport_maps = regexp:/etc/postfix/transport_regexp
++
+ <% if classes.include?('sympa') %>
+ sympa_destination_recipient_limit = 1
+ sympabounce_destination_recipient_limit = 1
+ <% end %>
++
+ #delay_warning_time = 4h
+ smtpd_banner = $myhostname ESMTP $mail_name ($mail_version) (Mandriva Linux)
+ unknown_local_recipient_reject_code = 450
+@@ -57,17 +59,21 @@
+ smtpd_tls_CAfile = /etc/pki/tls/certs/ca-bundle.crt
+ 
+ <% if classes.include?('postfix::smtp_server') %>
++smtpd_etrn_restrictions = reject
++
++smtpd_helo_required = yes
++
++smtpd_data_restrictions = reject_unauth_pipelining 
++                          reject_multi_recipient_bounce
++
+ smtpd_recipient_restrictions =
+ #    not done yet
+ #    permit_sasl_authenticated
++    reject_non_fqdn_recipient
++    reject_non_fqdn_sender
+     permit_mynetworks
+     reject_unauth_destination
+-    reject_unauth_pipelining
+-    reject_non_fqdn_recipient
+-    reject_non_fqdn_sender
+-    reject_non_fqdn_hostname
+-    reject_invalid_hostname
+-    reject_unknown_recipient_domain
++    reject_non_fqdn_helo_hostname
+     reject_unknown_sender_domain
+     reject_unknown_client
+   <% if classes.include?('postgrey') %>
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101119/eeac1973/attachment.html>
+
+ + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000669.html b/zarb-ml/mageia-sysadm/2010-November/000669.html new file mode 100644 index 000000000..04c05c1f0 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000669.html @@ -0,0 +1,85 @@ + + + + [Mageia-sysadm] [327] - fix templates + + + + + + + + + +

[Mageia-sysadm] [327] - fix templates

+ root at mageia.org + root at mageia.org +
+ Fri Nov 19 21:18:59 CET 2010 +

+
+ +
Revision: 327
+Author:   misc
+Date:     2010-11-19 21:18:58 +0100 (Fri, 19 Nov 2010)
+Log Message:
+-----------
+- fix templates
+
+Modified Paths:
+--------------
+    puppet/modules/postfix/templates/main.cf
+
+Modified: puppet/modules/postfix/templates/main.cf
+===================================================================
+--- puppet/modules/postfix/templates/main.cf	2010-11-19 20:18:57 UTC (rev 326)
++++ puppet/modules/postfix/templates/main.cf	2010-11-19 20:18:58 UTC (rev 327)
+@@ -42,6 +42,7 @@
+                 <%= domain %>
+ <%- end -%>
+ transport_maps = regexp:/etc/postfix/transport_regexp
++<%- end -%>
+ 
+ <% if classes.include?('sympa') %>
+ sympa_destination_recipient_limit = 1
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101119/4ff317c5/attachment-0001.html>
+
+ + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000670.html b/zarb-ml/mageia-sysadm/2010-November/000670.html new file mode 100644 index 000000000..416b116e5 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000670.html @@ -0,0 +1,89 @@ + + + + [Mageia-sysadm] [328] - add some more attribute, just to be sure + + + + + + + + + +

[Mageia-sysadm] [328] - add some more attribute, just to be sure

+ root at mageia.org + root at mageia.org +
+ Fri Nov 19 21:19:00 CET 2010 +

+
+ +
Revision: 328
+Author:   misc
+Date:     2010-11-19 21:19:00 +0100 (Fri, 19 Nov 2010)
+Log Message:
+-----------
+- add some more attribute, just to be sure
+
+Modified Paths:
+--------------
+    puppet/modules/postfix/manifests/init.pp
+
+Modified: puppet/modules/postfix/manifests/init.pp
+===================================================================
+--- puppet/modules/postfix/manifests/init.pp	2010-11-19 20:18:58 UTC (rev 327)
++++ puppet/modules/postfix/manifests/init.pp	2010-11-19 20:19:00 UTC (rev 328)
+@@ -49,6 +49,10 @@
+ 
+     class primary_smtp inherits smtp_server {
+         file { '/etc/postfix/master.cf':
++            ensure => present,
++            owner => root, 
++            group => root, 
++            mode => 644, 
+             content => template("postfix/primary_master.cf"),
+         }
+     }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101119/85003aec/attachment-0001.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000671.html b/zarb-ml/mageia-sysadm/2010-November/000671.html new file mode 100644 index 000000000..2bda8daa2 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000671.html @@ -0,0 +1,93 @@ + + + + [Mageia-sysadm] [330] - fix config for secondary smtp + + + + + + + + + +

[Mageia-sysadm] [330] - fix config for secondary smtp

+ root at mageia.org + root at mageia.org +
+ Fri Nov 19 21:19:02 CET 2010 +

+
+ +
Revision: 330
+Author:   misc
+Date:     2010-11-19 21:19:02 +0100 (Fri, 19 Nov 2010)
+Log Message:
+-----------
+- fix config for secondary smtp
+
+Modified Paths:
+--------------
+    puppet/modules/postfix/templates/main.cf
+
+Modified: puppet/modules/postfix/templates/main.cf
+===================================================================
+--- puppet/modules/postfix/templates/main.cf	2010-11-19 20:19:01 UTC (rev 329)
++++ puppet/modules/postfix/templates/main.cf	2010-11-19 20:19:02 UTC (rev 330)
+@@ -35,9 +35,11 @@
+ mydomain = <%= domain %>
+ mydestination = <%= fqdn %>
+ myorigin = $mydomain
+-<%- if all_tags.include?('postfix::smtp_server') -%> 
+-relay_domains = $mydestination, 
+-                ml.<%= domain %>, 
++<%- if all_tags.include?('postfix::secondary_smtp') -%>
++relay_domains = <%= domain %>, ml.<%= domain %> 
++<%- end -%>
++
++mydestination = <%= fqdn %>
+ <%- if all_tags.include?('postfix::primary_smtp') -%>
+                 <%= domain %>
+ <%- end -%>
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101119/9821a68c/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000672.html b/zarb-ml/mageia-sysadm/2010-November/000672.html new file mode 100644 index 000000000..cff05fcae --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000672.html @@ -0,0 +1,147 @@ + + + + [Mageia-sysadm] [329] - use all_tags instead of classes because of some obscure puppet issues, + + + + + + + + + +

[Mageia-sysadm] [329] - use all_tags instead of classes because of some obscure puppet issues,

+ root at mageia.org + root at mageia.org +
+ Fri Nov 19 21:19:01 CET 2010 +

+
+ +
Revision: 329
+Author:   misc
+Date:     2010-11-19 21:19:01 +0100 (Fri, 19 Nov 2010)
+Log Message:
+-----------
+- use all_tags instead of classes because of some obscure puppet issues,
+  basically, classes correspond to the classes when the ressource is
+declared, not to the one of the node ( which is given by
+all_tags )
+- remove empty line ( with <%- )
+
+Modified Paths:
+--------------
+    puppet/modules/postfix/templates/main.cf
+
+Modified: puppet/modules/postfix/templates/main.cf
+===================================================================
+--- puppet/modules/postfix/templates/main.cf	2010-11-19 20:19:00 UTC (rev 328)
++++ puppet/modules/postfix/templates/main.cf	2010-11-19 20:19:01 UTC (rev 329)
+@@ -23,7 +23,7 @@
+ 
+ # User configurable parameters
+ 
+-<% if classes.include?('postfix::simple_relay') %>
++<% if all_tags.include?('postfix::simple_relay') %>
+ inet_interfaces = localhost
+ <% else %>
+ inet_interfaces = all
+@@ -35,19 +35,19 @@
+ mydomain = <%= domain %>
+ mydestination = <%= fqdn %>
+ myorigin = $mydomain
+-<%- if classes.include?('postfix::smtp_server') -%> 
++<%- if all_tags.include?('postfix::smtp_server') -%> 
+ relay_domains = $mydestination, 
+                 ml.<%= domain %>, 
+-<%- if classes.include?('postfix::primary_smtp') -%> 
++<%- if all_tags.include?('postfix::primary_smtp') -%>
+                 <%= domain %>
+ <%- end -%>
+ transport_maps = regexp:/etc/postfix/transport_regexp
+ <%- end -%>
+ 
+-<% if classes.include?('sympa') %>
++<%- if classes.include?('sympa') -%>
+ sympa_destination_recipient_limit = 1
+ sympabounce_destination_recipient_limit = 1
+-<% end %>
++<%- end -%>
+ 
+ #delay_warning_time = 4h
+ smtpd_banner = $myhostname ESMTP $mail_name ($mail_version) (Mandriva Linux)
+@@ -59,7 +59,7 @@
+ smtpd_tls_key_file = /etc/pki/tls/private/postfix.pem
+ smtpd_tls_CAfile = /etc/pki/tls/certs/ca-bundle.crt
+ 
+-<% if classes.include?('postfix::smtp_server') %>
++<%- if all_tags.include?('postfix::smtp_server') -%>
+ smtpd_etrn_restrictions = reject
+ 
+ smtpd_helo_required = yes
+@@ -67,18 +67,17 @@
+ smtpd_data_restrictions = reject_unauth_pipelining 
+                           reject_multi_recipient_bounce
+ 
+-smtpd_recipient_restrictions =
+-#    not done yet
+-#    permit_sasl_authenticated
+-    reject_non_fqdn_recipient
++smtpd_recipient_restrictions = reject_non_fqdn_recipient
+     reject_non_fqdn_sender
++#    not done yet, not sure if we need to offer this kind of service
++#    permit_sasl_authenticated
+     permit_mynetworks
+     reject_unauth_destination
+     reject_non_fqdn_helo_hostname
+     reject_unknown_sender_domain
+     reject_unknown_client
+-  <% if classes.include?('postgrey') %>
++  <%- if classes.include?('postgrey') -%>
+     check_policy_service unix:extern/postgrey/socket
+-  <% end %>
+-<% end %>
++  <%- end -%>
++<%- end -%>
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101119/2e53b517/attachment.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000673.html b/zarb-ml/mageia-sysadm/2010-November/000673.html new file mode 100644 index 000000000..2250b1a96 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000673.html @@ -0,0 +1,89 @@ + + + + [Mageia-sysadm] [331] add support for sympa domain + + + + + + + + + +

[Mageia-sysadm] [331] add support for sympa domain

+ root at mageia.org + root at mageia.org +
+ Fri Nov 19 21:19:04 CET 2010 +

+
+ +
Revision: 331
+Author:   misc
+Date:     2010-11-19 21:19:03 +0100 (Fri, 19 Nov 2010)
+Log Message:
+-----------
+add support for sympa domain
+
+Modified Paths:
+--------------
+    puppet/modules/postfix/templates/main.cf
+
+Modified: puppet/modules/postfix/templates/main.cf
+===================================================================
+--- puppet/modules/postfix/templates/main.cf	2010-11-19 20:19:02 UTC (rev 330)
++++ puppet/modules/postfix/templates/main.cf	2010-11-19 20:19:03 UTC (rev 331)
+@@ -41,7 +41,10 @@
+ 
+ mydestination = <%= fqdn %>
+ <%- if all_tags.include?('postfix::primary_smtp') -%>
+-                <%= domain %>
++                <%= domain %>,
++<%-   if classes.include?('sympa') -%>
++                ml.<%= domain %>
++<%-   end -%>
+ <%- end -%>
+ transport_maps = regexp:/etc/postfix/transport_regexp
+ <%- end -%>
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101119/8e399f94/attachment-0001.html>
+
+ + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000674.html b/zarb-ml/mageia-sysadm/2010-November/000674.html new file mode 100644 index 000000000..8d51ca0f0 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000674.html @@ -0,0 +1,93 @@ + + + + [Mageia-sysadm] [332] add directive for aliases ( with a note for ldap alias ), and white space + + + + + + + + + +

[Mageia-sysadm] [332] add directive for aliases ( with a note for ldap alias ), and white space

+ root at mageia.org + root at mageia.org +
+ Fri Nov 19 21:19:06 CET 2010 +

+
+ +
Revision: 332
+Author:   misc
+Date:     2010-11-19 21:19:06 +0100 (Fri, 19 Nov 2010)
+Log Message:
+-----------
+add directive for aliases ( with a note for ldap alias ), and white space
+
+Modified Paths:
+--------------
+    puppet/modules/postfix/templates/main.cf
+
+Modified: puppet/modules/postfix/templates/main.cf
+===================================================================
+--- puppet/modules/postfix/templates/main.cf	2010-11-19 20:19:03 UTC (rev 331)
++++ puppet/modules/postfix/templates/main.cf	2010-11-19 20:19:06 UTC (rev 332)
+@@ -45,8 +45,15 @@
+ <%-   if classes.include?('sympa') -%>
+                 ml.<%= domain %>
+ <%-   end -%>
++
++alias_maps = hash:/etc/aliases
++	     # uncomment if we want to enable ldap based alias 
++             # and create the file
++             #ldap:/etc/postfix/ldap_aliases.conf
+ <%- end -%>
++
+ transport_maps = regexp:/etc/postfix/transport_regexp
++
+ <%- end -%>
+ 
+ <%- if classes.include?('sympa') -%>
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101119/8f7cfe9e/attachment-0001.html>
+
+ + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000675.html b/zarb-ml/mageia-sysadm/2010-November/000675.html new file mode 100644 index 000000000..6b9b32aa0 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000675.html @@ -0,0 +1,88 @@ + + + + [Mageia-sysadm] [333] - fix template + + + + + + + + + +

[Mageia-sysadm] [333] - fix template

+ root at mageia.org + root at mageia.org +
+ Fri Nov 19 21:19:09 CET 2010 +

+
+ +
Revision: 333
+Author:   misc
+Date:     2010-11-19 21:19:09 +0100 (Fri, 19 Nov 2010)
+Log Message:
+-----------
+- fix template
+
+Modified Paths:
+--------------
+    puppet/modules/postfix/templates/main.cf
+
+Modified: puppet/modules/postfix/templates/main.cf
+===================================================================
+--- puppet/modules/postfix/templates/main.cf	2010-11-19 20:19:06 UTC (rev 332)
++++ puppet/modules/postfix/templates/main.cf	2010-11-19 20:19:09 UTC (rev 333)
+@@ -52,8 +52,9 @@
+              #ldap:/etc/postfix/ldap_aliases.conf
+ <%- end -%>
+ 
++
++<%- if all_tags.include?('postfix::smtp_server') -%>
+ transport_maps = regexp:/etc/postfix/transport_regexp
+-
+ <%- end -%>
+ 
+ <%- if classes.include?('sympa') -%>
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101119/4764dcc9/attachment.html>
+
+ + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000676.html b/zarb-ml/mageia-sysadm/2010-November/000676.html new file mode 100644 index 000000000..3aa9cd904 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000676.html @@ -0,0 +1,90 @@ + + + + [Mageia-sysadm] [334] - fix template on 32 bits server + + + + + + + + + +

[Mageia-sysadm] [334] - fix template on 32 bits server

+ root at mageia.org + root at mageia.org +
+ Sat Nov 20 00:52:44 CET 2010 +

+
+ +
Revision: 334
+Author:   misc
+Date:     2010-11-20 00:52:44 +0100 (Sat, 20 Nov 2010)
+Log Message:
+-----------
+- fix template on 32 bits server
+
+Modified Paths:
+--------------
+    puppet/modules/sympa/templates/vhost_ml.conf
+
+Modified: puppet/modules/sympa/templates/vhost_ml.conf
+===================================================================
+--- puppet/modules/sympa/templates/vhost_ml.conf	2010-11-19 20:19:09 UTC (rev 333)
++++ puppet/modules/sympa/templates/vhost_ml.conf	2010-11-19 23:52:44 UTC (rev 334)
+@@ -1,7 +1,10 @@
+ <VirtualHost *:80>
+ 	ServerName ml.<%= domain %>
+-	DocumentRoot /usr/lib64/sympa/cgi
+-	<Location />
++<%-
++path_cgi_directory = "/usr/lib" + ( architecture == "x86_64" ? '64' : '') + "/sympa/cgi"
++-%>
++	DocumentRoot <%= path_cgi_directory %>
++ 	<Location />
+ 		Allow from all
+ 	</Location>
+ </VirtualHost>
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101120/00369fc7/attachment.html>
+
+ + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000677.html b/zarb-ml/mageia-sysadm/2010-November/000677.html new file mode 100644 index 000000000..c97a01f79 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000677.html @@ -0,0 +1,86 @@ + + + + [Mageia-sysadm] [335] - also fix the directory ( maybe I should add a facter plugin for this too ) + + + + + + + + + +

[Mageia-sysadm] [335] - also fix the directory ( maybe I should add a facter plugin for this too )

+ root at mageia.org + root at mageia.org +
+ Sat Nov 20 01:16:45 CET 2010 +

+
+ +
Revision: 335
+Author:   misc
+Date:     2010-11-20 01:16:45 +0100 (Sat, 20 Nov 2010)
+Log Message:
+-----------
+- also fix the directory ( maybe I should add a facter plugin for this too )
+
+Modified Paths:
+--------------
+    puppet/modules/sympa/templates/webapp_sympa.conf
+
+Modified: puppet/modules/sympa/templates/webapp_sympa.conf
+===================================================================
+--- puppet/modules/sympa/templates/webapp_sympa.conf	2010-11-19 23:52:44 UTC (rev 334)
++++ puppet/modules/sympa/templates/webapp_sympa.conf	2010-11-20 00:16:45 UTC (rev 335)
+@@ -1,4 +1,7 @@
+-<Directory /usr/lib64/sympa/cgi>
++<%-
++path_cgi_directory = "/usr/lib" + ( architecture == "x86_64" ? '64' : '') + "/sympa/cgi"
++-%>
++<Directory <%= path_cgi_directory %> >
+     Options ExecCGI
+     AddHandler fastcgi-script .fcgi
+     DirectoryIndex wwsympa-wrapper.fcgi
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101120/d28b92c0/attachment.html>
+
+ + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000678.html b/zarb-ml/mageia-sysadm/2010-November/000678.html new file mode 100644 index 000000000..7086fef47 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000678.html @@ -0,0 +1,86 @@ + + + + [Mageia-sysadm] [336] - enable the distribution of plugin ( ie, facter module, custom type ) + + + + + + + + + +

[Mageia-sysadm] [336] - enable the distribution of plugin ( ie, facter module, custom type )

+ root at mageia.org + root at mageia.org +
+ Sat Nov 20 01:19:08 CET 2010 +

+
+ +
Revision: 336
+Author:   misc
+Date:     2010-11-20 01:19:07 +0100 (Sat, 20 Nov 2010)
+Log Message:
+-----------
+- enable the distribution of plugin ( ie, facter module, custom type )
+
+Modified Paths:
+--------------
+    puppet/modules/puppet/templates/puppet.conf
+
+Modified: puppet/modules/puppet/templates/puppet.conf
+===================================================================
+--- puppet/modules/puppet/templates/puppet.conf	2010-11-20 00:16:45 UTC (rev 335)
++++ puppet/modules/puppet/templates/puppet.conf	2010-11-20 00:19:07 UTC (rev 336)
+@@ -18,6 +18,8 @@
+ [agent]
+     server = puppetmaster.<%= domain %>
+ 
++    pluginsync = true
++
+     report = true
+     # The file in which puppetd stores a list of the classes
+     # associated with the retrieved configuratiion.  Can be loaded in
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101120/8732657a/attachment.html>
+
+ + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000679.html b/zarb-ml/mageia-sysadm/2010-November/000679.html new file mode 100644 index 000000000..f7c1364b3 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000679.html @@ -0,0 +1,86 @@ + + + + [Mageia-sysadm] [337] - -n is needed to interpret \n for the bash builtin version, spotted by ahmad78 + + + + + + + + + +

[Mageia-sysadm] [337] - -n is needed to interpret \n for the bash builtin version, spotted by ahmad78

+ root at mageia.org + root at mageia.org +
+ Sat Nov 20 09:38:07 CET 2010 +

+
+ +
Revision: 337
+Author:   misc
+Date:     2010-11-20 09:38:06 +0100 (Sat, 20 Nov 2010)
+Log Message:
+-----------
+- -n is needed to interpret \n for the bash builtin version, spotted by ahmad78
+
+Modified Paths:
+--------------
+    puppet/modules/blog/templates/check_new-blog-post.sh
+
+Modified: puppet/modules/blog/templates/check_new-blog-post.sh
+===================================================================
+--- puppet/modules/blog/templates/check_new-blog-post.sh	2010-11-20 00:19:07 UTC (rev 336)
++++ puppet/modules/blog/templates/check_new-blog-post.sh	2010-11-20 08:38:06 UTC (rev 337)
+@@ -26,7 +26,7 @@
+ 		new_post=$(grep "title" $PATH_TO_FILE"/RSS_new" | head -n 2 | sed '1d' | sed 's/<title>//' | sed 's/<\/title>//' | sed 's/^[ \t]*//')
+ 		echo $new_post >> $PATH_TO_FILE"/last_need_translation"
+ 		echo "YES" >> $PATH_TO_FILE"/last_check"
+-		echo "A new blog post is waiting for translation\n\"$new_post\"" | /bin/mail -s "New entry on English Blog" mageia-blogteam at mageia.org
++		echo -e "A new blog post is waiting for translation\n\"$new_post\"" | /bin/mail -s "New entry on English Blog" mageia-blogteam at mageia.org
+ 		echo $DATE
+ fi
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101120/946b3d29/attachment-0001.html>
+
+ + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000680.html b/zarb-ml/mageia-sysadm/2010-November/000680.html new file mode 100644 index 000000000..f891b389d --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000680.html @@ -0,0 +1,93 @@ + + + + [Mageia-sysadm] [338] - allows the PATH_TO_FILE value to be overidden for testing purpose + + + + + + + + + +

[Mageia-sysadm] [338] - allows the PATH_TO_FILE value to be overidden for testing purpose

+ root at mageia.org + root at mageia.org +
+ Sat Nov 20 09:47:07 CET 2010 +

+
+ +
Revision: 338
+Author:   misc
+Date:     2010-11-20 09:47:07 +0100 (Sat, 20 Nov 2010)
+Log Message:
+-----------
+- allows the PATH_TO_FILE value to be overidden for testing purpose
+- check the return of wget and stop if the server do not answer, to prevent resending notification once server is restarted 
+
+Modified Paths:
+--------------
+    puppet/modules/blog/templates/check_new-blog-post.sh
+
+Modified: puppet/modules/blog/templates/check_new-blog-post.sh
+===================================================================
+--- puppet/modules/blog/templates/check_new-blog-post.sh	2010-11-20 08:38:06 UTC (rev 337)
++++ puppet/modules/blog/templates/check_new-blog-post.sh	2010-11-20 08:47:07 UTC (rev 338)
+@@ -1,9 +1,12 @@
+ #!/bin/sh
+ 
+ # Initialization
+-PATH_TO_FILE="/var/lib/blog"
++PATH_TO_FILE=${PATH_TO_FILE:-/var/lib/blog}
+ /usr/bin/wget -qO $PATH_TO_FILE"/RSS_new" http://blog.mageia.org/?feed=rss2
+-
++if [ -n $? ] 
++then
++        exit 2
++fi
+ # Check if RSS_old exists
+ if [ ! -f $PATH_TO_FILE"/RSS_old" ]
+ 	then
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101120/5f6aeda6/attachment.html>
+
+ + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000681.html b/zarb-ml/mageia-sysadm/2010-November/000681.html new file mode 100644 index 000000000..ab7d21338 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000681.html @@ -0,0 +1,90 @@ + + + + [Mageia-sysadm] Http server problem + + + + + + + + + +

[Mageia-sysadm] Http server problem

+ Michael scherer + misc at zarb.org +
+ Sat Nov 20 10:25:18 CET 2010 +

+
+ +
Hi,
+as some of you may have seen, the http server was down this
+morning on mageia.org since 00:18 ( CEST ). The server is still hosted on zarb.org,
+so I suspect no one could restart it except the admin team.
+I did restarted on 09h35.
+
+>From what I have seen, the problem was caused by a http 
+process that was not killed on midnight. The restart was caused by 
+automated cfengine upgrade, after installing new php ( [3] MDVSA-2010:239 ).
+
+Munin[1] show us a peak in IO on /var, /home and swap that somehow impacted
+mysql, postfix and nagios. I suspect the cause was the swap activity due to some
+problem in the apache process.
+
+My own analysis is that the apache restart script was unable to cope with the 
+fact that one process was not killed. As systemd coder remind us [2], this
+is quite hard to do properly on linux with current tools.
+
+I also suspect that php upgrade somehow messed with apache in some wrong
+way, causing weird behavior. This is likely unreproductible and undebuggable,
+maybe a race condition due to the high activity of the server combined
+to the slowness, I do not know. Anyway, I think we are safe until next php
+upgrade.
+
+
+[1] https://www.zarb.org/munin/servers/ryu/index.html
+[2] http://0pointer.de/blog/projects/systemd-for-admins-4.html
+[3] http://www.mandriva.com/en/security/advisories?name=MDVSA-2010:239
+
+-- 
+Michael Scherer
+
+ + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000682.html b/zarb-ml/mageia-sysadm/2010-November/000682.html new file mode 100644 index 000000000..6d8695bdf --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000682.html @@ -0,0 +1,108 @@ + + + + [Mageia-sysadm] [339] Merge remote branch 'vm_valstar/master' + + + + + + + + + +

[Mageia-sysadm] [339] Merge remote branch 'vm_valstar/master'

+ root at mageia.org + root at mageia.org +
+ Sat Nov 20 12:15:06 CET 2010 +

+
+ +
Revision: 339
+Author:   misc
+Date:     2010-11-20 12:15:06 +0100 (Sat, 20 Nov 2010)
+Log Message:
+-----------
+Merge remote branch 'vm_valstar/master'
+
+Added Paths:
+-----------
+    puppet/modules/facter/
+    puppet/modules/facter/lib/
+    puppet/modules/facter/lib/facter/
+    puppet/modules/facter/lib/facter/dc_suffix.rb
+    puppet/modules/facter/lib/facter/libdir.rb
+
+Added: puppet/modules/facter/lib/facter/dc_suffix.rb
+===================================================================
+--- puppet/modules/facter/lib/facter/dc_suffix.rb	                        (rev 0)
++++ puppet/modules/facter/lib/facter/dc_suffix.rb	2010-11-20 11:15:06 UTC (rev 339)
+@@ -0,0 +1,10 @@
++Facter.add("dc_suffix") do
++    setcode do
++        begin
++            Facter.domain
++        rescue 
++            Facter.loadfacts()
++        end
++        dc_suffix = 'dc=' + Facter.value('domain').gsub('.',',dc=')
++    end
++end    
+
+Added: puppet/modules/facter/lib/facter/libdir.rb
+===================================================================
+--- puppet/modules/facter/lib/facter/libdir.rb	                        (rev 0)
++++ puppet/modules/facter/lib/facter/libdir.rb	2010-11-20 11:15:06 UTC (rev 339)
+@@ -0,0 +1,10 @@
++Facter.add("libdir") do
++    setcode do
++        begin
++            Facter.architecture
++        rescue 
++            Facter.loadfacts()
++        end
++        '/usr/lib' + ( Facter.value('architecture') == "x86_64" ? '64' : '') + '/'
++    end
++end    
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101120/5fbc9d72/attachment.html>
+
+ + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000683.html b/zarb-ml/mageia-sysadm/2010-November/000683.html new file mode 100644 index 000000000..13d00add9 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000683.html @@ -0,0 +1,475 @@ + + + + [Mageia-sysadm] [340] Merge remote branch 'vm_valstar/master' + + + + + + + + + +

[Mageia-sysadm] [340] Merge remote branch 'vm_valstar/master'

+ root at mageia.org + root at mageia.org +
+ Sat Nov 20 12:52:54 CET 2010 +

+
+ +
Revision: 340
+Author:   misc
+Date:     2010-11-20 12:52:54 +0100 (Sat, 20 Nov 2010)
+Log Message:
+-----------
+Merge remote branch 'vm_valstar/master'
+
+Modified Paths:
+--------------
+    puppet/modules/bugzilla/manifests/init.pp
+    puppet/modules/bugzilla/templates/params
+    puppet/modules/bugzilla/templates/webapp_bugzilla.conf
+    puppet/modules/catdap/manifests/init.pp
+    puppet/modules/catdap/templates/catdap_local.yml
+    puppet/modules/epoll/manifests/init.pp
+    puppet/modules/mga-mirrors/manifests/init.pp
+    puppet/modules/openldap/templates/slapd.conf
+    puppet/modules/openssh/manifests/init.pp
+    puppet/modules/pam/templates/ldap.conf
+    puppet/modules/postfix/templates/main.cf
+    puppet/modules/postfix/templates/simple_relay_main.cf
+    puppet/modules/restrictshell/templates/ldap-sshkey2file.py
+    puppet/modules/sympa/manifests/init.pp
+    puppet/modules/sympa/templates/auth.conf
+    puppet/modules/transifex/manifests/init.pp
+    puppet/modules/transifex/templates/20-engines.conf
+
+Added Paths:
+-----------
+    puppet/modules/bugzilla/templates/vhost_bugs.conf
+
+Removed Paths:
+-------------
+    puppet/modules/bugzilla/templates/vhost_bugs.mageia.org.conf
+
+Modified: puppet/modules/bugzilla/manifests/init.pp
+===================================================================
+--- puppet/modules/bugzilla/manifests/init.pp	2010-11-20 11:15:06 UTC (rev 339)
++++ puppet/modules/bugzilla/manifests/init.pp	2010-11-20 11:52:54 UTC (rev 340)
+@@ -10,8 +10,8 @@
+     file { '/etc/bugzilla/localconfig':
+       ensure => present,
+       owner => root,
+-      group => root,
+-      mode => 644,
++      group => apache,
++      mode => 640,
+       content => template("bugzilla/localconfig")
+     }
+ 
+@@ -19,8 +19,8 @@
+     file { '/var/lib/bugzilla/params':
+       ensure => present,
+       owner => root,
+-      group => root,
+-      mode => 644,
++      group => apache,
++      mode => 640,
+       content => template("bugzilla/params")
+     }
+ 
+@@ -30,7 +30,7 @@
+       }
+ 
+     apache::vhost_other_app { "bugs.$domain":
+-      vhost_file => "bugzilla/vhost_bugs.mageia.org.conf",
++      vhost_file => "bugzilla/vhost_bugs.conf",
+     }
+ }
+ 
+
+Modified: puppet/modules/bugzilla/templates/params
+===================================================================
+--- puppet/modules/bugzilla/templates/params	2010-11-20 11:15:06 UTC (rev 339)
++++ puppet/modules/bugzilla/templates/params	2010-11-20 11:52:54 UTC (rev 340)
+@@ -1,9 +1,9 @@
+ %param = (
+-           'LDAPBaseDN' => 'ou=People,dc=mageia,dc=org',
+-           'LDAPbinddn' => 'cn=bugzilla-alamut,ou=System Accounts,dc=mageia,dc=org:<%= passwordLdap %>',
++           'LDAPBaseDN' => 'ou=People,<%= dc_suffix %>',
++           'LDAPbinddn' => 'cn=bugzilla-alamut,ou=System Accounts,<%= dc_suffix %>:<%= passwordLdap %>',
+            'LDAPfilter' => '',
+            'LDAPmailattribute' => 'mail',
+-           'LDAPserver' => 'ldap.mageia.org',
++           'LDAPserver' => 'ldap.<%= domain %>',
+            'LDAPstarttls' => '1',
+            'LDAPuidattribute' => 'uid',
+            'RADIUS_NAS_IP' => '',
+@@ -88,7 +88,7 @@
+            'strict_isolation' => 0,
+            'timetrackinggroup' => 'editbugs',
+            'upgrade_notification' => 'latest_stable_release',
+-           'urlbase' => 'http://bugs.mageia.org/',
++           'urlbase' => 'http://bugs.<%= domain %>/',
+            'use_mailer_queue' => 0,
+            'use_see_also' => 1,
+            'usebugaliases' => 0,
+
+Copied: puppet/modules/bugzilla/templates/vhost_bugs.conf (from rev 339, puppet/modules/bugzilla/templates/vhost_bugs.mageia.org.conf)
+===================================================================
+--- puppet/modules/bugzilla/templates/vhost_bugs.conf	                        (rev 0)
++++ puppet/modules/bugzilla/templates/vhost_bugs.conf	2010-11-20 11:52:54 UTC (rev 340)
+@@ -0,0 +1,13 @@
++<%
++path_data_directory = lib_dir + "/bugzilla"
++%>
++
++<VirtualHost *:80>
++        ServerName bugs.<%= domain %>
++        DocumentRoot /usr/share/bugzilla/www
++        Alias /bugzilla/data <%= path_data_directory %>
++        Alias /bugzilla /usr/share/bugzilla/www
++        <Location />
++                Allow from all
++        </Location>
++</VirtualHost>
+
+Deleted: puppet/modules/bugzilla/templates/vhost_bugs.mageia.org.conf
+===================================================================
+--- puppet/modules/bugzilla/templates/vhost_bugs.mageia.org.conf	2010-11-20 11:15:06 UTC (rev 339)
++++ puppet/modules/bugzilla/templates/vhost_bugs.mageia.org.conf	2010-11-20 11:52:54 UTC (rev 340)
+@@ -1,13 +0,0 @@
+-<%
+-path_data_directory = "/usr/lib" + ( architecture == "x86_64" ? '64' : '') + "/bugzilla"
+-%>
+-
+-<VirtualHost *:80>
+-        ServerName bugs.<%= domain %>
+-        DocumentRoot /usr/share/bugzilla/www
+-        Alias /bugzilla/data <%= path_data_directory %>
+-        Alias /bugzilla /usr/share/bugzilla/www
+-        <Location />
+-                Allow from all
+-        </Location>
+-</VirtualHost>
+
+Modified: puppet/modules/bugzilla/templates/webapp_bugzilla.conf
+===================================================================
+--- puppet/modules/bugzilla/templates/webapp_bugzilla.conf	2010-11-20 11:15:06 UTC (rev 339)
++++ puppet/modules/bugzilla/templates/webapp_bugzilla.conf	2010-11-20 11:52:54 UTC (rev 340)
+@@ -1,5 +1,5 @@
+ <%
+-path_data_directory = "/usr/lib" + ( architecture == "x86_64" ? '64' : '') + "/bugzilla"
++path_data_directory = lib_dir + "/bugzilla"
+ %>
+ 
+ <Directory /usr/share/bugzilla/www>
+
+Modified: puppet/modules/catdap/manifests/init.pp
+===================================================================
+--- puppet/modules/catdap/manifests/init.pp	2010-11-20 11:15:06 UTC (rev 339)
++++ puppet/modules/catdap/manifests/init.pp	2010-11-20 11:52:54 UTC (rev 340)
+@@ -25,8 +25,9 @@
+     
+     file { "$catdap_location/catdap_local.yml":
+         ensure => present,
+-        owner => apache,
+-        mode => 600,
++	owner => root,
++        group => apache,
++        mode => 640,
+         content => template("catdap/catdap_local.yml"),
+         require => Subversion::Snapshot[$catdap_location]
+     }
+
+Modified: puppet/modules/catdap/templates/catdap_local.yml
+===================================================================
+--- puppet/modules/catdap/templates/catdap_local.yml	2010-11-20 11:15:06 UTC (rev 339)
++++ puppet/modules/catdap/templates/catdap_local.yml	2010-11-20 11:52:54 UTC (rev 340)
+@@ -1,8 +1,4 @@
+ <%
+-# domain come from facter
+-
+-dc_suffix = 'dc=' + domain.gsub('.',',dc=')
+-
+ ldap_server = 'ldap.' + domain
+ 
+ ldap_password = catdap_password
+
+Modified: puppet/modules/epoll/manifests/init.pp
+===================================================================
+--- puppet/modules/epoll/manifests/init.pp	2010-11-20 11:15:06 UTC (rev 339)
++++ puppet/modules/epoll/manifests/init.pp	2010-11-20 11:52:54 UTC (rev 340)
+@@ -15,9 +15,9 @@
+     file { "epoll.yml": 
+         path => "/etc/epoll.yml",    
+         ensure => "present",
+-        owner => apache,
++        owner => root,
+         group => apache,
+-        mode => 600,
++        mode => 640,
+         content => template("epoll/epoll.yml")
+     }
+ }
+
+Modified: puppet/modules/mga-mirrors/manifests/init.pp
+===================================================================
+--- puppet/modules/mga-mirrors/manifests/init.pp	2010-11-20 11:15:06 UTC (rev 339)
++++ puppet/modules/mga-mirrors/manifests/init.pp	2010-11-20 11:52:54 UTC (rev 340)
+@@ -15,9 +15,9 @@
+     file { "mga-mirrors.ini": 
+         path => "/etc/mga-mirrors.ini",    
+         ensure => "present",
+-        owner => apache,
++        owner => root,
+         group => apache,
+-        mode => 600,
++        mode => 640,
+         content => template("mga-mirrors/mga-mirrors.ini")
+     }
+ }
+
+Modified: puppet/modules/openldap/templates/slapd.conf
+===================================================================
+--- puppet/modules/openldap/templates/slapd.conf	2010-11-20 11:15:06 UTC (rev 339)
++++ puppet/modules/openldap/templates/slapd.conf	2010-11-20 11:52:54 UTC (rev 340)
+@@ -1,9 +1,3 @@
+-<%
+-dc_suffix = 'dc=' + domain.gsub('.',',dc=')
+-path_module_directory = "/usr/lib" + ( architecture == "x86_64" ? '64' : '') + "/openldap"
+-
+-%>
+-
+ # slapd.conf template
+ include	/usr/share/openldap/schema/core.schema
+ include	/usr/share/openldap/schema/cosine.schema
+@@ -32,7 +26,7 @@
+ pidfile		/var/run/ldap/slapd.pid
+ argsfile	/var/run/ldap/slapd.args
+ 
+-modulepath	<%= path_module_directory %>
++modulepath	<%= lib_dir %>/openldap
+ moduleload	back_monitor.la
+ moduleload	syncprov.la
+ moduleload	ppolicy.la
+
+Modified: puppet/modules/openssh/manifests/init.pp
+===================================================================
+--- puppet/modules/openssh/manifests/init.pp	2010-11-20 11:15:06 UTC (rev 339)
++++ puppet/modules/openssh/manifests/init.pp	2010-11-20 11:52:54 UTC (rev 340)
+@@ -1,13 +1,8 @@
+ class openssh {
+ 
+     # some trick to manage sftp server, who is arch dependent on mdv    
+-    $usr_lib = $architecture ? {
+-        x86_64 => "lib64",
+-        default => "lib"
+-    }
++    $path_to_sftp = "$lib_dir/ssh/"
+ 
+-    $path_to_sftp = "/usr/$usr_lib/ssh/"
+-
+     package { "openssh-server":
+         ensure => installed
+     }
+
+Modified: puppet/modules/pam/templates/ldap.conf
+===================================================================
+--- puppet/modules/pam/templates/ldap.conf	2010-11-20 11:15:06 UTC (rev 339)
++++ puppet/modules/pam/templates/ldap.conf	2010-11-20 11:52:54 UTC (rev 340)
+@@ -1,6 +1,3 @@
+-<%
+-dc_suffix = 'dc=' + domain.gsub('.',',dc=')
+-%>
+ 
+ uri ldap://ldap.<%= domain %>
+ base <%= dc_suffix %>
+
+Modified: puppet/modules/postfix/templates/main.cf
+===================================================================
+--- puppet/modules/postfix/templates/main.cf	2010-11-20 11:15:06 UTC (rev 339)
++++ puppet/modules/postfix/templates/main.cf	2010-11-20 11:52:54 UTC (rev 340)
+@@ -3,9 +3,6 @@
+ # This file contains only the parameters changed from a default install
+ # see /etc/postfix/main.cf.dist for a commented, fuller version of this file.
+ 
+-<%
+-path_daemon_directory = "/usr/lib" + ( architecture == "x86_64" ? '64' : '') + "/postfix/"
+-%>
+ 
+ # These are changed by postfix install script
+ readme_directory = /usr/share/doc/postfix/README_FILES
+@@ -14,7 +11,7 @@
+ setgid_group = postdrop
+ command_directory = /usr/sbin
+ manpage_directory = /usr/share/man
+-daemon_directory = <%= path_daemon_directory %>
++daemon_directory = <%= lib_dir %>/postfix/
+ data_directory = /var/lib/postfix
+ newaliases_path = /usr/bin/newaliases
+ mailq_path = /usr/bin/mailq
+
+Modified: puppet/modules/postfix/templates/simple_relay_main.cf
+===================================================================
+--- puppet/modules/postfix/templates/simple_relay_main.cf	2010-11-20 11:15:06 UTC (rev 339)
++++ puppet/modules/postfix/templates/simple_relay_main.cf	2010-11-20 11:52:54 UTC (rev 340)
+@@ -3,9 +3,6 @@
+ # This file contains only the parameters changed from a default install
+ # see /etc/postfix/main.cf.dist for a commented, fuller version of this file.
+ 
+-<%
+-path_daemon_directory = "/usr/lib" + ( architecture == "x86_64" ? '64' : '') + "/postfix/"
+-%>
+ 
+ # These are changed by postfix install script
+ readme_directory = /usr/share/doc/postfix/README_FILES
+@@ -14,7 +11,7 @@
+ setgid_group = postdrop
+ command_directory = /usr/sbin
+ manpage_directory = /usr/share/man
+-daemon_directory = <%= path_daemon_directory %>
++daemon_directory = <%= lib_dir %>/postfix/
+ data_directory = /var/lib/postfix
+ newaliases_path = /usr/bin/newaliases
+ mailq_path = /usr/bin/mailq
+
+Modified: puppet/modules/restrictshell/templates/ldap-sshkey2file.py
+===================================================================
+--- puppet/modules/restrictshell/templates/ldap-sshkey2file.py	2010-11-20 11:15:06 UTC (rev 339)
++++ puppet/modules/restrictshell/templates/ldap-sshkey2file.py	2010-11-20 11:52:54 UTC (rev 340)
+@@ -9,9 +9,7 @@
+ except ImportError, e:
+     print "Please install python-ldap before running this program"
+     sys.exit(1)
+-<%
+-dc_suffix = 'dc=' + domain.gsub('.',',dc=')
+-%>
++
+ basedn="<%= dc_suffix %>"
+ peopledn="ou=people,%s" % basedn
+ uris=['ldap://ldap.<%= domain %>']
+
+Modified: puppet/modules/sympa/manifests/init.pp
+===================================================================
+--- puppet/modules/sympa/manifests/init.pp	2010-11-20 11:15:06 UTC (rev 339)
++++ puppet/modules/sympa/manifests/init.pp	2010-11-20 11:52:54 UTC (rev 340)
+@@ -11,9 +11,11 @@
+ 
+     file { '/etc/sympa/sympa.conf':
+         ensure => present,
+-        owner => root,
+-        group => root,
+-        mode => 644,
++	# should be cleaner to have it root owned, but puppet do not support acl
++	# and in any case, config will be reset if it change
++        owner => sympa,
++        group => apache,
++        mode => 640,
+         content => template("sympa/sympa.conf")
+     }
+ 
+
+Modified: puppet/modules/sympa/templates/auth.conf
+===================================================================
+--- puppet/modules/sympa/templates/auth.conf	2010-11-20 11:15:06 UTC (rev 339)
++++ puppet/modules/sympa/templates/auth.conf	2010-11-20 11:52:54 UTC (rev 340)
+@@ -1,13 +1,13 @@
+ ldap
+-        host                            ldap.mageia.org:389
++        host                            ldap.<%= domain %>:389
+         timeout                         30
+-        suffix                          dc=mageia,dc=org
++        suffix                          <%= dc_suffix %>
+         get_dn_by_uid_filter            (uid=[sender])
+         get_dn_by_email                 (|(mail=[sender])(mailalternateaddress=[sender]))
+         email_attribute                 mail
+         scope                           sub
++	use_ssl                         1
+ 
+-
+ user_table
+         regexp                 .*
+ 
+
+Modified: puppet/modules/transifex/manifests/init.pp
+===================================================================
+--- puppet/modules/transifex/manifests/init.pp	2010-11-20 11:15:06 UTC (rev 339)
++++ puppet/modules/transifex/manifests/init.pp	2010-11-20 11:52:54 UTC (rev 340)
+@@ -8,8 +8,8 @@
+     path => "/etc/transifex/20-engines.conf",
+     ensure => present,
+     owner => root,
+-    group => root,
+-    mode => 755,
++    group => apache,
++    mode => 640,
+     content => template("transifex/20-engines.conf")
+   }
+ 
+@@ -18,7 +18,7 @@
+     ensure => present,
+     owner => root,
+     group => root,
+-    mode => 755,
++    mode => 644,
+     content => template("transifex/30-site.conf")
+   }
+ 
+
+Modified: puppet/modules/transifex/templates/20-engines.conf
+===================================================================
+--- puppet/modules/transifex/templates/20-engines.conf	2010-11-20 11:15:06 UTC (rev 339)
++++ puppet/modules/transifex/templates/20-engines.conf	2010-11-20 11:52:54 UTC (rev 340)
+@@ -10,7 +10,7 @@
+ # The following are not used for sqlite3
+ DATABASE_USER = 'transifex'
+ DATABASE_PASSWORD = '<%= password %>'
+-DATABASE_HOST = 'pgsql.mageia.org'           # Set to empty string for local socket
++DATABASE_HOST = 'pgsql.<%= domain %>'           # Set to empty string for local socket
+ DATABASE_PORT = ''             # Set to empty string for default
+ 
+ ## Caching (optional)
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101120/825456eb/attachment-0001.html>
+
+ + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000684.html b/zarb-ml/mageia-sysadm/2010-November/000684.html new file mode 100644 index 000000000..a42c6515f --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000684.html @@ -0,0 +1,80 @@ + + + + [Mageia-sysadm] [340] Merge remote branch 'vm_valstar/master' + + + + + + + + + +

[Mageia-sysadm] [340] Merge remote branch 'vm_valstar/master'

+ Michael scherer + misc at zarb.org +
+ Sat Nov 20 12:57:07 CET 2010 +

+
+ +
On Sat, Nov 20, 2010 at 12:52:54PM +0100, root at mageia.org wrote:
+> Revision: 340
+> Author:   misc
+> Date:     2010-11-20 12:52:54 +0100 (Sat, 20 Nov 2010)
+> Log Message:
+> -----------
+> Merge remote branch 'vm_valstar/master'
+
+Oups :/
+
+Sorry, I (again) managed to do thing wrong with git merge.
+here is the list of change :
+    - do not let file with passwords to be world readable 
+       ( even if being readable by apache is not good either, but needed as the password is used by apache )
+    - use ldaps for sympa
+    - add 2 new facter macro, lib_dir ( %lib_dir from rpm) and dc_suffix ( dc=mageia,dc=org ), as we cut and paste them in every template
+    - remove the version copied everywhere
+    - remove hardcoded domain in bugzilla and others
+-- 
+Michael Scherer
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000685.html b/zarb-ml/mageia-sysadm/2010-November/000685.html new file mode 100644 index 000000000..6a9eef169 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000685.html @@ -0,0 +1,64 @@ + + + + [Mageia-sysadm] Puppet Report for alamut.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for alamut.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Sat Nov 20 13:10:18 CET 2010 +

+
+ +
Sat Nov 20 13:10:18 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Failed to parse template postfix/simple_relay_main.cf: Could not find value for 'lib_dir' at /etc/puppet/modules/postfix/manifests/init.pp:30 on node alamut.mageia.org
+Sat Nov 20 13:10:18 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000686.html b/zarb-ml/mageia-sysadm/2010-November/000686.html new file mode 100644 index 000000000..330c05180 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000686.html @@ -0,0 +1,64 @@ + + + + [Mageia-sysadm] Puppet Report for ecosse.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for ecosse.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Sat Nov 20 13:11:27 CET 2010 +

+
+ +
Sat Nov 20 13:11:27 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Failed to parse template postfix/simple_relay_main.cf: Could not find value for 'lib_dir' at /etc/puppet/modules/postfix/manifests/init.pp:30 on node ecosse.mageia.org
+Sat Nov 20 13:11:27 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000687.html b/zarb-ml/mageia-sysadm/2010-November/000687.html new file mode 100644 index 000000000..458fb5c25 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000687.html @@ -0,0 +1,64 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Sat Nov 20 13:11:28 CET 2010 +

+
+ +
Sat Nov 20 13:11:28 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Failed to parse template postfix/simple_relay_main.cf: Could not find value for 'lib_dir' at /etc/puppet/modules/postfix/manifests/init.pp:30 on node jonund.mageia.org
+Sat Nov 20 13:11:28 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000688.html b/zarb-ml/mageia-sysadm/2010-November/000688.html new file mode 100644 index 000000000..58eefae5a --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000688.html @@ -0,0 +1,64 @@ + + + + [Mageia-sysadm] Puppet Report for krampouezh.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for krampouezh.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Sat Nov 20 13:11:57 CET 2010 +

+
+ +
Sat Nov 20 13:11:57 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Failed to parse template postfix/simple_relay_main.cf: Could not find value for 'lib_dir' at /etc/puppet/modules/postfix/manifests/init.pp:30 on node krampouezh.mageia.org
+Sat Nov 20 13:11:57 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000689.html b/zarb-ml/mageia-sysadm/2010-November/000689.html new file mode 100644 index 000000000..93d813be2 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000689.html @@ -0,0 +1,64 @@ + + + + [Mageia-sysadm] Puppet Report for champagne.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for champagne.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Sat Nov 20 13:18:01 CET 2010 +

+
+ +
Sat Nov 20 13:18:00 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Failed to parse template postfix/simple_relay_main.cf: Could not find value for 'lib_dir' at /etc/puppet/modules/postfix/manifests/init.pp:30 on node champagne.mageia.org
+Sat Nov 20 13:18:00 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000690.html b/zarb-ml/mageia-sysadm/2010-November/000690.html new file mode 100644 index 000000000..7691baa19 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000690.html @@ -0,0 +1,64 @@ + + + + [Mageia-sysadm] Puppet Report for alamut.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for alamut.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Sat Nov 20 13:37:12 CET 2010 +

+
+ +
Sat Nov 20 13:37:12 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Failed to parse template postfix/simple_relay_main.cf: Could not find value for 'lib_dir' at /etc/puppet/modules/postfix/manifests/init.pp:30 on node alamut.mageia.org
+Sat Nov 20 13:37:12 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000691.html b/zarb-ml/mageia-sysadm/2010-November/000691.html new file mode 100644 index 000000000..60b9e5f71 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000691.html @@ -0,0 +1,111 @@ + + + + [Mageia-sysadm] [341] - rename the module, as I used lib_dir everywhere + + + + + + + + + +

[Mageia-sysadm] [341] - rename the module, as I used lib_dir everywhere

+ root at mageia.org + root at mageia.org +
+ Sat Nov 20 13:40:00 CET 2010 +

+
+ +
Revision: 341
+Author:   misc
+Date:     2010-11-20 13:40:00 +0100 (Sat, 20 Nov 2010)
+Log Message:
+-----------
+- rename the module, as I used lib_dir everywhere
+
+Added Paths:
+-----------
+    puppet/modules/facter/lib/facter/lib_dir.rb
+
+Removed Paths:
+-------------
+    puppet/modules/facter/lib/facter/libdir.rb
+
+Copied: puppet/modules/facter/lib/facter/lib_dir.rb (from rev 340, puppet/modules/facter/lib/facter/libdir.rb)
+===================================================================
+--- puppet/modules/facter/lib/facter/lib_dir.rb	                        (rev 0)
++++ puppet/modules/facter/lib/facter/lib_dir.rb	2010-11-20 12:40:00 UTC (rev 341)
+@@ -0,0 +1,10 @@
++Facter.add("lib_dir") do
++    setcode do
++        begin
++            Facter.architecture
++        rescue 
++            Facter.loadfacts()
++        end
++        '/usr/lib' + ( Facter.value('architecture') == "x86_64" ? '64' : '') + '/'
++    end
++end    
+
+Deleted: puppet/modules/facter/lib/facter/libdir.rb
+===================================================================
+--- puppet/modules/facter/lib/facter/libdir.rb	2010-11-20 11:52:54 UTC (rev 340)
++++ puppet/modules/facter/lib/facter/libdir.rb	2010-11-20 12:40:00 UTC (rev 341)
+@@ -1,10 +0,0 @@
+-Facter.add("libdir") do
+-    setcode do
+-        begin
+-            Facter.architecture
+-        rescue 
+-            Facter.loadfacts()
+-        end
+-        '/usr/lib' + ( Facter.value('architecture') == "x86_64" ? '64' : '') + '/'
+-    end
+-end    
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101120/4eddee1b/attachment.html>
+
+ + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000692.html b/zarb-ml/mageia-sysadm/2010-November/000692.html new file mode 100644 index 000000000..4abf97033 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000692.html @@ -0,0 +1,64 @@ + + + + [Mageia-sysadm] Puppet Report for champagne.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for champagne.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Sat Nov 20 13:48:02 CET 2010 +

+
+ +
Sat Nov 20 13:48:01 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Failed to parse template postfix/simple_relay_main.cf: Could not find value for 'lib_dir' at /etc/puppet/modules/postfix/manifests/init.pp:30 on node champagne.mageia.org
+Sat Nov 20 13:48:01 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000693.html b/zarb-ml/mageia-sysadm/2010-November/000693.html new file mode 100644 index 000000000..4b8ee696b --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000693.html @@ -0,0 +1,85 @@ + + + + [Mageia-sysadm] [340] Merge remote branch 'vm_valstar/master' + + + + + + + + + +

[Mageia-sysadm] [340] Merge remote branch 'vm_valstar/master'

+ Olivier Blin + mageia at blino.org +
+ Sat Nov 20 13:59:18 CET 2010 +

+
+ +
Michael scherer <misc at zarb.org> writes:
+
+> On Sat, Nov 20, 2010 at 12:52:54PM +0100, root at mageia.org wrote:
+>> Revision: 340
+>> Author:   misc
+>> Date:     2010-11-20 12:52:54 +0100 (Sat, 20 Nov 2010)
+>> Log Message:
+>> -----------
+>> Merge remote branch 'vm_valstar/master'
+>
+> Oups :/
+>
+> Sorry, I (again) managed to do thing wrong with git merge.
+> here is the list of change :
+
+Maybe you can use svn pe to fix the logs :)
+
+>     - do not let file with passwords to be world readable 
+>        ( even if being readable by apache is not good either, but needed as the password is used by apache )
+>     - use ldaps for sympa
+>     - add 2 new facter macro, lib_dir ( %lib_dir from rpm) and dc_suffix ( dc=mageia,dc=org ), as we cut and paste them in every template
+>     - remove the version copied everywhere
+>     - remove hardcoded domain in bugzilla and others
+
+-- 
+Olivier Blin - blino
+
+ + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000694.html b/zarb-ml/mageia-sysadm/2010-November/000694.html new file mode 100644 index 000000000..decea5aac --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000694.html @@ -0,0 +1,63 @@ + + + + [Mageia-sysadm] Puppet Report for champagne.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for champagne.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Sat Nov 20 14:14:40 CET 2010 +

+
+ +
Sat Nov 20 14:14:40 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Failed to parse template postfix/simple_relay_main.cf: Could not find value for 'lib_dir' at /etc/puppet/modules/postfix/manifests/init.pp:30 on node champagne.mageia.org
+Sat Nov 20 14:14:40 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000695.html b/zarb-ml/mageia-sysadm/2010-November/000695.html new file mode 100644 index 000000000..b7fd20e49 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000695.html @@ -0,0 +1,84 @@ + + + + [Mageia-sysadm] [340] Merge remote branch 'vm_valstar/master' + + + + + + + + + +

[Mageia-sysadm] [340] Merge remote branch 'vm_valstar/master'

+ Michael scherer + misc at zarb.org +
+ Sat Nov 20 16:08:25 CET 2010 +

+
+ +
On Sat, Nov 20, 2010 at 01:59:18PM +0100, Olivier Blin wrote:
+> Michael scherer <misc at zarb.org> writes:
+> 
+> > On Sat, Nov 20, 2010 at 12:52:54PM +0100, root at mageia.org wrote:
+> >> Revision: 340
+> >> Author:   misc
+> >> Date:     2010-11-20 12:52:54 +0100 (Sat, 20 Nov 2010)
+> >> Log Message:
+> >> -----------
+> >> Merge remote branch 'vm_valstar/master'
+> >
+> > Oups :/
+> >
+> > Sorry, I (again) managed to do thing wrong with git merge.
+> > here is the list of change :
+> 
+> Maybe you can use svn pe to fix the logs :)
+
+Yup, good idea. I have used the default script
+to enable the change for svn:log.
+I will also try to find a script to send mail on change,
+and add it to the subversion::repository ressources I wrote.
+
+-- 
+Michael Scherer
+
+ + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000696.html b/zarb-ml/mageia-sysadm/2010-November/000696.html new file mode 100644 index 000000000..55754d9a7 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000696.html @@ -0,0 +1,90 @@ + + + + [Mageia-sysadm] [342] Allow user bugs to access template1 database + + + + + + + + + +

[Mageia-sysadm] [342] Allow user bugs to access template1 database

+ root at mageia.org + root at mageia.org +
+ Sat Nov 20 19:02:18 CET 2010 +

+
+ +
Revision: 342
+Author:   dmorgan
+Date:     2010-11-20 19:02:18 +0100 (Sat, 20 Nov 2010)
+Log Message:
+-----------
+Allow user bugs to access template1 database
+
+Modified Paths:
+--------------
+    puppet/modules/postgresql/templates/pg_hba.conf
+
+Modified: puppet/modules/postgresql/templates/pg_hba.conf
+===================================================================
+--- puppet/modules/postgresql/templates/pg_hba.conf	2010-11-20 12:40:00 UTC (rev 341)
++++ puppet/modules/postgresql/templates/pg_hba.conf	2010-11-20 18:02:18 UTC (rev 342)
+@@ -100,6 +100,11 @@
+ hostssl   bugs             bugs            212.85.158.146/32       md5
+ hostssl   bugs             bugs            2a02:2178:2:7::2/128    md5
+ 
++host      template1        bugs            127.0.0.1/32            md5
++host      template1        bugs            ::1/128                 md5
++hostssl   template1        bugs            212.85.158.146/32       md5
++hostssl   template1        bugs            2a02:2178:2:7::2/128    md5
++
+ host      sympa            sympa           127.0.0.1/32            md5
+ host      sympa            sympa           ::1/128                 md5
+ hostssl   sympa            sympa           212.85.158.146/32       md5
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101120/ab17b061/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000697.html b/zarb-ml/mageia-sysadm/2010-November/000697.html new file mode 100644 index 000000000..63814cc15 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000697.html @@ -0,0 +1,87 @@ + + + + [Mageia-sysadm] [343] Add comment about previous commit + + + + + + + + + +

[Mageia-sysadm] [343] Add comment about previous commit

+ root at mageia.org + root at mageia.org +
+ Sat Nov 20 22:46:54 CET 2010 +

+
+ +
Revision: 343
+Author:   dmorgan
+Date:     2010-11-20 22:46:54 +0100 (Sat, 20 Nov 2010)
+Log Message:
+-----------
+Add comment about previous commit
+
+Modified Paths:
+--------------
+    puppet/modules/postgresql/templates/pg_hba.conf
+
+Modified: puppet/modules/postgresql/templates/pg_hba.conf
+===================================================================
+--- puppet/modules/postgresql/templates/pg_hba.conf	2010-11-20 18:02:18 UTC (rev 342)
++++ puppet/modules/postgresql/templates/pg_hba.conf	2010-11-20 21:46:54 UTC (rev 343)
+@@ -100,6 +100,8 @@
+ hostssl   bugs             bugs            212.85.158.146/32       md5
+ hostssl   bugs             bugs            2a02:2178:2:7::2/128    md5
+ 
++# When creating the database ( with bin/checkstup.pl ) bugzilla need to 
++# access to template1 ( https://bugzilla.mozilla.org/show_bug.cgi?id=542507 )
+ host      template1        bugs            127.0.0.1/32            md5
+ host      template1        bugs            ::1/128                 md5
+ hostssl   template1        bugs            212.85.158.146/32       md5
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101120/47738824/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000698.html b/zarb-ml/mageia-sysadm/2010-November/000698.html new file mode 100644 index 000000000..df8916827 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000698.html @@ -0,0 +1,98 @@ + + + + [Mageia-sysadm] [344] - create a self signed certificate if not present ( for test vm ) + + + + + + + + + +

[Mageia-sysadm] [344] - create a self signed certificate if not present ( for test vm )

+ root at mageia.org + root at mageia.org +
+ Sun Nov 21 17:45:39 CET 2010 +

+
+ +
Revision: 344
+Author:   misc
+Date:     2010-11-21 17:45:39 +0100 (Sun, 21 Nov 2010)
+Log Message:
+-----------
+- create a self signed certificate if not present ( for test vm )
+
+Modified Paths:
+--------------
+    puppet/modules/openldap/manifests/init.pp
+
+Modified: puppet/modules/openldap/manifests/init.pp
+===================================================================
+--- puppet/modules/openldap/manifests/init.pp	2010-11-20 21:46:54 UTC (rev 343)
++++ puppet/modules/openldap/manifests/init.pp	2010-11-21 16:45:39 UTC (rev 344)
+@@ -9,6 +9,19 @@
+             subscribe => [ Package['openldap-servers']],
+             path => "/etc/init.d/ldap"
+         }
++
++        file {"/etc/ssl/openldap/":
++            ensure => directory,
++            owner => root,
++            group => root,
++            mode => 755,
++        }
++
++        $pem_file = 'ldap.pem'
++        exec { "openssl req -x509 -nodes -days 365 -newkey rsa:1024 -keyout $pem_file -out $pem_file -subj  '/CN=ldap.$domain'":
++            cwd => "/etc/ssl/openldap/",
++            creates => "/etc/ssl/openldap/$pem_file"
++        }
+     }
+ 
+     # /etc/
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101121/1e3baaba/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000699.html b/zarb-ml/mageia-sysadm/2010-November/000699.html new file mode 100644 index 000000000..b7fbc4576 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000699.html @@ -0,0 +1,94 @@ + + + + [Mageia-sysadm] [345] - add a class to generate self signed certificate ( as we may likely + + + + + + + + + +

[Mageia-sysadm] [345] - add a class to generate self signed certificate ( as we may likely

+ root at mageia.org + root at mageia.org +
+ Sun Nov 21 18:19:59 CET 2010 +

+
+ +
Revision: 345
+Author:   misc
+Date:     2010-11-21 18:19:59 +0100 (Sun, 21 Nov 2010)
+Log Message:
+-----------
+- add a class to generate self signed certificate ( as we may likely
+  need it elsewhere )
+
+Added Paths:
+-----------
+    puppet/modules/openssl/
+    puppet/modules/openssl/manifests/
+    puppet/modules/openssl/manifests/init.pp
+
+Added: puppet/modules/openssl/manifests/init.pp
+===================================================================
+--- puppet/modules/openssl/manifests/init.pp	                        (rev 0)
++++ puppet/modules/openssl/manifests/init.pp	2010-11-21 17:19:59 UTC (rev 345)
+@@ -0,0 +1,12 @@
++class openssl {
++	define self_signed_cert($directory = '/etc/certs') {
++        package { 'openssl':
++            ensure => installed
++        }
++        $pem_file = "$name.pem"
++	    exec { "openssl req -x509 -nodes -days 365 -newkey rsa:2048 -keyout $pem_file -out $pem_file -subj  '/CN=$name.$domain'":
++            cwd => "$directory",
++            creates => "$directory/$name.pem"
++        }
++	}
++}
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101121/1c7ccce7/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000700.html b/zarb-ml/mageia-sysadm/2010-November/000700.html new file mode 100644 index 000000000..a420114b7 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000700.html @@ -0,0 +1,87 @@ + + + + [Mageia-sysadm] [346] make jonund a buildnode again + + + + + + + + + +

[Mageia-sysadm] [346] make jonund a buildnode again

+ root at mageia.org + root at mageia.org +
+ Sun Nov 21 18:20:36 CET 2010 +

+
+ +
Revision: 346
+Author:   blino
+Date:     2010-11-21 18:20:36 +0100 (Sun, 21 Nov 2010)
+Log Message:
+-----------
+make jonund a buildnode again
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-21 17:19:59 UTC (rev 345)
++++ puppet/manifests/nodes.pp	2010-11-21 17:20:36 UTC (rev 346)
+@@ -60,7 +60,7 @@
+ # Location: IELO datacenter (marseille)
+ #
+     include default_mageia_server
+-    #include buildsystem::buildnode
++    include buildsystem::buildnode
+     timezone::timezone { "Europe/Paris": }
+     include shorewall
+     include shorewall::default_firewall
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101121/e269a274/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000701.html b/zarb-ml/mageia-sysadm/2010-November/000701.html new file mode 100644 index 000000000..91a0a1feb --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000701.html @@ -0,0 +1,91 @@ + + + + [Mageia-sysadm] [347] - use new class for openssl certs + + + + + + + + + +

[Mageia-sysadm] [347] - use new class for openssl certs

+ root at mageia.org + root at mageia.org +
+ Sun Nov 21 18:22:34 CET 2010 +

+
+ +
Revision: 347
+Author:   misc
+Date:     2010-11-21 18:22:33 +0100 (Sun, 21 Nov 2010)
+Log Message:
+-----------
+- use new class for openssl certs
+
+Modified Paths:
+--------------
+    puppet/modules/openldap/manifests/init.pp
+
+Modified: puppet/modules/openldap/manifests/init.pp
+===================================================================
+--- puppet/modules/openldap/manifests/init.pp	2010-11-21 17:20:36 UTC (rev 346)
++++ puppet/modules/openldap/manifests/init.pp	2010-11-21 17:22:33 UTC (rev 347)
+@@ -17,10 +17,8 @@
+             mode => 755,
+         }
+ 
+-        $pem_file = 'ldap.pem'
+-        exec { "openssl req -x509 -nodes -days 365 -newkey rsa:1024 -keyout $pem_file -out $pem_file -subj  '/CN=ldap.$domain'":
+-            cwd => "/etc/ssl/openldap/",
+-            creates => "/etc/ssl/openldap/$pem_file"
++        openssl::self_signed_cert{ 'ldap':
++            directory => "/etc/ssl/openldap/"
+         }
+     }
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101121/50216f7e/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000702.html b/zarb-ml/mageia-sysadm/2010-November/000702.html new file mode 100644 index 000000000..0311d545b --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000702.html @@ -0,0 +1,61 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Sun Nov 21 18:29:40 CET 2010 +

+
+ +
Sun Nov 21 18:29:39 +0100 2010 /Stage[main]/Buildsystem::Iurt/User[buildbot]/ensure (err): change from absent to present failed: Could not create user buildbot: Execution of '/usr/sbin/useradd -s /bin/bash -c System user use to run build bots -m buildbot' returned 9: useradd: group buildbot exists - if you want to add this user to that group, use -g.
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000703.html b/zarb-ml/mageia-sysadm/2010-November/000703.html new file mode 100644 index 000000000..baff9a6ed --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000703.html @@ -0,0 +1,61 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Sun Nov 21 18:30:16 CET 2010 +

+
+ +
Sun Nov 21 18:30:16 +0100 2010 /Stage[main]/Buildsystem::Iurt/User[buildbot]/ensure (err): change from absent to present failed: Could not create user buildbot: Execution of '/usr/sbin/useradd -s /bin/bash -c System user use to run build bots -m buildbot' returned 9: useradd: group buildbot exists - if you want to add this user to that group, use -g.
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000704.html b/zarb-ml/mageia-sysadm/2010-November/000704.html new file mode 100644 index 000000000..971355f63 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000704.html @@ -0,0 +1,89 @@ + + + + [Mageia-sysadm] [348] use iurt as build user login (not to clash with buildbot package) + + + + + + + + + +

[Mageia-sysadm] [348] use iurt as build user login (not to clash with buildbot package)

+ root at mageia.org + root at mageia.org +
+ Sun Nov 21 18:33:56 CET 2010 +

+
+ +
Revision: 348
+Author:   blino
+Date:     2010-11-21 18:33:56 +0100 (Sun, 21 Nov 2010)
+Log Message:
+-----------
+use iurt as build user login (not to clash with buildbot package)
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-21 17:22:33 UTC (rev 347)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-21 17:33:56 UTC (rev 348)
+@@ -23,8 +23,8 @@
+     class iurt {
+         include sudo
+ 
+-        $home_dir = "/home/buildbot/"
+-        $build_login = "buildbot"
++        $home_dir = "/home/iurt/"
++        $build_login = "iurt"
+         # build node common settings
+         # we could have the following skip list to use less space:
+         # '/(drakx-installer-binaries|drakx-installer-advertising|gfxboot|drakx-installer-stage2|mandriva-theme)/'
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101121/d49c3112/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000705.html b/zarb-ml/mageia-sysadm/2010-November/000705.html new file mode 100644 index 000000000..51d5e70bf --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000705.html @@ -0,0 +1,86 @@ + + + + [Mageia-sysadm] [349] force build user group to previously created group + + + + + + + + + +

[Mageia-sysadm] [349] force build user group to previously created group

+ root at mageia.org + root at mageia.org +
+ Sun Nov 21 18:34:53 CET 2010 +

+
+ +
Revision: 349
+Author:   blino
+Date:     2010-11-21 18:34:53 +0100 (Sun, 21 Nov 2010)
+Log Message:
+-----------
+force build user group to previously created group
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-21 17:33:56 UTC (rev 348)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-21 17:34:53 UTC (rev 349)
+@@ -57,6 +57,7 @@
+             ensure => present,
+             comment => "System user use to run build bots",
+             managehome => true,
++            gid => $build_login,
+             shell => "/bin/bash",
+         }
+     }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101121/e5c8563a/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000706.html b/zarb-ml/mageia-sysadm/2010-November/000706.html new file mode 100644 index 000000000..d3e4f5d21 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000706.html @@ -0,0 +1,111 @@ + + + + [Mageia-sysadm] [350] move task-bs-cluster-main dep in buildsystem::mainnode + + + + + + + + + +

[Mageia-sysadm] [350] move task-bs-cluster-main dep in buildsystem::mainnode

+ root at mageia.org + root at mageia.org +
+ Sun Nov 21 18:42:09 CET 2010 +

+
+ +
Revision: 350
+Author:   blino
+Date:     2010-11-21 18:42:09 +0100 (Sun, 21 Nov 2010)
+Log Message:
+-----------
+move task-bs-cluster-main dep in buildsystem::mainnode
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-21 17:34:53 UTC (rev 349)
++++ puppet/manifests/nodes.pp	2010-11-21 17:42:09 UTC (rev 350)
+@@ -18,13 +18,11 @@
+     include subversion::client
+     include subversion::server
+     include puppet::master
++    include buildsystem::mainnode
+ 
+     subversion::snapshot { "/etc/puppet":
+         source => "svn://svn.mageia.org/adm/puppet/"
+     }
+-    package {"task-bs-cluster-main":
+-        ensure => "installed"
+-    }
+ }
+ 
+ # web apps
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-21 17:34:53 UTC (rev 349)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-21 17:42:09 UTC (rev 350)
+@@ -1,5 +1,11 @@
+ class buildsystem {
+ 
++    class mainnode {
++        package { "task-bs-cluster-main":
++            ensure => "installed"
++        }
++    }
++
+     class buildnode {
+         include iurt
+     }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101121/0a357cd2/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000707.html b/zarb-ml/mageia-sysadm/2010-November/000707.html new file mode 100644 index 000000000..474dbf40e --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000707.html @@ -0,0 +1,134 @@ + + + + [Mageia-sysadm] [351] split a iurtuser class, to be used on main node + + + + + + + + + +

[Mageia-sysadm] [351] split a iurtuser class, to be used on main node

+ root at mageia.org + root at mageia.org +
+ Sun Nov 21 18:46:30 CET 2010 +

+
+ +
Revision: 351
+Author:   blino
+Date:     2010-11-21 18:46:29 +0100 (Sun, 21 Nov 2010)
+Log Message:
+-----------
+split a iurtuser class, to be used on main node
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-21 17:42:09 UTC (rev 350)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-21 17:46:29 UTC (rev 351)
+@@ -26,11 +26,26 @@
+ 
+     }
+ 
++    $build_login = "iurt"
++    $build_home_dir = "/home/iurt/"
++
++    class iurtuser {
++        group {"$build_login": 
++            ensure => present,
++        }
++
++        user {"$build_login":
++            ensure => present,
++            comment => "System user use to run build bots",
++            managehome => true,
++            gid => $build_login,
++            shell => "/bin/bash",
++        }
++    }
++
+     class iurt {
+         include sudo
+ 
+-        $home_dir = "/home/iurt/"
+-        $build_login = "iurt"
+         # build node common settings
+         # we could have the following skip list to use less space:
+         # '/(drakx-installer-binaries|drakx-installer-advertising|gfxboot|drakx-installer-stage2|mandriva-theme)/'
+@@ -39,7 +54,7 @@
+             ensure => installed;
+         }
+ 
+-        file { "$home_dir/.iurt.cauldron.conf":
++        file { "$build_home_dir/.iurt.cauldron.conf":
+             ensure => present,
+             owner => $build_login,
+             group => $build_login,
+@@ -54,17 +69,5 @@
+             mode => 440,
+             content => template("buildsystem/sudoers.iurt")
+         }
+-
+-        group {"$build_login": 
+-            ensure => present,
+-        }
+-
+-        user {"$build_login":
+-            ensure => present,
+-            comment => "System user use to run build bots",
+-            managehome => true,
+-            gid => $build_login,
+-            shell => "/bin/bash",
+-        }
+     }
+ }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101121/dc89b937/attachment-0001.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000708.html b/zarb-ml/mageia-sysadm/2010-November/000708.html new file mode 100644 index 000000000..c30b41a0d --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000708.html @@ -0,0 +1,86 @@ + + + + [Mageia-sysadm] [352] include iurtuser in iurt class + + + + + + + + + +

[Mageia-sysadm] [352] include iurtuser in iurt class

+ root at mageia.org + root at mageia.org +
+ Sun Nov 21 18:47:02 CET 2010 +

+
+ +
Revision: 352
+Author:   blino
+Date:     2010-11-21 18:47:02 +0100 (Sun, 21 Nov 2010)
+Log Message:
+-----------
+include iurtuser in iurt class
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-21 17:46:29 UTC (rev 351)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-21 17:47:02 UTC (rev 352)
+@@ -45,6 +45,7 @@
+ 
+     class iurt {
+         include sudo
++        include iurtuser
+ 
+         # build node common settings
+         # we could have the following skip list to use less space:
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101121/c1bd4a0a/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000709.html b/zarb-ml/mageia-sysadm/2010-November/000709.html new file mode 100644 index 000000000..1af41a88d --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000709.html @@ -0,0 +1,87 @@ + + + + [Mageia-sysadm] [353] include iurtuser on main node as well + + + + + + + + + +

[Mageia-sysadm] [353] include iurtuser on main node as well

+ root at mageia.org + root at mageia.org +
+ Sun Nov 21 18:47:30 CET 2010 +

+
+ +
Revision: 353
+Author:   blino
+Date:     2010-11-21 18:47:29 +0100 (Sun, 21 Nov 2010)
+Log Message:
+-----------
+include iurtuser on main node as well
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-21 17:47:02 UTC (rev 352)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-21 17:47:29 UTC (rev 353)
+@@ -1,6 +1,8 @@
+ class buildsystem {
+ 
+     class mainnode {
++        include iurtuser
++
+         package { "task-bs-cluster-main":
+             ensure => "installed"
+         }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101121/407ca6c6/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000710.html b/zarb-ml/mageia-sysadm/2010-November/000710.html new file mode 100644 index 000000000..606faa46d --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000710.html @@ -0,0 +1,105 @@ + + + + [Mageia-sysadm] [354] - create user/group with puppet, with the bin directory so the cron task doesn't fail + + + + + + + + + +

[Mageia-sysadm] [354] - create user/group with puppet, with the bin directory so the cron task doesn't fail

+ root at mageia.org + root at mageia.org +
+ Sun Nov 21 19:05:23 CET 2010 +

+
+ +
Revision: 354
+Author:   misc
+Date:     2010-11-21 19:05:23 +0100 (Sun, 21 Nov 2010)
+Log Message:
+-----------
+- create user/group with puppet, with the bin directory so the cron task doesn't fail
+
+Modified Paths:
+--------------
+    puppet/modules/mirror/manifests/init.pp
+
+Modified: puppet/modules/mirror/manifests/init.pp
+===================================================================
+--- puppet/modules/mirror/manifests/init.pp	2010-11-21 17:47:29 UTC (rev 353)
++++ puppet/modules/mirror/manifests/init.pp	2010-11-21 18:05:23 UTC (rev 354)
+@@ -9,6 +9,26 @@
+         content => template("mirror/update_timestamp")
+     }
+ 
++    file { "/home/mirror/bin/":
++        ensure => directory,
++        owner => mirror,
++        group => mirror,
++        mode => 755
++    }
++
++    group {"mirror":
++        ensure => present,
++    }
++
++    user {"mirror":
++        ensure => present,
++        comment => "System user use to run mirror scripts",
++        managehome => true,
++        gid => mirror,
++        shell => "/bin/bash",
++    }
++
++
+     cron { mirror:
+         user => mirror,
+         hour => 10,
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101121/238d4abf/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000711.html b/zarb-ml/mageia-sysadm/2010-November/000711.html new file mode 100644 index 000000000..affaa37c2 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000711.html @@ -0,0 +1,62 @@ + + + + [Mageia-sysadm] Puppet Report for ecosse.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for ecosse.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Sun Nov 21 19:13:06 CET 2010 +

+
+ +
Sun Nov 21 19:13:06 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Failed to parse template buildsystem/sudoers.iurt: Could not find value for 'build_login' at /etc/puppet/modules/buildsystem/manifests/init.pp:73 on node ecosse.mageia.org
+Sun Nov 21 19:13:06 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000712.html b/zarb-ml/mageia-sysadm/2010-November/000712.html new file mode 100644 index 000000000..bb2ea6195 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000712.html @@ -0,0 +1,61 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Sun Nov 21 19:13:17 CET 2010 +

+
+ +
Sun Nov 21 19:13:16 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Failed to parse template buildsystem/sudoers.iurt: Could not find value for 'build_login' at /etc/puppet/modules/buildsystem/manifests/init.pp:73 on node jonund.mageia.org
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000713.html b/zarb-ml/mageia-sysadm/2010-November/000713.html new file mode 100644 index 000000000..ad586d3e9 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000713.html @@ -0,0 +1,62 @@ + + + + [Mageia-sysadm] Puppet Report for ecosse.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for ecosse.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Sun Nov 21 19:43:06 CET 2010 +

+
+ +
Sun Nov 21 19:43:06 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Failed to parse template buildsystem/sudoers.iurt: Could not find value for 'build_login' at /etc/puppet/modules/buildsystem/manifests/init.pp:73 on node ecosse.mageia.org
+Sun Nov 21 19:43:06 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000714.html b/zarb-ml/mageia-sysadm/2010-November/000714.html new file mode 100644 index 000000000..38e5fa67c --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000714.html @@ -0,0 +1,62 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Sun Nov 21 19:43:18 CET 2010 +

+
+ +
Sun Nov 21 19:43:18 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Failed to parse template buildsystem/sudoers.iurt: Could not find value for 'build_login' at /etc/puppet/modules/buildsystem/manifests/init.pp:73 on node jonund.mageia.org
+Sun Nov 21 19:43:18 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000715.html b/zarb-ml/mageia-sysadm/2010-November/000715.html new file mode 100644 index 000000000..5d3f67f95 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000715.html @@ -0,0 +1,62 @@ + + + + [Mageia-sysadm] Puppet Report for ecosse.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for ecosse.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Sun Nov 21 20:13:08 CET 2010 +

+
+ +
Sun Nov 21 20:13:08 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Failed to parse template buildsystem/sudoers.iurt: Could not find value for 'build_login' at /etc/puppet/modules/buildsystem/manifests/init.pp:73 on node ecosse.mageia.org
+Sun Nov 21 20:13:08 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000716.html b/zarb-ml/mageia-sysadm/2010-November/000716.html new file mode 100644 index 000000000..fbcdbbfc6 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000716.html @@ -0,0 +1,62 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Sun Nov 21 20:13:19 CET 2010 +

+
+ +
Sun Nov 21 20:13:18 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Failed to parse template buildsystem/sudoers.iurt: Could not find value for 'build_login' at /etc/puppet/modules/buildsystem/manifests/init.pp:73 on node jonund.mageia.org
+Sun Nov 21 20:13:19 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000717.html b/zarb-ml/mageia-sysadm/2010-November/000717.html new file mode 100644 index 000000000..fbcc9eb83 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000717.html @@ -0,0 +1,97 @@ + + + + [Mageia-sysadm] [355] move build_login and build_home_dir variables at the top + + + + + + + + + +

[Mageia-sysadm] [355] move build_login and build_home_dir variables at the top

+ root at mageia.org + root at mageia.org +
+ Sun Nov 21 20:23:39 CET 2010 +

+
+ +
Revision: 355
+Author:   boklm
+Date:     2010-11-21 20:23:39 +0100 (Sun, 21 Nov 2010)
+Log Message:
+-----------
+move build_login and build_home_dir variables at the top
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-21 18:05:23 UTC (rev 354)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-21 19:23:39 UTC (rev 355)
+@@ -1,5 +1,8 @@
+ class buildsystem {
+ 
++    $build_login = "iurt"
++    $build_home_dir = "/home/iurt/"
++
+     class mainnode {
+         include iurtuser
+ 
+@@ -28,9 +31,6 @@
+ 
+     }
+ 
+-    $build_login = "iurt"
+-    $build_home_dir = "/home/iurt/"
+-
+     class iurtuser {
+         group {"$build_login": 
+             ensure => present,
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101121/792a9500/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000718.html b/zarb-ml/mageia-sysadm/2010-November/000718.html new file mode 100644 index 000000000..fb200de23 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000718.html @@ -0,0 +1,62 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Sun Nov 21 20:23:53 CET 2010 +

+
+ +
Sun Nov 21 20:23:53 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Failed to parse template buildsystem/sudoers.iurt: Could not find value for 'build_login' at /etc/puppet/modules/buildsystem/manifests/init.pp:73 on node jonund.mageia.org
+Sun Nov 21 20:23:53 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000719.html b/zarb-ml/mageia-sysadm/2010-November/000719.html new file mode 100644 index 000000000..b955cc597 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000719.html @@ -0,0 +1,62 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Sun Nov 21 20:24:20 CET 2010 +

+
+ +
Sun Nov 21 20:24:20 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Failed to parse template buildsystem/sudoers.iurt: Could not find value for 'build_login' at /etc/puppet/modules/buildsystem/manifests/init.pp:73 on node jonund.mageia.org
+Sun Nov 21 20:24:20 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000720.html b/zarb-ml/mageia-sysadm/2010-November/000720.html new file mode 100644 index 000000000..3bed43b55 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000720.html @@ -0,0 +1,102 @@ + + + + [Mageia-sysadm] [356] add base class + + + + + + + + + +

[Mageia-sysadm] [356] add base class

+ root at mageia.org + root at mageia.org +
+ Sun Nov 21 20:32:53 CET 2010 +

+
+ +
Revision: 356
+Author:   boklm
+Date:     2010-11-21 20:32:53 +0100 (Sun, 21 Nov 2010)
+Log Message:
+-----------
+add base class
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-21 19:23:39 UTC (rev 355)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-21 19:32:53 UTC (rev 356)
+@@ -1,9 +1,11 @@
+ class buildsystem {
+ 
+-    $build_login = "iurt"
+-    $build_home_dir = "/home/iurt/"
++    class base {
++	$build_login = "iurt"
++	$build_home_dir = "/home/iurt/"
++    }
+ 
+-    class mainnode {
++    class mainnode inherits base {
+         include iurtuser
+ 
+         package { "task-bs-cluster-main":
+@@ -11,7 +13,7 @@
+         }
+     }
+ 
+-    class buildnode {
++    class buildnode inherits base {
+         include iurt
+     }
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101121/d9ce4a35/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000721.html b/zarb-ml/mageia-sysadm/2010-November/000721.html new file mode 100644 index 000000000..f70b2ca3f --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000721.html @@ -0,0 +1,194 @@ + + + + [Mageia-sysadm] [357] add testvm module, used to run test VMs + + + + + + + + + +

[Mageia-sysadm] [357] add testvm module, used to run test VMs

+ root at mageia.org + root at mageia.org +
+ Sun Nov 21 21:54:46 CET 2010 +

+
+ +
Revision: 357
+Author:   boklm
+Date:     2010-11-21 21:54:45 +0100 (Sun, 21 Nov 2010)
+Log Message:
+-----------
+add testvm module, used to run test VMs
+
+Added Paths:
+-----------
+    puppet/modules/testvm/
+    puppet/modules/testvm/files/
+    puppet/modules/testvm/files/_vm
+    puppet/modules/testvm/files/vm-jonund
+    puppet/modules/testvm/manifests/
+    puppet/modules/testvm/manifests/init.pp
+
+Added: puppet/modules/testvm/files/_vm
+===================================================================
+--- puppet/modules/testvm/files/_vm	                        (rev 0)
++++ puppet/modules/testvm/files/_vm	2010-11-21 20:54:45 UTC (rev 357)
+@@ -0,0 +1,53 @@
++#!/bin/sh
++
++test -z $vmname && exit 1
++
++vmdir="$HOME/VMs"
++piddir="$HOME/PIDs"
++logdir="$HOME/log"
++vmfile="$vmdir/$vmname"
++pidfile="$piddir/$vmname"
++logfile="$logdir/$vmname"
++qemucmd="qemu-kvm -nographic -pidfile $pidfile -hda $vmfile -net nic,vlan=0 -net user,vlan=0,hostfwd=tcp::$sshport-:22 $QEMUOPT"
++
++function running()
++{
++	test -f $pidfile || return 1
++	pid=`cat $pidfile`
++	test -d "/proc/$pid"
++}
++
++function stop()
++{
++	test -f $pidfile || return 1
++	pid=`cat $pidfile`
++	kill "$pid" && rm -f "$pidfile"
++}
++
++function start()
++{
++	running && echo "VM is already running" && return 1
++	nohup $qemucmd > $logfile 2>&1 &
++}
++
++case "$1" in
++	start)
++		start
++		;;
++	stop)
++		stop
++		;;
++	restart)
++		start
++		stop
++		;;
++	status)
++		running
++		vmrunning=$?
++		test $vmrunning -eq 0 && echo "VM $vmname is running"
++		test $vmrunning -eq 0 || echo "VM $vmname is stopped"
++		;;
++	ssh)
++		running && ssh -p $sshport localhost
++		;;
++esac
+
+Added: puppet/modules/testvm/files/vm-jonund
+===================================================================
+--- puppet/modules/testvm/files/vm-jonund	                        (rev 0)
++++ puppet/modules/testvm/files/vm-jonund	2010-11-21 20:54:45 UTC (rev 357)
+@@ -0,0 +1,5 @@
++#!/bin/sh
++vmname=jonund
++sshport=5051
++SCRIPTSDIR=$(dirname $0)
++. "$SCRIPTSDIR/_vm"
+
+
+Property changes on: puppet/modules/testvm/files/vm-jonund
+___________________________________________________________________
+Added: svn:executable
+   + *
+
+Added: puppet/modules/testvm/manifests/init.pp
+===================================================================
+--- puppet/modules/testvm/manifests/init.pp	                        (rev 0)
++++ puppet/modules/testvm/manifests/init.pp	2010-11-21 20:54:45 UTC (rev 357)
+@@ -0,0 +1,33 @@
++class testvm
++{
++    $testvm_login = "testvm"
++    $testvmdir = "/home/testvm"
++
++    group {"$testvm_login":
++	ensure => present,
++    }
++
++    user {"$testvm_login":
++	ensure => present,
++	comment => "System user used to run test VMs",
++	managehome => true,
++	gid => $vmtest_login,
++	shell => "/bin/bash",
++    }
++
++    file { "$testvmdir/bin/_vm":
++	ensure => present,
++        owner => root,
++	group => root,
++	mode => 644,
++	source => "puppet:///modules/testvm/_vm",
++    }
++
++    file { "$testvmdir/bin/vm-jonund":
++	ensure => present,
++        owner => root,
++	group => $testvm_login,
++	mode => 750,
++	source => "puppet:///modules/testvm/vm-jonund",
++    }
++}
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101121/c6d6ef4e/attachment-0001.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000722.html b/zarb-ml/mageia-sysadm/2010-November/000722.html new file mode 100644 index 000000000..4019914cc --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000722.html @@ -0,0 +1,87 @@ + + + + [Mageia-sysadm] [358] include testvm on jonund + + + + + + + + + +

[Mageia-sysadm] [358] include testvm on jonund

+ root at mageia.org + root at mageia.org +
+ Sun Nov 21 21:55:45 CET 2010 +

+
+ +
Revision: 358
+Author:   boklm
+Date:     2010-11-21 21:55:45 +0100 (Sun, 21 Nov 2010)
+Log Message:
+-----------
+include testvm on jonund
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-21 20:54:45 UTC (rev 357)
++++ puppet/manifests/nodes.pp	2010-11-21 20:55:45 UTC (rev 358)
+@@ -62,6 +62,7 @@
+     timezone::timezone { "Europe/Paris": }
+     include shorewall
+     include shorewall::default_firewall
++    include testvm
+ }
+ 
+ node ecosse {
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101121/10f3f400/attachment.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000723.html b/zarb-ml/mageia-sysadm/2010-November/000723.html new file mode 100644 index 000000000..acd3b115d --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000723.html @@ -0,0 +1,88 @@ + + + + [Mageia-sysadm] [359] fix typo + + + + + + + + + +

[Mageia-sysadm] [359] fix typo

+ root at mageia.org + root at mageia.org +
+ Sun Nov 21 22:05:53 CET 2010 +

+
+ +
Revision: 359
+Author:   boklm
+Date:     2010-11-21 22:05:53 +0100 (Sun, 21 Nov 2010)
+Log Message:
+-----------
+fix typo
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-21 20:55:45 UTC (rev 358)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-21 21:05:53 UTC (rev 359)
+@@ -40,7 +40,7 @@
+ 
+         user {"$build_login":
+             ensure => present,
+-            comment => "System user use to run build bots",
++            comment => "System user used to run build bots",
+             managehome => true,
+             gid => $build_login,
+             shell => "/bin/bash",
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101121/52c33680/attachment.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000724.html b/zarb-ml/mageia-sysadm/2010-November/000724.html new file mode 100644 index 000000000..72051d4db --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000724.html @@ -0,0 +1,77 @@ + + + + [Mageia-sysadm] [357] add testvm module, used to run test VMs + + + + + + + + + +

[Mageia-sysadm] [357] add testvm module, used to run test VMs

+ Michael Scherer + misc at zarb.org +
+ Sun Nov 21 23:29:53 CET 2010 +

+
+ +
Le dimanche 21 novembre 2010 à 21:54 +0100, root at mageia.org a écrit :
+> Revision: 357
+> Author:   boklm
+> Date:     2010-11-21 21:54:45 +0100 (Sun, 21 Nov 2010)
+> Log Message:
+> -----------
+> add testvm module, used to run test VMs
+
+May I suggest to take a look at libvirtd ( http://libvirt.org/ ) once
+you will have time ( ie, after we deployed everything for BS ).
+
+This would provides us with a daemon that use config files, a management
+API and IMHO, proper foundations for the day we will decide to use
+something else than chroot for iurt ( as this was already discussed
+several time, for stability of the build host )
+-- 
+Michael Scherer
+
+
+ + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000725.html b/zarb-ml/mageia-sysadm/2010-November/000725.html new file mode 100644 index 000000000..5be1e6db5 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000725.html @@ -0,0 +1,95 @@ + + + + [Mageia-sysadm] [360] add a repository cname for valstar + + + + + + + + + +

[Mageia-sysadm] [360] add a repository cname for valstar

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 00:12:54 CET 2010 +

+
+ +
Revision: 360
+Author:   blino
+Date:     2010-11-22 00:12:54 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+add a repository cname for valstar
+
+Modified Paths:
+--------------
+    puppet/modules/bind/templates/zones/mageia.org.zone
+
+Modified: puppet/modules/bind/templates/zones/mageia.org.zone
+===================================================================
+--- puppet/modules/bind/templates/zones/mageia.org.zone	2010-11-21 21:05:53 UTC (rev 359)
++++ puppet/modules/bind/templates/zones/mageia.org.zone	2010-11-21 23:12:54 UTC (rev 360)
+@@ -3,7 +3,7 @@
+ ; $Id$
+ $TTL	3D
+ @       IN      SOA     ns0.mageia.org.   root.mageia.org.  (
+-        2010111900	; Serial
++        2010112201	; Serial
+         21600		; Refresh
+         3600		; Retry
+         2419200		; Expire
+@@ -73,6 +73,7 @@
+ 
+ puppetmaster  IN  CNAME valstar
+ pkgsubmit   IN CNAME valstar
++repository  IN CNAME valstar
+ ldap        IN CNAME valstar
+ 
+ identity    IN CNAME alamut
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/d4ddf152/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000726.html b/zarb-ml/mageia-sysadm/2010-November/000726.html new file mode 100644 index 000000000..e6747ba60 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000726.html @@ -0,0 +1,113 @@ + + + + [Mageia-sysadm] [361] - move apache requirement in the blog class ( so we do not forget it ) + + + + + + + + + +

[Mageia-sysadm] [361] - move apache requirement in the blog class ( so we do not forget it )

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 00:23:59 CET 2010 +

+
+ +
Revision: 361
+Author:   misc
+Date:     2010-11-22 00:23:59 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+- move apache requirement in the blog class ( so we do not forget it )
+- since apache::mod_php implie apache::base, remove redundant include
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+    puppet/modules/blog/manifests/init.pp
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-21 23:12:54 UTC (rev 360)
++++ puppet/manifests/nodes.pp	2010-11-21 23:23:59 UTC (rev 361)
+@@ -111,8 +111,6 @@
+ #
+     include default_mageia_server
+     timezone::timezone { "Europe/Paris": }
+-    include apache::base
+-    include apache::mod_php
+     include blog
+ }
+ 
+
+Modified: puppet/modules/blog/manifests/init.pp
+===================================================================
+--- puppet/modules/blog/manifests/init.pp	2010-11-21 23:12:54 UTC (rev 360)
++++ puppet/modules/blog/manifests/init.pp	2010-11-21 23:23:59 UTC (rev 361)
+@@ -9,15 +9,13 @@
+                 ensure => installed
+         }
+ 
++    include apache::mod_php
++
+     	package { 'php-mysql':
+         	ensure => installed
+     	}
+ 
+-	service { mysqld:
+-        	ensure => running,
+-        	subscribe => Package["mysql"],
+-    	}
+-	
++
+ 	file { "check_new-blog-post":
+         	path => "/usr/local/bin/check_new-blog-post.sh",
+         	ensure => present,
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/493e00e7/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000727.html b/zarb-ml/mageia-sysadm/2010-November/000727.html new file mode 100644 index 000000000..4d9246ba7 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000727.html @@ -0,0 +1,74 @@ + + + + [Mageia-sysadm] [362] add ssh::auth module (unstable) from projects.puppetlabs.com wiki + + + + + + + + + +

[Mageia-sysadm] [362] add ssh::auth module (unstable) from projects.puppetlabs.com wiki

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 01:04:48 CET 2010 +

+
+ +
Revision: 362
+Author:   blino
+Date:     2010-11-22 01:04:48 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+add ssh::auth module (unstable) from projects.puppetlabs.com wiki
+
+Added Paths:
+-----------
+    puppet/modules/ssh_auth/
+    puppet/modules/ssh_auth/manifests/
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/fd642e33/attachment-0001.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000728.html b/zarb-ml/mageia-sysadm/2010-November/000728.html new file mode 100644 index 000000000..a766dcc83 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000728.html @@ -0,0 +1,87 @@ + + + + [Mageia-sysadm] [363] - pam_mkhomedir is in pam, not in a separate rpm + + + + + + + + + +

[Mageia-sysadm] [363] - pam_mkhomedir is in pam, not in a separate rpm

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 01:05:06 CET 2010 +

+
+ +
Revision: 363
+Author:   misc
+Date:     2010-11-22 01:05:06 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+- pam_mkhomedir is in pam, not in a separate rpm
+
+Modified Paths:
+--------------
+    puppet/modules/pam/manifests/init.pp
+
+Modified: puppet/modules/pam/manifests/init.pp
+===================================================================
+--- puppet/modules/pam/manifests/init.pp	2010-11-22 00:04:48 UTC (rev 362)
++++ puppet/modules/pam/manifests/init.pp	2010-11-22 00:05:06 UTC (rev 363)
+@@ -1,7 +1,7 @@
+ class pam {
+ 
+   class base {
+-      package { ["pam_ldap","nss_ldap", "pam_mkhomedir"]:
++      package { ["pam_ldap","nss_ldap"]:
+         ensure => installed,  
+       }
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/3828f7ef/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000729.html b/zarb-ml/mageia-sysadm/2010-November/000729.html new file mode 100644 index 000000000..1d569fecb --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000729.html @@ -0,0 +1,91 @@ + + + + [Mageia-sysadm] [364] - remove erronous line ( and uneeded ), as this cause error when applying about "ressource already declared" + + + + + + + + + +

[Mageia-sysadm] [364] - remove erronous line ( and uneeded ), as this cause error when applying about "ressource already declared"

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 01:05:08 CET 2010 +

+
+ +
Revision: 364
+Author:   misc
+Date:     2010-11-22 01:05:08 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+- remove erronous line ( and uneeded ), as this cause error when applying about "ressource already declared"
+
+Modified Paths:
+--------------
+    puppet/modules/pam/manifests/init.pp
+
+Modified: puppet/modules/pam/manifests/init.pp
+===================================================================
+--- puppet/modules/pam/manifests/init.pp	2010-11-22 00:05:06 UTC (rev 363)
++++ puppet/modules/pam/manifests/init.pp	2010-11-22 00:05:08 UTC (rev 364)
+@@ -33,12 +33,10 @@
+   class admin_access inherits base {
+     $access_class = "admin"
+     # not sure if this line is needed anymore, wil check later
+-    file { "system-auth": }
+   }
+ 
+   # for server where people can connect with ssh ( git, svn )
+   class commiters_access inherits base {
+     $access_class = "commiters"
+-    file { "system-auth": }
+   }
+ }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/87e0e202/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000730.html b/zarb-ml/mageia-sysadm/2010-November/000730.html new file mode 100644 index 000000000..0e841b8ba --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000730.html @@ -0,0 +1,89 @@ + + + + [Mageia-sysadm] [365] use ssh::auth to build iurt ssh keys + + + + + + + + + +

[Mageia-sysadm] [365] use ssh::auth to build iurt ssh keys

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 01:05:11 CET 2010 +

+
+ +
Revision: 365
+Author:   blino
+Date:     2010-11-22 01:05:11 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+use ssh::auth to build iurt ssh keys
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-22 00:05:08 UTC (rev 364)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-22 00:05:11 UTC (rev 365)
+@@ -45,6 +45,10 @@
+             gid => $build_login,
+             shell => "/bin/bash",
+         }
++
++        include ssh::auth
++        ssh::auth::key { $build_login: } # declare a key for build bot: RSA, 2048 bits
++        ssh::auth::client { $build_login: }
+     }
+ 
+     class iurt {
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/05d8080b/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000731.html b/zarb-ml/mageia-sysadm/2010-November/000731.html new file mode 100644 index 000000000..374dee0bb --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000731.html @@ -0,0 +1,61 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Mon Nov 22 01:11:53 CET 2010 +

+
+ +
Mon Nov 22 01:11:52 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Could not find class ssh::auth in namespaces buildsystem::iurtuser at /etc/puppet/modules/buildsystem/manifests/init.pp:49 on node jonund.mageia.org
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000732.html b/zarb-ml/mageia-sysadm/2010-November/000732.html new file mode 100644 index 000000000..37253a2ef --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000732.html @@ -0,0 +1,110 @@ + + + + [Mageia-sysadm] [366] iurt from mainnode does not need the private ssh key + + + + + + + + + +

[Mageia-sysadm] [366] iurt from mainnode does not need the private ssh key

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 01:13:16 CET 2010 +

+
+ +
Revision: 366
+Author:   blino
+Date:     2010-11-22 01:13:16 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+iurt from mainnode does not need the private ssh key
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-22 00:05:11 UTC (rev 365)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-22 00:13:16 UTC (rev 366)
+@@ -3,10 +3,14 @@
+     class base {
+ 	$build_login = "iurt"
+ 	$build_home_dir = "/home/iurt/"
++
++	include ssh::auth
++	ssh::auth::key { $build_login: } # declare a key for build bot: RSA, 2048 bits
+     }
+ 
+     class mainnode inherits base {
+         include iurtuser
++        ssh::auth::server { $build_login: }
+ 
+         package { "task-bs-cluster-main":
+             ensure => "installed"
+@@ -45,15 +49,12 @@
+             gid => $build_login,
+             shell => "/bin/bash",
+         }
+-
+-        include ssh::auth
+-        ssh::auth::key { $build_login: } # declare a key for build bot: RSA, 2048 bits
+-        ssh::auth::client { $build_login: }
+     }
+ 
+     class iurt {
+         include sudo
+         include iurtuser
++        ssh::auth::client { $build_login: }
+ 
+         # build node common settings
+         # we could have the following skip list to use less space:
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/c189951e/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000733.html b/zarb-ml/mageia-sysadm/2010-November/000733.html new file mode 100644 index 000000000..64e9661d9 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000733.html @@ -0,0 +1,62 @@ + + + + [Mageia-sysadm] Puppet Report for ecosse.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for ecosse.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Mon Nov 22 01:13:24 CET 2010 +

+
+ +
Mon Nov 22 01:13:24 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Could not find class ssh::auth in namespaces buildsystem::iurtuser at /etc/puppet/modules/buildsystem/manifests/init.pp:49 on node ecosse.mageia.org
+Mon Nov 22 01:13:24 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000734.html b/zarb-ml/mageia-sysadm/2010-November/000734.html new file mode 100644 index 000000000..5d3a52452 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000734.html @@ -0,0 +1,62 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Mon Nov 22 01:13:37 CET 2010 +

+
+ +
Mon Nov 22 01:13:37 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Could not find class ssh::auth in namespaces buildsystem::iurtuser at /etc/puppet/modules/buildsystem/manifests/init.pp:49 on node jonund.mageia.org
+Mon Nov 22 01:13:37 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000735.html b/zarb-ml/mageia-sysadm/2010-November/000735.html new file mode 100644 index 000000000..a9b7798d2 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000735.html @@ -0,0 +1,62 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Mon Nov 22 01:14:15 CET 2010 +

+
+ +
Mon Nov 22 01:14:15 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Could not find class ssh::auth in namespaces buildsystem::iurtuser at /etc/puppet/modules/buildsystem/manifests/init.pp:49 on node jonund.mageia.org
+Mon Nov 22 01:14:15 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000736.html b/zarb-ml/mageia-sysadm/2010-November/000736.html new file mode 100644 index 000000000..d74d180fe --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000736.html @@ -0,0 +1,62 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Mon Nov 22 01:14:26 CET 2010 +

+
+ +
Mon Nov 22 01:14:26 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Could not find class ssh::auth in namespaces buildsystem::iurtuser at /etc/puppet/modules/buildsystem/manifests/init.pp:49 on node jonund.mageia.org
+Mon Nov 22 01:14:26 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000737.html b/zarb-ml/mageia-sysadm/2010-November/000737.html new file mode 100644 index 000000000..5b0846f9b --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000737.html @@ -0,0 +1,62 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Mon Nov 22 01:14:39 CET 2010 +

+
+ +
Mon Nov 22 01:14:39 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Could not find class ssh::auth in namespaces buildsystem::iurtuser at /etc/puppet/modules/buildsystem/manifests/init.pp:49 on node jonund.mageia.org
+Mon Nov 22 01:14:39 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000738.html b/zarb-ml/mageia-sysadm/2010-November/000738.html new file mode 100644 index 000000000..8166b048b --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000738.html @@ -0,0 +1,62 @@ + + + + [Mageia-sysadm] Puppet Report for valstar.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for valstar.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Mon Nov 22 01:14:50 CET 2010 +

+
+ +
Mon Nov 22 01:14:50 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Could not find class ssh::auth in namespaces buildsystem::iurtuser at /etc/puppet/modules/buildsystem/manifests/init.pp:49 on node valstar.mageia.org
+Mon Nov 22 01:14:50 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000739.html b/zarb-ml/mageia-sysadm/2010-November/000739.html new file mode 100644 index 000000000..fd66ba79f --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000739.html @@ -0,0 +1,62 @@ + + + + [Mageia-sysadm] Puppet Report for valstar.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for valstar.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Mon Nov 22 01:15:31 CET 2010 +

+
+ +
Mon Nov 22 01:15:31 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Could not find class ssh::auth in namespaces buildsystem::base at /etc/puppet/modules/buildsystem/manifests/init.pp:7 on node valstar.mageia.org
+Mon Nov 22 01:15:31 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000740.html b/zarb-ml/mageia-sysadm/2010-November/000740.html new file mode 100644 index 000000000..fee8125fe --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000740.html @@ -0,0 +1,415 @@ + + + + [Mageia-sysadm] [367] really add ssh::auth + + + + + + + + + +

[Mageia-sysadm] [367] really add ssh::auth

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 01:22:53 CET 2010 +

+
+ +
Revision: 367
+Author:   blino
+Date:     2010-11-22 01:22:53 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+really add ssh::auth
+
+Added Paths:
+-----------
+    puppet/modules/ssh_auth/manifests/init.pp
+
+Added: puppet/modules/ssh_auth/manifests/init.pp
+===================================================================
+--- puppet/modules/ssh_auth/manifests/init.pp	                        (rev 0)
++++ puppet/modules/ssh_auth/manifests/init.pp	2010-11-22 00:22:53 UTC (rev 367)
+@@ -0,0 +1,336 @@
++# =========                                                 
++# ssh::auth                                                 
++# =========                                                 
++#                                                           
++# The latest official release and documentation for ssh::auth can always
++# be found at http://reductivelabs.com/trac/puppet/wiki/Recipes/ModuleSSHAuth .
++#                                                                              
++# Version:          0.3.2                                                      
++# Release date:     2009-12-29                                                 
++
++class ssh::auth {
++
++$keymaster_storage = "/var/lib/keys" 
++
++Exec { path => "/usr/bin:/usr/sbin:/bin:/sbin" }
++Notify { withpath => false }                    
++
++
++##########################################################################
++
++
++# ssh::auth::key 
++
++# Declare keys.  The approach here is just to define a bunch of
++# virtual resources, representing key files on the keymaster, client,
++# and server.  The virtual keys are then realized by                 
++# ssh::auth::{keymaster,client,server}, respectively.  The reason for
++# doing things that way is that it makes ssh::auth::key into a "one  
++# stop shop" where users can declare their keys with all of their    
++# parameters, whether those parameters apply to the keymaster, server,
++# or client.  The real work of creating, installing, and removing keys
++# is done in the private definitions called by the virtual resources: 
++# ssh_auth_key_{master,server,client}.                                
++
++define key ($ensure = "present", $filename = "", $force = false, $group = "puppet", $home = "", $keytype = "rsa", $length = 2048, $maxdays = "", $mindate = "", $options = "", $user = "") {                                                                                                                                                    
++
++  ssh_auth_key_namecheck { "${title}-title": parm => "title", value => $title }
++
++  # apply defaults
++  $_filename = $filename ? { "" => "id_${keytype}", default => $filename }
++  $_length = $keytype ? { "rsa" => $length, "dsa" => 1024 }               
++  $_user = $user ? {                                                      
++    ""      => regsubst($title, '^([^@]*)@?.*$', '\1'),                   
++    default => $user,                                                     
++  }                                                                       
++  $_home = $home ? { "" => "/home/$_user",  default => $home }            
++
++  ssh_auth_key_namecheck { "${title}-filename": parm => "filename", value => $_filename }
++
++  @ssh_auth_key_master { $title:
++    ensure  => $ensure,         
++    force   => $force,          
++    keytype => $keytype,        
++    length  => $_length,        
++    maxdays => $maxdays,        
++    mindate => $mindate,        
++  }                             
++  @ssh_auth_key_client { $title:
++    ensure   => $ensure,        
++    filename => $_filename,     
++    group    => $group,         
++    home     => $_home,         
++    user     => $_user,         
++  }                             
++  @ssh_auth_key_server { $title:
++    ensure  => $ensure,         
++    group   => $group,          
++    home    => $_home,          
++    options => $options,        
++    user    => $_user,          
++  }                             
++}                               
++
++
++##########################################################################
++
++
++# ssh::auth::keymaster
++#                     
++# Keymaster host:     
++# Create key storage; create, regenerate, and remove key pairs
++
++class keymaster {
++
++  # Set up key storage
++
++  file { $ssh::auth::keymaster_storage:
++    ensure => directory,               
++    owner  => puppet,                  
++    group  => puppet,                  
++    mode   => 644,                     
++  }                                    
++                                       
++  # Realize all virtual master keys    
++  Ssh_auth_key_master <| |>            
++
++} # class keymaster
++
++
++##########################################################################
++
++
++# ssh::auth::client
++#                  
++# Install generated key pairs onto clients
++
++define client ($ensure = "", $filename = "", $group = "", $home = "", $user = "") {
++
++  # Realize the virtual client keys.
++  # Override the defaults set in ssh::auth::key, as needed.
++  if $ensure   { Ssh_auth_key_client <| title == $title |> { ensure   => $ensure   } }
++  if $filename { Ssh_auth_key_client <| title == $title |> { filename => $filename } }
++  if $group    { Ssh_auth_key_client <| title == $title |> { group    => $group    } }
++
++  if $user { Ssh_auth_key_client <| title == $title |> { user => $user, home => "/home/$user" } }
++  if $home { Ssh_auth_key_client <| title == $title |> { home => $home } }                       
++
++  realize Ssh_auth_key_client[$title]
++
++} # define client
++
++
++##########################################################################
++
++
++# ssh::auth::server
++#                  
++# Install public keys onto clients
++
++define server ($ensure = "", $group = "", $home = "", $options = "", $user = "") {
++
++  # Realize the virtual server keys.
++  # Override the defaults set in ssh::auth::key, as needed.
++  if $ensure  { Ssh_auth_key_server <| title == $title |> { ensure  => $ensure  } }
++  if $group   { Ssh_auth_key_server <| title == $title |> { group   => $group   } }
++  if $options { Ssh_auth_key_server <| title == $title |> { options => $options } }
++
++  if $user { Ssh_auth_key_server <| title == $title |> { user => $user, home => "/home/$user" } }
++  if $home { Ssh_auth_key_server <| title == $title |> { home => $home } }                       
++
++  realize Ssh_auth_key_server[$title]
++
++} # define server
++
++} # class ssh::auth
++
++
++##########################################################################
++
++
++# ssh_auth_key_master
++#                    
++# Create/regenerate/remove a key pair on the keymaster.
++# This definition is private, i.e. it is not intended to be called directly by users.
++# ssh::auth::key calls it to create virtual keys, which are realized in ssh::auth::keymaster.
++
++define ssh_auth_key_master ($ensure, $force, $keytype, $length, $maxdays, $mindate) {
++
++  Exec { path => "/usr/bin:/usr/sbin:/bin:/sbin" }
++  File {                                          
++    owner => puppet,                              
++    group => puppet,                              
++    mode  => 600,                                 
++  }                                               
++
++  $keydir = "${ssh::auth::keymaster_storage}/${title}"
++  $keyfile = "${keydir}/key"                          
++
++  file { 
++    "$keydir":
++      ensure => directory,
++      mode   => 644;      
++    "$keyfile":           
++      ensure => $ensure;  
++    "${keyfile}.pub":     
++      ensure => $ensure,  
++      mode   => 644;      
++  }                       
++
++  if $ensure == "present" {
++
++    # Remove the existing key pair, if
++    # * $force is true, or            
++    # * $maxdays or $mindate criteria aren't met, or
++    # * $keytype or $length have changed            
++
++    $keycontent = file("${keyfile}.pub", "/dev/null")
++    if $keycontent {                                 
++
++      if $force {
++        $reason = "force=true"
++      }                       
++      if !$reason and $mindate and generate("/usr/bin/find", $keyfile, "!", "-newermt", "${mindate}") {
++        $reason = "created before ${mindate}"                                                          
++      }                                                                                                
++      if !$reason and $maxdays and generate("/usr/bin/find", $keyfile, "-mtime", "+${maxdays}") {      
++        $reason = "older than ${maxdays} days"                                                         
++      }                                                                                                
++      if !$reason and $keycontent =~ /^ssh-... [^ ]+ (...) (\d+)$/ {                                   
++        if       $keytype != $1 { $reason = "keytype changed: $1 -> $keytype" }                        
++        else { if $length != $2 { $reason = "length changed: $2 -> $length" } }                        
++      }                                                                                                
++      if $reason {                                                                                     
++        exec { "Revoke previous key ${title}: ${reason}":                                              
++          command => "rm $keyfile ${keyfile}.pub",                                                     
++          before  => Exec["Create key $title: $keytype, $length bits"],                                
++        }                                                                                              
++      }                                                                                                
++    }                                                                                                  
++
++    # Create the key pair.
++    # We "repurpose" the comment field in public keys on the keymaster to
++    # store data about the key, i.e. $keytype and $length.  This avoids  
++    # having to rerun ssh-keygen -l on every key at every run to determine
++    # the key length.                                                     
++    exec { "Create key $title: $keytype, $length bits":                   
++      command => "ssh-keygen -t ${keytype} -b ${length} -f ${keyfile} -C \"${keytype} ${length}\" -N \"\"",
++      user    => "puppet",                                                                                 
++      group   => "puppet",                                                                                 
++      creates => $keyfile,                                                                                 
++      require => File[$keydir],                                                                            
++      before  => File[$keyfile, "${keyfile}.pub"],                                                         
++    }                                                                                                      
++
++  } # if $ensure  == "present"
++
++} # define ssh_auth_key_master
++
++
++##########################################################################
++
++
++# ssh_auth_key_client
++#                    
++# Install a key pair into a user's account.
++# This definition is private, i.e. it is not intended to be called directly by users.
++
++define ssh_auth_key_client ($ensure, $filename, $group, $home, $user) {
++
++  File {
++    owner   => $user,
++    group   => $group,
++    mode    => 600,   
++    require => [ User[$user], File[$home]],
++  }                                                    
++
++  $key_src_file = "${ssh::auth::keymaster_storage}/${title}/key" # on the keymaster
++  $key_tgt_file = "${home}/.ssh/${filename}" # on the client                       
++
++  $key_src_content_pub = file("${key_src_file}.pub", "/dev/null")
++  if $ensure == "absent" or $key_src_content_pub =~ /^(ssh-...) ([^ ]+)/ {
++    $keytype = $1                                                         
++    $modulus = $2                                                         
++    file {                                                                
++      $key_tgt_file:                                                      
++        ensure  => $ensure,                                               
++        content => file($key_src_file, "/dev/null");                      
++      "${key_tgt_file}.pub":                                              
++        ensure  => $ensure,                                               
++        content => "$keytype $modulus $title\n",                          
++        mode    => 644;                                                   
++    }                                                                     
++  } else {                                                                
++    notify { "Private key file $key_src_file for key $title not found on keymaster; skipping ensure => present": }
++  }                                                                                                               
++
++} # define ssh_auth_key_client
++
++
++##########################################################################
++
++
++# ssh_auth_key_server
++#                    
++# Install a public key into a server user's authorized_keys(5) file.
++# This definition is private, i.e. it is not intended to be called directly by users.
++
++define ssh_auth_key_server ($ensure, $group, $home, $options, $user) {
++
++  # on the keymaster:
++  $key_src_dir = "${ssh::auth::keymaster_storage}/${title}"
++  $key_src_file = "${key_src_dir}/key.pub"                 
++  # on the server:                                         
++  $key_tgt_file = "${home}/.ssh/authorized_keys"           
++                                                           
++  File {                                                   
++    owner   => $user,                                      
++    group   => $group,                                     
++    require => User[$user],                                
++    mode    => 600,                                        
++  }                                                        
++  Ssh_authorized_key {                                     
++    user   => $user,                                       
++    target => $key_tgt_file,                               
++  }                                                        
++
++  if $ensure == "absent" {
++    ssh_authorized_key { $title: ensure => "absent" }
++  }                                                  
++  else {
++    $key_src_content = file($key_src_file, "/dev/null")
++    if ! $key_src_content {
++      notify { "Public key file $key_src_file for key $title not found on keymaster; skipping ensure => present": }
++    } else { if $ensure == "present" and $key_src_content !~ /^(ssh-...) ([^ ]*)/ {
++      err("Can't parse public key file $key_src_file")
++      notify { "Can't parse public key file $key_src_file for key $title on the keymaster: skipping ensure => $ensure": }
++    } else {
++      $keytype = $1
++      $modulus = $2
++      ssh_authorized_key { $title:
++        ensure  => "present",
++        type    => $keytype,
++        key     => $modulus,
++        options => $options ? { "" => undef, default => $options },
++      }
++    }} # if ... else ... else
++  } # if ... else
++
++} # define ssh_auth_key_server
++
++
++##########################################################################
++
++
++# ssh_auth_key_namecheck
++#
++# Check a name (e.g. key title or filename) for the allowed form
++
++define ssh_auth_key_namecheck ($parm, $value) {
++  if $value !~ /^[A-Za-z0-9]/ {
++    fail("ssh::auth::key: $parm '$value' not allowed: must begin with a letter or digit")
++  }
++  if $value !~ /^[A-Za-z0-9_.:@-]+$/ {
++    fail("ssh::auth::key: $parm '$value' not allowed: may only contain the characters A-Za-z0-9_.:@-")
++  }
++} # define namecheck
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/0d8af62e/attachment-0001.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000741.html b/zarb-ml/mageia-sysadm/2010-November/000741.html new file mode 100644 index 000000000..19cc41a4a --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000741.html @@ -0,0 +1,62 @@ + + + + [Mageia-sysadm] Puppet Report for valstar.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for valstar.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Mon Nov 22 01:23:16 CET 2010 +

+
+ +
Mon Nov 22 01:23:16 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Could not find class ssh::auth in namespaces buildsystem::base at /etc/puppet/modules/buildsystem/manifests/init.pp:7 on node valstar.mageia.org
+Mon Nov 22 01:23:16 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000742.html b/zarb-ml/mageia-sysadm/2010-November/000742.html new file mode 100644 index 000000000..b3cb635b1 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000742.html @@ -0,0 +1,78 @@ + + + + [Mageia-sysadm] [368] move modules/ssh_auth as modules/ssh + + + + + + + + + +

[Mageia-sysadm] [368] move modules/ssh_auth as modules/ssh

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 01:25:34 CET 2010 +

+
+ +
Revision: 368
+Author:   blino
+Date:     2010-11-22 01:25:33 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+move modules/ssh_auth as modules/ssh
+
+Added Paths:
+-----------
+    puppet/modules/ssh/
+
+Removed Paths:
+-------------
+    puppet/modules/ssh_auth/
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/dc13ec29/attachment.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000743.html b/zarb-ml/mageia-sysadm/2010-November/000743.html new file mode 100644 index 000000000..f817bda43 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000743.html @@ -0,0 +1,88 @@ + + + + [Mageia-sysadm] [370] valstar is the ssh keymaster + + + + + + + + + +

[Mageia-sysadm] [370] valstar is the ssh keymaster

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 01:31:51 CET 2010 +

+
+ +
Revision: 370
+Author:   blino
+Date:     2010-11-22 01:31:51 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+valstar is the ssh keymaster
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-22 00:25:50 UTC (rev 369)
++++ puppet/manifests/nodes.pp	2010-11-22 00:31:51 UTC (rev 370)
+@@ -19,6 +19,8 @@
+     include subversion::server
+     include puppet::master
+     include buildsystem::mainnode
++    include ssh::auth
++    include ssh::auth::keymaster
+ 
+     subversion::snapshot { "/etc/puppet":
+         source => "svn://svn.mageia.org/adm/puppet/"
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/8b9b821b/attachment.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000744.html b/zarb-ml/mageia-sysadm/2010-November/000744.html new file mode 100644 index 000000000..2e5042d96 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000744.html @@ -0,0 +1,90 @@ + + + + [Mageia-sysadm] [371] include buildsystem definition after ssh keymaster definition + + + + + + + + + +

[Mageia-sysadm] [371] include buildsystem definition after ssh keymaster definition

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 01:34:10 CET 2010 +

+
+ +
Revision: 371
+Author:   blino
+Date:     2010-11-22 01:34:10 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+include buildsystem definition after ssh keymaster definition
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-22 00:31:51 UTC (rev 370)
++++ puppet/manifests/nodes.pp	2010-11-22 00:34:10 UTC (rev 371)
+@@ -18,9 +18,9 @@
+     include subversion::client
+     include subversion::server
+     include puppet::master
+-    include buildsystem::mainnode
+     include ssh::auth
+     include ssh::auth::keymaster
++    include buildsystem::mainnode
+ 
+     subversion::snapshot { "/etc/puppet":
+         source => "svn://svn.mageia.org/adm/puppet/"
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/120b4f1a/attachment.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000745.html b/zarb-ml/mageia-sysadm/2010-November/000745.html new file mode 100644 index 000000000..b63cd6aac --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000745.html @@ -0,0 +1,93 @@ + + + + [Mageia-sysadm] [372] ensure .ssh dir is created for iurt user + + + + + + + + + +

[Mageia-sysadm] [372] ensure .ssh dir is created for iurt user

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 01:38:00 CET 2010 +

+
+ +
Revision: 372
+Author:   blino
+Date:     2010-11-22 01:38:00 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+ensure .ssh dir is created for iurt user
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-22 00:34:10 UTC (rev 371)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-22 00:38:00 UTC (rev 372)
+@@ -49,6 +49,13 @@
+             gid => $build_login,
+             shell => "/bin/bash",
+         }
++
++        file { "/home/${build_login}/.ssh":
++            ensure => "directory",
++            mode   => 600,
++            owner  => $build_login,
++            group  => $build_login,
++        }
+     }
+ 
+     class iurt {
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/84cb3850/attachment.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000746.html b/zarb-ml/mageia-sysadm/2010-November/000746.html new file mode 100644 index 000000000..e181bab3b --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000746.html @@ -0,0 +1,88 @@ + + + + [Mageia-sysadm] [373] use build_home_dir + + + + + + + + + +

[Mageia-sysadm] [373] use build_home_dir

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 01:46:58 CET 2010 +

+
+ +
Revision: 373
+Author:   blino
+Date:     2010-11-22 01:46:57 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+use build_home_dir
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-22 00:38:00 UTC (rev 372)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-22 00:46:57 UTC (rev 373)
+@@ -50,7 +50,7 @@
+             shell => "/bin/bash",
+         }
+ 
+-        file { "/home/${build_login}/.ssh":
++        file { "$build_home_dir/.ssh":
+             ensure => "directory",
+             mode   => 600,
+             owner  => $build_login,
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/6d9b8401/attachment-0001.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000747.html b/zarb-ml/mageia-sysadm/2010-November/000747.html new file mode 100644 index 000000000..801ee2560 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000747.html @@ -0,0 +1,87 @@ + + + + [Mageia-sysadm] [374] - ldaps is required ( ie no unencrypted connection ) + + + + + + + + + +

[Mageia-sysadm] [374] - ldaps is required ( ie no unencrypted connection )

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 03:03:58 CET 2010 +

+
+ +
Revision: 374
+Author:   misc
+Date:     2010-11-22 03:03:58 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+- ldaps is required ( ie no unencrypted connection )
+
+Modified Paths:
+--------------
+    puppet/modules/pam/templates/ldap.conf
+
+Modified: puppet/modules/pam/templates/ldap.conf
+===================================================================
+--- puppet/modules/pam/templates/ldap.conf	2010-11-22 00:46:57 UTC (rev 373)
++++ puppet/modules/pam/templates/ldap.conf	2010-11-22 02:03:58 UTC (rev 374)
+@@ -1,5 +1,5 @@
+ 
+-uri ldap://ldap.<%= domain %>
++uri ldaps://ldap.<%= domain %>
+ base <%= dc_suffix %>
+ pam_lookup_policy no
+ pam_password exop
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/aa896fed/attachment.html>
+
+ + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000748.html b/zarb-ml/mageia-sysadm/2010-November/000748.html new file mode 100644 index 000000000..ff943cb6b --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000748.html @@ -0,0 +1,94 @@ + + + + [Mageia-sysadm] [376] - add proper access to nss_ldap user so pam_ldap auth can work + + + + + + + + + +

[Mageia-sysadm] [376] - add proper access to nss_ldap user so pam_ldap auth can work

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 03:04:03 CET 2010 +

+
+ +
Revision: 376
+Author:   misc
+Date:     2010-11-22 03:04:03 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+- add proper access to nss_ldap user so pam_ldap auth can work
+
+Modified Paths:
+--------------
+    puppet/modules/openldap/templates/mandriva-dit-access.conf
+
+Modified: puppet/modules/openldap/templates/mandriva-dit-access.conf
+===================================================================
+--- puppet/modules/openldap/templates/mandriva-dit-access.conf	2010-11-22 02:04:02 UTC (rev 375)
++++ puppet/modules/openldap/templates/mandriva-dit-access.conf	2010-11-22 02:04:03 UTC (rev 376)
+@@ -104,6 +104,13 @@
+ 	by group/groupOfNames/member.exact="cn=registrars,ou=system groups,<%= dc_suffix %>" =asrx
+ 	by * +0 break
+ 
++# TODO maybe we should use a group instead of a user here
++access to dn.subtree="ou=People,<%= dc_suffix %>" 
++	filter="(objectclass=posixAccount)"
++	attrs=homeDirectory,cn,uid,loginShell,gidNumber,uidNumber
++	by dn.exact="uid=nssldap,ou=System Accounts,<%= dc_suffix %>" read
++	by * +0 break
++
+ # let the user change some of his/her attributes
+ access to dn.subtree="ou=People,<%= dc_suffix %>"
+ 	attrs=carLicense,homePhone,homePostalAddress,mobile,pager,telephoneNumber,mail,preferredLanguage
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/18cc3499/attachment.html>
+
+ + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000749.html b/zarb-ml/mageia-sysadm/2010-November/000749.html new file mode 100644 index 000000000..327b6e285 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000749.html @@ -0,0 +1,104 @@ + + + + [Mageia-sysadm] [377] - add nssldap password handling + + + + + + + + + +

[Mageia-sysadm] [377] - add nssldap password handling

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 03:04:05 CET 2010 +

+
+ +
Revision: 377
+Author:   misc
+Date:     2010-11-22 03:04:04 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+- add nssldap password handling
+
+Modified Paths:
+--------------
+    puppet/modules/pam/manifests/init.pp
+    puppet/modules/pam/templates/ldap.conf
+
+Modified: puppet/modules/pam/manifests/init.pp
+===================================================================
+--- puppet/modules/pam/manifests/init.pp	2010-11-22 02:04:03 UTC (rev 376)
++++ puppet/modules/pam/manifests/init.pp	2010-11-22 02:04:04 UTC (rev 377)
+@@ -20,6 +20,9 @@
+          mode => 644,
+          content => template("pam/nsswitch.conf")
+       }
++
++      $nssldap_password = extlookup("nssldap_password")
++ 
+       file { "ldap.conf":
+          path => "/etc/ldap.conf",
+          owner => root,
+
+Modified: puppet/modules/pam/templates/ldap.conf
+===================================================================
+--- puppet/modules/pam/templates/ldap.conf	2010-11-22 02:04:03 UTC (rev 376)
++++ puppet/modules/pam/templates/ldap.conf	2010-11-22 02:04:04 UTC (rev 377)
+@@ -1,4 +1,5 @@
+-
++binddn uid=nssldap,ou=System Accounts,<%= dc_suffix %>
++bindpw <%= nssldap_password %>
+ uri ldaps://ldap.<%= domain %>
+ base <%= dc_suffix %>
+ pam_lookup_policy no
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/e27c07e8/attachment-0001.html>
+
+ + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000750.html b/zarb-ml/mageia-sysadm/2010-November/000750.html new file mode 100644 index 000000000..e36b70cca --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000750.html @@ -0,0 +1,320 @@ + + + + [Mageia-sysadm] [375] - do not hardcode mageia.org in acl + + + + + + + + + +

[Mageia-sysadm] [375] - do not hardcode mageia.org in acl

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 03:04:02 CET 2010 +

+
+ +
Revision: 375
+Author:   misc
+Date:     2010-11-22 03:04:02 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+- do not hardcode mageia.org in acl
+
+Modified Paths:
+--------------
+    puppet/modules/openldap/templates/mandriva-dit-access.conf
+
+Modified: puppet/modules/openldap/templates/mandriva-dit-access.conf
+===================================================================
+--- puppet/modules/openldap/templates/mandriva-dit-access.conf	2010-11-22 02:03:58 UTC (rev 374)
++++ puppet/modules/openldap/templates/mandriva-dit-access.conf	2010-11-22 02:04:02 UTC (rev 375)
+@@ -1,184 +1,184 @@
+ # mandriva-dit-access.conf
+ 
+-limits group="cn=LDAP Replicators,ou=System Groups,dc=mageia,dc=org"
++limits group="cn=LDAP Replicators,ou=System Groups,<%= dc_suffix %>"
+ 	limit size=unlimited
+ 	limit time=unlimited
+ 
+-limits group="cn=LDAP Admins,ou=System Groups,dc=mageia,dc=org"
++limits group="cn=LDAP Admins,ou=System Groups,<%= dc_suffix %>"
+ 	limit size=unlimited
+ 	limit time=unlimited
+ 
+-limits group="cn=Account Admins,ou=System Groups,dc=mageia,dc=org"
++limits group="cn=Account Admins,ou=System Groups,<%= dc_suffix %>"
+ 	limit size=unlimited
+ 	limit time=unlimited
+ 
+ # so we don't have to add these to every other acl down there
+-access to dn.subtree="dc=mageia,dc=org"
+-	by group.exact="cn=LDAP Admins,ou=System Groups,dc=mageia,dc=org" write
+-	by group.exact="cn=LDAP Replicators,ou=System Groups,dc=mageia,dc=org" read
++access to dn.subtree="<%= dc_suffix %>"
++	by group.exact="cn=LDAP Admins,ou=System Groups,<%= dc_suffix %>" write
++	by group.exact="cn=LDAP Replicators,ou=System Groups,<%= dc_suffix %>" read
+ 	by * break
+ 
+ # userPassword access
+ # Allow account registration to write userPassword of unprivileged users accounts
+-access to dn.subtree="ou=People,dc=mageia,dc=org" 
++access to dn.subtree="ou=People,<%= dc_suffix %>" 
+ 	filter="(&(objectclass=inetOrgPerson)(!(objectclass=posixAccount)))"
+ 	attrs=userPassword,pwdReset
+-	by group/groupOfNames/member.exact="cn=registrars,ou=system groups,dc=mageia,dc=org" +a
++	by group/groupOfNames/member.exact="cn=registrars,ou=system groups,<%= dc_suffix %>" +a
+ 	by * +0 break
+ 
+ # shadowLastChange is here because it needs to be writable by the user because
+ # of pam_ldap, which will update this attr whenever the password is changed.
+ # And this is done with the user's credentials
+-access to dn.subtree="dc=mageia,dc=org"
++access to dn.subtree="<%= dc_suffix %>"
+         attrs=shadowLastChange
+         by self write
+-        by group.exact="cn=Account Admins,ou=System Groups,dc=mageia,dc=org" write
++        by group.exact="cn=Account Admins,ou=System Groups,<%= dc_suffix %>" write
+         by users read
+-access to dn.subtree="dc=mageia,dc=org"
++access to dn.subtree="<%= dc_suffix %>"
+ 	attrs=userPassword
+-	by group.exact="cn=Account Admins,ou=System Groups,dc=mageia,dc=org" write
++	by group.exact="cn=Account Admins,ou=System Groups,<%= dc_suffix %>" write
+ 	by self write
+ 	by anonymous auth
+ 	by * none
+ 
+ # kerberos key access
+ # "by auth" just in case...
+-access to dn.subtree="dc=mageia,dc=org"
++access to dn.subtree="<%= dc_suffix %>"
+         attrs=krb5Key
+         by self write
+-        by group.exact="cn=Account Admins,ou=System Groups,dc=mageia,dc=org" write
++        by group.exact="cn=Account Admins,ou=System Groups,<%= dc_suffix %>" write
+         by anonymous auth
+         by * none
+ 
+ # password policies
+-access to dn.subtree="ou=Password Policies,dc=mageia,dc=org"
+-	by group.exact="cn=Account Admins,ou=System Groups,dc=mageia,dc=org" write
++access to dn.subtree="ou=Password Policies,<%= dc_suffix %>"
++	by group.exact="cn=Account Admins,ou=System Groups,<%= dc_suffix %>" write
+ 	by users read
+ 
+ # samba password attributes
+ # by self not strictly necessary, because samba uses its own admin user to
+ # change the password on the user's behalf
+ # openldap also doesn't auth on these attributes, but maybe some day it will
+-access to dn.subtree="dc=mageia,dc=org"
++access to dn.subtree="<%= dc_suffix %>"
+ 	attrs=sambaLMPassword,sambaNTPassword
+-	by group.exact="cn=Account Admins,ou=System Groups,dc=mageia,dc=org" write
++	by group.exact="cn=Account Admins,ou=System Groups,<%= dc_suffix %>" write
+ 	by anonymous auth
+ 	by self write
+ 	by * none
+ # password history attribute
+ # pwdHistory is read-only, but ACL is simplier with it here
+-access to dn.subtree="dc=mageia,dc=org"
++access to dn.subtree="<%= dc_suffix %>"
+ 	attrs=sambaPasswordHistory,pwdHistory
+ 	by self read
+-	by group.exact="cn=Account Admins,ou=System Groups,dc=mageia,dc=org" write
++	by group.exact="cn=Account Admins,ou=System Groups,<%= dc_suffix %>" write
+ 	by * none
+ 
+ # pwdReset, so the admin can force an user to change a password
+-access to dn.subtree="dc=mageia,dc=org"
++access to dn.subtree="<%= dc_suffix %>"
+ 	attrs=pwdReset,pwdAccountLockedTime
+-	by group.exact="cn=Account Admins,ou=System Groups,dc=mageia,dc=org" write
++	by group.exact="cn=Account Admins,ou=System Groups,<%= dc_suffix %>" write
+ 	by self read
+ 
+ # group owner can add/remove/edit members to groups
+-access to dn.regex="^cn=[^,]+,ou=(System Groups|Group),dc=mageia,dc=org$"
++access to dn.regex="^cn=[^,]+,ou=(System Groups|Group),<%= dc_suffix %>$"
+ 	attrs=member
+ 	by dnattr=owner write
+-	by group.exact="cn=Account Admins,ou=System Groups,dc=mageia,dc=org" write
++	by group.exact="cn=Account Admins,ou=System Groups,<%= dc_suffix %>" write
+ 	by users +sx
+ 
+-access to dn.regex="^cn=[^,]+,ou=(System Groups|Group),dc=mageia,dc=org$"
++access to dn.regex="^cn=[^,]+,ou=(System Groups|Group),<%= dc_suffix %>$"
+ 	attrs=cn,description,objectClass,gidNumber
+-	by group.exact="cn=Account Admins,ou=System Groups,dc=mageia,dc=org" write
++	by group.exact="cn=Account Admins,ou=System Groups,<%= dc_suffix %>" write
+ 	by users read
+ 
+ # registration - allow registrar group to create basic unprivileged accounts
+-access to dn.subtree="ou=People,dc=mageia,dc=org" 
++access to dn.subtree="ou=People,<%= dc_suffix %>" 
+ 	attrs="objectClass" 
+ 	val="inetOrgperson" 
+-	by group/groupOfNames/member.exact="cn=registrars,ou=system groups,dc=mageia,dc=org" =asrx
++	by group/groupOfNames/member.exact="cn=registrars,ou=system groups,<%= dc_suffix %>" =asrx
+ 	by * +0 break
+ 
+-access to dn.subtree="ou=People,dc=mageia,dc=org" 
++access to dn.subtree="ou=People,<%= dc_suffix %>" 
+ 	filter="(!(objectclass=posixAccount))"
+ 	attrs=cn,sn,gn,mail,entry,children,preferredLanguage
+-	by group/groupOfNames/member.exact="cn=registrars,ou=system groups,dc=mageia,dc=org" =asrx
++	by group/groupOfNames/member.exact="cn=registrars,ou=system groups,<%= dc_suffix %>" =asrx
+ 	by * +0 break
+ 
+ # let the user change some of his/her attributes
+-access to dn.subtree="ou=People,dc=mageia,dc=org"
++access to dn.subtree="ou=People,<%= dc_suffix %>"
+ 	attrs=carLicense,homePhone,homePostalAddress,mobile,pager,telephoneNumber,mail,preferredLanguage
+ 	by self write
+ 	by users read
+ 
+ # create new accounts
+-access to dn.regex="^([^,]+,)?ou=(People|Group|Hosts),dc=mageia,dc=org$"
++access to dn.regex="^([^,]+,)?ou=(People|Group|Hosts),<%= dc_suffix %>$"
+ 	attrs=children,entry
+-	by group.exact="cn=Account Admins,ou=System Groups,dc=mageia,dc=org" write
++	by group.exact="cn=Account Admins,ou=System Groups,<%= dc_suffix %>" write
+ 	by * break
+ # access to existing entries
+-access to dn.regex="^[^,]+,ou=(People|Hosts|Group),dc=mageia,dc=org$"
+-	by group.exact="cn=Account Admins,ou=System Groups,dc=mageia,dc=org" write
++access to dn.regex="^[^,]+,ou=(People|Hosts|Group),<%= dc_suffix %>$"
++	by group.exact="cn=Account Admins,ou=System Groups,<%= dc_suffix %>" write
+ 	by * break
+ 
+ # sambaDomainName entry
+-access to dn.regex="^(sambaDomainName=[^,]+,)?dc=mageia,dc=org$"
++access to dn.regex="^(sambaDomainName=[^,]+,)?<%= dc_suffix %>$"
+ 	attrs=children,entry, at sambaDomain, at sambaUnixIdPool
+-	by group.exact="cn=Account Admins,ou=System Groups,dc=mageia,dc=org" write
++	by group.exact="cn=Account Admins,ou=System Groups,<%= dc_suffix %>" write
+ 	by users read
+ 
+ # samba ID mapping
+-access to dn.regex="^(sambaSID=[^,]+,)?ou=Idmap,dc=mageia,dc=org$"
++access to dn.regex="^(sambaSID=[^,]+,)?ou=Idmap,<%= dc_suffix %>$"
+ 	attrs=children,entry, at sambaIdmapEntry
+-	by group.exact="cn=Account Admins,ou=System Groups,dc=mageia,dc=org" write
+-	by group.exact="cn=IDMAP Admins,ou=System Groups,dc=mageia,dc=org" write
++	by group.exact="cn=Account Admins,ou=System Groups,<%= dc_suffix %>" write
++	by group.exact="cn=IDMAP Admins,ou=System Groups,<%= dc_suffix %>" write
+ 	by users read
+ 
+ # global address book
+ # XXX - which class(es) to use?
+-access to dn.regex="^(.*,)?ou=Address Book,dc=mageia,dc=org"
++access to dn.regex="^(.*,)?ou=Address Book,<%= dc_suffix %>"
+ 	attrs=children,entry, at inetOrgPerson, at evolutionPerson, at evolutionPersonList
+-	by group.exact="cn=Address Book Admins,ou=System Groups,dc=mageia,dc=org" write
++	by group.exact="cn=Address Book Admins,ou=System Groups,<%= dc_suffix %>" write
+ 	by users read
+ 
+ # dhcp entries
+ # XXX - open up read access to anybody?
+-access to dn.sub="ou=dhcp,dc=mageia,dc=org"
++access to dn.sub="ou=dhcp,<%= dc_suffix %>"
+ 	attrs=children,entry, at dhcpService, at dhcpServer, at dhcpSharedNetwork, at dhcpSubnet, at dhcpPool, at dhcpGroup, at dhcpHost, at dhcpClass, at dhcpSubClass, at dhcpOptions, at dhcpLeases, at dhcpLog
+-	by group.exact="cn=DHCP Admins,ou=System Groups,dc=mageia,dc=org" write
+-	by group.exact="cn=DHCP Readers,ou=System Groups,dc=mageia,dc=org" read
++	by group.exact="cn=DHCP Admins,ou=System Groups,<%= dc_suffix %>" write
++	by group.exact="cn=DHCP Readers,ou=System Groups,<%= dc_suffix %>" read
+ 	by * read
+ 
+ # sudoers
+-access to dn.regex="^([^,]+,)?ou=sudoers,dc=mageia,dc=org$"
++access to dn.regex="^([^,]+,)?ou=sudoers,<%= dc_suffix %>$"
+ 	attrs=children,entry, at sudoRole
+-	by group.exact="cn=Sudo Admins,ou=System Groups,dc=mageia,dc=org" write
++	by group.exact="cn=Sudo Admins,ou=System Groups,<%= dc_suffix %>" write
+ 	by users read
+ 
+ # dns
+-access to dn="ou=dns,dc=mageia,dc=org"
++access to dn="ou=dns,<%= dc_suffix %>"
+ 	attrs=entry, at extensibleObject
+-	by group.exact="cn=DNS Admins,ou=System Groups,dc=mageia,dc=org" write
++	by group.exact="cn=DNS Admins,ou=System Groups,<%= dc_suffix %>" write
+ 	by users read
+-access to dn.sub="ou=dns,dc=mageia,dc=org"
++access to dn.sub="ou=dns,<%= dc_suffix %>"
+ 	attrs=children,entry, at dNSZone
+-	by group.exact="cn=DNS Admins,ou=System Groups,dc=mageia,dc=org" write
+-	by group.exact="cn=DNS Readers,ou=System Groups,dc=mageia,dc=org" read
++	by group.exact="cn=DNS Admins,ou=System Groups,<%= dc_suffix %>" write
++	by group.exact="cn=DNS Readers,ou=System Groups,<%= dc_suffix %>" read
+ 	by * none
+ 
+ 
+ # MTA
+ # XXX - what else can we add here? Virtual Domains? With which schema?
+-access to dn.one="ou=People,dc=mageia,dc=org"
++access to dn.one="ou=People,<%= dc_suffix %>"
+ 	attrs=@inetLocalMailRecipient,mail
+-	by group.exact="cn=MTA Admins,ou=System Groups,dc=mageia,dc=org" write
++	by group.exact="cn=MTA Admins,ou=System Groups,<%= dc_suffix %>" write
+ 	by users read
+ 
+ # KDE Configuration
+-access to dn.sub="ou=KDEConfig,dc=mageia,dc=org"
+-	by group.exact="cn=KDEConfig Admins,ou=System Groups,dc=mageia,dc=org" write
++access to dn.sub="ou=KDEConfig,<%= dc_suffix %>"
++	by group.exact="cn=KDEConfig Admins,ou=System Groups,<%= dc_suffix %>" write
+ 	by * read
+ 
+ # last one
+-access to dn.subtree="dc=mageia,dc=org" attrs=entry,uid,cn
++access to dn.subtree="<%= dc_suffix %>" attrs=entry,uid,cn
+ 	by users read
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/87e3ed06/attachment-0001.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000751.html b/zarb-ml/mageia-sysadm/2010-November/000751.html new file mode 100644 index 000000000..e95d0a73d --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000751.html @@ -0,0 +1,189 @@ + + + + [Mageia-sysadm] [378] - add default password of x, so manifests do not fail on test vms + + + + + + + + + +

[Mageia-sysadm] [378] - add default password of x, so manifests do not fail on test vms

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 03:04:06 CET 2010 +

+
+ +
Revision: 378
+Author:   misc
+Date:     2010-11-22 03:04:06 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+- add default password of x, so manifests do not fail on test vms
+
+Modified Paths:
+--------------
+    puppet/modules/bugzilla/manifests/init.pp
+    puppet/modules/catdap/manifests/init.pp
+    puppet/modules/epoll/manifests/init.pp
+    puppet/modules/mga-mirrors/manifests/init.pp
+    puppet/modules/pam/manifests/init.pp
+    puppet/modules/sympa/manifests/init.pp
+    puppet/modules/transifex/manifests/init.pp
+
+Modified: puppet/modules/bugzilla/manifests/init.pp
+===================================================================
+--- puppet/modules/bugzilla/manifests/init.pp	2010-11-22 02:04:04 UTC (rev 377)
++++ puppet/modules/bugzilla/manifests/init.pp	2010-11-22 02:04:06 UTC (rev 378)
+@@ -4,8 +4,8 @@
+         ensure => installed;
+     }
+ 
+-    $password = extlookup("bugzilla_password")
+-    $passwordLdap = extlookup("bugzilla_ldap")
++    $password = extlookup("bugzilla_password",'x')
++    $passwordLdap = extlookup("bugzilla_ldap",'x')
+ 
+     file { '/etc/bugzilla/localconfig':
+       ensure => present,
+
+Modified: puppet/modules/catdap/manifests/init.pp
+===================================================================
+--- puppet/modules/catdap/manifests/init.pp	2010-11-22 02:04:04 UTC (rev 377)
++++ puppet/modules/catdap/manifests/init.pp	2010-11-22 02:04:06 UTC (rev 378)
+@@ -21,7 +21,7 @@
+         source => "svn://svn.mageia.org/soft/identity/CatDap/branches/live"
+     }
+ 
+-    $catdap_password = extlookup('catdap_password')
++    $catdap_password = extlookup('catdap_password','x')
+     
+     file { "$catdap_location/catdap_local.yml":
+         ensure => present,
+
+Modified: puppet/modules/epoll/manifests/init.pp
+===================================================================
+--- puppet/modules/epoll/manifests/init.pp	2010-11-22 02:04:04 UTC (rev 377)
++++ puppet/modules/epoll/manifests/init.pp	2010-11-22 02:04:06 UTC (rev 378)
+@@ -10,7 +10,7 @@
+         script => "/usr/bin/epoll_fastcgi.pl" 
+     }
+      
+-    $password = extlookup("epoll_password")
++    $password = extlookup("epoll_password",'x')
+  
+     file { "epoll.yml": 
+         path => "/etc/epoll.yml",    
+
+Modified: puppet/modules/mga-mirrors/manifests/init.pp
+===================================================================
+--- puppet/modules/mga-mirrors/manifests/init.pp	2010-11-22 02:04:04 UTC (rev 377)
++++ puppet/modules/mga-mirrors/manifests/init.pp	2010-11-22 02:04:06 UTC (rev 378)
+@@ -10,7 +10,7 @@
+         script => "/usr/bin/mga_mirrors_fastcgi.pl" 
+     }
+ 
+-    $password = extlookup("mga_mirror_password")
++    $password = extlookup("mga_mirror_password",'x')
+  
+     file { "mga-mirrors.ini": 
+         path => "/etc/mga-mirrors.ini",    
+
+Modified: puppet/modules/pam/manifests/init.pp
+===================================================================
+--- puppet/modules/pam/manifests/init.pp	2010-11-22 02:04:04 UTC (rev 377)
++++ puppet/modules/pam/manifests/init.pp	2010-11-22 02:04:06 UTC (rev 378)
+@@ -21,7 +21,7 @@
+          content => template("pam/nsswitch.conf")
+       }
+ 
+-      $nssldap_password = extlookup("nssldap_password")
++      $nssldap_password = extlookup("nssldap_password",'x')
+  
+       file { "ldap.conf":
+          path => "/etc/ldap.conf",
+
+Modified: puppet/modules/sympa/manifests/init.pp
+===================================================================
+--- puppet/modules/sympa/manifests/init.pp	2010-11-22 02:04:04 UTC (rev 377)
++++ puppet/modules/sympa/manifests/init.pp	2010-11-22 02:04:06 UTC (rev 378)
+@@ -6,8 +6,8 @@
+         ensure => installed;
+     }
+ 
+-    $password = extlookup("sympa_password")
+-    $ldappass = extlookup("sympa_ldap")
++    $password = extlookup("sympa_password",'x')
++    $ldappass = extlookup("sympa_ldap",'x')
+ 
+     file { '/etc/sympa/sympa.conf':
+         ensure => present,
+
+Modified: puppet/modules/transifex/manifests/init.pp
+===================================================================
+--- puppet/modules/transifex/manifests/init.pp	2010-11-22 02:04:04 UTC (rev 377)
++++ puppet/modules/transifex/manifests/init.pp	2010-11-22 02:04:06 UTC (rev 378)
+@@ -3,7 +3,7 @@
+     ensure => installed
+   }
+  
+-  $password = extlookup("transifex_password") 
++  $password = extlookup("transifex_password",'x')
+   file { "20-engines.conf":
+     path => "/etc/transifex/20-engines.conf",
+     ensure => present,
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/ef097627/attachment.html>
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000752.html b/zarb-ml/mageia-sysadm/2010-November/000752.html new file mode 100644 index 000000000..b86b0fc5d --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000752.html @@ -0,0 +1,104 @@ + + + + [Mageia-sysadm] [379] require instead of including iurtuser (so that .ssh is created before ) + + + + + + + + + +

[Mageia-sysadm] [379] require instead of including iurtuser (so that .ssh is created before )

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 08:15:51 CET 2010 +

+
+ +
Revision: 379
+Author:   blino
+Date:     2010-11-22 08:15:50 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+require instead of including iurtuser (so that .ssh is created before)
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-22 02:04:06 UTC (rev 378)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-22 07:15:50 UTC (rev 379)
+@@ -9,7 +9,7 @@
+     }
+ 
+     class mainnode inherits base {
+-        include iurtuser
++        require iurtuser
+         ssh::auth::server { $build_login: }
+ 
+         package { "task-bs-cluster-main":
+@@ -60,7 +60,7 @@
+ 
+     class iurt {
+         include sudo
+-        include iurtuser
++        require iurtuser
+         ssh::auth::client { $build_login: }
+ 
+         # build node common settings
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/d3aad347/attachment.html>
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000753.html b/zarb-ml/mageia-sysadm/2010-November/000753.html new file mode 100644 index 000000000..f0c44bacb --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000753.html @@ -0,0 +1,97 @@ + + + + [Mageia-sysadm] [380] home should be tested as a directory + + + + + + + + + +

[Mageia-sysadm] [380] home should be tested as a directory

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 08:20:26 CET 2010 +

+
+ +
Revision: 380
+Author:   blino
+Date:     2010-11-22 08:20:25 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+home should be tested as a directory
+
+Modified Paths:
+--------------
+    puppet/modules/ssh/manifests/auth.pp
+
+Modified: puppet/modules/ssh/manifests/auth.pp
+===================================================================
+--- puppet/modules/ssh/manifests/auth.pp	2010-11-22 07:15:50 UTC (rev 379)
++++ puppet/modules/ssh/manifests/auth.pp	2010-11-22 07:20:25 UTC (rev 380)
+@@ -237,6 +237,10 @@
+ 
+ define ssh_auth_key_client ($ensure, $filename, $group, $home, $user) {
+ 
++  file { $home:
++    ensure => "directory",
++  }
++
+   File {
+     owner   => $user,
+     group   => $group,
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/0f393bf1/attachment.html>
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000754.html b/zarb-ml/mageia-sysadm/2010-November/000754.html new file mode 100644 index 000000000..eb0cef68f --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000754.html @@ -0,0 +1,69 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Mon Nov 22 08:20:44 CET 2010 +

+
+ +
Mon Nov 22 08:20:44 +0100 2010 Puppet (err): Could not apply complete catalog: Found dependency cycles in the following relationships: File[/home/iurt//.ssh] => File[/etc/sudoers.d/iurt], File[/home/iurt//.ssh] => File[/home/iurt//.iurt.cauldron.conf], File[/home/iurt] => File[/home/iurt//.iurt.cauldron.conf], File[/home/iurt//.ssh] => Package[iurt], File[/home/iurt//.ssh] => File[/home/iurt/.ssh/id_rsa.pub], File[/home/iurt] => File[/home/iurt/.ssh/id_rsa.pub], File[/home/iurt] => File[/home/iurt], File[/home/iurt//.ssh] => File[/home/iurt/.ssh/id_rsa], File[/home/iurt] => File[/home/iurt/.ssh/id_rsa], File[/home/iurt//.ssh] => Class[iurt], File[/home/iurt] => File[/home/iurt//.ssh], File[/home/iurt//.ssh] => Package[task-bs-cluster-chroot]; try using the '--graph' option and open the '.dot' files in OmniGraffle or GraphViz
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000755.html b/zarb-ml/mageia-sysadm/2010-November/000755.html new file mode 100644 index 000000000..92f73359c --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000755.html @@ -0,0 +1,104 @@ + + + + [Mageia-sysadm] [381] use again include instead of require to avoid deps cycle + + + + + + + + + +

[Mageia-sysadm] [381] use again include instead of require to avoid deps cycle

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 08:21:22 CET 2010 +

+
+ +
Revision: 381
+Author:   blino
+Date:     2010-11-22 08:21:22 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+use again include instead of require to avoid deps cycle
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-22 07:20:25 UTC (rev 380)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-22 07:21:22 UTC (rev 381)
+@@ -9,7 +9,7 @@
+     }
+ 
+     class mainnode inherits base {
+-        require iurtuser
++        include iurtuser
+         ssh::auth::server { $build_login: }
+ 
+         package { "task-bs-cluster-main":
+@@ -60,7 +60,7 @@
+ 
+     class iurt {
+         include sudo
+-        require iurtuser
++        include iurtuser
+         ssh::auth::client { $build_login: }
+ 
+         # build node common settings
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/4a9d7791/attachment.html>
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000756.html b/zarb-ml/mageia-sysadm/2010-November/000756.html new file mode 100644 index 000000000..9b047c5ad --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000756.html @@ -0,0 +1,69 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Mon Nov 22 08:21:33 CET 2010 +

+
+ +
Mon Nov 22 08:21:33 +0100 2010 Puppet (err): Could not apply complete catalog: Found dependency cycles in the following relationships: File[/home/iurt] => File[/home/iurt//.iurt.cauldron.conf], File[/home/iurt//.ssh] => File[/home/iurt/.ssh/id_rsa], File[/home/iurt] => File[/home/iurt/.ssh/id_rsa], File[/home/iurt] => File[/home/iurt//.ssh], File[/home/iurt//.ssh] => File[/home/iurt/.ssh/id_rsa.pub], File[/home/iurt] => File[/home/iurt/.ssh/id_rsa.pub], File[/home/iurt] => File[/home/iurt]; try using the '--graph' option and open the '.dot' files in OmniGraffle or GraphViz
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000757.html b/zarb-ml/mageia-sysadm/2010-November/000757.html new file mode 100644 index 000000000..473f0eccd --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000757.html @@ -0,0 +1,69 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Mon Nov 22 08:22:25 CET 2010 +

+
+ +
Mon Nov 22 08:22:25 +0100 2010 Puppet (err): Could not apply complete catalog: Found dependency cycles in the following relationships: File[/home/iurt] => File[/home/iurt], File[/home/iurt//.ssh] => File[/home/iurt/.ssh/id_rsa], File[/home/iurt] => File[/home/iurt/.ssh/id_rsa], File[/home/iurt//.ssh] => File[/home/iurt/.ssh/id_rsa.pub], File[/home/iurt] => File[/home/iurt/.ssh/id_rsa.pub], File[/home/iurt] => File[/home/iurt//.iurt.cauldron.conf], File[/home/iurt] => File[/home/iurt//.ssh]; try using the '--graph' option and open the '.dot' files in OmniGraffle or GraphViz
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000758.html b/zarb-ml/mageia-sysadm/2010-November/000758.html new file mode 100644 index 000000000..35df5976d --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000758.html @@ -0,0 +1,95 @@ + + + + [Mageia-sysadm] [382] remove trailing slash from home dir + + + + + + + + + +

[Mageia-sysadm] [382] remove trailing slash from home dir

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 08:23:36 CET 2010 +

+
+ +
Revision: 382
+Author:   blino
+Date:     2010-11-22 08:23:36 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+remove trailing slash from home dir
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-22 07:21:22 UTC (rev 381)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-22 07:23:36 UTC (rev 382)
+@@ -2,7 +2,7 @@
+ 
+     class base {
+ 	$build_login = "iurt"
+-	$build_home_dir = "/home/iurt/"
++	$build_home_dir = "/home/iurt"
+ 
+ 	include ssh::auth
+ 	ssh::auth::key { $build_login: } # declare a key for build bot: RSA, 2048 bits
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/2e298dfd/attachment.html>
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000759.html b/zarb-ml/mageia-sysadm/2010-November/000759.html new file mode 100644 index 000000000..da4f45eee --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000759.html @@ -0,0 +1,69 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Mon Nov 22 08:23:48 CET 2010 +

+
+ +
Mon Nov 22 08:23:48 +0100 2010 Puppet (err): Could not apply complete catalog: Found dependency cycles in the following relationships: File[/home/iurt/.ssh] => File[/home/iurt/.ssh/id_rsa.pub], File[/home/iurt] => File[/home/iurt/.ssh/id_rsa.pub], File[/home/iurt] => File[/home/iurt], File[/home/iurt] => File[/home/iurt/.ssh], File[/home/iurt/.ssh] => File[/home/iurt/.ssh/id_rsa], File[/home/iurt] => File[/home/iurt/.ssh/id_rsa], File[/home/iurt] => File[/home/iurt/.iurt.cauldron.conf]; try using the '--graph' option and open the '.dot' files in OmniGraffle or GraphViz
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000760.html b/zarb-ml/mageia-sysadm/2010-November/000760.html new file mode 100644 index 000000000..b3fe3d537 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000760.html @@ -0,0 +1,97 @@ + + + + [Mageia-sysadm] [383] ensure home is a directory + + + + + + + + + +

[Mageia-sysadm] [383] ensure home is a directory

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 08:29:23 CET 2010 +

+
+ +
Revision: 383
+Author:   blino
+Date:     2010-11-22 08:29:23 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+ensure home is a directory
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-22 07:23:36 UTC (rev 382)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-22 07:29:23 UTC (rev 383)
+@@ -50,6 +50,10 @@
+             shell => "/bin/bash",
+         }
+ 
++        file { $build_home_dir:
++            ensure => "directory",
++        }
++
+         file { "$build_home_dir/.ssh":
+             ensure => "directory",
+             mode   => 600,
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/97bcc30c/attachment.html>
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000761.html b/zarb-ml/mageia-sysadm/2010-November/000761.html new file mode 100644 index 000000000..8e19c167c --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000761.html @@ -0,0 +1,70 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Mon Nov 22 08:29:33 CET 2010 +

+
+ +
Mon Nov 22 08:29:32 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Duplicate definition: File[/home/iurt] is already defined in file /etc/puppet/modules/buildsystem/manifests/init.pp at line 55; cannot redefine at /etc/puppet/modules/ssh/manifests/auth.pp:242 on node jonund.mageia.org
+Mon Nov 22 08:29:33 +0100 2010 Puppet (err): Could not apply complete catalog: Found dependency cycles in the following relationships: File[/home/iurt/.ssh] => File[/home/iurt/.ssh/id_rsa], File[/home/iurt] => File[/home/iurt/.ssh/id_rsa], File[/home/iurt] => File[/home/iurt/.iurt.cauldron.conf], File[/home/iurt/.ssh] => File[/home/iurt/.ssh/id_rsa.pub], File[/home/iurt] => File[/home/iurt/.ssh/id_rsa.pub], File[/home/iurt] => File[/home/iurt/.ssh], File[/home/iurt] => File[/home/iurt]; try using the '--graph' option and open the '.dot' files in OmniGraffle or GraphViz
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000762.html b/zarb-ml/mageia-sysadm/2010-November/000762.html new file mode 100644 index 000000000..2511ca6bd --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000762.html @@ -0,0 +1,70 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Mon Nov 22 08:29:46 CET 2010 +

+
+ +
Mon Nov 22 08:29:45 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Duplicate definition: File[/home/iurt] is already defined in file /etc/puppet/modules/buildsystem/manifests/init.pp at line 55; cannot redefine at /etc/puppet/modules/ssh/manifests/auth.pp:242 on node jonund.mageia.org
+Mon Nov 22 08:29:46 +0100 2010 Puppet (err): Could not apply complete catalog: Found dependency cycles in the following relationships: File[/home/iurt] => File[/home/iurt/.ssh/id_rsa.pub], File[/home/iurt/.ssh] => File[/home/iurt/.ssh/id_rsa.pub], File[/home/iurt] => File[/home/iurt/.ssh/id_rsa], File[/home/iurt/.ssh] => File[/home/iurt/.ssh/id_rsa], File[/home/iurt] => File[/home/iurt], File[/home/iurt] => File[/home/iurt/.ssh], File[/home/iurt] => File[/home/iurt/.iurt.cauldron.conf]; try using the '--graph' option and open the '.dot' files in OmniGraffle or GraphViz
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000763.html b/zarb-ml/mageia-sysadm/2010-November/000763.html new file mode 100644 index 000000000..4c712283f --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000763.html @@ -0,0 +1,97 @@ + + + + [Mageia-sysadm] [384] remove home def + + + + + + + + + +

[Mageia-sysadm] [384] remove home def

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 08:30:07 CET 2010 +

+
+ +
Revision: 384
+Author:   blino
+Date:     2010-11-22 08:30:07 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+remove home def
+
+Modified Paths:
+--------------
+    puppet/modules/ssh/manifests/auth.pp
+
+Modified: puppet/modules/ssh/manifests/auth.pp
+===================================================================
+--- puppet/modules/ssh/manifests/auth.pp	2010-11-22 07:29:23 UTC (rev 383)
++++ puppet/modules/ssh/manifests/auth.pp	2010-11-22 07:30:07 UTC (rev 384)
+@@ -237,10 +237,6 @@
+ 
+ define ssh_auth_key_client ($ensure, $filename, $group, $home, $user) {
+ 
+-  file { $home:
+-    ensure => "directory",
+-  }
+-
+   File {
+     owner   => $user,
+     group   => $group,
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/ee1329af/attachment.html>
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000764.html b/zarb-ml/mageia-sysadm/2010-November/000764.html new file mode 100644 index 000000000..e0b336556 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000764.html @@ -0,0 +1,90 @@ + + + + [Mageia-sysadm] [340] Merge remote branch 'vm_valstar/master' + + + + + + + + + +

[Mageia-sysadm] [340] Merge remote branch 'vm_valstar/master'

+ Colin Guthrie + mageia at colin.guthr.ie +
+ Mon Nov 22 10:40:05 CET 2010 +

+
+ +
'Twas brillig, and Michael scherer at 20/11/10 11:57 did gyre and gimble:
+> On Sat, Nov 20, 2010 at 12:52:54PM +0100, root at mageia.org wrote:
+>> Revision: 340
+>> Author:   misc
+>> Date:     2010-11-20 12:52:54 +0100 (Sat, 20 Nov 2010)
+>> Log Message:
+>> -----------
+>> Merge remote branch 'vm_valstar/master'
+> 
+> Oups :/
+> 
+> Sorry, I (again) managed to do thing wrong with git merge.
+
+Yeah I've been bitten a few times with that. The trick is to never use
+git merge when dealing with svn as the ultimate destination. Always
+rebase. It's a bitch for real distributed git work, but it's fine if
+it's a private repo. :)
+
+Col
+
+-- 
+
+Colin Guthrie
+mageia(at)colin.guthr.ie
+http://colin.guthr.ie/
+
+Day Job:
+  Tribalogic Limited [http://www.tribalogic.net/]
+Open Source:
+  Mageia Contributor [http://www.mageia.org/]
+  PulseAudio Hacker [http://www.pulseaudio.org/]
+  Trac Hacker [http://trac.edgewall.org/]
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000765.html b/zarb-ml/mageia-sysadm/2010-November/000765.html new file mode 100644 index 000000000..78eb0708b --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000765.html @@ -0,0 +1,93 @@ + + + + [Mageia-sysadm] [385] set password to * to unlock the account but forbid login through login + + + + + + + + + +

[Mageia-sysadm] [385] set password to * to unlock the account but forbid login through login

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 13:13:11 CET 2010 +

+
+ +
Revision: 385
+Author:   blino
+Date:     2010-11-22 13:13:10 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+set password to * to unlock the account but forbid login through login
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-22 07:30:07 UTC (rev 384)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-22 12:13:10 UTC (rev 385)
+@@ -48,6 +48,7 @@
+             managehome => true,
+             gid => $build_login,
+             shell => "/bin/bash",
++            password => '*', # set password to * to unlock the account but forbid login through login
+         }
+ 
+         file { $build_home_dir:
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/3be9d1a5/attachment.html>
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000766.html b/zarb-ml/mageia-sysadm/2010-November/000766.html new file mode 100644 index 000000000..84b36c2b0 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000766.html @@ -0,0 +1,102 @@ + + + + [Mageia-sysadm] [386] useradd module does not support password change, use usermod + + + + + + + + + +

[Mageia-sysadm] [386] useradd module does not support password change, use usermod

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 13:29:28 CET 2010 +

+
+ +
Revision: 386
+Author:   blino
+Date:     2010-11-22 13:29:28 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+useradd module does not support password change, use usermod
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-22 12:13:10 UTC (rev 385)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-22 12:29:28 UTC (rev 386)
+@@ -48,9 +48,15 @@
+             managehome => true,
+             gid => $build_login,
+             shell => "/bin/bash",
+-            password => '*', # set password to * to unlock the account but forbid login through login
++            notify => Exec["unlock$build_login"],
+         }
+ 
++        # set password to * to unlock the account but forbid login through login
++        exec { "unlock$build_login":
++            command => "usermod -p '*' $build_login",
++            refreshonly => true,
++        }
++
+         file { $build_home_dir:
+             ensure => "directory",
+         }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/161bc059/attachment.html>
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000767.html b/zarb-ml/mageia-sysadm/2010-November/000767.html new file mode 100644 index 000000000..1aff36504 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000767.html @@ -0,0 +1,94 @@ + + + + [Mageia-sysadm] [387] use build_login variable in build_home_dir + + + + + + + + + +

[Mageia-sysadm] [387] use build_login variable in build_home_dir

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 13:41:54 CET 2010 +

+
+ +
Revision: 387
+Author:   blino
+Date:     2010-11-22 13:41:54 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+use build_login variable in build_home_dir
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-22 12:29:28 UTC (rev 386)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-22 12:41:54 UTC (rev 387)
+@@ -2,7 +2,7 @@
+ 
+     class base {
+ 	$build_login = "iurt"
+-	$build_home_dir = "/home/iurt"
++	$build_home_dir = "/home/$build_login"
+ 
+ 	include ssh::auth
+ 	ssh::auth::key { $build_login: } # declare a key for build bot: RSA, 2048 bits
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/5d74b2eb/attachment.html>
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000768.html b/zarb-ml/mageia-sysadm/2010-November/000768.html new file mode 100644 index 000000000..e9c27b121 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000768.html @@ -0,0 +1,759 @@ + + + + [Mageia-sysadm] [369] move modules/ssh/manifests/init.pp as modules/ssh/manifests/auth.pp + + + + + + + + + +

[Mageia-sysadm] [369] move modules/ssh/manifests/init.pp as modules/ssh/manifests/auth.pp

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 01:25:50 CET 2010 +

+
+ +
Revision: 369
+Author:   blino
+Date:     2010-11-22 01:25:50 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+move modules/ssh/manifests/init.pp as modules/ssh/manifests/auth.pp
+
+Added Paths:
+-----------
+    puppet/modules/ssh/manifests/auth.pp
+
+Removed Paths:
+-------------
+    puppet/modules/ssh/manifests/init.pp
+
+Copied: puppet/modules/ssh/manifests/auth.pp (from rev 368, puppet/modules/ssh/manifests/init.pp)
+===================================================================
+--- puppet/modules/ssh/manifests/auth.pp	                        (rev 0)
++++ puppet/modules/ssh/manifests/auth.pp	2010-11-22 00:25:50 UTC (rev 369)
+@@ -0,0 +1,336 @@
++# =========                                                 
++# ssh::auth                                                 
++# =========                                                 
++#                                                           
++# The latest official release and documentation for ssh::auth can always
++# be found at http://reductivelabs.com/trac/puppet/wiki/Recipes/ModuleSSHAuth .
++#                                                                              
++# Version:          0.3.2                                                      
++# Release date:     2009-12-29                                                 
++
++class ssh::auth {
++
++$keymaster_storage = "/var/lib/keys" 
++
++Exec { path => "/usr/bin:/usr/sbin:/bin:/sbin" }
++Notify { withpath => false }                    
++
++
++##########################################################################
++
++
++# ssh::auth::key 
++
++# Declare keys.  The approach here is just to define a bunch of
++# virtual resources, representing key files on the keymaster, client,
++# and server.  The virtual keys are then realized by                 
++# ssh::auth::{keymaster,client,server}, respectively.  The reason for
++# doing things that way is that it makes ssh::auth::key into a "one  
++# stop shop" where users can declare their keys with all of their    
++# parameters, whether those parameters apply to the keymaster, server,
++# or client.  The real work of creating, installing, and removing keys
++# is done in the private definitions called by the virtual resources: 
++# ssh_auth_key_{master,server,client}.                                
++
++define key ($ensure = "present", $filename = "", $force = false, $group = "puppet", $home = "", $keytype = "rsa", $length = 2048, $maxdays = "", $mindate = "", $options = "", $user = "") {                                                                                                                                                    
++
++  ssh_auth_key_namecheck { "${title}-title": parm => "title", value => $title }
++
++  # apply defaults
++  $_filename = $filename ? { "" => "id_${keytype}", default => $filename }
++  $_length = $keytype ? { "rsa" => $length, "dsa" => 1024 }               
++  $_user = $user ? {                                                      
++    ""      => regsubst($title, '^([^@]*)@?.*$', '\1'),                   
++    default => $user,                                                     
++  }                                                                       
++  $_home = $home ? { "" => "/home/$_user",  default => $home }            
++
++  ssh_auth_key_namecheck { "${title}-filename": parm => "filename", value => $_filename }
++
++  @ssh_auth_key_master { $title:
++    ensure  => $ensure,         
++    force   => $force,          
++    keytype => $keytype,        
++    length  => $_length,        
++    maxdays => $maxdays,        
++    mindate => $mindate,        
++  }                             
++  @ssh_auth_key_client { $title:
++    ensure   => $ensure,        
++    filename => $_filename,     
++    group    => $group,         
++    home     => $_home,         
++    user     => $_user,         
++  }                             
++  @ssh_auth_key_server { $title:
++    ensure  => $ensure,         
++    group   => $group,          
++    home    => $_home,          
++    options => $options,        
++    user    => $_user,          
++  }                             
++}                               
++
++
++##########################################################################
++
++
++# ssh::auth::keymaster
++#                     
++# Keymaster host:     
++# Create key storage; create, regenerate, and remove key pairs
++
++class keymaster {
++
++  # Set up key storage
++
++  file { $ssh::auth::keymaster_storage:
++    ensure => directory,               
++    owner  => puppet,                  
++    group  => puppet,                  
++    mode   => 644,                     
++  }                                    
++                                       
++  # Realize all virtual master keys    
++  Ssh_auth_key_master <| |>            
++
++} # class keymaster
++
++
++##########################################################################
++
++
++# ssh::auth::client
++#                  
++# Install generated key pairs onto clients
++
++define client ($ensure = "", $filename = "", $group = "", $home = "", $user = "") {
++
++  # Realize the virtual client keys.
++  # Override the defaults set in ssh::auth::key, as needed.
++  if $ensure   { Ssh_auth_key_client <| title == $title |> { ensure   => $ensure   } }
++  if $filename { Ssh_auth_key_client <| title == $title |> { filename => $filename } }
++  if $group    { Ssh_auth_key_client <| title == $title |> { group    => $group    } }
++
++  if $user { Ssh_auth_key_client <| title == $title |> { user => $user, home => "/home/$user" } }
++  if $home { Ssh_auth_key_client <| title == $title |> { home => $home } }                       
++
++  realize Ssh_auth_key_client[$title]
++
++} # define client
++
++
++##########################################################################
++
++
++# ssh::auth::server
++#                  
++# Install public keys onto clients
++
++define server ($ensure = "", $group = "", $home = "", $options = "", $user = "") {
++
++  # Realize the virtual server keys.
++  # Override the defaults set in ssh::auth::key, as needed.
++  if $ensure  { Ssh_auth_key_server <| title == $title |> { ensure  => $ensure  } }
++  if $group   { Ssh_auth_key_server <| title == $title |> { group   => $group   } }
++  if $options { Ssh_auth_key_server <| title == $title |> { options => $options } }
++
++  if $user { Ssh_auth_key_server <| title == $title |> { user => $user, home => "/home/$user" } }
++  if $home { Ssh_auth_key_server <| title == $title |> { home => $home } }                       
++
++  realize Ssh_auth_key_server[$title]
++
++} # define server
++
++} # class ssh::auth
++
++
++##########################################################################
++
++
++# ssh_auth_key_master
++#                    
++# Create/regenerate/remove a key pair on the keymaster.
++# This definition is private, i.e. it is not intended to be called directly by users.
++# ssh::auth::key calls it to create virtual keys, which are realized in ssh::auth::keymaster.
++
++define ssh_auth_key_master ($ensure, $force, $keytype, $length, $maxdays, $mindate) {
++
++  Exec { path => "/usr/bin:/usr/sbin:/bin:/sbin" }
++  File {                                          
++    owner => puppet,                              
++    group => puppet,                              
++    mode  => 600,                                 
++  }                                               
++
++  $keydir = "${ssh::auth::keymaster_storage}/${title}"
++  $keyfile = "${keydir}/key"                          
++
++  file { 
++    "$keydir":
++      ensure => directory,
++      mode   => 644;      
++    "$keyfile":           
++      ensure => $ensure;  
++    "${keyfile}.pub":     
++      ensure => $ensure,  
++      mode   => 644;      
++  }                       
++
++  if $ensure == "present" {
++
++    # Remove the existing key pair, if
++    # * $force is true, or            
++    # * $maxdays or $mindate criteria aren't met, or
++    # * $keytype or $length have changed            
++
++    $keycontent = file("${keyfile}.pub", "/dev/null")
++    if $keycontent {                                 
++
++      if $force {
++        $reason = "force=true"
++      }                       
++      if !$reason and $mindate and generate("/usr/bin/find", $keyfile, "!", "-newermt", "${mindate}") {
++        $reason = "created before ${mindate}"                                                          
++      }                                                                                                
++      if !$reason and $maxdays and generate("/usr/bin/find", $keyfile, "-mtime", "+${maxdays}") {      
++        $reason = "older than ${maxdays} days"                                                         
++      }                                                                                                
++      if !$reason and $keycontent =~ /^ssh-... [^ ]+ (...) (\d+)$/ {                                   
++        if       $keytype != $1 { $reason = "keytype changed: $1 -> $keytype" }                        
++        else { if $length != $2 { $reason = "length changed: $2 -> $length" } }                        
++      }                                                                                                
++      if $reason {                                                                                     
++        exec { "Revoke previous key ${title}: ${reason}":                                              
++          command => "rm $keyfile ${keyfile}.pub",                                                     
++          before  => Exec["Create key $title: $keytype, $length bits"],                                
++        }                                                                                              
++      }                                                                                                
++    }                                                                                                  
++
++    # Create the key pair.
++    # We "repurpose" the comment field in public keys on the keymaster to
++    # store data about the key, i.e. $keytype and $length.  This avoids  
++    # having to rerun ssh-keygen -l on every key at every run to determine
++    # the key length.                                                     
++    exec { "Create key $title: $keytype, $length bits":                   
++      command => "ssh-keygen -t ${keytype} -b ${length} -f ${keyfile} -C \"${keytype} ${length}\" -N \"\"",
++      user    => "puppet",                                                                                 
++      group   => "puppet",                                                                                 
++      creates => $keyfile,                                                                                 
++      require => File[$keydir],                                                                            
++      before  => File[$keyfile, "${keyfile}.pub"],                                                         
++    }                                                                                                      
++
++  } # if $ensure  == "present"
++
++} # define ssh_auth_key_master
++
++
++##########################################################################
++
++
++# ssh_auth_key_client
++#                    
++# Install a key pair into a user's account.
++# This definition is private, i.e. it is not intended to be called directly by users.
++
++define ssh_auth_key_client ($ensure, $filename, $group, $home, $user) {
++
++  File {
++    owner   => $user,
++    group   => $group,
++    mode    => 600,   
++    require => [ User[$user], File[$home]],
++  }                                                    
++
++  $key_src_file = "${ssh::auth::keymaster_storage}/${title}/key" # on the keymaster
++  $key_tgt_file = "${home}/.ssh/${filename}" # on the client                       
++
++  $key_src_content_pub = file("${key_src_file}.pub", "/dev/null")
++  if $ensure == "absent" or $key_src_content_pub =~ /^(ssh-...) ([^ ]+)/ {
++    $keytype = $1                                                         
++    $modulus = $2                                                         
++    file {                                                                
++      $key_tgt_file:                                                      
++        ensure  => $ensure,                                               
++        content => file($key_src_file, "/dev/null");                      
++      "${key_tgt_file}.pub":                                              
++        ensure  => $ensure,                                               
++        content => "$keytype $modulus $title\n",                          
++        mode    => 644;                                                   
++    }                                                                     
++  } else {                                                                
++    notify { "Private key file $key_src_file for key $title not found on keymaster; skipping ensure => present": }
++  }                                                                                                               
++
++} # define ssh_auth_key_client
++
++
++##########################################################################
++
++
++# ssh_auth_key_server
++#                    
++# Install a public key into a server user's authorized_keys(5) file.
++# This definition is private, i.e. it is not intended to be called directly by users.
++
++define ssh_auth_key_server ($ensure, $group, $home, $options, $user) {
++
++  # on the keymaster:
++  $key_src_dir = "${ssh::auth::keymaster_storage}/${title}"
++  $key_src_file = "${key_src_dir}/key.pub"                 
++  # on the server:                                         
++  $key_tgt_file = "${home}/.ssh/authorized_keys"           
++                                                           
++  File {                                                   
++    owner   => $user,                                      
++    group   => $group,                                     
++    require => User[$user],                                
++    mode    => 600,                                        
++  }                                                        
++  Ssh_authorized_key {                                     
++    user   => $user,                                       
++    target => $key_tgt_file,                               
++  }                                                        
++
++  if $ensure == "absent" {
++    ssh_authorized_key { $title: ensure => "absent" }
++  }                                                  
++  else {
++    $key_src_content = file($key_src_file, "/dev/null")
++    if ! $key_src_content {
++      notify { "Public key file $key_src_file for key $title not found on keymaster; skipping ensure => present": }
++    } else { if $ensure == "present" and $key_src_content !~ /^(ssh-...) ([^ ]*)/ {
++      err("Can't parse public key file $key_src_file")
++      notify { "Can't parse public key file $key_src_file for key $title on the keymaster: skipping ensure => $ensure": }
++    } else {
++      $keytype = $1
++      $modulus = $2
++      ssh_authorized_key { $title:
++        ensure  => "present",
++        type    => $keytype,
++        key     => $modulus,
++        options => $options ? { "" => undef, default => $options },
++      }
++    }} # if ... else ... else
++  } # if ... else
++
++} # define ssh_auth_key_server
++
++
++##########################################################################
++
++
++# ssh_auth_key_namecheck
++#
++# Check a name (e.g. key title or filename) for the allowed form
++
++define ssh_auth_key_namecheck ($parm, $value) {
++  if $value !~ /^[A-Za-z0-9]/ {
++    fail("ssh::auth::key: $parm '$value' not allowed: must begin with a letter or digit")
++  }
++  if $value !~ /^[A-Za-z0-9_.:@-]+$/ {
++    fail("ssh::auth::key: $parm '$value' not allowed: may only contain the characters A-Za-z0-9_.:@-")
++  }
++} # define namecheck
+
+Deleted: puppet/modules/ssh/manifests/init.pp
+===================================================================
+--- puppet/modules/ssh/manifests/init.pp	2010-11-22 00:25:33 UTC (rev 368)
++++ puppet/modules/ssh/manifests/init.pp	2010-11-22 00:25:50 UTC (rev 369)
+@@ -1,336 +0,0 @@
+-# =========                                                 
+-# ssh::auth                                                 
+-# =========                                                 
+-#                                                           
+-# The latest official release and documentation for ssh::auth can always
+-# be found at http://reductivelabs.com/trac/puppet/wiki/Recipes/ModuleSSHAuth .
+-#                                                                              
+-# Version:          0.3.2                                                      
+-# Release date:     2009-12-29                                                 
+-
+-class ssh::auth {
+-
+-$keymaster_storage = "/var/lib/keys" 
+-
+-Exec { path => "/usr/bin:/usr/sbin:/bin:/sbin" }
+-Notify { withpath => false }                    
+-
+-
+-##########################################################################
+-
+-
+-# ssh::auth::key 
+-
+-# Declare keys.  The approach here is just to define a bunch of
+-# virtual resources, representing key files on the keymaster, client,
+-# and server.  The virtual keys are then realized by                 
+-# ssh::auth::{keymaster,client,server}, respectively.  The reason for
+-# doing things that way is that it makes ssh::auth::key into a "one  
+-# stop shop" where users can declare their keys with all of their    
+-# parameters, whether those parameters apply to the keymaster, server,
+-# or client.  The real work of creating, installing, and removing keys
+-# is done in the private definitions called by the virtual resources: 
+-# ssh_auth_key_{master,server,client}.                                
+-
+-define key ($ensure = "present", $filename = "", $force = false, $group = "puppet", $home = "", $keytype = "rsa", $length = 2048, $maxdays = "", $mindate = "", $options = "", $user = "") {                                                                                                                                                    
+-
+-  ssh_auth_key_namecheck { "${title}-title": parm => "title", value => $title }
+-
+-  # apply defaults
+-  $_filename = $filename ? { "" => "id_${keytype}", default => $filename }
+-  $_length = $keytype ? { "rsa" => $length, "dsa" => 1024 }               
+-  $_user = $user ? {                                                      
+-    ""      => regsubst($title, '^([^@]*)@?.*$', '\1'),                   
+-    default => $user,                                                     
+-  }                                                                       
+-  $_home = $home ? { "" => "/home/$_user",  default => $home }            
+-
+-  ssh_auth_key_namecheck { "${title}-filename": parm => "filename", value => $_filename }
+-
+-  @ssh_auth_key_master { $title:
+-    ensure  => $ensure,         
+-    force   => $force,          
+-    keytype => $keytype,        
+-    length  => $_length,        
+-    maxdays => $maxdays,        
+-    mindate => $mindate,        
+-  }                             
+-  @ssh_auth_key_client { $title:
+-    ensure   => $ensure,        
+-    filename => $_filename,     
+-    group    => $group,         
+-    home     => $_home,         
+-    user     => $_user,         
+-  }                             
+-  @ssh_auth_key_server { $title:
+-    ensure  => $ensure,         
+-    group   => $group,          
+-    home    => $_home,          
+-    options => $options,        
+-    user    => $_user,          
+-  }                             
+-}                               
+-
+-
+-##########################################################################
+-
+-
+-# ssh::auth::keymaster
+-#                     
+-# Keymaster host:     
+-# Create key storage; create, regenerate, and remove key pairs
+-
+-class keymaster {
+-
+-  # Set up key storage
+-
+-  file { $ssh::auth::keymaster_storage:
+-    ensure => directory,               
+-    owner  => puppet,                  
+-    group  => puppet,                  
+-    mode   => 644,                     
+-  }                                    
+-                                       
+-  # Realize all virtual master keys    
+-  Ssh_auth_key_master <| |>            
+-
+-} # class keymaster
+-
+-
+-##########################################################################
+-
+-
+-# ssh::auth::client
+-#                  
+-# Install generated key pairs onto clients
+-
+-define client ($ensure = "", $filename = "", $group = "", $home = "", $user = "") {
+-
+-  # Realize the virtual client keys.
+-  # Override the defaults set in ssh::auth::key, as needed.
+-  if $ensure   { Ssh_auth_key_client <| title == $title |> { ensure   => $ensure   } }
+-  if $filename { Ssh_auth_key_client <| title == $title |> { filename => $filename } }
+-  if $group    { Ssh_auth_key_client <| title == $title |> { group    => $group    } }
+-
+-  if $user { Ssh_auth_key_client <| title == $title |> { user => $user, home => "/home/$user" } }
+-  if $home { Ssh_auth_key_client <| title == $title |> { home => $home } }                       
+-
+-  realize Ssh_auth_key_client[$title]
+-
+-} # define client
+-
+-
+-##########################################################################
+-
+-
+-# ssh::auth::server
+-#                  
+-# Install public keys onto clients
+-
+-define server ($ensure = "", $group = "", $home = "", $options = "", $user = "") {
+-
+-  # Realize the virtual server keys.
+-  # Override the defaults set in ssh::auth::key, as needed.
+-  if $ensure  { Ssh_auth_key_server <| title == $title |> { ensure  => $ensure  } }
+-  if $group   { Ssh_auth_key_server <| title == $title |> { group   => $group   } }
+-  if $options { Ssh_auth_key_server <| title == $title |> { options => $options } }
+-
+-  if $user { Ssh_auth_key_server <| title == $title |> { user => $user, home => "/home/$user" } }
+-  if $home { Ssh_auth_key_server <| title == $title |> { home => $home } }                       
+-
+-  realize Ssh_auth_key_server[$title]
+-
+-} # define server
+-
+-} # class ssh::auth
+-
+-
+-##########################################################################
+-
+-
+-# ssh_auth_key_master
+-#                    
+-# Create/regenerate/remove a key pair on the keymaster.
+-# This definition is private, i.e. it is not intended to be called directly by users.
+-# ssh::auth::key calls it to create virtual keys, which are realized in ssh::auth::keymaster.
+-
+-define ssh_auth_key_master ($ensure, $force, $keytype, $length, $maxdays, $mindate) {
+-
+-  Exec { path => "/usr/bin:/usr/sbin:/bin:/sbin" }
+-  File {                                          
+-    owner => puppet,                              
+-    group => puppet,                              
+-    mode  => 600,                                 
+-  }                                               
+-
+-  $keydir = "${ssh::auth::keymaster_storage}/${title}"
+-  $keyfile = "${keydir}/key"                          
+-
+-  file { 
+-    "$keydir":
+-      ensure => directory,
+-      mode   => 644;      
+-    "$keyfile":           
+-      ensure => $ensure;  
+-    "${keyfile}.pub":     
+-      ensure => $ensure,  
+-      mode   => 644;      
+-  }                       
+-
+-  if $ensure == "present" {
+-
+-    # Remove the existing key pair, if
+-    # * $force is true, or            
+-    # * $maxdays or $mindate criteria aren't met, or
+-    # * $keytype or $length have changed            
+-
+-    $keycontent = file("${keyfile}.pub", "/dev/null")
+-    if $keycontent {                                 
+-
+-      if $force {
+-        $reason = "force=true"
+-      }                       
+-      if !$reason and $mindate and generate("/usr/bin/find", $keyfile, "!", "-newermt", "${mindate}") {
+-        $reason = "created before ${mindate}"                                                          
+-      }                                                                                                
+-      if !$reason and $maxdays and generate("/usr/bin/find", $keyfile, "-mtime", "+${maxdays}") {      
+-        $reason = "older than ${maxdays} days"                                                         
+-      }                                                                                                
+-      if !$reason and $keycontent =~ /^ssh-... [^ ]+ (...) (\d+)$/ {                                   
+-        if       $keytype != $1 { $reason = "keytype changed: $1 -> $keytype" }                        
+-        else { if $length != $2 { $reason = "length changed: $2 -> $length" } }                        
+-      }                                                                                                
+-      if $reason {                                                                                     
+-        exec { "Revoke previous key ${title}: ${reason}":                                              
+-          command => "rm $keyfile ${keyfile}.pub",                                                     
+-          before  => Exec["Create key $title: $keytype, $length bits"],                                
+-        }                                                                                              
+-      }                                                                                                
+-    }                                                                                                  
+-
+-    # Create the key pair.
+-    # We "repurpose" the comment field in public keys on the keymaster to
+-    # store data about the key, i.e. $keytype and $length.  This avoids  
+-    # having to rerun ssh-keygen -l on every key at every run to determine
+-    # the key length.                                                     
+-    exec { "Create key $title: $keytype, $length bits":                   
+-      command => "ssh-keygen -t ${keytype} -b ${length} -f ${keyfile} -C \"${keytype} ${length}\" -N \"\"",
+-      user    => "puppet",                                                                                 
+-      group   => "puppet",                                                                                 
+-      creates => $keyfile,                                                                                 
+-      require => File[$keydir],                                                                            
+-      before  => File[$keyfile, "${keyfile}.pub"],                                                         
+-    }                                                                                                      
+-
+-  } # if $ensure  == "present"
+-
+-} # define ssh_auth_key_master
+-
+-
+-##########################################################################
+-
+-
+-# ssh_auth_key_client
+-#                    
+-# Install a key pair into a user's account.
+-# This definition is private, i.e. it is not intended to be called directly by users.
+-
+-define ssh_auth_key_client ($ensure, $filename, $group, $home, $user) {
+-
+-  File {
+-    owner   => $user,
+-    group   => $group,
+-    mode    => 600,   
+-    require => [ User[$user], File[$home]],
+-  }                                                    
+-
+-  $key_src_file = "${ssh::auth::keymaster_storage}/${title}/key" # on the keymaster
+-  $key_tgt_file = "${home}/.ssh/${filename}" # on the client                       
+-
+-  $key_src_content_pub = file("${key_src_file}.pub", "/dev/null")
+-  if $ensure == "absent" or $key_src_content_pub =~ /^(ssh-...) ([^ ]+)/ {
+-    $keytype = $1                                                         
+-    $modulus = $2                                                         
+-    file {                                                                
+-      $key_tgt_file:                                                      
+-        ensure  => $ensure,                                               
+-        content => file($key_src_file, "/dev/null");                      
+-      "${key_tgt_file}.pub":                                              
+-        ensure  => $ensure,                                               
+-        content => "$keytype $modulus $title\n",                          
+-        mode    => 644;                                                   
+-    }                                                                     
+-  } else {                                                                
+-    notify { "Private key file $key_src_file for key $title not found on keymaster; skipping ensure => present": }
+-  }                                                                                                               
+-
+-} # define ssh_auth_key_client
+-
+-
+-##########################################################################
+-
+-
+-# ssh_auth_key_server
+-#                    
+-# Install a public key into a server user's authorized_keys(5) file.
+-# This definition is private, i.e. it is not intended to be called directly by users.
+-
+-define ssh_auth_key_server ($ensure, $group, $home, $options, $user) {
+-
+-  # on the keymaster:
+-  $key_src_dir = "${ssh::auth::keymaster_storage}/${title}"
+-  $key_src_file = "${key_src_dir}/key.pub"                 
+-  # on the server:                                         
+-  $key_tgt_file = "${home}/.ssh/authorized_keys"           
+-                                                           
+-  File {                                                   
+-    owner   => $user,                                      
+-    group   => $group,                                     
+-    require => User[$user],                                
+-    mode    => 600,                                        
+-  }                                                        
+-  Ssh_authorized_key {                                     
+-    user   => $user,                                       
+-    target => $key_tgt_file,                               
+-  }                                                        
+-
+-  if $ensure == "absent" {
+-    ssh_authorized_key { $title: ensure => "absent" }
+-  }                                                  
+-  else {
+-    $key_src_content = file($key_src_file, "/dev/null")
+-    if ! $key_src_content {
+-      notify { "Public key file $key_src_file for key $title not found on keymaster; skipping ensure => present": }
+-    } else { if $ensure == "present" and $key_src_content !~ /^(ssh-...) ([^ ]*)/ {
+-      err("Can't parse public key file $key_src_file")
+-      notify { "Can't parse public key file $key_src_file for key $title on the keymaster: skipping ensure => $ensure": }
+-    } else {
+-      $keytype = $1
+-      $modulus = $2
+-      ssh_authorized_key { $title:
+-        ensure  => "present",
+-        type    => $keytype,
+-        key     => $modulus,
+-        options => $options ? { "" => undef, default => $options },
+-      }
+-    }} # if ... else ... else
+-  } # if ... else
+-
+-} # define ssh_auth_key_server
+-
+-
+-##########################################################################
+-
+-
+-# ssh_auth_key_namecheck
+-#
+-# Check a name (e.g. key title or filename) for the allowed form
+-
+-define ssh_auth_key_namecheck ($parm, $value) {
+-  if $value !~ /^[A-Za-z0-9]/ {
+-    fail("ssh::auth::key: $parm '$value' not allowed: must begin with a letter or digit")
+-  }
+-  if $value !~ /^[A-Za-z0-9_.:@-]+$/ {
+-    fail("ssh::auth::key: $parm '$value' not allowed: may only contain the characters A-Za-z0-9_.:@-")
+-  }
+-} # define namecheck
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/7a65dfdd/attachment-0001.html>
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000769.html b/zarb-ml/mageia-sysadm/2010-November/000769.html new file mode 100644 index 000000000..d0c31e9bb --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000769.html @@ -0,0 +1,93 @@ + + + + [Mageia-sysadm] [388] - use the first pass if proposed ( or pam ask the password 2 times ) + + + + + + + + + +

[Mageia-sysadm] [388] - use the first pass if proposed ( or pam ask the password 2 times )

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 14:15:21 CET 2010 +

+
+ +
Revision: 388
+Author:   misc
+Date:     2010-11-22 14:15:21 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+- use the first pass if proposed ( or pam ask the password 2 times )
+
+Modified Paths:
+--------------
+    puppet/modules/pam/templates/system-auth
+
+Modified: puppet/modules/pam/templates/system-auth
+===================================================================
+--- puppet/modules/pam/templates/system-auth	2010-11-22 12:41:54 UTC (rev 387)
++++ puppet/modules/pam/templates/system-auth	2010-11-22 13:15:21 UTC (rev 388)
+@@ -3,7 +3,7 @@
+ # basically, the idea is to copy the exact detail of sufficient,
+ # and add abort=ignore
+ auth    [abort=ignore success=done new_authtok_reqd=done default=ignore]  pam_tcb.so shadow fork nullok prefix=$2a$ count=8
+-auth    sufficient   pam_unix.so likeauth nullok
++auth    sufficient   pam_unix.so likeauth nullok try_first_pass
+ auth    sufficient   pam_ldap.so use_first_pass
+ <% if access_class = 'admin' %>
+ auth    required     pam_wheel.so group=mga-sysadmin
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/987779e3/attachment.html>
+
+ + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000770.html b/zarb-ml/mageia-sysadm/2010-November/000770.html new file mode 100644 index 000000000..83d957e95 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000770.html @@ -0,0 +1,93 @@ + + + + [Mageia-sysadm] [389] - use the rootbinddn as preconized by buchan ( and let all access goes + + + + + + + + + +

[Mageia-sysadm] [389] - use the rootbinddn as preconized by buchan ( and let all access goes

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 14:15:22 CET 2010 +

+
+ +
Revision: 389
+Author:   misc
+Date:     2010-11-22 14:15:22 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+- use the rootbinddn as preconized by buchan ( and let all access goes
+  through nscd )
+
+Modified Paths:
+--------------
+    puppet/modules/pam/templates/ldap.conf
+
+Modified: puppet/modules/pam/templates/ldap.conf
+===================================================================
+--- puppet/modules/pam/templates/ldap.conf	2010-11-22 13:15:21 UTC (rev 388)
++++ puppet/modules/pam/templates/ldap.conf	2010-11-22 13:15:22 UTC (rev 389)
+@@ -1,5 +1,5 @@
+-binddn uid=nssldap,ou=System Accounts,<%= dc_suffix %>
+-bindpw <%= nssldap_password %>
++rootbinddn cn=<%= fqdn %>,ou=Hosts,<%= dc_suffix %>
++
+ uri ldaps://ldap.<%= domain %>
+ base <%= dc_suffix %>
+ pam_lookup_policy no
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/916c42b4/attachment.html>
+
+ + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000771.html b/zarb-ml/mageia-sysadm/2010-November/000771.html new file mode 100644 index 000000000..dcd4eeafc --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000771.html @@ -0,0 +1,101 @@ + + + + [Mageia-sysadm] [390] - make sure nscd is installed and running + + + + + + + + + +

[Mageia-sysadm] [390] - make sure nscd is installed and running

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 14:15:23 CET 2010 +

+
+ +
Revision: 390
+Author:   misc
+Date:     2010-11-22 14:15:23 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+- make sure nscd is installed and running
+
+Modified Paths:
+--------------
+    puppet/modules/pam/manifests/init.pp
+
+Modified: puppet/modules/pam/manifests/init.pp
+===================================================================
+--- puppet/modules/pam/manifests/init.pp	2010-11-22 13:15:22 UTC (rev 389)
++++ puppet/modules/pam/manifests/init.pp	2010-11-22 13:15:23 UTC (rev 390)
+@@ -1,10 +1,15 @@
+ class pam {
+ 
+   class base {
+-      package { ["pam_ldap","nss_ldap"]:
++      package { ["pam_ldap","nss_ldap","nscd"]:
+         ensure => installed,  
+       }
+ 
++      service { nscd:
++        ensure => running,
++        path => '/etc/init.d/nscd',
++      } 
++
+       file { "system-auth":
+          path => "/etc/pam.d/system-auth",
+          owner => root,
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/a5218354/attachment.html>
+
+ + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000772.html b/zarb-ml/mageia-sysadm/2010-November/000772.html new file mode 100644 index 000000000..db6ed3dd4 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000772.html @@ -0,0 +1,100 @@ + + + + [Mageia-sysadm] [391] - set the ldap password in /etc/ldap.secret + + + + + + + + + +

[Mageia-sysadm] [391] - set the ldap password in /etc/ldap.secret

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 14:15:24 CET 2010 +

+
+ +
Revision: 391
+Author:   misc
+Date:     2010-11-22 14:15:24 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+- set the ldap password in /etc/ldap.secret
+
+Modified Paths:
+--------------
+    puppet/modules/pam/manifests/init.pp
+
+Modified: puppet/modules/pam/manifests/init.pp
+===================================================================
+--- puppet/modules/pam/manifests/init.pp	2010-11-22 13:15:23 UTC (rev 390)
++++ puppet/modules/pam/manifests/init.pp	2010-11-22 13:15:24 UTC (rev 391)
+@@ -26,7 +26,14 @@
+          content => template("pam/nsswitch.conf")
+       }
+ 
+-      $nssldap_password = extlookup("nssldap_password",'x')
++      $ldap_password = extlookup("${fqdn}_ldap_password",'x')
++      file { "ldap.secret":
++         path => "/etc/ldap.secret",
++         owner => root,
++         group => root,
++         mode => 600,
++         content => $ldap_password
++      }
+  
+       file { "ldap.conf":
+          path => "/etc/ldap.conf",
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/6d2c7044/attachment.html>
+
+ + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000773.html b/zarb-ml/mageia-sysadm/2010-November/000773.html new file mode 100644 index 000000000..9b5ed8602 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000773.html @@ -0,0 +1,93 @@ + + + + [Mageia-sysadm] [392] Fix host access to posixAccount attrs + + + + + + + + + +

[Mageia-sysadm] [392] Fix host access to posixAccount attrs

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 14:20:26 CET 2010 +

+
+ +
Revision: 392
+Author:   buchan
+Date:     2010-11-22 14:20:26 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+Fix host access to posixAccount attrs
+
+Modified Paths:
+--------------
+    puppet/modules/openldap/templates/mandriva-dit-access.conf
+
+Modified: puppet/modules/openldap/templates/mandriva-dit-access.conf
+===================================================================
+--- puppet/modules/openldap/templates/mandriva-dit-access.conf	2010-11-22 13:15:24 UTC (rev 391)
++++ puppet/modules/openldap/templates/mandriva-dit-access.conf	2010-11-22 13:20:26 UTC (rev 392)
+@@ -108,7 +108,7 @@
+ access to dn.subtree="ou=People,<%= dc_suffix %>" 
+ 	filter="(objectclass=posixAccount)"
+ 	attrs=homeDirectory,cn,uid,loginShell,gidNumber,uidNumber
+-	by dn.exact="uid=nssldap,ou=System Accounts,<%= dc_suffix %>" read
++	by dn.one="ou=Hosts,<%= dc_suffix %>" read
+ 	by * +0 break
+ 
+ # let the user change some of his/her attributes
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/f809b403/attachment-0001.html>
+
+ + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000774.html b/zarb-ml/mageia-sysadm/2010-November/000774.html new file mode 100644 index 000000000..6693f6b52 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000774.html @@ -0,0 +1,148 @@ + + + + [Mageia-sysadm] [393] extract a sshuser definition + + + + + + + + + +

[Mageia-sysadm] [393] extract a sshuser definition

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 14:21:17 CET 2010 +

+
+ +
Revision: 393
+Author:   blino
+Date:     2010-11-22 14:21:17 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+extract a sshuser definition
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-22 13:20:26 UTC (rev 392)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-22 13:21:17 UTC (rev 393)
+@@ -3,6 +3,8 @@
+     class base {
+ 	$build_login = "iurt"
+ 	$build_home_dir = "/home/$build_login"
++        $sched_login = "schedbot"
++	$sched_home_dir = "/home/$sched_login"
+ 
+ 	include ssh::auth
+ 	ssh::auth::key { $build_login: } # declare a key for build bot: RSA, 2048 bits
+@@ -37,38 +39,42 @@
+ 
+     }
+ 
+-    class iurtuser {
+-        group {"$build_login": 
++    define sshuser($user, $homedir, $comment) {
++        group {"$user": 
+             ensure => present,
+         }
+ 
+-        user {"$build_login":
++        user {"$user":
+             ensure => present,
+-            comment => "System user used to run build bots",
++            comment => $comment,
+             managehome => true,
+-            gid => $build_login,
++            gid => $user,
+             shell => "/bin/bash",
+-            notify => Exec["unlock$build_login"],
++            notify => Exec["unlock$user"],
+         }
+ 
+         # set password to * to unlock the account but forbid login through login
+-        exec { "unlock$build_login":
+-            command => "usermod -p '*' $build_login",
++        exec { "unlock$user":
++            command => "usermod -p '*' $user",
+             refreshonly => true,
+         }
+ 
+-        file { $build_home_dir:
++        file { $homedir:
+             ensure => "directory",
+         }
+ 
+-        file { "$build_home_dir/.ssh":
++        file { "$homedir/.ssh":
+             ensure => "directory",
+             mode   => 600,
+-            owner  => $build_login,
+-            group  => $build_login,
++            owner  => $user,
++            group  => $user,
+         }
+     }
+ 
++    class iurtuser {
++        sshuser($build_login, $build_home_dir, "System user used to run build bots")
++    }
++
+     class iurt {
+         include sudo
+         include iurtuser
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/18e75430/attachment.html>
+
+ + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000775.html b/zarb-ml/mageia-sysadm/2010-November/000775.html new file mode 100644 index 000000000..b9b911319 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000775.html @@ -0,0 +1,68 @@ + + + + [Mageia-sysadm] Puppet Report for valstar.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for valstar.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Mon Nov 22 14:21:27 CET 2010 +

+
+ +
Mon Nov 22 14:21:26 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Unknown function sshuser at /etc/puppet/modules/buildsystem/manifests/init.pp:75 on node valstar.mageia.org
+Mon Nov 22 14:21:27 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000776.html b/zarb-ml/mageia-sysadm/2010-November/000776.html new file mode 100644 index 000000000..6e97f203c --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000776.html @@ -0,0 +1,67 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Mon Nov 22 14:21:28 CET 2010 +

+
+ +
Mon Nov 22 14:21:27 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Unknown function sshuser at /etc/puppet/modules/buildsystem/manifests/init.pp:75 on node jonund.mageia.org
+
+ + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000777.html b/zarb-ml/mageia-sysadm/2010-November/000777.html new file mode 100644 index 000000000..32ad57bbc --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000777.html @@ -0,0 +1,135 @@ + + + + [Mageia-sysadm] [394] fix sshuser definition + + + + + + + + + +

[Mageia-sysadm] [394] fix sshuser definition

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 14:22:43 CET 2010 +

+
+ +
Revision: 394
+Author:   blino
+Date:     2010-11-22 14:22:43 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+fix sshuser definition
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-22 13:21:17 UTC (rev 393)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-22 13:22:43 UTC (rev 394)
+@@ -39,23 +39,23 @@
+ 
+     }
+ 
+-    define sshuser($user, $homedir, $comment) {
+-        group {"$user": 
++    define sshuser($homedir, $comment) {
++        group {"$title": 
+             ensure => present,
+         }
+ 
+-        user {"$user":
++        user {"$title":
+             ensure => present,
+             comment => $comment,
+             managehome => true,
+-            gid => $user,
++            gid => $title,
+             shell => "/bin/bash",
+-            notify => Exec["unlock$user"],
++            notify => Exec["unlock$title"],
+         }
+ 
+         # set password to * to unlock the account but forbid login through login
+-        exec { "unlock$user":
+-            command => "usermod -p '*' $user",
++        exec { "unlock$title":
++            command => "usermod -p '*' $title",
+             refreshonly => true,
+         }
+ 
+@@ -66,13 +66,16 @@
+         file { "$homedir/.ssh":
+             ensure => "directory",
+             mode   => 600,
+-            owner  => $user,
+-            group  => $user,
++            owner  => $title,
++            group  => $title,
+         }
+     }
+ 
+     class iurtuser {
+-        sshuser($build_login, $build_home_dir, "System user used to run build bots")
++        sshuser { $build_login:
++          homedir => $build_home_dir,
++          comment => "System user used to run build bots",
++        }
+     }
+ 
+     class iurt {
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/d37894b4/attachment.html>
+
+ + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000778.html b/zarb-ml/mageia-sysadm/2010-November/000778.html new file mode 100644 index 000000000..7d465a778 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000778.html @@ -0,0 +1,103 @@ + + + + [Mageia-sysadm] [395] add schedbot on main node + + + + + + + + + +

[Mageia-sysadm] [395] add schedbot on main node

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 14:29:59 CET 2010 +

+
+ +
Revision: 395
+Author:   blino
+Date:     2010-11-22 14:29:59 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+add schedbot on main node
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-22 13:22:43 UTC (rev 394)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-22 13:29:59 UTC (rev 395)
+@@ -8,12 +8,18 @@
+ 
+ 	include ssh::auth
+ 	ssh::auth::key { $build_login: } # declare a key for build bot: RSA, 2048 bits
++	ssh::auth::key { $sched_login: } # declare a key for sched bot: RSA, 2048 bits
+     }
+ 
+     class mainnode inherits base {
+         include iurtuser
+         ssh::auth::server { $build_login: }
+ 
++        sshuser { $sched_login:
++          homedir => $sched_home_dir,
++          comment => "System user used to schedule builds",
++        }
++
+         package { "task-bs-cluster-main":
+             ensure => "installed"
+         }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/76e1414b/attachment.html>
+
+ + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000779.html b/zarb-ml/mageia-sysadm/2010-November/000779.html new file mode 100644 index 000000000..c8936040e --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000779.html @@ -0,0 +1,100 @@ + + + + [Mageia-sysadm] [396] schedbot can login as iurt on nodes + + + + + + + + + +

[Mageia-sysadm] [396] schedbot can login as iurt on nodes

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 14:33:04 CET 2010 +

+
+ +
Revision: 396
+Author:   blino
+Date:     2010-11-22 14:33:04 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+schedbot can login as iurt on nodes
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-22 13:29:59 UTC (rev 395)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-22 13:33:04 UTC (rev 396)
+@@ -13,6 +13,7 @@
+ 
+     class mainnode inherits base {
+         include iurtuser
++        ssh::auth::client { $sched_login: }
+         ssh::auth::server { $build_login: }
+ 
+         sshuser { $sched_login:
+@@ -88,6 +89,7 @@
+         include sudo
+         include iurtuser
+         ssh::auth::client { $build_login: }
++        ssh::auth::server { $sched_login: user => $build_login }
+ 
+         # build node common settings
+         # we could have the following skip list to use less space:
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/7fa0de20/attachment-0001.html>
+
+ + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000780.html b/zarb-ml/mageia-sysadm/2010-November/000780.html new file mode 100644 index 000000000..f589ccd3f --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000780.html @@ -0,0 +1,93 @@ + + + + [Mageia-sysadm] [397] fix indent + + + + + + + + + +

[Mageia-sysadm] [397] fix indent

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 14:46:30 CET 2010 +

+
+ +
Revision: 397
+Author:   blino
+Date:     2010-11-22 14:46:30 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+fix indent
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-22 13:33:04 UTC (rev 396)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-22 13:46:30 UTC (rev 397)
+@@ -3,7 +3,7 @@
+     class base {
+ 	$build_login = "iurt"
+ 	$build_home_dir = "/home/$build_login"
+-        $sched_login = "schedbot"
++	$sched_login = "schedbot"
+ 	$sched_home_dir = "/home/$sched_login"
+ 
+ 	include ssh::auth
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/165d6a85/attachment.html>
+
+ + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000781.html b/zarb-ml/mageia-sysadm/2010-November/000781.html new file mode 100644 index 000000000..f96a189c6 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000781.html @@ -0,0 +1,95 @@ + + + + [Mageia-sysadm] [398] install iurt on main node as well, for scheduler tools + + + + + + + + + +

[Mageia-sysadm] [398] install iurt on main node as well, for scheduler tools

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 14:54:58 CET 2010 +

+
+ +
Revision: 398
+Author:   blino
+Date:     2010-11-22 14:54:58 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+install iurt on main node as well, for scheduler tools
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-22 13:46:30 UTC (rev 397)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-22 13:54:58 UTC (rev 398)
+@@ -21,7 +21,8 @@
+           comment => "System user used to schedule builds",
+         }
+ 
+-        package { "task-bs-cluster-main":
++        $package_list = ['task-bs-cluster-main', 'iurt']
++        package { $package_list:
+             ensure => "installed"
+         }
+     }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/ad66b99f/attachment.html>
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000782.html b/zarb-ml/mageia-sysadm/2010-November/000782.html new file mode 100644 index 000000000..e92540d67 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000782.html @@ -0,0 +1,111 @@ + + + + [Mageia-sysadm] [399] create schedbot user before writing ssh config files + + + + + + + + + +

[Mageia-sysadm] [399] create schedbot user before writing ssh config files

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 14:59:56 CET 2010 +

+
+ +
Revision: 399
+Author:   blino
+Date:     2010-11-22 14:59:56 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+create schedbot user before writing ssh config files
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-22 13:54:58 UTC (rev 398)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-22 13:59:56 UTC (rev 399)
+@@ -13,14 +13,15 @@
+ 
+     class mainnode inherits base {
+         include iurtuser
+-        ssh::auth::client { $sched_login: }
+-        ssh::auth::server { $build_login: }
+ 
+         sshuser { $sched_login:
+           homedir => $sched_home_dir,
+           comment => "System user used to schedule builds",
+         }
+ 
++        ssh::auth::client { $sched_login: }
++        ssh::auth::server { $build_login: }
++
+         $package_list = ['task-bs-cluster-main', 'iurt']
+         package { $package_list:
+             ensure => "installed"
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/247f5abf/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000783.html b/zarb-ml/mageia-sysadm/2010-November/000783.html new file mode 100644 index 000000000..d55acb57b --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000783.html @@ -0,0 +1,92 @@ + + + + [Mageia-sysadm] [399] create schedbot user before writing ssh config files + + + + + + + + + +

[Mageia-sysadm] [399] create schedbot user before writing ssh config files

+ Michael Scherer + misc at zarb.org +
+ Mon Nov 22 15:18:14 CET 2010 +

+
+ +
Le lundi 22 novembre 2010 à 14:59 +0100, root at mageia.org a écrit :
+> Revision: 399
+> Author:   blino
+> Date:     2010-11-22 14:59:56 +0100 (Mon, 22 Nov 2010)
+> Log Message:
+> -----------
+> create schedbot user before writing ssh config files
+
+Order is not taken in account in puppet, this is a declarative language.
+
+You need to use some kind of Requires or Before, if puppet didn't deduce
+it itself ( which it does most of the time :/ ).
+
+-- 
+Michael Scherer
+
+
+ + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000784.html b/zarb-ml/mageia-sysadm/2010-November/000784.html new file mode 100644 index 000000000..4b070cf83 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000784.html @@ -0,0 +1,106 @@ + + + + [Mageia-sysadm] [400] Add timelimits for nss_ldap, enable password policy + + + + + + + + + +

[Mageia-sysadm] [400] Add timelimits for nss_ldap, enable password policy

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 15:20:10 CET 2010 +

+
+ +
Revision: 400
+Author:   buchan
+Date:     2010-11-22 15:20:10 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+Add timelimits for nss_ldap, enable password policy
+
+Modified Paths:
+--------------
+    puppet/modules/pam/templates/ldap.conf
+
+Modified: puppet/modules/pam/templates/ldap.conf
+===================================================================
+--- puppet/modules/pam/templates/ldap.conf	2010-11-22 13:59:56 UTC (rev 399)
++++ puppet/modules/pam/templates/ldap.conf	2010-11-22 14:20:10 UTC (rev 400)
+@@ -2,7 +2,9 @@
+ 
+ uri ldaps://ldap.<%= domain %>
+ base <%= dc_suffix %>
+-pam_lookup_policy no
++timelimit 4
++bind_timelimit 4
++pam_lookup_policy yes
+ pam_password exop
+ nss_base_passwd ou=People,<%= dc_suffix %>?one
+ nss_base_shadow ou=People,<%= dc_suffix %>?one
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/e9223439/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000785.html b/zarb-ml/mageia-sysadm/2010-November/000785.html new file mode 100644 index 000000000..c03865da7 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000785.html @@ -0,0 +1,110 @@ + + + + [Mageia-sysadm] [401] upload as iurt user, not schedbot + + + + + + + + + +

[Mageia-sysadm] [401] upload as iurt user, not schedbot

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 17:12:13 CET 2010 +

+
+ +
Revision: 401
+Author:   blino
+Date:     2010-11-22 17:12:13 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+upload as iurt user, not schedbot
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/templates/iurt.cauldron.conf
+
+Modified: puppet/modules/buildsystem/templates/iurt.cauldron.conf
+===================================================================
+--- puppet/modules/buildsystem/templates/iurt.cauldron.conf	2010-11-22 14:20:10 UTC (rev 400)
++++ puppet/modules/buildsystem/templates/iurt.cauldron.conf	2010-11-22 16:12:13 UTC (rev 401)
+@@ -1,11 +1,11 @@
+ {
+  supported_arch => [ 'i586', 'x86_64' ],
+  all_media => { 'main' => [ 'release' ], 'contrib' => [ 'release' ] },
+- upload => 'schedbot at pkgsubmit:~/uploads/',
+- upload_queue => 'schedbot at pkgsubmit:~/uploads/queue/',
++ upload => 'iurt at pkgsubmit:~/uploads/',
++ upload_queue => 'iurt at pkgsubmit:~/uploads/queue/',
+  unwanted_packages => '^monotone-',
+  repository => '/mnt/BIG/dis/',
+- rsync_to => 'schedbot at pkgsubmit:/mnt/BIG/dis/uploads/build/',
++ rsync_to => 'iurt at pkgsubmit:/mnt/BIG/dis/uploads/build/',
+  log_url => 'http://pkgsubmit.mageia.org/queue/build/',
+  admin => 'mageia-sysadm at mageia.org',
+  iurt_root_command => '/home/buildbot/iurt-trunk/iurt_root_command',
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/123c2cb1/attachment-0001.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000786.html b/zarb-ml/mageia-sysadm/2010-November/000786.html new file mode 100644 index 000000000..e0c31b271 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000786.html @@ -0,0 +1,103 @@ + + + + [Mageia-sysadm] [402] use default iurt_root_command + + + + + + + + + +

[Mageia-sysadm] [402] use default iurt_root_command

+ root at mageia.org + root at mageia.org +
+ Mon Nov 22 17:12:51 CET 2010 +

+
+ +
Revision: 402
+Author:   blino
+Date:     2010-11-22 17:12:51 +0100 (Mon, 22 Nov 2010)
+Log Message:
+-----------
+use default iurt_root_command
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/templates/iurt.cauldron.conf
+
+Modified: puppet/modules/buildsystem/templates/iurt.cauldron.conf
+===================================================================
+--- puppet/modules/buildsystem/templates/iurt.cauldron.conf	2010-11-22 16:12:13 UTC (rev 401)
++++ puppet/modules/buildsystem/templates/iurt.cauldron.conf	2010-11-22 16:12:51 UTC (rev 402)
+@@ -8,7 +8,6 @@
+  rsync_to => 'iurt at pkgsubmit:/mnt/BIG/dis/uploads/build/',
+  log_url => 'http://pkgsubmit.mageia.org/queue/build/',
+  admin => 'mageia-sysadm at mageia.org',
+- iurt_root_command => '/home/buildbot/iurt-trunk/iurt_root_command',
+  packager => 'Iurt the rebuild bot <mageia-sysadm at mageia.org>',
+  sendmail => 0,
+  build_timeout => {
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101122/315af8e6/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000787.html b/zarb-ml/mageia-sysadm/2010-November/000787.html new file mode 100644 index 000000000..ded2cf1a2 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000787.html @@ -0,0 +1,78 @@ + + + + [Mageia-sysadm] [398] install iurt on main node as well, for scheduler tools + + + + + + + + + +

[Mageia-sysadm] [398] install iurt on main node as well, for scheduler tools

+ Thierry Vignaud + thierry.vignaud at gmail.com +
+ Mon Nov 22 17:53:39 CET 2010 +

+
+ +
On 22 November 2010 14:54,  <root at mageia.org> wrote:
+> Revision 398 Author blino Date 2010-11-22 14:54:58 +0100 (Mon, 22 Nov 2010)
+>
+> Log Message
+>
+> install iurt on main node as well, for scheduler tools
+
+Why not making task-bs-cluster-main requires iurt instead?
+
+> -        package { "task-bs-cluster-main":
+> +        $package_list = ['task-bs-cluster-main', 'iurt']
+> +        package { $package_list:
+
+ + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000788.html b/zarb-ml/mageia-sysadm/2010-November/000788.html new file mode 100644 index 000000000..4318954c8 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000788.html @@ -0,0 +1,82 @@ + + + + [Mageia-sysadm] [398] install iurt on main node as well, for scheduler tools + + + + + + + + + +

[Mageia-sysadm] [398] install iurt on main node as well, for scheduler tools

+ Olivier Blin + mageia at blino.org +
+ Mon Nov 22 17:58:26 CET 2010 +

+
+ +
Thierry Vignaud <thierry.vignaud at gmail.com> writes:
+
+> On 22 November 2010 14:54,  <root at mageia.org> wrote:
+>> Revision 398 Author blino Date 2010-11-22 14:54:58 +0100 (Mon, 22 Nov 2010)
+>>
+>> Log Message
+>>
+>> install iurt on main node as well, for scheduler tools
+>
+> Why not making task-bs-cluster-main requires iurt instead?
+
+Because the BS is not ready yet :p
+
+-- 
+Olivier Blin - blino
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000789.html b/zarb-ml/mageia-sysadm/2010-November/000789.html new file mode 100644 index 000000000..fa2228c55 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000789.html @@ -0,0 +1,83 @@ + + + + [Mageia-sysadm] [398] install iurt on main node as well, for scheduler tools + + + + + + + + + +

[Mageia-sysadm] [398] install iurt on main node as well, for scheduler tools

+ nicolas vigier + boklm at mars-attacks.org +
+ Mon Nov 22 18:02:21 CET 2010 +

+
+ +
On Mon, 22 Nov 2010, Thierry Vignaud wrote:
+
+> On 22 November 2010 14:54,  <root at mageia.org> wrote:
+> > Revision 398 Author blino Date 2010-11-22 14:54:58 +0100 (Mon, 22 Nov 2010)
+> >
+> > Log Message
+> >
+> > install iurt on main node as well, for scheduler tools
+> 
+> Why not making task-bs-cluster-main requires iurt instead?
+
+I'm not sure a virtual package in the repository is the best tool to
+manage the list of packages that needs to be installed on the build
+system.
+
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000790.html b/zarb-ml/mageia-sysadm/2010-November/000790.html new file mode 100644 index 000000000..7fb9cff99 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000790.html @@ -0,0 +1,78 @@ + + + + [Mageia-sysadm] [398] install iurt on main node as well, for scheduler tools + + + + + + + + + +

[Mageia-sysadm] [398] install iurt on main node as well, for scheduler tools

+ Thierry Vignaud + thierry.vignaud at gmail.com +
+ Mon Nov 22 18:08:56 CET 2010 +

+
+ +
On 22 November 2010 18:02, nicolas vigier <boklm at mars-attacks.org> wrote:
+>> > install iurt on main node as well, for scheduler tools
+>>
+>> Why not making task-bs-cluster-main requires iurt instead?
+>
+> I'm not sure a virtual package in the repository is the best tool to
+> manage the list of packages that needs to be installed on the build
+> system.
+
+Then why are we restoring task-bs-cluster-main?
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000791.html b/zarb-ml/mageia-sysadm/2010-November/000791.html new file mode 100644 index 000000000..2c877b756 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000791.html @@ -0,0 +1,75 @@ + + + + [Mageia-sysadm] [398] install iurt on main node as well, for scheduler tools + + + + + + + + + +

[Mageia-sysadm] [398] install iurt on main node as well, for scheduler tools

+ Thierry Vignaud + thierry.vignaud at gmail.com +
+ Mon Nov 22 18:10:26 CET 2010 +

+
+ +
On 22 November 2010 17:58, Olivier Blin <mageia at blino.org> wrote:
+>>> install iurt on main node as well, for scheduler tools
+>>
+>> Why not making task-bs-cluster-main requires iurt instead?
+>
+> Because the BS is not ready yet :p
+
+BTW is there any ETA on this?
+B/c Per Oyvind is on the vergea of death-breaking Mandriva with rpm5...
+
+ + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000792.html b/zarb-ml/mageia-sysadm/2010-November/000792.html new file mode 100644 index 000000000..d3545f29d --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000792.html @@ -0,0 +1,84 @@ + + + + [Mageia-sysadm] [398] install iurt on main node as well, for scheduler tools + + + + + + + + + +

[Mageia-sysadm] [398] install iurt on main node as well, for scheduler tools

+ nicolas vigier + boklm at mars-attacks.org +
+ Mon Nov 22 18:16:00 CET 2010 +

+
+ +
On Mon, 22 Nov 2010, Thierry Vignaud wrote:
+
+> On 22 November 2010 18:02, nicolas vigier <boklm at mars-attacks.org> wrote:
+> >> > install iurt on main node as well, for scheduler tools
+> >>
+> >> Why not making task-bs-cluster-main requires iurt instead?
+> >
+> > I'm not sure a virtual package in the repository is the best tool to
+> > manage the list of packages that needs to be installed on the build
+> > system.
+> 
+> Then why are we restoring task-bs-cluster-main?
+
+Probably because it's more simple for now as it already exist.
+
+But IMHO it would be better to manage this list in puppet directly.
+
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000793.html b/zarb-ml/mageia-sysadm/2010-November/000793.html new file mode 100644 index 000000000..4e5e85bf4 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000793.html @@ -0,0 +1,80 @@ + + + + [Mageia-sysadm] [398] install iurt on main node as well, for scheduler tools + + + + + + + + + +

[Mageia-sysadm] [398] install iurt on main node as well, for scheduler tools

+ nicolas vigier + boklm at mars-attacks.org +
+ Mon Nov 22 18:19:45 CET 2010 +

+
+ +
On Mon, 22 Nov 2010, Thierry Vignaud wrote:
+
+> On 22 November 2010 17:58, Olivier Blin <mageia at blino.org> wrote:
+> >>> install iurt on main node as well, for scheduler tools
+> >>
+> >> Why not making task-bs-cluster-main requires iurt instead?
+> >
+> > Because the BS is not ready yet :p
+> 
+> BTW is there any ETA on this?
+> B/c Per Oyvind is on the vergea of death-breaking Mandriva with rpm5...
+
+We should be able to open SVN accounts soon to start importing the
+packages and begin the cleaning work.
+
+
+ + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000794.html b/zarb-ml/mageia-sysadm/2010-November/000794.html new file mode 100644 index 000000000..6cedab97f --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000794.html @@ -0,0 +1,93 @@ + + + + [Mageia-sysadm] [398] install iurt on main node as well, for scheduler tools + + + + + + + + + +

[Mageia-sysadm] [398] install iurt on main node as well, for scheduler tools

+ Michael Scherer + misc at zarb.org +
+ Mon Nov 22 19:18:05 CET 2010 +

+
+ +
Le lundi 22 novembre 2010 à 18:16 +0100, nicolas vigier a écrit :
+> On Mon, 22 Nov 2010, Thierry Vignaud wrote:
+> 
+> > On 22 November 2010 18:02, nicolas vigier <boklm at mars-attacks.org> wrote:
+> > >> > install iurt on main node as well, for scheduler tools
+> > >>
+> > >> Why not making task-bs-cluster-main requires iurt instead?
+> > >
+> > > I'm not sure a virtual package in the repository is the best tool to
+> > > manage the list of packages that needs to be installed on the build
+> > > system.
+> > 
+> > Then why are we restoring task-bs-cluster-main?
+> 
+> Probably because it's more simple for now as it already exist.
+> 
+> But IMHO it would be better to manage this list in puppet directly.
+
+especially since we will not run devel distro on the node for more
+stability. 
+
+It also allow to clearly separate issue, ie config for admin on one
+side, and packages for packagers.
+
+-- 
+Michael Scherer
+
+
+ + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000795.html b/zarb-ml/mageia-sysadm/2010-November/000795.html new file mode 100644 index 000000000..3c6259042 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000795.html @@ -0,0 +1,84 @@ + + + + [Mageia-sysadm] [398] install iurt on main node as well, for scheduler tools + + + + + + + + + +

[Mageia-sysadm] [398] install iurt on main node as well, for scheduler tools

+ Olivier Blin + mageia at blino.org +
+ Mon Nov 22 21:44:13 CET 2010 +

+
+ +
Thierry Vignaud <thierry.vignaud at gmail.com> writes:
+
+> On 22 November 2010 18:02, nicolas vigier <boklm at mars-attacks.org> wrote:
+>>> > install iurt on main node as well, for scheduler tools
+>>>
+>>> Why not making task-bs-cluster-main requires iurt instead?
+>>
+>> I'm not sure a virtual package in the repository is the best tool to
+>> manage the list of packages that needs to be installed on the build
+>> system.
+>
+> Then why are we restoring task-bs-cluster-main?
+
+I think a package is also a good tool to manage package BS deps, we
+benefit from all the conditional requirements, conflicts, virtual
+packages, and etc from rpm
+
+-- 
+Olivier Blin - blino
+
+ + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000796.html b/zarb-ml/mageia-sysadm/2010-November/000796.html new file mode 100644 index 000000000..57c2aee7f --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000796.html @@ -0,0 +1,117 @@ + + + + [Mageia-sysadm] [377] - add nssldap password handling + + + + + + + + + +

[Mageia-sysadm] [377] - add nssldap password handling

+ Buchan Milne + bgmilne at multilinks.com +
+ Mon Nov 22 12:56:32 CET 2010 +

+
+ +
On Monday, 22 November 2010 03:04:05 root at mageia.org wrote:
+> Revision: 377
+> Author:   misc
+> Date:     2010-11-22 03:04:04 +0100 (Mon, 22 Nov 2010)
+> Log Message:
+> -----------
+> - add nssldap password handling
+> 
+> Modified Paths:
+> --------------
+>     puppet/modules/pam/manifests/init.pp
+>     puppet/modules/pam/templates/ldap.conf
+> 
+> Modified: puppet/modules/pam/manifests/init.pp
+> ===================================================================
+> --- puppet/modules/pam/manifests/init.pp	2010-11-22 02:04:03 UTC (rev 
+376)
+> +++ puppet/modules/pam/manifests/init.pp	2010-11-22 02:04:04 UTC (rev 
+377)
+> @@ -20,6 +20,9 @@
+>           mode => 644,
+>           content => template("pam/nsswitch.conf")
+>        }
+> +
+> +      $nssldap_password = extlookup("nssldap_password")
+> +
+>        file { "ldap.conf":
+>           path => "/etc/ldap.conf",
+>           owner => root,
+> 
+> Modified: puppet/modules/pam/templates/ldap.conf
+> ===================================================================
+> --- puppet/modules/pam/templates/ldap.conf	2010-11-22 02:04:03 UTC (rev
+> 376) +++ puppet/modules/pam/templates/ldap.conf	2010-11-22 02:04:04 
+UTC
+> (rev 377) @@ -1,4 +1,5 @@
+> -
+> +binddn uid=nssldap,ou=System Accounts,<%= dc_suffix %>
+> +bindpw <%= nssldap_password %>
+>  uri ldaps://ldap.<%= domain %>
+>  base <%= dc_suffix %>
+>  pam_lookup_policy no
+
+
+I would prefer if we can instead use:
+-"rootbinddn" in /etc/ldap.conf, not binddn
+-place password in /etc/ldap.secret
+-use nscd, so all LDAP access is as root (so, no need to expose passwords in 
+files that must be world-readable), as a side-effect also avoiding problems 
+with file descriptors used by any process doing a user lookup etc.
+
+Permissions on /etc/ldap.conf should be 0644, /etc/ldap.secret can be 0600.
+
+We may just have to be careful in testing sudo (it is always slightly 
+different to nss_ldap).
+
+Regards,
+Buchan
+
+ + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000797.html b/zarb-ml/mageia-sysadm/2010-November/000797.html new file mode 100644 index 000000000..e4a51cc3b --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000797.html @@ -0,0 +1,123 @@ + + + + [Mageia-sysadm] [403] add repository vhost for main BS node + + + + + + + + + +

[Mageia-sysadm] [403] add repository vhost for main BS node

+ root at mageia.org + root at mageia.org +
+ Tue Nov 23 00:29:04 CET 2010 +

+
+ +
Revision: 403
+Author:   blino
+Date:     2010-11-23 00:29:03 +0100 (Tue, 23 Nov 2010)
+Log Message:
+-----------
+add repository vhost for main BS node
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Added Paths:
+-----------
+    puppet/modules/buildsystem/templates/vhost_repository.conf
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-22 16:12:51 UTC (rev 402)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-22 23:29:03 UTC (rev 403)
+@@ -26,6 +26,12 @@
+         package { $package_list:
+             ensure => "installed"
+         }
++
++        include apache
++        apache::vhost_other_app { "repository.$domain":
++            vhost_file => "buildsystem/vhost_bugs.conf",
++        }
++
+     }
+ 
+     class buildnode inherits base {
+
+Added: puppet/modules/buildsystem/templates/vhost_repository.conf
+===================================================================
+--- puppet/modules/buildsystem/templates/vhost_repository.conf	                        (rev 0)
++++ puppet/modules/buildsystem/templates/vhost_repository.conf	2010-11-22 23:29:03 UTC (rev 403)
+@@ -0,0 +1,15 @@
++<%
++repository_root = "/distrib/bootstrap"
++%>
++
++<VirtualHost *:80>
++        ServerName repository.<%= domain %>
++        DocumentRoot <%= repository_root %>
++        <Directory  <%= repository_root %>>
++          Order deny,allow
++          Deny from all
++          Allow from localhost, 127.0.0.1
++          Allow from .<%= domain %>
++          Options Indexes FollowSymLinks
++        </Directory>
++</VirtualHost>
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101123/fc8d6161/attachment.html>
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000798.html b/zarb-ml/mageia-sysadm/2010-November/000798.html new file mode 100644 index 000000000..080d857c2 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000798.html @@ -0,0 +1,69 @@ + + + + [Mageia-sysadm] Puppet Report for valstar.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for valstar.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Tue Nov 23 00:29:08 CET 2010 +

+
+ +
Tue Nov 23 00:29:08 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Could not find template 'buildsystem/vhost_bugs.conf' at /etc/puppet/modules/apache/manifests/init.pp:140 on node valstar.mageia.org
+Tue Nov 23 00:29:08 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000799.html b/zarb-ml/mageia-sysadm/2010-November/000799.html new file mode 100644 index 000000000..f27cc50ec --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000799.html @@ -0,0 +1,94 @@ + + + + [Mageia-sysadm] [404] fix typo + + + + + + + + + +

[Mageia-sysadm] [404] fix typo

+ root at mageia.org + root at mageia.org +
+ Tue Nov 23 00:29:27 CET 2010 +

+
+ +
Revision: 404
+Author:   blino
+Date:     2010-11-23 00:29:27 +0100 (Tue, 23 Nov 2010)
+Log Message:
+-----------
+fix typo
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-22 23:29:03 UTC (rev 403)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-22 23:29:27 UTC (rev 404)
+@@ -29,7 +29,7 @@
+ 
+         include apache
+         apache::vhost_other_app { "repository.$domain":
+-            vhost_file => "buildsystem/vhost_bugs.conf",
++            vhost_file => "buildsystem/vhost_repository.conf",
+         }
+ 
+     }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101123/2447be7b/attachment.html>
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000800.html b/zarb-ml/mageia-sysadm/2010-November/000800.html new file mode 100644 index 000000000..15f84c6d2 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000800.html @@ -0,0 +1,94 @@ + + + + [Mageia-sysadm] [405] include apache::base + + + + + + + + + +

[Mageia-sysadm] [405] include apache::base

+ root at mageia.org + root at mageia.org +
+ Tue Nov 23 00:30:59 CET 2010 +

+
+ +
Revision: 405
+Author:   blino
+Date:     2010-11-23 00:30:59 +0100 (Tue, 23 Nov 2010)
+Log Message:
+-----------
+include apache::base
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-22 23:29:27 UTC (rev 404)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-22 23:30:59 UTC (rev 405)
+@@ -27,7 +27,7 @@
+             ensure => "installed"
+         }
+ 
+-        include apache
++        include apache::base
+         apache::vhost_other_app { "repository.$domain":
+             vhost_file => "buildsystem/vhost_repository.conf",
+         }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101123/a50569c1/attachment-0001.html>
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000801.html b/zarb-ml/mageia-sysadm/2010-November/000801.html new file mode 100644 index 000000000..9dd1a5c96 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000801.html @@ -0,0 +1,68 @@ + + + + [Mageia-sysadm] Puppet Report for valstar.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for valstar.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Tue Nov 23 00:31:04 CET 2010 +

+
+ +
Tue Nov 23 00:31:04 +0100 2010 /Stage[main]/Apache::Base/Service[httpd]/ensure (err): change from stopped to running failed: Could not start Service[httpd]: Execution of '/sbin/service httpd start' returned 1:  at /etc/puppet/modules/apache/manifests/init.pp:13
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000802.html b/zarb-ml/mageia-sysadm/2010-November/000802.html new file mode 100644 index 000000000..f0a5f5ee5 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000802.html @@ -0,0 +1,202 @@ + + + + [Mageia-sysadm] [406] - rewrite restricted_shell, and split the shell in its own subclass + + + + + + + + + +

[Mageia-sysadm] [406] - rewrite restricted_shell, and split the shell in its own subclass

+ root at mageia.org + root at mageia.org +
+ Tue Nov 23 02:11:07 CET 2010 +

+
+ +
Revision: 406
+Author:   misc
+Date:     2010-11-23 02:11:07 +0100 (Tue, 23 Nov 2010)
+Log Message:
+-----------
+- rewrite restricted_shell, and split the shell in its own subclass
+
+Modified Paths:
+--------------
+    puppet/modules/pam/manifests/init.pp
+    puppet/modules/restrictshell/manifests/init.pp
+
+Modified: puppet/modules/pam/manifests/init.pp
+===================================================================
+--- puppet/modules/pam/manifests/init.pp	2010-11-22 23:30:59 UTC (rev 405)
++++ puppet/modules/pam/manifests/init.pp	2010-11-23 01:11:07 UTC (rev 406)
+@@ -52,6 +52,7 @@
+ 
+   # for server where people can connect with ssh ( git, svn )
+   class commiters_access inherits base {
++    include restricted_shell::shell
+     $access_class = "commiters"
+   }
+ }
+
+Modified: puppet/modules/restrictshell/manifests/init.pp
+===================================================================
+--- puppet/modules/restrictshell/manifests/init.pp	2010-11-22 23:30:59 UTC (rev 405)
++++ puppet/modules/restrictshell/manifests/init.pp	2010-11-23 01:11:07 UTC (rev 406)
+@@ -1,55 +1,55 @@
+ class restrictshell {
+-  $allow_svn = "0"
+-  $allow_git = "0"
+-  $allow_rsync = "0"
+-  $allow_pkgsubmit = "0"
++    class shell {
++        file { '/usr/local/bin/sv_membersh.pl':
++            ensure => present,
++            owner => root,
++            group => root,
++            mode => 755,
++            content => template("restrictshell/sv_membersh.pl"),
++        }
++    }
+ 
+-  $ldap_pwfile = "/etc/ldap.secret"
++    class base {
++        include shell
++        $allow_svn = "0"
++        $allow_git = "0"
++        $allow_rsync = "0"
++        $allow_pkgsubmit = "0"
+ 
+-  class allow_svn_git_pkgsubmit {
+-    $allow_svn = "1"
+-    $allow_git = "1"
+-    $allow_pkgsubmit = "1"
+-  }
++        $ldap_pwfile = "/etc/ldap.secret"
++        file { '/etc/membersh-conf.pl':
++            ensure => present,
++            owner => root,
++            group => root,
++            mode => 755,
++            content => template("restrictshell/membersh-conf.pl"),
++        }
+ 
+-  file { '/usr/local/bin/sv_membersh.pl':
+-    ensure => present,
+-    owner => root,
+-    group => root,
+-    mode => 755,
+-    content => template("restrictshell/sv_membersh.pl"),
+-  }
++        package { 'python-ldap':
++            ensure => installed,
++        }
+ 
+-  file { '/etc/membersh-conf.pl':
+-    ensure => present,
+-    owner => root,
+-    group => root,
+-    mode => 755,
+-    content => template("restrictshell/membersh-conf.pl"),
+-  }
++        $pubkeys_directory = "/var/lib/pubkeys"
++        file { $pubkeys_directory:
++            ensure => directory,
++            owner => root,
++            group => root,
++            mode => 755,
++        }
+ 
+-  package { 'python-ldap':
+-    ensure => installed,
+-  }
++        file { '/usr/local/bin/ldap-sshkey2file.py':
++            ensure => present,
++            owner => root,
++            group => root,
++            mode => 755,
++            content => template("restrictshell/ldap-sshkey2file.py"),
++            requires => Package['python-ldap']
++        } 
++    }
+ 
+-  $pubkeys_directory = "/var/lib/pubkeys"
+-  file { $pubkeys_directory:
+-    ensure => directory,
+-    owner => root,
+-    group => root,
+-    mode => 755,
+-  }
+-
+-  file { '/usr/local/bin/ldap-sshkey2file.py':
+-    ensure => present,
+-    owner => root,
+-    group => root,
+-    mode => 755,
+-    content => template("restrictshell/ldap-sshkey2file.py"),
+-    requires => Package['python-ldap']
+-  } 
+-
+-
+-
+-
++    class allow_svn_git_pkgsubmit inherits base {
++        $allow_svn = "1"
++        $allow_git = "1"
++        $allow_pkgsubmit = "1"
++    }
+ }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101123/6e7a009e/attachment.html>
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000803.html b/zarb-ml/mageia-sysadm/2010-November/000803.html new file mode 100644 index 000000000..b913c393d --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000803.html @@ -0,0 +1,95 @@ + + + + [Mageia-sysadm] [407] - use pam for openssh ( I am not sure if we need to restrict its use + + + + + + + + + +

[Mageia-sysadm] [407] - use pam for openssh ( I am not sure if we need to restrict its use

+ root at mageia.org + root at mageia.org +
+ Tue Nov 23 02:11:08 CET 2010 +

+
+ +
Revision: 407
+Author:   misc
+Date:     2010-11-23 02:11:08 +0100 (Tue, 23 Nov 2010)
+Log Message:
+-----------
+- use pam for openssh ( I am not sure if we need to restrict its use
+  only on ldap hosts )
+
+Modified Paths:
+--------------
+    puppet/modules/openssh/templates/sshd_config
+
+Modified: puppet/modules/openssh/templates/sshd_config
+===================================================================
+--- puppet/modules/openssh/templates/sshd_config	2010-11-23 01:11:07 UTC (rev 406)
++++ puppet/modules/openssh/templates/sshd_config	2010-11-23 01:11:08 UTC (rev 407)
+@@ -81,7 +81,7 @@
+ # If you just want the PAM account and session checks to run without
+ # PAM authentication, then enable this but set PasswordAuthentication
+ # and ChallengeResponseAuthentication to 'no'.
+-#UsePAM no
++UsePAM yes
+ 
+ # Accept locale-related environment variables
+ AcceptEnv LANG LC_CTYPE LC_NUMERIC LC_TIME LC_COLLATE LC_MONETARY LC_MESSAGES
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101123/aee271bf/attachment.html>
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000804.html b/zarb-ml/mageia-sysadm/2010-November/000804.html new file mode 100644 index 000000000..a1f1601fe --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000804.html @@ -0,0 +1,201 @@ + + + + [Mageia-sysadm] [408] - split the module in 2 part, and add class to allow to more easyly + + + + + + + + + +

[Mageia-sysadm] [408] - split the module in 2 part, and add class to allow to more easyly

+ root at mageia.org + root at mageia.org +
+ Tue Nov 23 02:11:10 CET 2010 +

+
+ +
Revision: 408
+Author:   misc
+Date:     2010-11-23 02:11:10 +0100 (Tue, 23 Nov 2010)
+Log Message:
+-----------
+- split the module in 2 part, and add class to allow to more easyly
+combine the autorized shell
+
+Modified Paths:
+--------------
+    puppet/modules/restrictshell/manifests/init.pp
+    puppet/modules/restrictshell/templates/membersh-conf.pl
+
+Modified: puppet/modules/restrictshell/manifests/init.pp
+===================================================================
+--- puppet/modules/restrictshell/manifests/init.pp	2010-11-23 01:11:08 UTC (rev 407)
++++ puppet/modules/restrictshell/manifests/init.pp	2010-11-23 01:11:10 UTC (rev 408)
+@@ -1,5 +1,12 @@
+ class restrictshell {
+     class shell {
++        file {"/etc/membersh-conf.d":
++            ensure => directory,
++            owner => root,
++            group => root,
++            mode => 755,
++        }
++
+         file { '/usr/local/bin/sv_membersh.pl':
+             ensure => present,
+             owner => root,
+@@ -7,16 +14,7 @@
+             mode => 755,
+             content => template("restrictshell/sv_membersh.pl"),
+         }
+-    }
+ 
+-    class base {
+-        include shell
+-        $allow_svn = "0"
+-        $allow_git = "0"
+-        $allow_rsync = "0"
+-        $allow_pkgsubmit = "0"
+-
+-        $ldap_pwfile = "/etc/ldap.secret"
+         file { '/etc/membersh-conf.pl':
+             ensure => present,
+             owner => root,
+@@ -24,6 +22,9 @@
+             mode => 755,
+             content => template("restrictshell/membersh-conf.pl"),
+         }
++    }
++    
++    class ssh_keys_from_ldap {
+ 
+         package { 'python-ldap':
+             ensure => installed,
+@@ -37,6 +38,7 @@
+             mode => 755,
+         }
+ 
++        $ldap_pwfile = "/etc/ldap.secret"
+         file { '/usr/local/bin/ldap-sshkey2file.py':
+             ensure => present,
+             owner => root,
+@@ -47,9 +49,32 @@
+         } 
+     }
+ 
+-    class allow_svn_git_pkgsubmit inherits base {
+-        $allow_svn = "1"
+-        $allow_git = "1"
+-        $allow_pkgsubmit = "1"
++    define allow {
++        include shell
++        file { "/etc/membersh-conf.d/allow_$name.pl":
++            ensure => "present",
++            owner => root,
++            group => root,
++            mode => 755,
++            content => "\$use_$name = 1;\n",
++        }
+     }
++
++    # yes, we could directly use the allow, but this is
++    # a nicer syntax
++    class allow_git {
++        allow{ "git": }
++    }
++
++    class allow_rsync {
++        allow{ "rsync": }
++    }
++
++    class allow_pkgsubmit {
++        allow{ "pkgsubmit": }
++    }
++
++    class allow_svn {
++        allow{ "svn": }
++    }
+ }
+
+Modified: puppet/modules/restrictshell/templates/membersh-conf.pl
+===================================================================
+--- puppet/modules/restrictshell/templates/membersh-conf.pl	2010-11-23 01:11:08 UTC (rev 407)
++++ puppet/modules/restrictshell/templates/membersh-conf.pl	2010-11-23 01:11:10 UTC (rev 408)
+@@ -1,16 +1,18 @@
+-$use_svn = "<%= allow_svn %>";
++
++
+ $bin_svn = "/usr/bin/svnserve";
+ $regexp_svn = "^svnserve -t\$";
+ #@prepend_args_svn = ( '-r', '/svn' );
+ @prepend_args_svn = ();
+ 
+-$use_git = "<%= allow_git %>";
+ $bin_git = "/usr/bin/git-shell";
+ 
+-$use_rsync = "<%= allow_rsync %>";
+ $bin_rsync = "/usr/bin/rsync";
+ $regexp_rsync = "^rsync --server";
+ $regexp_dir_rsync = "^/.*";
+ 
+-$use_pkgsubmit = "<%= allow_pkgsubmit %>";
+ 
++foreach my $f (glob("/etc/membersh-conf.d/allow_*pl")) {
++    do($f)
++}
++1;
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101123/0c4827d6/attachment-0001.html>
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000805.html b/zarb-ml/mageia-sysadm/2010-November/000805.html new file mode 100644 index 000000000..1b07c2150 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000805.html @@ -0,0 +1,95 @@ + + + + [Mageia-sysadm] [410] class was renamed 3 commits ago + + + + + + + + + +

[Mageia-sysadm] [410] class was renamed 3 commits ago

+ root at mageia.org + root at mageia.org +
+ Tue Nov 23 02:11:14 CET 2010 +

+
+ +
Revision: 410
+Author:   misc
+Date:     2010-11-23 02:11:14 +0100 (Tue, 23 Nov 2010)
+Log Message:
+-----------
+class was renamed 3 commits ago
+
+Modified Paths:
+--------------
+    puppet/modules/pam/manifests/init.pp
+
+Modified: puppet/modules/pam/manifests/init.pp
+===================================================================
+--- puppet/modules/pam/manifests/init.pp	2010-11-23 01:11:12 UTC (rev 409)
++++ puppet/modules/pam/manifests/init.pp	2010-11-23 01:11:14 UTC (rev 410)
+@@ -52,7 +52,7 @@
+ 
+   # for server where people can connect with ssh ( git, svn )
+   class commiters_access inherits base {
+-    include restricted_shell::shell
++    include restrictshell::shell
+     $access_class = "commiters"
+   }
+ }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101123/1cb960af/attachment.html>
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000806.html b/zarb-ml/mageia-sysadm/2010-November/000806.html new file mode 100644 index 000000000..41aed17e5 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000806.html @@ -0,0 +1,116 @@ + + + + [Mageia-sysadm] [409] add class for scp and sftp + + + + + + + + + +

[Mageia-sysadm] [409] add class for scp and sftp

+ root at mageia.org + root at mageia.org +
+ Tue Nov 23 02:11:12 CET 2010 +

+
+ +
Revision: 409
+Author:   misc
+Date:     2010-11-23 02:11:12 +0100 (Tue, 23 Nov 2010)
+Log Message:
+-----------
+add class for scp and sftp
+
+Modified Paths:
+--------------
+    puppet/modules/restrictshell/manifests/init.pp
+    puppet/modules/restrictshell/templates/membersh-conf.pl
+
+Modified: puppet/modules/restrictshell/manifests/init.pp
+===================================================================
+--- puppet/modules/restrictshell/manifests/init.pp	2010-11-23 01:11:10 UTC (rev 408)
++++ puppet/modules/restrictshell/manifests/init.pp	2010-11-23 01:11:12 UTC (rev 409)
+@@ -77,4 +77,16 @@
+     class allow_svn {
+         allow{ "svn": }
+     }
++
++    class allow_scp {
++        allow{ "scp": }
++    }
++
++    class allow_sftp {
++        allow{ "sftp": }
++    }
++    # technically, we could add cvs too
++    # but I doubt we will use it one day
++
++
+ }
+
+Modified: puppet/modules/restrictshell/templates/membersh-conf.pl
+===================================================================
+--- puppet/modules/restrictshell/templates/membersh-conf.pl	2010-11-23 01:11:10 UTC (rev 408)
++++ puppet/modules/restrictshell/templates/membersh-conf.pl	2010-11-23 01:11:12 UTC (rev 409)
+@@ -11,6 +11,8 @@
+ $regexp_rsync = "^rsync --server";
+ $regexp_dir_rsync = "^/.*";
+ 
++$bin_sftp = "<%= lib_dir %>/ssh/sftp-server";
++$regexp_sftp = "^(/usr/lib{64,}/ssh/sftp-server|/usr/lib/sftp-server|/usr/libexec/sftp-server|/usr/lib/openssh/sftp-server)";
+ 
+ foreach my $f (glob("/etc/membersh-conf.d/allow_*pl")) {
+     do($f)
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101123/c349dda7/attachment.html>
+
+ + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000807.html b/zarb-ml/mageia-sysadm/2010-November/000807.html new file mode 100644 index 000000000..02b24ef82 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000807.html @@ -0,0 +1,107 @@ + + + + [Mageia-sysadm] [411] - add a comment so I do not have the impression to have + + + + + + + + + +

[Mageia-sysadm] [411] - add a comment so I do not have the impression to have

+ root at mageia.org + root at mageia.org +
+ Tue Nov 23 02:11:15 CET 2010 +

+
+ +
Revision: 411
+Author:   misc
+Date:     2010-11-23 02:11:15 +0100 (Tue, 23 Nov 2010)
+Log Message:
+-----------
+- add a comment so I do not have the impression to have
+ lost 4h on debugging pam_ldap and openssh
+
+Modified Paths:
+--------------
+    puppet/modules/pam/manifests/init.pp
+
+Modified: puppet/modules/pam/manifests/init.pp
+===================================================================
+--- puppet/modules/pam/manifests/init.pp	2010-11-23 01:11:14 UTC (rev 410)
++++ puppet/modules/pam/manifests/init.pp	2010-11-23 01:11:15 UTC (rev 411)
+@@ -44,14 +44,18 @@
+       }
+   } 
+   
+-  # for server where only admin can connect
++  # for server where only admins can connect
+   class admin_access inherits base {
+     $access_class = "admin"
+-    # not sure if this line is needed anymore, wil check later
+   }
+ 
+   # for server where people can connect with ssh ( git, svn )
+   class commiters_access inherits base {
++    # this is required, as we force the shell to be the restricted one
++    # openssh will detect if the file do not exist and while refuse to log the
++    # user, and erase the password ( see pam_auth.c in openssh code, seek badpw )
++    # so the file must exist
++    # permission to use svn, git, etc must be added separatly
+     include restrictshell::shell
+     $access_class = "commiters"
+   }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101123/6cdd37f8/attachment.html>
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000808.html b/zarb-ml/mageia-sysadm/2010-November/000808.html new file mode 100644 index 000000000..ca1ea29a6 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000808.html @@ -0,0 +1,109 @@ + + + + [Mageia-sysadm] [412] - it is IMHO cleaner and logical to have apache:: vhost_other_app directly requiring apache:: base rather than letting every people adding it when using the class + + + + + + + + + +

[Mageia-sysadm] [412] - it is IMHO cleaner and logical to have apache:: vhost_other_app directly requiring apache:: base rather than letting every people adding it when using the class

+ root at mageia.org + root at mageia.org +
+ Tue Nov 23 02:14:05 CET 2010 +

+
+ +
Revision: 412
+Author:   misc
+Date:     2010-11-23 02:14:05 +0100 (Tue, 23 Nov 2010)
+Log Message:
+-----------
+- it is IMHO cleaner and logical to have apache::vhost_other_app directly requiring apache::base rather than letting every people adding it when using the class
+
+Modified Paths:
+--------------
+    puppet/modules/apache/manifests/init.pp
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/modules/apache/manifests/init.pp
+===================================================================
+--- puppet/modules/apache/manifests/init.pp	2010-11-23 01:11:15 UTC (rev 411)
++++ puppet/modules/apache/manifests/init.pp	2010-11-23 01:14:05 UTC (rev 412)
+@@ -130,6 +130,7 @@
+     }
+ 
+    define vhost_other_app($vhost_file) {
++        include apache::base
+         file { "$name.conf":
+             path => "/etc/httpd/conf/vhosts.d/$name.conf",
+             ensure => "present",
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-23 01:11:15 UTC (rev 411)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-23 01:14:05 UTC (rev 412)
+@@ -27,7 +27,6 @@
+             ensure => "installed"
+         }
+ 
+-        include apache::base
+         apache::vhost_other_app { "repository.$domain":
+             vhost_file => "buildsystem/vhost_repository.conf",
+         }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101123/815cc2b7/attachment-0001.html>
+
+ + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000809.html b/zarb-ml/mageia-sysadm/2010-November/000809.html new file mode 100644 index 000000000..86bf39ed1 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000809.html @@ -0,0 +1,74 @@ + + + + [Mageia-sysadm] [377] - add nssldap password handling + + + + + + + + + +

[Mageia-sysadm] [377] - add nssldap password handling

+ Michael Scherer + misc at zarb.org +
+ Tue Nov 23 02:23:22 CET 2010 +

+
+ +
> We may just have to be careful in testing sudo (it is always slightly 
+> different to nss_ldap).
+
+By the way, is there a advantage to use sudo rules in ldap when compared
+to puppet ? I can see it for ldap vs traditional deployement, and even
+for regular sudo file ( as this provides a centralized list of rule, and
+a easy way to combine rules ).
+
+But with sudoers.d and puppet, I think we will be able to have the same
+level of flexibility, and have more tracability ( with svn ) and less
+risk ( as we remove one layer of complexity ).
+
+-- 
+Michael Scherer
+
+
+ + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000810.html b/zarb-ml/mageia-sysadm/2010-November/000810.html new file mode 100644 index 000000000..e2b060205 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000810.html @@ -0,0 +1,206 @@ + + + + [Mageia-sysadm] [414] - add spamassassin module + + + + + + + + + +

[Mageia-sysadm] [414] - add spamassassin module

+ root at mageia.org + root at mageia.org +
+ Tue Nov 23 03:19:37 CET 2010 +

+
+ +
Revision: 414
+Author:   misc
+Date:     2010-11-23 03:19:37 +0100 (Tue, 23 Nov 2010)
+Log Message:
+-----------
+- add spamassassin module
+
+Added Paths:
+-----------
+    puppet/modules/spamassassin/
+    puppet/modules/spamassassin/manifests/
+    puppet/modules/spamassassin/manifests/init.pp
+    puppet/modules/spamassassin/templates/
+    puppet/modules/spamassassin/templates/local.cf
+
+Added: puppet/modules/spamassassin/manifests/init.pp
+===================================================================
+--- puppet/modules/spamassassin/manifests/init.pp	                        (rev 0)
++++ puppet/modules/spamassassin/manifests/init.pp	2010-11-23 02:19:37 UTC (rev 414)
+@@ -0,0 +1,15 @@
++class spamassassin {
++
++    package { "spamassassin", "spamassassin-sa-compile":
++        ensure => installed, 
++    }
++
++    file { "/etc/mail/spamassassin/local.cf":
++        ensure => present,
++        owner => root,
++        group => root,
++        mode => 644,
++        requires => Package["spamassassin"],
++        content => template('spamassassin/local.cf')
++    }
++}
+
+Added: puppet/modules/spamassassin/templates/local.cf
+===================================================================
+--- puppet/modules/spamassassin/templates/local.cf	                        (rev 0)
++++ puppet/modules/spamassassin/templates/local.cf	2010-11-23 02:19:37 UTC (rev 414)
+@@ -0,0 +1,92 @@
++# This is the right place to customize your installation of SpamAssassin.
++#
++# See 'perldoc Mail::SpamAssassin::Conf' for details of what can be
++# tweaked.
++#
++# Only a small subset of options are listed below
++#
++###########################################################################
++
++#   Add *****SPAM***** to the Subject header of spam e-mails
++#
++# rewrite_header Subject *****SPAM*****
++
++
++#   Save spam messages as a message/rfc822 MIME attachment instead of
++#   modifying the original message (0: off, 2: use text/plain instead)
++#
++# report_safe 1
++
++
++#   Set which networks or hosts are considered 'trusted' by your mail
++#   server (i.e. not spammers)
++#
++# trusted_networks 212.17.35.
++
++
++#   Set file-locking method (flock is not safe over NFS, but is faster)
++#
++# lock_method flock
++
++
++#   Set the threshold at which a message is considered spam (default: 5.0)
++#
++# required_score 5.0
++
++
++#   Use Bayesian classifier (default: 1)
++#
++# use_bayes 1
++
++
++#   Bayesian classifier auto-learning (default: 1)
++#
++# bayes_auto_learn 1
++
++
++#   Set headers which may provide inappropriate cues to the Bayesian
++#   classifier
++#
++# bayes_ignore_header X-Bogosity
++# bayes_ignore_header X-Spam-Flag
++# bayes_ignore_header X-Spam-Status
++
++
++#   Some shortcircuiting, if the plugin is enabled
++# 
++ifplugin Mail::SpamAssassin::Plugin::Shortcircuit
++#
++#   default: strongly-whitelisted mails are *really* whitelisted now, if the
++#   shortcircuiting plugin is active, causing early exit to save CPU load.
++#   Uncomment to turn this on
++#
++# shortcircuit USER_IN_WHITELIST       on
++# shortcircuit USER_IN_DEF_WHITELIST   on
++# shortcircuit USER_IN_ALL_SPAM_TO     on
++# shortcircuit SUBJECT_IN_WHITELIST    on
++
++#   the opposite; blacklisted mails can also save CPU
++#
++# shortcircuit USER_IN_BLACKLIST       on
++# shortcircuit USER_IN_BLACKLIST_TO    on
++# shortcircuit SUBJECT_IN_BLACKLIST    on
++
++#   if you have taken the time to correctly specify your "trusted_networks",
++#   this is another good way to save CPU
++#
++# shortcircuit ALL_TRUSTED             on
++
++#   and a well-trained bayes DB can save running rules, too
++#
++# shortcircuit BAYES_99                spam
++# shortcircuit BAYES_00                ham
++
++endif # Mail::SpamAssassin::Plugin::Shortcircuit
++
++required_hits 5
++rewrite_header Subject [SPAM]
++report_safe 0
++ifplugin Mail::SpamAssassin::Plugin::AWL
++auto_whitelist_path        /var/spool/spamassassin/auto-whitelist
++auto_whitelist_file_mode   0666
++endif # Mail::SpamAssassin::Plugin::AWL
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101123/77981dcb/attachment.html>
+
+ + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000811.html b/zarb-ml/mageia-sysadm/2010-November/000811.html new file mode 100644 index 000000000..22b321192 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000811.html @@ -0,0 +1,97 @@ + + + + [Mageia-sysadm] [415] no one here want receive a mail when we are hot by a virus, I think + + + + + + + + + +

[Mageia-sysadm] [415] no one here want receive a mail when we are hot by a virus, I think

+ root at mageia.org + root at mageia.org +
+ Tue Nov 23 03:19:38 CET 2010 +

+
+ +
Revision: 415
+Author:   misc
+Date:     2010-11-23 03:19:38 +0100 (Tue, 23 Nov 2010)
+Log Message:
+-----------
+no one here want receive a mail when we are hot by a virus, I think
+
+Modified Paths:
+--------------
+    puppet/modules/amavis/templates/amavisd.conf
+
+Modified: puppet/modules/amavis/templates/amavisd.conf
+===================================================================
+--- puppet/modules/amavis/templates/amavisd.conf	2010-11-23 02:19:37 UTC (rev 414)
++++ puppet/modules/amavis/templates/amavisd.conf	2010-11-23 02:19:38 UTC (rev 415)
+@@ -119,7 +119,7 @@
+ # $timestamp_fmt_mysql = 1; # if using MySQL *and* msgs.time_iso is TIMESTAMP;
+ #   defaults to 0, which is good for non-MySQL or if msgs.time_iso is CHAR(16)
+ 
+-$virus_admin               = "virusalert\@$mydomain";  # notifications recip.
++$virus_admin               = "";  # notifications recip.
+ 
+ $mailfrom_notify_admin     = "virusalert\@$mydomain";  # notifications sender
+ $mailfrom_notify_recip     = "virusalert\@$mydomain";  # notifications sender
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101123/e4da8b34/attachment-0001.html>
+
+ + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000812.html b/zarb-ml/mageia-sysadm/2010-November/000812.html new file mode 100644 index 000000000..9fba44e09 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000812.html @@ -0,0 +1,123 @@ + + + + [Mageia-sysadm] [416] add filter compilation as this can reduce the load on server + + + + + + + + + +

[Mageia-sysadm] [416] add filter compilation as this can reduce the load on server

+ root at mageia.org + root at mageia.org +
+ Tue Nov 23 03:19:39 CET 2010 +

+
+ +
Revision: 416
+Author:   misc
+Date:     2010-11-23 03:19:39 +0100 (Tue, 23 Nov 2010)
+Log Message:
+-----------
+add filter compilation as this can reduce the load on server
+
+Modified Paths:
+--------------
+    puppet/modules/spamassassin/manifests/init.pp
+    puppet/modules/spamassassin/templates/local.cf
+
+Modified: puppet/modules/spamassassin/manifests/init.pp
+===================================================================
+--- puppet/modules/spamassassin/manifests/init.pp	2010-11-23 02:19:38 UTC (rev 415)
++++ puppet/modules/spamassassin/manifests/init.pp	2010-11-23 02:19:39 UTC (rev 416)
+@@ -1,6 +1,11 @@
+ class spamassassin {
+ 
+-    package { "spamassassin", "spamassassin-sa-compile":
++    package { "spamassassin-sa-compile":
++        ensure => installed,
++        notify => "sa-compile",
++    }
++
++    package { "spamassassin":
+         ensure => installed, 
+     }
+ 
+@@ -12,4 +17,8 @@
+         requires => Package["spamassassin"],
+         content => template('spamassassin/local.cf')
+     }
++
++    exec { "sa-compile":
++        refreshonly => true,
++    }
+ }
+
+Modified: puppet/modules/spamassassin/templates/local.cf
+===================================================================
+--- puppet/modules/spamassassin/templates/local.cf	2010-11-23 02:19:38 UTC (rev 415)
++++ puppet/modules/spamassassin/templates/local.cf	2010-11-23 02:19:39 UTC (rev 416)
+@@ -90,3 +90,6 @@
+ auto_whitelist_path        /var/spool/spamassassin/auto-whitelist
+ auto_whitelist_file_mode   0666
+ endif # Mail::SpamAssassin::Plugin::AWL
++
++loadplugin Mail::SpamAssassin::Plugin::Rule2XSBody
++
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101123/fb6c684f/attachment-0001.html>
+
+ + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000813.html b/zarb-ml/mageia-sysadm/2010-November/000813.html new file mode 100644 index 000000000..dc3941e73 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000813.html @@ -0,0 +1,86 @@ + + + + [Mageia-sysadm] something to not forget in case of svn import + + + + + + + + + +

[Mageia-sysadm] something to not forget in case of svn import

+ Michael Scherer + misc at zarb.org +
+ Tue Nov 23 03:35:08 CET 2010 +

+
+ +
+I just realized something :
+if we do import svn from mandriva, we need somehow to keep the same
+login, or we will end up with some confusion ( and copyright
+misattribution, I fear ).
+
+For example, dams at mageia is not the same than dams at mandriva, to
+name the first case that will likely cause trouble :/
+
+So, how could we do ? 
+( I think we could rename upon import, I guess ). 
+
+-- 
+Michael Scherer
+
+
+ + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000814.html b/zarb-ml/mageia-sysadm/2010-November/000814.html new file mode 100644 index 000000000..d889b48a2 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000814.html @@ -0,0 +1,898 @@ + + + + [Mageia-sysadm] [413] - add the start of a amavis module ( to interface postfix with spamassassin ) + + + + + + + + + +

[Mageia-sysadm] [413] - add the start of a amavis module ( to interface postfix with spamassassin )

+ root at mageia.org + root at mageia.org +
+ Tue Nov 23 03:19:36 CET 2010 +

+
+ +
Revision: 413
+Author:   misc
+Date:     2010-11-23 03:19:36 +0100 (Tue, 23 Nov 2010)
+Log Message:
+-----------
+- add the start of a amavis module ( to interface postfix with spamassassin )
+
+Added Paths:
+-----------
+    puppet/modules/amavis/
+    puppet/modules/amavis/manifests/
+    puppet/modules/amavis/manifests/init.pp
+    puppet/modules/amavis/templates/
+    puppet/modules/amavis/templates/amavisd.conf
+
+Added: puppet/modules/amavis/manifests/init.pp
+===================================================================
+--- puppet/modules/amavis/manifests/init.pp	                        (rev 0)
++++ puppet/modules/amavis/manifests/init.pp	2010-11-23 02:19:36 UTC (rev 413)
+@@ -0,0 +1,20 @@
++class amavis {
++
++    package { "amavisd-new":
++        ensure => installed, 
++    }
++
++    service { "amavisd":
++        ensure => running,
++        path => "/etc/init.d/amavisd",
++    }
++
++    file { "/etc/amavisd/amavisd.conf":
++        ensure => present,
++        owner => root,
++        group => root,
++        mode => 644,
++        requires => Package["amavisd-new"],
++        content => template('amavis/amavisd.conf')
++    }
++}
+
+Added: puppet/modules/amavis/templates/amavisd.conf
+===================================================================
+--- puppet/modules/amavis/templates/amavisd.conf	                        (rev 0)
++++ puppet/modules/amavis/templates/amavisd.conf	2010-11-23 02:19:36 UTC (rev 413)
+@@ -0,0 +1,781 @@
++use strict;
++
++# a minimalistic configuration file for amavisd-new with all necessary settings
++#
++#   see amavisd.conf-default for a list of all variables with their defaults;
++#   see amavisd.conf-sample for a traditional-style commented file;
++#   for more details see documentation in INSTALL, README_FILES/*
++#   and at http://www.ijs.si/software/amavisd/amavisd-new-docs.html
++
++
++# COMMONLY ADJUSTED SETTINGS:
++
++# @bypass_virus_checks_maps = (1);  # controls running of anti-virus code
++# @bypass_spam_checks_maps  = (1);  # controls running of anti-spam code
++# $bypass_decode_parts = 1;         # controls running of decoders&dearchivers
++
++$max_servers = 2;            # num of pre-forked children (2..30 is common), -m
++$daemon_user  = 'amavis';     # (no default;  customary: vscan or amavis), -u
++$daemon_group = 'amavis';     # (no default;  customary: vscan or amavis), -g
++
++(my $__hn,$mydomain) = split (/\./, $myhostname, 2); # try to discover domainname,
++                             # a convenient default for other settings could be localhost.localdomain
++                             # or change this as your needs
++
++# $MYHOME = '/var/lib/amavis';   # a convenient default for other settings, -H
++$TEMPBASE = "$MYHOME/tmp";   # working directory, needs to exist, -T
++$ENV{TMPDIR} = $TEMPBASE;    # environment variable TMPDIR, used by SA, etc.
++$QUARANTINEDIR = '/var/spool/amavis/virusmails';  # -Q
++# $quarantine_subdir_levels = 1;  # add level of subdirs to disperse quarantine
++# $release_format = 'resend';     # 'attach', 'plain', 'resend'
++# $report_format  = 'arf';        # 'attach', 'plain', 'resend', 'arf'
++
++# $daemon_chroot_dir = $MYHOME;   # chroot directory or undef, -R
++
++# $db_home   = "$MYHOME/db";      # dir for bdb nanny/cache/snmp databases, -D
++# $helpers_home = "$MYHOME/var";  # working directory for SpamAssassin, -S
++# $lock_file = "$MYHOME/var/lib/amavisd.lock";  # -L
++# $pid_file  = "$MYHOME/var/lib/amavisd.pid";   # -P
++
++#NOTE: create directories $MYHOME/tmp, $MYHOME/var, $MYHOME/db manually
++
++$log_level = 0;              # verbosity 0..5, -d
++$log_recip_templ = undef;    # disable by-recipient level-0 log entries
++$DO_SYSLOG = 1;              # log via syslogd (preferred)
++$syslog_facility = 'mail';   # Syslog facility as a string
++           # e.g.: mail, daemon, user, local0, ... local7
++$syslog_priority = 'debug';  # Syslog base (minimal) priority as a string,
++           # choose from: emerg, alert, crit, err, warning, notice, info, debug
++
++$enable_db = 1;              # enable use of BerkeleyDB/libdb (SNMP and nanny)
++$enable_global_cache = 1;    # enable use of libdb-based cache if $enable_db=1
++$nanny_details_level = 2;    # nanny verbosity: 1: traditional, 2: detailed
++$enable_dkim_verification = 1;  # enable DKIM signatures verification
++$enable_dkim_signing = 1;    # load DKIM signing code, keys defined by dkim_key
++
++ at local_domains_maps = ( [".$mydomain"] );  # list of all local domains
++
++ at mynetworks = qw( 127.0.0.0/8 [::1] [FE80::]/10 [FEC0::]/10
++                  10.0.0.0/8 172.16.0.0/12 192.168.0.0/16 );
++
++$unix_socketname = "$MYHOME/amavisd.sock";  # amavisd-release or amavis-milter
++               # option(s) -p overrides $inet_socket_port and $unix_socketname
++
++$inet_socket_port = 10025;   # listen on this local TCP port(s)
++# $inet_socket_port = [10024,10026];  # listen on multiple TCP ports
++
++$policy_bank{'MYNETS'} = {   # mail originating from @mynetworks
++  originating => 1,  # is true in MYNETS by default, but let's make it explicit
++  os_fingerprint_method => undef,  # don't query p0f for internal clients
++};
++
++# it is up to MTA to re-route mail from authenticated roaming users or
++# from internal hosts to a dedicated TCP port (such as 10026) for filtering
++$interface_policy{'10026'} = 'ORIGINATING';
++
++$policy_bank{'ORIGINATING'} = {  # mail supposedly originating from our users
++  originating => 1,  # declare that mail was submitted by our smtp client
++  allow_disclaimers => 1,  # enables disclaimer insertion if available
++  # notify administrator of locally originating malware
++  virus_admin_maps => ["virusalert\@$mydomain"],
++  spam_admin_maps  => ["virusalert\@$mydomain"],
++  warnbadhsender   => 1,
++  # forward to a smtpd service providing DKIM signing service
++  forward_method => 'smtp:[127.0.0.1]:10027',
++  # force MTA conversion to 7-bit (e.g. before DKIM signing)
++  smtpd_discard_ehlo_keywords => ['8BITMIME'],
++  bypass_banned_checks_maps => [1],  # allow sending any file names and types
++  terminate_dsn_on_notify_success => 0,  # don't remove NOTIFY=SUCCESS option
++};
++
++$interface_policy{'SOCK'} = 'AM.PDP-SOCK'; # only applies with $unix_socketname
++
++# Use with amavis-release over a socket or with Petr Rehor's amavis-milter.c
++# (with amavis-milter.c from this package or old amavis.c client use 'AM.CL'):
++$policy_bank{'AM.PDP-SOCK'} = {
++  protocol => 'AM.PDP',
++  auth_required_release => 0,  # do not require secret_id for amavisd-release
++};
++
++$sa_tag_level_deflt  = 1.0;  # add spam info headers if at, or above that level
++$sa_tag2_level_deflt = 4.7;  # add 'spam detected' headers at that level
++$sa_kill_level_deflt = 4.7;  # triggers spam evasive actions (e.g. blocks mail)
++$sa_dsn_cutoff_level = 10;   # spam level beyond which a DSN is not sent
++$sa_crediblefrom_dsn_cutoff_level = 18; # likewise, but for a likely valid From
++# $sa_quarantine_cutoff_level = 25; # spam level beyond which quarantine is off
++$penpals_bonus_score = 8;    # (no effect without a @storage_sql_dsn database)
++$penpals_threshold_high = $sa_kill_level_deflt;  # don't waste time on hi spam
++$bounce_killer_score = 100;  # spam score points to add for joe-jobbed bounces
++
++$sa_mail_body_size_limit = 512*1024; # don't waste time on SA if mail is larger
++$sa_local_tests_only = 0;    # only tests which do not require internet access?
++
++# @lookup_sql_dsn =
++#   ( ['DBI:mysql:database=mail;host=127.0.0.1;port=3306', 'user1', 'passwd1'],
++#     ['DBI:mysql:database=mail;host=host2', 'username2', 'password2'],
++#     ["DBI:SQLite:dbname=$MYHOME/sql/mail_prefs.sqlite", '', ''] );
++# @storage_sql_dsn = @lookup_sql_dsn;  # none, same, or separate database
++
++# $timestamp_fmt_mysql = 1; # if using MySQL *and* msgs.time_iso is TIMESTAMP;
++#   defaults to 0, which is good for non-MySQL or if msgs.time_iso is CHAR(16)
++
++$virus_admin               = "virusalert\@$mydomain";  # notifications recip.
++
++$mailfrom_notify_admin     = "virusalert\@$mydomain";  # notifications sender
++$mailfrom_notify_recip     = "virusalert\@$mydomain";  # notifications sender
++$mailfrom_notify_spamadmin = "spam.police\@$mydomain"; # notifications sender
++$mailfrom_to_quarantine = ''; # null return path; uses original sender if undef
++
++ at addr_extension_virus_maps      = ('virus');
++ at addr_extension_banned_maps     = ('banned');
++ at addr_extension_spam_maps       = ('spam');
++ at addr_extension_bad_header_maps = ('badh');
++# $recipient_delimiter = '+';  # undef disables address extensions altogether
++# when enabling addr extensions do also Postfix/main.cf: recipient_delimiter=+
++
++$path = '/usr/local/sbin:/usr/local/bin:/usr/sbin:/sbin:/usr/bin:/bin';
++# $dspam = 'dspam';
++
++$MAXLEVELS = 14;
++$MAXFILES = 1500;
++$MIN_EXPANSION_QUOTA =      100*1024;  # bytes  (default undef, not enforced)
++$MAX_EXPANSION_QUOTA = 512*1024*1024;  # bytes  (default undef, not enforced)
++
++$sa_spam_subject_tag = '***SPAM*** ';
++$defang_virus  = 1;  # MIME-wrap passed infected mail
++$defang_banned = 1;  # MIME-wrap passed mail containing banned name
++# for defanging bad headers only turn on certain minor contents categories:
++$defang_by_ccat{+CC_BADH.",3"} = 1;  # NUL or CR character in header
++$defang_by_ccat{+CC_BADH.",5"} = 1;  # header line longer than 998 characters
++$defang_by_ccat{+CC_BADH.",6"} = 1;  # header field syntax error
++
++
++# OTHER MORE COMMON SETTINGS (defaults may suffice):
++
++# $myhostname = 'host.example.com';  # must be a fully-qualified domain name!
++
++# $notify_method  = 'smtp:[127.0.0.1]:10026';
++# $forward_method = 'smtp:[127.0.0.1]:10026';  # set to undef with milter!
++
++# $final_virus_destiny      = D_DISCARD;
++# $final_banned_destiny     = D_BOUNCE;
++# $final_spam_destiny       = D_PASS;
++# $final_bad_header_destiny = D_PASS;
++# $bad_header_quarantine_method = undef;
++
++# $os_fingerprint_method = 'p0f:*:2345';  # to query p0f-analyzer.pl
++
++## hierarchy by which a final setting is chosen:
++##   policy bank (based on port or IP address) -> *_by_ccat
++##   *_by_ccat (based on mail contents) -> *_maps
++##   *_maps (based on recipient address) -> final configuration value
++
++
++# SOME OTHER VARIABLES WORTH CONSIDERING (see amavisd.conf-default for all)
++
++# $warnbadhsender,
++# $warnvirusrecip, $warnbannedrecip, $warnbadhrecip, (or @warn*recip_maps)
++#
++# @bypass_virus_checks_maps, @bypass_spam_checks_maps,
++# @bypass_banned_checks_maps, @bypass_header_checks_maps,
++#
++# @virus_lovers_maps, @spam_lovers_maps,
++# @banned_files_lovers_maps, @bad_header_lovers_maps,
++#
++# @blacklist_sender_maps, @score_sender_maps,
++#
++# $clean_quarantine_method, $virus_quarantine_to, $banned_quarantine_to,
++# $bad_header_quarantine_to, $spam_quarantine_to,
++#
++# $defang_bad_header, $defang_undecipherable, $defang_spam
++
++
++# REMAINING IMPORTANT VARIABLES ARE LISTED HERE BECAUSE OF LONGER ASSIGNMENTS
++
++ at keep_decoded_original_maps = (new_RE(
++  qr'^MAIL$',   # retain full original message for virus checking
++  qr'^MAIL-UNDECIPHERABLE$', # recheck full mail if it contains undecipherables
++  qr'^(ASCII(?! cpio)|text|uuencoded|xxencoded|binhex)'i,
++# qr'^Zip archive data',     # don't trust Archive::Zip
++));
++
++
++# for $banned_namepath_re (a new-style of banned table) see amavisd.conf-sample
++
++$banned_filename_re = new_RE(
++
++### BLOCKED ANYWHERE
++# qr'^UNDECIPHERABLE$',  # is or contains any undecipherable components
++  qr'^\.(exe-ms|dll)$',                   # banned file(1) types, rudimentary
++# qr'^\.(exe|lha|tnef|cab|dll)$',         # banned file(1) types
++
++### BLOCK THE FOLLOWING, EXCEPT WITHIN UNIX ARCHIVES:
++# [ qr'^\.(gz|bz2)$'             => 0 ],  # allow any in gzip or bzip2
++  [ qr'^\.(rpm|cpio|tar)$'       => 0 ],  # allow any in Unix-type archives
++
++  qr'.\.(pif|scr)$'i,                     # banned extensions - rudimentary
++# qr'^\.zip$',                            # block zip type
++
++### BLOCK THE FOLLOWING, EXCEPT WITHIN ARCHIVES:
++# [ qr'^\.(zip|rar|arc|arj|zoo)$'=> 0 ],  # allow any within these archives
++
++  qr'^application/x-msdownload$'i,        # block these MIME types
++  qr'^application/x-msdos-program$'i,
++  qr'^application/hta$'i,
++
++# qr'^message/partial$'i,         # rfc2046 MIME type
++# qr'^message/external-body$'i,   # rfc2046 MIME type
++
++# qr'^(application/x-msmetafile|image/x-wmf)$'i,  # Windows Metafile MIME type
++# qr'^\.wmf$',                            # Windows Metafile file(1) type
++
++  # block certain double extensions in filenames
++  qr'\.[^./]*[A-Za-z][^./]*\.\s*(exe|vbs|pif|scr|bat|cmd|com|cpl|dll)[.\s]*$'i,
++
++# qr'\{[0-9a-f]{8}(-[0-9a-f]{4}){3}-[0-9a-f]{12}\}?'i, # Class ID CLSID, strict
++# qr'\{[0-9a-z]{4,}(-[0-9a-z]{4,}){0,7}\}?'i, # Class ID extension CLSID, loose
++
++  qr'.\.(exe|vbs|pif|scr|cpl)$'i,             # banned extension - basic
++# qr'.\.(exe|vbs|pif|scr|cpl|bat|cmd|com)$'i, # banned extension - basic+cmd
++# qr'.\.(ade|adp|app|bas|bat|chm|cmd|com|cpl|crt|emf|exe|fxp|grp|hlp|hta|
++#        inf|ins|isp|js|jse|lnk|mda|mdb|mde|mdw|mdt|mdz|msc|msi|msp|mst|
++#        ops|pcd|pif|prg|reg|scr|sct|shb|shs|vb|vbe|vbs|
++#        wmf|wsc|wsf|wsh)$'ix,  # banned ext - long
++# qr'.\.(ani|cur|ico)$'i,                 # banned cursors and icons filename
++# qr'^\.ani$',                            # banned animated cursor file(1) type
++
++# qr'.\.(mim|b64|bhx|hqx|xxe|uu|uue)$'i,  # banned extension - WinZip vulnerab.
++);
++# See http://support.microsoft.com/default.aspx?scid=kb;EN-US;q262631
++# and http://www.cknow.com/vtutor/vtextensions.htm
++
++
++# ENVELOPE SENDER SOFT-WHITELISTING / SOFT-BLACKLISTING
++
++ at score_sender_maps = ({ # a by-recipient hash lookup table,
++                        # results from all matching recipient tables are summed
++
++# ## per-recipient personal tables  (NOTE: positive: black, negative: white)
++# 'user1 at example.com'  => [{'bla-mobile.press at example.com' => 10.0}],
++# 'user3 at example.com'  => [{'.ebay.com'                 => -3.0}],
++# 'user4 at example.com'  => [{'cleargreen at cleargreen.com' => -7.0,
++#                           '.cleargreen.com'           => -5.0}],
++
++  ## site-wide opinions about senders (the '.' matches any recipient)
++  '.' => [  # the _first_ matching sender determines the score boost
++
++   new_RE(  # regexp-type lookup table, just happens to be all soft-blacklist
++    [qr'^(bulkmail|offers|cheapbenefits|earnmoney|foryou)@'i         => 5.0],
++    [qr'^(greatcasino|investments|lose_weight_today|market\.alert)@'i=> 5.0],
++    [qr'^(money2you|MyGreenCard|new\.tld\.registry|opt-out|opt-in)@'i=> 5.0],
++    [qr'^(optin|saveonlsmoking2002k|specialoffer|specialoffers)@'i   => 5.0],
++    [qr'^(stockalert|stopsnoring|wantsome|workathome|yesitsfree)@'i  => 5.0],
++    [qr'^(your_friend|greatoffers)@'i                                => 5.0],
++    [qr'^(inkjetplanet|marketopt|MakeMoney)\d*@'i                    => 5.0],
++   ),
++
++#  read_hash("/var/lib/amavis/sender_scores_sitewide"),
++
++   { # a hash-type lookup table (associative array)
++     'nobody at cert.org'                        => -3.0,
++     'cert-advisory at us-cert.gov'              => -3.0,
++     'owner-alert at iss.net'                    => -3.0,
++     'slashdot at slashdot.org'                  => -3.0,
++     'securityfocus.com'                      => -3.0,
++     'ntbugtraq at listserv.ntbugtraq.com'       => -3.0,
++     'security-alerts at linuxsecurity.com'      => -3.0,
++     'mailman-announce-admin at python.org'      => -3.0,
++     'amavis-user-admin at lists.sourceforge.net'=> -3.0,
++     'amavis-user-bounces at lists.sourceforge.net' => -3.0,
++     'spamassassin.apache.org'                => -3.0,
++     'notification-return at lists.sophos.com'   => -3.0,
++     'owner-postfix-users at postfix.org'        => -3.0,
++     'owner-postfix-announce at postfix.org'     => -3.0,
++     'owner-sendmail-announce at lists.sendmail.org'   => -3.0,
++     'sendmail-announce-request at lists.sendmail.org' => -3.0,
++     'donotreply at sendmail.org'                => -3.0,
++     'ca+envelope at sendmail.org'               => -3.0,
++     'noreply at freshmeat.net'                  => -3.0,
++     'owner-technews at postel.acm.org'          => -3.0,
++     'ietf-123-owner at loki.ietf.org'           => -3.0,
++     'cvs-commits-list-admin at gnome.org'       => -3.0,
++     'rt-users-admin at lists.fsck.com'          => -3.0,
++     'clp-request at comp.nus.edu.sg'            => -3.0,
++     'surveys-errors at lists.nua.ie'            => -3.0,
++     'emailnews at genomeweb.com'                => -5.0,
++     'yahoo-dev-null at yahoo-inc.com'           => -3.0,
++     'returns.groups.yahoo.com'               => -3.0,
++     'clusternews at linuxnetworx.com'           => -3.0,
++     lc('lvs-users-admin at LinuxVirtualServer.org')    => -3.0,
++     lc('owner-textbreakingnews at CNNIMAIL12.CNN.COM') => -5.0,
++
++     # soft-blacklisting (positive score)
++     'sender at example.net'                     =>  3.0,
++     '.example.net'                           =>  1.0,
++
++   },
++  ],  # end of site-wide tables
++});
++
++
++ at decoders = (
++  ['mail', \&do_mime_decode],
++  ['asc',  \&do_ascii],
++  ['uue',  \&do_ascii],
++  ['hqx',  \&do_ascii],
++  ['ync',  \&do_ascii],
++  ['F',    \&do_uncompress, ['unfreeze','freeze -d','melt','fcat'] ],
++  ['Z',    \&do_uncompress, ['uncompress','gzip -d','zcat'] ],
++  ['gz',   \&do_uncompress,  'gzip -d'],
++  ['gz',   \&do_gunzip],
++  ['bz2',  \&do_uncompress,  'bzip2 -d'],
++  ['lzo',  \&do_uncompress,  'lzop -d'],
++  ['rpm',  \&do_uncompress, ['rpm2cpio.pl','rpm2cpio'] ],
++  ['cpio', \&do_pax_cpio,   ['pax','gcpio','cpio'] ],
++  ['tar',  \&do_pax_cpio,   ['pax','gcpio','cpio'] ],
++  ['deb',  \&do_ar,          'ar'],
++# ['a',    \&do_ar,          'ar'],  # unpacking .a seems an overkill
++  ['zip',  \&do_unzip],
++  ['7z',   \&do_7zip,       ['7zr','7za','7z'] ],
++  ['rar',  \&do_unrar,      ['rar','unrar'] ],
++  ['arj',  \&do_unarj,      ['arj','unarj'] ],
++  ['arc',  \&do_arc,        ['nomarch','arc'] ],
++  ['zoo',  \&do_zoo,        ['zoo','unzoo'] ],
++  ['lha',  \&do_lha,         'lha'],
++# ['doc',  \&do_ole,         'ripole'],
++  ['cab',  \&do_cabextract,  'cabextract'],
++  ['tnef', \&do_tnef_ext,    'tnef'],
++  ['tnef', \&do_tnef],
++# ['sit',  \&do_unstuff,     'unstuff'],  # broken/unsafe decoder
++  ['exe',  \&do_executable, ['rar','unrar'], 'lha', ['arj','unarj'] ],
++);
++
++
++ at av_scanners = (
++
++# ### http://www.clanfield.info/sophie/ (http://www.vanja.com/tools/sophie/)
++# ['Sophie',
++#   \&ask_daemon, ["{}/\n", '/var/run/sophie'],
++#   qr/(?x)^ 0+ ( : | [\000\r\n]* $)/m,  qr/(?x)^ 1 ( : | [\000\r\n]* $)/m,
++#   qr/(?x)^ [-+]? \d+ : (.*?) [\000\r\n]* $/m ],
++
++# ### http://www.csupomona.edu/~henson/www/projects/SAVI-Perl/
++# ['Sophos SAVI', \&sophos_savi ],
++
++# ### http://www.clamav.net/
++# ['ClamAV-clamd',
++#   \&ask_daemon, ["CONTSCAN {}\n", "/var/lib/clamav/clamd.socket"],
++#   qr/\bOK$/m, qr/\bFOUND$/m,
++#   qr/^.*?: (?!Infected Archive)(.*) FOUND$/m ],
++# # NOTE: run clamd under the same user as amavisd, or run it under its own
++# #   uid such as clamav, add user clamav to the amavis group, and then add
++# #   AllowSupplementaryGroups to clamd.conf;
++# # NOTE: match socket name (LocalSocket) in clamav.conf to the socket name in
++# #   this entry; when running chrooted one may prefer socket "$MYHOME/clamd".
++
++# ### http://www.clamav.net/ and CPAN  (memory-hungry! clamd is preferred)
++# # note that Mail::ClamAV requires perl to be build with threading!
++# ['Mail::ClamAV', \&ask_clamav, "*", [0], [1], qr/^INFECTED: (.+)/m ],
++
++# ### http://www.openantivirus.org/
++# ['OpenAntiVirus ScannerDaemon (OAV)',
++#   \&ask_daemon, ["SCAN {}\n", '127.0.0.1:8127'],
++#   qr/^OK/m, qr/^FOUND: /m, qr/^FOUND: (.+)/m ],
++
++# ### http://www.vanja.com/tools/trophie/
++# ['Trophie',
++#   \&ask_daemon, ["{}/\n", '/var/run/trophie'],
++#   qr/(?x)^ 0+ ( : | [\000\r\n]* $)/m,  qr/(?x)^ 1 ( : | [\000\r\n]* $)/m,
++#   qr/(?x)^ [-+]? \d+ : (.*?) [\000\r\n]* $/m ],
++
++# ### http://www.grisoft.com/
++# ['AVG Anti-Virus',
++#   \&ask_daemon, ["SCAN {}\n", '127.0.0.1:55555'],
++#   qr/^200/m, qr/^403/m, qr/^403 .*?: ([^\r\n]+)/m ],
++
++# ### http://www.f-prot.com/
++# ['F-Prot fpscand',  # F-PROT Antivirus for BSD/Linux/Solaris, version 6
++#   \&ask_daemon,
++#   ["SCAN FILE {}/*\n", '127.0.0.1:10200'],
++#   qr/^(0|8|64) /m,
++#   qr/^([1235679]|1[01345]) |<[^>:]*(?i)(infected|suspicious|unwanted)/m,
++#   qr/(?i)<[^>:]*(?:infected|suspicious|unwanted)[^>:]*: ([^>]*)>/m ],
++
++# ### http://www.f-prot.com/
++# ['F-Prot f-protd',  # old version
++#   \&ask_daemon,
++#   ["GET {}/*?-dumb%20-archive%20-packed HTTP/1.0\r\n\r\n",
++#     ['127.0.0.1:10200', '127.0.0.1:10201', '127.0.0.1:10202',
++#      '127.0.0.1:10203', '127.0.0.1:10204'] ],
++#   qr/(?i)<summary[^>]*>clean<\/summary>/m,
++#   qr/(?i)<summary[^>]*>infected<\/summary>/m,
++#   qr/(?i)<name>(.+)<\/name>/m ],
++
++# ### http://www.sald.com/, http://www.dials.ru/english/, http://www.drweb.ru/
++# ['DrWebD', \&ask_daemon,   # DrWebD 4.31 or later
++#   [pack('N',1).  # DRWEBD_SCAN_CMD
++#    pack('N',0x00280001).   # DONT_CHANGEMAIL, IS_MAIL, RETURN_VIRUSES
++#    pack('N',     # path length
++#      length("$TEMPBASE/amavis-yyyymmddTHHMMSS-xxxxx/parts/pxxx")).
++#    '{}/*'.       # path
++#    pack('N',0).  # content size
++#    pack('N',0),
++#    '/var/drweb/run/drwebd.sock',
++#  # '/var/lib/amavis/var/run/drwebd.sock',   # suitable for chroot
++#  # '/usr/local/drweb/run/drwebd.sock',  # FreeBSD drweb ports default
++#  # '127.0.0.1:3000',                    # or over an inet socket
++#   ],
++#   qr/\A\x00[\x10\x11][\x00\x10]\x00/sm,        # IS_CLEAN,EVAL_KEY; SKIPPED
++#   qr/\A\x00[\x00\x01][\x00\x10][\x20\x40\x80]/sm,# KNOWN_V,UNKNOWN_V,V._MODIF
++#   qr/\A.{12}(?:infected with )?([^\x00]+)\x00/sm,
++# ],
++# # NOTE: If using amavis-milter, change length to:
++# # length("$TEMPBASE/amavis-milter-xxxxxxxxxxxxxx/parts/pxxx").
++
++  ### http://www.kaspersky.com/  (kav4mailservers)
++  ['KasperskyLab AVP - aveclient',
++    ['/usr/local/kav/bin/aveclient','/usr/local/share/kav/bin/aveclient',
++     '/opt/kav/5.5/kav4mailservers/bin/aveclient','aveclient'],
++    '-p /var/run/aveserver -s {}/*',
++    [0,3,6,8], qr/\b(INFECTED|SUSPICION|SUSPICIOUS)\b/m,
++    qr/(?:INFECTED|WARNING|SUSPICION|SUSPICIOUS) (.+)/m,
++  ],
++  # NOTE: one may prefer [0],[2,3,4,5], depending on how suspicious,
++  # currupted or protected archives are to be handled
++
++  ### http://www.kaspersky.com/
++  ['KasperskyLab AntiViral Toolkit Pro (AVP)', ['avp'],
++    '-* -P -B -Y -O- {}', [0,3,6,8], [2,4],    # any use for -A -K   ?
++    qr/infected: (.+)/m,
++    sub {chdir('/opt/AVP') or die "Can't chdir to AVP: $!"},
++    sub {chdir($TEMPBASE) or die "Can't chdir back to $TEMPBASE $!"},
++  ],
++
++  ### The kavdaemon and AVPDaemonClient have been removed from Kasperky
++  ### products and replaced by aveserver and aveclient
++  ['KasperskyLab AVPDaemonClient',
++    [ '/opt/AVP/kavdaemon',       'kavdaemon',
++      '/opt/AVP/AvpDaemonClient', 'AvpDaemonClient',
++      '/opt/AVP/AvpTeamDream',    'AvpTeamDream',
++      '/opt/AVP/avpdc', 'avpdc' ],
++    "-f=$TEMPBASE {}", [0,8], [3,4,5,6], qr/infected: ([^\r\n]+)/m ],
++    # change the startup-script in /etc/init.d/kavd to:
++    #   DPARMS="-* -Y -dl -f=/var/lib/amavis /var/lib/amavis"
++    #   (or perhaps:   DPARMS="-I0 -Y -* /var/lib/amavis" )
++    # adjusting /var/lib/amavis above to match your $TEMPBASE.
++    # The '-f=/var/lib/amavis' is needed if not running it as root, so it
++    # can find, read, and write its pid file, etc., see 'man kavdaemon'.
++    # defUnix.prf: there must be an entry "*/var/lib/amavis" (or whatever
++    #   directory $TEMPBASE specifies) in the 'Names=' section.
++    # cd /opt/AVP/DaemonClients; configure; cd Sample; make
++    # cp AvpDaemonClient /opt/AVP/
++    # su - vscan -c "${PREFIX}/kavdaemon ${DPARMS}"
++
++  ### http://www.centralcommand.com/
++  ['CentralCommand Vexira (new) vascan',
++    ['vascan','/usr/lib/Vexira/vascan'],
++    "-a s --timeout=60 --temp=$TEMPBASE -y $QUARANTINEDIR ".
++    "--log=/var/log/vascan.log {}",
++    [0,3], [1,2,5],
++    qr/(?x)^\s* (?:virus|iworm|macro|mutant|sequence|trojan)\ found:\ ( [^\]\s']+ )\ \.\.\.\ /m ],
++    # Adjust the path of the binary and the virus database as needed.
++    # 'vascan' does not allow to have the temp directory to be the same as
++    # the quarantine directory, and the quarantine option can not be disabled.
++    # If $QUARANTINEDIR is not used, then another directory must be specified
++    # to appease 'vascan'. Move status 3 to the second list if password
++    # protected files are to be considered infected.
++
++  ### http://www.avira.com/
++  ### Avira AntiVir (formerly H+BEDV) or (old) CentralCommand Vexira Antivirus
++  ['Avira AntiVir', ['antivir','vexira'],
++    '--allfiles -noboot -nombr -rs -s -z {}', [0], qr/ALERT:|VIRUS:/m,
++    qr/(?x)^\s* (?: ALERT: \s* (?: \[ | [^']* ' ) |
++         (?i) VIRUS:\ .*?\ virus\ '?) ( [^\]\s']+ )/m ],
++    # NOTE: if you only have a demo version, remove -z and add 214, as in:
++    #  '--allfiles -noboot -nombr -rs -s {}', [0,214], qr/ALERT:|VIRUS:/,
++
++  ### http://www.commandsoftware.com/
++  ['Command AntiVirus for Linux', 'csav',
++    '-all -archive -packed {}', [50], [51,52,53],
++    qr/Infection: (.+)/m ],
++
++  ### http://www.symantec.com/
++  ['Symantec CarrierScan via Symantec CommandLineScanner',
++    'cscmdline', '-a scan -i 1 -v -s 127.0.0.1:7777 {}',
++    qr/^Files Infected:\s+0$/m, qr/^Infected\b/m,
++    qr/^(?:Info|Virus Name):\s+(.+)/m ],
++
++  ### http://www.symantec.com/
++  ['Symantec AntiVirus Scan Engine',
++    'savsecls', '-server 127.0.0.1:7777 -mode scanrepair -details -verbose {}',
++    [0], qr/^Infected\b/m,
++    qr/^(?:Info|Virus Name):\s+(.+)/m ],
++    # NOTE: check options and patterns to see which entry better applies
++
++# ### http://www.f-secure.com/products/anti-virus/  version 4.65
++#  ['F-Secure Antivirus for Linux servers',
++#   ['/opt/f-secure/fsav/bin/fsav', 'fsav'],
++#   '--delete=no --disinf=no --rename=no --archive=yes --auto=yes '.
++#   '--dumb=yes --list=no --mime=yes {}', [0], [3,6,8],
++#   qr/(?:infection|Infected|Suspected): (.+)/m ],
++
++  ### http://www.f-secure.com/products/anti-virus/  version 5.52
++   ['F-Secure Antivirus for Linux servers',
++    ['/opt/f-secure/fsav/bin/fsav', 'fsav'],
++    '--virus-action1=report --archive=yes --auto=yes '.
++    '--dumb=yes --list=no --mime=yes {}', [0], [3,4,6,8],
++    qr/(?:infection|Infected|Suspected|Riskware): (.+)/m ],
++    # NOTE: internal archive handling may be switched off by '--archive=no'
++    #   to prevent fsav from exiting with status 9 on broken archives
++
++# ### http://www.avast.com/
++# ['avast! Antivirus daemon',
++#   \&ask_daemon,	# greets with 220, terminate with QUIT
++#   ["SCAN {}\015\012QUIT\015\012", '/var/run/avast4/mailscanner.sock'],
++#   qr/\t\[\+\]/m, qr/\t\[L\]\t/m, qr/\t\[L\]\t([^[ \t\015\012]+)/m ],
++
++# ### http://www.avast.com/
++# ['avast! Antivirus - Client/Server Version', 'avastlite',
++#   '-a /var/run/avast4/mailscanner.sock -n {}', [0], [1],
++#   qr/\t\[L\]\t([^[ \t\015\012]+)/m ],
++
++  ['CAI InoculateIT', 'inocucmd',  # retired product
++    '-sec -nex {}', [0], [100],
++    qr/was infected by virus (.+)/m ],
++  # see: http://www.flatmtn.com/computer/Linux-Antivirus_CAI.html
++
++  ### http://www3.ca.com/Solutions/Product.asp?ID=156  (ex InoculateIT)
++  ['CAI eTrust Antivirus', 'etrust-wrapper',
++    '-arc -nex -spm h {}', [0], [101],
++    qr/is infected by virus: (.+)/m ],
++    # NOTE: requires suid wrapper around inocmd32; consider flag: -mod reviewer
++    # see http://marc.theaimsgroup.com/?l=amavis-user&m=109229779912783
++
++  ### http://mks.com.pl/english.html
++  ['MkS_Vir for Linux (beta)', ['mks32','mks'],
++    '-s {}/*', [0], [1,2],
++    qr/--[ \t]*(.+)/m ],
++
++  ### http://mks.com.pl/english.html
++  ['MkS_Vir daemon', 'mksscan',
++    '-s -q {}', [0], [1..7],
++    qr/^... (\S+)/m ],
++
++# ### http://www.nod32.com/,  version v2.52 (old)
++# ['ESET NOD32 for Linux Mail servers',
++#   ['/opt/eset/nod32/bin/nod32cli', 'nod32cli'],
++#    '--subdir --files -z --sfx --rtp --adware --unsafe --pattern --heur '.
++#    '-w -a --action-on-infected=accept --action-on-uncleanable=accept '.
++#    '--action-on-notscanned=accept {}',
++#   [0,3], [1,2], qr/virus="([^"]+)"/m ],
++
++# ### http://www.eset.com/, version v2.7 (old)
++# ['ESET NOD32 Linux Mail Server - command line interface',
++#   ['/usr/bin/nod32cli', '/opt/eset/nod32/bin/nod32cli', 'nod32cli'],
++#   '--subdir {}', [0,3], [1,2], qr/virus="([^"]+)"/m ],
++
++# ### http://www.eset.com/, version 2.71.12
++# ['ESET Software ESETS Command Line Interface',
++#   ['/usr/bin/esets_cli', 'esets_cli'],
++#   '--subdir {}', [0], [1,2,3], qr/virus="([^"]+)"/m ],
++
++  ### http://www.eset.com/, version 3.0
++  ['ESET Software ESETS Command Line Interface',
++    ['/usr/bin/esets_cli', 'esets_cli'],
++    '--subdir {}', [0], [1,2,3],
++    qr/:\s*action="(?!accepted)[^"]*"\n.*:\s*virus="([^"]*)"/m ],
++
++  ## http://www.nod32.com/,  NOD32LFS version 2.5 and above
++  ['ESET NOD32 for Linux File servers',
++    ['/opt/eset/nod32/sbin/nod32','nod32'],
++    '--files -z --mail --sfx --rtp --adware --unsafe --pattern --heur '.
++    '-w -a --action=1 -b {}',
++    [0], [1,10], qr/^object=.*, virus="(.*?)",/m ],
++
++# Experimental, based on posting from Rado Dibarbora (Dibo) on 2002-05-31
++# ['ESET Software NOD32 Client/Server (NOD32SS)',
++#   \&ask_daemon2,    # greets with 200, persistent, terminate with QUIT
++#   ["SCAN {}/*\r\n", '127.0.0.1:8448' ],
++#   qr/^200 File OK/m, qr/^201 /m, qr/^201 (.+)/m ],
++
++  ### http://www.norman.com/products_nvc.shtml
++  ['Norman Virus Control v5 / Linux', 'nvcc',
++    '-c -l:0 -s -u -temp:$TEMPBASE {}', [0,10,11], [1,2,14],
++    qr/(?i).* virus in .* -> \'(.+)\'/m ],
++
++  ### http://www.pandasoftware.com/
++  ['Panda CommandLineSecure 9 for Linux',
++    ['/opt/pavcl/usr/bin/pavcl','pavcl'],
++    '-auto -aex -heu -cmp -nbr -nor -nos -eng -nob {}',
++    qr/Number of files infected[ .]*: 0+(?!\d)/m,
++    qr/Number of files infected[ .]*: 0*[1-9]/m,
++    qr/Found virus :\s*(\S+)/m ],
++  # NOTE: for efficiency, start the Panda in resident mode with 'pavcl -tsr'
++  # before starting amavisd - the bases are then loaded only once at startup.
++  # To reload bases in a signature update script:
++  #   /opt/pavcl/usr/bin/pavcl -tsr -ulr; /opt/pavcl/usr/bin/pavcl -tsr
++  # Please review other options of pavcl, for example:
++  #  -nomalw, -nojoke, -nodial, -nohackt, -nospyw, -nocookies
++
++# ### http://www.pandasoftware.com/
++# ['Panda Antivirus for Linux', ['pavcl'],
++#   '-TSR -aut -aex -heu -cmp -nbr -nor -nso -eng {}',
++#   [0], [0x10, 0x30, 0x50, 0x70, 0x90, 0xB0, 0xD0, 0xF0],
++#   qr/Found virus :\s*(\S+)/m ],
++
++# GeCAD AV technology is acquired by Microsoft; RAV has been discontinued.
++# Check your RAV license terms before fiddling with the following two lines!
++# ['GeCAD RAV AntiVirus 8', 'ravav',
++#   '--all --archive --mail {}', [1], [2,3,4,5], qr/Infected: (.+)/m ],
++# # NOTE: the command line switches changed with scan engine 8.5 !
++# # (btw, assigning stdin to /dev/null causes RAV to fail)
++
++  ### http://www.nai.com/
++  ['NAI McAfee AntiVirus (uvscan)', 'uvscan',
++    '--secure -rv --mime --summary --noboot - {}', [0], [13],
++    qr/(?x) Found (?:
++        \ the\ (.+)\ (?:virus|trojan)  |
++        \ (?:virus|trojan)\ or\ variant\ ([^ ]+)  |
++        :\ (.+)\ NOT\ a\ virus)/m,
++  # sub {$ENV{LD_PRELOAD}='/lib/libc.so.6'},
++  # sub {delete $ENV{LD_PRELOAD}},
++  ],
++  # NOTE1: with RH9: force the dynamic linker to look at /lib/libc.so.6 before
++  # anything else by setting environment variable LD_PRELOAD=/lib/libc.so.6
++  # and then clear it when finished to avoid confusing anything else.
++  # NOTE2: to treat encrypted files as viruses replace the [13] with:
++  #  qr/^\s{5,}(Found|is password-protected|.*(virus|trojan))/
++
++  ### http://www.virusbuster.hu/en/
++  ['VirusBuster', ['vbuster', 'vbengcl'],
++    "{} -ss -i '*' -log=$MYHOME/vbuster.log", [0], [1],
++    qr/: '(.*)' - Virus/m ],
++  # VirusBuster Ltd. does not support the daemon version for the workstation
++  # engine (vbuster-eng-1.12-linux-i386-libc6.tgz) any longer. The names of
++  # binaries, some parameters AND return codes have changed (from 3 to 1).
++  # See also the new Vexira entry 'vascan' which is possibly related.
++
++# ### http://www.virusbuster.hu/en/
++# ['VirusBuster (Client + Daemon)', 'vbengd',
++#   '-f -log scandir {}', [0], [3],
++#   qr/Virus found = (.*);/m ],
++# # HINT: for an infected file it always returns 3,
++# # although the man-page tells a different story
++
++  ### http://www.cyber.com/
++  ['CyberSoft VFind', 'vfind',
++    '--vexit {}/*', [0], [23], qr/##==>>>> VIRUS ID: CVDL (.+)/m,
++  # sub {$ENV{VSTK_HOME}='/usr/lib/vstk'},
++  ],
++
++  ### http://www.avast.com/
++  ['avast! Antivirus', ['/usr/bin/avastcmd','avastcmd'],
++    '-a -i -n -t=A {}', [0], [1], qr/\binfected by:\s+([^ \t\n\[\]]+)/m ],
++
++  ### http://www.ikarus-software.com/
++  ['Ikarus AntiVirus for Linux', 'ikarus',
++    '{}', [0], [40], qr/Signature (.+) found/m ],
++
++  ### http://www.bitdefender.com/
++  ['BitDefender', 'bdscan',  # new version
++    '--action=ignore --no-list {}', qr/^Infected files\s*:\s*0+(?!\d)/m,
++    qr/^(?:Infected files|Identified viruses|Suspect files)\s*:\s*0*[1-9]/m,
++    qr/(?:suspected|infected)\s*:\s*(.*)(?:\033|$)/m ],
++
++  ### http://www.bitdefender.com/
++  ['BitDefender', 'bdc',  # old version
++    '--arc --mail {}', qr/^Infected files *:0+(?!\d)/m,
++    qr/^(?:Infected files|Identified viruses|Suspect files) *:0*[1-9]/m,
++    qr/(?:suspected|infected): (.*)(?:\033|$)/m ],
++  # consider also: --all --nowarn --alev=15 --flev=15.  The --all argument may
++  # not apply to your version of bdc, check documentation and see 'bdc --help'
++
++  ### ArcaVir for Linux and Unix http://www.arcabit.pl/
++  ['ArcaVir for Linux', ['arcacmd','arcacmd.static'],
++    '-v 1 -summary 0 -s {}', [0], [1,2],
++    qr/(?:VIR|WIR):[ \t]*(.+)/m ],
++
++# ### a generic SMTP-client interface to a SMTP-based virus scanner
++# ['av_smtp', \&ask_av_smtp,
++#   ['{}', 'smtp:[127.0.0.1]:5525', 'dummy at localhost'],
++#   qr/^2/, qr/^5/, qr/^\s*(.*?)\s*$/m ],
++
++# ['File::Scan', sub {Amavis::AV::ask_av(sub{
++#   use File::Scan; my($fn)=@_;
++#   my($f)=File::Scan->new(max_txt_size=>0, max_bin_size=>0);
++#   my($vname) = $f->scan($fn);
++#   $f->error ? (2,"Error: ".$f->error)
++#   : ($vname ne '') ? (1,"$vname FOUND") : (0,"Clean")}, @_) },
++#   ["{}/*"], [0], [1], qr/^(.*) FOUND$/m ],
++
++# ### fully-fledged checker for JPEG marker segments of invalid length
++# ['check-jpeg',
++#   sub { use JpegTester (); Amavis::AV::ask_av(\&JpegTester::test_jpeg, @_) },
++#   ["{}/*"], undef, [1], qr/^(bad jpeg: .*)$/m ],
++# # NOTE: place file JpegTester.pm somewhere where Perl can find it,
++# #       for example in /usr/local/lib/perl5/site_perl
++
++);
++
++
++ at av_scanners_backup = (
++
++  ### http://www.clamav.net/   - backs up clamd or Mail::ClamAV
++  ['ClamAV-clamscan', 'clamscan',
++    "--stdout --no-summary -r --tempdir=$TEMPBASE {}",
++    [0], qr/:.*\sFOUND$/m, qr/^.*?: (?!Infected Archive)(.*) FOUND$/m ],
++
++  ### http://www.f-prot.com/   - backs up F-Prot Daemon, V6
++  ['F-PROT Antivirus for UNIX', ['fpscan'],
++    '--report --mount --adware {}',  # consider: --applications -s 4 -u 3 -z 10
++    [0,8,64],  [1,2,3, 4+1,4+2,4+3, 8+1,8+2,8+3, 12+1,12+2,12+3],
++    qr/^\[Found\s+[^\]]*\]\s+<([^ \t(>]*)/m ],
++
++  ### http://www.f-prot.com/   - backs up F-Prot Daemon (old)
++  ['FRISK F-Prot Antivirus', ['f-prot','f-prot.sh'],
++    '-dumb -archive -packed {}', [0,8], [3,6],   # or: [0], [3,6,8],
++    qr/(?:Infection:|security risk named) (.+)|\s+contains\s+(.+)$/m ],
++
++  ### http://www.trendmicro.com/   - backs up Trophie
++  ['Trend Micro FileScanner', ['/etc/iscan/vscan','vscan'],
++    '-za -a {}', [0], qr/Found virus/m, qr/Found virus (.+) in/m ],
++
++  ### http://www.sald.com/, http://drweb.imshop.de/   - backs up DrWebD
++  ['drweb - DrWeb Antivirus',  # security LHA hole in Dr.Web 4.33 and earlier
++    ['/usr/local/drweb/drweb', '/opt/drweb/drweb', 'drweb'],
++    '-path={} -al -go -ot -cn -upn -ok-',
++    [0,32], [1,9,33], qr' infected (?:with|by)(?: virus)? (.*)$'m ],
++
++   ### http://www.kaspersky.com/
++   ['Kaspersky Antivirus v5.5',
++     ['/opt/kaspersky/kav4fs/bin/kav4fs-kavscanner',
++      '/opt/kav/5.5/kav4unix/bin/kavscanner',
++      '/opt/kav/5.5/kav4mailservers/bin/kavscanner', 'kavscanner'],
++     '-i0 -xn -xp -mn -R -ePASBME {}/*', [0,10,15], [5,20,21,25],
++     qr/(?:INFECTED|WARNING|SUSPICION|SUSPICIOUS) (.*)/m,
++#    sub {chdir('/opt/kav/bin') or die "Can't chdir to kav: $!"},
++#    sub {chdir($TEMPBASE) or die "Can't chdir back to $TEMPBASE $!"},
++   ],
++
++# Commented out because the name 'sweep' clashes with Debian and FreeBSD
++# package/port of an audio editor. Make sure the correct 'sweep' is found
++# in the path when enabling.
++#
++# ### http://www.sophos.com/   - backs up Sophie or SAVI-Perl
++# ['Sophos Anti Virus (sweep)', 'sweep',
++#   '-nb -f -all -rec -ss -sc -archive -cab -mime -oe -tnef '.
++#   '--no-reset-atime {}',
++#   [0,2], qr/Virus .*? found/m,
++#   qr/^>>> Virus(?: fragment)? '?(.*?)'? found/m,
++# ],
++# # other options to consider: -idedir=/usr/local/sav
++
++# Always succeeds and considers mail clean.
++# Potentially useful when all other scanners fail and it is desirable
++# to let mail continue to flow with no virus checking (when uncommented).
++# ['always-clean', sub {0}],
++
++);
++
++
++1;  # insure a defined return value
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101123/05af655e/attachment-0001.html>
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000815.html b/zarb-ml/mageia-sysadm/2010-November/000815.html new file mode 100644 index 000000000..ab3d67170 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000815.html @@ -0,0 +1,160 @@ + + + + [Mageia-sysadm] progress of the night + + + + + + + + + +

[Mageia-sysadm] progress of the night

+ Michael Scherer + misc at zarb.org +
+ Tue Nov 23 05:14:57 CET 2010 +

+
+ +
Hi,
+
+so, following the meeting of yesterday, here is a new summary :
+- svn ldap access is ready to roll, the module pam::access_commiters
+should work fine. 
+
+I have finally found the issue after a long journey in the code of
+openssh and pam_ldap. just for the record, if someone one day see that a
+pam module do not work because openssh give " #010#012#015#177INCORRECT
+" as password to your pam module, this is because there is a error
+before ( in my case, the shell was not installed and this caused openssh
+to overwrite the password to protect from timing attack, see
+pam_auth.c ).
+
+example :
+node svn-server {
+  include pam::commiters_access 
+}
+
+this should give access to people from the mga-commiters group, by
+forcing the restricted shell on the server that include the class.
+
+- I have also rewrote the restricted shell module.
+
+Following the previous example, you cannot connect to the server.
+Someone also need to autorise the access, by adding :
+
+node svn-server {
+  include pam::commiters_access 
+  include restrictshell::allow_svn 
+}
+
+We can for now use git, svn, repsys ( pkgsubmit ), scp, sftp and rsync.
+The 3 last one are not tested, and default configuration requires
+tweaking for filtering the path. There is also support for cvs, but I do
+not think we will use it.
+
+So basically, we could deploy pam::commiters_access , add the proper
+class for svn access, and let people use the svn. We just need to
+migrate the local account to ldap, and setup the ssh keys by ourself.
+
+The next steps are :
+1) add support for ssh keys handling to catdap
+2) deploy a cronjob to checkout keys from ldap to the fs
+this part is half done, but if people have suggestions, do not hesitate
+( I am not much in favor of using patchs on openssh like openssh-lpk
+since they are not upstream )
+
+I would also like that we start to use the class subversion::repository,
+as there is lots of goodies included ( and I need to add more ).
+
+
+Regarding the mailling lists  deployment, I have started to work on
+spamassassin integration, using amavis ( as this is the safest way i
+know ). Unfortunately, my knowledge is either out of date ( ie, no more
+rules_du_jour ) or already setup ( ie all plugins that I usually used
+are loaded by default ). So the only customization I have added is rules
+compiling from perl to C. I guess I will also look at enabling pyzor,
+and maybe others tweak on postgrey as suggested by Luca. 
+
+I didn't tested anything, so if someone deploy it while I sleep, please
+test before :). But as i think the default setup should just work fine,
+it should not cause real trouble. ( on the other hand, we may need to do
+more test on postfix ).
+
+next steps will then be :
+1) to test and validate the setup 
+2) to create 1 mailling list for testing and to see how and what we can
+tweak it ( ie, a guinea pig ml ) 
+3) to migrate one by one the current mailling list :
+  - subscribers
+  - web archives, if possible by preserving url ( I guess we can do some
+magic on zarb side for this )
+  - gmane 
+Mailman can give use archives with mbox, there is ( iirc ) static html
+page for web archives, and we have some basic tools to fetch the
+configuration.
+
+There is currently 12 mailling lists.
+
+( blino also did some work, but I will let him talk of this, like :
+- explaining the cooldron idea
+- the vhost "repository" ( and that he need to add it to dns /o\ )
+
+-- 
+Michael Scherer
+
+
+ + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000816.html b/zarb-ml/mageia-sysadm/2010-November/000816.html new file mode 100644 index 000000000..4e375513f --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000816.html @@ -0,0 +1,84 @@ + + + + [Mageia-sysadm] progress of the night + + + + + + + + + +

[Mageia-sysadm] progress of the night

+ Olivier Blin + mageia at blino.org +
+ Tue Nov 23 08:05:31 CET 2010 +

+
+ +
Michael Scherer <misc at zarb.org> writes:
+
+> ( blino also did some work, but I will let him talk of this, like :
+> - explaining the cooldron idea
+> - the vhost "repository" ( and that he need to add it to dns /o\ )
+
+(it was added to DNS one day before already)
+
+-- 
+Olivier Blin - blino
+
+ + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000817.html b/zarb-ml/mageia-sysadm/2010-November/000817.html new file mode 100644 index 000000000..733ec68dd --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000817.html @@ -0,0 +1,86 @@ + + + + [Mageia-sysadm] [412] - it is IMHO cleaner and logical to have apache:: vhost_other_app directly requiring apache:: base rather than letting every people adding it when using the class + + + + + + + + + +

[Mageia-sysadm] [412] - it is IMHO cleaner and logical to have apache:: vhost_other_app directly requiring apache:: base rather than letting every people adding it when using the class

+ Olivier Blin + mageia at blino.org +
+ Tue Nov 23 08:09:02 CET 2010 +

+
+ +
root at mageia.org writes:
+
+> Revision: 412
+> Author:   misc
+> Date:     2010-11-23 02:14:05 +0100 (Tue, 23 Nov 2010)
+> Log Message:
+> -----------
+> - it is IMHO cleaner and logical to have apache::vhost_other_app
+> directly requiring apache::base rather than letting every people
+> adding it when using the class
+
+Yep, but shouldn't we still "include apache" in the buildsystem module?
+
+I took example from modules/bugzilla, which has a vhost_other_app as
+well, but this one has an "include apache::mod_fcgid", while it does not
+use mod_fcgid directly...
+Should be fixed as well
+
+-- 
+Olivier Blin - blino
+
+ + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000818.html b/zarb-ml/mageia-sysadm/2010-November/000818.html new file mode 100644 index 000000000..fe77516bb --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000818.html @@ -0,0 +1,110 @@ + + + + [Mageia-sysadm] [417] allow repository http acces from buildsystem nodes + + + + + + + + + +

[Mageia-sysadm] [417] allow repository http acces from buildsystem nodes

+ root at mageia.org + root at mageia.org +
+ Tue Nov 23 08:15:22 CET 2010 +

+
+ +
Revision: 417
+Author:   blino
+Date:     2010-11-23 08:15:22 +0100 (Tue, 23 Nov 2010)
+Log Message:
+-----------
+allow repository http acces from buildsystem nodes
+(hardcoding their IPv6 address since we have no reverse lookup on them)
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/templates/vhost_repository.conf
+
+Modified: puppet/modules/buildsystem/templates/vhost_repository.conf
+===================================================================
+--- puppet/modules/buildsystem/templates/vhost_repository.conf	2010-11-23 02:19:39 UTC (rev 416)
++++ puppet/modules/buildsystem/templates/vhost_repository.conf	2010-11-23 07:15:22 UTC (rev 417)
+@@ -1,5 +1,6 @@
+ <%
+ repository_root = "/distrib/bootstrap"
++buildsystem_nodes = "2a02:2178:2:7::3, 2a02:2178:2:7::4"
+ %>
+ 
+ <VirtualHost *:80>
+@@ -9,6 +10,7 @@
+           Order deny,allow
+           Deny from all
+           Allow from localhost, 127.0.0.1
++          Allow from <%= buildsystem_nodes %>
+           Allow from .<%= domain %>
+           Options Indexes FollowSymLinks
+         </Directory>
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101123/6588c1e0/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000819.html b/zarb-ml/mageia-sysadm/2010-November/000819.html new file mode 100644 index 000000000..568e36a3a --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000819.html @@ -0,0 +1,77 @@ + + + + [Mageia-sysadm] Puppet Report for valstar.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for valstar.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Tue Nov 23 08:15:30 CET 2010 +

+
+ +
Tue Nov 23 08:15:30 +0100 2010 /Stage[main]/Apache::Base/Service[httpd] (err): Failed to call refresh: Could not start Service[httpd]: Execution of '/sbin/service httpd start' returned 1:  at /etc/puppet/modules/apache/manifests/init.pp:13
+
+ + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000820.html b/zarb-ml/mageia-sysadm/2010-November/000820.html new file mode 100644 index 000000000..c922d3213 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000820.html @@ -0,0 +1,104 @@ + + + + [Mageia-sysadm] [418] add jonund and fix adresses + + + + + + + + + +

[Mageia-sysadm] [418] add jonund and fix adresses

+ root at mageia.org + root at mageia.org +
+ Tue Nov 23 08:21:44 CET 2010 +

+
+ +
Revision: 418
+Author:   blino
+Date:     2010-11-23 08:21:44 +0100 (Tue, 23 Nov 2010)
+Log Message:
+-----------
+add jonund and fix adresses
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/templates/vhost_repository.conf
+
+Modified: puppet/modules/buildsystem/templates/vhost_repository.conf
+===================================================================
+--- puppet/modules/buildsystem/templates/vhost_repository.conf	2010-11-23 07:15:22 UTC (rev 417)
++++ puppet/modules/buildsystem/templates/vhost_repository.conf	2010-11-23 07:21:44 UTC (rev 418)
+@@ -1,6 +1,8 @@
+ <%
+ repository_root = "/distrib/bootstrap"
+-buildsystem_nodes = "2a02:2178:2:7::3, 2a02:2178:2:7::4"
++# FIXME: add a reverse lookup for IPv6 adresses
++# allowed hosts are: valstar, ecosse, jonund
++buildsystem_nodes = "2a02:2178:2:7::3/64, 2a02:2178:2:7::4/64, 2a02:2178:2:7::5/64"
+ %>
+ 
+ <VirtualHost *:80>
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101123/6cef72c8/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000821.html b/zarb-ml/mageia-sysadm/2010-November/000821.html new file mode 100644 index 000000000..61c72b65b --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000821.html @@ -0,0 +1,77 @@ + + + + [Mageia-sysadm] Puppet Report for valstar.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for valstar.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Tue Nov 23 08:21:51 CET 2010 +

+
+ +
Tue Nov 23 08:21:51 +0100 2010 /Stage[main]/Apache::Base/Service[httpd] (err): Failed to call refresh: Could not start Service[httpd]: Execution of '/sbin/service httpd start' returned 1:  at /etc/puppet/modules/apache/manifests/init.pp:13
+
+ + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000822.html b/zarb-ml/mageia-sysadm/2010-November/000822.html new file mode 100644 index 000000000..5f9132278 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000822.html @@ -0,0 +1,103 @@ + + + + [Mageia-sysadm] [419] remove unneeded commas + + + + + + + + + +

[Mageia-sysadm] [419] remove unneeded commas

+ root at mageia.org + root at mageia.org +
+ Tue Nov 23 08:22:58 CET 2010 +

+
+ +
Revision: 419
+Author:   blino
+Date:     2010-11-23 08:22:58 +0100 (Tue, 23 Nov 2010)
+Log Message:
+-----------
+remove unneeded commas
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/templates/vhost_repository.conf
+
+Modified: puppet/modules/buildsystem/templates/vhost_repository.conf
+===================================================================
+--- puppet/modules/buildsystem/templates/vhost_repository.conf	2010-11-23 07:21:44 UTC (rev 418)
++++ puppet/modules/buildsystem/templates/vhost_repository.conf	2010-11-23 07:22:58 UTC (rev 419)
+@@ -2,7 +2,7 @@
+ repository_root = "/distrib/bootstrap"
+ # FIXME: add a reverse lookup for IPv6 adresses
+ # allowed hosts are: valstar, ecosse, jonund
+-buildsystem_nodes = "2a02:2178:2:7::3/64, 2a02:2178:2:7::4/64, 2a02:2178:2:7::5/64"
++buildsystem_nodes = "2a02:2178:2:7::3/64 2a02:2178:2:7::4/64 2a02:2178:2:7::5/64"
+ %>
+ 
+ <VirtualHost *:80>
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101123/60338350/attachment-0001.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000823.html b/zarb-ml/mageia-sysadm/2010-November/000823.html new file mode 100644 index 000000000..821ce93d4 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000823.html @@ -0,0 +1,97 @@ + + + + [Mageia-sysadm] [377] - add nssldap password handling + + + + + + + + + +

[Mageia-sysadm] [377] - add nssldap password handling

+ Luca Berra + bluca at vodka.it +
+ Tue Nov 23 08:24:03 CET 2010 +

+
+ +
On Mon, Nov 22, 2010 at 12:56:32PM +0100, Buchan Milne wrote:
+>> +binddn uid=nssldap,ou=System Accounts,<%= dc_suffix %>
+>> +bindpw <%= nssldap_password %>
+>>  uri ldaps://ldap.<%= domain %>
+>>  base <%= dc_suffix %>
+>>  pam_lookup_policy no
+>
+>
+>I would prefer if we can instead use:
+>-"rootbinddn" in /etc/ldap.conf, not binddn
+>-place password in /etc/ldap.secret
+>-use nscd, so all LDAP access is as root (so, no need to expose passwords in 
+>files that must be world-readable), as a side-effect also avoiding problems 
+>with file descriptors used by any process doing a user lookup etc.
+>
+>Permissions on /etc/ldap.conf should be 0644, /etc/ldap.secret can be 0600.
+
+what is the real use of rootbinddn?
+is there really any need to expose different information to NSS when
+caller is uid 0?
+
+also the idea of a proxy user is flawed, it gives just about the same
+security of opening anonymous read access. With the added bonus that
+changing the proxyuser password poses a risk of breaking things.
+
+since the info exposed to NSS is no big secret we can cope with it, but
+i prefer leaving nss to anonymous binds and adding on ldap server (at
+the end of access control)
+
+access to dn.subtree="dc=mageia,dc=org"
+         attrs=@posixAccount, at posixGroup, at ipService, at ipProtocol, at ipHost, at ipNetwork, at oncRpc, at nisNetgroup
+         by peername.ip="127.0.0.1" read
+         by peername.ip="x.y.w.z" read
+         by * none
+
+
+-- 
+Luca Berra -- bluca at vodka.it
+
+ + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000824.html b/zarb-ml/mageia-sysadm/2010-November/000824.html new file mode 100644 index 000000000..8d340db8c --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000824.html @@ -0,0 +1,96 @@ + + + + [Mageia-sysadm] something to not forget in case of svn import + + + + + + + + + +

[Mageia-sysadm] something to not forget in case of svn import

+ Romain d'Alverny + rdalverny at gmail.com +
+ Tue Nov 23 11:10:24 CET 2010 +

+
+ +
On Tue, Nov 23, 2010 at 03:35, Michael Scherer <misc at zarb.org> wrote:
+>
+> I just realized something :
+> if we do import svn from mandriva, we need somehow to keep the same
+> login, or we will end up with some confusion ( and copyright
+> misattribution, I fear ).
+>
+> For example, dams at mageia is not the same than dams at mandriva, to
+> name the first case that will likely cause trouble :/
+
+It's the same physical person here, so the same author. Only the
+context has changed (he's not employed by the same entity).
+
+The trouble would be that someone else uses the same "dams" username.
+
+Moreover, copyright attribution is time-specific. So what happened to
+code written/committed by dams before 2010 Sept. is authored by him
+and copyright exercise right is attributed to Mandriva. Code
+written/committed by dams after 2010 Sept. is his only (unless a new
+employer requires copyright attribution through contract).
+
+So I don't see a specific issue here or I did not understand it?
+
+> So, how could we do ?
+> ( I think we could rename upon import, I guess ).
+
+We can do that? (reattributing to dams at mandriva for "old" dams)
+
+Romain
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000825.html b/zarb-ml/mageia-sysadm/2010-November/000825.html new file mode 100644 index 000000000..3d0052b73 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000825.html @@ -0,0 +1,87 @@ + + + + [Mageia-sysadm] something to not forget in case of svn import + + + + + + + + + +

[Mageia-sysadm] something to not forget in case of svn import

+ Olivier Blin + mageia at blino.org +
+ Tue Nov 23 11:34:43 CET 2010 +

+
+ +
"Romain d'Alverny" <rdalverny at gmail.com> writes:
+
+> On Tue, Nov 23, 2010 at 03:35, Michael Scherer <misc at zarb.org> wrote:
+>>
+>> I just realized something :
+>> if we do import svn from mandriva, we need somehow to keep the same
+>> login, or we will end up with some confusion ( and copyright
+>> misattribution, I fear ).
+>>
+>> For example, dams at mageia is not the same than dams at mandriva, to
+>> name the first case that will likely cause trouble :/
+>
+> It's the same physical person here, so the same author. Only the
+> context has changed (he's not employed by the same entity).
+
+No, it's not the same physical person in this case.
+They are 2 different ex-employees from Mandriva.
+
+-- 
+Olivier Blin - blino
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000826.html b/zarb-ml/mageia-sysadm/2010-November/000826.html new file mode 100644 index 000000000..c4da607c9 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000826.html @@ -0,0 +1,78 @@ + + + + [Mageia-sysadm] something to not forget in case of svn import + + + + + + + + + +

[Mageia-sysadm] something to not forget in case of svn import

+ Romain d'Alverny + rdalverny at gmail.com +
+ Tue Nov 23 11:41:05 CET 2010 +

+
+ +
On Tue, Nov 23, 2010 at 11:34, Olivier Blin <mageia at blino.org> wrote:
+> "Romain d'Alverny" <rdalverny at gmail.com> writes:
+>> It's the same physical person here, so the same author. Only the
+>> context has changed (he's not employed by the same entity).
+>
+> No, it's not the same physical person in this case.
+> They are 2 different ex-employees from Mandriva.
+
+Ah, yes, right. My mistake, sorry.
+
+Romain
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000827.html b/zarb-ml/mageia-sysadm/2010-November/000827.html new file mode 100644 index 000000000..49fe180dd --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000827.html @@ -0,0 +1,99 @@ + + + + [Mageia-sysadm] [420] Allow users to write their own sshPublicKey, and all users to read it + + + + + + + + + +

[Mageia-sysadm] [420] Allow users to write their own sshPublicKey, and all users to read it

+ root at mageia.org + root at mageia.org +
+ Tue Nov 23 14:29:44 CET 2010 +

+
+ +
Revision: 420
+Author:   buchan
+Date:     2010-11-23 14:29:44 +0100 (Tue, 23 Nov 2010)
+Log Message:
+-----------
+Allow users to write their own sshPublicKey, and all users to read it
+
+Modified Paths:
+--------------
+    puppet/modules/openldap/templates/mandriva-dit-access.conf
+
+Modified: puppet/modules/openldap/templates/mandriva-dit-access.conf
+===================================================================
+--- puppet/modules/openldap/templates/mandriva-dit-access.conf	2010-11-23 07:22:58 UTC (rev 419)
++++ puppet/modules/openldap/templates/mandriva-dit-access.conf	2010-11-23 13:29:44 UTC (rev 420)
+@@ -113,7 +113,7 @@
+ 
+ # let the user change some of his/her attributes
+ access to dn.subtree="ou=People,<%= dc_suffix %>"
+-	attrs=carLicense,homePhone,homePostalAddress,mobile,pager,telephoneNumber,mail,preferredLanguage
++	attrs=carLicense,homePhone,homePostalAddress,mobile,pager,telephoneNumber,mail,preferredLanguage,sshPublicKey
+ 	by self write
+ 	by users read
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101123/f047163d/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000828.html b/zarb-ml/mageia-sysadm/2010-November/000828.html new file mode 100644 index 000000000..471ee270f --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000828.html @@ -0,0 +1,98 @@ + + + + [Mageia-sysadm] [124] Display sshPublicKey as editable to normal users on their own account + + + + + + + + + +

[Mageia-sysadm] [124] Display sshPublicKey as editable to normal users on their own account

+ root at mageia.org + root at mageia.org +
+ Tue Nov 23 14:40:33 CET 2010 +

+
+ +
Revision: 124
+Author:   buchan
+Date:     2010-11-23 14:40:33 +0100 (Tue, 23 Nov 2010)
+Log Message:
+-----------
+Display sshPublicKey as editable to normal users on their own account
+
+Modified Paths:
+--------------
+    identity/CatDap/branches/live/catdap.yml
+
+Modified: identity/CatDap/branches/live/catdap.yml
+===================================================================
+--- identity/CatDap/branches/live/catdap.yml	2010-11-18 09:16:43 UTC (rev 123)
++++ identity/CatDap/branches/live/catdap.yml	2010-11-23 13:40:33 UTC (rev 124)
+@@ -69,6 +69,7 @@
+                        - roomNumber
+                        - secretary
+                        - mailForwardingAddress
++                       - sshPublicKey
+ 
+ # Currently not used, we only respect editable_attrs
+         uneditable_attrs:
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101123/fa3c3190/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000829.html b/zarb-ml/mageia-sysadm/2010-November/000829.html new file mode 100644 index 000000000..5aba56616 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000829.html @@ -0,0 +1,155 @@ + + + + [Mageia-sysadm] something to not forget in case of svn import + + + + + + + + + +

[Mageia-sysadm] something to not forget in case of svn import

+ Michael Scherer + misc at zarb.org +
+ Tue Nov 23 16:07:37 CET 2010 +

+
+ +
Le mardi 23 novembre 2010 à 11:10 +0100, Romain d'Alverny a écrit :
+> On Tue, Nov 23, 2010 at 03:35, Michael Scherer <misc at zarb.org> wrote:
+> >
+> > I just realized something :
+> > if we do import svn from mandriva, we need somehow to keep the same
+> > login, or we will end up with some confusion ( and copyright
+> > misattribution, I fear ).
+> >
+> > For example, dams at mageia is not the same than dams at mandriva, to
+> > name the first case that will likely cause trouble :/
+> 
+> It's the same physical person here, so the same author. Only the
+> context has changed (he's not employed by the same entity).
+> 
+> The trouble would be that someone else uses the same "dams" username.
+
+It is. Dams at mandriva is damien krotkine. Our dams had another login
+back in that time.
+
+> Moreover, copyright attribution is time-specific. So what happened to
+> code written/committed by dams before 2010 Sept. is authored by him
+> and copyright exercise right is attributed to Mandriva. Code
+> written/committed by dams after 2010 Sept. is his only (unless a new
+> employer requires copyright attribution through contract).
+> 
+> So I don't see a specific issue here or I did not understand it?
+
+There is 2 issues. We have packages, and we have software ( or
+assimilated ).
+
+For packages :
+
+Let's imagine that we import the svn, with history.
+If I look at the svn changelog, how do I know that dams is not the
+same ? 
+
+And now, the tricky part : 
+since the changelog of rpm is created by looking at the changelog, and
+since the changelog serve as de facto copyright notice for rpm, how can
+we ensure they are properly generated ?
+
+For our case, we are lucky since the plan is to import srpm, and so the
+changelog from the srpm will be imported, and kept in svn to be readded
+to the new rpm once we modify it ( completed with the generated rpm
+changelog by using svn changelog ).
+
+So no problem ( if changelog is complete of course, and I am not sure it
+is, we need to check this ).
+
+( I know, all of that to say there is no problem. )
+
+
+For software ( or assimilated, ie everything non related to rpm packages
+that is a text file stored in svn ) :
+For this, no rpm changelog involved. Maybe no changelog file either,
+depending on the software.
+It used to be written from the svn/cvs changelog for some software,
+maybe blino can tell us more about it.
+
+So if we want to be clean, we should ensure that copyright notice are up
+to date in every source file before import, because we will not be able
+to do that later by relying on svn.
+
+
+> > So, how could we do ?
+> > ( I think we could rename upon import, I guess ).
+> 
+> We can do that? (reattributing to dams at mandriva for "old" dams)
+
+Depend on how we reimport, but yes, I think that tailor could do it.
+
+That also mean that we may also monitor incoming account creation to
+prevent the problem from happening again in the future.
+
+Ie, what if someone create a account eugeni while not being the same as
+Mandriva ? Would it have a impact ( besides statistics among others ) ?
+
+We can decide to reserve some accounts to give it back to mandriva
+people.
+
+We could suffix every account when we import svn history ( except that
+most people have kept the same user name so we could suffix unless
+people have kept the same account ).
+
+Or we could always use option 3, ignore it. 
+
+-- 
+Michael Scherer
+
+
+ + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000830.html b/zarb-ml/mageia-sysadm/2010-November/000830.html new file mode 100644 index 000000000..d67c9dfcf --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000830.html @@ -0,0 +1,125 @@ + + + + [Mageia-sysadm] [377] - add nssldap password handling + + + + + + + + + +

[Mageia-sysadm] [377] - add nssldap password handling

+ Buchan Milne + bgmilne at multilinks.com +
+ Tue Nov 23 15:50:42 CET 2010 +

+
+ +
On Tuesday, 23 November 2010 08:24:03 Luca Berra wrote:
+> On Mon, Nov 22, 2010 at 12:56:32PM +0100, Buchan Milne wrote:
+> >> +binddn uid=nssldap,ou=System Accounts,<%= dc_suffix %>
+> >> +bindpw <%= nssldap_password %>
+> >> 
+> >>  uri ldaps://ldap.<%= domain %>
+> >>  base <%= dc_suffix %>
+> >>  pam_lookup_policy no
+> >
+> >I would prefer if we can instead use:
+> >-"rootbinddn" in /etc/ldap.conf, not binddn
+> >-place password in /etc/ldap.secret
+> >-use nscd, so all LDAP access is as root (so, no need to expose passwords
+> >in files that must be world-readable), as a side-effect also avoiding
+> >problems with file descriptors used by any process doing a user lookup
+> >etc.
+> >
+> >Permissions on /etc/ldap.conf should be 0644, /etc/ldap.secret can be
+> >0600.
+> 
+> what is the real use of rootbinddn?
+
+Only practical use is preventing non-root users from discovering the proxy 
+user's password, which *may* have more privileges than their own account (or 
+some account they have compromised).
+
+> is there really any need to expose different information to NSS when
+> caller is uid 0?
+
+No, besides above. So, nss_ldap+nscd or sssd or nss-pam-ldapd or slapd+nssov 
+are equivalent here.
+
+> also the idea of a proxy user is flawed, it gives just about the same
+> security of opening anonymous read access.
+
+Using a proxy user means 'by users read' has some value ... note that we have 
+replaced all anonymous access with 'users' access.
+
+> With the added bonus that
+> changing the proxyuser password poses a risk of breaking things.
+
+How much is broken depends on how "proxy users" are managed. For now we are 
+going with per-host "proxy" users, and per-host per-application users for 
+applications, so if a host is compromised, its access can be revoked without 
+impacting other hosts or instances (more or less a Kerberos-style access).
+
+If this is too much overhead, we can consider other options.
+
+> since the info exposed to NSS is no big secret we can cope with it, but
+> i prefer leaving nss to anonymous binds and adding on ldap server (at
+> the end of access control)
+> 
+> access to dn.subtree="dc=mageia,dc=org"
+>         
+> attrs=@posixAccount, at posixGroup, at ipService, at ipProtocol, at ipHost, at ipNetwork,
+> @oncRpc, at nisNetgroup by peername.ip="127.0.0.1" read
+>          by peername.ip="x.y.w.z" read
+>          by * none
+
+Which leaves access from all non-root internet-facing applications open. While 
+there is not *much* of value there, I would prefer to try and protect 
+privilege escalation vectors.
+
+Regards,
+Buchan
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000831.html b/zarb-ml/mageia-sysadm/2010-November/000831.html new file mode 100644 index 000000000..ceece44a9 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000831.html @@ -0,0 +1,93 @@ + + + + [Mageia-sysadm] [412] - it is IMHO cleaner and logical to have apache:: vhost_other_app directly requiring apache:: base rather than letting every people adding it when using the class + + + + + + + + + +

[Mageia-sysadm] [412] - it is IMHO cleaner and logical to have apache:: vhost_other_app directly requiring apache:: base rather than letting every people adding it when using the class

+ Michael Scherer + misc at zarb.org +
+ Tue Nov 23 16:55:18 CET 2010 +

+
+ +
Le mardi 23 novembre 2010 à 08:09 +0100, Olivier Blin a écrit :
+> root at mageia.org writes:
+> 
+> > Revision: 412
+> > Author:   misc
+> > Date:     2010-11-23 02:14:05 +0100 (Tue, 23 Nov 2010)
+> > Log Message:
+> > -----------
+> > - it is IMHO cleaner and logical to have apache::vhost_other_app
+> > directly requiring apache::base rather than letting every people
+> > adding it when using the class
+> 
+> Yep, but shouldn't we still "include apache" in the buildsystem module?
+
+No. The apache class is just a container for other class.
+
+I am not sure of what would happen if we do include it. Likely nothing
+( as the class is empty ).
+
+> I took example from modules/bugzilla, which has a vhost_other_app as
+> well, but this one has an "include apache::mod_fcgid", while it does not
+> use mod_fcgid directly...
+> Should be fixed as well
+
+Indeed, I didn't catch it.
+
+-- 
+Michael Scherer
+
+
+ + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000832.html b/zarb-ml/mageia-sysadm/2010-November/000832.html new file mode 100644 index 000000000..59b13c797 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000832.html @@ -0,0 +1,95 @@ + + + + [Mageia-sysadm] [421] - do not include apache::mod_fcgid as bugzilla do not use fast cgi, and apache::base is already included + + + + + + + + + +

[Mageia-sysadm] [421] - do not include apache::mod_fcgid as bugzilla do not use fast cgi, and apache::base is already included

+ root at mageia.org + root at mageia.org +
+ Tue Nov 23 17:01:26 CET 2010 +

+
+ +
Revision: 421
+Author:   misc
+Date:     2010-11-23 17:01:26 +0100 (Tue, 23 Nov 2010)
+Log Message:
+-----------
+- do not include apache::mod_fcgid as bugzilla do not use fast cgi, and apache::base is already included
+
+Modified Paths:
+--------------
+    puppet/modules/bugzilla/manifests/init.pp
+
+Modified: puppet/modules/bugzilla/manifests/init.pp
+===================================================================
+--- puppet/modules/bugzilla/manifests/init.pp	2010-11-23 13:29:44 UTC (rev 420)
++++ puppet/modules/bugzilla/manifests/init.pp	2010-11-23 16:01:26 UTC (rev 421)
+@@ -24,7 +24,6 @@
+       content => template("bugzilla/params")
+     }
+ 
+-    include apache::mod_fcgid
+     apache::webapp_other{"bugzilla":
+         webapp_file => "bugzilla/webapp_bugzilla.conf",
+       }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101123/bc8b5939/attachment-0001.html>
+
+ + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000833.html b/zarb-ml/mageia-sysadm/2010-November/000833.html new file mode 100644 index 000000000..ec52ff7e3 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000833.html @@ -0,0 +1,95 @@ + + + + [Mageia-sysadm] [422] automatically pull apache::base to be consistant with others define + + + + + + + + + +

[Mageia-sysadm] [422] automatically pull apache::base to be consistant with others define

+ root at mageia.org + root at mageia.org +
+ Tue Nov 23 17:03:02 CET 2010 +

+
+ +
Revision: 422
+Author:   misc
+Date:     2010-11-23 17:03:02 +0100 (Tue, 23 Nov 2010)
+Log Message:
+-----------
+automatically pull apache::base to be consistant with others define
+
+Modified Paths:
+--------------
+    puppet/modules/apache/manifests/init.pp
+
+Modified: puppet/modules/apache/manifests/init.pp
+===================================================================
+--- puppet/modules/apache/manifests/init.pp	2010-11-23 16:01:26 UTC (rev 421)
++++ puppet/modules/apache/manifests/init.pp	2010-11-23 16:03:02 UTC (rev 422)
+@@ -143,6 +143,7 @@
+    }
+ 
+    define webapp_other($webapp_file) {
++        include apache::base
+         $webappname = $name
+         file { "webapp_$name.conf":
+             path => "/etc/httpd/conf/webapps.d/$webappname.conf",
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101123/aa7a5a38/attachment.html>
+
+ + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000834.html b/zarb-ml/mageia-sysadm/2010-November/000834.html new file mode 100644 index 000000000..712f6163e --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000834.html @@ -0,0 +1,74 @@ + + + + [Mageia-sysadm] [412] - it is IMHO cleaner and logical to have apache:: vhost_other_app directly requiring apache:: base rather than letting every people adding it when using the class + + + + + + + + + +

[Mageia-sysadm] [412] - it is IMHO cleaner and logical to have apache:: vhost_other_app directly requiring apache:: base rather than letting every people adding it when using the class

+ Dexter Morgan + dmorganec at gmail.com +
+ Tue Nov 23 18:01:08 CET 2010 +

+
+ +
On Tue, Nov 23, 2010 at 4:55 PM, Michael Scherer <misc at zarb.org> wrote:
+> Le mardi 23 novembre 2010 à 08:09 +0100, Olivier Blin a écrit :
+>
+>> I took example from modules/bugzilla, which has a vhost_other_app as
+>> well, but this one has an "include apache::mod_fcgid", while it does not
+>> use mod_fcgid directly...
+>> Should be fixed as well
+>
+> Indeed, I didn't catch it.
+
+stupid copy/paste    thanks for noticing this olivier
+
+ + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000835.html b/zarb-ml/mageia-sysadm/2010-November/000835.html new file mode 100644 index 000000000..9ced23ca6 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000835.html @@ -0,0 +1,91 @@ + + + + [Mageia-sysadm] pam ldap deployement tonight + + + + + + + + + +

[Mageia-sysadm] pam ldap deployement tonight

+ Michael Scherer + misc at zarb.org +
+ Tue Nov 23 18:22:31 CET 2010 +

+
+ +
Ok so everything is in the title.
+
+I will deploy tonight pam_ldap on valstar, likely after midnight. I will
+warn on irc ( #mageia-sysadm ) before, people should expect potential
+unavailability of the service.  
+
+This mean that I will first add the classes, and later remove people
+from /etc/password. This also mean that I will have to change owner of
+files and home directory ( but I do not think people have started to
+store anything there ). 
+
+So in the morning, if something doesn't work, you will know why :)
+
+Please be sure that your account in catdap is correct. Please also make
+sure that the ssh keys is ok. For now, we do not have decided to roll
+out the ssh key deployment from ldap ( ie, this requires some test ) but
+since buchan has enabled it in catdap, please add your key there ( and
+send us bugs and feedback ). 
+
+-- 
+Michael Scherer
+
+
+ + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000836.html b/zarb-ml/mageia-sysadm/2010-November/000836.html new file mode 100644 index 000000000..7e8bdcaf2 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000836.html @@ -0,0 +1,81 @@ + + + + [Mageia-sysadm] [399] create schedbot user before writing ssh config files + + + + + + + + + +

[Mageia-sysadm] [399] create schedbot user before writing ssh config files

+ Michael Scherer + misc at zarb.org +
+ Tue Nov 23 19:50:17 CET 2010 +

+
+ +
Le lundi 22 novembre 2010 à 15:18 +0100, Michael Scherer a écrit :
+> Le lundi 22 novembre 2010 à 14:59 +0100, root at mageia.org a écrit :
+> > Revision: 399
+> > Author:   blino
+> > Date:     2010-11-22 14:59:56 +0100 (Mon, 22 Nov 2010)
+> > Log Message:
+> > -----------
+> > create schedbot user before writing ssh config files
+> 
+> Order is not taken in account in puppet, this is a declarative language.
+
+Ok, so it seems that I am wrong, order can be important in puppet ( at
+least when tags are involved ) as I am just realizing. 
+
+( yet the part of Requires and Before is still valid )
+
+-- 
+Michael Scherer
+
+
+ + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000837.html b/zarb-ml/mageia-sysadm/2010-November/000837.html new file mode 100644 index 000000000..67ad0e4bb --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000837.html @@ -0,0 +1,70 @@ + + + + [Mageia-sysadm] Puppet Report for valstar.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for valstar.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Tue Nov 23 20:41:09 CET 2010 +

+
+ +
Tue Nov 23 20:41:08 +0100 2010 /Stage[main]/Buildsystem::Base/Ssh::Auth::Key[iurt]/Ssh_auth_key_server[iurt]/Ssh_authorized_key[iurt] (err): Could not evaluate: can't find user for 515
+
+ + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000838.html b/zarb-ml/mageia-sysadm/2010-November/000838.html new file mode 100644 index 000000000..b9ee4abfa --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000838.html @@ -0,0 +1,103 @@ + + + + [Mageia-sysadm] [423] add correct requires for sshuser creation + + + + + + + + + +

[Mageia-sysadm] [423] add correct requires for sshuser creation

+ root at mageia.org + root at mageia.org +
+ Tue Nov 23 20:44:01 CET 2010 +

+
+ +
Revision: 423
+Author:   blino
+Date:     2010-11-23 20:44:01 +0100 (Tue, 23 Nov 2010)
+Log Message:
+-----------
+add correct requires for sshuser creation
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-23 16:03:02 UTC (rev 422)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-23 19:44:01 UTC (rev 423)
+@@ -75,6 +75,7 @@
+ 
+         file { $homedir:
+             ensure => "directory",
++            require => User[$title],
+         }
+ 
+         file { "$homedir/.ssh":
+@@ -82,6 +83,7 @@
+             mode   => 600,
+             owner  => $title,
+             group  => $title,
++            require => File[$homedir],
+         }
+     }
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101123/a34034ba/attachment.html>
+
+ + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000839.html b/zarb-ml/mageia-sysadm/2010-November/000839.html new file mode 100644 index 000000000..97253c9ab --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000839.html @@ -0,0 +1,70 @@ + + + + [Mageia-sysadm] Puppet Report for valstar.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for valstar.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Tue Nov 23 20:44:07 CET 2010 +

+
+ +
Tue Nov 23 20:44:07 +0100 2010 /Stage[main]/Buildsystem::Base/Ssh::Auth::Key[iurt]/Ssh_auth_key_server[iurt]/Ssh_authorized_key[iurt] (err): Could not evaluate: can't find user for 515
+
+ + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000840.html b/zarb-ml/mageia-sysadm/2010-November/000840.html new file mode 100644 index 000000000..f38856b4e --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000840.html @@ -0,0 +1,95 @@ + + + + [Mageia-sysadm] [424] ssh user requires the associated group + + + + + + + + + +

[Mageia-sysadm] [424] ssh user requires the associated group

+ root at mageia.org + root at mageia.org +
+ Tue Nov 23 20:44:42 CET 2010 +

+
+ +
Revision: 424
+Author:   blino
+Date:     2010-11-23 20:44:42 +0100 (Tue, 23 Nov 2010)
+Log Message:
+-----------
+ssh user requires the associated group
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-23 19:44:01 UTC (rev 423)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-23 19:44:42 UTC (rev 424)
+@@ -65,6 +65,7 @@
+             gid => $title,
+             shell => "/bin/bash",
+             notify => Exec["unlock$title"],
++            require => Group[$title],
+         }
+ 
+         # set password to * to unlock the account but forbid login through login
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101123/b9196729/attachment-0001.html>
+
+ + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000841.html b/zarb-ml/mageia-sysadm/2010-November/000841.html new file mode 100644 index 000000000..35c8e428c --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000841.html @@ -0,0 +1,70 @@ + + + + [Mageia-sysadm] Puppet Report for valstar.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for valstar.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Tue Nov 23 20:44:49 CET 2010 +

+
+ +
Tue Nov 23 20:44:49 +0100 2010 /Stage[main]/Buildsystem::Base/Ssh::Auth::Key[iurt]/Ssh_auth_key_server[iurt]/Ssh_authorized_key[iurt] (err): Could not evaluate: can't find user for 515
+
+ + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000842.html b/zarb-ml/mageia-sysadm/2010-November/000842.html new file mode 100644 index 000000000..f4e6ac193 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000842.html @@ -0,0 +1,70 @@ + + + + [Mageia-sysadm] Puppet Report for valstar.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for valstar.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Tue Nov 23 20:44:59 CET 2010 +

+
+ +
Tue Nov 23 20:44:58 +0100 2010 /Stage[main]/Buildsystem::Base/Ssh::Auth::Key[iurt]/Ssh_auth_key_server[iurt]/Ssh_authorized_key[iurt] (err): Could not evaluate: can't find user for 515
+
+ + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000843.html b/zarb-ml/mageia-sysadm/2010-November/000843.html new file mode 100644 index 000000000..372037c20 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000843.html @@ -0,0 +1,70 @@ + + + + [Mageia-sysadm] Puppet Report for valstar.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for valstar.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Tue Nov 23 20:48:07 CET 2010 +

+
+ +
Tue Nov 23 20:48:07 +0100 2010 /Stage[main]/Buildsystem::Base/Ssh::Auth::Key[iurt]/Ssh_auth_key_server[iurt]/Ssh_authorized_key[iurt] (err): Could not evaluate: can't find user for 515
+
+ + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000844.html b/zarb-ml/mageia-sysadm/2010-November/000844.html new file mode 100644 index 000000000..15b348a24 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000844.html @@ -0,0 +1,83 @@ + + + + [Mageia-sysadm] [399] create schedbot user before writing ssh config files + + + + + + + + + +

[Mageia-sysadm] [399] create schedbot user before writing ssh config files

+ Olivier Blin + mageia at blino.org +
+ Tue Nov 23 20:50:08 CET 2010 +

+
+ +
Michael Scherer <misc at zarb.org> writes:
+
+> Le lundi 22 novembre 2010 à 15:18 +0100, Michael Scherer a écrit :
+>> Le lundi 22 novembre 2010 à 14:59 +0100, root at mageia.org a écrit :
+>> > Revision: 399
+>> > Author:   blino
+>> > Date:     2010-11-22 14:59:56 +0100 (Mon, 22 Nov 2010)
+>> > Log Message:
+>> > -----------
+>> > create schedbot user before writing ssh config files
+>> 
+>> Order is not taken in account in puppet, this is a declarative language.
+>
+> Ok, so it seems that I am wrong, order can be important in puppet ( at
+> least when tags are involved ) as I am just realizing. 
+>
+> ( yet the part of Requires and Before is still valid )
+
+Yep, just fixed the requires
+
+-- 
+Olivier Blin - blino
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000845.html b/zarb-ml/mageia-sysadm/2010-November/000845.html new file mode 100644 index 000000000..c684f3cc9 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000845.html @@ -0,0 +1,95 @@ + + + + [Mageia-sysadm] [125] take iurt config files from /etc/iurt/build, /etc/ iurt will contain upload.conf + + + + + + + + + +

[Mageia-sysadm] [125] take iurt config files from /etc/iurt/build, /etc/ iurt will contain upload.conf

+ root at mageia.org + root at mageia.org +
+ Tue Nov 23 21:45:58 CET 2010 +

+
+ +
Revision: 125
+Author:   blino
+Date:     2010-11-23 21:45:58 +0100 (Tue, 23 Nov 2010)
+Log Message:
+-----------
+take iurt config files from /etc/iurt/build, /etc/iurt will contain upload.conf
+
+Modified Paths:
+--------------
+    build_system/iurt/trunk/iurt2
+
+Modified: build_system/iurt/trunk/iurt2
+===================================================================
+--- build_system/iurt/trunk/iurt2	2010-11-23 13:40:33 UTC (rev 124)
++++ build_system/iurt/trunk/iurt2	2010-11-23 20:45:58 UTC (rev 125)
+@@ -388,7 +388,7 @@
+ chomp $real_arch;
+ my $HOME = $ENV{HOME};
+ my $configfile = "$HOME/.iurt.$run{distro_tag}.conf";
+-my $sysconfigfile = "/etc/iurt/$run{distro_tag}.conf";
++my $sysconfigfile = "/etc/iurt/build/$run{distro_tag}.conf";
+ 
+ my $config = {};
+ foreach my $f ($configfile, $sysconfigfile) {
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101123/a73c2316/attachment.html>
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000846.html b/zarb-ml/mageia-sysadm/2010-November/000846.html new file mode 100644 index 000000000..d6a3321c2 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000846.html @@ -0,0 +1,95 @@ + + + + [Mageia-sysadm] [425] iurt build config should go in /etc + + + + + + + + + +

[Mageia-sysadm] [425] iurt build config should go in /etc

+ root at mageia.org + root at mageia.org +
+ Tue Nov 23 22:17:35 CET 2010 +

+
+ +
Revision: 425
+Author:   blino
+Date:     2010-11-23 22:17:35 +0100 (Tue, 23 Nov 2010)
+Log Message:
+-----------
+iurt build config should go in /etc
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-23 19:44:42 UTC (rev 424)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-23 21:17:35 UTC (rev 425)
+@@ -109,7 +109,7 @@
+             ensure => installed;
+         }
+ 
+-        file { "$build_home_dir/.iurt.cauldron.conf":
++        file { "/etc/iurt/build/cauldron.conf":
+             ensure => present,
+             owner => $build_login,
+             group => $build_login,
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101123/de7c6b3e/attachment.html>
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000847.html b/zarb-ml/mageia-sysadm/2010-November/000847.html new file mode 100644 index 000000000..d791cb982 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000847.html @@ -0,0 +1,69 @@ + + + + [Mageia-sysadm] Puppet Report for ecosse.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for ecosse.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Tue Nov 23 22:33:47 CET 2010 +

+
+ +
Tue Nov 23 22:33:47 +0100 2010 /Stage[main]/Buildsystem::Iurt/File[/etc/iurt/build/cauldron.conf]/ensure (err): change from absent to present failed: Could not set 'present on ensure: No such file or directory - /etc/iurt/build/cauldron.conf.puppettmp_6765 at /etc/puppet/modules/buildsystem/manifests/init.pp:118
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000848.html b/zarb-ml/mageia-sysadm/2010-November/000848.html new file mode 100644 index 000000000..fef139579 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000848.html @@ -0,0 +1,69 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Tue Nov 23 22:47:15 CET 2010 +

+
+ +
Tue Nov 23 22:47:14 +0100 2010 /Stage[main]/Buildsystem::Iurt/File[/etc/iurt/build/cauldron.conf]/ensure (err): change from absent to present failed: Could not set 'present on ensure: No such file or directory - /etc/iurt/build/cauldron.conf.puppettmp_3916 at /etc/puppet/modules/buildsystem/manifests/init.pp:118
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000849.html b/zarb-ml/mageia-sysadm/2010-November/000849.html new file mode 100644 index 000000000..445f70daf --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000849.html @@ -0,0 +1,148 @@ + + + + [Mageia-sysadm] [126] use upload.conf from /etc/iurt if not in home ( could be factorized together and with iurt config file code) + + + + + + + + + +

[Mageia-sysadm] [126] use upload.conf from /etc/iurt if not in home ( could be factorized together and with iurt config file code)

+ root at mageia.org + root at mageia.org +
+ Tue Nov 23 22:52:13 CET 2010 +

+
+ +
Revision: 126
+Author:   blino
+Date:     2010-11-23 22:52:12 +0100 (Tue, 23 Nov 2010)
+Log Message:
+-----------
+use upload.conf from /etc/iurt if not in home (could be factorized together and with iurt config file code)
+
+Modified Paths:
+--------------
+    build_system/iurt/trunk/emi
+    build_system/iurt/trunk/ulri
+
+Modified: build_system/iurt/trunk/emi
+===================================================================
+--- build_system/iurt/trunk/emi	2010-11-23 20:45:58 UTC (rev 125)
++++ build_system/iurt/trunk/emi	2010-11-23 21:52:12 UTC (rev 126)
+@@ -46,7 +46,18 @@
+ my $HOME = $ENV{HOME};
+ 
+ my $configfile = "$HOME/.upload.conf";
++my $sysconfigfile = "/etc/iurt/upload.conf";
+ 
++my $config = {};
++foreach my $f ($configfile, $sysconfigfile) {
++    plog('DEBUG', "load config: $f");
++    if (-f $f) {
++        $config = eval(cat_($f))
++          or die "FATAL $program_name: syntax error in $f";
++        last;
++    }
++}
++
+ my %config_usage = ( 
+     admin => {
+ 	desc => 'mail address of the bot administrator',
+@@ -94,14 +105,6 @@
+     },
+ );
+ 
+-my $config;
+-if (-f $configfile) {
+-    $config = eval(cat_($configfile))
+-	or die "FATAL $program_name: syntax error in $configfile";
+-} else {
+-    $config = {};
+-}
+-
+ config_usage(\%config_usage, $config) if $run{config_usage};
+ config_init(\%config_usage, $config, \%run);
+ 
+
+Modified: build_system/iurt/trunk/ulri
+===================================================================
+--- build_system/iurt/trunk/ulri	2010-11-23 20:45:58 UTC (rev 125)
++++ build_system/iurt/trunk/ulri	2010-11-23 21:52:12 UTC (rev 126)
+@@ -55,12 +55,16 @@
+ 
+ my $HOME = $ENV{HOME};
+ my $configfile = "$HOME/.upload.conf";
++my $sysconfigfile = "/etc/iurt/upload.conf";
+ 
+-my $config;
+-if (-f $configfile) {
+-    $config = eval(cat_($configfile)) or die "FATAL $program_name: syntax error in $configfile";
+-} else {
+-    $config = {};
++my $config = {};
++foreach my $f ($configfile, $sysconfigfile) {
++    plog('DEBUG', "load config: $f");
++    if (-f $f) {
++        $config = eval(cat_($f))
++          or die "FATAL $program_name: syntax error in $f";
++        last;
++    }
+ }
+ 
+ my %config_usage = ( 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101123/d4ac661d/attachment-0001.html>
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000850.html b/zarb-ml/mageia-sysadm/2010-November/000850.html new file mode 100644 index 000000000..5d2fd39d3 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000850.html @@ -0,0 +1,103 @@ + + + + [Mageia-sysadm] [426] ensure /etc/iurt/build is a directory + + + + + + + + + +

[Mageia-sysadm] [426] ensure /etc/iurt/build is a directory

+ root at mageia.org + root at mageia.org +
+ Tue Nov 23 23:00:44 CET 2010 +

+
+ +
Revision: 426
+Author:   blino
+Date:     2010-11-23 23:00:44 +0100 (Tue, 23 Nov 2010)
+Log Message:
+-----------
+ensure /etc/iurt/build is a directory
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-23 21:17:35 UTC (rev 425)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-23 22:00:44 UTC (rev 426)
+@@ -109,11 +109,16 @@
+             ensure => installed;
+         }
+ 
++        file { "/etc/iurt/build":
++            ensure => "directory",
++        }
++
+         file { "/etc/iurt/build/cauldron.conf":
+             ensure => present,
+             owner => $build_login,
+             group => $build_login,
+             mode => 644,
++            require => File["/etc/iurt/build"],
+             content => template("buildsystem/iurt.cauldron.conf")
+         }
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101123/99f7da9a/attachment.html>
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000851.html b/zarb-ml/mageia-sysadm/2010-November/000851.html new file mode 100644 index 000000000..381e79789 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000851.html @@ -0,0 +1,69 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Tue Nov 23 23:01:13 CET 2010 +

+
+ +
Tue Nov 23 23:01:12 +0100 2010 /Stage[main]/Buildsystem::Iurt/File[/etc/iurt/build]/ensure (err): change from absent to directory failed: Cannot create /etc/iurt/build; parent directory /etc/iurt does not exist
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000852.html b/zarb-ml/mageia-sysadm/2010-November/000852.html new file mode 100644 index 000000000..574a811b6 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000852.html @@ -0,0 +1,94 @@ + + + + [Mageia-sysadm] [427] manage dir recursively + + + + + + + + + +

[Mageia-sysadm] [427] manage dir recursively

+ root at mageia.org + root at mageia.org +
+ Tue Nov 23 23:05:33 CET 2010 +

+
+ +
Revision: 427
+Author:   blino
+Date:     2010-11-23 23:05:33 +0100 (Tue, 23 Nov 2010)
+Log Message:
+-----------
+manage dir recursively
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-23 22:00:44 UTC (rev 426)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-23 22:05:33 UTC (rev 427)
+@@ -111,6 +111,7 @@
+ 
+         file { "/etc/iurt/build":
+             ensure => "directory",
++            recurse => true,
+         }
+ 
+         file { "/etc/iurt/build/cauldron.conf":
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101123/a993c188/attachment.html>
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000853.html b/zarb-ml/mageia-sysadm/2010-November/000853.html new file mode 100644 index 000000000..adea4c84b --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000853.html @@ -0,0 +1,69 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Tue Nov 23 23:05:44 CET 2010 +

+
+ +
Tue Nov 23 23:05:44 +0100 2010 /Stage[main]/Buildsystem::Iurt/File[/etc/iurt/build]/ensure (err): change from absent to directory failed: Cannot create /etc/iurt/build; parent directory /etc/iurt does not exist
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000854.html b/zarb-ml/mageia-sysadm/2010-November/000854.html new file mode 100644 index 000000000..1faca9335 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000854.html @@ -0,0 +1,101 @@ + + + + [Mageia-sysadm] [428] create /etc/iurt + + + + + + + + + +

[Mageia-sysadm] [428] create /etc/iurt

+ root at mageia.org + root at mageia.org +
+ Tue Nov 23 23:06:24 CET 2010 +

+
+ +
Revision: 428
+Author:   blino
+Date:     2010-11-23 23:06:24 +0100 (Tue, 23 Nov 2010)
+Log Message:
+-----------
+create /etc/iurt
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-23 22:05:33 UTC (rev 427)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-23 22:06:24 UTC (rev 428)
+@@ -109,9 +109,13 @@
+             ensure => installed;
+         }
+ 
++        file { "/etc/iurt":
++            ensure => "directory",
++        }
++
+         file { "/etc/iurt/build":
+             ensure => "directory",
+-            recurse => true,
++            require => File["/etc/iurt"],
+         }
+ 
+         file { "/etc/iurt/build/cauldron.conf":
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101123/67e167da/attachment.html>
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000855.html b/zarb-ml/mageia-sysadm/2010-November/000855.html new file mode 100644 index 000000000..6e597a73c --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000855.html @@ -0,0 +1,69 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Tue Nov 23 23:06:31 CET 2010 +

+
+ +
Tue Nov 23 23:06:30 +0100 2010 /Stage[main]/Buildsystem::Iurt/File[/etc/iurt/build]/ensure (err): change from absent to directory failed: Cannot create /etc/iurt/build; parent directory /etc/iurt does not exist
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000856.html b/zarb-ml/mageia-sysadm/2010-November/000856.html new file mode 100644 index 000000000..b4cdd656f --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000856.html @@ -0,0 +1,69 @@ + + + + [Mageia-sysadm] Puppet Report for jonund.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for jonund.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Tue Nov 23 23:06:45 CET 2010 +

+
+ +
Tue Nov 23 23:06:44 +0100 2010 /Stage[main]/Buildsystem::Iurt/File[/etc/iurt/build]/ensure (err): change from absent to directory failed: Cannot create /etc/iurt/build; parent directory /etc/iurt does not exist
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000857.html b/zarb-ml/mageia-sysadm/2010-November/000857.html new file mode 100644 index 000000000..2e54a52ec --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000857.html @@ -0,0 +1,108 @@ + + + + [Mageia-sysadm] [429] move /etc/iurt creation with iurt user (rationale: if there is a iurt user, iurt tools will be used) + + + + + + + + + +

[Mageia-sysadm] [429] move /etc/iurt creation with iurt user (rationale: if there is a iurt user, iurt tools will be used)

+ root at mageia.org + root at mageia.org +
+ Tue Nov 23 23:08:59 CET 2010 +

+
+ +
Revision: 429
+Author:   blino
+Date:     2010-11-23 23:08:58 +0100 (Tue, 23 Nov 2010)
+Log Message:
+-----------
+move /etc/iurt creation with iurt user (rationale: if there is a iurt user, iurt tools will be used)
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-23 22:06:24 UTC (rev 428)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-23 22:08:58 UTC (rev 429)
+@@ -93,6 +93,10 @@
+           homedir => $build_home_dir,
+           comment => "System user used to run build bots",
+         }
++
++        file { "/etc/iurt":
++            ensure => "directory",
++        }
+     }
+ 
+     class iurt {
+@@ -109,10 +113,6 @@
+             ensure => installed;
+         }
+ 
+-        file { "/etc/iurt":
+-            ensure => "directory",
+-        }
+-
+         file { "/etc/iurt/build":
+             ensure => "directory",
+             require => File["/etc/iurt"],
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101123/4b74c27a/attachment-0001.html>
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000858.html b/zarb-ml/mageia-sysadm/2010-November/000858.html new file mode 100644 index 000000000..a32756f3b --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000858.html @@ -0,0 +1,188 @@ + + + + [Mageia-sysadm] [430] add iurt upload.conf file for ulri and emi + + + + + + + + + +

[Mageia-sysadm] [430] add iurt upload.conf file for ulri and emi

+ root at mageia.org + root at mageia.org +
+ Tue Nov 23 23:24:27 CET 2010 +

+
+ +
Revision: 430
+Author:   blino
+Date:     2010-11-23 23:24:27 +0100 (Tue, 23 Nov 2010)
+Log Message:
+-----------
+add iurt upload.conf file for ulri and emi
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Added Paths:
+-----------
+    puppet/modules/buildsystem/templates/upload.conf
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-23 22:08:58 UTC (rev 429)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-23 22:24:27 UTC (rev 430)
+@@ -31,6 +31,8 @@
+             vhost_file => "buildsystem/vhost_repository.conf",
+         }
+ 
++        include scheduler
++        include dispatcher
+     }
+ 
+     class buildnode inherits base {
+@@ -39,11 +41,24 @@
+ 
+     class scheduler {
+         # ulri        
++        include iurtupload
+     }
+ 
+     class dispatcher {
+         # emi
++        include iurtupload
+     }
++
++    class iurtupload {
++        file { "/etc/iurt/update.conf":
++            ensure => present,
++            owner => $build_login,
++            group => $build_login,
++            mode => 644,
++            require => File["/etc/iurt"],
++            content => template("buildsystem/upload.conf")
++        }
++    }
+     
+     class repsys {
+         package { 'repsys':
+
+Added: puppet/modules/buildsystem/templates/upload.conf
+===================================================================
+--- puppet/modules/buildsystem/templates/upload.conf	                        (rev 0)
++++ puppet/modules/buildsystem/templates/upload.conf	2010-11-23 22:24:27 UTC (rev 430)
+@@ -0,0 +1,58 @@
++###
++#
++# Do not disable the host without appropriate warning
++# to somebody able to fix the machine
++#
++# Please run 'perl -cw .upload.conf' in order to check the file is OK.
++#
++###
++
++{
++    bot => { 
++	i586 => {
++	    map {
++		($_ => {	       
++		    iurt => {
++			user => 'iurt',
++# (spuk, 2007-08-16) disabled iurt_cache additional media, locks trying to mount -o bind
++#			command => 'iurt --copy_srpm --group -v 1 --config local_spool /home/iurt/iurt/__DIR__ --no_rsync --chrooted-urpmi -m __MEDIA__ -- http://repository/distrib/ --additional-media -m __MEDIA__ -- file:///home/iurt_cache/ -p \"__PACKAGER__\" -r __TARGET__ __ARCH__',
++			command => 'iurt --iurtlogdir __IURTLOGDIR__ --copy_srpm --group -v 6 --config local_spool /home/iurt/iurt/__DIR__ --no_rsync --chrooted-urpmi -m __MEDIA__ -- http://repository/distrib/ -p \"__PACKAGER__\" -r __TARGET__ __ARCH__',
++			packages => '/home/iurt/iurt/',
++			log => '/home/iurt/iurt/', 
++		    },
++		});
++	    } qw(ecosse),
++	},
++
++	x86_64 => {
++	    map {
++		($_ => {	       
++		    iurt => {
++			user => 'iurt',
++			command => 'iurt --iurtlogdir __IURTLOGDIR__ --copy-srpm --group -v 6 --config local_spool /home/iurt/iurt/__DIR__ --no_rsync --chrooted-urpmi -m __MEDIA__ -- http://repository/distrib/ --additional-media -m __MEDIA__ -- file:///home/iurt_cache/ -p \"__PACKAGER__\" -r __TARGET__ __ARCH__',
++			packages => '/home/iurt/iurt/',
++			log => '/home/iurt/iurt/', 
++		    },
++		});
++	    } qw(jonund),
++	},
++      },
++      media => { 
++	    default => { 
++		"main/release" => [ "main/updates", "main/release" ], 
++		"main/updates" => [ "main/updates", "main/release" ],
++		"main/testing" => [ "main/testing", "main/updates", "main/release" ],
++		"main/backports" => [ "main/backports", "main/updates", "main/release" ],
++		"contrib/release" => [ "main/updates", "main/release", "contrib/updates", "contrib/release" ],
++		"contrib/updates" => [ "main/updates", "main/release", "contrib/updates", "contrib/release" ],
++		"contrib/testing" => [ "main/updates", "main/release", "main/testing", "contrib/updates", "contrib/release", "contrib/testing" ],
++		"contrib/backports" => [ "main/backports", "main/updates", "main/release", "contrib/backports", "contrib/updates", "contrib/release" ],
++		# (blino) non-free packages may require contrib packages (gcc3.3-g77 for scilab)
++		"non-free/release" => [ "main/updates", "main/release", "contrib/updates", "contrib/release", "non-free/updates", "non-free/release" ],
++		"non-free/updates" => [ "main/updates", "main/release", "contrib/updates", "contrib/release", "non-free/updates", "non-free/release" ],
++		"non-free/testing" => [ "main/updates", "main/release", "main/testing", "contrib/updates", "contrib/release", "contrib/testing", "non-free/updates", "non-free/release", "non-free/testing" ],
++		"non-free/backports" => [ "main/backports", "main/release", "main/updates", "contrib/backports", "contrib/updates", "contrib/release", "non-free/backports", "non-free/updates", "non-free/release" ],
++	    },
++      },
++      admin => 'mageia-sysadm at mageia.org',
++}
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101123/8b7e8954/attachment.html>
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000859.html b/zarb-ml/mageia-sysadm/2010-November/000859.html new file mode 100644 index 000000000..f5cce8ec6 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000859.html @@ -0,0 +1,104 @@ + + + + [Mageia-sysadm] [431] emi is more a gatherer than a dispatcher + + + + + + + + + +

[Mageia-sysadm] [431] emi is more a gatherer than a dispatcher

+ root at mageia.org + root at mageia.org +
+ Tue Nov 23 23:26:59 CET 2010 +

+
+ +
Revision: 431
+Author:   blino
+Date:     2010-11-23 23:26:59 +0100 (Tue, 23 Nov 2010)
+Log Message:
+-----------
+emi is more a gatherer than a dispatcher
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-23 22:24:27 UTC (rev 430)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-23 22:26:59 UTC (rev 431)
+@@ -32,7 +32,7 @@
+         }
+ 
+         include scheduler
+-        include dispatcher
++        include gatherer
+     }
+ 
+     class buildnode inherits base {
+@@ -44,7 +44,7 @@
+         include iurtupload
+     }
+ 
+-    class dispatcher {
++    class gatherer {
+         # emi
+         include iurtupload
+     }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101123/6b9599e4/attachment.html>
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000860.html b/zarb-ml/mageia-sysadm/2010-November/000860.html new file mode 100644 index 000000000..ac94499f8 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000860.html @@ -0,0 +1,95 @@ + + + + [Mageia-sysadm] [432] fix upload.conf name (oops) + + + + + + + + + +

[Mageia-sysadm] [432] fix upload.conf name (oops)

+ root at mageia.org + root at mageia.org +
+ Tue Nov 23 23:27:30 CET 2010 +

+
+ +
Revision: 432
+Author:   blino
+Date:     2010-11-23 23:27:30 +0100 (Tue, 23 Nov 2010)
+Log Message:
+-----------
+fix upload.conf name (oops)
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-23 22:26:59 UTC (rev 431)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-23 22:27:30 UTC (rev 432)
+@@ -50,7 +50,7 @@
+     }
+ 
+     class iurtupload {
+-        file { "/etc/iurt/update.conf":
++        file { "/etc/iurt/upload.conf":
+             ensure => present,
+             owner => $build_login,
+             group => $build_login,
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101123/20845550/attachment.html>
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000861.html b/zarb-ml/mageia-sysadm/2010-November/000861.html new file mode 100644 index 000000000..881f098ad --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000861.html @@ -0,0 +1,110 @@ + + + + [Mageia-sysadm] [127] do not hardcode home + + + + + + + + + +

[Mageia-sysadm] [127] do not hardcode home

+ root at mageia.org + root at mageia.org +
+ Tue Nov 23 23:46:40 CET 2010 +

+
+ +
Revision: 127
+Author:   blino
+Date:     2010-11-23 23:46:39 +0100 (Tue, 23 Nov 2010)
+Log Message:
+-----------
+do not hardcode home
+
+Modified Paths:
+--------------
+    build_system/iurt/trunk/emi
+    build_system/iurt/trunk/ulri
+
+Modified: build_system/iurt/trunk/emi
+===================================================================
+--- build_system/iurt/trunk/emi	2010-11-23 21:52:12 UTC (rev 126)
++++ build_system/iurt/trunk/emi	2010-11-23 22:46:39 UTC (rev 127)
+@@ -97,7 +97,7 @@
+     },
+     queue => {
+ 	desc => 'root directory of the various upload queues',
+-	default => '/home/mandrake/uploads/'
++	default => "$HOME/uploads/"
+     },
+     ssh_option => {
+ 	desc => "SSH options",
+
+Modified: build_system/iurt/trunk/ulri
+===================================================================
+--- build_system/iurt/trunk/ulri	2010-11-23 21:52:12 UTC (rev 126)
++++ build_system/iurt/trunk/ulri	2010-11-23 22:46:39 UTC (rev 127)
+@@ -136,7 +136,7 @@
+     },
+     queue => {
+ 	desc => "Root of the tree where the packages to compile are located",
+-	default => "/home/mandrake/uploads/"
++	default => "$HOME/uploads/"
+     },
+     cache_home => {
+ 	desc => 'Where to store the cache files',
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101123/29cb0b89/attachment-0001.html>
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000862.html b/zarb-ml/mageia-sysadm/2010-November/000862.html new file mode 100644 index 000000000..7956acd9b --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000862.html @@ -0,0 +1,104 @@ + + + + [Mageia-sysadm] [433] use same iurt command for both i586 and x86_64 + + + + + + + + + +

[Mageia-sysadm] [433] use same iurt command for both i586 and x86_64

+ root at mageia.org + root at mageia.org +
+ Tue Nov 23 23:51:35 CET 2010 +

+
+ +
Revision: 433
+Author:   blino
+Date:     2010-11-23 23:51:35 +0100 (Tue, 23 Nov 2010)
+Log Message:
+-----------
+use same iurt command for both i586 and x86_64
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/templates/upload.conf
+
+Modified: puppet/modules/buildsystem/templates/upload.conf
+===================================================================
+--- puppet/modules/buildsystem/templates/upload.conf	2010-11-23 22:27:30 UTC (rev 432)
++++ puppet/modules/buildsystem/templates/upload.conf	2010-11-23 22:51:35 UTC (rev 433)
+@@ -15,7 +15,7 @@
+ 		    iurt => {
+ 			user => 'iurt',
+ # (spuk, 2007-08-16) disabled iurt_cache additional media, locks trying to mount -o bind
+-#			command => 'iurt --copy_srpm --group -v 1 --config local_spool /home/iurt/iurt/__DIR__ --no_rsync --chrooted-urpmi -m __MEDIA__ -- http://repository/distrib/ --additional-media -m __MEDIA__ -- file:///home/iurt_cache/ -p \"__PACKAGER__\" -r __TARGET__ __ARCH__',
++#			command => 'iurt --iurtlogdir __IURTLOGDIR__ --copy-srpm --group -v 6 --config local_spool /home/iurt/iurt/__DIR__ --no_rsync --chrooted-urpmi -m __MEDIA__ -- http://repository/distrib/ --additional-media -m __MEDIA__ -- file:///home/iurt_cache/ -p \"__PACKAGER__\" -r __TARGET__ __ARCH__',
+ 			command => 'iurt --iurtlogdir __IURTLOGDIR__ --copy_srpm --group -v 6 --config local_spool /home/iurt/iurt/__DIR__ --no_rsync --chrooted-urpmi -m __MEDIA__ -- http://repository/distrib/ -p \"__PACKAGER__\" -r __TARGET__ __ARCH__',
+ 			packages => '/home/iurt/iurt/',
+ 			log => '/home/iurt/iurt/', 
+@@ -29,7 +29,7 @@
+ 		($_ => {	       
+ 		    iurt => {
+ 			user => 'iurt',
+-			command => 'iurt --iurtlogdir __IURTLOGDIR__ --copy-srpm --group -v 6 --config local_spool /home/iurt/iurt/__DIR__ --no_rsync --chrooted-urpmi -m __MEDIA__ -- http://repository/distrib/ --additional-media -m __MEDIA__ -- file:///home/iurt_cache/ -p \"__PACKAGER__\" -r __TARGET__ __ARCH__',
++			command => 'iurt --iurtlogdir __IURTLOGDIR__ --copy_srpm --group -v 6 --config local_spool /home/iurt/iurt/__DIR__ --no_rsync --chrooted-urpmi -m __MEDIA__ -- http://repository/distrib/ -p \"__PACKAGER__\" -r __TARGET__ __ARCH__',
+ 			packages => '/home/iurt/iurt/',
+ 			log => '/home/iurt/iurt/', 
+ 		    },
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101123/e037b353/attachment.html>
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000863.html b/zarb-ml/mageia-sysadm/2010-November/000863.html new file mode 100644 index 000000000..350e1febe --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000863.html @@ -0,0 +1,144 @@ + + + + [Mageia-sysadm] [434] simplify nodes declaration + + + + + + + + + +

[Mageia-sysadm] [434] simplify nodes declaration

+ root at mageia.org + root at mageia.org +
+ Tue Nov 23 23:57:05 CET 2010 +

+
+ +
Revision: 434
+Author:   blino
+Date:     2010-11-23 23:57:04 +0100 (Tue, 23 Nov 2010)
+Log Message:
+-----------
+simplify nodes declaration
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/templates/upload.conf
+
+Modified: puppet/modules/buildsystem/templates/upload.conf
+===================================================================
+--- puppet/modules/buildsystem/templates/upload.conf	2010-11-23 22:51:35 UTC (rev 433)
++++ puppet/modules/buildsystem/templates/upload.conf	2010-11-23 22:57:04 UTC (rev 434)
+@@ -7,35 +7,31 @@
+ #
+ ###
+ 
++my %nodes = (
++   i586 => [ qw(ecosse) ],
++   x86_64 => [ qw(jonund) ],
++);
++
+ {
+-    bot => { 
+-	i586 => {
+-	    map {
+-		($_ => {	       
+-		    iurt => {
+-			user => 'iurt',
++    bot => {
++        (map {
++            my $arch = $_;
++            $arch => {
++                map {
++                    my $node = $_;
++                    ($node => {	       
++                        iurt => {
++                            user => 'iurt',
+ # (spuk, 2007-08-16) disabled iurt_cache additional media, locks trying to mount -o bind
+ #			command => 'iurt --iurtlogdir __IURTLOGDIR__ --copy-srpm --group -v 6 --config local_spool /home/iurt/iurt/__DIR__ --no_rsync --chrooted-urpmi -m __MEDIA__ -- http://repository/distrib/ --additional-media -m __MEDIA__ -- file:///home/iurt_cache/ -p \"__PACKAGER__\" -r __TARGET__ __ARCH__',
+-			command => 'iurt --iurtlogdir __IURTLOGDIR__ --copy_srpm --group -v 6 --config local_spool /home/iurt/iurt/__DIR__ --no_rsync --chrooted-urpmi -m __MEDIA__ -- http://repository/distrib/ -p \"__PACKAGER__\" -r __TARGET__ __ARCH__',
+-			packages => '/home/iurt/iurt/',
+-			log => '/home/iurt/iurt/', 
+-		    },
+-		});
+-	    } qw(ecosse),
+-	},
+-
+-	x86_64 => {
+-	    map {
+-		($_ => {	       
+-		    iurt => {
+-			user => 'iurt',
+-			command => 'iurt --iurtlogdir __IURTLOGDIR__ --copy_srpm --group -v 6 --config local_spool /home/iurt/iurt/__DIR__ --no_rsync --chrooted-urpmi -m __MEDIA__ -- http://repository/distrib/ -p \"__PACKAGER__\" -r __TARGET__ __ARCH__',
+-			packages => '/home/iurt/iurt/',
+-			log => '/home/iurt/iurt/', 
+-		    },
+-		});
+-	    } qw(jonund),
+-	},
++                            command => 'iurt --iurtlogdir __IURTLOGDIR__ --copy_srpm --group -v 6 --config local_spool /home/iurt/iurt/__DIR__ --no_rsync --chrooted-urpmi -m __MEDIA__ -- http://repository/distrib/ -p \"__PACKAGER__\" -r __TARGET__ __ARCH__',
++                            packages => '/home/iurt/iurt/',
++                            log => '/home/iurt/iurt/', 
++                        },
++                    });
++                } @{$nodes{$arch}},
++            };
++        } keys %nodes),
+       },
+       media => { 
+ 	    default => { 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101123/b8ecddbe/attachment.html>
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000864.html b/zarb-ml/mageia-sysadm/2010-November/000864.html new file mode 100644 index 000000000..89f7382e8 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000864.html @@ -0,0 +1,105 @@ + + + + [Mageia-sysadm] [435] link root keys in the /var/lib/pubkeys ( easier than to change the location of root keys deployed by puppet ) + + + + + + + + + +

[Mageia-sysadm] [435] link root keys in the /var/lib/pubkeys ( easier than to change the location of root keys deployed by puppet )

+ root at mageia.org + root at mageia.org +
+ Wed Nov 24 00:17:46 CET 2010 +

+
+ +
Revision: 435
+Author:   misc
+Date:     2010-11-24 00:17:46 +0100 (Wed, 24 Nov 2010)
+Log Message:
+-----------
+link root keys in the /var/lib/pubkeys ( easier than to change the location of root keys deployed by puppet )
+
+Modified Paths:
+--------------
+    puppet/modules/restrictshell/manifests/init.pp
+
+Modified: puppet/modules/restrictshell/manifests/init.pp
+===================================================================
+--- puppet/modules/restrictshell/manifests/init.pp	2010-11-23 22:57:04 UTC (rev 434)
++++ puppet/modules/restrictshell/manifests/init.pp	2010-11-23 23:17:46 UTC (rev 435)
+@@ -38,6 +38,18 @@
+             mode => 755,
+         }
+ 
++        file { "$pubkeys_directory/root":
++            ensure => directory,
++            owner => root,
++            group => root,
++            mode => 700,
++        }
++
++        file { "$pubkeys_directory/root/authorized_keys":
++            ensure => "/root/.ssh/authorized_keys",
++            mode => 700,
++        }
++
+         $ldap_pwfile = "/etc/ldap.secret"
+         file { '/usr/local/bin/ldap-sshkey2file.py':
+             ensure => present,
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101124/c0ffe33b/attachment.html>
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000865.html b/zarb-ml/mageia-sysadm/2010-November/000865.html new file mode 100644 index 000000000..7d542e109 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000865.html @@ -0,0 +1,199 @@ + + + + [Mageia-sysadm] [436] move the ldap key from ssh logic to openssh module ( more logical ), and add the hook in openssh config file + + + + + + + + + +

[Mageia-sysadm] [436] move the ldap key from ssh logic to openssh module ( more logical ), and add the hook in openssh config file

+ root at mageia.org + root at mageia.org +
+ Wed Nov 24 00:17:47 CET 2010 +

+
+ +
Revision: 436
+Author:   misc
+Date:     2010-11-24 00:17:47 +0100 (Wed, 24 Nov 2010)
+Log Message:
+-----------
+move the ldap key from ssh logic to openssh module ( more logical ), and add the hook in openssh config file
+
+Modified Paths:
+--------------
+    puppet/modules/openssh/manifests/init.pp
+    puppet/modules/openssh/templates/sshd_config
+    puppet/modules/restrictshell/manifests/init.pp
+
+Modified: puppet/modules/openssh/manifests/init.pp
+===================================================================
+--- puppet/modules/openssh/manifests/init.pp	2010-11-23 23:17:46 UTC (rev 435)
++++ puppet/modules/openssh/manifests/init.pp	2010-11-23 23:17:47 UTC (rev 436)
+@@ -22,4 +22,43 @@
+         require => Package["openssh-server"],
+         content => template("openssh/sshd_config")
+     }
++
++ 
++    class ssh_keys_from_ldap {
++
++        package { 'python-ldap':
++            ensure => installed,
++        }
++
++        $pubkeys_directory = "/var/lib/pubkeys"
++        file { $pubkeys_directory:
++            ensure => directory,
++            owner => root,
++            group => root,
++            mode => 755,
++        #    before => Class["openssh"] 
++        }
++
++        file { "$pubkeys_directory/root":
++            ensure => directory,
++            owner => root,
++            group => root,
++            mode => 700,
++        }
++
++        file { "$pubkeys_directory/root/authorized_keys":
++            ensure => "/root/.ssh/authorized_keys",
++            mode => 700,
++        }
++
++        $ldap_pwfile = "/etc/ldap.secret"
++        file { '/usr/local/bin/ldap-sshkey2file.py':
++            ensure => present,
++            owner => root,
++            group => root,
++            mode => 755,
++            content => template("restrictshell/ldap-sshkey2file.py"),
++            require => Package['python-ldap']
++        }
++    } 
+ }
+
+Modified: puppet/modules/openssh/templates/sshd_config
+===================================================================
+--- puppet/modules/openssh/templates/sshd_config	2010-11-23 23:17:46 UTC (rev 435)
++++ puppet/modules/openssh/templates/sshd_config	2010-11-23 23:17:47 UTC (rev 436)
+@@ -45,6 +45,11 @@
+ #PubkeyAuthentication yes
+ #AuthorizedKeysFile	.ssh/authorized_keys
+ 
++<% if all_tags.include?('openssh::ssh_keys_from_ldap')  %>
++AuthorizedKeysFile /var/lib/config/pubkeys/%u/authorized_keys
++<% end %>
++
++
+ # For this to work you will also need host keys in /etc/ssh/ssh_known_hosts
+ #RhostsRSAAuthentication no
+ # similar for protocol version 2
+
+Modified: puppet/modules/restrictshell/manifests/init.pp
+===================================================================
+--- puppet/modules/restrictshell/manifests/init.pp	2010-11-23 23:17:46 UTC (rev 435)
++++ puppet/modules/restrictshell/manifests/init.pp	2010-11-23 23:17:47 UTC (rev 436)
+@@ -23,44 +23,7 @@
+             content => template("restrictshell/membersh-conf.pl"),
+         }
+     }
+-    
+-    class ssh_keys_from_ldap {
+ 
+-        package { 'python-ldap':
+-            ensure => installed,
+-        }
+-
+-        $pubkeys_directory = "/var/lib/pubkeys"
+-        file { $pubkeys_directory:
+-            ensure => directory,
+-            owner => root,
+-            group => root,
+-            mode => 755,
+-        }
+-
+-        file { "$pubkeys_directory/root":
+-            ensure => directory,
+-            owner => root,
+-            group => root,
+-            mode => 700,
+-        }
+-
+-        file { "$pubkeys_directory/root/authorized_keys":
+-            ensure => "/root/.ssh/authorized_keys",
+-            mode => 700,
+-        }
+-
+-        $ldap_pwfile = "/etc/ldap.secret"
+-        file { '/usr/local/bin/ldap-sshkey2file.py':
+-            ensure => present,
+-            owner => root,
+-            group => root,
+-            mode => 755,
+-            content => template("restrictshell/ldap-sshkey2file.py"),
+-            requires => Package['python-ldap']
+-        } 
+-    }
+-
+     define allow {
+         include shell
+         file { "/etc/membersh-conf.d/allow_$name.pl":
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101124/2bf5a314/attachment-0001.html>
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000866.html b/zarb-ml/mageia-sysadm/2010-November/000866.html new file mode 100644 index 000000000..e0e82876f --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000866.html @@ -0,0 +1,190 @@ + + + + [Mageia-sysadm] [437] the previous trick didn't work as tags are dependent in the order of + + + + + + + + + +

[Mageia-sysadm] [437] the previous trick didn't work as tags are dependent in the order of

+ root at mageia.org + root at mageia.org +
+ Wed Nov 24 00:17:49 CET 2010 +

+
+ +
Revision: 437
+Author:   misc
+Date:     2010-11-24 00:17:48 +0100 (Wed, 24 Nov 2010)
+Log Message:
+-----------
+the previous trick didn't work as tags are dependent in the order of
+declaration ( and that's bad (tm) ). This one is safer.
+
+Modified Paths:
+--------------
+    puppet/manifests/common.pp
+    puppet/modules/openssh/manifests/init.pp
+    puppet/modules/openssh/templates/sshd_config
+
+Added Paths:
+-----------
+    puppet/modules/openssh/templates/sshd_config_ldap
+
+Modified: puppet/manifests/common.pp
+===================================================================
+--- puppet/manifests/common.pp	2010-11-23 23:17:47 UTC (rev 436)
++++ puppet/manifests/common.pp	2010-11-23 23:17:48 UTC (rev 437)
+@@ -87,7 +87,7 @@
+ class default_mageia_server {
+     include timezone
+ 
+-    include openssh
++    include openssh::server
+     include default_ssh_root_key
+     include base_packages
+     include ntp
+
+Modified: puppet/modules/openssh/manifests/init.pp
+===================================================================
+--- puppet/modules/openssh/manifests/init.pp	2010-11-23 23:17:47 UTC (rev 436)
++++ puppet/modules/openssh/manifests/init.pp	2010-11-23 23:17:48 UTC (rev 437)
+@@ -1,31 +1,36 @@
+ class openssh {
++    class server {
++        # some trick to manage sftp server, who is arch dependent on mdv    
++        $path_to_sftp = "$lib_dir/ssh/"
+ 
+-    # some trick to manage sftp server, who is arch dependent on mdv    
+-    $path_to_sftp = "$lib_dir/ssh/"
++        package { "openssh-server":
++            ensure => installed
++        }
+ 
+-    package { "openssh-server":
+-        ensure => installed
+-    }
++        service { sshd:
++            ensure => running,
++            path => "/etc/init.d/sshd",
++            subscribe => [ Package["openssh-server"] ]
++        }
+ 
+-    service { sshd:
+-        ensure => running,
+-        path => "/etc/init.d/sshd",
+-        subscribe => [ Package["openssh-server"], File["sshd_config"] ]
+-    }
+ 
+-    file { "sshd_config":
+-        path => "/etc/ssh/sshd_config",
+-        ensure => present,
+-        owner => root,
+-        group => root,
+-        mode => 644,
+-        require => Package["openssh-server"],
+-        content => template("openssh/sshd_config")
++        file { "/etc/ssh/sshd_config":
++            ensure => present,
++            owner => root,
++            group => root,
++            mode => 644,
++            require => Package["openssh-server"],
++            content => template("openssh/sshd_config"),
++            notify => Service["sshd"]
++        }
+     }
+ 
+- 
+-    class ssh_keys_from_ldap {
++    class ssh_keys_from_ldap inherits server {
+ 
++        File ["/etc/ssh/sshd_config"] {
++            content => template("openssh/sshd_config","openssh/sshd_config_ldap")
++        }
++
+         package { 'python-ldap':
+             ensure => installed,
+         }
+
+Modified: puppet/modules/openssh/templates/sshd_config
+===================================================================
+--- puppet/modules/openssh/templates/sshd_config	2010-11-23 23:17:47 UTC (rev 436)
++++ puppet/modules/openssh/templates/sshd_config	2010-11-23 23:17:48 UTC (rev 437)
+@@ -45,11 +45,7 @@
+ #PubkeyAuthentication yes
+ #AuthorizedKeysFile	.ssh/authorized_keys
+ 
+-<% if all_tags.include?('openssh::ssh_keys_from_ldap')  %>
+-AuthorizedKeysFile /var/lib/config/pubkeys/%u/authorized_keys
+-<% end %>
+ 
+-
+ # For this to work you will also need host keys in /etc/ssh/ssh_known_hosts
+ #RhostsRSAAuthentication no
+ # similar for protocol version 2
+
+Added: puppet/modules/openssh/templates/sshd_config_ldap
+===================================================================
+--- puppet/modules/openssh/templates/sshd_config_ldap	                        (rev 0)
++++ puppet/modules/openssh/templates/sshd_config_ldap	2010-11-23 23:17:48 UTC (rev 437)
+@@ -0,0 +1,3 @@
++
++AuthorizedKeysFile /var/lib/config/pubkeys/%u/authorized_keys
++
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101124/ed0d31e3/attachment.html>
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000867.html b/zarb-ml/mageia-sysadm/2010-November/000867.html new file mode 100644 index 000000000..724802639 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000867.html @@ -0,0 +1,99 @@ + + + + [Mageia-sysadm] [438] fix permissions on tagmail.conf + + + + + + + + + +

[Mageia-sysadm] [438] fix permissions on tagmail.conf

+ root at mageia.org + root at mageia.org +
+ Wed Nov 24 00:23:17 CET 2010 +

+
+ +
Revision: 438
+Author:   misc
+Date:     2010-11-24 00:23:17 +0100 (Wed, 24 Nov 2010)
+Log Message:
+-----------
+fix permissions on tagmail.conf
+
+Modified Paths:
+--------------
+    puppet/modules/puppet/manifests/init.pp
+
+Modified: puppet/modules/puppet/manifests/init.pp
+===================================================================
+--- puppet/modules/puppet/manifests/init.pp	2010-11-23 23:17:48 UTC (rev 437)
++++ puppet/modules/puppet/manifests/init.pp	2010-11-23 23:23:17 UTC (rev 438)
+@@ -42,9 +42,9 @@
+ 
+         file { '/etc/puppet/tagmail.conf':
+             ensure => present,
+-            owner => puppet,
+-            group => puppet,
+-            mode => 700,
++            owner => root,
++            group => root,
++            mode => 644,
+             content => template("puppet/tagmail.conf"),
+        } 
+         
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101124/f4cf23bd/attachment.html>
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000868.html b/zarb-ml/mageia-sysadm/2010-November/000868.html new file mode 100644 index 000000000..4e0065b70 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000868.html @@ -0,0 +1,95 @@ + + + + [Mageia-sysadm] [439] use http repository + + + + + + + + + +

[Mageia-sysadm] [439] use http repository

+ root at mageia.org + root at mageia.org +
+ Wed Nov 24 00:23:20 CET 2010 +

+
+ +
Revision: 439
+Author:   blino
+Date:     2010-11-24 00:23:20 +0100 (Wed, 24 Nov 2010)
+Log Message:
+-----------
+use http repository
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/templates/iurt.cauldron.conf
+
+Modified: puppet/modules/buildsystem/templates/iurt.cauldron.conf
+===================================================================
+--- puppet/modules/buildsystem/templates/iurt.cauldron.conf	2010-11-23 23:23:17 UTC (rev 438)
++++ puppet/modules/buildsystem/templates/iurt.cauldron.conf	2010-11-23 23:23:20 UTC (rev 439)
+@@ -4,7 +4,7 @@
+  upload => 'iurt at pkgsubmit:~/uploads/',
+  upload_queue => 'iurt at pkgsubmit:~/uploads/queue/',
+  unwanted_packages => '^monotone-',
+- repository => '/mnt/BIG/dis/',
++ repository => 'http://repository.mageia.org/distrib/',
+  rsync_to => 'iurt at pkgsubmit:/mnt/BIG/dis/uploads/build/',
+  log_url => 'http://pkgsubmit.mageia.org/queue/build/',
+  admin => 'mageia-sysadm at mageia.org',
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101124/a4f0b902/attachment.html>
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000869.html b/zarb-ml/mageia-sysadm/2010-November/000869.html new file mode 100644 index 000000000..82f030044 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000869.html @@ -0,0 +1,101 @@ + + + + [Mageia-sysadm] [128] use iurt_root_command to add additional media + + + + + + + + + +

[Mageia-sysadm] [128] use iurt_root_command to add additional media

+ root at mageia.org + root at mageia.org +
+ Wed Nov 24 00:36:42 CET 2010 +

+
+ +
Revision: 128
+Author:   blino
+Date:     2010-11-24 00:36:41 +0100 (Wed, 24 Nov 2010)
+Log Message:
+-----------
+use iurt_root_command to add additional media
+
+Modified Paths:
+--------------
+    build_system/iurt/trunk/lib/Iurt/Urpmi.pm
+
+Modified: build_system/iurt/trunk/lib/Iurt/Urpmi.pm
+===================================================================
+--- build_system/iurt/trunk/lib/Iurt/Urpmi.pm	2010-11-23 22:46:39 UTC (rev 127)
++++ build_system/iurt/trunk/lib/Iurt/Urpmi.pm	2010-11-23 23:36:41 UTC (rev 128)
+@@ -215,12 +215,13 @@
+ 
+     plog("add chroot media: $run->{chrooted_media}");
+ 
+-    if (!perform_command("sudo chroot $chroot urpmi.addmedia $media", 
++    if (!perform_command("urpmi-addmedia $media", 
+ 		$run, $config, $cache, 
+ 		mail => $config->{admin},
+ 		timeout => 300, 
+ 		freq => 1,
+ 		retry => 2,
++		use_iurt_root_command => 1,
+ 		debug_mail => $run->{debug})) {
+ 	}
+     if (!check_media_added($chroot, $regexp)) { 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101124/9c192e3c/attachment-0001.html>
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000870.html b/zarb-ml/mageia-sysadm/2010-November/000870.html new file mode 100644 index 000000000..83b338ebf --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000870.html @@ -0,0 +1,69 @@ + + + + [Mageia-sysadm] Puppet Report for ecosse.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for ecosse.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 24 00:39:35 CET 2010 +

+
+ +
Wed Nov 24 00:39:35 +0100 2010 /Stage[main]/Buildsystem::Base/Ssh::Auth::Key[schedbot]/Ssh_auth_key_server[schedbot]/Ssh_authorized_key[schedbot] (err): Could not evaluate: No such file or directory - /home/iurt/.ssh
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000871.html b/zarb-ml/mageia-sysadm/2010-November/000871.html new file mode 100644 index 000000000..97fe5069e --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000871.html @@ -0,0 +1,95 @@ + + + + [Mageia-sysadm] [129] use chroot when adding additional media + + + + + + + + + +

[Mageia-sysadm] [129] use chroot when adding additional media

+ root at mageia.org + root at mageia.org +
+ Wed Nov 24 01:00:49 CET 2010 +

+
+ +
Revision: 129
+Author:   blino
+Date:     2010-11-24 01:00:49 +0100 (Wed, 24 Nov 2010)
+Log Message:
+-----------
+use chroot when adding additional media
+
+Modified Paths:
+--------------
+    build_system/iurt/trunk/lib/Iurt/Urpmi.pm
+
+Modified: build_system/iurt/trunk/lib/Iurt/Urpmi.pm
+===================================================================
+--- build_system/iurt/trunk/lib/Iurt/Urpmi.pm	2010-11-23 23:36:41 UTC (rev 128)
++++ build_system/iurt/trunk/lib/Iurt/Urpmi.pm	2010-11-24 00:00:49 UTC (rev 129)
+@@ -215,7 +215,7 @@
+ 
+     plog("add chroot media: $run->{chrooted_media}");
+ 
+-    if (!perform_command("urpmi-addmedia $media", 
++    if (!perform_command("chroot $chroot urpmi.addmedia $media", 
+ 		$run, $config, $cache, 
+ 		mail => $config->{admin},
+ 		timeout => 300, 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101124/f2aa4735/attachment.html>
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000872.html b/zarb-ml/mageia-sysadm/2010-November/000872.html new file mode 100644 index 000000000..fa79aa6c1 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000872.html @@ -0,0 +1,96 @@ + + + + [Mageia-sysadm] [440] - activate ldap only access + + + + + + + + + +

[Mageia-sysadm] [440] - activate ldap only access

+ root at mageia.org + root at mageia.org +
+ Wed Nov 24 01:14:49 CET 2010 +

+
+ +
Revision: 440
+Author:   misc
+Date:     2010-11-24 01:14:48 +0100 (Wed, 24 Nov 2010)
+Log Message:
+-----------
+- activate ldap only access
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-23 23:23:20 UTC (rev 439)
++++ puppet/manifests/nodes.pp	2010-11-24 00:14:48 UTC (rev 440)
+@@ -22,6 +22,9 @@
+     include ssh::auth::keymaster
+     include buildsystem::mainnode
+ 
++    include pam::commiters_access
++    include restrictshell::allow_svn
++
+     subversion::snapshot { "/etc/puppet":
+         source => "svn://svn.mageia.org/adm/puppet/"
+     }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101124/eff029fb/attachment.html>
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000873.html b/zarb-ml/mageia-sysadm/2010-November/000873.html new file mode 100644 index 000000000..5665009af --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000873.html @@ -0,0 +1,112 @@ + + + + [Mageia-sysadm] [130] don't resolve hostname in http repository address, using IP address + + + + + + + + + +

[Mageia-sysadm] [130] don't resolve hostname in http repository address, using IP address

+ root at mageia.org + root at mageia.org +
+ Wed Nov 24 01:14:49 CET 2010 +

+
+ +
Revision: 130
+Author:   blino
+Date:     2010-11-24 01:14:49 +0100 (Wed, 24 Nov 2010)
+Log Message:
+-----------
+don't resolve hostname in http repository address, using IP address
+would break vhosts, and we copy resolv.conf in the chroot anyway
+
+Modified Paths:
+--------------
+    build_system/iurt/trunk/lib/Iurt/Urpmi.pm
+
+Modified: build_system/iurt/trunk/lib/Iurt/Urpmi.pm
+===================================================================
+--- build_system/iurt/trunk/lib/Iurt/Urpmi.pm	2010-11-24 00:00:49 UTC (rev 129)
++++ build_system/iurt/trunk/lib/Iurt/Urpmi.pm	2010-11-24 00:14:49 UTC (rev 130)
+@@ -24,15 +24,15 @@
+     if ($run->{use_system_distrib}) {
+ 	$config->{basesystem_media_root} ||= $run->{use_system_distrib};
+     } elsif ($run->{chrooted_urpmi}) {
+-	my ($host) = $run->{chrooted_urpmi}{rooted_media} =~ m,(?:file|http|ftp)://([^/]*),;
+-	my ($_name, $_aliases, $_addrtype, $_length, @addrs) = gethostbyname($host);
+-
+-	my $ip = join('.', unpack('C4', $addrs[0]));
+-
+-	$ip =~ /\d+\.\d+\.\d+\.\d+/
+-		or die "FATAL: could not resolve $host ip address";
+-
+-	$run->{chrooted_urpmi}{rooted_media} =~ s/$host/$ip/;
++	#my ($host) = $run->{chrooted_urpmi}{rooted_media} =~ m,(?:file|http|ftp)://([^/]*),;
++	#my ($_name, $_aliases, $_addrtype, $_length, @addrs) = gethostbyname($host);
++        #
++	#my $ip = join('.', unpack('C4', $addrs[0]));
++        #
++	#$ip =~ /\d+\.\d+\.\d+\.\d+/
++	#	or die "FATAL: could not resolve $host ip address";
++        #
++	#$run->{chrooted_urpmi}{rooted_media} =~ s/$host/$ip/;
+ 	$run->{chrooted_media} = $run->{chrooted_urpmi}{rooted_media} .
+ 			"/$run->{distro}/$run->{my_arch}";
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101124/d7cab82a/attachment.html>
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000874.html b/zarb-ml/mageia-sysadm/2010-November/000874.html new file mode 100644 index 000000000..c5fe05c42 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000874.html @@ -0,0 +1,103 @@ + + + + [Mageia-sysadm] [441] extract repository variable + + + + + + + + + +

[Mageia-sysadm] [441] extract repository variable

+ root at mageia.org + root at mageia.org +
+ Wed Nov 24 01:25:19 CET 2010 +

+
+ +
Revision: 441
+Author:   blino
+Date:     2010-11-24 01:25:19 +0100 (Wed, 24 Nov 2010)
+Log Message:
+-----------
+extract repository variable
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/templates/upload.conf
+
+Modified: puppet/modules/buildsystem/templates/upload.conf
+===================================================================
+--- puppet/modules/buildsystem/templates/upload.conf	2010-11-24 00:14:48 UTC (rev 440)
++++ puppet/modules/buildsystem/templates/upload.conf	2010-11-24 00:25:19 UTC (rev 441)
+@@ -11,6 +11,7 @@
+    i586 => [ qw(ecosse) ],
+    x86_64 => [ qw(jonund) ],
+ );
++my $repository = "http://repository/distrib/";
+ 
+ {
+     bot => {
+@@ -24,7 +25,7 @@
+                             user => 'iurt',
+ # (spuk, 2007-08-16) disabled iurt_cache additional media, locks trying to mount -o bind
+ #			command => 'iurt --iurtlogdir __IURTLOGDIR__ --copy-srpm --group -v 6 --config local_spool /home/iurt/iurt/__DIR__ --no_rsync --chrooted-urpmi -m __MEDIA__ -- http://repository/distrib/ --additional-media -m __MEDIA__ -- file:///home/iurt_cache/ -p \"__PACKAGER__\" -r __TARGET__ __ARCH__',
+-                            command => 'iurt --iurtlogdir __IURTLOGDIR__ --copy_srpm --group -v 6 --config local_spool /home/iurt/iurt/__DIR__ --no_rsync --chrooted-urpmi -m __MEDIA__ -- http://repository/distrib/ -p \"__PACKAGER__\" -r __TARGET__ __ARCH__',
++                            command => "iurt --iurtlogdir __IURTLOGDIR__ --copy_srpm --group -v 6 --config local_spool /home/iurt/iurt/__DIR__ --no_rsync --chrooted-urpmi -m __MEDIA__ -- $repository -p \"__PACKAGER__\" -r __TARGET__ __ARCH__",
+                             packages => '/home/iurt/iurt/',
+                             log => '/home/iurt/iurt/', 
+                         },
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101124/ed1c99aa/attachment-0001.html>
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000875.html b/zarb-ml/mageia-sysadm/2010-November/000875.html new file mode 100644 index 000000000..b0adbe2ca --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000875.html @@ -0,0 +1,95 @@ + + + + [Mageia-sysadm] [442] update comment as wel + + + + + + + + + +

[Mageia-sysadm] [442] update comment as wel

+ root at mageia.org + root at mageia.org +
+ Wed Nov 24 01:25:58 CET 2010 +

+
+ +
Revision: 442
+Author:   blino
+Date:     2010-11-24 01:25:57 +0100 (Wed, 24 Nov 2010)
+Log Message:
+-----------
+update comment as wel
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/templates/upload.conf
+
+Modified: puppet/modules/buildsystem/templates/upload.conf
+===================================================================
+--- puppet/modules/buildsystem/templates/upload.conf	2010-11-24 00:25:19 UTC (rev 441)
++++ puppet/modules/buildsystem/templates/upload.conf	2010-11-24 00:25:57 UTC (rev 442)
+@@ -24,7 +24,7 @@
+                         iurt => {
+                             user => 'iurt',
+ # (spuk, 2007-08-16) disabled iurt_cache additional media, locks trying to mount -o bind
+-#			command => 'iurt --iurtlogdir __IURTLOGDIR__ --copy-srpm --group -v 6 --config local_spool /home/iurt/iurt/__DIR__ --no_rsync --chrooted-urpmi -m __MEDIA__ -- http://repository/distrib/ --additional-media -m __MEDIA__ -- file:///home/iurt_cache/ -p \"__PACKAGER__\" -r __TARGET__ __ARCH__',
++#			command => "iurt --iurtlogdir __IURTLOGDIR__ --copy-srpm --group -v 6 --config local_spool /home/iurt/iurt/__DIR__ --no_rsync --chrooted-urpmi -m __MEDIA__ -- $repository --additional-media -m __MEDIA__ -- file:///home/iurt_cache/ -p \"__PACKAGER__\" -r __TARGET__ __ARCH__",
+                             command => "iurt --iurtlogdir __IURTLOGDIR__ --copy_srpm --group -v 6 --config local_spool /home/iurt/iurt/__DIR__ --no_rsync --chrooted-urpmi -m __MEDIA__ -- $repository -p \"__PACKAGER__\" -r __TARGET__ __ARCH__",
+                             packages => '/home/iurt/iurt/',
+                             log => '/home/iurt/iurt/', 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101124/d1ee902c/attachment.html>
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000876.html b/zarb-ml/mageia-sysadm/2010-November/000876.html new file mode 100644 index 000000000..153d66437 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000876.html @@ -0,0 +1,109 @@ + + + + [Mageia-sysadm] [443] extract homedir + + + + + + + + + +

[Mageia-sysadm] [443] extract homedir

+ root at mageia.org + root at mageia.org +
+ Wed Nov 24 01:27:44 CET 2010 +

+
+ +
Revision: 443
+Author:   blino
+Date:     2010-11-24 01:27:43 +0100 (Wed, 24 Nov 2010)
+Log Message:
+-----------
+extract homedir
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/templates/upload.conf
+
+Modified: puppet/modules/buildsystem/templates/upload.conf
+===================================================================
+--- puppet/modules/buildsystem/templates/upload.conf	2010-11-24 00:25:57 UTC (rev 442)
++++ puppet/modules/buildsystem/templates/upload.conf	2010-11-24 00:27:43 UTC (rev 443)
+@@ -12,6 +12,7 @@
+    x86_64 => [ qw(jonund) ],
+ );
+ my $repository = "http://repository/distrib/";
++my $homedir = "/home/iurt";
+ 
+ {
+     bot => {
+@@ -24,10 +25,10 @@
+                         iurt => {
+                             user => 'iurt',
+ # (spuk, 2007-08-16) disabled iurt_cache additional media, locks trying to mount -o bind
+-#			command => "iurt --iurtlogdir __IURTLOGDIR__ --copy-srpm --group -v 6 --config local_spool /home/iurt/iurt/__DIR__ --no_rsync --chrooted-urpmi -m __MEDIA__ -- $repository --additional-media -m __MEDIA__ -- file:///home/iurt_cache/ -p \"__PACKAGER__\" -r __TARGET__ __ARCH__",
+-                            command => "iurt --iurtlogdir __IURTLOGDIR__ --copy_srpm --group -v 6 --config local_spool /home/iurt/iurt/__DIR__ --no_rsync --chrooted-urpmi -m __MEDIA__ -- $repository -p \"__PACKAGER__\" -r __TARGET__ __ARCH__",
+-                            packages => '/home/iurt/iurt/',
+-                            log => '/home/iurt/iurt/', 
++#			command => "iurt --iurtlogdir __IURTLOGDIR__ --copy-srpm --group -v 6 --config local_spool $homedir/iurt/__DIR__ --no_rsync --chrooted-urpmi -m __MEDIA__ -- $repository --additional-media -m __MEDIA__ -- file://$homedir_cache/ -p \"__PACKAGER__\" -r __TARGET__ __ARCH__",
++                            command => "iurt --iurtlogdir __IURTLOGDIR__ --copy_srpm --group -v 6 --config local_spool $homedir/iurt/__DIR__ --no_rsync --chrooted-urpmi -m __MEDIA__ -- $repository -p \"__PACKAGER__\" -r __TARGET__ __ARCH__",
++                            packages => '$homedir/iurt/',
++                            log => '$homedir/iurt/', 
+                         },
+                     });
+                 } @{$nodes{$arch}},
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101124/ddca9f4e/attachment.html>
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000877.html b/zarb-ml/mageia-sysadm/2010-November/000877.html new file mode 100644 index 000000000..d486b5cdb --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000877.html @@ -0,0 +1,95 @@ + + + + [Mageia-sysadm] [444] if we use cache, make it use /home/iurt/cache instead of /home/ iurt_cache + + + + + + + + + +

[Mageia-sysadm] [444] if we use cache, make it use /home/iurt/cache instead of /home/ iurt_cache

+ root at mageia.org + root at mageia.org +
+ Wed Nov 24 01:28:05 CET 2010 +

+
+ +
Revision: 444
+Author:   blino
+Date:     2010-11-24 01:28:05 +0100 (Wed, 24 Nov 2010)
+Log Message:
+-----------
+if we use cache, make it use /home/iurt/cache instead of /home/iurt_cache
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/templates/upload.conf
+
+Modified: puppet/modules/buildsystem/templates/upload.conf
+===================================================================
+--- puppet/modules/buildsystem/templates/upload.conf	2010-11-24 00:27:43 UTC (rev 443)
++++ puppet/modules/buildsystem/templates/upload.conf	2010-11-24 00:28:05 UTC (rev 444)
+@@ -25,7 +25,7 @@
+                         iurt => {
+                             user => 'iurt',
+ # (spuk, 2007-08-16) disabled iurt_cache additional media, locks trying to mount -o bind
+-#			command => "iurt --iurtlogdir __IURTLOGDIR__ --copy-srpm --group -v 6 --config local_spool $homedir/iurt/__DIR__ --no_rsync --chrooted-urpmi -m __MEDIA__ -- $repository --additional-media -m __MEDIA__ -- file://$homedir_cache/ -p \"__PACKAGER__\" -r __TARGET__ __ARCH__",
++#			command => "iurt --iurtlogdir __IURTLOGDIR__ --copy-srpm --group -v 6 --config local_spool $homedir/iurt/__DIR__ --no_rsync --chrooted-urpmi -m __MEDIA__ -- $repository --additional-media -m __MEDIA__ -- file://$homedir/cache/ -p \"__PACKAGER__\" -r __TARGET__ __ARCH__",
+                             command => "iurt --iurtlogdir __IURTLOGDIR__ --copy_srpm --group -v 6 --config local_spool $homedir/iurt/__DIR__ --no_rsync --chrooted-urpmi -m __MEDIA__ -- $repository -p \"__PACKAGER__\" -r __TARGET__ __ARCH__",
+                             packages => '$homedir/iurt/',
+                             log => '$homedir/iurt/', 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101124/3d0fc1e5/attachment.html>
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000878.html b/zarb-ml/mageia-sysadm/2010-November/000878.html new file mode 100644 index 000000000..0360316b3 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000878.html @@ -0,0 +1,97 @@ + + + + [Mageia-sysadm] [445] fix homedir usage + + + + + + + + + +

[Mageia-sysadm] [445] fix homedir usage

+ root at mageia.org + root at mageia.org +
+ Wed Nov 24 01:29:20 CET 2010 +

+
+ +
Revision: 445
+Author:   blino
+Date:     2010-11-24 01:29:20 +0100 (Wed, 24 Nov 2010)
+Log Message:
+-----------
+fix homedir usage
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/templates/upload.conf
+
+Modified: puppet/modules/buildsystem/templates/upload.conf
+===================================================================
+--- puppet/modules/buildsystem/templates/upload.conf	2010-11-24 00:28:05 UTC (rev 444)
++++ puppet/modules/buildsystem/templates/upload.conf	2010-11-24 00:29:20 UTC (rev 445)
+@@ -27,8 +27,8 @@
+ # (spuk, 2007-08-16) disabled iurt_cache additional media, locks trying to mount -o bind
+ #			command => "iurt --iurtlogdir __IURTLOGDIR__ --copy-srpm --group -v 6 --config local_spool $homedir/iurt/__DIR__ --no_rsync --chrooted-urpmi -m __MEDIA__ -- $repository --additional-media -m __MEDIA__ -- file://$homedir/cache/ -p \"__PACKAGER__\" -r __TARGET__ __ARCH__",
+                             command => "iurt --iurtlogdir __IURTLOGDIR__ --copy_srpm --group -v 6 --config local_spool $homedir/iurt/__DIR__ --no_rsync --chrooted-urpmi -m __MEDIA__ -- $repository -p \"__PACKAGER__\" -r __TARGET__ __ARCH__",
+-                            packages => '$homedir/iurt/',
+-                            log => '$homedir/iurt/', 
++                            packages => "$homedir/iurt/",
++                            log => "$homedir/iurt/", 
+                         },
+                     });
+                 } @{$nodes{$arch}},
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101124/123ffdea/attachment-0001.html>
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000879.html b/zarb-ml/mageia-sysadm/2010-November/000879.html new file mode 100644 index 000000000..34222db8f --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000879.html @@ -0,0 +1,95 @@ + + + + [Mageia-sysadm] [446] use FQDN for repository + + + + + + + + + +

[Mageia-sysadm] [446] use FQDN for repository

+ root at mageia.org + root at mageia.org +
+ Wed Nov 24 01:30:45 CET 2010 +

+
+ +
Revision: 446
+Author:   blino
+Date:     2010-11-24 01:30:45 +0100 (Wed, 24 Nov 2010)
+Log Message:
+-----------
+use FQDN for repository
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/templates/upload.conf
+
+Modified: puppet/modules/buildsystem/templates/upload.conf
+===================================================================
+--- puppet/modules/buildsystem/templates/upload.conf	2010-11-24 00:29:20 UTC (rev 445)
++++ puppet/modules/buildsystem/templates/upload.conf	2010-11-24 00:30:45 UTC (rev 446)
+@@ -11,7 +11,7 @@
+    i586 => [ qw(ecosse) ],
+    x86_64 => [ qw(jonund) ],
+ );
+-my $repository = "http://repository/distrib/";
++my $repository = "http://repository.mageia.org/distrib/";
+ my $homedir = "/home/iurt";
+ 
+ {
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101124/d3349f80/attachment.html>
+
+ + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000880.html b/zarb-ml/mageia-sysadm/2010-November/000880.html new file mode 100644 index 000000000..8da7859f3 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000880.html @@ -0,0 +1,127 @@ + + + + [Mageia-sysadm] pam ldap deployement tonight + + + + + + + + + +

[Mageia-sysadm] pam ldap deployement tonight

+ Michael Scherer + misc at zarb.org +
+ Wed Nov 24 02:11:27 CET 2010 +

+
+ +
Le mardi 23 novembre 2010 à 18:22 +0100, Michael Scherer a écrit :
+> Ok so everything is in the title.
+> 
+> I will deploy tonight pam_ldap on valstar, likely after midnight. I will
+> warn on irc ( #mageia-sysadm ) before, people should expect potential
+> unavailability of the service.  
+
+So, as said, I did it on 1h CEST.
+
+I have removed accounts from /etc/shadow and others files, and I have
+reassigned files to their owner. Everybody will be in mga-users by
+default.
+
+Since some people were not in ldap, I have sent them a mail and take
+care of that.
+
+And some accounts were surprising :
+- mageia
+- pacha 
+
+I suspect the first one is the user that replaced the mandrake one, but
+I think we decided to use more descriptive name. SO I think we can
+remove it.
+
+Pacha is a user created the 5 november, and never connected, nor did
+anything. I suspect this was a test user, so I guess we can remove it
+too ?
+
+I have also promoted olivier burger as commiter, as asked on #mageia-web
+today. I will see with him how it goes for our first real pure ldap
+user, who is not admin ( I think I may have did something wrong in
+system-auth with required/sufficient ). 
+
+Next thing to do : 
+- fix stuff not working ( just in case )
+- reassign svn repository to the proper group ( mga-commiters ).
+  - use svn::repository to handle them 
+
+- add a secondary ldap on krampouizh 
+- make sure pam_ldap use the 2 ldap
+
+> Please be sure that your account in catdap is correct. Please also make
+> sure that the ssh keys is ok. For now, we do not have decided to roll
+> out the ssh key deployment from ldap ( ie, this requires some test ) but
+> since buchan has enabled it in catdap, please add your key there ( and
+> send us bugs and feedback ). 
+
+I have tested this too in the evening, and basically, after fighting
+against puppet parser, I think I managed to make him do what I wanted. I
+have checked, this will not break the ssh root access. 
+
+Next steps :
+- add our ssh keys in catdap ( since buchan added the support for it )
+- check that the key is properly extracted on a testvm and that
+everything still work
+- migrate on this scheme.
+
+
+-- 
+Michael Scherer
+
+
+ + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000881.html b/zarb-ml/mageia-sysadm/2010-November/000881.html new file mode 100644 index 000000000..e063921ee --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000881.html @@ -0,0 +1,102 @@ + + + + [Mageia-sysadm] [447] remove empty line from the result file ( <% vs <%- ) + + + + + + + + + +

[Mageia-sysadm] [447] remove empty line from the result file ( <% vs <%- )

+ root at mageia.org + root at mageia.org +
+ Wed Nov 24 02:21:09 CET 2010 +

+
+ +
Revision: 447
+Author:   misc
+Date:     2010-11-24 02:21:09 +0100 (Wed, 24 Nov 2010)
+Log Message:
+-----------
+remove empty line from the result file ( <% vs <%- )
+
+Modified Paths:
+--------------
+    puppet/modules/pam/templates/system-auth
+
+Modified: puppet/modules/pam/templates/system-auth
+===================================================================
+--- puppet/modules/pam/templates/system-auth	2010-11-24 00:30:45 UTC (rev 446)
++++ puppet/modules/pam/templates/system-auth	2010-11-24 01:21:09 UTC (rev 447)
+@@ -5,12 +5,12 @@
+ auth    [abort=ignore success=done new_authtok_reqd=done default=ignore]  pam_tcb.so shadow fork nullok prefix=$2a$ count=8
+ auth    sufficient   pam_unix.so likeauth nullok try_first_pass
+ auth    sufficient   pam_ldap.so use_first_pass
+-<% if access_class = 'admin' %>
++<%- if access_class = 'admin' -%>
+ auth    required     pam_wheel.so group=mga-sysadmin
+-<% end %>
+-<% if access_class = 'commiters' %>
++<%- end -%>
++<%- if access_class = 'commiters' -%>
+ auth    required     pam_wheel.so group=mga-commiters
+-<% end %>
++<%- end -%>
+ auth    required     pam_deny.so
+ 
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101124/1f019035/attachment.html>
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000882.html b/zarb-ml/mageia-sysadm/2010-November/000882.html new file mode 100644 index 000000000..ce6bd1b27 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000882.html @@ -0,0 +1,98 @@ + + + + [Mageia-sysadm] [448] pam_wheel is made to be used with su only. + + + + + + + + + +

[Mageia-sysadm] [448] pam_wheel is made to be used with su only.

+ root at mageia.org + root at mageia.org +
+ Wed Nov 24 02:27:30 CET 2010 +

+
+ +
Revision: 448
+Author:   misc
+Date:     2010-11-24 02:27:30 +0100 (Wed, 24 Nov 2010)
+Log Message:
+-----------
+pam_wheel is made to be used with su only. pam_succeed_if seems to be the proper module
+
+Modified Paths:
+--------------
+    puppet/modules/pam/templates/system-auth
+
+Modified: puppet/modules/pam/templates/system-auth
+===================================================================
+--- puppet/modules/pam/templates/system-auth	2010-11-24 01:21:09 UTC (rev 447)
++++ puppet/modules/pam/templates/system-auth	2010-11-24 01:27:30 UTC (rev 448)
+@@ -6,10 +6,10 @@
+ auth    sufficient   pam_unix.so likeauth nullok try_first_pass
+ auth    sufficient   pam_ldap.so use_first_pass
+ <%- if access_class = 'admin' -%>
+-auth    required     pam_wheel.so group=mga-sysadmin
++auth    required     pam_succeed_if.so quiet user ingroup mga-sysadmin
+ <%- end -%>
+ <%- if access_class = 'commiters' -%>
+-auth    required     pam_wheel.so group=mga-commiters
++auth    required     pam_succeed_if.so quiet user ingroup mga-commiters
+ <%- end -%>
+ auth    required     pam_deny.so
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101124/63abbb7c/attachment.html>
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000883.html b/zarb-ml/mageia-sysadm/2010-November/000883.html new file mode 100644 index 000000000..209b69948 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000883.html @@ -0,0 +1,109 @@ + + + + [Mageia-sysadm] [449] move the group restriction at the top of the file, or they are useless + + + + + + + + + +

[Mageia-sysadm] [449] move the group restriction at the top of the file, or they are useless

+ root at mageia.org + root at mageia.org +
+ Wed Nov 24 02:39:17 CET 2010 +

+
+ +
Revision: 449
+Author:   misc
+Date:     2010-11-24 02:39:17 +0100 (Wed, 24 Nov 2010)
+Log Message:
+-----------
+move the group restriction at the top of the file, or they are useless
+
+Modified Paths:
+--------------
+    puppet/modules/pam/templates/system-auth
+
+Modified: puppet/modules/pam/templates/system-auth
+===================================================================
+--- puppet/modules/pam/templates/system-auth	2010-11-24 01:27:30 UTC (rev 448)
++++ puppet/modules/pam/templates/system-auth	2010-11-24 01:39:17 UTC (rev 449)
+@@ -1,16 +1,16 @@
+-auth    required    pam_env.so
++auth    required     pam_env.so
++<%- if access_class = 'admin' -%>
++auth    required     pam_succeed_if.so quiet user ingroup mga-sysadmin
++<%- end -%>
++<%- if access_class = 'commiters' -%>
++auth    required     pam_succeed_if.so quiet user ingroup mga-commiters
++<%- end -%>
+ # this part is here if the module don't exist
+ # basically, the idea is to copy the exact detail of sufficient,
+ # and add abort=ignore
+ auth    [abort=ignore success=done new_authtok_reqd=done default=ignore]  pam_tcb.so shadow fork nullok prefix=$2a$ count=8
+ auth    sufficient   pam_unix.so likeauth nullok try_first_pass
+ auth    sufficient   pam_ldap.so use_first_pass
+-<%- if access_class = 'admin' -%>
+-auth    required     pam_succeed_if.so quiet user ingroup mga-sysadmin
+-<%- end -%>
+-<%- if access_class = 'commiters' -%>
+-auth    required     pam_succeed_if.so quiet user ingroup mga-commiters
+-<%- end -%>
+ auth    required     pam_deny.so
+ 
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101124/190baf95/attachment-0001.html>
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000884.html b/zarb-ml/mageia-sysadm/2010-November/000884.html new file mode 100644 index 000000000..0f397145d --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000884.html @@ -0,0 +1,133 @@ + + + + [Mageia-sysadm] [450] s/commiters/committers/, to be in sync with the ldap group name and the dictionnary + + + + + + + + + +

[Mageia-sysadm] [450] s/commiters/committers/, to be in sync with the ldap group name and the dictionnary

+ root at mageia.org + root at mageia.org +
+ Wed Nov 24 03:08:32 CET 2010 +

+
+ +
Revision: 450
+Author:   misc
+Date:     2010-11-24 03:08:32 +0100 (Wed, 24 Nov 2010)
+Log Message:
+-----------
+s/commiters/committers/, to be in sync with the ldap group name and the dictionnary
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+    puppet/modules/pam/manifests/init.pp
+    puppet/modules/pam/templates/system-auth
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-24 01:39:17 UTC (rev 449)
++++ puppet/manifests/nodes.pp	2010-11-24 02:08:32 UTC (rev 450)
+@@ -22,7 +22,7 @@
+     include ssh::auth::keymaster
+     include buildsystem::mainnode
+ 
+-    include pam::commiters_access
++    include pam::committers_access
+     include restrictshell::allow_svn
+ 
+     subversion::snapshot { "/etc/puppet":
+
+Modified: puppet/modules/pam/manifests/init.pp
+===================================================================
+--- puppet/modules/pam/manifests/init.pp	2010-11-24 01:39:17 UTC (rev 449)
++++ puppet/modules/pam/manifests/init.pp	2010-11-24 02:08:32 UTC (rev 450)
+@@ -50,13 +50,13 @@
+   }
+ 
+   # for server where people can connect with ssh ( git, svn )
+-  class commiters_access inherits base {
++  class committers_access inherits base {
+     # this is required, as we force the shell to be the restricted one
+     # openssh will detect if the file do not exist and while refuse to log the
+     # user, and erase the password ( see pam_auth.c in openssh code, seek badpw )
+     # so the file must exist
+     # permission to use svn, git, etc must be added separatly
+     include restrictshell::shell
+-    $access_class = "commiters"
++    $access_class = "committers"
+   }
+ }
+
+Modified: puppet/modules/pam/templates/system-auth
+===================================================================
+--- puppet/modules/pam/templates/system-auth	2010-11-24 01:39:17 UTC (rev 449)
++++ puppet/modules/pam/templates/system-auth	2010-11-24 02:08:32 UTC (rev 450)
+@@ -2,8 +2,8 @@
+ <%- if access_class = 'admin' -%>
+ auth    required     pam_succeed_if.so quiet user ingroup mga-sysadmin
+ <%- end -%>
+-<%- if access_class = 'commiters' -%>
+-auth    required     pam_succeed_if.so quiet user ingroup mga-commiters
++<%- if access_class = 'committers' -%>
++auth    required     pam_succeed_if.so quiet user ingroup mga-committers
+ <%- end -%>
+ # this part is here if the module don't exist
+ # basically, the idea is to copy the exact detail of sufficient,
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101124/1488153c/attachment.html>
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000885.html b/zarb-ml/mageia-sysadm/2010-November/000885.html new file mode 100644 index 000000000..d20a9b153 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000885.html @@ -0,0 +1,144 @@ + + + + [Mageia-sysadm] [451] restrict login to people of the group mga-commiters ( previous try was + + + + + + + + + +

[Mageia-sysadm] [451] restrict login to people of the group mga-commiters ( previous try was

+ root at mageia.org + root at mageia.org +
+ Wed Nov 24 03:50:46 CET 2010 +

+
+ +
Revision: 451
+Author:   misc
+Date:     2010-11-24 03:50:45 +0100 (Wed, 24 Nov 2010)
+Log Message:
+-----------
+restrict login to people of the group mga-commiters ( previous try was
+not working with ssh key )
+
+Modified Paths:
+--------------
+    puppet/modules/pam/manifests/init.pp
+    puppet/modules/pam/templates/system-auth
+
+Modified: puppet/modules/pam/manifests/init.pp
+===================================================================
+--- puppet/modules/pam/manifests/init.pp	2010-11-24 02:08:32 UTC (rev 450)
++++ puppet/modules/pam/manifests/init.pp	2010-11-24 02:50:45 UTC (rev 451)
+@@ -43,14 +43,17 @@
+          content => template("pam/ldap.conf")
+       }
+   } 
+-  
++ 
++  # beware , this two classes are exclusive
++ 
+   # for server where only admins can connect
+-  class admin_access inherits base {
++  class admin_access {
+     $access_class = "admin"
++    include base
+   }
+ 
+   # for server where people can connect with ssh ( git, svn )
+-  class committers_access inherits base {
++  class committers_access {
+     # this is required, as we force the shell to be the restricted one
+     # openssh will detect if the file do not exist and while refuse to log the
+     # user, and erase the password ( see pam_auth.c in openssh code, seek badpw )
+@@ -58,5 +61,6 @@
+     # permission to use svn, git, etc must be added separatly
+     include restrictshell::shell
+     $access_class = "committers"
++    include base
+   }
+ }
+
+Modified: puppet/modules/pam/templates/system-auth
+===================================================================
+--- puppet/modules/pam/templates/system-auth	2010-11-24 02:08:32 UTC (rev 450)
++++ puppet/modules/pam/templates/system-auth	2010-11-24 02:50:45 UTC (rev 451)
+@@ -1,10 +1,4 @@
+ auth    required     pam_env.so
+-<%- if access_class = 'admin' -%>
+-auth    required     pam_succeed_if.so quiet user ingroup mga-sysadmin
+-<%- end -%>
+-<%- if access_class = 'committers' -%>
+-auth    required     pam_succeed_if.so quiet user ingroup mga-committers
+-<%- end -%>
+ # this part is here if the module don't exist
+ # basically, the idea is to copy the exact detail of sufficient,
+ # and add abort=ignore
+@@ -15,6 +9,12 @@
+ 
+ 
+ account sufficient  pam_localuser.so
++<%- if access_class == 'admin' -%>
++account required    pam_succeed_if.so quiet user ingroup mga-sysadmin
++<%- end -%>
++<%- if access_class == 'committers' -%>
++account required    pam_succeed_if.so quiet user ingroup mga-committers
++<%- end -%>
+ account sufficient  pam_ldap.so
+ account required    pam_deny.so
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101124/878396e6/attachment.html>
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000886.html b/zarb-ml/mageia-sysadm/2010-November/000886.html new file mode 100644 index 000000000..5f37a8fa3 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000886.html @@ -0,0 +1,69 @@ + + + + [Mageia-sysadm] Puppet Report for krampouezh.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for krampouezh.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Wed Nov 24 07:48:01 CET 2010 +

+
+ +
Wed Nov 24 07:48:01 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: end of file reached
+Wed Nov 24 07:48:01 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000887.html b/zarb-ml/mageia-sysadm/2010-November/000887.html new file mode 100644 index 000000000..eca395b5c --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000887.html @@ -0,0 +1,94 @@ + + + + [Mageia-sysadm] [131] remove last sudo command call + + + + + + + + + +

[Mageia-sysadm] [131] remove last sudo command call

+ root at mageia.org + root at mageia.org +
+ Wed Nov 24 08:22:06 CET 2010 +

+
+ +
Revision: 131
+Author:   blino
+Date:     2010-11-24 08:22:06 +0100 (Wed, 24 Nov 2010)
+Log Message:
+-----------
+remove last sudo command call
+
+Modified Paths:
+--------------
+    build_system/iurt/trunk/lib/Iurt/Urpmi.pm
+
+Modified: build_system/iurt/trunk/lib/Iurt/Urpmi.pm
+===================================================================
+--- build_system/iurt/trunk/lib/Iurt/Urpmi.pm	2010-11-24 00:14:49 UTC (rev 130)
++++ build_system/iurt/trunk/lib/Iurt/Urpmi.pm	2010-11-24 07:22:06 UTC (rev 131)
+@@ -184,7 +184,7 @@
+ 
+ sub check_media_added {
+     my ($chroot, $media) = @_;
+-    my $medias = `sudo chroot $chroot urpmq --list-media 2>&1`;
++    my $medias = `urpmq --root $chroot --list-media 2>&1`;
+     print "MEDIA $medias ($media)\n";
+     $medias =~ /$media/m;
+ }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101124/a773313f/attachment.html>
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000888.html b/zarb-ml/mageia-sysadm/2010-November/000888.html new file mode 100644 index 000000000..3cb397b3d --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000888.html @@ -0,0 +1,122 @@ + + + + [Mageia-sysadm] [132] remove sudo calls, iurt_root_command is supposed to be run as root already + + + + + + + + + +

[Mageia-sysadm] [132] remove sudo calls, iurt_root_command is supposed to be run as root already

+ root at mageia.org + root at mageia.org +
+ Wed Nov 24 08:41:20 CET 2010 +

+
+ +
Revision: 132
+Author:   blino
+Date:     2010-11-24 08:41:20 +0100 (Wed, 24 Nov 2010)
+Log Message:
+-----------
+remove sudo calls, iurt_root_command is supposed to be run as root already
+
+Modified Paths:
+--------------
+    build_system/iurt/trunk/iurt_root_command
+
+Modified: build_system/iurt/trunk/iurt_root_command
+===================================================================
+--- build_system/iurt/trunk/iurt_root_command	2010-11-24 07:22:06 UTC (rev 131)
++++ build_system/iurt/trunk/iurt_root_command	2010-11-24 07:41:20 UTC (rev 132)
+@@ -36,7 +36,6 @@
+ 
+ my %authorized_modules = ('unionfs' => 1);
+ my %authorized_rw_bindmounts = ( map { $_ => 1 } qw(/proc /dev/pts /var/cache/icecream) );
+-my $sudo = '/usr/bin/sudo';
+ 
+ $run{todo} = [];
+ @params = ( 
+@@ -203,8 +202,8 @@
+ 	    return 1;
+ 	}
+     }
+-    system($sudo, "/sbin/depmod", "-a");
+-    !system($sudo, "/sbin/modprobe", "-f", $module);
++    system("/sbin/depmod", "-a");
++    !system("/sbin/modprobe", "-f", $module);
+ }
+ 
+ sub mkdir {
+@@ -248,7 +247,7 @@
+ 		    plog('FAIL', "removal of $f forbidden");
+ 		    $ok = 0;
+ 		} else {
+-		    system($sudo, 'rm', '-rf', $f);
++		    system('rm', '-rf', $f);
+ 		    plog('DEBUG', "removing $f");
+ 		    $done = 1;
+ 		}
+@@ -301,7 +300,7 @@
+ 		plog('WARN', "can't copy directories without the -r option");
+ 		$ok = 0;
+ 	    } else {
+-		system($sudo, 'cp', '-raf', $f);
++		system('cp', '-raf', $f);
+ 		plog('DEBUG', "copying $f -> $dest");
+ 		$done = 1;
+ 	    }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101124/72ae19d7/attachment-0001.html>
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000889.html b/zarb-ml/mageia-sysadm/2010-November/000889.html new file mode 100644 index 000000000..9cab653e8 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000889.html @@ -0,0 +1,98 @@ + + + + [Mageia-sysadm] [452] - improve error message when trying to get a interactive shell + + + + + + + + + +

[Mageia-sysadm] [452] - improve error message when trying to get a interactive shell

+ root at mageia.org + root at mageia.org +
+ Wed Nov 24 12:14:33 CET 2010 +

+
+ +
Revision: 452
+Author:   misc
+Date:     2010-11-24 12:14:33 +0100 (Wed, 24 Nov 2010)
+Log Message:
+-----------
+- improve error message when trying to get a interactive shell
+
+Modified Paths:
+--------------
+    puppet/modules/restrictshell/templates/sv_membersh.pl
+
+Modified: puppet/modules/restrictshell/templates/sv_membersh.pl
+===================================================================
+--- puppet/modules/restrictshell/templates/sv_membersh.pl	2010-11-24 02:50:45 UTC (rev 451)
++++ puppet/modules/restrictshell/templates/sv_membersh.pl	2010-11-24 11:14:33 UTC (rev 452)
+@@ -149,7 +149,11 @@
+ }
+ 
+ unless (-e "/etc/membersh-errormsg") {
+-    print STDERR "You tried to execute: @ARGV[1..$#ARGV]\n";
++    if ($ARGV) {
++        print STDERR "You tried to execute: @ARGV[1..$#ARGV]\n";
++    } else {
++        print STDERR "You tried to run a interactive shell.\n"
++    }
+     print STDERR "Sorry, you are not allowed to execute that command.\n";
+ } else {
+     open(ERRORMSG, "< /etc/membersh-errormsg");
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101124/d2c67679/attachment.html>
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000890.html b/zarb-ml/mageia-sysadm/2010-November/000890.html new file mode 100644 index 000000000..62e2a5646 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000890.html @@ -0,0 +1,82 @@ + + + + [Mageia-sysadm] pam ldap deployement tonight + + + + + + + + + +

[Mageia-sysadm] pam ldap deployement tonight

+ Michael Scherer + misc at zarb.org +
+ Wed Nov 24 12:15:07 CET 2010 +

+
+ +
Le mercredi 24 novembre 2010 à 02:11 +0100, Michael Scherer a écrit :
+
+> Next thing to do : 
+> - fix stuff not working ( just in case )
+> - reassign svn repository to the proper group ( mga-commiters ).
+>   - use svn::repository to handle them 
+> 
+> - add a secondary ldap on krampouizh 
+> - make sure pam_ldap use the 2 ldap
+
+- remove unused accounts on krampouezh
+( since we have migrated svn to valstar, I think they are not longer
+needed )
+
+-- 
+Michael Scherer
+
+
+ + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000891.html b/zarb-ml/mageia-sysadm/2010-November/000891.html new file mode 100644 index 000000000..9c5a5cfbf --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000891.html @@ -0,0 +1,90 @@ + + + + [Mageia-sysadm] [133] svn test + + + + + + + + + +

[Mageia-sysadm] [133] svn test

+ root at mageia.org + root at mageia.org +
+ Wed Nov 24 13:11:00 CET 2010 +

+
+ +
Revision: 133
+Author:   obgr_seneca
+Date:     2010-11-24 13:11:00 +0100 (Wed, 24 Nov 2010)
+Log Message:
+-----------
+svn test
+
+Modified Paths:
+--------------
+    identity/CatDap/trunk/root/ttsite.css
+
+Modified: identity/CatDap/trunk/root/ttsite.css
+===================================================================
+--- identity/CatDap/trunk/root/ttsite.css	2010-11-24 07:41:20 UTC (rev 132)
++++ identity/CatDap/trunk/root/ttsite.css	2010-11-24 12:11:00 UTC (rev 133)
+@@ -250,3 +250,5 @@
+ 			   IE 5.x/Win */
+ }
+ 
++/* svn test */
++
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101124/b8a5a0bc/attachment.html>
+
+ + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000892.html b/zarb-ml/mageia-sysadm/2010-November/000892.html new file mode 100644 index 000000000..2433ef5d3 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000892.html @@ -0,0 +1,98 @@ + + + + [Mageia-sysadm] [453] do not use default empty array, as puppet evaluate this as "true" and + + + + + + + + + +

[Mageia-sysadm] [453] do not use default empty array, as puppet evaluate this as "true" and

+ root at mageia.org + root at mageia.org +
+ Wed Nov 24 13:45:32 CET 2010 +

+
+ +
Revision: 453
+Author:   misc
+Date:     2010-11-24 13:45:31 +0100 (Wed, 24 Nov 2010)
+Log Message:
+-----------
+do not use default empty array, as puppet evaluate this as "true" and
+therefore create the post-commit scripts with invalid values
+
+Modified Paths:
+--------------
+    puppet/modules/subversion/manifests/init.pp
+
+Modified: puppet/modules/subversion/manifests/init.pp
+===================================================================
+--- puppet/modules/subversion/manifests/init.pp	2010-11-24 11:14:33 UTC (rev 452)
++++ puppet/modules/subversion/manifests/init.pp	2010-11-24 12:45:31 UTC (rev 453)
+@@ -114,9 +114,9 @@
+ 
+     define repository ($group = "svn",
+                        $public = true,
+-                       $commit_mail = [],
+-                       $syntax_check = [],
+-                       $extract_dir = []) {
++                       $commit_mail = '',
++                       $syntax_check = '',
++                       $extract_dir = '') {
+         # check permissions
+         # http://svnbook.red-bean.com/nightly/fr/svn.serverconfig.multimethod.html
+         # $name ==> directory of the repo
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101124/59f55dac/attachment.html>
+
+ + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000893.html b/zarb-ml/mageia-sysadm/2010-November/000893.html new file mode 100644 index 000000000..ae8d03b9d --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000893.html @@ -0,0 +1,93 @@ + + + + [Mageia-sysadm] [454] fix svn location for catdap checkout + + + + + + + + + +

[Mageia-sysadm] [454] fix svn location for catdap checkout

+ root at mageia.org + root at mageia.org +
+ Wed Nov 24 16:22:13 CET 2010 +

+
+ +
Revision: 454
+Author:   misc
+Date:     2010-11-24 16:22:13 +0100 (Wed, 24 Nov 2010)
+Log Message:
+-----------
+fix svn location for catdap checkout
+
+Modified Paths:
+--------------
+    puppet/modules/catdap/manifests/init.pp
+
+Modified: puppet/modules/catdap/manifests/init.pp
+===================================================================
+--- puppet/modules/catdap/manifests/init.pp	2010-11-24 12:45:31 UTC (rev 453)
++++ puppet/modules/catdap/manifests/init.pp	2010-11-24 15:22:13 UTC (rev 454)
+@@ -18,7 +18,7 @@
+     }
+ 
+     subversion::snapshot { $catdap_location:
+-        source => "svn://svn.mageia.org/soft/identity/CatDap/branches/live"
++        source => "svn://svn.mageia.org/svn/soft/identity/CatDap/branches/live"
+     }
+ 
+     $catdap_password = extlookup('catdap_password','x')
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101124/09e217d5/attachment.html>
+
+ + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000894.html b/zarb-ml/mageia-sysadm/2010-November/000894.html new file mode 100644 index 000000000..674d3c6fa --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000894.html @@ -0,0 +1,120 @@ + + + + [Mageia-sysadm] [455] add requires on the package, so puppet doesn't send useless errors + + + + + + + + + +

[Mageia-sysadm] [455] add requires on the package, so puppet doesn't send useless errors

+ root at mageia.org + root at mageia.org +
+ Wed Nov 24 16:22:15 CET 2010 +

+
+ +
Revision: 455
+Author:   misc
+Date:     2010-11-24 16:22:14 +0100 (Wed, 24 Nov 2010)
+Log Message:
+-----------
+add requires on the package, so puppet doesn't send useless errors
+
+Modified Paths:
+--------------
+    puppet/modules/epoll/manifests/init.pp
+    puppet/modules/transifex/manifests/init.pp
+
+Modified: puppet/modules/epoll/manifests/init.pp
+===================================================================
+--- puppet/modules/epoll/manifests/init.pp	2010-11-24 15:22:13 UTC (rev 454)
++++ puppet/modules/epoll/manifests/init.pp	2010-11-24 15:22:14 UTC (rev 455)
+@@ -7,7 +7,8 @@
+     }
+     
+     apache::vhost_catalyst_app { $vhost:
+-        script => "/usr/bin/epoll_fastcgi.pl" 
++        script => "/usr/bin/epoll_fastcgi.pl", 
++        require => Package['Epoll']
+     }
+      
+     $password = extlookup("epoll_password",'x')
+
+Modified: puppet/modules/transifex/manifests/init.pp
+===================================================================
+--- puppet/modules/transifex/manifests/init.pp	2010-11-24 15:22:13 UTC (rev 454)
++++ puppet/modules/transifex/manifests/init.pp	2010-11-24 15:22:14 UTC (rev 455)
+@@ -10,7 +10,8 @@
+     owner => root,
+     group => apache,
+     mode => 640,
+-    content => template("transifex/20-engines.conf")
++    content => template("transifex/20-engines.conf"),
++    require => Package['transifex']
+   }
+ 
+   file { "30-site.conf":
+@@ -19,7 +20,8 @@
+     owner => root,
+     group => root,
+     mode => 644,
+-    content => template("transifex/30-site.conf")
++    content => template("transifex/30-site.conf"),
++    require => Package['transifex']
+   }
+ 
+ #  apache::vhost_django_app { "transifex.$domain":
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101124/19bb1eb0/attachment-0001.html>
+
+ + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000895.html b/zarb-ml/mageia-sysadm/2010-November/000895.html new file mode 100644 index 000000000..2e9c9d7b7 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000895.html @@ -0,0 +1,93 @@ + + + + [Mageia-sysadm] [456] fix svn directory + + + + + + + + + +

[Mageia-sysadm] [456] fix svn directory

+ root at mageia.org + root at mageia.org +
+ Wed Nov 24 16:22:17 CET 2010 +

+
+ +
Revision: 456
+Author:   misc
+Date:     2010-11-24 16:22:16 +0100 (Wed, 24 Nov 2010)
+Log Message:
+-----------
+fix svn directory
+
+Modified Paths:
+--------------
+    puppet/manifests/nodes.pp
+
+Modified: puppet/manifests/nodes.pp
+===================================================================
+--- puppet/manifests/nodes.pp	2010-11-24 15:22:14 UTC (rev 455)
++++ puppet/manifests/nodes.pp	2010-11-24 15:22:16 UTC (rev 456)
+@@ -26,7 +26,7 @@
+     include restrictshell::allow_svn
+ 
+     subversion::snapshot { "/etc/puppet":
+-        source => "svn://svn.mageia.org/adm/puppet/"
++        source => "svn://svn.mageia.org/svn/adm/puppet/"
+     }
+ }
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101124/b40549fa/attachment.html>
+
+ + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000896.html b/zarb-ml/mageia-sysadm/2010-November/000896.html new file mode 100644 index 000000000..2a4de5cc5 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000896.html @@ -0,0 +1,95 @@ + + + + [Mageia-sysadm] [457] add a Requires to fix bootstraping ( ie, puppet try to do the link + + + + + + + + + +

[Mageia-sysadm] [457] add a Requires to fix bootstraping ( ie, puppet try to do the link

+ root at mageia.org + root at mageia.org +
+ Wed Nov 24 16:22:18 CET 2010 +

+
+ +
Revision: 457
+Author:   misc
+Date:     2010-11-24 16:22:18 +0100 (Wed, 24 Nov 2010)
+Log Message:
+-----------
+add a Requires to fix bootstraping ( ie, puppet try to do the link
+before bind is installed, and show a error )
+
+Modified Paths:
+--------------
+    puppet/modules/bind/manifests/init.pp
+
+Modified: puppet/modules/bind/manifests/init.pp
+===================================================================
+--- puppet/modules/bind/manifests/init.pp	2010-11-24 15:22:16 UTC (rev 456)
++++ puppet/modules/bind/manifests/init.pp	2010-11-24 15:22:18 UTC (rev 457)
+@@ -14,7 +14,8 @@
+             ensure => "/var/lib/named/etc/named.conf",
+             owner => root,
+             group => root,
+-            mode => 644
++            mode => 644,
++            require => Package[bind]
+         } 
+     }
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101124/3d01a3aa/attachment.html>
+
+ + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000897.html b/zarb-ml/mageia-sysadm/2010-November/000897.html new file mode 100644 index 000000000..96fba3d08 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000897.html @@ -0,0 +1,245 @@ + + + + [Mageia-sysadm] [LONG] sympa ( and web apps ) ldap authentication + + + + + + + + + +

[Mageia-sysadm] [LONG] sympa ( and web apps ) ldap authentication

+ Michael Scherer + misc at zarb.org +
+ Wed Nov 24 18:54:40 CET 2010 +

+
+ +
Hi,
+
+as proposed during previous founders meeting, we need to be clear upon
+how we want to use authentication on web applications ( and non web
+too ) with regard to ldap directory.
+
+So what I propose will apply to sympa, but could be expended on others
+applications.
+
+So the first proposal that I will expose :
+
+- users will use their personal email address and the password from ldap
+to authenticate themselves. 
+
+While this is the easiest solution ( and the current one in svn from
+what I understood ), this idea suffer from 3 issues :
+
+- people will use a different login than the one of identity. This is
+not really how a centralized login system should work, imho. And this
+was a source of confusion ( at least, of my confusion ) at Mandriva.
+
+- people will need to open a account on identity. For some applications,
+this may not be desirable. For example, on a forum, having to first
+register, and then log on the forum to fill the data is not good. For
+mailling list, if we intend to subscribe gmane, or mail archive to the
+list, this is not good either. I couldn't get in touch with rda in time,
+but I think that's what he meant ( if not, romain, feel free to correct
+me ). And in fact, this would also put more pressure on ldap than
+intended ( if we requires this for forum, we may end with a big ldap
+directory ). 
+
+- using email as login is dangerous. Since the email is freely editable
+in catdap ( and multivalued ), someone could perfectly change his email
+after opening a account, and thus get access to sympa subscription of
+someone else.  More ever, nothing guarantee that email are uniques
+across the whole DIT, especially if email span on 2 attributes ( mail
+and mailAlternateAddress ).
+
+We could however 1) check the unicity of email on ldap 2) modify catdap
+to requires a confirmation before changing anything email related.
+
+
+So then a second proposal was done :
+- users use their @mageia.org alias, and the password from ldap
+
+this one fix the 3rd issue, to be replaced by a 4th and 5th ones :
+
+- everybody who will open a account on identity will receive a alias.
+I am not sure that's what we should propose, especially since a alias is
+like a official acknowledgment. And we do not want to restrict ml to the
+few people that would receive a alias.
+
+- people will need to use the alias to post on the ml, or we will need
+to find a way to find their emails from their subscriptions. Not sure if
+sympa could do it ( but this would be great )
+
+But issue 1 and 2 still apply.
+
+
+For the sake of being complete, we could also decide to not use ldap.
+Then we would lose the centralisation of password, and that's imho
+something to avoid if we can. But that's still a option that we should
+not forget.
+
+
+So what I propose to solve this is the following scheme :
+
+A user wanting to authenticate on sympa will provide a login, who will
+be either :
+- a email ( his personal email or email of choice ) + password of his
+choice, stored by sympa, and using regular sympa authentication
+or 
+- a login ( identity login ) + password from ldap
+
+If I understood correctly, sympa support this
+( http://www.sympa.org/manual_6.1/authentication ).
+
+This way : 
+1) we do not force identity on anybody
+
+2) the login is either a email ( with email verification done by sympa,
+and email change also done by sympa ) or our fixed ldap login ( fixed,
+ie, not under the control of any user )
+
+3) people will use the same uid everywhere ( because having sometime the
+email, sometime the uid is confusing, especially if we start to offer
+email alias )
+
+So, that's the first part of my mail. 
+
+
+This issue with ldap integration will likely arise on almost every web
+application we will setup. So I would like to propose the following :
+
+we have 2 types of applications :
+- some are for use of active people
+  - submit packages, send something on svn
+  - wiki edition ( not sure on this one )
+  - transifex
+  - maintainers db
+  - etc 
+
+For those applications, we would likely require be in a team first which
+should IMHO require a account in identity.
+
+- some are for the use of the enlarged community
+  - forums
+  - mailing lists
+  - bugzilla
+  - etc
+
+Those should not requires to be in a team first, and therefore, do not
+require a account in identity. 
+
+Yet, we want to have the benefit of the central authentication as much
+as possible.
+
+So let's divide applications in 2 category :
+ 
+The one in the 1st will use ldap authentication only. That's quite easy
+to achieve most of the time. Of course, supporting ldap is not the only
+thing we want when selecting a application. Being able to support
+filter, show meaningful errors messages, and others are also to
+consider.
+
+The one in the 2nd will use some kind of hybrid auth, if possible. Ie,
+if people give a ldap login ( uid + password ), the access is granted,
+and if not, we do a fallback on some kind of native and non centralized
+login system.
+
+However this will open a can of worms :
+- what about possible login conflict, ie, how can we prevent someone
+from using "misc" ( for example ) as a login in the native users
+database ? What would happen if the conflict arise ? 
+
+Forcing people to use their email is a solution, but not everything
+support that model. We can't simply check if the login is not in use
+because someone could perfectly use it later.
+
+- what people who first open a account on the software, and later change
+to use a identity login ? How can we merge the 2 ( especially if there
+is some authorization issue ) ?
+
+This would likely requires hand edition by a admin of the DB or
+equivalent.
+
+- what about a software that do not support it, ie ldap or native, but
+not both ? Or that do not support it as we want ?
+
+So far, bugzilla support this ( ldap, and fallback on the DB ), maat
+told me this was the proposed scheme for forum ( iirc ) and that's the
+one I propose for sympa. So at least, for the example I gave, we are ok.
+
+
+and the biggest problem ( imho ) :
+
+How do we decide what category does a application belong ?
+
+Some are quite easy, and some are more difficult ( I think ). For
+example, I would be inclined to use ldap login for the wiki, or let
+people be unauthenticated. Maybe not everybody agree.
+
+What about application like mageia-app-db ? 
+This one is easier since we can specifically add this as requirement. 
+
+So to summarize :
+- can someone confirm we can do this for sympa ?
+
+- does someone see a problem with the proposed scheme for sympa, and
+does it fulfill everybody need ?
+
+- does everybody agree for the separation in 2 category of applications,
+and the consequence for the application in term of authentication ?
+
+
+-- 
+Michael Scherer
+
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000898.html b/zarb-ml/mageia-sysadm/2010-November/000898.html new file mode 100644 index 000000000..3d36e7db6 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000898.html @@ -0,0 +1,106 @@ + + + + [Mageia-sysadm] [134] use urpmi-root when listing media + + + + + + + + + +

[Mageia-sysadm] [134] use urpmi-root when listing media

+ root at mageia.org + root at mageia.org +
+ Wed Nov 24 20:26:10 CET 2010 +

+
+ +
Revision: 134
+Author:   blino
+Date:     2010-11-24 20:26:09 +0100 (Wed, 24 Nov 2010)
+Log Message:
+-----------
+use urpmi-root when listing media
+
+Modified Paths:
+--------------
+    build_system/iurt/trunk/lib/Iurt/Urpmi.pm
+
+Modified: build_system/iurt/trunk/lib/Iurt/Urpmi.pm
+===================================================================
+--- build_system/iurt/trunk/lib/Iurt/Urpmi.pm	2010-11-24 12:11:00 UTC (rev 133)
++++ build_system/iurt/trunk/lib/Iurt/Urpmi.pm	2010-11-24 19:26:09 UTC (rev 134)
+@@ -184,7 +184,7 @@
+ 
+ sub check_media_added {
+     my ($chroot, $media) = @_;
+-    my $medias = `urpmq --root $chroot --list-media 2>&1`;
++    my $medias = `urpmq --urpmi-root $chroot --list-media 2>&1`;
+     print "MEDIA $medias ($media)\n";
+     $medias =~ /$media/m;
+ }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101124/9ea6b4bf/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000899.html b/zarb-ml/mageia-sysadm/2010-November/000899.html new file mode 100644 index 000000000..7be97faca --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000899.html @@ -0,0 +1,219 @@ + + + + [Mageia-sysadm] [LONG] sympa ( and web apps ) ldap authentication + + + + + + + + + +

[Mageia-sysadm] [LONG] sympa ( and web apps ) ldap authentication

+ Romain d'Alverny + rdalverny at gmail.com +
+ Wed Nov 24 20:29:04 CET 2010 +

+
+ +
Hi,
+
+thanks for the long description. Instead of replying point by point, I
+would like to suggest a more radical point of view, that actually
+determined the my.mandriva setup (that would not make a difference
+between "regular" users and "active" users from a auth/storage POV). I
+think it's worth it to discuss it as well.
+
+The rationale is to ease the user flow through the project, as a
+whole. 4 points below.
+
+#1. General rule: all users authenticate the same way against a single directory
+
+Exceptions come later.
+ * the same way: email/password
+ * a single directory: LDAP (no local app user account unless it is
+admin/setup specific or the application integration is really
+separate)
+ * exceptions: when the application integration/workflow commands it
+(buildsystem access with login? sympa?)
+ * exceptions may be handled locally (they ask for login/password) or
+through an API (instead of calling LDAP, they call a specific
+webservice passing email/password, which service replies the login and
+local app uses returned values).
+
+(apart from the LDAP bit that was replaced by a MySQL db + web
+services, all of this was implemented at Mandriva, although not to a
+fully satisfying point)
+
+In my view, apps that qualify for this generic rule  (ldap only +
+local fallback for admin):
+ * bugzilla
+ * forum
+ * wiki
+ * actually, any webapps you could think of, provided you can make a
+ldap query from it
+
+That qualify for the login exception:
+ * svn/git/etc. (not sure but I guess so)
+ * other?
+
+
+#2. Consequences
+
+That means that identity should authenticate with email preferably
+(but may allow using the login).
+
+That does not prevent that local app data is locally stored. That's
+how my.mandriva scheme was designed (and could have gone further).
+That does not prevent that local apps provide a way for the user to
+build a mashup of all data around (for a reporting/activity/social net
+app for instance).
+
+That means that any user using any part of the Mageia infrastructure
+has to get an account through identity.mageia.org. And that
+email/login must be tested for unicity.
+
+That also puts some constraints on how an app manages authentication
+and local user data:
+ * it must be able to authenticate from an outside source
+ * it must be able to manage primary email change (we used a
+"customer_id" at Mandriva, a 64 char id that allowed to change both
+email and login at will without losing user reference; would that
+match the uid?)
+ * it must be able to update, if needed, locally cached data that
+source from the central repository.
+
+To some extent, it could even have the ability to manage a central
+session server, but that may be left for a later time (and can
+actually be managed almost separately once the central auth is done).
+
+(we may use OAuth and OpenID auth at a later time for web apps. That
+shouldn't have an impact on the above (and below) authentication
+scheme anyway)
+
+So what about apps that do not support this scheme? We patch them so
+they do (and we do it the clean way). Puts more constraints on the
+dev/admin side, for sure; but again, the rationale is to provide a
+consistent interface to the user with easiest to remember items (email
+then, instead of login). And that forces us to find a consistent
+protocol that is already (or should be) implemented in our apps.
+
+
+#3. Sympa
+
+As for sympa, that's a particular exception in that it uses the same
+email address as an identity token and as an contact address (or could
+it authenticate against a primary email address and use a second one,
+returned by the directory, to post mails to? requires sync from time
+to time). It is tricky (but no unfeasible I guess, it just asks the
+problem to be properly laid out) and I would leave the sympa setup
+separate at first, with the possibility to later make a soft link
+between a LDAP account (being able to ask sympa "for this email, what
+do you have?") and experiment safely with a proper integration. This
+just to move forward withouth putting too long a delay on production
+release. That would mean, at first, let people authenticate/subscribe
+on Sympa using only local Sympa db.
+
+
+#4. Email as an id
+
+As to objections on using the email as an id:
+ * I didn't mean that forum should use local accounts instead of LDAP
+ones, the contrary actually; what it takes is that the account
+registration procedure must be routed to identity, instead of the
+regular forum process; and that the forum auth mechanism must handle
+on-the-fly creation of a local account from a valid LDAP account;
+ * I am not sure to see the issue with gmane/mail archive?
+ * if having a big LDAP is an issue (why would it be?) then LDAP is
+not the solution for a central auth directory (and that would be
+ironic somehow)
+ * using email as a login, we obviously must have emails editable
+separately in LDAP, test their unicity within their own scope (being a
+primary email, or a secondary one is not the same), should have a
+validity status from one (that is, making sure someone ends up reading
+a message posted to it).
+ * when we decided to use the email as the id for Mandriva web
+services, the biggest problem that arose in the end was: would it work
+for authenticated HTTP urls, like:
+https://user@domain.tld:password@server.domain.tld/ (so it would work
+for private downloads)? It does (wget does it; curl has hiccups about
+it that can be easily worked out (escape the first @ or parse the url
+to provide ids as arguments)).
+
+I don't think we should provide @mageia.org email at large, for the
+same arguments as misc's.
+
+
+
+
+The view I exposed above adds contraints, but has several benefits:
+ * a single/consistent repository/auth mechanism for all users and for all apps
+ * it forces apps to manage all user accounts the same way (will help
+for mashing up their data and making it possible to them to manage
+them in a consistent way); we can define levels of features for apps
+about this;
+ * users get a more complete profile upon their roles within the project
+
+Cheers,
+
+Romain
+
+On Wed, Nov 24, 2010 at 18:54, Michael Scherer <misc at zarb.org> wrote:
+> [...]
+> So to summarize :
+> - can someone confirm we can do this for sympa ?
+>
+> - does someone see a problem with the proposed scheme for sympa, and
+> does it fulfill everybody need ?
+>
+> - does everybody agree for the separation in 2 category of applications,
+> and the consequence for the application in term of authentication ?
+
+ + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000900.html b/zarb-ml/mageia-sysadm/2010-November/000900.html new file mode 100644 index 000000000..7bc81c84a --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000900.html @@ -0,0 +1,77 @@ + + + + [Mageia-sysadm] [377] - add nssldap password handling + + + + + + + + + +

[Mageia-sysadm] [377] - add nssldap password handling

+ Guillaume Rousse + guillomovitch at zarb.org +
+ Wed Nov 24 21:04:51 CET 2010 +

+
+ +
Le 22/11/2010 12:56, Buchan Milne a écrit :
+> I would prefer if we can instead use:
+> -"rootbinddn" in /etc/ldap.conf, not binddn
+> -place password in /etc/ldap.secret
+> -use nscd, so all LDAP access is as root (so, no need to expose passwords in 
+> files that must be world-readable), as a side-effect also avoiding problems 
+> with file descriptors used by any process doing a user lookup etc.
+> 
+> Permissions on /etc/ldap.conf should be 0644, /etc/ldap.secret can be 0600.
+Even better, give ldap write access to individual admin accounts, and
+not to root user. No need to store any password, and you keep track of
+who's doing what.
+
+-- 
+BOFH excuse #70:
+
+nesting roaches shorted out the ether cable
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000901.html b/zarb-ml/mageia-sysadm/2010-November/000901.html new file mode 100644 index 000000000..594be501b --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000901.html @@ -0,0 +1,128 @@ + + + + [Mageia-sysadm] [458] add a ssmtp module, to replace postfix as it would be too complex to manage for both simple relay and full fledged server + + + + + + + + + +

[Mageia-sysadm] [458] add a ssmtp module, to replace postfix as it would be too complex to manage for both simple relay and full fledged server

+ root at mageia.org + root at mageia.org +
+ Wed Nov 24 21:31:08 CET 2010 +

+
+ +
Revision: 458
+Author:   misc
+Date:     2010-11-24 21:31:07 +0100 (Wed, 24 Nov 2010)
+Log Message:
+-----------
+add a ssmtp module, to replace postfix as it would be too complex to manage for both simple relay and full fledged server
+
+Added Paths:
+-----------
+    puppet/modules/ssmtp/
+    puppet/modules/ssmtp/manifests/
+    puppet/modules/ssmtp/manifests/init.pp
+    puppet/modules/ssmtp/templates/
+    puppet/modules/ssmtp/templates/ssmtp.conf
+
+Added: puppet/modules/ssmtp/manifests/init.pp
+===================================================================
+--- puppet/modules/ssmtp/manifests/init.pp	                        (rev 0)
++++ puppet/modules/ssmtp/manifests/init.pp	2010-11-24 20:31:07 UTC (rev 458)
+@@ -0,0 +1,13 @@
++class ssmtp {
++    package { ssmtp:
++        ensure => installed,
++    }
++
++    file { "ssmtp.conf":
++        path => "/etc/ssmtp/ssmtp.conf",
++        owner => root,
++        group => root,
++        mode => 644,
++        content => template("ssmtp/ssmtp.conf")
++    }
++}
+
+Added: puppet/modules/ssmtp/templates/ssmtp.conf
+===================================================================
+--- puppet/modules/ssmtp/templates/ssmtp.conf	                        (rev 0)
++++ puppet/modules/ssmtp/templates/ssmtp.conf	2010-11-24 20:31:07 UTC (rev 458)
+@@ -0,0 +1,9 @@
++root=mageia-sysadm@<%= domain %>
++
++mailhub=mx.<%= domain %>
++
++rewriteDomain=
++
++# The full hostname
++hostname=<%= fqdn %>
++
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101124/656a8f5d/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000902.html b/zarb-ml/mageia-sysadm/2010-November/000902.html new file mode 100644 index 000000000..4954ee17e --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000902.html @@ -0,0 +1,111 @@ + + + + [Mageia-sysadm] [459] fix order of execution + + + + + + + + + +

[Mageia-sysadm] [459] fix order of execution

+ root at mageia.org + root at mageia.org +
+ Wed Nov 24 21:31:09 CET 2010 +

+
+ +
Revision: 459
+Author:   misc
+Date:     2010-11-24 21:31:08 +0100 (Wed, 24 Nov 2010)
+Log Message:
+-----------
+fix order of execution
+
+Modified Paths:
+--------------
+    puppet/modules/spamassassin/manifests/init.pp
+
+Modified: puppet/modules/spamassassin/manifests/init.pp
+===================================================================
+--- puppet/modules/spamassassin/manifests/init.pp	2010-11-24 20:31:07 UTC (rev 458)
++++ puppet/modules/spamassassin/manifests/init.pp	2010-11-24 20:31:08 UTC (rev 459)
+@@ -2,7 +2,7 @@
+ 
+     package { "spamassassin-sa-compile":
+         ensure => installed,
+-        notify => "sa-compile",
++        notify => Exec["sa-compile"],
+     }
+ 
+     package { "spamassassin":
+@@ -20,5 +20,6 @@
+ 
+     exec { "sa-compile":
+         refreshonly => true,
++        require => Package["spamassassin-sa-compile"],
+     }
+ }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101124/5bf2d53d/attachment-0001.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000903.html b/zarb-ml/mageia-sysadm/2010-November/000903.html new file mode 100644 index 000000000..d473aa31a --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000903.html @@ -0,0 +1,104 @@ + + + + [Mageia-sysadm] [460] fix syntax + + + + + + + + + +

[Mageia-sysadm] [460] fix syntax

+ root at mageia.org + root at mageia.org +
+ Wed Nov 24 21:31:10 CET 2010 +

+
+ +
Revision: 460
+Author:   misc
+Date:     2010-11-24 21:31:10 +0100 (Wed, 24 Nov 2010)
+Log Message:
+-----------
+fix syntax
+
+Modified Paths:
+--------------
+    puppet/modules/spamassassin/manifests/init.pp
+
+Modified: puppet/modules/spamassassin/manifests/init.pp
+===================================================================
+--- puppet/modules/spamassassin/manifests/init.pp	2010-11-24 20:31:08 UTC (rev 459)
++++ puppet/modules/spamassassin/manifests/init.pp	2010-11-24 20:31:10 UTC (rev 460)
+@@ -14,7 +14,7 @@
+         owner => root,
+         group => root,
+         mode => 644,
+-        requires => Package["spamassassin"],
++        require => Package["spamassassin"],
+         content => template('spamassassin/local.cf')
+     }
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101124/e4b1daae/attachment-0001.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000904.html b/zarb-ml/mageia-sysadm/2010-November/000904.html new file mode 100644 index 000000000..7996ca2f2 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000904.html @@ -0,0 +1,102 @@ + + + + [Mageia-sysadm] [461] add a note about a missing deps + + + + + + + + + +

[Mageia-sysadm] [461] add a note about a missing deps

+ root at mageia.org + root at mageia.org +
+ Wed Nov 24 21:31:11 CET 2010 +

+
+ +
Revision: 461
+Author:   misc
+Date:     2010-11-24 21:31:11 +0100 (Wed, 24 Nov 2010)
+Log Message:
+-----------
+add a note about a missing deps
+
+Modified Paths:
+--------------
+    puppet/modules/spamassassin/manifests/init.pp
+
+Modified: puppet/modules/spamassassin/manifests/init.pp
+===================================================================
+--- puppet/modules/spamassassin/manifests/init.pp	2010-11-24 20:31:10 UTC (rev 460)
++++ puppet/modules/spamassassin/manifests/init.pp	2010-11-24 20:31:11 UTC (rev 461)
+@@ -1,5 +1,5 @@
+ class spamassassin {
+-
++    # it should also requires make, bug fixed in cooker
+     package { "spamassassin-sa-compile":
+         ensure => installed,
+         notify => Exec["sa-compile"],
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101124/c67eca68/attachment-0001.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000905.html b/zarb-ml/mageia-sysadm/2010-November/000905.html new file mode 100644 index 000000000..e9fb7d499 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000905.html @@ -0,0 +1,104 @@ + + + + [Mageia-sysadm] [462] fix syntax + + + + + + + + + +

[Mageia-sysadm] [462] fix syntax

+ root at mageia.org + root at mageia.org +
+ Wed Nov 24 21:31:12 CET 2010 +

+
+ +
Revision: 462
+Author:   misc
+Date:     2010-11-24 21:31:12 +0100 (Wed, 24 Nov 2010)
+Log Message:
+-----------
+fix syntax
+
+Modified Paths:
+--------------
+    puppet/modules/amavis/manifests/init.pp
+
+Modified: puppet/modules/amavis/manifests/init.pp
+===================================================================
+--- puppet/modules/amavis/manifests/init.pp	2010-11-24 20:31:11 UTC (rev 461)
++++ puppet/modules/amavis/manifests/init.pp	2010-11-24 20:31:12 UTC (rev 462)
+@@ -14,7 +14,7 @@
+         owner => root,
+         group => root,
+         mode => 644,
+-        requires => Package["amavisd-new"],
++        require => Package["amavisd-new"],
+         content => template('amavis/amavisd.conf')
+     }
+ }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101124/73a16458/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000906.html b/zarb-ml/mageia-sysadm/2010-November/000906.html new file mode 100644 index 000000000..6c071b413 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000906.html @@ -0,0 +1,104 @@ + + + + [Mageia-sysadm] [463] fix path that prevent smtp to start + + + + + + + + + +

[Mageia-sysadm] [463] fix path that prevent smtp to start

+ root at mageia.org + root at mageia.org +
+ Wed Nov 24 21:31:14 CET 2010 +

+
+ +
Revision: 463
+Author:   misc
+Date:     2010-11-24 21:31:13 +0100 (Wed, 24 Nov 2010)
+Log Message:
+-----------
+fix path that prevent smtp to start
+
+Modified Paths:
+--------------
+    puppet/modules/postfix/templates/main.cf
+
+Modified: puppet/modules/postfix/templates/main.cf
+===================================================================
+--- puppet/modules/postfix/templates/main.cf	2010-11-24 20:31:12 UTC (rev 462)
++++ puppet/modules/postfix/templates/main.cf	2010-11-24 20:31:13 UTC (rev 463)
+@@ -43,7 +43,7 @@
+                 ml.<%= domain %>
+ <%-   end -%>
+ 
+-alias_maps = hash:/etc/aliases
++alias_maps = hash:/etc/postfix/aliases
+ 	     # uncomment if we want to enable ldap based alias 
+              # and create the file
+              #ldap:/etc/postfix/ldap_aliases.conf
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101124/d3e37d5d/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000907.html b/zarb-ml/mageia-sysadm/2010-November/000907.html new file mode 100644 index 000000000..6bc0d5f85 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000907.html @@ -0,0 +1,103 @@ + + + + [Mageia-sysadm] [464] fix missing subscribe + + + + + + + + + +

[Mageia-sysadm] [464] fix missing subscribe

+ root at mageia.org + root at mageia.org +
+ Wed Nov 24 21:31:15 CET 2010 +

+
+ +
Revision: 464
+Author:   misc
+Date:     2010-11-24 21:31:15 +0100 (Wed, 24 Nov 2010)
+Log Message:
+-----------
+fix missing subscribe
+
+Modified Paths:
+--------------
+    puppet/modules/amavis/manifests/init.pp
+
+Modified: puppet/modules/amavis/manifests/init.pp
+===================================================================
+--- puppet/modules/amavis/manifests/init.pp	2010-11-24 20:31:13 UTC (rev 463)
++++ puppet/modules/amavis/manifests/init.pp	2010-11-24 20:31:15 UTC (rev 464)
+@@ -7,6 +7,7 @@
+     service { "amavisd":
+         ensure => running,
+         path => "/etc/init.d/amavisd",
++        subscribe  => Package["amavisd-new"],
+     }
+ 
+     file { "/etc/amavisd/amavisd.conf":
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101124/541bc03e/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000908.html b/zarb-ml/mageia-sysadm/2010-November/000908.html new file mode 100644 index 000000000..7a8668c1c --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000908.html @@ -0,0 +1,142 @@ + + + + [Mageia-sysadm] [135] - factorise the code who deal with ip ( so we can change it at one place for ipv6 support ) + + + + + + + + + +

[Mageia-sysadm] [135] - factorise the code who deal with ip ( so we can change it at one place for ipv6 support )

+ root at mageia.org + root at mageia.org +
+ Thu Nov 25 00:03:07 CET 2010 +

+
+ +
Revision: 135
+Author:   misc
+Date:     2010-11-25 00:03:07 +0100 (Thu, 25 Nov 2010)
+Log Message:
+-----------
+- factorise the code who deal with ip ( so we can change it at one place for ipv6 support )
+
+Modified Paths:
+--------------
+    identity/CatDap/trunk/lib/CatDap/Controller/user.pm
+
+Modified: identity/CatDap/trunk/lib/CatDap/Controller/user.pm
+===================================================================
+--- identity/CatDap/trunk/lib/CatDap/Controller/user.pm	2010-11-24 19:26:09 UTC (rev 134)
++++ identity/CatDap/trunk/lib/CatDap/Controller/user.pm	2010-11-24 23:03:07 UTC (rev 135)
+@@ -55,7 +55,7 @@
+     my $mesg;
+     my $dn;
+     my @errors;
+-    my $keyprefix = sprintf("%02x%02x%02x",split /\./,$c->req->address);
++    my $keyprefix = $self->get_keyprefix($c);
+     if (! defined $c->user or not $c->req->cookie('key')) {
+ 	if (not $c->req->param('password')) {
+ 	    push @errors,$c->loc('Your session has expired');
+@@ -112,6 +112,10 @@
+ 
+ }
+ 
++sub get_keyprefix : Private {
++    my ( $self, $c ) = @_;
++    return sprintf("%02x%02x%02x",split /\./,$c->req->address);
++}
+ =head2 index
+ 
+ =cut
+@@ -286,7 +290,7 @@
+     } else {
+ 
+         # re-encrypt the new password and forward to user view
+-        my $keyprefix = sprintf("%02x%02x%02x",split /\./,$c->req->address);
++        my $keyprefix = $self->get_keyprefix($c);
+         my $key = $c->req->cookie('key')->value;
+         $cipher = Crypt::CBC->new( -key    => $keyprefix . $key,
+             -cipher => 'Blowfish'
+@@ -314,7 +318,7 @@
+             $c->res->redirect('/user');
+ 	}
+ 	# cache password for next request with form data
+-        my $keyprefix = sprintf("%02x%02x%02x",split /\./,$c->req->address);
++        my $keyprefix = $self->get_keyprefix($c);
+ 	my $key = Data::UUID->new->create_str();
+         $cipher = Crypt::CBC->new( -key    => $keyprefix . $key,
+                 -cipher => 'Blowfish'
+@@ -331,7 +335,7 @@
+     }
+ 
+     #Re-authenticate user
+-    my $keyprefix = sprintf("%02x%02x%02x",split /\./,$c->req->address);
++    my $keyprefix = $self->get_keyprefix($c);
+     my $key = $c->req->cookie('key')->value;
+     $cipher = Crypt::CBC->new( -key    => $keyprefix . $key,
+         -cipher => 'Blowfish'
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101125/fa7a0339/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000909.html b/zarb-ml/mageia-sysadm/2010-November/000909.html new file mode 100644 index 000000000..b06c19ab5 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000909.html @@ -0,0 +1,106 @@ + + + + [Mageia-sysadm] [465] do not pass iurt logdir as argument, it would require a wrapper parsing the option, we will handle this in ulri + + + + + + + + + +

[Mageia-sysadm] [465] do not pass iurt logdir as argument, it would require a wrapper parsing the option, we will handle this in ulri

+ root at mageia.org + root at mageia.org +
+ Thu Nov 25 08:48:26 CET 2010 +

+
+ +
Revision: 465
+Author:   blino
+Date:     2010-11-25 08:48:25 +0100 (Thu, 25 Nov 2010)
+Log Message:
+-----------
+do not pass iurt logdir as argument, it would require a wrapper parsing the option, we will handle this in ulri
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/templates/upload.conf
+
+Modified: puppet/modules/buildsystem/templates/upload.conf
+===================================================================
+--- puppet/modules/buildsystem/templates/upload.conf	2010-11-24 20:31:15 UTC (rev 464)
++++ puppet/modules/buildsystem/templates/upload.conf	2010-11-25 07:48:25 UTC (rev 465)
+@@ -25,8 +25,8 @@
+                         iurt => {
+                             user => 'iurt',
+ # (spuk, 2007-08-16) disabled iurt_cache additional media, locks trying to mount -o bind
+-#			command => "iurt --iurtlogdir __IURTLOGDIR__ --copy-srpm --group -v 6 --config local_spool $homedir/iurt/__DIR__ --no_rsync --chrooted-urpmi -m __MEDIA__ -- $repository --additional-media -m __MEDIA__ -- file://$homedir/cache/ -p \"__PACKAGER__\" -r __TARGET__ __ARCH__",
+-                            command => "iurt --iurtlogdir __IURTLOGDIR__ --copy_srpm --group -v 6 --config local_spool $homedir/iurt/__DIR__ --no_rsync --chrooted-urpmi -m __MEDIA__ -- $repository -p \"__PACKAGER__\" -r __TARGET__ __ARCH__",
++#                           command => "iurt --copy-srpm --group -v 6 --config local_spool $homedir/iurt/__DIR__ --no_rsync --chrooted-urpmi -m __MEDIA__ -- $repository --additional-media -m __MEDIA__ -- file://$homedir/cache/ -p \"__PACKAGER__\" -r __TARGET__ __ARCH__",
++                            command => "iurt --copy_srpm --group -v 6 --config local_spool $homedir/iurt/__DIR__ --no_rsync --chrooted-urpmi -m __MEDIA__ -- $repository -p \"__PACKAGER__\" -r __TARGET__ __ARCH__",
+                             packages => "$homedir/iurt/",
+                             log => "$homedir/iurt/", 
+                         },
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101125/bb1af733/attachment-0001.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000910.html b/zarb-ml/mageia-sysadm/2010-November/000910.html new file mode 100644 index 000000000..1c73ae170 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000910.html @@ -0,0 +1,112 @@ + + + + [Mageia-sysadm] [136] iurt log path is now passed by ulri when running the iurt command through ssh + + + + + + + + + +

[Mageia-sysadm] [136] iurt log path is now passed by ulri when running the iurt command through ssh

+ root at mageia.org + root at mageia.org +
+ Thu Nov 25 08:49:23 CET 2010 +

+
+ +
Revision: 136
+Author:   blino
+Date:     2010-11-25 08:49:22 +0100 (Thu, 25 Nov 2010)
+Log Message:
+-----------
+iurt log path is now passed by ulri when running the iurt command through ssh
+
+Modified Paths:
+--------------
+    build_system/iurt/trunk/ulri
+
+Modified: build_system/iurt/trunk/ulri
+===================================================================
+--- build_system/iurt/trunk/ulri	2010-11-24 23:03:07 UTC (rev 135)
++++ build_system/iurt/trunk/ulri	2010-11-25 07:49:22 UTC (rev 136)
+@@ -668,7 +668,6 @@
+ 		$cmd =~ s!__DIR__!$path/$prefix!g;
+ 		$cmd =~ s!__TARGET__!$target!g;
+ 		$cmd =~ s!__PACKAGER__!$user!g;
+-		$cmd =~ s!__IURTLOGDIR__!$prefix_dir/log/!g;
+ 
+ 		my $media_to_add;
+ 		if (ref $config->{media}{$target}{$media}) {
+@@ -680,7 +679,7 @@
+ 		$cmd =~ s!__MEDIA__!$media_to_add!g;
+ 
+ 		plog('DEBUG', "Build $pkgs");
+-		ssh($remote, "$cmd $pkgs > $temp &");
++		ssh($remote, "\'echo PID=\$\$; exec $cmd $pkgs &>$prefix_dir/log/botcmd.\$(date +%s).\$(hostname -s).log\' > $temp &");
+ 
+ 		# wait 10 seconds or until we have the log file
+ 		# plus 20 seconds if it timeouts.
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101125/b1665aa3/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000911.html b/zarb-ml/mageia-sysadm/2010-November/000911.html new file mode 100644 index 000000000..e2469dc68 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000911.html @@ -0,0 +1,84 @@ + + + + [Mageia-sysadm] [377] - add nssldap password handling + + + + + + + + + +

[Mageia-sysadm] [377] - add nssldap password handling

+ Luca Berra + bluca at vodka.it +
+ Thu Nov 25 08:51:08 CET 2010 +

+
+ +
On Tue, Nov 23, 2010 at 03:50:42PM +0100, Buchan Milne wrote:
+<snip>
+ok on the above
+
+>> since the info exposed to NSS is no big secret we can cope with it, but
+>> i prefer leaving nss to anonymous binds and adding on ldap server (at
+>> the end of access control)
+>> 
+>> access to dn.subtree="dc=mageia,dc=org"
+>>         
+>> attrs=@posixAccount, at posixGroup, at ipService, at ipProtocol, at ipHost, at ipNetwork,
+>> @oncRpc, at nisNetgroup by peername.ip="127.0.0.1" read
+>>          by peername.ip="x.y.w.z" read
+>>          by * none
+>
+>Which leaves access from all non-root internet-facing applications open. While 
+>there is not *much* of value there, I would prefer to try and protect 
+>privilege escalation vectors.
+uh?
+this implements the same access as getent
+so you want to protect from direct ldap access while the same
+information is already available without taking the pain to speak ldap?
+
+L.
+-- 
+Luca Berra -- bluca at vodka.it
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000912.html b/zarb-ml/mageia-sysadm/2010-November/000912.html new file mode 100644 index 000000000..11006f2c6 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000912.html @@ -0,0 +1,80 @@ + + + + [Mageia-sysadm] Upload failed for iurt-0.6.4-7.r126.1mdv2010.1.src.rpm + + + + + + + + + +

[Mageia-sysadm] Upload failed for iurt-0.6.4-7.r126.1mdv2010.1.src.rpm

+ Emi the upload bot + mageia-sysadm at mageia.org +
+ Thu Nov 25 09:20:40 CET 2010 +

+
+ +
The upload of the following packages failed:
+- iurt-0.6.4-7.r126.1mdv2010.1.src.rpm
+
+Upload log available in http://kenobi.mandriva.com/queue//rejected//cauldron/main/release/20101117112343.blino.kenobi.3375.youri
+
+ + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000913.html b/zarb-ml/mageia-sysadm/2010-November/000913.html new file mode 100644 index 000000000..b0833c5a9 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000913.html @@ -0,0 +1,106 @@ + + + + [Mageia-sysadm] [137] x86_64 hosts can now build i586 packages, impressive! + + + + + + + + + +

[Mageia-sysadm] [137] x86_64 hosts can now build i586 packages, impressive!

+ root at mageia.org + root at mageia.org +
+ Thu Nov 25 10:26:01 CET 2010 +

+
+ +
Revision: 137
+Author:   blino
+Date:     2010-11-25 10:26:01 +0100 (Thu, 25 Nov 2010)
+Log Message:
+-----------
+x86_64 hosts can now build i586 packages, impressive!
+
+Modified Paths:
+--------------
+    build_system/iurt/trunk/ulri
+
+Modified: build_system/iurt/trunk/ulri
+===================================================================
+--- build_system/iurt/trunk/ulri	2010-11-25 07:49:22 UTC (rev 136)
++++ build_system/iurt/trunk/ulri	2010-11-25 09:26:01 UTC (rev 137)
+@@ -678,6 +678,11 @@
+ 		plog('DEBUG', "Will compile only with media $media_to_add");
+ 		$cmd =~ s!__MEDIA__!$media_to_add!g;
+ 
++                #- allow x86_64 hosts to build i586 packages
++                if ($arch eq 'i586') {
++                    $cmd = "setarch i586 $cmd";
++                }
++
+ 		plog('DEBUG', "Build $pkgs");
+ 		ssh($remote, "\'echo PID=\$\$; exec $cmd $pkgs &>$prefix_dir/log/botcmd.\$(date +%s).\$(hostname -s).log\' > $temp &");
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101125/0b480795/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000914.html b/zarb-ml/mageia-sysadm/2010-November/000914.html new file mode 100644 index 000000000..92b2fdae6 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000914.html @@ -0,0 +1,109 @@ + + + + [Mageia-sysadm] [138] fix indentation + + + + + + + + + +

[Mageia-sysadm] [138] fix indentation

+ root at mageia.org + root at mageia.org +
+ Thu Nov 25 10:26:28 CET 2010 +

+
+ +
Revision: 138
+Author:   blino
+Date:     2010-11-25 10:26:28 +0100 (Thu, 25 Nov 2010)
+Log Message:
+-----------
+fix indentation
+
+Modified Paths:
+--------------
+    build_system/iurt/trunk/ulri
+
+Modified: build_system/iurt/trunk/ulri
+===================================================================
+--- build_system/iurt/trunk/ulri	2010-11-25 09:26:01 UTC (rev 137)
++++ build_system/iurt/trunk/ulri	2010-11-25 09:26:28 UTC (rev 138)
+@@ -678,10 +678,10 @@
+ 		plog('DEBUG', "Will compile only with media $media_to_add");
+ 		$cmd =~ s!__MEDIA__!$media_to_add!g;
+ 
+-                #- allow x86_64 hosts to build i586 packages
+-                if ($arch eq 'i586') {
+-                    $cmd = "setarch i586 $cmd";
+-                }
++		#- allow x86_64 hosts to build i586 packages
++		if ($arch eq 'i586') {
++		    $cmd = "setarch i586 $cmd";
++		}
+ 
+ 		plog('DEBUG', "Build $pkgs");
+ 		ssh($remote, "\'echo PID=\$\$; exec $cmd $pkgs &>$prefix_dir/log/botcmd.\$(date +%s).\$(hostname -s).log\' > $temp &");
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101125/39bf50ec/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000915.html b/zarb-ml/mageia-sysadm/2010-November/000915.html new file mode 100644 index 000000000..ab4ce529c --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000915.html @@ -0,0 +1,323 @@ + + + + [Mageia-sysadm] [LONG] sympa ( and web apps ) ldap authentication + + + + + + + + + +

[Mageia-sysadm] [LONG] sympa ( and web apps ) ldap authentication

+ Buchan Milne + bgmilne at multilinks.com +
+ Thu Nov 25 10:50:44 CET 2010 +

+
+ +
On Wednesday, 24 November 2010 18:54:40 Michael Scherer wrote:
+> Hi,
+> 
+> as proposed during previous founders meeting, we need to be clear upon
+> how we want to use authentication on web applications ( and non web
+> too ) with regard to ldap directory.
+> 
+> So what I propose will apply to sympa, but could be expended on others
+> applications.
+> 
+> So the first proposal that I will expose :
+> 
+> - users will use their personal email address and the password from ldap
+> to authenticate themselves.
+
+Is this a limitation in sympa? All LDAP-capable software should allow 
+configuration of which attribute to authenticate against ...
+
+> While this is the easiest solution ( and the current one in svn from
+> what I understood ), this idea suffer from 3 issues :
+> 
+> - people will use a different login than the one of identity.
+
+Why? We can change identity to search for the username in the mail attribute. 
+We can even probably allow login with either uid or mail. In fact, it should 
+only be a configuration change to set user_filter in catdap_local.yml. It 
+isn't entirely, I will commit a ~ 10 line patch to fix hardcoding of 
+attributes/filters in user.pm shortly.
+
+> This is
+> not really how a centralized login system should work, imho. And this
+> was a source of confusion ( at least, of my confusion ) at Mandriva.
+> 
+> - people will need to open a account on identity. For some applications,
+> this may not be desirable. For example, on a forum, having to first
+> register, and then log on the forum to fill the data is not good.
+
+Normally, the user has to register on a forum anyway, activate the account, 
+before changing avatar or anything. So, I don't see the difference. As long as 
+the forum has been configured to send users to identity to register, there 
+shouldn't be too much inconvenience. We could try and redirect the user to the 
+forum login after activation to make it a bit easier.
+
+> For
+> mailling list, if we intend to subscribe gmane, or mail archive to the
+> list, this is not good either. I couldn't get in touch with rda in time,
+> but I think that's what he meant ( if not, romain, feel free to correct
+> me ). And in fact, this would also put more pressure on ldap than
+> intended ( if we requires this for forum, we may end with a big ldap
+> directory ).
+
+AFAIK, the forum only impacts LDAP on login to the forum, not on every page 
+view etc.
+
+> - using email as login is dangerous. Since the email is freely editable
+> in catdap ( and multivalued ), someone could perfectly change his email
+> after opening a account, and thus get access to sympa subscription of
+> someone else.
+
+And lose their account to the user whose email address was used as soon as we 
+allow user-initiated password reset ...
+
+> More ever, nothing guarantee that email are uniques
+> across the whole DIT, especially if email span on 2 attributes ( mail
+> and mailAlternateAddress ).
+
+mail is multi-valued, we should have a policy on how we maintain this. At 
+present, I don't see if we need mailAlternateAddress. However, if we maintain 
+all email addresses in 'mail' attribute, we can apply slapo-unique to easily 
+prevent this.
+
+> We could however 1) check the unicity of email on ldap 2) modify catdap
+> to requires a confirmation before changing anything email related.
+> 
+> 
+> So then a second proposal was done :
+> - users use their @mageia.org alias, and the password from ldap
+> 
+> this one fix the 3rd issue, to be replaced by a 4th and 5th ones :
+> 
+> - everybody who will open a account on identity will receive a alias.
+> I am not sure that's what we should propose, especially since a alias is
+> like a official acknowledgment. And we do not want to restrict ml to the
+> few people that would receive a alias.
+
+Let's have a policy on aliases before we make decisions that require or 
+prevent them ...
+
+> - people will need to use the alias to post on the ml, or we will need
+> to find a way to find their emails from their subscriptions. Not sure if
+> sympa could do it ( but this would be great )
+> 
+> But issue 1 and 2 still apply.
+> 
+> 
+> For the sake of being complete, we could also decide to not use ldap.
+> Then we would lose the centralisation of password, and that's imho
+> something to avoid if we can. But that's still a option that we should
+> not forget.
+> 
+> 
+> So what I propose to solve this is the following scheme :
+> 
+> A user wanting to authenticate on sympa will provide a login, who will
+> be either :
+> - a email ( his personal email or email of choice ) + password of his
+> choice, stored by sympa, and using regular sympa authentication
+> or
+> - a login ( identity login ) + password from ldap
+> 
+> If I understood correctly, sympa support this
+> ( http://www.sympa.org/manual_6.1/authentication ).
+> 
+> This way :
+> 1) we do not force identity on anybody
+
+?
+
+> 2) the login is either a email ( with email verification done by sympa,
+> and email change also done by sympa ) or our fixed ldap login ( fixed,
+> ie, not under the control of any user )
+
+We need to chose one ...
+
+> 3) people will use the same uid everywhere ( because having sometime the
+> email, sometime the uid is confusing, especially if we start to offer
+> email alias )
+
+I had assumed this would be the strategy from the beginning.
+
+> 
+> So, that's the first part of my mail.
+> 
+> 
+> This issue with ldap integration will likely arise on almost every web
+> application we will setup. So I would like to propose the following :
+> 
+> we have 2 types of applications :
+> - some are for use of active people
+>   - submit packages, send something on svn
+>   - wiki edition ( not sure on this one )
+>   - transifex
+>   - maintainers db
+>   - etc
+> 
+> For those applications, we would likely require be in a team first which
+> should IMHO require a account in identity.
+
+Well, if *all* accounts are already in identity, the user just needs to join 
+the team (if we restrict access to some apps to some teams, e.g. transifex).
+
+> 
+> - some are for the use of the enlarged community
+>   - forums
+>   - mailing lists
+>   - bugzilla
+>   - etc
+> 
+> Those should not requires to be in a team first, and therefore, do not
+> require a account in identity.
+
+But, why should we require them to have another account if they filed a bug 
+about localisation, then offered to be the translator for their language to 
+fix the bug ...
+
+> 
+> Yet, we want to have the benefit of the central authentication as much
+> as possible.
+> 
+> So let's divide applications in 2 category :
+> 
+> The one in the 1st will use ldap authentication only. That's quite easy
+> to achieve most of the time. Of course, supporting ldap is not the only
+> thing we want when selecting a application. Being able to support
+> filter, show meaningful errors messages, and others are also to
+> consider.
+> 
+> The one in the 2nd will use some kind of hybrid auth, if possible. Ie,
+> if people give a ldap login ( uid + password ), the access is granted,
+> and if not, we do a fallback on some kind of native and non centralized
+> login system.
+
+IMHO, this is more trouble than it is worth, and more trouble than having all 
+users on LDAP.
+
+> 
+> However this will open a can of worms :
+> - what about possible login conflict, ie, how can we prevent someone
+> from using "misc" ( for example ) as a login in the native users
+> database ? What would happen if the conflict arise ?
+> 
+> Forcing people to use their email is a solution, but not everything
+> support that model. We can't simply check if the login is not in use
+> because someone could perfectly use it later.
+> 
+> - what people who first open a account on the software, and later change
+> to use a identity login ? How can we merge the 2 ( especially if there
+> is some authorization issue ) ?
+> 
+> This would likely requires hand edition by a admin of the DB or
+> equivalent.
+
+All these are reasons to have a single authentication store. Rememeber, you 
+would have these problems anyway, if you had no LDAP, and is in fact the 
+problem we are trying to avoid by using LDAP.
+
+> - what about a software that do not support it, ie ldap or native, but
+> not both ? Or that do not support it as we want ?
+
+We file bugs, supply patches, or choose other software that is suitable.
+
+> So far, bugzilla support this ( ldap, and fallback on the DB ), maat
+> told me this was the proposed scheme for forum ( iirc ) and that's the
+> one I propose for sympa. So at least, for the example I gave, we are ok.
+> 
+> 
+> and the biggest problem ( imho ) :
+> 
+> How do we decide what category does a application belong ?
+
+We have one category, must support LDAP, and if access should be restricted, 
+it must support LDAP authorization by group or filter (if only filter, then we 
+may need to add memberof overlay).
+
+> Some are quite easy, and some are more difficult ( I think ). For
+> example, I would be inclined to use ldap login for the wiki, or let
+> people be unauthenticated. Maybe not everybody agree.
+> 
+> What about application like mageia-app-db ?
+> This one is easier since we can specifically add this as requirement.
+
+I would say that anonymous access (just browsing packages) should be allowed. 
+If users are to have personalised features, then maybe you would want to 
+integrate some data or links from/to other applications that authenticate 
+
+> So to summarize :
+> - can someone confirm we can do this for sympa ?
+> 
+> - does someone see a problem with the proposed scheme for sympa, and
+> does it fulfill everybody need ?
+
+Which proposed scheme? Using uid as username?
+
+> - does everybody agree for the separation in 2 category of applications,
+> and the consequence for the application in term of authentication ?
+
+I see no reason to have two categories. Please explain exactly how having 
+every single user who interacts with Mageia in any fashion on LDAP is a 
+problem.
+
+My idea was to make it as *easy* as possible for people to manage their 
+relationships to Mageia. So, users register once, and use that account for all 
+"public" access (forum, mailing list, bugzilla, wiki). If a user becomes a 
+contributor, we upgrade their account as necessary, but there is no big 
+obstacle, no disruption etc. to the user.
+
+Regards,
+Buchan
+
+ + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000916.html b/zarb-ml/mageia-sysadm/2010-November/000916.html new file mode 100644 index 000000000..a976a0b68 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000916.html @@ -0,0 +1,77 @@ + + + + [Mageia-sysadm] Puppet Report for valstar.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for valstar.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Thu Nov 25 10:57:25 CET 2010 +

+
+ +
Thu Nov 25 10:57:25 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: end of file reached
+Thu Nov 25 10:57:25 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000917.html b/zarb-ml/mageia-sysadm/2010-November/000917.html new file mode 100644 index 000000000..0397799a1 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000917.html @@ -0,0 +1,158 @@ + + + + [Mageia-sysadm] [139] Dont hardcode filters, but use user's store configuration + + + + + + + + + +

[Mageia-sysadm] [139] Dont hardcode filters, but use user's store configuration

+ root at mageia.org + root at mageia.org +
+ Thu Nov 25 12:34:51 CET 2010 +

+
+ +
Revision: 139
+Author:   buchan
+Date:     2010-11-25 12:34:51 +0100 (Thu, 25 Nov 2010)
+Log Message:
+-----------
+Dont hardcode filters, but use user's store configuration
+This allows configuration of which user attribute to login with, by
+only changing authentication configuration (e.g. in catdap_local.yml)
+
+Modified Paths:
+--------------
+    identity/CatDap/trunk/lib/CatDap/Controller/user.pm
+
+Modified: identity/CatDap/trunk/lib/CatDap/Controller/user.pm
+===================================================================
+--- identity/CatDap/trunk/lib/CatDap/Controller/user.pm	2010-11-25 09:26:28 UTC (rev 138)
++++ identity/CatDap/trunk/lib/CatDap/Controller/user.pm	2010-11-25 11:34:51 UTC (rev 139)
+@@ -126,6 +126,7 @@
+     my $password;
+     my $mesg;
+     my $dn;
++    my $userfilter;
+ 
+     if (not defined $c->user ) {
+         $c->stash(template => 'index.tt');
+@@ -140,8 +141,10 @@
+ 
+     my $user = $c->user->username;
+     my $entry;
+-    $c->log->debug("Searching for user $user");
+-    $mesg = $c->model('User')->search("(&(objectclass=inetOrgPerson)(uid=$user))");
++    $userfilter = $c->user->store->user_filter;
++    $userfilter =~ s/\%s/$user/g,
++    $c->log->debug("Searching for user $user with filter $userfilter");
++    $mesg = $c->model('User')->search($userfilter);
+     $entry = $mesg->entry;
+     my %mods;
+     my %params = %{$c->req->parameters};
+@@ -165,7 +168,7 @@
+         }
+     }
+ 
+-    $mesg = $c->model('User')->search("(&(objectclass=inetOrgPerson)(uid=$user))");
++    $mesg = $c->model('User')->search($userfilter);
+     $c->log->debug($mesg->error) if $mesg->code;
+     $entry = $mesg->entry;
+     $c->log->debug($mesg->error) if $mesg->code;
+@@ -222,12 +225,14 @@
+ 
+ sub add : Local  {
+     my ( $self, $c) = @_;
+-    my ($mesg,$entry,$user,$attr,$value);
++    my ($mesg,$entry,$user,$attr,$value,$userfilter);
+     $attr = $c->req->param('attribute');
+     $value = $c->req->param('value');
+     $user = $c->user->username;
+-    $c->log->debug("Searching for user $user");
+-    $mesg = $c->model('User')->search("(&(objectclass=inetOrgPerson)(uid=$user))");
++    $userfilter = $c->user->store->user_filter;
++    $userfilter = s/%s/$c->user->username/g;
++    $c->log->debug("Searching for user $user with $userfilter");
++    $mesg = $c->model('User')->search($userfilter);
+     $entry = $mesg->entry;
+     $entry->add( $attr => $value);
+     $c->log->info("Adding $attr = $value to user $user");
+@@ -239,10 +244,12 @@
+ 
+ sub delete : Local : Args(2) {
+     my ( $self, $c, $attrname,$attrvalue) = @_;
+-    my ($mesg,$entry,$user);
++    my ($mesg,$entry,$user,$userfilter);
+     $user = $c->user->username;
++    $userfilter = $c->user->store->user_filter;
++    $userfilter =~ s/%s/$c->user->username/g;
+     $c->log->debug("Searching for user $user");
+-    $mesg = $c->model('User')->search("(&(objectclass=inetOrgPerson)(uid=$user))");
++    $mesg = $c->model('User')->search($userfilter);
+     $entry = $mesg->entry;
+     $c->log->info("Deleting $attrname = $attrvalue from user $user");
+     $entry->delete($attrname => $attrvalue);
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101125/01989e65/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000918.html b/zarb-ml/mageia-sysadm/2010-November/000918.html new file mode 100644 index 000000000..e39a4511a --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000918.html @@ -0,0 +1,156 @@ + + + + [Mageia-sysadm] [140] Merge 138 from trunk, allow configurable login attribute + + + + + + + + + +

[Mageia-sysadm] [140] Merge 138 from trunk, allow configurable login attribute

+ root at mageia.org + root at mageia.org +
+ Thu Nov 25 12:37:17 CET 2010 +

+
+ +
Revision: 140
+Author:   buchan
+Date:     2010-11-25 12:37:17 +0100 (Thu, 25 Nov 2010)
+Log Message:
+-----------
+Merge 138 from trunk, allow configurable login attribute
+
+Modified Paths:
+--------------
+    identity/CatDap/branches/live/lib/CatDap/Controller/user.pm
+
+Modified: identity/CatDap/branches/live/lib/CatDap/Controller/user.pm
+===================================================================
+--- identity/CatDap/branches/live/lib/CatDap/Controller/user.pm	2010-11-25 11:34:51 UTC (rev 139)
++++ identity/CatDap/branches/live/lib/CatDap/Controller/user.pm	2010-11-25 11:37:17 UTC (rev 140)
+@@ -122,6 +122,7 @@
+     my $password;
+     my $mesg;
+     my $dn;
++    my $userfilter;
+ 
+     if (not defined $c->user ) {
+         $c->stash(template => 'index.tt');
+@@ -136,8 +137,10 @@
+ 
+     my $user = $c->user->username;
+     my $entry;
+-    $c->log->debug("Searching for user $user");
+-    $mesg = $c->model('User')->search("(&(objectclass=inetOrgPerson)(uid=$user))");
++    $userfilter = $c->user->store->user_filter;
++    $userfilter =~ s/\%s/$user/g,
++    $c->log->debug("Searching for user $user with filter $userfilter");
++    $mesg = $c->model('User')->search($userfilter);
+     $entry = $mesg->entry;
+     my %mods;
+     my %params = %{$c->req->parameters};
+@@ -161,7 +164,7 @@
+         }
+     }
+ 
+-    $mesg = $c->model('User')->search("(&(objectclass=inetOrgPerson)(uid=$user))");
++    $mesg = $c->model('User')->search($userfilter);
+     $c->log->debug($mesg->error) if $mesg->code;
+     $entry = $mesg->entry;
+     $c->log->debug($mesg->error) if $mesg->code;
+@@ -218,12 +221,14 @@
+ 
+ sub add : Local  {
+     my ( $self, $c) = @_;
+-    my ($mesg,$entry,$user,$attr,$value);
++    my ($mesg,$entry,$user,$attr,$value,$userfilter);
+     $attr = $c->req->param('attribute');
+     $value = $c->req->param('value');
+     $user = $c->user->username;
+-    $c->log->debug("Searching for user $user");
+-    $mesg = $c->model('User')->search("(&(objectclass=inetOrgPerson)(uid=$user))");
++    $userfilter = $c->user->store->user_filter;
++    $userfilter = s/%s/$c->user->username/g;
++    $c->log->debug("Searching for user $user with $userfilter");
++    $mesg = $c->model('User')->search($userfilter);
+     $entry = $mesg->entry;
+     $entry->add( $attr => $value);
+     $c->log->info("Adding $attr = $value to user $user");
+@@ -235,10 +240,12 @@
+ 
+ sub delete : Local : Args(2) {
+     my ( $self, $c, $attrname,$attrvalue) = @_;
+-    my ($mesg,$entry,$user);
++    my ($mesg,$entry,$user,$userfilter);
+     $user = $c->user->username;
++    $userfilter = $c->user->store->user_filter;
++    $userfilter =~ s/%s/$c->user->username/g;
+     $c->log->debug("Searching for user $user");
+-    $mesg = $c->model('User')->search("(&(objectclass=inetOrgPerson)(uid=$user))");
++    $mesg = $c->model('User')->search($userfilter);
+     $entry = $mesg->entry;
+     $c->log->info("Deleting $attrname = $attrvalue from user $user");
+     $entry->delete($attrname => $attrvalue);
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101125/d309ad36/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000919.html b/zarb-ml/mageia-sysadm/2010-November/000919.html new file mode 100644 index 000000000..6e5223a1c --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000919.html @@ -0,0 +1,101 @@ + + + + [Mageia-sysadm] [141] create rejected directory if needed + + + + + + + + + +

[Mageia-sysadm] [141] create rejected directory if needed

+ root at mageia.org + root at mageia.org +
+ Thu Nov 25 12:39:23 CET 2010 +

+
+ +
Revision: 141
+Author:   blino
+Date:     2010-11-25 12:39:23 +0100 (Thu, 25 Nov 2010)
+Log Message:
+-----------
+create rejected directory if needed
+
+Modified Paths:
+--------------
+    build_system/iurt/trunk/emi
+
+Modified: build_system/iurt/trunk/emi
+===================================================================
+--- build_system/iurt/trunk/emi	2010-11-25 11:37:17 UTC (rev 140)
++++ build_system/iurt/trunk/emi	2010-11-25 11:39:23 UTC (rev 141)
+@@ -245,6 +245,7 @@
+     } else {
+ 	# should send a mail or something
+ 	plog('ERR', "upload failed ($!), rejecting files in $reject/$path/");
++	mkdir_p("$reject/$path");
+ 	foreach my $rpm (@{$pkg_tree{$prefix}{rpms}}) {
+ 	    link "$done/$path/${prefix}_$rpm", "$reject/$path/${prefix}_$rpm";
+ 	    plog('ERR', "ERROR: link of $rpm failed ($!)");
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101125/049c1f21/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000920.html b/zarb-ml/mageia-sysadm/2010-November/000920.html new file mode 100644 index 000000000..bf8d4ec30 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000920.html @@ -0,0 +1,79 @@ + + + + [Mageia-sysadm] Upload failed for acpi-1.5-1mdv2010.1.src.rpm + + + + + + + + + +

[Mageia-sysadm] Upload failed for acpi-1.5-1mdv2010.1.src.rpm

+ Emi the upload bot + mageia-sysadm at mageia.org +
+ Thu Nov 25 12:39:37 CET 2010 +

+
+ +
The upload of the following packages failed:
+- acpi-1.5-1mdv2010.1.src.rpm
+
+Upload log available in http://kenobi.mandriva.com/queue//rejected//cauldron/main/release/20101125112343.blino.kenobi.4462.youri
+
+ + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000921.html b/zarb-ml/mageia-sysadm/2010-November/000921.html new file mode 100644 index 000000000..4509f432c --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000921.html @@ -0,0 +1,127 @@ + + + + [Mageia-sysadm] [466] add pkgsubmit vhost + + + + + + + + + +

[Mageia-sysadm] [466] add pkgsubmit vhost

+ root at mageia.org + root at mageia.org +
+ Thu Nov 25 12:46:30 CET 2010 +

+
+ +
Revision: 466
+Author:   blino
+Date:     2010-11-25 12:46:30 +0100 (Thu, 25 Nov 2010)
+Log Message:
+-----------
+add pkgsubmit vhost
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/manifests/init.pp
+
+Added Paths:
+-----------
+    puppet/modules/buildsystem/templates/vhost_pkgsubmit.conf
+
+Modified: puppet/modules/buildsystem/manifests/init.pp
+===================================================================
+--- puppet/modules/buildsystem/manifests/init.pp	2010-11-25 07:48:25 UTC (rev 465)
++++ puppet/modules/buildsystem/manifests/init.pp	2010-11-25 11:46:30 UTC (rev 466)
+@@ -31,6 +31,10 @@
+             vhost_file => "buildsystem/vhost_repository.conf",
+         }
+ 
++        apache::vhost_other_app { "pkgsubmit.$domain":
++            vhost_file => "buildsystem/vhost_pkgsubmit.conf",
++        }
++
+         include scheduler
+         include gatherer
+     }
+
+Added: puppet/modules/buildsystem/templates/vhost_pkgsubmit.conf
+===================================================================
+--- puppet/modules/buildsystem/templates/vhost_pkgsubmit.conf	                        (rev 0)
++++ puppet/modules/buildsystem/templates/vhost_pkgsubmit.conf	2010-11-25 11:46:30 UTC (rev 466)
+@@ -0,0 +1,13 @@
++<%
++pkgsubmit_root = "/home/schedbot/uploads"
++%>
++
++<VirtualHost *:80>
++        ServerName pkgsubmit.<%= domain %>
++        DocumentRoot <%= pkgsubmit_root %>
++        Alias /uploads /home/schedbot/uploads
++        <Location />
++          Allow from all
++          Options Indexes
++        </Location>
++</VirtualHost>
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101125/56264c2b/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000922.html b/zarb-ml/mageia-sysadm/2010-November/000922.html new file mode 100644 index 000000000..52f943ebc --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000922.html @@ -0,0 +1,99 @@ + + + + [Mageia-sysadm] [467] http queue is on http://pkgsubmit.mageia.org/uploads/ + + + + + + + + + +

[Mageia-sysadm] [467] http queue is on http://pkgsubmit.mageia.org/uploads/

+ root at mageia.org + root at mageia.org +
+ Thu Nov 25 12:49:41 CET 2010 +

+
+ +
Revision: 467
+Author:   blino
+Date:     2010-11-25 12:49:41 +0100 (Thu, 25 Nov 2010)
+Log Message:
+-----------
+http queue is on http://pkgsubmit.mageia.org/uploads/
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/templates/upload.conf
+
+Modified: puppet/modules/buildsystem/templates/upload.conf
+===================================================================
+--- puppet/modules/buildsystem/templates/upload.conf	2010-11-25 11:46:30 UTC (rev 466)
++++ puppet/modules/buildsystem/templates/upload.conf	2010-11-25 11:49:41 UTC (rev 467)
+@@ -53,4 +53,5 @@
+ 	    },
+       },
+       admin => 'mageia-sysadm at mageia.org',
++      http_queue => 'http://pkgsubmit.mageia.org/uploads/',
+ }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101125/01126345/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000923.html b/zarb-ml/mageia-sysadm/2010-November/000923.html new file mode 100644 index 000000000..0262692e7 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000923.html @@ -0,0 +1,99 @@ + + + + [Mageia-sysadm] [468] upload packages as schedbot user for now + + + + + + + + + +

[Mageia-sysadm] [468] upload packages as schedbot user for now

+ root at mageia.org + root at mageia.org +
+ Thu Nov 25 12:52:01 CET 2010 +

+
+ +
Revision: 468
+Author:   blino
+Date:     2010-11-25 12:52:01 +0100 (Thu, 25 Nov 2010)
+Log Message:
+-----------
+upload packages as schedbot user for now
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/templates/upload.conf
+
+Modified: puppet/modules/buildsystem/templates/upload.conf
+===================================================================
+--- puppet/modules/buildsystem/templates/upload.conf	2010-11-25 11:49:41 UTC (rev 467)
++++ puppet/modules/buildsystem/templates/upload.conf	2010-11-25 11:52:01 UTC (rev 468)
+@@ -54,4 +54,5 @@
+       },
+       admin => 'mageia-sysadm at mageia.org',
+       http_queue => 'http://pkgsubmit.mageia.org/uploads/',
++      upload_user => 'schedbot',
+ }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101125/24435da0/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000924.html b/zarb-ml/mageia-sysadm/2010-November/000924.html new file mode 100644 index 000000000..e81903924 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000924.html @@ -0,0 +1,101 @@ + + + + [Mageia-sysadm] [469] remove trailing slash in queue URL + + + + + + + + + +

[Mageia-sysadm] [469] remove trailing slash in queue URL

+ root at mageia.org + root at mageia.org +
+ Thu Nov 25 12:55:04 CET 2010 +

+
+ +
Revision: 469
+Author:   blino
+Date:     2010-11-25 12:55:04 +0100 (Thu, 25 Nov 2010)
+Log Message:
+-----------
+remove trailing slash in queue URL
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/templates/upload.conf
+
+Modified: puppet/modules/buildsystem/templates/upload.conf
+===================================================================
+--- puppet/modules/buildsystem/templates/upload.conf	2010-11-25 11:52:01 UTC (rev 468)
++++ puppet/modules/buildsystem/templates/upload.conf	2010-11-25 11:55:04 UTC (rev 469)
+@@ -53,6 +53,6 @@
+ 	    },
+       },
+       admin => 'mageia-sysadm at mageia.org',
+-      http_queue => 'http://pkgsubmit.mageia.org/uploads/',
++      http_queue => 'http://pkgsubmit.mageia.org/uploads',
+       upload_user => 'schedbot',
+ }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101125/9013f6e3/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000925.html b/zarb-ml/mageia-sysadm/2010-November/000925.html new file mode 100644 index 000000000..4026c9081 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000925.html @@ -0,0 +1,101 @@ + + + + [Mageia-sysadm] [142] log path is unused + + + + + + + + + +

[Mageia-sysadm] [142] log path is unused

+ root at mageia.org + root at mageia.org +
+ Thu Nov 25 12:59:18 CET 2010 +

+
+ +
Revision: 142
+Author:   blino
+Date:     2010-11-25 12:59:17 +0100 (Thu, 25 Nov 2010)
+Log Message:
+-----------
+log path is unused
+
+Modified Paths:
+--------------
+    build_system/iurt/trunk/ulri
+
+Modified: build_system/iurt/trunk/ulri
+===================================================================
+--- build_system/iurt/trunk/ulri	2010-11-25 11:39:23 UTC (rev 141)
++++ build_system/iurt/trunk/ulri	2010-11-25 11:59:17 UTC (rev 142)
+@@ -85,7 +85,6 @@
+ 			user => 'mandrake' ,
+ 			command => 'sudo -u mandrake -H /usr/local/bin/iurt2.sh --copy_srpm --group -v 1 --config local_spool /export/home/mandrake/iurt/__DIR__ --no_rsync --chrooted-urpmi http://kenobi/dis/ -r __TARGET__ __ARCH__',
+ 			packages => '/export/home/mandrake/iurt/',
+-			log => '/export/home/mandrake/iurt/', 
+ 		    } ,
+ 		},
+ 	    },
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101125/151a7b1e/attachment-0001.html>
+
+ + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000926.html b/zarb-ml/mageia-sysadm/2010-November/000926.html new file mode 100644 index 000000000..621c299a1 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000926.html @@ -0,0 +1,101 @@ + + + + [Mageia-sysadm] [470] remove unused logdir + + + + + + + + + +

[Mageia-sysadm] [470] remove unused logdir

+ root at mageia.org + root at mageia.org +
+ Thu Nov 25 13:01:14 CET 2010 +

+
+ +
Revision: 470
+Author:   blino
+Date:     2010-11-25 13:01:13 +0100 (Thu, 25 Nov 2010)
+Log Message:
+-----------
+remove unused logdir
+
+Modified Paths:
+--------------
+    puppet/modules/buildsystem/templates/upload.conf
+
+Modified: puppet/modules/buildsystem/templates/upload.conf
+===================================================================
+--- puppet/modules/buildsystem/templates/upload.conf	2010-11-25 11:55:04 UTC (rev 469)
++++ puppet/modules/buildsystem/templates/upload.conf	2010-11-25 12:01:13 UTC (rev 470)
+@@ -28,7 +28,6 @@
+ #                           command => "iurt --copy-srpm --group -v 6 --config local_spool $homedir/iurt/__DIR__ --no_rsync --chrooted-urpmi -m __MEDIA__ -- $repository --additional-media -m __MEDIA__ -- file://$homedir/cache/ -p \"__PACKAGER__\" -r __TARGET__ __ARCH__",
+                             command => "iurt --copy_srpm --group -v 6 --config local_spool $homedir/iurt/__DIR__ --no_rsync --chrooted-urpmi -m __MEDIA__ -- $repository -p \"__PACKAGER__\" -r __TARGET__ __ARCH__",
+                             packages => "$homedir/iurt/",
+-                            log => "$homedir/iurt/", 
+                         },
+                     });
+                 } @{$nodes{$arch}},
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101125/3ff60f22/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000927.html b/zarb-ml/mageia-sysadm/2010-November/000927.html new file mode 100644 index 000000000..cbf3cc157 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000927.html @@ -0,0 +1,116 @@ + + + + [Mageia-sysadm] [143] remove trailing slashes + + + + + + + + + +

[Mageia-sysadm] [143] remove trailing slashes

+ root at mageia.org + root at mageia.org +
+ Thu Nov 25 13:11:08 CET 2010 +

+
+ +
Revision: 143
+Author:   blino
+Date:     2010-11-25 13:11:08 +0100 (Thu, 25 Nov 2010)
+Log Message:
+-----------
+remove trailing slashes
+
+Modified Paths:
+--------------
+    build_system/iurt/trunk/ulri
+
+Modified: build_system/iurt/trunk/ulri
+===================================================================
+--- build_system/iurt/trunk/ulri	2010-11-25 11:59:17 UTC (rev 142)
++++ build_system/iurt/trunk/ulri	2010-11-25 12:11:08 UTC (rev 143)
+@@ -131,11 +131,11 @@
+     },
+     http_queue => {
+ 	desc => 'Address where log can be consulted',
+-	default => 'http://kenobi.mandriva.com/queue/'
++	default => 'http://kenobi.mandriva.com/queue '
+     },
+     queue => {
+ 	desc => "Root of the tree where the packages to compile are located",
+-	default => "$HOME/uploads/"
++	default => "$HOME/uploads "
+     },
+     cache_home => {
+ 	desc => 'Where to store the cache files',
+@@ -143,7 +143,7 @@
+     },
+     tmp => {
+        desc => "Temporary directory",
+-       default => "$HOME/tmp/"
++       default => "$HOME/tmp"
+     },
+     ssh_options => {
+ 	desc => "SSH options",
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101125/fa5b8233/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000928.html b/zarb-ml/mageia-sysadm/2010-November/000928.html new file mode 100644 index 000000000..7337ce475 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000928.html @@ -0,0 +1,106 @@ + + + + [Mageia-sysadm] [144] remove more trailing slashes + + + + + + + + + +

[Mageia-sysadm] [144] remove more trailing slashes

+ root at mageia.org + root at mageia.org +
+ Thu Nov 25 13:11:46 CET 2010 +

+
+ +
Revision: 144
+Author:   blino
+Date:     2010-11-25 13:11:45 +0100 (Thu, 25 Nov 2010)
+Log Message:
+-----------
+remove more trailing slashes
+
+Modified Paths:
+--------------
+    build_system/iurt/trunk/ulri
+
+Modified: build_system/iurt/trunk/ulri
+===================================================================
+--- build_system/iurt/trunk/ulri	2010-11-25 12:11:08 UTC (rev 143)
++++ build_system/iurt/trunk/ulri	2010-11-25 12:11:45 UTC (rev 144)
+@@ -184,9 +184,9 @@
+ my %pkg_tree;
+ my $compildone = $cache->{done};
+ 
+-my $todo = "$config->{queue}/todo/";
+-my $failure = "$config->{queue}/failure/";
+-my $done = "$config->{queue}/done/";
++my $todo = "$config->{queue}/todo";
++my $failure = "$config->{queue}/failure";
++my $done = "$config->{queue}/done";
+ 
+ # Raise this when the noarch package starts to build on any bot
+ my %noarch_build;
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101125/0c609744/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000929.html b/zarb-ml/mageia-sysadm/2010-November/000929.html new file mode 100644 index 000000000..fd14647ab --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000929.html @@ -0,0 +1,124 @@ + + + + [Mageia-sysadm] [145] remove trailing slashes + + + + + + + + + +

[Mageia-sysadm] [145] remove trailing slashes

+ root at mageia.org + root at mageia.org +
+ Thu Nov 25 13:12:15 CET 2010 +

+
+ +
Revision: 145
+Author:   blino
+Date:     2010-11-25 13:12:15 +0100 (Thu, 25 Nov 2010)
+Log Message:
+-----------
+remove trailing slashes
+
+Modified Paths:
+--------------
+    build_system/iurt/trunk/emi
+
+Modified: build_system/iurt/trunk/emi
+===================================================================
+--- build_system/iurt/trunk/emi	2010-11-25 12:11:45 UTC (rev 144)
++++ build_system/iurt/trunk/emi	2010-11-25 12:12:15 UTC (rev 145)
+@@ -81,7 +81,7 @@
+     },
+     tmp => {
+ 	desc => "Temporary directory",
+-	default => "$HOME/tmp/"
++	default => "$HOME/tmp"
+     },
+     root => {
+ 	desc => 'Architecture root dir',
+@@ -97,7 +97,7 @@
+     },
+     queue => {
+ 	desc => 'root directory of the various upload queues',
+-	default => "$HOME/uploads/"
++	default => "$HOME/uploads"
+     },
+     ssh_option => {
+ 	desc => "SSH options",
+@@ -115,9 +115,9 @@
+ my $cache =  { arch => {} };
+ 
+ 
+-my $todo = "$config->{queue}/todo/";
+-my $done = "$config->{queue}/done/";
+-my $reject = "$config->{queue}/rejected/";
++my $todo = "$config->{queue}/todo";
++my $done = "$config->{queue}/done";
++my $reject = "$config->{queue}/rejected";
+ 
+ my %pkg_tree;
+ my %excluded;
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101125/0295b730/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000930.html b/zarb-ml/mageia-sysadm/2010-November/000930.html new file mode 100644 index 000000000..966250a70 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000930.html @@ -0,0 +1,102 @@ + + + + [Mageia-sysadm] [146] remove spurious space, oops + + + + + + + + + +

[Mageia-sysadm] [146] remove spurious space, oops

+ root at mageia.org + root at mageia.org +
+ Thu Nov 25 13:13:11 CET 2010 +

+
+ +
Revision: 146
+Author:   blino
+Date:     2010-11-25 13:13:11 +0100 (Thu, 25 Nov 2010)
+Log Message:
+-----------
+remove spurious space, oops
+
+Modified Paths:
+--------------
+    build_system/iurt/trunk/ulri
+
+Modified: build_system/iurt/trunk/ulri
+===================================================================
+--- build_system/iurt/trunk/ulri	2010-11-25 12:12:15 UTC (rev 145)
++++ build_system/iurt/trunk/ulri	2010-11-25 12:13:11 UTC (rev 146)
+@@ -135,7 +135,7 @@
+     },
+     queue => {
+ 	desc => "Root of the tree where the packages to compile are located",
+-	default => "$HOME/uploads "
++	default => "$HOME/uploads"
+     },
+     cache_home => {
+ 	desc => 'Where to store the cache files',
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101125/db90a179/attachment-0001.html>
+
+ + + + + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000931.html b/zarb-ml/mageia-sysadm/2010-November/000931.html new file mode 100644 index 000000000..c3be3c949 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000931.html @@ -0,0 +1,82 @@ + + + + [Mageia-sysadm] Main tasks for the next days + + + + + + + + + +

[Mageia-sysadm] Main tasks for the next days

+ Olivier Blin + mageia at blino.org +
+ Thu Nov 25 13:18:45 CET 2010 +

+
+ +
Michael Scherer <misc at zarb.org> writes:
+
+>> > Now, if we decide that we also need to clean svn, we can use git and
+>> > tailor to do some trick to clean the source code ( ie, in the case of
+>> > urpmi, remove the name mandriva from the pod documentation ).
+>> 
+>> We can start working in a private svn to clean the Mandriva references,
+>> and only publish the last revision, containing a completely clean repo
+>
+> So you just volunteered to do the job. Thanks a lot ( yes, it was a
+> trap ).
+
+I was just proposing.
+
+> In fact, it depend on what you call "private svn" exactly. Who will have
+> access, who decide, etc.
+>  ( and private is maybe not really open enough )
+
+I mean that svn should not be publicily available, and packages should
+not be propagated on mirrors.
+Maybe this bootstrap svn could be made available to trusted contributors
+(founders + Mandriva contributors) first, and this restriction could be
+lifted when the basesystem packages are clean enough to be made public.
+
+-- 
+Olivier Blin - blino
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000932.html b/zarb-ml/mageia-sysadm/2010-November/000932.html new file mode 100644 index 000000000..5689fc94e --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000932.html @@ -0,0 +1,131 @@ + + + + [Mageia-sysadm] progress of the night + + + + + + + + + +

[Mageia-sysadm] progress of the night

+ Olivier Blin + mageia at blino.org +
+ Thu Nov 25 14:23:59 CET 2010 +

+
+ +
Michael Scherer <misc at zarb.org> writes:
+
+> ( blino also did some work, but I will let him talk of this, like :
+> - explaining the cooldron idea
+> - the vhost "repository"
+
+Hi,
+
+Some updates:
+- iurt has been cleaned not to require a global "sudo" access:
+  all commands requiring root access are now run through the
+  iurt_root_command   wrapper, and iurt now requires sudo access for
+  this wrapper only
+- the mandrake user is gone, we now have per-task users:
+  * the schedbot user on the main node schedules the jobs with ulri
+    and gathers back the packages with ulri + emi
+  * the iurt user runs the iurt jobs on the build nodes
+    (it might be used on the main node later to receive batch rebuilds or
+     dkms rebuilds)
+- iurt config files are now in /etc/iurt:
+  * upload.conf (for ulri + emi)
+  * build/<distro version>.conf (for iurt)
+- upload.conf file has been factorized (simple build nodes list)
+- a repository.mageia.org vhost (private on the BS) has been created on
+  valstar with a small cauldron repository
+  http://repository.mageia.org/distrib points to
+  /distrib/boostrap/distrib on valstar
+  It is not in /distrib/mirror since it is not meant to be mirrored yet.
+  It is based on packages from Mandriva Cooker for i586 and x86_64.
+- iurt uses http://repository.mageia.org/distrib
+- ulri specifies the iurt log dir on the ssh command line, avoiding the
+  use of a iurt wrapper in the build node
+- a pkgsubmit.mageia.org vhost (public) has been created
+  For now, http://pkgsubmit.mageia.org/uploads/ points to the build
+  queue (raw directoryt index)
+
+Basically, iurt, ulri and emi are ready now.
+
+Todo:
+- fix a bug that makes iurt rebuild the whole chroot tarball everytime
+  (it checks NFS repository
+- setup mdv-youri to submit packages in the todo queue
+  (this will get called by repsys submit)
+- setup mdv-youri to upload built packages in the repository (/distrib/repository)
+- setup cronjobs to run ulri and emi
+- allow uploads to a restricted set of trusted users
+- start the package cleaning job (mga extension, remove Mandriva references)
+- move the bootstrap repo to a more meaningful directory, for example
+  /distrib/repository
+- setup a cronjob to mirror /distrib/repository to /distrib/mirror
+  (when the cauldron repo is cleaned from Mandriva references)
+- setup the web BS status page on http://pkgsubmit.mageia.org/
+
+The cauldron bootstrap repo (previously codenamed cooldron) has been
+built this way:
+  rm -f /var/cache/urpmi/rpms/*
+  linux32 urpmi --auto --use-distrib http://ftp.free.fr/mirrors/ftp.mandriva.com/MandrivaLinux/official/2010.1/i586
+    --root /tmp/testroot --no-install basesystem rpm-build
+    rpm-mandriva-setup-build sudo urpmi curl python-devel dbus-devel
+    gtk2-devel curl-devel desktop-file-utils libnotify-devel
+    xmlrpc-c-devel xmlrpc-c file-devel python-devel gettext
+    polkit-1-devel libzip-devel libtar-devel bzip2-devel zlib-devel
+    intltool bison rpm-devel sqlite-devel
+  mkdir -p /distrib/boostrap/distrib/cauldron/i586/media/main/release/
+  cp -fa /var/cache/urpmi/rpms/* /distrib/boostrap/distrib/cauldron/i586/media/main/release/
+  # edit a minimal /distrib/boostrap/distrib/cauldron/i586/media/media_info/media.cfg
+  gendistrib --skipmissingdir /distrib/boostrap/distrib/cauldron
+
+Cheers
+
+-- 
+Olivier Blin - blino
+
+ + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000933.html b/zarb-ml/mageia-sysadm/2010-November/000933.html new file mode 100644 index 000000000..bed4eb023 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000933.html @@ -0,0 +1,78 @@ + + + + [Mageia-sysadm] Main tasks for the next days + + + + + + + + + +

[Mageia-sysadm] Main tasks for the next days

+ Michael Scherer + misc at zarb.org +
+ Thu Nov 25 17:29:00 CET 2010 +

+
+ +
Le jeudi 25 novembre 2010 à 13:18 +0100, Olivier Blin a écrit :
+> Michael Scherer <misc at zarb.org> writes:
+
+> > In fact, it depend on what you call "private svn" exactly. Who will have
+> > access, who decide, etc.
+> >  ( and private is maybe not really open enough )
+> 
+> I mean that svn should not be publicily available, and packages should
+> not be propagated on mirrors.
+> Maybe this bootstrap svn could be made available to trusted contributors
+> (founders + Mandriva contributors) first, and this restriction could be
+> lifted when the basesystem packages are clean enough to be made public.
+
+I still do not see the issue.
+
+In fact, the question is how doing it privately would be less a problem
+than doing it publicly. 
+
+
+-- 
+Michael Scherer
+
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000934.html b/zarb-ml/mageia-sysadm/2010-November/000934.html new file mode 100644 index 000000000..fc4344f5c --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000934.html @@ -0,0 +1,80 @@ + + + + [Mageia-sysadm] Main tasks for the next days + + + + + + + + + +

[Mageia-sysadm] Main tasks for the next days

+ Olivier Blin + mageia at blino.org +
+ Thu Nov 25 17:43:23 CET 2010 +

+
+ +
Michael Scherer <misc at zarb.org> writes:
+
+> Le jeudi 25 novembre 2010 à 13:18 +0100, Olivier Blin a écrit :
+>> Michael Scherer <misc at zarb.org> writes:
+>
+>> > In fact, it depend on what you call "private svn" exactly. Who will have
+>> > access, who decide, etc.
+>> >  ( and private is maybe not really open enough )
+>> 
+>> I mean that svn should not be publicily available, and packages should
+>> not be propagated on mirrors.
+>> Maybe this bootstrap svn could be made available to trusted contributors
+>> (founders + Mandriva contributors) first, and this restriction could be
+>> lifted when the basesystem packages are clean enough to be made public.
+>
+> I still do not see the issue.
+>
+> In fact, the question is how doing it privately would be less a problem
+> than doing it publicly. 
+
+By not having sources explicitely using the Mandriva brand in a
+repository we make public.
+
+-- 
+Olivier Blin - blino
+
+ + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000935.html b/zarb-ml/mageia-sysadm/2010-November/000935.html new file mode 100644 index 000000000..af0459948 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000935.html @@ -0,0 +1,104 @@ + + + + [Mageia-sysadm] [471] restart amavis on configuration file change + + + + + + + + + +

[Mageia-sysadm] [471] restart amavis on configuration file change

+ root at mageia.org + root at mageia.org +
+ Thu Nov 25 18:48:11 CET 2010 +

+
+ +
Revision: 471
+Author:   misc
+Date:     2010-11-25 18:48:10 +0100 (Thu, 25 Nov 2010)
+Log Message:
+-----------
+restart amavis on configuration file change
+
+Modified Paths:
+--------------
+    puppet/modules/amavis/manifests/init.pp
+
+Modified: puppet/modules/amavis/manifests/init.pp
+===================================================================
+--- puppet/modules/amavis/manifests/init.pp	2010-11-25 12:01:13 UTC (rev 470)
++++ puppet/modules/amavis/manifests/init.pp	2010-11-25 17:48:10 UTC (rev 471)
+@@ -7,10 +7,11 @@
+     service { "amavisd":
+         ensure => running,
+         path => "/etc/init.d/amavisd",
+-        subscribe  => Package["amavisd-new"],
++        subscribe  => [Package["amavisd-new"], File["amavisd.conf"]], 
+     }
+ 
+-    file { "/etc/amavisd/amavisd.conf":
++    file { "amavisd.conf":
++        path => "/etc/amavisd/amavisd.conf",
+         ensure => present,
+         owner => root,
+         group => root,
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101125/b4c59407/attachment.html>
+
+ + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000936.html b/zarb-ml/mageia-sysadm/2010-November/000936.html new file mode 100644 index 000000000..a9f536c23 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000936.html @@ -0,0 +1,99 @@ + + + + [Mageia-sysadm] [473] no antivirus are deployed for now, and none are planned for the moment + + + + + + + + + +

[Mageia-sysadm] [473] no antivirus are deployed for now, and none are planned for the moment

+ root at mageia.org + root at mageia.org +
+ Thu Nov 25 18:48:13 CET 2010 +

+
+ +
Revision: 473
+Author:   misc
+Date:     2010-11-25 18:48:12 +0100 (Thu, 25 Nov 2010)
+Log Message:
+-----------
+no antivirus are deployed for now, and none are planned for the moment
+
+Modified Paths:
+--------------
+    puppet/modules/amavis/templates/amavisd.conf
+
+Modified: puppet/modules/amavis/templates/amavisd.conf
+===================================================================
+--- puppet/modules/amavis/templates/amavisd.conf	2010-11-25 17:48:11 UTC (rev 472)
++++ puppet/modules/amavis/templates/amavisd.conf	2010-11-25 17:48:12 UTC (rev 473)
+@@ -773,7 +773,7 @@
+ # Always succeeds and considers mail clean.
+ # Potentially useful when all other scanners fail and it is desirable
+ # to let mail continue to flow with no virus checking (when uncommented).
+-# ['always-clean', sub {0}],
++ ['always-clean', sub {0}],
+ 
+ );
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101125/7e7b80d3/attachment-0001.html>
+
+ + + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000937.html b/zarb-ml/mageia-sysadm/2010-November/000937.html new file mode 100644 index 000000000..46f5fdfe9 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000937.html @@ -0,0 +1,96 @@ + + + + [Mageia-sysadm] [472] filter mail trough amavis ( for spamassassin ) and block some extension + + + + + + + + + +

[Mageia-sysadm] [472] filter mail trough amavis ( for spamassassin ) and block some extension

+ root at mageia.org + root at mageia.org +
+ Thu Nov 25 18:48:11 CET 2010 +

+
+ +
Revision: 472
+Author:   misc
+Date:     2010-11-25 18:48:11 +0100 (Thu, 25 Nov 2010)
+Log Message:
+-----------
+filter mail trough amavis ( for spamassassin ) and block some extension
+
+Modified Paths:
+--------------
+    puppet/modules/postfix/templates/main.cf
+
+Modified: puppet/modules/postfix/templates/main.cf
+===================================================================
+--- puppet/modules/postfix/templates/main.cf	2010-11-25 17:48:10 UTC (rev 471)
++++ puppet/modules/postfix/templates/main.cf	2010-11-25 17:48:11 UTC (rev 472)
+@@ -52,6 +52,7 @@
+ 
+ <%- if all_tags.include?('postfix::smtp_server') -%>
+ transport_maps = regexp:/etc/postfix/transport_regexp
++content_filter = smtp-filter:[127.0.0.1]:10025
+ <%- end -%>
+ 
+ <%- if classes.include?('sympa') -%>
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101125/ca1c2fcf/attachment-0001.html>
+
+ + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000938.html b/zarb-ml/mageia-sysadm/2010-November/000938.html new file mode 100644 index 000000000..05c778c5c --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000938.html @@ -0,0 +1,97 @@ + + + + [Mageia-sysadm] [474] rules compilation requires that the rules are present first + + + + + + + + + +

[Mageia-sysadm] [474] rules compilation requires that the rules are present first

+ root at mageia.org + root at mageia.org +
+ Thu Nov 25 18:48:14 CET 2010 +

+
+ +
Revision: 474
+Author:   misc
+Date:     2010-11-25 18:48:14 +0100 (Thu, 25 Nov 2010)
+Log Message:
+-----------
+rules compilation requires that the rules are present first
+
+Modified Paths:
+--------------
+    puppet/modules/spamassassin/manifests/init.pp
+
+Modified: puppet/modules/spamassassin/manifests/init.pp
+===================================================================
+--- puppet/modules/spamassassin/manifests/init.pp	2010-11-25 17:48:12 UTC (rev 473)
++++ puppet/modules/spamassassin/manifests/init.pp	2010-11-25 17:48:14 UTC (rev 474)
+@@ -20,6 +20,6 @@
+ 
+     exec { "sa-compile":
+         refreshonly => true,
+-        require => Package["spamassassin-sa-compile"],
++        require => [Package["spamassassin-sa-compile"],Package["spamassassin"]]
+     }
+ }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101125/be9974bf/attachment.html>
+
+ + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000939.html b/zarb-ml/mageia-sysadm/2010-November/000939.html new file mode 100644 index 000000000..ee66c5348 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000939.html @@ -0,0 +1,98 @@ + + + + [Mageia-sysadm] [475] use antispam and antivirus on smtp server + + + + + + + + + +

[Mageia-sysadm] [475] use antispam and antivirus on smtp server

+ root at mageia.org + root at mageia.org +
+ Thu Nov 25 18:48:16 CET 2010 +

+
+ +
Revision: 475
+Author:   misc
+Date:     2010-11-25 18:48:15 +0100 (Thu, 25 Nov 2010)
+Log Message:
+-----------
+use antispam and antivirus on smtp server
+
+Modified Paths:
+--------------
+    puppet/modules/postfix/manifests/init.pp
+
+Modified: puppet/modules/postfix/manifests/init.pp
+===================================================================
+--- puppet/modules/postfix/manifests/init.pp	2010-11-25 17:48:14 UTC (rev 474)
++++ puppet/modules/postfix/manifests/init.pp	2010-11-25 17:48:15 UTC (rev 475)
+@@ -33,6 +33,8 @@
+ 
+     class smtp_server inherits base {
+         include postgrey
++        include amavis
++        include spamassassin
+         file { '/etc/postfix/main.cf':
+             content => template("postfix/main.cf"),
+         }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101125/16feb833/attachment.html>
+
+ + + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000940.html b/zarb-ml/mageia-sysadm/2010-November/000940.html new file mode 100644 index 000000000..82b3bea77 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000940.html @@ -0,0 +1,306 @@ + + + + [Mageia-sysadm] [LONG] sympa ( and web apps ) ldap authentication + + + + + + + + + +

[Mageia-sysadm] [LONG] sympa ( and web apps ) ldap authentication

+ Michael Scherer + misc at zarb.org +
+ Thu Nov 25 18:54:26 CET 2010 +

+
+ +
Le jeudi 25 novembre 2010 à 10:50 +0100, Buchan Milne a écrit :
+> On Wednesday, 24 November 2010 18:54:40 Michael Scherer wrote:
+
+> > So the first proposal that I will expose :
+> > 
+> > - users will use their personal email address and the password from ldap
+> > to authenticate themselves.
+> 
+> Is this a limitation in sympa? All LDAP-capable software should allow 
+> configuration of which attribute to authenticate against ...
+
+Of course we can, but my goal was to list the various proposal that I
+have understood to be proposed ( maybe they were not, but then I hope
+the people who complain about me misrepresenting them will volunteer
+next time :) 
+
+For sympa, it can fetch the mail from the dn, and the dn from the login,
+so we can perfectly avoid using email in login. 
+
+> > While this is the easiest solution ( and the current one in svn from
+> > what I understood ), this idea suffer from 3 issues :
+> > 
+> > - people will use a different login than the one of identity.
+> 
+> Why? We can change identity to search for the username in the mail attribute. 
+> We can even probably allow login with either uid or mail. In fact, it should 
+> only be a configuration change to set user_filter in catdap_local.yml. It 
+> isn't entirely, I will commit a ~ 10 line patch to fix hardcoding of 
+> attributes/filters in user.pm shortly.
+
+My point is that we should be consistent. Ie, if we start using
+sometimes a username, sometimes a email ( and well, I must say "one of
+the numerous email people have", because I am pretty sure that I am not
+the only one to have more than 1 email ), this will be annoying.
+
+We cannot use email everywhere, since some services do not support it
+( svn+ssh will not accept it, no @ in username IIRC, neither would the
+current buildsystem ). And doing translation will be source of
+confusion.
+
+Morever, using email as a login would mean that it would appear at a lot
+of place on the web, and that's the sort of leak that should be avoided
+at least for spam prevention reason ( and because some people will
+complain, and complained in the past for example on bugzilla ).
+
+So we should use the username, as this is mean to do that.
+
+> > This is
+> > not really how a centralized login system should work, imho. And this
+> > was a source of confusion ( at least, of my confusion ) at Mandriva.
+> > 
+> > - people will need to open a account on identity. For some applications,
+> > this may not be desirable. For example, on a forum, having to first
+> > register, and then log on the forum to fill the data is not good.
+> 
+> Normally, the user has to register on a forum anyway, activate the account, 
+> before changing avatar or anything. So, I don't see the difference. 
+> As long as 
+> the forum has been configured to send users to identity to register, there 
+> shouldn't be too much inconvenience. We could try and redirect the user to the 
+> forum login after activation to make it a bit easier.
+
+That's still a 2 step procedure instead of 1. But I am not the one who
+indeed would complain of that. And given that a account creation is a
+rare event ( in a user timeline ), that's not a big problem.
+
+A redirection to the service would indeed be a welcome addition. You
+know what to add on the TODO list.
+
+> > For
+> > mailling list, if we intend to subscribe gmane, or mail archive to the
+> > list, this is not good either. I couldn't get in touch with rda in time,
+> > but I think that's what he meant ( if not, romain, feel free to correct
+> > me ). And in fact, this would also put more pressure on ldap than
+> > intended ( if we requires this for forum, we may end with a big ldap
+> > directory ).
+> 
+> AFAIK, the forum only impacts LDAP on login to the forum, not on every page 
+> view etc.
+
+Well, the fact is managing a ldap of 400 accounts is not the same scale
+to me than one of 60 000 to 1 000 000 entries. ( if I take the range of
+users of Mandriva forum to the range of Ubuntu's one ). I was under the
+impression that this kind of directory would requires more ressources
+than what we planned. Or at least, to me, it is out of the "this will do
+it without trouble" range. And since I do not remind that we did a
+formal ressources planning, unless it was not widely published ( and in
+this case, it should be more visible ), it seemed a lot to me.
+
+But maybe I am worried for nothing ( since I still live in a world where
+1 gb of ram is a huge amount for a server :/ ).
+
+
+> > - using email as login is dangerous. Since the email is freely editable
+> > in catdap ( and multivalued ), someone could perfectly change his email
+> > after opening a account, and thus get access to sympa subscription of
+> > someone else.
+> 
+> And lose their account to the user whose email address was used as soon as we 
+> allow user-initiated password reset ...
+
+Which is not a problem, since opening a account is free. If we start to
+have some private mls ( such as the one requested for forums ), reading
+archive would be a privacy issue, and so step must be taken to prevent
+that.
+
+But my main point is not this particular example who is quite easy to
+prevent. But rather that letting people freely edit the attribute they
+use for login is IMHO a risky operation given the wide range of
+application that we will have.
+
+Editing by admin should be ok. 
+
+> > More ever, nothing guarantee that email are uniques
+> > across the whole DIT, especially if email span on 2 attributes ( mail
+> > and mailAlternateAddress ).
+> 
+> mail is multi-valued, we should have a policy on how we maintain this. At 
+> present, I don't see if we need mailAlternateAddress. However, if we maintain 
+> all email addresses in 'mail' attribute, we can apply slapo-unique to easily 
+> prevent this.
+
+I could see a reason :
+
+We need to have at least 1 attribute who is the mail for which we will
+forward if we set aliases ( and we will, I think we all expect them ),
+who should not be multivalued. 
+
+And we need another attribute for the email the user entered on first
+login, so we know where to send a new password request.
+
+And a 3rd attribute to handle the email in a potential vcard-like
+system.
+
+1st attribute should not be multiValued.
+2nd shouldn't either.
+3rd should be, but we could decide it is not.
+
+So, my understanding is that mail is 2nd, mailAlternateAddress is the
+3rd, and mailForwardingAddress is the 1st ( but a quick look at schema
+do not seems to confirm this, so again, I may be wrong ).
+
+We could reduce that to 2 attributes :
+- mail act for 2 and 1, not multivalued 
+- mailAlternateAdress act for 3, multivalued
+
+or :
+- mail act for 3
+- mailForwardingAddress act for 1,
+and we do not use anything for 2 ( like either using all mail of 3, or
+just 1 ).
+
+I would favor the first scheme.
+
+In fact, I would even favor some system where mail mean the email people
+use to receive mail for ml, and mailAlternateAdress are email that
+people can use to post ( so the day I am not awake and start to use my
+personal mail, I have no problem of being moderated ). But I disgress,
+this has nothing to do with auth.
+
+> > So what I propose to solve this is the following scheme :
+> > 
+> > A user wanting to authenticate on sympa will provide a login, who will
+> > be either :
+> > - a email ( his personal email or email of choice ) + password of his
+> > choice, stored by sympa, and using regular sympa authentication
+> > or
+> > - a login ( identity login ) + password from ldap
+> > 
+> > If I understood correctly, sympa support this
+> > ( http://www.sympa.org/manual_6.1/authentication ).
+> > 
+> > This way :
+> > 1) we do not force identity on anybody
+> 
+> ?
+
+Ie, people can subscribe without using identity. 
+
+Several people asked in the past to use the ml to nntp gateway of gmane.
+( and to some extend some kind of forum to ml gateway )
+
+So this require the service to subscribe to our ml. And in turn, this
+mean opening a account for the service ( while before, it was able to
+fully subscribe automatically at least for gmane ). So maybe there is
+other popular services like there that could requires this.
+
+We can also use the option "we do not care", or "it will just be a
+little bit difficult" or "we will do it by hand", of course.
+
+> > 2) the login is either a email ( with email verification done by sympa,
+> > and email change also done by sympa ) or our fixed ldap login ( fixed,
+> > ie, not under the control of any user )
+> 
+> We need to chose one ...
+
+Sympa could support both, and that's what made me think of the dual auth
+proposal ( this and the proposal of maat ). ( and Bugzilla also
+supported some kind of fallback to local account ).
+
+> > 3) people will use the same uid everywhere ( because having sometime the
+> > email, sometime the uid is confusing, especially if we start to offer
+> > email alias )
+> 
+> I had assumed this would be the strategy from the beginning.
+
+Well, some people didn't, or at least, this was my impression ( but it
+seems that I was wrong ).
+ 
+For example, IIRC, one of the few things maat told us about the forum
+was the dual auth scheme ( I cannot find reference however so maybe I
+dreamed ). I was also under the impression than rda didn't want people
+to be in a team to subscribe on ml, which I interpreted by "people
+should not open a account on ldap to subscribe on ml" ( but that was a
+misunderstanding ).
+
+So if nobody is against it, then yes, we should use ldap. 
+
+It is more standard ( so no special knowledge, nor special changes on
+anything ), more simple ( just 1 directory ), and so likely more robust
+( as this already widely deployed ).
+
+So, indeed, another proposal is :
+
+- we use ldap for everything related to auth, and only ldap. Maybe 1
+local admin password for some rare applications that requires it .
+
+- we use username as login, and do not let user change it.
+
+( as changing login would likely requires modification on the local
+account information that every application will likely create, and
+that's sound like a bad idea from a security ( ie main ldap access to
+every other web app database, even if a pull system could solve this
+issue ), maintainability ( hook/script to modify the data on every
+impacted web applications, dependant on internal structure of the
+application ) and engineering ( fragile if there is no commit/rollback )
+points of view )
+
+- we filter on team when needed
+
+
+
+-- 
+Michael Scherer
+
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000941.html b/zarb-ml/mageia-sysadm/2010-November/000941.html new file mode 100644 index 000000000..a35dc2250 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000941.html @@ -0,0 +1,97 @@ + + + + [Mageia-sysadm] [147] do not add rpm extension when building packages list + + + + + + + + + +

[Mageia-sysadm] [147] do not add rpm extension when building packages list

+ root at mageia.org + root at mageia.org +
+ Thu Nov 25 19:07:24 CET 2010 +

+
+ +
Revision: 147
+Author:   blino
+Date:     2010-11-25 19:07:24 +0100 (Thu, 25 Nov 2010)
+Log Message:
+-----------
+do not add rpm extension when building packages list
+
+Modified Paths:
+--------------
+    build_system/iurt/trunk/lib/Iurt/Chroot.pm
+
+Modified: build_system/iurt/trunk/lib/Iurt/Chroot.pm
+===================================================================
+--- build_system/iurt/trunk/lib/Iurt/Chroot.pm	2010-11-25 12:13:11 UTC (rev 146)
++++ build_system/iurt/trunk/lib/Iurt/Chroot.pm	2010-11-25 18:07:24 UTC (rev 147)
+@@ -541,7 +541,7 @@
+     sudo($run, $config, "--rm", "$tmp_chroot/etc/urpmi/urpmi.cfg");
+     sudo($run, $config, "--rm", "$tmp_chroot/var/lib/urpmi/*");
+ 
+-    system("rpm -qa --root $tmp_chroot --qf '\%{NAME}-\%{VERSION}-\%{RELEASE}.\%{ARCH}.rpm\n' | sort > $tmp_chroot/tmp/qa");
++    system("rpm -qa --root $tmp_chroot --qf '\%{NAME}-\%{VERSION}-\%{RELEASE}.\%{ARCH}\n' | sort > $tmp_chroot/tmp/qa");
+     sudo($run, $config, "--cp", "$tmp_chroot/tmp/qa", "$tmp_chroot/var/log/qa");
+     unlink("$tmp_chroot/tmp/qa");
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101125/2ff8d7ce/attachment-0001.html>
+
+ + + + + + + + + + + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000942.html b/zarb-ml/mageia-sysadm/2010-November/000942.html new file mode 100644 index 000000000..21352a776 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000942.html @@ -0,0 +1,80 @@ + + + + [Mageia-sysadm] progress of the night + + + + + + + + + +

[Mageia-sysadm] progress of the night

+ Olivier Thauvin + nanardon at nanardon.zarb.org +
+ Thu Nov 25 19:09:54 CET 2010 +

+
+ +
* Olivier Blin (mageia at blino.org) wrote:
+> Michael Scherer <misc at zarb.org> writes:
+> Todo:
+
+[...]
+
+> - setup a cronjob to mirror /distrib/repository to /distrib/mirror
+>   (when the cauldron repo is cleaned from Mandriva references)
+
+Why don't we write directly to the tree given to mirrors ?
+
+-- 
+
+Olivier Thauvin
+CNRS  -  LATMOS
+♖ ♘ ♗ ♕ ♔ ♗ ♘ ♖
+-------------- next part --------------
+A non-text attachment was scrubbed...
+Name: not available
+Type: application/pgp-signature
+Size: 197 bytes
+Desc: not available
+URL: </pipermail/mageia-sysadm/attachments/20101125/71eb7d93/attachment.asc>
+
+ + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000943.html b/zarb-ml/mageia-sysadm/2010-November/000943.html new file mode 100644 index 000000000..8b3aa053f --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000943.html @@ -0,0 +1,82 @@ + + + + [Mageia-sysadm] progress of the night + + + + + + + + + +

[Mageia-sysadm] progress of the night

+ Olivier Blin + mageia at blino.org +
+ Thu Nov 25 19:15:48 CET 2010 +

+
+ +
Olivier Thauvin <nanardon at nanardon.zarb.org> writes:
+
+> * Olivier Blin (mageia at blino.org) wrote:
+>> Michael Scherer <misc at zarb.org> writes:
+>> Todo:
+>
+> [...]
+>
+>> - setup a cronjob to mirror /distrib/repository to /distrib/mirror
+>>   (when the cauldron repo is cleaned from Mandriva references)
+>
+> Why don't we write directly to the tree given to mirrors ?
+
+We will likely upload to mirrors asynchronously, not to block the build
+system while syncing mirrors, so we need two separate trees.
+
+To do this without taking too much time syncing the two trees, we can
+use "cp -al" to make a hardlinked copy of the repository before syncing
+to mirrors.
+
+Also, if the distrib tree on valstar is the canonical location, naming
+it "mirror" is a bit weird :)
+
+-- 
+Olivier Blin - blino
+
+ + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000944.html b/zarb-ml/mageia-sysadm/2010-November/000944.html new file mode 100644 index 000000000..641b5a392 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000944.html @@ -0,0 +1,110 @@ + + + + [Mageia-sysadm] [377] - add nssldap password handling + + + + + + + + + +

[Mageia-sysadm] [377] - add nssldap password handling

+ Buchan Milne + bgmilne at multilinks.com +
+ Thu Nov 25 13:04:23 CET 2010 +

+
+ +
On Wednesday, 24 November 2010 21:04:51 Guillaume Rousse wrote:
+> Le 22/11/2010 12:56, Buchan Milne a écrit :
+> > I would prefer if we can instead use:
+> > -"rootbinddn" in /etc/ldap.conf, not binddn
+> > -place password in /etc/ldap.secret
+> > -use nscd, so all LDAP access is as root (so, no need to expose passwords
+> > in files that must be world-readable), as a side-effect also avoiding
+> > problems with file descriptors used by any process doing a user lookup
+> > etc.
+> > 
+> > Permissions on /etc/ldap.conf should be 0644, /etc/ldap.secret can be
+> > 0600.
+> 
+> Even better, give ldap write access to individual admin accounts,
+
+This is already the case:
+
+dn: cn=LDAP Admins,ou=System Groups,dc=mageia,dc=org
+cn: LDAP Admins
+objectClass: groupOfNames
+description: Members can administer all parts of the Directory
+owner: uid=LDAP Admin,ou=System Accounts,dc=mageia,dc=org
+member: uid=LDAP Admin,ou=System Accounts,dc=mageia,dc=org
+member: uid=boklm,ou=People,dc=mageia,dc=org
+member: uid=buchan,ou=People,dc=mageia,dc=org
+member: uid=colin,ou=People,dc=mageia,dc=org
+member: uid=dmorgan,ou=People,dc=mageia,dc=org
+member: uid=misc,ou=People,dc=mageia,dc=org
+member: uid=nanardon,ou=People,dc=mageia,dc=org
+member: uid=rda,ou=People,dc=mageia,dc=org
+member: uid=tmb,ou=People,dc=mageia,dc=org
+
+> and
+> not to root user.
+
+There is no rootpw, and there is no entry for the rootdn. I know the password 
+of uid=LDAP Admin, and I used it only until the point where my DN was a member 
+of LDAP admins.
+
+> No need to store any password, and you keep track of
+> who's doing what.
+
+But, you seem to be inferring that the 'rootbinddn' in ldap.conf is a rootdn 
+in the directory, or has any write privileges. This is not the case. It is 
+purely a DN with sufficient privileges to search for posixAccounts and 
+posixGroups so that we can prevent all anonymous access:
+
+[root at valstar ~]# ldapsearch -LL  -xZZ -b dc=mageia,dc=org
+version: 1
+
+No such object (32)
+[root at valstar ~]#
+
+Regards,
+Buchan
+
+ + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000945.html b/zarb-ml/mageia-sysadm/2010-November/000945.html new file mode 100644 index 000000000..21bf115a6 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000945.html @@ -0,0 +1,180 @@ + + + + [Mageia-sysadm] [LONG] sympa ( and web apps ) ldap authentication + + + + + + + + + +

[Mageia-sysadm] [LONG] sympa ( and web apps ) ldap authentication

+ Romain d'Alverny + rdalverny at gmail.com +
+ Thu Nov 25 20:16:20 CET 2010 +

+
+ +
On Thu, Nov 25, 2010 at 18:54, Michael Scherer <misc at zarb.org> wrote:
+> Le jeudi 25 novembre 2010 à 10:50 +0100, Buchan Milne a écrit :
+> My point is that we should be consistent. Ie, if we start using
+> sometimes a username, sometimes a email ( and well, I must say "one of
+> the numerous email people have", because I am pretty sure that I am not
+> the only one to have more than 1 email ), this will be annoying.
+
+When we set up my.mandriva.com back in 2005, using the email address
+instead of login to authenticate has been a big improvement: way less
+contacts from people saying "I forgot my username" or trying to
+re-register with an already used email address and a different login
+(and then failing to do so).
+
+In this case, it may be that the cognitive effort to remember an email
+address one already uses regularly is easier than the one to remember
+a username that one may use only to authenticate (actually, that was
+the hypothesis back at the time).
+
+> We cannot use email everywhere, since some services do not support it
+> ( svn+ssh will not accept it, no @ in username IIRC, neither would the
+> current buildsystem ). And doing translation will be source of
+> confusion.
+
+Yes, that's a drawback, but an acceptable one I think:
+ * only for people that will use code repositories and buildsystem; that is,
+ * you are not forced to allow user identification against a single
+id; what you need is just something you know identifies the user for
+sure (if the email unicity and ownership are both proven, that's a
+pretty good hint). So you can both authenticate against email/pass and
+login/pass (and even have several email/login for that, if they are
+checked against first).
+
+> Morever, using email as a login would mean that it would appear at a lot
+> of place on the web, and that's the sort of leak that should be avoided
+> at least for spam prevention reason ( and because some people will
+> complain, and complained in the past for example on bugzilla ).
+
+You're mixing the "login token" and the "public name" issues.
+Actually, you can use any type of id that is unique to a user to
+identify (so both username and email would be valid). And you can use
+a "public name" field to publish the user identity through all public
+media.
+
+In Mandriva online service, you use your email to authenticate, and it
+does not show up anywhere (through the network of apps using
+my.mandriva, that is). Only a public name handle is printed out.
+
+> Well, the fact is managing a ldap of 400 accounts is not the same scale
+> to me than one of 60 000 to 1 000 000 entries. ( if I take the range of
+> users of Mandriva forum to the range of Ubuntu's one ). [...]
+
+I would worry about that scale when it will become to be an issue. Because:
+ * it won't grow so big in one single night.
+ * when it will, there will likely be resources to cope with it
+(traffic does not just come alone).
+ * I expect LDAP to scale much better than a typical MySQL db + PHP
+web service setup.
+
+> [...] letting people freely edit the attribute they
+> use for login is IMHO a risky operation given the wide range of
+> application that we will have.
+
+Why is it risky?
+
+> Editing by admin should be ok.
+
+Editing by user is ok too. Provided you check for unicity of the id
+through the whole system and, eventually, lock some past used ids.
+
+> Several people asked in the past to use the ml to nntp gateway of gmane.
+> ( and to some extend some kind of forum to ml gateway )
+>
+> So this require the service to subscribe to our ml. And in turn, this
+> mean opening a account for the service ( while before, it was able to
+> fully subscribe automatically at least for gmane ). So maybe there is
+> other popular services like there that could requires this.
+>
+> We can also use the option "we do not care", or "it will just be a
+> little bit difficult" or "we will do it by hand", of course.
+
+Would it mean to manually do something: once per such a "user", or
+once per subscription (gmane subscribing to several ml for instance)?
+
+> - we use ldap for everything related to auth, and only ldap. Maybe 1
+> local admin password for some rare applications that requires it .
+>
+> - we use username as login, and do not let user change it.
+
+Two solutions here then:
+ - either the user cannot change her username, and then have a "public
+name" field that is used everywhere the public handle of the user is
+to be used (or leave this option to the user); and this "public name"
+should be editable; rationale: I want the option to appear as "Romain
+d'Alverny" and not as "rda" or "romain" in all web apps;
+ - either the user can change her username, and some other unique,
+static id (not being usually human-readable) must exist and be used by
+all apps authenticating against the directory, to manage user's local
+belongings.
+
+> ( as changing login would likely requires modification on the local
+> account information that every application will likely create, and
+> that's sound like a bad idea from a security ( ie main ldap access to
+> every other web app database, even if a pull system could solve this
+> issue ),
+
+I would more design some event system notifying all trusted/registered
+apps that a given user has updated info, and let the app manage what
+to do (the basic event being, "this user just logged in your
+application, see her account, diff it against your local copy and see
+what you need to change on your side").
+
+> maintainability ( hook/script to modify the data on every
+> impacted web applications, dependant on internal structure of the
+> application
+
+This is likely to happen anyway to update local copies of user data
+coming from the directory, usually on user login into these apps.
+
+> - we filter on team when needed
+
+
+Romain
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000946.html b/zarb-ml/mageia-sysadm/2010-November/000946.html new file mode 100644 index 000000000..926cf8be6 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000946.html @@ -0,0 +1,110 @@ + + + + [Mageia-sysadm] progress of the night + + + + + + + + + +

[Mageia-sysadm] progress of the night

+ Olivier Thauvin + nanardon at nanardon.zarb.org +
+ Thu Nov 25 20:29:53 CET 2010 +

+
+ +
* Olivier Blin (mageia at blino.org) wrote:
+> Olivier Thauvin <nanardon at nanardon.zarb.org> writes:
+> 
+> > * Olivier Blin (mageia at blino.org) wrote:
+> >> Michael Scherer <misc at zarb.org> writes:
+> >> Todo:
+> >
+> > [...]
+> >
+> >> - setup a cronjob to mirror /distrib/repository to /distrib/mirror
+> >>   (when the cauldron repo is cleaned from Mandriva references)
+> >
+> > Why don't we write directly to the tree given to mirrors ?
+> 
+> We will likely upload to mirrors asynchronously, not to block the build
+> system while syncing mirrors, so we need two separate trees.
+> 
+> To do this without taking too much time syncing the two trees, we can
+> use "cp -al" to make a hardlinked copy of the repository before syncing
+> to mirrors.
+
+Check --link-dest options to rsync then (widelly better).
+
+> 
+> Also, if the distrib tree on valstar is the canonical location, naming
+> it "mirror" is a bit weird :)
+
+Feel free to suggest a better name. "mirror" mean "this tree is sync by
+mirrors".
+
+However distributions don't directly into /distrib/mirrors but under
+/distrib/mirror/distrib/*. /distrib/mirror will probably contains others
+things than just a set of RPMs.
+
+Regards.
+
+> 
+> -- 
+> Olivier Blin - blino
+> _______________________________________________
+> Mageia-sysadm mailing list
+> Mageia-sysadm at mageia.org
+> https://www.mageia.org/mailman/listinfo/mageia-sysadm
+-- 
+
+Olivier Thauvin
+CNRS  -  LATMOS
+♖ ♘ ♗ ♕ ♔ ♗ ♘ ♖
+-------------- next part --------------
+A non-text attachment was scrubbed...
+Name: not available
+Type: application/pgp-signature
+Size: 197 bytes
+Desc: not available
+URL: </pipermail/mageia-sysadm/attachments/20101125/f87cdd30/attachment.asc>
+
+ + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000947.html b/zarb-ml/mageia-sysadm/2010-November/000947.html new file mode 100644 index 000000000..f1a5d6111 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000947.html @@ -0,0 +1,121 @@ + + + + [Mageia-sysadm] [LONG] sympa ( and web apps ) ldap authentication + + + + + + + + + +

[Mageia-sysadm] [LONG] sympa ( and web apps ) ldap authentication

+ Olivier Thauvin + nanardon at nanardon.zarb.org +
+ Thu Nov 25 20:54:09 CET 2010 +

+
+ +
* Romain d'Alverny (rdalverny at gmail.com) wrote:
+> On Thu, Nov 25, 2010 at 18:54, Michael Scherer <misc at zarb.org> wrote:
+> > Le jeudi 25 novembre 2010 à 10:50 +0100, Buchan Milne a écrit :
+> > My point is that we should be consistent. Ie, if we start using
+> > sometimes a username, sometimes a email ( and well, I must say "one of
+> > the numerous email people have", because I am pretty sure that I am not
+> > the only one to have more than 1 email ), this will be annoying.
+> 
+> When we set up my.mandriva.com back in 2005, using the email address
+> instead of login to authenticate has been a big improvement: way less
+> contacts from people saying "I forgot my username" or trying to
+> re-register with an already used email address and a different login
+> (and then failing to do so).
+> 
+> In this case, it may be that the cognitive effort to remember an email
+> address one already uses regularly is easier than the one to remember
+> a username that one may use only to authenticate (actually, that was
+> the hypothesis back at the time).
+
+It is possible to include in catdap a way to receive a reminder about
+users informations from a email.
+
+But the usage of email as login in my.mdv also make my life harder since
+I never remember which one of my 5 emails was used (the same issue apply
+on other website). The worst happend when I had to change my email
+address because it had to disappear.
+
+User must be able to change their email address. Changing the login will
+probaby have side effect, so using email as login is probably a bad
+idea.
+ 
+> > We cannot use email everywhere, since some services do not support it
+> > ( svn+ssh will not accept it, no @ in username IIRC, neither would the
+> > current buildsystem ). And doing translation will be source of
+> > confusion.
+> 
+> Yes, that's a drawback, but an acceptable one I think:
+>  * only for people that will use code repositories and buildsystem; that is,
+>  * you are not forced to allow user identification against a single
+> id; what you need is just something you know identifies the user for
+> sure (if the email unicity and ownership are both proven, that's a
+> pretty good hint). So you can both authenticate against email/pass and
+> login/pass (and even have several email/login for that, if they are
+> checked against first).
+
+We can ensure unicity of login on our side because we have full control,
+but nothing prevent to a company to give same email to several people,
+or to give a previously used email address to a new employee.
+
+If the account become important (sys admin, distrib manager), we then
+cannot ensure who receive the information we send.
+
+-- 
+
+Olivier Thauvin
+CNRS  -  LATMOS
+♖ ♘ ♗ ♕ ♔ ♗ ♘ ♖
+-------------- next part --------------
+A non-text attachment was scrubbed...
+Name: not available
+Type: application/pgp-signature
+Size: 197 bytes
+Desc: not available
+URL: </pipermail/mageia-sysadm/attachments/20101125/7ae6acd8/attachment.asc>
+
+ + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000948.html b/zarb-ml/mageia-sysadm/2010-November/000948.html new file mode 100644 index 000000000..f70666e22 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000948.html @@ -0,0 +1,107 @@ + + + + [Mageia-sysadm] [LONG] sympa ( and web apps ) ldap authentication + + + + + + + + + +

[Mageia-sysadm] [LONG] sympa ( and web apps ) ldap authentication

+ Romain d'Alverny + rdalverny at gmail.com +
+ Thu Nov 25 21:23:14 CET 2010 +

+
+ +
On Thu, Nov 25, 2010 at 20:54, Olivier Thauvin
+<nanardon at nanardon.zarb.org> wrote:
+> * Romain d'Alverny (rdalverny at gmail.com) wrote:
+>> In this case, it may be that the cognitive effort to remember an email
+>> address one already uses regularly is easier than the one to remember
+>> a username that one may use only to authenticate (actually, that was
+>> the hypothesis back at the time).
+>
+> It is possible to include in catdap a way to receive a reminder about
+> users informations from a email.
+>
+> But the usage of email as login in my.mdv also make my life harder since
+> I never remember which one of my 5 emails was used (the same issue apply
+> on other website).
+
+Well, had my.mandriva been completed, you could have registered your 5
+emails addresses and authenticate using each of these (+ your unique
+id). That was the point.
+
+> The worst happend when I had to change my email
+> address because it had to disappear.
+
+I understand that. So we have two conflicting use cases (and it was to expect).
+
+> User must be able to change their email address. Changing the login will
+> probaby have side effect, so using email as login is probably a bad
+> idea.
+
+These are unrelated (or should, at least). It did not push any
+blocking issue for the past 5 years we used it at Mandriva.
+
+> We can ensure unicity of login on our side because we have full control,
+> but nothing prevent to a company to give same email to several people,
+> or to give a previously used email address to a new employee.
+>
+> If the account become important (sys admin, distrib manager), we then
+> cannot ensure who receive the information we send.
+
+Yes but this is true anyway. Nothing new here, and nothing different
+whether we use email as an auth id or not.
+
+Never mind. I was just trying to push the point that the identity/ldap
+thing is not just for contributors/build system and should then be
+open to more flexible use-cases (than just a frozen username/password
+id/auth process). We'll get there with time I guess. Let's have the
+thing running first.
+
+Cheers,
+
+Romain
+
+ + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000949.html b/zarb-ml/mageia-sysadm/2010-November/000949.html new file mode 100644 index 000000000..c66bf2bef --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000949.html @@ -0,0 +1,87 @@ + + + + [Mageia-sysadm] [LONG] sympa ( and web apps ) ldap authentication + + + + + + + + + +

[Mageia-sysadm] [LONG] sympa ( and web apps ) ldap authentication

+ nicolas vigier + boklm at mars-attacks.org +
+ Thu Nov 25 21:45:22 CET 2010 +

+
+ +
On Thu, 25 Nov 2010, Michael Scherer wrote:
+
+> > > This way :
+> > > 1) we do not force identity on anybody
+> > 
+> > ?
+> 
+> Ie, people can subscribe without using identity. 
+> 
+> Several people asked in the past to use the ml to nntp gateway of gmane.
+> ( and to some extend some kind of forum to ml gateway )
+> 
+> So this require the service to subscribe to our ml. And in turn, this
+> mean opening a account for the service ( while before, it was able to
+> fully subscribe automatically at least for gmane ). So maybe there is
+> other popular services like there that could requires this.
+
+I don't know how it works with LDAP, but in the default sympa config
+(without ldap), you can subscribe to mailing lists without setting a
+password if you subscribe by sending an email. You only need to set a
+password (which you receive by email after requesting it) if you want
+to login to the web interface (to change settings or read private
+archives).
+
+So maybe it can be the same here :
+ - no need to have an account on identity to subscribe to mailing lists
+   if you subscribe by sending an email
+ - if you want to login to the sympa web interface, you need to create
+   an account on identity
+
+
+ + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000950.html b/zarb-ml/mageia-sysadm/2010-November/000950.html new file mode 100644 index 000000000..4d2551c76 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000950.html @@ -0,0 +1,84 @@ + + + + [Mageia-sysadm] [LONG] sympa ( and web apps ) ldap authentication + + + + + + + + + +

[Mageia-sysadm] [LONG] sympa ( and web apps ) ldap authentication

+ nicolas vigier + boklm at mars-attacks.org +
+ Thu Nov 25 22:40:49 CET 2010 +

+
+ +
On Thu, 25 Nov 2010, Michael Scherer wrote:
+
+> > > - using email as login is dangerous. Since the email is freely editable
+> > > in catdap ( and multivalued ), someone could perfectly change his email
+> > > after opening a account, and thus get access to sympa subscription of
+> > > someone else.
+> > 
+> > And lose their account to the user whose email address was used as soon as we 
+> > allow user-initiated password reset ...
+> 
+> Which is not a problem, since opening a account is free. If we start to
+> have some private mls ( such as the one requested for forums ), reading
+> archive would be a privacy issue, and so step must be taken to prevent
+> that.
+> 
+> But my main point is not this particular example who is quite easy to
+> prevent. But rather that letting people freely edit the attribute they
+> use for login is IMHO a risky operation given the wide range of
+> application that we will have.
+> 
+> Editing by admin should be ok. 
+
+To avoid this, I think email should not be freely editable in catdat,
+but should be verified first before being actually changed in ldap.
+When changing email, the user should receive on the new email an URL
+to open to confirm he is the owner of the email.
+
+
+ + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000951.html b/zarb-ml/mageia-sysadm/2010-November/000951.html new file mode 100644 index 000000000..b4339cbb5 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000951.html @@ -0,0 +1,201 @@ + + + + [Mageia-sysadm] [LONG] sympa ( and web apps ) ldap authentication + + + + + + + + + +

[Mageia-sysadm] [LONG] sympa ( and web apps ) ldap authentication

+ Buchan Milne + bgmilne at multilinks.com +
+ Thu Nov 25 11:22:50 CET 2010 +

+
+ +
On Wednesday, 24 November 2010 20:29:04 Romain d'Alverny wrote:
+> Hi,
+> 
+> thanks for the long description. Instead of replying point by point, I
+> would like to suggest a more radical point of view, that actually
+> determined the my.mandriva setup (that would not make a difference
+> between "regular" users and "active" users from a auth/storage POV). I
+> think it's worth it to discuss it as well.
+> 
+> The rationale is to ease the user flow through the project, as a
+> whole. 4 points below.
+> 
+> #1. General rule: all users authenticate the same way against a single
+> directory
+
+IMHO this is non-negotiable.
+
+> #2. Consequences
+> 
+> That means that identity should authenticate with email preferably
+> (but may allow using the login).
+
+Most applications can be configured to authenticate on any LDAP attribute. 
+This is more of a policy/usability issue than a technical one.
+
+> That does not prevent that local app data is locally stored.
+
+Only non-application-specific should be in the directory. Application-specific 
+user data stays in the application.
+
+> That's
+> how my.mandriva scheme was designed (and could have gone further).
+> That does not prevent that local apps provide a way for the user to
+> build a mashup of all data around (for a reporting/activity/social net
+> app for instance).
+> 
+> That means that any user using any part of the Mageia infrastructure
+> has to get an account through identity.mageia.org. And that
+> email/login must be tested for unicity.
+
+At present we are only using uid for login, which is unique-enforced (as it is 
+the RDN).
+
+> That also puts some constraints on how an app manages authentication
+> and local user data:
+>  * it must be able to authenticate from an outside source
+>  * it must be able to manage primary email change (we used a
+> "customer_id" at Mandriva, a 64 char id that allowed to change both
+> email and login at will without losing user reference; would that
+> match the uid?)
+
+It would be possible to rename the user account, but most applications will be 
+using the "login" as the key to store preferences. LDAP has entryUUID to allow 
+tracking of entries across renames, but ... most application supporting LDAP 
+authentication will use the login name for keying user information. Getting 
+applications to use a different attribute for this is more of a challenge.
+
+How important is it to be able to allow changes to the 'login'?
+
+(Of course, this motivates against using email address as login).
+
+>  * it must be able to update, if needed, locally cached data that
+> source from the central repository.
+> 
+> To some extent, it could even have the ability to manage a central
+> session server, but that may be left for a later time (and can
+> actually be managed almost separately once the central auth is done).
+> 
+> (we may use OAuth and OpenID auth at a later time for web apps. That
+> shouldn't have an impact on the above (and below) authentication
+> scheme anyway)
+> 
+> So what about apps that do not support this scheme? We patch them so
+> they do (and we do it the clean way). Puts more constraints on the
+> dev/admin side, for sure; but again, the rationale is to provide a
+> consistent interface to the user with easiest to remember items (email
+> then, instead of login). And that forces us to find a consistent
+> protocol that is already (or should be) implemented in our apps.
+
+Cost/benefit for supporting login changes?
+
+> #3. Sympa
+> 
+> As for sympa, that's a particular exception in that it uses the same
+> email address as an identity token and as an contact address (or could
+> it authenticate against a primary email address and use a second one,
+> returned by the directory, to post mails to? requires sync from time
+> to time). It is tricky (but no unfeasible I guess, it just asks the
+> problem to be properly laid out) and I would leave the sympa setup
+> separate at first, with the possibility to later make a soft link
+> between a LDAP account (being able to ask sympa "for this email, what
+> do you have?") and experiment safely with a proper integration. This
+> just to move forward withouth putting too long a delay on production
+> release. That would mean, at first, let people authenticate/subscribe
+> on Sympa using only local Sympa db.
+> 
+> 
+> #4. Email as an id
+> 
+> As to objections on using the email as an id:
+>  * I didn't mean that forum should use local accounts instead of LDAP
+> ones, the contrary actually; what it takes is that the account
+> registration procedure must be routed to identity, instead of the
+> regular forum process; and that the forum auth mechanism must handle
+> on-the-fly creation of a local account from a valid LDAP account;
+
+I logged in to the test forum setup with only my account in LDAP, without 
+problems. So, only username/password aspects (registration, password change, 
+password reset) must be redirect to identity. Bugzilla is already configured 
+to reject password change or registration, with a message to visit 
+identity.mageia.org.
+
+>  * I am not sure to see the issue with gmane/mail archive?
+>  * if having a big LDAP is an issue (why would it be?) then LDAP is
+> not the solution for a central auth directory (and that would be
+> ironic somehow)
+
+Uh, we agreed earlier that we would have at least one slave, which would be 
+used for internet-facing stuff, and at least one directory server (e.g. 
+master) which is not used for internet-facing stuff, to ensure admin access 
+works even in the case of a DoS.
+
+>  * using email as a login, we obviously must have emails editable
+> separately in LDAP, test their unicity within their own scope (being a
+> primary email, or a secondary one is not the same), should have a
+> validity status from one (that is, making sure someone ends up reading
+> a message posted to it).
+>  * when we decided to use the email as the id for Mandriva web
+> services, the biggest problem that arose in the end was: would it work
+> for authenticated HTTP urls, like:
+> https://user@domain.tld:password@server.domain.tld/ (so it would work
+> for private downloads)? It does (wget does it; curl has hiccups about
+> it that can be easily worked out (escape the first @ or parse the url
+> to provide ids as arguments)).
+
+Consider though using a modifiable attribute as the key for storing all other 
+applications configuration.
+
+> I don't think we should provide @mageia.org email at large, for the
+> same arguments as misc's.
+
+This is an issue unrelated to LDAP and what attribute to use for 
+authentication IMHO, but has implications for LDAP (alias maps etc.).
+
+Regards,
+Buchan
+
+ + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000952.html b/zarb-ml/mageia-sysadm/2010-November/000952.html new file mode 100644 index 000000000..b57fd2c19 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000952.html @@ -0,0 +1,112 @@ + + + + [Mageia-sysadm] [148] use urpmq --list to find available basesystem package versions, + + + + + + + + + +

[Mageia-sysadm] [148] use urpmq --list to find available basesystem package versions,

+ root at mageia.org + root at mageia.org +
+ Fri Nov 26 00:15:18 CET 2010 +

+
+ +
Revision: 148
+Author:   blino
+Date:     2010-11-26 00:15:18 +0100 (Fri, 26 Nov 2010)
+Log Message:
+-----------
+use urpmq --list to find available basesystem package versions,
+instead of checking a path, since it likely requies to have an additional NFS available
+
+Modified Paths:
+--------------
+    build_system/iurt/trunk/lib/Iurt/Chroot.pm
+
+Modified: build_system/iurt/trunk/lib/Iurt/Chroot.pm
+===================================================================
+--- build_system/iurt/trunk/lib/Iurt/Chroot.pm	2010-11-25 18:07:24 UTC (rev 147)
++++ build_system/iurt/trunk/lib/Iurt/Chroot.pm	2010-11-25 23:15:18 UTC (rev 148)
+@@ -439,14 +439,15 @@
+ 	    plog('DEBUG', "decompressing /var/log/qa from $chroot_tar in $tmp_chroot");
+ 	    sudo($run, $config, '--untar', $chroot_tar, $tmp_chroot, "./var/log/qa");
+ 
+-	    my $qa;
+-	    if (open $qa, "$tmp_chroot/var/log/qa") {
+-		my $ok;
+-		my $f;
+-		while (!$ok && ($f = <$qa>)) {
+-		    chomp $f;
+-		    if (!-f "$config->{basesystem_media_root}/media/$config->{basesystem_media}/$f") {
+-			plog('DEBUG', "$f has changed");
++	    my $tmp_urpmi = mktemp("$chroot.tmp.XXXXXX");
++	    my @installed_pkgs = chomp_(cat_("$tmp_chroot/var/log/qa"));
++	    my @available_pkgs = chomp_(`urpmq --urpmi-root $tmp_urpmi --use-distrib $run->{urpmi}{distrib_url} --list -f 2>/dev/null`);
++	    my @removed_pkgs = difference2(\@installed_pkgs, \@available_pkgs);
++	    rm_rf($tmp_urpmi);
++
++	    if (@installed_pkgs) {
++		if (@removed_pkgs) {
++			plog('DEBUG', "changed packages: @removed_pkgs");
+ 			plog('NOTIFY', "Rebuilding chroot tarball");
+ 
+ 			$rebuild = 1;
+@@ -457,8 +458,6 @@
+ 			    $clean->();
+ 			    return;
+ 			}
+-			$ok = 1;
+-		    }
+ 		}
+ 	    } else {
+ 		plog('DEBUG', "can't open $tmp_chroot/var/log/qa");
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101126/f7892e47/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000953.html b/zarb-ml/mageia-sysadm/2010-November/000953.html new file mode 100644 index 000000000..9d16151d6 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000953.html @@ -0,0 +1,89 @@ + + + + [Mageia-sysadm] [149] add a message when the chroot is already up-to-date + + + + + + + + + +

[Mageia-sysadm] [149] add a message when the chroot is already up-to-date

+ root at mageia.org + root at mageia.org +
+ Fri Nov 26 00:16:08 CET 2010 +

+
+ +
Revision: 149
+Author:   blino
+Date:     2010-11-26 00:16:07 +0100 (Fri, 26 Nov 2010)
+Log Message:
+-----------
+add a message when the chroot is already up-to-date
+
+Modified Paths:
+--------------
+    build_system/iurt/trunk/lib/Iurt/Chroot.pm
+
+Modified: build_system/iurt/trunk/lib/Iurt/Chroot.pm
+===================================================================
+--- build_system/iurt/trunk/lib/Iurt/Chroot.pm	2010-11-25 23:15:18 UTC (rev 148)
++++ build_system/iurt/trunk/lib/Iurt/Chroot.pm	2010-11-25 23:16:07 UTC (rev 149)
+@@ -458,7 +458,9 @@
+ 			    $clean->();
+ 			    return;
+ 			}
+-		}
++		} else {
++			plog('NOTIFY', "Chroot tarball is already up-to-date");
++                }
+ 	    } else {
+ 		plog('DEBUG', "can't open $tmp_chroot/var/log/qa");
+ 		plog('ERR', "can't check chroot, recreating");
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101126/10677c59/attachment-0001.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000954.html b/zarb-ml/mageia-sysadm/2010-November/000954.html new file mode 100644 index 000000000..f946d33c2 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000954.html @@ -0,0 +1,96 @@ + + + + [Mageia-sysadm] [150] create tmp_chroot in one place only + + + + + + + + + +

[Mageia-sysadm] [150] create tmp_chroot in one place only

+ root at mageia.org + root at mageia.org +
+ Fri Nov 26 00:27:06 CET 2010 +

+
+ +
Revision: 150
+Author:   blino
+Date:     2010-11-26 00:27:06 +0100 (Fri, 26 Nov 2010)
+Log Message:
+-----------
+create tmp_chroot in one place only
+
+Modified Paths:
+--------------
+    build_system/iurt/trunk/lib/Iurt/Chroot.pm
+
+Modified: build_system/iurt/trunk/lib/Iurt/Chroot.pm
+===================================================================
+--- build_system/iurt/trunk/lib/Iurt/Chroot.pm	2010-11-25 23:16:07 UTC (rev 149)
++++ build_system/iurt/trunk/lib/Iurt/Chroot.pm	2010-11-25 23:27:06 UTC (rev 150)
+@@ -425,7 +425,8 @@
+     plog('NOTIFY', "creating chroot");
+     plog('DEBUG', "... with packages " . join(', ', @{$opt->{packages}}));
+ 
+-    if (mkdir($tmp_chroot) && (!-f $chroot_tar || link $chroot_tar, $tmp_tar)) {
++    if (!-f $chroot_tar || link $chroot_tar, $tmp_tar) {
++	mkdir_p($tmp_chroot);
+ 	if (!-f $chroot_tar) {
+ 	    plog("rebuild chroot tarball");
+ 	    $rebuild = 1;
+@@ -452,7 +453,6 @@
+ 
+ 			$rebuild = 1;
+ 			sudo($run, $config, '--rm', '-r', $tmp_chroot);
+-			mkdir $tmp_chroot;
+ 			if (!build_chroot($run, $config, $tmp_chroot, $chroot_tar, $opt)) { 
+ 			    plog('NOTIFY', "creating chroot failed.");
+ 			    $clean->();
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101126/756191f2/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000955.html b/zarb-ml/mageia-sysadm/2010-November/000955.html new file mode 100644 index 000000000..dc405c56e --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000955.html @@ -0,0 +1,105 @@ + + + + [Mageia-sysadm] [151] simplify + + + + + + + + + +

[Mageia-sysadm] [151] simplify

+ root at mageia.org + root at mageia.org +
+ Fri Nov 26 00:32:57 CET 2010 +

+
+ +
Revision: 151
+Author:   blino
+Date:     2010-11-26 00:32:57 +0100 (Fri, 26 Nov 2010)
+Log Message:
+-----------
+simplify
+
+Modified Paths:
+--------------
+    build_system/iurt/trunk/lib/Iurt/Chroot.pm
+
+Modified: build_system/iurt/trunk/lib/Iurt/Chroot.pm
+===================================================================
+--- build_system/iurt/trunk/lib/Iurt/Chroot.pm	2010-11-25 23:27:06 UTC (rev 150)
++++ build_system/iurt/trunk/lib/Iurt/Chroot.pm	2010-11-25 23:32:57 UTC (rev 151)
+@@ -425,7 +425,6 @@
+     plog('NOTIFY', "creating chroot");
+     plog('DEBUG', "... with packages " . join(', ', @{$opt->{packages}}));
+ 
+-    if (!-f $chroot_tar || link $chroot_tar, $tmp_tar) {
+ 	mkdir_p($tmp_chroot);
+ 	if (!-f $chroot_tar) {
+ 	    plog("rebuild chroot tarball");
+@@ -437,6 +436,8 @@
+ 		return;
+ 	    }
+ 	} else {
++	    link $chroot_tar, $tmp_tar or die "FATAL: could not initialize chroot ($!)\n";
++
+ 	    plog('DEBUG', "decompressing /var/log/qa from $chroot_tar in $tmp_chroot");
+ 	    sudo($run, $config, '--untar', $chroot_tar, $tmp_chroot, "./var/log/qa");
+ 
+@@ -473,9 +474,6 @@
+ 	    }
+ 	}
+ 	link $tmp_tar, $chroot_tar;
+-    } else {
+-	die "FATAL: could not initialize chroot ($!)\n";
+-    }
+ 
+     if (!-d $chroot || $rebuild) {
+ 	plog('DEBUG', "recreate chroot $chroot");
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101126/99f7a2a6/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000956.html b/zarb-ml/mageia-sysadm/2010-November/000956.html new file mode 100644 index 000000000..bdf7cb88b --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000956.html @@ -0,0 +1,94 @@ + + + + [Mageia-sysadm] [152] linking back the chroot tarball is only needed when not rebuilding the chroot + + + + + + + + + +

[Mageia-sysadm] [152] linking back the chroot tarball is only needed when not rebuilding the chroot

+ root at mageia.org + root at mageia.org +
+ Fri Nov 26 00:41:01 CET 2010 +

+
+ +
Revision: 152
+Author:   blino
+Date:     2010-11-26 00:41:01 +0100 (Fri, 26 Nov 2010)
+Log Message:
+-----------
+linking back the chroot tarball is only needed when not rebuilding the chroot
+
+Modified Paths:
+--------------
+    build_system/iurt/trunk/lib/Iurt/Chroot.pm
+
+Modified: build_system/iurt/trunk/lib/Iurt/Chroot.pm
+===================================================================
+--- build_system/iurt/trunk/lib/Iurt/Chroot.pm	2010-11-25 23:32:57 UTC (rev 151)
++++ build_system/iurt/trunk/lib/Iurt/Chroot.pm	2010-11-25 23:41:01 UTC (rev 152)
+@@ -461,6 +461,7 @@
+ 			}
+ 		} else {
+ 			plog('NOTIFY', "Chroot tarball is already up-to-date");
++			link $tmp_tar, $chroot_tar;
+                 }
+ 	    } else {
+ 		plog('DEBUG', "can't open $tmp_chroot/var/log/qa");
+@@ -473,7 +474,6 @@
+ 		}
+ 	    }
+ 	}
+-	link $tmp_tar, $chroot_tar;
+ 
+     if (!-d $chroot || $rebuild) {
+ 	plog('DEBUG', "recreate chroot $chroot");
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101126/1dbc08c2/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000957.html b/zarb-ml/mageia-sysadm/2010-November/000957.html new file mode 100644 index 000000000..7959348b3 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000957.html @@ -0,0 +1,87 @@ + + + + [Mageia-sysadm] [153] fix case + + + + + + + + + +

[Mageia-sysadm] [153] fix case

+ root at mageia.org + root at mageia.org +
+ Fri Nov 26 00:41:13 CET 2010 +

+
+ +
Revision: 153
+Author:   blino
+Date:     2010-11-26 00:41:13 +0100 (Fri, 26 Nov 2010)
+Log Message:
+-----------
+fix case
+
+Modified Paths:
+--------------
+    build_system/iurt/trunk/lib/Iurt/Chroot.pm
+
+Modified: build_system/iurt/trunk/lib/Iurt/Chroot.pm
+===================================================================
+--- build_system/iurt/trunk/lib/Iurt/Chroot.pm	2010-11-25 23:41:01 UTC (rev 152)
++++ build_system/iurt/trunk/lib/Iurt/Chroot.pm	2010-11-25 23:41:13 UTC (rev 153)
+@@ -460,7 +460,7 @@
+ 			    return;
+ 			}
+ 		} else {
+-			plog('NOTIFY', "Chroot tarball is already up-to-date");
++			plog('NOTIFY', "chroot tarball is already up-to-date");
+ 			link $tmp_tar, $chroot_tar;
+                 }
+ 	    } else {
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101126/e52e6424/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000958.html b/zarb-ml/mageia-sysadm/2010-November/000958.html new file mode 100644 index 000000000..67f039ddd --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000958.html @@ -0,0 +1,132 @@ + + + + [Mageia-sysadm] [154] factorize chroot rebuild code + + + + + + + + + +

[Mageia-sysadm] [154] factorize chroot rebuild code

+ root at mageia.org + root at mageia.org +
+ Fri Nov 26 00:43:52 CET 2010 +

+
+ +
Revision: 154
+Author:   blino
+Date:     2010-11-26 00:43:52 +0100 (Fri, 26 Nov 2010)
+Log Message:
+-----------
+factorize chroot rebuild code
+
+Modified Paths:
+--------------
+    build_system/iurt/trunk/lib/Iurt/Chroot.pm
+
+Modified: build_system/iurt/trunk/lib/Iurt/Chroot.pm
+===================================================================
+--- build_system/iurt/trunk/lib/Iurt/Chroot.pm	2010-11-25 23:41:13 UTC (rev 153)
++++ build_system/iurt/trunk/lib/Iurt/Chroot.pm	2010-11-25 23:43:52 UTC (rev 154)
+@@ -429,12 +429,6 @@
+ 	if (!-f $chroot_tar) {
+ 	    plog("rebuild chroot tarball");
+ 	    $rebuild = 1;
+-	    if (!build_chroot($run, $config, $tmp_chroot, $chroot_tar, $opt)) {
+-		plog('NOTIFY', "creating chroot failed.");
+-		$clean->();
+-		sudo($run, $config, '--rm', '-r', $chroot, $chroot_tar);
+-		return;
+-	    }
+ 	} else {
+ 	    link $chroot_tar, $tmp_tar or die "FATAL: could not initialize chroot ($!)\n";
+ 
+@@ -451,14 +445,7 @@
+ 		if (@removed_pkgs) {
+ 			plog('DEBUG', "changed packages: @removed_pkgs");
+ 			plog('NOTIFY', "Rebuilding chroot tarball");
+-
+ 			$rebuild = 1;
+-			sudo($run, $config, '--rm', '-r', $tmp_chroot);
+-			if (!build_chroot($run, $config, $tmp_chroot, $chroot_tar, $opt)) { 
+-			    plog('NOTIFY', "creating chroot failed.");
+-			    $clean->();
+-			    return;
+-			}
+ 		} else {
+ 			plog('NOTIFY', "chroot tarball is already up-to-date");
+ 			link $tmp_tar, $chroot_tar;
+@@ -466,15 +453,19 @@
+ 	    } else {
+ 		plog('DEBUG', "can't open $tmp_chroot/var/log/qa");
+ 		plog('ERR', "can't check chroot, recreating");
+-
+-		if (!build_chroot($run, $config, $tmp_chroot, $chroot_tar, $opt)) {
+-		    plog('NOTIFY', "creating chroot failed.");
+-		    $clean->();       
+-		    return;
+-		}
++                $rebuild = 1;
+ 	    }
+ 	}
+ 
++    if ($rebuild) {
++	    if (!build_chroot($run, $config, $tmp_chroot, $chroot_tar, $opt)) {
++		plog('NOTIFY', "creating chroot failed.");
++		$clean->();
++		sudo($run, $config, '--rm', '-r', $chroot, $chroot_tar);
++		return;
++	    }
++    }
++
+     if (!-d $chroot || $rebuild) {
+ 	plog('DEBUG', "recreate chroot $chroot");
+ 	plog('NOTIFY', "recreate chroot");
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101126/bc8587b1/attachment-0001.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000959.html b/zarb-ml/mageia-sysadm/2010-November/000959.html new file mode 100644 index 000000000..d40819b86 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000959.html @@ -0,0 +1,143 @@ + + + + [Mageia-sysadm] [155] fix indentation + + + + + + + + + +

[Mageia-sysadm] [155] fix indentation

+ root at mageia.org + root at mageia.org +
+ Fri Nov 26 00:45:19 CET 2010 +

+
+ +
Revision: 155
+Author:   blino
+Date:     2010-11-26 00:45:19 +0100 (Fri, 26 Nov 2010)
+Log Message:
+-----------
+fix indentation
+
+Modified Paths:
+--------------
+    build_system/iurt/trunk/lib/Iurt/Chroot.pm
+
+Modified: build_system/iurt/trunk/lib/Iurt/Chroot.pm
+===================================================================
+--- build_system/iurt/trunk/lib/Iurt/Chroot.pm	2010-11-25 23:43:52 UTC (rev 154)
++++ build_system/iurt/trunk/lib/Iurt/Chroot.pm	2010-11-25 23:45:19 UTC (rev 155)
+@@ -425,37 +425,37 @@
+     plog('NOTIFY', "creating chroot");
+     plog('DEBUG', "... with packages " . join(', ', @{$opt->{packages}}));
+ 
+-	mkdir_p($tmp_chroot);
+-	if (!-f $chroot_tar) {
+-	    plog("rebuild chroot tarball");
+-	    $rebuild = 1;
+-	} else {
+-	    link $chroot_tar, $tmp_tar or die "FATAL: could not initialize chroot ($!)\n";
++    mkdir_p($tmp_chroot);
++    if (!-f $chroot_tar) {
++        plog("rebuild chroot tarball");
++        $rebuild = 1;
++    } else {
++        link $chroot_tar, $tmp_tar or die "FATAL: could not initialize chroot ($!)\n";
+ 
+-	    plog('DEBUG', "decompressing /var/log/qa from $chroot_tar in $tmp_chroot");
+-	    sudo($run, $config, '--untar', $chroot_tar, $tmp_chroot, "./var/log/qa");
++        plog('DEBUG', "decompressing /var/log/qa from $chroot_tar in $tmp_chroot");
++        sudo($run, $config, '--untar', $chroot_tar, $tmp_chroot, "./var/log/qa");
+ 
+-	    my $tmp_urpmi = mktemp("$chroot.tmp.XXXXXX");
+-	    my @installed_pkgs = chomp_(cat_("$tmp_chroot/var/log/qa"));
+-	    my @available_pkgs = chomp_(`urpmq --urpmi-root $tmp_urpmi --use-distrib $run->{urpmi}{distrib_url} --list -f 2>/dev/null`);
+-	    my @removed_pkgs = difference2(\@installed_pkgs, \@available_pkgs);
+-	    rm_rf($tmp_urpmi);
++        my $tmp_urpmi = mktemp("$chroot.tmp.XXXXXX");
++        my @installed_pkgs = chomp_(cat_("$tmp_chroot/var/log/qa"));
++        my @available_pkgs = chomp_(`urpmq --urpmi-root $tmp_urpmi --use-distrib $run->{urpmi}{distrib_url} --list -f 2>/dev/null`);
++        my @removed_pkgs = difference2(\@installed_pkgs, \@available_pkgs);
++        rm_rf($tmp_urpmi);
+ 
+-	    if (@installed_pkgs) {
+-		if (@removed_pkgs) {
+-			plog('DEBUG', "changed packages: @removed_pkgs");
+-			plog('NOTIFY', "Rebuilding chroot tarball");
+-			$rebuild = 1;
+-		} else {
+-			plog('NOTIFY', "chroot tarball is already up-to-date");
+-			link $tmp_tar, $chroot_tar;
+-                }
+-	    } else {
+-		plog('DEBUG', "can't open $tmp_chroot/var/log/qa");
+-		plog('ERR', "can't check chroot, recreating");
++        if (@installed_pkgs) {
++            if (@removed_pkgs) {
++                plog('DEBUG', "changed packages: @removed_pkgs");
++                plog('NOTIFY', "Rebuilding chroot tarball");
+                 $rebuild = 1;
+-	    }
+-	}
++            } else {
++                plog('NOTIFY', "chroot tarball is already up-to-date");
++                link $tmp_tar, $chroot_tar;
++            }
++        } else {
++            plog('DEBUG', "can't open $tmp_chroot/var/log/qa");
++            plog('ERR', "can't check chroot, recreating");
++            $rebuild = 1;
++        }
++    }
+ 
+     if ($rebuild) {
+ 	    if (!build_chroot($run, $config, $tmp_chroot, $chroot_tar, $opt)) {
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101126/c09547dc/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000960.html b/zarb-ml/mageia-sysadm/2010-November/000960.html new file mode 100644 index 000000000..46cb748ff --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000960.html @@ -0,0 +1,157 @@ + + + + [Mageia-sysadm] [156] remove basesystem_media_root, basesystem_media, and use_system_distrib config options, they have no use now that we don' t need a repository tree to check if chroot is up-to-date + + + + + + + + + +

[Mageia-sysadm] [156] remove basesystem_media_root, basesystem_media, and use_system_distrib config options, they have no use now that we don' t need a repository tree to check if chroot is up-to-date

+ root at mageia.org + root at mageia.org +
+ Fri Nov 26 00:48:58 CET 2010 +

+
+ +
Revision: 156
+Author:   blino
+Date:     2010-11-26 00:48:57 +0100 (Fri, 26 Nov 2010)
+Log Message:
+-----------
+remove basesystem_media_root, basesystem_media, and use_system_distrib config options, they have no use now that we don't need a repository tree to check if chroot is up-to-date
+
+Modified Paths:
+--------------
+    build_system/iurt/trunk/iurt2
+    build_system/iurt/trunk/lib/Iurt/Urpmi.pm
+    build_system/iurt/trunk/uiurt
+
+Modified: build_system/iurt/trunk/iurt2
+===================================================================
+--- build_system/iurt/trunk/iurt2	2010-11-25 23:45:19 UTC (rev 155)
++++ build_system/iurt/trunk/iurt2	2010-11-25 23:48:57 UTC (rev 156)
+@@ -273,9 +273,6 @@
+     [ "", "delete-on-success", 0, "",
+     "Don't keep generated packages and their logs",
+     sub { $run{delete_on_success} = 1 }, "Setting the delete on success flag" ],
+-    [ "", "use-system-distrib", 1, "<media>", 
+-    "Use the current system urpmi configuration", 
+-    sub { $run{use_system_distrib} = shift; 1 }, "Setting system distrib for urpmi configuration" ],
+     [ "v", "verbose", 1, "<verbose level>", 
+     "Give more info messages about what is going on (level from 1 to 10)", 
+     sub { $run{verbose} = $_[0]; 1 }, "Setting verbose level" ],
+@@ -428,17 +425,6 @@
+ 	    'contrib' => [ 'release' ]
+ 	}
+     },
+-    basesystem_media_root => {
+-	desc => 'Name of the media holding basesystem packages',
+-	default => sub {
+-	    my ($config, $run) = @_;
+-	    "$config->{repository}/$run->{distro}/$run->{my_arch}/";
+-	}
+-    },
+-    basesystem_media => {
+-	desc => 'Where to find basesystem packages',
+-	default => 'main/release'
+-    },
+     basesystem_packages => {
+ 	desc => 'List of packages needed for the chroot creation',
+ 	default => [
+
+Modified: build_system/iurt/trunk/lib/Iurt/Urpmi.pm
+===================================================================
+--- build_system/iurt/trunk/lib/Iurt/Urpmi.pm	2010-11-25 23:45:19 UTC (rev 155)
++++ build_system/iurt/trunk/lib/Iurt/Urpmi.pm	2010-11-25 23:48:57 UTC (rev 156)
+@@ -21,9 +21,7 @@
+     my $config = $self->{config};
+     my $run = $self->{run};
+ 
+-    if ($run->{use_system_distrib}) {
+-	$config->{basesystem_media_root} ||= $run->{use_system_distrib};
+-    } elsif ($run->{chrooted_urpmi}) {
++    if ($run->{chrooted_urpmi}) {
+ 	#my ($host) = $run->{chrooted_urpmi}{rooted_media} =~ m,(?:file|http|ftp)://([^/]*),;
+ 	#my ($_name, $_aliases, $_addrtype, $_length, @addrs) = gethostbyname($host);
+         #
+
+Modified: build_system/iurt/trunk/uiurt
+===================================================================
+--- build_system/iurt/trunk/uiurt	2010-11-25 23:45:19 UTC (rev 155)
++++ build_system/iurt/trunk/uiurt	2010-11-25 23:48:57 UTC (rev 156)
+@@ -240,9 +240,6 @@
+     [ "", "no-rsync", 0, "", 
+     "Do not send build log to the distant rsync server", 
+     sub { $run{no_rsync} = 1 }, "Setting the no rsync warn flag" ],
+-    [ "", "use-system-distrib", 1, "<media>", 
+-    "Use the current system urpmi configuration", 
+-    sub { $run{use_system_distrib} = shift; 1 }, "Setting system distrib for urpmi configuration" ],
+     [ "v", "verbose", 1, "<verbose level>", 
+     "Give more info messages about what is going on (level from 1 to 10)", 
+     sub { $run{verbose} = $_[0]; 1 }, "Setting verbose level" ],
+@@ -354,17 +351,6 @@
+ 	    'contrib' => [ '' ]
+ 	}
+     },
+-    basesystem_media_root => {
+-	desc => 'Name of the media holding basesystem packages',
+-	default => sub {
+-	    my ($config, $run) = @_;
+-	    "$config->{repository}/$run->{distro}/$run->{my_arch}/";
+-	}
+-    },
+-    basesystem_media => {
+-	desc => 'Where to find basesystem packages',
+-	default => 'main/release'
+-    },
+     basesystem_packages => {
+ 	desc => 'List of packages needed for the chroot creation',
+ 	default => [
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101126/10ae22ab/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000961.html b/zarb-ml/mageia-sysadm/2010-November/000961.html new file mode 100644 index 000000000..340782e82 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000961.html @@ -0,0 +1,96 @@ + + + + [Mageia-sysadm] [157] include arch in chroot dir name + + + + + + + + + +

[Mageia-sysadm] [157] include arch in chroot dir name

+ root at mageia.org + root at mageia.org +
+ Fri Nov 26 01:15:08 CET 2010 +

+
+ +
Revision: 157
+Author:   blino
+Date:     2010-11-26 01:15:08 +0100 (Fri, 26 Nov 2010)
+Log Message:
+-----------
+include arch in chroot dir name
+
+Modified Paths:
+--------------
+    build_system/iurt/trunk/iurt2
+
+Modified: build_system/iurt/trunk/iurt2
+===================================================================
+--- build_system/iurt/trunk/iurt2	2010-11-25 23:48:57 UTC (rev 156)
++++ build_system/iurt/trunk/iurt2	2010-11-26 00:15:08 UTC (rev 157)
+@@ -707,7 +707,7 @@
+ $run{unionfs_tmp} = $run{unionfs};	
+ 
+ my ($chroot_name, $chroot_tmp, $chroot, $chroot_tar);
+-$chroot_name = "chroot_$run{distro_tag}$debug_tag";
++$chroot_name = "chroot_$run{distro_tag}$debug_tag.$run{my_arch}";
+ if (!$run{use_old_chroot}) {
+     $chroot_tmp = "$config->{local_home}/chroot_tmp";
+ 
+@@ -731,7 +731,7 @@
+     $chroot = $run{use_old_chroot};
+ }
+ $run{chroot_path} = $chroot;
+-$chroot_tar = "$config->{local_home}/$chroot_name.$run{my_arch}.tar.gz";
++$chroot_tar = "$config->{local_home}/$chroot_name.tar.gz";
+ $run{chroot_tar} = $chroot_tar;
+ # 20061222 warly 
+ # even in use_old_chroot mode we create the chroot if it does not exist (useful 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101126/fd64f0db/attachment-0001.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000962.html b/zarb-ml/mageia-sysadm/2010-November/000962.html new file mode 100644 index 000000000..c5d0066ea --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000962.html @@ -0,0 +1,91 @@ + + + + [Mageia-sysadm] [158] iurt2.sh wrapper is unneeded now + + + + + + + + + +

[Mageia-sysadm] [158] iurt2.sh wrapper is unneeded now

+ root at mageia.org + root at mageia.org +
+ Fri Nov 26 01:16:08 CET 2010 +

+
+ +
Revision: 158
+Author:   blino
+Date:     2010-11-26 01:16:08 +0100 (Fri, 26 Nov 2010)
+Log Message:
+-----------
+iurt2.sh wrapper is unneeded now
+
+Removed Paths:
+-------------
+    build_system/iurt/trunk/iurt2.sh
+
+Deleted: build_system/iurt/trunk/iurt2.sh
+===================================================================
+--- build_system/iurt/trunk/iurt2.sh	2010-11-26 00:15:08 UTC (rev 157)
++++ build_system/iurt/trunk/iurt2.sh	2010-11-26 00:16:08 UTC (rev 158)
+@@ -1,12 +0,0 @@
+-#!/bin/bash
+-
+-case "$1" in
+-  --iurtlogdir) LOGFILE="$2/botcmd.`date +%s`.`hostname -s`.log"; shift 2 ;;
+-  *) LOGFILE="/dev/null" ;;
+-esac
+-
+-touch "$LOGFILE" &>/dev/null || LOGFILE="/dev/null"
+-
+-echo PID=$$
+-
+-exec perl -I/usr/local/lib/perl/iurt/lib /usr/local/bin/iurt2 "$@" &>"$LOGFILE"
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101126/527ddac3/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000963.html b/zarb-ml/mageia-sysadm/2010-November/000963.html new file mode 100644 index 000000000..6855ee544 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000963.html @@ -0,0 +1,187 @@ + + + + [Mageia-sysadm] [LONG] sympa ( and web apps ) ldap authentication + + + + + + + + + +

[Mageia-sysadm] [LONG] sympa ( and web apps ) ldap authentication

+ Michael Scherer + misc at zarb.org +
+ Fri Nov 26 01:47:52 CET 2010 +

+
+ +
Le jeudi 25 novembre 2010 à 22:40 +0100, nicolas vigier a écrit :
+> On Thu, 25 Nov 2010, Michael Scherer wrote:
+> 
+> > > > - using email as login is dangerous. Since the email is freely editable
+> > > > in catdap ( and multivalued ), someone could perfectly change his email
+> > > > after opening a account, and thus get access to sympa subscription of
+> > > > someone else.
+> > > 
+> > > And lose their account to the user whose email address was used as soon as we 
+> > > allow user-initiated password reset ...
+> > 
+> > Which is not a problem, since opening a account is free. If we start to
+> > have some private mls ( such as the one requested for forums ), reading
+> > archive would be a privacy issue, and so step must be taken to prevent
+> > that.
+> > 
+> > But my main point is not this particular example who is quite easy to
+> > prevent. But rather that letting people freely edit the attribute they
+> > use for login is IMHO a risky operation given the wide range of
+> > application that we will have.
+> > 
+> > Editing by admin should be ok. 
+> 
+> To avoid this, I think email should not be freely editable in catdat,
+> but should be verified first before being actually changed in ldap.
+> When changing email, the user should receive on the new email an URL
+> to open to confirm he is the owner of the email.
+
+
+So to summarize, here is a updated proposal ( order matter ) :
+
+- use username as primary login, not letting people change it for now.
+Since most applications may not properly support it, I feel it would be
+safer. 
+
+- make sure that catdap can take username or email when resetting
+password. ie :
+reset password :
+  - email or username :
+  [send the request]  
+
+this will likely be enough for people who forget their username, IMHO.
+
+- make sure primary email is unique, by setting it in ldap as such.
+( quite easy )
+
+- allow to also use emails as login for all applications that support it
+now. Ie username and primary email ( since it is easier to have it
+unique ). Yet the username will still be the username showed, or the cn
+if the application support it ( or displayName ).
+
+Ie, even if I used michael at example.org, it would show "welcome Michael
+Scherer" ( or welcome misc, if the application do not support getting
+the CN or DisplayName or a custom attribute ).
+
+So far, sympa support it. Not sure for the others.
+
+
+- For those that don't, try to patch them _and_ get the patch accepted
+by upstream first ( because that's already enough work to write the
+patch so if it is not even accepted upstream, we will have to maintain
+it and that's not good from a deployment pov ). Backporting the patch
+would be ok, carrying it forever is IMHO not desirable. But theses
+features seems generic enough to be a welcome addition that can be
+upstreamed.
+
+Features being "using email and/or username" and/or "showing
+CN/DisplayName instead of username".
+
+
+
+- find a way to ensure unicity of email for the secondary emails that
+user can enter. If possible, on the ldap level directly, but maybe doing
+it on catdap level would be enough. I would feel safer to have this at
+ldap level for obvious reasons of data integrity.
+
+
+- once we have enabled and checked it, and ensured that this is not a
+potential source of problem, enable the use of the secondary email as a
+login, in addition to username and primary email
+
+( this should not requires much patching of application, but if needed,
+same rule as previously apply ).
+
+
+- ensure that aliases @mageia.org can also be used without being entered
+in the ldap ( may requires some black magic at ldap level ). But if we
+can't, just let people add it by themself, or add it when user get their
+email aliases. 
+
+
+- The username will be used by application as the "primary key" in their
+local db. So people can change their email without trouble, and we will
+not need to touch to the application too much when it happens. 
+( or at least I hope )
+
+Later, if we decide this is worthwhile, and if there is demand for it
+( but if we let change email and display name, username may not require
+change ), we have enough ressources ( because I think that would be a
+issue for the moment ), we can start to check for a way of changing
+username on the whole information system. 
+
+
+So I think this plan of action will satisfy everybody :
+- people can use their email or their username 
+- people can change their emails without impacting the db, and without
+requiring invasive change ( and with upstreamable patchs )
+- people can change the information that is displayed, and patchs could
+also be sent upstream.
+- we do not have much burden of maintaining it ( as we use standard
+protocols )
+- we can roll out the required feature one at a time, so nothing get
+late, and we have the full time to work on it and properly finish the
+adaptation of others softwares
+
+Bonus points :
+- we have small patchs and features to code, so we can fill the junior
+job list
+- we can also communicate frequently on progress
+
+I didn't included oauth/openid/SSO/etc in the plan, as 
+- this seems much more like a much more distant goal 
+- much more invasive on all levels 
+- something that I still didn't grasp 
+
+
+So, is everybody ok with this plan ?
+
+-- 
+Michael Scherer
+
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000964.html b/zarb-ml/mageia-sysadm/2010-November/000964.html new file mode 100644 index 000000000..92df239aa --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000964.html @@ -0,0 +1,80 @@ + + + + [Mageia-sysadm] [LONG] sympa ( and web apps ) ldap authentication + + + + + + + + + +

[Mageia-sysadm] [LONG] sympa ( and web apps ) ldap authentication

+ nicolas vigier + boklm at mars-attacks.org +
+ Fri Nov 26 02:10:25 CET 2010 +

+
+ +
On Fri, 26 Nov 2010, Michael Scherer wrote:
+
+> 
+> - find a way to ensure unicity of email for the secondary emails that
+> user can enter. If possible, on the ldap level directly, but maybe doing
+> it on catdap level would be enough. I would feel safer to have this at
+> ldap level for obvious reasons of data integrity.
+> 
+> 
+> - once we have enabled and checked it, and ensured that this is not a
+> potential source of problem, enable the use of the secondary email as a
+> login, in addition to username and primary email
+> 
+> ( this should not requires much patching of application, but if needed,
+> same rule as previously apply ).
+
+Is it really needed to allow users to enter secondary emails ? How will
+they be used ?
+
+> So, is everybody ok with this plan ?
+
+I'm ok. Except maybe for the secondary emails, I don't know if it is
+useful to allow multiple emails.
+
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000965.html b/zarb-ml/mageia-sysadm/2010-November/000965.html new file mode 100644 index 000000000..05da5f144 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000965.html @@ -0,0 +1,109 @@ + + + + [Mageia-sysadm] [LONG] sympa ( and web apps ) ldap authentication + + + + + + + + + +

[Mageia-sysadm] [LONG] sympa ( and web apps ) ldap authentication

+ Michael Scherer + misc at zarb.org +
+ Fri Nov 26 03:08:34 CET 2010 +

+
+ +
Le vendredi 26 novembre 2010 à 02:10 +0100, nicolas vigier a écrit :
+> On Fri, 26 Nov 2010, Michael Scherer wrote:
+> 
+> > 
+> > - find a way to ensure unicity of email for the secondary emails that
+> > user can enter. If possible, on the ldap level directly, but maybe doing
+> > it on catdap level would be enough. I would feel safer to have this at
+> > ldap level for obvious reasons of data integrity.
+> > 
+> > 
+> > - once we have enabled and checked it, and ensured that this is not a
+> > potential source of problem, enable the use of the secondary email as a
+> > login, in addition to username and primary email
+> > 
+> > ( this should not requires much patching of application, but if needed,
+> > same rule as previously apply ).
+> 
+> Is it really needed to allow users to enter secondary emails ? How will
+> they be used ?
+
+Nothing fancy as said before :
+
+- vcard like feature for those that want ( ie, nothing force people to
+enter them ). There is already provision of this in ldap schema, and I
+think that's something that people could want. At least, I would, but I
+could live without it.
+
+However among the 3 distribution DIT I checked :
+launchpad (ubuntu) does it ( but you have to be logged to see ),
+fas (fedora) doesn't , 
+and debian db do not show email and I do not have access to it to check.
+But I do not think it has any kind of email in their ldap, as the
+primary authentication system is gpg. 
+
+- additional mail that would be accepted when posting on sympa for
+people like me or nanar that use several mails, or for specific case
+like cross posting ( I use @mdv.org on mdv email, and @zarb.org on
+mageia ml, so cross posting is not possible for someone like me ).
+That's my pet peeve.
+
+- could ease people's life as they would use any of their mails ( ie no
+need to remember what mail they did use, as noted by nanar in this
+thread )
+
+But also note this is a secondary feature, ie one that we cannot enable
+right now, as we first need to check this is doable without too much
+work ( or doable with lots of work if someone does the work ). 
+
+So not having it would be ok too.
+
+-- 
+Michael Scherer
+
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000966.html b/zarb-ml/mageia-sysadm/2010-November/000966.html new file mode 100644 index 000000000..bf93cacd8 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000966.html @@ -0,0 +1,64 @@ + + + + [Mageia-sysadm] [LONG] sympa ( and web apps ) ldap authentication + + + + + + + + + +

[Mageia-sysadm] [LONG] sympa ( and web apps ) ldap authentication

+ Romain d'Alverny + rdalverny at gmail.com +
+ Fri Nov 26 09:32:28 CET 2010 +

+
+ +
On Fri, Nov 26, 2010 at 01:47, Michael Scherer <misc at zarb.org> wrote:
+> So to summarize, here is a updated proposal ( order matter ) :
+> [...]
+>
+> So, is everybody ok with this plan ?
+
+I'm ok with it; great!
+
+Romain
+
+ + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000967.html b/zarb-ml/mageia-sysadm/2010-November/000967.html new file mode 100644 index 000000000..78f5bc54d --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000967.html @@ -0,0 +1,83 @@ + + + + [Mageia-sysadm] [476] Fix ident + + + + + + + + + +

[Mageia-sysadm] [476] Fix ident

+ root at mageia.org + root at mageia.org +
+ Fri Nov 26 13:48:53 CET 2010 +

+
+ +
Revision: 476
+Author:   dmorgan
+Date:     2010-11-26 13:48:53 +0100 (Fri, 26 Nov 2010)
+Log Message:
+-----------
+Fix ident
+
+Modified Paths:
+--------------
+    puppet/modules/catdap/manifests/init.pp
+
+Modified: puppet/modules/catdap/manifests/init.pp
+===================================================================
+--- puppet/modules/catdap/manifests/init.pp	2010-11-25 17:48:15 UTC (rev 475)
++++ puppet/modules/catdap/manifests/init.pp	2010-11-26 12:48:53 UTC (rev 476)
+@@ -25,7 +25,7 @@
+     
+     file { "$catdap_location/catdap_local.yml":
+         ensure => present,
+-	owner => root,
++        owner => root,
+         group => apache,
+         mode => 640,
+         content => template("catdap/catdap_local.yml"),
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101126/4712f6e6/attachment.html>
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000968.html b/zarb-ml/mageia-sysadm/2010-November/000968.html new file mode 100644 index 000000000..80cc91b87 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000968.html @@ -0,0 +1,92 @@ + + + + [Mageia-sysadm] [477] do snapshots of the custom bugzilla template + + + + + + + + + +

[Mageia-sysadm] [477] do snapshots of the custom bugzilla template

+ root at mageia.org + root at mageia.org +
+ Fri Nov 26 16:03:12 CET 2010 +

+
+ +
Revision: 477
+Author:   dmorgan
+Date:     2010-11-26 16:03:12 +0100 (Fri, 26 Nov 2010)
+Log Message:
+-----------
+do snapshots of the custom bugzilla template
+
+Modified Paths:
+--------------
+    puppet/modules/bugzilla/manifests/init.pp
+
+Modified: puppet/modules/bugzilla/manifests/init.pp
+===================================================================
+--- puppet/modules/bugzilla/manifests/init.pp	2010-11-26 12:48:53 UTC (rev 476)
++++ puppet/modules/bugzilla/manifests/init.pp	2010-11-26 15:03:12 UTC (rev 477)
+@@ -1,5 +1,7 @@
+ class bugzilla {
+ 
++   $bugzilla_location = "/usr/share/bugzilla/template/en/custom"
++
+     package { 'bugzilla':
+         ensure => installed;
+     }
+@@ -33,3 +35,8 @@
+     }
+ }
+ 
++    subversion::snapshot { $bugzilla_location:
++      source => "svn://svn.mageia.org/svn/web/templates/bugzilla/trunk"
++    }
++
++
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101126/e040bceb/attachment.html>
+
+ + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000969.html b/zarb-ml/mageia-sysadm/2010-November/000969.html new file mode 100644 index 000000000..bd25b98d3 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000969.html @@ -0,0 +1,61 @@ + + + + [Mageia-sysadm] Puppet Report for alamut.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for alamut.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Fri Nov 26 16:08:51 CET 2010 +

+
+ +
Fri Nov 26 16:08:49 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Syntax error at 'require'; expected '}' at /etc/puppet/modules/bugzilla/manifests/init.pp:18 on node alamut.mageia.org
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000970.html b/zarb-ml/mageia-sysadm/2010-November/000970.html new file mode 100644 index 000000000..b548631fa --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000970.html @@ -0,0 +1,61 @@ + + + + [Mageia-sysadm] Puppet Report for alamut.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for alamut.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Fri Nov 26 16:09:05 CET 2010 +

+
+ +
Fri Nov 26 16:09:04 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: Error 400 on SERVER: Could not find class bugzilla at /etc/puppet/manifests/nodes.pp:58 on node alamut.mageia.org
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000971.html b/zarb-ml/mageia-sysadm/2010-November/000971.html new file mode 100644 index 000000000..9ca1b1ffe --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000971.html @@ -0,0 +1,99 @@ + + + + [Mageia-sysadm] [478] requires the svn snapshot + + + + + + + + + +

[Mageia-sysadm] [478] requires the svn snapshot

+ root at mageia.org + root at mageia.org +
+ Fri Nov 26 16:20:50 CET 2010 +

+
+ +
Revision: 478
+Author:   dmorgan
+Date:     2010-11-26 16:20:50 +0100 (Fri, 26 Nov 2010)
+Log Message:
+-----------
+requires the svn snapshot
+
+Modified Paths:
+--------------
+    puppet/modules/bugzilla/manifests/init.pp
+
+Modified: puppet/modules/bugzilla/manifests/init.pp
+===================================================================
+--- puppet/modules/bugzilla/manifests/init.pp	2010-11-26 15:03:12 UTC (rev 477)
++++ puppet/modules/bugzilla/manifests/init.pp	2010-11-26 15:20:50 UTC (rev 478)
+@@ -33,10 +33,17 @@
+     apache::vhost_other_app { "bugs.$domain":
+       vhost_file => "bugzilla/vhost_bugs.conf",
+     }
+-}
+ 
++    file { "custom":
++      path => "/usr/share/bugzilla/template/en/custom",
++      ensure => directory,
++      owner => root,
++      group => apache,
++      mode => 700,
++      recurse => true
++    }
++
+     subversion::snapshot { $bugzilla_location:
+       source => "svn://svn.mageia.org/svn/web/templates/bugzilla/trunk"
+     }
+-
+-
++}
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101126/6b2af3a7/attachment.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000972.html b/zarb-ml/mageia-sysadm/2010-November/000972.html new file mode 100644 index 000000000..ca4d46613 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000972.html @@ -0,0 +1,88 @@ + + + + [Mageia-sysadm] [479] requires the svn snapshot + + + + + + + + + +

[Mageia-sysadm] [479] requires the svn snapshot

+ root at mageia.org + root at mageia.org +
+ Fri Nov 26 16:21:37 CET 2010 +

+
+ +
Revision: 479
+Author:   dmorgan
+Date:     2010-11-26 16:21:37 +0100 (Fri, 26 Nov 2010)
+Log Message:
+-----------
+requires the svn snapshot
+
+Modified Paths:
+--------------
+    puppet/modules/bugzilla/manifests/init.pp
+
+Modified: puppet/modules/bugzilla/manifests/init.pp
+===================================================================
+--- puppet/modules/bugzilla/manifests/init.pp	2010-11-26 15:20:50 UTC (rev 478)
++++ puppet/modules/bugzilla/manifests/init.pp	2010-11-26 15:21:37 UTC (rev 479)
+@@ -40,7 +40,8 @@
+       owner => root,
+       group => apache,
+       mode => 700,
+-      recurse => true
++      recurse => true,
++      require => Subversion::Snapshot[$bugzilla_location]
+     }
+ 
+     subversion::snapshot { $bugzilla_location:
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101126/2a874b89/attachment-0001.html>
+
+ + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000973.html b/zarb-ml/mageia-sysadm/2010-November/000973.html new file mode 100644 index 000000000..9a346e603 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000973.html @@ -0,0 +1,102 @@ + + + + [Mageia-sysadm] [480] Fix perms + + + + + + + + + +

[Mageia-sysadm] [480] Fix perms

+ root at mageia.org + root at mageia.org +
+ Fri Nov 26 16:36:45 CET 2010 +

+
+ +
Revision: 480
+Author:   dmorgan
+Date:     2010-11-26 16:36:45 +0100 (Fri, 26 Nov 2010)
+Log Message:
+-----------
+Fix perms
+
+Modified Paths:
+--------------
+    puppet/modules/bugzilla/manifests/init.pp
+
+Modified: puppet/modules/bugzilla/manifests/init.pp
+===================================================================
+--- puppet/modules/bugzilla/manifests/init.pp	2010-11-26 15:21:37 UTC (rev 479)
++++ puppet/modules/bugzilla/manifests/init.pp	2010-11-26 15:36:45 UTC (rev 480)
+@@ -33,18 +33,17 @@
+     apache::vhost_other_app { "bugs.$domain":
+       vhost_file => "bugzilla/vhost_bugs.conf",
+     }
++    subversion::snapshot { $bugzilla_location:
++      source => "svn://svn.mageia.org/svn/web/templates/bugzilla/trunk"
++    }
+ 
+     file { "custom":
+       path => "/usr/share/bugzilla/template/en/custom",
+       ensure => directory,
+       owner => root,
+       group => apache,
+-      mode => 700,
++      mode => 640,
+       recurse => true,
+       require => Subversion::Snapshot[$bugzilla_location]
+     }
+-
+-    subversion::snapshot { $bugzilla_location:
+-      source => "svn://svn.mageia.org/svn/web/templates/bugzilla/trunk"
+-    }
+ }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101126/b0cf33f8/attachment.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000974.html b/zarb-ml/mageia-sysadm/2010-November/000974.html new file mode 100644 index 000000000..02881f5e4 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000974.html @@ -0,0 +1,1382 @@ + + + + [Mageia-sysadm] [159] Merge r108:121 from branches/live/root (HTML/CSS base refactoring) + + + + + + + + + +

[Mageia-sysadm] [159] Merge r108:121 from branches/live/root (HTML/CSS base refactoring)

+ root at mageia.org + root at mageia.org +
+ Fri Nov 26 17:42:58 CET 2010 +

+
+ +
Revision: 159
+Author:   rda
+Date:     2010-11-26 17:42:58 +0100 (Fri, 26 Nov 2010)
+Log Message:
+-----------
+Merge r108:121 from branches/live/root (HTML/CSS base refactoring)
+
+Modified Paths:
+--------------
+    identity/CatDap/trunk/root/admin/account.tt
+    identity/CatDap/trunk/root/admin/account_addoc.tt
+    identity/CatDap/trunk/root/admin/account_group.tt
+    identity/CatDap/trunk/root/admin/account_modify.tt
+    identity/CatDap/trunk/root/admin/account_promote.tt
+    identity/CatDap/trunk/root/admin/group_modify.tt
+    identity/CatDap/trunk/root/admin/index.tt
+    identity/CatDap/trunk/root/email/activation.tt
+    identity/CatDap/trunk/root/email/admin/password.tt
+    identity/CatDap/trunk/root/index.tt
+    identity/CatDap/trunk/root/register/check.tt
+    identity/CatDap/trunk/root/register/complete.tt
+    identity/CatDap/trunk/root/register/index.tt
+    identity/CatDap/trunk/root/template/footer
+    identity/CatDap/trunk/root/template/header
+    identity/CatDap/trunk/root/template/html
+    identity/CatDap/trunk/root/template/layout
+    identity/CatDap/trunk/root/user/firstlogin.tt
+    identity/CatDap/trunk/root/user/index.tt
+    identity/CatDap/trunk/root/user/password.tt
+
+Added Paths:
+-----------
+    identity/CatDap/trunk/root/static/style/
+
+Removed Paths:
+-------------
+    identity/CatDap/trunk/root/ttsite.css
+
+Property Changed:
+----------------
+    identity/CatDap/trunk/root/
+
+
+Property changes on: identity/CatDap/trunk/root
+___________________________________________________________________
+Added: svn:mergeinfo
+   + /identity/CatDap/branches/live/root:109-121
+
+Modified: identity/CatDap/trunk/root/admin/account.tt
+===================================================================
+--- identity/CatDap/trunk/root/admin/account.tt	2010-11-26 00:16:08 UTC (rev 158)
++++ identity/CatDap/trunk/root/admin/account.tt	2010-11-26 16:42:58 UTC (rev 159)
+@@ -1,47 +1,49 @@
+-<form method='POST'>
+-<table>
+-<tr>
+-<td>
+-Search by
+-</td>
+-<td>
+-<select name="attribute">
+-<option value="uid">Username</option>
+-<option value="mail">Email</option>
+-<option value="cn">Full Name</option>
+-<option value="sn">Surname</option>
+-</select>
+-</td>
+-<!-- td>
+-<select name="matchtype">
+-<option value="substring">contains</option>
+-<option value="exact">is exactly</option>
+-<option value="gte">greater than or equal to</option>
+-<option value="lt">less than</option>
+-</select>
+-</td -->
+-<td><input name='value'></td>
+-</table>
++<form method="post" action="">
++    <table>
++        <tr>
++            <td>Search by</td>
++            <td>
++                <select name="attribute">
++                    <option value="uid">Username</option>
++                    <option value="mail">Email</option>
++                    <option value="cn">Full Name</option>
++                    <option value="sn">Surname</option>
++                </select>
++            </td>
++            <!-- td>
++            <select name="matchtype">
++            <option value="substring">contains</option>
++            <option value="exact">is exactly</option>
++            <option value="gte">greater than or equal to</option>
++            <option value="lt">less than</option>
++            </select>
++            </td -->
++            <td><input name="value" value="" /></td>
++        </tr>
++    </table>
+ </form>
++
++<hr />
++
+ [% IF entries %]
+-<table border=0>
+-<tr>
+-<th>Username</th>
+-<th>Email</th>
+-<th>First Name</th>
+-<th>Surname</td>
+-<th>Full Name</td>
+-</tr>
+-[% FOREACH entry IN entries %]
+-<tr>
+-<td><a href="[% c.uri_for('/admin/account_modify') %]/[% entry.uid %]">[% entry.uid %]</a></td>
+-<td>[% entry.mail %]</td>
+-<td>[% entry.givenName %]</td>
+-<td>[% entry.sn %]</td>
+-<td>[% entry.cn %]</td>
+-</tr>
++    <table border=0>
++        <tr>
++            <th>Username</th>
++            <th>Email</th>
++            <th>First Name</th>
++            <th>Surname</td>
++            <th>Full Name</td>
++        </tr>
++        [% FOREACH entry IN entries %]
++            <tr>
++                <td><a href="[% c.uri_for('/admin/account_modify') %]/[% entry.uid %]">[% entry.uid %]</a></td>
++                <td>[% entry.mail %]</td>
++                <td>[% entry.givenName %]</td>
++                <td>[% entry.sn %]</td>
++                <td>[% entry.cn %]</td>
++            </tr>
++        [% END %]
++    </table>
+ [% END %]
+-</table>
+-[% END %]
+ 
+ 
+
+Modified: identity/CatDap/trunk/root/admin/account_addoc.tt
+===================================================================
+--- identity/CatDap/trunk/root/admin/account_addoc.tt	2010-11-26 00:16:08 UTC (rev 158)
++++ identity/CatDap/trunk/root/admin/account_addoc.tt	2010-11-26 16:42:58 UTC (rev 159)
+@@ -1,27 +1,30 @@
+ Adding objectclass [% oc %] to dn [% dn %]
+-<form method=post>
+-<input type=hidden name='dn' value='[% dn %]'>
+-<input type=hidden name='uid' value='[% uid %]'>
+-<input type='hidden' name='objectclass' value='[% oc %]'>
+-<table>
+-<tr>
+-<th>Attribute</th>
+-<th>Value</th>
+-</tr>
+-[% FOREACH attr IN must %]
+-[% IF attr != "objectClass" %]
+-<tr>
+-<td>[% attr %]</td>
+-<td><input name='[% attr %]'><span color='red'>*</span></td>
+-</tr>
+-[% END %]
+-[% END %]
+-[% FOREACH attr IN may %]
+-<tr>
+-<td>[% attr %]</td>
+-<td><input name='[% attr %]'></td>
+-</tr>
+-[% END %]
+-</table>
+-<input type='submit' value='Add'>
+ 
++<form method="post" action="">
++    <input type="hidden" name="dn" value="[% dn %]" />
++    <input type="hidden" name="uid" value="[% uid %]" />
++    <input type="hidden" name="objectclass" value="[% oc %]" />
++    <table>
++        <tr>
++            <th>Attribute</th>
++            <th>Value</th>
++        </tr>
++        [% FOREACH attr IN must %]
++            [% IF attr != "objectClass" %]
++                <tr>
++                    <td>[% attr %]</td>
++                    <td><input name='[% attr %]'>
++                        <span color='red'>*</span></td>
++                </tr>
++            [% END %]
++        [% END %]
++        [% FOREACH attr IN may %]
++            <tr>
++                <td>[% attr %]</td>
++                <td><input name='[% attr %]'></td>
++            </tr>
++        [% END %]
++    </table>
++    <p><input type="submit" value="Add" /></p>
++
++</form>
+\ No newline at end of file
+
+Modified: identity/CatDap/trunk/root/admin/account_group.tt
+===================================================================
+--- identity/CatDap/trunk/root/admin/account_group.tt	2010-11-26 00:16:08 UTC (rev 158)
++++ identity/CatDap/trunk/root/admin/account_group.tt	2010-11-26 16:42:58 UTC (rev 159)
+@@ -1,24 +1,29 @@
+-Add user [% uid %] to a new group:
++<h2>Add user [% uid %] to a new group</h2>
+ 
+-<form method='post'>
+-<input type='hidden' name='uid' value='[% uid %]'>
+-<input type='hidden' name='op' value='add'>
+-<select name='group'>
+-[% FOREACH group IN newgroups %]
+-<option value='[% group.cn %]'>[% group.cn %]</option>
+-[% END %]
+-</select>
+-<input type='submit' value='Add'>
++<form method="post" action="">
++    <input type='hidden' name='uid' value='[% uid %]' />
++    <input type='hidden' name='op' value='add' />
++    <select name='group'>
++        [% FOREACH group IN newgroups %]
++            <option value='[% group.cn %]'>[% group.cn %]</option>
++        [% END %]
++    </select>
++    <input type='submit' value='Add' />
+ </form>
+ 
+-Delete user [% uid %] from an existing group:
+-<form method='post'>
+-<input type='hidden' name='uid' value='[% uid %]'>
+-<input type='hidden' name='op' value='delete'>
+-<select name='group'>
+-[% FOREACH group IN groups %]
+-<option value='[% group.cn %]'>[% group.cn %]</option>
+-[% END %]
+-</select>
+-<input type='submit' value='Delete'>
++<hr />
++
++<h2>Delete user [% uid %] from an existing group:</h2>
++
++<form method="post" action="">
++    <input type='hidden' name='uid' value='[% uid %]' />
++    <input type='hidden' name='op' value='delete' />
++    <select name='group'>
++        [% FOREACH group IN groups %]
++            <option value='[% group.cn %]'>[% group.cn %]</option>
++        [% END %]
++    </select>
++    <input type='submit' value='Delete' />
+ </form>
++
++<hr />
+\ No newline at end of file
+
+Modified: identity/CatDap/trunk/root/admin/account_modify.tt
+===================================================================
+--- identity/CatDap/trunk/root/admin/account_modify.tt	2010-11-26 00:16:08 UTC (rev 158)
++++ identity/CatDap/trunk/root/admin/account_modify.tt	2010-11-26 16:42:58 UTC (rev 159)
+@@ -1,66 +1,88 @@
+ <a href="[% c.uri_for('/admin/password') %]/[% uid %]">Reset password</a>
+ <a href="[% c.uri_for('/admin/account_group') %]/[% uid %]">Groups</a>
+ 
+-<form method=post>
+-<input type='hidden' name='operation' value='replace'>
+-<table border=0>
+-<tr><th>Attribute</th><th>Value</th></tr>
+-[% FOREACH attr IN values %]
+-  <tr>
+-    <td>[% attr.name %]</td>
+-    <td>[% FOREACH val IN attr.values %][% IF attr.editable %]<input type=hidden name="[% attr.name %]_old" value="[% val %]"><input name="[% attr.name %]_new" value="[% val %]">[% ELSE %][% val %]<br/>[% END %]
+-[% IF attr.addable AND attr.editable %]<a href="[% c.uri_for('/admin/account_edit') %]/add/[% attr.name %]">Add</a>[% END %]
+-[% IF attr.removable AND attr.editable %]<a href="[% c.uri_for('/admin/account_modifydel') %]/[% uid %]/[% attr.name %]/[% val %]">Delete</a>[% END %]
+-    [% END %]</td>
+-  </tr>
+-[% END %]
+-<tr><td colspan=2 align=center><input type='Submit' value='Update'></td></tr>
+-</table>
++<form method="post" action="">
++    <input type='hidden' name='operation' value='replace' />
++    <table border=0>
++        <tr>
++            <th>Attribute</th>
++            <th>Value</th>
++        </tr>
++        [% FOREACH attr IN values %]
++        <tr>
++            <td>[% attr.name %]</td>
++            <td>
++                [% FOREACH val IN attr.values %]
++                    [% IF attr.editable %]
++                        <input type="hidden" name="[% attr.name %]_old" value="[% val %]" />
++                        <input name="[% attr.name %]_new" value="[% val %]" />
++                    [% ELSE %]
++                        [% val %]
++                        <br/>
++                    [% END %]
++                    [% IF attr.addable AND attr.editable %]
++                        <a href="[% c.uri_for('/admin/account_edit') %]/add/[% attr.name %]">Add</a>
++                    [% END %]
++                    [% IF attr.removable AND attr.editable %]
++                        <a href="[% c.uri_for('/admin/account_modifydel') %]/[% uid %]/[% attr.name %]/[% val %]">Delete</a>
++                    [% END %]
++                [% END %]
++            </td>
++        </tr>
++        [% END %]
++        <tr>
++            <td colspan=2 align=center>
++                <input type='Submit' value='Update'>
++            </td>
++        </tr>
++    </table>
+ </form>
+ 
+-<table border=0>
+-<tr>
+-<td>
+-<form method=post action="[% c.uri_for('/admin/account_modify') %]/[% uid %]">
+-<input type='hidden' name='operation' value='add'>
+- Add attribute 
+- <select name='attribute'>[% FOREACH attr IN may %]
+-  <option value="[% attr %]">[% attr %]</option>[% END %]
+- </select>
+- with value
+-<input name='value'>
+- <input type=submit value='Add'>
++<hr />
++
++<form method="post" action="[% c.uri_for('/admin/account_modify') %]/[% uid %]">
++    <input type="hidden" name="operation" value="add" />
++
++    <p>
++    Add attribute 
++    <select name='attribute'>
++        [% FOREACH attr IN may %]
++        <option value="[% attr %]">[% attr %]</option>
++        [% END %]
++    </select>
++    with value
++    <input name="value" value="" />
++    <input type="submit" value="Add" />
++    </p>
+ </form>
+-</td>
+-</tr>
++
++<hr />
++
+ [% IF groups %]
+-<tr>
+-<td>
+-Promote user to posixAccount with primary group: 
+-<form method=post action="[% c.uri_for('/admin/account_promote') %]">
+-<input type='hidden' name='dn' value='[% dn %]'>
+-<select name='gid'>
+-[% FOREACH group IN groups %]
+-<option value='[% group.gidNumber %]'>[% group.name %]</option>
+-[% END %]
+-</select>
+-<input type=submit value='Promote'>
++<p>Promote user to posixAccount with primary group: </p>
++
++<form method="post" action="[% c.uri_for('/admin/account_promote') %]">
++    <input type="hidden" name="dn" value="[% dn %]" />
++    <select name="gid">
++        [% FOREACH group IN groups %]
++            <option value="[% group.gidNumber %]">[% group.name %]</option>
++        [% END %]
++    </select>
++    <input type="submit" value="Promote" />
+ </form>
+-</td>
+-</tr>
+ [% END %]
+-<tr>
+-<td>
+-<form method=post action="[% c.uri_for('/admin/account_addoc') %]">
+-<input type='hidden' name='dn' value='[% dn %]'>
+-<input type='hidden' name='uid' value='[% uid %]'>
+-<select name='objectclass'>
+-[% FOREACH oc IN offer_ocs %]
+-<option value='[% oc %]'>[% oc %]</option>
+-[% END %]
+-</select>
+-<input type='submit' value='Add ObjectClass'>
++
++<hr />
++
++<form method="post" action="[% c.uri_for('/admin/account_addoc') %]">
++    <input type='hidden' name='dn' value='[% dn %]'>
++    <input type='hidden' name='uid' value='[% uid %]'>
++    <select name='objectclass'>
++        [% FOREACH oc IN offer_ocs %]
++            <option value='[% oc %]'>[% oc %]</option>
++        [% END %]
++    </select>
++    <input type="submit" value="Add ObjectClass" />
+ </form>
+-</td>
+-</tr>
+-</table>
++
++<hr />
+\ No newline at end of file
+
+Modified: identity/CatDap/trunk/root/admin/account_promote.tt
+===================================================================
+--- identity/CatDap/trunk/root/admin/account_promote.tt	2010-11-26 00:16:08 UTC (rev 158)
++++ identity/CatDap/trunk/root/admin/account_promote.tt	2010-11-26 16:42:58 UTC (rev 159)
+@@ -1,34 +1,38 @@
+-<form method=post>
+-<table border=0>
+-<tr>
+-<th>Select</th>
+-<th>Username</th>
+-<th>Email</th>
+-<th>First Name</th>
+-<th>Surname</td>
+-<th>Full Name</td>
+-</tr>
+-[% FOREACH entry IN entries %]
+-<tr>
+-<td><input type='checkbox' name='username' value="[% entry.uid %]">
+-<td>[% entry.uid %]</td>
+-<td>[% entry.mail %]</td>
+-<td>[% entry.givenName %]</td>
+-<td>[% entry.sn %]</td>
+-<td>[% entry.cn %]</td>
+-</tr>
+-[% END %]
+-</table>
++<form method="post" action="">
++    <table border=0>
++        <tr>
++            <th>Select</th>
++            <th>Username</th>
++            <th>Email</th>
++            <th>First Name</th>
++            <th>Surname</td>
++            <th>Full Name</td>
++        </tr>
++        [% FOREACH entry IN entries %]
++        <tr>
++            <td><input type='checkbox' name='username' value="[% entry.uid %]">
++            <td>[% entry.uid %]</td>
++            <td>[% entry.mail %]</td>
++            <td>[% entry.givenName %]</td>
++            <td>[% entry.sn %]</td>
++            <td>[% entry.cn %]</td>
++        </tr>
++        [% END %]
++    </table>
+ 
+-<table border=0>
+-<tr>
+-<td>Primary group</td>
+-<td><select name='gid'>
+-[% FOREACH group IN groups %]
+-<option value=[% group.gidNumber %]>[% group.cn %]</option>
+-[% END %]
+-</td>
+-<td>
+-<input type='submit' value='Promote'>
+-</table>
++    <table border=0>
++        <tr>
++            <td>Primary group</td>
++            <td>
++                <select name="gid">
++                [% FOREACH group IN groups %]
++                    <option value=[% group.gidNumber %]>[% group.cn %]</option>
++                [% END %]
++                </select>
++            </td>
++            <td>
++                <input type="submit" value="Promote" />
++            </td>
++        </tr>
++    </table>
+ </form>
+
+Modified: identity/CatDap/trunk/root/admin/group_modify.tt
+===================================================================
+--- identity/CatDap/trunk/root/admin/group_modify.tt	2010-11-26 00:16:08 UTC (rev 158)
++++ identity/CatDap/trunk/root/admin/group_modify.tt	2010-11-26 16:42:58 UTC (rev 159)
+@@ -1,22 +1,23 @@
+-<form method=post>
+-<input type='hidden' name='dn' value='[% group.dn %]'>
+-<table>
+-<tr>
+-<th>Attribute</th>
+-<th>Value</th>
+-</tr>
+-[% FOREACH attr IN group.attributes %]
+-<tr>
+-<td>
+-[% attr %]
+-</td>
+-<td>
+-[% FOREACH value IN group.get_value(attr) %]
+-[% value %] <a href="[% c.uri_for('/admin/group_modify') %]/delete/[% group.dn %]/[% attr %]/[% value %]">delete</a><br/>
+-[% END %]
+-<input name='[% attr %]'>
+-<input type='submit' value='Add'>
+-</td>
+-</tr>
+-[% END %]
+-</table>
++<form method="post" action="">
++    <input type='hidden' name='dn' value='[% group.dn %]'>
++    <table>
++        <tr>
++            <th>Attribute</th>
++            <th>Value</th>
++        </tr>
++        [% FOREACH attr IN group.attributes %]
++        <tr>
++            <td>[% attr %]</td>
++            <td>
++                [% FOREACH value IN group.get_value(attr) %]
++                    [% value %]
++                    <a href="[% c.uri_for('/admin/group_modify') %]/delete/[% group.dn %]/[% attr %]/[% value %]">delete</a>
++                    <br/>
++                [% END %]
++                <input name="[% attr %]" value="" />
++                <input type="submit" value="Add" />
++            </td>
++        </tr>
++        [% END %]
++    </table>
++</form>
+\ No newline at end of file
+
+Modified: identity/CatDap/trunk/root/admin/index.tt
+===================================================================
+--- identity/CatDap/trunk/root/admin/index.tt	2010-11-26 00:16:08 UTC (rev 158)
++++ identity/CatDap/trunk/root/admin/index.tt	2010-11-26 16:42:58 UTC (rev 159)
+@@ -1 +1 @@
+-Please use the menus above
++<p>Please use the menus above.</p>
+\ No newline at end of file
+
+Modified: identity/CatDap/trunk/root/email/activation.tt
+===================================================================
+--- identity/CatDap/trunk/root/email/activation.tt	2010-11-26 00:16:08 UTC (rev 158)
++++ identity/CatDap/trunk/root/email/activation.tt	2010-11-26 16:42:58 UTC (rev 159)
+@@ -3,3 +3,5 @@
+ [% l('To activate your account, please follow the link below.') %]
+ [% url %]
+ 
++--
++http://mageia.org/
+\ No newline at end of file
+
+Modified: identity/CatDap/trunk/root/email/admin/password.tt
+===================================================================
+--- identity/CatDap/trunk/root/email/admin/password.tt	2010-11-26 00:16:08 UTC (rev 158)
++++ identity/CatDap/trunk/root/email/admin/password.tt	2010-11-26 16:42:58 UTC (rev 159)
+@@ -6,3 +6,5 @@
+ 
+ [% url %]
+ 
++--
++http://mageia.org/
+\ No newline at end of file
+
+Modified: identity/CatDap/trunk/root/index.tt
+===================================================================
+--- identity/CatDap/trunk/root/index.tt	2010-11-26 00:16:08 UTC (rev 158)
++++ identity/CatDap/trunk/root/index.tt	2010-11-26 16:42:58 UTC (rev 159)
+@@ -1,23 +1,21 @@
+-<h2>[% l('Login') %]</h2>
++<h1>[% l('Login') %]</h1>
+ 
+-<form method=post action="/user">
++<form method="post" action="/user">
+ 
+-<table border=0>
+-<tr>
+-<td>[% l('Username') %]</td>
+-<td><input type=text name="username" value="[% c.user.username %]"></td>
+-</tr>
+-<tr>
+-<td>[% l('Password') %]</td>
+-<td><input type=password name='password'></td>
+-</tr>
+-<tr>
+-<td></td>
+-<td colspan=1>
+-    <input type='Submit' value='[% l('Login') %]'> [% l('or') %] 
+-    <a href="/register">[% l('Register') %]</a>
+-</td>
+-</tr>
+-</table>
++    <p>
++        <label for="username_">[% l('Username') %]</label>
++        <input id="username_" type="text" name="username" value="[% c.user.username %]" />
++    </p>
+ 
++    <p>
++        <label for="password_">[% l('Password') %]</label>
++        <input id="password_" type="password" name="password" />
++    </p>
+ 
++    <p><input type="submit" value="[% l('Login') %]" />
++        [% l('or') %] 
++        <a href="/register">[% l('Register') %]</a></p>
++        
++    <p>@todo [% l('Forgotten password?') %]</p>
++
++</form>
+
+Modified: identity/CatDap/trunk/root/register/check.tt
+===================================================================
+--- identity/CatDap/trunk/root/register/check.tt	2010-11-26 00:16:08 UTC (rev 158)
++++ identity/CatDap/trunk/root/register/check.tt	2010-11-26 16:42:58 UTC (rev 159)
+@@ -1,4 +1,4 @@
+ <h2>Success</h2>
+ <p>
+ [% message %]
+-
++</p>
+\ No newline at end of file
+
+Modified: identity/CatDap/trunk/root/register/complete.tt
+===================================================================
+--- identity/CatDap/trunk/root/register/complete.tt	2010-11-26 00:16:08 UTC (rev 158)
++++ identity/CatDap/trunk/root/register/complete.tt	2010-11-26 16:42:58 UTC (rev 159)
+@@ -1,5 +1,6 @@
+ <h2>[% l('Registration completed') %]</h2>
+ 
+ <p>
+-[% l('Registration was successful.') %]
+-[% l('Check your mail for activation instructions.') %]
++    [% l('Registration was successful.') %]
++    [% l('Check your mail for activation instructions.') %]
++</p>
+\ No newline at end of file
+
+Modified: identity/CatDap/trunk/root/register/index.tt
+===================================================================
+--- identity/CatDap/trunk/root/register/index.tt	2010-11-26 00:16:08 UTC (rev 158)
++++ identity/CatDap/trunk/root/register/index.tt	2010-11-26 16:42:58 UTC (rev 159)
+@@ -5,41 +5,43 @@
+ 
+ <h2>[% l('Register') %]</h2>
+ 
+-<span class="error">
+-[% FOREACH error IN errors %]
+-[% error %]<br/>
+-[% END %]
+-</span>
++<p class="error">
++    [% FOREACH error IN errors %]
++    [% error %]<br/>
++    [% END %]
++</p>
+ 
+-<form method=POST action="/register/check">
++<form method="post" action="/register/check">
++    <p>
++        <label for="uid_">[% l('Username') %]</label>
++        <input id="uid_" type="text" name="uid" value="[% c.request.params.uid %]" />
++    </p>
+ 
+-<table border=0>
+-<tr>
+-<td>[% l('Username') %]</td>
+-<td><input type=text name="uid" value=[% c.request.params.uid %]></td>
+-</tr>
+-<tr>
+-<td>[% l('First name') %]</td>
+-<td><input type=text name='gn' value=[% c.request.params.gn %]></td>
+-</tr>
+-<tr>
+-<td>[% l('Surname') %]</td>
+-<td><input type=text name='sn' value=[% c.request.params.sn %]></td>
+-</tr>
+-<tr>
+-<td>[% l('Email address') %]</td>
+-<td><input type=text name='mail1' value=[% c.request.params.mail1 %]></td>
+-</tr>
+-<tr>
+-<td>[% l('Confirm Email address') %]</td>
+-<td><input type=text name='mail2' value=[% c.request.params.mail2 %]></td>
+-</tr>
+-<tr>
+-<td><img src=/register/captcha></td>
+-<td><input type=text name=validate>
+-</tr>
+-<tr>
+-<td></td>
+-<td colspan=1><input type='Submit' value="[% l('Register') %]">
+-</tr>
+-</table>
++    <p>
++        <label for="gn_">[% l('First name') %]</label>
++        <input id="gn_" type="text" name="gn" value="[% c.request.params.gn %]" />
++    </p>
++
++    <p>
++        <label for="sn_">[% l('Surname') %]</label>
++        <input id="sn_" type="text" name="sn" value="[% c.request.params.sn %]" />
++    </p>
++
++    <p>
++        <label for="mail1_">[% l('Email address') %]</label>
++        <input id="mail1_" type="text" name="mail1" value="[% c.request.params.mail1 %]" />
++    </p>
++
++    <p>
++        <label for="mail2_">[% l('Confirm Email address') %]</label>
++        <input id="mail2_" type="text" name="mail2" value="[% c.request.params.mail2 %]" />
++    </p>
++
++    <p>
++        <img src="/register/captcha" />
++        <input type="text" name="validate" />
++    </p>
++
++    <p><input type="submit" value="[% l('Register') %]" /></p>
++
++</form>>>>>>>> .merge-right.r121
+
+Modified: identity/CatDap/trunk/root/template/footer
+===================================================================
+--- identity/CatDap/trunk/root/template/footer	2010-11-26 00:16:08 UTC (rev 158)
++++ identity/CatDap/trunk/root/template/footer	2010-11-26 16:42:58 UTC (rev 159)
+@@ -1,3 +1,4 @@
+-<!-- BEGIN site/footer -->
+-<!-- div id="copyright">&copy; [% c.config.organisation %] 2010</div -->
+-<!-- END site/footer -->
++<p>2010 <a href="http://mageia.org/">Mageia.org</a>
++    | <a href="http://mageia.org/policies/privacy/">Privacy policy</a>
++    | <a href="http://mageia.org/faq/accounts/">Mageia user accounts FAQ</a>
++    </p>
+\ No newline at end of file
+
+Modified: identity/CatDap/trunk/root/template/header
+===================================================================
+--- identity/CatDap/trunk/root/template/header	2010-11-26 00:16:08 UTC (rev 158)
++++ identity/CatDap/trunk/root/template/header	2010-11-26 16:42:58 UTC (rev 159)
+@@ -1,16 +1,15 @@
+-<!-- BEGIN template/header -->
+-<div class="masthead">
+-<h1>[% c.config.apptitle %]</h1>
+-</div>
++<p>[% template.title or site.title or c.config.apptitle %]</p>
++
+ <div class="hnav">
+-<!--div class="hnav" -->
+-<ul class="hnav">
+-[% FOREACH page IN pages %]
+-<li><a href="[% c.uri_for(page.page) %]">[% page.title %]</a></li>
+-[% END %]
+-[% IF c.user.username %]
+-<li>[ <a href="[% c.uri_for("/user") %]">[% c.user.username %]</a> ]<a href="/user/logout">[% l('Log out') %]</a></li>
+-[% END %]
+-</ul>
++    <ul class="hnav">
++    [% FOREACH page IN pages %]
++        <li><a href="[% c.uri_for(page.page) %]">[% page.title %]</a></li>
++    [% END %]
++    [% IF c.user.username %]
++        <li><strong><a href="[% c.uri_for("/user") %]">[% c.user.username %]</a></strong></li>
++        <li><a href="/user/logout">[% l('Log out') %]</a></li>
++    [% ELSE %]
++        <li><a href="/">[% l('Login') %]</a></li>
++    [% END %]
++    </ul>
+ </div>
+-<!-- END template/header -->
+
+Modified: identity/CatDap/trunk/root/template/html
+===================================================================
+--- identity/CatDap/trunk/root/template/html	2010-11-26 00:16:08 UTC (rev 158)
++++ identity/CatDap/trunk/root/template/html	2010-11-26 16:42:58 UTC (rev 159)
+@@ -1,14 +1,17 @@
+-<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN">
+-<html>
+- <head>
+-  <title>[% template.title or site.title %]</title>
+-  <meta http-equiv="Content-type" content="text/html;charset=UTF-8" />
+-  <link rel="Stylesheet" href="/ttsite.css">
+-  <!-- style type="text/css" -->
+-	  <!--% PROCESS ttsite.css %-->
+-  <!-- /style -->
+- </head>
+- <body>
++<?xml version="1.0" encoding="utf-8"?>
++<!DOCTYPE html>
++<html lang="en" dir="ltr">
++<head>
++    <meta charset="utf-8" />
++    <title>[% template.title or site.title or c.config.apptitle %]</title>
++    <meta content="description" value="Mageia.org online user account panel" />
++    <meta content="keywords" value="mageia, user, account, password" />
++    <meta content="robots" value="index,nofollow" />
++    <link rel="stylesheet" type="text/css" href="/static/style/yui/reset-fonts-grids.css">
++    <link rel="stylesheet" type="text/css" href="/static/style/yui/base-min.css">
++    <link rel="stylesheet" type="text/css" href="/static/style/ttsite.css" />
++</head>
++<body>
+ [% content %]
+- </body>
+-</html>
++</body>
++</html>
+\ No newline at end of file
+
+Modified: identity/CatDap/trunk/root/template/layout
+===================================================================
+--- identity/CatDap/trunk/root/template/layout	2010-11-26 00:16:08 UTC (rev 158)
++++ identity/CatDap/trunk/root/template/layout	2010-11-26 16:42:58 UTC (rev 159)
+@@ -1,40 +1,37 @@
+-<!-- BEGIN template/header -->
+-<div id="header">[% PROCESS template/header %]</div>
+-<!-- END template/header -->
+-
+-<div id="outerColumnContainer">
+-      <div id="leftColumn">
+-        <div class="inside">
+-          <div class="vnav">
+-            <ul>
++<div id="doc" class="yui-t7">
++    <div id="hd" role="banner">
++    [% PROCESS template/header %]
++    </div>
++    <div id="bd" role="main">
++        <div class="yui-g">
++            <ul id="nav">
+             [% FOREACH subpage IN subpages %]
+-              <li><a href="[% c.uri_for(subpage.page) %]">[% l(subpage.title) %]</a></li>
++                <li><a href="[% c.uri_for(subpage.page) %]">[% l(subpage.title) %]</a></li>
+             [% END %]
+             </ul>
+-          </div>
+-        </div>
+-      </div>
+ 
+-  <div id="innerColumnContainer">
+-    <!-- div id="SOWrap" -->
+-      <div id="middleColumn">
+-        <div class="inside">
+-          [% IF errors %]
+-          <span class="error">
+-            [% FOREACH error IN errors %]
+-              [% error %]<br/>
++            <div class="inside">
++            [% IF errors %]
++                <span class="error">
++                [% FOREACH error IN errors %]
++                    [% error %]
++                    <br/>
++                [% END %]
++                </span>
+             [% END %]
+-          </span>
+-          [% END %]
+-          <div id="content">
+-            [% content %]
+-          </div>
++            </div>
++            <div id="content">[% content %]</div>
+         </div>
+-        <div class="clear"></div>
++        <div class="yui-g">
++            <div class="yui-u first">
++            <!-- YOUR DATA GOES HERE -->
++            </div>
++            <div class="yui-u">
++            <!-- YOUR DATA GOES HERE -->
++            </div>
+         </div>
+-        <div class="clear"></div>
+-      </div>
+-    <!-- /div  -->
+-  </div>
++    </div>
++    <div id="ft" role="contentinfo">
++    [% PROCESS template/footer %]
++    </div>
+ </div>
+-<!-- div id="footer">[% PROCESS template/footer %]</div -->
+
+Deleted: identity/CatDap/trunk/root/ttsite.css
+===================================================================
+--- identity/CatDap/trunk/root/ttsite.css	2010-11-26 00:16:08 UTC (rev 158)
++++ identity/CatDap/trunk/root/ttsite.css	2010-11-26 16:42:58 UTC (rev 159)
+@@ -1,254 +0,0 @@
+-
+-html {
+-    height: 100%;
+-    margin: 0;
+-}
+-
+-body { 
+-    /*background-color: #ccc;*/
+-    color: #000;
+-    margin: 0;
+-    padding: 0px;
+-    height: 100%;
+-}
+-
+-#header {
+-    background-color: #eee;
+-    border-bottom: 0px solid #fff;
+-}
+-
+-#footer {
+-    background-color: #ccc;
+-    text-align: center;
+-    /*border-top: 1px solid #000;*/
+-    position: absolute;
+-    /*top: 99%;*/
+-    float: bottom;
+-    left: 0px;
+-    width: 100%;
+-    height: 1em;
+-    padding: 0px;
+-    padding-bottom: 2px;
+-    top: 100%;
+-}
+-
+-#content {
+-    padding: 10px;
+-    vertical-align: top;
+-}
+-
+-h1.title {
+-    padding: 4px;
+-    margin: 0px;
+-}
+-
+-.message {
+-    color: #000;
+-}
+-
+-.error {
+-    color: #f00;
+-}
+-
+-
+-/* Some stuff from skidoo_too.css */
+-#outerColumnContainer
+-{
+-	/* reserves space for the left and right columns. you can use either
+-	 * padding, margins, or borders, depending on your needs. however you
+-	 * can use the border method to create a background color for both left
+-	 * and right columns
+-	 */
+-	/*height: 98%;*/
+-	border-left: solid 12em #eee;
+-	border-right: solid 0em #eee;
+-	/*border-bottom: solid 1em #fff;*/
+-}
+-#innerColumnContainer
+-{
+-	border: solid 0px #000;
+-	border-width: 0 0px;
+-	margin: 0 -1px;		/* compensate for the borders because of
+-				   100% width declaration */
+-	width: 100%;
+-	/*height: 90%;*/
+-	/*z-index: 1;*/
+-    	background-color: #fff;
+-	float: right;
+-}
+-#leftColumn, #middleColumn, #rightColumn, * html #SOWrap
+-{
+-	overflow: visible;	/* fix for IE italics bug */
+-	position: relative;	/* fix some rendering issues */
+-}
+-#SOWrap
+-{
+-	float: left;
+-	margin: 0 -1px 0 0;
+-	width: 100%;
+-	/*z-index: 3;*/
+-}
+-#middleColumn
+-{
+-	float: right;
+-	margin: 0 0 0 -1px;
+-	width: 100%;
+-	/*z-index: 5;*/
+-}
+-#leftColumn
+-{
+-	float: left;
+-	margin: 0 1px 0 -12em;
+-	width: 12em;
+-	/*z-index: 4;*/
+-	height: 100%;
+-    	background-color: #eee;
+-}
+-#rightColumn
+-{
+-	float: right;
+-	width: 14em;
+-	margin: 0 -14em 0 1px;
+-	/*z-index: 2;*/
+-}
+-
+-/* vertical navigation stuff. mostly exactly as seen in the vnav.css styleheet
+- * in the original skidoo layout.
+- */
+-.vnav
+-{
+-	margin: 0em 0;
+-}
+-.vnav ul, .vnav ul li
+-{
+-	margin: 0;
+-	padding: 0;
+-	list-style-type: none;
+-	display: block;
+-}
+-.vnav ul
+-{
+-	border: solid 0px #fff;
+-	border-bottom-width: 0;
+-}
+-.vnav ul li
+-{
+-	border-bottom: solid 0px #fff;
+-}
+-.vnav ul li, .vnav ul li a
+-{
+-	margin: 0;
+-	display: block;
+-	padding: 0;
+-	line-height: normal;
+-}
+-.vnav ul li a
+-{
+-	display: block;
+-	padding: 2px 5px 3px 5px;
+-}
+-.vnav ul li a, .vnav ul li a:link, .vnav ul li a:visited, .vnav ul li a:active, .vnav ul li a:hover
+-{
+-	text-decoration: none;
+-	cursor: pointer;
+-	background-color: #eee;
+-	color: #000;
+-}
+-
+-.vnav ul li a:hover
+-{
+-	text-decoration: none;
+-	background-color: #ccc;
+-}
+-
+-
+-.vnav h3
+-{
+-	margin-bottom: 0;
+-	padding-bottom: 0;
+-	font-size: 126%;
+-}
+-* html .vnav ul li a/* hide from IE5.0/Win & IE5/Mac */
+-{
+-	height: 0.01%;
+-}
+-* html .vnav ul
+-{
+-	position: relative;	/* IE needs this to fix a rendering problem */
+-}
+-
+-/* horizontal navigation elements. create a DIV element with the class hnav
+- * and stick one unordered list inside it to generate a horizontal menu.
+- */
+-.hnav
+-{
+-	border-bottom: solid 0px #fff;
+-	text-align: center;
+-}
+-.hnav, .hnav ul li a
+-{
+-	/* need to middor veritcal padding on .hnav and child anchor elements
+-	 * because the anchors are _not_ block elements. since they are not
+-	 * block elements web browsers will not expand .hnav to contain them
+-	 * even with the extra padding. by applying the same padding to both
+-	 * the parent .hnav _looks_ like its containing the child anchor
+-	 * elements. 
+-	 */
+-	padding-top: 3px;
+-	padding-bottom: 4px;
+-}
+-.hnav ul, .hnav ul li
+-{
+-	display: inline;
+-	list-style-type: none;
+-	margin: 0;
+-	padding: 0;
+-}
+-.hnav ul li a
+-{
+-	margin: 0 -1px 0 0;
+-	padding-left: 10px;
+-	padding-right: 10px;	/* short-hand padding attribute would overwrite
+-				   top/bottom padding set in a previous rule */
+-	border-left: solid 0px #000;
+-	border-right: solid 0px #000;
+-	white-space: nowrap;
+-}
+-.hnav ul li a:link, .hnav ul li a:visited, .hnav ul li a:active, .hnav ul li a:hover
+-{
+-	text-decoration: none;
+-	color: #7f899a;
+-}
+-.hnav ul li a:hover
+-{
+-	text-decoration: none;
+-	background-color: #ccc;
+-}
+-.hnav ul li span.divider
+-{
+-	display: none;
+-}
+-* html .hnav ul li, * html .hnav ul li a
+-{
+-	width: 1%; /* IE/Mac needs this */
+-	display: inline-block;	/* IE/Mac needs this */
+-	/* \*/
+-		width: auto;
+-		display: inline;
+-	/* reset above hack */
+-}
+-* html .hnav, * html .hnav ul a
+-{
+-	/* \*/ height: 0.01%; /* hasLayout hack to fix render bugs in IE/Win. 
+-				 IE/Mac will ignore this rule. */
+-}
+-* html .HNAV
+-{
+-	padding: 0;	/* IE5/Win will resize #hnav to fit the heights of its
+-			   inline children that have vertical padding. So this
+-			   incorrect case selector hack will be applied only by
+-			   IE 5.x/Win */
+-}
+-
+-/* svn test */
+-
+
+Modified: identity/CatDap/trunk/root/user/firstlogin.tt
+===================================================================
+--- identity/CatDap/trunk/root/user/firstlogin.tt	2010-11-26 00:16:08 UTC (rev 158)
++++ identity/CatDap/trunk/root/user/firstlogin.tt	2010-11-26 16:42:58 UTC (rev 159)
+@@ -1,18 +1,16 @@
+-<html>
+-<form method=post>
+-<table border='0'>
+-<tr>
+-<td>[% l('New Password') %]</td>
+-<td><input name='newpassword1' type='password'></td>
+-</tr>
+-<tr>
+-<td>[% l('Repeat New Password') %]</td>
+-<td><input name='newpassword2' type='password'></td>
+-</tr>
+-<tr>
+-<td></td>
+-<td align=right><input type='submit' value='[% l('Change') %]'></td>
+-</tr>
+-</table>
++
++<form method="post" action="">
++
++    <p>
++        <label for="newpassword1_">[% l('New Password') %]</label>
++        <input id="newpassword1_" name="newpassword1" type="password" value="" />
++    </p>
++
++    <p>
++        <label for="newpassword2_">[% l('Repeat New Password') %]</label>
++        <input id="newpassword2_" name="newpassword2" type="password" value="" />
++    </p>
++
++    <p><input type="submit" value="[% l('Change') %]" /></p>
++    
+ </form>
+-</html>
+
+Modified: identity/CatDap/trunk/root/user/index.tt
+===================================================================
+--- identity/CatDap/trunk/root/user/index.tt	2010-11-26 00:16:08 UTC (rev 158)
++++ identity/CatDap/trunk/root/user/index.tt	2010-11-26 16:42:58 UTC (rev 159)
+@@ -1,32 +1,43 @@
+-<form method=post>
+-<table border=0>
+-<tr><th>Attribute</th><th>Value</th></tr>
+-[% FOREACH attr IN values %]
+-  <tr>
+-    <td>[% attr.name %]</td>
+-    <td>[% FOREACH val IN attr.values %][% IF attr.editable %]<input type=hidden name="[% attr.name %]_old" value="[% val %]"><input name="[% attr.name %]_new" value="[% val %]">[% ELSE %][% val %]<br/>[% END %]
+-[% IF attr.addable AND attr.editable %]<a href="/user/add/[% attr.name %]">[% l('Add') %]</a>[% END %]
+-[% IF attr.removable AND attr.editable %]<a href="/user/delete/[% attr.name %]/[% val %]">[% l('Delete') %]</a>[% END %]
+-    [% END %]</td>
+-  </tr>
+-[% END %]
+-<tr><td colspan=2 align=center><input type='Submit' value='[% l('Update') %]'></td></tr>
+-</table>
++<form method="post" action="">
++    <table border=0>
++        <tr><th>Attribute</th><th>Value</th></tr>
++        [% FOREACH attr IN values %]
++        <tr>
++            <td>[% attr.name %]</td>
++            <td>
++                [% FOREACH val IN attr.values %]
++                    [% IF attr.editable %]<input type=hidden name="[% attr.name %]_old" value="[% val %]">
++                        <input name="[% attr.name %]_new" value="[% val %]">
++                    [% ELSE %]
++                        [% val %]
++                        <br/>
++                    [% END %]
++                    [% IF attr.addable AND attr.editable %]
++                        <a href="/user/add/[% attr.name %]">[% l('Add') %]</a>
++                    [% END %]
++                    [% IF attr.removable AND attr.editable %]
++                        <a href="/user/delete/[% attr.name %]/[% val %]">[% l('Delete') %]</a>
++                    [% END %]
++                [% END %]
++            </td>
++        </tr>
++        [% END %]
++    </table>
++
++    <p><input type="Submit" value="[% l('Update') %]" /></p>
+ </form>
+ 
+-<form method=post action=/user/add>
+-<table>
+-<tr>
+-<td>
+- <select name='attribute'>[% FOREACH attr IN may %]
+-  <option value="[% attr %]">[% attr %]</option>[% END %]
+- </select>
+-</td>
+-<td><input name='value'>
+-</td>
+-<td>
+- <input type=submit value='[% l('Add') %]'>
+-</td>
+-</tr>
+-</table>
++<hr />
++
++<form method="post" action="/user/add">
++    <p>
++        <select name="attribute">
++        [% FOREACH attr IN may %]
++            <option value="[% attr %]">[% attr %]</option>
++        [% END %]
++
++        <input name="value" value="" />
++
++        <input type="submit" value="[% l('Add') %]" />
++    </p>
+ </form>
+
+Modified: identity/CatDap/trunk/root/user/password.tt
+===================================================================
+--- identity/CatDap/trunk/root/user/password.tt	2010-11-26 00:16:08 UTC (rev 158)
++++ identity/CatDap/trunk/root/user/password.tt	2010-11-26 16:42:58 UTC (rev 159)
+@@ -1,22 +1,21 @@
+-<html>
+-<form method=post>
+-<table border='0'>
+-<tr>
+-<td>[% l('Current password') %]</td>
+-<td><input name='password' type='password'></td>
+-</tr>
+-<tr>
+-<td>[% l('New Password') %]</td>
+-<td><input name='newpassword1' type='password'></td>
+-</tr>
+-<tr>
+-<td>[% l('Repeat New Password') %]</td>
+-<td><input name='newpassword2' type='password'></td>
+-</tr>
+-<tr>
+-<td></td>
+-<td align=right><input type='submit' value='[% l('Change') %]'></td>
+-</tr>
+-</table>
++
++<form method="post" action="">
++
++    <p>
++        <label for="password_">[% l('Current password') %]</label>
++        <input id="password_" name="password" type="password" value="" />
++    </p>
++
++    <p>
++        <label for="newpassword1_">[% l('New Password') %]</label>
++        <input id="newpassword1_" name="newpassword1" type="password" value="" />
++    </p>
++
++    <p>
++        <label for="newpassword2_">[% l('Repeat New Password') %]</label>
++        <input id="newpassword2_" name="newpassword2" type="password" value="" />
++    </p>
++
++    <p><input type="submit" value="[% l('Change') %]" /></p>
++
+ </form>
+-</html>
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101126/0e05740d/attachment-0001.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000975.html b/zarb-ml/mageia-sysadm/2010-November/000975.html new file mode 100644 index 000000000..0947981b4 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000975.html @@ -0,0 +1,130 @@ + + + + [Mageia-sysadm] [481] Fix the check on wget if server is down (thanks to rtp) + + + + + + + + + +

[Mageia-sysadm] [481] Fix the check on wget if server is down (thanks to rtp)

+ root at mageia.org + root at mageia.org +
+ Fri Nov 26 17:57:31 CET 2010 +

+
+ +
Revision: 481
+Author:   dams
+Date:     2010-11-26 17:57:31 +0100 (Fri, 26 Nov 2010)
+Log Message:
+-----------
+Fix the check on wget if server is down (thanks to rtp)
+
+Modified Paths:
+--------------
+    puppet/modules/blog/manifests/init.pp
+    puppet/modules/blog/templates/check_new-blog-post.sh
+
+Added Paths:
+-----------
+    puppet/modules/blog/templates/.htaccess
+
+Modified: puppet/modules/blog/manifests/init.pp
+===================================================================
+--- puppet/modules/blog/manifests/init.pp	2010-11-26 15:36:45 UTC (rev 480)
++++ puppet/modules/blog/manifests/init.pp	2010-11-26 16:57:31 UTC (rev 481)
+@@ -5,13 +5,13 @@
+         	ensure => installed
+     	}
+ 
+-        package { 'wget':
++        package { 'php-mysql':
+                 ensure => installed
+         }
+ 
+     include apache::mod_php
+ 
+-    	package { 'php-mysql':
++    	package { 'wget':
+         	ensure => installed
+     	}
+ 
+
+Added: puppet/modules/blog/templates/.htaccess
+===================================================================
+--- puppet/modules/blog/templates/.htaccess	                        (rev 0)
++++ puppet/modules/blog/templates/.htaccess	2010-11-26 16:57:31 UTC (rev 481)
+@@ -0,0 +1,10 @@
++# BEGIN WordPress
++<IfModule mod_rewrite.c>
++RewriteEngine On
++RewriteBase /
++RewriteCond %{REQUEST_FILENAME} !-f
++RewriteCond %{REQUEST_FILENAME} !-d
++RewriteRule . /index.php [L]
++</IfModule>
++
++# END WordPress
+
+Modified: puppet/modules/blog/templates/check_new-blog-post.sh
+===================================================================
+--- puppet/modules/blog/templates/check_new-blog-post.sh	2010-11-26 15:36:45 UTC (rev 480)
++++ puppet/modules/blog/templates/check_new-blog-post.sh	2010-11-26 16:57:31 UTC (rev 481)
+@@ -3,7 +3,7 @@
+ # Initialization
+ PATH_TO_FILE=${PATH_TO_FILE:-/var/lib/blog}
+ /usr/bin/wget -qO $PATH_TO_FILE"/RSS_new" http://blog.mageia.org/?feed=rss2
+-if [ -n $? ] 
++if [ $? -ne 0 ] 
+ then
+         exit 2
+ fi
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101126/eaf9e3ab/attachment.html>
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000976.html b/zarb-ml/mageia-sysadm/2010-November/000976.html new file mode 100644 index 000000000..bd4743a30 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000976.html @@ -0,0 +1,114 @@ + + + + [Mageia-sysadm] [481] Fix the check on wget if server is down (thanks to rtp) + + + + + + + + + +

[Mageia-sysadm] [481] Fix the check on wget if server is down (thanks to rtp)

+ Michael scherer + misc at zarb.org +
+ Fri Nov 26 19:38:15 CET 2010 +

+
+ +
On Fri, Nov 26, 2010 at 05:57:31PM +0100, root at mageia.org wrote:
+> Revision: 481
+> Author:   dams
+> Date:     2010-11-26 17:57:31 +0100 (Fri, 26 Nov 2010)
+> Log Message:
+> -----------
+> Fix the check on wget if server is down (thanks to rtp)
+> 
+> Modified Paths:
+> --------------
+>     puppet/modules/blog/manifests/init.pp
+>     puppet/modules/blog/templates/check_new-blog-post.sh
+> 
+> Added Paths:
+> -----------
+>     puppet/modules/blog/templates/.htaccess
+
+I suggest that we avoid committing hidden file for template, as they can
+be renamed afterward by puppet. There is no use to hide them in the repository.
+
+Morever, I also think we should avoid using .htaccess when we can directly change 
+apache config on the vhost, mainly for performance reasons as higlighted by apache
+documentation : http://httpd.apache.org/docs/trunk/howto/htaccess.html
+
+However, I suspect this is a wrong commit.
+( in which case, I would suggest to use http://www.vim.org/scripts/script.php?script_id=978 )
+
+> Modified: puppet/modules/blog/manifests/init.pp
+> ===================================================================
+> --- puppet/modules/blog/manifests/init.pp	2010-11-26 15:36:45 UTC (rev 480)
+> +++ puppet/modules/blog/manifests/init.pp	2010-11-26 16:57:31 UTC (rev 481)
+> @@ -5,13 +5,13 @@
+>          	ensure => installed
+>      	}
+>  
+> -        package { 'wget':
+> +        package { 'php-mysql':
+>                  ensure => installed
+>          }
+>  
+>      include apache::mod_php
+>  
+> -    	package { 'php-mysql':
+> +    	package { 'wget':
+>          	ensure => installed
+>      	}
+
+Seems like a gratuitous change that should not have been committed , or there is 
+something subtil I missed ( if this is a ordering problem, then the solution should
+be to use require, not to change the order )
+
+-- 
+Michael Scherer
+
+ + + + + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000977.html b/zarb-ml/mageia-sysadm/2010-November/000977.html new file mode 100644 index 000000000..36b5f2d81 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000977.html @@ -0,0 +1,87 @@ + + + + [Mageia-sysadm] [477] do snapshots of the custom bugzilla template + + + + + + + + + +

[Mageia-sysadm] [477] do snapshots of the custom bugzilla template

+ Michael scherer + misc at zarb.org +
+ Fri Nov 26 19:42:40 CET 2010 +

+
+ +
On Fri, Nov 26, 2010 at 04:03:12PM +0100, root at mageia.org wrote:
+> Revision: 477
+> Author:   dmorgan
+> Date:     2010-11-26 16:03:12 +0100 (Fri, 26 Nov 2010)
+> Log Message:
+> -----------
+> do snapshots of the custom bugzilla template
+> 
+> Modified Paths:
+> --------------
+>     puppet/modules/bugzilla/manifests/init.pp
+> 
+> Modified: puppet/modules/bugzilla/manifests/init.pp
+> ===================================================================
+> --- puppet/modules/bugzilla/manifests/init.pp	2010-11-26 12:48:53 UTC (rev 476)
+> +++ puppet/modules/bugzilla/manifests/init.pp	2010-11-26 15:03:12 UTC (rev 477)
+> @@ -1,5 +1,7 @@
+>  class bugzilla {
+>  
+> +   $bugzilla_location = "/usr/share/bugzilla/template/en/custom"
+> +
+
+IMHO, /usr is not really the good place for this, as it should be kept
+for the distribution :
+http://www.pathname.com/fhs/pub/fhs-2.3.html#PURPOSE18
+
+According to FHS, this would rather go to /var/. 
+
+-- 
+Michael Scherer
+
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000978.html b/zarb-ml/mageia-sysadm/2010-November/000978.html new file mode 100644 index 000000000..8f81b7c14 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000978.html @@ -0,0 +1,105 @@ + + + + [Mageia-sysadm] [480] Fix perms + + + + + + + + + +

[Mageia-sysadm] [480] Fix perms

+ Michael scherer + misc at zarb.org +
+ Fri Nov 26 19:54:27 CET 2010 +

+
+ +
On Fri, Nov 26, 2010 at 04:36:45PM +0100, root at mageia.org wrote:
+> Revision: 480
+> Author:   dmorgan
+> Date:     2010-11-26 16:36:45 +0100 (Fri, 26 Nov 2010)
+> Log Message:
+> -----------
+> Fix perms
+> 
+> Modified Paths:
+> --------------
+>     puppet/modules/bugzilla/manifests/init.pp
+> 
+> Modified: puppet/modules/bugzilla/manifests/init.pp
+> ===================================================================
+> --- puppet/modules/bugzilla/manifests/init.pp	2010-11-26 15:21:37 UTC (rev 479)
+> +++ puppet/modules/bugzilla/manifests/init.pp	2010-11-26 15:36:45 UTC (rev 480)
+> @@ -33,18 +33,17 @@
+>      apache::vhost_other_app { "bugs.$domain":
+>        vhost_file => "bugzilla/vhost_bugs.conf",
+>      }
+> +    subversion::snapshot { $bugzilla_location:
+> +      source => "svn://svn.mageia.org/svn/web/templates/bugzilla/trunk"
+> +    }
+>  
+>      file { "custom":
+>        path => "/usr/share/bugzilla/template/en/custom",
+
+I think you should reuse $bugzilla_location here too.
+
+>        ensure => directory,
+>        owner => root,
+>        group => apache,
+> -      mode => 700,
+> +      mode => 640,
+>        recurse => true,
+>        require => Subversion::Snapshot[$bugzilla_location]
+>      }
+> -
+> -    subversion::snapshot { $bugzilla_location:
+> -      source => "svn://svn.mageia.org/svn/web/templates/bugzilla/trunk"
+> -    }
+>  }
+
+There is also more changes than fixing perms.
+
+-- 
+Michael Scherer
+
+ + + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000979.html b/zarb-ml/mageia-sysadm/2010-November/000979.html new file mode 100644 index 000000000..230768691 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000979.html @@ -0,0 +1,93 @@ + + + + [Mageia-sysadm] [477] do snapshots of the custom bugzilla template + + + + + + + + + +

[Mageia-sysadm] [477] do snapshots of the custom bugzilla template

+ Dexter Morgan + dmorganec at gmail.com +
+ Fri Nov 26 20:42:32 CET 2010 +

+
+ +
On Fri, Nov 26, 2010 at 7:42 PM, Michael scherer <misc at zarb.org> wrote:
+> On Fri, Nov 26, 2010 at 04:03:12PM +0100, root at mageia.org wrote:
+>> Revision: 477
+>> Author:   dmorgan
+>> Date:     2010-11-26 16:03:12 +0100 (Fri, 26 Nov 2010)
+>> Log Message:
+>> -----------
+>> do snapshots of the custom bugzilla template
+>>
+>> Modified Paths:
+>> --------------
+>>     puppet/modules/bugzilla/manifests/init.pp
+>>
+>> Modified: puppet/modules/bugzilla/manifests/init.pp
+>> ===================================================================
+>> --- puppet/modules/bugzilla/manifests/init.pp 2010-11-26 12:48:53 UTC (rev 476)
+>> +++ puppet/modules/bugzilla/manifests/init.pp 2010-11-26 15:03:12 UTC (rev 477)
+>> @@ -1,5 +1,7 @@
+>>  class bugzilla {
+>>
+>> +   $bugzilla_location = "/usr/share/bugzilla/template/en/custom"
+>> +
+>
+> IMHO, /usr is not really the good place for this, as it should be kept
+> for the distribution :
+> http://www.pathname.com/fhs/pub/fhs-2.3.html#PURPOSE18
+>
+> According to FHS, this would rather go to /var/.
+>
+> --
+> Michael Scherer
+
+hi,
+
+the issue here is that bugzilla is directly installed here. you
+suggest we change the rpm ?
+should we wait for mageia to start or we do a custom rpm for now ?
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000980.html b/zarb-ml/mageia-sysadm/2010-November/000980.html new file mode 100644 index 000000000..636c07559 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000980.html @@ -0,0 +1,117 @@ + + + + [Mageia-sysadm] [477] do snapshots of the custom bugzilla template + + + + + + + + + +

[Mageia-sysadm] [477] do snapshots of the custom bugzilla template

+ Michael scherer + misc at zarb.org +
+ Fri Nov 26 22:00:41 CET 2010 +

+
+ +
On Fri, Nov 26, 2010 at 08:42:32PM +0100, Dexter Morgan wrote:
+> On Fri, Nov 26, 2010 at 7:42 PM, Michael scherer <misc at zarb.org> wrote:
+> > On Fri, Nov 26, 2010 at 04:03:12PM +0100, root at mageia.org wrote:
+> >> Revision: 477
+> >> Author:   dmorgan
+> >> Date:     2010-11-26 16:03:12 +0100 (Fri, 26 Nov 2010)
+> >> Log Message:
+> >> -----------
+> >> do snapshots of the custom bugzilla template
+> >>
+> >> Modified Paths:
+> >> --------------
+> >>     puppet/modules/bugzilla/manifests/init.pp
+> >>
+> >> Modified: puppet/modules/bugzilla/manifests/init.pp
+> >> ===================================================================
+> >> --- puppet/modules/bugzilla/manifests/init.pp 2010-11-26 12:48:53 UTC (rev 476)
+> >> +++ puppet/modules/bugzilla/manifests/init.pp 2010-11-26 15:03:12 UTC (rev 477)
+> >> @@ -1,5 +1,7 @@
+> >>  class bugzilla {
+> >>
+> >> +   $bugzilla_location = "/usr/share/bugzilla/template/en/custom"
+> >> +
+> >
+> > IMHO, /usr is not really the good place for this, as it should be kept
+> > for the distribution :
+> > http://www.pathname.com/fhs/pub/fhs-2.3.html#PURPOSE18
+> >
+> > According to FHS, this would rather go to /var/.
+> >
+> > --
+> > Michael Scherer
+> 
+> hi,
+> 
+> the issue here is that bugzilla is directly installed here. you
+> suggest we change the rpm ?
+
+I suggest to either use bugzilla facility to use any directory ( but a quick check
+of the code show that bugzilla do not support it, while this seems to be quite easy to do by adding
+some code to Bugzilla/Constants.pm ), or to use a extension ( which will then give a 
+/var/ directory as result to the call of template_dir ).
+
+Extensions seems safer to me, but that would still requires fiddling
+with /usr to add the extension. I am not sure it can be done by some 
+PERL5LIB magic. And the fact that no one even commented on this 
+3 years old bug report ( https://bugzilla.mozilla.org/show_bug.cgi?id=370447 )
+do let me much hope :/
+
+A third option would be to use PERL5LIB to shortcircuit Bugzilla::Constants.
+
+> should we wait for mageia to start or we do a custom rpm for now ?
+
+I think a extension can be done without touching to bugzilla rpm.
+
+But IMHO, bugzilla should be able to read template from a custom directory, 
+like transifex or any catalyst application ( ie, like everything we have 
+deployed so far except bugzilla ).
+
+-- 
+Michael Scherer 
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000981.html b/zarb-ml/mageia-sysadm/2010-November/000981.html new file mode 100644 index 000000000..c9d3e626c --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000981.html @@ -0,0 +1,115 @@ + + + + [Mageia-sysadm] [477] do snapshots of the custom bugzilla template + + + + + + + + + +

[Mageia-sysadm] [477] do snapshots of the custom bugzilla template

+ Michael scherer + misc at zarb.org +
+ Fri Nov 26 22:17:31 CET 2010 +

+
+ +
On Fri, Nov 26, 2010 at 10:00:41PM +0100, Michael scherer wrote:
+> On Fri, Nov 26, 2010 at 08:42:32PM +0100, Dexter Morgan wrote:
+> > On Fri, Nov 26, 2010 at 7:42 PM, Michael scherer <misc at zarb.org> wrote:
+> > > On Fri, Nov 26, 2010 at 04:03:12PM +0100, root at mageia.org wrote:
+> > >> Revision: 477
+> > >> Author:   dmorgan
+> > >> Date:     2010-11-26 16:03:12 +0100 (Fri, 26 Nov 2010)
+> > >> Log Message:
+> > >> -----------
+> > >> do snapshots of the custom bugzilla template
+> > >>
+> > >> Modified Paths:
+> > >> --------------
+> > >>     puppet/modules/bugzilla/manifests/init.pp
+> > >>
+> > >> Modified: puppet/modules/bugzilla/manifests/init.pp
+> > >> ===================================================================
+> > >> --- puppet/modules/bugzilla/manifests/init.pp 2010-11-26 12:48:53 UTC (rev 476)
+> > >> +++ puppet/modules/bugzilla/manifests/init.pp 2010-11-26 15:03:12 UTC (rev 477)
+> > >> @@ -1,5 +1,7 @@
+> > >>  class bugzilla {
+> > >>
+> > >> +   $bugzilla_location = "/usr/share/bugzilla/template/en/custom"
+> > >> +
+> > >
+> > > IMHO, /usr is not really the good place for this, as it should be kept
+> > > for the distribution :
+> > > http://www.pathname.com/fhs/pub/fhs-2.3.html#PURPOSE18
+> > >
+> > > According to FHS, this would rather go to /var/.
+> > >
+> > > --
+> > > Michael Scherer
+> > 
+> > hi,
+> > 
+> > the issue here is that bugzilla is directly installed here. you
+> > suggest we change the rpm ?
+> 
+> I suggest to either use bugzilla facility to use any directory ( but a quick check
+> of the code show that bugzilla do not support it, while this seems to be quite easy to do by adding
+> some code to Bugzilla/Constants.pm ), or to use a extension ( which will then give a 
+> /var/ directory as result to the call of template_dir ).
+> 
+> Extensions seems safer to me, but that would still requires fiddling
+> with /usr to add the extension. I am not sure it can be done by some 
+> PERL5LIB magic. And the fact that no one even commented on this 
+> 3 years old bug report ( https://bugzilla.mozilla.org/show_bug.cgi?id=370447 )
+> do let me much hope :/
+> 
+> A third option would be to use PERL5LIB to shortcircuit Bugzilla::Constants.
+> 
+Or a soft link + bug report at mdv, as I think this is the kind of fix that
+could be accepted by Guillaume ( bugzilla maintainer, iirc ), thus reducing 
+the need on our side to change the rpm
+( and so, reducing our work when upgrading, and when doing security update ).
+
+-- 
+Michael Scherer
+
+
+ + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000982.html b/zarb-ml/mageia-sysadm/2010-November/000982.html new file mode 100644 index 000000000..c39c95367 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000982.html @@ -0,0 +1,213 @@ + + + + [Mageia-sysadm] [160] style change to look more like current www.mageia.org + + + + + + + + + +

[Mageia-sysadm] [160] style change to look more like current www.mageia.org

+ root at mageia.org + root at mageia.org +
+ Sat Nov 27 19:34:46 CET 2010 +

+
+ +
Revision: 160
+Author:   obgr_seneca
+Date:     2010-11-27 19:34:46 +0100 (Sat, 27 Nov 2010)
+Log Message:
+-----------
+style change to look more like current www.mageia.org
+
+Modified Paths:
+--------------
+    identity/CatDap/trunk/root/index.tt
+    identity/CatDap/trunk/root/static/style/ttsite.css
+
+Modified: identity/CatDap/trunk/root/index.tt
+===================================================================
+--- identity/CatDap/trunk/root/index.tt	2010-11-26 16:42:58 UTC (rev 159)
++++ identity/CatDap/trunk/root/index.tt	2010-11-27 18:34:46 UTC (rev 160)
+@@ -1,21 +1,31 @@
+ <h1>[% l('Login') %]</h1>
+ 
++<div id="input_form">
+ <form method="post" action="/user">
+ 
+-    <p>
+-        <label for="username_">[% l('Username') %]</label>
+-        <input id="username_" type="text" name="username" value="[% c.user.username %]" />
+-    </p>
++    <table>
++		<tr><td>
++			<label for="username_">[% l('Username') %]</label>
++		</td><td>
++			<input id="username_" type="text" name="username" value="[% c.user.username %]" />
++    </td></tr>
+ 
+-    <p>
+-        <label for="password_">[% l('Password') %]</label>
+-        <input id="password_" type="password" name="password" />
+-    </p>
++		<tr><td>
++			<label for="password_">[% l('Password') %]</label>
++		</td><td>
++			<input id="password_" type="password" name="password" />
++		</td></tr>
+ 
+-    <p><input type="submit" value="[% l('Login') %]" />
+-        [% l('or') %] 
+-        <a href="/register">[% l('Register') %]</a></p>
+-        
+-    <p>@todo [% l('Forgotten password?') %]</p>
++		<tr><td colspan="2" style="text-align:center;">
++			<button type="submit" value="[% l('Login') %]" />[% l('Login') %]</button>&nbsp;&nbsp;
++			[% l('or') %]&nbsp;&nbsp;
++			<a href="/register">[% l('Register') %]</a>
++		</td></tr>
++			
++		<tr><td colspan="2">
++			@todo [% l('Forgotten password?') %]
++		</td></tr>
++	</table>
+ 
+ </form>
++</div>
+
+Modified: identity/CatDap/trunk/root/static/style/ttsite.css
+===================================================================
+--- identity/CatDap/trunk/root/static/style/ttsite.css	2010-11-26 16:42:58 UTC (rev 159)
++++ identity/CatDap/trunk/root/static/style/ttsite.css	2010-11-27 18:34:46 UTC (rev 160)
+@@ -1,16 +1,82 @@
++/*     begin changes obgr_seneca     */
+ html, body {
+-    background: #ccc;
++	background: #ddd;
+ }
+ 
+ #doc {
+-    -webkit-box-shadow: 0 0 10px #aaa;
+-    -moz-box-shadow: 0 0 10px #aaa;
+-    box-shadow: 0 0 10px #aaa;
+-    background: #fff; 
++    -webkit-box-shadow: 0 0 10px #444;
++    -moz-box-shadow: 0 0 10px #444;
++    box-shadow: 0 0 10px #444;
++    -webkit-border-radius: 10px;
++    -moz-border-radius: 10px;
++	border-radius: 10px;
++	margin-top: 20px;
+ }
+ 
+ #hd, #ft, #nav, #content, .inside { padding: 0 1em 0.5em 0; }
+ 
++#hd {
++    background: #aaa;
++	padding: 10px 20px 4px 20px;
++	text-align: center;
++    -webkit-border-radius: 10px 10px 0 0;
++    -moz-border-radius: 10px 10px 0 0;
++	border-radius: 10px 10px 0 0;
++}
++
++#bd {
++    background: #fff;
++	padding: 2px 20px 2px 20px;
++	text-align: center;
++}
++
++#bd h1 {
++	margin: 0.2em 0;
++}
++
++#ft {
++    background: #fff;
++	padding: 2px 20px 10px 20px;
++}
++
++#input_form {
++	text-align: center;
++	/*border: inset 1px;*/
++	padding: 10px;
++    -webkit-border-radius: 0.6em;
++    -moz-border-radius: 0.6em;
++}
++
++#input_form table {
++	border: 0px;
++	display: inline;
++	text-align: left;
++}
++
++#input_form td {
++	border: 0px;
++}
++
++#input_form input {
++	background: #fff;
++	border: inset 1px;
++}
++
++#input_form input:focus {
++	background: #ddf;
++}
++
++#input_form button {
++	background: #eef;
++    border: 2px outset #dde;
++    -webkit-border-radius: 0.4em;
++    -moz-border-radius: 0.4em;
++	border-radius: 0.4em;
++	padding: 4px;
++}
++
++/*     End changes obgr_seneca     */
++
+ .message {
+     color: #000;
+ }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101127/ba7bb610/attachment.html>
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000983.html b/zarb-ml/mageia-sysadm/2010-November/000983.html new file mode 100644 index 000000000..669edcbdc --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000983.html @@ -0,0 +1,137 @@ + + + + [Mageia-sysadm] [161] new style for user/index + + + + + + + + + +

[Mageia-sysadm] [161] new style for user/index

+ root at mageia.org + root at mageia.org +
+ Sat Nov 27 20:43:58 CET 2010 +

+
+ +
Revision: 161
+Author:   obgr_seneca
+Date:     2010-11-27 20:43:58 +0100 (Sat, 27 Nov 2010)
+Log Message:
+-----------
+new style for user/index
+
+Modified Paths:
+--------------
+    identity/CatDap/trunk/root/static/style/ttsite.css
+    identity/CatDap/trunk/root/user/index.tt
+
+Modified: identity/CatDap/trunk/root/static/style/ttsite.css
+===================================================================
+--- identity/CatDap/trunk/root/static/style/ttsite.css	2010-11-27 18:34:46 UTC (rev 160)
++++ identity/CatDap/trunk/root/static/style/ttsite.css	2010-11-27 19:43:58 UTC (rev 161)
+@@ -57,6 +57,11 @@
+ 	border: 0px;
+ }
+ 
++#input_form th {
++	border: 0px;
++	text-align: left;
++}
++
+ #input_form input {
+ 	background: #fff;
+ 	border: inset 1px;
+
+Modified: identity/CatDap/trunk/root/user/index.tt
+===================================================================
+--- identity/CatDap/trunk/root/user/index.tt	2010-11-27 18:34:46 UTC (rev 160)
++++ identity/CatDap/trunk/root/user/index.tt	2010-11-27 19:43:58 UTC (rev 161)
+@@ -1,6 +1,7 @@
++<div id="input_form">
+ <form method="post" action="">
+     <table border=0>
+-        <tr><th>Attribute</th><th>Value</th></tr>
++        <tr><th>Attribute</th><th>Value</th><th></th></tr>
+         [% FOREACH attr IN values %]
+         <tr>
+             <td>[% attr.name %]</td>
+@@ -12,19 +13,22 @@
+                         [% val %]
+                         <br/>
+                     [% END %]
++			</td>
++			<td>
+                     [% IF attr.addable AND attr.editable %]
+-                        <a href="/user/add/[% attr.name %]">[% l('Add') %]</a>
++						<button type="button" onclick="location='/user/add/[% attr.name %]'">[% l('Add') %]</button>
+                     [% END %]
+                     [% IF attr.removable AND attr.editable %]
+-                        <a href="/user/delete/[% attr.name %]/[% val %]">[% l('Delete') %]</a>
++                        <button type="button" onclick="location='/user/delete/[% attr.name %]/[% val %]'">[% l('Delete') %]</button>
+                     [% END %]
+                 [% END %]
+             </td>
+         </tr>
+         [% END %]
++		<tr>
++			<td colspan="3" style="text-align:center;"><button type="Submit" value="[% l('Update') %]">[% l('Update') %]</button></td>
++		</tr>
+     </table>
+-
+-    <p><input type="Submit" value="[% l('Update') %]" /></p>
+ </form>
+ 
+ <hr />
+@@ -38,6 +42,7 @@
+ 
+         <input name="value" value="" />
+ 
+-        <input type="submit" value="[% l('Add') %]" />
++        <button type="submit" value="[% l('Add') %]">[% l('Add') %]</button>
+     </p>
+ </form>
++</div>
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101127/3fddd199/attachment.html>
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000984.html b/zarb-ml/mageia-sysadm/2010-November/000984.html new file mode 100644 index 000000000..0cd204807 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000984.html @@ -0,0 +1,82 @@ + + + + [Mageia-sysadm] [162] added missing </select> tag + + + + + + + + + +

[Mageia-sysadm] [162] added missing </select> tag

+ root at mageia.org + root at mageia.org +
+ Sat Nov 27 20:49:22 CET 2010 +

+
+ +
Revision: 162
+Author:   obgr_seneca
+Date:     2010-11-27 20:49:21 +0100 (Sat, 27 Nov 2010)
+Log Message:
+-----------
+added missing </select> tag
+
+Modified Paths:
+--------------
+    identity/CatDap/trunk/root/user/index.tt
+
+Modified: identity/CatDap/trunk/root/user/index.tt
+===================================================================
+--- identity/CatDap/trunk/root/user/index.tt	2010-11-27 19:43:58 UTC (rev 161)
++++ identity/CatDap/trunk/root/user/index.tt	2010-11-27 19:49:21 UTC (rev 162)
+@@ -39,6 +39,7 @@
+         [% FOREACH attr IN may %]
+             <option value="[% attr %]">[% attr %]</option>
+         [% END %]
++	</select>
+ 
+         <input name="value" value="" />
+ 
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101127/16d84d1a/attachment-0001.html>
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000985.html b/zarb-ml/mageia-sysadm/2010-November/000985.html new file mode 100644 index 000000000..ff0641b6d --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000985.html @@ -0,0 +1,58 @@ + + + + [Mageia-sysadm] Puppet Report for valstar.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for valstar.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Sat Nov 27 23:02:32 CET 2010 +

+
+ +
Sat Nov 27 23:02:32 +0100 2010 Puppet (err): Could not retrieve catalog from remote server: end of file reached
+Sat Nov 27 23:02:32 +0100 2010 Puppet (err): Could not retrieve catalog; skipping run
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000986.html b/zarb-ml/mageia-sysadm/2010-November/000986.html new file mode 100644 index 000000000..d9db1041a --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000986.html @@ -0,0 +1,65 @@ + + + + [Mageia-sysadm] lvn resize on valstar + + + + + + + + + +

[Mageia-sysadm] lvn resize on valstar

+ nicolas vigier + boklm at mars-attacks.org +
+ Tue Nov 30 15:49:28 CET 2010 +

+
+ +
Hello,
+
+I resized the partition on valstar used by svn to add 50GB.
+
+And I am now downloading a checkout of mandriva svn soft/ repository
+that we will use to do the cleaning.
+
+Nicolas
+
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000987.html b/zarb-ml/mageia-sysadm/2010-November/000987.html new file mode 100644 index 000000000..e09be3474 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000987.html @@ -0,0 +1,86 @@ + + + + [Mageia-sysadm] [482] - use ssl for epoll ( for security reason ) + + + + + + + + + +

[Mageia-sysadm] [482] - use ssl for epoll ( for security reason )

+ root at mageia.org + root at mageia.org +
+ Tue Nov 30 18:24:51 CET 2010 +

+
+ +
Revision: 482
+Author:   misc
+Date:     2010-11-30 18:24:51 +0100 (Tue, 30 Nov 2010)
+Log Message:
+-----------
+- use ssl for epoll ( for security reason )
+
+Modified Paths:
+--------------
+    puppet/modules/epoll/manifests/init.pp
+
+Modified: puppet/modules/epoll/manifests/init.pp
+===================================================================
+--- puppet/modules/epoll/manifests/init.pp	2010-11-26 16:57:31 UTC (rev 481)
++++ puppet/modules/epoll/manifests/init.pp	2010-11-30 17:24:51 UTC (rev 482)
+@@ -8,8 +8,11 @@
+     
+     apache::vhost_catalyst_app { $vhost:
+         script => "/usr/bin/epoll_fastcgi.pl", 
++        use_ssl => true, 
+         require => Package['Epoll']
+     }
++
++    apache::vhost_redirect_ssl { $vhost: }
+      
+     $password = extlookup("epoll_password",'x')
+  
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101130/006f404a/attachment.html>
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000988.html b/zarb-ml/mageia-sysadm/2010-November/000988.html new file mode 100644 index 000000000..543ad95ea --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000988.html @@ -0,0 +1,90 @@ + + + + [Mageia-sysadm] [483] split the declaration of openssl in a class so we can have multiple + + + + + + + + + +

[Mageia-sysadm] [483] split the declaration of openssl in a class so we can have multiple

+ root at mageia.org + root at mageia.org +
+ Tue Nov 30 20:21:43 CET 2010 +

+
+ +
Revision: 483
+Author:   misc
+Date:     2010-11-30 20:21:42 +0100 (Tue, 30 Nov 2010)
+Log Message:
+-----------
+split the declaration of openssl in a class so we can have multiple
+declaration of self_signed_certificate
+
+Modified Paths:
+--------------
+    puppet/modules/openssl/manifests/init.pp
+
+Modified: puppet/modules/openssl/manifests/init.pp
+===================================================================
+--- puppet/modules/openssl/manifests/init.pp	2010-11-30 17:24:51 UTC (rev 482)
++++ puppet/modules/openssl/manifests/init.pp	2010-11-30 19:21:42 UTC (rev 483)
+@@ -1,8 +1,13 @@
+ class openssl {
+-	define self_signed_cert($directory = '/etc/certs') {
++    class base {
+         package { 'openssl':
+             ensure => installed
+         }
++    } 
++
++	define self_signed_cert($directory = '/etc/certs') {
++        include openssl::base
++        
+         $pem_file = "$name.pem"
+ 	    exec { "openssl req -x509 -nodes -days 365 -newkey rsa:2048 -keyout $pem_file -out $pem_file -subj  '/CN=$name.$domain'":
+             cwd => "$directory",
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101130/167e3f37/attachment.html>
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000989.html b/zarb-ml/mageia-sysadm/2010-November/000989.html new file mode 100644 index 000000000..7e83431bf --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000989.html @@ -0,0 +1,84 @@ + + + + [Mageia-sysadm] [484] add requires so the exec do not fail with command not found + + + + + + + + + +

[Mageia-sysadm] [484] add requires so the exec do not fail with command not found

+ root at mageia.org + root at mageia.org +
+ Tue Nov 30 20:21:44 CET 2010 +

+
+ +
Revision: 484
+Author:   misc
+Date:     2010-11-30 20:21:44 +0100 (Tue, 30 Nov 2010)
+Log Message:
+-----------
+add requires so the exec do not fail with command not found
+
+Modified Paths:
+--------------
+    puppet/modules/openssl/manifests/init.pp
+
+Modified: puppet/modules/openssl/manifests/init.pp
+===================================================================
+--- puppet/modules/openssl/manifests/init.pp	2010-11-30 19:21:42 UTC (rev 483)
++++ puppet/modules/openssl/manifests/init.pp	2010-11-30 19:21:44 UTC (rev 484)
+@@ -11,7 +11,8 @@
+         $pem_file = "$name.pem"
+ 	    exec { "openssl req -x509 -nodes -days 365 -newkey rsa:2048 -keyout $pem_file -out $pem_file -subj  '/CN=$name.$domain'":
+             cwd => "$directory",
+-            creates => "$directory/$name.pem"
++            creates => "$directory/$name.pem",
++            require => Package['openssl']
+         }
+ 	}
+ }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101130/ba73bbf7/attachment-0001.html>
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000990.html b/zarb-ml/mageia-sysadm/2010-November/000990.html new file mode 100644 index 000000000..4cf6f43d0 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000990.html @@ -0,0 +1,83 @@ + + + + [Mageia-sysadm] [485] - do not automatically add the domain name when creating a certificate + + + + + + + + + +

[Mageia-sysadm] [485] - do not automatically add the domain name when creating a certificate

+ root at mageia.org + root at mageia.org +
+ Tue Nov 30 20:21:45 CET 2010 +

+
+ +
Revision: 485
+Author:   misc
+Date:     2010-11-30 20:21:45 +0100 (Tue, 30 Nov 2010)
+Log Message:
+-----------
+- do not automatically add the domain name when creating a certificate
+
+Modified Paths:
+--------------
+    puppet/modules/openssl/manifests/init.pp
+
+Modified: puppet/modules/openssl/manifests/init.pp
+===================================================================
+--- puppet/modules/openssl/manifests/init.pp	2010-11-30 19:21:44 UTC (rev 484)
++++ puppet/modules/openssl/manifests/init.pp	2010-11-30 19:21:45 UTC (rev 485)
+@@ -9,7 +9,7 @@
+         include openssl::base
+         
+         $pem_file = "$name.pem"
+-	    exec { "openssl req -x509 -nodes -days 365 -newkey rsa:2048 -keyout $pem_file -out $pem_file -subj  '/CN=$name.$domain'":
++	    exec { "openssl req -x509 -nodes -days 365 -newkey rsa:2048 -keyout $pem_file -out $pem_file -subj  '/CN=$name'":
+             cwd => "$directory",
+             creates => "$directory/$name.pem",
+             require => Package['openssl']
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101130/3d5c4b1f/attachment-0001.html>
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000991.html b/zarb-ml/mageia-sysadm/2010-November/000991.html new file mode 100644 index 000000000..0554c0774 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000991.html @@ -0,0 +1,84 @@ + + + + [Mageia-sysadm] [486] since the domain name is not added automatically by openssl module, add + + + + + + + + + +

[Mageia-sysadm] [486] since the domain name is not added automatically by openssl module, add

+ root at mageia.org + root at mageia.org +
+ Tue Nov 30 20:21:46 CET 2010 +

+
+ +
Revision: 486
+Author:   misc
+Date:     2010-11-30 20:21:46 +0100 (Tue, 30 Nov 2010)
+Log Message:
+-----------
+since the domain name is not added automatically by openssl module, add
+it here
+
+Modified Paths:
+--------------
+    puppet/modules/openldap/manifests/init.pp
+
+Modified: puppet/modules/openldap/manifests/init.pp
+===================================================================
+--- puppet/modules/openldap/manifests/init.pp	2010-11-30 19:21:45 UTC (rev 485)
++++ puppet/modules/openldap/manifests/init.pp	2010-11-30 19:21:46 UTC (rev 486)
+@@ -17,7 +17,7 @@
+             mode => 755,
+         }
+ 
+-        openssl::self_signed_cert{ 'ldap':
++        openssl::self_signed_cert{ "ldap.$domain":
+             directory => "/etc/ssl/openldap/"
+         }
+     }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101130/3ad84f9b/attachment-0001.html>
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000992.html b/zarb-ml/mageia-sysadm/2010-November/000992.html new file mode 100644 index 000000000..e8672ce0d --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000992.html @@ -0,0 +1,85 @@ + + + + [Mageia-sysadm] [487] add the directory that will hold ssl certs + + + + + + + + + +

[Mageia-sysadm] [487] add the directory that will hold ssl certs

+ root at mageia.org + root at mageia.org +
+ Tue Nov 30 20:21:47 CET 2010 +

+
+ +
Revision: 487
+Author:   misc
+Date:     2010-11-30 20:21:47 +0100 (Tue, 30 Nov 2010)
+Log Message:
+-----------
+add the directory that will hold ssl certs
+
+Modified Paths:
+--------------
+    puppet/modules/apache/manifests/init.pp
+
+Modified: puppet/modules/apache/manifests/init.pp
+===================================================================
+--- puppet/modules/apache/manifests/init.pp	2010-11-30 19:21:46 UTC (rev 486)
++++ puppet/modules/apache/manifests/init.pp	2010-11-30 19:21:47 UTC (rev 487)
+@@ -59,6 +59,10 @@
+     }
+ 
+     class mod_ssl inherits base {
++        file { "/etc/ssl/apache/":
++            ensure => directory
++        }
++
+         package { "apache-mod_ssl":
+             ensure => installed
+         }
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101130/f6c4a83b/attachment.html>
+
+ + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000993.html b/zarb-ml/mageia-sysadm/2010-November/000993.html new file mode 100644 index 000000000..4a09b1eab --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000993.html @@ -0,0 +1,92 @@ + + + + [Mageia-sysadm] [488] enable SNI and use one certificate per vhost for catalyst application + + + + + + + + + +

[Mageia-sysadm] [488] enable SNI and use one certificate per vhost for catalyst application

+ root at mageia.org + root at mageia.org +
+ Tue Nov 30 20:21:48 CET 2010 +

+
+ +
Revision: 488
+Author:   misc
+Date:     2010-11-30 20:21:48 +0100 (Tue, 30 Nov 2010)
+Log Message:
+-----------
+enable SNI and use one certificate per vhost for catalyst application
+
+Modified Paths:
+--------------
+    puppet/modules/apache/templates/vhost_catalyst_app.conf
+
+Modified: puppet/modules/apache/templates/vhost_catalyst_app.conf
+===================================================================
+--- puppet/modules/apache/templates/vhost_catalyst_app.conf	2010-11-30 19:21:47 UTC (rev 487)
++++ puppet/modules/apache/templates/vhost_catalyst_app.conf	2010-11-30 19:21:48 UTC (rev 488)
+@@ -8,14 +8,12 @@
+ <VirtualHost *:<%= port %>>
+ <% if use_ssl then %>
+         SSLEngine on
+-        #TODO deploy SNI later 
+-        SSLCertificateFile /etc/ssl/apache/apache.pem
+-        SSLCertificateKeyFile /etc/ssl/apache/apache.pem
++        SSLCertificateFile /etc/ssl/apache/<%= name %>.pem
++        SSLCertificateKeyFile /etc/ssl/apache/<%= name %>.pem
+ <% end %>
+         ServerName <%= name %>
+         # Serve static content directly
+         DocumentRoot  /dev/null
+-# header 
+ 
+ <% if location then %>
+         Alias /static <%= location %>/root/static
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101130/d0062c3a/attachment.html>
+
+ + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000994.html b/zarb-ml/mageia-sysadm/2010-November/000994.html new file mode 100644 index 000000000..83ff560ff --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000994.html @@ -0,0 +1,85 @@ + + + + [Mageia-sysadm] [490] fix the template, this cause the epoll installation on alamut to not + + + + + + + + + +

[Mageia-sysadm] [490] fix the template, this cause the epoll installation on alamut to not

+ root at mageia.org + root at mageia.org +
+ Tue Nov 30 20:21:51 CET 2010 +

+
+ +
Revision: 490
+Author:   misc
+Date:     2010-11-30 20:21:50 +0100 (Tue, 30 Nov 2010)
+Log Message:
+-----------
+fix the template, this cause the epoll installation on alamut to not
+have css :/
+
+Modified Paths:
+--------------
+    puppet/modules/apache/templates/vhost_catalyst_app.conf
+
+Modified: puppet/modules/apache/templates/vhost_catalyst_app.conf
+===================================================================
+--- puppet/modules/apache/templates/vhost_catalyst_app.conf	2010-11-30 19:21:49 UTC (rev 489)
++++ puppet/modules/apache/templates/vhost_catalyst_app.conf	2010-11-30 19:21:50 UTC (rev 490)
+@@ -15,7 +15,7 @@
+         # Serve static content directly
+         DocumentRoot  /dev/null
+ 
+-<% if location then %>
++<% if location != '' then %>
+         Alias /static <%= location %>/root/static
+ <% end %>
+         Alias / <%= script %>/
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101130/bd51f64f/attachment.html>
+
+ + + + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000995.html b/zarb-ml/mageia-sysadm/2010-November/000995.html new file mode 100644 index 000000000..d5dddc9ae --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000995.html @@ -0,0 +1,87 @@ + + + + [Mageia-sysadm] [489] - create the certificate ( self signed ) when ssl is enabled + + + + + + + + + +

[Mageia-sysadm] [489] - create the certificate ( self signed ) when ssl is enabled

+ root at mageia.org + root at mageia.org +
+ Tue Nov 30 20:21:50 CET 2010 +

+
+ +
Revision: 489
+Author:   misc
+Date:     2010-11-30 20:21:49 +0100 (Tue, 30 Nov 2010)
+Log Message:
+-----------
+- create the certificate ( self signed ) when ssl is enabled
+
+Modified Paths:
+--------------
+    puppet/modules/apache/manifests/init.pp
+
+Modified: puppet/modules/apache/manifests/init.pp
+===================================================================
+--- puppet/modules/apache/manifests/init.pp	2010-11-30 19:21:48 UTC (rev 488)
++++ puppet/modules/apache/manifests/init.pp	2010-11-30 19:21:49 UTC (rev 489)
+@@ -97,6 +97,13 @@
+ 
+         include apache::mod_fastcgi 
+ 
++        if $use_ssl {
++            include apache::mod_ssl
++            openssl::self_signed_cert{ "$name":
++                directory => "/etc/ssl/apache/"
++            }
++        }
++
+         file { "$name.conf":
+             path => "/etc/httpd/conf/vhosts.d/$name.conf",
+             ensure => "present",
+-------------- next part --------------
+An HTML attachment was scrubbed...
+URL: </pipermail/mageia-sysadm/attachments/20101130/ae665815/attachment.html>
+
+ + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/000996.html b/zarb-ml/mageia-sysadm/2010-November/000996.html new file mode 100644 index 000000000..05cdc73e9 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/000996.html @@ -0,0 +1,54 @@ + + + + [Mageia-sysadm] Puppet Report for alamut.mageia.org + + + + + + + + + +

[Mageia-sysadm] Puppet Report for alamut.mageia.org

+ report at valstar.mageia.org + report at valstar.mageia.org +
+ Tue Nov 30 20:25:26 CET 2010 +

+
+ +
Tue Nov 30 20:25:24 +0100 2010 /Stage[main]/Apache::Base/Service[httpd] (err): Failed to call refresh: Could not start Service[httpd]: Execution of '/sbin/service httpd start' returned 1:  at /etc/puppet/modules/apache/manifests/init.pp:13
+
+ + +
+

+ +
+More information about the Mageia-sysadm +mailing list
+ diff --git a/zarb-ml/mageia-sysadm/2010-November/author.html b/zarb-ml/mageia-sysadm/2010-November/author.html new file mode 100644 index 000000000..86e44f97b --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/author.html @@ -0,0 +1,4387 @@ + + + + The Mageia-sysadm November 2010 Archive by author + + + + + +

November 2010 Archives by author

+ +

Starting: Mon Nov 1 00:15:44 CET 2010
+ Ending: Tue Nov 30 20:25:26 CET 2010
+ Messages: 868

+

+

+ Last message date: + Tue Nov 30 20:25:26 CET 2010
+ Archived on: Tue Nov 30 20:25:30 CET 2010 +

+

+

+


+ This archive was generated by + Pipermail 0.09 (Mailman edition). + + + diff --git a/zarb-ml/mageia-sysadm/2010-November/date.html b/zarb-ml/mageia-sysadm/2010-November/date.html new file mode 100644 index 000000000..109bf229f --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/date.html @@ -0,0 +1,4387 @@ + + + + The Mageia-sysadm November 2010 Archive by date + + + + + +

November 2010 Archives by date

+ +

Starting: Mon Nov 1 00:15:44 CET 2010
+ Ending: Tue Nov 30 20:25:26 CET 2010
+ Messages: 868

+

+

+ Last message date: + Tue Nov 30 20:25:26 CET 2010
+ Archived on: Tue Nov 30 20:25:30 CET 2010 +

+

+

+


+ This archive was generated by + Pipermail 0.09 (Mailman edition). + + + diff --git a/zarb-ml/mageia-sysadm/2010-November/index.html b/zarb-ml/mageia-sysadm/2010-November/index.html new file mode 120000 index 000000000..db4b46f72 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/index.html @@ -0,0 +1 @@ +thread.html \ No newline at end of file diff --git a/zarb-ml/mageia-sysadm/2010-November/subject.html b/zarb-ml/mageia-sysadm/2010-November/subject.html new file mode 100644 index 000000000..461098dd2 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/subject.html @@ -0,0 +1,4387 @@ + + + + The Mageia-sysadm November 2010 Archive by subject + + + + + +

November 2010 Archives by subject

+ +

Starting: Mon Nov 1 00:15:44 CET 2010
+ Ending: Tue Nov 30 20:25:26 CET 2010
+ Messages: 868

+

+

+ Last message date: + Tue Nov 30 20:25:26 CET 2010
+ Archived on: Tue Nov 30 20:25:30 CET 2010 +

+

+

+


+ This archive was generated by + Pipermail 0.09 (Mailman edition). + + + diff --git a/zarb-ml/mageia-sysadm/2010-November/thread.html b/zarb-ml/mageia-sysadm/2010-November/thread.html new file mode 100644 index 000000000..5252bbd87 --- /dev/null +++ b/zarb-ml/mageia-sysadm/2010-November/thread.html @@ -0,0 +1,5497 @@ + + + + The Mageia-sysadm November 2010 Archive by thread + + + + + +

November 2010 Archives by thread

+ +

Starting: Mon Nov 1 00:15:44 CET 2010
+ Ending: Tue Nov 30 20:25:26 CET 2010
+ Messages: 868

+

+

+ Last message date: + Tue Nov 30 20:25:26 CET 2010
+ Archived on: Tue Nov 30 20:25:30 CET 2010 +

+

+

+


+ This archive was generated by + Pipermail 0.09 (Mailman edition). + + + -- cgit v1.2.1