libera/#devuan/ Friday, 2024-04-12

marbloodAnyone here use OpenSnitch? Was thinking of trying Devuan and am curious if it works on it.03:20
gnarfacemarblood: i've never tried it personally, but it's in the repo, so it probably works03:28
gnarfacethere's a live iso you can download to test without commitment03:28
marbloodFair enough, I'll give it a shot :)03:29
sfoxmy Devuan installation keeps using the mngt address despite net.ipv6.conf.all.use_tempaddr=2, net.ipv6.conf.eth0.use_tempaddr=2 and temporary addresses existing05:11
sfoxi don't know what else to try05:11
sfoxeverything i do and outgoing connections are still encoding the mac address05:11
sfoxi also set privext 2 in the networking configuration05:12
gnarfacesfox: you using NetworkManager? you might have to make some changes to its config too05:22
rwpfsmithred, Is there a refracta-nox boot image with an active serial port console? console=ttyS0,9600n806:46
sfoxgnarface: no i'm not using any network manager besides the one that comes with debian07:44
sfoxjust /etc/network/interfaces.d07:44
gnarfacesfox: i assume you already tried to ifdown then ifup the interface?07:48
sfoxno07:49
sfoxcan i do that without breaking stuff or losing connection?07:49
sfoxit's used like a mainframe with multiple users on different Xservers07:49
gnarfacesfox: well, you'll definitely lose the connection while its down...07:50
gnarfaceoh, also, try setting this too: net.ipv6.conf.default.use_tempaddr=207:50
sfoxthat's fine as long as it comes back up without manual intervention07:50
gnarfacewell in a fair world it will... TBH i can't guarantee it07:50
gnarfacewhat i'm seeing from here: https://tldp.org/HOWTO/Linux+IPv6-HOWTO/ch06s05.html07:50
gnarface... says that if it runs before eth0 is created, it won't work unless ...07:51
gnarface... net.ipv6.conf.default.use_tempaddr=2  is also set07:51
sfoxgnarface: i set net.ipv6.conf.default.use_tempaddr=2 and curl ifconfig.me is still reporting the mac07:51
gnarfaceyou'd still have to down/up the interfaces aiui07:51
sfoxthe weird thing is it was working then one night it stopped07:52
sfoxifdown eth0 && ifup eth0?07:52
gnarfacerace condition in the startup scripts perhaps? anyway, with "default" also set in addition to "all", instead of just "all" and "eth0" then in theory according to this it should work on boot and thereafter07:52
gnarfaceyea, ifdown eth0, then ifup eth007:53
gnarfaceif you actually use the "&&" you need to make sure ifdown doesn't so much as throw a warning07:53
gnarfacefull disclosure, i don't use ipv6 because it's not worth it for any of my use cases07:54
gnarfacei typically just disable it and create more NATs07:54
sfoxrace condition could explain it i guess07:54
sfoxgnarface: please stop doing that07:54
gnarfacelol07:54
sfoxthere aren't any more ipv4 addresses to go around07:55
sfoxand level of hacks i have to do just to remain compatible with legacy ip because people do what your doing is crazy07:55
gnarfacethere's plenty of designated private ipv4 addresses for my use, and in the private range it doesn't matter if anyone else is using them07:55
sfoxyour ruining end to end connectivity07:56
sfoxyour making everyone in your nat not able to participate in the net, only consume it07:56
sfoxthrough multiple layers of proxies and nat07:56
gnarfacethese are my private LANs; end-to-end connectivity would be a catastrophic failure in security07:56
sfoxthat's what a firewall is for07:56
sfoxnot nat07:56
gnarfaceoh, there's also firewalls, lol07:56
gnarfaceanyway, you probably can't fix this without at least briefly interrupting connectivity, but as long as nothing else is misconfigured i don't see why it wouldn't come back up07:58
gnarfacestill, if anything really important is using the connection you should probably wait until its finished07:59
sfoxwhat would be better then &&?07:59
gnarfacejust ifdown eth0 and wait07:59
sfoxi thought of ;; but that caues a race condition07:59
gnarfacemaybe run "ifconfig -a" in another terminal until you visually verify it's actually down08:00
sfoxif i just ifdown there's nothing to bring it back up08:00
sfoxi'll lose my connection08:00
gnarfaceright, you'd run "ifup eth0" manually when you were personally sure it was down08:00
gnarfaceOH, this is a remote server? that's a problem...08:00
gnarfacethat changes things, there's a real risk of locking yourself out08:00
sfoxyes08:02
gnarfaceyou might want to wait to talk to someone who has actually done this before, as i have not08:03
onefangIf there's some sort of IPMI remote console or something, you might be able to fiddle with it while the connection is down.  Also some connections tend to wait for the timeout before dropping, so you could drop and bring up a connection quickly, and some things will survive.08:08
onefangI've had unreliable Internet that drops out daily, and all my ssh connections survived.08:10
onefangNo guarantees though.08:12
sfoxi brought it back up08:21
sfoxit'd like to figure out a better way  to do this in the future08:21
gnarfaceif you set "default" and "all" instead of just "eth0" and "all" it's supposed to work right08:22
gnarfacethat's what tldp.org says anyway08:22
gnarfacei can't be sure nothing else is wrong though, you'll just have to test it08:23
* rrq tends to use: while sleep 1 ; do ifup eth0 && break ; ifdown -f eth0 ; done09:41
sfoxrrq: thanks21:59

Generated by irclog2html.py 2.17.0 by Marius Gedminas - find it at https://mg.pov.lt/irclog2html/!