Latest Server related questions

Score: 0
Mohamad Reza avatar
Can't create a pseudo network interface on Debian 11
lb flag

I have a KVM based Debian 11 (bullseye) VPS with internet access on eth0 network adapter. The public IP has been assigned by DHCP. The IPs and Routes are as what follows:

ifconfig and iptable BEFORE adding new interface

Note: Due to hide my server IP, the public IP is masked in the images.

Now, I created a dummy network interface named eth1 and assigned a private IP address (10.200.100.50):

modprobe dumm ...
Score: 0
Radu avatar
STUN-TURN: Access denied by service policy
no flag

Hi trying to configure conversations android app to make calls through ejabberd, when i debug using adb i get this error in the log returned: "Access denied by service policy". Looks like some permission issue on ejabberd allowing clients access to the built in stun/turn server. please help what i need to tweak.

Score: 0
Sam avatar
Unexpected ZFS async write performance at different queue depths
ms flag
Sam

For some reason, QD2 seems to be the best in terms of raw IOPS...

After seeing an interesting article comparing a couple different drives for SLOG usage, I got curious about the performance of my own system at different queue depths.

The system comprises an i9-13900K, 128GB DDR5-4800 system mem and two Samsung 980 PROs as single mirrored Vdev. The test is running FIO in the following config in a conta ...

Score: -1
Ярослав Рахматуллин avatar
What's the name of the component that allows a hot-swap power supply to slot-in and provides all the cables in a 1..4U server?

In contrast to consumer grade PSUs, server PSUs sometimes come without cables. From what I gather, these are usually of the redundant variety or so called "1+1" configuration. I wander if there is a generic name for the component inside the servers into which these PSUs slot into.

I have seen different types of connectors, both more modern ones (gold finger) that look like a PCIe connector and ol ...

Score: 0
Add Azure D drive (temporary storage) to a migrated VM
kh flag

Any VM created in Azure is given a D drive; a temporary storage drive attached to the hypervisor; which gives better performance than the data disks as it's closer to the VM's compute resources. This comes at the cost of the contents not being persisted should the VM be deallocated / move to different host.

When you use Azure Migrate to move a VM from a non-Azure solution (e.g. an on-premise vm ...

Score: 0
Saurav Gupta avatar
Getting 404 on a specific path /pricing with Apache server
bq flag

I've set up an Apache server on Ubuntu 20.04

The site loads fine when I load the home page first (https://leadzilla.ai) and after that when I click on the pricing button and it takes me to https://leadzilla.ai/pricing and the that page loads fine as well.

But when I go directly to https://leadzilla.ai/pricing in the browser, I get a 404

Here is what I have in /etc/apache2/sites-available/leadzilla.a ...

Score: 0
Vasily Romanov avatar
Can't do an in-place Update of an Azure cloud service (extended support) after a VIP swap - Public IP is in use (error)
ss flag

I have successfully performed a VIP swap on a pair of Azure cloud services (extended support) that had Reserved IP addresses (static, although I don't think it matters).

Now I can Update (by uploading a new package) neither of them, although it had worked like a charm before the swap. In fact, I can't even complete the deployment (update) configuration form because of an error displayed for the P ...

Score: 0
William Holland avatar
How can I redirect established connections with iptables?
cv flag

I am trying to create iptables rules to redirect all traffic destined for port 1986 to port 9 to provoke a “connection refused” using the following rule:

iptables -t nat -I PREROUTING -p tcp -m tcp --dport 1986 -j DNAT --to-destination :9

This works great for new connections, but the problem is that established connections seem to skip this rule and are not refused.

I have tried adding a NOTRACK

Score: 2
DanRan avatar
nmap vulnerability scan reports " smtps on port 465 ssl-dh-params" vulnerability, on Ubuntu 20.04 webserver. How to close the vulnerabilty?
mx flag

I am running an Ubuntu 20.04 LEMP (Linux, Nginx, MariaDb, PHP) email/web server. I am also doing some nmap vulnerability tests form my MacOS Client machine. On MacOS, I am using Oh My Zsh! with the nmap plugin enabled. To do some vulnerability tests on my Ubuntu Server from my MacOS client machine, I issued the command:

nmap_check_for_vulns my.server.ip.address

which is an alias command for

nmap  ...
Score: 0
b_maze avatar
error 550 when IMAP users send mail to outside
vc flag

in the newly installed exchange 2019 I'm facing a problem, employees that send mails to outside with IMAP are getting this error in their inbox:

Server error: '550 5.7.54 SMTP; Unable to relay recipient in non-accepted domain'

the receive connector is the default connector and the domain that users are created is different than the email domain, here is the log I found the log

the xxxx.com is the rea ...

Score: 1
rguttersohn avatar
What does "connect() failed (101: Network is unreachable) while resolving" in NGINX error log mean?
np flag

Earlier this week, we host a live virtual event on our organization's website that had higher-than-expected attendance. We had several complaints from users saying they either couldn't get into the event or couldn't click on links we were pushing in the chat because of 502 Gateway errors.

I am trying to determine what exactly went wrong to see if we need to move our AWS EC2 instance up a tier or  ...

Score: 0
DanRan avatar
nmap vuln script detects vulnerability "Apache byterange filter DoS http-vuln-cve2011-3192" in Ubuntu Webserver, but apache2 not installed on server
mx flag

I am running an Ubuntu 20.04 LEMP (Linux, Nginx, MariaDb, PHP) webserver. I am also doing some nmap vulnerability tests form my MacOS Client machine. On MacOS, I am using Oh My Zsh! with the nmap plugin enabled. To do some vulnerability tests on my Ubuntu Server from my MacOS client machine, I issued the command:

nmap_check_for_vulns my.server.ip.address

which is an alias command for

nmap --script=v ...
Score: 0
Christopher Slater-Walker avatar
Freeradius: use the users file to assign a group to a user and then use the group to allow the user to access only 1 SSID
ki flag

I'm trying to use Freeradius 3.0.20 on Ubuntu. I use the users file to authenticate wireless users and that's working just fine. (This is a home system, not at work).

For the moment I have a couple of new users for whom I have created a new SSID (Cisco aironet controller and access points).

I would like to allow the new users to connect ONLY to the new SSID.

So let's call the old SSID SSID1 and the new ...

Score: 0
Gojira avatar
1016 Error with subdomain on Cloudflare
cn flag

Summary: I've got a domain hosted with Cloudflare that works for the root, but not any subdomains. Instead, subdomains return a Cloudflare Error 1016 - Origin DNS Error.

Detail: I have several domains hosted with cloudflare. Most of them are simple and only have a root URL (e.g., acme.com). For these, there are only two DNS records (other than NS records):

An A record for "@" that points to an IP address, ...

Score: 0
windows.admin avatar
Black screen after promoting server to domain controller
kw flag

I have Windows Server 2022 in its latest version 21H2. I installed a Domain Name System server + Active Directory Domain Services on the server and promoted it to a domain controller.

After the automatic restart of the server, a black screen with a rotating wheel will appear and this state will remain forever.

The server is virtualized using the type-1 hypervisor Proxmox Virtual Environment. I use R ...

Score: 1
Felix Schneider avatar
Using fail2ban in a docker container to block incomming connections
mw flag

I am trying to use fail2ban in a docker-container to block incoming connections to my nextcloud (also running in a docker container). However I only can get fail2ban to change the iptables of its own container and not the one of the docker host.


My current setup looks like this:

docker-compose

  app:
    image: nextcloud:latest
    container_name: nextcloud_app
    restart: always
    ports:
     ...
Score: 0
Erikli avatar
After setting a forwarding (routing) I cannot download files from servers
ru flag

I have found these codes on www to create a proxy for a software:

sysctl net.ipv4.ip_forward=1
sysctl -w net.ipv4.ip_forward=1
iptables -t nat -A POSTROUTING -j MASQUERADE
iptables -t nat -A PREROUTING -p udp --dport 2442 -j DNAT --to-destination some.ip.address:some.port

The 2442 is the port that I use to connect the software. The some.ip.address:some.port is destination's ip address and port. After  ...

Score: 1
afriend avatar
clamav-daemon doesn't create /var/run/clamd.ctl
sh flag

I installed clamav-daemon on Debian 11 and when I try to start it, it doesn't create the LocalSocket /var/run/clamd.ctl.

LocalSocket in my /etc/clamav/clamd.conf:

LocalSocket /var/run/clamav/clamd.ctl

systemctl status clamav-daemon.service brings:

● clamav-daemon.service - Clam AntiVirus userspace daemon
     Loaded: loaded (/lib/systemd/system/clamav-daemon.service; enabled; vendor preset: enabled ...
Score: 0
Henry Thornton avatar
Windows 11, localhost / 127.0.0.1 port number changes on invocation
mz flag

I'm testing a fastapi http server on Windows 11 running on 127.0.0.1:8000. In another terminal, a request is sent to the server on 127.0.0.1:8000. The result is a Bad Request and the server says it happened on 127.0.0.1:50340. The port number changed from 8000 to 50340. Re-running the query again will change the port to a different number again. Details are in the outputs:

The Server output is:

INFO:  ...
Score: 0
Daniel avatar
How to set WinHTTP Proxy using a PAC File?
br flag

Is it possible to set the WinHTTP proxy using a PAC file? Currently, our org sets the following registry key to point to a PAC file... can this be used for WinHTTP as well? If so, what commands are needed?

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings]
"AutoConfigURL" = URL TO PAC FILE

Thanks in advance for the help.

Score: 0
ady8531 avatar
Migrate Zookeeper from VMs to kubernetes pods w/o downtime
cn flag

I'm trying to migrate a 3 node zookeeper ensemble from VMs to a kubernetes cluster without downtime.

I know there are a lot of blog posts and other articles on how to migrate zookeeper without downtime VMs to VMs to bare mettal to Vms etc. but couldn't find one which migrates w/o downtime to k8s.

This is the config on all zk nodes (zoo.cfg):

autopurge.purgeInterval=1
initLimit=10
syncLimit=5
autopurge ...
Score: 0
Vladimir avatar
Openwrt don't resolve hostnames to another Openwrt
cn flag

I have 2 Openwrt routers one is on front, another is on the back.

Back router's WAN connected to LAN of front router and have it's own subnet. Back router WAN DNS configured to a front router.

Front router has several local DNS records in hostnames, but it doesn't resolve them for a back router.

Windows computer connected to a front router directly resolves those hostnames no problem.

Why front router do  ...

Score: 0
OJFord avatar
Can EFS be mounted over AWS Client VPN, or only Site-to-Site?
cn flag

'Amazon EFS now supports AWS VPN', but that was published 23 October 2018; Client VPN was announced on 19 December that year, so 'AWS VPN' referred to what is in current docs usually called 'AWS Site-to-Site VPN'.

Can an EFS filesystem be mounted on a development machine, connected to a Client VPN endpoint?

Score: 0
xtixmo avatar
OpenSCAP Workbench customize Datastream Files
tg flag

When i try to tailoring this datastream file, i get following error:

Opened file '/Applications/scap-workbench.app/Contents/Resources/ssg/ssg-rhel7-ds.xml'.

Error while opening file.

There was a problem with ScanningSession! Failed to reload session. OpenSCAP error message: Could not extract scap_org.open-scap_cref_ssg-rhel7-xccdf-1.2.xml with all dependencies from datastream. [ds_sds_session.c:211]

Score: -2
artful avatar
Lineinfile sometimes doesn't replace lines
gb flag

I have nginx upstream with multiple backends. I use pre_tasks in playbook for disabling backends in the upstream config during deployment:

- name: Deploy
  hosts: '{{ list_hosts }}'
  serial: 4

  pre_tasks:

  - name: Disable hosts in nginx upstream
    replace:
      path: /etc/nginx/conf.d/upstream.conf
      regexp: '^        server {{ LAN }}:'
      line: '        #server {{ LAN }}:5001;'
    delegat ...
Score: 0
BraveAdmin avatar
Deploying VM from VM template on vmware vCenter with Ansible makes network unreachable
cn flag

OS: Oracle Linux 8.7 vCenter: 7.0.3 build 20051473 hypervisor: VMware ESXi, 7.0.3, 19193900 ansible-playbook [core 2.13.5] python version = 3.8.10 (default, Nov 14 2022, 12:59:47) [GCC 9.4.0] jinja version = 3.1.2 libyaml = True

I'm deploying a VM from a template using the following Ansible task:

- name: Create a new virtual machine {{ hostname }} on vCenter {{ vcenter_hostname }} from template {{ sou ...
Score: 0
pop avatar
Apache on OSX: "not running" and "already in use" for all processes?
de flag
pop

OS: macOS Mojave 10.14.6
HTTP Server: Apache 2.4.55

When trying to restart apache server, I get "Address already in use..." message. Hm, so there must be a process that listens to that port, right? With this line (from elsewhere) in Terminal to see what's up:

ps auxw | grep  httpd

it gives

_www              1317   0.0  0.1  4361716   7452   ??  S    12:39AM   0:00.10 /usr/sbin/httpd -D FOREGROUN ...
Score: 1
tholeb avatar
Subdomain redirection (proxy) not working (tried with Apache2 and Nginx)
mv flag

I'm using a raspberry pi with apache2 to manage my websites. I have multiple docker images running on different ports. I want to redirect (without url changes) scanner.raspberry.local to localhost:1234. To do so, I've followed these two posts :

In the end, I only have one virtualhost working (the first one). Here is my config :

# Home page : working properly
<VirtualHost *:80 ...
Score: 0
April Henig avatar
Will aws elb address change over time?
id flag

I have created a load balancer pointing at my api instances. I got an automatically generated url which looks something like this: xxx-xx-xxxxxxxxxx.us-east-2.elb.amazonaws.com I want to connect it to my own domain name via cname, but before doing this, I wanted to make sure that the url will always stay the same, unless I delete the lb of course. Thanks for the kind help.

Score: 0
Filisimus avatar
Is it possible to retrieve session values within the nginx config file?
ga flag

just a quick question. I have a php webapp that sets a session cookie with values for username, isAdmin, etc. Is there any way that I could extract that information in the nginx config file?

log_format custom ' "TEST: $cookie_PHPSESSID"';

This will give me the session ID of the cookie but I need its content and I cant find any way to retrieve it.

Using a permanent cookie would work but is a bad idea beca ...

The Stunning Power of Questions

Much of an executive’s workday is spent asking others for information—requesting status updates from a team leader, for example, or questioning a counterpart in a tense negotiation. Yet unlike professionals such as litigators, journalists, and doctors, who are taught how to ask questions as an essential part of their training, few executives think of questioning as a skill that can be honed—or consider how their own answers to questions could make conversations more productive.

That’s a missed opportunity. Questioning is a uniquely powerful tool for unlocking value in organizations: It spurs learning and the exchange of ideas, it fuels innovation and performance improvement, it builds rapport and trust among team members. And it can mitigate business risk by uncovering unforeseen pitfalls and hazards.

For some people, questioning comes easily. Their natural inquisitiveness, emotional intelligence, and ability to read people put the ideal question on the tip of their tongue. But most of us don’t ask enough questions, nor do we pose our inquiries in an optimal way.

The good news is that by asking questions, we naturally improve our emotional intelligence, which in turn makes us better questioners—a virtuous cycle. In this article, we draw on insights from behavioral science research to explore how the way we frame questions and choose to answer our counterparts can influence the outcome of conversations. We offer guidance for choosing the best type, tone, sequence, and framing of questions and for deciding what and how much information to share to reap the most benefit from our interactions, not just for ourselves but for our organizations.