Latest Server related questions

Score: 1
Zev avatar
ECS restarts due to health_check failure when multiple other requests are slow to return
de flag
Zev

We noticed that our ECS Fargate backend services restart due to a health check response timeout:

(service our-site-com-stack-BackendApiServiceStack...) (port 8000) is unhealthy in (target-group arn:aws:elasticloadbalancing:us-east-1:1234:targetgroup/dev-d-ABC-ABC123/ABC123) due to (reason Request timed out).

We are trying to figure out how to conduct a health_check on our application for ECS that won' ...

Score: 0
AKS avatar
Wrong OWNER USER on folder/file: docker run -v :/ not working for user defined in Dockerfile
in flag
AKS

Host OS: Red Hat Enterprise Linux Server release 7.9 (Maipo)

Guest OS i.e. a Docker container running: OpenSuse 15.2

Docker Version (on Host): Docker version 19.03.5, build 633a0ea

On host, when I git clone a repository "utilities_scripts" I have valid access for the user (due to umask).

  • I think the issue here is not permission related but WHY the USER defined in the Dockerfile is not getting set  ...
Score: 1
SELinux: two servers, identical configurations, but different contexts
cn flag

I've had my fair share of struggles with SELinux, but this is the first time that it's totally stumped me. I have two production CentOS 8 servers with functionally identical configurations hosting a web application. I have a custom type enforcement module, the relevant parts of which for this question are as follows:

module my_app 1.0;
type my_app_rw_content_t;
files_type(my_app_rw_content_t);
requ ...
Score: 1
George Shuklin avatar
proxy_pass to different URLs in nginx
cn flag

I want to create a reverse proxy under one location for two different upstreams. Upstreams are so different that they have different prefixes in URL, but the rest is the same.

Non-working configuration:

    upstream foo{
        server https://foo.example.com/foo;
        server https://bar.example.net/bar backup;
    ...
Score: 0
bumble_bee_tuna avatar
VMWare VSphere to AWS Backup with Hypervisor Plugin
eg flag

Following along with this documentation, got the virtual machine up and hypervisor registered in AWS Backup console but when the backup runs I get a permissions error. When I try to run a on demand job it only let me use predefined AWSBackup roles. The jobs fail almost instantly.

VSphere 6.7 storage is iScsi VMFS

Any ideas on how I can go about troubleshooting this, there's not a ton documentatio ...

Score: 0
naps1saps avatar
How do I get onsite DNS to communicate with Azure VNet DNS?
ne flag

We have an S2S and our DNS server in Azure can talk with the Azure VNET DNS, however our onsite DNS server cannot because of a routing issue I think.

What configuration do I need to change so that requests from our local DNS server forwarding to 168.63.129.16 go through our S2S connection to the Azure VNET? I already have the conditional forwarder added for core.windows.net.

We have a Meraki if you nee ...

Score: 0
Wesley avatar
After server restart, network.service is either failed or inactive CENTOS 7
it flag

This seems to happen alot (on this site), and I have tried the other remedies, to no avail. I will list the problem, then what I have tried.

I restarted the server a couple days ago, when it restarted SLURM didn't work and neither did the network.service. systemctl reset-failed fixed the slurmd error, but only changes the network.service from failed to inactive, both of which are not useful.

Here  ...

Score: 0
Iredmail web presentation + mod security
cn flag

Any one tried to implement iredmail with mod security? My English is also not so good, I hope you understand my reasons. Thanks for your help in advance.

I have installed iredmail + web presentation on nginx but i have problem with modsec rules. I used apache2 + mod sec before. I implemented custom rules like rbl or drop .php or .env request, for example. You can find my examples below, wich i us ...

Score: 1
QF0 avatar
email validation: is there any point doing both SPF *and* reverse DNS tests?
gu flag
QF0

For a receiving MTA, it seems to be unnecessary to check both the SPF record for an incoming SMTP connection, and to do an rDNS/PTR lookup.

Consider:

  1. Server gets SMTP connection from aaa.bbb.ccc.ddd, with (possibly spoofed) MAIL FROM claiming to be from mail.example.com
  2. Server looks up SPF record for mail.example.com, and finds that aaa.bbb.ccc.ddd either is or isn't authorised to send emails for th ...
Score: 0
Sébastien Beausoleil avatar
Ubuntu 20.04 setting up 2 network interface on 2 differents subnet (1 WAN and 1 LAN)
th flag

I got a vm (on proxmox) to which I passthrough 2 physical NIC.

  • ens16f0: LAN connected (which is behind a routeur connected to a different WAN)
  • ens16f1: WAN directly connected

Both work as they should if configured individually, but when I try to set up netplan to make both work as I want, I only got the ens16f1 working,inbound and outbound. If I ping WAN ips or WAN domain name, everything worked. ...

Score: 1
Apache httpd worker crash (IUS httpd24u on Centos 7)
in flag

I'm running the httpd24u package from IUS on two Centos 7 servers. The version identifier for the package is "2.4.52-1.el7.ius".

For the last week or so, we've been seeing intermittent broken HTTP responses from the servers. The browser reports "net::ERR_CONNECTION_CLOSED", and the server error log includes output like:

*** Error in `/usr/sbin/httpd': free(): invalid next size (fast): 0x00007fb39401 ...
Score: 0
jz22 avatar
Google Load Balancer SSL certificate only valid in browser
de flag

I have a Google HTTPS Load Balancer in front of a Cloud Run and a Google Storage bucket. I bought a wildcard SSL certificate for my domain from ZeroSSL and added it to the Load Balancer. The routing works fine and I can use everything as intended. If I open a URL in any browser, it confirms that the certificate is valid. However, if I send a request from insomnia with SSL validation enabled, I get the f ...

Score: 0
How do I update a very old CentOS release (6.2) where yum won't work at all because of outdated openssl certificates?
cn flag

I have an old CentOS 6.2 machine and need to update a few packages on it (or many packages, I suppose).

However I can't do anything with yum because even after changing the repos to vault.centos.org, yum spits out this error whenever attempting to download any packages:

[Errno 14] problem making ssl connection

The usual solutions to this error are "update openssl or certificate bundles" but of cou ...

The Stunning Power of Questions

Much of an executive’s workday is spent asking others for information—requesting status updates from a team leader, for example, or questioning a counterpart in a tense negotiation. Yet unlike professionals such as litigators, journalists, and doctors, who are taught how to ask questions as an essential part of their training, few executives think of questioning as a skill that can be honed—or consider how their own answers to questions could make conversations more productive.

That’s a missed opportunity. Questioning is a uniquely powerful tool for unlocking value in organizations: It spurs learning and the exchange of ideas, it fuels innovation and performance improvement, it builds rapport and trust among team members. And it can mitigate business risk by uncovering unforeseen pitfalls and hazards.

For some people, questioning comes easily. Their natural inquisitiveness, emotional intelligence, and ability to read people put the ideal question on the tip of their tongue. But most of us don’t ask enough questions, nor do we pose our inquiries in an optimal way.

The good news is that by asking questions, we naturally improve our emotional intelligence, which in turn makes us better questioners—a virtuous cycle. In this article, we draw on insights from behavioral science research to explore how the way we frame questions and choose to answer our counterparts can influence the outcome of conversations. We offer guidance for choosing the best type, tone, sequence, and framing of questions and for deciding what and how much information to share to reap the most benefit from our interactions, not just for ourselves but for our organizations.