Newest Questions

Q&A for system and network administrators

IPv6 LAN stops routing / responding during bootup (PFSense)

I recently set up an HE tunnel to add IPv6 support to my network. When the router boots "Starting Firewall" rolls by twice on the console. After the first time, I'm able to ping the router's LAN IPv6 ...

node.js https/www redirect to https non-www on nginx

I'm using nginx for my node.js app. I've used the Digitalocean tutorial to config the nginx and https use. Right now, the following works: http:// example.com -> https:// example.com example.com --> ...

How to create a qcow2 file that is not thin provisioned?

When I do the below then the qcow2 file is less than 200KB. # qemu-img create -f qcow2 /var/lib/libvirt/images/urb-dat0.qcow2 10G # du -hsc /var/lib/libvirt/images/urb-dat0.qcow2 196K /var/lib/...

Exim restrict one “from address” domain to to o​ne system user

I run a shared server for my clients' websites (ubuntu 16.04). I run exim to allow the websites to send out email. It also acts as a mail forwarder and smtp server for my cleints' email software (or ...

Graylog2 MapperParsingException on Exchange Logs

I am working on correcting the indexing errors I have been getting on my Graylog2 installation and it appears that they are coming from my Exchange extractor which takes incoming data in the form of a ...

Packet Captures saved in bin file format

Does anyone know of a tool to open a packet capture saved as a .bin file? That or how to convert it to pcap or something wireshark can open. I took a packet capture from a thin client and when I ...

Couchbase and sync_gateway on docker

I'm trying to set Couchbase and sync_gateway in docker containers, but I get some weird auth errors when sync_gateway tries to connect the database. This is my Dockerfile: FROM couchbase/server ...

Adjusting spare sectors on SATA drive?

As far as I know, hard drives usually have a number of spare sectors to which data is remapped/reallocated from faulty sectors. Is it possible to increase the number of these spare sectors (at the ...

Filter pcap by subsecond detail?

I'm trying to export a subset of a pcap file given a start and an end message, this start and end message identification is currently done using ngrep on the raw data(because we have no dissector for ...

systemd: Grant an unprivileged user permission to alter one specific service

I'm running a private game server on a headless linux box. Because I'm not an idiot, said server is running as its own unprivileged user with the bare minimum access rights it needs to download ...

Invalid DFS path takes a long time to fail

I have a lot of experience with DFS, but this behaviour has me stumped. I have a DFS namespace for user home directories. It's like this: \\domain\DfsHome BM --> \\BMServer\Users UK --&...

VMware customization specification for Linux CentOS server not prompting for gateway

So I created a customization specification in VMware 6.0.0 and configured it so that it prompts the user whan a vm is deployed from my CentOS 7 template. The ip address, subnet mask and hostname are ...

How SMTP relay process and relay an email to multiple recipients on different domains?

Given an email transaction to multiple recipients on two different domains bar1 and bar2: RCPT TO:a@bar1.com RCPT TO:b@bar1.com RCPT TO:c@bar2.com RCPT TO:d@bar2.com This email is sent to a relay. I ...

Let's Encrypt for hostname and related domain(s) is working, SSL not working for other domains on Directadmin server

I'd like to use Let's Encrypt certificates for my domains on a directadmin server... For the hostname is working and I'm able to visit the hostname and the directadmin control panel over SSL, the ...

openssl: unable to get local issuer certificate for accounts.google.com

I am getting unable to get local issuer certificate for accounts.google.com over SSL. I downloaded an update CA file from: https://curl.haxx.se/ca/cacert.pem and am using openssl s_client to render: ➜...

google-cloud storage bucket mounted to docker service

I am trying to achieve the following: I want to mount a google-storage bucket to my docker swarm workers locally as a file-system. All swarm-workers have the necessary access-rights to the google ...

How to move sessions from a disabled backend server to a live backend server in Haproxy?

A fragment from the rolling update script we use to deploy a new version of our webapp echo "Haproxy:Disabling www1" hactl disable server servers/www1 # Restart www1 restartServer www1 echo "...

Apache2 with LetEncrypt

I'm running into an odd redirect when trying to get a LetEncrypt SSL cert to work with my Apache2 server. Both 8080 and 443 ports are open and listening on the Apache2 server. I ran letsencrypt and ...

Letsencrypt client behind a reverse Nginx proxy

So the general setup is this: I have a server with a public Ip address (I will call this the frontend machine) that runs Nginx and serves a few webpages that are secured with Letsencrypt certificates....

MegaCli won't rebuild when set to hotspare

I recently inserted a new drive and marked it as Good. When I then set it to be a Hot Spare, it refuses to rebuild. [root]# MegaCli -PDList -aALL| grep Firm Firmware state: Online, Spun Up Firmware ...

Symantec.Cloud DOWN? [on hold]

Anyone seen issues with Symantec cloud services? are they all down? Can't access since this morning: https://hostedendpoint.spn.com

DHCP Server Listing Host as “BAD_ADDRESS” and not Registering DNS

Question Why is DHCP showing "BAD_ADDR", why does it think there is a Conflict, and why can't the host register its DNS name? Devices: DHCP Server = Server 2012 on bare metal. Also running DNS. ...

Are IPs assinged by APIPA static?

I have two virtual machines that are on the same network via VirtualBox. There is no DHCP server and their IPs are assinged by the APIPA automatically. I'm wondering are those IP static, in a way that ...

Synchronization over ssh with restricted access to the server file system

I want to synchronize (both directions) a certain folder between a server (S) and a local machine (L). On both S and L, I have the same system (Ubuntu) and a user jan, with sudo privileges (i.e. in ...

Know the state of a SQL Server job execution

I'm trying to launch a bunch of jobs from Ansible (using osql): - name: 'Starting jobs' win_shell: 'osql -S {{ server }} -Q "exec msdb.dbo.sp_start_job {{ item }}" -U {{ username }} -P {{ ...

Dell NX3230 Will Not Power On

We've been running a used Dell NX3230 for a couple of years now with no problems. Recently we had to do some maintenance in the rack it is in where we had to completely power down the whole rack. When ...

Listing all packages, but without addional text

In this time I am working of project, what tell you, what software you have installer and what you can install. In this time I have problem with this command: grep -hn Package: /var/lib/apt/lists/* . ...

EC2 AWS Instance not building bcrypt dependency

I'm posting this here as it's clearly a server configuration issue rather than a code issue. I've got an application working on my local Windows PC, however when trying to run: npm install bcrypt ...

Add Azure SQL Server in to Azure VNET

Is it possible to add Azure SQL Server into a Azure Virtual Network? Currently I see only a separate firewall for SQL server. But I want to maintain a single Network Security Group and have all my ...

Understanding exactly why the timestamp was not affected of ad objects

I made a script that takes data from an HR database and populates correlating attributes in AD e.g department, title, manager, location. Since people change titles, departements and/or locations on ...

How to forward https://example.com to AWS ELB

I have bought a domain example.com and am hosting it on AWS Elastic Beanstalk. To support HTTPS, I issued wildcard certificate from AWS certificate manager for *.example.com and assigned it to EB ...

mysql root password - where should it be stored?

Where is the best place to store the mysql root password? I had been putting it only in the root user's /root/.my.cnf file, which works fine for doing normal updates, backups, etc. However, the ...

554 5.7.1 You are not allowed to connect. Connection closed by foreign host

I just setup a new mail server using iredmail everything looks great checked the ip address using https://mxtoolbox.com/blacklists.aspx it's not listed in any blacklist and id checked the mail server ...

Gmail and other private servers mark legitimate email as SPAM

The mail server configuration is driving me crazy. Emails sent from my own private server are being banned, again by Gmail and other private servers. I checked gmail headers and SPF, DKIM and DMARC ...

hyperv private lan with other servers

I have a windows server with two NICs. The first is connected to an external network and works ok. The second is connected to LAN. The second NIC is assigned 192.168.200.10. Other servers in the LAN ...

nginx + apache2 proxy pass, with mod_perl not working

I'm trying to get mod_perl working on Apache/2.4.18 (Ubuntu). Here is my main domain config file in Apache2: <Virtualhost 0.0.0.0:8181> ServerName test DocumentRoot /srv/www/test.pro/...

Apache and PHP CPU usage on dedicated server

I have recently switched from a VPS to a dedicated server, with an i7-3770 and 16GB RAM. I would like to fine-tune Apache + PHP + MySQL to use my hardware efficiently, and would appreciate some ...

Server 2016 ADFS 3.0 and Azure AD update password url not working

I am trying to enable users to update their password. I have a Server 2016 with Active Directory and ADFS configured for SSO. SSO works fine and Active Directory is synced with Azure AD. We use ...

Local domain controller is .com not .local possible problems?

I am taking over a project and the local domain is domain.com they also have a website domain.com I have always used domain.local for AD and am wondering is that just best practice or is there a ...

iPhone Email Does Not Update After Active Directory Password Change

Scenario: End user is traveling. Uses a laptop, Windows 7 Professional in an active directory environment. Changed their AD Password via VPN. This worked just fine. Business Email is via Office365. ...

Azure Restore takes ages to restore a Server

I'm currently writing my Disater Recovery Plan, and tried to restore a whole server from Azure Backup (Approx 500Gb of data). I just leaved after two days as the restore was only 20Gb out of 500... ...

Server running at high CPU usage (100%)

I have a nginx server on a digital ocean droplet, with 2 CPU's and 4gb mem. I'm running a couple of minor WP-sites, without much traffic - but it seems like i can push the server to 100% CPU without ...

How do I determine the failed/removed HDD in mdadm raid?

My current mdstat: $ cat /proc/mdstat Personalities : [raid6] [raid5] [raid4] [linear] [multipath] [raid0] [raid1] [raid10] md0 : active raid6 sde[8] sdh[4] sdg[1] sdd[6] sdb[5] sdc[7] ...

Make CherryPy init.d script not return until fully launched?

I have a number of CentOS 6 init.d scripts I have written to launch Python CherryPy based web apps. The problem I am having is that when the script is executed, it starts the app and then immediately ...

why can I not log in to this server?

I am trying to log in to a centos 6.8 server and I have the ip address and correct password. It stored the private key in my known_hosts file, but then I forgot about. My colleague can login from his ...

How to recreate strange request seen in Tomcat7 access log

I'm occasionally seeing the following request in my Tomcat7 logs: 47.203.88.36 - - [31/Dec/1969:23:59:59 +0000] "-" 400 - Notice the bad timestamp and the missing type (GET/POST/PUT etc.) of HTTP ...

Migrating site using A record and avoiding naming conflict

A client has their new website hosted on our server, the new site however is under a different name to their domain name, as we hold developed sites on a subdomain. They want to load the new website ...

Why is shadowLastChange an unknown attr?

I'm trying to install slapd on Oracle Linux 7 and I'm following the Oracle® LinuxAdministrator's Guide for Release 7 section on Configuring an LDAP Server. When I get to step 7, importing the config ...

Nginx FCGI setup with regexp-based host

I'm trying to build a deploy server that would have wildcard host serving several directories (let's say i'm previewing master and dev branches of some project), but i keep failing to pass computed ...

URL is not accessible after disconnecting from Remote Desktop

When I am connected via RDP to a Windows Server 2012, I am able to access the URL from my local system which is hosted using IIS in the Server. But, if i disconnect from the Server, I am getting the ...
15 30 50 per page
Translating... 0%