public inbox for development@lists.ipfire.org
 help / color / mirror / Atom feed
* Re: Issues w/ .13 so far
       [not found] <5050D2AF.1070407@xunil.at>
@ 2012-09-17 19:58 ` Michael Tremer
  2012-09-17 20:00   ` Stefan G. Weichinger
  0 siblings, 1 reply; 13+ messages in thread
From: Michael Tremer @ 2012-09-17 19:58 UTC (permalink / raw)
  To: development

[-- Attachment #1: Type: text/plain, Size: 385 bytes --]

Sorry for the delay.

On Wed, 2012-09-12 at 20:21 +0200, Stefan G. Weichinger wrote:
> ps: regarding this mailing list:
> 
> Why do the headers of the mailing-list-mails not contain a "List-Id" ? I
> use that for server-based filtering with other lists. Very handy ...

I don't know. Does mailman support "List-Id"? RFC-2369 headers are
enabled, so I guess that will include List-Id.


^ permalink raw reply	[flat|nested] 13+ messages in thread

* Re: Issues w/ .13 so far
  2012-09-17 19:58 ` Issues w/ .13 so far Michael Tremer
@ 2012-09-17 20:00   ` Stefan G. Weichinger
  2012-09-17 20:09     ` Michael Tremer
  0 siblings, 1 reply; 13+ messages in thread
From: Stefan G. Weichinger @ 2012-09-17 20:00 UTC (permalink / raw)
  To: development

[-- Attachment #1: Type: text/plain, Size: 579 bytes --]

Am 17.09.2012 21:58, schrieb Michael Tremer:
> Sorry for the delay.
> 
> On Wed, 2012-09-12 at 20:21 +0200, Stefan G. Weichinger wrote:
>> ps: regarding this mailing list:
>>
>> Why do the headers of the mailing-list-mails not contain a "List-Id" ? I
>> use that for server-based filtering with other lists. Very handy ...
> 
> I don't know. Does mailman support "List-Id"? RFC-2369 headers are
> enabled, so I guess that will include List-Id.

I don't see/find it (even in your latest mail now).
But I can also filter for "Organization: IPFire.org", no problem.

Thanks, Stefan

^ permalink raw reply	[flat|nested] 13+ messages in thread

* Re: Issues w/ .13 so far
  2012-09-17 20:00   ` Stefan G. Weichinger
@ 2012-09-17 20:09     ` Michael Tremer
  2012-09-17 20:13       ` Stefan G. Weichinger
  0 siblings, 1 reply; 13+ messages in thread
From: Michael Tremer @ 2012-09-17 20:09 UTC (permalink / raw)
  To: development

[-- Attachment #1: Type: text/plain, Size: 813 bytes --]

I had a look at an older email, which had these headers...

Restarted mailman and disabled -> enabled the RFC 2369 option.

Let's see...

On Mon, 2012-09-17 at 22:00 +0200, Stefan G. Weichinger wrote:
> Am 17.09.2012 21:58, schrieb Michael Tremer:
> > Sorry for the delay.
> > 
> > On Wed, 2012-09-12 at 20:21 +0200, Stefan G. Weichinger wrote:
> >> ps: regarding this mailing list:
> >>
> >> Why do the headers of the mailing-list-mails not contain a "List-Id" ? I
> >> use that for server-based filtering with other lists. Very handy ...
> > 
> > I don't know. Does mailman support "List-Id"? RFC-2369 headers are
> > enabled, so I guess that will include List-Id.
> 
> I don't see/find it (even in your latest mail now).
> But I can also filter for "Organization: IPFire.org", no problem.
> 
> Thanks, Stefan


^ permalink raw reply	[flat|nested] 13+ messages in thread

* Re: Issues w/ .13 so far
  2012-09-17 20:09     ` Michael Tremer
@ 2012-09-17 20:13       ` Stefan G. Weichinger
  2012-09-17 20:15         ` Michael Tremer
  0 siblings, 1 reply; 13+ messages in thread
From: Stefan G. Weichinger @ 2012-09-17 20:13 UTC (permalink / raw)
  To: development

[-- Attachment #1: Type: text/plain, Size: 358 bytes --]

Am 17.09.2012 22:09, schrieb Michael Tremer:
> I had a look at an older email, which had these headers...
> 
> Restarted mailman and disabled -> enabled the RFC 2369 option.
> 
> Let's see...

I don't see it :-)

As mentioned: I can filter for other header-info.

AFAI know mailman is capable to provide that info, as I use it for many
other lists.

Stefan


^ permalink raw reply	[flat|nested] 13+ messages in thread

* Re: Issues w/ .13 so far
  2012-09-17 20:13       ` Stefan G. Weichinger
@ 2012-09-17 20:15         ` Michael Tremer
  2012-09-17 20:21           ` Stefan G. Weichinger
  0 siblings, 1 reply; 13+ messages in thread
From: Michael Tremer @ 2012-09-17 20:15 UTC (permalink / raw)
  To: development

[-- Attachment #1: Type: text/plain, Size: 516 bytes --]

The email I just wrote came with the correct set of headers.

On Mon, 2012-09-17 at 22:13 +0200, Stefan G. Weichinger wrote:
> Am 17.09.2012 22:09, schrieb Michael Tremer:
> > I had a look at an older email, which had these headers...
> > 
> > Restarted mailman and disabled -> enabled the RFC 2369 option.
> > 
> > Let's see...
> 
> I don't see it :-)
> 
> As mentioned: I can filter for other header-info.
> 
> AFAI know mailman is capable to provide that info, as I use it for many
> other lists.
> 
> Stefan
> 


^ permalink raw reply	[flat|nested] 13+ messages in thread

* Re: Issues w/ .13 so far
  2012-09-17 20:15         ` Michael Tremer
@ 2012-09-17 20:21           ` Stefan G. Weichinger
  2012-09-19 10:44             ` Stefan G. Weichinger
  0 siblings, 1 reply; 13+ messages in thread
From: Stefan G. Weichinger @ 2012-09-17 20:21 UTC (permalink / raw)
  To: development

[-- Attachment #1: Type: text/plain, Size: 552 bytes --]

Am 17.09.2012 22:15, schrieb Michael Tremer:
> The email I just wrote came with the correct set of headers.

THIS one? --^

I still don't see it here ... (thunderbird, showing "Quelltext" .. using
"find").

Ah, you CC: me, maybe I always look at those "direct" mails.

YES

checked your mail "openvpn broken in 13" .. contains List-Id.

Solved.

I just wonder why I only get the CC-mails and not the other copy to the
list.

Pls only reply to the list now, and remove the CC: ("best practise"
anyway for ml, I follow this now as well).

Thanks, Stefan

^ permalink raw reply	[flat|nested] 13+ messages in thread

* Re: Issues w/ .13 so far
  2012-09-17 20:21           ` Stefan G. Weichinger
@ 2012-09-19 10:44             ` Stefan G. Weichinger
  2012-09-19 10:48               ` Stefan G. Weichinger
  0 siblings, 1 reply; 13+ messages in thread
From: Stefan G. Weichinger @ 2012-09-19 10:44 UTC (permalink / raw)
  To: development

[-- Attachment #1: Type: text/plain, Size: 388 bytes --]


DHCP:

I still see this behavior:

Even when there are fixed leases stored (my tablet should always get the
same IP) the device pulls an IP out of the range for dynamic leases.

I have repeatedly stored stuff via WebGUI ...

How to make the dhcpd-server forget about the currently assigned dynamic
leases?

It would be nice to add a button for this ... "forget dynamic lease(s)"

Stefan

^ permalink raw reply	[flat|nested] 13+ messages in thread

* Re: Issues w/ .13 so far
  2012-09-19 10:44             ` Stefan G. Weichinger
@ 2012-09-19 10:48               ` Stefan G. Weichinger
  0 siblings, 0 replies; 13+ messages in thread
From: Stefan G. Weichinger @ 2012-09-19 10:48 UTC (permalink / raw)
  To: development

[-- Attachment #1: Type: text/plain, Size: 211 bytes --]

Am 19.09.2012 12:44, schrieb Stefan G. Weichinger:

> How to make the dhcpd-server forget about the currently assigned dynamic
> leases?

removed and recreated /var/state/dhcp/dhcpd.leases ... looks OK for now.

^ permalink raw reply	[flat|nested] 13+ messages in thread

* Re: Issues w/ .13 so far
  2012-09-12 18:29   ` Stefan G. Weichinger
@ 2012-09-17 20:01     ` Michael Tremer
  0 siblings, 0 replies; 13+ messages in thread
From: Michael Tremer @ 2012-09-17 20:01 UTC (permalink / raw)
  To: development

[-- Attachment #1: Type: text/plain, Size: 1335 bytes --]

On Wed, 2012-09-12 at 20:29 +0200, Stefan G. Weichinger wrote:
> Am 12.09.2012 19:58, schrieb Michael Tremer:
> 
> > Couldn't find the attachment, but I guess I know what you mean. Could
> > you please provide the output of "ipsec status" when the display error
> > is happening?
> > 
> > Also, does anything change when you refresh?
> 
> I have it right now.
> 
> One tunnel active, but shown as "GETRENNT" (should we write in german?
> ;-) ).
> 
> # ipsec status
> Security Associations (0 up, 0 connecting):
>   none
> 
> This was after stopping another tunnel via GUI.
> 
> Refresh or clicking "IPSEC" in the GUI doesn't change things.
> 
> 
> When I check off "Aktiviert" (-> not set, disabled) and "Speichern" ...
> it comes back with "Aktiviert" set -> enabled.
> 
> And now magically after another Refresh that one tunnel is GREEN again.
> 
> 
> # ipsec status
> Security Associations (1 up, 0 connecting):
>        tunnel[1]: ESTABLISHED 92 seconds ago, 213.xxx[...... *SECRET
>        tunnel{1}:  INSTALLED, TUNNEL, ESP SPIs: c68b5716_i 2c8fbcf4_o
>        tunnel{1}:   172.31.98.0/24 === 10.1.1.0/20

It's hard to keep track of what you are doing.

So, when the connection should be disabled, it is still functioning? Or
is it not functioning (as it is supposed), but the WUI is showing a
wrong connection status?

Michael


^ permalink raw reply	[flat|nested] 13+ messages in thread

* Re: Issues w/ .13 so far
  2012-09-12 17:58 ` Michael Tremer
  2012-09-12 18:29   ` Stefan G. Weichinger
@ 2012-09-12 18:30   ` Stefan G. Weichinger
  1 sibling, 0 replies; 13+ messages in thread
From: Stefan G. Weichinger @ 2012-09-12 18:30 UTC (permalink / raw)
  To: development

[-- Attachment #1: Type: text/plain, Size: 1524 bytes --]

Am 12.09.2012 19:58, schrieb Michael Tremer:

> Please hit the save button on the DHCP page one more time, sometimes
> the settings are not completely restored after a backup. That's
> because we need to regenerate the configuration files.

I assumed something like that, yes ... seems to work now ... will
monitor ...

>> Now the dynamic lease gets added to the fixed lease before, so the
>> MAC is already there and ADDing fails.
> 
> This should also be the same in IPFire 2.11 because dhcp.cgi has not 
> been touched in ages.

It was the first time I saw this issue. And I had to change my usual
procedure (not a real problem).

Maybe some mismatch because of the not yet so regenerated config-files?
(see above)

>> With IPSEC I had the case of mismatching display: connected
>> tunnels seemed disactivated and vice versa, see attachment. Right
>> now it looks ok. Will retest w/ other tunnels soon.
> 
> Couldn't find the attachment, but I guess I know what you mean.

Yep, forgot the pic. You saw it on twitter today.

> Could you please provide the output of "ipsec status" when the
> display error is happening?

Will do as soon as I hit it again?

> Also, does anything change when you refresh?

In the situation back then it didn't change. I will see if it happens
again or if I can reproduce by starting and stopping tunnels.

Stefan

ps: regarding this mailing list:

Why do the headers of the mailing-list-mails not contain a "List-Id" ? I
use that for server-based filtering with other lists. Very handy ...

^ permalink raw reply	[flat|nested] 13+ messages in thread

* Re: Issues w/ .13 so far
  2012-09-12 17:58 ` Michael Tremer
@ 2012-09-12 18:29   ` Stefan G. Weichinger
  2012-09-17 20:01     ` Michael Tremer
  2012-09-12 18:30   ` Stefan G. Weichinger
  1 sibling, 1 reply; 13+ messages in thread
From: Stefan G. Weichinger @ 2012-09-12 18:29 UTC (permalink / raw)
  To: development

[-- Attachment #1: Type: text/plain, Size: 988 bytes --]

Am 12.09.2012 19:58, schrieb Michael Tremer:

> Couldn't find the attachment, but I guess I know what you mean. Could
> you please provide the output of "ipsec status" when the display error
> is happening?
> 
> Also, does anything change when you refresh?

I have it right now.

One tunnel active, but shown as "GETRENNT" (should we write in german?
;-) ).

# ipsec status
Security Associations (0 up, 0 connecting):
  none

This was after stopping another tunnel via GUI.

Refresh or clicking "IPSEC" in the GUI doesn't change things.


When I check off "Aktiviert" (-> not set, disabled) and "Speichern" ...
it comes back with "Aktiviert" set -> enabled.

And now magically after another Refresh that one tunnel is GREEN again.


# ipsec status
Security Associations (1 up, 0 connecting):
       tunnel[1]: ESTABLISHED 92 seconds ago, 213.xxx[...... *SECRET
       tunnel{1}:  INSTALLED, TUNNEL, ESP SPIs: c68b5716_i 2c8fbcf4_o
       tunnel{1}:   172.31.98.0/24 === 10.1.1.0/20

S




^ permalink raw reply	[flat|nested] 13+ messages in thread

* Re: Issues w/ .13 so far
  2012-09-12 17:07 Stefan G. Weichinger
@ 2012-09-12 17:58 ` Michael Tremer
  2012-09-12 18:29   ` Stefan G. Weichinger
  2012-09-12 18:30   ` Stefan G. Weichinger
  0 siblings, 2 replies; 13+ messages in thread
From: Michael Tremer @ 2012-09-12 17:58 UTC (permalink / raw)
  To: development

[-- Attachment #1: Type: text/plain, Size: 1276 bytes --]

Hey Stefan,

On Wed, 2012-09-12 at 19:07 +0200, Stefan G. Weichinger wrote:
> My DHCP-setup seemed to be there, but didn't work ... fixed leases were
> visible but didn't get pulled by the devices (laptop, tablet, phone).

Please hit the save button on the DHCP page one more time, sometimes the
settings are not completely restored after a backup. That's because we
need to regenerate the configuration files.

> Additional: tried to re-add a fixed lease via GUI. I usually want to say
> "add fixed lease for this MAC currently using a dynamic lease" ... then
> MAC and IP are "copied" into the field "Neue Zuordnung", I normally edit
> the IP (and description), then ADD.
> 
> Now the dynamic lease gets added to the fixed lease before, so the MAC
> is already there and ADDing fails.

This should also be the same in IPFire 2.11 because dhcp.cgi has not
been touched in ages.

> With IPSEC I had the case of mismatching display: connected tunnels
> seemed disactivated and vice versa, see attachment. Right now it looks
> ok. Will retest w/ other tunnels soon.

Couldn't find the attachment, but I guess I know what you mean. Could
you please provide the output of "ipsec status" when the display error
is happening?

Also, does anything change when you refresh?

Michael


^ permalink raw reply	[flat|nested] 13+ messages in thread

* Issues w/ .13 so far
@ 2012-09-12 17:07 Stefan G. Weichinger
  2012-09-12 17:58 ` Michael Tremer
  0 siblings, 1 reply; 13+ messages in thread
From: Stefan G. Weichinger @ 2012-09-12 17:07 UTC (permalink / raw)
  To: development

[-- Attachment #1: Type: text/plain, Size: 1219 bytes --]


greets, I am new to this list, afai see my issues weren't mentioned
before, so I think they aren't FAQ ;-)

Both seem to be WebGUI-issues. I installed from scratch onto CF-card,
running on an older ALIX board. Restored my backup pulled from the
former 2.11 core 62 installation.

My DHCP-setup seemed to be there, but didn't work ... fixed leases were
visible but didn't get pulled by the devices (laptop, tablet, phone).

Maybe I should have rebooted once more (I think I did anyway ...), will
retest after writing this mail.

Additional: tried to re-add a fixed lease via GUI. I usually want to say
"add fixed lease for this MAC currently using a dynamic lease" ... then
MAC and IP are "copied" into the field "Neue Zuordnung", I normally edit
the IP (and description), then ADD.

Now the dynamic lease gets added to the fixed lease before, so the MAC
is already there and ADDing fails.

(minor issue aside: typo in german dhcp.gi: "Globaler Bereich oder
begenze Bereich" ... should be "begrenze")

-

With IPSEC I had the case of mismatching display: connected tunnels
seemed disactivated and vice versa, see attachment. Right now it looks
ok. Will retest w/ other tunnels soon.

Greets, Stefan (rebooting now)





^ permalink raw reply	[flat|nested] 13+ messages in thread

end of thread, other threads:[~2012-09-19 10:48 UTC | newest]

Thread overview: 13+ messages (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
     [not found] <5050D2AF.1070407@xunil.at>
2012-09-17 19:58 ` Issues w/ .13 so far Michael Tremer
2012-09-17 20:00   ` Stefan G. Weichinger
2012-09-17 20:09     ` Michael Tremer
2012-09-17 20:13       ` Stefan G. Weichinger
2012-09-17 20:15         ` Michael Tremer
2012-09-17 20:21           ` Stefan G. Weichinger
2012-09-19 10:44             ` Stefan G. Weichinger
2012-09-19 10:48               ` Stefan G. Weichinger
2012-09-12 17:07 Stefan G. Weichinger
2012-09-12 17:58 ` Michael Tremer
2012-09-12 18:29   ` Stefan G. Weichinger
2012-09-17 20:01     ` Michael Tremer
2012-09-12 18:30   ` Stefan G. Weichinger

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox