--- Log opened Thu Feb 29 00:00:11 2024 08:03 <@Dagmar> Because it's always fun to fail at very, very simple math 09:20 <@Mirage> nzbhydra keeps randomly 'temporarily' disabling indexers, but never re-enables. So annoying. 09:20 < Evilpig> weird. 09:21 < Evilpig> what errors in the logs? I assume some type of connection problem? 09:21 < Evilpig> do you have too many threads enabled and getting temp bans? or too many connection errors? 09:21 < Evilpig> nm nzbhydra not nzbdrone or something else 09:22 < aestetix> wonderful 09:22 < aestetix> putin is now openly threatning to use nukes 09:22 < aestetix> what the fuck did NATO think would happen if they expanded more 09:23 < aestetix> And the revelation that the UK does have troops on the ground in Ukraine makes it that much worse 09:23 < aestetix> sorry that my rant is not about US politics ;) 09:33 <@Dagmar> Putin's actually been talking shit about nukes for months now 09:41 <@Mirage> Evilpig: what's weird is when you look at the logs nzbhydra claims that it's doing a check every ~10m against all of them, but if you go to the interface to try and search something manually vs via sonarr/radarr then it only lists 'binsearch.' When you expand the list of indexers it has them all flagged as temp disabled and you have to toggle them back to enabled. 11:48 <@Mirage> Whoever wrote this article about surge pricing is an idiot, "That of course means that prices would be higher at high-demand times, but typically consumers don't view that as price-gouging — happy hours and early bird specials are seen as good deals." 11:49 <@Mirage> Um, happy hour prices are LOWER, not HIGHER...hence being good deals. 12:09 < Evilpig> happy hour prices are lower to get people to come in because business is typically down then 12:17 < Evilpig> that is weird 12:51 < Synx_> oh shit, this little micro pc lenovo 720q i picked up to be a opnsense router/firewall... its got the standard lenovo power plug and i have a usb-c to lenovo powerplug adapter that can do up to 100w. I can power this thing with my battery, even better i can have the battery hooked up and also passthru charging as a sort of UPS 13:01 < Evilpig> eve is definitely coming to terms with penny not coming back. she has not left my side for the last two days now. last night she braved out sleeping on the bed even with me tossing and turning. right now she's in my lap and won't take no for an answer 14:08 <@Dagmar> Synx_: So... you've just reinvented... the laptop firewall. 14:12 < Synx_> haha ya my first ever self run firewall was a 486 laptop running slackware 14:12 <@Dagmar> I'm probably taking mine apart to get an order in for replacing every damn fan in it 14:12 < Synx_> met some stranger on irc and they asked into it and helpede configure it lol 14:13 <@Dagmar> I think I originally built it in 2003 or somethign 14:13 < Synx_> you want to buy my 720q it's an 8th gen i5 14:13 < Synx_> putting dual 10gbe nic in it Intel chipset 14:14 < Synx_> right now my firewall is running in a VM on 10th gen i5 14:15 < Synx_> easily saturate my 1gbe wan link 14:15 < Synx_> err 1gb wan link 14:16 <@Dagmar> I'm officially siwtching to a comcast buisness account now 14:16 < Evilpig> I had one of those 14:16 < Evilpig> it's a weird animal because you'd think that business would get 24x7 support, outage notices, etc 14:17 < Evilpig> yeah.. you don't. the residential get better support, but the business gets a direct agent that you can yell at 14:17 <@Mirage> When they're available., 14:17 < Synx_> does business change the up/down offering 14:18 <@Dagmar> It's still basically the same service, but no more getting hit for $100 extra a month because we actually _use_ the service 14:18 <@Dagmar> Also I'll have to disable "Security Edge" and their AP 14:18 < Synx_> ahh no cap? static IP? 14:18 <@Mirage> And who can 'forget' that you're ending service and moving to a different state which they have no footprint, but will then argue that continuing to bill you for services is completely justified. 14:19 <@Dagmar> Synx_: No cap, but I don't need a static IP 14:19 < Synx_> 😎 14:20 < Synx_> I had Comcast when I lived in Antioch shudder 14:20 < Synx_> on Frontier now and they can't seem to deploy ipv6 14:21 < Evilpig> you have to pay extra for a static ip, but it's available 14:21 <@Mirage> At least Frontier doesn't do bullshit contracts. Or at least they didn't here in TX 14:22 < Evilpig> Mirage: since you're sitting here, can you grab anything from my ftp and just verify the ssl is working. lastchild said he's having issues with filezilla but when i've tested I had no issues 14:22 < Evilpig> I think he's got something cached funny or something doing a mitm messing with him but need someone else to verify that isn't on my network 14:23 < Synx_> ya no contract and it's been easy to switch to business and back and the uptime has actually been good considering it's legacy Verizon fios network 14:23 <@Dagmar> Evilpig: Can't he just run openssl and look at it? 14:23 < Evilpig> he could but me trying to explain how to troubleshoot that would be painful 14:24 <@Mirage> Works fine. 14:24 < Evilpig> I have automated connections that hit it nightly for wordpress backups, so I know it's functional. just curious if there is something weird going on to a gui client and ftps or something 14:24 <@Dagmar> openssl s_client -connect wilpigsstuff:443 | openssl x509 -text -noout | less 14:24 < Evilpig> k. so it's jut him then 14:24 <@Dagmar> "Is it my cert?" 14:24 < Evilpig> my cert is good. I'm sure of that 14:25 <@Dagmar> If it's something doing an MITM it'll generally _not_ show your stuff in the identity fields 14:25 < Evilpig> you have a good point 14:25 <@Mirage> Filezilla gets flakey w/ the rotating cert from time to time. I had to do something to fix mine some time back, but I don't remember what it was 14:26 < Evilpig> you'd not believe all the crazy hoops i've jumped through to automate my ssl certs 14:27 <@Mirage> I keep pondering the same, but deciding not to 14:28 < Evilpig> it's worth it, it was just a pain because the various places need it different ways 14:28 < Evilpig> the ftp server is java based so I have to repackag the pem to a pfx then import it to a custom store 14:29 < Evilpig> unifi for ubiquity is also java based but it needs a different cipher and it also needs a password added to it so that was fun 14:29 < Evilpig> openssl pkcs12 -export -out /root/unifi.wilpig.com.pfx -inkey /etc/letsencrypt/live/wilpig.com/privkey.pem -in /etc/letsencrypt/live/wilpig.com/cert.pem -certfile /etc/letsencrypt/live/wilpig.com/chain.pem -certpbe AES-256-CBC -keypbe AES-256-CBC -macalg SHA256 -password pass:aircontrolenterprise -name unifi 14:29 <@Mirage> Yeah... I really don't feel like having to figure out making 7-8 different services happy w/ it. It's annoying enough doing it manually 14:29 < Evilpig> keytool -importkeystore -deststorepass aircontrolenterprise -destkeypass aircontrolenterprise -destkeystore /opt/UniFi/data/keystore -srckeystore /root/unifi.wilpig.com.pfx -srcstoretype PKCS12 -srcstorepass aircontrolenterprise -alias unifi -noprompt 14:29 <@Dagmar> goddamn I hate wallet containers so much 14:30 < Evilpig> synology has their own mechanism and luckily someone figured out a way with the api to update that so I got a script to handle it. 14:30 < Evilpig> plex also uses the pfx but luckily after it gets packaged as a pfx it was just happy with it 14:30 <@Dagmar> There's no serious reason to require a pkcs file other than not wanting to deal with the complexity of explaining to the user that the key and cert are not interchangeable... oh wait 14:31 < Evilpig> after everything updated this last month I realized I forgot to put in a restart for the unifi service so I need to do that 14:33 < Evilpig> by doing all this I have two real certs. one for *.wilpig.com and one for *.private.wilpig.org for the internal stuff 14:33 < Evilpig> I may have a few other names on them but those are the primary names 14:33 <@Dagmar> Actually I should amend that because I had to go through that stuff with Android, and well... there's enough bullshit involved in SSL with x509 I'm not going to fault Java programmers for taking the easy way out and just saying "Give me a cert I can hand to just one goddamn method and get rolling" 14:35 < Evilpig> Dagmar: you and audra don't care to see dropkick murphys tonight do you? 14:36 <@Dagmar> I don't think so 14:36 < Evilpig> k 14:37 < Evilpig> I've got ashley and sabrina's tickets but nobody to give them to 14:37 < Evilpig> cindy thought she had someone to take one and travis though he had someone thta would take them but nope 14:37 < Evilpig> raymer is getting his kids tonight so he's out 14:37 < Evilpig> my friends up in ky just opened a new restaurant last week so they backed out 14:50 <@Mirage> I can ask Alex. He might be able to find a sitter 14:52 <@Mirage> Lessa and the kids are all sick, so he's out. 15:22 < Evilpig> was worth a shot 15:22 < Evilpig> wish the kid was here to go, she'd have a blast 15:57 <@Mirage> If you still haven't found any takers, I could ask Nathan Johnson. Storage guy from VU that jumped ship and still works w/ me at Dell. 16:00 <@Dagmar> Yeah Nathan and Heather are cool people 16:04 <@Mirage> Said they'd love to go, but can't 16:06 <@Mirage> Dagmar: Nathan says hi and asked how you were doing. I told him they should call ya'll and hang out sometime. 18:07 -!- eryc is now known as utf_ama_sql 18:10 -!- utf_ama_sql is now known as hbtq --- Log closed Fri Mar 01 00:00:12 2024