#linode IRC Logs for 2017-06-30

01:04<zifnab>what a day :(
01:05<zifnab>had some car-on-car action this morning
01:05<zifnab>spent like 3 hours today talking to insurance
01:05<millisa>not to worry. it's your fault.
01:05<zifnab>sounds like that's true
01:05<zifnab>i'll let them make that call
01:05<zifnab>that is not a decision i get to make :(
01:06<zifnab>i'd say if you hit a car thats leaving a parallel parking spot its your fault for not letting them go
01:06<millisa>both insurance companies have figured it's both your faults, 100%.
01:53<Fadhly>Are u support ddos?
01:54-!-Fadhly [~oftc-webi@] has quit []
02:11<Zimsky>allow postfix to relay anything from port 25
02:11<Zimsky>it actually stops the spam
02:48<Ravi>I have a query, can any one help
If you have a question, feel free to just ask it -- someone's always willing to help. If you don't get a response right away, be patient!
02:49<Ravi>I have a website and it is hosted in "Host Gator"
02:49<Ravi>I want to migrate it from there to Linode
02:52<Ravi>I need my website to be hosted in Linode
02:53<rsdehart>still haven't asked a question
02:53<Ravi>No technical staff with me, So linode will do that for me??
02:53<Ravi>without data lost
02:53<rsdehart>there's a question
02:53<arlen>if you pay for the professional service they will
02:54<Ravi>How much it would be
02:54<arlen>depends on the project
02:54<arlen>you'll need to contact them and get a quote
02:54<Ravi>I got SSL in hostgator and along with that
02:54<Ravi>ok, how can i contact them
02:54<dax>with the link linbot gave
02:54<arlen>from that last link
02:55<arlen>click the get a quote button
02:55<Ravi>if i select any plan in linode i ahve to pay full amount or else
02:56<arlen>servers are billed hourly up to the monthly limit
02:56<Ravi>While signup, i have to pay full amount or not
02:57<arlen>you're given an option how much you want the first charge to be when you signup
02:58-!-eagle [] has quit [Quit: adios]
03:01*rsdehart calls a contractor, says only "I need work done on my house. How much will it be?" and waits for a price
03:02*arlen nods
03:06<dcraig>"I'm already booked 3 months out"
03:06<ponas>"Yes, I need the work done now"
04:09-!-madbytes is "madbytes" on #linode
[TOP TIP] Virtual Hosting - without a control panel!
04:52-!-eyepulp is "eyepulp" on #linode
04:54-!-mode/#linode [+l 359] by ChanServ
05:00-!-eyepulp [] has quit [Ping timeout: 480 seconds]
05:01-!-mode/#linode [+l 358] by ChanServ
06:23-!-eyepulp [] has joined #linode
06:23-!-eyepulp is "eyepulp" on #linode
06:24-!-mode/#linode [+l 359] by ChanServ
08:00-!-xxyyzz [~xxyyzz@2400:8901::f03c:91ff:fefb:cbfb] has quit [Quit: ZNC -]
08:00-!-xxyyzz [~xxyyzz@2400:8901::f03c:91ff:fefb:cbfb] has joined #linode
08:00-!-xxyyzz is "xxyyzz" on #linode
08:25<Admin>anyone here that can stop a massive attack?
08:25<Admin>from linode servers?
08:25<@jleal>hi friend :)
08:25<Admin>quite tired already been trying to contact without luck
08:25<@jleal>show me what ya got
08:25<@jleal>can you make a gist of what youre seeing?
08:25<Admin>Ive got the server Ip the location of the guy in the UK
08:26<Admin>this is the last ip from where Ive got the attack
08:26<Admin>also the server has a frontend web saying welcome in diff languages refering to microsoft website
08:26<@jleal> isn't Linode - looks like its registered to Asia Pacific (APNIC)
08:27<Meyer_>Admin: That IP is a IP adress belonging to Beijing yiantianxia Network Science&Technology Co Ltd
08:27<Admin>one sec looking for the good ones
08:27<Admin>has to be the same guy
08:29<Admin>here is a doc where it says linode servers Ip
08:29<Admin>this guy changes the ip to keep attacking or tying
08:31<@jleal>Sorry, im not comfortable opening pdf's - can you please provide any logs of the alleged attack along with the IP's in question within a gist? :)
08:31<@jleal>Without them we are unable to assist
08:31<Admin>this is the ip of the attack right now
08:31<Admin>no worries i understand
08:31<@jleal>can you provide logs of said attack? <3
08:32<@jleal>thats a Verizon business line
08:32<@jleal>"MCI Communications Services, Inc. d/b/a Verizon Business"
08:32<Admin>Is a Mail Server Login Attempt
08:32<Admin>I guess by brute force
08:32<Admin>I dont have the logs here with me
08:32<@jleal>gotcha, you'll want to gather the logs of the attack and reach out to the abuse contact for the IP - neither of the ip's provided are owned or advertised by Linode
08:33<@jleal>Wish I could do more to assist, I apologize
08:37<@jleal>You may have some luck fending them off with something like fail2ban -
08:37<Admin>is a TXT also is doing it to port 25
08:38<Admin>the trace route points to linode server
08:39<Admin>with IP
08:41<@mcintosh>÷/go 42
08:44<Admin>@jleal thanks for your help anyway :)
08:49<scotti>jleal: no need to apologize
08:49<scotti>if the IP isn't a Linode IP - what can you do?
08:49<scotti>you can just say: RTF /whois
08:49<Admin>^^ it is
08:50<scotti>Admin: the attacker or the attacked ?
08:50<Admin>the attacker
08:50<Admin>I have all ips blocked from china
08:50<Admin>so I wont get any attacks
08:51<Admin>looks like is using the server to bypass that
08:52<Admin>I guess is doing a massive attack as is taking 2 - 5 minutes in make the next attack
08:55<dwfreed>as your nmap shows, it's not a Linode IP
08:55<dwfreed>"Scanning ("
08:56<Admin> (
08:56<Admin>and from uk
08:57<MrPPS>I don't have to transverse a linode router to get there :)
08:57<dwfreed>you're just throwing out random crap; you're completely incoherent
08:58<MrPPS>it's not a linode IP
08:58<Admin>ok if is not ill throw also a 200 GB dd attack to the ips
08:58<Admin>because is not linode
08:59<Admin>Thanks for the help to everyone
08:59<dwfreed>you have fun with that
08:59<Admin>I will trust me ;)
08:59<MrPPS>Admitting to doing illegal things in a veiled attempt at a threat in the case it *is* linode is not really a good idea...
08:59-!-Admin [] has quit [Quit: Page closed]
08:59<MrPPS>the stupid was strong there
08:59-!-mode/#linode [+l 358] by ChanServ
09:05-!-eyepulp [~eyepulp@] has joined #linode
09:05-!-eyepulp is "eyepulp" on #linode
09:06-!-mode/#linode [+l 360] by ChanServ
CAA type DNS records
11:25<xxyyzz>can i change hostname of my server which is like
11:26<@mcintosh>yes -
11:26<@mcintosh>you'll need to set up an A record for your IP address matching the hostname you wish to use
11:29-!-wetstles [~oftc-webi@] has joined #linode
11:29-!-wetstles is "OFTC WebIRC Client" on #linode
11:29-!-mode/#linode [+l 363] by ChanServ
11:31*wetstles slaps acald3ron around a bit with a large fishbot
11:31<@mcintosh>don't do that
11:31<wetstles>sry , by mistake it happened
11:31<@mcintosh>no worries
11:32<wetstles>ok , my site plan gets over by today
11:33<wetstles>whether it will get renewed automatically?
11:33<wetstles>or should i make manual payment
11:34-!-_eyepulp [~eyepulp@] has joined #linode
11:34-!-_eyepulp is "eyepulp" on #linode
11:34-!-mode/#linode [+l 364] by ChanServ
11:52-!-mode/#linode [+l 360] by ChanServ
11:53<Eugene>Every day I'm Linodin'
11:53<Woet>not true
11:53<FluffyFoxeh>why you always lyin'
11:55<dzho>lie nodin
12:24-!-acald3ron [] has quit [Remote host closed the connection]
12:24-!-mode/#linode [+l 359] by ChanServ
13:27-!-acald3ron [] has quit [Remote host closed the connection]
13:27-!-mode/#linode [+l 360] by ChanServ
13:30-!-pavlushka [] has joined #linode
13:30-!-pavlushka is "pavlushka" on #linode #debian #oftc
13:30-!-_eyepulp [~eyepulp@] has quit [Remote host closed the connection]
13:30-!-eyepulp [~eyepulp@] has joined #linode
13:30-!-eyepulp is "eyepulp" on #linode
13:31-!-mode/#linode [+l 361] by ChanServ
13:34<zifnab> /giphy bananas
13:38-!-eyepulp [~eyepulp@] has quit [Ping timeout: 480 seconds]
13:39-!-mode/#linode [+l 360] by ChanServ
14:08-!-_eyepulp [] has joined #linode
14:08-!-_eyepulp is "eyepulp" on #linode
14:08-!-eyepulp [] has quit [Read error: Connection reset by peer]
14:11-!-eyepulp [] has joined #linode
14:11-!-eyepulp is "eyepulp" on #linode
14:11-!-_eyepulp [] has quit [Read error: Connection reset by peer]
14:45-!-_eyepulp [] has joined #linode
14:45-!-_eyepulp is "eyepulp" on #linode
14:45-!-eyepulp [] has quit [Read error: Connection reset by peer]
15:16-!-mode/#linode [+l 360] by ChanServ
15:27<Eugene>What are the cool kids using that isn't Filezilla or WinSCP and has a MSI installer, if such a thing even exists?
15:27*dwfreed ducks
15:28*Eugene gooses dwfreed
15:28<dwfreed>FileZilla is the go-to Windows SFTP file manager
15:29<dwfreed>though Kamilion might have suggestions for others
15:29<Eugene>Unfortunately, they have become more infested with ads and now there is 'Filezilla Pro' with S3 support -_-
15:29<Eugene>I have to draw a line somewhere
15:31<dwfreed>you don't have to grab the ad-infested installer
15:31<Eugene>The update-checker on the non-ad-infested one is infested with ads
at least it's not infested with bees
16:03*dzho speaks into a handheld recording device, a la Michael Keeton in Night Shift: "Note to self, create an ad platform using bees as a delivery or presentation mechanism. Win-win."
16:10<synfinatic>Unless they're killer bees...
16:11<synfinatic>wait, can we train killer bees to kill ads?
16:11<grawity>bobcat as a service
16:14-!-acald3ron [] has joined #linode
16:14-!-acald3ron is "realname" on #linode #debian-mx #debian-es #debian-next #debian
16:18<dzho>jeyner: have you combed through those already?
16:19<jeyner>exploring now
16:20<dzho>the apache project itself has copious documentation. If you hit a snag looking at that, let us know what parts you're having trouble with.
16:22<dzho>(in general, there's little-to-nothing linode-specific about configuring apache or any other service hosted on linode)
16:22<dzho>backups and DNS and load balancers, eg, stuff that linode provides as services external to what you run on a linode, sure.
16:23<dzho>but stuff that runs inside your linode--It's Just Linux.
16:23<jeyner>got it dzho
16:23<jeyner>found it
16:23<jeyner>really appreciate your help
16:23<jeyner>you are right, it is in apache, not linode
16:30-!-jeyner [~oftc-webi@] has quit [Quit: Page closed]
16:31-!-mode/#linode [+l 361] by ChanServ
18:19-!-mode/#linode [+l 358] by ChanServ
18:27<kronos003>If I give linode a KVM container to host in one of your data centers, whould you be able to do it?
18:28*kronos003 mutters about his spelling
18:34<zifnab>kronos003: erm, not really, migration to a linode would just be to dd across the disk
18:35<zifnab>should probably work?
18:36-!-mode/#linode [+l 359] by ChanServ
18:36<kronos003>I suppose I could also just script the buils process, but that would be a pain
18:38<kronos003>it would be nice to build an image on a local box and simply upload it
18:38<kronos003>also would simply backups, since I could just download a copy of the production system on a weekly basis
18:44<zifnab>take a look at ansible
18:44<zifnab>or saltstack
18:44<zifnab>assuming its linux, i'd say you should be able to repro your production environment w/o any effort
18:52<kronos003>I'm looking at setting up an accounting system
18:52<kronos003>Hosting it in a datacenter means I'll have to do some really ugly stuff to harden it against attack
18:53<kronos003>among other things I will need to use some form of encryption on the filesystem
19:18*zifnab hates saying this
19:18<zifnab>ec2 has encryption built in, kind of
19:22<kronos003>when your on the hook, do you want anyone else having the keys to your system?
19:31<Peng>VPS hosts can always dump the RAM and extract your keys.
20:31-!-eyepulp [~eyepulp@] has quit [Remote host closed the connection]
20:32-!-eyepulp [~eyepulp@] has joined #linode
20:32-!-eyepulp is "eyepulp" on #linode
20:45<kronos003>I want to strongly limit any attempts at external disk manipulation. If they are gonna compromise my box, I want them to REALLY have to work at it
21:13-!-eyepulp [] has joined #linode
21:42<kronos003>I need to talk to someone who is linode staff - is anyone around?
21:42<arlen>should just ask your question, if its account related open a ticket
21:43<kronos003>it is and isnt an account question
21:44<arlen>what's the isn't part
21:44<arlen>linode won't answer account specific questions here
21:44<kronos003>I need to know if linode would be willing to host a linux KVM image, if I were to build it within their guidelines
21:45<kronos003>then I need to know if I can arange for periodic downloads of that running image for backup purposes once it is up and running
21:46<arlen>doubt they'll do anything that's outside of what's already available
21:47<kronos003>I'll check that out
21:53-!-eyepulp [] has joined #linode
21:53-!-eyepulp is "eyepulp" on #linode
21:54-!-mode/#linode [+l 363] by ChanServ
22:19-!-The-spiki [] has quit [Ping timeout: 480 seconds]
22:19<raj_>i want to know about managed service?
22:21-!-raj_ [~oftc-webi@] has quit [Remote host closed the connection]
22:21-!-mode/#linode [+l 360] by ChanServ
22:21<dwfreed>or quit, that works too
22:25-!-sandeep [] has joined #linode
22:25-!-sandeep is "Laptop" on #linode
22:26-!-mode/#linode [+l 361] by ChanServ
22:43<Zimsky>dwfreed: quitting always works
22:43<Zimsky>makes the problem go away
22:45<FluffyFoxeh>if at first you don't succeed, you fail
22:45<arlen>never try and you won't fail
22:46<kronos003>beter said - never try and you will always fail to succeed
22:48<kronos003>hey what do you guys like for long term updates and over all security? Ubuntu or CentOS?
