<<Prev Next>> Scroll to Bottom
Stuff goes here
L1[01:16:47] ⇦ Quits: ben_mkiv (~ben_mkiv@200116b80042f000593ff7dd8565f734.dip.versatel-1u1.de) (Quit: Leaving)
L2[04:28:59] <Forec​aster> %tonk
L3[04:29:00] <MichiBot> Woah! Forec​aster! You beat Ocawes​ome101's previous record of 12 hours, 22 minutes and 40 seconds (By 1 hour, 49 minutes and 5 seconds)! I hope you're happy!
L4[04:29:01] <MichiBot> Forecaster's new record is 14 hours, 11 minutes and 46 seconds! Forecaster also gained 0.02366 (0.00182 x 13) tonk points for stealing the tonk. Position #2. Need 0.54476 more points to pass Va​ur!
L5[04:43:33] ⇨ Joins: Neo (~neo@heimdall.pc-logix.com)
L6[04:43:45] *** Server sets mode: +ntz
L7[07:12:52] ⇦ Quits: Hawk777 (~Hawk777@2001:569:7e40:1300:c691:37c5:5c11:7316) (Quit: Leaving.)
L8[08:20:09] ⇨ Joins: Vexatos (~Vexatos@p200300eaef05a60091ee4fe3c7646755.dip0.t-ipconnect.de)
L9[08:20:09] zsh sets mode: +v on Vexatos
L10[10:37:48] * Amanda meows and looks around
L11[11:40:18] <S​3> Izzy: You might like the name I gave my monitoring jail on the server
L12[11:40:26] <S​3> 9 odette /usr/local/jails/containers/odette
L13[11:40:33] <Forec​aster> Monitoring jail?
L14[11:40:43] <Amanda> SHoul dhave called it warden
L15[11:40:47] <S​3> Yeah. I'm going to throw Zabbix on it to monitor everything
L16[11:40:50] <Izzy> but is it the second one?
L17[11:41:09] <S​3> I thought about putting 2 in the name buut I decided not to for selfish reasons
L18[11:41:23] <S​3> I could change it still.
L19[11:41:31] <S​3> Why Warden?
L20[11:44:58] <S​3> I ran into this hour long dilema of how I was going to handle monitoring. The thing is not even my jump boxes have access to every single device on the network. Different jump boxes have their own set of networks they can reach. So, I decided to put odette on one of my management networks instead and in the firewall I will just allow SNMP
L21[11:44:58] <Corded> on my devices from odette's fixed IP address.
L22[11:54:29] <Izzy> oh, speaking of monitoring
L23[11:54:44] <Izzy> https://cdn.shadowkat.net/media/f8cf684979b501c9bb3d986df74228f1d9f2c2fdb4eb8180f564622548b4d343.png
L24[11:59:59] <Amanda> @S3 jail monitoring
L25[12:11:22] * Amanda decides to let her laptop nap so she doesn't forget anything on this trip
L26[13:24:26] <stephan48> @S3: Zabbix has (had - in the past dunno about today) the concept of monitoring proxies
L27[13:24:42] <stephan48> which could take the form of either pull/push gateways to other networks, might be worth checking out
L28[16:14:42] ⇨ Joins: Hawk777 (~Hawk777@2001:569:7e40:1300:ea43:8c10:f949:fee9)
L29[18:52:56] ⇦ Quits: Nia (~nia@ayame.servers.aura.moe) (Quit: zzzz <3)
L30[18:54:23] ⇨ Joins: Nia (~nia@ayame.servers.aura.moe)
L31[19:08:46] <CompanionCube> https://www.openwall.com/lists/oss-security/2024/03/29/4
L32[19:09:24] <CompanionCube> backdoor in upstream xz/liblzma leading to ssh server compromise
L33[19:19:48] <Elfi> Debian-sid and Fedora 41 compromised, nuke it from orbit and start from backups if you use either
L34[19:21:01] <Elfi> Supply chain attack targeting debian or fedora-based build systems, but regardless, be vigilant and downgrade to 5.4 to be safe
L35[19:27:11] ⇦ Quits: Hawk777 (~Hawk777@2001:569:7e40:1300:ea43:8c10:f949:fee9) (Quit: Leaving.)
L36[19:28:27] ⇦ Quits: xal (~xal@mx1.xal.systems) ()
L37[19:28:29] ⇨ Joins: Hawk777 (~Hawk777@2001:569:7e40:1300:8695:b813:ee1:f579)
L38[19:33:11] <Amanda> What about the latest stable?
L39[19:34:13] <Amanda> Though I think the only ssh I have exposed to The Internet is a go-based one for git.camnet.site
L40[19:37:00] <Elfi> Stable should be okay
L41[19:37:06] <Elfi> But of course, *be vigilant*
L42[19:37:38] <Elfi> Fedora 40 was targeted but the build system didn't execute the attack properly, so it's in a "be very vigilant" stage
L43[19:46:47] <Hawk777> If, as people seem to be suggesting, the exploit was actually introduced by one of the two legitimate authors of xz-utils, makes you wonder what their motivation was.
L44[19:49:47] ⇨ Joins: xal (~xal@mx1.xal.systems)
L45[19:52:00] <Corded> > <Iz​zy> https://cdn.shadowkat.net/media/f8cf684979b501c9bb3d986df74���
L46[19:52:00] <AR2​000> that's prometheus
L47[19:52:51] <Va​ur> %tonkout
L48[19:52:52] <MichiBot> Golly! Va​ur! You beat Forec​aster's previous record of 14 hours, 11 minutes and 46 seconds (By 1 hour, 12 minutes and 5 seconds)! I hope you're happy!
L49[19:52:53] <MichiBot> Va​ur has stolen the tonkout! Tonk has been reset! They gained 0.015 tonk points! plus 0.014 bonus points for consecutive hours! (Reduced to 50% because stealing) Current score: 1.60973. Position #1
L50[19:53:01] <Corded> > <step​han48> @playful_fawn_14635: Zabbix has (had - in the past dunno ab…
L51[19:53:01] <AR2​000> still has, and it's a really nice features. Proxys are autonomous servers that can collect datas for the main server and store them locally in case of a network split
L52[19:54:28] <Brisingr​ Aerowing> Hawk777: It looks as if they are state actors.
L53[20:07:37] <Hawk777> Ah, I didn’t see that suggested anywhere, though it’s always a possibility.
L54[20:08:25] ⇦ Quits: kilobyte (~kilobyte2@banana-new.kilobyte22.de) (Ping timeout: 195 seconds)
L55[20:08:43] ⇨ Joins: kilobyte (~kilobyte2@banana-new.kilobyte22.de)
L56[20:08:43] zsh sets mode: +v on kilobyte
L57[20:45:41] * Amanda curls up around Elfi, raises the shields
L58[22:59:39] <Izzy> AR2000: exactly! got these smart plugs exporting prometheus metrics, so I can feed them into grafana
L59[23:40:19] ⇦ Quits: xal (~xal@mx1.xal.systems) ()
L60[23:47:35] ⇦ Quits: Hawk777 (~Hawk777@2001:569:7e40:1300:8695:b813:ee1:f579) (Quit: Leaving.)
<<Prev Next>> Scroll to Top