Displaying 20 results from an estimated 400 matches similar to: "incremental backups of maildir via rsync"
2019 Apr 01
2
IdentityFile vs IdentitiesOnly
Hi folks,
I've got a moderate number of keys in my ssh config file.
Problem: Very often I get an error message like
Received disconnect from 2001:db8::8077 port 999:2: Too many authentication failures
Authentication failed.
AFAIU the ssh-agent is to blame here, trying out all keys
he has ever seen. This conflicts with MaxAuthTries 6, set by
default on the peer.
The solution seems to be to
2019 Jul 03
5
using RedHat binary packages?
Hi folks,
AFAIK CentOS uses RedHat's source RPMs for building the next CentOS
release. I am not sure about the bootstrap procedure and the infra-
structure packages, so lets put these corner cases aside.
RedHat's "regular" binary and source packages are based on open source
(GPL2, GPL3, Apache license, whatever). For building the binary RPMs
other open source RPMs with
2020 Feb 10
6
question about pubkey and passphrase
Hi folks,
Since Docker can bind-mount every .ssh directory I am looking for
some way to forbid unprotected private keys.
AFAICS it is currently not possible on the sshd to verify that
the peer's private key was protected by a passphrase. Can you
confirm?
Regards
Harri
2005 Feb 04
2
rsync huge tar files
Hi folks,
Are there any tricks known to let rsync operate on huge tar
files?
I've got a local tar file (e.g. 2GByte uncompressed) that is
rebuilt each night (with just some tiny changes, of course),
and I would like to update the remote copies of this file
without extracting the tar files into temporary directories.
Any ideas?
Regards
Harri
2019 Apr 02
2
IdentityFile vs IdentitiesOnly
Hi Darren,
On 4/1/19 10:41 AM, Darren Tucker wrote:
> On Mon, 1 Apr 2019 at 08:12, Harald Dunkel <harald.dunkel at aixigo.de> wrote:
>> I've got a moderate number of keys in my ssh config file.
>> Problem: Very often I get an error message like
> [...]
>> The solution seems to be to set IdentitiesOnly, e.g.:
> [...]
>> Shouldn't an explicit
2016 Dec 09
2
HashKnownHosts vs @cert-authority
Hi folks,
maybe I am too blind to see, but would it be possible to
avoid extra entries in known_hosts, if the remote host
has a signed public key matching a @cert-authority line?
Something like
Host *
HashKnownHosts unsigned
This could help to keep the known_hosts file small and
yet get all the unsigned public keys in.
Just a suggestion, of course. Regards
Harri
2016 Nov 18
2
make "rsync -N" == "rsync --numeric-ids" ?
Hi folks,
"--numeric-ids" is a lot of text and easy to be forgotten or
misspelled.
Since it is a highly important option for making backups of
remote systems via rsync I wonder if "-N" could be introduced
as an abbreviation for "--numeric-ids"? "-N" is not in use yet,
afaics.
Just a suggestion, of course. Keep on your good work.
Regards
Harri
2020 Mar 14
2
congested/busy on trunk?
greetings asterisk users :)
ive just deployed version 17 and migrated as best I can to pjsip. I can
receive calls, and get to my mailbox prompt, however placing calls seems
impossible with the following error on dial:
Connected to Asterisk GIT-master-0cde95ec89 currently running on dunkel (pid = 517890)
dunkel*CLI>
dunkel*CLI>
== Setting global variable 'SIPDOMAIN' to
2010 Jan 03
2
imap default separator ignored?
Hi folks,
I have configured the imap folder separator to '/' (see below).
AFAIU the separator character does not affect the internal
folder representation managed by Dovecot, but just the
communication between client and imap server. Question is:
What is supposed to happen if I try to create a folder named
"a.b" in this configuration? Since '.' is not a separator
2011 Mar 26
1
xiph for ipad?
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Hi folks,
Looking at xbmc playing *.ogg files on the ipad I wonder if it would be
possible to port Xiph to ios?
Regards
Harri
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.11 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/
iEYEARECAAYFAk2Nt2MACgkQUTlbRTxpHjeKCwCeKrJysjJ5k0pdPQFef0Bzz2uQ
2017 Jun 26
1
mirror block devices
Hi folks,
I have to migrate a set of iscsi backstores to a new target via network.
To reduce downtime I would like to mirror the active volumes first, next
stop the initators, and then do a final incremental sync.
The backstores have a size between 256 GByte and 1 TByte each. In toto
its about 8 TByte.
Of course I have found the --copy-devices patch, but I wonder if this
works as expected? Is
2020 Sep 13
1
metaflac --show-all-tags (patch)
Hi folks,
I always wondered why there is no "metaflac --show-all-tags", in
parallel to --remove-all-tags. Attached you can find a patch for
your consideration. Sample output:
% metaflac --show-all-tags *.flac
01 Pigs on the wing (Part One).flac:ARTIST=Pink Floyd
01 Pigs on the wing (Part One).flac:TRACKNUMBER=01
01 Pigs on the wing (Part One).flac:ALBUM=Animals
01 Pigs on the wing
2016 Dec 12
2
deduplicate mode?
Have you considered to introduce a "deduplicate mode" for
rsync, replacing duplicate files in the destination directory
by hard links?
Of course there might be a lot of problems together with
this feature, but on creating backups it could help to
save a lot of disk space.
--link-dest might be interesting in this context, too.
Regards
Harri
2003 Feb 09
1
Logging of comments on keys
Hi,
during our usual work I found it anoying that one can not easily see
who logged in using public key authentication. In newer versions of
SSH the fingerprint of the public key gets logged, but who can tell
which key belongs to whom from his head?
So I wrote a little ad-hoc patch (vs. 3.5.p1) so that the comment
field on the keys in the authorized_keys[2] files get logged to make
life
2018 Jul 03
2
upgrade 7.4 --> 7.5: dbus broken
Hi folks,
after upgrading a Centos container (LXC) from 7.4 to 7.5 I got
this:
# systemctl status
Failed to get D-Bus connection: Connection refused
# busctl
Failed to connect to bus: Connection refused
# ps -ef | grep db[u]s
dbus 55 1 0 Jul02 ? 00:00:00 /usr/bin/dbus-daemon --system --address=systemd: --nofork --nopidfile --systemd-activation
# lsof -p 55
COMMAND PID
2005 Feb 07
2
tiny patch for klibc 0.198
Hi folks,
attached you can find a tiny patch for klibc-0.198
to get rid of the symbolic link pointing to the
kernel sources, and to get rid of some obsolete
rebuilds during incremental.
Feel free to include it.
Regards
Harri
-------------- next part --------------
diff -ur old/klibc-0.198/MCONFIG klibc-0.198/MCONFIG
--- old/klibc-0.198/MCONFIG 2004-10-14 06:32:24.000000000 +0200
+++
2007 Jul 13
1
Cygwin: store authorized_keys in /etc/ssh/user/authorized_keys?
Hi folks,
If I try to login on a Cygwin host via ssh, then my
.ssh on a network drive is unaccessible until I login.
I have to enter my password, even if my authorized_keys
would allow me to login without. This is fatal, since it
forces me to use an interactive session for working on a
Windows host. Unusable for automatic builds and tests
managed from a central machine, for example.
There is no
2014 Aug 27
3
CentOS 5 takes one second holding each keyboard key until it shows.
I used CentOS 5 for years. Suddenly, it takes one second holding a
keyboard key until it shows on the screen:
# uname -a
Linux nitrogen 2.6.18-371.11.1.el5PAE #1 SMP Wed Jul 23 15:54:19 EDT
2014 i686 i686 i386 GNU/Linux
# xset -q
Keyboard Control:
auto repeat: off key click percent: 50 LED mask: 00000000
auto repeat delay: 660 repeat rate: 25
auto repeating keys:
2010 Jan 22
1
config file option to switch off CONDSTORE support?
Hi folks,
Is there some config file option to switch off CONDSTORE
support?
Of course I checked the manual on the Wiki, but I haven't
seen CONDSTORE mentioned at all. Forgive me if I am too
blind to see.
Many thanx
Harri
2004 Nov 01
2
New to this list, and a first question
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Hi folks,
I just signed up klibc, and started playing with it.
Building it was just a matter of some minutes. Next step was
to copy all the built shared libs and executables into an
empty directory tree (/bin and /lib) and to do a chroot into
it. I've got a prompt, ash seems to be working, 'zcat -h'
works, but others (e.g. sleep, cat)