[Cloud] Re: LLM services

2025-01-10 Thread Arturo Borrero Gonzalez
On 1/10/25 05:21, Huji Lee wrote: Hi all, Are there any LLMs available on Cloud services, or are there any plans for them? I think there are many possible use cases. Even free, lightweight LLMs (like LLaMa) could be helpful, e.g. in bots that review edits, categorize pages, etc. Hi Huji,

Debian LTS and ELTS report: December 2024

2025-01-01 Thread Arturo Borrero Gonzalez
Hello, This is my December 2024 monthly report for the Freexian LTS/ELTS [1] initiative. Many thanks to Freexian and sponsors [2] for providing this opportunity! ELTS: I spent all of my time this month working on activemq for Jessie. Some highlights: * CVE-2020-13920 -- patch backport co

Debian LTS & ELTS report -- November 2024

2024-11-30 Thread Arturo Borrero Gonzalez
Hello, This is my November 2024 monthly report for the Freexian LTS/ELTS [1] initiative. Many thanks to Freexian and sponsors [2] for providing this opportunity! ELTS: I spent most of my time this month working on ELTS releases (Jessie, Stretch, Buster), with the activemq package. Some

about CVE-2022-41678 in activemq 5.6.0

2024-11-24 Thread Arturo Borrero Gonzalez
Hi there, As part of the debian (E)LTS initiative, I'm working on trying to fix CVE-2022-41678 on the activemq packages in Debian. In particular, I'm interested in Debian Jessie and activemq 5.6.0. The patch [0] to correct the jolokia config doesn't apply to the source code we have in Debian

about CVE-2022-41678 in activemq 5.6.0

2024-11-24 Thread Arturo Borrero Gonzalez
Hi there, As part of the debian (E)LTS initiative, I'm working on trying to fix CVE-2022-41678 on the activemq packages in Debian. In particular, I'm interested in Debian Jessie and activemq 5.6.0. The patch [0] to correct the jolokia config doesn't apply to the source code we have in Debian

patch for CVE-2023-46604 on activemq 5.6.0

2024-11-24 Thread Arturo Borrero Gonzalez
Hi there, I'm looking for a fix for CVE-2023-46604 in activemq 5.6.0. The patch that is published [0] does not apply to 5.6.0, and I would like you to either: * provide a patch that applies to the source tree in activemq 5.6.0 * confirm if the bug does not apply to activemq 5.6.0 regards. [0

Debian LTS & ELTS report -- October 2024

2024-10-31 Thread Arturo Borrero Gonzalez
Hello, This is my October 2024 monthly report for the Freexian LTS/ELTS [1] initiative. Many thanks to Freexian and sponsors [2] for providing this opportunity! LTS: I spent most of the time working on the nss package for Debian Bullseye, plus some work to sync security changes with Debian

Re: CVE-2024-6602 & CVE-2024-6609 nss for debian/buster

2024-10-31 Thread Arturo Borrero Gonzalez
On 10/29/24 18:19, Arturo Borrero Gonzalez wrote: Hi Chris, the work has been done already.  Packages with the patches will be uploaded soon. Offering more information here. There are uploads scheduled for all ELTS releases: * buster * stretch * jessie The git repository contains all

Re: CVE-2024-6602 & CVE-2024-6609 nss for debian/buster

2024-10-29 Thread Arturo Borrero Gonzalez
Hi Chris, the work has been done already. Packages with the patches will be uploaded soon. regards. -- Forwarded message - From: Chris Frey Date: Tue, Oct 29, 2024, 08:36 Subject: CVE-2024-6602 & CVE-2024-6609 nss for debian/buster To: Just in case anyone else is in the same

[SECURITY] [DLA 3937-1] nss security update

2024-10-28 Thread Arturo Borrero Gonzalez
-BEGIN PGP SIGNED MESSAGE- Hash: SHA256 - - Debian LTS Advisory DLA-3937-1debian-...@lists.debian.org https://www.debian.org/lts/security/ Arturo Borrero Gonzalez October 27, 2024

Re: CVE-2024-7531/nss for debian/bullseye LTS

2024-10-27 Thread Arturo Borrero Gonzalez
On 10/25/24 14:32, Santiago Ruano Rincón wrote: I am not subscribed to dev-tech-crypto, and I don't have access to https://bugzilla.mozilla.org/show_bug.cgi?id=1905691. Even if the bug reference found at https://www.mozilla.org/en-US/security/advisories/mfsa2024-33/#CVE-2024-7531 matches the d

Re: [dev-tech-crypto] about CVE-2024-7531 for nss 3.61 in Debian Bullseye

2024-10-27 Thread Arturo Borrero Gonzalez
El miércoles, 23 de octubre de 2024 a las 21:52:57 UTC+2, John Schanck escribió: Hi Arturo, NSS 3.61 is not affected. The bug was introduced in 3.72. Hi John, thanks for this information, it is really valuable for us. Additionally, I would like to double check if this patch [0] is the fix

Re: CVE-2024-7531/nss for debian/bullseye LTS

2024-10-24 Thread Arturo Borrero Gonzalez
Hi, On 10/23/24 23:48, Santiago Ruano Rincón wrote: I added the reference to the commit that introduced the vulnerability after you committed it to the elts security tracker. I have no recollection of this. In any case, upstream confirmed [0] the vulnerability was introduced in nss 3.72. So

Re: CVE-2024-7531/nss for debian/bullseye LTS

2024-10-23 Thread Arturo Borrero Gonzalez
Hi, sorry for the late follow up. On 10/16/24 00:38, Santiago Ruano Rincón wrote: Again, you can also ask upstream. They are in a better position to tell you if the vulnerability is present in 3.61 or not. For the record, I have just now sent an email to upstream: https://groups.google.com/

[dev-tech-crypto] about CVE-2024-7531 for nss 3.61 in Debian Bullseye

2024-10-23 Thread Arturo Borrero Gonzalez
Hi there, I'm interesting in having a patch for CVE-2024-7531 available for the nss version we have in Debian Bullseye (nss 3.61). We have some information [0] about the code that introduced the vulnerability [1] and the patch that fixes it [2], but the patch does not apply cleanly to the code

[Cloud] Re: Fwd: [Cloud VPS alert][wikispeech] Puppet failure on producer.wikispeech.eqiad1.wikimedia.cloud (172.16.0.200)

2024-10-22 Thread Arturo Borrero Gonzalez
On 10/22/24 12:13, Dreamy Jazz wrote: I also got this error today for my instance. Hi there, I can confirm there was a problem today with puppetservers because a Java upgrade. See here for details: https://phabricator.wikimedia.org/T377803 I think the problem should be solved now. regard

Re: CVE-2024-7531/nss for debian/bullseye LTS

2024-10-15 Thread Arturo Borrero Gonzalez
On 10/15/24 16:58, Santiago Ruano Rincón wrote: Moreover, I do see the code introduced by that change as part of 2:3.61-1+deb11u3, that relate to HACL* AVX2 support for different crypto algorithms. Could you please give more details about why do you say bullseye doesn't contain the affected code

CVE-2024-7531/nss for debian/bullseye LTS

2024-10-12 Thread Arturo Borrero Gonzalez
Hi there, this email is to propose we mark the nss package in debian bullseye as not affected by CVE-2024-7531 [0]. The upstream patch is clearly identified [1], but debian/bullseye [2] just doesn't contain the affected code. We did a similar thing for debian/{jessie,stretch,buster} already

[Cloud] Re: Request for my Cloud VPS project review

2024-09-30 Thread Arturo Borrero Gonzalez
On 9/30/24 02:57, Sulav K Shetri wrote: I had requested an new Cloud VPS project 6 days back and waiting for review or approval but it has been 6 days since my request but till now no one has reviewed it so I wanted to know when will be reviewed and this is the link of my request Request creati

Debian LTS & ELTS report -- September 2024

2024-09-29 Thread Arturo Borrero Gonzalez
Hello, This is my September 2024 monthly report for the Freexian LTS/ELTS [1] initiative. Many thanks to Freexian and sponsors [2] for providing this opportunity! LTS: I worked on the nss package for Debian Bullseye, with the following highlights: * briefly evaluated CVE-2023-5388, but t

[dev-tech-crypto] about CVE-2024-6609 for nss 3.61 in Debian Bullseye

2024-09-25 Thread Arturo Borrero Gonzalez
Hi there, I'm interested in having a patch for CVE-2024-6609 available for the nss version we have in Debian Bullseye (nss 3.61). We have a note [0] that mentions this: === 8< === To address CVE in older versions of src:nss what is needed is to add the error handling code (confirmed by upstrea

[dev-tech-crypto] Re: running nss tests/all.sh for Debian package

2024-09-23 Thread Arturo Borrero Gonzalez
El viernes, 13 de septiembre de 2024 a las 19:13:37 UTC+2, Arturo Borrero Gonzalez escribió: Hi there, I'm working on improving CI integration for the nss debian package. [...] If I'm reading the script correctly, it mostly expects to be executed in the context of a freshly-built

[dev-tech-crypto] running nss tests/all.sh for Debian package

2024-09-13 Thread Arturo Borrero Gonzalez
Hi there, I'm working on improving CI integration for the nss debian package. The nss testsuite (which can be run via tests/all.sh) contains a lot of test cases, and I would like to run this script from the debian CI infrastructure. Because the nss package in Debian can receive backported patc

Debian LTS & ELTS report -- August 2024

2024-08-28 Thread Arturo Borrero Gonzalez
Hello, This is my August 2024 monthly report for the Freexian LTS/ELTS [1] initiative. Many thanks to Freexian and sponsors [2] for providing this opportunity! LTS: I did not engage in any LTS activities this month. ELTS: I spent my available time this month working on two packages:

Debian LTS & ELTS -- June 2024

2024-08-01 Thread Arturo Borrero Gonzalez
Hello, Here is my July 2024 monthly report for the Freexian LTS/ELTS [1] initiative. Many thanks to Freexian and sponsors [2] for providing this opportunity! This month, again, I would like to thank Santiago for the assistance, review and support. LTS: I did not engage in any LTS activi

Bug#1076389: ITS: rpmlint

2024-07-15 Thread Arturo Borrero Gonzalez
Please go ahead, no need for delay. I have no time (or interest) in this package anymore. You may drop me from the maintainer list as well.

[Cloud-announce] Toolforge operation scheduled for 2024-07-16 @ 09:00 UTC

2024-07-12 Thread Arturo Borrero Gonzalez
Hi there, The Toolforge Kubernetes system has been scheduled to be upgraded to version 1.25 [0] next Tuesday 2024-07-17 @ 09:00 UTC. The operation window will last 2 hours, and during this time, some Toolforge components will briefly and intermittently become unavailable. Examples of things

[Cloud] Toolforge operation scheduled for 2024-07-16 @ 09:00 UTC

2024-07-12 Thread Arturo Borrero Gonzalez
Hi there, The Toolforge Kubernetes system has been scheduled to be upgraded to version 1.25 [0] next Tuesday 2024-07-17 @ 09:00 UTC. The operation window will last 2 hours, and during this time, some Toolforge components will briefly and intermittently become unavailable. Examples of things

Debian LTS & ELTS -- June 2024

2024-06-30 Thread Arturo Borrero Gonzalez
Hello, Here is my June 2024 monthly report for the Freexian LTS/ELTS [1] initiative. Many thanks to Freexian and sponsors [2] for providing this opportunity! Turns out, this was my first month working on the LTS/ELTS projects, and I would like to thank Santiago for the assistance, review, suppo

Debian LTS & ELTS -- June 2024

2024-06-30 Thread Arturo Borrero Gonzalez
Hello, Here is my June 2024 monthly report for the Freexian LTS/ELTS [1] initiative. Many thanks to Freexian and sponsors [2] for providing this opportunity! Turns out, this was my first month working on the LTS/ELTS projects, and I would like to thank Santiago for the assistance, review, suppo

[SECURITY] [DLA 3846-1] libmojolicious-perl security update

2024-06-30 Thread Arturo Borrero Gonzalez
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 - - Debian LTS Advisory DLA-3846-1debian-...@lists.debian.org https://www.debian.org/lts/security/ Arturo Borrero Gonzalez June 28, 2024

Re: [dev-tech-crypto] about CVE-2023-6125 in nss 3.42.1 in Debian Buster

2024-06-27 Thread Arturo Borrero Gonzalez
On 6/27/24 21:12, John Schanck wrote: Hi Arturo, we don't plan on backporting any of the patches for CVE-2023-6135 to the NSS 3.90 branch at this time. The patches you linked to are, unfortunately, not sufficient to fix the issue. Short of copying the entire lib/freebl/ecl directory from NSS 3.1

[Cloud-announce] Toolforge: introducing new security policy engine 2024-06-26 @ 08:30 UTZ

2024-06-25 Thread Arturo Borrero Gonzalez
Hi there, tomorrow 2024-06-26 @ 08:30Z we will start enforcing new Kubernetes security rules in Toolforge [0]. We have taken measures to eliminate any user impact, but this being a potentially sensitive change, I wanted to send a heads up email. In a nut-shell, pod-related kubernetes resour

Re: [dev-tech-crypto] about CVE-2023-6125 in nss 3.42.1 in Debian Buster

2024-06-25 Thread Arturo Borrero Gonzalez
On 6/24/24 18:25, Dana Keeler wrote: To save others from potential confusion, the CVE in question is CVE-2023-6135, not 6125. Correct, there was a typo on my side. -- You received this message because you are subscribed to the Google Groups "dev-tech-crypto@mozilla.org" group. To unsubscrib

[dev-tech-crypto] about CVE-2023-6125 in nss 3.42.1 in Debian Buster

2024-06-23 Thread Arturo Borrero Gonzalez
Hi there, I am exploring how to fix CVE-2023-6125 in the nss package (version 3.42.1) in Debian Buster. There is a note from a Debian college saying that we should wait until you have backported the fix to the 3.90 series, but scanning your releases did not immediately showed to me where (if

[SECURITY] [DLA 3820-1] bluez security update

2024-05-25 Thread Arturo Borrero Gonzalez
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 - - Debian LTS Advisory DLA-3820-1debian-...@lists.debian.org https://www.debian.org/lts/security/ Arturo Borrero Gonzalez May 25, 2024

Bug#1069289: arguments to dbus_server_get_address() were incorrect, assertion "server != NULL" failed in file ../../../dbus/dbus-server.c line 840

2024-04-19 Thread Arturo Borrero Gonzalez
Source: sssd Version: 2.8.2-4 Severity: normal Tags: upstream Hi there, thanks for your work with the sssd packages, really appreciated. Today I found this assert that is preventing the sssd.service from starting: Apr 19 14:02:17 debian sssd[586]: Starting up Apr 19 14:02:17 debian sssd[586]: d

[Cloud-announce] Toolforge kubernetes upgrade to 1.24

2024-03-18 Thread Arturo Borrero Gonzalez
Hello! today we are upgrading Toolforge kubernetes to version 1.24. We are not expecting any outage, but some jobs and webservices may be automagically restarted as they get scheduled on different worker nodes. Please report any disruption that you may observe. This is tracked in phabricator

Bug#1064342: pulseaudio: a2dp-sink profile connect failed [...]: Protocol not available

2024-02-20 Thread Arturo Borrero Gonzalez
Package: pulseaudio Version: 16.1+dfsg1-3 Severity: normal Dear maintainer, thanks for your hard work with this package, it is really appreciated. Today, I hit a problem trying to pair a bluetooth headset. I got errors like `a2dp-sink profile connect failed [...]: Protocol not available`. Sear

Bug#1064342: pulseaudio: a2dp-sink profile connect failed [...]: Protocol not available

2024-02-20 Thread Arturo Borrero Gonzalez
Package: pulseaudio Version: 16.1+dfsg1-3 Severity: normal Dear maintainer, thanks for your hard work with this package, it is really appreciated. Today, I hit a problem trying to pair a bluetooth headset. I got errors like `a2dp-sink profile connect failed [...]: Protocol not available`. Sear

Bug#1064050: ITP: zellij -- a terminal workspace with batteries included

2024-02-16 Thread Arturo Borrero Gonzalez
Package: wnpp Severity: wishlist Owner: Arturo Borrero Gonzalez X-Debbugs-Cc: debian-de...@lists.debian.org * Package name: zellij Version : 0.39.2 Upstream Contact: Aram Drevekenin * URL : https://zellij.dev/ * License : MIT Programming Lang: Rust

Bug#1064050: ITP: zellij -- a terminal workspace with batteries included

2024-02-16 Thread Arturo Borrero Gonzalez
Package: wnpp Severity: wishlist Owner: Arturo Borrero Gonzalez X-Debbugs-Cc: debian-de...@lists.debian.org * Package name: zellij Version : 0.39.2 Upstream Contact: Aram Drevekenin * URL : https://zellij.dev/ * License : MIT Programming Lang: Rust

Bug#1057189: nftables FTCBFS: missing build dependency on python development package

2023-12-01 Thread Arturo Borrero Gonzalez
On 12/1/23 09:29, Helmut Grohne wrote: Source: nftables Version: 1.0.8-1 Severity: important Tags: patch User: debian-cr...@lists.debian.org Usertags: ftcbfs nftables fails to cross build from source, because Python development files cannot be found while building a Python extension. You are mis

Bug#1036165: ITP: atuin -- Rich shell history using a SQLite database with optional encrypted sync

2023-11-16 Thread Arturo Borrero Gonzalez
On Tue, 16 May 2023 18:01:52 +0800 Blair Noctis wrote: Package: wnpp Severity: wishlist Owner: Blair Noctis X-Debbugs-Cc: debian-de...@lists.debian.org, n...@sail.ng * Package name: atuin Version : 14.0.1 Upstream Contact: Ellie Huxtable * URL : https://atuin.sh/ *

Bug#1036165: ITP: atuin -- Rich shell history using a SQLite database with optional encrypted sync

2023-11-16 Thread Arturo Borrero Gonzalez
On Tue, 16 May 2023 18:01:52 +0800 Blair Noctis wrote: Package: wnpp Severity: wishlist Owner: Blair Noctis X-Debbugs-Cc: debian-de...@lists.debian.org, n...@sail.ng * Package name: atuin Version : 14.0.1 Upstream Contact: Ellie Huxtable * URL : https://atuin.sh/ *

Bug#1053564: Acknowledgement (nftables: nft freeze after some times, probably as a result of excessive use of named set)

2023-10-24 Thread Arturo Borrero Gonzalez
On 10/24/23 10:20, Daniel Haryo Sugondo wrote: Dear maintainer the problem with named set makes the system unusable. I would be so thankful, if you can give me some hints, what's wrong with the behavior since Debian12. Hi Daniel, this sounds to me like a bug in the nf_tables linux kernel s

Bug#944748: [pkg-netfilter-team] Bug#944748: nftables: no init script

2023-10-20 Thread Arturo Borrero Gonzalez
On Fri, 20 Oct 2023 11:35:38 +0200 Magnus Holmgren wrote: Reminder that this bug isn't about building support for saving the currently loaded ruleset to a file and reloading it after reboot, only about adding a minimal init script that does the same job as the existing systemd unit. There

[Cloud] Network maintenance happening now

2023-10-05 Thread Arturo Borrero Gonzalez
Hi, there is a network maintenance work happening at the moment. For the next few minutes, expect some brief network connectivity problems. See also: https://phabricator.wikimedia.org/T347469 regards. -- Arturo Borrero Gonzalez Senior SRE / Wikimedia Cloud Services Wikimedia Foundation

[Cloud-announce] Network maintenance happening now

2023-10-05 Thread Arturo Borrero Gonzalez
Hi, there is a network maintenance work happening at the moment. For the next few minutes, expect some brief network connectivity problems. See also: https://phabricator.wikimedia.org/T347469 regards. -- Arturo Borrero Gonzalez Senior SRE / Wikimedia Cloud Services Wikimedia Foundation

Bug#1051592: Regression: Commit "netfilter: nf_tables: disallow rule addition to bound chain via NFTA_RULE_CHAIN_ID" breaks ruleset loading in linux-stable

2023-09-25 Thread Arturo Borrero Gonzalez
On 9/24/23 13:48, Salvatore Bonaccorso wrote: The work for bookworm has been done, but for bullseye: would you be able to help here and prepare the fixes? Unfortunatlly the fixes will not apply cleanly. If we fear to much breakage, maybe upstream can be convinced to help? Hi Salvatore, I

Bug#1051592: Regression: Commit "netfilter: nf_tables: disallow rule addition to bound chain via NFTA_RULE_CHAIN_ID" breaks ruleset loading in linux-stable

2023-09-25 Thread Arturo Borrero Gonzalez
On 9/24/23 13:48, Salvatore Bonaccorso wrote: The work for bookworm has been done, but for bullseye: would you be able to help here and prepare the fixes? Unfortunatlly the fixes will not apply cleanly. If we fear to much breakage, maybe upstream can be convinced to help? Hi Salvatore, I

[Cloud] Cloud VPS maintenance today 2023-09-20

2023-09-20 Thread Arturo Borrero Gonzalez
during the operations. Virtual machines should keep running unaffected, and the same for Toolforge tools. See also: https://phabricator.wikimedia.org/T346439 regards. -- Arturo Borrero Gonzalez Senior SRE / Wikimedia Cloud Services Wikimedia Foundation

[Cloud-announce] Cloud VPS maintenance today 2023-09-20

2023-09-20 Thread Arturo Borrero Gonzalez
during the operations. Virtual machines should keep running unaffected, and the same for Toolforge tools. See also: https://phabricator.wikimedia.org/T346439 regards. -- Arturo Borrero Gonzalez Senior SRE / Wikimedia Cloud Services Wikimedia Foundation

Bug#1051592: Regression: Commit "netfilter: nf_tables: disallow rule addition to bound chain via NFTA_RULE_CHAIN_ID" breaks ruleset loading in linux-stable

2023-09-16 Thread Arturo Borrero Gonzalez
On Sat, Sep 16, 2023, 08:37 Salvatore Bonaccorso wrote: > Hi > > Dropping some recipients for the Debian specific handling of this > issue. So AFAIU upstream will not consider this on src:linux side to > be further handled and needs to be addressed in nftables. > > Arturo: With the patches provid

Bug#1051592: Regression: Commit "netfilter: nf_tables: disallow rule addition to bound chain via NFTA_RULE_CHAIN_ID" breaks ruleset loading in linux-stable

2023-09-16 Thread Arturo Borrero Gonzalez
On Sat, Sep 16, 2023, 08:37 Salvatore Bonaccorso wrote: > Hi > > Dropping some recipients for the Debian specific handling of this > issue. So AFAIU upstream will not consider this on src:linux side to > be further handled and needs to be addressed in nftables. > > Arturo: With the patches provid

[Cloud] Cloud VPS DNS resolver on some unmaintained virtual machines

2023-09-15 Thread Arturo Borrero Gonzalez
g/wiki/Help:Cloud_Services_introduction#Communication_and_support -- Arturo Borrero Gonzalez Senior SRE / Wikimedia Cloud Services Wikimedia Foundation ___ Cloud mailing list -- cloud@lists.wikimedia.org List information: https://lists.wikimedia.org/postorius

[Cloud-announce] Cloud VPS DNS resolver on some unmaintained virtual machines

2023-09-15 Thread Arturo Borrero Gonzalez
g/wiki/Help:Cloud_Services_introduction#Communication_and_support -- Arturo Borrero Gonzalez Senior SRE / Wikimedia Cloud Services Wikimedia Foundation ___ Cloud-announce mailing list -- cloud-announce@lists.wikimedia.org List information:

[Cloud-announce] Cloud VPS DNS operations today

2023-09-11 Thread Arturo Borrero Gonzalez
/T342621 eqiad1: cloudlb: transition DNS clients (VMs) to the new BGP-based recursor VIP regards. -- Arturo Borrero Gonzalez Senior SRE / Wikimedia Cloud Services Wikimedia Foundation ___ Cloud-announce mailing list -- cloud-announce@lists.wikimedia.org List

[Cloud] Cloud VPS DNS operations today

2023-09-11 Thread Arturo Borrero Gonzalez
/T342621 eqiad1: cloudlb: transition DNS clients (VMs) to the new BGP-based recursor VIP regards. -- Arturo Borrero Gonzalez Senior SRE / Wikimedia Cloud Services Wikimedia Foundation ___ Cloud mailing list -- cloud@lists.wikimedia.org List information: https

Re: Help with the nftables package: the embedded python module

2023-07-31 Thread Arturo Borrero Gonzalez
On Sun, Jul 30, 2023, 21:39 Jeremy Sowden wrote: > On 2023-07-28, at 18:59:45 +0200, Timo Röhling wrote: > > * Arturo Borrero Gonzalez [2023-07-28 18:38]: > > > I would appreciate additional suggestions and hints. Patches welcome. > > > > If you have bad interacti

Help with the nftables package: the embedded python module

2023-07-28 Thread Arturo Borrero Gonzalez
Hi there, the nftables source package contains a python module (the python binding for libnftables). Source code: https://salsa.debian.org/pkg-netfilter-team/pkg-nftables Recently, and because python & setuptools deprecation issues, the python side of package that has been working for ages,

Bug#1039573: cannot authenticate after lock: pam_unix(lightdm:auth): auth could not identify password

2023-06-30 Thread Arturo Borrero Gonzalez
On Wed, 28 Jun 2023 10:58:39 +0200 Arturo Borrero Gonzalez wrote: Thanks for the follow up, I'll keep you updated in the next few days. I have not experienced this problem again since the update.

Bug#1039573: cannot authenticate after lock: pam_unix(lightdm:auth): auth could not identify password

2023-06-30 Thread Arturo Borrero Gonzalez
On Wed, 28 Jun 2023 10:58:39 +0200 Arturo Borrero Gonzalez wrote: Thanks for the follow up, I'll keep you updated in the next few days. I have not experienced this problem again since the update.

Bug#1039573: cannot authenticate after lock: pam_unix(lightdm:auth): auth could not identify password

2023-06-28 Thread Arturo Borrero Gonzalez
On 6/27/23 18:14, Yves-Alexis Perez wrote: On Tue, 2023-06-27 at 12:22 +0200, Arturo Borrero Gonzalez wrote: I just upgraded lightdm from 1.26.0-8 to 1.32.0-2 and now the greeter wont let me login after a session lock (like a laptop suspend or CTRL+ALT+L on xfce4). This can be found in

Bug#1039573: cannot authenticate after lock: pam_unix(lightdm:auth): auth could not identify password

2023-06-28 Thread Arturo Borrero Gonzalez
On 6/27/23 18:14, Yves-Alexis Perez wrote: On Tue, 2023-06-27 at 12:22 +0200, Arturo Borrero Gonzalez wrote: I just upgraded lightdm from 1.26.0-8 to 1.32.0-2 and now the greeter wont let me login after a session lock (like a laptop suspend or CTRL+ALT+L on xfce4). This can be found in

Bug#1039573: cannot authenticate after lock: pam_unix(lightdm:auth): auth could not identify password

2023-06-27 Thread Arturo Borrero Gonzalez
Package: lightdm Version: 1.32.0-2 Severity: important Hi there! Thanks for your hard work with this package, it is really appreciated. I just upgraded lightdm from 1.26.0-8 to 1.32.0-2 and now the greeter wont let me login after a session lock (like a laptop suspend or CTRL+ALT+L on xfce4). T

Bug#1039573: cannot authenticate after lock: pam_unix(lightdm:auth): auth could not identify password

2023-06-27 Thread Arturo Borrero Gonzalez
Package: lightdm Version: 1.32.0-2 Severity: important Hi there! Thanks for your hard work with this package, it is really appreciated. I just upgraded lightdm from 1.26.0-8 to 1.32.0-2 and now the greeter wont let me login after a session lock (like a laptop suspend or CTRL+ALT+L on xfce4). T

Bug#1038727: bookworm-pu: package nftables/1.0.6-2+deb12u1

2023-06-20 Thread Arturo Borrero Gonzalez
debian-bug-1038724.patch (Closes: #1038724) + + -- Arturo Borrero Gonzalez Tue, 20 Jun 2023 16:55:52 +0200 + nftables (1.0.6-2) unstable; urgency=medium [ Jeremy Sowden ] diff -Nru nftables-1.0.6/debian/patches/0001-debian-bug-1038724.patch nftables-1.0.6/debian/patches/0001-debian

Bug#1038727: bookworm-pu: package nftables/1.0.6-2+deb12u1

2023-06-20 Thread Arturo Borrero Gonzalez
debian-bug-1038724.patch (Closes: #1038724) + + -- Arturo Borrero Gonzalez Tue, 20 Jun 2023 16:55:52 +0200 + nftables (1.0.6-2) unstable; urgency=medium [ Jeremy Sowden ] diff -Nru nftables-1.0.6/debian/patches/0001-debian-bug-1038724.patch nftables-1.0.6/debian/patches/0001-debian

Bug#1038724: regression: nft list sets changed behavior

2023-06-20 Thread Arturo Borrero Gonzalez
Package: nftables Version: 1.0.6-2 Severity: important Tags: upstream It has been reported that the nftables package version >1.0.0 introduces a behavior regression related to listing sets. === 8< === After updating to Debian 12 my tools relying on 'nft -j list sets' fail. It now does not includ

Bug#1032248: Bug seems fixed

2023-05-02 Thread Arturo Borrero Gonzalez
Control: fixed -1 525.105.17-1 Hi there, after the recent upgrade to 525.105.17-1 I'm no longer observing the problem in my system. Marking bug as resolved, will reopen if is a false positive. thanks!

Bug#1034819: nft default disabled

2023-04-26 Thread Arturo Borrero Gonzalez
reassign 1034819 debian-installer On Tue, 25 Apr 2023 11:27:56 +0200 Bonno Bloksma wrote: Package: d-i Severity: minor Dear Maintainer, Testing with a new Debian bookworm install, downloaded apr 24 2023, I noticed my nftables.conf firewall configuration never gets loaded. After some testin

[Cloud] [Cloud-announce] Re: Toolforge Kubernetes upgrade on 2023-04-03 (new date: 2023-04-10)

2023-04-10 Thread Arturo Borrero Gonzalez
On 3/30/23 12:42, Arturo Borrero Gonzalez wrote: On 3/28/23 00:13, Taavi Väänänen wrote: Hi, We will be upgrading the Toolforge Kubernetes cluster next Monday (2023-04-03) starting at around 10:00 UTC. The expected impact is that tools running on the Kubernetes cluster will get restarted a

[Cloud-announce] Re: Toolforge Kubernetes upgrade on 2023-04-03 (new date: 2023-04-10)

2023-04-10 Thread Arturo Borrero Gonzalez
On 3/30/23 12:42, Arturo Borrero Gonzalez wrote: On 3/28/23 00:13, Taavi Väänänen wrote: Hi, We will be upgrading the Toolforge Kubernetes cluster next Monday (2023-04-03) starting at around 10:00 UTC. The expected impact is that tools running on the Kubernetes cluster will get restarted a

[Cloud] [Cloud-announce] Re: Toolforge Kubernetes upgrade on 2023-04-03 (new date: 2023-04-10)

2023-03-30 Thread Arturo Borrero Gonzalez
;re on the latest available versions. The vast majority of tools that are only using the Jobs framework and/or the webservice command are not affected by these changes. This has been rescheduled to Monday 2023-04-10 to leave room for the other operations we have. regards. -- Arturo Borrero Gonza

[Cloud-announce] Re: Toolforge Kubernetes upgrade on 2023-04-03 (new date: 2023-04-10)

2023-03-30 Thread Arturo Borrero Gonzalez
;re on the latest available versions. The vast majority of tools that are only using the Jobs framework and/or the webservice command are not affected by these changes. This has been rescheduled to Monday 2023-04-10 to leave room for the other operations we have. regards. -- Arturo Borrero Gonza

Bug#1031943: [pkg-netfilter-team] Bug#1031943: Should we do something?

2023-03-23 Thread Arturo Borrero Gonzalez
control: severity -1 important On 3/23/23 16:18, Jeremy Sowden wrote: On 2023-03-23, at 15:58:45 +0100, Alberto Molina Coballes wrote: I agree with Arturo, the proposed change should be harmless, but we were not able to reproduce the issue in any of the test performed so I was thinking to lower

Bug#1031943: [pkg-netfilter-team] Bug#1031943: Should we do something?

2023-03-23 Thread Arturo Borrero Gonzalez
control: severity -1 important On 3/23/23 16:18, Jeremy Sowden wrote: On 2023-03-23, at 15:58:45 +0100, Alberto Molina Coballes wrote: I agree with Arturo, the proposed change should be harmless, but we were not able to reproduce the issue in any of the test performed so I was thinking to lower

Bug#1031943: Should we do something?

2023-03-23 Thread Arturo Borrero Gonzalez
On Thu, 23 Mar 2023 09:46:05 +0100 Thomas Goirand wrote: Hi, It's been a month since the last entry in this bug, with nobody able to reproduce the bug, and no answer from original submitter. Shall we: - close the bug? - lower severity? - apply the patch? Introducing the proposed change sho

Bug#1031943: Should we do something?

2023-03-23 Thread Arturo Borrero Gonzalez
On Thu, 23 Mar 2023 09:46:05 +0100 Thomas Goirand wrote: Hi, It's been a month since the last entry in this bug, with nobody able to reproduce the bug, and no answer from original submitter. Shall we: - close the bug? - lower severity? - apply the patch? Introducing the proposed change sho

[Cloud] Toolforge: brief network maintenance today 2023-03-06

2023-03-06 Thread Arturo Borrero Gonzalez
gards. [0] https://phabricator.wikimedia.org/T328539 -- Arturo Borrero Gonzalez Senior SRE / Wikimedia Cloud Services Wikimedia Foundation ___ Cloud mailing list -- cloud@lists.wikimedia.org List information: https://lists.wikimedia.org/postorius/

[Cloud-announce] Toolforge: brief network maintenance today 2023-03-06

2023-03-06 Thread Arturo Borrero Gonzalez
gards. [0] https://phabricator.wikimedia.org/T328539 -- Arturo Borrero Gonzalez Senior SRE / Wikimedia Cloud Services Wikimedia Foundation ___ Cloud-announce mailing list -- cloud-announce@lists.wikimedia.org List information: https://lists.wikimedi

Bug#1032248: nvidia-modeset: ERROR: GPU:0: Idling display engine timed out

2023-03-02 Thread Arturo Borrero Gonzalez
Source: nvidia-graphics-drivers Version: 525.85.12-1 Severity: important Tags: upstream Dear maintainers, thanks for your hard work with this complex package, really appreciated. After a recent update to the 525 series, my external monitors freeze randomly, and this message can be see in the dm

Bug#1030684: libvirtd: apparmor DENIED for /etc/ssl/openssl.cnf results in VM paused with IO error

2023-02-06 Thread Arturo Borrero Gonzalez
control: retitle -1 libvirtd: apparmor DENIED for /etc/ssl/openssl.cnf On Mon, 06 Feb 2023 14:29:42 +0100 Arturo Borrero Gonzalez wrote:> When checking the `dmesg` utility, I found and apparmor DENIED entry: audit: type=1400 audit(1675687963.952:121): apparmor="DENIED" op

Bug#1030684: libvirtd: apparmor DENIED for /etc/ssl/openssl.cnf results in VM paused with IO error

2023-02-06 Thread Arturo Borrero Gonzalez
Package: libvirt-daemon-system Version: 9.0.0-1 Severity: normal Dear maintainers, thanks for your work with this package, really appreciated. Today, working with libvirt/virt-manager in a freshly installed Debian Testing system (bookwoorm) I installed a virtual machine that would pause on its

Bug#1030671: g_hash_table_unref: assertion 'hash_table != NULL' failed

2023-02-06 Thread Arturo Borrero Gonzalez
Package: libvirt-daemon Version: 9.0.0-1 Severity: normal Tags: upstream Dear maintainers, thanks for your work with this key package, really appreciated. I installed the latest version of libvirt today and saw an assertion on the logs: [..] Feb 06 12:26:55 nostromo systemd[1]: Starting libvir

[Cloud] New toolforge-jobs features

2023-01-24 Thread Arturo Borrero Gonzalez
s, in particular Taavi (community member) and Raymond (WMF contractor). Happy `toolforging`. Regards. -- Arturo Borrero Gonzalez Senior SRE / Wikimedia Cloud Services Wikimedia Foundation ___ Cloud mailing list -- cloud@lists.wikimedia.org List inform

[Cloud-announce] New toolforge-jobs features

2023-01-24 Thread Arturo Borrero Gonzalez
s, in particular Taavi (community member) and Raymond (WMF contractor). Happy `toolforging`. Regards. -- Arturo Borrero Gonzalez Senior SRE / Wikimedia Cloud Services Wikimedia Foundation ___ Cloud-announce mailing list -- cloud-announce@lists.wikimedia.org

[Yahoo-eng-team] [Bug 2003534] [NEW] neutron-keepalived-state-change unconditional debug mode

2023-01-20 Thread Arturo Borrero Gonzalez
Public bug reported: In line https://opendev.org/openstack/neutron/src/branch/master/neutron/agent/l3/keepalived_state_change.py#L172 there is a `conf.set_override('debug', True)` which enables debug mode for neutron-keepalived-state-change. This means any setup by the operator in the configurati

[Cloud-announce] Toolforge jobs: briefly maintenance today 2023-01-10 @ 11:30 UTC

2023-01-10 Thread Arturo Borrero Gonzalez
less). During that time, using the toolforge-jobs command line interface will most likely fail. regards. [0] https://wikitech.wikimedia.org/wiki/Help:Toolforge/Jobs_framework -- Arturo Borrero Gonzalez Senior SRE / Wikimedia Cloud Services Wikimedia Foundation

[Cloud] Toolforge jobs: briefly maintenance today 2023-01-10 @ 11:30 UTC

2023-01-10 Thread Arturo Borrero Gonzalez
less). During that time, using the toolforge-jobs command line interface will most likely fail. regards. [0] https://wikitech.wikimedia.org/wiki/Help:Toolforge/Jobs_framework -- Arturo Borrero Gonzalez Senior SRE / Wikimedia Cloud Services Wikimedia Foundation

[Cloud] Puppet error emails on 2022-11-28

2022-11-29 Thread Arturo Borrero Gonzalez
;, and "No exceptions happened". There was a problem in the way the puppet errors were calculated that has been now fixed [0]. This does not affect Toolforge. sorry for the noise, regards. [0] https://gerrit.wikimedia.org/r/c/operations/puppet/+/861805/ -- Arturo Borrero Gonzalez Sen

[Cloud-announce] Puppet error emails on 2022-11-28

2022-11-29 Thread Arturo Borrero Gonzalez
;, and "No exceptions happened". There was a problem in the way the puppet errors were calculated that has been now fixed [0]. This does not affect Toolforge. sorry for the noise, regards. [0] https://gerrit.wikimedia.org/r/c/operations/puppet/+/861805/ -- Arturo Borrero Gonzalez Sen

[Cloud] Some Cloud VPS virtual machines briefly unavailable today (and rebooted)

2022-11-22 Thread Arturo Borrero Gonzalez
a843286ea8 Name: toolsbeta-docker-imagebuilder-01 - ID: 416f445a-cad4-45c2-b32e-f17100f93eac Name: cloud-puppetmaster-05 - ID: 4e492051-25a3-4442-b8b9-1959f42917fe Name: tools-k8s-worker-76 - ID: df18863a-2da7-4951-aa69-936b3d889592 Name: deployment-docker-cpjobqueue01 -- Arturo Borrero Gonza

[Cloud-announce] Some Cloud VPS virtual machines briefly unavailable today (and rebooted)

2022-11-22 Thread Arturo Borrero Gonzalez
a843286ea8 Name: toolsbeta-docker-imagebuilder-01 - ID: 416f445a-cad4-45c2-b32e-f17100f93eac Name: cloud-puppetmaster-05 - ID: 4e492051-25a3-4442-b8b9-1959f42917fe Name: tools-k8s-worker-76 - ID: df18863a-2da7-4951-aa69-936b3d889592 Name: deployment-docker-cpjobqueue01 -- Arturo Borrero Gonza

[Cloud] [Cloud-announce] Re: Network maintenance

2022-10-06 Thread Arturo Borrero Gonzalez
On 10/6/22 12:04, Arturo Borrero Gonzalez wrote: Hi there, We are currently working on replacing older hardware servers with newer ones, in particular those dedicated to cloud networking [0]. We have discovered a few shortcomings related mostly to network interface naming in the newer

[Cloud-announce] Re: Network maintenance

2022-10-06 Thread Arturo Borrero Gonzalez
On 10/6/22 12:04, Arturo Borrero Gonzalez wrote: Hi there, We are currently working on replacing older hardware servers with newer ones, in particular those dedicated to cloud networking [0]. We have discovered a few shortcomings related mostly to network interface naming in the newer

Bug#989162: bridge-utils: ifupdown scripts should not unconditionally disable IPv6 on physical interface

2022-10-06 Thread Arturo Borrero Gonzalez
On Thu, 29 Sep 2022 14:33:29 +0200 Arturo Borrero Gonzalez wrote: Imagine this setup: eno1 -- physical base device eno1. -- vlan sub-interface eno1. -- vlan sub-interface br01 -- bridge device I add eno1. and eno1. to br01 as ports. I discovered that if use a more

[Cloud] [Cloud-announce] Network maintenance

2022-10-06 Thread Arturo Borrero Gonzalez
ide of the transition. I'll send another note when we finish this network maintenance is over. regards. [0] https://phabricator.wikimedia.org/T316284 [1] https://bugs.debian.org/989162 -- Arturo Borrero Gonzalez Senior Site Reliability Engineer Wikimedia Cloud Services Wikim

[Cloud-announce] Network maintenance

2022-10-06 Thread Arturo Borrero Gonzalez
ide of the transition. I'll send another note when we finish this network maintenance is over. regards. [0] https://phabricator.wikimedia.org/T316284 [1] https://bugs.debian.org/989162 -- Arturo Borrero Gonzalez Senior Site Reliability Engineer Wikimedia Cloud Services Wikim

  1   2   3   4   5   6   7   8   9   10   >