Re: [CentOS] Security Updates not properly flagged

2021-06-21 Thread Gordon Messmer

On 6/21/21 4:53 AM, Gionatan Danti wrote:
Historically the CentOS team refused to provide such metadata due to 
the added work required. Now with Stream, and the demise of classic 
CentOS, security updates are even less probable (ie: a rolling release 
is often wholly updated). 



CentOS Stream is not a rolling release.  It gets "rolling updates," but 
that just means that there are no point releases within a major release, 
and that updates aren't delayed in order to group rebased packages 
together at 6 month intervals.



___
CentOS mailing list
CentOS@centos.org
https://lists.centos.org/mailman/listinfo/centos


Re: [CentOS] An error occurred while processing your request.

2021-06-21 Thread Richard



> Date: Tuesday, June 22, 2021 05:39:45 +0530
> From: Kaushal Shriyan 
>
>> Hi,
>> 
>> I am facing the below issue while hitting
>> https://repo.ius.io/7/src/packages/p/
>> 
>> An error occurred while processing your request.
>> 
>> Reference #30.d5961160.1624319418.82c229
>> 
>> Please comment. Thanks in advance.

This is an IUS repository, and not something controlled by Centos or
RH (whose list you also posted multiple messages to). Please see the
IUS faq  on reporting issues, and related.


___
CentOS mailing list
CentOS@centos.org
https://lists.centos.org/mailman/listinfo/centos


Re: [CentOS] An error occurred while processing your request.

2021-06-21 Thread Kaushal Shriyan
On Tue, Jun 22, 2021 at 5:24 AM Kaushal Shriyan 
wrote:

> Hi,
>
> I am facing the below issue while hitting
> https://repo.ius.io/7/src/packages/p/
>
> An error occurred while processing your request.
>
> Reference #30.d5961160.1624319418.82c229
>
> Please comment. Thanks in advance.
>
>
> Best Regards,
>
>
> Kaushal
>


On Tue, Jun 22, 2021 at 5:23 AM Kaushal Shriyan 
wrote:

> Hi,
>
> I am facing the below issue while hitting
> https://repo.ius.io/7/src/packages/p/
>
> An error occurred while processing your request.
>
> Reference #30.d5961160.1624319418.82c229
>
> Please comment. Thanks in advance.
>
>
> Best Regards,
>
>
> Kaushal
>

Hi,

I am facing the below issue

yum -y install php74-pecl-zip.x86_64
> Loaded plugins: fastestmirror
> Loading mirror speeds from cached hostfile
> epel/x86_64/metalink
>
>   | 9.0 kB  00:00:00
>  * base: centos.excellmedia.net
>  * centos-sclo-rh: centos.excellmedia.net
>  * epel: download.nus.edu.sg
>  * extras: centos.excellmedia.net
>  * updates: centos.excellmedia.net
> base
>
>   | 3.6 kB  00:00:00
> centos-sclo-rh
>
>   | 3.0 kB  00:00:00
> epel
>
>   | 4.7 kB  00:00:00
> extras
>
>   | 2.9 kB  00:00:00
> ius
>
>| 1.3 kB  00:00:00
> lynis
>
>| 2.5 kB  00:00:00
> mysql-connectors-community
>
>   | 2.6 kB  00:00:00
> mysql-tools-community
>
>| 2.6 kB  00:00:00
> mysql56-community
>
>| 2.6 kB  00:00:00
> mysql57-community-dmr
>
>| 2.6 kB  00:00:00
> nginx
>
>| 2.9 kB  00:00:00
> updates
>
>| 2.9 kB  00:00:00
> (1/5): centos-sclo-rh/x86_64/primary_db
>
>| 3.1 MB  00:00:00
> (2/5): epel/x86_64/updateinfo
>
>| 1.0 MB  00:00:01
> (3/5): nginx/7/x86_64/primary_db
>
>   |  66 kB  00:00:00
> (4/5): updates/7/x86_64/primary_db
>
>   | 8.8 MB  00:00:01
> (5/5): epel/x86_64/primary_db
>
>| 6.9 MB  00:00:02
> Resolving Dependencies
> --> Running transaction check
> ---> Package php74-pecl-zip.x86_64 0:1.19.0-1.el7.ius will be installed
> --> Finished Dependency Resolution
> Dependencies Resolved
>
> 
>  Package  Arch
> Version
>  Repository Size
>
> 
> Installing:
>  php74-pecl-zip   x86_64
> 1.19.0-1.el7.ius
>   ius51 k
> Transaction Summary
>
> 
> Install  1 Package
> Total download size: 51 k
> Installed size: 131 k
> Downloading packages:
> php74-pecl-zip-1.19.0-1.el7.iu FAILED
>
> https://repo.ius.io/7/x86_64/packages/p/php74-pecl-zip-1.19.0-1.el7.ius.x86_64.rpm:
> [Errno 14] HTTPS Error 503 - Service Unavailable
>]  0.0 B/s |0 B  --:--:-- ETA
> Trying other mirror.
> php74-pecl-zip-1.19.0-1.el7.iu FAILED
>
> https://repo.ius.io/7/x86_64/packages/p/php74-pecl-zip-1.19.0-1.el7.ius.x86_64.rpm:
> [Errno 14] HTTPS Error 503 - Service Unavailable
>]  0.0 B/s |0 B  --:--:-- ETA
> Trying other mirror.
> php74-pecl-zip-1.19.0-1.el7.iu FAILED
>
> https://repo.ius.io/7/x86_64/packages/p/php74-pecl-zip-1.19.0-1.el7.ius.x86_64.rpm:
> [Errno 14] HTTPS Error 503 - Service Unavailable
>]  0.0 B/s |0 B  --:--:-- ETA
> Trying other mirror.
> php74-pecl-zip-1.19.0-1.el7.iu FAILED
>
> https://repo.ius.io/7/x86_64/packages/p/php74-pecl-zip-1.19.0-1.el7.ius.x86_64.rpm:
> [Errno 14] HTTPS Error 503 - Service Unavailable
>]  0.0 B/s |0 B  --:--:-- ETA
> Trying other mirror.
> php74-pecl-zip-1.19.0-1.el7.iu FAILED
>
> https://repo.ius.io/7/x86_64/packages/p/php74-pecl-zip-1.19.0-1.el7.ius.x86_64.rpm:
> [Errno 14] HTTPS Error 503 - Service Unavailable
>]  0.0 B/s |0 B  --:--:-- ETA
> Trying other mirror.
> php74-pecl-zip-1.19.0-1.el7.iu FAILED
>
> https://repo.ius.io/7/x86_64/packages/p/php74-pecl-zip-1.19.0-1.el7.ius.x86_64.rpm:
> [Errno 14] HTTPS Error 503 - Service Unavailable

[CentOS] An error occurred while processing your request.

2021-06-21 Thread Kaushal Shriyan
Hi,

I am facing the below issue while hitting
https://repo.ius.io/7/src/packages/p/

An error occurred while processing your request.

Reference #30.d5961160.1624319418.82c229

Please comment. Thanks in advance.


Best Regards,


Kaushal
___
CentOS mailing list
CentOS@centos.org
https://lists.centos.org/mailman/listinfo/centos


Re: [CentOS] EL8: openldap-servers migration to 389

2021-06-21 Thread Nikolaos Milas

On 21/6/2021 3:16 μ.μ., Leon Fauster via CentOS wrote:


Hey all,

in preparation to migrate an EL7 server I noticed that the
openldap-servers package is not shipped in EL8 anymore.

Is it possible to operate 389-ds as standalone ldap server? I am
asking this for the context of CentOS Linux because I read somewhere
that 389-ds is mainly used for RHDS only and unsure now about
the possibilities to substitute openldap-servers/slapd ...


I suggest you to use OpenLDAP packages from here:

   https://ltb-project.org/download

Alternatively, you could use:

   https://symas.com/symas-providing-openldap-support-redhat-installed-systems/

We have been using ltb-project packages and they work flawlessly for 
many years (since CentOS 6).


Cheers,
Nick



___
CentOS mailing list
CentOS@centos.org
https://lists.centos.org/mailman/listinfo/centos


Re: [CentOS] Security Updates not properly flagged

2021-06-21 Thread Simon Matter
> Sorry, I forgot to mention that I am using CENTOS 7.
> This should receive the Red Hat Update cycle releases until 2024, right?

Yes, but if you only want to install security related updates, you have to
select the packages on your own because CentOS doesn't provide such
metadata.

Regards,
Simon

>
> Regards,
> Thomas
>
> --
>
> Thomas Doczkal
> Snr System Engineer
>
>
> Socionext Europe GmbH
> pittlerstrasse 47
> 63225 langen, germany
> tel +49-6103-3745-386
> mobile +49-174-9226082
> fax +49-6103-3745-122
> thomas.docz...@socionext.com
> www.eu.socionext.com
> www.socionext.com
>
> Geschaeftsfuehrer/Managing Director: Toshihiko Tanaka, Dirk Weinsziehr,
> Koichi Otsuki, Yutaka Yoneyama
>
> Sitz/Seat: Langen, Hessen; Registergericht/Commercial Register:
> Offenbach/Main HRB 48005
>
>
> This e-mail and any attachment contains information
> which is private and confidential and is intended for
> the addressee only. If you are not an addressee, you
> are not authorized to read, copy or use the e-mail or
> any attachment. If you have received this e-mail in
> error, please notify the sender by return e-mail and
> then delete it.
>
>
> 
> From: CentOS  on behalf of Gionatan Danti
> 
> Sent: Monday, June 21, 2021 01:53 PM
> To: CentOS mailing list
> Subject: Re: [CentOS] Security Updates not properly flagged
>
> Il 2021-06-21 13:34 Pete Biggs ha scritto:
>> CentOS does not provide the metadata to allow the --security flag to
>> work.
>
> Right.
>
>> It doesn't provide it because that information from Redhat is
>> proprietary and not open source.
>
> This is not my understanding. From what I can see, updates which patches
> CVEs are freely readable on Red Has site. For example:
> CVE: https://access.redhat.com/security/cve/cve-2021-3156
> UPDATE: https://access.redhat.com/errata/RHSA-2021:0221
>
> Historically the CentOS team refused to provide such metadata due to the
> added work required. Now with Stream, and the demise of classic CentOS,
> security updates are even less probable (ie: a rolling release is often
> wholly updated).
>
> Regards.
>
> --
> Danti Gionatan
> Supporto Tecnico
> Assyoma S.r.l. - www.assyoma.it
> email: g.da...@assyoma.it - i...@assyoma.it
> GPG public key ID: FF5F32A8
> ___
> CentOS mailing list
> CentOS@centos.org
> https://lists.centos.org/mailman/listinfo/centos
> ___
> CentOS mailing list
> CentOS@centos.org
> https://lists.centos.org/mailman/listinfo/centos
>


___
CentOS mailing list
CentOS@centos.org
https://lists.centos.org/mailman/listinfo/centos


[CentOS-docs] [centos/centos.org] branch master updated (56813e3 -> 53eec10)

2021-06-21 Thread git
This is an automated email from the git hooks/post-receive script.

rbowen pushed a change to branch master
in repository centos/centos.org.

from 56813e3  Add new directors
 add 53eec10  correct version number

No new revisions were added by this update.

Summary of changes:
 _includes/centos-news.html | 2 +-
 1 file changed, 1 insertion(+), 1 deletion(-)

-- 
To stop receiving notification emails like this one, please contact
the administrator of this repository.
___
CentOS-docs mailing list
CentOS-docs@centos.org
https://lists.centos.org/mailman/listinfo/centos-docs


[CentOS] EL8: openldap-servers migration to 389

2021-06-21 Thread Leon Fauster via CentOS

Hey all,

in preparation to migrate an EL7 server I noticed that the
openldap-servers package is not shipped in EL8 anymore.

Is it possible to operate 389-ds as standalone ldap server? I am
asking this for the context of CentOS Linux because I read somewhere
that 389-ds is mainly used for RHDS only and unsure now about
the possibilities to substitute openldap-servers/slapd ...

--
Thanks
Leon
___
CentOS mailing list
CentOS@centos.org
https://lists.centos.org/mailman/listinfo/centos


Re: [CentOS] Security Updates not properly flagged

2021-06-21 Thread Lange, Markus
Hi,

freely does not imply free to redistribute. Of course these
informations are available from various sources which allow
redistribution, but it takes time to aggregate them - time that someone
need to spend doing the necessary research.

best regards,
Markus

On Mon, 2021-06-21 at 13:53 +0200, Gionatan Danti wrote:
> Il 2021-06-21 13:34 Pete Biggs ha scritto:
> > CentOS does not provide the metadata to allow the --security flag
> > to
> > work.
> 
> Right.
> 
> > It doesn't provide it because that information from Redhat is
> > proprietary and not open source.
> 
> This is not my understanding. From what I can see, updates which
> patches 
> CVEs are freely readable on Red Has site. For example:
> CVE: https://access.redhat.com/security/cve/cve-2021-3156
> UPDATE: https://access.redhat.com/errata/RHSA-2021:0221
> 
> Historically the CentOS team refused to provide such metadata due to
> the 
> added work required. Now with Stream, and the demise of classic
> CentOS, 
> security updates are even less probable (ie: a rolling release is
> often 
> wholly updated).
> 
> Regards.
> 
___
CentOS mailing list
CentOS@centos.org
https://lists.centos.org/mailman/listinfo/centos


Re: [CentOS] Security Updates not properly flagged

2021-06-21 Thread Doczkal, Thomas
Sorry, I forgot to mention that I am using CENTOS 7.
This should receive the Red Hat Update cycle releases until 2024, right?

Regards,
Thomas

--

Thomas Doczkal
Snr System Engineer


Socionext Europe GmbH
pittlerstrasse 47
63225 langen, germany
tel +49-6103-3745-386
mobile +49-174-9226082
fax +49-6103-3745-122
thomas.docz...@socionext.com
www.eu.socionext.com
www.socionext.com

Geschaeftsfuehrer/Managing Director: Toshihiko Tanaka, Dirk Weinsziehr,
Koichi Otsuki, Yutaka Yoneyama

Sitz/Seat: Langen, Hessen; Registergericht/Commercial Register:
Offenbach/Main HRB 48005


This e-mail and any attachment contains information
which is private and confidential and is intended for
the addressee only. If you are not an addressee, you
are not authorized to read, copy or use the e-mail or
any attachment. If you have received this e-mail in
error, please notify the sender by return e-mail and
then delete it.



From: CentOS  on behalf of Gionatan Danti 

Sent: Monday, June 21, 2021 01:53 PM
To: CentOS mailing list
Subject: Re: [CentOS] Security Updates not properly flagged

Il 2021-06-21 13:34 Pete Biggs ha scritto:
> CentOS does not provide the metadata to allow the --security flag to
> work.

Right.

> It doesn't provide it because that information from Redhat is
> proprietary and not open source.

This is not my understanding. From what I can see, updates which patches
CVEs are freely readable on Red Has site. For example:
CVE: https://access.redhat.com/security/cve/cve-2021-3156
UPDATE: https://access.redhat.com/errata/RHSA-2021:0221

Historically the CentOS team refused to provide such metadata due to the
added work required. Now with Stream, and the demise of classic CentOS,
security updates are even less probable (ie: a rolling release is often
wholly updated).

Regards.

--
Danti Gionatan
Supporto Tecnico
Assyoma S.r.l. - www.assyoma.it
email: g.da...@assyoma.it - i...@assyoma.it
GPG public key ID: FF5F32A8
___
CentOS mailing list
CentOS@centos.org
https://lists.centos.org/mailman/listinfo/centos
___
CentOS mailing list
CentOS@centos.org
https://lists.centos.org/mailman/listinfo/centos


Re: [CentOS] Security Updates not properly flagged

2021-06-21 Thread Gionatan Danti

Il 2021-06-21 13:34 Pete Biggs ha scritto:

CentOS does not provide the metadata to allow the --security flag to
work.


Right.


It doesn't provide it because that information from Redhat is
proprietary and not open source.


This is not my understanding. From what I can see, updates which patches 
CVEs are freely readable on Red Has site. For example:

CVE: https://access.redhat.com/security/cve/cve-2021-3156
UPDATE: https://access.redhat.com/errata/RHSA-2021:0221

Historically the CentOS team refused to provide such metadata due to the 
added work required. Now with Stream, and the demise of classic CentOS, 
security updates are even less probable (ie: a rolling release is often 
wholly updated).


Regards.

--
Danti Gionatan
Supporto Tecnico
Assyoma S.r.l. - www.assyoma.it
email: g.da...@assyoma.it - i...@assyoma.it
GPG public key ID: FF5F32A8
___
CentOS mailing list
CentOS@centos.org
https://lists.centos.org/mailman/listinfo/centos


Re: [CentOS] Security Updates not properly flagged

2021-06-21 Thread Pete Biggs
> 
> There are probably more security updates which should be installed by
> yum --security but those are the packages I am most interested in.
> 
> Please change as necessary to allow yum --security to work.
> 
CentOS does not provide the metadata to allow the --security flag to
work.

It doesn't provide it because that information from Redhat is
proprietary and not open source.

P.


___
CentOS mailing list
CentOS@centos.org
https://lists.centos.org/mailman/listinfo/centos


[CentOS] Security Updates not properly flagged

2021-06-21 Thread Doczkal, Thomas
Hi,

I assumed that it's possible to install security updates with "yum --security 
update".
On the centos-announce mailinglist and I have received several security updates 
recently.
Most are not relevant for us but glib2 and kernel are two we would like to 
address without updating the whole system.

Unfortunately both glib2 and kernel updates are filtered while running yum 
--security update

This is the output:
 --> glib2-2.56.1-9.el7_9.x86_64 from updates removed (updateinfo)
 --> kernel-3.10.0-1160.31.1.el7.x86_64 from updates removed (updateinfo)   

There are probably more security updates which should be installed by yum 
--security but those are the packages I am most interested in.

Please change as necessary to allow yum --security to work.

Many thanks.

Best Regards,
Thomas


--

Thomas Doczkal
Snr System Engineer


Socionext Europe GmbH
pittlerstrasse 47
63225 langen, germany
tel +49-6103-3745-386
mobile +49-174-9226082
fax +49-6103-3745-122
thomas.docz...@socionext.com
www.eu.socionext.com
www.socionext.com

Geschaeftsfuehrer/Managing Director: Toshihiko Tanaka, Dirk Weinsziehr,
Koichi Otsuki, Yutaka Yoneyama

Sitz/Seat: Langen, Hessen; Registergericht/Commercial Register:
Offenbach/Main HRB 48005


This e-mail and any attachment contains information
which is private and confidential and is intended for
the addressee only. If you are not an addressee, you
are not authorized to read, copy or use the e-mail or
any attachment. If you have received this e-mail in
error, please notify the sender by return e-mail and
then delete it.
___
CentOS mailing list
CentOS@centos.org
https://lists.centos.org/mailman/listinfo/centos