I have the IRC server up and running now.

hostname is: irc.socallinux.org  (specify the entire hostname)
Configure your connection to use SSL (TLSv1 or SSLv3) on port 9994 or 9999


I recommend installing the CAcert root (both the Main Class1 and Class3)
certs into your local CA certificate bundle.  (Or verify that your
operating system already has them.)

Your IRC client should be able to connect to irc.socallinux.org and show
the SSL session is OK and based on a valid certificate
(similar to this output from xchat)

*  Public key algorithm: rsaEncryption (2048 bits)
*   Sign algorithm sha1WithRSAEncryption
*   Valid since Dec  2 06:39:46 2009 GMT to Dec  2 06:39:46 2011 GMT
* * Cipher info:
*   Version: TLSv1/SSLv3, cipher AES256-SHA (256 bits)

If it doesn't say 'valid', or somehow shows an obvious error like this:

" * Verify return code: 21 (unable to verify the first certificate)"

you may not have the CA certificate bundle in place for your client to
refer to or some other problem - (ask around for client config help...)

I do not recommend configuring your client to 'accept invalid certs' or
whatever the option is called - as this complacency would leave you
vulnerable to a MITM attack should you trust an invalid cert and you
don't have any way of knowing your connection is truly secure.

I do realize the SSL encryption is optional - but I prefer to have it be
trustworthy - as there are people I chat with in private channels where
sometimes we exchange passwords or IP#'s or other information that
should be protected - so I always verify that they are using SSL


Unlike all the other comments about there "not being anything wrong with
freenode" - I do refuse to use them.  I saw too many years of freenode
essentially spamming all the channels with their fundraising
announcements and hounding after users to donate.  I really didn't want
a channel on a server that got those spam messages from outside of the
channel every 15 minutes.  (I know they removed parts of ircd where a
channel operator could block messages from WALLOPS or CHANOPS and they
even found a way to propogate network-wide OPS messages to every
channel).  It's their prerogative to do this - but I prefer a small
network where the noise level is much lower.

I also have seen friends who complained about
the freenode policies (including the spamming) and were k-lined from
using the server - just for raising the issue.  While freenode may be
reliable, I don't consider it my first choice because of my past
experiences (but then again maybe I am holding a grudge.)

Let me know if you have any difficulties connecting or using the IRC server.

Thanks,
David



Chris Louden wrote:
> So to be more specific it was more then just an IRC server for us.  It
> was a west coast/north america node for the OZ IRC network as I
> understand it.  But I just finished moving and I'm pretty tired. So I
> could be wrong.



_______________________________________________
LinuxUsers mailing list
LinuxUsers@socallinux.org
http://socallinux.org/cgi-bin/mailman/listinfo/linuxusers

Reply via email to