[Bug 1058301] Re: [bzr] error when encountering large file

2014-09-17 Thread Semo
Please FIX it.

I have the same error here on Ubuntu 14.04 LTS:

bzr: warning: Überspringe /etc/X11/core (Größer als
add.maximum_file_size von 2000 Bytes)

Translation: Ignoring [file] (larger than [Attribute name] of 20MiB )

It happens after updating the OS. This bug is now 2 years old! Isn't there 
anybody able to repair it? 
Because I'm not. If possible I'd try it, but I even dunno how to test for 
several systems and so on.

Thanks and regards,
Semo

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to etckeeper in Ubuntu.
https://bugs.launchpad.net/bugs/1058301

Title:
  [bzr] error when encountering large file

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/etckeeper/+bug/1058301/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Blueprint servercloud-u-ceph] Ceph activities for Utopic

2014-09-17 Thread James Page
Blueprint changed by James Page:

Work items changed:
  Work items for ubuntu-14.06:
  get dependency gap list for calamari: DONE
  
  Work items for ubuntu-14.07:
  Update to latest stable release of Ceph: DONE
- [sage] Ensure kernel fixes are getting back to the 3.13 kernel in trusty: TODO
  
  Work items for ubuntu-14.08:
  resolve dependency gap for calamari: POSTPONED
  systemd configuration for ceph: POSTPONED
  Package calamari and required dependencies: POSTPONED
  
  Work items for ubuntu-14.10:
  Update ceph-radosgw charm to support use with embedded web container: TODO
- charm calamari (stretch goal for 14.10): TODO
+ charm calamari (stretch goal for 14.10): POSTPONED
+ [sage] Ensure kernel fixes are getting back to the 3.13 kernel in trusty: TODO

-- 
Ceph activities for Utopic
https://blueprints.launchpad.net/ubuntu/+spec/servercloud-u-ceph

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Blueprint servercloud-u-databases] Database plans for Ubuntu 14.10

2014-09-17 Thread James Page
Blueprint changed by James Page:

Work items changed:
  Work items for ubuntu-14.06:
  [james-page] Update mongodb from 2.4-2.6: DONE
  [james-page] PXC update for 14.04: DONE
  
- Work items for ubuntu-14.07:
+ Work items for ubuntu-14.09:
+ [james-page] interlock with the mysql charm owners: DONE
+ [racb] Complete virtual-mysql-* implementation: TODO
  [mattgriffin] address automated testing gaps for PXC: TODO
- [mattgriffin] submit for MRE for PXC 5.5 for 14.04: TODO
- [racb] Complete virtual-mysql-* implementation: TODO
  [racb] Coordinate /var/lib/mysql - /var/lib/fork ownership migration: 
INPROGRESS
  [akhil-mohan] Handle /var/lib/fork migration for mysql-5.6: TODO
  [gl-az] Handle /var/lib/fork migration for Percona: TODO
  [otto] Handle /var/lib/fork migration for mariadb: TODO
- 
- Work items for ubuntu-14.08:
  [racb] mysql 5.6 in main, drop mysql-5.5: TODO
  [james-page] update percona-xtradb-cluster (PXC) to 5.6: TODO
  [gl-az] package percona-server (PS) 5.6 for Ubuntu: TODO
  
- Work items for ubuntu-14.09:
- [james-page] interlock with the mysql charm owners: TODO
- 
  Work items for ubuntu-14.10:
+ [mattgriffin] submit for MRE for PXC 5.5 for 14.04: TODO
  [gl-az] percona to take ownership of charm for PXC: TODO
  [gl-az] percona charm for PS: TODO

-- 
Database plans for Ubuntu 14.10
https://blueprints.launchpad.net/ubuntu/+spec/servercloud-u-databases

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Blueprint servercloud-u-databases] Database plans for Ubuntu 14.10

2014-09-17 Thread James Page
Blueprint changed by James Page:

Work items changed:
  Work items for ubuntu-14.06:
  [james-page] Update mongodb from 2.4-2.6: DONE
  [james-page] PXC update for 14.04: DONE
  
  Work items for ubuntu-14.09:
  [james-page] interlock with the mysql charm owners: DONE
  [racb] Complete virtual-mysql-* implementation: TODO
  [mattgriffin] address automated testing gaps for PXC: TODO
- [racb] Coordinate /var/lib/mysql - /var/lib/fork ownership migration: 
INPROGRESS
- [akhil-mohan] Handle /var/lib/fork migration for mysql-5.6: TODO
- [gl-az] Handle /var/lib/fork migration for Percona: TODO
- [otto] Handle /var/lib/fork migration for mariadb: TODO
- [racb] mysql 5.6 in main, drop mysql-5.5: TODO
- [james-page] update percona-xtradb-cluster (PXC) to 5.6: TODO
- [gl-az] package percona-server (PS) 5.6 for Ubuntu: TODO
+ [racb] mysql 5.6 in main, drop mysql-5.5: INPROGRESS
+ [james-page] update percona-xtradb-cluster (PXC) to 5.6: INPROGRESS
+ [gl-az] package percona-server (PS) 5.6 for Ubuntu: INPROGRESS
  
  Work items for ubuntu-14.10:
  [mattgriffin] submit for MRE for PXC 5.5 for 14.04: TODO
  [gl-az] percona to take ownership of charm for PXC: TODO
  [gl-az] percona charm for PS: TODO
+ [racb] Coordinate /var/lib/mysql - /var/lib/fork ownership migration: 
INPROGRESS
+ [akhil-mohan] Handle /var/lib/fork migration for mysql-5.6: POSTPONED
+ [gl-az] Handle /var/lib/fork migration for Percona: POSTPONED
+ [otto] Handle /var/lib/fork migration for mariadb: POSTPONED

-- 
Database plans for Ubuntu 14.10
https://blueprints.launchpad.net/ubuntu/+spec/servercloud-u-databases

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Blueprint servercloud-u-openstack-charms] OpenStack Charm work for Utopic

2014-09-17 Thread James Page
Blueprint changed by James Page:

Work items changed:
  Work items for ubuntu-14.05:
  [gnuoy] charm-helpers unit testing: DONE
  
  Work items for ubuntu-14.06:
  [mikemc] Simplestreams image sync charm: DONE
  [niedbalski] swift-storage block device persistence through reboots: DONE
  [gnuoy] Split neutron API from nova-cloud-controller: DONE
  [gnuoy] New neutron-openvswitch subordinate charm: DONE
  [corey.bryant] amulet testing approach for openstack charms: DONE
  [james-page] network reference architecture for openstack charms: DONE
  [james-page] nova-compute-vmware charm: DONE
  [james-page] cinder-vmware charm: DONE
  [zulcss] nova-compute-power charm: DONE
  
  Work items for ubuntu-14.07:
  [corey.bryant] amulet tests - keystone: DONE
  [corey.bryant] amulet tests - quantum-gateway: DONE
  [1chb1n] amulet tests - glance: DONE
  [corey.bryant] amulet tests - nova-compute: DONE
  [corey.bryant] amulet tests - nova-cloud-controller: DONE
  [corey.bryant] amulet tests - swift-proxy, swift-storage: DONE
  [james-page] Multiple network support across openstack charms: DONE
  Backport haproxy 1.5.x to trusty: DONE
  
- Work items for ubuntu-14.08:
+ Work items for ubuntu-14.09:
  Add support to mysql charm for network-splits: TODO
  Add support to heat charm for network-splits: TODO
  Add support to mongodb charm for network-splits: TODO
  [james-page] HTTPS support with network-split configurations: TODO
+ [james-page] hacluster charm updates to support reconfiguration: INPROGRESS
  [corey.bryant] Deploy from git: TODO
  amulet tests - cinder: TODO
  [corey.bryant] amulet tests - ceph-*: INPROGRESS
  Updates to neutron charms for hyper-v integration: INPROGRESS
  [gnuoy] Cells support for Nova: INPROGRESS
- 
- Work items for ubuntu-14.09:
  Add IPv6 support to the charms: TODO
- Enable haproxy backport for 14.04 (supporting IPv6 backends + TLS): TODO
+ Enable haproxy backport for 14.04 (supporting IPv6 backends + TLS): DONE
  [james-page] nvp-transport-node - nsx-transport-node rename: INPROGRESS
  
  Work items:
  [james-page] Charm developer documentation: TODO
  [james-page] Charm template for charm-tools: TODO
  swift-proxy unit testing: TODO
  nova-compute unit testing: TODO
  nova-cloud-controller unit testing: TODO
- HA cluster in-depth monitoring: TODO
+ HA cluster in-depth monitoring: POSTPONED
  [hopem] Ephemeral ceph backend for nova-compute: INPROGRESS
  [gnuoy] Spice/VNC support in nova charms: DONE
  Nagios nrpe sub-ordinate support for OpenStack charms: TODO
  (stretch) MS-SQLServer as a backend for OpenStack: POSTPONED

-- 
OpenStack Charm work for Utopic
https://blueprints.launchpad.net/ubuntu/+spec/servercloud-u-openstack-charms

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Blueprint servercloud-u-openstack-charms] OpenStack Charm work for Utopic

2014-09-17 Thread James Page
Blueprint changed by James Page:

Work items changed:
  Work items for ubuntu-14.05:
  [gnuoy] charm-helpers unit testing: DONE
  
  Work items for ubuntu-14.06:
  [mikemc] Simplestreams image sync charm: DONE
  [niedbalski] swift-storage block device persistence through reboots: DONE
  [gnuoy] Split neutron API from nova-cloud-controller: DONE
  [gnuoy] New neutron-openvswitch subordinate charm: DONE
  [corey.bryant] amulet testing approach for openstack charms: DONE
  [james-page] network reference architecture for openstack charms: DONE
  [james-page] nova-compute-vmware charm: DONE
  [james-page] cinder-vmware charm: DONE
  [zulcss] nova-compute-power charm: DONE
  
  Work items for ubuntu-14.07:
  [corey.bryant] amulet tests - keystone: DONE
  [corey.bryant] amulet tests - quantum-gateway: DONE
  [1chb1n] amulet tests - glance: DONE
  [corey.bryant] amulet tests - nova-compute: DONE
  [corey.bryant] amulet tests - nova-cloud-controller: DONE
  [corey.bryant] amulet tests - swift-proxy, swift-storage: DONE
  [james-page] Multiple network support across openstack charms: DONE
  Backport haproxy 1.5.x to trusty: DONE
  
  Work items for ubuntu-14.09:
  Add support to mysql charm for network-splits: TODO
  Add support to heat charm for network-splits: TODO
  Add support to mongodb charm for network-splits: TODO
  [james-page] HTTPS support with network-split configurations: TODO
  [james-page] hacluster charm updates to support reconfiguration: INPROGRESS
  [corey.bryant] Deploy from git: TODO
  amulet tests - cinder: TODO
  [corey.bryant] amulet tests - ceph-*: INPROGRESS
  Updates to neutron charms for hyper-v integration: INPROGRESS
  [gnuoy] Cells support for Nova: INPROGRESS
  Add IPv6 support to the charms: TODO
  Enable haproxy backport for 14.04 (supporting IPv6 backends + TLS): DONE
  [james-page] nvp-transport-node - nsx-transport-node rename: INPROGRESS
+ juno release review across openstack charms: TODO
  
  Work items:
  [james-page] Charm developer documentation: TODO
  [james-page] Charm template for charm-tools: TODO
  swift-proxy unit testing: TODO
  nova-compute unit testing: TODO
  nova-cloud-controller unit testing: TODO
  HA cluster in-depth monitoring: POSTPONED
  [hopem] Ephemeral ceph backend for nova-compute: INPROGRESS
  [gnuoy] Spice/VNC support in nova charms: DONE
  Nagios nrpe sub-ordinate support for OpenStack charms: TODO
  (stretch) MS-SQLServer as a backend for OpenStack: POSTPONED

-- 
OpenStack Charm work for Utopic
https://blueprints.launchpad.net/ubuntu/+spec/servercloud-u-openstack-charms

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Blueprint servercloud-u-openstack-charms] OpenStack Charm work for Utopic

2014-09-17 Thread James Page
Blueprint changed by James Page:

Work items changed:
  Work items for ubuntu-14.05:
  [gnuoy] charm-helpers unit testing: DONE
  
  Work items for ubuntu-14.06:
  [mikemc] Simplestreams image sync charm: DONE
  [niedbalski] swift-storage block device persistence through reboots: DONE
  [gnuoy] Split neutron API from nova-cloud-controller: DONE
  [gnuoy] New neutron-openvswitch subordinate charm: DONE
  [corey.bryant] amulet testing approach for openstack charms: DONE
  [james-page] network reference architecture for openstack charms: DONE
  [james-page] nova-compute-vmware charm: DONE
  [james-page] cinder-vmware charm: DONE
  [zulcss] nova-compute-power charm: DONE
  
  Work items for ubuntu-14.07:
  [corey.bryant] amulet tests - keystone: DONE
  [corey.bryant] amulet tests - quantum-gateway: DONE
  [1chb1n] amulet tests - glance: DONE
  [corey.bryant] amulet tests - nova-compute: DONE
  [corey.bryant] amulet tests - nova-cloud-controller: DONE
  [corey.bryant] amulet tests - swift-proxy, swift-storage: DONE
  [james-page] Multiple network support across openstack charms: DONE
  Backport haproxy 1.5.x to trusty: DONE
  
  Work items for ubuntu-14.09:
  Add support to mysql charm for network-splits: TODO
  Add support to heat charm for network-splits: TODO
  Add support to mongodb charm for network-splits: TODO
  [james-page] HTTPS support with network-split configurations: TODO
  [james-page] hacluster charm updates to support reconfiguration: INPROGRESS
- [corey.bryant] Deploy from git: TODO
+ [corey.bryant] keystone deploy from git: INPROGRESS
  amulet tests - cinder: TODO
  [corey.bryant] amulet tests - ceph-*: INPROGRESS
  Updates to neutron charms for hyper-v integration: INPROGRESS
  [gnuoy] Cells support for Nova: INPROGRESS
  Add IPv6 support to the charms: TODO
  Enable haproxy backport for 14.04 (supporting IPv6 backends + TLS): DONE
  [james-page] nvp-transport-node - nsx-transport-node rename: INPROGRESS
  juno release review across openstack charms: TODO
  
  Work items:
  [james-page] Charm developer documentation: TODO
  [james-page] Charm template for charm-tools: TODO
  swift-proxy unit testing: TODO
  nova-compute unit testing: TODO
  nova-cloud-controller unit testing: TODO
  HA cluster in-depth monitoring: POSTPONED
  [hopem] Ephemeral ceph backend for nova-compute: INPROGRESS
  [gnuoy] Spice/VNC support in nova charms: DONE
  Nagios nrpe sub-ordinate support for OpenStack charms: TODO
  (stretch) MS-SQLServer as a backend for OpenStack: POSTPONED

-- 
OpenStack Charm work for Utopic
https://blueprints.launchpad.net/ubuntu/+spec/servercloud-u-openstack-charms

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Blueprint servercloud-u-openstack-charms] OpenStack Charm work for Utopic

2014-09-17 Thread James Page
Blueprint changed by James Page:

Work items changed:
  Work items for ubuntu-14.05:
  [gnuoy] charm-helpers unit testing: DONE
  
  Work items for ubuntu-14.06:
  [mikemc] Simplestreams image sync charm: DONE
  [niedbalski] swift-storage block device persistence through reboots: DONE
  [gnuoy] Split neutron API from nova-cloud-controller: DONE
  [gnuoy] New neutron-openvswitch subordinate charm: DONE
  [corey.bryant] amulet testing approach for openstack charms: DONE
  [james-page] network reference architecture for openstack charms: DONE
  [james-page] nova-compute-vmware charm: DONE
  [james-page] cinder-vmware charm: DONE
  [zulcss] nova-compute-power charm: DONE
  
  Work items for ubuntu-14.07:
  [corey.bryant] amulet tests - keystone: DONE
  [corey.bryant] amulet tests - quantum-gateway: DONE
  [1chb1n] amulet tests - glance: DONE
  [corey.bryant] amulet tests - nova-compute: DONE
  [corey.bryant] amulet tests - nova-cloud-controller: DONE
  [corey.bryant] amulet tests - swift-proxy, swift-storage: DONE
  [james-page] Multiple network support across openstack charms: DONE
  Backport haproxy 1.5.x to trusty: DONE
  
  Work items for ubuntu-14.09:
  Add support to mysql charm for network-splits: TODO
  Add support to heat charm for network-splits: TODO
  Add support to mongodb charm for network-splits: TODO
  [james-page] HTTPS support with network-split configurations: TODO
  [james-page] hacluster charm updates to support reconfiguration: INPROGRESS
- [corey.bryant] keystone deploy from git: INPROGRESS
  amulet tests - cinder: TODO
  [corey.bryant] amulet tests - ceph-*: INPROGRESS
  Updates to neutron charms for hyper-v integration: INPROGRESS
  [gnuoy] Cells support for Nova: INPROGRESS
  Add IPv6 support to the charms: TODO
  Enable haproxy backport for 14.04 (supporting IPv6 backends + TLS): DONE
  [james-page] nvp-transport-node - nsx-transport-node rename: INPROGRESS
  juno release review across openstack charms: TODO
  
  Work items:
  [james-page] Charm developer documentation: TODO
  [james-page] Charm template for charm-tools: TODO
  swift-proxy unit testing: TODO
  nova-compute unit testing: TODO
  nova-cloud-controller unit testing: TODO
  HA cluster in-depth monitoring: POSTPONED
  [hopem] Ephemeral ceph backend for nova-compute: INPROGRESS
  [gnuoy] Spice/VNC support in nova charms: DONE
  Nagios nrpe sub-ordinate support for OpenStack charms: TODO
  (stretch) MS-SQLServer as a backend for OpenStack: POSTPONED
+ [corey.bryant] keystone deploy from git: INPROGRESS

-- 
OpenStack Charm work for Utopic
https://blueprints.launchpad.net/ubuntu/+spec/servercloud-u-openstack-charms

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1330120] Re: facter doesn't handle can't open /proc/interrupts at /usr/bin/lsdev line 15.

2014-09-17 Thread larsen
Same here with Host Europe. OpenVZ doesn´t support this, so I would have
to rent a root server - either physical or virtualized, but with another
virtualization software.

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to facter in Ubuntu.
https://bugs.launchpad.net/bugs/1330120

Title:
  facter doesn't handle can't open /proc/interrupts at /usr/bin/lsdev
  line 15.

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/facter/+bug/1330120/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1368812] Re: [MIR] python-pymemcache

2014-09-17 Thread James Page
ubuntu-server team added as bug subscriber.

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to the bug report.
https://bugs.launchpad.net/bugs/1368812

Title:
  [MIR] python-pymemcache

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/python-pymemcache/+bug/1368812/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1296607] Re: MIR: python-kazoo; new taskflow version needs python-kazoo from universe

2014-09-17 Thread James Page
ubuntu-server added as team bug subscriber.

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to kazoo in Ubuntu.
https://bugs.launchpad.net/bugs/1296607

Title:
  MIR: python-kazoo; new taskflow version needs python-kazoo from
  universe

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/kazoo/+bug/1296607/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1365618] Re: [MIR] python-xstatic + lots of others....

2014-09-17 Thread James Page
I discussed approach to the numerous packages (17) we'll want to include
in main to support Horizon with jdstrand - we agreed that the preferred
approach is to use the embedded code in each xstatic upstream, rather
than the individual libjs-XXX packages that may be used.

Once all 17 are synced and updated accordingly, we'll add them to this
bug report and ask for review.

** Summary changed:

- [MIR] python-xstatic
+ [MIR] python-xstatic + lots of others

** Also affects: python-xstatic-angular (Ubuntu)
   Importance: Undecided
   Status: New

** Also affects: python-xstatic-angular-cookies (Ubuntu)
   Importance: Undecided
   Status: New

** Also affects: python-xstatic-angular-mock (Ubuntu)
   Importance: Undecided
   Status: New

** Also affects: python-xstatic-bootstrap-datepicker (Ubuntu)
   Importance: Undecided
   Status: New

** Also affects: python-xstatic-jquery.quicksearch (Ubuntu)
   Importance: Undecided
   Status: New

** Also affects: python-xstatic-jquery-ui (Ubuntu)
   Importance: Undecided
   Status: New

** Summary changed:

- [MIR] python-xstatic + lots of others
+ [MIR] python-xstatic{-[...]}

** Description changed:

- python-xstatic
+ General MIR Information
+ ---
+ Rationale: New dependencies for OpenStack Horizon.
+ Maintenance: Simple python package that the Ubuntu Server Team will take care 
of.
+ Background:
+ 
+ python-xstatic exposes static assets such as JS, CSS and fonts in a
+ pythonic way, making it easy to consume such assets in python web
+ applications such as OpenStack Horizon.
+ 
+ During the Utopic/Juno cycle, OpenStack Horizon as removed all embedded
+ static assets and switched to using Xstatic versions of such assets.
+ 
+ All xstatic packages synced from Debian will be updated to remove libjs-
+ XX dependencies and use the upstream provided static assets to limit the
+ scope of the MIR and potential introduction of numerous libjs-XXX
+ dependencies for more wider use in Ubuntu main.

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to the bug report.
https://bugs.launchpad.net/bugs/1365618

Title:
  [MIR] python-xstatic{-[...]}

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/python-xstatic/+bug/1365618/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1370478] [NEW] [CVE-2014-3616] possible to reuse cached SSL sessions in unrelated contexts

2014-09-17 Thread Thomas Ward
*** This bug is a security vulnerability ***

Public security bug reported:

A security vulnerability was found in the nginx package.  All versions
in Lucid, Precise, Trusty, and Utopic are affected.

--

This is the email that went out in the nginx security advisories list
regarding this vulnerability:

Hello!

A problem with SSL session cache in nginx was identified by Antoine
Delignat-Lavaud.  It was possible to reuse cached SSL sessions in
unrelated contexts, allowing virtual host confusion attacks in some
configurations by an attacker in a privileged network position
(CVE-2014-3616).

The problem affects nginx 0.5.6 - 1.7.4 if the same shared
ssl_session_cache and/or ssl_session_ticket_key are used for multiple
server{} blocks.

The problem is fixed in nginx 1.7.5, 1.6.2.

Further details can be found in the paper by Antoine Delignat-Lavaud
et al., available at http://bh.ht.vc/vhost_confusion.pdf.

--

This is CVE-2014-3616.

--

This has been fixed upstream in nginx.  This has also been fixed in
Debian.

--

The Debian bug for this is: https://bugs.debian.org/cgi-
bin/bugreport.cgi?bug=761940

** Affects: nginx (Ubuntu)
 Importance: Undecided
 Status: New

** Affects: nginx (Debian)
 Importance: Unknown
 Status: Unknown

** Description changed:

- A security vulnerability was found in the nginx package.
+ A security vulnerability was found in the nginx package.  All versions
+ in Lucid, Precise, Trusty, and Utopic are affected.
  
  --
  
  This is the email that went out in the nginx security advisories list
  regarding this vulnerability:
  
  Hello!
  
  A problem with SSL session cache in nginx was identified by Antoine
  Delignat-Lavaud.  It was possible to reuse cached SSL sessions in
  unrelated contexts, allowing virtual host confusion attacks in some
  configurations by an attacker in a privileged network position
  (CVE-2014-3616).
  
  The problem affects nginx 0.5.6 - 1.7.4 if the same shared
  ssl_session_cache and/or ssl_session_ticket_key are used for multiple
  server{} blocks.
  
  The problem is fixed in nginx 1.7.5, 1.6.2.
  
  Further details can be found in the paper by Antoine Delignat-Lavaud
  et al., available at http://bh.ht.vc/vhost_confusion.pdf.
  
  --
  
  This is CVE-2014-3616.
  
  --
  
  This has been fixed upstream in nginx.  This has also been fixed in
  Debian.
  
  --
  
  The Debian bug for this is: https://bugs.debian.org/cgi-
  bin/bugreport.cgi?bug=761940

** Bug watch added: Debian Bug tracker #761940
   http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=761940

** Also affects: nginx (Debian) via
   http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=761940
   Importance: Unknown
   Status: Unknown

** Summary changed:

- [CVE-2014-3616] reuse cached SSL sessions in unrelated contexts
+ [CVE-2014-3616] possible to reuse cached SSL sessions in unrelated contexts

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to nginx in Ubuntu.
https://bugs.launchpad.net/bugs/1370478

Title:
  [CVE-2014-3616] possible to reuse cached SSL sessions in unrelated
  contexts

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/nginx/+bug/1370478/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1368030] Re: nova-manage command when executed by non-root user, should give authorization error instead of low level database error

2014-09-17 Thread Kanchan Gupta
Version information:
nova-2.18.2 and ubuntu-12.04

When I run the command I am not getting any error and the command returns the 
desired output from both root as well as non-root users.
Following is the output when run as non-root user:

lenovo@ThinkCentre-M58p:~$ source openrc admin admin
lenovo@ThinkCentre-M58p:~$ nova-manage flavor list
2014-09-17 17:23:55.962 DEBUG oslo.db.sqlalchemy.session 
[req-f7e0d6b2-1ca5-4bce-aa4b-e87c78dd032c None None] MySQL server mode set to 
STRICT_TRANS_TABLES,STRICT_ALL_TABLES,NO_ZERO_IN_DATE,NO_ZERO_DATE,ERROR_FOR_DIVISION_BY_ZERO,TRADITIONAL,NO_AUTO_CREATE_USER,NO_ENGINE_SUBSTITUTION
 _mysql_check_effective_sql_mode 
/usr/local/lib/python2.7/dist-packages/oslo/db/sqlalchemy/session.py:401
m1.medium: Memory: 4096MB, VCPUS: 2, Root: 40GB, Ephemeral: 0Gb, FlavorID: 3, 
Swap: 0MB, RXTX Factor: 1.0, public, ExtraSpecs {}
m1.tiny: Memory: 512MB, VCPUS: 1, Root: 1GB, Ephemeral: 0Gb, FlavorID: 1, Swap: 
0MB, RXTX Factor: 1.0, public, ExtraSpecs {}
m1.large: Memory: 8192MB, VCPUS: 4, Root: 80GB, Ephemeral: 0Gb, FlavorID: 4, 
Swap: 0MB, RXTX Factor: 1.0, public, ExtraSpecs {}
m1.xlarge: Memory: 16384MB, VCPUS: 8, Root: 160GB, Ephemeral: 0Gb, FlavorID: 5, 
Swap: 0MB, RXTX Factor: 1.0, public, ExtraSpecs {}
m1.small: Memory: 2048MB, VCPUS: 1, Root: 20GB, Ephemeral: 0Gb, FlavorID: 2, 
Swap: 0MB, RXTX Factor: 1.0, public, ExtraSpecs {}
m1.nano: Memory: 64MB, VCPUS: 1, Root: 0GB, Ephemeral: 0Gb, FlavorID: 42, Swap: 
0MB, RXTX Factor: 1.0, public, ExtraSpecs {}
m1.micro: Memory: 128MB, VCPUS: 1, Root: 0GB, Ephemeral: 0Gb, FlavorID: 84, 
Swap: 0MB, RXTX Factor: 1.0, public, ExtraSpecs {}
m1.heat: Memory: 512MB, VCPUS: 1, Root: 0GB, Ephemeral: 0Gb, FlavorID: 451, 
Swap: 0MB, RXTX Factor: 1.0, public, ExtraSpecs {}
abcdef: Memory: 1MB, VCPUS: 1, Root: 1GB, Ephemeral: 0Gb, FlavorID: 
537f7c70-3fd1-4d0a-9784-007760264b37, Swap: 0MB, RXTX Factor: 1.0, private, 
ExtraSpecs {}
flavor_kanchan: Memory: 1MB, VCPUS: 1, Root: 1GB, Ephemeral: 0Gb, FlavorID: 
27b42639-43d5-4040-aa87-0727bdf4895f, Swap: 0MB, RXTX Factor: 1.0, private, 
ExtraSpecs {}
flavor_kanchan_new: Memory: 1MB, VCPUS: 1, Root: 1GB, Ephemeral: 0Gb, FlavorID: 
00db4740-b20c-4849-99d3-4343d7931ff0, Swap: 0MB, RXTX Factor: 1.0, public, 
ExtraSpecs {}
flavor_kanchan_new2: Memory: 1MB, VCPUS: 1, Root: 1GB, Ephemeral: 0Gb, 
FlavorID: 2c84e463-530b-410e-a283-2e2acc100500, Swap: 0MB, RXTX Factor: 1.0, 
public, ExtraSpecs {}

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to nova in Ubuntu.
https://bugs.launchpad.net/bugs/1368030

Title:
  nova-manage command when executed by non-root user, should give
  authorization error instead of low level database error

To manage notifications about this bug go to:
https://bugs.launchpad.net/nova/+bug/1368030/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1368030] Re: nova-manage command when executed by non-root user, should give authorization error instead of low level database error

2014-09-17 Thread Kanchan Gupta
Version information:
nova-2.18.2 and ubuntu-12.04

When I run the command I am not getting any error and the command returns the 
desired output from both root as well as non-root users.
Following is the output when run as non-root user:

lenovo@ThinkCentre-M58p:~$ source openrc admin admin
lenovo@ThinkCentre-M58p:~$ nova-manage flavor list
2014-09-17 17:23:55.962 DEBUG oslo.db.sqlalchemy.session 
[req-f7e0d6b2-1ca5-4bce-aa4b-e87c78dd032c None None] MySQL server mode set to 
STRICT_TRANS_TABLES,STRICT_ALL_TABLES,NO_ZERO_IN_DATE,NO_ZERO_DATE,ERROR_FOR_DIVISION_BY_ZERO,TRADITIONAL,NO_AUTO_CREATE_USER,NO_ENGINE_SUBSTITUTION
 _mysql_check_effective_sql_mode 
/usr/local/lib/python2.7/dist-packages/oslo/db/sqlalchemy/session.py:401
m1.medium: Memory: 4096MB, VCPUS: 2, Root: 40GB, Ephemeral: 0Gb, FlavorID: 3, 
Swap: 0MB, RXTX Factor: 1.0, public, ExtraSpecs {}
m1.tiny: Memory: 512MB, VCPUS: 1, Root: 1GB, Ephemeral: 0Gb, FlavorID: 1, Swap: 
0MB, RXTX Factor: 1.0, public, ExtraSpecs {}
m1.large: Memory: 8192MB, VCPUS: 4, Root: 80GB, Ephemeral: 0Gb, FlavorID: 4, 
Swap: 0MB, RXTX Factor: 1.0, public, ExtraSpecs {}
m1.xlarge: Memory: 16384MB, VCPUS: 8, Root: 160GB, Ephemeral: 0Gb, FlavorID: 5, 
Swap: 0MB, RXTX Factor: 1.0, public, ExtraSpecs {}
m1.small: Memory: 2048MB, VCPUS: 1, Root: 20GB, Ephemeral: 0Gb, FlavorID: 2, 
Swap: 0MB, RXTX Factor: 1.0, public, ExtraSpecs {}
m1.nano: Memory: 64MB, VCPUS: 1, Root: 0GB, Ephemeral: 0Gb, FlavorID: 42, Swap: 
0MB, RXTX Factor: 1.0, public, ExtraSpecs {}
m1.micro: Memory: 128MB, VCPUS: 1, Root: 0GB, Ephemeral: 0Gb, FlavorID: 84, 
Swap: 0MB, RXTX Factor: 1.0, public, ExtraSpecs {}
m1.heat: Memory: 512MB, VCPUS: 1, Root: 0GB, Ephemeral: 0Gb, FlavorID: 451, 
Swap: 0MB, RXTX Factor: 1.0, public, ExtraSpecs {}
abcdef: Memory: 1MB, VCPUS: 1, Root: 1GB, Ephemeral: 0Gb, FlavorID: 
537f7c70-3fd1-4d0a-9784-007760264b37, Swap: 0MB, RXTX Factor: 1.0, private, 
ExtraSpecs {}

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to nova in Ubuntu.
https://bugs.launchpad.net/bugs/1368030

Title:
  nova-manage command when executed by non-root user, should give
  authorization error instead of low level database error

To manage notifications about this bug go to:
https://bugs.launchpad.net/nova/+bug/1368030/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1370478] Re: [CVE-2014-3616] possible to reuse cached SSL sessions in unrelated contexts

2014-09-17 Thread Marc Deslauriers
** Also affects: nginx (Ubuntu Lucid)
   Importance: Undecided
   Status: New

** Also affects: nginx (Ubuntu Precise)
   Importance: Undecided
   Status: New

** Also affects: nginx (Ubuntu Trusty)
   Importance: Undecided
   Status: New

** Also affects: nginx (Ubuntu Utopic)
   Importance: Undecided
   Status: New

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to nginx in Ubuntu.
https://bugs.launchpad.net/bugs/1370478

Title:
  [CVE-2014-3616] possible to reuse cached SSL sessions in unrelated
  contexts

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/nginx/+bug/1370478/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1370478] Re: [CVE-2014-3616] possible to reuse cached SSL sessions in unrelated contexts

2014-09-17 Thread Thomas Ward
** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2014-3616

** Changed in: nginx (Ubuntu)
   Status: New = Confirmed

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to nginx in Ubuntu.
https://bugs.launchpad.net/bugs/1370478

Title:
  [CVE-2014-3616] possible to reuse cached SSL sessions in unrelated
  contexts

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/nginx/+bug/1370478/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1370107] Re: The Juju environments settings panel is missing in Icehouse

2014-09-17 Thread James Page
** Changed in: horizon (Ubuntu)
   Status: New = Confirmed

** Changed in: horizon (Ubuntu)
   Importance: Undecided = High

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to horizon in Ubuntu.
https://bugs.launchpad.net/bugs/1370107

Title:
  The Juju environments settings panel is missing in Icehouse

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/horizon/+bug/1370107/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1370478] Re: [CVE-2014-3616] possible to reuse cached SSL sessions in unrelated contexts

2014-09-17 Thread Marc Deslauriers
** Changed in: nginx (Ubuntu Trusty)
   Status: New = Confirmed

** Changed in: nginx (Ubuntu Lucid)
   Status: New = Won't Fix

** Changed in: nginx (Ubuntu Precise)
   Status: New = Confirmed

** Changed in: nginx (Ubuntu Trusty)
 Assignee: (unassigned) = Marc Deslauriers (mdeslaur)

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to nginx in Ubuntu.
https://bugs.launchpad.net/bugs/1370478

Title:
  [CVE-2014-3616] possible to reuse cached SSL sessions in unrelated
  contexts

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/nginx/+bug/1370478/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1087183] Re: MaaS cloud-init configuration specifies 'manage_etc_hosts: localhost'

2014-09-17 Thread James Page
Pertains to bug 1087183

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to maas in Ubuntu.
https://bugs.launchpad.net/bugs/1087183

Title:
  MaaS cloud-init configuration specifies 'manage_etc_hosts: localhost'

To manage notifications about this bug go to:
https://bugs.launchpad.net/juju/+bug/1087183/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1024475] Re: libnss-ldap causes boot hang on Ubuntu 12.04 Precise

2014-09-17 Thread Anaxim
Hi,

I lost more than 4 hours on this issue and found a solution. I hope it
could help others.

Got the issue on a brand new 14.04.1 installation. Modification of the
libnss-ldap (#2) script didn't solve the issue.

I found a solution on following the page : 
http://backdrift.org/how-to-get-pam-ldap-local-logins-to-work-when-networking-is-down
 and changed /etc/ldap.conf file and add following lines before 
nss_initgroups_ignoreusers:
nss_reconnect_tries 2
nss_reconnect_sleeptime 1
nss_reconnect_maxsleeptime 1
nss_reconnect_maxconntries 1

After this modification the system was able to boot normally and I could
directly log in with ldap user.

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to libnss-ldap in Ubuntu.
https://bugs.launchpad.net/bugs/1024475

Title:
  libnss-ldap causes boot hang on Ubuntu 12.04 Precise

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/libnss-ldap/+bug/1024475/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1370523] [NEW] After Precise-Trusty, no /etc/ssh/ssh_host_ed25519_key is created

2014-09-17 Thread Simon Déziel
Public bug reported:

After upgrading a Precise (12.04.5) host to Trusty (14.04.1) the OpenSSH
server keeps complaining about a missing host key:
/etc/ssh/ssh_host_ed25519_key

# grep -cF 'Could not load host key: /etc/ssh/ssh_host_ed25519_key' 
/var/log/auth.log
203

It seems the OpenSSH package doesn't run ssh-keygen -A in postinst.

Workaround: run ssh-keygen -A as root:

# ssh-keygen -A
ssh-keygen: generating new host keys: RSA1 ED25519 


More information on the upgraded machine:

# lsb_release -rd
Description:Ubuntu 14.04.1 LTS
Release:14.04
# apt-cache policy openssh-server
openssh-server:
  Installed: 1:6.6p1-2ubuntu2
  Candidate: 1:6.6p1-2ubuntu2
  Version table:
 *** 1:6.6p1-2ubuntu2 0
500 http://archive.ubuntu.com/ubuntu/ trusty-updates/main amd64 Packages
100 /var/lib/dpkg/status
 1:6.6p1-2ubuntu1 0
500 http://archive.ubuntu.com/ubuntu/ trusty/main amd64 Packages

ProblemType: Bug
DistroRelease: Ubuntu 14.04
Package: openssh-server 1:6.6p1-2ubuntu2
ProcVersionSignature: Ubuntu 3.13.0-35.62-generic 3.13.11.6
Uname: Linux 3.13.0-35-generic x86_64
ApportVersion: 2.14.1-0ubuntu3.4
Architecture: amd64
Date: Wed Sep 17 09:35:34 2014
InstallationDate: Installed on 2013-01-04 (620 days ago)
InstallationMedia: Ubuntu 12.04.1 LTS Precise Pangolin - Release amd64 
(20120822.4)
ProcEnviron:
 LANGUAGE=en_CA:en
 TERM=xterm
 PATH=(custom, no user)
 LANG=en_CA.UTF-8
 SHELL=/bin/bash
SourcePackage: openssh
UpgradeStatus: Upgraded to trusty on 2014-08-29 (18 days ago)

** Affects: openssh (Ubuntu)
 Importance: Undecided
 Status: New


** Tags: amd64 apport-bug trusty

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to openssh in Ubuntu.
https://bugs.launchpad.net/bugs/1370523

Title:
  After Precise-Trusty, no /etc/ssh/ssh_host_ed25519_key is created

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/openssh/+bug/1370523/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1087183] Re: MaaS cloud-init configuration specifies 'manage_etc_hosts: localhost'

2014-09-17 Thread Andreas Hasenack
About Scott's (a) point, the debian document says you should have host.domain 
in /etc/hosts if the system has a permanent address, and the host.domain line 
should be for that address, not 127.0.1.1:

For a system with a permanent IP address, that permanent IP address should be 
used here instead of 127.0.1.1.

For a system with a permanent IP address and a fully qualified domain name 
(FQDN) provided by the Domain Name System (DNS), that canonical 
host_name.domain_name should be used instead of just host_name.


Now, is a dhcp lease a permanent address? :) I think it's permanent
enough for this scenario where MAAS is giving it out, as it even updates
the DNS record.

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to maas in Ubuntu.
https://bugs.launchpad.net/bugs/1087183

Title:
  MaaS cloud-init configuration specifies 'manage_etc_hosts: localhost'

To manage notifications about this bug go to:
https://bugs.launchpad.net/juju/+bug/1087183/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1370123] Re: [Utopic] Xen HVM guests fail to start (MMIO emulation failed)

2014-09-17 Thread Launchpad Bug Tracker
This bug was fixed in the package xen - 4.4.0-0ubuntu7

---
xen (4.4.0-0ubuntu7) utopic; urgency=low

  * d/xen-utils-version.postinst: Remove xend config conversion script.
  * d/p/ubuntu-use-seabios-256.patch: Pick the 256K seabios image for
hvmloader because the 128K default image dropped Xen support.
(LP: #1370123)
 -- Stefan Bader stefan.ba...@canonical.com   Tue, 16 Sep 2014 17:35:24 +0200

** Changed in: xen (Ubuntu)
   Status: Triaged = Fix Released

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to xen in Ubuntu.
https://bugs.launchpad.net/bugs/1370123

Title:
  [Utopic] Xen HVM guests fail to start (MMIO emulation failed)

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/xen/+bug/1370123/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1369386] Re: ipset_enabled = True default is not upgrade friendly

2014-09-17 Thread Armando Migliaccio
** Also affects: neutron (Ubuntu)
   Importance: Undecided
   Status: New

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to neutron in Ubuntu.
https://bugs.launchpad.net/bugs/1369386

Title:
  ipset_enabled = True default is not upgrade friendly

To manage notifications about this bug go to:
https://bugs.launchpad.net/neutron/+bug/1369386/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1367425] Re: [FFE] Upgrade to 1.2.8

2014-09-17 Thread Serge Hallyn
** Changed in: libvirt-python (Ubuntu)
   Status: New = Fix Released

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to libvirt-python in Ubuntu.
https://bugs.launchpad.net/bugs/1367425

Title:
  [FFE] Upgrade to 1.2.8

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/libvirt-python/+bug/1367425/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1370478] Re: [CVE-2014-3616] possible to reuse cached SSL sessions in unrelated contexts

2014-09-17 Thread Bug Watch Updater
** Changed in: nginx (Debian)
   Status: Unknown = Fix Released

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to nginx in Ubuntu.
https://bugs.launchpad.net/bugs/1370478

Title:
  [CVE-2014-3616] possible to reuse cached SSL sessions in unrelated
  contexts

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/nginx/+bug/1370478/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1324174] Re: qemu should attempt to re-load kvm_intel to enable nesting at first install

2014-09-17 Thread Chris J Arges
Hello Serge, or anyone else affected,

Accepted qemu into trusty-proposed. The package will build now and be
available at http://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-
2ubuntu1.5 in a few hours, and then in the -proposed repository.

Please help us by testing this new package.  See
https://wiki.ubuntu.com/Testing/EnableProposed for documentation how to
enable and use -proposed.  Your feedback will aid us getting this update
out to other Ubuntu users.

If this package fixes the bug for you, please add a comment to this bug,
mentioning the version of the package you tested, and change the tag
from verification-needed to verification-done. If it does not fix the
bug for you, please add a comment stating that, and change the tag to
verification-failed.  In either case, details of your testing will help
us make a better decision.

Further information regarding the verification process can be found at
https://wiki.ubuntu.com/QATeam/PerformingSRUVerification .  Thank you in
advance!

** Tags removed: verification-failed

** Tags added: verification-needed

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to qemu in Ubuntu.
https://bugs.launchpad.net/bugs/1324174

Title:
  qemu should attempt to re-load kvm_intel to enable nesting at first
  install

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/qemu/+bug/1324174/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1353008] Re: MAAS Provider: LXC did not get DHCP address, stuck in pending

2014-09-17 Thread Scott Moser
** Description changed:

+ === Begin SRU Information ===
+ This bug causes lxc containers created by the ubuntu-cloud template 
(lxc-create -t ubuntu-cloud) to sometimes not obtain an IP address, and thus 
not correctly b
+ oot to completion.
+ 
+ The bug is in an assumption by cloud-init that /run is mounted before the 
cloud-init-local job is run.  The fix is very simply to guarantee that it is 
via modif
+ ication to its upstart 'start on'.
+ 
+ When booting with an initramfs /run will be mounted before /, so the race 
condition is not possible.  Thus, the failure case is only either in 
non-initramfs boot (which is very unlikely) or in lxc boot.  The lxc case seems 
only to occur ver
+ y rarely, somewhere well under one percent of the time.
+ 
+ [Test Case]
+ A test case is written at [1] that launches many instances in an attempt 
brute f
+ orce find the error.  However, I've not been able to make it fail.
+ 
+ The original bug reporter has been running with the 'start on' change
+ and has seen no errors since.
+ 
+ We will request the original bug reporter to apply the uploaded changes and 
run
+ through their battery.
+ 
+ [Regression Potential] 
+ The possibility for regression here is in the second boot of an instance.  
The following scenario is a change of behavior:
+  * the user boots an instance with NoCloud or ConfigDrive in ds=local mode
+  * user changes /etc/network/interfaces in a way that would cause
+static-networking to not be emitted on subsequent boot
+  * user reboots
+ Now, instead of a quick boot, the user may see cloud-init-nonet blocking on 
network coming up.
+ 
+ This would be a uncommon scenario, and the broken-etc-network-interfaces 
scenari
+ o is already one that causes timeouts on boot.
+ === End  SRU Information ===
+ 
  Note, that after I went onto the system, it *did* have an IP address.
  
    0/lxc/3:
  agent-state: pending
  instance-id: juju-machine-0-lxc-3
  series: trusty
  hardware: arch=amd64
  
  cloud-init-output.log snip:
  
  Cloud-init v. 0.7.5 running 'init' at Mon, 04 Aug 2014 23:57:12 +. Up 
572.29 seconds.
  ci-info: +++Net device info+++
  ci-info: ++--+---+---+---+
  ci-info: | Device |  Up  |  Address  |Mask   | Hw-Address|
  ci-info: ++--+---+---+---+
  ci-info: |   lo   | True | 127.0.0.1 | 255.0.0.0 | . |
  ci-info: |  eth0  | True | . | . | 00:16:3e:34:aa:57 |
  ci-info: ++--+---+---+---+
  ci-info: !!!Route info 
failed
  Cloud-init v. 0.7.5 running 'modules:config' at Mon, 04 Aug 2014 23:57:12 
+. Up 572.99 seconds.
  Cloud-init v. 0.7.5 running 'modules:final' at Mon, 04 Aug 2014 23:57:14 
+. Up 574.42 seconds.
  Cloud-init v. 0.7.5 finished at Mon, 04 Aug 2014 23:57:14 +. Datasource 
DataSourceNoCloudNet [seed=/var/lib/cloud/seed/nocloud-net][dsmode=net].  Up 
574.54 seconds
  
  syslog on system, showing DHCPACK 1 second later:
  
  root@juju-machine-0-lxc-3:/home/ubuntu# grep DHCP /var/log/syslog
  Aug  4 23:57:13 juju-machine-0-lxc-3 dhclient: DHCPREQUEST of 10.96.3.173 on 
eth0 to 255.255.255.255 port 67 (xid=0x1687c544)
  Aug  4 23:57:13 juju-machine-0-lxc-3 dhclient: DHCPOFFER of 10.96.3.173 from 
10.96.0.10
  Aug  4 23:57:13 juju-machine-0-lxc-3 dhclient: DHCPACK of 10.96.3.173 from 
10.96.0.10
  Aug  5 05:28:15 juju-machine-0-lxc-3 dhclient: DHCPREQUEST of 10.96.3.173 on 
eth0 to 10.96.0.10 port 67 (xid=0x1687c544)
  Aug  5 05:28:15 juju-machine-0-lxc-3 dhclient: DHCPACK of 10.96.3.173 from 
10.96.0.10
  Aug  5 11:15:00 juju-machine-0-lxc-3 dhclient: DHCPREQUEST of 10.96.3.173 on 
eth0 to 10.96.0.10 port 67 (xid=0x1687c544)
  Aug  5 11:15:00 juju-machine-0-lxc-3 dhclient: DHCPACK of 10.96.3.173 from 
10.96.0.10
  
  It appears in every case, cloud-init init-local has failed very early
  visible in juju logs /var/lib/juju/containers/container/console.log:
  
  Traceback (most recent call last):
-   File /usr/bin/cloud-init, line 618, in module
- sys.exit(main())
-   File /usr/bin/cloud-init, line 614, in main
- get_uptime=True, func=functor, args=(name, args))
-   File /usr/lib/python2.7/dist-packages/cloudinit/util.py, line 1875, in 
log_time
- ret = func(*args, **kwargs)
-   File /usr/bin/cloud-init, line 491, in status_wrapper
- force=True)
-   File /usr/lib/python2.7/dist-packages/cloudinit/util.py, line 1402, in 
sym_link
- os.symlink(source, link)
+   File /usr/bin/cloud-init, line 618, in module
+ sys.exit(main())
+   File /usr/bin/cloud-init, line 614, in main
+ get_uptime=True, func=functor, args=(name, args))
+   File /usr/lib/python2.7/dist-packages/cloudinit/util.py, line 1875, in 
log_time
+ ret = func(*args, **kwargs)
+   File /usr/bin/cloud-init, line 491, in 

[Bug 1370523] Re: After Precise-Trusty, no /etc/ssh/ssh_host_ed25519_key is created

2014-09-17 Thread Simon Déziel
*** This bug is a duplicate of bug 1005440 ***
https://bugs.launchpad.net/bugs/1005440

The openssh-server.postint does have code to create missing host keys:

host_keys_required() {
hostkeys=$(get_config_option HostKey)
if [ $hostkeys ]; then
echo $hostkeys
else
# No HostKey directives at all, so the server picks some
# defaults depending on the setting of Protocol.
protocol=$(get_config_option Protocol)
[ $protocol ] || protocol=1,2
if echo $protocol | grep 1 /dev/null; then
echo /etc/ssh/ssh_host_key
fi
if echo $protocol | grep 2 /dev/null; then
echo /etc/ssh/ssh_host_rsa_key
echo /etc/ssh/ssh_host_dsa_key
echo /etc/ssh/ssh_host_ecdsa_key
echo /etc/ssh/ssh_host_ed25519_key
fi
fi
}

And running dpkg-reconfigure openssh-server fixes the issue.

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to openssh in Ubuntu.
https://bugs.launchpad.net/bugs/1370523

Title:
  After Precise-Trusty, no /etc/ssh/ssh_host_ed25519_key is created

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/openssh/+bug/1370523/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1370523] Re: After Precise-Trusty, no /etc/ssh/ssh_host_ed25519_key is created

2014-09-17 Thread Simon Déziel
*** This bug is a duplicate of bug 1005440 ***
https://bugs.launchpad.net/bugs/1005440

** This bug has been marked a duplicate of bug 1005440
   Could not load host key: /etc/ssh/ssh_host_ecdsa_key when connecting

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to openssh in Ubuntu.
https://bugs.launchpad.net/bugs/1370523

Title:
  After Precise-Trusty, no /etc/ssh/ssh_host_ed25519_key is created

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/openssh/+bug/1370523/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1366868] Re: kvm: dompmwakeup fails if domain becomes pmsuspended

2014-09-17 Thread Colin Watson
Hello Chris, or anyone else affected,

Accepted seabios into trusty-proposed. The package will build now and be
available at
http://launchpad.net/ubuntu/+source/seabios/1.7.4-4ubuntu0.1 in a few
hours, and then in the -proposed repository.

Please help us by testing this new package.  See
https://wiki.ubuntu.com/Testing/EnableProposed for documentation how to
enable and use -proposed.  Your feedback will aid us getting this update
out to other Ubuntu users.

If this package fixes the bug for you, please add a comment to this bug,
mentioning the version of the package you tested, and change the tag
from verification-needed to verification-done. If it does not fix the
bug for you, please add a comment stating that, and change the tag to
verification-failed.  In either case, details of your testing will help
us make a better decision.

Further information regarding the verification process can be found at
https://wiki.ubuntu.com/QATeam/PerformingSRUVerification .  Thank you in
advance!

** Changed in: seabios (Ubuntu Trusty)
   Status: In Progress = Fix Committed

** Tags added: verification-needed

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to seabios in Ubuntu.
https://bugs.launchpad.net/bugs/1366868

Title:
  kvm: dompmwakeup fails if domain becomes pmsuspended

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/seabios/+bug/1366868/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1367422] Re: [FFE] Upgrade to 1.2.8

2014-09-17 Thread Launchpad Bug Tracker
This bug was fixed in the package libvirt - 1.2.8-0ubuntu1

---
libvirt (1.2.8-0ubuntu1) utopic; urgency=medium

  [ Chuck Short ]
  * New upstream release:  (LP: #1367422)
+ Dropped:
  - debian/patches/ovs-delete-port-if-exists-while-adding-new-one
+ Refreshed:
  - debian/patches/add-cgmanager-support.patch
  - debian/patches/storage-default-permission-mode-to-0711

  [ Serge Hallyn ]
  * d/apparmor
- install TEMPLATE.qemu and TEMPLATE.lxc
- add libvirt-lxc abstraction, add permissions to it needed for
  a ubuntu container to start.
- libvirt-qemu - add qemu-bridge-helper policy from upstream
- libvirt-qemu - add qemu-microblaze allows from upstream
- edit lxc.conf to enable apparmor by default  (LP: #914716)
  (LP: #1008393) (LP: #1088295)
  * d/apparmor/libvirt-qemu: add /dev/shm as path to spice.* nodes
for systemd case.  (LP: #1365163)
  * d/p/9030-create-socket-dir - create session socket dir if
needed  (Should be replaced eventually by the upstream fix)
  * d/p/9032-lxc-allow-no-security-driver: don't fail if apparmor
driver is not available (else the qa-regression-tests fail with
skip_apparmor)
 -- Serge Hallyn serge.hal...@ubuntu.com   Mon, 15 Sep 2014 18:30:06 -0500

** Changed in: libvirt (Ubuntu)
   Status: Confirmed = Fix Released

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to libvirt in Ubuntu.
https://bugs.launchpad.net/bugs/1367422

Title:
  [FFE] Upgrade to 1.2.8

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/libvirt/+bug/1367422/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1365163] Re: libvirt-qemu profile needs /dev/shm/spice-* rule for systemd hosts.

2014-09-17 Thread Launchpad Bug Tracker
This bug was fixed in the package libvirt - 1.2.8-0ubuntu1

---
libvirt (1.2.8-0ubuntu1) utopic; urgency=medium

  [ Chuck Short ]
  * New upstream release:  (LP: #1367422)
+ Dropped:
  - debian/patches/ovs-delete-port-if-exists-while-adding-new-one
+ Refreshed:
  - debian/patches/add-cgmanager-support.patch
  - debian/patches/storage-default-permission-mode-to-0711

  [ Serge Hallyn ]
  * d/apparmor
- install TEMPLATE.qemu and TEMPLATE.lxc
- add libvirt-lxc abstraction, add permissions to it needed for
  a ubuntu container to start.
- libvirt-qemu - add qemu-bridge-helper policy from upstream
- libvirt-qemu - add qemu-microblaze allows from upstream
- edit lxc.conf to enable apparmor by default  (LP: #914716)
  (LP: #1008393) (LP: #1088295)
  * d/apparmor/libvirt-qemu: add /dev/shm as path to spice.* nodes
for systemd case.  (LP: #1365163)
  * d/p/9030-create-socket-dir - create session socket dir if
needed  (Should be replaced eventually by the upstream fix)
  * d/p/9032-lxc-allow-no-security-driver: don't fail if apparmor
driver is not available (else the qa-regression-tests fail with
skip_apparmor)
 -- Serge Hallyn serge.hal...@ubuntu.com   Mon, 15 Sep 2014 18:30:06 -0500

** Changed in: libvirt (Ubuntu)
   Status: In Progress = Fix Released

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to libvirt in Ubuntu.
https://bugs.launchpad.net/bugs/1365163

Title:
  libvirt-qemu profile needs /dev/shm/spice-* rule for systemd hosts.

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/libvirt/+bug/1365163/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 914716] Re: cannot reboot lxc container

2014-09-17 Thread Launchpad Bug Tracker
This bug was fixed in the package libvirt - 1.2.8-0ubuntu1

---
libvirt (1.2.8-0ubuntu1) utopic; urgency=medium

  [ Chuck Short ]
  * New upstream release:  (LP: #1367422)
+ Dropped:
  - debian/patches/ovs-delete-port-if-exists-while-adding-new-one
+ Refreshed:
  - debian/patches/add-cgmanager-support.patch
  - debian/patches/storage-default-permission-mode-to-0711

  [ Serge Hallyn ]
  * d/apparmor
- install TEMPLATE.qemu and TEMPLATE.lxc
- add libvirt-lxc abstraction, add permissions to it needed for
  a ubuntu container to start.
- libvirt-qemu - add qemu-bridge-helper policy from upstream
- libvirt-qemu - add qemu-microblaze allows from upstream
- edit lxc.conf to enable apparmor by default  (LP: #914716)
  (LP: #1008393) (LP: #1088295)
  * d/apparmor/libvirt-qemu: add /dev/shm as path to spice.* nodes
for systemd case.  (LP: #1365163)
  * d/p/9030-create-socket-dir - create session socket dir if
needed  (Should be replaced eventually by the upstream fix)
  * d/p/9032-lxc-allow-no-security-driver: don't fail if apparmor
driver is not available (else the qa-regression-tests fail with
skip_apparmor)
 -- Serge Hallyn serge.hal...@ubuntu.com   Mon, 15 Sep 2014 18:30:06 -0500

** Changed in: libvirt (Ubuntu)
   Status: In Progress = Fix Released

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to libvirt in Ubuntu.
https://bugs.launchpad.net/bugs/914716

Title:
  cannot reboot lxc container

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/libvirt/+bug/914716/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1197884] Re: apache2.2 SSL has no forward-secrecy: need ECDHE keys

2014-09-17 Thread JorSol
** Bug watch added: Debian Bug tracker #733564
   http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=733564

** Also affects: apache2 (Debian) via
   http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=733564
   Importance: Unknown
   Status: Unknown

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to apache2 in Ubuntu.
https://bugs.launchpad.net/bugs/1197884

Title:
  apache2.2 SSL has no forward-secrecy: need ECDHE keys

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/apache2/+bug/1197884/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1197884] Re: apache2.2 SSL has no forward-secrecy: need ECDHE keys

2014-09-17 Thread JorSol
This bug is for Apache 2.2 not for Apache 2.4 so don't mark as fix
released when thats not the case...

This has been fixed already in Debian 7.6 and there is a debdiff for it
so there should not be  a considerable amount of work to apply it right
now.

Ubuntu 12.04 will be supported until 2017 thats 3 more years, this
qualify as SRU as the regression potential is near to zero, since it
just adds support for more ciphers to Apache, if for some reason anyone
don't want to use the EC cipher suites just add !ECDH to the list of
cipher suites.

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to apache2 in Ubuntu.
https://bugs.launchpad.net/bugs/1197884

Title:
  apache2.2 SSL has no forward-secrecy: need ECDHE keys

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/apache2/+bug/1197884/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1351306] Re: Cannot uninstall upstart and install systemd-sysv

2014-09-17 Thread Launchpad Bug Tracker
** Branch linked: lp:ubuntu/plymouth

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to dovecot in Ubuntu.
https://bugs.launchpad.net/bugs/1351306

Title:
  Cannot uninstall upstart and install systemd-sysv

To manage notifications about this bug go to:
https://bugs.launchpad.net/unity/+bug/1351306/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1197884] Re: apache2.2 SSL has no forward-secrecy: need ECDHE keys

2014-09-17 Thread Bug Watch Updater
** Changed in: apache2 (Debian)
   Status: Unknown = Fix Released

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to apache2 in Ubuntu.
https://bugs.launchpad.net/bugs/1197884

Title:
  apache2.2 SSL has no forward-secrecy: need ECDHE keys

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/apache2/+bug/1197884/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1008393] Re: The LXC container propagate the ro remount to the host mount point

2014-09-17 Thread Launchpad Bug Tracker
This bug was fixed in the package libvirt - 1.2.8-0ubuntu1

---
libvirt (1.2.8-0ubuntu1) utopic; urgency=medium

  [ Chuck Short ]
  * New upstream release:  (LP: #1367422)
+ Dropped:
  - debian/patches/ovs-delete-port-if-exists-while-adding-new-one
+ Refreshed:
  - debian/patches/add-cgmanager-support.patch
  - debian/patches/storage-default-permission-mode-to-0711

  [ Serge Hallyn ]
  * d/apparmor
- install TEMPLATE.qemu and TEMPLATE.lxc
- add libvirt-lxc abstraction, add permissions to it needed for
  a ubuntu container to start.
- libvirt-qemu - add qemu-bridge-helper policy from upstream
- libvirt-qemu - add qemu-microblaze allows from upstream
- edit lxc.conf to enable apparmor by default  (LP: #914716)
  (LP: #1008393) (LP: #1088295)
  * d/apparmor/libvirt-qemu: add /dev/shm as path to spice.* nodes
for systemd case.  (LP: #1365163)
  * d/p/9030-create-socket-dir - create session socket dir if
needed  (Should be replaced eventually by the upstream fix)
  * d/p/9032-lxc-allow-no-security-driver: don't fail if apparmor
driver is not available (else the qa-regression-tests fail with
skip_apparmor)
 -- Serge Hallyn serge.hal...@ubuntu.com   Mon, 15 Sep 2014 18:30:06 -0500

** Changed in: libvirt (Ubuntu)
   Status: Triaged = Fix Released

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to libvirt in Ubuntu.
https://bugs.launchpad.net/bugs/1008393

Title:
  The LXC container propagate the ro remount to the host mount point

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/libvirt/+bug/1008393/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1197884] Re: apache2.2 SSL has no forward-secrecy: need ECDHE keys

2014-09-17 Thread Robie Basak
Thank you for linking the Debian bug.

 This bug is for Apache 2.2 not for Apache 2.4 so don't mark as fix
released when thats not the case...

The status is defined to reflect the status in the development release,
where it is fixed. I'll add a Precise task for you though, to track
status for 12.04 specifically.

 This has been fixed already in Debian 7.6 and there is a debdiff for
it so there should not be a considerable amount of work to apply it
right now.

Agreed. That Debian has chosen to do this suggests that it may be a good
idea for Ubuntu also, and that there is a way to minimise regression.

 ...as the regression potential is near to zero

Message https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=733564#37
suggests that this is not true, and that we need to also patch openssl
to avoid regressing Mac clients. Please can you expand on this?

If someone can post a debdiff and post an accurate regression potential
analysis, then I think it's fine to ask the SRU team to consider this
case.

I would still want someone to drive this please; both in preparing the
patches for Ubuntu, and also in thoroughly testing for regressions
during the SRU process.

I would note though that 14.04 is out now, so an LTS path is also
already available to users.

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to apache2 in Ubuntu.
https://bugs.launchpad.net/bugs/1197884

Title:
  apache2.2 SSL has no forward-secrecy: need ECDHE keys

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/apache2/+bug/1197884/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1274527] Re: MAAS doesn't put its DNS server in resolv.conf

2014-09-17 Thread Jeff Lane
Maybe I misunderstand the region controller concept or my
understanding of the MAAS ecosystem is outdated.

AIUI there is a region controller that communicates with multiple
cluster controllers that further manage multiple nodes:


  /-- cluster foo - node1.foo, node2.foo, node3.foo ... nodeX.foo
/
region -- cluster bar - node1.bar, node2.bar, node3.bar ... nodeX.bar
   \
\-- cluster baz - node1.baz, node2.baz, node3.baz, ... nodeX.baz

Is that incorrect?  That's what I meant when I said region controller
my point was just in agreement that whatever entity controls DNS for
the MAAS environment should be aware and able to resolve it's own DNS
within the MAAS environment.

Part of my confusion is that I lack the hardware to do a config where I
install maas-region-controller on one machine and maas-cluster-
controller on another and then add nodes to see where things fall.  It's
a very complex system and there are gaps in my view of how it all plays
together.


Additionally this DID create an issue with juju as I did a juju bootstrap on my 
only maas server to bootstrap my only node.  Node booted and deployed and 
bootstrapped BUT when I attempted a 'juju ssh 0' to ssh to the bootstrap node, 
that failed because juju was trying to access the FQDN of node0, NOT it's IP 
address.

So even though MAAS set the FQDN of the node (supermicro.master in this
case) the inability to resolve those names inside the MAAS environment
caused juju to be unable to contact those nodes/units.  This was easily
resolved by editing /etc/resolv.conf on my MAAS server (it contains
everything, maas-region-controller, maas-cluster-controller and ALL
dependencies and ancillary packages/services AND all the juju stuff as
well) and making sure my MAAS server could use it's own instance of bind
for DNS resolution.

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to maas in Ubuntu.
https://bugs.launchpad.net/bugs/1274527

Title:
  MAAS doesn't put its DNS server in resolv.conf

To manage notifications about this bug go to:
https://bugs.launchpad.net/maas/+bug/1274527/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1370602] [NEW] package squid3 3.3.8-1ubuntu6.1 failed to install/upgrade: Unterprozess installiertes post-installation-Skript gab den Fehlerwert 1 zurück

2014-09-17 Thread no!chance
Public bug reported:

Upgrade to 14.04 from 12.04 failed while updating squid. On the screen I
saw the following message:

Fehler traten auf beim Bearbeiten von:  
 
 squid3 
 
 squid  
 
Error in function:  
 

 

 
Ein schwerwiegender Fehler ist aufgetreten

ProblemType: Package
DistroRelease: Ubuntu 14.04
Package: squid3 3.3.8-1ubuntu6.1
ProcVersionSignature: Ubuntu 3.2.0-68.102-generic 3.2.62
Uname: Linux 3.2.0-68-generic x86_64
ApportVersion: 2.14.1-0ubuntu3.4
Architecture: amd64
Date: Wed Sep 17 18:11:53 2014
DuplicateSignature: package:squid3:3.3.8-1ubuntu6.1:Unterprozess installiertes 
post-installation-Skript gab den Fehlerwert 1 zurück
ErrorMessage: Unterprozess installiertes post-installation-Skript gab den 
Fehlerwert 1 zurück
InstallationDate: Installed on 2014-03-23 (178 days ago)
InstallationMedia: Ubuntu-Server 10.04.1 LTS Lucid Lynx - Release amd64 
(20100816.2)
SourcePackage: squid3
Title: package squid3 3.3.8-1ubuntu6.1 failed to install/upgrade: Unterprozess 
installiertes post-installation-Skript gab den Fehlerwert 1 zurück
UpgradeStatus: Upgraded to trusty on 2014-09-17 (0 days ago)
mtime.conffile..etc.squid3.squid.conf: 2014-03-23T13:31:41.048825

** Affects: squid3 (Ubuntu)
 Importance: Undecided
 Status: New


** Tags: amd64 apport-package dist-upgrade trusty

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to squid3 in Ubuntu.
https://bugs.launchpad.net/bugs/1370602

Title:
  package squid3 3.3.8-1ubuntu6.1 failed to install/upgrade:
  Unterprozess installiertes post-installation-Skript gab den Fehlerwert
  1 zurück

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/squid3/+bug/1370602/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1370602] Re: package squid3 3.3.8-1ubuntu6.1 failed to install/upgrade: Unterprozess installiertes post-installation-Skript gab den Fehlerwert 1 zurück

2014-09-17 Thread Apport retracing service
** Tags removed: need-duplicate-check

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to squid3 in Ubuntu.
https://bugs.launchpad.net/bugs/1370602

Title:
  package squid3 3.3.8-1ubuntu6.1 failed to install/upgrade:
  Unterprozess installiertes post-installation-Skript gab den Fehlerwert
  1 zurück

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/squid3/+bug/1370602/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1366868] Re: kvm: dompmwakeup fails if domain becomes pmsuspended

2014-09-17 Thread Launchpad Bug Tracker
** Branch linked: lp:ubuntu/trusty-proposed/seabios

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to seabios in Ubuntu.
https://bugs.launchpad.net/bugs/1366868

Title:
  kvm: dompmwakeup fails if domain becomes pmsuspended

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/seabios/+bug/1366868/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1088295] Re: lxc container can control other container's cpu share, memory limit, or access of block and character devices

2014-09-17 Thread Launchpad Bug Tracker
This bug was fixed in the package libvirt - 1.2.8-0ubuntu1

---
libvirt (1.2.8-0ubuntu1) utopic; urgency=medium

  [ Chuck Short ]
  * New upstream release:  (LP: #1367422)
+ Dropped:
  - debian/patches/ovs-delete-port-if-exists-while-adding-new-one
+ Refreshed:
  - debian/patches/add-cgmanager-support.patch
  - debian/patches/storage-default-permission-mode-to-0711

  [ Serge Hallyn ]
  * d/apparmor
- install TEMPLATE.qemu and TEMPLATE.lxc
- add libvirt-lxc abstraction, add permissions to it needed for
  a ubuntu container to start.
- libvirt-qemu - add qemu-bridge-helper policy from upstream
- libvirt-qemu - add qemu-microblaze allows from upstream
- edit lxc.conf to enable apparmor by default  (LP: #914716)
  (LP: #1008393) (LP: #1088295)
  * d/apparmor/libvirt-qemu: add /dev/shm as path to spice.* nodes
for systemd case.  (LP: #1365163)
  * d/p/9030-create-socket-dir - create session socket dir if
needed  (Should be replaced eventually by the upstream fix)
  * d/p/9032-lxc-allow-no-security-driver: don't fail if apparmor
driver is not available (else the qa-regression-tests fail with
skip_apparmor)
 -- Serge Hallyn serge.hal...@ubuntu.com   Mon, 15 Sep 2014 18:30:06 -0500

** Changed in: libvirt (Ubuntu)
   Status: Triaged = Fix Released

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to libvirt in Ubuntu.
https://bugs.launchpad.net/bugs/1088295

Title:
  lxc container can control  other container's cpu share,memory limit,or
  access of  block and character devices

To manage notifications about this bug go to:
https://bugs.launchpad.net/openstack-manuals/+bug/1088295/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1087183] Re: MaaS cloud-init configuration specifies 'manage_etc_hosts: localhost'

2014-09-17 Thread Andreas Hasenack
Can someone mark the pyjuju task as won't fix?

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to maas in Ubuntu.
https://bugs.launchpad.net/bugs/1087183

Title:
  MaaS cloud-init configuration specifies 'manage_etc_hosts: localhost'

To manage notifications about this bug go to:
https://bugs.launchpad.net/juju/+bug/1087183/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1336855] Re: [SRU] non-interactive grub updates for 12.04 break on AWS

2014-09-17 Thread Launchpad Bug Tracker
** Branch linked: lp:cloud-init

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to cloud-init in Ubuntu.
https://bugs.launchpad.net/bugs/1336855

Title:
  [SRU] non-interactive grub updates for 12.04 break on AWS

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/cloud-init/+bug/1336855/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1370628] [NEW] [FFe] MAAS New 1.7 Upstream Release

2014-09-17 Thread Andres Rodriguez
Public bug reported:

In Utopic, we successfully released MAAS 1.7 Beta 1. That release
included a preview of some of the new upcoming features. It is important
to have this new release, because apart from having various bug fixes
for 1.7beta1, in includes the completion of the various features in 1.7.

MAAS 1.7 Final release will include:

- Finish base support for IPv6.
  *  Allow machines to be deploying with IPv6 addresses.
  * MAAS runs its own DHCPv6.

- Finish Robustness.
  * This includes the re-definition of the machine lifecycle in MAAS.
(MAAS now tracks when a machine is owned, installing, installed or
failed install).
  * Robust power actions (MAAS no longer fires and forgets)
  * Power status tracking (MAAS now tracks the power status of a machine
regardless of the state it is in)
  * Disk wiping (can wipe the disks if the user wishes so)

- Finish removal of the usage of Celery in favor of using twisted RPC.
  * Completely uses Twisted RPC instead of Celery for communication
between Region/Cluster and performing actions.
  * Reduces the dependencies. We no longer depend on Celery, Rabbitmq,
txlonpoll.
  * Reduces the amount of MAAS daemons.

- Finish new Image Store and Syncing.
  * MAAS Region can now sync images and spread them over to the clusters.
  * Allow's offline operation.
  * Allow's uploading custom images or other OS images.

- Finish support for Third Party OS.
  * Supports other OS's (CentOS/Windows).
  * Support custom Images/OS.

** Affects: maas (Ubuntu)
 Importance: Undecided
 Status: New

** Description changed:

  In Utopic, we currently have 1.7 beta 1. The final 1.7 Release includes
  the culmination of the following features already in beta1:
  
-  - Finish base support for IPv6.
-*  Allow machines to be deploying with IPv6 addresses.
-* MAAS runs its own DHCPv6.
+ - Finish base support for IPv6.
+   *  Allow machines to be deploying with IPv6 addresses.
+   * MAAS runs its own DHCPv6.
  
-  - Finish Robustness.
- * This includes the re-definition of the machine lifecycle in MAAS. (MAAS 
now tracks when a machine is owned, installing, installed or failed install).
- * Robust power actions (MAAS no longer fires and forgets)
- * Power status tracking (MAAS now tracks the power status of a machine 
regardless of the state it is in)
- * Disk wiping (can wipe the disks if the user wishes so)
- 
-  - Finish removal of the usage of Celery in favor of using twisted RPC.
- * Completely uses Twisted RPC instead of Celery for communication between 
Region/Cluster and performing actions.
- * Reduces the dependencies. We no longer depend on Celery, Rabbitmq, 
txlonpoll.
- * Reduces the amount of MAAS daemons.
+ - Finish Robustness.
+    * This includes the re-definition of the machine lifecycle in MAAS.
+  (MAAS now tracks when a machine is owned, installing, installed or   

+  failed install).
+    * Robust power actions (MAAS no longer fires and forgets)
+    * Power status tracking (MAAS now tracks the power status of a machine 
+  regardless of the state it is in)
+    * Disk wiping (can wipe the disks if the user wishes so)
  
-  - Finish new Image Store and Syncing.
- * MAAS Region can now sync images and spread them over to the clusters. 
Allow's offline operation.
+ - Finish removal of the usage of Celery in favor of using twisted RPC.
+    * Completely uses Twisted RPC instead of Celery for communication  
+  between Region/Cluster and performing actions.
+    * Reduces the dependencies. We no longer depend on Celery, Rabbitmq, 
+  txlonpoll.
+    * Reduces the amount of MAAS daemons.
  
-  - Finish support for third party OS systems (CentOS/Windows/SLES) and custom 
OS's.
- * MAAS now fully supports other OS's.
+ - Finish new Image Store and Syncing.
+    * MAAS Region can now sync images and spread them over to the clusters. 
+* Allow's offline operation.
+* Allow's uploading custom images or other OS images.
+ 
+ - Finish support for third party OS systems (CentOS/Windows/Suse) and 
+   custom OS's.
+    * MAAS now fully supports other OS's.

** Description changed:

  In Utopic, we currently have 1.7 beta 1. The final 1.7 Release includes
  the culmination of the following features already in beta1:
  
  - Finish base support for IPv6.
    *  Allow machines to be deploying with IPv6 addresses.
    * MAAS runs its own DHCPv6.
  
  - Finish Robustness.
-    * This includes the re-definition of the machine lifecycle in MAAS.
-  (MAAS now tracks when a machine is owned, installing, installed or   

-  failed install).
-    * Robust power actions (MAAS no longer fires and forgets)
-    * Power status tracking (MAAS now tracks the power status of a machine 
-  regardless of the state it is in)
-    * Disk wiping (can wipe the disks if the user wishes so)
+   * This includes the re-definition of the machine lifecycle in MAAS.
+ (MAAS now 

[Bug 1368737] Re: Pacemaker can seg fault on crm node online/standy

2014-09-17 Thread Rafael David Tinoco
Based on my last comment, I have created one PPA for users to test and give us 
feedback for this specific case: 

https://launchpad.net/~inaddy/+archive/ubuntu/lp1368737

Instructions on how to use:

# add-apt-repository ppa:inaddy/lp1368737 
# apt-get update 
# apt-get install pacemaker 

This PPA contains both fixes:

Pacemaker: haproxy monitor NG 
Pacemaker: Pacemaker's lrmd process crashed. 

With the following changelog:

pacemaker (1.1.10+git20130802-1ubuntu4~lp1368737~1) trusty;
urgency=medium

* Fix: services: Prevent use-of-NULL when executing service actions - 1/2 (LP: 
#1368737) 
* Fix: services: Fix the executing of synchronous actions - 2/2 (LP: #1368737) 

-- Rafael David Tinoco rafael.tin...@canonical.com Fri, 12 Sep 2014
15:52:14 -0300

pacemaker (1.1.10+git20130802-1ubuntu3) trusty; urgency=medium

* Fix: services: Do not allow duplicate recurring op entries - 1/3 (LP: 
#1353473) 
* High: lrmd: Merge duplicate recurring monitor operations - 2/3 (LP: #1353473) 
* Fix: lrmd: Cancel recurring operations before stop action is executed - 3/3 
(LP: #1353473) 

-- Rafael David Tinoco rafael.tin...@canonical.com Wed, 06 Aug 2014
09:24:13 -0300

Since I was waiting for the Stable Release Update for pacemaker on Trusty but 
it did not 
get released until the date of this fix. 

If this fix solves the issue I'll push both SRUs (for 2 cases above) for our 
sponsor team 
to upload them for Trusty. 

Waiting on community feedback to request the Release Update.

Thank you in advance.

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to pacemaker in Ubuntu.
https://bugs.launchpad.net/bugs/1368737

Title:
  Pacemaker can seg fault on crm node online/standy

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/pacemaker/+bug/1368737/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1370628] Re: [FFe] MAAS New 1.7 Upstream Release

2014-09-17 Thread Andres Rodriguez
** Description changed:

- In Utopic, we successfully released MAAS 1.7 Beta 1. That release
- included a preview of some of the new upcoming features. It is important
- to have this new release, because apart from having various bug fixes
- for 1.7beta1, in includes the completion of the various features in 1.7.
+ We would like to request an Standing Feature Freeze for MAAS 1.7. This 
Standing Feature Freeze will include the releases of MAAS:
+ 1.7 beta 4 - Sept 25th
+ 1.7 RC's - Oct 2nd - Oct 8th
+ 1.7 Final - Oct 9th
+  
+ In Utopic, we successfully released MAAS 1.7 Beta 1. That release included a 
preview of some of the new upcoming features. It is important to have this new 
release, because apart from having various bug fixes for 1.7beta1, in includes 
the completion of the various features in 1.7.
  
  MAAS 1.7 Final release will include:
  
  - Finish base support for IPv6.
    *  Allow machines to be deploying with IPv6 addresses.
    * MAAS runs its own DHCPv6.
  
  - Finish Robustness.
    * This includes the re-definition of the machine lifecycle in MAAS.
  (MAAS now tracks when a machine is owned, installing, installed or
  failed install).
    * Robust power actions (MAAS no longer fires and forgets)
    * Power status tracking (MAAS now tracks the power status of a machine
  regardless of the state it is in)
    * Disk wiping (can wipe the disks if the user wishes so)
  
  - Finish removal of the usage of Celery in favor of using twisted RPC.
    * Completely uses Twisted RPC instead of Celery for communication
  between Region/Cluster and performing actions.
    * Reduces the dependencies. We no longer depend on Celery, Rabbitmq,
  txlonpoll.
    * Reduces the amount of MAAS daemons.
  
  - Finish new Image Store and Syncing.
    * MAAS Region can now sync images and spread them over to the clusters.
    * Allow's offline operation.
    * Allow's uploading custom images or other OS images.
  
  - Finish support for Third Party OS.
    * Supports other OS's (CentOS/Windows).
    * Support custom Images/OS.

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to maas in Ubuntu.
https://bugs.launchpad.net/bugs/1370628

Title:
  [FFe] MAAS New 1.7 Upstream Release

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/maas/+bug/1370628/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 306430] Re: ~/.ssh/config does not handle multiple hosts correctly

2014-09-17 Thread Simon Déziel
** Changed in: openssh (Ubuntu)
   Status: In Progress = Fix Released

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to openssh in Ubuntu.
https://bugs.launchpad.net/bugs/306430

Title:
  ~/.ssh/config does not handle multiple hosts correctly

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/openssh/+bug/306430/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 306430] Re: ~/.ssh/config does not handle multiple hosts correctly

2014-09-17 Thread Simon Déziel
In Precise, ssh_config's man page correctly states that multiple hosts
(ex: Host A B C) are to be separated by spaces and that multiple from=
(ex: from=example.com,192.2.0.1) in the authorized_keys files are
comma-separated.

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to openssh in Ubuntu.
https://bugs.launchpad.net/bugs/306430

Title:
  ~/.ssh/config does not handle multiple hosts correctly

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/openssh/+bug/306430/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1330120] Re: facter doesn't handle can't open /proc/interrupts at /usr/bin/lsdev line 15.

2014-09-17 Thread Tim Landscheidt
Filed https://tickets.puppetlabs.com/browse/FACT-709 upstream.

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to facter in Ubuntu.
https://bugs.launchpad.net/bugs/1330120

Title:
  facter doesn't handle can't open /proc/interrupts at /usr/bin/lsdev
  line 15.

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/facter/+bug/1330120/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1369785] Re: kvm modules not autoloaded on ppc64el

2014-09-17 Thread Serge Hallyn
We can become more clever about the packaging later, but this proposed debdiff 
should
   1. clean up the old qemu-system-x86 sysvinit job
   2. install a qemu-kvm upstart job on ppcc64le


** Patch added: d1.debdiff
   
https://bugs.launchpad.net/ubuntu/+source/qemu/+bug/1369785/+attachment/4206607/+files/d1.debdiff

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to qemu in Ubuntu.
https://bugs.launchpad.net/bugs/1369785

Title:
  kvm modules not autoloaded on ppc64el

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/qemu/+bug/1369785/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1324174] Re: qemu should attempt to re-load kvm_intel to enable nesting at first install

2014-09-17 Thread Serge Hallyn
Thanks, the new version fixed the bug.

** Tags removed: verification-needed
** Tags added: verification-done

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to qemu in Ubuntu.
https://bugs.launchpad.net/bugs/1324174

Title:
  qemu should attempt to re-load kvm_intel to enable nesting at first
  install

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/qemu/+bug/1324174/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1005440] Re: Could not load host key: /etc/ssh/ssh_host_ecdsa_key when connecting

2014-09-17 Thread Simon Déziel
The issue I believe is because openssh-server.postinst doesn't add new
HostKey to an existing sshd_config file. Because of this, newer key
format are not generated in postinst. IMHO, they should always be
generated via ssh-keygen -A and the admin would then be free to
include a HostKey directive for every supported key type.

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to openssh in Ubuntu.
https://bugs.launchpad.net/bugs/1005440

Title:
  Could not load host key: /etc/ssh/ssh_host_ecdsa_key when connecting

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/openssh/+bug/1005440/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1330120] Re: facter doesn't handle can't open /proc/interrupts at /usr/bin/lsdev line 15.

2014-09-17 Thread larsen
Thx!

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to facter in Ubuntu.
https://bugs.launchpad.net/bugs/1330120

Title:
  facter doesn't handle can't open /proc/interrupts at /usr/bin/lsdev
  line 15.

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/facter/+bug/1330120/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1336855] Re: [SRU] non-interactive grub updates for 12.04 break on AWS

2014-09-17 Thread Ben Howard
Uploaded a new branch for SRU after chatting with Scott. Pending review.

** Branch linked: lp:~utlemming/ubuntu/precise/cloud-
init/lp1336855-1363260

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to cloud-init in Ubuntu.
https://bugs.launchpad.net/bugs/1336855

Title:
  [SRU] non-interactive grub updates for 12.04 break on AWS

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/cloud-init/+bug/1336855/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1281793] Re: lxc packaging w/ bridge-utils is confused

2014-09-17 Thread Daniel Ghe
On ubuntu 14.04, to remove lxc, first run:
service lxc-net stop
then
aptitude remove lxc

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to lxc in Ubuntu.
https://bugs.launchpad.net/bugs/1281793

Title:
  lxc packaging w/ bridge-utils is confused

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/lxc/+bug/1281793/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1300133] Re: Generate ED25519 host keys on upgrade

2014-09-17 Thread Launchpad Bug Tracker
Status changed to 'Confirmed' because the bug affects multiple users.

** Changed in: openssh (Ubuntu)
   Status: New = Confirmed

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to openssh in Ubuntu.
https://bugs.launchpad.net/bugs/1300133

Title:
  Generate ED25519 host keys on upgrade

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/openssh/+bug/1300133/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1300133] Re: Generate ED25519 host keys on upgrade

2014-09-17 Thread Simon Déziel
@cjwatson, IMHO running ssh-keygen -A and the accompanying restorecon
if applicable should be done unconditionally in postinst.

This way, the admin would be free to simply add the newer HostKey
directives they want to use in sshd_config. More details about this
suggestion in LP: #1005440 and LP: #1370523

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to openssh in Ubuntu.
https://bugs.launchpad.net/bugs/1300133

Title:
  Generate ED25519 host keys on upgrade

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/openssh/+bug/1300133/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 161047] Re: ssh server forces a command when it should not

2014-09-17 Thread Simon Déziel
From https://bugzilla.mindrot.org/show_bug.cgi?id=1472#c3:

  Mass update RESOLVED-CLOSED after release of openssh-5.1

And Ubuntu ships version =5.1+ since at least Precise.

** Changed in: openssh (Ubuntu)
   Status: Triaged = Fix Released

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to openssh in Ubuntu.
https://bugs.launchpad.net/bugs/161047

Title:
  ssh server forces a command when it should not

To manage notifications about this bug go to:
https://bugs.launchpad.net/openssh/+bug/161047/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1369785] Re: kvm modules not autoloaded on ppc64el

2014-09-17 Thread Ubuntu Foundations Team Bug Bot
** Tags added: patch

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to qemu in Ubuntu.
https://bugs.launchpad.net/bugs/1369785

Title:
  kvm modules not autoloaded on ppc64el

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/qemu/+bug/1369785/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1309594] Re: kernel-libipsec not loading

2014-09-17 Thread Simon Déziel
@ttzforj, I understand the need for a userspace implementation when
using OpenVZ (LXC too?) but for iptables, are you aware of the policy
module? I find it very useful and relatively easy to use:

  # Allow only SSH when over IPsec
  iptables -A INPUT -p tcp --dport 22 -m policy --dir in --pol ipsec -j ACCEPT
  iptables -A INPUT -p tcp --dport 22 -j REJECT

Regards,
Simon

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to strongswan in Ubuntu.
https://bugs.launchpad.net/bugs/1309594

Title:
  kernel-libipsec not loading

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/strongswan/+bug/1309594/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1370049] Re: mongodb build disables scripting instead of using libmozjs

2014-09-17 Thread Michael Hudson-Doyle
libmozjs was removed in 2.6 which is what we have in utopic.

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to mongodb in Ubuntu.
https://bugs.launchpad.net/bugs/1370049

Title:
  mongodb build disables scripting instead of using libmozjs

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/mongodb/+bug/1370049/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1370771] [NEW] package samba4 4.0.0~alpha18.dfsg1-4ubuntu2 failed to install/upgrade: subprocess installed post-installation script returned error exit status 126

2014-09-17 Thread Luke Shimkus
Public bug reported:

I have no idea what the problem. I am kind of a noob, but when I tried
installing it. This error poped up.

ProblemType: Package
DistroRelease: Ubuntu 12.04
Package: samba4 4.0.0~alpha18.dfsg1-4ubuntu2
ProcVersionSignature: Ubuntu 3.5.0-23.35~precise1-generic 3.5.7.2
Uname: Linux 3.5.0-23-generic i686
ApportVersion: 2.0.1-0ubuntu17.1
Architecture: i386
Date: Wed Sep 17 19:50:37 2014
ErrorMessage: subprocess installed post-installation script returned error exit 
status 126
InstallationMedia: Ubuntu 12.04.2 LTS Precise Pangolin - Release i386 
(20130213)
MarkForUpload: True
SourcePackage: samba4
Title: package samba4 4.0.0~alpha18.dfsg1-4ubuntu2 failed to install/upgrade: 
subprocess installed post-installation script returned error exit status 126
UpgradeStatus: No upgrade log present (probably fresh install)

** Affects: samba4 (Ubuntu)
 Importance: Undecided
 Status: New


** Tags: apport-package i386 precise

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to samba4 in Ubuntu.
https://bugs.launchpad.net/bugs/1370771

Title:
  package samba4 4.0.0~alpha18.dfsg1-4ubuntu2 failed to install/upgrade:
  subprocess installed post-installation script returned error exit
  status 126

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/samba4/+bug/1370771/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1274527] Re: MAAS doesn't put its DNS server in resolv.conf

2014-09-17 Thread Julian Edwards
Your case is but one possible configuration of a MAAS installation,
where you have the whole region on a single box.

The region is a collection of application server threads, PostgreSQL and
the soon-to-be-removed Celery.  All of these components can be running
across varied hosts for HA reasons.  MAAS was not designed to have a
region on a single machine.

In your case, the convenience package called maas which installs
everything on a single host could set resolv.conf, for convenience,
since you are also using the same host as the juju client.

But in the case of you using a totally separate host for MAAS access,
this won't help and MAAS cannot help you at all.

I hope that makes it clearer!

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to maas in Ubuntu.
https://bugs.launchpad.net/bugs/1274527

Title:
  MAAS doesn't put its DNS server in resolv.conf

To manage notifications about this bug go to:
https://bugs.launchpad.net/maas/+bug/1274527/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


Re: [Bug 1336855] Re: [SRU] non-interactive grub updates for 12.04 break on AWS

2014-09-17 Thread Ron Wail
Thanks for the reply... I'm still working out how the Ubuntu 
daily/release dev process works :)

I just found the page that documents what SRU is :)

Am I right in thinking that after review it will be released on precise 
and trusty and hit the cloud-images/AWS at the same time?

We're currently running on precise but moving to trusty at the same time 
as we migrate our deployment processes to rely more on cloud-init on 
local vagrant as well as AWS builds... so there's lots of moving parts :)

Thanks,

Ron

On 2014-09-18 05:52 , Ben Howard wrote:
 Uploaded a new branch for SRU after chatting with Scott. Pending review.

 ** Branch linked: lp:~utlemming/ubuntu/precise/cloud-
 init/lp1336855-1363260



Ron

-- 
Design depends largely on constraints. - Charles Eames

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to cloud-init in Ubuntu.
https://bugs.launchpad.net/bugs/1336855

Title:
  [SRU] non-interactive grub updates for 12.04 break on AWS

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/cloud-init/+bug/1336855/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1292234] Re: qcow2 image corruption in trusty (qemu 1.7 and 2.0 candidate)

2014-09-17 Thread Jamie Strandboge
This happened again with an important VM. I still don't have a
reproducer for testing the bisect packages :(

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to qemu in Ubuntu.
https://bugs.launchpad.net/bugs/1292234

Title:
  qcow2 image corruption in trusty (qemu 1.7 and 2.0 candidate)

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/qemu/+bug/1292234/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1331081] Re: please split libvirt-driver apparmor abstraction for qemu and containers

2014-09-17 Thread Serge Hallyn
** Changed in: libvirt (Ubuntu)
   Status: In Progress = Fix Released

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to libvirt in Ubuntu.
https://bugs.launchpad.net/bugs/1331081

Title:
  please split libvirt-driver apparmor abstraction for qemu and
  containers

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/libvirt/+bug/1331081/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs


[Bug 1356012] Re: maas incorrectly overmanages DNS reverse zones

2014-09-17 Thread LaMont Jones
See also https://www.ietf.org/rfc/rfc2317.txt for a very nice (still
current best practice 16 years later) writeup on how to handle zones
smaller than /24.

If you guys have any other DNS questions, feel free to ask me, or one of
the other admins.

-- 
You received this bug notification because you are a member of Ubuntu
Server Team, which is subscribed to maas in Ubuntu.
https://bugs.launchpad.net/bugs/1356012

Title:
  maas incorrectly overmanages DNS reverse zones

To manage notifications about this bug go to:
https://bugs.launchpad.net/maas/+bug/1356012/+subscriptions

-- 
Ubuntu-server-bugs mailing list
Ubuntu-server-bugs@lists.ubuntu.com
Modify settings or unsubscribe at: 
https://lists.ubuntu.com/mailman/listinfo/ubuntu-server-bugs