Search found 1428 matches

by Gordon
18 Nov 2019, 05:02
Forum: B2 & B3 Support
Topic: Admin account locked out
Replies: 7
Views: 246

Re: Admin account locked out

I guess this requires some additional explaining. There are four possible methods for using php: command line execution - this is not web accessible as an Apache module - all scripts will be executed as the www/apache user as a dedicated service - this is commonly referred to as FastCGI or FPM metho...
by Gordon
18 Nov 2019, 04:12
Forum: B2 & B3 Support
Topic: Debian 10 "Buster"
Replies: 24
Views: 3017

Re: Debian 10 "Buster"

Agreed, I myself actually like to have folders that are exposed to external users to be separated from the root partition. That way, if they cause an out of disk space it won't crash the whole system. Should you go ahead and split of `home` I would suggest that you keep the swap partition as the sec...
by Gordon
17 Nov 2019, 10:59
Forum: B2 & B3 Support
Topic: Debian 10 "Buster"
Replies: 24
Views: 3017

Re: Debian 10 "Buster"

Did a quick scan on the installer as published on GitHub. Seems like the Debian installation uses the full disk as 'system' except for the last bit being used as swap? If you convert that to ext4 you will not be able to boot the B3 because u-boot requires the partition that holds the kernel uImage t...
by Gordon
04 Nov 2019, 17:39
Forum: B2 & B3 Support
Topic: Admin account locked out
Replies: 7
Views: 246

Re: Admin account locked out

Ah... yes. Haven't run Debian for a while ;) www-data sounds familiar. Crontab being empty is a positive but does not guarantee that a worm can't restart itself when being killed. The well known entrance on your OS version is php.cgi by the way and this is not needed to run your system; you should l...
by Gordon
04 Nov 2019, 16:39
Forum: B2 & B3 Support
Topic: Admin account locked out
Replies: 7
Views: 246

Re: Admin account locked out

Uhm... Are you still running the original Debian based system? If you see a lot of CPU activity on perl you may want to verify whether these processes are running as user `www`. Also check the crontab for user www, this should be empty but I suspect it won't be.
by Gordon
03 Nov 2019, 14:46
Forum: B2 & B3 Support
Topic: Admin account locked out
Replies: 7
Views: 246

Re: Admin account locked out

If you are root you can simply issue `passwd admin` and it will ask you to supply a new password (without asking for the old one). My guess however would be that the bubba-admin service has failed and the pages are now being served by the web server's user that is lacking the correct privileges. Run...
by Gordon
28 Oct 2019, 16:34
Forum: Development
Topic: [gentoo|bubbagen] week 43 upgrades advisory
Replies: 0
Views: 547

[gentoo|bubbagen] week 43 upgrades advisory

Last week's updates proved to contain a not so welcome surprise that you may or may not already have suffered from. Somewhere midway portage loses its ability to download packages and there is no automated method to recover from that. To verify if you are affected check the contents of /usr/portage/...
by Gordon
28 Sep 2019, 15:01
Forum: B2 & B3 Support
Topic: Keeping B3 up to date
Replies: 2
Views: 435

Re: Keeping B3 up to date

I don't think Excito was actively maintaining the software even when they were still in good financial shape. ;) Key thing here is that most Linux distributions like Windows will at some point require you to install a new version, at which time you are likely to loose many of your settings, if not a...
by Gordon
25 Sep 2019, 06:24
Forum: B2 & B3 Support
Topic: myownb3.com problems
Replies: 18
Views: 1337

Re: myownb3.com problems

Good point. Sharing my script for those interested: #!/bin/sh if [ -z "$1" ]; then myname=$(echo $0 | sed "s/^.*\/\([^\/][^\/]*\)$/\1/") echo "Usage: $myname <identity>" exit fi newip=$(dig @ns1.excito.org $1.myownb3.com | grep -v "^[;]" | grep -v "^$" | awk '{print $5}') oldip=$(grep "$1.myownb3.co...
by Gordon
24 Sep 2019, 15:16
Forum: B2 & B3 Support
Topic: myownb3.com problems
Replies: 18
Views: 1337

Re: myownb3.com problems

Sep 24 14:23:52 CRM sudo: root : TTY=unknown ; PWD=/root ; USER=root ; COMMAND=/bin/chown www-data -R / ???? Okay, that looks like someone was able to inject arbitrary code through some web based (CRM?) application and as you allowed the www user to sudo the chown command they now own your system. ...
by Gordon
24 Sep 2019, 13:46
Forum: B2 & B3 Support
Topic: myownb3.com problems
Replies: 18
Views: 1337

Re: myownb3.com problems

HELP!!!!!!!!!!! HELP!!!!!!!!!!!!!!! I have 2 ARM B3 hacked, I think that depends by this myownbe.com problem. I cna't connect in ssh mode with putty tell me nettwork error: connection refused. MySql Database not working I have many customer in fail!!! Calm down. They're not hacked. The problem is t...
by Gordon
23 Sep 2019, 10:10
Forum: B2 & B3 Support
Topic: myownb3.com problems
Replies: 18
Views: 1337

Re: myownb3.com problems

I have the same problem. The domain is for sale? Not exactly. I did some querying in historical domain data and it looks like the domain was never owned by Rodeus. When the domain registration expired on September 16, 2019, it was instantly purchased by an online service provider that has no intent...
by Gordon
22 Sep 2019, 11:47
Forum: B2 & B3 Support
Topic: myownb3.com problems
Replies: 18
Views: 1337

Re: myownb3.com problems

I was afraid that might have happened. Still unsure whether this domain was still registered to Johannes like the mybubba.org domain and dropped alongside it or if this was an oversight from Rodeus. Hopefully Charles will be able to tell us more in a short while.
by Gordon
21 Sep 2019, 15:47
Forum: B2 & B3 Support
Topic: myownb3.com problems
Replies: 18
Views: 1337

Re: myownb3.com problems

Was still working earlier this morning. I ran some updates on my parents' B3. Random pings now give me three (so far) out of the pool posted by Puma. As far as I can tell the easyfind service itself does not appear to be compromised, they just seem to have taken control of the myownb3.com domain whi...
by Gordon
11 Sep 2019, 11:06
Forum: Development
Topic: [Gentoo|Bubbagen] experimental nftables support added to bubba-overlay
Replies: 0
Views: 786

[Gentoo|Bubbagen] experimental nftables support added to bubba-overlay

As xtables support appears to be degrading for newer kernels (xtables-addons can already no longer be compiled on kernel versions higher than 4.14.nnn) the next release of Bubbagen will be exclusively using nftables backend for firewalling. As part of the preparation I have added a prerelease of the...