XMPP Service Operators - 2021-04-28


  1. tom

    Grr! Another system hang

  2. jonas’

    Holger, yeah, another UDP protocol I saw the other day (I don’t recall which) requires that the initiator first sends a zero-byte packet and the responder will send a zero-byte packet and only then further exchange happens

  3. jonas’

    something like that would be sensible… probably not with zero bytes, but requiring that the initial request is >= the response

  4. Holger

    I still need to check how you manage to get that 1:5 ratio though. Typically, request and response sizes should be much closer.

  5. Holger

    I mean if that just works by omitting request fields that are mandatory in practice, maybe the server could ignore those requests after all. But no idea.

  6. Martin

    > Establishing a secure connection from muc.tigase.org to lebihan.pl failed. Certificate hash: 6309c033094e3d8fb71d4dea59197ac81bd38240a4c03a68c10fee75fc09ac47. Error with certificate 0: certificate has expired. Told them also yesterday in their muc but no reply so far.

  7. jonas’

    Holger, I think I have pcaps

  8. jonas’

    (and this is for STUN, mind)

  9. Licaon_Kter

    My logs are spammed every second :( > [info] <0.296.0>@ejabberd_listener:accept:273 (<0.21543.0>) Accepted connection hidden_by_ejabberd -> LANIP:5269 > [info] <0.21543.0>@ejabberd_s2s_in:process_closed:132 Closing inbound s2s connection tigase.org -> mydomain.tld: Stream closed by local host: not-authorized

  10. Licaon_Kter

    I've reached Tigase devs now, certbot fail...heh

  11. moparisthebest

    has anyone ever said anything good about certbot

  12. moparisthebest

    I've never seen anyone say "certbot just worked"

  13. Licaon_Kter

    _Happy customers don't complain_

  14. moparisthebest

    I've seen a lot of, and also said a lot of times, "acme.sh just worked" so I'm not sure that's true

  15. Licaon_Kter

    Yeah, acme.sh just failed for me last week http response 0 bytes, fun. I've put it to test 2 days later and it worked fine now.

  16. Martin

    > I've never seen anyone say "certbot just worked" I never talk about certbot as it just works.

  17. Ge0rG

    certbot just orks.

  18. Martin

    Tigase is still not reachable from here.

  19. Licaon_Kter

    Didn't say they fixed it :))

  20. Martin

    Isn't manually running the certbot command and reloading services done in a few seconds?

  21. Ge0rG

    my LE workflow involves running multiple scripts on two machines and copy&pasting a cert from stdin into a script on a third machine.

  22. Licaon_Kter

    You don't want to do that, every 3 months, it's tiresome :)) You'll eventually automate...and then...bang

  23. Ge0rG

    Yeah.

  24. Ge0rG

    Eventually

  25. Martin

    Ad also push.tigase.im seems affected it is probably a quite day for siskin users.

  26. Licaon_Kter

    Until this cron resched for me, I never had a successful update.

  27. Licaon_Kter

    Martin: it's a quite day lol

  28. Licaon_Kter

    Martin: it's a quiet day lol

  29. menel

    I use dehydrated and if something fails it should warn via xmpp... But in never failed so far..

  30. moparisthebest

    now you've done it menel , gone and jinx'd yourself

  31. menel

    😄, yeah at work I'm also that guy.. "Man this shift is ok" Everyone: "aaah!"

  32. mathieui

    jonas’, thanks for your mail to operators@, not sure why I got it twice though

  33. jonas’

    probably you got my copy, because I got none

  34. jonas’

    but that might just be the xmpp list server discriminating against me as usual

  35. moparisthebest

    last I looked it still needed fixes for DKIM etc

  36. jonas’

    I don’t care about DKIM

  37. moparisthebest

    I don't get probably half of emails to the lists, I stopped looking at them

  38. jonas’

    so that’s not it

  39. moparisthebest

    everyone else does though

  40. jonas’

    doesn’t help with the specific issue that my mails are sometimes stuck for half an hour in the list queues

  41. moparisthebest

    yea, I'm just saying half the people subscribed to the lists miss half the messages, adjust the percentages as you see fit

  42. jonas’

    moparisthebest, yeah, if you have any practical suggestions on how to fix it, go ahead

  43. jonas’

    in iteam@ preferrably

  44. jonas’

    then we can get someone with +w on the mailman to fix it

  45. moparisthebest

    I have before but I can do it again

  46. jonas’

    even though I think that DKIM was a terrible idea for private email addresses, but whatever.

  47. Martin

    > jonas’, thanks for your mail to operators@, not sure why I got it twice though Me.too

  48. Martin

    > jonas’, thanks for your mail to operators@, not sure why I got it twice though Me too

  49. Martin

    > X-Clacks-Overhead: GNU Terry Pratchett 🤔

  50. jayteeuk

    Wow, that's a blast from the past!

  51. Martin

    https://xclacksoverhead.org/home/about

  52. Martin

    Sweet.

  53. Martin

    I recall having read one or two discworld books but I can barely remember. Something about wearing puppets on the hips or so. 😁

  54. jayteeuk

    I think Small Gods was my first, followed by Reaper Man. I had quite a collection, but my ex-wife took most of them.

  55. Ge0rG

    I've got a bunch of them on dead tree, but rather re-reading during sleepless nights on the phone AMOLED, red-on-black

  56. Martin

    Seems I also get ML replies twice.

  57. jonas’

    maybe accidentally subscribed twice?

  58. Ge0rG

    I only got one.

  59. Martin

    > maybe accidentally subscribed twice? I recall I already asked whether I'm subscribed twice and nobody knew and from the mail headers I could not tell.

  60. Martin

    So little activity there so I forgot. 😂

  61. mathieui

    jonas’: I also get two and I don't think you can subscribe twice with the same address

  62. mathieui

    OK, found it, Link Mauve subscribed our admin redirect at jabberfr to the mailing list too 😅

  63. tom

    » <Licaon_Kter> Yeah, acme.sh just failed for me last week http response 0 bytes, fun. acme.sh doesn't include a webserver

  64. Licaon_Kter

    tom: you wanted to say something but stopped at the middle? Also missed the part where I said it run again later successfully so there was any missing thing (on my side)?

  65. Licaon_Kter

    tom: you wanted to say something but stopped at the middle? Also missed the part where I said it run again later successfully so there was no missing thing (on my side)?

  66. Licaon_Kter

    tom: you wanted to say something but stopped in the middle? Also missed the part where I said it run again later successfully so there was no missing thing (on my side)?

  67. tom

    No