melmurp

Members
  • Posts

    39
  • Joined

  • Last visited

Posts posted by melmurp

  1. I was looking at this to replace OpenVPN containers that I set as network type of various dockers but I noticed that any container I set to the wireguard tunnel is using unraid's default DNS routing and not the wireguard provided one.

     

    image.png.250da8dafbf502a41dbc225c5d986ae8.png

    Likely I'm misunderstanding but shouldn't this setting dictate what the tunnel uses? Aside from manually adding -dns to every docker using the tunnel is there some setting I'm not using correctly?

  2. 54 minutes ago, Squid said:

    Only thing fundamentally changed was that the system necessitates a re-download of the icons for the containers when first hitting either the Docker or Dashboard tab.  If it's unable to do that, then it's going to keep on trying every time you hit it.

     

    Ok, let me try hardcoding the DNS... I don't see it being blocked but it's something to try.

    Thanks!

     

    edit... even with straight to google or cloudflare slow.

    If I disable dockers everything loads fine

  3. Was hoping someone can explain the settings...

    Fixed IP address (optional):  - If this isn't set it grabs a x.x.x.1 IP

    ENV6: Container Variable: ServerIP - What is this for if you have the ip above?

     

    Also...

    I'm running the test from cloudflare
    https://www.cloudflare.com/ssl/encrypted-sni/

     

    The Secure DNS is unknown and SNI fails... I understand why SNI fails but what's happening with the DNS check?
    If I check the logs or do a lookup I see it's going to 1.1.1.1

  4. @ich777 Seen a lot of back and forth about mods and the Ark container.
    It took me a few searches and re-reads but if you just update your template with the two extra paths below everything just works out the box. When someone googles "how to add mods to linux ark" the official steps will work with your template.

     

    /mnt/cache/appdata/steamcmd/steamapps

    Container Path: /serverdata/Steam/steamapps

     

    /mnt/cache/appdata/steamcmd/steamapps

    Container Path: /serverdata/serverfiles/Engine/Binaries/ThirdParty/SteamCMD/Linux/steamapps

     

    Thanks again for all your hard work!

    Also thanks to fellow ark players that worked out this pathing issue

     

    • Like 1
  5. 9 hours ago, primeval_god said:

    @melmurp @muslimsteel You might want to consider raising an issue over at https://github.com/netdata/netdata/ where the developers of Netdata and the Docker container reside. 

     

    9 hours ago, muslimsteel said:

    @primeval_god Thanks, looks like they might have an issue open for this same thing on GitHub:

    https://github.com/netdata/netdata/issues/9084

     

    Thanks guys, seems they fixed it so just need to wait for the next release

    https://github.com/netdata/netdata/pull/9107

  6. Started getting fork errors and tons of odd behavior... turned out something was creating a massive amount of processes.

    That something is netdata :/ I've ran this for months and no issue but since the switch it seems things aren't working the same

    Note that I'm using the default config and haven't touched any settings.

     

    201 is netdata and I waited 5s between commands... if I leave this going it'll just keep creating processes until my machine starts to throw errors after a few days.

     

    ps --no-headers auxwwwm | cut -f1 -d' ' | sort | uniq -c | sort -n
          2 100
          2 daemon
          2 message+
          3 ntp
          4 102
          4 avahi
          4 rpc
          5 103
         27 472
         33 101
        168 nobody
        194 sshd
        260 201
       1677 root

     

    ps --no-headers auxwwwm | cut -f1 -d' ' | sort | uniq -c | sort -n
          2 100
          2 daemon
          2 message+
          3 ntp
          4 102
          4 avahi
          4 rpc
          5 103
         27 472
         33 101
        168 nobody
        194 sshd
        352 201
       1672 root

     

    I check what the processes are and I see hundreds of these

    201      12273  0.0  0.0      0     0 ?        ZNs  21:08   0:00 [timeout] <defunct>
    201      12470  0.0  0.0      0     0 ?        ZNs  21:08   0:00 [timeout] <defunct>
    201      12711  0.0  0.0      0     0 ?        ZNs  21:08   0:00 [timeout] <defunct>
    201      12895  0.0  0.0      0     0 ?        ZNs  21:08   0:00 [timeout] <defunct>
    201      13054  0.0  0.0      0     0 ?        ZNs  21:08   0:00 [timeout] <defunct>
    201      13235  0.0  0.0      0     0 ?        ZNs  21:08   0:00 [timeout] <defunct>
    201      13415  0.0  0.0      0     0 ?        ZNs  21:08   0:00 [timeout] <defunct>

     

    I'm not sure where netdata logs are so I don't know what it's trying to do that keeps spinning... any thoughts?

  7. 2 hours ago, binhex said:

    yeah i wasnt suggesting removing all dhcp options, just dns, but as you pointed out its already filtered in the ovpn config file, so im a bit perplexed as to why the option still gets pushed!.

     

    did you put in the ipv6 filter options in the ovpn file, im assuming so, right?.

     

    can you try changing the filter in the ovpn file from:-

    
    pull-filter ignore "dhcp-option DNS6"

    to:-

    
    pull-filter ignore "dhcp-option DNS"

    See if that successfully filters the pushed option, you dont need dns ipv4/ipv6 pushed in any manner tbh, this is defined by you in the name_servers env var value, so you are in control of this (and rightly so).

     

    Tue May  5 18:59:24 2020 PUSH: Received control message: 'PUSH_REPLY,dhcp-option DNS 10.51.0.1,dhcp-option DNS fd54:20a4:d33b:b10c:01B1:33::1,redirect-gateway def1,redirect-gateway ipv6,sndbuf 524288,rcvbuf 524288,explicit-exit-notify,comp-lzo no,tun-ipv6,route-gateway 10.51.0.1,topology subnet,ping 10,ping-restart 60,ifconfig-ipv6 fd54:20a4:d33b:b10c:1b1:33:0:1002/112 fd54:20a4:d33b:b10c:1b1:33:0:1,ifconfig 10.51.0.4 255.255.0.0,peer-id 0,cipher AES-256-GCM'
    Tue May  5 18:59:24 2020 Pushed option removed by filter: 'dhcp-option DNS 10.51.0.1'
    Tue May  5 18:59:24 2020 Pushed option removed by filter: 'dhcp-option DNS fd54:20a4:d33b:b10c:01B1:33::1'
    Tue May  5 18:59:24 2020 Pushed option removed by filter: 'redirect-gateway ipv6'
    Tue May  5 18:59:24 2020 Pushed option removed by filter: 'tun-ipv6'
    Tue May  5 18:59:24 2020 Pushed option removed by filter: 'ifconfig-ipv6 fd54:20a4:d33b:b10c:1b1:33:0:1002/112 fd54:20a4:d33b:b10c:1b1:33:0:1'

     

    I figured out the issue... the NS I was using is one I got from the provider but it only works on their network (I just realized it's a private ip) and seems only on specific networks. They must've moved things around causing the NS I was using to have no route for the server I was using.

     

    I'll keep in eye on it and adjust it accordingly... for some services I use I need the DNS and the IP to resolve to the same country while others work fine if they differ.

     

    Sorry for the hassle :/

  8. 6 minutes ago, binhex said:

    i personally think we should filter out all dhcp-options for dns, as we want to be in control as to what name servers we use, what do you think?.

    Actually.. I think my provider is misbehaving...

    pull-filter ignore "dhcp-option DNS6"

     

    They have DNS for both the ipv4 and ipv6 in the push

     

    Removing the dhcp would probably work for most providers... unfortunately it would break for mine as they don't have a static list and it changes based on which server you select.  They have a multiple ovpn files per zone that has 10 or so servers listed... all reply back with different DNS. I'd probably have to run the docker once to pull the DNS then plug that ip in and rerun it.

  9. 32 minutes ago, binhex said:

    any chance you can attach the log, i can put in exclusions for ipv6 options if i know what they are.

    I see the filters are already in the openvpn cmd and it does remove and binds to an ipv4 dns ip but the resolves timeout... perhaps that dns server on their end is down or not working.

     

    pull-filter ignore "dhcp-option DNS6"
    pull-filter ignore "tun-ipv6"
    pull-filter ignore "ifconfig-ipv6"
    pull-filter ignore "redirect-gateway ipv6"

     

    Attached working and non working logs

    supervisord_works.log supervisord_hangs.log

  10. Did openvpn change their defaults? I'm seeing this now but I don't see anything in the scripts with these flags.

    I have ipv6 disabled in unraid and tried adding filters to my ovpn but still hung up


    Tue May 5 10:01:27 2020 GDG6: remote_host_ipv6=n/a
    Tue May 5 10:01:27 2020 ROUTE6: default_gateway=UNDEF
    Tue May 5 10:01:27 2020 OpenVPN ROUTE6: OpenVPN needs a gateway parameter for a --route-ipv6 option and no default was specified by either --route-ipv6-gateway or --ifconfig-ipv6 options

  11. 4 hours ago, GuildDarts said:

    Im fairly certain that this issue is the same one that @capt.asic report (like they suggested)
    are you on version '2020.04.22' thats the one with the fix

    Interesting, plugin says 2020.04.16 but app repo says 2020.04.22 and no option to update... lately I've seen "Backup in use" banner for Apps and it's been really slow to populate. Guess I'll just wait and see

     

    Tks

     

    EDIT: Looks like it was tied to those issues github has been having the last couple days... it updated and looks good!

  12. 1 hour ago, melmurp said:

    That was it... tks!
    Wasn't obvious to me they needed to be added one by one

    Spoke too soon :(

    I have them in my list but all of them resolve to the last docker in the list

     

    image.png.d49b46a80757e6e628cf045c0fe65011.png

     

    If I select WebUI for any of these it always goes to netdata

     

  13. 2 hours ago, GuildDarts said:

    im guessing you're referring to multiple buttons.
    When you press "edit folder" there is a blue button called "Add another Button" press it and you should get a popup with options for buttons
    833506733_Annotation2020-04-22144341.png.c6664290b3dbb8015340bd83fbce5447.png

    That was it... tks!
    Wasn't obvious to me they needed to be added one by one

  14. On 3/24/2020 at 11:54 AM, GuildDarts said:

    Update
    change the way buttons work, you can now have as many or as few buttons as you want.

    examplenew buttons example

    A folder can now also start expanted (hope this is kinda what you wanted @poniz ^_^)

    Is there a setting for this? I just get the Edit/Remove

    image.png.eda075f59ef8b5325e9e50fe1d29ec28.png

  15. I've been using https://github.com/binhex/arch-privoxyvpn as a socks style proxy for a VM for quite some time now as I wanted all traffic from that VM routed through the vpn.

     

    I just setup Firefox docker using what you described above... I'll leave it on and see if it ever drops

  16. This came up in a google search so thought I'd post this even if the reply is likely too late for the OP

     

    7.x is compose based but they have a repo with the last version of the all in one 6.x

     

    I was using cli but you can make a template using this pretty easily
    docker run -d --name sf7 -p 8000:8000 -e SEAFILE_SERVER_HOSTNAME=<url_here> -e SEAFILE_ADMIN_EMAIL=<admin_email> -e SEAFILE_ADMIN_PASSWORD=<passwd> -e SEAFILE_SERVER_LETSENCRYPT=false -v <storage_here>:/opt/seafile-data docker.seadrive.org/seafileltd/seafile-pro:latest

     

    They use a private docker hub.. instructions below
    https://customer.seafile.com/downloads/

     

    There's also a community all in one 7.x but I couldn't get it to work correctly for PRO just CE

  17. I was looking over on how to add packages so they persist on boot
    To test it out first I installed the ecryptsFS packages, mozilla-nss and the kernel module

     

    I get the prompts and seems to somewhat go right but then I get errors when it tries to mount.
    I checked if the kernel module was loaded but doesn't seem to exist so I'm guess it's not as easy as just installing the kernel package

     

    Errors I'm seeing

    mount.ecryptfs: Could not open library handle
    mount.ecryptfs: Key module [openssl] does not have a subgraph transition node; attempting to build a linear subgraph from its parameter list
    mount.ecryptfs: Key module [openssl] has empty parameter list

     

    Some guidance would be appreciated :)
    Rather not install a docker to handle this if I can

  18. 15 hours ago, ich777 said:

    That's doable but confusing to users that want to use the container as standalone only for the basic conan server.

    But this command will only check if the game is installed you must enable validation via the variable to force an update.

     

    I don't get this exactly... I thought there is a autoupdate command so that the server does everything without steamcmd.

     

    Also help me with the workshop content, is it updated everytime you start the container, isn't this also like you have to enable validation of the gamefiles (this is a thing that is not in the container - currently)?

     

    I know this only from the CounterStrike:Source or GO where you must enable the validation to update the server, the initial command checks only if the gamefiles are there and then it continues.

    app_update will pull down a new version
    validate runs a checksum like thing against the files to make sure they're not corrupted

     

    I don't think conan itself has version checking internally... I don't see anything in the menus but I could be blind :)

  19. On 1/29/2020 at 1:50 AM, ich777 said:

    How is this implemented in conan?

    Is it just a startup switch?

    Basically have a boolean env var called auto-update then check if true/false.

    If false then don't run the below command or parse the mod list.. skip right to starting the game with existing data

    ${STEAMCMD_DIR}/steamcmd.sh \
    +@sSteamCmdForcePlatformType windows \
    +login ${USERNAME} ${PASSWRD} \
    +force_install_dir ${SERVER_DIR} \
    +app_update ${GAME_ID} \
    +quit

     

    I'm sure other mod heavy games would benefit from it as well... Conan is just is a headache as things update a lot so you might have to reboot multiple times a day so player/server are in sync. Making it configurable lets the server dictate the reboots and the players can use the modlist.txt trick to avoid steams forced updates.

     

    Thanks for fixing the parms thing so fast.. appreciate it!

  20. Would it be possible to add auto-update as an option instead of hardcoded?
    If you have a lot of mods going things go south quickly thanks to workshop auto updating

     

    Also wondering why the GAME_PARAMS are ignored for Conan?
    I added "-nosteamclient -game -server" but if I look at the start-server.sh in the docker nothing is added

    Honestly not even sure those cmds will help... Conan takes so long to restart so I'm trying ways to possibly speed it up or not require restarts

     

    Tks