OpenBSD Journal

FYI: anoncvs.ca.openbsd.org mirror borked, remediation in progress

Contributed by grey on from the only thing worse than backups is needing to restore from them dept.

Thanks to Jose Nazario for point out the following message from misc@:

http://marc.theaimsgroup.com/?l=openbsd-misc&m=109837503116244&w=2

It looks like CVS may be having a few issues at the moment, but it sounds like people are working to rectify the problem, so hopefully all will be functioning normally again soon (perhaps by the time you read this). Now might also be a good time to mention that I seem to recall there still being a DLT autoloader on the want page for those looking to help improve OpenBSD's backup infrastructure.

UPDATE Looks like things are back to normal on anoncvs.ca.openbsd.org, and mirrors will be catching up as well.

(Comments are closed)


Comments
  1. By Anonymous Coward (64.122.103.201) on

    hacked.

    Comments
    1. By Anonymous Coward (142.59.158.220) on

      Yawn. I wish that troll comments like this wouldn't show up by default when below a certain "mod level". (I guess this would need to be a percentage like < -85%) Of course, I hate to suggest things like this when others would have to go to the work of implementing these things. I'm just thinking out loud.

      Comments
      1. By Anonymous Coward (142.59.158.220) on

        Just to clarifiy, it's not that the post would be deleted or anything, just that is wouldn't be "expanded" by default. Also, the test criteria I suggested would have to take into account that the rating -1/1 probably isn't enough to autohide the post, it would first have to check if there were at least a couple "mods" on the post before calculating the percentage. :o)

      2. By RC (4.16.255.194) on

        There's no work for anyone to do. If you don't want to see the comment, work out your algorithm. Just click the help link next to the Threshold button to get all the information you could possibly need. Then decide what criteria you want, and write a string to do it.

        Personally, I've given-up on the mod system almost completely. It has the potential to work, but I've seen so many good and decent comments at -10 or so, that I've just quit. It doesn't bother me to see some troll that much, but it does bother me when I miss a good comment.

    2. By Anonymous Coward (68.165.27.173) on

      Actually, this is true, anoncvs.ca.openbsd.org (running openbsd) was hacked.

      Comments
      1. By Anonymous Coward (210.11.167.5) on

        really? and your evidence is...

      2. By Kevin R (66.222.160.31) on

        Ummm... isn't anoncvs.ca.openbsd.org running on Solaris on donated bandwidth/server from the U of Alberta? Netcraft says so, but some port-forwarding magic could be messing me up. Plus the problem is all the source was deleted; someone who found a new exploit for OpenBSD would probably do something besides hose a cvs server's source files. Well, you never know... Just wondering.

        Comments
        1. Comments
          1. By Anonymous Coward (64.122.103.201) on

            WRONG, anoncvs runs on OpenBSD, SunSite hosts only the www+ftp part of openbsd.org

            Comments
            1. By Anonymous Coward (203.215.101.75) on

              really? hrmm so why anoncvs1.ca.openbsd.org is running a "portable" version of openssh?

      3. By X (213.228.0.86) on

        the CVS was just reinstal and misconfigure..i think not a hack

    3. By KR (66.222.160.31) on

      Doug?

  2. By Anonymous Coward (207.215.253.6) on

    One thing is certain; there will be no official explanation of the "event" .

    Just like there was no explanation for the missing snapshots.

    http://marc.theaimsgroup.com/?l=openbsd-misc&m=109836998601774&w=2

    Comments
    1. By Nick Holland (68.43.115.33) nick@holland-consulting.net on http://www.openbsd.org/faq/

      oh, geeeez.

      At the time I posted that message, we had no idea what had happened yet, other than something happened high-up in the distribution system, and just wanted to let people know that we were aware of the issue. However, later, Todd Miller posted two notes (misc@ and www@) to explain what happened. The snapshots were also explained. The fact that you didn't recieve a personal notification or were incapable of reading plain English does not mean there was no explaination.

      ok, ok, ok.. you want the real truth?
      how about this: Aliens have have contracted Theo to upgrade the OS used on their war machines in preparation for invading unnamed planets. Seems their previous OSs had vulnerabilies that their enemies had exploited. So, to further their plans, the 3.6 CDs have all been blanked, the CVS and the FTP mirrors are all emptied. In payment, Theo has been promised some wonderful craters to mountain bike on and the opportunity to select some targets and "push the button" of various high-powered weapons.

      Me? I've been contracted to translate the FAQ into the aliens' native language. While the script they use normally causes insanity in humans, decades of reading my own handwriting has rendered me immune to this, making me almost uniquely qualified. In payment, they have offered me unlimited access to old computer parts and a power source that can keep the systems running and cooled indefinitely.

      Certainly more plausable than sup having screwed up on the first layer of the distribution tree, which then got replicated. No idea how we EVER expected anyone to believe that. Silly us. Won't matter soon, anyway. *hehehe*

      Comments
      1. By Anonymous Coward (69.156.206.199) on

        ROFL, hilarious man!

      2. By Anonymous Coward (68.124.167.100) on

        "However, later, Todd Miller posted two notes (misc@ and www@) to explain what happened."

        Since you didn't provide the two links, I'll take the liberty and chose what is relevant to our discussion;

        misc@ message:
        http://marc.theaimsgroup.com/?l=openbsd-misc&m=109837503116244&w=2

        "The mirror on anoncvs.ca.openbsd.org is hosed and the damage
        propagated to the other mirrors. It is in the process of being
        repaired."

        What does "hosed", "damage", and "repaired" mean in this case? Nothing, it is vague; it EXPLAINS NOTHING. Very similar to the so called explanation of why the snapshots do not exist.

        Keep note, that my last statement regarding the snapshots is a "Red Herring", a fallacy of relevance. So, not relevant to our discussion, but my brain found a connection between this, and that, and must mention it. :P

        www@ message(I didn't know of this message until now that I've looked):
        http://marc.theaimsgroup.com/?l=openbsd-www&m=109837478414507&w=2

        "sup on anoncvs.ca.openbsd.org went haywire and the damage
        propagated to the other mirrors."

        This says a lot more than the message to misc@. Software did something unexpected, and "haywire" and "damage" mean a lot more in this context. However, NOTHING has been EXPLAINED.

        Why did "sup" behave as it did? I would be comfortable with a "we don't know yet".

        Here is "explain" defined;

        From WordNet (r) 2.0 :

        explain
        v 1: make palin and comprehensible; "He explained the laws of
        physics to his students" [syn: explicate]
        2: define; "The committe explained their plan for fund-raising
        to the Dean"
        3: serve as a reason or cause or justification of; "Your need
        to sleep late does not excuse your late arrival at work";
        "Her recent divorce amy explain her reluctance to date
        again" [syn: excuse]

        By definition, NOTHING was EXPLAINED in regards to the "event".

        By the way, I enjoyed the fiction; especially the part about an indefinate power source and old hardware. 8)

        Comments
        1. By Anonymous Coward (65.95.124.137) on

          3 words: Get a fucking life.

      3. By krh (207.75.178.199) on

        This leaves me with just one question: Do the aliens use baby mulchers?

      4. By Tim Kelly (68.47.63.60) on http://www.dialectronics.com/OldWorldMacs

        I'm willing to believe Theo would take money from someone's war machine. He's done it before (DARPA is not a humanitarian project).

  3. By Peter N. M. Hansteen (194.54.103.99) peter@bgnett.no on http://www.bgnett.no/~peter/

    Looks like it's back up again now. My cvsup (on top of the re-unpacked .tar.gz files from the CD) is proceeding normally.

    Knowing what caused the episode might be marginally interesting, though.

    Comments
    1. By Peter N. M Hansteen (194.54.103.99) peter@bgnett.no on http://www.bgnett.no/~peter/

      Looks like I spoke a moment too soon - the XF4 collection got deleted when I tried cvsuping a machine which has it.

  4. By Anonymous Coward (64.122.103.201) on

    anoncvs.ca.openbsd.org was hacked, this box is NOT running solaris, it's running OpenBSD. Theo told his crew to cover it and not mention anything about the 'event'

    Comments
    1. By Michael Knudsen (217.157.199.114) on

      kosmos$ host www.openbsd.org
      www.openbsd.org has address 129.128.5.191
      kosmos$ host anoncvs.ca.openbsd.org
      anoncvs.ca.openbsd.org is an alias for openbsd.sunsite.ualberta.ca.
      openbsd.sunsite.ualberta.ca has address 129.128.5.191

      http://www.openbsd.org/faq/faq8.html#wwwsolaris

      Now, could we kill this one off?

      Comments
      1. By Kint (199.243.65.6) on

        Awesome way to shut the trolls up.

        Comments
        1. By Anonymous Coward (64.122.103.201) on

          You know nothing, absolutely nothing.

        2. By truk (24.46.36.183) on

          I wish the trolls on misc@ could be dealt with as effectively...
          The mantra for misc@ should be "please don't feed the trolls"

      2. By Anonymous Coward (64.122.103.201) on

        This is a tcp redirector if you had any knowledge in computer science, I would take the time to explain you how it works, troll.

        Comments
        1. By tedu (66.93.171.98) on

          wow, you need a cs degree to understand port forwarding now? things are changing so fast. i can remember back when i was a youngster we used to..

          Comments
          1. By Anonymous Coward (68.165.27.173) on

            That's because only few people are as stupid as you are. troll

      3. By Anonymous Coward (66.222.160.31) on

        Seriously, why don't you hang out somewhere else, troll. Maybe grow up a little. This is getting stupid.

        Comments
        1. By Anonymous Coward (64.122.103.201) on

          Why don't you?

Credits

Copyright © - Daniel Hartmeier. All rights reserved. Articles and comments are copyright their respective authors, submission implies license to publish on this web site. Contents of the archive prior to as well as images and HTML templates were copied from the fabulous original deadly.org with Jose's and Jim's kind permission. This journal runs as CGI with httpd(8) on OpenBSD, the source code is BSD licensed. undeadly \Un*dead"ly\, a. Not subject to death; immortal. [Obs.]