Showing posts with label unusable. Show all posts
Showing posts with label unusable. Show all posts
Sunday, February 21, 2016
10 bit color on Linux with Intel HD video card, my study
Today (Feb 2016) I answered for myself if there is a 30-bit (10-bit per channel) color support on Linux with Intel HD graphics. I'm an owner of Dell U2413 which is capable of deep color (still I wouldn't recommend this monitor because of the brighter corners and big pixel size). There is no Nvidia Quadro in my disposal and I tried Linux setup with "Depth 30/DefaultDepth 30" in xorg.conf. Running Xorg in this mode on Intel HD 5000 is fine, but according to "Deep Color Support of Intel® Graphics Technical White Paper revision 0.8" (copy here: http://xvi.crypts.me:5081/deep-color-support-intel-graphics-paper.pdf very interesting reading, my respect to Intel engeneers)
"There is no OpenGL support for 10/12 bit with Intel graphics driver. Intel will reevaluate this as the technology matures."
Which means Gnome3/Unity and other Linux desktops with approach "old hardware must R.I.P." are painfully slow. Even with llvmpipe driver it's unusable. Gnome3 complained it had not found texture from pixmap. GTK2 apps are unusable because of smashed colors. KDE had problems. The only variant that worked for me was Fedora 23 Mate (build on GTK3, not GTK2). It's fast, colors are ok. I tried Rawtherapee - loaded fine with some mixed colors, but only black areas instead of images. Very sad. Krita was capable of displaing images, but pointer over an image became very slow, which means it was renered with OpenGL. No signs of 10-bit color on test images.
Tuesday, December 24, 2013
puppet import (...or few warm words to puppet retarded programmers...)
It's a late night and I'm diving into puppet manual. Who would know, that the bug I was hunting was the result of the following considiration:
node 'kestrel.example.com' { import 'nodes/kestrel.pp' }
This import statement looks like it should insert code INTO the node definition that contains it; instead, it will insert the code outside any node definition, and it will do so regardless of whether the node definition matches the current node.
http://docs.puppetlabs.com/puppet/2.7/reference/lang_import.html
Really the one who let it be this way was no less then a retarded ruby programmer...
node 'kestrel.example.com' { import 'nodes/kestrel.pp' }
This import statement looks like it should insert code INTO the node definition that contains it; instead, it will insert the code outside any node definition, and it will do so regardless of whether the node definition matches the current node.
http://docs.puppetlabs.com/puppet/2.7/reference/lang_import.html
Really the one who let it be this way was no less then a retarded ruby programmer...
Monday, July 15, 2013
confluence and wireshark - love and hate
Yesterday I finally bought a licenced version of Confluence. Think the people, who make such a userfriendly and reliable software, also fully multithreaded one should be paid for their excellent work. This is a rare case I love software this much.
On the other side people like wireshark creators. They shouldburn in hell really know that modern technology is not only about eating RAM, but also about use some multithreading too. Desecting a dump takes literally a half of an hour with one core loaded.
On the other side people like wireshark creators. They should
Saturday, July 13, 2013
росреестр млин!
Подпись пакета: Exception of type 'System.OutOfMemoryException' was thrown. at System.Convert.FromBase64String(String s) at WebService.PacketResignService.SignFile(String sFileIn, ICertificate cert) in D:\Work\Projects\new\Visual Studio 2005\Projects\FCCLand\WebService\PacketResignService.asmx.cs:line 408 at WebService.PacketResignService._SignDir(String sDir, ICertificate cert) in D:\Work\Projects\new\Visual Studio 2005\Projects\FCCLand\WebService\PacketResignService.asmx.cs:line 350 at WebService.PacketResignService.SignPacket(Byte[] decryptedPacket, Byte[] recipientCertificate, String xmlFileName, Byte[] xmlFile, Byte[]& signReport, Byte[]& signedPacket) in D:\Work\Projects\new\Visual Studio 2005\Projects\FCCLand\WebService\PacketResignService.asmx.cs:line 126
Monday, January 7, 2013
icon size in the alt tab screen of openbox
For a long time I suffered from blurred icons in the alt tab screen of Openbox. Until I realized that for some reason it uses non-standart resizing.
http://icculus.org/pipermail/openbox/2008-December/005964.html
For the same unknown reason the developers haven't fix this. So if you want sharp images you have to fix it yourself in the source code:
grep config_theme_window_list_icon_size openbox/config.c
After that you manage to get something like this:
http://icculus.org/pipermail/openbox/2008-December/005964.html
For the same unknown reason the developers haven't fix this. So if you want sharp images you have to fix it yourself in the source code:
grep config_theme_window_list_icon_size openbox/config.c
After that you manage to get something like this:
Sunday, July 15, 2012
the major failure for Ubuntu as Enterprise desktop
Recently I get into situation when I had to run Ubuntu 10.04 LTS on new Sandy Bridge platform. What was my surprise when I realised Canonical "Enterprise" Desktop distro has no support for the new Intel graphical core. There are only community repos without any garante available. In contrary Red Hat Enterprise Linux has got graphic driver update and kernel backports a year ago. From my point of view this is the major failure for Ubuntu as Enterprise desktop. I'm very disappointed with this because a lot of configuration was made considering Ubuntu so called Long Term Support.
upd: Aug 2013
With an update release of the next Ubuntu LTS 12.04.3 the drastic changes were introduced. Kernel version was updated from 3.5 up to 3.8. It's not good at all. Third party vendors usually make drivers for specific kernel. Consequantly no compatibility at all for mission critical enterprise solutions. What is the point of LTS if it's like a new release?
upd: Aug 2013
With an update release of the next Ubuntu LTS 12.04.3 the drastic changes were introduced. Kernel version was updated from 3.5 up to 3.8. It's not good at all. Third party vendors usually make drivers for specific kernel. Consequantly no compatibility at all for mission critical enterprise solutions. What is the point of LTS if it's like a new release?
Friday, May 11, 2012
Linux ACLs vs Solaris ACLs
Today I studied the difference between Access Control List implementation in Linux and Solaris. Generally the latest specification of ACL is contained in the long suffered POSIX 1003.1e. The man page for acl is dated by 2002. Not so fresh indeed! To preserve a compatibility with traditional rwx approach, an IEEE crowd jumped over it's head and invented something unusable. Linux community implemented that in even more unusable manner.
Let's look at this crap. Here is [Linux] manual cite:
An ACL entry contains an entry tag type, an optional entry tag qualifier, and a set of permissions. ... The qualifier denotes the identifier of a user or a group, for entries with tag types of ACL_USER or ACL_GROUP, respectively. Entries with tag types other than ACL_USER or ACL_GROUP have no defined qualifiers.
This qualifier-with-no-identifier thing means that you write u:jack or g:staff to denote user jack and group staff. It's intuitive.
Then we have an obscure permission inheritance behavior. Look at "OBJECT CREATION AND DEFAULT ACLs" section of acl manual:
Ok, that is fine.
Huh?! Thus only specified permissions remains or what?
Other parts of Linux ACL manual made me crazy too. Correspondence between traditional model and new is non-linear, has conditions and behavior modifiers. It depends on Effective User ID, special ACL mask or presence of other bits. In addition this permissions are managed with special utilities setfacl and getfactl. Standard chmod, ls and other tools are not aware of ACLs!
Now let's look at the Solaris variant. Refer to "Solaris ZFS Administration Guide". The give up with 10 year old standard and armed Solaris with NFSv4 ACL model, which is closer to the NT-style ACLs. This eventually makes me think, that Microsoft engineers invented something that is still lacking in UNIX.
Just use ls -v and you already know, who may what. For ACL managment just use chmod and other tools with additional parameters.
Why there is no NFSv4 ACLs on Linux? I found that SGI made patches in 2008. See excellent presentation
Unfortunately SGI died.
Let's look at this crap. Here is [Linux] manual cite:
An ACL entry contains an entry tag type, an optional entry tag qualifier, and a set of permissions. ... The qualifier denotes the identifier of a user or a group, for entries with tag types of ACL_USER or ACL_GROUP, respectively. Entries with tag types other than ACL_USER or ACL_GROUP have no defined qualifiers.
This qualifier-with-no-identifier thing means that you write u:jack or g:staff to denote user jack and group staff. It's intuitive.
Then we have an obscure permission inheritance behavior. Look at "OBJECT CREATION AND DEFAULT ACLs" section of acl manual:
1. The new object inherits the default ACL of the containing directory as its access ACL.
Ok, that is fine.
2. The access ACL entries corresponding to the file permission bits are modified so that they contain no permissions that are not contained in the permissions specified by the mode parameter.
Huh?! Thus only specified permissions remains or what?
Other parts of Linux ACL manual made me crazy too. Correspondence between traditional model and new is non-linear, has conditions and behavior modifiers. It depends on Effective User ID, special ACL mask or presence of other bits. In addition this permissions are managed with special utilities setfacl and getfactl. Standard chmod, ls and other tools are not aware of ACLs!
Now let's look at the Solaris variant. Refer to "Solaris ZFS Administration Guide". The give up with 10 year old standard and armed Solaris with NFSv4 ACL model, which is closer to the NT-style ACLs. This eventually makes me think, that Microsoft engineers invented something that is still lacking in UNIX.
# chmod A+user:gozer:read_data/execute:allow test.dir
# ls -dv test.dir
drwxr-xr-x+ 2 root root 2 Aug 31 12:02 test.dir
0:user:gozer:list_directory/read_data/execute:allow
1:owner@::deny
2:owner@:list_directory/read_data/add_file/write_data/add_subdirectory
/append_data/write_xattr/execute/write_attributes/write_acl
/write_owner:allow
3:group@:add_file/write_data/add_subdirectory/append_data:deny
4:group@:list_directory/read_data/execute:allow
5:everyone@:add_file/write_data/add_subdirectory/append_data/write_xattr
/write_attributes/write_acl/write_owner:deny
6:everyone@:list_directory/read_data/read_xattr/execute/read_attributes
/read_acl/synchronize:allow
|
Just use ls -v and you already know, who may what. For ACL managment just use chmod and other tools with additional parameters.
Why there is no NFSv4 ACLs on Linux? I found that SGI made patches in 2008. See excellent presentation
Unfortunately SGI died.
Wednesday, March 7, 2012
Saturday, October 15, 2011
опросник от нгс, вопросы для админов от нгс
У нас в городе появилась практика попросить у друга-админа вопросы, чтобы собеседовать админа. Поскольку меня задолбало видеть на собеседованиях одни и те же вопросы от людей, которые не в состоянии самостоятельно провести собеседование, не способны сами понять, насколько админ компетентен, не способны отличить вопросы для админа начального уровня от вопросов для начальника отдела и т.д., а также потому что сам список этих вопросов содержит дибильные вопросы, я выкладываю опросник от нгса с приблизительными ответами. Давайте уже, придумайте что-нибудь посвежее.
I. Сеть.
1. Чем отличается свич от хаба?
A: Хаб ретранслирует пакет на все порты, switch - только на нужные.
[Старый вопрос и потому ненужный вопрос. Хабы уже стали историей.]
2. Что такое коммутатор и концентратор?
А: Свитч и хаб.
3. Чем отличаются 802.1q, 802.2, 802.11b и 802.11g ? Что это вообще такое и что это из себя представляет?
A: Это номера RFC для VLAN, LLC, wi-fi по стандарту b и g. [ Как часто, коллеги, вам приходится штудировать RFC по LLC? Также часто как и 802.13...23? Зачем это здесь? ]
4. Что такое full-duplex? Какой еще duplex бывает?
А: Двусторонняя передача данных. Есть еще half-duplex.
5. Что такое 568A/B ?
А: Варианты разводки витой пары.
[Этим вопросом мы открываем конкурс дибильных вопросов данного опросника! Каждый день в моей повседневной практике мне приходится отличать вариант обжима 568A от 568B! ]
6. Чем отличаются 10Base-T, 100Base-TX и 1000Base-T?
А: 10Base-T и 1000Base-T - стандарты на 10 и 1000 мбс. 100Base-TX - Fast Ethernet по 2-ум парам.
7. Сколько уровней в модели OSI?
А: 7
8. Какие из них находятся на 3х нижних позициях?
А: Физический, Канальный, Сетевой
[Не проще ли было сразу попросить перечислить уровни OSI?]
9. В чем отличия TCP и UDP ?
А: TCP - это протокол с гарантированной доставкой и контролем передачи. UDP нет.
10. Что является для них транспортом?
A: IPv4/IPv6/IPSec
11. Какие IP-протоколы вы знаете?
A: ... [IP - это в стеке TCP/IP или все протоколы, которые используют IP???]
12. Что необходимо, чтобы заработал pptp VPN?
A: открыть tcp 1723 port.
[или о чем вобще думал чел, который задавал этот вопрос?]13. Что такое firewall?
A: Это технология, позволяющая фильтровать сетевой трафик.
[Браво! Вопрос на 5 баллов! Автор, ты подбирал вопросы в соответствии со своим уровнем? ]14. Что такое маршрутизация?
А: Это базовая технология для определения источника и приемника передачи данных.
15. Какие виды маршрутизации вы знаете?
A: Статическая и динамическая.
16. Что такое OSPF, BGP и RIP?
А: Протоколы динамической маршрутизации.
17. Из каких частей состоит IP-адрес?
А: Из адреса сети и хоста.
18. Какие виды/типы VPN вы знаете?
А: IPSec, OpenVPN, PPTP
19. Напишите необходимые ключи iptables, которые реализуют проброс трафика с интерфейса eth0 на IP-адрес 192.168.2.1 для порта 22
А: iptables -t nat -A PREROUTING -i eth0 -p TCP --dport 22 -j DNAT --to-destination 192.168.2.1
II. Почта. 1. Что такое SMTP, POP3, IMAP что в них общего и чем они отличаются?
А: Это текстовые почтовые протоколы. SMTP - протокол MTA, POP3, IMAP - протоколы MUA.
2. Из каких частей состоит письмо и что в них содержится?
A: smtp envelope - headers для MTA, message headers - для LDA, body.
3. Что такое спам?
A: Несанкционированная рассылка.
[Кого призван отфилтровать этот вопрос? Особенно после вопроса про SMTP.]4. Какие методы фильтрации спама вы знаете?
А: а) Основанные на свойствах SMTP и DNS. б) Внешние базы. в) Контентный анализ.
5. С какими почтовыми продуктами вы работали?
А: ...
6. Какую служебную информацию можно извлечь из письма?
A: Согласно заголовкам.
7. Какие стандарты описывают формат сообщения, процесс передачи сообщения, процесс приема сообщения?
А: gg://smtp rfc [Чувак, ну зачем этот вопрос вообще?!]
8. Что такое greylisting?
A: Временная задержка. Предполагается, что спаммер не сможет перепослать
письмо. [На самом деле они уже давно (лет 10?) научились.]
9. Что такое dnsbl?
А: Общая база по спамерам.
III. Unix 1. Как посмотреть какую версию ядра мы сейчас используем?
А: uname -a
2. Как посмотреть какую ОС мы сейчас используем?
A: uname -a
3. Чем отличается Linux и FreeBSD?
A: Проще будет сказать, чем они похожи: обе относятся к
posix-совместимым системам. [Этому вопросу мы присуждаем первое место в списке дибильных.]
4. Как посмотреть список процессов?
А: В какой ОС? [Дибильный вопрос номер 2. Чувак, прочти FAQ как правильно задавать вопросы.]
5. Как посмотреть список сетевых соединений?
А: netstat
6. Как в Linux посмотреть список слушающих сокетов?
A: netstat -nl [О! Вот здесь вопрос задан правильно. Молодец.]
7. Как посмотреть список файлов открытых процессом?
A: lsof -p PID
9. Какие средства мониторинга состояния системы вы знаете?
A: iostat, vmstat, netstat, top ...
10. Как посмотреть чем именно сейчас занят процесс?
A: ps aux, колонка STAT
11. Как удалить каталог рекурсивно?
A: rm -Rf [Глупый вопрос. Можно заодно спросить, как включить компьютер. У админа. ]
12. Что такое конвеер и как им пользоваться?
A: Перенаправление ввода-вывода. foo | bar [Их никто ща не называет конвеерами, если что. Pipe. Просто pipe.]
13. Приведите пример использования grep? Например, поиск и вывод только IPv4-адреса.
A: egrep '([[:digit:]]{1,3}\.){3}[[:digit:]]{1,3}'
14. Приведите пример использования awk? Например, вывод 3-его от конца поля, если 2-е поле равно "OK" (поля разделены табуляцией).
A: awk '{if ($2=="OK" ) print $(NF-2) }'
15. Приведите пример использования sed? Например, замена всех почтовых адресов на "<skipped>"
A: sed -ir 's/[a-z0-9._%+-]+@[a-z0-9.-]+\.[a-z]{2,4}/<skipped>/g'
filename
16. Ваш любимый коммандный интерпретатор? Почему?
A: bash, т.к. универсальный
17. Какие скриптовые языки Вы знаете?
А: ...
V. Инфраструктура 1. Что такое DHCP, как оно работает, вкратце?
A: Это сервис автоматической конфигурации хостов. Работает с использованием бродкастов.
2. Что такое DNS и как оно устроено, вкратце?
А: Служба для связи ip c именами и обратно.
3. Что такое такое "система управления версиями"?
А: CVS, SVN, git ["Это система управления версиями". Как иначе-то сказать?]
4. Что такое SNMP?
A: Simple Network Managment Protocol
5. Какие системы управления пакетами вы знаете? Что такое "пакет" ПО, вкратце?
A: deb, rpm, source based, примитивная пакетная система в Solaris и FreeBSD
VI. Аппаратные средства 1. За какие ресурсы сервера "дерутся" программы?
A: cpu, io, mem
2. Какие уровни RAID вы знаете? Укажите их ключевые особенности.
A: 0, 1, 5, 6, 10
3. Что такое кэш? В каких местах железа и операционной системы используется кэш? Чем хорошо и чем плохо использование кэша?
A: Временная память. Дисковый контроллер -> raid контроллер -> кеш ОС (несколько) -> CPU cache
[Осторожно, ща опять будет дибильный вопрос!]
4. Что такое KVM? Какие виды KVM вы знаете?
A: Это либо KVM-переключатель, либо система виртуализации. [Видимо, Автор был не в теме, вот и оставил вопрос неоднозначным.]
5. Какую информацию можно получить от систем аппаратного мониторинга?
А: Температуру, состояние здоровья, скорости и проч. [аппаратного мониторинга чего??! Там миллионы разных вещей мониторятся в зависимости от.]
6. Что показывает метрика load average? Какие цифры - "нормальные" для этой метрики?
А: Кол-во процессов желающих использовать CPU. Нормальным будет la/cpu number
7. Какие подходы, виды виртуализации Вы знаете? Чем они лучше/хуже между собой ? С какими системами Вы работали?
A: Тяжелая (XEN), легкая (OpenVZ) и проч. [см. google]
VII. Web 1. Напишите команды получения главной страницы НГС (http://www.ngs.ru) из командной строки интерпретатора (без программ-клиентов типа wget/curl/etc).
A: telnet www.ngs.ru 80 GET /index.html HTTP/1.0 Host: www.ngs.ru \n\r\n\r
Дибильный вопрос. Ну шо ты пристал со своим ngrep?! Кроме тебя его никто не использует!2. Напишите необходимые ключи ngrep, чтобы "поймать" запрос с URL "http://host.tld/admin/page.php" от хоста с IP-адресом 192.168.2.1 на локальном интерфейсе eth0.
3. Что такое "сериализация"?
A: Упаковка данных.
4. Что такое AJAX?
А: Асинхронный javascript [ Лишний вопрос! Если это опросник для админа, то ему не обязательно знать все веб-технологии. Автор, на свете тысячи веб-фреймворков и веб-технологий! Нужно будет - разберемся с любой. ]
5. Чем плоха и хороша Java?
А: Хороша тем, что распространена и стандарт. Плоха потреблением
ресурсов и лицензией. [Слишком пространный и неоднозначный вопрос - плохой вопрос. Может, лучше обсудим вопросы управления памятью в JAVA VM? ]
VIII. БД 1. Напишите SQL-запрос, меняющий пароль локальному пользователю root в MySQL 5.x на '123'
А: update user set password=PASSWORD("123") where User='root'; flush
privileges;
2. Что такое триггер?
A: Хранимая процедура, выполняемая по условию.
3. Что такое хранимая процедура?
А: Набор инструкций, хранимый внутри базы.
4. Опишите, что делает данный SQL-запрос (MySQL 5.x, поле id - PRIMARY KEY,
с автоинкрементом): INSERT INTO table (id,val) VALUES (1,2) ON DUPLICATE
KEY UPDATE id=LAST_INSERT_ID(id), val=2;
А: Добавляет val=2 с уникальным id, начиная с 1. [ Привет php кодерам! ]
Thursday, June 23, 2011
zabbix agent 1.4 on debian lenny fails constantly
what a shame.
14197:20110623:063623 zbx_on_exit() called.
14197:20110623:063623 One child process died. Exiting ...
14197:20110623:063623 zbx_on_exit() called.
14197:20110623:063623 Cannot remove PID file [/var/run/zabbix-agent/zabbix_agentd.pid] [No such file or directory]
zabbix_agentd [1986]: Warning: ZABBIX semaphores already exist, trying to recreate.
1986:20110623:063623 zabbix_agentd started. ZABBIX 1.4.6.
1986:20110623:063623 Listener failed with error: Cannot bind to port 10050 for server 0.0.0.0. Error [Address already in use]. Another zabbix_agentd already running ?.
14197:20110623:063625 ZABBIX Agent stopped
Great! Just Great.
14197:20110623:063623 zbx_on_exit() called.
14197:20110623:063623 One child process died. Exiting ...
14197:20110623:063623 zbx_on_exit() called.
14197:20110623:063623 Cannot remove PID file [/var/run/zabbix-agent/zabbix_agentd.pid] [No such file or directory]
zabbix_agentd [1986]: Warning: ZABBIX semaphores already exist, trying to recreate.
1986:20110623:063623 zabbix_agentd started. ZABBIX 1.4.6.
1986:20110623:063623 Listener failed with error: Cannot bind to port 10050 for server 0.0.0.0. Error [Address already in use]. Another zabbix_agentd already running ?.
14197:20110623:063625 ZABBIX Agent stopped
Great! Just Great.
Friday, April 29, 2011
freebsd sysinstall hate :E
Every time I have to use a FreeBSD installer I am confused. Why the "Exit" item is done in tree different ways: "Q", ">>>Exit" or button?
Hei, Logic? Looogic...
Lucky, I don't have to use sysinstall too often.
Hei, Logic? Looogic...
Lucky, I don't have to use sysinstall too often.
Subscribe to:
Posts (Atom)

