This is the discussion thread for ClearOS 7.1 Community Final, ClearOS 7.1 Business RC1, and ClearOS 7.1 Home RC1 which was released on 8 October 2015. If you have downloaded a copy of this release and have bugs, issues, or feedback, please feel free to report it here in the forum thread.
To review the Community Final release notes, click here.
This release includes the Release Candidate versions of ClearOS Home and ClearOS Business. Here is a version comparison guide.
Click one of the following to review the release notes for:
Business
Home
To download your copy, click here.
Users of Community edition will have a 30-day window to upgrade to Home or Business version. You can install and run Samba Directory (BETA) now as your directory server. There is also a powerful events system which allows you to get notified if your box does things that match a certain criteria. Many apps now exist in the marketplace that have not been there previously.
To review the Community Final release notes, click here.
This release includes the Release Candidate versions of ClearOS Home and ClearOS Business. Here is a version comparison guide.
Click one of the following to review the release notes for:
Business
Home
To download your copy, click here.
Users of Community edition will have a 30-day window to upgrade to Home or Business version. You can install and run Samba Directory (BETA) now as your directory server. There is also a powerful events system which allows you to get notified if your box does things that match a certain criteria. Many apps now exist in the marketplace that have not been there previously.
Share this post:
Responses (70)
-
Accepted Answer
Hi all,
Thank you for all the feedback! To avoid the confusion of following multiple topics in one thread, we have set this forum thread to read-only. We encourage you to start a new topic for any feedback, comment or suggestion. -
Accepted Answer
Hi Peter
"The old tracker item was resolved. This is a new and very similar issue - I added the tracker item here. In your particular case, you should not be seeing the error on the iptables command using "-s" (the one with "-d" will always be there though - that's what the new tracker item is about). In some fairly rare circumstances, you might see the "-s" error. Are you seeing these "-s" errors all the time?[/quote]"
The matter appears to have resolved itself (the system has not been restarted) but certainly the drop failed errors have ceased. Sorry I cannot be more specific but if you want any particular command to be run, please let me know.
Correction!! I have just noticed that the errors have started again, as below.....
2015/11/18, 18:38:44, -, 2, snortsam, Removing 86400 sec complete block for host 92.27.206.161.
2015/11/18, 18:38:44, -, 1, iptables, Info: UnBlocking ip 92.27.206.161
2015/11/18, 18:38:44, -, 1, iptables, Error: Command2 /sbin/iptables -D INPUT -i eth0 -s 92.27.206.161 -j DROP Failed
2015/11/18, 18:38:44, -, 1, iptables, Error: Command2 /sbin/iptables -D INPUT -i eth0 -d 92.27.206.161 -j DROP Failed
Thanks -
Accepted Answer
Hi Chris,
Chris wrote:
Firewall - Drop / Failed Issue Again!
I am aware that this issue has been around for sometime and was possibly sorted under bug tracker: https://tracker.clearos.com/view.php?id=20
However I am running a clean install 7.1 with Home Essentials and the problem has returned:
2015/11/13, 11:09:39, -, 2, snortsam, Removing 86400 sec complete block for host 175.196.231.206.
2015/11/13, 11:09:39, -, 1, iptables, Info: UnBlocking ip 175.196.231.206
2015/11/13, 11:09:39, -, 1, iptables, Error: Command2 /sbin/iptables -D INPUT -i eth0 -s 175.196.231.206 -j DROP Failed
2015/11/13, 11:09:39, -, 1, iptables, Error: Command2 /sbin/iptables -D INPUT -i eth0 -d 175.196.231.206 -j DROP Failed
My understanding is that the IP concerned is actually being removed but the error is still shown.
Am I correct not to be worried, or are the blocked IPs staying blocked for ever?
The old tracker item was resolved. This is a new and very similar issue - I added the tracker item here. In your particular case, you should not be seeing the error on the iptables command using "-s" (the one with "-d" will always be there though - that's what the new tracker item is about). In some fairly rare circumstances, you might see the "-s" error. Are you seeing these "-s" errors all the time? -
Accepted Answer
Firewall - Drop / Failed Issue Again!
I am aware that this issue has been around for sometime and was possibly sorted under bug tracker: https://tracker.clearos.com/view.php?id=20
However I am running a clean install 7.1 with Home Essentials and the problem has returned:
2015/11/13, 11:09:39, -, 2, snortsam, Removing 86400 sec complete block for host 175.196.231.206.
2015/11/13, 11:09:39, -, 1, iptables, Info: UnBlocking ip 175.196.231.206
2015/11/13, 11:09:39, -, 1, iptables, Error: Command2 /sbin/iptables -D INPUT -i eth0 -s 175.196.231.206 -j DROP Failed
2015/11/13, 11:09:39, -, 1, iptables, Error: Command2 /sbin/iptables -D INPUT -i eth0 -d 175.196.231.206 -j DROP Failed
My understanding is that the IP concerned is actually being removed but the error is still shown.
Am I correct not to be worried, or are the blocked IPs staying blocked for ever?
Thanks....... -
Accepted Answer
-
Accepted Answer
Thanks Ben!
You are right, the Widget is much better now.
For 2, 3 or 4 columns it is PERFECT. I will use 2 column which I think is best.
I could stop my post here, but being a notorious tester I could not leave out one itching little comment (sorry...):
For 1 column, it is better than it was... but not 100% (and this is the same for the list in the update menu too by the way) : When sorted on Date/Time you do NOT get a correct chronological order since it uses the first letter in the month for sorting... In order words, the order now is Apr, Aug, Dec, Feb, Jan, Jul, Jun, Mar, May, Nov, Oct, Sep ... I know, I am a pain...
/Fred -
Accepted Answer
My widget looks like this now (see attachment), and it will most likely EXACTLY like this in 2017 too, unless I have managed to install an app that comes earlier in the alphabet than "app-antivirus". At least that is my understanding.
It won't after you run:
yum --enablerepo=clearos-updates-testing upgrade app-software-updates app-dashboard
The dashboard now passes the number of columns (eg. width) the widget is contained in to the controller. With that info, we can modify the behaviour/layout of the table. Go ahead try putting the software updates dashboard widget in a 1 column, 2 column or 3/4 column row layout, and you'll see what I mean.
B -
Accepted Answer
Nick Howitt wrote:
I've just fired up my VM and in postfix, master.cf still has the same issue as before. The line:
allows SMTPS irrespective of the ClearOS setting as the -o flags override the main.cf settings.smtps inet n - n - - smtpd -o smtpd_tls_wrappermode=yes -o smtpd_sasl_auth_enable=yes
Doh, that wasn't in the roadmap target. I just cloned the issue and added it to the "7.1.0 Updates" stream -- that will give it a higher priority. -
Accepted Answer
-
Accepted Answer
Ben,
I hear you, and yes I agree that all information is found under the software update menu. I will also, after this post, not argue for it anymore, but: No, I do not think this was a decent trade off since it gives false info on the dashboard... But sure, nothing to make a fuzz about either.
Anyone can choose to not to enable the Widget, and this is always an option... But those who do enable it will get a more or less static list of apps on their dashboard that does NOT change over time even though the header says "Recent Software Activity". In addition they will also get a "View" button which works as a shortcut, which is if you ask me the only useful with the widget at the moment.
My widget looks like this now (see attachment), and it will most likely EXACTLY like this in 2017 too, unless I have managed to install an app that comes earlier in the alphabet than "app-antivirus". At least that is my understanding.
Finally, I am a very happy user of ClearOS. So do not get me wrong when I am pushing for perfection
/Fred -
Accepted Answer
Fredrick,
Thanks for your feedback...
Know this is just the default on the Dashboard page...any app can register one or more dashboard widgets...For the software updates, it was to just offer a quick glimpse...the "View" button on that widget takes you directly to the software updates Webconfig page (see ss) where more information is displayed, including the ability to sort by date. I think it's a decent tradeoff.
B -
Accepted Answer
Ben,
I see... Then I would put my vote in the following prioritized order:
1. Do not hide any column at all. If the Recent Software Widget is used on the dashbord in a position that has "full width", then it actually has MORE space than on its own page where all data is shown.
2. If the designer still think one column needs to be hidden: Hide the "Installed/Erased/Updated" info instead, and show Date/Time. Default sorting should also be newest on top. I cannot possible think of anyone wanting to see anything else on the Dashboard which I guess should give you an instant view of what is going on.
/Fred -
Accepted Answer
-
Accepted Answer
-
Accepted Answer
Sorry for the spamming...
Just realized that if I click on one of the "recent installed packages" in the dashboard widget, it expands and show date/time. However it is not possible to sort the list according to the date/time. Is this a Internet Explorer/Edge browser thing? Maybe it works better using Firefox? -
Accepted Answer
Nick/Peter,
Sorry that I did not reply earlier (too much to do right now). Hopefully you can read this input (done from IE8 browser which cannot use the new ClearOS web-site very well)...
I have not entered any Trusted Networks. However, I am using SSL for SMTP, and I am pretty sure the port is 465. So Nick's finding about port 465 being forwarded seems to be the reason.
For CUPS, see my separate post under the File/Printer sharing also for more info.
/Fred -
Accepted Answer
Peter Baldwin wrote:
- SMTP server works without Authentication: Even when I in WebConfig enable authentication for the SMTP server, my email client on my Win10 pc on the LAN can send emails without password via the SMTP server... Sure, I might have done something wrong, but I have only used the webconfig interface which I think should be "bullet proof" (read: possible to use for those who do not understand everything, just like me )
That's odd - mail relays are disabled. Do you have any IPs or networks defined in the "Trusted Networks" list in the SMTP Server app?
Unless something has changed, mail relays are always allowed on port 465 due to the set up of master.cf. I did post a bug and thread on this a while back. There has been no movement on the bug so I doubt it has been fixed. It is also inconsistent with modern standards because if you are going to allow secure authenticated relaying by default, I would have expected it to be on port 587 and not port 465. Anyway, with authentication turned off in the webconfig I am not convinced any secure authenticated relaying should be allowed other should be a separate setting for it.
Having said all that I did ask Fredrik if he had set up a trusted network and did not get any feedback -
Accepted Answer
Hi Fredrik,
Thanks for the feedback -- invaluable.
1. CUPS does not work. The installation seems to be OK, but I have yet to succeed to access the cups config web pages. This worked in ClearOS 6 after some tweaks, but not in 7. Anyone got any progress? I am beginning to wonder if the problems I see with authentication with Mail (see below) has anything to do with it.
It's just one data point, but CUPS worked on my home system with an old HP LaserJet 1012. I'll give it another sanity check using a fresh install.
- There are 2 (!) Mail Setting apps in the Market Place with the same name. Pretty confusing if you ask me.
Added the issue to the tracker.
- SMTP server works without Authentication: Even when I in WebConfig enable authentication for the SMTP server, my email client on my Win10 pc on the LAN can send emails without password via the SMTP server... Sure, I might have done something wrong, but I have only used the webconfig interface which I think should be "bullet proof" (read: possible to use for those who do not understand everything, just like me )
That's odd - mail relays are disabled. Do you have any IPs or networks defined in the "Trusted Networks" list in the SMTP Server app?
- If I configure a password in my email client for SMTP, it can send email too (Good!). However, then I can see on the Dashboard "Event notifications" that I get SMTP Authentication Error every time my email client contact the SMTP server. Why? The password is correct and the username is defined in my ClearOS server and so is the email address...
- POP-password is required for the email client to pick up email (Good!). However, whenever the email client contacts the POP server and check if there are any emails to fetch, I also get a POP Authentication Error in the Dashboard Event Notifications. Since I have my email client to check for incomming mail every minute I pretty soon get several hundreds of these error messages turning the event notification into a pretty useless feature.
There's an open issue on this topic - tracker #5661. Basically, we see systems similar to yours where too many events are getting triggered. I have added your descriptions to the existing tracker item.
I'll get to your other comments tomorrow -- ran out of time. -
Accepted Answer
-
Accepted Answer
-
Accepted Answer
Robert wrote:
Hi,
I have a small question: When I have a Clearos 6 Pro subscription can I change to Clearos 7 Business straight or do I need to pay again?
Thanks.
Best
Robert
ClearOS 7 Business is released, very cool. This brings me back to my question concerning the transfer from ClearOS 6 Pro concerning the subscription. -
Accepted Answer
@Fredrik,
Could your mail authentication message issues relate to this thread? You can try the fix and revert if it does nothing. -
Accepted Answer
Hi,
I how now been using ClearOS7 Community for a few days in my home server and I have noticed a few things that are not perfect:
1. CUPS does not work. The installation seems to be OK, but I have yet to succeed to access the cups config web pages. This worked in ClearOS 6 after some tweaks, but not in 7. Anyone got any progress? I am beginning to wonder if the problems I see with authentication with Mail (see below) has anything to do with it.
2. Mail:
- There are 2 (!) Mail Setting apps in the Market Place with the same name. Pretty confusing if you ask me.
- SMTP server works without Authentication: Even when I in WebConfig enable authentication for the SMTP server, my email client on my Win10 pc on the LAN can send emails without password via the SMTP server... Sure, I might have done something wrong, but I have only used the webconfig interface which I think should be "bullet proof" (read: possible to use for those who do not understand everything, just like me )
- If I configure a password in my email client for SMTP, it can send email too (Good!). However, then I can see on the Dashboard "Event notifications" that I get SMTP Authentication Error every time my email client contact the SMTP server. Why? The password is correct and the username is defined in my ClearOS server and so is the email address...
- POP-password is required for the email client to pick up email (Good!). However, whenever the email client contacts the POP server and check if there are any emails to fetch, I also get a POP Authentication Error in the Dashboard Event Notifications. Since I have my email client to check for incomming mail every minute I pretty soon get several hundreds of these error messages turning the event notification into a pretty useless feature.
3. The "Recent Software Update" Widget that one can have on the Dashboard is not doing its job correctly. Since it is called "Recent" I would expect it to list to be sorted by installation time. It is not. It is sorted in alphabetical order, without any possibility to view or sort it by time/date since that field is missing.
4. The Widgets with pie-charts for CPU and Memory often does not work, but sometimes they do... When not working it says "function item (){[native code]} " all over them instead
5. Not really a fault, but can be a bit confusing: In the Antimalware File Scanner web page you do not find any "edit config" button like in many other menus. Instead, you should click on the small wheel up in the title bar... It took me a while before I realized that.
6. The web-interface requires BIG screens. Could there be an option to have a more condensed font/layout ? I am really missing the ClearOS6 style.
/Fred -
Accepted Answer
-
Accepted Answer
Hi
I have a ClearOS 6.6.0 community will it be possibel at some time to upgrade ClarOS 6 to ClearOS 7
I can see in roadmap for update 7.1 it will be possibel to import config from ClearOS 6
but if it will be possible to upgrade from ClearOS 6 community to ClearOS 7 comminty in the near future
I will wait to upgrade, instead of a new installation
my ClaearOS 6.6 is running very good.
Maybe the best way to go is a new installation?
CB -
Accepted Answer
-
Accepted Answer
-
Accepted Answer
-
Accepted Answer
Peter Baldwin wrote:Chrony should not be running by default. Bug report and fix is on the way. Thanks Mick!
Looks like the packages are in:
Oct 15 04:38:31 Updated: 1:app-ntp-core-2.1.25-1.v7.noarch
Oct 15 04:38:31 Updated: 1:app-ntp-2.1.25-1.v7.noarch
Did they fix the chronyd issue? Thanks. -
Accepted Answer
sbn wrote:
I was not able to install BackupPC, and it seems be same problem that has existed since at least RC - "Error, no packages selected for install". Are the necessary repos enabled that should be in order to install? I can't believe I am the only one unable to install, as this has occurred on several different installations in VMs over past several weeks.
BackupPC was still in the "contribs-testing" repo and not officially released. The package was just moved to the "contribs" repo, so it should be installable from Marketplace in the next few hours. -
Accepted Answer
-
Accepted Answer
BackupPC does not seem to be released yet for some reason, that is why you get the "not so informative" error. The package still remains in the contribs-testing repo.
If you want to try BackupPC now: Temporarily enable the contribs-testing repo by using the Software Repository app in Marketplace, or by installing BackupPC from command line:
yum install --enablerepo=clearos-contribs-testing app-backuppc
I tried BackupPC a couple of weeks ago, and it seemed to work when I did a short test (small backup and restore test).
/Fred -
Accepted Answer
BackupPC is definitely broken at the install from the marketplace. You can see it start the install and then halfway through it starts to back it out and gives an error about files missing.
Zarafa webaccess installs but is inaccessible for any user. Sometimes it lets you in to a white blank page other times it just hangs for ever at the login.
Ive installed 7.1 Community final 3 times now and its the same each time
I have to go through the market place 4 or 5 times installing apps. Apps are selected and it shows them installing. I go back in to the market place and its showing that some apps selected were not installed. Thats how I found the backupPC not installing. -
Accepted Answer
I was not able to install BackupPC, and it seems be same problem that has existed since at least RC - "Error, no packages selected for install". Are the necessary repos enabled that should be in order to install? I can't believe I am the only one unable to install, as this has occurred on several different installations in VMs over past several weeks. -
Accepted Answer
Mick Russom wrote:
Seems ntpd and chrony / chronyd are competing for the same port (123)
Oct 13 02:02:01 system ntpd[19190]: ntpd 4.2.6p5@1.2349-o Tue Jun 23 23:48:52 UTC 2015 (1)
Oct 13 02:02:01 system ntpd[19190]: proto: precision = 0.084 usec
Oct 13 02:02:01 system ntpd[19190]: 0.0.0.0 c01d 0d kern kernel time sync enabled
Oct 13 02:02:01 system ntpd[19190]: unable to bind to wildcard address 0.0.0.0 - another process may be running - EXITING
Chrony should not be running by default. Bug report and fix is on the way. Thanks Mick! -
Accepted Answer
Mick Russom wrote:
Red Hat nor CentOS 7 offers 7.x in 32-bit anymore. Its now x86_64 only, and it would probably be a huge effort for Clear to make 32-bit work well. Everything core2 and onwards is x86_64 so the last hardware that was made 32-bit only was about 2007.
Yup, confirmed. Sorry, no 32-bit support. -
Accepted Answer
Seems ntpd and chrony / chronyd are competing for the same port (123)
Oct 13 02:02:01 system ntpd[19190]: ntpd 4.2.6p5@1.2349-o Tue Jun 23 23:48:52 UTC 2015 (1)
Oct 13 02:02:01 system ntpd[19190]: proto: precision = 0.084 usec
Oct 13 02:02:01 system ntpd[19190]: 0.0.0.0 c01d 0d kern kernel time sync enabled
Oct 13 02:02:01 system ntpd[19190]: unable to bind to wildcard address 0.0.0.0 - another process may be running - EXITING
This seems to happen on restart or at some interval, however, If I click start in the NTP server section of the GUI, this happens:
(Click on NTP server in GUI)
Oct 13 09:46:34 system webconfig: Redirecting to /bin/systemctl start ntpd.service
Oct 13 09:46:34 system systemd: Stopping NTP client/server...
Oct 13 09:46:34 system chronyd[506]: chronyd exiting
Oct 13 09:46:34 system systemd: Stopped NTP client/server.
Oct 13 09:46:34 system systemd: Starting Network Time Service...
Oct 13 09:46:34 system ntpd[14148]: ntpd 4.2.6p5@1.2349-o Tue Jun 23 23:48:52 UTC 2015 (1)
Oct 13 09:46:34 system ntpd[14149]: proto: precision = 0.084 usec
Oct 13 09:46:34 system ntpd[14149]: 0.0.0.0 c01d 0d kern kernel time sync enabled
Oct 13 09:46:34 system systemd: Started Network Time Service.
Oct 13 09:46:34 system ntpd[14149]: Listen and drop on 0 v4wildcard 0.0.0.0 UDP 123
Oct 13 09:46:34 system ntpd[14149]: Listen and drop on 1 v6wildcard :: UDP 123
Oct 13 09:46:34 system ntpd[14149]: Listen normally on 2 lo 127.0.0.1 UDP 123
Oct 13 09:46:34 system ntpd[14149]: Listen normally on 3 eth0 x.x.x.x UDP 123
Oct 13 09:46:34 system ntpd[14149]: Listen normally on 4 eth1 192.168.0.1 UDP 123
Oct 13 09:46:34 system ntpd[14149]: Listen normally on 5 eth1 x::x UDP 123
Oct 13 09:46:34 system ntpd[14149]: Listen normally on 6 eth0 x::x UDP 123
Oct 13 09:46:34 system ntpd[14149]: Listen normally on 7 lo ::1 UDP 123
Oct 13 09:46:34 system ntpd[14149]: Listening on routing socket on fd #24 for interface updates
Oct 13 09:46:34 system systemd: Reloading.
Oct 13 09:46:34 system systemd: [/usr/lib/systemd/system/dm-event.socket:10] Unknown lvalue 'RemoveOnStop' in section 'Socket'
Oct 13 09:46:34 system systemd: [/usr/lib/systemd/system/lvm2-lvmetad.socket:9] Unknown lvalue 'RemoveOnStop' in section 'Socket'
Oct 13 09:46:34 system ntpd[14149]: 0.0.0.0 c016 06 restart
Oct 13 09:46:34 system ntpd[14149]: 0.0.0.0 c012 02 freq_set kernel 0.000 PPM
Oct 13 09:46:34 system ntpd[14149]: 0.0.0.0 c011 01 freq_not_set
Oct 13 09:46:35 system ntpd[14149]: 0.0.0.0 c614 04 freq_mode
So it looks like on restart chronyd wins, but if I start ntp in the GUI, then chronyd is stopped and ntpd is started. -
Accepted Answer
ratooren wrote:
Hello. I want to install the new clearos 7 community version on a 32 bits computer. However i cant find if this new version is also suitable for this kind of computer. Can you elaborate?
Thans, Ron
Red Hat nor CentOS 7 offers 7.x in 32-bit anymore. Its now x86_64 only, and it would probably be a huge effort for Clear to make 32-bit work well. Everything core2 and onwards is x86_64 so the last hardware that was made 32-bit only was about 2007. -
Accepted Answer
Peter Baldwin wrote: That's not supported yet and I'm a bit surprised that the app even allowed you to do it! It's something that we're working on.
I would consider enabling a check for 6.x config files being used in a restore operation on 7.1. 7.1 did take the 6.x config and kind of worked. Given the errors I was seeing, I decided to rebuild by hand. -
Accepted Answer
-
Accepted Answer
Since update to 7.1 release i can no longer access server from out of town. I've tried pinging and logging into web access without success.
I've had the server restarted and that didnt help. I've logged into the portal and can see that the external ip is right.
I cannot access anything on the server. I think there is something wrong with the firewall.
Anyone have an idea i can try to fix this?
Thanks
Sam
Fixed or kinda for now. Had to switch from gateway to standalone without firewall and then back to gateway.
Might be a problem to check out. -
Accepted Answer
Dave Loper wrote:
@Marcel, the updates are now consolidated under a single repo. In ClearOS 6 we saw a scalability problem in that if many developers began to make apps then we would have to add a repo to a user for each and every app. Potentially, a box would have to process hundreds of repos in order to update.
@Dave, that can't be a real world reason why this was done. ClearOS 8 will arrive long before we even have hundreds of paid apps available. And even if hundreds of paid apps were available, how many users would install "hundreds" on a single system? Members of this community could recommend dozens of features and enhancements that are a bigger priority!
To remove this issue we now dynamically create all your repo data associated with your license in one repo call.
That's not yet live and I have yet to even see a technical specification for it. -
Accepted Answer
Mick Russom wrote:
Is restore config from 6.x to 7.1 supported? I tried it and it mostly worked. It bonked yum.repos.d (I fixed that) and needed to update the dynamic dns bit, but the rest seemed to go ok. Let me know if it would be better to re-install from scratch and rebuild the config by hand or continue to use the restored from backup 7.1.
Note to everyone thinking of recycling their config - dont restore a 6.x config onto a 7.x clearos, it causes a number of problems. I migrated the DHCP and HOSTS by hand and rebuilt the rest.
That's not supported yet and I'm a bit surprised that the app even allowed you to do it! It's something that we're working on. -
Accepted Answer
Fredrik Fornstad wrote:
Hi,
It is not possible to install the print server due to a package dependency problem with liberation-fonts-common:
However, temporarily enabling clearos-centos-fasttrack works as an workaround.
yum install app-print-server --enablerepo=clearos-centos-fasttrack works.
Very frustrating. That's related to this tracker issue reported a few weeks ago. The ClearOS ISO is built with the Fasttrack repository enabled (?), but we don't enable the Fasttrack repository on a ClearOS install. This situation causes library version mismatches like the one you discovered. We added a workaround in the verified CentOS repository for Home & Business, but neglected to resolve the issue for the Community Edition.
There's a workaround in place now, but we'll have to resolve that tracker issue to make sure this doesn't happen again! -
Accepted Answer
Hi,
It is not possible to install the print server due to a package dependency problem with liberation-fonts-common:
However, temporarily enabling clearos-centos-fasttrack works as an workaround.
yum install app-print-server --enablerepo=clearos-centos-fasttrack works.
Without clearos-centos-fasttrack enabled you will get the following error at the moment:
Error: Package: 1:liberation-mono-fonts-1.07.2-14.el7.noarch (clearos-centos)
Requires: liberation-fonts-common = 1:1.07.2-14.el7
Installed: 1:liberation-fonts-common-1.07.2-15.el7.noarch (@anaconda/7.1.0)
liberation-fonts-common = 1:1.07.2-15.el7
Available: 1:liberation-fonts-common-1.07.2-14.el7.noarch (clearos-centos)
liberation-fonts-common = 1:1.07.2-14.el7
You could try using --skip-broken to work around the problem
You could try running: rpm -Va --nofiles --nodigest
Maybe someone can move the new liberation-fonts-common into a default repo?
Then making CUPS work is another chapter...
/Fred -
Accepted Answer
audit log is being written to constantly with the following:
type=USER_CMD msg=audit(1444501641.520:195084): pid=26593 uid=998 auid=4294967295 ses=4294967295 msg='cwd="/usr/clearos/framework/htdocs/app" cmd=2F62696E2F6C73202F7661722F72756E2F6E7470642F6E7470642E706964 terminal=? res=success'
type=CRED_ACQ msg=audit(1444501641.521:195085): pid=26593 uid=0 auid=4294967295 ses=4294967295 msg='op=PAM:setcred grantors=pam_env,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success'
type=USER_START msg=audit(1444501641.521:195086): pid=26593 uid=0 auid=4294967295 ses=4294967295 msg='op=PAM:session_open grantors=pam_keyinit,pam_limits acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success'
type=USER_END msg=audit(1444501641.523:195087): pid=26593 uid=0 auid=4294967295 ses=4294967295 msg='op=PAM:session_close grantors=pam_keyinit,pam_limits acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success'
type=CRED_DISP msg=audit(1444501641.523:195088): pid=26593 uid=0 auid=4294967295 ses=4294967295 msg='op=PAM:setcred grantors=pam_env,pam_unix acct="root" exe="/usr/bin/sudo" hostname=? addr=? terminal=? res=success'
type=USER_CMD msg=audit(1444501641.542:195089): pid=26598 uid=998 auid=4294967295 ses=4294967295 msg='cwd="/usr/clearos/framework/htdocs/app" cmd=2F7362696E2F657468746F6F6C2065746831 terminal=? res=success'
I would say there are 10-100 of these per second. Is there any way to slow this down? (SSDs will thank you).
[root@system audit]# while true : ; do ls -al audit.log ; sleep 10 ; done
-rw------- 1 root root 270687 Oct 10 11:33 audit.log
-rw------- 1 root root 318669 Oct 10 11:33 audit.log
-rw------- 1 root root 385566 Oct 10 11:33 audit.log -
Accepted Answer
@Jim Joomla. The 30 day window is an opportunity rather than a requirement. ClearOS Community is and will always be a free version that you can run. For the first 30 days of your subscription, you will be using the Verified Updates which come with Home and Business versions as a trial. So even though it is a 'Community version' it will act in some ways like Business and Home in that the updates are verified. After that, it will begin behaving like the ClearOS Community version that you know and love. You will then be part of the pool of people that help make ClearOS well-tested through your participation in the community and your feedback on the forums.
@Marcel, the updates are now consolidated under a single repo. In ClearOS 6 we saw a scalability problem in that if many developers began to make apps then we would have to add a repo to a user for each and every app. Potentially, a box would have to process hundreds of repos in order to update. To remove this issue we now dynamically create all your repo data associated with your license in one repo call. -
Accepted Answer
-
Accepted Answer
I see a message about panic mode, but everything seems to be working ok.
Oct 9 16:03:49 system firewall: Running /etc/clearos/firewall.d/10-ntp
Oct 9 16:03:49 system firewall: Enabling NAT on WAN interface eth0
Oct 9 16:03:49 system firewall: Running user-defined outgoing block rules
Oct 9 16:03:49 system firewall: Running default forwarding rules
Oct 9 16:03:49 system firewall: Error: /usr/clearos/apps/firewall/deploy/firewall.lua:3075: Unable to commit: filter: Resource temporarily unavailable.
Oct 9 16:03:49 system firewall: Running firewall panic mode...
Oct 9 16:03:49 system firewall: Starting firewall...
Oct 9 16:03:49 system firewall: Loading environment
Oct 9 16:03:49 system firewall: Detected WAN role for interface: eth0
What can I do to debug this panic mode?
Note: seems related to restoring a 6.x config into a 7.x clearos. -
Accepted Answer
Is restore config from 6.x to 7.1 supported? I tried it and it mostly worked. It bonked yum.repos.d (I fixed that) and needed to update the dynamic dns bit, but the rest seemed to go ok. Let me know if it would be better to re-install from scratch and rebuild the config by hand or continue to use the restored from backup 7.1.
Note to everyone thinking of recycling their config - dont restore a 6.x config onto a 7.x clearos, it causes a number of problems. I migrated the DHCP and HOSTS by hand and rebuilt the rest. -
Accepted Answer
"Loading software updates list, please be patient."
The installer seems to choke on the updates process. In the background yum makecache can choke on certain mirrors, some mirrors are very slow. The yum upgrade works in the background. Installer is not nearly putting enough output where "Loading software updates list, please be patient." is to even guess at what the issues is or what its waiting for.
Seems the choking is on urlgrabber processes:
root 3815 0.0 0.6 320084 11228 ? S 13:35 0:00 /usr/bin/python /usr/libexec/urlgrabber-ext-down
root 4215 0.0 0.1 188748 2648 ? S 13:39 0:00 /usr/bin/sudo /usr/sbin/wc-yum -i app-users app-users-core
root 4216 0.1 1.4 426952 26512 ? S 13:39 0:00 /usr/bin/python -u /usr/sbin/wc-yum -i app-users app-users-core
root 4266 0.0 0.6 320080 11280 ? S 13:39 0:00 /usr/bin/python /usr/libexec/urlgrabber-ext-down
root 4267 0.0 0.7 320080 13200 ? S 13:39 0:00 /usr/bin/python /usr/libexec/urlgrabber-ext-down
root 4268 0.0 0.6 320084 11228 ? S 13:39 0:00 /usr/bin/python /usr/libexec/urlgrabber-ext-down
root 4269 0.0 0.7 320212 13436 ? S 13:39 0:00 /usr/bin/python /usr/libexec/urlgrabber-ext-down
root 4277 0.0 0.6 320080 11260 ? S 13:39 0:00 /usr/bin/python /usr/libexec/urlgrabber-ext-down
root 4279 0.0 0.6 320080 11256 ? S 13:39 0:00 /usr/bin/python /usr/libexec/urlgrabber-ext-down
root 4281 0.0 0.6 320212 11392 ? S 13:39 0:00 /usr/bin/python /usr/libexec/urlgrabber-ext-down
root 4289 0.0 0.6 320080 11272 ? S 13:39 0:00 /usr/bin/python /usr/libexec/urlgrabber-ext-down
Killing them, yum makecache, yum uprgade, and restart wizard got it unstuck. -
Accepted Answer
-
Accepted Answer
Faucon wrote:
Have a look in /etc/clearos-release to see what version you are on. Also /var/log/yum.log will show your update history.
repo id repo name status
clearos/7 ClearOS 7 - x86_64 - OS enabled: 712
clearos-centos/7/x86_64 CentOS-7 - Base enabled: 8,574+78
clearos-centos-extras/7/x86_64 CentOS-7 - Extras enabled: 214
clearos-centos-fasttrack/7/x86_64 CentOS-7 - fasttrack enabled: 109
clearos-centos-updates/7/x86_64 CentOS-7 - Updates enabled: 1,395+108
clearos-centosplus/7/x86_64 CentOS-7 - Plus enabled: 63
clearos-contribs/7 ClearOS 7 - x86_64 - Contribs enabled: 58
clearos-contribs-testing/7 ClearOS 7 - x86_64 - Contribs (Testing) enabled: 14
clearos-developer/7/x86_64 ClearOS Developer 7 - x86_64 - Developer Tools enabled: 2
clearos-epel/7/x86_64 Extra Packages for Enterprise Linux 7 - x86_64 enabled: 8,569+31
clearos-epel-testing/7/x86_64 Extra Packages for Enterprise Linux 7 - Testing - x86_64 disabled
clearos-fast-updates/7/x86_64 ClearOS 7 - x86_64 - Fast Updates enabled: 4
clearos-infra/7 ClearOS 7 - x86_64 - Infrastructure enabled: 17
clearos-infra-testing/7 ClearOS 7 - x86_64 - Infrastructure (Testing) enabled: 0
clearos-updates/7 ClearOS 7 - x86_64 - Updates enabled: 375
clearos-updates-testing/7 ClearOS 7 - x86_64 - Updates (Testing) disabled
clearos-zfs/7/x86_64 ZFS on Linux for EL7 disabled
clearos-zfs-testing/7/x86_64 ZFS on Linux for EL7 - Testing disabled
private-clearcenter-dyndns ClearCenter Dynamic DNS enabled: 2
repolist: 20,108
Maybe i'm already on 7.1 Final ? But i know i did install RC1 few weeks ago -
Accepted Answer
Ben Chambers wrote:
Jean-Francois,
You need clearos-updates enabled...run:
yum-config-manager --enable clearos-updates
This is likely a result of coming off the beta or RC release and timing around when you registered...should not be a widespread issue.
B.
Thank you very much work great now. -
Accepted Answer
repo id repo name status
clearos/7 ClearOS 7 - x86_64 - OS enabled: 712
clearos-centos/7/x86_64 CentOS-7 - Base enabled: 8,574+78
clearos-centos-extras/7/x86_64 CentOS-7 - Extras enabled: 214
clearos-centos-fasttrack/7/x86_64 CentOS-7 - fasttrack enabled: 109
clearos-centos-updates/7/x86_64 CentOS-7 - Updates enabled: 1,395+108
clearos-centosplus/7/x86_64 CentOS-7 - Plus enabled: 63
clearos-contribs/7 ClearOS 7 - x86_64 - Contribs enabled: 58
clearos-contribs-testing/7 ClearOS 7 - x86_64 - Contribs (Testing) enabled: 14
clearos-developer/7/x86_64 ClearOS Developer 7 - x86_64 - Developer Tools enabled: 2
clearos-epel/7/x86_64 Extra Packages for Enterprise Linux 7 - x86_64 enabled: 8,569+31
clearos-epel-testing/7/x86_64 Extra Packages for Enterprise Linux 7 - Testing - x86_64 disabled
clearos-fast-updates/7/x86_64 ClearOS 7 - x86_64 - Fast Updates enabled: 4
clearos-infra/7 ClearOS 7 - x86_64 - Infrastructure enabled: 17
clearos-infra-testing/7 ClearOS 7 - x86_64 - Infrastructure (Testing) enabled: 0
clearos-updates/7 ClearOS 7 - x86_64 - Updates enabled: 375
clearos-updates-testing/7 ClearOS 7 - x86_64 - Updates (Testing) disabled
clearos-zfs/7/x86_64 ZFS on Linux for EL7 disabled
clearos-zfs-testing/7/x86_64 ZFS on Linux for EL7 - Testing disabled
private-clearcenter-dyndns ClearCenter Dynamic DNS enabled: 2
repolist: 20,108
Maybe i'm already on 7.1 Final ? But i know i did install RC1 few weeks ago -
Accepted Answer
Jean-Francois,
You need clearos-updates enabled...run:
yum-config-manager --enable clearos-updates
This is likely a result of coming off the beta or RC release and timing around when you registered...should not be a widespread issue.
B. -
Accepted Answer
-
Accepted Answer
-
Accepted Answer
Ben Chambers wrote:
Faucon,
Can you post the output from:
yum repolist all
B
# yum repolist all
Modules complémentaires chargés : clearcenter-marketplace, fastestmirror
ClearCenter Marketplace: fetching repositories...
Loading mirror speeds from cached hostfile
* clearos: mirror1-frankfurt.clearos.com
* clearos-centos: centos.mirror.ca.planethoster.net
* clearos-centos-updates: centos.mirror.iweb.ca
* clearos-contribs: mirror1-frankfurt.clearos.com
* clearos-epel: mirror.cogentco.com
* clearos-fast-updates: download2.clearsdn.com
* clearos-infra: mirror1-frankfurt.clearos.com
* private-clearcenter-dyndns: download3.clearsdn.com:80
id du dépôt nom du dépôt statut
clearos/7 ClearOS 7 - x86_64 - OS activé: 712
clearos-centos/7/x86_64 CentOS-7 - Base activé: 8 574+78
clearos-centos-extras/7/x86_64 CentOS-7 - Extras désactivé
clearos-centos-fasttrack/7/x86_64 CentOS-7 - fasttrack désactivé
clearos-centos-updates/7/x86_64 CentOS-7 - Updates activé: 1 395+108
clearos-centosplus/7/x86_64 CentOS-7 - Plus désactivé
clearos-contribs/7 ClearOS 7 - x86_64 - Contribs activé: 58
clearos-contribs-testing/7 ClearOS 7 - x86_64 - Contribs (Testing) désactivé
clearos-developer/7/x86_64 ClearOS Developer 7 - x86_64 - Developer Tools désactivé
clearos-epel/7/x86_64 Extra Packages for Enterprise Linux 7 - x86_64 activé: 8 569+31
clearos-epel-testing/7/x86_64 Extra Packages for Enterprise Linux 7 - Testing - x86_64 désactivé
clearos-fast-updates/7/x86_64 ClearOS 7 - x86_64 - Fast Updates activé: 4
clearos-infra/7 ClearOS 7 - x86_64 - Infrastructure activé: 17
clearos-infra-testing/7 ClearOS 7 - x86_64 - Infrastructure (Testing) désactivé
clearos-updates/7 ClearOS 7 - x86_64 - Updates désactivé
clearos-updates-testing/7 ClearOS 7 - x86_64 - Updates (Testing) désactivé
clearos-zfs/7/x86_64 ZFS on Linux for EL7 désactivé
clearos-zfs-testing/7/x86_64 ZFS on Linux for EL7 - Testing désactivé
private-clearcenter-dyndns ClearCenter Dynamic DNS activé: 2
repolist: 19 331 -
Accepted Answer
-
Accepted Answer
-
Accepted Answer
-
Accepted Answer
-
Accepted Answer
Nick Howitt wrote:
I would not be looking forward to somehow issuing new OpenVPN certificates to my few remote users because I'd be in a catch 22. My users are not particularly capable so I'd need to be logged in with OpenVPN/TightVNC and the old certificates to tranfer the new certificates, and I don't think that is going to work.
I started work on getting ClearOS 6 configurations supported for the Configuration Backup app in ClearOS 7. Support should pop-up in the not-too-distant future (guessing about 4 weeks). -
Accepted Answer
Hi Ben,
I understand there is no direct migration path. It is the config backup tool and instructions I was asking about but you've answered that question.
I would not be looking forward to somehow issuing new OpenVPN certificates to my few remote users because I'd be in a catch 22. My users are not particularly capable so I'd need to be logged in with OpenVPN/TightVNC and the old certificates to tranfer the new certificates, and I don't think that is going to work.
Nick -
Accepted Answer
Hi Nick,
There will be no upgrade path from 6 to 7. RedHat nor CentOS support it and their pockets and resources are a wee bit bigger than ours! ;-)
There was a good thread from the CentOS team a while back discussing the for/against...you can read it here.
The one thing we will be providing is a tool to migrate a configuration backup so that it can be taken from a 6 and restored on a 7. I don't have a timeline on availability (either time or version required) at this point.
B -
Accepted Answer
-
Accepted Answer
Sorry, the discussion is currently locked. You will not be able to post a reply at the moment.