[00:13:37] !log sugarcrm reassociated external IP to officetools [00:13:38] Logged the message, Master [00:13:52] !log sugarcrm switched test crm installs to use proxy rather then external IP [00:14:23] Logged the message, Master [00:20:41] !log sugarcrm setup apache/php/mysql/certs on officetools [00:20:43] Logged the message, Master [03:43:59] !log sugarcrm set up domain for officetools [03:44:01] Logged the message, Master [03:44:34] !log sugarcrm imported lca sugar database into new officetools instance [03:44:36] Logged the message, Master [06:16:50] Hi ! How can I get exim4 configuration out of the default pupetization scheme for my instance ? [07:21:13] the private and public ssl keys that were installed for star.wmflabs.org don't appear to match.... [07:21:21] (on my new instance) [07:51:02] hi Jamesofur [07:51:05] ahoy :) [07:51:35] please explian what you are trying to achieve [07:52:04] the goal is to have https on the new instance :) but using the wmf CA is ... dirty and causes a lot of questions when it's a tool that a lot of people use (and we expect it to be used https at all times) [07:53:19] I've been moving (I'm in the office now, at 1am, trying to get it finished... though at this point close to calling it at night) the LCA crm from an internal Office IT host to labs. [07:53:47] Jamesofur: the best would be to talk to coren or andrewbogott_afk [07:54:04] * Jamesofur nods [07:54:17] but you will need to add some puppet classes to that instance [07:55:03] aye, what classes are you thinking? I have the apache/php/ssl classes on there at the moment... but if star. is revoked they aren't very helpful [07:55:35] * matanya is looking it up [07:56:26] <3 [07:56:40] Jamesofur: did you add security groups ? [07:57:21] right now it has default and web... it's possible it could need more? [07:57:37] and what is domain you need? [07:57:41] *the [07:57:49] officetools.wmflabs.org [07:58:04] should be accessed from outside ? [07:58:07] aye [07:58:18] I have an external IP on the instance [07:58:19] so you need proxy/public ip [07:58:24] ok [07:58:36] did you open 443 in the security group ? [07:58:46] yeah, tcp [07:59:59] hmm [08:01:49] the star.wmflabs.org.pem cert is a mismatch but that makes some sense if you said it was revoked (though why they put 1 public and a different private in there I have no idea) [08:03:41] the private key it actually gives appears to be for a cert issues by the wmf CA and with some hacking together I was able to get working at one point but since it was an untrusted CA sends up warnings all over the place (unsurprisingly). [08:03:56] Jamesofur: you need the puppet role: certificates::star_wmflabs_org [08:04:06] as it seems [08:04:18] though star is revoked, so this is weird :) [08:04:33] yeah :-/ and I have that role... none of the certs it gives me seem to work :-/ [08:04:54] which means either it doesn't exist, or I just haven't found it lol [08:06:06] Jamesofur: se SAL of jan 24 : 21:52 RobH: old outdated (had already beed revoked) star.wikimedia.org cert removed from fenari [08:07:34] Jamesofur: it was replaced by geotrust ssl, known as rapidssl [08:07:35] hmm, but that's for wikimedia.org ... (which I assume they replaced because I can still have https on wikimedia.org sites ;) ) [08:07:40] yeah [08:09:35] i'm not much of a help here :/ [08:10:30] Jamesofur: when you find out, please doc it [08:10:33] no worries, I appreciate it, i've been beating my head on it for hours [08:10:37] will do [11:03:57] * Betacommand grumbles about having to re open bug 54052 [11:05:28] it talks!] [11:05:45] !b 54052 [11:05:45] https://bugzilla.wikimedia.org/54052 [11:08:36] petan: Im always discovering bugs [11:08:47] petan :O is this a new feature :O? [11:10:17] !say nah | Steinsplitter [11:10:17] Steinsplitter: nah [11:10:36] ah :) [11:10:39] !say I could always talk :) | Steinsplitter [11:10:39] Steinsplitter: I could always talk :) [11:21:49] I want to setup an environment in which my isntance 1 (box1 ) 's exim is configured in a way that it sends email via another instance ( box2 ) acting as the smarthost. But everytime I change some settings in exim configs, the puppet over writes on next login [11:22:01] how to get exim out of pupet-isation [15:21:38] tonythomas: The big gun for that is https://wikitech.wikimedia.org/wiki/Help:Self-hosted_puppetmaster. I don't know (and don't think) that there is a "smaller" solution. [15:24:11] scfc_de: that looks good. Letme try [20:31:03] What is with the vim configuration that features a gray background with green text? [20:44:55] SigmaWP: https://wikitech.wikimedia.org/wiki/Nova_Resource:Tools/SAL says: "petrb: disabled default vimrc which everybody hates on -login", so you might want to discuss that with petan (or go Emacs! :-)). [20:52:30] scfc_de: Oh, it's on -dev too :( [20:57:08] SigmaWP: The only thing about vim I know is ":q!" :-); but I'm pretty sure you there is a ~/.vimrc or something like that. [20:57:40] petan: wrt "petrb: disabled default vimrc which everybody hates on -login", I suggest that you do the same for -dev [20:58:02] scfc_de: Sadly, I'm not a vim master [20:58:04] Thanks anyway