Quantcast
Channel: General — LowEndTalk
Viewing all 22293 articles
Browse latest View live

Cloud KVM Storage BETA

$
0
0

Hello,

Hopefully this is in the correct place, if not @jarland feel free to move!

Looking for a couple of well known LET users to trial (1 - 2 Month's) a new Cloud KVM Storage service, the plan once launched will be within the LET $ band!

Looking for people who have a valid use case for the VM and can provide valid and useful feedback on all areas of the service, not looking for users who want a free 2 Month seedbox as this will cause instant termination.

Starting you will have access and control to VM via WHMCS, however part the way through we will also provide our own Control Panel which will also need feedback on during the BETA.

Specs:

-1TB CEPH Storage
-1GB DDR4 RAM
-2TB Outgoing Bandwidth (Not limited during BETA period)
-Unmetered Incoming Bandwidth
-KVM Environment
-1 x E5 2620V4 CPU (1/2 Guaranteed)
-Fully HA

Looking for feedback wise:

-Performance of all resources and levels
-Any suggestions on package specifications
-Suggestions and feedback on custom Control Panel
-Anything else you have

If your a well known LET user and interested please comment saying PM'd, and PM me your info and use case for the VM, looking at late next week for setup of accounts.

Thanks


ESET vs Kaspersky or what Antivirus Software do you use?

$
0
0

Heya,

So far I've been using Avira Free + Malwarebytes Free however due to some recent test results and Avira Free being annoying I am acctually considering to purchase an Antivirus Software for the first time.

Currently considering either ESET NOD32 or Kaspersky Antivirus. If you have any recommendations let me know! Anyone tested F-Secure/Pandasecurity? Bitdefender is said to be good but was very annoying when I tested it. Naturally disliking Avira & Avast I probably won't go for any of those either.

Stripe Risk Evaluation

$
0
0

At last for providers decent payment evaluation tools as you will be able to set various rules, like if client IP address does not match card issue country = possible fraud or 20 times attempts to pay using stolen card can be blocked, as previously the Stripe just ignored that.

https://stripe.com/docs/radar/risk-evaluation

What do you think about this option/tool?

Should I be surprised that this works so well? (dump over ssh)

$
0
0

To my astonishment, this has consistently worked:

# dump -0 -f - / | ssh backup-server.example.com "cd /vault && cat > dump.0"

There's a little more to it in that I specify ssh keys, ports, per-server destination, etc. but that's essentially the command. I've examined the dump file on the backup server and done restores over it, etc. Of course, change level 0 for any level you like.

So, um, why isn't everyone using dump for backing up their VMs? I mean, I'm doing this over the WAN and ending up with a nice full/incremental rotation, I can pull out subsets for restore, it's compressed/secure, I could probably pipe a gpg encryption in there if I wished...

Let's Do Some Tests

Backup source: 1-core, 768M Vultr in Seattle.

Backup destination: DO in NYC. ~28ms.

Backing up:

Filesystem      Size  Used Avail Use% Mounted on
/dev/sda1        30G   11G   18G  39% /
Dump command: dump -0 -f - /
Where compression is listed, -z, -z5, or -z9

Test Results (SCIENCE!)

Compression Level          Time              Dump Size     Source Server Impact

None                      3m28.997s             11.0G       nil (6% cpu)
2 (default)               3m36.289s              7.0G       noticeable if you look
5                         4m5.272s               6.9G       noticeable even if you don't look
9 (max)                   6m5.260s               6.9G       this is all you're doing

I'm being comical on the source server impact, but for example with level 5 or 9, the load average was well over 2.0, while with level 2 it was usually around 1.0

Destination side barely showed load - sshd was using 6% of CPU.

I was being lazy and using du -sh...I'm sure level 9 is a little smaller than level 5, but not so much that I'd care.

Of course, these are all full backups of the entire OS and in practice, I'd exclude some things (/tmp, etc.) and the daily incrementals would be much, much smaller (files changed since yesterday, compressed).

Given SSD disk speed these days, I think one could do a level 0 less frequently than the traditional once a week...more incrementals to play back but SSDs are fast.

Honorable Intentions

This method seems to meet all my needs/wants:

  • captures everything - default include, not default "remember to include"
  • can do incrementals which saves on my bandwidth
  • can extract a subset of files to restore.
  • encrypted in transit
  • compressible
  • haven't played with encryption yet but that's just a gpg command in the pipeline before ssh
  • doesn't require staging space on the client
  • can run unattended with passwordless ssh.
  • on the backup server, I can move the backups somewhere out of the clients' access once backups are done, and the client doesn't depend on looking at that for an rsync-type incremental (and can't destroy backups with a malicious rsync)

Only negative is that I'd prefer to go over sftp so the client is completely locked down and limited to sftp only. But I can chroot the client into an incoming directory where he can only put files and not escape to do anything else.

I was concerned that maybe going over the WAN would result in broken connections, etc. but I just did half a dozen transcontinental dumps (please, no crude humor) and things seem to be working fine...

Someone stop me before I fall in love with this solution, get it pregnant, and elope to Buffalo.

The AIO RIR Resource Thread... (IPv4 + IPv6 + ASN)

$
0
0

Hi Everybody,

There's been a few of these as of late, but.. lets have a shot like this for a change..

Here are a few businesses that rent out & sell resources.. Below are listed in the way of RIR (ie, ARIN, RIPE, APNIC, LACNIC, AFRINIC) and including current-ish prices for the lowest forms (ie, /24 - /48 - ASN)

ARIN - North America
IPv4 Leasing
HostUS (r) - $90 per /24
GarrisonHost - $70 (+$70 Setup) per /24
IPv4Less - $128 per /24
IP6 (@William) - Contact about stock & prices.

IPv6 Leasing
HostUS (r) - $35 per /48
IP6 (@William) - Contact about stock & prices.


ASN Registration
--NONE--
RIPE - Europe
IPv4 Leasing
RMLH - € 50 per /24
SinaVPS - 100CHF
IP6 (@William) - Contact about stock & prices.
Velder.li - @Patrick7 - Contact about stock & prices

IPv6 Leasing
RMLH - €5 per /48 - Annually
IP6 - €0 per /44
SinaVPS - 100CHF - Annually
Velder.li - @Patrick7 - Contact about stock & prices


ASN Registration
RMLH - €50 - One Time.
IP6 - €100 - One Time.
SinaVPS - 80CHF - One Time
Velder.li - @Patrick7 - Contact about stock & prices
APNIC - Asia Pacific
IPv4 Leasing
HostUS (r) - $90 per /24
IP6 (@William) - Contact about stock & prices.

IPv6 Leasing
HostUS (r) - $35 per /48 - Annually
IP6 (@William) - Contact about stock & prices.

ASN Registration
HostUS (r) - $35 - Annually + $10 setup.

for AFRINIC & LACNIC.. one stop shop.. @William!

Hopefully our fearless leader @Jarland , will help keep this updated if needed, since editing timeout applies.

Don't hesitate to add more providers that do the same to this list, and hopefully it helps someone out :-)

Note: (r) = Ref Link.

Delimiter Dual E5420, 24GB RAM, 2 x 500GB, 10TB Bandwidth $200/yearly

$
0
0

Just got this deal from Delimiter today (http://del.im/eow4nov2016int). It was delivered a few hours after ordering, so far so good, I think it's great. It fits my request that I made here earlier for a dedi @ < $1/GB RAM. I think I am set for now with my dedis for an upcoming project (hopefully BlackFriday won't bring some dangerous offers for my wallet :P ).

KernelCare

$
0
0

Tried out the free trial. Pretty straight forward. Only question is does this patch everything or just security/critical bug patches? Looks like the latter as far as I can tell even though they sort of imply, on first glance, that it does everything and you "never have to reboot again".

Doesn't update the actual uname -r kernel version. Only the version as shown from /usr/bin/kcarectl --info.

So do people still update their kernels the old fashioned way once in awhile? To get all updates and not just the security/critical stuff? What's the consensus on this as far as best practices?

Any gotchas if I yum update vzkernel and reboot with KernelCare installed? According to their FAQ that is not a problem as it detects the version installed patches each time it runs. What happens if I uninstall it. Do the applied kpatches get uninstalled too?

limited special dedicated at ovh.de

$
0
0

just found this one:

https://www.ovh.de/dedicated_server/bare-metal-servers/sp-64-d.xml

in case someone else might be interested, seems to be available only on the german page ;-) (pricing on the german webpage includes german VAT)

direct order link:

https://www.ovh.de/bestellung/dedies.cgi?hard=154sp10

seems to be available from other order pages too, like:

https://www.ovh.co.uk/order/dedies.cgi?hard=154sp10

cheeeaaap I'd say. brace yourself for new ovh resellers coming, haha.

will report about delivery time and benchmarks later...


Century Link to buy Level3

Multiple Critical Remotely Exploitable Flaws Discovered in Memcached Caching System

DNS Providers - Let's make a list (in light of recent DDOS)

$
0
0

Quick read: https://medium.com/@brianarmstrong/youre-probably-doing-dns-wrong-like-we-were-6625efaed390#.1j1v4of05

For me, I like providers who have an API, and prefer ones that price on DNS zones rather than queries. How about knocking together a list?

  • Afraid.org -- No API -- Free

  • Aurora DNS -- Has an API -- Charges on zone

  • Cloudflare -- Has an API -- Charges on zone, free tier

  • CloudNS -- Has an API -- Charges per zone

  • dns.he.net -- No API -- Free

  • DNS Made Easy -- Has an API -- Charges on zone

  • Google Cloud DNS -- Has an API -- Charges on query volume, zone

  • Microsoft Azure -- Has an API -- Charges on query volume, zone

  • NS1 -- Has an API -- Charges on query volume, zone, has a free tier

  • Rage4 -- Has an API -- Charges on zone

  • Route53 -- Has an API -- Charges on query volume, zone

Cheapest Storage VPS paid yearly?

$
0
0

At least 100GB storage, preferable 200GB+, just a stuff to place my Twitch VODs in.

I was originally trying to use some cloud storage solutions, but found that it's pretty hard to get the VODs on there.

LastPass multi-device Access Is Now Free

Seeking clarification concerning VPS's with 8GB+ Ram and LiteSpeed..

$
0
0

Seeking clarification concerning VPS's with 8GB+ Ram and LiteSpeed..... According to there website there is a 8GB Ram max on their VPS licenses.

Is there a license for VPS's with more than 8GB or ram or am I reading something wrong?

Critical privilege escalation vulnerabilities in MySQL, MariaDB

$
0
0

MySQL, MariaDB, and PerconaDB administrators need to check their database versions, as attackers can chain two critical vulnerabilities and completely take over the server hosting the database.

The two critical vulnerabilities, which can lead to arbitrary code execution, root privilege escalation, and server compromise, affect MySQL and forks like Percona Server, Percona XtraDB Cluster, and MariaDB, according to security researcher Dawid Golunski, who provided details of the vulnerability on LegalHackers.

http://www.infoworld.com/article/3138455/security/admins-update-your-databases-to-avoid-the-mysql-bug.html


OVH vRack and 2nd interface/private network

$
0
0

Hello,

anyone using OVH's vRack? Any idea how to bring up private network interface on server as on Ubuntu 16.04 'grep |dmesg eth' gives me only one interface (eth0 renamed to ens3). Per OVH's documentation (which I am not sure is up to date) it's suggested to configure it as eth1 which of course does not work. So looking for tip from someone that actually has this in use.

A.

OpenVPN is also banned in Turkey.

$
0
0

OpenVPN is banned in Turkey. Internet users can not connect to their OpenVPN servers. How can we overcome this law?

HOSTUS deduct a commission

$
0
0

Previously, I've made withdrawals of commission fees very smoothly. However, after this withdrawals, the unpaid amount of $ 70 had been changed to $ 19. I issued a ticket asking for the reason. The following is the reply of HOSTUS. I'm not sure if this is a new rule applicable to all the customer, if not, that's not fair. Expose the behavior of HOSTAS.

mxroute.com vs mailcheap.co

$
0
0

Hi all,

I'm looking to outsource email service and i'm trying to decide between mxroute.com or mailcheap.co

So I just wanted for anyone using any of this services to share their experience and if possible the main adjantages you think of each one of the services has over the other.

For me quality and reliability are the most important factors. Price comes last on my priorities.

Thanks

UUCP email?

$
0
0

I was perusing the website of one of my old shell providers

https://www.eskimo.com/services/internet-access/uucp/

$264/year for UUCP email with MX forwarding

I realize that the world doesn't upgrade on the same day - but what legacy application or system out there would still use this? Maybe somebody doing bare metal in their cabin? Maybe government agencies like wilderness fire dep'ts or fisheries regulators that haven't adopted the Cloud?

It's fascinating to come across providers like this who are still making legacy stuff happen. Good on ya guys.

Viewing all 22293 articles
Browse latest View live