Skip Navigation

帖子
5
评论
102
加入于
9 mo. ago

Rocket Surgeon

  • Downgrade today!

  • Cool.

    Here. SSH key issues. There was a huge forum war.https://forum.proxmox.com/threads/ssh-keys-in-a-proxmox-cluster-resolving-replication-host-key-verification-failed-errors.138102/But its still a thing. That still needs to be fixed by a human. Today that's me.

    Regarding CEPH and corosync on the same network ... well I'm just getting started with that now. I do have them on different vlans, but its the same 10gb set of nics. I'm hoping if it gets really lousy, my netadmin can prioritize the corosync vlan. I'll burn that bridge when I come to it.


    EDIT ... The linked forum post above leads to the SSH key answer, but its convoluted.Here's what I put in my own wiki.

    Get the right key from each server.cat ~/.ssh/id_rsa.pub

    Make sure they match in here. Fix em if they don't./etc/pve/priv/authorized_keys

    There's a couple symlinks to fix too, but this should get it.

  • SSH key management in PVE is handled in a set of secondary files, while the original debian files are replaced with symlinks. Well, that's still debian. And in some circumstances the symlinks get b0rked or replaced with the original SSH files, the keys get out of sync, and one machine in the cluster can't talk to another. The really irritating thing about this is that the tools meant to fix it (pvecm updatecerts) don't work. I've got an elaborate set of procedures to gather the certs from the hosts and fix the files when it breaks, but it sux bad enough that I've got two clusters I'm putting off fixing.

    Corosync is the cluster. It's a shared file system that immediately replicates any changes to all members. That's essentially anything under /etc/pve/. Corosync is very sensitive. I believe they ask for 10ms lag or less between hosts, so it can't work over a WAN connection. Shit like VM restores or vmotion between hosts can flood it out. Looks fukin awful when it goes down. Your whole cluster goes kaput.

    All corosync does is push around this set of config files, so a dedicated NIC is overkill, but in busy environments, you might wind up resorting to that. You can put cororsync on its own network, but you obviously need a network for that. And you can establish throttles on various types of host file transfer activities, but that's a balancing act that I've only gotten right in our colos where we only have 1gb networks. I have my systems provisioned on a dedicated corosync vlan and also use a secondary IP on a different physical interface, but corosync is too dumb to fall back to the secondary if the primary is still "up", regardless of whether its actually communicating, so I get calls on my day off about "the cluster is down!!!1" when people restore backups.

  • I use PVE professionally. I could spent some time bitching about how it handles ssh keys and the fragile corosync cluster management. I could complain about the sloppy release cycle and the way they move fast and break shit. Or all the janky shit they've slapped together in PBS. I could go on.

    But I actually pay for a license for my homelab. And ya, it is THE thing at work now.

    I've often heard it said that Proxmox isn't a great option. But its the best one.If you do try it, don't bother asking questions here.Go to the source. https://forum.proxmox.com/

  • ok. i gave that about 10 minutes. weird as hell. mr bones shooting people was unexpected.

  • Yes, that's the thing. Even that graphic is starting to decay.I remember when it was legible. I wonder how many iterations of screen grabs it took to get that bad.

  • I've just discovered that you can't buy RCT3 on Steam anymore. Not that they were making much. I bought it for pennies a few years ago.

  • Patient Gamers @sh.itjust.works

    Mr. Bones Wild Ride

  • Hmm. I used to volunteer with Free Geek in Portland OR. It was essentially that, an e-disposal site and we made refurbs for community organizations. But they did have a store for sale to the public.

    I have so much computer junk. I got rid of most of it, but then I got a bunch more when we closed the company office. Got at least 10 monitors, 5 PCs, a mini, couple laptops ... and a storage shelf to put it on.

  • Buy? That's garbage. Look in garbage places. Used shops of any sort.I like the college junk store suggestion. I used to do that.

    You better watch it. You will shortly have a closet full of junk computer parts.

  • There's like 700 Cyberpunk mods. I looked through some last night. Surely there must be one that jailbreaks me past that. I haven't found it tho.

  • Hehe. Friend, you seem to know a lot about this imaginary tech. But you don't. My rules are just as good as yours. If I say Johnny can run on a trashcan, its just as true as your theory. And more fun.

  • There is literally an AI vending machine. How is that different from a fridge? And that being the case, how can you say it can't run this chip? Ya just can't. Because there's a huge plot hole there. Unsuspend your disbelief for a moment. Think about it. ... and think of the fun if we installed Johnny in that stupid talking gun.

  • That's what they want you to think ...

  • Well, no. But everything in the game is running a quantum processor. The taxis are some rogue AI ... that owes you favors? Weird. But any random trashcan has enough juice to run this stupid chip instead of sticking it in your head. What a terrible idea.

    Um ... there's two other random objects with AI. One is a gun that won't shut up, reminds me of Clippy from M$ Office. The other is a vending machine. There may be more, I haven't finished the game, due to my issue with not sticking known bad hardware into my cranium. But either of those could run Johnny.

  • I like car surfing, for the scenery.I also enjoy firing tethers to wreck other cars as we go along, for the entertainment.Or tow a few, that's fun too.

  • He's cool. I'd rather install him in a refrigerator or some shit. He can follow me around and serve me beer.

  • I won't do the main quest in Starfield. I don't want any special powers, and those Foundation guys are lame. I'm like level 58 and I've never found an artifact. I do enjoy killing people and stealing ships tho. Miner character, exclusively Cutter, Arc Welder, and Rivet Gun.

    I won't stick the chip in my head in Cyberpunk. Nope. I know its got a virus on it. Just seems like a really really bad idea. That leaves me stuck in the first part of the game, because you can't break out of it anymore since the patches. I might mod it someday. (Any mod suggestions are welcome, plz!)

  • Despite OP insisting otherwise, I'm gonna assume you are correct. I use a lot of flavors of linux for a lot of things, but I don't have it on a laptop (other than as an alt boot in case of a crash), so it seems logical to me that's why this joke went over my head.

  • Ask Lemmy @lemmy.world

    Is this a spoon or a spatchula?

  • Ask Lemmy @lemmy.world

    Anybody else block Lemmit.Online spambot?

  • Patient Gamers @sh.itjust.works

    I've started playing The Witcher. No, not the good one.

  • unix like operating system lovers @sh.itjust.works

    9front anyone? (aka Plan 9)

    9front.org /releases/2025/04/26/0/