summaryrefslogtreecommitdiff
path: root/doc/george/changelog
blob: 12586a90ee53e9e1ae16457f4506bb24893358b6 (plain)
  1. ******************************************************************************
  2. *                                                                            *
  3. * george system log *
  4. * *
  5. ******************************************************************************
  6. * Please add new entries in reverse chronological order whenever you make *
  7. * changes to this system (first command at top, last at bottom) *
  8. ******************************************************************************
  9. 2009-10-26 - dkg
  10. * upgrade nginx in response to DSA-1920-1
  11. 2009-09-14 - dkg
  12. * aptitude update && aptitude full-upgrade (bunch of lenny
  13. updates, plus ikiwiki security upgrade)
  14. 2009-04-21 - jrollins
  15. * apt-get update && dist-upgrade (a bunch of stuff (monkeysphere,
  16. screen, gnupg, dash, onak, git-core...)
  17. * extended host key by 3 months
  18. 2009-04-21 - micah
  19. * aptitude update && aptitude full-upgrade (git-core DSA)
  20. 2009-04-12 - dkg
  21. * aptitude update && aptitude full-upgrade
  22. * (checked and found that monkeysphere version 0.24-1 is already
  23. installed; don't know how that happened, coulda been me, just
  24. sloppy about not noting it in the changelog)
  25. * extended host key by 4 months
  26. 2009-02-22 - jrollins
  27. * fixed /etc/crontab line for update-users (was trying to run
  28. monkeysphere-server instead of monkeysphere-authentication).
  29. 2009-02-21 - dkg
  30. * upgraded to the latest versions of packages for lenny.
  31. * upgraded george to monkeysphere 0.23.1. the transition upgrade
  32. failed due to the way that gpg exports self-signatures secret
  33. keys; it only exports the first self-sig for each user id, even if
  34. that one is expired. Then any subsequent import fails, even if
  35. the target import keyring knows about some valid self-signatures.
  36. * i man-handled the upgrade into place so that george doesn't just
  37. fail on us, but this is a pretty major bug in the transition process.
  38. 2009-01-31 - jrollins
  39. * applied diff represented in commit
  40. f75a5747a8b99e04c02c475791c476f1fbd2b674 to change log level for
  41. unacceptable untranslatable keys.
  42. 2009-01-30 - micah
  43. * Replaced nullmailer with postfix, nullmailer doesn't handle aliases
  44. and insisted either on constantly respooling mail when there was no
  45. where to go.
  46. 2009-01-24 - micah
  47. * Configured /etc/aliases to have root go to mjgoins, micah, dkg, jrollins
  48. * Configured /etc/nullmailer/remotes to have mail.riseup.net so remote delivery will work
  49. * Removed the hundreds of queued cron emails that had resulted in 30gig of mail.err logs
  50. * Rotated the giant logs out
  51. 2009-01-11 - dkg
  52. * extended the expiration date for george's key three months into
  53. the future.
  54. * aptitude update && aptitude full-upgrade (brings monkeysphere to
  55. 0.22-1)
  56. 2008-10-29 - dkg
  57. * aptitude update && aptitude full-upgrade
  58. * brought monkeysphere up to 0.19-1
  59. * removed tasksel
  60. 2008-10-25 - dkg
  61. * aptitude update && aptitude full-upgrade
  62. * brought monkeysphere up to 0.16-1
  63. * repointed keyserver usage to pool.sks-keyservers.net
  64. 2008-09-04 - dkg
  65. * added two mime-type declarations in /etc/mathopd.conf so .debs
  66. and .tar.gz files come out reasonably; restarted mathopd for the
  67. re-read.
  68. * built monkeyshell (from src/monkeyshell) and installed as
  69. /usr/local/bin/monkeyshell, added to /etc/shells.
  70. * created new account "monkey" which has monkeyshell as the shell
  71. for non-privileged test access. To let someone test this out,
  72. make sure they're well-connected to george's web of trust, and
  73. then add their User ID to
  74. ~monkey/.monkeysphere/authorized_user_ids
  75. * more mime types for mathopd: image/png image/x-icon
  76. 2008-09-03 - micah
  77. * migrated /home/*/.config/monkeysphere/authorized_user_ids to new
  78. agreed location: /home/*/.monkeysphere/authorized_user_ids and created
  79. a symlink in the original location for transition purposes. Also,
  80. did /root's as well. I used this hackish mechanism:
  81. $ for user in `find . -wholename './*/.config/monkeysphere/authorized_user_ids' \
  82. | cut -d/ -f2`; do mkdir -v ${user}/.monkeysphere; chown ${user}:${user} \
  83. ${user}/.monkeysphere; mv -v ${user}/.config/monkeysphere/authorized_user_ids \
  84. ${user}/.monkeysphere; ln -s /home/${user}/.monkeysphere/authorized_user_ids \
  85. ${user}/.config/monkeysphere/authorized_user_ids; done
  86. - dkg
  87. * added the monkeysphere archive repository signing key
  88. * aptitude update && aptitude full-upgrade (brings in monkeysphere 0.13-1)
  89. * cleaned up /etc/skel to reflect correct location of the
  90. monkeysphere config directory.
  91. * micah moved all the existing config stuff over, and left
  92. symlinks so people aren't disoriented.
  93. 2008-09-01 - dkg
  94. * set up http://dkg.monkeysphere.info so that i could play around
  95. with ikiwiki updates
  96. * moved apt repository over to http://archive.monkeysphere.info/
  97. * aptitude update && aptitude dist-upgrade
  98. * canonicalizing hostname for normal web access to
  99. http://web.monkeysphere.info
  100. 2008-08-26 - dkg
  101. * aptitude update && aptitude full-upgrade
  102. * added account 'daniel' for Dan Scott, and set him up with a way
  103. to publish to http://daniel.monkeysphere.info
  104. 2008-08-20 - dkg
  105. * aptitude update && aptitude dist-upgrade: this includes
  106. monkeysphere 0.11-1 and OpenSSH 5.1p1-2
  107. 2008-08-18 - dkg
  108. * moved monkeysphere apt repo entry to
  109. /etc/apt/sources.list.d/monkeysphere.list
  110. * aptitude update && aptitude full-upgrade (including monkeysphere
  111. 0.9-1)
  112. * switched george's monkeysphere-server preferred keyserver to
  113. monkeysphere.info for the moment. Both pgp.mit.edu and
  114. subkeys.pgp.net are sluggish right now :/
  115. 2008-08-16 - jrollins
  116. * removed stale branches from jrollins from the master repo
  117. * aptitude update && aptitude full-upgrade
  118. * restarted services to clear up dependencies on old libraries
  119. 2008-08-13 - dkg
  120. * aptitude update && aptitude full-upgrade
  121. * restarted services to clear up dependencies on old libraries
  122. 2008-08-07 - dkg
  123. * aptitude update && aptitude dist-upgrade
  124. * removed debian's experimental from the sources.list
  125. * removed experimental stanza from /etc/apt/preferences (now the
  126. monkeysphere packages should upgrade automatically)
  127. * upgraded to monkeysphere 0.7-1
  128. * installed runit
  129. * set up a public git daemon service to serve git repos from
  130. george, using runit. (root-served repos are served from
  131. /srv/git, but ~USER/public_git is supported as well, if anyone
  132. wants to use that for publication).
  133. 2008-08-03 - dkg
  134. * aptitude update && aptitude dist-upgrade
  135. * installed iproute
  136. * added my User ID to ~webmaster/.config/monkeysphere/authorized_user_ids
  137. 2008-08-02 - jrollins
  138. * aptitude update && aptitude dist-upgrade
  139. * restarted cron, nullmailer, sshd
  140. * aptitude install git-core ikiwiki
  141. * adduser webmaster
  142. * su - webmaster
  143. * created a bare repo at ~webmaster/monkeysphere.git. I then
  144. pushed into this repo from my working directory on servo to verify
  145. that it was accepting.
  146. * cloned above repo at ~webmaster/monkeysphere
  147. * created ~webmaster/ikiwiki.setup
  148. * ikiwiki --setup ikiwiki.setup
  149. * linked post-receive to new post-commit hook in monkeysphere.git
  150. * changed default keyserver to be pgp.mit.edu (subkeys.pgp.net
  151. blows)
  152. * updated /etc/skel with ssh and monkeysphere stuff
  153. * made authorzied_user_ids file for webmaster and ran
  154. "monkeysphere-server u webmaster".
  155. 2008-06-23 - dkg
  156. * added monkeysphere apt repository to /etc/apt/sources.list
  157. * added dkg's key to apt's list of trusted keys.
  158. * ran aptitude dist-upgrade
  159. * upgraded to monkeysphere 0.2-1
  160. * moved authorized_user_ids files into users' home directories.
  161. * installed lockfile-progs
  162. 2008-06-22 - dkg
  163. * installed screen (mjgoins and i were collaborating)
  164. 2008-06-21 - micah
  165. * Restored /etc/init.d/ssh to original package state and changed
  166. /etc/default/ssh to have 'unset SSHD_OOM_ADJUST' instead.
  167. 2008-06-20 - micah
  168. * Commented out the 'export SSHD_OOM_ADJUST=-17' from the
  169. /etc/init.d/ssh initscript, and the 'SSHD_OOM_ADJUST=-17' from
  170. /etc/default/ssh in order to make this error go away:
  171. "error writing /proc/self/oom_adj: Operation not permitted"
  172. (c.f. Debian #487325)
  173. 2008-06-20 - dkg
  174. * touched /etc/environment to get rid of some spurious auth.log
  175. entries.
  176. * turned up sshd's LogLevel from INFO to DEBUG
  177. 2008-06-19 - dkg
  178. * installed rsync (for maintaining a public apt repo)
  179. * configured mathopd to listen on port 80, serving /srv/www as /
  180. and /srv/apt as /debian. We've got nothing in /srv/www at the
  181. moment, though.
  182. * installed lsof and psmisc as sysadmin utilities. sorry for the
  183. bloat!
  184. * installed strace to try to figure out why onak is segfaulting.
  185. 2008-06-19 - dkg
  186. * removed etch sources, switched "testing" to "lenny", added
  187. lenny/updates, removed all contrib and non-free.
  188. * removed testing pin in /etc/apt/preferences
  189. * ran the upgrade
  190. * reset emacs22 to emacs22-nox (avoiding dependencies)
  191. * removed sysklog and klogd because of errors restarting klogd.
  192. Installed syslog-ng in their stead, which still gives errors
  193. related to /proc/kmsg unreadability, but the install completes :/
  194. * added experimental
  195. * juggled pinning: experimental: 1, unstable: 2
  196. * added mathopd onak, tweaked /etc/mathopd.conf and /etc/onak.conf
  197. * installed monkeysphere v0.1-1, changed host key, published
  198. them via the local keyserver (see host-key-publication)
  199. * added local unprivileged user accounts for everyone listed in
  200. /usr/share/doc/monkeysphere/copyright
  201. * configured authorized_user_ids for every user account based on
  202. my best guess at their OpenPGP User ID (see
  203. user-id-configuration).
  204. * set up a cronjob (in /etc/crontab) to run "monkeysphere-server
  205. update-users" at 26 minutes past the hour.
  206. 2008-06-18 - jrollins
  207. * installed less, emacs;
  208. * aptitude update && aptitude dist-upgrade
  209. 2008-06-18 - micah
  210. * debootstrap'd debian etch install
  211. * installed /etc/apt/sources.list with local proxy sources for etch,
  212. testing, unstable, backports and volatile
  213. * configured /etc/apt/preferences and apt.conf.d/local-conf to
  214. pin etch, but make testing, sid and backports available
  215. * added backports.org apt-key
  216. * installed openssh-server and openssh-client packages
  217. * added dkg, jrollins, mjgoins ssh public_keys to /root/.ssh/authorized_keys