Skip to content

Instantly share code, notes, and snippets.

#SOURCE DESTINATION POLICY LOGLEVEL BURST
wan all DROP
fw all ACCEPT
lan all ACCEPT
all all REJECT
@jsravn
jsravn / zones
Last active June 12, 2018 13:08
#ZONE TYPE OPTIONS IN_OPTIONS OUT_OPTIONS
fw firewall
wan ipv4
lan ipv4
modem ipv4
# The ddns-updates-style parameter controls whether or not the server will
# attempt to do a DNS update when a lease is confirmed. We default to the
# behavior of the version 2 packages ('none', since DHCP v2 didn't
# have support for DDNS.)
ddns-update-style none;
# option definitions common to all supported networks...
option domain-name "home";
option domain-search "home";
@jsravn
jsravn / unbound
Created June 12, 2018 13:21
/etc/default/unbound
# If set, the unbound daemon will be started and stopped by the init script.
UNBOUND_ENABLE=true
# Whether to automatically update the root trust anchor file.
ROOT_TRUST_ANCHOR_UPDATE=true
# File in which to store the root trust anchor.
ROOT_TRUST_ANCHOR_FILE=/var/lib/unbound/root.key
# If set, the unbound init script will provide unbound's listening
server:
interface: 0.0.0.0
access-control: 0.0.0.0/0 allow
prefetch: yes
prefetch-key: yes
# home zone
local-zone: "home." static
local-data: "hamster.home. 10800 IN A 192.168.1.1"
local-data: "mypc.home. 10800 IN A 192.168.1.3"
Unattended-Upgrade::Origins-Pattern {
// Archive or Suite based matching:
// Note that this will silently match a different release after
// migration to the specified archive (e.g. testing becomes the
// new stable).
"o=Debian,a=stable";
"o=Debian,a=stable-updates";
// "o=Debian,a=proposed-updates";
"origin=Debian,codename=${distro_codename},label=Debian-Security";
};
APT::Periodic::Update-Package-Lists "1";
APT::Periodic::Unattended-Upgrade "1";

Keybase proof

I hereby claim:

  • I am jsravn on github.
  • I am jsravn (https://keybase.io/jsravn) on keybase.
  • I have a public key ASD0Le81ZglHvb_skaNJre4quMZTJV6tf6ivJ8qo4HYYsgo

To claim this, I am signing this object:

```
2018-09-17T12:41:29.607Z [error] akka.actor.OneForOneStrategy [sourceThread=application-akka.actor.default-dispatcher-16, akkaTimestamp=12:41:29.602UTC, akkaSource=akka://application/user/KafkaBackoffConsumer1-item-ItemEvent/KafkaConsumerActor1-item-ItemEvent, sourceActorSystem=application] - The URI scheme, of the URI tcp://172.17.0.21:9200/auction-items/items/f8f3e1c0-ba76-11e8-b91b-b707047f710b/_update, must be equal (ignoring case) to 'http', 'https', 'ws', or 'wss'
java.lang.IllegalArgumentException: The URI scheme, of the URI tcp://172.17.0.21:9200/auction-items/items/f8f3e1c0-ba76-11e8-b91b-b707047f710b/_update, must be equal (ignoring case) to 'http', 'https', 'ws', or 'wss'
at play.shaded.ahc.org.asynchttpclient.util.HttpUtils.validateSupportedScheme(HttpUtils.java:39)
at play.shaded.ahc.org.asynchttpclient.RequestBuilderBase.computeUri(RequestBuilderBase.java:587)
at play.shaded.ahc.org.asynchttpclient.RequestBuilderBase.build(RequestBuilderBase.java:595)
at play.
Apr 09 13:36:58 thebest sway[483988]: [100 13:36:58.701720] No render frame received in 0.25 seconds, re-requesting at: 18970.642482
Apr 09 13:36:58 thebest sway[483988]: [100 13:36:58.761107] No render frame received in 0.25 seconds, re-requesting at: 18970.701873
Apr 09 13:36:59 thebest sway[35417]: 18:11:17.453 [backend/drm/backend.c:124] DRM fd paused
Apr 09 13:37:00 thebest sway[35417]: 18:11:18.149 [backend/drm/backend.c:91] DRM fd resumed
Apr 09 13:37:00 thebest sway[35417]: 18:11:18.149 [backend/drm/drm.c:1293] Scanning DRM connectors
Apr 09 13:37:00 thebest sway[35417]: 18:11:18.167 [backend/drm/drm.c:1125] Reallocating CRTCs
Apr 09 13:37:00 thebest sway[35417]: 18:11:18.167 [backend/drm/drm.c:1136] State before reallocation:
Apr 09 13:37:00 thebest sway[35417]: 18:11:18.167 [backend/drm/drm.c:1142] 'DP-1' crtc=0 state=3 desired_enabled=0
Apr 09 13:37:00 thebest sway[35417]: 18:11:18.167 [backend/drm/drm.c:1142] 'HDMI-A-1' crtc=-1 state=0 desired_enabled=0
Apr 09 13:37:00 thebest sway[35417]: 18: