Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 459222 - rsync mirror whitelist for my and radhermit's employer
Summary: rsync mirror whitelist for my and radhermit's employer
Status: RESOLVED FIXED
Alias: None
Product: Gentoo Infrastructure
Classification: Unclassified
Component: Other (show other bugs)
Hardware: All Linux
: Normal normal (vote)
Assignee: Mirror Admins
URL:
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2013-02-26 01:38 UTC by Patrick McLean
Modified: 2016-12-13 03:59 UTC (History)
1 user (show)

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Patrick McLean gentoo-dev 2013-02-26 01:38:03 UTC
Please add 199.21.234.7 to the rsync mirror whitelist so our local rsync mirror won't be banned, we like to be able to make changes in gentoo-x86 and have other people be able to make use of those changes in a reasonable time.
Comment 1 Robin Johnson archtester Gentoo Infrastructure gentoo-dev Security 2013-02-26 03:26:06 UTC
I've whitelisted them after a discussion.
Also unlocking the bug.
Comment 2 Patrick McLean gentoo-dev 2016-12-12 05:31:00 UTC
The public IP has changed to 199.21.237.135, please update the whitelist.
Comment 3 Zac Medico gentoo-dev 2016-12-12 20:14:00 UTC
The result that we are seeing with a sync period of 30 minutes is access denied for all 3 servers in our list:

quetzal.gentoo.org: @ERROR: access denied to gentoo-portage from UNKNOWN (199.21.237.135)
starling.gentoo.org: @ERROR: access denied to gentoo-portage from UNKNOWN (199.21.237.135)
swan.gentoo.org: @ERROR: access denied to gentoo-portage from UNKNOWN (199.21.237.135)

If we increase the sync period to 2 hours, we are able to sync from starling and swan, but quetzal still consistently returns "@ERROR: access denied to gentoo-portage from UNKNOWN".
Comment 4 Robin Johnson archtester Gentoo Infrastructure gentoo-dev Security 2016-12-12 23:16:58 UTC
You were already on the access list for rsync1 (that's the whitelist I updated), why are you accessing the individual mirrors instead?

I added your IP to the other whitelist as well.
Comment 5 Zac Medico gentoo-dev 2016-12-13 03:59:12 UTC
Our script was using quetzal, starling, and swan when I took over maintenance. I've updated it to try rsync1.us first.