This is the discussion thread for ClearOS 7.1 Community Final, ClearOS 7.1 Business RC1, and ClearOS 7.1 Home RC1 which was released on 8 October 2015. If you have downloaded a copy of this release and have bugs, issues, or feedback, please feel free to report it here in the forum thread.
To review the Community Final release notes, click here.
This release includes the Release Candidate versions of ClearOS Home and ClearOS Business. Here is a version comparison guide.
Click one of the following to review the release notes for:
Business
Home
To download your copy, click here.
Users of Community edition will have a 30-day window to upgrade to Home or Business version. You can install and run Samba Directory (BETA) now as your directory server. There is also a powerful events system which allows you to get notified if your box does things that match a certain criteria. Many apps now exist in the marketplace that have not been there previously.
To review the Community Final release notes, click here.
This release includes the Release Candidate versions of ClearOS Home and ClearOS Business. Here is a version comparison guide.
Click one of the following to review the release notes for:
Business
Home
To download your copy, click here.
Users of Community edition will have a 30-day window to upgrade to Home or Business version. You can install and run Samba Directory (BETA) now as your directory server. There is also a powerful events system which allows you to get notified if your box does things that match a certain criteria. Many apps now exist in the marketplace that have not been there previously.
Share this post:
Responses (70)
-
Accepted Answer
Hi all,
Thank you for all the feedback! To avoid the confusion of following multiple topics in one thread, we have set this forum thread to read-only. We encourage you to start a new topic for any feedback, comment or suggestion. -
Accepted Answer
Hi Peter
"The old tracker item was resolved. This is a new and very similar issue - I added the tracker item here. In your particular case, you should not be seeing the error on the iptables command using "-s" (the one with "-d" will always be there though - that's what the new tracker item is about). In some fairly rare circumstances, you might see the "-s" error. Are you seeing these "-s" errors all the time?[/quote]"
The matter appears to have resolved itself (the system has not been restarted) but certainly the drop failed errors have ceased. Sorry I cannot be more specific but if you want any particular command to be run, please let me know.
Correction!! I have just noticed that the errors have started again, as below.....
2015/11/18, 18:38:44, -, 2, snortsam, Removing 86400 sec complete block for host 92.27.206.161.
2015/11/18, 18:38:44, -, 1, iptables, Info: UnBlocking ip 92.27.206.161
2015/11/18, 18:38:44, -, 1, iptables, Error: Command2 /sbin/iptables -D INPUT -i eth0 -s 92.27.206.161 -j DROP Failed
2015/11/18, 18:38:44, -, 1, iptables, Error: Command2 /sbin/iptables -D INPUT -i eth0 -d 92.27.206.161 -j DROP Failed
Thanks -
Accepted Answer
Hi Chris,
Chris wrote:
Firewall - Drop / Failed Issue Again!
I am aware that this issue has been around for sometime and was possibly sorted under bug tracker: https://tracker.clearos.com/view.php?id=20
However I am running a clean install 7.1 with Home Essentials and the problem has returned:
2015/11/13, 11:09:39, -, 2, snortsam, Removing 86400 sec complete block for host 175.196.231.206.
2015/11/13, 11:09:39, -, 1, iptables, Info: UnBlocking ip 175.196.231.206
2015/11/13, 11:09:39, -, 1, iptables, Error: Command2 /sbin/iptables -D INPUT -i eth0 -s 175.196.231.206 -j DROP Failed
2015/11/13, 11:09:39, -, 1, iptables, Error: Command2 /sbin/iptables -D INPUT -i eth0 -d 175.196.231.206 -j DROP Failed
My understanding is that the IP concerned is actually being removed but the error is still shown.
Am I correct not to be worried, or are the blocked IPs staying blocked for ever?
The old tracker item was resolved. This is a new and very similar issue - I added the tracker item here. In your particular case, you should not be seeing the error on the iptables command using "-s" (the one with "-d" will always be there though - that's what the new tracker item is about). In some fairly rare circumstances, you might see the "-s" error. Are you seeing these "-s" errors all the time? -
Accepted Answer
Firewall - Drop / Failed Issue Again!
I am aware that this issue has been around for sometime and was possibly sorted under bug tracker: https://tracker.clearos.com/view.php?id=20
However I am running a clean install 7.1 with Home Essentials and the problem has returned:
2015/11/13, 11:09:39, -, 2, snortsam, Removing 86400 sec complete block for host 175.196.231.206.
2015/11/13, 11:09:39, -, 1, iptables, Info: UnBlocking ip 175.196.231.206
2015/11/13, 11:09:39, -, 1, iptables, Error: Command2 /sbin/iptables -D INPUT -i eth0 -s 175.196.231.206 -j DROP Failed
2015/11/13, 11:09:39, -, 1, iptables, Error: Command2 /sbin/iptables -D INPUT -i eth0 -d 175.196.231.206 -j DROP Failed
My understanding is that the IP concerned is actually being removed but the error is still shown.
Am I correct not to be worried, or are the blocked IPs staying blocked for ever?
Thanks....... -
Accepted Answer
-
Accepted Answer
Thanks Ben!
You are right, the Widget is much better now.
For 2, 3 or 4 columns it is PERFECT. I will use 2 column which I think is best.
I could stop my post here, but being a notorious tester I could not leave out one itching little comment (sorry...):
For 1 column, it is better than it was... but not 100% (and this is the same for the list in the update menu too by the way) : When sorted on Date/Time you do NOT get a correct chronological order since it uses the first letter in the month for sorting... In order words, the order now is Apr, Aug, Dec, Feb, Jan, Jul, Jun, Mar, May, Nov, Oct, Sep... I know, I am a pain...
/Fred -
Accepted Answer
My widget looks like this now (see attachment), and it will most likely EXACTLY like this in 2017 too, unless I have managed to install an app that comes earlier in the alphabet than "app-antivirus". At least that is my understanding.
It won't after you run:
yum --enablerepo=clearos-updates-testing upgrade app-software-updates app-dashboard
The dashboard now passes the number of columns (eg. width) the widget is contained in to the controller. With that info, we can modify the behaviour/layout of the table. Go ahead try putting the software updates dashboard widget in a 1 column, 2 column or 3/4 column row layout, and you'll see what I mean.
B -
Accepted Answer
Nick Howitt wrote:
I've just fired up my VM and in postfix, master.cf still has the same issue as before. The line:
allows SMTPS irrespective of the ClearOS setting as the -o flags override the main.cf settings.smtps inet n - n - - smtpd -o smtpd_tls_wrappermode=yes -o smtpd_sasl_auth_enable=yes
Doh, that wasn't in the roadmap target. I just cloned the issue and added it to the "7.1.0 Updates" stream -- that will give it a higher priority. -
Accepted Answer
-
Accepted Answer
Ben,
I hear you, and yes I agree that all information is found under the software update menu. I will also, after this post, not argue for it anymore, but: No, I do not think this was a decent trade off since it gives false info on the dashboard... But sure, nothing to make a fuzz about either.
Anyone can choose to not to enable the Widget, and this is always an option... But those who do enable it will get a more or less static list of apps on their dashboard that does NOT change over time even though the header says "Recent Software Activity". In addition they will also get a "View" button which works as a shortcut, which is if you ask me the only useful with the widget at the moment.
My widget looks like this now (see attachment), and it will most likely EXACTLY like this in 2017 too, unless I have managed to install an app that comes earlier in the alphabet than "app-antivirus". At least that is my understanding.
Finally, I am a very happy user of ClearOS. So do not get me wrong when I am pushing for perfection
/Fred -
Accepted Answer
Fredrick,
Thanks for your feedback...
Know this is just the default on the Dashboard page...any app can register one or more dashboard widgets...For the software updates, it was to just offer a quick glimpse...the "View" button on that widget takes you directly to the software updates Webconfig page (see ss) where more information is displayed, including the ability to sort by date. I think it's a decent tradeoff.
B -
Accepted Answer
Ben,
I see... Then I would put my vote in the following prioritized order:
1. Do not hide any column at all. If the Recent Software Widget is used on the dashbord in a position that has "full width", then it actually has MORE space than on its own page where all data is shown.
2. If the designer still think one column needs to be hidden: Hide the "Installed/Erased/Updated" info instead, and show Date/Time. Default sorting should also be newest on top. I cannot possible think of anyone wanting to see anything else on the Dashboard which I guess should give you an instant view of what is going on.
/Fred -
Accepted Answer
-
Accepted Answer
-
Accepted Answer
Sorry for the spamming...
Just realized that if I click on one of the "recent installed packages" in the dashboard widget, it expands and show date/time. However it is not possible to sort the list according to the date/time. Is this a Internet Explorer/Edge browser thing? Maybe it works better using Firefox? -
Accepted Answer
Nick/Peter,
Sorry that I did not reply earlier (too much to do right now). Hopefully you can read this input (done from IE8 browser which cannot use the new ClearOS web-site very well)...
I have not entered any Trusted Networks. However, I am using SSL for SMTP, and I am pretty sure the port is 465. So Nick's finding about port 465 being forwarded seems to be the reason.
For CUPS, see my separate post under the File/Printer sharing also for more info.
/Fred -
Accepted Answer
Peter Baldwin wrote:
- SMTP server works without Authentication: Even when I in WebConfig enable authentication for the SMTP server, my email client on my Win10 pc on the LAN can send emails without password via the SMTP server... Sure, I might have done something wrong, but I have only used the webconfig interface which I think should be "bullet proof" (read: possible to use for those who do not understand everything, just like me)
That's odd - mail relays are disabled. Do you have any IPs or networks defined in the "Trusted Networks" list in the SMTP Server app?
Unless something has changed, mail relays are always allowed on port 465 due to the set up of master.cf. I did post a bug and thread on this a while back. There has been no movement on the bug so I doubt it has been fixed. It is also inconsistent with modern standards because if you are going to allow secure authenticated relaying by default, I would have expected it to be on port 587 and not port 465. Anyway, with authentication turned off in the webconfig I am not convinced any secure authenticated relaying should be allowed other should be a separate setting for it.
Having said all that I did ask Fredrik if he had set up a trusted network and did not get any feedback -
Accepted Answer
Hi Fredrik,
Thanks for the feedback -- invaluable.
1. CUPS does not work. The installation seems to be OK, but I have yet to succeed to access the cups config web pages. This worked in ClearOS 6 after some tweaks, but not in 7. Anyone got any progress? I am beginning to wonder if the problems I see with authentication with Mail (see below) has anything to do with it.
It's just one data point, but CUPS worked on my home system with an old HP LaserJet 1012. I'll give it another sanity check using a fresh install.
- There are 2 (!) Mail Setting apps in the Market Place with the same name. Pretty confusing if you ask me.
Added the issue to the tracker.
- SMTP server works without Authentication: Even when I in WebConfig enable authentication for the SMTP server, my email client on my Win10 pc on the LAN can send emails without password via the SMTP server... Sure, I might have done something wrong, but I have only used the webconfig interface which I think should be "bullet proof" (read: possible to use for those who do not understand everything, just like me)
That's odd - mail relays are disabled. Do you have any IPs or networks defined in the "Trusted Networks" list in the SMTP Server app?
- If I configure a password in my email client for SMTP, it can send email too (Good!). However, then I can see on the Dashboard "Event notifications" that I get SMTP Authentication Error every time my email client contact the SMTP server. Why? The password is correct and the username is defined in my ClearOS server and so is the email address...
- POP-password is required for the email client to pick up email (Good!). However, whenever the email client contacts the POP server and check if there are any emails to fetch, I also get a POP Authentication Error in the Dashboard Event Notifications. Since I have my email client to check for incomming mail every minute I pretty soon get several hundreds of these error messages turning the event notification into a pretty useless feature.
There's an open issue on this topic - tracker #5661. Basically, we see systems similar to yours where too many events are getting triggered. I have added your descriptions to the existing tracker item.
I'll get to your other comments tomorrow -- ran out of time. -
Accepted Answer
-
Accepted Answer
-
Accepted Answer
Robert wrote:
Hi,
I have a small question: When I have a Clearos 6 Pro subscription can I change to Clearos 7 Business straight or do I need to pay again?
Thanks.
Best
Robert
ClearOS 7 Business is released, very cool. This brings me back to my question concerning the transfer from ClearOS 6 Pro concerning the subscription. -
Accepted Answer
@Fredrik,
Could your mail authentication message issues relate to this thread? You can try the fix and revert if it does nothing. -
Accepted Answer
Hi,
I how now been using ClearOS7 Community for a few days in my home server and I have noticed a few things that are not perfect:
1. CUPS does not work. The installation seems to be OK, but I have yet to succeed to access the cups config web pages. This worked in ClearOS 6 after some tweaks, but not in 7. Anyone got any progress? I am beginning to wonder if the problems I see with authentication with Mail (see below) has anything to do with it.
2. Mail:
- There are 2 (!) Mail Setting apps in the Market Place with the same name. Pretty confusing if you ask me.
- SMTP server works without Authentication: Even when I in WebConfig enable authentication for the SMTP server, my email client on my Win10 pc on the LAN can send emails without password via the SMTP server... Sure, I might have done something wrong, but I have only used the webconfig interface which I think should be "bullet proof" (read: possible to use for those who do not understand everything, just like me)
- If I configure a password in my email client for SMTP, it can send email too (Good!). However, then I can see on the Dashboard "Event notifications" that I get SMTP Authentication Error every time my email client contact the SMTP server. Why? The password is correct and the username is defined in my ClearOS server and so is the email address...
- POP-password is required for the email client to pick up email (Good!). However, whenever the email client contacts the POP server and check if there are any emails to fetch, I also get a POP Authentication Error in the Dashboard Event Notifications. Since I have my email client to check for incomming mail every minute I pretty soon get several hundreds of these error messages turning the event notification into a pretty useless feature.
3. The "Recent Software Update" Widget that one can have on the Dashboard is not doing its job correctly. Since it is called "Recent" I would expect it to list to be sorted by installation time. It is not. It is sorted in alphabetical order, without any possibility to view or sort it by time/date since that field is missing.
4. The Widgets with pie-charts for CPU and Memory often does not work, but sometimes they do... When not working it says "function item (){[native code]} " all over them instead
5. Not really a fault, but can be a bit confusing: In the Antimalware File Scanner web page you do not find any "edit config" button like in many other menus. Instead, you should click on the small wheel up in the title bar... It took me a while before I realized that.
6. The web-interface requires BIG screens. Could there be an option to have a more condensed font/layout ? I am really missing the ClearOS6 style.
/Fred -
Accepted Answer
-
Accepted Answer
Hi
I have a ClearOS 6.6.0 community will it be possibel at some time to upgrade ClarOS 6 to ClearOS 7
I can see in roadmap for update 7.1 it will be possibel to import config from ClearOS 6
but if it will be possible to upgrade from ClearOS 6 community to ClearOS 7 comminty in the near future
I will wait to upgrade, instead of a new installation
my ClaearOS 6.6 is running very good.
Maybe the best way to go is a new installation?
CB -
Accepted Answer
-
Accepted Answer
-
Accepted Answer
-
Accepted Answer
Peter Baldwin wrote:Chrony should not be running by default. Bug report and fix is on the way. Thanks Mick!
Looks like the packages are in:
Oct 15 04:38:31 Updated: 1:app-ntp-core-2.1.25-1.v7.noarch
Oct 15 04:38:31 Updated: 1:app-ntp-2.1.25-1.v7.noarch
Did they fix the chronyd issue? Thanks. -
Accepted Answer
sbn wrote:
I was not able to install BackupPC, and it seems be same problem that has existed since at least RC - "Error, no packages selected for install". Are the necessary repos enabled that should be in order to install? I can't believe I am the only one unable to install, as this has occurred on several different installations in VMs over past several weeks.
BackupPC was still in the "contribs-testing" repo and not officially released. The package was just moved to the "contribs" repo, so it should be installable from Marketplace in the next few hours. -
Accepted Answer
-
Accepted Answer
BackupPC does not seem to be released yet for some reason, that is why you get the "not so informative" error. The package still remains in the contribs-testing repo.
If you want to try BackupPC now: Temporarily enable the contribs-testing repo by using the Software Repository app in Marketplace, or by installing BackupPC from command line:
yum install --enablerepo=clearos-contribs-testing app-backuppc
I tried BackupPC a couple of weeks ago, and it seemed to work when I did a short test (small backup and restore test).
/Fred -
Accepted Answer
BackupPC is definitely broken at the install from the marketplace. You can see it start the install and then halfway through it starts to back it out and gives an error about files missing.
Zarafa webaccess installs but is inaccessible for any user. Sometimes it lets you in to a white blank page other times it just hangs for ever at the login.
Ive installed 7.1 Community final 3 times now and its the same each time
I have to go through the market place 4 or 5 times installing apps. Apps are selected and it shows them installing. I go back in to the market place and its showing that some apps selected were not installed. Thats how I found the backupPC not installing. -
Accepted Answer
I was not able to install BackupPC, and it seems be same problem that has existed since at least RC - "Error, no packages selected for install". Are the necessary repos enabled that should be in order to install? I can't believe I am the only one unable to install, as this has occurred on several different installations in VMs over past several weeks. -
Accepted Answer
Mick Russom wrote:
Seems ntpd and chrony / chronyd are competing for the same port (123)
Oct 13 02:02:01 system ntpd[19190]: ntpd 4.2.6p5@1.2349-o Tue Jun 23 23:48:52 UTC 2015 (1)
Oct 13 02:02:01 system ntpd[19190]: proto: precision = 0.084 usec
Oct 13 02:02:01 system ntpd[19190]: 0.0.0.0 c01d 0d kern kernel time sync enabled
Oct 13 02:02:01 system ntpd[19190]: unable to bind to wildcard address 0.0.0.0 - another process may be running - EXITING
Chrony should not be running by default. Bug report and fix is on the way. Thanks Mick! -
Accepted Answer
Mick Russom wrote:
Red Hat nor CentOS 7 offers 7.x in 32-bit anymore. Its now x86_64 only, and it would probably be a huge effort for Clear to make 32-bit work well. Everything core2 and onwards is x86_64 so the last hardware that was made 32-bit only was about 2007.
Yup, confirmed. Sorry, no 32-bit support. -
Accepted Answer
Seems ntpd and chrony / chronyd are competing for the same port (123)
Oct 13 02:02:01 system ntpd[19190]: ntpd 4.2.6p5@1.2349-o Tue Jun 23 23:48:52 UTC 2015 (1)
Oct 13 02:02:01 system ntpd[19190]: proto: precision = 0.084 usec
Oct 13 02:02:01 system ntpd[19190]: 0.0.0.0 c01d 0d kern kernel time sync enabled
Oct 13 02:02:01 system ntpd[19190]: unable to bind to wildcard address 0.0.0.0 - another process may be running - EXITING
This seems to happen on restart or at some interval, however, If I click start in the NTP server section of the GUI, this happens:
(Click on NTP server in GUI)
Oct 13 09:46:34 system webconfig: Redirecting to /bin/systemctl start ntpd.service
Oct 13 09:46:34 system systemd: Stopping NTP client/server...
Oct 13 09:46:34 system chronyd[506]: chronyd exiting
Oct 13 09:46:34 system systemd: Stopped NTP client/server.
Oct 13 09:46:34 system systemd: Starting Network Time Service...
Oct 13 09:46:34 system ntpd[14148]: ntpd 4.2.6p5@1.2349-o Tue Jun 23 23:48:52 UTC 2015 (1)
Oct 13 09:46:34 system ntpd[14149]: proto: precision = 0.084 usec
Oct 13 09:46:34 system ntpd[14149]: 0.0.0.0 c01d 0d kern kernel time sync enabled
Oct 13 09:46:34 system systemd: Started Network Time Service.
Oct 13 09:46:34 system ntpd[14149]: Listen and drop on 0 v4wildcard 0.0.0.0 UDP 123
Oct 13 09:46:34 system ntpd[14149]: Listen and drop on 1 v6wildcard :: UDP 123
Oct 13 09:46:34 system ntpd[14149]: Listen normally on 2 lo 127.0.0.1 UDP 123
Oct 13 09:46:34 system ntpd[14149]: Listen normally on 3 eth0 x.x.x.x UDP 123
Oct 13 09:46:34 system ntpd[14149]: Listen normally on 4 eth1 192.168.0.1 UDP 123
Oct 13 09:46:34 system ntpd[14149]: Listen normally on 5 eth1 x::x UDP 123
Oct 13 09:46:34 system ntpd[14149]: Listen normally on 6 eth0 x::x UDP 123
Oct 13 09:46:34 system ntpd[14149]: Listen normally on 7 lo ::1 UDP 123
Oct 13 09:46:34 system ntpd[14149]: Listening on routing socket on fd #24 for interface updates
Oct 13 09:46:34 system systemd: Reloading.
Oct 13 09:46:34 system systemd: [/usr/lib/systemd/system/dm-event.socket:10] Unknown lvalue 'RemoveOnStop' in section 'Socket'
Oct 13 09:46:34 system systemd: [/usr/lib/systemd/system/lvm2-lvmetad.socket:9] Unknown lvalue 'RemoveOnStop' in section 'Socket'
Oct 13 09:46:34 system ntpd[14149]: 0.0.0.0 c016 06 restart
Oct 13 09:46:34 system ntpd[14149]: 0.0.0.0 c012 02 freq_set kernel 0.000 PPM
Oct 13 09:46:34 system ntpd[14149]: 0.0.0.0 c011 01 freq_not_set
Oct 13 09:46:35 system ntpd[14149]: 0.0.0.0 c614 04 freq_mode
So it looks like on restart chronyd wins, but if I start ntp in the GUI, then chronyd is stopped and ntpd is started. -
Accepted Answer
ratooren wrote:
Hello. I want to install the new clearos 7 community version on a 32 bits computer. However i cant find if this new version is also suitable for this kind of computer. Can you elaborate?
Thans, Ron
Red Hat nor CentOS 7 offers 7.x in 32-bit anymore. Its now x86_64 only, and it would probably be a huge effort for Clear to make 32-bit work well. Everything core2 and onwards is x86_64 so the last hardware that was made 32-bit only was about 2007. -
Accepted Answer
Peter Baldwin wrote: That's not supported yet and I'm a bit surprised that the app even allowed you to do it! It's something that we're working on.
I would consider enabling a check for 6.x config files being used in a restore operation on 7.1. 7.1 did take the 6.x config and kind of worked. Given the errors I was seeing, I decided to rebuild by hand.
Sorry, the discussion is currently locked. You will not be able to post a reply at the moment.