Re: [CentOS-docs] Broadcom's BCM4311-, BCM4312-, BCM4321-, and BCM4322-based hardware install manual

2009-12-18 Thread Mathieu Baudier
Hi, this looks fine for me, thanks for your efforts! I don't have the laptop with the Broadcom card here but I'll test your procedure point by point in a few days when I'll upgrade the kernel there. Just one remark: I had to deactivate the 'network' service and activate the 'NetworkManager'

[CentOS-announce] CESA-2009:1671 Important CentOS 4 i386 kernel - security and bug fix update

2009-12-18 Thread Tru Huynh
CentOS Errata and Security Advisory CESA-2009:1671 kernel security update for CentOS 4 i386: https://rhn.redhat.com/errata/RHSA-2009-1671.html The following updated file has been uploaded and is currently syncing to the mirrors: i386: updates/i386/RPMS/kernel-2.6.9-89.0.18.EL.i586.rpm

[CentOS-announce] CESA-2009:1671 Important CentOS 4 x86_64 kernel - security and bug fix update

2009-12-18 Thread Tru Huynh
CentOS Errata and Security Advisory CESA-2009:1671 kernel security update for CentOS 4 x86_64: https://rhn.redhat.com/errata/RHSA-2009-1671.html The following updated file has been uploaded and is currently syncing to the mirrors: x86_64: updates/x86_64/RPMS/kernel-2.6.9-89.0.18.EL.x86_64.rpm

[CentOS-announce] CESA-2009:1673 Critical CentOS 4 i386 seamonkey - security update

2009-12-18 Thread Tru Huynh
CentOS Errata and Security Advisory CESA-2009:1673 seamonkey security update for CentOS 4 i386: https://rhn.redhat.com/errata/RHSA-2009-1673.html The following updated file has been uploaded and is currently syncing to the mirrors: i386: updates/i386/RPMS/seamonkey-1.0.9-51.el4.centos.i386.rpm

[CentOS-announce] CESA-2009:1673 Critical CentOS 4 x86_64 seamonkey - security update

2009-12-18 Thread Tru Huynh
CentOS Errata and Security Advisory CESA-2009:1673 seamonkey security update for CentOS 4 x86_64: https://rhn.redhat.com/errata/RHSA-2009-1673.html The following updated file has been uploaded and is currently syncing to the mirrors: x86_64:

[CentOS-announce] CESA-2009:1674 Critical CentOS 4 i386 firefox - security update

2009-12-18 Thread Tru Huynh
CentOS Errata and Security Advisory CESA-2009:1674 firefox security update for CentOS 4 i386: https://rhn.redhat.com/errata/RHSA-2009-1674.html The following updated file has been uploaded and is currently syncing to the mirrors: i386: updates/i386/RPMS/firefox-3.0.16-4.el4.centos.i386.rpm

[CentOS-announce] CESA-2009:1674 Critical CentOS 4 x86_64 firefox - security update

2009-12-18 Thread Tru Huynh
CentOS Errata and Security Advisory CESA-2009:1674 firefox security update for CentOS 4 x86_64: https://rhn.redhat.com/errata/RHSA-2009-1674.html The following updated file has been uploaded and is currently syncing to the mirrors: x86_64:

[CentOS-announce] CESA-2009:1680 Important CentOS 4 i386 xpdf - security update

2009-12-18 Thread Tru Huynh
CentOS Errata and Security Advisory CESA-2009:1680 xpdf security update for CentOS 4 i386: https://rhn.redhat.com/errata/RHSA-2009-1680.html The following updated file has been uploaded and is currently syncing to the mirrors: i386: updates/i386/RPMS/xpdf-3.00-23.el4_8.1.i386.rpm source:

[CentOS-announce] CESA-2009:1680 Important CentOS 4 x86_64 xpdf - security update

2009-12-18 Thread Tru Huynh
CentOS Errata and Security Advisory CESA-2009:1680 xpdf security update for CentOS 4 x86_64: https://rhn.redhat.com/errata/RHSA-2009-1680.html The following updated file has been uploaded and is currently syncing to the mirrors: x86_64: updates/x86_64/RPMS/xpdf-3.00-23.el4_8.1.x86_64.rpm

[CentOS-announce] CESA-2009:1681 Important CentOS 4 i386 gpdf - security update

2009-12-18 Thread Tru Huynh
CentOS Errata and Security Advisory CESA-2009:1681 gpdf security update for CentOS 4 i386: https://rhn.redhat.com/errata/RHSA-2009-1681.html The following updated file has been uploaded and is currently syncing to the mirrors: i386: updates/i386/RPMS/gpdf-2.8.2-7.7.2.el4_8.6.i386.rpm source:

[CentOS-announce] CESA-2009:1682 Important CentOS 4 i386 kdegraphics - security update

2009-12-18 Thread Tru Huynh
CentOS Errata and Security Advisory CESA-2009:1682 kdegraphics security update for CentOS 4 i386: https://rhn.redhat.com/errata/RHSA-2009-1682.html The following updated file has been uploaded and is currently syncing to the mirrors: i386: updates/i386/RPMS/kdegraphics-3.3.1-17.el4_8.1.i386.rpm

[CentOS-announce] CESA-2009:1682 Important CentOS 4 x86_64 kdegraphics - security update

2009-12-18 Thread Tru Huynh
CentOS Errata and Security Advisory CESA-2009:1682 kdegraphics security update for CentOS 4 x86_64: https://rhn.redhat.com/errata/RHSA-2009-1682.html The following updated file has been uploaded and is currently syncing to the mirrors: x86_64:

Re: [CentOS-es] Migrar / y /home de ext3 a XFS (Dudas sobre la mejor forma de copiar los datos)

2009-12-18 Thread Abel Coto
En teoría copie todo desde un Live-CD (se me olvido decirlo) a si que supongo que no debería haber diferencias entre el original y la copia (en cuanto a contenido),al no estar el sistema en uso. No excluí directorios como /dev o /proc u otros directorios que se podrían excluir, y puede que

[CentOS-es] Ayuda con mysql

2009-12-18 Thread mauricio
tengo problemas con el servicio de mysql y revise los log y me dicen que falta un fichero mysqld.sock Alguien tiene idea como se crea este fichero. Mauricio Yañes Cervantes ® Administrador de Red Escuela Formadora de Trabajadores Sociales de Santiago de Cuba. e_mail:

Re: [CentOS] [OT] Urgent request

2009-12-18 Thread Sorin Srbu
-Original Message- From: centos-boun...@centos.org [mailto:centos-boun...@centos.org] On Behalf Of John R. Dennison Sent: Friday, December 18, 2009 12:00 AM To: John R Pierce Cc: CentOS mailing list Subject: Re: [CentOS] [OT] Urgent request On Thu, Dec 17, 2009 at 02:37:52PM -0800, John R

Re: [CentOS] [OT] Urgent request

2009-12-18 Thread Sorin Srbu
-Original Message- From: centos-boun...@centos.org [mailto:centos-boun...@centos.org] On Behalf Of Thomas Dukes Sent: Friday, December 18, 2009 12:53 AM To: 'CentOS mailing list' Subject: Re: [CentOS] [OT] Urgent request We have backups but its only database files. C-Systems got us good,

Re: [CentOS] [OT] Urgent request

2009-12-18 Thread John R. Dennison
On Fri, Dec 18, 2009 at 09:21:32AM +0100, Sorin Srbu wrote: Fedora?? You're joking, right? This is this a production server? Note he mentioned Fedora 9, support for which has been EOL'd how long ago? :( John --

Re: [CentOS] NIS failover

2009-12-18 Thread Peter Serwe
After dealing with a couple of issues with OpenLDAP, I'd say it beats the piss out of NIS all day long. NIS is ancient and decrepit. Hard to believe, but certain very well known organizations refuse to get off NIS for critical and secure systems. Peter On Thu, Dec 17, 2009 at 11:50 AM, John R.

[CentOS] i386 and x86_64 packages on an 64bit system after fresh install - why?

2009-12-18 Thread Götz Reinicke - IT-Koordinator
Hi, I recetly set up a brand new fres Centos 5.4 64 bit system and found a lot of i386 packages installed along with the x86_64 packages. My questions: Why is this done? May I remove the i386 packages? (rpm -e ) I wanted to update today the installed packages and do get some dep messages:

Re: [CentOS] gcc version

2009-12-18 Thread Laurent Wandrebeck
gcc 4.3 was a technology preview in 5.3. It became 4.4 in 5.4. 4.1.2 is the supported version in 5.x. Laurent. ___ CentOS mailing list CentOS@centos.org http://lists.centos.org/mailman/listinfo/centos

Re: [CentOS] google gears on 64 bit centos 5.4?

2009-12-18 Thread James Hogarth
Google doesn't do it... I have an RPM package for a default firefox profile I deploy to our boxes - that contains a 64bit gears install from somewhere. google linux 64bit gears - there's plenty of places with it compiled to XPI thing it is r3409 or something like that which is most recent

[CentOS] Security advice, please

2009-12-18 Thread Anne Wilson
I run chkrootkit daily. For the first time I've got reports of a problem - Checking `bindshell'... INFECTED (PORTS: 1008) The page http://fatpenguinblog.com/scott-rippee/checking-bindshell-infected- ports-1008/ suggests that this might be a false positive, so I ran 'netstat - tanup' but unlike

[CentOS] Optimizing CentOS for gigabit firewall

2009-12-18 Thread sadas sadas
Hi, I want to configure CentOS on powerful server with gigabit adapters as transparent bridge and deploy it in front of server farm. Can you tell how to optimize the OS for hight packet processing? What configurations I need to do to achieve very hight speeds and thousands of

Re: [CentOS] [OT] Urgent request

2009-12-18 Thread Thomas Dukes
-Original Message- From: centos-boun...@centos.org [mailto:centos-boun...@centos.org] On Behalf Of Sorin Srbu Sent: Friday, December 18, 2009 3:22 AM To: 'CentOS mailing list' Subject: Re: [CentOS] [OT] Urgent request -Original Message- From: centos-boun...@centos.org

Re: [CentOS] NIS failover

2009-12-18 Thread Steve Thompson
On Fri, 18 Dec 2009, Peter Serwe wrote: After dealing with a couple of issues with OpenLDAP, I'd say it beats the piss out of NIS all day long. NIS is ancient and decrepit. Agreed. Hard to believe, but certain very well known organizations refuse to get off NIS for critical and secure

Re: [CentOS] latest kernel (-164.9.1) not seen by yum

2009-12-18 Thread Rob Kampen
Akemi Yagi wrote: On Thu, Dec 17, 2009 at 8:25 PM, Rob Kampen rkam...@kampensonline.com wrote: I have updated my local repo and see that centos.plus has the new kernel available. yum update does not get it yum clean all and another try and still it does not find it what am I missing??

Re: [CentOS] Security advice, please

2009-12-18 Thread Rob Kampen
Anne Wilson wrote: I run chkrootkit daily. For the first time I've got reports of a problem - Checking `bindshell'... INFECTED (PORTS: 1008) The page http://fatpenguinblog.com/scott-rippee/checking-bindshell-infected- ports-1008/ suggests that this might be a false positive, so I ran

Re: [CentOS] NTP update?

2009-12-18 Thread Akemi Yagi
On Fri, Dec 18, 2009 at 12:37 AM, Christoph Maser c...@financial.com wrote: Am Freitag, den 18.12.2009, 06:42 +0100 schrieb Gilbert Sebenste: Excellent. We're all caught up on updates now, except... I didn't see the NTP update. That's a big one, with an easy denial of sservice attack. Is that

Re: [CentOS] NTP update?

2009-12-18 Thread Karanbir Singh
On 18/12/09 13:11, Akemi Yagi wrote: That was for CentOS-4. The update for CentOS-5 is indeed unavailable as of today. ntp and conga should both be available at some point today. I need to run some tests first, lets see if I can get those done during my lunch break at work. - KB

Re: [CentOS] Security advice, please

2009-12-18 Thread John Doe
From: Anne Wilson cannewil...@googlemail.com I run chkrootkit daily. For the first time I've got reports of a problem - Checking `bindshell'... INFECTED (PORTS: 1008) The page http://fatpenguinblog.com/scott-rippee/checking-bindshell-infected- ports-1008/ suggests that this might be a

Re: [CentOS] i386 and x86_64 packages on an 64bit system after fresh install - why?

2009-12-18 Thread Götz Reinicke - IT-Koordinator
Akemi Yagi schrieb: On Fri, Dec 18, 2009 at 1:12 AM, Götz Reinicke - IT-Koordinator goetz.reini...@filmakademie.de wrote: Hi, I recetly set up a brand new fres Centos 5.4 64 bit system and found a lot of i386 packages installed along with the x86_64 packages. My questions: Why is this

Re: [CentOS] NTP update?

2009-12-18 Thread Gilbert Sebenste
On Fri, 18 Dec 2009, Karanbir Singh wrote: On 18/12/09 13:11, Akemi Yagi wrote: That was for CentOS-4. The update for CentOS-5 is indeed unavailable as of today. ntp and conga should both be available at some point today. I need to run some tests first, lets see if I can get those done

[CentOS] Fetchmail question

2009-12-18 Thread Davy Leon
Hi folks This question is about fetchmail running on my Centos 5.3 box. I need to fetch my email from different accounts living on remote servers and drop it on my local mailbox. The question is wich way is faster for fetchmail... using POP3 or IMAP? Thanks David

Re: [CentOS] Fetchmail question

2009-12-18 Thread Bo Lynch
On Fri, December 18, 2009 10:29 am, Davy Leon wrote: Hi folks This question is about fetchmail running on my Centos 5.3 box. I need to fetch my email from different accounts living on remote servers and drop it on my local mailbox. The question is wich way is faster for fetchmail... using

Re: [CentOS] Fetchmail question

2009-12-18 Thread Davy Leon
Actually I'm using POP3, but just looking for improvements in speed. Plus, fetchm,ail doesn't allow fetch more than one account at a time, and it's kind slow in the secure handshaking. There is another package should I explore using it to improve speed? Thanks for your answer David -

Re: [CentOS] Fetchmail question

2009-12-18 Thread Scot P. Floess
You can configure fetchmail to grab email from more than one server - I'm doing that now at home. I have a workstation VM that runs fetchmail - one to pull mail from my mailserver and the other from Road Runner - one config file, 2 different remote email accounts - 1 local user account... On

Re: [CentOS] Fetchmail question

2009-12-18 Thread Brian Mathis
[Top post moved to bottom] On Fri, Dec 18, 2009 at 10:39 AM, Davy Leon d...@scu.escambray.com.cu wrote: - Original Message - From: Brian Mathis brian.mat...@gmail.com To: CentOS mailing list centos@centos.org Sent: Friday, December 18, 2009 10:27 AM Subject: Re: [CentOS] Fetchmail

Re: [CentOS] unverified files in 5.4

2009-12-18 Thread Peter Kjellstrom
On Friday 18 December 2009, ken wrote: Hey, Gang! To ensure that a file hasn't been corrupted or tampered with, you can use rpm to verify the package it came from. Well, I found this: rpm -Vv util-linux /usr/bin/cal S.?./usr/bin/chfn /usr/bin/chrt

Re: [CentOS] Fetchmail question

2009-12-18 Thread Scot P. Floess
You can definitely use the -f option to fetchmail. But the neat thing is, you can supply multiple accounts - and multiple local users. For me I supply 2 different pop servers and one local user - works great. On Fri, 18 Dec 2009, Brian Mathis wrote: [Top post moved to bottom] On Fri,

Re: [CentOS] Fetchmail question

2009-12-18 Thread Brian Kirkman
Davy Leon wrote: Hi folks This question is about fetchmail running on my Centos 5.3 box. I need to fetch my email from different accounts living on remote servers and drop it on my local mailbox. The question is wich way is faster for fetchmail... using POP3 or IMAP? Thanks David

Re: [CentOS] Fetchmail question

2009-12-18 Thread Scot P. Floess
D'oh... Sorry about that... I was quickly reading through the post. My foot so easily fits into my mouth I sometimes forget its there :) On Fri, 18 Dec 2009, Brian Mathis wrote: [Top post again moved to the bottom] On Fri, Dec 18, 2009 at 10:55 AM, Scot P. Floess sflo...@nc.rr.com

Re: [CentOS] Fetchmail question

2009-12-18 Thread Stephen Harris
On Fri, Dec 18, 2009 at 10:55:54AM -0500, Scot P. Floess wrote: You can definitely use the -f option to fetchmail. But the neat thing is, you can supply multiple accounts - and multiple local users. For me I supply 2 different pop servers and one local user - works great. Yup, this is my

Re: [CentOS] Fetchmail question

2009-12-18 Thread Stephen Harris
On Fri, Dec 18, 2009 at 11:05:17AM -0500, Brian Mathis wrote: You may notice that in the OPs 1st reply that the requirement is to retrieve multiple accounts *at the same time* to increase speed. AFAIK, if you use 1 file with fetchmail it will retrieve messages sequentially from each account.

Re: [CentOS] DRBD

2009-12-18 Thread Flaherty, Patrick
Would any of you be comfortable running the drbd packages from the extras repo? If so, any particular version .. I notice 8.0, 8.2, 8.3. I'll do my own due diligence but just curious if the list has any implementation based feedback. Thanks. I've been running 8.0 for a year or more from

[CentOS] CentOS-announce Digest, Vol 58, Issue 5

2009-12-18 Thread centos-announce-request
Send CentOS-announce mailing list submissions to centos-annou...@centos.org To subscribe or unsubscribe via the World Wide Web, visit http://lists.centos.org/mailman/listinfo/centos-announce or, via email, send a message with subject or body 'help' to

Re: [CentOS] Optimizing CentOS for gigabit firewall

2009-12-18 Thread nate
sadas sadas wrote: Hi, I want to configure CentOS on powerful server with gigabit adapters as transparent bridge and deploy it in front of server farm. Can you tell how to optimize the OS for hight packet processing? What configurations I need to do to achieve very hight speeds and

Re: [CentOS] DRBD

2009-12-18 Thread Jacob Bresciani
I am currently playing with the 8.3 package (8.2 redirects to 8.3 btw). so far I haven't had any issues with it. Jacob Bresciani Linux Systems Administrator Advanced Economic Research Systems / Terapeak Cell: 250 418-5412 On 2009-12-18, at 8:53 AM, Flaherty, Patrick

Re: [CentOS] Optimizing CentOS for gigabit firewall

2009-12-18 Thread Peter Serwe
I'll second damn near everything nate said, and hopefully add a tidbit or two. If you're new to BSD, you may want to consider the pfsense project in the aforementioned active-active configuration. It gives you a nice, intuitive gui to manage your failover firewalls, if you insist on putting a

Re: [CentOS] Security advice, please

2009-12-18 Thread Anne Wilson
On Friday 18 December 2009 16:55:04 nate wrote: Anne Wilson wrote: do the trick, and I simply didn't know what else to try. In case I meet this again, can you please advise me? Are you doing anything with NFS? If not then turn off the nfs service, and the rpc services

Re: [CentOS] google gears on 64 bit centos 5.4?

2009-12-18 Thread Dave
On Fri, Dec 18, 2009 at 12:12 AM, James Hogarth james.hoga...@gmail.com wrote: I have an RPM package for a default firefox profile I deploy to our boxes - that contains a 64bit gears install from somewhere. google linux 64bit gears - there's plenty of places with it compiled to XPI

Re: [CentOS] Optimizing CentOS for gigabit firewall

2009-12-18 Thread sadas sadas
I will explain more deeply. I need to deploy a firewall(s) in front of web server farm because I need to do billing - I will use CentOS with iptables + ipset to store a list if my clients so when client doesn't pay his server's IP is out of the list and he can't access the web server. Second

Re: [CentOS] Optimizing CentOS for gigabit firewall

2009-12-18 Thread Michael Semcheski
On Fri, Dec 18, 2009 at 2:36 PM, sadas sadas mai...@abv.bg wrote: I can't find information is there linux or BSD distribution with effective firewall that uses optimized algorithm to store hundreds of IPs and to forward huge traffic. Any idea? I think you'll find that this kind of thing can be

Re: [CentOS] Optimizing CentOS for gigabit firewall

2009-12-18 Thread nate
sadas sadas wrote: I can't find information is there linux or BSD distribution with effective firewall that uses optimized algorithm to store hundreds of IPs and to forward huge traffic. Any idea? Hundreds? http://www.openbsd.org/faq/pf/tables.html A table is used to hold a group of IPv4

Re: [CentOS] Optimizing CentOS for gigabit firewall

2009-12-18 Thread sadas sadas
after quick search in google: http://postfactum.pl.ua/pf/ I will test to patch latest linux kernel with pf. What do you thing? sadas sadas wrote: I can't find information is there linux or BSD distribution with effective firewall that uses optimized algorithm to store hundreds of IPs

Re: [CentOS] Optimizing CentOS for gigabit firewall

2009-12-18 Thread Timo Schoeler
I can't find information is there linux or BSD distribution with effective firewall that uses optimized algorithm to store hundreds of IPs and to forward huge traffic. Any idea? Hundreds? http://www.openbsd.org/faq/pf/tables.html A table is used to hold a group of IPv4 and/or IPv6

Re: [CentOS] Optimizing CentOS for gigabit firewall

2009-12-18 Thread Timo Schoeler
after quick search in google: http://postfactum.pl.ua/pf/ I will test to patch latest linux kernel with pf. What do you thing? Get OpenBSD. Honestly -- all the porting stuff of relatively kernel-close stuff is just braindead. Timo sadas sadas wrote: I can't find information is

[CentOS] RHEL 6 won't support Itanic, will support PowerPC, though

2009-12-18 Thread Timo Schoeler
Hi list, after some discussion on #IRC on PowerPC I was waiting for some commitment on supported architectures in RHEL 6. As I just learnt, Itanic will be dumped, but there will be a PowerPC release: http://www.theregister.co.uk/2009/12/18/redhat_rhel6_itanium_dead/ Best, Timo (happy PowerPC

Re: [CentOS] Optimizing CentOS for gigabit firewall

2009-12-18 Thread sadas sadas
What about NetBSD? I heard that NetBSD has the best network stack out there. Maybe NetBSD with pf is the best choice? I can't find information is there linux or BSD distribution with effective firewall that uses optimized algorithm to store hundreds of IPs and to forward huge

[CentOS] Fetchmail question

2009-12-18 Thread R P Herrold
On Fri, 18 Dec 2009, Stephen Harris wrote: You can always run multiple copies of fetchmail in the background if you want parallel fetching or run just one tenth of those RC files (when well numbered) present each time a script is invoked, if you are not in a hurry to retrieve email from

Re: [CentOS] Optimizing CentOS for gigabit firewall

2009-12-18 Thread Timo Schoeler
What about NetBSD? I heard that NetBSD has the best network stack out there. Maybe NetBSD with pf is the best choice? NetBSD is a very nice OS, I personally like it most (out of all BSDs out there); however, as can be read on http://www.netbsd.org/docs/network/pf.html there's the 'usual lag':

Re: [CentOS] Optimizing CentOS for gigabit firewall

2009-12-18 Thread Matias Sardisco
after quick search in google: http://postfactum.pl.ua/pf/ I will test to patch latest linux kernel with pf. Hey! Wait: The name of this patchset is not connected with BSD Packet Filter. «pf» means «post-factum» in the short form. What do you thing? Get OpenBSD. Honestly -- all the

Re: [CentOS] Optimizing CentOS for gigabit firewall

2009-12-18 Thread Peter Serwe
I don't know jack about IPSet, but I know enabling or disabling hosts in bare stock PF without the gui in front of it is about as easy as it gets. The PF configuration file syntax was designed from the ground up to be sane, unlike iptables, which typically needs some decent sysadmin scripting or

Re: [CentOS] Optimizing CentOS for gigabit firewall

2009-12-18 Thread Les Mikesell
Timo Schoeler wrote: What about NetBSD? I heard that NetBSD has the best network stack out there. Maybe NetBSD with pf is the best choice? NetBSD is a very nice OS, I personally like it most (out of all BSDs out there); however, as can be read on http://www.netbsd.org/docs/network/pf.html

Re: [CentOS] Optimizing CentOS for gigabit firewall

2009-12-18 Thread Peter Serwe
You can't patch the Berkeley Packet Filter into Linux. Linux kernel doesn't support it. and... Despite a cacophonous chorus of replies directing you to the right tool for the job, you insist on sticking with Linux. If you want to use the wrong tool for the job, by all means, use ipset/iptables

[CentOS] don't understand this command

2009-12-18 Thread adrian kok
Hi I mistype this shell#/rm a.tar.gz it works but it won't confirm and the file is remove why? Thank you Send instant messages to your online friends http://uk.messenger.yahoo.com ___ CentOS mailing list CentOS@centos.org

Re: [CentOS] Optimizing CentOS for gigabit firewall

2009-12-18 Thread Timo Schoeler
On 12/18/2009 10:05 PM, Peter Serwe wrote: I don't know jack about IPSet, but I know enabling or disabling hosts in bare stock PF without the gui in front of it is about as easy as it gets. The PF configuration file syntax was designed from the ground up to be sane, unlike iptables, which

Re: [CentOS] Optimizing CentOS for gigabit firewall

2009-12-18 Thread Timo Schoeler
On 12/18/2009 10:12 PM, Peter Serwe wrote: You can't patch the Berkeley Packet Filter into Linux. Linux kernel doesn't support it. and... Despite a cacophonous chorus of replies directing you to the right tool for the job, you insist on sticking with Linux. If you want to use the

Re: [CentOS] don't understand this command

2009-12-18 Thread Les Mikesell
adrian kok wrote: Hi I mistype this shell#/rm a.tar.gz it works but it won't confirm and the file is remove why? rm never asks for confirmation by default. The reason you think it does is that you normally execute an alias instead of the real command when running as root. You must

Re: [CentOS] Optimizing CentOS for gigabit firewall

2009-12-18 Thread Thomas Harold
On 12/18/2009 4:12 PM, Peter Serwe wrote: You can't patch the Berkeley Packet Filter into Linux. Linux kernel doesn't support it. and... Despite a cacophonous chorus of replies directing you to the right tool for the job, you insist on sticking with Linux. If you want to use the

[CentOS] mountd and statd at specific ports - nfs firewall

2009-12-18 Thread Carlos Santana
Hi, I am configuring firewall for NFS. I see that statd and mountd start at random port. Is there any way to force it to start at specific port each time. The '-p ' option would work, but how do I configure it to start at specific port number each time. I mean where do statd and mountd look for

Re: [CentOS] mountd and statd at specific ports - nfs firewall

2009-12-18 Thread Christoph Neuhaus
Hi, I see that statd and mountd start at random port. Is there any way to force it to start at specific port each time. The '-p ' option would work, but how do I configure it to start at specific port number each time. I mean where do statd and mountd look for default configuration options?

Re: [CentOS] Optimizing CentOS for gigabit firewall

2009-12-18 Thread Robert Spangler
On Friday 18 December 2009 16:05, Peter Serwe wrote: I don't know jack about IPSet, but I know enabling or disabling hosts in bare stock PF without the gui in front of it is about as easy as it gets. IPTALES is the same; iptables -A [INPUT/FORWARD] -d ip address -j [REJECT/DROP] The PF

Re: [CentOS] mountd and statd at specific ports - nfs firewall

2009-12-18 Thread Carlos Santana
Great..! Thats helpful.. Thanks, CS. On Fri, Dec 18, 2009 at 4:38 PM, Christoph Neuhaus nihi...@gmail.com wrote: Hi, I see that statd and mountd start at random port. Is there any way to force it to start at specific port each time. The '-p ' option would work, but how do I configure it to

Re: [CentOS] NIS failover

2009-12-18 Thread Drew
Hard to believe, but certain very well known organizations refuse to get off NIS for critical and secure systems. {{citation needed}} :-) -- Drew Nothing in life is to be feared. It is only to be understood. --Marie Curie ___ CentOS mailing list

[CentOS] College student printer for CentOS 5.4 x86_64?

2009-12-18 Thread David McGuffey
Oldest son came back from college and wants a printer for his Dell laptop. I built it with CentOS 5.3 x86_64 several months ago and will upgrade it to 5.4 The Cannon printer he now has (bought with the laptop and Vista through the university book store), doesn't seem to have linux drivers. I

Re: [CentOS] College student printer for CentOS 5.4 x86_64?

2009-12-18 Thread Barry Brimer
What would the community recommend? His needs are simple...mostly BW papers. On rare occasions he needs to print a paper with color photos/graphs embedded. Not looking to spend a lot, just enough to satisfy the requirement. Install cups-pdf and have pdfs created by any application that can

Re: [CentOS] don't understand this command

2009-12-18 Thread Robert Nichols
adrian kok wrote: Hi I mistype this shell#/rm a.tar.gz it works but it won't confirm and the file is remove why? And now you mistyped your mistyping. That would be a backslash (\) not a forward slash (/). Escaping the command name with a backslash bypasses the alias rm='rm -i' that is

[CentOS] Donation programme

2009-12-18 Thread Yves Bellefeuille
Is there any decision about the donation programme? The Web page still says: If you are looking to make a cash dontation to the CentOS Project, please check back here after August 15th, 2009. I assume that donations aren't refused, but is there a suggested amount, as there used to be? --

Re: [CentOS] College student printer for CentOS 5.4 x86_64?

2009-12-18 Thread John R Pierce
rai...@ultra-secure.de wrote: If I'd have to buy one now, I'd look for an appropriate Brother model. They seem to have decent support for Linux. indeed, Brother BW laser printers have some of the best price oer page printed too. they work fine with aftermarket toner and drums (mine uses

Re: [CentOS] Optimizing CentOS for gigabit firewall

2009-12-18 Thread sadas sadas
The syntax is not a problem. The problem is in the performance. I suppose that if I configure OpenBSD to process the in/out packets only to layer 2 the performance will be much more than linux with iptables. I don't know jack about IPSet, but I know enabling or disabling hosts in

Re: [CentOS] Optimizing CentOS for gigabit firewall

2009-12-18 Thread Peter Serwe
So basically, you're saying you'd want to allow or disallow traffic based on mac address? Seems like you could put mac filters on a number switches, Cisco being the most easily documented by Mr. Google. Be a lot faster than any kernel, and a total waste of BSD. If you can do it on Linux via