Re: Rsnapshot configuration

2017-06-13 Thread Edgar Pettijohn
I appreciate this email. I really need to backup my data more/better and this gave​ me a lot to think about. ⁣Sent from BlueMail ​ On Jun 13, 2017, 7:51 PM, at 7:51 PM, Predrag Punosevac wrote: >Somebody hiding behind a pseudonym G wrote: > >> >> >> Most tutorials

Re: Rsnapshot configuration

2017-06-13 Thread Predrag Punosevac
Somebody hiding behind a pseudonym G wrote: > > > Most tutorials suggest not to backup tmp and var etc. I decided to > backup the whole var. > You were the last person I expected to ask a question on this mailing list after those "expert advises" you gave people on OpenBSD desktop in which

Re: screen black after attaching to inteldrm, June snapshots

2017-06-13 Thread Ed Ahlsen-Girard
On Fri, 9 Jun 2017 06:27:56 -0500 Ed Ahlsen-Girard wrote: > Since the June 7 snapshot and the one before that, once inteldrm is > attached: > > inteldrm0 at pci0 dev 2 function 0 "Intel G41 Video" rev 0x03 > > the screen goes black. Seems similar to the issue noted here: >

Re: Rsnapshot configuration

2017-06-13 Thread G
Well as far as /var goes i decided to take a closer look because i am thinking running aide for system integrity check. So this my rsnapshot.conf I backup the following files backup / localhost/ (Im not sure if i need anything else other than / for backup ) # backup /altroot/

Re: httpd and phpyMyAdmin

2017-06-13 Thread Ax0n
I'm generally not a fan of it, either, but sometimes the (l)users need tools we don't like. So. 1) Run it over TLS only, so that usernames, passwords and other sensitive data doesn't go across in the clear. 2) Lock it down to access only from trusted IP addresses (you can do this a variety of

Re: httpd and phpyMyAdmin

2017-06-13 Thread Stuart Henderson
On 2017-06-13, Markus Rosjat wrote: > would like to get opinions on securing the whole thing ...still :) Deleting phpmyadmin would be a good start :-)

Re: httpd and phpyMyAdmin

2017-06-13 Thread Markus Rosjat
heads up on the 403 error fixed it by put diffrent locations for php and other files in the server config. would like to get opinions on securing the whole thing ...still :) regards -- Markus Rosjatfon: +49 351 8107223mail: ros...@ghweb.de G+H Webservice GbR Gorzolla, Herrmann

Re: Rsnapshot configuration

2017-06-13 Thread Stuart Henderson
On 2017-06-13, Paolo Aglialoro wrote: > Have a full snapshot of your system, otherwise restore will be a nightmare. Opinions vary. I couldn't care less about backing up things which I can just reinstall, I just need to know how to get back to that state easily. There are

httpd and phpyMyAdmin

2017-06-13 Thread Markus Rosjat
Hi there, I need to setup phpMyAdmin for some webdesign folks and I got somehow something working ... I still cant figure out why all the images css and js file get a 403 error. so if someone has a phpmyadmin running he might can give me some advice on the httpd.conf ? regards -- Markus

Re: Rsnapshot configuration

2017-06-13 Thread G
Most tutorials suggest not to backup tmp and var etc. I decided to backup the whole var. What do you suggest? I though rsnapshot was ok? ps. On linux i was using backintime (which uses rsync) but it seems its no longer on the packages. On 06/13/17 19:05, Paolo Aglialoro wrote: > +1 > > Have a

Re: OpenBSD NFS: Windows 10 writes wrong uid

2017-06-13 Thread Raul Miller
On Tue, Jun 13, 2017 at 12:25 PM, Rupert Gallagher wrote: >> Worse, though, is if you think that a security issue on a file server > is because of a problem in the default client configuration. > > I did not say that. And yet: On Mon, Jun 12, 2017 at 2:27 PM, Rupert

Re: OpenBSD NFS: Windows 10 writes wrong uid

2017-06-13 Thread Rupert Gallagher
I have non-root user on windows 10 that can delete read-only backup files and folders on NFS. Sent from ProtonMail Mobile On Tue, Jun 13, 2017 at 2:45 PM, Kenneth Gober wrote: On Mon, Jun 12, 2017 at 12:58 PM, Rupert Gallagher wrote: > On problem 2, > > if a user has group

Re: OpenBSD NFS: Windows 10 writes wrong uid

2017-06-13 Thread Rupert Gallagher
> Worse, though, is if you think that a security issue on a file server is > because of a problem in the default client configuration. I did not say that. Sent from ProtonMail Mobile On Tue, Jun 13, 2017 at 1:10 PM, Raul Miller wrote: Worse, though, is if you think

Re: OpenBSD NFS: Windows 10 writes wrong uid

2017-06-13 Thread Rupert Gallagher
I have the backup on NAS. Files and folders read only. Users can delete anything. Sent from ProtonMail Mobile On Tue, Jun 13, 2017 at 7:47 AM, Otto Moerbeek wrote: On Tue, Jun 13, 2017 at 01:24:19AM -0400, Rupert Gallagher wrote: > If a non-root user can delete a root owned

Re: Rsnapshot configuration

2017-06-13 Thread Paolo Aglialoro
+1 Have a full snapshot of your system, otherwise restore will be a nightmare. Do it with another tool, rsnapshot is mostly useful for data. Il 13 giu 2017 11:05 AM, "Mark Carroll" ha scritto: > On 13 Jun 2017, G. wrote: > > > Hello! > > Im trying to take daily and weekly

Re: inquiring about setting wxallowed on /home mountpoint

2017-06-13 Thread Marc Espie
WXNEEDED is already a compromise. More compromise is fairly unlikely to happen...

uticom0: error reloading device descriptor

2017-06-13 Thread marko.cupac
Hi, I'm not 100% sure, but IIRC I was able to use Moxa Uport 1110 RS-232 USB to Serial Converter on previous versions of OpenBSD. I have upgraded my ThinkPad T440 to 6.1, and I get the following in dmesg: uticom0: error reloading device descriptor Thank you in advance, dmesg below. OpenBSD

Re: OpenBSD NFS: Windows 10 writes wrong uid

2017-06-13 Thread Kenneth Gober
On Mon, Jun 12, 2017 at 12:58 PM, Rupert Gallagher wrote: > On problem 2, > > if a user has group write permission on a folder, it has permission to write > its own files and those of same group membership in that folder, provided the > group permission is set on the file

Re: X on thinkpad x270 - "Inappropriate ioctl for device"

2017-06-13 Thread Pau
thanks, Daniel Then the em0 problem will go away as soon as I delete linux, that's nice. But the most urgent problem is X. On Tue, Jun 13, 2017 at 2:26 PM, Daniel Jakots wrote: > On Tue, 13 Jun 2017 08:12:00 +0200, Pau wrote: > >> em0 shows the error

Re: splassert: pool_put: want 0 have 4

2017-06-13 Thread Marko Cupać
On Tue, 13 Jun 2017 11:38:46 + (UTC) Stuart Henderson wrote: > On 2017-06-13, Marko Cupać wrote: > > Hi, > > > > I see these in my console log: > > Jun 6 16:14:25 nat2 /bsd: splassert: pool_put: want 0 have 4 > > > > I don't observe any negative

Re: Findig the bad device in a degraded softraid RAID5

2017-06-13 Thread Stuart Henderson
On 2017-06-13, LÉVAI Dániel wrote: > Hi! > > Just got a message from sensorsd that one of my drives failed > (softraid0.drive1: pfail, WARN -- I guess pfail means 'p'hysical fail?). > > Do you know any way of figuring out which actual HDD could be this? > There are 4 identical

Re: X on thinkpad x270 - "Inappropriate ioctl for device"

2017-06-13 Thread Daniel Jakots
On Tue, 13 Jun 2017 08:12:00 +0200, Pau wrote: > em0 shows the error about "Unable to initialize the hardware". I guess > this will be fixed in upcoming snapshots (and again, thanks for the > hard work). This is probably because you're multibooting. You can see my bug report

Findig the bad device in a degraded softraid RAID5

2017-06-13 Thread LÉVAI Dániel
Hi! Just got a message from sensorsd that one of my drives failed (softraid0.drive1: pfail, WARN -- I guess pfail means 'p'hysical fail?). Do you know any way of figuring out which actual HDD could be this? There are 4 identical ones in the PC. Is there a utility in eg. ports that could read eg.

Re: OpenBSD NFS: Windows 10 writes wrong uid

2017-06-13 Thread Raul Miller
(also, once again, sticky bit) -- Raul On Tuesday, June 13, 2017, Raul Miller wrote: > Worse, though, is if you think that a security issue on a file server > is because of a problem in the default client configuration. > > Mind you, this is not completely general (load

Re: splassert: pool_put: want 0 have 4

2017-06-13 Thread Stuart Henderson
On 2017-06-13, Marko Cupać wrote: > Hi, > > I see these in my console log: > Jun 6 16:14:25 nat2 /bsd: splassert: pool_put: want 0 have 4 > > I don't observe any negative effects. Should I be worried? :) Can you try "sysctl kern.splassert=2" to obtain a backtrace? (This

splassert: pool_put: want 0 have 4

2017-06-13 Thread Marko Cupać
Hi, I see these in my console log: Jun 6 16:14:25 nat2 /bsd: splassert: pool_put: want 0 have 4 I don't observe any negative effects. Should I be worried? :) Here's dmesg: OpenBSD 6.1 (GENERIC.MP) #6: Mon May 22 20:34:30 CEST 2017

Re: OpenBSD NFS: Windows 10 writes wrong uid

2017-06-13 Thread Raul Miller
Worse, though, is if you think that a security issue on a file server is because of a problem in the default client configuration. Mind you, this is not completely general (load issues and integrity issues do matter on the client side), but when we're talking about granting of permissions on

Re: inquiring about setting wxallowed on /home mountpoint

2017-06-13 Thread Theo de Raadt
> However, the convenience of just installing packages is then lost. > After a discussion on IRC, a couple of ways to deal with this came up: > > 1. add a non-USE_WXNEEDED flavour of the python port > > 2. have the python port(s) ship two binaries (one with, one without >OPENBSD_WXNEEDED) >

Re: Xfce power manager and Brightness

2017-06-13 Thread Juan Francisco Cantero Hurtado
On Tue, Jun 13, 2017 at 10:39:00AM +0200, Erling Westenvik wrote: > On Tue, Jun 13, 2017 at 10:54:27AM +0300, G wrote: > > Hello. > > I'm running xfce and xfce4-power-manager doesn't seems to work. > > with lock screen. Read the docs in /usr/local/share/doc/pkg-readmes. You need xscreensaver or

Re: Use of upwexpire to configure user password expiry policy

2017-06-13 Thread Darren Marshall
Hi Ted, Thanks for the info , Ok, at least I now know I was on the right lines. I just had a quick read through the adduser script and it seems to me that there are no routines in there to deal with upwexpire , for instance I guess it would need to take the input from adduser.conf (in my case

Re: Use of upwexpire to configure user password expiry policy

2017-06-13 Thread Darren Marshall
Edgar , Thanks for the advice , unfortunately , usermgmnt.conf doesn't allow you to set a password to expire in 60 days , you would have to work out (or write a script to update the file each day) , the date in 60 days time - *expire* Sets the default time at which the new accounts

Re: ocsp response not current

2017-06-13 Thread Stuart Henderson
On 2017-06-12, jungle Boogie wrote: > On 12 June 2017 at 03:28, Stuart Henderson wrote: >> On 2017-06-12, jungle boogie wrote: >>> Hi All, >>> >>> I'm attempting to fetch the latest bsd.rd snapshot, but it's failing >>>

sshd and key auth problem

2017-06-13 Thread Markus Rosjat
Hi there, I have very strange behaviour here with my sshd setup. I run a 6.1 release to test some stuff for sftp. I created my user and created a ssh key pair, generated a ppk for a putty session all no problem. Then I created a 2nd user for a sftp group and did the same as above. All

Re: Rsnapshot configuration

2017-06-13 Thread Stuart Henderson
On 2017-06-13, G wrote: > Hello! > Im trying to take daily and weekly backups of my system rsnapshot. > > I backup > > backup/ localhost/ > backup/altroot/ localhost/ > backup/bin/ localhost/ > backup/etc/ localhost/ > backup

Re: Rsnapshot configuration

2017-06-13 Thread Mark Carroll
On 13 Jun 2017, G. wrote: > Hello! > Im trying to take daily and weekly backups of my system rsnapshot. (snip) > Im not sure if there is anything in var that i should consider backup > like sysmerge or syspatch. (snip) I have various stuff across different machines that is worth backing up in

Re: inquiring about setting wxallowed on /home mountpoint

2017-06-13 Thread Paul de Weerd
On Tue, Jun 13, 2017 at 07:45:35AM +, Stuart Henderson wrote: | On 2017-06-13, Josh Stephens wrote: | > Thank you Theo. After reading through your reply I would rather not | > deal with a potential risk. I decided to go down the path of adding a | > venv directory in

Rsnapshot configuration

2017-06-13 Thread G
Hello! Im trying to take daily and weekly backups of my system rsnapshot. I backup backup / localhost/ backup /altroot/ localhost/ backup /bin/ localhost/ backup /etc/ localhost/ backup /home/ localhost/ backup /root/ localhost/ backup /sbin localhost/ backup /usr/

Re: Xfce power manager and Brightness

2017-06-13 Thread Erling Westenvik
On Tue, Jun 13, 2017 at 10:54:27AM +0300, G wrote: > Hello. > I'm running xfce and xfce4-power-manager doesn't seems to work. > with lock screen. > > Also I would like to know how can I change the brightness of the screen. $ man -k bright xbacklight(1) - adjust backlight brightness using RandR

Xfce power manager and Brightness

2017-06-13 Thread G
Hello. I'm running xfce and xfce4-power-manager doesn't seems to work. with lock screen. Also I would like to know how can I change the brightness of the screen. Any ideas? thanks in advance!

Re: inquiring about setting wxallowed on /home mountpoint

2017-06-13 Thread Stuart Henderson
On 2017-06-13, Josh Stephens wrote: > Thank you Theo. After reading through your reply I would rather not > deal with a potential risk. I decided to go down the path of adding a > venv directory in /usr/local and giving my account as owner and wheel > as group. This should allow

isakmpd memory usage

2017-06-13 Thread Nicolas
Hi everyone I'm searching some help about isakmpd, which is eating a lot of memory, until the machine crash. It's an OpenBSD 6.1 on Qemu KVM (ganeti). After 3 days, the process is using 650MB of memory. When she's "freezed", she's unreachable on network, and on console she's blinking on tty,

Re: bgp-spamd added 192.43.244.163

2017-06-13 Thread Peter Hessler
I don't see that on either server. Can you send me the output of "bgpctl show rib detail 192.43.244.163"? Is it actually coming from a different list? On 2017 Jun 13 (Tue) at 08:00:05 +0200 (+0200), Markus Rosjat wrote: :just a short head up, : :192.43.244.163 got added to the 666 community

X on thinkpad x270 - "Inappropriate ioctl for device"

2017-06-13 Thread Pau
Hi: I recently got an x270 at work. It is very nice and I hope to be able to use OpenBSD on it. Fortunately, the latest snapshot supports the wireless card via iwm0 (thanks!). em0 shows the error about "Unable to initialize the hardware". I guess this will be fixed in upcoming snapshots

Re: bgp-spamd added 192.43.244.163

2017-06-13 Thread Markus Rosjat
just a short head up, 192.43.244.163 got added to the 666 community again if anyone ist wondering why mails from the list dont show up. regards -- Markus Rosjatfon: +49 351 8107223mail: ros...@ghweb.de G+H Webservice GbR Gorzolla, Herrmann Königsbrücker Str. 70, 01099 Dresden