Re: OT - secondary DNS recommendations

2010-12-08 Thread Marcin Wilk

W dniu 2010-12-09 03:00, Ted Unangst pisze:

On Wed, Dec 8, 2010 at 8:35 PM, Luca Cortil...@fantacast.it  wrote:

On Wed, 2010-12-08 at 11:49 -0500, Scott McEachern wrote:

I know how to use Google to find free alternatives, I'm looking for
*recommendations* for a simple two-domain home network.

Since you are already using Google, you probably won't mind using...
google.

http://code.google.com/speed/public-dns/docs/using.html

google's dns hosting would be great except for the minor inconvenience
of google not hosting other people's DNS...




Hello.
I would recommend https://www.xname.org/index.php
they are free, stable, and work greate for me for many years :)
I also use http://www.twisted4life.com because of interesting server 
location, also free, and also good for many years for me :)




--
Marcin Nicram Wilk
Homepage: http://www.marcinwilk.eu/



Kernel page fault trap, code=0, uvm_fault, what to do next

2010-02-12 Thread Marcin Wilk

Hello
Few days ago my friend ask me to update his firewall (he is running OBSD 
4.1).

I prepared new box and installed OpenBSD 4.6 (i386.mp).
I did have prepared pf.conf also so it work without problems and at night
i just swithed cables and it did work. But in the morning when i wake up 
there was problem:

uvm_fault(0xd0891180, 0x4000, 0, 3) -e
kernel: page fault trap, code=0
Stopped at pf_state_key_detach+0x40: movl %eax0,4(%ecx)
ddb{0}

The problem is i cannot make trace in ddb because computer freeze then 
and it do not

respond on anything. After reset i cannot also find any core dump.

I happend in 3 days now, one after another. So i always swith back to 
old box.
It is always same situation, at morning more people use internet, so the 
transfer

go up for interfaces and then it happen. The last time when i checked it was
7335 Kbps in and 12775Kbps out on em1
12825 Kbps in and 7263 Kbps out on em2
em0 transfer was null because i use it only to connect it directly to 
other computers.


I laso got some messages on ifstat screen like this:
istat: warning: rollover for interface % reinitialising

Here are some additional informations that may help:
The kernel was generic (stable). I had to change one line in altq_hfsc.h
from #define HFSC_MAX_CLASSES64
to #define HFSC_MAX_CLASSES4096

dmesg:
OpenBSD 4.6 (NICRAM.MP) #0: Wed Feb 10 12:10:36 CET 2010
   r...@router.marponet.pl:/usr/src/sys/arch/i386/compile/NICRAM.MP
cpu0: Intel(R) Core(TM)2 Duo CPU E6850 @ 3.00GHz (GenuineIntel 
686-class) 2.99 GHz
cpu0: 
FPU,V86,DE,PSE,TSC,MSR,PAE,MCE,CX8,APIC,SEP,MTRR,PGE,MCA,CMOV,PAT,PSE36,CFLUSH,DS,ACPI,MMX,FXSR,SSE,SSE2,SS,HTT,TM,SBF,SSE3,DS-CPL,VMX,SMX,EST,TM2,CX16,xTPR

real mem  = 2097115136 (1999MB)
avail mem = 2018914304 (1925MB)
mainbus0 at root
bios0 at mainbus0: AT/286+ BIOS, date 07/16/09, SMBIOS rev. 2.4 @ 
0xe23e0 (35 entries)
bios0: vendor Intel Corp. version JOQ3510J.86A.1109.2009.0716.0319 
date 07/16/2009

bios0: Intel Corporation DQ35JO
acpi0 at bios0: rev 0
acpi0: tables DSDT FACP APIC WDDT MCFG ASF! DMAR ASPT WDTT SSDT SSDT 
SSDT SSDT SSDT SSDT SSDT TCPA
acpi0: wakeup devices SLPB(S4) P32_(S4) UAR1(S4) ILAN(S4) PEGP(S4) 
PEX0(S4) PEX1(S4) PEX2(S4) PEX3(S4) PEX4(S4) PEX5(S4) UHC1(S3) UHC2(S3) 
UHC3(S3) UHC4(S3) EHCI(S3) EHC2(S3) UH42(S3) UHC5(S3) UHC6(S3) AZAL(S3)

acpitimer0 at acpi0: 3579545 Hz, 24 bits
acpimadt0 at acpi0 addr 0xfee0: PC-AT compat
cpu0 at mainbus0: apid 0 (boot processor)
cpu0: apic clock running at 332MHz
cpu1 at mainbus0: apid 1 (application processor)
cpu1: Intel(R) Core(TM)2 Duo CPU E6850 @ 3.00GHz (GenuineIntel 
686-class) 2.99 GHz
cpu1: 
FPU,V86,DE,PSE,TSC,MSR,PAE,MCE,CX8,APIC,SEP,MTRR,PGE,MCA,CMOV,PAT,PSE36,CFLUSH,DS,ACPI,MMX,FXSR,SSE,SSE2,SS,HTT,TM,SBF,SSE3,DS-CPL,VMX,SMX,EST,TM2,CX16,xTPR

ioapic0 at mainbus0: apid 2 pa 0xfec0, version 20, 24 pins
ioapic0: misconfigured as apic 0, remapped to apid 2
acpiprt0 at acpi0: bus 0 (PCI0)
acpiprt1 at acpi0: bus 6 (P32_)
acpiprt2 at acpi0: bus 1 (PEX0)
acpiprt3 at acpi0: bus 2 (PEX1)
acpiprt4 at acpi0: bus 3 (PEX2)
acpiprt5 at acpi0: bus 4 (PEX3)
acpiprt6 at acpi0: bus 5 (PEX4)
acpiprt7 at acpi0: bus -1 (PEX5)
acpicpu0 at acpi0: C1, PSS
acpicpu1 at acpi0: C1, PSS
acpibtn0 at acpi0: SLPB
bios0: ROM list: 0xc/0xb400! 0xcb800/0x2200!
cpu0: Enhanced SpeedStep 2990 MHz: speeds: 2997, 2664, 2331, 1998 MHz
pci0 at mainbus0 bus 0: configuration mode 1 (bios)
pchb0 at pci0 dev 0 function 0 Intel 82Q35 Host rev 0x02
vga1 at pci0 dev 2 function 0 Intel 82Q35 Video rev 0x02
wsdisplay0 at vga1 mux 1: console (80x25, vt100 emulation)
wsdisplay0: screen 1-5 added (80x25, vt100 emulation)
intagp0 at vga1
agp0 at intagp0: aperture at 0x8000, size 0x800
inteldrm0 at vga1: apic 2 int 16 (irq 11)
drm0 at inteldrm0
Intel 82Q35 Video rev 0x02 at pci0 dev 2 function 1 not configured
Intel 82Q35 HECI rev 0x02 at pci0 dev 3 function 0 not configured
em0 at pci0 dev 25 function 0 Intel ICH9 IGP AMT rev 0x02: apic 2 int 
20 (irq 9), address 00:1c:c0:06:8f:d1
uhci0 at pci0 dev 26 function 0 Intel 82801I USB rev 0x02: apic 2 int 
18 (irq 10)
uhci1 at pci0 dev 26 function 1 Intel 82801I USB rev 0x02: apic 2 int 
21 (irq 11)
uhci2 at pci0 dev 26 function 2 Intel 82801I USB rev 0x02: apic 2 int 
17 (irq 9)
ehci0 at pci0 dev 26 function 7 Intel 82801I USB rev 0x02: apic 2 int 
17 (irq 9)

usb0 at ehci0: USB revision 2.0
uhub0 at usb0 Intel EHCI root hub rev 2.00/1.00 addr 1
ppb0 at pci0 dev 28 function 0 Intel 82801I PCIE rev 0x02: apic 2 int 
17 (irq 255)

pci1 at ppb0 bus 1
em1 at pci1 dev 0 function 0 Intel PRO/1000 PT (82572EI) rev 0x06: 
apic 2 int 16 (irq 11), address 00:1b:21:04:ec:92
ppb1 at pci0 dev 28 function 1 Intel 82801I PCIE rev 0x02: apic 2 int 
20 (irq 255)

pci2 at ppb1 bus 2
em2 at pci2 dev 0 function 0 Intel PRO/1000 PT (82572EI) rev 0x06: 
apic 2 int 17 (irq 9), address 00:1b:21:04:bb:1f
ppb2 at pci0 dev 28 function 2 Intel 82801I PCIE rev 0x02: apic 2 int 
18 (irq 255)

pci3 at ppb2 bus 3
pciide0 at pci3 

Re: Security issue, damn I've been hacked

2009-02-20 Thread Marcin Wilk

I didn't reply here for a long time, but this crack me :D
You are the king :D

Jean-Francois pisze:

Hi All,

It looks like my server running since few days has already been hacked.
It looks like a new user called 'daemon' ID 1 and a new group daemon.
User's full name 'The devil itself'  First time I find out evidence
of hack on my server, however it's only one month running !!

It looks like ntpd was the entry daemon connected to other than ntp site
but I'm not sure.
I am not sure at all about this, maybe one has changed the daemon.
After I checked the adresses that this daemon connected to, they were
very strange as webservers content (blogs, default page 'It works' and
so one ... I guess ntp servers shall not act like this).

Please find enclosed the ntpd server md5 print, one could check
if /usr/sbin/ntpd (OpenBSD 4.4) has the same print ?
md5 print of ntpd daemon (/usr/sbin) on my OpenBSD 4.4 :
a0c8961d5818b438ecbfd6c40be47a5f

Thanks for your kind help.




Re: Boost OpenBSD security - Zophie for 3.9

2006-07-03 Thread Marcin Wilk

At 07:18 2006-07-03, you wrote:

On 7/2/06, Marcin Wilk [EMAIL PROTECTED] wrote:

At 22:35 2006-07-02, you wrote:
On Sun, Jul 02, 2006 at 12:20:49PM -0700, Greg Thomas wrote:
  On 7/2/06, Tobias Ulmer [EMAIL PROTECTED] wrote:
  On Sun, Jul 02, 2006 at 03:13:59PM +0200, Tomasz Zielinski wrote:
  Hello,
 
  Zophie is patch that contains new security features for 
OpenBSD 3.9. BSD

  license. I have not tested it personaly, but probably it's worth to
  analyze it and maybe even incorporate. More info:
  http://www.0penbsd.com/zophie.html, http://akcja.0penbsd.com/zosia/
 
  I normally don't take the bait, but this one is so cute...
 
  After reading through the diffs: (not supplied for added obfusication?)
 
  - add a new sysctl to the kernel.
  - patch some userland tools.
  - If this sysctl is set, supress certain information.
 
  Rocket sience! Even the dumbest scriptkiddie could just compile
  and run these tools from the original OpenBSD sources.
 
  Probably the whole Polish Underground Group profess OpenBSD OS as a
  religion is a big subtle joke? If so, well done and thanks 
for the good

  laugh :)
 
  If it is a subtle joke I sure like the screenshots of the install.

However, note that the page is quite frank about what is being done,
from the web page quoted above:

- kern.zophie.privacy
   This setting is responsible for process privacy in finger, last,
netstat, ps, users, w, and who.
   Value 1 turns on this feature.

This, obviously, still doesn't make it very useful (if only because,
even after you've mounted everything noexec, you still have top, and so
on and so forth) - but the above should be enough to arouse suspicion.

 Joachim

Process privacy itself is done in kernel so top  other tools (like
lsof for example) will not work.
Ps, users, w  who are pathed to not show other users that are in 
this is independent with process privacy.

You may find OpenBSD that is on screenshots here:
http://nicram.sytes.net/openbsd/openbsd-3.9-i386-zophie.iso
It is extactly same OpenBSD.
 yes it is very easy to make it on Your own :) This is how KISS apps
should be made, even when they change something in kernel :)

Best Regards


Do I understand correctly I could just cvs co usr/bin/who and use the
official who and see who is online?


Yes because only process privacy is done in kernel.



Re: Boost OpenBSD security - Zophie for 3.9

2006-07-02 Thread Marcin Wilk

At 22:35 2006-07-02, you wrote:

On Sun, Jul 02, 2006 at 12:20:49PM -0700, Greg Thomas wrote:
 On 7/2/06, Tobias Ulmer [EMAIL PROTECTED] wrote:
 On Sun, Jul 02, 2006 at 03:13:59PM +0200, Tomasz Zielinski wrote:
 Hello,

 Zophie is patch that contains new security features for OpenBSD 3.9. BSD
 license. I have not tested it personaly, but probably it's worth to
 analyze it and maybe even incorporate. More info:
 http://www.0penbsd.com/zophie.html, http://akcja.0penbsd.com/zosia/

 I normally don't take the bait, but this one is so cute...

 After reading through the diffs: (not supplied for added obfusication?)

 - add a new sysctl to the kernel.
 - patch some userland tools.
 - If this sysctl is set, supress certain information.

 Rocket sience! Even the dumbest scriptkiddie could just compile
 and run these tools from the original OpenBSD sources.

 Probably the whole Polish Underground Group profess OpenBSD OS as a
 religion is a big subtle joke? If so, well done and thanks for the good
 laugh :)

 If it is a subtle joke I sure like the screenshots of the install.

However, note that the page is quite frank about what is being done,
from the web page quoted above:

- kern.zophie.privacy
  This setting is responsible for process privacy in finger, last,
netstat, ps, users, w, and who.
  Value 1 turns on this feature.

This, obviously, still doesn't make it very useful (if only because,
even after you've mounted everything noexec, you still have top, and so
on and so forth) - but the above should be enough to arouse suspicion.

Joachim


Process privacy itself is done in kernel so top  other tools (like 
lsof for example) will not work.
Ps, users, w  who are pathed to not show other users that are in  
this is independent with process privacy.


You may find OpenBSD that is on screenshots here: 
http://nicram.sytes.net/openbsd/openbsd-3.9-i386-zophie.iso

It is extactly same OpenBSD.
 yes it is very easy to make it on Your own :) This is how KISS apps 
should be made, even when they change something in kernel :)


Best Regards



Re: Apache: Odd Errors with HTTPS and NameVirtualHosts

2006-05-25 Thread Marcin Wilk

Hi
I was wrong  i'm sorry for my mistake.
I didn't veryify is it really use more than one certificate because i 
was shure that it must wor that's why (i didn't think that there may 
be function to choose some other, that is not working why it is 
added then?:S).

I've just try how it's work  it uses only 1 certificate for all SSL vhosts :/
Sorry again for misinformation about that.

At 06:25 2006-05-25, you wrote:

On 5/24/06, Marcin Wilk [EMAIL PROTECTED] wrote:

I'm using OpenBSD 3.7 with default Apache with SSL over two
VirtualHosts witht he same IP.


Really.  Have you actually verified that your client receives
different server certificates when you connect?  Or do you use the
same certificate for both virtual hosts?

(I don't understand why you hid the hostnames when you showed the
snippet of your httpd.conf; if you had used real hostnames I wouldn't
be sending this email as I would have been able to get the answers
myself.  It's not like your host won't have been scanned at some point
by worms...)


Philip Guenther




Re: Apache: Odd Errors with HTTPS and NameVirtualHosts

2006-05-24 Thread Marcin Wilk

Hi
I'm using OpenBSD 3.7 with default Apache with SSL over two 
VirtualHosts witht he same IP.


Here is how it works in there:

NameVirtualHost *:80
NameVirtualHost *:443

VirtualHost *
ServerName myservername.com
/VirtualHost

VirtualHost *:443
ServerName needssl.myservername.com
DocumentRoot /var/www/htdocs/mydomainssl
SSLEngine on
SSLCertificateFile /etc/ssl/server-ssl2.crt
SSLCertificateKeyFile /etc/ssl/private/ssl2.key
/VirtualHost

second ssl is just default:

VirtualHost _default_:443
DocumentRoot /var/www/htdocs
ServerName myservername.com
ServerAdmin i'[EMAIL PROTECTED]
ErrorLog logs/error_log
TransferLog logs/access_log

SSLEngine on
SSLCertificateFile/etc/ssl/server.crt
SSLCertificateKeyFile /etc/ssl/private/server.key
/VirtualHost

As You can see the main difference are certificate files.

At 00:51 2006-05-25, you wrote:

Okay, but this is only part of the problem from what I understand from
reading the provided link. How can I have multiple sites on the same
server then if I don't use name-based virtual hosts without using
multiple IP addresses?

Any idea about the other issue I'm having?

Best,
Adam

-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf
Of Spruell, Darren-Perot
Sent: Wednesday, May 24, 2006 1:42 PM
To: misc@openbsd.org
Subject: Re: Apache: Odd Errors with HTTPS and NameVirtualHosts

From: [EMAIL PROTECTED]
 At startup of Apache I get a warning notice of [warn] NameVirtualHost
 xxx.xxx.xxx.xxx:443 has no VirtualHosts.

 I have two virtual hosts for port 80 based on IP to ServerName. I then

 have one virtual host for SSL port 443. I have NameVirtualHost
 xxx.xxx.xxx.xxx:80 and NameVirtualHost xxx.xxx.xxx.xxx:443.

 Any ideas or suggestions how to resolve these problems would be much
 appreciated.

http://httpd.apache.org/docs/1.3/vhosts/name-based.html

Name-based virtual hosting cannot be used with SSL secure servers
because of the nature of the SSL protocol.

DS


Marcin Nicram Wilk

Homepage:
http://nicram.sytes.net
Maintainer of:
http://ng.pl.eu.org
http://mga.pl.eu.org

AQQ:66491 , GG:2941385 , ICQ:126530466
YMAIM:nicr4m , Skype:nicrame
Tlen:[EMAIL PROTECTED] , MSN:[EMAIL PROTECTED]
Jabber:[EMAIL PROTECTED], [EMAIL PROTECTED]
IRC: http://www.ii2.org/user.php?nick=nicram 



Re: The Apache Question

2006-02-07 Thread Marcin Wilk

Why change that
It is apache, but with some pathes. But still iti s apache (changing 
name may be bad for futurre coders, that wouldl ike to make somep 
lugin for OpenBSD http server,  before they will start to make it, 
theyw ill have to learn, that httpd in OBSD is just apache 1.3).


Besides i don't understand why so many people would like to change 
current web server, when it's working fine  well  it is enough secure?

Is there any realy nice argument besides the digit ?
I think no, so, why people always ask that

At 22:11 2006-02-07, you wrote:
Wouldn't it be better then to start a spinoff project (openhttpd or 
something comes to mind) instead of still calling it apache httpd 1.3?


Stuart Henderson wrote:

On 2006/02/07 21:23, RedShift wrote:

I've noticed OpenBSD still uses Apache httpd 1.3.

Well, not exactly. Diff the source trees and you'll see it's not
quite the same thing...




Re: Audio problem - cannot play from 2 ources in the same time

2006-01-15 Thread Marcin Wilk

At 21:57 2006-01-14, you wrote:

On Sat, Jan 14, 2006 at 09:15:54PM +0100, Marcin Wilk wrote:
 Hello!

 At first, here are some LOG files that may help:
 dmesg: http://nicram.sytes.net/openbsd/dmesg.txt
 audioctl -a: http://nicram.sytes.net/openbsd/audioctl.txt
 mixerctl -a: http://nicram.sytes.net/openbsd/mixerctl.txt

 My system is OpenBSD release 3.8 with generic kernel on AMD64
 platform (AMD Sempron 2500+ 64bit).
 Sound card that i got is Creative Labs SoundBlaster PCI 128 (4
 speakers version on CT588 chipset).

 The problem is that when i play music with Mplayer (on KDE using
 GMPlayer) it works fine, tot he moment when KDE play some systems
 sound (when warning window appear or something).
 If it happend, them Mplayer can't play audio files  present error
 windows: http://nicram.sytes.net/openbsd/maplayer2.png ([AO SUN]
 Can't open audio device /dev/audio, Device busy - nosound.).
 If i will wait some time (30-60 seconds) then it may play again
 without problems.
 Ahh about mplayer.. Everytime i'm start gmplayer or whan i open
 anything this message is appear:
 http://nicram.sytes.net/openbsd/mplayer-start.png .

 Another nice thing is with XMMS. When i set it to use SUN audio
 driver than same problem like with Mplayer appear.
 But sometimes i may solve it.. by seting XMMS to use eSound driver.
 But sometimes it don't help, but make XMMS freeze like that for many
 minutes: http://nicram.sytes.net/openbsd/xmms-freeze.png .

 I have made ps auxw save when it is freezed:
 http://nicram.sytes.net/openbsd/xmms-freeze.txt .

 Other info that may help:
 Using standard installation. KDE  all other software is installed
 from packages from official FTP.

 I thionk that there is no fullduplex support for this sound card on
 OpenBSD.If i'm right the questin is: will it be done some day? or
 there is no chance for that? (i understand that it's not important
 for this OS).

 Best Regards
 Marcin Wilk


I might be wrong, but it seems to be normal behaviour. It is not
possible (as far as i know) that more than one application opens the
audio device.
To handle this, there are several audio daemons that provide access from
more than one application to a single soundcard (and mix them).  Some
common used ones are artsd on KDE and esd (I prefer this one, because
it's small and does not use so much cpu).  Gnome has it's own I guess.
I bet if you do a pkill artsd, the problems with mplayer and xmms are
gone (artsd frees the sound device after a specific amount of time, that
is your 30-60 seconds).

A better solution is to configure mplayer, xmms and other apps to use
arts (Kde apps do this by default). There is a plugin available for
xmms.  mplayer can also be configured, see it's manpage...

Tobias


Ahm. thanks You for explanation.
I will use arts or something then.

Best Regards
Marcin Wilk



Audio problem - cannot play from 2 ources in the same time

2006-01-14 Thread Marcin Wilk

Hello!

At first, here are some LOG files that may help:
dmesg: http://nicram.sytes.net/openbsd/dmesg.txt
audioctl -a: http://nicram.sytes.net/openbsd/audioctl.txt
mixerctl -a: http://nicram.sytes.net/openbsd/mixerctl.txt

My system is OpenBSD release 3.8 with generic kernel on AMD64 
platform (AMD Sempron 2500+ 64bit).
Sound card that i got is Creative Labs SoundBlaster PCI 128 (4 
speakers version on CT588 chipset).


The problem is that when i play music with Mplayer (on KDE using 
GMPlayer) it works fine, tot he moment when KDE play some systems 
sound (when warning window appear or something).
If it happend, them Mplayer can't play audio files  present error 
windows: http://nicram.sytes.net/openbsd/maplayer2.png ([AO SUN] 
Can't open audio device /dev/audio, Device busy - nosound.).
If i will wait some time (30-60 seconds) then it may play again 
without problems.
Ahh about mplayer.. Everytime i'm start gmplayer or whan i open 
anything this message is appear: 
http://nicram.sytes.net/openbsd/mplayer-start.png .


Another nice thing is with XMMS. When i set it to use SUN audio 
driver than same problem like with Mplayer appear.
But sometimes i may solve it.. by seting XMMS to use eSound driver. 
But sometimes it don't help, but make XMMS freeze like that for many 
minutes: http://nicram.sytes.net/openbsd/xmms-freeze.png .


I have made ps auxw save when it is freezed: 
http://nicram.sytes.net/openbsd/xmms-freeze.txt .


Other info that may help:
Using standard installation. KDE  all other software is installed 
from packages from official FTP.


I thionk that there is no fullduplex support for this sound card on 
OpenBSD.If i'm right the questin is: will it be done some day? or 
there is no chance for that? (i understand that it's not important 
for this OS).


Best Regards
Marcin Wilk



Re: system processes

2006-01-04 Thread Marcin Wilk

Hi
Zophie can help You with that:
http://www.0penbsd.com/zophie.html

Best Regards

At 21:59 2006-01-04, you wrote:

-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1

How I can make that non-root (or non-wheel) user's cannot view processes
of other users?
iD8DBQFDvDc+oN5ZK8eGpqMRAoGiAKDGZI9Zs5fy91d5mQK/k92uXcZoAQCg8ciP
rIpVkKsS1nUH3MZgZeTu13Q=
=BSjJ
-END PGP SIGNATURE-




Re: openbsd web site design proposals (from HOTO write bad docs)

2005-11-28 Thread Marcin Wilk

If someone care the layout of book instead the content, he shouldn't read it.
If someone care  the layout of OpenBSD website more than content, he 
should change OS,  use some other, that got nice website.


At 12:20 2005-11-28, you wrote:

hmm, on Mon, Nov 28, 2005 at 12:15:30PM +0100, Marcin Wilk said that
 Current website is vry useful.
 Useful don't have to be nice.
 From my poin of view it shows how OpenBSD is working. Maybe design
 isn't  the most nice, but inside there is best documentation ever.
 The same is with OS itself. It's not the most nice OS (no flowers on
 letter, no clouds  angels on the KDE icons) but the power of source
 make it the most stable  secure OS around. So if website present how
 OS is.. Then it should not be changed.


but nobody talks about the content.  the content is excellent!
would it be a sin to make it a little more pleasing to the eye?

a book can be very good inside, but if the form is disturbing
doesn't that make the reading experience weaker maybe
even nerving?

-f
--
dyslexics of the world: untie!




Apache UserDir - access from web browser

2005-11-22 Thread Marcin Wilk

Hello
Some time ago how can i do that:
Apache run in chroot  may read users website folders,
FTP for every user run in chroot.
The solution was to make user directories in /var/www/users/USERNAME 
 make apache read their websites from /var/www/users/USERNAME/www directory.
So i do that  chroot for apache  ftp work very well,  websites are 
accessible with http://serverdomain/~username/ .
The problem is that when some user got some website  put in it links 
like that:

a href=/somelocation/somefile.htmlsomething/a it will not work correct.
It will try to load http://serverdomain/somelocation/somefile.html 
instead of http://serverdomain/~username/somelocation/somefile.html .
When I enter into some user directory from web browser 
(http://serverdomain/~username/)  if folder is without index.html or 
other index file there is link call Parent Directory that is 
directing onto http://serverdomain/ but it should not be there.


Part of my Apache configuration about user dirs:

UserDir /var/www/users/*/www/

Directory /users/*/www
AllowOverride FileInfo AuthConfig Limit
Options MultiViews Indexes SymLinksIfOwnerMatch IncludesNoExec
Limit GET POST OPTIONS PROPFIND
Order allow,deny
Allow from all
/Limit
Limit PUT DELETE PATCH PROPPATCH MKCOL COPY MOVE LOCK UNLOCK
Order deny,allow
Deny from all
/Limit
/Directory

What can i do with that? What did i do wrong here?

Best Regards



Re: Chrooted apache with chrooted ftp - how users can upload websites now?

2005-11-05 Thread Marcin Wilk

Thank You all for respond!

My ftp sessions were in chroot by /etc/ftpchroot ofcourse, so users 
cannot read anything outside their home folders. I didn't know how to 
make them got access into other folder (/var/www/users/username), but 
only there + home.
As shell i'm using nologin because it is for website hosting only. 
So in my case i think i will just make /var/www/users/username their 
home directories.


I remember that there was some software (some ftp server) that read 
supported folders for opening from file that was in user home dir. 
You may put there just /home/username  /var/www/users/username, put 
link in /home/user/ folder  he may access to both directories 
specified but nothing else. To bad ftpd don't got such option. At 
least i'm happy because the solution is simple like making users home 
directories in /var/www/users/username.


Thank You all!

Best Regards



Chrooted apache with chrooted ftp - how users can upload websites now?

2005-11-04 Thread Marcin Wilk

Hello!
I was searching  i can't find answer.
I got OpenBSD 3.7 with default Apache (chrooted)  i'm using ftp 
server fdrom base system enabled by inetd.
I would like to make users not be able to read anything except their 
own /home/user folder  /var/www/users/user folder.

How can i do that with such configuration?
Is there any way to do that, or do i have to use some other FTP server?
If i have to use other ftp, what will give features that i need?

Best Regards



Re: OpenBSD's 10th birthday

2005-10-18 Thread Marcin Wilk

So happy bithday OpenBSD!

Thanks again for this project!

At 11:00 2005-10-18, you wrote:

Now it is really OpenBSD's 10th birthday ;)




Re: Happy Birthday OpenBSD

2005-10-14 Thread Marcin Wilk

HAPPY BIRTHDAY OPENBSD !!!

Thank You Theo De Raadt for 10 years of hard work under OpenBSD!
Thank You community for support, hacking  learning OpenBSD!

VIVA LA OpenBSD!
Wszystkiego najlepszego!

At 11:53 2005-10-14, you wrote:

  
 HAPPY BIRTHDAY OPENBSD 
 
\   ^__^
 \  (oo)\___
(__)\   )\/\
||w |
|| ||


10`s years :)




Audio play too fast on AC97 onboard

2005-10-11 Thread Marcin Wilk
 dev 9 function 0 3Com 3c905B 100Base-TX rev 0x24: irq 
11, address 00:10:4b:9c:31:3f

exphy0 at xl0 phy 24: 3Com internal media interface
isa0 at pcib0
isadma0 at isa0
pckbc0 at isa0 port 0x60/5
pckbd0 at pckbc0 (kbd slot)
pckbc0: using irq 1 for kbd slot
wskbd0 at pckbd0 (mux 1 ignored for console): console keyboard, using 
wsdisplay0

pmsi0 at pckbc0 (aux slot)
pckbc0: using irq 12 for aux slot
wsmouse0 at pmsi0 mux 0
pcppi0 at isa0 port 0x61
midi0 at pcppi0: PC speaker
sysbeep0 at pcppi0
lpt1 at isa0 port 0x278/4: polled
npx0 at isa0 port 0xf0/16: using exception 16
pccom0 at isa0 port 0x3f8/8 irq 4: ns16550a, 16 byte fifo
fdc0 at isa0 port 0x3f0/6 irq 6 drq 2
biomask eb6d netmask ef6d ttymask ff6f
pctr: user-level cycle counter enabled
mtrr: Pentium Pro MTRR support
wd0c:  aborted command, interface CRC error reading fsbn 0 (wd0 bn 0; 
cn 0 tn 0 sn 0), retrying

wd0: soft error (corrected)
dkcsum: wd0 matched BIOS disk 80
sd0(atapiscsi0:0:0): Check Condition (error 0x70) on opcode 0x0
SENSE KEY: Not Ready
 ASC/ASCQ: Medium Not Present
sd0(atapiscsi0:0:0): Check Condition (error 0x70) on opcode 0x1b
SENSE KEY: Not Ready
 ASC/ASCQ: Medium Not Present
root on wd0a
rootdev=0x0 rrootdev=0x300 rawdev=0x302
wd0: transfer error, downgrading to Ultra-DMA mode 3
wd0(pciide0:0:0): using PIO mode 4, Ultra-DMA mode 3
sd0(pciide0:0:1): using PIO mode 0
wd0a:  aborted command, interface CRC error reading fsbn 16 of 16-31 
(wd0 bn 109691836; cn 108821 tn 4 sn 16), retrying

wd0: soft error (corrected)
auvia0: codec invalid
auvia0: codec invalid

Can anyone suggest some solution for me please ?

Best Regards
Marcin Wilk



Re: Audio play too fast on AC97 onboard

2005-10-11 Thread Marcin Wilk

Thank You all for help!

I have made /etc/mplayer/mplayer.conf file  put there:

srate=48000
framedrop=1
fs=1
af-adv=force=1
vf=pp=lb

For all other software i have put in the /etc/esd.conf file:

auto_spawn=1
spawn_options=-r 48000 -nobeeps -as 2
spawm_wait_ms=100

 i will ocnfigure all other software for using esound.

Thank You all again :)