Re: SV: Breakin attempt

2011-10-26 Thread Peter N. M. Hansteen
/hailmary/ and the inital blog post about the phenomenon, http://bsdly.blogspot.com/2008/12/low-intensity-distributed-bruteforce.html - Peter -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://bsdly.blogspot.com/ http://www.bsdly.net/ http://www.nuug.no/ Remember to set

Re: The book of pf...

2011-01-19 Thread Peter N. M. Hansteen
, but some other relevant network config details changed between 2007 and 2010, and the second edition reflects this. - Peter -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://bsdly.blogspot.com/ http://www.bsdly.net/ http://www.nuug.no/ Remember to set the evil bit on all

Re: earlier FBSD distributions...

2010-02-21 Thread Peter N. M. Hansteen
/FreeBSD-Archive/old-releases/i386/ or thereabouts has what looks like a fairly complete collection of FreeBSD releases. For older stuff including 386bsd and 4.4BSD-lite there's the archive at ftp://minnie.tuhs.org/BSD/ -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http

Re: How to get my Dad's Win2k system to access internet through my FreeBSD 6.2 system

2008-10-14 Thread Peter N. M. Hansteen
), but I would recommend that you pick literature that enables you to learn the basics of TCP/IP as well as the actual commands needed. Looking into packet filtering for basic protection won't hurt either. With those keywords in hand, you should be able to dig up something useful. - Peter -- Peter N

Re: Auto blacklist ssh connections ...

2008-09-18 Thread Peter N. M. Hansteen
, but being sort of a PF guy I found the PF-based solution quite attractive and flexible. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://bsdly.blogspot.com/ http://www.bsdly.net/ http://www.nuug.no/ Remember to set the evil bit on all malicious network traffic delilah

Re: pf to block against DDoS?

2008-09-04 Thread Peter N. M. Hansteen
to the part about state tracking and bruteforcers at http://home.nuug.no/~peter/pf/en/bruteforce.html. (and of course there's the book, nudge, nudge) - P -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://bsdly.blogspot.com/ http://www.bsdly.net/ http://www.nuug.no

Re: Building a FreeBSD based mail server

2008-07-31 Thread Peter N. M. Hansteen
greytrapping for added bonus) - P -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://bsdly.blogspot.com/ http://www.bsdly.net/ http://www.nuug.no/ Remember to set the evil bit on all malicious network traffic delilah spamd[29949]: 85.152.224.147: disconnected after 42673 seconds

Re: Quick spamd question

2008-04-07 Thread Peter N. M. Hansteen
on for a while, but the existence of a WHITE entry will ensure that the delivery will succeed on the next attempt. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://bsdly.blogspot.com/ http://www.bsdly.net/ http://www.nuug.no/ Remember to set the evil bit on all

Re: top posting (off-topic)

2007-11-23 Thread Peter N. M. Hansteen
Brent Jones [EMAIL PROTECTED] writes: I for one prefer top posting, as usually I have read a particular thread http://www.asciiartfarts.com/20011201.html HTH, HAND -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://bsdly.blogspot.com/ http://www.datadok.no/ http

Re: Odd PF Denied Message

2007-10-18 Thread Peter N. M. Hansteen
if that doesn't help -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://bsdly.blogspot.com/ http://www.datadok.no/ http://www.nuug.no/ Remember to set the evil bit on all malicious network traffic delilah spamd[29949]: 85.152.224.147: disconnected after 42673 seconds

Re: PF NAT, how to forward GRE?

2007-09-28 Thread Peter N. M. Hansteen
a matching pass rule. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://bsdly.blogspot.com/ http://www.datadok.no/ http://www.nuug.no/ Remember to set the evil bit on all malicious network traffic delilah spamd[29949]: 85.152.224.147: disconnected after 42673 seconds

Re: spammers harvesting emaill address from this list

2007-08-23 Thread Peter N. M. Hansteen
descent into the spamd tarpit. Details via selected posts in my blog (the blogspot.com ref in the signature). Cheers, -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://bsdly.blogspot.com/ http://www.datadok.no/ http://www.nuug.no/ Remember to set the evil bit on all

Re: spammers harvesting emaill address from this list

2007-08-23 Thread Peter N. M. Hansteen
that spamd from OpenBSD 4.1 onwards differs in several important ways from earlier versions. And also, it's important not to confuse this spamd with the program with the same name out of spamassassin. Cheers, -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http

Re: spammers harvesting emaill address from this list

2007-08-23 Thread Peter N. M. Hansteen
if your own blacklist gets updated and pruned regularly too. - P [1] http://home.nuug.no/~peter/pf/ (several formats), spamd parts start at http://home.nuug.no/~peter/pf/en/spamd.html [2] http://www.freebsddiary.org/pf.php -- Peter N. M. Hansteen, member of the first RFC 1149 implementation

Re: How to do Spam Control in FreeBSD

2007-05-23 Thread Peter N. M. Hansteen
a bit by introducing greylisting via PF (packet filter) plugin spamd, which can just as easily run on a separate machine such as your gateway. There are a few in-MTA options too, of course. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149

Re: How do I prevent unauthorized ssh login attempts?

2007-04-27 Thread Peter N. M. Hansteen
unit and puts the too-chatty ones in a doghouse list of addresses. One way to do it is described at http://home.nuug.no/~peter/pf/en/bruteforce.html -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http

Re: advice on anti-spam tools

2007-04-03 Thread Peter N. M. Hansteen
mail server kills an awful lot of spam. keep spamassassin in there by all means, but after you start greylisting you most likely will see the load on the machine drop considerably. it's fairly easy to implement too. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http

Re: Onpening and Closing ports

2007-02-12 Thread Peter N. M. Hansteen
Dave Carrera [EMAIL PROTECTED] writes: Had a little nasty person trying to break my sshd on port 22. You can head them off rather easily with a short PF rule set, see eg http://home.nuug.no/~peter/pf/en/bruteforce.html. They can actually be fun to watch :) -- Peter N. M. Hansteen, member

Re: Packet rate limiter

2007-02-08 Thread Peter N. M. Hansteen
(or k,M,G multiples of) of percentage of available bandwidth, not number of packets. Your groups of source addresses could be maintained as tables for easy manipulation. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http

Re: thwarting repeated login attempts

2007-01-27 Thread Peter N. M. Hansteen
the suggestions in my tutorial at http://home.nuug.no/~peter/pf/en/bruteforce.html (http://home.nuug.no/~peter/pf/ for the full manuscript in a variety of formats). -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http

Re: Mystery Spam Piling Up in Mqueue

2007-01-15 Thread Peter N. M. Hansteen
into your favorite search engine. Cheers, -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all the spammers The Usenet Bard, Twice-forwarded tales delilah spamd[29949]: 85.152.224.147

Re: let somebody watch my actions over the network

2007-01-14 Thread Peter N. M. Hansteen
where things went wrong if they do. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all the spammers The Usenet Bard, Twice-forwarded tales delilah spamd[29949]: 85.152.224.147

Re: Please Help! How to STOP them...

2007-01-13 Thread Peter N. M. Hansteen
done with the other firewalls FreeBSD has on tap) with 'overload' rules, ie http://home.nuug.no/~peter/pf/en/bruteforce.html -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all

Re: sshd break-in attempt

2007-01-05 Thread Peter N. M. Hansteen
eg http://home.nuug.no/~peter/pf/en/bruteforce.html Cheers, -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all the spammers The Usenet Bard, Twice-forwarded tales Dec 22 02:13:59

Re: Spam prevention

2006-11-29 Thread Peter N. M. Hansteen
of greylisting (possibly supplemented with a tarpit for known bad senders). The greylisting/tarpitting part is really easy to do with PF, see eg http://home.nuug.no/~peter/pf/en/spamd.html (part of my packet filtering for fun and profit tutorial) -- Peter N. M. Hansteen, member of the first RFC

Re: Blocking SSH Brute-Force Attacks: What Am I Doing Wrong?

2006-11-13 Thread Peter N. M. Hansteen
feature, see eg http://home.nuug.no/~peter/pf/en/bruteforce.html (part of my EuroBSDCon and other places tutorial). See http://home.nuug.no/~peter/pf/ for a choice of formats and languages. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149

Re: Making a PF Rule that i can process with a graphing application

2006-11-06 Thread Peter N. M. Hansteen
David Schulz [EMAIL PROTECTED] writes: process with zabbix agent. The problem is, i dont use ipfw, but pf, and i dont know how a rule like that could look like using pf. Maybe pfstat (/usr/ports/sysutils/pfstat) is worth looking into? -- Peter N. M. Hansteen, member of the first RFC 1149

Re: Wlan Firewall / Reefedge Dolphin equivalent

2006-11-02 Thread Peter N. M. Hansteen
Ian Lord [EMAIL PROTECTED] writes: It's an all in one solution that authorize wlan lan users before allowing them access. It also filter traffic based on their username. you could roll your own without too much trouble using pf and authpf. -- Peter N. M. Hansteen, member of the first RFC

Re: pfspamd greylisting stuttering at everything

2006-10-27 Thread Peter N. M. Hansteen
. ;-) Well, fwiw it's one of the things I will be writing about in the near future. Good luck, -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all the spammers The Usenet Bard

Re: pfspamd greylisting stuttering at everything

2006-10-23 Thread Peter N. M. Hansteen
and greylisting at the moment is this recent message to openbsd-misc: http://marc.theaimsgroup.com/?l=openbsd-miscm=116136841831550w=2 -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill

Re: Limit p2p with pf n altq

2006-09-26 Thread Peter N. M. Hansteen
$iptostarve to any port $allowedports keep state queue notalot - you get the idea. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all the spammers The Usenet Bard, Twice

Re: ipfw and temporary port access

2006-09-20 Thread Peter N. M. Hansteen
OpenSSH supported authentication methods you require before loading the rules which actually let traffic through. Cheers, -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all the spammers

Re: sshd brute force attempts?

2006-09-19 Thread Peter N. M. Hansteen
-rate 15/5, \ overload bruteforce flush global) for more detailed discussion see eg http://www.bgnett.no/~peter/pf/en/bruteforce.html -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no

Re: ipfw and temporary port access

2006-09-18 Thread Peter N. M. Hansteen
Noah [EMAIL PROTECTED] writes: Any clues if a system like this is a already coded and out there somewhere? Apart from the ipfw reqirement, you have just described authpf, see eg http://www.freebsd.org/cgi/man.cgi?query=authpfapropos=0sektion=0manpath=FreeBSD+6.1-RELEASEformat=html -- Peter N

Re: pf firewall for a server

2006-07-26 Thread Peter N. M. Hansteen
, and you could probably do worse than spend a few moments browsing the PF docs or for that matter my rather basic PF tutorial at http://www.bgnett.no/~peter/pf/ to familiarize yourself with the system. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no

Re: PF spamd : trouble with homemade blacklist

2006-05-27 Thread Peter N. M. Hansteen
. See if it makes a difference. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all the spammers The Usenet Bard, Twice-forwarded tales 20:11:56 delilah spamd[26905]: 146.151.48.74

Re: pf: changing tables with rules

2006-05-24 Thread Peter N. M. Hansteen
/bruteforce.html. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all the spammers The Usenet Bard, Twice-forwarded tales 20:11:56 delilah spamd[26905]: 146.151.48.74: disconnected after

Re: Domain Name

2006-04-28 Thread Peter N. M. Hansteen
N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all the spammers The Usenet Bard, Twice-forwarded tales 20:11:56 delilah spamd[26905]: 146.151.48.74: disconnected after 36099 seconds

Re: pf problem with table

2006-04-20 Thread Peter N. M. Hansteen
, ie set limit table-entries 15 in your pf.conf would set the upper limit for number of entries in a table to 15. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all

Re: repeated ssh login attempts/failure/break-in attempts from kiddy script

2006-04-02 Thread Peter N. M. Hansteen
this route, you might want to use expiretable (/usr/ports/security/expiretable) to trim the contents of the table after a while (I tend to use 24 hours expiry). -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http

Re: Download

2006-02-20 Thread Peter N. M. Hansteen
pointers. I suppose even people not in your area should be able to burn you an install CD and mail it to you if that is what you need to get started. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no

Re: fine grained firewall?

2006-02-17 Thread Peter N. M. Hansteen
andrew clarke [EMAIL PROTECTED] writes: Is it possible to configure the FreeBSD firewall to block ports on a per-user or per-executable basis? If your firewall is PF, you can use authpf(8) to configure per user rule sets. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation

Re: How to tell if IPF is running?

2006-01-24 Thread Peter N. M. Hansteen
want to look at the expiretable utility (http://expiretable.fnord.se/). -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all the spammers The Usenet Bard, Twice-forwarded tales

Re: dlink wireless adapter

2005-12-27 Thread Peter N. M. Hansteen
Imran Imtiaz [EMAIL PROTECTED] writes: how can i make my dlink DWL-G122 wireless usb adapter work with freebsd? IIRC it's supported by the ural driver. With that knowledge and the wireless networking chapter in the Handbook, you should be fine. -- Peter N. M. Hansteen, member of the first

Re: ral(4) not working on 6.0

2005-11-15 Thread Peter N. M. Hansteen
'ifconfig ath0' showa status: associated, and finally # dhclient ath0 should get you an IP address, again assuming a DHCP server is within reach. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First

Re: PF default to deny

2005-09-26 Thread Peter N. M. Hansteen
that does - http://www.bgnett.no/~peter/pf/ -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all the spammers The Usenet Bard, Twice-forwarded tales

Re: For administrators setting-up pf

2005-09-26 Thread Peter N. M. Hansteen
://www.benzedrine.cx/transquid.html -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all the spammers The Usenet Bard, Twice-forwarded tales

Re: Illegal access attempt - FreeBSD 5.4 Release - please advise

2005-08-25 Thread Peter N. M. Hansteen
overload tableofbadbuys in your pass rule. See pf.conf(5) for details. There's probably some magic around to make this doable with other firewalls as well. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http

Re: Big delay between login as: and Password:

2005-05-13 Thread Peter N. M. Hansteen
these are common when either your reverse lookup isn't correct or the name servers your domain/IP range are unavailable or slow in answering. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we

Re: where is 5.4 miniinst.iso file

2005-05-09 Thread Peter N. M. Hansteen
should not be surprised that one or more iso files have not appeared where you expect them yet. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all the spammers The Usenet Bard

Re: HELP ME WITH PF! (5th plea)

2005-04-29 Thread Peter N. M. Hansteen
to disable inetd, and switch ftpd with pure-ftpd? You could try running ftpsesame or pftpx instead. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all the spammers The Usenet

Re: HELP ME WITH PF! (5th plea)

2005-04-29 Thread Peter N. M. Hansteen
little bits of ftp through NAT and/or firewalls magic comes in very handy. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all the spammers The Usenet Bard, Twice-forwarded tales

Re: PF problem!!!

2005-04-25 Thread Peter N. M. Hansteen
, but none which let traffic in on the internal interface. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all the spammers The Usenet Bard, Twice-forwarded tales

Re: FreeBSD vs Linux

2005-04-21 Thread Peter N. M. Hansteen
(or perhaps not in this particular case). I enjoy reading Daemon News (http://daemonnews.org) for a variety of reasons, and I vaguely remember some sensible articles on this very topic there. That URL also takes you within clicking distance of a good number of useful BSD sites. -- Peter N. M

Re: PF: Blocks my workstation on boot

2005-04-21 Thread Peter N. M. Hansteen
$allowedports keep state or even pass from $int_if:network to any port $allowedports keep state (if you can do without the extra per interface housekeeping) would make things a bit easier. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http

Re: .iso

2005-04-05 Thread Peter N. M. Hansteen
in 4.11 - kde and gnome respectively - and I think tihs will also be the case for 5.n releases from 5.4 onwards). disc2 is traditionally the live filesystem, while miniinst is for a minimal install. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no

Re: Problem with PF

2005-03-31 Thread Peter N. M. Hansteen
on very little information. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all the spammers The Usenet Bard, Twice-forwarded tales

Re: Problem with PF

2005-03-31 Thread Peter N. M. Hansteen
has not been properly configured. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all the spammers The Usenet Bard, Twice-forwarded tales

Re: mot de passe root

2005-03-26 Thread Peter N. M. Hansteen
user would get along fine on a typical desktop system in their local language, IME. On the other hand your friendly sysadmin would likely be at a great disadvantage with little or no English. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149

Re: mot de passe root

2005-03-26 Thread Peter N. M. Hansteen
, there's been a lot of localization related trouble there. But then we're relatively safe from the secret brainfarts of Microsoft developers here. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First

Re: mot de passe root

2005-03-26 Thread Peter N. M. Hansteen
/programming language keywords (yes, I have more than 15 years' experience in the localization industry, I've seen quite a bit of such foolishness) and the software is sanely written, messages are fairly straightforward and risk-free to translate. . -- Peter N. M. Hansteen, member of the first RFC

Re: OpenBSD's pf and traffic

2005-03-23 Thread Peter N. M. Hansteen
any replies sent to the list only. Anyway the mailing list's home page is at http://www.benzedrine.cx/mailinglist.html (Sorry for the delay - bgnett's mail servers apparently were a bit overwhelmed some worm or other, leaving useful traffic queued rather longer than I appreciate.) -- Peter N. M

Re: OpenBSD's pf and traffic

2005-03-22 Thread Peter N. M. Hansteen
-in keep state and so on. Hope this helps. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all the spammers The Usenet Bard, Twice-forwarded tales

Re: OpenBSD's pf and traffic

2005-03-22 Thread Peter N. M. Hansteen
initiated from the inside would match the pass out rule's counters, while connections opened from the outside would count on the pass in rules. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we

Re: OpenBSD's pf and traffic

2005-03-22 Thread Peter N. M. Hansteen
an angle we haven't thought of. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all the spammers The Usenet Bard, Twice-forwarded tales

Re: Installing FreeBSD on Windows/Linux Shared Enviroment

2005-03-21 Thread Peter N. M. Hansteen
wipe out stuff it does not understand. There are several howtos out there within search engine reach which will be helpful. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all

Re: OpenBSD's pf and traffic

2005-03-20 Thread Peter N. M. Hansteen
of bytes and packets passed or blocked. If you use labels in your pass rules, you'll get per label counters as well. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all the spammers

Re: OpenBSD's pf and traffic

2005-03-20 Thread Peter N. M. Hansteen
the relevant counters only once. Perhaps you know where I can find workable example of this? Randal Schwartz has a nice article called Monitoring Net Traffic with OpenBSD's Packet Filter at http://www.samag.com/documents/s=9053/sam0403j/0403j.htm -- Peter N. M. Hansteen, member of the first RFC

sym driver broken in 5.3?

2005-03-18 Thread Peter N. M. Hansteen
know you're dying to ask - we do rsync to an off-site location twice a day) - P -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all the spammers The Usenet Bard, Twice-forwarded

Re: IPFW or pf?

2005-03-16 Thread Peter N. M. Hansteen
alone otherwise. Removing all traces of pf would likely take a bit of effort. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all the spammers The Usenet Bard, Twice-forwarded

Re: IPFW or pf?

2005-03-16 Thread Peter N. M. Hansteen
prefer the Norwegian version) -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all the spammers The Usenet Bard, Twice-forwarded tales

Re: [repost] ip.forwarding with pf

2005-03-04 Thread Peter N. M. Hansteen
, you would normally use rc.conf settings, ie gateway_enable=YES #for ipv4 ipv6_gateway_enable=YES #for ipv6 to enable gatewaying. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill

Re: pf issues with anchor

2005-03-01 Thread Peter N. M. Hansteen
the anchor in the main pf.conf file produce different results? -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all the spammers The Usenet Bard, Twice-forwarded tales

Re: Why in the world you should have a vote: was RE: Please don't change Beastie to another crap logo suchas NetBSD!!!

2005-02-13 Thread Peter N. M. Hansteen
Anthony Atkielski [EMAIL PROTECTED] writes: Why are people asserting their own copyrights in the code? Because they wrote the software in question, perhaps? -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http

Re: Why in the world you should have a vote: was RE: Please don't change Beastie to another crap logo suchas NetBSD!!!

2005-02-13 Thread Peter N. M. Hansteen
holder who withdraws a license and an entire package can become unusable. i assume you have been told about the 'published under a license' phenomenon. To me it sounds like you need to read up on a few things. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http

Re: ipfilter2ipchains script?

2005-02-12 Thread Peter N. M. Hansteen
/ for some info on getting started. In the meantime, if short term migration is not an option, you might want to look at something like Firewall Builder(http://www.fwbuilder.org) which I believe is able to generate configurations for PF, IPFW, IPFilter and iptables from a common XML source. -- Peter N

Re: I can't boot from the CD...

2005-02-03 Thread Peter N. M. Hansteen
you get here generally improves with the precision in reporting such things as error messages. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all the spammers The Usenet Bard, Twice

Re: OT: Funny disclaimers (Was: Re: ssh root@localhost)

2005-02-02 Thread Peter N. M. Hansteen
) litters messages with X-ThreadIndex and X-ThreadSubject headers, apparently attempting to reinvent References: and other usenet features. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First

Re: Book Recomendations

2005-02-02 Thread Peter N. M. Hansteen
book stores (online or otherwise). -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all the spammers The Usenet Bard, Twice-forwarded tales

Re: Partition Size

2005-01-25 Thread Peter N. M. Hansteen
, or for that matter, from people who run rougly the same things you do. If you need a different configuration for what you want to do, symptoms will show up soon enough. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http

Re: Banning ips for some time?

2005-01-25 Thread Peter N. M. Hansteen
at http://undeadly.org/cgi?action=articlesid=20041231195454 Then again, at least in some cases, the people listed in the whois info for the offending IP appreciate a politely worded notification. Quite likely they do not want this kind of activity either. -- Peter N. M. Hansteen, member of the first

Re: DNS

2005-01-25 Thread Peter N. M. Hansteen
*and* tcp is turned off while you're at it. These are at least some of the more common errors. Good luck with the debugging! -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all

Re: Uptime?

2005-01-06 Thread Peter N. M. Hansteen
items I could tell you about if %#^ NO CARRIER -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all the spammers The Usenet Bard, Twice-forwarded tales

Re: Native 5.3 port of OpenOffice?

2005-01-04 Thread Peter N. M. Hansteen
to making FreeBSD 1.1.4 packages yet. Then again, I'm not sure what got fixed between 1.1.3 and 1.1.4. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all the spammers The Usenet Bard

Re: Recommended Mail Transfer Agent

2005-01-03 Thread Peter N. M. Hansteen
ones in ports. imap-uw is very easy to set up. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all the spammers The Usenet Bard, Twice-forwarded tales

Re: Help on Compaq Laptop Presario 3000 AMD Athlon 64 -Nvida-gforce3 chipset

2005-01-03 Thread Peter N. M. Hansteen
to boot at all, well, there it is. I'd venture a guess that whichever software came with the machine originally is not quite 64 bit clean either. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no

Re: Native 5.3 port of OpenOffice?

2005-01-03 Thread Peter N. M. Hansteen
the java tools install which is needed to build the port. Unless that challence is interesting in itself, it's probably more convenient to download and install a binary package from somewhere in the general direction of http://download.openoffice.org/1.1.4/index.html -- Peter N. M. Hansteen, member

Re: NDIS and Dell (Broadcom) WLAN 1450 Dual Band card

2004-12-28 Thread Peter N. M. Hansteen
and the .inf file in a directory together. After installation in a Microsoft file system that may of course no longer be the case. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all

Re: Need help *fast*

2004-12-28 Thread Peter N. M. Hansteen
hardware, we never saw problematic media failure rates back then. The awful media quality started after CDs became the default software distribution medium. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http

Re: What version

2004-12-27 Thread Peter N. M. Hansteen
this is the kind of challenge you were longing for in the first place, I don't think it's worth the effort. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all the spammers The Usenet

Re: Using Exim with FBSD 5.3

2004-12-24 Thread Peter N. M. Hansteen
instructions to add spam and virus filtering to the delivery process. Nice for those of us serving Microsoft desktops. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all the spammers

Re: FreeBSD's Visual Identity: Outdated?

2004-12-23 Thread Peter N. M. Hansteen
to happen. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all the spammers The Usenet Bard, Twice-forwarded tales ___ freebsd-questions

Re: installing bsd on a laptop

2004-12-20 Thread Peter N. M. Hansteen
was the one-line ZAxisMapping magic to make the touchpad's scroll strip (similar to mouse wheel) work. Then again that was cutpasteable from somewhere else. Everything else pretty much just automagically worked. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http

Re: 5.3: cant install openoffice 1.1 from ports

2004-12-07 Thread Peter N. M. Hansteen
to be quite functional so far). There's a bit more info available at http://porting.openoffice.org/freebsd/ too. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all the spammers

Re: Windows-based RFC868 Time

2004-12-07 Thread Peter N. M. Hansteen
-11/1534.html which seems to do what you ask. Also, ntpd(8) might be of interest. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all the spammers The Usenet Bard, Twice-forwarded

correct permissions for firefox extensions files?

2004-12-07 Thread Peter N. M. Hansteen
the program runs). Anybody else seen something like this? -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all the spammers The Usenet Bard, Twice-forwarded tales

Re: none

2004-12-07 Thread Peter N. M. Hansteen
important data, then use whichever tools come with the operating system you want to set up install that system and configure it. The exact steps depend on which operating system you want to run instead of FreeBSD. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http

Re: SGML, experienced advice wanted ;)

2004-12-05 Thread Peter N. M. Hansteen
contain quite a number of useful references). -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ http://www.nuug.no/ First, we kill all the spammers The Usenet Bard, Twice-forwarded tales

Re: 4.2 - 5.2 passwd format change?

2004-08-05 Thread Peter N. M. Hansteen
Lowell Gilbert [EMAIL PROTECTED] writes: I've moved password entries from 4.x to 5.x with no problem. Did you remember to rebuild the database? er, it seems that was the problem, exactly. Thanks! -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http

4.2 - 5.2 passwd format change?

2004-08-04 Thread Peter N. M. Hansteen
: There was a change in the passwd format. Need more information. Any pointers appreciated. -- Peter N. M. Hansteen, member of the first RFC 1149 implementation team http://www.blug.linux.no/rfc1149/ http://www.datadok.no/ First, we kill all the spammers The Usenet Bard, Twice-forwarded tales

  1   2   >