Re: Dell 1950 for PF firewall

2008-02-02 Thread shinny knight
Wojciech Puchar <[EMAIL PROTECTED]> wrote: > Memory: 4GB 667MHz (4x1GB), Dual Ranked DIMMs incredibly important for firewall to have 4GB RAM. why not 64GB or more? ;) ___ freebsd-questions@freebsd.org mailing list http://lists.freebsd.org/mailman/listi

Dell 1950

2008-02-02 Thread shinny knight
Hello, We are in the process of ordering few servers and we think to ask here first for any known issues with same. BTW...company policy requires only Dell servers. Yes, I know...kinda snob^^ Purpose for this server will be firewall (we are using PF with stateful rules) and custom kernel with NI

Re: Future development of Jail

2008-01-31 Thread shinny knight
Rudy <[EMAIL PROTECTED]> wrote: Karl Triebes wrote: > I would like to see per-jail quotas such as the ones Andy mentions, > and would like to hear if anyone would be interested in doing it for > the right price. You may contact me via this list or in private. Per-jail quotas are Trivial you use

Re: CARP and FreeBSD 6.3

2008-01-24 Thread shinny knight
Rakhesh Sasidharan <[EMAIL PROTECTED]> wrote: > Hi, > > I have two machines. Each have two interfaces, xl0 and fxp0. And each have > two carp interfaces -- carp1 (xl0 of both) and carp2 (fxp0 of both). One of > the machines is master, the other is backup. > > I also have the following sysctl set

Net-snmp on SPARC64

2008-01-24 Thread shinny knight
G'day, I'm trying to upgrade Net-snmp package on FreeBSD 6.2 SPARC-64 machine but no matters if I'm trying port install or precompiled by using 'pkg_add -r' is not working. Let's start with precompiled package: Uninstall previous one (which by the way was net-snmp-5.1.3) Then: [EMAIL PROTECTED

Re: timekeeping on jail servers

2007-12-22 Thread shinny knight
In response to John Webster : > > --On Friday, December 21, 2007 13:51:29 -0500 Bill Moran wrote: > > > In response to John Webster : > > >> > Not generally suitable for cron because it can take longer to slew > >> > than it does for the next cron execution to occur, which would then > >> > resu

Re: timekeeping on jail servers

2007-12-21 Thread shinny knight
On Tue, Dec 18, 2007 at 11:02:12AM -0500, Bill Moran wrote: > In response to "Michael W. Lucas" : > > > Hi, > > > > Been searching around without results: > > > > Has anyone come up with a decent way to do timekeeping on a jail > > server? ntpd(8) binds to all addresses, and I'd rather not do a

Re: Connecting networks

2007-12-11 Thread shinny knight
Alaor Barroso de Carvalho Neto <[EMAIL PROTECTED]> wrote: Hi guyz, it's me again. I think I don't know what I'm doing, so I ask for help. I have three private networks(192.168.1, 10.10.0, 192.168.2) and a link to the external world 200.212.X, what I want to do is that my FreeBSD connect all the n

RE: Problem with NAT/RDR in PF

2007-12-11 Thread shinny knight
"Michael K. Smith - Adhost" <[EMAIL PROTECTED]> wrote: Hello Catalin: > > Michael Smith wrote: > > > On Dec 9, 2007, at 3:34 PM, Erik Norgaard wrote: > > > Michael Smith wrote: > >> Hello All: > >> I am trying to configure a round-robin group of Name Servers > that > >> respond on to and fr

Re: Problem with NAT/RDR in PF

2007-12-10 Thread shinny knight
Michael Smith <[EMAIL PROTECTED]> wrote: On Dec 9, 2007, at 3:34 PM, Erik Norgaard wrote: > Michael Smith wrote: >> Hello All: >> I am trying to configure a round-robin group of Name Servers that >> respond on to and from a single address. >> I want the following to occur: >> 1) DNS query fro

Re: PF firewall

2007-12-07 Thread shinny knight
ajtiM wrote: > Hi! > > I am a new FreeBSD 7.0 beta3 user and I have standalone computer connected to > the internet (cable). I use both, console and KDE desktop. I tried to setup > PF firewall for the standalone computer but I have a problem with internal > messages (mail) which are blocked if

ng_netflow on PF + CARP firewall question

2007-12-06 Thread shinny knight
Hello all, I'm trying to use ng_netflow module along with PF+CARP implementation on freebsd 6.2. I understand from different posts that ng_netflow module is performing quite well and does not add so much cpu load since packets are processed in the kernel. However, ng_netflow documentat