Re: Where is 4.5, 4.6, etc. on the FTP sites ?

2003-09-18 Thread Josh Brooks
, JacobRhoden wrote: On Thu, 18 Sep 2003 03:37 pm, Josh Brooks wrote: But on the outside chance that older versions (4.5, 4.6, 4.6.1) are _actually_ not on the ftp servers, can someone explain why, and where I can get them from ? You could just install 4.8-RELEASE, then use cvsup to 'downgrade

version string scare with new patched ssh (newbie)

2003-09-18 Thread Josh Brooks
Hi, I have a 4.5-RELEASE system with the original, stock /usr/src/secure. I followed the SA directions, and they worked like a charm - I patched the source, all hunks succeeded, and install/restart worked fine. However, when I run: /usr/sbin/sshd -\? I see: sshd version OpenSSH_2.9 FreeBSD

sendmail SA only mentions 4.7 and above ... ?

2003-09-18 Thread Josh Brooks
Hi, What should I do to update sendmail on my 4.5, 4.6, and 4.6.1 systems ? Will the patch work properly there, or should I follow a different tact ? ALSO I seem to remember the last time we had a sendmail vulnerability, there were binaries available, and we could just do something like:

Re: Where is 4.5, 4.6, etc. on the FTP sites ?

2003-09-18 Thread Josh Brooks
On Thu, 18 Sep 2003, Dan Nelson wrote: Do you have to pay for the space taken up by your faucet handles? Try www.freebsdmirrors.org for a list of sites that have the disk space to keep old releases. Thank you - this is much appreciated, and helped me greatly. However, what should I do

version string scare with new patched ssh (newbie)

2003-09-17 Thread Josh Brooks
Hi, I have a 4.5-RELEASE system with the original, stock /usr/src/secure. I followed the SA directions, and they worked like a charm - I patched the source, all hunks succeeded, and install/restart worked fine. However, when I run: /usr/sbin/sshd -\? I see: sshd version OpenSSH_2.9 FreeBSD

sendmail SA only mentions 4.7 and above ... ?

2003-09-17 Thread Josh Brooks
Hi, What should I do to update sendmail on my 4.5, 4.6, and 4.6.1 systems ? Will the patch work properly there, or should I follow a different tact ? ALSO I seem to remember the last time we had a sendmail vulnerability, there were binaries available, and we could just do something like:

Where is 4.5, 4.6, etc. on the FTP sites ?

2003-09-17 Thread Josh Brooks
Hello, I am using /stand/sysinstall to populate my /usr/src directory - I didn't do it when I originally installed, but I need to do it now - however, it is not on any of the ftp sites !!! Now, it is possible that this is a problem on my end - in fact, given that there is no reason at all in

How can I add /usr/src/secure to a system ?

2003-09-16 Thread Josh Brooks
Ok, my /usr/src is totally empty - nothing in there at all. I would like to follow these instructions from the latest openSSH FreeBSD-SA: # cd /usr/src # patch /path/to/sshd.patch # cd /usr/src/secure/lib/libssh # make depend make all install # cd /usr/src/secure/usr.sbin/sshd # make depend

No /proc or procfs by default in 5.1-RELEASE ... why ?

2003-07-16 Thread Josh Brooks
Hello, As I am sure many have noticed, a default installation of 5.1-RELEASE will leave you with no procfs mounted at /proc, and no entry in /etc/fstab for a procfs. Is this by design ? Is it better to not run /proc on 5.x ? What are the consequences of running without a procfs on 5.x ? OR

Can I tell whether dump used -L or not ?

2003-07-15 Thread Josh Brooks
Hello, A new option in FreeBSD 5.x `dump` is the -L option for backing up a live filesystem ... Is there a way to examine/check a dump file to see if it was created using the -L or not ? ALSO, if I do use -L when creating a dump, do I need to restore it any differently, or can I restore it the

Re: question regarding quotas

2003-06-30 Thread Josh Brooks
On Mon, 30 Jun 2003, Dan Nelson wrote: If you're adventurous, you could use growfs :) Reading the archives, it seems as if you would use growfs, but then run into performance problems because you did not defragment afterward (and there is no defrag utility for UFS). Something about the

Re: question regarding quotas

2003-06-29 Thread Josh Brooks
Hi Dan, On Sat, 28 Jun 2003, Dan Nelson wrote: Quotas are per-user, not per-directory. Any files those users create, anywhere in that filesystem, will contribute to their quota. Files created by other userids but placed in those directories will count against the other user's quota.

Re: question regarding quotas

2003-06-29 Thread Josh Brooks
Hello. On 29 Jun 2003, Lowell Gilbert wrote: Dan Nelson [EMAIL PROTECTED] writes: The only thing I can think of that might work: if you didn't mind a whole lot of filesystems, you could create a filesystem per directory you wanted to control. Then the filessytem size itself would be

Re: question regarding quotas

2003-06-29 Thread Josh Brooks
Hi, On Mon, 30 Jun 2003, Sergey DoubleF Zaharchenko wrote: Josh Brooks wrote: So my question was, is there a way to control how big a directory can grow, regardless of who is putting what files in that directory. So you are going to make a directory N Mbytes large... Make a file N

question regarding quotas

2003-06-28 Thread Josh Brooks
Hello! I have a group of 5 users that I want to set up quotas for - their home directories are: /export/data1/user1 /export/data1/user2 /export/data1/user3 /export/data1/user4 /export/data1/user5 And they will be given free reign to fill up those directories however they choose. At the same

VESA modes inexplicably not available on Matrox p750 ?

2003-06-15 Thread Josh Brooks
There is a new matrox card (with triple head support) available - the Matrox Millenium p750. Forget the triple/dual head features - I have not even loaded X yet - I just want a reasonable test console mode to do console work in. Unlike many ATI Rage cards (especially in dell laptops ?) this

any IDE raid controllers with supported CLI in freeBSD ?

2003-06-09 Thread Josh Brooks
Hello, I am looking for a IDE raid card to use with FreeBSD. Presumably a few are supported, but I am looking specifically for a card that also has a command line interface that I can run in FreeBSD while the system is running. Sort of like aaccli for aacX scsi raid controllers in freeBSD. Do

How do I set up a ssh tunnel between two FreeBSD systems ?

2003-06-07 Thread Josh Brooks
Hello, I have read the ssh man page and am not getting the results I think I should. some background: serverA is the client serverB is running sendmail on port 25 I want to telnet to serverA on port 34 and get a response from the sendmail daemon running on serverB. I tried this: ssh -L

Matrox Millenium p750 three-head in FreeBSD ?

2003-06-06 Thread Josh Brooks
Hello, I am considering buying a Matrox p750, that allows you to do triple-head video on your PC. How does freebsd work with these multi-head video products from matrox ? Does it work at all ? Any comments at all appreciated. ___ [EMAIL PROTECTED]

lowest possible mhz speed for playing mpeg/dvd video ?

2003-03-20 Thread Josh Brooks
Hello, I am considering purchasing a toshiba libretto 110ct with a pentium 233 mhz MMX processor. Is this speed/processor fast enough to play mpeg video and DVD movies from my hard drive, assuming I have _no_ hardware acceleration at all ? I want to use this small notebook for watching movies

Re: (send)mailing from jail-host to jail

2003-03-09 Thread Josh Brooks
First off, thank you for your help. Here is what I did: first, I edited /etc/mail/freebsd.mc and made it look like this: dnl Uncomment both of the following lines to listen on IPv6 as well as dnl DAEMON_OPTIONS(`Name=IPv4, Family=inet') dnl DAEMON_OPTIONS(`Name=IPv6, Family=inet6')

(send)mailing from jail-host to jail

2003-03-08 Thread Josh Brooks
system A is a normal freeBSD system with two IP addresses. system B is a jail on system A, using the second IP. When I send mail from A to B, i get an error saying that the MX record points back to myself. Presumably this is because sendmail running on jail-host takes account of both ips when

loading ipfw module without default-deny

2003-03-06 Thread Josh Brooks
Hello, I want to: kldload ipfw.ko but I am not near the physical machine, and cannot type in an allow rule after loading the module - by default all traffic will be denied. How can I load the ipfw.ko module but not knock myself off the network ? My only thought was to put an `ipfw add` rule

Re: sendmail 4.6 fixed binary on 4.5-RELEASE ?

2003-03-04 Thread Josh Brooks
Then why don't they have a section in the SA that deals with 4.5 ? On Tue, 4 Mar 2003, Toomas Aas wrote: Hi! But what if I use this binary replacement on a 4.5-RELEASE system ? Sendmail architecture on FreeBSD changed quite drastically between 4.5-RELEASE and 4.6-RELEASE (see

sendmail 4.6 fixed binary on 4.5-RELEASE ?

2003-03-03 Thread Josh Brooks
Hello, I am using: ftp://ftp.FreeBSD.org/pub/FreeBSD/CERT/patches/SA-03:04/sendmail-4.6-i386-crypto.bin.gz as a binary replacement for my sendmail binaries on my 4.6.x systems. It is working fine. But what if I use this binary replacement on a 4.5-RELEASE system ? Has anyone tested or tried

how to kill a while loop...

2003-01-28 Thread Josh Brooks
Hi, I ran a command like: while `some command` ; do something ; done and I missed the PID output when I backgrounded it. Now I want to kill this while process, but I cannot find it anymore. I tried to ps auxw | grep while, and grep do and so on, but I cannot find the process to kill it.

differentiating apache children from parents ?

2003-01-24 Thread Josh Brooks
Hello, Is there any way to tell, simply from /proc info and/or ps output if a certain httpd PID is a child or the parent ? If yes, is this method applicable on any OS (linux) ? thanks. To Unsubscribe: send mail to [EMAIL PROTECTED] with unsubscribe freebsd-questions in the body of the

Re: differentiating apache children from parents ?

2003-01-24 Thread Josh Brooks
and you're not satisfied with the native apache process maintanance mechanism), there can be better ways... Regards Alexander Varshavchick, Metrocom Joint Stock Company Phone: (812)118-3322, 118-3115(fax) On Fri, 24 Jan 2003, Josh Brooks wrote: Date: Fri, 24 Jan 2003 05:22:00 -0800

ipfw rule help needed

2003-01-14 Thread Josh Brooks
Hi, I am trying to create these two ipfw rules: deny all packets with an ack of zero deny all tcp packets with no MSS specified Can anyone show me the syntax to do that ? Also, comments on bad things that could happen if I put these in are appreciated. AFAIK, the only thing that can

Re: adding some new IPs from a different subnet

2003-01-11 Thread Josh Brooks
Actually that was already correct - it was a typo in bringing it over to email form. On the system itself it has the correct .255 mask. On Sat, 11 Jan 2003, Kevin Stevens wrote: On Saturday, Jan 11, 2003, at 14:15 US/Pacific, Josh Brooks wrote: Ok, I toggled

adding some new IPs from a different subnet

2003-01-10 Thread Josh Brooks
Hi, I have a rc.conf that looks like: defaultrouter=10.10.10.1 ifconfig_fxp0=inet 10.10.10.2 netmask 255.255.255.0 ifconfig_fxp0_alias0=inet 10.10.10.3 netmask 255.255.255.0 Ok, easy enough - one interface, one default router, and two IPs on that subnet. BUT - as it happens, 10.10.10.1 is

NMBCLUSTERS over 4096 dangerous in any way ?

2002-12-14 Thread Josh Brooks
Hi, I have a firewall that is starting to get a little overworked. I currently have this line in my kernel config: options NMBCLUSTERS=4096 and I am starting to hit that limit: 276/4096/4096 mbuf clusters in use (current/peak/max) So, the obvious response is to increase that NMBCLUSTERS

Re: NMBCLUSTERS over 4096 dangerous in any way ?

2002-12-14 Thread Josh Brooks
wouldn't be eating into the physical memory of a ... 64 meg system for instance ? On Sat, 14 Dec 2002, Jack L. Stone wrote: At 02:36 PM 12.14.2002 -0800, Josh Brooks wrote: Hi, I have a firewall that is starting to get a little overworked. I currently have this line in my kernel config

Re: NMBCLUSTERS over 4096 dangerous in any way ?

2002-12-14 Thread Josh Brooks
to before you start to get close to the default KVA in fbsd 4.4 ? (actually I think the default is the same in all 4.x, just the method of changing it is different) comments ? thanks! On Sat, 14 Dec 2002, Kris Kennaway wrote: On Sat, Dec 14, 2002 at 02:36:39PM -0800, Josh Brooks wrote: 1

how do I add this route without rebooting ?

2002-12-09 Thread Josh Brooks
Hi, Currently my rc.conf looks like this: ifconfig_fxp0=inet 198.78.1.1 netmask 255.255.255.248 ifconfig_fxp1=inet 10.10.10.192 netmask 255.255.255.224 ifconfig_fxp1_alias0=inet 10.10.20.0 netmask 255.255.255.0 static_routes=route1 route2 route_route1=10.10.10.193 198.78.1.1

NFS - what troubles to expect ?

2002-12-06 Thread Josh Brooks
Helol, I have used NFS on sun/solaris systems for many years, and the one big headache that comes to mind is how, if the server is down, and the client has an automount on boot, the client will hang forever (basically forever) trying to mount from the down NFS server. Does this behavior exist

port redirect with ipfw NOT NAT (not NAT)

2002-11-26 Thread Josh Brooks
Hello, I want to perform a very simple act: All traffic going to 10.10.10.10 port 50 should go to 10.10.10.10 port 5050 That's it. The trick is, I am _not_ interested in running NAT. This is not some cable modem or laptop splitting my DSL service - this is a rackmount firewall on a

making source code changes to a port ?

2002-11-23 Thread Josh Brooks
Hi folks, I have a piece of software that I want to install via the ports tree, but due to a specific custom behavior I want to add to it, I need to edit a few lines in one of the source files. Right now, I am doing the following: cd /usr/ports/category/package make install cd