Re: memcached on freebsd?

2008-06-04 Thread Mark D. Foster

Joachim Rosenfeld wrote:

We're considering using memcached for on of our products and we are
thinking of running it on FreeBSD.

How well does memcached run on FreeBSD? Most of the people I've talked
to and the sites online seem to run it on Linux/IntelI talked to
one person who runs it on Solaris and they are not terribly happy with
the memcached+Solaris combo, so I wanted to check and make sure
memcached+FreeBSD is worth it.
  

It works fine. Go for it.

--
Said one park ranger, 'There is considerable overlap between the 
intelligence of the smartest bears and the dumbest tourists.'

Mark D. Foster, CISSP [EMAIL PROTECTED]  http://mark.foster.cc/

___
freebsd-questions@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to [EMAIL PROTECTED]


Re: iSCSI initiator

2008-05-15 Thread Mark D. Foster

Sahil Tandon wrote:

* Onkar [EMAIL PROTECTED] [05-16-2008]:
  
  

(1) Is iSCSI initiator not currently implemented for FreeBSD ?

  
http://www.freebsd.org/releases/7.0R/announce.html


  

(2) There is no iSCSI target daemon currently ?



net/iscsi-target
  

Onkar, you may also find this helpful.
http://conshell.net/wiki/index.php/User:Fostermarkd/FreeBSD/iSCSI

--
Said one park ranger, 'There is considerable overlap between the 
intelligence of the smartest bears and the dumbest tourists.'

Mark D. Foster, CISSP [EMAIL PROTECTED]  http://mark.foster.cc/

___
freebsd-questions@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to [EMAIL PROTECTED]


Re: OT: Silly Bind question

2008-02-03 Thread Mark D. Foster
DAve wrote:
 Andy Dills wrote:
   
 On Sun, 3 Feb 2008, DAve wrote:
 
 I am stumped, what have I done wrong?
   
 You'll kick yourself. Here's the hint:

 /users/andydig @ns1.totallogic.com ftp.pixelhammer.com txt

 ;  DiG 9.3.4  @ns1.totallogic.com ftp.pixelhammer.com txt
 ; (1 server found)
 ;; global options:  printcmd
 ;; Got answer:
 ;; -HEADER- opcode: QUERY, status: NOERROR, id: 26833
 ;; flags: qr aa rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 3, ADDITIONAL: 3

 ;; QUESTION SECTION:
 ;ftp.pixelhammer.com.   IN  TXT

 ;; ANSWER SECTION:
 ftp.pixelhammer.com.86400   IN  TXT v=spf1 ip4:65.196.224.82 
 ip4:65.196.224.83 ~all
 

 I'm kicking but it ain't helping. Interesting that the host ftp works.
 It is also the last host in the zone. I tried tying the txt record to
 the origin but no change. According to the Bind book, and to the openspf
 folks, this should work.

 pixelhammer.com.  IN  TXT some sorta krazy text string

 But it don't. Now, I am even more confused. Does the location of the
 Text record 'within' the zone file make a difference?

 Thanks,

 DAve

   
Andy was right, it's the line-ordering in your zone file.
I take it you can't slave the zone from tinydns to bind?

-- 
Said one park ranger, 'There is considerable overlap between the 
 intelligence of the smartest bears and the dumbest tourists.'
Mark D. Foster, CISSP [EMAIL PROTECTED]  http://mark.foster.cc/

___
freebsd-questions@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to [EMAIL PROTECTED]


Re: OT: Silly Bind question

2008-02-02 Thread Mark D. Foster
.172800  IN  NS  g.gtld-servers.net.
com.172800  IN  NS  h.gtld-servers.net.
com.172800  IN  NS  i.gtld-servers.net.
com.172800  IN  NS  j.gtld-servers.net.
com.172800  IN  NS  k.gtld-servers.net.
com.172800  IN  NS  l.gtld-servers.net.
com.172800  IN  NS  m.gtld-servers.net.
;; Received 493 bytes from 199.7.83.42#53(L.ROOT-SERVERS.NET) in 488 ms

pixelhammer.com.172800  IN  NS  ns1auth.tls.net.
pixelhammer.com.172800  IN  NS  ns2auth.tls.net.
;; Received 116 bytes from 192.54.112.30#53(h.gtld-servers.net) in 179 ms

monk:~ host ns1auth.tls.net
ns1auth.tls.net has address 65.124.104.30
monk:~ host ns2auth.tls.net
ns2auth.tls.net has address 65.123.104.30

monk:~ dig @ns1auth.tls.net pixelhammer.com txt

;  DiG 9.4.1-P1  @ns1auth.tls.net pixelhammer.com txt
; (1 server found)
;; global options:  printcmd
;; Got answer:
;; -HEADER- opcode: QUERY, status: NOERROR, id: 11218
;; flags: qr aa rd; QUERY: 1, ANSWER: 1, AUTHORITY: 3, ADDITIONAL: 3
;; WARNING: recursion requested but not available

;; QUESTION SECTION:
;pixelhammer.com.   IN  TXT

;; ANSWER SECTION:
pixelhammer.com.86400   IN  TXT v=spf1
ip4:65.196.224.82 ip4:65.196.224.83 ~all

;; AUTHORITY SECTION:
pixelhammer.com.86400   IN  NS  ns1auth.tls.net.
pixelhammer.com.86400   IN  NS  ns2auth.tls.net.
pixelhammer.com.86400   IN  NS  ns3auth.tls.net.

;; ADDITIONAL SECTION:
ns1auth.tls.net.86400   IN  A   65.124.104.30
ns2auth.tls.net.86400   IN  A   65.123.104.30
ns3auth.tls.net.86400   IN  A   65.124.110.14

;; Query time: 84 msec
;; SERVER: 65.124.104.30#53(65.124.104.30)
;; WHEN: Sat Feb  2 21:39:41 2008
;; MSG SIZE  rcvd: 214

-- 
Said one park ranger, 'There is considerable overlap between the 
 intelligence of the smartest bears and the dumbest tourists.'
Mark D. Foster, CISSP [EMAIL PROTECTED]  http://mark.foster.cc/

___
freebsd-questions@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to [EMAIL PROTECTED]


Re: Next steps

2008-01-29 Thread Mark D. Foster
Darryl Hoar wrote:
 Greetings,
 I have just installed 6.3-Release on brand new hardware.
 In the past, I have not done much to a machine after
 initial installation.  What should be done to a machine
 after successful installation of 6.3-release ?  Do I need
 to compile a custom kernel ?  Do I need to apply any
 patches ?
   
What I do is lay down an /etc/supfile[1] containing what's needed to
bring the system fully up-to-date regarding base and ports. I like to
track the -security branch  (RELENG_6_3) but many just track stable
(RELENG_6).
Run csup -g -L2 /etc/supfile

Thereafter {build|install} {kernel|world} and follow with pkg_add -r
portaudit, portmaster and any other ports I find useful[2].


[1]
*default host=cvsup7.FreeBSD.org
# YMMV, try fastest_cvsup port to get a better idea
*default base=/usr
*default prefix=/usr
*default release=cvs delete use-rel-suffix compress
src-all tag=RELENG_6_3
# or RELENG_6 to track 6-STABLE
ports-all tag=.

[2]
http://conshell.net/wiki/index.php/User:Fostermarkd/Applications#FreeBSD-specific_Applications

-- 
Some days it's just not worth chewing through the restraints...
Mark D. Foster, CISSP [EMAIL PROTECTED]  http://mark.foster.cc/


___
freebsd-questions@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to [EMAIL PROTECTED]


Re: Spam filtering with dspam and postfix

2008-01-25 Thread Mark D. Foster
J. Johnston wrote:
 Hello,

 I was wondering if anyone knew of a good howto, or some tips for
 filtering spam using dspam in a setup where virtual users (various
 domains) are stored in LDAP. Currently we hand off email to dspam in
 the filter stage and dspam hands it back into postfix as lmtp, the
 problem with this is the current setup uses (and only howto I can
 find) one user for dspam, so the quarantine is under one username, we
 would like to separate this so each [EMAIL PROTECTED] has their own
 quarantines.
Just setup postfix + dspam + procmail last week, although on
Ubuntu...conceptually the same.
Here is the article I followed:
http://www.freesoftwaremagazine.com/articles/focus_spam_dspam?page=0%2C0

I used dspam as the delivery agent (mailbox_command) which in turn calls
procmail.

Turning this into a working configuration took a LOT of tuning... it's
still not quite right but alas DSPAM (after training) is doing a nice
job of  filtering more than 90% of what gets past the DNSBL. End result,
I am only seeing a few spam messages per day, and those are the
odd/terse kind.

-- 
Some days it's just not worth chewing through the restraints...
Mark D. Foster, CISSP [EMAIL PROTECTED]  http://mark.foster.cc/


___
freebsd-questions@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to [EMAIL PROTECTED]


Re: VM Options

2008-01-24 Thread Mark D. Foster
Jack Barnett wrote:
 To clarify, I would like to run Windows XP at least

 VMWare runs WinXP beautifully - but unfortunately VMWare doesn't well
 under FreeBSD.
 Last time I tried Qemu it was fairly slow.

 So Jail, Qemu and VMWare crossed off the list, any other options?
Some other ideas...
Serenity Virtual Station (http://www.serenityvirtual.com/) which claims
to run on FreeBSD. I haven't yet tried it.

VirtualBox (http://www.virtualbox.org/wiki/VirtualBox) looks promising
as another open-source alternative which runs (as host) on Windows,
Linux and soon Mac OS X... could FreeBSD be far behind?

-- 
Some days it's just not worth chewing through the restraints...
Mark D. Foster, CISSP [EMAIL PROTECTED]  http://mark.foster.cc/


___
freebsd-questions@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to [EMAIL PROTECTED]


Re: Blocking undesirable domains using BIND

2007-12-27 Thread Mark D. Foster
Maxim Khitrov wrote:
 into a BIND config file myself. Just need good sources. What are your
 recommendations?
   
I keep a small but potent list of undesirables as described here...
http://mark.foster.cc/wiki/index.php/Trackers

-- 
Said one park ranger, 'There is considerable overlap between the 
 intelligence of the smartest bears and the dumbest tourists.'
Mark D. Foster, CISSP [EMAIL PROTECTED]  http://mark.foster.cc/

___
freebsd-questions@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to [EMAIL PROTECTED]


Re: common filesystem for Linux and FreeBSD

2007-12-18 Thread Mark D. Foster
Ivan Voras wrote:
 ext2fs is stable in the sense that there are no known bugs, and it's
 100% compatible with Linux. It just works.

 Unless you get frequent power outages or similar hard errors, the lack
 of journaling shouldn't bother you much.

I suggest that ext2+noatime is going to give him much better performance
vs. ext3 anyway.

-- 
Said one park ranger, 'There is considerable overlap between the 
 intelligence of the smartest bears and the dumbest tourists.'
Mark D. Foster, CISSP [EMAIL PROTECTED]  http://mark.foster.cc/

___
freebsd-questions@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to [EMAIL PROTECTED]


Re: Software to manage BIND 9 ?

2007-12-12 Thread Mark D. Foster
Frank Bonnet wrote:
 I'm searching for some good software that runs with FreeBSD to manage
 a primary DNS server with several domains.
We use Men  Mice at work for the last 2 years to manage our Linux
(BIND9) and MS DNS servers. The product also works with FreeBSD.
See http://www.menandmice.com/solutions/suite/unixbind

-- 
Said one park ranger, 'There is considerable overlap between the 
 intelligence of the smartest bears and the dumbest tourists.'
Mark D. Foster, CISSP [EMAIL PROTECTED]  http://mark.foster.cc/

___
freebsd-questions@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to [EMAIL PROTECTED]


Re: FreeBSD mail forwarder and SPF

2007-12-10 Thread Mark D. Foster
Dan Mahoney, System Admin wrote:
 Hello all,

 I secure my outbound e-mail with SPF.  One of the ports maintainers
 ([EMAIL PROTECTED]) also secures his INBOUND e-mail with SPF.

 I tried to e-mail garga about a minor doc-bug, and got a bounce, since
 his mailserver didn't recognize mx2.freebsd.org as a valid MX for
 [EMAIL PROTECTED]

The solution is @ http://www.openspf.org/FAQ/Forwarding
If garga@ isn't following the recommended practice of whitelisting
freebsd.org's MX servers then breakage results. That said,
mx2.freebsd.org is NOT LISTED as an MX of freebsd.org, so maybe that is
contributing to the problem.

-- 
Said one park ranger, 'There is considerable overlap between the 
 intelligence of the smartest bears and the dumbest tourists.'
Mark D. Foster, CISSP [EMAIL PROTECTED]  http://mark.foster.cc/

___
freebsd-questions@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to [EMAIL PROTECTED]


Re: dansguardian at boot time. +gateway server

2007-11-27 Thread Mark D. Foster
अनुज wrote:
 Hello
 I installed dansguardian , gave it's entry in my /etc/rc.conf
 squid_enable=YES
 dansguardian_enable=YES

 I am getting error at the boot time dansguardian couldn't connected to
 parent proxy.  Whereas squid starts without error.
 I am running squid over port 3121 and dansguardian on port 8080.

 After logging in and giving command dansguardian it starts without any 
 error.
   
Had a similar problem  with dansguardian  tinyproxy, they start in the
wrong order.
So...
rename /usr/local/etc/rc.d/squid.sh to 01_squid.sh
rename /usr/local/etc/rc.d/dansguardian.sh to 02_dansguardian.sh
You might need to add sleep 5 into 02_dansguardian.sh to give squid.sh
time to finish starting up.

-- 
Said one park ranger, 'There is considerable overlap between the 
 intelligence of the smartest bears and the dumbest tourists.'
Mark D. Foster, CISSP [EMAIL PROTECTED]  http://mark.foster.cc/

___
freebsd-questions@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to [EMAIL PROTECTED]


Re: VMware FreeBSD to Physical

2007-11-24 Thread Mark D. Foster
Milosh Djuric wrote:
 Hi,

 I've got a VMWare guest running FreeBSD 6.2 which I'd like to move to
 a physical machine. I've tried ghosting it, but when it gets to the
 Default: F5 Disk0 screen (sorry, I don't know the appropriate name
 for it), it refuses to go any further.

 Can anything be done to fix this? Or is there a better way of doing
 the whole procedure?
See
http://www.freebsd.org/doc/en_US.ISO8859-1/books/handbook/install-trouble.html#Q2.11.3.3.

Were I in your shoes I would make sure to run (revert to?) a GENERIC
kernel in the VM then use g4u to image the entire drive(s). But this
will only work if the destination drive is larger than the source.
There are many things that can go wrong in this sort of procedure and
you should plan to be cunning and persistent or fail in your attempts.
It may be that you are using the wrong approach also, because rsync can
be a wonderful alternative for these types of scenarios as can knoppix +
dd + netcat.

-- 
Said one park ranger, 'There is considerable overlap between the 
 intelligence of the smartest bears and the dumbest tourists.'
Mark D. Foster, CISSP [EMAIL PROTECTED]  http://mark.foster.cc/

___
freebsd-questions@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to [EMAIL PROTECTED]


Re: VMware FreeBSD to Physical

2007-11-24 Thread Mark D. Foster
Milosh Djuric wrote:
 Hi,

 The rsync method sounds interesting. Could you give me a quick summary
 of what I'd need to do?

Please don't top post.
You can see what I mean about using rsync in this way at
http://mark.foster.cc/wiki/index.php/Xen_Clone

-- 
Said one park ranger, 'There is considerable overlap between the 
 intelligence of the smartest bears and the dumbest tourists.'
Mark D. Foster, CISSP [EMAIL PROTECTED]  http://mark.foster.cc/

___
freebsd-questions@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to [EMAIL PROTECTED]


Re: Ports with GUI configs

2007-11-12 Thread Mark D. Foster
Vince wrote:
 Ashley Moran wrote:
   
 Hi

 I was just wondering, what is the motivation behind the GUI
 configuration for some ports?  Simply put, they drive me up the wall. 
 I've lost count of the number of times I've come back to a big install
 to find it hanging on a config screen.  Possibly I'm missing something.
 
 I agree though, I often suffer the same problem, coming back after a few
 hours to a build that should have finished to find its sitting on the
 first dependency.
   
Maybe it's been suggested before (in which case I add my vote) but a
timeout mechanism would solve this... give the user 10s to provide a
keypress else bailout and use the default options.

-- 
Said one park ranger, 'There is considerable overlap between the 
 intelligence of the smartest bears and the dumbest tourists.'
Mark D. Foster, CISSP [EMAIL PROTECTED]  http://mark.foster.cc/

___
freebsd-questions@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to [EMAIL PROTECTED]