Ezjail freebsd-update

2011-08-21 Thread Rocky Borg
I had an opportunity to upgrade a server from freebsd 8.1 to 8.2 since it had to be restarted any way. I upgraded it with freebsd-update and compiled a custom kernel with no problem. However I haven't been able to find a procedure for updating jails when they've been setup with ezjail. I did

jailaudit

2010-09-25 Thread Rocky Borg
I've been trying to get jailaudit setup to mail reports daily and I haven't had much luck. It generates reports and I can read them in /usr/local/etc/jailaudit/reports. However when I try # jailaudit mail r...@example.com ALL No email is sent (nothing shows up in the maillog). The only time

Re: DSPAM

2010-08-26 Thread Rocky Borg
On 8/26/2010 5:36 PM, siefke_lis...@web.de wrote: -o smtpd_authorized_xforward_hosts=127.0.0.0/8 That's probably the problem. It needs to be the ip of the jail. A jail maps localhost addresses like 127.0.0.1 to the jail's address. So when you specify network blocks in access

Re: Mail and DNS setup

2010-08-19 Thread Rocky Borg
On 8/19/2010 3:44 PM, Depo Catcher wrote: While we're at it, any alternatives to bind? We have a slow internet so like to cache things locally. Other than local lookup and caching, nothing else is needed. Unbound ( http://www.unbound.net/ ) just does validating, recursive, and caching DNS.

Re: box reboot after hdd write error

2010-08-18 Thread Rocky Borg
On 8/17/2010 11:37 PM, claudiu vasadi wrote: Hello fellas, My system is a 8.0-RELEASE with 6 hdd's. 2 days ago I had some power failures and 2 disks were affected. These 2 hdd;s are connected to atapci0: SiI 3512 SATA150 controller port

Re: releases, branches,..

2010-08-12 Thread Rocky Borg
On 8/12/2010 2:02 PM, Dick Hoogendijk wrote: On 12-8-2010 22:53, Polytropon wrote: On Thu, 12 Aug 2010 22:46:18 +0200, Dick Hoogendijkd...@nagual.nl wrote: I'm running 8.1-RELEASE now, but what about security issues found? Which brach do I follow? In this case, use freebsd-update to track

Re: Re : How to connect a jail to the web ?

2010-08-11 Thread Rocky Borg
On 8/11/2010 8:35 AM, Brice ERRANDONEA wrote: I tried all of this without any result. But I won't give up. What I want is a jail with an Apache http server running inside. So, the jail must have a public IPv4 and access to the web. I've been in the same boat as you and there isn't a lot of

Re: ssh under attack - sessions in accepted state hogging CPU

2010-08-10 Thread Rocky Borg
One thing I don't see mentioned a lot is port knocking. It's not perfect but it does have it's uses. Since it sounds like you have a lot of users that need to connect you might be able to adapt it to your situation. I haven't tried this specific port knocking sequence but you could setup a

Re: How to connect a jail to the web ?

2010-08-10 Thread Rocky Borg
On 8/10/2010 4:01 AM, Brice ERRANDONEA wrote: Hello, I've just created my first FreeBSD jail in order to install a web server inside. But I don't know how to connect it to the web. When I try pinging a http website, it doesn't work. Of course, it works when I do it from outside the jail.

Re: How to connect a jail to the web ?

2010-08-10 Thread Rocky Borg
On 8/10/2010 5:02 PM, Fbsd8 wrote: 1. ping is a security risk from within a jail and is disabled by design. (read jail(8) for details). No use using a jail if the first thing you do is re-enable ping in the jail. To test for public internet connection from within a jail use dig or whois

Re: ANNOUNCE: Custom 64bit FreeBSD 8.1-RELEASE with XFCE packages released

2010-08-07 Thread Rocky Borg
On 8/6/2010 10:15 PM, Antonio Olivares wrote: Thank you Manolis for your work. I installed it and have one difficulty, that otherwise I would not bother you or other users here on the list. I loaded gdm to autologin xfce but I can autologin to gnome. How can I do it to only load xfce.

Re: pkg_add on dialup: resume?

2010-08-07 Thread Rocky Borg
On 8/7/2010 6:03 PM, Douglas A. Tutty wrote: However, I'm on dialup. pkg_add doesn't seem to be able to resume since I can't use the phone line (or the computer) long enough to install packages all in one go. Is there a solution to this? There might be a more elegant solution but this

Re: Ifconfig (DHCP?) configures two IPs in one IF

2010-08-05 Thread Rocky Borg
On 8/5/2010 11:17 AM, Guojun Jin wrote: This problem comes in 8.1-R. I have seen it before and thought I filed a report but cannot find it. I found one (bin/21292) for ifconfig, but it was for two NICs with a same IP. Now is a reversed case One NIC has two IPs. Here is the description: Due

Re: vmware and freebsd 8

2010-07-28 Thread Rocky Borg
I haven't used vmware so I can't say if it's better but it didn't take me long to get freebsd up and running with virtualbox. Just follow the instructions at http://wiki.freebsd.org/VirtualBox You do have to install /usr/ports/emulators/virtualbox-ose-additions/ on the guest. I got FreeBSD

Re: BSD logo (a moderate opinion)

2010-07-28 Thread Rocky Borg
On 7/28/2010 1:46 PM, Chuck Robey wrote: The point is, no sane person really believes that Beastie equates to devil worship, and I don't like the idea of letting crazies dictate my life. So you're saying I shouldn't be ritualing sacrificing a chicken as Carl Orff's - O Fortuna plays in the