Re: mpt problem on a Supermicro motherboard (FreeBSD 9.2 amd64)

2013-10-10 Thread Victor Sudakov
Victor Sudakov wrote: > > I have several Supermicro-based servers with the mpt RAID adapter: > > # mptutil show adapter > mpt0 Adapter: >Board Name: UNUSED >Board Assembly: > Chip Name: C1068E > Chip Revision: UNUSED > RAID Levels: n

mpt problem on a Supermicro motherboard (FreeBSD 9.2 amd64)

2013-10-08 Thread Victor Sudakov
-v da2,da3 mptutil: Reading config page header failed: Invalid configuration page Added drive da2 with PhysDiskNum 0 mptutil: Reading config page header failed: Invalid configuration page # # mptutil show volumes mpt0 Volumes: Id SizeLevel Stripe State Write-Cache Name # -- Victor

Re: D-Link DUBE100 USB NIC does not work

2013-08-03 Thread Victor Sudakov
et [sudakov@vas ~] [root@vas ~] kldload if_axe kldload: can't load if_axe: Exec format error [root@vas ~] dmesg | grep axe module axe already present! interface axe.1 already present in the KLD 'kernel'! [root@vas ~] -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:s

D-Link DUBE100 USB NIC does not work

2013-08-03 Thread Victor Sudakov
something else besides plugging the device in for the network interface to appear? I am running stable/9 (9.2-BETA2 at the moment). TIA for any input. -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru ___ freebsd-questions@freebsd.org

last(1) does not work after upgrade to 9.1-STABLE

2013-01-05 Thread Victor Sudakov
ср 2 янв 13:01 - 13:19 (00:18) [sudakov@vas ~] What can it mean? -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru ___ freebsd-questions@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-ques

Re: a wireless network freezes the machine?

2012-10-05 Thread Victor Sudakov
Victor Sudakov wrote: > > > > > Is it possible that wpa_supplicant or some other part of the WiFi > > setup causes the hangs? Nothing else has changed in the system besides > > its role from the access point to a WiFi client. > > Actually, kern/170066 may be rel

Re: a wireless network freezes the machine?

2012-09-30 Thread Victor Sudakov
Victor Sudakov wrote: [dd] > > Is it possible that wpa_supplicant or some other part of the WiFi > setup causes the hangs? Nothing else has changed in the system besides > its role from the access point to a WiFi client. Actually, kern/170066 may be related, but it's differen

a wireless network freezes the machine?

2012-09-28 Thread Victor Sudakov
only the reset button helps. Is it possible that wpa_supplicant or some other part of the WiFi setup causes the hangs? Nothing else has changed in the system besides its role from the access point to a WiFi client. -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru _

Re: Sharing COM ports to Windows hosts

2012-09-04 Thread Victor Sudakov
xample of Windows hacking, in the good sense of the word, but still, I cannot figure out how to create the configuration described in the README file, some components seem missing). -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru __

Re: Sharing COM ports to Windows hosts

2012-09-04 Thread Victor Sudakov
s own protocol over RS323 and insists that it be a "real" port. Perhaps my English is so poor that I could not present the task correctly from the very beginning. Sorry for that. -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru

Re: Sharing COM ports to Windows hosts

2012-09-03 Thread Victor Sudakov
> ttyu0 "/usr/libexec/getty std.19200" dialup on secure Sorry, Polytropon, you understood the challenge the wrong way around. Have you ever heard of "reverse telnet" and "reverse ssh" (these are terms from the Cisco world though). I am trying to use an ex

Re: Sharing COM ports to Windows hosts

2012-09-03 Thread Victor Sudakov
.wikipedia.org/wiki/COM_port_redirector#Open_source_solutions > com0com Project's com2tcp may be what you're expecting. At least it has an example of an RFC 2217 client (COM port to TCP redirector) in its README file. Thanks again, will look at it.

Re: Sharing COM ports to Windows hosts

2012-09-03 Thread Victor Sudakov
ards compliant (not written for some proprietary hardware terminal server protocol) driver for Windows. Not exactly a FreeBSD question, I know :) -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru ___ freebsd-questions@freebsd.org mai

Sharing COM ports to Windows hosts

2012-09-02 Thread Victor Sudakov
COM port drivers compatible therewith? Maybe some Windows drivers for hardware console servers (like Moxa) would work with tits etc? Thanks a lot for any advice. -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru ___ freebsd

Re: doom, quake, hexen...

2012-08-21 Thread Victor Sudakov
_compression Segmentation fault (core dumped) [sudakov@vas ~] exit Script done on Tue Aug 21 20:30:06 2012 -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru ___ freebsd-questions@freebsd.org mailing list http://lists.freebsd.org/

Re: doom, quake, hexen...

2012-08-21 Thread Victor Sudakov
Victor Sudakov wrote: > > > > Try games/deng. > > This one would not run out of the box either: Yuri, you are the maintainer of the games/deng port. What great luck! I have contacted the deng forum about deng not working and they said the software is too old: http://

Re: doom, quake, hexen...

2012-08-20 Thread Victor Sudakov
It does not compile. Perhaps I should submit a PR. > for Quake 2 it is games/quake2. There is no such directory games/quake2. There is games/quake2lnx, but it does not work as I wrote in the first mail: games/quake2lnx even pretends to do something: it opens a tiny X11 window with some flicker

Re: doom, quake, hexen...

2012-08-20 Thread Victor Sudakov
ght II via wine. > > > > Oh, is there really nothing native? > > No, that game is far too old, but Quake and Quake 2 have ports > (to native FreeBSD) which work very nicely with the original > files from the DOS version. What a

Re: doom, quake, hexen...

2012-08-20 Thread Victor Sudakov
Undefined symbol "Con_AddCommand" loadGamePlugin: Loading of libjdoom.so failed ((null)). Error loading game library.Z_Shutdown: Used 1 volumes, total 33554432 bytes. [sudakov@vas ~] -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru ___

Re: doom, quake, hexen...

2012-08-20 Thread Victor Sudakov
Walter Hurry wrote: > > prboom works flawlessly on my FreeBSD9 laptop. Wow! This one really works and looks like the good old Doom, music and sound and all. Thank you Walter! -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.to

Re: doom, quake, hexen...

2012-08-20 Thread Victor Sudakov
n I get nothing. > Music plays, I can move the mouse and listen to the main menu > choices "clicking", but I don't see anything. For older DooM > ports, I've successfully been playing DooM, DooM II and Heretic > using lsdldoom port on a 300 MHz P2. Note lsdldoom also suppo

doom, quake, hexen...

2012-08-20 Thread Victor Sudakov
games/quake2lnx even pretends to do something: it opens a tiny X11 window with some flickering rubbish and plays some farting sounds to the audio system. Is there any working 3D shooter in the ports collection my 8 year old son could enjoy? Thank you very much in advance. -- Victor Sudakov, VAS4

Re: On-access AV scanning

2012-07-29 Thread Victor Sudakov
With these two simple measures, I was able to prevent virus infection on Windows hosts with a very high risk (such as public computers in a summer children's camp). -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru ___ fre

Re: Securituy - logging of user commands

2012-07-25 Thread Victor Sudakov
Peter Boosten wrote: > Have you ever considered the audit function of FreeBSD? Does it really log user commands? At best, it logs executed processes. -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru ___ freebsd-questi

Re: Locally modifying ports

2012-07-25 Thread Victor Sudakov
the extra patches need some pathnames to be removed (need a PATCH_STRIP different from those in files/patch-*)? -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru ___ freebsd-questions@freebsd.org mailing list http://lists.freebsd.o

Re: enable modeline in vim

2012-07-16 Thread Victor Sudakov
talled vim from the ports tree, > /usr/local/share/vim/vimrc is the shared vimrc file amongst all > users. Have you tried setting it in there? I have finally found the cause of the trouble. There was a "set nocompatible" command in ~/.vimrc after the "set modeline" co

Re: enable modeline in vim

2012-07-16 Thread Victor Sudakov
modeline > set modelines=3 > As I said, in /root/.vimrc I have: set modeline set modelines=5 > And it works, no matter from root or normal user. Hope this helps. And it does not work for root. vim-7.3.556_1 Surely I am doing something stupid but I cannot figure out what. -- Victor S

enable modeline in vim

2012-07-16 Thread Victor Sudakov
pt root. Someone has protected the root account so tightly that I cannot even shoot myself in the leg. Do you know how I could override this protection? -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru ___ freebsd-questions@freebsd.o

alias_pptp.ko

2012-07-16 Thread Victor Sudakov
AT options LIBALIAS is not sufficient, one still has to load alias_pptp.ko as a module. I could not find the relevant option in the NOTES. Thank you very much for any input. -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru ___ freebsd

Re: FreeBSD on the ASUS P8H67-M LGA1155 H67 motherboard

2012-06-08 Thread Victor Sudakov
Victor Sudakov wrote: > > > > 2. It looses one of the HDDs during intensive read/write operations: > > > > Jun 2 00:55:33 vas kernel: ahcich1: Timeout on slot 4 port 0 > > Jun 2 00:55:33 vas kernel: ahcich1: is cs 00c0 ss 00f0 rs > > 00

Re: FreeBSD on the ASUS P8H67-M LGA1155 H67 motherboard

2012-06-07 Thread Victor Sudakov
Victor Sudakov wrote: > > 2. It looses one of the HDDs during intensive read/write operations: > > Jun 2 00:55:33 vas kernel: ahcich1: Timeout on slot 4 port 0 > Jun 2 00:55:33 vas kernel: ahcich1: is cs 00c0 ss 00f0 rs > 00f0 tfd c0 serr cmd 00

Re: FreeBSD on the ASUS P8H67-M LGA1155 H67 motherboard

2012-06-07 Thread Victor Sudakov
some very rare species :) It has X-Video Extension version 2.2, my movies are back, hurrah! In the meanwhile, I'll wait for the development of the SandyBrdige Intel driver. -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru ___ f

Re: FreeBSD on the ASUS P8H67-M LGA1155 H67 motherboard

2012-06-02 Thread Victor Sudakov
tually intel GFX is the only one i tolerate and it works. > > Eg the one in my lenovo G550 laptop needs 2.7 driver, the one builtin in > Atom D525 processor needs 2.9 driver. > > Completely new intel GFX are not YET supported but that what i only > heard as i don't have any of th

Re: FreeBSD on the ASUS P8H67-M LGA1155 H67 motherboard

2012-06-01 Thread Victor Sudakov
commendations, but I basically thought that the sheer CPU power should be sufficient to play the video. Is there a solution which "just works"? Replacing mplayer with something else? Buying a video card (what model)? -- Victor Sudakov, VAS4-RIPE, VAS47-RIP

Re: 9.0 on SSD

2012-06-01 Thread Victor Sudakov
t; benchmarks/bonnie++. > > To get it aligned, back up and repartition: [dd] Warren, Thank you very much for the useful tips. One more question regarding SSD. The FreeBSD installer enabled journaled soft-updates on the filesystem which resides on t

Re: 9.0 on SSD

2012-05-31 Thread Victor Sudakov
ntrol output? > > > > [root@vas ~] tunefs -p /dev/ada0p2 | & grep -i trim > > tunefs: trim: (-t) enabled > > [root@vas ~] camcontrol identify ada0 | egrep '^Fea|TRIM' > > Feature Support Enabled V

9.0 on SSD

2012-05-30 Thread Victor Sudakov
Support Enabled Value Vendor data set management (TRIM) yes [root@vas ~] -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru ___ freebsd-questions@freebsd.org mailing list http://lists.freebsd.org/

Re: FreeBSD on the ASUS P8H67-M LGA1155 H67 motherboard

2012-05-16 Thread Victor Sudakov
ouch for any > surround features. Add snd_hda_load="YES" to /boot/loader.conf Thanks for the good news. Can you please show 'cat /dev/sndstat' and what the kernel thinks about the NIC (is it the re(4) driver?) > > Using an Nvidia PCIe card - haven't tried the on-board

FreeBSD on the ASUS P8H67-M LGA1155 H67 motherboard

2012-05-15 Thread Victor Sudakov
drivers work well with this motherboard? TIA. -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru ___ freebsd-questions@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-questions To unsubscribe, send any mail

getty + cu, blocking mode, dialout

2012-04-25 Thread Victor Sudakov
t q". It is all happening on 8.2-RELEASE-p6 i386. There is an external modem attached to the ttyu0 line. Here is a ktrace of cu: http://zalil.ru/33111377 Thank you very much for any input. -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda

Re: portmaster best practices

2012-01-25 Thread Victor Sudakov
in portmaster.rc to store backups of deleted packages, just in case. [dd] -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru ___ freebsd-questions@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-questio

Re: portmaster best practices

2012-01-24 Thread Victor Sudakov
y, > and use rsync to then distribute the changes in /usr/local to my > other machines. This only works for machines that are on the same > major FreeBSD version and architecture, of course. That's interesting. Do you also rsync /var/db/pkg ? -- Victor Sudakov, VAS4-RIPE, VAS4

Re: portmaster best practices

2012-01-24 Thread Victor Sudakov
ies (portmaster -r) also? [dd] > The better way of debugging such problems for me is pkg_libchk from > sysutils/bsdadminscripts. I use sysutils/libchk when I have to, but it is a tedious manual job I would like to avoid. -- Victor Sudakov, VAS4-R

portmaster best practices

2012-01-23 Thread Victor Sudakov
enldap-sasl-client-2.4.24: Origin: net/openldap24-client -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru ___ freebsd-questions@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-questions To unsubscribe, send any mail to "freebsd-questions-unsubscr...@freebsd.org"

need a weird samba configuration

2012-01-13 Thread Victor Sudakov
the idmap functionality and use existing Unix uids/gids with winbindd running? TIA for any input. -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru ___ freebsd-questions@freebsd.org mailing list http://lists.freebsd.org/mailman/listi

Re: mutual forwarders in ISC BIND

2011-12-29 Thread Victor Sudakov
ng about some cache synchronizing > > technique for my resolvers. > > Preventive lookups can be made via self-written scripts. Sure, after query log analysis. > > AFAIK there is no free open source implementations providing cache > synchronization between different resolvers.

Re: "portmaster --list-origins" question

2011-12-29 Thread Victor Sudakov
es. It is strange however that windowmaker itself was absent. What does 'pkg_info -xrR windowmaker' show? -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru ___ freebsd-questions@freebsd.org mailing list http://lists.freebsd.o

Re: mutual forwarders in ISC BIND

2011-12-28 Thread Victor Sudakov
t; reason why 8.8.8.8 seems faster - it answered from cache while your > resolver made full lookup chain. Duh! That is why I started thinking about some cache synchronizing technique for my resolvers. -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru __

Re: mutual forwarders in ISC BIND

2011-12-28 Thread Victor Sudakov
Victor Sudakov wrote: > > > Victor, we researched this topic and learned that response time highly > > depends on distance between user and resolver, while cache influence > > on this value is lesser. > > So I advice you to keep all as is. > > Be it so. Thank y

Re: mutual forwarders in ISC BIND

2011-12-28 Thread Victor Sudakov
Peter Andreev wrote: [dd] > Victor, we researched this topic and learned that response time highly > depends on distance between user and resolver, while cache influence > on this value is lesser. > So I advice you to keep all as is. Be it so. Thank you. -- Victor Sudakov, VAS4

Re: mutual forwarders in ISC BIND

2011-12-28 Thread Victor Sudakov
own. I don't suggest a "forward only" setup. I just want the servers to share the cache. [dd] > > On a side note, have you considered unbound ? > > It may be better suited to your needs and scale. I would read a comparison of BIND and Unbound with great interest. Do you pe

Re: mutual forwarders in ISC BIND

2011-12-28 Thread Victor Sudakov
path just makes everything > look slow. I just wanted the servers to benefit from each other's caches. That could speed up the lookups. -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru ___ freebsd-questions@freebsd.org ma

mutual forwarders in ISC BIND

2011-12-27 Thread Victor Sudakov
using several DNS servers as recursive resolvers. The usage pattern is pretty much equal between all the servers. What I want is create a cache common to all the recursive servers to reduce traffic and response time (much like squid siblings work). Thank you for any input. -- Victor Sudakov, VAS4

Re: opening vim with a flag: ready to write?

2011-12-15 Thread Victor Sudakov
Gary Kline wrote: > > > is the a way of starting off vim or gvim and be able to type into > > > the editor _without_ first typing: > > > > > > a,i,o,O,I,A, or any other character? I use all the time: $ echo $SVN_EDITOR vim -c startinsert -- Victor Suda

Re: carp(4) on FreeBSD 8.2

2011-12-14 Thread Victor Sudakov
lab is virtual, and promiscuous mode was prohibited in the virtual NICs' properties on the hypervisor. Thanks to all who responded. -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru ___ freebsd-questions@freebsd.org mailing

Re: carp(4) on FreeBSD 8.2

2011-12-14 Thread Victor Sudakov
WARD #packet destination changes options IPFIREWALL_NAT #ipfw kernel nat support options LIBALIAS options QUOTA #enable disk quotas options ROUTETABLES=4 # $Header: svn://big/configs/kernels/trunk/FW 2967 2011-12-13 10:08:29Z sudakov

carp(4) on FreeBSD 8.2

2011-12-13 Thread Victor Sudakov
1.5e00.0101DYNAMIC Fa0/18 What is even more strange, tcpdump on le0 does not even see ICMP echo requests addressed to 10.14.134.99. What am I doing wrong? -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru ___ free

Re: strange behavior of restore(8)

2011-10-24 Thread Victor Sudakov
t's pretty old). > > *WITHOUT* checking, I'm willing to bet that _that_ is the problem. > > An O/S limit on the size of a _file_ -- a 32-bit 'offset' type. > And a 'large' file in the dump. I used the '-N' switch to restore, so no actual files wer

Re: strange behavior of restore(8)

2011-10-24 Thread Victor Sudakov
etty old). > > ufs1 vs ufs2 ? UFS2 on the first host, irrelevant on the second host (I was trying "restore -rN"). > Also if there are a lot of files, restore needs quite a bit of RAM. I should think so, but it generated no errors or "out of swap" messages. It was jus

Re: strange behavior of restore(8)

2011-10-24 Thread Victor Sudakov
-RELEASE-p3 amd64, 8GB RAM and 2xXeon 2.66GHz > and the system that couldn't restore it? FreeBSD 6.4-RELEASE-p10 i386, 256M RAM, Pentium II 350.80MHz (yes, it's pretty old). -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru ___

Re: strange behavior of restore(8)

2011-10-24 Thread Victor Sudakov
k to /dev/null without any errors. > > Can restore(8) do a listing of the DUMP? Sure. The listing has 1330237 lines. -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru ___ freebsd-questions@freebsd.org mailing list http://lis

Re: strange behavior of restore(8)

2011-10-24 Thread Victor Sudakov
Matthias Apitz wrote: > > Victor Sudakov wrote: > > > > > > > > > > I am trying to restore a UFS2 zero level dump sized about 51G. > > > > > restore has created 6105 directories and no files at all, and now is > > > > > waiting fore

Re: strange behavior of restore(8)

2011-10-23 Thread Victor Sudakov
= 25395100 (0x1837f9c) > > Asuming 4 is the fd of the restore device, i.e. the DUMP, this seek does > nothing: moves to offset of 0 bytes from the current position. Are you > sure that the device (tape?) is fine? I have already copied the d

Re: strange behavior of restore(8)

2011-10-23 Thread Victor Sudakov
Victor Sudakov wrote: > > > > > > I am trying to restore a UFS2 zero level dump sized about 51G. > > > restore has created 6105 directories and no files at all, and now is > > > waiting forever in the runnable state. > > > > I don't have a

Re: strange behavior of restore(8)

2011-10-21 Thread Victor Sudakov
EK_CUR)= 25399196 (0x1838f9c) lseek(4,0x0,SEEK_CUR)= 25399196 (0x1838f9c) lseek(4,0x0,SEEK_CUR)= 25399196 (0x1838f9c) lseek(4,0x0,SEEK_CUR)= 25399196 (0x1838f9c) lseek(4,0x0,SEEK_CUR)

strange behavior of restore(8)

2011-10-21 Thread Victor Sudakov
still have plenty of room in /tmp. TIA for any ideas. -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru ___ freebsd-questions@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-questions To unsubscribe, send a

RFC2544 benchmark implementation for FreeBSD?

2011-10-13 Thread Victor Sudakov
Colleagues, Does anyone know of an RFC2544 network benchmark implementation for FreeBSD? What network benchmarking software do you use? There are some in ports/benchmarks like netpipe, dbs etc, which would you advise from personal experience? TIA. -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN

Re: need help with pf configuration

2011-10-10 Thread Victor Sudakov
eset to filter all that traffic identified by tag. Thank you again. Tags rule! The following excerpt illustrates the concept I have tested in my lab: pass in on $dmz from any to any tag FROMDMZ pass in on $inside from any to any block out on $inside tagged FROMDMZ The second rule is required to create

Re: need help with pf configuration

2011-10-10 Thread Victor Sudakov
d lists? > The ruleset below seems "scalable" to any number of interfaces. > > inside1 = em1 > inside2 = em2 > dmz = em0 > insides = "{" $inside1:network $inside2:network "}" The problem is, there could be several routed networks behind the inside i

Re: need help with pf configuration

2011-10-10 Thread Victor Sudakov
to filter all that traffic identified by tag. > > Quoting pf.conf(5): "This can be used, for example, to >provide trust between interfaces and to determine if packets >have been processed by translation rules." I guess the tagging feature can be useful.

Re: need help with pf configuration

2011-10-09 Thread Victor Sudakov
mit DMZ keep-state permit ip from any to any recv INSIDE xmit OUTSIDE keep-state permit ip from any to any recv DMZ xmit OUTSIDE keep-state -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru ___ freebsd-questions@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-questions To unsubscribe, send any mail to "freebsd-questions-unsubscr...@freebsd.org"

Re: need help with pf configuration

2011-10-09 Thread Victor Sudakov
fic to be initiated from a more secure interface to a less secure interface and not vice versa). -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru ___ freebsd-questions@freebsd.org mailing list http://lists.freebsd.org/mailman/list

need help with pf configuration

2011-10-08 Thread Victor Sudakov
inside1 security100 inside2 security100 dmz security50 and that's it, the PIX logic would do the rest. Thank you very much in advance for any input. -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru ___ freebsd-questions@freebs

Re: Need an audio multicasting solution

2011-09-19 Thread Victor Sudakov
idth.org/68975.html http://victor-sudakov.dreamwidth.org/69243.html -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru ___ freebsd-questions@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-questions To unsubscribe, send any mail to "freebsd-questions-unsubscr...@freebsd.org"

Re: Cannot remove filesystem ACLs

2011-09-19 Thread Victor Sudakov
Victor Sudakov wrote: > > I don't understand why I cannot completely remove the ACLs from a > directory. Please look: [dd] > > Why are the "+" sign and the mask entry still there? How do I get rid > of them completely? It may seem a bit radical but it does

Re: Need an audio multicasting solution

2011-09-15 Thread Victor Sudakov
t;, it still tries to build scores of dependencies including some components of the X Window system. Not nice. Now I am experimenting with ffmpeg (with ffserver and without) with moderate success. -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru

Re: Need an audio multicasting solution

2011-09-15 Thread Victor Sudakov
really useful. > > Why do you need multicasting anyway? To save bandwidth mostly, and it's fun to setup :). Taking into account that I have PIM working across all our WAN links (an in-house monitoring/alarm system relies thereupon), it would be n

Re: Need an audio multicasting solution

2011-09-11 Thread Victor Sudakov
uch in advance. > > > > I doubt people in this list are the lmgtfu type! > > I use Icecast on FBSD and it works great. A quick look at Icecast showed that it does not support multicast either. It this true? If so, Icecast is completely useless for my scen

Re: Need an audio multicasting solution

2011-09-11 Thread Victor Sudakov
uch in advance. > > > > I doubt people in this list are the lmgtfu type! > > I use Icecast on FBSD and it works great. Alejandro, correct me if I am wrong but AFAIK Icecast works with mp3 files. Can it really read audio from /dev/dsp? I don't need mp3, I would prefer to multica

Need an audio multicasting solution

2011-09-09 Thread Victor Sudakov
there are many ways to implement this, but I am especially interested in personal first-hand experience, success stories or good white papers. Please no lmgtfu-type replies. Thanks very much in advance. -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru

Re: OCI support in PHP is dead

2011-07-14 Thread Victor Sudakov
l vendors moving from Oracle to Postgres any time soon. I even considered running sqlplus via ssh but this is too ugly and not compatible with PHP frameworks. Seems that FreeBSD has lost yet another niche in our company. Which is a real pity because Linux is a pain in th

OCI support in PHP is dead

2011-07-14 Thread Victor Sudakov
tly appreciated. Do you perhaps know of some broker I could install to the Oracle servers to continue running PHP+Oracle client on FreeBSD? Does anyone run Oracle client on FreeBSD? What is your view of the future? -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk

Cannot remove filesystem ACLs

2011-01-28 Thread Victor Sudakov
ommon/ # getfacl !$ getfacl /home/dogovor.common/ # file: /home/dogovor.common/ # owner: nastenkoea # group: dogovor user::rwx group::rwx mask::rwx other::--- # Why are the "+" sign and the mask entry still there? How do I get rid of them completely? TIA for any input. FreeBSD 8.1-RELEASE-p2 i

Re: rc.d and environment variables

2010-12-24 Thread Victor Sudakov
quot;. Maybe I should try to place "export KRB5_KTNAME=/home/svn/svn.keytab" there. At least /etc/rc.conf.d/svnserve will be sourced only once at svnserve startup, and not hundreds of times like rc.conf. But anyway, I don't like the idea of placing commands (not variables) in /etc

Re: rc.d and environment variables

2010-12-24 Thread Victor Sudakov
ytabs. No matter where we store the keytabs, if it is not the default location (/etc/krb5.keytab for FreeBSD), we face the same problem of telling the server application about the alternative location of the keytab. -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru ___

Re: rc.d and environment variables

2010-12-24 Thread Victor Sudakov
ld be used. I really don't know what the security implications will be if /etc/krb5.keytab is readable by anyone besides the root user? Do you have a clue about it? There are other services' keys stored there besides svn (host/*, cvs/* etc). -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN

Re: rc.d and environment variables

2010-12-24 Thread Victor Sudakov
nf* files? > > Just export it from rc.conf If exported from rc.conf, it will affect all daemons. I need to set it only for svnserve or for the svn user (which is equivalent in my case). -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru __

Re: rc.d and environment variables

2010-12-24 Thread Victor Sudakov
ot;su -m $user", but the login class is not applied there, nor is the users's shell called. -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru ___ freebsd-questions@freebsd.org mailing list http://lists.freebsd.org/mai

Re: rc.d and environment variables

2010-12-23 Thread Victor Sudakov
: > and did you make sure there is no override setting in the > corresponding user's ~/.login.conf? I am pretty sure because when I login interactively as svn, I see $ whoami svn $ printenv | grep KT KRB5_KTNAME=/home/svn/svn.keytab $ But it does not work for the rc.d script. --

Re: rc.d and environment variables

2010-12-23 Thread Victor Sudakov
t; Anyway, did you find a way to use some _flags= setting for > /etc/rc.conf to be used by svnserve? This would be the > method most other programs handle things like configuration > flags that are not set by an own config file. To my regret, this is not a svnserve option, it is a

Re: rc.d and environment variables

2010-12-23 Thread Victor Sudakov
cripts all start by sucking in rc.subr, which in turn > pulls in the rc.conf files. So how do I make the /usr/local/etc/rc.d/svnserve script suck in KRB5_KTNAME for the "svn" user from the rc.conf* files? -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru

Re: rc.d and environment variables

2010-12-23 Thread Victor Sudakov
d to pass $ORACLE_HOME to apache on start for some PHP module to work correctly. -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru ___ freebsd-questions@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-

Re: rc.d and environment variables

2010-12-23 Thread Victor Sudakov
ser (the user svnserve runs from) and not any other user. > I think that is the officially sanctioned way of doing such things. Of course I can always write my own script or put something like su -l svn -c 'usr/local/bin/svnserve -d --listen-port=3690 bla bla' into /etc/rc.local

Re: rc.d and environment variables

2010-12-23 Thread Victor Sudakov
es /etc/rc.local have to do with the rc.subr framework? Of course I can abandon the standard /usr/local/etc/rc.d/svnserve script and write my own one, or start svnserve from /etc/rc.local (which I will do if I don't find a more graceful way), but it is not what the question was about.

rc.d and environment variables

2010-12-23 Thread Victor Sudakov
' and then start the daemon manually, the environment variable is set all right, but not when it is started from /usr/local/etc/rc.d/svnserve. All this is happening on 8.1-RELEASE-p2. Thanks in advance for any help. -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptu

rc.d and environment variables

2010-12-23 Thread Victor Sudakov
' and then start the daemon manually, the environment variable is set all right, but not when it is started from /usr/local/etc/rc.d/svnserve. All this is happening on 8.1-RELEASE-p2. Thanks in advance for any help. -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptu

Re: geli keys

2010-10-24 Thread Victor Sudakov
oth. Why does the geli(8) man page always use a 64B long keyfile as an example? Why 64 bytes and not 128 or 1024 or whatever? What if I use a well randomized keyfile and a weak passphrase, will the master key be weaker? -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru

geli keys

2010-10-24 Thread Victor Sudakov
? Thanks in advance for any input. -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru ___ freebsd-questions@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-questions To unsubscribe, send any mail to "fr

Re: apache22 and threads

2010-09-21 Thread Victor Sudakov
ch I still am not really sure. Each has its set of pros and cons. From what you have written it seems that prefork and no threads is the robustest, most reliable configuration (even if more resource consuming)? -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru ___

apache22 and threads

2010-09-19 Thread Victor Sudakov
default is: "Enable Threads in apr is on" (WITH_THREADS=true). Thank you in advance for any input. PS ports/devel/apr1 will also be used for the subversion client. -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:suda...@sibptus.tomsk.ru _

  1   2   >