Re: How do I know what a meta port installs?

2005-03-31 Thread Erik Nørgaard
Per Berger wrote: I have installed a couple of meta ports, for example gnome2. How can I see exactly which ports the meta port installs? I have tried to figure it out but failed... I am right now installing gnome2-power-tools and can see that it installs apache (!) which causes some concern

Re: sendmail

2005-03-31 Thread Erik Nørgaard
Gert Cuykens wrote: Just how big is this movie and are you sure his ISP's/private mail server would even accept it? Its 5.5mb and my gmail doesnt want to sent it :( So how do you do that with the sendmail command ? As everyone else notes, this is not a job for e-mailing. Even if you want to

Re: can i delete /stand ?

2005-04-01 Thread Erik Nørgaard
Gert Cuykens wrote: It bugs me... yes you can. If you need to run sysinstall later it will be in /usr/sbin/sysinstall You might want to check your init_path in loader.conf, in /boot/defaults/loader.conf it is set to /sbin/init:/sbin/oinit:/sbin/init.bak:/stand/sysinstall it would be sensible

Re: can i delete /stand ?

2005-04-02 Thread Erik Nørgaard
Gert Cuykens wrote: You might want to check your init_path in loader.conf, in /boot/defaults/loader.conf it is set to /sbin/init:/sbin/oinit:/sbin/init.bak:/stand/sysinstall it would be sensible to replace /stand/sysinstall by /rescue/init What happens if i leave /stand/sysinstall and put

Re: ipfilter problems

2005-04-02 Thread Erik Nørgaard
Angelin Lalev wrote: Two days ago I've switched the firewall on my FreeBSD 5.3 RELEASE router from ipfw to ipfilter. The firewalls are not my speciality and ipfilter looked simplier way to do NAT with firewall, because it separates NAT rules from filtering rules. The router has two interfaces

Re: can i delete /stand ?

2005-04-02 Thread Erik Nørgaard
dick hoogendijk wrote: Some people like sysinstall as a postconfiguration tool, and documen- tation refers to this. But you can run it from /usr/sbin/sysinstall I can't. Nor have I something like '/rescue/init' So I assume you're taking me (us?) on? I don't know which system you're on. Both are

Re: can i delete /stand ?

2005-04-02 Thread Erik Nørgaard
Chris wrote: I did like the idea of rm -r /boot I hate that / in the beginning - can I get rid of it by 'rm -r /'? Really, while I can sometimes find it intertaining to wonder and discuss the reasons for whatever wierdness people my prefer, and see the discussion to go off track. I think we

Re: IPFILTER and NFS

2005-04-03 Thread Erik Nørgaard
Matt Juszczak wrote: Howdy, Trying to get IPFILTER and NFS working. A google search didn't show much about my specific issue. With ipfilter working, nfs initially works, until someone tries to login. Then it stops working. With my firewall down on the NFS-CLIENT machine, it works fine. Any

Re: Rsync Setup

2005-04-03 Thread Erik Nørgaard
Robert Slade wrote: Hi, I'm trying to get my brain around rsync. What I am trying to do is synchronise 2 directories on different machines. I have an rsync server running on one machine and running it as a client on the other. I have been able to get this setup to work. However, it just syncs the

Re: ipfilter.log

2005-04-04 Thread Erik Nørgaard
Francis Whittington wrote: Hi guys, I've been following this guide: http://www.unixguide.net/freebsd/fbsd_installguide/index.php So far I have gotten the firewall/router to work. Everything seems to be okay, except I do not see anything being logged in ipfilter.log. My rc.conf options are:

Re: sendmail

2005-04-04 Thread Erik Nørgaard
Gert Cuykens wrote: On Apr 1, 2005 9:59 AM, Erik Nørgaard [EMAIL PROTECTED] wrote: As everyone else notes, this is not a job for e-mailing. Even if you want to e-mail the file, it is not a job for sendmail. When you send attachments they are typically base64 encoded, this explodes the file from

ssh key fingerprints

2005-04-04 Thread Erik Nørgaard
Hi, How do I see the fingerprints of my ssh keys, both user and host keys? I know I can get the fingerprint of the host key by removing the host from my known hosts and connecting, but there ought to be some more straight forward way, and what about the user keys? And how do I determine the key

Re: DHCP failing with WiFi after 6.0 upgrade

2005-12-02 Thread Erik Nørgaard
Jesse Sheidlower wrote: I recently took my IBM ThinkPad X23, which had been running 4.11, and did a fresh install (backup files, wipe disk, install from scratch) to 6.0. Most things have gone smoothly, though there are still a few things to iron out. My biggest problem is that I can't seem to

Re: Thanks for FBSD6

2005-12-07 Thread Erik Nørgaard
Dominique Goncalves wrote: basically the meat of the script looks like: ifconfig ath0 ssid my wireless network dhclient ath0 if someone can tell me what /etc/rc.conf options i need to set to duplicate that, that would be cool. i played around with it for a while but never got it to work

Re: Thanks for FBSD6

2005-12-07 Thread Erik Nørgaard
Erik Nørgaard wrote: and create wpa_supplicant.conf: network={ ssid=MyWireless mode=11g } ofcourse there are more options see wpa_supplicant.conf(5), I just now see that I've used 11g incorrectly. Well, another thing that maybe someone can highlight: Say you configure two

Re: Copying kernel and OS

2005-12-07 Thread Erik Nørgaard
Jack Raats wrote: I've two machines running FreeBSD 6.0-STABLE. One very fast machine and one very very slow machine. On the fast machine I can compile a new kernel and OS very quickly and easily. Is it possible to transfer the compile world and kernel to the slow machine. If yes whart

Re: Thanks for FBSD6

2005-12-07 Thread Erik Nørgaard
Dominique Goncalves wrote: You can use in /etc/rc.conf: ifconfig_ath0=DHCP ssid your_ssid That's FreeBSD 5.X and prior way of doing it. The suggested way to config your wirerless is with wpa_supplicant(8). In rc.conf add: According to this documentation

Re: Projects List page

2005-12-10 Thread Erik Nørgaard
pete wright wrote: Saw the newly posted list of projects that need volunteers. One project in particular caught my eye: http://www.freebsd.org/projects/ideas/#p-pxeinstaller (FreeBSD PXE Install support) I do not see an email contact regarding this, has anyone started working something like

Re: Adding lines to /etc/rc.conf during sysinstall wihout being REMOVED

2005-12-16 Thread Erik Nørgaard
Josh Endries wrote: Does anyone know the correct way to add lines to rc.conf without sysinstall commenting them out and prepending REMOVED to them, during an automated install.cfg routine? Currently I have a pkg I made that adds stuff like ntp.conf and rc.conf, but all the lines in my custom

Re: Adding lines to /etc/rc.conf during sysinstall wihout being REMOVED

2005-12-16 Thread Erik Nørgaard
Josh Endries wrote: Here is my install.cfg: debug=YES #nonInteractive=YES #noWarn=YES disk=ad0 partition=all bootManager=standard diskPartitionEditor #diskPartitionWrite ad0s1-2=swap 4194304 none ad0s1-1=ufs 524288 / ad0s1-3=ufs 19531250 /home 1 ad0s1-4=ufs 2097152 /tmp 1 ad0s1-5=ufs

Re: Wireless NIC in FreeBSD 6.0 ?

2005-12-25 Thread Erik Nørgaard
Yuan Jue wrote: ath0: flags=8843UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST mtu 1500 inet 166.111.208.137 netmask 0xfe00 broadcast 166.111.209.255 ether 00:11:85:1b:21:79 media: IEEE 802.11 Wireless Ethernet autoselect (OFDM/36Mbps) status: associated ssid

Re: Wireless NIC in FreeBSD 6.0 ?

2005-12-25 Thread Erik Nørgaard
Erik Nørgaard wrote: Your NIC: 166.111.208.137/23 Your DNS: 166.111.8.28 Just now when I think of it, maybe you meant to ping 166.111.208.28? Cheers, Erik -- Ph: +34.666334818 web: http://www.locolomo.org S/MIME Certificate: http://www.locolomo.org/crt/2004071206

Re: Wireless NIC in FreeBSD 6.0 ?

2005-12-25 Thread Erik Nørgaard
Yuan Jue wrote: On Sunday 25 December 2005 19:53, you wrote: yes. they are not on the same LAN. but when I use my local NIC to connect the internet, everything is fine. the following is how my local NIC works: [EMAIL PROTECTED] ifconfig bge0: flags=8843UP,BROADCAST,RUNNING,SIMPLEX,MULTICAST mtu

Re: Wireless NIC in FreeBSD 6.0 ?

2005-12-25 Thread Erik Nørgaard
Yuan Jue wrote: one more question since I use a fixed IP address in my dormitory and a dynamic IP address in the classroom or library, i need to change my local NIC configure from time to time. In fact, I use the fixed IP address as my default setting, which is as follows: what is the right

Re: Help with IP Filter 4.1.8

2006-03-11 Thread Erik Nørgaard
Roman Serbski wrote: Start over with a clean /usr/src and /usr/obj tree and read the file ``/usr/src/UPDATING'' for instructions about upgrading from source. Dear Erik and Giorgos, Thanks a lot for your assistance! I just cvsuped one hour ago, build/install kernel/world and now everything is

Re: Arplookup strange messages

2006-03-11 Thread Erik Nørgaard
Pietro Cerutti wrote: Hi list, today in the daily security report (periodic) of a i386 machine there is this message repeated about 30 times: +arplookup 0.0.0.0 failed: host is not on local network From rfc 3330: 0.0.0.0/8 - Addresses in this block refer to source hosts on this network.

Re: resolv.conf getting rewritten at system startup

2006-03-16 Thread Erik Nørgaard
Duane Whitty wrote: I use DHCP to configure my network interface. At startup my resolv.conf is overwritten, setting my nameserver to the address of the router running DHCP. dhclient, also the new one updates /etc/resolv.conf with the information received from the dhcp server. You can change

Solved, sort of: configuring fetch to passive mode

2006-03-17 Thread Erik Nørgaard
Erik Norgaard wrote: This ought to be a configuration tunable, but I can't find any documentaion on it: How to I force fetch to use passive mode? It appears that this is indeed an environment variable, and is further set in login.conf, so this turned out not to be the cause of the problem.

Re: 6.1-BETA 4 stable for normal use?

2006-03-22 Thread Erik Nørgaard
Marc G. Fournier wrote: I am using 6.1-PRERELEASE which has actually been upgraded from 6.1-BETA3. The system as such is stable, but there are some nuisances. These are not fatal in any way but may cause confusion. So in particular if you're new to FreeBSD, better stay with 6.0. Like ... ?

Re: 6.1-BETA 4 stable for normal use?

2006-03-22 Thread Erik Nørgaard
Kris Kennaway wrote: On Wed, Mar 22, 2006 at 09:55:34PM +0100, Erik N?rgaard wrote: Marc G. Fournier wrote: I am using 6.1-PRERELEASE which has actually been upgraded from 6.1-BETA3. The system as such is stable, but there are some nuisances. These are not fatal in any way but may cause

Re: How to start a script running at boot time?

2006-03-23 Thread Erik Nørgaard
[EMAIL PROTECTED] wrote: Hi, I have a script I would like to launch at boot time, as a non-root user, to remain running in the background. What is the best way to accomplish this? I looked through the rc* stuff, and it looks like overkill for what I need, plus my scripting isn't that

Re: How do you keep users from stealing other user's ip??

2006-03-23 Thread Erik Nørgaard
Mark Jayson Alvarez wrote: Good day, We are trying to reorganize our local area network and I need some tips on how you are managing your own lan... We have a vanilla pc router with interface facing our private lan and interface facing the Internet. One problem which we are

Re: Not an easy install

2006-03-25 Thread Erik Nørgaard
Tim wrote: Why couldn't you guys make a install easy instead of this and that, ok I am a newbie and it should be easy, I have installed Ubuntu, it was like a dream, smooth as silk, Fedora pretty much the same FreeBSD, its a nitemare if you have never done it, I am now reloading windows and

Re: Urgent Help needed: How to boot in single user mode with usb keyboard

2006-03-26 Thread Erik Nørgaard
Ian Lord wrote: Hi, I am currently in a maintenance window trying to rebuildworld... I am doing it on a dell poweredge with a built in drac wich emulate a usb keyboard... When I need to boot on the drac, I need to use boot with usb keyboard in the menu... Now I need to boot in single

Cyrus-IMAP disallowing clear text connections

2006-03-26 Thread Erik Nørgaard
Hi: I have a Postfix/Cyrus-IMAP setup, Postfix requires TLS and user authentication to relay mail, and cyrus requires TLS and user authentication to retrieve mail. Or so I thought: I just tested to see that things were in fact encrypted and unencrypted connection was refused, works fine for

Re: Cyrus-IMAP disallowing clear text connections

2006-03-27 Thread Erik Nørgaard
Anish Mistry wrote: On Sunday 26 March 2006 16:37, Erik Nørgaard wrote: Cyrus-IMAP accepts unencrypted connections _and_ authentication even though I have set the following in imapd.conf allowplaintext: yes allowplainwithouttls: no How do I force the use of TLS for Cyrus-IMAP? Also

Re: User unknown?

2006-03-27 Thread Erik Nørgaard
Guillaume R. wrote: Hello I'm trying to setup (for the first time under FreeBSD!) my usual setup to read my mail (postfix+fm+procmail+mutt) But I got a serious problem: when I try to fetch the mails for my user those mails dont go in /var/mail/my_user but *always* in /var/mail/root... I read all

Re: ipnat syntax error?

2006-04-01 Thread Erik Nørgaard
Juergen Heberling wrote: Could someone please check me on this ... fw1# ipnat -CFn -f /etc/ipnat.rules 0 entries flushed from NAT table 1 entries flushed from NAT list syntax error error at -, line 1 /etc/ipnat.rules contains: map em0 192.168.1.0/24 - 204.134.75.1-10 .. snip .. line 1 in the

Re: ipnat syntax error?

2006-04-02 Thread Erik Nørgaard
Juergen Heberling wrote: /etc/ipnat.rules contains: map em0 192.168.1.0/24 - 204.134.75.1-10 .. snip .. I tried your suggestion of using the cidr notation format and that work; thank you! However I am concerned about overlapping mappings in the cidr range with host-to-host maps - my cidr

Re: disable listen on ports

2006-04-02 Thread Erik Nørgaard
Niklaus wrote: Hi, How do i disable users on a system to run their own http proxy. I don't want to allow users who have login accounts on my system to listen to any port . How do i do that. Putting up a packet filter as some suggest may break other things. Instead, you can take a look at

Re: reconfiguring a package

2006-04-02 Thread Erik Nørgaard
Luiz Eduardo Guida Valmont wrote: I'm sorry if this is one of those rtfm cases, but I've exhausted my options so far (except asking for help here ^^). When you make install a package, for some the first thing you get is a screen where you choose some compile-time options that affect the

Re: TCP/IP source Code

2006-04-04 Thread Erik Nørgaard
Chava Leviatan wrote: Hello, How can i get the TCP/IP source code , mainly sys/netinet. I have been browsing the site for a while , but havn'yt managed to discover how can I get those simple .c, .h files Any help is highly appreciated While you're at it, you might want to get a

Negative look ahead with capturing using pcre

2006-04-05 Thread Erik Nørgaard
Hi: I am trying to write some rules for filtering email with postfix header rules. In particular, I'd like to discard anything in a character set I don't understand, or rather accept ascii, iso-8859-* and utf-8. So I have created the following rule for mime header checks:

Re: PXEboot install failing to load kernel

2006-04-05 Thread Erik Nørgaard
Chris wrote: I am trying to perform a netboot install of FreeBSD 6 to a Thinkpad X40 laptop from linux on my desktop. I've followed what guides I can but the info is either for older versions of FreeBSD (the CD structure has changed?) or assumes an existing FreeBSD install to work from (for

I can't spell my own name in UTF-8, base 64 encoded

2006-04-23 Thread Erik Nørgaard
Hi: So, I finally decided to get OpenLDAP set up to serve an address book independent of where I am and on what computer. The problem is that unless an attribute value is ascii, values have to be in UTF-8 and base64 encoded(?), as I could understand from googling. But, I can't even spell my own

Re: LDAP schema problems

2006-04-24 Thread Erik Nørgaard
Joerg Pulz wrote: On Mon, 24 Apr 2006, Erik Norgaard wrote: b) In their infinite wisdom, those who defined the person and derivative object classes did not add country to the list of possible attributes. Adding this object class to the otherwise working entry: dn: cn=First Lastname,

Re: PXE boot jumpstarting

2006-04-24 Thread Erik Nørgaard
Rat wrote: Does PXE boot installing in fact work in 6.0? sysinstall has all this nice jumpstart/kickstart-like stuff in it, and I'd love to use this for deploying new servers. It does, take a look at this: http://www.daemonsecurity.com/pub/pxeboot (I know, some links are broken, I'm

Re: PXE boot jumpstarting

2006-04-25 Thread Erik Nørgaard
Matthias Fechner wrote: Hello Erik, * Erik Nrgaard [EMAIL PROTECTED] [25-04-06 00:19]: http://www.daemonsecurity.com/pub/pxeboot is it possible, that the side is down? I got always: Connection to 81.33.11.59 Failed Server went down, power failure I think, at 9.XXam and I wasn't home

Re: pxeboot looping

2006-04-26 Thread Erik Nørgaard
John Pettitt wrote: Help! I'm trying to set up a machine to boot using pxe and have run into an odd problem. The box (a Soekris 4510) load pxeboot via TFTP prints a few lines of text then reboots - the last text I see is: Building the boot loader arguments Relocating the loader and

Memory exhausted when compiling SUN Java JDK 15

2006-05-05 Thread Erik Nørgaard
Hi: I tried to compile the new jdk15 on 6.1-RC1, but it stops while compiling ad_i486.cpp with a memory exhausted error. I have more than 3GB disk, 512MB swap but only 112MB RAM, I have monitored with top and found that no more than 150MB swap is used. I guess the RAM gets exhausted, how much is

Re: dhclient fixed leases

2006-01-14 Thread Erik Nørgaard
Maxim Vetrov wrote: I'm on 6.0 release. The default will not help - I have several networks without dhcpd. So 'default option routers 10.0.1.5;' will work only for one and fail for others. Well, in that case I have dificult seeing how fixed leases will help you, how should dhclient choose

Re: A strategic question

2006-01-30 Thread Erik Nørgaard
Jozef Baum wrote: ... to install FreeBSD, one needs already a lot of knowledge about the system. To acquire that knowledge, one needs experience on an installed system. But to have an installed system, one needs already a lot of knowledge about the system. That's the problem. The handbook

scanner problems: I/O error/scanner application hangs

2006-02-24 Thread Erik Nørgaard
Hi: I had my scanner, Epson 2480, working half a year ago on FBSD 6.0, now it's been a while since I used it, I have upgraded to FBSD 6.1-PREREL as well as upgrading applications, and now it doesn't work. First scanner probe gives an I/O error, second hangs: charm# date scanimage -L date

Re: Updating OpenSSH

2006-02-26 Thread Erik Nørgaard
Daniel A. wrote: So, basically, if I want the newest version of OpenSSH running on my system, I have to not use the one shipped with 6.0-RELEASE, and install OpenSSH from ports? Please don't toppost. Installing from ports you'll get version 3.6.1. Before you get paranoid, check the changelog

Re: Help with IP Filter 4.1.8

2006-02-26 Thread Erik Nørgaard
Roman Serbski wrote: Hi all, I am having a problem with ipf after recent upgrade to 6.1-PRERELEASE. Any help would be greatly appreciated. ipf: IP Filter: v4.1.8 (416) Kernel: IP Filter: v4.1.8 Running: yes Log Flags: 0 = none set Default: pass all, Logging: available Active list: 0 Feature

Re: FreeBSD mini-ITX

2005-06-23 Thread Erik Nørgaard
Benjamin Keating wrote: I've been eyeing up these mini-ITX boards - would like to make a quite little file server. Does anyone here run a mini-ITX board (what model)? Does it work out of the box? Anything not supported? I'd go for one of VIA's as AMD's and others are still a little new and

Re: firewall on FreeBSD

2005-06-25 Thread Erik Nørgaard
mess-mate wrote: I've a firewall/router/proxy with openbsd and think to replace it with freebsd 5.4 Do you mean freebsd's PF don't support the 'quick' keyword ?? Thought PF on freebsd and openbsd was identical, isn't ? It's a port, pf on FBSD 5.4 is the same as pf on OBSD 3.6, AFAIK. So if

Re: upgrading all ports

2005-06-25 Thread Erik Nørgaard
Dick Hoogendijk wrote: I want to do a portupgrade on all installed ports. What's the right way? portupgrade -arR ? or portupgrade -a ? I hesitate and don't want to screw up my machine. portupgrade isn't suitable for upgrading the entire machine, even though you do

Re: upgrading all ports

2005-06-26 Thread Erik Nørgaard
Kirk Strauser wrote: On Saturday 25 June 2005 06:36 am, Erik Nørgaard wrote: It is much faster to deinstall everything and then installing from ground up. And it is far more secure in not screwing up. On toy systems, maybe. I've got 654 ports installed on the machine I'm typing

Re: upgrading all ports

2005-06-26 Thread Erik Nørgaard
Alex Zbyslaw wrote: Erik Nørgaard wrote: portupgrade isn't suitable for upgrading the entire machine, even though you do recursive and Recursive. What, in your opinion, makes it unsuitable? I've used portugrade exclusively and never had trouble. Unsuitable if - it is slower than

wireless config in dhclient.conf (CURRENT)

2005-06-27 Thread Erik Nørgaard
Hi, I have a problem configuring dhclient for my wireless interface, ath, on -CURRENT. I updated my system recently and are now using the port of dhclient from OpenBSD. I have a Comtrend DSL/AP on channel 11 with ssid ISPY, my wired server (FBSD 5.4) is running isc-dhcpd v. 3. My neighbour has

Re: Looking for arp scanner

2005-06-30 Thread Erik Nørgaard
Fabian Anklam wrote: I've browsing freshports.org for an arp scanner and found only arpscan, which is marked broken and knowlan, which hasn't been updated in years. What's the tool of choice to map out IP-Adresses on a subnet when you know that quite a few hosts are firewalled from ping?

dhclient.conf for wireless interface

2005-07-04 Thread Erik Nørgaard
Hi, I am trying to configure dhclient to associate with the correct accesspoint, I use FreeBSD Current with the new dhclient ported from OpenBSD. The examples I can find mentions that I should create an entry in my dhclient.conf like this: interface ath0 { media ssid AP1 mode 11g,

Re: PHP PCRE

2005-07-15 Thread Erik Nørgaard
Myron Turner wrote: I just installed FreeBSD 5.4 with PHP 5.0.3 for the express purpose of testing out a web-based application. I was wondering what the rationale is for excluding PCRE from the current php distribution.As I understand it, the PCRE extensions are included by default in

Re: I have found a pc on the side curb

2005-07-18 Thread Erik Nørgaard
Martin wrote: maybe there is a universal password for admin that bypass all password. something like that. Try booting into single user mode. Erik -- Ph: +34.666334818 web: http://www.locolomo.org S/MIME Certificate: http://www.locolomo.org/crt/2004071206.crt

Perl module for parsing tcpdump file

2005-07-19 Thread Erik Nørgaard
Hi, I was wondering if there is a perl module that can read the tcpdump formated files produced by pflog. I've been looking in the ports collection but can't seem to fine a port whose name decrypts to tcpdump. I have a script that parses my maillog and blocks owned hosts or relays used by

Firewire setup/test

2005-07-20 Thread Erik Nørgaard
Hi, I want to buy a miniDV camera, transfer the DV stream using firewire. Now, I'm really newbie on firewire devices and DV, I have none so far, and I'd really like to test and see it work before throwing out $1000. I know, this is probably one of those questions that I would answer by go

Epson 2480/2580 scanner support

2005-07-22 Thread Erik Nørgaard
Hi, Sorry if this question is misplaced, but the sane project hosts no user mailing list, and the hardware list brought no luck. Looking at the handbook it seems that ny scanner supported by the sane backend is supported on FBSD. Now, the ports version is 1.0.15, on the sane home page,

Re: [OT] ssh security

2010-03-10 Thread Erik Nørgaard
On Mar 10, 2010, at 11:59, Olivier Nicole olivier.nic...@cs.ait.ac.th wrote: Now Diffie-Hellman may help providing the trust for the fingerprint. No it won't. Trust goes either via a trusted third party as in PKI or the pgp chain of trust or via direct verification. In the latter case

FBSD support for Intel mini-itx board w. realtek 8111D nic

2011-03-31 Thread Erik Nørgaard
Hi: I've got a fanless via based mini-itx box as my gateway and server and looking to upgrade to a Intel Atom based box. I believe it's supported out of the box. Now, I don't have an extra monitor, basically I'm gonna take the old disk, plug it in and hope it will boot (FBSD81, GENERIC

Link and network level in the tcp/ip stack

2011-05-06 Thread Erik Nørgaard
Hi: This is a generic question about may, should and must: I have the following setup: 192.168.28/24 +---+ |.196 |.1 SRV GW- RN |.28|.1 +---+ 10.225.162/24 The server, SRV, has default gateway set to 192.168.28.1, no

Re: Link and network level in the tcp/ip stack

2011-05-07 Thread Erik Nørgaard
On 7/5/11 4:12 PM, Arun wrote: Just add default route at your node 10.225.162.28, and make the default GW for this route as 192.168.28.0/24 or the connected interface. Your SRV node should pass it to its default gw 192.168.28.1 which should take care of forwarding it to the destination RN. If

FreeBSD compatible mini-itx board

2011-05-18 Thread Erik Nørgaard
Hi: I am looking for a new low power mini-itx board for my firewall/home server. I've had VIA boards but flacky disk controller and other problems have made me look for something else. So, going all Intel, I hope there will be no hardware problems. I'm looking at The Intel D945GSEJT with an

Re: FreeBSD compatible mini-itx board

2011-05-19 Thread Erik Nørgaard
On 19/5/11 7:49 PM, Chuck Swiger wrote: FreeBSD ought to support the 945G chipset and the ICH7 hub; also the RealTek NIC, but the latter isn't the highest quality NIC around. yeah, I'd rather have Intels own NIC dunno why they can't put them on their own boards. Realtek seem to be on all

Where's my disk?

2011-06-04 Thread Erik Nørgaard
Hi: I'm moving my server to new hardware, but I will preserve the disk making the necessary changes to the configuration before the move. The first problem is that I have no idea how my disk will be recognized, now the root partition is on /dev/ad6s1a. The second problem is that the server

Re: Where's my disk?

2011-06-04 Thread Erik Nørgaard
On 4/6/11 10:48 AM, Polytropon wrote: On Sat, 04 Jun 2011 10:31:18 +0200, Erik Nørgaardnorga...@locolomo.org wrote: The first problem is that I have no idea how my disk will be recognized, now the root partition is on /dev/ad6s1a. A good approach is to apply a label or use the UFSID of the

Re: Where's my disk?

2011-06-04 Thread Erik Nørgaard
On 4/6/11 3:09 PM, Warren Block wrote: On Sat, 4 Jun 2011, Erik Nørgaard wrote: Thanks, I tried to add labels, and all file systems are labeled, except the root file system, it gives an error alpha# tunefs -L root /dev/ad6s1a tunefs: /dev/ad6s1a: failed to write superblock The filesystem has

Partitioning with gpart or old style slices?

2011-06-04 Thread Erik Nørgaard
Hi: I just realized how many years ago I haven't been partitioning any disks .. this system is so stable :) So, now I see I have gpart as alternative to fdisk/bsdlabel. I have a 320GB disk which will be dedicated to FBSD, is there any advantage - or any problems (problems as in I've never

Re: Partitioning with gpart or old style slices?

2011-06-05 Thread Erik Nørgaard
On 5/6/11 7:03 AM, Robert Simmons wrote: On Sunday, June 05, 2011 12:40:22 AM Matthias Apitz wrote: # gpart create -s mbr ad4 # Init the disk with an MBR # gpart add -t freebsd ad4# Create a BSD container # gpart create -s bsd ad4s1 # Init with a

How to restrict jail's network access?

2011-06-08 Thread Erik Nørgaard
Hi: I'm planning to move services to run in jails. Two jails: 1: Mail related: postfix, cyrus imap and openldap 2: Web related: apache and postgresql No service should be able to connect out of the jail to remote hosts, except for postfix that need to connect out to port 25 for delivery to

8_RELEASE buildkernel fails

2011-09-30 Thread Erik Nørgaard
Hi: I csup'ed my source tree and rebuilt world succesfully, but buildkernel fails with the following error: cc -c -O -pipe -std=c99 -g -Wall -Wredundant-decls -Wnested-externs -Wstrict-prototypes -Wmissing-prototypes -Wpointer-arith -Winline -Wcast-qual -Wundef -Wno-pointer-sign

Re: ISC dhcp server

2011-10-18 Thread Erik Nørgaard
On 18/10/2011 08:38, n dhert wrote: isc-dhcp31-server was removes from the ports. The Freebsd Handbook still refers to it... Can a /usr/local/etc/dhcpd.conf configuration file from isc-dhcp31-server, without changealso be used in isc-dhcp42-4.2.2 ? I think so, I use dhcp 4.1 and didn't change

Re: Breakin attempt

2011-10-22 Thread Erik Nørgaard
On 22/10/2011 16:12, Polytropon wrote: Is there _any_ reason why moving from port 22 to something different is _not_ a solution? Yes Reason why I'm asking: Moving SSH away from its default port seems to be a relatively good solution as break-in attempts concentrate on default ports. So in case

Re: No network in mixed FBSD81/90 chroot environment

2011-11-29 Thread Erik Nørgaard
On 29/11/2011 15:58, Damien Fleuriot wrote: On 11/29/11 1:58 PM, Erik Nørgaard wrote: Today I finished make build/install world/kernel in /mnt, and now I no longer have network access, interfaces are visible with ifconfig but no ip is set and can't be set from within the chroot environment

Re: pxebooting different versions/variants of FreeBSD

2011-12-11 Thread Erik Nørgaard
On 11/12/2011 13:18, Dura Zell wrote: Is there a way to circumvent the need need of the dhcp option root-path and set it instead manually via a config file or as parameter? If not: How can I achieve my goal of pxebooting the different versions of FreeBSD? Hi: No. The only thing you can do is

Re: ipv6 in FreeBSD 9

2012-01-15 Thread Erik Nørgaard
On 14/01/2012 18:07, Marco Beishuizen wrote: Hi, In 8.2 ipv6 was enabled by adding ipv6_enable=YES in rc.conf, and all worked fine. In FreeBSD 9 that changed to ipv6_activate_all_interfaces=YES. But now there are still some error messages at boot time, and ipv6 doesn't seem to work correctly:

Re: ipv6 in FreeBSD 9

2012-01-15 Thread Erik Nørgaard
On 15/01/2012 21:41, Marco Beishuizen wrote: On Sun, 15 Jan 2012, the wise Erik Nørgaard wrote: Don't use ipv6, but reading above: Did you replace ipv6_enable with ipv6_activate_all_interfaces? because the error seems to tell you that you must keep ipv6_enable I replaced it with the new

Re: pxeboot.bs and vlan tagging

2012-02-06 Thread Erik Nørgaard
On 06/02/2012 16:35, Rick Miller wrote: We are PXE booting into FreeBSD 8.2-RELEASE to perform system builds. The pxeboot.bs file was recompiled with TFTP support. 8.2-RELEASE builds were working fine until we attempted a build on bare metal in an environment that utilizes vlan tagging. When

Re: pxeboot.bs and vlan tagging

2012-02-06 Thread Erik Nørgaard
On 06/02/2012 17:11, Rick Miller wrote: See my responses inline... On Mon, Feb 6, 2012 at 10:54 AM, Erik Nørgaardnorga...@locolomo.org wrote: On 06/02/2012 16:35, Rick Miller wrote: We are PXE booting into FreeBSD 8.2-RELEASE to perform system builds. The pxeboot.bs file was recompiled with

Re: pxeboot.bs and vlan tagging

2012-02-06 Thread Erik Nørgaard
On 06/02/2012 17:33, Rick Miller wrote: 2) do you fetch the kernel successfully? When using tftp, The kernel and kernel modules are fetched before the memory file system, so do pxeboot fetch the kernel but not the mfsroot? The reason for these questions is that your problem may be with the

Re: pxeboot.bs and vlan tagging

2012-02-06 Thread Erik Nørgaard
On 06/02/2012 19:34, Rick Miller wrote: Thanks for your feedback, Erik! I do have a question below... The kernel I am using is the kernel from the DVD ISO as it is downloaded from freebsd.org. How do I determine what modules have been enabled and disabled in that kernel? I am under the

Re: too many illegal connection attempts through ssh

2005-04-06 Thread Erik Nørgaard
Edwin D. Vinas wrote: shown below is snapshot of too many illegal attempts to login to my server from a suspicious hacker. this is taken from the /var/log/auth.log. my question is, how do i automatically block an IP address if it is attempting to guess my login usernames? can i configure the

Re: Very confused

2005-04-09 Thread Erik Nørgaard
Tom Vilot wrote: apache and the ports tree I find a bit confusing. I want: Apache with mod_perl and mod_ssl. I had apache with mod_ssl by installing apach13-modssl. But I kinda need mod_perl compiled in statically. If I deinstall apache13-modssl, and then install apache13-modperl, I don't have

Re: Very confused

2005-04-09 Thread Erik Nørgaard
Tom Vilot wrote: I think I finally figured this out --- by having two different apache installs: one with ssl the other with perl. installing both apache13-modssl and apache13-modperl could/should cause problems - they should be marked as conflicting, if not submit a pr. Installing

Don't Panic - how do I investigate a kernel panic?

2005-04-12 Thread Erik Nørgaard
Hi, I have a 5.3-STABLE which was stable untill last friday. Since then I experience irregular panics, with uptimes between 25 secs and 16 hours. In most cases I got a fatal trap 12, the last panic was simply panic: sbdrop. I had 5.3p5 but upgraded to 5.3p8 after the first panics. After the

Re: Can FreeBSD withstand this kind of network load??

2005-04-21 Thread Erik Nørgaard
Mark Jayson Alvarez wrote: The setup looks like this. There are three /24 networks, A, B, C All of these networks are private lan. However, Network A contains their servers, one of which is their internet proxy server. That proxy server is dual homed, one private, one public, which is also their

5.4-RC2: Unexpected reboots

2005-04-23 Thread Erik Nørgaard
Hi, I have had problems recently keeping my 5.3 up, then I upgraded to 5.4-RC2. Things seemed stable, but then I just ran last: norgaard ttyp1charmSat 23 Apr 12:05 still logged in norgaard ttyp0charmSat 23 Apr 11:57 still logged in norgaard

Re: 5.4-RC2: Unexpected reboots

2005-04-23 Thread Erik Nørgaard
Erik Nørgaard wrote: Any ideas what causes this? Any ideas how I can tune syslog to grap the events? Ofcourse for the last question, I should include my syslog.conf: # Emergency: System failure stuff! *.emerg * *.warn

Unexpected reboots

2005-04-23 Thread Erik Nørgaard
Hi, I have had problems recently keeping my 5.3 up, then I upgraded to 5.4-RC2. Things seemed stable, but then I just ran last: norgaard ttyp1charmSat 23 Apr 12:05 still logged in norgaard ttyp0charmSat 23 Apr 11:57 still logged in norgaard

Re: high perf kernel

2005-05-06 Thread Erik Nørgaard
On Fri, 6 May 2005, Chris Knipe wrote: Can anyone recommend some very usefull settings for a high performance kernel on 5.4? There doesn't seem to be a LINT config anymore in CVS, so I dont know what all my options are. AFIAK LINT has been replaced by NOTES, there is a general NOTES in

  1   2   3   >