Re: booting openbsd on eee without cd-rom

2008-01-31 Thread frantisek holop
hmm, on Wed, Jan 30, 2008 at 02:39:41PM -0500, Richard Daemon said that Does the system support PXE booting? I don't believe it matters (for PXE booting that is) if it's not supported by OpenBSD. If so, then maybe you could PXE boot and install OpenBSD onto the USB media that way? as far as i

Re: booting openbsd on eee without cd-rom

2008-01-31 Thread frantisek holop
i had a nother idea today, the eee comes with grub... the more knowledgable are already holding their heads :] because i dont have the boot sector and /boot, i thought grub could maybe load bsd.rd but all i got was the 'boot too old' message well known from the archives. it was worth a shot...

Re: low-MHz server

2008-01-31 Thread abokye4
Hello, Maybe it would make sense to lower frequency of your beast Athlon and see how your poor wife reacts to such changes? OpenBSD and FreeBSD come with apmd(8) and powerd(8) that can change the freq. You may also want to downcloack your system through BIOS.

Re: : booting openbsd on eee without cd-rom

2008-01-31 Thread Andre Naehring
On Wed, 30 Jan 2008, Stuart Henderson wrote: On 2008/01/30 15:26, Dennis Davis wrote: wireless driver reports an error and does not work is short on detail. It might just be that non-free firmware needs installing (eg the firmware for the iwi driver) to get it to work. people with Eee PC

Re: low-MHz server

2008-01-31 Thread Marc Balmer
Douglas A. Tutty wrote: Hello, I have an unusual situation and problem at which I've been chipping away. The resultant system will need to run OpenBSD so I'm asking here for the accumulated wisdom. The base technology predates my IT experience. My wife is sensitive to what she describes as

Re: low-MHz server

2008-01-31 Thread Marcus Andree
Douglas, I'm really sorry about you wife's health problems. I was unaware about this condition and, as a matter of fact, will relay some of the information passed along this thread to my own wife (she is a trained doctor). Maybe she provide additional insights that could improve your wife's

Re: booting openbsd on eee without cd-rom

2008-01-31 Thread frantisek holop
hmm, on Wed, Jan 30, 2008 at 03:29:46PM +0100, Stefan Kell said that flashboot, see http://www.mindrot.org/projects/flashboot/;. There are binary images available at http://tilde.se/flashboot/;. zcat GENERIC-RD.image | dd of=/dev/sd0 under Linux on the eee should give you a bootable

Re: : booting openbsd on eee without cd-rom

2008-01-31 Thread Richard Daemon
On Jan 31, 2008 5:02 AM, Andre Naehring [EMAIL PROTECTED] wrote: On Wed, 30 Jan 2008, Stuart Henderson wrote: On 2008/01/30 15:26, Dennis Davis wrote: wireless driver reports an error and does not work is short on detail. It might just be that non-free firmware needs installing (eg

Re: : booting openbsd on eee without cd-rom

2008-01-31 Thread Raimo Niskanen
On Thu, Jan 31, 2008 at 01:27:46PM +0100, frantisek holop wrote: hmm, on Wed, Jan 30, 2008 at 03:29:46PM +0100, Stefan Kell said that flashboot, see http://www.mindrot.org/projects/flashboot/;. There are binary images available at http://tilde.se/flashboot/;. zcat GENERIC-RD.image | dd

Re: : booting openbsd on eee without cd-rom

2008-01-31 Thread Andre Naehring
On Thu, 31 Jan 2008, Richard Daemon wrote: Did you have to do boot boot -a to get it to boot properly off of sd0a, recompile kernel or something else? When I try, I never get it to see root on sd0a swap on sd0b dump on sd0b by itself, at least without boot -a or a kernel recompile... By

Impression du journal fin de la semaine

2008-01-31 Thread S. Delahay
Si vous ne visualisez pas correctement ce message, suivez ce lien Vous recherchez des agents commerciaux ? Ne manquez pas la parution de votre offre dans ce numiro unique envoyi aux 25.000 agents commerciaux en activiti sur la France !! ATTENTION : DERNIERE SEMAINE POUR LA PRISE EN COMPTE DE

Re: : booting openbsd on eee without cd-rom

2008-01-31 Thread frantisek holop
hmm, on Thu, Jan 31, 2008 at 02:26:17PM +0100, Raimo Niskanen said that Since you probably will need the install sets as well, I have posted a compressed filesystem image of size 199864838 bytes at http://www.erlang.org/~raimo/OpenBSD/snapshots/i386/hd.fs.gz It contains the same as

Re: Dell PowerEdge 1950 III / R200

2008-01-31 Thread Reza Muhammad
Great, thanks for the info. This is my first time to get a rackmount server, and I just wanna make sure it is supported by OpenBSD ;) As Juan Miscaro described on Wed, Jan 30, 2008 at 02:48:19PM -0500: --- Reza Muhammad [EMAIL PROTECTED] wrote: Hi all, I'm looking to buy a server

Re: PF - using overload for port 80 attacks/floods

2008-01-31 Thread Darrin Chandler
On Thu, Jan 31, 2008 at 10:50:43AM -0600, Cache Hit wrote: One thing I continually run into on the machines are port 80 attacks or floods. I'd like to do something similar with PF as I'm already doing for other protocols to overload these into a table and block them, but I'm finding it very

PF - using overload for port 80 attacks/floods

2008-01-31 Thread Cache Hit
Hello, I've been successfully using the max-src-conn and max-src-conn-rate with an overload into a table that I block for our external firewall that protects a few dozen (mostly Sun) web servers. As it stands it works great for blocking ssh, ftp, smtp and several other protocols when there are

Re: carped trunk or trunked carp or what?

2008-01-31 Thread Kent Watsen
Johan Fredin wrote: Yep, two boxes with one cable each to the switch. Both with a bunch of vlans and carp interfaces on top of that. This is from one of the machines: snip Hey, thanks a lot, I got it working, but it isn't stable - in fact, I really only had one successful fail-over...

Re: low-MHz server

2008-01-31 Thread scott
RE: LOUD I have x86 machine SCSI hard drives. The fast rpm SCSI are LOUD. I suspect they would be the majority culprit in the netra's case too. There are likely pci-bus/slot ata or s-ata workarounds if the lower-freq netra is a suitable starting place. (e.g. I run several

Re: PF - using overload for port 80 attacks/floods

2008-01-31 Thread scott
sweet idea. :-) -Original Message- From: Darrin Chandler [EMAIL PROTECTED] To: Cache Hit [EMAIL PROTECTED] Cc: misc@openbsd.org Subject: Re: PF - using overload for port 80 attacks/floods Date: Thu, 31 Jan 2008 11:11:25 -0700 Mailer: Mutt/1.5.16 (2007-06-09) Depending on the traffic

Spain -- (not technical question) purchase OpenBSD 4.2 CD set

2008-01-31 Thread ZeXeL Zexelut
Hi, I'm from Spain, I want to buy the OpenBSD 4.2 CD set by bank transfer, this method it's not the standard so I wrote to [EMAIL PROTECTED] and [EMAIL PROTECTED] as explained in www.openbsd.org/orders.html to get info about the procedure to pay the CD sets and I didn't get response of my e-mails

Re: low-MHz server

2008-01-31 Thread Woodchuck
On Wed, 30 Jan 2008, Paul D. Ouderkirk wrote: Probably your best bet to cover these requirements would be some old school Compaq Proliant with 2 or 4-way Pentium Pro CPUs. You can find them clocked around 200MHz. OpenBSD has troubles recognizing the SCSI drives on some of these. (The ones I

Xorg -STABLE patches?

2008-01-31 Thread Unix Fan
I've been watching the CVS commits the last few weeks and noticed several Xorg related security fixes back ported into 4.1 and 4.2 -STABLE. Are they important enough to get on the errata pages? Some of us sorta rely on that... ;) Thanks. -Nix Fan.

Re: PF - using overload for port 80 attacks/floods

2008-01-31 Thread Calomel
Since you already stated you have valid clients which could open many connections at once it seems pf might not be the right solution. Have you thought about using a reverse proxy server in front of your web servers? A program like Pound would allow you to specify valid URL regular expressions

Re: [squid-users] Squid.conf deleting host...

2008-01-31 Thread Stefan Kell
Hello Sherwood, On Wed, 30 Jan 2008, Sherwood Botsford wrote: Now, the problem: In accessing any web page, say http://some.domain.com/path/to/file.html squid replies with a bad URL message saying that it can't retrieve /path/to/file.html. The http:// prefix and the domain name are stripped

Snort on openBSD 4.2

2008-01-31 Thread Rami Sik
Hi All, I am planning to use an old hardware for snort with mysql on top of openBSD 4.2. I would appreciate comments/suggestions from anybody using snort on openBSD! Thanks, Rami Sik

Re: : booting openbsd on eee without cd-rom

2008-01-31 Thread Stefan Kell
Hello, On Thu, 31 Jan 2008, frantisek holop wrote: hmm, on Thu, Jan 31, 2008 at 02:26:17PM +0100, Raimo Niskanen said that Since you probably will need the install sets as well, I have posted a compressed filesystem image of size 199864838 bytes at

Re: Squid.conf deleting host... Resolved.

2008-01-31 Thread Sherwood Botsford
In Squid 2.5, transparent proxying is done with a hack involving httpd options, which are not explained well in the config file. These options are not done by default, even in the -transparent version, which means that reverting to an unmodified configuration file leaves it in place. In squid

Re: panic: bogus long slot station count 0

2008-01-31 Thread Frank Bax
Frank Bax wrote: panic is easily reproducible... - power up the OLPC XO - goto neighbourhood - click on icon for my router. - the OpenBSD router panics. http://www.nabble.com/panic:-bogus-long-slot-station-count-0-td15142434.html Is this a bug? Is there anything (workaround?) I can do to get

Re: Snort on openBSD 4.2

2008-01-31 Thread Reyk Floeter
On Thu, Jan 31, 2008 at 12:10:57PM -0800, Rami Sik wrote: Hi All, I am planning to use an old hardware for snort with mysql on top of openBSD 4.2. I would appreciate comments/suggestions from anybody using snort on openBSD! what is your question? yes, snort runs on openbsd 4.2,

OT:what can be done about attackers/crackers

2008-01-31 Thread Lord Sporkton
very soon i am getting some static ips for my cable home connections, currently i have 1 dynamic ip. Im using pf to block ssh brute force attempts and its working splendedly. however now i have this pf table full of ips and nice logs indicating hack attempts via ssh not to mention other services

Re: : booting openbsd on eee without cd-rom

2008-01-31 Thread Richard Daemon
On Jan 31, 2008 8:29 AM, Andre Naehring [EMAIL PROTECTED] wrote: On Thu, 31 Jan 2008, Richard Daemon wrote: Did you have to do boot boot -a to get it to boot properly off of sd0a, recompile kernel or something else? When I try, I never get it to see root on sd0a swap on sd0b dump on

Re: OT:what can be done about attackers/crackers

2008-01-31 Thread Richard Daemon
On Jan 31, 2008 4:30 PM, Lord Sporkton [EMAIL PROTECTED] wrote: very soon i am getting some static ips for my cable home connections, currently i have 1 dynamic ip. Im using pf to block ssh brute force attempts and its working splendedly. however now i have this pf table full of ips and nice

Re: low-MHz server

2008-01-31 Thread bofh
On Jan 31, 2008 2:04 PM, Woodchuck [EMAIL PROTECTED] wrote: Believe it or not, there are only two obvious P-Pro machines on ebay (us) right now. One is an overdrive (330MHz), the other a diskless Dell Demention (sic ;-) at 180. They want 96$+ship for that one. It must have considerable

Re: OT:what can be done about attackers/crackers

2008-01-31 Thread Lord Sporkton
i currently have 512Kb up 6megs down with one dymanic ip im getting 2megs up 15 megs down with a block of 8 static ips im am doing this so i have mobile access to my lab, i work on windows systems all day but i use unix tools most offten to troubleshoot, other thing is im gonna run some backups

Re: low-MHz server

2008-01-31 Thread J.C. Roberts
On Wednesday 30 January 2008, Douglas A. Tutty wrote: I don't need answers to these questions, but if there is a medical solution to your wife's sensitivity that might be easier than trying to banish all electronics. A medical solution would be very nice but not forthcoming. Note that

Re: low-MHz server

2008-01-31 Thread J.C. Roberts
On Wednesday 30 January 2008, Douglas A. Tutty wrote: My wife is sensitive to what she describes as electromagnetic fields. She gets headaches and other pains when exposed to equipment: the higher the frequency, the worse her symptoms. For example, a VT is better than a regular CRT connected

Re: low-MHz server

2008-01-31 Thread J.C. Roberts
On Wednesday 30 January 2008, Douglas A. Tutty wrote: On Thu, Jan 31, 2008 at 02:11:54AM +0100, ropers wrote: On 30/01/2008, Douglas A. Tutty [EMAIL PROTECTED] wrote: She's also sensitive to lower-freq and even DC electric fields (e.g. a battery with no external current flow) but in a

Re: booting openbsd on eee without cd-rom

2008-01-31 Thread ropers
On 31/01/2008, frantisek holop [EMAIL PROTECTED] wrote: nevertheless, the previous post very well pointed out that i will need to work with ffs from linux, and i dont know anything about that, not even if it is supported. Like most BSDs, OpenBSD uses the Berkeley Fast File System. By default,

Re: low-MHz server

2008-01-31 Thread J.C. Roberts
On Wednesday 30 January 2008, chefren wrote: On 1/31/08 2:25 AM, Douglas A. Tutty wrote: We did the double-blind thing many times. She nails it every time: 100% If true she can get =very= rich with that. Please stop this thread that has nothing to do with OpenBSD. chefren, I

Re: modifying base system, need to recompile?

2008-01-31 Thread Vijay Sankar
On February 1, 2008 05:51:06 pm Aaron wrote: I was wanting to set up an antispam/anti-virus mail system and in the past i've always used postfix as my mta. I have read a few posts on the list where people suggest sticking w/the openbsd default, sendmail. I'm considering doing this save one

CARP PPPoE

2008-01-31 Thread Sevan / Venture37
Is it possible to have a 2 node firewall using carp be able to use pppoe? so if one node dies the other one picks up the reinitiates the connection for example. Sevan / Venture37 _ Free games, great prizes - get gaming at

Results for 4.2.3 20080125 (prerelease) testsuite on i386-unknown-openbsd4.2

2008-01-31 Thread Dongsheng Song
LAST_UPDATED: Obtained from SVN: tags/gcc-4_2_3-rc1 revision 131847 Native configuration is i386-unknown-openbsd4.2 === g++ tests === Running target unix FAIL: g++.dg/cpp/_Pragma1.C (test for excess errors) FAIL: g++.dg/ext/complit4.C (test for excess errors) WARNING:

Re: CARP PPPo

2008-01-31 Thread Richard Daemon
On Jan 31, 2008 7:32 PM, Sevan / Venture37 [EMAIL PROTECTED] wrote: Is it possible to have a 2 node firewall using carp be able to use pppoe? so if one node dies the other one picks up the reinitiates the connection for example. Sevan / Venture37

Re: CARP PPPoE

2008-01-31 Thread Sevan / Venture37
Yes. I don't know how it would work in the sense of the 'conventional' way. I do it with dynamic IP's, which even have MAC address reservations and works good for me... I'm considering posting an undeadly.org article on it with my scripts on how I do it, just not sure if anyone would be

Re: CARP PPPo

2008-01-31 Thread Richard Daemon
On Jan 31, 2008 8:36 PM, Sevan / Venture37 [EMAIL PROTECTED] wrote: Yes. I don't know how it would work in the sense of the 'conventional' way. I do it with dynamic IP's, which even have MAC address reservations and works good for me... I'm considering posting an undeadly.org article

Re: CARP PPPo

2008-01-31 Thread Vijay Sankar
On January 31, 2008 07:30:32 pm Richard Daemon wrote: On Jan 31, 2008 7:32 PM, Sevan / Venture37 [EMAIL PROTECTED] wrote: Is it possible to have a 2 node firewall using carp be able to use pppoe? so if one node dies the other one picks up the reinitiates the connection for example.

Re: Can I just mount my lost swap on raid0?

2008-01-31 Thread Nick Holland
Matt wrote: Hi all, Perhaps a bit daft but: Somehow I have managed to exclude my swap partition from being mounted on my Raid0 array. I have no idea why it isn't in fstab but I can only assume I messed something up along the way while copying. dunno what you were copying, but in a

Re: CARP PPPo

2008-01-31 Thread Richard Daemon
On Jan 31, 2008 8:58 PM, Vijay Sankar [EMAIL PROTECTED] wrote: On January 31, 2008 07:30:32 pm Richard Daemon wrote: On Jan 31, 2008 7:32 PM, Sevan / Venture37 [EMAIL PROTECTED] wrote: Is it possible to have a 2 node firewall using carp be able to use pppoe? so if one node dies the

Re: CARP PPPo

2008-01-31 Thread Steven Surdock
Richard Daemon wrote: On Jan 31, 2008 8:36 PM, Sevan / Venture37 [EMAIL PROTECTED] wrote: I definitely would be! I don't have my ISP that does PPPoE anymore, so I have no way to test it... Carp on pppoe doesn't really make sense, unless I'm missing something. For fun, I tried it a while

Backup system administrator needed

2008-01-31 Thread Jeff Ross
Hi all, If you are in or near (say 50 miles) the Cheyenne, WY area and might be interested in some backup systems administrator work, please drop me a line. Thanks, Jeff Ross

dhcp error message

2008-01-31 Thread Jim M
my /var/log/messages file is filled over and over with the line (obviously the date/time varies) Jan 31 20:17:00 balrog dhclient: send_fallback: No route to host The machine is a firewall and has no graphic capabilities. It is a dhcp client to get my the IP address for the home network and a

Re: OT:what can be done about attackers/crackers

2008-01-31 Thread bofh
On Jan 31, 2008 5:41 PM, Lord Sporkton [EMAIL PROTECTED] wrote: my question was not so much what can i do to mitigate the attack when its happening, its more what can i do after someone attacks to stick it to them What would you like to do to them? It all depends on how good you are at

Re: CARP PPPo

2008-01-31 Thread Richard Daemon
On Jan 31, 2008 9:24 PM, Steven Surdock [EMAIL PROTECTED] wrote: Richard Daemon wrote: On Jan 31, 2008 8:36 PM, Sevan / Venture37 [EMAIL PROTECTED] wrote: I definitely would be! I don't have my ISP that does PPPoE anymore, so I have no way to test it... Carp on pppoe doesn't

about your music (an opportunity), please read..

2008-01-31 Thread music
Hi, I heard your music and wanted to invite you to start a free artist page on our site. IACmusic.com is an indie all-star site, it recently got mention in Rolling Stone, and has been called the most innovative music portal on the web. Cashbox found the quality of music on the site so

Re: dhcp error message

2008-01-31 Thread Richard Daemon
On Jan 31, 2008 9:38 PM, Jim M [EMAIL PROTECTED] wrote: my /var/log/messages file is filled over and over with the line (obviously the date/time varies) Jan 31 20:17:00 balrog dhclient: send_fallback: No route to host The machine is a firewall and has no graphic capabilities. It is a dhcp

Y love you!!!

2008-01-31 Thread notification
Oi!!! Algumas das fotinhus que eu esqueci de mandar! agora ta ai!! Beijao! anexo: foto-01.jpg (196kb) foto-02.jpg (196kb)

ospf problems when re-joining networks

2008-01-31 Thread Linden
Hi We are running OpenBSD 4.2 and ospfd on 3 boxes which are joined to each other by 3 seperate wan links. I find when a particular wan link fails to a box, packets now take the other higher cost route as expected. But when the link comes back up, ospfd does not change back to using the

IPsec from server to network

2008-01-31 Thread Will
I have been encountering a bit of trouble getting a fileserver to establish a vpn to my local network. I do not have access to the machines at the moment, so my first question is this - do both machines need to have incoming access to ports 500/4500? I am trying to make the fileserver in question

Re: CARP PPPo

2008-01-31 Thread Claer
On Thu, Jan 31 2008 at 24:21, Steven Surdock wrote: Richard Daemon wrote: On Jan 31, 2008 8:36 PM, Sevan / Venture37 [EMAIL PROTECTED] wrote: I definitely would be! I don't have my ISP that does PPPoE anymore, so I have no way to test it... Carp on pppoe doesn't really make

Re: hotplugd(8) mount flash drive

2008-01-31 Thread Chris
# Maybe some debugging will help: # exec /tmp/logfile 21 set -x i changed the /etc/hotplugd/attach script with JetFlash* and also enabled debugging - any further help would be much appreciated. Thanks. /var/log/messages output - Feb 1 17:30:11 red /bsd: umass0 at uhub0 port 2

avoid logging useless ssh brute force attempts

2008-01-31 Thread Chris
my logs are filled with useless ssh bruteforce attempts - is there anything i can do to avoid logging random brute force attacks? since i disallow ssh root login and use the allowuser acl - i guess i could just avoid logging all these random attacks in my logs. Any suggestions would be much

Re: Spain -- (not technical question) purchase OpenBSD 4.2 CD set

2008-01-31 Thread Peter N. M. Hansteen
ZeXeL Zexelut [EMAIL PROTECTED] writes: There is any problem with this? I'm doing something wrong? My guess is that Wim is off to an event and will handle his mail and other backlog when he's back. Looking at http://www.openbsd.org/events.html the French event could be the likely cause. - P

Re: avoid logging useless ssh brute force attempts

2008-01-31 Thread johan beisser
I've simply added in an overload rule to pf on my server. This has helped significantly. On Jan 31, 2008, at 11:11 PM, Chris wrote: my logs are filled with useless ssh bruteforce attempts - is there anything i can do to avoid logging random brute force attacks? since i disallow ssh root

Re: PF - using overload for port 80 attacks/floods

2008-01-31 Thread Peter N. M. Hansteen
Darrin Chandler [EMAIL PROTECTED] writes: Depending on the traffic patterns of legit vs. attack the following idea might work... use max-src-* with values that may create false positives and overload into table candidates which will still PASS. Now use different values for max-src-* on

Re: avoid logging useless ssh brute force attempts

2008-01-31 Thread Peter N. M. Hansteen
Chris [EMAIL PROTECTED] writes: my logs are filled with useless ssh bruteforce attempts - is there anything i can do to avoid logging random brute force attacks? since i disallow ssh root login and use the allowuser acl - i guess i could just avoid logging all these random attacks in my logs.

Re: Spain -- (not technical question) purchase OpenBSD 4.2 CD set

2008-01-31 Thread Nicolas Szalay
Le vendredi 01 fC)vrier 2008 C 08:17 +0100, Peter N. M. Hansteen a C)crit : Hi, My guess is that Wim is off to an event and will handle his mail and other backlog when he's back. Looking at http://www.openbsd.org/events.html the French event could be the likely cause. You're right, wim