Re: sshd_config(5) PermitRootLogin yes

2008-07-11 Thread Tomas Bodzar
You can setup weak root password during install ;-) There is no test,so I can use root,password,admin and so on. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Giancarlo Razzolini Sent: Thursday, July 10, 2008 8:16 PM To: Paul de Weerd Cc: Brynet;

Re: Identifying Bandwidth Hogs

2008-07-11 Thread Sean Malloy
Hello, Maybe NetFlow. Checkout the pfflowd and flowd packages. -- Sean Malloy www.spmalloy.com GPG KeyID: 0x13EEB747 GPG Fingerprint: D059 5076 ABB3 1E08 9965 1958 F820 CE83 13EE B747

uvideo

2008-07-11 Thread Renaud Allard
Hello, I have a Sony VAIO SZ61XN with an integrated webcam but it doesn't seem to work. uvideo0 at uhub2 port 2 configuration 1 interface 0 Ricoh product 0x183a rev 2.00/1.00 addr 3 uvideo0: no default frame descriptor found! You can find the complete dmesg at

Apartments

2008-07-11 Thread Mark Constantine
Hello! Get cheap apartments in sydney. call me!! [EMAIL PROTECTED] -- Mark Constantine [EMAIL PROTECTED] -- http://www.fastmail.fm - A fast, anti-spam email service.

Re: CVS: cvs.openbsd.org: src

2008-07-11 Thread Ariane van der Steldt
On Thu, Jul 10, 2008 at 10:21:28PM -0500, Marco Peereboom wrote: I currently have a 3500 line diff in my tree that completely rewrites softraid metadata handling. The idea is that when this goes in we can start adding foreign raid formats as sub-drivers to softraid. With foreign raid formats,

Re: CVS: cvs.openbsd.org: src

2008-07-11 Thread Stuart Henderson
[EMAIL PROTECTED] [EMAIL PROTECTED] net [EMAIL PROTECTED] Date: Fri, 11 Jul 2008 10:19:52 +0100 In gmane.os.openbsd.misc, you wrote: When this change goes in old softraid metadata formats will no longer work! So now is a good time to get dumps going. I am _not_ planning on adding a metadata

Re: sshd_config(5) PermitRootLogin yes

2008-07-11 Thread Rod Whitworth
On Fri, 11 Jul 2008 07:16:38 +0100, Tomas Bodzar wrote: You can setup weak root password during install ;-) There is no test,so I can use root,password,admin and so on. Who gives a fluck? OpenBSD gives you all the tools, even if they are too sharp for dull blunts. If you don't like the

Re: yacc rebuild

2008-07-11 Thread Henning Brauer
* Nick [EMAIL PROTECTED] [2008-07-11 04:04]: Charles Smith wrote: Good afternoon! So, before the next make build I must rebuild the yacc alone. I would like to know how can I rebuild yacc. I searched in old errata patches, Makefiles, bsd.*.mk files. In my previous logfile

Re: sendmail STARTTLS

2008-07-11 Thread GVG GVG
On Fri, Jul 11, 2008 at 12:12 AM, Claus Assmann [EMAIL PROTECTED] [EMAIL PROTECTED] wrote: On Thu, Jul 10, 2008, GVG GVG wrote: I first have to excuse myself cause I claimed that there were no errors in the log file! Well, there was no debugging output enabled. Now I did that with

Lyrics or story for 4.4 release?

2008-07-11 Thread Tomas Bodzar
Maybe will be good for 4.4 or later something based on : Inner Circle - Bad boys :-)

Re: sendmail STARTTLS

2008-07-11 Thread Stuart Henderson
On 2008-07-11, GVG GVG [EMAIL PROTECTED] wrote: Just to summarize, currently there is the 'maillog' and a 'sendmail_log' a standard installation doesn't have sendmail_log.

Re: Decipering Understanding IP addressing

2008-07-11 Thread ropers
[ This message is in continuation of this old thread: http://marc.info/?l=openbsd-miscm=121151167724118w=2 ] 2008/5/23 Nick Holland [EMAIL PROTECTED]: ropers wrote: 2008/5/21 ropers [EMAIL PROTECTED]: On Wed, May 21, 2008 at 1:36 PM, Kendall Shaw [EMAIL PROTECTED] wrote: ... I'm having a

Re: sendmail STARTTLS

2008-07-11 Thread GVG GVG
On Fri, Jul 11, 2008 at 2:01 PM, Stuart Henderson [EMAIL PROTECTED] wrote: On 2008-07-11, GVG GVG [EMAIL PROTECTED] wrote: Just to summarize, currently there is the 'maillog' and a 'sendmail_log' a standard installation doesn't have sendmail_log. 'standard' in terms of using the out of the

Re: Another way to help OpenBSD

2008-07-11 Thread Darrin Chandler
On Fri, Jul 11, 2008 at 05:00:05AM +, Bryan wrote: On Fri, Jul 11, 2008 at 3:07 AM, Darrin Chandler [EMAIL PROTECTED] wrote: All the developers are great, but even so some stand out. Otto writes a lot of very good code, fixed ancient bugs, is nice to random idiots like me here on

Re: Decipering Understanding IP addressing

2008-07-11 Thread Stuart Henderson
Another solution would be to find/write a replacement document/site. (HTML preferred over pdf). No HTML version yet, and it's not in the same depth as the 3com document, but the first part of the Network Design chapter in Wireless Networking in the Developing World (ports/books/wndw in

Re: CVS: cvs.openbsd.org: src

2008-07-11 Thread Marco Peereboom
I would strongly recommend against that. On Fri, Jul 11, 2008 at 10:19:52AM +0100, Stuart Henderson wrote: [EMAIL PROTECTED] [EMAIL PROTECTED] net [EMAIL PROTECTED] Date: Fri, 11 Jul 2008 10:19:52 +0100 In gmane.os.openbsd.misc, you wrote: When this change goes in old softraid metadata

Re: CVS: cvs.openbsd.org: src

2008-07-11 Thread Marco Peereboom
On Fri, Jul 11, 2008 at 09:34:36AM +0200, Ariane van der Steldt wrote: On Thu, Jul 10, 2008 at 10:21:28PM -0500, Marco Peereboom wrote: I currently have a 3500 line diff in my tree that completely rewrites softraid metadata handling. The idea is that when this goes in we can start adding

Re: Decipering Understanding IP addressing

2008-07-11 Thread Paul de Weerd
On Fri, Jul 11, 2008 at 02:01:46PM +0200, ropers wrote: | However, there's a part of the document ( | http://www.3com.com/other/pdfs/infra/corpinfo/en_US/501302.pdf ) that | I haven't yet corrected, and can't/won't correct on my own without | asking for your opinion. I'm talking about the section

isakmpd multiple CAs within one file?

2008-07-11 Thread Harald Dunkel
Hi folks, Tinyca allows to export a chain of CA certificates within one file, but it took me quite some time to recognize that isakmpd can't handle this. Or can it? Regards Harri

CARP node crashing reproducibly (4.3-stable)

2008-07-11 Thread Stephan A. Rickauer
Hello, Here's all data I was able to get off our crashing machine, the backup node of our CARP cluster, that used to run flawlessly since 3.7. We can reproduce the problem by (no joke) installing an openSUSE 10.3 machine in one of our labs over the network. After 40 minutes, our backup firewall

Re: CARP node crashing reproducibly (4.3-stable)

2008-07-11 Thread Reyk Floeter
hi stephan! can you also show your carp configuration? reyk On Fri, Jul 11, 2008 at 04:55:33PM +0200, Stephan A. Rickauer wrote: Hello, Here's all data I was able to get off our crashing machine, the backup node of our CARP cluster, that used to run flawlessly since 3.7. We can

Re: CARP node crashing reproducibly (4.3-stable)

2008-07-11 Thread Stephan A. Rickauer
On Fri, 2008-07-11 at 17:09 +0200, Reyk Floeter wrote: hi stephan! o;?That was quick! Hi Reyk. can you also show your carp configuration? Sure (just x'ed out the external IPs as well as passwords). We have a simple master/backup system: carp0: LAN carp1: DMZ carp2: WLAN carp3: Internet #

Re: sshd_config(5) PermitRootLogin yes

2008-07-11 Thread Jacob Yocom-Piatt
Brian A. Seklecki wrote: On Thu, 10 Jul 2008, Jacob Yocom-Piatt wrote: maybe if people actually READ THE ARCHIVES, they'd be better informed. i wish this mailing list had I didn't want to rehash it all again. Everyone knows the issues. so put your own /etc/ssh/sshd_config into your

Re: CARP node crashing reproducibly (4.3-stable)

2008-07-11 Thread Giancarlo Razzolini
Stephan A. Rickauer escreveu: On Fri, 2008-07-11 at 17:09 +0200, Reyk Floeter wrote: hi stephan! o;?That was quick! Hi Reyk. can you also show your carp configuration? Sure (just x'ed out the external IPs as well as passwords). We have a simple master/backup system:

Re: CARP node crashing reproducibly (4.3-stable)

2008-07-11 Thread Henning Brauer
* Stephan A. Rickauer [EMAIL PROTECTED] [2008-07-11 16:59]: Here's all data I was able to get off our crashing machine, the backup node of our CARP cluster, that used to run flawlessly since 3.7. We can reproduce the problem if you follow http://www.benzedrine.cx/crashreport.html we have a

cdce error

2008-07-11 Thread Need Coffee
I finally upgraded a zaurus to the current snapshot (Jul 03). I had transferred the sets via cdcef/cdce, though it TIMEOUT'd during several transfers and had to be unplugged/plugged in again. However now that it's upgraded to 4.4-beta, when I do this: pc% sudo ifconfig cdce0 inet 192.168.10.11

Re: CARP node crashing reproducibly (4.3-stable)

2008-07-11 Thread Stephan A. Rickauer
On Fri, 2008-07-11 at 21:32 +0200, Henning Brauer wrote: * Stephan A. Rickauer [EMAIL PROTECTED] [2008-07-11 16:59]: Here's all data I was able to get off our crashing machine, the backup node of our CARP cluster, that used to run flawlessly since 3.7. We can reproduce the problem if

Re: Cronolog Apache?

2008-07-11 Thread L. V. Lammert
At 05:19 PM 7/3/2008 -0400, Olivier Cherrier wrote: On Thu, Jul 03, 2008 at 01:54:45PM -0500, [EMAIL PROTECTED] wrote: Seems like Cronolog would be a good solution for rotating Apache logs when running Chroot'd, as it eliminates the need for stopping/restarting Apache. Can't seem to find any

Hardware recommendation for firewalls (more than 4 NICs)

2008-07-11 Thread Martín Coco
Hi misc, I'm currently looking for hardware alternatives for firewalls that should have more than four NICs. Currently we are buying R200s from Dell, but we have the 4 NIC limitation. We could tell Dell to install a quad port NIC (in addition to the two-port onboard card), but I haven't

Re: Vulnerability Note VU#800113 - Multiple DNS implementations vulnerable to cache poisoning

2008-07-11 Thread Steve Fairhead
STeve Andre' said: You know what I expect? I expect the OpenBSD response will be excellent, and out on its own timeframe. Rushing a fix into place can be worse than not doing anything at all. I have no idea what they're doing, have no idea with whom they may be talking. But I know that it is

Re: Hardware recommendation for firewalls (more than 4 NICs)

2008-07-11 Thread Jason Dixon
On Fri, Jul 11, 2008 at 06:47:13PM -0300, Mart?n Coco wrote: Hi misc, I'm currently looking for hardware alternatives for firewalls that should have more than four NICs. Currently we are buying R200s from Dell, but we have the 4 NIC limitation. We could tell Dell to install a quad port

pkg_add not terminating

2008-07-11 Thread Ivo van der Sangen
Hi, When trying to install texlive_texmf-minimal-2007p2.tgz I run into problems. The pkg_add script does not terminate. The progress bar stops at 100% and there are still 3 processes running: perl, ftp and gzip. I have retried it multiple times, deleting any partial packages beforehand. I have

Re: pkg_add not terminating

2008-07-11 Thread Daniel Ouellet
Ivo van der Sangen wrote: When trying to install texlive_texmf-minimal-2007p2.tgz I run into problems. The pkg_add script does not terminate. The progress bar stops at 100% and there are still 3 processes running: perl, ftp and gzip. It happen sometime when dependency are install. The FTP hang

Re: Hardware recommendation for firewalls (more than 4 NICs)

2008-07-11 Thread Geoff Steckel
Jason Dixon wrote: On Fri, Jul 11, 2008 at 06:47:13PM -0300, Mart?n Coco wrote: Hi misc, I'm currently looking for hardware alternatives for firewalls that should have more than four NICs. Why could you possibly need 6 physical interfaces? Even if you have a failover pair of firewalls

Re: Hardware recommendation for firewalls (more than 4 NICs)

2008-07-11 Thread Jason Dixon
On Fri, Jul 11, 2008 at 10:10:04PM -0400, Geoff Steckel wrote: Jason Dixon wrote: On Fri, Jul 11, 2008 at 06:47:13PM -0300, Mart?n Coco wrote: Hi misc, I'm currently looking for hardware alternatives for firewalls that should have more than four NICs. Why could you possibly need 6

.Fd usage in mdoc manual pages

2008-07-11 Thread Nathan Houghton
Hello. I was recently reading the mdoc.samples manual page and found a section describing .Fd. grep -r ^\.Fd #include /usr/src 2 /dev/null | wc -l indicates that there are around 1020 files that use .Fd to describe an include file. Is there any reason why .Fd is used instead of .In? Also, what

Re: Hardware recommendation for firewalls (more than 4 NICs)

2008-07-11 Thread Giancarlo Razzolini
Jason Dixon escreveu: On Fri, Jul 11, 2008 at 10:10:04PM -0400, Geoff Steckel wrote: Jason Dixon wrote: On Fri, Jul 11, 2008 at 06:47:13PM -0300, Mart?n Coco wrote: Hi misc, I'm currently looking for hardware alternatives for firewalls that should have more than four

Re: Hardware recommendation for firewalls (more than 4 NICs)

2008-07-11 Thread Jason Dixon
On Sat, Jul 12, 2008 at 01:09:40AM -0300, Giancarlo Razzolini wrote: Wow... I've used 5 interfaces also, but for different internet links. Try do multi routing when you have lot's of different ip's of different ranges on the same if. Your pf rules will be a mess and, in some cases, it

Re: Hardware recommendation for firewalls (more than 4 NICs)

2008-07-11 Thread Geoff Steckel
I knew it was a matter of time before the vlan insecurity bullshit hit the fan. RTFA. Who says anything about blindly trusting switches? If you can't correctly configure VLANs on your switches, and filter on vlan(4) interfaces in PF, you shouldn't be administering production networks. There's

Re: Hardware recommendation for firewalls (more than 4 NICs)

2008-07-11 Thread Jason Dixon
On Sat, Jul 12, 2008 at 12:35:46AM -0400, Geoff Steckel wrote: I knew it was a matter of time before the vlan insecurity bullshit hit the fan. RTFA. Who says anything about blindly trusting switches? If you can't correctly configure VLANs on your switches, and filter on vlan(4) interfaces