Re: configuration

2008-10-03 Thread Olivier Cherrier
On Fri, Oct 03, 2008 at 07:24:55AM +0400, [EMAIL PROTECTED] wrote: I do not know how to configuer the following from dmesg.boot acpi at mainbus0 not configured What is you version of OpenBSD? dmesg? TI TSB43AB21 FireWire rev 0x00 at pci2 dev 14 function 0 not configured FireWire is not

Re: Sun Fire X4100M2 and ILOM serial console

2008-10-03 Thread Landry Breuil
On Fri, Oct 3, 2008 at 3:09 AM, Albert Chin [EMAIL PROTECTED] wrote: Anyone with an X4100M2 have the serial console working for logins? I have OpenBSD-current running and the BIOS remote access console configured as follows: * Remote Access [Enabled]* *

Loosing states on clustered firewall

2008-10-03 Thread Marco Matarazzo
Hi all, I've a problem with a cluster of OpenBSD firewalls. I don't see an immediate clean solution, but some of you may shed some light on it! ;) The two firewalls manage 50 vlans, each one has a corresponding carp interface. The two firewalls exchange state information via pfsync on a

dhcp to static

2008-10-03 Thread Benjamin Adams
I'm moving my server in about an hour. Where do I put my ip, netmask and gateway at for static? Thanks Ben

Re: dhcp to static

2008-10-03 Thread Laurens Vets
On Fri, 3 Oct 2008 07:23:40 -0400, Benjamin Adams [EMAIL PROTECTED] wrote: I'm moving my server in about an hour. Where do I put my ip, netmask and gateway at for static? http://www.openbsd.org/faq/faq6.html#Setup

Re: Loosing states on clustered firewall

2008-10-03 Thread Stuart Henderson
On 2008-10-03, Marco Matarazzo [EMAIL PROTECTED] wrote: Communication between vlan[1-3] and vlan[4-6] fails, because traffic originating from i.e. vlan1 and going to vlan4 does not get routed to FW2, but remains on FW1 (since the vlan being up creates the local route, even if the corresponding

Re: dhcp to static

2008-10-03 Thread Benjamin Adams
Yea I was just looking at that. Trying to figure it out. Sorry I'm not much of a networking person. Just know the basics. What I understand: Change /etc/hostname.bge1 inet ipaddress netmask broadcast [other options] create /etc/mygate #gateway ip 10.23.12.1 change /etc/resolv.conf search

Re: dhcp to static

2008-10-03 Thread Tomas Bodzar
I think,that these things are made with some preparations before move ;-) But one hour is enough for reading : http://www.openbsd.org/faq/faq6.html Benjamin Adams wrote: I'm moving my server in about an hour. Where do I put my ip, netmask and gateway at for static? Thanks Ben

Re: Loosing states on clustered firewall

2008-10-03 Thread Marco Matarazzo
Hi Stuart, On Fri, Oct 3, 2008 at 1:46 PM, Stuart Henderson [EMAIL PROTECTED]wrote: On 2008-10-03, Marco Matarazzo [EMAIL PROTECTED] wrote: Communication between vlan[1-3] and vlan[4-6] fails, because traffic originating from i.e. vlan1 and going to vlan4 does not get routed to FW2, but

terminus font on wscons

2008-10-03 Thread Jesus Sanchez
I installed the package 'terminus-font' and found it really nice to me, using it on X on 12 and 14 sizes. I tried to use it for the wscons making the fonts from the autor sources on the web and following the steps on the faq for the /usr/share/misc/pcvtfonts/ fonts but without results. Anyone

PCI Compliant Vulnerability Scanner

2008-10-03 Thread Stuart VanZee
Once again it is time for the quarterly security review required for my company to maintain PCI compliance. Unfortunately, It seems that the Nessus scanner that we had been using is no longer free. Can anyone recommend a PCI compliant vulnerability scanner that I can use on OpenBSD. It will need

Nintendo Wii seems to be unhappy with a ral in hostap mode

2008-10-03 Thread Jurjen Oskam
Hi there, I have a ral in hostap mode, which works wonderfully. With a high-quality external antenna, I regularly get more than 20 MB/sec throughput. I don't need an external Access Point anymore, the ral works great. I also have a Nintendo Wii console. It has a built-in wireless card, which you

Re: PCI Compliant Vulnerability Scanner

2008-10-03 Thread Marc Balmer
* Stuart VanZee wrote: Once again it is time for the quarterly security review required for my company to maintain PCI compliance. Unfortunately, It seems that the Nessus scanner that we had been using is no longer free. Can anyone recommend a PCI compliant vulnerability scanner that I can

Re: OpenBSD as Xen domU

2008-10-03 Thread Kent Watsen
[Picking up on this old thread] Question for those of you running OpenBSD HVM DomUs, does your IO performance suck? Description: I have OpenBSD 4.3 DomU running HVM mode with 1x vcpu on top on OpenSolaris b97 xVM Dom0, which pins down 2x vcpus (box is a quad-core 1.9GHz opteron with 8GB

Re: PCI Compliant Vulnerability Scanner

2008-10-03 Thread Dorian Büttner
Stuart VanZee schrieb: Once again it is time for the quarterly security review required for my company to maintain PCI compliance. Unfortunately, It seems that the Nessus scanner that we had been using is no longer free. Can anyone recommend a PCI compliant vulnerability scanner that I can use

Re: Loosing states on clustered firewall

2008-10-03 Thread Stuart Henderson
On 2008-10-03, Marco Matarazzo [EMAIL PROTECTED] wrote: Hi Stuart, On Fri, Oct 3, 2008 at 1:46 PM, Stuart Henderson [EMAIL PROTECTED]wrote: On 2008-10-03, Marco Matarazzo [EMAIL PROTECTED] wrote: Communication between vlan[1-3] and vlan[4-6] fails, because traffic originating from i.e.

Re: PCI Compliant Vulnerability Scanner

2008-10-03 Thread Sevan / Venture37
I am not American, but I use a PCI Bus for PCI compliance. Helped me a lot and most cards work just fine. And I scan using pcidump, it scans PCI compliant, I guess. https://www.pcisecuritystandards.org/ http://clk.atdmt.com/UKM/go/111354029/direct/01/

Re: PCI Compliant Vulnerability Scanner

2008-10-03 Thread Ted Unangst
On Fri, Oct 3, 2008 at 9:02 AM, Stuart VanZee [EMAIL PROTECTED] wrote: Once again it is time for the quarterly security review required for my company to maintain PCI compliance. Unfortunately, It seems that the Nessus scanner that we had been using is no longer free. Can anyone recommend a

Re: PCI Compliant Vulnerability Scanner

2008-10-03 Thread patric conant
Wow, in the interest of killing this before it balloons out of control, the original poster was referring to Payment Card Industry, whereas the response referred to the Peripheral Component Interconnect, hence the reference to Nessus, a network vulnerability scanner. On Fri, Oct 3, 2008 at 8:39

Re: Loosing states on clustered firewall

2008-10-03 Thread Marco Matarazzo
Hi Stuart, On Fri, Oct 3, 2008 at 3:48 PM, Stuart Henderson [EMAIL PROTECTED]wrote: You could try only having an address on the carp interfaces, not the vlan interfaces, then use OSPF to announce to the other firewall... I'm actually already using OSPF to announce the routes to the

Re: New tcp stack attack

2008-10-03 Thread Sunnz
2008/10/2 Peter J. Philipp [EMAIL PROTECTED]: I listened to the podcast and got the idea that the socket is in ESTABLISHED state (so after 3 way handshake) and they mention that a packets PCB resources have timers, and that is what they exploit. Perhaps you establish the session and send an

Re: Weird pkg_info behavior?

2008-10-03 Thread Marc Espie
On Tue, Sep 30, 2008 at 10:47:56PM -0400, Nick Guenther wrote: On Tue, Sep 30, 2008 at 8:14 PM, James Hartley [EMAIL PROTECTED] wrote: On Tue, Sep 30, 2008 at 11:16 AM, Slim Joe [EMAIL PROTECTED] wrote: Is there a way to get package info for a file not already downloaded or installed

PF with local transparent proxy (Tor)

2008-10-03 Thread Adlesshaven
Hello, I am trying to set up Tor (the onion router) as a transparent proxy using a suggested PF ruleset. It doesn't work though, and I cant figure out how the PF ruleset is supposed to work, so maybe someone can help me understand/fix it? The idea is that PF sends all TCP traffic to Tor's

weird wscons behavior

2008-10-03 Thread Jesus Sanchez
Hi, using OpenBSD 4.3 up to date patched. I think people should know aboit this. lets say you're logged on ttyC0 as root, you sends the command: #sleep 5 wsconscfg -dF 1 this cmd waits 5 seconds and then destrois ttyC1 wscons. if you change to ttyC1 (Ctrl+Alt+F2) in the 5 seconds and waits

'dig +trace somedomain.info' times out

2008-10-03 Thread Thomas Pfaff
Hi. I'm experiencing some issues with dig(1) and subdomains in the info TLD. $ dig +trace foobar.info (handy domain for the sake of this test ;-) ) The trace prints the root and info servers and then it stops, waits for something like 30 seconds, then ends with the following message ;;

Re: Nintendo Wii seems to be unhappy with a ral in hostap mode

2008-10-03 Thread Steve Shockley
On 10/3/2008 9:09 AM, Jurjen Oskam wrote: I have a ral in hostap mode, which works wonderfully. I also have a Nintendo Wii console. It has a built-in wireless card, which you can use to connect the console to the Internet. While the console finds and associates with the ral just fine, the actual

Re: terminus font on wscons

2008-10-03 Thread Edd Barrett
On Fri, Oct 3, 2008 at 1:48 PM, Jesus Sanchez [EMAIL PROTECTED] wrote: Anyone have make run terminus font on wscons? raw and psf doesn't worked for me. If you mean outside X, then that can never work. -- Best Regards Edd http://students.dec.bournemouth.ac.uk/ebarrett