Re: PC Engines APU platform EOL

2023-05-04 Thread Johan Huldtgren
On 2023-05-04 5:18, Stuart Henderson wrote: > > You'll open up many more options if you allow a quiet fan for rackmount, > or allow using a non-rackmount box on a rack shelf. I'm in the same boat where I need to replace my current apu4s with a new rackmounted solution. The research I've done so

Re: init: single user shell terminated, restarting

2023-01-21 Thread Johan Huldtgren
RIC) #545: Fri Jan 20 15:15:44 MST 2023 dera...@i386.openbsd.org:/usr/src/sys/arch/i386/compile/GENERIC thanks, .jh > > Johan Huldtgren wrote: > > > hello, > > > > On 2023-01-16 10:23, Stuart Henderson wrote: > > > On 2023-01-15, Barry Grumbine wrote:

Re: init: single user shell terminated, restarting

2023-01-16 Thread Johan Huldtgren
hello, On 2023-01-16 10:23, Stuart Henderson wrote: > On 2023-01-15, Barry Grumbine wrote: > > In case someone else runs in to this, and bothers to check misc@ > > > > In this commit: > > https://marc.info/?l=openbsd-cvs&m=167283731726983&w=2 > > > > --execute-only (aka NX bit, aka XD bit, aka Da

Re: DHCP non-issues

2021-07-20 Thread johan kroes
Is it still possible to reject dhcp replies from certain servers? Here in the Netherlands ISPs provide you with a random pick of black box routers with their plans. Last year I had a VodafoneZiggo plan, offering 8 variants, and currently I have a KPN plan which has 12. Both times I received their

Re: Large Filesystem

2020-11-14 Thread Johan Huldtgren
hello, On 2020-11-14 13:50, Mischa wrote: > Hi All, > > I am currently in the process of building a large filesystem with > 12 x 6TB 3.5" SAS in raid6, effectively ~55TB of storage, to serve as a > central, mostly download, platform with around 100 concurrent > connections. > > The current syste

Re: Upgrade old 6.2 but 6.3 SHA256.sig on mirror different

2020-07-22 Thread Johan Mellberg
> 22 juli 2020 kl. 17:29 skrev Christian Weisgerber : > > "Theo de Raadt": > >> Johan Mellberg wrote: > >>> and https://ftp.openbsd.org/pub/OpenBSD/6.3/amd64/SHA256.sig >>> (Canada, as I like to take them from different sources). I then ran

Upgrade old 6.2 but 6.3 SHA256.sig on mirror different

2020-07-22 Thread Johan Mellberg
must start with 'untrusted comment: '". If I download https://ftp.eu.openbsd.org/pub/OpenBSD/6.3/amd64/SHA256.sig, signify is happy (also tried the version over at the heanet.ie mirror). Is anyone aware of this? Is it perhaps a case of bit rot on the canadian server? Thanks, Johan

Re: EFI boot on Dell PowerEdge R610

2020-06-20 Thread Johan Hattne
On 2020-06-17 19:27, YASUOKA Masahiko wrote: Hi, On Wed, 17 Jun 2020 00:37:48 -0700 Johan Hattne wrote: On 2020-05-29 17:01, Johan Hattne wrote: On May 28, 2020, at 20:38, YASUOKA Masahiko wrote: Hi, On Thu, 28 May 2020 09:46:23 -0700 Johan Hattne wrote: On May 28, 2020, at 06:42

Re: EFI boot on Dell PowerEdge R610

2020-06-17 Thread Johan Hattne
On 2020-05-29 17:01, Johan Hattne wrote: On May 28, 2020, at 20:38, YASUOKA Masahiko wrote: Hi, On Thu, 28 May 2020 09:46:23 -0700 Johan Hattne wrote: On May 28, 2020, at 06:42, Nick Holland wrote: On 2020-05-28 05:15, Johan Hattne wrote: On 2020-05-28 00:56, Johan Hattne wrote: On

Re: EFI boot on Dell PowerEdge R610

2020-05-29 Thread Johan Hattne
> On May 28, 2020, at 20:38, YASUOKA Masahiko wrote: > > Hi, > > On Thu, 28 May 2020 09:46:23 -0700 > Johan Hattne wrote: >>> On May 28, 2020, at 06:42, Nick Holland wrote: >>> >>> On 2020-05-28 05:15, Johan Hattne wrote: >>>> On 202

Re: EFI boot on Dell PowerEdge R610

2020-05-28 Thread Johan Hattne
> On May 28, 2020, at 06:42, Nick Holland wrote: > > On 2020-05-28 05:15, Johan Hattne wrote: >> On 2020-05-28 00:56, Johan Hattne wrote: >>> On 2020-05-28 00:43, YASUOKA Masahiko wrote: >>>> Hi, >>>> >>>> On Wed, 27 May 2020 22:32:

Re: EFI boot on Dell PowerEdge R610

2020-05-28 Thread Johan Hattne
On 2020-05-28 00:56, Johan Hattne wrote: On 2020-05-28 00:43, YASUOKA Masahiko wrote: Hi, On Wed, 27 May 2020 22:32:58 -0700 Johan Hattne wrote: I've been trying to boot the 6.7 installation media from USB via EFI on a Dell PowerEdge R610.  The screen goes blank and then the thing reset

Re: EFI boot on Dell PowerEdge R610

2020-05-28 Thread Johan Hattne
On 2020-05-28 00:43, YASUOKA Masahiko wrote: Hi, On Wed, 27 May 2020 22:32:58 -0700 Johan Hattne wrote: I've been trying to boot the 6.7 installation media from USB via EFI on a Dell PowerEdge R610. The screen goes blank and then the thing resets (so no kernel output or anything).

EFI boot on Dell PowerEdge R610

2020-05-27 Thread Johan Hattne
Firmware settings look sane to me. Is this something anybody has seen before? Any hint on where I could even start looking for problems would be very much appreciated! // Cheers; Johan

Re: iked as roadwarrior and strongswan server

2019-11-25 Thread Johan Hattne
> On Nov 24, 2019, at 11:32, List wrote: > > Hi *, > > is there someone here who has got a setup running strongswan as server > and openbsd's iked as client ? In a Site-To-Site situation ? Yes.

Re: SSH "Honey Keys" Security

2019-05-08 Thread Johan Beisser
Don’t. Generally, these things should be used to alert if an internal service has been compromised (akin to using Canary Tokens), and the key copied. It is, at best, a way to hear someone knocking. On Wed, May 8, 2019 at 15:59 Stefan R. Filipek wrote: > There's a blog post going around that has

Re: Good options for SAS HBA or SATA expansion cards?

2019-04-12 Thread Johan Huldtgren
> I have a Dell server that was advertised to support 4x3.5 + 2x2.5 > drives but when I popped it open I found there are only 4 SATA ports on > the motherboard total. So of the 6 claimed drives, I can actually > only install 3 drives because the stock DVD drive consumes a mobo port. > > Speaking w

Re: starting i3 with xenodm

2019-03-27 Thread Johan Huldtgren
On 2019/03/27 04:59, Normen Wohner wrote: > I installed i3 with pkg_add, > yet don't understand how > to call it from xenodm. > > I tried replacing the stock > ${exec_path}/bin/fvwm > with /usr/local/bin/i3 > inside xenodm's Xsession, > but that didn't help much. > > I then wrote the typical > e

Re: Introducing pf-badhost and unbound-adblock

2019-02-05 Thread Johan
n the geoblocking by country part? Looking forward to it. Regards, Ales Hi I wrote a shell script that uses source addresses from ipdeny.com: https://github.com/elasmo/misc-scripts/blob/master/geoipblock.sh Regards Johan

Re: Advice on Security Cameras

2019-01-01 Thread Johan Mellberg
smartphone app for example, and set up an account to control your camera). I’d otherwise suggest having a look at Zoneminder if you want centralised recording. They seem to support lots of cameras and I think they have some recommendations on supported hardware. Haven’t had time to dig in myself though. /Johan

Re: SSH server immediately closes connection

2018-12-14 Thread Johan Mellberg
> 14 dec. 2018 kl. 14:14 skrev Nick Holland : > >> On 12/14/18 00:27, Максим wrote: >> Hello, >> I've got a PC running OpenBSD current. >> After the latest upgrade I cannot ssh to it. >> >> When I run "ssh 10.26.5.70" >> I get this: >> "Connection to 10.26.5.70 closed by remote host. >> Connect

Re: VPN over alias address

2018-10-15 Thread Johan Hattne
> On Oct 15, 2018, at 15:03, Sonic wrote: > > On Mon, Oct 15, 2018 at 5:09 PM Johan Hattne wrote: >> Not sure I’m understanding your question, but is this not >> application-dependent? So for an internal interface mec0 and ssh, you could, >> >> $ ssh -B

Re: VPN over alias address

2018-10-15 Thread Johan Hattne
ent? So for an internal interface mec0 and ssh, you could, $ ssh -B mec0 f...@example.com and for ping, $ ping -I mec0 example.com and so on. // Cheers; Johan

Re: Pkg_add

2018-09-17 Thread Johan Mellberg
/etc/installurl will be automatically populated during installation. If you are upgrading you will need to create the file. Note that at some release the url should be changed to use https, see the upgrade instructions if you go down that route. /Johan

Re: SSH extremely quickly dropped from T-Mobile phone hotspot

2018-09-15 Thread Johan Beisser
You can also just set client keepalives. Set TCPKeepAlive in ~/.ssh/config. This has solved a bunch of random timeout problems due to carrier NAT or similar. On Sat, Sep 15, 2018 at 15:36 Constantine A. Murenin wrote: > On 15 September 2018 at 09:50, Chris Bennett < > cpb_m...@bennettconstruction

Re: NextCloud: failed integrity checks

2018-07-22 Thread Johan Huldtgren
On 2018/07/22 15:39, Nicolas Schmidt wrote: > After installation on OpenBSD 6.3 with pkg_add, NextCloud complains about > files failing the integrity checks. More specifically: > > - occ > * expected hash: > 7e3fce0d7b5c20a7775ed1b548cb2e29bed078d3ca77b01a83d438f671b3d473147d4e8217d2084e17b6fe2

Re: New laptop recommendations

2018-06-20 Thread Johan Mellberg
just my specimen but then again, maybe not. Mvh, Johan — Smartphone. Ja... just det. > 20 juni 2018 kl. 21:36 skrev Patrick Harper : > > HP EliteBook 745 G2? > > -- > Patrick Harper > paia...@fastmail.com > >> On Wed, 20 Jun 2018, at 09:01, Thomas Fr

Re: Pf syntax, need help understanding an example

2018-06-06 Thread Johan Mellberg
2018-06-06 13:55 GMT+02:00 Stuart Henderson : > On 2018-06-06, Johan Mellberg wrote: > with ext_if="re0", $ext_if expands to re0. > > If this if used in place of an address in a PF rule, re0's address is > looked up when pfctl is run and that is used. > &

Pf syntax, need help understanding an example

2018-06-06 Thread Johan Mellberg
7;t think this is an error in the book because there is a small paragraph apart from the comment in the example specifically pointing out the value of these parentheses - but I can't wrap my head around it. Any help appreciated! Sincerely, Johan

Re: ikev2 All incoming/outgoing traffic over IPsec?

2018-05-22 Thread Johan Hattne
192.168.6.0/24 network of the client. // Johan > On May 21, 2018, at 05:11, Denis wrote: > > I can successful ping both sides of IPsec tunnel: > > server$ ping -I 192.168.5.1 192.168.6.1 > 64 bytes from 192.168.6.1 icpm_seq... > > client$ ping -I 192.158.6.1 192.168.5.1 >

Re: ikev2 All incoming/outgoing traffic over IPsec?

2018-05-14 Thread Johan Hattne
request and the response. // Johan > On May 14, 2018, at 07:34, Denis wrote: > > I have added to /etc/pf.conf: > > $ipsec_if = "axen0" > $ipsec_remote_lan = "192.168.5.0/24" > > pass out quick on $ipsec_if proto tcp from lo0 to $ipsec_remote_lan &g

Re: ikev2 All incoming/outgoing traffic over IPsec?

2018-05-13 Thread Johan Hattne
Nah, sorry, I misread your rules—on second look, I don’t see what’s gone wrong. What about logging blocked packets block log (all, to pflog0) in pf.conf and dumping it # tcpdump -en -i pflog0 while doing what you expect should work? // Johan > On May 13, 2018, at 02:15, Denis wr

Re: ikev2 All incoming/outgoing traffic over IPsec?

2018-05-12 Thread Johan Hattne
eep state > > pass in quick on $ipsec_if proto esp from any to ($ipsec_if) > pass out quick on $ipsec_if proto exp from ($ipsec_if) to any \ > keep state set queue ipsec > > pass out quick on $ipsec_if tagged clnt.tld.ipsec set queue ipsec_users > > pass in quick on $ipsec_enc_if proto ipencap from any to ($ipsec_if) \ > keep state (if-bound) > pass out quick on $ipsec_enc_if proto ipencap from ($ipsec_if) to any \ > keep state (if-bound) > > pass in quick on $ipsec_enc_if from $ipsec_remote_lan to \ > $ipsec_local_lan keep state (if-bound) > pass out quick on $ipsec_enc_if from $ipsec_local_lan to \ > $ipsec_remote_lan keep state (if-bound) > ... > > I think it can be something wrong in PF configuration or > missed/unfinished touching IPsec traffic filtering. > > Please advice. Do you not need a “proto ipencap” on the last two pass-rules that permit traffic between your LAN:s? // Johan

IPsec on enc0: icmp echo requests not decrypted?

2018-04-11 Thread Johan Hattne
eep state (if-bound) pass out on enc0 proto ipencap from a.a.a.a to b.b.b.b keep state (if-bound) I don’t know where to look next. Hints? // Best wishes; Johan

Re: Trying to use OpenBSD as webserver, inside home network (ADSL internet connection)

2018-01-19 Thread Johan Mellberg
> 19 jan. 2018 kl. 17:29 skrev Oliver Marugg : > > hi > > check: which device does nat for you. On that device configure portforwarding > from external to internal, eg external ip:port to your internal host:port. > test it from outside. > > ip forwarding on your OpenBSD laptop isnt necessary

Re: Getting Dell RAID status via SNMP

2017-07-18 Thread Johan Huldtgren
On 2017-07-18 19:45, Stuart Henderson wrote: On 2017-07-18, Jibby Jeremiah wrote: ​Stuart H wrote : So for now you would need to run bioctl to fetch status for this. Thanks again Stuart. But I look at the man page and it is not clear to me how to use this: [root@myname ~]# bioctl -q sd0

Re: Can I use OpenBSD as a desktop system?

2017-06-09 Thread Johan Mellberg
Yes. 2017-06-09 21:39 GMT+02:00 SOUL_OF_ROOT 55 : > Can I use OpenBSD as a desktop system? >

Re: APCu/Memcached/Redis - OwnCloud/Nextcloud memory caching - which OpenBSD package?

2017-02-25 Thread Johan Huldtgren
hello, > I'm trying to improve the performance of my freshly installed Nextcloud > site. I'm running on my local 1G network and the performance is less > than optimal. > > I've done all the SQL tuning, but from looking at the SQL log files, the > SQL isn't the slow part. make sure your SQL e

Re: OT? - ownCloud vs NextCloud

2017-02-23 Thread Johan Huldtgren
hello, > Is there some reason there's no Nextcloud port other than no-one has > done one? (yes, this is a reason, but I'm wondering license, politics, > etc). I've been using owncloud for a few years, but recently switched to nextcloud when an upgrade broke my calendar; this might have been sa

Re: macbook EFI bootloader

2016-12-29 Thread Johan Huldtgren
hello, > Recently tried to get my intel macbook (circa '08) dual-booting with > -current amd64 (December 26 snapshot). > > Within OSX I repartitioned the RootDisk and added a MS-DOS (FAT) > partition for the OpenBSD install/disklabel. I booted from CD and > installed to wd0 (using the OpenBSD fdi

Re: 5.8 EOL

2016-12-01 Thread Johan Mellberg
ot sure that "end of life" is the way to put it, but OpenBSD developers support the current and the previous releases (see picture on http://www.openbsd.org/faq/faq5.html). So 5.8 was "EOL:ed" when 6.0 was released. /Johan

Re: Failure to get unbound to talk to nsd on the same server (Solved)

2016-10-18 Thread Johan Mellberg
y need to. So, problem solved, onto the next one! ;-) /Johan On Wed, Oct 12, 2016 at 04:18:39PM +0300, Kapetanakis Giannis wrote: > Hi, > > Haven't followed the whole thread and by just looking at the topic, > I have a similar setup (carped as well) for caching DNS. > 2 se

Re: Failure to get unbound to talk to nsd on the same server

2016-10-11 Thread Johan Mellberg
ERVFAIL... There is something weird here that I don't quite see/understand so I very much appreciate the input so far. Experimenting with the various settings proposed, good stuff. /Johan 2016-10-11 9:41 GMT+02:00 Paul de Weerd : > I run a similar setup, NSD serving my local zones (on ::

Re: Failure to get unbound to talk to nsd on the same server

2016-10-11 Thread Johan Mellberg
.0.0.1 > > >> On 10 okt. 2016, at 23:42, Johan Mellberg wrote: >> >> Hi all, >> >> I am setting up a fresh OpenBSD 6.0 server in a KVM VM to serve my >> home network with DNS. I have a custom zone (only for LAN use) set up >> and previously

Re: Failure to get unbound to talk to nsd on the same server

2016-10-11 Thread Johan Mellberg
hines are configured to use that, it's only in the zone files for now. ### Run on chief (192.168.x.95) ### [johan@chief ~]$ dig @192.168.x.91 ericsson.com ; <<>> DiG 9.9.4-RedHat-9.9.4-29.el7_2.4 <<>> @192.168.x.91 ericsson.com ; (1 server found) ;; global options

Failure to get unbound to talk to nsd on the same server

2016-10-10 Thread Johan Mellberg
for changes of course. Thanks for any clue bats coming my way... /Johan * resolv.conf lookup file bind nameserver 192.168.x.91 # cat /etc/myname dns03.my.domain # cat /etc/hosts 127.0.0.1 localhost ::1 localhost 192.168.x.91 dns03.my.domain dns03 # cat /var/unbound/etc/unbo

Re: httpd. chroot, security and user homepage

2016-06-30 Thread Johan Tärnklint
all total 16 drwxr-xr-x 4 root daemon 512 Jun 30 20:09 . drwxr-xr-x 10 root daemon 512 Jun 30 20:09 .. drwxr-x--- 3 empty www 512 Jun 30 20:12 domain1 drwxr-x--- 3 empty www 512 Jun 30 20:09 domain2 There it is. Works just fine. Permissions are correct and secure(I hope)

httpd. chroot, security and user homepage

2016-06-29 Thread Johan Tärnklint
Seeking advice / security tips. Is it safe to create /var/www/htdocs/user1 and symlink to their home folder? Then set permissions to user1:www on /var/www/htdocs/user1 ? Does it break the chroot? Is it safe? Better solution? New OpenBSD user and very happy. Thanks in advance. Johan

Re: bringing degraded softraid online

2016-02-16 Thread Johan Huldtgren
On 2/16/16 10:31, Joel Sing wrote: This is the reason that the volume will not reassemble - two of your chunks have metadata with version 64, while the rest have version 63. As such, only chunks 0 and 1 are considered to be online - all others have old metadata and are marked offline. This most

degraded softraid not coming back online

2016-02-06 Thread Johan Huldtgren
hello, earlier this week a host I have at an offsite location went dark (I have no remote console), today I drove out to take a look. It had panicked, I have pictures of the panic, trace and ps here: http://www.huldtgren.com/panics/ When I tried to bring it back online the softraid volume would

Re: bringing degraded softraid online

2016-02-06 Thread Johan Huldtgren
Not sure. Perhaps these drives don't have good meta data due to the crash? Can you set sr_debug = SR_D_STATE | SR_D_META and see if that prints anything informative? well we now get lots more: softraid0 at root scsibus5 at softraid0: 256 targets softraid0: sr_boot_assembly softraid0: sr_meta_n

Re: bringing degraded softraid online

2016-02-06 Thread Johan Huldtgren
This should show chunk states. To map from number this prints to a state, see the #defines listed at struct bioc_disk.bd_status in sys/dev/biovar.h starting line 92. scsibus5 at softraid0: 256 targets softraid0: trying to bring up sd9 degraded softraid0: sd9 was not shutdown properly softraid0

Re: bringing degraded softraid online

2016-02-06 Thread Johan Huldtgren
I would compile a kernel with 'option SR_DEBUG', and with 'uint32_t sr_debug = SR_D_STATE' in sys/dev/softraid.c line 63. This might shed light on which chunks have a problem. at boot I now see this: softraid0 at root scsibus5 at softraid0: 256 targets softraid0: trying to bring up sd9 degrade

Re: bringing degraded softraid online

2016-02-06 Thread Johan Huldtgren
I think transcribing these images yourself improves likelyhood of them being read... ok, here goes: panic: Non dma-reachable buffer at curaddr 0x81115888(raw) Stopped at Debugger+0x9: leave TID PID UID PRFLAGS PFLAGS CPU COMMAND *25637 25637 0 0x14000 0x200 1 srdis Debugger() at Debugge

Re: bringing degraded softraid online

2016-02-06 Thread Johan Huldtgren
Looking at the raid5 code, it looks like you get into this state if more than 2 chunks in the RAID5 volume fail. Are you sure all the disks are OK? As far as I can tell yes, I don't see anything in dmesg, S.M.A.R.T isn't reporting any errors (but I've been told that means little). Anything in pa

bringing degraded softraid online

2016-02-06 Thread Johan Huldtgren
(apologies if this comes through more than once, I tried unsuccessfully to send this yesterday) hello, earlier this week a host I have at an offsite location went dark (I have no remote console), today I drove out to take a look. It had panicked, I have pictures of the panic, trace and ps here:

Re: owncloud and php5-libsmbclient / occ

2015-12-29 Thread Johan Huldtgren
Also, if one would like to use occ utility from CLI, considering that the whole owncloud runs chrooted under /var/www/ and that occ therefore looks for /owncloud/apps folder (which is obviously /var/www/owncloud/apps) and that www user is a nologin one, trying to run the following command: # doas

Re: home keys in tmux

2015-12-02 Thread Johan Mellberg
We'll see if this gets to the list, sending from a phone. Anyway, screen steals C-a so to jump to the start of a line, hit C-a, then a again. Might work for you. > 2 dec. 2015 kl. 18:43 skrev Jack J. Woehr : > > Ax0n wrote: >> Do you have anything in your .tmux.conf? >> > Ha, I have a funny pro

Re: Because Theo and various users told them that the projects GnoBSD and Comixwall were worthless and that they weren't contributing to OpenBSD?

2015-10-17 Thread Johan Petersson
Well, that might have been because we already have easy to use firewall/router management and easy to use desktop. This is, naturally, nothing but my own humble opinion. With some respect /Johan Petersson On Sat, Oct 17, 2015 at 3:59 PM, français wrote: > I always find it amusing how Open

Re: mediatomb , limits folda to be seen

2015-08-06 Thread Johan Mellberg
I used to use mediatomb but I no longer do so don't remember the details, but I remember that that is an issue of the web management UI, it exposes the whole file system so that you can decide what to share, theoretically no limitations (although the mediatomb user may not have read access to every

Re: Following -stable, sources downloaded from mirror

2015-04-11 Thread Johan Mellberg
dan mclaughlin skrev den 2015-04-11 12:16: > On Sat, 11 Apr 2015 11:59:14 +0200 Johan Mellberg > wrote: >> dan mclaughlin skrev den 2015-04-11 10:55: >>> On Sat, 11 Apr 2015 10:27:19 +0200 Johan Mellberg >>> wrote: >>>> Hi, >>>> >>&

Re: Following -stable, sources downloaded from mirror

2015-04-11 Thread Johan Mellberg
dan mclaughlin skrev den 2015-04-11 10:55: > On Sat, 11 Apr 2015 10:27:19 +0200 Johan Mellberg > wrote: >> Hi, >> >> I want to start following -stable so I have read >> http://www.openbsd.org/anoncvs.html and >> http://www.openbsd.org/faq/faq5.html#BldGetS

Following -stable, preloaded src

2015-04-11 Thread Johan Mellberg
of course but what version do I get without it?!? And how should I update the next time? Thanks/Johan

Following -stable, sources downloaded from mirror

2015-04-11 Thread Johan Mellberg
6 I get the Tag file of course but what version do I get without it?!? And how should I update the next time? Thanks/Johan

Re: is what this guy is saying even anywhere close to reasonable, about ssh everywhere?

2015-01-04 Thread Johan Beisser
no. Sent form my iFoe. > On Jan 4, 2015, at 05:34, bofh wrote: > > https://medium.com/@shazow/ssh-how-does-it-even-9e43586e4ffc > > -- > http://www.glumbert.com/media/shift > http://www.youtube.com/watch?v=tGvHNNOLnCk > "This officer's men seem to follow him merely out of idle curiosity." -

Re: maybe OT 10 year anniversay of Chuck Yerkes death

2014-08-27 Thread Johan Beisser
Man. Thanks for the reminder. +1 Sent form my iFoe. > On Aug 27, 2014, at 16:21, Diana Eichert wrote: > > I don't think it's off topic but others might. I'm writing this post to > remember Chuck Yerkes, a long time contributor to the misc@openbsd list. > While riding his motorcycle 10 years

Re: unbound missing on sgi?

2014-07-13 Thread Johan Hattne
On Jul 14, 2014, at 0:14, Brad Smith wrote: > On 14/07/14 12:09 AM, Johan Hattne wrote: >> I would have expected to find unbound(8) on my 5.5 sgi machine, but I can’t >> and neither can locate(1). Any clues as to what’s going on? > > Unbound didn't exist with 5.

unbound missing on sgi?

2014-07-13 Thread Johan Hattne
I would have expected to find unbound(8) on my 5.5 sgi machine, but I can’t and neither can locate(1). Any clues as to what’s going on? // Johan

Arrandale/Ironlake support in current.

2014-06-10 Thread Johan Svensson
model has "turbo boost", could that be the thing that generates all this heat? is the Arrandale/ironlake supported on openbsd yet? This was the last i heard about that topic: http://comments.gmane.org/gmane.os.openbsd.misc/209482 --Johan Svensson

Re: new OpenSSL flaws

2014-06-05 Thread Johan Beisser
On Thu, Jun 5, 2014 at 5:09 PM, Giancarlo Razzolini wrote: > Em 05-06-2014 20:45, Eric Furman escreveu: >> I predict that within a year OpenSSL will go the way of IPF. >> For much the same reason... >> > IPF? Care to elaborate? Well, in 2001 there was this drama around Darren Reed's IPF, that cau

Re: CPU power consumption on thinkpad x201 on openbsd current

2014-06-05 Thread Johan Svensson
On 2014-06-05 20:43, Mike Larkin wrote: On Thu, Jun 05, 2014 at 10:53:38AM +0200, Johan Svensson wrote: On 06/05/14 00:53, STeve Andre' wrote: On 06/04/14 17:08, Johan Svensson wrote: I'm trying to migrate from Linux to Openbsd on my laptop (thinkpad x201). The first problem t

Re: CPU power consumption on thinkpad x201 on openbsd current

2014-06-05 Thread Johan Svensson
On 2014-06-05 11:09, David Coppa wrote: On Thu, Jun 5, 2014 at 10:53 AM, Johan Svensson wrote: This my output from sysctl and apm when running on the lowest clockspeed: # sysctl hw | grep -iE "cpuspeed|setperf|fan|consumption" hw.sensors.acpithinkpad0.fan0=1959 RPM hw.sensors.ithe

Re: CPU power consumption on thinkpad x201 on openbsd current

2014-06-05 Thread Johan Svensson
On 06/05/14 00:53, STeve Andre' wrote: On 06/04/14 17:08, Johan Svensson wrote: I'm trying to migrate from Linux to Openbsd on my laptop (thinkpad x201). The first problem that i came across was that the Cpu fanspeed was running constantly at 3500RPM. After the acpithinkpad.c patc

CPU power consumption on thinkpad x201 on openbsd current

2014-06-04 Thread Johan Svensson
pmd -C and apmd -L it's the same. dmesg: http://exclude.se/openbsd/dmesg.txt Is there anyway to fix this? Regards Johan Svensson

Re: Change default audiodevice in OpenBSD-current

2014-06-03 Thread Johan Svensson
On 06/03/14 20:08, Alexandre Ratchov wrote: On Tue, Jun 03, 2014 at 07:59:49PM +0200, Johan Svensson wrote: On 06/03/14 19:33, Alexandre Ratchov wrote: On Tue, Jun 03, 2014 at 07:25:25PM +0200, Alexandre Ratchov wrote: sndiod_flags="-f rsnd/1 -f rsnd/0" This will kind of "exch

Re: Change default audiodevice in OpenBSD-current

2014-06-03 Thread Johan Svensson
on setting this shows up in dmesg: ehci0: Error opening low/full speed isoc endpoint. A low/full speed device is attached to a USB2 hub, and transaction translations are not yet supported. Reattach the device to the root hub instead. uaudio_chan_open: error creating pipe: err=INVAL endpt=0x03 I dont know if that helps. //Johan

Re: Change default audiodevice in OpenBSD-current

2014-06-03 Thread Johan Svensson
On 06/03/14 18:22, Remco wrote: Johan Svensson wrote: I am trying to change my default output device from my builtin soundcard to an usb soundcard which is an output only device. I have tried: # audioctl -f /dev/audio1 audioctl: /dev/audio1: Device not configured It seems this device does

Re: Change default audiodevice in OpenBSD-current

2014-06-03 Thread Johan Svensson
On 06/03/14 18:22, Remco wrote: Johan Svensson wrote: I am trying to change my default output device from my builtin soundcard to an usb soundcard which is an output only device. I have tried: # audioctl -f /dev/audio1 audioctl: /dev/audio1: Device not configured It seems this device does

Change default audiodevice in OpenBSD-current

2014-06-03 Thread Johan Svensson
ll defaulting to my builtin soundcard. How can i change the default sounddevice from audio0 to audio1? /Regards Johan Svensson DMESG: dmesg | grep audio audio0 at azalia0 audio0 at azalia0 audio0 at azalia0 audio0 at azalia0 uaudio0 at uhub2 port 1 configuration 1 interface 1 "NuForce, Inc. NuF

Re: 'newer' Qlogic HBA support on amd64

2014-05-16 Thread Johan Huldtgren
Quoting Pete Vickers : # dmesg | egrep -i "qle|scsibus1" qle0 at pci8 dev 0 function 0 "QLogic ISP2432" rev 0x02: msi qle0: bad startup mboxes: 0 0 qle0: firmware rev 4.0.20, attrs 0x2 scsibus1 at qle0: 2048 targets, WWPN 50060b66644e, WWNN 50060b66644f sd1 at scsibus1 targ 130 lun 0: S

Re: Strange route entry from China

2014-05-14 Thread Johan Beisser
On Wed, May 14, 2014 at 12:40 AM, Kevin Lyda wrote: > > On 14 May 2014 08:20, "Johan Beisser" wrote: >> >> On Tue, May 13, 2014 at 11:57 PM, Otto Moerbeek wrote: >> > >> > Op 14 mei 2014 om 07:48 heeft Johan Beisser het >> > volgende ges

Re: Strange route entry from China

2014-05-14 Thread Johan Beisser
On Tue, May 13, 2014 at 11:57 PM, Otto Moerbeek wrote: > > Op 14 mei 2014 om 07:48 heeft Johan Beisser het volgende > geschreven: > > > There are more reasons dynamic route entries are createf. For example to > record results of mtu path discovery. That implies a success

Re: Strange route entry from China

2014-05-13 Thread Johan Beisser
On Tue, May 13, 2014 at 10:31 PM, Johan Ryberg wrote: > Yes, it's related to a SSH brute force attack. > > I have just never seen the the "client" IP in the routing table before. My > IP does not exist in the routing table when I SSH to the host. The IP shouldn't

Re: Strange route entry from China

2014-05-13 Thread Johan Ryberg
ing that can be explained? Best regards Johan Den 14 maj 2014 04:09 skrev "Johan Beisser" : > > > >> On May 13, 2014, at 18:47, Stuart McMurray wrote: > >> > >> > >> And, 163data.com.cn is a large source of shady activity. > > > I block

Re: Strange route entry from China

2014-05-13 Thread Johan Beisser
>> On May 13, 2014, at 18:47, Stuart McMurray wrote: >> >> >> And, 163data.com.cn is a large source of shady activity. I blocked the bulk of China and Asia outright at the router. Quick solution, if not clean.

Strange route entry from China

2014-05-13 Thread Johan Ryberg
OpenBSD 5.5 Is it normal that entries like this comes and goes? Best regards Johan

Re: Multihoming with carp possible? and ipsec failover?

2014-05-13 Thread Johan Beisser
On Tue, May 13, 2014 at 4:58 AM, Magnus wrote: > Hello Misc-Users, > > I'm looking in to the possibility to do multihoming (more than one isp) > on a Carp setup. > To do live failover if one isp goes down, the other takes over. > Just as carp does if one of the routers goes down. You can do this

Re: icalendar support on openbsd 5.5 - mod_dav removed

2014-05-12 Thread Johan Huldtgren
Quoting Stuart Henderson : On 2014-05-12, Steve Fairhead wrote: Hi folks, I'm aware that mod_dav has been removed from 5.5. I was supporting a group of icalendar files under 5.3 with mod_dav. Do I have options for doing the same (read/write access) under 5.5, maybe using a different method or

Re: where are translated web-pages?

2014-04-17 Thread Johan Beisser
On Thu, Apr 17, 2014 at 3:18 PM, Alex Naumov wrote: > Thank you for link, but... why? I mean, we are not going to continue work on > translation anymore? Reason? Read this thread on the topic from earlier this month. http://marc.info/?t=13965139876&r=1&w=2

Re: where are translated web-pages?

2014-04-17 Thread Johan Beisser
http://marc.info/?l=openbsd-cvs&m=139637003025491&w=2 You did. On Thu, Apr 17, 2014 at 3:08 PM, Alex Naumov wrote: > Hello, > > I just want to ask about "not English" (translated) pages. I can't find > these. > Also translation.html and steelix are not avaliable. > Did I missed something? > >

Re: Gnome and OpenBSD 5.4

2014-04-01 Thread Johan Mellberg
ng to try to get gnome working better: http://undeadly.org/cgi?action=article&sid=20140219085851 /Johan Sent from a smartphone of some sort. Damn you autocorrect. > 2 apr 2014 kl. 05:53 skrev Nex6|Bill : > > I am trying to get Gnome to work, and its giving me fits. I tryed to

Re: reach a remote LAN through IPSEC from the router

2014-02-10 Thread Johan Mellberg
> 10 feb 2014 kl. 16:10 skrev Aurelien Martin <01aurel...@gmail.com>: > > Hi Mitja, > > When I add the route manually it's working like a charm. > > But after that, all machines of my LAN ping with this following form > (Redirect Host). What does it mean ? For me the router rewrite the > desti

Re: Where can I find a list of error codes in smtpd?

2014-01-30 Thread Johan Beisser
I feel like a bit of a jackass for the response. Check smtpd/smtp_session.c http://www.openbsd.org/cgi-bin/cvsweb/src/usr.sbin/smtpd/smtp_session.c?rev=1.192 On Thu, Jan 30, 2014 at 7:41 AM, Johan Beisser wrote: > http://www.faqs.org/rfcs/rfc821.html (1982) > > Section 4.2.1.

Re: Where can I find a list of error codes in smtpd?

2014-01-30 Thread Johan Beisser
http://www.faqs.org/rfcs/rfc821.html (1982) Section 4.2.1. https://www.ietf.org/rfc/rfc2821.txt (2001) Section 4.2.1 defines the groups, and 4.2.2.x defines specific codes. https://www.rfc-editor.org/rfc/rfc2487.txt (1999) Secure SMTP over TLS. On Thu, Jan 30, 2014 at 3:19 AM, STeve Andre'

Re: Is Soekris OpenBSD friendly?

2013-11-15 Thread Johan Beisser
On Fri, Nov 15, 2013 at 9:00 PM, jordon wrote: > A few years back I put m0n0wall (FreeBSD-based) on it, hooked it up to 2 > machines (1 WAN, 1 LAN) and pushed a file through it. Its max bandwidth was > well under my Internet connection speed. > > It was replaced with a net5501. > It's not belo

Re: Is Soekris OpenBSD friendly?

2013-11-15 Thread Johan Beisser
I'm not sure what you mean by "too slow to route." I've a net4501 with 64mb of RAM that's handling all of my IP traffic at home. Biggest problem is swapping taking out available interrupts. Modern networks are actually just too fast for the hardware these days. It works fine for home stuff. On F

Re: why icmp timestamping is enabled by default ?

2013-10-21 Thread Johan Beisser
> On Oct 21, 2013, at 2:57, Henning Brauer wrote: > > * Илья Шипицин [2013-10-11 04:52]: >> I was just curious why that timestamping is enabled by default. > > 'cause there is no reason to disable it. > > why is tcp enabled by default? > Everyone knows that TCP, like IP, and the Internet is

Re: new queueing subsystem

2013-10-16 Thread Johan Beisser
On Wed, Oct 16, 2013 at 11:04 AM, Norman Golisz wrote: > On Wed Oct 16 2013 08:54, Johan Beisser wrote: >> Or cam I still just do very basic priority queueing in 5.5? > > See pf.conf(5), 'set prio'. This doesn't even require you to define > queues, etc. R

Re: new queueing subsystem

2013-10-16 Thread Johan Beisser
> On Oct 16, 2013, at 8:05, Otto Moerbeek wrote: > This will not be in 5.4, it wil be in 5.5. If you see shortcomings in > the docs explain in more detail. I just read the QUEUEING section in the man page. Seems fairly clear to me, and in some ways more clear. One thing I'd like to see is a sug

Re: no audio with aucat

2013-09-20 Thread Johan Huldtgren
This is a virtual machine, isn't it? AFAICS, virtual machines can't do full duplex, while eap(4) cards claim they are full-duplex. Correct, it's a virtual machine. Could you add "-mplay" to the sndiod_flags variable in /etc/rc.conf.local (or whatever you use) and see how this works? that wor

  1   2   3   4   5   6   7   >