Re: growfs on an encrypted softraid0

2022-03-24 Thread Leo Unglaub
Hey, i have a 500GB drive that is fully encrypted using a softraid with raidlevel C. It works perfectly. But now the drive is getting full and i have to grow it. This server is running in the Hetzner Cloud and resizing the drive is supported to 10TB. With an unencrypted partition this works

growfs on an encrypted softraid0

2022-03-24 Thread Leo Unglaub
Hey friends, i have a 500GB drive that is fully encrypted using a softraid with raidlevel C. It works perfectly. But now the drive is getting full and i have to grow it. This server is running in the Hetzner Cloud and resizing the drive is supported to 10TB. With an unencrypted partition

Re: OpenSMTPd: Unable to use TLS/SSL over IPv6

2022-01-14 Thread Leo Unglaub
Hey, On 14/01/2022 09:19, Stuart Henderson wrote: That hostname doesn't match the certificate, it should validate ok for storm-peaks.northrend.azeroth.wow-data.net (I also checked with -servername to send SNI). There's no difference between v4 and v6 for that though. thank you very much for

Re: OpenSMTPd: Unable to use TLS/SSL over IPv6

2022-01-14 Thread Leo Unglaub
Hey, On 14/01/2022 08:31, Crystal Kolipe wrote: Reading the manual page for openssl, specifically the section on s_client would be a very good idea. thank you for the hint. I did not know about this behavour. It does not explain the initial bug, but certenly my testing of it. For the

Re: OpenSMTPd: Unable to use TLS/SSL over IPv6

2022-01-13 Thread Leo Unglaub
Hey, On 1/13/22 19:18, Crystal Kolipe wrote: Well, I can connect to his server using: openssl s_client -starttls smtp -connect mail.unglaub.at:25 The handshake completes and I'm able to issue smtp commands. However smtpd always reports that opportunistic TLS failed, and downgrades to

Re: OpenSMTPd: Unable to use TLS/SSL over IPv6

2022-01-13 Thread Leo Unglaub
Hey, On 11/01/2022 21:28, Stuart Henderson wrote: I bet it is MTU related. Try lowering MTU on that interface (you cannot do it separately for IPv4 and IPv6 so it will change both, but that's not likely to be a problem) and get someone who has seen the problems to re-test. thank you so much

OpenSMTPd: Unable to use TLS/SSL over IPv6

2022-01-11 Thread Leo Unglaub
Hey friends, i am running OpenBSD 7.0 with all patches applied. Some weeks ago i noticed a very strange issue with my OpenSMTPd instance. People are unable to use TLS when connecting via IPv6. This is not just my observation, some people on misc@ told me so as well. I talked to gilles@ in

Re: PHP 7.4: SSL routines:CONNECT_CR_CERT:certificate verify failed

2021-12-23 Thread Leo Unglaub
Hey, Kind of strange that this works. Port 587 (submission) is usually set up to use STARTTLS, just like port 25 (smtp) so you would need specify -starttls smtp an an option to openssl s_client. Port 465 (submissions, formerly known as smtps) would work with mandatory TLS if the server

Re: PHP 7.4: SSL routines:CONNECT_CR_CERT:certificate verify failed

2021-12-23 Thread Leo Unglaub
Hey, thank you for your reply. My first guess ist that the chain is not correct and so the server's certificate cannot be validated. you are correct about it. I read the openssl output wrong, i got confused by "Verify return code: 0 (ok)" and thought the connection was successful. But is

PHP 7.4: SSL routines:CONNECT_CR_CERT:certificate verify failed

2021-12-22 Thread Leo Unglaub
Hey friends, i have a OpenBSD 7.0 server with all syspatches applied. On that server i have setup httpd and PHP 7.4 running via PHP-FPM. I followed the readme provided by the package and everything seams to be fine. There is only one issue when i try to establish a secure connection from

Re: unable to restart nsd with doas

2021-02-10 Thread Leo Unglaub
I am soo sorry for the noise. doas works as expected, my tar command just exited silently with an error and rcctl never run as it should. So sorry for the noise, for the history archives, doas works as expected! Am 10.02.2021 um 19:25 schrieb Leo Unglaub: Hey, i have a problem restarting nsd

unable to restart nsd with doas

2021-02-10 Thread Leo Unglaub
Hey, i have a problem restarting nsd from a script that is run as doas. I have read the man page of doas several times, but i dont understand what i am doing wrong. Maybe someone of you could help me out. That would be so nice. My problem is": I have a script called "worker" and i invoce

Re: softraid0 errors after 6.8 upgrade

2020-11-23 Thread Leo Unglaub
schrieb Nick Holland: On 2020-11-22 06:04, Leo Unglaub wrote: Hi, i upgraded my desktop to the latest 6.8 release. I uses sysupgrade to do the upgrade and everything worked fine. But now i noticed in my dmesg the following error messages: softraid0: sd6: i/o error 5 @ CRYPTO block 475440376 softraid0

softraid0 errors after 6.8 upgrade

2020-11-22 Thread Leo Unglaub
Hi, i upgraded my desktop to the latest 6.8 release. I uses sysupgrade to do the upgrade and everything worked fine. But now i noticed in my dmesg the following error messages: softraid0: sd6: i/o error 5 @ CRYPTO block 475440376 softraid0: sd6: i/o error 5 @ CRYPTO block 475440376

Re: Large Filesystem

2020-11-14 Thread Leo Unglaub
Hey, my largest filesystem with OpenBSD on it is 12TB and for the minimal usecase i have it works fine. I did not loose any data or so. I have it mounted with the following flags: local, noatime, nodev, noexec, nosuid, softdep The only thing i should mention is that one time the server

Re: grow a filesystem on a softraid

2020-07-22 Thread Leo Unglaub
Hey, On 2020-07-22 16:03, Otto Moerbeek wrote: Backup, recreate the RAID, restore. THe RAID meta data includes the size and AFAIK, there is now way to change that after creation. alright, i will do that! Thanks so much for your help. Greetings from Vienna Leo

grow a filesystem on a softraid

2020-07-22 Thread Leo Unglaub
Hey, i have the following setup: I have the drive sd1 with 20GB and on there i have one partition "a" with the type RAID. On that raid i have used bioctl to create an encrypted partition. When i decrypt sd1a it becomes sd3 and on there i have my normal sd3a with the type FFS. It works great

Re: sysupgrade: exclude sets

2019-07-09 Thread Leo Unglaub
On 09.07.19 15:13, Theo de Raadt wrote: i am a huge fan of sysupgrade. It works perfectly on my laptop where i use all sets that OpenBSD provides. But now i want to start to use sysupgrade on a router where i don't need the "x*" sets. I looked at the manual here

sysupgrade: exclude sets

2019-07-09 Thread Leo Unglaub
Hi, i am a huge fan of sysupgrade. It works perfectly on my laptop where i use all sets that OpenBSD provides. But now i want to start to use sysupgrade on a router where i don't need the "x*" sets. I looked at the manual here (https://man.openbsd.org/sysupgrade) but did not find a way to

relayd: Layer 7 proxy: forward failed

2018-12-06 Thread Leo Unglaub
Hi, i am trying to use relayd as an outbound proxy. I am following the manual page and also the book "Httpd and Relayd Mastery". I did this on the latest release 6.4 and also on the latest snapshot to make sure this was not already fixed somewhere. I am on amd64. My relayd config looks like

Re: Keyboard repeats characters way to often

2018-10-24 Thread Leo Unglaub
, Sep 19, 2018 at 03:03:12AM +0200, Leo Unglaub wrote: The only big problem I have is that as soon as I start X I cannot use the keyboard correctly. Every time I type a character on the keyboard it gets repeated multiple times. Most often it gets repeated between 3 and 7 times. Do you have any idea

usbd_free_xfer: xfer=0xffffff041e9651e0 not free

2018-10-13 Thread Leo Unglaub
Hello, i just upgraded to the latest snapshot and i noticed that all my external USB drives are not working anymore. (i tryed 3 different external drives) As soon as i plug them into an USB port I get the following message in my dmesg: usbd_free_xfer: xfer=0xff041e9651e0 not free I

Re: Keyboard repeats characters way to often

2018-09-29 Thread Leo Unglaub
Hey, i am sorry it took me so long to get back to you on this issue. As it turns out this laptop has a lot of problems with OpenBSD so it took me a long time to build your patch. The patch below works fine and fixes the keyboard issue i had on my Lenovo ThinkPad E485. Everything else works

Re: Keyboard repeats characters way to often

2018-09-18 Thread Leo Unglaub
On 09/19/18 03:29, Jonathan Gray wrote: On Wed, Sep 19, 2018 at 03:03:12AM +0200, Leo Unglaub wrote: The only big problem I have is that as soon as I start X I cannot use the keyboard correctly. Every time I type a character on the keyboard it gets repeated multiple times. Most often it gets

Re: Keyboard repeats characters way to often

2018-09-18 Thread Leo Unglaub
The only big problem I have is that as soon as I start X I cannot use the keyboard correctly. Every time I type a character on the keyboard it gets repeated multiple times. Most often it gets repeated between 3 and 7 times. Do you have any idea what I could to in order to fix/debug this? Could

Keyboard repeats characters way to often

2018-09-18 Thread Leo Unglaub
Hi, today I got my new Laptop. A Lenovo ThinkPad E485 with an AMD Ryzen CPU. I installed the latest OpenBSD -current on the device and a lot of stuff work very well. I used the traditional installation method without EFI. Only Wifi and Hybernate/Suspend don't work, but that was expected and is

Re: OpenBSD in qemu freezes randomly

2018-06-20 Thread Leo Unglaub
Hey, thank you very much for the link. I have forwarded it to the support staff at the datacenter. I hope they apply it very quickly. I let you know if this fixes the problem. Thanks and greetings Leo On 06/19/18 21:21, Kapetanakis Giannis wrote: They should try setting this on the host:

OpenBSD in qemu freezes randomly

2018-06-19 Thread Leo Unglaub
Hi, i have searched the list archive and found some similar reports but none of them found a solution for the problem. (at least not the threads i have found) I run some OpenBSD 6.3 instances in a virtual environment. The host is some unknown Linux distribution with qemu on it. After the

2 monitor with wsfb

2018-05-01 Thread Leo Unglaub
Hello List, i have a new graphics card in my desktop. Its a AMD Radeon RX 480. As far as I understand the specs this is a polaris GPU. I used wsfb because the normal radeon driver does not work yet with this modern graphics card. I installed OpenBSD (6.3 GENERIC.MP#19 amd64) in the UEFI mode

Re: IPv6 problem after 6.3 upgrade

2018-04-03 Thread Leo Unglaub
Hey, see "IPv6 broken on Hetzner.de vServer OpenBSD 6.3 / amd64" on bugs@ I'm pretty sure hetzner sets a static route to your link local address for the /64 they assign to you. Since the the link local address changes with RFC 7217 you blackhole the /64... you are right. It works fine when

Re: IPv6 problem after 6.3 upgrade

2018-04-03 Thread Leo Unglaub
Hi, Since you can reach your default gateway, but not "the outside world", the next step would be to try to see how far you can get. Use traceroute6 to see how for you get. Try a couple of different destinations and see if that makes a difference. Also, provide your routing table (the output

IPv6 problem after 6.3 upgrade

2018-04-03 Thread Leo Unglaub
Hello, i have a IPv6 problem since i upgraded to 6.3. I cannot reach other hosts anymore over IPv6. Over IPv4 everything works fine. I have read the part with RFC 7217 in the faq/upgrade63.html but as far as I understand it I am not affected by that. # ping6 google.com PING google.com

Re: Relinking unique kernel failed after syspatch

2018-03-19 Thread Leo Unglaub
Hey, On 03/20/18 05:43, Predrag Punosevac wrote: 1095 KB00:00 Installing patch 010_ahauth Relinking to create unique kernel... failed! I looked into /usr/share/compile/GENERIC.MP/relink.log but the only thing in there is: (SHA256) /bsd: FAILED

Relinking unique kernel failed after syspatch

2018-03-19 Thread Leo Unglaub
Hello, today I wanted to apply the latest patches on our servers. They all worked fine, only on one server where i was missing some previous patches as well it got an error from syspatch. # syspatch Get/Verify

Re: vmd: alpine-virt guest, clock synchronization issue

2017-10-15 Thread Leo Unglaub
Hey, On 10/14/17 21:01, x9p wrote: While running Alpine-virt 3.6.2 VM guest under OpenBSD 6.1 host, i noticed the clock frequency is 2x slower on the guest machine. This can be a problem for applications that relies on accurate time. Even after sync clock with ntpd inside alpine-virt guest, it

Re: the whole greylisting, spam filtering thing

2017-09-29 Thread Leo Unglaub
Hey, On 09/29/17 15:06, Markus Rosjat wrote: my boss is getting on my nerves that greylisting is basically out of date because of things like outlook.com and mails ending up delayed for ever. So the next logical step would be to deploy a tool like rspamd or spamassasin to examin mail content.

Re: after update imput/output error when I run terminal

2017-07-31 Thread Leo Unglaub
Hey, On 07/31/17 06:57, Krzysztof Strzeszewski wrote: I update openbsd 6.1-current end is error. When I update, when I run terminal imput/output error on xfce. after upgrading to a clang snapshot you have to force pkg_add to reinstall all packages on your computer. pkg_add -D installed -uV

Re: vmd: routing problem

2017-07-20 Thread Leo Unglaub
Hey, On 07/20/17 09:46, Denis Fondras wrote: Can you people see something that i might missed? The easy way would be enable forwarding, add a vether(4) on the host, bridge it with tap0 and configure it with an IP in the 136.243.186.160/29 subnet. Use that IP as the gateway in your VMs. i did

Re: vmd: routing problem

2017-07-20 Thread Leo Unglaub
Hey, On 07/20/17 13:05, Mischa Peters wrote: Can you ask them how they route the separate subnet to you? as far as i understand it they route the subnet on my main ip address. From there documentation: Newly assigned IPv4 subnets are statically routed on the main IP address of the server,

Re: vmd: routing problem

2017-07-20 Thread Leo Unglaub
Hey, On 07/20/17 06:25, Mike Larkin wrote: sysctl net.inet.ip.forwarding=1 ? I'm not a networking expert but I think your VM's subnet mask is wrong for the gateway you are trying to use. thank you for your response. I tryed it with net.inet.ip.forwarding being 1 and 0. Both don't work.

vmd: routing problem

2017-07-19 Thread Leo Unglaub
Hey friends, i am trying out vmd and I have a little problem getting networking going inside the guest machine. I am not sure if this is a problem in vmd or simply my misconfiguration. From my datacenter i got the following data: Main Server (OpenBSD GENERIC.MP#99 amd64)

Re: Best place for VM images

2017-07-18 Thread Leo Unglaub
Hey, Hey friends, what is the best/recommended place to store the vmm images. In man 5 vm.conf is an example with/var/vmm/, is this the best location? Also if /var/vmm is its own partition, what would be the best mount options for it. I would assume nodev, nosuid are good. Any

Best place for VM images

2017-07-17 Thread Leo Unglaub
Hey friends, what is the best/recommended place to store the vmm images. In man 5 vm.conf is an example with /var/vmm/, is this the best location? Also if /var/vmm is its own partition, what would be the best mount options for it. I would assume nodev, nosuid are good. Any recommendations?

Re: IPv6 Setup not working on Hetzner server

2016-12-02 Thread Leo Unglaub
Hey, On 12/02/16 13:14, Reyk Floeter wrote: This is a link-local address, you have to specify the interface scope id: $ cat /etc/mygate 144.76.102.193 fe80::1%em0 thanks for the hint. I fixed this but that alone still does not help me to send IPv6 data. Hetzner also needs to know your

IPv6 Setup not working on Hetzner server

2016-12-02 Thread Leo Unglaub
Hey friends, i have the exact same problem as Heiko had more than one year ago here on this mailinglist. See http://marc.info/?l=openbsd-misc=143231965324314=2 Sadly his temporary solution does not work for me so i have to bring this topic up again. I have a server at the german hoster

Re: Install OpenBSD on disks larger than 2TB

2016-08-05 Thread Leo Unglaub
Hey, Works for me: ~ $ sudo disklabel -p m sd2 # /dev/rsd2c: type: SCSI disk: SCSI disk label: SR RAID 1 duid: 7e4e73c2d1d85347 flags: bytes/sector: 512 sectors/track: 255 tracks/cylinder: 511 sectors/cylinder: 130305 cylinders: 44975 total sectors: 5860532576 # total bytes: 2861588.2M

Re: Install OpenBSD on disks larger than 2TB

2016-08-04 Thread Leo Unglaub
Hey, On 07/29/16 18:13, Noth wrote: OpenBSD can boot off UEFI & GPT since 5.9. Are you booting on MBR or UEFI? yes, thats true and it works fine. The problem here seams to be the raid 1. Booting from an Raid 1 with disks larger than 2 TB seams to be broken. Maybe its not intended to work,

Re: Install OpenBSD on disks larger than 2TB

2016-07-22 Thread Leo Unglaub
Hey, On 07/22/16 10:29, Alexander Hall wrote: How did you install the system? If you didn't already, use the installer and point it at the softraid disk (likely sd2). If that doesn't help, please show what happens. "i am unable to boot" tells us nothing. i used the installer for installing

Install OpenBSD on disks larger than 2TB

2016-07-21 Thread Leo Unglaub
Hey, i am using OpenBSD with two harddrives. Both of them are 2 TB and i put them in a Raid 1 (mirroring) using softraid0. It works perfect, the system boots from the raid 1 and runs perfectly. Sadly now 2 TB is not enought disc space anymore and i got some new 4TB drives. I suceeded in

Re: softraid0: sdx has unsupported sector size (4096)

2016-05-15 Thread Leo Unglaub
Hey, On 05/15/16 12:34, Daniel Jakots wrote: It's in -current, see the commit [0] and the warning about softraid metadata change [1]. big thanks for the information. I must have missed it. Greetings Leo

softraid0: sdx has unsupported sector size (4096)

2016-05-15 Thread Leo Unglaub
Hey friends, my new external HDD has a sector size of 4096: # disklabel -h sd8 # /dev/rsd8c: type: SCSI disk: SCSI disk label: My Passport 0827 duid: 9210ccc858d72f52 flags: bytes/sector: 4096 sectors/track: 63 tracks/cylinder: 255 sectors/cylinder: 16065 cylinders: 45599 total sectors:

Re: bioctl: unable to read passphrase

2016-05-15 Thread Leo Unglaub
Hey, On 05/15/16 09:23, Maurice McCarthy wrote: I believe the installation ramdisk has limited space so you likely used it all up with "MAKEDEV all". It is limited to install on very old systems. thanks for the answer. That actually would explain my problem! Maybe the bioctl error message

Re: bioctl: unable to read passphrase

2016-05-14 Thread Leo Unglaub
Hey, On 05/14/16 15:19, Stuart Henderson wrote: Your initial problem report was missing a lot of important information - this is the first mention of it only happening on the install iso, and you didn't mention what it is that you're running (release? snapshot? which date? which arch?) i am

Re: bioctl: unable to read passphrase

2016-05-14 Thread Leo Unglaub
Hey, On 05/13/16 21:08, Ted Unangst wrote: you might try ktrace, since bioctl is not being very helpful here. the problem is that i dont have ktrace available on the install iso. I tryed to reproduce it on my OpenBSD desktop but there i dont have that problem. I looked up the part in the

bioctl: unable to read passphrase

2016-05-13 Thread Leo Unglaub
Hey friends, i have two identical ssd drives in my laptop. sd0 and sd1. I created a Raid 1 (mirroring) on them resulting in sd3. I used the following command: bioctl -c 1 -l sd0a,sd1a softraid0 On the resulting disk i created sd3b with 2 GB Swap and sd3a with 100GB with a type RAID. Now