Problem with isakmpd, PAYLOAD_MALFORMED and packet lengths

2009-01-28 Thread Martín Coco
Hi misc, I've been trying to configure the following IPSec client using certificates, but with no success. I want to use it a roadwarrior setup: http://www.ncp-e.com/en/vpn-szenarien-produkte/vpn-produkte/secure-entry-client.html Of course, I'm using isakmpd on the OpenBSD side (4.3). I did

Re: Hardware recommendation for firewalls (more than 4 NICs)

2008-07-14 Thread Martín Coco
Thanks! Have you tried the quad nics on those Dells? We do have a couple of R200s, 860s and 850s running with 2 dual port cards no problem, but we have never tried the quad ports. Torsten Frost escribis: On Fri, Jul 11, 2008 at 11:47 PM, Martmn Coco [EMAIL PROTECTED] wrote: Hi misc, I'm

Re: Hardware recommendation for firewalls (more than 4 NICs)

2008-07-14 Thread Martín Coco
First of all, thanks to all of you that have replied. I've thought of adding VLANs, and will be doing it in the future maybe, but in our current situation, that's not possible; not all the switches support this option, and there's still some concern about security implications (specially in

Hardware recommendation for firewalls (more than 4 NICs)

2008-07-11 Thread Martín Coco
Hi misc, I'm currently looking for hardware alternatives for firewalls that should have more than four NICs. Currently we are buying R200s from Dell, but we have the 4 NIC limitation. We could tell Dell to install a quad port NIC (in addition to the two-port onboard card), but I haven't

Dell R200

2008-04-25 Thread Martín Coco
Hi misc, I'll be buying a couple of Dell R200 Rackmount servers to use as firewalls/routers. I found this thread in the archives about it: http://marc.info/?l=openbsd-miscm=120167827217058w=2 And it seems to be working with snapshots. But my question is: will it be supported by the 4.3

Re: kernel_map out of virtual space panic on different hardware within hours of difference

2008-01-11 Thread Martín Coco
That's interesting indeeed. We are running stable, but I'm not sure how frequently we are updating it. And it seems like this one is a somewhat recent patch, so maybe it's not been included on that install. I'm going to try it and let you know. Thanks for your advice and sorry for not checking

kernel_map out of virtual space panic on different hardware within hours of difference

2008-01-10 Thread Martín Coco
Hi misc, I'm having frequent crashes on OpenBSD 4.2 (stable) on different machines with the following error: panic: pmap_pinit: kernel_map out of virtual space! Specifically, we have two carped firewalls (running pfsync) that showed the same error with a difference of around 8 hours. First the

IP-IP with ipsecctl problem

2006-10-25 Thread Martín Coco
Hi, I am trying to build IP-IP flows with the new ipsecctl tool. I have two OpenBSD 4.0 snapshots running in different vmware virtual machines, attached to the same network. Box 1 has the following configuration: fw_1 = 10.0.0.1/32 fw_2 = 10.0.0.2/32 flow ipip from $fw_1 to $fw_2 ipip

Re: IPSec routing problem when using UDP

2006-09-21 Thread Martín Coco
Yes, my bad. I didn't include any other information because I didn't think it could be version specific. We are using OpenBSD 3.8, and OpenVPN 2.0.6 (from packages). You are right about IPSec not routing. What I meant is how the configured flows are being chosen/matched so that the OS routes the

IPSec routing problem when using UDP

2006-09-20 Thread Martín Coco
Hello misc! We are experiencing what seems to be a routing problem when using ipsec flows and udp traffic. We are using OpenVPN for the employees to connect from the outside world to our network. It is configured to use UDP. At the same time, this box has an ipsec tunnel configured to talk

Re: Problems with dvd+rw-tools and UDF

2006-06-05 Thread Martín Coco
Ok, I've just upgraded to OpenBSD 3.9, but I'm still having the same issues. Martmn Coco escribis: Thanks for your reply. Yes, I have checked this. I didn't associate it with my problem as I am not getting blue kernel messages, the disc IS mounted ok, and I'm also not seeing negative numbers

Problems with dvd+rw-tools and UDF

2006-06-04 Thread Martín Coco
Hi misc, I have, apparently, some sort of problem when burning DVDs with dvd+rw-tools-5.21.4.10.8 using UDF on OpenBSD 3.8. The DVDs are burned, but when I check them with tar (to list its contents for example) I get invalid header errors. Also, when checking the txt index file I also

Re: Booting very slow when using CompactFlash adapters

2005-12-01 Thread Martín Coco
Nick, First of all, thanks for all your input! My comments below: Nick Holland escribis: Martmn Coco wrote: Hi there, We are beginning to do some tests with Compact Flash IDE adapters and OpenBSD 3.8. We installed the OpenBSD 3.8 using a SanDisk 1.0GB CompactFlash on a Pentium 4 (dmesg

Booting very slow when using CompactFlash adapters

2005-11-30 Thread Martín Coco
Hi there, We are beginning to do some tests with Compact Flash IDE adapters and OpenBSD 3.8. We installed the OpenBSD 3.8 using a SanDisk 1.0GB CompactFlash on a Pentium 4 (dmesg at the end of this message). The installation finished flawlessly. But when booting, it seems to take ages to