Re: No 4.2 or 4.3 Love

2008-05-21 Thread Mitch Parker
Dontek, You really need to go download, burn, and install the latest Firmware ISO (8.00) from the HP site. There are major updates provided there for multiple system components due to HP _really_ messing up on supplying decent firmware for their server platforms. Thankfully HP puts it all on

Re: FIPS 140-2

2008-03-13 Thread Mitch Parker
to get it certified. It doesn't matter what OS you run. Bad code is universal, and completely invalidates any security certification of the underlying system. Mitch -Original Message- From: Theo de Raadt [mailto:[EMAIL PROTECTED] Sent: Thursday, March 13, 2008 12:02 AM To: Mitch Parker Cc

Re: FIPS 140-2

2008-03-12 Thread Mitch Parker
Ryan, You're right about the entire package needing to be FIPS 140-2 certified. Also, the other key component here is what algorithms/components the system is FIPS 140-2 certified for, such as 3DES, TLS, SSL, RNG, or AES. However, if you're attempting to do CA on a system, keep in mind that the

Re: Merging 2 ADSL lines

2007-12-27 Thread Mitch Parker
L.V., You don't need bonding for incoming traffic :). PF will take care of the outbound load-balancing for you (and there's an example pf.conf that addresses this in Absolute OpenBSD) if configured correctly. If you have DNS set up right, you don't need bonding for incoming traffic. That's

Re: Merging 2 ADSL lines

2007-12-27 Thread Mitch Parker
Subject: Re: Merging 2 ADSL lines * Mitch Parker [EMAIL PROTECTED] [2007-12-27 18:34]: You don't need bonding for incoming traffic :). PF will take care of the outbound load-balancing for you (and there's an example pf.conf that addresses this in Absolute OpenBSD) if configured correctly

Re: Troubleshooting PCMCIA modem 3Com 3CXM756

2007-06-13 Thread Mitch Parker
Hello, I have one of these cards. It won't work unless you use the 3Com drivers on Windows, and even then it doesn't work right. If you use a standard US Robotics external modem, preferably a Sportster, or even possibly a Zoom PCMCIA modem, they should work. Mitch -Original Message-

Re: OpenBSD PF Book

2006-03-26 Thread Mitch Parker
Danny, Another book which I highly recommend as a corollary is Absolute OpenBSD. I have used the pf section in that book multiple times as a reference. Mitch On 3/26/06 3:09 PM, Qwerty [EMAIL PROTECTED] wrote: Thank you to everyone for answering my question, I have indeed gone and

Re: openbsd and the money -solutions

2006-03-23 Thread Mitch Parker
Some of us: 1. Work for companies which want you to have a physical CD around, even if it is available via FTP. 2. Buy CD's (I have to preorder 3.9, and I will). 3. Put the stickers on our machines and servers. 4. Work on machines which may not be connected to the Internet. 5. Don't have the

Re: Small office with BSD blueprint

2006-03-20 Thread Mitch Parker
Smith, I'd highly recommend the HP JetDirect in a small printer like a Laserjet 2x00 series. With 5-10 users and enough RAM in the printer, users won't even notice. They also seem to work well with whatever we throw at them, including OpenBSD (I'll be putting a LJ3500 on the network with an

Re: pf.conf to log specific but block all

2006-02-24 Thread Mitch Parker
Dan and Harry, Agreed. A consumer-class Netgear device will not be the best choice, as it's got an underpowered CPU and has more than enough issues with its configuration. While many SOHO routers can output to syslog, unless you spend the money for a higher-end product like a Juniper Netscreen,

Re: syslogd question

2006-02-10 Thread Mitch Parker
Craig, I'm going to second this, even though I don't work at an ISP (however, I do work with large amounts of syslog data). If you want to keep things organized, it's better to keep the syslog files organized by service. When you've got data coming from a large amount of servers, you want to:

Re: Oracle, anyone?

2005-12-04 Thread Mitch Parker
Josh, Agreed on all points. Oracle also likes to tie releases of their database to specific versions of Linux, not just platform types. I had that issue with 8i Release 2 on Red Hat. However, Oracle does have instructions available on their Metalink support site for installing on FreeBSD.