Re: How to make ProtonMail compatible with misc@ Re: Do not give-up on marketing

2017-12-06 Thread Rupert Gallagher
everyone wants. Yeah you can make the misc@ ML server filter away > emails with hostile formatting. >>On 3 Dec 2017, at 08:46, Rupert Gallagher > r...@protonmail.com wrote: >>Finally, the truth behind the aggressive > behaviour against me. Some of you cannot read protonmail p

Re: TRIM on SSD

2017-12-05 Thread Rupert Gallagher
Why? Sent from ProtonMail Mobile On Tue, Dec 5, 2017 at 16:29, Juan Francisco Cantero Hurtado wrote: > On Tue, Dec 05, 2017 at 02:26:43AM -0500, Rupert Gallagher wrote: > A > production obsd is serving 50GB worth of NFS shares and hourly backups on two > ssds since August,

TRIM on SSD

2017-12-04 Thread Rupert Gallagher
A production obsd is serving 50GB worth of NFS shares and hourly backups on two ssds since August, and is still going strong at 550MBps over measured 550--950Mbps LAN links. The same boots and runs the OS from a pSLC SD with Phison controller. The ssds have a 5year warrantee, and we are doing o

Re: Chip cheaper than chips

2017-12-04 Thread Rupert Gallagher
50% on pSLC On Mon, Dec 4, 2017 at 12:41, Kevin Chadwick wrote: > On Mon, 04 Dec 2017 06:22:17 -0500 > > > > > We like booting from the SD, but > they have none. > > > > How do you manage flash wear? Set up mfs all over the > place? I much > > prefer and need SATA anyway. > > > This might have

Re: Chip cheaper than chips

2017-12-04 Thread Rupert Gallagher
Article on how to disable the management engine, if you have it and are afraid of it. http://blog.ptsecurity.com/2017/08/disabling-intel-me.html?m=1 Sent from ProtonMail Mobile On Sun, Dec 3, 2017 at 19:52, Brian McCafferty wrote: > On 12/03/17 03:23, Rupert Gallagher wrote: > The

Re: Chip cheaper than chips

2017-12-04 Thread Rupert Gallagher
industrial SDHC with pSLC https://swissbit.com/products/nand-flash-products/cards/sd-memory-cards/ On Mon, Dec 4, 2017 at 11:05, Kevin Chadwick wrote: > On Sat, 02 Dec 2017 19:03:05 -0500 > We like booting from the SD, but they > have none. How do you manage flash wear? Set up mfs all over the

Re: Do not give-up on marketing

2017-12-03 Thread Rupert Gallagher
Finally, the truth behind the aggressive behaviour against me. Some of you cannot read protonmail posts *because* you read the list through a mail archive with a substandard implementation of mime encoding. Well, fuck you and your mail archive. Upgrade, or die slowly. Sent from ProtonMail Mobil

Re: Chip cheaper than chips (ME)

2017-12-03 Thread Rupert Gallagher
Article on how to disable the management engine, if you have it and are afraid of it. http://blog.ptsecurity.com/2017/08/disabling-intel-me.html?m=1 > @openmailbox.org>

Re: Chip cheaper than chips

2017-12-03 Thread Rupert Gallagher
The bug on Atom C2000 was solved in the new C3000 series. It was a minor bug anyway. I have no evidence that the management engine is part of the new chip. It is an expensive extension that Intel would not include for free. Besides, if available, I think I would use it! Sent from ProtonMail Mo

Re: Chip cheaper than chips

2017-12-02 Thread Rupert Gallagher
free 10/40gbit networking). > On 3 December 2017 at 08:54, Rupert Gallagher wrote: > Do you have any > reference on Intel M.E. being present on Atom C3308? > > Sent from ProtonMail > Mobile > > On Sat, Dec 2, 2017 at 20:14, Kevin Chadwick wrote: > >> On Sat, > 0

Re: Chip cheaper than chips

2017-12-02 Thread Rupert Gallagher
Do you have any reference on Intel M.E. being present on Atom C3308? Sent from ProtonMail Mobile On Sat, Dec 2, 2017 at 20:14, Kevin Chadwick wrote: > On Sat, 02 Dec 2017 03:11:23 -0500 > IME (vPro) is included in Xeon and Core > chips. Atom is clear of it. > Just checked. Perhaps the older on

Re: Do not give-up on marketing

2017-12-02 Thread Rupert Gallagher
I am afraid I cannot do that. The client app does not include a control panel option. There also seems to be a problem with mime handling by the list's own software. There is nothing I can do. :-( Sent from ProtonMail Mobile On Sat, Dec 2, 2017 at 19:12, Mihai Popescu wrote: >> Q2xpY2sgb24g

Do not give-up on marketing

2017-12-02 Thread Rupert Gallagher
Click on stickers. https://www.parallella.org/buy/ Do the same and be happy.

Re: Chip cheaper than chips

2017-12-02 Thread Rupert Gallagher
grips with AMD's > Platform Security Processor rubbish, but at least that hasn't got any known > exploits, and the firmware blob for it appears much smaller. On Fri, 01 Dec > 2017 14:48:59 -0500 Rupert Gallagher wrote: > I am drooling for an Intel Atom > C3308. Two

Re: Chip cheaper than chips

2017-12-02 Thread Rupert Gallagher
27;s > Platform Security Processor rubbish, but at least that hasn't got any known > exploits, and the firmware blob for it appears much smaller. On Fri, 01 Dec > 2017 14:48:59 -0500 Rupert Gallagher wrote: > I am drooling for an Intel Atom > C3308. Two cores, but who cares? H

Chip cheaper than chips

2017-12-01 Thread Rupert Gallagher
I am drooling for an Intel Atom C3308. Two cores, but who cares? Higher context switch: so what? It is faster than quad-core pcengines! It supports m.2, to finally replace mPCI and mSATA with a single universal connector. It has both aes-ng and qat, to make vpn faster than fast! It costs 32$!!!

Re: Lanner NCA-4010D

2017-11-30 Thread Rupert Gallagher
Do you have a dmesg for nca-1510? http://www.lannerinc.com/products/network-appliances/x86-desktop-network-appliances/nca-1510 Besides, how did you buy them? Sent from ProtonMail Mobile On Fri, Dec 1, 2017 at 05:24, Daniel Ouellet wrote: > Just for the records as I know I was looking to find

Re: OpenBSD Puffy Stickers

2017-11-30 Thread Rupert Gallagher
Don't give up on marketing. Sent from ProtonMail Mobile On Thu, Nov 30, 2017 at 15:02, Ingo Schwarze wrote: > Hi, Jay Williams wrote on Wed, Nov 29, 2017 at 11:34:21AM -0600: > P.S. Does > anyone know why the official OpenBSD store doesn't sell > stickers? I bet > they'd be a big seller! Peop

Re: Odd problem with interfaces

2017-11-29 Thread Rupert Gallagher
Aargh! What a day https://media.giphy.com/media/AYcqmj0cUar9S/giphy.gif Sent from ProtonMail Mobile On Wed, Nov 29, 2017 at 16:13, Jiri B wrote: > On Wed, Nov 29, 2017 at 09:56:38AM -0500, Rupert Gallagher wrote: > I ran out > of ideas on the following problem. > > An

Re: Odd problem with interfaces

2017-11-29 Thread Rupert Gallagher
https://goo.gl/images/eEeb6 Sent from ProtonMail Mobile On Wed, Nov 29, 2017 at 16:13, Jiri B wrote: > On Wed, Nov 29, 2017 at 09:56:38AM -0500, Rupert Gallagher wrote: > I ran out > of ideas on the following problem. > > An obsd server has tree ethernet > interfaces, ea

Odd problem with interfaces

2017-11-29 Thread Rupert Gallagher
I ran out of ideas on the following problem. An obsd server has tree ethernet interfaces, each with its own IP address: > cat /etc/hostname.* inet 192.168.1.2 255.255.255.0 192.168.1.255 mtu 9014 description "em0: MODEM/ROUTER" inet 192.168.1.3 255.255.255.0 192.168.1.255 mtu 9014 description "em

Re: late ro remount to permit reorder_kernel on 6.2

2017-11-21 Thread Rupert Gallagher
/usr can be mounted ro by moving all variable stuff to /var. This is standard practice on embedded systems, and is also standard practice on any unix system whose authors actually remember the meaning and purpose of /var. Sent from ProtonMail Mobile On Sun, Oct 29, 2017 at 19:00, Theo de Raadt

Re: The "like" factor

2017-11-19 Thread Rupert Gallagher
Yes, this may well be the problem: easier to understand if we speak of teddy bear, much harder if we speak of software upgrades! And yet, here we are... Sent from ProtonMail Mobile On Mon, Nov 20, 2017 at 02:17, wrote: > I wrote: > > In that case, I'd interpret the beancounter's reponse as 'ha

Re: The "like" factor

2017-11-19 Thread Rupert Gallagher
LibreOffice has the *old* Microsoft Office GUI, which is what the users wanted. The change was introduced to help them keeping the old workflow with the old GUI while meeting the demands of automated software deployment, relevant ISO 27001/2 policies, and yes, get past the Microsoft licencing ni

Re: The "like" factor

2017-11-19 Thread Rupert Gallagher
e them the training and resources > they need to get their workflows back. They just want to do their jobs, and > they don't care if you dislike the tools they've grown comfortable with. > > On Nov 19, 2017 4:44 PM, "Rupert Gallagher" wrote: > >> We nerds ar

Re: The "like" factor

2017-11-19 Thread Rupert Gallagher
Well, people hated Microsoft's new GUIs, and wanted the old windows xp/7 back, which we delivered. They are happy now, and so do we. They also hated the new GUI with the latest Office suite, so they kept using the older version. LibreOffice has the Microsoft Office GUI, so they are happy now, a

Re: The "like" factor

2017-11-19 Thread Rupert Gallagher
We nerds are the other side of the problem, because we are apparently unable to understand their problem. We have little simpathy for those who frown without evidence of an actual problem. Perhaps this is an example that humans still find it comfortable to "follow and go along together", like a

The "like" factor

2017-11-19 Thread Rupert Gallagher
I bet none of you dared this much in "change management". The accountant walks in to a new work-station. The initial excitement is followed by a quiet "no windows 10/7/xp? and a less quiet "no windows office?". That's right: new office politics, we are through with Microsoft, move on with your d

Re: Bad network performance on apu2c4

2017-11-10 Thread Rupert Gallagher
New speed record: 980Mbps with a heavy loaded MacMini. Sent from ProtonMail Mobile On Fri, Nov 10, 2017 at 01:44, Ken Withee wrote: > It’s really awesome! Approaching gig! > > Sent from ProtonMail Mobile > > On Thu, Nov 9, 2017 at 11:40 AM, Rupert Gallagher wrote: > >&

Re: Bad network performance on apu2c4

2017-11-09 Thread Rupert Gallagher
I forgot, the switch must be compatible with jumbo frames. If you have a managed switch, you need to enable it. Sent from ProtonMail Mobile On Thu, Nov 9, 2017 at 14:58, Rupert Gallagher wrote: > The test had PF, NFS, and other services up. > The mtu/JumboPacket on both nics is 9K bit.

Re: Bad network performance on apu2c4

2017-11-09 Thread Rupert Gallagher
The test had PF, NFS, and other services up. The mtu/JumboPacket on both nics is 9K bit. The wires are class 5e. The switch is a 1Gbps cisco. Sent from ProtonMail Mobile On Thu, Nov 9, 2017 at 08:19, Christer Solskogen wrote: > On Thu, Nov 9, 2017 at 1:42 AM, Rupert Gallagher wrote: >

Re: NFS leading to D-state processes

2017-11-06 Thread Rupert Gallagher
:) > @protonmail.com> @protonmail.com>

Re: NFS leading to D-state processes

2017-11-06 Thread Rupert Gallagher
.11: as people complained hard, the command was modified to ask: "are you sure?" Sent from ProtonMail Mobile On Sun, Nov 5, 2017 at 15:29, Rupert Gallagher wrote: > More info... > > obsd mounted the nfs folder on /mnt/nas, there is an unknown problem on the > io with the n

Re: NFS leading to D-state processes

2017-11-05 Thread Rupert Gallagher
e and well. After mounting /mnt/nas, "ls /mnt/backup" locks the console as well. ---The evolution of ICT: hardware, software, crapware, abandonware. Sent from ProtonMail Mobile On Sat, Nov 4, 2017 at 13:40, Rupert Gallagher wrote: > NFS case study. - obsd server mounts LAN resource via

Re: Bad network performance on apu2c4

2017-11-04 Thread Rupert Gallagher
Look, I know what I am talking about. I have an apu that does what I said using negligible cpu load. And there is nothing fancy with it. Sent from ProtonMail Mobile On Sat, Nov 4, 2017 at 17:53, Chris Cappuccio wrote: > Rupert Gallagher [r...@protonmail.com] wrote: > > You seem to

NFS leading to D-state processes

2017-11-04 Thread Rupert Gallagher
NFS case study. - obsd server mounts LAN resource via NFS - the NFS server is a NAS running Alt-F firmware version 1.0 with working ssh but without sudo; - the NFS link does not respond - all obsd related processes hang into D state, including command like ls, df, and reboot. - kill -9 does not

Re: Bad network performance on apu2c4

2017-11-04 Thread Rupert Gallagher
On Sat, Nov 4, 2017 at 01:51, Chris Cappuccio wrote: > Rupert Gallagher [r...@protonmail.com] wrote: >>> Out of curiosity, I just tested an apu2c4 server with obsd 6.1, against a >>> windows 10 client on LAN with a 1Gbit CISCO switch in between and 9K MTU on >>>

Re: Bad network performance on apu2c4

2017-11-03 Thread Rupert Gallagher
openbsd "current"... is it 6.1 or 6.2? if 6.2, was it better with 6.1? From a later message of yours, you mention ISP upload, but the OP did not mention it. Are you testing on LAN, WAN or internet? Out of curiosity, I just tested an apu2c4 server with obsd 6.1, against a windows 10 client on L

Re: protonmail.com broken on OpenBSD 6.2-Stable with Firefox

2017-11-02 Thread Rupert Gallagher
Try FF57 (beta). It is faster than chrome. Sent from ProtonMail Mobile On Thu, Nov 2, 2017 at 18:54, Ryan Freeman wrote: > On Thu, Nov 02, 2017 at 12:45:54PM -0400, tec...@protonmail.com wrote: > > Thanks for sharing a much better fix for this issue. > > I wonder what > consequences this opti

Re: protonmail.com broken on OpenBSD 6.2-Stable with Firefox

2017-11-02 Thread Rupert Gallagher
Try this... javascript.options.asmjs: true Sent from ProtonMail Mobile On Wed, Nov 1, 2017 at 17:32, tec...@protonmail.com wrote: >> Hello, > > Can't get to the login page on FF, just see a never ending loop >> of 'Loading Protonmail...' > > Damn frustrating. I can confirm this has >> happe

Re: CUPS and AVAHI (bloatware)

2017-10-30 Thread Rupert Gallagher
-of-thread. Sent from ProtonMail Mobile On Thu, Oct 26, 2017 at 1:24 PM, Rupert Gallagher wrote: > It is well known that cups does not need avahi. > > Avahi is an option, it requires dbus, which requires X11. If you have a > server with limited resources and without X11, you cannot

Re: CUPS and AVAHI (bloatware)

2017-10-30 Thread Rupert Gallagher
noth --> both Sent from ProtonMail Mobile On Mon, Oct 30, 2017 at 11:36 AM, Rupert Gallagher wrote: >> being critical of decisions made > You don't get to make the decisions, >> since you aren't doing the work I can do the work. As a matter of fact, I >> b

Re: CUPS and AVAHI (bloatware)

2017-10-30 Thread Rupert Gallagher
+1 Sent from ProtonMail Mobile On Mon, Oct 30, 2017 at 6:43 AM, gwes wrote: > The last time AVAHI got installed on one of my systems the installer started > it immediately. Avahi then proceeded to scribble on that system's network > configuration and confuse other systems on that subnet. I wo

Re: CUPS and AVAHI (bloatware)

2017-10-30 Thread Rupert Gallagher
> being critical of decisions made > You don't get to make the decisions, since you aren't doing the work I can do the work. As a matter of fact, I build my servers from scratch, from the firmware all the way up to the automatic configuration of clients. It is hell, but I get what I need, and

Re: CUPS and AVAHI (bloatware)

2017-10-30 Thread Rupert Gallagher
Ingo, we must not install 100MB of unwanted optional software. Since when OpenBSD joined the bandwagon of bloatware? Sent from ProtonMail Mobile On Sun, Oct 29, 2017 at 9:26 PM, Ingo Schwarze wrote: > Hi, gwes wrote on Sun, Oct 29, 2017 at 03:40:48PM -0400: > On 10/26/17 07:24, &g

Re: Fail2ban alternative for OpenBSD

2017-10-28 Thread Rupert Gallagher
Note that PF cannot discriminate between legitimate and abusive multiple connections from same cidr. If you whitelist the cidr of a mobile network, to avoid banning yourself on port 993, you also whitelist bruteforce attacks from the same cidr. Sent from ProtonMail Mobile On Sun, Oct 29, 2017

CUPS and AVAHI (bloatware)

2017-10-26 Thread Rupert Gallagher
It is well known that cups does not need avahi. Avahi is an option, it requires dbus, which requires X11. If you have a server with limited resources and without X11, you cannot install the present cups package. Please remove cups's dependency on avahi.

Re: chronium ports

2017-10-18 Thread Rupert Gallagher
Like openbsd samba requiring x-windows library? I dropped debian and ubuntu because of their bloatware, long ago. Chrome should be pruned of all google hooks before entering openbsd... Sent from ProtonMail Mobile On Tue, Oct 17, 2017 at 10:38 PM, Stuart Henderson wrote: > On 2017-10-16, Tuyos

Re: Security question / idea

2017-10-17 Thread Rupert Gallagher
I have a similar problem with remote systems on cloud farms. You cannot touch the firmware. You can logon to admin panel via internet browser, boot your instance from there, interact with its console, enter the fde password. All this is visible to the cloud farmers. Ideally, openbsd's boot sequ

Re: the whole greylisting, spam filtering thing

2017-10-01 Thread Rupert Gallagher
Spammers keep trying, from the same IPs, for days here, so graylisting is useless for us. On SA and other things that require training, this is a nice story for you. A client received an average of 60 spam items per day on his own inbox alone. He trusted Kasperski, was confident on the accounta

Re: ECDH

2017-08-30 Thread Rupert Gallagher
> The above is jumbled because your mail client is BROKEN and top-posts, even > when replying to your own posts. If it isn't worth your effort to fix that, > it might not be worth the effort of those who might reply to actually respond. My e-mail client is just fine. It is the mailing-list soft

Re: ECDH

2017-08-29 Thread Rupert Gallagher
29, 2017, at 2:25 PM, Rupert Gallagher wrote:@protonmail.com> > @protonmail.com> >https://www.ssllabs.com/ssltest/viewClient.html?name=Firefox&version=53&platform=Win%207&key=1...@protonmail.com> @centurylink.net> @protonmail.com>

Re: ECDH

2017-08-29 Thread Rupert Gallagher
key-chain > however Firefox returns cipher suite errors Regards Patrick > On Aug 29, > 2017, at 2:25 PM, Rupert Gallagher wrote: > > > https://www.ssllabs.com/ssltest/viewClient.html?name=Firefox&version=53&platform=Win%207&key=142 > > > Sent from ProtonMail Mob

Re: ECDH

2017-08-29 Thread Rupert Gallagher
t hashing an appropriate algorithm is > becoming non standardized in the event that the certificate is not a trusted > root. Regards Patrick > On Aug 29, 2017, at 8:23 AM, Rupert Gallagher wrote: > > >> Clean up the EC key/curve configuration handling. We no longer support > ECD

Re: ECDH

2017-08-29 Thread Rupert Gallagher
... the description is unclear (to me). Is it an improvement on EC support in ... httpd? libressl? Is ECDHE still supported? I do not want automatic selection of the curve. Not all curves are safe, and I need to select them. Sent from ProtonMail Mobile On Tue, Aug 29, 2017 at 3:23 PM, Rupert

ECDH

2017-08-29 Thread Rupert Gallagher
> Clean up the EC key/curve configuration handling. We no longer support ECDH > and ECDHE can be disabled by removing ECDHE ciphers from the cipher list. As > such, permanently enable automatic EC curve selection and generation, > effectively disabling all of the configuration knobs. https://ww

Re: gmail and hotmail blocking mail sent from my IP

2017-08-09 Thread Rupert Gallagher
The dns still fails RFC1912 (ptr). Sent from ProtonMail Mobile On Wed, Aug 9, 2017 at 6:39 PM, Walter Alejandro Iglesias wrote: > Hello Rupert, In article you wrote: > > https://www.dnsinspect.com/roquesor.com/10171765 Try the link again. The > reason it showed false results was because dnsi

protonmail on misc@openbsd.org

2017-08-09 Thread Rupert Gallagher
A note to postmaster on the problem of folded quoted text and code in mime-attachment. It turns out that other mailing lists do not fold. The problem sems local to your list management software. Sent from ProtonMail Mobile

Re: gmail and hotmail blocking mail sent from my IP

2017-08-09 Thread Rupert Gallagher
We reject tons of junk from static ISP-branded IPs with a broken or absent DNS. If one wants to serve their own email from their static IP, they should have the decency to serve their own authoritative DNS, instead of blaming the ISP or writing philosophical crap on mailing lists. Sent from Pro

Re: gmail and hotmail blocking mail sent from my IP

2017-08-06 Thread Rupert Gallagher
https://www.dnsinspect.com/roquesor.com/10171765 Sent from ProtonMail Mobile On Sun, Aug 6, 2017 at 4:51 PM, Walter Alejandro Iglesias wrote: > Hello everyone, I was using smtpd(8) (static IP and FQDN resolving direct and > reverse) for a year without problems. Today sending from my server (fr

Re: Helping out

2017-08-02 Thread Rupert Gallagher
Although the list expects plain text (without motivation), the same list does not explicitly ban base64 encoding, both in writing and de-facto. Those who complain should rather accept the fact and update their clients. If the list shall introduce an explicit ban of base64 encoding, then the list

Re: usb RTC

2017-07-23 Thread Rupert Gallagher
> https://www.adafruit.com/product/3013 > http://ahsoftware.de/usb-rtc/ Sent from ProtonMail Mobile > @oat.com>

Re: usb RTC, was Re: octeon port, ubiquity edgerouter

2017-07-22 Thread Rupert Gallagher
Dirty cheap. https://www.adafruit.com/product/3013 Sent from ProtonMail Mobile On Sat, Jul 22, 2017 at 8:33 PM, gwes wrote: > On 07/22/17 12:10, Theo de Raadt wrote: > > I'd really like if someone could > find a USB RTC clock, which is a viable > affordable product which we can > then create g

Re: OT: protonmail mail body

2017-07-20 Thread Rupert Gallagher
e out of business. If your email server rejects mime messages, you are out of business. Sent from ProtonMail Mobile On Thu, Jul 20, 2017 at 10:22 AM, Paul de Weerd wrote: > On Thu, Jul 20, 2017 at 02:46:02AM -0400, Rupert Gallagher wrote: | Out of > curiosity, I just checked what all

Re: OT: protonmail mail body

2017-07-19 Thread Rupert Gallagher
Out of curiosity, I just checked what all the fuss is about. It turns out that someone reads mail with a non-RFC compliant client, and thus fails to read mime parts. Screw it, update your client. The other problem seemed to be with the list archive. It turns out that at least one archive has no

Re: OT: protonmail mail body

2017-07-12 Thread Rupert Gallagher
everybody. On wrapping, protonmail does it by iself, and is a real problem. There is no user setting to solve this problem. It is a bug. Sent from ProtonMail Mobile On Wed, Jul 12, 2017 at 11:30 AM, Theo Buehler wrote: > On Wed, Jul 12, 2017 at 04:54:24AM -0400, Rupert Gallagher wrote: &

Re: OT: protonmail mail body

2017-07-12 Thread Rupert Gallagher
+1 On Wed, Jul 12, 2017 at 10:09 AM, Alarig Le Lay wrote: > On mer. 12 juil. 10:37:59 2017, Mihai Popescu wrote: > Hello, > > I preffer > to keep it calm, but some people on the list are using > protonmail and their > mails are impossible to read directly on the > list. I think they are > des

Re: OT: protonmail mail body

2017-07-12 Thread Rupert Gallagher
Can you read me? Sent from ProtonMail Mobile On Wed, Jul 12, 2017 at 9:37 AM, Mihai Popescu wrote: > Hello, I preffer to keep it calm, but some people on the list are using > protonmail and their mails are impossible to read directly on the list. I > think they are destroying the list, maybe t

Re: How do you do "family remote support"?

2017-07-11 Thread Rupert Gallagher
Never heard of port mapping on modem/routers? Sent from ProtonMail Mobile On Tue, Jul 11, 2017 at 11:33 PM, Kurt H Maier wrote: > On Tue, Jul 11, 2017 at 05:22:29PM -0400, Rupert Gallagher wrote: > Never > heard of whatismyip.org? > Sent from ProtonMail Mobile Never heard of NAT?

Re: How do you do "family remote support"?

2017-07-11 Thread Rupert Gallagher
Never heard of whatismyip.org? Sent from ProtonMail Mobile On Tue, Jul 11, 2017 at 9:22 PM, Karel Gardas wrote: > On Tue, Jul 11, 2017 at 9:00 PM, Rupert Gallagher wrote: > Never heard of > VNC? but for this IIRC you need to know remote IP which OP told is "too > complicate

Re: How do you do "family remote support"?

2017-07-11 Thread Rupert Gallagher
Never heard of VNC? Sent from ProtonMail Mobile On Tue, Jul 11, 2017 at 8:39 PM, Niels Kobschätzki wrote: > Hi, I am pondering to install OpenBSD on my main machine. But I just found a > possible showstopper: family remote support Right now I am using Teamviewer > to connect from my Linux-mac

Re: OpenBSD IPSec setup

2017-06-30 Thread Rupert Gallagher
Oh no, he really wanted to know why you are not using openvpn instead. I'd say because I can transfer at 1GBps with ipsec, without the bugs of openvpn... Sent from ProtonMail Mobile On Fri, Jun 30, 2017 at 9:20 PM, Rupert Gallagher wrote: > I think he wanted to know why you are sti

Re: OpenBSD IPSec setup

2017-06-30 Thread Rupert Gallagher
I think he wanted to know why you are still using ipsec/IKEv1 (/etc/ipsec.conf) instead of ipsec/IKEv2 (/etc/iked.conf). Sent from ProtonMail Mobile On Thu, Jun 29, 2017 at 12:59 PM, Marko Cupać wrote: > On Thu, 29 Jun 2017 12:32:01 +0200 Luescher Claude wrote: > Why are you using > ipsec in t

Re: OpenBSD IPSec setup

2017-06-28 Thread Rupert Gallagher
You need a server-signed certificate. Sent from ProtonMail Mobile On Wed, Jun 28, 2017 at 11:18 AM, Liviu Daia wrote: > I'm trying to create a VPN between my home network (sitting behind an OpenBSD > router), and a remote server (also an OpenBSD machine). After reading many > man pages and sea

Re: Retro ThinkPad: It’s Alive

2017-06-22 Thread Rupert Gallagher
Oh please, nobody managed to give an orgasm to their ThinkPad, . Grow up, forget about that red button. Sent from ProtonMail Mobile On Thu, Jun 22, 2017 at 6:04 AM, Glenn Faustino wrote: Hi All, In case you haven't read it yet... http://blog.lenovo.com/en/blog/retro-thinkpad-its-alive/ Regard

Re: OpenBSD NFS: Windows 10 writes wrong uid

2017-06-13 Thread Rupert Gallagher
I have non-root user on windows 10 that can delete read-only backup files and folders on NFS. Sent from ProtonMail Mobile On Tue, Jun 13, 2017 at 2:45 PM, Kenneth Gober wrote: On Mon, Jun 12, 2017 at 12:58 PM, Rupert Gallagher wrote: > On problem 2, > > if a user has group write p

Re: OpenBSD NFS: Windows 10 writes wrong uid

2017-06-13 Thread Rupert Gallagher
get. -- Raul On Tue, Jun 13, 2017 at 1:47 AM, Otto Moerbeek wrote: > On Tue, Jun 13, 2017 at 01:24:19AM -0400, Rupert Gallagher wrote: > >> If a non-root user can delete a root owned file with read-only permissions, then there is a security problem. Good luck to you if you are thinkin

Re: OpenBSD NFS: Windows 10 writes wrong uid

2017-06-13 Thread Rupert Gallagher
I have the backup on NAS. Files and folders read only. Users can delete anything. Sent from ProtonMail Mobile On Tue, Jun 13, 2017 at 7:47 AM, Otto Moerbeek wrote: On Tue, Jun 13, 2017 at 01:24:19AM -0400, Rupert Gallagher wrote: > If a non-root user can delete a root owned file with r

Re: OpenBSD NFS: Windows 10 writes wrong uid

2017-06-12 Thread Rupert Gallagher
. Sent from ProtonMail Mobile On Mon, Jun 12, 2017 at 10:27 PM, Raul Miller wrote: You have a very odd idea of "security". Probably though, this is the wrong mailing list for what you are trying to do. Good luck, -- Raul On Mon, Jun 12, 2017 at 2:27 PM, Rupert Gallagher wrote: >

Re: OpenBSD NFS: Windows 10 writes wrong uid

2017-06-12 Thread Rupert Gallagher
actually want, and whether or not > that should even be possible. > > (So far, you have only mentioned an example uid value for a user as > perhaps being an issue. This, combined with the subject line in this > thread are the only clues I have as to why you might not have removed > the

Re: OpenBSD NFS: Windows 10 writes wrong uid

2017-06-12 Thread Rupert Gallagher
... a security problem. Sent from ProtonMail Mobile

Re: OpenBSD NFS: Windows 10 writes wrong uid

2017-06-12 Thread Rupert Gallagher
On problem 2, if a user has group write permission on a folder, it has permission to write its own files and those of same group membership in that folder, provided the group permission is set on the file by its owner. If a file belongs to me and I deny write permission to group and other, then

Re: OpenBSD NFS: Windows 10 writes wrong uid

2017-06-12 Thread Rupert Gallagher
Errata: > /etc/exports contains > /exports/Shared -mapall=nobody:shared [client-ip] Correction: /exports/Shared -mapall=nobody:staff [client-ip]

OpenBSD NFS: Windows 10 writes wrong uid

2017-06-12 Thread Rupert Gallagher
Context: A windows 10 pro client connects to openbsd nfs shared folder using username and password on the openbsd system. /etc/exports contains /exports/Shared -mapall=nobody:shared [client-ip] permissions: drwxr-xr-x root wheel exports/ drwxrwxr-x nobody staff exports/Shared/ user is a member

Re: Can I use OpenBSD as a desktop system?

2017-06-12 Thread Rupert Gallagher
Re: iridium Nice try, but my FF scores much better results. I will dig into iridium's source next weekend. R

Re: Can I use OpenBSD as a desktop system?

2017-06-11 Thread Rupert Gallagher
On Mon, Jun 12, 2017 at 1:16 AM, Davor Balder wrote: > xfce is available and you should be able to use mac-like shortcuts there. I > think this relates to your chaoice of window manager/desktop environment. We have choices! Using xfce already, but Apple-like shortcuts did not work so far. > I'

Re: Can I use OpenBSD as a desktop system?

2017-06-11 Thread Rupert Gallagher
I spent yesterday and today installing 6.1 from scratch on a Dell Optiplex gx620. The machine has a pentium 4 @3.0GHz with 4GB non ECC RAM, returning a passmark of 354*. The aim is to replace the accountant's windows 10 pro tomorrow morning, moving the disk into his more recent Dell. In summary,

<    1   2