sftp activity logging?

2023-08-31 Thread myml...@gmx.com
Hi All, I am setting an openbsd 7.3 stable system to serve files via ssh's sftp subsystem. Does openssh have a native way to audit what files were downloaded/uploaded with user/timestamp information? If not, are there any recommendations? Thanks in advance.

non-hardware 2fa options for openssh

2023-08-29 Thread myml...@gmx.com
Hi All, I want to secure an openssh server with two factor authentication and have seen the hardware token methods, most recently i've been seeing yubi/FIDO methods. Ideally I would like to avoid having to depend on a usb size device that could easily be lost. I looked around and found mention

Re: PC Engines APU alternative for OpenBSD - 2022h2

2022-09-28 Thread myml...@gmx.com
On 9/28/22 14:03, Stuart Henderson wrote: On 2022-09-28, Sean Rider wrote: I have a 7.1 router/wg server running on a protectli FW4B and I've had no issues. Their customer service has been great too. https://protectli.com/vault-4-port/ Those appear to be old versions of the cheap chinese b

Re: vlans don't come up at boot

2020-12-24 Thread myml...@gmx.com
On 12/24/20 12:33 PM, Stuart Henderson wrote: On 2020-12-24, myml...@gmx.com wrote: Hi, I have set up an openbsd router/firewall from the 2020/12/22 snapshot with a vlan associated with the em3 device and it's not coming up at boot time. (dmesg at the end of the post) First I create

vlans don't come up at boot

2020-12-24 Thread myml...@gmx.com
Hi, I have set up an openbsd router/firewall from the 2020/12/22 snapshot with a vlan associated with the em3 device and it's not coming up at boot time. (dmesg at the end of the post) First I created the interface files: # cat /etc/hostname.em0 dhcp # cat /etc/hostname.em3 inet 192.168.27.254

Re: how to mount phone?

2020-07-14 Thread myml...@gmx.com
On 7/14/20 2:46 AM, Antal Ispanovity wrote: On Mon, Jul 13, 2020 at 2:57 PM Justin Muir wrote: Hi, Just wishing to mount my phone to access photos. Here's the output from dmesg: ugen0 at uhub0 port 3 "Alcatel U50? Alcatel U50?" rev 2.00/3.10 addr 2 Any ideas on how this might be mounted??

Old thread, but wondering if any updates?

2020-02-18 Thread myml...@gmx.com
I posted this way back in 2017 but i'm wondering if anything has changed... https://marc.info/?l=openbsd-misc&m=149613307021262&w=2 Is the 16Tb restriction been removed for full disk encryption? Thanks

deny unknown-clients

2020-02-18 Thread myml...@gmx.com
Hi All, I'm running openbsd current and running dhcpd, on all of my subnets I use "deny unknown-clients;" and comment out the range. I have a wireless access point defined in one subnet (192.168.0.0/24), but not in another (192.168.1.0/24). When I move the ethernet cable from the interface whe

Re: off-topic

2020-01-23 Thread myml...@gmx.com
On 12/30/19 6:09 AM, Gustavo Rios wrote: Is qmail dead ? Does anyone here use openbsd with qmail+ldap ? Hey Gustavo, qmail may not be dead, i suspect it is as most of the download links at the official site aren't reachable, not a good sign. I understand that people get attached to software,

for those looking for hardware to build an OBSD router/firewall

2020-01-23 Thread myml...@gmx.com
Hi All, I've been looking for hardware to replace my 15 year old i386 pc based openbsd firewall with 6 interfaces with something smaller and with less power draw for a while, a long while..:). I researched and saw things from lanner, axiomtek and portwell, but they were mad expensive. I have se

Re: Suricata from packages

2020-01-23 Thread myml...@gmx.com
On 1/21/20 1:05 PM, b2...@zonbie.net wrote: On 2020-01-18 07:08, Eric Zylstra wrote: On Jan 18, 2020, at 6:42 AM, Antoine Jacoutot wrote: On Fri, Jan 17, 2020 at 11:24:22PM -0600, Eric Zylstra wrote: OpenBSD 6.6 Generic.MP amd64 Stable. I installed suricata using pkg_add.  Having trouble wit

Re: pfctl -T expire

2020-01-23 Thread myml...@gmx.com
On 1/23/20 7:17 PM, myml...@gmx.com wrote: Hi All, Thanks to Jesper and Stuart, i'm using max-pkt-rate not! I'm also using max-src-conn-rate and overload in conjunction with authpf and I'm worried that potentially valid traffic may get blocked. I'm wondering if it's

pfctl -T expire

2020-01-23 Thread myml...@gmx.com
Hi All, Thanks to Jesper and Stuart, i'm using max-pkt-rate not! I'm also using max-src-conn-rate and overload in conjunction with authpf and I'm worried that potentially valid traffic may get blocked. I'm wondering if it's a condoned/accepted/best practice to use cron with pfctl to expire tabl

Re: rate limit echo request

2020-01-23 Thread myml...@gmx.com
On 1/23/20 1:35 AM, Jesper Wallin wrote: Hi, Use the max-pkt-rate parameter instead. It does exactly what you think it does and is thoroughly covered in pf.conf(5) with examples and all. Regards Jesper Wallin On Wed, Jan 22, 2020 at 10:42:01PM -0700, myml...@gmx.com wrote: Hi, I'm

Re: install libreoffice OpenBSD 6.6

2020-01-22 Thread myml...@gmx.com
On 1/22/20 7:55 PM, Jovany Leandro G.C wrote: hello community, i recently install OpenBSD 6.6 and works great. now i try install libreoffice and throws: quirks-3.182 signed on 2020-01-22T10:10:52Z Can't install rasqal-0.9.33p2 because of libraries |library gmp.10.0 not found | not found any

Re: rate limit echo request

2020-01-22 Thread myml...@gmx.com
On 1/22/20 10:42 PM, myml...@gmx.com wrote: Hi, I'm just wondering if there is a way to rate limit icmp echo request. i.e. pings. I tried the following rule but it errors out with "syntax error" pass in quick on em1 inet proto icmp from 192.168.0.23  to 192.168.1.2 icmp-typ

rate limit echo request

2020-01-22 Thread myml...@gmx.com
Hi, I'm just wondering if there is a way to rate limit icmp echo request. i.e. pings. I tried the following rule but it errors out with "syntax error" pass in quick on em1 inet proto icmp from 192.168.0.23  to 192.168.1.2 icmp-type  echoreq (max-src-conn-rate 1/2, overload flush) I'm trying t

Re: Can't locate OpenBSD/Quirks.pm in @INC

2020-01-17 Thread myml...@gmx.com
On 1/17/20 7:25 PM, Jordan Geoghegan wrote: On 2020-01-17 18:10, myml...@gmx.com wrote: HI, I downloaded the install66.fs snapshot today, 20200117, and did a fresh install.  Even though I got the full install set, i used http from ftp.openbsd.org as the install source. Installation went

Can't locate OpenBSD/Quirks.pm in @INC

2020-01-17 Thread myml...@gmx.com
HI, I downloaded the install66.fs snapshot today, 20200117, and did a fresh install.  Even though I got the full install set, i used http from ftp.openbsd.org as the install source. Installation went fine but when I tried to install packages I get the above error. "# pkg_add -vn pftop quirks-3

Re: dell universal d6000 dock

2019-02-11 Thread myml...@gmx.com
anybody On 2/5/19 5:17 PM, myml...@gmx.com wrote: Hi, I am running current from Jan 21st on a dell latitude 7490 (dmesg below) and was hoping to get a usb-c dock connected so that I could use 2 display ports, the hdmi, eth and extra usb ports in one easy to disconnect usb-c connection

dell universal d6000 dock

2019-02-05 Thread myml...@gmx.com
Hi, I am running current from Jan 21st on a dell latitude 7490 (dmesg below) and was hoping to get a usb-c dock connected so that I could use 2 display ports, the hdmi, eth and extra usb ports in one easy to disconnect usb-c connection. The hdmi seems to work ok but I get the following error

Re: mount_ffs Permission denied as root

2019-01-02 Thread myml...@gmx.com
On 1/1/19 11:53 PM, Otto Moerbeek wrote: On Tue, Jan 01, 2019 at 07:25:14PM -0700, myml...@gmx.com wrote: I just did a new install of current AMD64 from the 12/31/2018 snapshot and having some permission issues mounting a usb drive, as root.  I have been able to mount other usb drives just

Re: mount_ffs Permission denied as root

2019-01-02 Thread myml...@gmx.com
On 1/1/19 10:02 PM, Philip Guenther wrote: On Tue, Jan 1, 2019 at 6:27 PM myml...@gmx.com <mailto:myml...@gmx.com> mailto:myml...@gmx.com>> wrote: I just did a new install of current AMD64 from the 12/31/2018 snapshot and having some permission issues mounting a u

mount_ffs Permission denied as root

2019-01-01 Thread myml...@gmx.com
I just did a new install of current AMD64 from the 12/31/2018 snapshot and having some permission issues mounting a usb drive, as root.  I have been able to mount other usb drives just fine. (Also tried with the 12/29 snapshots as well, same issue) #disklabel sd4 # /dev/rsd4c: type: SCSI disk: