HD OpenBSD Artwork

2020-07-16 Thread nuffnough
Is there somewhere to get higher resolution OpenBSD artwork? I see the stuff on the website, and it's great, but on my 8k screen it's kind of like a postage stamp in the middle. Do higher Res copies exist somewhere? Can they be made available? Cheers!

troubleshooting shrew vpn client with ipsec.conf

2011-12-15 Thread nuffnough
I am converting over to ipsec.conf from isakmpd.conf|policy. I have a default vpn configuration to allow people from their home pc to access. Under isakmpd.conf it works perfectly well. I can use any number of settings, including the desired aes-256 for both phase 1 and phase 2. My

need help converting to ipsec.conf

2011-11-20 Thread nuffnough
Hi, I am converting a bunch of VPNs from my isakmpd.[conf|policy] files to ipsec.conf mostly because it seems they're deprecated, but partly because I saw an old thread that spoke of functionality I want to explore. I figured I should work through them one by one. I got my own VPN from one

Re: Like OpenBSD? Like to see new stuff happening? You really need to order a CD today :)

2011-04-23 Thread nuffnough
On 23 April 2011 16:08, Devin Reade g...@gno.org wrote: Benny Lofgren bl-li...@lofgren.biz wrote: On 2011-04-21 22.27, P. Pruett wrote: how about donate [snip] The reason for my initial suggestion, which was along the lines Rafal whom you commented also thought, was that a donation *ISN'T

Mail how-to sans mysql

2010-06-19 Thread nuffnough
Hi, I am wanting to set up a pretty basic mail server with postfix, and figure that setting up a database backend is overkill. All the most excellent docs I've found on the internet incorporate mysql setup. Can someone link me to a guide that does this without Mysql? The most clear and

Re: 4.6 arriving

2009-10-04 Thread nuffnough
Nope, not B at B all. B It was just an idea tossed out to: B - see if it had any merit B - perhaps spark some other thoughts on how to increase CD purchases B - or to get flamed Its obvious which one you chose. I don't believe you. B You suggested it because you only thought of your

Hardware recomendations please

2008-12-01 Thread nuffnough
Hey there. My firewalls are getting old, so I thought it would be a great idea to replace them. I figured that a budget of around $1500 would be more than adequate, but because no one makes mobos with 5 pci slots anymore I am struggling to get these under $2800. I have requirements for 6 legs

Re: How to NAT a site-site VPN tunnel

2008-11-12 Thread nuffnough
I found another thread in french (I think, I am not good with french) with a link that looks promising... http://fixunix.com/bsd/87865-nat-ipsec-openbsd-pf-isakmpd.html I will check out that solution and let you know if I still have problems.

Re: How to NAT a site-site VPN tunnel

2008-11-12 Thread nuffnough
2008/11/12 Mitja MuEeniD [EMAIL PROTECTED]: If you control the target box, the simplest solution by far is to assign a deconficting alias address to it and then establish the VPN tunnel between the 3rd party site and this alias address of yours. Everybody will be accessing through the

How to NAT a site-site VPN tunnel

2008-11-11 Thread nuffnough
Hi, For ages now I've had a site-to-site vpn configured between my obsd server to a 3rd party client network. Thing is, they're accessing a box which has an rfc 1918 reserved address that they now want to use in their own network. I have a few other clients with other VPNs to the same address,

Hardware recommendation request

2008-09-29 Thread nuffnough
Hi, I read the thread that popped up a few months back, and the consensus was to buy a Dell or buy a switch and make VLANs, but neither of these options are suitable for my requirements. I presently have a pair of Intel Servers with 6 pci NICs plus one on board running as a clustered firewall.

VPN troubleshooting help request.

2008-07-31 Thread nuffnough
Hi, a client with a cisco device is attemtping to set up a VPN to my OBSD 4.3 firewall. Phase 1 is okay, but phase 2 is fail. It says it fails the policy check. But... Checking through everything in the policy against the debug it seems like it conforms to the policy to me. Are there other

Re: PF Congestion and state table question

2008-05-15 Thread nuffnough
2008/5/9 Thomas Althoff [EMAIL PROTECTED]: I don't recall Henning's rule, search the archive something like X times your number of nics. I completely misread this to mean Hennings rule of misc is Search the archive X times your number of nics before posting your question.

Need help with wordpress install.

2007-11-03 Thread nuffnough
Hi. I am getting an error when I try to run the wordpress wp-admin/install.php script: Your PHP installation appears to be missing the MySQL which is required for WordPress. This is OpenBSD 4.2 with: mysql-client-5.0.45 multithreaded SQL database (client) mysql-server-5.0.45 multithreaded SQL

Re: Can isakmpd based VPN's work with FreeBSD

2007-01-27 Thread nuffnough
On 28/01/07, stan [EMAIL PROTECTED] wrote: I'v just worked through getting IP, and bridge tuneling working using ipsecctl, and isakmpd. One of the places I would like to use this has an exisitng FreebSD machine at one end. Can OpenBSD interoprate with FreeBSD in this context? Certainly.

why the shift from isakmpd.conf?

2006-12-10 Thread nuffnough
..? How long will I still be able to use isakmpd? What are the advantages that ipsec has over isakmpd? Will I still be able to configure custom policies when the defaults aren't appropriate? TIA Nuffnough

Re: ip not forwarding after 4.0 rebuild.

2006-11-15 Thread nuffnough
On 14/11/06, Bob DeBolt [EMAIL PROTECTED] wrote: On Monday 13 November 2006 7:53 pm, you wrote: But I don't know what I need to do differently to change the situations. Is pf enabled and blocking perhaps? Thanks for everyone's help. It must have been something weird (like my brain at

ip not forwarding after 4.0 rebuild.

2006-11-13 Thread nuffnough
forwarding was that setting in sysctl.conf... Is there something that I am missing? If a system you'd built was doing this, what would you do next? TIA Nuffnough

Re: ip not forwarding after 4.0 rebuild.

2006-11-13 Thread nuffnough
need to do differently to change the situations. Thanks for the reply. nuffnough.

Re: Troubles trying to configure non-default VPN

2006-11-09 Thread nuffnough
On 11/9/06, jared r r spiegel [EMAIL PROTECTED] wrote: On Wed, Nov 08, 2006 at 07:50:46AM +1100, nuffnough wrote: I have an OpenBSD 3.9 box and I've been asked to configure it to terminate a VPN using AES-256 encryption with SHA authentication, DH Group 5 (rather than the default group 2

Troubles trying to configure non-default VPN

2006-11-07 Thread nuffnough
what I am doign wrong, so that I can do it right? TIA! nuffnough

Re: OpenBGPD 4.0 released Nov 1, 2006

2006-11-02 Thread nuffnough
On 11/2/06, Henning Brauer [EMAIL PROTECTED] wrote: We are pleased to announce the official release of OpenBGPD 4.0. Thanks for the great update. Is this a reason I should install from the latest snapshot via ftp instead of my soon to arrive disc set?

How-to VPN from WinXP behind NAT+ DHCP to OBSD?

2006-01-26 Thread nuffnough
of this configuration work: What IP Addreses do I use for things like the Peer address in the OBSD isakmpd.conf? What do I need to do to make the XP IPSec stack traverse the NAT on the braodband modem? TIA nuffnough

isakmpd debug syntax query

2006-01-12 Thread nuffnough
Hi. I need to log the output of isakmpd -DA=90 to a file, and I am at a loss as to exactly what syntax to use. I am using OpenBSD 3.8 default shell (ksh now...) and trying stuff like isakmpd -T -DA=90 21 logfile which just gives me the reports for log levels but doens't actually show me any

Re: isakmpd debug syntax query

2006-01-12 Thread nuffnough
On 1/13/06, Alexander Hall [EMAIL PROTECTED] wrote: nuffnough wrote: Hi. I need to log the output of isakmpd -DA=90 to a file, and I am at a loss as to exactly what syntax to use. I am using OpenBSD 3.8 default shell (ksh now...) and trying stuff like isakmpd -T -DA=90 21