Re: carp and arpresolve: route without link local address

2008-06-27 Thread Christian
OK. There was a static route (from an old loopback interface test not related to the CARP setup) that pointed to the IP of the carp interface. Seems that this is not supported with CARP. Not documented, so let's do it here: The message arpresolve: XX.YY.16.3: route without link local address

Re: Anyone from this list at BlackHat or DefCon? And a query...

2008-06-27 Thread Randal T. Rioux
On Thu, June 26, 2008 12:07 am, Amarendra Godbole wrote: Hi, It would be a pleasure meeting folks on this mailing list, including OBSD developers' at BH or DefCon. Thanks. It is generally said that the BH or DefCon wireless network is hostile, and sane individuals must not use their laptop

setting PKG_CACHE stopps pkg_add

2008-06-27 Thread Stephan A. Rickauer
(this is i386, 4.3 release) PKG_PATH contains three locations 0) PKG_CACHE dir 1) first http server (mirror.switch.ch) 2) second http server (mirror.startek.ch) # echo $PKG_PATH /pkg_cache/:http://mirror.switch.ch/ftp/pub/OpenBSD/4.3/packages/i386/:http://mirror.startek.ch/OpenBSD/pkg/i386/e17/

Re: OpenOSPF routing and CARP issues (?)

2008-06-27 Thread Claer
On Fri, Jun 20 2008 at 48:12, Chris Naselli wrote: Hi all! Hi, [...] OpenOSPFD have the following configuration: area 0.0.0.0 { interface em0 # carped with carp0 interface em1 # carped with carp1 interface carp2 } In this topology I found a problem: OpenOSPF

Re: OT: Dissertation ideas for my degree

2008-06-27 Thread Hannah Schroeter
Hello! On Tue, Jun 24, 2008 at 07:06:53PM +0400, Vadim Zhukov wrote: 20 June 2008 P3. 22:13:12 Julien Cabillot wrote: Le Wed, 18 Jun 2008 23:53:33 +0100, Edd Barrett [EMAIL PROTECTED] a C)crit : Paul Irofti wrote: Or a cli music database collection, that scans your media with given

Re: OT: Dissertation ideas for my degree

2008-06-27 Thread Vadim Zhukov
27 June 2008 c. 13:52:12 Hannah Schroeter wrote: Hello! On Tue, Jun 24, 2008 at 07:06:53PM +0400, Vadim Zhukov wrote: 20 June 2008 P3. 22:13:12 Julien Cabillot wrote: Le Wed, 18 Jun 2008 23:53:33 +0100, Edd Barrett [EMAIL PROTECTED] a C)crit : Paul Irofti wrote: Or a cli music

Re: Net-SNMP segfaults under OpenBSD 4.3

2008-06-27 Thread Stephan A. Rickauer
On Wed, 2008-06-25 at 11:17 -0400, (private) HKS wrote: In my quest for real SNMP monitoring of OpenBSD, I installed net-snmp-5.4.1p0 on an OpenBSD 4.3 box via packages. The executable segfaults every time I try to run it. This happens with or without command-line options, with my custom

Re: Continuation of OpenBSD's Stop the Blob

2008-06-27 Thread Marco Peereboom
On Fri, Jun 27, 2008 at 07:17:34AM +0200, Thilo Pfennig wrote: Theo de Raadt schrieb: Hi Theo, I hope that nothing I ever say holds back our developers or community from doing what is right. I did not realize that the GNU and Linux kernel hackers were such dutiful slaves. Well yeah,

Re: Net-SNMP segfaults under OpenBSD 4.3

2008-06-27 Thread Claer
On Fri, Jun 27 2008 at 13:12, Stephan A. Rickauer wrote: On Wed, 2008-06-25 at 11:17 -0400, (private) HKS wrote: In my quest for real SNMP monitoring of OpenBSD, I installed net-snmp-5.4.1p0 on an OpenBSD 4.3 box via packages. The executable segfaults every time I try to run it. This

Re: Continuation of OpenBSD's Stop the Blob

2008-06-27 Thread Thilo Pfennig
Marco Peereboom wrote: Many people see me rather as an open source dogmatist. Personally I am trying to get the big picture WITHOUT being a fanboy of ANY OS. You are what I would call an OS intelligent design or creationist. This is exactly the excuse they use too. You funny, so there is

Les Dangers de l'Aspartame

2008-06-27 Thread contact.nln
Bonjour ` vous toutes et tous.. Information ` transmettre.. c'est trhs important. Je vous icris ce message afin de vous remettre une information de taille.. sur l'aspartame et du danger de ce produit sur notre santi... Je vais vous demander une chose de faire tout simplement suivre ce message `

isakmpd -- NCP IPsec client: peer proposed invalid phase 2 IDs

2008-06-27 Thread Harald Dunkel
Hi folks, I am trying to setup an IPsec connection between OpenBSD and WindowsXP (NCP IPsec client). ipsec.conf is just a single line: ike passive esp from 192.168.5.1 to 192.168.1.249 (192.168.1.249 is the Windows PC.) Phase I seems to work, but in Phase II isakmpd complains: Jun

Question about tags and ipsec.conf

2008-06-27 Thread Michiel van der Kraats
Hi list, I have a firewall using the - very elegant - ipsec.conf to build tunnels to various Cisco's, Watchguards and other OpenBSD machines. My /etc/ipsec.conf is autogenerated and contains lots of: # bla-bla.router.company.example - router for location bla-bla ike esp from 192.168.100.0/24

Re: Continuation of OpenBSD's Stop the Blob

2008-06-27 Thread Mark Smith
Thilo Pfennig wrote: The popularity of Linux has helped to create a market that has better and more open documentation - and machines that are made to work perfect with Linux (like eeepc) are more easily made to work perfectly for OpenBSD and other free OSes. Hehe, thanks for the good laugh !

BA-Con 2008 CFP - Buenos Aires Sept. 30 / Oct. 1 (closes July 11 2008)

2008-06-27 Thread Dragos Ruiu
BA-Con 2008 CALL FOR PAPERS BUENOS AIRES, Argentina -- The first annual BA-Con applied technical security conference - where the eminent figures in the international and South American security industry will get together and share best practices and technology - will be held in

Re: Continuation of OpenBSD's Stop the Blob

2008-06-27 Thread bofh
On Fri, Jun 27, 2008 at 8:21 AM, Thilo Pfennig [EMAIL PROTECTED] wrote: Marco Peereboom wrote: It was projects like OpenBSD that showed what bold faced liars they were for them to change their ways. It was action of the unfriendly kind that got stuff done. Get your facts straight. In

Jos uvek imas vremena za pobedu

2008-06-27 Thread Top Shop
Top Shop Fudbalska groznica se približava kraju. Da li ćeš i ti biti pobednik? Top Shop Danas je tvoja poslednja prilika da sakupiš još poena – zato požuri da odgovoriš na poslednje pitanje nagradnog kviza Euro 2008. Za tačan odgovor na ovo pitanje dobijaš još 10 dodatnih poena.

Re: isakmpd -- NCP IPsec client: peer proposed invalid phase 2 IDs

2008-06-27 Thread Prabhu Gurumurthy
I do not know whether Windows XP native IPsec stack supports AES, I know it only supports upto 3des. With OpenBSD, the default is AES (128), that is why IKE is giving you NO_PROPOSAL_CHOSEN. Change you settings to include 3des and sha1 (or md5 may be) and you would get quick mode working.

strange pf problem with 4.3 and vlans

2008-06-27 Thread Thomas Börnert
I use openbsd 4.3 i386 with vlans over a bridge and traffic is filtered. When I add the vlan116 after vlan120 to the bridge, traffic on the vlan120 will be filtered by pf on the vlan116. In pf.conf I need pass in on vlan116 for incoming traffic on vlan120. If I add the vlans in the correct

Xenocara patch

2008-06-27 Thread Frank Bax
Yesterday, I upgraded from 4.2 to 4.3 release and icewm freezes when I hit Alt-tab. I found this reference to a patch: http://groups.google.com/group/comp.unix.bsd.openbsd.misc/browse_thread/thread/9de493f8bbab33a9 Avoiding keyboard shortcuts seems to be a workaround so far. I'm not a

Re: Xenocara patch

2008-06-27 Thread Antoine Jacoutot
On Fri, 27 Jun 2008, Frank Bax wrote: Yesterday, I upgraded from 4.2 to 4.3 release and icewm freezes when I hit Alt-tab. I found this reference to a patch: http://groups.google.com/group/comp.unix.bsd.openbsd.misc/browse_thread/thread/9de493f8bbab33a9 Avoiding keyboard shortcuts seems

Re: Net-SNMP segfaults under OpenBSD 4.3

2008-06-27 Thread (private) HKS
Thanks, took this route and things are working just fine now. -HKS On Fri, Jun 27, 2008 at 8:19 AM, Claer [EMAIL PROTECTED] wrote: On Fri, Jun 27 2008 at 13:12, Stephan A. Rickauer wrote: On Wed, 2008-06-25 at 11:17 -0400, (private) HKS wrote: In my quest for real SNMP monitoring of OpenBSD,

getpwnam_r() missing on OpenBSD 4.3

2008-06-27 Thread (private) HKS
Not sure if this is the right list for this question, so let me know if it needs to go somewhere else. My OpenBSD box is missing the getpwnam_r() function described in the getpwent(3) man page. At least, it's described at this URL:

Re: Continuation of OpenBSD's Stop the Blob

2008-06-27 Thread Andre van Zyl
Hehe, thanks for the good laugh ! Thilo you already look like a fool. On the contrary, Mark, right now I personally have a higher regard for Thilo, who actually posted an opinion. All you've done is posted a typical fanboi response to Theo's reply to Thilo. Who are you trying to impress?

Re: getpwnam_r() missing on OpenBSD 4.3

2008-06-27 Thread Stuart Henderson
On 2008-06-27, (private) HKS [EMAIL PROTECTED] wrote: Not sure if this is the right list for this question, so let me know if it needs to go somewhere else. My OpenBSD box is missing the getpwnam_r() function described in the getpwent(3) man page. At least, it's described at this URL:

can't remove greytrapped entry from spamdb

2008-06-27 Thread Juan Miscaro
(On 4.3 recent snapshot) I began receiving mail for a certain email address and forgot to adjust my /etc/mail/spamd.alloweddomains file (where I have a list of all valid email addresses). So I found the following spamd logging reasonable: spamd[5771]: 10.10.10.10: disconnected after 386 seconds.

Re: Xenocara patch

2008-06-27 Thread raven
Frank Bax ha scritto: Yesterday, I upgraded from 4.2 to 4.3 release and icewm freezes when I hit Alt-tab. I found this reference to a patch: http://groups.google.com/group/comp.unix.bsd.openbsd.misc/browse_thread/thread/9de493f8bbab33a9 Avoiding keyboard shortcuts seems to be a workaround

Re: getpwnam_r() missing on OpenBSD 4.3

2008-06-27 Thread Marc Espie
On Fri, Jun 27, 2008 at 05:23:54PM -0400, (private) HKS wrote: Not sure if this is the right list for this question, so let me know if it needs to go somewhere else. My OpenBSD box is missing the getpwnam_r() function described in the getpwent(3) man page. At least, it's described at this

Re: can't remove greytrapped entry from spamdb

2008-06-27 Thread Juan Miscaro
2008/6/27 Juan Miscaro [EMAIL PROTECTED]: (On 4.3 recent snapshot) I began receiving mail for a certain email address and forgot to adjust my /etc/mail/spamd.alloweddomains file (where I have a list of all valid email addresses). So I found the following spamd logging reasonable:

vnconfig: using a block-device 10x slower then using a file?

2008-06-27 Thread Sebastian Rother
Hello everybody, I right now face a for me kinda interesting situation. After a interupt storm wich I thought was related to the hw setup I noticed that using encrypted partitions created with vnconfig is simply damn slow. I used vnconfig -cK keysize -S saltfile /dev/svnd1c /dev/wd1c So I used