Re: bug in the alternate character set output

2011-07-19 Thread ciscoadmin
Nicholas Marriott wrote:
 I get the same results on Linux and OpenBSD so if this is a problem I
 suspect it is ncurses rather than OpenBSD.
 
 You can take this to ncurses-dev or I will have a dig around when I have
 time, it'd help if you can come up with a simpler example (perhaps where
 you only change the x member of acsc).

OK, no problem:

# vi xterm0.ti
# cat xterm0.ti

# ACS test
xterm0|xterm with simple ASCII pseudographics,
acsc=x|,
use=xterm,

the rest unchanged (in place of running ./test
you can run, for example,  Midnight Commander)

 On Mon, Jul 18, 2011 at 04:28:41PM +0400, alexei.mali...@inetcomm.ru wrote:
 Synopsis:bug in the alternate character set output
 Category:system
 Environment:
  System: OpenBSD 4.2  4.9
  Architecture:   OpenBSD.i386
  Machine:i386
 Description:
  curses and the like applications display curses ACS_VLINE
  characters incorrectly if the ACS_VLINE character is set
  to |
 How-To-Repeat:
  let's prepare test terminfo entry, where curses ACS_VLINE
  character is set to | (i. e. acsc must have x|
  somewhere in a terminfo description):

 # cd 
 # vi xterm0.ti
 # cat xterm0.ti

 # ACS test
 xterm0|xterm with simple ASCII pseudographics,
  acsc=+\,-\^.v0#`+a\:f\\h#j+k+l+m+n+o~p-q-r-s_t+u+v+w+|!}#~ox|,
  use=xterm,

 # cat xterm0.ti  /usr/src/share/termtypes/termtypes.master
 # cd /usr/src/share/termtypes
 # make obj
 # make cleandir
 # make depend
 # make
 # make install

  after that let's prepare test curses program:

 # cd 
 # vi test.c
 # cat test.c

 #include stdlib.h
 #include curses.h

 void ERROR(char *diag) {
  printf(%s\n, diag);
  exit(1);
 }

 int main() {
  if (initscr() == NULL)
  ERROR(initscr() error!);
  if (cbreak() != OK)
  ERROR(cbreak() error!);
  if (noecho() != OK)
  ERROR(noecho() error!);
  if (nonl() != OK)
  ERROR(nonl() error!);
  if (intrflush(stdscr, FALSE) != OK)
  ERROR(intrflush(stdscr, FALSE) error!);
  if (keypad(stdscr, TRUE) != OK)
  ERROR(keypad(stdscr, TRUE) error!);
  if (border(0, 0, 0, 0, 0, 0, 0, 0) != OK)
  ERROR(border(0, 0, 0, 0, 0, 0, 0, 0) error!);
  if (refresh() != OK)
  ERROR(refresh() error!);
  if (getch() == ERR)
  ERROR(getch() error!);
  if (endwin() != OK)
  ERROR(endwin() error!);
  return (0);
 }

 # rm -f test ; cc -lcurses -o test test.c ; echo $?
 0

  at console with TERM set to xterm0 or in an xterm
  window (which was started as xterm -tn xterm0 )
  let's run our test program:

 # ./test

  this test shows us that curses ACS_VLINE characters
  are displayed incorrectly (i. e. not as |)

 Fix:
  workaround is dumb - change | to ! and curses
  ACS_VLINE characters will be displayed correctly
  (as !); but this does not fix the problem!



Funny uhci bus?

2011-07-19 Thread Daniel Gracia

Hi there!

I'm running on some issues related to USB reliability.

Scenario: A 4-port serial to USB interface and a USB printer attached to 
uhci.


Workload: Printer uses to be idle. Serial port is being polled quite 
frequently, but has almost no traffic -a few chars go in/out the ports 
every 10ms or so-.


Problem: Every now and then, maybe 2h, maybe 48h, USB stops working. All 
comms falls at once, and printer doesn't work.


Suspicion: When lpr runs the printer, chances to hit a USB lock seem to 
be scaled by a x100 factor.


Ridiculous hypothesis: May I have been experiencing some misinterrupt 
issues?


I'll try to get a nice, charming and repeatable error to get up to this.

Regards!

Dani

dmesg goes below:
8---

OpenBSD 4.9 (GENERIC.MP) #794: Wed Mar  2 07:19:02 MST 2011
dera...@i386.openbsd.org:/usr/src/sys/arch/i386/compile/GENERIC.MP
cpu0: Intel(R) Atom(TM) CPU D410 @ 1.66GHz (GenuineIntel 686-class) 
1.67 GHz
cpu0: 
FPU,V86,DE,PSE,TSC,MSR,PAE,MCE,CX8,APIC,SEP,MTRR,PGE,MCA,CMOV,PAT,PSE36,CFLUSH,DS,ACPI,MMX,FXSR,SSE,SSE2,SS,HTT,TM,SBF,SSE3,MWAIT,DS-CPL,TM2,SSSE3,CX16,xTPR,PDCM,MOVBE

real mem  = 1063481344 (1014MB)
avail mem = 1035927552 (987MB)
mainbus0 at root
bios0 at mainbus0: AT/286+ BIOS, date 10/27/10, BIOS32 rev. 0 @ 0xf0010, 
SMBIOS rev. 2.6 @ 0xf0720 (46 entries)

bios0: vendor American Megatrends Inc. version 0601 date 10/27/2010
bios0: ASUSTeK Computer INC. EB1007
acpi at bios0 function 0x0 not configured
mpbios0 at bios0: Intel MP Specification 1.4
cpu0 at mainbus0: apid 0 (boot processor)
cpu0: apic clock running at 166MHz
mpbios0: bus 0 is type PCI
mpbios0: bus 1 is type PCI
mpbios0: bus 2 is type PCI
mpbios0: bus 3 is type PCI
mpbios0: bus 4 is type PCI
mpbios0: bus 5 is type ISA
ioapic0 at mainbus0: apid 1 pa 0xfec0, version 20, 24 pins
pcibios0 at bios0: rev 3.0 @ 0xf/0x1
pcibios0: PCI IRQ Routing Table rev 1.0 @ 0xf7590/160 (8 entries)
pcibios0: no compatible PCI ICU found: ICU vendor 0x8086 product 0x27bc
pcibios0: Warning, unable to fix up PCI interrupt routing
pcibios0: PCI bus #4 is the last bus
bios0: ROM list: 0xc/0xda00! 0xce000/0x1000
pci0 at mainbus0 bus 0: configuration mode 1 (bios)
pchb0 at pci0 dev 0 function 0 Intel Pineview DMI rev 0x00
vga1 at pci0 dev 2 function 0 Intel Pineview Video rev 0x00
wsdisplay0 at vga1 mux 1: console (80x25, vt100 emulation)
wsdisplay0: screen 1-5 added (80x25, vt100 emulation)
intagp0 at vga1
agp0 at intagp0: aperture at 0xd000, size 0x1000
inteldrm0 at vga1: apic 1 int 16 (irq 5)
drm0 at inteldrm0
Intel Pineview Video rev 0x00 at pci0 dev 2 function 1 not configured
azalia0 at pci0 dev 27 function 0 Intel 82801GB HD Audio rev 0x02: 
apic 1 int 20 (irq 4)

azalia0: codecs: Realtek ALC662
audio0 at azalia0
ppb0 at pci0 dev 28 function 0 Intel 82801GB PCIE rev 0x02: apic 1 int 
16 (irq 5)

pci1 at ppb0 bus 4
ppb1 at pci0 dev 28 function 1 Intel 82801GB PCIE rev 0x02: apic 1 int 
17 (irq 11)

pci2 at ppb1 bus 3
jme0 at pci2 dev 0 function 0 JMicron JMC250 rev 0x03: apic 1 int 17 
(irq 11), address f4:6d:04:04:34:af

jmphy0 at jme0 phy 1: JMP211 10/100/1000 PHY, rev. 1
ppb2 at pci0 dev 28 function 2 Intel 82801GB PCIE rev 0x02: apic 1 int 
18 (irq 10)

pci3 at ppb2 bus 2
athn0 at pci3 dev 0 function 0 Atheros AR9285 rev 0x01: apic 1 int 18 
(irq 10)

athn0: AR9285 rev 2 (1T1R), ROM rev 13, address e0:b9:a5:00:f8:46
uhci0 at pci0 dev 29 function 0 Intel 82801GB USB rev 0x02: apic 1 int 
23 (irq 14)
uhci1 at pci0 dev 29 function 1 Intel 82801GB USB rev 0x02: apic 1 int 
21 (irq 7)
uhci2 at pci0 dev 29 function 2 Intel 82801GB USB rev 0x02: apic 1 int 
18 (irq 10)
uhci3 at pci0 dev 29 function 3 Intel 82801GB USB rev 0x02: apic 1 int 
22 (irq 3)
ehci0 at pci0 dev 29 function 7 Intel 82801GB USB rev 0x02: apic 1 int 
23 (irq 14)

usb0 at ehci0: USB revision 2.0
uhub0 at usb0 Intel EHCI root hub rev 2.00/1.00 addr 1
ppb3 at pci0 dev 30 function 0 Intel 82801BAM Hub-to-PCI rev 0xe2
pci4 at ppb3 bus 1
pcib0 at pci0 dev 31 function 0 Intel Tigerpoint LPC rev 0x02
ahci0 at pci0 dev 31 function 2 Intel 82801GR AHCI rev 0x02: apic 1 
int 19 (irq 15), AHCI 1.1

scsibus0 at ahci0: 32 targets
sd0 at scsibus0 targ 0 lun 0: ATA, WDC WD2500BEVT-8, 01.0 SCSI3 
0/direct fixed

sd0: 238475MB, 512 bytes/sec, 488397168 sec total
ichiic0 at pci0 dev 31 function 3 Intel 82801GB SMBus rev 0x02: apic 1 
int 19 (irq 15)

iic0 at ichiic0
spdmem0 at iic0 addr 0x51: 1GB DDR2 SDRAM non-parity PC2-6400CL5 SO-DIMM
usb1 at uhci0: USB revision 1.0
uhub1 at usb1 Intel UHCI root hub rev 1.00/1.00 addr 1
usb2 at uhci1: USB revision 1.0
uhub2 at usb2 Intel UHCI root hub rev 1.00/1.00 addr 1
usb3 at uhci2: USB revision 1.0
uhub3 at usb3 Intel UHCI root hub rev 1.00/1.00 addr 1
usb4 at uhci3: USB revision 1.0
uhub4 at usb4 Intel UHCI root hub rev 1.00/1.00 addr 1
isa0 at pcib0
isadma0 at isa0
pckbc0 at isa0 port 0x60/5
pckbd0 at pckbc0 (kbd slot)
pckbc0: using irq 1 for kbd slot
wskbd0 at 

openbsd 4.9 based UTM

2011-07-19 Thread citoyen citoyen
Hi,
I'm about starting a project of building my own High secure UTM based on the
last openbsd flower 4.9,
i can do all system and network configs  needed by myself  but I'm wondering
what language to use in order to get
my UTM configurable from a web browser.
any pointers or help are welcome.

Thanks in advance.



Re: openbsd 4.9 based UTM

2011-07-19 Thread Otto Moerbeek
On Tue, Jul 19, 2011 at 11:34:48AM +0100, citoyen citoyen wrote:

 Hi,
 I'm about starting a project of building my own High secure UTM based on the
 last openbsd flower 4.9,
 i can do all system and network configs  needed by myself  but I'm wondering
 what language to use in order to get
 my UTM configurable from a web browser.
 any pointers or help are welcome.
 
 Thanks in advance.

What IS an UTM?



Re: openbsd 4.9 based UTM

2011-07-19 Thread David Coppa
On Tue, Jul 19, 2011 at 12:41 PM, Otto Moerbeek o...@drijf.net wrote:
 On Tue, Jul 19, 2011 at 11:34:48AM +0100, citoyen citoyen wrote:

 Hi,
 I'm about starting a project of building my own High secure UTM based on
the
 last openbsd flower 4.9,
 i can do all system and network configs  needed by myself  but I'm
wondering
 what language to use in order to get
 my UTM configurable from a web browser.
 any pointers or help are welcome.

 Thanks in advance.

 What IS an UTM?

I think he was intending:
http://en.wikipedia.org/wiki/Unified_Threat_Management

ciao,
david



OpenBSD 5.0-beta non-free firmware

2011-07-19 Thread Wesley MOUEDINE ASSABY
Hi,

I just installed a fresh snapshot 5.0-beta, i noticed at the end of
installation a new feature :
Install non-free firmwares on first boot, what is it exactly ?
As an aside, installation is always clear, simple, very good jobs !!

cheers,

Wesley M.



Re: openbsd 4.9 based UTM

2011-07-19 Thread Daniel Malament
 What IS an UTM?

Clearly, citoyen is building a Universal Turing Machine. :)



Re: openbsd 4.9 based UTM

2011-07-19 Thread jirib
On Tue, 19 Jul 2011 12:41:40 +0200
Otto Moerbeek o...@drijf.net wrote:

 On Tue, Jul 19, 2011 at 11:34:48AM +0100, citoyen citoyen wrote:
 
  Hi,
  I'm about starting a project of building my own High secure UTM
  based on the last openbsd flower 4.9,
  i can do all system and network configs  needed by myself  but I'm
  wondering what language to use in order to get
  my UTM configurable from a web browser.
  any pointers or help are welcome.
  
  Thanks in advance.
 
 What IS an UTM?

Marketing :) First start with good design, see for example series about
tunneling from corporate network on undeadly.org

jirib



Re: openbsd 4.9 based UTM

2011-07-19 Thread Andres Perera
On Tue, Jul 19, 2011 at 6:04 AM, citoyen citoyen cccito...@gmail.com wrote:
 Hi,
 I'm about starting a project of building my own High secure UTM based on
the
 last openbsd flower 4.9,
 i can do all system and network configs B needed by myself B but I'm
wondering
 what language to use in order to get
 my UTM configurable from a web browser.
 any pointers or help are welcome.


i built a similar UTM project using openbsd as firewall and freedos
for fileserver (raw device access is way faster than mucking around in
userland)

the web interface should be coded in js

js would generate m4 macros that generate pf rules, spamd rules, etc

low complexity:

js - m4 - pf preprocessor - pf

the m4 macros look like this:

divert(-1)

define(`pu',`pushdef($@)')
define(`po',`popdef($@)')

define(`m4pf_blockrule',
`p(`P', `$1')'
`p(`F', `$2')'
`p(`T', `$3')'
`block proto P from F to T'`'
`po(`P',`F',`T')')

divert(0)dnl

the idea is to replicate the pf.conf syntax in m4 and js so that i can
use the webinterface to do the configuration and users don't need to
learn pf.conf, but they need to learn my interface instead. i thought
of just serving the contents of pf.conf initially, but that's too
complicated and you've seem to have discarded that anyway



Re: Bug Tracking system does not work

2011-07-19 Thread Paul Suh
On Jul 18, 2011, at 6:24 PM, Ted Unangst wrote:

 On Mon, Jul 18, 2011, Sergey Bronnikov wrote:
 may be proper link is http://www.openbsd.org/query-pr.html
 
 The bug tracker is down and will still that way for some time.

Ted,

Is there something that we can do to help? 


--Paul



 
 
 On 17:28 Mon 18 Jul , ciscoad...@mail.ru wrote:
 Hello.
 
 Today I tried to search in the Bug Tracking system
 but got:
 
 Not Found
 The requested URL /cgi-bin/query-pr-wrapper was not found on this server.
 
 Apache/1.3.29 Server at cvs.openbsd.org Port 80

[demime 1.01d removed an attachment of type application/pkcs7-signature which 
had a name of smime.p7s]



Is there a kernel walkthough for newbies?

2011-07-19 Thread Billy Wong
Hi everybody,

Just wondering if there are some documentations telling a newbie his
whereabouts in the kernel? It doesnt need to be an extensive line-by-line or
file-by-file treatment but something at a higher level of the general design
and architecture approach.

thanks and regards,

bill



Re: Is there a kernel walkthough for newbies?

2011-07-19 Thread Stuart Henderson
On 2011-07-19, Billy Wong bi...@tube-fish.net wrote:
 Hi everybody,

 Just wondering if there are some documentations telling a newbie his
 whereabouts in the kernel? It doesnt need to be an extensive line-by-line or
 file-by-file treatment but something at a higher level of the general design
 and architecture approach.

 thanks and regards,

 bill



http://www.atmnis.com/~proger/openkyiv/openkyiv2009_proger_sys.pdf



OpenBSD 4.8 weird time or cron problems

2011-07-19 Thread Marcos Laufer

Hello list, i am having strange issues with openbsd 4.8 and cron .

This is a OpenBSD 4.8 with it's kernel modified to have pci.c rev 1.72 , 
in order to make it run on a IBM x336 server.
Everything was working perfect. Until i added today a new user. Then i 
used vipw to change it's group.
After that i noticed that my hourly script configured at cron was not 
being executed. When i looked the messages log i saw this:


Jul 19 02:00:01 srv syslogd: restart
Jul 19 04:00:01 srv syslogd: restart
Jul 19 06:00:01 srv syslogd: restart
Jul 19 08:00:01 srv syslogd: restart
Jul 19 10:00:01 srv syslogd: restart
Jul 19 13:51:44 srv sendmail: /etc/pwd.db: No such file or directory
Jul 19 13:52:25 srv last message repeated 14 times
Jul 19 13:54:29 srv last message repeated 48 times
Jul 19 14:00:01 srv last message repeated 159 times
Jul 19 11:00:01 srv syslogd: restart
Jul 19 14:00:10 srv sendmail: /etc/pwd.db: No such file or directory
Jul 19 14:00:40 srv last message repeated 20 times
Jul 19 14:02:39 srv last message repeated 54 times
Jul 19 14:12:29 srv last message repeated 263 times
Jul 19 14:22:37 srv last message repeated 238 times
Jul 19 14:32:41 srv last message repeated 298 times
Jul 19 14:42:40 srv last message repeated 250 times
Jul 19 14:52:40 srv last message repeated 216 times
Jul 19 14:59:58 srv last message repeated 129 times
Jul 19 12:00:01 srv syslogd: restart
Jul 19 15:00:08 srv sendmail: /etc/pwd.db: No such file or directory
Jul 19 15:00:39 srv last message repeated 13 times
Jul 19 15:02:29 srv last message repeated 46 times
Jul 19 15:12:45 srv last message repeated 200 times
Jul 19 15:20:20 srv last message repeated 164 times

Notice how time jumps after 10:00am . Notice after 14:00 that when 
syslog restarts it shows 11:00 , the right time. .


I added the pwd.db and localtime into postfix's etc. I also started ntpd 
to set time . No difference with cron, it does not run it's hourly 
process anymore


Date looks fine when i look at it:
# date
Tue Jul 19 12:29:03 ART 2011

But cron does not execute it's processes anymore. Any help will be 
appreciated!



Here is dmesg:
OpenBSD 4.8-stable (GENERIC.MP) #1: Fri Jan 21 16:23:35 ART 2011
   root@srv:/usr/src/sys/arch/i386/compile/GENERIC.MP
cpu0: Intel(R) Xeon(TM) CPU 3.20GHz (GenuineIntel 686-class) 3.21 GHz
cpu0: 
FPU,V86,DE,PSE,TSC,MSR,PAE,MCE,CX8,APIC,SEP,MTRR,PGE,MCA,CMOV,PAT,PSE36,CFLUSH,DS,ACPI,MMX,FXSR,SSE,SSE2,SS,HTT,TM,SBF,S

SE3,MWAIT,DS-CPL,CNXT-ID,CX16,xTPR
real mem  = 2146832384 (2047MB)
avail mem = 2101727232 (2004MB)
mainbus0 at root
bios0 at mainbus0: AT/286+ BIOS, date 11/30/05, BIOS32 rev. 0 @ 0xfd6f1, 
SMBIOS rev. 2.3 @ 0xf5eea (52 entries)

bios0: vendor IBM version -[APE130AUS-1.12]- date 11/30/2005
bios0: IBM eserver xSeries 336 -[883725U]-
acpi0 at bios0: rev 2
acpi0: sleep states S0 S4 S5
acpi0: tables DSDT FACP APIC MCFG
acpi0: wakeup devices PCI0(S5)
acpitimer0 at acpi0: 3579545 Hz, 24 bits
acpimadt0 at acpi0 addr 0xfee0: PC-AT compat
cpu0 at mainbus0: apid 0 (boot processor)
cpu0: apic clock running at 200MHz
cpu1 at mainbus0: apid 6 (application processor)
cpu1: Intel(R) Xeon(TM) CPU 3.20GHz (GenuineIntel 686-class) 3.21 GHz
cpu1: 
FPU,V86,DE,PSE,TSC,MSR,PAE,MCE,CX8,APIC,SEP,MTRR,PGE,MCA,CMOV,PAT,PSE36,CFLUSH,DS,ACPI,MMX,FXSR,SSE,SSE2,SS,HTT,TM,SBF,S

SE3,MWAIT,DS-CPL,CNXT-ID,CX16,xTPR
cpu2 at mainbus0: apid 1 (application processor)
cpu2: Intel(R) Xeon(TM) CPU 3.20GHz (GenuineIntel 686-class) 3.21 GHz
cpu2: 
FPU,V86,DE,PSE,TSC,MSR,PAE,MCE,CX8,APIC,SEP,MTRR,PGE,MCA,CMOV,PAT,PSE36,CFLUSH,DS,ACPI,MMX,FXSR,SSE,SSE2,SS,HTT,TM,SBF,S

SE3,MWAIT,DS-CPL,CNXT-ID,CX16,xTPR
cpu3 at mainbus0: apid 7 (application processor)
cpu3: Intel(R) Xeon(TM) CPU 3.20GHz (GenuineIntel 686-class) 3.21 GHz
cpu3: 
FPU,V86,DE,PSE,TSC,MSR,PAE,MCE,CX8,APIC,SEP,MTRR,PGE,MCA,CMOV,PAT,PSE36,CFLUSH,DS,ACPI,MMX,FXSR,SSE,SSE2,SS,HTT,TM,SBF,S

SE3,MWAIT,DS-CPL,CNXT-ID,CX16,xTPR
ioapic0 at mainbus0: apid 14 pa 0xfec0, version 20, 24 pins
ioapic1 at mainbus0: apid 13 pa 0xfec82000, version 20, 24 pins
ioapic2 at mainbus0: apid 12 pa 0xfec82400, version 20, 24 pins
acpiprt0 at acpi0: bus 4 (PCI2)
acpiprt1 at acpi0: bus 5 (PCI3)
acpiprt2 at acpi0: bus 1 (PCIS)
acpiprt3 at acpi0: bus 0 (PCI0)
acpicpu0 at acpi0
acpicpu1 at acpi0
acpicpu2 at acpi0
acpicpu3 at acpi0
bios0: ROM list: 0xc/0xb000 0xcb000/0x1600 0xcc600/0x4000
ipmi at mainbus0 not configured
pci0 at mainbus0 bus 0: configuration mode 1 (bios)
mem address conflict 0xff00/0x1000
pchb0 at pci0 dev 0 function 0 Intel E7520 Host rev 0x0c
Intel E7520 Error Reporting rev 0x0c at pci0 dev 0 function 1 not 
configured

ppb0 at pci0 dev 2 function 0 Intel E7520 PCIE rev 0x0c
pci1 at ppb0 bus 2
ppb1 at pci0 dev 4 function 0 Intel E7520 PCIE rev 0x0c
pci2 at ppb1 bus 3
ppb2 at pci2 dev 0 function 0 Intel PCIE-PCIE rev 0x09
pci3 at ppb2 bus 4
mpi0 at pci3 dev 1 function 0 Symbios Logic 53c1030 rev 0x08: apic 13 
int 4 (irq 11)

scsibus0 at mpi0: 16 targets, initiator 7
sd0 at scsibus0 targ 0 lun 0: 

Re: OpenBSD 5.0-beta non-free firmware

2011-07-19 Thread Kenneth R Westerback
On Tue, Jul 19, 2011 at 02:54:02PM +0400, Wesley MOUEDINE ASSABY wrote:
 Hi,
 
 I just installed a fresh snapshot 5.0-beta, i noticed at the end of
 installation a new feature :
 Install non-free firmwares on first boot, what is it exactly ?
 As an aside, installation is always clear, simple, very good jobs !!
 
 cheers,
 
 Wesley M.
 

This option will download and install firmware files for things
like wireless chips, files that due to licensing issues the companies
involved forbid OpenBSD from distributing as part of the OpenBSD
sets.

Is this a stupid thing for them to do? Yes.

 Ken



Problems with a postfix server.

2011-07-19 Thread John Tate
I am setting up a small scale postfix server and the system it resides
on is directly connected
to the internet and has an internet ip. Currently the system is a lone
VPS and lone mailserver
(hopefully) for my domain. I have got the Postfix server running but
avoided using MySQL but
I cannot seem to get emails to relay properly. I want to get my own
Postfix/Courier-IMAP mail
server running. I do not care about SASL because the installation will
be using ssh tunnels.

I could not find anywhere on the Internet an example of an
/etc/postfix/mail.cf which is specific-
ally for a system which is directly connected to the Internet and uses
an existing pf firewall
configuration. Providing my own mail services is very important but I
am so far unfamiliar with
Postfix servers.

Contact me if you need information about my existing configuration for
the Postfix server.

--

Website: http://johntate.org
Facebook: http://facebook.com/john.n.tate
John Tate



update: OpenBSD 4.8 weird time or cron problems

2011-07-19 Thread Marcos Laufer
I noticed that this was sent by email by cron when attempted to execute 
the process:


 Your Terminal type is unknown!

 Enter a terminal type: [vt100]

Why? i don't know. I added TERM=220 into root's crontab and it worked. 
The thing is that it never needed it .. why now it does?


Regards,



Marcos Laufer wrote:

Hello list, i am having strange issues with openbsd 4.8 and cron .

This is a OpenBSD 4.8 with it's kernel modified to have pci.c rev 1.72 
, in order to make it run on a IBM x336 server.
Everything was working perfect. Until i added today a new user. Then i 
used vipw to change it's group.
After that i noticed that my hourly script configured at cron was not 
being executed. When i looked the messages log i saw this:


Jul 19 02:00:01 srv syslogd: restart
Jul 19 04:00:01 srv syslogd: restart
Jul 19 06:00:01 srv syslogd: restart
Jul 19 08:00:01 srv syslogd: restart
Jul 19 10:00:01 srv syslogd: restart
Jul 19 13:51:44 srv sendmail: /etc/pwd.db: No such file or directory
Jul 19 13:52:25 srv last message repeated 14 times
Jul 19 13:54:29 srv last message repeated 48 times
Jul 19 14:00:01 srv last message repeated 159 times
Jul 19 11:00:01 srv syslogd: restart
Jul 19 14:00:10 srv sendmail: /etc/pwd.db: No such file or directory
Jul 19 14:00:40 srv last message repeated 20 times
Jul 19 14:02:39 srv last message repeated 54 times
Jul 19 14:12:29 srv last message repeated 263 times
Jul 19 14:22:37 srv last message repeated 238 times
Jul 19 14:32:41 srv last message repeated 298 times
Jul 19 14:42:40 srv last message repeated 250 times
Jul 19 14:52:40 srv last message repeated 216 times
Jul 19 14:59:58 srv last message repeated 129 times
Jul 19 12:00:01 srv syslogd: restart
Jul 19 15:00:08 srv sendmail: /etc/pwd.db: No such file or directory
Jul 19 15:00:39 srv last message repeated 13 times
Jul 19 15:02:29 srv last message repeated 46 times
Jul 19 15:12:45 srv last message repeated 200 times
Jul 19 15:20:20 srv last message repeated 164 times

Notice how time jumps after 10:00am . Notice after 14:00 that when 
syslog restarts it shows 11:00 , the right time. .


I added the pwd.db and localtime into postfix's etc. I also started 
ntpd to set time . No difference with cron, it does not run it's 
hourly process anymore


Date looks fine when i look at it:
# date
Tue Jul 19 12:29:03 ART 2011

But cron does not execute it's processes anymore. Any help will be 
appreciated!



Here is dmesg:
OpenBSD 4.8-stable (GENERIC.MP) #1: Fri Jan 21 16:23:35 ART 2011
   root@srv:/usr/src/sys/arch/i386/compile/GENERIC.MP
cpu0: Intel(R) Xeon(TM) CPU 3.20GHz (GenuineIntel 686-class) 3.21 GHz
cpu0: 
FPU,V86,DE,PSE,TSC,MSR,PAE,MCE,CX8,APIC,SEP,MTRR,PGE,MCA,CMOV,PAT,PSE36,CFLUSH,DS,ACPI,MMX,FXSR,SSE,SSE2,SS,HTT,TM,SBF,S 


SE3,MWAIT,DS-CPL,CNXT-ID,CX16,xTPR
real mem  = 2146832384 (2047MB)
avail mem = 2101727232 (2004MB)
mainbus0 at root
bios0 at mainbus0: AT/286+ BIOS, date 11/30/05, BIOS32 rev. 0 @ 
0xfd6f1, SMBIOS rev. 2.3 @ 0xf5eea (52 entries)

bios0: vendor IBM version -[APE130AUS-1.12]- date 11/30/2005
bios0: IBM eserver xSeries 336 -[883725U]-
acpi0 at bios0: rev 2
acpi0: sleep states S0 S4 S5
acpi0: tables DSDT FACP APIC MCFG
acpi0: wakeup devices PCI0(S5)
acpitimer0 at acpi0: 3579545 Hz, 24 bits
acpimadt0 at acpi0 addr 0xfee0: PC-AT compat
cpu0 at mainbus0: apid 0 (boot processor)
cpu0: apic clock running at 200MHz
cpu1 at mainbus0: apid 6 (application processor)
cpu1: Intel(R) Xeon(TM) CPU 3.20GHz (GenuineIntel 686-class) 3.21 GHz
cpu1: 
FPU,V86,DE,PSE,TSC,MSR,PAE,MCE,CX8,APIC,SEP,MTRR,PGE,MCA,CMOV,PAT,PSE36,CFLUSH,DS,ACPI,MMX,FXSR,SSE,SSE2,SS,HTT,TM,SBF,S 


SE3,MWAIT,DS-CPL,CNXT-ID,CX16,xTPR
cpu2 at mainbus0: apid 1 (application processor)
cpu2: Intel(R) Xeon(TM) CPU 3.20GHz (GenuineIntel 686-class) 3.21 GHz
cpu2: 
FPU,V86,DE,PSE,TSC,MSR,PAE,MCE,CX8,APIC,SEP,MTRR,PGE,MCA,CMOV,PAT,PSE36,CFLUSH,DS,ACPI,MMX,FXSR,SSE,SSE2,SS,HTT,TM,SBF,S 


SE3,MWAIT,DS-CPL,CNXT-ID,CX16,xTPR
cpu3 at mainbus0: apid 7 (application processor)
cpu3: Intel(R) Xeon(TM) CPU 3.20GHz (GenuineIntel 686-class) 3.21 GHz
cpu3: 
FPU,V86,DE,PSE,TSC,MSR,PAE,MCE,CX8,APIC,SEP,MTRR,PGE,MCA,CMOV,PAT,PSE36,CFLUSH,DS,ACPI,MMX,FXSR,SSE,SSE2,SS,HTT,TM,SBF,S 


SE3,MWAIT,DS-CPL,CNXT-ID,CX16,xTPR
ioapic0 at mainbus0: apid 14 pa 0xfec0, version 20, 24 pins
ioapic1 at mainbus0: apid 13 pa 0xfec82000, version 20, 24 pins
ioapic2 at mainbus0: apid 12 pa 0xfec82400, version 20, 24 pins
acpiprt0 at acpi0: bus 4 (PCI2)
acpiprt1 at acpi0: bus 5 (PCI3)
acpiprt2 at acpi0: bus 1 (PCIS)
acpiprt3 at acpi0: bus 0 (PCI0)
acpicpu0 at acpi0
acpicpu1 at acpi0
acpicpu2 at acpi0
acpicpu3 at acpi0
bios0: ROM list: 0xc/0xb000 0xcb000/0x1600 0xcc600/0x4000
ipmi at mainbus0 not configured
pci0 at mainbus0 bus 0: configuration mode 1 (bios)
mem address conflict 0xff00/0x1000
pchb0 at pci0 dev 0 function 0 Intel E7520 Host rev 0x0c
Intel E7520 Error Reporting rev 0x0c at pci0 dev 0 function 1 not 
configured

ppb0 at pci0 dev 2 function 0 Intel E7520 PCIE rev 0x0c

Re: Bug Tracking system does not work

2011-07-19 Thread Ted Unangst
On Tue, Jul 19, 2011, Paul Suh wrote:
 On Jul 18, 2011, at 6:24 PM, Ted Unangst wrote:
 
 On Mon, Jul 18, 2011, Sergey Bronnikov wrote:
 may be proper link is http://www.openbsd.org/query-pr.html

 The bug tracker is down and will still that way for some time.
 
 Ted,
 
 Is there something that we can do to help?

Write a bug tracker that doesn't suck.

Suggestions about existing bug trackers that don't suck aren't helpful,
however, because obviously, if it didn't suck we'd already be using it,
ergo it does suck.



Re: Problems with a postfix server.

2011-07-19 Thread Wesley MOUEDINE ASSABY
Hi,

Why don't you use this : http://mailserv.github.com/
It is perfect as an OpenBSD Mailserver; With roundcube Webmail inside ;-)

Wesley MOUEDINE ASSABY
www.e-solutions.re
www.mouedine.net


On Wed, 20 Jul 2011 02:00:57 +1000, John Tate j...@johntate.org wrote:
 I am setting up a small scale postfix server and the system it resides
 on is directly connected
 to the internet and has an internet ip. Currently the system is a lone
 VPS and lone mailserver
 (hopefully) for my domain. I have got the Postfix server running but
 avoided using MySQL but
 I cannot seem to get emails to relay properly. I want to get my own
 Postfix/Courier-IMAP mail
 server running. I do not care about SASL because the installation will
 be using ssh tunnels.
 
 I could not find anywhere on the Internet an example of an
 /etc/postfix/mail.cf which is specific-
 ally for a system which is directly connected to the Internet and uses
 an existing pf firewall
 configuration. Providing my own mail services is very important but I
 am so far unfamiliar with
 Postfix servers.
 
 Contact me if you need information about my existing configuration for
 the Postfix server.
 
 --
 
 Website: http://johntate.org
 Facebook: http://facebook.com/john.n.tate
 John Tate



update2: update: OpenBSD 4.8 weird time or cron problems

2011-07-19 Thread Marcos Laufer
oh, i am still seeing this on message. btw , i use postfix and i copied 
pwd.db to it's /etc folder


Jul 19 15:43:16 srv last message repeated 237 times
Jul 19 15:53:13 srv last message repeated 288 times
Jul 19 15:59:58 srv last message repeated 222 times
Jul 19 13:00:01 srv syslogd: restart
Jul 19 16:00:14 srv sendmail: /etc/pwd.db: No such file or directory
Jul 19 16:00:50 srv last message repeated 15 times
Jul 19 16:02:51 srv last message repeated 62 times
Jul 19 16:05:05 srv last message repeated 57 times


Marcos Laufer wrote:
I noticed that this was sent by email by cron when attempted to 
execute the process:


 Your Terminal type is unknown!

 Enter a terminal type: [vt100]

Why? i don't know. I added TERM=220 into root's crontab and it worked. 
The thing is that it never needed it .. why now it does?


Regards,



Marcos Laufer wrote:

Hello list, i am having strange issues with openbsd 4.8 and cron .

This is a OpenBSD 4.8 with it's kernel modified to have pci.c rev 
1.72 , in order to make it run on a IBM x336 server.
Everything was working perfect. Until i added today a new user. Then 
i used vipw to change it's group.
After that i noticed that my hourly script configured at cron was not 
being executed. When i looked the messages log i saw this:


Jul 19 02:00:01 srv syslogd: restart
Jul 19 04:00:01 srv syslogd: restart
Jul 19 06:00:01 srv syslogd: restart
Jul 19 08:00:01 srv syslogd: restart
Jul 19 10:00:01 srv syslogd: restart
Jul 19 13:51:44 srv sendmail: /etc/pwd.db: No such file or directory
Jul 19 13:52:25 srv last message repeated 14 times
Jul 19 13:54:29 srv last message repeated 48 times
Jul 19 14:00:01 srv last message repeated 159 times
Jul 19 11:00:01 srv syslogd: restart
Jul 19 14:00:10 srv sendmail: /etc/pwd.db: No such file or directory
Jul 19 14:00:40 srv last message repeated 20 times
Jul 19 14:02:39 srv last message repeated 54 times
Jul 19 14:12:29 srv last message repeated 263 times
Jul 19 14:22:37 srv last message repeated 238 times
Jul 19 14:32:41 srv last message repeated 298 times
Jul 19 14:42:40 srv last message repeated 250 times
Jul 19 14:52:40 srv last message repeated 216 times
Jul 19 14:59:58 srv last message repeated 129 times
Jul 19 12:00:01 srv syslogd: restart
Jul 19 15:00:08 srv sendmail: /etc/pwd.db: No such file or directory
Jul 19 15:00:39 srv last message repeated 13 times
Jul 19 15:02:29 srv last message repeated 46 times
Jul 19 15:12:45 srv last message repeated 200 times
Jul 19 15:20:20 srv last message repeated 164 times

Notice how time jumps after 10:00am . Notice after 14:00 that when 
syslog restarts it shows 11:00 , the right time. .


I added the pwd.db and localtime into postfix's etc. I also started 
ntpd to set time . No difference with cron, it does not run it's 
hourly process anymore


Date looks fine when i look at it:
# date
Tue Jul 19 12:29:03 ART 2011

But cron does not execute it's processes anymore. Any help will be 
appreciated!



Here is dmesg:
OpenBSD 4.8-stable (GENERIC.MP) #1: Fri Jan 21 16:23:35 ART 2011
   root@srv:/usr/src/sys/arch/i386/compile/GENERIC.MP
cpu0: Intel(R) Xeon(TM) CPU 3.20GHz (GenuineIntel 686-class) 3.21 GHz
cpu0: 
FPU,V86,DE,PSE,TSC,MSR,PAE,MCE,CX8,APIC,SEP,MTRR,PGE,MCA,CMOV,PAT,PSE36,CFLUSH,DS,ACPI,MMX,FXSR,SSE,SSE2,SS,HTT,TM,SBF,S 


SE3,MWAIT,DS-CPL,CNXT-ID,CX16,xTPR
real mem  = 2146832384 (2047MB)
avail mem = 2101727232 (2004MB)
mainbus0 at root
bios0 at mainbus0: AT/286+ BIOS, date 11/30/05, BIOS32 rev. 0 @ 
0xfd6f1, SMBIOS rev. 2.3 @ 0xf5eea (52 entries)

bios0: vendor IBM version -[APE130AUS-1.12]- date 11/30/2005
bios0: IBM eserver xSeries 336 -[883725U]-
acpi0 at bios0: rev 2
acpi0: sleep states S0 S4 S5
acpi0: tables DSDT FACP APIC MCFG
acpi0: wakeup devices PCI0(S5)
acpitimer0 at acpi0: 3579545 Hz, 24 bits
acpimadt0 at acpi0 addr 0xfee0: PC-AT compat
cpu0 at mainbus0: apid 0 (boot processor)
cpu0: apic clock running at 200MHz
cpu1 at mainbus0: apid 6 (application processor)
cpu1: Intel(R) Xeon(TM) CPU 3.20GHz (GenuineIntel 686-class) 3.21 GHz
cpu1: 
FPU,V86,DE,PSE,TSC,MSR,PAE,MCE,CX8,APIC,SEP,MTRR,PGE,MCA,CMOV,PAT,PSE36,CFLUSH,DS,ACPI,MMX,FXSR,SSE,SSE2,SS,HTT,TM,SBF,S 


SE3,MWAIT,DS-CPL,CNXT-ID,CX16,xTPR
cpu2 at mainbus0: apid 1 (application processor)
cpu2: Intel(R) Xeon(TM) CPU 3.20GHz (GenuineIntel 686-class) 3.21 GHz
cpu2: 
FPU,V86,DE,PSE,TSC,MSR,PAE,MCE,CX8,APIC,SEP,MTRR,PGE,MCA,CMOV,PAT,PSE36,CFLUSH,DS,ACPI,MMX,FXSR,SSE,SSE2,SS,HTT,TM,SBF,S 


SE3,MWAIT,DS-CPL,CNXT-ID,CX16,xTPR
cpu3 at mainbus0: apid 7 (application processor)
cpu3: Intel(R) Xeon(TM) CPU 3.20GHz (GenuineIntel 686-class) 3.21 GHz
cpu3: 
FPU,V86,DE,PSE,TSC,MSR,PAE,MCE,CX8,APIC,SEP,MTRR,PGE,MCA,CMOV,PAT,PSE36,CFLUSH,DS,ACPI,MMX,FXSR,SSE,SSE2,SS,HTT,TM,SBF,S 


SE3,MWAIT,DS-CPL,CNXT-ID,CX16,xTPR
ioapic0 at mainbus0: apid 14 pa 0xfec0, version 20, 24 pins
ioapic1 at mainbus0: apid 13 pa 0xfec82000, version 20, 24 pins
ioapic2 at mainbus0: apid 12 pa 0xfec82400, version 20, 24 pins
acpiprt0 at acpi0: bus 4 (PCI2)

Re: Bug Tracking system does not work

2011-07-19 Thread Amit Kulkarni
 may be proper link is http://www.openbsd.org/query-pr.html

 The bug tracker is down and will still that way for some time.

 Ted,

 Is there something that we can do to help?

 Write a bug tracker that doesn't suck.

 Suggestions about existing bug trackers that don't suck aren't helpful,
 however, because obviously, if it didn't suck we'd already be using it,
 ergo it does suck.

http://openports.se/www/rt
?
written in perl.



Re: Bug Tracking system does not work

2011-07-19 Thread Johan Beisser
On Tue, Jul 19, 2011 at 9:57 AM, Amit Kulkarni amitk...@gmail.com wrote:


 http://openports.se/www/rt
 ?
 written in perl.

As someone who uses this for ticket tracking, let me be the first to
say it's terrible.



Re: sysmerge doesn't work on snapshot upgrade (FIXED)

2011-07-19 Thread Remco
On Tuesday 12 July 2011 21:19:15 you wrote:
 On Tue, 12 Jul 2011, Remco wrote:
  During a snapshot upgrade for both i386 and amd64
 
  OpenBSD 4.9-current (GENERIC.MP) #10: Mon Jul 11 12:31:05 MDT 2011
  dera...@i386.openbsd.org:/usr/src/sys/arch/i386/compile/GENERIC.MP
 
  OpenBSD 4.9-current (GENERIC.MP) #19: Mon Jul 11 12:20:24 MDT 2011
  dera...@amd64.openbsd.org:/usr/src/sys/arch/amd64/compile/GENERIC.MP
 
  the option to run sysmerge at the end doesn't work:
 
  Merge the new etc/xetc install sets using sysmerge(8)? [no] yes
  ftp: Can't open file ///mnt2/4.9/amd64/etc49.tgz: No such file or
  directory
  ftp: Can't open file ///mnt2/4.9/amd64/xetc49.tgz: No such file or
  directory
  *** ERROR: please specify a valid path to src or (x)etcXX.tgz
  usage: sysmerge [-bd] [-s [src | etcXX.tgz]] [-x xetcXX.tgz]
 

I (re)tried an upgrade on i386 and everything appears to work just fine:
OpenBSD 5.0-beta (GENERIC.MP) #19: Mon Jul 18 15:37:10 MDT 2011
dera...@i386.openbsd.org:/usr/src/sys/arch/i386/compile/GENERIC.MP

thanks Antoine



asymmetric CARP firewall layout

2011-07-19 Thread Joerg Streckfuss
Hi list,

i have the following testsetup with four firewall nodes connected to three 
networks:


  network A
   |--|
  || CARP ||
  ||  ||
   +--+--+  +--+--++--+--+  +--+--+
   | fw1 |  | fw2 || fw3 |  | fw4 |
   +--+--+  +--+--++--+--+  +--+--+
  ||  ||
  |  CARP  |  |  CARP  |
   |--||--|
   network B   network C


As you can see all four nodes are connected to network A but only fw1 and fw2
are connected to network B. On the other side only fw3 and fw4 are connected to
network C.

For network A all nodes form a CARP cluster. The order of priority for which
node is in master mode is: fw1 - fw2 - fw3 - fw4.
For network B fw1 and fw2 form a CARP cluster and order of priority is fw1 -
fw2. And last but not least for network C fw3 and fw4 form a CARP cluster and
order of priority is fw3 - fw4. Preempting is active on all nodes.

The point which gives me a headache is that normaly fw3 is master for network C
but backup for network A. Not very suprising.
I know this is a very uncommon setup but it works for me for many days know.
A failover to node fw3 respectively fw4 on network A performs as expected.
Are there any possible site effects i have overlooked.

Many thanks in advance,

Joerg



Re: Bug Tracking system does not work

2011-07-19 Thread Mikael Österdahl
Terrible? In what way? I use it in my work and I think it works great.

What ticket software do you think is better?

/Mikael

2011/7/19 Johan Beisser j...@caustic.org:
 On Tue, Jul 19, 2011 at 9:57 AM, Amit Kulkarni amitk...@gmail.com wrote:


 http://openports.se/www/rt
 ?
 written in perl.

 As someone who uses this for ticket tracking, let me be the first to
 say it's terrible.



Re: Bug Tracking system does not work

2011-07-19 Thread Johan Beisser
2011/7/19 Mikael Vsterdahl m.osterd...@gmail.com:
 Terrible? In what way? I use it in my work and I think it works great.

 What ticket software do you think is better?

I don't have one. I think they all suck equally.



Creating route tables

2011-07-19 Thread Josh Hoppes
I'm trying to configure bgpd to run in an alternate routing table so I
can use it to manage black holed prefixes. When trying to specify an
alternate routing table I get the error message rtable id 1 does not
exist when starting bgpd. I've gone through route(8) and route(4) but
can't find any information on creating a routing table. My attempts at
creating by just adding a prefix appear to be of no use. I'm sure I
missed something in the documentation and I would appreciate any hints
people can provide.

This is on OpenBSD 4.9 GENERIC.MP#819 amd64

Basic bgpd.conf I'm using

# global configuration
AS 65100
fib-update no
route-collector yes
holdtime 10

# Alternate Routing Table
rtable 1

Error output from bgpd:

# bgpd -vnf bgpd.conf
bgpd.conf:8: rtable id 1 does not exist

error output from route:

# route -T 1 add -inet 192.168.0.0/24 127.0.0.1
route: routing table 1: No such file or directory

Thanks in advance, and sorry for the noise.



Re: OpenBSD 5.0-beta non-free firmware

2011-07-19 Thread patrick keshishian
On Tue, Jul 19, 2011 at 6:15 AM, Kenneth R Westerback
kwesterb...@rogers.com wrote:
 On Tue, Jul 19, 2011 at 02:54:02PM +0400, Wesley MOUEDINE ASSABY wrote:
 Hi,

 I just installed a fresh snapshot 5.0-beta, i noticed at the end of
 installation a new feature :
 Install non-free firmwares on first boot, what is it exactly ?
 As an aside, installation is always clear, simple, very good jobs !!

 cheers,

 Wesley M.


 This option will download and install firmware files for things

download from?

--patrick




 like wireless chips, files that due to licensing issues the companies
 involved forbid OpenBSD from distributing as part of the OpenBSD
 sets.

 Is this a stupid thing for them to do? Yes.

  Ken



Re: Bug Tracking system does not work

2011-07-19 Thread Amit Kulkarni
 Terrible? In what way? I use it in my work and I think it works great.

 What ticket software do you think is better?

 I don't have one. I think they all suck equally.

Can you elaborate? Where they suck?



Re: OpenBSD 5.0-beta non-free firmware

2011-07-19 Thread David Coppa
On Tue, Jul 19, 2011 at 8:32 PM, patrick keshishian pkesh...@gmail.com wrote:

 download from?

http://firmware.openbsd.org/firmware/



Re: OpenBSD 5.0-beta non-free firmware

2011-07-19 Thread Ingo Schwarze
Hi Patrick,

patrick keshishian wrote on Tue, Jul 19, 2011 at 11:32:42AM -0700:
 On Tue, Jul 19, 2011 at 6:15 AM, Kenneth R Westerback wrote:

 This option will download and install firmware files for things

 download from?

 $ less `which fw_update`   # and type /PKG_
 $ man fw_update

Yours,
  Ingo



Re: OpenBSD 5.0-beta non-free firmware

2011-07-19 Thread patrick keshishian
On Tue, Jul 19, 2011 at 11:43 AM, David Coppa dco...@gmail.com wrote:
 On Tue, Jul 19, 2011 at 8:32 PM, patrick keshishian pkesh...@gmail.com 
 wrote:

 download from?

 http://firmware.openbsd.org/firmware/

That's what I was wondering. Is this not considered distribution?
(realizing I might be poking at a hornet's nest).

--patrick



Re: OpenBSD 5.0-beta non-free firmware

2011-07-19 Thread patrick keshishian
On Tue, Jul 19, 2011 at 11:49 AM, Ingo Schwarze schwa...@usta.de wrote:
 Hi Patrick,

 patrick keshishian wrote on Tue, Jul 19, 2011 at 11:32:42AM -0700:
 On Tue, Jul 19, 2011 at 6:15 AM, Kenneth R Westerback wrote:

 This option will download and install firmware files for things

 download from?

  $ less `which fw_update`   # and type /PKG_
  $ man fw_update

Thanks Ingo. I'm a couple of months behind -current, unfortunately.

--patrick



Re: OpenBSD 5.0-beta non-free firmware

2011-07-19 Thread Chris Cappuccio
patrick keshishian [pkesh...@gmail.com] wrote:
 
 That's what I was wondering. Is this not considered distribution?
 (realizing I might be poking at a hornet's nest).

Stop distributing illegal firmware you pirate



Re: Bug Tracking system does not work

2011-07-19 Thread Johan Beisser
On Tue, Jul 19, 2011 at 11:38 AM, Amit Kulkarni amitk...@gmail.com wrote:

 Can you elaborate? Where they suck?

RT: written in perl, painful to upgrade (painful enough, that we've
not touched ours in over a year). Ugly interface, but that's the least
of its problems. Without a good way to manage users, access, or set up
quickly through the UI, it's easier to try to manipulate the DB
tables. Perhaps I'm just doing it wrong(tm). So far I've not had
enough time to really track upgrades easily or quickly, and haven't
had time to fix all the infrastructure that it sits on (MySQL, perl
versions, libs, etc) to ensure an upgrade goes cleanly. The biggest
advantage RT provides is easy creation of new tickets through email,
but it still takes a human on the other end to actually classify what
that ticket is. It's bad enough that at my work, we have a general
Operations email, that we then handle tickets in the ops group. It
wastes time, but it's easier than dealing with engineering misfiring a
ticket. Then there's creating sub-users of a larger account...

TRAC: nice integration with SVN, but still limited by a complex ACL
system and the fact SVN doesn't provide a good user management system
in itself, preferring system users (or PAM auth, LDAP, etc). Trouble
is that it's not a good general ticket tracking system, and breaks
just often enough to be annoying to admin. Given that I have to deal
with at work, I don't have time to babysit TRAC's stupid more often
than I care for. TRAC also suffers from trying to please a bunch of
different people with different needs at once. Is it floorwax or a
dessert topping? Wait, no, it's BOTH!

Bugzilla: Perl. OpenSource UI, backend of pain (MySQL, PostgreSQL, or
SQLite3!). I've not used it (administered) in a few years, but my
experience with it has never been close to what one would call
positive. Painful, breaks in weird ways, and sometimes just had
errors.

Haven't used Jira yet. So, I have no opinion.

I don't think bug tracking needs to be difficult, ugly, or annoying to
navigate. The problem is that every bug tracking utility is built to
solve problems for a large set of implementors. Not, say, solve one
specific need really well. Many violate the prime directive of dealing
with software and users: KISS.



Re: OpenBSD 5.0-beta non-free firmware

2011-07-19 Thread Kenneth R Westerback
On Tue, Jul 19, 2011 at 11:59:01AM -0700, patrick keshishian wrote:
 On Tue, Jul 19, 2011 at 11:43 AM, David Coppa dco...@gmail.com wrote:
  On Tue, Jul 19, 2011 at 8:32 PM, patrick keshishian pkesh...@gmail.com 
  wrote:
 
  download from?
 
  http://firmware.openbsd.org/firmware/
 
 That's what I was wondering. Is this not considered distribution?
 (realizing I might be poking at a hornet's nest).
 
 --patrick

Apparently not. Making the insistance of these companies that the
firmwares be licensed in a manner making it impossible to include them
in the OpenBSD sets look sillier and weirder. To a non-lawyer/non-mba
at least.

 Ken



Re: Bug Tracking system does not work

2011-07-19 Thread Nico Kadel-Garcia
On Tue, Jul 19, 2011 at 12:59 PM, Johan Beisser j...@caustic.org wrote:
 On Tue, Jul 19, 2011 at 9:57 AM, Amit Kulkarni amitk...@gmail.com wrote:


 http://openports.se/www/rt
 ?
 written in perl.

 As someone who uses this for ticket tracking, let me be the first to
 say it's terrible.

It takes significant, thoughtful re-organizaton and a saner workflow.

What would be considered to not suck? Stability? Security?
Flexibility? Reliable database on the back end? Ease of email
submissions for newbs?



Taller del Sistema SSPA de PEMEX, Participe y Mejore procesos.

2011-07-19 Thread Lic. Cecilia Lozano
[IMAGE]

Pms de Mixico Capacitacisn Efectiva de Mixico presenta:

Taller del Sistema SSPA: Sistema de Seguridad, Salud, Proteccisn
Ambiental de PEMEX.

27 de Julio, Ciudad de Mixico.Expositor: Mtro. Gerardo
Coronado L.10 horas de entrenamiento, Conozca los
beneficios de capacitarse con los mejores!Empresa
Registrada ante la STPS Reg. COLG640205CP30005Smguenos en
Twitter@pmscapacitacion o bien en Facebook PMS de Mixico

Solicite mas informacisn de este Seminario! Por favor
responda este e-mail con los datos siguientes.

Empresa:Nombre:
Telifono:
Email:
Nzmero de Interesados:
Y en breve le haremos llegar la informacisn completa del
evento. 
O bien comunmquense a nuestros telifonos  un ejecutivo
con gusto le atendera

Telifonos: (0133) 8851-2365, (0133) 8851-2741, (0133)
1589-6156.

Copyright (C) 2011, PMS Capacitacisn Efectiva de Mixico
 S.C. Derechos Reservados. PMS de Mixico, El logo de PMS
de Mixico son marcas registradas. ADVERTENCIA PMS de
Mixico no cuenta con alianzas estratigicas de ningzn tipo
dentro de la Republica Mexicana. NO SE DEJE ENGAQAR -
DIGA NO A LA PIRATERIA. Todos los logotipos, marcas
comerciales e imagenes son propiedad de sus respectivas
corporaciones y se utilizan con fines informativos
solamente. Este Mensaje ha sido enviado a
misc@openbsd.org como usuario de Pms de Mixico o bien un
usuario le refiris para recibir este boletmn.
Como usuario de Pms de Mixico, en este acto autoriza de
manera expresa que Pms de Mixico le puede contactar vma
correo electrsnico u otros medios.
Si usted ha recibido este mensaje por error, haga caso
omiso de el y reporte su cuenta respondiendo este correo
con el subject BAJAPEMEXUnsubscribe to this mailing list,
reply a blank message with the subject UNSUBSCRIBE
BAJAPEMEX
Tenga en cuenta que la gestisn de nuestras bases de datos
es de suma importancia y no es intencisn de la empresa la
inconformidad del receptor.

[demime 1.01d removed an attachment of type image/jpeg which had a name of 
plataforma pemex.jpg]



Re: OpenBSD 5.0-beta non-free firmware

2011-07-19 Thread Amit Kulkarni
  download from?
 
  http://firmware.openbsd.org/firmware/

 That's what I was wondering. Is this not considered distribution?
 (realizing I might be poking at a hornet's nest).

distribution is distributing to everybody, but if only those who want
firmware, download it, then its probably okay.

 Apparently not. Making the insistance of these companies that the
 firmwares be licensed in a manner making it impossible to include them
 in the OpenBSD sets look sillier and weirder. To a non-lawyer/non-mba
 at least.


probably not silly if you are a marketer. if they force somebody to
come to their website and maybe just click on to buy something. at
least that's what I figure.



Re: OpenBSD 5.0-beta non-free firmware

2011-07-19 Thread Kevin Chadwick
On Tue, 19 Jul 2011 15:30:32 -0500
Amit Kulkarni wrote:

 probably not silly if you are a marketer. if they force somebody to
 come to their website and maybe just click on to buy something. at
 least that's what I figure.

Doesn't help they're branding if you then associate that logo even a
little with distaste. Would probably take another 20 flashy adverts
without any product to fix the damage.



Re: Creating route tables

2011-07-19 Thread Insan Praja SW

Hi,

You missed rdomain.
On Wed, 20 Jul 2011 01:26:37 +0700, Josh Hoppes josh.hop...@gmail.com  
wrote:



I'm trying to configure bgpd to run in an alternate routing table so I
can use it to manage black holed prefixes. When trying to specify an
alternate routing table I get the error message rtable id 1 does not
exist when starting bgpd. I've gone through route(8) and route(4) but
can't find any information on creating a routing table. My attempts at
creating by just adding a prefix appear to be of no use. I'm sure I
missed something in the documentation and I would appreciate any hints
people can provide.

This is on OpenBSD 4.9 GENERIC.MP#819 amd64

Basic bgpd.conf I'm using

# global configuration
AS 65100
fib-update no
route-collector yes
holdtime 10

# Alternate Routing Table
rtable 1

Error output from bgpd:

# bgpd -vnf bgpd.conf
bgpd.conf:8: rtable id 1 does not exist

error output from route:

# route -T 1 add -inet 192.168.0.0/24 127.0.0.1
route: routing table 1: No such file or directory

Thanks in advance, and sorry for the noise.




--
Using Opera's revolutionary email client: http://www.opera.com/mail/



Re: Bug Tracking system does not work

2011-07-19 Thread Johan Beisser
On Tue, Jul 19, 2011 at 1:20 PM, Nico Kadel-Garcia nka...@gmail.com wrote:
 On Tue, Jul 19, 2011 at 12:59 PM, Johan Beisser j...@caustic.org wrote:

 It takes significant, thoughtful re-organizaton and a saner workflow.

Yes. It's non-trivial to make that happen as a default.

 What would be considered to not suck? Stability? Security?
 Flexibility? Reliable database on the back end? Ease of email
 submissions for newbs?

RT's stability is fine. It's a webapp with a database back end, and
the database is occasionally less than happy. Not a huge problem, sine
I can just bounce the DB if need be (it's MySQL, many problems are
fixed fairly quickly that way, I've learned).

For what it is, it works decently. It's flexible enough to work for
use in tracking trouble tickets, but it's been painful enough to
upgrade that I hesitate to run a newer version. Even if that newer
version might fix some of my UI issues.

To make it not suck:
- easy to extend, modify, or add in plugins for new features (no
patching, please)
- simple database schema, no dumping required to upgrade
- functional search
- merging of tickets
- automatically scheduled repeating tickets (heh)
- ability to make API calls to the ticket software (i sometimes want
to open/list/etc tickets remotely, without using the webt interface
directly)

You get the idea.



Re: asymmetric CARP firewall layout

2011-07-19 Thread Kapetanakis Giannis

On 19/07/11 20:03, Joerg Streckfuss wrote:

Hi list,

i have the following testsetup with four firewall nodes connected to three 
networks:


   network A
|--|
   || CARP ||
   ||  ||
+--+--+  +--+--++--+--+  +--+--+
| fw1 |  | fw2 || fw3 |  | fw4 |
+--+--+  +--+--++--+--+  +--+--+
   ||  ||
   |  CARP  |  |  CARP  |
|--||--|
network B   network C


As you can see all four nodes are connected to network A but only fw1 and fw2
are connected to network B. On the other side only fw3 and fw4 are connected to
network C.

For network A all nodes form a CARP cluster. The order of priority for which
node is in master mode is: fw1 -  fw2 -  fw3 -  fw4.
For network B fw1 and fw2 form a CARP cluster and order of priority is fw1 -
fw2. And last but not least for network C fw3 and fw4 form a CARP cluster and
order of priority is fw3 -  fw4. Preempting is active on all nodes.

The point which gives me a headache is that normaly fw3 is master for network C
but backup for network A. Not very suprising.
I know this is a very uncommon setup but it works for me for many days know.
A failover to node fw3 respectively fw4 on network A performs as expected.
Are there any possible site effects i have overlooked.

Many thanks in advance,

Joerg


If fw1 is master for network A, how do you route traffic from A to C?

I would put fw1  fw2 in CARP A1 and fw3  fw4 in CARP A2 (different 
vhid, different virt IP)

or make all firewalls listen on all networks (A,B,C) with no asymmetry.

regards,

Giannis



Re: Bug Tracking system does not work

2011-07-19 Thread STeve Andre'

On 07/19/11 12:27, Ted Unangst wrote:

On Tue, Jul 19, 2011, Paul Suh wrote:

On Jul 18, 2011, at 6:24 PM, Ted Unangst wrote:


On Mon, Jul 18, 2011, Sergey Bronnikov wrote:

may be proper link is http://www.openbsd.org/query-pr.html

The bug tracker is down and will still that way for some time.

Ted,

Is there something that we can do to help?

Write a bug tracker that doesn't suck.

Suggestions about existing bug trackers that don't suck aren't helpful,
however, because obviously, if it didn't suck we'd already be using it,
ergo it does suck.


Ted, Is it worth looking at the current system to see if the suck factor
can be vacuumed from it, or is it a hopeless case in your opinion?

--STeve Andre'



Re: Bug Tracking system does not work

2011-07-19 Thread Ted Unangst
On Tue, Jul 19, 2011, STeve Andre' wrote:
 On 07/19/11 12:27, Ted Unangst wrote:
 On Tue, Jul 19, 2011, Paul Suh wrote:
 On Jul 18, 2011, at 6:24 PM, Ted Unangst wrote:

 On Mon, Jul 18, 2011, Sergey Bronnikov wrote:
 may be proper link is http://www.openbsd.org/query-pr.html
 The bug tracker is down and will still that way for some time.
 Ted,

 Is there something that we can do to help?
 Write a bug tracker that doesn't suck.

 Suggestions about existing bug trackers that don't suck aren't helpful,
 however, because obviously, if it didn't suck we'd already be using it,
 ergo it does suck.

 Ted, Is it worth looking at the current system to see if the suck factor
 can be vacuumed from it, or is it a hopeless case in your opinion?

It is hard to imagine a bug tracker that could actually suck more than
gnats.  The current replacement, email bugs@ and search the marc.info
archives, is vastly superior.



Re: Bug Tracking system does not work

2011-07-19 Thread Nico Kadel-Garcia
On Tue, Jul 19, 2011 at 7:38 PM, Ted Unangst t...@tedunangst.com wrote:
 On Tue, Jul 19, 2011, STeve Andre' wrote:
 On 07/19/11 12:27, Ted Unangst wrote:
 On Tue, Jul 19, 2011, Paul Suh wrote:
 On Jul 18, 2011, at 6:24 PM, Ted Unangst wrote:

 On Mon, Jul 18, 2011, Sergey Bronnikov wrote:
 may be proper link is http://www.openbsd.org/query-pr.html
 The bug tracker is down and will still that way for some time.
 Ted,

 Is there something that we can do to help?
 Write a bug tracker that doesn't suck.

 Suggestions about existing bug trackers that don't suck aren't helpful,
 however, because obviously, if it didn't suck we'd already be using it,
 ergo it does suck.

 Ted, Is it worth looking at the current system to see if the suck factor
 can be vacuumed from it, or is it a hopeless case in your opinion?

 It is hard to imagine a bug tracker that could actually suck more than
 gnats.  The current replacement, email bugs@ and search the marc.info
 archives, is vastly superior.

Siebel. Trust me, I've helped support open revolts in companies that
tried to use it.

It's not a likely candidate for UNIX or Linux users of any sort, but
lord, it's bad.



El Éxito de Compranet 5.0, Gracias a usted!

2011-07-19 Thread Adriana Hernandez
[IMAGE]

Empresa Registrada ante la STPS Reg. COLG640205CP30005 Smguenos en
Twitter@pmscapacitacion o bien en Facebook PMS de Mixico

Conozca de la mano de un experto el correcto uso de este sistema !No deje
pasar oportunidades de Negocio!

Manejo Sptimo del Sistema Compranet 5.0

25 de Julio Queritaro / 27 de Julio Lesn, Gto. / 29 de Julio Monterrey
N.L.

Este taller esta orientado al uso del sistema Compranet 5.0, el
participante podra realizar una bzsqueda de licitaciones, manejara
correctamente el envmo de propuestas, conociendo al detalle el
funcionamiento de esta nueva plataforma.

!Beneficios que obtendra con este programa!

Le aseguramos que con este programa usted adquirira los conocimientos
necesarios para convertirse en un proveedor de gobierno altamente
efectivo.

Duracisn: 10 horas impartidas por nuestro experto en la materia Mtro.
Alberto Ledesma G.

?A Quiin va Dirigido?

Empresarios, Contratistas, Servidores Pzblicos y personas relacionadas
con cualquier Proceso de Contrataciones y

Licitaciones de Adquisiciones, Arrendamientos y Servicios.

Solicite mas informes y analice este excelente evento. !Reservaciones!

Solicite Mayores informes, Llamenos al (33) 8851-2365, (33) 8851-2741

Uno de nuestros asesores con gusto le atendera
Responda esta invitacisn con sus datos para enviar el programa completo.

Empresa:
Nombre:
Telifono:
Email:
Nzmero de Interesados:

!Gracias!

Copyright (C) 2010, PMS Capacitacisn Efectiva de Mixico  S.C. Derechos
Reservados. PMS de Mixico, El logo de PMS de Mixico son marcas
registradas. ADVERTENCIA PMS de Mixico no cuenta con alianzas
estratigicas de ningzn tipo dentro de la Repzblica Mexicana. NO SE DEJE
ENGAQAR - DIGA NO A LA PIRATERIA. Todos los logotipos, marcas comerciales
e imagenes son propiedad de sus respectivas corporaciones y se utilizan
con fines informativos solamente.

Este Mensaje ha sido enviado a misc@openbsd.org como usuario de Pms de
Mixico o bien un usuario le refiris para recibir este boletmn.
Como usuario de Pms de Mixico, en este acto autoriza de manera expresa
que Pms de Mixico le puede contactar vma correo electrsnico u otros
medios.
Si usted ha recibido este mensaje por error, haga caso omiso de el y
reporte su cuenta respondiendo este correo con el subject BAJACOMPRANET

Unsubscribe to this mailing list, reply a blank message with the subject
UNSUBSCRIBE BAJACOMPRANET
Tenga en cuenta que la gestisn de nuestras bases de datos es de suma
importancia y no es intencisn de la empresa la inconformidad del
receptor.

[demime 1.01d removed an attachment of type image/png which had a name of 
nlogo.png]



Multiple External IP's on an Interface and Forwarding.

2011-07-19 Thread Joel Wiramu Pauling
Hi all,

I am having some problems with the following setup and  could use some pointers;

OpenBSD router/FW
- 3 Interfaces
em0 - Public/Internet - Single IP to openbsd
em1 - Intranet - 3 IP's on routable range
 - c - OpenBSD Itself, b - Forward to Internal Host a), c) Forward ot
Internal Host b)
bge0 - Internal (RFC1918)

Internal Host a) - Internal IP
Internal Host b) - Internal IP


On the intranet interface I can only have host a) forwarding working
and the non-forwarded address to the openbsd box itself, however host
b) forward fails.


Running openbsd 4.9 on sparc64


Any suggests welcome, I can post pf.conf if requested off list.

Kind regards

-JoelW