support update

2022-02-18 Thread Tito Mari Francis Escaño
0 C Philippines P National Capital Region T Taguig City Z 1633 O EDGEKIT Computer Systems I Tito Mari Francis H. Escano A Block 1 Lot 24 Upper Bicutan Taguig City 1633 Philippines M edgekit.computer.syst...@gmail.com U https://edgekitcomputersystems.blogspot.com # with trailing slash unless a

ikev2 fails with mschap-v2

2022-02-18 Thread readme
IKE is failing when I connect using a simple password defined in /etc/iked.conf. I'm connecting from a native Mac client...is mschap-v2 on MacOS broken or are my configs wrong? Thanks in advance. Working configuration and logs: /etc/iked.conf - works with psk

Re: IPSec fails with NO_PROPOSAL_CHOSEN when connecting from recent MacOS/iOS clients

2022-02-18 Thread fixied
On Fri, Feb 18, 2022 at 15:06 Stuart Henderson wrote... > On Fri, Feb 18, 2022 at 11:43 AM I wrote: >> ike passive esp transport proto udp from $public_ip to any \ >> main auth "hmac-sha2-256" enc "aes-256" group "modp2048" \ >> quick auth "hmac-sha2-256" enc "aes-256" group "modp2048" \ >>

Re: pf queuing/bandwidth control question

2022-02-18 Thread Stuart Henderson
On 2022-02-18, Matthias Pressfreund wrote: > On 2022-02-17 18:56, Stuart Henderson wrote: >> On 2022-02-17, Matthias Pressfreund wrote: >>> On a server with 3 LAN interfaces (re0/1/2): >>> * re0 connected to the ISP >>> * re1 connected to the internal network >>> * re2 so far unused >>> >>> I

Re: IPSec fails with NO_PROPOSAL_CHOSEN when connecting from recent MacOS/iOS clients

2022-02-18 Thread Stuart Henderson
On 2022-02-18, fix...@gmail.com wrote: > On Fri, Feb 18, 2022 at 11:43 AM I wrote: >> I recently started seeing some ipsec clients fail on newer versions of >> MacOS and iOS. After MacOS 12.1, connecting to my head end now fails >> with NO_PROPOSAL_CHOSEN using mod1024 in my ipsec.conf. I've also

Re: IPSec fails with NO_PROPOSAL_CHOSEN when connecting from recent MacOS/iOS clients

2022-02-18 Thread fixied
Matthew Ernisse writes... > How are you setting the proposals on the MacOS end? Your first instance I > think you figured out that you had not specified PSK and so you had a mismatch > there. In the second case you didn't supply the iked(8) debugging information > so I'm not sure what is

Re: IPSec fails with NO_PROPOSAL_CHOSEN when connecting from recent MacOS/iOS clients

2022-02-18 Thread Matthew Ernisse
On Fri, Feb 18, 2022 at 01:30:27PM -0600, fix...@gmail.com said: > Date: Fri, 18 Feb 2022 13:30:27 -0600 > From: fix...@gmail.com > To: misc@openbsd.org > Subject: Re: IPSec fails with NO_PROPOSAL_CHOSEN when connecting from > recent MacOS/iOS clients > > On Fri, Feb 18, 2022 at 11:43 AM I

Re: IPSec fails with NO_PROPOSAL_CHOSEN when connecting from recent MacOS/iOS clients

2022-02-18 Thread fixied
On Fri, Feb 18, 2022 at 11:43 AM I wrote: > I recently started seeing some ipsec clients fail on newer versions of > MacOS and iOS. After MacOS 12.1, connecting to my head end now fails > with NO_PROPOSAL_CHOSEN using mod1024 in my ipsec.conf. I've also > tried, with no success: > > main auth

IPSec fails with NO_PROPOSAL_CHOSEN when connecting from recent MacOS/iOS clients

2022-02-18 Thread fixied
I recently started seeing some ipsec clients fail on newer versions of MacOS and iOS. After MacOS 12.1, connecting to my head end now fails with NO_PROPOSAL_CHOSEN using mod1024 in my ipsec.conf. I've also tried, with no success: main auth "hmac-sha2" enc "aes" group modp1024 quick auth

Re: acpi0: sleep states S0 S3 S5, was: S0 S3 S4 S5

2022-02-18 Thread Dave Voutila
Try the next snap. I believe a diff slipped in temporarily. -dv > On Feb 18, 2022, at 11:38, Marcus MERIGHI wrote: > > Hello! > > I'm not sure this should go to bugs@. > > On three machines that I upgraded to the latest snapshot > yesterday, "S4" vanished: > > -acpi0: sleep states S0 S3

Re: pf queuing/bandwidth control question

2022-02-18 Thread Matthias Pressfreund
On 2022-02-17 18:56, Stuart Henderson wrote: > On 2022-02-17, Matthias Pressfreund wrote: >> On a server with 3 LAN interfaces (re0/1/2): >> * re0 connected to the ISP >> * re1 connected to the internal network >> * re2 so far unused >> >> I was setting up pf queues for bandwidth control as

Re: rspamd and empty "mail from" header

2022-02-18 Thread kasak
18.02.2022 14:26, Claus Assmann пишет: On Fri, Feb 18, 2022, kasak wrote: But, is this correct behavior of "mail from" header? Maybe the header What is a ``"mail from" header''? Do you mean the mail header From: or are you referring to the SMTP MAIL command MAIL From: should have "<>" in

Re: rspamd and empty "mail from" header

2022-02-18 Thread Stuart Henderson
On 2022-02-18, kasak wrote: > Hello misc! I have mailed this message at m...@opensmtpd.org at first, > but nobody answered, maybe someone help here? > > I have a question about opensmtpd and rspamd. > I'm using opensmtp and rspamd as a relay server with spam checking. > The spam check is done

Re: rspamd and empty "mail from" header

2022-02-18 Thread Claus Assmann
On Fri, Feb 18, 2022, kasak wrote: > But, is this correct behavior of "mail from" header? Maybe the header What is a ``"mail from" header''? Do you mean the mail header From: or are you referring to the SMTP MAIL command MAIL From: > should have "<>" in it? You can check the fine RFCs (e.g.,

rspamd and empty "mail from" header

2022-02-18 Thread kasak
Hello misc! I have mailed this message at m...@opensmtpd.org at first, but nobody answered, maybe someone help here? I have a question about opensmtpd and rspamd. I'm using opensmtp and rspamd as a relay server with spam checking. The spam check is done with help of opensmtpd-filter-rspamd. The