Clock settings and FAQ 8.25

2009-10-24 Thread Rod Whitworth
Hi Nick, You may notice that I've made this public. Not to get a democratic election started, just to get the info out to some who may find it useful even if you don't reckon it's good enough for an FAQ entry. For years I have been doing lots of installs of OpenBSD (snapshots mostly) on

Re: Clock settings and FAQ 8.25

2009-10-24 Thread Rod Whitworth
On Sat, 24 Oct 2009 20:32:36 +1100, Rod Whitworth wrote: Hi Nick, You may notice that I've made this public. Not to get a democratic election started, just to get the info out to some who may find it useful even if you don't reckon it's good enough for an FAQ entry. 8 snip unneeded copy I forgot

Re: Error trying to use pkg_add with ftp

2009-10-23 Thread Rod Whitworth
On Fri, 23 Oct 2009 08:05:09 -0200, Marcio David wrote: Hello everyone. I'm a software developer from Brazil and I've been using Linux for about 8 years and now I starting to play with some new toys, like FreeBSD and OpenBSD. I installed OpenBSD 4.6 on a quadcore intel machine, and now I'm trying

Re: 4.6 arriving

2009-10-07 Thread Rod Whitworth
On Wed, 07 Oct 2009 18:03:23 +1300, Richard Toohey wrote: On 7/10/2009, at 12:09 AM, Victor Camacho wrote: CD Showed up in San Antonio Texas on Monday, Oct. 6. Thank you Theo and all the developers. I appreciate and am grateful for the hard work and pride you put into OpenBSD. Thank

Re: xauth

2009-10-04 Thread Rod Whitworth
On Sun, 4 Oct 2009 13:03:02 +0300, Rein Kadastik wrote: On Sun, Jul 19, 2009 at 10:49 AM, Matthias Kilian k...@outback.escape.de wrote: On Sun, Jul 19, 2009 at 02:38:08AM +, 4625 wrote: On first run and exit from X, I have 'Segmentation fault (core dumped)' (xauth.core). [...] How old is

Re: Re2: OpenBSD 4.5: pfctl -s info fails to give me the right interface statistics

2009-10-03 Thread Rod Whitworth
On Fri, 02 Oct 2009 23:49:32 -0600, Alvaro Mantilla Gimenez wrote: from the man page too: # pfctl -s info In this example pf(4) collects statistics on the interface named dc0: set loginterface dc0 I am not a native english speaker but...maybe the man page is ambiguous? There is no

Re: spamd - nixspam list, September 30, 2009

2009-10-01 Thread Rod Whitworth
On Thu, 1 Oct 2009 12:26:43 +0200, Toni Mueller wrote: Hi, On Wed, 30.09.2009 at 09:12:16 -0600, Bob Beck b...@ualberta.ca wrote: Again? sheesh, it wasn't supposed to, we had talked to them. yes, again. I get a 404 all the time. Kind regards, --Toni++ Me too, but I learned my lesson first

Re: spamd - nixspam list, September 30, 2009

2009-10-01 Thread Rod Whitworth
On Thu, 01 Oct 2009 09:36:24 -0400, Frank Bax wrote: Rod Whitworth wrote: nixpix: #!/bin/sh cd /root/data rm -f nixspam ftp http://www.openbsd.org/spamd/nixspam.gz if [ $? -eq 0 ] ; then gunzip nixspam.gz cut -d -f 1 nixspam /var/db/nixspam fi Any particular reason

Re: Defending OpenBSD Performance

2009-09-15 Thread Rod Whitworth
On Wed, 16 Sep 2009 14:43:34 +1000, Aaron Mason wrote: I'm all for just shelving this argument - nobody's going to agree. I must disagree with that conclusion... I do agree with the shelving. *** NOTE *** Please DO NOT CC me. I am subscribed to the list. Mail to the sender address that does

Re: OT: Juniper SSL-VPN?

2009-09-14 Thread Rod Whitworth
On Mon, 14 Sep 2009 21:06:22 -0700, Johan Beisser wrote: Not as far as I know. To be honest, I've not researched it, but I know the java app OS specific (customised for Linux, MacOS, and Windows). Write Once - Run Anywhere, eh? Grinning, running and ducking! *** NOTE *** Please DO NOT CC me. I

Re: Supporting OpenBSD

2009-09-08 Thread Rod Whitworth
Of course I try to be first to pre-order my CD setS but the orders always open when I'm asleep. I am going to keep trying, even after I achieve it! Good pitch, Nick. I'd love to see it on a wider screen somewhere. Rod/ On Tue, 08 Sep 2009 23:54:12 -0400, Nick Holland wrote: What makes OpenBSD

4.6-current Love Story

2009-09-04 Thread Rod Whitworth
I recently went looking for a netbook and was attracted by the Samsung NC20. Hunting with the googlebird I saw a dmesg on todd.fries.net so I felt reasonably positive and went and bought one. It was on special with 2GB RAM and not much extra for a 320GB drive with the original supplied in a USB

Re: 4.6-current Love Story

2009-09-04 Thread Rod Whitworth
On Fri, 04 Sep 2009 16:08:23 +1000, Rod Whitworth wrote: I knew that the inbuilt ath was not fully supported yet so bought a Dlink USB that shows as rum0. It can see my ral0 on my firewall but cannot connect. H my old thinkpad talks to it just fine with a supported Lenovo ath. More work

Re: EuroBSDcon: 18-20 Sept. 2009, Cambridge, UK.

2009-09-04 Thread Rod Whitworth
On Fri, 4 Sep 2009 01:15:48 +0100, Stuart Henderson wrote: EuroBSDcon 2009 Friday 18th - Sunday 20th September, University of Cambridge, UK I am coming from Australia and would like to know, apart from those who are already on the speaker list, who is coming as far as OpenBSD users and

Re: How to add new non-continuous A6 partition after install

2009-08-26 Thread Rod Whitworth
On Wed, 26 Aug 2009 19:45:38 -0400, Nick Holland wrote: Disklabel won't give you a lot of help here, you will probably have to do some math, and it may involve more digits than your desktop calculator supports (find a fourth grader). Nick. (old enough to remember when eight digits was enough

Re: Presentation tool

2009-08-24 Thread Rod Whitworth
On Mon, 24 Aug 2009 21:52:27 -0500, neal hogan wrote: On Mon, Aug 24, 2009 at 04:58:40PM -0700, Mr Man wrote: Hi, I have a presentation coming up, and I would like to use my OpenBSD laptop for it. What is the recommended application for a slides driven presentation? OpenOffice impress

Re: 08/11/09 install46 i386 freezes before boot: acpi?

2009-08-17 Thread Rod Whitworth
On Mon, 17 Aug 2009 10:00:02 +0200, Pau wrote: Is this kindergarten? Yep. For crybaby dummy spitters like you. Poor Pau. In any case, forget it. ... Stop this _here_ Lead by example. Stop your shit. Who the fcuk are you to issue orders? A Nobody. Still throwing hissy fits after being proven

Re: Bind ntpd on certain interface?

2009-08-14 Thread Rod Whitworth
On Fri, 14 Aug 2009 11:31:38 +0200, Nice Daemon wrote: The OpenBSD mailing list is the only place I don't seem to be welcome. Some people are desperate for market share... What don't you understand about the oft expressed project aims of having an operating system for its developers? The

Getting donated goodies developers

2009-08-10 Thread Rod Whitworth
I am going to be at EuroBSDCon next month an will be returning to Australia the following weekend. If there are any goodies that are needed by developers in Australia I am prepared to carry them and freight at my expense from Sydney to whichever developer they are intended to be delivered.

Re: do newcomers need inspiration?

2009-07-28 Thread Rod Whitworth
On Wed, 29 Jul 2009 14:44:55 +1000, leon zadorin wrote: Heaps of crap. -- You should have read http://www.openbsd.org/mail.html where it says:Do not cross-post or repeat post Posting the same message to multiple lists and/or multiple times does not increase the likelihood of getting a useful

Re: EuroBSDCon 2009, Cambridge, UK

2009-07-14 Thread Rod Whitworth
On Tue, 14 Jul 2009 19:56:35 +0200, Henning Brauer wrote: * Sevan / Venture37 ventur...@gmail.com [2009-07-14 19:50]: Still some time to go but wondering, who's going? I'm very much looking forward to attending for the time. otto, tedu and I will be speaking. enough incentive? :) I didn't

Re: Floating disk geometry

2009-07-01 Thread Rod Whitworth
On Wed, 01 Jul 2009 12:26:30 +0600, Sergey Yudin wrote: no it is not a garbage.. It's just zero filled disk. Geometry detection process uses info from preexisting partition table? And the zero fill included the MBR making it garbage. *** NOTE *** Please DO NOT CC me. I am subscribed to the

Re: pf table update-daemon? Does it exist?

2009-06-29 Thread Rod Whitworth
On Mon, 29 Jun 2009 09:23:47 +0200, M. Feenstra wrote: Hi List, I'm getting a bit tired of all those web vulnerability scanners. I generate a list of 404 requests to find errors in my websites but this list is mainly filled with these scanners. I have added a table to pf that blocks some of

Re: pf table update-daemon? Does it exist?

2009-06-29 Thread Rod Whitworth
On Mon, 29 Jun 2009 09:39:07 +0200, Cristiano Deana wrote: On Mon, Jun 29, 2009 at 9:23 AM, M. Feenstraopen...@itmon.nl wrote: Does something like this exist? Or maybe, is there a better way of dealing with this? http://ossec.net/ it's EXACTLY what you want. They don't say they do pf on

Re: spamd nixspam.gz not found

2009-06-25 Thread Rod Whitworth
Some interspersed new text. IMPORTANT for anybody copying scripts. On Wed, 24 Jun 2009 05:19:07 -0700, patrick keshishian wrote: On Wed, Jun 24, 2009 at 4:33 AM, Rod Whitworthglis...@witworx.com wrote: On Wed, 24 Jun 2009 07:57:16 -0300, Jose Fragoso wrote: Hi, Actually, it is still there.

Re: spamd nixspam.gz not found

2009-06-25 Thread Rod Whitworth
On Thu, 25 Jun 2009 10:26:48 +0200, Peter N. M. Hansteen wrote: or did I thoroughly miss a clue? No. I did. I forgot (until reading your note) that pkg_add mentioned using that capability some time in the past. I tried doing ftp to the page (must have been some trace of memory there) but

Re: spamd nixspam.gz not found

2009-06-24 Thread Rod Whitworth
On Wed, 24 Jun 2009 07:57:16 -0300, Jose Fragoso wrote: Hi, Actually, it is still there. But the format has changed and spamd is not being able to handle it because the IP address is now in the second column, like in: 2009-06-24T12:28+0200 117.199.144.132 So, for the time being, the best thing

Re: primepower sparc64

2009-06-10 Thread Rod Whitworth
On Thu, 11 Jun 2009 01:27:41 +0200, ropers wrote: 2009/6/11 OsRider gen...@md.pikara.ne.jp: http://nakajin.dyndns.org/sparc64.html . Looking at that page and its HTML source, it appears that OpenOffice.org now is everything that was wrong with MS Office ten years ago. No tool (I've seen)

Re: OpenNTPD warning

2009-05-22 Thread Rod Whitworth
On Fri, 22 May 2009 11:43:50 +0200, Jordi Espasa Clofent wrote: Hi all, I've updated my public NTP server (time.cdmon.com); 4.5 works like a charm! Despite of that, I see the following warning in /var/log/messages (...] May 21 23:53:53 time ntpd[12997]: sendto: Can't assign requested address

Re: Raid controller?

2009-05-18 Thread Rod Whitworth
On Mon, 18 May 2009 05:04:24 -0600, Duncan Patton a Campbell wrote: Hard words, Theo. Do you think anyone you talked to could actually understand what you were sayin'? Dumb words, Dhu. Do you think anyone who reads this will think you could understand what you were meaning if you did not read

Re: ADSL2+ PCI card

2009-05-15 Thread Rod Whitworth
On Fri, 15 May 2009 17:48:31 -0700, Chris Cappuccio wrote: Rod Whitworth [glis...@witworx.com] wrote: I have no experience with either BUT I do know that the Viking just looks like a Realtek NIC to OpenBSD. That was done to make the provision of drivers unnecessary. How do you provision

Re: ADSL2+ PCI card

2009-05-14 Thread Rod Whitworth
On Thu, 14 May 2009 20:55:22 +0100, John Bond wrote: Hello, Im looking into bulding a home rourter device and my obvious OS choice is OpenBSD however im strugeling to find an ADSL2+ pci cards which i can use. I have only managed to find to devices which may work snagoma data card s519 --

Re: OT: Plea for HELP on dual boot MAC/OpenBSD disaster with refit that turn really bad!

2009-05-01 Thread Rod Whitworth
On Fri, 01 May 2009 21:55:59 -0400, Daniel Ouellet wrote: Hi, Now sure if anyone could give me a hint or pointer, but I very much would appreciated ANY help if there is actually something possible to do. My Son did a mistake on his laptop tonight in trying to upgrade his OpenBSD partition to

4.5 delivery - How do they do it?

2009-04-20 Thread Rod Whitworth
This morning I had an email arrive at Tue, 21 Apr 2009 06:58:36 +1000 (EST) from computershop.ca announcing that my order had been mailed. At 09:05 I went to check my PO box for the morning mail and found my 2 sets of 4.5 CDs How did Austin and the gang know that my package had made it out of

Re: European orders

2009-04-08 Thread Rod Whitworth
On Thu, 9 Apr 2009 09:14:03 +1000 (EST), Damien Miller wrote: On Thu, 9 Apr 2009, ropers wrote: [citation needed] http://bit.ly/3dMFBs Enough of the pix. Send me a real one! It's not far and I'm just a few km from BK. GRAD *** NOTE *** Please DO NOT CC me. I am subscribed to the list.

Re: OpenBSD mta with postfix

2009-03-28 Thread Rod Whitworth
On Sat, 28 Mar 2009 00:50:21 -0500, Matthew Weigel wrote: Rod Whitworth wrote: Anybody run into this kind of logic before? Yes, that's part of how greytrapping works: http://www.openbsd.org/cgi-bin/man.cgi?query=spamd#GREYTRAPPING No. That is NOT how greytrapping works. RTFM more

Re: OpenBSD mta with postfix

2009-03-27 Thread Rod Whitworth
On Fri, 27 Mar 2009 17:24:31 -0500, Matthew Weigel wrote: John Brooks wrote: I've just received this response from a large corporate email system regarding their claim that emails sent to them are not getting through even though our logs contain acknowledgements of accepting the mail sent.

Re: SOEKRIS - How to install MTR to a Flashdist image

2009-03-26 Thread Rod Whitworth
On Thu, 26 Mar 2009 16:53:16 -0700 (PDT), Frothingdog.ca wrote: Wow pretty sad when people have nothing better to do then bash on someone who is just trying to learn the ropes. I full install to flash is next on the todo list, I wanted to figure this out because this is what was used 3+ years

Re: PF and CLamAV Integration - how to do it?

2009-03-20 Thread Rod Whitworth
On Sat, 21 Mar 2009 01:35:57 +, Pedro la Peu wrote: I'm not sure it matters, you only catch some bank phish, not much benefit for the effort expended. Unless you have some tasty poker chips to serve with them ;-) *** NOTE *** Please DO NOT CC me. I am subscribed to the list. Mail to the

Re: Ramifications of blocking SYN+FIN TCP packets

2009-03-13 Thread Rod Whitworth
On Fri, 13 Mar 2009 17:30:38 +1100, SJP Lists wrote: 2009/3/13 Rod Whitworth glis...@witworx.com: You could have scrubbing turned off at the bride So what's she going to do? Just the dishes? Why did he marry her anyway? Grinning, running and ducking Careful Rod, from memory Diana

Re: Ramifications of blocking SYN+FIN TCP packets

2009-03-12 Thread Rod Whitworth
On Fri, 13 Mar 2009 03:17:30 +0100, ropers wrote: You could have scrubbing turned off at the bride So what's she going to do? Just the dishes? Why did he marry her anyway? Grinning, running and ducking *** NOTE *** Please DO NOT CC me. I am subscribed to the list. Mail to the sender address

Re: Inexpensive, low power, wall wart computer

2009-02-25 Thread Rod Whitworth
On Wed, 25 Feb 2009 12:26:05 +0200, Lars Nood+*n wrote: David Vasek wrote: What would be firewire good for? Data transfer such as for full backups or cloning or audio/video. Haven't tested it yet on OpenBSD, I still have USB-only / ethernet-base storage for those systems. Subjectively, I find

Re: NAT, Firewall pf

2009-02-25 Thread Rod Whitworth
On Wed, 25 Feb 2009 16:39:08 -0800, patrick keshishian wrote: You need states created for traffic passing through the pf firewall, specifically through the $ext_if to allow packets flowing back in, otherwise line 09 blocks those packets. I don't see where states would get created for outbound

Re: NAT, Firewall pf

2009-02-25 Thread Rod Whitworth
On Wed, 25 Feb 2009 17:39:31 -0800, patrick keshishian wrote: The floating states based on line 10 would be for pre-NAT sources on $int_if and wouldn't match any inbound packets on $ext_if. Unless I'm misunderstanding how NAT works with pf, there are no pass out rules that would create states for

Re: NAT, Firewall pf

2009-02-25 Thread Rod Whitworth
On Wed, 25 Feb 2009 21:27:24 -0500, Jason Dixon wrote: On Thu, Feb 26, 2009 at 01:14:43PM +1100, Rod Whitworth wrote: On Wed, 25 Feb 2009 17:39:31 -0800, patrick keshishian wrote: The floating states based on line 10 would be for pre-NAT sources on $int_if and wouldn't match any inbound

Re: Carp with aliases route problem

2009-02-23 Thread Rod Whitworth
On Mon, 23 Feb 2009 17:52:33 -0600, Todd T. Fries wrote: As a corrilary, for those ISP's who think there is only need for a single /30 for a client's router, the concept of failover routers means 1 physical IP per router, and 1 IP for the failover IP, aka 3 IP's for the client side, dictating a

Re: OpenBGPd kickstart

2008-12-10 Thread Rod Whitworth
there will be some tutorial value for others setting out to do BGP without the big name router makers' training to get the basics. Very gratefully, Rod/ On Wed, 10 Dec 2008 09:41:40 + (UTC), Stuart Henderson wrote: On 2008-12-10, Rod Whitworth [EMAIL PROTECTED] wrote: Redundancy: At first I would

Re: OpenBGPd kickstart

2008-12-09 Thread Rod Whitworth
Continuing the learning process: Since my last session on this I've had lots of pointers to things I could research. Particular thanks to Stuart. Man oh man, there are lots of monkeys typing junk that Google pads out the useful search results with. Anyway there are some things that are a

Re: BGPLG mostly working

2008-12-08 Thread Rod Whitworth
On Mon, 08 Dec 2008 01:06:16 -0600, tico wrote: Rod Whitworth wrote: For a BGP project I'm working on, I have enables bgplg using the steps outlined in the manpage. The stuff that gets results using bgpctl shows valid data for all the choices that I'd expect to have anything showing without

Network challenge?

2008-12-08 Thread Rod Whitworth
I have a friend who has two internet connections. Lucky B! He wants me to have a look at some of his operation without travelling to his site (lng way). I would need to be able to effectively duplicate some of his system and make it look like it was still at his site. Hopefully I can keep

Re: Network challenge?

2008-12-08 Thread Rod Whitworth
On Mon, 8 Dec 2008 16:03:40 -0500, Jason Dixon wrote: On Tue, Dec 09, 2008 at 07:49:04AM +1100, Rod Whitworth wrote: I have a friend who has two internet connections. Lucky B! He wants me to have a look at some of his operation without travelling to his site (lng way). I would need

Re: Network challenge?

2008-12-08 Thread Rod Whitworth
On Mon, 8 Dec 2008 15:30:55 -0600, John Jackson wrote: The layer 2 IPSEC bridge example here has worked well for me in the past for extending networks: http://www.openbsd.org/cgi-bin/man.cgi?query=brconfigapropos=0sektion=0manpath=OpenBSD+Currentarch=i386format=html Thanks John but my

Re: Network challenge?

2008-12-08 Thread Rod Whitworth
On Mon, 8 Dec 2008 16:40:56 -0500, Jason Dixon wrote: I don't know how to answer your question because the network art above is unreadable. gre(4) will allow you to route networks across a tunnel. Think of it as IPSec without the Sec. It will allow networks that are usually non-routable

Re: Network challenge?

2008-12-08 Thread Rod Whitworth
On Mon, 8 Dec 2008 17:29:16 -0500, Jason Dixon wrote: On Tue, Dec 09, 2008 at 09:16:29AM +1100, Rod Whitworth wrote: On Mon, 8 Dec 2008 16:40:56 -0500, Jason Dixon wrote: I don't know how to answer your question because the network art above is unreadable. gre(4) will allow you to route

BGPLG mostly working

2008-12-07 Thread Rod Whitworth
For a BGP project I'm working on, I have enables bgplg using the steps outlined in the manpage. The stuff that gets results using bgpctl shows valid data for all the choices that I'd expect to have anything showing without actually being on line. e.g. the summary and memory choices. Although I

Re: offtopic - postfix book/doc recommendation

2008-12-06 Thread Rod Whitworth
On Sat, 6 Dec 2008 19:01:30 -0500, Jason Dixon wrote: On Sun, Dec 07, 2008 at 12:30:32AM +0100, Jesus Sanchez wrote: I want to start learning about postfix running on OpenBSD for a serious pourpose than home services. Think I'm not familiar with the mail servers concepts and I'm starting

Re: Hardware recomendations please

2008-12-02 Thread Rod Whitworth
On Tue, 2 Dec 2008 17:43:39 +1100, nuffnough wrote: Hey there. My firewalls are getting old, so I thought it would be a great idea to replace them. I figured that a budget of around $1500 would be more than adequate, but because no one makes mobos with 5 pci slots anymore I am struggling to

Re: possibly generic disk copy and restore question

2008-11-21 Thread Rod Whitworth
On Fri, 21 Nov 2008 16:40:26 +0100, Robert wrote: On Fri, 21 Nov 2008 14:14:19 + John . [EMAIL PROTECTED] wrote: Hello misc, I want to install OpenBSD/amd64 on my laptop (a recent Toshiba amd turon with 3GB RAM) and ONLY have OpenBSD on it, but before I do this, I need to know how I

Re: Missing security announcements

2008-11-12 Thread Rod Whitworth
On Wed, 12 Nov 2008 21:32:57 -0600, Emilio Perea wrote: On Wed, Nov 12, 2008 at 06:57:19PM +0100, Peer Janssen wrote: I subscribed to security-announce a long time ago and thought I would receive information about security annoucements, but contrary to what is stated on

Is this naughty thought? (BGP related)

2008-11-11 Thread Rod Whitworth
I am currently learning about BGP so that I can do an OpenBGPd setup for someone. (Thanks Stuart et al for hints so far) Anyway whilst discussing the fact that although I have a /29 from my ISP (small outfit), I may have to change ISP due to whatever bad event and /29s cost heaps with some ISPs

Re: failed to install openvpn

2008-11-10 Thread Rod Whitworth
On Tue, 11 Nov 2008 14:41:26 +0800, Linyin wrote: hey, i'm using openbsd4.3 and sync current ports.now in try to install openvpn and failed. # make;make install `/usr/ports/net/openvpn/w-openvpn-2.1rc13/fake-i386/.fake_done' is up to date. === Building package for openvpn-2.1rc13 Create

Re: browsing ports from the command line

2008-11-09 Thread Rod Whitworth
On Sun, 9 Nov 2008 17:14:02 -0800, Marcel Dan wrote: What are the best commands and scripts to browse the ports collection from the command line? Try this: cd to /usr/ports make readmes (wait for a longish time, ignore errors) lynx . --- then: arrow down to README.html Follow the links from

Re: 4.4 recently installed

2008-11-09 Thread Rod Whitworth
On Sun, 09 Nov 2008 22:39:17 -0500, Nick Holland wrote: As I recall, these Aptiva machines were quirky as heck, on a LOT of OSs. When I taught courses for IBM (Websphere, OS/2, linux, etc) we had lots of those in classrooms. They usually obtained a prefix CR if you know what I mean. {Big evil

Re: Packet Filter: how to keep device names on hardware failure?

2008-11-07 Thread Rod Whitworth
On Fri, 07 Nov 2008 13:22:08 +0100, Peter N. M. Hansteen wrote: Harald Dunkel [EMAIL PROTECTED] writes: I can post 2 dmesg logs of the same machine with the NIC names mixed up. Somehow 2 NICs disappeared on a reboot. On the next reboot they were back. Attached is the diff. Dodgy hardware

Traffic logging IPsec

2008-11-04 Thread Rod Whitworth
I have a simple IPsec setup with both endpoints on OpenBSD firewalls. Everything is working sweetly from day two. Day one was me stuffing around and trying things. We have done some traffic measurements in the past using ipaudit and that's fine for sniffing the LAN and seeing what VoIP was using

Re: Deploying carp with limited global IPs

2008-11-02 Thread Rod Whitworth
On Sun, 2 Nov 2008 09:24:13 +0100, Claer wrote: Did you look at ifstated ? I tryed it for 2 firewalls with 1 pppoe link. This setup didn't go on production but worked fine during tests. With seven NICs plus one for carp/pfsync including an IPv6 transit, an IPv4 transit and a peer link with

Re: Deploying carp with limited global IPs

2008-11-01 Thread Rod Whitworth
255.255.255.252 192.168.1.3 vhid 1 carpdev xxx0 -Steve S. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Rod Whitworth Sent: Tuesday, October 28, 2008 11:49 PM To: Miscellaneous OBSD Subject: Deploying carp with limited global IPs In preparing for a possible

OpenBGPd kickstart

2008-11-01 Thread Rod Whitworth
Hi BGP4 experts, I'm not one of you and getting to the first step is pretty scary. I've been reading the van Beijnum (O'Reilly) and Stewart (A-W) books and the man pages for bgpd, bgpd.conf and anything else I can find. What is really hard is to get a configuration to test stuff when you don't

Re: How to debug IPSec and PF problem

2008-10-29 Thread Rod Whitworth
On Wed, 29 Oct 2008 17:01:21 +1100, Mikel Lindsaar wrote: Hi all, I've got a VPN running between two networks. Works fine for basically everything and very easy to setup, kudos to the guys that worked on ipsecctl and isakmpd. I have one problem though that I am trying to debug. Network looks

Deploying carp with limited global IPs

2008-10-28 Thread Rod Whitworth
In preparing for a possible carp redundacy setup for a client's border router/firewall I have found no information so far as to whether it is possible to have carp working where the link to the ISP is a /30. Every example I have found in presentations and tutorials has used 3 IPs on a typical

Re: NTFS-3G Stable Read/Write Driver ready to merge on cvs obsd ?

2008-10-25 Thread Rod Whitworth
On Sat, 25 Oct 2008 18:12:57 -0700 (PDT), Neko wrote: so there can be an end to this retard cant write on the file system bs http://www.ntfs-3g.org/ so will it be merged in the next obsd release ? this is the future. people use multiple os on their machine, not just vm , they will local

Re: make update stores twice the packages

2008-09-06 Thread Rod Whitworth
On Sat, 06 Sep 2008 02:42:59 -0600, macintoshzoom wrote: Any advice here? Yep. Make sure brain is engaged before putting mouth in gear. For somebody who obviously doesn't know very much you're a quite offensive little prick. And in so much of a hurry you can't take the advice given by experts.

Re: Can OpenBSD run in 24 MB of RAM?

2008-09-04 Thread Rod Whitworth
On Thu, 04 Sep 2008 19:33:11 -0400, Nick Holland wrote: Experienced users usually have no problem figuring out what they need to run their applications. Also keep in mind, the goal is most likely not running OpenBSD, the goal is probably some task which runs on top OpenBSD. 24M is plenty to sit

Re: Spamd - whitelisting round robin mail servers?

2008-09-03 Thread Rod Whitworth
On Wed, 3 Sep 2008 20:26:25 -0700, Jeff Simmons wrote: So I just set up a nice spamd for a client, and then watched Google's Postini try to resend a single email message from just about every IP they own. There are some whitelists for commercial servers available, mainly one at

Re: odd greyscanner behaviour

2008-08-30 Thread Rod Whitworth
On Sat, 30 Aug 2008 10:52:42 -0600, Jeff Ross wrote: jared r r spiegel wrote: On Sat, Aug 30, 2008 at 08:30:22AM +, Stuart Henderson wrote: In any event, it's definitely not all that unusual... seconded. the closest i've come to being able to deal with this is having written a

Re: Software for backing up files to DVD

2008-08-01 Thread Rod Whitworth
On Fri, 1 Aug 2008 21:46:20 -0500 (CDT), L. V. Lammert wrote: DVDs are, believe it or not, not as reliable as a HD! Sez who? I've dropped a pile of DVDs and never lost a bit and I've seen more HD failures than I can poke a stick at, and those were not failures due to trauma. I use DVD-RAM

Re: GPL version 4

2008-07-17 Thread Rod Whitworth
On Thu, 17 Jul 2008 08:21:28 -0300, Alexandre Oliva wrote: On Jul 16, 2008, Morton Harrow [EMAIL PROTECTED] wrote: Blah, blah, blah... 8 snip loads of irrelevant shit. Can all you bastards take this discussion to somewhere where it is relevant instead of blindly CCing to all the addresses

Re: sshd_config(5) PermitRootLogin yes

2008-07-11 Thread Rod Whitworth
On Fri, 11 Jul 2008 07:16:38 +0100, Tomas Bodzar wrote: You can setup weak root password during install ;-) There is no test,so I can use root,password,admin and so on. Who gives a fluck? OpenBSD gives you all the tools, even if they are too sharp for dull blunts. If you don't like the

Re: Actual BIND error - Patching OpenBSD 4.3 named ?

2008-07-09 Thread Rod Whitworth
On Wed, 9 Jul 2008 11:10:09 +0200, Andreas Maus wrote: Hi. I guess OpenBSDs named is affected by the actual issue: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1447 http://www.kb.cert.org/vuls/id/800113 So I hope a patch is in progress ? Or is OpenBSD not affected by this issue? So

Re: Old EmBSD docs

2008-05-12 Thread Rod Whitworth
On Mon, 12 May 2008 11:58:38 +0300, Michael Dexter wrote: here's a better idea: just use a standard install. It is very difficult to buy a 1G flash media anymore that isn't covered in dust, so it is hard (if not nearly impossible) to justify building a crippled system anymore. Nonsense. Many

Re: Trouble with OpenBSD 4.2 DNS server setup

2008-05-08 Thread Rod Whitworth
On Thu, 8 May 2008 00:03:30 -0500, Sam Fourman Jr. wrote: On Wed, May 7, 2008 at 10:41 PM, Jon Radel [EMAIL PROTECTED] wrote: Sam Fourman Jr. wrote: I assume that if I want to host email for 10 different domains I have If you're currently using a setup that involves the same IP

Re: ral(4) hostap plea

2008-05-07 Thread Rod Whitworth
On Tue, 6 May 2008 23:26:26 -0600, Daniel Melameth wrote: On Tue, May 6, 2008 at 9:05 PM, James Turner [EMAIL PROTECTED] wrote: I've been trying to get my new ral(4) card to work like I would expect it to. I've read through most if not all the talk on misc@ about running these cards in hostap

Re: More factoids about OpenBSD folks use in advocacy?

2008-04-18 Thread Rod Whitworth
On Fri, 18 Apr 2008 11:34:14 -0400, Protocol Six Consulting wrote: Hi, I love using OpenBSD in the networks I administer. It does what I need simply, elegantly and with great power (not to mention for free) When I tell others about OpenBSD I can easily tell them what I like, but I was also

Re: install42.iso hangs....any ideas?

2008-04-16 Thread Rod Whitworth
On Wed, 16 Apr 2008 15:15:02 +, Matthew Szudzik wrote: On Wed, Apr 16, 2008 at 05:45:56AM -0700, Unix Fan wrote: I thought DVD-RAM were unique in that, unlike DVD-RW, you can write to the disk as if it's simply an optical hard drive... I have only used DVD+RW and CD media in my DVDRAM

Re: OpenBSD isakmpd and pf vs Cisco PIX or ASA

2008-04-10 Thread Rod Whitworth
On Thu, 10 Apr 2008 12:27:32 +0200, Reyk Floeter wrote: - PIX/ASA has some magical black-box inline transparent protocol fixups Yeah, they have a magical smtp f**-up that is famous for breaking things. Have a look at http://www.postfix.org/postconf.5.html and search the page for pix. Not

spamd fake MX

2008-04-09 Thread Rod Whitworth
Reality check please. I see quite a few attempts to access port 25 on boxes that don't have externally listening smtpd. They show up in firewall logs. It is a possibility to let spamd listen (as usual, redirected from 25 to 8025, or even on 25 itself) and feed the IP over to my real MX using the

Re: Optimising OpenBSD

2008-04-08 Thread Rod Whitworth
On Wed, 09 Apr 2008 08:21:52 +0930, Matthew Smith wrote: Hi Folks As part of my move from GNU/Linux to OpenBSD on my server, I just want to clarify what I need to do to ensure that I have performance optimised. I am coming from Gentoo Linux, where optimisation is mostly about using the

Re: Verify authenticity of installation files on mirrors?

2008-04-07 Thread Rod Whitworth
On Tue, 8 Apr 2008 06:54:10 +0300, Nikns Siankin wrote: You see how openbsd cares about secure distribution ;] Don't be a moron. OpenBSD is built by the developers, for the developers. Luckily, you can obtain an official copy of each release by CD (and support the project in so doing). That's

Re: Possible daytime saving bug?

2008-03-31 Thread Rod Whitworth
On Mon, 31 Mar 2008 19:00:29 +1000, Sunnz wrote: Hello, Running 4.2 here, and it seems like OpenBSD is one week early can it comes to turning off daylight saving time, it is already one hour slow and this should only happen next week. And you just found out that it was changing? It was in the

Re: Possible daytime saving bug?

2008-03-31 Thread Rod Whitworth
On Mon, 31 Mar 2008 20:30:56 +1000, Sunnz wrote: Right, this is fix up on my machine by editing the /usr/src/share/zoneinfo/datfiles/australasia file... I am not sure if I had a diff or not... I had `ci -l` the original file then `ci` again once it is done. It is only 3 lines of change anyway...

Re: Possible daytime saving bug?

2008-03-31 Thread Rod Whitworth
On Mon, 31 Mar 2008 20:32:28 +1030, Edwards, David (JTS) wrote: -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Sunnz Sent: Monday, 31 March 2008 7:30 PM To: OpenBSD Misc Subject: Possible daytime saving bug? Hello, Running 4.2 here, and it

Re: RAMdisk, not for boot, how?

2008-03-29 Thread Rod Whitworth
On Sat, 29 Mar 2008 13:29:41 -0400, Douglas A. Tutty wrote: I have my old IBM ValuePoint 486 that has a bios that really only likes drives under 512 MB. It has worked with one 8 GB drive, but not another seemingly identical WD 8 GB drive, yet alone a new-off-the-shelf 80 GB PATA drive. The IBM

Re: RAMdisk, not for boot, how?

2008-03-27 Thread Rod Whitworth
On Thu, 27 Mar 2008 18:09:37 +0800, Uwe Dippel wrote: I don't know if this makes a lot of sense or any, but I was thinking that flash memory doesn't like too many writes. So I was thinking of creating one or two RAMdisks, for all those temporary reads and writes that I need, and only store the

Re: RAMdisk, not for boot, how?

2008-03-27 Thread Rod Whitworth
On Fri, 28 Mar 2008 02:51:33 +0100, chefren wrote: On 3/28/08 1:20 AM, Rod Whitworth wrote: The CF wearout meme needs to die. Specs, it's all about specs, it seems a fact to me that standard CF cards, as used in camera's, often without any technical specification other than size, cannot

Re: question re spamd.alloweddomains file

2008-03-17 Thread Rod Whitworth
On Mon, 17 Mar 2008 20:30:53 -0400 (EDT), Juan Miscaro wrote: I have populated /etc/mail/spamd.alloweddomains with all email addresses serviced by my Postfix server. Nevertheless, I still see entries in my mail log that submissions to non-existent addresses are being attempted. One thing I have

Re: Singularity OS (O/T Trolling)

2008-03-06 Thread Rod Whitworth
On Thu, 6 Mar 2008 22:27:49 +, Andris wrote: I wonder if anyone actually took a look to the code before opening his/her mouth. Note that I don't trust Microsoft either, but giving that Singularity is not planned to be a successor to Windows, but a research experiment, makes me think it _can_

Re: man dhcpd.interfaces ?

2008-02-25 Thread Rod Whitworth
On Mon, 25 Feb 2008 15:43:55 +0100, Kasper Revsbech wrote: Hi I have some problems with my dhcp server, and is trying to debug the setup. I would like to have a subnet on each interface and therefore dhcpd to span both interfaces. For that purpose I use /etc/dhcpd.interfaces where i have: vr0

Re: What is our ultimate goal??

2008-02-21 Thread Rod Whitworth
On Thu, 21 Feb 2008 13:15:41 +0530, Mayuresh Kathe wrote: On Thu, Feb 21, 2008 at 1:05 PM, ropers [EMAIL PROTECTED] wrote: On 20/02/2008, Mayuresh Kathe [EMAIL PROTECTED] wrote: On Feb 20, 2008 4:58 PM, Henning Brauer [EMAIL PROTECTED] wrote: * Mayuresh Kathe [EMAIL PROTECTED]

Re: Cold Boot Attacks on Encryption Keys

2008-02-21 Thread Rod Whitworth
On Thu, 21 Feb 2008 23:32:22 -0500 (EST), mcb, inc. wrote: On Thu, 21 Feb 2008, Marco Peereboom wrote: Let me give you an engineering opinion: bwahahahahahaha this is retarded. A lesson from history for those who fail to learn from it. Rebooting from the latent image in core memory after

ifconfig or install hangs when trying to use fxp on new Intel mobo

2008-02-09 Thread Rod Whitworth
I have just spent a lot of frustrating time doing a clean install on a new Intel mobo based system. [dmesg follows] The system came with an onboard re and an Intel GigE (em). The customer's preference is to have fxp nics everywhere and supplied me with new ones. So out with the em, disbled the

<    1   2   3   4   5   >