Re: Oddness with pkg_add

2016-11-03 Thread trondd
On Thu, November 3, 2016 9:19 pm, trondd wrote: > On Thu, November 3, 2016 9:07 pm, Chris Huxtable wrote: >> Same as before unfortunately. >> >> # pkg_add -v nano >> Error from http://ftp.openbsd.org/pub/OpenBSD/6.0/packages/amd64/ >> ftp: ftp.openbsd.org

Re: Oddness with pkg_add

2016-11-03 Thread trondd
d.org: no address associated with name > Try substituting the IP for the hostname. Is it just DNS that's the problem or all network connectivity? Then I'd start using tcpdump... >> On Nov 3, 2016, at 9:26 PM, trondd wrote: >> >> On Thu, November 3, 2016 9:

Re: dkimproxy_out doesn't sign my outgoing messages

2016-11-09 Thread trondd
On Wed, November 9, 2016 9:14 am, Walter Alejandro Iglesias wrote: > Hi everyone, > > First of all, is dkimproxy a work in progress? > > If it's not, then the long one. I've tried something similar to > the example in smtpd.conf(5). Outgoing messages don't get signed. > > > # dkim-genkey -s defau

Re: dkimproxy_out doesn't sign my outgoing messages

2016-11-09 Thread trondd
On Wed, November 9, 2016 11:39 am, Walter Alejandro Iglesias wrote: > On Wed, Nov 09, 2016 at 09:27:58AM -0500, trondd wrote: >> On Wed, November 9, 2016 9:14 am, Walter Alejandro Iglesias wrote: >> > Hi everyone, >> > >> > First of all, is dkimproxy a work in p

Re: softraid(4) full-disk encryption on SSD

2016-11-16 Thread trondd
On Wed, November 16, 2016 10:23 am, Jiri B wrote: > On Wed, Nov 16, 2016 at 09:14:51AM -0600, Ax0n wrote: >> I just purchased a SanDisk SSD for my daily-driver laptop which has been >> running -CURRENT well. I'm considering going with FDE and a fresh >> snapshot >> install, adding my packages then

Re: Making motd great again

2016-11-21 Thread trondd
On Mon, November 21, 2016 12:07 pm, Kenneth Gober wrote: > > If a novice user doesn't know about the "help" command Who is this MOTD for? The default text seems to be aimed at sysadmins who should already have some knowledge of Unix and how to find man pages and such, but may not know how to subm

Re: mailx as root ignores set keep

2016-11-25 Thread trondd
On Fri, November 25, 2016 4:17 am, Walter Alejandro Iglesias wrote: > Is this on purpose? > > I've tried adding 'set keep' to /etc/mail.rc and /root/.mailrc > but mail(1) still removes empty mailbox files before quiting. > Worked here. How exactly are you reading mail?

Re: mailx as root ignores set keep

2016-11-25 Thread trondd
On Fri, November 25, 2016 12:36 pm, Walter Alejandro Iglesias wrote: > Hello trondd, > > On Fri, Nov 25, 2016 at 11:03:49AM -0500, trondd wrote: >> On Fri, November 25, 2016 4:17 am, Walter Alejandro Iglesias wrote: >> > Is this on purpose? >> > >> > I&

Re: trouble adding user to a chroot sandbox

2016-11-25 Thread trondd
On Fri, November 25, 2016 2:01 pm, Dave Cohen wrote: > I'm new to `chroot`. Trying to make sandbox where I can build and run > untrusted code without affecting the base system. > > Following instructions from > https://www.ibm.com/developerworks/community/blogs/karsten/entry/openbsd_chroot?lang=en

Re: trouble adding user to a chroot sandbox

2016-11-25 Thread trondd
On Fri, November 25, 2016 4:24 pm, trondd wrote: > On Fri, November 25, 2016 2:01 pm, Dave Cohen wrote: >> I'm new to `chroot`. Trying to make sandbox where I can build and run >> untrusted code without affecting the base system. >> >> Following instruct

Re: IP Forwarding is not working?

2016-12-10 Thread trondd
On Fri, December 9, 2016 2:24 pm, é*·è*´å¼º wrote: > Hi, I donâ**t really think ip forwarding is broken either as I can still > access the Internet. > > # ifconfig > lo0: flags=8049 mtu 32768 >index 6 priority 0 llprio 3 >groups: lo >inet6 ::1 prefixlen 128 >inet6 fe

Re: doas prompting for password in script

2016-12-15 Thread trondd
On Thu, December 15, 2016 12:28 pm, Ax0n wrote: > I don't know how doas is keeping track of a session. If it's by > interactive > tty session only, that could cause problems with non-interactive scripts. > I'll let someone closer to the code answer that question. > It's tied to the shell. http://

Re: OpenBSD Stable

2017-01-18 Thread trondd
On Tue, January 17, 2017 8:46 pm, George wrote: > Hello. > Im new here. > I installed OpenBSD on my laptop. I used anoncvs to download the stable > sources for kernel, xenocara and ports. I rebuild my kernel,system and > xenocara and i tried to update various packages to stable. > I used > /usr/por

Re: OpenBSD Stable

2017-01-18 Thread trondd
On Wed, January 18, 2017 12:51 pm, George wrote: > > # /usr/ports/infrastructure/bin/dpb -f 20 -R pkglist > > dpb fetches the packages and i get the following result > Elapsed time=00:28:34 > I=0 B=0 Q=0 T=547 F=0 !=9 > L=devel/quirks libglade-2.6.4.tar.bz2.dist > ... Everything is locked now bec

Re: edge router lite with double NAT

2017-01-22 Thread trondd
On Sun, January 22, 2017 5:38 pm, jungle boogie wrote: > Hi All, > > So I want to actually use my edge router lite instead of it collecting > dust. At the moment I don't have a way to put my ISP provided > router/modem into bridge mode. It acts as a DHCP server for my devices > and does all gateway

Re: edge router lite with double NAT

2017-01-22 Thread trondd
On Sun, January 22, 2017 7:19 pm, jungle boogie wrote: > On 01/22/2017 04:13 PM, trondd wrote: >> On Sun, January 22, 2017 5:38 pm, jungle boogie wrote: >>> Hi All, >>> >>> So I want to actually use my edge router lite instead of it collecting >>> dus

Re: edge router lite with double NAT

2017-01-23 Thread trondd
On Mon, January 23, 2017 12:09 am, jungle boogie wrote: > On 01/22/2017 04:44 PM, trondd wrote: >> On Sun, January 22, 2017 7:19 pm, jungle boogie wrote: >>> On 01/22/2017 04:13 PM, trondd wrote: >>>> On Sun, January 22, 2017 5:38 pm, jungle boogie wrote: >>

Re: httpd weirdness ("connection max request body")

2017-01-23 Thread trondd
On Mon, January 23, 2017 7:47 am, Farid Joubbi wrote: > Does anyone know if I should report this as a bug (or is it me being > incompetent)? > > On Fri, Dec 16, 2016 at 3:17 PM, Farid Joubbi wrote: > >> Hello, >> >> I noticed a weird thing which I can not explain. >> To me it feels like a bug with

Re: edge router lite with double NAT

2017-01-23 Thread trondd
On Mon, January 23, 2017 5:26 pm, jungle Boogie wrote: > On 23 January 2017 at 08:29, trondd wrote: >> >> Can the BBB ping the ISP router internal interface IP? >> > > Yes, it can ping 192.168.0.1 and anything else connected to the ISP > router. > >> Double

Re: edge router lite with double NAT

2017-01-24 Thread trondd
On Tue, January 24, 2017 3:19 am, jungle boogie wrote: > On 01/23/2017 05:43 PM, trondd wrote: >>> >> >> >> Maybe make rules that are very specific to the BBB and ERL IPs in >> question. And/or make sure 'egress' is the interface you thing it is.

Re: relayd and letsencrypt certificates

2017-02-10 Thread trondd
On Fri, February 10, 2017 11:48 am, Thuban wrote: > Hello, > I can't figure how to use letsencrypt certificates with relayd. I keep > getting this error : > > # relayd -vvv -n > /etc/relayd.conf:33: cannot load certificates for relay tlsforward > > > My relayd.conf : > > # cat /etc/rela

Re: http 408 messages in httpd logs

2017-02-14 Thread trondd
On Tue, February 14, 2017 1:48 pm, Walter Alejandro Iglesias wrote: > Starting from Feb 11 my httpd logs are filled with 408 messages: > > roquesor.com 79.xxx.150.xx4 - - [14/Feb/2017:15:48:32 +0100] "GET / > HTTP/1.1" 200 2535 > roquesor.com 79.xxx.150.xx4 - - [14/Feb/2017:15:48:32 +0100] "GET > /

Re: http 408 messages in httpd logs

2017-02-14 Thread trondd
On Tue, February 14, 2017 2:27 pm, trondd wrote: > http://cvsweb.openbsd.org/cgi-bin/cvsweb/src/usr.sbin/httpd/server.c.diff?r1=1.106&r2=1.107&f=h > > Unfortunately the commit message is not helpful here. > Ah hah. I knew it'd be somewhere: http://marc.info/?l=openbsd-

Re: relayd(8) relay: redirect based on URL paths

2017-02-22 Thread trondd
On Wed, February 22, 2017 9:02 pm, Lyndon Nerenberg wrote: > My relayd.conf fu is lame and needs help. Given the following config: > > > ---8<---8<--- > > interval 60 > timeout 2000 > > table { w1.example.com w2.example.com w3.example.com } > > http protocol https { > > tcp { nodelay, sac

Re: Is there something to replace zaurus?

2017-03-30 Thread trondd
On Wed, March 29, 2017 6:49 pm, Ryan Freeman wrote: > On Wed, Mar 29, 2017 at 05:00:44PM -0500, Jordon wrote: >> > On Mar 29, 2017, at 4:51 AM, Luke Small wrote: >> > >> > I thought I read that there is an arm7 based mobile device, but I >> can't >> > find anything about it. >> > >> >> I???m reall

Little bump in the upgrade path

2017-04-11 Thread trondd
Just FYI: I upgraded 6.0 to 6.1 and /etc/installurl was populated with: https://ftp4.usa.openbsd.org/pub/OpenBSD/6.1 (as is my mirror) But when running pkg_add -u to upgrade, it searched http://ftp4.usa.openbsd.org/pub/OpenBSD/6.1/6.1 for packages. Chopped the 6.1 out of installurl to fix. Tim

Re: OpenBSD as a non-routing access point

2017-04-12 Thread trondd
On Wed, April 12, 2017 4:27 am, Stuart Henderson wrote: > On 2017-04-12, Jordon wrote: >>> rcctl enable dhcrelay >>> rcctl set dhcrelay flags -i athn0 192.168.1.1 "assuming that is your >>> routers >> address" >>> rcctl start dhcrelay >>> >>> and possibly add -d (log to stderr) to see what its doi

Re: DHCP over bridge(4) was: OpenBSD as a non-routing access point

2017-04-13 Thread trondd
On Thu, April 13, 2017 9:00 am, Stuart Henderson wrote: > On 2017-04-12, trondd wrote: >> >> I have this problem as well. DHCP requests go out over the bridge to >> the >> main interface. The response comes back to the main interface but never >> goes to the br

Re: softraid mirror & large drives (3T)

2017-04-18 Thread trondd
On Tue, April 18, 2017 8:48 am, Kamil CholewiÅ*ski wrote: > On Tue, 18 Apr 2017, Jiri B wrote: >> On Tue, Apr 18, 2017 at 08:23:56AM -0400, Allan Streib wrote: >>> Buy a hardware RAID controller. >> >> I suppose you wanted to write - 'buy two equal hardware RAID >> controllers', >> or how would yo

Re: strange behavior in disklabel partitioning of new disk

2014-11-04 Thread trondd
On Tue, Nov 4, 2014 at 12:53 AM, Brian McCafferty wrote: > On 11/03/14 22:33, Jonathan Thornburg wrote: > > I'm trying to set up 5.6/amd64 on a new-from-the-factory 750GB disk > > which I've just had installed in a Thinkpad T60. (This Thinkpad had > > previously been running 5.5/amd64 using an o

Re: strange behavior in disklabel partitioning of new disk

2014-11-04 Thread trondd
> If it's a new disk, you don't need to zero anything. That's to clean up > previous RAID array data. > > That doesn't really answer the question of what is going wrong but at > least it gets you up and running. > > Tim. > Well, I take it back. The FAQ does say to zero a crypto partition. I nev

Re: Interface sequencing

2014-11-04 Thread trondd
On Tue, Nov 4, 2014 at 2:52 PM, Ted Unangst wrote: > On Tue, Nov 04, 2014 at 11:21, Jason Adams wrote: > > > So can anyone point me to the settings where the sequence of bringing up > > interfaces is controlled at > > boot time? Or am I just going to have to set default gateway after it is > > b

Re: Temperature

2014-11-14 Thread trondd
Did a fan die? Or are you blocking the vent somehow? I killed a laptop like that once by putting it on my lap. Turned out the fan vent was on the bottom and the laptop needed to be on a flat surface. Usually called a desk. So I don't know why it was classified as a laptop. :) Tim.

Re: xombrero crashes with "ReferenceError: Can't find variable: iom"

2014-11-16 Thread trondd
On Sat, Nov 15, 2014 at 11:21 PM, Luiz Roberto dos Santos < arrowscr...@mail.com> wrote: > Seems to happen not just on OpenBSD, but also on 3.2 linux-libre kernel. > Why not remove Xombrero from -current? Any thoughts? I mean, it's good, > but is based on webkit, and have some bugs... maybe port A

Re: xombrero crashes with "ReferenceError: Can't find variable: iom"

2014-11-16 Thread trondd
On Sun, Nov 16, 2014 at 1:10 PM, Kevin Chadwick wrote: > On Sun, 16 Nov 2014 11:45:46 -0500 > trondd wrote: > > > I installed xombrero, but my snapshot is old and I need to update. No > > issues so far. Maybe it's specific sites? > > There are definately bugs b

Re: xombrero crashes with "ReferenceError: Can't find variable: iom"

2014-11-18 Thread trondd
On Mon, Nov 17, 2014 at 2:39 PM, Stefan Wollny wrote: > Am 11/17/14 um 20:27 schrieb Stefan Wollny: > > [ ... ] > > > >> > >> > /usr/local/libexec/gstreamer-1.0/gst-plugin-scanner:/usr/lib/libstdc++.so.57.0: > >> /usr/local/lib/libestdc++.so.16.0 : WARNING: > >> symbol(_ZN11__gnu_debug17_S_debug_

Re: xombrero crashes with "ReferenceError: Can't find variable: iom"

2014-11-18 Thread trondd
> Quark requires webkit 1.0. I don't even know where to get that anymore. > Although their concept of locking a tab to a domain is an interesting one. > > Tim. > > Scratch that. I was confusing webkit and webkitgtk{2,3}

Re: apcupsd via USB on 5.6

2014-11-20 Thread trondd
When you sent this, I had a new UPS in the mail on its way to me that I specifically bought to be compatible with OBSD. I, too, have the same issue. Tim. On Thu, Nov 20, 2014 at 11:03 AM, Steven Surdock < ssurd...@engineered-net.com> wrote: > I just upgrade from 5.5 to 5.6 on i386 and apcupsd w

Re: apcupsd via USB on 5.6

2014-11-20 Thread trondd
> Depending on what you configured apcupsd to do and what sysctl > exposes, you may be able to create equivalent behavior using > sensorsd(8). There's a brief overview in the comments of the undeadly > article below, to serve as starting point for your needs: > > http://undeadly.org/cgi?action=art

Re: pkg_add update checker?

2014-11-22 Thread trondd
> At the moment I am on 5.6-release > > But you want to track -stable OS and packages. There is a -stable ports branch. I don't know what the criteria is for what is checked in there, but there are certainly updates related to security issues at least. Probably depends a lot on the port maintaine

Re: Is this a gstreamer-issue?

2014-11-22 Thread trondd
> This error does not show up with only one regular http-site, but (at > least with Firefox) happens with 7+ tabs opened. > What sites? Always the same sites? Different sites? What have you tried? How much time goes by before is hangs? Do you have to be doing anything at the time? > > Both b

Re: lii0 no link on 5.6-current i386

2014-11-24 Thread trondd
> Just to clarify, these have been fresh installs of 5.6-release and > 5.6-current. Both bsd.rd and bsd seem not to find the lii interface. > 5.5-release behaves almost the same way, though the link status light > stays on until I try to use dhclient on lii0, both in bsd and bsd.rd. > > Well if I'

Re: lii0 no link on 5.6-current i386

2014-11-24 Thread trondd
On Mon, Nov 24, 2014 at 3:12 PM, trondd wrote: > >> Just to clarify, these have been fresh installs of 5.6-release and >> 5.6-current. Both bsd.rd and bsd seem not to find the lii interface. >> 5.5-release behaves almost the same way, though the link status light >>

Re: Patch 009_httpd.patch did not apply cleanly

2014-11-25 Thread trondd
I had noticed the same thing. The src tarball on the CD is different from the tarball on the mirrors. I had taken a quick look and it was just whitespace differences that I saw. Tim.

Re: lii0 no link on 5.6-current i386

2014-11-26 Thread trondd
> I've now set aside hardware to build on and have been reading up on CVS. > More than one file is involved because 'mii_phy_activate' is defined > outside of acphy.c so the build stops there. I can see how to roll back > the one file (acphy.c) but not how to identify the others that were part > o

Re: Packet Filter router i368 vs 64bit

2014-11-28 Thread trondd
On Fri, Nov 28, 2014 at 12:00 AM, Edgar Pettijohn wrote: > > This is something I've been interested in trying, but I would want it as a > wireless access point as well and not sure what cards are supported and > work well. Does anyone know of any good choices? > > I went with an athn card in my

Re: npppd and vpn connections on the same network

2014-12-01 Thread trondd
I had this set up for an Android and an OSX client. Ignore the networks part and configure the connections for the end points. I took the npppd assigned IPs out of my DHCP range. My problems, though: Needed a specific npppd config for each client. Username, assigned IP, whatever else goes along

Re: Upgrade guide 5.5 to 5.6: sysmerge options

2014-12-02 Thread trondd
> What would the correct usage of sysmerge be as the online-version of > 'man(8) sysmerge' does not know about the options '-s' and '-x'? > If they are not valid parameters anymore, did you try it without them? The *etc.tgz tarballs are not standalone anymore, they are part of base and exist in a

Re: OpenBSD 5.6 problem with Firefox,Chrome when playing flash Videos

2014-12-06 Thread trondd
On Thu, Dec 4, 2014 at 4:16 PM, Tasos Tsolakidis 1 wrote: > [28.377] (WW) checkDevMem: failed to open /dev/xf86 and /dev/mem > (Operation not permitted) > Check that you have set 'machdep.allowaperture=1' > in /etc/sysctl.conf and reboot your machine > refer to

Re: sensorsd, upd, and state changes

2014-12-08 Thread trondd
On Mon, Dec 8, 2014 at 11:47 AM, David Higgs wrote: > > sysctl(8) will display Off if the value is zero, and On for nonzero. > So, using the "closed interval" rule above, you should use "high=0" > for indicators that you consider in "good" state when Off (i.e. > ShutdownImminent), and "low=1" for

Re: sensorsd, upd, and state changes

2014-12-08 Thread trondd
On Mon, Dec 8, 2014 at 3:23 PM, trondd wrote: > On Mon, Dec 8, 2014 at 11:47 AM, David Higgs wrote: > >> >> sysctl(8) will display Off if the value is zero, and On for nonzero. >> So, using the "closed interval" rule above, you should use "high=0"

Re: sensorsd, upd, and state changes

2014-12-08 Thread trondd
On Mon, Dec 8, 2014 at 3:45 PM, David Higgs wrote: > I'm working with tech@ and slowly writing diffs to improve these things. > > --david > I saw that. Thanks! Tim.

Re: Hide VM data from customer

2014-12-10 Thread trondd
What about using a kay partition local to the VM disk http://marc.info/?l=openbsd-misc&m=141435482820277&w=2 You'd be maintaining code either way, though. Or add an additional disk to the VM that is the keydisk. Tim.

Re: x over ssh

2014-12-13 Thread trondd
> Option 2 is what I'm looking for. Looks like you are correct after looking through /usr/X11/bin and /usr/X11R6/bin on the mac there is no xserver. > OSX does not include X11 anymore, you need to install XQuartz. I've done this setup between Linux and a Mac. Had to add my Mac to the xauth then s

Re: Best way to upgrade latest OpenBSD version

2014-12-19 Thread trondd
On Fri, Dec 19, 2014 at 9:51 PM, Ignacio Ocampo wrote: > I know that one of the goals of OpenBSD dev team is launch a new version > every six months. I'm new here, and, I want to know, what is the best way > to update OpenBSD? There is an automated way to do it? > > Thanks > > -- > Ignacio Ocampo

Re: Web Browsers crashing

2014-12-21 Thread trondd
On Dec 21, 2014 10:11 AM, "Richard E. Thornton" wrote: >It seems that a particular c++ library is not > linking properly. Any suggestions? > > Richard Thornton > Why do you think this? Can you provide an error message or stack trace? Also what are your ulimits or login.conf settings? Tim.

Re: Upgrading issues (i386 on PPro class) 5.4->5.5 leaving system horked

2015-01-02 Thread trondd
Damon Getsman wrote: > So, can anybody tell me, is my situation just so hosed that it's helpless? > I mean, should I stop waiting for potential ways to fix this dependency > hosed box and reinstall and try to find a way to re-inject all of my data > into it, or are the gurus just swamped with new

Re: Updating Ports Question

2015-01-05 Thread trondd
On Mon, Jan 5, 2015 at 4:00 PM, John Merriam wrote: > > If I then do another /usr/ports/infrastructure/bin/out-of-date I still see > this: > > Collecting installed packages: ok > Collecting port versions: ok > Collecting port signatures: ok > Outdated ports: > > devel/quirks # a

Re: ntpd.drift values?

2015-01-13 Thread trondd
The only system I have outside that range is my Zaurus SL-C3000 which is e-07. Tim. On 1/12/15, Christian Weisgerber wrote: > I'm interested in what values people have in their /var/db/ntpd.drift > files. > > To prevent a deluge: Looking over my own machines, I see that most > values are Xe-05,

Re: My computer suddenly turned itself off.

2015-01-21 Thread trondd
Check 'sysctl hw.sensors' and see if you have some temp sensors in there and what they're telling you. Tim.

Re: My computer suddenly turned itself off.

2015-01-22 Thread trondd
Joel Rees wrote: > all at the time. All browser stuff. I was thinking less about load and > more about firefox dying and taking the system with it. Firefox 26.0 > from the openbsd 5.5 packages. Google even keeps telling me the > browser is no longer supported by them. Need to upgrade to obsd 5.6

Improved www/links+ with libtls

2015-01-27 Thread trondd
I use www/links+ often as a nice lightweight browser. However, I realized it didn't do any SSL certificate validation. I found a patch that added basic validation (while silently allowing self signed certs) but still didn't do hostname verification. I went in search of some examples of hostname

Re: a thankyou to OpenBSD

2015-02-11 Thread trondd
On 2/10/15, Diana Eichert wrote: > names to something more useful than "p3p2"!!!. > That's an easy one. I have "eno16780032". Awesome. I try to stay away from as much of the Linux configuration as possible and administer the applications. My contribution is running "yum upgrade" every 3 days o

Re: man -m: Bad argument

2015-02-12 Thread trondd
Do you have another man installed somewhere? $ man -V mandoc 1.13.2

Re: man -m: Bad argument

2015-02-12 Thread trondd
On 2/12/15, John Merriam wrote: > On Thu, 12 Feb 2015, Jan Stary wrote: >> On Feb 12 11:12:46, j...@johnmerriam.net wrote: >> > On 2015-02-12 10:50, Jan Stary wrote: >> > >On Feb 12 10:15:08, j...@johnmerriam.net wrote: >> > >>What does it show when you run the alias command with no arguments to >

Re: man -m: Bad argument

2015-02-12 Thread trondd
Ok, I don't know how this is controled, but the problem is, you are actually running mandoc for which, -m means something different. I am running actual man, I guess. I just updated -current this morning (snapshot from 2/10) so I don't know what the difference is.

Re: Help needed: pkg_add dropps connections

2015-02-17 Thread trondd
When you are behind your server are you using NAT to get to the internet or a proxy? If proxy, do you have the proxy environment variables set? Tim.

Re: Help needed: pkg_add dropps connections

2015-02-17 Thread trondd
On 2/17/15, Stefan Wollny wrote: > Am 02/17/15 um 20:36 schrieb trondd: >> When you are behind your server are you using NAT to get to the >> internet or a proxy? If proxy, do you have the proxy environment >> variables set? >> >> Tim. >> > Hi Tim, >

Help needed: pkg_add dropps connections

2015-02-17 Thread trondd
He's using http protocol. Just because the hostname has ftp in it, doesn't mean it's the ftp protocol. Also, yes, I believe sudo only carries over the environment variables explicitly told to do so. Can you download packages with a web browser? Have you tried using the ftp program directly? Wh

Re: Help needed: pkg_add dropps connections

2015-02-17 Thread trondd
On 2/17/15, Gene wrote: > On Tue, Feb 17, 2015 at 2:37 PM, trondd wrote: > >> He's using http protocol. Just because the hostname has ftp in it, >> doesn't mean it's the ftp protocol. >> > > It's not just the hostname I'm basing it o

Re: OpenBSD firefox useragent Facebook

2015-02-18 Thread trondd
> I've got two workstations and one laptop running > amd64/current. > problem, neither does my laptop when it's connected through various > gateways. > And what do you think your user agent is when you connect through those other gateways? ipchicken.com should tell you. This might have to do with

Re: Short path to making Android APKs under OpenBSD?

2015-02-19 Thread trondd
On 2/19/15, Alan Corey wrote: > > Can't it be done with make or cmake? > Perhaps... We use maven, where I work. The benefit of Android Studio (besides an IDE, if you want one) is the emulators which you don't need at the packaging phase.

Re: Maintaining your system with snapshots

2015-02-20 Thread trondd
It is so quick and easy to update to another snapshot, if I find a package that doesn't work, I simply update to the latest snapshot. Maybe once or twice I have hit the situaton where the snapshot was out of date with the snapshot packages and I couldn't use my system right after upgrading. I eit

Re: Maintaining your system with snapshots

2015-02-20 Thread trondd
On 2/20/15, jungle Boogie wrote: > If you are on -current but you haven't updated in many, many snapshot > cycles, do you update current or just get the latest snapshot? Personally, I don't run -current from source. I have built subsets of the tree to pick up a patch. But my usecase isn't the s

Re: spamd whitelist

2015-02-21 Thread trondd
On 2015-02-21 18:57, Martin Brandenburg wrote: That doesn't mean you can't find the information somewhere else. I just did this for gmail by simply sending a couple emails, letting gmail retry for a couple hours and grabbing the IPs out of spamdb. Tim.

Re: spamd whitelist

2015-02-23 Thread trondd
.com with NNFMP; 24 >Feb >2015 00:54:41 - > >On Sat, Feb 21, 2015 at 9:09 PM, Edgar Pettijohn > >wrote: > >> On 02/21/15 18:29, Martin Brandenburg wrote: >> >>> Edgar Pettijohn wrote: >>> >>>> On 02/21/15 18:09, trondd wrote: >>

Re: Where is etc57.tgz? in snapshots/amd64/?

2015-02-27 Thread trondd
Sometime after 5.6 release the etc packages went away and the files are part of base packages. >On 2/27/2015 12:41 PM, Henrique Lengler wrote: > >> I wanna set a -current openbsd installation. >> The FAQ [1] for 5.6 say I need etc56.tgz, so my question is do I need >a >> etc57.tgz to install a sn

Re: improving browser security

2015-03-01 Thread trondd
On Sun, March 1, 2015 1:36 pm, Ted Unangst wrote: > I'd like to thank the OpenBSD Foundation for supporting this effort, and > the > many donors who have supported the Foundation. The Foundation wouldn't be > in a > position to support projects like this if it weren't for you. > My thanks, as well

Re: bypass xlock/slock

2015-03-09 Thread trondd
On 3/9/15, Tim van der Molen wrote: > > Another solution: startx & lock -np > This is the method I use, as well.

Re: httpd tls - what am i missing?

2015-03-25 Thread trondd
On 3/25/15, Theodore Wynnychenko wrote: > > Is there anything for me to look at/consider in trying to correct this? > > Thanks > Ted > > Here is a working example from my server. Note that I don't bother with port 80. You might want to try without the port 80 listen line to rule out some config

Re: httpd tls - what am i missing?

2015-03-25 Thread trondd
On 3/25/15, Alexander Hall wrote: > I have a feeling you cannot mix encrypted and plaintext in the same block, > but I could be wrong. > > /Alexander The example in the man page implies that it will work, also I just tried it with my config. Seems to be working fine. Tim.

Tmux mouse problem with copy-mode on wheelup

2015-05-03 Thread trondd
With tmux's mouse changes, everything is set up by default except one thing I'm trying to get back. It used to be that if you mouse scrolled up in a pane, it would enter copy mode and start scrolling up through history. It doesn't enter copy mode anymore. If I enter copy mode via the keyboar

Re: Tmux mouse problem with copy-mode on wheelup

2015-05-11 Thread trondd
On 2015-05-03 12:07, trondd wrote: With tmux's mouse changes, everything is set up by default except one thing I'm trying to get back. It used to be that if you mouse scrolled up in a pane, it would enter copy mode and start scrolling up through history. It doesn't enter copy mo

Re: OpenBSD 5.7 httpd tls intermediate/chain certificate problem

2015-05-14 Thread trondd
I've only been hacking at this, nothing "production" but looks like I did it by adding the intermidate cert and CA to cert.pem and keeping the server cert separate. Tim.

Relayd: match...forward to and a fallback

2015-05-14 Thread trondd
I'm trying to see if I can use relayd as a domain forwarder. Meaning, users connecting to multiple different domains will hit a centralized relayd server which will then relay them to the correct server hosting that domain on the backend. I'm able to accomplish this with: match request quick head

Re: Update OpenBSD Remotely

2015-05-17 Thread trondd
On 2015-05-17 10:08, Peter Leber wrote: I do not want to access the machine locally in order to interrupt the automatic reboot in order to trigger the manual upgrading process. I'm not sure what you're talking about here... Is there someone aware of a procedure which could help me solving my

Re: AnonCVS and -rHEAD

2015-06-08 Thread trondd
On Sun, June 7, 2015 10:58 pm, bytevolc...@safe-mail.net wrote: > I am in some agreement with this; it would certainly make it easier not > having to change the "-rOPENBSD_x_x" option in the .cvsrc every time > you upgrade. > You shouldn't have to put the tag into your cvsrc. Tags are sticky, mea

Re: httpd feature request: auto index.txt

2015-06-23 Thread trondd
On Tue, June 23, 2015 6:15 am, Craig Skinner wrote: > On 2015-06-22 Mon 12:39 PM |, Noah wrote: >> On Mon, Jun 22, 2015 at 11:58 AM, Craig Skinner >> >> wrote: >> > >> > *) either/both .txt/.html >> > *) .txt output something like: ls [-l[h]] | fgrep -v index.txt >> > >> >> Does auto index do the

Re: nsd configuration problem

2015-06-24 Thread trondd
On Wed, June 24, 2015 2:28 pm, Peter Pauly wrote: > NSD (name server daemon) is for authoritative DNS - answering the > question for internet users "what is the IP address of my servers". > > You may want to use Unbound. It is a recursive DNS lookup that answers > the question: "what is the IP add

Re: Regarding the default /usr partitioning

2015-06-29 Thread trondd
On Mon, June 29, 2015 4:05 am, Carlos Fenollosa wrote: > For a novice user, theyâ**re going to be constrained with the current > defaults when they want to compile some big port â** thatâ**s my case, I > canâ**t build php-5.6 because of disk space, and Iâ**ve run â**make > cleanâ** on all subfolder

All traffic over iked VPN

2015-07-03 Thread trondd
I'll jump into the current iked/ipsec/VPN discussions going on. I have used iked to create a road warrior VPN from my OpenBSD laptop to an OpenBSD server in a remote data center. All connections between the two are correctly going through the VPN. What I want to do is force all traffic from

iked config options

2015-07-04 Thread trondd
Do the 'config address 123.123.123.123' and other options do anything? "Send one or more optional configuration payloads (CP) to the peer." To what do those settings get applied? Or is it for specific implementations to use if designed for it? Tim.

Re: mail server on rental server , cannot send gmail.com

2015-07-10 Thread trondd
On 2015-07-10 16:53, Tuyosi Takesima wrote: Hi ,all . i can send and recieve mail by using mail server on rental server . namely send to tuy...@openbsd.link recieve from tuy...@openbsd.link but now state , i cannot send mail to x...@gmail.com becase of relay host what

Re: Default OpenBSD browser

2015-07-29 Thread trondd
On Tue, July 28, 2015 11:11 pm, Gerald Hanuer wrote: > Hello, > >Thoughts on Links+. > >Code quality, security and generial usefulness. > > > Regards > >Gerald Hanuer > Links+ is my prefered light browser. I find it renders the best for what I use. I periodically try and re-tr

Maintaining CAs not in cert.pem

2015-07-29 Thread trondd
I have my own CA for home use and my work also has their own CA and intermediate certificates. What is the correct way of maintaining the certificates so that the system always knows about them? I've been appending them to /etc/ssl/cert.pem but it gets replaced every update (not even maintained w

Re: Maintaining CAs not in cert.pem

2015-07-30 Thread trondd
On Thu, July 30, 2015 4:13 am, Raf Czlonka wrote: > > Why now simply put it in siteXX.tgz? > >> Tim. > > Raf > I guess the meat of the question is "is certs.pem the only location for CAs used by the system?" (ignoring application certificate stores, ie. Firefox or java). I guess tweaking my upgra

Re: Maintaining CAs not in cert.pem

2015-07-30 Thread trondd
On Thu, July 30, 2015 5:17 pm, Stuart Henderson wrote: > On 2015-07-30, Vadim Zhukov wrote: >> 2015-07-30 20:16 GMT+03:00 Stuart Henderson : >>> On 2015-07-30, Ted Unangst wrote: Michael McConville wrote: > > Another meat could be, why you're using self-signed certificates? > > Given

Re: Is lack of a prompt in shell after building the kernel bad news?

2015-08-04 Thread trondd
On Tue, August 4, 2015 7:09 am, Stuart Henderson wrote: > > This kernel and userland are out of sync, there was a change made > at some point (I think it was between 5.7 and now but I could be wrong) > which did exactly this. IIRC this is the behaviour when you have newer > userland and old kernel.

Re: how to send email via Mail

2016-02-26 Thread trondd
On Fri, February 26, 2016 10:55 am, Joel wrote: > Unfortunately, it isn't in the ports tree, but there is a slightly > updated version of mail called heirloom-mail. s-nail is a fork and is in ports. I went through this same exercise and quickly switched to IMAP so I can read my mail from anywhere

Re: Relayd TLS client mode CA verification

2016-03-25 Thread trondd
On Fri, March 25, 2016 7:15 am, Lampshade wrote: > When it works fine, but without certificate verification: > > $ cat /etc/relayd.conf > tcp protocol proto_wp { > #tls ca file "/etc/ssl/cert.pem" > tls tlsv1.1 > pass > } > > relay connect_to_mail_wp { > protocol proto_wp > list

<    1   2   3   >