Re: PPPoE vlan issue 6.4

2019-02-11 Thread Daniel Gillen
On 11.02.19 04:53, David Gwynne wrote: > Hi Adam, > > It sounds like you're on an ISP with very similar requirements to me. The > exec summary of what my ISP wants is pppoe on vlan2, with the vlan priority > forced to a single value. > > Our (OpenBSD's) understanding of the priority field in

Re: OpenBSD 6.3, pppoe and IPv6 - default route missing

2018-04-13 Thread Daniel Gillen
On 13.04.2018 18:54, Edmund Craske wrote: > On Fri, Apr 13, 2018, at 9:31 AM, Stuart Henderson wrote: >> Can you show your whole hostname.pppoe0 file? (mask your password of >> course). On Zen I'm using the following >> >> mtu 1500 >> inet 0.0.0.0 255.255.255.255 0.0.0.1 pppoedev em1 authproto

Re: dokuwiki - /dev/urandom issue

2017-06-11 Thread Daniel Gillen
On 11.06.2017 19:43, Asbel Kiprop wrote: > Hello > After todays update my Dokuwiki just throw 500 error "There is no suitable > CSPRNG installed on your system". Googled a bit and found out it because i > have no /dev/urandom in my basedir, > And this kinda obvious cuz i have httpd chrooted by

Re: How easy is to do a MITM/spoof/etc. a public IP address?

2017-01-25 Thread Daniel Gillen
On 25.01.2017 15:42, C. L. Martinez wrote: > On Wed, Jan 25, 2017 at 02:07:55PM +, Stuart Henderson wrote: >> On 2017-01-25, C. L. Martinez wrote: >>> Hi all, >>> >>> I have received a (maybe) "stupid" request from one of our customers. >>> We have a pair of public

Re: PPPoE (5.9 still): https gets stuck

2016-09-13 Thread Daniel Gillen
On 13/09/2016 11:51, Harald Dunkel wrote: > Hi folks, > > I am using an openbsd (5.9) box as gateway/firewall to the > internet. ISP is Deutsche Telekom. In between is a Vigor 130 > VDSL2 modem, configured to PPPoE passthrough. The PPPoE > connection is initiated on the openbsd box. > > Problem:

Re: DigitalOcean and OpenBSD

2016-08-25 Thread Daniel Gillen
On 25.08.2016 14:46, Kamil CholewiƄski wrote: > On Thu, 25 Aug 2016, Gilles Chehade wrote: >> There are other alternatives with better hardware, services and policies >> within the same price ranges. online.net to name one, hetzner.de to name >> another one. > > Hetzner

Re: PPPoE issues

2016-05-29 Thread Daniel Gillen
On 29/05/2016 21:53, Maurice Janssen wrote: > Hi, > > I'm trying to replace a PC Engines Alix board with an APU 2c4 board, but > I'm having some issues to get it up and running. > I have a fiber connection and my ISP requires a PPPoE connection over > VLAN 6. > > With the old setup, this works

Re: pf sanity check

2016-05-25 Thread Daniel Gillen
On 25.05.2016 15:01, Jeff Ross wrote: > Hi all, > > I am incrementally bringing my server up to date. I was on 5.5-current so > following the instructions I upgraded to 5.6 stable. > > I re-wrote my pf.conf to remove the oldqueue rules and to simplify the > rule set. > > Checks okay for

Re: OT: Any experience connecting OpenBSD via ONT ?

2016-04-27 Thread Daniel Gillen
On 28/04/2016 05:07, Jeremy wrote: > On Tue, 26 Apr 2016 17:53:32 -0500 > Adam Thompson wrote: >> If all else fails, run "ifconfig em2 up", and then "tcpdump -i em2 >> - -l -n" and see what, if any, traffic is coming from the ONT on >> the raw ethernet port (this will

Re: OT: Any experience connecting OpenBSD via ONT ?

2016-04-25 Thread Daniel Gillen
On 26/04/2016 04:56, open...@smartpoint.co.nz wrote: > Does anyone have experience connecting an OpenBSD box via a fibre ONT ? > > I currently have a working setup using the OpenBSD box as a > router/firewall for my LAN, connecting to the internet via an ethernet > connected ADSL modem. I'm

Re: unable to add tun interface to bridge

2016-04-24 Thread Daniel Gillen
On 24.04.2016 04:39, niya levi wrote: > hi everyone > i am trying to setup openvpn with tun on a bridge (openbsd 5.9), > i tried the following but got an Invalid argument error, > > ifconfig tun0 create > ifconfig bridge0 create > ifconfig bridge0 add em0 > ifconfig bridge0 add tun0 > ifconfig:

Re: upgrade OpenBSD 5.8 to 5.9 daemon: unknown class

2016-04-22 Thread Daniel Gillen
On 22.04.2016 03:25, Ultramedia Libertad wrote: > hello > > I am upgrade OpenBSD 5.8 to 5.9 and after to reboot > > i have follow errors in remote console : > > > > > > > > > > > > > > > > > *init: daemon: unknown class (failed)syslogdsu: daemon: unknown class > (failed)pflogdsu:

OpenBSD 5.9 / -current kernel hangs on boot

2016-04-18 Thread Daniel Gillen
Hi list I'm facing a problem here I had never before and hope you can help me. I'm trying to install OpenBSD (tried 5.9 and -current from 17.04.2016) onto a Lanner FW-8894A (C610 chipset / Xeon E5-2680) appliance. Unfortunately the kernel hangs at boot. The last message printed is: pckbc0 at

Re: What do you use to manage contact info?

2016-03-04 Thread Daniel Gillen
On 04.03.2016 15:46, Matthew Weigel wrote: > On 2016-03-03 21:36, Joe Er wrote: >> What do you use to manage your contacts? I am currently using the >> address book in Thunderbird and am wondering if there is something that >> is better. > > I'm not proud of it, but I use egroupware. I almost

Re: inet6 autoconf will not remove invalid addresses on -current

2015-10-02 Thread Daniel Gillen
On 02.10.2015 21:55, Stuart Henderson wrote: > On 2015/10/02 21:24, Daniel Gillen wrote: >> But does an ifconfig down really does not remove autoconfigured IPv6 >> addresses? > > Nope, they stay there. > >> I can't test it as ifconfig pppoe0 down does not seem

Re: inet6 autoconf will not remove invalid addresses on -current

2015-10-02 Thread Daniel Gillen
On 02.10.2015 15:21, Martin Pieuchot wrote: > On 02/10/15(Fri) 12:53, Stuart Henderson wrote: >> [...] >> I think it would probably make sense to remove an autoconfigured >> prefix/address if an interface goes down (and one could argue for this >> being the right thing to do for IPv4/DHCP as well

Re: inet6 autoconf will not remove invalid addresses on -current

2015-10-01 Thread Daniel Gillen
On 01.10.2015 10:48, Martin Pieuchot wrote: > Hello, > > On 30/09/15(Wed) 18:19, Daniel Gillen wrote: >> [...] >> inet 0.0.0.0 255.255.255.255 NONE \ >> pppoedev vlan35 \ >> authproto pap \ >> authname "@vo.lu" \ >&g

Re: inet6 autoconf will not remove invalid addresses on -current

2015-10-01 Thread Daniel Gillen
On 01/10/2015 10:48, Martin Pieuchot wrote: > Hello, > > On 30/09/15(Wed) 18:19, Daniel Gillen wrote: >> [...] >> inet 0.0.0.0 255.255.255.255 NONE \ >> pppoedev vlan35 \ >> authproto pap \ >> authname "@vo.lu" \ >&g

inet6 autoconf will not remove invalid addresses on -current

2015-09-30 Thread Daniel Gillen
Hi again I spotted the following while my ISP disconnected my pppoe link last night. I have the following /etc/hostname.pppoe0 file: inet 0.0.0.0 255.255.255.255 NONE \ pppoedev vlan35 \ authproto pap \ authname "@vo.lu" \ authkey "" dest 0.0.0.1 inet6 autoconf

Re: Making IPv6 NAT prefer privacy address

2015-09-24 Thread Daniel Gillen
On 23/09/2015 16:16, Marios Makassikis wrote: > On 23 September 2015 at 15:34, Giancarlo Razzolini > wrote: >> Em 23-09-2015 04:40, Stuart Henderson escreveu: >>> Saves messing about with DHCPv6-PD >> >> I see. So you translate from what exactly? Wouldn't it be better to

Making IPv6 NAT prefer privacy address

2015-09-22 Thread Daniel Gillen
Hi I currently have the following rule to nat traffic out to the internet: match out on $if_ext inet6 from $if_int:network to any nat-to ($if_ext) But this chooses from one of the configures addresses (using round-robin). Is there a way I can configure pf to prefer the privacy address (the one

Re: Unable to use static ipv6 address on an if when another if has ipv6 autoconf enabled

2015-09-19 Thread Daniel Gillen
On 19.09.2015 11:17, Stuart Henderson wrote: > On 2015-09-18, Daniel Gillen <gillen.dan...@gmail.com> wrote: >> If I remove the "inet6 autoconf" line from the hostname.pppoe0 file, I >> don't receive an ipv6 address from my ISP anymore (which is normal) but >&g

Unable to use static ipv6 address on an if when another if has ipv6 autoconf enabled

2015-09-18 Thread Daniel Gillen
Hi list I'm having some trouble setting up my home router under OpenBSD 5.7-stable and hope you can help me. My setup: I'm connecting to my ISP trough pppoe and basically my box should do ipv4 and ipv6 NAT for anything that comes from my local network. For the sake of easyness, I'm using the

Re: upgrade openbsd partition cipher

2015-06-18 Thread Daniel Gillen
On 18.06.2015 22:24, Ultramedia Libertad wrote: cd /dev MAKEDEV sd3 try: cd /dev ./MAKEDEV sd3

pppoe over vlan problem

2013-09-24 Thread Daniel Gillen
Hi list I recently upgraded my firewall from OpenBSD 5.0 to 5.3 (i386). Unfortunately, after the upgrade process, my pppoe connection to my ISP didn't work anymore. I'm using kernel pppoe with the following setup: /etc/hostname.xl1: up /etc/hostname.vlan0: vlan 35 vlandev xl1 up