Re: The 16 partitions thread

2020-04-30 Thread bofh
On Thu, Apr 30, 2020 at 11:13 AM Consus wrote: > On Thu, Apr 30, 2020 at 07:22:35AM -0500, Ed Ahlsen-Girard wrote: > > I read the 16 partitions thread and think, "I marvel at their patience > > with interlocutors who have not read the relevant source code and give > > no indication that they woul

dynamic dns updates for clients in my home network?

2020-04-25 Thread bofh
Hi, I searched through the archives and saw a couple of discussions about using Dnsmasq from a long time ago. Is that the best way to let the stuff in my home to have valid dns entries in my home network? How difficult is it to get the OpenBSD provided dhcpd and unbound to do this? Thanks.

Re: hacked for the second time

2019-04-08 Thread bofh
On Thu, Apr 4, 2019 at 8:16 PM Cord wrote: > > "Second time" of my title means: > Install first time openbsd desktop --> ssh key stealing --> hacked --> > wipe and reinstall > Install second time openbsd desktop --> not my webmail session opened --> > maybe hacked --> wipe and reinstall I don't

Re: softraid crypto seem really slower than plain ffs

2017-09-18 Thread bofh
On Mon, Sep 18, 2017 at 11:30 AM, Joel Carnat wrote: > Hello, > > I was really annoyed by the numbers I got. So I did the testings again. > Using > a brand new VM. Being really careful on what I was doing and writing it > down > after each command run. I did the testings using 6.1 and 6.2-current

Re: fd0 at fdc0 drive 0: density unknown

2017-09-10 Thread bofh
On Sat, Sep 9, 2017 at 5:58 AM, Stuart Henderson wrote: > On 2017-09-08, Tony Montana wrote: > >> booting. I agree that it's a bit ugly, but it makes booting about 5 > seconds > >> faster. > > > > It's not just a bit ugly... It's horrible. It has to go. I'm surprised > > noone has reverted this

Re: Please: Is there ANY chance that Linux binaries might run again???

2017-03-09 Thread bofh
On Tue, Mar 7, 2017 at 4:01 PM, Stefan Wollny wrote: > Hi there, > > I have to live up to my obligations - and one of them is to be able to > work with M$-Word docs. I used to do this with SoftMaker's office suite, > but since Linux-compat is gone I am stuck with LibreOffice which is just > a PIT

Re: BlackBerry Classic to use OpenBSD

2016-03-01 Thread bofh
Things like this is just a freaking waste of time. Why would you even consider it? How long have you been using OpenBSD that you would think this is a good idea?

Re: The kernels of *BSD include nonfree firmware blobs?

2015-11-27 Thread bofh
Do you understand your question has been answered over and over again, and is not relevant here? Why do you continue by asking about blobs in FreeBSD?

Re: It was twenty years ago you see...

2015-10-18 Thread bofh
On Sun, Oct 18, 2015 at 2:36 AM, Theo de Raadt wrote: > OpenBSD's source tree just turned 20 years old. > I discovered OpenBSD a couple of years later, and have been a fan since then. Thank you and the other developers very very much for the quality of work, and the passion you put in to make t

Re: OS X 10.11 'El Capitan' IKEv2

2015-10-03 Thread bofh
Ugh. I'm feeling really stupid. I can't get any vpn set up between my openbsd box and my OS X system, whether ike or npppd. First - do I have to run -current, or will 5.7 work for this? On OpenBSD virtual machine: em0: 10.211.55.5 ---/etc/rc.conf.local--- ipsec=YES iked_flags="-v" -

Yubikey

2015-09-21 Thread bofh
If you use a non-Neo yubikey and firmware prior to 2.4, you're vulnerable - physical access = stolen private key in less than half an hour. https://www.emsec.rub.de/media/crypto/veroeffentlichungen/2014/02/04/paper_yubikey_sca.pdf

Re: pf vs mp

2015-09-02 Thread bofh
You really need to specify which chips you are looking at. Or even which range of chips. Huge difference between a single core atom vs a 16 core monster. I know you've said embedded systems, so you should be able to provide some idea of CPUs. Anything else is just a waste of time because of the

Re: Alleged OpenSSH bug

2015-07-23 Thread bofh
On Thu, Jul 23, 2015 at 5:10 PM, Ted Unangst wrote: > Come on. Calling it an oversight is not condescending. I think it's > perfectly > reasonable to say it was an oversight. He did't say it was the hole of the > century. There's no need to be so defensive. > Given that the last (and first) remo

Re: Alleged OpenSSH bug

2015-07-23 Thread bofh
On Thu, Jul 23, 2015 at 5:10 PM, Ted Unangst wrote: > Giancarlo Razzolini wrote: > > > The original post wondered if this was some mis-timed April Fool's > > > joke. My reply was just to say that it's a real issue, although > > > many people won't see this issue due to the way sshd is configured

Re: SPARC minimum hardware specification

2015-07-19 Thread bofh
So what are good mips or arm motherboards nowadays? I have an openbsd box at home I need to upgrade. Might as well take a look at non-x86 stuff, as long as they can take SATA... :)

Re: Phone suggestion.

2015-05-26 Thread bofh
On Tue, May 26, 2015 at 7:31 AM, M Wheeler < b9dcbd36df10828fdb237104a05fd...@refn.eu> wrote: > On Tue, May 26, 2015 at 07:19:19AM -0400, bofh wrote: > > > > Unless you are in India, or Pakistan, or any of the other countries where > > Blackberry basically gave the

Re: Phone suggestion.

2015-05-26 Thread bofh
On Mon, May 25, 2015 at 7:12 AM, Dmitrij D. Czarkoff wrote: > M Wheeler said: > > Android is the most targeted platform by malware by a massive degree. > > Whatever you do, don't get an android. > > This is not supported by evidence. Actually, only vendors of > "antivirus" software for android r

Re: Phone suggestion.

2015-05-26 Thread bofh
On Mon, May 25, 2015 at 5:46 AM, John Long wrote: > On Sun, May 24, 2015 at 12:51:39PM +0530, Jay Patel wrote: > > Blackberry for security? or something else. > > BlackBerry has notably fewer exploits than other platforms, especially > Unless you are in India, or Pakistan, or any of the other co

Re: OpenBSD as base OS for Virtualization

2015-03-15 Thread bofh
On Sun, Mar 15, 2015 at 1:20 PM, Mikael wrote: > I know the whole virtualization thing is crap from a strict security point > of view but I like to take the risk, and OBSD certainly is a better > codebase to do this host stuff in than other systems. Probably some people > would be happy to donate

Re: lynx is gone?

2015-03-05 Thread bofh
On Thu, Mar 5, 2015 at 9:32 PM, Theo de Raadt wrote: > > Never know. OpenBSD is not generally known as an exposed democracy. > This made me chuckle out loud :) -- http://www.glumbert.com/media/shift http://www.youtube.com/watch?v=tGvHNNOLnCk "This officer's men seem to follow him merely out

is what this guy is saying even anywhere close to reasonable, about ssh everywhere?

2015-01-03 Thread bofh
https://medium.com/@shazow/ssh-how-does-it-even-9e43586e4ffc -- http://www.glumbert.com/media/shift http://www.youtube.com/watch?v=tGvHNNOLnCk "This officer's men seem to follow him merely out of idle curiosity." -- Sandhurst officer cadet evaluation. "Securing an environment of Windows platform

Re: OpenBSD 5.6 Released

2014-11-01 Thread bofh
Thank you! By the way, I read this on undeadly. Any pointers? What is this internally developed httpd server? Thanks. *Advanced notice: Big changes coming for future releases!* There are some big changes coming up in OpenBSD 5.7 (NOT 5.6!) that you may wish to think about and plan for. - O

systemd-*

2014-09-21 Thread bofh
Was reading http://boycottsystemd.org/ and they wrote: "The OpenBSD Foundation is currently developing OS-agnostic, BSD-licensed replacements , which will likely prove the most viable." Is this even something that's being worked on? http://

Re: Only two holes in a heck of a long time, but why?

2014-04-04 Thread bofh
On Fri, Apr 4, 2014 at 3:13 AM, Eric Furman wrote: > On Fri, Apr 4, 2014, at 01:47 AM, Martin Braun wrote: > > I used OpenBSD back in the 3.x days, but eventually began using Debian > > because it was much easier to maintain - yes, I compromissed quality over > > convinience. > > Easier to mainta

Re: Only two holes in a heck of a long time, but why?

2014-04-03 Thread bofh
On Fri, Apr 4, 2014 at 12:24 AM, Theo de Raadt wrote: > > On Thu, Apr 3, 2014 at 10:04 PM, Martin Braun >wrote: > > > > > As we all know on the front page of OpenBSD it says "Only two remote > holes > > > in the default install, in a heck of a long time". > > > > > > I don't understand why this i

Re: Only two holes in a heck of a long time, but why?

2014-04-03 Thread bofh
On Thu, Apr 3, 2014 at 10:04 PM, Martin Braun wrote: > As we all know on the front page of OpenBSD it says "Only two remote holes > in the default install, in a heck of a long time". > > I don't understand why this is "such a big deal". > Because their shit don't stink? Unlike other distribution

Re: OpenBSD rootkits

2014-02-18 Thread bofh
I'd think the first thing any OpenBSD dev would say - that's not our code, go ask the maintainers... Daniel Ceglelka wrote: > Theo, as a great programmer can you explain to us all what does this > piece of code? from L351: > > https://github.com/freebsd/freebsd/blob/master/contrib/openpam/include/

Re: Are there any default password managers in OpenBSD?

2013-12-06 Thread bofh
Not quite what you are looking for, but this is cool: https://telepathwords.research.microsoft.com/

Re: OpenZFS announcement

2013-09-18 Thread bofh
Of course it can. It depends on time, resources, which basically means programmers who are interested in this. It will happen when it happens. Asking won't help. Giving money would help... :) If enough people are interested, you can work with the openbsd foundation to fund a programmer to work

Re: OpenBSD crypto and NSA/Bruce Schneier

2013-09-11 Thread bofh
On Wed, Sep 11, 2013 at 3:58 AM, Peter N. M. Hansteen wrote: > on that front. On a related note, I quite enjoyed reading FreeBSD > developer Colin Percival's take on the various revelations and claims: > http://www.daemonology.net/blog/2013-09-10-I-might-be-a-spook.html Isn't that classic revers

Re: 4k-sector drives

2013-07-21 Thread bofh
In general, what I've seen is that if something works, but has a bug, submit a bug report.

Re: www.openbsd.org down?

2013-06-25 Thread Killman BOFH
> http://www.isup.me/www.openbsd.org > > it's down ( also from the netherlands ) > > On Jun 25, 2013, at 1:17 PM, Killman BOFH > wrote: > > > http://www.isup.me/openbsd.org > > > > > > *Enterprise Networks* > > Blog: unixlegion.com > > GPG Key: *0x

Re: www.openbsd.org down?

2013-06-25 Thread Killman BOFH
the use of the individual or entity to whom they are addressed. If you have received this email in error please notify the system manager. On Tue, Jun 25, 2013 at 6:13 AM, Killman BOFH wrote: > Apparently a problem with DNS A record > > www.openbsd.org is down but openbsd.

Re: www.openbsd.org down?

2013-06-25 Thread Killman BOFH
Apparently a problem with DNS A record www.openbsd.org is down but openbsd.org is up! *Enterprise Networks* Blog: unixlegion.com GPG Key: *0xBBDC0CDE* OpenNIC Project: opennic.sle.ec *IT Security - ISO 27000 - Packet Core* Phone: +593 995 956811 | +593 07 2952-763 This email and any files tra

Re: Seeking GUI refuge

2013-05-24 Thread bofh
Have you considered HTML5 + CSS? Seriously. On Friday, May 24, 2013, ag@gmail wrote: > Have you considered a thought that XFCE may be easily customizable? The > non-existing program entries can be removed and the UI customized to your > liking? > > From what you describe it doesn't seem you requ

Re: Precisions on ZFS (was: Millions of files in /var/www & inode / out of space issue.)

2013-02-22 Thread bofh
On Fri, Feb 22, 2013 at 3:27 AM, Tomas Bodzar wrote: > What's much more funny is that Oracle is paying for training and > support to Joyent to be able to offer at least some level of support > in ZFS for its own customers :D http://www.youtube.com/watch?v=-zRN7XLCRhc Funny rant half way through.

Re: Legal Question: OpenBSD Spin-off

2013-02-09 Thread bofh
Why not make it a ports/package then? On Sat, Feb 9, 2013 at 9:25 PM, Crookedmaze wrote: > On 02/09/2013 06:53 PM, Juan Francisco Cantero Hurtado wrote: >> >> On Sat, Feb 09, 2013 at 11:46:58AM -0600, Crookedmaze wrote: >> >>> >>> Hello Everyone!, >>> >>> I am creating an OpenBSD Spin-off an

Re: Verizon FIOS, OpenBSD, and DHCP

2013-02-06 Thread bofh
On Tue, Feb 5, 2013 at 11:18 PM, Jay Hart wrote: > Solved this. It took Verizon three tries (three calls by me), to actually get > the RJ-45 port working on the ONT. Hmm... I had to set my MAC address to the Actiontec's. $ cat /etc/hostname.em0 !ifconfig \$if lladdr 00:0f:b3:aa:aa:aa dhcp --

Re: UNIX A to Z List RFC

2013-02-04 Thread bofh
On Sat, Feb 2, 2013 at 9:49 PM, Chris Hettrick wrote: > When he was four I gave him an old apple iBook G4 laptop, wiped OSX and put > on OpenBSD instead. I showed him how to log in and basic commands such as > cal, man, date, cat, ls, cd, etc and I answer every question he has. If I > don't kno

Re: dhcp and dns

2013-02-04 Thread bofh
On Mon, Feb 4, 2013 at 10:05 AM, Chris Smith wrote: > On Sat, Feb 2, 2013 at 11:56 PM, bofh wrote: >> I'm running 5.2. And starting to have more and more things that need >> IP addresses pop in and out of the house. Rather than hardcoding >> everything into dhcpd.conf

dhcp and dns

2013-02-02 Thread bofh
I'm running 5.2. And starting to have more and more things that need IP addresses pop in and out of the house. Rather than hardcoding everything into dhcpd.conf, I thought I'd check with you guys to see what you use to have new devices register into DNS? I'm using unbound, but will go back to bi

Re: OpenSMTPD - thank you!

2013-02-02 Thread bofh
On Sat, Feb 2, 2013 at 6:02 PM, bofh wrote: > On Sat, Feb 2, 2013 at 6:00 PM, Gilles Chehade wrote: >> Oh, and if you liked what's in 5.2, you will love what's in -current ! > > Don't be a tease!! What's in -current? And I see 5.3-beta is tagged > already

Re: OpenSMTPD - thank you!

2013-02-02 Thread bofh
On Sat, Feb 2, 2013 at 6:00 PM, Gilles Chehade wrote: > Oh, and if you liked what's in 5.2, you will love what's in -current ! Don't be a tease!! What's in -current? And I see 5.3-beta is tagged already... Are you talking about 5.3 or post 5.3...? :) -- http://www.glumbert.com/media/shift h

Re: openbsd 5.2 i38 migrate to amd64

2012-11-24 Thread bofh
On Thu, Nov 22, 2012 at 10:08 AM, Nick Holland wrote: > On 11/22/12 09:58, bofh wrote: >> Can I just run install -> upgrade and install everything but etc.tgz >> and xetc.tgz? Any post installation stuff I have to worry about? > > No. Reinstall completely. Do not tr

Re: suggestion for default smtpd.conf file

2012-10-31 Thread bofh
On Wed, Oct 31, 2012 at 5:12 AM, Gilles Chehade wrote: > On Tue, Oct 30, 2012 at 01:19:53PM -0400, bofh wrote: >> Hi! Just upgraded my 4.4 box to 5.2! Wheee! :) >> >> Found a small issue. The current lines in smtpd.conf are: >> >> accept for local alias alias

Re: sysmerge on 5.2?

2012-10-30 Thread bofh
On Tue, Oct 30, 2012 at 7:11 PM, Stuart Henderson wrote: > On 2012-10-29, bofh wrote: >>> I kept reading - is sysmerge for use only on upgrades, for merging new >>> /etc things into the existing config? > You can save a lot of time by doing an upgrade from the insta

Re: sysmerge on 5.2?

2012-10-29 Thread bofh
On Mon, Oct 29, 2012 at 3:34 AM, bofh wrote: > On Mon, Oct 29, 2012 at 3:22 AM, Tomas Bodzar wrote: >> On Mon, Oct 29, 2012 at 8:12 AM, bofh wrote: >>> Hi, >>> Can someone help me understand how sysmerge works? I made all the >>> config changes and then f

Re: Replaced commercial vendor of network gear?

2012-09-25 Thread bofh
On Tue, Sep 25, 2012 at 9:15 PM, noah pugsley wrote: > Calm down. My double-DES half-time pads are working just fine. pfft, obviously a newbie. Nothing beats rot-13. I always use run it twice for double the security! -- http://www.glumbert.com/media/shift http://www.youtube.com/watch?v=tGvHN

Re: Replaced commercial vendor of network gear?

2012-09-25 Thread bofh
On Tue, Sep 25, 2012 at 7:59 PM, Chris Cappuccio wrote: > noah pugsley [noah.pugs...@gmail.com] wrote: >> C'mon kids, it's huawei or the highway. Who would you rather have spy on >> you, the Chinese government, or the US empire? > > Everyone on this list already knows your root password. You need

Re: Replaced commercial vendor of network gear?

2012-09-25 Thread bofh
On Mon, Sep 24, 2012 at 11:34 PM, Tomáš Bodžár wrote: > Hi all, > Is there someone willing to share such an info and ideas? Can be in private > discussion as well. Did you read about the ODMs? http://www.wired.com/wiredenterprise/2012/03/google-microsoft-network-gear/ -- http://www.glumbert.co

Re: More sensible and consistent rc.conf.local

2012-08-29 Thread bofh
On Wed, Aug 29, 2012 at 9:57 AM, Mikkel Bang wrote: > I'm just thinking that from a layman's perspective named_flags="" > doesn't make as much sense as named=YES if all you want to do is start > named. > > The way it is right now seems more like monkey patching from the days > before OpenBSD becam

Re: OpenSMTPD getting closer to stable ;-)

2012-08-20 Thread bofh
On Mon, Aug 20, 2012 at 5:01 PM, Gilles Chehade wrote: > Dear misc@ and tech@, > > We are getting closer to a stable version of OpenSMTPD and now would be > the perfect time for you to start stress-testing and trying to crash it > in various ways to make sure it is rock-solid. Does it make sense

Re: Dilemma: between OpenBSD and NetBSD

2012-08-10 Thread bofh
On Fri, Aug 10, 2012 at 11:38 PM, Matthew Dempsky wrote: > For better or worse, that's the general attitude of the mailing list. :/ Definitely for worse. I've been on misc for a damned long time now, since around the 2.3/2.4 days. I see some developers ranting every now and then, and mostly jus

Re: OpenBSD forked

2012-06-22 Thread bofh
On Fri, Jun 22, 2012 at 10:02 AM, Mic J wrote: > Who is J.R. Steven? Wasn't J.R.R. Stevens the one who wrote about trolls on the Internet Superhighway? -- http://www.glumbert.com/media/shift http://www.youtube.com/watch?v=tGvHNNOLnCk "This officer's men seem to follow him merely out of idle cur

Re: OpenBSD forked

2012-06-19 Thread bofh
On Tue, Jun 19, 2012 at 10:58 PM, Jay Patel wrote: > Hi all users, > > I am users too.  Thanks cody. I am learning C too. from "C primus > plus" any thoughts from devs. which we should read? Udacity.com had a good python class. Intro, from zero background, to writing a mini-google (crawler + ind

Re: basic smtpd question

2012-06-19 Thread bofh
Found it. Either of the following in /etc/mail/aliases will cause the problem Tai: tai TAI: tai On the other hand, the following is perfectly fine: "@.@": tai :) On Tue, Jun 19, 2012 at 5:10 PM, bofh wrote: > On Tue, Jun 19, 2012 at 3:45 PM, Gilles Chehade wrote: > &g

Re: basic smtpd question

2012-06-19 Thread bofh
On Tue, Jun 19, 2012 at 3:45 PM, Gilles Chehade wrote: > I don't know if it's that, but it is then we are facing a bug, it should > work with as many aliases as you want. > > Care to share your /etc/mail/aliases file ? I have confirmed it is the aliases file, by reverting to the original aliases

Re: basic smtpd question

2012-06-19 Thread bofh
On Tue, Jun 19, 2012 at 11:33 AM, Gilles Chehade wrote: > sorry for the delay, > > does this issue still exist ? > > can you run smtpd with -dv and send output as you reproduce ? I don't know if it's me, or what... :( I went back to the original config. If this is a bug, I'd be happy to submit,

Re: libemu compilation

2012-06-18 Thread bofh
Nevermind. Disabled the flags in the Makefile and I was done. -- http://www.glumbert.com/media/shift http://www.youtube.com/watch?v=tGvHNNOLnCk "This officer's men seem to follow him merely out of idle curiosity." -- Sandhurst officer cadet evaluation. "Securing an environment of Windows platfor

libemu compilation

2012-06-18 Thread bofh
Trying to compile libemu (http://libemu.carnivore.it/) on 5.1. Make all breaks at: gcc -DHAVE_CONFIG_H -I. -I.. -I../include -I ../.. -Werror -Wall -g -D_FILE_OFFSET_BITS=64 -D_LARGEFILE_SOURCE -D_LARGE_FILES -g -O2 -Wstrict-prototypes -MT scprofiler.o -MD -MP -MF .deps/scprofiler.Tpo -c -o scp

Re: basic smtpd question

2012-06-09 Thread bofh
On Mon, Jun 4, 2012 at 4:36 AM, Gilles Chehade wrote: > On Sun, Jun 03, 2012 at 03:02:46PM +0200, Christopher Zimmermann wrote: >> >> [...] >> >> > > >> > > Relay how? Using smarthost? Possibly password protected? Then you >> > > need something like this: >> > > >> > > map "secrets" { source db "/

Re: pf/rdr or relayd?

2012-06-06 Thread bofh
On Wed, Jun 6, 2012 at 11:07 AM, Henning Brauer wrote: > * bofh [2012-06-06 03:58]: >> I have a simple network.  My home machines are on a RFC 1918 space.  I >> sometimes run a bit-torrent client on my macbook, and I'd like to >> redirect incoming 2 to my bit-to

pf/rdr or relayd?

2012-06-05 Thread bofh
Hi, I have a simple network. My home machines are on a RFC 1918 space. I sometimes run a bit-torrent client on my macbook, and I'd like to redirect incoming 2 to my bit-torrent client on my macbook. In 4.4, I just do a: rdr pass on $ext_if proto { tcp udp } from any to any port $bt -> $macb

Re: basic smtpd question

2012-06-03 Thread bofh
On Sun, Jun 3, 2012 at 8:38 AM, Christopher Zimmermann wrote: > On Sun, 3 Jun 2012 08:15:56 -0400 > bofh wrote: > Do you want to accept remote mail for your domains? Then you need to > add "from all". So, accept from all for domain "*.domain1.com" deliver to m

basic smtpd question

2012-06-03 Thread bofh
Hi, Trying to migrate from my 4.4 to 5.1. Thought I'd go with smtpd. Is this config good? I want all email for my domain to be delivered on this box, and for this box to send email out. wan_if = "em0" lan_if = "fxp0" listen on lo0 listen on $lan_if listen on _wan_if map "aliases" { source db

openups

2012-05-25 Thread bofh
Have anyone seen this? I just saw it, and even though there's only windows app available right now, I'm hoping this can tickle some developer's fancy :) http://www.mini-box.com/OpenUPS -- http://www.glumbert.com/media/shift http://www.youtube.com/watch?v=tGvHNNOLnCk "This officer's men seem to f

Re: unbound

2012-05-20 Thread bofh
On Sat, May 19, 2012 at 5:05 PM, Stuart Henderson wrote: > I'll try and find time to properly review the diff to add it to > the system infrastructure (/etc/rc and /etc/rc.d parts etc) in the > next week or so. I am pretty confident in unbound itself but > the system integration is less well-teste

Re: OT: SSH not secure?

2012-05-09 Thread bofh
I think Alvaro should read the classic paper: Reflections on Trusting Trust. Alvaro, Written by one of the guys who wrote UNIX and the original C compiler, which is what almost every UNIX based system is derived from... http://cm.bell-labs.com/who/ken/trust.html -- http://www.glumbert.com/media/

Re: Mosh? seems dangerous!

2012-04-11 Thread bofh
Heh, I did. I was looking at the problem statement of "oh, you have to enter passwords each time you login from a different place". A combination of authorized_keys + tmux/screen would have solved that problem, methinks, and far better than yet another daemon (something that sits on a udp port is

Re: Mosh? seems dangerous!

2012-04-11 Thread bofh
And apparently they don't know how to use authorized_keys either :) -- http://www.glumbert.com/media/shift http://www.youtube.com/watch?v=tGvHNNOLnCk "This officer's men seem to follow him merely out of idle curiosity." -- Sandhurst officer cadet evaluation. "Securing an environment of Windows pla

Mosh? seems dangerous!

2012-04-11 Thread bofh
Apparently MIT's folks want to do SSH with roaming. Just curious what you guys think of it. http://mosh.mit.edu/ -- http://www.glumbert.com/media/shift http://www.youtube.com/watch?v=tGvHNNOLnCk "This officer's men seem to follow him merely out of idle curiosity." -- Sandhurst officer cadet eval

Re: Trusting the Installation

2012-02-29 Thread bofh
On Tue, Feb 28, 2012 at 10:11 PM, Nick Holland wrote: > On 02/28/12 21:43, Nathan Stiles wrote: >> Hello, >> Also I've noticed that HTTPS isn't implemented on openbsd.org. > > buy a CD. > Really. > > The "chains of rust" you were putting your trust in has flaws. I'm hoping Nathan saw that a bunch

Re: Backup Redundancy Etcetera

2012-02-07 Thread bofh
On Wed, Feb 8, 2012 at 1:02 AM, Aaron Mason wrote: > Not in Australia, and not Seagate, the only brand I will trust these > days. A 2TB Green drive is AU$135, a 1TB non-green is $155. Oh, and > the drives were bought second hand off a guy who (stupidly as he > admits) bought them for a hardware

Re: Backup Redundancy Etcetera

2012-02-07 Thread bofh
On Wed, Feb 8, 2012 at 12:34 AM, Aaron Mason wrote: >> I would avoid "green" drives like the plague. Check out the SMART >> status on them and look at the drive park statistic among others. >> Look at how high the number is, versus what the life time recommended >> number... > > I would too if it

Re: Backup Redundancy Etcetera

2012-02-07 Thread bofh
On Tue, Feb 7, 2012 at 11:57 PM, Aaron Mason wrote: > But as Mr. Anon says, choose your hardware carefully. Getting it > wrong can be disastrous. My EON-based file server is a Core2Duo 6400 > w/ 4GB RAM on a Gigabyte G41MT-ES2L and 4 2TB WD Green drives which > collectively pull 177MB/sec, thoug

OT: ZFS (Was: Re: Backup Redundancy Etcetera)

2012-02-07 Thread bofh
On Tue, Feb 7, 2012 at 3:55 AM, Anonymous Remailer (austria) wrote: >> Anonymous wrote: >> > Solaris >> > ZFS >> >> I've heard of it (ZFS) but here's the thing, I struggle enough keeping >> up with Wndows and OpenBSD I don't want to put another system into the >> mix. > > Understood. Unfortunatel

Re: Install without the DNS domain name from DHCP

2012-01-04 Thread bofh
There are other free ones, but dyndns have been severely abused by all the cheap router manufacturers. Someone needs to pay the electric bill. And I believe the sysadmins like to eat every now and then. "If you don't want to pay for it, then it is a want, not a need." -- http://www.glumbert.co

Re: Longsoon/Godson MIPS boxes, where to buy?

2012-01-03 Thread bofh
Are we a tourette treatment center? -- http://www.glumbert.com/media/shift http://www.youtube.com/watch?v=tGvHNNOLnCk "This officer's men seem to follow him merely out of idle curiosity." -- Sandhurst officer cadet evaluation. "Securing an environment of Windows platforms from abuse - external

Re: Install without the DNS domain name from DHCP

2012-01-01 Thread bofh
On Sun, Jan 1, 2012 at 2:47 PM, Josh Jevosh wrote: > Hello. > > I'm installing OpenBSD 5.0. When I configure the networking to DHCP it goes > ahead and sets the DNS domain name to something that it got from my ISP. I > would like to only use the short name that I specified as the hostname as > the

Re: UTM appliance

2011-12-30 Thread bofh
I don't think you're getting the point. *WHAT* are you looking for? UTM means different things to different people. If all you want is a packet firewall and NAT with URL caching, depending on how many people you're looking at servicing, just about any box on the market will do it. The only addi

Re: UTM appliance

2011-12-30 Thread bofh
There's no one size fits all. A good packet inspection firewall with IPS with application firewall (or application proxy really) and URL filtering with antivirus and antispam, WIFI, DLP (data leakage prevention), log monitoring and inspection, NAC and so on does not really exist, whether you want

spamd question

2011-11-24 Thread bofh
looked through spamd (8) and /etc/mail/spamd.conf. Is it better to use /etc/mail/nospamd or /var/db/override.txt? -- http://www.glumbert.com/media/shift http://www.youtube.com/watch?v=tGvHNNOLnCk "This officer's men seem to follow him merely out of idle curiosity." -- Sandhurst officer cadet eval

Re: Notice of Internet Intellectual Property

2011-10-31 Thread bofh
I wonder if the current owner of fsck.com would prefer the better fsck.xxx :) -- http://www.glumbert.com/media/shift http://www.youtube.com/watch?v=tGvHNNOLnCk "This officer's men seem to follow him merely out of idle curiosity." -- Sandhurst officer cadet evaluation. "Securing an environment of

Re: Notice of Internet Intellectual Property

2011-10-30 Thread bofh
On Mon, Oct 31, 2011 at 2:36 AM, rancor wrote: > Lol, what a scam! We got calls with the same context in Sweden as well. There's one for .xxx as well. I can see it now, RED HAWT OSes just waiting for you!!! openbsd.xxx!!! -- http://www.glumbert.com/media/shift http://www.youtube.com/watch?v=tG

Re: Polite enquiry as to if anyone is working on 64 bit time_t, and if so, what's the plan?

2011-10-20 Thread bofh
On Thu, Oct 20, 2011 at 9:44 AM, Nick Bender wrote: > NTP (from wikipedia): > >Implementations should disambiguate NTP time using a knowledge >of the approximate time from other sources. Since NTP only works >with the differences between timestamps and never their absolute >values,

Re: Why I uninstalled OpenBSD…

2011-10-01 Thread bofh
why are you trolling? any idiot who can rub two neurons can think of the following points: 1) formal audit cost $$ 2) this is a free project, always not enough $$ 3) anyone who can write code can audit it for themselves 4) the stupid troll's point that other project uses openbsd's code - that mea

Re: Firefox 6

2011-09-06 Thread bofh
On Tue, Sep 6, 2011 at 7:29 PM, Abel Abraham Camarillo Ojeda wrote: >> FF7 is the first FF release which pays serious attention to those >> memory bugs, so it might help you. takes about 2-4 hrs to compile on >> amd64. > > 2-4 hrs to build? When it finishes compiling there will be already firefox

Re: Most secure Operating-System?

2011-09-05 Thread bofh
Marco, You're thinking of that C2 aren't you? Heh, but he wanted a network stack. I'm thinking MS-DOS with the network stack... Alec, Why are you trolling? If this is a real project/proposal, you need a hell of a lot more help than this. On Mon, Sep 5, 2011 at 4:40 PM, Marco Peereboom wrote:

Re: Most secure Operating-System?

2011-09-05 Thread bofh
On Mon, Sep 5, 2011 at 3:07 PM, Amit Kulkarni wrote: > AFAIK it doesn't run on current mainframes. Only IBM's various OS's > run on mainframes, as IBM has a corner on that mainframe market. But with the Hercules emulator, you can run the mainframe on your desktop!!! :) -- http://www.glumbert.co

Re: PC for assembly learning purposes

2011-07-24 Thread bofh
On Sun, Jul 24, 2011 at 7:27 AM, Tomas Vavrys wrote: > Hello, > > I am looking for a new cheap PC for assembly learning purposes, > because I don't want to break my current workstation. If you are doing only userland development, why would it break your current workstation? In fact, if you manag

Re: vmmap: bad software everywhere

2011-05-31 Thread bofh
On Tue, May 31, 2011 at 11:03 PM, Ted Unangst wrote: > On Tue, May 31, 2011 at 10:39 PM, Corey wrote: > > data in "unused" bits in a pointer? Even I know that's a bad idea. Is > it > > really that important to run your Javascript 2% faster? > > The difference is quite a bit more than 2%. The

Re: Executing from crontab only does the job when I logged on.

2010-12-27 Thread bofh
He said read cron logs, not man page... -- http://www.glumbert.com/media/shift http://www.youtube.com/watch?v=tGvHNNOLnCk "This officer's men seem to follow him merely out of idle curiosity." -- Sandhurst officer cadet evaluation. "Securing an environment of Windows platforms from abuse - exter

Re: FreeBSD isn't Free

2010-10-06 Thread bofh
On Wed, Oct 6, 2010 at 12:47 PM, Ted Unangst wrote: > On Wed, Oct 6, 2010 at 12:09 PM, Super Biscuit > wrote: > > Did they get the licensing, approval, or letter? > > I'm pretty sure that not every FreeBSD user with a laptop "system > incorporating such software" has such a letter because I know

Re: Just upgraded firewall from 4.2-current

2010-09-29 Thread bofh
On Wed, Sep 29, 2010 at 6:31 AM, Henning Brauer wrote: > * Ray [2010-09-29 09:49]: > > I just upgraded a firewall from 4.2-current to 4.8-current. > > you got it all wrong. you are supposed to whine about the oh so hard > jump over the pf syntax changes. it is so hard. i read it in ze > inder

Re: Porting effort towards TILERA massive multicore CPUs...?

2010-09-26 Thread bofh
Responding to original poster: What's the performance/core? Putting 1000 6502 cpus on a die isn't going to do much. Not even the 65832 will give any kind of performance. Additionally, is the architecture some we can use? Cray supercomputers used to be very fast, but vector programming is not s

Re: pf for routers?

2010-09-25 Thread bofh
Just curious, but why not "man route"? On 9/22/10, Beavis wrote: > Greetings List, > > > I would like to ask if someone has done routing via pf(4) (non-NAT > rules). My idea is to be able to route packets from one interface to > the other. say from tun0 to rl0. I've been googling a lot and most o

Re: which monitoring do you use (on OpenBSD)

2010-08-14 Thread bofh
Friends who are using splunk strictly as a logger liked it. We had hell of a lot of pain implementing 4.0. They don't understand the concept of dropping privs, so it has to run as root. My company does not allow the non-os team to have root. So endless fucking around with permissions and "hey u

Re: a minor correction to rc.conf comments

2010-07-29 Thread bofh
Here's one about a Latin teacher named Charlie Charliebus sittibus on the deskinorum Deskibus collapsibus Charliebus sittibus on the floorum On 7/29/10, Bryan Irvine wrote: > On Thu, Jul 29, 2010 at 4:49 PM, Ed Ahlsen-Girard wrote: >> From: Marco Peereboom >> Date: 2010-07-29 23:2

Re: a minor correction to rc.conf comments

2010-07-29 Thread bofh
Latin's a dead language As dead as dead can be It killed off all the Romans And now it's killing me On 7/29/10, Bryan Irvine wrote: > On Thu, Jul 29, 2010 at 4:49 PM, Ed Ahlsen-Girard wrote: >> From: Marco Peereboom >> Date: 2010-07-29 23:25:14 >> >>> >>> On Fri, Jul 30, 2010 at 01:

Re: mount ffs as msdos, system hangs

2010-07-25 Thread bofh
Ok, when I first learnt how to use unix nearly 20 years ago, one of the things I learnt was that a privileged user can break shit, but should not cause kernels to hang or crash. That would be considered a bug. Only DOS and windows 3.1 do that :) On 7/25/10, STeve Andre' wrote: > On Sunday 25 Ju

  1   2   3   4   5   6   >