PF firewall for desktop

2019-05-24 Thread Jean-Francois Simon
Hi, Out of interest, I'd like to let you know a specific use of OpenBSD with PF, in virtualbox, 2 virtual network card Bridged to physical NIC, and building up a subnet with NAT and hence running Packet Filter as the machine's firewall. That's the firewall I use under Win7, OpenBSD running

ETE - ETA

2017-01-22 Thread jean-francois
Hi, I always wondered what was ETA for during the installation process. As of today, I noticed this should read ETE as for Estimated Time Enroute. ETA stands for Estimated Time of Arrival and is therefore more or less constant. Regards

OpenBSD as primary OS

2016-09-11 Thread jean-francois
Hi, I'm moving to OpenBSD for primary use, I'll have to keep a Windows OS for some specific purposes also. Just thanks for the development of OpenBSD, it's very easy to use since logical and well documented, I've been enjoying it for the past years for what it deserved to do. Also looked

Which hardware to keep the level of trust ?

2015-09-27 Thread Jean-Francois Simon
Dear all, After having read infos about breaking into bios and other type of attacks, has anyone info on which hardware best suits OpenBSD to avoid unpleasanties ? I was thinking of PIC 32 Microchip but surely difficult to implement an OS running into it able to handle normal desktop

Re: httpd slowcgi notes

2014-11-10 Thread Jean-Francois Simon
Hi All, With httpd as of 5.6 I do not understand how to make cgi script work eg just bgokg installed by default at address /cgi-bin/bgplg ==httpd.conf== prefork 2 server local { listen on egress port 80 } server local-fastcgi { listen on egress port 80 fastcgi } ==EOF== /etc/rc.d/httpd

Re: OpenBSD email provider

2014-03-17 Thread Jean-Francois Simon
Hello Some answers in your mail. Thanks. Just to mention, I'm looking for a more private ESP. As I know that OpenBSD conveys an idea of security, I tend to trust a provider relying on this OS. Regards Le 17/03/2014 02:51, Jean-Philippe Ouellet a écrit : On 3/15/14 12:54 PM, Jean-Francois

OpenBSD email provider

2014-03-15 Thread Jean-Francois Simon
Hello all, I'm looking for a secure mail provider, i fpossible using OpenBSD, also wondering if OpenBSD itself provides it for interested people. If anybody has informations thanks would be interesting to share. Regards Jeff

Re: Why I abandoned OpenBSD, and why you should too...

2013-07-04 Thread Jean-Francois Simon
May I understand you U go for Microsoft instead ? That would be great idea, they are said to be free from backdoors. Sorry Le 05/07/2013 05:56, Thomas Jennings a écrit : Dear OpenBSD developers and users: Regretfully, I have decided to abandon OpenBSD and thought I would share my reasoning

Re: softraid: adding volumes, CPU requirements, RAID5

2013-07-02 Thread Jean-Francois Simon
Le 20/05/2013 13:46, Nick Holland a écrit : On 05/20/13 00:52, Hugo Osvaldo Barrera wrote: Hi, I'm building myself an openbsd-based fileserver, which will initially have three disks with softraid in RAID5 mode. I've three questions regarding softraid: 1) I intend on using a single-core

Re: softraid: adding volumes, CPU requirements, RAID5

2013-07-02 Thread Jean-Francois Simon
Le 03/07/2013 00:53, Nick Holland a écrit : On 07/02/13 17:07, Jean-Francois Simon wrote: Le 20/05/2013 13:46, Nick Holland a écrit : On 05/20/13 00:52, Hugo Osvaldo Barrera wrote: ... 3) The man pages report RAID5 as experimental. I'm curious, why is this so? Is it just not-very-thoroughly

Question about filesystem

2011-02-05 Thread Jean-Francois
Hello, I just read some extracts of a paper, study from Margo Seltzer Keith A. Smith from Harvard university, a comparison of LFS FFS. It looks like the creation of files in FFS is rather long such as creation of many small files is somewhat not very fast compared to certain other FS. As

Wine under OpenBSD

2011-02-05 Thread Jean-Francois
Hello, Is wine available for OpenBSD ? I could'nt find it in packages nor ports. If not available, it might be possible to run it under linux emulate ? Thanks for experience. Regards

Re: Question about filesystem

2011-02-05 Thread Jean-Francois
Is this what you ask for ? = 4.4BSD Fast File System http://www.eecs.harvard.edu/~margo/papers/usenix95-lfs/ Le Saturday 05 February 2011 19:21:47, Ben Calvert a icrit : out of curiosity, which FFS were they studying? On Feb 5, 2011, at 6:32 AM, Jean-Francois wrote: Hello, I just read

Re: Question about filesystem

2011-02-05 Thread Jean-Francois
Hi, Right. Could you please describe in few words whet softdeps is ? Thanks. J-F Le Saturday 05 February 2011 20:11:17, Nick Holland a icrit : On 02/05/11 09:32, Jean-Francois wrote: Hello, I just read some extracts of a paper, study from Margo Seltzer Keith A. Smith from Harvard

Re: Question about filesystem

2011-02-05 Thread Jean-Francois
Had not seen it from the FAQ. Thanks for the link. Le Sunday 06 February 2011 00:04:55, Richard Toohey a icrit : On 6/02/2011, at 9:31 AM, Jean-Francois wrote: Hi, Right. Could you please describe in few words whet softdeps is ? http://www.openbsd.org/faq/faq14.html#SoftUpdates

chrooted browser

2011-01-16 Thread Jean-Francois
Hello, Is there a way to chroot the web browser for safer internet surfing ? Regards

Re: delete user in group script

2010-12-28 Thread Jean-Francois Simon
On Tuesday 14 December 2010 13:16:59 Markus Hennecke wrote: On Tue, 14 Dec 2010, OpenBSD Geek wrote: I made as I could, since it works, where is the probleme...? ;-) Tomas already pointed out where this will blow up for sure. Hint: Take a look at mktemp(1) and install(1) to weed out the

IPSEC leak channel issue

2010-12-24 Thread Jean-Francois
Hi, Regarding the recent issue, I would like to understand what could be potentially the threat, cause to me it's only likely that a crypted channel could leak information if hjowever the sory reveals to have imacted OpenBSD. Thanks for some kind of understanding from those who have that

Re: Print server

2010-12-23 Thread Jean-Francois
Le Wednesday 22 December 2010 23:40:03, Jacob Meuser a icrit : On Wed, Dec 22, 2010 at 11:20:47PM +0100, Jean-Francois wrote: Hello, I would like to use a printer on the server and share it like samba supports, have it a shared network printer through openbsd server. The printer

Print server

2010-12-22 Thread Jean-Francois
Hello, I would like to use a printer on the server and share it like samba supports, have it a shared network printer through openbsd server. The printer is actually a usb one that I would like to connect to the server. Is this basically working ? supported ? Printer is Brother HL 2030,

C++ CGI script

2010-12-13 Thread Jean-Francois
Hello, Sorry for posting basic question here, would you please let me know why such script does'nt work (error with Premature end of script headers) ? #include iostream using namespace std; int main() { cout Content-type: text/plain endl endl Hello, World!; } It actually shows flush

Hard links details

2010-12-12 Thread Jean-Francois
Hi, May someone help me to understand how exactly hard links works ? To some extend U understood that a hard link is indistinguishable from the original yet it must be so that the datas are linked-back to all the hard links pointing on it, correct ? This means that it is safe to a) create

hotplugd and auto mount UI

2010-12-11 Thread Jean-Francois
Hello, Has someone already programmed any kind UI or GUI used with hotplugd for auto mounting and user interface to eventually mount or unmount the device ? I am quite doing this for a friend, however if something already exists ... Thanks Jean-Frangois

Lenovo

2010-12-02 Thread Jean-Francois
Hi All, Are Lenovo, say for example T410 or equivalent professional laptops ok with OpeNBSD in terms of compatibility ? Any things to take care about ? Regards JF

Gnome running slow

2010-11-18 Thread Jean-Francois
Hi, I experience a dsktop running quite slow, I have seen it running well sometimes. Gnome is simply slow and I have no idea why, after login, it is not always that slow, sometimes is runs well. Apparently, with top I see Xorg consuming many resources. I have no idea how to solve this. Do

choice for a ftpd

2010-11-06 Thread Jean-Francois
Hello, I think of installing as a ftp daemon vsftpd or pure-ftpd since both seems to be simple and secure. Would you recommend one or the other in terms of security or scalability ? Regards

Re: Enough is enough!

2010-11-02 Thread Jean-Francois
Le Tuesday 02 November 2010 09:18:08, bsdmas...@hushmail.com a C)crit : FTP server down, amd64 snapshot packages way out of sync with latest libc bump... What the hell! If you guys don't get your sh*t together, I'm done. Yeah, you read that right. If this whole situation is not cleared in

Re: OpenBSD-capable, fanless, diskful computer with ECC RAM

2010-11-01 Thread Jean-Francois
Le Saturday 30 October 2010 02:14:21, Damien Miller a icrit : Hi, Can anyone recommend a small, fanless computer that will accept a HD (perhaps a 2.5 drive) that uses ECC RAM? Needless to say, it must run OpenBSD. Being 64 bit, having accellerated crypto and/or supporting multiple drives

Re: more about softraid

2010-10-30 Thread Jean-Francois
Le Saturday 30 October 2010 04:52:35, Marco Peereboom a icrit : On Thu, Oct 28, 2010 at 10:41:52PM +0200, Jean-Francois wrote: # bioctl -R sd0a sd2 If I understand well the above command kicks off a rebuild on a replacement device. Few questions from my side ... Is it possible

Re: more about softraid

2010-10-30 Thread Jean-Francois
Le Saturday 30 October 2010 15:22:32, Marco Peereboom a icrit : On Sat, Oct 30, 2010 at 12:18:42PM +0200, Jean-Francois wrote: Le Saturday 30 October 2010 04:52:35, Marco Peereboom a icrit : On Thu, Oct 28, 2010 at 10:41:52PM +0200, Jean-Francois wrote: # bioctl -R sd0a sd2 If I

Re: nfsv4?

2010-10-28 Thread Jean-Francois
Le Thursday 28 October 2010 03:34:15, Theo de Raadt a icrit : On Wed, Oct 27, 2010 at 5:26 PM, FRLinux frli...@gmail.com wrote: On Wed, Oct 27, 2010 at 9:45 PM, Theo de Raadt dera...@cvs.openbsd.org wrote: The design process followed by the NFSv4 team members matches the

Re: more about softraid

2010-10-28 Thread Jean-Francois
# bioctl -R sd0a sd2 If I understand well the above command kicks off a rebuild on a replacement device. Few questions from my side ... Is it possible to rebuild with another device for example sd0b or sd1a instead of sd0a ? (seems no if I understood properly) Is the same process as for

Re: Linux or OpenBSD

2010-10-23 Thread Jean-Francois
Le Wednesday 22 September 2010 21:29:31, Rikky Taylor a icrit : I was after some general advice. I need to setup a routing firewall with 3 interfaces, moderate traffic and a fair amount of NAT'ing in the rules. Given identical modern server hardware would I expect a performance difference

more about softraid

2010-10-23 Thread Jean-Francois
Hi, I'm having difficulty to understand how softraid works ie. how to add chunks, remove chunks, change and rebuild, add/remove hotspares. The manpages bioctl softraid only mention basic configuration, but once the raid is working ... any other related docs or man ? Thanks, J-F

Re: more about softraid

2010-10-23 Thread Jean-Francois
Le Sunday 24 October 2010 00:34:53, Tomas Bodzar a C)crit : I think that this will solve your hunt for informations ;-) http://www.openbsd.org/papers/asiabsdcon2010_softraid/softraid.pdf On Sun, Oct 24, 2010 at 1:21 AM, Jean-Francois jfsimon1...@gmail.com wrote: Hi, I'm having difficulty

Re: insecure scheduler in OpenBSD 4.7

2010-10-12 Thread Jean-Francois
I've been convinced not to biy NVidia anymore. Le Tuesday 12 October 2010 06:04:27, Tomas Bodzar a C)crit : First of all people don't use NVIDIA crap for hosting platform (or any other use). Or at least they try to avoid it as much as possible. As you can see in your dmesg you have quite a lot

Re: RAID support

2010-10-07 Thread Jean-Francois
Le Thursday 07 October 2010 13:22:01, g.du...@otasc.org a icrit : Hello, Is soft RAID currently a work in progress, I remember some important features were still added release after release recently. Will it be the case for forthcoming 4.8 ? Regards Jean-Frangois Hi, is

Re: RAID support

2010-10-07 Thread Jean-Francois
Hi, Doing tests, I could not always do properly the kick off of a rebuild. What is exactly the procedure for doing a rebuild with bioctl -R ? In particular I don't understand, when you have say a build with chunks sd0a and sd1a, then remove one chunk, plug a new one, if it doe'nt appear as sd1

Re: FreeBSD isn't Free

2010-10-06 Thread Jean-Francois
Le Wednesday 06 October 2010 12:10:53, Oliver Peter a icrit : On Tue, 05 Oct 2010 23:22:03 -0600 Theo de Raadt dera...@cvs.openbsd.org wrote: Just for fun. Stop wasting your time reading people's licenses., http://www.openbsd.org/cgi-bin/cvsweb/src/usr.bin/mg/theo.c.diff?r1=1.77;r2 =1.78

RAID support

2010-10-06 Thread Jean-Francois
Hello, Is soft RAID currently a work in progress, I remember some important features were still added release after release recently. Will it be the case for forthcoming 4.8 ? Regards Jean-Frangois

Re: Is GeForce 8200 supported ?

2010-10-02 Thread Jean-Francois
Le Thursday 30 September 2010 22:45:02, Chris Cappuccio a icrit : Not supported Jean-Francois [jfsimon1...@gmail.com] wrote: Hello, I have a problem starting X and in Xorg.0.log there is the following lines. Is it a driver error ? It's an integrated graphic card on the MB providing

Re: Is GeForce 8200 supported ?

2010-10-02 Thread Jean-Francois
Le Saturday 02 October 2010 17:37:59, Ted Unangst a icrit : On Sat, Oct 2, 2010 at 4:55 AM, Jean-Francois jfsimon1...@gmail.com wrote: Is there noway to solve this with existing software, such as a compatible but limited driver ? Have you called up nvidia? You have a support contract

Re: project : openbsd as nas

2010-10-02 Thread Jean-Francois
. # Force the user to think and type in a disk name by # making 'done' the default choice. # Jean-Francois Simon, ADD start echo for _n in $(get_dkdevs); do echo disk : $_n disklabel -h

Is GeForce 8200 supported ?

2010-09-30 Thread Jean-Francois
Hello, I have a problem starting X and in Xorg.0.log there is the following lines. Is it a driver error ? It's an integrated graphic card on the MB providing both vesa/hdmi outputs. Could you please help ? (II) VESA: driver for VESA chipsets: vesa (II) Primary Device is: PCI 0...@00:00.0 (WW)

Samba security hole chain_reply

2010-09-12 Thread Jean-Francois
Hello, I am reading an article about Samba chain_reply vulnerability called CVE-2010-2063, where one can execute root shell on the server as far as I understand with all smb server up to 3.3.13 (excluded). One basic question, is this having the desired effect under OpenBSD as well or any

Re: pf.conf : rdr-to IF rather than IP

2010-09-12 Thread Jean-Francois
at 02:05:40PM +0200, Jean-Francois wrote: Hello, I would like to redirect particular ports on the sub-network, not only on one ip adress of the subnetwork. Taking an example, I would like some software that listen to ports on different machines with different ip adress without having

automounter

2010-09-10 Thread Jean-Francois
Hello, Do you have an idea where to look for an auto mounter in openbsd ? I installed gnome as a server for a friend and would like that his fat32 usb disks are auto mounted ... It might be useful to auto mount also other kind of file systems. And for esata, is it possible to mount without

Re: problem with samba / broadcastClosed, it was an IF misconfiguration.

2010-09-10 Thread Jean-Francois
Solved, was an IF misconfiguration only. Sorry Le jeudi 09 septembre 2010 03:48:59, Jean-Frangois SIMON a icrit : Hello, I have tonight a small problem, if you could please check and see if something is wrong here. The samba share seems blocked, the packets are not broadcasted. Thanks.

How MAC address is incorporated in packets

2010-08-30 Thread Jean-Francois
Hi, Might you please indicate how in the construction of an IP packet the mac address in incorporated into it. Is the job of the OS or of the IF ? If the OS is responsible for it, how is it processed and is it possible to change the physical address in the packets sent for an address of our

project : openbsd as nas

2010-08-30 Thread Jean-Francois
Hello, I was thinking about how to help openbsd project, and since I am not able to help in programming, I'm thinking about starting something aroung openbsd such as a layer making it an easy enough to manage home nas server of good quality. I have not yet the whole picture of how to do it but

Re: pf.conf : rdr-to IF rather than IP

2010-08-29 Thread Jean-Francois
. Regards If you can explain what you're actually trying to do, rather than talk about how you're thinking of accomplishing it, maybe someone can suggest a way. On 2010-08-28, Jean-Francois jfsimon1...@gmail.com wrote: Good evening, Is it possible to redirect to an IF or at least

Safely removing the rule blocking 6000:6010 in pf.conf

2010-08-29 Thread Jean-Francois
Hi, One question, I run gnome on openbsd 4.7 and apparently there is no reason to keep the following rule since nothing listens to those ports on my machine. block in on ! lo0 proto tcp to port 6000:6010 I verified with netstat that there is nothing listening to any of tcp ports in the range

Re: Safely removing the rule blocking 6000:6010 in pf.conf

2010-08-29 Thread Jean-Francois
not running a default deny setup? Maybe because this pf.conf is the default one. On 29 August 2010 14:45, Jean-Francois jfsimon1...@gmail.com wrote: Hi, One question, I run gnome on openbsd 4.7 and apparently there is no reason to keep the following rule since nothing listens

Re: MTA choice

2010-08-28 Thread Jean-Francois
Le mercredi 18 ao{t 2010 11:10:47, Gregory Edigarov a icrit : On Wed, 18 Aug 2010 10:07:58 +0200 Henning Brauer lists-open...@bsws.de wrote: * Gregory Edigarov g...@bestnet.kharkov.ua [2010-08-17 09:29]: Qmail??? Postfix??? easiest to use Oh, please don't... I would even not give a

pf.conf : rdr-to IF rather than IP

2010-08-28 Thread Jean-Francois
Good evening, Is it possible to redirect to an IF or at least an IP range such as following rules ? match in on $ext_if proto tcp from any to any port 1024:32768 \ rdr-to $int_if match in on $ext_if proto tcp from any to any port 1024:32768 \ rdr-to 192.168.100.0/16

pf.conf : rule tagged x OR y ?

2010-08-22 Thread Jean-Francois
Hello, Is it ever possible to have a rule in pf.conf such as : pass in on $int_if proto tcp to any tagged client or admin I think not, is the following a correct alternate ? pass in on $int_if proto tcp to any tagged client pass in on $int_if proto tcp to any tagged admin In my opinion the OR

Remotely connect to gnome

2010-08-21 Thread Jean-Francois
Hi All, I've set up an OpenBSD server running gnome and administered locally or remotely for home use. I've understood that unixes are made to work as workstations and that gnome and kde could handle that. Could you please help me to get on the way to make remote connections possible to

Re: Secret key in the packet filter.

2010-07-13 Thread Jean-Francois
Le mardi 13 juillet 2010 17:50:04, Christian Weisgerber a icrit : Bryan bra...@gmail.com wrote: really? the devs have a backdoor in PF? you're an idiot... Of course we do. Don't try to find it. We have implemented a Langford hack. If you read the source, the backdoor will jump over and

Re: OpenBSD Makes Other Things Better (Advocacy)

2010-06-26 Thread Jean-Francois
Le jeudi 24 juin 2010 00:56:09, Daniel Melameth a icrit : While most of us already know how the subject rings true, I still found the following from REBOL's CTO's public blog post interesting nonetheless (I've never used REBOL): This was an interesting build, because it exposed a unique bug

Re: opensmtpd

2010-06-26 Thread Jean-Francois
Le samedi 22 mai 2010 15:03:50, Gilles Chehade a icrit : On Sat, May 22, 2010 at 06:49:54AM -0600, Alvaro Mantilla Gimenez wrote: Hello, Is anyone using OpenSMTPD in production already? If the answer is yes..which numbers are handling by OPenSMTPD? (email average by day, etc...)

OpenBSD as a laptop OS

2010-06-18 Thread Jean-Francois
Hello All, I am thinking about changing my OS to OpenBSD on my laptop, which is standard x86. It would be used as internet browser, mail client, multimedia, pciture video , etc ... My question is simple, is OpenBSD convenient enough for a daily usage ? What are the experiences about that ?

sftp chroot does'nt pass the login

2010-05-30 Thread Jean-Francois
Hi, I am using sftp server with a chroot with following lines in sshd configuration file. The same works for my actual server in 4.4 OpenBSD but I just freshly installed a 4.7 one and on it the sftp login fails (it works without chroot). Match group web ChrootDirectory /var/www/htdocs

Re: sftp chroot does'nt pass the login

2010-05-30 Thread Jean-Francois
Le dimanche 30 mai 2010 17:39:36, Bret S. Lambert a icrit : On Sun, May 30, 2010 at 05:22:22PM +0200, Jean-Francois wrote: Hi, I am using sftp server with a chroot with following lines in sshd configuration file. The same works for my actual server in 4.4 OpenBSD but I just freshly

Consideration before installling on SSD hard drive

2010-05-22 Thread jean-francois
Good afternoon gents, I am building up a server with basically a solid state drive for the OS and a 1 TB hard drive for the datas. In order to maximize the life time of the SSD, I will avoir mounting slides that sustain continuous or sparsed write access. Could you briefly let me know the do's

ok for softraid in production (v4.7) ?

2010-05-22 Thread jean-francois
Hello, May I use with peace of mind the softraid device of OpenBSD 4.7 in 'small production' (personal servers for home use actually) ? I had understood that as of 4.5 and before the softraid was still under lot of development, so my question. Thanks Regards Jean-FranC'ois

Re: ok for softraid in production (v4.7) ?

2010-05-22 Thread jean-francois
Le samedi 22 mai 2010 C 21:38 +0200, Robert a C)crit : On Sat, 22 May 2010 21:12:00 +0200 jean-francois jfsimon1...@gmail.com wrote: Hello, May I use with peace of mind the softraid device of OpenBSD 4.7 in 'small production' (personal servers for home use actually) ? I had

Re: nmbd does not listen

2010-03-13 Thread Jean-Francois
[...] As for answering requests, how do you know it isn't? Did you trace the process? Did you use tcpdump to confirm that the packets were being received? Have you confirmed that your pf config isn't blocking them? I did'nt trace the process, but tcpdump show the packets, pflog

Re: Filtering based on MAC adress

2010-03-13 Thread Jean-Francois
All, As suggested. Just to confirm that it perfectly works. I made a NAT on ext_if from int_if In principle : - create a bridge, add the int_if to the bridge - add a rule filtering and tagging based on MAC address ex : brconfig bridge0 rule pass in on fxp0 src 9:8:7:6:5:4 tag boss - filter with

nmbd does not listen

2010-03-07 Thread jean-francois
Hi, After installing the default system + installing samba I am in front on a system now working but not replyying to windows port 137 requests to nmbd for mapping the server, the windows neighboor function. After checking netstat I see that nmbd is not in listen on this port however running.

Re: nmbd does not listen

2010-03-07 Thread jean-francois
Le Dimanche 07 Mars 2010 15:18:49, Rogier Krieger a icrit : On Sun, Mar 7, 2010 at 14:31, jean-francois jfsimon1...@gmail.com wrote: Is there some basic configuration I missed to do ? As a quick check, did you start both smbd and nmbd components (ps ax is your friend here) and did you place

Re: nmbd does not listen

2010-03-07 Thread Jean-Francois
Le Dimanche 07 Mars 2010 21:15:24, J.C. Roberts a icrit : On Sun, 7 Mar 2010 19:10:20 +0100 jean-francois jfsimon1...@gmail.com wrote: Le Dimanche 07 Mars 2010 15:18:49, Rogier Krieger a icrit : On Sun, Mar 7, 2010 at 14:31, jean-francois jfsimon1...@gmail.com wrote

Re: nmbd does not listen

2010-03-07 Thread Jean-Francois
Hello, Le Lundi 08 Mars 2010 05:13:34, vous avez icrit : On Sun, Mar 7, 2010 at 1:37 PM, Jean-Francois jfsimon1...@gmail.com wrote: ... I am not sure but believe the problem is in smb.conf ...but you'll not actually show the contents of that file. I take it you're taking the problem

Re: Filtering based on MAC adress

2010-03-06 Thread Jean-Francois
What is the reason why some packets passing on re0 will not be seen on bridge0 given I set up the following configuration : bridgename.bridge0 add re0 up I expected to see all the packets passing on re0 on bridge0 too which is obviously not the case. That would

Re: Filtering based on MAC adress

2010-03-05 Thread Jean-Francois
any idea in order to help me to try something new it would be helpful. Thanks. Le Jeudi 04 Mars 2010 19:17:00, Jean-Francois a icrit : Le Mercredi 03 Mars 2010 21:38:18, vous avez icrit : What is the reason why some packets passing on re0 will not be seen on bridge0 given I set up

Re: Filtering based on MAC adress

2010-03-04 Thread Jean-Francois
Mercredi 03 Mars 2010 22:39:59, Jean-Francois a icrit : Thank you for your help in understanding. I want to configure a NAT between int_if and ext_if and filter based on MAC address. I was going to proceed as follows, but after reading bridge(4) man page I understand that the following won't work

Re: Filtering based on MAC adress

2010-03-04 Thread Jean-Francois
Le Mercredi 03 Mars 2010 21:38:18, vous avez icrit : What is the reason why some packets passing on re0 will not be seen on bridge0 given I set up the following configuration : bridgename.bridge0 add re0 up I expected to see all the packets passing on re0 on bridge0

Re: Filtering based on MAC adress

2010-03-03 Thread Jean-Francois
Hi, What is the reason why some packets passing on re0 will not be seen on bridge0 given I set up the following configuration : bridgename.bridge0 add re0 up I expected to see all the packets passing on re0 on bridge0 too which is obviously not the case. # brconfig

Re: Filtering based on MAC adress

2010-03-03 Thread Jean-Francois
Thank you for your help in understanding. I want to configure a NAT between int_if and ext_if and filter based on MAC address. I was going to proceed as follows, but after reading bridge(4) man page I understand that the following won't work. If the bridge0 has only one member, int_if, it

Re: Dump levels ?

2010-03-03 Thread Jean-Francois
Le Jeudi 18 Fivrier 2010 23:02:38, Otto Moerbeek a icrit : On Thu, Feb 18, 2010 at 10:54:55PM +0100, Jean-Francois wrote: Hi, Is it possible to clarify what resides behind the concept of levels regarding dump(8) ? For me the level 0 is understood to be a complete dump of all files

poor setwork performance on gigabit link

2010-02-26 Thread jean-francois
Hi All, I can reach only approx. 8 Mbyte/s on a LAN between the server and the client. The complete network is capable of gigabit yet the speed reaches 15Mb/s then starts to trigger high/low and stabilyses at 8000kb/s. I tried the 2 interfaces of the server (running OpenBSD) with similar

Re: poor network performance on gigabit link

2010-02-26 Thread jean-francois
Le Vendredi 26 Fivrier 2010 19:48:55, Christiano F. Haesbaert a icrit : Sorry but I'm dieing of curiosity, how the heck did you swap a n by a s in your subject ? I can't say. Thanks for the few answers, however I already tried such things as turning the net.inet.tcp.recvspace and

Re: poor setwork performance on gigabit link

2010-02-26 Thread jean-francois
I think topic is closed. Thanks for notice PIO mode. Network is ok but disk mode is not. Here is the limit, not the network. Regards. Le Vendredi 26 Fivrier 2010 21:04:04, Peter Strvmberg a icrit : On 2/26/2010 5:27 PM, jean-francois wrote: pciide1 at pci0 dev 9 function 0 NVIDIA MCP77 AHCI

Re: Filtering based on MAC adress

2010-02-21 Thread Jean-Francois
I am not completely sure to understand, is it possible to make a pseudo device bridged to an interface and marking the packets with a tag according to rules based on MAC adress and then to take account of the tag in pf while doing NAT translation to a second interface ? In my opinion, this

Re: Filtering based on MAC adress

2010-02-21 Thread Jean-Francois
in future will be that there will be no brconfig(8) command, but it will be included in ifconfig(8). On Sun, Feb 21, 2010 at 10:52 AM, Jean-Francois jfsimon1...@gmail.com wrote: I am not completely sure to understand, is it possible to make a pseudo device bridged to an interface and marking

another filesystem as backup

2010-02-21 Thread Jean-Francois
Hi All, Do you believe it is not a bad idea to use ext2 as a file system for the regular back-up (dumps) of the filesystem ? Actually, I would like to be able to read from a simple Linux the disk that contents the dumps - reaon why. Are there any constraints in doing so ? May you strongly

Re: another filesystem as backup

2010-02-21 Thread Jean-Francois
Hello, Le Dimanche 21 FC)vrier 2010 16:11:20, vous avez C)crit : For storage/backup you may find much more better Hammer FS or ZFS I can't find out how to make a newfs with HFS or ZFS. Are there any additional packages to install ?

RAID1 : offline - online (how to?)

2010-02-21 Thread Jean-Francois
Hi All, Sorry for the so many questions but still manual may not always answer to them. I actually mounted 2 usb pens in RAID 1 in order to understand how it works. When one is removed the RAID device properly works. When remounted I keep having the device offline. $ sudo bioctl -i sd2 Volume

Re: RAID1 : offline - online (how to?)

2010-02-21 Thread Jean-Francois
Le Dimanche 21 Fivrier 2010 18:56:32, Rogier Krieger a icrit : On Sun, Feb 21, 2010 at 17:51, Jean-Francois jfsimon1...@gmail.com wrote: Sorry for the so many questions but still manual may not always answer to them. Did you read bioctl(8) and did you try the -R option that man page

Re: another filesystem as backup

2010-02-21 Thread Jean-Francois
week. Support for ZFS in FreeBSD is marked as experimental, but it depends. So Hammer FS looks like most promising regarding feature on other BSD systems (just my personal tip) On Sun, Feb 21, 2010 at 5:59 PM, Jean-Francois jfsimon1...@gmail.com wrote: Hello, Le Dimanche 21 FC)vrier 2010

Re: RAID1 : offline - online (how to?)

2010-02-21 Thread Jean-Francois
Making again the test on 4.6 Now I have bioctl: BIOCCREATERAID: Invalid argument however on a another machine. Am I wrong in any point ? Is there any need to compile raid into the kernel as I saw here ? http://www.argon18.com/raid_openbsd.html Following example (same method as I first used)

Re: Dump levels dump(8) man page clarification

2010-02-20 Thread Jean-Francois
Le Vendredi 19 Fivrier 2010 22:04:00, Philip Guenther a icrit : On Fri, Feb 19, 2010 at 12:49 PM, Jean-Francois jfsimon1...@gmail.com wrote: ... Not sure to understand the subtle of the man page explanations regarding the dump of different nature of mount points. Just one additional

Re: Dump levels ?

2010-02-19 Thread Jean-Francois
Le Vendredi 19 Fivrier 2010 21:15:46, Otto Moerbeek a icrit : On Thu, Feb 18, 2010 at 11:51:23PM +0100, Jean-Francois wrote: Le Jeudi 18 Fivrier 2010 23:43:38, Adriaan a icrit : On Thu, Feb 18, 2010 at 11:21 PM, Jean-Francois jfsimon1...@gmail.com wrote: [snip] My dump level

Dump levels ?

2010-02-18 Thread Jean-Francois
Hi, Is it possible to clarify what resides behind the concept of levels regarding dump(8) ? For me the level 0 is understood to be a complete dump of all files on at a given mount point and all subdirectories. But I can't figure out what upper levels are. Regards

Re: Dump levels ?

2010-02-18 Thread Jean-Francois
Le Jeudi 18 Fivrier 2010 23:02:38, Otto Moerbeek a icrit : On Thu, Feb 18, 2010 at 10:54:55PM +0100, Jean-Francois wrote: Hi, Is it possible to clarify what resides behind the concept of levels regarding dump(8) ? For me the level 0 is understood to be a complete dump of all files

Re: Dump levels ?

2010-02-18 Thread Jean-Francois
Le Jeudi 18 Fivrier 2010 23:43:38, Adriaan a icrit : On Thu, Feb 18, 2010 at 11:21 PM, Jean-Francois jfsimon1...@gmail.com wrote: [snip] My dump level 1 dumps all the files again. How to let it dump based on the lower level ? I did as follows : sudo dump -0ua -f /mnt/tera/backup

Security feed

2010-02-17 Thread Jean-Francois
Hello All, I am a little bit out of subject but please allow me to ask you about feeds of security issues. Thank you

Re: pf rdr to multiple machines in the subnet

2010-02-09 Thread Jean-Francois
Le mardi 09 fivrier 2010 08:44:14, Bret S. Lambert a icrit : On Tue, Feb 09, 2010 at 08:19:14AM +0100, Joakim Aronius wrote: * Jean-Frangois SIMON (jfsimon1...@gmail.com) wrote: 2010/2/7 Bret S. Lambert bret.lamb...@gmail.com No, you'd have to so a seperate rdr line for each backend

Re: AMD power reduction

2010-02-08 Thread Jean-Francois
Le lundi 08 fivrier 2010 04:10:22, Nick Holland a icrit : With all this talk about power reduction...I'm going to toss out one small suggestion: Get a Wattmeter, and measure... Don't waste your time speculating. Hello, I did. It's consuming some 90 Watts at idle. Actually, it's an Athlon

Re: AMD power reduction

2010-02-08 Thread Jean-Francois
on renovable energy sources. Regards! Jean-Francois escribis: Le lundi 08 fivrier 2010 04:10:22, Nick Holland a icrit : With all this talk about power reduction...I'm going to toss out one small suggestion: Get a Wattmeter, and measure... Don't waste your time speculating. Hello

route default

2010-02-07 Thread Jean-Francois
Hello, Since sometime, I need to add default route as route add default 192.168.1.1 in order to be able to reach internet, otherwise I have (no route to host). I would like to automate this in a proper way as it should be. Regards

  1   2   >