Re: [Tor-BSD] Recognizing Randomness Exhaustion

2015-01-01 Thread Ted Unangst
On Wed, Dec 31, 2014 at 19:42, Libertas wrote: > Thanks for this! > > I should have also specified that I didn't just go ahead and enable them > because I wasn't sure if they're considered safe. I like abiding by > OpenBSD's crypto best practices when possible. > > Is there any reason why they're

Re: Openbsd broke my hard drive twice! Getting frustrated

2015-01-01 Thread Maurice McCarthy
On 2014-12-30 16:38, Mark - Syminet wrote: On Dec 29, 2014, at 5:02 PM, Eric Furman wrote: Linux supports the UEFI boot loader. OpenBSD does not. ...and that is all we need to know. Shame on them! Shame Shame Shame! Maybe my knowledge is outdated but you've got things wrong here. UEFI

Re: 5.6, IPv6: is autoconf set by default?

2015-01-01 Thread Harald Dunkel
On 12/30/14 18:26, Henrik Friedrichsen wrote: > > It certainly doesn't seem to be enabled by default as I just had to > enable it to get an IPv6 assigned. This was on -CURRENt, though. > My concern is about accepting foreign routing advertisements on a gateway. Regards Harri

Re: httpd(8) - Update index docs to HTML5

2015-01-01 Thread Reyk Floeter
Hi, On Thu, Jan 01, 2015 at 01:20:49AM -0600, James Jerkins wrote: > Hello, > > Based on the W3c moving HTML5 to "Recommendation" status on October 28, > 2014, (http://www.w3.org/2014/10/html5-rec.html.en) these two patches update > the built-in index documents in httpd(8) to HTML5. > Thanks f

mpd.conf libao mixer_control options

2015-01-01 Thread J. Scott Heppler
I utilize the tray-app volume applet in my tint2 system tray and mainly use mpd as an audio source. I was wondering if it is possible to configure mpd.conf so that the displayed audio volume matches the tray-app volume. I have been able to do this in FreeBSD by specifying the mixer_control optio

Re: AMD64 packages - Reflecting dynamic linking

2015-01-01 Thread FRIGN
On Fri, 12 Dec 2014 20:02:33 +0100 Ingo Schwarze wrote: > There are dragons. > If this scares anybody, i'm not surprised; updating libraries is > not a playground for newbies. > That, actually, is *terrible* advice and almost guarantees a fiasco. > If you edit shlib_version manually, you build

Re: AMD64 packages - Reflecting dynamic linking

2015-01-01 Thread Theo de Raadt
And who are you, and what you have you done to test and then prove your thesis? Absolutely nothing, I must assume. (BTW, your argument is weak and would be stronger if you tied it into the faked moonlandings). > I may get a little off-topic here and object for this very important > topic to be d

Re: AMD64 packages - Reflecting dynamic linking

2015-01-01 Thread FRIGN
On Thu, 01 Jan 2015 09:37:24 -0700 Theo de Raadt wrote: > And who are you, and what you have you done to test and then prove > your thesis? > Absolutely nothing, I must assume. Your assumption is wrong. I am working with my colleagues from 2f30 on the "morpheus"-project[0] (including package-man

Re: AMD64 packages - Reflecting dynamic linking

2015-01-01 Thread Theo de Raadt
> > And who are you, and what you have you done to test and then prove > > your thesis? > > Absolutely nothing, I must assume. > > Your assumption is wrong. I am working with my colleagues from 2f30 on > the "morpheus"-project[0] (including package-manager) and we have a set > of static binary-pac

typo in calendar.ushistory

2015-01-01 Thread Carson Chittom
This is minor, but when I received my "Reminder Service" email from calendar(1) this morning, I noticed that there were a couple of typos. The entry for 01/02 in src/usr.bin/calendar/calendars/calendar.ushistory has "brittish american". I would suggest "British-American" instead. -- http://www.w

Re: [Tor-BSD] Recognizing Randomness Exhaustion

2015-01-01 Thread Greg Troxel
Libertas writes: > Some of the people at tor-...@lists.nycbug.org and I are trying to > figure out why Tor relays under-perform when running on OpenBSD. Many > such relays aren't even close to being network-bound, > file-descriptor-bound, memory-bound, or CPU-bound, but relay at least > 33-50% le

Re: rtadvd on OpenBSD 5.6 with Comcast cable connection

2015-01-01 Thread Aaron Riekenberg
I found some other reports of the same problem with rtadvd logging excessive messages about router advertisements on the external non-advertising interface. >From OpenBSD 5.2: http://openbsd.7691.n7.nabble.com/Excessive-logging-by-rtadvd-td225936.html >From m0n0wall (aka FreeBSD), also seeing a l

Re: AMD64 packages - Reflecting dynamic linking

2015-01-01 Thread FRIGN
On Thu, 01 Jan 2015 10:04:26 -0700 Theo de Raadt wrote: > Ah, another arrogance -- you came here to advertise. Nope, if you read my first mail again, you'd see that I did not mention our project once and only presented it to challenge your assumption that I'm just some warrior presenting crude i

Re: AMD64 packages - Reflecting dynamic linking

2015-01-01 Thread Jorge Gabriel Lopez Paramount
Quoting FRIGN : It may be a little far-fetched, but I'm sure it would be possible to have one package-manager for all distributions if there would just be the motivation to distribute statically linked binaries and not fuck things up with distribution-specific folder-structures. I'm not a hack

How to segregate peer policy in a dynamically changing IP peers ikev2 setup.

2015-01-01 Thread Daniel Ouellet
Is there a way to actually have iked accept connection from dynamically changing peers IP address using their dns name for example like this: ikev2 esp from 66.63.5.250 to tunnel.ouellet.us ikev2 esp from 10.0.0.0/24 to 172.16.2.0/24 peer tunnel.ouellet.us Yes you can have ikev2 esp from 66.63.5

Re: [Tor-BSD] Recognizing Randomness Exhaustion

2015-01-01 Thread Miod Vallat
> > I should have also specified that I didn't just go ahead and enable them > > because I wasn't sure if they're considered safe. I like abiding by > > OpenBSD's crypto best practices when possible. > > > > Is there any reason why they're disabled by default? > > Compiler bugs generate incorrect

Re: Openbsd broke my hard drive twice! Getting frustrated

2015-01-01 Thread Jason Adams
On 01/01/2015 02:43 AM, Maurice McCarthy wrote: > On 2014-12-30 16:38, Mark - Syminet wrote: >> On Dec 29, 2014, at 5:02 PM, Eric Furman wrote: >> >>> Linux supports the UEFI boot loader. OpenBSD does not. >> >> ...and that is all we need to know. >> >> Shame on them! Shame Shame Shame! > > Maybe

WLAN roaming?

2015-01-01 Thread Christian Weisgerber
My OpenBSD laptop, iwn(4), doesn't roam between my two access points. It's a sorry sight when it struggles to push a signal through the rebar floor instead of switching over to the other access point a meter away. Is this a limitation of OpenBSD's WLAN support or should I blame the access points?

Re: typo in calendar.ushistory

2015-01-01 Thread Jason McIntyre
On Thu, Jan 01, 2015 at 06:44:50AM -0600, Carson Chittom wrote: > This is minor, but when I received my "Reminder Service" email from > calendar(1) this morning, I noticed that there were a couple of typos. you say couple, but i take it you mean regarding this one entry? > The entry for 01/02 in

Re: typo in calendar.ushistory

2015-01-01 Thread Brian Callahan
On 01/01/15 17:20, Jason McIntyre wrote: > On Thu, Jan 01, 2015 at 06:44:50AM -0600, Carson Chittom wrote: >> This is minor, but when I received my "Reminder Service" email from >> calendar(1) this morning, I noticed that there were a couple of typos. > you say couple, but i take it you mean regard

Re: Best way forward w.r.t. apache/nginx/httpd?

2015-01-01 Thread Clint Sand
On Mon, Dec 29, 2014 at 10:41:26PM +, Stuart Henderson wrote: > On 2014-12-29, T. Ribbrock wrote: > > Given the current state of development in OpenBSD, I'm now wondering > > what the best way forward is for me: > > > > a) Install apache-httpd-openbsd from ports and keep my configuration > >

Re: WLAN roaming?

2015-01-01 Thread Brad Smith
On 01/01/15 17:14, Christian Weisgerber wrote: My OpenBSD laptop, iwn(4), doesn't roam between my two access points. It's a sorry sight when it struggles to push a signal through the rebar floor instead of switching over to the other access point a meter away. Is this a limitation of OpenBSD's W

Re: typo in calendar.ushistory

2015-01-01 Thread Jason McIntyre
On Thu, Jan 01, 2015 at 05:45:11PM -0500, Brian Callahan wrote: > > On 01/01/15 17:20, Jason McIntyre wrote: > > On Thu, Jan 01, 2015 at 06:44:50AM -0600, Carson Chittom wrote: > >> This is minor, but when I received my "Reminder Service" email from > >> calendar(1) this morning, I noticed that th

Re: AMD64 packages - Reflecting dynamic linking

2015-01-01 Thread Joel Rees
At the risk of having Theo tell me to shut up and get back to work on things that matter, ... On Fri, Jan 2, 2015 at 1:33 AM, FRIGN wrote: > On Fri, 12 Dec 2014 20:02:33 +0100 > Ingo Schwarze wrote: > >> There are dragons. > >> If this scares anybody, i'm not surprised; updating libraries is >>

Re: AMD64 packages - Reflecting dynamic linking

2015-01-01 Thread Adam Thompson
On 15-01-01 07:44 PM, Joel Rees wrote: At the risk of having Theo tell me to shut up and get back to work on things that matter, ... and I suppose it's inevitible that someone will want to control the world, but I really wish you and your friends would quit lying to yourselves about power. I

Re: Best way forward w.r.t. apache/nginx/httpd?

2015-01-01 Thread Reyk Floeter
On Mon, Dec 29, 2014 at 10:41:26PM +, Stuart Henderson wrote: > > b) Migrate to nginx > >This seems to be the least interesting option - not only do I have to > >migrate now, but once more in the future, as nginx is also on the way > >out (so, the same "developer attention" caveat a

Re: typo in calendar.ushistory

2015-01-01 Thread Carson Chittom
Jason McIntyre writes: > On Thu, Jan 01, 2015 at 06:44:50AM -0600, Carson Chittom wrote: >> This is minor, but when I received my "Reminder Service" email from >> calendar(1) this morning, I noticed that there were a couple of typos. > > you say couple, but i take it you mean regarding this one e

Amv7 support sunxi SoC router board Lamobo R1 (BPi-R1)?

2015-01-01 Thread f5b
Does Amv7 support sunxi SoC router board Lamobo R1 (BPi-R1)? Lamobo R1 (BPi-R1) highlight: 1. Allwinner A20 sunxi SoC 2 .FIVE 10/100/1000 Ethernet port 3. native 2.5 SATA disk port 4. about $75 BPI- R1 - a 300Mbps Wireless N Router with both wired and wireless network, Dual Core-CPU, 1G-RAM,

Re: Amv7 support sunxi SoC router board Lamobo R1 (BPi-R1)?

2015-01-01 Thread jungle Boogie
Hi f5b, On 1 January 2015 at 19:11, f5b wrote: > Does Amv7 support sunxi SoC router board Lamobo R1 (BPi-R1)? > > Lamobo R1 (BPi-R1) > > highlight: > 1. Allwinner A20 sunxi SoC > 2 .FIVE 10/100/1000 Ethernet port > 3. native 2.5 SATA disk port > 4. about $75 > > BPI- R1 - a 300Mbps Wireless N Ro

httpd: multiple addresses for one server

2015-01-01 Thread Geoff Steckel
Is there any way todo the equivalent of: server "an.example.com" listen on 192.168.2.99 listen on 2001.fefe.1.1::99 ?? It appears that the code in parse.y explicitly forbids this and the data structures for a server don't *seem* to have more than one slot for an address. Is there anoth

Re: [Tor-BSD] Recognizing Randomness Exhaustion

2015-01-01 Thread Richard Johnson
On 2014-12-31 11:21, Libertas wrote: For those not familiar, a Tor relay will eventually have an open TCP connection for each of the other >6,000 active relays, and (if it allows exit traffic) must make outside TCP connections for the user's requests, so it's pretty file-hungry and crypto-intensi

Re: [Tor-BSD] Recognizing Randomness Exhaustion

2015-01-01 Thread Libertas
I've tuned PF parameters in the past, but it doesn't seem to be the issue. My current pfctl and netstat -m outputs suggest that there are more than enough available resources and no reported failures. I remember someone on tor-...@list.nycbug.org suggesting that it could be at least partially due