Re: [gentoo-user] intermitent hang at shutdown

2005-02-11 Thread Steven Susbauer
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
Make sure you enable "Use APM to turn off power (or something close
to it) in the APM settings, and also make sure "Enable APM at boot"
is selected. I've had it just sit there after a reboot if they aren't
on.
rodrigo ahumada wrote:
> hi, this one is for a little problem i'm having:
>1/5 reboots/poweroffs doesn't shutdown the computer.
>
> info:
>gentoo stage1
>kernels:
>gentoo-dev-sources-2.6.10r6  compiled with and without acpi
> support, with apm
>linux-2.6.10 from kernel.org without acpi, with apm
>udev and hal
>mb: asus a7nv266-vm
>
> i run sudo /sbin/poweroff or  sudo /sbin/reboot, and wait for all
> services to stop, after a while the screen goes black and spect the
> kb leds to blink and a reboot/shutdown <==this part some times
> fails, the pc stays turned on without activity (the red light of
> the HD is off). I don't know if it's going to shutdown anytime but
> it takes many time and i hit the button.
>
> this happen with the 3 kernels,mainly with sudo, with/out hal, i've
> never had one with root account or gdm, maybe because i use fluxbox
> so i use sudo to restart.
>
> in /var/log/everything/current, the last lines before shutdown:
>
> Feb  7 17:38:42 [su(pam_unix)] session closed for user root
> Feb  7 17:38:45 [sudo] rod : TTY=unknown ; PWD=/home/rod ;
> USER=root ; COMMAND=/sbin/reboot
> Feb  7 17:38:45 [sudo] PAM pam_putenv: delete non-existent entry;
> REMOTEHOST
> Feb  7 17:38:45 [PAM-env] Unknown PAM_ITEM: 
> Feb  7 17:38:45 [sudo] PAM pam_putenv: delete non-existent entry;
> DISPLAY
> Feb  7 17:38:45 [PAM-env] Unknown PAM_ITEM: 
> Feb  7 17:38:45 [sudo] PAM pam_putenv: delete non-existent entry;
> XAUTHORITY
> Feb  7 17:38:45 [init] Switching to runlevel: 6
> Feb  7 17:38:57 [xfs] terminating_
>
> ...and here start a boot of linux, no errors.
>
> thanks in advance
>
>
>
>
>
> --
> gentoo-user@gentoo.org mailing list
>
>
- --
This site uses frames
And yet your browser does not.
One of these will change.
-BEGIN PGP SIGNATURE-
Version: PGP 8.1 - not licensed for commercial use: www.pgp.com
Comment: Keyserver: http://pgpkeys.mit.edu/
iQA/AwUBQg0vAdRu81vBONZbEQLn2wCfaHAz+KdW7S1R0byoKdx1AMzDG3sAnA88
8lzGZGQX945S3X6E3jOy5cvi
=C0dq
-END PGP SIGNATURE-


smime.p7s
Description: S/MIME Cryptographic Signature


Re: [gentoo-user] 2 questions: frame buffer, dma

2005-02-11 Thread bluebird_zenith
On Fri, Feb 11, 2005 at 02:38:21PM +, Shaun Lipscombe wrote:
> * [EMAIL PROTECTED] wrote:
> 
> > /etc/lilo.conf depends on how you boot)
> > 
> > for exmample adding 
> > 
> > vga=0x317 
> > 
> I thought you couldn't use hex in the lilo/grub confs but had to use the
> decimal representation or am I mistaken?

You could be right, I was writing from memory of using fb from at least
3 years ago so, but a quick look in the kernel doc give hex numbers for
resolutions.

Cheers

Joel (not going to recompile my kernel to find out I'm wrong) Mayes :-)

--
gentoo-user@gentoo.org mailing list



[gentoo-user] intermitent hang at shutdown

2005-02-11 Thread rodrigo ahumada
hi, this one is for a little problem i'm having:
1/5 reboots/poweroffs doesn't shutdown the computer.

info:
gentoo stage1
kernels:
gentoo-dev-sources-2.6.10r6  compiled with and without acpi 
support,
with apm
linux-2.6.10 from kernel.org without acpi, with apm
udev and hal
mb: asus a7nv266-vm 

i run sudo /sbin/poweroff or  sudo /sbin/reboot, and wait for all
services to stop, after a while the screen goes black and spect the kb
leds to blink and a reboot/shutdown <==this part some times fails, the
pc stays turned on without activity (the red light of the HD is off). I
don't know if it's going to shutdown anytime but it takes many time and
i hit the button.

this happen with the 3 kernels,mainly with sudo, with/out hal, i've
never had one with root account or gdm, maybe because i use fluxbox so i
use sudo to restart.

in /var/log/everything/current, the last lines before shutdown:

Feb  7 17:38:42 [su(pam_unix)] session closed for user root
Feb  7 17:38:45 [sudo] rod : TTY=unknown ; PWD=/home/rod ; USER=root ;
COMMAND=/sbin/reboot
Feb  7 17:38:45 [sudo] PAM pam_putenv: delete non-existent entry;
REMOTEHOST
Feb  7 17:38:45 [PAM-env] Unknown PAM_ITEM: 
Feb  7 17:38:45 [sudo] PAM pam_putenv: delete non-existent entry;
DISPLAY
Feb  7 17:38:45 [PAM-env] Unknown PAM_ITEM: 
Feb  7 17:38:45 [sudo] PAM pam_putenv: delete non-existent entry;
XAUTHORITY
Feb  7 17:38:45 [init] Switching to runlevel: 6
Feb  7 17:38:57 [xfs] terminating_

...and here start a boot of linux, no errors.

thanks in advance





--
gentoo-user@gentoo.org mailing list



Re: [gentoo-user] Re: gnome woes (mainly window manager)

2005-02-11 Thread James Hiscock
On Fri, 11 Feb 2005 19:33:23 +1100, Robert S <[EMAIL PROTECTED]> wrote:
> Thank you for your comments on the 2nd and third points of my original post.
> I'm still struggling with emerging sawfish.  The first question (the most
> important)  remains unanswered.  Has anybody had problems with seting up the
> WindowManager?  Any tips on how to do this??
> 
> One of the things that has impressed me the most about Gentoo so far (along
> with a lot of other things) is the fact that most packages work pretty well
> "out of the box" without bugs.
> 
> As a reminder - here is the main problem again:
> When I go to Desktop prefs -> Windows, I get the message
> 
> "Cannot start the preferences application for your window manager"
> 
> Window manager "unknown" has not registered a configuration tool
> 
> If I go to the theme manager and change the theme, my windows disappear
> (ie titlebar and borders)

I've got a really stupid question, but what is the exact version of
the "latest and greatest" Gnome that you installed? AFAIK, you can't
necessarily change the window manager with Gnome 2.x -- you're pretty
much stuck with Metacity. Installing Sawfish won't really get you
anywhere (unlike with Gnome earlier than 2.x).

The reason I ask is because I haven't seen an error like that since
the old Gnome 1.4 days, when you could swap out the default WM
(Sawfish, IIRC) for a different one (like, say, Enlightenment)...

Did you actually get Gnome fully installed? There are a LOT of
dependencies, so it's usually best to use either "emerge gnome" or
"emerge gnome-light", rather than trying to get all the dependencies
yourself. "gnome" will get your everything except xscreensaver, while
"gnome-light" is missing some other nifty packages, and seems severely
limited from my perspective, but YMMV...

--
gentoo-user@gentoo.org mailing list



[gentoo-user] Re: gnome woes (mainly window manager) - FIXED

2005-02-11 Thread Robert S
Here's the culprit - found it in the Forums


 Section "Extensions"
 Option "Composite" "Enable"
 EndSection

Commented that out and all is fine now.

I still can't compile sawfish, but that's irrelevant now. 




--
gentoo-user@gentoo.org mailing list



Re: [gentoo-user] Re: gnome woes (mainly window manager)

2005-02-11 Thread Holly Bostick
Robert S wrote:
Thank you for your comments on the 2nd and third points of my original post. 
I'm still struggling with emerging sawfish.  The first question (the most 
important)  remains unanswered.  Has anybody had problems with seting up the 
WindowManager?  Any tips on how to do this??

One of the things that has impressed me the most about Gentoo so far (along 
with a lot of other things) is the fact that most packages work pretty well 
"out of the box" without bugs.

As a reminder - here is the main problem again:
When I go to Desktop prefs -> Windows, I get the message
"Cannot start the preferences application for your window manager"
Window manager "unknown" has not registered a configuration tool
If I go to the theme manager and change the theme, my windows disappear
(ie titlebar and borders)
Am I to understand that you are trying to replace the default Gnome 2.x 
(where x is greater than...4, I believe) window manager, Metacity, with 
the "old" (GNOME 1.x) window manager, Sawfish, under GNOME 2.6 or 2.8?

Have you actually told GNOME that you want to do this?
You can either use
% sawfish --replace
(which didn't actually work for me when I tried to use this command to 
replace metacity with Openbox)

or you can change the WM in gconf-editor (which did work, iirc, until I 
just switched over to Openbox and ran gnome-panel instead).

Hope this helps, if I understand what you're trying to do. As far as I 
know, it should be possible.

Holly
--
gentoo-user@gentoo.org mailing list


[gentoo-user] Re: gnome woes (mainly window manager)

2005-02-11 Thread Robert S
Thank you for your comments on the 2nd and third points of my original post. 
I'm still struggling with emerging sawfish.  The first question (the most 
important)  remains unanswered.  Has anybody had problems with seting up the 
WindowManager?  Any tips on how to do this??

One of the things that has impressed me the most about Gentoo so far (along 
with a lot of other things) is the fact that most packages work pretty well 
"out of the box" without bugs.


As a reminder - here is the main problem again:
When I go to Desktop prefs -> Windows, I get the message

"Cannot start the preferences application for your window manager"

Window manager "unknown" has not registered a configuration tool

If I go to the theme manager and change the theme, my windows disappear
(ie titlebar and borders)




--
gentoo-user@gentoo.org mailing list



[gentoo-user] Re: gnome woes (mainly window manager) - FIXED

2005-02-11 Thread Robert S
> If I try to start metacity I get:
> 
> Bug in window manager: Unexpected X error: BadMatch (invalid parameter
> attributes) serial 1630 error_code 8 request_code 66 minor_code 0)
> Aborted

I've fixed it - found it on the forums.

I removed the following from xorg.conf

Section "Extensions"
Option "Composite" "Enable"
EndSection


--
gentoo-user@gentoo.org mailing list



Re: [gentoo-user] OT software to block IPs automatically?

2005-02-11 Thread Matt Garman

The original poster was requesting a way to automatically block
suspicious IPs.  Lots of good responses.

Another idea, and I've only read about this (no actual experience),
but may be worth looking into: "port knocking".  The basic concept
is that you would keep your ssh port closed *all* the time.  You
need a secret "knock" to open the port.  The knocking method is
achieved by pinging various ports in a specific order (and with
specific timing).

So basically, before you can connect to port 22, you may have to
ping ports 302, 50, 17, 17, 22, 542, 1002, 98, 12.  The server will
recognize the sequence and open port 22.

Like I said, I don't have any firsthand experience with such a tool,
but I've always thought it sounds incredibly clever.

Maybe someone around here has some experience with port knocking and
can offer some more insight.

Good luck!
Matt

-- 
Matt Garman
email at: http://raw-sewage.net/index.php?file=email

--
gentoo-user@gentoo.org mailing list



[gentoo-user] OT: Confustion over network performance numbers

2005-02-11 Thread Abap
Hi,

I noticed that my network seemed slow at times (when copying files). 
I thought I would try to do a little investigation so that I could at
least get some baseline numbers for future comparison.

What I have found is rather confusing to me (I know enough about
networking to barely be dangerous).

I have 3 pcs hooked up together on a 100Mbs switch.  Here is the basic setup:

PC1 and PC2 have 100Mbs tulip based cards.
PC 3 has a 1 Gps gigabyte card using the sk98llin driver.

I used iperf to test the speeds between various PCs.

Here are the results using iperf:
PC3 to PC2
 iperf -c blaster

Client connecting to blaster, TCP port 5001
TCP window size: 16.0 KByte (default)

[  3] local 192.168.123.183 port 33043 connected with 192.168.123.149 port 5001
[  3]  0.0-10.0 sec112 MBytes  94.0 Mbits/sec

PC1 to PC3
iperf -c sonata

Client connecting to sonata, TCP port 5001
TCP window size: 16.0 KByte (default)

[  3] local 192.168.123.158 port 32957 connected with 192.168.123.183 port 5001
[  3]  0.0-10.0 sec  87.0 MBytes  73.0 Mbits/sec


PC3 to PC1
iperf -c atlas

Client connecting to atlas, TCP port 5001
TCP window size: 16.0 KByte (default)

[  3] local 192.168.123.183 port 33041 connected with 192.168.123.158 port 5001
[  3]  0.0-10.3 sec408 KBytes323 Kbits/sec

All of the other combinations show results above 74 Mbits/sec.

What has me confused is that I can transfer a file from PC1 to PC3 at
73 Mbits/sec, but doing it in the opposite direction (PC3 to PC1), the
rate is only 323 Kbits/Sec (although it has been as high as 5.8n
Mbits/sec).

Does anyone know why transferring files in one direction is 10 to 100
times faster, or if there is some ofther testing I can do to narrow
down where the bottleneck is?

Thanks,

Kevin
ps.  PC3 is by far the faster PC I have.  PC 1 and PC2 are 5 to 7 year
old machines.

--
gentoo-user@gentoo.org mailing list



Re: [gentoo-user] help for eth0 not existing

2005-02-11 Thread PK
how old is that card ?
check your kernel
enable â<*> NE2000/NE1000 support
under device drivers > networking support > 10 100

Admin wrote:
Hi,
someone could go through this. After I had installed 2004.3, compiled
2.6.9r1, rebooted and during booting I have such messages:
...
*Starting input hotplugging... [ok]
*Starting pci hotplugging...[ok]
*Mounting network filessytems... [ok]
*PCMCIA support detected [ok]
*Starting pcmcia...[ok]
cardmgr[7673]: watching 2 sockets
*Bringing eth0 up (192.168.0.21)...
SIOCSIFADDR: No such device
eth0: unknown interface: No such device
(and so on)
fact
#ls /dev/eth0
ls: /dev/eth0: No such file or directory
I've looked into logs - nothing. Maybe I should change level of verbosity?
I'm running out of ideas where to look for a bug.
During LiveCD it was working well.
I've compiled yenta_socket and xirc2ps_cs into kernel.
Maybe I should create this device?
Help,
Arek
--
gentoo-user@gentoo.org mailing list


--
gentoo-user@gentoo.org mailing list


Re: [gentoo-user] Possibe?

2005-02-11 Thread Billy Holmes
James Hiscock wrote:
That looks fantastic! And it appears to support SSH...so you could try
to match against SSH, and redirect to the appropriate port if it does
match. Otherwise, assume it's web traffic...
I agree. I didn't do any research, but I was a little doubtful that 
someone else hadn't already done this before. I had some basic layer7 
filtering to do several years ago, and I know I haven't been the only 
one with those needs.

--
gentoo-user@gentoo.org mailing list


Re: [gentoo-user] Are the flags in /proc/cpuinfo accurate?

2005-02-11 Thread Bradley Serbu
Peter Karlsson wrote:
To enable smt you need to enable smp... Besides, an smp kernel works
nicely for an non-smp system as well...
 

What benefits does a kernel configuration like this have?  The results 
in dmesg show Hyperthreading as disabled.

- Brad
--
gentoo-user@gentoo.org mailing list


Re: [gentoo-user] Possibe?

2005-02-11 Thread Billy Holmes
Michael Thompson wrote:
This system has DNS records for ssh.server.co.uk and www.server.co.uk, 
so can I use IPTables or similar to recognise if it is being connected 
to via ssh.server.co.uk on port 443 and forward the traffic to port 22? 
If www.server.co.uk:443 is used apache gets the traffic? Or is this (As 
I suspect) Impossible?
if ssh.server.co.uk and www.server.co.uk have different IP addresses, 
then sure.. iptables will work.. it works on layer 3 and 4 of the OSI model.

however if your two names share the same ip address, the reason apache 
can handle the virtual sites is because it's working on layer 7 of the 
OSI model - ie the application layer.

panix.com has a custom little app that listens on port 80. In it's 
clerverness, it determines if the connecting client is a web browser or 
a ssh. If it's ssh, it hands off the connection to sshd, if it's a web 
browser it hands it off to apache.

The concept is simple: ssh and www-browser send $STUFF to the server 
before getting a response. If the first few bytes the server receives 
isn't (GET, PUT, HEAD) then it must be an ssh client.

I wrote a daemon kludge a few years back to fix a b0rked commercial app 
that ran fine under linux, but it's GUI client interface didn't. The SCO 
version of the GUI server accepted some extra state information the 
client would send. The Linux version of the GUI server didn't like this 
extra state information. My little kludge happily pretended to be the 
GUI server and relayed what it received to the real server process - 
however, if it ever received any extra state information it simply threw 
it away so the linux gui server didn't have to deal with it.

Something similar could be designed for your case. Instead, the little 
daemon would just listen for connects, after reading the first few 
bytes, it would determine if the connection was an ssh or web one, then 
fork off a sshd or apache process to handle the input. In either case, 
you would have to setup sshd and apache to work as if it was called from 
inetd.conf, because in effect those services wouldn't be controlling the 
port, they would just be doing stdin<->stdout.

I'm not sure how apache would handle the log information, though. (how 
would apache know the ip address of the connection?)

--
gentoo-user@gentoo.org mailing list


Re: [gentoo-user] Are the flags in /proc/cpuinfo accurate?

2005-02-11 Thread Peter Karlsson
On Fri, 11 Feb 2005, fire-eyes wrote:

> I've never heard of them being wrong, as for "guaranteed", not sure I'd
> go that far.

I don't remember hyperthreading being enabled for pentium 4 mobile chips
but I could be wrong.

> I'm pretty sure you're going to be enabling hyperthreading (HT), not
> SMP, but I could be wrong.

To enable smt you need to enable smp... Besides, an smp kernel works
nicely for an non-smp system as well...

> Keep your old kernel around, then add an additional entry for it to your
> bootloader. Then if something goes wrong you can fall back to that.

That's always a good option.

Best regards

Peter K

--
gentoo-user@gentoo.org mailing list



Re: [gentoo-user] Are the flags in /proc/cpuinfo accurate?

2005-02-11 Thread Bradley Serbu
For all that are interested.
I went ahead and built my kernel with Symetric Muliprocessing support 
enabled and didn't have a problem.  However I didn't see another CPU 
show up and the results of dmesg said HyperThreading was disabled. 

After some further research online with the P4M processor I determined 
that allthough the flag "ht" was in my /proc/cpuinfo the chip infact 
*does not* have support for hyperthreading.

- Brad
fire-eyes wrote:
On Fri, 2005-02-11 at 05:32 -0500, Bradley Serbu wrote:
 

My flags tell me that I have a hyperthreading capable processor, which 
is new to my knowledge.  I am curious if the output is garunteed correct 
before I compile the dual-processor options in my kernel.

I have a Mobile Intel(R) Pentium(R) 4 - M CPU 2.00GHz
   

I've never heard of them being wrong, as for "guaranteed", not sure I'd
go that far.
I'm pretty sure you're going to be enabling hyperthreading (HT), not
SMP, but I could be wrong.
Keep your old kernel around, then add an additional entry for it to your
bootloader. Then if something goes wrong you can fall back to that.
--
gentoo-user@gentoo.org mailing list
 


--
gentoo-user@gentoo.org mailing list


Re: [gentoo-user] Are the flags in /proc/cpuinfo accurate?

2005-02-11 Thread fire-eyes
On Fri, 2005-02-11 at 05:32 -0500, Bradley Serbu wrote:
> My flags tell me that I have a hyperthreading capable processor, which 
> is new to my knowledge.  I am curious if the output is garunteed correct 
> before I compile the dual-processor options in my kernel.
> 
> I have a Mobile Intel(R) Pentium(R) 4 - M CPU 2.00GHz

I've never heard of them being wrong, as for "guaranteed", not sure I'd
go that far.

I'm pretty sure you're going to be enabling hyperthreading (HT), not
SMP, but I could be wrong.

Keep your old kernel around, then add an additional entry for it to your
bootloader. Then if something goes wrong you can fall back to that.


--
gentoo-user@gentoo.org mailing list



[gentoo-user] deltaV servers

2005-02-11 Thread Antoine
Hi,
I don't really know much about this but are there any OSS servers that 
implement deltaV (with webdav of course)? The boss wants something with 
versioning but turned his nose up at subversion today. I would like to 
be able to provide an alternative to the vpn access with zero versioning 
that we have for our three sites currently.
Cheers
Antoine

--
gentoo-user@gentoo.org mailing list


Re: [gentoo-user] Filesystem Choice

2005-02-11 Thread Antoine
Heinz Sporn wrote:
Hi!
Reading all the posts to your question I found it rather strange that no
one seems to be interessted in some basic facts:
1. How will this kind of file server being used? What is its main
purpose?
2. How many users are we talking here?
3. What are the most important operations you'll expect? Is it like
moving lots of files around or copying entire directory structures?
4. Length of pathnames may be an issue here
5. and so forth ...
Given your unique architecture plans IMHO _any_ recommendation for a
specific FS is based on plain, gray theory.
Regards
   spox
I read all the replies to this before getting to the only really good 
one! The benchmarks are not going to be much use if you don't have this 
info...
Cheers
Antoine

--
gentoo-user@gentoo.org mailing list


Re: [gentoo-user] nvidia 6600GT

2005-02-11 Thread Mike Williams
On Friday 11 February 2005 15:20, Tamas Sarga wrote:
> I'd like to buy an Nvidia 6600GT card. Will it works with binary nvidia
> driver?
> Any experience?

I have a 256MB, 6600, PCI-E card, on a stock 2.6.10 kernel and it works just 
fine.
Installed the nvidia drivers, setup xorg to use it, and off I went.

Plays UT2004 and Doom3 very nicely.

-- 
Mike Williams


pgpg1cpVOgoJV.pgp
Description: PGP signature


Re: [gentoo-user] Mysterious GDB Error!

2005-02-11 Thread Hareesh Nagarajan
On Fri, 11 Feb 2005 13:11:31 +0100, Karsten Baumgarten 
> 
> Can you show us how you have compiled the program? I tried to reproduce
> this on my box (GCC 3.4, GDB 6.0) and it works as expected (that is,
> what I expected, not what you experienced ;) )

The funny thing is it works perfect on most boxen. It just doesn't
seem to work on mine. I've sent my query to the GDB ML.

I compiled the program like this:
$ g++ x.cc -g

I invoked GDB like this:
$ gdb ./a.out

Thanks,

Hareesh

--
gentoo-user@gentoo.org mailing list



Re: [gentoo-user] Mysterious GDB Error!

2005-02-11 Thread Hareesh Nagarajan
On Fri, 11 Feb 2005 12:58:36 +0200, Matan Peled <[EMAIL PROTECTED]> wrote:
> Hareesh Nagarajan wrote:
> > Hi,
> 
> Hello!
> 
>  > 
> > 10  cout << s.at(3);
> > (gdb) b 9
>  > 
> 
> I'm no gdb expert, but aren't you forgetting the closing curly bracket?

What you saw was under GDB. A 'l' in GDB displays the first 10 lines by default.

-Hareesh

--
gentoo-user@gentoo.org mailing list



Re: [gentoo-user] Possibe?

2005-02-11 Thread Keith P Hassen
Friday 11 February 2005 11:07 - Michael Thompson 
<[EMAIL PROTECTED]> wrote:
> I have a issue where I cannot connect to my server because the
> firewall only allows ports 80 and 443 out.
>
> I previously ran SSH on port 443 to overcome this, but I have had
> to implement a HTTPS solution for users who wanted secure access,
> so that is now gone.
>
> This system has DNS records for ssh.server.co.uk and
> www.server.co.uk, so can I use IPTables or similar to recognise if
> it is being connected to via ssh.server.co.uk on port 443 and
> forward the traffic to port 22? If www.server.co.uk:443 is used
> apache gets the traffic? Or is this (As I suspect) Impossible?
>

You could use the string-matching target patch at netfilter.org here:

http://www.netfilter.org/patch-o-matic/pom-extra.html

It will match strings within the packet -- I have not yet tried to use 
this, although I suspect you could use this to parse SSH/HTTPS 
requests to their appropriate destinations.  Also, be careful of the 
possible performance hit.


_k

--
gentoo-user@gentoo.org mailing list



Re: [gentoo-user] Possibe?

2005-02-11 Thread James Hiscock
> > so can I use IPTables or similar to recognise if it is being connected
> > to via ssh.server.co.uk on port 443 and forward the traffic to port
> > 22? If www.server.co.uk:443 is used apache gets the traffic? Or is
> > this (As I suspect) Impossible?
> 
> You can look at http://sourceforge.net/projects/l7-filter/ "Application
> Layer Packet Classifier for Linux".
> It is capable to classify the packets based on their headers, not on the
> generating/destination port/ip, I don't know if you can make it work on
> encrypted connection like ssh or https.
> Maybe you must connect ssh to port 80 and difference to know http
> traffic and unknow encrypted traffic (ssh for you).

That looks fantastic! And it appears to support SSH...so you could try
to match against SSH, and redirect to the appropriate port if it does
match. Otherwise, assume it's web traffic...

...I think I'm going to want to look into this a bit more... It looks
pretty rockin'.

--
gentoo-user@gentoo.org mailing list



Re: [gentoo-user] help for eth0 not existing

2005-02-11 Thread Bradley Serbu
Is this a wireless device?
Do you have the ndiswrapper emerged?
I read somewhere that this was a problem with the ndiswrapper's choice 
of driver. 

I'm pretty sure I read it in the Wireless Guide on the Gentoo Wiki.
- Brad

[EMAIL PROTECTED] wrote:
Ok. There's no such thing like /dev/eth0. Use ifconfig -a.
Things to check:
1. What's your NIC? Did u compile a module for it? Or included kernel support?
2. Look into /var/log/kern.log
3. run
  rc-update add coldplug boot
Zitat von Admin <[EMAIL PROTECTED]>:
 

Hi,
someone could go through this. After I had installed 2004.3, compiled
2.6.9r1, rebooted and during booting I have such messages:
...
*Starting input hotplugging... [ok]
*Starting pci hotplugging...[ok]
*Mounting network filessytems... [ok]
*PCMCIA support detected [ok]
*Starting pcmcia...[ok]
cardmgr[7673]: watching 2 sockets
*Bringing eth0 up (192.168.0.21)...
SIOCSIFADDR: No such device
eth0: unknown interface: No such device
(and so on)
fact
#ls /dev/eth0
ls: /dev/eth0: No such file or directory
I've looked into logs - nothing. Maybe I should change level of verbosity?
I'm running out of ideas where to look for a bug.
During LiveCD it was working well.
I've compiled yenta_socket and xirc2ps_cs into kernel.
Maybe I should create this device?
Help,
Arek
--
gentoo-user@gentoo.org mailing list

   



--
gentoo-user@gentoo.org mailing list
 


--
gentoo-user@gentoo.org mailing list


Re: [gentoo-user] help for eth0 not existing

2005-02-11 Thread heinz . sporn
Ok. There's no such thing like /dev/eth0. Use ifconfig -a.

Things to check:

1. What's your NIC? Did u compile a module for it? Or included kernel support?
2. Look into /var/log/kern.log
3. run
   rc-update add coldplug boot


Zitat von Admin <[EMAIL PROTECTED]>:

> Hi,
> 
> someone could go through this. After I had installed 2004.3, compiled
> 2.6.9r1, rebooted and during booting I have such messages:
> ...
> *Starting input hotplugging... [ok]
> *Starting pci hotplugging...[ok]
> *Mounting network filessytems... [ok]
> *PCMCIA support detected [ok]
> *Starting pcmcia...[ok]
> cardmgr[7673]: watching 2 sockets
> *Bringing eth0 up (192.168.0.21)...
> SIOCSIFADDR: No such device
> eth0: unknown interface: No such device
> (and so on)
> 
> fact
> #ls /dev/eth0
> ls: /dev/eth0: No such file or directory
> 
> I've looked into logs - nothing. Maybe I should change level of verbosity?
> I'm running out of ideas where to look for a bug.
> During LiveCD it was working well.
> I've compiled yenta_socket and xirc2ps_cs into kernel.
> Maybe I should create this device?
> 
> Help,
> 
> Arek
> 
> 
> --
> gentoo-user@gentoo.org mailing list
> 
> 
> 




--
gentoo-user@gentoo.org mailing list



Re: [gentoo-user] Possibe?

2005-02-11 Thread Steve
Michael Thompson wrote:
I have a issue where I cannot connect to my server because the 
firewall only allows ports 80 and 443 out.

I previously ran SSH on port 443 to overcome this, but I have had to 
implement a HTTPS solution for users who wanted secure access, so that 
is now gone.
I've had a similar problem - but have, to date, found no pre-canned 
solutions.

I'm guessing that it should be fairly easy to implement a lightweight 
proxy on port 443 to examine the first few bytes of the transmission and 
to determine if it looks like https or ssh is the protocol. The fact 
that both SSH and HTTPS both use TCP means you would only need to 
distinguish between the two distinct services immediately after connection.

I'd also be interested to see a link to any project which already does 
this...

Steve
--
gentoo-user@gentoo.org mailing list


Re: [gentoo-user] nvidia 6600GT

2005-02-11 Thread dave
On (2005-02-11 16:41), Tamas Sarga wrote:
> 
> On Fri, 11 Feb 2005, M. Ignacio Monge wrote:
> 
> >
> > El vie, 11-02-2005 a las 16:20 +0100, Tamas Sarga escribi?:
> > > Hi,
> > >
> > > I'd like to buy an Nvidia 6600GT card. Will it works with binary nvidia
> > > driver?
> > > Any experience?
> > >
> > > TIA.
> > > Cheers,
> > > Tamas Sarga
> > > --
> > > A day is 24 hours long.   Egy nap 24 ?r?b?l ?ll.
> > > A box of beer contains 24 bottles.Egy t?lc?n 24 ?veg s?r van.
> > > I don't believe in coincidence.   Nem hiszek a v?letlen 
> > > egybees?sekben.
> > >
> > > --
> > > gentoo-user@gentoo.org mailing list
> > >
> >
> > AGP or PCI-E? I have an AGP 6600GT without problems. New version of
> > kernel will support PCI-Express.
> >
> >
> 
> Hi,
> Thanks for reply. AGP. I want use it with 2.6.10.
> Do you play with it? I'm courious what can it do with American Army?
> 
> Cheers,
> Tamas Sarga
> --
> A day is 24 hours long.   Egy nap 24 ?r?b?l ?ll.
> A box of beer contains 24 bottles.Egy t?lc?n 24 ?veg s?r van.
> I don't believe in coincidence.   Nem hiszek a v?letlen 
> egybees?sekben.
> 
> --
> gentoo-user@gentoo.org mailing list
> 

NVIDIA 5700 LE works great with 2.6.10. Just follow 
http://www.gentoo.org/doc/en/nvidia-guide.xml and you can't go wrong... Hmmm, 
well, shouldn't go wrong... 6600 GT is on the supported list, so it should work 
fine.

Dave



pgpWWYHdTRYKM.pgp
Description: PGP signature


Re: [gentoo-user] Possibe?

2005-02-11 Thread Bastian Balthazar Bux
Michael Thompson ha scritto:
I have a issue where I cannot connect to my server because the 
firewall only allows ports 80 and 443 out.

I previously ran SSH on port 443 to overcome this, but I have had to 
implement a HTTPS solution for users who wanted secure access, so that 
is now gone.

This system has DNS records for ssh.server.co.uk and www.server.co.uk, 
so can I use IPTables or similar to recognise if it is being connected 
to via ssh.server.co.uk on port 443 and forward the traffic to port 
22? If www.server.co.uk:443 is used apache gets the traffic? Or is 
this (As I suspect) Impossible?
You can look at http://sourceforge.net/projects/l7-filter/ "Application 
Layer Packet Classifier for Linux".
It is capable to classify the packets based on their headers, not on the 
generating/destination port/ip, I don't know if you can make it work on 
encrypted connection like ssh or https.
Maybe you must connect ssh to port 80 and difference to know http 
traffic and unknow encrypted traffic (ssh for you).

Unable to explain it better ;) hope it's a starting point for you.
Francesco
--
gentoo-user@gentoo.org mailing list


[gentoo-user] Possibe?

2005-02-11 Thread Michael Thompson
I have a issue where I cannot connect to my server because the firewall 
only allows ports 80 and 443 out.

I previously ran SSH on port 443 to overcome this, but I have had to 
implement a HTTPS solution for users who wanted secure access, so that 
is now gone.

This system has DNS records for ssh.server.co.uk and www.server.co.uk, 
so can I use IPTables or similar to recognise if it is being connected 
to via ssh.server.co.uk on port 443 and forward the traffic to port 22? 
If www.server.co.uk:443 is used apache gets the traffic? Or is this (As 
I suspect) Impossible?

--
gentoo-user@gentoo.org mailing list


Re: [gentoo-user] nvidia 6600GT

2005-02-11 Thread Tamas Sarga

On Fri, 11 Feb 2005, M. Ignacio Monge wrote:

>
> El vie, 11-02-2005 a las 16:20 +0100, Tamas Sarga escribió:
> > Hi,
> >
> > I'd like to buy an Nvidia 6600GT card. Will it works with binary nvidia
> > driver?
> > Any experience?
> >
> > TIA.
> > Cheers,
> > Tamas Sarga
> > --
> > A day is 24 hours long. Egy nap 24 órából áll.
> > A box of beer contains 24 bottles.  Egy tálcán 24 üveg sör van.
> > I don't believe in coincidence. Nem hiszek a véletlen 
> > egybeesésekben.
> >
> > --
> > gentoo-user@gentoo.org mailing list
> >
>
> AGP or PCI-E? I have an AGP 6600GT without problems. New version of
> kernel will support PCI-Express.
>
>

Hi,
Thanks for reply. AGP. I want use it with 2.6.10.
Do you play with it? I'm courious what can it do with American Army?

Cheers,
Tamas Sarga
--
A day is 24 hours long. Egy nap 24 órából áll.
A box of beer contains 24 bottles.  Egy tálcán 24 üveg sör van.
I don't believe in coincidence. Nem hiszek a véletlen egybeesésekben.

--
gentoo-user@gentoo.org mailing list



[gentoo-user] Are the flags in /proc/cpuinfo accurate?

2005-02-11 Thread Bradley Serbu
My flags tell me that I have a hyperthreading capable processor, which 
is new to my knowledge.  I am curious if the output is garunteed correct 
before I compile the dual-processor options in my kernel.

I have a Mobile Intel(R) Pentium(R) 4 - M CPU 2.00GHz
- Brad
--
gentoo-user@gentoo.org mailing list


Re: [gentoo-user] OT software to block IPs automatically?

2005-02-11 Thread Billy Holmes
R'twick Niceorgaw wrote:
In that case, if I ever on the road/ at a friend's house, I will not be
able to access my box. If I knew all the addresses that I'll be
connecting from, then it would have been the best thing.
http://www.blackholes.us/
find out what ISP your friend uses, and add that netblock
then deny everything else.
--
gentoo-user@gentoo.org mailing list


Re: [gentoo-user] nvidia 6600GT

2005-02-11 Thread M. Ignacio Monge
El vie, 11-02-2005 a las 16:20 +0100, Tamas Sarga escribió:
> Hi,
> 
> I'd like to buy an Nvidia 6600GT card. Will it works with binary nvidia
> driver?
> Any experience?
> 
> TIA.
> Cheers,
> Tamas Sarga
> --
> A day is 24 hours long.   Egy nap 24 órából áll.
> A box of beer contains 24 bottles.Egy tálcán 24 üveg sör van.
> I don't believe in coincidence.   Nem hiszek a véletlen 
> egybeesésekben.
> 
> --
> gentoo-user@gentoo.org mailing list
> 

AGP or PCI-E? I have an AGP 6600GT without problems. New version of
kernel will support PCI-Express.


--
gentoo-user@gentoo.org mailing list



[gentoo-user] nvidia 6600GT

2005-02-11 Thread Tamas Sarga
Hi,

I'd like to buy an Nvidia 6600GT card. Will it works with binary nvidia
driver?
Any experience?

TIA.
Cheers,
Tamas Sarga
--
A day is 24 hours long. Egy nap 24 órából áll.
A box of beer contains 24 bottles.  Egy tálcán 24 üveg sör van.
I don't believe in coincidence. Nem hiszek a véletlen egybeesésekben.

--
gentoo-user@gentoo.org mailing list



Re: [gentoo-user] OT software to block IPs automatically?

2005-02-11 Thread R'twick Niceorgaw
Thanks Stoian

I never even thought of this. Will definitely try it. Seems the easiest
way. Will also try to implement openvpn as pointed by Heinz.

-R'twick

On Fri, February 11, 2005 3:59 am, Stoian Ivanov said:
> You could sing in for a free shell account (www.rootshell.be), and allow
> access from their ip/network only - when you are away you can hoop via the
>  free account to your machine, adjust firewall and carry on. Shell
> providers won't allow scanner running on their machines :)
>


--
gentoo-user@gentoo.org mailing list



Re: [gentoo-user] help for eth0 not existing

2005-02-11 Thread Bryan Linkous
Make sure that you have the correct ethernet drivers compiled into the
kernel, or that the correct module is loaded.  I got the same error
when I had compiled in the wrong driver.

HTH,
Bryan


On Fri, 11 Feb 2005 15:27:53 +0100, Admin <[EMAIL PROTECTED]> wrote:
> Hi,
> 
> someone could go through this. After I had installed 2004.3, compiled
> 2.6.9r1, rebooted and during booting I have such messages:
> ...
> *Starting input hotplugging... [ok]
> *Starting pci hotplugging...[ok]
> *Mounting network filessytems... [ok]
> *PCMCIA support detected [ok]
> *Starting pcmcia...[ok]
> cardmgr[7673]: watching 2 sockets
> *Bringing eth0 up (192.168.0.21)...
> SIOCSIFADDR: No such device
> eth0: unknown interface: No such device
> (and so on)
> 
> fact
> #ls /dev/eth0
> ls: /dev/eth0: No such file or directory
> 
> I've looked into logs - nothing. Maybe I should change level of verbosity?
> I'm running out of ideas where to look for a bug.
> During LiveCD it was working well.
> I've compiled yenta_socket and xirc2ps_cs into kernel.
> Maybe I should create this device?
> 
> Help,
> 
> Arek
> 
> --
> gentoo-user@gentoo.org mailing list
> 
>

--
gentoo-user@gentoo.org mailing list



Re: [gentoo-user] OT software to block IPs automatically?

2005-02-11 Thread R'twick Niceorgaw
Hi Heniz,

On Fri, February 11, 2005 12:59 am, Heinz Sporn said:
> Just out of curiousity - have you ever thought of allowing ssh only over
> a VPN? Like say OpenVPN?
>

No, I haven't played with that idea yet as I haven't yet played with vpn
stuff. Will take a shot at it this weekend.

Thanks
-R'twick

--
gentoo-user@gentoo.org mailing list



[gentoo-user] help for eth0 not existing

2005-02-11 Thread Admin
Hi,

someone could go through this. After I had installed 2004.3, compiled
2.6.9r1, rebooted and during booting I have such messages:
...
*Starting input hotplugging... [ok]
*Starting pci hotplugging...[ok]
*Mounting network filessytems... [ok]
*PCMCIA support detected [ok]
*Starting pcmcia...[ok]
cardmgr[7673]: watching 2 sockets
*Bringing eth0 up (192.168.0.21)...
SIOCSIFADDR: No such device
eth0: unknown interface: No such device
(and so on)

fact
#ls /dev/eth0
ls: /dev/eth0: No such file or directory

I've looked into logs - nothing. Maybe I should change level of verbosity?
I'm running out of ideas where to look for a bug.
During LiveCD it was working well.
I've compiled yenta_socket and xirc2ps_cs into kernel.
Maybe I should create this device?

Help,

Arek


--
gentoo-user@gentoo.org mailing list



Re: [gentoo-user] System Freeze

2005-02-11 Thread Matan Peled
Captain FantastiK wrote:
HI
After About 10 min after Xscreensaver is launched  my system freezes. 
Does anybody had this before?
Overclocking? Check your system temps.
--
[Name  ]   ::  [Matan I. Peled]
[Location  ]   ::  [Israel]
[Public Key]   ::  [0xD6F42CA5]
[Keyserver ]   ::  [keyserver.kjsl.com]
encrypted/signed  plain text  preferred


signature.asc
Description: OpenPGP digital signature


Re: [gentoo-user] cups-kprinter problem

2005-02-11 Thread Andreas Fischer
Hi,
I had the same problem on a SuSE system. I was able to fix it uninstalling
and reinstalling ghostscript. You should try this on gentoo, too.
Hope this helps.
Andreas
Michael W. Holdeman schrieb:
I keep having a problem with cups-kprinter. It is with tryiong to print pdf 
files. I also get an error stating that a filter is not available for mime 
type octet/stream. What is that and how should I fix it? I don't get it with 
another machine, but can't find what is borked on this one.

Here is the error when trying to print a .ps file to a .pdf file using 
kprinter and cups.

A print error occurred. Error message received from system:
gs -q -dSAFER -dPARANOIDSAFER -dNOPAUSE -dBATCH -sDEVICE=pdfwrite 
-sOutputFile=$out{/home/mike/print.pdf} -sPAPERSIZE=letter -c .setpdfwrite -f 
'/home/mike/print.ps' : execution failed with message:
Error: /undefine in  E *t600R &u600D *r0F &l0O &l0S &l7H &l2a8c1E *p0x0Y 
*c0t5760x7728Y &l1X Operand stack: Execution stack: %interp_exit .runexec2 
--nostringval-- --nostringval-- --nostringval-- 2 %stop ed_push 
--nostringval-- --nostringval-- --nostringval-- false 1 %stopped_push 1 3 
%oparray_pop 1 3 %opa ray_pop 1 3 %oparray_pop .runexec2 --nostringval-- 
--nostringval-- --nostringval-- 2 %stopped_push --nostri gval-- 
--nostringval-- --nostringval-- Dictionary stack: --dict:1053/1417(ro)(G)-- 
--dict:0/20(G)-- --dict:68/200(L) - Current allocation mode is local Current 
file position is 157 ESP Ghostscript 7.07. : Unrecoverable error, exit code 1


Mike
 


--
gentoo-user@gentoo.org mailing list


RE: [gentoo-user] logwatch + syslog-ng

2005-02-11 Thread Simon Cornell

I've solved my own problem - just plodded through the scripts and changed a
few regex's.

There was probably an easier way; but it's done now

-Original Message-
From: Simon Cornell [mailto:[EMAIL PROTECTED] 
Sent: 10 February 2005 19:19
To: [EMAIL PROTECTED]
Subject: [gentoo-user] logwatch + syslog-ng

Has anyone any tips on how to get logwatch working with syslog-ng ?



--
gentoo-user@gentoo.org mailing list




--
gentoo-user@gentoo.org mailing list



[gentoo-user] xen ebuild madness

2005-02-11 Thread Eric S. Johansson
trying to use the xen ebuild from bug 70161 and I am getting the 
following messages but I haven't been able to find anything via google 
on the error.  Clues would be most welcome.

---eric
xeno root # ACCEPT_KEYWORDS=~x86 emerge --debug xen
Calculating dependencies
Parent:None
Depstring: sys-apps/xen
Candidates: ['sys-apps/xen']
: command not foundn/ebuild.sh: line 4:
.eclass: No such file or directoryne 1442: /usr/portage/eclass/mount-boot
!!! ERROR: sys-apps/xen-2.0.4 failed.
!!! Function inherit, Line 1443, Exitcode 1
.eclass in inherit()sr/portage/eclass/mount-boot
!!! If you need support, post the topmost build error, NOT this status 
message.

aux_get(): (0) Error in sys-apps/xen-2.0.4 ebuild. (1)
   Check for syntax error or corruption in the ebuild. 
(--debug)

!!! All ebuilds that could satisfy "xen" have been masked.
!!! One of the following masked packages is required to complete your 
request:
: command not foundn/ebuild.sh: line 4:
.eclass: No such file or directoryne 1442: /usr/portage/eclass/mount-boot

!!! ERROR: sys-apps/xen-2.0.4 failed.
!!! Function inherit, Line 1443, Exitcode 1
.eclass in inherit()sr/portage/eclass/mount-boot
!!! If you need support, post the topmost build error, NOT this status 
message.

aux_get(): (0) Error in sys-apps/xen-2.0.4 ebuild. (1)
   Check for syntax error or corruption in the ebuild. 
(--debug)
--
http://www.salon.com/books/review/2004/12/18/heloise/index.html

The basis of Abelard's philosophy, which he taught to Heloise, was
that logic had to be applied to religion in order to arrive at the
truth.
--
gentoo-user@gentoo.org mailing list


[gentoo-user] Can't kill KsCD - can't eject CD

2005-02-11 Thread Jose Gonzalez Gomez
Hi there,

Since my last update (udev, KDE 3.3.2) I'm having problems with KsCD.
On a clean reboot KsCD starts without any problem, I put a music CD,
start KsCD and play it without any problem. Once the CD finishes
playing I'm able to change it using the eject button twice (first time
opens the tray, second closes it with a new CD). But once I reach this
point KsCD hangs and I cannot eject the cd nor manually neither using
the command line. It's also impossible to kill KsCD (tried kill -9
pidOfKsCD, closing and reopening user session on KDE, restarting X
with CTRL+ALT+BACKSPACE) or start a new KsCD. I must reboot to be able
to use again the DVD drive. I found the same problem in the forums,
but the thread was dated a year ago and no solution provided. Any
ideas?

Thanks in advance, best regards
Jose

--
gentoo-user@gentoo.org mailing list



Re: [gentoo-user] SNAT and multiply real addresses ?

2005-02-11 Thread Frank Schafer
Hi,

that's not the suppose of NAT (S or D).

You set up SNAT to look whole the eth0 network (or better these machines
you enabled to SNAT) like one single address for the internet.

Frank


On Fri, 2005-02-11 at 13:39 +0200, [EMAIL PROTECTED] wrote:
> hi, I have a real networks on the eth0 side and real network on the eth1 
> side. 
> 
> a.a.a.0/24
> x.x.x.0/24   y.y.y.2/24  <> y.y.y.1/24 
> <===>INTERNET
> z.z.z.0/24
> 
> I want to nat those behind eth0 to go out as y.y.y.0/24
> (eth1 is with another address different gw and address, so that i'm using 
> eth1:0 and separate rule&table)
> I'm currently tring to do it this way :
> 
> ifconfig eth1:0 y.y.y.2 netmask 255.255.255.0
> ip route add default via y.y.y.1 table eth10-net
> ip rule from x.x.x.0/24 lookup eth10-net
> iptables -t nat -A POSTROUTING -s x.x.x.0/24 -j SNAT --to-source 
> y.y.y.3-y.y.y.254
> 
> doesn't seem to work.. the problem is that the eth1 interface have y.y.y.2 
> but not the all
> the addresses i need to have on eth1 interface... Probably I can set ~250 
> eth1 aliases
> but this will be overkill.
> ?!?! Is there any other solution...!?!?
> I can do also :
> iptables -t nat -A POSTROUTING -s x.x.x.Z -j SNAT --to-source y.y.y.Z
> and it works, but then again this is one IP scenario ?
> 
> I dont have access to y.y.y.1/24 device.
> 
> 
> 
> 
> -
> http://linuxtoday.com/news_story.php3?ltsn=2004-12-08-004-32-OS-BZ-DT-0005
> snip> MS Office is popular in the same way as heart disease is the most 
> popular way to die.
> 
> --
> gentoo-user@gentoo.org mailing list
> 


--
gentoo-user@gentoo.org mailing list



Re: [gentoo-user] Mysterious GDB Error!

2005-02-11 Thread Karsten Baumgarten
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1
Hareesh Nagarajan wrote:
| Hi,
|
| I've written this simple piece of code that uses STL strings in C++
| (appears below). Now when I run GDB I get the following:
|
| 1. warning: Unable to find dynamic linker breakpoint function.
| GDB will be unable to debug shared library initializers
| and track explicitly loaded dynamic code.
|
| 2. The program being debugged stopped while in a function called from GDB.
| When the function (std::string::at(unsigned) const) is done executing,
| GDB will silently stop (instead of continuing to evaluate the
| expression containing the function call).
|
| Why on earth am I getting the second message? I am not able call the
| member functions of any container.
|
[snip]
Can you show us how you have compiled the program? I tried to reproduce
this on my box (GCC 3.4, GDB 6.0) and it works as expected (that is,
what I expected, not what you experienced ;) )
Regards,
Karsten
-BEGIN PGP SIGNATURE-
Version: GnuPG v1.2.6 (GNU/Linux)
Comment: Using GnuPG with Thunderbird - http://enigmail.mozdev.org
iD8DBQFCDKDzgUNlsZQzobwRAoI3AJ4nzorIrXY/hnJGz1y0nPeXozCiSwCgp2Cj
i0wjc8C/liApO111JCNzJr0=
=QDwD
-END PGP SIGNATURE-
--
gentoo-user@gentoo.org mailing list


[gentoo-user] SNAT and multiply real addresses ?

2005-02-11 Thread [EMAIL PROTECTED]
hi, I have a real networks on the eth0 side and real network on the eth1 side. 

a.a.a.0/24
x.x.x.0/24   y.y.y.2/24  <> y.y.y.1/24 <===>INTERNET
z.z.z.0/24

I want to nat those behind eth0 to go out as y.y.y.0/24
(eth1 is with another address different gw and address, so that i'm using 
eth1:0 and separate rule&table)
I'm currently tring to do it this way :

ifconfig eth1:0 y.y.y.2 netmask 255.255.255.0
ip route add default via y.y.y.1 table eth10-net
ip rule from x.x.x.0/24 lookup eth10-net
iptables -t nat -A POSTROUTING -s x.x.x.0/24 -j SNAT --to-source 
y.y.y.3-y.y.y.254

doesn't seem to work.. the problem is that the eth1 interface have y.y.y.2 but 
not the all
the addresses i need to have on eth1 interface... Probably I can set ~250 eth1 
aliases
but this will be overkill.
?!?! Is there any other solution...!?!?
I can do also :
iptables -t nat -A POSTROUTING -s x.x.x.Z -j SNAT --to-source y.y.y.Z
and it works, but then again this is one IP scenario ?

I dont have access to y.y.y.1/24 device.




-
http://linuxtoday.com/news_story.php3?ltsn=2004-12-08-004-32-OS-BZ-DT-0005
snip> MS Office is popular in the same way as heart disease is the most popular 
way to die.

--
gentoo-user@gentoo.org mailing list



Re: [gentoo-user] Gnome desktop - how do I customise the context menu?

2005-02-11 Thread Holly Bostick
Ric de France wrote:
Luke,
On Thu, 10 Feb 2005 22:41:31 -0800, Luke Ravitch <[EMAIL PROTECTED]> wrote:
On 2005-02-10 22:35, Ric de France <[EMAIL PROTECTED]> wrote:
How do I change the context menu to remove all traces of "totem" or
"Totem media player"?
From the context menu, select "Properties".  Select the "Open With"
tab.  There you can select an app and click on remove to take it off
the context menu.  You can also pick which of the apps in the menu
should be your default.  (The changes will apply to all files of the
type of the file on which you right clicked to get the context menu.)
Tried all that, but can't remove the "original default" of Totem Media
Player. If I select that one, the "remove" button is unselectable.
...Ric
I had a similar problem, and the solution (such as it was) was 1) 
convoluted and 2) not comprehensive, but here you go, for what it's 
worth. I had also installed Totem to see if it had gotten better, which 
it hadn't, and I wanted to remove it as an association with movie files, 
as well as make MPlayer the new default, as it was generally working 
better than Xine (but they work differently, so I needed them both to 
test some issues with "weird" movie files I was trying to re-encode).

Somewhere in the GNOME Control Center-- I think in Advanced, but I have 
no access to GNOME atm, there is a module for setting MIME types, called 
something like "File types and Programs". Find it and hie ye there.

Now, the freaky thing about some movie file extensions is that they are 
listed as *two types* of movie, and one takes priority over the other. 
For instance, iIrc (I am doing this from memory), *.mov files are both 
/x-quicktime and /x-msvideo, and /x-msvideo is the "boss" of the setting.

So when I selected the /x-quicktime extenstions, and tried to select and 
remove Totem as an association for this movie type, I received a dialog 
telling me that I had to change the association of x-msvideo before I 
could be allowed to change the association of x-quicktime (the specific 
MIME types may not be correct, but that is the sequence of events).

So what I had to do was 1) go to the "primary" MIME type as per the 
dialog; 2) make some other movie player the default "open with" program 
for that type (often by moving it to the head of the list of available 
associated programs; iIrc, there is no "set as default" button, but the 
first program in the list is considered the default, and there is a 
"Move up/move down" facility to manage the list; 3) attempt to remove 
Totem from the list entirely (which did not necessarily work-- Totem 
itself seemed to be unremoveable from some MIME-type listings as long as 
it remained installed, but since it was now at the bottom of the list of 
available applications for the MIME type, it was "OK" that it was still 
there.

However, once Totem was removed or set aside from the "primary" 
MIME-type listing, it could be removed from the "secondary" MIME-type 
listing without complaints from the GNOME mime manager.

So, as I said, convoluted, and not comprehensive, but it more or less 
got the job done.

Hope this helps.
Holly
--
gentoo-user@gentoo.org mailing list


Re: [gentoo-user] OT software to block IPs automatically?

2005-02-11 Thread Matan Peled
R'twick Niceorgaw wrote:
Hi all,
Recently I'm receiving a lot of failed ssh login attempts on my box for
user root as well as a whole lot of other users which doesn't even
exist. I'm getting tired of blocking these IPs manually everyday.
Is there any software that can look in the logs and put these IPs in
iptables to drop automatically (either in a daemon mode or via cron)?
TIA
-R'twick
Possible DoS - someone spoofs a "good" ip, and denies you access from that 
IP! :(
--
[Name  ]   ::  [Matan I. Peled]
[Location  ]   ::  [Israel]
[Public Key]   ::  [0xD6F42CA5]
[Keyserver ]   ::  [keyserver.kjsl.com]
encrypted/signed  plain text  preferred


signature.asc
Description: OpenPGP digital signature


Re: [gentoo-user] Mysterious GDB Error!

2005-02-11 Thread Matan Peled
Hareesh Nagarajan wrote:
Hi,
Hello!
> 
10  cout << s.at(3);
(gdb) b 9
> 
I'm no gdb expert, but aren't you forgetting the closing curly bracket?
--
[Name  ]   ::  [Matan I. Peled]
[Location  ]   ::  [Israel]
[Public Key]   ::  [0xD6F42CA5]
[Keyserver ]   ::  [keyserver.kjsl.com]
encrypted/signed  plain text  preferred


signature.asc
Description: OpenPGP digital signature


Re: [gentoo-user] is this normal? (free disk space question)

2005-02-11 Thread Botykai Zsolt
-= Eredeti üzenet (Original message) =-
Dátum (Date): Fri, 11 Feb 2005 19:16:11 +0900
Küldő (From): Jason Stubbs <[EMAIL PROTECTED]>
Címzett (To): [EMAIL PROTECTED]
Tárgy (Subject): Re: [gentoo-user] is this normal? (free disk space question)

> On Friday 11 February 2005 17:05, Botykai Zsolt wrote:
> > Frank was right I compared the df's output after two minutes.
> > And xfmedia is one media player but at that point it was paused (with some
> > mp3 files).
> > And if it was about temporary files, why they hadn't showed up with 'du'?

> If an application holds a file open, it is not deleted from the disk even if
> the directory entry has been removed. Have a look at the following:

> $ df | grep hda ; dd if=/dev/zero of=foobar count=50 & rm foobar ; ls 
> foobar; for x in $(seq 1 10); do df | grep hda; sleep 1; done
> /dev/hda1 19043697  17433093   1610604  92% /
> [1] 9666
> ls: foobar: No such file or directory
> /dev/hda1 19043697  17445180   1598517  92% /
> /dev/hda1 19043697  17559840   1483857  93% /
> /dev/hda1 19043697  17617281   1426416  93% /
> /dev/hda1 19043697  17629618   1414079  93% /
> /dev/hda1 19043697  17651739   1391958  93% /
> /dev/hda1 19043697  17667173   1376524  93% /
> /dev/hda1 19043697  17681578   1362119  93% /
> 50+0 records in
> 50+0 records out
> [1]+  Done( dd if=/dev/zero of=foobar count=50 )
> /dev/hda1 19043697  17433109   1610588  92% /
> /dev/hda1 19043697  17433109   1610588  92% /
> /dev/hda1 19043697  17433109   1610588  92% /
> 
> You can see that the foobar's directory entry has been removed, but the disk
> space usage continually increases until the file is closed.
-= Eredeti üzenet vége (End of original message) =-

thanx jason, I understand the reasons for now.

Zsoltik@

--

Opinions, conclusions and other information in this message that do not
relate to the official business of Online Business Technologies Corp.
shall be understood as neither given nor endorsed by it. In such cases
Online Business Technologies Corp. will not bear the responsibility of
consequences.
If you have received this communication in error, please notify the
system manager immediately by responding to this email and then delete
it from your system.


A levelben foglalt, nem az Online Rt. hivatalos uzletmenetevel kapcsolatos
velemenyek vagy mas informaciok vonatkozasaban az Online Rt. nem vallal
felelosseget.
Amennyiben a level valamely hiba folytan jutott Onhoz, kerjuk, hogy
valaszlevelben azonnal ertesitse a rendszer uzemeltetojet, majd torolje ki
a levelet rendszerebol!


--
gentoo-user@gentoo.org mailing list

Re: [gentoo-user] is this normal? (free disk space question)

2005-02-11 Thread Jason Stubbs
On Friday 11 February 2005 17:05, Botykai Zsolt wrote:
(B>
(B> Frank was right I compared the df's output after two minutes.
(B> And xfmedia is one media player but at that point it was paused (with some
(B> mp3 files).
(B> And if it was about temporary files, why they hadn't showed up with 'du'?
(B
(BIf an application holds a file open, it is not deleted from the disk even if 
(Bthe directory entry has been removed. Have a look at the following:
(B
(B$ df | grep hda ; dd if=/dev/zero of=foobar count=50 & rm foobar ; ls 
(Bfoobar; for x in $(seq 1 10); do df | grep hda; sleep 1; done
(B/dev/hda1 19043697  17433093   1610604  92% /
(B[1] 9666
(Bls: foobar: No such file or directory
(B/dev/hda1 19043697  17445180   1598517  92% /
(B/dev/hda1 19043697  17559840   1483857  93% /
(B/dev/hda1 19043697  17617281   1426416  93% /
(B/dev/hda1 19043697  17629618   1414079  93% /
(B/dev/hda1 19043697  17651739   1391958  93% /
(B/dev/hda1 19043697  17667173   1376524  93% /
(B/dev/hda1 19043697  17681578   1362119  93% /
(B50+0 records in
(B50+0 records out
(B[1]+  Done( dd if=/dev/zero of=foobar count=50 )
(B/dev/hda1 19043697  17433109   1610588  92% /
(B/dev/hda1 19043697  17433109   1610588  92% /
(B/dev/hda1 19043697  17433109   1610588  92% /
(B
(BYou can see that the foobar's directory entry has been removed, but the disk 
(Bspace usage continually increases until the file is closed.
(B
(BRegards,
(BJason Stubbs
(B
(B--
(Bgentoo-user@gentoo.org mailing list

Re: [gentoo-user] OT software to block IPs automatically?

2005-02-11 Thread Stoian Ivanov
   You could sing in for a free shell account (www.rootshell.be), and allow 
access from their ip/network only - when you are away you can hoop via the 
free account to your machine, adjust firewall and carry on. Shell providers 
won't allow scanner running on their machines :)

--
gentoo-user@gentoo.org mailing list



Re: [gentoo-user] is this normal? (free disk space question)

2005-02-11 Thread Dirk Heinrichs
Am Donnerstag, 10. Februar 2005 16:57 schrieb ext Botykai Zsolt:
> just got some warning about lack of disk space, so I cheched it.
> # cd /home
> # du --max-depth=0 -m
> 3132
> # df -m | grep home
> /dev/hda5 67335362 1030  84% /home
>
> Just thaught what hte heck???
> started to worrying, so fired up this mail to ask smart people on this
> list. while writing, did the same check (2 minutes later, bcause of some
> phone-calls).
>
> botykai-zsolt home # du --max-depth=0 -m
> 3132.
> botykai-zsolt home # df -m | grep home
> /dev/hda5 6733  3165  3227  50% /home
>
> WHAT?

This may happen when files are overwritten/deleted while still opened by 
some other process. The disc space cannot be freed until the last process 
closes the file(s) in question and the new file(s) are written to a 
different location. This also explains why "du" shows the same both times 
and "df" output is different.

HTH...

Dirk
-- 
Dirk Heinrichs  | Tel:  +49 (0)151 1513 6954
Configuration Manager   | Fax:  +49 (0)211 47068 111
Capgemini Deutschland   | Mail: [EMAIL PROTECTED]
Hambornerstraße 55  | Web:  http://www.capgemini.com
D-40472 Düsseldorf  | ICQ#: 110037733
GPG Public Key C2E467BB | Keyserver: www.keyserver.net


pgpmqS295a7tP.pgp
Description: PGP signature


Re: [gentoo-user] OT: squirrelmail and huge message folders

2005-02-11 Thread Andreas Vinsander
Nick Smith wrote:
i would suggest upping the limit anyway, because the folder will still
continue to grow. ;-)
Nah, I do a cleanup once in a while removing all messages older than 60 
days...
So I keep it pretty constant at 1 messages...

I'm surprised that my tiny server can handle it... (since it's also doin 
spamassassin for all messages)

/Andreas
--
gentoo-user@gentoo.org mailing list


Re: [gentoo-user] Prelink exits with 1 ( a crash ? ). What do I do ?

2005-02-11 Thread Botykai Zsolt
-= Eredeti üzenet (Original message) =-
Dátum (Date): Fri, 04 Feb 2005 12:40:05 +0200
Küldő (From): Ivan Yosifov <[EMAIL PROTECTED]>
Címzett (To): gentoo-user <[EMAIL PROTECTED]>
Tárgy (Subject): [gentoo-user] Prelink exits with 1 ( a crash ? ). What do I
do ?

> It appears prelink has simply stopped working for me. It exits with 1
> and does not print any error messages.
> localhost ~ # prelink -vmahfR
> localhost ~ # echo $?
> 1
> localhost ~ # prelink -fva
> localhost ~ # echo $?
> 1
> localhost ~ # prelink -va
> localhost ~ # echo $?
> 1
> localhost ~ # prelink --version
> prelink 1.0
> localhost ~ # echo $?
> 0
> What  does exitcode 1 mean ?  How do I make it work again ?
> gentoo-user@gentoo.org mailing list
-= Eredeti üzenet vége (End of original message) =-

I got the same problem, so for the archives, and for those who intrested in
it:  http://bugs.gentoo.org/show_bug.cgi?id=71024

There is the solution:
# /usr/sbin/env-update
# strace /usr/sbin/prelink -afmR 2>&1 | grep 'Too many levels'

It will - hopefully - shows which file/directory causes this problem. 
Check if it's safe to remove. 
Remove.
Prelink again. In case of problems try the strace again.

Cheers,
Zsoltik@

--

Opinions, conclusions and other information in this message that do not
relate to the official business of Online Business Technologies Corp.
shall be understood as neither given nor endorsed by it. In such cases
Online Business Technologies Corp. will not bear the responsibility of
consequences.
If you have received this communication in error, please notify the
system manager immediately by responding to this email and then delete
it from your system.


A levelben foglalt, nem az Online Rt. hivatalos uzletmenetevel kapcsolatos
velemenyek vagy mas informaciok vonatkozasaban az Online Rt. nem vallal
felelosseget.
Amennyiben a level valamely hiba folytan jutott Onhoz, kerjuk, hogy
valaszlevelben azonnal ertesitse a rendszer uzemeltetojet, majd torolje ki
a levelet rendszerebol!


--
gentoo-user@gentoo.org mailing list

Re: [gentoo-user] is this normal? (free disk space question)

2005-02-11 Thread Botykai Zsolt
> IMO he compared ``df'' with ``df''.
> 
> If I look at the original post I see some (multimedia related?)
> applications which I don't know. The difference makes about 2GB so I
> wonder if some of this application is of sort video. Could be that this
> app saves temporary files.
> 
> My 0,02$
> Frank
> 
> On Thu, 2005-02-10 at 15:10 -0800, Mike Noble wrote:
> > Botykai Zsolt wrote:
> > | just got some warning about lack of disk space, so I cheched it.
> > | # cd /home
> > | # du --max-depth=0 -m
> > | 3132
> > | # df -m | grep home
> > | /dev/hda5 67335362 1030  84% /home
> > |
> > | Just thaught what hte heck???
> > | started to worrying, so fired up this mail to ask smart people on this
> > list.
> > | while writing, did the same check (2 minutes later, bcause of some
> > | phone-calls).
> > |
> > | botykai-zsolt home # du --max-depth=0 -m
> > | 3132.
> > | botykai-zsolt home # df -m | grep home
> > | /dev/hda5 6733  3165  3227  50% /home
> > |
> > | WHAT?
> > |
> > | Here is the konsole in front of me, so I was able to check the commands
> > I | issued. It is as seen above.
> > |
> > | What happened in those minutes? My computer ran xfce4, latest xorg,
> > some apps
> > | (OOo, sylpheed-claws, konsole, torsmo (which showed the disk space as
> > df did),
> > | root-tail, liferea, and xfmedia) the latest gentoo-dev-sources, ext3
> > | filesystems and 2.6.10-r7.
> > |
> > | Any idea what is it?
> > |
> > 
> > I have no idea what you mean by minutes, but the difference between
> > the sizes reported are do to the fact that df shows the amount of
> > disk space used including what is used by the file system.  While
> > the du just reports what is being used by files and such.  If you
> > create a new filesystem without anything in it, and then do a df
> > you will find that there is some space already taken.  This space is
> > used by the filesystem for inodes and super block backups, etc.  There
> > is also space reserved for root.
> > 
> > HTH
> > Mike
> > - --


Frank was right I compared the df's output after two minutes. 
And xfmedia is one media player but at that point it was paused (with some mp3
files).  
And if it was about temporary files, why they hadn't showed up with 'du'?

Zsoltika

--

Opinions, conclusions and other information in this message that do not
relate to the official business of Online Business Technologies Corp.
shall be understood as neither given nor endorsed by it. In such cases
Online Business Technologies Corp. will not bear the responsibility of
consequences.
If you have received this communication in error, please notify the
system manager immediately by responding to this email and then delete
it from your system.


A levelben foglalt, nem az Online Rt. hivatalos uzletmenetevel kapcsolatos
velemenyek vagy mas informaciok vonatkozasaban az Online Rt. nem vallal
felelosseget.
Amennyiben a level valamely hiba folytan jutott Onhoz, kerjuk, hogy
valaszlevelben azonnal ertesitse a rendszer uzemeltetojet, majd torolje ki
a levelet rendszerebol!


--
gentoo-user@gentoo.org mailing list