Re: problem install 5.9 on HP Pro 3130 MT

2016-08-25 Thread thrph
Il giorno mar, 23/08/2016 alle 23.10 +0200, thrph ha scritto:
I had try to install OpenBSD 5.9 on HP Pro 3130 MT, with usb and dvd
> media.
> The install process stop on message: 
> root on rd0a swap on rd0b dump on rd0b
> 
> can somebody help me to find a solution?
> 
> best regards
> 
> 

Hi,

i have installed the 5.9 on another machine and then start the OS in the
HP Pro Machine.

This is the dmesg of HP Pro 3130m MT:

OpenBSD 5.9 (GENERIC.MP) #1888: Fri Feb 26 01:20:19 MST 2016
dera...@amd64.openbsd.org:/usr/src/sys/arch/amd64/compile/GENERIC.MP
real mem = 5007474688 (4775MB)
avail mem = 4851515392 (4626MB)
mpath0 at root
scsibus0 at mpath0: 256 targets
mainbus0 at root
bios0 at mainbus0: SMBIOS rev. 2.6 @ 0xfbd30 (23 entries)
bios0: vendor American Megatrends Inc. version "6.16" date 03/18/2011
bios0: Hewlett-Packard HP Pro 3130 Microtower PC
acpi0 at bios0: rev 2
acpi0: sleep states S0 S1 S3 S4 S5
acpi0: tables DSDT FACP APIC MCFG SLIC OEMB SSDT HPET GSCI SSDT
acpi0: wakeup devices P0P1(S4) P0P3(S4) P0P4(S4) P0P5(S4) P0P6(S4)
BR1E(S4) PS2K(S4) PS2M(S4) EUSB(S3) USB0(S3) USB1(S3) USB2(S3) USB3(S3)
USBE(S3) USB4(S3) USB5(S3) [...]
acpitimer0 at acpi0: 3579545 Hz, 24 bits
acpimadt0 at acpi0 addr 0xfee0: PC-AT compat
cpu0 at mainbus0: apid 0 (boot processor)
cpu0: Intel(R) Core(TM) i3 CPU 550 @ 3.20GHz, 3192.66 MHz
cpu0:
FPU,VME,DE,PSE,TSC,MSR,PAE,MCE,CX8,APIC,SEP,MTRR,PGE,MCA,CMOV,PAT,PSE36,CFLUSH,DS,ACPI,MMX,FXSR,SSE,SSE2,SS,HTT,TM,PBE,SSE3,DTES64,MWAIT,DS-CPL,VMX,EST,TM2,SSSE3,CX16,xTPR,PDCM,PCID,SSE4.1,SSE4.2,POPCNT,NXE,LONG,LAHF,PERF,ITSC,SENSOR,ARAT
cpu0: 256KB 64b/line 8-way L2 cache
cpu0: smt 0, core 0, package 0
mtrr: Pentium Pro MTRR support, 8 var ranges, 88 fixed ranges
cpu0: apic clock running at 133MHz
cpu0: mwait min=64, max=64, C-substates=0.2.1.1, IBE
cpu1 at mainbus0: apid 4 (application processor)
cpu1: Intel(R) Core(TM) i3 CPU 550 @ 3.20GHz, 3192.19 MHz
cpu1:
FPU,VME,DE,PSE,TSC,MSR,PAE,MCE,CX8,APIC,SEP,MTRR,PGE,MCA,CMOV,PAT,PSE36,CFLUSH,DS,ACPI,MMX,FXSR,SSE,SSE2,SS,HTT,TM,PBE,SSE3,DTES64,MWAIT,DS-CPL,VMX,EST,TM2,SSSE3,CX16,xTPR,PDCM,PCID,SSE4.1,SSE4.2,POPCNT,NXE,LONG,LAHF,PERF,ITSC,SENSOR,ARAT
cpu1: 256KB 64b/line 8-way L2 cache
cpu1: smt 0, core 2, package 0
cpu2 at mainbus0: apid 1 (application processor)
cpu2: Intel(R) Core(TM) i3 CPU 550 @ 3.20GHz, 3192.19 MHz
cpu2:
FPU,VME,DE,PSE,TSC,MSR,PAE,MCE,CX8,APIC,SEP,MTRR,PGE,MCA,CMOV,PAT,PSE36,CFLUSH,DS,ACPI,MMX,FXSR,SSE,SSE2,SS,HTT,TM,PBE,SSE3,DTES64,MWAIT,DS-CPL,VMX,EST,TM2,SSSE3,CX16,xTPR,PDCM,PCID,SSE4.1,SSE4.2,POPCNT,NXE,LONG,LAHF,PERF,ITSC,SENSOR,ARAT
cpu2: 256KB 64b/line 8-way L2 cache
cpu2: smt 1, core 0, package 0
cpu3 at mainbus0: apid 5 (application processor)
cpu3: Intel(R) Core(TM) i3 CPU 550 @ 3.20GHz, 3192.19 MHz
cpu3:
FPU,VME,DE,PSE,TSC,MSR,PAE,MCE,CX8,APIC,SEP,MTRR,PGE,MCA,CMOV,PAT,PSE36,CFLUSH,DS,ACPI,MMX,FXSR,SSE,SSE2,SS,HTT,TM,PBE,SSE3,DTES64,MWAIT,DS-CPL,VMX,EST,TM2,SSSE3,CX16,xTPR,PDCM,PCID,SSE4.1,SSE4.2,POPCNT,NXE,LONG,LAHF,PERF,ITSC,SENSOR,ARAT
cpu3: 256KB 64b/line 8-way L2 cache
cpu3: smt 1, core 2, package 0
ioapic0 at mainbus0: apid 6 pa 0xfec0, version 20, 24 pins
ioapic0: misconfigured as apic 1, remapped to apid 6
acpimcfg0 at acpi0 addr 0xe000, bus 0-255
acpihpet0 at acpi0: 14318179 Hz
acpiprt0 at acpi0: bus 0 (PCI0)
acpiprt1 at acpi0: bus 3 (BR1E)
acpiprt2 at acpi0: bus 1 (BR20)
acpiprt3 at acpi0: bus -1 (BR21)
acpiprt4 at acpi0: bus 2 (BR22)
acpiprt5 at acpi0: bus -1 (BR23)
acpiprt6 at acpi0: bus -1 (BR24)
acpiprt7 at acpi0: bus -1 (BR25)
acpiprt8 at acpi0: bus -1 (BR26)
acpiprt9 at acpi0: bus -1 (BR27)
acpicpu0 at acpi0: C3(350@17 mwait.1@0x20), C2(500@17 mwait.1@0x10),
C1(1000@1 mwait.1), PSS
acpicpu1 at acpi0: C3(350@17 mwait.1@0x20), C2(500@17 mwait.1@0x10),
C1(1000@1 mwait.1), PSS
acpicpu2 at acpi0: C3(350@17 mwait.1@0x20), C2(500@17 mwait.1@0x10),
C1(1000@1 mwait.1), PSS
acpicpu3 at acpi0: C3(350@17 mwait.1@0x20), C2(500@17 mwait.1@0x10),
C1(1000@1 mwait.1), PSS
acpibtn0 at acpi0: SLPB
acpibtn1 at acpi0: PWRB
cpu0: Enhanced SpeedStep 3192 MHz: speeds: 3200, 3067, 2933, 2800, 2667,
2533, 2400, 2267, 2133, 2000, 1867, 1733, 1600, 1467, 1333, 1200 MHz
pci0 at mainbus0 bus 0
pchb0 at pci0 dev 0 function 0 "Intel Core Host" rev 0x18
inteldrm0 at pci0 dev 2 function 0 "Intel HD Graphics" rev 0x18
drm0 at inteldrm0
intagp0 at inteldrm0
agp0 at intagp0: aperture at 0xd000, size 0x1000
inteldrm0: msi
inteldrm0: 1680x1050
wsdisplay0 at inteldrm0 mux 1: console (std, vt100 emulation)
wsdisplay0: screen 1-5 added (std, vt100 emulation)
"Intel 3400 MEI" rev 0x06 at pci0 dev 22 function 0 not configured
ehci0 at pci0 dev 26 function 0 "Intel 3400 USB" rev 0x06: apic 6 int 16
usb0 at ehci0: USB revision 2.0
uhub0 at usb0 "Intel EHCI root hub" rev 2.00/1.00 addr 1
azalia0 at pci0 dev 27 function 0 "Intel 3400 HD Audio" rev 0x06: msi
azalia0: codecs: Realtek ALC888
audio0 at azalia0
ppb0 at pci0 dev 28 function 0 "Intel 3400 PCIE" rev 0x06: msi
pci1 at ppb0 bus 1
re0 at pci1 dev 0 function 0 

Re: DigitalOcean and OpenBSD

2016-08-25 Thread lists
Wed, 24 Aug 2016 18:59:46 -0300 "R0me0 ***" 
[...]
> Thank you everyone that gime directions really appreciated ( all those in
> pvt as well )
> 
> Cheers guys !

Thu, 25 Aug 2016 11:07:17 +0800 Tinker 
[...]
> Guys, www.kimsufi.com is the best combination of inexpensive and 
> reliable, for dedicated servers.

Hi R0me0,

Indeed, recommending even more self managed affordable SSD servers:

OVH: SoYouStart, FR (EUR)
[https://www.soyoustart.com/ie/essential-servers/]

OVH: SoYouStart, CA (USD)
[https://www.soyoustart.com/us/essential-servers/]

NB: Not affiliate, years of OpenBSD in KVM on SSD servers reliably.

Kind regards,
Anton



Re: Installer overwrites partition table

2016-08-25 Thread ludovic coues
On 24 Aug 2016 10:02 p.m., "Bertram Scharpf" 
wrote:
> This installer nuked away my whole notebook. Who wouldn't
> get anrgy about that. If it is trolling to complain about
> that, then after all I am a troll. If it is _not_ trolling
> to write "lie", "bullshit" and to call me a "Hundepimmel"
> (dogs willie), then I hope that I'm a troll.

Being a troll is not about being rude but making people lose their time.
You came here with grand claim that the installer failed on you and
basically have gone "fuck you, this thing make me dust up my back up, I'm
not helping you". A bug report without the most basic info to help resolve
the bug is a trolling attempt.

You had a notebook with a blank hard drive. You could have installed a
random Linux in 5 minutes then redone the openbsd installer step by step
until you find which step overwrote the partition.

Instead, you decided to go on the project mail list and told the dev their
work is really really bad. And you are offended they took it as an insult.

>
> But that doesn't matter any more.
>

Obviously it does matter, else you wouldn't be here.



Re: DigitalOcean and OpenBSD

2016-08-25 Thread lists
Thu, 25 Aug 2016 17:39:18 +0800 Tinker 
> On 2016-08-25 17:22, li...@wrant.com wrote:
> > Wed, 24 Aug 2016 18:59:46 -0300 "R0me0 ***" 
> > [...]  
> >> Thank you everyone that gime directions really appreciated ( all those 
> >> in
> >> pvt as well )
> >> 
> >> Cheers guys !  
> > 
> > Thu, 25 Aug 2016 11:07:17 +0800 Tinker 
> > [...]  
> >> Guys, www.kimsufi.com is the best combination of inexpensive and
> >> reliable, for dedicated servers.  
> > 
> > Hi R0me0,
> > 
> > Indeed, recommending even more self managed affordable SSD servers:
> > 
> > OVH: SoYouStart, FR (EUR)
> > [https://www.soyoustart.com/ie/essential-servers/]
> > 
> > OVH: SoYouStart, CA (USD)
> > [https://www.soyoustart.com/us/essential-servers/]
> > 
> > NB: Not affiliate, years of OpenBSD in KVM on SSD servers reliably.
> > 
> > Kind regards,
> > Anton  
> 
> The SoYouStart servers are expensive lol! -
> 
> The catch with KimSufi (operated by the same company), except for that 
> they are a lower performance segment of course, is that you *NOT* have 
> KVM access.
> 
> And there are ways to circumvent that.

Hi Tinker,

I can too confirm that the SYS servers are expensive for my budget yet
we all know about net booting rescue images, when provider gives this.

You're absolutely right that the KS servers are the poor man's choice!
However, the KS servers lack the virtualisation capable CPUs and IPs..

Please, allow me to explain I was not referring to a KVM switch device
used to manage the servers out of band, but KVM virtualisation method:

[https://en.wikipedia.org/wiki/KVM_switch]
[https://en.wikipedia.org/wiki/Kernel-based_Virtual_Machine]

You can use SYS servers with any Linux with KVM QEMU to run OpenBSD in
KVM (virtual machine) on virtio(4) support, just head for libvirt too:

libvirt - virtualisaion management library & tool kit
[https://en.wikipedia.org/wiki/Libvirt]

virtio - VirtIO support driver
[http://man.openbsd.org/virtio]

Before you go into another disambiguation nit, let me also mention it:
serial + text mode console + graphical console, over SSH is mandatory,
if you want to reliably and functionally manage your virtual machines.

So, balance it out, I'd personally go direct bare metal on KS any day,
but, I primarily use (profit) from the virtualisation on SYS servers..
You can share with a buddy, or provide service for a group of friends.

The takeaway info is:  self-managing is not hard, gives you more value
for the costs & saves you from A LOT of trouble from complex overhead.

And I am patiently & eagerly hoping native OpenBSD virtualisation goes
production ready soon, for which I think we all know what is required.

vmm - virtual machine monitor
[http://man.openbsd.org/vmm]

vmd - virtual machine daemon
[http://man.openbsd.org/vmd]

vmctl - control the virtual machine daemon
[http://man.openbsd.org/vmctl]

vm.conf - virtual machine configuration
[http://man.openbsd.org/vm.conf]

OpenBSD Foundation Activities - Donate to the OpenBSD Foundation
[http://www.openbsdfoundation.org/activities.html]

Kind regards,
Anton



Re: DigitalOcean and OpenBSD

2016-08-25 Thread Gilles Chehade
On Thu, Aug 25, 2016 at 12:22:21PM +0300, li...@wrant.com wrote:
> Wed, 24 Aug 2016 18:59:46 -0300 "R0me0 ***" 
> [...]
> > Thank you everyone that gime directions really appreciated ( all those in
> > pvt as well )
> > 
> > Cheers guys !
> 
> Thu, 25 Aug 2016 11:07:17 +0800 Tinker 
> [...]
> > Guys, www.kimsufi.com is the best combination of inexpensive and 
> > reliable, for dedicated servers.
> 
> Hi R0me0,
> 
> Indeed, recommending even more self managed affordable SSD servers:
> 
> OVH: SoYouStart, FR (EUR)
> [https://www.soyoustart.com/ie/essential-servers/]
> 
> OVH: SoYouStart, CA (USD)
> [https://www.soyoustart.com/us/essential-servers/]
> 
> NB: Not affiliate, years of OpenBSD in KVM on SSD servers reliably.
> 

As a former customer, I would recommand against them.

There are other alternatives with better hardware, services and policies
within the same price ranges. online.net to name one, hetzner.de to name
another one.

I'm only commenting because your mail didn't mention competitors and I'd
hate the idea that people went there by default, but I'm off this thread
now ;-)

-- 
Gilles Chehade

https://www.poolp.org  @poolpOrg



Re: DPB can't do it's job in 6.0

2016-08-25 Thread Marc Espie
On Fri, Aug 19, 2016 at 08:06:09PM +0200, Noth wrote:
> Hi misc@
> 
> 
>   I'm a bit disappointed with dpb in 6.0, I haven't tried the chrooting
> stuff but was hoping it could still work as before. All I can get it to do
> now is start downloading src tarballs, and more often than not fail at that
> (manual make -j5 package will build anything). It can barely build anything,
> much less x11/gnome. I'd love to know what I can to do rectify this...

That's shitty reporting.  Exactly zero useful info in there.

I'm impressed that my fellow developers did spend some time figuring 
out all the stuff you didn't by yourself.

Thanks for wasting their time that they could have used to do something
useful instead.



Re: DigitalOcean and OpenBSD

2016-08-25 Thread Kamil Cholewiński
On Thu, 25 Aug 2016, Gilles Chehade  wrote:
> There are other alternatives with better hardware, services and policies
> within the same price ranges. online.net to name one, hetzner.de to name
> another one.

Hetzner customer here. Hetzner doesn't support OpenBSD natively. The
only instructions I could find are kind of dated, in German, seem to
apply only to dedicated servers (as opposed to VMs), and overall look
like a giant hack. Anyone had luck getting things running recently?

<3,K.



Re: DigitalOcean and OpenBSD

2016-08-25 Thread lists
Thu, 25 Aug 2016 14:32:12 +0200 Gilles Chehade 
> On Thu, Aug 25, 2016 at 12:22:21PM +0300, li...@wrant.com wrote:
> > Wed, 24 Aug 2016 18:59:46 -0300 "R0me0 ***" 
> > [...]  
> > > Thank you everyone that gime directions really appreciated ( all those in
> > > pvt as well )
> > > 
> > > Cheers guys !  
> > 
> > Thu, 25 Aug 2016 11:07:17 +0800 Tinker 
> > [...]  
> > > Guys, www.kimsufi.com is the best combination of inexpensive and 
> > > reliable, for dedicated servers.  
> > 
> > Hi R0me0,
> > 
> > Indeed, recommending even more self managed affordable SSD servers:
> > 
> > OVH: SoYouStart, FR (EUR)
> > [https://www.soyoustart.com/ie/essential-servers/]
> > 
> > OVH: SoYouStart, CA (USD)
> > [https://www.soyoustart.com/us/essential-servers/]
> > 
> > NB: Not affiliate, years of OpenBSD in KVM on SSD servers reliably.
> >   
> 
> As a former customer, I would recommand against them.
> 
> There are other alternatives with better hardware, services and policies
> within the same price ranges. online.net to name one, hetzner.de to name
> another one.
> 
> I'm only commenting because your mail didn't mention competitors and I'd
> hate the idea that people went there by default, but I'm off this thread
> now ;-)

Hi Gilles,

My point was using X-as-a-service is a flawed model for tech users.
The fact is a lot more has to be improved everywhere industry wide.

Especially hardware quality, and management (IPMI2/KMVoIP included)
tools, done properly in isolated networks with SSH console & serial
and all other trouble can be evaded by rebuilds, backups, preorder.

Indeed, I only mentioned OVH as minimum acceptable and not go-to :)
but more like as one sample approach to handle self managed hosting
Not used these providers yet and am too considering also online.net

Thank you for the additions, I agree and have reviewed these offers
before too, and recommend any provider that gives better hardware..

And more flexibility to manage the actual hardware like in the lab.
The ones that dumb it down hide all of the complexity which breaks.

Kind regards,
Anton



Re: DigitalOcean and OpenBSD

2016-08-25 Thread Leonardo Santagostini
My two cents: Ramnode.

Im using it since 5.6 withou anu issues.

Regards
El ago 25, 2016 9:34 a.m., "Gilles Chehade"  escribió:

> On Thu, Aug 25, 2016 at 12:22:21PM +0300, li...@wrant.com wrote:
> > Wed, 24 Aug 2016 18:59:46 -0300 "R0me0 ***" 
> > [...]
> > > Thank you everyone that gime directions really appreciated ( all those
> in
> > > pvt as well )
> > >
> > > Cheers guys !
> >
> > Thu, 25 Aug 2016 11:07:17 +0800 Tinker 
> > [...]
> > > Guys, www.kimsufi.com is the best combination of inexpensive and
> > > reliable, for dedicated servers.
> >
> > Hi R0me0,
> >
> > Indeed, recommending even more self managed affordable SSD servers:
> >
> > OVH: SoYouStart, FR (EUR)
> > [https://www.soyoustart.com/ie/essential-servers/]
> >
> > OVH: SoYouStart, CA (USD)
> > [https://www.soyoustart.com/us/essential-servers/]
> >
> > NB: Not affiliate, years of OpenBSD in KVM on SSD servers reliably.
> >
>
> As a former customer, I would recommand against them.
>
> There are other alternatives with better hardware, services and policies
> within the same price ranges. online.net to name one, hetzner.de to name
> another one.
>
> I'm only commenting because your mail didn't mention competitors and I'd
> hate the idea that people went there by default, but I'm off this thread
> now ;-)
>
> --
> Gilles Chehade
>
> https://www.poolp.org  @poolpOrg



Re: DigitalOcean and OpenBSD

2016-08-25 Thread ds
On Wed, 24 Aug 2016 10:40:38 -0300
"R0me0 ***"  wrote:

> Hello everybody !
> 
> Please,
> 
> Anyone  already had a disk corruption running OpenBSD @ DigitalOcean
> with disk encryption ?
> 
> I had this issue for the third time running OpenBSD 5.9 stable branch
> and a simple "reboot" == No O/S
> 
> 
> Thanks in advance,
> 

if you're installing OpenBSD on a random VPS, i usually do this: boot
up their ubuntu linux rescue image, and: 

  apt-get update; apt-get -y install qemu 

download your OpenBSD iso and do this:

qemu-system-x86_64 -nographic -curses -smp 4  -m 2G  -drive
file=/dev/sda,cache=none,if=virtio  -boot d -cdrom $THEISO

(assuming /dev/sda is your drive)



Re: DigitalOcean and OpenBSD

2016-08-25 Thread R0me0 ***
http://www.elnur.pro/digitalocean-droplet-corruption



2016-08-25 11:18 GMT-03:00 ds :

> On Wed, 24 Aug 2016 10:40:38 -0300
> "R0me0 ***"  wrote:
>
> > Hello everybody !
> >
> > Please,
> >
> > Anyone  already had a disk corruption running OpenBSD @ DigitalOcean
> > with disk encryption ?
> >
> > I had this issue for the third time running OpenBSD 5.9 stable branch
> > and a simple "reboot" == No O/S
> >
> >
> > Thanks in advance,
> >
>
> if you're installing OpenBSD on a random VPS, i usually do this: boot
> up their ubuntu linux rescue image, and:
>
>   apt-get update; apt-get -y install qemu
>
> download your OpenBSD iso and do this:
>
> qemu-system-x86_64 -nographic -curses -smp 4  -m 2G  -drive
> file=/dev/sda,cache=none,if=virtio  -boot d -cdrom $THEISO
>
> (assuming /dev/sda is your drive)



Re: DigitalOcean and OpenBSD

2016-08-25 Thread R0me0 ***
Work, BUT

I have experienced at least 3 droplet corruptions in 3 different locations
 in less than 1 month.

I know OpenBSD isn't officially supported by DigitalOcean.

At this moment I have several thoughts.

The droplet keep running but if you intend to reboot, and have an encrypted
OpenBSD installtion consider to have a freesh backup before reboot

LoL

:)

 That's my point

2016-08-25 11:35 GMT-03:00 ds :

> On Thu, 25 Aug 2016 11:28:19 -0300
> "R0me0 ***"  wrote:
>
> > http://www.elnur.pro/digitalocean-droplet-corruption
> >
>
> so what's your point? that openbsd doesn't work on DI?



Restricted shell and ssh problem

2016-08-25 Thread jean-yves boisiaud
Hello,

I am running openbsd 5.7 and openssh 6.8.

I set a restricted shell (rksh) to run only ssh. It works.

In the restricted shell command directory, I added also links to command
ssh-agent and ssh-add.

But, SSH_AUTH_SOCK is not set (and /tmp/ssh- does not exist), so I must
use password authentication.

How could I use agent authentication with ssh when I am in a restricted
shell ?

​Thanks for your help.​

--
Jean-Yves Boisiaud - Alcor Consulting
24, rue de la Glycine
49250 Saint Remy la Varenne
mobile : +33 6 63 71 73 46  fixe : +33 9 72 41 19 35



Re: Restricted shell and ssh problem

2016-08-25 Thread jean-yves boisiaud
found the probleM.

I Forgot to set ForwardAgent in the 1st ssh command.

Sorry.

2016-08-25 18:45 GMT+02:00 jean-yves boisiaud <
jean-yves.boisi...@alcor-consulting.fr>:

> Hello,
>
> I am running openbsd 5.7 and openssh 6.8.
>
> I set a restricted shell (rksh) to run only ssh. It works.
>
> In the restricted shell command directory, I added also links to command
> ssh-agent and ssh-add.
>
> But, SSH_AUTH_SOCK is not set (and /tmp/ssh- does not exist), so I
> must use password authentication.
>
> How could I use agent authentication with ssh when I am in a restricted
> shell ?
>
> ​Thanks for your help.​
>
> --
> Jean-Yves Boisiaud - Alcor Consulting
> 24, rue de la Glycine
> 49250 Saint Remy la Varenne
> mobile : +33 6 63 71 73 46  fixe : +33 9 72 41 19 35
>



--
Jean-Yves Boisiaud - Alcor Consulting
24, rue de la Glycine
49250 Saint Remy la Varenne
mobile : +33 6 63 71 73 46  fixe : +33 9 72 41 19 35



Re: Restricted shell and ssh problem

2016-08-25 Thread Stefan Johnson
I don't know for sure, but my best guess is that you need to look at using
a profile to set ENV to include an appropriate TMPDIR (if necessary) as
well as to kick off the ssh-agent process.

>From the man page for rksh/ksh:

*-r* Restricted shell. A shell is “restricted” if this option is used; if
the basename the shell was invoked with was “rksh”; or if the SHELL
parameter is set to “rksh”. The following restrictions come into effect
after the shell processes any profile and ENV files:

   - The *cd* command is disabled.
   - The SHELL, ENV, and PATH parameters cannot be changed.
   - Command names can't be specified with absolute or relative paths.
   - The *-p* option of the built-in command *command* can't be used.
   - Redirections that create files can't be used (i.e. ‘>’, ‘>|’,
‘>>’, ‘<>
   ’).

And from the man page for ssh-agent:
FILES *$TMPDIR/ssh-XX/agent.* UNIX-domain sockets used to
contain the connection to the authentication agent. These sockets should
only be readable by the owner. The sockets should get automatically removed
when the agent exits.

Hope this helped.



Re: DigitalOcean and OpenBSD

2016-08-25 Thread Daniel Gillen
On 25.08.2016 14:46, Kamil Cholewiński wrote:
> On Thu, 25 Aug 2016, Gilles Chehade  wrote:
>> There are other alternatives with better hardware, services and policies
>> within the same price ranges. online.net to name one, hetzner.de to name
>> another one.
> 
> Hetzner customer here. Hetzner doesn't support OpenBSD natively. The
> only instructions I could find are kind of dated, in German, seem to
> apply only to dedicated servers (as opposed to VMs), and overall look
> like a giant hack. Anyone had luck getting things running recently?
> 
> <3,K.
> 

Yepp, I do have a dedicated Hetzner server running OpenBSD.

Linux rescue console + qemu is the way to get it installed and going.

-- 
Unix _IS_ user friendly - it's just
selective about who its friends are!



Re: DigitalOcean and OpenBSD

2016-08-25 Thread Daniel Winters
Hi,

> Hetzner customer here. Hetzner doesn't support OpenBSD natively. The
> only instructions I could find are kind of dated, in German, seem to
> apply only to dedicated servers (as opposed to VMs), and overall look
> like a giant hack. Anyone had luck getting things running recently?

I have a VM at Hetzner running amd64 current flawlessly as my mail/web
server since 2013 on what Hetzner calls a VQ7 vServer. I dd'ed a basic
OpenBSD file system image on the disc via the Debian rescue system,
worked like a charm.

I recently got a new CX10 VM as well, but current will hang after a few
minutes, this seems to be related to virtio disc(?) drivers that are
used in the newer VMs. FreeBSD runs flawlessly on this and I did not
have time to investigate this yet.

So long story cut short, Hetzner is a good choice for hosting, but their
current VM offerings seem to be incompatible with OpenBSD amd64 current
+ 5.9, this can probably be fixed though.


Attached is the FreeBSD dmesg for CX10, I have not got an OpenBSD dmesg
at hand

Copyright (c) 1992-2016 The FreeBSD Project.
Copyright (c) 1979, 1980, 1983, 1986, 1988, 1989, 1991, 1992, 1993, 1994
The Regents of the University of California. All rights reserved.
FreeBSD is a registered trademark of The FreeBSD Foundation.
FreeBSD 10.3-RELEASE-p7 #0: Thu Aug 11 18:38:15 UTC 2016
r...@amd64-builder.daemonology.net:/usr/obj/usr/src/sys/GENERIC amd64
FreeBSD clang version 3.4.1 (tags/RELEASE_34/dot1-final 208032) 20140512
CPU: Intel(R) Xeon(R) CPU E5-26xx (Sandy Bridge) (2099.99-MHz K8-class CPU)
  Origin="GenuineIntel"  Id=0x206a1  Family=0x6  Model=0x2a  Stepping=1
  
Features=0x783fbff
  
Features2=0x9fb82203
  AMD Features=0x28100800
  AMD Features2=0x1
  XSAVE Features=0x1
Hypervisor: Origin = "KVMKVMKVM"
real memory  = 1073741824 (1024 MB)
avail memory = 1009946624 (963 MB)
Event timer "LAPIC" quality 600
ACPI APIC Table: 
random:  initialized
ioapic0  irqs 0-23 on motherboard
kbd1 at kbdmux0
acpi0:  on motherboard
acpi0: Power Button (fixed)
cpu0:  on acpi0
atrtc0:  port 0x70-0x71,0x72-0x77 irq 8 on acpi0
Event timer "RTC" frequency 32768 Hz quality 0
hpet0:  iomem 0xfed0-0xfed003ff on acpi0
Timecounter "HPET" frequency 1 Hz quality 950
Timecounter "ACPI-fast" frequency 3579545 Hz quality 900
acpi_timer0: <24-bit timer at 3.579545MHz> port 0x608-0x60b on acpi0
pcib0:  port 0xcf8-0xcff on acpi0
pci0:  on pcib0
isab0:  at device 1.0 on pci0
isa0:  on isab0
atapci0:  port 
0x1f0-0x1f7,0x3f6,0x170-0x177,0x376,0xc180-0xc18f at device 1.1 on pci0
ata0:  at channel 0 on atapci0
ata1:  at channel 1 on atapci0
uhci0:  port 0xc140-0xc15f irq 11 at 
device 1.2 on pci0
usbus0 on uhci0
pci0:  at device 1.3 (no driver attached)
vgapci0:  mem 
0xfd00-0xfdff,0xfebd-0xfebd0fff at device 2.0 on pci0
vgapci0: Boot video device
re0:  port 0xc000-0xc0ff mem 0xfebd1000-0xfebd10ff 
irq 11 at device 3.0 on pci0
re0: Chip rev. 0x7480
re0: MAC rev. 0x
miibus0:  on re0
rlphy0:  PHY 0 on miibus0
rlphy0:  10baseT, 10baseT-FDX, 100baseTX, 100baseTX-FDX, auto, auto-flow
re0: Using defaults for TSO: 65518/35/2048
re0: Ethernet address: 52:54:a2:01:50:df
virtio_pci0:  port 0xc100-0xc13f mem 
0xfebd2000-0xfebd2fff irq 11 at device 4.0 on pci0
vtscsi0:  on virtio_pci0
virtio_pci1:  port 0xc160-0xc17f irq 10 at device 
5.0 on pci0
vtballoon0:  on virtio_pci1
atkbdc0:  port 0x60,0x64 irq 1 on acpi0
atkbd0:  irq 1 on atkbdc0
kbd0 at atkbd0
atkbd0: [GIANT-LOCKED]
psm0:  irq 12 on atkbdc0
psm0: [GIANT-LOCKED]
psm0: model IntelliMouse Explorer, device ID 4
fdc0:  port 0x3f2-0x3f5,0x3f7 irq 6 drq 2 on acpi0
fdc0: does not respond
device_attach: fdc0 attach returned 6
uart0: <16550 or compatible> port 0x3f8-0x3ff irq 4 flags 0x10 on acpi0
orm0:  at iomem 0xec800-0xe on isa0
sc0:  at flags 0x100 on isa0
sc0: VGA <16 virtual consoles, flags=0x300>
vga0:  at port 0x3c0-0x3df iomem 0xa-0xb on isa0
attimer0:  at port 0x40 on isa0
Timecounter "i8254" frequency 1193182 Hz quality 0
Event timer "i8254" frequency 1193182 Hz quality 100
fdc0: No FDOUT register!
ppc0: cannot reserve I/O port range
Timecounters tick every 1.000 msec
usbus0: 12Mbps Full Speed USB v1.0
ugen0.1:  at usbus0
uhub0:  on usbus0
cd0 at ata1 bus 0 scbus1 target 0 lun 0
cd0:  Removable CD-ROM SCSI device
cd0: Serial Number QM3
cd0: 16.700MB/s transfers (WDMA2, ATAPI 12bytes, PIO 65534bytes)
cd0: Attempt to query device size failed: NOT READY, Medium not present
da0 at vtscsi0 bus 0 scbus2 target 0 lun 0
da0:  Fixed Direct Access SPC-3 SCSI device
da0: 300.000MB/s transfers
da0: Command Queueing enabled
da0: 24414MB (4872 512 byte sectors)
random: unblocking device.
Timecounter "TSC" frequency 2099989233 Hz quality 800
Root mount waiting for: usbus0
uhub0: 2 ports with 2 removable, self powered
Root mount waiting for: usbus0
ugen0.2:  at usbus0
Trying to mount root from ufs:/dev/da0p2 [rw]...
re0: link state changed to UP
uhid0:  on usbus0



Re: DigitalOcean and OpenBSD

2016-08-25 Thread Uwe Werler
On 25. Aug 12:02:37, Daniel Winters wrote:
> Hi,
> 
> > Hetzner customer here. Hetzner doesn't support OpenBSD natively. The
> > only instructions I could find are kind of dated, in German, seem to
> > apply only to dedicated servers (as opposed to VMs), and overall look
> > like a giant hack. Anyone had luck getting things running recently?
> 
> I have a VM at Hetzner running amd64 current flawlessly as my mail/web
> server since 2013 on what Hetzner calls a VQ7 vServer. I dd'ed a basic
> OpenBSD file system image on the disc via the Debian rescue system,
> worked like a charm.
> 
> I recently got a new CX10 VM as well, but current will hang after a few
> minutes, this seems to be related to virtio disc(?) drivers that are
> used in the newer VMs. FreeBSD runs flawlessly on this and I did not
> have time to investigate this yet.
> 
> So long story cut short, Hetzner is a good choice for hosting, but their
> current VM offerings seem to be incompatible with OpenBSD amd64 current
> + 5.9, this can probably be fixed though.

I have also several VM running at Hetzner. Now they offer a rescue boot with
OpenBSD 5.9 too. It's quite easy to install a new machine now. And a very plus
it their support.



Re: DigitalOcean and OpenBSD

2016-08-25 Thread Kamil Cholewiński
On Thu, 25 Aug 2016, Uwe Werler  wrote:
> Now they offer a rescue boot with OpenBSD 5.9 too. It's quite easy to
> install a new machine now. And a very plus it their support.

Wow, this is good news and very, very cool.

(For those who, like me, are a bit lost: it's not in the "Rescue" tab,
 but in "vServer" -> "Settings" -> "Mount CD/DVD image".)



Re: Installer overwrites partition table

2016-08-25 Thread Stuart Henderson
On 2016-08-24, Bertram Scharpf  wrote:
> The installers partitioning tool didn't offer me a variant
> that keeps my existing partitions.

If you wanted to try it again, when it asks "Use (W)hole disk or
(E)dit the MBR?", choose E.

It doesn't exactly hold your hand every step of the way, but
what could be clearer than "Use whole disk"?



Re: DPB can't do it's job in 6.0

2016-08-25 Thread Noth

On 25/08/16 14:39, Marc Espie wrote:

On Fri, Aug 19, 2016 at 08:06:09PM +0200, Noth wrote:

Hi misc@


   I'm a bit disappointed with dpb in 6.0, I haven't tried the chrooting
stuff but was hoping it could still work as before. All I can get it to do
now is start downloading src tarballs, and more often than not fail at that
(manual make -j5 package will build anything). It can barely build anything,
much less x11/gnome. I'd love to know what I can to do rectify this...

That's shitty reporting.  Exactly zero useful info in there.

I'm impressed that my fellow developers did spend some time figuring
out all the stuff you didn't by yourself.

Thanks for wasting their time that they could have used to do something
useful instead.
I apologize for wasting your time but surely it should be indicated 
somewhere that some directories now need owning by _pfetch or _pbuild, 
or better they should have proper ownership when dpb is run as root (a 
check made on startup maybe?). I should have looked at the various logs 
beforehand I agree. I'll do better next time...


Yours sincerely,

Noth



Re: DPB can't do it's job in 6.0

2016-08-25 Thread trondd
On Thu, August 25, 2016 6:47 pm, Noth wrote:
>
> I apologize for wasting your time but surely it should be indicated
> somewhere that some directories now need owning by _pfetch or _pbuild,
> or better they should have proper ownership when dpb is run as root (a
> check made on startup maybe?). I should have looked at the various logs
> beforehand I agree. I'll do better next time...
>
> Yours sincerely,
>
> Noth
>

It's in the dpb man page under "The Security Model of DPB".

Tim.



Re: xpdf crashes when going fullscreen

2016-08-25 Thread Alessandro DE LAURENZIS
Hello David,

On Wed, 24 Aug 2016 10:22:26 +0200
David Coppa  wrote:
[...]
> Next time, try harder. Google is your friend ;)
> 
> Five minutes of googling lead me to this:
> 
> https://bugs.launchpad.net/ubuntu/+source/ddd/+bug/1354961
> 
> Can you please try the x11/motif diff below and report back?

sorry for delay; yes, I confirm that this patch solves the issue.

Cheers

-- 
Alessandro DE LAURENZIS
[mailto:jus...@atlantide.t28.net]
LinkedIn: http://it.linkedin.com/in/delaurenzis



DMARC and misc@ (and likely other OpenBSD lists)

2016-08-25 Thread Peter N. M. Hansteen
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA256

Lazy git that I am I only quite recently configured DMARC for
bsdly.net, and it actually had at least some of the desired effect:
that domain's mail traffic started coming through to Google-hosted
domains, and whenever somebody makes a new contribution to the
spamtraps collection[1], I get reports from DMARC-reporting domains as
well as the usual traces in the greylist.

The only downside is, the traditional forwarding that mailing lists do
*also* triggers the DMARC dark magic, and there is a significant risk
that messages sent with senders in DMARC domains via the mailing list
to recipients with a somewhat DMARC-aware setup will be discarded.

However, the solution or workaround is to set up the mailing list for
the DMARC magic to do some benign rewriting of headers - the message
at [2] describes how the FreeBSD list admins solved the problem for
their lists.

If the OpenBSD list admins are reading this: would it be possible to
make a similar change in the OpenBSD mailing list configuration?

All the best,
Peter

[1] http://www.bsdly.net/~peter/traplist.shtml, also
http://bsdly.blogspot.com/2007/07/hey-spammer-heres-list-for-you.html
[2]
https://lists.freebsd.org/pipermail/freebsd-announce/2014-May/001550.htm
l
- -- 
Peter N. M. Hansteen, member of the first RFC 1149 implementation team
http://bsdly.blogspot.com/ http://www.bsdly.net/ http://www.nuug.no/
"Remember to set the evil bit on all malicious network traffic"
delilah spamd[29949]: 85.152.224.147: disconnected after 42673 seconds.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=ueX6
-END PGP SIGNATURE-



route outside subnet

2016-08-25 Thread ds
i'm trying to do the following:

i have a /64 ipv6 address block. the gateway is on a /56. so i can't
reach the gateway by default. how can i tell route to reach the gateway?



Re: route outside subnet

2016-08-25 Thread ds
i've tried the following: route add -inet6 x/64 $thegateway
but that fails because i can't reach the gateway (i'm not on
the /56)



Re: route outside subnet

2016-08-25 Thread Ted Unangst
ds wrote:
> i'm trying to do the following:
> 
> i have a /64 ipv6 address block. the gateway is on a /56. so i can't
> reach the gateway by default. how can i tell route to reach the gateway?

route add 'gateway-addr' -iface 'local-addr'

I think.