[leaf-user] WPA Supplicant and Free Radius

2006-02-24 Thread Roger E McClurg
It seems a lot of people are using wireless on their LEAF boxes. The best way I know to secure wireless is to use WPA. There are a lot of flavors of WPA. but all require a WPA aware Radius. To my knowledge Cistron Radius (the one currently in LEAF) does not support WPA, but Free Radius does.

[leaf-user] Re: leaf-user digest, Vol 1 #2798 - 2 msgs

2005-10-17 Thread Roger E McClurg
Ron, Here is where it is going wrong. Then syslinux -s /dev/hda1. Don't syslinux the partition. You want to do this: syslinux -s /dev/hda. Best Regards, Roger McClurg leaf-user-request @lists.sourceforge.net Sent by: leaf-user-admin 10/16/2005 11:25 PM Please respond to leaf-user

[leaf-user] Sensor Monitoring

2004-12-16 Thread Roger E McClurg
Is there a sensor monitoring package for Bering 1.2 or uClib 2.2.2 similar to LM_Sensors? I noted that on the latest Webconf there is a temperature bar. Does anyone know how we get info to it? I'd really love to be able to track the temperature and fan speed information that is reported by my

Re: [leaf-user] lcd4linux problem

2004-11-30 Thread Roger E McClurg
the following error: Starting LCD4linux:grsec: denied use of ioperm() by (lcd4linux:9573) UID(0) EUID(0), parent (lcd4linux:21905) UID(0) EUID(0) Do you have any idea what is wrong? Roger Martin Hejl martin @hejl.de 11/30/2004 02:01 AM To: Roger E McClurg/CEG/[EMAIL PROTECTED

[leaf-user] lcd4linux problem

2004-11-29 Thread Roger E McClurg
Hello List, I'm trying to use the lcd4linux package in Bering uClibc 2.2.2. The package loads fine, but when I try to start the daemon I get an error unable to start /usr/sbin/lcd4linux: No such file or directory. I checked /usr/sbin and the file (dated Oct 17) is there. The file permissions

[leaf-user] Bering uClibc and GRUB

2004-11-22 Thread Roger E McClurg
Hi List, I have been running Bering 1.2 from CF using GRUB as a boot loader for a while now. I decided to try Bering uClibc 2.2 on the same system. I tried to use the same GRUB configuration for uClibc as I did for 1.2, but that did not work. Bering never loaded the RAM drive. I noticed a

[leaf-user] Bering uClibc and GRUB

2004-11-22 Thread Roger E McClurg
Hi List, Sorry I bothered you. I finally saw the error and fixed it. uClibC now boots properly. Best Regards, Roger McClurg [EMAIL PROTECTED] --- SF email is sponsored by - The IT Product Guide Read honest candid reviews on hundreds of

[leaf-user] CF DOM errors

2004-11-22 Thread Roger E McClurg
I have a test machine that has a CF. I can boot from the CF, and access it normally, but it gets the following errors: {DriveReady SeekComplete Error} {DriveStatus Error} I have tried a number of different CF brands, but all have the same result. Does anyone have an idea what the problem is?

[leaf-user] Re: leaf-user digest, Vol 1 #2406 - 5 msgs

2004-09-02 Thread Roger E McClurg
Is the firewall blocking rfc1918? Wait a minute, isn't there something somewhere that blocks ALL rfc1918 addresses in Shorewall? That norfc switch in shorewalls, erm, one of the shorewall files? I know that NTL uses many rfc1918 networks, so would shorewall block packets from a DHCP server with

RE: [leaf-user] Traffic Shaping

2004-09-02 Thread Roger E McClurg
Neave JNeave @spursolutions.com 09/02/2004 09:31 AM To: Roger E McClurg/CEG/[EMAIL PROTECTED], [EMAIL PROTECTED] cc: Subject:RE: [leaf-user] Traffic Shaping Hi, Yes, there are lots of modules that you need to load. They are in Your modules/kernel/net/sched

[leaf-user] TC for Bering 1.2

2004-08-25 Thread Roger E McClurg
Hi All, I was looking to do traffic shaping on Bering 1.2 using tc and Wonder Shaper. I'd like to use the htb version. Does anyone know if the tc.lrp package for Bering in the shorewall packages list is patched for htb? If not, does anyone know where I can get one for Bering 1.2? Thanks Roger

Re: [leaf-user] uClibC 2.2.0b4 Problem

2004-06-30 Thread Roger E McClurg
The problem is, syslinux seems to read the first part of the syslinux.cfg file which is to tell it to display syslinux.dpy, then default and kernel linux however it doesn't read the rest... ie it doesn't load initrd.lrp, it will then proceed to boot the kernel at which point the kernel will

Re: [leaf-user] USB Keyboard

2004-05-19 Thread Roger E McClurg
To: [EMAIL PROTECTED] From: Roger E McClurg [EMAIL PROTECTED] Date: Mon, 17 May 2004 16:13:15 -0400 ? Subject: [leaf-user] USB Keyboard Has anyone managed to get a USB keyboard to work with a Bering 1.2 machine? I can't seem to find the correct drivers. Roger This response is not Bering

[leaf-user] Shorewall 2.0.2a

2004-05-17 Thread Roger E McClurg
Tom, Is the Shorewall 2.0.2a.lrp package compatible with iptables version 1.2.8 found in Bering 1.2. If the answer is yes, is there anything I should look out for in upgrading (aside from the upgrade issues on the Shorewall web site)? Best Regards, Roger McClurg [EMAIL PROTECTED]

[leaf-user] USB Keyboard

2004-05-17 Thread Roger E McClurg
Has anyone managed to get a USB keyboard to work with a Bering 1.2 machine? I can't seem to find the correct drivers. Roger --- This SF.Net email is sponsored by: SourceForge.net Broadband Sign-up now for SourceForge Broadband and get the

[leaf-user] USB Wireless on Bering

2004-05-04 Thread Roger E McClurg
Has anyone tried using a USB wireless card with Bering 1.2? I've got a Linksys WUSB11 v2.6. It uses the AT76C5XX ATMEL drivers. If anyone has compiled these drivers for Bering I'd appreciate hearing from you. Roger --- This SF.Net email is

Re: [leaf-user] Bering 1.2 Throughput Test Results

2004-04-15 Thread Roger E McClurg
To: Roger E McClurg/CEG/[EMAIL PROTECTED] cc: [EMAIL PROTECTED] Subject:Re: [leaf-user] Bering 1.2 Throughput Test Results Roger E McClurg wrote: snip The next test was to FTP from the PC connected to the OpenBrick E to the PC connected to a 500 Mhz P III running

[leaf-user] Thanks

2004-04-15 Thread Roger E McClurg
Charles, I never got around to thanking you for your help over the years, and for your contribution to LEAF. I cut my teeth on Dachstein and Eigerstein. I used them on a quite a few different platforms, and I learned a lot along the way. I appreciate everything you have done, and thought it

Re: [leaf-user] Bering 1.2 Throughput Test Results

2004-04-14 Thread Roger E McClurg
Charles, I'd love to run the tests. Where can I find the ipsec_aes.o module for Bering 1.2? Roger Charles Steinkuehler charles @steinkuehler.net 04/13/2004 04:13 PM To: Roger E McClurg/CEG/[EMAIL PROTECTED] cc: [EMAIL PROTECTED] Subject:Re: [leaf

Re: [leaf-user] Bering 1.2 Throughput Test Results

2004-04-14 Thread Roger E McClurg
/2004 04:13 PM To: Roger E McClurg/CEG/[EMAIL PROTECTED] cc: [EMAIL PROTECTED] Subject:Re: [leaf-user] Bering 1.2 Throughput Test Results Roger E McClurg wrote: snip The next test was to FTP from the PC connected to the OpenBrick E to the PC connected

RE: [leaf-user] Bering 1.2 Throughput Test Results

2004-04-14 Thread Roger E McClurg
: initiating Quick Mode PSK+ENCRYPT+TUNNEL+PFS+DISABLEARRIVALCHECK 117 troy #153: STATE_QUICK_I1: initiate 002 troy #153: sent QI2, IPsec SA established 004 troy #153: STATE_QUICK_I2: sent QI2, IPsec SA established -Original Message- From: Roger E McClurg [mailto:[EMAIL PROTECTED] Sent: Wednesday

[leaf-user] Bering 1.2 Throughput Test Results

2004-04-13 Thread Roger E McClurg
I thought the group might be interested in the results of some throughput testing we conducted recently. The purpose of the tests was to determine the relative performance of the OpenBrick E platform as a Bering 1.2 VPN/router. The results were very interesting. The test process was to FTP a

Re: [leaf-user] Open Brick E

2004-04-08 Thread Roger E McClurg
] To: [EMAIL PROTECTED] Subject: Re: [leaf-user] Open Brick E On Wed, Apr 07, 2004 at 07:47:43PM -0400, Roger E McClurg wrote: Hi Roger, Is anyone running LEAF on the OpenBrick E hardware with compact flash? If so, can you please tell me what brand you are using? Lexar seems to be the best. We do use

[leaf-user] SCP

2004-04-07 Thread Roger E McClurg
I'm using Bering 1.2 with SSH (OpenSSH_3.5p1,) and SSHD. Problem is that SCP is missing. Does anyone know what happened to SCP in the SSH package? Roger --- This SF.Net email is sponsored by: IBM Linux Tutorials Free Linux tutorial

Re: [leaf-user] SCP

2004-04-07 Thread Roger E McClurg
Erich, I found the answer. It is not in sshd 3.5p1 but it is in sshd 3.7.1p2. Thanks for the help. Roger Erich Titl erich.titl @think.ch 04/07/2004 10:41 AM To: Roger E McClurg/CEG/[EMAIL PROTECTED], [EMAIL PROTECTED] cc: Subject:Re: [leaf-user] SCP

[leaf-user] HDPARM

2004-04-07 Thread Roger E McClurg
I created an hdparm.lrp package for Bering 1.2. It uses the 5.2 version of hdparm from RedHat 9.0. The package includes a script called spindown. Spindown will automatically put the HD into standby mode (hdparm -y) at the end of the boot process. I can send it to anyone interested, but if the

[leaf-user] Open Brick E

2004-04-07 Thread Roger E McClurg
Is anyone running LEAF on the OpenBrick E hardware with compact flash? If so, can you please tell me what brand you are using? Roger --- This SF.Net email is sponsored by: IBM Linux Tutorials Free Linux tutorial presented by Daniel Robbins,

[leaf-user] Re: leaf-user digest, Vol 1 #2225 - 7 msgs

2004-04-02 Thread Roger E McClurg
Date: Thu, 1 Apr 2004 17:33:47 +0700 From: Thitiporn Pornpirunrak [EMAIL PROTECTED] To: LeafUser [EMAIL PROTECTED] Subject: [leaf-user] How To Mount USB Flash Drive on Bering Stable 1.0?? Hi.. all I am wondering that how to mount usb drive on bering box.. I have an usb drive and would like

[leaf-user] Bering on CF

2004-04-01 Thread Roger E McClurg
Hi All, I know there was a lot of activity around Bering on Compact Flash a while back. Did anyone document the process? I can't seem to get syslinux to work on mine. Thanks, Roger --- This SF.Net email is sponsored by: IBM Linux Tutorials

Re: [leaf-user] Sending mail from a script

2004-03-24 Thread Roger E McClurg
@steinkuehler.net 03/22/2004 05:01 PM To: Roger E McClurg/CEG/[EMAIL PROTECTED] cc: leaf [EMAIL PROTECTED] Subject:Re: [leaf-user] Sending mail from a script Roger E McClurg wrote: I know that mail messages are normally terminated with a control-d. Can

[leaf-user] Sending mail from a script

2004-03-22 Thread Roger E McClurg
I know that mail messages are normally terminated with a control-d. Can someone please tell me how to end a mail message when it is sent from a script file in Bering? I know it is a simple trick, but for the life of me I cant remember it. Roger

[leaf-user] LMSENSORS

2004-03-22 Thread Roger E McClurg
Does anyone know of a lmsensors package for Bering? Roger --- This SF.Net email is sponsored by: IBM Linux Tutorials Free Linux tutorial presented by Daniel Robbins, President and CEO of GenToo technologies. Learn everything from

[leaf-user] APKG

2004-03-15 Thread Roger E McClurg
Does anyone know what ever happened to apkg? It is a replacement for lrpkg that has a lot of very nice features including being able to remove a package from a running system. The last version of apkg I know of is dated 10/2000 and it ran under Dachstein. Best Regards, Roger McClurg [EMAIL

Re: [leaf-user] USB Pen Drive

2004-03-10 Thread Roger E McClurg
Eric, You were right! I installed sd-mod and everything worked. Thanks for the help. Best Regards, Roger Erich Titl erich.titl @think.ch 03/09/2004 12:23 PM To: Roger E McClurg/CEG/[EMAIL PROTECTED], [EMAIL PROTECTED] cc: Subject:Re: [leaf-user

[leaf-user] USB Pen Drive

2004-03-09 Thread Roger E McClurg
Greetings All, I've been trying to configure a Bering 1.2 system to accept my Lexar Jumpdrive (USB pen drive). I loaded the USB modules as well as scsi-mod. I tested with both usb-ohci and usb-uhci. Usb-uhci seems to work. I mounted /proc/bus/usb and the devices file shows the Lexar

[leaf-user] LEAF DNAT Problem

2004-02-26 Thread Roger E McClurg
Hi All, I've been trying to debug a problem with DNAT on the a Bering 1.2 VPN/Firewall. I originally tried this with H323, but as few people have any experience with H323, I tried FTP as both use ip_conntrack modules. Getting the same results with both of them, I then tried HTTP which does

Re: [leaf-user] LEAF DNAT Problem

2004-02-26 Thread Roger E McClurg
expressly permitting the use of e-mail for such purpose. Tom Eastep teastep @shorewall.net 02/26/2004 05:12 PM To: Roger E McClurg [EMAIL PROTECTED], [EMAIL PROTECTED] cc

[leaf-user] H.323 problem

2004-02-23 Thread Roger E McClurg
Hi All, I have a Bering 1.2 system that I trying to use with Netmeeting (H.323). I have the ip_conntrack_h323 and ip_nat_h323 modules loaded, and TCP port 1720 open in Shorewall from the internet to the local net. I try to connect to another PC on the same lan segment as my eth0, but no luck.

RE: [leaf-user] Bering lost it's NICs

2003-09-15 Thread Roger E McClurg
It happened to me again this weekend. This time on the new PC. Just as in Francois' case the default route changed. In my case it went from eth0 (connected to a cable modem) to ipsec0. There has to be some explanation for this behavior, and a way to keep it from happening. Best Regards,

RE: [leaf-user] Bering and MRTG [faked-from][sls]

2003-09-15 Thread Roger E McClurg
I use the netsnmp packages from Charles Steinkuehler's Dachstein CD. They work just fine under Bering 1.2. You can find the packages here: netsnmpd.lrp : http://leaf-project.org/devel/cstein/files/diskimages/dachstein-CD/CD-Contents/netsnmpd.lrp netsnmpu.lrp :

Re: [leaf-user] Bering and MRTG

2003-09-10 Thread Roger E McClurg
Stephen, MRTG and Bering 1.2 work great together. I monitor a number of Bering VPN/Routers with MRTG. It is simple. If you load both the netsnmpd (daemon)and netsnmpu (client) packages you can test your snmp at the Bering console. Snmpd.conf does not need much modification. Just make sure you

[leaf-user] More Bash Help

2003-07-09 Thread Roger E McClurg
While you are answering BASH questions Charles, do you think you can answer a couple more? Sorry Charles. No good deed goes unpunished ;-) A while back we came upon the idea of modifying the IPSEC updown script to add the internal IP address of the LEAF machine as the source in the IP route

[leaf-user] Strange happenings with Bering 1.2

2003-06-23 Thread Roger E McClurg
I've installed a number of Bering 1.2 systems all connected by Ipsec VPNs and they work fine. All including the strange one are quite similar. While migrating yet another system from Dachstein to Bering I've encountered a couple of strange things and wondered if anyone had any ideas what might

[leaf-user] Multiple VPNs in Bering 1.2

2003-06-09 Thread Roger E McClurg
My current firewall uses Dachstein 1.02 and acts as a central site VPN device. I have numerous VPNs using the ipsec0 interface. Each VPN has a fixed address and of course different subnets. I wish to replace the current firewall with Bering 1.2, but I am having problems configuring the VPNs

[leaf-user] OSPF

2003-04-01 Thread Roger E McClurg
OK people. Time for a dumb question. How do I do OSPF routing under Bering 1.1? Best Regards, Roger McClurg [EMAIL PROTECTED] --- This SF.net email is sponsored by: ValueWeb: Dedicated Hosting for just $79/mo with 500 GB of bandwidth! No

[leaf-user] Anyone using VIA?

2003-03-13 Thread Roger E McClurg
Hi All, I was just wondering how may of you are using or experimenting with the Open Brick-E or any of the new VIA Mini ITX mother boards/CPUs. I know that lots of people have benchmarked the 1Gig VIAs against a P4 (not much comparison there), but I was wondering if anyone has done any

Re: [leaf-user] Anyone using VIA?

2003-03-13 Thread Roger E McClurg
What version(s) of LEAF are you using? Best Regards, Roger McClurg [EMAIL PROTECTED] tmassey @obscorp.com 03/13/2003 12:36 AM To: Roger E McClurg/CEG/[EMAIL PROTECTED] cc: [EMAIL PROTECTED] Subject:Re: [leaf-user] Anyone using VIA? [EMAIL

[leaf-user] Dachstein 1.02 and PCMCIA

2003-01-20 Thread Roger E McClurg
I need to create a LEAF firewall using Dachstein 1.02 on a laptop with 2 PCMCIA NICs. Charles can you help me, or do you know who can? Is it possible to do this and boot from the CD without having to recompile the kernel? I'm running out of time, the machine has to be operational by Jan 31

Re: [leaf-user] Dachstein 1.02 and PCMCIA

2003-01-20 Thread Roger E McClurg
? Roger Todd Pearsall todd @pearsall.us 01/20/2003 03:55 PM To: Roger E McClurg/CEG/CSC@CSC cc: Subject:Re: [leaf-user] Dachstein 1.02 and PCMCIA I haven't done pcmcia with Dachstein, but I have with Bering. If you don't have to Dachstein, try Bering

[leaf-user] Dachstein PCMCIA

2003-01-17 Thread Roger E McClurg
I'm trying with little success to get PCMCIA NICs working with Dachstein. Does anyone know of a Dachstein pcmcia.lrp package? Roger --- This SF.NET email is sponsored by: Thawte.com - A 128-bit supercerts will allow you to extend the

[leaf-user] Netmeeting and IP Telephony behind Dachstein

2003-01-14 Thread Roger E McClurg
I have a user who would like to access Netmeeting and IP telephony services from his PC through a Dachstein 1.02 firewall. IP telephony works outbound but not inbound. That is, the far end can hear him, but he can't hear them. I suspect a UDP firewall rule might need changing (right now they

Re: [leaf-user] ipsec connect to this?

2002-11-08 Thread Roger E McClurg
Michael, I've have been running VPN tunnels between my Dachstein machines and Cisco's for some time. It is no problem. Yes you should use tunnel mode. Telling you otherwise only proves the person you are dealing with does not understand what he/she is saying. Here is an explanation I pulled down

[leaf-user] 1.68 Meg Floppy Image of CROM binary

2002-10-07 Thread Roger E McClurg
Charles, I've got an old PC running the 1.02 Dachstein CD. It can't boot from the CD so I use a floppy boot disk. Herein lies the problem. I am running IPSEC on this machine and am just barely fitting the backups on the floppy. I'd like to run a couple more applications on the PC but have no

[leaf-user] Re: 1.68 Meg Floppy Image of CROM binary

2002-10-07 Thread Roger E McClurg
SteinkuehlerTo: Roger E McClurg [EMAIL PROTECTED] charles cc: [EMAIL PROTECTED] @steinkuehler

[leaf-user] Multiple Processors

2002-10-07 Thread Roger E McClurg
Charles, Do you have any experience running Dachstein on a server with multiple processors? I just got handed one and would love to be able to use both processors to handle a large number of VPNs. With over 600 Meg of RAM it should really sing. Best Regards, Roger

Re: [leaf-user] Dachstein v1.03 CD?

2002-09-03 Thread Roger E McClurg
Charles, I would be happy to do what I can to help. Best Regards, Roger McClurg [EMAIL PROTECTED] Charles

[leaf-user] Dlink 570

2002-07-30 Thread Roger E McClurg
This is a bit off topic, but does anyone know where I can get a couple of Dlink 570TX NICs? Just when I need them, they stop making them. Best Regards, Roger McClurg [EMAIL PROTECTED] --- This sf.net email is sponsored by: Dice - The

[leaf-user] Weblet changes

2002-06-18 Thread Roger E McClurg
Sean, I updated a CGI script for Weblet and sent it to Charles. Charles made some changes to it, and was going to include it in the new CD. I'm sure he would be happy to send it to you. Best Regards, Roger McClurg [EMAIL PROTECTED]

[leaf-user] Unable to Route

2002-06-13 Thread Roger E McClurg
Charles, I'm hoping you have a quick answer on this one. I'm running DCD 1.02. I had the system up and running with two VPNs happily passing data, and then the thunderstorm came. Don't think it was the culprit, but on reboot etc.lrp was unreadable. Even though I keep telling people to back up

[leaf-user] Windows Network Browsing works!

2002-04-29 Thread Roger E McClurg
Charles, I thought I'd let you know that I got Windows Network Browsing (SMB) working. In the process I learned an incredible amount from the Samba docs (thanks for pointing me there). I spent quite a while sniffing the network and examining packets. The culprit seems to be the cisco router

RE:[Leaf-user] NT networking over LEAF IPSEC VPN

2002-04-22 Thread Roger E McClurg
] Brock Nanson bnanson To: [EMAIL PROTECTED] @true.bc.ca cc: Roger E McClurg/CEG