Re: accidentally overwritten wrong drive with DD, please help

2024-06-27 Thread Andy Bradford
Thus said Anon Loli on Thu, 27 Jun 2024 04:12:57 -: > No kidding? The 1st few people made it sound like it's going to be > relatively easy :( I don't think anyone said it was going to be easy, only that your primary focus should be simply to get a good copy of the raw unencrypted p

Re: accidentally overwritten wrong drive with DD, please help

2024-06-23 Thread Andy Bradford
Thus said Anon Loli on Sun, 23 Jun 2024 13:38:01 -: > On Sun, Jun 23, 2024 at 10:07:55AM -0300, Crystal Kolipe wrote: > > Seriously, forget it. > > What do you mean? What it means is that you are in disaster recovery mode and fancy commands are less likely to be successful than d

Re: mouse cursor no longer changes over hyperlinks in Firefox on OpenBSD 7.5

2024-06-12 Thread Andy Bradford
Thus said Stuart Henderson on Tue, 11 Jun 2024 21:41:00 -: > > widget.gtk.legacy-cursors.enabled to true > > That is the hack they added that is supposed to undo this change. > It doesn't do anything for me though. I noticed that it worked for me on one system and not another. Both syst

Re: mouse cursor no longer changes over hyperlinks in Firefox on OpenBSD 7.5

2024-06-10 Thread Andy Bradford
Thus said Hiltjo Posthuma on Tue, 11 Jun 2024 01:19:13 +0200: > iirc it can be worked around by setting in about:config: > > widget.gtk.legacy-cursors.enabled to true Madness! But it works. Thanks. Andy

mouse cursor no longer changes over hyperlinks in Firefox on OpenBSD 7.5

2024-06-10 Thread Andy Bradford
Hello, I'm not sure if this is expected behavior or not, but it seems that after upgrading to OpenBSD 7.5 the mouse cursor no longer changes from an arrow pointer to a hand when I hover over links in Firefox. It does work for some other programs though. Also, moving the mouse over other

Re: SSH Controlmaster holding devices

2024-02-05 Thread Andy Bradford
Thus said Courtney on Mon, 05 Feb 2024 12:55:20 -0800: > I wasn't aware that it would still be impacted when leaving the cwd. Your shell "left the cwd" but the SSH process did not. In other words, don't start processes from a mount point that you expect to be able to unmount later (or kill th

Re: Proper way to set PATH environment with SSH non-interactive command

2024-02-05 Thread Andy Bradford
Thus said "Andy Bradford" on 04 Feb 2024 08:39:27 -0700: > But is there a file that I can modify that will cause the shell proper > to load some kind of environment setup also for non-interactive shells > started with -c? [For the archives] As it turns out, given that

Re: Proper way to set PATH environment with SSH non-interactive command

2024-02-04 Thread Andy Bradford
Thus said "Allan Streib" on Sun, 04 Feb 2024 20:54:26 -0500: > Just send the full path to your script in the ssh command, and set up > the rest of the environment within the script. Yes, this too is an option. It may actually be the best option in my opinion. If the user knows that their bi

Re: Proper way to set PATH environment with SSH non-interactive command

2024-02-04 Thread Andy Bradford
Thus said Kastus Shchuka on Sun, 04 Feb 2024 13:40:58 -0800: > SetEnv Directly specify one or more environment variables and their > contents to be sent to the server. Thank you this option looks like it could also work, except it's not one of which a user with no permissions

Proper way to set PATH environment with SSH non-interactive command

2024-02-04 Thread Andy Bradford
Hello, When using SSH to invoke a remote command via the syntax: ssh remotehost remotecommand The $HOME/.profile is not used and there appears to be a very minimal environment setup. The PATH does not include any components that have been added in .profile. This is probably what step 5 in

Re: qcad does not segfault when qtscript is compiled with -O0.

2023-12-26 Thread Andy Bradford
Thus said Stuart Henderson on Tue, 26 Dec 2023 23:25:42 +: > This was already diagnosed and fixed in -current, see > https://marc.info/?l=openbsd-ports&m=170160684730438&w=2 Indeed it was. While I do follow ports@ I must not have noticed because I only recently discovered the association wit

qcad does not segfault when qtscript is compiled with -O0.

2023-12-26 Thread Andy Bradford
Hello, A little over a year ago I reported[1] that qcad started having segfaults in 7.0 (or 7.1). I thought I would try to debug it today in 7.4 and so enabled DEBUG_PACKAGES and DEBUG variables in the cad/qcad Makefile and also the x11/qt5/qtscript Makefile hoping to debug the

Re: Delay in starting xterm via ssh after upgrade from 7.3 to 7.4

2023-10-23 Thread Andy Bradford
Thus said Roger Marsh on Thu, 19 Oct 2023 17:23:47 -: > fixes the delay problem, but was the delay a predictable consequence > of some change? Or perhaps the entry should never have been expressed > in the way that led to the delay? Most likely the cause is an unexpected side effect of som

Re: SCRIPT_FILENAME not set to index file.

2023-08-19 Thread Andy Bradford
Thus said "Andy Bradford" on 19 Aug 2023 08:44:23 -0600: > location "/books/*" { > fastcgi socket "/run/tcl.sock" > directory { index "index.tcl" } > } Responding to self for the archives in

SCRIPT_FILENAME not set to index file.

2023-08-19 Thread Andy Bradford
Hello, I have the following configuration in httpd.conf: location "/books/*" { fastcgi socket "/run/tcl.sock" directory { index "index.tcl" } } When I put the URL into my browser https://localhost/books/ I get a 500 Internal Server Error. Looking

Re: IPsec "road warrior" VPN not getting set up properly.

2023-07-08 Thread Andy Bradford
Thus said Anthony Coulter on Thu, 06 Jul 2023 21:52:54 -0400: > I would also suggest comparing the "hackiness" of NDP proxying to the > hackiness of NAT, which is how we solve this same problem in IPv4. I realize I'm coming in late to this discussion, and may not actually have anything of val

qcad segfault on 7.1 amd64

2022-08-10 Thread Andy Bradford
Hello, I was running qcad without problems on 6.9 and decided to upgrade to 7.1. After upgrading from 6.9->7.0->7.1 qcad now segfaults. $ qcad QCAD version 3.24.3 Warning: RPropertyTypeId::generateId: property already initialized: 7RObject : "" : "Invisible" Segmentation fault Unfortun

Re: No xenocara for ATI Radeon HD 2400 XT

2020-08-11 Thread Andy Bradford
Thus said Jonathan Gray on Mon, 10 Aug 2020 23:54:54 +1000: > For now we could just skip reading a disabled bios on RV610. Thanks, that tweak seems to have gotten past the problem and now X will start: initializing kernel modesetting (RV610 0x1002:0x94C1 0x1028:0x0D02 0x00). radeondrm0: 1680x10

Re: No xenocara for ATI Radeon HD 2400 XT

2020-08-09 Thread Andy Bradford
Thus said Jonathan Gray on Sun, 09 Aug 2020 12:39:36 +1000: > When this came up previously running i386 resulted in being able to > read the atombios. Can you confirm that is the case here? Yes, this is the case. I installed OpenBSD 6.7 i386 to the same hardware and there is no error in dm

No xenocara for ATI Radeon HD 2400 XT

2020-08-08 Thread Andy Bradford
Hello, I put OpenBSD 6.7 on an older PC that used to run OpenBSD 6.3 and X just fine. xenodm refuses to start. Is there something I can do to make this work (edit sources in xenocara or kernel and recompile), or should I just email bugs@? The following is found in dmesg: initializing kernel

Re: radeondrm failure on amd64 but not on i386?

2018-12-19 Thread Andy Bradford
Thus said Daniel Dickman on Fri, 14 Dec 2018 20:45:11 -0500: > Try previous releases of OpenBSD/amd64 to check if radeondrm ever > worked for you on amd64. That was a fruitful suggestion. I tried 6.3 amd64 and it works. So somewhere after 6.3 a change was introduced that made this p

Re: radeondrm failure on amd64 but not on i386?

2018-12-14 Thread Andy Bradford
Thus said Allan Streib on Wed, 12 Dec 2018 14:09:06 -0500: > Stillhavingthis issueon-currentas ofDec10. > machdep.allowaperture=2 does get me past this, but am seeing > weird behavior, some regions of screens/terminals not painting or > refreshing. As fa

Re: radeondrm failure on amd64 but not on i386?

2018-11-28 Thread Andy Bradford
Thus said Allan Streib on Tue, 27 Nov 2018 15:51:57 -0500: > The issue was also reported here, with no follups but more debug info: > > https://marc.info/?l=openbsd-bugs&m=153398230416756&w=2 That seems to be an identical problem, but definitely with more debug info. In my system, the card i

Re: radeondrm failure on amd64 but not on i386?

2018-11-25 Thread Andy Bradford
Thus said Allan Streib on Sun, 25 Nov 2018 21:54:45 -0500: > Same issue, also on a Dell machine with ATI Radeon HD 2400 XT. After Jonathan suggested adding some printf debug statements, I continued to do so and was able to see that the rdev->bios variable that is being inspected at line

Re: radeondrm failure on amd64 but not on i386?

2018-11-19 Thread Andy Bradford
Thus said Jonathan Gray on Mon, 19 Nov 2018 20:42:46 +1100: > > Thanks for the suggestion. Here's the additional output provided by your > > patch: > > > > radeon_atrm_get_bios false > > radeon_acpi_vfct_bios false > > igp_read_bios_from_vram false > > radeon_read_bios false > > radeon_read_disab

Re: radeondrm failure on amd64 but not on i386?

2018-11-18 Thread Andy Bradford
Thus said Jonathan Gray on Sat, 17 Nov 2018 14:08:53 +1100: > There are many ways of getting an atom bios it would be helpfull to > know which method is having trouble. Thanks for the suggestion. Here's the additional output provided by your patch: radeon_atrm_get_bios false radeon_acpi_vfct_

radeondrm failure on amd64 but not on i386?

2018-11-16 Thread Andy Bradford
Hello, I recently installed OpenBSD 6.4 amd64 and radeondrm fails to load properly. I then installed OpenBSD 6.4 i386 on the same hardware (to a USB pendrive) and it works fine. Any ideas? dmesg for both follow: OpenBSD 6.4 (GENERIC.MP) #364: Thu Oct 11 13:30:23 MDT 2018 dera...@amd6

Watch out for bad options in /var/run/rc.d/$daemon

2017-01-03 Thread Andy Bradford
Hello, Since I couldn't find any reference to this anywhere, I thought I would put out a description of the problem in the event that someone else runs into it with other daemons. At one point in time, identd -l had a different meaning than it does now. After upgrading, I noticed that ident

Re: Making sense of ktrace

2016-11-23 Thread Andy Bradford
Thus said Jeff Ross on Wed, 23 Nov 2016 15:42:08 -0700: > The stack may indeed be too damaged--I get the following but it > doesn't look very helpful: More likely the symbols were stripped. Assuming this was installed from sources, edit conf-cc and add -g, then edit conf-ld and remove th

Re: How to handle different sections with new man.conf?

2016-07-06 Thread Andy Bradford
Thus said Ingo Schwarze on Fri, 01 Jul 2016 22:59:16 +0200: > >>> manpath /usr/local/lib/tcl/tcl8.5/man > >>> manpath /usr/local/lib/tcl/tcl8.6/man > > That's not necessarily a good idea; it adds both directories to the > default search path, so you may end up seeing Tcl documentation when >

How to handle different sections with new man.conf?

2016-06-25 Thread Andy Bradford
Hello, Using OpenBSD 5.8-stable. I used to have the following in /etc/man.conf: tcl85 /usr/local/lib/tcl/tcl8.5/man/ tcl86 /usr/local/lib/tcl/tcl8.6/man/ Which made it easy to view one or the other by using the section argument: man tcl85 Tcl man tcl86 Tcl man(1) s

Re: OT: Looking for email host with qmail like minus-addressing for custom domain

2016-03-03 Thread Andy Bradford
Thus said Gilles Chehade on Thu, 03 Mar 2016 22:48:57 +0100: > > I don't see this as necessarily an argument for or against - vs + > > > > too bad, it means my friend jean-pierre will not be able to be hosted > by you if you already host my other friend jean ;-) This is true, obviously. If on

Re: OT: Looking for email host with qmail like minus-addressing for custom domain

2016-03-03 Thread Andy Bradford
Thus said "Constantine A. Murenin" on Thu, 03 Mar 2016 15:09:46 -0600: > > The MTA will decide who will get foo-bar@. > > How? A /dev/mind RPC? :-) Because the MTA is configured to handle it? :-) > And what happens if a "conflicting" user gets created after a mail was > sent, but before it was d

Re: OT: Looking for email host with qmail like minus-addressing for custom domain

2016-03-03 Thread Andy Bradford
Thus said Gilles Chehade on Thu, 03 Mar 2016 10:14:48 +0100: > Who should get mail for foo-bar@ ? The MTA will decide who will get foo-bar@. > This just doesn't happen with + because: It also doesn't happen with an MTA that can figure these things out. I don't see this as necessarily an argume

Re: Industrial use of line printers, does/would your company/organization use them with our lpd?

2016-02-18 Thread Andy Bradford
Thus said Chris Cappuccio on Thu, 18 Feb 2016 17:09:38 -0800: > aren't there plenty of simple pre-processor scripts that people are > using with lp to turn whatever into some output for simple dumb > printers? CUPS is so annoying and stupid, it's not even funny Perhaps apsfilter? Andy

Re: Industrial use of line printers, does/would your company/organization use them with our lpd?

2016-02-17 Thread Andy Bradford
Thus said Tobias Ulmer on Wed, 17 Feb 2016 19:51:28 +0100: > No really, it is outdated beyond rescue. But it does work (at least in some configurations). To enable my PostScript printers, all I have to do is add a single line to /etc/printcap... well, maybe 2 lines. printer:\

Re: letsencrypt && https && openbsd.org = https://www.openbsd.org/

2015-12-12 Thread Andy Bradford
Thus said Tati Chevron on Fri, 11 Dec 2015 13:16:23 +: > On the other hand, if somebody actually received a fake OpenBSD CD in > the mail, and it was discovered, it would be a huge news story within > the IT industry. A bad download, much less so. My OpenBSD 5.7 CD arrived with a green l

Re: letsencrypt && https && openbsd.org = https://www.openbsd.org/

2015-12-10 Thread Andy Bradford
Thus said Jason Barbier on Tue, 08 Dec 2015 10:14:37 -0800: > It is a read only site, the privacy you seek is breached as soon as > you make a DNS call to openbsd.org Not to mention the Subject on the SSL certificate will most likely be www.openbsd.org, and perhaps there's also SNI,

Re: random.seed question

2015-11-26 Thread Andy Bradford
Thus said Paul de Weerd on Thu, 26 Nov 2015 15:54:11 +0100: > I'd recommend trying to keep such changes to a minimum: this will be > overwritten when you upgrade and it becomes a maintenance burden. Do files in /etc no longer undergo a round of sysmerge before being written? Thanks, Andy

Re: LPR/LPD does not run filters

2015-10-25 Thread Andy Bradford
Thus said Jona Joachim on Sun, 25 Oct 2015 15:11:01 +0100: > I was tired of CUPS so I decided keep it simple and stupid and use > lpd/lpr. Strangely, things don't work out as expected. It seems that > lpd never executes input filters. I have a system running standard lpd on OpenBSD 5.3 wh

Re: Maybe OT: OpenSSH connection failure unless verbose

2015-08-01 Thread Andy Bradford
Thus said Quartz on Sat, 01 Aug 2015 19:00:56 -0400: > good day: > "ssh user@server" = works just like it should What about "ssh -v user@server" on a good day? And more specifically, if you run ssh -v on both a good day and a bad day, what does diff between the two outputs show? Andy -- TAI64

Re: Audio Boost for Sndio

2015-07-11 Thread Andy Bradford
Thus said "tekk" on Sat, 11 Jul 2015 08:30:00 -0700: > > So e.g. "mixerctl -v inputs.dac-0:1=255" sets it to 174,174? > > > Exactly. inputs.dac-{0:1,2:3}=$value_above_174 simply sets it to 174. It would be more helpful if instead of describing the problem that you would just copy/paste the resu

Re: bypass xlock/slock

2015-03-09 Thread Andy Bradford
Thus said Alex Greif on Mon, 09 Mar 2015 10:25:28 +0100: > - run X session with startx Run: exec startx Instead. Andy -- TAI64 timestamp: 400054fdc9c3

Re: What's wrong with script(1)?

2015-01-27 Thread Andy Bradford
Thus said openda...@hushmail.com on Tue, 27 Jan 2015 23:03:35 +: > 1. Why does it use CRLF line endings? > > 2. What's with all the startup noise? man script: ``script makes a typescript of everything printed on your terminal.'' more can handle the output. less -r can also handle it. And

Re: CRYPT rounds vs. performance

2015-01-03 Thread Andy Bradford
Thus said "whoami toask" on Sat, 03 Jan 2015 17:18:04 -0500: > *- Does the rounds affect the disk performance, ex.: 1000 vs. 10 000 > 000**? OR it just ONLY affects the time until the password unlocks the > CRYPT device? Yes, unless I'm mistaken, it really only affects how long it takes to g

Re: DNS: how to verify glue NS records?

2014-12-07 Thread Andy Bradford
Thus said Alexei Malinin on Fri, 05 Dec 2014 15:49:59 +0300: > - the question is - how and with what tools (dig, host, nslookup, or > maybe C or Perl libs) can I verify the NS glue records in the parent > zone of my ISP (zone transfers are denied)? The entries in the ADDITIONAL SECTION below

Re: How to log in automatically to GUI?

2014-09-01 Thread Andy Bradford
Thus said Clint Pachl on Mon, 01 Sep 2014 05:24:02 -0700: > FYI: "$@" equals "-p -- USER" where USER is the username entered at > the login prompt. I never would have guessed that the -p option was > included. Yes, it does allow any USER to login without a password by just typing the user

Re: How to log in automatically to GUI?

2014-08-27 Thread Andy Bradford
Thus said Clint Pachl on Mon, 25 Aug 2014 16:36:26 -0700: > If someone knows how to do this properly via getty(8), I would be very > interested. I've used this successfully (not sure how proper it is): /etc/ttys: ttyC0 "/usr/libexec/getty console.nopw" vt220 on secure /etc/gettytab:

Re: ksh (vi mode): discard line after editing with fc?

2014-04-23 Thread Andy Bradford
Thus said Alessandro DE LAURENZIS on Tue, 22 Apr 2014 21:46:57 +0200: > I'm wondering how I could discard (not execute) a line after having > loaded it into vi (fc -e vi, or "v" for brevity in vi-mode). Delete the command like you would any other line in vi that you don't want saved anymore

Re: resolver question

2013-12-24 Thread Andy Bradford
Thus said "Peter J. Philipp" on Tue, 24 Dec 2013 17:33:10 +: > I was browsing http://chealth.canoe.ca when I saw the above log. I'm > supposing the resolver looks up chealth.canoe.ca, and then eventually > does a lookup for chealth.canoe.ca.centroid.eu. centroid.eu is the > domain I con

Re: Are there any default password managers in OpenBSD?

2013-12-07 Thread Andy Bradford
Thus said Christian Weisgerber on Sat, 07 Dec 2013 18:52:25 +: > Also, your editor may scatter additional cleartext copies around, for > instance vi's recovery files. Assuming /home is on an encrypted disk, that can be partially remedied by using something like the following in ~/.exrc: s

Re: DNS problem

2013-12-06 Thread Andy Bradford
Thus said Chris Smith on Fri, 06 Dec 2013 11:31:23 -0500: > Basically, four of my networks are not getting an answer for a > specific mx query from dyn.com's DNS server. Yet every other DNS cache > I've queried works just fine (Google, Level3, Hurricane Electric, > Comcast, etc.) and

Re: sudo configuration !ttytickets?

2013-09-11 Thread Andy Bradford
Thus said "Michael W. Lucas" on Wed, 11 Sep 2013 20:59:08 -0400: > This, well, kind of surprised me. I'm sure you folks have thought this > through in much more detail than I have, but I can't find anything on > the rationale behind it. Is sudo enabled for any non-root users by default? Andy --

Re: pf and apache

2013-02-28 Thread Andy Bradford
Thus said Matt Morrow on Thu, 28 Feb 2013 23:07:30 -0600: > Apache is running on a slackware box. I can access apache just fine > internally by using the ip address of that server (192.168.1.70), but > if I access the ip of the openbsd box (192.168.1.60) I just get an > error that the ser

Re: softraid RAID1 + CRYPTO error writing metadata

2013-02-09 Thread Andy Bradford
Thus said Joel Sing on Sat, 09 Feb 2013 16:44:11 +1100: > umount via DUID does not work currently - this will be fixed shortly > after the next release freeze has ended. Will that also include shutdown of softraid via DUID? e.g., bioctl -d DUID Or is this not even possible? Thanks, Andy

Re: Syslog to remote server and local file

2012-11-01 Thread Andy Bradford
Thus said Joakim Aronius on Thu, 01 Nov 2012 17:54:28 BST: > !!spamd > daemon.err;daemon.warn;daemon.info /var/log/spamd > daemon.err;daemon.warn;daemon.info @logserver A careful reading of man syslog.conf would seem to indicate that you can do something

Re: avoiding icmp redirect storm

2012-10-18 Thread Andy Bradford
Thus said "Jose Fragoso" on Thu, 18 Oct 2012 15:01:39 EDT: > Some are. But I think that the firewall is generating redirects only > when it sees other icmp redirects from other sources. We need to identify the source of the packets that are causing the ICMP redirects and then identify the s

Re: avoiding icmp redirect storm

2012-10-17 Thread Andy Bradford
Thus said "Jose Fragoso" on Wed, 17 Oct 2012 07:39:31 EDT: > I see a lot of icmp redirect packets in the network using tcpdump. What's the source of these? Are you sure they aren't being generated by your firewall? Do you have multiple aliases representing logically different subnets on th

Re: IPSEC VPN performance

2012-10-01 Thread Andy Bradford
Thus said Jim Miller on Mon, 01 Oct 2012 11:20:06 EDT: > # dd if=/dev/zero bs=1000 count=100 | nc -v 172.16.2.2 12345 What if you try a different bs? $ dd if=/dev/zero bs=1000 count=100 > /dev/null 100+0 records in 100+0 records out 10 bytes transferred in 1.102 secs (907

Re: filtering hostnames on syslog

2012-05-15 Thread Andy Bradford
Thus said Friedrich Locke on Mon, 14 May 2012 21:06:57 -0300: > Every log from ip address a.b.c.d will be written to /var/log/host-x > Every log from ip address x.y.z.k will be written to /var/log/host-y http://smarden.org/socklog/ This will allow you to do what you ask. Andy

Re: pid file for ldapd(8)

2011-05-28 Thread Andy Bradford
Thus said Joel Carnat on Fri, 27 May 2011 14:55:23 +0200: > Is there a way to tell ldapd(8) to write it's PID in "/var/run" ? One way of dealing with this is using supervise[1] and do away grep/pid files altogether. Here's a run script that would do: #!/bin/sh exec 2>&1 exec /usr/sbin/ldapd -d

Re: Problems attaching tty to display driver other than vga(4)

2011-05-15 Thread Andy Bradford
Thus said T on Fri, 13 May 2011 12:52:38 +0200: > udl0 at uhub1 port 1 "DisplayLink LILLIPUT USB Monitor" rev 2.00/1.24 addr 2 > max_dotclock according to supported modes: 29000 > wsdisplay1 at udl0 mux 1 > wsdisplay1: screen 0 addded (std, vt100 emulation) I'm just guessing here, but it would se

Re: Radeon HD 4850 and drmRadeonCmdBuffer: -22.

2011-02-24 Thread Andy Bradford
Thus said Joe Snikeris on Thu, 24 Feb 2011 10:03:06 EST: > On Thu, Feb 24, 2011 at 3:09 AM, Andy Bradford > wrote: > > > > Also, I tried without RADEON_IS_MOBILITY (this isn't a laptop, but > > maybe it actually uses the same code), but without it, the sy

Radeon HD 4850 and drmRadeonCmdBuffer: -22.

2011-02-24 Thread Andy Bradford
Misc, After patching pcidevs (included below) I was able to get the kernel to recognize a Radeon HD 4850, however, attempts to run something that uses GL result in the following errors: $ xlock -nolock -mode random -modelist allgl drmRadeonCmdBuffer: -22. Kernel failed to parse or rejected comma

Re: Shutdown option in gnome-session

2011-01-10 Thread Andy Bradford
Thus said dave shar on Mon, 10 Jan 2011 10:49:26 +0800: > I have installed kde3 and gnome2 on my box. I use kdm to load desktop > sessions. There is no shutdown option available in gnome-session. How > do I get shutdown & reboot options working in gnome-session. If you're running 4.8 and you h

Re: pf and DNS

2011-01-07 Thread Andy Bradford
Thus said Girish Venkatachalam on Fri, 07 Jan 2011 16:26:01 +0530: > Due to this , whatever IP address pf(4) knows at the time of ruleset > loading alone works. Use pfctl and a cronjob to periodically update a table. Kludgey, sure... Andy

Re: [OT] Mail Archive Management

2010-12-19 Thread Andy Bradford
Thus said Josh Smith on Sun, 19 Dec 2010 08:07:45 EST: > Weather or not I keep it in mbox format or convert it to something > else - what sort of tools are out there to break it up into multiple > archives by year or perhaps sender? There's mbox2maildir out there. You might also look at

Re: Erased Files Recovery

2010-11-26 Thread Andy Bradford
Thus said Predrag Punosevac on Fri, 26 Nov 2010 10:32:16 EST: > Sorry for this hasty e-mail. I have a Thanksgiving emergency here. > Namely, my wife has accidentally erased all the pictures from her Sony > camera (FAT 16 file system). Can anybody point me to any forensic > tools in ports

Re: bgplgsh via telnet

2010-11-13 Thread Andy Bradford
Thus said Max Clark on Sat, 13 Nov 2010 07:54:00 PST: > I've experimented with tcpserver from the ucspi package without > success. How do I give access to the bgplgsh application only via > telnet? Probably because you are missing a tty. If you also install ptyget[1] you might be a

Re: expect and spawn

2010-11-09 Thread Andy Bradford
Thus said Aaron Martinez on Tue, 09 Nov 2010 09:48:15 CST: > # sh -x 227254.test Why are you telling sh to interpret an expect script? Why not try: $ expect 227254.text > 227254.test[3]: spawn: not found > + interact { > 227254.test[4]: interact: not found > + 034 exit > 227254.test[5]: 034: no

Re: 回覆: how to viewing packet data?

2010-09-21 Thread Andy Bradford
Thus said jo...@wonghome.net on Wed, 22 Sep 2010 08:43:16 +0800: > I want to get is something like that > Data: Post /from.php?q=123 abc.com > > Can tcpdump -X do that? > if yes, can you give me one example? You probably want tcptrace or ssldump. Lately, however, ssldump doesn't work and return

Re: OpenBSD Dell Latitude E6500 built in wireless

2010-09-14 Thread Andy Bradford
Thus said Bryan on Tue, 14 Sep 2010 07:30:19 CDT: > I have the e6500, but I bought a Hawking HWUG1 (attaches as rum(4) ). > Does WPA/WPA2 quite well, and has an external removable antenna. What authenticationmethods have you beenable to use? username/password? Certificate? Or

Re: OpenSSHd

2010-09-13 Thread Andy Bradford
Thus said Pete Vickers on Mon, 13 Sep 2010 16:32:08 +0200: > Match Group !wheel Forget my last suggestion. :-) Just make a pattern-list and use: Match Group *,!wheel Andy

Re: OpenSSHd

2010-09-13 Thread Andy Bradford
Thus said Pete Vickers on Mon, 13 Sep 2010 16:32:08 +0200: > r...@container ~> tail /etc/ssh/sshd_config > # all non-wheel users should be chrooted to home and sftp only > # > Match Group !wheel > ForceCommand internal-sftp > ChrootDirectory /home > AllowTcpForwarding no > X11Forwarding no The f

Re: OpenSSHd

2010-09-13 Thread Andy Bradford
Thus said Pete Vickers on Mon, 13 Sep 2010 10:59:56 +0200: > Any clues what I'm doing wrong ? Google seems to hint that the chroot > directory might have to be owned by root, but that seems strange, > since users couldn't then write files in their own home ? Maybe start by reading the man p

Re: OpenBSD 4.6 + carp + pf + pfsync lockup

2010-09-11 Thread Andy Bradford
Thus said Claudio Jeker on Sat, 11 Sep 2010 11:28:31 +0200: > Wrong UDP is normaly not a fully defined 4 touple. Especially the > listening sockets (on port 53) can be slammed with packets. On the > other hand, if the recvbuffer overflows then packets just get dropped. Thank you for the

Re: OpenBSD 4.6 + carp + pf + pfsync lockup

2010-09-10 Thread Andy Bradford
Thus said Claudio Jeker on Fri, 10 Sep 2010 21:36:16 +0200: > Because on busy servers you need to queue quite a few packets to > handle bursts. I was under the impression that UDP is connectionless and therefore does not behave the same as a TCP connection. I would guess that s

Re: OpenBSD 4.6 + carp + pf + pfsync lockup

2010-09-10 Thread Andy Bradford
Thus said =?UTF-8?Q?Martin_Pelik=C3=A1n?= on Thu, 09 Sep 2010 12:21:17 +0200: > It depends on what do you need. The defaults suffice for most cases, > but on our most loaded router we use tcp both 256k and udp send space > 65k (lots of dns). Just test it somewhere. Why would you need 65k UDP

Re: authpf-like functionality via a web interface?

2005-08-02 Thread Andy Bradford
Thus said "Barry, Christopher" on Tue, 02 Aug 2005 18:43:56 EDT: > Authpf seems to do this via ssh, but I'll need to service non-ssh > equipped sales folk, etc. Is there a project around that provides this > functionality, or will I need to create it? What about redirecting to a webpage tha

Re: firefox crashes when printing using cups

2005-07-29 Thread Andy Bradford
Thus said Chris Paul on Fri, 29 Jul 2005 14:20:09 PDT: > Anyone else using firefox w/cups on OpenBSD 3.7? Not using it with cups, but I haven't been able to print on 3.7 since I upgraded to firefox 1.0.4 from the ports. It does the exact same thing as you report here. The second I hit ctrl-p