Re: Spamd - whitelisting round robin mail servers?

2008-09-03 Thread Steve Williams
Daniel Ouellet wrote: Jeff Simmons wrote: So I just set up a nice spamd for a client, and then watched Google's Postini try to resend a single email message from just about every IP they own. For google, why not get it from the source itself? Example: # dig txt _spf.google.com | grep spf ;

Re: Can OpenBSD run in 24 MB of RAM?

2008-09-04 Thread Steve Shockley
[EMAIL PROTECTED] wrote: I've searched the FAQ and the Web for any guidance on what the minimum RAM is for OpenBSD, with and without X. I just acquired a Compaq Armada 1125 laptop that maxes out at 24 MB of RAM, and I'm wondering whether or not it's feasible to run OpenBSD on it. From ftp://ft

Re: Can OpenBSD run in 24 MB of RAM?

2008-09-04 Thread Steve Shockley
ropers wrote: I'm not, btw. entirely sure why it says 24MB *or* 32MB, but anyway. Must be the video ram used by AGP...

Re: Patching a SSH 'Weakness'

2008-09-10 Thread STeve Andre'
orak?(sp) If you want to worry, think about the sounds a keyboard makes. Get an old IBM "buckling spring" keyboard (original PC and AT) and listen to the sounds it makes. That is something you could probably decode with decent accuracy. --STeve Andre'

Re: Patching a SSH 'Weakness'

2008-09-11 Thread STeve Andre'
On Thursday 11 September 2008 02:28:58 Damien Miller wrote: > On Wed, 10 Sep 2008, STeve Andre' wrote: > > On Wednesday 10 September 2008 15:58:03 Kevin Neff wrote: > > > Hi, > > > > > > Some secure protocols like SSH send encrypted keystrokes > > &g

Re: Patching a SSH 'Weakness'

2008-09-13 Thread steve szmidt
On Saturday 13 September 2008, Jonathan Schleifer wrote: > > I don't know a single country where you are forced to hand over keys, > but not to hand over passwords > > -- > Jonathan Yes, the US had it for a while but a recent ruling has reversed that. -- Steve Szmidt

Re: thinkpad x40 - Bad hardware?

2008-09-13 Thread STeve Andre'
changed the disk out for a new one. Sometimes errors like this disappear, but do not trust it, replace it. Newegg here in the US is a good place. --STeve Andre'

Re: Patching a SSH 'Weakness'

2008-09-14 Thread steve szmidt
On Saturday 13 September 2008, johan beisser wrote: > On Sep 13, 2008, at 5:49 AM, steve szmidt wrote: > > Yes, the US had it for a while but a recent ruling has reversed that. > > Really? I never heard of it ever being passed in the first place. > > If it's the cas

Re: recommendation for router (COMMELL)

2008-09-16 Thread Steve Shockley
Juan Miscaro wrote: Has anyone any experience running OpenBSD on this puppy: http://www.commell-sys.com/Product/IPC/EMB-564.htm I'm looking for a replacement for my tower that is currently acting as router, anti-spam, mail server for a small network/domain. Anti-spam might be a little slow on

Re: Pentium III speed?

2008-09-16 Thread Steve Shockley
Christian Weisgerber wrote: Could people with a non-laptop Pentium III machine please send me the results of $ md5 -ttt (on an idle machine) and their dmesg? These are dual proc, but I'd guess md5 is single-thread. P3-933 Compaq DL380: MD5 time trial. Processing 100 1-byte blocks...

PPTP stopped working, need a little help

2008-09-21 Thread Steve B
I spent the evening reworking my pf.conf file in order to get AltQ working. I successfully have that working, but somewhere along the line I broke PPTP and can no longer connect back to the office. I have compared by old and new pf.conf files but have not quite found the problem. I also ran a tcpdu

Re: Wireless once again being a pain, this time ipw

2008-09-24 Thread STeve Andre'
e.ibm.com/pc/pcinstitute/psref/ . They are well worth having, when you want to know something about a ThinkPad. --STeve Andre'

Intel Atom and D945GCLF2

2008-09-26 Thread Steve B
Is anyone running OpenBSD on one of these boards? The supported platform page does not list either the chipset or the CPU so I'm guesing it is not supported at this time. Steve

Dell SC440 hangs

2008-09-26 Thread Steve Shockley
I'm running -current from September 9 on a Dell SC440. When I try to do a bulk ports build using dpb, it runs for a couple of hours and hangs. The console screen is blank and doesn't respond to keyboard, but I can still ping the machine. If I try to ssh in, I get a connection but no logon prompt

Re: Dell SC440 hangs

2008-09-26 Thread Steve Shockley
On 9/27/2008 12:44 AM, johan beisser wrote: anything in /var/log/messages? No, just the usual "syslogd: restart" followed by "syslogd: start" and the dmesg. I did notice the log file for gcc 4.2 had a bunch of garbage (^@) at the end, and I think maybe it died on gcc in previous runs as wel

Re: Dell SC440 hangs

2008-09-29 Thread Steve Shockley
On 9/27/2008 12:16 AM, Steve Shockley wrote: I'm running -current from September 9 on a Dell SC440. When I try to do a bulk ports build using dpb, it runs for a couple of hours and hangs. The console screen is blank and doesn't respond to keyboard, but I can still ping the machine. I

Re: Bad MD5 on snapshot i386 install.iso

2008-09-29 Thread Steve Shockley
On 9/29/2008 12:36 PM, Giancarlo Razzolini wrote: tcpdump on your if and see if you're getting bad tcp checksum's. Most likely it's a problem with you network if, or switch, or router, corrupting packets. If you're used to seeing bad TCP checksums in tcpdump, you probably have a NIC that does

Re: HP DLT80 and OpenBSD WriteProtect only?

2008-10-02 Thread Steve Shockley
On 10/2/2008 8:24 AM, Khalid Schofield wrote: # mt -f /dev/nrst0 status SCSI tape drive, residual=0 ds=13 Check inside the drive for dust, it may use an optical sensor and it's clogged.

Re: Nintendo Wii seems to be unhappy with a ral in hostap mode

2008-10-03 Thread Steve Shockley
On 10/3/2008 9:09 AM, Jurjen Oskam wrote: I have a ral in hostap mode, which works wonderfully. I also have a Nintendo Wii console. It has a built-in wireless card, which you can use to connect the console to the Internet. While the console finds and associates with the ral just fine, the actual

Re: Rosetta Stone for Unix

2008-10-09 Thread Steve Shockley
Ted Unangst wrote: And here I was wondering why NetBSD users can monitor performance with top and netstat, but OpenBSD users can't. OpenBSD users can't shut down the system, either...

new (nasty) spam pattern

2015-07-29 Thread Steve Fairhead
ing often enough now that gmail and yahoo are rate-limiting my servers because of spam... meep! Seems hugely unfair, and I shall cry. Any cluebats? Steve -- -- Steve Fairhead fivetrees ltd - for the complete music service www: http://www.fivetrees.com --

Re: new (nasty) spam pattern

2015-07-29 Thread Steve Fairhead
most never bother to resubmit, so it's pretty effective (it cut down my spam to under 5% literally overnight). Yep, already running greylisting. (I did say I was running spamd.) Thanks, Steve -- -- Steve Fairhead fivetrees ltd - f

Re: new (nasty) spam pattern

2015-07-30 Thread Steve Fairhead
On 30/07/2015 16:09, Seth wrote: Steve, I had the some problem, lots of spammers were figuring out how to 'climb over the greywall', so I added spamd-bpgd [1] and a few blacklists [2] into the mix. I haven't figure out how to incorporate DNSBL into spamd, so I use the c

Re: new (nasty) spam pattern

2015-08-04 Thread Steve Fairhead
On 30/07/2015 23:07, Steve Fairhead wrote: Oooh, nice. Some meat there for me to look into. Thanks. Well, it seems I could have phrased that better... (one private response had me nonplussed until I googled the phrase - refers to a male with a larger than average... errr... never mind

Re: new (nasty) spam pattern

2015-08-05 Thread Steve Fairhead
wall and spamd. Totally understood, but about half of the IP addresses I'm seeing are proxies or relays (identified in maillog as something altogether different)... FWIW I nowadays record the last IP so that I can see patterns, and at the very least identify spammers which otherwis

Re: Is lack of a prompt in shell after building the kernel bad news?

2015-08-09 Thread Steve Litt
On Sun, 9 Aug 2015 22:13:36 +0300 Mihai Popescu wrote: > Joel, what the hell are you doing? Answering your own email and > quoting your own words. For what purpose? > Somebody told you that what you have is OUT OF SYNC, and gave you some > clear instructions to fix this? > > What are you doing?

Spamd blacklist docs

2015-08-11 Thread Steve Shockley
In spamd.8, it shows: BLACKLIST-ONLY MODE [...] table persist pass in on egress proto tcp from to any port smtp \ divert-to 127.0.0.1 port spamd However, it appears pf requires inet when diverting to a table[1]: pass in on egress inet proto tcp from to any port smtp \ divert-to 127.

Re: Windows Server on Qemu

2015-08-13 Thread Steve Litt
versions later. > > -ml > The last I heard was that OpenBSD didn's support hardware accelerated Qemu and probably never would. Has this changed? SteveT Steve Litt August 2015 featured book: Troubleshooting: Just the Facts http://www.troubleshooters.com/tjust

Re: Running roundcube over httpd

2015-09-11 Thread Steve Shockley
On 9/9/2015 7:03 PM, Alexander Hall wrote: Hi! Does anyone have an example for a functional configuration for roundcube[mail] over the new httpd? I use the following to have roundcubemail in a subdirectory with unrelated content above it. Note that I do not consider myself to be an httpd co

Re: wifi profiles in hostname.if

2015-09-26 Thread Steve Dee
On Sat, Sep 26, 2015 at 10:00 AM Stefan Sperling wrote: > On Sat, Sep 26, 2015 at 07:44:45AM -0600, Chris Lobkowicz wrote: > > Good day, I am curious if there is the possibility of adding/using > multiple > > profiles or network entries, much like ~/.ssh/config ? > > > > eg: > > > > In /etc/hostn

Re: Is OpenSMTPD worthy of OpenBSD inclusion?

2015-10-05 Thread STeve Andre'
You obviously never lived through the sendmail era. The smtpd code is very good. Bugs happen, and how the creators of a program react to them is what matters. The qualsys results were promptly dealt with. I don't think there is much to discuss other than diffs that further the project.

Re: Private cloud hosting recommendations

2015-10-09 Thread Steve Shockley
On 10/9/2015 11:04 AM, Martín Ferco wrote: Do you know or can recommend other private cloud providers? I use ramnode (kvm) and core networks (physical). Both support OpenBSD. Ramnode doesn't do a private network but they'll give you extra bandwidth to compensate; I'm not sure about core.

Re: OpenBSD <> Commercial VPNs

2015-10-10 Thread Steve Shockley
On 10/10/2015 1:21 PM, Jack J. Woehr wrote: I looked at OpenVPN which conceptually resembles Fortinet but doesn't seem to have any way to connect to Fortinet SSL VPN. A quick search found https://github.com/adrienverge/openfortivpn, but I haven't tested it. That looks like it replaces the For

Re: Exposing the rc(8) constructed pf ruleset, some patches

2015-10-19 Thread Steve Shockley
On 10/19/2015 8:26 PM, Karl O. Pinc wrote: But if you write DNS names into your pf.conf file then step 2 can be eliminated. All that's required is to reload the rules. How often do you re-query DNS to update and reload the rules? What do you do in the case of multiple A records, or a CDN? I

Re: LPR/LPD does not run filters

2015-10-25 Thread Steve Litt
prompt, experiment with different options to the lpd command. In your description, you say input filters are never executed, and later says that you never seethe "printcanon called". If you ever see "printbrother called", then you can exploit the differences by changing the two

openup and OpenBSD ftp and pkg_add via proxy

2015-10-30 Thread Steve Shockley
I'm trying to get openup to work through a proxy. I'm able to get it to work through an antique Bluecoat proxy, but it fails using a Websense Content Gateway (more or less Inktomi/Apache Traffic Server) or a Fortigate firewall device. I'm using 5.8-stable, and this happened on earlier release

Re: openup and OpenBSD ftp and pkg_add via proxy

2015-11-01 Thread Steve Shockley
On 10/31/2015 1:46 AM, Raf Czlonka wrote: Hi Steve, You hadn't mentioned it and I don't have a proxy at hand to test it, but won't either simply honour the "http_proxy" environment variable? Thanks for the reply. Everything does seem to honor the http_proxy enviro

Re: OpenSMTPD/mail stuck in queue with incorrect relay

2015-12-04 Thread Steve Shockley
On 11/21/2015 1:06 PM, Denis Fondras wrote: How to I tell smtpd to re-route massages currently in the queue to the smarthost at smtp.pvt.example.com? I haven't checked lately but it was not possible last time I asked. Just for the archives, this is possible. In the message spool (/var/spo

Memory exhaustion

2015-12-16 Thread Steve Shockley
I recently ran into an issue with my OpenBSD mail server where it would die every day around 5 AM. With 5.7-stable it would just become unresponsive, with 5.8-stable it would print "scsi_xfer pool exhausted" repeatedly on the console. It turned out to be SpamAsssassin sa-learn running on a fo

Re: BIOS call fallback

2015-12-21 Thread Steve Litt
t;screw you, we're changing it yet again, get with the program." In Linux, most distributions are now making sure there's "no legacy baggage" in their new, systemd equipped monoliths. SteveT Steve Litt November 2015 featured book: Troubleshooting Techniques of the Successful Technologist http://www.troubleshooters.com/techniques

Pledge problem in tsort?

2016-01-09 Thread STeve Andre'
I got the following error below after updating my tree about 02:42 am Jan 9 EST. Amd64 -current. I don't see anything special the the -current update faq. Are others seeing this? --STeve Andre' building shared crypto library (version 37.0) cc -shared -fpic -o libcrypto.so.37.

Re: Pledge problem in tsort?

2016-01-09 Thread STeve Andre'
On 01/09/16 07:46, Sebastien Marie wrote: On Sat, Jan 09, 2016 at 03:40:08AM -0500, STeve Andre' wrote: I got the following error below after updating my tree about 02:42 am Jan 9 EST. Amd64 -current. I don't see anything special the the -current update faq. Are others seeing this

Tricks for install OpenBSD under Virtualbox, host Windows XP

2013-01-06 Thread Steve Williams
ntel website indicates it supports VT-x (http://ark.intel.com/products/35569?wapkw=core+2+duo+p8400) Any suggestions/tricks, or am I just out of luck with this combination of hardware/guest OS/OpenBSD? Thanks, Steve

Re: Tricks for install OpenBSD under Virtualbox, host Windows XP

2013-01-07 Thread Steve Williams
and reading between the lines to arrive at this solution. Cheers, Steve On 1/6/2013 1:06 PM, Steve Williams wrote: Hi, After recently reading (on this list) about how OpenBSD runs under Virtualbox, I thought I would take it for a test drive on my laptop so I can work in OpenBSD while aw

momentary keyboard glitch

2013-01-14 Thread STeve Andre'
zling... --STeve Andre' (dmesg) OpenBSD 5.2-current (GENERIC.MP) #0: Tue Jan 8 19:06:54 EST 2013 r...@paladin.my.domain:/usr/src/sys/arch/amd64/compile/GENERIC.MP real mem = 8515162112 (8120MB) avail mem = 8265981952 (7883MB) mainbus0 at root bios0 at mainbus0: SMBIOS rev. 2.4 @ 0xe0010 (80 entr

built-in http and BEAST attack(PCI compliance)

2013-03-15 Thread Steve Pribyl
exemption. Thanks Steve

Re: Pre-orders for 5.3

2013-03-17 Thread STeve Andre'
On 03/17/13 19:13, dera...@cvs.openbsd.org wrote: Pre-orders for 5.3 are activated! I think they are activated in the UK too (or will be very soon). Wonder if the first few pieces of art can lead to some guesses of the theme. A Roy Lee movie pastiche?

Can't cleanly umount a usb stick

2013-03-18 Thread STeve Andre'
ount, to the copy, to the umount. Last time this happened I did a umount -f as I needed the data. This time I went hunting and an fstat | grep doc revealed that firefox had /dos? *I* didn't do anything. Any ideas as to whats going on, or things to check? I am puzzled. Thanks, STeve Andre'

Re: Can't cleanly umount a usb stick

2013-03-18 Thread STeve Andre'
On 03/18/13 05:44, Vadim Zhukov wrote: 2013/3/18 STeve Andre' : I've just run into something I can't explain. Likely it's not a bug, but puzzling none the less. I normally run KDE, and then thunderbird, firefox and chrome as well as a bunch of other stuff.

Base Packages

2013-03-19 Thread Steve Pribyl
Is there a way to determine which "base" packages are installed during the initial install. Thanks Steve Pribyl

Re: [Question] Building whitelists so that spamd greylisting can work without users perceiving delivery delays...

2013-03-28 Thread Steve Williams
On 3/28/2013 10:52 AM, Sarah Caswell wrote: Hi all, I had a question about greylisting (with spamd) in production. I've successfully run spamd on firewalls (as a frontend to either barracuda or SpamAssassin) and have really liked the reduction in SPAM volume. Unfortunately my employer's wife

Re: Variation on PHP in chroot problem: SQLite3::loadExtension()

2013-03-30 Thread Steve Williams
object" that PHP is unable to load. If anyone can provide any clues as to how I can track this down, I would be most grateful. Many thanks in advance. Hi, I've never run into this specific problem, but perhaps "ldconfig" is required in the chroot? man ldconfig Or perhaps copy in /var/run/ld.so.hints? Cheers, Steve

Re: Ethernet card not working

2013-04-10 Thread STeve Andre'
ing that. It sounds that *maybe* it just needs an updated entry is sys/devs/pcidevs. You should always post the entire dmesg when talking about your system. --STeve Andre'

Re: How many rounds to use for a pbkdf2 encrypted disk?

2013-04-23 Thread STeve Andre'
at least 100k rounds and and a ten character random password. Thank you, Ted. Well said and confirmed some thoughts I'd had. Something like this ought to go into the FAQ, perhaps Thanks again! --STeve Andre'

ACPI hack for temperature control

2013-05-01 Thread STeve Andre'
Can someone point me to the proper patch for ACPI so I don't reboot any more? Thanks. --STeve Andre'

Re: ACPI hack for temperature control

2013-05-02 Thread STeve Andre'
On 05/02/13 02:40, Vadim Zhukov wrote: > 2013/5/2 STeve Andre' mailto:and...@msu.edu>> > > Can someone point me to the proper patch for ACPI so I don't reboot > any more? Thanks. > > > Do you mean disabling acpitz(4) when it does the Wrong Thing

pkg_add (mcrypt) issues openbsd 5.0

2013-05-15 Thread Steve Pribyl
ttext-0.18.1p0 libiconv-1.13p2 I for the moment loth to upgrade to 5.1,5.2,5.3 until I have a better handle on how our apps work. Thanks Sr. Systems Administrator Steve Pribyl spri...@viaforensics.com [demime 1.01d removed an attachment of type application/pkcs7-signature which had a name of smime.p7s]

Re: pkg_add (mcrypt) issues openbsd 5.0

2013-05-15 Thread Steve Pribyl
I did a pkg_add -r on the library in question, that resolved the issue. Thanks for the follow up. Sr. Systems Administrator Steve Pribyl spri...@viaforensics.com -Original Message- From: owner-m...@openbsd.org [mailto:owner-m...@openbsd.org] On Behalf Of Stuart Henderson Sent: Wednesday

Re: how can I get a dmesg (without a floppy or serial console port)?

2013-05-27 Thread STeve Andre'
put it on another, so you can grab the dmesg output. --STeve Andre'

Severe problem with amd64 -current as of June 13

2013-06-15 Thread STeve Andre'
amd64-current seems rather wounded at the moment. I've been running -current since June 5th with no problems. This is a W500 thinkpad. On June 13 I updated my tree from anoncvs.usa.openbsd.org, and the new -current failed shortly after running it. Things would get *very* slow, with co

Re: Severe problem with amd64 -current as of June 13

2013-06-15 Thread STeve Andre'
On 06/16/13 00:23, Amit Kulkarni wrote: > > > > On Sat, Jun 15, 2013 at 9:19 PM, STeve Andre' <mailto:and...@msu.edu>> wrote: > > amd64-current seems rather wounded at the moment. I've been > running -current since June 5th with no problems. This

Re: Severe problem with amd64 -current as of June 13

2013-06-15 Thread STeve Andre'
On 06/16/13 01:05, Philip Guenther wrote: On Sat, Jun 15, 2013 at 7:19 PM, STeve Andre' wrote: On June 13 I updated my tree from anoncvs.usa.openbsd.org, and the new -current failed shortly after running it. Things would get *very* slow, with continuous disk activity. It was so

Re: Severe problem with amd64 -current as of June 13

2013-06-16 Thread STeve Andre'
On 06/16/13 01:05, Philip Guenther wrote: On Sat, Jun 15, 2013 at 7:19 PM, STeve Andre' wrote: On June 13 I updated my tree from anoncvs.usa.openbsd.org, and the new -current failed shortly after running it. Things would get *very* slow, with continuous disk activity. It was so

Re: Etnernal & infernal browser woes

2017-04-28 Thread STeve Andre'
ays of a 2G web browsing system, mostly. I have a 32G thinkpad and make sure limits are ramped up to absurd limits. Is is slower? Sure, but I'll take that over a faster, diseased system any time. OpenBSD will improve. Windows will not. --STeve Andre'

Re: iwm0 problems

2017-04-29 Thread Steve Throckmorton
I recently installed -current on a Dell laptop my mother decided she didn’t want. I have the same problems with iwm0 on this machine (with its AC 3160 wireless device) as were reported for the 3165. The dmesg I’m reproducing below includes this error msg at the end: iwm0: hw rev 0x160, fw ve

Re: iwm0 problems

2017-04-30 Thread Steve Throckmorton
> I also have this issue with AC 3160. What i did as a workaround was to switch > iwm to 802.11g using > ifconfig iwm0 media autoselect mode 11g Excellent! That got my wireless interface working without error messages. As far as I haven’t had a single firmware error in two hours. I haven’t te

Re: iwm0 problems

2017-05-01 Thread Steve Throckmorton
> If i understand it it should execute > > ifconfig nwid FSIE82 > ifconfig wpakey > ifconfig wpaakms psk > ifconfig up > ifconfig iwm0 media autoselect mode 11g Once you notice that the first four commands here would never work as written, you may start to wonder if there isn’t a bit of magic in

Re: list all system users, eg. _x11

2017-05-06 Thread STeve Andre'
active. That might get you started? --STeve Andre'

IPsec and certificates

2017-05-07 Thread Steve Shockley
I'm trying to get IPsec set up in transport mode using isakmpd, between OpenBSD 6.0, Windows 2008R2+, and i5/OS 7.1. I've already gotten everything working using PSK, but I'd like to use certificates. I've created a certificate from our CA for each machine. I've put the CA root chain in /etc

Re: IPsec and certificates

2017-05-08 Thread Steve Shockley
On 2017-05-07 18:04, Paul Suh wrote: Have you tried using the DNS names in your ipsec.conf, and in the filenames in the /etc/isakmpd/certs directory? Generally, certificates are applied against the DNS name for servers, rather than the IP address. Maybe a bug in isakmpd or one of the other hosts

Re: Limits on OBSD amd64

2017-05-26 Thread STeve Andre'
On a 10T disk I created an 8T file with dd=/dev/zero of=bff. I didn't test it, but saw that I had the correct amount of space left. --STeve Andre'

PF packets being blocked...why?

2017-06-26 Thread Steve Williams
rule 4/(match) block in on vether0: 192.168.123.2.39279 > 31.13.77.6.443: R 31:31(0) ack 1 win 1545 (DF) # pfctl -R 4 -sr block drop log all It is not all https traffice that is being blocked as I can hit my banking site, etc. Does anyone have an idea why are these packets being blocked? Thanks, Steve Williams

Re: PF packets being blocked...why?

2017-06-26 Thread Steve Williams
sequent packets (these seem to have the "P"ush flag set) should match the state and not get blocked. Hum... perhaps the states are expiring too fast? How do I find out if the state existed at the time that the packet was blocked? Thanks, Steve W. On 26/06/2017 12:09 PM, Ville V

Re: PF packets being blocked...why?

2017-06-26 Thread Steve Williams
Hi, Yes, I have (what appears to be) 100% functionality of the forwarding/nat/etc. That wouldn't work if forwarding wasn't enabled. # cat /etc/sysctl.conf net.inet.ip.forwarding=1 And I have rebooted multiple times. Thanks, Steve W. On 26/06/2017 12:30 PM, Timo Myyrä wrote:

Trying to burn a 4.5G dvd

2017-07-04 Thread STeve Andre'
and a scan of marc.info and faq aren't helping. Clues? I'm pinched for time. Thanks... --STeve Andre'

Re: Dell R210 II crashing on boot

2017-07-08 Thread Steve Shockley
On 7/5/2017 4:04 PM, Pierre Emeriaud wrote: Here are the last messages logged on the ip kvm before the java client closes: http://pix.toile-libre.org/upload/original/1499280007.jpg (6.1) http://pix.toile-libre.org/upload/original/1499280059.jpg (current) On mine, the next couple of lines are:

Re: Limit internet connection by time of day and number of hours

2017-07-08 Thread Steve Shockley
On 7/5/2017 6:19 PM, Stefan Wollny wrote: Please: I am just curious and interested to learn about my (realistic) options. I had a problem where a member of the household would spend too much time watching Netflix. Rather than blocking the traffic, I just degraded it. Your case is a little d

Re: Doubts about the successors of OpenBSD leadership and development

2017-07-10 Thread Steve Shockley
On 7/10/2017 5:53 PM, Raul Miller wrote: On Mon, Jul 10, 2017 at 5:04 PM, SOUL_OF_ROOT 55 wrote: Theo de Raadt no responds to me private message since I told him that I do not understand English. If you told him that in english, I can imagine why. Perhaps his English is mode 0266.

Split zone DNS?

2017-07-28 Thread Steve Williams
to update records? I've read the NSD(8), nsd.conf(5) man pages and that seems to be the way to go, but I thought I'd check the wisdom here to see if there is a better approach. Thanks, Steve Williams

Re: Split zone DNS?

2017-07-28 Thread Steve Williams
Hi, Thanks for the feedback everyone! I'll be looking at unbound and seeing if I need nsd or not. Have a great weekend! Cheers, Steve On 28/07/2017 7:58 AM, Steve Williams wrote: Hi, I recently upgraded to 6.1 and am trying to (finally, after many OpenBSD versions over 10 years) fine

Re: Does pf's Sources table ever get cleared?

2017-08-02 Thread Steve Williams
p/bad.$$ if [ $? -eq 0 ]; then cp /tmp/bad.$$ /var/spamd/bad-hosts/bad-hosts.txt rm -f /tmp/bad.$$ exit 0 fi rm -f /tmp/bad.$$ exit 1 Cheers, Steve On 01/08/2017 9:34 AM, Markus Wernig wrote: Hi all I have a pair of OBSD 6.1 firewalls, on which some rules require source tracking, i.e.

Re: Does pf's Sources table ever get cleared?

2017-08-02 Thread Steve Williams
did confirm that the "pfctl -F Sources" does not empty my "Sources" table on my stock OpenBSE 6.1. Interesting... Thanks for clarifying. I learned something :) Cheers, Steve On 02/08/2017 2:59 PM, Markus Wernig wrote: On 02.08.2017 16:07, Steve Williams wrote: pfctl -t Sou

Re: Dynamic DNS Client for EasyDNS

2017-08-03 Thread Steve Williams
ing interface IP changes automatically flawlessly. There was a very brief period where there were some server issues, but I've been using their free (grand fathered) package all these years and have had better service than other companies where I pay for services. Cheers, Steve W. On 02/08/2017 6:

Porter's Handbook obsolete info

2017-10-11 Thread Steve Shockley
FYI, http://www.openbsd.org/faq/ports/specialtopics.html refers to the security/nessus port, which was retired some time ago. The section does show a useful example though, but I'm not sure what would make a good replacement example.

Re: "athn0: could not load firmware" for AR9271

2017-10-15 Thread Steve Williams
ailing lists, so it's not a show stopper for me. Cheers, Steve W. On 15/10/2017 6:50 AM, Stefan Sperling wrote: On Sat, Oct 14, 2017 at 11:59:11AM -0400, Tim Stewart wrote: Maximilian Pichler writes: The dmesg is the same as previously (this is on the APU), except for: athn0 at pci5 de

Re: PHP error running ownclouds occ

2017-10-16 Thread Steve Williams
ng NextCloud and it takes a bit of a dance to get "occ" to work because of the chroot environment. It might be a red herring that occ isn't working. I am on OpenBSD 6.1 so can't help with your upgrade issue, but thought I'd mention the chroot issue with occ. Cheers, Steve W.

Guess what today is

2017-10-18 Thread STeve Andre'
Happy birthday to OpenBSD--22 years old!

Re: "persistent bios infection" paper and openbsd

2009-03-28 Thread Steve Shockley
On 3/27/2009 1:25 PM, Diana Eichert wrote: If you're afraid of the "RAM in liquid nitrogen"-problem, I suggest explosives. Funny, I've actually put DRAM in liquid nitrogen when I worked at Intel over 25 years ago. Interesting things happen to DRAM at very cold temperatures. Do they explode?

Re: Webserver frozen - OpenBSD 4.4

2009-04-01 Thread STeve Andre'
ou are using ECC doesn't rule out the possibility that some of the control logic on a dimm is bad. If memtest86 handles ECC, I'd run it on that hardware for 24 hours and see what happens. Checking all the cables, especially disk might make sense too? --STeve Andre'

Re: [semi-OT] Can anyone recommend an OpenBSD-compatible colour laser printer?

2009-04-05 Thread STeve Andre'
ey work nicely with LaTeX and cost in the $300-400 range I've been > told. Marc, I'd appreciate the model number(s) of the HP printers. I'm getting ready to make some dual-boot systems, and these folks all want printers. Seems that this might make a good faq entry, if it isn't already there(?). Thanks, --STeve Andre'

Re: dual Pentiums

2009-04-05 Thread STeve Andre'
s. Sadly we have entered the relm of severe cpu problems. --STeve Andre'

Re: Stupid Ideas - softraid and ExpEther

2009-04-07 Thread Steve Shockley
On 4/6/2009 10:23 PM, J.C. Roberts wrote: For example if your VPN or secure website is running a little slow, you would usually halt the machine and add a crypto accelerator, but with ExpEther, you just export a crypto accelerator device on another system to the system that needs it and the recip

Re: Stupid Ideas - softraid and ExpEther

2009-04-07 Thread Steve Shockley
On 4/7/2009 9:08 AM, Declan Ingram wrote: How does that help if you're encrypting the connection to the ExpEther server/device? I mostly trust that nobody is sniffing my PCI bus, I'm less trusting when data goes over the network. Just tunnel it over SSH That's fine, but then how do I

Re: Stupid Ideas - softraid and ExpEther

2009-04-08 Thread Steve Shockley
On 4/7/2009 9:43 PM, J.C. Roberts wrote: As for the mentioned issue of encrypting the bus data, since you've got the VLAN it is feasible, but if you've got an attacker inside the switches of your datacenter, then you obviously have more important problems. Also, there are a number of applications

Re: where to order now ?

2009-04-08 Thread Steve Shockley
On 4/8/2009 3:24 AM, mail...@openbsd.cc wrote: On a final note, Theo, you are accusing Wim of holding down some money, for his own gains. However, you want the money, to have your salary paid. I might be wrong, but isnB4t that sort of the same thing? If you don't understand accounting in North

Re: Games

2009-04-08 Thread STeve Andre'
temagic. ;-) They're all good, and the effect of stuffing these on a CD and giving to the unwary results in people wondering just what an openbsd is. My reply is usually, "You mean your operating system doesn't have a song to celibrate a new release?" I get great stares. --STeve Andre'

Re: European orders - Thank you Theo and your team, some of us appreciate you!

2009-04-12 Thread Steve Fairhead
change, and OpenBSD evolves. A classic solution to that (which I've used) is to simply accept that the legacy embedded stuff should not be directly connected to the Internet, and to use a current (or at least regularly maintained) OpenBSD machine as a gateway. Or, to put it another way: use

Re: Request for DVI monitors in the UK

2009-04-15 Thread Steve Fairhead
>> Around two weeks ago Owain (oga@) mailed out a request for some monitors in the UK, so that he could hack better on X. << This is now sorted. I'll be driving a pair up to Owain in the next few days, courtesy of my employer (HGL Dynamics Ltd). Steve -- http://www.fivetrees.com

Re: Cleanup of installers

2009-04-19 Thread STeve Andre'
d with the latest shopshot last Friday and the changes were *great*. It makes an easier system even better. Hats off to you. --STeve Andre'

Re: Is there any particular reason to not have RAIDFrame on RAMDISK_CD

2009-04-20 Thread Steve Shockley
On 4/20/2009 2:08 PM, Henning Brauer wrote: please also wait for in-place conversion before ripping raidframe out, so users can say something like "raidctl upgrade raid0" or similar, if at all possible. muhahahahahahaha keep dreaming Not only that, but putting an upgrade utility in a release

<    3   4   5   6   7   8   9   10   11   12   >