Re: Usage of global tables and anchors in PF

2017-06-20 Thread Jacob Leifman
On 20 Jun 2017 at 14:17, Alen Mistric wrote: > Howdy! > > I have a global table defined in pf.conf that I would like to use in > both the main rule set and inside an anchor. However, I keep getting > a namespace collision when I reload the configuration file. I can't > quite figure out from readi

Re: Usage of global tables and anchors in PF

2017-06-22 Thread Jacob Leifman
23:06, Alen Mistric wrote: > Ouch, that´s a bummer. Has there been any attempts to try and > resolve this matter? > > > > 21. jun. 2017 kl. 04.40 skrev Jacob Leifman : > > > > On 20 Jun 2017 at 14:17, Alen Mistric wrote: > > > >> Howdy! > >>

Re: Fail2ban alternative for OpenBSD

2017-10-29 Thread Jacob Leifman
You might also want to check out http://openports.se/security/sshguard which integrates directly with PF. I find it quite effective. On 29 Oct 2017 at 6:30, x9p wrote: > On 2017-10-29 04:35, Rupert Gallagher wrote: > > Note that PF cannot discriminate between legitimate and abusive > > multiple

Is there an option switch to lower minimum DH strength in SSH client?

2017-11-03 Thread Jacob Leifman
rsight or is there a particular logic to intentionally breaking compatibility with a not-insignificant base of installed equipment? Thank you, Jacob Leifman Educational Technology Weymouth Public Schools -- CONFIDENTIALITY NOTICE: This e-mail message and any attachment to it is intended only f

Re: Is there an option switch to lower minimum DH strength in SSH client?

2017-11-03 Thread Jacob Leifman
On Fri, Nov 3, 2017 at 9:17 AM, Solène Rapenne wrote: > Je 2017-11-03 05:06, Jacob Leifman skribis: > > I was finally able to bring our OpenBSD based Network Management System up >> to the current OS release (it was a couple of years out of date) but this >> process br

Re: Is there an option switch to lower minimum DH strength in SSH client?

2017-11-03 Thread Jacob Leifman
On Fri, Nov 3, 2017 at 8:37 AM, Janne Johansson wrote: > 2017-11-03 5:06 GMT+01:00 Jacob Leifman >: > >> I was finally able to bring our OpenBSD based Network Management System up >> to the current OS release (it was a couple of years out of date) but this >> proc

Re: Meltdown workaround enabled?

2018-03-13 Thread Jacob Leifman
On 13 Mar 2018 at 16:57, Mike Larkin wrote: > On Tue, Mar 13, 2018 at 06:20:16PM -0500, Brian Camp wrote: > > On Tue, Mar 13, 2018 at 4:41 PM, Mike Larkin wrote: > > > On Tue, Mar 13, 2018 at 02:23:29PM -0700, Mike Larkin wrote: > > >> On Tue, Mar 13, 2018 at 08:27:49AM -0500, Brian Camp wrote: >