Re: DNS caching example

2005-07-12 Thread Ivailo Tanusheff
Better use djbdns, it's part of the ports. There is a lot of documentation 
and also is an easy to maintain dns server

Ivailo Tanusheff
Senior System administrator
ProCredit Bank (Bulgaria) AD

tel. +359 2 921 7161
fax +359 2 921 7110
http://www.procreditbank.bg


Disclaimer: The information contained in this message is intended solely 
for the use of individual or entity to whom it is addressed and other 
authorized to receive it. It may contain confidential or legally 
privileged information. If you are not the intended recipient you are 
hereby notified that any disclosure, copying, distribution or taking any 
action in reliance on the contents of this message is strictly prohibited 
and may be unlawful. If you have received this communication in error, 
please notify us immediately by responding to this email and then delete 
it from your system. ProCredit Bank is neither liable for the proper and 
complete transmission of the information contained in this message nor for 
any delay in its receipt. 



Garrett Mackey <[EMAIL PROTECTED]> 
Sent by: [EMAIL PROTECTED]
07/12/2005 12:54 PM

To
freebsd-net@freebsd.org
cc

Subject
DNS caching example






Hi there

Anyone got a example of how they set up their freebsd host as a 
caching-only nameserver.
I have followed the procedure in the handbook but am still having 
problems.
I would be particularly interested in sample localhost.rev and 
named.conf files.
I'm new enough to freebsd and would appreciate any help.

Thanks
G
___
freebsd-net@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-net
To unsubscribe, send any mail to "[EMAIL PROTECTED]"

___
freebsd-net@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-net
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


Interface statistic

2002-05-21 Thread Ivailo Tanusheff

Hi,

Can you tell me a way to collect per network interface statistic on my
FreeBSD box?
At this moment I'm using IPFilter accounting to collect needed
information, but I think this way I'm collecting only information
related to tcp, udp and icmp traffic. My purpose is to visualize this
data in MRTG.

Thank you in advantage,

Ivailo Tanusheff
System Administrator and Security Advisor
ProCredit Bank



BEGIN:VCARD
VERSION:2.1
N:Tanusheff;Ivailo
FN:Ivailo Tanusheff
ORG:ProCredit Bank
TITLE:System administrator and Security advisor
TEL;WORK;VOICE:+359 2 9217161
EMAIL;PREF;INTERNET:[EMAIL PROTECTED]
REV:20020510T125145Z
END:VCARD



Squid filtering

2002-05-22 Thread Ivailo Tanusheff








Hi,

 

I need to filter some kind of traffic –
mp3, .avi and so on for the my network users. I’d try to find some info
on that, but with no success. Is there some kind of acl or other rule that can
help? Can you help me with this problem, please? 

Thank you in advantage

 

Ivo








Strange behaviour

2002-07-11 Thread Ivailo Tanusheff








Dear all,

 

I’ve encountered some strange behavior on my network.
I have two similar FreeBSD servers each with Squid and DNS server (djbdns). One of them is NAT/Firewall. They are in different
locations, thus they are connected trough Frame relay and are in different
subnets. One is “master”, other Is “slave”
server.

Sometimes it happens that they just can’t see each
other. Each of them may see the whole other subnet, except the other server.
Because of this the dns resolve and proxy is not
functioning correct on the slave server. Have you any idea where the problem is
and how may I solve it?

Any help is appreciated.

 

Thank you in advantage,

Ivailo Tanusheff








PKI

2002-09-27 Thread Ivailo Tanusheff

Hello,


Do you know if there is any Certificate server available for FreeBSD? I
need to  issue certificates to our customers.

Thank you in advantage, 
Ivailo Tanusheff



To Unsubscribe: send mail to [EMAIL PROTECTED]
with "unsubscribe freebsd-net" in the body of the message



VPN Tunneling

2002-10-09 Thread Ivailo Tanusheff

Hello,

I'm trying to make a VPN tunnel between a FreeBSD machine and a Win2K
Machine. My configuration is:

{Net1} <--->  <--...-->  <---> {Net2}

Win2k machine has dynamically assigned IP address as it's connecting to
public ISP. Can you help me build the tunnel?

Regards,
Ivailo Tanusheff



To Unsubscribe: send mail to [EMAIL PROTECTED]
with "unsubscribe freebsd-net" in the body of the message



NOCC problem

2003-02-03 Thread Ivailo Tanusheff
Hi,

I'm wondering if anybody succeeded in running nocc on FreeBSD. I've
encountered many problems and still can't make it run properly. May
somebody help me deal with this?

 
Thanks in advantage,
Ivailo Tanusheff


To Unsubscribe: send mail to [EMAIL PROTECTED]
with "unsubscribe freebsd-net" in the body of the message



RE: NOCC problem

2003-02-03 Thread Ivailo Tanusheff
Hi, 

I had some problems in the beginning with my version of php - it just
doesn't log in. But after downloading latest snapshot I receive other
error message in the web browser:

Warning: Couldn't open stream {} in /usr/local/www/nocc/class_local.php
on line 37

Warning: Cannot add header information - headers already sent by (output
started at /usr/local/www/nocc/class_local.php:37) in
/usr/local/www/nocc/proxy.php on line 21

Warning: Cannot add header information - headers already sent by (output
started at /usr/local/www/nocc/class_local.php:37) in
/usr/local/www/nocc/proxy.php on line 22

Warning: Cannot add header information - headers already sent by (output
started at /usr/local/www/nocc/class_local.php:37) in
/usr/local/www/nocc/html/header.php on line 5

Fatal error: Call to undefined function: get_default_from_address() in
/usr/local/www/nocc/html/header.php on line 11

I think that's because I'm not using IMAP at all. But I don't want to
install it. Did you have similar problems?

Best Regards,
Ivailo Tanusheff

 


-Original Message-
From: Chris Craft [mailto:[EMAIL PROTECTED]] 
Sent: Tuesday, February 04, 2003 4:49 AM
To: [EMAIL PROTECTED]; FreeBSD Questions
Subject: Re: NOCC problem

On Monday 03 February 2003 08:53, Ivailo Tanusheff wrote:
> Hi,
>
> I'm wondering if anybody succeeded in running nocc on FreeBSD. I've
> encountered many problems and still can't make it run properly. May
> somebody help me deal with this?
>
>
> Thanks in advantage,
> Ivailo Tanusheff

What seems to be the trouble?  I've installed NOCC successfully on Linux
and 
FreeBSD.

Regards,
Chris.

BEGIN:VCARD
VERSION:2.1
N:Tanusheff;Ivailo
FN:Ivailo Tanusheff
ORG:ProCredit Bank
TITLE:System administrator and Security advisor
TEL;WORK;VOICE:359 2 9217161
EMAIL;PREF;INTERNET:[EMAIL PROTECTED]
REV:20020822T070308Z
END:VCARD



RE: Need to frag (DF) :)

2003-03-31 Thread Ivailo Tanusheff

Hi,

I think you should lower the mtu value of the ng0 interface. This is
because of the packet overhead.
If you are using Windows XP, than you should enable multilink or you
can't bypass this.

Ivailo Tanusheff
 


-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of Dennis S. Davidoff
Sent: Monday, March 31, 2003 1:27 PM
To: freebsd-net
Subject: Need to frag (DF) :)

Hi all.

After successful authorization and setting tunnel by mpd I've got a
problem with packet fragmentation. 

rl0: flags=8843 mtu 1500
net 172.16.1.2 netmask 0xff00 broadcast 172.16.1.255
ether 00:02:44:2e:35:da
media: Ethernet autoselect (100baseTX )
status: active
rl1: flags=8843 mtu 1500
inet 172.16.0.1 netmask 0xff00 broadcast
172.16.0.255
ether 00:10:dc:06:e8:91
media: Ethernet autoselect (100baseTX )
status: active
lo0: flags=8049 mtu 16384
inet 127.0.0.1 netmask 0xff00
ng0: flags=88d1 mtu 1392
inet 10.0.0.1 --> 10.0.0.2 netmask 0x

As you can see, mtu is 1392. So any attempt to open big content from
site or download a big file will fail. tcpdump shows:

14:13:09.876867 172.16.1.2 > 217.106.231.104: icmp: 192.168.0.168
unreachable - need to frag (mtu 1392) (DF)
...and so on.

Also I'll trying to test my gateway like that:
C:\Documents and Settings\null>ping -f -l 1500 172.16.0.1

Pinging 172.16.0.1 with 1500 bytes of data:

Packet needs to be fragmented but DF set.
Packet needs to be fragmented but DF set.

Ping statistics for 172.16.0.1:
Packets: Sent = 2, Received = 0, Lost = 2 (100% loss),
Control-C

Someone from obsd tells me that in obsd pf it could be solved by the
rule:
scrub in all no-df fragment reassemble
...which defragments all packets and removes DF flag (i guess)

P.S. On my gateway I have an ipfw rule that allows any icmp type.

Thanks for any advices.

-- 
Sincerely,
Dennis
___
[EMAIL PROTECTED] mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-net
To unsubscribe, send any mail to "[EMAIL PROTECTED]"

___
[EMAIL PROTECTED] mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-net
To unsubscribe, send any mail to "[EMAIL PROTECTED]"


Cascading qmail servers

2003-05-28 Thread Ivailo Tanusheff
Hi,

I have some problem I can't deal with and maybe because of my not so
good English language skills I can't find in the mail archive.

I have following configuration: a WAN network, with single internet
access point, protected by firewall and a mail server. I also have
several remote offices connected trough a 64K links, every one with it's
virtual mail sub-domain in form xxx.whatever.com. 

 _office1.whatever.com
|{Mail server}<-office2.whatever.com
 -officen.whatever.com
 

Because of the bandwidth of the mail traffic I'll need to install some
local mail servers in each office. My question is: how to configure the
main server and local servers in offices, so each mail send to
xxx.whatever.com, after receiving by mail.whatever.com to be forwarded
to the proper mail server. Keep in mind, that there are too many
accounts to make aliases for each. Also I'll need my users to send
e-mails trough their local mail servers in the organization and to
internet. And also I want to keep part of the e-mail accounts on the
main server for the whatever.com domain itself. 

Any help is appreciated,
Best regards,
Ivailo Tanusheff

___
[EMAIL PROTECTED] mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-net
To unsubscribe, send any mail to "[EMAIL PROTECTED]"