Re: Removing support for FreeBSD 2.x in PPP

2013-07-01 Thread Brian Somers
FreeBSD__ value being undefined, i.e. 0). > > I guess one could add even more ifdef logic could be added to handle > that, but it seems a bit pointless since 2.x is such an old release > series. > > If there is no objection I will check in the attached patch. >

Re: Some routes no longer getting flagged with 'GATEWAY' in fbsd >=8

2013-06-17 Thread Brian Somers
m or a better > solution with the way networking now works... (i noticed that issuing a > 'route change' of an existing route with the GATEWAY flag set seems to > work as it doesn't drop the flag when the gateway changes under it...) > > Thanks in advance! > > -

Re: GRE and BPF

2013-05-22 Thread Brian Hechinger
On Wed, May 22, 2013 at 08:48:36AM -0700, Michael Sierchio wrote: > On Wed, May 22, 2013 at 8:39 AM, Brian Hechinger wrote: > > > Hello all, > > > > I've been having some trouble with a GRE tunnel. Specifically with > > non-IP traffic (DECnet, in this case)

GRE and BPF

2013-05-22 Thread Brian Hechinger
BSD wiggum 9.1-RELEASE FreeBSD 9.1-RELEASE #0 r243826: Tue Dec 4 06:55:39 UTC 2012 r...@obrian.cse.buffalo.edu:/usr/obj/usr/src/sys/GENERIC i386 Thanks! -brian ___ freebsd-net@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/free

Slow uplink speeds across WAN/VPN link

2013-01-01 Thread Brian O'Regan
currently in a position to upgrade. Kind Regards, Brian Hughes ___ freebsd-net@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-net To unsubscribe, send any mail to "freebsd-net-unsubscr...@freebsd.org"

Re: FreeBsd modules

2012-09-06 Thread Brian Stivala
Hi, Can I get an answer regarding the below. Thanks Regards, Brian Stivala On Wed, Sep 5, 2012 at 8:53 AM, Brian Stivala wrote: > Hi Matthew, > > Thanks for your reply, > > This is my Pciconf and the /var/log/dmesg.boot. As you can see the > ethernet card is there but it i

Re: FreeBsd modules

2012-09-04 Thread Brian Stivala
Full Speed USB v1.0 ad0: 1967MB at ata0-master PIO4 ugen0.1: at usbus0 uhub0: on usbus0 Root mount waiting for: usbus0 uhub0: 2 ports with 2 removable, self powered Trying to mount root from ufs:/dev/ufs/pfsense0 Invalid time in real time clock. Check and reset the date immediately! Regards, Bri

Re: System doesn't detect unplugged network cable and doesn't set interface up properly with DHCP

2012-07-12 Thread Brian Reichert
ere near as much as I want to.) > -- > Freddie Cash > fjwc...@gmail.com > ___ > freebsd-net@freebsd.org mailing list > http://lists.freebsd.org/mailman/listinfo/freebsd-net > To unsubscribe, send any mail to "freebsd-net

Re: if_xl on 8.2

2011-11-23 Thread Brian Seklecki (Mobile)
Send us: grep ifconfig /etc/rc.conf ifconfig -a ifconfig -m netstat -i netstat -rn netstat -i arp -an For both the working and non-working cards to compare. Thx, ~BAS On Wed, 23 Nov 2011, Andrea Venturoli wrote: Hello. Just to say today I upgraded from 8.1 to 8.2 and xl0 stopped wo

Re: strange ping on local address

2011-07-30 Thread Brian Somers
m understand, that ping "itself" is rarely situation, > but > it worked in 7.x! What happens if you "route delete 192.168.1.1" and then try the ping without using -S? -- Brian Somers Don't _EVER_ lose your sense of humou

gif & bridge / ip over ip bridging tunnel

2011-02-23 Thread Brian McCann
red I cannot put a gre interface into a bridge. (ps, I'm trying to bridge to a vlan interface) Anyone have any ideas? Thanks! --Brian ___ freebsd-net@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-net To unsubscribe, send any mail to "freebsd-net-unsubscr...@freebsd.org"

gif & bridge / ip over ip bridging tunnel

2011-02-23 Thread Brian McCann
red I cannot put a gre interface into a bridge. (ps, I'm trying to bridge to a vlan interface) Anyone have any ideas? Thanks! --Brian ___ freebsd-net@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-net To unsubscribe, send any mail to "freebsd-net-unsubscr...@freebsd.org"

Re: Juniper e3k with ports limitied to 100Mbit and re NICs on MSI MoBo: problems with duplex negotiation (Hetzner host provider discard FreeBSD support due this bug)

2011-01-11 Thread Brian Reichert
http://lists.freebsd.org/mailman/listinfo/freebsd-net > To unsubscribe, send any mail to "freebsd-net-unsubscr...@freebsd.org" -- Brian Reichert 55 Crystal Ave. #286 Derry NH 03038-1725 USA BSD admin/developer at large _

Re: Juniper e3k with ports limitied to 100Mbit and re NICs on MSI MoBo: problems with duplex negotiation (Hetzner host provider discard FreeBSD support due this bug)

2011-01-11 Thread Brian Reichert
list > http://lists.freebsd.org/mailman/listinfo/freebsd-net > To unsubscribe, send any mail to "freebsd-net-unsubscr...@freebsd.org" -- Brian Reichert 55 Crystal Ave. #286 Derry NH 03038-1725 USA BSD admin/developer at

re: [trouble] restart network & vlan`s interface (if_vlan / conf/63700 redux)

2010-06-04 Thread Brian A. Seklecki
destroying your routing table after adding an alias to a VLAN interface in rc.conf(5), simply run: $ sudo /etc/rc.d/netif [VLAN] start DO NOT RESTART, and you should be okay. ~BAS References: http://lists.freebsd.org/pipermail/freebsd-hackers/2008-February/023440.html http://www.freebsd.or

sys/dev/mii/brgphy.c patch

2009-10-14 Thread Brian McCann
great. I maxed out a 100Mbps LAN connection...so no bandwidth hit either. I know 8.0 is in the RC phase...is there any chance that this simple patch can be put into 8.0? If you have any questions on what I did or more details on my setup, please don't hesitate to ask! Thank

Large scale GRE

2009-09-20 Thread Jacobs, Brian
As promised, I'm dropping an on-list update of our GRE migration project. We're running just under 1,000 GRE interfaces (with ipsec inside) with no problems on a dualproc/quadcore xeon 2.8 under 7.2-REL (can't sup to anything later as someone broke the Compaq RAID driver). We're only pushing about

Re: native vlan

2009-08-31 Thread Brian A. Seklecki
On Mon, 2009-08-24 at 12:12 -0700, Graham Smith wrote: > requiring creation of native vlan (vlan 0) and why native vlan are > most suitable for this scene ? Cisco highly recommend changing the management VLAN away from VLAN1. Here's an example, of using alternative native VLANs, ironically, on t

net.inet.tcp.keepidle and friends

2009-08-03 Thread Brian A. Seklecki
All: The description on this sysctl was just recently added in -CURRENT. It was missing during all of RELENG_6 and RELENG_7? Do we not trust it entirely, ergo the two hour initial threshold and lack of documentation? It also seems like the description could be bit more insightful; looks like it

L2TPv3 ?

2009-07-24 Thread Jacobs, Brian
Anyone know of plans or status for implementation of L2TPv3 in FreeBSD? Support for it would solve a lot of interoperability heartache with Cisco devices... Thanks! /bmj ___ freebsd-net@freebsd.org mailing list http://lists.freebsd.org/mailman/li

RE: GRE tunnel limitations

2009-07-20 Thread Jacobs, Brian
ve tunnels. Please advise if the group (or any individuals) want performance data from real world usage. /bmj -Original Message- From: owner-freebsd-...@freebsd.org [mailto:owner-freebsd-...@freebsd.org] On Behalf Of Jacobs, Brian Sent: Thursday, July 16, 2009 12:50 PM To: Julian Elischer Cc: f

Re: kern/136893: ppp(8) crashing with port 65535 in "nat port"

2009-07-19 Thread brian
Synopsis: ppp(8) crashing with port 65535 in "nat port" Responsible-Changed-From-To: freebsd-net->brian Responsible-Changed-By: brian Responsible-Changed-When: Sun Jul 19 07:15:48 UTC 2009 Responsible-Changed-Why: I'll take a look at this. http://www.freebsd.org/cgi/quer

Dropped/Duplicate SYN, Cisco PIX/ASA, and and random ISN w/ net.inet.ip.random_id=1

2009-07-17 Thread Brian A. Seklecki
o doubt their own existence. ~Brian A. Seklecki (*) To disable port randomization on the Cisco PIX: tcp-map verify-chksum check-retransmission checksum-verification exceed-mss drop syn-data drop tcp-options selective-ack allow urgent-flag clear no ttl-evasion-protection ! icmp unreachable

RE: GRE tunnel limitations

2009-07-16 Thread Jacobs, Brian
6 10.10.201.1UGS 0 2042 gre46 10.10.201.110.3.100.39UH 149263 gre46 /bmj -Original Message- From: Julian Elischer [mailto:jul...@elischer.org] Sent: Thursday, July 16, 2009 12:45 PM To: Jacobs, Brian Cc: freebsd-net@freebsd.org Subjec

GRE tunnel limitations

2009-07-16 Thread Jacobs, Brian
Does anyone have some realistic data on the number of GRE/ipip tunnels FreeBSD 7.x can reasonably terminate? Assume no IPsec, just standard encapsulation. I have an ad-hoc need to terminate about 1,4000 static GRE tunnels (as Cisco 7206's are backordered until September). J Thanks in advance

Re: NTP - default /etc/ntp.conf

2009-07-09 Thread Brian Somers
upport/UndisciplinedLocalClock > +# The use of Orphan Mode may be preferable. > # > -server 127.127.1.0 > -fudge 127.127.1.0 stratum 10 > +#server 127.127.1.0 > +#fudge 127.127.1.0 stratum 10 I'd tend to suggest stratum 13 so that the inattentive admin doesn

Re: NFS - exports syntax

2009-06-16 Thread Brian Somers
ect, how can I use mapall option? Your exports file should say: /usr/shared/cond1 -maproot=whatever pc01 /usr/shared/cond2 -maproot=somethingelse pc02 The two entries for the same physical filesystem are fine as long as you don't atempt to duplicate the remote host. -- Brian Somers

Re: NFS - exports syntax

2009-06-14 Thread Brian Somers
ow you to associate mount options per local filesystem per remote machine, so this version: > /usr/home        pc02 pc02 > /cond1 -mapall=user2 pc01 pc02 > /cond2 -mapall=user1 pc01 pc02 is correct, but only if /cond1 and /cond2 are different filesystems. If they're the same, this wo

Re: ixgbe vs mxge

2008-11-01 Thread Brian McGinty
ver is actively worked on and I got a lot of help and bug fixes from the maintainers of the driver, whereas the FreeBSD driver is hopelessly neglected and broken. Brian On Tue, Oct 28, 2008 at 11:26 PM, Mihail Balikov <[EMAIL PROTECTED]> wrote: > Hi, > > I would like to setup 10gbi

Re: Freebsd IP Forwarding performance (question, and some info) [7-stable, current, em, smp]

2008-07-19 Thread Brian McGinty
x27;m waiting to get some time on the Ixia at work to generate performance numbers for 1G and 10G for all packet sizes, on FreeBSD and Linux, on a 16 core system, and blast it to the list. I expect Linux to do 2-3 times better :-) Later, Brian ___ freebsd

Re: Freebsd IP Forwarding performance (question, and some info) [7-stable, current, em, smp]

2008-07-11 Thread Brian McGinty
> Hi Brian > I very much doubt that this is ceteris paribus. This is 384 random IPs > -> 384 random IP addresses with a flow lookup for each packet. Also, > I've read through igb on Linux - it has a lot of optimizations that > the FreeBSD driver lacks and I have yet to im

Re: Freebsd IP Forwarding performance (question, and some info) [7-stable, current, em, smp]

2008-07-08 Thread Brian McGinty
.04 > Mpps in on igb0 and 1.04 Mpps out on igb1) using 3.5 cores on an 8 > core system. I have a 8 core system running stock Linux that easily does line rate (ie, 1.488 Mpps) on 3 (82575) interfaces. Ie, 3 * 1.48 Mpps! Cheers, Brian. > > -Kip >

Re: Interface address sourced packets go thru default gateway on another interface

2007-11-15 Thread Brian Hawk
policy routing rules. Here's an example with PF: : pass out quick route-to ($other_if $other_gw) from ($other_if) I really am an ipfilter fan. It's greate that pf support this. But I think ipfilter doesn't yet. At least not the ve

Re: Interface address sourced packets go thru default gateway on another interface

2007-11-15 Thread Brian Hawk
Here's the routing table, #~>netstat -rn Internet: DestinationGatewayFlagsRefs Use Netif Expire default85.97.0.1 UGS 0 25211312 tun0 10 10.1.1.222 UGS 0 3407666xl0 10.1.1/24 link#2

Interface address sourced packets go thru default gateway on another interface

2007-11-15 Thread Brian Hawk
Anyone has a clue why this might be happening? -Brian ___ freebsd-net@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-net To unsubscribe, send any mail to "[EMAIL PROTECTED]"

Re: RFC: Evolution of the em driver

2007-10-30 Thread Brian McGinty
I prefer (2) - non-intrusive on em, and the new one doesn't have to deal with legacy or backward compatibility with em. Any commonality with ixgbe? Later Brian. On 10/29/07, Jack Vogel <[EMAIL PROTECTED]> wrote: > > I have an important decision to make and I thought rather th

checking SO_ACCEPTFILTER with netstat(1)/sockstat(1)

2007-07-20 Thread Brian A. Seklecki
,SNDBUF=262144 TF=MSS=1024,NODELAY,REQ_SCALE,REQ_TSTMP) A little bit more definitive than "Oh hey apache stopped complaining." Any other way? l8* -lava (Brian A. Seklecki - Pittsburgh, PA, USA) http://www.spiritual-machines.org/ "Guilty? Yeah. But he k

Re: tun devices and vpnc in CURRENT

2007-07-15 Thread Brian Somers
On Sun, 15 Jul 2007 11:04:18 +0200 Stefan Ehmann <[EMAIL PROTECTED]> wrote: > On Saturday 14 July 2007 21:21:32 Brian Somers wrote: > > On Sun, 22 Apr 2007 13:18:49 +0200 Stefan Ehmann <[EMAIL PROTECTED]> wrote: > > > On CURRENT, each time I stop/start vpnc a new tun

Re: Bug in userland PPP LQR?

2007-07-14 Thread Brian Somers
On Sat, 14 Jul 2007 13:01:06 -0600 Brett Glass <[EMAIL PROTECTED]> wrote: > At 12:41 PM 7/14/2007, Brian Somers wrote: > >I expect unacknowledged LQR packets to be resent > >5 times (exactly the same packet), and the 6th > >timeout to cause a line drop. > >

Re: tun devices and vpnc in CURRENT

2007-07-14 Thread Brian Somers
he vpnc-script destroy_tun_device() function, but even if I add FreeBSD to that, it creates the additional interfaces. Maybe this is because I'm passing it bogus data and the connection attempt doesn't cleanup properly either. Have you tried talking to the port writer or maintainer? --

Re: Bug in userland PPP LQR?

2007-07-14 Thread Brian Somers
ement it properly. Of course the *other* option is to implement an LQM strategy. I've never come up with anything that might really be useful though - except for suggesting that LQR is disabled. -- Brian Somers <[EMAIL PROTECTED]> Don't _EVE

Re: Download speed and TCPIP window sizing

2007-06-04 Thread Brian Somers
s) as there are several old OpenBSD/pf setups that have issues with wscale > 4. Hopefully these setups will be fixed by the time 7.0 is released, as windows/vista and linux/debian now set wscale > 4 too. The patch is pretty small though, so you may want to try applyi

Gateway problem

2006-10-20 Thread Brian Hawk
I'm having a strange situation for quite sometime. I have two external interfaces one of which is an ADSL interface tun0 and obtains IP address dynamically and the other is a (xl1) leased line which has a static global IP address, lets say 212.64.212.180. Both interfaces access internet without

Re: ppp command port does not listens on ipv4 unless no INET6 in kernel

2006-09-17 Thread Brian Somers
, SOL_SOCKET, SO_REUSEADDR, &s, sizeof s); >if (bind(s, (struct sockaddr *)&ss, sz) < 0) { > log_Printf(LogWARN, "Tcp: bind: %s\n", strerror(errno)); > > > Sincerely, AFAIR I had trouble getting that code to work and was advised at the time that I'

Re: Optimizing a high-latency connection

2006-08-29 Thread Brian Candler
ing place. An ethernet full-duplex/half-duplex mismatch can cause packet loss in the 2% range, which is not enough for the network to be visibly "broken", but enough for it to perform very badly. Worst offenders here are old Cisco Catalyst 29xx switch

Re: Routing IPSEC packets?

2006-08-18 Thread Brian Candler
lo' side you could set up SAs for 10.0.1.0/24 -> 10.0.2.0/24 10.0.1.0/24 -> 10.0.3.0/24 both with a tunnel IP of the 'personal colo' server. Here, I'm assuming that 10.0.2.0/24 is the 'personal colo' space, and 10.0.3.0/24 is the 'home' space. R

Re: Redundant/failover NFS servers - stale NFS file handle

2006-08-15 Thread Brian Candler
On Tue, Aug 15, 2006 at 11:20:47AM -0700, Chuck Swiger wrote: > On Aug 15, 2006, at 5:30 AM, Phil Regnauld wrote: > >Brian Candler (B.Candler) writes: > >>So to make an update, you would have to unmount from box 2, > >>remount RW on > >>box 1, make the chang

Re: Redundant/failover NFS servers - stale NFS file handle

2006-08-15 Thread Brian Candler
On Tue, Aug 15, 2006 at 02:44:52PM +0200, Attila Nagy wrote: > >>I can solve this problem with Linux > >How? > With a shared filesystem of course. Specifically, which one? If there is a good filesystem for this application perhaps it could be ported. ___

Re: Redundant/failover NFS servers - stale NFS file handle

2006-08-15 Thread Brian Candler
RO again on box 2. > I can solve this problem with Linux How? > Of course what is really needed here is a cluster filesystem, or an NFS > server/file system which can solve this problem at its level. Indeed. This was discussed at some length before, and the same answers we

Re: No DHCPOFFERS received.

2006-08-01 Thread Brian Candler
" definitely offer a DHCP service? In that case it would be a "router". Maybe you need to talk PPPoE instead. Have a look at their instructions for configuring a Windows client. If it talks about setting up a dialler, where you enter a username and password, then it's

Re: Multiple NAT router

2006-07-25 Thread Brian Candler
On Mon, Jul 24, 2006 at 09:17:37PM -0600, Brett Glass wrote: > I've been noodling over this for two weeks now, and am thinking > that the easiest thing to do might be is map every address in each > "virtual" router to a unique address from FreeBSD's point of view > (i.e. 192.168.0.2 on LAN 1 bec

Re: Multiple NAT router

2006-07-25 Thread Brian Candler
TM there are a zillion userland-to-kernel and kernel-to-kernel communication interfaces: - ioctl - geom - cam - netgraph - vfs - sysctl - kmem - procfs - ... Perhaps they could all be replaced by netgraph?? Regards, Brian. ___ freebsd-net@freebsd.

Re: Multiple NAT router

2006-07-24 Thread Brian Candler
sync with 6.x and -CURRENT could start > shortly... Also, what would really suit him is a netgraph IP interface node - i.e. something which takes raw ethernet frames from the interface, performs IP encapsulation/decapsulation and ARP - and an IP forwarding node with its own forwarding tabl

Re: using loopback address as primary address

2006-07-24 Thread Brian Candler
On Mon, Jul 24, 2006 at 12:38:56PM +0300, Nikos Vassiliadis wrote: > Can I somehow use lo1 address > for connections initiated from Host_2? Options I know of: (1) the application which originates the connection can explicitly bind to the lo1 address (see for example telnet -s and ping -S options)

Re: Multiple NAT router

2006-07-24 Thread Brian Candler
s together onto the same NIC. Also - you may still end up with a separate outside IP per vimage or VM, so maybe then you need another NAT instance to NAT all of those onto a single IP address :-) Regards, Brian. ___ freebsd-net@freebsd.org mailing

Re: forcing FTP-uploaded files to be of certain types only

2006-07-18 Thread Brian Candler
f this was a HTTP 'PUT' then a simple CGI could read in 100 bytes, check it is compressed (e.g. with libmagic), then copy through the rest of the file. The result from the PUT can be a HTML page saying "all OK" or "please compress your data first" Regards, Brian.

Re: counting (not) blocks of IPs in ipfw - please help

2006-07-12 Thread Brian Candler
ssing ")" I think you need to use a table. Or choose another workaround, e.g. two rules with separate counters, or two rules which jump to another rule which does the counting. Regards, Brian. ___ freebsd-net@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-net To unsubscribe, send any mail to "[EMAIL PROTECTED]"

Re: strange limitation on rcmd()

2006-07-10 Thread Brian Candler
On Mon, Jul 10, 2006 at 11:47:33AM -0400, Mikhail Teterin wrote: > What I remain upset about, though, is that the rcmdsh(), which is used by > rcmd() ignores the fd2p parameter making it impossible to capture the > remote's stderr... Well, it's probably worth send-pr'ing it. I'd first test whet

Re: strange limitation on rcmd()

2006-07-08 Thread Brian Candler
d ports (either by installing Unix with their own root password, or by installing DOS and sending packets which come from privileged ports) HTH, Brian. ___ freebsd-net@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-net To unsubscribe, send any mail to "[EMAIL PROTECTED]"

Re: Strange errors from BIND on FreeBSD 4.x system

2006-07-06 Thread Brian Candler
you could upgrade dig to a version from a newer version of BIND, as ISTR this was fixed in the application. So much for the IPv4-IPv6 transition being transparent to applications :-( Regards, Brian. ___ freebsd-net@freebsd.org mailing list http://

Re: Simple LAN IP accounting

2006-06-18 Thread Brian Candler
ust want something to visualize your top 20 traffic sources and protocols, i.e. keep an eye on your network and notice sudden new large sources such as viruses or P2P nodes, it may be useful. Regards, Brian. ___ freebsd-net@freebsd.org mailing list http:

Re: Simple LAN IP accounting

2006-06-18 Thread Brian Candler
ed by sflow. If you have an sflow-capable switch, this is a very efficient way of doing this analysis. You can turn the sflow data into simple CSV records using 'sflowtool', or ntop has an sflow module. This assumes that taking the sampled data and multiplying it by 128 wi

Re: VPN with FAST_IPSEC and ipsec tools

2006-06-16 Thread Brian Candler
n top of IPSEC _transport_ mode (e.g. those running routing protocols like OSPF over tunnels) Regards, Brian. ___ freebsd-net@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-net To unsubscribe, send any mail to "[EMAIL PROTECTED]"

Re: improving transport over lossy links ?

2006-05-23 Thread Brian Candler
ble, documented by the manufacturer, and has a full robust implementation of all the RS232 control lines in an open-source driver, I'd like to buy one. For some laptops a PCMCIA COM port is an option, but many modern laptops don't have

Re: How to Quicken TCP Re-transmission?

2006-05-22 Thread Brian Candler
ope with 30% packet loss. Perhaps a mechanism which sends each packet 3 times would work, but then tripling the load on your link will increase your packet loss even more, perhaps leading to total collapse. Regards, Brian. ___ freebsd-net@freebsd.org mailin

Re: improving transport over lossy links ?

2006-05-21 Thread Brian Candler
90, as for this one end has to be digitally connected (typically T1/E1 trunk, although in theory you might be able to find a modem which is physically connected as ISDN BRI but which supports v90 analogue modulation) The best you'll get is v34bis (33.6K) Regards, Brian. ___

Re: improving transport over lossy links ?

2006-05-21 Thread Brian Candler
RTS handshaking, and the port is configured for this too; with pppd it's "crtscts", I don't know about userland ppp; and ensure the cables are wired properly) If your app could cope with the lack of bandwidth, forcing the modems to 2400bps operation can make links over dodgy lin

Re: Can't delete route

2006-05-19 Thread Brian Candler
y: # route delete -net 0.0.0.0 -netmask 10.0.0.17 (i.e. network 0, netmask &a11, like the netstat entry shows). I've tried it here, it successfully removes your junk route under 6.0 Regards, Brian. ___ freebsd-net@freebsd.org mailing l

Re: How do i send mail to certain domain users over external smtp using sendmail?

2006-05-11 Thread Brian Candler
samples and start tweaking to add whatever features and policies you like. The entire flow-of-control, from accepting mail to delivering it, is soft-coded in the configure file (but it doesn't look like Snoopy swearing) Regards, Brian. ___ freebsd-n

Re: How do i send mail to certain domain users over external smtp using sendmail?

2006-05-11 Thread Brian Candler
On Wed, May 10, 2006 at 05:47:48AM -0700, Nash Nipples wrote: >hi, i just dont see any options to make it work > > "| /usr/sbin/sendmail -Ac -t" works fine > but "| /usr/sbin/sendmail -O ConnectOnlyTo=smtp.external.co... -Ac -t" just > wont work: > WARNING: RunAsUser for MSP ignore

Re: [fbsd] Re: [fbsd] Network performance in a dual CPU system

2006-05-02 Thread Brian Candler
On Mon, May 01, 2006 at 11:38:39AM +1000, [EMAIL PROTECTED] wrote: > Would it be possible to improve the behaviour of the TCP protocol > implementation so that out-of-order reception was acceptable? Possibly - but if your FreeBSD box is acting as a router, and it re-orders packets in transit to t

Re: DHCP Over PPPoE

2006-04-28 Thread Brian Candler
On Thu, Apr 27, 2006 at 11:14:09AM -0700, Julian Elischer wrote: > > > A few things.. > > 1/ thisn is a FreeBSD list so we are not very familiar with linux. > 2/ PPPOE uses PPP which is a point-to-point protocol and does not support > broadcast. > 3/ DHCP is a broadcast protocol and does not s

Re: DHCP Over PPPoE

2006-04-27 Thread Brian Candler
; > of windows machine > > > > But there is no result > > > > Without PPPoE interfaces the windows machine is getting an > > ip in the range 192.168.40. > > > &g

Re: VLAN interfaces and routing

2006-04-27 Thread Brian Candler
n by 'ifconfig -a'. When you ping the default gateway, does the ARP cache get updated? (arp -an) HTH, Brian. ___ freebsd-net@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-net To unsubscribe, send any mail to "[EMAIL PROTECTED]"

Re: How to use if_bridge

2006-04-19 Thread Brian Candler
On Tue, Apr 18, 2006 at 01:14:27PM +0200, Sten Daniel Srsdal wrote: > hostap should work, ad-hoc should work. by infrastructure you mean that > the card operates as a 'station'? then it shouldn't work (correctly) as > defined by the standard. commercial products tend to implement "mac-nat" I've se

Re: Libpcap based: packet generator + capture file editor + bridge for IEEE802.3 on FreeBSD

2006-04-17 Thread Brian Candler
nerated from saved > tcpdump > capture file (trace file). Interesting - how does it differ from /usr/ports/net-mgmt/tcpreplay ? Regards, Brian. ___ freebsd-net@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-net To

Re: PPPoE question.

2006-04-12 Thread Brian Candler
y has meaning for serial links (e.g. where layer 1 is RS232 / V24) PPP frames carried inside ethernet (i.e. pppoe) are therefore also carried using synchronous encoding, since ethernet is synchronous. Brian. ___ freebsd-net@freebsd.org mailing list htt

Re: PPPoE question.

2006-04-12 Thread Brian Candler
On Wed, Apr 12, 2006 at 11:27:00AM +0800, fooler wrote: > >what the heck is synchronous pppoe? we connect to pppoe via ethernet so > >it is already synchronous (?) > > set speed sync And how does that change the pppoe ethernet frames? ___ freebsd-net@f

Re: is NFS production-ready ?

2006-04-12 Thread Brian Candler
in all situations (and many are not) Regards, Brian. ___ freebsd-net@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-net To unsubscribe, send any mail to "[EMAIL PROTECTED]"

Re: is NFS production-ready ?

2006-04-11 Thread Brian Candler
years ago using FreeBSD 4.x (4.6.2 I think), where all the front-ends used NFS to access data on a shared fileserver platform (NetApp). It worked without a hitch, and still does. Regards, Brian. ___ freebsd-net@freebsd.org mailing list http://lists.fr

Re: floating a server room... how do you deal with ethernet connections?

2006-03-13 Thread Brian Candler
nd capacitive components to earth, so it may not float that far. Regards, Brian. ___ freebsd-net@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-net To unsubscribe, send any mail to "[EMAIL PROTECTED]"

Re: nfs locking broken

2006-02-26 Thread Brian Candler
s* relying on locking somehow, directly or indirectly. Regards, Brian. ___ freebsd-net@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-net To unsubscribe, send any mail to "[EMAIL PROTECTED]"

Re: socket / bind - specific address

2006-02-25 Thread Brian Candler
ay is to run your daemon (ntpd, syslogd etc) within a jail, and give the jail your public loopback as its IP address. Another is just to configure each daemon to bind to the appropriate port, if it supports that option. syslogd has a '-b' flag; I don't know if nt

Re: fastforward problem

2006-02-13 Thread Brian Candler
cts, there's almost certainly a transparent cache upstream. (3) You have some sort of path MTU issue. I don't know why. Perhaps your upstream link is running PPPoE or something which is not clear for 1500-byte packets. If so, it ought to work, but bad filter

Re: fastforward problem

2006-02-12 Thread Brian Candler
19 Date: Sun, 12 Feb 2006 12:47:08 GMT Connection: Keep-Alive 301 Moved 301 Moved The document has moved http://www.google.com/";>here. Connection closed by foreign host. OK, that's fine. google.com has redirected me to www.google.com. So try the whole process again with www.

Re: freebsd 6.0 network card / route fail over question

2006-02-04 Thread Brian Candler
your servers reachable. And keep a spare switch in the closet. Method (3) is the one I've used successfully for a mailserver cluster. There were two MX receivers, two webmail servers, four POP3 servers; half on one uplink and half on the other. IMO it's at least as likely likely that a wh

Re: Network client is the same from server

2006-02-01 Thread Brian Candler
uld only need two 'binat' rules, but I'm not sure how you go about reversing the in/out sense. There's a separate freebsd-pf mailing list which might be able to help. Regards, Brian. ___ freebsd-net@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-net To unsubscribe, send any mail to "[EMAIL PROTECTED]"

Re: Network client is the same from server

2006-01-31 Thread Brian Candler
eed -redirect_address 192.168.0.1 192.168.100.1 -redirect_address 192.168.0.2 192.168.100.2 ... and on GW2 you'd need -redirect_address 192.168.0.1 192.168.200.1 -redirect_address 192.168.0.2 192.168.200.2 ... Brian. ___ freebsd-net@fr

Re: /usr/src/lib/libc/net/res_debug.c: compile problem fixed

2006-01-30 Thread Brian Candler
e, e.g. by putting loads of 'volatile' declarations in, but catching every single case where this is required is extremely different. This may be more of a problem with the kernel than with userland though. Regards, Brian. ___ freebsd-net@freebsd.or

Re: multiple natd + ipfw, with 2 internal ip's

2006-01-30 Thread Brian Candler
teway PC which monitors the link status, and changes its own defaultroute to point to the other ISP. HTH, Brian. ___ freebsd-net@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-net To unsubscribe, send any mail to "[EMAIL PROTECTED]"

Re: /usr/src/lib/libc/net/res_debug.c: compile problem fixed

2006-01-29 Thread Brian Candler
On Sun, Jan 29, 2006 at 06:50:06PM +1030, Aluminium Oxide wrote: > > Suggestion: use unified diff (diff -u res_debug.org.c res_debug.c). It's > > *much* easier to read. > > > > Regards, > > > > Brian. > > Thankyou Brian, I've done as you su

Re: sl2tps, MRU, MTU, and MSS

2006-01-28 Thread Brian Candler
sender, and this is pointless. As you say, it does trigger the path MTU problem elsewhere in the network, but even if path MTU were working correctly, it would result in a sub-optimal choice of MSS. (Aside: RFC 1661 section 6.1 says that if an implementation asks for an MRU of less than 1500, it MU

Re: sl2tps, MRU, MTU, and MSS

2006-01-27 Thread Brian Candler
On Fri, Jan 27, 2006 at 08:39:41AM -0600, Archie Cobbs wrote: > Brian Candler wrote: > >>1. PPP negotiates an MRU of 1400 > >>2. However, ifconfig ng0 shows an MTU of 1376 (where does that come from?) > >>3. When the client opens a TCP connection, it offers an

Re: Named could not listen on UDP socket: permission denied

2006-01-27 Thread Brian Candler
ich kills and restarts bind. Does mpd have a hook to call a script on interface up? Regards, Brian. ___ freebsd-net@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-net To unsubscribe, send any mail to "[EMAIL PROTECTED]"

Re: sl2tps, MRU, MTU, and MSS

2006-01-27 Thread Brian Candler
On Thu, Jan 05, 2006 at 11:04:04AM +, Brian Candler wrote: > I've done a bit more debugging on the MSS problem I'm having with sl2tps > running with IPSEC transport layer security. The client is Windows XP > out-of-the-box. > > Here's what happens: > >

Re: IPSEC documentation

2006-01-20 Thread Brian Candler
IPPROTO_UDP,PR_ATOMIC|PR_ADDR, - udp_input, 0, udp_ctlinput, ip_ctloutput, + udp_input, 0, udp_ctlinput, udp_ctloutput, 0, udp_init,0, 0, 0, &udp_usrreqs Haven't tested it yet - just waiting for ker

Re: pf: redirect packets from localhost

2006-01-19 Thread Brian Candler
On Wed, Jan 18, 2006 at 03:49:18PM +0100, Sebastian Schwerdhoefer wrote: > Short question: > Is it possible to redirect packets from localhost with "rdr"? Short answer: yes. Longer answer: perhaps this is the kind of thing you're looking for. http://lists.freebsd.org/pipermail/freebsd-pf/2005-Sep

Re: NAT over IPSECed WLAN

2006-01-17 Thread Brian Candler
ght help locate it. If you still think its an IPSEC problem, "options IPSEC_DEBUG" might also be useful. Regards, Brian. ___ freebsd-net@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-net To unsubscribe, send any mail to "[EMAIL PROTECTED]"

Re: NAT over IPSECed WLAN

2006-01-16 Thread Brian Candler
y. (Presumably you do have IP forwarding turned on, since the gateway works in the absence of IPSEC) I suggest you don't "browse" from XP: start by sending pings. Then you have a steady stream of packets, and DNS doesn't get in the way either. Regards, Brian. ___ freebsd-net@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-net To unsubscribe, send any mail to "[EMAIL PROTECTED]"

Re: NAT over IPSECed WLAN

2006-01-16 Thread Brian Candler
0 any -P in ipsec esp/tunnel/10.2.0.2-10.2.0.1/require; spdadd 0.0.0.0/0 10.2.0.2/32 any -P out ipsec esp/tunnel/10.2.0.1-10.2.0.2/require; Also, the output of 'tcpdump' on both ndis0 and fxp0, while you try to browse a website from the XP box, could be very enlightening. Rega

  1   2   3   >