Re: [PATCH] pf(4) patch from OpenBSD 4.5

2010-10-23 Thread Max Laier
C'mon ... where are the testers at? On 18.10.2010 11:10, Ermal Luçi wrote: Feedback is very welcome. Is there no-one testing Ermal's exciting patch? Let's help getting this tested ... before we put it into SVN! fetch http://people.freebsd.org/~eri/pf45_1.diff patch -p1 < pf45_1.diff make b

Re: [PATCH] pf(4) patch from OpenBSD 4.5

2010-10-18 Thread Max Laier
On 18.10.2010 20:16, Brandon Gooch wrote: On Mon, Oct 18, 2010 at 1:10 PM, Ermal Luçi wrote: Hello, the link http://people.freebsd.org/~eri/pf45_1.diff has the patch for pf(4) as of OpenBSD 4.5 version. The patch is against HEAD. After OpenBSD 4.5 the syntax has changed and this is the reason

Re: Observations from an old timer playing with 64 bit numbers...

2010-06-22 Thread Max Laier
On Tuesday 22 June 2010 23:46:02 Randall Stewart wrote: > Hi all: > > I have had some fun in my day job playing with exchanging 64bit > numbers. Unfortunately > there is no ntohll() OR htonll() which would be the logical thing (for > us old farts) to use. > > Yes, I have found htobe64() and frien

Re: PF + BRIDGE still causes system freezing

2010-05-31 Thread Max Laier
On Monday 31 May 2010 08:03:09 Giulio Ferro wrote: > Max Laier wrote: > > On Friday 28 May 2010 07:46:07 Giulio Ferro wrote: > >> Months ago I reported a system freezing whenever bridge was used > >> with pf. This still happens now in 8.1 prerelease: after several minu

Re: PF + BRIDGE still causes system freezing

2010-05-28 Thread Max Laier
On Friday 28 May 2010 07:46:07 Giulio Ferro wrote: > Months ago I reported a system freezing whenever bridge was used > with pf. This still happens now in 8.1 prerelease: after several minutes > to hours > that the bridge is active the system becomes unresponsive. as I told you last time your repo

Re: PF + BRIDGE + PFSYNC causes system freezing

2010-03-18 Thread Max Laier
On Thursday 18 March 2010 17:39:29 Giulio Ferro wrote: > On 18.03.2010 15:26, Max Laier wrote: > > Ok, it's happened again... > and once the system freezes try to enter the debugger and get ps and > > >>>>> locks information. > >>>>> >

Re: PF + BRIDGE + PFSYNC causes system freezing

2010-03-18 Thread Max Laier
On Thursday 18 March 2010 15:04:06 Giulio Ferro wrote: > On 17.03.2010 18:00, Max Laier wrote: > > Can you enable WITNESS and compile in DDB. Make sure to report any LORs > > > >>> and once the system freezes try to enter the debugger and get ps and > >>&

Re: PF + BRIDGE + PFSYNC causes system freezing

2010-03-17 Thread Max Laier
On Wednesday 17 March 2010 17:57:54 Giulio Ferro wrote: > On 17.03.2010 17:47, Max Laier wrote: > > On Wednesday 17 March 2010 17:37:31 Giulio Ferro wrote: > >> On 17.03.2010 16:50, Greg Hennessy wrote: > >>> A possible corner case with the virtual hosting platform

Re: PF + BRIDGE + PFSYNC causes system freezing

2010-03-17 Thread Max Laier
On Wednesday 17 March 2010 17:37:31 Giulio Ferro wrote: > On 17.03.2010 16:50, Greg Hennessy wrote: > > A possible corner case with the virtual hosting platform ? > > > > Try changing the NICS from EM to something else supported RL on vmware > > IIRC. > > Nope, I'm not using virtualization, that's

Re: CARP vs. if_bridge

2010-02-19 Thread Max Laier
On Thursday 18 February 2010 18:02:55 Boris Kochergin wrote: > Ahoy. I'm seeing what appears to be erroneous interaction between CARP > and if_bridge on multiple machines with a variety of Ethernet > controllers and architectures. I've observed it on 7.2-R and 8.0-R. The > test setup is simple enou

Re: kern/143622: [pfil] [patch] unlock pfil lock while calling firewall hooks

2010-02-07 Thread Max Laier
The following reply was made to PR kern/143622; it has been noted by GNATS. From: Max Laier To: bug-follo...@freebsd.org, gleb.kurt...@gmail.com Cc: Subject: Re: kern/143622: [pfil] [patch] unlock pfil lock while calling firewall hooks Date: Mon, 8 Feb 2010 02:55:41 +0100 Please no. The

Re: FreeBSD 8: ipfw fwd and pf route-to broken?

2009-12-07 Thread Max Laier
On Friday 04 December 2009 09:47:37 Lytochkin Boris wrote: > It seems that FreeBSD 8 has ipfw fwd and pf's route-to malfunctioning: > 1) ipfw fwd > a) net.inet.ip.forwarding = 0 > Packets altered by fwd rule are silently dropped somewhere > between ip_output() checking forward tag and bpf (tcpdum

Re: (just for fun) port of OpenBSD pf's sloppy mode

2009-08-20 Thread Max Laier
s where pf(4) won't see > some packets in the connection. -- /"\ Best regards, | mla...@freebsd.org \ / Max Laier | ICQ #67774661 X http://pf4freebsd.love2party.net/ | mla...@efnet / \ ASCII Ribbon Campaign | Against

Re: FreeBSD + carp on VMWare ESX

2009-07-20 Thread Max Laier
_ > freebsd-net@freebsd.org mailing list > http://lists.freebsd.org/mailman/listinfo/freebsd-net > To unsubscribe, send any mail to "freebsd-net-unsubscr...@freebsd.org" > > > !DSPAM:4a63ab8151950127

Re: kern/133572: [ppp] [hang] incoming PPTP connection hangs the system

2009-04-10 Thread Max Laier
The following reply was made to PR kern/133572; it has been noted by GNATS. From: Max Laier To: bug-follo...@freebsd.org, dennis.melent...@gmail.com Cc: Subject: Re: kern/133572: [ppp] [hang] incoming PPTP connection hangs the system Date: Fri, 10 Apr 2009 23:47:55 +0100 Is it possible for

Re: #netstat -rn output

2009-03-24 Thread Max Laier
> 172.16.104.2 208.70.111.66 UGH1016184em6 > 172.16.104.3 208.70.111.54 UGH1011745 em3.30 > 172.16.104.99 208.70.111.62 UGH10 1171 em1.99 > 208.70.107.0/25208.70.111.54 UG1 0 28066384 em3.3

Re: A more pliable firewall

2009-02-20 Thread Max Laier
Zombies. > > ___ > > freebsd-net@freebsd.org mailing list > > http://lists.freebsd.org/mailman/listinfo/freebsd-net > > To unsubscribe, send any mail to "freebsd-net-unsubscr...@freebsd.org" -- /"\ Best regards,

Re: Multiple ISP routing by port

2009-01-26 Thread Max Laier
rather avoid that if at > all possible. > > Is there some trick I'm missing? Does quagga (bgpd) allow for this kind of > routing scheme? -- /"\ Best regards, | mla...@freebsd.org \ / Max Laier | ICQ #67774661 X h

Re: kernel network

2008-12-30 Thread Max Laier
ccessing the network from kernel space. > > What do you all suggest? $ man 9 socket -- /"\ Best regards, | mla...@freebsd.org \ / Max Laier | ICQ #67774661 X http://pf4freebsd.love2party.net/ | mla...@efnet / \ ASCII Ribbon C

Re: IPv6 routing help?

2008-12-18 Thread Max Laier
On Friday 19 December 2008 01:11:51 Ivan Voras wrote: > Max Laier wrote: > > On the interface you are running rtadvd you need a global address out of > > your stf prefix, e.g. 2002:aabb:ccdd:1::/64. Once you do that, > > everything else should just fall into place. The

Re: IPv6 routing help?

2008-12-18 Thread Max Laier
experience can explain why your router is not > > doing the expected thing. > > IPv6 from and to the "router" (it's actually an ordinary machine doing > lots of stuff) works for all purposes. -- /"\ Best regards, | mla...@freebsd.org \ / Max

Re: bsnmpd & 64bits counters problem

2008-12-16 Thread Max Laier
should add the individual speeds (as this is the highest rate at which the interface counter could be increased). If it's in failover you should propagate the speed of the active interface. When in doubt, always report the highest value - at least for the purpose discussed here. -- /&q

Re: PPP / Routing table

2008-12-15 Thread Max Laier
It is also unclear to me why you'd see RTF_GATEWAY on ptp routes. It might help to ktrace poptop to see what kind of ioctl it is issuing. -- /"\ Best regards, | mla...@freebsd.org \ / Max Laier

Re: HEADS UP: vimage - virtualized global variables in the network stack

2008-12-13 Thread Max Laier
ous error (global available, but not in the container struct - or the other way around) can be warned about? -- /"\ Best regards, | mla...@freebsd.org \ / Max Laier | ICQ #67774661 X http://pf4freebsd.love2party.net/ | mla...@efnet / \ ASCII

Re: Heads up --- Thinking about UDP and tunneling

2008-12-13 Thread Max Laier
e. > followed behind it I will send in the changes so SCTP can be tunneled over > this new mechanism :-) -- /"\ Best regards, | mla...@freebsd.org \ / Max Laier | ICQ #67774661 X http://pf4freebsd.love2party.net/ | mla...@efnet /

Re: Heads up --- Thinking about UDP and tunneling

2008-12-12 Thread Max Laier
On Friday 12 December 2008 13:56:38 Randall Stewart wrote: > On Dec 11, 2008, at 8:12 AM, Max Laier wrote: > > On Thursday 11 December 2008 13:50:39 Randall Stewart wrote: ... > Another thing... kinda weird.. when I have this thing working with > SCTP and I > let the SCTP stack

Re: freebsd system calls

2008-12-11 Thread Max Laier
rep ^read *" should get you started. For the C function names take a look as syscalls.master in the same directory. -- /"\ Best regards, | mla...@freebsd.org \ / Max Laier | ICQ #67774661 X http://pf4freebsd.love2party.net/ | mla...

Re: Heads up --- Thinking about UDP and tunneling

2008-12-11 Thread Max Laier
d udp_set_kernel_tunneling maybe check that the socket isn't bound yet? -- /"\ Best regards, | [EMAIL PROTECTED] \ / Max Laier | ICQ #67774661 X http://pf4freebsd.love2party.net/ | [EMAI

Re: Thinking about UDP and tunneling

2008-11-20 Thread Max Laier
ut with the by-pass function et voila. Should be clean enough. There might be some problems with holding the socket lock, though. For the record, I don't like all the UDP-tunneling madness either, but it seems that we are stuck with it ... so we should at least try to come up with

Re: tokenring users?

2008-11-19 Thread Max Laier
ason. While TR was nice back in the days of 10Mbit ethernet hub days, there is no longer a market for it, except for the aforementioned IBM terminal - where FreeBSD really doesn't play. -- /"\ Best regards, | [EMAIL PROTECTED] \ / Max Laier

Re: Thinking about UDP and tunneling

2008-11-19 Thread Max Laier
t -d"|" -f2 | sort | \ uniq -c | sort in sys/netinet/libalias gives a list of people who touched that code recently (for some definition of recently). I'd be happy to take a look, too ... though I might need some time for a proper review. In general, you touch it you bought

Re: conf/128030: [request] Isn't it time to enable IPsec in GENERIC?

2008-10-18 Thread Max Laier
prediction and cache sizes). This would have to be measured as well, of course. Maybe this should go to the project page? It's a good junior kernel hacker project, I believe. -- /"\ Best regards, | [EMAIL PROTECTED] \ / Max Laier | ICQ #67

Re: [patch] src port randomization for inet6

2008-10-16 Thread Max Laier
me is true for the v4 version. -- /"\ Best regards, | [EMAIL PROTECTED] \ / Max Laier | ICQ #67774661 X http://pf4freebsd.love2party.net/ | [EMAIL PROTECTED] / \ ASCII Ribbon Campaign | Agains

Re: Firewall redirect doesn't work any more...

2008-09-22 Thread Max Laier
On Monday 22 September 2008 12:22:09 Pawel Jakub Dawidek wrote: > On Fri, Sep 19, 2008 at 03:38:02PM +0200, Max Laier wrote: > > I might be wrong, but I don't think we ever supported rdr without > > net.inet.ip.forwarding enabled. Maybe to a different local address, but >

Re: Firewall redirect doesn't work any more...

2008-09-19 Thread Max Laier
forwarding to 1, even > though packet is not forwarded between interfaces (everything is related > to fxp0 only). I might be wrong, but I don't think we ever supported rdr without net.inet.ip.forwarding enabled. Maybe to a different local address, but even then you'd need net.ine

Re: [Fwd: IPFW PATCH: make the IPFW_DEFUALT_RULE number constant non private]

2008-08-23 Thread Max Laier
t; ___ > > freebsd-net@freebsd.org mailing list > > http://lists.freebsd.org/mailman/listinfo/freebsd-net > > To unsubscribe, send any mail to "[EMAIL PROTECTED]" > > ___ > fr

Re: OpenLISP

2008-07-20 Thread Max Laier
of stuff into the main ip code as it hurts readability a lot. -- /"\ Best regards, | [EMAIL PROTECTED] \ / Max Laier | ICQ #67774661 X http://pf4freebsd.love2party.net/ | [EMAIL PROTECTED] / \ ASCII Ribbon Campaign | Against HTML Mail and News

Re: etc/rc.firewall6

2008-07-17 Thread Max Laier
6 in base is supposed to work with the ntpd in base. We should, however, not forget about ntpdate, which seems to use ephemeral ports. -- /"\ Best regards, | [EMAIL PROTECTED] \ / Max Laier | ICQ #67774661 X http://pf4freebsd.love2party.net/

Re: altq on vlan

2008-07-01 Thread Max Laier
On Tuesday 01 July 2008 15:21:35 Sergey Matveychuk wrote: > Max Laier wrote: > > Now please ... let this die, it's stupid! > > I wrote the patch for *very* specific purpose. I've never want to ask > commit it and I did not think it'll be use someone seriously. >

Re: altq on vlan

2008-06-29 Thread Max Laier
On Saturday 28 June 2008 13:14:27 [EMAIL PROTECTED] wrote: > [ Charset ISO-8859-1 unsupported, converting... ] > > > On Friday 27 June 2008 18:57:59 Alexandre Biancalana wrote: > > > On 6/27/08, Max Laier <[EMAIL PROTECTED]> wrote: > > > > You don't nee

Re: altq on vlan

2008-06-27 Thread Max Laier
On Friday 27 June 2008 18:57:59 Alexandre Biancalana wrote: > On 6/27/08, Max Laier <[EMAIL PROTECTED]> wrote: > > You don't need a patch at all. What you do is: Queue on the > > physical interface, classify on the vlan interface. It is broken to > > allow ALTQ o

Re: altq on vlan

2008-06-27 Thread Max Laier
queue { vlan0, vlan1, ... } queue vlan0 ... { vlan0_foo, vlan0_bar, ... } queue vlan0_foo queue vlan0_bar ... pass on vlanX ... queue vlanX_foobar And there you go. No patch - whatsoever - required here. -- /"\ Best regards, | [EMAIL PROTECTED] \ / Max Laier

Re: Why isn't ALTQ in GENERIC?

2008-06-24 Thread Max Laier
If you can answer the same question for IPSEC, that would be nice, > too! Size? -- /"\ Best regards, | [EMAIL PROTECTED] \ / Max Laier | ICQ #67774661 X http://pf4freebsd.love2party.net/

Re: Proposal: Enable IPv6 Privacy Extensions (RFCs 3041/4941) by default

2008-06-10 Thread Max Laier
, sure that we implement RFC 4941 fully? I think there are some configuration parameters missing. Also, I seem to recall that our DAD wasn't quite state-of-the-art, yet. Finally, any chance I can get you to implement the socket options in RFC 5014, so that programs have can force a temp/sta

Re: anyone tried the Multi routing table code yet?

2008-06-05 Thread Max Laier
> > Device busy when trying to load "pass in quick on fxp0 from any to > > any keep state rtable 1" > > I'm not really familiar with the pf syntax > as I didn't do that part of the patch (max laier (CC'd) did) > and I don't use pf. > > M

Re: Understanding the interplay of ipfw, vlan, and carp

2008-06-04 Thread Max Laier
On Wednesday 04 June 2008 10:14:43 Peter Jeremy wrote: > On 2008-Mar-04 23:20:26 +0100, Max Laier <[EMAIL PROTECTED]> wrote: > >You could try the attached patch. It adds carpdev support. You'll > > have to recompile ifconfig to make use of it. > > I have just

Re: carpdev

2008-06-03 Thread Max Laier
patch ready for testing and > needs more wide-spread testing. Or scroll up to Monday on this list ;) -- /"\ Best regards, | [EMAIL PROTECTED] \ / Max Laier | ICQ #67774661 X http://pf4freebsd.love2party.net/ | [EMAIL PROTECTED] / \ ASCII

Re: carpdev?

2008-06-02 Thread Max Laier
On Monday 02 June 2008 19:17:40 Freddie Cash wrote: > On June 2, 2008 10:03 am Max Laier wrote: > > I did the attached patch some time ago, but didn't find sufficient > > testers and when I did - I didn't have time. This should work. > > Is this the same patch I tes

Re: carpdev?

2008-06-02 Thread Max Laier
I did the attached patch some time ago, but didn't find sufficient testers and when I did - I didn't have time. This should work. -- /"\ Best regards, | [EMAIL PROTECTED] \ / Max Laier | ICQ #67774661 X http://pf4freebsd

Re: lagg0.2 style vlans on lagg(4) interface

2008-05-21 Thread Max Laier
On Thursday 22 May 2008 00:14:37 Niki Denev wrote: > On Thu, May 22, 2008 at 12:32 AM, Max Laier <[EMAIL PROTECTED]> wrote: > > On Wednesday 21 May 2008 23:22:52 Niki Denev wrote: > >> On Thu, May 22, 2008 at 12:05 AM, Max Laier <[EMAIL PROTECTED]> wrote: > >

Re: lagg0.2 style vlans on lagg(4) interface

2008-05-21 Thread Max Laier
On Wednesday 21 May 2008 23:22:52 Niki Denev wrote: > On Thu, May 22, 2008 at 12:05 AM, Max Laier <[EMAIL PROTECTED]> wrote: > > Looks good, though I'd probably move up the _INVOKE to before the > > ARPs are sent out. Probably between twiddling the hardware and > >

Re: lagg0.2 style vlans on lagg(4) interface

2008-05-21 Thread Max Laier
On Wednesday 21 May 2008 22:44:42 Niki Denev wrote: > On Wed, May 21, 2008 at 8:44 PM, Max Laier <[EMAIL PROTECTED]> wrote: > >> It doesn't (and shouldn't have to). I'd simply add an > >> EVENTHANDLER_INVOKE(ifaddr_event, ifp) to if_setlladdr() - we do &g

Re: lagg0.2 style vlans on lagg(4) interface

2008-05-21 Thread Max Laier
dr() - we do that for INET[6] address already. Then vlan (and any other device interested in LLaddress changes) can simply register to that eventhandler and resync. -- /"\ Best regards, | [EMAIL PROTECTED] \ / Max Laier | ICQ

Re: Multiple routing tables in action...

2008-04-29 Thread Max Laier
policy routing. > >> ___ > >> freebsd-net@freebsd.org mailing list > >> http://lists.freebsd.org/mailman/listinfo/freebsd-net > >> To unsubscribe, send any mail to > >> "[EMAIL PROTECTED]"

Re: getifaddrs() scalability

2008-04-05 Thread Max Laier
;\ Best regards, | [EMAIL PROTECTED] \ / Max Laier | ICQ #67774661 X http://pf4freebsd.love2party.net/ | [EMAIL PROTECTED] / \ ASCII Ribbon Campaign | Against HTML Mail and News __

Re: kern/121574: [carp] CARP hash dependent on order of IP addresses on interface

2008-03-11 Thread Max Laier
The following reply was made to PR kern/121574; it has been noted by GNATS. From: "Max Laier" <[EMAIL PROTECTED]> To: [EMAIL PROTECTED] Cc: [EMAIL PROTECTED], [EMAIL PROTECTED] Subject: Re: kern/121574: [carp] CARP hash dependent on order of IP addresses on interface Date:

Re: randomized CARP ip alias order -> breaks CARP (incorrect hash)

2008-03-09 Thread Max Laier
condary > had the carp2_alias0 listed as first, > where as the primary had the carp2 as first, and the carp2_alias0 as > second > address. > > How can this ever happen ? And what can I do to (manually) prevent this ? > > Now I'm redundant but I must pray that the

Re: pf reply-to broken in RELENG_7

2008-03-06 Thread Max Laier
be restored. > > Could anybody help to resolve this? Might be the lack of sleep and coffee, but I can't quite figure out the network layout you are talking about. Could you draw up a small example setup so I can follow? Or at least (pseudo-)IP addresses for client, load-balancer, pf-box

Re: Understanding the interplay of ipfw, vlan, and carp

2008-03-05 Thread Max Laier
Am Mi, 5.03.2008, 20:39, schrieb Freddie Cash: > On March 4, 2008 03:25 pm Freddie Cash wrote: >> On March 4, 2008 02:20 pm Max Laier wrote: >> > Am Di, 4.03.2008, 22:51, schrieb Freddie Cash: >> > ... >> > >> > > The lack of a "

Re: Understanding the interplay of ipfw, vlan, and carp

2008-03-04 Thread Max Laier
ENG_7 and HEAD w/o too much trouble. Any feedback appreciated! -- /"\ Best regards, | [EMAIL PROTECTED] \ / Max Laier | ICQ #67774661 X http://pf4freebsd.love2party.net/ | [EMAIL PROTECTED] / \ ASCII Ribbon Campaign | Against HTML

Re: IPv6 addresses not released when routes change

2008-03-04 Thread Max Laier
nteresting. Bad parameters in the RA can slow down the process, but eventually the kernel should figure out that the router is no longer reachable and mark the prefixes as such. -- /"\ Best regards, | [EMAIL PROTECTED] \ / Max Laier | ICQ

Re: redirecting connections based on probability

2008-02-29 Thread Max Laier
f proto tcp from any to any port 80 \ -> { $IP_B, $IP_A, $IP_B } round-robin This also works with random pool selection. src-hash and bitmask are obviously another story. sticky-address might also skew the results, but could be a good idea nontheless. -- /"\ Best regards,

Re: kern/120130: [carp] [panic] carp causes kernel panics in any constellation

2008-01-31 Thread Max Laier
The following reply was made to PR kern/120130; it has been noted by GNATS. From: "Max Laier" <[EMAIL PROTECTED]> To: [EMAIL PROTECTED] Cc: [EMAIL PROTECTED], [EMAIL PROTECTED] Subject: Re: kern/120130: [carp] [panic] carp causes kernel panics in any constellation Date: Thu

OT: ifconfig bridge0 span foo0 (under linux)

2008-01-07 Thread Max Laier
th Linux I just don't know where to look :-\ Thanks and sorry for the noise, but I'm desperate by now. -- /"\ Best regards, | [EMAIL PROTECTED] \ / Max Laier | ICQ #67774661 X http://pf4freebsd.love2party.net/ | [EMAIL PRO

Re: Spurious error from i[pf]_carp

2007-12-14 Thread Max Laier
of the turds which end up floating in everyone's midst as a > result, if you'll pardon the analogy. /* no comment */ -- /"\ Best regards, | [EMAIL PROTECTED] \ / Max Laier | ICQ #67774661 X http://pf4freebsd.love2party.net/ |

Re: is carp on if_bridge possible?

2007-12-14 Thread Max Laier
y you would want to carp bridges. -- /"\ Best regards, | [EMAIL PROTECTED] \ / Max Laier | ICQ #67774661 X http://pf4freebsd.love2party.net/ | [EMAIL PROTECTED] / \ ASCII Ribbon Campaign | Against HTML Mail and News signat

Re: default route

2007-12-14 Thread Max Laier
e same routing as kernel generated replys to that network. Check out "netstat -rnfinet" to make sure your routing is what you believe it to be. Also use tcpdump to verify your assumptions. -- /"\ Best regards, | [EMAIL PROTECTED] \

Re: bikeshed for all!

2007-12-12 Thread Max Laier
On Thursday 13 December 2007, Julian Elischer wrote: > Max Laier wrote: > > On Wednesday 12 December 2007, Julian Elischer wrote: > >> So, I'm playing with some multiple routing table support.. > >> the first version is a minimal impact version with very limited &g

Re: bikeshed for all!

2007-12-12 Thread Max Laier
t;inside" a certain network view. OTOH, how - in your system - would you decide which table to use for forwarded packets? More to the bikeshed pov, "universe" seems rather broad. "netview" comes to mind. "rtabselect", though that has a lot of characters, bu

Re: ifconfig: BRDGADD vr1: Invalid argument

2007-12-12 Thread Max Laier
ier > ath0: flags=8843 metric 0 mtu > 1500 ether 00:0b:6b:83:59:25 > media: IEEE 802.11 Wireless Ethernet autoselect > (autoselect ) status: associated > ssid rgnet-aden channel 4 (2427 Mhz 11g) bssid > 00:0b:6b:83:59:25 authmode OPEN privacy ON deftxkey UN

Re: Switch pfil(9) to rmlocks

2007-11-25 Thread Max Laier
On Sunday 25 November 2007, Darren Reed wrote: > Max Laier wrote: > > On Sunday 25 November 2007, Darren Reed wrote: > > > Max Laier wrote: > > > > On Friday 23 November 2007, Robert Watson wrote: > > > > > On Fri, 23 Nov 2007, Max Laier wrote: > &

Re: Switch pfil(9) to rmlocks

2007-11-25 Thread Max Laier
On Sunday 25 November 2007, Darren Reed wrote: > Max Laier wrote: > > On Friday 23 November 2007, Robert Watson wrote: > > > On Fri, 23 Nov 2007, Max Laier wrote: > > > > attached is a diff to switch the pfil(9) subsystem to rmlocks, > > > > which ar

Re: Switch pfil(9) to rmlocks

2007-11-24 Thread Max Laier
On Saturday 24 November 2007, Kris Kennaway wrote: > Max Laier wrote: > > On Friday 23 November 2007, Robert Watson wrote: > >> On Fri, 23 Nov 2007, Max Laier wrote: > >>> attached is a diff to switch the pfil(9) subsystem to rmlocks, > >>> which ar

Re: Switch pfil(9) to rmlocks

2007-11-24 Thread Max Laier
On Saturday 24 November 2007, Max Laier wrote: > On Friday 23 November 2007, Robert Watson wrote: > > On Fri, 23 Nov 2007, Max Laier wrote: > > > attached is a diff to switch the pfil(9) subsystem to rmlocks, > > > which are more suited for the task. I'd like some

Re: Switch pfil(9) to rmlocks

2007-11-24 Thread Max Laier
On Friday 23 November 2007, Robert Watson wrote: > On Fri, 23 Nov 2007, Max Laier wrote: > > attached is a diff to switch the pfil(9) subsystem to rmlocks, which > > are more suited for the task. I'd like some exposure before doing > > the switch, but I don't exp

Re: Switch pfil(9) to rmlocks

2007-11-23 Thread Max Laier
On Friday 23 November 2007, Robert Watson wrote: > On Fri, 23 Nov 2007, Max Laier wrote: > > attached is a diff to switch the pfil(9) subsystem to rmlocks, which > > are more suited for the task. I'd like some exposure before doing > > the switch, but I don't exp

Switch pfil(9) to rmlocks

2007-11-23 Thread Max Laier
\ Best regards, | [EMAIL PROTECTED] \ / Max Laier | ICQ #67774661 X http://pf4freebsd.love2party.net/ | [EMAIL PROTECTED] / \ ASCII Ribbon Campaign | Against HTML Mail and News Index: pfil.c ===

Re: a format error in pf_print_host()

2007-11-20 Thread Max Laier
other versions. Seems your diff got lost during transmission, could you resend - please? -- /"\ Best regards, | [EMAIL PROTECTED] \ / Max Laier | ICQ #67774661 X http://pf4freebsd.love2party.net/ | [EMAIL PROTECTED] / \ ASCII Ribbon Camp

Re: pf misfeature

2007-11-12 Thread Max Laier
On Monday 12 November 2007, Daniel Hartmeier wrote: > On Fri, Nov 09, 2007 at 12:59:46AM +0100, Max Laier wrote: > > Daniel, do you spot anything strange with these skip steps (or > > otherwise)? > > The problem is the lack of IP reassembly in this configuration. > > In

Re: pf misfeature

2007-11-09 Thread Max Laier
On Friday 09 November 2007, Dag-Erling Smørgrav wrote: > Max Laier <[EMAIL PROTECTED]> writes: > > No, I don't see why these two should behave differently, but you > > should add a "scrub in on sk0" in any case. > > scrub is known and documented to interfe

Re: pf misfeature

2007-11-08 Thread Max Laier
On Thursday 08 November 2007, Dag-Erling Smørgrav wrote: > Max Laier <[EMAIL PROTECTED]> writes: > > On Thursday 08 November 2007, Dag-Erling Smørgrav wrote: > > > With "pass on $eth from $lan to $lan", NFS doesn't work. With "pass on > > > $et

Re: pf misfeature

2007-11-08 Thread Max Laier
On Thursday 08 November 2007, Dag-Erling Smørgrav wrote: > Max Laier <[EMAIL PROTECTED]> writes: > > On Thursday 08 November 2007, Dag-Erling Smørgrav wrote: > >> but what you actually get is this: > >> > >> pass on $eth from $lan to $lan flags S/SA k

Re: pf misfeature

2007-11-08 Thread Max Laier
On Thursday 08 November 2007, Dag-Erling Smørgrav wrote: > Max Laier <[EMAIL PROTECTED]> writes: > > On Thursday 08 November 2007, Dag-Erling Smørgrav wrote: > >> but what you actually get is this: > >> > >> pass on $eth from $lan to $lan flags S/SA k

Re: pf misfeature

2007-11-08 Thread Max Laier
n $eth inet proto udp from $lan to $lan keep state > > There does not seem to be any way to turn off this misguided rewriting > of firewall rules. -- /"\ Best regards, | [EMAIL PROTECTED] \ / Max Laier | ICQ #67774661 X http

Re: Correct way to enable ipv6 and sixxs-aiccu?

2007-10-31 Thread Max Laier
hout a rtadvd.conf. In addition I have ipv6_defaultrouter set to my PoPs tunnel endpoint. That's what works for me. I'm not sure what the benefit of an autoconfigured address on vr0 would be. I find it easier to refer to my local router as ::/128. -- /"\ Best regards, | [EMAIL PROTECTED] \ / Max Laier | ICQ #67774661 X http://pf4freebsd.love2party.net/ | [EMAIL PROTECTED] / \ ASCII Ribbon Campaign | Against HTML Mail and News signature.asc Description: This is a digitally signed message part.

Re: IPv6 <-> NAT <-> IPv4 ... possible?

2007-10-19 Thread Max Laier
r the moment - if you want your clients to do more than just surf webpages - you want NAT. If it's only about surfing WWW you could try a (transparent) web proxy on your dual stack router, but don't expect to find a lot of documentation! -- /"\ Best regards,

Re: libpcap/tcpdump update

2007-10-19 Thread Max Laier
ENG_6 isn't broken for me ... Any takers? If not I might get round to it eventually, but I'd prefer somebody with genuine interest would step up. -- /"\ Best regards, | [EMAIL PROTECTED] \ / Max Laier | ICQ #67774661 X http://pf4fr

Re: packet loss with carp on 6.2

2007-10-18 Thread Max Laier
On Thursday 18 October 2007, Milan Obuch wrote: > On Thursday 18 October 2007 14:32:13 Milan Obuch wrote: > > On Thursday 18 October 2007 12:50:19 Max Laier wrote: > > > On Thursday 18 October 2007, Klavs Klavsen wrote: > > > > I tried to just disable carp on t

Re: packet loss with carp on 6.2

2007-10-18 Thread Max Laier
, GSEC - [EMAIL PROTECTED] - http://www.vsen.dk > > PGP: 7E063C62/2873 188C 968E 600D D8F8 B8DA 3D3A 0B79 7E06 3C62 > > > > "Those who do not understand Unix are condemned to reinvent it, > > poorly." --Henry Spencer > > > > _______ > > freebsd-net@freebsd

Re: libpcap/tcpdump update

2007-10-15 Thread Max Laier
On Tuesday 16 October 2007, Max Laier wrote: > On Friday 12 October 2007, Max Laier wrote: > > On Tuesday 02 October 2007, Max Laier wrote: > > > On Sunday 30 September 2007, Max Laier wrote: > > > > Hi, > > > > > > > > I'd like to get som

Re: libpcap/tcpdump update

2007-10-15 Thread Max Laier
On Friday 12 October 2007, Max Laier wrote: > On Tuesday 02 October 2007, Max Laier wrote: > > On Sunday 30 September 2007, Max Laier wrote: > > > Hi, > > > > > > I'd like to get some eyes on > > > http://people.freebsd.org/~mlaier/tcpdump/ in or

Re: libpcap/tcpdump update

2007-10-11 Thread Max Laier
On Tuesday 02 October 2007, Max Laier wrote: > On Sunday 30 September 2007, Max Laier wrote: > > Hi, > > > > I'd like to get some eyes on > > http://people.freebsd.org/~mlaier/tcpdump/ in order to get $subj into > > the tree. Let me know if you find any prob

Re: libpcap/tcpdump update

2007-10-01 Thread Max Laier
On Sunday 30 September 2007, Max Laier wrote: > Hi, > > I'd like to get some eyes on http://people.freebsd.org/~mlaier/tcpdump/ > in order to get $subj into the tree. Let me know if you find any > problems. Thanks. > > This should also take care of bin/116610, by the

libpcap/tcpdump update

2007-09-30 Thread Max Laier
Hi, I'd like to get some eyes on http://people.freebsd.org/~mlaier/tcpdump/ in order to get $subj into the tree. Let me know if you find any problems. Thanks. This should also take care of bin/116610, by the way. -- /"\ Best regards, | [EMAIL PROTECTED] \ /

Re: Large-scale 1-1 NAT

2007-09-24 Thread Max Laier
ation without disruption. Moreover, because the state table is > not flushed during a reload, you can even move NATed clients from one > public IP to another, without them noticing. In fact pf comes with an almost ready-made sollution. Check out authpf(8) for details. -- /"\ Best rega

Re: Creation of carp interface on amd64 spins

2007-09-20 Thread Max Laier
me what "^T" or ps gives for the spinning process? Does it hang in userland or kernel? Can you try to trace the ifconfig, or - if the hang is in the kernel - break into the kernel debugger and get a back trace for the process? -- /"\ Best regards, |

Re: Allocating AF constants for vendors.

2007-08-22 Thread Max Laier
make sure to leave a bit of space between AF_MAX and your constants so we could still grow AF_MAX if the need should ever arise. -- /"\ Best regards, | [EMAIL PROTECTED] \ / Max Laier | ICQ #67774661 X http://pf4freebsd.love2party.

Re: Allocating AF constants for vendors.

2007-08-21 Thread Max Laier
in mind. Extending AF_MAX by 64 is out of the question, IMHO. -- /"\ Best regards, | [EMAIL PROTECTED] \ / Max Laier | ICQ #67774661 X http://pf4freebsd.love2party.net/ | [EMAIL PROTECTED] / \ ASCII Ribbon Campaign | Against HTML Mail and News signature.asc Description: This is a digitally signed message part.

Re: Unable to set socket size > 16MB

2007-08-21 Thread Max Laier
nmss: ... * with packet generation and sending. Set to zero to disable MINMSS * checking. This setting prevents us from sending too small packets. */ -- /"\ Best regards, | [EMAIL PROTECTED] \ / Max Laier | ICQ #67774661 X http://pf4fr

Re: bridging, pf, and rdr

2007-08-10 Thread Max Laier
ot;\ Best regards, | [EMAIL PROTECTED] \ / Max Laier | ICQ #67774661 X http://pf4freebsd.love2party.net/ | [EMAIL PROTECTED] / \ ASCII Ribbon Campaign | Against HTML Mail and News signature.asc Description: This is a digitally signed message part.

  1   2   3   >