Re: Initial review request for IPv6 Fast Forwarding and IP6STEALTH

2004-12-09 Thread JINMEI Tatuya / 神明達哉
> On Mon, 6 Dec 2004 22:16:46 +1030, > "Wilkinson, Alex" <[EMAIL PROTECTED]> said: >> Nice, needs some cleanup though. Once you have cleaned it up you can run >> it either through me or [EMAIL PROTECTED] He is more of a IPv6 fan than I >> am (in my >> book IPv6 is broken by design^TM).

Re: (review request) ipfw and ipsec processing order for outgoingpackets

2004-12-09 Thread Andre Oppermann
Jeremie Le Hen wrote: > > > > > > I have some stuff wrt [Fast]IPSEC and your problem in the works and > > > > > it should become ready around christmas time (loadable [Fast]IPSEC, at > > > > > least for IPv4). > > > > > > > > While this way of 'fixing' the IPSEC problem works it is rather gross >

Re: UCARP support for FreeBSD

2004-12-09 Thread Jason Slagle
On Wed, 8 Dec 2004, Scott M. Ferris wrote: ucarp will compile and run, but will silently fail to send heartbeats due to the way libpcap opens bpf on FreeBSD. You can find a patch to libpcap in PR 72814. http://www.freebsd.org/cgi/query-pr.cgi?pr=72814 I submitted a similiar pr over a year ago to t

Re: Linux compatible rpc.lockd

2004-12-09 Thread Björn Grönvall
On Thu, 25 Nov 2004 13:52:25 -0800 Bruce M Simpson <[EMAIL PROTECTED]> wrote: Hi all, > On Thu, Nov 25, 2004 at 08:18:12PM +0100, Björn Grönvall wrote: > > I have made a patch to address PR kern/56461, in short the patch > > provides two different options to be compatible with Linux lockd > > imp

Re: (review request) ipfw and ipsec processing order for outgoingpackets

2004-12-09 Thread Bjoern A. Zeeb
On Thu, 9 Dec 2004, Andre Oppermann wrote: Hi, > With the changes you can chose whether you want to do firewallig before > ipsec processing or after but not both. I am unsure if I get that right but that's what the ipsec flag in ipfw2 is for and it is heavily used to filter ipsec encrypted traff

Re: UCARP support for FreeBSD

2004-12-09 Thread Jeremie Le Hen
> I know it, but it is for FreeBSD 5.x . My gateways run FreeBSD 4.10 > and i don't have plans to upgrade them for now. I found on the "pf4freebsd" website [1] that there is an existing patch for DragonFlyBSD which *should* work on 4.x. I know this site has been deprecated by the new one [2],

Re: Initial review request for IPv6 Fast Forwarding and IP6STEALTH

2004-12-09 Thread gnn
At Thu, 09 Dec 2004 17:52:15 +0900, jinmei wrote: > (Perhaps this is slightly an off-topic for this list, but) I'm also > interested in the reason, but it's not surprising that someone in the > world has a negative impression on a big feature like IPv6 or IPsec, > since such a thing has typically b

panic with 4.10p4 and ipfw2

2004-12-09 Thread Andrea Venturoli
Hello. A box of mine, which acts as firewall/bridge, is experiencing frequent panics. As said in the subject line, it's a 4.10-RELEASE-p4 with ipfw2 enabled in the kernel. I've run through post mortem kernel analisys and found out that the crashes are always related to ipfw2; specifically I get: pa

Re: UCARP support for FreeBSD

2004-12-09 Thread Max Laier
On Thursday 09 December 2004 18:10, Jeremie Le Hen wrote: > > I know it, but it is for FreeBSD 5.x . My gateways run FreeBSD 4.10 > > and i don't have plans to upgrade them for now. > > I found on the "pf4freebsd" website [1] that there is an existing patch for > DragonFlyBSD which *should* wor

RE: the correct ipv6 behavior for interfaces with gif tunnel on them

2004-12-09 Thread Konstantin KABASSANOV
>-Original Message- >From: JINMEI Tatuya / _–¾’BÆ [mailto:[EMAIL PROTECTED] >Sent: jeudi 9 décembre 2004 05:53 >To: Konstantin KABASSANOV >Cc: [EMAIL PROTECTED] >Subject: Re: the correct ipv6 behavior for interfaces with gif tunnel on >them > >> On Wed, 8 Dec 2004 13:22:10 +0100,

dhcpd error - IF host.myisp.com.br IN A rrset doesn't exist add: timed out

2004-12-09 Thread Paulo Fonseca Jr.
Hi, I'm receiving the folowing error when a windows machine to try a connection with internet through freebsd adsl (ppp) gateway: "IF windows.myisp.com.br IN A rrset doesn't exist add windows.myisp.com.br 300 IN A 192.168.0.3: timed out." I'm not running a dns server on freebsd gateway. I'm usi

Re: New ICMP limits

2004-12-09 Thread Andre Oppermann
Bruce M Simpson wrote: > > On Wed, Dec 08, 2004 at 03:53:07PM +0100, Andre Oppermann wrote: > > I'll take care of this but I'm busy right now. Look into it later this > > week. > > Thanks for looking into this, this is one of the items which came up on > the TODO lists of three separate project

Re: the correct ipv6 behavior for interfaces with gif tunnel on them

2004-12-09 Thread JINMEI Tatuya / 神明達哉
> On Thu, 9 Dec 2004 18:53:37 +0100, > "Konstantin KABASSANOV" <[EMAIL PROTECTED]> said: >> Please provide more detailed network configuration. Are you talking >> about a router box forwarding packets onto gif and physical >> interfaces? > Well, this is a router box with 2 physical inte

Problem with Interface Link Down Detection in Routing Deamon

2004-12-09 Thread K sarraf
Hi All, I need to solve a problem with link-fail detect signal getting up to the routing deamon on my FreeBSD 4.10 systems. The problem is as follows: This is a question regarding backup routes in zebra/quagga running OSPFv2. Say I have edge router A and edge router B connected via two paral

KAME mip6

2004-12-09 Thread Michael Lednev
Hello, freebsd-net. is there any chance, that kame mip6 stack will work with freebsd-5.3 out of the box soon? -- Regards, Michael mailto:[EMAIL PROTECTED] ___ [EMAIL PROTECTED] mailing list http://lists.freebsd.org/mailman/li

Re: dhcpd error - IF host.myisp.com.br IN A rrset doesn't exist add: timed out

2004-12-09 Thread Robert Blacquiere
On Thu, Dec 09, 2004 at 08:13:26PM -0200, Paulo Fonseca Jr. wrote: > Hi, > > I'm receiving the folowing error when a windows machine to try a connection > with internet through freebsd adsl (ppp) gateway: "IF windows.myisp.com.br IN > A rrset doesn't exist add windows.myisp.com.br 300 IN A 192.1

Re: (review request) ipfw and ipsec processing order foroutgoingpackets

2004-12-09 Thread Ari Suutari
Hi, With the changes you can chose whether you want to do firewallig before ipsec processing or after but not both. I am unsure if I get that right but that's what the ipsec flag in ipfw2 is for and it is heavily used to filter ipsec encrypted traffic and the same traffic, tagged to come from an ip