Re: Question: Why ain't I getting gigabit speed?

2013-02-08 Thread Damien Fleuriot
On 8 Feb 2013, at 21:48, "Ronald F. Guilmette" wrote: > > In message , > John Nielsen wrote: > >> On Feb 7, 2013, at 4:13 PM, Ronald F. Guilmette = >> wrote: >> >>> I just aquired a brand new chepie gigabit PCI ethernet card off eBay. >>> The main chip on it appears to be an RTL8110S-32. >

Re: ntpd bind() failure: Can't assign requested address

2013-03-12 Thread Damien Fleuriot
On 12 Mar 2013, at 22:42, "M. Schulte" wrote: > Hi! > > [First of all, I have posted this question already on the FreeBSD > forum -- so far without replies -- and now my hope is that the set of > subscribers here and those of the forum do not completely coincide.] > > I have installed FreeBSD

Re: Problems of using ipv6 addresses on loc0

2013-03-12 Thread Damien Fleuriot
On 12 Mar 2013, at 21:06, "Vladislav Prodan" wrote: > > I have a FreeBSD 8.2-STABLE amd64. > > Network: > vlan300: flags=8843 metric 0 mtu 1500 >description: Uplink_1 >inet >inet6 > > vlan400: flags=8843 metric 0 mtu 1500 >description: Uplink_2 >inet >inet6

Re: ipv6 default router Operation not permitted

2013-03-12 Thread Damien Fleuriot
On 12 Mar 2013, at 23:50, Schrodinger wrote: > Hi, > > I have a problem reaching my ipv6 default router. > > # ping6 -c 1 2001:41d0:2:e7ff:ff:ff:ff:ff > PING6(56=40+8+8 bytes) 2001:41d0:2:e7c4::1 --> 2001:41d0:2:e7ff:ff:ff:ff:ff > ping6: sendmsg: Operation not permitted > ping6: wrote 2001:41d

Re: ipv6 default router Operation not permitted

2013-03-13 Thread Damien Fleuriot
On 13 Mar 2013, at 10:17, Schrodinger wrote: > On 2013/03/13 02:25, Damien Fleuriot wrote: > > [...] > >> >> >> The network is actually /48 and you get assigned a /64 inside it. >> >> Set your interface to use the /48 prefix and voodoo will happen

Re: carp regression in 9.1 ?

2013-03-18 Thread Damien Fleuriot
On 17 Mar 2013, at 11:03, "Eugene M. Zheganin" wrote: > Hi. > > On 14.03.2013 20:47, Fleuriot Damien wrote: >> I'm experiencing this odd behavior with 9.1 r24791 for amd64. > You should definitely sit on 8.x until 10.x will become stable, or upgrade to > 10.x from 9.x (at least this is what I

Re: Carp strange behavior

2013-03-18 Thread Damien Fleuriot
On 18 Mar 2013, at 22:22, Rafael Ganascim wrote: > Hi list, > > I have multiple FreeBSD firewalls with carp working well. I have no problem > and the vast majority of firewalls works perfectly. > > But now, I'm with problems with a simple firewall cluster with carp that > the state randomly go

Re: How to find out a VPN link has gone down (or better, come back up)?

2013-06-16 Thread Damien Fleuriot
I might be wrong but wouldn't that be a job for devd ? Alternatively set a cron job every minute to reinstall the route. On 16 Jun 2013, at 12:22, Bernard Higonnet wrote: > I have a machine, FreeBSD 8.1-RELEASE #0, running a VPN (MPD5) server. > > Every once in a while, the link goes down, p

Re: how calculate the number of ip addresses in a range?

2013-08-09 Thread Damien Fleuriot
On 10 Aug 2013, at 01:13, Kimmo Paasiala wrote: > On Sat, Aug 10, 2013 at 2:07 AM, Kimmo Paasiala wrote: >> On Sat, Aug 10, 2013 at 1:44 AM, Peter Wemm wrote: >>> On Fri, Aug 9, 2013 at 9:34 AM, Fleuriot Damien wrote: On Aug 8, 2013, at 10:27 AM, Peter Wemm wrote: > On

Re: how calculate the number of ip addresses in a range?

2013-08-09 Thread Damien Fleuriot
On 10 Aug 2013, at 01:17, Peter Wemm wrote: > On Fri, Aug 9, 2013 at 4:07 PM, Kimmo Paasiala wrote: >> On Sat, Aug 10, 2013 at 1:44 AM, Peter Wemm wrote: >>> On Fri, Aug 9, 2013 at 9:34 AM, Fleuriot Damien wrote: On Aug 8, 2013, at 10:27 AM, Peter Wemm wrote: > On Thu,

Re: how calculate the number of ip addresses in a range?

2013-08-09 Thread Damien Fleuriot
On 10 Aug 2013, at 01:07, Kimmo Paasiala wrote: > On Sat, Aug 10, 2013 at 1:44 AM, Peter Wemm wrote: >> On Fri, Aug 9, 2013 at 9:34 AM, Fleuriot Damien wrote: >>> >>> On Aug 8, 2013, at 10:27 AM, Peter Wemm wrote: >>> On Thu, Aug 8, 2013 at 12:04 AM, s m wrote: > hello guys,

Re: how calculate the number of ip addresses in a range?

2013-08-11 Thread Damien Fleuriot
reshold, it's error. so as > you said, i should know the math for calculate this number. > > thank you again guys for your answers but they do not solve my problem. any > body knows what is the formula to calculate the valid ip addresses for any > desired ranges? > Thanks &

Re: Create CARP interface in state INIT?

2013-08-15 Thread Damien Fleuriot
On 15 Aug 2013, at 16:01, Karl Pielorz wrote: > > > --On 13 August 2013 15:34 +0200 Daniel Hartmeier wrote: > >> So, don't configure the carp interface in rc.conf, but do it in >> /etc/rc.local, and be careful to add the address while the vhid is not >> yet configured, as in: >> >> ifconfi

Re: Create CARP interface in state INIT?

2013-08-15 Thread Damien Fleuriot
On 15 Aug 2013, at 20:33, Karl Pielorz wrote: > > > --On 15 August 2013 17:13:15 +0200 Damien Fleuriot wrote: > >>> Hmmm, I tried that - and it leaves the interface in a 'weird' state (at >>> least not the state I was expecting): >>> &

PF vs IPFW (was: Re: Firewall Profiling.)

2011-12-27 Thread Damien Fleuriot
On 12/27/11 1:54 AM, Pawel Tyll wrote: > Hi lists, > > Are there any profiling tools in the system or ports that would allow > me to determine how much processing is being done per packet and how > long does it take? I would like to predict possible PPS load for my > system and perhaps locat

Re: Compiling only "network" part of the kernel

2011-12-27 Thread Damien Fleuriot
On 12/27/11 3:51 PM, Warren Block wrote: > On Tue, 27 Dec 2011, Rajneesh Kumar wrote: > >> During my development, I want to check if my modules compile successfully >> or not. I am only changing the ARP portion and whenever I compile my >> kernel, it takes around 20mins and compiles all differen

Re: Compiling only "network" part of the kernel

2011-12-27 Thread Damien Fleuriot
On 12/27/11 7:23 AM, Rajneesh Kumar wrote: > Hi list, > > During my development, I want to check if my modules compile successfully > or not. I am only changing the ARP portion and whenever I compile my > kernel, it takes around 20mins and compiles all different modules also. > I just want to co

Re: Compiling only "network" part of the kernel

2011-12-27 Thread Damien Fleuriot
On 12/27/11 8:19 PM, Warren Block wrote: > On Tue, 27 Dec 2011, Damien Fleuriot wrote: >> On 12/27/11 3:51 PM, Warren Block wrote: >>> On Tue, 27 Dec 2011, Rajneesh Kumar wrote: >>> >>>> During my development, I want to check if my modules compile &

Re: Compiling only "network" part of the kernel

2011-12-27 Thread Damien Fleuriot
On 27 Dec 2011, at 21:22, Warren Block wrote: > On Tue, 27 Dec 2011, Damien Fleuriot wrote: > >>> Those are best-case times. A typical ccache buildworld after csup to >>> -stable is about 9 minutes on this system. >> >> That sounds good enough. >>

Re: Compiling only "network" part of the kernel

2011-12-27 Thread Damien Fleuriot
On 27 Dec 2011, at 20:30, Eitan Adler wrote: > On Tue, Dec 27, 2011 at 2:19 PM, Warren Block wrote: >> make -j4 buildworld: > Try adding -DNO_CLEAN here, > I don't know, I'm ever afraid of running into whatever issues when not performing a clean full rebuild... >> Normal 19:41 >> ccache

Re: Any recommendations for a 10G NIC from Broadcom

2012-01-04 Thread Damien Fleuriot
On 1/4/12 6:10 AM, Vijay Singh wrote: > Hi. I would like to try out a 10G NIC from Broadcom. The BCM5716 seems > promising. I am looking for features such as multi-queue, MSI-X, TSO > etc. Any recommendations would be greatly appreciated. > Now, I'm going to offer you an indirect response. Jack

Re: em0 hangs on 8-STABLE again

2012-01-29 Thread Damien Fleuriot
On 1/29/12 7:21 PM, Jack Vogel wrote: > No, I told Mike I'd get it into 8.x, have just been busy, but will try > and get it pushed up in the queue. > > Jack > > > 2012/1/29 Lev Serebryakov > >> Hello, Mike. >> You wrote 29 января 2012 г., 16:54:59: >> My home server lost connection on e

Re: Assigning multiple IPs in the same network to an interface

2012-02-16 Thread Damien Fleuriot
On 2/16/12 8:08 AM, M. V. wrote: > hi everybody, > > i have a problem with setting multiple IPs in the same network in FreeBSD: > > - suppose I assign two new IP addresses in the same network to eth0 with > ifconfig: > #ifconfig eth0 add 192.168.10.1/24 > #ifconfig eth0 add 192.168.10.2/24 >

Re: Assigning multiple IPs in the same network to an interface

2012-02-18 Thread Damien Fleuriot
On 2/16/12 3:39 PM, Andrew Boyer wrote: > > On Feb 16, 2012, at 8:16 AM, Damien Fleuriot wrote: > >> On 2/16/12 8:08 AM, M. V. wrote: >>> hi everybody, >>> >>> i have a problem with setting multiple IPs in the same network in FreeBSD: >>> >

Re: IPv6 and CARP

2012-03-06 Thread Damien Fleuriot
Hello guys, Are there any news on the topic ? Trying to push IP6 at work for our firewalls and struggling with CARP interfaces with inet6 addresses at boot like OP. I could probably just set the address with a script in /usr/local/etc/rc.d/ but I'd rather get it working out of the box, that'll

IPV6 + CARP - page fault while in kernel mode on 8.3-PRERELEASE amd64 (17/02/12)

2012-03-06 Thread Damien Fleuriot
Hello -net, I was experimenting with ipv6 and CARP on a backup firewall running the following: 8.3-PRERELEASE #0: Fri Feb 17 11:20:28 CET 2012 I tried (and succeeded) to reproduce the bug from kern/153848 where a CARP BACKUP host connects to itself instead of the MASTER for ipv6. Shortly afte

Re: IPv6 and CARP

2012-03-06 Thread Damien Fleuriot
On 3/6/12 12:47 PM, Hiroki Sato wrote: > Damien Fleuriot wrote > in <4f55e8b0.8010...@my.gd>: > > ml> Hello guys, > ml> > ml> > ml> Are there any news on the topic ? > ml> > ml> Trying to push IP6 at work for our firewalls and struggling with

Re: Network Interface configuration

2012-03-07 Thread Damien Fleuriot
On 7 Mar 2012, at 08:10, hiren panchasara wrote: > Do we store network interfaces configuration information in any file that > survives reboots? (as Linux does it in /etc/network/interfaces) > > Only thing I could find was when an interface needs address from DHCP, > rc.conf says ifconfig_em0=

Re: Network Interface configuration

2012-03-07 Thread Damien Fleuriot
On 3/7/12 9:21 AM, hiren panchasara wrote: > > > On Wed, Mar 7, 2012 at 12:08 AM, Damien Fleuriot <mailto:m...@my.gd>> wrote: > > > In /etc/rc.conf > > See the man page for rc.conf for a more detailed use. > See the small example bellow: >

Re: Intel 1G Tx hangs

2012-05-30 Thread Damien Fleuriot
On 5/24/12 7:19 AM, Vijay Singh wrote: > Hi, I have been using 8.2 based e1000 drivers and I'm seeing watchdog > timeouts. I am in the process of updating the drivers to 8-stable, but > wanted to check here if others have seen anything like this in the > 8.1/8.2 drivers. Just fyi, I am seeing the T

Re: PF "scrub reassemble tcp" makes a packet with invalid TCP checksum depending on the situation

2012-06-08 Thread Damien Fleuriot
On 6/8/12 5:01 PM, Kazuaki ODA wrote: > Hi all, > > Recently I received a e-mail from our customer that he could not browse > our web site. I thought that was strange at first because we and most > people could browse without problems, but he could not...umm, why? > > After some investigation I'

Re: lagg speed trouble

2012-07-04 Thread Damien Fleuriot
On 7/4/12 1:30 PM, Vyacheslav Kulikovskyy wrote: > i have sever with two 1G links (em) aggregated by lagg0 > > after 1700Megabits i have collisions/errors on lagg0 port, but not on em0 > or em1 > > I'm using nginx in own CDN. and server don't limited my mbufs, irq, or > anything else.. only lagg0

Re: lagg speed trouble

2012-07-05 Thread Damien Fleuriot
On 7/5/12 7:27 PM, Andrew Thompson wrote: > Can you be more specific. Did the patch fail to work or was there no > change in the speed? I don't know what you mean by "on switch errors > not found" > > > Andrew I think that was in reply to my question about possible errors on the switch's ports,

Re: lacp lagg port flags do not show correctly resulting in poor traffic distribution/performance

2012-07-10 Thread Damien Fleuriot
On 7/10/12 9:10 AM, Jason Hellenthal wrote: > > > On Mon, Jul 09, 2012 at 05:38:24PM -0700, Adarsh Joshi wrote: >> Hi, >> >> I am trying to configure lacp lagg interfaces with 2 systems connected back >> to back as follows: >> >> Ifconfig lagg0 create >> Ifconfig lagg0 laggproto lacp laggport q

Re: Problem with link aggregation + sshd

2012-08-25 Thread Damien Fleuriot
I'll get back to you regarding link aggregation when I'm done with groceries. We use it here in production and it works flawlessly. On 25 Aug 2012, at 09:54, Giulio Ferro wrote: > No answer, so it seems that link aggregation doesn't really work in freebsd, > this may help others with the same

Re: Problem with link aggregation + sshd

2012-08-25 Thread Damien Fleuriot
In the meantime kindly post: Ifconfig for your igb0 Netstat -rn Netstat -aln | grep 22 On 25 Aug 2012, at 13:18, Damien Fleuriot wrote: > I'll get back to you regarding link aggregation when I'm done with groceries. > > We use it here in production and it works flawlessl

Re: Problem with link aggregation + sshd

2012-08-27 Thread Damien Fleuriot
as to not crosspost. On 25 August 2012 13:22, Damien Fleuriot wrote: > In the meantime kindly post: > > > Ifconfig for your igb0 > Netstat -rn > Netstat -aln | grep 22 > > > > On 25 Aug 2012, at 13:18, Damien Fleuriot wrote: > >> I'll get back to you r

Re: Problem with link aggregation + sshd

2012-08-28 Thread Damien Fleuriot
::1 U lo0 > ff02::%lagg0/32 fe80::ea39:35ff:feb6:a0d5%lagg0 U > lagg0 > > > > # netstat -aln | grep 22 > tcp40 0 *.22 *.* LISTEN > tcp60 0 *.22 *.* LISTEN > > Note that I already t

Re: Proposal for changes to network device drivers and network stack (RFC)

2013-01-17 Thread Damien Fleuriot
On 17 Jan 2013, at 22:53, Steve Kiernan wrote: > On Thu, 17 Jan 2013 22:11:27 +0100 > Andre Oppermann wrote: > >> On 17.01.2013 20:23, Stephen J. Kiernan wrote: >>> The network stack as a module patch has been separated out and can be found >>> in the following location: >>> http://people.fre

Re: showmount sometimes slow with carp

2011-02-16 Thread Damien Fleuriot
You're using POLLING on your physical interfaces. Sometimes they go down and you lose your CARP interface. OR For whatever reason you lose your CARP interface. Get the output from `dmesg` , see if you get logs saying your carp interface went down then back up, there are high chances it did.

CARP - immediate INIT-MASTER transition when preempt enabled , bug from openbsd38

2011-10-11 Thread Damien Fleuriot
Hello -net, Just following up on these 2 PRs, respectively for 8.x and 9.0-BETA3: 8.x:http://www.freebsd.org/cgi/query-pr.cgi?pr=161123 9.0b3: http://www.freebsd.org/cgi/query-pr.cgi?pr=161483 There is a bug with CARP where a CARP interface will immediately transition from INIT to MASTER

Re: nge(4), tl(4), wb(4) and rl(4) 8129 testers wanted [Re: Question about GPIO bitbang MII]

2011-10-15 Thread Damien Fleuriot
On 15 Oct 2011, at 22:56, Marius Strobl wrote: > > Could owners of nge(4), tl(4), wb(4) and rl(4) driven hardware (as for > rl(4) only 8129 need testing, 8139 don't) please give the following > patch a try in order to ensure it doesn't break anything? > for 9/head: > http://people.freebsd.org/

Re: bce huge amount of input errors

2011-10-25 Thread Damien Fleuriot
On 10/25/11 9:28 PM, Bojidara Marinchovska wrote: > Hello, > > I'm running FreeBSD 8.2-STABLE #1: Thu May 19 15:05:33 EEST 2011 > [snip] > I found in similar thread this patch as suggested: > http://people.freebsd.org/~yongari/bce/bce.20100305.diff, but I didn't > try it yet, because noone confi

Re: Juniper Secure Access SSL VPN access from FreeBSD?

2014-09-15 Thread Damien Fleuriot
Isn't the plugin closed-source ? If it is and you have no alternatives, you could try : 1/ install the linux compatibility framework to be able to run linux binaries 2/ install a user agent spoofer to trick the Juniper SA into thinking you're running linux 3/ log in to the SA, launches linux plu

Re: NFS on 10G interface terribly slow

2015-06-26 Thread Damien Fleuriot
Gerrit, Everyone's talking about the network performance and to some extent NFS tuning. I would argue that given your iperf results, the network itself is not at fault. In your first post I see no information regarding the local performance of your disks, sans le NFS that is. You may want to lo

Re: PR 166255 - disable promiscuous mode warning via sysctl

2016-05-09 Thread Damien Fleuriot
On 9 May 2016 at 15:56, Eitan Adler wrote: > On 9 May 2016 at 02:02, Nick Hibma wrote: > > Folks, > > > > In PR 166255 [1] it is suggested to allow disabling ‘promiscuous mode > enabled’ warnings. It adds a sysctl to allow toggling this behaviour. I > have a number of questions before I commit

[CARP] BUG #202510 - advertisements sourced from CARP IP cause double master situation

2017-01-11 Thread Damien Fleuriot
Hello list, When using (legacy ?) syntax ipv4_addrs_$interf="1.2.3.4/32" in /etc/rc.conf, CARP advertisements are sent from subsequent addresses defined using ifconfig_$interf_aliasN="2.3.4.5/32" This causes master-master situations and, obviously, network problems. I have attached a patch to