Re: TCP SACK backport to -STABLE

2004-08-25 Thread Darcy Buskermolen
CURRENT, but policy won't allow them to put them into production... -- Darcy Buskermolen Wavefire Technologies Corp. ph: 250.717.0200 fx: 250.763.1759 http://www.wavefire.com ___ [EMAIL PROTECTED] mailing list http://lists.freebsd.org/mailman

Re: [RFC] ifconfig: match by link-level address

2004-11-24 Thread Darcy Buskermolen
ifconfig option. > > Of course, this still leaves a problem with specifying the address for > an interface that has not yet been 'found' - after all, we can't > ifmaybeload() a driver on just the link-level address of the card. This > is a case w

Re: %cpu in system - squid performance in FreeBSD 5.3

2005-01-04 Thread Darcy Buskermolen
al TCP load balancer > that uses kqueue(2) would also solve your problem (I'm not aware of any > off the top of my head... pound(8) does, but it is only used for HTTP > and is not a reverse proxy) and would likely prevent you from having > your problems. -sc squid-de

ng_nat revisited

2005-01-25 Thread Darcy Buskermolen
It's been a while since the subject of ng_nat appeared on-list, I'm wondering if there has been anymore work done on this? -- Darcy Buskermolen Wavefire Technologies Corp. ph: 250.717.0200 fx: 250.763.1759 http://www.wavefire.com ___ f

Re: FreeBSD 4.x and OS-X tcp performance

2005-03-04 Thread Darcy Buskermolen
On Friday 04 March 2005 14:34, Charles Sprickman wrote: > Howdy, > > Sorry to bring what seems like a simple issue up here. I had been blaming > slow afp filesharing between my OS-X (10.3.8 and previous) and FreeBSD 4.x > boxes on netatalk's afp implementation for some time. Not too long ago I >

Re: Too many IPs assigned to an interface?

2005-03-16 Thread Darcy Buskermolen
On Wednesday 16 March 2005 07:46, Marc G. Fournier wrote: > Since talking about ng_fec, and the cisco switch, I started to play with > it a bit, and one of the things I've finally setup is snmp/mrtg, so that I > can monitor bw activity ... > > one thing that I've noticed is that two of my machines

inet6_pfil_hook undefined on -HEAD

2005-08-04 Thread Darcy Buskermolen
In an effort to test the bridge device, I followed the instructions in man if_bridge to create the bridge, I received an SIOCIFCREATE Invalid argument, so I figured I needed to load the bridging code module. When I attempt to kldload if_bridge I get the above error. If any further informatio

panic: if_attach called without if_alloc'd input()

2005-08-09 Thread Darcy Buskermolen
I'm getting the following panic on my RELENG_6 test box: xl1f0: BUG: if_attach called without if_alloc'd input() Where should I be looking to track this down? I suspect it has to do with a custom kernel, it wasn't doing it when i was running GENERIC -- Darcy Buskermolen Wavefi

Re: panic: if_attach called without if_alloc'd input()

2005-08-09 Thread Darcy Buskermolen
On Tuesday 09 August 2005 11:16, Brooks Davis wrote: > On Tue, Aug 09, 2005 at 08:54:21AM -0700, Darcy Buskermolen wrote: > > I'm getting the following panic on my RELENG_6 test box: > > > > xl1f0: BUG: if_attach called without if_alloc'd input() > > > &

Re: panic: if_attach called without if_alloc'd input()

2005-08-09 Thread Darcy Buskermolen
On Tuesday 09 August 2005 13:48, Darcy Buskermolen wrote: > On Tuesday 09 August 2005 11:16, Brooks Davis wrote: > > On Tue, Aug 09, 2005 at 08:54:21AM -0700, Darcy Buskermolen wrote: > > > I'm getting the following panic on my RELENG_6 test box: > > > > >

CARP without address on the physical interface ?

2005-08-12 Thread Darcy Buskermolen
I can see. -- Darcy Buskermolen Wavefire Technologies Corp. http://www.wavefire.com ph: 250.717.0200 fx: 250.763.1759 ___ freebsd-net@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-net To unsubscribe, send any mail to "[EMAIL PROTECTED]"

Re: IP alias problem /w 2 different subnets.

2001-05-04 Thread Darcy Buskermolen
Is there a reason that you are spanning 2 subnets but only have 1 of then setup as the full class C ? "inet 209.51.xxx.xxx netmask 255.255.255.0" alias0="inet 209.190.xxx.xxx netmask 255.255.255.255" You may need to chang alias0 to alias0="inet 209.190.xxx.xxx netmask 255.255.255.0" At

RE: 1 IP - 1 Firewall - 2 Webservers

2001-12-11 Thread Darcy Buskermolen
You can configure your cache server to send an X-header with the originateing IP, and then use that.. At 06:18 PM 12/11/01 -0800, Kelly Yancey wrote: >On Wed, 12 Dec 2001, Tom Peck wrote: > >> Hi Julian >> >> Yes, we currently have Squid serving this purpose - but as I stated in my >> first em

xl driver and POLLING

2002-10-16 Thread Darcy Buskermolen
Has there been any work done on adding POLLING support to the xl driver? -- Darcy Buskermolen Wavefire Technologies Corp. ph: 250.717.0200 fx: 250.763.1759 http://www.wavefire.com To Unsubscribe: send mail to [EMAIL PROTECTED] with "unsubscribe freebsd-net" in the body of the message

Re: determining "originator/source" of connection ...

2002-10-22 Thread Darcy Buskermolen
.162.138.19325 6 524916 > > which does make sense (ie. source port -> dest port) ... > > is there something that i can do with libpcap that will give me better > information then trafd does? is there a 'tag' in the IP headers that can > be used to dete

Re: IN-KERNEL Proxy

2002-11-04 Thread Darcy Buskermolen
??? > THANX > > > _ > Broadband? Dial-up? Get reliable MSN Internet Access. > http://resourcecenter.msn.com/access/plans/default.asp > > > To Unsubscribe: send mail to [EMAIL PROTECTED] > with "unsubscribe freebsd-net" in the body of the message -

Re: [Netnice version 2 (For FreeBSD 4.7)]

2002-12-18 Thread Darcy Buskermolen
erver: NS.ASAHIKAWA.WIDE.AD.JP Name Server: NS2.ASAHIKAWA.WIDE.AD.JP Updated Date: 01-aug-2002 >>> Last update of whois database: Wed, 18 Dec 2002 17:15:09 EST <<< The Registry database contains ONLY .COM, .NET, .ORG, .EDU domains and Registrars. No match for "netnice.org&q

Transparent Proxy

2003-02-25 Thread Darcy Buskermolen
ind online regaring setting up transparent proxying for squid using ipfw shows squid running on the gateway host, or on a diffrent network segment. Can anybody point me in the correct direction to tell me what it is that I'm missing? -- Darcy Buskermolen Wavefire Technologies Corp. ph:

Re: Transparent Proxy

2003-03-05 Thread Darcy Buskermolen
) you can have your proxy working. > > skipto 510 tcp from 192.168.0.1 to any dst-port 80 > > > > From: Darcy Buskermolen <[EMAIL PROTECTED]> > > >To: [EMAIL PROTECTED] > >Subject: Transparent Proxy > >Date: Tue, 25 Feb 2003 16:42:09 -0800 >

Re: Removal of netns

2003-03-04 Thread Darcy Buskermolen
; > > To Unsubscribe: send mail to [EMAIL PROTECTED] > > with "unsubscribe freebsd-current" in the body of the message > > To Unsubscribe: send mail to [EMAIL PROTECTED] > with "unsubscribe freebsd-net" in the body of the message -- Darcy Buskermolen Wavefire

Re: Firewall Performance Question.

2003-06-19 Thread Darcy Buskermolen
ligent man requires only two thousand five hundred." > > - The Mahabharata > > > > ___ > > [EMAIL PROTECTED] mailing list > > http://lists.freebsd.org/mailman/listinfo/freebsd-net > > To unsubsc

Re: ipfw/natd/3 nic

2003-12-23 Thread Darcy Buskermolen
Why not just add soem simple firewall rules such as: ipfw add deny ip from private_private to public_private ipfw add deny ip from public_private to private_private before you do your divert rule ? -- Darcy Buskermolen Wavefire Technologies Corp. ph: 250.717.0200 fx: 250.763.1759 http://www.wavefire.com _

Re: [4.9-R]Can I Make My DSL Connect Go Faster ? (OSX nat hint)

2004-05-12 Thread Darcy Buskermolen
I know this option isn't valid in FreeBSD's natd and I'm not sure if perhaps it is handleded transparently. But with out this option under OSX I saw simular problems as to what you are describing when natting packets, even though the same download form the gateway were AOK