Re: Any suggests for modest, known compatible servers with RAID 1?

2011-04-29 Thread George Georgalis
Nico, I don't know what your "risk" is, but if it's a perimeter box running pf and ssh maybe consider running on cflash or usb stick? Or one of those bootable cdroms? I log to a ram fs so I think the only media writes are for ntp.drift, and yes I'm more concerned about the other hardware failing th

Re: Any suggests for modest, known compatible servers with RAID 1?

2011-04-29 Thread Patrick Coleman
On Sat, Apr 30, 2011 at 7:23 AM, Nico Kadel-Garcia wrote: > Thanks for the thought. I was unclear: I wanted the model name, not > the manufacturer's name. I've had good experience with the Dell R415s and their H700 RAID controllers. Everything seems well supported, and they're fast and cheap. dme

Re: Any suggests for modest, known compatible servers with RAID 1?

2011-04-29 Thread Nico Kadel-Garcia
On Fri, Apr 29, 2011 at 12:09 PM, Stuart Henderson wrote: > On 2011-04-29, Nico Kadel-Garcia wrote: >> >> So, I'm looking for recommendations. Modest 1U pizza boxes? > > R210? (as long as you don't need externally accessible disks.) > >> Even brand >> names for known-good PCI or PCIe SATA control

Re: Loopback interfaces, OSPF

2011-04-29 Thread falz
On Fri, Apr 29, 2011 at 11:05 AM, Stuart Henderson wrote: > Yes. You sometimes get nasty cloned host routes if ospfd bounces, > but this mostly works pretty well. My usual setup is like this: > > $ cat /etc/hostname.lo1 > inet 192.0.2.5/32 > > $ grep lo1 /etc/ospfd.conf >interface lo1 {

Re: For me, OpenBSD is the operating system that "just works".

2011-04-29 Thread Kraktus
On 28/04/2011, Kevin Chadwick wrote: > On Wed, 27 Apr 2011 18:56:57 -0400 > Kraktus wrote: > >> So, I think OpenBSD tops the list of operating systems that "just >> work". The only thing I really wish for is more encryption options for >> softraid. > > And more people using OpenBSD, so the data I

Re: Any suggests for modest, known compatible servers with RAID 1?

2011-04-29 Thread Amit Kulkarni
http://www.shiningsilence.com/dbsdlog/2011/04/27/7673.html Areca is well supported by OpenBSD (from man page), you might have to bring in some functionality from FreeBSD. I have no experience with modern cards, but I will be keeping Areca in mind for future. I have used old Dell Percs RAID control

Re: Need Suggestion: To limit the access of root account

2011-04-29 Thread Kevin Chadwick
On Fri, 29 Apr 2011 12:05:24 + (UTC) Stuart Henderson wrote: > This sort of menu might make things a little easier but it's not going > to make them safer, people can do quite enough damage with just these > options. > Yeah, you can give read access to your users to the devices or log files

Re: Any suggests for modest, known compatible servers with RAID 1?

2011-04-29 Thread Stuart Henderson
On 2011-04-29, Nico Kadel-Garcia wrote: > > So, I'm looking for recommendations. Modest 1U pizza boxes? R210? (as long as you don't need externally accessible disks.) > Even brand > names for known-good PCI or PCIe SATA controllers would be helpful, LSI

Re: Loopback interfaces, OSPF

2011-04-29 Thread Stuart Henderson
On 2011-04-29, falz wrote: > I'm setting up some OpenBSD servers to act as routers. I'm setting > them up as dual homed devices to have BGP running on a loopback > interface (Lo1) BGP peers will talk loopback to loopback through > whichever path is valid. OpenOSPFD is used to advertise the loopbac

Re: use DUIDs rather than device names in fstab?

2011-04-29 Thread Kenneth R Westerback
On Fri, Apr 29, 2011 at 05:14:23PM +1000, David Gwynne wrote: > On 29/04/2011, at 4:48 PM, Otto Moerbeek wrote: > > > > > Op 29 apr. 2011 om 07:00 heeft David Gwynne het volgende > geschreven: > > > >> this is why i like duids: > > > > Is this what you get when you max out every option when order

Re: Need Suggestion: To limit the access of root account

2011-04-29 Thread Bryan
On Fri, Apr 29, 2011 at 07:05, Stuart Henderson wrote: > On 2011-04-29, Stefan N wrote: >> I would need some suggestions from you. Currently I am setting up OpenBSD >> Firewall using PF at my working place. Make sure your backups are current, and done daily...

Re: use DUIDs rather than device names in fstab?

2011-04-29 Thread Bryan
On Fri, Apr 29, 2011 at 00:00, David Gwynne wrote: > this is why i like duids: > > Someone is clearly overcompensating. ;) That is a fine piece of machinery. What do you use something like this for? VM host? Wouldn't the use of DUIDs make little difference for you? I mean, sure, you have an sd

Loopback interfaces, OSPF

2011-04-29 Thread falz
I'm setting up some OpenBSD servers to act as routers. I'm setting them up as dual homed devices to have BGP running on a loopback interface (Lo1) BGP peers will talk loopback to loopback through whichever path is valid. OpenOSPFD is used to advertise the loopback's /32 into IGP. This is the standa

Re: Any suggests for modest, known compatible servers with RAID 1?

2011-04-29 Thread Nico Kadel-Garcia
On Fri, Apr 29, 2011 at 12:24 AM, Abel Abraham Camarillo Ojeda wrote: > On Thu, Apr 28, 2011 at 10:25 PM, Nico Kadel-Garcia wrote: >> I just went halfway through the "build your own custom kernel, >> manually configure partition tables, etc., etc." rituals to set up >> software RAID for OpenBSD 4

Re: Need Suggestion: To limit the access of root account

2011-04-29 Thread Stuart Henderson
On 2011-04-29, Stefan N wrote: > I would need some suggestions from you. Currently I am setting up OpenBSD > Firewall using PF at my working place. > However, some of my colleagues are not so familiar with the OpenBSD and we > would > like to take turn to do that. I have the intention that I wo

Dia da Mae

2011-04-29 Thread Paredes Hotel
A presente e-newsletter destina-se znica e exclusivamente a informar e nco pode ser considerada SPAM. De acordo com a legislagco internacional que regulamenta o correio electrsnico, "o e-mail nco podera ser considerado SPAM quando incluir uma forma do receptor ser removido da lista". Caso o seu nom

Re: tftp - no route to host

2011-04-29 Thread lilit-aibolit
Evgeniy Sudyr P?P8QP5Q: Pavel, 1) Are you sure that you uncommented tftpd in inetd.conf ? Is inetd started ? 2) netstat -na | grep 69 3) tcpdump -ni lo port 69 4) check PF rules as Janne wrote before (maybe you need to pass or just skip on lo). Btw, does it make any sense to use TFTP on localh

Re: tftp - no route to host

2011-04-29 Thread Evgeniy Sudyr
Sorry, I've missed your netstat output, ignore part of my previous mail :) On Fri, Apr 29, 2011 at 12:33 PM, Evgeniy Sudyr wrote: > Pavel, > > 1) Are you sure that you uncommented tftpd in inetd.conf ? Is inetd started ? > 2) netstat -na | grep 69 > 3) tcpdump -ni lo port 69 > 4) check PF rules a

Re: tftp - no route to host

2011-04-29 Thread Evgeniy Sudyr
Pavel, 1) Are you sure that you uncommented tftpd in inetd.conf ? Is inetd started ? 2) netstat -na | grep 69 3) tcpdump -ni lo port 69 4) check PF rules as Janne wrote before (maybe you need to pass or just skip on lo). Btw, does it make any sense to use TFTP on localhost ? :) -- Thanks! Eugene

Re: tftp - no route to host

2011-04-29 Thread lilit-aibolit
Janne Johansson PI[ET: 2011/4/29 pavel pocheptsov > openbsd 4.8 # cat /etc/pf.conf | grep tftp pass in on $int_if inet proto udp from any to $int_if port tftp # tftp 127.0.0.1 127.0.0.1 would not be on the $int_if, would it? -- To our sweethea

Re: dmesg for notebooks useful?

2011-04-29 Thread Sevan / Venture37
Stick them up on http://www.nycbug.org/index.php?NAV=dmesgd;SQLIMIT=20 as well as sending them to dm...@openbsd.org Sevan / Venture37

Re: tftp - no route to host

2011-04-29 Thread Janne Johansson
2011/4/29 pavel pocheptsov > openbsd 4.8 > # cat /etc/pf.conf | grep tftp > pass in on $int_if inet proto udp from any to $int_if port tftp > # tftp 127.0.0.1 > 127.0.0.1 would not be on the $int_if, would it? -- To our sweethearts and wives. May they never meet. -- 19th century toast

Re: use DUIDs rather than device names in fstab?

2011-04-29 Thread David Gwynne
On 29/04/2011, at 4:48 PM, Otto Moerbeek wrote: > > Op 29 apr. 2011 om 07:00 heeft David Gwynne het volgende geschreven: > >> this is why i like duids: > > Is this what you get when you max out every option when ordering a machine? no...

tftp - no route to host

2011-04-29 Thread pavel pocheptsov
openbsd 4.8 # cat inetd.conf | grep tftpd tftpdgram udp waitroot/usr/libexec/tftpd /usr/libexec/tftpd -s /tftpboot # netstat -na | grep .69 udp 0 0 *.69 *.* # cat /etc/pf.conf | grep tftp pass in on $int_if inet proto udp from any