Folks are there any tips to improve page load times on smokeping running on OpenBSD

2023-03-06 Thread Tom Smyth
Folks, I m running smokeping fcgi and rrdcached ontop of OpenbSD, to smokeping about 150 devces the page load times can take 30 seconds to 1 minute, is there any way to speed this up. im running 7.2 OpenBSD on amd64 vm on top of an SSD array any tips tricks welccome ... ###etc-smokeping-config

syslog.conf syntax to specify several clients

2023-03-06 Thread All
Hi all, I have a server that acts as a syslog aggregator for several other servers. I was trying to see whether clients can be specified on one line but I can't see anything  regarding syntax for such cases in man pages. Do we need to specify each client on the separate line? Like: +server1 *.bl

Route selected IP traffic across wg(4) tunnel

2023-03-06 Thread Chris Jones
Good afternoon, Wondering if anyone has a "best practice" for pealing IP traffic off (in this case an AppleTV) and routing all the traffic across a Wireguard tunnel. I've looked at the pf(4) routing option **route-to** and tried setting this up to the best of my knowledge (I seem to be missing

Re: Not bootable after successfull fresh install

2023-03-06 Thread George
On 2023-03-06 07:55, Francois Pussault wrote: using installboot  manually gave answer files are not given so ISO are faulted Using / as rootinstalling bootstrap on /dev/rsd2cusing first-stage /usr/mdec/biosboot, second-stage /usr/mdec/bootinstallboot: /usr/mdec/biosboot: No such file or dire

Re: Not bootable after successfull fresh install

2023-03-06 Thread Stuart Henderson
On 2023-03-06, Francois Pussault wrote: > using installboot  manually gave answer files are not given so ISO are faulted > > Using / as rootinstalling bootstrap on /dev/rsd2cusing first-stage > /usr/mdec/biosboot, second-stage /usr/mdec/bootinstallboot: > /usr/mdec/biosboot: No such file or dire

Re: Not bootable after successfull fresh install

2023-03-06 Thread Francois Pussault
using installboot  manually gave answer files are not given so ISO are faulted Using / as rootinstalling bootstrap on /dev/rsd2cusing first-stage /usr/mdec/biosboot, second-stage /usr/mdec/bootinstallboot: /usr/mdec/biosboot: No such file or directory Le 6 mars 2023 à 12:56, Francois Pussault

Re: fragmented ipv4[udp] ignored by server. OT: pf optimization setup

2023-03-06 Thread Daniele B.
Tom Smyth : > IP fragments are a pain as they dont really match the protocol of the > original packet  and  have all sorts of issues when traversing multipath > (hashed) multipath  routes between the source and destination.. > cloudflare have a really good article on this > https://blog.cloudflare

Not bootable after successfull fresh install

2023-03-06 Thread Francois Pussault
hello, used all from https://www.openbsd.org/faq/faq4.html#Download but no image iso/img/netimage/etc... (7.2) failed install  all are working perfectly   therefore reboot cannot be done  after the install process  it looks like it wrote the MBR nowhere or in ram or something similar  or inst

Re: Nic I225-V issue

2023-03-06 Thread Pietro Leone Pola Falletti di Villafalletto
OK, I try that way. Thanks for your time. On 3/6/2023 7:14 AM, Peter N. M. Hansteen wrote: On Sun, Mar 05, 2023 at 11:26:04PM +0100, Pietro Leone Pola Falletti di Villafalletto wrote: Hallo, I bought industrial fanless pc for using it as firewall with OpenBSD. I tried both 7.2 and 7.3-beta, I

A new version of fmt enhanced for *roff files

2023-03-06 Thread Walter Alejandro Iglesias
Hello everyone, I wrote my own version of fmt, with some enhancements and a new feature to break lines in *roff files. https://en.roquesor.com/Downloads/fmtroff.c In the head comment is explained why I reinvented the wheel. :-) I guess someone could find it useful. -- Walter

Re: fragmented ipv4[udp] ignored by server.

2023-03-06 Thread Mikhael Lialin
Hello Tom. It's a local setup. So radius server and eapol_client are located on the near ports of cisco sg350 switch. And there is no rules on this switch present regarding fragmented packets. Anyway it's capable of rspan, and it's possible to mirror traffic from one port to another for analys

SSHD - Authorized_keys file format : relative validity, possible ?

2023-03-06 Thread Rachel Roch
According to the docs, "exprity-time="timespec" needs to be an absolute date/time,  and canot be relative. Am I misunderstanding this ? Or perhaps there is an alternative way to do what I want to achieve, namely to enforce maximum validity of a user's cert being presented to the server (i.e. to