Re: How to run and manage a DNS server.

2007-06-06 Thread Open Phugu
On 6/6/07, Sam Fourman Jr. <[EMAIL PROTECTED]> wrote: well here is a question, I was wondering if there would be anyway to make OpenBSD based DNS servers have a PostgreSQL backend. (I know there will be a performance hit) This (http://home.tiscali.cz:8080/~cz210552/sqldns.html) might do what y

Re: How to run and manage a DNS server.

2007-06-06 Thread Open Phugu
On 6/6/07, Bray Mailloux <[EMAIL PROTECTED]> wrote: Hello; This is my first time managing anything larger than a simple dhcp or pf box and I'm wondering if there is anyone available on this list who can answer a few questions I have concerning the creation and management of DNS servers. Give us

Re: OpenBSD router playing up

2007-06-05 Thread Open Phugu
On 6/5/07, Karl Kopp <[EMAIL PROTECTED]> wrote: Hi All, I have a strange issue. We are using a OpenBSD 3.9 box running on an AMD64 CPU. Its doing BGP with our upstream provider and has some basic pf rules. Occasionally, the network slows to a crawl. I setup some external monitoring, and while a

Re: c2k7 hackathon is over

2007-06-02 Thread Open Phugu
On 6/2/07, Theo de Raadt <[EMAIL PROTECTED]> wrote: The c2k7 hackathon is over, with roughly 50 developers attending the event for 10 days in Calgary. So many projects were started or finished, it is basically impossible for me to describe all the projects. Hope you guys out there enjoy the cha

Re: OpenBSD sucks

2007-05-31 Thread Open Phugu
On 5/31/07, qw er <[EMAIL PROTECTED]> wrote: It really sucks. it is slow. What you say does not apply to OpenBSD. What you said describes you.

Re: Prevent circumventing dansguardian with pf

2007-05-07 Thread Open Phugu
On 5/7/07, [EMAIL PROTECTED] <[EMAIL PROTECTED]> wrote: >From: Sebastian Benoit <[EMAIL PROTECTED]> > >If you want deny users the possiblility to smuggle data outside of their >workplace (or whatever) then don't connect them to the internet. No, no, no. You must go one step beyond this if you w

Re: OpenBSD 4.1 Torrents

2007-05-06 Thread Open Phugu
On 5/6/07, Adam Hawes <[EMAIL PROTECTED]> wrote: > Um, can you site a single *real world* example of where md5 sums > have been co-opted in any way? Yes, md5 now has a weakness, but > really, are there any cases of anyone having actually exploited it? That is not my point. My point is that if M

Re: OpenBSD 4.1 Torrents

2007-05-04 Thread Open Phugu
On 5/4/07, John Fiore <[EMAIL PROTECTED]> wrote: Your point is taken, however, can you illustrate the threat against which the stronger hash is to protect? If the threat is that someone will redirect you to a fake openbsd.org (through DNS cache poisoning, etc.), the stronger hash offers no prote

Re: OpenBSD 4.1 Torrents

2007-05-04 Thread Open Phugu
On 5/4/07, John Fiore <[EMAIL PROTECTED]> wrote: > Speaking of this, when will the OpenBSD project begin to post SHA256 > hashes > to the ftp sites. MD5 is dead: these two files are different and yet > have the same > MD5 hash. > http://www.cits.rub.de/imperia/md/content/magnus/letter_of_rec.ps >

Re: Machine freezes from invalid Ethernet packets

2007-05-04 Thread Open Phugu
On 5/4/07, Karel Kulhavy <[EMAIL PROTECTED]> wrote: Hello I connected a 10Mbps free space optics link to a 10Mbps hub to which OpenBSD 4.0 machine (Dell Inspiron 510m) was connected. The link had probably bad signal because on the Dell directly (i. e. in the NIC) I could receive the RTP that was

Re: Prevent circumventing dansguardian with pf

2007-05-04 Thread Open Phugu
On 5/4/07, Henning Brauer <[EMAIL PROTECTED]> wrote: * Chad M Stewart <[EMAIL PROTECTED]> [2007-04-25 19:31]: > On Apr 25, 2007, at 11:05 AM, Allen Theobald wrote: > >pass in inet proto icmp all icmp-type $icmp_types keep state > > This can be used as a covert communication channel. Allowing > i

Re: OpenBSD 4.1 Torrents

2007-05-02 Thread Open Phugu
On 5/2/07, Mike Erdely <[EMAIL PROTECTED]> wrote: On Wed, May 02, 2007 at 08:07:10PM -0400, Clint M. Sand wrote: > On Tue, May 01, 2007 at 02:33:50PM -0700, andrew fresh wrote: > > http://openbsd.somedomain.net/index.php?version=4.1 > Just out of curiosity... > > Is it logical to use an OS for th

Re: SSHJail patch for OpenBSD

2007-04-27 Thread Open Phugu
On 4/26/07, Rico Secada <[EMAIL PROTECTED]> wrote: Hi Before I testrun this http://paradigma.pt/~gngs/sshjail/ does anyone already know if this patch would work with OpenSSH on OpenBSD > 3.9? Instead of asking, try the patch.

Re: force password changes

2007-04-12 Thread Open Phugu
On 4/12/07, John N. Brahy <[EMAIL PROTECTED]> wrote: What's the best way to force users to change their passwords? If you are needing technical measures, the posters below have it. If by ``force users to change their passwords'' you are asking us for our favorite LARTs, in general, the electrifi

Re: bcw(4) is gone

2007-04-12 Thread Open Phugu
On 4/11/07, Mike Erdely <[EMAIL PROTECTED]> wrote: On Wed, Apr 11, 2007 at 08:20:51PM +0200, Timo Schoeler wrote: > On Wed, 11 Apr 2007 20:08:44 +0200 Marc Balmer wrote: > > > [X] -- communism isn't as bad as the GPL ;) > > [X] marco is a communist > no; if so, he's as good as communist as George

Re: Microsoft gets the Most Secure Operating Systems award

2007-03-22 Thread Open Phugu
On 3/22/07, Marc Espie <[EMAIL PROTECTED]> wrote: On Thu, Mar 22, 2007 at 03:28:29PM -0400, Douglas Allan Tutty wrote: > Their challenge is that they need to provide choice so they > have what they call reasonable defaults. No, they don't need to provide choice. At least not that many. They deci

Re: Is OpenBSD good/best for my 486?

2007-03-22 Thread Open Phugu
On 3/22/07, Douglas Allan Tutty <[EMAIL PROTECTED]> wrote: You mean OpenBSD has encrypted swap out-of-the-box? That's fantastic. It took a while to set up on my debian etch box. That is why we call it ``secure by default''

Re: make build crashing

2007-03-21 Thread Open Phugu
On 3/21/07, Bray Mailloux <[EMAIL PROTECTED]> wrote: I am updating my 4.0 system to the latest ~stable build and each time my "make build" is crashing. What information should I post in order to insure maximum clarity with the problem? Post the exact command, the output of the ``make build'',

Re: OpenBSD speed on desktops

2007-03-19 Thread Open Phugu
On 3/19/07, Karel Kulhavy <[EMAIL PROTECTED]> wrote: On Sat, Feb 17, 2007 at 12:36:00PM -0500, R. Fumione wrote: > Hello, > > I am using OpenBSD on server since few years now, and I am very happy > with it's easy maintenance and it's stability. I want to try on > desktop, and I am having trouble.

Re: Save ports

2007-02-20 Thread Open Phugu
Turn off inetd to close 13,37,133. Configure sendmail not to listen on ports 25 and 587, That leaves 22(ssh) and 53(domain). On 2/20/07, Bray Mailloux <[EMAIL PROTECTED]> wrote: I ran an nmap -sS localhost which output port state service 13/tcp open daytime 22/tcp