Re: is my dns server/ routing borked??, i could need some advice

2016-05-24 Thread Ton Muller
On 23-5-2016 8:45, li...@wrant.com wrote: >>> For some reasons, i notice that i am not able to access some website in >>> the first 10 minutes when i have my machine turned on. >> >> If you have a broadband on premises equipment like a converter, modem, >> router, switch e

Flaw in ipsec.conf(5)?

2016-05-24 Thread Bruno Flueckiger
Hi, I've tested IPsec connections in my lab. The setup looks like this: [cli] <-- vlan10 --> [gw1] <> [inet] <> [gw2] <-- vlan20 --> [srv] IPsec= During the testing I think I've found a flaw in ipsec.conf(5). According to the man page the esp pac

Re: is my dns server/ routing borked??, i could need some advice

2016-05-24 Thread lists
> >>> For some reasons, i notice that i am not able to access some website > >>> in > >>> the first 10 minutes when i have my machine turned on. > >> > >> If you have a broadband on premises equipment like a converter, modem, > >> router, switch etc, you may conside

synproxy state timeout

2016-05-24 Thread Kapetanakis Giannis
Hi, I have a couple of questions regarding the timeout of PROXY:SRC states in a syn-flood DOS scenario (+spoofing). My need is for quick state deletion of invalid connections on the firewall/router (not on the server). I've noticed that only tcp.first is taken into account for state expiry.

Re: Flaw in ipsec.conf(5)?

2016-05-24 Thread Philipp Buehler
Am 24.05.2016 10:53 schrieb Bruno Flueckiger: As a result of my tests I've created the diff below for ipsec.conf(5). Is this ok or did I miss something? You missed the 'set skip on enc0' a bit up. -- pb

Re: Is loss of read-only /usr permanent?

2016-05-24 Thread Kevin Chadwick
> [WARNING! Shameless self-promotion below!] > I have solved my need for read-only OpenBSD in a following manner: > https://www.mimar.rs/blog/how-to-increase-openbsds-resilience-to-power-outage > s/ write your own boot seed... doh! why didn't I think of that already, though I'm still unsure why rc

Re: tp-link tl-wn722n athn0: could not load firmware

2016-05-24 Thread Mihai Popescu
Just for the record, I have tried this dongle on a different computer, Intel based and the result is the same. I found a dmesg with this model showing the MAC, but my model shows no MAC. Maybe this is a different revision with a slighty different chip. No big deal. Thanks.

Re: Is loss of read-only /usr permanent?

2016-05-24 Thread lists
Tue, 24 May 2016 16:44:09 +0100 Kevin Chadwick > > [WARNING! Shameless self-promotion below!] > > I have solved my need for read-only OpenBSD in a following manner: > > https://www.mimar.rs/blog/how-to-increase-openbsds-resilience-to-power-outage > > s/ > > write your own boot seed... doh! why

BL460c G1 issues

2016-05-24 Thread Steve Shockley
I have an HP BL460c blade I'm using with OpenBSD. I was able to get 5.8 to install by disabling ACPI; since I'm lazy I didn't submit a bug report. I tried to upgrade to 5.9 (and -current), but booting from the CD ends with: wskbd0 at pckbd0: console keyboard, using wsdisplay1 This might be s

Harmonize make commands style

2016-05-24 Thread Mario St-Gelais
--- guide.html Tue May 24 19:10:11 2016 +++ guide_mine.html Tue May 24 19:13:02 2016 @@ -282,7 +282,7 @@ All files in DISTFILES are usually processed during -make extract. +make extract. EXTRACT_ONLY may be used to limit extraction to a subset of files (possibly empty). The customary u