Re: Untable ssl connections over ikev2 VPN

2018-11-30 Thread Janne Johansson
Den fre 30 nov. 2018 kl 04:21 skrev Theodore Wynnychenko : > > > -Original Message- > > Hello > > > > I have been having trouble getting an openBSD laptop to connect to ssl > > connections when communicating over ikev2. > > Check if the MTU is causing issues, sometimes VPNs (which lower th

Re: ikev2 and road warriors setup

2018-11-30 Thread Radek
Hello, Thank all of you for your time and your help in this matter! I think that the ISP of A.B.C.0/23 is filtering/blocking some certificates. I have moved VPN server and clients out of A.B.C.0/23. They can connect pretty fine using CA now. Clients from A.B.C.0/23 still can NOT connect to VPN

Re: Why stacking softraid disciplines is not supported?

2018-11-30 Thread Justus Hämäläinen
> On 29 Nov 2018, at 15.24, Joel Sing wrote: > > On Thursday 29 November 2018 12:05:08 Justus Hämäläinen wrote: >> Hi, >> >> I see that stacking softraid disciplines is not supported, but why I >> wonder? I was thinking about running fulldisk encryption on softraid >> RAID1. >> >> Is it unsup

Re: Intel Celeron SoC support

2018-11-30 Thread Andrew Lemin
Hi Chris, I decided to sell the board and get a different one.. But for others wanting to use this board in the future. I tried both USB and PS2 Native (no adapter) keyboards. Neither work after the installer starts. Bearing in mind none of the SATA ports are detected either.. Cheers, Andy. On

Re: Why stacking softraid disciplines is not supported?

2018-11-30 Thread Stefan Sperling
On Fri, Nov 30, 2018 at 04:21:51PM +0200, Justus Hämäläinen wrote: > Would adding a new RAID 1 Crypto discipline be as 'simple' as creating a new > softraid_raid1_crypto.c and adding the init function to the > sr_discipline_init? > > Having each mode as a separate discipline has the advantage th

Re: Key-based FDE /w UEFI fails

2018-11-30 Thread Joel Sing
On Thursday 29 November 2018 20:38:23 Stefan Wollny wrote: > Hi there! > > I need help / advice with a fresh install onto a Thinkpad T450s which I > recently bought on eBay. > > The system starts with UEFI enabled and was running fine with a rather > small SSD without FDE. dmesg from some recent

Re: OpenBGPD - Adding Diversity to the Route Server Landscape (ripe.net)

2018-11-30 Thread Chris Cappuccio
Mike Hammett [openbsd-m...@ics-il.net] wrote: > Why worry about HTTPS? What's to gain? > > Job's Twitter is very promising. > Aside from getting exploited by the latest OpenSSL bug (ok, LibreSSL has done a great job lowering this probability!), the other big benefit is that crappy providers an

[OT?] I have 4 IPs. How is outbound IP selected, say run lynx URL on server?

2018-11-30 Thread Chris Bennett
I'm just curious. Is there a default method to select on this? Random? Can I control this somehow? It's clear how everything else selects IP, but I just wanted to know in case that ever mattered, say one of my IPs were blocked. And I wanted to be sure which IP outbound is or is not used for running

Re: [OT?] I have 4 IPs. How is outbound IP selected, say run lynx URL on server?

2018-11-30 Thread Janne Johansson
Den fre 30 nov. 2018 kl 21:32 skrev Chris Bennett : > I'm just curious. Is there a default method to select on this? Random? > Can I control this somehow? > It's clear how everything else selects IP, but I just wanted to know in > case that ever mattered, say one of my IPs were blocked. > And I wan

Re: [OT?] I have 4 IPs. How is outbound IP selected, say run lynx URL on server?

2018-11-30 Thread Claudio Jeker
On Fri, Nov 30, 2018 at 09:51:37PM +0100, Janne Johansson wrote: > Den fre 30 nov. 2018 kl 21:32 skrev Chris Bennett > : > > I'm just curious. Is there a default method to select on this? Random? > > Can I control this somehow? > > It's clear how everything else selects IP, but I just wanted to kno

Re: [OT?] I have 4 IPs. How is outbound IP selected, say run lynx URL on server?

2018-11-30 Thread Kaya Saman
On 11/30/18 8:31 PM, Chris Bennett wrote: I'm just curious. Is there a default method to select on this? Random? Can I control this somehow? It's clear how everything else selects IP, but I just wanted to know in case that ever mattered, say one of my IPs were blocked. And I wanted to be sure w

Re: openbsd 6.4 as guest VM on Xen cannot detect disk

2018-11-30 Thread Andrew Daugherity
I have no idea what is causing your backend timeout, but your VM config would be useful information, and take a look at xend.log etc. on the host for any related errors (if you have access to it). I'm running OpenBSD 6.4 just fine under Xen; however my Dom0 is only 4.4.4 (dmesg attached). Note tha