Re: Samba on obsd

2020-03-25 Thread David Sastre
Depending on your requirements, e.g. Windows machined in your setup, you can also try https://www.freeipa.org I would use Fedora, not CentOS. It is an umbrella project for LDAP, Kerberos, DNS, NTP and some added functionality on top you might or might not need/use. It can also establish trust relat

problems setting up PORTS_PRIVSEP

2020-03-25 Thread Moises Simon
Hi misc, I'm trying to set the ports system to use PORT_PRIVSEP according to bsd.port.mk(5) and https://www.openbsd.org/faq/ports/ports.html#PortsConfig but I'm getting the following error: sirius$ make fetch mkdir /usr/obj/ports: Permission denied at /usr/ports/infrastructure/bin/portlock line

Re: Samba on obsd

2020-03-25 Thread Lars Bonnesen
It seems that Debian is also recommended as an AD replacement. On Wed, Mar 25, 2020 at 12:13 PM David Sastre wrote: > Depending on your requirements, e.g. Windows machined in your setup, you > can also try > https://www.freeipa.org > I would use Fedora, not CentOS. > It is an umbrella project f

Re: Samba on obsd

2020-03-25 Thread Luke A. Call
On 03-25 12:42, Lars Bonnesen wrote: > It seems that Debian is also recommended as an AD replacement. And in my experience with packaging tools internals, policies, standards support, etc (which was not with anything related to AD), far superior to other Linux distros. Ask me off-list if you want

MITM ?

2020-03-25 Thread Cord
Hi, some months ago I sent some emails to misc (search my email on google) because I believe my obsd laptop was been hacked. Then I bought a new laptop because my suspicious were that some firmware or the bios had some infected code. Then I taken the new laptop and I went in two wifi point (in tw

Re: MITM ?

2020-03-25 Thread Chris Bennett
On Wed, Mar 25, 2020 at 07:17:59PM +, Cord wrote: Go buy an ethernet cable. No WiFi. Use someone's phone hotspot. Use a fixed PKG_PATH instead of /etc/installurl Read a LOT of man pages and misc@ tech@ ports@ bugs@ Maybe even tell us which version of VAX your laptop runs on? Is it OpenBSD ve

Re: MITM ?

2020-03-25 Thread Joe Davis
> > What is your opinion ? > > could be a MITM from my router and a kernel 0day on the tcp/ip stack > > implementation ? > > could be MITMed pkg_add ? > > the encryption algorithm (AES_128_GCM) behind https is really secure ? > > Can some code be injected in an encrypted stream ? An internet conn

Managing multiple OpenBSD systems with a single base install

2020-03-25 Thread Demi M. Obenour
I am working on an OpenBSD-based QubesOS TemplateVM, and have run into a few problems. In QubesOS, all volumes of a TemplateVM are persistent. AppVMs based on a TemplateVM use a (copy of) the TemplateVM’s root partition, but have their own private partition, which is set to zero when the VM first