pf documentation

2022-04-07 Thread Steve Litt
Hi all, I need some easy beginner's pf documentation as well as some intermediate pf documentation. I plan to make an OpenBSD/pf firewall. I haven't done this in ten years, and imagine pf and the process of turning OpenBSD into a firewall have changed in that time. Thanks, SteveT Steve Litt Ma

Re: pf documentation

2022-04-07 Thread Janne Johansson
Den tors 7 apr. 2022 kl 11:12 skrev Steve Litt : > > Hi all, > > I need some easy beginner's pf documentation as well as some > intermediate pf documentation. I plan to make an OpenBSD/pf firewall. I > haven't done this in ten years, and imagine pf and the process of > turning OpenBSD into a firewa

Re: pf documentation

2022-04-07 Thread Brodey Dover
To be honest, I just used the handbook/FAQ. https://www.openbsd.org/faq/pf/example1.html Note that some grammar and syntax from Google search results will not work in newer versions of pf. Sent from my iPhone > On Apr 7, 2022, at 05:13, Steve Litt wrote: > > Hi all, > > I need some easy b

Re: TLS library problme: tlsv1 alert protocol

2022-04-07 Thread Stuart Henderson
On 2022-04-06, Tom Smyth wrote: > Hi Stephan, > at a guess I would say that there is no overlap between supported TLS > protool versions and ciphers > available on the client vs the server. This message explicitly suggests protocol version rather than cipher > if your system is using a recent

Re: pf documentation

2022-04-07 Thread Tom Smyth
Hi Steve, Im going to give my usual answer here Peter Hansteen and Max Stucchi have an amazing tutorial on PF https://home.nuug.no/~peter/pftutorial/#1 but they explain the concepts really well recommend the class that they do in person .. for the latest features about PF in the version of Open

Re: pf documentation

2022-04-07 Thread Tom Smyth
Steve, if you like books ... Peter Hansteen has written a book the book of pf which I have read and would recommend https://nostarch.com/pf3 and if you are interested in firewalls ingeneral and comparing features On Thu, 7 Apr 2022 at 10:40, Tom Smyth wrote: > > Hi Steve, > Im going to give

[www] ports: delete note about $OpenBSD$

2022-04-07 Thread Mikhail
This advice no longer needed. diff --git a/faq/ports/guide.html b/faq/ports/guide.html index 9cfe0db80..ae3d1d79c 100644 --- a/faq/ports/guide.html +++ b/faq/ports/guide.html @@ -1303,12 +1303,6 @@ OpenBSD is strongly security-oriented. You should read and understand this page's security section

Re: pf documentation

2022-04-07 Thread Stuart Henderson
On 2022-04-07, Steve Litt wrote: > I need some easy beginner's pf documentation as well as some > intermediate pf documentation. I plan to make an OpenBSD/pf firewall. I > haven't done this in ten years, and imagine pf and the process of > turning OpenBSD into a firewall have changed in that time.

Re: [www] ports: delete note about $OpenBSD$

2022-04-07 Thread Marc Espie
On Thu, Apr 07, 2022 at 02:33:36PM +0300, Mikhail wrote: > This advice no longer needed. > > diff --git a/faq/ports/guide.html b/faq/ports/guide.html > index 9cfe0db80..ae3d1d79c 100644 > --- a/faq/ports/guide.html > +++ b/faq/ports/guide.html > @@ -1303,12 +1303,6 @@ OpenBSD is strongly security-

Re: sysupgrade fails due to "CHECK AND RESET DATE" ?

2022-04-07 Thread Jan Stary
> It seems that problem is not having any display device during sysupgrade > process. I don't think sysupgrade has any requirements regarding a display device: headless machines get sysupgraded regularly

Re: sysupgrade fails due to "CHECK AND RESET DATE" ?

2022-04-07 Thread Kasak
> 7 апр. 2022 г., в 17:13, Jan Stary написал(а): > >  >> >> It seems that problem is not having any display device during sysupgrade >> process. > > I don't think sysupgrade has any requirements regarding a display device: > headless machines get sysupgraded regularly Yes. I have some anoth

map/mount a directory/partition into memory

2022-04-07 Thread Mihai Popescu
Hello, Since my computer is struggling with chromium and I suspect it's the disk access being too slow, I want to map the directory accessed by chromium ( i think it is ~/.cache) into the memory. Looking in the man, i spotted rd, but i think i need to setup this in the kernel. The next choice is

OpenSMTPD + Dovecot + Dkimsign configuration?

2022-04-07 Thread latincom
Hello i have had 1 Personal server for years with httpd and OpenSMTPD mail server working correctly; thanks OpenBSD Team. But now i have another server for 500 Colleagues with OSMTPD + Dovecot + Dkimsign working well; but i ask, if it were possible to use only OSMTPD with virtual users + Dkimsig

Re: OpenSMTPD + Dovecot + Dkimsign configuration?

2022-04-07 Thread Martijn van Duren
On Thu, 2022-04-07 at 21:04 -0700, latin...@vcn.bc.ca wrote: > Hello > > i have had 1 Personal server for years with httpd and OpenSMTPD mail > server working correctly; thanks OpenBSD Team. > > But now i have another server for 500 Colleagues with OSMTPD + Dovecot + > Dkimsign working well; but