Hi,
Im running 6.0 amd64 on a pair of R210 with relayd, but these are R210 (II).
No kernel panics at all, and these systems are working in a live
environment...
Regards
Andre
Am 02.05.17 um 15:03 schrieb Mathieu BLANC:
On Wed, Mar 29, 2017 at 02:06:23PM +0200, Mathieu BLANC wrote:
It als
Hm, I got a relayd-problem with a similar config.
100% CPU load nearly all 10 days with 5.9,
same behavior all 3-4 weeks with 6.0.
Wrong-ordered relayd.conf too.
looks like this when running in trouble:
_relayd 33851 100.0 0.1 2004 4496 ?? Rp15Apr17 3363:59.52
relayd: relay (relayd)
grade messages (decoded in wireshark as
"HTTP/1.1 101 Switching Protocols" packets) from the internal server are
replaced by relayd with packets with the RST-flag set directed to the
WAN client and the connection is closed.
My head-scratching question:
is this possible at all with relayd?
Or do I have to switch to nginx?
Regards
Andre Ruppert
smime.p7s
Description: S/MIME Cryptographic Signature
Hello @misc,
I use a CARPed pair of 6.2 gateways as vpn access nodes, running "plain"
ISAKMPD/ipsec.
The peering vpn gateways have different brandings from OpenBSD, linux,
cisco to watchguard appliances etc...
Interoperability works most like a charm and is a no-brainer in most cases.
I ha
Remark below...
Am 14.05.18 um 13:38 schrieb Andre Ruppert:
Hello @misc,
I use a CARPed pair of 6.2 gateways as vpn access nodes, running "plain"
ISAKMPD/ipsec.
The peering vpn gateways have different brandings from OpenBSD, linux,
cisco to watchguard appliances etc...
Intero
Hello Philipp,
sorry for the late answer
Thanks for the hint with the cookies.
Works in my environment
I'm much happier now ;-)
Best regards
Andre
Am 15.05.18 um 05:15 schrieb Philipp Buehler:
Hello Andre,
Am 14.05.2018 13:38 schrieb Andre Ruppert:
I got the tips from this
ain incapabillities?
Best regards
Andre
Am 15.05.18 um 05:15 schrieb Philipp Buehler:
Hello Andre,
Am 14.05.2018 13:38 schrieb Andre Ruppert:
I got the tips from this 2013 undeadly.org article:
Managing Individual IPsec Tunnels On A Multi-Tunnel Gateway
https://undeadly.org/cgi?action=art
quot;:
carp0: state transition: INIT -> BACKUP
state transition: BACKUP -> MASTER
state transition: INIT -> BACKUP
state transition: BACKUP -> MASTER
No PF-ruleset-problem!
resulting question -
what the heck is going on here? ;-)
alternative: what did I forgot to configure?
Thanks for reading...
Andre Ruppert
.. despite the usage of blanks only.
Crunched it to a 1-liner and all worked...
Seems that the parsing is different at booting?
Andre
Am 02.10.15 um 10:37 schrieb Andre Ruppert:
Hello @list,
perhaps I'm stupid but I've got a problem with two CARPed gateways
running 5.7-amd64 sta
- 1
vlan211
I'm clueless and don't know how to investigate further...
In my pf.conf I tried to "temporarly annihilate" the rules on the em0
interface ("set skip on em0"), but that didn't help
Any hints?
head-scratching regards
Andre Ruppert
smime.p7s
Description: S/MIME Cryptographic Signature
net.ip.ipsec-pfs=1
net.inet.ip.ipsec-soft-allocs=0
net.inet.ip.ipsec-allocs=0
net.inet.ip.ipsec-soft-bytes=0
net.inet.ip.ipsec-bytes=0
net.inet.ip.ipsec-timeout=86400
net.inet.ip.ipsec-soft-timeout=8
net.inet.ip.ipsec-soft-firstuse=3600
net.inet.ip.ipsec-firstuse=7200
net.inet.ip.ipsec-enc-alg=aes
net.
Fri, 16 Mar 2018 13:25:49 +0100
Janne Johansson :
> 2018-03-16 12:26 GMT+01:00 Andre Ruppert :
>
> > Hello @misc,
> >
> > after a nightly release upgrade of our VPN-Gateway(s) from 6.0 via
> > 6.1 to 6.2 (amd64) I noticed some trouble with my VPN connections.
>
Just a little addendum to your final post:
I use OpenBSD as my desktop environment (also MAC OS and Linux) and I
was looking for years for an outline application which I can use on
every OS.
Finally I switched from open to (paid) closed source *sigh* but now most
of my problems were solved.
er?
Anyone who had similar problems?
Every hint is welcome, I'm clueless... ;-)
best regards
Andre Ruppert
[demime 1.01d removed an attachment of type application/pkcs7-signature which
had a name of smime.p7s]
Hello again,
Date: 17.11.16 time: 18:32 - Christer Solskogen wrote:
> Try use bridge mode instead of NAT. I had the exact same problem on
> Windows 10 as a host.
>
> --
> chs
>
...that hit the point.
Tested on Mac OS and Win10 as host - same solution.
Thank You!
My former tested bridged-setu
persuade them to
>> provide an OpenBSD-version of their office suite. But they seem to have
>> none with some decent Unix/OpenBSD-knowledge, just Linux. Sigh...
>
> I would buy SoftMaker on OpenBSD.
Andre Ruppert
[demime 1.01d removed an attachment of type application/pkcs7-signature which
had a name of smime.p7s]
posed to Eastern
European kiddie porn syndicate, which should not? Or does that mean
that kiddie porn syndicate exists only in Eastern Europe, but not in -
let's say - New Zealand or Canada?
I guess this was intended to be a joke, but in my opinion it sucks.
--
Andre Ruppert
ple.
You have two different protocols: SIP for signaling und RTP for media.
Media information between the endpoints is specified in SIP-SDP-packets
(session description protocol).
SDP-packets contain the original IPs of the VoIP-endpoints, and these
IPs won't be NATed!
Do you make use of
n't need isakmpd.conf for other parameters ;-)
best regards
Andre Ruppert
pptp from their
VoIP-Clients in different locations. Ipsec stacks are not supportet.
So, at least H.323 VoIP technology would appreciate this diff :-)
Greetings
Andre Ruppert
Sorry, no chance
Regards
Andre Ruppert
http://www.oreillynet.com/pub/a/sysadmin/2007/02/15/evaluating_firewalls.html
...have fun...
greetings
Andre Ruppert
...and OpenBSD, of course...
sorry, I forgot
Andre
t; 8138D. Can anyone speak for these cards? The price is nice and a
> > 4port nic would be very handy.
>
> re should almost certainly work with it. may not attach because the
> id is missing, but that's easy to fix.
>
It worksI used this nic several times...re is ri
set is obviously the NIC, the
> RTL8305B chipset is a five port switch:
right again - 1 nic and a build-in switch.
...would be too cheap for a "real" quad-nic :-)
--
Andre Ruppert
...
Perhaps I made the mistake when using tun-whatsoever?
All hints welcome ;-)
Andre Ruppert
or messages disappear, but tcp-traffic doesn't work yet.
I had to re-replace v3.7 with v3.4 again :-((
Any suggestions or hints?
greetings
Andre Ruppert
Am Mon, 22 Aug 2005 15:24:40 +0200
Ivo Dijkhuis <[EMAIL PROTECTED]> schrieben Sie:
> Andre Ruppert wrote:
> > Hello to the list...
> >
> > The problem: a long time running stable v3.4 OBSD VPN gateway
> > running behind a (german) SDSL line was replaced with
use Intel Pro dual NICs in most of my Dell Equipment.
Again - no problems at all...
Regards
Andre Ruppert
at uhub7 port 2 "Dell product 0x0058" rev
2.00/10.00 addr 8 uhidev0 at uhub8 port 2 configuration 1 interface 0
"Primax Electronics USB Optical Mouse" rev 2.00/2.00 addr 9 uhidev0:
iclass 3/1 ums0 at uhidev0: 3 buttons, Z dir
wsmouse1 at ums0 mux 0
umass0 at uhub7 port 3 configuration 1 interface 0 "Dell USB Drive A04"
rev 2.00/2.00 addr 10 umass0: using SCSI over Bulk-Only
scsibus0 at umass0: 2 targets, initiator 0
cd0 at scsibus0 targ 1 lun 0: SCSI0
5/cdrom removable softraid0 at root
root on cd0a swap on cd0b dump on cd0b
ehci_idone: ex=0xd1b1ca00 is done!
Andre Ruppert
> On Mon, Feb 7, 2011 at 10:50 AM, Andre Ruppert
> wrote:
>
> > No problems - except UMTS, but I don't need it...
>
> Can you provide the output of "usbdevs -dv"?
You're welcome ;-)
Controller /dev/usb0:
addr 1: high speed, self powered, config 1, E
have or did't run at all
(core dump).
Am I the only one with QT related problems?
best regards
Andre Ruppert
( a previous 'pkg_check' listed too much entries and I assume the
package database was partially broken too - don't know why )
Now all runs as expected --> QT 6
Best regards
Andre
Am 28.04.25 um 13:39 schrieb Rafael Sadowski:
On Mon Apr 28, 2025 at 12:50:38PM +0100, Andre R
33 matches
Mail list logo