Re: ospfd filtering

2013-05-10 Thread Loïc BLOT
elp you to implement filtering if you tell me how to do it. -- Cordialement, Loïc BLOT, Expertise en Systèmes UNIX, Sécurité et Réseaux http://www.unix-experience.fr Le jeudi 09 mai 2013 à 14:50 +0200, Claudio Jeker a écrit : > On Wed, May 01, 2013 at 11:45:04PM +0200, Loïc BLOT wrote: > >

Re: BCM5719C/BCM5720 partially working

2013-05-10 Thread Loïc BLOT
Thanks for the précision, i will test your issue to verify if my bcm5720 issue is linked With yours Loic Blot Le 10 mai 2013 à 14:12, David Imhoff a écrit : > Hi, > > I'm having problems with a 4-ports BCM5719C based PCI-E network card > and the 2-ports BCM5720 network interfaces build into a

Re: Dragonflybsd's pf concurrent instead of single-threaded

2014-07-07 Thread Loïc Blot
It's a very interesting diff. If i have time i'll test it on -CURRENT on the two next weeks. -- Best regards, Loïc BLOT, Engineering UNIX Systems, Security and Network Engineer http://www.unix-experience.fr Le jeudi 03 juillet 2014 à 11:35 -0500, patric conant a écrit : &g

Re: Dragonflybsd's pf concurrent instead of single-threaded

2014-07-10 Thread Loïc BLOT
Thanks for the precisions :). And no problem i you laugh because of me :p -- Best regards, Loïc BLOT, UNIX systems, security and network engineer http://www.unix-experience.fr Le mardi 08 juillet 2014 à 11:03 +0200, Henning Brauer a écrit : > * InterNetX - Robert Garrett [2014-07-08 09:42]:

pfctl: DIOCADDQUEUE: No such process

2014-07-23 Thread Loïc Blot
ted by some carp messages :p), i cannot reboot it at this time, it's a BGP router and the redundancy is in maintenance. Please also note i modified rules 2 hours ago and i wasn't affected by this issue. have you got an idea ? Thanks in advance -- Best regards, Loïc BLOT, Engineering

Re: pfctl: DIOCADDQUEUE: No such process

2014-07-23 Thread Loïc Blot
rev 2.00/0.00 addr 4 uhidev2: iclass 3/1 ums1 at uhidev2: 3 buttons, Z dir wsmouse1 at ums1 mux 0 uhub4 at uhub1 port 1 "Intel Rate Matching Hub" rev 2.00/0.00 addr 2 uhidev3 at uhub4 port 2 configuration 1 interface 0 "Avocent Dell 03R874" rev 1.10/1.00 addr 3 uhidev3: iclass 3/

Re: pfctl: DIOCADDQUEUE: No such process

2014-07-24 Thread Loïc Blot
Hi David, in fact no, now the ruleset is empty and everything is allowed, erf. Now i have no choice, i need to reboot this critical router :(. I think there is a bug somewhere, i'll try to found why this is happening before rebooting (maybe a patch if i can) -- Best regards, Loïc

Re: pfctl: DIOCADDQUEUE: No such process

2014-07-25 Thread Loïc Blot
, Loïc BLOT, Engineering UNIX Systems, Security and Network Engineer http://www.unix-experience.fr Le jeudi 24 juillet 2014 à 17:44 +0200, Loïc Blot a écrit : > Hi David, > in fact no, now the ruleset is empty and everything is allowed, erf. > Now i have no choice, i need to reboot this

Re: pfctl: DIOCADDQUEUE: No such process

2014-07-25 Thread Loïc Blot
Erf... i found the error. An admin has configured a queue on a inexisting interface... Maybe the pfctl tell us the interface doesn't exists ? Sorry for the inconvenience -- Best regards, Loïc BLOT, Engineering UNIX Systems, Security and Network Engineer http://www.unix-experience.fr

Re: CARP cluster: howto keep pf.conf in sync?

2014-07-28 Thread Loïc Blot
eq "0" ]; then /sbin/pfctl -f /etc/pf.conf echo "PF Reloaded" echo $SYNCTRACE > $SYNCTRACE_FILE fi else echo "No PF modification" fi === -- Best regards, Loïc BLOT, Engineering UNIX Syst

Re: pfctl: DIOCADDQUEUE: No such process

2014-08-04 Thread Loïc Blot
Hi Henning, you are true, i found the problem 1 week ago, a "hidden" interface in my 3000 rules' pf.conf :) -- Best regards, Loïc BLOT, Engineering UNIX Systems, Security and Network Engineer http://www.unix-experience.fr Le samedi 02 août 2014 à 12:17 +0200, Henning

Re: pf queuing not limiting bandwidth

2014-08-12 Thread Loïc Blot
Hi Raimundo, please use max directive: queue root on alc0 bandwidth 600M, max 500M -- Best regards, Loïc BLOT, Engineering UNIX Systems, Security and Network Engineer http://www.unix-experience.fr Le mardi 12 août 2014 à 02:11 -0300, Raimundo Santos a écrit : > Hello misc! > > I

Dell R320 crash

2014-01-08 Thread Loïc Blot
uot;Avocent Keyboard/Mouse Function" rev 2.00/0.00 addr 5 uhidev2: iclass 3/1 ukbd1 at uhidev2: 8 variable keys, 6 key codes wskbd1 at ukbd1 mux 1 wskbd1: connecting to wsdisplay0 uhidev3 at uhub3 port 1 configuration 1 interface 1 "Avocent Keyboard/Mouse Function" rev 2.00/0.00 addr 5 uhidev3: iclass 3/1 ums1 at uhidev3: 3 buttons, Z dir wsmouse1 at ums1 mux 0 uhidev4 at uhub3 port 1 configuration 1 interface 2 "Avocent Keyboard/Mouse Function" rev 2.00/0.00 addr 5 uhidev4: iclass 3/1 ums2 at uhidev4: 3 buttons, Z dir wsmouse2 at ums2 mux 0 uhub4 at uhub1 port 1 "Intel Rate Matching Hub" rev 2.00/0.00 addr 2 vscsi0 at root scsibus3 at vscsi0: 256 targets softraid0 at root scsibus4 at softraid0: 256 targets root on sd0a (c3d13a6a4ff0f34c.a) swap on sd0b dump on sd0b How can i help you to resolve or can i fix the bug ? Thanks in advance. -- Best regards, Loïc BLOT, Engineering UNIX Systems, Security and Network Engineer http://www.unix-experience.fr

Packet Filter nat-to issue

2014-02-28 Thread Loïc Blot
net6 was strange ! pfctl -t __automatic_d309aaac_1 -T show 2001:660:3bbb:::2 fe80::92b1:1cad:fe18:ea18 To resolve this problem i added inet keyword to my rule. Is this normal ? Maybe a fix was required on pf parser? Have a nice day -- Best regards, Loïc BLOT, Engineering UNIX Syste

Re: Packet Filter nat-to issue

2014-02-28 Thread Loïc Blot
Thanks all, i will be careful in the future, and i don't forget to precise "inet" keyword :) -- Best regards, Loïc BLOT, Engineering UNIX Systems, Security and Network Engineer http://www.unix-experience.fr Le vendredi 28 février 2014 à 11:54 +0100, Mike Belopuhov a écrit : &

Re: pf and nat

2014-03-21 Thread Loïc BLOT
Hello, you are right, you need the both rules. -- Best regards, Loïc BLOT, UNIX systems, security and network engineer http://www.unix-experience.fr Le mardi 18 mars 2014 à 15:19 -0300, Friedrich Locke a écrit : > Hi folks, > > i am studying pf and a doubt arose! > > Since my state policy if

poor performance with GRE

2014-03-28 Thread Loïc Blot
e GRE encap). PF is also scrubing the GRE packets (no-df scrubing and frags are allowed) What can i check to improve the GRE performance ? Thanks in advance. -- Best regards, Loïc BLOT, Engineering UNIX Systems, Security and Network Engineer http://www.unix-experience.fr

Re: Dell PE R210 won't boot from install54.iso CD

2014-04-23 Thread Loïc Blot
Hello, i experienced some issues on Dell R210 boot when i use CD. Use an external CD player i think this will resolve the problem (i got problems with openbsd and freebsd after the bootloader too, and it's a CD player problem). -- Best regards, Loïc BLOT, Engineering UNIX Systems, Securit

<    1   2