Re: Getting "Boot error" after replacing a disk in softraid [SOLVED]

2024-04-25 Thread Martin
> On Thu, Apr 25, 2024 at 09:12:47AM +0200, Stefan Sperling wrote: > > > I checked, the softraid manual page already has an example installboot > > invocation in EXAMPLES, which should be clear enough. > > > Regardless, I've tweaked the wording a bit. Hopefully more clear now. Indeed :) Thank y

Re: Getting "Boot error" after replacing a disk in softraid [SOLVED]

2024-04-25 Thread Martin
> Hello, > > Remember softraid isn't the same as hw raid and I will always chose hw over > soft this includes zfs. > > Chris I am sorry, but what relevance does your personal preferences have to anything regarding this issue? FWIW, I have seen more than one example of some really crappy hardwa

Shaping and QOS with multiple IP's on a single NIC in bridge mode

2008-12-11 Thread martin
Hello. Does the traffic shaping and QOS work well across multiple public IP's with only One network card in bridge mode ? I haven't come across this issue before, but will very soon. Anyone have experience with this ? Thanks...Martin

Re: S-nail, ssh, and vi

2017-04-22 Thread martin
> From owner-misc+M164041=martin=martinbrandenburg@openbsd.org Sat Apr 22 > 21:43:17 2017 > Date: Sat, 22 Apr 2017 21:42:55 -0400 > From: Predrag Punosevac > To: misc@openbsd.org > Subject: S-nail, ssh, and vi > > Can anybody help me understand what am I seeing. Namel

Re: how to , apache's ' AuthType Basic '

2014-12-15 Thread martin
nger available. In 5.6 the Apache 1.x httpd was replaced with a OpenBSD-specific httpd. OpenBSD base also contains nginx. It is also possible to install Apache 2.x on OpenBSD from ports. OpenBSD httpd does not support authentication. So that will not work for you. Your options are to learn to configure nginx or to install Apache 2.x and configure it. If you install Apache 2.x it will work just like any other installation of Apache. -- Martin

Re: urtwn device timeout

2014-12-17 Thread martin
w.mimar.rs/ I have the same problem with 5.6 on a ThinkPad x120e but not with -current on a MacBook. I thought it had gotten better and that was that, but the other replies here indicate that xhci makes it worse. -- Martin

Re: Openbsd broke my hard drive twice! Getting frustrated

2014-12-22 Thread martin
-- > Henrique Lengler It would be exceedingly odd for OpenBSD to be able to break that. Has anything ever been installed successfully on this machine? Perhaps the motherboard or power supply causes damage after extended use. -- Martin

Re: Openbsd broke my hard drive twice! Getting frustrated

2014-12-22 Thread martin
Henrique Lengler wrote: > On 2014-12-23 01:08, mar...@martinbrandenburg.com wrote: > > Has anything ever been installed successfully on this machine? Perhaps > > the motherboard or power supply causes damage after extended use. > > > > -- Martin > > Yes, my mo

Re: Purpose of what(1)

2014-12-31 Thread martin
essage here http://cvsweb.openbsd.org/cgi-bin/cvsweb/src/bin/cat/cat.c?rev=1.20&content-type=text/x-cvsweb-markup Though CVS does still update the RCS string in the comment at the top of the file. I don't know what use what(1)/ident(1) still have in base other than historically being there. -- Martin

Re: Spanish discussion list

2015-01-03 Thread martin
ists page on the website http://www.openbsd.org/mail.html says there is already a Spanish list. -- Martin Brandenburg

Re: resolv.conf.head

2015-01-09 Thread martin
e that your ISP (like Comcast or Verizon) can see your DNS queries even if you point them at another nameserver. Granted I've met enough ISP nameservers which return advertising instead of NXDOMAIN, and that is annoying. -- Martin

Re: integrity of commercial CD set

2015-01-14 Thread martin
ability and price range is greater than what you're willing to expend on security, you're compromised. Are you willing to go to the effort that defending against your outlined attack requires? Probably not. Unless you're very very important, you eliminate the possibility of distribution attack by getting signify keys of CDs. -- Martin

Re: integrity of commercial CD set

2015-01-14 Thread martin
na...@mips.inka.de They are not regularly intercepting CD shipments and replacing the CDs. It would not be unusual for an intelligence agency to attempt to intercept particular mails for particular people, but they can't do it at scale secretly. -- Martin

Re: Unified BSD?

2012-11-12 Thread Martin
The reason was actually intellectual property based between AT&T and the proprietary BSD/386 if your talking BSD4.4. That was the core reason for why FreeBSD and NetBSD started. So really it isn't that crazy, more highly unlikely that your going to get the core developers of each project to abandon

Re: Unified BSD?

2012-11-13 Thread Martin
No offense Ignatios Souvatzis but your reference to Minix being a 7th BSD distro is like saying FreeBSD (or any of the other major BSDs) is another Linux because of its inter-compatibility for certain user-land components and various shared code. Minix has a minimal amount of NetBSD code and most o

How to set apparently number of VCPUs in VMM

2021-10-16 Thread Martin
Hi there! In release notes it seems we can set more than one vCPU for guests running. The question is how to set it in vm.conf to achieve better performance for existed VMs? Martin

amd64 7.0 release where can I find original (patched) gcc 4x?

2021-10-22 Thread Martin
patched GCC 4x as default compiler? Any suggestions can help! Martin

USB athn0 issue in AP mode (AR9280+AR7010) no DHCP leases to modern portable devices

2021-10-22 Thread Martin
t has been connected to AP based on athn USB stick. Tested only with portable devices, not PCs currently. Looking forward to resolve this! Martin

Sony UWA-BR100 patch to recognize AR9280+AR7010 Atheros based USB card

2021-10-22 Thread Martin
your attention. Martin

Re: Sony UWA-BR100 patch to recognize AR9280+AR7010 Atheros based USB card

2021-10-24 Thread Martin
WLIUCGNM 0x01a2 WLI-UC-GNM product MELCO WLIUCGNM20x01ee WLI-UC-GNM2 ‐‐‐ Original Message ‐‐‐ On Saturday, October 23, 2021 8:55 AM, Stefan Sperling wrote: > On Fri, Oct 22, 2021 at 07:02:20PM +0000, Martin wrote: > > > Hi Stefan, > > Dev. pa

Re: USB athn0 issue in AP mode (AR9280+AR7010) no DHCP leases to modern portable devices

2021-10-24 Thread Martin
Hi Stefan, Just to check the issue is present, I've done live debug of pf rules to confirm that DHCP traffic not blocked. It seems something wrong in obtaining IPv4 addresses from dhcpd. And problem lies outside pf I suppose. Martin ‐‐‐ Original Message ‐‐‐ On Saturday, Octob

Re: Hardware recommendation for small form factor, noiseless, server

2024-05-06 Thread Martin
On Mon, May 06, 2024 at 09:03:17PM +0100, James Johnson wrote: > Hi all, > > can anyone please advise on what computer I can purchase with the following \ > requirements: > - fully supports OpenBSD > - no noise > - good quality wifi > - small form factor preferably > - processor does not need to

VLAN-tagging, how?

2024-05-30 Thread Martin
I am currently using a home made router with OpenBSD which is connected directly to my ISP's fiber router. The OpenBSD router is setup with a fixed IP on the WAN port and I do internal NAT etc. In about a month a new ISP is going to provide internet via the fiber and they are changing the equipmen

Re: VLAN-tagging, how?

2024-05-30 Thread Martin
to provide you with > the options you need. > > Any clarification just yell out. Cheers. > > Sent from my iPhone > > > On 31 May 2024, at 8:15 AM, Martin i...@protonmail.com wrote: > > > > I am currently using a home made router with OpenBSD which is connect

Re: VLAN-tagging, how?

2024-05-31 Thread Martin
Thank you all very much for the setup examples, very helpful!

Recommendations for 2.5G NIC

2024-06-05 Thread Martin
I am about to upgrade a network from 1G to 2.5G and a couple of boxes needs new NICs. Any recommendations for NICs with good driver support on OpenBSD? It would be nice it the cards also run well on FreeBSD and Linux, if you happen to know that, as a couple of boxes on the network run that and I

VLAN-tagging - follow-up

2024-06-06 Thread Martin
Are you supposed to "bridge" the vlan with the physical interface? I have: $ cat /etc/hostname.em0 up $ cat /etc/hostname.vlan101 vnetid 101 parent em0 inet autoconf up In /etc/pf.conf I have replaced em0 with vlan101 for ext_if. I get "No route to host" if I try to ping something, etc. But i

Re: VLAN-tagging - follow-up

2024-06-07 Thread Martin
> What type of upstream device is em0 connected to? Is it a simple modem, > (e.g. an ONT) or a router of some sort? It turned out that the device in the other end needed to be replaced. > Going a bit deeper, to explain my questions above: > 802.1Q VLANs are basically a tag that gets attached to

Rate limit the httpd web server for signup requests

2024-06-11 Thread Martin
I already do some rate limiting with stateful tracking options for PF, which works really great for the stuff I use it for. I also use block lists of known bad IP addresses etc. But what useful methods exists that prevent spamming a HTML signup form from stuffing the database with useless signups

spamd question

2007-01-18 Thread Martin
could be extended with options to catch and tarpit these people/servers/viruses etc. Regards...Martin

Re: spamd question

2007-01-18 Thread Martin
it could be a good learning curve. I never seem to have the time ordinarily. Well thanks again for all the responses. It's appreciated. Asking questions and getting excellent answers is what this list is all about. Regards...Martin

Re: spamd question

2007-01-18 Thread Martin
t I understand the issue and pitfalls better than before. Anyway, instructive. Best wishes...Martin

Re: Why Linus Torvalds won't donate to OpenSSH

2007-04-11 Thread Martin
On Wednesday 11 April 2007 03:06, Kernel Monkey wrote: > On 4/10/07, Damien Miller wrote: > > Two points: > > > > 1. Please don't post private email. (Apologies if you obtained his > > permission to post). > > > > 2. Who really cares? I'd much rather see contibutions from companies who > > shi

Re: Why Linus Torvalds won't donate to OpenSSH

2007-04-11 Thread Martin
Nice bounce... Hi. This is the qmail-send program at chaossolutions.org. I'm afraid I wasn't able to deliver your message to the following addresses. This is a permanent error; I've given up. Sorry it didn't work out. <[EMAIL PROTECTED]>: 64.233.167.27 does not like recipient. Remote host said: 5

Re: bad SK NICs ??

2006-05-30 Thread martin
Ive also had those watchdog problems with sk(4) on 3.9. They did appear on 3.8 but not as often. It doesnt seem to matter what i do to get those, they are not coming when i use much traffic but they seem to just appear at random. My card is; skc0 at pci0 dev 15 function 0 "3Com 3c940" rev 0x10

isakmpd fills my log

2005-11-30 Thread martin
/var/log/messages with info that it cant connect when my laptop if off. Like below all around the clock. How can i stop this the best way ? i start isakmpd in rc.conf with just "" best regards martin Nov 30 15:15:46 fjuttsi isakmpd[3201]: sendmsg (7, 0xcfbcab20, 0): Host is down Nov 3

Re: isakmpd fills my log

2005-11-30 Thread martin
Hans-Joerg Hoexer wrote: please show us your config files. On Wed, Nov 30, 2005 at 03:31:27PM +0100, martin wrote: hi all, i use ipsec to replace wep for my wlan so the setup is pretty simple and all and everything works. I used this page http://www.dietlein.com/requisites/ipsec/ to get

VIA fanless motherboard - NICS

2005-12-17 Thread martin
Hello. I'm looking at a VIA motherboard with the following NICS. 3 x INTEL 82551QM & 1x 82540EM (Gigabit) Any issues with these ? M Tired of spam? Yahoo! Mail has the best spam protection around http://mail.yahoo.com

Re: VIA fanless motherboard - NICS

2005-12-17 Thread martin
--- Diana Eichert <[EMAIL PROTECTED]> wrote: > On Sat, 17 Dec 2005, martin wrote: > > > Hello. > > > > I'm looking at a VIA motherboard with the following NICS. > > > > 3 x INTEL 82551QM & 1x 82540EM (Gigabit) > > > > Any issues with

Unable to build Gateway route

2005-12-22 Thread martin
Hello. I've been running other firewalls on this IP address with the same settings in the past, but am having problems setting up the Gateway with OpenBSD 3.8. It comes back with "no route to host" and when I do a nestat -rn, the Gateway is missing even though /etc/mygate exists. IP - 209.216.7

Re: Unable to build Gateway route

2005-12-22 Thread martin
nnection for a couple of years and have run a number of firewalls with no issue with these ie. Linux Router Project, Freesco and others I have tested. It is running now with a commercial firewall with no problems. Can I force it to accept the gateway IP ? Regards...Martin Just $16.99/mo. or less. dsl.yahoo.com

multi-port NIC cards

2006-01-01 Thread martin
Hello. Can anyone recommend a good multi-port NIC card e.g. 4-port, that works OK on OpenBSD with a good source supplier. Regards...Martin Just $16.99/mo. or less. dsl.yahoo.com

Re: multi-port NIC cards

2006-01-01 Thread martin
purchase new > these days and will provide the same efficiency as older cards were > able > to do! (:< Very sad but true! > > I sure hope this change soon, but that's where we are now, at a > minimum, > that's where I am anyway. > > Daniel > Just found this. http://www.routerboard.com/rb44.html Might just buy one and try it out. Regards...Martin

APIC

2006-01-03 Thread martin
1 IO-APIC-level wctdm NMI: 1 0 LOC: 6184694 6184698 ERR: 0 MIS: 0 Regards...Martin

Re: multi-port NIC cards

2006-01-03 Thread martin
--- martin <[EMAIL PROTECTED]> wrote: Hi. I just ordered both the Mikrotik Routerboard 44 ($89) and the Soekris lan1641 ($95). Both 4-port NIC boards. I'll let you know how the perform. I'm also puzzled by the claims of performance issues and saturating the bus PCI bus previou

thin-client

2006-02-22 Thread martin
Hello. What are the thin-client options with OpenBSD ? Something similar to www.ltsp.org If anyone is using openbsd as a thin-client server. i would be interested in hearing their experiences. Regards Tired of spam? Yahoo! Mail has the best spam protection around http://mail.yahoo.com

Re: Recommendations for working 10Gbit RJ45 network card

2025-02-01 Thread Martin
> Hi Martin, > > I used a Dell Intel X540/I350 Dual Port 10GB BASE-T + Dual Port 1GB > BASE-T NDC (Network Daughter Card) in a Dell PowerEdge R730 server > under OpenBSD 7.3 and it worked perfectly. Thank you very much! I will test out a X540 card. I have been looking at some

Does the ASUS XG-C100C work with OpenBSD?

2025-01-28 Thread Martin
Hi, I can't seem to figure out if the ASUS XG-C100C netcard works with OpenBSD? It is this one: https://www.asus.com/networking-iot-servers/wired-networking/all-series/xg-c100c/techspec/ If it works, how powerful would the CPU need to be in order to pull 10Gbit?

Recommendations for working 10Gbit RJ45 network card

2025-01-29 Thread Martin
I need recommendations for good working 10Gbit RJ45 network cards that work well on OpenBSD 7.6. Any help is greatly appreciated.

Re: Etnernal & infernal browser woes

2017-04-28 Thread Martin Pieuchot
On 28/04/17(Fri) 12:18, Jyri Hovila [iki.fi] wrote: > [...] > Now, can anyone provide a relatively clear description of what it is > that make the same browsers (Firefox, Seamonkey, Chrome) that work > fine in Linux, Windows and OS X so ridiculously slow when they are > being run on OpenBSD? If y

Re: Etnernal & infernal browser woes

2017-04-28 Thread Martin Pieuchot
On 28/04/17(Fri) 14:03, Jyri Hovila [iki.fi] wrote: > > If you can answer this question you've already done 50% of the work. > > Exactly. Which is why I'm asking -- not expecting anyone to give a full > answer. I want to know what people who have been working on this issue > have already found out

Re: Etnernal & infernal browser woes

2017-04-28 Thread Martin Pieuchot
On 28/04/17(Fri) 16:20, Anders Andersson wrote: > [...] > From what I read, it seems as if the problems are mostly from when you > try websites which are heavy on javascript. If javascript was the problem others OSes would suffer as well. > Let me but

Why would I need a container like Docker?!

2017-05-10 Thread Martin Hanson
I have occasionally used virtualization (Qemu) for easy testing of some OS. I have also played around with "containers" using FreeBSD Jails and Linux LXC, but I have never ever thought of any of this as a security measurement or anything needed beyond testing. When I want isolation I run a sing

Re: RTL8153 stopped-communicating("crashed")-bug. I think because it was USB3 & OBSD doesn't support 5gbit/superspeed mode yet.

2017-06-02 Thread Martin Pieuchot
On 02/06/17(Fri) 12:38, Tinker wrote: > Hi misc@, > > My Xeon Asrock machine with an RTL8153 on an USB2 plug (to first network) > and an RTL8153 on an USB3 plug (to second network), just had this USB > failure on the second RTL8153: > > cdce1: usb error on tx: IOERROR > cdce1: watchdog

Re: re0 and re1 watchdog timeouts, and system freeze

2017-06-08 Thread Martin Pieuchot
help if you could build a kernel with MP_LOCKDEBUG defined and see if the resulting kernel enters ddb(4) instead of freezing. Thanks, Martin > > > --- SNIP --- > > # queueing > # > queue up on re0 bandwidth 15M max 15M > queue up_def parent up bandwidth 1M qlimit 10 default

Re: re0 and re1 watchdog timeouts, and system freeze

2017-06-09 Thread Martin Pieuchot
On 08/06/17(Thu) 20:38, Björn Ketelaars wrote: > On Thu 08/06/2017 16:55, Martin Pieuchot wrote: > > On 07/06/17(Wed) 09:43, Björn Ketelaars wrote: > > > On Sat 03/06/2017 08:44, Björn Ketelaars wrote: > > > > > > > > Reverting back to the previ

Boot issue 6.1

2017-06-11 Thread Martin Oppegaard
Hello, After updating to 6.1 my computer will no longer boot; it stops on "Loading.". Redoing installboot from the installation CD did not help. Do you have any suggestions? Here is an old dmesg of mine: https://marc.info/?l=openbsd-misc&m=146436543130287&w=2 Regards, Martin Oppegaard

Fwd: Boot issue 6.1

2017-06-18 Thread Martin Oppegaard
-- Forwarded message -- From: Martin Oppegaard Date: Sun, Jun 18, 2017 at 10:56 AM Subject: Re: Boot issue 6.1 To: Donald Allen Now I've been able to look at this more. My computer doesn't support booting from USB, so I reupdated; from the CD this time. I get the err

Re: Boot issue 6.1

2017-06-19 Thread Martin Oppegaard
On Monday, June 19, 2017, Theo de Raadt wrote: > > I get the error Message that "installboot: /mnt/usr/mdec/biosboot extends > > Beyond sector 268435455. OpenBSD might not boot." I'm dual booting with > > Windows using Windows' boot loader first. > > You've created an OpenBSD MBR partition too fa

Correct tftpproxy in faq/pf/ftp.html

2017-06-20 Thread Martin Ziemer
Since OpenBSD 5.3 the tftpproxy is no longer startet via inetd, but as a daemon. The faq section in ftp.html still instructs you to use inetd. Below is a diff which instructs the reader to use the service instead of inetd. Index: ftp.html ==

Re: splassert: pool_put: want 0 have 4

2017-06-20 Thread Martin Pieuchot
k() at softclock+0x147 > Jun 14 16:52:05 nat2 /bsd: softintr_dispatch() at softintr_dispatch+0x8b > Jun 14 16:52:05 nat2 /bsd: Xsoftclock() at Xsoftclock+0x1f This has been fixed by yasuoka@ on Mai 28th. Please try a new snapshot and report back if you still encounter similar problems. Cheers, Martin

Re: inet6 packet filter question: link local address vs antispoof

2017-06-20 Thread Martin Pieuchot
On 11/06/17(Sun) 15:51, Harald Dunkel wrote: > Hi folks, > > pf.conf on my gateway (6.1) says > > bash-4.4# pfctl -sr | egrep -i icmp\|block > block return log all > : > : > pass quick inet proto icmp all keep state (if-bound) > pass quick inet6 proto ipv6-icmp all keep state (if-bound) > > Prob

Re: inet6 packet filter question: link local address vs antispoof

2017-06-20 Thread Martin Pieuchot
On 11/06/17(Sun) 16:23, Harald Dunkel wrote: > PS #1: Outgoing traffic to a link-local address initiated by the > gateway is not corrupted. > > PS #2: It seems that OpenBSD 6.0 doesn't show this problem. Could you use tcpdump on 6.0, do you spot any difference?

Re: splassert: pool_put: want 0 have 4

2017-06-22 Thread Martin Pieuchot
On 21/06/17(Wed) 17:42, Marko Cupać wrote: > On Tue, 20 Jun 2017 12:22:46 +0200 > Martin Pieuchot wrote: > > > On 14/06/17(Wed) 16:56, Marko Cupać wrote: > > > On Tue, 13 Jun 2017 11:38:46 + (UTC) > > > Stuart Henderson wrote: > > > > > >

Re: isakmpd memory usage

2017-06-22 Thread Martin Pieuchot
On 17/06/17(Sat) 09:49, Nicolas Repentin wrote: > No one ? > > Le 13 juin 2017 09:11:02 GMT+02:00, Nicolas a écrit : > >Hi everyone > > > >I'm searching some help about isakmpd, which is eating a lot of memory, > >until the machine crash. It's an OpenBSD 6.1 on Qemu KVM (ganeti). > >After 3 days,

Re: Boot issue 6.1

2017-06-24 Thread Martin Oppegaard
The solution here was to update the pbr file for Windows’ bootloader. On Mon, Jun 19, 2017 at 8:03 AM, Martin Oppegaard < martin.oppega...@gmail.com> wrote: > > > On Monday, June 19, 2017, Theo de Raadt wrote: > >> > I get the error Message that "installboot: /

Re: touchpad input driver: test results

2017-08-21 Thread Martin Pieuchot
Thanks for your work Ulf. By the way I brought a new laptop, X1 Carbon gen2 for you from Toronto. It's a gift from deraadt@. It has a soft-button synaptics and a USB touchscreen. Cheers, Martin On 20/08/17(Sun) 22:17, Ulf Brosziewski wrote: > As people might want to know what t

Re: ksh ^R vs EDITOR=vi

2017-08-27 Thread Martin Bock
h 'export EDITOR=vi', pressing ^R > just literarily types '^R' and does not open > the history search. Is that expected? > > Jan -- Martin Bock :wq

Re: simple-mtpfs kernel panic

2017-10-03 Thread Martin Pieuchot
On 01/10/17(Sun) 20:35, Olivier Antoine wrote: > Hi, > > Looks like this bug: > > I can also reproduce this with: > > $ while true ; do adb shell ls / ; adb kill-server ; done > > The code which is triggered in /sys/dev/usb/ehci.c: > > ehci

How to allow __set_tcb in pledge

2017-10-06 Thread Stephane Martin
Hi, I’m trying to use pledge to protect a go program. The exec aborts with « abort trap: core dump ». Ktrace and /var/log/messages say that the « __set_tcb » syscall is denied. Can I configure pledge to allow such syscall ? (Same question for mlock and mlockall…) Thank you, Stephane

Re: How to allow __set_tcb in pledge

2017-10-10 Thread Stephane Martin
Thank you for your answer! On 6 oct. 2017 à 20:13 +0200, Theo de Raadt , wrote: > > I'm trying to use pledge to protect a go program. > > > > The exec aborts with abort trap: core dump > > > > Ktrace and /var/log/messages say that the __set_tcb > > syscall is denied. > > > > Can I configure pledge

Re: How to allow __set_tcb in pledge

2017-10-11 Thread Stephane Martin
On 11 oct. 2017 à 18:49 +0200, Theo de Raadt , wrote: > > What does that mean ?... > > It means you cannot pledge big pieces of software that perform > arbitratry magic. Learn the magic, change the magic. Sure :) So the solution: The first time a go program uses a socket, the go runtime does som

x problem after upgrading

2017-10-13 Thread Martin Smith
x34(%eax), %eax ddb> (all copied out by hand) and its locked solid, no response to keyboard at all I must have missed something, can amyone point me in the right direction, thanks -- Martin

Re: x problem after upgrading

2017-10-13 Thread Martin Smith
, Martin Smith wrote: I upgraded from 6.1 to 6.2 and I am sure I carried out all the necessary things that were printed out after it ran, but on attempting to start x I get the following uvm_fault(0xd0c544dc, 0xd3a2d000, 0, 1)->e kernel: page fault trap, code=0 stopped at I915_gem_pwrite_io

Re: fuse version

2017-10-25 Thread Martin Pieuchot
On 25/10/17(Wed) 12:01, Stefan Sperling wrote: > [...] > More help on fuse support would certainly be welcome, I think. > It has not been actively maintained for some time. Exactly. There are many way to help. It's not necessarily hard. Helg Bredow has been looking at some issues recently. B

Re: no route to host (when there is a route )

2018-05-01 Thread Martin Pieuchot
On 01/05/18(Tue) 21:28, Ingo Schwarze wrote: > [...] > So what you are doing seems fragile to me. It may sometimes work > due to order of configuration, timeouts, whatever, i'm not sure. It can work if the ARP entry, what Ingo called the /32 is created before you add your /23. > But once part o

How to have pf filter packets on combination of incoming and outgoing interface (for packets transiting the firewall)?

2018-05-07 Thread Martin Gignac
roblems with this method? If so, is there a better way to achieve my goal? Thanks, -Martin

Re: How to have pf filter packets on combination of incoming and outgoing interface (for packets transiting the firewall)?

2018-05-07 Thread Martin Gignac
> I imagine you meant "pass out on $lab02 tagged from_lab01". You're absolutely right Ken! Thanks, -Martin

Re: How to have pf filter packets on combination of incoming and outgoing interface (for packets transiting the firewall)?

2018-05-07 Thread Martin Gignac
n pages [the latter does not support 'received-on']). It looks like 'received-on' would be a cleaner and shorter way to achieve my goal by allowing me to specify inbound and outbound interfaces in the same rule. Thanks! -Martin

Re: How to have pf filter packets on combination of incoming and outgoing interface (for packets transiting the firewall)?

2018-05-07 Thread Martin Gignac
> It looks like 'received-on' would be a cleaner and shorter way to > achieve my goal by allowing me to specify inbound and outbound > interfaces in the same rule. > I think I spoke to quickly; it would be an alternative way, but not a shorter one as I would still need the initial "pass in lab01"

Able to boot laptop from installer kernel but not from installed kernel

2018-05-09 Thread Martin Gignac
etely clueless about the kernel debugger so I don't know where to start to find the cause of my problem. Does anybody have any advice on how I can get OpenBSD to boot properly from the USB key on my laptop? Thanks, -Martin P.S. If it helps, here is the output of 'dmesg' as run f

Re: How to have pf filter packets on combination of incoming and outgoing interface (for packets tra

2018-05-09 Thread Martin Gignac
. specific subnets don't have to be expressed in the rule). Regards, -Martin

Re: How to have pf filter packets on combination of incoming and outgoing interface (for packets tra

2018-05-09 Thread Martin Gignac
f OSPF. You can use any of the usual match rules (so criteria > can include things like community, peer, nexthop, prefixes within a > certain range, etc) to match incoming updates, and feed them straight > into a PF table. Thanks for these hints Stuart, I'll have to check them out! -Martin

Re: protection fault trap with OpenBSD 6.3

2018-05-29 Thread Martin Pieuchot
On 28/05/18(Mon) 22:24, Marc Peters wrote: > Hi List, > > i am having issues with OpenBSD 6.3, latest patches as of today applied. We > are using gif-tunnels between our datacenters, transport encryption and > OpenBGPD to announce the prefixes between the datacenters. The boxes also > have isak

Re: ISDN Card /PRI Card support on OpenBSD

2018-07-11 Thread Martin Schröder
ch did ISDN). Best Martin

Re: ISDN Card /PRI Card support on OpenBSD

2018-07-11 Thread Martin Schröder
sing ppp, I have no clue. But I > think it's your best bet if you want to use your ISDN connectivity on > OpenBSD in 2018 (which you don't). I would try our an ISDN to USB adapter. Or a Cisco 876, which seems to do ISDN to Ethernet. :-) Best Martin

How to implement CARP master/backup with IPv6 RAs from OpenBSD firewall pair?

2018-07-26 Thread Martin Gignac
with IPv6, but the RAs are still sent from both boxes (master and backup) so the RA-configured hosts don't end up using the IPv6 CARP VIP at all and I seem to end up with possible asymmetric firewall flows. Thanks, -Martin

Re: How to implement CARP master/backup with IPv6 RAs from OpenBSD firewall pair?

2018-07-26 Thread Martin Gignac
en I now realize I should have put "interface carp0" instead. With this change the RA daemon now sends a single advertisement for the CARP interface's link-local address, which is what I wanted all along. Thanks! -Martin On Thu, Jul 26, 2018 at 6:11 PM Henrik Dige Semark wrote:

want.html reachable from homepage?

2018-08-28 Thread Martin Schröder
Hi, is there a clickpath from www.openbsd.org to want.html? I had to use Google to find the page. Best Martin

Re: iked[12345]: pfkey_reply: no reply from PF_KEY (-current)

2018-09-10 Thread Martin Pieuchot
On 10/09/18(Mon) 12:15, Mark Patruck wrote: > I've tested with a current snapshot and two freshly installed systems > and get the same error, but... > > reverting mpi@s 'Add per-TDB counters and a new SADB extension (1)' > changes make the issues disappear. > > (1) https://marc.info/?l=openbsd-cv

Problems with a quad Realtek NIC

2018-10-10 Thread Martin Hanson
Hi,� I have one of these 4-port Realtek NIC cards: https://www.ebay.co.uk/itm/PCIe-PCI-Express-to-4x-Gigabit-Card-4-Port-Ethernet-Network-Adapter-10-100-1000M/252484240577?epid=505371101� I am running OpenBSD 6.3 stable.� During boot the card is seen, but it only works occasionally. When it works

Re: Problems with a quad Realtek NIC

2018-10-12 Thread Martin Hanson
> It is preferable to just include the whole dmesg directly in the mail > Better still, when it's a "sometimes works" problem, include a "diff -u" > between the two (the context to show where the lines are added/removed). I have pasted a "diff -u" on https://paste.debian.net/1047098/ > Very unlik

Unbreak ledger

2018-11-02 Thread Martin Ziemer
Since some snapshots ledger did not build. I was able to make it build again with two changes: 1.) Use -std=gnu++11 as flag for clang 2.) Change the include-path for readline For *me* the compiled port works fine. Index: patches/patch-CMakeLists_txt

OpenBSD 6.2 - 6.4 crash on ASRock Q1900 ITX boards

2018-11-14 Thread Martin Hanson
Hi, I have a couple of Q1900DC-ITX boards: http://www.asrock.com/MB/Intel/Q1900DC-ITX/index.de.asp I also have a couple of Q1900M versions of the same board. On the ITX version OpenBSD (tested from 6.2 - 6.4) crashes upon reboot, but not upon a cold boot, with the following: NMI ... goin

Re: python3 script not running as root

2018-11-15 Thread Martin Sukany
Hi, you'd fix this by defining PATH variable in your crontab, or specify the full path to python3 interpreter instead using env. M> On 11/15/18 8:39 AM, Markus Rosjat wrote: Hi all, I have a python script to get some traffic stats from my machines and it is running without problems except

Vacation with smtpd doesn't work in 6.4

2018-11-15 Thread Martin Sukany
KIM from any for any action "relay" match tag DKIM from local for any action "relay" # DKIM match auth from any for any action "relay_dkim" match from local for any action "relay_dkim"_* *_ _*(server) ~ # cat /home/martin/.forward*_ \martin, "|/usr/bin/vacation martin" Has anyone face the same / similar issue? Cheers M> -- Martin Sukany UNIX Engineer - Solaris / Linux / OpenBSD L3 specialist www.sukany.cz

Re: Vacation with smtpd doesn't work in 6.4

2018-11-16 Thread Martin Sukany
t;> As a temporary hack, I created little filter  each message goes through before it's handled by vacation itself. If I have a time, I'll write patch for vacation .... Cheers M> On 11/15/18 3:48 PM, Martin Sukany wrote: Hi, I'm using vacation as auto-responder wh

Re: Vacation with smtpd doesn't work in 6.4

2018-11-16 Thread Martin Sukany
Hello Craig, I don't think so .. I'm just enforcing encrypted communication ... :) { listen on vio0 port25 tls-require auth-optional pki sukany.cz } M> On 11/16/18 4:50 PM, Craig Skinner wrote: Martin, your mail server is badly configured (broken):- Begin forwarded me

Re: Vacation with smtpd doesn't work in 6.4

2018-11-16 Thread Martin Sukany
You're right, thanks. I set it up this way as I noticed similar behaviour in some bigger providers ... - changed now back to meet 2487. M> On 11/16/18 6:43 PM, Penty Wenngren wrote: On Fri, Nov 16, 2018 at 05:54:13PM +0100, Martin Sukany wrote: Hello Craig, I don't think s

OpenBSD migration

2018-11-17 Thread Martin Sukany
Hi, I want to migrate OpenBSD 6.4 (stable) from VM to bare metal. I see, as usual, two options: 1) install everything from scratch 2) create some flashimage (I did such thing on Solaris few years ago) and apply the image on new hw. I'd be glad for any personal experience / recommendations.

<    1   2   3   4   5   6   7   8   9   10   >