Re: openbsd router performance (i know.. again)

2012-10-11 Thread rik
no knob twisting? > > On Wed, Sep 26, 2012 at 4:45 AM, rik wrote: > >> Hi, >> I'm a happy Openbsd "user"; we've beeing using it since 2001 as >> router/firewall in our datacenter facility (we host as ONG some no profit >> project and websi

packet loss

2011-11-28 Thread rik
Good day, I'm using 2 openbsd boxes as router firewall with carp in a colo-like setup. In the last few days we saw the packet loss percentuale increase up to 8-10% and it doesn't look like a problem for outside. If I ping from the master firewall one of the server inside I can see something like t

Re: packet loss

2011-11-28 Thread rik
Hi, On Mon, Nov 28, 2011 at 5:59 PM, Peter N. M. Hansteen wrote: > rik writes: > > > I'm using 2 openbsd boxes as router firewall with carp in a colo-like > setup. > > In the last few days we saw the packet loss percentuale increase up to > > 8-10% and it

Re: packet loss

2011-11-28 Thread rik
transfers ahc0: target 1 synchronous at 10.0MHz, offset = 0x8 dkcsum: sd1 matches BIOS drive 0x81 root on sd0a rootdev=0x400 rrootdev=0xd00 rawdev=0xd02 Thanks! Alessandro On Mon, Nov 28, 2011 at 7:53 PM, Stuart Henderson wrote: > dmesg? > > On 2011-11-28, rik wrote: > > Good day,

Re: packet loss

2011-11-28 Thread rik
7;re masters, they'll do what you're seeing. > > Thank you, > James Shupe > > On 11/28/11 12:53 PM, Stuart Henderson wrote: > > dmesg? > > > > On 2011-11-28, rik wrote: > >> Good day, > >> I'm using 2 openbsd boxes as router firewall wit

Re: packet loss

2011-11-29 Thread rik
ifconfig output from both machines? You may want to > check the physical connectivity (cable/ NIC/ switch) for the internal > interface of the carp master... Or just fail over to the secondary box > to see if the issue goes away. > > Also, provide the netstat -i output. > &g

Re: packet loss

2011-11-29 Thread rik
Thanks for the suggestion, I'll try with the GENERIC kernel Is that possibile that this problem is due to hardware limitation (it's quite an old server)? Apparently when the traffic decrease the packet loss decrease as well and disappear just like the odd ping's result Thanks! Alessandro On Tue,

Re: packet loss

2011-12-02 Thread rik
your help Alessandro On Tue, Nov 29, 2011 at 7:49 PM, rik wrote: > Thanks for the suggestion, I'll try with the GENERIC kernel > Is that possibile that this problem is due to hardware limitation (it's > quite an old server)? Apparently when the traffic decrease the packet lo

carp with different versions of OpenBSD

2011-12-06 Thread rik
Hi all, is it possibile to have a dual firewall setup with carp using (temporarly) 2 different versions of OpenBSD? I've to setup some new firewalls and upgrade old one and I'd like to keep redudancy while upgrading but during the process some firewalls will run the 5.0, some still the old version

Re: carp with different versions of OpenBSD

2011-12-08 Thread rik
n for your support and the great work (you definitely didn't screw it up :) ) Alessandro On Thu, Dec 8, 2011 at 6:01 PM, Henning Brauer wrote: > * rik [2011-12-06 21:40]: > > is it possibile to have a dual firewall setup with carp using > (temporarly) > > 2 different version

Re: carp with different versions of OpenBSD

2011-12-08 Thread rik
On Thu, Dec 8, 2011 at 6:49 PM, rik wrote: > Hi all, > thanks for your replies and your help. I did try yesterday and today on > some test boxes and it looks working pretty well between a very old version > (3.9) and the most recent one (5.0). I just had for few minutes problems &

Re: CARP health check ?

2012-01-13 Thread rik
Just an idea, but you might consider giving private ip to the phydev and using nrpe plugin for nagios so you'll be able to ping them from the inside and report everything to your external nagios monitor Alex On Fri, Jan 13, 2012 at 5:12 AM, PP;Q Q P(P8P?P8QP8P= wrote: > sounds nice. > > I ca

Re: openbsd router performance (i know.. again)

2012-09-26 Thread rik
ualization about the pps, I have 22-24k in total, 10-12k per card (internet facing and LAN facing) Thanks again Alessandro On Wed, Sep 26, 2012 at 5:31 PM, noah pugsley wrote: > What is your performance like with -current and no knob twisting? > > On Wed, Sep 26, 2012 at 4:45 AM, rik wrote

limiting mbuf cluster

2011-10-08 Thread rik
Hi there, we've 2 openbsd boxes used as firewall/router with pf and carp to host some websites and application for a students and researchers lab. Sometimes the boxes reboot because they reach the mbuf cluster limit. Unfortunately not all the application hosted in our lab work always correctly so I

Re: Can I use carp with just one public IP?

2011-10-09 Thread rik
Hi Stefan, i'm not doing load balance, just active/passive router/firewall configuration, but we're using only one ip on carp, with no ip address on the phisical interfaces. Our configuration is like this: # cat /etc/hostname.fxp0 up # cat /etc/hostname.carp0 inet 81.xx.xx.xx 255.255.255.252 8

limit mbuf clusters

2011-10-17 Thread rik
Hi there, we've 2 openbsd boxes used as firewall/router with pf and carp to host some websites and applications for a students and researchers lab. Sometimes the boxes reboot because they reach the mbuf cluster limit. Unfortunately not all the applications hosted in our lab work always correctly (a

More surprises

2008-12-29 Thread Rik Burt
I gotta say I was pleasantly surprised again by the OpenBSD OS. I had been dual booting to another OS almost strictly for working with my BlackBerry. This other OS isn't based on FreeBSD and is distributed only in binary form. Well it finally happened that I had left my BB plugged into it's USB

ftp-proxy and packetfilter + vlans

2007-01-29 Thread Rik Bobbaers
work to any port 21 -> 127.0.0.1 port 8021 thanks in advance! ps if there are more questions, don't hesitate to ask! -- harry aka Rik Bobbaers K.U.Leuven - LUDIT -=- Tel: +32 485 52 71 50 [EMAIL PROTECTED] -=- http://people.linux-vserver.org/~harry thinking always leads

iic problem

2006-01-31 Thread Rik Burt
er machine until the asb100 fixes were put in. The box is running -current as of January 29. Rik

Re: mplayer-port - No picture but sound works well?

2005-04-30 Thread Rik Burt
e I watch "movies" with mplayer all the time. I tested it on AMD64 and i386 (diffrent computers) and would be happy if somebody could tell me what I missed this time. how about reading the information mplayer prints when it starts? I get if you install the win32-codecs port your problem will be solved. Rik