From owner-freebsd-questions@FreeBSD.ORG Sun Nov 2 04:52:27 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id AC474CBD for <freebsd-questions@freebsd.org>; Sun, 2 Nov 2014 04:52:27 +0000 (UTC) Received: from plane.gmane.org (plane.gmane.org [80.91.229.3]) (using TLSv1 with cipher AES256-SHA (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 65AF260C for <freebsd-questions@freebsd.org>; Sun, 2 Nov 2014 04:52:25 +0000 (UTC) Received: from list by plane.gmane.org with local (Exim 4.69) (envelope-from <freebsd-questions@m.gmane.org>) id 1Xkn9K-0000eu-HS for freebsd-questions@freebsd.org; Sun, 02 Nov 2014 05:52:22 +0100 Received: from dynamic34-29.dynamic.dal.ca ([129.173.34.203]) by main.gmane.org with esmtp (Gmexim 0.1 (Debian)) id 1AlnuQ-0007hv-00 for <freebsd-questions@freebsd.org>; Sun, 02 Nov 2014 05:52:22 +0100 Received: from jrm by dynamic34-29.dynamic.dal.ca with local (Gmexim 0.1 (Debian)) id 1AlnuQ-0007hv-00 for <freebsd-questions@freebsd.org>; Sun, 02 Nov 2014 05:52:22 +0100 X-Injected-Via-Gmane: http://gmane.org/ To: freebsd-questions@freebsd.org From: Joseph Mingrone <jrm@ftfl.ca> Subject: local_unbound and dnscrypt-proxy Date: Sun, 02 Nov 2014 01:52:08 -0300 Lines: 45 Message-ID: <86lhnup5l3.fsf@gly.ftfl.ca> Mime-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: 8bit X-Complaints-To: usenet@ger.gmane.org X-Gmane-NNTP-Posting-Host: dynamic34-29.dynamic.dal.ca User-Agent: Gnus/5.13 (Gnus v5.13) Emacs/24.4 (berkeley-unix) Cancel-Lock: sha1:W7aU5+kOvTx9OelTPAVeLH92VsI= X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Sun, 02 Nov 2014 04:52:27 -0000 Hi, I just upgraded to from 9-STABLE to 10-STABLE. On 9-STABLE I used dnscrypt-proxy along with unbound from ports. I'm trying to reproduce the old setup with the local_unbound included in FreeBSD 10. My current configuration is below. If I comment out «include: /var/unbound/forward.conf» from unbound.conf, resolving works, so it seems local_unbound is working OK. If I change /etc/resolv.conf to use «nameserver 127.0.0.2» (dnscrypt-proxy) instead of 127.0.0.1 (unbound) resolving works. So it seems the forwarding is not working. Am I missing something? Also, I have to comment out «unbound_conf="/var/unbound/forward.conf"» from /etc/resolvconf.conf, otherwise forward.conf gets blanked. Thanks, Joseph % cat /var/unbound/unbound.conf server: auto-trust-anchor-file: /var/unbound/root.key directory: /var/unbound do-not-query-localhost: no chroot: /var/unbound pidfile: /var/run/local_unbound.pid username: unbound use-syslog: yes verbosity: 1 #include: /var/unbound/forward.conf include: /var/unbound/lan-zones.conf include: /var/unbound/conf.d/*.conf % cat /var/unbound/forward.conf forward-zone: name: "." forward-addr: 127.0.0.2@53 % cat /etc/resolvconf.conf resolv_conf="/dev/null" # prevent updating /etc/resolv.conf #unbound_conf="/var/unbound/forward.conf" unbound_pid="/var/run/local_unbound.pid" unbound_service="local_unbound" unbound_restart="service local_unbound reload" From owner-freebsd-questions@FreeBSD.ORG Sun Nov 2 05:34:30 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 3A4E3F9B for <freebsd-questions@freebsd.org>; Sun, 2 Nov 2014 05:34:30 +0000 (UTC) Received: from ipmail05.adl6.internode.on.net (ipmail05.adl6.internode.on.net [150.101.137.143]) by mx1.freebsd.org (Postfix) with ESMTP id 8514C98A for <freebsd-questions@freebsd.org>; Sun, 2 Nov 2014 05:34:27 +0000 (UTC) Received: from ppp118-210-8-90.lns20.adl2.internode.on.net (HELO leader.local) ([118.210.8.90]) by ipmail05.adl6.internode.on.net with ESMTP; 02 Nov 2014 15:59:16 +1030 Message-ID: <5455C12B.10000@ShaneWare.Biz> Date: Sun, 02 Nov 2014 15:59:15 +1030 From: Shane Ambler <FreeBSD@ShaneWare.Biz> User-Agent: Mozilla/5.0 (X11; FreeBSD amd64; rv:31.0) Gecko/20100101 Thunderbird/31.2.0 MIME-Version: 1.0 To: Mason Loring Bliss <mason@blisses.org>, freebsd-questions@freebsd.org Subject: Re: Whence RC4? References: <20141031150107.GY17150@blisses.org> In-Reply-To: <20141031150107.GY17150@blisses.org> Content-Type: text/plain; charset=utf-8; format=flowed Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Sun, 02 Nov 2014 05:34:30 -0000 On 01/11/2014 01:31, Mason Loring Bliss wrote: > I've been watching the update servers eagerly since the day RC4 was to begin > building, based on the schedule here: > > https://www.freebsd.org/releases/10.1R/schedule.html > > And yet, http://update.freebsd.org/10.1-RC4/ continues not to exist. 10.1-RC4 exists in svn - https://svnweb.freebsd.org/base?view=revision&revision=273874 It can take a few days before all the binaries are compiled to be ready for release - all arches and ports that are included in iso's need to finish compiling, at which stage iso images will exist on ftp sites and an email will announce the release. A weekend can extend that wait. > I haven't found a public releng coordination mailing list or any real > explanation of the process. Can someone enlighten me? The article > > https://www.freebsd.org/doc/en_US.ISO8859-1/articles/releng/article.html > > talks about binary patchkits existing to match releng/x.y branches, but it > doesn't describe their creation or how such a process might differ for > release candidates. I think this would be explained in - https://www.freebsd.org/doc/en_US.ISO8859-1/articles/freebsd-update-server/index.html > While I'm interested in this, I've also got the secondary goal of exploring > how to move back to using binary patches and freebsd-update after having > built from source for a while. My home desktop is my test case, and it's > currently identifying itself as being 10.1-RC3, built from this at the right > time: > > https://svn0.us-east.freebsd.org/base/releng/10.1 see 'man freebsd-update' - the upgrade command is used to change release versions - RC to release needs an upgrade not just an update > Something I'm not clear on is the possibility of finding a particular point > in time along a branch with Subversion, be it a tag or a date. I still think > in terms of CVS and that seems not to be valid when applied to SVN. It seems > like Subversion has 'svn up -r' to update to a particular revision number, or > a rough date specifier to update to "revision at start of the date". > > How does FreeBSD deal with the lack of CVS-style tags? If one wanted to > recreate a 10.1-RC2 build, for instance, is there a sane way to do it, or > would it involve grovelling through commit logs for clues? Not sure what is officially used - sys/conf/newvers.sh is most likely the file to look at, it's commit log is mostly RC/Beta tags. -- FreeBSD - the place to B...Scaring Daemons Shane Ambler From owner-freebsd-questions@FreeBSD.ORG Sun Nov 2 05:47:31 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 3621F29A for <freebsd-questions@freebsd.org>; Sun, 2 Nov 2014 05:47:31 +0000 (UTC) Received: from ipmail05.adl6.internode.on.net (ipmail05.adl6.internode.on.net [150.101.137.143]) by mx1.freebsd.org (Postfix) with ESMTP id B717FA69 for <freebsd-questions@freebsd.org>; Sun, 2 Nov 2014 05:47:30 +0000 (UTC) Received: from ppp118-210-8-90.lns20.adl2.internode.on.net (HELO leader.local) ([118.210.8.90]) by ipmail05.adl6.internode.on.net with ESMTP; 02 Nov 2014 16:17:29 +1030 Message-ID: <5455C56F.30706@ShaneWare.Biz> Date: Sun, 02 Nov 2014 16:17:27 +1030 From: Shane Ambler <FreeBSD@ShaneWare.Biz> User-Agent: Mozilla/5.0 (X11; FreeBSD amd64; rv:31.0) Gecko/20100101 Thunderbird/31.2.0 MIME-Version: 1.0 To: BBlister <bblister@gmail.com>, freebsd-questions@freebsd.org Subject: Re: Every day my FreeBSD 9.3 machines reboot by watchdog timeout References: <1414742770032-5960935.post@n5.nabble.com> In-Reply-To: <1414742770032-5960935.post@n5.nabble.com> Content-Type: text/plain; charset=utf-8; format=flowed Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Sun, 02 Nov 2014 05:47:31 -0000 On 31/10/2014 18:36, BBlister wrote: > > Greetings, > > I have a very strange problem. I am administering a number of FreeBSD > machines (64bit) with: > > 9.3-STABLE > > and after the upgrade to 9.3 for the past months until now I have noticed > that every day at approximately > the same time the machines reboot by watchdog timeout. I believe the problem > lies on an entry on the crontab which is difficult to debug because the > crontab has too many entries [280 lines]. > > All the previous versions of freebsd worked fine (even 9.2) and had uptime > for many months. > After going to 9.3 the problem arose. > Any chance you can get the memory usage at that time? I have updated to 10.1-RC from 9.2 and found trouble with wired memory increasing, when 7G is wired out of 8G, starting new processes fails at which time I need to reset. I have been unable to get uptimes of much more than a day on my desktop machine. zfs compression seems to play a part, which might mean the same zfs changes to 9.3 and 10.1 I found that constant simultaneous disk writes can re-produce this within minutes. https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=194654 -- FreeBSD - the place to B...Scaring Daemons Shane Ambler From owner-freebsd-questions@FreeBSD.ORG Sun Nov 2 08:16:15 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 9ABF7EAA for <freebsd-questions@freebsd.org>; Sun, 2 Nov 2014 08:16:15 +0000 (UTC) Received: from io.ze.tum.de (io.ze.tum.de [129.187.39.54]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 22C238B3 for <freebsd-questions@freebsd.org>; Sun, 2 Nov 2014 08:16:14 +0000 (UTC) Received: from etustar.ze.tum.de (etustar.ze.tum.de [129.187.39.200]) (authenticated bits=0) by io.ze.tum.de (8.14.5/8.14.5) with ESMTP id sA28G3qp024795; Sun, 2 Nov 2014 09:16:05 +0100 (CET) (envelope-from schmidt@ze.tum.de) Message-ID: <5455E83E.2050608@ze.tum.de> Date: Sun, 02 Nov 2014 09:15:58 +0100 From: Gerhard Schmidt <schmidt@ze.tum.de> User-Agent: Mozilla/5.0 (X11; FreeBSD amd64; rv:24.0) Gecko/20100101 Thunderbird/24.4.0 MIME-Version: 1.0 To: Ian Smith <smithi@nimnet.asn.au> Subject: Re: ipfw and carp problems References: <mailman.63.1414497602.35586.freebsd-questions@freebsd.org> <20141029202942.I74058@sola.nimnet.asn.au> <20141101164746.V52402@sola.nimnet.asn.au> In-Reply-To: <20141101164746.V52402@sola.nimnet.asn.au> X-Enigmail-Version: 1.6 Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="8INgTqfOMqt5RG3q07LWkwudOcFG2A1ej" X-Content-Filtered-By: Mailman/MimeDel 2.1.18-1 Cc: freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Sun, 02 Nov 2014 08:16:15 -0000 This is an OpenPGP/MIME signed message (RFC 4880 and 3156) --8INgTqfOMqt5RG3q07LWkwudOcFG2A1ej Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: quoted-printable Am 01.11.2014 06:56, schrieb Ian Smith: > On Wed, 29 Oct 2014 20:55:16 +1100, Ian Smith wrote: > > In freebsd-questions Digest, Vol 543, Issue 2, Message: 1 > > On Mon, 27 Oct 2014 15:16:33 +0100 Gerhard Schmidt <schmidt@ze.tum.d= e> wrote: > > > Hi, > > >=20 > > > I have a small problem with ipfw an carp. > > >=20 > > > i have two server with two carp ips and a firewall via ipfw. > > >=20 > > > the problem is tha ipfw via modul is default to deny. So when the= carp > > > interfaces are initialized ipfw has no custom rules. Everything i= s > > > denied, even the carp packets. So every time I reboot one of the = hosts > > > it comes up as master and after the firewall rules are initialize= d one > > > of the servers is demoted to backup, which one seams to be random= =2E > > >=20 > > > My problem is that my setup need a new server do come up as backu= p > > > because is has to replicate the data from the running server befo= re > > > being able to act as master. There could be data loss if a newly = booted > > > server named master without prior replicating the data. > > >=20 > > > Is there a way to ensure that the firewall rules are up before th= e carp > > > interfaces are initialized or to load the ipfw module with defaul= t to > > > accept. > >=20 > > The canonical way was to build a custom kernel with ipfw included as= per=20 > > http://www.freebsd.org/doc/handbook/firewalls-ipfw.html including=20 > > 'options IPFIREWALL_DEFAULT_TO_ACCEPT' .. however you can accomplish= =20 > > this with a GENERIC (or other) kernel by adding to /boot/loader.conf= : > >=20 > > ipfw_load=3D"YES" # to load the ipfw module early > >=20 > > and adding to /etc/sysctl.conf > >=20 > > net.inet.ip.fw.enable=3D0 > > net.inet6.ip6.fw.enable=3D0 # if using ipv6 > >=20 > > /etc/rc.d/sysctl is run early (on 9.3, first) before other rc.d=20 > > scripts including netif and later ipfw, which will then only enable = the=20 > > firewall after having loaded your ruleset. > >=20 > > I just tested this over ssh to a 9.3 GENERIC box not running ipfw: > >=20 > > root@x200:~/bin # kldload ipfw && sysctl net.inet.ip.fw.enable=3D0 \= > > && sysctl net.inet6.ip6.fw.enable=3D0 > > net.inet.ip.fw.enable: 1 -> 0 > > net.inet6.ip6.fw.enable: 1 -> 0 > > root@x200:~/bin # ipfw show > > 65535 0 0 deny ip from any to any > >=20 > > which would have locked me out had it not worked :) > >=20 > > Of course you must accept that there is a vulnerable window between = > > starting net interfaces (netif) and starting ipfw, however miniscule= =2E >=20 > Excuse replying to my own message, but I've since discovered that you=20 > could also add 'net.inet.ip.fw.default_to_accept=3D1' to loader.conf as= an=20 > alternative. I hadn't twigged that this one is a loader tunable, unlik= e=20 > the sysctls mentioned above, and so can be set before ipfw.ko is loaded= ,=20 > ie before the net.inet.ip[6].fw OIDs even exist. >=20 > Please let the list know if either of these methods solve your issue? Sorry was out of town for a view days. I did solve my problem with activating the default_to_accept tunable. Since this server should be running 24/7 the slight exposure on start up shouldn't be a problem especially because the services protected are started way after firewall is initialized. Regards Estartu --=20 ---------------------------------------------------------- Gerhard Schmidt | E-Mail: schmidt@ze.tum.de Technische Universit=E4t M=FCnchen | Jabber: estartu@ze.tum.de WWW & Online Services | Tel: +49 89 289-25270 | PGP-PublicKey Fax: +49 89 289-25257 | on request --8INgTqfOMqt5RG3q07LWkwudOcFG2A1ej Content-Type: application/pgp-signature; name="signature.asc" Content-Description: OpenPGP digital signature Content-Disposition: attachment; filename="signature.asc" -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 Comment: Using GnuPG with Thunderbird - http://www.enigmail.net/ iQEUAwUBVFXoQ9l1K6RAAKkVAQLwJQf41YsWAYw5kYkuqM4NYrE6UwcWNuRy1twB EL7WLgsIcAYC+gcWPOPIrzeiKpHFzyqXJVkxjsaHiEfq2PNRt8Yqf9AXqfOEC4O/ 2vl/is+lojGItlVZe/AVaHL24VI96nkA570nSXGCSVgP5TyacbLQhz0hbcUQFI37 TG7NfbO9xohbR4ofaNhpP5dz8fPyyfVMCpeH2GslwYQf73lSegwdDEbgNDztU3VY 7lTtZtIM9Bl+C7aPUQM0Imsu7mbpRRyjcadUnBiUNxCo9baundHb7UnpwklpJpGg ZE+vN5QfUn7GeW7nY/fJHF6wdHR0sQm7DqWhb1mMHRnqnAoTJ0PR =haPx -----END PGP SIGNATURE----- --8INgTqfOMqt5RG3q07LWkwudOcFG2A1ej-- From owner-freebsd-questions@FreeBSD.ORG Sun Nov 2 11:35:29 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id B95A74BB; Sun, 2 Nov 2014 11:35:29 +0000 (UTC) Received: from mail.firstyear.id.au (2001-44b8-016a-0004-0000-0000-0000-0001.static.ipv6.internode.on.net [IPv6:2001:44b8:16a:4::1]) by mx1.freebsd.org (Postfix) with ESMTP id 6BEB6AAE; Sun, 2 Nov 2014 11:35:29 +0000 (UTC) Received: from [IPv6:2001:44b8:16a:3::1ab] (unknown [IPv6:2001:44b8:16a:3::1ab]) by mail.firstyear.id.au (Postfix) with ESMTPSA id 34E94453C457; Sun, 2 Nov 2014 22:05:26 +1030 (ACDT) Message-ID: <1414928126.23886.5.camel@ammy.its.adelaide.edu.au> Subject: Re: Loader vs loader efi ficl incompatibility From: William <william@firstyear.id.au> To: Adrian Chadd <adrian@freebsd.org> Date: Sun, 02 Nov 2014 22:05:26 +1030 In-Reply-To: <CAJ-VmomaFFsNO1FBfj7Esj4aE+2mDDP3N6AjZ43BNhRMr-M_Bg@mail.gmail.com> References: <1414622725.16625.22.camel@ammy.its.adelaide.edu.au> <CAPyFy2CrDr=a8_O93TBNFE5HJYJDXE6tuihvJQ9gjDydXbywkQ@mail.gmail.com> <1414714882.16625.43.camel@ammy.its.adelaide.edu.au> <CAJ-VmomaFFsNO1FBfj7Esj4aE+2mDDP3N6AjZ43BNhRMr-M_Bg@mail.gmail.com> Content-Type: text/plain; charset="UTF-8" X-Mailer: Evolution 3.10.4 (3.10.4-4.fc20) Mime-Version: 1.0 Content-Transfer-Encoding: 7bit X-Spam-Status: No, score=1.3 required=5.0 tests=RDNS_NONE,URIBL_BLOCKED autolearn=no autolearn_force=no version=3.4.0 X-Spam-Level: * X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on lyra.ipa.blackhats.net.au Cc: FreeBSD Questions <freebsd-questions@freebsd.org> X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Sun, 02 Nov 2014 11:35:29 -0000 Hi, On Fri, 2014-10-31 at 18:45 -0700, Adrian Chadd wrote: > Hi! > > Is the code anywhere public? If not, would you actually publish it somewhere? It's not public yet, but I plan to release the code plus documentation on how to make freebsd work on one of the Macbook pro's on my blog once I'm done. Any changes I make to core freebsd components I will of course submit as a patch. > > I'm glad you're digging into this! It sounds like it's a real > pre-requisite to make these laptops useful in FreeBSD. Yes, it really is! They are sadly quite unusable without these steps in freebsd, or linux. I'll report back to this thread when I have done some more. At this point I have patched the amd64 version of loader to support outb / inb, and I have ran a test of this functionality which worked. Sadly, I choose to test against the "power the discrete card off" switch without anything else, so now my freebsd boots to a black screen (Oops). I'll fix it up tomorrow morning once I get to work and create a live cd to fix up boot.4th. Any pointers on how to write a forth script that would run "after the user presses enter at loader, but before the kernel is loaded" would be much appreciated. >From there I hope to get Xorg working. At that point, I'll send a patch of what I did to loader to the correct mailing list (Is freebsd-devel correct?), and I'll take some notes. After than once I get wireless and some other bits working, I'll publish the kernel module, and the documentation. -- William <william@firstyear.id.au> From owner-freebsd-questions@FreeBSD.ORG Sun Nov 2 14:45:42 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id BD218713 for <freebsd-questions@freebsd.org>; Sun, 2 Nov 2014 14:45:42 +0000 (UTC) Received: from sola.nimnet.asn.au (paqi.nimnet.asn.au [115.70.110.159]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 3C661CB2 for <freebsd-questions@freebsd.org>; Sun, 2 Nov 2014 14:45:41 +0000 (UTC) Received: from localhost (localhost [127.0.0.1]) by sola.nimnet.asn.au (8.14.2/8.14.2) with ESMTP id sA2EjUm6049230; Mon, 3 Nov 2014 01:45:31 +1100 (EST) (envelope-from smithi@nimnet.asn.au) Date: Mon, 3 Nov 2014 01:45:30 +1100 (EST) From: Ian Smith <smithi@nimnet.asn.au> To: "William A. Mahaffey III" <wam@hiwaay.net> Subject: Re: Minor rpc question .... In-Reply-To: <mailman.69.1414929601.54988.freebsd-questions@freebsd.org> Message-ID: <20141103012236.X52402@sola.nimnet.asn.au> References: <mailman.69.1414929601.54988.freebsd-questions@freebsd.org> MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII Cc: freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Sun, 02 Nov 2014 14:45:42 -0000 In freebsd-questions Digest, Vol 543, Issue 7, Message: 3 On Sat, 01 Nov 2014 19:04:29 -0500 "William A. Mahaffey III" <wam@hiwaay.net> wrote: > .... I have ruptime installed & running on my LAN boxen. When I query > from various boxen, such as an Intel Q6600 based server, I see: > > [wam@Q6600, ~, 6:59:57pm] 1173 % ruptime > INDIGO down ??:?? > Opty165A down 976+08:10 > Q6600 up 298+09:30, 6 users, load 0.13, 0.07, 0.06 > V8 down ??:?? > athloncube up 44+22:38, 4 users, load 0.08, 0.03, 0.05 > centos-5 up 41+09:48, 3 users, load 0.03, 0.04, 0.01 > kabini1 up 0:25, 1 user, load 0.02, 0.21, 0.26 > opty165a up 298+09:30, 0 users, load 0.00, 0.00, 0.00 > [wam@Q6600, ~, DING!] 1174 % > > However, when I query from this box, I see: > > [wam@kabini1, ~, 6:44:52pm] 297 % ruptime > kabini1 up 0:25, 1 user, load 0.02, 0.21, 0.26 > [wam@kabini1, ~, DING!] 298 % > > i.e. only this box shows up. I expect to see at least other > still-running boxen listed, maybe not defunct (such as V8 & INDIGO) .... > Config issue ? Bug ? Pilot error ? Please advise .... > > BTW: > > [root@kabini1, /etc, 6:51:24pm] 323 % uname -a > FreeBSD kabini1.local 9.3-RELEASE-p3 FreeBSD 9.3-RELEASE-p3 #0: Mon Oct > 20 15:08:33 UTC 2014 > root@amd64-builder.daemonology.net:/usr/obj/usr/src/sys/GENERIC amd64 > [root@kabini1, /etc, 7:04:07pm] 324 % Just checking: you have 'rwhod_enable="YES"' in /etc/rc.conf, rwhod(8) is running, and port 513/udp traffic is open both ways in any firewall? If so, you possibly want to use the -a switch on both ruptime and rwho. cheers, Ian From owner-freebsd-questions@FreeBSD.ORG Sun Nov 2 15:10:48 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id C6EFCB1C for <freebsd-questions@freebsd.org>; Sun, 2 Nov 2014 15:10:48 +0000 (UTC) Received: from fly.hiwaay.net (fly.hiwaay.net [216.180.54.1]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 8D8FFEED for <freebsd-questions@freebsd.org>; Sun, 2 Nov 2014 15:10:48 +0000 (UTC) Received: from kabini1.local (rbn1-216-180-76-94.adsl.hiwaay.net [216.180.76.94]) (authenticated bits=0) by fly.hiwaay.net (8.13.8/8.13.8/fly) with ESMTP id sA2FAiis013319 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES128-SHA bits=128 verify=NO) for <freebsd-questions@freebsd.org>; Sun, 2 Nov 2014 09:10:46 -0600 Message-ID: <54564AEB.2000701@hiwaay.net> Date: Sun, 02 Nov 2014 09:16:59 -0600 From: "William A. Mahaffey III" <wam@hiwaay.net> User-Agent: Mozilla/5.0 (X11; FreeBSD amd64; rv:31.0) Gecko/20100101 Thunderbird/31.2.0 MIME-Version: 1.0 CC: freebsd-questions@freebsd.org Subject: Re: Minor rpc question .... References: <mailman.69.1414929601.54988.freebsd-questions@freebsd.org> <20141103012236.X52402@sola.nimnet.asn.au> In-Reply-To: <20141103012236.X52402@sola.nimnet.asn.au> Content-Type: text/plain; charset=windows-1252; format=flowed Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Sun, 02 Nov 2014 15:10:48 -0000 On 11/02/14 08:45, Ian Smith wrote: > In freebsd-questions Digest, Vol 543, Issue 7, Message: 3 > On Sat, 01 Nov 2014 19:04:29 -0500 "William A. Mahaffey III" <wam@hiwaay.net> wrote: > > .... I have ruptime installed & running on my LAN boxen. When I query > > from various boxen, such as an Intel Q6600 based server, I see: > > > > [wam@Q6600, ~, 6:59:57pm] 1173 % ruptime > > INDIGO down ??:?? > > Opty165A down 976+08:10 > > Q6600 up 298+09:30, 6 users, load 0.13, 0.07, 0.06 > > V8 down ??:?? > > athloncube up 44+22:38, 4 users, load 0.08, 0.03, 0.05 > > centos-5 up 41+09:48, 3 users, load 0.03, 0.04, 0.01 > > kabini1 up 0:25, 1 user, load 0.02, 0.21, 0.26 > > opty165a up 298+09:30, 0 users, load 0.00, 0.00, 0.00 > > [wam@Q6600, ~, DING!] 1174 % > > > > However, when I query from this box, I see: > > > > [wam@kabini1, ~, 6:44:52pm] 297 % ruptime > > kabini1 up 0:25, 1 user, load 0.02, 0.21, 0.26 > > [wam@kabini1, ~, DING!] 298 % > > > > i.e. only this box shows up. I expect to see at least other > > still-running boxen listed, maybe not defunct (such as V8 & INDIGO) .... > > Config issue ? Bug ? Pilot error ? Please advise .... > > > > BTW: > > > > [root@kabini1, /etc, 6:51:24pm] 323 % uname -a > > FreeBSD kabini1.local 9.3-RELEASE-p3 FreeBSD 9.3-RELEASE-p3 #0: Mon Oct > > 20 15:08:33 UTC 2014 > > root@amd64-builder.daemonology.net:/usr/obj/usr/src/sys/GENERIC amd64 > > [root@kabini1, /etc, 7:04:07pm] 324 % > > Just checking: you have 'rwhod_enable="YES"' in /etc/rc.conf, rwhod(8) > is running, and port 513/udp traffic is open both ways in any firewall? Yes, yes, & .... not sure. I disabled logging of firewall traffic on ports 111,137,138 & 513 in my rc.conf (they were swamping my log file). I just changed that logging to allow port 513. I see no mention of that port or service-by-name in my ipfw file, which is the box-stock file w/ mods to allow NFS, otherwise supposedly stock workstation. see: [root@kabini1, /etc, 9:07:35am] 340 % ipfw show 00100 704 110724 allow ip from any to any via lo0 00200 0 0 deny ip from any to 127.0.0.0/8 00300 0 0 deny ip from 127.0.0.0/8 to any 00400 0 0 deny ip from any to ::1 00500 0 0 deny ip from ::1 to any 00600 0 0 allow ipv6-icmp from :: to ff02::/16 00700 0 0 allow ipv6-icmp from fe80::/10 to fe80::/10 00800 2 152 allow ipv6-icmp from fe80::/10 to ff02::/16 00900 0 0 allow ipv6-icmp from any to any ip6 icmp6types 1 01000 0 0 allow ipv6-icmp from any to any ip6 icmp6types 2,135,136 01100 0 0 check-state 01200 11697 679930 allow tcp from me to any established 01300 112670 62773943 allow tcp from me to any setup keep-state 01400 21809 1723308 allow udp from me to any keep-state 01500 127 12036 allow icmp from me to any keep-state 01600 0 0 allow ipv6-icmp from me to any keep-state 01700 0 0 allow udp from 0.0.0.0 68 to 255.255.255.255 dst-port 67 out 01800 0 0 allow udp from any 67 to me dst-port 68 in 01900 0 0 allow udp from any 67 to 255.255.255.255 dst-port 68 in 02000 0 0 allow udp from fe80::/10 to me dst-port 546 in 02100 1 148 allow icmp from any to any icmptypes 8 02200 0 0 allow ipv6-icmp from any to any ip6 icmp6types 128,129 02300 1858 104048 allow icmp from any to any icmptypes 3,4,11 02400 0 0 allow ipv6-icmp from any to any ip6 icmp6types 3 02500 18777 23476935 allow tcp from 192.168.0.0/16 to me 65000 1795 424041 count ip from any to any 65100 1371 269257 deny { tcp or udp } from any to any dst-port 111,137,138,513 in 65200 424 154784 deny { tcp or udp } from 192.168.0.0/16 to me 65300 0 0 deny ip from any to 255.255.255.255 65400 0 0 deny ip from any to 224.0.0.0/24 in 65500 0 0 deny udp from any to any dst-port 520 in 65500 0 0 deny tcp from any 80,443 to any dst-port 1024-65535 in 65500 0 0 deny log logamount 5000 ip from any to any 65535 0 0 deny ip from any to any [root@kabini1, /etc, 9:10:10am] 341 % w/ port 513 obviously being denied. However, I don't know where that is happening :-/ & I thought rule 02500 would let all local traffic through .... > > If so, you possibly want to use the -a switch on both ruptime and rwho. > > cheers, Ian > _______________________________________________ > freebsd-questions@freebsd.org mailing list > http://lists.freebsd.org/mailman/listinfo/freebsd-questions > To unsubscribe, send any mail to "freebsd-questions-unsubscribe@freebsd.org" > -- William A. Mahaffey III ---------------------------------------------------------------------- "The M1 Garand is without doubt the finest implement of war ever devised by man." -- Gen. George S. Patton Jr. From owner-freebsd-questions@FreeBSD.ORG Sun Nov 2 16:12:47 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 87520B65 for <freebsd-questions@freebsd.org>; Sun, 2 Nov 2014 16:12:47 +0000 (UTC) Received: from smtprelay-b22.telenor.se (smtprelay-b22.telenor.se [195.54.99.213]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 00D08684 for <freebsd-questions@freebsd.org>; Sun, 2 Nov 2014 16:12:46 +0000 (UTC) Received: from ipb4.telenor.se (ipb4.telenor.se [195.54.127.167]) by smtprelay-b22.telenor.se (Postfix) with ESMTP id C764BEC5B for <freebsd-questions@freebsd.org>; Sun, 2 Nov 2014 16:44:50 +0100 (CET) X-SENDER-IP: [83.227.225.121] X-LISTENER: [smtp.bredband.net] X-IronPort-Anti-Spam-Filtered: true X-IronPort-Anti-Spam-Result: AioHACZQVlRT4+F5PGdsb2JhbABcgw4BU1i9To86C4hkFwEBAQEBAQUBAQEBODuEX180BRkMCg4fiEUBpUCkAZREgR4Fj3uGbocXAYExPYZCj3OCJjwvAYJKAQEB X-IPAS-Result: AioHACZQVlRT4+F5PGdsb2JhbABcgw4BU1i9To86C4hkFwEBAQEBAQUBAQEBODuEX180BRkMCg4fiEUBpUCkAZREgR4Fj3uGbocXAYExPYZCj3OCJjwvAYJKAQEB X-IronPort-AV: E=Sophos;i="5.07,295,1413237600"; d="scan'208";a="675439425" Received: from ua-83-227-225-121.cust.bredbandsbolaget.se (HELO ymer.thorshammare.org) ([83.227.225.121]) by ipb4.telenor.se with ESMTP; 02 Nov 2014 16:44:50 +0100 Received: from ymer.thorshammare.org (localhost [127.0.0.1]) by ymer.thorshammare.org (8.14.9/8.14.9) with ESMTP id sA2Fiie1043052 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-GCM-SHA384 bits=256 verify=NO) for <freebsd-questions@freebsd.org>; Sun, 2 Nov 2014 16:44:47 +0100 (CET) (envelope-from hasse@ymer.thorshammare.org) Received: (from hasse@localhost) by ymer.thorshammare.org (8.14.9/8.14.9/Submit) id sA2FiifN043051 for freebsd-questions@freebsd.org; Sun, 2 Nov 2014 16:44:44 +0100 (CET) (envelope-from hasse) Date: Sun, 2 Nov 2014 16:44:44 +0100 From: Hasse Hansson <hasse@thorshammare.org> To: freebsd-questions@freebsd.org Subject: sshguard pf Message-ID: <20141102154444.GA42429@ymer.thorshammare.org> MIME-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="YiEDa0DAkWCtVeE4" Content-Disposition: inline User-Agent: Mutt/1.5.23 (2014-03-12) X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Sun, 02 Nov 2014 16:12:47 -0000 --YiEDa0DAkWCtVeE4 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Content-Transfer-Encoding: quoted-printable Hello uname -a FreeBSD ymer.thorshammare.org 10.1-RC3 FreeBSD 10.1-RC3 #0 r273437: Wed Oct= 22 01:27:10 UTC 2014=20 root@releng1.nyi.freebsd.org:/usr/obj/usr/src/sys/GENERIC i386 I have a bit problems to get some bots blocked. I'm running pf and sshguard= =2E Even tried fail2ban Below is a snippet from my auth.log showing sshguard blocking som IPs, but = nor the bot scans. Both tables abusers and sshguard are empty and allways was. This junk is filling up my logfiles.=20 Any clues what I'm doing wrong or missing ?=20 I'm running two crontabs : # Sshguard 0/1 * * * * root pfctl -t sshguard -T show >/et= c/sshguard 2>/dev/null # # Bruteforce ssh 0/2 * * * * root pfctl -t abusers -T show >/etc= /abusers 2>/dev/null In /etc/ssh/sshd_config I've uncommented : Port 22 AddressFamily any Protocol 2 SyslogFacility AUTH LogLevel INFO # Authentication: LoginGraceTime 1m PermitRootLogin no StrictModes yes MaxAuthTries 5 MaxSessions 10 PasswordAuthentication no PermitEmptyPasswords no ChallengeResponseAuthentication no MaxStartups 10:30:100 In my /etc/rc.conf I have : pf_enable=3D"YES" pflog_enable=3D"YES" pflog_logfile=3D"/var/log/pflog" sshguard_enable=3D"YES" sshguard_safety_thresh=3D"30" sshguard_pardon_min_interval=3D"600" sshguard_prescribe_interval=3D"7200" In /etc/pf.conf : ext_if=3D"fxp0" int_if=3D"xl0" webports=3D"{ http, https }" table <abusers> counters persist table <sshguard> persist set skip on lo scrub in block in pass out block quick from <abusers> to any block drop in log quick on $ext_if inet from <sshguard> to any pass in on $ext_if proto tcp to any port ssh flags S/SA keep state (max-src= -conn 10, max-src-conn-rate 2/120, overload <abusers> flush) antispoof quick for { lo $ext_if $int_if } pass in on $ext_if proto tcp to ($ext_if) port ssh pass in log on $ext_if proto tcp to ($ext_if) port smtp pass out log on $ext_if proto tcp from ($ext_if) to port smtp pass in log on $ext_if proto tcp to ($ext_if) port $webports pass out log on $ext_if proto tcp from ($ext_if) to port $webports pass in on $ext_if inet proto icmp from any to ($ext_if) icmp-type { unreac= h, redir, timex } <snip> Nov 2 07:51:13 ymer sshguard[19225]: Blocking 103.27.24.106:4 for >900secs= : 30 danger in 3 attacks over 18 seconds (all: 30d in 1 abuses over 18s). Nov 2 10:35:35 ymer sshguard[19225]: Blocking 60.190.71.52:4 for >900secs:= 30 danger in 3 attacks over 8 seconds (all: 30d in 1 abuses over 8s). Nov 2 11:09:50 ymer sshguard[19225]: Blocking 122.225.97.105:4 for >900sec= s: 30 danger in 3 attacks over 65 seconds (all: 30d in 1 abuses over 65s). Nov 2 13:10:52 ymer sshguard[19225]: Blocking 50.30.32.19:4 for >900secs: = 30 danger in 3 attacks over 4 seconds (all: 30d in 1 abuses over 4s). Nov 2 14:34:55 ymer sshguard[19225]: Blocking 61.174.51.212:4 for >900secs= : 30 danger in 3 attacks over 69 seconds (all: 30d in 1 abuses over 69s). Nov 2 16:32:09 ymer sshd[42957]: Connection from 202.109.143.110 port 3453= on 192.168.1.2 port 22 Nov 2 16:32:13 ymer sshd[42957]: Disconnecting: Too many authentication fa= ilures for root [preauth] Nov 2 16:32:14 ymer sshd[42959]: Connection from 202.109.143.110 port 2838= on 192.168.1.2 port 22 Nov 2 16:32:17 ymer sshd[42959]: Disconnecting: Too many authentication fa= ilures for root [preauth] Nov 2 16:32:21 ymer sshd[42961]: Connection from 202.109.143.110 port 3611= on 192.168.1.2 port 22 Nov 2 16:32:34 ymer sshd[42961]: Disconnecting: Too many authentication fa= ilures for root [preauth] Nov 2 16:32:41 ymer sshd[42963]: Connection from 202.109.143.110 port 2507= on 192.168.1.2 port 22 Nov 2 16:32:48 ymer sshd[42963]: Disconnecting: Too many authentication fa= ilures for root [preauth] Nov 2 16:32:49 ymer sshd[42965]: Connection from 202.109.143.110 port 4650= on 192.168.1.2 port 22 Nov 2 16:32:52 ymer sshd[42965]: Disconnecting: Too many authentication fa= ilures for root [preauth] Nov 2 16:32:52 ymer sshd[42967]: Connection from 202.109.143.110 port 4650= on 192.168.1.2 port 22 Nov 2 16:33:01 ymer sshd[42967]: Disconnecting: Too many authentication fa= ilures for root [preauth] Nov 2 16:33:02 ymer sshd[42983]: Connection from 202.109.143.110 port 4316= on 192.168.1.2 port 22 Nov 2 16:33:12 ymer sshd[42983]: Disconnecting: Too many authentication fa= ilures for root [preauth] Nov 2 16:33:18 ymer sshd[42985]: Connection from 202.109.143.110 port 2539= on 192.168.1.2 port 22 Nov 2 16:33:27 ymer sshd[42985]: Disconnecting: Too many authentication fa= ilures for root [preauth] Nov 2 16:33:28 ymer sshd[42987]: Connection from 202.109.143.110 port 4555= on 192.168.1.2 port 22 Nov 2 16:33:35 ymer sshd[42987]: Disconnecting: Too many authentication fa= ilures for root [preauth] Nov 2 16:33:38 ymer sshd[42989]: Connection from 202.109.143.110 port 3164= on 192.168.1.2 port 22 Nov 2 16:33:43 ymer sshd[42989]: Disconnecting: Too many authentication fa= ilures for root [preauth] Nov 2 16:33:43 ymer sshd[42991]: Connection from 202.109.143.110 port 4749= on 192.168.1.2 port 22 Nov 2 16:33:52 ymer sshd[42991]: fatal: Read from socket failed: Connectio= n reset by peer [preauth] </snip> Best Regards Hasse. --YiEDa0DAkWCtVeE4 Content-Type: application/pgp-signature -----BEGIN PGP SIGNATURE----- Version: GnuPG v2 iQEcBAEBAgAGBQJUVlFsAAoJELatlRZF6goTuIIIAIL18DVJtxewxKZ7Zo3geIR2 Pr+h5UbYDrJreokQT/0mW0SB/ZtDclrA3mfDjErPfGS2SUh924/uu3CjKiRcaqWq XnMYufgwAWJGQIm3xOQop+07lhLbKpE8xlT/FCcvCmPRPtm4v+jv9Be7/MnKhLe/ 0Au2dZBlJk8z75kktMzY7cQ4UOlbULutj+yAhWphOfttt3FsKQE+coi2v4MiaDZm yhGXZ3bCJoqrT/YEdFKUzL1ITvxntKcjLbHuDMsdxIAZQC8DC1kB9ykpsJqC/xuM SECxiUBKi4jB7+dE2p60fNr58xp5f+EBC/VFfluoG6e4o7mqWk2KYDdDBfbTqSo= =PNNJ -----END PGP SIGNATURE----- --YiEDa0DAkWCtVeE4-- From owner-freebsd-questions@FreeBSD.ORG Sun Nov 2 17:12:39 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 3399DB0D for <freebsd-questions@freebsd.org>; Sun, 2 Nov 2014 17:12:39 +0000 (UTC) Received: from sola.nimnet.asn.au (paqi.nimnet.asn.au [115.70.110.159]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id A643FBAB for <freebsd-questions@freebsd.org>; Sun, 2 Nov 2014 17:12:37 +0000 (UTC) Received: from localhost (localhost [127.0.0.1]) by sola.nimnet.asn.au (8.14.2/8.14.2) with ESMTP id sA2HCZ6R054508; Mon, 3 Nov 2014 04:12:35 +1100 (EST) (envelope-from smithi@nimnet.asn.au) Date: Mon, 3 Nov 2014 04:12:34 +1100 (EST) From: Ian Smith <smithi@nimnet.asn.au> To: "William A. Mahaffey III" <wam@hiwaay.net> Subject: Re: Minor rpc question .... In-Reply-To: <20141103012236.X52402@sola.nimnet.asn.au> Message-ID: <20141103032648.W52402@sola.nimnet.asn.au> References: <mailman.69.1414929601.54988.freebsd-questions@freebsd.org> <20141103012236.X52402@sola.nimnet.asn.au> MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII Cc: freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Sun, 02 Nov 2014 17:12:39 -0000 William, I've just seen your response at http://lists.freebsd.org/pipermail/freebsd-questions/2014-November/262026.html but as I take questions@ as a digest, I won't get it here till tomorrow .. I should have asked you to cc me. So this is a brief hatchet job: > 02500 18777 23476935 allow tcp from 192.168.0.0/16 to me > 65000 1795 424041 count ip from any to any > 65100 1371 269257 deny { tcp or udp } from any to any dst-port 111,137,138,513 in > w/ port 513 obviously being denied. However, I don't know where that > is happening :-/ & I thought rule 02500 would let all local traffic > through .... /etc/rc.firewall 'workstation' ruleset allows you to enable inbound access to services, like rwhod. see /etc/defaults/rc.conf for details of rc.conf variables, and rc.firewall for how they're invoked. Rule 2500 only allows tcp, rwho is udp - but 2500 is a bit sweeping anyway, perhaps best to enable specific services, even internally? Ah, yes - I see firewall_myservices and firewall_allowservices are only for TCP services. That's a strange omission, if I'm reading it right, especially re rpc. Rather than fixing this properly now for UDP services, I'd just add into /etc/rc.firewall after what's now your 2500 or at any rate before 65000: ${fwcmd} allow udp from ${mynetwork} 513 to me 513 You're already enabling udp services outbound, statefully, which is why you can query other hosts. Now they'll be able to reach you too :) 'service ipfw restart' and you should be good to go. You could remove 513 from firewall_nologports - but now it'll already be passed by then. g'night, Ian From owner-freebsd-questions@FreeBSD.ORG Sun Nov 2 22:24:08 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 996D7E9F for <freebsd-questions@freebsd.org>; Sun, 2 Nov 2014 22:24:08 +0000 (UTC) Received: from fly.hiwaay.net (fly.hiwaay.net [216.180.54.1]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 61630D2D for <freebsd-questions@freebsd.org>; Sun, 2 Nov 2014 22:24:07 +0000 (UTC) Received: from kabini1.local (rbn1-216-180-19-97.adsl.hiwaay.net [216.180.19.97]) (authenticated bits=0) by fly.hiwaay.net (8.13.8/8.13.8/fly) with ESMTP id sA2MO5l6007984 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES128-SHA bits=128 verify=NO) for <freebsd-questions@freebsd.org>; Sun, 2 Nov 2014 16:24:05 -0600 Message-ID: <5456B07C.7030504@hiwaay.net> Date: Sun, 02 Nov 2014 16:30:20 -0600 From: "William A. Mahaffey III" <wam@hiwaay.net> User-Agent: Mozilla/5.0 (X11; FreeBSD amd64; rv:31.0) Gecko/20100101 Thunderbird/31.2.0 MIME-Version: 1.0 CC: freebsd-questions@freebsd.org Subject: Re: Minor rpc question .... References: <mailman.69.1414929601.54988.freebsd-questions@freebsd.org> <20141103012236.X52402@sola.nimnet.asn.au> <20141103032648.W52402@sola.nimnet.asn.au> In-Reply-To: <20141103032648.W52402@sola.nimnet.asn.au> Content-Type: text/plain; charset=windows-1252; format=flowed Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Sun, 02 Nov 2014 22:24:08 -0000 On 11/02/14 11:12, Ian Smith wrote: > William, I've just seen your response at > http://lists.freebsd.org/pipermail/freebsd-questions/2014-November/262026.html > but as I take questions@ as a digest, I won't get it here till tomorrow > .. I should have asked you to cc me. > > So this is a brief hatchet job: > > > 02500 18777 23476935 allow tcp from 192.168.0.0/16 to me > > 65000 1795 424041 count ip from any to any > > 65100 1371 269257 deny { tcp or udp } from any to any dst-port 111,137,138,513 in > > > w/ port 513 obviously being denied. However, I don't know where that > > is happening :-/ & I thought rule 02500 would let all local traffic > > through .... > > /etc/rc.firewall 'workstation' ruleset allows you to enable inbound > access to services, like rwhod. see /etc/defaults/rc.conf for details > of rc.conf variables, and rc.firewall for how they're invoked. > > Rule 2500 only allows tcp, rwho is udp - but 2500 is a bit sweeping > anyway, perhaps best to enable specific services, even internally? I did that to start w/ & had trouble getting stuff (NFS) to run, so I just opened up all internal traffic, a bit shaky, on my TODO list to fix, might be a good time now :-) .... > > Ah, yes - I see firewall_myservices and firewall_allowservices are only > for TCP services. That's a strange omission, if I'm reading it right, > especially re rpc. > > Rather than fixing this properly now for UDP services, I'd just add into > /etc/rc.firewall after what's now your 2500 or at any rate before 65000: > > ${fwcmd} allow udp from ${mynetwork} 513 to me 513 > > You're already enabling udp services outbound, statefully, which is why > you can query other hosts. Now they'll be able to reach you too :) > > 'service ipfw restart' and you should be good to go. You could remove > 513 from firewall_nologports - but now it'll already be passed by then. > > g'night, Ian > -- William A. Mahaffey III ---------------------------------------------------------------------- "The M1 Garand is without doubt the finest implement of war ever devised by man." -- Gen. George S. Patton Jr. From owner-freebsd-questions@FreeBSD.ORG Sun Nov 2 22:37:41 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id BAA81F67 for <freebsd-questions@freebsd.org>; Sun, 2 Nov 2014 22:37:41 +0000 (UTC) Received: from fly.hiwaay.net (fly.hiwaay.net [216.180.54.1]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 82646DF1 for <freebsd-questions@freebsd.org>; Sun, 2 Nov 2014 22:37:41 +0000 (UTC) Received: from kabini1.local (rbn1-216-180-19-97.adsl.hiwaay.net [216.180.19.97]) (authenticated bits=0) by fly.hiwaay.net (8.13.8/8.13.8/fly) with ESMTP id sA2Mbdn5017291 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES128-SHA bits=128 verify=NO) for <freebsd-questions@freebsd.org>; Sun, 2 Nov 2014 16:37:40 -0600 Message-ID: <5456B3AA.1050106@hiwaay.net> Date: Sun, 02 Nov 2014 16:43:54 -0600 From: "William A. Mahaffey III" <wam@hiwaay.net> User-Agent: Mozilla/5.0 (X11; FreeBSD amd64; rv:31.0) Gecko/20100101 Thunderbird/31.2.0 MIME-Version: 1.0 CC: freebsd-questions@freebsd.org Subject: Re: Minor rpc question .... References: <mailman.69.1414929601.54988.freebsd-questions@freebsd.org> <20141103012236.X52402@sola.nimnet.asn.au> <20141103032648.W52402@sola.nimnet.asn.au> In-Reply-To: <20141103032648.W52402@sola.nimnet.asn.au> Content-Type: text/plain; charset=windows-1252; format=flowed Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Sun, 02 Nov 2014 22:37:41 -0000 On 11/02/14 11:12, Ian Smith wrote: > William, I've just seen your response at > http://lists.freebsd.org/pipermail/freebsd-questions/2014-November/262026.html > but as I take questions@ as a digest, I won't get it here till tomorrow > .. I should have asked you to cc me. > > So this is a brief hatchet job: > > > 02500 18777 23476935 allow tcp from 192.168.0.0/16 to me > > 65000 1795 424041 count ip from any to any > > 65100 1371 269257 deny { tcp or udp } from any to any dst-port 111,137,138,513 in > > > w/ port 513 obviously being denied. However, I don't know where that > > is happening :-/ & I thought rule 02500 would let all local traffic > > through .... > > /etc/rc.firewall 'workstation' ruleset allows you to enable inbound > access to services, like rwhod. see /etc/defaults/rc.conf for details > of rc.conf variables, and rc.firewall for how they're invoked. > > Rule 2500 only allows tcp, rwho is udp - but 2500 is a bit sweeping > anyway, perhaps best to enable specific services, even internally? > > Ah, yes - I see firewall_myservices and firewall_allowservices are only > for TCP services. That's a strange omission, if I'm reading it right, > especially re rpc. > > Rather than fixing this properly now for UDP services, I'd just add into > /etc/rc.firewall after what's now your 2500 or at any rate before 65000: > > ${fwcmd} allow udp from ${mynetwork} 513 to me 513 > > You're already enabling udp services outbound, statefully, which is why > you can query other hosts. Now they'll be able to reach you too :) > > 'service ipfw restart' and you should be good to go. You could remove > 513 from firewall_nologports - but now it'll already be passed by then. > > g'night, Ian > Well, I put that rule in & opened logging for that port & now I get ruptime info from other boxen, however, I also get log traffic about denied port 513 traffic: [root@kabini1, /etc, 4:34:01pm] 368 % service ipfw restart net.inet.ip.fw.enable: 1 -> 0 net.inet6.ip6.fw.enable: 1 -> 0 Flushed all rules. 00100 allow ip from any to any via lo0 00200 deny ip from any to 127.0.0.0/8 00300 deny ip from 127.0.0.0/8 to any 00400 deny ip from any to ::1 00500 deny ip from ::1 to any 00600 allow ipv6-icmp from :: to ff02::/16 00700 allow ipv6-icmp from fe80::/10 to fe80::/10 00800 allow ipv6-icmp from fe80::/10 to ff02::/16 00900 allow ipv6-icmp from any to any ip6 icmp6types 1 01000 allow ipv6-icmp from any to any ip6 icmp6types 2,135,136 01100 check-state 01200 allow tcp from me to any established 01300 allow tcp from me to any setup keep-state 01400 allow udp from me to any keep-state 01500 allow icmp from me to any keep-state 01600 allow ipv6-icmp from me to any keep-state 01700 allow udp from 0.0.0.0 68 to 255.255.255.255 dst-port 67 out 01800 allow udp from any 67 to me dst-port 68 in 01900 allow udp from any 67 to 255.255.255.255 dst-port 68 in 02000 allow udp from fe80::/10 to me dst-port 546 in 02100 allow icmp from any to any icmptypes 8 02200 allow ipv6-icmp from any to any ip6 icmp6types 128,129 02300 allow icmp from any to any icmptypes 3,4,11 02400 allow ipv6-icmp from any to any ip6 icmp6types 3 02500 allow tcp from 192.168.0.0/16 to me 02600 allow udp from 192.168.0.0/24 513 to me dst-port 513 65000 count ip from any to any 65100 deny { tcp or udp } from any to any dst-port 111,137,138 in 65200 deny { tcp or udp } from 192.168.0.0/16 to me 65300 deny ip from any to 255.255.255.255 65400 deny ip from any to 224.0.0.0/24 in 65500 deny udp from any to any dst-port 520 in 65500 deny tcp from any 80,443 to any dst-port 1024-65535 in 65500 deny log logamount 5000 ip from any to any Firewall rules loaded. [root@kabini1, /etc, 4:34:03pm] 369 % [root@kabini1, /etc, 4:37:13pm] 337 % ( tail -20 /var/log/security ; date ) Oct 30 11:00:00 kabini1 newsyslog[9861]: logfile turned over due to size>100K Oct 30 11:00:30 kabini1 kernel: ipfw: 65500 Deny UDP 92.108.103.99:58507 192.168.0.27:63167 in via re0 Oct 30 11:00:49 kabini1 kernel: ipfw: 65500 Deny P:2 192.168.0.27 224.0.0.22 out via re0 Oct 30 11:00:52 kabini1 kernel: ipfw: 65500 Deny P:2 192.168.0.27 224.0.0.22 out via re0 Oct 30 11:01:16 kabini1 kernel: ipfw: 65500 Deny UDP 126.43.5.41:6881 192.168.0.27:63167 in via re0 Oct 30 11:02:24 kabini1 kernel: ipfw: 65500 Deny P:2 192.168.0.27 224.0.0.22 out via re0 Oct 30 11:02:24 kabini1 kernel: ipfw: 65500 Deny P:2 192.168.0.27 224.0.0.22 out via re0 Oct 31 10:16:03 kabini1 kernel: ipfw: 65500 Deny UDP 216.180.99.2:53 192.168.0.27:28277 in via re0 Nov 2 16:31:12 kabini1 kernel: ipfw: 65500 Deny UDP 192.168.0.4:513 192.168.0.255:513 in via re0 Nov 2 16:32:25 kabini1 kernel: ipfw: 65500 Deny UDP 192.168.0.9:513 192.168.0.255:513 in via re0 Nov 2 16:32:28 kabini1 kernel: ipfw: 65500 Deny UDP 192.168.0.7:513 192.168.0.255:513 in via re0 Nov 2 16:34:12 kabini1 kernel: ipfw: 65500 Deny UDP 192.168.0.4:513 192.168.0.255:513 in via re0 Nov 2 16:35:25 kabini1 kernel: ipfw: 65500 Deny UDP 192.168.0.9:513 192.168.0.255:513 in via re0 Nov 2 16:35:28 kabini1 kernel: ipfw: 65500 Deny UDP 192.168.0.7:513 192.168.0.255:513 in via re0 Nov 2 16:37:12 kabini1 kernel: ipfw: 65500 Deny UDP 192.168.0.4:513 192.168.0.255:513 in via re0 Nov 2 16:38:25 kabini1 kernel: ipfw: 65500 Deny UDP 192.168.0.9:513 192.168.0.255:513 in via re0 Sun Nov 2 16:38:26 CST 2014 [root@kabini1, /etc, 4:38:26pm] 337 % [wam@kabini1, ~, 9:03:43am] 330 % ruptime -a Q6600 up 299+08:00, 6 users, load 0.03, 0.04, 0.05 athloncube up 45+21:08, 4 users, load 0.00, 0.01, 0.05 kabini1 up 23:01, 1 user, load 0.35, 0.19, 0.10 opty165a up 299+08:00, 4 users, load 0.00, 0.00, 0.00 [wam@kabini1, ~, 4:34:49pm] 330 % ruptime Q6600 down 0:13 athloncube down 0:14 kabini1 up 23:07, 0 users, load 0.21, 0.26, 0.16 opty165a down 0:13 [wam@kabini1, ~, 4:41:57pm] 331 % ruptime -a Q6600 down 0:13 athloncube down 0:14 kabini1 up 23:07, 1 user, load 0.21, 0.26, 0.16 opty165a down 0:13 [wam@kabini1, ~, 4:42:03pm] 332 % err, well, I had it for a second :-/ .... -- William A. Mahaffey III ---------------------------------------------------------------------- "The M1 Garand is without doubt the finest implement of war ever devised by man." -- Gen. George S. Patton Jr. From owner-freebsd-questions@FreeBSD.ORG Sun Nov 2 23:00:08 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id F25E1A13 for <freebsd-questions@freebsd.org>; Sun, 2 Nov 2014 23:00:08 +0000 (UTC) Received: from fly.hiwaay.net (fly.hiwaay.net [216.180.54.1]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id B8964FB6 for <freebsd-questions@freebsd.org>; Sun, 2 Nov 2014 23:00:08 +0000 (UTC) Received: from kabini1.local (rbn1-216-180-19-97.adsl.hiwaay.net [216.180.19.97]) (authenticated bits=0) by fly.hiwaay.net (8.13.8/8.13.8/fly) with ESMTP id sA2N07P1029077 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES128-SHA bits=128 verify=NO) for <freebsd-questions@freebsd.org>; Sun, 2 Nov 2014 17:00:07 -0600 Message-ID: <5456B8EE.6030009@hiwaay.net> Date: Sun, 02 Nov 2014 17:06:22 -0600 From: "William A. Mahaffey III" <wam@hiwaay.net> User-Agent: Mozilla/5.0 (X11; FreeBSD amd64; rv:31.0) Gecko/20100101 Thunderbird/31.2.0 MIME-Version: 1.0 CC: freebsd-questions@freebsd.org Subject: Re: Minor rpc question .... References: <mailman.69.1414929601.54988.freebsd-questions@freebsd.org> <20141103012236.X52402@sola.nimnet.asn.au> <20141103032648.W52402@sola.nimnet.asn.au> <5456B3AA.1050106@hiwaay.net> In-Reply-To: <5456B3AA.1050106@hiwaay.net> Content-Type: text/plain; charset=windows-1252; format=flowed Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Sun, 02 Nov 2014 23:00:09 -0000 On 11/02/14 16:43, William A. Mahaffey III wrote: > On 11/02/14 11:12, Ian Smith wrote: >> William, I've just seen your response at >> http://lists.freebsd.org/pipermail/freebsd-questions/2014-November/262026.html >> >> but as I take questions@ as a digest, I won't get it here till tomorrow >> .. I should have asked you to cc me. >> >> So this is a brief hatchet job: >> >> > 02500 18777 23476935 allow tcp from 192.168.0.0/16 to me >> > 65000 1795 424041 count ip from any to any >> > 65100 1371 269257 deny { tcp or udp } from any to any >> dst-port 111,137,138,513 in >> >> > w/ port 513 obviously being denied. However, I don't know where that >> > is happening :-/ & I thought rule 02500 would let all local traffic >> > through .... >> >> /etc/rc.firewall 'workstation' ruleset allows you to enable inbound >> access to services, like rwhod. see /etc/defaults/rc.conf for details >> of rc.conf variables, and rc.firewall for how they're invoked. >> >> Rule 2500 only allows tcp, rwho is udp - but 2500 is a bit sweeping >> anyway, perhaps best to enable specific services, even internally? >> >> Ah, yes - I see firewall_myservices and firewall_allowservices are only >> for TCP services. That's a strange omission, if I'm reading it right, >> especially re rpc. >> >> Rather than fixing this properly now for UDP services, I'd just add into >> /etc/rc.firewall after what's now your 2500 or at any rate before 65000: >> >> ${fwcmd} allow udp from ${mynetwork} 513 to me 513 >> >> You're already enabling udp services outbound, statefully, which is why >> you can query other hosts. Now they'll be able to reach you too :) >> >> 'service ipfw restart' and you should be good to go. You could remove >> 513 from firewall_nologports - but now it'll already be passed by then. >> >> g'night, Ian >> > > Well, I put that rule in & opened logging for that port & now I get > ruptime info from other boxen, however, I also get log traffic about > denied port 513 traffic: > > [root@kabini1, /etc, 4:34:01pm] 368 % service ipfw restart > net.inet.ip.fw.enable: 1 -> 0 > net.inet6.ip6.fw.enable: 1 -> 0 > Flushed all rules. > 00100 allow ip from any to any via lo0 > 00200 deny ip from any to 127.0.0.0/8 > 00300 deny ip from 127.0.0.0/8 to any > 00400 deny ip from any to ::1 > 00500 deny ip from ::1 to any > 00600 allow ipv6-icmp from :: to ff02::/16 > 00700 allow ipv6-icmp from fe80::/10 to fe80::/10 > 00800 allow ipv6-icmp from fe80::/10 to ff02::/16 > 00900 allow ipv6-icmp from any to any ip6 icmp6types 1 > 01000 allow ipv6-icmp from any to any ip6 icmp6types 2,135,136 > 01100 check-state > 01200 allow tcp from me to any established > 01300 allow tcp from me to any setup keep-state > 01400 allow udp from me to any keep-state > 01500 allow icmp from me to any keep-state > 01600 allow ipv6-icmp from me to any keep-state > 01700 allow udp from 0.0.0.0 68 to 255.255.255.255 dst-port 67 out > 01800 allow udp from any 67 to me dst-port 68 in > 01900 allow udp from any 67 to 255.255.255.255 dst-port 68 in > 02000 allow udp from fe80::/10 to me dst-port 546 in > 02100 allow icmp from any to any icmptypes 8 > 02200 allow ipv6-icmp from any to any ip6 icmp6types 128,129 > 02300 allow icmp from any to any icmptypes 3,4,11 > 02400 allow ipv6-icmp from any to any ip6 icmp6types 3 > 02500 allow tcp from 192.168.0.0/16 to me > 02600 allow udp from 192.168.0.0/24 513 to me dst-port 513 > 65000 count ip from any to any > 65100 deny { tcp or udp } from any to any dst-port 111,137,138 in > 65200 deny { tcp or udp } from 192.168.0.0/16 to me > 65300 deny ip from any to 255.255.255.255 > 65400 deny ip from any to 224.0.0.0/24 in > 65500 deny udp from any to any dst-port 520 in > 65500 deny tcp from any 80,443 to any dst-port 1024-65535 in > 65500 deny log logamount 5000 ip from any to any > Firewall rules loaded. > [root@kabini1, /etc, 4:34:03pm] 369 % > > > [root@kabini1, /etc, 4:37:13pm] 337 % ( tail -20 /var/log/security ; > date ) > Oct 30 11:00:00 kabini1 newsyslog[9861]: logfile turned over due to > size>100K > Oct 30 11:00:30 kabini1 kernel: ipfw: 65500 Deny UDP > 92.108.103.99:58507 192.168.0.27:63167 in via re0 > Oct 30 11:00:49 kabini1 kernel: ipfw: 65500 Deny P:2 192.168.0.27 > 224.0.0.22 out via re0 > Oct 30 11:00:52 kabini1 kernel: ipfw: 65500 Deny P:2 192.168.0.27 > 224.0.0.22 out via re0 > Oct 30 11:01:16 kabini1 kernel: ipfw: 65500 Deny UDP 126.43.5.41:6881 > 192.168.0.27:63167 in via re0 > Oct 30 11:02:24 kabini1 kernel: ipfw: 65500 Deny P:2 192.168.0.27 > 224.0.0.22 out via re0 > Oct 30 11:02:24 kabini1 kernel: ipfw: 65500 Deny P:2 192.168.0.27 > 224.0.0.22 out via re0 > Oct 31 10:16:03 kabini1 kernel: ipfw: 65500 Deny UDP 216.180.99.2:53 > 192.168.0.27:28277 in via re0 > Nov 2 16:31:12 kabini1 kernel: ipfw: 65500 Deny UDP 192.168.0.4:513 > 192.168.0.255:513 in via re0 > Nov 2 16:32:25 kabini1 kernel: ipfw: 65500 Deny UDP 192.168.0.9:513 > 192.168.0.255:513 in via re0 > Nov 2 16:32:28 kabini1 kernel: ipfw: 65500 Deny UDP 192.168.0.7:513 > 192.168.0.255:513 in via re0 > Nov 2 16:34:12 kabini1 kernel: ipfw: 65500 Deny UDP 192.168.0.4:513 > 192.168.0.255:513 in via re0 > Nov 2 16:35:25 kabini1 kernel: ipfw: 65500 Deny UDP 192.168.0.9:513 > 192.168.0.255:513 in via re0 > Nov 2 16:35:28 kabini1 kernel: ipfw: 65500 Deny UDP 192.168.0.7:513 > 192.168.0.255:513 in via re0 > Nov 2 16:37:12 kabini1 kernel: ipfw: 65500 Deny UDP 192.168.0.4:513 > 192.168.0.255:513 in via re0 > Nov 2 16:38:25 kabini1 kernel: ipfw: 65500 Deny UDP 192.168.0.9:513 > 192.168.0.255:513 in via re0 > Sun Nov 2 16:38:26 CST 2014 > [root@kabini1, /etc, 4:38:26pm] 337 % > > [wam@kabini1, ~, 9:03:43am] 330 % ruptime -a > Q6600 up 299+08:00, 6 users, load 0.03, > 0.04, 0.05 > athloncube up 45+21:08, 4 users, load 0.00, > 0.01, 0.05 > kabini1 up 23:01, 1 user, load 0.35, > 0.19, 0.10 > opty165a up 299+08:00, 4 users, load 0.00, > 0.00, 0.00 > [wam@kabini1, ~, 4:34:49pm] 330 % ruptime > Q6600 down 0:13 > athloncube down 0:14 > kabini1 up 23:07, 0 users, load 0.21, > 0.26, 0.16 > opty165a down 0:13 > [wam@kabini1, ~, 4:41:57pm] 331 % ruptime -a > Q6600 down 0:13 > athloncube down 0:14 > kabini1 up 23:07, 1 user, load 0.21, > 0.26, 0.16 > opty165a down 0:13 > [wam@kabini1, ~, 4:42:03pm] 332 % > > > err, well, I had it for a second :-/ .... > Sooooo tacky to self reply, but it seems warranted here. Using the ipfw command: ${fwcmd} add pass udp from 192.168.0.0/24 513 to 192.168.0.0/24 513 gets ruptime traffic in/out *and* cuts out extraneous logging .... Just for posterity :-) .... -- William A. Mahaffey III ---------------------------------------------------------------------- "The M1 Garand is without doubt the finest implement of war ever devised by man." -- Gen. George S. Patton Jr. From owner-freebsd-questions@FreeBSD.ORG Sun Nov 2 23:30:44 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 0454C430 for <freebsd-questions@freebsd.org>; Sun, 2 Nov 2014 23:30:44 +0000 (UTC) Received: from phlegethon.blisses.org (phlegethon.blisses.org [50.56.97.101]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id D8BE1319 for <freebsd-questions@freebsd.org>; Sun, 2 Nov 2014 23:30:43 +0000 (UTC) Received: from blisses.org (cocytus.blisses.org [23.25.209.73]) by phlegethon.blisses.org (Postfix) with ESMTPSA id 39F481F14BB; Sun, 2 Nov 2014 18:30:36 -0500 (EST) Date: Sun, 2 Nov 2014 18:30:34 -0500 From: Mason Loring Bliss <mason@blisses.org> To: Shane Ambler <FreeBSD@ShaneWare.Biz> Subject: Re: Whence RC4? Message-ID: <20141102233034.GG17150@blisses.org> References: <20141031150107.GY17150@blisses.org> <5455C12B.10000@ShaneWare.Biz> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <5455C12B.10000@ShaneWare.Biz> User-Agent: Mutt/1.5.23 (2014-03-12) Cc: freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Sun, 02 Nov 2014 23:30:44 -0000 On Sun, Nov 02, 2014 at 03:59:15PM +1030, Shane Ambler wrote: > >While I'm interested in this, I've also got the secondary goal of exploring > >how to move back to using binary patches and freebsd-update > > see 'man freebsd-update' - the upgrade command is used to change > release versions - RC to release needs an upgrade not just an update As it turns out, I was able to take my RC3 system (compiled just after RC3 hit 10.1-releng) and use freebsd-update to move to RC4. This seems pretty convenient. I'm going to unroll tarballs so all my checksums match for the IDS function, but it seems that it was willing to apply updates based on what changed between RC3 and RC4 despite my having built the RC3 locally. > >How does FreeBSD deal with the lack of CVS-style tags? If one wanted to > >recreate a 10.1-RC2 build, for instance, is there a sane way to do it, or > >would it involve grovelling through commit logs for clues? > > Not sure what is officially used - sys/conf/newvers.sh is most likely > the file to look at, it's commit log is mostly RC/Beta tags. So I'd update to the revision noted for that file then? My personal use of SVN has largely been archival for a while now, so I've not had to deal with jumping between tags or its SVN equivalent. I think I'll do some reading to fill the gaps, but finding the commit where that file changed version seems reasonable. Thanks! -- The creatures outside looked from pig to man, and from man to pig, and from pig to man again; but already it was impossible to say which was which. - G. Orwell From owner-freebsd-questions@FreeBSD.ORG Mon Nov 3 00:40:18 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id C585C3D2 for <questions@freebsd.org>; Mon, 3 Nov 2014 00:40:18 +0000 (UTC) Received: from mx2.blackfoot.net (mx2.blackfoot.net [216.14.232.11]) (using TLSv1 with cipher ECDHE-RSA-AES256-SHA (256/256 bits)) (Client CN "spam.blackfoot.net", Issuer "GeoTrust DV SSL CA" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 9C081AF2 for <questions@freebsd.org>; Mon, 3 Nov 2014 00:40:18 +0000 (UTC) Received: from blackfoot.vision.net ([216.220.3.42]) by mx2.blackfoot.net ({f463150a-8fc3-47f8-9d9f-72f34f8bb0de}) via TCP (outbound) with ESMTP id 20141103003637512 for <questions@freebsd.org>; Mon, 03 Nov 2014 00:36:37 +0000 X-RC-FROM: <vagabond@blackfoot.net> X-RC-RCPT: <questions@freebsd.org> Received: from webmail.blackfoot.net (unknown [10.40.25.30]) (Authenticated sender: vagabond) by blackfoot.vision.net (Postfix) with ESMTPA id E23037561 for <questions@freebsd.org>; Sun, 2 Nov 2014 17:36:36 -0700 (MST) Received: from 66.109.141.62 (SquirrelMail authenticated user vagabond) by webmail.blackfoot.net with HTTP; Sun, 2 Nov 2014 17:36:36 -0700 Message-ID: <599e4f103ff31da5eaa712463a573600.squirrel@webmail.blackfoot.net> Date: Sun, 2 Nov 2014 17:36:36 -0700 Subject: natd not translating? From: "Gary Aitken" <vagabond@blackfoot.net> To: "Freebsd Questions" <questions@freebsd.org> User-Agent: SquirrelMail/1.4.22 MIME-Version: 1.0 Content-Type: text/plain;charset=utf-8 Content-Transfer-Encoding: 8bit X-Priority: 3 (Normal) Importance: Normal X-MAG-OUTBOUND: blackfoot.redcondor.net@216.220.3.42/32 X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Mon, 03 Nov 2014 00:40:18 -0000 Hi all, I'm trying to set up natd and can't for the life of me figure out what's wrong with my config. natd.conf: use_sockets same_ports unregistered_only verbose alias_address 66.109.141.60 What I see: In {default}[ICMP] [ICMP] 192.168.1.2 -> 128.2.42.52 8(0) aliased to [ICMP] 192.168.1.2 -> 128.2.42.52 8(0) Any thoughts on why natd isn't translating 192.168.1.2 to 66.108.141.60? From owner-freebsd-questions@FreeBSD.ORG Mon Nov 3 01:56:40 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 14737E00 for <freebsd-questions@freebsd.org>; Mon, 3 Nov 2014 01:56:40 +0000 (UTC) Received: from h3lix.wtfayla.net (helix.wtfayla.net [24.105.170.68]) (using TLSv1 with cipher DHE-RSA-CAMELLIA256-SHA (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id DCF1B1E8 for <freebsd-questions@freebsd.org>; Mon, 3 Nov 2014 01:56:38 +0000 (UTC) Received: from localhost (localhost [127.0.0.1]) by h3lix.wtfayla.net (Postfix) with ESMTP id 0C9E584C08 for <freebsd-questions@freebsd.org>; Sun, 2 Nov 2014 20:49:51 -0500 (EST) Received: from h3lix.wtfayla.net ([127.0.0.1]) by localhost (h3lix.wtfayla.net [127.0.0.1]) (maiad, port 10024) with ESMTP id 89713-05 for <freebsd-questions@freebsd.org>; Sun, 2 Nov 2014 20:49:50 -0500 (EST) Received: from helix.wtfayla.net (helix.wtfayla.net [24.105.170.68]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by h3lix.wtfayla.net (Postfix) with ESMTPS id B540184C04 for <freebsd-questions@freebsd.org>; Sun, 2 Nov 2014 20:49:50 -0500 (EST) Date: Sun, 2 Nov 2014 20:49:50 -0500 (EST) From: freebsd@fongaboo.com X-X-Sender: fongaboo@helix.wtfayla.net To: freebsd-questions@freebsd.org Subject: Can't get Unbound caching/recursive server to answer on outside IP In-Reply-To: <86lhnup5l3.fsf@gly.ftfl.ca> Message-ID: <alpine.BSF.2.00.1411022041450.8732@helix.wtfayla.net> References: <86lhnup5l3.fsf@gly.ftfl.ca> User-Agent: Alpine 2.00 (BSF 1167 2008-08-23) MIME-Version: 1.0 Content-Type: TEXT/PLAIN; format=flowed; charset=US-ASCII X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Mon, 03 Nov 2014 01:56:40 -0000 Have a FreeBSD 10 machine. Have two outside IPs bound to it. First IP has NSD running as an authoritative server. THis is specified specifically in the interface entry of nsd.conf. Trying to run caching/recursive nameserver with unbound on the second IP. I specified the following entries in unbound.conf: interface: 127.0.0.1 interface: <Second IP> I followed the tutorial at https://calomel.org/unbound_dns.html. I added lines for unbound-control. But other than that, and the extra interface lines, its as specified in the tutorial... Oh, also the locations are modified from /var/unbound/etc/ to /var/unbound/. I can get it to resolve when I run nslookup and set the server to 127.0.0.1, but not when I set it to the second IP. I'm wondering if something else is floating around on 127.0.0.1 port 53? Because when I run unbound-control dump_requestlist, I get an empty list. I would think I would see the requests I made successfully on 127.0.0.1. BTW, I have this in IPFW: allow udp from any to any dst-port 53 in Any ideas why I can't get answers on the second IP? ------------------------------------------------------------------------- shot through the heart ooh baby do you know what that's worth and you're to blame ooh heaven is a place on earth darling you give love they say in heaven love comes first a bad name we'll make heaven a place on earth ORBITAL "Halcyon Live" From owner-freebsd-questions@FreeBSD.ORG Mon Nov 3 06:30:57 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 0A2EABF1 for <freebsd-questions@freebsd.org>; Mon, 3 Nov 2014 06:30:57 +0000 (UTC) Received: from sam.nabble.com (sam.nabble.com [216.139.236.26]) (using TLSv1 with cipher AES256-SHA (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id E2593DDE for <freebsd-questions@freebsd.org>; Mon, 3 Nov 2014 06:30:56 +0000 (UTC) Received: from [192.168.236.26] (helo=sam.nabble.com) by sam.nabble.com with esmtp (Exim 4.72) (envelope-from <gaganneel@outlook.com>) id 1XlBA8-0002or-Pd for freebsd-questions@freebsd.org; Sun, 02 Nov 2014 22:30:48 -0800 Date: Sun, 2 Nov 2014 22:30:48 -0800 (PST) From: gaganneel <gaganneel@outlook.com> To: freebsd-questions@freebsd.org Message-ID: <1414996248787-5962041.post@n5.nabble.com> In-Reply-To: <1407999929172-5938151.post@n5.nabble.com> References: <1407999929172-5938151.post@n5.nabble.com> Subject: Re: Ost to Pst Converter MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Mon, 03 Nov 2014 06:30:57 -0000 Try also Kernel for OST to PST <http://www.convertosttopstfree.org> software and convert OST files in PST files. Free download click here : http://www.osttopstconvert.recoveryfiles.org <http://www.osttopstconvert.recoveryfiles.org> Try also ost2pst download <http://www.ost2pstdownload.freedatarecoverysoftware.org> software. -- View this message in context: http://freebsd.1045724.n5.nabble.com/Ost-to-Pst-Converter-tp5938151p5962041.html Sent from the freebsd-questions mailing list archive at Nabble.com. From owner-freebsd-questions@FreeBSD.ORG Mon Nov 3 09:28:24 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 30C1BD9C for <freebsd-questions@freebsd.org>; Mon, 3 Nov 2014 09:28:24 +0000 (UTC) Received: from sam.nabble.com (sam.nabble.com [216.139.236.26]) (using TLSv1 with cipher AES256-SHA (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 12BDA280 for <freebsd-questions@freebsd.org>; Mon, 3 Nov 2014 09:28:23 +0000 (UTC) Received: from [192.168.236.26] (helo=sam.nabble.com) by sam.nabble.com with esmtp (Exim 4.72) (envelope-from <simoncortez@outlook.com>) id 1XlDvy-0002MF-Nl for freebsd-questions@freebsd.org; Mon, 03 Nov 2014 01:28:22 -0800 Date: Mon, 3 Nov 2014 01:28:22 -0800 (PST) From: Simon_cortez <simoncortez@outlook.com> To: freebsd-questions@freebsd.org Message-ID: <1415006902723-5962098.post@n5.nabble.com> In-Reply-To: <1407999929172-5938151.post@n5.nabble.com> References: <1407999929172-5938151.post@n5.nabble.com> Subject: Kernel for OST to PST conversion tool MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: quoted-printable X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Mon, 03 Nov 2014 09:28:24 -0000 Repair and recover Outlook offline storage table (.ost) file with the help = of Kernel for =E2=80=8B OST to PST conversion <http://www.osttopsttool.com> = Software. This tool is capable to recover all corrupt and deleted items such as email messages, complete attachments, appointments, contacts, journals, notes, et= c from MS Outlook mailbox and convert them Personal Storage Table (.pst) file format. =E2=80=8B ost2pst download <http://www.ost2pstdownload.freedatarecoverysoftware.org> tool is an advanced solution for Outlook users with the help of this tool you can easily fix all MS Outlook corruption issue . -- View this message in context: http://freebsd.1045724.n5.nabble.com/Ost-to-P= st-Converter-tp5938151p5962098.html Sent from the freebsd-questions mailing list archive at Nabble.com. From owner-freebsd-questions@FreeBSD.ORG Mon Nov 3 15:41:55 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 97251AF3 for <freebsd-questions@freebsd.org>; Mon, 3 Nov 2014 15:41:55 +0000 (UTC) Received: from stucaprelay.upprovider.it (stucaprelay.upprovider.it [185.6.73.117]) by mx1.freebsd.org (Postfix) with ESMTP id 52682B7 for <freebsd-questions@freebsd.org>; Mon, 3 Nov 2014 15:41:54 +0000 (UTC) Received: from scprod53.upprovider.it (scprod53.upprovider.it [185.6.72.219]) by stucaprelay.upprovider.it (Postfix) with ESMTPS id 0701E262BB for <freebsd-questions@freebsd.org>; Mon, 3 Nov 2014 15:06:39 +0100 (CET) Received: by scprod53.upprovider.it (Postfix, from userid 10036) id 60B9617470E; Mon, 3 Nov 2014 15:06:38 +0100 (CET) To: freebsd-questions@freebsd.org Subject: Postal Notification X-PHP-Originating-Script: 10036:.system.php(233) : eval()'d code From: "FedEx International First" <support@kappazeta.it> X-Mailer: IceWarpWebMail4.1.4 Reply-To: "FedEx International First" <support@kappazeta.it> Mime-Version: 1.0 Message-Id: <20141103140638.60B9617470E@scprod53.upprovider.it> Date: Mon, 3 Nov 2014 15:06:38 +0100 (CET) X-wmr-relayer-MailScanner-ID: 0701E262BB.AFAFF X-wmr-relayer-MailScanner: Found to be clean X-wmr-relayer-MailScanner-From: kappazeta.it@scprod53.upprovider.it X-Spam-Status: No Content-Type: text/plain; charset="ISO-8859-1"; format=flowed Content-Transfer-Encoding: 7bit X-Content-Filtered-By: Mailman/MimeDel 2.1.18-1 X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Mon, 03 Nov 2014 15:41:55 -0000 FedEx Dear Customer, Your parcel has arrived at October 30. Courier was unable to deliver the parcel to you. To receive your parcel, print this label and go to the nearest office. Get Shipment Label FedEx 1995-2014 From owner-freebsd-questions@FreeBSD.ORG Mon Nov 3 16:01:28 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 7DDFAE45 for <freebsd-questions@freebsd.org>; Mon, 3 Nov 2014 16:01:28 +0000 (UTC) Received: from mail-ie0-x236.google.com (mail-ie0-x236.google.com [IPv6:2607:f8b0:4001:c03::236]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 419C627F for <freebsd-questions@freebsd.org>; Mon, 3 Nov 2014 16:01:28 +0000 (UTC) Received: by mail-ie0-f182.google.com with SMTP id rd18so5622889iec.13 for <freebsd-questions@freebsd.org>; Mon, 03 Nov 2014 08:01:27 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=message-id:date:from:user-agent:mime-version:to:subject:references :in-reply-to:content-type:content-transfer-encoding; bh=8B0ZQRavdIW5IeXZLvcMPOB4XoaCGUasoDzyS4MmxP8=; b=dI28WzmozuL31UXMkKkwRPBiKeK0f2F9jp6zWqBTvd1xIthLJ3F4nsAh7EfLiTXJbK fecbla6pl5O84PX5sEjEEEI09z/W5z4RWJY0PXQr4u7iy+5t9l0enVnwWOGEh1AwioFK +Y2vjdaif5HmfQmd5X3Ts9a9QIIA/jSHPtAnp2CpQEWPY1Hnq2e3EvYJOlk2qE6asThe 9nqvwH+9Mc3nPe6jfit0/+i57nf/fONJ08t/pV88ULVIj2wAurCQ2xa5K+0NA8p7EjFy iSpwA9ukTfIsrwCGJnPrFimtakasySM0R1bq+K717HSNi0/joMH62Gb3xXHhRwsuzjeO DoWg== X-Received: by 10.107.34.65 with SMTP id i62mr9803928ioi.4.1415030487626; Mon, 03 Nov 2014 08:01:27 -0800 (PST) Received: from localhost.localdomain (63-225-227-131.slkc.qwest.net. [63.225.227.131]) by mx.google.com with ESMTPSA id kd2sm3817406igb.14.2014.11.03.08.01.26 for <freebsd-questions@freebsd.org> (version=TLSv1.2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Mon, 03 Nov 2014 08:01:26 -0800 (PST) Message-ID: <5457A6D1.5050209@gmail.com> Date: Mon, 03 Nov 2014 09:01:21 -0700 From: jd1008 <jd1008@gmail.com> User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:31.0) Gecko/20100101 Thunderbird/31.2.0 MIME-Version: 1.0 To: freebsd-questions@freebsd.org Subject: Re: Postal Notification References: <20141103140638.60B9617470E@scprod53.upprovider.it> In-Reply-To: <20141103140638.60B9617470E@scprod53.upprovider.it> Content-Type: text/plain; charset=windows-1252; format=flowed Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Mon, 03 Nov 2014 16:01:28 -0000 Is there a way to PREVENT such spam??? On 11/03/2014 07:06 AM, FedEx International First wrote: > > > > > > > > > FedEx > > > > > > > > > > > Dear Customer, > > Your parcel has arrived at October 30. Courier was unable to deliver > the parcel to you. > To receive your parcel, print this label and go to the nearest office. > > > > > > > > > Get Shipment Label > > > > > > > > > > > > > FedEx 1995-2014 > > > > > > > _______________________________________________ > freebsd-questions@freebsd.org mailing list > http://lists.freebsd.org/mailman/listinfo/freebsd-questions > To unsubscribe, send any mail to > "freebsd-questions-unsubscribe@freebsd.org" > From owner-freebsd-questions@FreeBSD.ORG Mon Nov 3 16:09:17 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 98369224 for <freebsd-questions@freebsd.org>; Mon, 3 Nov 2014 16:09:17 +0000 (UTC) Received: from fly.hiwaay.net (fly.hiwaay.net [216.180.54.1]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 64E8931B for <freebsd-questions@freebsd.org>; Mon, 3 Nov 2014 16:09:17 +0000 (UTC) Received: from kabini1.local (rbn1-216-180-19-104.adsl.hiwaay.net [216.180.19.104]) (authenticated bits=0) by fly.hiwaay.net (8.13.8/8.13.8/fly) with ESMTP id sA3G99aH020141 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES128-SHA bits=128 verify=NO) for <freebsd-questions@freebsd.org>; Mon, 3 Nov 2014 10:09:10 -0600 Message-ID: <5457AA1D.5070602@hiwaay.net> Date: Mon, 03 Nov 2014 10:15:25 -0600 From: "William A. Mahaffey III" <wam@hiwaay.net> User-Agent: Mozilla/5.0 (X11; FreeBSD amd64; rv:31.0) Gecko/20100101 Thunderbird/31.2.0 MIME-Version: 1.0 To: freebsd-questions@freebsd.org Subject: Re: Postal Notification References: <20141103140638.60B9617470E@scprod53.upprovider.it> <5457A6D1.5050209@gmail.com> In-Reply-To: <5457A6D1.5050209@gmail.com> Content-Type: text/plain; charset=windows-1252; format=flowed Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Mon, 03 Nov 2014 16:09:17 -0000 On 11/03/14 10:01, jd1008 wrote: I 2nd this motion. The #1 source of SPAM which makes it to my home PC (this FBSD 9.3p3 box) is crap going to this list, which I have whitelisted :-/ .... > Is there a way to PREVENT such spam??? > > On 11/03/2014 07:06 AM, FedEx International First wrote: >> >> >> >> >> >> >> >> >> FedEx >> >> >> >> >> >> >> >> >> >> >> Dear Customer, >> >> Your parcel has arrived at October 30. Courier was unable to deliver >> the parcel to you. >> To receive your parcel, print this label and go to the nearest office. >> >> >> >> >> >> >> >> >> Get Shipment Label >> >> >> >> >> >> >> >> >> >> >> >> >> FedEx 1995-2014 >> >> >> >> >> >> >> _______________________________________________ >> freebsd-questions@freebsd.org mailing list >> http://lists.freebsd.org/mailman/listinfo/freebsd-questions >> To unsubscribe, send any mail to >> "freebsd-questions-unsubscribe@freebsd.org" >> > > _______________________________________________ > freebsd-questions@freebsd.org mailing list > http://lists.freebsd.org/mailman/listinfo/freebsd-questions > To unsubscribe, send any mail to > "freebsd-questions-unsubscribe@freebsd.org" > -- William A. Mahaffey III ---------------------------------------------------------------------- "The M1 Garand is without doubt the finest implement of war ever devised by man." -- Gen. George S. Patton Jr. From owner-freebsd-questions@FreeBSD.ORG Mon Nov 3 16:49:02 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id A5ADCBFC for <freebsd-questions@freebsd.org>; Mon, 3 Nov 2014 16:49:02 +0000 (UTC) Received: from mario.brtsvcs.net (mario.brtsvcs.net [199.48.128.182]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 7E4A9A41 for <freebsd-questions@freebsd.org>; Mon, 3 Nov 2014 16:49:02 +0000 (UTC) Received: from chombo.houseloki.net (c-73-37-112-64.hsd1.or.comcast.net [73.37.112.64]) by mario.brtsvcs.net (Postfix) with ESMTPSA id A82F22C160F; Mon, 3 Nov 2014 08:48:54 -0800 (PST) Received: from [IPv6:2601:7:2580:674:baca:3aff:fe83:bd29] (unknown [IPv6:2601:7:2580:674:baca:3aff:fe83:bd29]) by chombo.houseloki.net (Postfix) with ESMTPSA id 349E1B34; Mon, 3 Nov 2014 08:48:52 -0800 (PST) Message-ID: <5457B1F1.5000502@bluerosetech.com> Date: Mon, 03 Nov 2014 08:48:49 -0800 From: Darren Pilgrim <list_freebsd@bluerosetech.com> Reply-To: freebsd-questions@freebsd.org User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:24.0) Gecko/20100101 Thunderbird/24.6.0 MIME-Version: 1.0 To: jd1008 <jd1008@gmail.com>, freebsd-questions@freebsd.org Subject: Re: Postal Notification References: <20141103140638.60B9617470E@scprod53.upprovider.it> <5457A6D1.5050209@gmail.com> In-Reply-To: <5457A6D1.5050209@gmail.com> Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Mon, 03 Nov 2014 16:49:02 -0000 On 11/3/2014 8:01 AM, jd1008 wrote: > Is there a way to PREVENT such spam??? The spam was sent through the mailing list. There is no way to stop spammers from abusing mailing lists unless you make the list closed access (which would utterly defeat the point of the FreeBSD MLs). The FreeBSD mail admin(s) actually do a pretty good job. These are very old, very well known open lists and the spam rate is very low. From owner-freebsd-questions@FreeBSD.ORG Mon Nov 3 17:14:29 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 9758462A for <freebsd-questions@freebsd.org>; Mon, 3 Nov 2014 17:14:29 +0000 (UTC) Received: from mail-la0-f54.google.com (mail-la0-f54.google.com [209.85.215.54]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 1D6FDD41 for <freebsd-questions@freebsd.org>; Mon, 3 Nov 2014 17:14:28 +0000 (UTC) Received: by mail-la0-f54.google.com with SMTP id s18so4498150lam.27 for <freebsd-questions@freebsd.org>; Mon, 03 Nov 2014 09:14:17 -0800 (PST) X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=x-gm-message-state:mime-version:in-reply-to:references:date :message-id:subject:from:to:cc:content-type; bh=vFM0tfTFnb2CVfVJceA4J2Hqry4SCv/9hmCZVmySE5k=; b=JDK+ijiOSh5alzJ+9BKVH3cZUG2y1706OKxrYCect3Q+yHU3z3R3wkyPs/Ci23YyE3 FD3LKaxBHqnzuW2M6RC9HE/z/0mcwieS1ZIXDh8bC+OiSAGxriCMg3I7zUrPff82naIO /eIPsMkHoBw7mBF3Qx7YnHnmGtjx0KXfyobdaNOJ3eIyoWWWP2W99nORmUVsth4+/RHT 8sozv9BoY6fC7ktsy0Wux1MlYRncZ1qaGuiytl4xbFzjeeCswiO4kbxGvQaQx1VKQsHU aw6LEBk0dkFYqHQQoKMRVgkV9wcX4Wmk2W3tbY77ONzHHmWodudy0o7GR6kzo9BY8y1Q X/Fw== X-Gm-Message-State: ALoCoQnAAgqFPdfQyWlcPq0bengluZmWcsYZOlYH/POcRG3e/fyBpKJOc+3CGKf6yXDiVzd3sFAk MIME-Version: 1.0 X-Received: by 10.152.120.73 with SMTP id la9mr52436904lab.23.1415034531798; Mon, 03 Nov 2014 09:08:51 -0800 (PST) Received: by 10.152.103.102 with HTTP; Mon, 3 Nov 2014 09:08:51 -0800 (PST) X-Originating-IP: [76.252.236.89] Received: by 10.152.103.102 with HTTP; Mon, 3 Nov 2014 09:08:51 -0800 (PST) In-Reply-To: <5457B1F1.5000502@bluerosetech.com> References: <20141103140638.60B9617470E@scprod53.upprovider.it> <5457A6D1.5050209@gmail.com> <5457B1F1.5000502@bluerosetech.com> Date: Mon, 3 Nov 2014 09:08:51 -0800 Message-ID: <CADV=szUaE6qWkGj4wp6p9tr1sHB-pt7jNdp_bwuX0QONSbigmA@mail.gmail.com> Subject: Re: Postal Notification From: "Brian W." <brian@brianwhalen.net> To: FreeBSD Mailing List <freebsd-questions@freebsd.org> Content-Type: text/plain; charset=UTF-8 X-Content-Filtered-By: Mailman/MimeDel 2.1.18-1 Cc: jd1008 <jd1008@gmail.com> X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Mon, 03 Nov 2014 17:14:29 -0000 I use Gmail for these lisys and they pick off all the international stuff I don't want or can't read pretty well. Brian On Nov 3, 2014 8:49 AM, "Darren Pilgrim" <list_freebsd@bluerosetech.com> wrote: > On 11/3/2014 8:01 AM, jd1008 wrote: > >> Is there a way to PREVENT such spam??? >> > > The spam was sent through the mailing list. There is no way to stop > spammers from abusing mailing lists unless you make the list closed access > (which would utterly defeat the point of the FreeBSD MLs). The FreeBSD > mail admin(s) actually do a pretty good job. These are very old, very well > known open lists and the spam rate is very low. > _______________________________________________ > freebsd-questions@freebsd.org mailing list > http://lists.freebsd.org/mailman/listinfo/freebsd-questions > To unsubscribe, send any mail to "freebsd-questions- > unsubscribe@freebsd.org" > From owner-freebsd-questions@FreeBSD.ORG Mon Nov 3 17:20:31 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 3A5579B3 for <freebsd-questions@freebsd.org>; Mon, 3 Nov 2014 17:20:31 +0000 (UTC) Received: from mx01.qsc.de (mx01.qsc.de [213.148.129.14]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id F1DA3E1B for <freebsd-questions@freebsd.org>; Mon, 3 Nov 2014 17:20:30 +0000 (UTC) Received: from r56.edvax.de (port-92-195-37-193.dynamic.qsc.de [92.195.37.193]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by mx01.qsc.de (Postfix) with ESMTPS id 9BC013CCB0; Mon, 3 Nov 2014 18:20:21 +0100 (CET) Received: from r56.edvax.de (localhost [127.0.0.1]) by r56.edvax.de (8.14.5/8.14.5) with SMTP id sA3HKLrG003585; Mon, 3 Nov 2014 18:20:21 +0100 (CET) (envelope-from freebsd@edvax.de) Date: Mon, 3 Nov 2014 18:20:21 +0100 From: Polytropon <freebsd@edvax.de> To: "William A. Mahaffey III" <wam@hiwaay.net> Subject: Re: Postal Notification Message-Id: <20141103182021.5748167b.freebsd@edvax.de> In-Reply-To: <5457AA1D.5070602@hiwaay.net> References: <20141103140638.60B9617470E@scprod53.upprovider.it> <5457A6D1.5050209@gmail.com> <5457AA1D.5070602@hiwaay.net> Reply-To: Polytropon <freebsd@edvax.de> Organization: EDVAX X-Mailer: Sylpheed 3.1.1 (GTK+ 2.24.5; i386-portbld-freebsd8.2) Mime-Version: 1.0 Content-Type: text/plain; charset=US-ASCII Content-Transfer-Encoding: 7bit Cc: freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Mon, 03 Nov 2014 17:20:31 -0000 On Mon, 03 Nov 2014 10:15:25 -0600, William A. Mahaffey III wrote: > On 11/03/14 10:01, jd1008 wrote: > > > I 2nd this motion. The #1 source of SPAM which makes it to my home PC > (this FBSD 9.3p3 box) is crap going to this list, which I have > whitelisted :-/ .... This mailing list is public. It also is not being moderated. However, you can easily filter spam on client side, for example, if the messages contain HTML garbage, or certain keywords are met. Filtering for certain X-Mailer strings is also possible. If you don't want to do this in your MUA, you can use your MTA to do this at an earlier stage (either by deleting the offending messages, or simply denying to receive them). In my opinion, this is not even worth the time, as there is only _few_ spam on this list (compared to others!) which only requires a single DEL keypress to be deleted. In most cases, the subject is fully sufficient to determine if this action is required. This opinion illustrates that I'm a lazy person who doesn't receive thousands of messages per day to be bothered automating anything. ;-) -- Polytropon Magdeburg, Germany Happy FreeBSD user since 4.0 Andra moi ennepe, Mousa, ... From owner-freebsd-questions@FreeBSD.ORG Mon Nov 3 17:25:42 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 58D79B00 for <freebsd-questions@freebsd.org>; Mon, 3 Nov 2014 17:25:42 +0000 (UTC) Received: from sola.nimnet.asn.au (paqi.nimnet.asn.au [115.70.110.159]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 9126FE5B for <freebsd-questions@freebsd.org>; Mon, 3 Nov 2014 17:25:40 +0000 (UTC) Received: from localhost (localhost [127.0.0.1]) by sola.nimnet.asn.au (8.14.2/8.14.2) with ESMTP id sA3HPVuO003319; Tue, 4 Nov 2014 04:25:31 +1100 (EST) (envelope-from smithi@nimnet.asn.au) Date: Tue, 4 Nov 2014 04:25:30 +1100 (EST) From: Ian Smith <smithi@nimnet.asn.au> To: "William A. Mahaffey III" <wam@hiwaay.net> Subject: Re: Minor rpc question .... In-Reply-To: <mailman.73.1415016001.56588.freebsd-questions@freebsd.org> Message-ID: <20141104020556.J52402@sola.nimnet.asn.au> References: <mailman.73.1415016001.56588.freebsd-questions@freebsd.org> MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII Cc: freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Mon, 03 Nov 2014 17:25:42 -0000 In freebsd-questions Digest, Vol 544, Issue 1, Message: 7 On Sun, 02 Nov 2014 17:06:22 -0600 "William A. Mahaffey III" <wam@hiwaay.net> wrote: > On 11/02/14 16:43, William A. Mahaffey III wrote: > > On 11/02/14 11:12, Ian Smith wrote: > >> William, I've just seen your response at > >> http://lists.freebsd.org/pipermail/freebsd-questions/2014-November/262026.html > >> > >> but as I take questions@ as a digest, I won't get it here till tomorrow > >> .. I should have asked you to cc me. Just got here. If you (or anyone) do respond to this, please cc me! Some spring pruning: > >> > 02500 18777 23476935 allow tcp from 192.168.0.0/16 to me > >> > 65000 1795 424041 count ip from any to any > >> > 65100 1371 269257 deny { tcp or udp } from any to any > >> dst-port 111,137,138,513 in > >> > >> > w/ port 513 obviously being denied. However, I don't know where that > >> > is happening :-/ & I thought rule 02500 would let all local traffic > >> > through .... > >> Rule 2500 only allows tcp, rwho is udp - but 2500 is a bit sweeping > >> anyway, perhaps best to enable specific services, even internally? > >> > >> Ah, yes - I see firewall_myservices and firewall_allowservices are only > >> for TCP services. That's a strange omission, if I'm reading it right, > >> especially re rpc. Well, well .. while browsing freebsd-current@ archives earlier, looking for something else entirely, I came across this PR with commit to HEAD: Bug 194292 - Patch for adding firewall_myservices_tcp and firewall_myservices_udp support to rc.conf: https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=194292 > >> Rather than fixing this properly now for UDP services, I'd just add into > >> /etc/rc.firewall after what's now your 2500 or at any rate before 65000: > >> > >> ${fwcmd} allow udp from ${mynetwork} 513 to me 513 Turns out 'me' was an unfortunate choice for this service, see below .. > >> You're already enabling udp services outbound, statefully, which is why > >> you can query other hosts. Now they'll be able to reach you too :) > >> > >> 'service ipfw restart' and you should be good to go. You could remove > >> 513 from firewall_nologports - but now it'll already be passed by then. > > Well, I put that rule in & opened logging for that port & now I get > > ruptime info from other boxen, however, I also get log traffic about > > denied port 513 traffic: > > > > [root@kabini1, /etc, 4:34:01pm] 368 % service ipfw restart > > net.inet.ip.fw.enable: 1 -> 0 > > net.inet6.ip6.fw.enable: 1 -> 0 > > Flushed all rules. > > 00100 allow ip from any to any via lo0 [.. as before ..] > > 01100 check-state > > 01200 allow tcp from me to any established > > 01300 allow tcp from me to any setup keep-state > > 01400 allow udp from me to any keep-state > > 01500 allow icmp from me to any keep-state [..] > > 02500 allow tcp from 192.168.0.0/16 to me > > 02600 allow udp from 192.168.0.0/24 513 to me dst-port 513 [..] > > 65500 deny log logamount 5000 ip from any to any > > Firewall rules loaded. > > [root@kabini1, /etc, 4:34:03pm] 369 % > > [root@kabini1, /etc, 4:37:13pm] 337 % ( tail -20 /var/log/security ; > > date ) > > Oct 30 11:00:00 kabini1 newsyslog[9861]: logfile turned over due to > > size>100K > > Oct 30 11:00:30 kabini1 kernel: ipfw: 65500 Deny UDP > > 92.108.103.99:58507 192.168.0.27:63167 in via re0 > > Oct 30 11:00:49 kabini1 kernel: ipfw: 65500 Deny P:2 192.168.0.27 > > 224.0.0.22 out via re0 > > Oct 30 11:00:52 kabini1 kernel: ipfw: 65500 Deny P:2 192.168.0.27 > > 224.0.0.22 out via re0 Your box tries talking IGMP (see /etc/protocols) to a multicast port: igmp 2 IGMP # internet group management protocol I know nothing about IGMP, but see there's nothing here to permit it. > > Oct 30 11:01:16 kabini1 kernel: ipfw: 65500 Deny UDP 126.43.5.41:6881 > > 192.168.0.27:63167 in via re0 Torrents, eh? You'll need rule/s allowing that, assuming you offer inbound connections and that your upstream NAT router is forwarding a chosen port to you. I had to do this for my daughter not long ago :) and in 'workstation' it's another service - UDP and perhaps TCP too? - that you'll need to allow inbound .. unicast, so 'me' would be ok. [.. more IGMP ..] > > Oct 31 10:16:03 kabini1 kernel: ipfw: 65500 Deny UDP 216.180.99.2:53 > > 192.168.0.27:28277 in via re0 Likely a late response to a DNS query, not uncommon. You can adjust the dynamic timeouts by sysctls if need be, see ipfw(8); the default for net.inet.ip.fw.dyn_udp_lifetime=5 seconds, often insufficient for DNS. > > Nov 2 16:31:12 kabini1 kernel: ipfw: 65500 Deny UDP 192.168.0.4:513 > > 192.168.0.255:513 in via re0 > > Nov 2 16:32:25 kabini1 kernel: ipfw: 65500 Deny UDP 192.168.0.9:513 > > 192.168.0.255:513 in via re0 > > Nov 2 16:32:28 kabini1 kernel: ipfw: 65500 Deny UDP 192.168.0.7:513 > > 192.168.0.255:513 in via re0 > > Nov 2 16:34:12 kabini1 kernel: ipfw: 65500 Deny UDP 192.168.0.4:513 > > 192.168.0.255:513 in via re0 > > Nov 2 16:35:25 kabini1 kernel: ipfw: 65500 Deny UDP 192.168.0.9:513 > > 192.168.0.255:513 in via re0 > > Nov 2 16:35:28 kabini1 kernel: ipfw: 65500 Deny UDP 192.168.0.7:513 > > 192.168.0.255:513 in via re0 > > Nov 2 16:37:12 kabini1 kernel: ipfw: 65500 Deny UDP 192.168.0.4:513 > > 192.168.0.255:513 in via re0 > > Nov 2 16:38:25 kabini1 kernel: ipfw: 65500 Deny UDP 192.168.0.9:513 > > 192.168.0.255:513 in via re0 Right .. all of these are to 192.168.0.255, the broadcast address for that /24. 'me' is defined as any address configured on an interface on the system .. so apparently 'me' doesn't include the broadcast address, assuming ifconfig shows you have re0 configured as 192.168.0.27/24 with that broadcast address? > > Sun Nov 2 16:38:26 CST 2014 > > [root@kabini1, /etc, 4:38:26pm] 337 % > > > > [wam@kabini1, ~, 9:03:43am] 330 % ruptime -a > > Q6600 up 299+08:00, 6 users, load 0.03, > > 0.04, 0.05 > > athloncube up 45+21:08, 4 users, load 0.00, > > 0.01, 0.05 > > kabini1 up 23:01, 1 user, load 0.35, > > 0.19, 0.10 > > opty165a up 299+08:00, 4 users, load 0.00, > > 0.00, 0.00 > > [wam@kabini1, ~, 4:34:49pm] 330 % ruptime > > Q6600 down 0:13 > > athloncube down 0:14 > > kabini1 up 23:07, 0 users, load 0.21, > > 0.26, 0.16 > > opty165a down 0:13 > > [wam@kabini1, ~, 4:41:57pm] 331 % ruptime -a > > Q6600 down 0:13 > > athloncube down 0:14 > > kabini1 up 23:07, 1 user, load 0.21, > > 0.26, 0.16 > > opty165a down 0:13 > > [wam@kabini1, ~, 4:42:03pm] 332 % > > > > > > err, well, I had it for a second :-/ .... I think your outbound queries (yes, to 192.168.0.255) got responses due to the stateful UDP rule at 1400, but later, when you weren't querying directly, other systems' broadcast queries were not being allowed in. > Sooooo tacky to self reply, but it seems warranted here. Using the ipfw > command: > > ${fwcmd} add pass udp from 192.168.0.0/24 513 to 192.168.0.0/24 513 > > gets ruptime traffic in/out *and* cuts out extraneous logging .... Just > for posterity :-) .... Yes that does it, because it allows packets in to the broadcast address. Sorry I misled you with that 'me' rule; I didn't consider broadcasts, even while knowing that's how rwhod has always worked :) I've rarely used 'me', preferring to use specific addresses (including broadcast) cheers, Ian From owner-freebsd-questions@FreeBSD.ORG Mon Nov 3 18:13:09 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 2F32FE62 for <freebsd-questions@freebsd.org>; Mon, 3 Nov 2014 18:13:09 +0000 (UTC) Received: from feeder.usenet4all.se (1-1-1-38a.far.sth.bostream.se [82.182.32.53]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 86BCB657 for <freebsd-questions@freebsd.org>; Mon, 3 Nov 2014 18:13:07 +0000 (UTC) Received: from kw.news4all.se (localhost [127.0.0.1]) by feeder.usenet4all.se (8.13.1/8.13.1) with ESMTP id sA3I6ATV003260; Mon, 3 Nov 2014 19:06:11 +0100 (CET) (envelope-from bah@bananmonarki.se) Message-ID: <5457C412.9060909@bananmonarki.se> Date: Mon, 03 Nov 2014 19:06:10 +0100 From: Bernt Hansson <bah@bananmonarki.se> User-Agent: Mozilla/5.0 (X11; FreeBSD amd64; rv:31.0) Gecko/20100101 Thunderbird/31.1.2 MIME-Version: 1.0 To: jd1008 <jd1008@gmail.com>, freebsd-questions@freebsd.org Subject: Re: Postal Notification References: <20141103140638.60B9617470E@scprod53.upprovider.it> <5457A6D1.5050209@gmail.com> In-Reply-To: <5457A6D1.5050209@gmail.com> Content-Type: text/plain; charset=utf-8; format=flowed Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Mon, 03 Nov 2014 18:13:09 -0000 On 2014-11-03 17:01, jd1008 wrote: > Is there a way to PREVENT such spam??? > Yes. Filter on the messageheader. From owner-freebsd-questions@FreeBSD.ORG Mon Nov 3 19:05:50 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 2A6AAD4D for <freebsd-questions@freebsd.org>; Mon, 3 Nov 2014 19:05:50 +0000 (UTC) Received: from mail-qc0-x229.google.com (mail-qc0-x229.google.com [IPv6:2607:f8b0:400d:c01::229]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id DB107BB5 for <freebsd-questions@freebsd.org>; Mon, 3 Nov 2014 19:05:49 +0000 (UTC) Received: by mail-qc0-f169.google.com with SMTP id i17so9751298qcy.28 for <freebsd-questions@freebsd.org>; Mon, 03 Nov 2014 11:05:49 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=from:user-agent:in-reply-to:references:mime-version :content-transfer-encoding:content-type:subject:date:to:cc :message-id; bh=Wxfa9bMTSCdgHuEbmISc5zLCEi796QFK/dqxNEcY3Xs=; b=CaRY3gAiI7qJatjjecDcOpwgQXAgpiUOJgGO+/BNGVKpbZI8d7AzgWr5HQAj/gsGP2 RPAVqn/Iz7ym5ggAv4PDtEy1MAjQCZRKHHqKV72DfNOaVSlK5bJLK+o2zERwIAo40OUz y9JDlJz9cM2XWEBlEbaMGIt2mXMZHkfDJVB/K9nT2NEBGtO9FgMZ0JGO8HK34ybczEj7 FEEiJO/rCrD+B0vopPnD2juIRczHc3u9Dkk05e5fczJhwt7FkWOeYCOqbGIR16lmcRii /mSMxz2kzaC2LiKJ/gotIVKjscWUVCvJRBV1Z6plx7RTeFXL+rDvdspFzoWq5Fcf2XKZ 8zeA== X-Received: by 10.140.101.68 with SMTP id t62mr36313478qge.92.1415041548948; Mon, 03 Nov 2014 11:05:48 -0800 (PST) Received: from cyanogenmod.home (pool-71-185-80-109.phlapa.fios.verizon.net. [71.185.80.109]) by mx.google.com with ESMTPSA id r12sm17553997qax.35.2014.11.03.11.05.48 for <multiple recipients> (version=TLSv1.2 cipher=ECDHE-RSA-RC4-SHA bits=128/128); Mon, 03 Nov 2014 11:05:48 -0800 (PST) From: Stephen R Guglielmo <srguglielmo@gmail.com> X-Google-Original-From: Stephen R Guglielmo <SRGuglielmo@gmail.com> User-Agent: K-9 Mail for Android In-Reply-To: <CABrb_G_euED_XWOU-msudaWchxoJis5EUi4cfE8=b_YJvnuS2g@mail.gmail.com> References: <E2B4270B-635D-4D75-9AE6-52D5C7830D02@gmail.com> <CABrb_G_euED_XWOU-msudaWchxoJis5EUi4cfE8=b_YJvnuS2g@mail.gmail.com> MIME-Version: 1.0 Content-Transfer-Encoding: 8bit Content-Type: text/plain; charset=UTF-8 Subject: Re: ZFS Root Mount Failure Date: Mon, 03 Nov 2014 14:05:44 -0500 To: Erik Gustafson <gustafson.erik@gmail.com> Message-ID: <889081AC-3AD0-403A-82E8-98CCF79F9CC8@gmail.com> Cc: FreeBSD Mailing list <freebsd-questions@freebsd.org> X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Mon, 03 Nov 2014 19:05:50 -0000 On October 29, 2014 4:49:55 AM EDT, Erik Gustafson <gustafson.erik@gmail.com> wrote: >On Tue, Oct 28, 2014 at 10:40 PM, Stephen R Guglielmo ><srguglielmo@gmail.com >> wrote: > >> Hey list, >> >> I have a machine running ZFS on root. It stopped responding this >morning, >> and upon a reboot, it was unable to mount root from zfs:zroot. It >gave the >> explanation of "error 5." >> >> I played with the mount prompt briefly, but didn't get anywhere. Any >tips >> for diagnosing and fixing the problem? >> > >I had a similar issue recently. Error 5 on mount root. This was in >virtaulbox after some sort of unexpected shutdown. >To resolve i first made a snapshot in virtualbox >booted from freebsd-disc1.iso (install dvd) >zpool import >reboot (and boot from zroot) >zpool scrub > >zpool scrub said that i was going to loose some recently written data >(generated by nightly poudrire build) >I don't remember all, probably I needed some parameter to zpool import >but >all error messages were helpful it was quite easy to get it working >again. > >Good luck and don't forget the backup/snapshot Erik, Thanks for the help! I was able to boot from a FreeBSD 10 CD. I got into the LiveCD shell and imported the zpool with no problems. It said my 4 disks were online. I then rebooted, however I got the same error at the mountroot prompt: "Mounting from zfs:zroot failed with error 5." I'll try to play a bit more, maybe scrubbing it or something from the livecd. Thanks, Steve From owner-freebsd-questions@FreeBSD.ORG Mon Nov 3 19:39:31 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 04859B18 for <freebsd-questions@freebsd.org>; Mon, 3 Nov 2014 19:39:31 +0000 (UTC) Received: from fly.hiwaay.net (fly.hiwaay.net [216.180.54.1]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id C3CCDEEF for <freebsd-questions@freebsd.org>; Mon, 3 Nov 2014 19:39:30 +0000 (UTC) Received: from kabini1.local (rbn1-216-180-19-112.adsl.hiwaay.net [216.180.19.112]) (authenticated bits=0) by fly.hiwaay.net (8.13.8/8.13.8/fly) with ESMTP id sA3JdSE7025870 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES128-SHA bits=128 verify=NO) for <freebsd-questions@freebsd.org>; Mon, 3 Nov 2014 13:39:29 -0600 Message-ID: <5457DB67.4010002@hiwaay.net> Date: Mon, 03 Nov 2014 13:45:43 -0600 From: "William A. Mahaffey III" <wam@hiwaay.net> User-Agent: Mozilla/5.0 (X11; FreeBSD amd64; rv:31.0) Gecko/20100101 Thunderbird/31.2.0 MIME-Version: 1.0 CC: freebsd-questions@freebsd.org Subject: Re: Postal Notification References: <20141103140638.60B9617470E@scprod53.upprovider.it> <5457A6D1.5050209@gmail.com> <5457AA1D.5070602@hiwaay.net> <20141103182021.5748167b.freebsd@edvax.de> In-Reply-To: <20141103182021.5748167b.freebsd@edvax.de> Content-Type: text/plain; charset=windows-1252; format=flowed Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Mon, 03 Nov 2014 19:39:31 -0000 On 11/03/14 11:20, Polytropon wrote: > On Mon, 03 Nov 2014 10:15:25 -0600, William A. Mahaffey III wrote: >> On 11/03/14 10:01, jd1008 wrote: >> >> >> I 2nd this motion. The #1 source of SPAM which makes it to my home PC >> (this FBSD 9.3p3 box) is crap going to this list, which I have >> whitelisted :-/ .... > This mailing list is public. It also is not being moderated. > However, you can easily filter spam on client side, for example, > if the messages contain HTML garbage, or certain keywords are > met. Filtering for certain X-Mailer strings is also possible. > If you don't want to do this in your MUA, you can use your > MTA to do this at an earlier stage (either by deleting the > offending messages, or simply denying to receive them). > > In my opinion, this is not even worth the time, as there > is only _few_ spam on this list (compared to others!) which > only requires a single DEL keypress to be deleted. In most > cases, the subject is fully sufficient to determine if this > action is required. This opinion illustrates that I'm a lazy > person who doesn't receive thousands of messages per day to > be bothered automating anything. ;-) > > > My ISP allows (Linux RHEL 5.n) shell access to their servers, & I have a 2100+ line procmail file doing *mucho* detailed keyword/header filtering. Filtering HTML would lose anyone I buy something from on Ebay or stuff from my brokers. My ISP has some pretty aggressive/effective filtering as well. I only get 2-3 SPAMs/month, but unfortunately almost *all* are from crap that leaks through on this list. Could the list white-list anyone who subscribes, then eliminate any SPAMmers once they rear their ugly heads ? I don't know what the solution is, & I think the list is fabulously managed overall, but these SPAMs are irritating .... -- William A. Mahaffey III ---------------------------------------------------------------------- "The M1 Garand is without doubt the finest implement of war ever devised by man." -- Gen. George S. Patton Jr. From owner-freebsd-questions@FreeBSD.ORG Mon Nov 3 19:42:03 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id DDF2CBEA for <freebsd-questions@freebsd.org>; Mon, 3 Nov 2014 19:42:02 +0000 (UTC) Received: from fly.hiwaay.net (fly.hiwaay.net [216.180.54.1]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id A8A5BFA0 for <freebsd-questions@freebsd.org>; Mon, 3 Nov 2014 19:42:02 +0000 (UTC) Received: from kabini1.local (rbn1-216-180-19-112.adsl.hiwaay.net [216.180.19.112]) (authenticated bits=0) by fly.hiwaay.net (8.13.8/8.13.8/fly) with ESMTP id sA3Jg06f027656 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES128-SHA bits=128 verify=NO) for <freebsd-questions@freebsd.org>; Mon, 3 Nov 2014 13:42:01 -0600 Message-ID: <5457DC00.50108@hiwaay.net> Date: Mon, 03 Nov 2014 13:48:16 -0600 From: "William A. Mahaffey III" <wam@hiwaay.net> User-Agent: Mozilla/5.0 (X11; FreeBSD amd64; rv:31.0) Gecko/20100101 Thunderbird/31.2.0 MIME-Version: 1.0 CC: freebsd-questions@freebsd.org Subject: Re: Minor rpc question .... References: <mailman.73.1415016001.56588.freebsd-questions@freebsd.org> <20141104020556.J52402@sola.nimnet.asn.au> In-Reply-To: <20141104020556.J52402@sola.nimnet.asn.au> Content-Type: text/plain; charset=windows-1252; format=flowed Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Mon, 03 Nov 2014 19:42:03 -0000 On 11/03/14 11:25, Ian Smith wrote: > In freebsd-questions Digest, Vol 544, Issue 1, Message: 7 > On Sun, 02 Nov 2014 17:06:22 -0600 "William A. Mahaffey III" <wam@hiwaay.net> wrote: > > On 11/02/14 16:43, William A. Mahaffey III wrote: > > > On 11/02/14 11:12, Ian Smith wrote: > > >> William, I've just seen your response at > > >> http://lists.freebsd.org/pipermail/freebsd-questions/2014-November/262026.html > > >> > > >> but as I take questions@ as a digest, I won't get it here till tomorrow > > >> .. I should have asked you to cc me. > > Just got here. If you (or anyone) do respond to this, please cc me! > > Some spring pruning: > > > >> > 02500 18777 23476935 allow tcp from 192.168.0.0/16 to me > > >> > 65000 1795 424041 count ip from any to any > > >> > 65100 1371 269257 deny { tcp or udp } from any to any > > >> dst-port 111,137,138,513 in > > >> > > >> > w/ port 513 obviously being denied. However, I don't know where that > > >> > is happening :-/ & I thought rule 02500 would let all local traffic > > >> > through .... > > > >> Rule 2500 only allows tcp, rwho is udp - but 2500 is a bit sweeping > > >> anyway, perhaps best to enable specific services, even internally? > > >> > > >> Ah, yes - I see firewall_myservices and firewall_allowservices are only > > >> for TCP services. That's a strange omission, if I'm reading it right, > > >> especially re rpc. > > Well, well .. while browsing freebsd-current@ archives earlier, looking > for something else entirely, I came across this PR with commit to HEAD: > > Bug 194292 - Patch for adding firewall_myservices_tcp and > firewall_myservices_udp support to rc.conf: > https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=194292 > > > >> Rather than fixing this properly now for UDP services, I'd just add into > > >> /etc/rc.firewall after what's now your 2500 or at any rate before 65000: > > >> > > >> ${fwcmd} allow udp from ${mynetwork} 513 to me 513 > > Turns out 'me' was an unfortunate choice for this service, see below .. > > > >> You're already enabling udp services outbound, statefully, which is why > > >> you can query other hosts. Now they'll be able to reach you too :) > > >> > > >> 'service ipfw restart' and you should be good to go. You could remove > > >> 513 from firewall_nologports - but now it'll already be passed by then. > > > > Well, I put that rule in & opened logging for that port & now I get > > > ruptime info from other boxen, however, I also get log traffic about > > > denied port 513 traffic: > > > > > > [root@kabini1, /etc, 4:34:01pm] 368 % service ipfw restart > > > net.inet.ip.fw.enable: 1 -> 0 > > > net.inet6.ip6.fw.enable: 1 -> 0 > > > Flushed all rules. > > > 00100 allow ip from any to any via lo0 > [.. as before ..] > > > 01100 check-state > > > 01200 allow tcp from me to any established > > > 01300 allow tcp from me to any setup keep-state > > > 01400 allow udp from me to any keep-state > > > 01500 allow icmp from me to any keep-state > [..] > > > 02500 allow tcp from 192.168.0.0/16 to me > > > 02600 allow udp from 192.168.0.0/24 513 to me dst-port 513 > [..] > > > 65500 deny log logamount 5000 ip from any to any > > > Firewall rules loaded. > > > [root@kabini1, /etc, 4:34:03pm] 369 % > > > > [root@kabini1, /etc, 4:37:13pm] 337 % ( tail -20 /var/log/security ; > > > date ) > > > Oct 30 11:00:00 kabini1 newsyslog[9861]: logfile turned over due to > > > size>100K > > > Oct 30 11:00:30 kabini1 kernel: ipfw: 65500 Deny UDP > > > 92.108.103.99:58507 192.168.0.27:63167 in via re0 > > > Oct 30 11:00:49 kabini1 kernel: ipfw: 65500 Deny P:2 192.168.0.27 > > > 224.0.0.22 out via re0 > > > Oct 30 11:00:52 kabini1 kernel: ipfw: 65500 Deny P:2 192.168.0.27 > > > 224.0.0.22 out via re0 > > Your box tries talking IGMP (see /etc/protocols) to a multicast port: > igmp 2 IGMP # internet group management protocol > I know nothing about IGMP, but see there's nothing here to permit it. > > > > Oct 30 11:01:16 kabini1 kernel: ipfw: 65500 Deny UDP 126.43.5.41:6881 > > > 192.168.0.27:63167 in via re0 > > Torrents, eh? You'll need rule/s allowing that, assuming you offer > inbound connections and that your upstream NAT router is forwarding a > chosen port to you. I had to do this for my daughter not long ago :) > and in 'workstation' it's another service - UDP and perhaps TCP too? - > that you'll need to allow inbound .. unicast, so 'me' would be ok. > > [.. more IGMP ..] > > > > Oct 31 10:16:03 kabini1 kernel: ipfw: 65500 Deny UDP 216.180.99.2:53 > > > 192.168.0.27:28277 in via re0 > > Likely a late response to a DNS query, not uncommon. You can adjust the > dynamic timeouts by sysctls if need be, see ipfw(8); the default for > net.inet.ip.fw.dyn_udp_lifetime=5 seconds, often insufficient for DNS. > > > > Nov 2 16:31:12 kabini1 kernel: ipfw: 65500 Deny UDP 192.168.0.4:513 > > > 192.168.0.255:513 in via re0 > > > Nov 2 16:32:25 kabini1 kernel: ipfw: 65500 Deny UDP 192.168.0.9:513 > > > 192.168.0.255:513 in via re0 > > > Nov 2 16:32:28 kabini1 kernel: ipfw: 65500 Deny UDP 192.168.0.7:513 > > > 192.168.0.255:513 in via re0 > > > Nov 2 16:34:12 kabini1 kernel: ipfw: 65500 Deny UDP 192.168.0.4:513 > > > 192.168.0.255:513 in via re0 > > > Nov 2 16:35:25 kabini1 kernel: ipfw: 65500 Deny UDP 192.168.0.9:513 > > > 192.168.0.255:513 in via re0 > > > Nov 2 16:35:28 kabini1 kernel: ipfw: 65500 Deny UDP 192.168.0.7:513 > > > 192.168.0.255:513 in via re0 > > > Nov 2 16:37:12 kabini1 kernel: ipfw: 65500 Deny UDP 192.168.0.4:513 > > > 192.168.0.255:513 in via re0 > > > Nov 2 16:38:25 kabini1 kernel: ipfw: 65500 Deny UDP 192.168.0.9:513 > > > 192.168.0.255:513 in via re0 > > Right .. all of these are to 192.168.0.255, the broadcast address for > that /24. 'me' is defined as any address configured on an interface on > the system .. so apparently 'me' doesn't include the broadcast address, > assuming ifconfig shows you have re0 configured as 192.168.0.27/24 with > that broadcast address? > > > > Sun Nov 2 16:38:26 CST 2014 > > > [root@kabini1, /etc, 4:38:26pm] 337 % > > > > > > [wam@kabini1, ~, 9:03:43am] 330 % ruptime -a > > > Q6600 up 299+08:00, 6 users, load 0.03, > > > 0.04, 0.05 > > > athloncube up 45+21:08, 4 users, load 0.00, > > > 0.01, 0.05 > > > kabini1 up 23:01, 1 user, load 0.35, > > > 0.19, 0.10 > > > opty165a up 299+08:00, 4 users, load 0.00, > > > 0.00, 0.00 > > > [wam@kabini1, ~, 4:34:49pm] 330 % ruptime > > > Q6600 down 0:13 > > > athloncube down 0:14 > > > kabini1 up 23:07, 0 users, load 0.21, > > > 0.26, 0.16 > > > opty165a down 0:13 > > > [wam@kabini1, ~, 4:41:57pm] 331 % ruptime -a > > > Q6600 down 0:13 > > > athloncube down 0:14 > > > kabini1 up 23:07, 1 user, load 0.21, > > > 0.26, 0.16 > > > opty165a down 0:13 > > > [wam@kabini1, ~, 4:42:03pm] 332 % > > > > > > > > > err, well, I had it for a second :-/ .... > > I think your outbound queries (yes, to 192.168.0.255) got responses due > to the stateful UDP rule at 1400, but later, when you weren't querying > directly, other systems' broadcast queries were not being allowed in. > > > Sooooo tacky to self reply, but it seems warranted here. Using the ipfw > > command: > > > > ${fwcmd} add pass udp from 192.168.0.0/24 513 to 192.168.0.0/24 513 > > > > gets ruptime traffic in/out *and* cuts out extraneous logging .... Just > > for posterity :-) .... > > Yes that does it, because it allows packets in to the broadcast address. > Sorry I misled you with that 'me' rule; I didn't consider broadcasts, > even while knowing that's how rwhod has always worked :) I've rarely > used 'me', preferring to use specific addresses (including broadcast) > > cheers, Ian > No worries, you put me on the right track, so Thanks !!!! :-) .... -- William A. Mahaffey III ---------------------------------------------------------------------- "The M1 Garand is without doubt the finest implement of war ever devised by man." -- Gen. George S. Patton Jr. From owner-freebsd-questions@FreeBSD.ORG Mon Nov 3 21:08:21 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 74ACBE41 for <freebsd-questions@freebsd.org>; Mon, 3 Nov 2014 21:08:21 +0000 (UTC) Received: from land.berklix.org (land.berklix.org [144.76.10.75]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 03658AA8 for <freebsd-questions@freebsd.org>; Mon, 3 Nov 2014 21:08:20 +0000 (UTC) Received: from mart.js.berklix.net (pD9FBF790.dip0.t-ipconnect.de [217.251.247.144]) (authenticated bits=128) by land.berklix.org (8.14.5/8.14.5) with ESMTP id sA3L4Tst026252 for <freebsd-questions@freebsd.org>; Mon, 3 Nov 2014 21:04:33 GMT (envelope-from jhs@berklix.com) Received: from fire.js.berklix.net (fire.js.berklix.net [192.168.91.41]) by mart.js.berklix.net (8.14.3/8.14.3) with ESMTP id sA3L7x4q039722 for <freebsd-questions@freebsd.org>; Mon, 3 Nov 2014 22:07:59 +0100 (CET) (envelope-from jhs@berklix.com) Received: from fire.js.berklix.net (localhost [127.0.0.1]) by fire.js.berklix.net (8.14.7/8.14.7) with ESMTP id sA3L7lWd036684 for <freebsd-questions@freebsd.org>; Mon, 3 Nov 2014 22:07:59 +0100 (CET) (envelope-from jhs@berklix.com) Message-Id: <201411032107.sA3L7lWd036684@fire.js.berklix.net> To: freebsd-questions@freebsd.org Subject: Re: Postal Notification From: "Julian H. Stacey" <jhs@berklix.com> Organization: http://berklix.com BSD Unix Linux Consultants, Munich Germany User-agent: EXMH on FreeBSD http://berklix.com/free/ X-URL: http://www.berklix.com In-reply-to: Your message "Mon, 03 Nov 2014 08:48:49 -0800." <5457B1F1.5000502@bluerosetech.com> Date: Mon, 03 Nov 2014 22:07:47 +0100 X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Mon, 03 Nov 2014 21:08:21 -0000 Darren Pilgrim wrote: > On 11/3/2014 8:01 AM, jd1008 wrote: > > Is there a way to PREVENT such spam??? > > The spam was sent through the mailing list. There is no way to stop > spammers from abusing mailing lists unless you make the list closed > access (which would utterly defeat the point of the FreeBSD MLs). That's painting it simple. There's various mail list types on @freebsd, inc. eg: Announce; Subscribers Only; Moderated=Censored jobs@; [etc?]. questions@ has discussed before if we should require subscription, (& if so, to reword /etc/motd to tell posters to subscribe first); A majority who expressed a preference did not want subscription required. (I was with a minority who did want it). > FreeBSD mail admin(s) actually do a pretty good job. These are very > old, very well known open lists and the spam rate is very low. Yes. Thanks to postmaster@freebsd team :-) Cheers, Julian -- Julian Stacey, BSD Linux Unix C Sys Eng Consultant Munich http://berklix.com Indent previous with "> ". Interleave reply paragraphs like a play script. Send plain text, not quoted-printable, HTML, base64, or multipart/alternative. From owner-freebsd-questions@FreeBSD.ORG Mon Nov 3 22:23:27 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id A669587D for <freebsd-questions@freebsd.org>; Mon, 3 Nov 2014 22:23:27 +0000 (UTC) Received: from wonkity.com (wonkity.com [67.158.26.137]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client CN "wonkity.com", Issuer "wonkity.com" (not verified)) by mx1.freebsd.org (Postfix) with ESMTPS id 5DC5E36C for <freebsd-questions@freebsd.org>; Mon, 3 Nov 2014 22:23:27 +0000 (UTC) Received: from wonkity.com (localhost [127.0.0.1]) by wonkity.com (8.14.9/8.14.9) with ESMTP id sA3MNIbI092769 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-GCM-SHA384 bits=256 verify=NO); Mon, 3 Nov 2014 15:23:18 -0700 (MST) (envelope-from wblock@wonkity.com) Received: from localhost (wblock@localhost) by wonkity.com (8.14.9/8.14.9/Submit) with ESMTP id sA3MNIH2092766; Mon, 3 Nov 2014 15:23:18 -0700 (MST) (envelope-from wblock@wonkity.com) Date: Mon, 3 Nov 2014 15:23:18 -0700 (MST) From: Warren Block <wblock@wonkity.com> To: "Julian H. Stacey" <jhs@berklix.com> Subject: Re: Postal Notification In-Reply-To: <201411032107.sA3L7lWd036684@fire.js.berklix.net> Message-ID: <alpine.BSF.2.11.1411031516140.89785@wonkity.com> References: <201411032107.sA3L7lWd036684@fire.js.berklix.net> User-Agent: Alpine 2.11 (BSF 23 2013-08-11) MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII; format=flowed X-Greylist: Sender IP whitelisted, not delayed by milter-greylist-4.4.3 (wonkity.com [127.0.0.1]); Mon, 03 Nov 2014 15:23:18 -0700 (MST) Cc: freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Mon, 03 Nov 2014 22:23:27 -0000 On Mon, 3 Nov 2014, Julian H. Stacey wrote: > Darren Pilgrim wrote: >> On 11/3/2014 8:01 AM, jd1008 wrote: >>> Is there a way to PREVENT such spam??? >> >> The spam was sent through the mailing list. There is no way to stop >> spammers from abusing mailing lists unless you make the list closed >> access (which would utterly defeat the point of the FreeBSD MLs). > > That's painting it simple. There's various mail list types on @freebsd, > inc. eg: Announce; Subscribers Only; Moderated=Censored jobs@; [etc?]. Agreed. Another way of looking at it is that by not requiring subscription and hence allowing some spammers, we are making the list less helpful to the very people who need it. There must be other open mailing lists out there, but they are extremely rare. > questions@ has discussed before if we should require subscription, > (& if so, to reword /etc/motd to tell posters to subscribe first); > > A majority who expressed a preference did not want subscription required. > (I was with a minority who did want it). I agree, it should be subscriber-only. While that will not eliminate abuse, it will help. And I would bet money that it will happen eventually, it's just a question of when. >> FreeBSD mail admin(s) actually do a pretty good job. These are very >> old, very well known open lists and the spam rate is very low. > > Yes. Thanks to postmaster@freebsd team :-) That is true. With almost no recognition, they do a difficult and tedious job. If it wouldn't add to the workload, I'd suggest sending them a thank you note. :) From owner-freebsd-questions@FreeBSD.ORG Tue Nov 4 00:00:42 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 8C34BBE3; Tue, 4 Nov 2014 00:00:42 +0000 (UTC) Received: from mail.firstyear.id.au (ppp194-109.static.internode.on.net [203.122.194.109]) by mx1.freebsd.org (Postfix) with ESMTP id EE2F9E43; Tue, 4 Nov 2014 00:00:41 +0000 (UTC) Received: from [129.127.46.250] (ammy.its.adelaide.edu.au [129.127.46.250]) by mail.firstyear.id.au (Postfix) with ESMTPSA id 41C4C453C441; Tue, 4 Nov 2014 10:30:39 +1030 (ACDT) Message-ID: <1415059238.8321.12.camel@ammy.its.adelaide.edu.au> Subject: Re: Loader vs loader efi ficl incompatibility From: William <william@firstyear.id.au> To: Ed Maste <emaste@freebsd.org> Date: Tue, 04 Nov 2014 10:30:38 +1030 In-Reply-To: <CAPyFy2CrDr=a8_O93TBNFE5HJYJDXE6tuihvJQ9gjDydXbywkQ@mail.gmail.com> References: <1414622725.16625.22.camel@ammy.its.adelaide.edu.au> <CAPyFy2CrDr=a8_O93TBNFE5HJYJDXE6tuihvJQ9gjDydXbywkQ@mail.gmail.com> Content-Type: text/plain; charset="UTF-8" X-Mailer: Evolution 3.10.4 (3.10.4-4.fc20) Mime-Version: 1.0 Content-Transfer-Encoding: 7bit X-Spam-Status: No, score=1.3 required=5.0 tests=RDNS_NONE autolearn=no autolearn_force=no version=3.4.0 X-Spam-Level: * X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on lyra.ipa.blackhats.net.au Cc: FreeBSD Questions <freebsd-questions@freebsd.org> X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Tue, 04 Nov 2014 00:00:42 -0000 > > Are there differences in the ficl interpreter between loader and > > loader.efi? Is this perhaps a bug? > > The loader only includes inb and outb for i386 (the non-UEFI loader is > 32-bit for both i386 and amd64): > > #ifdef __i386__ > dictAppendWord(dp, "outb", ficlOutb, FW_DEFAULT); > dictAppendWord(dp, "inb", ficlInb, FW_DEFAULT); > #endif > > We'd need to make these available in the 64-bit loader.efi, although > I'd really like to have MBP support be handled automatically in the > loader itself. Hi I've done some testing and the following patch works to make outb and inb available on amd64. The main question and concern is that I'm A) Duplicating the code from i386 B) That I am enabling this by commenting out the ifdef. Is there an __amd64__ ifdef I can use? Or can we make outb / inb platform independent. I would assume they are coming from machine/cpufunc.h This of course lets me initially get the mac to boot, and I'm having some display issues now. These have been posted to the x11 mailing list. Going forwards you mention making the MBP support part of loader itself. Where in loader is hardware specific initialisation done? Any pointers on how to develop this support? svn diff Index: amd64/sysdep.c =================================================================== --- amd64/sysdep.c (revision 274065) +++ amd64/sysdep.c (working copy) @@ -15,6 +15,7 @@ #else #include <stand.h> #endif +#include <machine/cpufunc.h> #include "ficl.h" /* @@ -77,8 +78,37 @@ free(p); } +/* + * outb ( port# c -- ) + * Store a byte to I/O port number port# + */ +void +ficlOutb(FICL_VM *pVM) +{ + u_char c; + u_int32_t port; + port=stackPopUNS(pVM->pStack); + c=(u_char)stackPopINT(pVM->pStack); + outb(port,c); +} + /* + * inb ( port# -- c ) + * Fetch a byte from I/O port number port# + */ +void +ficlInb(FICL_VM *pVM) +{ + u_char c; + u_int32_t port; + + port=stackPopUNS(pVM->pStack); + c=inb(port); + stackPushINT(pVM->pStack,c); +} + +/* ** Stub function for dictionary access control - does nothing ** by default, user can redefine to guarantee exclusive dict ** access to a single thread for updates. All dict update code Index: ficl.h =================================================================== --- ficl.h (revision 274065) +++ ficl.h (working copy) @@ -1113,10 +1113,10 @@ ** Various FreeBSD goodies */ -#if defined(__i386__) && !defined(TESTMAIN) +/* #if defined(__i386__) && !defined(TESTMAIN) -- Is there an __amd64__ I can use here? */ extern void ficlOutb(FICL_VM *pVM); extern void ficlInb(FICL_VM *pVM); -#endif +/* #endif */ extern void ficlSetenv(FICL_VM *pVM); extern void ficlSetenvq(FICL_VM *pVM); Index: loader.c =================================================================== --- loader.c (revision 274065) +++ loader.c (working copy) @@ -786,10 +786,10 @@ dictAppendWord(dp, "findfile", ficlFindfile, FW_DEFAULT); dictAppendWord(dp, "ccall", ficlCcall, FW_DEFAULT); #ifndef TESTMAIN -#ifdef __i386__ +/* #ifdef __i386__ -- Is there an __amd64__ I can use here? */ dictAppendWord(dp, "outb", ficlOutb, FW_DEFAULT); dictAppendWord(dp, "inb", ficlInb, FW_DEFAULT); -#endif +/* #endif */ #ifdef HAVE_PNP dictAppendWord(dp, "pnpdevices",ficlPnpdevices, FW_DEFAULT); dictAppendWord(dp, "pnphandlers",ficlPnphandlers, FW_DEFAULT); From owner-freebsd-questions@FreeBSD.ORG Tue Nov 4 02:50:17 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 6FD7FC1F; Tue, 4 Nov 2014 02:50:17 +0000 (UTC) Received: from mail-pa0-x22a.google.com (mail-pa0-x22a.google.com [IPv6:2607:f8b0:400e:c03::22a]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 420CDFC2; Tue, 4 Nov 2014 02:50:17 +0000 (UTC) Received: by mail-pa0-f42.google.com with SMTP id bj1so13462232pad.15 for <multiple recipients>; Mon, 03 Nov 2014 18:50:16 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:in-reply-to:references:date:message-id:subject:from:to :cc:content-type; bh=lPzs1yQG6gd/utrhHtGtOoSEpGhCuszA48CIH+i+pns=; b=nQiALw/8+Hs+bG+GLkwi5VBUWYA/6c07NvBUJ8QMYpLNEJlaFLd3t5xgAdbA7DZvzB IDqjGu3jSNtt8bEch12rPQ6kysQAfkbLaHCyutLMQczn4EevTsTnOAMgeLCbPNdbLI3K lngXXOLO7A77M9uhYouexFIQIOmqCrvs6ByFK3ExnuKMOojW9zs9HS30KkJP1nSOlCo2 LvBSeDOWPUw/uWnubjyhm9XkP/azMIbxLnGy/5EBeuG7/69Nw+wPsK4Ku4h+K03QNCIz PqGgQaCU3+W92i/FxCjTOMgaSuU5jQJevLKWv7gJE7rBQRUT+cDev/mWUIBLowy2F80T 06mg== MIME-Version: 1.0 X-Received: by 10.70.88.165 with SMTP id bh5mr9291068pdb.51.1415069416780; Mon, 03 Nov 2014 18:50:16 -0800 (PST) Received: by 10.70.22.98 with HTTP; Mon, 3 Nov 2014 18:50:16 -0800 (PST) In-Reply-To: <CAPyFy2CnwX8tvWjpjUQA__vU=3cLBc5tsexa=8dvZjsbd3M-kg@mail.gmail.com> References: <CABWFOjup0Cr55R8rdMFcTCUT7LN-OzpfuRAbYd2EU1VdHAoVHA@mail.gmail.com> <CAPyFy2CnwX8tvWjpjUQA__vU=3cLBc5tsexa=8dvZjsbd3M-kg@mail.gmail.com> Date: Mon, 3 Nov 2014 20:50:16 -0600 Message-ID: <CABWFOjumveJMmuM6Tz6EqBHjmKVUrJ2dUV23C9jjbRe9Zu5bRQ@mail.gmail.com> Subject: Re: Trouble installing on uefi machine From: Brian Wood <woodbrian77@gmail.com> To: Ed Maste <emaste@freebsd.org> Content-Type: text/plain; charset=UTF-8 X-Content-Filtered-By: Mailman/MimeDel 2.1.18-1 Cc: FreeBSD Questions <freebsd-questions@freebsd.org> X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Tue, 04 Nov 2014 02:50:17 -0000 On Thu, Oct 23, 2014 at 2:47 PM, Ed Maste <emaste@freebsd.org> wrote: > > > >> On Sat, Oct 4, 2014 at 2:27 PM, Brian Wood <woodbrian77@gmail.com> > wrote: > >> > >> The second to the last line is: > >> > >> module_register_init: MOD_LOAD (vesa, 0xffffffff80d92410, 0) error 19 > >> > >> Is there any advice other than waiting for RC3? > >> > >> > >> > > I tried it with FreeBSD-10.1-RC3-amd64-uefi-memstick.img > > and it still hangs. > > I missed the beginning of this thread, but you won't want vesa w/ > UEFI. Did you do anything specific that's trying to load vesa? > Not that I know of. I used dd to put the img file onto a thumb drive. Then I booted the machine from the thumb drive. I've tried FreeBSD-10.1-RC4-amd64-uefi-memstick.img now and it hangs the same way as the previous versions. -- Brian Ebenezer Enterprises - So far G-d has helped us. http://webEbenezer.net From owner-freebsd-questions@FreeBSD.ORG Tue Nov 4 02:58:45 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 26097D61 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 02:58:45 +0000 (UTC) Received: from relay.mailchannels.net (nov-007-i632.relay.mailchannels.net [46.232.183.186]) by mx1.freebsd.org (Postfix) with ESMTP id 11696119 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 02:58:41 +0000 (UTC) X-Sender-Id: _forwarded-from|120.29.118.156 Received: from mail-24.name-services.com (ip-10-213-14-133.us-west-2.compute.internal [10.213.14.133]) by relay.mailchannels.net (Postfix) with ESMTPA id 69AC010005F; Tue, 4 Nov 2014 00:34:34 +0000 (UTC) X-Sender-Id: _forwarded-from|120.29.118.156 Received: from mail-24.name-services.com (mail-24.name-services.com [10.232.17.254]) (using TLSv1 with cipher AES128-SHA) by 0.0.0.0:2500 (trex/5.3.2); Tue, 04 Nov 2014 00:34:40 GMT X-MC-Relay: Forwarding X-MailChannels-SenderId: _forwarded-from|120.29.118.156 X-MailChannels-Auth-Id: demandmedia X-MC-Loop-Signature: 1415061277048:2118984574 X-MC-Ingress-Time: 1415061277047 Received: from [192.168.111.107] (UnknownHost [120.29.118.156]) by mail-24.name-services.com with SMTP; Mon, 3 Nov 2014 16:34:27 -0800 Message-ID: <54581F0E.4080404@a1poweruser.com> Date: Tue, 04 Nov 2014 08:34:22 +0800 From: Fbsd8 <fbsd8@a1poweruser.com> User-Agent: Thunderbird 2.0.0.24 (Windows/20100228) MIME-Version: 1.0 To: Hasse Hansson <hasse@thorshammare.org> Subject: Re: sshguard pf References: <20141102154444.GA42429@ymer.thorshammare.org> In-Reply-To: <20141102154444.GA42429@ymer.thorshammare.org> Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit Cc: freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Tue, 04 Nov 2014 02:58:45 -0000 Hasse Hansson wrote: > Hello > > uname -a > FreeBSD ymer.thorshammare.org 10.1-RC3 FreeBSD 10.1-RC3 #0 r273437: Wed Oct 22 01:27:10 UTC 2014 > root@releng1.nyi.freebsd.org:/usr/obj/usr/src/sys/GENERIC i386 > > I have a bit problems to get some bots blocked. I'm running pf and sshguard. Even tried fail2ban > Below is a snippet from my auth.log showing sshguard blocking som IPs, but nor the bot scans. > Both tables abusers and sshguard are empty and allways was. > This junk is filling up my logfiles. > Any clues what I'm doing wrong or missing ? > > I'm running two crontabs : > # Sshguard > 0/1 * * * * root pfctl -t sshguard -T show >/etc/sshguard 2>/dev/null > # > # Bruteforce ssh > 0/2 * * * * root pfctl -t abusers -T show >/etc/abusers 2>/dev/null > > > In /etc/ssh/sshd_config I've uncommented : > Port 22 > AddressFamily any > Protocol 2 > SyslogFacility AUTH > LogLevel INFO > > # Authentication: > > LoginGraceTime 1m > PermitRootLogin no > StrictModes yes > MaxAuthTries 5 > MaxSessions 10 > > PasswordAuthentication no > PermitEmptyPasswords no > ChallengeResponseAuthentication no > > MaxStartups 10:30:100 > > In my /etc/rc.conf I have : > pf_enable="YES" > pflog_enable="YES" > pflog_logfile="/var/log/pflog" > sshguard_enable="YES" > sshguard_safety_thresh="30" > sshguard_pardon_min_interval="600" > sshguard_prescribe_interval="7200" > > In /etc/pf.conf : > ext_if="fxp0" > int_if="xl0" > webports="{ http, https }" > > table <abusers> counters persist > table <sshguard> persist > > set skip on lo > scrub in > > block in > pass out > > block quick from <abusers> to any > block drop in log quick on $ext_if inet from <sshguard> to any > > pass in on $ext_if proto tcp to any port ssh flags S/SA keep state (max-src-conn 10, max-src-conn-rate 2/120, overload <abusers> flush) > > antispoof quick for { lo $ext_if $int_if } > > pass in on $ext_if proto tcp to ($ext_if) port ssh > pass in log on $ext_if proto tcp to ($ext_if) port smtp > pass out log on $ext_if proto tcp from ($ext_if) to port smtp > pass in log on $ext_if proto tcp to ($ext_if) port $webports > pass out log on $ext_if proto tcp from ($ext_if) to port $webports > > pass in on $ext_if inet proto icmp from any to ($ext_if) icmp-type { unreach, redir, timex } > > <snip> > Nov 2 07:51:13 ymer sshguard[19225]: Blocking 103.27.24.106:4 for >900secs: 30 danger in 3 attacks over 18 seconds (all: 30d in 1 abuses over 18s). > Nov 2 10:35:35 ymer sshguard[19225]: Blocking 60.190.71.52:4 for >900secs: 30 danger in 3 attacks over 8 seconds (all: 30d in 1 abuses over 8s). > Nov 2 11:09:50 ymer sshguard[19225]: Blocking 122.225.97.105:4 for >900secs: 30 danger in 3 attacks over 65 seconds (all: 30d in 1 abuses over 65s). > Nov 2 13:10:52 ymer sshguard[19225]: Blocking 50.30.32.19:4 for >900secs: 30 danger in 3 attacks over 4 seconds (all: 30d in 1 abuses over 4s). > Nov 2 14:34:55 ymer sshguard[19225]: Blocking 61.174.51.212:4 for >900secs: 30 danger in 3 attacks over 69 seconds (all: 30d in 1 abuses over 69s). > > Nov 2 16:32:09 ymer sshd[42957]: Connection from 202.109.143.110 port 3453 on 192.168.1.2 port 22 > Nov 2 16:32:13 ymer sshd[42957]: Disconnecting: Too many authentication failures for root [preauth] > Nov 2 16:32:14 ymer sshd[42959]: Connection from 202.109.143.110 port 2838 on 192.168.1.2 port 22 > Nov 2 16:32:17 ymer sshd[42959]: Disconnecting: Too many authentication failures for root [preauth] > Nov 2 16:32:21 ymer sshd[42961]: Connection from 202.109.143.110 port 3611 on 192.168.1.2 port 22 > Nov 2 16:32:34 ymer sshd[42961]: Disconnecting: Too many authentication failures for root [preauth] > Nov 2 16:32:41 ymer sshd[42963]: Connection from 202.109.143.110 port 2507 on 192.168.1.2 port 22 > Nov 2 16:32:48 ymer sshd[42963]: Disconnecting: Too many authentication failures for root [preauth] > Nov 2 16:32:49 ymer sshd[42965]: Connection from 202.109.143.110 port 4650 on 192.168.1.2 port 22 > Nov 2 16:32:52 ymer sshd[42965]: Disconnecting: Too many authentication failures for root [preauth] > Nov 2 16:32:52 ymer sshd[42967]: Connection from 202.109.143.110 port 4650 on 192.168.1.2 port 22 > Nov 2 16:33:01 ymer sshd[42967]: Disconnecting: Too many authentication failures for root [preauth] > Nov 2 16:33:02 ymer sshd[42983]: Connection from 202.109.143.110 port 4316 on 192.168.1.2 port 22 > Nov 2 16:33:12 ymer sshd[42983]: Disconnecting: Too many authentication failures for root [preauth] > Nov 2 16:33:18 ymer sshd[42985]: Connection from 202.109.143.110 port 2539 on 192.168.1.2 port 22 > Nov 2 16:33:27 ymer sshd[42985]: Disconnecting: Too many authentication failures for root [preauth] > Nov 2 16:33:28 ymer sshd[42987]: Connection from 202.109.143.110 port 4555 on 192.168.1.2 port 22 > Nov 2 16:33:35 ymer sshd[42987]: Disconnecting: Too many authentication failures for root [preauth] > Nov 2 16:33:38 ymer sshd[42989]: Connection from 202.109.143.110 port 3164 on 192.168.1.2 port 22 > Nov 2 16:33:43 ymer sshd[42989]: Disconnecting: Too many authentication failures for root [preauth] > Nov 2 16:33:43 ymer sshd[42991]: Connection from 202.109.143.110 port 4749 on 192.168.1.2 port 22 > Nov 2 16:33:52 ymer sshd[42991]: fatal: Read from socket failed: Connection reset by peer [preauth] > </snip> > > Best Regards > Hasse. You are being attacked by script kiddies and bots, they scan a whole ip address range looking for open port 22 and when its found they start their login attack. Changing ssh to use some other port number will stop this attack all together. I changed ssh to use port '4422' 25 years ago and no attacks since. Another way is to use the port named 'knock' to temporary open port 22 if proceeded by knock From owner-freebsd-questions@FreeBSD.ORG Tue Nov 4 05:38:00 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 9F19D303 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 05:38:00 +0000 (UTC) Received: from sola.nimnet.asn.au (paqi.nimnet.asn.au [115.70.110.159]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 1F54B170 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 05:37:59 +0000 (UTC) Received: from localhost (localhost [127.0.0.1]) by sola.nimnet.asn.au (8.14.2/8.14.2) with ESMTP id sA45biYv027594; Tue, 4 Nov 2014 16:37:45 +1100 (EST) (envelope-from smithi@nimnet.asn.au) Date: Tue, 4 Nov 2014 16:37:44 +1100 (EST) From: Ian Smith <smithi@nimnet.asn.au> To: Gary Aitken <vagabond@blackfoot.net> Subject: Re: natd not translating? In-Reply-To: <mailman.73.1415016001.56588.freebsd-questions@freebsd.org> Message-ID: <20141104160325.W52402@sola.nimnet.asn.au> References: <mailman.73.1415016001.56588.freebsd-questions@freebsd.org> MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII Cc: freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Tue, 04 Nov 2014 05:38:00 -0000 In freebsd-questions Digest, Vol 544, Issue 1, Message: 9 On Sun, 2 Nov 2014 17:36:36 -0700 "Gary Aitken" <vagabond@blackfoot.net> wrote: > Hi all, > > I'm trying to set up natd and can't for the life of me figure out > what's wrong with my config. > > natd.conf: > > use_sockets > same_ports > unregistered_only > verbose > alias_address 66.109.141.60 > > What I see: > In {default}[ICMP] [ICMP] 192.168.1.2 -> 128.2.42.52 8(0) aliased to > [ICMP] 192.168.1.2 -> 128.2.42.52 8(0) > > Any thoughts on why natd isn't translating 192.168.1.2 to 66.108.141.60? Hi Gary, Not enough information to have any idea how your NAT box is setup. Need to know the inside and outside interface addresses (eg ifconfig); ipfw rules, especially around those invoking natd (divert rule/s) and where these are placed in your ruleset; who/where is 192.168.1.2, is 66.109.141.60 always your assigned public IP address, freebsd version? cheers, Ian (please cc me, I take questions@ as a digest) From owner-freebsd-questions@FreeBSD.ORG Tue Nov 4 08:43:24 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 82C7FA18 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 08:43:24 +0000 (UTC) Received: from exprod7og123.obsmtp.com (exprod7og123.obsmtp.com [64.18.2.24]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id F060C7AF for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 08:43:23 +0000 (UTC) Received: from mail-wi0-f172.google.com ([209.85.212.172]) (using TLSv1) by exprod7ob123.postini.com ([64.18.6.12]) with SMTP ID DSNKVFiRpJA64cFBnrdr8i5caBAzPYP+ypM5@postini.com; Tue, 04 Nov 2014 00:43:24 PST Received: by mail-wi0-f172.google.com with SMTP id bs8so8694272wib.5 for <freebsd-questions@freebsd.org>; Tue, 04 Nov 2014 00:43:15 -0800 (PST) X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=x-gm-message-state:from:mime-version:thread-index:date:message-id :subject:to:content-type; bh=AvcwZJa5EEbTSB95v94kmP7xvLNhIpAdX/0hiz+hsj8=; b=bAQ2ISnZXAJO7KCSCgy6HQZRVy38VmzKUpqdk4KD1eU3fNHEQq5GFb/GInGFxy7PcD pl0gy9endkE2SnK7Ynq0kIxvRk9nSHpJQCrR3YL320XlT+SRaQroBls3WPDxgasZR8tC 7laJCajEOpAIorihKExfrfRYUQY+UeG2prAdyNfpA3xCalORjfAdcDy4VBn9E4LMlU54 sZW7xzjclleGrZbq9YD2s1rPCgrTkjuhBOKGQ2Y0Ffe0px1F7JKeZYzrrl+2FSuWMobj br1xsXCVaT8wtgl+e/w8GCbg65BEmY0mk5e6aVw6zdsihERIRqvvzorQUi2pqhR0RxdH kFNA== X-Received: by 10.180.73.7 with SMTP id h7mr21713887wiv.83.1415084329736; Mon, 03 Nov 2014 22:58:49 -0800 (PST) X-Gm-Message-State: ALoCoQlTMm08MZhN/jwX7838HFIdYNsu4p4ft4Z5EDeY02A2tYNZhgRGYZZJT+pQVXvLCV6ZAD5Bj0b7fmszbViWxpFgEqVLIVEaqcprPc8gxwD+Q95rojNF+aoW2pgls0jNEVzoKVwAkjyK7ZJqwZ50YwLqh1tMZmJEPnozNvVKkVrKY1OPiJQ= X-Received: by 10.180.73.7 with SMTP id h7mr21713871wiv.83.1415084329609; Mon, 03 Nov 2014 22:58:49 -0800 (PST) From: Sibananda Sahu <sibananda.sahu@avagotech.com> MIME-Version: 1.0 X-Mailer: Microsoft Outlook 14.0 Thread-Index: Ac/3/MavdJxczJPmThKj73Xm3bWhuQ== Date: Tue, 4 Nov 2014 12:28:48 +0530 Message-ID: <c1241e563944d7ec496c6c235f420b21@mail.gmail.com> Subject: Open file descriptor reference count implementation in driver To: freebsd-questions@freebsd.org Content-Type: text/plain; charset=UTF-8 X-Content-Filtered-By: Mailman/MimeDel 2.1.18-1 X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Tue, 04 Nov 2014 08:43:24 -0000 Hi, Can anybody suggest how can I implement the Open file descriptor reference count in a freebsd driver??? I have looked up at certain places in the cdev structure(sys/conf.h) and found two integer values: Int si_refcount; Int si_usecount; I think these are the stuffs useful for me. Can somebody explain what are the significance of the above mentioned integer values inside the cdev structure? Any help would be greatly appreciated. Thanks, Sibananda Sahu From owner-freebsd-questions@FreeBSD.ORG Tue Nov 4 11:22:29 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 512F8D79 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 11:22:29 +0000 (UTC) Received: from smtprelay-h21.telenor.se (smtprelay-h21.telenor.se [195.54.99.196]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id BFB65E77 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 11:22:28 +0000 (UTC) Received: from ipb4.telenor.se (ipb4.telenor.se [195.54.127.167]) by smtprelay-h21.telenor.se (Postfix) with ESMTP id 3AF76C5E2 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 12:02:20 +0100 (CET) X-SENDER-IP: [83.227.225.121] X-LISTENER: [smtp.bredband.net] X-IronPort-Anti-Spam-Filtered: true X-IronPort-Anti-Spam-Result: AgIHAEGxWFRT4+F5PGdsb2JhbABcgw5UWM5Yh1ECgSIXAQEBAQEBBQEBAQE4O4QCAQEBAQIBViMQCxgJDQEXDwUZDAoaE4g4DQHLfAEBAQcBAQEBAR2KdIYcBxIBgxqBHgWWb4Q6gl0BgTE9hkGKF4gCPC8BgQUCBxcEgSEBAQE X-IPAS-Result: AgIHAEGxWFRT4+F5PGdsb2JhbABcgw5UWM5Yh1ECgSIXAQEBAQEBBQEBAQE4O4QCAQEBAQIBViMQCxgJDQEXDwUZDAoaE4g4DQHLfAEBAQcBAQEBAR2KdIYcBxIBgxqBHgWWb4Q6gl0BgTE9hkGKF4gCPC8BgQUCBxcEgSEBAQE X-IronPort-AV: E=Sophos;i="5.07,312,1413237600"; d="scan'208";a="676663197" Received: from ua-83-227-225-121.cust.bredbandsbolaget.se (HELO ymer.thorshammare.org) ([83.227.225.121]) by ipb4.telenor.se with ESMTP; 04 Nov 2014 12:02:08 +0100 Received: from ymer.thorshammare.org (localhost [127.0.0.1]) by ymer.thorshammare.org (8.14.9/8.14.9) with ESMTP id sA4B23rk037408 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-GCM-SHA384 bits=256 verify=NO); Tue, 4 Nov 2014 12:02:07 +0100 (CET) (envelope-from hasse@ymer.thorshammare.org) Received: (from hasse@localhost) by ymer.thorshammare.org (8.14.9/8.14.9/Submit) id sA4B22jH037407; Tue, 4 Nov 2014 12:02:02 +0100 (CET) (envelope-from hasse) Date: Tue, 4 Nov 2014 12:02:02 +0100 From: Hasse Hansson <hasse@thorshammare.org> To: Fbsd8 <fbsd8@a1poweruser.com> Subject: Re: sshguard pf Message-ID: <20141104110202.GA37003@ymer.thorshammare.org> References: <20141102154444.GA42429@ymer.thorshammare.org> <54581F0E.4080404@a1poweruser.com> MIME-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="Kj7319i9nmIyA2yE" Content-Disposition: inline In-Reply-To: <54581F0E.4080404@a1poweruser.com> User-Agent: Mutt/1.5.23 (2014-03-12) Cc: freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Tue, 04 Nov 2014 11:22:29 -0000 --Kj7319i9nmIyA2yE Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Content-Transfer-Encoding: quoted-printable On Tue, Nov 04, 2014 at 08:34:22AM +0800, Fbsd8 wrote: > Hasse Hansson wrote: > > Hello > >=20 > > uname -a > > FreeBSD ymer.thorshammare.org 10.1-RC3 FreeBSD 10.1-RC3 #0 r273437: Wed= Oct 22 01:27:10 UTC 2014=20 > > root@releng1.nyi.freebsd.org:/usr/obj/usr/src/sys/GENERIC i386 > >=20 > > I have a bit problems to get some bots blocked. I'm running pf and sshg= uard. Even tried fail2ban > > Below is a snippet from my auth.log showing sshguard blocking som IPs, = but nor the bot scans. > > Both tables abusers and sshguard are empty and allways was. > > This junk is filling up my logfiles.=20 > > Any clues what I'm doing wrong or missing ?=20 > >=20 > > I'm running two crontabs : > > # Sshguard > > 0/1 * * * * root pfctl -t sshguard -T show = >/etc/sshguard 2>/dev/null > > # > > # Bruteforce ssh > > 0/2 * * * * root pfctl -t abusers -T show >= /etc/abusers 2>/dev/null > >=20 > >=20 > > In /etc/ssh/sshd_config I've uncommented : > > Port 22 > > AddressFamily any > > Protocol 2 > > SyslogFacility AUTH > > LogLevel INFO > >=20 > > # Authentication: > >=20 > > LoginGraceTime 1m > > PermitRootLogin no > > StrictModes yes > > MaxAuthTries 5 > > MaxSessions 10 > >=20 > > PasswordAuthentication no > > PermitEmptyPasswords no > > ChallengeResponseAuthentication no > >=20 > > MaxStartups 10:30:100 > >=20 > > In my /etc/rc.conf I have : > > pf_enable=3D"YES" > > pflog_enable=3D"YES" > > pflog_logfile=3D"/var/log/pflog" > > sshguard_enable=3D"YES" > > sshguard_safety_thresh=3D"30" > > sshguard_pardon_min_interval=3D"600" > > sshguard_prescribe_interval=3D"7200" > >=20 > > In /etc/pf.conf : > > ext_if=3D"fxp0" > > int_if=3D"xl0" > > webports=3D"{ http, https }" > >=20 > > table <abusers> counters persist > > table <sshguard> persist > >=20 > > set skip on lo > > scrub in > >=20 > > block in > > pass out > >=20 > > block quick from <abusers> to any > > block drop in log quick on $ext_if inet from <sshguard> to any > >=20 > > pass in on $ext_if proto tcp to any port ssh flags S/SA keep state (max= -src-conn 10, max-src-conn-rate 2/120, overload <abusers> flush) > >=20 > > antispoof quick for { lo $ext_if $int_if } > >=20 > > pass in on $ext_if proto tcp to ($ext_if) port ssh > > pass in log on $ext_if proto tcp to ($ext_if) port smtp > > pass out log on $ext_if proto tcp from ($ext_if) to port smtp > > pass in log on $ext_if proto tcp to ($ext_if) port $webports > > pass out log on $ext_if proto tcp from ($ext_if) to port $webports > >=20 > > pass in on $ext_if inet proto icmp from any to ($ext_if) icmp-type { un= reach, redir, timex } > >=20 > > <snip> > > Nov 2 07:51:13 ymer sshguard[19225]: Blocking 103.27.24.106:4 for >900= secs: 30 danger in 3 attacks over 18 seconds (all: 30d in 1 abuses over 18s= ). > > Nov 2 10:35:35 ymer sshguard[19225]: Blocking 60.190.71.52:4 for >900s= ecs: 30 danger in 3 attacks over 8 seconds (all: 30d in 1 abuses over 8s). > > Nov 2 11:09:50 ymer sshguard[19225]: Blocking 122.225.97.105:4 for >90= 0secs: 30 danger in 3 attacks over 65 seconds (all: 30d in 1 abuses over 65= s). > > Nov 2 13:10:52 ymer sshguard[19225]: Blocking 50.30.32.19:4 for >900se= cs: 30 danger in 3 attacks over 4 seconds (all: 30d in 1 abuses over 4s). > > Nov 2 14:34:55 ymer sshguard[19225]: Blocking 61.174.51.212:4 for >900= secs: 30 danger in 3 attacks over 69 seconds (all: 30d in 1 abuses over 69s= ). > >=20 > > Nov 2 16:32:09 ymer sshd[42957]: Connection from 202.109.143.110 port = 3453 on 192.168.1.2 port 22 > > Nov 2 16:32:13 ymer sshd[42957]: Disconnecting: Too many authenticatio= n failures for root [preauth] > > Nov 2 16:32:14 ymer sshd[42959]: Connection from 202.109.143.110 port = 2838 on 192.168.1.2 port 22 > > Nov 2 16:32:17 ymer sshd[42959]: Disconnecting: Too many authenticatio= n failures for root [preauth] > > Nov 2 16:32:21 ymer sshd[42961]: Connection from 202.109.143.110 port = 3611 on 192.168.1.2 port 22 > > Nov 2 16:32:34 ymer sshd[42961]: Disconnecting: Too many authenticatio= n failures for root [preauth] > > Nov 2 16:32:41 ymer sshd[42963]: Connection from 202.109.143.110 port = 2507 on 192.168.1.2 port 22 > > Nov 2 16:32:48 ymer sshd[42963]: Disconnecting: Too many authenticatio= n failures for root [preauth] > > Nov 2 16:32:49 ymer sshd[42965]: Connection from 202.109.143.110 port = 4650 on 192.168.1.2 port 22 > > Nov 2 16:32:52 ymer sshd[42965]: Disconnecting: Too many authenticatio= n failures for root [preauth] > > Nov 2 16:32:52 ymer sshd[42967]: Connection from 202.109.143.110 port = 4650 on 192.168.1.2 port 22 > > Nov 2 16:33:01 ymer sshd[42967]: Disconnecting: Too many authenticatio= n failures for root [preauth] > > Nov 2 16:33:02 ymer sshd[42983]: Connection from 202.109.143.110 port = 4316 on 192.168.1.2 port 22 > > Nov 2 16:33:12 ymer sshd[42983]: Disconnecting: Too many authenticatio= n failures for root [preauth] > > Nov 2 16:33:18 ymer sshd[42985]: Connection from 202.109.143.110 port = 2539 on 192.168.1.2 port 22 > > Nov 2 16:33:27 ymer sshd[42985]: Disconnecting: Too many authenticatio= n failures for root [preauth] > > Nov 2 16:33:28 ymer sshd[42987]: Connection from 202.109.143.110 port = 4555 on 192.168.1.2 port 22 > > Nov 2 16:33:35 ymer sshd[42987]: Disconnecting: Too many authenticatio= n failures for root [preauth] > > Nov 2 16:33:38 ymer sshd[42989]: Connection from 202.109.143.110 port = 3164 on 192.168.1.2 port 22 > > Nov 2 16:33:43 ymer sshd[42989]: Disconnecting: Too many authenticatio= n failures for root [preauth] > > Nov 2 16:33:43 ymer sshd[42991]: Connection from 202.109.143.110 port = 4749 on 192.168.1.2 port 22 > > Nov 2 16:33:52 ymer sshd[42991]: fatal: Read from socket failed: Conne= ction reset by peer [preauth] > > </snip> > >=20 > > Best Regards > > Hasse. >=20 > You are being attacked by script kiddies and bots, they scan a whole ip= =20 > address range looking for open port 22 and when its found they start=20 > their login attack. Changing ssh to use some other port number will stop= =20 > this attack all together. I changed ssh to use port '4422' 25 years ago= =20 > and no attacks since. Another way is to use the port named 'knock' to=20 > temporary open port 22 if proceeded by knock >=20 Thank you Fbsd8 for your answer. I'm aware of changing port for ssh, but I see it as a little bit of "giving= up" Gotta be some rather easy way of just blocking those attacks. Other than bl= ocking whole of CN and half of Asia. I've tried that too. It stopped the attacks a= nd gave me some room to think it over. But I still wonder why sshguard or pf don't block those attacks. shguard does it job on other probes, but not the root logins. PF doesn't se= em to do much at all. Probably my settings somewhere, but I can't figure out where. A wild guess from my side is that sshguard are using hosts.allow instead of= pf. Well, it doesn't do much harm other than cluttering up my logfiles anyway. I'll se if I have better luck with Ossec-hids. /hasse PS. Checked up on my installation of sshguard. Appearingly I missed the switch = pf. It's now properly installed showing up as "sshguard-pf-1.5_6" and immediately got a chance to test it. It's working. root@ymer:/var/log # pfctl -t sshguard -T show No ALTQ support in kernel ALTQ related functions disabled 61.174.51.208 --Kj7319i9nmIyA2yE Content-Type: application/pgp-signature -----BEGIN PGP SIGNATURE----- Version: GnuPG v2 iQEcBAEBAgAGBQJUWLIqAAoJELatlRZF6goTLn0H/0JMZyH76HccN81Xt/Lq44Yq wKsWsMV9hNWWSNvykDzg8l59FnJ1fjeB1uuyuIbOUSoAsPpN1qPzqZsLKwnGrjzZ BSufbJ9abdp7jpWxyJ7V91yevlRwGHH/AIYJM8RaO9ZiY1cWNOfMOHCFsalovoou GD+FYQzfMNT042fkA7a/1UlcvuQQZborHCTyXIvW3yGRs94KNX5Maj7rrDanRZUP FxPgccl7NVyAL9NQhtQ9il20mSoEoFWeCpRjLtYXOzUcTTp1YxriA+xcFrtLjRhD hukpjdr81HFf4H3bFfgneAhvBr6dClLGv3f6+ykc+ZpDj7k9/Ysth8P9ZsdZqa4= =W6df -----END PGP SIGNATURE----- --Kj7319i9nmIyA2yE-- From owner-freebsd-questions@FreeBSD.ORG Tue Nov 4 11:53:03 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 4E461647 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 11:53:03 +0000 (UTC) Received: from plane.gmane.org (plane.gmane.org [80.91.229.3]) (using TLSv1 with cipher AES256-SHA (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 0CB3D251 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 11:53:02 +0000 (UTC) Received: from list by plane.gmane.org with local (Exim 4.69) (envelope-from <freebsd-questions@m.gmane.org>) id 1XlcfM-0000lQ-9U for freebsd-questions@freebsd.org; Tue, 04 Nov 2014 12:52:52 +0100 Received: from vps.jonz.net ([216.17.42.59]) by main.gmane.org with esmtp (Gmexim 0.1 (Debian)) id 1AlnuQ-0007hv-00 for <freebsd-questions@freebsd.org>; Tue, 04 Nov 2014 12:52:52 +0100 Received: from SPAM_TRAP_gmane by vps.jonz.net with local (Gmexim 0.1 (Debian)) id 1AlnuQ-0007hv-00 for <freebsd-questions@freebsd.org>; Tue, 04 Nov 2014 12:52:52 +0100 X-Injected-Via-Gmane: http://gmane.org/ To: freebsd-questions@freebsd.org From: Jonesy <SPAM_TRAP_gmane@jonz.net> Subject: Re: sshguard pf Date: Tue, 4 Nov 2014 11:52:40 +0000 (UTC) Lines: 17 Message-ID: <slrnm5hfga.1ngf.SPAM_TRAP_gmane@vps.jonz.net> References: <20141102154444.GA42429@ymer.thorshammare.org> <54581F0E.4080404@a1poweruser.com> X-Complaints-To: usenet@ger.gmane.org X-Gmane-NNTP-Posting-Host: vps.jonz.net User-Agent: slrn/1.0.1 (FreeBSD) X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Tue, 04 Nov 2014 11:53:03 -0000 On Tue, 04 Nov 2014 08:34:22 +0800, Fbsd8 wrote: > > You are being attacked by script kiddies and bots, they scan a whole ip > address range looking for open port 22 and when its found they start > their login attack. > Changing ssh to use some other port number will stop > this attack all together. I changed ssh to use port '4422' 25 years ago > and no attacks since. +1 I changed the ssh port number here several years ago and the problem went from 50-100 per day (even _with_ sshguard) to zero, zip, zilch. Jonesy From owner-freebsd-questions@FreeBSD.ORG Tue Nov 4 11:54:44 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id E748972E for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 11:54:44 +0000 (UTC) Received: from outbound.ifdnrg.com (outbound.ifdnrg.com [193.200.98.38]) by mx1.freebsd.org (Postfix) with ESMTP id 8A50D26E for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 11:54:43 +0000 (UTC) Received: from [192.168.1.11] (host-78-148-104-204.as13285.net [78.148.104.204]) (authenticated bits=0) by outbound.ifdnrg.com (8.14.9/8.14.5) with ESMTP id sA4BZjUv091614 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES128-SHA bits=128 verify=NO) for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 11:35:46 GMT (envelope-from paul@ifdnrg.com) X-Authentication-Warning: outbound.ifdnrg.com: Host host-78-148-104-204.as13285.net [78.148.104.204] claimed to be [192.168.1.11] Message-ID: <5458BA0F.3010008@ifdnrg.com> Date: Tue, 04 Nov 2014 11:35:43 +0000 From: Paul Macdonald <paul@ifdnrg.com> User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:24.0) Gecko/20100101 Thunderbird/24.6.0 MIME-Version: 1.0 To: freebsd-questions@freebsd.org Subject: Re: sshguard pf References: <20141102154444.GA42429@ymer.thorshammare.org> <54581F0E.4080404@a1poweruser.com> <20141104110202.GA37003@ymer.thorshammare.org> In-Reply-To: <20141104110202.GA37003@ymer.thorshammare.org> Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 8bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Tue, 04 Nov 2014 11:54:45 -0000 On 04/11/2014 11:02, Hasse Hansson wrote: > Thank you Fbsd8 for your answer. > I'm aware of changing port for ssh, but I see it as a little bit of "givingup" > Gotta be some rather easy way of just blocking those attacks. Other than blocking > whole of CN and half of Asia. I've tried that too. It stopped the attacks and gave > me some room to think it over. the easy IS to change your ssh port, seriously it'll all just go away -- ------------------------- Paul Macdonald IFDNRG Ltd Web and video hosting ------------------------- t: 0131 5548070 m: 07970339546 e: paul@ifdnrg.com w: http://www.ifdnrg.com ------------------------- IFDNRG 40 Maritime Street Edinburgh EH6 6SA ---------------------------------------------------- High Specification Dedicated Servers from £100.00pm ---------------------------------------------------- From owner-freebsd-questions@FreeBSD.ORG Tue Nov 4 13:28:29 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id A0143FAD for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 13:28:29 +0000 (UTC) Received: from mail-ig0-x246.google.com (mail-ig0-x246.google.com [IPv6:2607:f8b0:4001:c05::246]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 694C91C1 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 13:28:29 +0000 (UTC) Received: by mail-ig0-f198.google.com with SMTP id hl2so37078785igb.5 for <freebsd-questions@freebsd.org>; Tue, 04 Nov 2014 05:28:28 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:message-id:date:subject:from:to:content-type; bh=vZ0fS7ET9FkI6HmXNo8SSJz1pKHM56fdInp7YrWNBnI=; b=znE21jHk2Pusc+0bAGYziq+n7fS3dD6Al2J2+BfAIwLXbmIKc24ay5Q6j7+fEs6WE9 voPFVIUU1+cWBUWbPYZeETBn8hXKeybsX1K8jXSvpIRFXdVEHXGQFr8T3ktEbUbgelQ8 avwD+xSEnDJFGGGum0RyMkd/D0xfT5yw1HXGrY7KeIfDs+d9MNEhJmHp5iw6Tn03YNeH qmcJj0nmyZdDa7npBPpxbNb+7LRlTBiEg+7ZZBZZ0qmB1F8ob2R6q7B0G5SGz1X3Wkz0 AL69GXlit38TMk+MITonWKh7l5wPI9sj+R0EqW9CTH++N/HGnxGYBz5ST/7vosSmAbFG pfvw== MIME-Version: 1.0 X-Received: by 10.182.168.114 with SMTP id zv18mr27327191obb.23.1415107708706; Tue, 04 Nov 2014 05:28:28 -0800 (PST) Message-ID: <e89a8f923a204be97d05070870eb@google.com> Date: Tue, 04 Nov 2014 13:28:28 +0000 Subject: Freebsddiary.org - audit report now available From: Alex Jonathan <alex.seomarketingservices@gmail.com> To: freebsd-questions@freebsd.org Content-Type: text/plain; charset=ISO-8859-1; format=flowed; delsp=yes X-Content-Filtered-By: Mailman/MimeDel 2.1.18-1 X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Tue, 04 Nov 2014 13:28:29 -0000 Dear owner of Freebsddiary.org, I'm sure you have been contacted in this matter many times before but our value proposition is much different. We show the client results before we ask for any further commitment. As a business owner you might be interested to gain profit by placing your website among top in search engines. Your website needs immediate improvement for some major issues with your website. -Low online presence for many competitive keyword phrases -Unorganized social media accounts -Not compatible with all mobile devices -Many bad back links to your website I have selected your website Freebsddiary.org and prepared a FREE website audit report. This is for you, completely free at no charge. If my proposal sound's interesting for your business goal, feel free to email me, or can provide me with your phone number and the best time to call you. I am also available for an online meeting to present you this website audit report. I look forward to hearing from you - thanks! Best Regards, *Alex Jonathan* Marketing Consultant PS: I am not spamming. I have studied your website, prepared an audit report and believe I can help with your business promotion. If you still want us to not contact you, you can ignore this email or ask to remove and I will not contact again. From owner-freebsd-questions@FreeBSD.ORG Tue Nov 4 14:26:20 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id D4A17C7 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 14:26:20 +0000 (UTC) Received: from fly.hiwaay.net (fly.hiwaay.net [216.180.54.1]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id A115EAF8 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 14:26:20 +0000 (UTC) Received: from kabini1.local (rbn1-216-180-19-58.adsl.hiwaay.net [216.180.19.58]) (authenticated bits=0) by fly.hiwaay.net (8.13.8/8.13.8/fly) with ESMTP id sA4EQI7r032024 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES128-SHA bits=128 verify=NO) for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 08:26:19 -0600 Message-ID: <5458E382.5090101@hiwaay.net> Date: Tue, 04 Nov 2014 08:32:34 -0600 From: "William A. Mahaffey III" <wam@hiwaay.net> User-Agent: Mozilla/5.0 (X11; FreeBSD amd64; rv:31.0) Gecko/20100101 Thunderbird/31.2.0 MIME-Version: 1.0 To: "FreeBSD Questions !!!!" <freebsd-questions@freebsd.org> Subject: puzzling X11/mouse problem .... Content-Type: text/plain; charset=utf-8; format=flowed Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Tue, 04 Nov 2014 14:26:20 -0000 I have had 2 instances in the last 3 days of my mouse locking up requiring a reboot to get it back. I am running XFCE desktop under FBSD 9.3-p3: [root@kabini1, /etc, 7:28:57am] 324 % uname -a FreeBSD kabini1.local 9.3-RELEASE-p3 FreeBSD 9.3-RELEASE-p3 #0: Mon Oct 20 15:08:33 UTC 2014 root@amd64-builder.daemonology.net:/usr/obj/usr/src/sys/GENERIC amd64 [root@kabini1, /etc, 8:29:05am] 325 % XFCE: xfce-4.10_6, X11: libX11-1.6.2_2,1 [root@kabini1, /etc, 8:29:32am] 326 % grep -i xf86 LIST.installed.txt libXxf86dga-1.1.4_2 X DGA Extension libXxf86misc-1.0.3_2 X XF86-Misc Extension libXxf86vm-1.1.3_2 X Vidmode Extension xf86-input-keyboard-1.8.0_6 X.Org keyboard input driver xf86-input-mouse-1.9.0_5 X.Org mouse input driver xf86-video-ati-7.2.0_4 X.Org ati display driver xf86-video-intel-2.21.15_4 Driver for Intel integrated graphics chipsets xf86-video-mach64-6.9.4_4 X.Org mach64 display driver xf86-video-nv-2.1.20_5 X.Org nv display driver xf86-video-openchrome-0.3.3_4 X.Org openChrome display driver xf86-video-r128-6.9.2_4 X.Org r128 display driver xf86-video-vesa-2.3.3_4 X.Org vesa display driver xf86dga-1.0.3_1 Test program for the XFree86-DGA extension xf86dgaproto-2.1 XFree86-DGA extension headers xf86driproto-2.1.1 XFree86-DRI extension headers xf86miscproto-0.9.3 XFree86-Misc extension headers xf86vidmodeproto-2.3.1 XFree86-VidModeExtension extension headers [root@kabini1, /etc, 8:30:10am] 327 % Anything else needed to help me debug, just/please ask. TIA .... -- William A. Mahaffey III ---------------------------------------------------------------------- "The M1 Garand is without doubt the finest implement of war ever devised by man." -- Gen. George S. Patton Jr. From owner-freebsd-questions@FreeBSD.ORG Tue Nov 4 14:37:10 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 9D530204; Tue, 4 Nov 2014 14:37:10 +0000 (UTC) Received: from mail-wi0-x235.google.com (mail-wi0-x235.google.com [IPv6:2a00:1450:400c:c05::235]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 03603BF9; Tue, 4 Nov 2014 14:37:09 +0000 (UTC) Received: by mail-wi0-f181.google.com with SMTP id n3so9471681wiv.14 for <multiple recipients>; Tue, 04 Nov 2014 06:37:06 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:in-reply-to:references:from:date:message-id:subject:to :cc:content-type; bh=cza4KYBMRaQS8hpEuX3JJal7wGxLut9nner04vsxwTM=; b=aSZ7th9+5vCxncej+hhzqffe60+JrRAh1PujJP5wNqIJozNzHoT7HvfKgEOgX+1TbL tnpCWMd1xNTk3D3jjvqPAWtkfVn05zY1rERtD5C4Ja2QI9i+jxyy1Nynjcv4zsnDjeJd 4A+BVdXFaIMsxMrD9VBEvtC+cdKe/ngvzCeL7ClTYmi3W93i1J1djswSg9n06n4CB5xT xm0g1iMbjd3YzeDV3O3j4PhSKMRf0YWd8t2BDF2Ehs191VPrHJeW0gZPUf7f8Mf27KBf uQoOqhzo/Lv7q3HsBR8yR1OklNStigw7+RCg5tO8ruKUkmjIrNNTe9hMW3oUrgckgGBR jEUw== X-Received: by 10.194.81.70 with SMTP id y6mr10831184wjx.113.1415111826785; Tue, 04 Nov 2014 06:37:06 -0800 (PST) MIME-Version: 1.0 Received: by 10.194.157.202 with HTTP; Tue, 4 Nov 2014 06:36:46 -0800 (PST) In-Reply-To: <7e30c7a0f28d63af254422a91b28f18a@dweimer.net> References: <CADGo8CW1QT60-Z2hW4NzVVG8yHB8MvqWEJXnG2aF51cjc0jC+w@mail.gmail.com> <BLU436-SMTP135FE2ACDCE9BC1B8D139AFFDA0@phx.gbl> <7e30c7a0f28d63af254422a91b28f18a@dweimer.net> From: Miguel Clara <miguelmclara@gmail.com> Date: Tue, 4 Nov 2014 14:36:46 +0000 Message-ID: <CADGo8CXrgA0ptdeWqO4-CqBo1aaWHKQcg_7hRD-5Gh79cwe0yA@mail.gmail.com> Subject: Re: Order of geli "passphrase prompt" on boot To: "freebsd-questions@freebsd.org" <freebsd-questions@freebsd.org> Content-Type: text/plain; charset=UTF-8 X-Content-Filtered-By: Mailman/MimeDel 2.1.18-1 Cc: freebsd-current <freebsd-current@freebsd.org> X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Tue, 04 Nov 2014 14:37:10 -0000 Sorry to bring this one back but I see no changes have been made to this in current. The issue is that USB devices are detected after the geli prompt and so the "geli paraphrase" prompt becomes hidden, and the simple solution would be to change the order the prompt show.... as in wait a few secs for the usb devices to be detected. Also the FreeBSD installer includes the zfs+geli install options, which encrypts root, so any user can do it now, yet when they boot they won't even see the passphrase prompt, which to me is really not inviting when we want to bring over the linux folks! Some linux distros even allow you to type the passphrase for the device in a neat prompt (black background mint logo ec...) but I don't think we need to go that far, that's probably something PC-BSD folks can do though (if they don't already). I understand tough that what some times seems simple from user perspective its really not for devs, so my question is: Is this a hard change to implement, and by change I just mean change the order or wait a few secs for usb device detection, or somehow stop this detection of the devices to "spam" the screen until a passphrase is entered!? Thanks Melhores Cumprimentos // Best Regards ----------------------------------------------- *Miguel Clara* *IT - Sys Admin & Developer* *E-mail: *miguelmclara@gmail.com www.linkedin.com/in/miguelmclara/ On Thu, Aug 28, 2014 at 5:01 PM, dweimer <dweimer@dweimer.net> wrote: > On 08/28/2014 10:20 am, Francesco Toscan wrote: > >> On Wed, Aug 27, 2014 at 12:42:31PM +0100, Miguel Clara wrote: >> >>> Hi, >>> >> >> Hi, >> >>> >>> Does any one know if there's a way to change the order of the passphrase >>> prompt when the disk is encrypted? >>> >>> The ways it is now devices get detected after this prompt (usb devices it >>> seems) and makes the prompt kind of hidden which complicates things for >>> less experience users! >>> >> >> I experienced this issue running 9.0. >> 10-RELEASE seems fine (as works for me...) but i didn't investigate. >> >> If your root partition is not encrypted, you can try to mount encrypted >> volumes later, adding the relevant bits into /etc/rc.local or a rc.d >> script. Just remove the BOOT flag from your volumes with >> >> geli configure -B provider >> > > I can confirm the issue on my laptop (Dell Lattitude E6520) with > 10.0-RELEASE-p7 using an encrypted boot on zfs, and booting from usb thumb > drive. It doesn't do it if I have no other USB devices plugged in in > addition to the USB thumb frive. However if its in the port replicator, > with external mouse/keyboard I get a lot of device discovery prompts > following the prompt for the password. Its only a nuisance for me, though > when I built it off the port replicator then took it into the office and > booted it the first time I thought I broke it and hard reset it. The next > boot I was watching closely and saw the prompt go by. > > -- > Thanks, > Dean E. Weimer > http://www.dweimer.net/ > From owner-freebsd-questions@FreeBSD.ORG Tue Nov 4 14:46:28 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id B7234799 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 14:46:28 +0000 (UTC) Received: from mail-yh0-x231.google.com (mail-yh0-x231.google.com [IPv6:2607:f8b0:4002:c01::231]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 7001FD0A for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 14:46:28 +0000 (UTC) Received: by mail-yh0-f49.google.com with SMTP id t59so7245067yho.36 for <freebsd-questions@freebsd.org>; Tue, 04 Nov 2014 06:46:27 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:in-reply-to:references:date:message-id:subject:from:to :cc:content-type; bh=+6G+GZ87X8v3a8YGg+Ezycd+g0XgyLJemlRRGJlZYAM=; b=gfyexBuzlDwsguczeb53nBduU79SzKYvOyCvEOCyiB22yrb3Ch6xlbhEBy9k7+m4Ec TZGRxnogSL/7gG1yyhXP9aqfG+qU0JsivmOJuIpxKkzLIFWu8DKf6lOZ15ZK46hehqCE ksoNvZZWE/6IXMgtGPvq+ngS0Nf8oMJECXRaFg9tm5w66IAs3myHnO6vuTP6/8lsVR7l R5T1qxmRpVA6kFK2bUY8a6b0meGZeWiX76SnCpYsyvREZFTM9G8d9OYdOQFcVtTnMKr5 HcNWt/gOdqjja1n1UEwZoVSnbhcqfCbeDsbDgOazeMspRtjYNOKC2nmsKTkJkuD0uUDm 4OZg== MIME-Version: 1.0 X-Received: by 10.170.151.137 with SMTP id s131mr39619161ykc.91.1415112387573; Tue, 04 Nov 2014 06:46:27 -0800 (PST) Received: by 10.170.156.139 with HTTP; Tue, 4 Nov 2014 06:46:27 -0800 (PST) In-Reply-To: <889081AC-3AD0-403A-82E8-98CCF79F9CC8@gmail.com> References: <E2B4270B-635D-4D75-9AE6-52D5C7830D02@gmail.com> <CABrb_G_euED_XWOU-msudaWchxoJis5EUi4cfE8=b_YJvnuS2g@mail.gmail.com> <889081AC-3AD0-403A-82E8-98CCF79F9CC8@gmail.com> Date: Tue, 4 Nov 2014 14:46:27 +0000 Message-ID: <CALfReyek2Scv5CqQ9bLLvW1YuAFmYo8vBZUH4VtXE1V0HLriOg@mail.gmail.com> Subject: Re: ZFS Root Mount Failure From: krad <kraduk@gmail.com> To: Stephen R Guglielmo <srguglielmo@gmail.com> Content-Type: text/plain; charset=UTF-8 X-Content-Filtered-By: Mailman/MimeDel 2.1.18-1 Cc: Erik Gustafson <gustafson.erik@gmail.com>, FreeBSD Mailing list <freebsd-questions@freebsd.org> X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Tue, 04 Nov 2014 14:46:28 -0000 check you the file system you have the hosts the vdi files hasnt filled up. If it has it can often send the disk into read only mode. Ive had this happen a few times on my test rig On 3 November 2014 19:05, Stephen R Guglielmo <srguglielmo@gmail.com> wrote: > > > On October 29, 2014 4:49:55 AM EDT, Erik Gustafson < > gustafson.erik@gmail.com> wrote: > >On Tue, Oct 28, 2014 at 10:40 PM, Stephen R Guglielmo > ><srguglielmo@gmail.com > >> wrote: > > > >> Hey list, > >> > >> I have a machine running ZFS on root. It stopped responding this > >morning, > >> and upon a reboot, it was unable to mount root from zfs:zroot. It > >gave the > >> explanation of "error 5." > >> > >> I played with the mount prompt briefly, but didn't get anywhere. Any > >tips > >> for diagnosing and fixing the problem? > >> > > > >I had a similar issue recently. Error 5 on mount root. This was in > >virtaulbox after some sort of unexpected shutdown. > >To resolve i first made a snapshot in virtualbox > >booted from freebsd-disc1.iso (install dvd) > >zpool import > >reboot (and boot from zroot) > >zpool scrub > > > >zpool scrub said that i was going to loose some recently written data > >(generated by nightly poudrire build) > >I don't remember all, probably I needed some parameter to zpool import > >but > >all error messages were helpful it was quite easy to get it working > >again. > > > >Good luck and don't forget the backup/snapshot > > Erik, > > Thanks for the help! I was able to boot from a FreeBSD 10 CD. I got into > the LiveCD shell and imported the zpool with no problems. It said my 4 > disks were online. I then rebooted, however I got the same error at the > mountroot prompt: "Mounting from zfs:zroot failed with error 5." > > I'll try to play a bit more, maybe scrubbing it or something from the > livecd. > > Thanks, > Steve > _______________________________________________ > freebsd-questions@freebsd.org mailing list > http://lists.freebsd.org/mailman/listinfo/freebsd-questions > To unsubscribe, send any mail to " > freebsd-questions-unsubscribe@freebsd.org" > From owner-freebsd-questions@FreeBSD.ORG Tue Nov 4 14:50:18 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id DC712873 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 14:50:17 +0000 (UTC) Received: from mail-yh0-x22a.google.com (mail-yh0-x22a.google.com [IPv6:2607:f8b0:4002:c01::22a]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 9767DD41 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 14:50:17 +0000 (UTC) Received: by mail-yh0-f42.google.com with SMTP id 29so7898876yhl.1 for <freebsd-questions@freebsd.org>; Tue, 04 Nov 2014 06:50:16 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:in-reply-to:references:date:message-id:subject:from:to :cc:content-type; bh=lAWGgmpysDvPSnHFSKqC+4jvsVNgYIw0WsgbEDDGahg=; b=I2OGvdTkY0PbUTAg2084mzNHRk/2Vin1VpGGvYK/yxpwfdUe1qhzFV3fWHyj0DRj8F zBzBqwQhZZoaC6fMgSNtw636CEIims2zh2f0Bghr3vM4pZDbfv0RreC9ntcpB0NlfFcT jFcOjjQdptAJfEaRg9RrLO9PaeA731C7E8H5ayU1oDA/PpZpUz1XqQzytBpHj/TlUqkV ACzH2qdqqqeW1au3PaCfIB18oGlRFmXVbQ7lEmCBDYViRXk+R8xqW+c+9rRiuphlXHjN W7odlKtylvjuxBTezMzzCG1UQBzq2sBLPgGNTSSW0vdTJewYbv+l0BJ1mSF1s3JK7usf xyuA== MIME-Version: 1.0 X-Received: by 10.236.47.161 with SMTP id t21mr35842533yhb.100.1415112616773; Tue, 04 Nov 2014 06:50:16 -0800 (PST) Received: by 10.170.156.139 with HTTP; Tue, 4 Nov 2014 06:50:16 -0800 (PST) In-Reply-To: <alpine.BSF.2.00.1411022041450.8732@helix.wtfayla.net> References: <86lhnup5l3.fsf@gly.ftfl.ca> <alpine.BSF.2.00.1411022041450.8732@helix.wtfayla.net> Date: Tue, 4 Nov 2014 14:50:16 +0000 Message-ID: <CALfReyc2g0HVbt-Q0r_p5mxFh++Hsrm-XypXOJDrfyvdEbHT3A@mail.gmail.com> Subject: Re: Can't get Unbound caching/recursive server to answer on outside IP From: krad <kraduk@gmail.com> To: freebsd@fongaboo.com Content-Type: text/plain; charset=UTF-8 X-Content-Filtered-By: Mailman/MimeDel 2.1.18-1 Cc: FreeBSD Questions <freebsd-questions@freebsd.org> X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Tue, 04 Nov 2014 14:50:18 -0000 have a look at sockstat -l On 3 November 2014 01:49, <freebsd@fongaboo.com> wrote: > > Have a FreeBSD 10 machine. Have two outside IPs bound to it. First IP has > NSD running as an authoritative server. THis is specified specifically in > the interface entry of nsd.conf. > > Trying to run caching/recursive nameserver with unbound on the second IP. > I specified the following entries in unbound.conf: > > interface: 127.0.0.1 > interface: <Second IP> > > > I followed the tutorial at https://calomel.org/unbound_dns.html. I added > lines for unbound-control. But other than that, and the extra interface > lines, its as specified in the tutorial... Oh, also the locations are > modified from /var/unbound/etc/ to /var/unbound/. > > I can get it to resolve when I run nslookup and set the server to > 127.0.0.1, but not when I set it to the second IP. > > I'm wondering if something else is floating around on 127.0.0.1 port 53? > Because when I run unbound-control dump_requestlist, I get an empty list. I > would think I would see the requests I made successfully on 127.0.0.1. > > BTW, I have this in IPFW: > > allow udp from any to any dst-port 53 in > > > Any ideas why I can't get answers on the second IP? > > > ------------------------------------------------------------------------- > shot through the heart ooh baby do you know what that's worth > and you're to blame ooh heaven is a place on earth > darling you give love they say in heaven love comes first > a bad name we'll make heaven a place on earth > ORBITAL "Halcyon Live" > > _______________________________________________ > freebsd-questions@freebsd.org mailing list > http://lists.freebsd.org/mailman/listinfo/freebsd-questions > To unsubscribe, send any mail to "freebsd-questions- > unsubscribe@freebsd.org" > From owner-freebsd-questions@FreeBSD.ORG Tue Nov 4 15:00:04 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id A5739BCC; Tue, 4 Nov 2014 15:00:04 +0000 (UTC) Received: from smtprelay06.ispgateway.de (smtprelay06.ispgateway.de [80.67.31.102]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 5FEAEE40; Tue, 4 Nov 2014 15:00:04 +0000 (UTC) Received: from [78.35.187.124] (helo=fabiankeil.de) by smtprelay06.ispgateway.de with esmtpsa (TLSv1.2:AES128-GCM-SHA256:128) (Exim 4.84) (envelope-from <freebsd-listen@fabiankeil.de>) id 1Xlfa4-0000mD-Gl; Tue, 04 Nov 2014 15:59:36 +0100 Date: Tue, 4 Nov 2014 15:59:37 +0100 From: Fabian Keil <freebsd-listen@fabiankeil.de> To: Miguel Clara <miguelmclara@gmail.com> Subject: Re: Order of geli "passphrase prompt" on boot Message-ID: <33b02299.70afc6f7@fabiankeil.de> In-Reply-To: <CADGo8CXrgA0ptdeWqO4-CqBo1aaWHKQcg_7hRD-5Gh79cwe0yA@mail.gmail.com> References: <CADGo8CW1QT60-Z2hW4NzVVG8yHB8MvqWEJXnG2aF51cjc0jC+w@mail.gmail.com> <BLU436-SMTP135FE2ACDCE9BC1B8D139AFFDA0@phx.gbl> <7e30c7a0f28d63af254422a91b28f18a@dweimer.net> <CADGo8CXrgA0ptdeWqO4-CqBo1aaWHKQcg_7hRD-5Gh79cwe0yA@mail.gmail.com> MIME-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha1; boundary="Sig_/eM_NKnFpQcZM7_tLYVNNGe4"; protocol="application/pgp-signature" X-Df-Sender: Nzc1MDY3 Cc: freebsd-current <freebsd-current@freebsd.org>, "freebsd-questions@freebsd.org" <freebsd-questions@freebsd.org> X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Tue, 04 Nov 2014 15:00:04 -0000 --Sig_/eM_NKnFpQcZM7_tLYVNNGe4 Content-Type: text/plain; charset=US-ASCII Content-Transfer-Encoding: quoted-printable Miguel Clara <miguelmclara@gmail.com> wrote: > Sorry to bring this one back but I see no changes have been made to this = in > current. >=20 > The issue is that USB devices are detected after the geli prompt and so t= he > "geli paraphrase" prompt becomes hidden, and the simple solution would be > to change the order the prompt show.... as in wait a few secs for the usb > devices to be detected. If you don't need any USB devices to boot, you can delay their detection by loading the modules through /etc/rc.d/kld instead of the loader: fk@r500 ~ $grep kld /etc/rc.conf kld_list=3D"usb.ko usb_quirk.ko ehci.ko umass.ko" Fabian --Sig_/eM_NKnFpQcZM7_tLYVNNGe4 Content-Type: application/pgp-signature Content-Description: OpenPGP digital signature -----BEGIN PGP SIGNATURE----- Version: GnuPG v2 iEYEARECAAYFAlRY6dkACgkQBYqIVf93VJ2BTACeI0guNPgOZxHYiPGhdkF4czN4 E54An31rkxWTLyiCEAUQm9Ay6HifZEup =8aNg -----END PGP SIGNATURE----- --Sig_/eM_NKnFpQcZM7_tLYVNNGe4-- From owner-freebsd-questions@FreeBSD.ORG Tue Nov 4 15:09:06 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 70F63B0 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 15:09:06 +0000 (UTC) Received: from mx01.qsc.de (mx01.qsc.de [213.148.129.14]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 333EFF55 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 15:09:05 +0000 (UTC) Received: from r56.edvax.de (port-92-195-37-193.dynamic.qsc.de [92.195.37.193]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by mx01.qsc.de (Postfix) with ESMTPS id 247083CC9C; Tue, 4 Nov 2014 16:09:02 +0100 (CET) Received: from r56.edvax.de (localhost [127.0.0.1]) by r56.edvax.de (8.14.5/8.14.5) with SMTP id sA4F92h3002892; Tue, 4 Nov 2014 16:09:02 +0100 (CET) (envelope-from freebsd@edvax.de) Date: Tue, 4 Nov 2014 16:09:02 +0100 From: Polytropon <freebsd@edvax.de> To: "William A. Mahaffey III" <wam@hiwaay.net> Subject: Re: puzzling X11/mouse problem .... Message-Id: <20141104160902.3f5b9a5e.freebsd@edvax.de> In-Reply-To: <5458E382.5090101@hiwaay.net> References: <5458E382.5090101@hiwaay.net> Reply-To: Polytropon <freebsd@edvax.de> Organization: EDVAX X-Mailer: Sylpheed 3.1.1 (GTK+ 2.24.5; i386-portbld-freebsd8.2) Mime-Version: 1.0 Content-Type: text/plain; charset=US-ASCII Content-Transfer-Encoding: 7bit Cc: FreeBSD Questions !!!! <freebsd-questions@freebsd.org> X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Tue, 04 Nov 2014 15:09:06 -0000 On Tue, 04 Nov 2014 08:32:34 -0600, William A. Mahaffey III wrote: > > > I have had 2 instances in the last 3 days of my mouse locking up > requiring a reboot to get it back. I am running XFCE desktop under FBSD > 9.3-p3: Huh, that works? :-) > Anything else needed to help me debug, just/please ask. TIA .... HAL/DBUS problem, X configuration, reinstalling X11 drivers for input devices... somehow sounds familiar... Do you get any suspicious entries in /var/log/Xorg.0.log? https://www.freebsd.org/doc/handbook/x-config.html http://www.wonkity.com/~wblock/docs/html/aei.html -- Polytropon Magdeburg, Germany Happy FreeBSD user since 4.0 Andra moi ennepe, Mousa, ... From owner-freebsd-questions@FreeBSD.ORG Tue Nov 4 15:11:47 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id D304B23F for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 15:11:47 +0000 (UTC) Received: from mail-yh0-x234.google.com (mail-yh0-x234.google.com [IPv6:2607:f8b0:4002:c01::234]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 8E8101000 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 15:11:47 +0000 (UTC) Received: by mail-yh0-f52.google.com with SMTP id v1so2583929yhn.25 for <freebsd-questions@freebsd.org>; Tue, 04 Nov 2014 07:11:46 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:in-reply-to:references:date:message-id:subject:from:to :cc:content-type; bh=BuOju3nPJlSdTX/yYGuCIn6NrfWDF6zCbf50JqKp1Qk=; b=KEoxos4QwnITF+78pX9TpHLD42bmkgvPXsYr/QG26u/SvFv17j4Qx3gWnx65vv/BhW 06Of/T6sBbjZPw0lWgzGr7UqPGLzdray+ux97gASSPf1TNcOvU8gUu0KaydPydJStmDQ m34GRiaIv2naLHu3KYnQFkt1HMxbjTa/opTqO05jDu3FnyOF1otDsXb4UamTqlvCh+uI p8mO8GRl9HzOBxYn6wyI001yhJh1R2VW8/Nl3L0dZT7tWSVHiifuHvlH8ez55pNUlDrV iXLoaoVJrF7jKIsz7cv3YuWwwmt5mHYyW6LjTNYp0/3j+0SauhoacMKxiscQ3Q5eLr5J i3ng== MIME-Version: 1.0 X-Received: by 10.170.174.67 with SMTP id q64mr2164832ykd.103.1415113906779; Tue, 04 Nov 2014 07:11:46 -0800 (PST) Received: by 10.170.156.139 with HTTP; Tue, 4 Nov 2014 07:11:46 -0800 (PST) In-Reply-To: <4424214.PdRTGivWqz@curlew.lan> References: <545409E0.9030809@bluerosetech.com> <5454B500.5030501@infracaninophile.co.uk> <4424214.PdRTGivWqz@curlew.lan> Date: Tue, 4 Nov 2014 15:11:46 +0000 Message-ID: <CALfReye9buP2D74ihCrgYko4W1_tEz6fR3qEvBefYv4YuMwoKw@mail.gmail.com> Subject: Re: Root-on-ZFS upgrade question From: krad <kraduk@gmail.com> To: Mike Clarke <jmc-freebsd2@milibyte.co.uk> Content-Type: text/plain; charset=UTF-8 X-Content-Filtered-By: Mailman/MimeDel 2.1.18-1 Cc: FreeBSD Questions <freebsd-questions@freebsd.org> X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Tue, 04 Nov 2014 15:11:47 -0000 I would go old school and do a buildworld and kernel, then set the DESTDIR variable when you do the install parts and mergmaster Then activate and reboot. finally tweak pkg.conf to point at 10 rather than 9, and then do a pkg upgrade -f On 1 November 2014 22:35, Mike Clarke <jmc-freebsd2@milibyte.co.uk> wrote: > On Saturday 01 Nov 2014 10:25:04 Matthew Seaman wrote: > > > If your original system had been maintained via freebsd-update(8) > > you could just use that to upgrade to 10.1-RELEASE in place -- when > > it tells you to reboot, just run freebsd-update again. > > I think the second run of freebsd-update needs to be applied after > booting into the new environment so do it after the beadm activate > step. > > An alternative approach is to activate the new environment immediately > after creating it and then reboot and upgrade the new environment to > rev. 10 in the "conventional" way. > > The chroot approach means that you can sort out upgrading the OS and > reinstalling all the ports at leisure without disrupting your working > system until you're ready for the final switch over. I normally use > this approach for major port upgrades and dot level system upgrades > within the same release level but I had problems with upgrading from > 9.1 to 10.0 due, I assune, to incompatibilities between the 10.0 > applications and the running 9.1 kernel. > > If you want to keep the option of reverting to your 9.x system after > the upgrade then you need to make sure that all OS release level > dependant directories like most of /usr and /usr/local are contained > in the boot environment. On the other hand you can save disk space and > download time by placing /usr/ports/distfiles outside of the boot > environment. You will probably also want to keep /var/log, /var/mail > and application databases, e.g. /var/db/mysql, outside of the boot > environment. > > -- > Mike Clarke > _______________________________________________ > freebsd-questions@freebsd.org mailing list > http://lists.freebsd.org/mailman/listinfo/freebsd-questions > To unsubscribe, send any mail to " > freebsd-questions-unsubscribe@freebsd.org" > From owner-freebsd-questions@FreeBSD.ORG Tue Nov 4 15:25:29 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 3543E3F4 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 15:25:29 +0000 (UTC) Received: from fly.hiwaay.net (fly.hiwaay.net [216.180.54.1]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id F1C011A6 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 15:25:28 +0000 (UTC) Received: from kabini1.local (rbn1-216-180-19-58.adsl.hiwaay.net [216.180.19.58]) (authenticated bits=0) by fly.hiwaay.net (8.13.8/8.13.8/fly) with ESMTP id sA4FPRMl016237 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES128-SHA bits=128 verify=NO) for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 09:25:27 -0600 Message-ID: <5458F15E.9090509@hiwaay.net> Date: Tue, 04 Nov 2014 09:31:42 -0600 From: "William A. Mahaffey III" <wam@hiwaay.net> User-Agent: Mozilla/5.0 (X11; FreeBSD amd64; rv:31.0) Gecko/20100101 Thunderbird/31.2.0 MIME-Version: 1.0 CC: "FreeBSD Questions !!!!" <freebsd-questions@freebsd.org> Subject: Re: puzzling X11/mouse problem .... References: <5458E382.5090101@hiwaay.net> <20141104160902.3f5b9a5e.freebsd@edvax.de> In-Reply-To: <20141104160902.3f5b9a5e.freebsd@edvax.de> Content-Type: text/plain; charset=windows-1252; format=flowed Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Tue, 04 Nov 2014 15:25:29 -0000 On 11/04/14 09:09, Polytropon wrote: > On Tue, 04 Nov 2014 08:32:34 -0600, William A. Mahaffey III wrote: >> >> I have had 2 instances in the last 3 days of my mouse locking up >> requiring a reboot to get it back. I am running XFCE desktop under FBSD >> 9.3-p3: > Huh, that works? :-) > > > >> Anything else needed to help me debug, just/please ask. TIA .... > HAL/DBUS problem, X configuration, reinstalling X11 drivers > for input devices... somehow sounds familiar... > > Do you get any suspicious entries in /var/log/Xorg.0.log? > > https://www.freebsd.org/doc/handbook/x-config.html > > http://www.wonkity.com/~wblock/docs/html/aei.html > > > Here goes: [root@kabini1, /etc, 8:35:23am] 335 % grep -i mouse /var/log/Xorg.0.log.old [ 41.267] (**) |-->Input Device "Mouse0" [ 41.338] (WW) Hotplugging is on, devices using drivers 'kbd', 'mouse' or 'vmmouse' will be disabled. [ 41.338] (WW) Disabling Mouse0 [ 43.429] (II) LoadModule: "mouse" [ 43.445] (II) Loading /usr/local/lib/xorg/modules/input/mouse_drv.so [ 43.462] (II) Module mouse: vendor="X.Org Foundation" [ 43.463] (II) Using input driver 'mouse' for 'USB Keyboard' [ 43.463] (**) Option "Device" "/dev/sysmouse" [ 43.463] (II) XINPUT: Adding extended input device "USB Keyboard" (type: MOUSE, id 6) [ 43.464] (II) USB Keyboard: SetupAuto: protocol is SysMouse [222044.088] (II) UnloadModule: "mouse" [root@kabini1, /etc, 8:35:52am] 336 % grep -i mouse /var/log/Xorg.0.log [ 32.463] (**) |-->Input Device "Mouse0" [ 32.550] (WW) Hotplugging is on, devices using drivers 'kbd', 'mouse' or 'vmmouse' will be disabled. [ 32.550] (WW) Disabling Mouse0 [ 35.022] (II) LoadModule: "mouse" [ 35.037] (II) Loading /usr/local/lib/xorg/modules/input/mouse_drv.so [ 35.077] (II) Module mouse: vendor="X.Org Foundation" [ 35.078] (II) Using input driver 'mouse' for 'USB Keyboard' [ 35.078] (**) Option "Device" "/dev/sysmouse" [ 35.078] (II) XINPUT: Adding extended input device "USB Keyboard" (type: MOUSE, id 6) [ 35.079] (II) USB Keyboard: SetupAuto: protocol is SysMouse [root@kabini1, /etc, 8:36:23am] 337 % grep -i mouse /var/log/dmesg.today ums1: <Kensington Kensington PilotMouse Laser - 6 Button, class 0/0, rev 1.10/2.20, addr 3> on usbus4 [root@kabini1, /etc, 8:36:57am] 338 % grep -i mouse /var/log/dmesg.yesterday ums1: <Kensington Kensington PilotMouse Laser - 6 Button, class 0/0, rev 1.10/2.20, addr 3> on usbus4 [root@kabini1, /etc, 8:37:03am] 339 % I note the UnloadModule: "mouse" in xorg.0.log.old, although no timestamps .... I suspect that may be the problem, but I don't know what caused it. pkg doesn't show any new X11/xf86 stuff, si I think I am up to date: [root@kabini1, /etc, 8:37:03am] 339 % pkg version -vIL= deluge-1.3.10,1 > succeeds index (index has 1.3.9,1) dri-9.1.7_6,2 > succeeds index (index has 9.1.7_5,2) git-2.1.2 > succeeds index (index has 2.1.0) libGL-9.1.7_3 > succeeds index (index has 9.1.7_2) libdrm-2.4.58_1,1 > succeeds index (index has 2.4.52_1,1) libevent2-2.0.21_3 > succeeds index (index has 2.0.21_2) libglapi-9.1.7_2 > succeeds index (index has 9.1.7_1) libmspub01-0.1.1 > succeeds index (index has 0.1.0_1) libreoffice-4.3.2 > succeeds index (index has 4.2.5_5) libxml2-2.9.2_1 > succeeds index (index has 2.9.1_1) libxul-24.8.1 < needs updating (index has 31.2.0) lsof-4.88,8 > succeeds index (index has 4.88.g,8) png-1.5.19 > succeeds index (index has 1.5.18) py27-libxml2-2.9.2 > succeeds index (index has 2.9.1) sudo-1.8.11.p1 > succeeds index (index has 1.8.10.p3_1) virtualbox-ose-4.3.18 > succeeds index (index has 4.3.16) virtualbox-ose-additions-4.3.18 > succeeds index (index has 4.3.16_1) virtualbox-ose-kmod-4.3.18 > succeeds index (index has 4.3.16) xfce4-wm-4.10.1_1 > succeeds index (index has 4.10.1) [root@kabini1, /etc, 9:30:39am] 340 % pkg version -vRL= Updating FreeBSD repository catalogue... FreeBSD repository is up-to-date. Updating FreeBSD_new_xorg repository catalogue... FreeBSD_new_xorg repository is up-to-date. All repositories are up-to-date. adns-1.4_2 < needs updating (remote has 1.5) db46-4.6.21.4 ? orphaned: databases/db46 dbus-1.8.8 < needs updating (remote has 1.8.8_1) desktop-file-utils-0.22_2 < needs updating (remote has 0.22_3) gnutls-3.2.19 < needs updating (remote has 3.2.19_1) htop-1.0.2_1 < needs updating (remote has 1.0.3) libcdr-0.0.16_2 ? orphaned: graphics/libcdr libfreehand00-0.0.0 ? orphaned: graphics/libfreehand00 libmspub-0.0.6_3 ? orphaned: print/libmspub libpurple-2.10.9_7 < needs updating (remote has 2.10.10) libxul-24.8.1 < needs updating (remote has 31.2.0) linux-c6-flashplugin-11.2r202.406 ? orphaned: www/linux-c6-flashplugin11 linux-c6-openssl-1.0.1e < needs updating (remote has 1.0.1e_1) linux_base-c6-6.5_1 < needs updating (remote has 6.5_2) netpbm-10.35.92_1 < needs updating (remote has 10.35.94) pidgin-2.10.9_4 < needs updating (remote has 2.10.10) serf-1.3.7_1 < needs updating (remote has 1.3.8) xf86-video-intel-2.21.15_4 < needs updating (remote has 2.21.15_5) [root@kabini1, /etc, 9:30:46am] 341 % Anything else ? -- William A. Mahaffey III ---------------------------------------------------------------------- "The M1 Garand is without doubt the finest implement of war ever devised by man." -- Gen. George S. Patton Jr. From owner-freebsd-questions@FreeBSD.ORG Tue Nov 4 15:31:56 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id EDE96566 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 15:31:56 +0000 (UTC) Received: from be-well.ilk.org (be-well.ilk.org [23.30.133.173]) by mx1.freebsd.org (Postfix) with ESMTP id C5A9B287 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 15:31:56 +0000 (UTC) Received: from lowell-desk.lan (lowell-desk.lan [172.30.250.41]) by be-well.ilk.org (Postfix) with ESMTP id 3B11633C48; Tue, 4 Nov 2014 10:31:44 -0500 (EST) Received: by lowell-desk.lan (Postfix, from userid 1147) id 218083980E; Tue, 4 Nov 2014 10:31:42 -0500 (EST) From: Lowell Gilbert <freebsd-questions-local@be-well.ilk.org> To: Hasse Hansson <hasse@thorshammare.org> Subject: Re: sshguard pf References: <20141102154444.GA42429@ymer.thorshammare.org> <54581F0E.4080404@a1poweruser.com> <20141104110202.GA37003@ymer.thorshammare.org> Date: Tue, 04 Nov 2014 10:31:42 -0500 In-Reply-To: <20141104110202.GA37003@ymer.thorshammare.org> (Hasse Hansson's message of "Tue, 4 Nov 2014 12:02:02 +0100") Message-ID: <44vbmv6kyp.fsf@lowell-desk.lan> User-Agent: Gnus/5.13 (Gnus v5.13) Emacs/24.3 (berkeley-unix) MIME-Version: 1.0 Content-Type: text/plain Cc: freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Tue, 04 Nov 2014 15:31:57 -0000 Hasse Hansson <hasse@thorshammare.org> writes: > I'm aware of changing port for ssh, but I see it as a little bit of "givingup" > Gotta be some rather easy way of just blocking those attacks. Other than blocking > whole of CN and half of Asia. I've tried that too. It stopped the attacks and gave > me some room to think it over. Changing the port won't help you avoid attacks that might succeed, but it will substantially reduce the clutter that you need to look through. I don't do it because I've had problems with paranoid networks blocking everything but a few special ports, where ssh is one of the allowed ones, but I don't know if anybody's still doing anything that silly. > But I still wonder why sshguard or pf don't block those attacks. > shguard does it job on other probes, but not the root logins. PF doesn't seem > to do much at all. Firewalls won't help detect the attack. They can be used to keep someone out once the attack has been detected. I don't know sshguard, so I can't tell you why it isn't working for you, but there certainly are ports that can do so. I use bruteblock, for example, but I know there are several other options that do the same thing. From owner-freebsd-questions@FreeBSD.ORG Tue Nov 4 16:25:42 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 0C8D17D3 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 16:25:42 +0000 (UTC) Received: from avasout08.plus.net (avasout08.plus.net [212.159.14.20]) (using TLSv1 with cipher DHE-RSA-AES128-SHA (128/128 bits)) (Client CN "Bizanga Labs SMTP Client Certificate", Issuer "Bizanga Labs CA" (not verified)) by mx1.freebsd.org (Postfix) with ESMTPS id 87711A80 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 16:25:40 +0000 (UTC) Received: from curlew.milibyte.co.uk ([84.92.153.232]) by avasout08 with smtp id BURW1p002516WCc01URXNe; Tue, 04 Nov 2014 16:25:31 +0000 X-CM-Score: 0.00 X-CNFS-Analysis: v=2.1 cv=XuZ0OD19 c=1 sm=1 tr=0 a=lfSX4pPLp9EkufIcToJk/A==:117 a=lfSX4pPLp9EkufIcToJk/A==:17 a=D7rCoLxHAAAA:8 a=0Bzu9jTXAAAA:8 a=GIpPufGBusUA:10 a=8nJEP1OIZ-IA:10 a=6I5d2MoRAAAA:8 a=v6wH43Vdlbg-1semvFwA:9 a=wPNLvfGTeEIA:10 Received: from sedbergh.lan ([192.168.1.13] helo=curlew.lan) by curlew.milibyte.co.uk with esmtp (Exim 4.84) (envelope-from <jmc-freebsd2@milibyte.co.uk>) id 1XlgvB-0000pD-LF for freebsd-questions@freebsd.org; Tue, 04 Nov 2014 16:25:30 +0000 From: Mike Clarke <jmc-freebsd2@milibyte.co.uk> To: freebsd-questions@freebsd.org Date: Tue, 04 Nov 2014 16:25:28 +0000 Message-ID: <3112581.di7TUJWQMQ@curlew.lan> User-Agent: KMail/4.14.2 (FreeBSD/10.1-RC1-p1; KDE/4.14.2; amd64; ; ) In-Reply-To: <CALfReye9buP2D74ihCrgYko4W1_tEz6fR3qEvBefYv4YuMwoKw@mail.gmail.com> References: <545409E0.9030809@bluerosetech.com> <4424214.PdRTGivWqz@curlew.lan> <CALfReye9buP2D74ihCrgYko4W1_tEz6fR3qEvBefYv4YuMwoKw@mail.gmail.com> MIME-Version: 1.0 X-SA-Exim-Connect-IP: 192.168.1.13 X-SA-Exim-Mail-From: jmc-freebsd2@milibyte.co.uk X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on curlew.lan X-Spam-Level: X-Spam-Status: No, score=-2.9 required=5.0 tests=ALL_TRUSTED,BAYES_00 autolearn=ham autolearn_force=no version=3.4.0 Subject: Re: Root-on-ZFS upgrade question Content-Transfer-Encoding: 7Bit Content-Type: text/plain; charset="iso-8859-1" X-SA-Exim-Version: 4.2 X-SA-Exim-Scanned: Yes (on curlew.milibyte.co.uk) X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Tue, 04 Nov 2014 16:25:42 -0000 On Tuesday 04 Nov 2014 15:11:46 krad wrote: > I would go old school and do a buildworld and kernel, then set the > DESTDIR variable when you do the install parts and mergmaster If you use beadm to create and mount a new environment and then chroot into it to build the world and kernel as described earlier in this thread then you won't need to bother about setting DESTDIR. > Then activate and reboot. > > finally tweak pkg.conf to point at 10 rather than 9, No need to tweak it - /etc/pkg/FreeBSD.conf contains the line: Url: "pkg+http://pkg.FreeBSD.org/${ABI}/latest", pkg will evaluate this to match the OS version and hardware of the boot environment. To avoid conflicts with your 9.x system you need to keep /usr and /usr/local inside your boot environment structure.. > and then do a pkg upgrade -f Since you've changed release level it's safer to sort out the packages after booting the new environment instead of in a chroot. Safer to make a list of all your packages then delete them all and reinstall. Also you should have the correct version of pkg for your current OS so cd to /usr/ports-mgmt/pkg and run make install before attempting to install or upgrade the rest of your packages. -- Mike Clarke From owner-freebsd-questions@FreeBSD.ORG Tue Nov 4 16:57:59 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 9BEE375D for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 16:57:59 +0000 (UTC) Received: from mail-qg0-x22e.google.com (mail-qg0-x22e.google.com [IPv6:2607:f8b0:400d:c04::22e]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 5C25EDCB for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 16:57:59 +0000 (UTC) Received: by mail-qg0-f46.google.com with SMTP id i50so9666454qgf.5 for <freebsd-questions@freebsd.org>; Tue, 04 Nov 2014 08:57:58 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=from:user-agent:mime-version:content-transfer-encoding:content-type :subject:date:to:message-id; bh=6BSkzragGoUxnWRZb5wQhElWcEYZbi7qONyN1F4k9Co=; b=TtWC6DokPtMptDi2ABE9cLOlPkydmfhez2w5cvKXUDraPOAvl0yVENjyXNcHLUXP0q zTiyYQGz4KF33c8lI1toJeAZ+ON0Z7O2DnIGIPWOrpmqJqwmFhiqzKy+br7fSWxDURQY zRWuccrfXT15SVZnM3sKpIRi6yJWigws0zwqIEEHV5Jt99Re9alcn5A0jg8vZugGdvfO /2andn1FoIpsDRPaeKjI0MiYFtX04CVxC4fScfhJfIVeDz4cG4qQL8yvTUSznosMZ4Zl qG5a7V3mmmFUdg2JleOCeR5KqhTGmD1QVOX2XMbc0Tr20264WNVjTfciCYLgLDgL8ayK hMUA== X-Received: by 10.224.92.81 with SMTP id q17mr36716138qam.66.1415120277941; Tue, 04 Nov 2014 08:57:57 -0800 (PST) Received: from cyanogenmod.home (pool-71-185-80-109.phlapa.fios.verizon.net. [71.185.80.109]) by mx.google.com with ESMTPSA id v4sm810068qag.23.2014.11.04.08.57.57 for <freebsd-questions@freebsd.org> (version=TLSv1.2 cipher=ECDHE-RSA-RC4-SHA bits=128/128); Tue, 04 Nov 2014 08:57:57 -0800 (PST) From: Stephen R Guglielmo <srguglielmo@gmail.com> X-Google-Original-From: Stephen R Guglielmo <SRGuglielmo@gmail.com> User-Agent: K-9 Mail for Android MIME-Version: 1.0 Content-Transfer-Encoding: 8bit Content-Type: text/plain; charset=UTF-8 Subject: ZFS RaidZ - Only One HDD Light Active Date: Tue, 04 Nov 2014 11:57:55 -0500 To: freebsd-questions@freebsd.org Message-ID: <34EE252D-09FE-4FF2-94BF-B11726118336@gmail.com> X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Tue, 04 Nov 2014 16:57:59 -0000 Hi list, I have a system that is running ZFS on root with raidZ across 4 disks. While sorting out another problem, I had the cover off on my server and noticed that only a single HDD activity light is lighting up. Only disk #3, none of the other drives seem to be showing any activity. I've been scrubbing the zpool for a few hours now and didn't notice any other lights lighting up. The system is a HP ProLiant with SATA disks. I was wondering if this seemed strange to anyone else. -Steve From owner-freebsd-questions@FreeBSD.ORG Tue Nov 4 17:01:08 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 719F9816 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 17:01:08 +0000 (UTC) Received: from oneyou.mcmli.com (oneyou.mcmli.com [IPv6:2001:470:1d:8da::100]) (using TLSv1 with cipher DHE-RSA-CAMELLIA256-SHA (256/256 bits)) (Client CN "oneyou.mcmli.com", Issuer "COMODO RSA Domain Validation Secure Server CA" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 3F5B8DEC for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 17:01:08 +0000 (UTC) Received: from sentry.24cl.com (unknown [IPv6:2001:558:6017:a2:a860:3073:4c46:6ac9]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client CN "sentry.24cl.com", Issuer "Mike's Certificate Authority" (verified OK)) by oneyou.mcmli.com (Postfix) with ESMTPS id 3jXHM55MSMz1DP5 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 12:01:05 -0500 (EST) Received: from BigBloat (bigbloat.24cl.home [10.20.1.4]) by sentry.24cl.com (Postfix) with ESMTP id 3jXHM41SGpz1C0C for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 12:01:04 -0500 (EST) Message-ID: <201411041201010358.00BC3F63@smtp.24cl.home> In-Reply-To: <20141104155455.GB28202@neutralgood.org> References: <20141103140638.60B9617470E@scprod53.upprovider.it> <5457A6D1.5050209@gmail.com> <5457C412.9060909@bananmonarki.se> <20141104155455.GB28202@neutralgood.org> X-Mailer: Courier 3.50.00.09.1098 (http://www.rosecitysoftware.com) (P) Date: Tue, 04 Nov 2014 12:01:01 -0500 From: "Mike." <the.lists@mgm51.com> To: freebsd-questions@freebsd.org Subject: Re: Postal Notification Content-Type: text/plain; charset="us-ascii" X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Tue, 04 Nov 2014 17:01:08 -0000 On 11/4/2014 at 10:54 AM kpneal@pobox.com wrote: |On Mon, Nov 03, 2014 at 07:06:10PM +0100, Bernt Hansson wrote: |> |> |> On 2014-11-03 17:01, jd1008 wrote: |> > Is there a way to PREVENT such spam??? |> > |> |> Yes. Filter on the messageheader. | |Personally, I think the idea of requiring a subscription should be |shelved until the level of spam exceeds the complaints about it. We |see far more anti-spam complaints than actual spam on this list. |-- |Kevin P. Neal http://www.pobox.com/~kpn/ ============= +1 From owner-freebsd-questions@FreeBSD.ORG Tue Nov 4 17:03:12 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id DBDCA9BB for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 17:03:12 +0000 (UTC) Received: from cosmo.uchicago.edu (cosmo.uchicago.edu [128.135.52.97]) by mx1.freebsd.org (Postfix) with ESMTP id B5633EA6 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 17:03:12 +0000 (UTC) Received: by cosmo.uchicago.edu (Postfix, from userid 48) id 4DAFCCB8C99; Tue, 4 Nov 2014 10:42:21 -0600 (CST) Received: from 128.135.70.2 (SquirrelMail authenticated user valeri) by cosmo.uchicago.edu with HTTP; Tue, 4 Nov 2014 10:42:21 -0600 (CST) Message-ID: <33388.128.135.70.2.1415119341.squirrel@cosmo.uchicago.edu> In-Reply-To: <20141104155455.GB28202@neutralgood.org> References: <20141103140638.60B9617470E@scprod53.upprovider.it> <5457A6D1.5050209@gmail.com> <5457C412.9060909@bananmonarki.se> <20141104155455.GB28202@neutralgood.org> Date: Tue, 4 Nov 2014 10:42:21 -0600 (CST) Subject: Re: Postal Notification From: "Valeri Galtsev" <galtsev@kicp.uchicago.edu> To: freebsd-questions@freebsd.org Reply-To: galtsev@kicp.uchicago.edu User-Agent: SquirrelMail/1.4.8-5.el5.centos.7 MIME-Version: 1.0 Content-Type: text/plain;charset=iso-8859-1 Content-Transfer-Encoding: 8bit X-Priority: 3 (Normal) Importance: Normal X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Tue, 04 Nov 2014 17:03:12 -0000 On Tue, November 4, 2014 9:54 am, kpneal@pobox.com wrote: > On Mon, Nov 03, 2014 at 07:06:10PM +0100, Bernt Hansson wrote: >> >> >> On 2014-11-03 17:01, jd1008 wrote: >> > Is there a way to PREVENT such spam??? >> > >> >> Yes. Filter on the messageheader. > > Personally, I think the idea of requiring a subscription should be > shelved until the level of spam exceeds the complaints about it. We > see far more anti-spam complaints than actual spam on this list. I would say, your criterion will be never met as for each spam message there will be at least one complaint (it is just a statistics plus human nature). Just to add to consideration: if someone wants to ask something on the list (thus expecting some effort from others - to read and reply the question), it will not be too much to expect that that person at least puts some rather minimal effort to subscribe to the list (I would say, "confirm" is enough, no need to "approve' by list admin - those familiar with mailman know what I mean). And unsubscribe later if necessary. Also, I would suggest: change "reply-to:" in the list setting to have replies go to the list (majority of lists do so as people more often hit just "reply", not "reply all" thus the list is loosing messages in the thread). Just my $0.02 Valeri ++++++++++++++++++++++++++++++++++++++++ Valeri Galtsev Sr System Administrator Department of Astronomy and Astrophysics Kavli Institute for Cosmological Physics University of Chicago Phone: 773-702-4247 ++++++++++++++++++++++++++++++++++++++++ From owner-freebsd-questions@FreeBSD.ORG Tue Nov 4 18:20:09 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 72DF871A for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 18:20:09 +0000 (UTC) Received: from mail-qa0-f48.google.com (mail-qa0-f48.google.com [209.85.216.48]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 2E166961 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 18:20:08 +0000 (UTC) Received: by mail-qa0-f48.google.com with SMTP id x12so10377286qac.35 for <freebsd-questions@freebsd.org>; Tue, 04 Nov 2014 10:20:00 -0800 (PST) X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=x-gm-message-state:message-id:date:from:user-agent:mime-version:to :subject:references:in-reply-to:content-type :content-transfer-encoding; bh=9j+V2GA8rAAUuXeSz29/WtlPlvUg96Xq2yHd03Np9kY=; b=NDStH/qVhitW1TydograF9gSkUI1NaqXefnxXWr5uORU89I64G22TFod33CafblJa+ CMlYpz1GyfznldKdMIT2eJwd8vaItTZ8yFznTWO0J3GDtK4Xlm5sAWFd7kNacUZfB3tU /9KO4IKeCaxXCOy6evdQqlqL1z2ZWkvTFgCWy9Mpr7TB/gBxdmxe8h+1E68+r3l1vu6W 2Fc7l8YNbeH/MFVLpXW/Y74/9iYmL3o4ivBC/ZcTWfvcLZwvbbUP9sjm184YKZhH+XVJ OyvOkX/8bObk65LAA3nXLKu6xtb+uAV+/l7dF9D95qCiwkslxA8q2Z3y3oM4jWcMupnm QtnA== X-Gm-Message-State: ALoCoQmzm/CgkTvXE4v5gf597fO+GtLPdbHomuFX5bXNxYE3t0VgoDRYfj/on10KOLpa6CK6yLaR X-Received: by 10.224.68.73 with SMTP id u9mr54811196qai.75.1415123568508; Tue, 04 Nov 2014 09:52:48 -0800 (PST) Received: from mbp-1.thecreativeadvantage.com (mail.thecreativeadvantage.com. [96.236.20.34]) by mx.google.com with ESMTPSA id i33sm941275qgd.8.2014.11.04.09.52.47 for <freebsd-questions@freebsd.org> (version=TLSv1.2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Tue, 04 Nov 2014 09:52:48 -0800 (PST) Message-ID: <5459126E.5040708@kraus-haus.org> Date: Tue, 04 Nov 2014 12:52:46 -0500 From: Paul Kraus <paul@kraus-haus.org> User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.9; rv:31.0) Gecko/20100101 Thunderbird/31.2.0 MIME-Version: 1.0 To: freebsd-questions@freebsd.org Subject: Re: ZFS RaidZ - Only One HDD Light Active References: <34EE252D-09FE-4FF2-94BF-B11726118336@gmail.com> In-Reply-To: <34EE252D-09FE-4FF2-94BF-B11726118336@gmail.com> Content-Type: text/plain; charset=windows-1252; format=flowed Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Tue, 04 Nov 2014 18:20:09 -0000 What does a `zpool iostat -v 10` show ? What does an `iostat -x -w 10' show ? If the above show disk activity on all drives then you probably have bad chassis wiring to the other drive LEDs. On 11/4/14 11:57, Stephen R Guglielmo wrote: > Hi list, > > I have a system that is running ZFS on root with raidZ across 4 disks. While sorting out another problem, I had the cover off on my server and noticed that only a single HDD activity light is lighting up. Only disk #3, none of the other drives seem to be showing any activity. I've been scrubbing the zpool for a few hours now and didn't notice any other lights lighting up. > > The system is a HP ProLiant with SATA disks. I was wondering if this seemed strange to anyone else. > > -Steve > _______________________________________________ > freebsd-questions@freebsd.org mailing list > http://lists.freebsd.org/mailman/listinfo/freebsd-questions > To unsubscribe, send any mail to "freebsd-questions-unsubscribe@freebsd.org" > -- -- Paul Kraus paul@kraus-haus.org Co-Chair Albacon 2014.5 http://www.albacon.org/2014/ From owner-freebsd-questions@FreeBSD.ORG Tue Nov 4 19:56:27 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 10F4D903 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 19:56:27 +0000 (UTC) Received: from smtprelay-h22.telenor.se (smtprelay-h22.telenor.se [195.54.99.197]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 8A8AE64B for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 19:56:26 +0000 (UTC) Received: from ipb4.telenor.se (ipb4.telenor.se [195.54.127.167]) by smtprelay-h22.telenor.se (Postfix) with ESMTP id B80A2D4CF for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 20:36:59 +0100 (CET) X-SENDER-IP: [83.227.225.121] X-LISTENER: [smtp.bredband.net] X-IronPort-Anti-Spam-Filtered: true X-IronPort-Anti-Spam-Result: Av8GAKkqWVRT4+F5PGdsb2JhbABVBoMOgSyHPdATFwEBAQEBAQUBAQEBODuEAwEBAQMDUyMQCxgJJQ8FGQwKGhOIRQHNfSCQTYN3gR4FngYBgTGRFYVcgiY8L4JLAQEB X-IPAS-Result: Av8GAKkqWVRT4+F5PGdsb2JhbABVBoMOgSyHPdATFwEBAQEBAQUBAQEBODuEAwEBAQMDUyMQCxgJJQ8FGQwKGhOIRQHNfSCQTYN3gR4FngYBgTGRFYVcgiY8L4JLAQEB X-IronPort-AV: E=Sophos;i="5.07,314,1413237600"; d="scan'208";a="676943975" Received: from ua-83-227-225-121.cust.bredbandsbolaget.se (HELO ymer.thorshammare.org) ([83.227.225.121]) by ipb4.telenor.se with ESMTP; 04 Nov 2014 20:36:59 +0100 Received: from ymer.thorshammare.org (localhost [127.0.0.1]) by ymer.thorshammare.org (8.14.9/8.14.9) with ESMTP id sA4JarWx003128 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-GCM-SHA384 bits=256 verify=NO); Tue, 4 Nov 2014 20:36:56 +0100 (CET) (envelope-from hasse@ymer.thorshammare.org) Received: (from root@localhost) by ymer.thorshammare.org (8.14.9/8.14.9/Submit) id sA4JaqWD003127; Tue, 4 Nov 2014 20:36:52 +0100 (CET) (envelope-from hasse) Date: Tue, 4 Nov 2014 20:36:52 +0100 From: Charlie Root <root@ymer.thorshammare.org> To: Lowell Gilbert <freebsd-questions-local@be-well.ilk.org> Subject: Re: sshguard pf Message-ID: <20141104193652.GA3062@ymer.thorshammare.org> References: <20141102154444.GA42429@ymer.thorshammare.org> <54581F0E.4080404@a1poweruser.com> <20141104110202.GA37003@ymer.thorshammare.org> <44vbmv6kyp.fsf@lowell-desk.lan> MIME-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="pWyiEgJYm5f9v55/" Content-Disposition: inline In-Reply-To: <44vbmv6kyp.fsf@lowell-desk.lan> User-Agent: Mutt/1.5.23 (2014-03-12) Cc: freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Tue, 04 Nov 2014 19:56:27 -0000 --pWyiEgJYm5f9v55/ Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Content-Transfer-Encoding: quoted-printable On Tue, Nov 04, 2014 at 10:31:42AM -0500, Lowell Gilbert wrote: > Hasse Hansson <hasse@thorshammare.org> writes: >=20 > > I'm aware of changing port for ssh, but I see it as a little bit of "gi= vingup" > > Gotta be some rather easy way of just blocking those attacks. Other tha= n blocking > > whole of CN and half of Asia. I've tried that too. It stopped the attac= ks and gave > > me some room to think it over. >=20 > Changing the port won't help you avoid attacks that might succeed, but > it will substantially reduce the clutter that you need to look through. >=20 > I don't do it because I've had problems with paranoid networks blocking > everything but a few special ports, where ssh is one of the allowed > ones, but I don't know if anybody's still doing anything that silly. >=20 > > But I still wonder why sshguard or pf don't block those attacks. > > shguard does it job on other probes, but not the root logins. PF doesn'= t seem > > to do much at all. >=20 > Firewalls won't help detect the attack. They can be used to keep someone > out once the attack has been detected. I don't know sshguard, so I can't > tell you why it isn't working for you, but there certainly are ports > that can do so. I use bruteblock, for example, but I know there are > several other options that do the same thing. Thank you all for your answers and effort to help. I'm interested in trying out bruteblock, but a little bit confused. ( not u= nusual ) Do "bruteblock" require me to run ipfw2 as my firewall ? <snip from pkg-descr> Bruteblock is written in pure C, doesn't use any external programs and work with ipfw2 tables via raw sockets API. </snip> /hasse --pWyiEgJYm5f9v55/ Content-Type: application/pgp-signature -----BEGIN PGP SIGNATURE----- Version: GnuPG v2 iQIcBAEBAgAGBQJUWSrUAAoJEDCDGDmNzjqcu4sP/R66MAKCsiBUxaILC9s+T/NH OwXwIOQvcG0Vx9N4VlKiHDpyecFCUMT+hj7Fn+byyuBX6ievt2p34frFFgHkGHO1 YZwGpaU98fJNdOzTCX1nK+8G/k4kePsTEkCDc4FBAjUqP6bY6dUCBWbaxsY1pcMb KFyLg8W0KUeQcyj73C1wOF7sIGYKToL35PoCK+pKwNdaQTyc4oQSahtyaRoV+7Rv kwY4xLpaIKE/SYKTDb5HgFziHTaypx1MGIdDdbi4xwTAYmjG5KOZFHYYwPtxcgDX Ki3o74gjQr8YYAyGb3FPz21fIbpMTeZStN6Hwylq8XsM7L69lN7pa6wy8haCjUOG 3hfIl+HlQ167EQD5HAQ5mNqsZi0YoTNTXgCTkAUUunSrNtcaABk3yyyXdBHl6HyH 0p408iYGAJ54elOGvF6cu7zlr8g5NRcRRBIdl3LMA46wm1I3dsrTgNmlzprI4HHa 5vlXSfqzlFq4V9HsH4vPR7f51Fm7q9UV1LOqlPAm7VSWIIRdRzekaDFQZACZmtV2 sLmhV0tSMCpAIVadkFV9dRslyis/Pgka+yFlzQ36Po0Milw2QwDpqOwrlz9eiBY2 lD0xAvM9bFpBc5n8EPxrZuOkWxM0CxNf8e4u5gaCjpZNkjdilB9UTVwNEKSpetrp xBVGy5G9Pyp7iiHpvQT1 =TVd/ -----END PGP SIGNATURE----- --pWyiEgJYm5f9v55/-- From owner-freebsd-questions@FreeBSD.ORG Tue Nov 4 20:23:35 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id C2A4823A for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 20:23:35 +0000 (UTC) Received: from mail-ie0-x22e.google.com (mail-ie0-x22e.google.com [IPv6:2607:f8b0:4001:c03::22e]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 849779D5 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 20:23:35 +0000 (UTC) Received: by mail-ie0-f174.google.com with SMTP id x19so8382584ier.19 for <freebsd-questions@freebsd.org>; Tue, 04 Nov 2014 12:23:35 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=message-id:date:from:user-agent:mime-version:to:subject:references :in-reply-to:content-type:content-transfer-encoding; bh=HWDiapsMf0I/dR7xKBkJmfIIPRpkfT8FvzJouX3zkes=; b=sSTne9Eqw5M0Wv+C6mZ2wbSKn63NQnFw88oh8fr8cBFtT62xgc5Mu0wubfFPrVei0X nwzY+Jd60FqbXTDqX+iyLFeGZo2qzTv5u01FReUjGnimWbFhbRcgvxeZjc8FpVlAJFJa GE2yojWwVmTaCNkFNH4XUAAG366oUVjWkbLmo6eTLW/6Ms1+4uE9zPQar8P9YAMzSkCQ 2wYyFPDFFK9bHHJ3nCK2hRvREd+Qd7LBOkdPM/Nv9SLbGIphqnBgOwpv1DfPTHLfE0Bm u/Aa+0RuOmK4/rsTESjA9GRfzg8MMdEcBQjVroJXf4ouwvm4/5iw4xipqO5q0LvBFK5E bLpA== X-Received: by 10.50.108.78 with SMTP id hi14mr341480igb.27.1415132614908; Tue, 04 Nov 2014 12:23:34 -0800 (PST) Received: from localhost.localdomain (63-225-227-131.slkc.qwest.net. [63.225.227.131]) by mx.google.com with ESMTPSA id h5sm5522743igo.5.2014.11.04.12.23.32 for <freebsd-questions@freebsd.org> (version=TLSv1.2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Tue, 04 Nov 2014 12:23:34 -0800 (PST) Message-ID: <545935C3.4080806@gmail.com> Date: Tue, 04 Nov 2014 13:23:31 -0700 From: jd1008 <jd1008@gmail.com> User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:31.0) Gecko/20100101 Thunderbird/31.2.0 MIME-Version: 1.0 To: freebsd-questions@freebsd.org Subject: Re: sshguard pf References: <20141102154444.GA42429@ymer.thorshammare.org> <54581F0E.4080404@a1poweruser.com> <20141104110202.GA37003@ymer.thorshammare.org> <44vbmv6kyp.fsf@lowell-desk.lan> <20141104193652.GA3062@ymer.thorshammare.org> In-Reply-To: <20141104193652.GA3062@ymer.thorshammare.org> Content-Type: text/plain; charset=windows-1252; format=flowed Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Tue, 04 Nov 2014 20:23:35 -0000 On 11/04/2014 12:36 PM, Charlie Root wrote: > On Tue, Nov 04, 2014 at 10:31:42AM -0500, Lowell Gilbert wrote: >> Hasse Hansson <hasse@thorshammare.org> writes: >> >>> I'm aware of changing port for ssh, but I see it as a little bit of "givingup" >>> Gotta be some rather easy way of just blocking those attacks. Other than blocking >>> whole of CN and half of Asia. I've tried that too. It stopped the attacks and gave >>> me some room to think it over. >> Changing the port won't help you avoid attacks that might succeed, but >> it will substantially reduce the clutter that you need to look through. >> >> I don't do it because I've had problems with paranoid networks blocking >> everything but a few special ports, where ssh is one of the allowed >> ones, but I don't know if anybody's still doing anything that silly. >> >>> But I still wonder why sshguard or pf don't block those attacks. >>> shguard does it job on other probes, but not the root logins. PF doesn't seem >>> to do much at all. >> Firewalls won't help detect the attack. They can be used to keep someone >> out once the attack has been detected. I don't know sshguard, so I can't >> tell you why it isn't working for you, but there certainly are ports >> that can do so. I use bruteblock, for example, but I know there are >> several other options that do the same thing. > Thank you all for your answers and effort to help. > > I'm interested in trying out bruteblock, but a little bit confused. ( not unusual ) > > Do "bruteblock" require me to run ipfw2 as my firewall ? > <snip from pkg-descr> > Bruteblock is written in pure C, doesn't use any > external programs and work with ipfw2 tables via raw sockets API. > </snip> > > /hasse How about creating a firewall rule that allows ssh only from known IP addresses, in addition to changing the port number? Yes, I know, IP addresses can be spoofed, but as Charlie says, it will reduce the crap you have to deal with. From owner-freebsd-questions@FreeBSD.ORG Tue Nov 4 20:31:17 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id EDD0D6B0 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 20:31:17 +0000 (UTC) Received: from out2-smtp.messagingengine.com (out2-smtp.messagingengine.com [66.111.4.26]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id C1261AC4 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 20:31:17 +0000 (UTC) Received: from compute1.internal (compute1.nyi.internal [10.202.2.41]) by mailout.nyi.internal (Postfix) with ESMTP id 6060620A87 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 15:31:16 -0500 (EST) Received: from web3 ([10.202.2.213]) by compute1.internal (MEProxy); Tue, 04 Nov 2014 15:31:16 -0500 DKIM-Signature: v=1; a=rsa-sha1; c=relaxed/relaxed; d= messagingengine.com; h=message-id:x-sasl-enc:from:to :mime-version:content-transfer-encoding:content-type:in-reply-to :references:subject:date; s=smtpout; bh=FNEH0xVTihMX/dsOAbDI4p7G UMk=; b=QnjYtzSXxPR02/sdSzHUqnwoxMFyigHlhYbHHTqFXB/jkCv634RGQ+Vc 4CxIxIeEE8THXHXZbjgtnOhF5Rer6S/Oc8SkxouE/VZw+tMKYS8xBOqsAA1r78La Nkk5flZC5A8/xwRVC9+4g9sd37kKfpnsALWCL1aoZ1QslkS8ufo= Received: by web3.nyi.internal (Postfix, from userid 99) id 4221910D575; Tue, 4 Nov 2014 15:31:16 -0500 (EST) Message-Id: <1415133076.3101293.187068781.08AE26B5@webmail.messagingengine.com> X-Sasl-Enc: vhS4VRT7JrJFPyU6k9PvYgyYyx+i4GsRR9M0lahXUQxE 1415133076 From: Mark Felder <feld@FreeBSD.org> To: freebsd-questions@freebsd.org MIME-Version: 1.0 Content-Transfer-Encoding: 7bit Content-Type: text/plain X-Mailer: MessagingEngine.com Webmail Interface - ajax-c51dec4f In-Reply-To: <20141102154444.GA42429@ymer.thorshammare.org> References: <20141102154444.GA42429@ymer.thorshammare.org> Subject: Re: sshguard pf Date: Tue, 04 Nov 2014 14:31:16 -0600 X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Tue, 04 Nov 2014 20:31:18 -0000 You could always enable 2 Factor Auth for SSH and then they'll definitely have no chance of getting in :-) http://blog.feld.me/posts/2014/07/ssh-two-factor-authentication-on-freebsd/ Good luck! From owner-freebsd-questions@FreeBSD.ORG Tue Nov 4 20:41:53 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 2BC0C8FC for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 20:41:53 +0000 (UTC) Received: from be-well.ilk.org (be-well.ilk.org [23.30.133.173]) by mx1.freebsd.org (Postfix) with ESMTP id 029DFBC5 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 20:41:52 +0000 (UTC) Received: from lowell-desk.lan (lowell-desk.lan [172.30.250.41]) by be-well.ilk.org (Postfix) with ESMTP id D75AE33C48; Tue, 4 Nov 2014 15:41:45 -0500 (EST) Received: by lowell-desk.lan (Postfix, from userid 1147) id BBE733980E; Tue, 4 Nov 2014 15:41:44 -0500 (EST) From: Lowell Gilbert <freebsd-questions-local@be-well.ilk.org> To: Charlie Root <root@ymer.thorshammare.org> Subject: Re: sshguard pf References: <20141102154444.GA42429@ymer.thorshammare.org> <54581F0E.4080404@a1poweruser.com> <20141104110202.GA37003@ymer.thorshammare.org> <44vbmv6kyp.fsf@lowell-desk.lan> <20141104193652.GA3062@ymer.thorshammare.org> Reply-To: freebsd-questions@freebsd.org Date: Tue, 04 Nov 2014 15:41:44 -0500 In-Reply-To: <20141104193652.GA3062@ymer.thorshammare.org> (Charlie Root's message of "Tue, 4 Nov 2014 20:36:52 +0100") Message-ID: <44oasm7l6f.fsf@lowell-desk.lan> User-Agent: Gnus/5.13 (Gnus v5.13) Emacs/24.3 (berkeley-unix) MIME-Version: 1.0 Content-Type: text/plain Cc: freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Tue, 04 Nov 2014 20:41:53 -0000 Charlie Root <root@ymer.thorshammare.org> writes: > Do "bruteblock" require me to run ipfw2 as my firewall ? Yes. That's why I mentioned that there are several other options, I just don't know them myself. Last I checked, bruteblock doesn't support IPv6 either, so one of these days I may have to check into the choices again. From owner-freebsd-questions@FreeBSD.ORG Tue Nov 4 21:01:49 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 6391BFD0 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 21:01:49 +0000 (UTC) Received: from dd13304.kasserver.com (dd13304.kasserver.com [85.13.135.53]) (using TLSv1.1 with cipher ECDHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 28503DDC for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 21:01:48 +0000 (UTC) Received: from nermal.rz1.convenimus.net (p4FDDC8C9.dip0.t-ipconnect.de [79.221.200.201]) by dd13304.kasserver.com (Postfix) with ESMTPA id A03BC1E0143; Tue, 4 Nov 2014 21:55:12 +0100 (CET) Received: from falbala.localnet (falbala.rz1.convenimus.net [192.168.100.75]) by nermal.rz1.convenimus.net (Postfix) with ESMTP id B325315210; Tue, 4 Nov 2014 20:25:19 +0100 (CET) From: Christian Baer <cb@icerats.de> To: freebsd-questions@freebsd.org Subject: Installing Windows *after* FreeBSD Date: Tue, 04 Nov 2014 21:55:11 +0100 Message-ID: <1871133.1mJRhnQs1i@falbala> User-Agent: KMail/4.14.2 (FreeBSD/10.0-RELEASE-p10; KDE/4.14.2; amd64; ; ) MIME-Version: 1.0 Content-Transfer-Encoding: 7Bit Content-Type: text/plain; charset="utf-8" X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Tue, 04 Nov 2014 21:01:49 -0000 Good evening, everyone! A few days ago I bought myself a new computer - at long last! :-) I have been working with FreeBSD for quite a while now, but only ever on servers, never on a desktop-computer or a workstation. This time I took special care to make sure FreeBSD would run on all the hardware. Only catch: The case has no room for a FreeBSD badge. :-) I guess I was a little over-enthusiastic and installed FreeBSD right away. As you can see, I managed to get it running, including X, nvdidia-driver and sound. ;-) At times, I still like gaming and although I do not spend most of my computer time doing that, I did leave some room on my SSD for Windows. To be exact, I created three primary partitions (MBR style, Win7 is a pain with UEFI), one 100MB, one ~120GB (these two are for Windows) and one ~118GB for FreeBSD. My problem is that should I install Windows now, FreeBSD won't boot anymore, because Windows will replace the boot loader. If there is any documentation about using FreeBSD and Windows on one machine, it usually assumes that Windows was installed first. Does anybody know of some documentation or howto to install these two OSs the other way around? As you can imagine, I don't really fancy the idea of starting from scratch here. Thanks for any suggestions! Best regards, Chris From owner-freebsd-questions@FreeBSD.ORG Tue Nov 4 21:18:16 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id CEB884D6 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 21:18:16 +0000 (UTC) Received: from fly.hiwaay.net (fly.hiwaay.net [216.180.54.1]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 9BDEDF36 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 21:18:16 +0000 (UTC) Received: from kabini1.local (rbn1-216-180-19-83.adsl.hiwaay.net [216.180.19.83]) (authenticated bits=0) by fly.hiwaay.net (8.13.8/8.13.8/fly) with ESMTP id sA4LIEfx031164 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES128-SHA bits=128 verify=NO) for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 15:18:14 -0600 Message-ID: <5459440D.8020200@hiwaay.net> Date: Tue, 04 Nov 2014 15:24:29 -0600 From: "William A. Mahaffey III" <wam@hiwaay.net> User-Agent: Mozilla/5.0 (X11; FreeBSD amd64; rv:31.0) Gecko/20100101 Thunderbird/31.2.0 MIME-Version: 1.0 To: freebsd-questions@freebsd.org Subject: Re: Installing Windows *after* FreeBSD References: <1871133.1mJRhnQs1i@falbala> In-Reply-To: <1871133.1mJRhnQs1i@falbala> Content-Type: text/plain; charset=windows-1252; format=flowed Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Tue, 04 Nov 2014 21:18:16 -0000 On 11/04/14 14:55, Christian Baer wrote: > Good evening, everyone! > > A few days ago I bought myself a new computer - at long last! :-) I have been > working with FreeBSD for quite a while now, but only ever on servers, never on > a desktop-computer or a workstation. This time I took special care to make > sure FreeBSD would run on all the hardware. Only catch: The case has no room > for a FreeBSD badge. :-) > > I guess I was a little over-enthusiastic and installed FreeBSD right away. As > you can see, I managed to get it running, including X, nvdidia-driver and > sound. ;-) > > At times, I still like gaming and although I do not spend most of my computer > time doing that, I did leave some room on my SSD for Windows. To be exact, I > created three primary partitions (MBR style, Win7 is a pain with UEFI), one > 100MB, one ~120GB (these two are for Windows) and one ~118GB for FreeBSD. > > My problem is that should I install Windows now, FreeBSD won't boot anymore, > because Windows will replace the boot loader. If there is any documentation > about using FreeBSD and Windows on one machine, it usually assumes that > Windows was installed first. > > Does anybody know of some documentation or howto to install these two OSs the > other way around? As you can imagine, I don't really fancy the idea of > starting from scratch here. > > Thanks for any suggestions! > > Best regards, > Chris > _______________________________________________ > freebsd-questions@freebsd.org mailing list > http://lists.freebsd.org/mailman/listinfo/freebsd-questions > To unsubscribe, send any mail to "freebsd-questions-unsubscribe@freebsd.org" > Run winders as a VM ? $0.02, no more, no less ..... -- William A. Mahaffey III ---------------------------------------------------------------------- "The M1 Garand is without doubt the finest implement of war ever devised by man." -- Gen. George S. Patton Jr. From owner-freebsd-questions@FreeBSD.ORG Tue Nov 4 21:37:33 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 690A39CF for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 21:37:33 +0000 (UTC) Received: from mx02.qsc.de (mx02.qsc.de [213.148.130.14]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 2D0001E2 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 21:37:32 +0000 (UTC) Received: from r56.edvax.de (port-92-195-37-193.dynamic.qsc.de [92.195.37.193]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by mx02.qsc.de (Postfix) with ESMTPS id 5458524DF7; Tue, 4 Nov 2014 22:37:24 +0100 (CET) Received: from r56.edvax.de (localhost [127.0.0.1]) by r56.edvax.de (8.14.5/8.14.5) with SMTP id sA4LbO8s002739; Tue, 4 Nov 2014 22:37:24 +0100 (CET) (envelope-from freebsd@edvax.de) Date: Tue, 4 Nov 2014 22:37:24 +0100 From: Polytropon <freebsd@edvax.de> To: Christian Baer <cb@icerats.de> Subject: Re: Installing Windows *after* FreeBSD Message-Id: <20141104223724.658347f2.freebsd@edvax.de> In-Reply-To: <1871133.1mJRhnQs1i@falbala> References: <1871133.1mJRhnQs1i@falbala> Reply-To: Polytropon <freebsd@edvax.de> Organization: EDVAX X-Mailer: Sylpheed 3.1.1 (GTK+ 2.24.5; i386-portbld-freebsd8.2) Mime-Version: 1.0 Content-Type: text/plain; charset=US-ASCII Content-Transfer-Encoding: 7bit Cc: freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Tue, 04 Nov 2014 21:37:33 -0000 On Tue, 04 Nov 2014 21:55:11 +0100, Christian Baer wrote: > At times, I still like gaming and although I do not spend most of my computer > time doing that, I did leave some room on my SSD for Windows. To be exact, I > created three primary partitions (MBR style, Win7 is a pain with UEFI), one > 100MB, one ~120GB (these two are for Windows) and one ~118GB for FreeBSD. Depending on what games you prefer, you could try the following in order to avoid an installation of "Windows": a) run the games with wine (I'm doing this, actually) b) create a VM and run "Windows" games inside that If both do _not_ provide a sufficient environment for your games, you probably need to install it on your hard disk. > My problem is that should I install Windows now, FreeBSD won't boot anymore, > because Windows will replace the boot loader. Correct. You should therefore first install "Windows" and then FreeBSD. If you have installed FreeBSD previously, you need to boot from a live CD or USB stick and repair the damaged MBR, and also install the boot manager so you can select to boot the OS or "Windows". > If there is any documentation > about using FreeBSD and Windows on one machine, it usually assumes that > Windows was installed first. Yes, because it's less trouble. :-) > Does anybody know of some documentation or howto to install these two OSs the > other way around? As you can imagine, I don't really fancy the idea of > starting from scratch here. Boot from a different media and repair what "Windows" has damaged. -- Polytropon Magdeburg, Germany Happy FreeBSD user since 4.0 Andra moi ennepe, Mousa, ... From owner-freebsd-questions@FreeBSD.ORG Tue Nov 4 21:38:15 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 93CCCA68 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 21:38:15 +0000 (UTC) Received: from mail-ie0-x236.google.com (mail-ie0-x236.google.com [IPv6:2607:f8b0:4001:c03::236]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 5F84E1EF for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 21:38:15 +0000 (UTC) Received: by mail-ie0-f182.google.com with SMTP id rd18so8588996iec.13 for <freebsd-questions@freebsd.org>; Tue, 04 Nov 2014 13:38:14 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=message-id:date:from:user-agent:mime-version:to:subject:references :in-reply-to:content-type:content-transfer-encoding; bh=KMe2fYmOtuTBK0c2M1CqDMjZjJjh1VB8Gug3UOokg+E=; b=kJbYCxVQYcIShlxkH2xPiV3mAAbbh4uMjWjPPe0UqdxidN4/XDPxS7tW/2X8jFXUQD 34MycLh8QdKD91gipZJksGhr5Pb/A1k6NiSOOQouAcTDxOFx47w5bLBR1QnWCqKmGng/ tbvUCW+Z977r2HlZ5s35NDqw0elZjD36Br0FIw/4ZhsJClMZC1TIcMlBZkTaicDlIq1S A3JuyLASFcJY5w5CFRB2kWlrE7I1EWsK/2lNrxeEGRc2hHWam5thL/Jz/GPvFviuV3Ck aHbs9cvDKwB5mPAJP6KTGGafgkNORpjKGG8IgJDYVA6tVXp+tlce3u0kWMGzWnUUMHEK j7TA== X-Received: by 10.50.51.100 with SMTP id j4mr27133174igo.39.1415137094791; Tue, 04 Nov 2014 13:38:14 -0800 (PST) Received: from localhost.localdomain (63-225-227-131.slkc.qwest.net. [63.225.227.131]) by mx.google.com with ESMTPSA id f20sm835109igz.13.2014.11.04.13.38.13 for <freebsd-questions@freebsd.org> (version=TLSv1.2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Tue, 04 Nov 2014 13:38:14 -0800 (PST) Message-ID: <54594745.6050306@gmail.com> Date: Tue, 04 Nov 2014 14:38:13 -0700 From: jd1008 <jd1008@gmail.com> User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:31.0) Gecko/20100101 Thunderbird/31.2.0 MIME-Version: 1.0 To: freebsd-questions@freebsd.org Subject: Re: Installing Windows *after* FreeBSD References: <1871133.1mJRhnQs1i@falbala> <5459440D.8020200@hiwaay.net> In-Reply-To: <5459440D.8020200@hiwaay.net> Content-Type: text/plain; charset=windows-1252; format=flowed Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Tue, 04 Nov 2014 21:38:15 -0000 On 11/04/2014 02:24 PM, William A. Mahaffey III wrote: > On 11/04/14 14:55, Christian Baer wrote: >> Good evening, everyone! >> >> A few days ago I bought myself a new computer - at long last! :-) I >> have been >> working with FreeBSD for quite a while now, but only ever on servers, >> never on >> a desktop-computer or a workstation. This time I took special care to >> make >> sure FreeBSD would run on all the hardware. Only catch: The case has >> no room >> for a FreeBSD badge. :-) >> >> I guess I was a little over-enthusiastic and installed FreeBSD right >> away. As >> you can see, I managed to get it running, including X, nvdidia-driver >> and >> sound. ;-) >> >> At times, I still like gaming and although I do not spend most of my >> computer >> time doing that, I did leave some room on my SSD for Windows. To be >> exact, I >> created three primary partitions (MBR style, Win7 is a pain with >> UEFI), one >> 100MB, one ~120GB (these two are for Windows) and one ~118GB for >> FreeBSD. >> >> My problem is that should I install Windows now, FreeBSD won't boot >> anymore, >> because Windows will replace the boot loader. If there is any >> documentation >> about using FreeBSD and Windows on one machine, it usually assumes that >> Windows was installed first. >> >> Does anybody know of some documentation or howto to install these two >> OSs the >> other way around? As you can imagine, I don't really fancy the idea of >> starting from scratch here. >> >> Thanks for any suggestions! >> >> Best regards, >> Chris >> _______________________________________________ >> freebsd-questions@freebsd.org mailing list >> http://lists.freebsd.org/mailman/listinfo/freebsd-questions >> To unsubscribe, send any mail to >> "freebsd-questions-unsubscribe@freebsd.org" >> > > > Run winders as a VM ? $0.02, no more, no less ..... > > Hey Christian Baer, It is easy to restore FreeBSD bootloader. Just go to this web page: http://lqman.wordpress.com/2011/05/18/restore-freebsd-bootloader-after-installing-windows/ From owner-freebsd-questions@FreeBSD.ORG Tue Nov 4 21:49:49 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 70C71D11 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 21:49:49 +0000 (UTC) Received: from cosmo.uchicago.edu (cosmo.uchicago.edu [128.135.52.97]) by mx1.freebsd.org (Postfix) with ESMTP id 4C963332 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 21:49:49 +0000 (UTC) Received: by cosmo.uchicago.edu (Postfix, from userid 48) id 2FC14CB8CA0; Tue, 4 Nov 2014 15:49:48 -0600 (CST) Received: from 128.135.70.2 (SquirrelMail authenticated user valeri) by cosmo.uchicago.edu with HTTP; Tue, 4 Nov 2014 15:49:48 -0600 (CST) Message-ID: <59062.128.135.70.2.1415137788.squirrel@cosmo.uchicago.edu> In-Reply-To: <20141104223724.658347f2.freebsd@edvax.de> References: <1871133.1mJRhnQs1i@falbala> <20141104223724.658347f2.freebsd@edvax.de> Date: Tue, 4 Nov 2014 15:49:48 -0600 (CST) Subject: Re: Installing Windows *after* FreeBSD From: "Valeri Galtsev" <galtsev@kicp.uchicago.edu> To: freebsd-questions@freebsd.org Reply-To: galtsev@kicp.uchicago.edu User-Agent: SquirrelMail/1.4.8-5.el5.centos.7 MIME-Version: 1.0 Content-Type: text/plain;charset=iso-8859-1 Content-Transfer-Encoding: 8bit X-Priority: 3 (Normal) Importance: Normal X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Tue, 04 Nov 2014 21:49:49 -0000 On Tue, November 4, 2014 3:37 pm, Polytropon wrote: > On Tue, 04 Nov 2014 21:55:11 +0100, Christian Baer wrote: > >> If there is any documentation >> about using FreeBSD and Windows on one machine, it usually assumes that >> Windows was installed first. > > Yes, because it's less trouble. :-) > No, I would put it differently. Because FreeBSD (or Linux) know that other systems exist, whereas M$ (Windows) prefers not to know about existence of other OSes. Valeri ++++++++++++++++++++++++++++++++++++++++ Valeri Galtsev Sr System Administrator Department of Astronomy and Astrophysics Kavli Institute for Cosmological Physics University of Chicago Phone: 773-702-4247 ++++++++++++++++++++++++++++++++++++++++ From owner-freebsd-questions@FreeBSD.ORG Tue Nov 4 22:03:25 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 17E0518B for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 22:03:25 +0000 (UTC) Received: from system.jails.se (unknown [IPv6:2001:16d8:cc1e:1::1]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id ACDDE6D6 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 22:03:24 +0000 (UTC) Received: from localhost (system.jails.se [91.205.63.85]) by system.jails.se (Postfix) with SMTP id 618F91B479F for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 23:03:21 +0100 (CET) Received: from klein.pean.org (klein.pean.org [IPv6:2001:16d8:ff9f::60]) (using TLSv1 with cipher ECDHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by system.jails.se (Postfix) with ESMTPSA id ADC331B4797 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 23:03:20 +0100 (CET) From: =?utf-8?Q?Peter_Ankerst=C3=A5l?= <peter@pean.org> Content-Type: multipart/signed; boundary="Apple-Mail=_4B1E2E8C-B5F6-47E7-BB0E-678641ADBE50"; protocol="application/pkcs7-signature"; micalg=sha1 Subject: freebsd-udapte upgrade. Message-Id: <7B9081D9-0550-486D-B46F-7D392C848C40@pean.org> Date: Tue, 4 Nov 2014 23:02:54 +0100 To: freebsd-questions@freebsd.org Mime-Version: 1.0 (Mac OS X Mail 8.0 \(1990.1\)) X-Mailer: Apple Mail (2.1990.1) X-DSPAM-Result: Innocent X-DSPAM-Processed: Tue Nov 4 23:03:21 2014 X-DSPAM-Confidence: 1.0000 X-DSPAM-Probability: 0.0023 X-DSPAM-Signature: 54594d2964461942519033 X-DSPAM-Factors: 27, mail/freebsd+submit+cf+<<<<<<<, 0.40000, mail/freebsd+submit+cf+<<<<<<<, 0.40000, version+#+passwd+<<<<<<<+current, 0.40000, be+#+that+#+should, 0.40000, this+case+#+typed+q, 0.40000, submit+cf+#+current, 0.40000, submit+cf+#+current, 0.40000, "<<+#+crontab+<<<<<<<+current, 0.40000, current+#+mail/freebsd+cf, 0.40000, current+#+mail/freebsd+cf, 0.40000, <<<<<<<+#+version+mail/freebsd+submit, 0.40000, <<<<<<<+#+version+mail/freebsd+submit, 0.40000, right, 0.40000, explain+how+to+#+freebsd, 0.40000, of+the+files+has, 0.40000, current+#+group, 0.40000, <<<<<<<+#+#+ssh/sshd_config, 0.40000, <<<<<<<+#+#+ssh/sshd_config, 0.40000, Notice+#+a+#+of, 0.40000, mail/freebsd+submit+cf+<<<<<<<+current, 0.40000, mail/freebsd+submit+cf+<<<<<<<+current, 0.40000, and+look+for+%e2%80%9ccurrent, 0.40000, syslog+#+#+current, 0.40000, syslog+#+#+current, 0.40000, version+syslog+#+#+current, 0.40000, version+syslog+#+#+current, 0.40000, current+version+#+#+"<<, 0.40000 X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Tue, 04 Nov 2014 22:03:25 -0000 --Apple-Mail=_4B1E2E8C-B5F6-47E7-BB0E-678641ADBE50 Content-Transfer-Encoding: quoted-printable Content-Type: text/plain; charset=utf-8 Could someone please explain how to use freebsd-update upgrade without = destroying all of your configuration files? I really don=E2=80=99t understand how to use the merge function.. In = this case i typed :q for all files it asked about. :wq seem to do about the same thing. Notice that a few of the files has this shit in = multiple places. I can=E2=80=99t be right that I should edit every file = manually and look for =E2=80=9Ccurrent version=E2=80=9D and so on? # grep "<< current" * crontab:<<<<<<< current version dhclient.conf:<<<<<<< current version group:<<<<<<< current version hosts:<<<<<<< current version inetd.conf:<<<<<<< current version master.passwd:<<<<<<< current version motd:<<<<<<< current version ntp.conf:<<<<<<< current version passwd:<<<<<<< current version services:<<<<<<< current version shells:<<<<<<< current version snmpd.config:<<<<<<< current version syslog.conf:<<<<<<< current version syslog.conf:<<<<<<< current version ttys:<<<<<<< current version ttys:<<<<<<< current version # grep "<< current" */* mail/freebsd.cf:<<<<<<< current version mail/freebsd.cf:<<<<<<< current version mail/freebsd.cf:<<<<<<< current version mail/freebsd.submit.cf:<<<<<<< current version mail/freebsd.submit.cf:<<<<<<< current version mail/freebsd.submit.cf:<<<<<<< current version mail/sendmail.cf:<<<<<<< current version mail/sendmail.cf:<<<<<<< current version mail/sendmail.cf:<<<<<<< current version mail/submit.cf:<<<<<<< current version mail/submit.cf:<<<<<<< current version mail/submit.cf:<<<<<<< current version ssh/sshd_config:<<<<<<< current version ssh/sshd_config:<<<<<<< current version= --Apple-Mail=_4B1E2E8C-B5F6-47E7-BB0E-678641ADBE50 Content-Disposition: attachment; filename=smime.p7s Content-Type: application/pkcs7-signature; name=smime.p7s Content-Transfer-Encoding: base64 MIAGCSqGSIb3DQEHAqCAMIACAQExCzAJBgUrDgMCGgUAMIAGCSqGSIb3DQEHAQAAoIIMbzCCBjMw ggUboAMCAQICAwiyiDANBgkqhkiG9w0BAQUFADCBjDELMAkGA1UEBhMCSUwxFjAUBgNVBAoTDVN0 YXJ0Q29tIEx0ZC4xKzApBgNVBAsTIlNlY3VyZSBEaWdpdGFsIENlcnRpZmljYXRlIFNpZ25pbmcx ODA2BgNVBAMTL1N0YXJ0Q29tIENsYXNzIDEgUHJpbWFyeSBJbnRlcm1lZGlhdGUgQ2xpZW50IENB MB4XDTE0MDEyMDA3NTIzOFoXDTE1MDEyMTA4NTkyMVowUzEZMBcGA1UEDRMQMWlGRkxHbTV3RmVT WjZ6OTEXMBUGA1UEAwwOcGV0ZXJAcGVhbi5vcmcxHTAbBgkqhkiG9w0BCQEWDnBldGVyQHBlYW4u b3JnMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAzoKHiOE9vdQgax/GZyTaqtNvfjGI HwG1tsMOXZELs49KJY66oD//szW3yoIl8nQapUBn+hZqs3QT5PxqfElXxljYszYE6yk3kWR7EVtl IEfT7Pf24XlFw4uzoZzEjaxPJBt4+BWwb1MpqBmwTNZwZGYI9SO6JW23G9o+e+hPmlXFTovW9B36 J0M2Qu0+IE6MsDIG0y5CwuiXMqNz+vEBiIBvdef3CIidRn3/K7DQYBYn9gj/UNB1yf1GRhsNDO12 4T9+9bhlplov0srt7pqQjaSiiqVOCCWdpxvM/eF0LFBkEFATy45RKtl2vk9zM1wmI+sU29vodHoD Duf8t4bTtQIDAQABo4IC1DCCAtAwCQYDVR0TBAIwADALBgNVHQ8EBAMCBLAwHQYDVR0lBBYwFAYI KwYBBQUHAwIGCCsGAQUFBwMEMB0GA1UdDgQWBBSAhVDjVwheLV39/7XFsz9rQP0sVDAfBgNVHSME GDAWgBRTcu2SnODaywFcfH6WNU7y1LhRgjAZBgNVHREEEjAQgQ5wZXRlckBwZWFuLm9yZzCCAUwG A1UdIASCAUMwggE/MIIBOwYLKwYBBAGBtTcBAgMwggEqMC4GCCsGAQUFBwIBFiJodHRwOi8vd3d3 LnN0YXJ0c3NsLmNvbS9wb2xpY3kucGRmMIH3BggrBgEFBQcCAjCB6jAnFiBTdGFydENvbSBDZXJ0 aWZpY2F0aW9uIEF1dGhvcml0eTADAgEBGoG+VGhpcyBjZXJ0aWZpY2F0ZSB3YXMgaXNzdWVkIGFj Y29yZGluZyB0byB0aGUgQ2xhc3MgMSBWYWxpZGF0aW9uIHJlcXVpcmVtZW50cyBvZiB0aGUgU3Rh cnRDb20gQ0EgcG9saWN5LCByZWxpYW5jZSBvbmx5IGZvciB0aGUgaW50ZW5kZWQgcHVycG9zZSBp biBjb21wbGlhbmNlIG9mIHRoZSByZWx5aW5nIHBhcnR5IG9ibGlnYXRpb25zLjA2BgNVHR8ELzAt MCugKaAnhiVodHRwOi8vY3JsLnN0YXJ0c3NsLmNvbS9jcnR1MS1jcmwuY3JsMIGOBggrBgEFBQcB AQSBgTB/MDkGCCsGAQUFBzABhi1odHRwOi8vb2NzcC5zdGFydHNzbC5jb20vc3ViL2NsYXNzMS9j bGllbnQvY2EwQgYIKwYBBQUHMAKGNmh0dHA6Ly9haWEuc3RhcnRzc2wuY29tL2NlcnRzL3N1Yi5j bGFzczEuY2xpZW50LmNhLmNydDAjBgNVHRIEHDAahhhodHRwOi8vd3d3LnN0YXJ0c3NsLmNvbS8w DQYJKoZIhvcNAQEFBQADggEBAFiVjpZEkQoHYAtb0E6MVJgzo1K6d6eEjLsCNbaw833a0jws4Rh0 KG/MjqjJzUwa2G6mVZb/JaodRK8VENnpxJ8WhjWqyQL8/lKnGa88XYMtl+i4ICur08IfQLG7zNFn yG/kOAiMNkgF4H6lZx/ezup9fowUOt0hxERXMcqo4p+RzPShx35EGRv+5gZNQ7XW4s2rzFzt9CHa Dar8SyAGHK3oFapKpHsVSUYik0QCLwnGcaHEHNUkCp1YMsjKwvmxVtQQs/2WfsqQlult8UYe0bTr nwDyLbgJDbvp9R5mZDrkUcXYlgP+mAmzTOrT1JhHbyYQjbbxJAmqkAIDcwVyDRAwggY0MIIEHKAD AgECAgEeMA0GCSqGSIb3DQEBBQUAMH0xCzAJBgNVBAYTAklMMRYwFAYDVQQKEw1TdGFydENvbSBM dGQuMSswKQYDVQQLEyJTZWN1cmUgRGlnaXRhbCBDZXJ0aWZpY2F0ZSBTaWduaW5nMSkwJwYDVQQD EyBTdGFydENvbSBDZXJ0aWZpY2F0aW9uIEF1dGhvcml0eTAeFw0wNzEwMjQyMTAxNTVaFw0xNzEw MjQyMTAxNTVaMIGMMQswCQYDVQQGEwJJTDEWMBQGA1UEChMNU3RhcnRDb20gTHRkLjErMCkGA1UE CxMiU2VjdXJlIERpZ2l0YWwgQ2VydGlmaWNhdGUgU2lnbmluZzE4MDYGA1UEAxMvU3RhcnRDb20g Q2xhc3MgMSBQcmltYXJ5IEludGVybWVkaWF0ZSBDbGllbnQgQ0EwggEiMA0GCSqGSIb3DQEBAQUA A4IBDwAwggEKAoIBAQDHCYPMzi3YGrEppC4Tq5a+ijKDjKaIQZZVR63UbxIP6uq/I0fhCu+cQhoU fE6ERKKnu8zPf1Jwuk0tsvVCk6U9b+0UjM0dLep3ZdE1gblK/1FwYT5Pipsu2yOMluLqwvsuz9/9 f1+1PKHG/FaR/wpbfuIqu54qzHDYeqiUfsYzoVflR80DAC7hmJ+SmZnNTWyUGHJbBpA8Q89lGxah NvuryGaC/o2/ceD2uYDX9U8Eg5DpIpGQdcbQeGarV04WgAUjjXX5r/2dabmtxWMZwhZna//jdiSy rrSMTGKkDiXm6/3/4ebfeZuCYKzN2P8O2F/Xe2AC/Y7zeEsnR7FOp+uXAgMBAAGjggGtMIIBqTAP BgNVHRMBAf8EBTADAQH/MA4GA1UdDwEB/wQEAwIBBjAdBgNVHQ4EFgQUU3Ltkpzg2ssBXHx+ljVO 8tS4UYIwHwYDVR0jBBgwFoAUTgvvGqRAW6UXaYcwyjRoQ9BBrvIwZgYIKwYBBQUHAQEEWjBYMCcG CCsGAQUFBzABhhtodHRwOi8vb2NzcC5zdGFydHNzbC5jb20vY2EwLQYIKwYBBQUHMAKGIWh0dHA6 Ly93d3cuc3RhcnRzc2wuY29tL3Nmc2NhLmNydDBbBgNVHR8EVDBSMCegJaAjhiFodHRwOi8vd3d3 LnN0YXJ0c3NsLmNvbS9zZnNjYS5jcmwwJ6AloCOGIWh0dHA6Ly9jcmwuc3RhcnRzc2wuY29tL3Nm c2NhLmNybDCBgAYDVR0gBHkwdzB1BgsrBgEEAYG1NwECATBmMC4GCCsGAQUFBwIBFiJodHRwOi8v d3d3LnN0YXJ0c3NsLmNvbS9wb2xpY3kucGRmMDQGCCsGAQUFBwIBFihodHRwOi8vd3d3LnN0YXJ0 c3NsLmNvbS9pbnRlcm1lZGlhdGUucGRmMA0GCSqGSIb3DQEBBQUAA4ICAQAKgwh9eKssBly4Y4xe rhy5I3dNoXHYfYa8PlVLL/qtXnkFgdtY1o95CfegFJTwqBBmf8pyTUnFsukDFUI22zF5bVHzuJ+G xhnSqN2sD1qetbYwBYK2iyYA5Pg7Er1A+hKMIzEzcduRkIMmCeUTyMyikfbUFvIBivtvkR8ZFAk2 2BZy+pJfAoedO61HTz4qSfQoCRcLN5A0t4DkuVhTMXIzuQ8CnykhExD6x4e6ebIbrjZLb7L+ocR0 y4YjCl/Pd4MXU91y0vTipgr/O75CDUHDRHCCKBVmz/Rzkc/b970MEeHt5LC3NiWTgBSvrLEuVzBK M586YoRD9Dy3OHQgWI270g+5MYA8GfgI/EPT5G7xPbCDz+zjdH89PeR3U4So4lSXur6H6vp+m9TQ XPF3a0LwZrp8MQ+Z77U1uL7TelWO5lApsbAonrqASfTpaprFVkL4nyGH+NHST2ZJPWIBk81i6Vw0 ny0qZW2Niy/QvVNKbb43A43ny076khXO7cNbBIRdJ/6qQNq9Bqb5C0Q5nEsFcj75oxQRqlKf6Tcv GbjxkJh8BYtv9ePsXklAxtm8J7GCUBthHSQgepbkOexhJ0wP8imUkyiPHQ0GvEnd83129fZjoEhd GwXV27ioRKbj/cIq7JRXun0NbeY+UdMYu9jGfIpDLtUUGSgsg2zMGs5R4jGCA28wggNrAgEBMIGU MIGMMQswCQYDVQQGEwJJTDEWMBQGA1UEChMNU3RhcnRDb20gTHRkLjErMCkGA1UECxMiU2VjdXJl IERpZ2l0YWwgQ2VydGlmaWNhdGUgU2lnbmluZzE4MDYGA1UEAxMvU3RhcnRDb20gQ2xhc3MgMSBQ cmltYXJ5IEludGVybWVkaWF0ZSBDbGllbnQgQ0ECAwiyiDAJBgUrDgMCGgUAoIIBrzAYBgkqhkiG 9w0BCQMxCwYJKoZIhvcNAQcBMBwGCSqGSIb3DQEJBTEPFw0xNDExMDQyMjAzMjBaMCMGCSqGSIb3 DQEJBDEWBBT3yJ7yJ77mvpObV+5anHOTgjO8YDCBpQYJKwYBBAGCNxAEMYGXMIGUMIGMMQswCQYD VQQGEwJJTDEWMBQGA1UEChMNU3RhcnRDb20gTHRkLjErMCkGA1UECxMiU2VjdXJlIERpZ2l0YWwg Q2VydGlmaWNhdGUgU2lnbmluZzE4MDYGA1UEAxMvU3RhcnRDb20gQ2xhc3MgMSBQcmltYXJ5IElu dGVybWVkaWF0ZSBDbGllbnQgQ0ECAwiyiDCBpwYLKoZIhvcNAQkQAgsxgZeggZQwgYwxCzAJBgNV BAYTAklMMRYwFAYDVQQKEw1TdGFydENvbSBMdGQuMSswKQYDVQQLEyJTZWN1cmUgRGlnaXRhbCBD ZXJ0aWZpY2F0ZSBTaWduaW5nMTgwNgYDVQQDEy9TdGFydENvbSBDbGFzcyAxIFByaW1hcnkgSW50 ZXJtZWRpYXRlIENsaWVudCBDQQIDCLKIMA0GCSqGSIb3DQEBAQUABIIBAB+XPbSsGfZMlF2ovtmg 19s9v3xafCHsmubdTdYTV3Sw/vLy7cXwmJvQHowKvXDlMmA2e8N3VVxwxFkluqMSU4w+9FZLgRwW gMC5DTbLOj80NG2LUjOgQ53xYBLCJpflVRskvTS3cHLf5LNqjlk29QOGhjISuY5ED3oiVFF/+WnJ m1EXWczv21v5jSymJ4ORyYIfP6AaSGHqbDsKKcoNfWMI0qEcgpS44EPrWeW94CoVIx+2m0/FkYza DoATFTFcdG4iREb06wBYWdzlRPkPJUYADRy/ZFwUmp1vyrLumn1yK7GG9pUT+GCFqaeBVyfulOaF u//DyG/4bofmfpZ8NtwAAAAAAAA= --Apple-Mail=_4B1E2E8C-B5F6-47E7-BB0E-678641ADBE50-- From owner-freebsd-questions@FreeBSD.ORG Tue Nov 4 22:07:12 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 1DF9125D for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 22:07:12 +0000 (UTC) Received: from mx02.qsc.de (mx02.qsc.de [213.148.130.14]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id D5B17767 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 22:07:11 +0000 (UTC) Received: from r56.edvax.de (port-92-195-37-193.dynamic.qsc.de [92.195.37.193]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by mx02.qsc.de (Postfix) with ESMTPS id 2E38E2765A; Tue, 4 Nov 2014 23:07:09 +0100 (CET) Received: from r56.edvax.de (localhost [127.0.0.1]) by r56.edvax.de (8.14.5/8.14.5) with SMTP id sA4M79jK002823; Tue, 4 Nov 2014 23:07:09 +0100 (CET) (envelope-from freebsd@edvax.de) Date: Tue, 4 Nov 2014 23:07:09 +0100 From: Polytropon <freebsd@edvax.de> To: galtsev@kicp.uchicago.edu Subject: Re: Installing Windows *after* FreeBSD Message-Id: <20141104230709.44c54a2a.freebsd@edvax.de> In-Reply-To: <59062.128.135.70.2.1415137788.squirrel@cosmo.uchicago.edu> References: <1871133.1mJRhnQs1i@falbala> <20141104223724.658347f2.freebsd@edvax.de> <59062.128.135.70.2.1415137788.squirrel@cosmo.uchicago.edu> Reply-To: Polytropon <freebsd@edvax.de> Organization: EDVAX X-Mailer: Sylpheed 3.1.1 (GTK+ 2.24.5; i386-portbld-freebsd8.2) Mime-Version: 1.0 Content-Type: text/plain; charset=US-ASCII Content-Transfer-Encoding: 7bit Cc: freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Tue, 04 Nov 2014 22:07:12 -0000 On Tue, 4 Nov 2014 15:49:48 -0600 (CST), Valeri Galtsev wrote: > > On Tue, November 4, 2014 3:37 pm, Polytropon wrote: > > On Tue, 04 Nov 2014 21:55:11 +0100, Christian Baer wrote: > > > >> If there is any documentation > >> about using FreeBSD and Windows on one machine, it usually assumes that > >> Windows was installed first. > > > > Yes, because it's less trouble. :-) > > > > No, I would put it differently. Because FreeBSD (or Linux) know that other > systems exist, whereas M$ (Windows) prefers not to know about existence of > other OSes. This is correct, I just didn't want to express it that directly. Keep in mind that MICROS~1 invented the PC, the Internet, the mouse, and the only OS that exists is "Windows", so... you need additional tools to repair what the "Windows" installer damaged. Luckily, FreeBSD provides such tools natively (no need to buy a 3rd party program). :-) -- Polytropon Magdeburg, Germany Happy FreeBSD user since 4.0 Andra moi ennepe, Mousa, ... From owner-freebsd-questions@FreeBSD.ORG Tue Nov 4 22:11:55 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 6F915394 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 22:11:55 +0000 (UTC) Received: from www81.your-server.de (www81.your-server.de [213.133.104.81]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 2E27784D for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 22:11:54 +0000 (UTC) Received: from [77.23.74.131] (helo=michael-think.fritz.box) by www81.your-server.de with esmtpsa (TLSv1:DHE-RSA-AES256-SHA:256) (Exim 4.80.1) (envelope-from <gmx@ross.cx>) id 1Xlm5f-00034T-KR; Tue, 04 Nov 2014 22:56:39 +0100 Content-Type: text/plain; charset=iso-8859-15; format=flowed; delsp=yes To: "Charlie Root" <root@ymer.thorshammare.org>, "Lowell Gilbert" <freebsd-questions-local@be-well.ilk.org>, freebsd-questions@freebsd.org Subject: Re: sshguard pf References: <20141102154444.GA42429@ymer.thorshammare.org> <54581F0E.4080404@a1poweruser.com> <20141104110202.GA37003@ymer.thorshammare.org> <44vbmv6kyp.fsf@lowell-desk.lan> <20141104193652.GA3062@ymer.thorshammare.org> <44oasm7l6f.fsf@lowell-desk.lan> Date: Tue, 04 Nov 2014 22:56:32 +0100 MIME-Version: 1.0 Content-Transfer-Encoding: 7bit From: "Michael Ross" <gmx@ross.cx> Message-ID: <op.xotlwiezg7njmm@michael-think.fritz.box> In-Reply-To: <44oasm7l6f.fsf@lowell-desk.lan> User-Agent: Opera Mail/1.0 (Win32) X-Authenticated-Sender: gmx@ross.cx X-Virus-Scanned: Clear (ClamAV 0.98.4/19584/Tue Nov 4 18:39:15 2014) X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Tue, 04 Nov 2014 22:11:55 -0000 On Tue, 04 Nov 2014 21:41:44 +0100, Lowell Gilbert <freebsd-questions-local@be-well.ilk.org> wrote: > Charlie Root <root@ymer.thorshammare.org> writes: > >> Do "bruteblock" require me to run ipfw2 as my firewall ? > > Yes. That's why I mentioned that there are several other options, I just > don't know them myself. > > Last I checked, bruteblock doesn't support IPv6 either, so one of these > days I may have to check into the choices again. For the record, I use fail2ban, and setting it up was painless, and it will support pf. Quick-How-To: 1. Install fail2ban 2. Create file /usr/local/etc/fail2ban/jail.local [sshd] enabled = true action = pf port = ssh logpath = %(sshd_log)s [sshd-ddos] enabled = true action = pf port = ssh logpath = %(sshd_log)s 3. Modify /usr/local/etc/fail2ban/action.d/pf.conf You need the correct path to pfctl in "actionban" and "actionunban" and the correct tablename in the [Init] section at the end. 4. service fail2ban onestart > _______________________________________________ > freebsd-questions@freebsd.org mailing list > http://lists.freebsd.org/mailman/listinfo/freebsd-questions > To unsubscribe, send any mail to > "freebsd-questions-unsubscribe@freebsd.org" From owner-freebsd-questions@FreeBSD.ORG Tue Nov 4 22:26:49 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 26BC4A0A for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 22:26:49 +0000 (UTC) Received: from kirk-ext.obspm.fr (kirk-ext.obspm.fr [145.238.193.7]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client CN "*.obspm.fr", Issuer "TERENA SSL CA" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 62F62A1D for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 22:26:47 +0000 (UTC) Received: from chezmoi (her78-1-88-179-224-85.fbx.proxad.net [88.179.224.85]) (authenticated bits=0) by kirk-ext.obspm.fr (8.14.4/8.14.4/DIO Observatoire de Paris - 15/04/10) with ESMTP id sA4MP1Wv017976 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT) for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 23:25:02 +0100 Date: Tue, 4 Nov 2014 23:24:59 +0100 From: Albert Shih <Albert.Shih@obspm.fr> To: freebsd-questions@freebsd.org Subject: Memory bank. Message-ID: <20141104222459.GA2015@chezmoi> MIME-Version: 1.0 Content-Type: text/plain; charset=iso-8859-1 Content-Disposition: inline Content-Transfer-Encoding: 8bit User-Agent: Mutt/1.5.23 (2014-03-12) X-Greylist: Sender succeeded SMTP AUTH, not delayed by milter-greylist-4.3.9 (kirk-ext.obspm.fr [145.238.193.20]); Tue, 04 Nov 2014 23:25:02 +0100 (CET) X-Virus-Scanned: clamav-milter 0.98.4 at kirk-ext.obspm.fr X-Virus-Status: Clean X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Tue, 04 Nov 2014 22:26:49 -0000 Hi, On one of my server I've some issue with the memory. I've got some messages like Oct 1 09:24:17 hostname kernel: MCA: Bank 5, Status 0x8c00004000010091 Oct 1 09:24:17 hostname kernel: MCA: Bank 5, Status 0x8c00004000010091 Oct 1 09:24:17 hostname kernel: MCA: Bank 9, Status 0x8800004a00800091 Oct 1 09:24:17 hostname kernel: MCA: Bank 5, Status 0x8c00004000010091 Oct 1 09:24:17 hostname kernel: MCA: Bank 5, Status 0x8c00004000010091 Oct 1 09:24:17 hostname kernel: MCA: Bank 9, Status 0x8800004a00800091 Oct 1 09:24:17 hostname kernel: MCA: Bank 5, Status 0x8c00004000010091 Oct 1 09:24:17 hostname kernel: MCA: Bank 5, Status 0x8c00004000010091 Oct 1 09:24:18 hostname kernel: MCA: Bank 9, Status 0x8800004a00800091 Oct 1 10:49:12 hostname kernel: MCA: Bank 5, Status 0x8c00004000010091 Oct 1 10:49:12 hostname kernel: MCA: Bank 5, Status 0x8c00004000010091 Oct 1 10:49:12 hostname kernel: MCA: Bank 9, Status 0x8800004a00800091 Oct 1 23:11:06 hostname kernel: MCA: Bank 5, Status 0x8c00004000010091 Oct 1 23:11:06 hostname kernel: MCA: Bank 5, Status 0x8c00004000010091 Oct 1 23:11:06 hostname kernel: MCA: Bank 9, Status 0x8800004a00800091 Oct 3 15:29:01 hostname kernel: MCA: Bank 9, Status 0x8c00004a000800c1 Oct 4 06:43:46 hostname kernel: MCA: Bank 5, Status 0x8c00004000010091 Oct 4 06:43:46 hostname kernel: MCA: Bank 5, Status 0x8c00004000010091 Oct 4 06:43:46 hostname kernel: MCA: Bank 9, Status 0x8800004a00800091 Oct 5 21:22:48 hostname kernel: MCA: Bank 5, Status 0x8c00004000010091 so the kernel tell me I should replace the bank 9 and bank 5. but how can I known which physicaly bank those 9 and 5 are. Regards. -- Albert SHIH DIO bâtiment 15 Observatoire de Paris 5 Place Jules Janssen 92195 Meudon Cedex France Téléphone : +33 1 45 07 76 26/+33 6 86 69 95 71 xmpp: jas@obspm.fr Heure local/Local time: mar 4 nov 2014 23:21:32 CET From owner-freebsd-questions@FreeBSD.ORG Tue Nov 4 22:34:30 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 77F03B71 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 22:34:30 +0000 (UTC) Received: from cosmo.uchicago.edu (cosmo.uchicago.edu [128.135.52.97]) by mx1.freebsd.org (Postfix) with ESMTP id 51855B24 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 22:34:29 +0000 (UTC) Received: by cosmo.uchicago.edu (Postfix, from userid 48) id 8A9C3CB8C9B; Tue, 4 Nov 2014 16:34:29 -0600 (CST) Received: from 128.135.70.2 (SquirrelMail authenticated user valeri) by cosmo.uchicago.edu with HTTP; Tue, 4 Nov 2014 16:34:29 -0600 (CST) Message-ID: <52248.128.135.70.2.1415140469.squirrel@cosmo.uchicago.edu> In-Reply-To: <20141104230709.44c54a2a.freebsd@edvax.de> References: <1871133.1mJRhnQs1i@falbala> <20141104223724.658347f2.freebsd@edvax.de> <59062.128.135.70.2.1415137788.squirrel@cosmo.uchicago.edu> <20141104230709.44c54a2a.freebsd@edvax.de> Date: Tue, 4 Nov 2014 16:34:29 -0600 (CST) Subject: Re: Installing Windows *after* FreeBSD From: "Valeri Galtsev" <galtsev@kicp.uchicago.edu> To: freebsd-questions@freebsd.org Reply-To: galtsev@kicp.uchicago.edu User-Agent: SquirrelMail/1.4.8-5.el5.centos.7 MIME-Version: 1.0 Content-Type: text/plain;charset=iso-8859-1 Content-Transfer-Encoding: 8bit X-Priority: 3 (Normal) Importance: Normal X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Tue, 04 Nov 2014 22:34:30 -0000 On Tue, November 4, 2014 4:07 pm, Polytropon wrote: > On Tue, 4 Nov 2014 15:49:48 -0600 (CST), Valeri Galtsev wrote: >> >> On Tue, November 4, 2014 3:37 pm, Polytropon wrote: >> > On Tue, 04 Nov 2014 21:55:11 +0100, Christian Baer wrote: >> > >> >> If there is any documentation >> >> about using FreeBSD and Windows on one machine, it usually assumes >> that >> >> Windows was installed first. >> > >> > Yes, because it's less trouble. :-) >> > >> >> No, I would put it differently. Because FreeBSD (or Linux) know that >> other >> systems exist, whereas M$ (Windows) prefers not to know about existence >> of >> other OSes. > > This is correct, I just didn't want to express it > that directly. Keep in mind that MICROS~1 invented > the PC, the Internet, the mouse, and the only OS > that exists is "Windows", so... you need additional > tools to repair what the "Windows" installer damaged. > Luckily, FreeBSD provides such tools natively (no > need to buy a 3rd party program). :-) > The only thing I'm always holding myself from saying is that they (M$) implemented GUI ideas of... as I don't know whether it is of Xwindow system or of IBM's OS/2... On the same funny note: M$ Windows is the only OS I know whose vendor explicitly tells you that it is not safe to run without 3rd party software (antivirus ;-) Someone suggested to run it in VM. I would add: or on somebody's else machine... Valeri ++++++++++++++++++++++++++++++++++++++++ Valeri Galtsev Sr System Administrator Department of Astronomy and Astrophysics Kavli Institute for Cosmological Physics University of Chicago Phone: 773-702-4247 ++++++++++++++++++++++++++++++++++++++++ From owner-freebsd-questions@FreeBSD.ORG Tue Nov 4 23:21:28 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id BDFEDB5C for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 23:21:28 +0000 (UTC) Received: from smtprelay-h21.telenor.se (smtprelay-h21.telenor.se [195.54.99.196]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 4296BB3 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 23:21:27 +0000 (UTC) Received: from ipb1.telenor.se (ipb1.telenor.se [195.54.127.164]) by smtprelay-h21.telenor.se (Postfix) with ESMTP id 7FCE9D5A5 for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 00:21:23 +0100 (CET) X-SENDER-IP: [83.227.225.121] X-LISTENER: [smtp.bredband.net] X-IronPort-Anti-Spam-Filtered: true X-IronPort-Anti-Spam-Result: AhQHAHZeWVRT4+F5PGdsb2JhbABbgw6BLddXFwEBAQEBAQUBAQEBODuEAwEBAQMDUyMQCw4KCSUPBRkMChoTiEUBxy4glESBHgWeDQGaSzwvgksBAQE X-IPAS-Result: AhQHAHZeWVRT4+F5PGdsb2JhbABbgw6BLddXFwEBAQEBAQUBAQEBODuEAwEBAQMDUyMQCw4KCSUPBRkMChoTiEUBxy4glESBHgWeDQGaSzwvgksBAQE X-IronPort-AV: E=Sophos;i="5.07,315,1413237600"; d="scan'208";a="106548677" Received: from ua-83-227-225-121.cust.bredbandsbolaget.se (HELO ymer.thorshammare.org) ([83.227.225.121]) by ipb1.telenor.se with ESMTP; 05 Nov 2014 00:21:22 +0100 Received: from ymer.thorshammare.org (localhost [127.0.0.1]) by ymer.thorshammare.org (8.14.9/8.14.9) with ESMTP id sA4NLFIW004275 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-GCM-SHA384 bits=256 verify=NO); Wed, 5 Nov 2014 00:21:19 +0100 (CET) (envelope-from hasse@ymer.thorshammare.org) Received: (from root@localhost) by ymer.thorshammare.org (8.14.9/8.14.9/Submit) id sA4NLFQT004274; Wed, 5 Nov 2014 00:21:15 +0100 (CET) (envelope-from hasse) Date: Wed, 5 Nov 2014 00:21:15 +0100 From: Charlie Root <root@ymer.thorshammare.org> To: Michael Ross <gmx@ross.cx> Subject: Re: sshguard pf Message-ID: <20141104232115.GA3145@ymer.thorshammare.org> References: <20141102154444.GA42429@ymer.thorshammare.org> <54581F0E.4080404@a1poweruser.com> <20141104110202.GA37003@ymer.thorshammare.org> <44vbmv6kyp.fsf@lowell-desk.lan> <20141104193652.GA3062@ymer.thorshammare.org> <44oasm7l6f.fsf@lowell-desk.lan> <op.xotlwiezg7njmm@michael-think.fritz.box> MIME-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="x+6KMIRAuhnl3hBn" Content-Disposition: inline In-Reply-To: <op.xotlwiezg7njmm@michael-think.fritz.box> User-Agent: Mutt/1.5.23 (2014-03-12) Cc: Lowell Gilbert <freebsd-questions-local@be-well.ilk.org>, freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Tue, 04 Nov 2014 23:21:28 -0000 --x+6KMIRAuhnl3hBn Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Content-Transfer-Encoding: quoted-printable On Tue, Nov 04, 2014 at 10:56:32PM +0100, Michael Ross wrote: > On Tue, 04 Nov 2014 21:41:44 +0100, Lowell Gilbert =20 > <freebsd-questions-local@be-well.ilk.org> wrote: >=20 > > Charlie Root <root@ymer.thorshammare.org> writes: > > > >> Do "bruteblock" require me to run ipfw2 as my firewall ? > > > > Yes. That's why I mentioned that there are several other options, I just > > don't know them myself. > > > > Last I checked, bruteblock doesn't support IPv6 either, so one of these > > days I may have to check into the choices again. >=20 > For the record, I use fail2ban, > and setting it up was painless, and it will support pf. >=20 > Quick-How-To: >=20 > 1. Install fail2ban > 2. Create file /usr/local/etc/fail2ban/jail.local >=20 > [sshd] >=20 > enabled =3D true > action =3D pf > port =3D ssh > logpath =3D %(sshd_log)s >=20 >=20 > [sshd-ddos] >=20 > enabled =3D true > action =3D pf > port =3D ssh > logpath =3D %(sshd_log)s >=20 >=20 > 3. Modify /usr/local/etc/fail2ban/action.d/pf.conf > You need the correct path to pfctl in "actionban" and "actionunban" > and the correct tablename in the [Init] section at the end. >=20 > 4. service fail2ban onestart >=20 >=20 Thanks a lot everybody. Lots of good advice. Preciate all the help. Think I will give fail2ban another try with the above configuration. I've been running ossec-hids a while ago with great success, but feel like that's shooting mosquitos with a cannon in this case. /hasse --x+6KMIRAuhnl3hBn Content-Type: application/pgp-signature -----BEGIN PGP SIGNATURE----- Version: GnuPG v2 iQIcBAEBAgAGBQJUWV9rAAoJEDCDGDmNzjqcHD4P/A0EL8gANprYFnyvjCwUu47p oiOf3jq9WFpLm4G6qBaLNsd2ihkid5NAT53MFABmmTJ18p12bfQRI3iP/ou5+f8x HjREt010LvJ5Q+s0W9Hf1j4uWFVjDEt3reagYrDnhtQZkdxWWh3LklDqxTzN3XUo 0g1/Dy8PRmMR302iw3rZR1yzxly/5VPJooJN+jU8byNHjrup5SBmClPjS89Y+3tr lt13ybMn+Ga1nhjI8thc8pCQm4GmLtkcxvmsW1z2YyCeyoLzQJIatgCbFcmo7H6T fAqnn9stuKt/cy5cQ9GzPCw8Odt967Rg87fx7Q66z+zcQyK1F1mJWAyV85FSVYj5 cf6BtBPqn2NwYpWSqA/2DE3J2bX9YtsO56CLRGk5FuhXOpkCPhkM9nd5OzPOlx+v KFQa6v1k0YBLdOnuJ4/5sJT92EYfx72zVjRMooRgSHA9iAokapIL9UnFUj2EPuBf 8L6COGePkxbUJRI4M4JSpl1vjOTJq6QjEOaXpWvrSuC2uQGUHRvtgqNkBmlPIHy3 v1MPGt9Dn0WnLNhk/xq8cqo6OSJLMfLyAxFp+7ACdf3c/IuIphCqFGPEYVRIqsTe tI5lUd5JUQrGOutX4PAop7OKMtyPWoDeeRWw3wRscSaDPsUiEsOQmyZ1IORZLV9A ZqmJsQzuFLjSdGpsvtS/ =6LC5 -----END PGP SIGNATURE----- --x+6KMIRAuhnl3hBn-- From owner-freebsd-questions@FreeBSD.ORG Tue Nov 4 23:32:51 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id AFFC181B for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 23:32:51 +0000 (UTC) Received: from mail-pd0-x22c.google.com (mail-pd0-x22c.google.com [IPv6:2607:f8b0:400e:c02::22c]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 8B0B81D7 for <freebsd-questions@freebsd.org>; Tue, 4 Nov 2014 23:32:51 +0000 (UTC) Received: by mail-pd0-f172.google.com with SMTP id r10so14711313pdi.3 for <freebsd-questions@freebsd.org>; Tue, 04 Nov 2014 15:32:51 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:date:message-id:subject:from:to:content-type; bh=5ObDvybMOcBI8UNT9HGHe4hkQSzxtgEJLBYYBSx5vtE=; b=NbUfMatNKuU0xEmOcZlE1ZUyhw8+oObLpXHFW2kSLj5Lrg0EGtAUMjOz8JXCBoIyxe c2i5xS6S9zIvl7VERKcujeHpG1CZ+zz0J7Dp7M3ujCvxhylkfCTaX3NyRrE0udLMCc/s wbr5jm6PpFYrVlHUsHidXZpi3PEZCXvlaabie7N2yG8qsauWyaLdm+rY4PT2YLvQDjmI V5xXUKtIRZWbV8NKBEgSxgDwTRKs0Gu5mbAXISAfc4hXOoUn0PnfQ/jNRUUWdv/OaSMM EyCSEGiClBzvCEFjeUANYoCq6ETGj+u9d63AyBjKhYpSROxS/E35VXzVAaIB5SsPKEZa s+7w== MIME-Version: 1.0 X-Received: by 10.68.236.168 with SMTP id uv8mr52685150pbc.5.1415143970963; Tue, 04 Nov 2014 15:32:50 -0800 (PST) Received: by 10.70.37.143 with HTTP; Tue, 4 Nov 2014 15:32:50 -0800 (PST) Date: Tue, 4 Nov 2014 23:32:50 +0000 Message-ID: <CAPOKG-Oaks_8Fqt=cQgJnR9WYU7GCX9Ub8t_nfvkzj_95RpGow@mail.gmail.com> Subject: Question about the update of openssl From: Eduardo Duarte <calhau69@gmail.com> To: freebsd-questions@freebsd.org Content-Type: text/plain; charset=UTF-8 X-Content-Filtered-By: Mailman/MimeDel 2.1.18-1 X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Tue, 04 Nov 2014 23:32:51 -0000 Hello, I work for a company that was several servers using freebsd and for the last couple of days a question is on our mind... I understand that freebsd can have 2 versions of openssl installed. The base one and one that is installed from ports. My question is why openssl cannot be update through ports or another system? I understand that some times this update can be a problem and not a solution but sometimes (Example:Heartbleed bug) it can be useful and also sometimes we really want to update the machine to the last version before put it into production! If someone can answer I will be really happy and also if the question as been asked already can someone point me to the answer and sorry for the duplicate. Best regards, Eduardo Duarte From owner-freebsd-questions@FreeBSD.ORG Wed Nov 5 00:19:23 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 0B6EB953 for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 00:19:23 +0000 (UTC) Received: from mail-wg0-x230.google.com (mail-wg0-x230.google.com [IPv6:2a00:1450:400c:c00::230]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 9A2368BF for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 00:19:22 +0000 (UTC) Received: by mail-wg0-f48.google.com with SMTP id m15so9393065wgh.35 for <freebsd-questions@freebsd.org>; Tue, 04 Nov 2014 16:19:20 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:in-reply-to:references:date:message-id:subject:from:to :content-type; bh=1Y8u4FBEipnNMyXPGc0eHn5XHGJgSTyhWfz8CLG22kE=; b=JYUba/H5D/WXBaizXGp8RrN1HONlyLkAw3uNaUu4tQ0Za8/9KasN0I2iUKLVwIlXuk 6fZJnbT2O/Ux289KiaDYIOgSHWEcMgS63mBfkS7/O6b2Lh8jBqResAtPmXNUxJIRxjWW VWXYx8aHqjwVCIbl3qbkAL43FkaXslsRgJyIFfAk4UCHVbPD5JhBMgQ7ZajlzvxtddAm Xcs9/FEh1wU1AHgZ48MtSfCvmE08jQZtzKeogErFB1q0yIjPlDdsi7xNV+5zRGAKVTp3 kDIhaZKBDnBuJAkMwTgb8vuZamGHUMzoQY7MZB83qIEe8nwUB3yUBl/NrBRQtATI4mO3 lVhg== MIME-Version: 1.0 X-Received: by 10.180.37.130 with SMTP id y2mr1401589wij.78.1415146760839; Tue, 04 Nov 2014 16:19:20 -0800 (PST) Received: by 10.216.235.3 with HTTP; Tue, 4 Nov 2014 16:19:20 -0800 (PST) In-Reply-To: <1410176092.86089.YahooMailNeo@web160705.mail.bf1.yahoo.com> References: <1410170060.62398.YahooMailNeo@web160702.mail.bf1.yahoo.com> <540D8214.5070400@my.hennepintech.edu> <1410176092.86089.YahooMailNeo@web160705.mail.bf1.yahoo.com> Date: Tue, 4 Nov 2014 19:19:20 -0500 Message-ID: <CAHHBGkptx=0-CwTf8P6UPvDqUURwOhhzPQ3ckHDkovZmY4qiTQ@mail.gmail.com> Subject: Re: htop alternative From: "illoai@gmail.com" <illoai@gmail.com> To: Laszlo Danielisz <laszlo.danielisz@yahoo.com>, "freebsd-questions@freebsd.org" <freebsd-questions@freebsd.org> Content-Type: text/plain; charset=UTF-8 X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Wed, 05 Nov 2014 00:19:23 -0000 On 8 September 2014 07:34, Laszlo Danielisz via freebsd-questions <freebsd-questions@freebsd.org> wrote: > Thank you everybody! > htop it was not written for FreeBSD, as Andrew Berg wrote. This is the reason I'm looking for a replacement. > Humm, kinda late here, but you can always try sysutils/atop. Frankly, I just did: % ls /ports/sysutils/ | grep top & went through the pkg-descr files of those for things that sounded likely. -- -- From owner-freebsd-questions@FreeBSD.ORG Wed Nov 5 00:39:10 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id F355BD5B for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 00:39:09 +0000 (UTC) Received: from nightmare.dreamchaser.org (66.109.141.57-mso.montana.com [66.109.141.57]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id AD563B0D for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 00:39:08 +0000 (UTC) Received: from breakaway.dreamchaser.org (breakaway.dreamchaser.org. [192.168.151.122]) by nightmare.dreamchaser.org (8.13.6/8.13.6) with ESMTP id sA51SCZA004682; Tue, 4 Nov 2014 18:28:13 -0700 (MST) (envelope-from vagabond@blackfoot.net) Message-ID: <54596FE0.7020603@blackfoot.net> Date: Tue, 04 Nov 2014 17:31:28 -0700 From: Gary Aitken <vagabond@blackfoot.net> User-Agent: Mozilla/5.0 (X11; FreeBSD amd64; rv:31.0) Gecko/20100101 Thunderbird/31.0 MIME-Version: 1.0 To: Ian Smith <smithi@nimnet.asn.au> Subject: Re: natd not translating? References: <mailman.73.1415016001.56588.freebsd-questions@freebsd.org> <20141104160325.W52402@sola.nimnet.asn.au> In-Reply-To: <20141104160325.W52402@sola.nimnet.asn.au> Content-Type: text/plain; charset=windows-1252 Content-Transfer-Encoding: 7bit X-Greylist: Sender IP whitelisted, not delayed by milter-greylist-2.0.2 (nightmare.dreamchaser.org [192.168.151.101]); Tue, 04 Nov 2014 18:28:13 -0700 (MST) Cc: freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Wed, 05 Nov 2014 00:39:10 -0000 Hi Ian, Thanks for the reply. I've made a little progress since posting that as of today, but not there yet. (see below) This whole exercise has been an example of why it's a help to all be in the same room. Especially when you don't have an alternate network connection! :-( My understanding is now not necessarily broader than it otherwise might be, but it is surely harder won and probably burned in a bit better... At my stage in life I can only hope it stays there long enough to get me to the end... On 11/03/14 22:37, Ian Smith wrote: > In freebsd-questions Digest, Vol 544, Issue 1, Message: 9 > On Sun, 2 Nov 2014 17:36:36 -0700 "Gary Aitken" <vagabond@blackfoot.net> wrote: ... > > I'm trying to set up natd and can't for the life of me figure out > > what's wrong with my config. > > > > natd.conf: > > > > use_sockets > > same_ports > > unregistered_only > > verbose > > alias_address 66.109.141.60 > > > > What I see: > > In {default}[ICMP] [ICMP] 192.168.1.2 -> 128.2.42.52 8(0) aliased to > > [ICMP] 192.168.1.2 -> 128.2.42.52 8(0) > > > > Any thoughts on why natd isn't translating 192.168.1.2 to 66.108.141.60? ... > Not enough information to have any idea how your NAT box is setup. > > Need to know the inside and outside interface addresses (eg ifconfig); > ipfw rules, especially around those invoking natd (divert rule/s) and > where these are placed in your ruleset; who/where is 192.168.1.2, is > 66.109.141.60 always your assigned public IP address, freebsd version? Sorry: world -> ep0 (66.109.141.*) fbsdbox (192.168.1.1) xl0 -> internal 66.109.141.60 is one of my assigned ip addrs. I *think* I got the above problem even with ipfw wide open: 00005 allow ip from any to any 00010 divert 8668 ip from any to any via ep0 I say *think* because I am further along but did not go back and verify the cause. My head is a bit damaged and the wall is bloody. I believe the problem was a missing entry in /boot/loader.conf (ipdivert_load="YES") which I found as a result of this note and the references to others in it: http://freebsd.1045724.n5.nabble.com/Kernel-Update-IPFW-not-working-td4208637.html Anyway, I'm past that problem and most things are working. However, still having some trouble working out my ipfw rules but if I can see what's happening I think I can figure it out. However... I can't seem to get logging to work. I have the following in natd.conf: log_denied log_ipfw_denied log_facility local0 and the following in syslog.conf !local0 *.* /var/log/natd.log If I run natd with verbose, I occasionally see "natd: failed to write packet back: Permission denied" errors on the controlling terminal. If I run without verbose (detached), I see no entries in /var/log/natd.log. Thanks for any insights. Gary From owner-freebsd-questions@FreeBSD.ORG Wed Nov 5 00:53:09 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 108782FA for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 00:53:09 +0000 (UTC) Received: from mail-wi0-x236.google.com (mail-wi0-x236.google.com [IPv6:2a00:1450:400c:c05::236]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id A1355FCB for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 00:53:08 +0000 (UTC) Received: by mail-wi0-f182.google.com with SMTP id d1so612455wiv.9 for <freebsd-questions@freebsd.org>; Tue, 04 Nov 2014 16:53:06 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:in-reply-to:references:date:message-id:subject:from:to :cc:content-type; bh=HpOp+FQrdMD2hLnvjy0OPDFIMZFDFOfkIXQL9MN9sNk=; b=K/IlYowj1pem3F+RTkNWaB+r5tZIBzd6WrLPehzRvw3JKQyK3outLqKCRD+CPnMysB 3GJ4bxarxEGo6UiptvCW0u704v8itB7/ebF6OH0YbFHRbE9Z9iQiux/NQ3cPuPlMLxTd THuH8YCsxt5DIe/6D908+AkuWEbIcq6jX241oTvts2AXaW9yeTBnmUlumCnRa1V1SRfO ocfB82/zGEvNaWJDoTMSJW5sASsxo7I+7LNXXMpNFAVsbtpl2ZeFPRxtbrAtM0X9JE6l JVhRYYjRnngmnWV+8KqoSVEywNMtvUPw8H4skT+AsgkutyWOnN0kwbwz8dEMfcIRYAAW ycFA== MIME-Version: 1.0 X-Received: by 10.180.106.103 with SMTP id gt7mr15294381wib.0.1415148786918; Tue, 04 Nov 2014 16:53:06 -0800 (PST) Received: by 10.216.235.3 with HTTP; Tue, 4 Nov 2014 16:53:06 -0800 (PST) In-Reply-To: <20141030224853.02fceca95497401f6a70b7bd@neuf.fr> References: <20141030224853.02fceca95497401f6a70b7bd@neuf.fr> Date: Tue, 4 Nov 2014 19:53:06 -0500 Message-ID: <CAHHBGkp6PKfa9sJcfGxKS1E-zfwMQxK4-vJz2KsCqaP6zmzyNw@mail.gmail.com> Subject: Re: /usr/src update From: "illoai@gmail.com" <illoai@gmail.com> To: francesco scaglione <scaglione.francesco@neuf.fr> Content-Type: text/plain; charset=UTF-8 Cc: "freebsd-questions@freebsd.org" <freebsd-questions@freebsd.org> X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Wed, 05 Nov 2014 00:53:09 -0000 On 30 October 2014 17:48, francesco scaglione <scaglione.francesco@neuf.fr> wrote: > Hi, ... > > Would it be safe to remove the src component from > freebsd-update.conf here as well or should I keep that? > Assuming you never do source updates of your base system, (& given that you use freebsd-update, you probably don't ever) & that you don't install any ports that require that /usr/src be present to build (assuming you build ports from source rather than just install pre-built packages), I can't think of a good reason to keep it. In any case, there's no harm in removing it, as its absence won't affect a running system, & it can be easily restored should the need arise. Good luck! -- -- From owner-freebsd-questions@FreeBSD.ORG Wed Nov 5 01:59:51 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id D7A0A59D for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 01:59:51 +0000 (UTC) Received: from resqmta-po-11v.sys.comcast.net (resqmta-po-11v.sys.comcast.net [IPv6:2001:558:fe16:19:96:114:154:170]) (using TLSv1.2 with cipher DHE-RSA-AES128-SHA (128/128 bits)) (Client CN "Bizanga Labs SMTP Client Certificate", Issuer "Bizanga Labs CA" (not verified)) by mx1.freebsd.org (Postfix) with ESMTPS id AB8AF8D1 for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 01:59:51 +0000 (UTC) Received: from resomta-po-20v.sys.comcast.net ([96.114.154.244]) by resqmta-po-11v.sys.comcast.net with comcast id BdzU1p0035Geu2801dzp6T; Wed, 05 Nov 2014 01:59:49 +0000 Received: from CurlySr.dbis.net ([50.183.226.175]) by resomta-po-20v.sys.comcast.net with comcast id Bdzn1p00P3nhSLa01dzn5R; Wed, 05 Nov 2014 01:59:48 +0000 Message-ID: <54598493.6050307@comcast.net> Date: Tue, 04 Nov 2014 18:59:47 -0700 From: Dave Babb <dcbdbis@comcast.net> User-Agent: Mozilla/5.0 (X11; FreeBSD amd64; rv:31.0) Gecko/20100101 Thunderbird/31.2.0 MIME-Version: 1.0 To: User Questions <freebsd-questions@freebsd.org> Subject: New Xorg DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=comcast.net; s=q20140121; t=1415152789; bh=zKOpQimPu/PzWVrrIqllLq/GU78MV2FP4tWhfuvBMvQ=; h=Received:Received:Message-ID:Date:From:MIME-Version:To:Subject: Content-Type; b=Oh1eBnzxve/6xtLWBrAqMxb6ldjU0x+VcqVhmvIGri7i4WJkbzLywFfkSIHVHaggM dv1URdWDqSZ92pCcKIYUdxpzEm9CoZ8RCzKQlNENTN2KJbeI+6VWIGVQBvDFRJlVIy /MYbpyReWr7WINVOYvfxC0uQlNhswnKVJZ7j9gGPt89A8FtPSvoi5S90h2vUjfWlng xv0EBWFHxVB+gb4WIIbi90eehHvi1PN925PyMkzKtIggNF1QuJWR9PyEHaS2cMmUoX qvMVsGSeZBWF8xocfG4UZOeA7ZfCINPTmOX4FDGwPsu8rPgpP0zD3wYiBy3JXZqVnJ 4VIQBntb8YzSA== Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: 7bit X-Content-Filtered-By: Mailman/MimeDel 2.1.18-1 X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Wed, 05 Nov 2014 01:59:51 -0000 FreeBSD 10.0 x64 I see in the wiki that using WITH_NEW_XORG and WITH_GALLIUM has been depreciated. So in reading in the wiki, and in the Freebsd handbook...., I don't see a clear "HowTo" to enable the new xorg, new dri, and new GL. May I ask for assistance please? Thank You! Sincerely and respectfully, Dave From owner-freebsd-questions@FreeBSD.ORG Wed Nov 5 06:39:45 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id A49F8572 for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 06:39:45 +0000 (UTC) Received: from exprod7og123.obsmtp.com (exprod7og123.obsmtp.com [64.18.2.24]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 16F0A7D5 for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 06:39:44 +0000 (UTC) Received: from mail-wg0-f50.google.com ([74.125.82.50]) (using TLSv1) by exprod7ob123.postini.com ([64.18.6.12]) with SMTP ID DSNKVFnGLwnIjduneytwILivq5A24Ctf67ky@postini.com; Tue, 04 Nov 2014 22:39:45 PST Received: by mail-wg0-f50.google.com with SMTP id z12so112999wgg.23 for <freebsd-questions@freebsd.org>; Tue, 04 Nov 2014 22:39:43 -0800 (PST) X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=x-gm-message-state:from:references:in-reply-to:mime-version :thread-index:date:message-id:subject:to:cc:content-type; bh=NUJCAx35K7biGQ5LQyWrTjJYG5ODUvbmzI4UaYsBcM4=; b=c8BB/f4tw1fzA+m9tn997PgUADIstRUdbsWMNW9bk3GtvhOL75u5/JXRK5zsvod6Pd D0m+IF0G3JJ4bpyf6Z1A3G1z8YjSWFCU6ihRxcQC0qyBUJRYgV51p/ym51lBN2Bkx11O r5a+1TP8RPS3b/9RkO1uemNb+Z7uiyrZzazZ4aSPYRELaITPvF3N9HcD5lGDTHMSq2Fe MdjEUeGF4eJzgtIR15yEFPdjttDaVDPxKUj/UJYdWYo5nAWSM5wfcZr9gh1dub/jvA0d Eq9L//f1jCJw5RHfDBY3Ks9eJW3Qt69ZDMrX9sSHD8/43+8FZ/YFljY1TY1RvbTIsTd/ yaGw== X-Gm-Message-State: ALoCoQmUkN//8a9r0YG130dAioIxxdMaod6OZuSqCVljLb9gYp5jyKDiT3zajw3PqhwOzGJTHCVD1IcIYOpSmd/Sxrm7lmxbyAEZWoSY1EplJl+vXwDyRhM9XdivYfpl1toCEjjFP4s7cG/PaywB+xGhct3A/LiWpw/QKOQMw4Md3aUyJ4vFdJg= X-Received: by 10.180.207.77 with SMTP id lu13mr3425797wic.12.1415169583204; Tue, 04 Nov 2014 22:39:43 -0800 (PST) X-Received: by 10.180.207.77 with SMTP id lu13mr3425779wic.12.1415169583057; Tue, 04 Nov 2014 22:39:43 -0800 (PST) From: Sibananda Sahu <sibananda.sahu@avagotech.com> References: <c1241e563944d7ec496c6c235f420b21@mail.gmail.com> <CAN2YBg78ucj2hBGHye9UN3-QFB0gT-o=dd4iynGet_sWZ5ABpQ@mail.gmail.com> In-Reply-To: <CAN2YBg78ucj2hBGHye9UN3-QFB0gT-o=dd4iynGet_sWZ5ABpQ@mail.gmail.com> MIME-Version: 1.0 X-Mailer: Microsoft Outlook 14.0 Thread-Index: AQNa5s5W0kWsy8xn8LVBabuf4+sv+AF03wk0mTAOiYA= Date: Wed, 5 Nov 2014 12:09:41 +0530 Message-ID: <1ab03c9bac878f437b205786d8304bd3@mail.gmail.com> Subject: RE: Open file descriptor reference count implementation in driver To: JD <jd1008@gmail.com> Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: quoted-printable X-Content-Filtered-By: Mailman/MimeDel 2.1.18-1 Cc: freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Wed, 05 Nov 2014 06:39:45 -0000 Hi JD, Thanks for the reply. I have grepped the whole source code in head and did not find any driver code is using the si_refcount or si_usecount. Precisely I am working on <mrsas(4)> driver. I have tested by using both the variables and observed that the si_refcount shows how many times a file descriptor has been opened. Looks like this variable is incremented when an FD is opened and decremented when the same FD is closed. But the si_usecount shows the number of open FD currently opened. Let=E2=80=99s say some app has come and opened a file but did not closed an= d exited. At this point the si_refcount shows 1 but the si_usecount shows 0. These are my observations yet. If you can point me some drivers using this reference count logic without using the si_refcount and si_usecount variables, that would be a great help= . Thanks, Sibananda Sahu *From:* JD [mailto:jd1008@gmail.com] *Sent:* Wednesday, November 05, 2014 6:16 AM *To:* Sibananda Sahu *Subject:* Re: Open file descriptor reference count implementation in drive= r Why dont you look at how other device drivers are using the refcount and user count? There plenty of examples in the source code. On Mon, Nov 3, 2014 at 11:58 PM, Sibananda Sahu < sibananda.sahu@avagotech.com> wrote: Hi, Can anybody suggest how can I implement the Open file descriptor reference count in a freebsd driver??? I have looked up at certain places in the cdev structure(sys/conf.h) and found two integer values: Int si_refcount; Int si_usecount; I think these are the stuffs useful for me. Can somebody explain what are the significance of the above mentioned integer values inside the cdev structure? Any help would be greatly appreciated. Thanks, Sibananda Sahu _______________________________________________ freebsd-questions@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-questions To unsubscribe, send any mail to "freebsd-questions-unsubscribe@freebsd.org= " From owner-freebsd-questions@FreeBSD.ORG Wed Nov 5 07:37:08 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 638CE425 for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 07:37:08 +0000 (UTC) Received: from mail-vc0-x234.google.com (mail-vc0-x234.google.com [IPv6:2607:f8b0:400c:c03::234]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 25056D7C for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 07:37:08 +0000 (UTC) Received: by mail-vc0-f180.google.com with SMTP id hy10so83985vcb.25 for <freebsd-questions@freebsd.org>; Tue, 04 Nov 2014 23:37:07 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:from:date:message-id:subject:to:content-type; bh=oZtVeJ1Cv2Cy0b2b0VNPZSL/l805ckpkCVMcRLdBjHw=; b=nLbvsRnFlLHk5mVN5Rs+/mTkU+CRiqbhjqPIveH0ws6O00oex/LEYMxlOFoAYyWOag oaFO6epzsVtDoXlz7/mdOhxmeLOwFeLKlMN2xLUVlwiixmoMJjb/27dVG0p+TWIZ/+h2 +MPny1dxpCv3lIod196SyzYJ9ORDBUg2pTr/cg6yO8p3Tr2f/L/B1q6BzC0/CRX8q2ZH xJdHtuOqg3wqOdi0lgQ2mjw6a3Jgc+snGWycbHkapBB+R7RJwztXi0aPtWxPSpsFehNM 2i1lz+4mFNH2u001WTtzRHumQKICsDPsixLmQ5vylxbNhW2eUSJHmc2S2Ss+rfnnkyMc KuwQ== X-Received: by 10.52.121.167 with SMTP id ll7mr4136947vdb.35.1415173027024; Tue, 04 Nov 2014 23:37:07 -0800 (PST) MIME-Version: 1.0 Received: by 10.31.11.147 with HTTP; Tue, 4 Nov 2014 23:36:26 -0800 (PST) From: Odhiambo Washington <odhiambo@gmail.com> Date: Wed, 5 Nov 2014 10:36:26 +0300 Message-ID: <CAAdA2WPpRa42c8U-d71gC-ge7CpsQh8JK0zdVBes3HTOLmCL9w@mail.gmail.com> Subject: FreeBSD Artwork - obi_chuck opening computer casing To: User Questions <freebsd-questions@freebsd.org> Content-Type: text/plain; charset=ISO-8859-1 X-Content-Filtered-By: Mailman/MimeDel 2.1.18-1 X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Wed, 05 Nov 2014 07:37:08 -0000 Hello, I am one of those who have used FreeBSD for like 17 years and obviously a lot has changed and some things are not easy to find. I remember there used to be quite a number of FreeBSD Artwork images somewhere. One of those was that of the FreeBSD obi chuck opening a computer casing. I have found some of these images here - http://www.xaras.it/Varie/cazzate/gallery/chucks/, but cannot seem to find this one where a computer casing is being opened. Anyone remembers it and knows where I can find it? Thanks in advance -- Best regards, Odhiambo WASHINGTON, Nairobi,KE +254733744121/+254722743223 "I can't hear you -- I'm using the scrambler." From owner-freebsd-questions@FreeBSD.ORG Wed Nov 5 08:33:49 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id EB1F1B1D for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 08:33:48 +0000 (UTC) Received: from sola.nimnet.asn.au (paqi.nimnet.asn.au [115.70.110.159]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 05D1E392 for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 08:33:47 +0000 (UTC) Received: from localhost (localhost [127.0.0.1]) by sola.nimnet.asn.au (8.14.2/8.14.2) with ESMTP id sA58XPGI081937; Wed, 5 Nov 2014 19:33:25 +1100 (EST) (envelope-from smithi@nimnet.asn.au) Date: Wed, 5 Nov 2014 19:33:25 +1100 (EST) From: Ian Smith <smithi@nimnet.asn.au> To: Gary Aitken <vagabond@blackfoot.net> Subject: Re: natd not translating? In-Reply-To: <54596FE0.7020603@blackfoot.net> Message-ID: <20141105181653.H52402@sola.nimnet.asn.au> References: <mailman.73.1415016001.56588.freebsd-questions@freebsd.org> <20141104160325.W52402@sola.nimnet.asn.au> <54596FE0.7020603@blackfoot.net> MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII Cc: freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Wed, 05 Nov 2014 08:33:49 -0000 On Tue, 4 Nov 2014 17:31:28 -0700, Gary Aitken wrote: > Hi Ian, > > Thanks for the reply. I've made a little progress since posting that as of > today, but not there yet. (see below) > > This whole exercise has been an example of why it's a help to all be in the > same room. Especially when you don't have an alternate network connection! :-( > > My understanding is now not necessarily broader than it otherwise might be, > but it is surely harder won and probably burned in a bit better... At my > stage in life I can only hope it stays there long enough to get me to the > end... Hi Gary .. yes I'm quite old enough to know exactly what you mean :) > On 11/03/14 22:37, Ian Smith wrote: > > In freebsd-questions Digest, Vol 544, Issue 1, Message: 9 > > On Sun, 2 Nov 2014 17:36:36 -0700 "Gary Aitken" <vagabond@blackfoot.net> wrote: > ... > > > I'm trying to set up natd and can't for the life of me figure out > > > what's wrong with my config. > > > > > > natd.conf: > > > > > > use_sockets > > > same_ports > > > unregistered_only > > > verbose > > > alias_address 66.109.141.60 > > > > > > What I see: > > > In {default}[ICMP] [ICMP] 192.168.1.2 -> 128.2.42.52 8(0) aliased to > > > [ICMP] 192.168.1.2 -> 128.2.42.52 8(0) > > > > > > Any thoughts on why natd isn't translating 192.168.1.2 to 66.108.141.60? > ... > > Not enough information to have any idea how your NAT box is setup. > > > > Need to know the inside and outside interface addresses (eg ifconfig); > > ipfw rules, especially around those invoking natd (divert rule/s) and > > where these are placed in your ruleset; who/where is 192.168.1.2, is > > 66.109.141.60 always your assigned public IP address, freebsd version? > > Sorry: > > world -> ep0 (66.109.141.*) fbsdbox (192.168.1.1) xl0 -> internal > 66.109.141.60 is one of my assigned ip addrs. You have a /24? I can hardly afford my /29 these days. Is fbsdbox where all your addresses are routed to? If so, to paraphrase julian@, you don't want to waste natd's time handling packets it doesn't care about, meaning packets that will never be eligible to be mapped to/from your internal network .. but that's just a refinement, for later. Are you running any services accessible from outside on any of your IPs? > I *think* I got the above problem even with ipfw wide open: > 00005 allow ip from any to any > 00010 divert 8668 ip from any to any via ep0 Rule 5 allows everything, so no packets will get as far as rule 10. Swap those and you do indeed have an open firewall, doing only NAT, though it's important to specify 'ip4' rather than 'ip' or 'all' in the divert rule .. natd gets quite upset (TSTL) when passed IPv6 traffic. > I say *think* because I am further along but did not go back and > verify the cause. My head is a bit damaged and the wall is bloody. > I believe the problem was a missing entry in /boot/loader.conf > (ipdivert_load="YES") > which I found as a result of this note and the references to others in it: > http://freebsd.1045724.n5.nabble.com/Kernel-Update-IPFW-not-working-td4208637.html Ah yes. This was fixed sometime before 9.3 on stable/9 in /etc/rc.d/ipfw: ipfw_prestart() { if checkyesno dummynet_enable; then required_modules="$required_modules dummynet" fi if checkyesno natd_enable; then required_modules="$required_modules ipdivert" fi if checkyesno firewall_nat_enable; then required_modules="$required_modules ipfw_nat" fi } so I guess you're running 8.x or an earlier 9.x? uname -a? > Anyway, I'm past that problem and most things are working. > However, still having some trouble working out my ipfw rules but if I can > see what's happening I think I can figure it out. However... Please show your ruleset; the output of 'ipfw show' will do nicely. Personally, for a setup like yours, I would (and did) start with the /etc/rc.firewall 'simple' ruleset. Apart from needing rules added to pass ICMP traffic, still not fixed after many years - it's a good basic firewall for a small network, unlike those still suggested in the IPFW handbook page .. though there's been some work done there recently too. > I can't seem to get logging to work. I have the following in natd.conf: > log_denied > log_ipfw_denied > log_facility local0 > and the following in syslog.conf > !local0 > *.* /var/log/natd.log > If I run natd with verbose, I occasionally see > "natd: failed to write packet back: Permission denied" > errors on the controlling terminal. > If I run without verbose (detached), I see no entries in /var/log/natd.log. That failure may relate to use of log_ipfw_denied (default when using 'verbose' anyway) or it could be to do with IPv6 traffic, as above. You see no log entries at all? I'd try using the default log. I never found much value in /var/log/alias.log (natd's default log), compared to adding a few temporary 'count log' rules before and after the divert rule/s, and/or running tcpdump in two consoles, one inside and one outside, while verifying various test traffic as working. So at least temporarily, add 'log' to various rules so you can see what's being diverted, passed or denied in /var/log/security. Eg, a 'count log ip4 from any to any' both before and after the divert rule will show you exactly what natd's done to every packet, while testing. I don't see the advantage in using another facility either, but it's your box :) Does /var/log/natd.log already exist? If not you'd need to touch it first. And have 'log yes' in natd.conf as well as those above. If I were starting again I'd be using ipfw_nat (in-kernel NAT) instead of natd anyway; natd(8) is still a useful reference, the descriptions in ipfw(8) are rather terse if you don't already know natd terminology, but it maps pretty well one-to-one with natd / divert usage, and is faster. [Which is something else that needs updating in the Handbook page; yes Warren, I have been working on that a bit lately, since you mentioned dru@'s updates .. and hope to have something for you fairly soon :] > Thanks for any insights. Well let's see your ruleset (offlist if considered sensitive) and full natd.conf, and related rules from rc.conf (gateway_enable and such); also ifconfig, less anything sensitive, could provide a clue or two. cheers, Ian From owner-freebsd-questions@FreeBSD.ORG Wed Nov 5 09:25:26 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id D65A481E for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 09:25:26 +0000 (UTC) Received: from blue.qeng-ho.org (blue.qeng-ho.org [217.155.128.241]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 4C962AD3 for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 09:25:25 +0000 (UTC) Received: from arthur.home.qeng-ho.org (arthur.home.qeng-ho.org [172.23.1.2]) by fileserver.home.qeng-ho.org (8.14.7/8.14.5) with ESMTP id sA596dU4001346 for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 09:06:40 GMT (envelope-from freebsd@qeng-ho.org) Message-ID: <5459E89F.7080801@qeng-ho.org> Date: Wed, 05 Nov 2014 09:06:39 +0000 From: Arthur Chance <freebsd@qeng-ho.org> User-Agent: Mozilla/5.0 (X11; FreeBSD amd64; rv:31.0) Gecko/20100101 Thunderbird/31.2.0 MIME-Version: 1.0 To: freeBSD-Questions <freebsd-questions@freebsd.org> Subject: zpool component names - gpt vs. gptid Content-Type: text/plain; charset=utf-8; format=flowed Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Wed, 05 Nov 2014 09:25:26 -0000 These days I use GPT labelled partitions (/dev/gpt/<label>) exclusively when creating zfs pools. However, on my latest box, where I have two pools each with a single component, "zpool status" lists the components as gptid/<uuid> rather than gpt/<label> Is there any way to persuade zfs/zpool to use the GPT label devices rather than the gptid devices? Failing that, how do you map gptid's back to the underlying disk partitions? It's obvious in this case, but I'm building a new file server with eight identical disks in a raidz2 set up and am worried how I'll identify which disk has problems in the future. From owner-freebsd-questions@FreeBSD.ORG Wed Nov 5 09:27:21 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 155E5A53 for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 09:27:21 +0000 (UTC) Received: from smtp.fagskolen.gjovik.no (smtp.fagskolen.gjovik.no [IPv6:2001:700:1100:1:200:ff:fe00:b]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client CN "smtp.fagskolen.gjovik.no", Issuer "Fagskolen i Gj??vik" (not verified)) by mx1.freebsd.org (Postfix) with ESMTPS id 7A00BAF9 for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 09:27:19 +0000 (UTC) Received: from mail.fig.ol.no (localhost [127.0.0.1]) by mail.fig.ol.no (8.14.9/8.14.9) with ESMTP id sA59REDK074683 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-GCM-SHA384 bits=256 verify=NO); Wed, 5 Nov 2014 10:27:14 +0100 (CET) (envelope-from trond@fagskolen.gjovik.no) Received: from localhost (trond@localhost) by mail.fig.ol.no (8.14.9/8.14.9/Submit) with ESMTP id sA59RDn2074680; Wed, 5 Nov 2014 10:27:14 +0100 (CET) (envelope-from trond@fagskolen.gjovik.no) X-Authentication-Warning: mail.fig.ol.no: trond owned process doing -bs Date: Wed, 5 Nov 2014 10:27:13 +0100 (CET) From: =?ISO-8859-1?Q?Trond_Endrest=F8l?= <Trond.Endrestol@fagskolen.gjovik.no> Sender: Trond.Endrestol@fagskolen.gjovik.no To: Arthur Chance <freebsd@qeng-ho.org> Subject: Re: zpool component names - gpt vs. gptid In-Reply-To: <5459E89F.7080801@qeng-ho.org> Message-ID: <alpine.BSF.2.11.1411051026360.1376@mail.fig.ol.no> References: <5459E89F.7080801@qeng-ho.org> User-Agent: Alpine 2.11 (BSF 23 2013-08-11) Organization: Fagskolen Innlandet OpenPGP: url=http://fig.ol.no/~trond/trond.key MIME-Version: 1.0 X-Spam-Status: No, score=-1.0 required=5.0 tests=ALL_TRUSTED autolearn=ham autolearn_force=no version=3.4.0 X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on mail.fig.ol.no Content-Type: TEXT/PLAIN; charset=ISO-8859-1 Content-Transfer-Encoding: 8BIT X-Content-Filtered-By: Mailman/MimeDel 2.1.18-1 Cc: freeBSD-Questions <freebsd-questions@freebsd.org> X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Wed, 05 Nov 2014 09:27:21 -0000 On Wed, 5 Nov 2014 09:06-0000, Arthur Chance wrote: > These days I use GPT labelled partitions (/dev/gpt/<label>) exclusively when > creating zfs pools. However, on my latest box, where I have two pools each > with a single component, "zpool status" lists the components as gptid/<uuid> > rather than gpt/<label> > > Is there any way to persuade zfs/zpool to use the GPT label devices rather > than the gptid devices? Failing that, how do you map gptid's back to the > underlying disk partitions? It's obvious in this case, but I'm building a new > file server with eight identical disks in a raidz2 set up and am worried how > I'll identify which disk has problems in the future. Look at: zpool import -d /dev/gpt some-zpool -- +-------------------------------+------------------------------------+ | Vennlig hilsen, | Best regards, | | Trond Endrestøl, | Trond Endrestøl, | | IT-ansvarlig, | System administrator, | | Fagskolen Innlandet, | Gjøvik Technical College, Norway, | | tlf. mob. 952 62 567, | Cellular...: +47 952 62 567, | | sentralbord 61 14 54 00. | Switchboard: +47 61 14 54 00. | +-------------------------------+------------------------------------+ From owner-freebsd-questions@FreeBSD.ORG Wed Nov 5 10:49:26 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 2F4A8183 for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 10:49:26 +0000 (UTC) Received: from blue.qeng-ho.org (blue.qeng-ho.org [217.155.128.241]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 8D3623D7 for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 10:49:24 +0000 (UTC) Received: from arthur.home.qeng-ho.org (arthur.home.qeng-ho.org [172.23.1.2]) by fileserver.home.qeng-ho.org (8.14.7/8.14.5) with ESMTP id sA5Am75B001484; Wed, 5 Nov 2014 10:48:08 GMT (envelope-from freebsd@qeng-ho.org) Message-ID: <545A0067.1090005@qeng-ho.org> Date: Wed, 05 Nov 2014 10:48:07 +0000 From: Arthur Chance <freebsd@qeng-ho.org> User-Agent: Mozilla/5.0 (X11; FreeBSD amd64; rv:31.0) Gecko/20100101 Thunderbird/31.2.0 MIME-Version: 1.0 To: =?UTF-8?B?VHJvbmQgRW5kcmVzdMO4bA==?= <Trond.Endrestol@fagskolen.gjovik.no> Subject: Re: zpool component names - gpt vs. gptid References: <5459E89F.7080801@qeng-ho.org> <alpine.BSF.2.11.1411051026360.1376@mail.fig.ol.no> In-Reply-To: <alpine.BSF.2.11.1411051026360.1376@mail.fig.ol.no> Content-Type: text/plain; charset=utf-8; format=flowed Content-Transfer-Encoding: 8bit Cc: freeBSD-Questions <freebsd-questions@freebsd.org> X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Wed, 05 Nov 2014 10:49:26 -0000 On 05/11/2014 09:27, Trond Endrestøl wrote: > On Wed, 5 Nov 2014 09:06-0000, Arthur Chance wrote: > >> These days I use GPT labelled partitions (/dev/gpt/<label>) exclusively when >> creating zfs pools. However, on my latest box, where I have two pools each >> with a single component, "zpool status" lists the components as gptid/<uuid> >> rather than gpt/<label> >> >> Is there any way to persuade zfs/zpool to use the GPT label devices rather >> than the gptid devices? Failing that, how do you map gptid's back to the >> underlying disk partitions? It's obvious in this case, but I'm building a new >> file server with eight identical disks in a raidz2 set up and am worried how >> I'll identify which disk has problems in the future. > > Look at: zpool import -d /dev/gpt some-zpool > I tried that before (after exporting the zpool of course) and it failed. Looking a bit harder, the /dev/gpt device had ceased to exist because the corresponding /dev/gptid device was active. Retasting the disk brought the gpt dive back, and importing with -d worked for one zpool. However, the other has root on it and I'd have to do it from a live memory stick. However, none of this explains why zpool was using the gptid disks - I'd created the pools using gpt labelled disks and that got lost over some reboot, and I'd like to stop that happening again. The problem is that I don't know why it happened. I recently started using boot environments in order to switch from 10.1-RC3 to -RC4, but I'm not sure if that's connected - /boot and the zfs cache are within the b.e. and should have been copied over. From owner-freebsd-questions@FreeBSD.ORG Wed Nov 5 11:13:58 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id AB9BC6C9 for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 11:13:58 +0000 (UTC) Received: from smtp.fagskolen.gjovik.no (smtp.fagskolen.gjovik.no [IPv6:2001:700:1100:1:200:ff:fe00:b]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client CN "smtp.fagskolen.gjovik.no", Issuer "Fagskolen i Gj??vik" (not verified)) by mx1.freebsd.org (Postfix) with ESMTPS id 51B0C8E9 for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 11:13:57 +0000 (UTC) Received: from mail.fig.ol.no (localhost [127.0.0.1]) by mail.fig.ol.no (8.14.9/8.14.9) with ESMTP id sA5BDrZu002195 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-GCM-SHA384 bits=256 verify=NO); Wed, 5 Nov 2014 12:13:53 +0100 (CET) (envelope-from trond@fagskolen.gjovik.no) Received: from localhost (trond@localhost) by mail.fig.ol.no (8.14.9/8.14.9/Submit) with ESMTP id sA5BDraF002192; Wed, 5 Nov 2014 12:13:53 +0100 (CET) (envelope-from trond@fagskolen.gjovik.no) X-Authentication-Warning: mail.fig.ol.no: trond owned process doing -bs Date: Wed, 5 Nov 2014 12:13:53 +0100 (CET) From: =?ISO-8859-1?Q?Trond_Endrest=F8l?= <Trond.Endrestol@fagskolen.gjovik.no> Sender: Trond.Endrestol@fagskolen.gjovik.no To: Arthur Chance <freebsd@qeng-ho.org> Subject: Re: zpool component names - gpt vs. gptid In-Reply-To: <545A0067.1090005@qeng-ho.org> Message-ID: <alpine.BSF.2.11.1411051159030.1380@mail.fig.ol.no> References: <5459E89F.7080801@qeng-ho.org> <alpine.BSF.2.11.1411051026360.1376@mail.fig.ol.no> <545A0067.1090005@qeng-ho.org> User-Agent: Alpine 2.11 (BSF 23 2013-08-11) Organization: Fagskolen Innlandet OpenPGP: url=http://fig.ol.no/~trond/trond.key MIME-Version: 1.0 X-Spam-Status: No, score=-1.0 required=5.0 tests=ALL_TRUSTED autolearn=ham autolearn_force=no version=3.4.0 X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on mail.fig.ol.no Content-Type: TEXT/PLAIN; charset=ISO-8859-1 Content-Transfer-Encoding: 8BIT X-Content-Filtered-By: Mailman/MimeDel 2.1.18-1 Cc: freeBSD-Questions <freebsd-questions@freebsd.org> X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Wed, 05 Nov 2014 11:13:58 -0000 On Wed, 5 Nov 2014 10:48-0000, Arthur Chance wrote: > On 05/11/2014 09:27, Trond Endrestøl wrote: > > On Wed, 5 Nov 2014 09:06-0000, Arthur Chance wrote: > > > > > These days I use GPT labelled partitions (/dev/gpt/<label>) exclusively > > > when > > > creating zfs pools. However, on my latest box, where I have two pools each > > > with a single component, "zpool status" lists the components as > > > gptid/<uuid> > > > rather than gpt/<label> > > > > > > Is there any way to persuade zfs/zpool to use the GPT label devices rather > > > than the gptid devices? Failing that, how do you map gptid's back to the > > > underlying disk partitions? It's obvious in this case, but I'm building a > > > new > > > file server with eight identical disks in a raidz2 set up and am worried > > > how > > > I'll identify which disk has problems in the future. > > > > Look at: zpool import -d /dev/gpt some-zpool > > > > I tried that before (after exporting the zpool of course) and it failed. > Looking a bit harder, the /dev/gpt device had ceased to exist because the > corresponding /dev/gptid device was active. Retasting the disk brought the gpt > dive back, and importing with -d worked for one zpool. However, the other has > root on it and I'd have to do it from a live memory stick. > > However, none of this explains why zpool was using the gptid disks - I'd > created the pools using gpt labelled disks and that got lost over some reboot, > and I'd like to stop that happening again. The problem is that I don't know > why it happened. I recently started using boot environments in order to switch > from 10.1-RC3 to -RC4, but I'm not sure if that's connected - /boot and the > zfs cache are within the b.e. and should have been copied over. Hmm, I don't believe the cache file is used much these days, unless you: 1. Re-import all your zpools from a live memory stick: zpool import -d /dev/gpt -o cachefile=/tmp/zpool.cache zpool1 zpool import -d /dev/gpt -o cachefile=/tmp/zpool.cache zpool2 2. Copy /tmp/zpool.cache to your b.e.'s /boot/zfs/zpool.cache while still running from the live memory stick. 3. Enable the kernel to consult /boot/zfs/zpool.cache by having these three lines in /boot/loader.conf: zpool_cache_load="YES" zpool_cache_type="/boot/zfs/zpool.cache" zpool_cache_name="/boot/zfs/zpool.cache" -- +-------------------------------+------------------------------------+ | Vennlig hilsen, | Best regards, | | Trond Endrestøl, | Trond Endrestøl, | | IT-ansvarlig, | System administrator, | | Fagskolen Innlandet, | Gjøvik Technical College, Norway, | | tlf. mob. 952 62 567, | Cellular...: +47 952 62 567, | | sentralbord 61 14 54 00. | Switchboard: +47 61 14 54 00. | +-------------------------------+------------------------------------+ From owner-freebsd-questions@FreeBSD.ORG Wed Nov 5 14:27:05 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 172C9C5E for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 14:27:05 +0000 (UTC) Received: from mail-qc0-f172.google.com (mail-qc0-f172.google.com [209.85.216.172]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id C8576177 for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 14:27:04 +0000 (UTC) Received: by mail-qc0-f172.google.com with SMTP id i17so590485qcy.17 for <freebsd-questions@freebsd.org>; Wed, 05 Nov 2014 06:26:57 -0800 (PST) X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=x-gm-message-state:message-id:date:from:user-agent:mime-version:to :subject:references:in-reply-to:content-type :content-transfer-encoding; bh=EKmtaNp9eBAnK4AggPLb0zHU9mZWT3YMMMA8o2qgkoE=; b=bLYXqNssGtnkDbKecBelTwmEPv7CkXUk2pdKG62wDgtoT/y4R+VZPrjulfGog3HFTT XfArvAC4q/iWyd545k2c17EJkkVoEiGKvpAJIlLhIaOGgb8aUGMrBUTg0yz6SFBGb/cT v3mLPyHKbCxI/kTdy861FhsKou/HdXen7XOoh4jRPucQjK6Ie6QT5xb1dPSXBLWo2Got j0diKJaTTVwV5auKkU846ZKpXB/ly2qdjX4xx+Qn6MbW34cyCKhZjsGOgsxyfAtf6Jo4 Y7emWJhyoIZ8ruL8HyyyBJOx9EeBxviP8mBaf4xv4Ewul3yqDaD9vC5G7P7p/1m6E9yJ JQOw== X-Gm-Message-State: ALoCoQno1baHpDDo73EmLjVII8pOSDvbQHZtsWBOWa9Ma2L9rfI4qT4l5S8XnRFo0G5LKK3GYJ+e X-Received: by 10.224.23.9 with SMTP id p9mr19981843qab.92.1415197125760; Wed, 05 Nov 2014 06:18:45 -0800 (PST) Received: from mbp-1.thecreativeadvantage.com (mail.thecreativeadvantage.com. [96.236.20.34]) by mx.google.com with ESMTPSA id z4sm3240765qal.6.2014.11.05.06.18.44 for <freebsd-questions@freebsd.org> (version=TLSv1.2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Wed, 05 Nov 2014 06:18:45 -0800 (PST) Message-ID: <545A31C4.6010705@kraus-haus.org> Date: Wed, 05 Nov 2014 09:18:44 -0500 From: Paul Kraus <paul@kraus-haus.org> User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.9; rv:31.0) Gecko/20100101 Thunderbird/31.2.0 MIME-Version: 1.0 To: freebsd-questions@freebsd.org Subject: Re: zpool component names - gpt vs. gptid References: <5459E89F.7080801@qeng-ho.org> In-Reply-To: <5459E89F.7080801@qeng-ho.org> Content-Type: text/plain; charset=windows-1252; format=flowed Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Wed, 05 Nov 2014 14:27:05 -0000 On 11/5/14 4:06, Arthur Chance wrote: > Is there any way to persuade zfs/zpool to use the GPT label devices > rather than the gptid devices? Failing that, how do you map gptid's back > to the underlying disk partitions? It's obvious in this case, but I'm > building a new file server with eight identical disks in a raidz2 set up > and am worried how I'll identify which disk has problems in the future. I have taken to putting a physical label on the outside of the disk bracket (I use hot or cold swap disk brackets) with the last four digits of the unique ID (usually based on drive S/N). I had managed lots of Fibre-Channel drives in a previous life and the _only_ drive ID there is the WWN, which better vendors included on the exterior mounting bracket. -- -- Paul Kraus paul@kraus-haus.org Co-Chair Albacon 2014.5 http://www.albacon.org/2014/ From owner-freebsd-questions@FreeBSD.ORG Wed Nov 5 14:34:30 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 9C1D9221 for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 14:34:30 +0000 (UTC) Received: from nef.pbox.org (ns.pbox.org [IPv6:2001:41d0:1:e836::1]) (using TLSv1 with cipher ECDHE-RSA-AES256-SHA (256/256 bits)) (Client CN "smtp.pbox.org", Issuer "smtp.pbox.org" (not verified)) by mx1.freebsd.org (Postfix) with ESMTPS id 07BA92AD for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 14:34:29 +0000 (UTC) Received: from nef.pbox.org (localhost [127.0.0.1]) by nef.pbox.org (8.14.5/8.14.5/) with ESMTP id sA5EYNe2015525 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NO) for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 15:34:23 +0100 (CET) Received: (from luc@localhost) by nef.pbox.org (8.14.5/8.14.5/Submit) id sA5EYNnG014834 for freebsd-questions@freebsd.org; Wed, 5 Nov 2014 15:34:23 +0100 (CET) Date: Wed, 5 Nov 2014 15:34:23 +0100 From: luc <luc@pbox.org> To: freebsd-questions@freebsd.org Subject: How recover ZFS pool Message-ID: <20141105143423.GA2033@ns.pbox.org> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline X-Whois: LB895-ARIN, LB2868-RIPE, LBR262 User-Agent: Mutt/1.5.21 (2010-09-15) X-Greylist: Sender passed SPF test, not delayed by milter-greylist-4.4.3 (nef.pbox.org [0.0.0.0]); Wed, 05 Nov 2014 15:34:23 +0100 (CET) X-Spam-Status: No, score=0.0 required=5.0 tests=UNPARSEABLE_RELAY autolearn=unavailable version=3.3.2 X-Spam-Checker-Version: SpamAssassin 3.3.2 (2011-06-06) on nef.pbox.org X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Wed, 05 Nov 2014 14:34:30 -0000 Hi, My computer reboot every time. It crash at boot when /etc/rc.d/zfs starting, and reboot , and reboot ... I try, in Single User mode, every zpool command crash the kernel. The pool is a raidz1 with 3 disk and 1 cache on SSD. I think, the last pkg update is about X11. The first crash maybe a x11 drivers issue. I try : - upgrading 10.0-RELEASE-p11 to 10.0-RELEASE-p12 - without SSD disk. - with another adapter => same result. The system is on UFS, so I could boot without ZFS. How could I recover data ? thanks for your help, Luc. Copyright (c) 1992-2014 The FreeBSD Project. Copyright (c) 1979, 1980, 1983, 1986, 1988, 1989, 1991, 1992, 1993, 1994 The Regents of the University of California. All rights reserved. FreeBSD is a registered trademark of The FreeBSD Foundation. FreeBSD 10.0-RELEASE-p12 #0: Tue Nov 4 05:07:17 UTC 2014 root@amd64-builder.daemonology.net:/usr/obj/usr/src/sys/GENERIC amd64 FreeBSD clang version 3.3 (tags/RELEASE_33/final 183502) 20130610 CPU: Intel(R) Xeon(R) CPU E5-2620 0 @ 2.00GHz (1995.24-MHz K8-class CPU) Origin = "GenuineIntel" Id = 0x206d7 Family = 0x6 Model = 0x2d Stepping = 7 Features=0xbfebfbff<FPU,VME,DE,PSE,TSC,MSR,PAE,MCE,CX8,APIC,SEP,MTRR,PGE,MCA,CMOV,PAT,PS E36,CLFLUSH,DTS,ACPI,MMX,FXSR,SSE,SSE2,SS,HTT,TM,PBE> Features2=0x1fbee3ff<SSE3,PCLMULQDQ,DTES64,MON,DS_CPL,VMX,SMX,EST,TM2,SSSE3,CX16,xTPR,PD CM,PCID,DCA,SSE4.1,SSE4.2,x2APIC,POPCNT,TSCDLT,AESNI,XSAVE,OSXSAVE,AVX> AMD Features=0x2c100800<SYSCALL,NX,Page1GB,RDTSCP,LM> AMD Features2=0x1<LAHF> TSC: P-state invariant, performance statistics real memory = 34359738368 (32768 MB) avail memory = 33240608768 (31700 MB) Event timer "LAPIC" quality 600 ACPI APIC Table: <DELL CBX3 > FreeBSD/SMP: Multiprocessor System Detected: 24 CPUs FreeBSD/SMP: 2 package(s) x 6 core(s) x 2 SMT threads cpu0 (BSP): APIC ID: 0 cpu1 (AP): APIC ID: 1 cpu2 (AP): APIC ID: 2 cpu3 (AP): APIC ID: 3 cpu4 (AP): APIC ID: 4 cpu5 (AP): APIC ID: 5 cpu6 (AP): APIC ID: 6 cpu7 (AP): APIC ID: 7 cpu8 (AP): APIC ID: 8 cpu9 (AP): APIC ID: 9 cpu10 (AP): APIC ID: 10 cpu11 (AP): APIC ID: 11 cpu12 (AP): APIC ID: 32 cpu13 (AP): APIC ID: 33 cpu14 (AP): APIC ID: 34 cpu15 (AP): APIC ID: 35 cpu16 (AP): APIC ID: 36 cpu17 (AP): APIC ID: 37 cpu18 (AP): APIC ID: 38 cpu19 (AP): APIC ID: 39 cpu20 (AP): APIC ID: 40 cpu21 (AP): APIC ID: 41 cpu22 (AP): APIC ID: 42 cpu23 (AP): APIC ID: 43 random device not loaded; using insecure entropy ACPI BIOS Warning (bug): 32/64X FACS address mismatch in FADT - 0xAC7E8F40/0x00000000AC7DC F40, using 32 (20130823/tbfadt-550) ioapic0 <Version 2.0> irqs 0-23 on motherboard ioapic1 <Version 2.0> irqs 24-47 on motherboard ioapic2 <Version 2.0> irqs 48-71 on motherboard random: <Software, Yarrow> initialized kbd1 at kbdmux0 acpi0: <DELL CBX3 > on motherboard acpi0: Power Button (fixed) cpu0: <ACPI CPU> on acpi0 cpu1: <ACPI CPU> on acpi0 cpu2: <ACPI CPU> on acpi0 cpu3: <ACPI CPU> on acpi0 cpu4: <ACPI CPU> on acpi0 cpu5: <ACPI CPU> on acpi0 cpu6: <ACPI CPU> on acpi0 cpu7: <ACPI CPU> on acpi0 cpu8: <ACPI CPU> on acpi0 cpu9: <ACPI CPU> on acpi0 cpu10: <ACPI CPU> on acpi0 cpu11: <ACPI CPU> on acpi0 cpu12: <ACPI CPU> on acpi0 cpu13: <ACPI CPU> on acpi0 cpu14: <ACPI CPU> on acpi0 cpu15: <ACPI CPU> on acpi0 cpu16: <ACPI CPU> on acpi0 cpu17: <ACPI CPU> on acpi0 cpu18: <ACPI CPU> on acpi0 cpu19: <ACPI CPU> on acpi0 cpu20: <ACPI CPU> on acpi0 cpu21: <ACPI CPU> on acpi0 cpu22: <ACPI CPU> on acpi0 cpu23: <ACPI CPU> on acpi0 hpet0: <High Precision Event Timer> iomem 0xfed00000-0xfed003ff on acpi0 Timecounter "HPET" frequency 14318180 Hz quality 950 Event timer "HPET" frequency 14318180 Hz quality 350 Event timer "HPET1" frequency 14318180 Hz quality 340 Event timer "HPET2" frequency 14318180 Hz quality 340 Event timer "HPET3" frequency 14318180 Hz quality 340 Event timer "HPET4" frequency 14318180 Hz quality 340 Event timer "HPET5" frequency 14318180 Hz quality 340 Event timer "HPET6" frequency 14318180 Hz quality 340 Event timer "HPET7" frequency 14318180 Hz quality 340 atrtc0: <AT realtime clock> port 0x70-0x77 irq 8 on acpi0 atrtc0: Warning: Couldn't map I/O. Event timer "RTC" frequency 32768 Hz quality 0 attimer0: <AT timer> port 0x40-0x43,0x50-0x53 irq 0 on acpi0 Timecounter "i8254" frequency 1193182 Hz quality 0 Event timer "i8254" frequency 1193182 Hz quality 100 Timecounter "ACPI-fast" frequency 3579545 Hz quality 900 acpi_timer0: <24-bit timer at 3.579545MHz> port 0x408-0x40b on acpi0 pcib0: <ACPI Host-PCI bridge> port 0xcf8-0xcff on acpi0 pci0: <ACPI PCI bus> on pcib0 pcib1: <ACPI PCI-PCI bridge> irq 26 at device 1.0 on pci0 pci1: <ACPI PCI bus> on pcib1 pcib2: <ACPI PCI-PCI bridge> irq 26 at device 1.1 on pci0 pci2: <ACPI PCI bus> on pcib2 mfi0: <Drake Skinny> port 0x6000-0x60ff mem 0xf7e60000-0xf7e63fff,0xf7e00000-0xf7e3ffff irq 27 at device 0.0 on pci2 mfi0: Using MSI mfi0: Megaraid SAS driver Ver 4.23 pcib3: <ACPI PCI-PCI bridge> irq 32 at device 2.0 on pci0 pci3: <ACPI PCI bus> on pcib3 pcib4: <ACPI PCI-PCI bridge> irq 40 at device 3.0 on pci0 pci4: <ACPI PCI bus> on pcib4 vgapci0: <VGA-compatible display> port 0x5000-0x50ff mem 0xe0000000-0xefffffff,0xf7d20000-0xf7d3ffff irq 40 at device 0.0 on pci4 vgapci0: Boot video device hdac0: <ATI RV930 HDA Controller> mem 0xf7d40000-0xf7d43fff irq 44 at device 0.1 on pci4 pci0: <base peripheral> at device 5.0 (no driver attached) pci0: <base peripheral> at device 5.2 (no driver attached) pcib5: <ACPI PCI-PCI bridge> irq 16 at device 17.0 on pci0 pci5: <ACPI PCI bus> on pcib5 pci0: <simple comms> at device 22.0 (no driver attached) em0: <Intel(R) PRO/1000 Network Connection 7.3.8> port 0x7040-0x705f mem 0xf7f00000-0xf7f1ffff,0xf7f29000-0xf7f29fff irq 20 at device 25.0 on pci0 em0: Using an MSI interrupt em0: Ethernet address: b8:ca:3a:a4:0c:50 ehci0: <EHCI (generic) USB 2.0 controller> mem 0xf7f28000-0xf7f283ff irq 16 at device 26.0 on pci0 usbus0: EHCI version 1.0 usbus0 on ehci0 hdac1: <Intel Patsburg HDA Controller> mem 0xf7f20000-0xf7f23fff irq 22 at device 27.0 on pci0 pcib6: <ACPI PCI-PCI bridge> irq 19 at device 28.0 on pci0 pci6: <ACPI PCI bus> on pcib6 pcib7: <ACPI PCI-PCI bridge> irq 18 at device 28.2 on pci0 pci7: <ACPI PCI bus> on pcib7 xhci0: <NEC uPD720200 USB 3.0 controller> mem 0xf7b00000-0xf7b01fff irq 18 at device 0.0 on pci7 xhci0: 32 byte context size. usbus1 on xhci0 ehci1: <EHCI (generic) USB 2.0 controller> mem 0xf7f27000-0xf7f273ff irq 17 at device 29.0 on pci0 usbus2: EHCI version 1.0 usbus2 on ehci1 pcib8: <ACPI PCI-PCI bridge> at device 30.0 on pci0 pci8: <ACPI PCI bus> on pcib8 isab0: <PCI-ISA bridge> at device 31.0 on pci0 isa0: <ISA bus> on isab0 ahci0: <Intel Patsburg AHCI SATA controller> port 0x7090-0x7097,0x7080-0x7083,0x7070-0x7077,0x7060-0x7063,0x7020-0x703f mem 0xf7f26000-0xf7f267ff irq 18 at device 31.2 on pci0 ahci0: AHCI v1.30 with 6 6Gbps ports, Port Multiplier not supported ahcich0: <AHCI channel> at channel 0 on ahci0 ahciem0: <AHCI enclosure management bridge> on ahci0 pci0: <serial bus, SMBus> at device 31.3 (no driver attached) pcib9: <ACPI Host-PCI bridge> on acpi0 pci128: <ACPI PCI bus> on pcib9 acpi_button0: <Power Button> on acpi0 uart0: <16550 or compatible> port 0x3f8-0x3ff irq 4 flags 0x10 on acpi0 uart0: console (9600,n,8,1) orm0: <ISA Option ROM> at iomem 0xc0000-0xcffff on isa0 sc0: <System console> at flags 0x100 on isa0 sc0: VGA <16 virtual consoles, flags=0x100> vga0: <Generic ISA VGA> at port 0x3c0-0x3df iomem 0xa0000-0xbffff on isa0 atkbdc0: <Keyboard controller (i8042)> at port 0x60,0x64 on isa0 atkbd0: <AT Keyboard> irq 1 on atkbdc0 kbd0 at atkbd0 atkbd0: [GIANT-LOCKED] ppc0: cannot reserve I/O port range est0: <Enhanced SpeedStep Frequency Control> on cpu0 p4tcc0: <CPU Frequency Thermal Control> on cpu0 est1: <Enhanced SpeedStep Frequency Control> on cpu1 p4tcc1: <CPU Frequency Thermal Control> on cpu1 est2: <Enhanced SpeedStep Frequency Control> on cpu2 p4tcc2: <CPU Frequency Thermal Control> on cpu2 est3: <Enhanced SpeedStep Frequency Control> on cpu3 p4tcc3: <CPU Frequency Thermal Control> on cpu3 est4: <Enhanced SpeedStep Frequency Control> on cpu4 p4tcc4: <CPU Frequency Thermal Control> on cpu4 est5: <Enhanced SpeedStep Frequency Control> on cpu5 p4tcc5: <CPU Frequency Thermal Control> on cpu5 est6: <Enhanced SpeedStep Frequency Control> on cpu6 p4tcc6: <CPU Frequency Thermal Control> on cpu6 est7: <Enhanced SpeedStep Frequency Control> on cpu7 p4tcc7: <CPU Frequency Thermal Control> on cpu7 est8: <Enhanced SpeedStep Frequency Control> on cpu8 p4tcc8: <CPU Frequency Thermal Control> on cpu8 est9: <Enhanced SpeedStep Frequency Control> on cpu9 p4tcc9: <CPU Frequency Thermal Control> on cpu9 est10: <Enhanced SpeedStep Frequency Control> on cpu10 p4tcc10: <CPU Frequency Thermal Control> on cpu10 est11: <Enhanced SpeedStep Frequency Control> on cpu11 p4tcc11: <CPU Frequency Thermal Control> on cpu11 est12: <Enhanced SpeedStep Frequency Control> on cpu12 p4tcc12: <CPU Frequency Thermal Control> on cpu12 est13: <Enhanced SpeedStep Frequency Control> on cpu13 p4tcc13: <CPU Frequency Thermal Control> on cpu13 est14: <Enhanced SpeedStep Frequency Control> on cpu14 p4tcc14: <CPU Frequency Thermal Control> on cpu14 est15: <Enhanced SpeedStep Frequency Control> on cpu15 p4tcc15: <CPU Frequency Thermal Control> on cpu15 est16: <Enhanced SpeedStep Frequency Control> on cpu16 p4tcc16: <CPU Frequency Thermal Control> on cpu16 est17: <Enhanced SpeedStep Frequency Control> on cpu17 p4tcc17: <CPU Frequency Thermal Control> on cpu17 est18: <Enhanced SpeedStep Frequency Control> on cpu18 p4tcc18: <CPU Frequency Thermal Control> on cpu18 est19: <Enhanced SpeedStep Frequency Control> on cpu19 p4tcc19: <CPU Frequency Thermal Control> on cpu19 est20: <Enhanced SpeedStep Frequency Control> on cpu20 p4tcc20: <CPU Frequency Thermal Control> on cpu20 est21: <Enhanced SpeedStep Frequency Control> on cpu21 p4tcc21: <CPU Frequency Thermal Control> on cpu21 est22: <Enhanced SpeedStep Frequency Control> on cpu22 p4tcc22: <CPU Frequency Thermal Control> on cpu22 est23: <Enhanced SpeedStep Frequency Control> on cpu23 p4tcc23: <CPU Frequency Thermal Control> on cpu23 ZFS filesystem version: 5 ZFS storage pool version: features support (5000) Timecounters tick every 1.000 msec vboxdrv: fAsync=0 offMin=0xcd0 offMax=0xedc mfi0: 4045 (468502157s/0x0020/info) - Shutdown command received from host mfi0: 4046 (boot + 4s/0x0020/info) - Firmware initialization started (PCI ID 0073/1000/1f78/1028) mfi0: 4047 (boot + 4s/0x0020/info) - Firmware version 2.120.14-2762 mfi0: 4048 (boot + 5s/0x0020/info) - Package version 20.12.2-0001 mfi0: 4049 (boot + 5s/0x0020/info) - Board Revision A01 mfi0: 4050 (boot + 31s/0x0002/info) - Inserted: PD 00(e0xff/s0) random: unblocking device. usbus0: 480Mbps High Speed USB v2.0 usbus1: 5.0Gbps Super Speed USB v3.0 ugen0.1: <Intel> at usbus0 uhub0: <Intel EHCI root HUB, class 9/0, rev 2.00/1.00, addr 1> on usbus0 ugen1.1: <0x1033> at usbus1 uhub1: <0x1033 XHCI root HUB, class 9/0, rev 3.00/1.00, addr 1> on usbus1 usbus2: 480Mbps High Speed USB v2.0 ugen2.1: <Intel> at usbus2 uhub2: <Intel EHCI root HUB, class 9/0, rev 2.00/1.00, addr 1> on usbus2 mfisyspd0 on mfi0 mfisyspd0: 1907729MB (3907029168 sectors) SYSPD volume (deviceid: 0) mfisyspd0: SYSPD volume attached mfisyspd1 on mfi0 mfisyspd1: 1907729MB (3907029168 sectors) SYSPD volume (deviceid: 1) mfisyspd1: SYSPD volume attached mfisyspd2 on mfi0 mfisyspd2: 244198MB (500118192 sectors) SYSPD volume (deviceid: 4) mfisyspd2: SYSPD volume attached mfisyspd3 on mfi0 mfisyspd3: 1907729MB (3907029168 sectors) SYSPD volume (deviceid: 5) mfisyspd3: SYSPD volume attached hdacc0: <ATI R6xx HDA CODEC> at cad 0 on hdac0 hdaa0: <ATI R6xx Audio Function Group> at nid 1 on hdacc0 pcm0: <ATI R6xx (HDMI)> at nid 3 on hdaa0 hdacc1: <Realtek ALC269 HDA CODEC> at cad 0 on hdac1 hdaa1: <Realtek ALC269 Audio Function Group> at nid 1 on hdacc1 pcm1: <Realtek ALC269 (Analog)> at nid 20 and 24 on hdaa1 pcm2: <Realtek ALC269 (Analog 2.0+HP/2.0)> at nid 27,33 and 25 on hdaa1 mfi0: 4051 (boot + 31s/0x0002/info) - Inserted: PD 00(e0xff/s0) Info: enclPd=ffff, scsiType=0, portMap=02, sasAddr=4433221107000000,0000000000000000 mfi0: 4052 (boot + 31s/0x0002/WARN) - PD 00(e0xff/s0) is not a certified drive mfi0: 4053 (boot + 31s/0x0002/info) - Inserted: PD 01(e0xff/s1) mfi0: 4054 (boot + 31s/0x0002/info) - Inserted: PD 01(e0xff/s1) Info: enclPd=ffff, scsiType=0, portMap=01, sasAddr=4433221106000000,uhub1: 4 ports with 4 removable, self powered uhub0: 2 ports with 2 removable, self powered 0000000000000000 mfi0: 4055 (boot + 31s/0x0002/WARN) - PD 01(e0xff/s1) is not a certified drive mfi0: 4056 (boot + 31s/0x0002/info) - Inserted: PD 04(e0xff/s4) mfi0: 4057 (boot + 31s/0x0002/info) - Inserted: PD 04(e0xff/s4) Info: enclPd=ffff, scsiType=0, portMap=03, sasAddr=4433221103000000,0000000000000000 mfi0: 4058 (boot + 31s/0x0002/WARN) - PD 04(e0xff/s4) is not a certified drive mfi0: uhub2: 2 ports with 2 removable, self powered 4059 (boot + 31s/0x0002/info) - Inserted: PD 05(e0xff/s5) mfi0: 4060 (boot + 31s/0x0002/info) - Inserted: PD 05(e0xff/s5) Info: enclPd=ffff, scsiType=0, portMap=00, sasAddr=4433221102000000,0000000000000000 mfi0: 4061 (boot + 31s/0x0002/WARN) - PD 05(e0xff/s5) is not a certified drive mfi0: 4062 (468502190s/0x0020/info) - Time established as 11/05/14 11:29:50; (32 seconds since power on) mfi0: 4063 (468502203s/0x0020/info) - Time established as 11/05/14 11:30:03; (45 seconds since power on) mfi0: 4064 (468502213s/0x0002/info) - Unexpected sense: PD 04(e0xff/s4) Path 4433221103000000, CDB: 28 00 1d cf 32 b0 00 00 01 00, Sense: 6/28/00 mfi0: 4065 (468502213s/0x0002/info) - Unexpected sense: PD 00(e0xff/s0) Path 4433221107000000, CDB: 28 00 e8 e0 88 b0 00 00 01 00, Sense: 5/21/00 mfi0: 4066 (468502213s/0x0002/info) - Unexpected sense: PD 01(e0xff/s1) Path 4433221106000000, CDB: 28 00 e8 e0 88 b0 00 00 01 00, Sense: 5/21/00 mfi0: 4067 (468502213s/0x0002/info) - Unexpected sense: PD 05(e0xff/s5) Path 4433221102000000, CDB: 28 00 e8 e0 88 b0 00 00 01 00, Sense: 5/21/00 ugen0.2: <vendor 0x8087> at usbus0 uhub3: <vendor 0x8087 product 0x0024, class 9/0, rev 2.00/0.00, addr 2> on usbus0 mfi0: 4068 (468502261s/0x0020/info) - Host driver is loaded and operational ses0 at ahciem0 bus 0 scbus1 target 0 lun 0 ses0: cd0 at ahcich0 bus 0 scbus0 target 0 lun 0 cd0: <PLDS DVD+-RW DS-8A9SH ED11> Removable CD-ROM SCSI-0 device cd0: Serial Number MRGTT5508135HM6C9A00 cd0: 150.000MB/s transfers (SATA 1.x, UDMA5, ATAPI 12bytes, PIO 8192bytes) cd0: Attempt to query device size failed: NOT READY, Medium not present - tray closed <AHCI SGPIO Enclosure 1.00 0001> SEMB S-E-S 2.00 device ses0: SEMB SES Device ugen2.2: <vendor 0x8087> at usbus2 uhub4: <vendor 0x8087 product 0x0024, class 9/0, rev 2.00/0.00, addr 2> on usbus2 Netvsc initializing... SMP: AP CPU #21 Launched! SMP: AP CPU #6 Launched! SMP: AP CPU #12 Launched! SMP: AP CPU #1 Launched! SMP: AP CPU #4 Launched! SMP: AP CPU #23 Launched! SMP: AP CPU #11 Launched! SMP: AP CPU #13 Launched! SMP: AP CPU #18 Launched! SMP: AP CPU #14 Launched! SMP: AP CPU #22 Launched! SMP: AP CPU #17 Launched! SMP: AP CPU #8 Launched! SMP: AP CPU #9 Launched! SMP: AP CPU #3 Launched! SMP: AP CPU #20 Launched! SMP: AP CPU #19 Launched! SMP: AP CPU #15 Launched! SMP: AP CPU #16 Launched! SMP: AP CPU #5 Launched! SMP: AP CPU #7 Launched! SMP: AP CPU #10 Launched! SMP: AP CPU #2 Launched! GEOM: mfisyspd0: the secondary GPT table is corrupt or invalid. GEOM: mfisyspd0: using the primary only -- recovery suggested. Timecounter "TSC" frequency 1995238812 Hz quality 1000 GEOM: mfisyspd1: the secondary GPT table is corrupt or invalid. GEOM: mfisyspd1: using the primary only -- recovery suggested. GEOM: mfisyspd2: the secondary GPT table is corrupt or invalid. GEOM: mfisyspd2: using the primary only -- recovery suggested. uhub3: 6 ports with 6 removable, self powered GEOM: mfisyspd3: the secondary GPT table is corrupt or invalid. GEOM: mfisyspd3: using the primary only -- recovery suggested. Root mount waiting for: usbus2 ugen2.4: <vendor 0x0451> at usbus2 uhub5: <vendor 0x0451 product 0x8043, class 9/0, rev 2.10/1.00, addr 4> on usbus2 uhub5: MTT enabled uhub5: 3 ports with 3 removable, self powered Root mount waiting for: usbus2 ugen2.5: <Generic> at usbus2 umass0: <Bulk-In, Bulk-Out, Interface> on usbus2 umass0: SCSI over Bulk-Only; quirks = 0x4000 umass0:2:0:-1: Attached to scbus2 da0 at umass-sim0 bus 0 scbus2 target 0 lun 0 da0: <Generic- Compact Flash 1.00> Removable Direct Access SCSI-0 device da0: Serial Number 20070818000000000 da0: 40.000MB/s transfers da0: Attempt to query device size failed: NOT READY, Medium not present da0: quirks=0x2<NO_6_BYTE> da1 at umass-sim0 bus 0 scbus2 target 0 lun 1 da1: <Generic- SM/xD-Picture 1.00> Removable Direct Access SCSI-0 device da1: Serial Number 20070818000000000 da1: 40.000MB/s transfers da1: Attempt to query device size failed: NOT READY, Medium not present da1: quirks=0x2<NO_6_BYTE> ugen2.6: <vendor 0x0451> at usbus2 da2 at umass-sim0 bus 0 scbus2 target 0 lun 2 uhub6: da2: <vendor 0x0451 product 0x8043, class 9/0, rev 2.10/1.00, addr 6> on usbus2 <Generic- SD/MMC 1.00> Removable Direct Access SCSI-0 device uhub6: da2: Serial Number 20070818000000000 MTT enabled da2: 40.000MB/s transfers da2: Attempt to query device size failed: NOT READY, Medium not present da2: quirks=0x2<NO_6_BYTE> da3 at umass-sim0 bus 0 scbus2 target 0 lun 3 da3: <Generic- MS/MS-Pro 1.00> Removable Direct Access SCSI-0 device uhub6: da3: Serial Number 20070818000000000 3 ports with 3 removable, self powered da3: 40.000MB/s transfers da3: Attempt to query device size failed: NOT READY, Medium not present da3: quirks=0x2<NO_6_BYTE> Root mount waiting for: usbus2 ugen2.7: <Realtek> at usbus2 umass1: <Bulk-In, Bulk-Out, Interface> on usbus2 umass1: SCSI over Bulk-Only; quirks = 0x4000 umass1:3:1:-1: Attached to scbus3 da4 at umass-sim1 bus 1 scbus3 target 0 lun 0 da4: <Generic- SD/MMC/MS/MSPRO 1.00> Removable Direct Access SCSI-4 device da4: Serial Number F131C0008E4C da4: 40.000MB/s transfers da4: Attempt to query device size failed: NOT READY, Medium not present da4: quirks=0x2<NO_6_BYTE> Root mount waiting for: usbus2 ugen2.8: <DELL> at usbus2 ukbd0: <DELL Dell USB Entry Keyboard, class 0/0, rev 2.00/1.04, addr 8> on usbus2 kbd2 at ukbd0 Trying to mount root from ufs:/dev/gptid/d6307cbc-51eb-11e3-aa5d-b8ca3aa40c50 [rw]... Enter full pathname of shell or RETURN for /bin/sh: # zpool status panic: solaris assert: ddt_object_info(ddt, type, class, &doi) == 0, file: /usr/src/sys/modules/zfs/../../cddl/contrib/opensolaris/uts/common/fs/zfs/ddt.c, line: 132 cpuid = 12 KDB: stack backtrace: #0 0xffffffff808e7e90 at kdb_backtrace+0x60 #1 0xffffffff808af975 at panic+0x155 #2 0xffffffff81a2c202 at assfail+0x22 #3 0xffffffff8181a3cc at ddt_load+0x17c #4 0xffffffff8185035c at spa_load+0x10ac #5 0xffffffff8184ff8d at spa_load+0xcdd #6 0xffffffff8184ed3f at spa_load_best+0x5f #7 0xffffffff8184b9fc at spa_open_common+0xfc #8 0xffffffff8184bd51 at spa_get_stats+0x51 #9 0xffffffff81893015 at zfs_ioc_pool_stats+0x25 #10 0xffffffff81890a38 at zfsdev_ioctl+0x478 #11 0xffffffff807ac1df at devfs_ioctl_f+0x11f #12 0xffffffff808fdfae at kern_ioctl+0x22e #13 0xffffffff808fdd2f at sys_ioctl+0x11f #14 0xffffffff80c8f127 at amd64_syscall+0x357 #15 0xffffffff80c7581b at Xfast_syscall+0xfb Uptime: 32s To: d@pbox.org Cc: Bcc: Subject: d Reply-To: X-Whois: LB895-ARIN, LB2868-RIPE, LBR262 From owner-freebsd-questions@FreeBSD.ORG Wed Nov 5 14:40:58 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id D70C03F5 for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 14:40:58 +0000 (UTC) Received: from blue.qeng-ho.org (blue.qeng-ho.org [217.155.128.241]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 528623CE for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 14:40:57 +0000 (UTC) Received: from arthur.home.qeng-ho.org (arthur.home.qeng-ho.org [172.23.1.2]) by fileserver.home.qeng-ho.org (8.14.7/8.14.5) with ESMTP id sA5EdhK8001848; Wed, 5 Nov 2014 14:39:44 GMT (envelope-from freebsd@qeng-ho.org) Message-ID: <545A36AF.9030204@qeng-ho.org> Date: Wed, 05 Nov 2014 14:39:43 +0000 From: Arthur Chance <freebsd@qeng-ho.org> User-Agent: Mozilla/5.0 (X11; FreeBSD amd64; rv:31.0) Gecko/20100101 Thunderbird/31.2.0 MIME-Version: 1.0 To: =?UTF-8?B?VHJvbmQgRW5kcmVzdMO4bA==?= <Trond.Endrestol@fagskolen.gjovik.no> Subject: Re: zpool component names - gpt vs. gptid References: <5459E89F.7080801@qeng-ho.org> <alpine.BSF.2.11.1411051026360.1376@mail.fig.ol.no> <545A0067.1090005@qeng-ho.org> <alpine.BSF.2.11.1411051159030.1380@mail.fig.ol.no> In-Reply-To: <alpine.BSF.2.11.1411051159030.1380@mail.fig.ol.no> Content-Type: text/plain; charset=utf-8; format=flowed Content-Transfer-Encoding: 8bit Cc: freeBSD-Questions <freebsd-questions@freebsd.org> X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Wed, 05 Nov 2014 14:40:58 -0000 On 05/11/2014 11:13, Trond Endrestøl wrote: > On Wed, 5 Nov 2014 10:48-0000, Arthur Chance wrote: > >> On 05/11/2014 09:27, Trond Endrestøl wrote: >>> On Wed, 5 Nov 2014 09:06-0000, Arthur Chance wrote: >>> >>>> These days I use GPT labelled partitions (/dev/gpt/<label>) exclusively >>>> when >>>> creating zfs pools. However, on my latest box, where I have two pools each >>>> with a single component, "zpool status" lists the components as >>>> gptid/<uuid> >>>> rather than gpt/<label> >>>> >>>> Is there any way to persuade zfs/zpool to use the GPT label devices rather >>>> than the gptid devices? Failing that, how do you map gptid's back to the >>>> underlying disk partitions? It's obvious in this case, but I'm building a >>>> new >>>> file server with eight identical disks in a raidz2 set up and am worried >>>> how >>>> I'll identify which disk has problems in the future. >>> >>> Look at: zpool import -d /dev/gpt some-zpool >>> >> >> I tried that before (after exporting the zpool of course) and it failed. >> Looking a bit harder, the /dev/gpt device had ceased to exist because the >> corresponding /dev/gptid device was active. Retasting the disk brought the gpt >> dive back, and importing with -d worked for one zpool. However, the other has >> root on it and I'd have to do it from a live memory stick. >> >> However, none of this explains why zpool was using the gptid disks - I'd >> created the pools using gpt labelled disks and that got lost over some reboot, >> and I'd like to stop that happening again. The problem is that I don't know >> why it happened. I recently started using boot environments in order to switch >> from 10.1-RC3 to -RC4, but I'm not sure if that's connected - /boot and the >> zfs cache are within the b.e. and should have been copied over. > > Hmm, I don't believe the cache file is used much these days, unless > you: > > 1. Re-import all your zpools from a live memory stick: > > zpool import -d /dev/gpt -o cachefile=/tmp/zpool.cache zpool1 > zpool import -d /dev/gpt -o cachefile=/tmp/zpool.cache zpool2 > > 2. Copy /tmp/zpool.cache to your b.e.'s /boot/zfs/zpool.cache while > still running from the live memory stick. > > 3. Enable the kernel to consult /boot/zfs/zpool.cache by having these > three lines in /boot/loader.conf: > > zpool_cache_load="YES" > zpool_cache_type="/boot/zfs/zpool.cache" > zpool_cache_name="/boot/zfs/zpool.cache" > Ah, I wasn't aware of that last part. Thanks. I seems to me that if the cache isn't usually used and requires special loading at boot time, then this problem is going to affect anyone using zfs. gptids may be unique, but they're not exactly user friendly. From owner-freebsd-questions@FreeBSD.ORG Wed Nov 5 19:55:27 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 23BD8C15 for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 19:55:27 +0000 (UTC) Received: from mail-ig0-x232.google.com (mail-ig0-x232.google.com [IPv6:2607:f8b0:4001:c05::232]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id DA3E0E6C for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 19:55:26 +0000 (UTC) Received: by mail-ig0-f178.google.com with SMTP id a13so2053758igq.11 for <freebsd-questions@freebsd.org>; Wed, 05 Nov 2014 11:55:26 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=message-id:date:from:user-agent:mime-version:to:subject:references :in-reply-to:content-type:content-transfer-encoding; bh=6zpind9ztm8/C4fY3AnvBEwcQQnj/OuOQnEnUVNoAag=; b=fkROzJ4VqyWpwSfc3Z+6i9eya6C21mHEYxs7DdcKNJ8reJib9JoOJxIX48NjYwC66l tSDXxtXFsNxazsC1IqF5uLs0uNU1dg2DcLBUizbmjcfGYuB4tIB6aHvXORFDalcMxc+Z tODtEJybMGIB4u0on/C2+gK4ysf6K91LV7va1NLIc5oeFbcXUQ7tXgHoKLCFGAJ2MprP tq03mepoTTcE8s8OGgPwcz50/U+ciffg8Z3rFMP+gl2ugI4vexwIlOVoxEMecNnVWE7u 0g/J66ezbfmAIJg3socTy/p+bHu0B7JVDJEor7tARx/ePD0xCvaSLWdBkVb3GsqiqT8K caPA== X-Received: by 10.50.43.231 with SMTP id z7mr8270660igl.36.1415217326313; Wed, 05 Nov 2014 11:55:26 -0800 (PST) Received: from localhost.localdomain (63-225-227-131.slkc.qwest.net. [63.225.227.131]) by mx.google.com with ESMTPSA id j36sm1910248ioo.23.2014.11.05.11.55.24 for <freebsd-questions@freebsd.org> (version=TLSv1.2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Wed, 05 Nov 2014 11:55:25 -0800 (PST) Message-ID: <545A80AB.3050509@gmail.com> Date: Wed, 05 Nov 2014 12:55:23 -0700 From: jd1008 <jd1008@gmail.com> User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:31.0) Gecko/20100101 Thunderbird/31.2.0 MIME-Version: 1.0 To: freebsd-questions@freebsd.org Subject: Re: sshguard pf References: <20141102154444.GA42429@ymer.thorshammare.org> <1415133076.3101293.187068781.08AE26B5@webmail.messagingengine.com> In-Reply-To: <1415133076.3101293.187068781.08AE26B5@webmail.messagingengine.com> Content-Type: text/plain; charset=windows-1252; format=flowed Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Wed, 05 Nov 2014 19:55:27 -0000 I read the web page you cite. However, this is for the client side. What about the server side? How does this affect attacks against the server? On 11/04/2014 01:31 PM, Mark Felder wrote: > You could always enable 2 Factor Auth for SSH and then they'll > definitely have no chance of getting in :-) > > http://blog.feld.me/posts/2014/07/ssh-two-factor-authentication-on-freebsd/ > > > Good luck! > _______________________________________________ > freebsd-questions@freebsd.org mailing list > http://lists.freebsd.org/mailman/listinfo/freebsd-questions > To unsubscribe, send any mail to "freebsd-questions-unsubscribe@freebsd.org" > From owner-freebsd-questions@FreeBSD.ORG Wed Nov 5 21:19:06 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 365B6E5B for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 21:19:06 +0000 (UTC) Received: from smtp24.services.sfr.fr (smtp24.services.sfr.fr [93.17.128.84]) by mx1.freebsd.org (Postfix) with ESMTP id E96AD959 for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 21:19:05 +0000 (UTC) Received: from filter.sfr.fr (localhost [84.98.39.158]) by msfrf2401.sfr.fr (SMTP Server) with ESMTP id 81C137000072 for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 22:11:37 +0100 (CET) Authentication-Results: sfrmc.priv.atos.fr; dkim=none (no signature); dkim-adsp=none (no policy) header.from=scaglione.francesco@neuf.fr Received: from X1 (158.39.98.84.rev.sfr.net [84.98.39.158]) by msfrf2401.sfr.fr (SMTP Server) with SMTP id F2CBA70000A5 for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 22:11:36 +0100 (CET) X-SFR-UUID: 20141105211136994.F2CBA70000A5@msfrf2401.sfr.fr Date: Wed, 5 Nov 2014 22:11:35 +0100 From: francesco scaglione <scaglione.francesco@neuf.fr> To: freebsd-questions@freebsd.org Subject: Re: Re: /usr/src update Message-Id: <20141105221135.5b841bd69975f1a7d5ae5883@neuf.fr> In-Reply-To: <CAHHBGkp6PKfa9sJcfGxKS1E-zfwMQxK4-vJz2KsCqaP6zmzyNw@mail.gmail.com> References: <20141030224853.02fceca95497401f6a70b7bd@neuf.fr> <CAHHBGkp6PKfa9sJcfGxKS1E-zfwMQxK4-vJz2KsCqaP6zmzyNw@mail.gmail.com> X-Mailer: Sylpheed 3.2.0 (GTK+ 2.24.10; x86_64-pc-linux-gnu) Mime-Version: 1.0 Content-Type: text/plain; charset=US-ASCII Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Wed, 05 Nov 2014 21:19:06 -0000 On Tue, 4 Nov 2014 19:53:06 -0500 "illoai@gmail.com" <illoai@gmail.com> wrote: > On 30 October 2014 17:48, francesco scaglione > <scaglione.francesco@neuf.fr> wrote: > > Hi, > ... > > > > Would it be safe to remove the src component from > > freebsd-update.conf here as well or should I keep that? > > > > Assuming you never do source updates of your base system, > (& given that you use freebsd-update, you probably don't ever) > & that you don't install any ports that require that /usr/src be > present to build (assuming you build ports from source rather > than just install pre-built packages), I can't think of a good > reason to keep it. > > In any case, there's no harm in removing it, as its absence > won't affect a running system, & it can be easily restored > should the need arise. > > Good luck! Very well, so I will keep the pkg configuration files that are in /usr/src/etc/pkg/ but I will remove the src component from freebsd-update.conf, since I really never do source updates. Thank you very much for your attention, Francesco From owner-freebsd-questions@FreeBSD.ORG Wed Nov 5 21:34:05 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 7FB1E391; Wed, 5 Nov 2014 21:34:05 +0000 (UTC) Received: from smtp22.services.sfr.fr (smtp22.services.sfr.fr [93.17.128.11]) by mx1.freebsd.org (Postfix) with ESMTP id 3EBE1B23; Wed, 5 Nov 2014 21:34:04 +0000 (UTC) Received: from filter.sfr.fr (localhost [93.8.4.165]) by msfrf2208.sfr.fr (SMTP Server) with ESMTP id 69D9370000EB; Wed, 5 Nov 2014 22:25:49 +0100 (CET) Authentication-Results: sfrmc.priv.atos.fr; dkim=none (no signature); dkim-adsp=none (no policy) header.from=listjm@club-internet.fr Received: from [192.168.1.67] (165.4.8.93.rev.sfr.net [93.8.4.165]) by msfrf2208.sfr.fr (SMTP Server) with ESMTP id 3B4F670000E9; Wed, 5 Nov 2014 22:25:49 +0100 (CET) X-SFR-UUID: 20141105212549243.3B4F670000E9@msfrf2208.sfr.fr Message-ID: <545A95DB.1060100@club-internet.fr> Date: Wed, 05 Nov 2014 22:25:47 +0100 From: Juan =?iso-8859-1?b?UmFt824=?= Molina Menor <listjm@club-internet.fr> User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:24.0) Gecko/20100101 Thunderbird/24.6.0 MIME-Version: 1.0 To: freebsd-stable@freebsd.org, freebsd-questions@freebsd.org Subject: Status of svnlite(1) in make.conf(5) Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Wed, 05 Nov 2014 21:34:05 -0000 Hi! Just curious about what it seems an inconsistency with svnlite(1). The initial commit (r251886) says that it was included for checking out and committing source and cites two make.conf(5) knobs: WITH_SVN (to get "svn" instead of "svnlite") and WITHOUT_SVNLITE (in reality, they are in src.conf(5)). Nevertheless, the make.conf man page says, in the SVN_UPDATE section, that no subversion client is included in the base system, and indeed 'make update' does not work by default. Should I open a PR or it is too much nitpicking? Best regards, Juan From owner-freebsd-questions@FreeBSD.ORG Wed Nov 5 21:38:10 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id BFE30545 for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 21:38:10 +0000 (UTC) Received: from out1-smtp.messagingengine.com (out1-smtp.messagingengine.com [66.111.4.25]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 8EE0BB6D for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 21:38:10 +0000 (UTC) Received: from compute4.internal (compute4.nyi.internal [10.202.2.44]) by mailout.nyi.internal (Postfix) with ESMTP id A636D20868 for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 16:38:09 -0500 (EST) Received: from web3 ([10.202.2.213]) by compute4.internal (MEProxy); Wed, 05 Nov 2014 16:38:09 -0500 DKIM-Signature: v=1; a=rsa-sha1; c=relaxed/relaxed; d= messagingengine.com; h=message-id:x-sasl-enc:from:to :mime-version:content-transfer-encoding:content-type:in-reply-to :references:subject:date; s=smtpout; bh=oaUyyIzIA30/YYmbXjTCtz3B bT0=; b=Klgbq/7NsSm7hff///xzXu/b42e3BZLYlXvRsrgCfnwszk4KesK6C90Q 7troIiTw0Kd4slrEGxLYDebcWbd96YVqU/FIy06gYIDODbsO0Cl8pVd+gjKMSzlG PIllRrN7UW7ttT9iKABiIqiQlKHKT1hnKmAnPDYa3HuYL3snUwg= Received: by web3.nyi.internal (Postfix, from userid 99) id 87DB5113CC7; Wed, 5 Nov 2014 16:38:09 -0500 (EST) Message-Id: <1415223489.3437313.187555705.23CA966F@webmail.messagingengine.com> X-Sasl-Enc: RRwnq8CuYizvy5CcX67bnzDGo4aBAUlqPi3LkZYm/o3o 1415223489 From: Mark Felder <feld@FreeBSD.org> To: freebsd-questions@freebsd.org MIME-Version: 1.0 Content-Transfer-Encoding: 7bit Content-Type: text/plain X-Mailer: MessagingEngine.com Webmail Interface - ajax-c51dec4f In-Reply-To: <545A80AB.3050509@gmail.com> References: <20141102154444.GA42429@ymer.thorshammare.org> <1415133076.3101293.187068781.08AE26B5@webmail.messagingengine.com> <545A80AB.3050509@gmail.com> Subject: Re: sshguard pf Date: Wed, 05 Nov 2014 15:38:09 -0600 X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Wed, 05 Nov 2014 21:38:10 -0000 On Wed, Nov 5, 2014, at 13:55, jd1008 wrote: > I read the web page you cite. > However, this is for the client side. > What about the server side? How does this > affect attacks against the server? > No, this is for the *server*. When someone tries to ssh to the server without a valid ssh key they will get two prompts: a passcode, and their password. As a result, brute forcing the always-changing passcode *and* the password is going to be nearly impossible; they have no idea if they get the password correct as long as they don't get the passcode correct at the same time. Note, this doesn't stop the bots from trying, but it prevents them from ever being successful. You could enable root SSH and set your password to "password"[1] and they still wouldn't compromise your server because they don't know how to authenticate through this mechanism and guessing the ever-changing passcode would be highly unlikely. [1] Don't actually do this, though. From owner-freebsd-questions@FreeBSD.ORG Wed Nov 5 21:50:36 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id EFA337C9 for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 21:50:36 +0000 (UTC) Received: from mail-ie0-x233.google.com (mail-ie0-x233.google.com [IPv6:2607:f8b0:4001:c03::233]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id B15B2C6C for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 21:50:36 +0000 (UTC) Received: by mail-ie0-f179.google.com with SMTP id rl12so1687036iec.38 for <freebsd-questions@freebsd.org>; Wed, 05 Nov 2014 13:50:36 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=message-id:date:from:user-agent:mime-version:to:subject:references :in-reply-to:content-type:content-transfer-encoding; bh=vSTFCy2yb6ksSTyTPhmJ6dt6M6GwMyR+iGh37Uzs+6k=; b=ovwIL79fdNc70kRE5JLN16YPpzXy+tkTWKM6qaZbVw0Z9Uap83+8LJCAronULtSGqw b9Yj+avdHX0Ssy5sNvY+T+X3Df4wipW02cQg22P40WwxK8qTqWcH4PLx7sF+Bfx5ZnL/ k2tJCo8up78fp5tgDVYT8tMHARBQGt1w2tkozCDrsq6eyRagm6qvNjisVCGajrO9leRu ena12quc9wFkycJ78B8PtPEKOSkh2YV6I52OpMOYnvuiRqoY0fRQ2GXeGfD6aF3/qzeE ggGAYtGDVWmHj7N0jNTGKd4KONOwP0OvBVTz3acqfC/P/SyvOwPfZaAmIIecz5p3EWaq ZPNA== X-Received: by 10.107.156.131 with SMTP id f125mr99943ioe.15.1415224236074; Wed, 05 Nov 2014 13:50:36 -0800 (PST) Received: from localhost.localdomain (63-225-227-131.slkc.qwest.net. [63.225.227.131]) by mx.google.com with ESMTPSA id fy5sm214448igd.3.2014.11.05.13.50.34 for <freebsd-questions@freebsd.org> (version=TLSv1.2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Wed, 05 Nov 2014 13:50:35 -0800 (PST) Message-ID: <545A9BA9.6040502@gmail.com> Date: Wed, 05 Nov 2014 14:50:33 -0700 From: jd1008 <jd1008@gmail.com> User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:31.0) Gecko/20100101 Thunderbird/31.2.0 MIME-Version: 1.0 To: freebsd-questions@freebsd.org Subject: Re: sshguard pf References: <20141102154444.GA42429@ymer.thorshammare.org> <1415133076.3101293.187068781.08AE26B5@webmail.messagingengine.com> <545A80AB.3050509@gmail.com> <1415223489.3437313.187555705.23CA966F@webmail.messagingengine.com> In-Reply-To: <1415223489.3437313.187555705.23CA966F@webmail.messagingengine.com> Content-Type: text/plain; charset=windows-1252; format=flowed Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Wed, 05 Nov 2014 21:50:37 -0000 On 11/05/2014 02:38 PM, Mark Felder wrote: > > On Wed, Nov 5, 2014, at 13:55, jd1008 wrote: >> I read the web page you cite. >> However, this is for the client side. >> What about the server side? How does this >> affect attacks against the server? >> > No, this is for the *server*. When someone tries to ssh to the server > without a valid ssh key they will get two prompts: a passcode, and their > password. > > As a result, brute forcing the always-changing passcode *and* the > password is going to be nearly impossible; they have no idea if they get > the password correct as long as they don't get the passcode correct at > the same time. > > Note, this doesn't stop the bots from trying, but it prevents them from > ever being successful. You could enable root SSH and set your password > to "password"[1] and they still wouldn't compromise your server because > they don't know how to authenticate through this mechanism and guessing > the ever-changing passcode would be highly unlikely. > > [1] Don't actually do this, though. > Thank you Mark, I will keep doing more research on this :) From owner-freebsd-questions@FreeBSD.ORG Wed Nov 5 21:54:44 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 1C1CE894; Wed, 5 Nov 2014 21:54:44 +0000 (UTC) Received: from udns.ultimatedns.net (unknown [IPv6:2602:d1:b4d6:e600:4261:86ff:fef6:aa2a]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id C732AD22; Wed, 5 Nov 2014 21:54:43 +0000 (UTC) Received: from ultimatedns.net (localhost [127.0.0.1]) by udns.ultimatedns.net (8.14.9/8.14.9) with ESMTP id sA5LuYKa003546; Wed, 5 Nov 2014 13:56:35 -0800 (PST) (envelope-from bsd-lists@bsdforge.com) To: freebsd-stable@freebsd.org, freebsd-questions@freebsd.org, "Juan =?UTF-8?B?UmFtw7Nu?= Molina Menor" <listjm@club-internet.fr> In-Reply-To: <545A95DB.1060100@club-internet.fr> References: <545A95DB.1060100@club-internet.fr> From: "Chris H" <bsd-lists@bsdforge.com> Subject: Re: Status of svnlite(1) in make.conf(5) Date: Wed, 05 Nov 2014 13:56:35 -0800 Content-Type: text/plain; charset=UTF-8; format=fixed MIME-Version: 1.0 Message-id: <82353c164271e8ec77453393ddfa41b2@ultimatedns.net> Content-Transfer-Encoding: 8bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Wed, 05 Nov 2014 21:54:44 -0000 On Wed, 05 Nov 2014 22:25:47 +0100 Juan Ramón Molina Menor <listjm@club-internet.fr> wrote > Hi! > > Just curious about what it seems an inconsistency with svnlite(1). The > initial commit (r251886) says that it was included for checking out and > committing source and cites two make.conf(5) knobs: WITH_SVN (to get > "svn" instead of "svnlite") and WITHOUT_SVNLITE (in reality, they are in > src.conf(5)). Nevertheless, the make.conf man page says, in the > SVN_UPDATE section, that no subversion client is included in the base > system, and indeed 'make update' does not work by default. > > Should I open a PR or it is too much nitpicking? I think it would be a good idea. I can say for sure that svnlite(1) comes on, and is installed from the bootonly CD/DVD. I think it's also worth mentioning that the entries are actually targeted to the src.conf(5). You may also want to CC docs@. As I think Warren Block might also be interested. --Chris > > Best regards, > Juan > _______________________________________________ > freebsd-stable@freebsd.org mailing list > http://lists.freebsd.org/mailman/listinfo/freebsd-stable > To unsubscribe, send any mail to "freebsd-stable-unsubscribe@freebsd.org" From owner-freebsd-questions@FreeBSD.ORG Wed Nov 5 22:09:13 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 280E9C23; Wed, 5 Nov 2014 22:09:13 +0000 (UTC) Received: from wonkity.com (wonkity.com [67.158.26.137]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client CN "wonkity.com", Issuer "wonkity.com" (not verified)) by mx1.freebsd.org (Postfix) with ESMTPS id C1FE0E73; Wed, 5 Nov 2014 22:09:12 +0000 (UTC) Received: from wonkity.com (localhost [127.0.0.1]) by wonkity.com (8.14.9/8.14.9) with ESMTP id sA5M90Qk077086 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-GCM-SHA384 bits=256 verify=NO); Wed, 5 Nov 2014 15:09:01 -0700 (MST) (envelope-from wblock@wonkity.com) Received: from localhost (wblock@localhost) by wonkity.com (8.14.9/8.14.9/Submit) with ESMTP id sA5M90U3077083; Wed, 5 Nov 2014 15:09:00 -0700 (MST) (envelope-from wblock@wonkity.com) Date: Wed, 5 Nov 2014 15:09:00 -0700 (MST) From: Warren Block <wblock@wonkity.com> To: Chris H <bsd-lists@bsdforge.com> Subject: Re: Status of svnlite(1) in make.conf(5) In-Reply-To: <82353c164271e8ec77453393ddfa41b2@ultimatedns.net> Message-ID: <alpine.BSF.2.11.1411051505420.70051@wonkity.com> References: <545A95DB.1060100@club-internet.fr> <82353c164271e8ec77453393ddfa41b2@ultimatedns.net> User-Agent: Alpine 2.11 (BSF 23 2013-08-11) MIME-Version: 1.0 X-Greylist: Sender IP whitelisted, not delayed by milter-greylist-4.4.3 (wonkity.com [127.0.0.1]); Wed, 05 Nov 2014 15:09:01 -0700 (MST) Content-Type: TEXT/PLAIN; charset=utf-8; format=flowed Content-Transfer-Encoding: 8BIT X-Content-Filtered-By: Mailman/MimeDel 2.1.18-1 Cc: freebsd-stable@freebsd.org, freebsd-questions@freebsd.org, =?ISO-8859-15?Q?Juan_Ram=F3n_Molina_Menor?= <listjm@club-internet.fr> X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Wed, 05 Nov 2014 22:09:13 -0000 On Wed, 5 Nov 2014, Chris H wrote: > On Wed, 05 Nov 2014 22:25:47 +0100 Juan Ramón Molina Menor > <listjm@club-internet.fr> wrote > >> Hi! >> >> Just curious about what it seems an inconsistency with svnlite(1). The >> initial commit (r251886) says that it was included for checking out and >> committing source and cites two make.conf(5) knobs: WITH_SVN (to get >> "svn" instead of "svnlite") and WITHOUT_SVNLITE (in reality, they are in >> src.conf(5)). Nevertheless, the make.conf man page says, in the >> SVN_UPDATE section, that no subversion client is included in the base >> system, and indeed 'make update' does not work by default. >> >> Should I open a PR or it is too much nitpicking? > I think it would be a good idea. I can say for sure that > svnlite(1) comes on, and is installed from the bootonly CD/DVD. > I think it's also worth mentioning that the entries are actually > targeted to the src.conf(5). > You may also want to CC docs@. As I think Warren Block might also > be interested. It's just "doc@", but I'm here also. And agreed, if the information in a man page is not correct, it needs to be fixed. From owner-freebsd-questions@FreeBSD.ORG Wed Nov 5 22:13:40 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 70D32DE0 for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 22:13:40 +0000 (UTC) Received: from mail-ie0-x229.google.com (mail-ie0-x229.google.com [IPv6:2607:f8b0:4001:c03::229]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 320ACF38 for <freebsd-questions@freebsd.org>; Wed, 5 Nov 2014 22:13:40 +0000 (UTC) Received: by mail-ie0-f169.google.com with SMTP id tr6so1746898ieb.28 for <freebsd-questions@freebsd.org>; Wed, 05 Nov 2014 14:13:39 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=message-id:date:from:user-agent:mime-version:to:subject:references :in-reply-to:content-type:content-transfer-encoding; bh=QvBobFZ9bctu0DDUWWOrZ9peazRqJbxTP4Fh5RRg6VI=; b=KAuO82dB5UF8dR9zHTi98OowpqHTHioZsUiKMa/nZSQ/QG0kmT2mlsnBVvXhSZIsAp 917Q+fI0No49cH/ahOTe5rrXfjcrNC73hhNx1359SuMYk4NtYh7nCgE23HxvpWXbzqIp SKlgoW9iVYJWZzQNQHaDijMP52+geBiDMbA2+IiJwEDBVbn/fS/4TSMvxzkWX0Mw6ahY pr7XkMYyBJtdPSL3OXRxakvJ/VEQxw8z6xH4xMj5Dv8su5hylr37bO8WU1LCX9KRLQ1B ziDCbF389Wn40SBnVSmP0cy0+Xt9lOfXZIx+2iHtw+RyvTNxhezLgyOGy1k2dCstUYgd +fQQ== X-Received: by 10.42.27.9 with SMTP id h9mr7796487icc.32.1415225619598; Wed, 05 Nov 2014 14:13:39 -0800 (PST) Received: from localhost.localdomain (63-225-227-131.slkc.qwest.net. [63.225.227.131]) by mx.google.com with ESMTPSA id f71sm2063717ioe.28.2014.11.05.14.13.38 for <freebsd-questions@freebsd.org> (version=TLSv1.2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Wed, 05 Nov 2014 14:13:38 -0800 (PST) Message-ID: <545AA111.3000802@gmail.com> Date: Wed, 05 Nov 2014 15:13:37 -0700 From: jd1008 <jd1008@gmail.com> User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:31.0) Gecko/20100101 Thunderbird/31.2.0 MIME-Version: 1.0 To: freebsd-questions@freebsd.org Subject: Re: Open file descriptor reference count implementation in driver References: <c1241e563944d7ec496c6c235f420b21@mail.gmail.com> <CAN2YBg78ucj2hBGHye9UN3-QFB0gT-o=dd4iynGet_sWZ5ABpQ@mail.gmail.com> <1ab03c9bac878f437b205786d8304bd3@mail.gmail.com> In-Reply-To: <1ab03c9bac878f437b205786d8304bd3@mail.gmail.com> Content-Type: text/plain; charset=utf-8; format=flowed Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Wed, 05 Nov 2014 22:13:40 -0000 Hi Sibananda, As you can see below, si_refcount and si_usecount are used by the kernel in kern_conf.c, and the generic FS vnode layer, and the device FS vnode layer. ./kern/kern_conf.c: dev->si_refcount++; ./kern/kern_conf.c: dev->si_refcount++; ./kern/kern_conf.c: dev->si_refcount--; ./kern/kern_conf.c: KASSERT(dev->si_refcount >= 0, ./kern/kern_conf.c: if (dev->si_usecount == 0 && ./kern/kern_conf.c: if (dev->si_devsw == NULL && dev->si_refcount == 0) { ./kern/kern_conf.c: dev->si_refcount++; /* Avoid race with dev_rel() */ ./kern/kern_conf.c: dev->si_refcount--; /* Avoid race with dev_rel() */ ./kern/kern_conf.c: if (dev->si_refcount > 0) { ./kern/kern_conf.c: dev->si_name, dev->si_refcount, dev->si_usecount, The FS Vnode layer: ./kern/vfs_bio.c: KASSERT(dev->si_refcount > 0, ./kern/vfs_subr.c: vp->v_rdev->si_usecount++; ./kern/vfs_subr.c: vp->v_rdev->si_usecount++; ./kern/vfs_subr.c: vp->v_rdev->si_usecount--; ./kern/vfs_subr.c: vp->v_rdev->si_usecount--; ./kern/vfs_subr.c: count = vp->v_rdev->si_usecount; ./kern/vfs_subr.c: count = dev->si_usecount; ./sys/conf.h: int si_refcount; ./sys/conf.h: u_long si_usecount; The device FS vnode layer: ./fs/devfs/devfs_vnops.c: KASSERT((*devp)->si_refcount > 0, ./fs/devfs/devfs_vnops.c: dev->si_usecount += vp->v_usecount; ./fs/devfs/devfs_vnops.c: KASSERT(dev->si_refcount > 0, ./fs/devfs/devfs_vnops.c: dev->si_usecount -= vp->v_usecount; So, it would seem like YOUR DRIVER has no business checking/modifying these variables. But your device driver's open and close functions will be called by the upper vnode operations (functions) and they take care of these variables (among others). When your driver's close function is called as a final act of the vnode layer when the counts go to 0. Whay your XX_close() function will do depends a lot on what your driver is supposed to achieve. Mostlly, release driver locks and memory allocated for the very first open. From owner-freebsd-questions@FreeBSD.ORG Thu Nov 6 07:52:03 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id D9DC4B0A for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 07:52:03 +0000 (UTC) Received: from exprod7og110.obsmtp.com (exprod7og110.obsmtp.com [64.18.2.173]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 4EF49351 for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 07:52:02 +0000 (UTC) Received: from mail-wi0-f170.google.com ([209.85.212.170]) (using TLSv1) by exprod7ob110.postini.com ([64.18.6.12]) with SMTP ID DSNKVFsom0TXoPxiDxw5aJ0VH2HFu/pHH21+@postini.com; Wed, 05 Nov 2014 23:52:03 PST Received: by mail-wi0-f170.google.com with SMTP id r20so602368wiv.5 for <freebsd-questions@freebsd.org>; Wed, 05 Nov 2014 23:51:55 -0800 (PST) X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=x-gm-message-state:from:references:in-reply-to:mime-version :thread-index:date:message-id:subject:to:content-type; bh=oprgYlxoAWuCjJqfYvkFkQeKx8aUmIM3GRnWpQfJVRc=; b=WaYYcQEywX7VaU2PFh1S5MDPVogn/MOp7JQfNu5viNfH3UYEJ4YX4KI+zxfXQBvb26 fS8/y0++BhD7TUIEsKOuweh20QUkpk3wDaAEiZ6fRpCtfUNo0P2JedKvZJNLqHZCBU4n Sc99QW+h0EGfg7S+VJlfKTIkYeiy1zIqBS421vgSMSDkHjv9/VaPtvQL5q26Ivu4+8uc uRBhnig88Ujnicmc6C7v28FyN/QDLRQIVOGJYpR+/zD/WaQ5yVvPZYc1uWidAk4aYKlS JoHSdZjIx5FaJq/WpNBqQL9q9HJnTBAg5ivxqGNF25cEA9n+4BzGak75JMqniXM++0hN DEhg== X-Gm-Message-State: ALoCoQkVRnL1RV75qbsz7vkornTjbMQ11Hynn5HKPcnvoRFNJ6hIJ2ombV1zzem3uxgLgXq0nGLT36u0WHf9C1xAmlh+ZmsAxqZtK5rYOc4kI2vp0/bycWp+fwa6uJ+COH0IsXFqiYJi+9923vsDqqNybp/kbOeMOZzIBQ1r6y8CNqm3nLIv8Gw= X-Received: by 10.180.93.37 with SMTP id cr5mr12235295wib.76.1415260315545; Wed, 05 Nov 2014 23:51:55 -0800 (PST) X-Received: by 10.180.93.37 with SMTP id cr5mr12235288wib.76.1415260315442; Wed, 05 Nov 2014 23:51:55 -0800 (PST) From: Sibananda Sahu <sibananda.sahu@avagotech.com> References: <c1241e563944d7ec496c6c235f420b21@mail.gmail.com> <CAN2YBg78ucj2hBGHye9UN3-QFB0gT-o=dd4iynGet_sWZ5ABpQ@mail.gmail.com> <1ab03c9bac878f437b205786d8304bd3@mail.gmail.com> <545AA111.3000802@gmail.com> In-Reply-To: <545AA111.3000802@gmail.com> MIME-Version: 1.0 X-Mailer: Microsoft Outlook 14.0 Thread-Index: AQNa5s5W0kWsy8xn8LVBabuf4+sv+AF03wk0AmcUCzMCW1RqjJkLm7ng Date: Thu, 6 Nov 2014 13:21:54 +0530 Message-ID: <71178d539228aaeafd7f8d4a445b6694@mail.gmail.com> Subject: RE: Open file descriptor reference count implementation in driver To: jd1008 <jd1008@gmail.com>, freebsd-questions@freebsd.org Content-Type: text/plain; charset=UTF-8 X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Thu, 06 Nov 2014 07:52:03 -0000 Thanks jd1008 for your valuable time and information. Similar reference count variable I have implemented on my driver. I am incrementing the variable when my driver xx_open() is called and decrementing it when my xx_close() is called. While unloading the driver I am checking if there is an open file descriptor by checking the reference count variable that I am using. This is the main reason I am asking for reusing one of these variables for this purpose. Sometimes what happens some application calls my _open() call but it does not _close() it. In this case my reference count variable have non zero value and it refuses to unload the driver(The way I have implemented). In this particular scenario I have used the si_usecount from my cdev structure. This value I think takes care of use count of the cdev, Even in the case if some application has opened the particular cdev and the application itself exited without closing the file descriptor, then also this variable help me to identify really no one is using my cdev structure. When some application opens my driver file descriptor and did not close it then I have observed the following things: - si_refcount has some NONZERO value. - si_usecount has the value ZERO. I just need to know can I use any of these variables, more precisely si_usecount variable in my driver to know if some application is using the driver file descriptor then it won't allow the driver to unload. Thanks, Sibananda Sahu -----Original Message----- From: owner-freebsd-questions@freebsd.org [mailto:owner-freebsd-questions@freebsd.org] On Behalf Of jd1008 Sent: Thursday, November 06, 2014 3:44 AM To: freebsd-questions@freebsd.org Subject: Re: Open file descriptor reference count implementation in driver Hi Sibananda, As you can see below, si_refcount and si_usecount are used by the kernel in kern_conf.c, and the generic FS vnode layer, and the device FS vnode layer. ./kern/kern_conf.c: dev->si_refcount++; ./kern/kern_conf.c: dev->si_refcount++; ./kern/kern_conf.c: dev->si_refcount--; ./kern/kern_conf.c: KASSERT(dev->si_refcount >= 0, ./kern/kern_conf.c: if (dev->si_usecount == 0 && ./kern/kern_conf.c: if (dev->si_devsw == NULL && dev->si_refcount == 0) { ./kern/kern_conf.c: dev->si_refcount++; /* Avoid race with dev_rel() */ ./kern/kern_conf.c: dev->si_refcount--; /* Avoid race with dev_rel() */ ./kern/kern_conf.c: if (dev->si_refcount > 0) { ./kern/kern_conf.c: dev->si_name, dev->si_refcount, dev->si_usecount, The FS Vnode layer: ./kern/vfs_bio.c: KASSERT(dev->si_refcount > 0, ./kern/vfs_subr.c: vp->v_rdev->si_usecount++; ./kern/vfs_subr.c: vp->v_rdev->si_usecount++; ./kern/vfs_subr.c: vp->v_rdev->si_usecount--; ./kern/vfs_subr.c: vp->v_rdev->si_usecount--; ./kern/vfs_subr.c: count = vp->v_rdev->si_usecount; ./kern/vfs_subr.c: count = dev->si_usecount; ./sys/conf.h: int si_refcount; ./sys/conf.h: u_long si_usecount; The device FS vnode layer: ./fs/devfs/devfs_vnops.c: KASSERT((*devp)->si_refcount > 0, ./fs/devfs/devfs_vnops.c: dev->si_usecount += vp->v_usecount; ./fs/devfs/devfs_vnops.c: KASSERT(dev->si_refcount > 0, ./fs/devfs/devfs_vnops.c: dev->si_usecount -= vp->v_usecount; So, it would seem like YOUR DRIVER has no business checking/modifying these variables. But your device driver's open and close functions will be called by the upper vnode operations (functions) and they take care of these variables (among others). When your driver's close function is called as a final act of the vnode layer when the counts go to 0. Whay your XX_close() function will do depends a lot on what your driver is supposed to achieve. Mostlly, release driver locks and memory allocated for the very first open. _______________________________________________ freebsd-questions@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-questions To unsubscribe, send any mail to "freebsd-questions-unsubscribe@freebsd.org" From owner-freebsd-questions@FreeBSD.ORG Thu Nov 6 11:19:06 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 461196FD; Thu, 6 Nov 2014 11:19:06 +0000 (UTC) Received: from smtp21.services.sfr.fr (smtp21.services.sfr.fr [93.17.128.3]) by mx1.freebsd.org (Postfix) with ESMTP id 09951D63; Thu, 6 Nov 2014 11:19:05 +0000 (UTC) Received: from filter.sfr.fr (localhost [93.8.4.165]) by msfrf2119.sfr.fr (SMTP Server) with ESMTP id AF3687000048; Thu, 6 Nov 2014 12:10:00 +0100 (CET) Authentication-Results: sfrmc.priv.atos.fr; dkim=none (no signature); dkim-adsp=none (no policy) header.from=listjm@club-internet.fr Received: from [192.168.1.67] (165.4.8.93.rev.sfr.net [93.8.4.165]) by msfrf2119.sfr.fr (SMTP Server) with ESMTP id 60C8C700008E; Thu, 6 Nov 2014 12:10:00 +0100 (CET) X-SFR-UUID: 20141106111000396.60C8C700008E@msfrf2119.sfr.fr Message-ID: <545B5707.20300@club-internet.fr> Date: Thu, 06 Nov 2014 12:09:59 +0100 From: Juan =?iso-8859-1?b?UmFt824=?= Molina Menor <listjm@club-internet.fr> User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:24.0) Gecko/20100101 Thunderbird/24.6.0 MIME-Version: 1.0 To: freebsd-stable@freebsd.org, freebsd-questions@freebsd.org Subject: Status of svnlite(1) in make.conf(5) Content-Type: text/plain; charset=windows-1252; format=flowed Content-Transfer-Encoding: 8bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Thu, 06 Nov 2014 11:19:06 -0000 > On Wed, 5 Nov 2014, Chris H wrote: > >> On Wed, 05 Nov 2014 22:25:47 +0100 Juan Ramón Molina Menor >> <listjm at club-internet.fr> wrote >> >>> Hi! >>> >>> Just curious about what it seems an inconsistency with svnlite(1). The >>> initial commit (r251886) says that it was included for checking out and >>> committing source and cites two make.conf(5) knobs: WITH_SVN (to get >>> "svn" instead of "svnlite") and WITHOUT_SVNLITE (in reality, they are in >>> src.conf(5)). Nevertheless, the make.conf man page says, in the >>> SVN_UPDATE section, that no subversion client is included in the base >>> system, and indeed 'make update' does not work by default. >>> >>> Should I open a PR or it is too much nitpicking? >> I think it would be a good idea. I can say for sure that >> svnlite(1) comes on, and is installed from the bootonly CD/DVD. >> I think it's also worth mentioning that the entries are actually >> targeted to the src.conf(5). >> You may also want to CC docs at . As I think Warren Block might also >> be interested. > > It's just "doc@", but I'm here also. And agreed, if the information in > a man page is not correct, it needs to be fixed. Can I help somehow? It’s not only the man page which needs a fix, but maybe also /Makefile.inc1: https://svnweb.freebsd.org/base/head/Makefile.inc1?revision=273755&view=markup#l122 From owner-freebsd-questions@FreeBSD.ORG Thu Nov 6 13:43:18 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id D00DCCAB for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 13:43:18 +0000 (UTC) Received: from out5-smtp.messagingengine.com (out5-smtp.messagingengine.com [66.111.4.29]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 9F4D4FD9 for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 13:43:18 +0000 (UTC) Received: from compute2.internal (compute2.nyi.internal [10.202.2.42]) by mailout.nyi.internal (Postfix) with ESMTP id 5EDBD2014E for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 08:43:11 -0500 (EST) Received: from web3 ([10.202.2.213]) by compute2.internal (MEProxy); Thu, 06 Nov 2014 08:43:11 -0500 DKIM-Signature: v=1; a=rsa-sha1; c=relaxed/relaxed; d= messagingengine.com; h=message-id:x-sasl-enc:from:to :mime-version:content-transfer-encoding:content-type:in-reply-to :references:subject:date; s=smtpout; bh=KG3FYF29c6wgd1/bDRo8z4se M2I=; b=dFUFw0a4CprKXN8yAQhuDqjzM2hyu6+eypSIujJC8KZg7HwLD7Ebhw8c mZHK4xR9XV+tzUyDwy5curin1O0HRHzxWBP1r2M2oW6ndGXQ2UELhQZ5LvvKwvEx QtgYjQIKGDnPAPslnM0Ia/q68g+EqKw/n9vIBq0DMZHHzdJ0yTo= Received: by web3.nyi.internal (Postfix, from userid 99) id 3E994118437; Thu, 6 Nov 2014 08:43:11 -0500 (EST) Message-Id: <1415281391.3654995.187813213.7FAECF4C@webmail.messagingengine.com> X-Sasl-Enc: dJdtA46ui/bTfEO+Fej3QWIUtaUCSsaqWYP995Jp2/9Q 1415281391 From: Mark Felder <feld@FreeBSD.org> To: freebsd-questions@freebsd.org MIME-Version: 1.0 Content-Transfer-Encoding: quoted-printable Content-Type: text/plain; charset="ISO-8859-1" X-Mailer: MessagingEngine.com Webmail Interface - ajax-c51dec4f In-Reply-To: <86lhnup5l3.fsf@gly.ftfl.ca> References: <86lhnup5l3.fsf@gly.ftfl.ca> Subject: Re: local_unbound and dnscrypt-proxy Date: Thu, 06 Nov 2014 07:43:11 -0600 X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Thu, 06 Nov 2014 13:43:18 -0000 On Sat, Nov 1, 2014, at 22:52, Joseph Mingrone wrote: > Hi, >=20 > I just upgraded to from 9-STABLE to 10-STABLE. On 9-STABLE I used > dnscrypt-proxy along with unbound from ports. I'm trying to reproduce > the old setup with the local_unbound included in FreeBSD 10. My current > configuration is below. If I comment out =ABinclude: > /var/unbound/forward.conf=BB from > unbound.conf, resolving works, so it seems local_unbound is working OK. > If I change /etc/resolv.conf to use =ABnameserver 127.0.0.2=BB > (dnscrypt-proxy) instead of 127.0.0.1 (unbound) resolving works. So it > seems the forwarding is not working. Am I missing something? >=20 Did you find a solution to this? I've also tried to get unbound and dnscrypt-proxy to work together without any luck. From owner-freebsd-questions@FreeBSD.ORG Thu Nov 6 14:41:37 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 0B35C955; Thu, 6 Nov 2014 14:41:37 +0000 (UTC) Received: from wonkity.com (wonkity.com [67.158.26.137]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client CN "wonkity.com", Issuer "wonkity.com" (not verified)) by mx1.freebsd.org (Postfix) with ESMTPS id AD95783F; Thu, 6 Nov 2014 14:41:36 +0000 (UTC) Received: from wonkity.com (localhost [127.0.0.1]) by wonkity.com (8.14.9/8.14.9) with ESMTP id sA6EfXpH030011 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-GCM-SHA384 bits=256 verify=NO); Thu, 6 Nov 2014 07:41:33 -0700 (MST) (envelope-from wblock@wonkity.com) Received: from localhost (wblock@localhost) by wonkity.com (8.14.9/8.14.9/Submit) with ESMTP id sA6EfWps030005; Thu, 6 Nov 2014 07:41:33 -0700 (MST) (envelope-from wblock@wonkity.com) Date: Thu, 6 Nov 2014 07:41:32 -0700 (MST) From: Warren Block <wblock@wonkity.com> To: =?ISO-8859-15?Q?Juan_Ram=F3n_Molina_Menor?= <listjm@club-internet.fr> Subject: Re: Status of svnlite(1) in make.conf(5) In-Reply-To: <545B5707.20300@club-internet.fr> Message-ID: <alpine.BSF.2.11.1411060738080.10645@wonkity.com> References: <545B5707.20300@club-internet.fr> User-Agent: Alpine 2.11 (BSF 23 2013-08-11) MIME-Version: 1.0 X-Greylist: Sender IP whitelisted, not delayed by milter-greylist-4.4.3 (wonkity.com [127.0.0.1]); Thu, 06 Nov 2014 07:41:33 -0700 (MST) Content-Type: TEXT/PLAIN; charset=windows-1252; format=flowed Content-Transfer-Encoding: 8BIT X-Content-Filtered-By: Mailman/MimeDel 2.1.18-1 Cc: freebsd-stable@freebsd.org, freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Thu, 06 Nov 2014 14:41:37 -0000 On Thu, 6 Nov 2014, Juan Ramón Molina Menor wrote: >> On Wed, 5 Nov 2014, Chris H wrote: >> >>> On Wed, 05 Nov 2014 22:25:47 +0100 Juan Ramón Molina Menor >>> <listjm at club-internet.fr> wrote >>> >>>> Hi! >>>> >>>> Just curious about what it seems an inconsistency with svnlite(1). The >>>> initial commit (r251886) says that it was included for checking out and >>>> committing source and cites two make.conf(5) knobs: WITH_SVN (to get >>>> "svn" instead of "svnlite") and WITHOUT_SVNLITE (in reality, they are in >>>> src.conf(5)). Nevertheless, the make.conf man page says, in the >>>> SVN_UPDATE section, that no subversion client is included in the base >>>> system, and indeed 'make update' does not work by default. >>>> >>>> Should I open a PR or it is too much nitpicking? >>> I think it would be a good idea. I can say for sure that >>> svnlite(1) comes on, and is installed from the bootonly CD/DVD. >>> I think it's also worth mentioning that the entries are actually >>> targeted to the src.conf(5). >>> You may also want to CC docs at . As I think Warren Block might also >>> be interested. >> >> It's just "doc@", but I'm here also. And agreed, if the information in >> a man page is not correct, it needs to be fixed. > > Can I help somehow? It?s not only the man page which needs a fix, but maybe > also /Makefile.inc1: > https://svnweb.freebsd.org/base/head/Makefile.inc1?revision=273755&view=markup#l122 A PR with patch to fix all the files would be the best. A list of the files to change and changes to be made is probably just as difficult to create, but would also work. From owner-freebsd-questions@FreeBSD.ORG Thu Nov 6 15:04:05 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id E3E1CEEE; Thu, 6 Nov 2014 15:04:05 +0000 (UTC) Received: from smtp21.services.sfr.fr (smtp21.services.sfr.fr [93.17.128.1]) by mx1.freebsd.org (Postfix) with ESMTP id 78CBCB00; Thu, 6 Nov 2014 15:04:04 +0000 (UTC) Received: from filter.sfr.fr (localhost [93.8.4.165]) by msfrf2104.sfr.fr (SMTP Server) with ESMTP id 40C2C7000079; Thu, 6 Nov 2014 15:55:10 +0100 (CET) Authentication-Results: sfrmc.priv.atos.fr; dkim=none (no signature); dkim-adsp=none (no policy) header.from=listjm@club-internet.fr Received: from [192.168.1.67] (165.4.8.93.rev.sfr.net [93.8.4.165]) by msfrf2104.sfr.fr (SMTP Server) with ESMTP id 147087000066; Thu, 6 Nov 2014 15:55:09 +0100 (CET) X-SFR-UUID: 20141106145509838.147087000066@msfrf2104.sfr.fr Message-ID: <545B8BCB.9040106@club-internet.fr> Date: Thu, 06 Nov 2014 15:55:07 +0100 From: Juan =?iso-8859-1?b?UmFt824=?= Molina Menor <listjm@club-internet.fr> User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:24.0) Gecko/20100101 Thunderbird/24.6.0 MIME-Version: 1.0 To: Warren Block <wblock@wonkity.com> Subject: Re: Status of svnlite(1) in make.conf(5) References: <545B5707.20300@club-internet.fr> <alpine.BSF.2.11.1411060738080.10645@wonkity.com> In-Reply-To: <alpine.BSF.2.11.1411060738080.10645@wonkity.com> Content-Type: text/plain; charset=windows-1252; format=flowed Content-Transfer-Encoding: 8bit Cc: freebsd-stable@freebsd.org, freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Thu, 06 Nov 2014 15:04:06 -0000 El 06/11/2014 15:41, Warren Block escribió: > On Thu, 6 Nov 2014, Juan Ramón Molina Menor wrote: > >>> On Wed, 5 Nov 2014, Chris H wrote: >>> >>>> On Wed, 05 Nov 2014 22:25:47 +0100 Juan Ramón Molina Menor >>>> <listjm at club-internet.fr> wrote >>>> >>>>> Hi! >>>>> >>>>> Just curious about what it seems an inconsistency with svnlite(1). The >>>>> initial commit (r251886) says that it was included for checking out >>>>> and >>>>> committing source and cites two make.conf(5) knobs: WITH_SVN (to get >>>>> "svn" instead of "svnlite") and WITHOUT_SVNLITE (in reality, they >>>>> are in >>>>> src.conf(5)). Nevertheless, the make.conf man page says, in the >>>>> SVN_UPDATE section, that no subversion client is included in the base >>>>> system, and indeed 'make update' does not work by default. >>>>> >>>>> Should I open a PR or it is too much nitpicking? >>>> I think it would be a good idea. I can say for sure that >>>> svnlite(1) comes on, and is installed from the bootonly CD/DVD. >>>> I think it's also worth mentioning that the entries are actually >>>> targeted to the src.conf(5). >>>> You may also want to CC docs at . As I think Warren Block might also >>>> be interested. >>> >>> It's just "doc@", but I'm here also. And agreed, if the information in >>> a man page is not correct, it needs to be fixed. >> >> Can I help somehow? It?s not only the man page which needs a fix, but >> maybe also /Makefile.inc1: >> https://svnweb.freebsd.org/base/head/Makefile.inc1?revision=273755&view=markup#l122 >> > > A PR with patch to fix all the files would be the best. A list of the > files to change and changes to be made is probably just as difficult to > create, but would also work. For the man page, I’ll try to find time to follow the "FreeBSD Documentation Project Primer for New Contributors", even if it seems quite daunting. For the make infrastructure, I’m quite sure I won’t be able to fulfil the task, but I’ll try too. Best regards, Juan From owner-freebsd-questions@FreeBSD.ORG Thu Nov 6 16:11:40 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 7494ADC0 for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 16:11:40 +0000 (UTC) Received: from smtpb.telissant.net (smtpb.telissant.net [199.233.230.156]) by mx1.freebsd.org (Postfix) with ESMTP id 48E2B31C for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 16:11:39 +0000 (UTC) Received: from barrida.3dresearch.com (localhost [127.0.0.1]) by smtpb.telissant.net (Postfix) with ESMTP id BB15E2731E for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 11:04:12 -0500 (EST) X-Virus-Scanned: amavisd-new at telissant.net Received: from smtpb.telissant.net ([127.0.0.1]) by barrida.3dresearch.com (barrida.3dresearch.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 0hdFrRwOkedN for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 11:03:57 -0500 (EST) Received: from doncurzio.3dresearch.com (pool-71-112-0-222.pitbpa.east.verizon.net [71.112.0.222]) (using TLSv1 with cipher ADH-CAMELLIA256-SHA (256/256 bits)) (No client certificate requested) by smtpb.telissant.net (Postfix) with ESMTPSA id 9CA53273FC for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 11:03:29 -0500 (EST) Received: from doncurzio.3dresearch.com (localhost [127.0.0.1]) by doncurzio.3dresearch.com (Postfix) with SMTP id D2E13A1E2C for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 11:03:28 -0500 (EST) Date: Thu, 6 Nov 2014 11:03:19 -0500 From: Janos Dohanics <web@3dresearch.com> To: FreeBSD Questions <freebsd-questions@freebsd.org> Subject: uniq(1) on last field Message-Id: <20141106110319.eb34eaa069a4881824072010@3dresearch.com> X-Mailer: Sylpheed 3.3.0 (GTK+ 2.24.19; amd64-portbld-freebsd9.1) Mime-Version: 1.0 Content-Type: text/plain; charset=US-ASCII Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Thu, 06 Nov 2014 16:11:40 -0000 Hello List, Would you please help with a shell scripting problem. I have a samba audit log file which after some parsing has entries like this: Nov 5 10:26:29 testuser 10.10.10.72 pluto pwrite ok COMMON/Solidworks Parts & Assemblies/Filter Elements/~$Element 2-3187.SLDPRT Nov 5 12:50:54 testuser 10.10.10.72 pluto pwrite ok COMMON/Solidworks Parts & Assemblies/Filter Elements/~$Element 2-3187.SLDPRT Nov 5 14:05:52 testuser 10.10.10.72 pluto pwrite ok COMMON/Solidworks Parts & Assemblies/Filter Elements/~$Element 2-3187.SLDPRT Nov 5 17:30:06 testuser 10.10.10.72 pluto pwrite ok COMMON/Solidworks Parts & Assemblies/Filter Elements/~$Element 2-3187.SLDPRT Nov 5 09:32:48 testuser 10.10.10.72 pluto pwrite ok COMMON/Solidworks Parts & Assemblies/Gaskets/Flexitallic/10in/~$10in ANSI 600 Flexitallic.SLDPRT Nov 5 09:32:48 testuser 10.10.10.72 pluto pwrite ok COMMON/Solidworks Parts & Assemblies/Gaskets/Flexitallic/20in/~$20in ANSI 600 Flexitallic.SLDPRT Nov 5 09:32:32 testuser 10.10.10.72 pluto pwrite ok COMMON/Solidworks Parts & Assemblies/Lifting Lugs/~$54in Tower Lifting Lug.SLDPRT Nov 5 10:31:29 testuser 10.10.10.72 pluto pwrite ok COMMON/Solidworks Parts & Assemblies/CDE - Beck/Tube Baffle Coalescer Model/~$40in OD Shell.SLDPRT Nov 5 10:32:20 testuser 10.10.10.72 pluto pwrite ok COMMON/Solidworks Parts & Assemblies/CDE - Beck/Tube Baffle Coalescer Model/~$40in OD Shell.SLDPRT Nov 5 12:54:43 testuser 10.10.10.72 pluto pwrite ok COMMON/Solidworks Parts & Assemblies/CDE - Beck/Tube Baffle Coalescer Model/~$40in OD Shell.SLDPRT Nov 5 15:07:10 testuser 10.10.10.72 pluto pwrite ok COMMON/Solidworks Parts & Assemblies/CDE - Beck/Tube Baffle Coalescer Model/~$40in OD Shell.SLDPRT I would like to use uniq(1) on the file name, which is of course the last field if / is used as field separator. How can I tell uniq(1) the "last field" if I have variable number of fields? -- Janos Dohanics From owner-freebsd-questions@FreeBSD.ORG Thu Nov 6 17:06:41 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 63465500 for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 17:06:41 +0000 (UTC) Received: from smtpq2.tb.mail.iss.as9143.net (smtpq2.tb.mail.iss.as9143.net [212.54.42.165]) by mx1.freebsd.org (Postfix) with ESMTP id 1ACD7B53 for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 17:06:40 +0000 (UTC) Received: from [212.54.42.135] (helo=smtp4.tb.mail.iss.as9143.net) by smtpq2.tb.mail.iss.as9143.net with esmtp (Exim 4.76) (envelope-from <peter@boosten.org>) id 1XmQ8z-0003eV-C9; Thu, 06 Nov 2014 17:42:45 +0100 Received: from 5419839c.cm-5-2c.dynamic.ziggo.nl ([84.25.131.156] helo=ra.boosten.org) by smtp4.tb.mail.iss.as9143.net with esmtp (Exim 4.76) (envelope-from <peter@boosten.org>) id 1XmQ8z-00079y-5O; Thu, 06 Nov 2014 17:42:45 +0100 Received: from ra.egypt.nl (localhost.egypt.nl [127.0.0.1]) by ra.boosten.org (Postfix) with ESMTP id AE6A4398E0; Thu, 6 Nov 2014 17:42:44 +0100 (CET) X-Virus-Scanned: amavisd-new at boosten.org Received: from ra.boosten.org ([127.0.0.1]) by ra.egypt.nl (ra.egypt.nl [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id cb4P0ACy_H2C; Thu, 6 Nov 2014 17:42:44 +0100 (CET) Received: from mbp.egypt.nl (mbp.egypt.nl [192.168.13.33]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by ra.boosten.org (Postfix) with ESMTPSA id 1ED1239860; Thu, 6 Nov 2014 17:42:44 +0100 (CET) Mime-Version: 1.0 (Mac OS X Mail 8.0 \(1990.1\)) Subject: Re: uniq(1) on last field From: Peter Boosten <peter@boosten.org> In-Reply-To: <20141106110319.eb34eaa069a4881824072010@3dresearch.com> Date: Thu, 6 Nov 2014 17:42:40 +0100 Message-Id: <C1660725-BF36-4F5F-9BA3-4E0231DB17A0@boosten.org> References: <20141106110319.eb34eaa069a4881824072010@3dresearch.com> To: Janos Dohanics <web@3dresearch.com> X-Mailer: Apple Mail (2.1990.1) X-Ziggo-spambar: ---- X-Ziggo-spamscore: -4.9 X-Ziggo-spamreport: ALL_TRUSTED=-1, BAYES_00=-1.9, HTML_MESSAGE=0.001, PROLO_TRUST_RDNS=-3, RDNS_DYNAMIC=0.982, SPF_PASS=-0.001 X-Ziggo-Spam-Status: No X-Spam-Status: No X-Spam-Flag: No Content-Type: text/plain; charset=us-ascii Content-Transfer-Encoding: 7bit X-Content-Filtered-By: Mailman/MimeDel 2.1.18-1 Cc: FreeBSD Questions <freebsd-questions@freebsd.org> X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Thu, 06 Nov 2014 17:06:41 -0000 > > > I would like to use uniq(1) on the file name, which is of course the > last field if / is used as field separator. > > How can I tell uniq(1) the "last field" if I have variable number of > fields? sort -u might be a better option -- Peter Boosten From owner-freebsd-questions@FreeBSD.ORG Thu Nov 6 17:27:54 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id DBCCAD71 for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 17:27:54 +0000 (UTC) Received: from smtpb.telissant.net (smtpb.telissant.net [199.233.230.156]) by mx1.freebsd.org (Postfix) with ESMTP id ADBB8D84 for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 17:27:53 +0000 (UTC) Received: from barrida.3dresearch.com (localhost [127.0.0.1]) by smtpb.telissant.net (Postfix) with ESMTP id 71B9827372 for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 12:27:53 -0500 (EST) X-Virus-Scanned: amavisd-new at telissant.net Received: from smtpb.telissant.net ([127.0.0.1]) by barrida.3dresearch.com (barrida.3dresearch.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id OKm0IlBK1jfN for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 12:27:38 -0500 (EST) Received: from doncurzio.3dresearch.com (pool-71-112-0-222.pitbpa.east.verizon.net [71.112.0.222]) (using TLSv1 with cipher ADH-CAMELLIA256-SHA (256/256 bits)) (No client certificate requested) by smtpb.telissant.net (Postfix) with ESMTPSA id D71632731E for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 12:27:37 -0500 (EST) Received: from doncurzio.3dresearch.com (localhost [127.0.0.1]) by doncurzio.3dresearch.com (Postfix) with SMTP id 3EC80A1E2C for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 12:27:37 -0500 (EST) Date: Thu, 6 Nov 2014 12:24:41 -0500 From: Janos Dohanics <web@3dresearch.com> To: FreeBSD Questions <freebsd-questions@freebsd.org> Subject: Re: uniq(1) on last field Message-Id: <20141106122441.bcda9b772b499a6ff0f378d1@3dresearch.com> In-Reply-To: <C1660725-BF36-4F5F-9BA3-4E0231DB17A0@boosten.org> References: <20141106110319.eb34eaa069a4881824072010@3dresearch.com> <C1660725-BF36-4F5F-9BA3-4E0231DB17A0@boosten.org> X-Mailer: Sylpheed 3.3.0 (GTK+ 2.24.19; amd64-portbld-freebsd9.1) Mime-Version: 1.0 Content-Type: text/plain; charset=US-ASCII Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Thu, 06 Nov 2014 17:27:54 -0000 On Thu, 6 Nov 2014 17:42:40 +0100 Peter Boosten <peter@boosten.org> wrote: > > > > > > > I would like to use uniq(1) on the file name, which is of course the > > last field if / is used as field separator. > > > > How can I tell uniq(1) the "last field" if I have variable number of > > fields? > > > sort -u might be a better option > > -- > Peter Boosten Thanks. I'd have to use something like 'sort -k [n] -u'. Seems that awk -F "/" '{print NF}' gives the value for n, but what would be the syntax for that sort command? -- Janos Dohanics From owner-freebsd-questions@FreeBSD.ORG Thu Nov 6 17:56:00 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 94A53724 for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 17:56:00 +0000 (UTC) Received: from smtpq1.gn.mail.iss.as9143.net (smtpq1.gn.mail.iss.as9143.net [212.54.34.164]) by mx1.freebsd.org (Postfix) with ESMTP id 4A72CC7 for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 17:55:59 +0000 (UTC) Received: from [212.54.34.134] (helo=smtp3.gn.mail.iss.as9143.net) by smtpq1.gn.mail.iss.as9143.net with esmtp (Exim 4.71) (envelope-from <peter@boosten.org>) id 1XmQvY-0000xt-LX; Thu, 06 Nov 2014 18:32:56 +0100 Received: from 5419839c.cm-5-2c.dynamic.ziggo.nl ([84.25.131.156] helo=ra.boosten.org) by smtp3.gn.mail.iss.as9143.net with esmtp (Exim 4.71) (envelope-from <peter@boosten.org>) id 1XmQvY-0007GI-BX; Thu, 06 Nov 2014 18:32:56 +0100 Received: from ra.egypt.nl (localhost.egypt.nl [127.0.0.1]) by ra.boosten.org (Postfix) with ESMTP id 92FC5398E0; Thu, 6 Nov 2014 18:32:53 +0100 (CET) X-Virus-Scanned: amavisd-new at boosten.org Received: from ra.boosten.org ([127.0.0.1]) by ra.egypt.nl (ra.egypt.nl [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id e4qgOl_soX_9; Thu, 6 Nov 2014 18:32:52 +0100 (CET) Received: from mbp.egypt.nl (mbp.egypt.nl [192.168.13.33]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by ra.boosten.org (Postfix) with ESMTPSA id E6C0539860; Thu, 6 Nov 2014 18:32:52 +0100 (CET) Mime-Version: 1.0 (Mac OS X Mail 8.0 \(1990.1\)) Subject: Re: uniq(1) on last field From: Peter Boosten <peter@boosten.org> In-Reply-To: <C1660725-BF36-4F5F-9BA3-4E0231DB17A0@boosten.org> Date: Thu, 6 Nov 2014 18:32:50 +0100 Message-Id: <33AF1AA1-9768-4D65-86A7-88A307AEFA5C@boosten.org> References: <20141106110319.eb34eaa069a4881824072010@3dresearch.com> <C1660725-BF36-4F5F-9BA3-4E0231DB17A0@boosten.org> To: Janos Dohanics <web@3dresearch.com> X-Mailer: Apple Mail (2.1990.1) X-Ziggo-spambar: ---- X-Ziggo-spamscore: -4.9 X-Ziggo-spamreport: ALL_TRUSTED=-1, BAYES_00=-1.9, HTML_MESSAGE=0.001, PROLO_TRUST_RDNS=-3, RDNS_DYNAMIC=0.982, SPF_PASS=-0.001 X-Ziggo-Spam-Status: No X-Spam-Status: No X-Spam-Flag: No Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: quoted-printable X-Content-Filtered-By: Mailman/MimeDel 2.1.18-1 Cc: FreeBSD Questions <freebsd-questions@freebsd.org> X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Thu, 06 Nov 2014 17:56:00 -0000 > On 6 nov. 2014, at 17:42, Peter Boosten <peter@boosten.org> wrote: >=20 >=20 >>=20 >>=20 >> I would like to use uniq(1) on the file name, which is of course the >> last field if / is used as field separator.=20 >>=20 >> How can I tell uniq(1) the "last field" if I have variable number of >> fields? >=20 >=20 > sort -u might be a better option >=20 Ah, I missed the =E2=80=98variable number of fields=E2=80=99=E2=80=A6 What is it you=E2=80=99re trying to show? Since the line in itself = always is unique. If you only want to show the file name, you could use = awk =E2=80=98{print $NF}=E2=80=99 to show the last field, end pipe that = through uniq. so: awk =E2=80=98{print $NF}=E2=80=99 file | uniq (-c if you want to count = them) I don=E2=80=99t think either uniq nor sort have any notion of 'last = field=E2=80=99 in a variable field situation.=20 --=20 Peter Boosten From owner-freebsd-questions@FreeBSD.ORG Thu Nov 6 18:05:41 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id AD678990 for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 18:05:41 +0000 (UTC) Received: from mail-oi0-x22a.google.com (mail-oi0-x22a.google.com [IPv6:2607:f8b0:4003:c06::22a]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 70FA51B1 for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 18:05:41 +0000 (UTC) Received: by mail-oi0-f42.google.com with SMTP id a3so1176244oib.1 for <freebsd-questions@freebsd.org>; Thu, 06 Nov 2014 10:05:40 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:date:message-id:subject:from:to:content-type; bh=PdkDU1fkP0JMC29Dm5/023jQBeiKrGbkHmXTGPOnf38=; b=EZ7tjTVpu7Ed1SvrrtohkrQUx0RTS/Y+uH3CgbTtgoFTgoh7IFYAGgR1N9gdtGPDpO An3OJ59V8fduff1WawOZPcYGowCHuHk2dsEj3mt1KnrnCedOK3V1La3oZdrVM+U0S6tJ jXRshSYOLTuo0SOsOGuenVjunnoTXgCzK20xXcvnVFUGMF9Tb31l3zIvulWfksj4Ja6+ 4N7F1D+mENDPuWPEXz/YqO0D8JHfuPl0rke+YVsNLCIBBSBxWDn03PT3WhNyc2+70p5d /lpe+YrmsH6He5uC/GEZAG5B05G5+sYalAmAaVbodURypDtps8XWcRJzLEHmSdtr8m7N iqMw== MIME-Version: 1.0 X-Received: by 10.202.197.199 with SMTP id v190mr4815380oif.2.1415297140720; Thu, 06 Nov 2014 10:05:40 -0800 (PST) Received: by 10.60.7.3 with HTTP; Thu, 6 Nov 2014 10:05:40 -0800 (PST) Date: Thu, 6 Nov 2014 10:05:40 -0800 Message-ID: <CAFS4T6Yw8afiyAD3yT8LAMunnvey7g6b9CpbpBzb9q9BnakS4g@mail.gmail.com> Subject: What's the difference between "Release" versus "Errata" versus "Security" branches??? From: "edflecko ." <edflecko@gmail.com> To: freebsd-questions@freebsd.org Content-Type: text/plain; charset=UTF-8 X-Content-Filtered-By: Mailman/MimeDel 2.1.18-1 X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Thu, 06 Nov 2014 18:05:41 -0000 Can someone explain what the differences between these three are for me? These sure sound a lot alike to me - http://www.bsdnow.tv/tutorials/stable-current - "The -RELEASE branch is arguably the most stable branch of FreeBSD. That's exactly what it's designed to be, what the everyday end user installs and uses. When a -RELEASE is cut, the only updates it gets are either critical fixes or security flaws." http://harrykar.blogspot.com/2010/07/freebsd-upgrading-it.html - Errata Branches An errata branch is a particular FreeBSD release plus any security and stability patches issued for that release. http://www.freebsdwiki.net/index.php/FreeBSD_Release_Branches - "If stability is the most important factor on this system, you may want to track something called the security branch. This branch only updates for security updates and major bug fixes from the code you originally installed." Thank you! Ed From owner-freebsd-questions@FreeBSD.ORG Thu Nov 6 18:07:04 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 5657FA28 for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 18:07:04 +0000 (UTC) Received: from mx1.uso.edu (smtp.uso.edu [131.187.90.204]) by mx1.freebsd.org (Postfix) with ESMTP id 15F931CA for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 18:07:03 +0000 (UTC) Received: from unknown (HELO USOAPP09V04P.si.lan) ([131.187.110.68]) by mx1.uso.edu with ESMTP; 06 Nov 2014 13:05:55 -0500 Received: from USOAPP08V04P.si.lan ([169.254.1.90]) by USOAPP09V04P.si.lan ([131.187.110.68]) with mapi id 14.01.0438.000; Thu, 6 Nov 2014 13:05:55 -0500 From: Nick Wolff <nwolff@oar.net> To: Janos Dohanics <web@3dresearch.com>, FreeBSD Questions <freebsd-questions@freebsd.org> Subject: Re: uniq(1) on last field Thread-Topic: uniq(1) on last field Thread-Index: AQHP+dxdz9NQRmHCnkCr+HDLFWlXjpxT5OKA Date: Thu, 6 Nov 2014 18:05:54 +0000 Message-ID: <D081219D.6CDE0%nwolff@oar.net> References: <20141106110319.eb34eaa069a4881824072010@3dresearch.com> In-Reply-To: <20141106110319.eb34eaa069a4881824072010@3dresearch.com> Accept-Language: en-US Content-Language: en-US X-MS-Has-Attach: X-MS-TNEF-Correlator: user-agent: Microsoft-MacOutlook/14.4.5.141003 x-originating-ip: [131.187.109.9] Content-Type: text/plain; charset="Windows-1252" Content-ID: <F78ADC55B017A44D842856E486169EBC@uso.edu> Content-Transfer-Encoding: quoted-printable MIME-Version: 1.0 X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Thu, 06 Nov 2014 18:07:04 -0000 Janos, What do you want the final output to look like I have some ideas but am not sure exactly what your looking for. If you just want a list of file names then: "cat log | rev | cut -d=B9/=8C -f1 |rev |uniq=B2 Should give you the output you looking for. Basically you can just flip the whole string using rev(1) so the last field is now the first one. If that=B9s not what your looking for let me know a basically write scripts like this for a living so it=B9s a good thing that I enjoy the puzzles they make. =20 Nick Wolff Backbone Routing Engineer Hostmaster OARnet email: nwolff@oar.net =20 On 11/6/14, 11:03 AM, "Janos Dohanics" <web@3dresearch.com> wrote: >Hello List, > >Would you please help with a shell scripting problem. I have a samba >audit log file which after some parsing has entries like this: > >Nov 5 10:26:29 testuser 10.10.10.72 pluto pwrite ok COMMON/Solidworks >Parts & Assemblies/Filter Elements/~$Element 2-3187.SLDPRT >Nov 5 12:50:54 testuser 10.10.10.72 pluto pwrite ok COMMON/Solidworks >Parts & Assemblies/Filter Elements/~$Element 2-3187.SLDPRT >Nov 5 14:05:52 testuser 10.10.10.72 pluto pwrite ok COMMON/Solidworks >Parts & Assemblies/Filter Elements/~$Element 2-3187.SLDPRT >Nov 5 17:30:06 testuser 10.10.10.72 pluto pwrite ok COMMON/Solidworks >Parts & Assemblies/Filter Elements/~$Element 2-3187.SLDPRT >Nov 5 09:32:48 testuser 10.10.10.72 pluto pwrite ok COMMON/Solidworks >Parts & Assemblies/Gaskets/Flexitallic/10in/~$10in ANSI 600 >Flexitallic.SLDPRT >Nov 5 09:32:48 testuser 10.10.10.72 pluto pwrite ok COMMON/Solidworks >Parts & Assemblies/Gaskets/Flexitallic/20in/~$20in ANSI 600 >Flexitallic.SLDPRT >Nov 5 09:32:32 testuser 10.10.10.72 pluto pwrite ok COMMON/Solidworks >Parts & Assemblies/Lifting Lugs/~$54in Tower Lifting Lug.SLDPRT >Nov 5 10:31:29 testuser 10.10.10.72 pluto pwrite ok COMMON/Solidworks >Parts & Assemblies/CDE - Beck/Tube Baffle Coalescer Model/~$40in OD >Shell.SLDPRT >Nov 5 10:32:20 testuser 10.10.10.72 pluto pwrite ok COMMON/Solidworks >Parts & Assemblies/CDE - Beck/Tube Baffle Coalescer Model/~$40in OD >Shell.SLDPRT >Nov 5 12:54:43 testuser 10.10.10.72 pluto pwrite ok COMMON/Solidworks >Parts & Assemblies/CDE - Beck/Tube Baffle Coalescer Model/~$40in OD >Shell.SLDPRT >Nov 5 15:07:10 testuser 10.10.10.72 pluto pwrite ok COMMON/Solidworks >Parts & Assemblies/CDE - Beck/Tube Baffle Coalescer Model/~$40in OD >Shell.SLDPRT > >I would like to use uniq(1) on the file name, which is of course the >last field if / is used as field separator. > >How can I tell uniq(1) the "last field" if I have variable number of >fields? > >--=20 >Janos Dohanics >_______________________________________________ >freebsd-questions@freebsd.org mailing list >http://lists.freebsd.org/mailman/listinfo/freebsd-questions >To unsubscribe, send any mail to >"freebsd-questions-unsubscribe@freebsd.org" From owner-freebsd-questions@FreeBSD.ORG Thu Nov 6 18:15:31 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 66F33DF9 for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 18:15:31 +0000 (UTC) Received: from land.berklix.org (land.berklix.org [144.76.10.75]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id E874F2F8 for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 18:15:29 +0000 (UTC) Received: from mart.js.berklix.net (pD9FBE8EF.dip0.t-ipconnect.de [217.251.232.239]) (authenticated bits=128) by land.berklix.org (8.14.5/8.14.5) with ESMTP id sA6IBZxb064682; Thu, 6 Nov 2014 18:11:36 GMT (envelope-from jhs@berklix.com) Received: from fire.js.berklix.net (fire.js.berklix.net [192.168.91.41]) by mart.js.berklix.net (8.14.3/8.14.3) with ESMTP id sA6IF8JH014701; Thu, 6 Nov 2014 19:15:08 +0100 (CET) (envelope-from jhs@berklix.com) Received: from fire.js.berklix.net (localhost [127.0.0.1]) by fire.js.berklix.net (8.14.7/8.14.7) with ESMTP id sA6IEnG3043324; Thu, 6 Nov 2014 19:15:01 +0100 (CET) (envelope-from jhs@berklix.com) Message-Id: <201411061815.sA6IEnG3043324@fire.js.berklix.net> To: "edflecko ." <edflecko@gmail.com> Subject: Re: What's the difference between "Release" versus "Errata" versus "Security" branches??? From: "Julian H. Stacey" <jhs@berklix.com> Organization: http://berklix.com BSD Unix Linux Consultants, Munich Germany User-agent: EXMH on FreeBSD http://berklix.com/free/ X-URL: http://www.berklix.com In-reply-to: Your message "Thu, 06 Nov 2014 10:05:40 -0800." <CAFS4T6Yw8afiyAD3yT8LAMunnvey7g6b9CpbpBzb9q9BnakS4g@mail.gmail.com> Date: Thu, 06 Nov 2014 19:14:49 +0100 Cc: freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Thu, 06 Nov 2014 18:15:31 -0000 Hi, Reference: > From: "edflecko ." <edflecko@gmail.com> > Date: Thu, 6 Nov 2014 10:05:40 -0800 "edflecko ." wrote: > Can someone explain what the differences between these three are for me? > These sure sound a lot alike to me - > > http://www.bsdnow.tv/tutorials/stable-current - "The -RELEASE branch is > arguably the most stable branch of FreeBSD. That's exactly what it's > designed to be, what the everyday end user installs and uses. When a > -RELEASE is cut, the only updates it gets are either critical fixes or > security flaws." > > http://harrykar.blogspot.com/2010/07/freebsd-upgrading-it.html - Errata > Branches An errata branch is a particular FreeBSD release plus any > security and stability patches issued for that release. > > http://www.freebsdwiki.net/index.php/FreeBSD_Release_Branches - "If > stability is the most important factor on this system, you may want to > track something called the security branch. This branch only updates for > security updates and major bug fixes from the code you originally > installed." RTFM ! Read the freebsd handbook _first_ ! http://www.freebsd.org ! Cheers, Julian -- Julian Stacey, BSD Linux Unix C Sys Eng Consultant Munich http://berklix.com Indent previous with "> ". Interleave reply paragraphs like a play script. Send plain text, not quoted-printable, HTML, base64, or multipart/alternative. From owner-freebsd-questions@FreeBSD.ORG Thu Nov 6 18:16:24 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 4AADEE99 for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 18:16:24 +0000 (UTC) Received: from na01-bn1-obe.outbound.protection.outlook.com (mail-bn1bn0104.outbound.protection.outlook.com [157.56.110.104]) (using TLSv1 with cipher ECDHE-RSA-AES256-SHA (256/256 bits)) (Client CN "mail.protection.outlook.com", Issuer "MSIT Machine Auth CA 2" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id EC29630D for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 18:16:22 +0000 (UTC) Received: from [10.0.0.21] (73.5.142.244) by DM2PR0301MB0845.namprd03.prod.outlook.com (25.160.215.143) with Microsoft SMTP Server (TLS) id 15.1.11.14; Thu, 6 Nov 2014 18:16:19 +0000 Message-ID: <545BBAEC.8020806@my.hennepintech.edu> Date: Thu, 6 Nov 2014 12:16:12 -0600 From: Andrew Berg <aberg010@my.hennepintech.edu> User-Agent: Mozilla/5.0 (Windows NT 6.2; WOW64; rv:31.0) Gecko/20100101 Thunderbird/31.2.0 MIME-Version: 1.0 To: <freebsd-questions@freebsd.org> Subject: Re: What's the difference between "Release" versus "Errata" versus "Security" branches??? References: <CAFS4T6Yw8afiyAD3yT8LAMunnvey7g6b9CpbpBzb9q9BnakS4g@mail.gmail.com> In-Reply-To: <CAFS4T6Yw8afiyAD3yT8LAMunnvey7g6b9CpbpBzb9q9BnakS4g@mail.gmail.com> Content-Type: text/plain; charset="utf-8" Content-Transfer-Encoding: 7bit X-Originating-IP: [73.5.142.244] X-ClientProxiedBy: BL2PR08CA0036.namprd08.prod.outlook.com (10.255.170.154) To DM2PR0301MB0845.namprd03.prod.outlook.com (25.160.215.143) X-MS-Exchange-Transport-FromEntityHeader: Hosted X-Microsoft-Antispam: UriScan:; X-Microsoft-Antispam: BCL:0;PCL:0;RULEID:;SRVR:DM2PR0301MB0845; X-Exchange-Antispam-Report-Test: UriScan:; X-Forefront-PRVS: 0387D64A71 X-Forefront-Antispam-Report: SFV:NSPM; SFS:(10019020)(6009001)(6049001)(51704005)(189002)(199003)(24454002)(42186005)(87976001)(107886001)(95666004)(110136001)(46102003)(4396001)(33656002)(20776003)(47776003)(64706001)(21056001)(88552001)(89122001)(75432002)(65806001)(65956001)(66066001)(122386002)(59896002)(107046002)(99396003)(2351001)(105586002)(120916001)(31966008)(65816999)(101416001)(102836001)(450100001)(50466002)(76176999)(54356999)(87266999)(64126003)(2420400002)(62966003)(15975445006)(83506001)(92566001)(50986999)(86362001)(77156002)(106356001)(19580395003)(97736003)(92726001)(80316001)(23676002)(77096003)(15202345003)(40100003)(89472002); DIR:OUT; SFP:1102; SCL:1; SRVR:DM2PR0301MB0845; H:[10.0.0.21]; FPR:; MLV:sfv; PTR:InfoNoRecords; MX:1; A:0; LANG:en; X-OriginatorOrg: my.hennepintech.edu X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Thu, 06 Nov 2014 18:16:24 -0000 On 2014.11.06 12:05, edflecko . wrote: > Can someone explain what the differences between these three are for me? > These sure sound a lot alike to me - > > http://www.bsdnow.tv/tutorials/stable-current - "The -RELEASE branch is > arguably the most stable branch of FreeBSD. That's exactly what it's > designed to be, what the everyday end user installs and uses. When a > -RELEASE is cut, the only updates it gets are either critical fixes or > security flaws." There is no 'errata' or 'security' branch. -RELEASE gets errata and security fixes (technically, this is the releng branch, as the release branches are never updated at all). When you update a -RELEASE version using freebsd-update (or follow the corresponding releng branch), you get just security fixes and sometimes minor and non-disruptive bug fixes alongside security fixes (errata). The other branches are -CURRENT and -STABLE, which the handbook explains: https://www.freebsd.org/doc/handbook/current-stable.html From owner-freebsd-questions@FreeBSD.ORG Thu Nov 6 18:21:25 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 4BC26F7B for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 18:21:25 +0000 (UTC) Received: from mail-oi0-x233.google.com (mail-oi0-x233.google.com [IPv6:2607:f8b0:4003:c06::233]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 1091D350 for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 18:21:25 +0000 (UTC) Received: by mail-oi0-f51.google.com with SMTP id g201so1180905oib.24 for <freebsd-questions@freebsd.org>; Thu, 06 Nov 2014 10:21:24 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:date:message-id:subject:from:to:content-type; bh=JJDAivIGXe05sgB2opRbgUUTchJA+SBY9TSiHHZ37G0=; b=uSS5TjAvymlsrBD7chfmQVAx3s0a2fpPcsSvpst87fAr+fDy+Bao1xxgYOQ/WkasDL /WuoO4eRcCFhd80IKeR6jpUMRo/+DgoXA25keJyRiwmRgd1UGJ5i/nJmYyB79a6zUas1 VYKlq4eNNtuTDQjmUh+kZF1XTV/6KPJehTr6TQpUqp6L/PJtPQnLe4X3lrmFHFloP52c Y9AqyIMLQoxnF7WgABCZb3TRe8kjyl29iQwqO0WGSp9qNikE/+QjOZNdD1TH9fk9SY+/ HZd3HRHm1uws+n7mFiCiPuyWjPzkwjkCWE/wWzjAtnvoHCFHbBQOnDQ0g1lUXgpq7jjz WtbA== MIME-Version: 1.0 X-Received: by 10.60.46.68 with SMTP id t4mr5037660oem.33.1415298084443; Thu, 06 Nov 2014 10:21:24 -0800 (PST) Received: by 10.60.7.3 with HTTP; Thu, 6 Nov 2014 10:21:24 -0800 (PST) Date: Thu, 6 Nov 2014 10:21:24 -0800 Message-ID: <CAFS4T6ad2ow=ziXZ6mpTBDzuJdz3YhqeY5NhRRsKmd0S3f-J3A@mail.gmail.com> Subject: re: What's the difference between "Release" versus "Errata" versus "Security" branches??? From: "edflecko ." <edflecko@gmail.com> To: freebsd-questions@freebsd.org Content-Type: text/plain; charset=UTF-8 X-Content-Filtered-By: Mailman/MimeDel 2.1.18-1 X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Thu, 06 Nov 2014 18:21:25 -0000 Thank you Andrew. Hey Julian - I did RTFM - if it wasn't contradicted by other people on the web, I wouldn't have needed a clarification. Ed From owner-freebsd-questions@FreeBSD.ORG Thu Nov 6 18:30:30 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 8FCCF199 for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 18:30:30 +0000 (UTC) Received: from smtpb.telissant.net (smtpb.telissant.net [199.233.230.156]) by mx1.freebsd.org (Postfix) with ESMTP id 5F5CE639 for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 18:30:29 +0000 (UTC) Received: from barrida.3dresearch.com (localhost [127.0.0.1]) by smtpb.telissant.net (Postfix) with ESMTP id A838827330 for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 13:30:28 -0500 (EST) X-Virus-Scanned: amavisd-new at telissant.net Received: from smtpb.telissant.net ([127.0.0.1]) by barrida.3dresearch.com (barrida.3dresearch.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id cTrsydDYvFov for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 13:30:12 -0500 (EST) Received: from doncurzio.3dresearch.com (pool-71-112-0-222.pitbpa.east.verizon.net [71.112.0.222]) (using TLSv1 with cipher ADH-CAMELLIA256-SHA (256/256 bits)) (No client certificate requested) by smtpb.telissant.net (Postfix) with ESMTPSA id AE6D927309 for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 13:30:12 -0500 (EST) Received: from doncurzio.3dresearch.com (localhost [127.0.0.1]) by doncurzio.3dresearch.com (Postfix) with SMTP id 16E55A1E2C for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 13:30:12 -0500 (EST) Date: Thu, 6 Nov 2014 13:29:41 -0500 From: Janos Dohanics <web@3dresearch.com> To: FreeBSD Questions <freebsd-questions@freebsd.org> Subject: Re: uniq(1) on last field Message-Id: <20141106132941.cc33fc02635648cf537885a1@3dresearch.com> In-Reply-To: <33AF1AA1-9768-4D65-86A7-88A307AEFA5C@boosten.org> References: <20141106110319.eb34eaa069a4881824072010@3dresearch.com> <C1660725-BF36-4F5F-9BA3-4E0231DB17A0@boosten.org> <33AF1AA1-9768-4D65-86A7-88A307AEFA5C@boosten.org> X-Mailer: Sylpheed 3.3.0 (GTK+ 2.24.19; amd64-portbld-freebsd9.1) Mime-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Thu, 06 Nov 2014 18:30:30 -0000 On Thu, 6 Nov 2014 18:32:50 +0100 Peter Boosten <peter@boosten.org> wrote: > > > On 6 nov. 2014, at 17:42, Peter Boosten <peter@boosten.org> wrote: > > > > > >> > >> > >> I would like to use uniq(1) on the file name, which is of course > >> the last field if / is used as field separator. > >> > >> How can I tell uniq(1) the "last field" if I have variable number > >> of fields? > > > > > > sort -u might be a better option > > > > Ah, I missed the ‘variable number of fields’… > > What is it you’re trying to show? Since the line in itself always is > unique. If you only want to show the file name, you could use awk > ‘{print $NF}’ to show the last field, end pipe that through uniq. > > so: > > awk ‘{print $NF}’ file | uniq (-c if you want to count them) > > I don’t think either uniq nor sort have any notion of 'last field’ in > a variable field situation. > > -- > Peter Boosten I would like to output the entire line as it is in my original post, and get rid of the repetition of the same file names. So the pseudo code would be something like: cat file | uniq -f [n-1] where n = awk -F "/" '{print NF}' Is this possible to do with a one-liner? -- Janos Dohanics From owner-freebsd-questions@FreeBSD.ORG Thu Nov 6 18:43:13 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 5F83049E for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 18:43:13 +0000 (UTC) Received: from stangl.us (stangl.us [66.93.193.95]) by mx1.freebsd.org (Postfix) with ESMTP id 2B78681E for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 18:43:12 +0000 (UTC) Received: from scout.stangl.us (localhost [127.0.0.1]) by scout.stangl.us (Postfix) with ESMTP id 81D9F17022 for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 12:43:06 -0600 (CST) X-Virus-Scanned: amavisd-new at stangl.us Received: from stangl.us ([127.0.0.1]) by scout.stangl.us (scout.stangl.us [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id OSf9rEoaUVyE for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 12:43:06 -0600 (CST) Received: by scout.stangl.us (Postfix, from userid 1001) id 15F0C1701A; Thu, 6 Nov 2014 12:43:06 -0600 (CST) Date: Thu, 6 Nov 2014 12:43:06 -0600 From: Alex Stangl <alex@stangl.us> To: freebsd-questions@freebsd.org Subject: Re: uniq(1) on last field Message-ID: <20141106184306.GA14996@scout.stangl.us> Mail-Followup-To: freebsd-questions@freebsd.org References: <20141106110319.eb34eaa069a4881824072010@3dresearch.com> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <20141106110319.eb34eaa069a4881824072010@3dresearch.com> User-Agent: Mutt/1.5.23 (2014-03-12) X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Thu, 06 Nov 2014 18:43:13 -0000 On Thu, Nov 06, 2014 at 11:03:19AM -0500, Janos Dohanics wrote: > Would you please help with a shell scripting problem. I have a samba > audit log file which after some parsing has entries like this: > > Nov 5 15:07:10 testuser 10.10.10.72 pluto pwrite ok COMMON/Solidworks Parts & Assemblies/CDE - Beck/Tube Baffle Coalescer Model/~$40in OD Shell.SLDPRT > > I would like to use uniq(1) on the file name, which is of course the > last field if / is used as field separator. $ awk -F'/' '{printf "%s%s%s\n", $NF, "/", $0}' yourfile.txt | sort -k '1,1' -u -t'/' | cut -f2- -d'/' Alex From owner-freebsd-questions@FreeBSD.ORG Thu Nov 6 19:18:12 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 88850B81 for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 19:18:12 +0000 (UTC) Received: from mout.gmx.net (mout.gmx.net [212.227.15.15]) (using TLSv1.2 with cipher DHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client CN "mout.gmx.net", Issuer "TeleSec ServerPass DE-1" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 2458CB23 for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 19:18:11 +0000 (UTC) Received: from [192.168.0.143] ([95.91.231.223]) by mail.gmx.com (mrgmx003) with ESMTPSA (Nemesis) id 0Lx8OH-1Y5orT0ssD-016gCN; Thu, 06 Nov 2014 20:18:02 +0100 Message-ID: <545BC96A.5010508@gmx.de> Date: Thu, 06 Nov 2014 20:18:02 +0100 From: Lokadamus <lokadamus@gmx.de> User-Agent: Mozilla/5.0 (Windows NT 5.1; rv:24.0) Gecko/20100101 Thunderbird/24.5.0 MIME-Version: 1.0 To: Dave Babb <dcbdbis@comcast.net>, User Questions <freebsd-questions@freebsd.org> Subject: Re: New Xorg References: <54598493.6050307@comcast.net> In-Reply-To: <54598493.6050307@comcast.net> Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit X-Provags-ID: V03:K0:06Jb73xX1rxAXFPMSsKHI4++gX7Kspb/tTWm4LHMZEZactzjuCk S60B1D64nNLiP2aNGOjUExMrk9K1/o/rid0REyEXKULjosLKgs5eOqdoqKub1bxLDjZwXYu O7Oo1fqlT73OsGVBGOKQJ2XwrPq+Spre8z7Xr5SOhZxgDhhqjVMwpG85lQU2QHrGRx/1YO9 J7VwBm+vpG07aZAsP32Cg== X-UI-Out-Filterresults: notjunk:1; X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Thu, 06 Nov 2014 19:18:12 -0000 Am 05.11.2014 02:59, schrieb Dave Babb: > FreeBSD 10.0 x64 > > I see in the wiki that using WITH_NEW_XORG and WITH_GALLIUM has been > depreciated. > > So in reading in the wiki, and in the Freebsd handbook...., I don't see > a clear "HowTo" to enable the new xorg, new dri, and new GL. > > May I ask for assistance please? > > > Thank You! > > > Sincerely and respectfully, > > Dave > > > _______________________________________________ > freebsd-questions@freebsd.org mailing list > http://lists.freebsd.org/mailman/listinfo/freebsd-questions > To unsubscribe, send any mail to "freebsd-questions-unsubscribe@freebsd.org" > > When you have updated to last ports and last 10.0 release (freebsd-update fetch install) you can upgrade your system and get the new xorg. Regards, From owner-freebsd-questions@FreeBSD.ORG Thu Nov 6 19:20:38 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 94EEFD13 for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 19:20:38 +0000 (UTC) Received: from stangl.us (stangl.us [66.93.193.95]) by mx1.freebsd.org (Postfix) with ESMTP id 6063EB5A for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 19:20:38 +0000 (UTC) Received: from scout.stangl.us (localhost [127.0.0.1]) by scout.stangl.us (Postfix) with ESMTP id A0A4817024 for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 13:20:37 -0600 (CST) X-Virus-Scanned: amavisd-new at stangl.us Received: from stangl.us ([127.0.0.1]) by scout.stangl.us (scout.stangl.us [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 1-OiB1vrZSyP for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 13:20:37 -0600 (CST) Received: by scout.stangl.us (Postfix, from userid 1001) id 362AC17022; Thu, 6 Nov 2014 13:20:37 -0600 (CST) Date: Thu, 6 Nov 2014 13:20:37 -0600 From: Alex Stangl <alex@stangl.us> To: freebsd-questions@freebsd.org Subject: Re: uniq(1) on last field Message-ID: <20141106192037.GA15248@scout.stangl.us> Mail-Followup-To: freebsd-questions@freebsd.org References: <20141106110319.eb34eaa069a4881824072010@3dresearch.com> <20141106184306.GA14996@scout.stangl.us> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <20141106184306.GA14996@scout.stangl.us> User-Agent: Mutt/1.5.23 (2014-03-12) X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Thu, 06 Nov 2014 19:20:38 -0000 On Thu, Nov 06, 2014 at 12:43:06PM -0600, Alex Stangl wrote: > On Thu, Nov 06, 2014 at 11:03:19AM -0500, Janos Dohanics wrote: > > Would you please help with a shell scripting problem. I have a samba > > audit log file which after some parsing has entries like this: > > > > Nov 5 15:07:10 testuser 10.10.10.72 pluto pwrite ok COMMON/Solidworks Parts & Assemblies/CDE - Beck/Tube Baffle Coalescer Model/~$40in OD Shell.SLDPRT > > > > I would like to use uniq(1) on the file name, which is of course the > > last field if / is used as field separator. > > $ awk -F'/' '{printf "%s%s%s\n", $NF, "/", $0}' yourfile.txt | sort -k '1,1' -u -t'/' | cut -f2- -d'/' Or, even shorter, $ awk -F'/' '{printf "%s/%s\n", $NF, $0}' yourfile.txt | sort -k '1,1' -u -t'/' | cut -f2- -d'/' Alex From owner-freebsd-questions@FreeBSD.ORG Thu Nov 6 20:47:50 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 784223BC; Thu, 6 Nov 2014 20:47:50 +0000 (UTC) Received: from wonkity.com (wonkity.com [67.158.26.137]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client CN "wonkity.com", Issuer "wonkity.com" (not verified)) by mx1.freebsd.org (Postfix) with ESMTPS id 262CF74A; Thu, 6 Nov 2014 20:47:49 +0000 (UTC) Received: from wonkity.com (localhost [127.0.0.1]) by wonkity.com (8.14.9/8.14.9) with ESMTP id sA6Klktv021148 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-GCM-SHA384 bits=256 verify=NO); Thu, 6 Nov 2014 13:47:46 -0700 (MST) (envelope-from wblock@wonkity.com) Received: from localhost (wblock@localhost) by wonkity.com (8.14.9/8.14.9/Submit) with ESMTP id sA6Kljws021145; Thu, 6 Nov 2014 13:47:46 -0700 (MST) (envelope-from wblock@wonkity.com) Date: Thu, 6 Nov 2014 13:47:45 -0700 (MST) From: Warren Block <wblock@wonkity.com> To: =?ISO-8859-15?Q?Juan_Ram=F3n_Molina_Menor?= <listjm@club-internet.fr> Subject: Re: Status of svnlite(1) in make.conf(5) In-Reply-To: <545B8BCB.9040106@club-internet.fr> Message-ID: <alpine.BSF.2.11.1411061344260.10314@wonkity.com> References: <545B5707.20300@club-internet.fr> <alpine.BSF.2.11.1411060738080.10645@wonkity.com> <545B8BCB.9040106@club-internet.fr> User-Agent: Alpine 2.11 (BSF 23 2013-08-11) MIME-Version: 1.0 X-Greylist: Sender IP whitelisted, not delayed by milter-greylist-4.4.3 (wonkity.com [127.0.0.1]); Thu, 06 Nov 2014 13:47:46 -0700 (MST) Content-Type: TEXT/PLAIN; charset=windows-1252; format=flowed Content-Transfer-Encoding: 8BIT X-Content-Filtered-By: Mailman/MimeDel 2.1.18-1 Cc: freebsd-stable@freebsd.org, freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Thu, 06 Nov 2014 20:47:50 -0000 On Thu, 6 Nov 2014, Juan Ramón Molina Menor wrote: >>> Can I help somehow? It?s not only the man page which needs a fix, but >>> maybe also /Makefile.inc1: >>> https://svnweb.freebsd.org/base/head/Makefile.inc1?revision=273755&view=markup#l122 >>> >> >> A PR with patch to fix all the files would be the best. A list of the >> files to change and changes to be made is probably just as difficult to >> create, but would also work. > > For the man page, I?ll try to find time to follow the "FreeBSD Documentation > Project Primer for New Contributors", even if it seems quite daunting. Much of the FDP Primer does not apply to man pages. I or others can help with the markup (contact me off-list if you like), it's the actual content that's important. > For the make infrastructure, I?m quite sure I won?t be able to fulfil the > task, but I?ll try too. Pointing out what is wrong with the current implementation is good enough. From owner-freebsd-questions@FreeBSD.ORG Thu Nov 6 21:24:38 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 68802143 for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 21:24:38 +0000 (UTC) Received: from mail-qg0-x235.google.com (mail-qg0-x235.google.com [IPv6:2607:f8b0:400d:c04::235]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 1E470BC5 for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 21:24:38 +0000 (UTC) Received: by mail-qg0-f53.google.com with SMTP id z107so1481870qgd.12 for <freebsd-questions@freebsd.org>; Thu, 06 Nov 2014 13:24:37 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=message-id:date:from:user-agent:mime-version:to:subject :content-type; bh=8tNerSJ20DCM4El+J3MNHDw9XwJZqO4Oj61WR1BoXu4=; b=HrkpORfmNF2HhxbOuzs7NMXz1S8jMiiL69cmhoVAt3Jq1HMExicNOn6+eJYtlXxjPV gdoPja0m5gt408ex4kPxqF26h76NpH+cjxkqNeqgOwiWeE6Mtsn5SGNSTFCOC37IzHIn CbC28Ojlnlw730K1PzMY0+Tbf3fFTtVbgWBY7nHZ7mhEoxAHxhWaKNmhw215yLgt7FfN yS16Nv93rqY7btvk0Q9v4HWCYPjFVBknaaNNSgE2r1favKupjClgPma9XgpMsyklD5fz R4J+WgKfPtSxtDO6nsvpTTeibxpAFq2tTqM+P624yff2EnR50eoF09/OPfLD4PMZFCX+ n0Bg== X-Received: by 10.140.41.74 with SMTP id y68mr10537403qgy.64.1415309077364; Thu, 06 Nov 2014 13:24:37 -0800 (PST) Received: from dante.portari.intra ([201.91.194.178]) by mx.google.com with ESMTPSA id b67sm6836773qgb.33.2014.11.06.13.24.35 for <freebsd-questions@freebsd.org> (version=TLSv1.2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Thu, 06 Nov 2014 13:24:36 -0800 (PST) Message-ID: <545BE713.9090705@gmail.com> Date: Thu, 06 Nov 2014 19:24:35 -0200 From: =?UTF-8?B?IkRhbnRlIEYuIEIuIENvbMOyIg==?= <dante01010@gmail.com> User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.9; rv:31.0) Gecko/20100101 Thunderbird/31.1.0 MIME-Version: 1.0 To: freeBSD <freebsd-questions@freebsd.org> Subject: Static routing Content-Type: text/plain; charset=utf-8; format=flowed Content-Transfer-Encoding: 8bit X-Content-Filtered-By: Mailman/MimeDel 2.1.18-1 X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Thu, 06 Nov 2014 21:24:38 -0000 Hello everyone I'm trying to setup some static routes on a freebsd box for some public addresses , the machine has two ethernet cards *em0 *and *em1 ***, *em0* is attached to a Cisco internet router and *em1* is connected to a switch, both interfaces have public addresses of the same range , *em1 *appears has absolutely no communication , i took a look at the static routes and there is a route for the subnet that it goes to *em0* , i'm trying to add a static route for the ip address pointing to the***em1 *without pass gateway using *-iface* parameter but always returns "Network unreachble", someone can help me or give some tips to fix this ? for many here this is probably a nooby question, we also have some firewall Linux boxes that i'm gonna migrate to freebsd (also trying on openbsd with the same problem) but first i have to solve this. Best Regards Dante F. B. Colò From owner-freebsd-questions@FreeBSD.ORG Thu Nov 6 21:48:38 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id DC62F79E for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 21:48:38 +0000 (UTC) Received: from mail-wg0-x22a.google.com (mail-wg0-x22a.google.com [IPv6:2a00:1450:400c:c00::22a]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 6E1A0E8C for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 21:48:38 +0000 (UTC) Received: by mail-wg0-f42.google.com with SMTP id k14so2292053wgh.29 for <freebsd-questions@freebsd.org>; Thu, 06 Nov 2014 13:48:36 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=message-id:date:from:mime-version:to:subject:references:in-reply-to :content-type:content-transfer-encoding; bh=ZEnUUpndGRbhtaZlKsxkqHmapTYNgf3HntpN9LVr9ws=; b=0yeUAgiUeMEjseMXnAabs41kURE2iHtyFNvY1GFqmg3VCd1qUwESuof0fQT78PDLMK YHnbkyvGDX5gOChGbTzYTrTrKqIZ5w3gGtU3G/gqE25a+Bm/NrWKAn14ryi6upIK67Yk K7JFI4L8qdpUqA82fwDmUUaosXjW8TC5gqfWIFjnxi4RWaCH4y0UVx9vN3JXQaOyhB8S KW+hXW9uFbkOgDkfDToQxxYxHFE1jKbkTRJrFinxYpG6xycxECGbBb8SNK0moxQlgfYU aObjcANPajOD6EfFqtrV4rCDoEldB/1r+Qd2UXMiDZ5AzQi9GvLS4uzcAuRuDdkqBkUD DjTg== X-Received: by 10.194.157.65 with SMTP id wk1mr9934338wjb.9.1415310516756; Thu, 06 Nov 2014 13:48:36 -0800 (PST) Received: from i82-143-6-13i.adsl.topnet.it ([2001:15a8:d:2:1905:ae3:bbf9:3bea]) by mx.google.com with ESMTPSA id pc8sm9339932wjb.36.2014.11.06.13.48.35 for <freebsd-questions@freebsd.org> (version=TLSv1.2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Thu, 06 Nov 2014 13:48:35 -0800 (PST) Message-ID: <545BECB2.2070308@gmail.com> Date: Thu, 06 Nov 2014 22:48:34 +0100 From: Antonio Prado <thinkofit@gmail.com> MIME-Version: 1.0 To: freebsd-questions@freebsd.org Subject: Re: Static routing References: <545BE713.9090705@gmail.com> In-Reply-To: <545BE713.9090705@gmail.com> Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: 8bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Thu, 06 Nov 2014 21:48:38 -0000 On 11/6/14 10:24 PM, "Dante F. B. Colò" wrote: > both interfaces have public addresses of the same range , *em1 > *appears has absolutely no communication hi, 2 diferent nics on the same l2 ethernet broadcast domain could be flawed. google for 'freebsd 2 nics same subnet' regards -- antonio From owner-freebsd-questions@FreeBSD.ORG Thu Nov 6 22:14:02 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id C36981A2 for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 22:14:02 +0000 (UTC) Received: from fly.radel.com (fly.radel.com [70.184.242.170]) (using TLSv1 with cipher RC4-SHA (128/128 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 39439267 for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 22:14:01 +0000 (UTC) X-CGP-ClamAV-Result: CLEAN X-VirusScanner: Niversoft's CGPClamav Helper v1.16.8 (ClamAV engine v0.97.8) Received: from [2001:470:880a:4389:19e6:8ae5:b05b:ff46] (account jon@radel.com HELO gravenstein.local) by radel.com (CommuniGate Pro SMTP 6.0.4 _community_) with ESMTPSA id 427336 for freebsd-questions@freebsd.org; Thu, 06 Nov 2014 22:14:00 +0000 Message-ID: <545BF2A7.2040609@radel.com> Date: Thu, 06 Nov 2014 17:13:59 -0500 From: Jon Radel <jon@radel.com> User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.9; rv:24.0) Gecko/20100101 Thunderbird/24.6.0 MIME-Version: 1.0 To: freebsd-questions@freebsd.org Subject: Re: Static routing References: <545BE713.9090705@gmail.com> <545BECB2.2070308@gmail.com> In-Reply-To: <545BECB2.2070308@gmail.com> Content-Type: multipart/signed; protocol="application/pkcs7-signature"; micalg=sha1; boundary="------------ms090208050602000903060601" X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Thu, 06 Nov 2014 22:14:02 -0000 This is a cryptographically signed message in MIME format. --------------ms090208050602000903060601 Content-Type: text/plain; charset=UTF-8; format=flowed Content-Transfer-Encoding: quoted-printable On 11/6/14, 4:48 PM, Antonio Prado wrote: > On 11/6/14 10:24 PM, "Dante F. B. Col=C3=B2" wrote: >> both interfaces have public addresses of the same range , *em1 >> *appears has absolutely no communication > hi, > > 2 diferent nics on the same l2 ethernet broadcast domain could be flawe= d. > google for 'freebsd 2 nics same subnet' > Though most of those discussions are about attaching 2 NICs to the same=20 subnet where it is actually the same collision domain. That's not=20 categorically broken, though how it is supported varies from TCP/IP=20 stack to stack and it doesn't always work the way you might think or=20 want. In the OP's case, it almost sounds like he has two collision=20 domains, one attached to Internet router and one to an internal switch,=20 yet he's using the same address subnet on both. If that is the case,=20 trying to route between them is just broken. But we'll just have to=20 wait until the OP provides more details, either here or the OpenBSD list = where he sent essentially the same query. :-) --Jon Radel jon@radel.com --------------ms090208050602000903060601 Content-Type: application/pkcs7-signature; name="smime.p7s" Content-Transfer-Encoding: base64 Content-Disposition: attachment; filename="smime.p7s" Content-Description: S/MIME Cryptographic Signature MIAGCSqGSIb3DQEHAqCAMIACAQExCzAJBgUrDgMCGgUAMIAGCSqGSIb3DQEHAQAAoIILBDCC BRowggQCoAMCAQICEG0Z6qcZT2ozIuYiMnqqcd4wDQYJKoZIhvcNAQEFBQAwga4xCzAJBgNV BAYTAlVTMQswCQYDVQQIEwJVVDEXMBUGA1UEBxMOU2FsdCBMYWtlIENpdHkxHjAcBgNVBAoT FVRoZSBVU0VSVFJVU1QgTmV0d29yazEhMB8GA1UECxMYaHR0cDovL3d3dy51c2VydHJ1c3Qu Y29tMTYwNAYDVQQDEy1VVE4tVVNFUkZpcnN0LUNsaWVudCBBdXRoZW50aWNhdGlvbiBhbmQg RW1haWwwHhcNMTEwNDI4MDAwMDAwWhcNMjAwNTMwMTA0ODM4WjCBkzELMAkGA1UEBhMCR0Ix GzAZBgNVBAgTEkdyZWF0ZXIgTWFuY2hlc3RlcjEQMA4GA1UEBxMHU2FsZm9yZDEaMBgGA1UE ChMRQ09NT0RPIENBIExpbWl0ZWQxOTA3BgNVBAMTMENPTU9ETyBDbGllbnQgQXV0aGVudGlj YXRpb24gYW5kIFNlY3VyZSBFbWFpbCBDQTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoC ggEBAJKEhFtLV5jUXi+LpOFAyKNTWF9mZfEyTvefMn1V0HhMVbdClOD5J3EHxcZppLkyxPFA GpDMJ1Zifxe1cWmu5SAb5MtjXmDKokH2auGj/7jfH0htZUOMKi4rYzh337EXrMLaggLW1DJq 1GdvIBOPXDX65VSAr9hxCh03CgJQU2yVHakQFLSZlVkSMf8JotJM3FLb3uJAAVtIaN3FSrTg 7SQfOq9xXwfjrL8UO7AlcWg99A/WF1hGFYE8aIuLgw9teiFX5jSw2zJ+40rhpVJyZCaRTqWS D//gsWD9Gm9oUZljjRqLpcxCm5t9ImPTqaD8zp6Q30QZ9FxbNboW86eb/8ECAwEAAaOCAUsw ggFHMB8GA1UdIwQYMBaAFImCZ33EnSZwAEu0UEh83j2uBG59MB0GA1UdDgQWBBR6E04AdFvG eGNkJ8Ev4qBbvHnFezAOBgNVHQ8BAf8EBAMCAQYwEgYDVR0TAQH/BAgwBgEB/wIBADARBgNV HSAECjAIMAYGBFUdIAAwWAYDVR0fBFEwTzBNoEugSYZHaHR0cDovL2NybC51c2VydHJ1c3Qu Y29tL1VUTi1VU0VSRmlyc3QtQ2xpZW50QXV0aGVudGljYXRpb25hbmRFbWFpbC5jcmwwdAYI KwYBBQUHAQEEaDBmMD0GCCsGAQUFBzAChjFodHRwOi8vY3J0LnVzZXJ0cnVzdC5jb20vVVRO QWRkVHJ1c3RDbGllbnRfQ0EuY3J0MCUGCCsGAQUFBzABhhlodHRwOi8vb2NzcC51c2VydHJ1 c3QuY29tMA0GCSqGSIb3DQEBBQUAA4IBAQCF1r54V1VtM39EUv5C1QaoAQOAivsNsv1Kv/av QUn1G1rF0q0bc24+6SZ85kyYwTAo38v7QjyhJT4KddbQPTmGZtGhm7VNm2+vKGwdr+XqdFqo 2rHA8XV6L566k3nK/uKRHlZ0sviN0+BDchvtj/1gOSBH+4uvOmVIPJg9pSW/ve9g4EnlFsjr P0OD8ODuDcHTzTNfm9C9YGqzO/761Mk6PB/tm/+bSTO+Qik5g+4zaS6CnUVNqGnagBsePdIa XXxHmaWbCG0SmYbWXVcHG6cwvktJRLiQfsrReTjrtDP6oDpdJlieYVUYtCHVmdXgQ0BCML7q peeU0rD+83X5f27nMIIF4jCCBMqgAwIBAgIQUaWQdTU6RvxxeOjTUN4DtDANBgkqhkiG9w0B AQUFADCBkzELMAkGA1UEBhMCR0IxGzAZBgNVBAgTEkdyZWF0ZXIgTWFuY2hlc3RlcjEQMA4G A1UEBxMHU2FsZm9yZDEaMBgGA1UEChMRQ09NT0RPIENBIExpbWl0ZWQxOTA3BgNVBAMTMENP TU9ETyBDbGllbnQgQXV0aGVudGljYXRpb24gYW5kIFNlY3VyZSBFbWFpbCBDQTAeFw0xMjAz MjcwMDAwMDBaFw0xNTAzMjcyMzU5NTlaMIH6MQswCQYDVQQGEwJVUzEOMAwGA1UEERMFMjIx NTAxCzAJBgNVBAgTAlZBMRQwEgYDVQQHEwtTcHJpbmdmaWVsZDEaMBgGA1UECRMRNjkxNyBS aWRnZXdheSBEci4xFTATBgNVBAoTDEpvbiBULiBSYWRlbDEyMDAGA1UECxMpSXNzdWVkIHRo cm91Z2ggSm9uIFQuIFJhZGVsIEUtUEtJIE1hbmFnZXIxHzAdBgNVBAsTFkNvcnBvcmF0ZSBT ZWN1cmUgRW1haWwxEjAQBgNVBAMTCUpvbiBSYWRlbDEcMBoGCSqGSIb3DQEJARYNam9uQHJh ZGVsLmNvbTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAMuufqoh9QnyjZTH7UdO wpx6XnRz/94zoK1C1SaAepIRMyInXiwOVwT7iXKtkeRGEQA2vwTyqu5JVcvWkGxlTWPACgDW dDE3296Up2K9CFfrm+RKdlc6xfMklR7qQWyNw5ULkeOZZOIoSAlVAJPhjIvHcf0UPxjTqgtP 4JafBBvL8RFhMAm74I1kWltMcFPVm1sLFDR1CDZ48/zqmhK/0ppbiBGapi8vAO382laFgHaN 8ODBFBffom5zjL/I9SggGGAdtwi7Vp2cjzgtuNVyORPv5Jz9zLylVKlhNvyq3VjbWXuJNw0E J03F/UkjQsqsCkQnSdHAxtPkGhoBw/UvqEsCAwEAAaOCAccwggHDMB8GA1UdIwQYMBaAFHoT TgB0W8Z4Y2QnwS/ioFu8ecV7MB0GA1UdDgQWBBR8oxwxzLSB4/equQ4EqdH5Fld3sTAOBgNV HQ8BAf8EBAMCBaAwDAYDVR0TAQH/BAIwADAdBgNVHSUEFjAUBggrBgEFBQcDBAYIKwYBBQUH AwIwRgYDVR0gBD8wPTA7BgwrBgEEAbIxAQIBAwUwKzApBggrBgEFBQcCARYdaHR0cHM6Ly9z ZWN1cmUuY29tb2RvLm5ldC9DUFMwVwYDVR0fBFAwTjBMoEqgSIZGaHR0cDovL2NybC5jb21v ZG9jYS5jb20vQ09NT0RPQ2xpZW50QXV0aGVudGljYXRpb25hbmRTZWN1cmVFbWFpbENBLmNy bDCBiAYIKwYBBQUHAQEEfDB6MFIGCCsGAQUFBzAChkZodHRwOi8vY3J0LmNvbW9kb2NhLmNv bS9DT01PRE9DbGllbnRBdXRoZW50aWNhdGlvbmFuZFNlY3VyZUVtYWlsQ0EuY3J0MCQGCCsG AQUFBzABhhhodHRwOi8vb2NzcC5jb21vZG9jYS5jb20wGAYDVR0RBBEwD4ENam9uQHJhZGVs LmNvbTANBgkqhkiG9w0BAQUFAAOCAQEAJB+JWM2MbG5rR7/RCEm8bQRziBfl/FztfoV6dDGU Y0uTRegiwM2LA/GHGju7xtp49MrcmEciZs6Di2pvGzS5m/v5IBT0gMK6dyplBmBe4BXzwckE 1MH/iui+VstVHds+36SsQqPCtVmFWlX6QN56F6aGSCjI27f2mUYL3NBr6DPsslRIhF9PamKQ Bp4Y25/hnd+paEGIF6AZM3Uv7TvsTdCaBOt3dLrwUIpyQex5yqO8GPKWwgEPKxKiro7uLNNY yZU4dEEenQIi/4SD49XHd9Zqwf60jKVPeZjcrK7QSSQ8dlOYOGH60WBBFVwD1CCBCLSJnglY Dwh5wcgQG9ZRvjGCBBkwggQVAgEBMIGoMIGTMQswCQYDVQQGEwJHQjEbMBkGA1UECBMSR3Jl YXRlciBNYW5jaGVzdGVyMRAwDgYDVQQHEwdTYWxmb3JkMRowGAYDVQQKExFDT01PRE8gQ0Eg TGltaXRlZDE5MDcGA1UEAxMwQ09NT0RPIENsaWVudCBBdXRoZW50aWNhdGlvbiBhbmQgU2Vj dXJlIEVtYWlsIENBAhBRpZB1NTpG/HF46NNQ3gO0MAkGBSsOAwIaBQCgggJFMBgGCSqGSIb3 DQEJAzELBgkqhkiG9w0BBwEwHAYJKoZIhvcNAQkFMQ8XDTE0MTEwNjIyMTM1OVowIwYJKoZI hvcNAQkEMRYEFPZcJRssWU8UGMZHvLmlhPzB3CfxMGwGCSqGSIb3DQEJDzFfMF0wCwYJYIZI AWUDBAEqMAsGCWCGSAFlAwQBAjAKBggqhkiG9w0DBzAOBggqhkiG9w0DAgICAIAwDQYIKoZI hvcNAwICAUAwBwYFKw4DAgcwDQYIKoZIhvcNAwICASgwgbkGCSsGAQQBgjcQBDGBqzCBqDCB kzELMAkGA1UEBhMCR0IxGzAZBgNVBAgTEkdyZWF0ZXIgTWFuY2hlc3RlcjEQMA4GA1UEBxMH U2FsZm9yZDEaMBgGA1UEChMRQ09NT0RPIENBIExpbWl0ZWQxOTA3BgNVBAMTMENPTU9ETyBD bGllbnQgQXV0aGVudGljYXRpb24gYW5kIFNlY3VyZSBFbWFpbCBDQQIQUaWQdTU6RvxxeOjT UN4DtDCBuwYLKoZIhvcNAQkQAgsxgauggagwgZMxCzAJBgNVBAYTAkdCMRswGQYDVQQIExJH cmVhdGVyIE1hbmNoZXN0ZXIxEDAOBgNVBAcTB1NhbGZvcmQxGjAYBgNVBAoTEUNPTU9ETyBD QSBMaW1pdGVkMTkwNwYDVQQDEzBDT01PRE8gQ2xpZW50IEF1dGhlbnRpY2F0aW9uIGFuZCBT ZWN1cmUgRW1haWwgQ0ECEFGlkHU1Okb8cXjo01DeA7QwDQYJKoZIhvcNAQEBBQAEggEAvULV zGGNzqNI9GG0HgQ5deMIxbj32ULXxFxJTtKHyWkYI/enItl7hZoNqG+Q6pa4yFouejAff72h vz2eZmDrKJ2tzY6GkYydiePKDHCYMuXY7hybUzCCuxkVWqIdMhAE37SM0L50sixGtUOFvQL8 Mw1hKH2FYrvPycdirHeizsgdTs+5uMRx18W+0fnFmWxUa8GGGrn+67PHiRTQjKVyQX/Rexgt zToPNUxwYfanhn94y6NQFPysKVztTD7n31Nce8TTAXInxz0treHb0D2k4sNtirtIBWBSjoxz JCPSExHRomVlOLhlgRzCxR7Wm22bPqXq6gaw1+0e/DSGBnXi1wAAAAAAAA== --------------ms090208050602000903060601-- From owner-freebsd-questions@FreeBSD.ORG Thu Nov 6 22:37:24 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 2E77B5E7 for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 22:37:24 +0000 (UTC) Received: from land.berklix.org (land.berklix.org [144.76.10.75]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id B631E755 for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 22:37:23 +0000 (UTC) Received: from mart.js.berklix.net (pD9FBE8EF.dip0.t-ipconnect.de [217.251.232.239]) (authenticated bits=128) by land.berklix.org (8.14.5/8.14.5) with ESMTP id sA6MXXb4095965; Thu, 6 Nov 2014 22:33:33 GMT (envelope-from jhs@berklix.com) Received: from fire.js.berklix.net (fire.js.berklix.net [192.168.91.41]) by mart.js.berklix.net (8.14.3/8.14.3) with ESMTP id sA6Mb6QH015945; Thu, 6 Nov 2014 23:37:06 +0100 (CET) (envelope-from jhs@berklix.com) Received: from fire.js.berklix.net (localhost [127.0.0.1]) by fire.js.berklix.net (8.14.7/8.14.7) with ESMTP id sA6MamIw051196; Thu, 6 Nov 2014 23:37:00 +0100 (CET) (envelope-from jhs@berklix.com) Message-Id: <201411062237.sA6MamIw051196@fire.js.berklix.net> To: "edflecko ." <edflecko@gmail.com> Subject: Re: What's the difference between "Release" versus "Errata" versus "Security" branches??? From: "Julian H. Stacey" <jhs@berklix.com> Organization: http://berklix.com BSD Unix Linux Consultants, Munich Germany User-agent: EXMH on FreeBSD http://berklix.com/free/ X-URL: http://www.berklix.com In-reply-to: Your message "Thu, 06 Nov 2014 10:21:24 -0800." <CAFS4T6ad2ow=ziXZ6mpTBDzuJdz3YhqeY5NhRRsKmd0S3f-J3A@mail.gmail.com> Date: Thu, 06 Nov 2014 23:36:48 +0100 Cc: freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Thu, 06 Nov 2014 22:37:24 -0000 "edflecko ." wrote: > Thank you Andrew. > > Hey Julian - I did RTFM Hi Ed, 3 non freebsd.org sites with duff/ non authoritative info. are not The Manual. You did not say you had read the freebsd.org handbook. It wastes time, asking on @freebsd.org to read & explain mis-perceptions about FreeBSD, published on non freebsd.org domains. For Authoritative FreeBSD info. refer to freebsd.org, not blog & mag. domains ! https://www.freebsd.org https://www.freebsd.org/doc/en/ https://www.freebsd.org/doc/en/books/handbook/ https://www.freebsd.org/doc/en_US.ISO8859-1/books/handbook/current-stable.html https://www.freebsd.org/doc/en/books/faq/ http://wiki.freebsd.org/ http://lists.freebsd.org/mailman/listinfo/freebsd-stable "the stable cvsup target is built from the latest official RELEASE with the addition of critical bug fixes." PS Re. cvsup above, I filed a bug report: http://lists.freebsd.org/pipermail/freebsd-doc/2014-November/024528.html Cheers, Julian -- Julian Stacey, BSD Linux Unix C Sys Eng Consultant Munich http://berklix.com Indent previous with "> ". Interleave reply paragraphs like a play script. Send plain text, not quoted-printable, HTML, base64, or multipart/alternative. From owner-freebsd-questions@FreeBSD.ORG Thu Nov 6 22:39:33 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id B37A56B6 for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 22:39:33 +0000 (UTC) Received: from fly.radel.com (fly.radel.com [70.184.242.170]) (using TLSv1 with cipher RC4-SHA (128/128 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 2B3E2785 for <freebsd-questions@freebsd.org>; Thu, 6 Nov 2014 22:39:32 +0000 (UTC) X-CGP-ClamAV-Result: CLEAN X-VirusScanner: Niversoft's CGPClamav Helper v1.16.8 (ClamAV engine v0.97.8) Received: from [2001:470:880a:4389:19e6:8ae5:b05b:ff46] (account jon@radel.com HELO gravenstein.local) by radel.com (CommuniGate Pro SMTP 6.0.4 _community_) with ESMTPSA id 427322; Thu, 06 Nov 2014 21:39:23 +0000 Message-ID: <545BEA8A.9070607@radel.com> Date: Thu, 06 Nov 2014 16:39:22 -0500 From: Jon Radel <jon@radel.com> User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.9; rv:24.0) Gecko/20100101 Thunderbird/24.6.0 MIME-Version: 1.0 To: =?UTF-8?B?IkRhbnRlIEYuIEIuIENvbMOyIg==?= <dante01010@gmail.com>, freeBSD <freebsd-questions@freebsd.org> Subject: Re: Static routing References: <545BE713.9090705@gmail.com> In-Reply-To: <545BE713.9090705@gmail.com> Content-Type: multipart/signed; protocol="application/pkcs7-signature"; micalg=sha1; boundary="------------ms050304090202050109060307" X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Thu, 06 Nov 2014 22:39:33 -0000 This is a cryptographically signed message in MIME format. --------------ms050304090202050109060307 Content-Type: text/plain; charset=UTF-8; format=flowed Content-Transfer-Encoding: quoted-printable On 11/6/14, 4:24 PM, "Dante F. B. Col=C3=B2" wrote: > Hello everyone > > I'm trying to setup some static routes on a freebsd box for some=20 > public addresses , the machine has two ethernet cards *em0 *and *em1=20 > ***, *em0* is attached to a Cisco internet router and *em1* is=20 > connected to a switch, both interfaces have public addresses of the=20 > same range , *em1 *appears has absolutely no communication=20 It would be helpful if you provided the specific IP addresses you're=20 talking about, complete with the masks, and specific commands you enter, = or conf file lines you add or modify. For starters, when you talk about = "both interfaces have public addresses of the same range" that's not a=20 precise enough description for me to know if you mean two addresses on=20 the same subnet or two addresses, each in different subnets (though they = may be adjacent or part of the same larger network). If you do, in=20 fact, mean two addresses in the same network, then your IP topology is=20 broken if you think you can do layer 3 routing between them, and the=20 very first thing you'll need to do is come up with a legal addressing=20 scheme. (Or consider layer 2 bridging, which has other design=20 implications of its own but might work better for you....) > , i took a look at the static routes and there is a route for the=20 > subnet that it goes to *em0* , i'm trying to add a static route for=20 > the ip address pointing to the***em1 *without pass gateway using=20 > *-iface* parameter but always returns "Network unreachble",=20 Something is confused, so it would be better to give us the output=20 you're looking at rather than your interpretation of that output. Not to say that somebody else may not be able to figure out precisely=20 what's going on based on this description, but I'm much more likely to=20 spot what's going wrong with specific information: actual configs;=20 actual output. --Jon Radel jon@radel.com --------------ms050304090202050109060307 Content-Type: application/pkcs7-signature; name="smime.p7s" Content-Transfer-Encoding: base64 Content-Disposition: attachment; filename="smime.p7s" Content-Description: S/MIME Cryptographic Signature MIAGCSqGSIb3DQEHAqCAMIACAQExCzAJBgUrDgMCGgUAMIAGCSqGSIb3DQEHAQAAoIILBDCC BRowggQCoAMCAQICEG0Z6qcZT2ozIuYiMnqqcd4wDQYJKoZIhvcNAQEFBQAwga4xCzAJBgNV BAYTAlVTMQswCQYDVQQIEwJVVDEXMBUGA1UEBxMOU2FsdCBMYWtlIENpdHkxHjAcBgNVBAoT FVRoZSBVU0VSVFJVU1QgTmV0d29yazEhMB8GA1UECxMYaHR0cDovL3d3dy51c2VydHJ1c3Qu Y29tMTYwNAYDVQQDEy1VVE4tVVNFUkZpcnN0LUNsaWVudCBBdXRoZW50aWNhdGlvbiBhbmQg RW1haWwwHhcNMTEwNDI4MDAwMDAwWhcNMjAwNTMwMTA0ODM4WjCBkzELMAkGA1UEBhMCR0Ix GzAZBgNVBAgTEkdyZWF0ZXIgTWFuY2hlc3RlcjEQMA4GA1UEBxMHU2FsZm9yZDEaMBgGA1UE ChMRQ09NT0RPIENBIExpbWl0ZWQxOTA3BgNVBAMTMENPTU9ETyBDbGllbnQgQXV0aGVudGlj YXRpb24gYW5kIFNlY3VyZSBFbWFpbCBDQTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoC ggEBAJKEhFtLV5jUXi+LpOFAyKNTWF9mZfEyTvefMn1V0HhMVbdClOD5J3EHxcZppLkyxPFA GpDMJ1Zifxe1cWmu5SAb5MtjXmDKokH2auGj/7jfH0htZUOMKi4rYzh337EXrMLaggLW1DJq 1GdvIBOPXDX65VSAr9hxCh03CgJQU2yVHakQFLSZlVkSMf8JotJM3FLb3uJAAVtIaN3FSrTg 7SQfOq9xXwfjrL8UO7AlcWg99A/WF1hGFYE8aIuLgw9teiFX5jSw2zJ+40rhpVJyZCaRTqWS D//gsWD9Gm9oUZljjRqLpcxCm5t9ImPTqaD8zp6Q30QZ9FxbNboW86eb/8ECAwEAAaOCAUsw ggFHMB8GA1UdIwQYMBaAFImCZ33EnSZwAEu0UEh83j2uBG59MB0GA1UdDgQWBBR6E04AdFvG eGNkJ8Ev4qBbvHnFezAOBgNVHQ8BAf8EBAMCAQYwEgYDVR0TAQH/BAgwBgEB/wIBADARBgNV HSAECjAIMAYGBFUdIAAwWAYDVR0fBFEwTzBNoEugSYZHaHR0cDovL2NybC51c2VydHJ1c3Qu Y29tL1VUTi1VU0VSRmlyc3QtQ2xpZW50QXV0aGVudGljYXRpb25hbmRFbWFpbC5jcmwwdAYI KwYBBQUHAQEEaDBmMD0GCCsGAQUFBzAChjFodHRwOi8vY3J0LnVzZXJ0cnVzdC5jb20vVVRO QWRkVHJ1c3RDbGllbnRfQ0EuY3J0MCUGCCsGAQUFBzABhhlodHRwOi8vb2NzcC51c2VydHJ1 c3QuY29tMA0GCSqGSIb3DQEBBQUAA4IBAQCF1r54V1VtM39EUv5C1QaoAQOAivsNsv1Kv/av QUn1G1rF0q0bc24+6SZ85kyYwTAo38v7QjyhJT4KddbQPTmGZtGhm7VNm2+vKGwdr+XqdFqo 2rHA8XV6L566k3nK/uKRHlZ0sviN0+BDchvtj/1gOSBH+4uvOmVIPJg9pSW/ve9g4EnlFsjr P0OD8ODuDcHTzTNfm9C9YGqzO/761Mk6PB/tm/+bSTO+Qik5g+4zaS6CnUVNqGnagBsePdIa XXxHmaWbCG0SmYbWXVcHG6cwvktJRLiQfsrReTjrtDP6oDpdJlieYVUYtCHVmdXgQ0BCML7q peeU0rD+83X5f27nMIIF4jCCBMqgAwIBAgIQUaWQdTU6RvxxeOjTUN4DtDANBgkqhkiG9w0B AQUFADCBkzELMAkGA1UEBhMCR0IxGzAZBgNVBAgTEkdyZWF0ZXIgTWFuY2hlc3RlcjEQMA4G A1UEBxMHU2FsZm9yZDEaMBgGA1UEChMRQ09NT0RPIENBIExpbWl0ZWQxOTA3BgNVBAMTMENP TU9ETyBDbGllbnQgQXV0aGVudGljYXRpb24gYW5kIFNlY3VyZSBFbWFpbCBDQTAeFw0xMjAz MjcwMDAwMDBaFw0xNTAzMjcyMzU5NTlaMIH6MQswCQYDVQQGEwJVUzEOMAwGA1UEERMFMjIx NTAxCzAJBgNVBAgTAlZBMRQwEgYDVQQHEwtTcHJpbmdmaWVsZDEaMBgGA1UECRMRNjkxNyBS aWRnZXdheSBEci4xFTATBgNVBAoTDEpvbiBULiBSYWRlbDEyMDAGA1UECxMpSXNzdWVkIHRo cm91Z2ggSm9uIFQuIFJhZGVsIEUtUEtJIE1hbmFnZXIxHzAdBgNVBAsTFkNvcnBvcmF0ZSBT ZWN1cmUgRW1haWwxEjAQBgNVBAMTCUpvbiBSYWRlbDEcMBoGCSqGSIb3DQEJARYNam9uQHJh ZGVsLmNvbTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAMuufqoh9QnyjZTH7UdO wpx6XnRz/94zoK1C1SaAepIRMyInXiwOVwT7iXKtkeRGEQA2vwTyqu5JVcvWkGxlTWPACgDW dDE3296Up2K9CFfrm+RKdlc6xfMklR7qQWyNw5ULkeOZZOIoSAlVAJPhjIvHcf0UPxjTqgtP 4JafBBvL8RFhMAm74I1kWltMcFPVm1sLFDR1CDZ48/zqmhK/0ppbiBGapi8vAO382laFgHaN 8ODBFBffom5zjL/I9SggGGAdtwi7Vp2cjzgtuNVyORPv5Jz9zLylVKlhNvyq3VjbWXuJNw0E J03F/UkjQsqsCkQnSdHAxtPkGhoBw/UvqEsCAwEAAaOCAccwggHDMB8GA1UdIwQYMBaAFHoT TgB0W8Z4Y2QnwS/ioFu8ecV7MB0GA1UdDgQWBBR8oxwxzLSB4/equQ4EqdH5Fld3sTAOBgNV HQ8BAf8EBAMCBaAwDAYDVR0TAQH/BAIwADAdBgNVHSUEFjAUBggrBgEFBQcDBAYIKwYBBQUH AwIwRgYDVR0gBD8wPTA7BgwrBgEEAbIxAQIBAwUwKzApBggrBgEFBQcCARYdaHR0cHM6Ly9z ZWN1cmUuY29tb2RvLm5ldC9DUFMwVwYDVR0fBFAwTjBMoEqgSIZGaHR0cDovL2NybC5jb21v ZG9jYS5jb20vQ09NT0RPQ2xpZW50QXV0aGVudGljYXRpb25hbmRTZWN1cmVFbWFpbENBLmNy bDCBiAYIKwYBBQUHAQEEfDB6MFIGCCsGAQUFBzAChkZodHRwOi8vY3J0LmNvbW9kb2NhLmNv bS9DT01PRE9DbGllbnRBdXRoZW50aWNhdGlvbmFuZFNlY3VyZUVtYWlsQ0EuY3J0MCQGCCsG AQUFBzABhhhodHRwOi8vb2NzcC5jb21vZG9jYS5jb20wGAYDVR0RBBEwD4ENam9uQHJhZGVs LmNvbTANBgkqhkiG9w0BAQUFAAOCAQEAJB+JWM2MbG5rR7/RCEm8bQRziBfl/FztfoV6dDGU Y0uTRegiwM2LA/GHGju7xtp49MrcmEciZs6Di2pvGzS5m/v5IBT0gMK6dyplBmBe4BXzwckE 1MH/iui+VstVHds+36SsQqPCtVmFWlX6QN56F6aGSCjI27f2mUYL3NBr6DPsslRIhF9PamKQ Bp4Y25/hnd+paEGIF6AZM3Uv7TvsTdCaBOt3dLrwUIpyQex5yqO8GPKWwgEPKxKiro7uLNNY yZU4dEEenQIi/4SD49XHd9Zqwf60jKVPeZjcrK7QSSQ8dlOYOGH60WBBFVwD1CCBCLSJnglY Dwh5wcgQG9ZRvjGCBBkwggQVAgEBMIGoMIGTMQswCQYDVQQGEwJHQjEbMBkGA1UECBMSR3Jl YXRlciBNYW5jaGVzdGVyMRAwDgYDVQQHEwdTYWxmb3JkMRowGAYDVQQKExFDT01PRE8gQ0Eg TGltaXRlZDE5MDcGA1UEAxMwQ09NT0RPIENsaWVudCBBdXRoZW50aWNhdGlvbiBhbmQgU2Vj dXJlIEVtYWlsIENBAhBRpZB1NTpG/HF46NNQ3gO0MAkGBSsOAwIaBQCgggJFMBgGCSqGSIb3 DQEJAzELBgkqhkiG9w0BBwEwHAYJKoZIhvcNAQkFMQ8XDTE0MTEwNjIxMzkyMlowIwYJKoZI hvcNAQkEMRYEFFIMLU/p+i2lsZA2+EVdttrJj11FMGwGCSqGSIb3DQEJDzFfMF0wCwYJYIZI AWUDBAEqMAsGCWCGSAFlAwQBAjAKBggqhkiG9w0DBzAOBggqhkiG9w0DAgICAIAwDQYIKoZI hvcNAwICAUAwBwYFKw4DAgcwDQYIKoZIhvcNAwICASgwgbkGCSsGAQQBgjcQBDGBqzCBqDCB kzELMAkGA1UEBhMCR0IxGzAZBgNVBAgTEkdyZWF0ZXIgTWFuY2hlc3RlcjEQMA4GA1UEBxMH U2FsZm9yZDEaMBgGA1UEChMRQ09NT0RPIENBIExpbWl0ZWQxOTA3BgNVBAMTMENPTU9ETyBD bGllbnQgQXV0aGVudGljYXRpb24gYW5kIFNlY3VyZSBFbWFpbCBDQQIQUaWQdTU6RvxxeOjT UN4DtDCBuwYLKoZIhvcNAQkQAgsxgauggagwgZMxCzAJBgNVBAYTAkdCMRswGQYDVQQIExJH cmVhdGVyIE1hbmNoZXN0ZXIxEDAOBgNVBAcTB1NhbGZvcmQxGjAYBgNVBAoTEUNPTU9ETyBD QSBMaW1pdGVkMTkwNwYDVQQDEzBDT01PRE8gQ2xpZW50IEF1dGhlbnRpY2F0aW9uIGFuZCBT ZWN1cmUgRW1haWwgQ0ECEFGlkHU1Okb8cXjo01DeA7QwDQYJKoZIhvcNAQEBBQAEggEAfTkm xvKpDhGMelGQq/dmM2syFAgCPrBf8dBFGb5U98rpWnu0T5GWmfINiSYNDSOp0t0zkAchDJwE joP0xWcuk04J5ej0e62o7pvEj8GXghx9i5PMGXBfRMD/sK7EKESQYQF+52Tn4Xdv3FM/b4vv /4qm8jGxRTjCDNKSxfQ1HWR7DwgQhgBJ4jtFwcAxaMJXyGblkoBd+N1GPFQ/1LT+DiwGcRRN vqVLJiZGjVlY46HwztDWvV/DG7xmbqTatFE8rC3Ss5IZ2WWv6eGTPpBRaDkC14HtwxRLR4Z/ KRvWyI5lfRqizMHj765ERGTnuadoJAmuSe2+4XxosDd2rQQKKwAAAAAAAA== --------------ms050304090202050109060307-- From owner-freebsd-questions@FreeBSD.ORG Fri Nov 7 01:03:42 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id E4E98401 for <freebsd-questions@freebsd.org>; Fri, 7 Nov 2014 01:03:42 +0000 (UTC) Received: from mx2.blackfoot.net (mx2.blackfoot.net [216.14.232.11]) (using TLSv1 with cipher ECDHE-RSA-AES256-SHA (256/256 bits)) (Client CN "spam.blackfoot.net", Issuer "GeoTrust DV SSL CA" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id A8EFFCB6 for <freebsd-questions@freebsd.org>; Fri, 7 Nov 2014 01:03:42 +0000 (UTC) Received: from blackfoot.vision.net ([216.220.3.42]) by mx2.blackfoot.net ({f463150a-8fc3-47f8-9d9f-72f34f8bb0de}) via TCP (outbound) with ESMTP id 20141107010325132; Fri, 07 Nov 2014 01:03:25 +0000 X-RC-FROM: <vagabond@blackfoot.net> Received: from webmail.blackfoot.net (unknown [10.40.25.30]) (Authenticated sender: vagabond) by blackfoot.vision.net (Postfix) with ESMTPA id 7320071A6; Thu, 6 Nov 2014 18:03:23 -0700 (MST) Received: from 66.109.141.62 (SquirrelMail authenticated user vagabond) by webmail.blackfoot.net with HTTP; Thu, 6 Nov 2014 18:03:23 -0700 Message-ID: <7fe88aca6228abad2e4ce66abaf42893.squirrel@webmail.blackfoot.net> Date: Thu, 6 Nov 2014 18:03:23 -0700 Subject: Re: natd not translating? From: "Gary Aitken" <vagabond@blackfoot.net> To: smithi@nimnet.asn.au, freebsd-questions@freebsd.org User-Agent: SquirrelMail/1.4.22 MIME-Version: 1.0 Content-Type: text/plain;charset=utf-8 Content-Transfer-Encoding: 8bit X-Priority: 3 (Normal) Importance: Normal X-MAG-OUTBOUND: blackfoot.redcondor.net@216.220.3.42/32 X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Fri, 07 Nov 2014 01:03:43 -0000 > > On 11/03/14 22:37, Ian Smith wrote: > > > In freebsd-questions Digest, Vol 544, Issue 1, Message: 9 > > > On Sun, 2 Nov 2014 17:36:36 -0700 "Gary Aitken" <vagabond@blackfoot.net> wrote: > > world -> ep0 (66.109.141.*) fbsdbox (192.168.1.1) xl0 -> internal > > 66.109.141.60 is one of my assigned ip addrs. > You have a /24? I can hardly afford my /29 these days. Sloppy. 66.109.141.56/29, so .60 is in it. If I could afford a /24, that's not what I'd spend it on! :-) > Is fbsdbox where all your addresses are routed to? > If so, to paraphrase julian@, you don't want to waste natd's time > handling packets it doesn't care about, meaning packets that will never > be eligible to be mapped to/from your internal network .. but that's > just a refinement, for later. Yes, fbsd box is the only way out. Hmmm, I was wondering about bypassing natd for internal only traffic. Then realized it shouldn't be diverted because it stays on the internal interface. However, I hadn't considered traffic that just went in and back out the gateway. I have a non-gateway ip addr reserved for use by natd, and currently have divert 8668 ip from any to any via ep0 Since I have a non-gateway addr reserved for the natd xlations, it seems like divert 8668 ip4 from not me to not me via ep0 should have identical behavior; but it doesn't. It seems like nothing came through to clients. > Are you running any services accessible from outside on any of your IPs? yes. All served by the fbsd gateway box at the moment, on outward-facing (ep0) interface ip. Although sometimes also served by a different internal fbsd box, and for those I have a dedicated ip passed straight through by natd. > > I *think* I got the above problem even with ipfw wide open: > > 00005 allow ip from any to any > > 00010 divert 8668 ip from any to any via ep0 > Rule 5 allows everything, so no packets will get as far as rule 10. Oops, that was typed in rather than copied at the time of failure. I was debugging a dns problem and had temporarily bypassed natd. I probably had rule 5 at rule 11, after the divert when working on natd. > Swap those and you do indeed have an open firewall, doing only NAT, > though it's important to specify 'ip4' rather than 'ip' or 'all' in the > divert rule .. natd gets quite upset (TSTL) when passed IPv6 traffic. Thanks, didn't realize that. > > I say *think* because I am further along but did not go back and verify the cause. > > My head is a bit damaged and the wall is bloody. > > I believe the problem was a missing entry in /boot/loader.conf > > (ipdivert_load="YES") > > which I found as a result of this note and the references to others in it: > > http://freebsd.1045724.n5.nabble.com/Kernel-Update-IPFW-not-working-td4208637.html > Ah yes. This was fixed sometime before 9.3 on stable/9 in /etc/rc.d/ipfw: > ipfw_prestart() <snip> > so I guess you're running 8.x or an earlier 9.x? uname -a? heh. <Sheepish grin> Due to various problems along the way, I'm pleading the 5th. Waiting for a disk delivery to upgrade to 9.3 > > Anyway, I'm past that problem and most things are working. > > However, still having some trouble working out my ipfw rules > > but if I can see what's happening I think I can figure it out. > Please show your ruleset; the output of 'ipfw show' will do nicely. > Personally, for a setup like yours, I would (and did) start with the > /etc/rc.firewall 'simple' ruleset. Apart from needing rules added to > pass ICMP traffic, still not fixed after many years - it's a good basic > firewall for a small network, unlike those still suggested in the IPFW > handbook page .. though there's been some work done there recently too. Thanks. My config has grown over the years and it's probably good to revisit the "simple" template and redo / modify from there. > > I can't seem to get logging to work. I have the following in natd.conf: > > log_denied > > log_ipfw_denied > > log_facility local0 > > and the following in syslog.conf > > !local0 > > *.* /var/log/natd.log > > If I run natd with verbose, I occasionally see > > "natd: failed to write packet back: Permission denied" > > errors on the controlling terminal. > > If I run without verbose (detached), I see no entries in > > /var/log/natd.log. > > That failure may relate to use of log_ipfw_denied (default when using > 'verbose' anyway) or it could be to do with IPv6 traffic, as above. > > You see no log entries at all? I'd try using the default log. I never > found much value in /var/log/alias.log (natd's default log), compared to > adding a few temporary 'count log' rules before and after the divert > rule/s, and/or running tcpdump in two consoles, one inside and one > outside, while verifying various test traffic as working. The natd alias.log file contains counts, but nothing else, which as you say seems not of much value, at least for debug purposes. After some experimentation introducing rules to force rejection of packets after natd coversion: Absent "log_facility" a message goes to "messages", but unfortunately that message is only the "failed to write packet back" message, and not the detail you get when running -verbose where you get the ip addrs; so not particularly useful. With the "log_facility" I didn't see anything different, which is probably a result of a poorly configured syslog.conf file. I'll worry about that later. I've been using tcpdump on the outward facing net and running natd -verbose to see the translations and the complaints, which works pretty well. I guess I was expecting logging to show the rejected packets, not just tell me something was rejected. I'll lower my expectations :-( > And have 'log yes' in natd.conf as well as those above. That doesn't seem to affect logging of rejected packets; only provides the stats. > If I were starting again I'd be using ipfw_nat (in-kernel NAT) instead > of natd anyway; natd(8) is still a useful reference, the descriptions in > ipfw(8) are rather terse if you don't already know natd terminology, but > it maps pretty well one-to-one with natd / divert usage, and is faster. Thanks, will look into that after upgrade. > Well let's see your ruleset (offlist if considered sensitive) and full > natd.conf, and related rules from rc.conf (gateway_enable and such); > also ifconfig, less anything sensitive, could provide a clue or two. I think I'm ok at this point. Turns out much of the problem was due to a perfect storm sort of thing -- reduction of my subnet size which forced use of natd; forced change of ips which forced reconfig of dns, and isp didn't forward the reverse dns. DSL modem has some strange behavior just discovered in the process as well. So there were some additional things going on I wasn't exactly looking at/for at the time. Thanks for your insights and suggestions; only open question at the moment is the divert 8668 ip4 from not me to not me via ep0 one. Gary From owner-freebsd-questions@FreeBSD.ORG Fri Nov 7 05:16:25 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id C636B5D6 for <freebsd-questions@freebsd.org>; Fri, 7 Nov 2014 05:16:25 +0000 (UTC) Received: from smtpb.telissant.net (smtpb.telissant.net [199.233.230.156]) by mx1.freebsd.org (Postfix) with ESMTP id 985B992F for <freebsd-questions@freebsd.org>; Fri, 7 Nov 2014 05:16:25 +0000 (UTC) Received: from barrida.3dresearch.com (localhost [127.0.0.1]) by smtpb.telissant.net (Postfix) with ESMTP id B45E227330 for <freebsd-questions@freebsd.org>; Fri, 7 Nov 2014 00:16:23 -0500 (EST) X-Virus-Scanned: amavisd-new at telissant.net Received: from smtpb.telissant.net ([127.0.0.1]) by barrida.3dresearch.com (barrida.3dresearch.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id c7E7sQV6Cmsc for <freebsd-questions@freebsd.org>; Fri, 7 Nov 2014 00:15:58 -0500 (EST) Received: from doncurzio.3dresearch.com (pool-71-112-0-222.pitbpa.east.verizon.net [71.112.0.222]) (using TLSv1 with cipher ADH-CAMELLIA256-SHA (256/256 bits)) (No client certificate requested) by smtpb.telissant.net (Postfix) with ESMTPSA id 655A52731E for <freebsd-questions@freebsd.org>; Fri, 7 Nov 2014 00:15:58 -0500 (EST) Received: from doncurzio.3dresearch.com (localhost [127.0.0.1]) by doncurzio.3dresearch.com (Postfix) with SMTP id C3643A1E2C for <freebsd-questions@freebsd.org>; Fri, 7 Nov 2014 00:15:57 -0500 (EST) Date: Fri, 7 Nov 2014 00:15:36 -0500 From: Janos Dohanics <web@3dresearch.com> To: FreeBSD Questions <freebsd-questions@freebsd.org> Subject: Re: uniq(1) on last field Message-Id: <20141107001536.4facb64ccb4606e919d0c780@3dresearch.com> In-Reply-To: <20141106192037.GA15248@scout.stangl.us> References: <20141106110319.eb34eaa069a4881824072010@3dresearch.com> <20141106184306.GA14996@scout.stangl.us> <20141106192037.GA15248@scout.stangl.us> X-Mailer: Sylpheed 3.3.0 (GTK+ 2.24.19; amd64-portbld-freebsd9.1) Mime-Version: 1.0 Content-Type: text/plain; charset=US-ASCII Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Fri, 07 Nov 2014 05:16:25 -0000 On Thu, 6 Nov 2014 13:20:37 -0600 Alex Stangl <alex@stangl.us> wrote: > On Thu, Nov 06, 2014 at 12:43:06PM -0600, Alex Stangl wrote: > > On Thu, Nov 06, 2014 at 11:03:19AM -0500, Janos Dohanics wrote: > > > Would you please help with a shell scripting problem. I have a > > > samba audit log file which after some parsing has entries like > > > this: > > > > > > Nov 5 15:07:10 testuser 10.10.10.72 pluto pwrite ok > > > COMMON/Solidworks Parts & Assemblies/CDE - Beck/Tube Baffle > > > Coalescer Model/~$40in OD Shell.SLDPRT > > > > > > I would like to use uniq(1) on the file name, which is of course > > > the last field if / is used as field separator. > > > > $ awk -F'/' '{printf "%s%s%s\n", $NF, "/", $0}' yourfile.txt | sort > > -k '1,1' -u -t'/' | cut -f2- -d'/' > > Or, even shorter, > > $ awk -F'/' '{printf "%s/%s\n", $NF, $0}' yourfile.txt | sort -k > '1,1' -u -t'/' | cut -f2- -d'/' > > > Alex Alex, works perfectly, thank you. Thank you everyone for your suggestions. -- Janos Dohanics From owner-freebsd-questions@FreeBSD.ORG Fri Nov 7 14:01:38 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 97AD7943 for <freebsd-questions@freebsd.org>; Fri, 7 Nov 2014 14:01:38 +0000 (UTC) Received: from mail-qc0-x229.google.com (mail-qc0-x229.google.com [IPv6:2607:f8b0:400d:c01::229]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 52FF7917 for <freebsd-questions@freebsd.org>; Fri, 7 Nov 2014 14:01:37 +0000 (UTC) Received: by mail-qc0-f169.google.com with SMTP id i17so2570663qcy.14 for <freebsd-questions@freebsd.org>; Fri, 07 Nov 2014 06:01:36 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=bsd.com.br; s=capeta; h=mime-version:date:message-id:subject:from:to:content-type; bh=LWcOntoozyHX266cLX7nDUt/TUWjt8ubkGGFyccZnk0=; b=OWwk+l87gmUEHC1CA6BdKFLISkBTCRTBly8ScbUDfBCvCfKMrRRiQrU7rt/4ZbnaWB Pw1TnwwnqaIFBm+bHLCweoI2DBQbSzqLFSCDq8ZYR4nLWVR13GDfwP7X93UNa87LbkNA 3cOOYlAYDNnzhHVuWyjNDc1Qi0DiQ7Ywy0X0U= X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=x-gm-message-state:mime-version:date:message-id:subject:from:to :content-type; bh=LWcOntoozyHX266cLX7nDUt/TUWjt8ubkGGFyccZnk0=; b=M6qgv44DQcobFYO2HtqpGELZcPw+ujRTy3iIiMLcM8WCOMce/9nBqaTzsl3pSi2WU1 QbfWpS/jJReKwwdqCQkI1Dx4MQSFgLmnQ04GSx3uqfo/n0ExixtFk8cSVq3CTKYG0BYe gKH20ZX46IzXfoYLfswwZAxFDbmUugBgOsl2fRRIgHfrllW7fYjC//A5XtllwCik4HIy svlChEkUCSw8wnhIn72dt6wtBqwzePp1amHVP5kevLLd6qNXJd8uBQDef8+A8J3/ncyY BazEh2Dg2Od/KSlXil7jSWlQtTVRHwUaGa/qZFxkmSGGSLfh64YM13k+JwtxUd208xMw TGDQ== X-Gm-Message-State: ALoCoQlIlNv+BdhK+u/iSzxyS/O5M96pHKojAYaSqzv59P9GS0TqckLkzqVJXc1gsqfBYtwE/6eU MIME-Version: 1.0 X-Received: by 10.224.125.68 with SMTP id x4mr1285996qar.78.1415368896745; Fri, 07 Nov 2014 06:01:36 -0800 (PST) Received: by 10.229.51.133 with HTTP; Fri, 7 Nov 2014 06:01:36 -0800 (PST) Date: Fri, 7 Nov 2014 11:01:36 -0300 Message-ID: <CA+yoEx8Ryi33OwDHmU96QhDruKXMX3Jg88=_DdsBaaNyysFekA@mail.gmail.com> Subject: Problem compiling firefox 33.0.1 From: Mario Lobo <lobo@bsd.com.br> To: freebsd-questions <freebsd-questions@freebsd.org> Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: quoted-printable X-Content-Filtered-By: Mailman/MimeDel 2.1.18-1 X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Fri, 07 Nov 2014 14:01:38 -0000 Hi When compiling, I get this error: INPUT("../mozjs-dtrace.o") ../mozjs-dtrace.o: In function `dtrace_dof_init': /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/lib/libdtrace/comm= on/drti.c:(.text+0xe1): undefined reference to `elf_version' /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/lib/libdtrace/comm= on/drti.c:(.text+0x112): undefined reference to `elf_begin' /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/lib/libdtrace/comm= on/drti.c:(.text+0x12d): undefined reference to `elf_getshdrstrndx' /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/lib/libdtrace/comm= on/drti.c:(.text+0x137): undefined reference to `elf_nextscn' /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/lib/libdtrace/comm= on/drti.c:(.text+0x1a3): undefined reference to `elf_getdata' /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/lib/libdtrace/comm= on/drti.c:(.text+0x1c8): undefined reference to `elf_getdata' /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/lib/libdtrace/comm= on/drti.c:(.text+0x1db): undefined reference to `elf_getdata' /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/lib/libdtrace/comm= on/drti.c:(.text+0x1f7): undefined reference to `gelf_getshdr' /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/lib/libdtrace/comm= on/drti.c:(.text+0x217): undefined reference to `elf_strptr' /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/lib/libdtrace/comm= on/drti.c:(.text+0x236): undefined reference to `elf_nextscn' /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/lib/libdtrace/comm= on/drti.c:(.text+0x302): undefined reference to `elf_end' /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/lib/libdtrace/comm= on/drti.c:(.text+0x4ef): undefined reference to `elf_end' ../mozjs-dtrace.o: In function `fixsymbol': /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/lib/libdtrace/comm= on/drti.c:(.text+0x65b): undefined reference to `gelf_getsym' /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/lib/libdtrace/comm= on/drti.c:(.text+0x693): undefined reference to `elf_strptr' c++: error: linker command failed with exit code 1 (use -v to see invocation) gmake[5]: *** [js] Error 1 gmake[5]: Leaving directory `/usr/ports/www/firefox/work/mozilla-release/obj-x86_64-unknown-freebsd10.1= /js/src/shell' gmake[4]: *** [js/src/shell/libs] Error 2 uname: 10.1-BETA1 FreeBSD 10.1-BETA1 #0 r271706 I=C2=B4ve tried installing devel/libelf but still get the same results. Would anyone have any suggestions? Thanks --=20 Mario Lobo http://www.mallavoodoo.com.br FreeBSD since version 2.2.8 [not Pro-Audio.... YET!!] (99,7% winfoes FREE) From owner-freebsd-questions@FreeBSD.ORG Fri Nov 7 14:10:01 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 0865AC86; Fri, 7 Nov 2014 14:10:01 +0000 (UTC) Received: from webmail.dweimer.net (24-240-198-187.static.stls.mo.charter.com [24.240.198.187]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client CN "webmail2.dweimer.local", Issuer "webmail2.dweimer.local" (not verified)) by mx1.freebsd.org (Postfix) with ESMTPS id BFC85998; Fri, 7 Nov 2014 14:10:00 +0000 (UTC) Received: from www.dweimer.net (webmail [192.168.5.2]) by webmail.dweimer.net (8.14.7/8.14.7) with ESMTP id sA7E9p25095460 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-GCM-SHA384 bits=256 verify=NO); Fri, 7 Nov 2014 08:09:51 -0600 (CST) (envelope-from dweimer@dweimer.net) MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8; format=flowed Content-Transfer-Encoding: 8bit Date: Fri, 07 Nov 2014 08:09:51 -0600 From: dweimer <dweimer@dweimer.net> To: Mario Lobo <lobo@bsd.com.br> Subject: Re: Problem compiling firefox 33.0.1 Organization: dweimer.net Reply-To: dweimer@dweimer.net Mail-Reply-To: dweimer@dweimer.net In-Reply-To: <CA+yoEx8Ryi33OwDHmU96QhDruKXMX3Jg88=_DdsBaaNyysFekA@mail.gmail.com> References: <CA+yoEx8Ryi33OwDHmU96QhDruKXMX3Jg88=_DdsBaaNyysFekA@mail.gmail.com> Message-ID: <9b9b43c8a9875e6d46317184e3a058f9@dweimer.net> X-Sender: dweimer@dweimer.net User-Agent: Roundcube Webmail/1.0.3 Cc: freebsd-questions <freebsd-questions@freebsd.org>, owner-freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Fri, 07 Nov 2014 14:10:01 -0000 On 11/07/2014 8:01 am, Mario Lobo wrote: > Hi > > When compiling, I get this error: > > INPUT("../mozjs-dtrace.o") > > ../mozjs-dtrace.o: In function `dtrace_dof_init': > /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/lib/libdtrace/common/drti.c:(.text+0xe1): > undefined reference to `elf_version' > /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/lib/libdtrace/common/drti.c:(.text+0x112): > undefined reference to `elf_begin' > /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/lib/libdtrace/common/drti.c:(.text+0x12d): > undefined reference to `elf_getshdrstrndx' > /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/lib/libdtrace/common/drti.c:(.text+0x137): > undefined reference to `elf_nextscn' > /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/lib/libdtrace/common/drti.c:(.text+0x1a3): > undefined reference to `elf_getdata' > /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/lib/libdtrace/common/drti.c:(.text+0x1c8): > undefined reference to `elf_getdata' > /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/lib/libdtrace/common/drti.c:(.text+0x1db): > undefined reference to `elf_getdata' > /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/lib/libdtrace/common/drti.c:(.text+0x1f7): > undefined reference to `gelf_getshdr' > /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/lib/libdtrace/common/drti.c:(.text+0x217): > undefined reference to `elf_strptr' > /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/lib/libdtrace/common/drti.c:(.text+0x236): > undefined reference to `elf_nextscn' > /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/lib/libdtrace/common/drti.c:(.text+0x302): > undefined reference to `elf_end' > /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/lib/libdtrace/common/drti.c:(.text+0x4ef): > undefined reference to `elf_end' > ../mozjs-dtrace.o: In function `fixsymbol': > /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/lib/libdtrace/common/drti.c:(.text+0x65b): > undefined reference to `gelf_getsym' > /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/lib/libdtrace/common/drti.c:(.text+0x693): > undefined reference to `elf_strptr' > c++: error: linker command failed with exit code 1 (use -v to see > invocation) > gmake[5]: *** [js] Error 1 > gmake[5]: Leaving directory > `/usr/ports/www/firefox/work/mozilla-release/obj-x86_64-unknown-freebsd10.1/js/src/shell' > gmake[4]: *** [js/src/shell/libs] Error 2 > > > uname: 10.1-BETA1 FreeBSD 10.1-BETA1 #0 r271706 > > I´ve tried installing devel/libelf but still get the same results. > > Would anyone have any suggestions? > > Thanks is GNOMEVFS2 enabled in the build options? I had trouble building it after the 33.0.1 update on my 10.0 system disabling GNOMEVFS2 which I wasn't actually using anyway got it through it. I hadn't had time to investigate farther, and I can't say it blew up in the same spot but if it is disabling it might help. -- Thanks, Dean E. Weimer http://www.dweimer.net/ From owner-freebsd-questions@FreeBSD.ORG Fri Nov 7 15:09:46 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id B1825F0A for <freebsd-questions@freebsd.org>; Fri, 7 Nov 2014 15:09:46 +0000 (UTC) Received: from mail-qa0-x235.google.com (mail-qa0-x235.google.com [IPv6:2607:f8b0:400d:c00::235]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 67A39D2 for <freebsd-questions@freebsd.org>; Fri, 7 Nov 2014 15:09:46 +0000 (UTC) Received: by mail-qa0-f53.google.com with SMTP id n8so2369664qaq.40 for <freebsd-questions@freebsd.org>; Fri, 07 Nov 2014 07:09:45 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=bsd.com.br; s=capeta; h=mime-version:in-reply-to:references:date:message-id:subject:from:to :cc:content-type; bh=6P/WyGAyPVhkEsVh3UIVeMwBkzj9hjmCj9ltgrzTjf0=; b=Ibd2jDZJlGvMShe/c0OA+/bbB71OkTHIR1Srk5tiRp3+cVWYJF1VU+2KuOVSMt+31a DPvSMcLSn3hrEsNpb16gpjansC6Bhzil0V417gaYTm++KdPf+HtKP1zu4A7ex2alKHe8 n58FFmtDUiwtyU41NgW3IDkHh/PXKJeGJoGzw= X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=x-gm-message-state:mime-version:in-reply-to:references:date :message-id:subject:from:to:cc:content-type; bh=6P/WyGAyPVhkEsVh3UIVeMwBkzj9hjmCj9ltgrzTjf0=; b=ihIC5/eGgu3OnzpvgNWueWtG9wFQ3/RLlP/mvJ9BGfrlBMmUklM6tFzXRtbcDx+NIm qaI5WeMbC+LnJ1DvylMOy3qwd1DG+XiSghjxZ/LRBgQybMxms7/c4mQ0kmSNKGOxGrd5 uqErYe5DX3kXcBLQklZBJLO6kzrlqI5VwkIvRI/nc2JuovyKsyFeKLOjeBKahnfNvaz5 VEfQhPPqybZNAXn1/o7fT5lN54v+Am26e7yl/P1FQn8vfknTYP9K151LRz/q+sAmRHsa 2HG+sDwZys93+I5JnHcWEEjISPARzV0aBf/eXDIUn2PjAxjp/fgTrwpjpRh0UUtuGJYh kmKQ== X-Gm-Message-State: ALoCoQlHwnciV7tPtf5ehNHowoBgtaMm5jX4DHfkZfpgsrPbTDdtPiApMqNcC3cFW00wQ9fhpVx8 MIME-Version: 1.0 X-Received: by 10.140.93.43 with SMTP id c40mr16931877qge.58.1415372985322; Fri, 07 Nov 2014 07:09:45 -0800 (PST) Received: by 10.229.51.133 with HTTP; Fri, 7 Nov 2014 07:09:45 -0800 (PST) In-Reply-To: <9b9b43c8a9875e6d46317184e3a058f9@dweimer.net> References: <CA+yoEx8Ryi33OwDHmU96QhDruKXMX3Jg88=_DdsBaaNyysFekA@mail.gmail.com> <9b9b43c8a9875e6d46317184e3a058f9@dweimer.net> Date: Fri, 7 Nov 2014 12:09:45 -0300 Message-ID: <CA+yoEx_mNGO=gfDnCTwDnjebq+iiOf_vKp3j-BYFGLkp2q5rUg@mail.gmail.com> Subject: Re: Problem compiling firefox 33.0.1 From: Mario Lobo <lobo@bsd.com.br> To: dweimer@dweimer.net Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: quoted-printable X-Content-Filtered-By: Mailman/MimeDel 2.1.18-1 Cc: freebsd-questions <freebsd-questions@freebsd.org>, owner-freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Fri, 07 Nov 2014 15:09:46 -0000 I wish its was, but .. no 2014-11-07 11:09 GMT-03:00 dweimer <dweimer@dweimer.net>: > On 11/07/2014 8:01 am, Mario Lobo wrote: > >> Hi >> >> When compiling, I get this error: >> >> INPUT("../mozjs-dtrace.o") >> >> ../mozjs-dtrace.o: In function `dtrace_dof_init': >> /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/ >> lib/libdtrace/common/drti.c:(.text+0xe1): >> undefined reference to `elf_version' >> /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/ >> lib/libdtrace/common/drti.c:(.text+0x112): >> undefined reference to `elf_begin' >> /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/ >> lib/libdtrace/common/drti.c:(.text+0x12d): >> undefined reference to `elf_getshdrstrndx' >> /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/ >> lib/libdtrace/common/drti.c:(.text+0x137): >> undefined reference to `elf_nextscn' >> /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/ >> lib/libdtrace/common/drti.c:(.text+0x1a3): >> undefined reference to `elf_getdata' >> /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/ >> lib/libdtrace/common/drti.c:(.text+0x1c8): >> undefined reference to `elf_getdata' >> /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/ >> lib/libdtrace/common/drti.c:(.text+0x1db): >> undefined reference to `elf_getdata' >> /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/ >> lib/libdtrace/common/drti.c:(.text+0x1f7): >> undefined reference to `gelf_getshdr' >> /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/ >> lib/libdtrace/common/drti.c:(.text+0x217): >> undefined reference to `elf_strptr' >> /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/ >> lib/libdtrace/common/drti.c:(.text+0x236): >> undefined reference to `elf_nextscn' >> /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/ >> lib/libdtrace/common/drti.c:(.text+0x302): >> undefined reference to `elf_end' >> /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/ >> lib/libdtrace/common/drti.c:(.text+0x4ef): >> undefined reference to `elf_end' >> ../mozjs-dtrace.o: In function `fixsymbol': >> /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/ >> lib/libdtrace/common/drti.c:(.text+0x65b): >> undefined reference to `gelf_getsym' >> /usr/src/cddl/lib/drti/../../../cddl/contrib/opensolaris/ >> lib/libdtrace/common/drti.c:(.text+0x693): >> undefined reference to `elf_strptr' >> c++: error: linker command failed with exit code 1 (use -v to see >> invocation) >> gmake[5]: *** [js] Error 1 >> gmake[5]: Leaving directory >> `/usr/ports/www/firefox/work/mozilla-release/obj-x86_64- >> unknown-freebsd10.1/js/src/shell' >> gmake[4]: *** [js/src/shell/libs] Error 2 >> >> >> uname: 10.1-BETA1 FreeBSD 10.1-BETA1 #0 r271706 >> >> I=C2=B4ve tried installing devel/libelf but still get the same results. >> >> Would anyone have any suggestions? >> >> Thanks >> > > is GNOMEVFS2 enabled in the build options? I had trouble building it > after the 33.0.1 update on my 10.0 system disabling GNOMEVFS2 which I > wasn't actually using anyway got it through it. I hadn't had time to > investigate farther, and I can't say it blew up in the same spot but if i= t > is disabling it might help. > > -- > Thanks, > Dean E. Weimer > http://www.dweimer.net/ > --=20 Mario Lobo http://www.mallavoodoo.com.br FreeBSD since version 2.2.8 [not Pro-Audio.... YET!!] (99,7% winfoes FREE) From owner-freebsd-questions@FreeBSD.ORG Fri Nov 7 16:46:42 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id D0F0119B for <freebsd-questions@freebsd.org>; Fri, 7 Nov 2014 16:46:42 +0000 (UTC) Received: from bmail.freibergnet.de (bmail.freibergnet.de [46.4.195.14]) by mx1.freebsd.org (Postfix) with ESMTP id 907D0DDB for <freebsd-questions@freebsd.org>; Fri, 7 Nov 2014 16:46:42 +0000 (UTC) Received: from bmail.freibergnet.de (bmail.freibergnet.de [46.4.195.14]) by bmail.freibergnet.de (Postfix) with ESMTP id D811E929B058 for <freebsd-questions@freebsd.org>; Fri, 7 Nov 2014 17:39:27 +0100 (CET) X-Virus-Scanned: amavisd-new at freibergnet.de Received: from bmail.freibergnet.de ([46.4.195.14]) by bmail.freibergnet.de (bmail.freibergnet.de [46.4.195.14]) (amavisd-new, port 10024) with LMTP id 2JCTKlNkkX8T for <freebsd-questions@freebsd.org>; Fri, 7 Nov 2014 17:39:26 +0100 (CET) Received: from beast.freibergnet.de (bmail.freibergnet.de [46.4.195.14]) by bmail.freibergnet.de (Postfix) with ESMTP id 203D6929B04D for <freebsd-questions@freebsd.org>; Fri, 7 Nov 2014 17:39:26 +0100 (CET) Received: by beast.freibergnet.de (Postfix, from userid 201) id 14C4F4B7828; Fri, 7 Nov 2014 17:39:26 +0100 (CET) Date: Fri, 7 Nov 2014 17:39:26 +0100 From: Holm Tiffe <holm@freibergnet.de> To: freebsd-questions@freebsd.org Subject: PCCARD w/o dev id .. Message-ID: <20141107163926.GA2931@beast.freibergnet.de> Reply-To: holm@freibergnet.de Mime-Version: 1.0 Content-Type: text/plain; charset=iso-8859-1 Content-Disposition: inline Content-Transfer-Encoding: 8bit User-Agent: Mutt/1.4.2.3i X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Fri, 07 Nov 2014 16:46:42 -0000 Hi, I have something that appears to be a battery buffered SRAM card with the pccard connector, but it isn't a "real" pccard at all. The card contained the firmware of a density measuring device until the dvice was disconnected from the power long time afer the battery died. Changing the battery is no problem, but I need to read another card and put the firmware data on the currently empty one. Luckily the cards have a small switch to set the R/O. I have an ol Toshiba Sattelite with 9.1-Release on it. I've set hw.cbb.debug to 1 und when I insert the card I get this: I've set the hw.cbb.start_memory to 0xd0000000 too, bu this makes no difference at all. # sysctl hw.cbb hw.cbb.debug: 1 hw.cbb.start_32_io: 4096 hw.cbb.start_16_io: 256 hw.cbb.start_memory: 3489660928 Nov 7 17:32:31 toshi kernel: Status is 0x30000410 Nov 7 17:32:31 toshi kernel: cbb0: card inserted: event=0x00000000, state=30000410 Nov 7 17:32:31 toshi kernel: cbb_pcic_socket_enable: Nov 7 17:32:31 toshi kernel: cbb0: cbb_power: 5V Nov 7 17:32:31 toshi kernel: pccard0: Card has no functions! Nov 7 17:32:31 toshi kernel: cbb0: PC Card card activation failed The question is now how I can map the card memory to somewhere to access the data and make a copy of the firmware? Please put me on the Cc, I'm not subscribed to this list. Kind Regards, Holm -- Technik Service u. Handel Tiffe, www.tsht.de, Holm Tiffe, Freiberger Straße 42, 09600 Oberschöna, USt-Id: DE253710583 www.tsht.de, info@tsht.de, Fax +49 3731 74200, Mobil: 0172 8790 741 From owner-freebsd-questions@FreeBSD.ORG Fri Nov 7 16:56:00 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 46139398 for <freebsd-questions@freebsd.org>; Fri, 7 Nov 2014 16:56:00 +0000 (UTC) Received: from sam.nabble.com (sam.nabble.com [216.139.236.26]) (using TLSv1 with cipher AES256-SHA (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 2884EECB for <freebsd-questions@freebsd.org>; Fri, 7 Nov 2014 16:55:59 +0000 (UTC) Received: from [192.168.236.26] (helo=sam.nabble.com) by sam.nabble.com with esmtp (Exim 4.72) (envelope-from <zaphod@berentweb.com>) id 1XmmpE-0005f2-W0 for freebsd-questions@freebsd.org; Fri, 07 Nov 2014 08:55:52 -0800 Date: Fri, 7 Nov 2014 08:55:52 -0800 (PST) From: Beeblebrox <zaphod@berentweb.com> To: freebsd-questions@freebsd.org Message-ID: <1415379352984-5963426.post@n5.nabble.com> In-Reply-To: <1415281391.3654995.187813213.7FAECF4C@webmail.messagingengine.com> References: <86lhnup5l3.fsf@gly.ftfl.ca> <1415281391.3654995.187813213.7FAECF4C@webmail.messagingengine.com> Subject: Re: local_unbound and dnscrypt-proxy MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Fri, 07 Nov 2014 16:56:00 -0000 There are several issues here: 1. DNSSEC does NOT work with the unbound -> dnscrypt-proxy chain. I don't know why, but both port maintainer and software developer seem to not have taken the issue seriously. For now, disable in unbound.conf: # auto-trust-anchor-file: "/var/unbound/root.key" I'm going to re-open the issue I had filed about this on github. 2. You need to use some flags when starting dnscrypt-proxy. Here's mine, as an example. I have unbound from source (not ports) and dnscrypt-proxy running inside a jail. My resolv.conf points to the dns jail. Jail's rc.conf has below, with d=deamonize, a=listen-IP:port, m=log-level. local_unbound_enable="YES" dnscrypt_proxy_flags="-d -a 192.168.2.97:9040 -R dnscrypt.eu-nl --provider-key=67C0:0F2C:21C5:5481:45DD:7CB4:6A27:1AF2:EB96:9931:40A3:09B6:2B8D:1653:1185:9C66 --logfile=/var/log/dnscrypt-proxy.log -m 0" dnscrypt_proxy_enable="YES" You need to define provider-key for correct dnscrypt-proxy startup (download and review https://github.com/jedisct1/dnscrypt-proxy/blob/master/dnscrypt-resolvers.csv) 3. freebsd-24: I really don't understand your issue fully, but I would try these: * On <Second IP>, set forward-zone to non dnscrypt-proxy IP (8.8.8.8 for example) * Test and debug unbound on <Second IP> to make sure that unbound is forwarding DNS requests. * Once unbound is confirmed as working, re-set dnscrypt-proxy as forward-zone, and configure dnscrypt-proxy as descrbed above. ----- FreeBSD-11-current_amd64_root-on-zfs_RadeonKMS -- View this message in context: http://freebsd.1045724.n5.nabble.com/local-unbound-and-dnscrypt-proxy-tp5961730p5963426.html Sent from the freebsd-questions mailing list archive at Nabble.com. From owner-freebsd-questions@FreeBSD.ORG Fri Nov 7 17:49:16 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 1B68DCD8 for <freebsd-questions@freebsd.org>; Fri, 7 Nov 2014 17:49:16 +0000 (UTC) Received: from mario.brtsvcs.net (mario.brtsvcs.net [199.48.128.182]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id E992863C for <freebsd-questions@freebsd.org>; Fri, 7 Nov 2014 17:49:15 +0000 (UTC) Received: from chombo.houseloki.net (c-73-37-112-64.hsd1.or.comcast.net [73.37.112.64]) by mario.brtsvcs.net (Postfix) with ESMTPSA id 205692C160F for <freebsd-questions@freebsd.org>; Fri, 7 Nov 2014 17:49:08 +0000 (UTC) Received: from [IPv6:2601:7:2580:674:baca:3aff:fe83:bd29] (unknown [IPv6:2601:7:2580:674:baca:3aff:fe83:bd29]) by chombo.houseloki.net (Postfix) with ESMTPSA id 4A541FDD for <freebsd-questions@freebsd.org>; Fri, 7 Nov 2014 09:49:06 -0800 (PST) Message-ID: <545D060F.40101@bluerosetech.com> Date: Fri, 07 Nov 2014 09:49:03 -0800 From: Darren Pilgrim <list_freebsd@bluerosetech.com> User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:24.0) Gecko/20100101 Thunderbird/24.6.0 MIME-Version: 1.0 To: freebsd-questions@freebsd.org Subject: newsyslog oddity after upgrade to 10.0 Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Fri, 07 Nov 2014 17:49:16 -0000 I have a pair of servers with newsyslog.conf entries scheduling rotations daily or monthly (on the first), always at midnight. When the systems were running 9.3, newsyslog would rotate them at exactly midnight (the archive files would have timestamps of 00:00). After a freebsd-update upgrade to 10.0, newsyslog is indeed rotating late: timestamps of 00:58, for example, and the log contents cut off at about 1 am. The fields had been "$D0" or "$M1D0" in 9.3. When I saw this not working right in 10.0, I switched to "@T00" and "@01T00" instead to see if there was some kind of bug in the older format. The problem happens with either specification. It seemed oddly timed with the switch from Daylight Savings Time, so I reset both machines to UTC, rebooted them, confirmed they're running on UTC, but they both still do it. From owner-freebsd-questions@FreeBSD.ORG Fri Nov 7 19:57:30 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 0D9113A6 for <freebsd-questions@freebsd.org>; Fri, 7 Nov 2014 19:57:30 +0000 (UTC) Received: from mail-ie0-x235.google.com (mail-ie0-x235.google.com [IPv6:2607:f8b0:4001:c03::235]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id C95BD3CB for <freebsd-questions@freebsd.org>; Fri, 7 Nov 2014 19:57:29 +0000 (UTC) Received: by mail-ie0-f181.google.com with SMTP id rp18so5858741iec.40 for <freebsd-questions@freebsd.org>; Fri, 07 Nov 2014 11:57:29 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:sender:date:message-id:subject:from:to:content-type; bh=EMPUAzPBd7xbhAiw65Ju1jkvGfpKA/c8wSUTnjCnc7w=; b=lZyyAH6LcIq54m2FACbtilhoeOwIcRy+U5tm3QuC5+bBTCa2jBoTGxmXnMv50ZsPyj 8qtT2joRxaICryQQuB3+/iBYdsTsyjrTxSFMoL1rm6nbgtX59bG2JIXlXtr9zcxzPXO1 w+/JelXHjwW08E5lE/f0RW0+QUh4EL/AIWiXxW+ikehbuXaqTaBlgz0+cx9Qafynhy3D oO/rDurVyc73h2WHy4cVkKNCZCtjvq56InAERQtook/x8/VDu7saaouWQyUq+tfRpLg0 nSNS5LxyiPjc2jxx/fnwYy6dZ8j2bgK8QMSkaYLV8C+c0DSgcc6tBuZXl4azPeiKpXsk rVwQ== MIME-Version: 1.0 X-Received: by 10.43.148.74 with SMTP id kf10mr20751559icc.9.1415390249217; Fri, 07 Nov 2014 11:57:29 -0800 (PST) Sender: vrwmiller@gmail.com Received: by 10.64.165.73 with HTTP; Fri, 7 Nov 2014 11:57:29 -0800 (PST) Date: Fri, 7 Nov 2014 14:57:29 -0500 X-Google-Sender-Auth: 7PjAZpRKIPBHzKrzzBijKJ9xoA0 Message-ID: <CAHzLAVGQyf2ukKScXKbJej27=Q+R81QxiUGR6cfcqiWuSc8CQA@mail.gmail.com> Subject: MK_KERNEL_SYMBOLS can't be set by a user From: Rick Miller <vmiller@hostileadmin.com> To: FreeBSD Questions <freebsd-questions@freebsd.org> Content-Type: text/plain; charset=UTF-8 X-Content-Filtered-By: Mailman/MimeDel 2.1.18-1 X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Fri, 07 Nov 2014 19:57:30 -0000 Hi all, In order to port openstack image support into an internal releng/10.0 branch the following files were copied from HEAD to the internal branch: release/release.conf release/release.sh release/Makefile release/amd64/mk-vmimage.sh Some modifications were made to release.conf such as CHROOTDIR, SRCBRANCH, NODOC, and NOPORTS...nothing major. release.sh errors in the system target with the following: touch packagesystem rm -rf ftp mkdir -p ftp cp *.txz MANIFEST ftp mkdir -p release cd /usr/src/release/.. && make TARGET_ARCH=amd64 TARGET=amd64 installkernel installworld distribution DESTDIR=/usr/obj/usr/src/release/release MK_RESCUE=no MK_KERNEL_SYMBOLS=no MK_PROFILE=no MK_SENDMAIL=no MK_TESTS=no MK_LIB32=no MK_DEBUG_FILES=no make[3]: "/usr/src/share/mk/bsd.own.mk" line 457: MK_KERNEL_SYMBOLS can't be set by a user. *** Error code 1 Stop. make[2]: stopped in /usr/src *** Error code 1 Stop. make[1]: stopped in /usr/src/release *** Error code 1 Stop. make: stopped in /usr/src/release What scenarios would result in this sort of failure? -- Take care Rick Miller From owner-freebsd-questions@FreeBSD.ORG Fri Nov 7 22:00:18 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 0EBC1773 for <freebsd-questions@freebsd.org>; Fri, 7 Nov 2014 22:00:18 +0000 (UTC) Received: from server587.seedhost.eu (server587.seedhost.eu [95.211.207.103]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id C41071DC for <freebsd-questions@freebsd.org>; Fri, 7 Nov 2014 22:00:17 +0000 (UTC) Received: from gmccrm by server587.seedhost.eu with local (Exim 4.82) (envelope-from <gmcbounces@gmail.com>) id 1XmrZj-0007Ld-VW for freebsd-questions@freebsd.org; Fri, 07 Nov 2014 23:00:12 +0100 Date: Fri, 7 Nov 2014 22:00:11 +0000 To: freebsd-questions@freebsd.org From: Pearl Technology Limited <pearltech2014@gmail.com> Subject: 50% OFF - Low Cost Web Development in Bangladesh Message-ID: <b246aed9e0d9c476cd07c2b4733ee527@95.211.207.103> X-Priority: 3 X-Mailer: PHPMailer [version 1.72] X-AntiAbuse: This header was added to track abuse, please include it with any abuse report X-AntiAbuse: Primary Hostname - server587.seedhost.eu X-AntiAbuse: Original Domain - freebsd.org X-AntiAbuse: Originator/Caller UID/GID - [501 512] / [47 12] X-AntiAbuse: Sender Address Domain - gmail.com X-Get-Message-Sender-Via: server587.seedhost.eu: authenticated_id: gmccrm/only user confirmed/virtual account not confirmed MIME-Version: 1.0 Content-Type: text/plain; charset="UTF-8" X-Content-Filtered-By: Mailman/MimeDel 2.1.18-1 X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Fri, 07 Nov 2014 22:00:18 -0000 Responsive, Modern & Clean Websites Starts from TK. 5,500 HOTLINE : +880 2 9612122, +8801795897085 __________________________________________________________________ Smartphone, iPad, Tablets (Mobile Friendly Version) Select your package (offer valid for limited time) Smart (New Development) Smart (Existing Development) Deluxe (New Development) Deluxe (Existing Development) Pages Upto 20 Upto 30 Unlimited Unlimited Category Static Static Dynamic Dynamic Styles/Themes 01 02 02 N/A Domain 01 N/A 01 N/A Hosting 100 MB N/A 01 GB N/A Support 02 Days 04 Days 01 Month 01 Month Price (BDT) 5,500 7,000 13,000 16,000 __________________________________________________________________ E-Commerce Website Starts With 18,000 Taka Start Selling online with E-Commerce Website For any queries, please contact us as follows: Pearl Technology Ltd. Bangladesh Office : Suite # 1119/A, Level # 11, Multiplan Center, 69-71 Mirpur Road, Dhanmondi, Dhaka-1205 Australia Office : P O BOX 2132 North Parramatta,NSW 1750 Phone : Bangladesh : +880 2 9612122, Australia : +61 2 80042443 Mobile : Bangladesh : +8801795897085, Australia : 1800 760 577 (Toll Free) [1]Unsubscribe References 1. mailto:pearltech2014@gmail.com From owner-freebsd-questions@FreeBSD.ORG Sat Nov 8 06:03:24 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id E9ED34E2 for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 06:03:24 +0000 (UTC) Received: from relay2.tomsk.ru (mail.sibptus.tomsk.ru [212.73.124.5]) by mx1.freebsd.org (Postfix) with ESMTP id 571295E5 for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 06:03:22 +0000 (UTC) X-Virus-Scanned: by clamd daemon 0.98.1 for FreeBSD at relay2.tomsk.ru Received: from admin.sibptus.tomsk.ru (account sudakov@sibptus.tomsk.ru [212.73.125.240] verified) by relay2.tomsk.ru (CommuniGate Pro SMTP 5.1.16) with ESMTPSA id 37170482 for freebsd-questions@freebsd.org; Sat, 08 Nov 2014 12:03:20 +0600 Received: from admin.sibptus.tomsk.ru (sudakov@localhost [127.0.0.1]) by admin.sibptus.tomsk.ru (8.14.9/8.14.7) with ESMTP id sA863HAw045444 for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 12:03:20 +0600 (NOVT) (envelope-from vas@mpeks.tomsk.su) Received: (from sudakov@localhost) by admin.sibptus.tomsk.ru (8.14.9/8.14.7/Submit) id sA863H4U045443 for freebsd-questions@freebsd.org; Sat, 8 Nov 2014 12:03:17 +0600 (NOVT) (envelope-from vas@mpeks.tomsk.su) X-Authentication-Warning: admin.sibptus.tomsk.ru: sudakov set sender to vas@mpeks.tomsk.su using -f Date: Sat, 8 Nov 2014 12:03:17 +0600 From: Victor Sudakov <vas@mpeks.tomsk.su> To: freebsd-questions@freebsd.org Subject: freebsd-update and a custom kernel Message-ID: <20141108060317.GA45394@admin.sibptus.tomsk.ru> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Organization: OAO "Svyaztransneft", SibPTUS X-PGP-Key: http://www.dreamwidth.org/pubkey?user=victor_sudakov X-PGP-Fingerprint: 10E3 1171 1273 E007 C2E9 3532 0DA4 F259 9B5E C634 User-Agent: Mutt/1.5.23 (2014-03-12) X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Sat, 08 Nov 2014 06:03:25 -0000 Colleagues, Is it normal that freebsd-update is going to update my custom kernel? Should it not leave it alone? The following files will be updated as part of updating to 9.3-RELEASE-p5: /boot/kernel/kernel /boot/kernel/zfs.ko /usr/bin/ftp /usr/bin/gate-ftp /usr/bin/pftp [root@admin ~] uname -a FreeBSD admin.sibptus.tomsk.ru 9.3-RELEASE-p4 FreeBSD 9.3-RELEASE-p4 #0 r273644: Sun Oct 26 11:37:20 NOVT 2014 root@admin.sibptus.tomsk.ru:/d01/build/obj/d01/build/9.3/sys/ADMIN i386 [root@admin ~] -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:sudakov@sibptus.tomsk.ru From owner-freebsd-questions@FreeBSD.ORG Sat Nov 8 09:27:00 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 2E1E4A22 for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 09:27:00 +0000 (UTC) Received: from mail-pd0-x245.google.com (mail-pd0-x245.google.com [IPv6:2607:f8b0:400e:c02::245]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 00D8D8B7 for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 09:27:00 +0000 (UTC) Received: by mail-pd0-f197.google.com with SMTP id fp1so24958354pdb.4 for <freebsd-questions@freebsd.org>; Sat, 08 Nov 2014 01:26:59 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:message-id:date:subject:from:to:content-type; bh=xmyVPbv4TRkNJufNqL7cNZrx5KL6OYfzmTIqQDRcQt0=; b=NTfmHUV1VB/q/PmREQvjkHMX5zzXuY0tIGmu33rsD+Mv7NR+8wJ0CjY1d6NFCrt/ov umE3EBbSmVWONGDykrHqL+D1TnU9wg6HmypdM6R4b5YJ0vlRa/gYNRPPUedTenogDz5B aNcA06o6tPhsD69w7TdOmj3ro0jzkmHzH59OZjXFqmuQvKBUhSnR1OhUzU3NK6OOlX1v RSRwQgF8v0XTGJWeBTHcLbwwL1ockOitgO/EOyklvtLTKe6Lhxq4TUcG2zifKby+PNXg Zv/x5FUJCu6r6RF2LElQnVQqAg+CwooDmRPgARpcxOlZWwdDAj1yHdINm8s8+Ta9dbLz qMsQ== MIME-Version: 1.0 X-Received: by 10.66.102.42 with SMTP id fl10mr13307980pab.45.1415438819539; Sat, 08 Nov 2014 01:26:59 -0800 (PST) Message-ID: <047d7bd906ec0a40b40507558844@google.com> Date: Sat, 08 Nov 2014 09:26:59 +0000 Subject: www.freebsd.org From: "Margaret | Brandroot Media Ltd" <margaretajgkincaid16@gmail.com> To: freebsd-questions@freebsd.org Content-Type: text/plain; charset=ISO-8859-1; format=flowed; delsp=yes X-Content-Filtered-By: Mailman/MimeDel 2.1.18-1 X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Sat, 08 Nov 2014 09:27:00 -0000 Hi, I recently browsed through your business website and wanted to highlight some key points for consideration. I am sure it will complement your-SEO work to help your website attract only quality visitors and make it scale high on the search .engine results page (SERP) gradually. Would you be interested in receiving the details? Best regards, Margaret | Director MKT Brandroot MEDIA PTY. LTD. Headquarters: Office 7003 X2 Tower, Melbourne Vic. 3000 Other Branches: Sydney | Perth | Brisbane | Adelaide | Hobart Global Offices: China & Hong Kong | USA | | UAE | Singapore Disclaimer: This e-mail is private and confidential. If you are not the intended recipient, please advise us by return e-mail immediately, and delete the e-mail and any attachments without using or disclosing the contents in any way. The views expressed in this e-mail are those of the author, and do not represent those of this company unless this is clearly indicated. You should scan this e-mail and any attachments for viruses. This company accepts no liability for any direct or indirect damage or loss resulting from the use of any attachments to this e-mail. All quotes received from BrandRoot by email are informal and not binding until a formal quote is agreed upon by both the parties. From owner-freebsd-questions@FreeBSD.ORG Sat Nov 8 09:38:24 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 03BB4D5C for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 09:38:24 +0000 (UTC) Received: from mail-qc0-x231.google.com (mail-qc0-x231.google.com [IPv6:2607:f8b0:400d:c01::231]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id AF29F9AE for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 09:38:23 +0000 (UTC) Received: by mail-qc0-f177.google.com with SMTP id l6so3754828qcy.36 for <freebsd-questions@freebsd.org>; Sat, 08 Nov 2014 01:38:22 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=message-id:date:from:user-agent:mime-version:to:subject :content-type:content-transfer-encoding; bh=W27q3c4q1otFZxN6i823xc7AQ97mlJonb+Gt10vDklg=; b=YewobCbJFo4wmeDSoCce7Xe5BfpkWOC6NKbTU3XcEDUDBwOQUqKFhIGNj8gR06MOOq LyIOqcynhAmvTXzRe8PGLLQzKjdChf4foIMAg4boaQfQJcnZMuEmQ4PvZx2khFr9vuwK VxfnBH2X2iu9/FQs26M+JNLvi1/CYwUHVF8Tl1pwzeLLlvPei+qI2sKf1wQNCRDSkrbJ 4oOb7dFds9lQIbaR41i1W3MMdlJkeLjT3L3R6JtFA0kI30S13IbfSfcnXdWYDK+Xts3I +UoiyGd2qhmNwQRdLk+WwW3SbsGuzGvF+fbFhwrht7u8b/QxDm0RDblwxsBX4GxzxUXI vhHg== X-Received: by 10.229.193.5 with SMTP id ds5mr25537275qcb.30.1415439502909; Sat, 08 Nov 2014 01:38:22 -0800 (PST) Received: from [192.168.1.21] (c-76-117-90-8.hsd1.nj.comcast.net. [76.117.90.8]) by mx.google.com with ESMTPSA id u46sm10467431qgd.3.2014.11.08.01.38.22 for <freebsd-questions@freebsd.org> (version=TLSv1 cipher=ECDHE-RSA-RC4-SHA bits=128/128); Sat, 08 Nov 2014 01:38:22 -0800 (PST) Message-ID: <545DE492.9030600@gmail.com> Date: Sat, 08 Nov 2014 04:38:26 -0500 From: "T. Michael Sommers" <tmsommers2@gmail.com> User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:24.0) Gecko/20100101 Thunderbird/24.6.0 MIME-Version: 1.0 To: freebsd-questions@freebsd.org Subject: Problems with partition editor in bsdinstall Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Sat, 08 Nov 2014 09:38:24 -0000 I'm trying to install 10.0 from the FreeBSD Mall DVD on a new computer. I am having trouble with the partition editor. Whenever I try to create or modify a partition there doesn't seem to be any way to make any changes in the dialog box. The default partitions created by the guided method are not suitable, since, for one thing, the swap partition is way too small. Thanks. -- T.M. Sommers -- tmsommers2@gmail.com -- ab2sb From owner-freebsd-questions@FreeBSD.ORG Sat Nov 8 09:41:51 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 57F95DF3 for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 09:41:51 +0000 (UTC) Received: from mail-ie0-x229.google.com (mail-ie0-x229.google.com [IPv6:2607:f8b0:4001:c03::229]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 1E5E2A52 for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 09:41:51 +0000 (UTC) Received: by mail-ie0-f169.google.com with SMTP id tr6so6674498ieb.14 for <freebsd-questions@freebsd.org>; Sat, 08 Nov 2014 01:41:50 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:in-reply-to:references:date:message-id:subject:from:to :cc:content-type; bh=qSHBgm1KXbn4f98Cd4zFXpzlUVEWIQ5arsBSpn7WjH0=; b=uqUhIWKheDBOe+iQAoBfMQWKWN0Z5k1QWO2t2p/s31gz/O6Z5Zau2wxugVXzJmOojJ ZbKHp/ritQ2oPldZw4gib5XxfaSw3zmDVDDCoEYyPIsqBbrsxh90YxejZl3YBc+xvIr2 pgmoHQzWN7iJe8MXVk+7ZZqw9MjQsMUegKdTAAqmjgjjfdfLFMlamMgQjL/1JmBfcqca yQwsJdO3gShW3RBHq8OXzpVuwsl9zdtywcqEZeK1Ekvp99jsTZH/oPG6AWRp5rQOPXft BMSpijvSX11pzIJCU4PfNKsw9yRYge+LKehIHfwnZcGVkxx+/mdDOUOf2OGkTfxAgZ1K gVNg== MIME-Version: 1.0 X-Received: by 10.42.126.147 with SMTP id e19mr10489466ics.34.1415439710460; Sat, 08 Nov 2014 01:41:50 -0800 (PST) Received: by 10.107.166.138 with HTTP; Sat, 8 Nov 2014 01:41:50 -0800 (PST) In-Reply-To: <545DE492.9030600@gmail.com> References: <545DE492.9030600@gmail.com> Date: Fri, 7 Nov 2014 23:41:50 -1000 Message-ID: <CACArijBYXRc4svSwM3_siNJZesgr5uNhypNV05WYhnDN3Pr5Mg@mail.gmail.com> Subject: Re: Problems with partition editor in bsdinstall From: Kent Kuriyama <kent.kuriyama@gmail.com> To: "T. Michael Sommers" <tmsommers2@gmail.com> Content-Type: text/plain; charset=UTF-8 X-Content-Filtered-By: Mailman/MimeDel 2.1.18-1 Cc: FreeBSD Questions <freebsd-questions@freebsd.org> X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Sat, 08 Nov 2014 09:41:51 -0000 Did you use the Tab (or shift + Tab) keys to navigate the cursor to the size field? On Fri, Nov 7, 2014 at 11:38 PM, T. Michael Sommers <tmsommers2@gmail.com> wrote: > I'm trying to install 10.0 from the FreeBSD Mall DVD on a new computer. I > am having trouble with the partition editor. Whenever I try to create or > modify a partition there doesn't seem to be any way to make any changes in > the dialog box. > > The default partitions created by the guided method are not suitable, > since, for one thing, the swap partition is way too small. > > Thanks. > > -- > T.M. Sommers -- tmsommers2@gmail.com -- ab2sb > _______________________________________________ > freebsd-questions@freebsd.org mailing list > http://lists.freebsd.org/mailman/listinfo/freebsd-questions > To unsubscribe, send any mail to "freebsd-questions- > unsubscribe@freebsd.org" > From owner-freebsd-questions@FreeBSD.ORG Sat Nov 8 09:53:51 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 5ADD7FE1 for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 09:53:51 +0000 (UTC) Received: from mx01.qsc.de (mx01.qsc.de [213.148.129.14]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 1EBA9B67 for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 09:53:50 +0000 (UTC) Received: from r56.edvax.de (port-92-195-37-193.dynamic.qsc.de [92.195.37.193]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by mx01.qsc.de (Postfix) with ESMTPS id 68CC43CE33; Sat, 8 Nov 2014 10:53:42 +0100 (CET) Received: from r56.edvax.de (localhost [127.0.0.1]) by r56.edvax.de (8.14.5/8.14.5) with SMTP id sA89rfoP002061; Sat, 8 Nov 2014 10:53:41 +0100 (CET) (envelope-from freebsd@edvax.de) Date: Sat, 8 Nov 2014 10:53:41 +0100 From: Polytropon <freebsd@edvax.de> To: Victor Sudakov <vas@mpeks.tomsk.su> Subject: Re: freebsd-update and a custom kernel Message-Id: <20141108105341.106436d5.freebsd@edvax.de> In-Reply-To: <20141108060317.GA45394@admin.sibptus.tomsk.ru> References: <20141108060317.GA45394@admin.sibptus.tomsk.ru> Reply-To: Polytropon <freebsd@edvax.de> Organization: EDVAX X-Mailer: Sylpheed 3.1.1 (GTK+ 2.24.5; i386-portbld-freebsd8.2) Mime-Version: 1.0 Content-Type: text/plain; charset=US-ASCII Content-Transfer-Encoding: 7bit Cc: freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Sat, 08 Nov 2014 09:53:51 -0000 On Sat, 8 Nov 2014 12:03:17 +0600, Victor Sudakov wrote: > Colleagues, > > Is it normal that freebsd-update is going to update my custom kernel? > Should it not leave it alone? > > The following files will be updated as part of updating to 9.3-RELEASE-p5: > /boot/kernel/kernel > /boot/kernel/zfs.ko > /usr/bin/ftp > /usr/bin/gate-ftp > /usr/bin/pftp > [root@admin ~] uname -a > FreeBSD admin.sibptus.tomsk.ru 9.3-RELEASE-p4 FreeBSD 9.3-RELEASE-p4 #0 r273644: Sun Oct 26 11:37:20 NOVT 2014 root@admin.sibptus.tomsk.ru:/d01/build/obj/d01/build/9.3/sys/ADMIN i386 > [root@admin ~] This depends on your settings in /etc/freebsd-update.conf: If the component "kernel" is enabled, the updated GENERIC kernel will be installed. To avoid this, remove the com- ponent "kernel" from the list. Keep in mind that you _might_ have to rebuild your custom kernel, so it's useful to have the component "src" enabled, which will provide the source version that corresponds to the updated binary installation. -- Polytropon Magdeburg, Germany Happy FreeBSD user since 4.0 Andra moi ennepe, Mousa, ... From owner-freebsd-questions@FreeBSD.ORG Sat Nov 8 10:53:23 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 77E9E9FF for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 10:53:23 +0000 (UTC) Received: from blue.qeng-ho.org (blue.qeng-ho.org [217.155.128.241]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 117B76A for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 10:53:22 +0000 (UTC) Received: from arthur.home.qeng-ho.org (arthur.home.qeng-ho.org [172.23.1.2]) by fileserver.home.qeng-ho.org (8.14.7/8.14.5) with ESMTP id sA8ArBFf010354; Sat, 8 Nov 2014 10:53:12 GMT (envelope-from freebsd@qeng-ho.org) Message-ID: <545DF617.2040205@qeng-ho.org> Date: Sat, 08 Nov 2014 10:53:11 +0000 From: Arthur Chance <freebsd@qeng-ho.org> User-Agent: Mozilla/5.0 (X11; FreeBSD amd64; rv:31.0) Gecko/20100101 Thunderbird/31.2.0 MIME-Version: 1.0 To: Rick Miller <vmiller@hostileadmin.com>, FreeBSD Questions <freebsd-questions@freebsd.org> Subject: Re: MK_KERNEL_SYMBOLS can't be set by a user References: <CAHzLAVGQyf2ukKScXKbJej27=Q+R81QxiUGR6cfcqiWuSc8CQA@mail.gmail.com> In-Reply-To: <CAHzLAVGQyf2ukKScXKbJej27=Q+R81QxiUGR6cfcqiWuSc8CQA@mail.gmail.com> Content-Type: text/plain; charset=utf-8; format=flowed Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Sat, 08 Nov 2014 10:53:23 -0000 On 07/11/2014 19:57, Rick Miller wrote: > Hi all, > > In order to port openstack image support into an internal releng/10.0 > branch the following files were copied from HEAD to the internal branch: > > release/release.conf > release/release.sh > release/Makefile > release/amd64/mk-vmimage.sh > > Some modifications were made to release.conf such as CHROOTDIR, SRCBRANCH, > NODOC, and NOPORTS...nothing major. release.sh errors in the system target > with the following: > > touch packagesystem > rm -rf ftp > mkdir -p ftp > cp *.txz MANIFEST ftp > mkdir -p release > cd /usr/src/release/.. && make TARGET_ARCH=amd64 TARGET=amd64 installkernel > installworld distribution DESTDIR=/usr/obj/usr/src/release/release > MK_RESCUE=no MK_KERNEL_SYMBOLS=no MK_PROFILE=no MK_SENDMAIL=no MK_TESTS=no > MK_LIB32=no MK_DEBUG_FILES=no > make[3]: "/usr/src/share/mk/bsd.own.mk" line 457: MK_KERNEL_SYMBOLS can't > be set by a user. > *** Error code 1 > > Stop. > make[2]: stopped in /usr/src > *** Error code 1 > > Stop. > make[1]: stopped in /usr/src/release > *** Error code 1 > > Stop. > make: stopped in /usr/src/release > > What scenarios would result in this sort of failure? > As the error message says, users can't/mustn't set MK_* symbols. You're supposed to set WITH_* or WITHOUT_* symbols in /etc/src.conf and the makefiles convert those to MK_* form. See man src.conf for details. From owner-freebsd-questions@FreeBSD.ORG Sat Nov 8 10:58:32 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 39C0AAA6 for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 10:58:32 +0000 (UTC) Received: from mail.vlymskerp.net (mail.vlymskerp.net [197.189.214.107]) by mx1.freebsd.org (Postfix) with ESMTP id CA4F1B5 for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 10:58:31 +0000 (UTC) Received: from mail.vlymskerp.net (localhost [127.0.0.1]) by mail.vlymskerp.net (Postfix) with ESMTP id 496BD5F8A6 for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 12:58:22 +0200 (SAST) Received: by mail.vlymskerp.net (Postfix, from userid 5001) id 329535F8C1; Sat, 8 Nov 2014 12:58:22 +0200 (SAST) X-Spam-Checker-Version: SpamAssassin 3.3.1 (2010-03-16) on vps1.vlymskerp.net X-Spam-Level: X-Spam-Status: No, score=-1.0 required=5.0 tests=ALL_TRUSTED,URIBL_BLOCKED autolearn=ham version=3.3.1 Received: from penguin.localnet (8ta-228-22-24.telkomadsl.co.za [197.228.22.24]) by mail.vlymskerp.net (Postfix) with ESMTPSA id 7057F5F8A6 for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 12:58:17 +0200 (SAST) From: Coert <lgroups@vlymskerp.net> To: freeBSD <freebsd-questions@freebsd.org> Subject: shrinking of FreeBSD root partition on GPT Date: Sat, 08 Nov 2014 12:58:12 +0200 Message-ID: <1478337.iqUxg28tON@penguin> User-Agent: KMail/4.13.2 (Linux/3.13.0-24-generic; KDE/4.13.2; x86_64; ; ) MIME-Version: 1.0 Content-Transfer-Encoding: 7Bit Content-Type: text/plain; charset="us-ascii" X-Virus-Scanned: ClamAV using ClamSMTP X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Sat, 08 Nov 2014 10:58:32 -0000 Hello all! Just installed FreeBSD on my home server, (used to be linux) When I did the installation, I used the installer defaults, and it gave me the following: gpart show ada0 => 34 488397101 ada0 GPT (233G) 34 128 1 freebsd-boot (64K) 162 480247680 2 freebsd-ufs (229G) 480247842 8149292 3 freebsd-swap (3.9G) 488397134 1 - free - (512B) I would like to shrink my root partition, (GPT partition 2). After reading through the handbook, I can adapt to shrinking instead of growing, What I am going to try is: 1. Boot from LiveCD 2. do a dump -0 of the current root partition 3. delete the root GPT partition, and create a new smaller GPT partition. 4.do a newfs on the new slice, and restore the dump. Do I need to restore any bootcode after this? I read about bsdlabel, but that seems to be only for MBR scheme? Will this work? or did i miss a step? When that is done, I will create a freebsd-zfs partition in the freed space on the disk. (Will rather still keep freebsd root on UFS) Kind regards, Coert From owner-freebsd-questions@FreeBSD.ORG Sat Nov 8 11:08:26 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id EFB1EB97 for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 11:08:26 +0000 (UTC) Received: from relay2.tomsk.ru (mail.sibptus.tomsk.ru [212.73.124.5]) by mx1.freebsd.org (Postfix) with ESMTP id 5A8C5176 for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 11:08:25 +0000 (UTC) X-Virus-Scanned: by clamd daemon 0.98.1 for FreeBSD at relay2.tomsk.ru Received: from admin.sibptus.tomsk.ru (account sudakov@sibptus.tomsk.ru [212.73.125.240] verified) by relay2.tomsk.ru (CommuniGate Pro SMTP 5.1.16) with ESMTPSA id 37172706; Sat, 08 Nov 2014 17:08:23 +0600 Received: from admin.sibptus.tomsk.ru (sudakov@localhost [127.0.0.1]) by admin.sibptus.tomsk.ru (8.14.9/8.14.7) with ESMTP id sA8B8JdW053406; Sat, 8 Nov 2014 17:08:22 +0600 (NOVT) (envelope-from vas@mpeks.tomsk.su) Received: (from sudakov@localhost) by admin.sibptus.tomsk.ru (8.14.9/8.14.7/Submit) id sA8B8JA6053405; Sat, 8 Nov 2014 17:08:19 +0600 (NOVT) (envelope-from vas@mpeks.tomsk.su) X-Authentication-Warning: admin.sibptus.tomsk.ru: sudakov set sender to vas@mpeks.tomsk.su using -f Date: Sat, 8 Nov 2014 17:08:19 +0600 From: Victor Sudakov <vas@mpeks.tomsk.su> To: Polytropon <freebsd@edvax.de> Subject: Re: freebsd-update and a custom kernel Message-ID: <20141108110819.GA53344@admin.sibptus.tomsk.ru> References: <20141108060317.GA45394@admin.sibptus.tomsk.ru> <20141108105341.106436d5.freebsd@edvax.de> MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <20141108105341.106436d5.freebsd@edvax.de> Organization: OAO "Svyaztransneft", SibPTUS X-PGP-Key: http://www.dreamwidth.org/pubkey?user=victor_sudakov X-PGP-Fingerprint: 10E3 1171 1273 E007 C2E9 3532 0DA4 F259 9B5E C634 User-Agent: Mutt/1.5.23 (2014-03-12) Cc: freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Sat, 08 Nov 2014 11:08:27 -0000 Polytropon wrote: > > > > Is it normal that freebsd-update is going to update my custom kernel? > > Should it not leave it alone? > > > > The following files will be updated as part of updating to 9.3-RELEASE-p5: > > /boot/kernel/kernel > > /boot/kernel/zfs.ko > > /usr/bin/ftp > > /usr/bin/gate-ftp > > /usr/bin/pftp > > [root@admin ~] uname -a > > FreeBSD admin.sibptus.tomsk.ru 9.3-RELEASE-p4 FreeBSD 9.3-RELEASE-p4 #0 r273644: Sun Oct 26 11:37:20 NOVT 2014 root@admin.sibptus.tomsk.ru:/d01/build/obj/d01/build/9.3/sys/ADMIN i386 > > [root@admin ~] > > This depends on your settings in /etc/freebsd-update.conf: > If the component "kernel" is enabled, the updated GENERIC > kernel will be installed. To avoid this, remove the com- > ponent "kernel" from the list. I was under the impression that freebsd-update did not touch locally modified files regardless of the freebsd-update.conf settings. All right, I was wrong. > Keep in mind that you _might_ > have to rebuild your custom kernel, so it's useful to have > the component "src" enabled, which will provide the source > version that corresponds to the updated binary installation. I generally don't need this. I build all custom kernels on a build box and then rsync them away. > > -- > Polytropon > Magdeburg, Germany > Happy FreeBSD user since 4.0 Oh, I am a user since 1.1.5.1 (about 1995) and an admin since 2.0.something :-) -- Victor Sudakov, VAS4-RIPE, VAS47-RIPN sip:sudakov@sibptus.tomsk.ru From owner-freebsd-questions@FreeBSD.ORG Sat Nov 8 13:46:11 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id D0E6EBAB for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 13:46:11 +0000 (UTC) Received: from mail.vlymskerp.net (mail.vlymskerp.net [197.189.214.107]) by mx1.freebsd.org (Postfix) with ESMTP id 6AAE7133 for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 13:46:11 +0000 (UTC) Received: from mail.vlymskerp.net (localhost [127.0.0.1]) by mail.vlymskerp.net (Postfix) with ESMTP id DD1255F8D1 for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 15:46:07 +0200 (SAST) Received: by mail.vlymskerp.net (Postfix, from userid 5001) id C56085F8D3; Sat, 8 Nov 2014 15:46:07 +0200 (SAST) X-Spam-Checker-Version: SpamAssassin 3.3.1 (2010-03-16) on vps1.vlymskerp.net X-Spam-Level: X-Spam-Status: No, score=-1.0 required=5.0 tests=ALL_TRUSTED,URIBL_BLOCKED autolearn=ham version=3.3.1 Received: from penguin.localnet (8ta-228-22-24.telkomadsl.co.za [197.228.22.24]) by mail.vlymskerp.net (Postfix) with ESMTPSA id BCE2C5F8D1 for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 15:46:06 +0200 (SAST) From: Coert <lgroups@vlymskerp.net> To: freebsd-questions@freebsd.org Subject: SOLVED: Re: shrinking of FreeBSD root partition on GPT Date: Sat, 08 Nov 2014 15:46:01 +0200 Message-ID: <3676621.F2aqJK7Mul@penguin> User-Agent: KMail/4.13.2 (Linux/3.13.0-24-generic; KDE/4.13.2; x86_64; ; ) In-Reply-To: <1478337.iqUxg28tON@penguin> References: <1478337.iqUxg28tON@penguin> MIME-Version: 1.0 Content-Transfer-Encoding: 7Bit Content-Type: text/plain; charset="us-ascii" X-Virus-Scanned: ClamAV using ClamSMTP X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Sat, 08 Nov 2014 13:46:11 -0000 On Saturday 08 November 2014 12:58:12 Coert wrote: > Hello all! > > Just installed FreeBSD on my home server, (used to be linux) > > When I did the installation, I used the installer defaults, and it gave me > the following: > gpart show ada0 > => 34 488397101 ada0 GPT (233G) > 34 128 1 freebsd-boot (64K) > 162 480247680 2 freebsd-ufs (229G) > 480247842 8149292 3 freebsd-swap (3.9G) > 488397134 1 - free - (512B) > > I would like to shrink my root partition, (GPT partition 2). > After reading through the handbook, I can adapt to shrinking instead of > growing, > > What I am going to try is: > 1. Boot from LiveCD > 2. do a dump -0 of the current root partition > 3. delete the root GPT partition, and create a new smaller GPT partition. > 4.do a newfs on the new slice, and restore the dump. > > Do I need to restore any bootcode after this? I read about bsdlabel, but > that seems to be only for MBR scheme? > > Will this work? or did i miss a step? > > When that is done, I will create a freebsd-zfs partition in the freed space > on the disk. (Will rather still keep freebsd root on UFS) > > Kind regards, > Coert > _______________________________________________ > freebsd-questions@freebsd.org mailing list > http://lists.freebsd.org/mailman/listinfo/freebsd-questions > To unsubscribe, send any mail to "freebsd-questions-unsubscribe@freebsd.org" Hello, Went as expected! I kept the order of the GPT partitions the same, so no edit of /etc/fstab necessary. And I created the file system with the same settings as the old one. My root partition is now 32GB Also made the swap partition bigger, and have ZFS taking up the rest! Kind regards, Coert From owner-freebsd-questions@FreeBSD.ORG Sat Nov 8 14:06:48 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id AFA1728D for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 14:06:48 +0000 (UTC) Received: from blue.qeng-ho.org (blue.qeng-ho.org [217.155.128.241]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 49BDC30A for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 14:06:47 +0000 (UTC) Received: from arthur.home.qeng-ho.org (arthur.home.qeng-ho.org [172.23.1.2]) by fileserver.home.qeng-ho.org (8.14.7/8.14.5) with ESMTP id sA8E6hZq010657; Sat, 8 Nov 2014 14:06:44 GMT (envelope-from freebsd@qeng-ho.org) Message-ID: <545E2373.8060807@qeng-ho.org> Date: Sat, 08 Nov 2014 14:06:43 +0000 From: Arthur Chance <freebsd@qeng-ho.org> User-Agent: Mozilla/5.0 (X11; FreeBSD amd64; rv:31.0) Gecko/20100101 Thunderbird/31.2.0 MIME-Version: 1.0 To: Coert <lgroups@vlymskerp.net>, freeBSD <freebsd-questions@freebsd.org> Subject: Re: shrinking of FreeBSD root partition on GPT References: <1478337.iqUxg28tON@penguin> In-Reply-To: <1478337.iqUxg28tON@penguin> Content-Type: text/plain; charset=utf-8; format=flowed Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Sat, 08 Nov 2014 14:06:48 -0000 On 08/11/2014 10:58, Coert wrote: > Hello all! > > Just installed FreeBSD on my home server, (used to be linux) > > When I did the installation, I used the installer defaults, and it gave me the > following: > gpart show ada0 > => 34 488397101 ada0 GPT (233G) > 34 128 1 freebsd-boot (64K) > 162 480247680 2 freebsd-ufs (229G) > 480247842 8149292 3 freebsd-swap (3.9G) > 488397134 1 - free - (512B) > > I would like to shrink my root partition, (GPT partition 2). > After reading through the handbook, I can adapt to shrinking instead of > growing, > > What I am going to try is: > 1. Boot from LiveCD > 2. do a dump -0 of the current root partition > 3. delete the root GPT partition, and create a new smaller GPT partition. > 4.do a newfs on the new slice, and restore the dump. > > Do I need to restore any bootcode after this? I read about bsdlabel, but that > seems to be only for MBR scheme? > > Will this work? or did i miss a step? The two levels of bootcode are in the PMBR and partition 1, so resizing partition 2 shouldn't affect it. You can always use gpart bootcode to reinstall if you're worried. > When that is done, I will create a freebsd-zfs partition in the freed space on > the disk. (Will rather still keep freebsd root on UFS) If you don't delete the swap partition and recreate it immediately after the shrunken root partition you're going to be creating a GPT table that's out of order with respect to partition locations. I have absolutely no idea whether this is legitimate, but even if it is I wouldn't personally risk it as you can't guarantee all software will allow for it. On a slightly different subject, are you using GPT partition labels? If not, it might be worth reading Warren Block's excellent article about them here http://www.wonkity.com/~wblock/docs/html/labels.html From owner-freebsd-questions@FreeBSD.ORG Sat Nov 8 14:11:51 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 625AE3CD for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 14:11:51 +0000 (UTC) Received: from mail.vlymskerp.net (mail.vlymskerp.net [197.189.214.107]) by mx1.freebsd.org (Postfix) with ESMTP id F1F333D6 for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 14:11:50 +0000 (UTC) Received: from mail.vlymskerp.net (localhost [127.0.0.1]) by mail.vlymskerp.net (Postfix) with ESMTP id 5DDB55F8D5; Sat, 8 Nov 2014 16:11:49 +0200 (SAST) Received: by mail.vlymskerp.net (Postfix, from userid 5001) id 46BD25F8D8; Sat, 8 Nov 2014 16:11:49 +0200 (SAST) X-Spam-Checker-Version: SpamAssassin 3.3.1 (2010-03-16) on vps1.vlymskerp.net X-Spam-Level: X-Spam-Status: No, score=-1.0 required=5.0 tests=ALL_TRUSTED,URIBL_BLOCKED autolearn=ham version=3.3.1 Received: from penguin.localnet (8ta-228-22-24.telkomadsl.co.za [197.228.22.24]) by mail.vlymskerp.net (Postfix) with ESMTPSA id 2A4445F8D5; Sat, 8 Nov 2014 16:11:48 +0200 (SAST) From: Coert <lgroups@vlymskerp.net> To: freebsd-questions@freebsd.org Subject: Re: shrinking of FreeBSD root partition on GPT Date: Sat, 08 Nov 2014 16:11:43 +0200 Message-ID: <3334002.kS950WBlpO@penguin> User-Agent: KMail/4.13.2 (Linux/3.13.0-24-generic; KDE/4.13.2; x86_64; ; ) In-Reply-To: <545E2373.8060807@qeng-ho.org> References: <1478337.iqUxg28tON@penguin> <545E2373.8060807@qeng-ho.org> MIME-Version: 1.0 Content-Transfer-Encoding: 7Bit Content-Type: text/plain; charset="us-ascii" X-Virus-Scanned: ClamAV using ClamSMTP Cc: Arthur Chance <freebsd@qeng-ho.org> X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Sat, 08 Nov 2014 14:11:51 -0000 On Saturday 08 November 2014 14:06:43 Arthur Chance wrote: > On 08/11/2014 10:58, Coert wrote: > > Hello all! > > > > Just installed FreeBSD on my home server, (used to be linux) > > > > When I did the installation, I used the installer defaults, and it gave me > > the following: > > gpart show ada0 > > => 34 488397101 ada0 GPT (233G) > > > > 34 128 1 freebsd-boot (64K) > > > > 162 480247680 2 freebsd-ufs (229G) > > > > 480247842 8149292 3 freebsd-swap (3.9G) > > 488397134 1 - free - (512B) > > > > I would like to shrink my root partition, (GPT partition 2). > > After reading through the handbook, I can adapt to shrinking instead of > > growing, > > > > What I am going to try is: > > 1. Boot from LiveCD > > 2. do a dump -0 of the current root partition > > 3. delete the root GPT partition, and create a new smaller GPT partition. > > 4.do a newfs on the new slice, and restore the dump. > > > > Do I need to restore any bootcode after this? I read about bsdlabel, but > > that seems to be only for MBR scheme? > > > > Will this work? or did i miss a step? > > The two levels of bootcode are in the PMBR and partition 1, so resizing > partition 2 shouldn't affect it. You can always use gpart bootcode to > reinstall if you're worried. > > > When that is done, I will create a freebsd-zfs partition in the freed > > space on the disk. (Will rather still keep freebsd root on UFS) > > If you don't delete the swap partition and recreate it immediately after > the shrunken root partition you're going to be creating a GPT table > that's out of order with respect to partition locations. I have > absolutely no idea whether this is legitimate, but even if it is I > wouldn't personally risk it as you can't guarantee all software will > allow for it. > > On a slightly different subject, are you using GPT partition labels? If > not, it might be worth reading Warren Block's excellent article about > them here > > http://www.wonkity.com/~wblock/docs/html/labels.html Thank you! I am implementing the labeling now. Kind regards, Coert > > > _______________________________________________ > freebsd-questions@freebsd.org mailing list > http://lists.freebsd.org/mailman/listinfo/freebsd-questions > To unsubscribe, send any mail to "freebsd-questions-unsubscribe@freebsd.org" From owner-freebsd-questions@FreeBSD.ORG Sat Nov 8 16:16:50 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id A2F41892 for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 16:16:50 +0000 (UTC) Received: from wonkity.com (wonkity.com [67.158.26.137]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client CN "wonkity.com", Issuer "wonkity.com" (not verified)) by mx1.freebsd.org (Postfix) with ESMTPS id 506C3F44 for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 16:16:49 +0000 (UTC) Received: from wonkity.com (localhost [127.0.0.1]) by wonkity.com (8.14.9/8.14.9) with ESMTP id sA8GGlXZ069106 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-GCM-SHA384 bits=256 verify=NO); Sat, 8 Nov 2014 09:16:47 -0700 (MST) (envelope-from wblock@wonkity.com) Received: from localhost (wblock@localhost) by wonkity.com (8.14.9/8.14.9/Submit) with ESMTP id sA8GGkkf069103; Sat, 8 Nov 2014 09:16:47 -0700 (MST) (envelope-from wblock@wonkity.com) Date: Sat, 8 Nov 2014 09:16:46 -0700 (MST) From: Warren Block <wblock@wonkity.com> To: Coert <lgroups@vlymskerp.net> Subject: Re: shrinking of FreeBSD root partition on GPT In-Reply-To: <3334002.kS950WBlpO@penguin> Message-ID: <alpine.BSF.2.11.1411080914030.61254@wonkity.com> References: <1478337.iqUxg28tON@penguin> <545E2373.8060807@qeng-ho.org> <3334002.kS950WBlpO@penguin> User-Agent: Alpine 2.11 (BSF 23 2013-08-11) MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII; format=flowed X-Greylist: Sender IP whitelisted, not delayed by milter-greylist-4.4.3 (wonkity.com [127.0.0.1]); Sat, 08 Nov 2014 09:16:47 -0700 (MST) Cc: freebsd-questions@freebsd.org, Arthur Chance <freebsd@qeng-ho.org> X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Sat, 08 Nov 2014 16:16:50 -0000 On Sat, 8 Nov 2014, Coert wrote: >> On a slightly different subject, are you using GPT partition labels? If >> not, it might be worth reading Warren Block's excellent article about >> them here >> >> http://www.wonkity.com/~wblock/docs/html/labels.html > > Thank you! I am implementing the labeling now. That article talks about filesystem labels. GPT labels are created with gpart(8). GPT labels do not take any extra space for metadata and do not require a filesystem, so they are more versatile. I don't have an article on them specifically, but the usage is shown here: http://www.wonkity.com/~wblock/docs/html/disksetup.html From owner-freebsd-questions@FreeBSD.ORG Sat Nov 8 16:46:32 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 7FC661CA for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 16:46:32 +0000 (UTC) Received: from blue.qeng-ho.org (blue.qeng-ho.org [217.155.128.241]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 1689220D for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 16:46:31 +0000 (UTC) Received: from arthur.home.qeng-ho.org (arthur.home.qeng-ho.org [172.23.1.2]) by fileserver.home.qeng-ho.org (8.14.7/8.14.5) with ESMTP id sA8GkSpr010887; Sat, 8 Nov 2014 16:46:29 GMT (envelope-from freebsd@qeng-ho.org) Message-ID: <545E48E4.8020704@qeng-ho.org> Date: Sat, 08 Nov 2014 16:46:28 +0000 From: Arthur Chance <freebsd@qeng-ho.org> User-Agent: Mozilla/5.0 (X11; FreeBSD amd64; rv:31.0) Gecko/20100101 Thunderbird/31.2.0 MIME-Version: 1.0 To: Warren Block <wblock@wonkity.com>, Coert <lgroups@vlymskerp.net> Subject: Re: shrinking of FreeBSD root partition on GPT References: <1478337.iqUxg28tON@penguin> <545E2373.8060807@qeng-ho.org> <3334002.kS950WBlpO@penguin> <alpine.BSF.2.11.1411080914030.61254@wonkity.com> In-Reply-To: <alpine.BSF.2.11.1411080914030.61254@wonkity.com> Content-Type: text/plain; charset=utf-8; format=flowed Content-Transfer-Encoding: 7bit Cc: freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Sat, 08 Nov 2014 16:46:32 -0000 On 08/11/2014 16:16, Warren Block wrote: > On Sat, 8 Nov 2014, Coert wrote: > >>> On a slightly different subject, are you using GPT partition labels? If >>> not, it might be worth reading Warren Block's excellent article about >>> them here >>> >>> http://www.wonkity.com/~wblock/docs/html/labels.html >> >> Thank you! I am implementing the labeling now. > > That article talks about filesystem labels. GPT labels are created with > gpart(8). GPT labels do not take any extra space for metadata and do > not require a filesystem, so they are more versatile. I don't have an > article on them specifically, but the usage is shown here: > http://www.wonkity.com/~wblock/docs/html/disksetup.html Slaps forehead. I answered the OP quickly and didn't check. Thanks for catching that Warren. From owner-freebsd-questions@FreeBSD.ORG Sat Nov 8 18:46:28 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id ECF925E1 for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 18:46:28 +0000 (UTC) Received: from wonkity.com (wonkity.com [67.158.26.137]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client CN "wonkity.com", Issuer "wonkity.com" (not verified)) by mx1.freebsd.org (Postfix) with ESMTPS id 9EF3DE3C for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 18:46:28 +0000 (UTC) Received: from wonkity.com (localhost [127.0.0.1]) by wonkity.com (8.14.9/8.14.9) with ESMTP id sA8IkQXu006250 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-GCM-SHA384 bits=256 verify=NO); Sat, 8 Nov 2014 11:46:26 -0700 (MST) (envelope-from wblock@wonkity.com) Received: from localhost (wblock@localhost) by wonkity.com (8.14.9/8.14.9/Submit) with ESMTP id sA8IkNv3006196; Sat, 8 Nov 2014 11:46:25 -0700 (MST) (envelope-from wblock@wonkity.com) Date: Sat, 8 Nov 2014 11:46:23 -0700 (MST) From: Warren Block <wblock@wonkity.com> To: Arthur Chance <freebsd@qeng-ho.org> Subject: Re: shrinking of FreeBSD root partition on GPT In-Reply-To: <545E48E4.8020704@qeng-ho.org> Message-ID: <alpine.BSF.2.11.1411081144540.5769@wonkity.com> References: <1478337.iqUxg28tON@penguin> <545E2373.8060807@qeng-ho.org> <3334002.kS950WBlpO@penguin> <alpine.BSF.2.11.1411080914030.61254@wonkity.com> <545E48E4.8020704@qeng-ho.org> User-Agent: Alpine 2.11 (BSF 23 2013-08-11) MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII; format=flowed X-Greylist: Sender IP whitelisted, not delayed by milter-greylist-4.4.3 (wonkity.com [127.0.0.1]); Sat, 08 Nov 2014 11:46:26 -0700 (MST) Cc: Coert <lgroups@vlymskerp.net>, freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Sat, 08 Nov 2014 18:46:29 -0000 On Sat, 8 Nov 2014, Arthur Chance wrote: > On 08/11/2014 16:16, Warren Block wrote: >> On Sat, 8 Nov 2014, Coert wrote: >> >>>> On a slightly different subject, are you using GPT partition labels? If >>>> not, it might be worth reading Warren Block's excellent article about >>>> them here >>>> >>>> http://www.wonkity.com/~wblock/docs/html/labels.html >>> >>> Thank you! I am implementing the labeling now. >> >> That article talks about filesystem labels. GPT labels are created with >> gpart(8). GPT labels do not take any extra space for metadata and do >> not require a filesystem, so they are more versatile. I don't have an >> article on them specifically, but the usage is shown here: >> http://www.wonkity.com/~wblock/docs/html/disksetup.html > > Slaps forehead. I answered the OP quickly and didn't check. Thanks for > catching that Warren. There's nothing wrong with filesystem labels, just wanted to clarify the difference. From owner-freebsd-questions@FreeBSD.ORG Sat Nov 8 20:37:21 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id A20D7D94 for <questions@freebsd.org>; Sat, 8 Nov 2014 20:37:21 +0000 (UTC) Received: from mx1.blackfoot.net (mx1.blackfoot.net [216.14.232.10]) (using TLSv1 with cipher ECDHE-RSA-AES256-SHA (256/256 bits)) (Client CN "spam.blackfoot.net", Issuer "GeoTrust DV SSL CA" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 6EC589DE for <questions@freebsd.org>; Sat, 8 Nov 2014 20:37:20 +0000 (UTC) Received: from blackfoot.vision.net ([216.220.3.42]) by mx1.blackfoot.net ({9cf3d135-7b6e-4041-a57b-61a932741f4e}) via TCP (outbound) with ESMTP id 20141108203344476 for <questions@freebsd.org>; Sat, 08 Nov 2014 20:33:44 +0000 X-RC-FROM: <vagabond@blackfoot.net> X-RC-RCPT: <questions@freebsd.org> Received: from webmail.blackfoot.net (unknown [10.64.25.30]) (Authenticated sender: vagabond) by blackfoot.vision.net (Postfix) with ESMTPA id 5317976E0 for <questions@freebsd.org>; Sat, 8 Nov 2014 13:33:44 -0700 (MST) Received: from 66.109.141.62 (SquirrelMail authenticated user vagabond) by webmail.blackfoot.net with HTTP; Sat, 8 Nov 2014 13:33:44 -0700 Message-ID: <8c6d3f5dbb1ebe2feac628f7ca52eb22.squirrel@webmail.blackfoot.net> Date: Sat, 8 Nov 2014 13:33:44 -0700 Subject: ARP only, no ICMP packets? From: "Gary Aitken" <vagabond@blackfoot.net> To: "Freebsd Questions" <questions@freebsd.org> User-Agent: SquirrelMail/1.4.22 MIME-Version: 1.0 Content-Type: text/plain;charset=utf-8 Content-Transfer-Encoding: 8bit X-Priority: 3 (Normal) Importance: Normal X-MAG-OUTBOUND: blackfoot.redcondor.net@216.220.3.42/32 X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Sat, 08 Nov 2014 20:37:21 -0000 After reconfiguring my internal network to private ip addrs, I'm trying to reconfigure a DLink wireless access point. At first I tried using the old IP addrs and configuring my workstation with an alias on the old network. That didn't work, so I've reset the wap. The manual says default addr is 192.168.0.50 netmask 255.255.255.0 The box I'm trying to access it from has an ip of 192.168.151.122/24. I've added an alias to the interface for the 192.168.0 subnet: Routing tables Internet: Destination Gateway Flags Refs Use Netif Expire default 192.168.151.101 UGS 0 0 re0 127.0.0.1 link#10 UH 0 59752 lo0 192.168.0.0/24 link#1 U 0 121 re0 192.168.0.122 link#1 UHS 0 0 lo0 192.168.151.0/24 link#1 U 0 54 re0 192.168.151.122 link#1 UHS 0 0 lo0 When I attempt to access the WAP, I see only ARP requests, and it appears not to answer: $ arp -n -a ? (192.168.151.122) at f4:6d:04:78:70:62 on re0 permanent [ethernet] ? (192.168.0.122) at f4:6d:04:78:70:62 on re0 permanent [ethernet] ? (192.168.151.101) at 00:01:02:c2:a1:a8 on re0 expires in 339 seconds [ethernet] # tcpdump -flnt -i re0 | grep 192.168.0.50 tcpdump: verbose output suppressed, use -v or -vv for full protocol decode listening on re0, link-type EN10MB (Ethernet), capture size 65535 bytes ARP, Request who-has 192.168.0.50 tell 192.168.0.122, length 28 I've tried this in a number of ways, all with the same results: Both boxes connected to network switch Boxes connected directly using crossover cable Both boxes to switch, default (only) ip addr on fbsd box set to 192.168.0.122/24 I've reset the wap a number of times. When it comes on, the LAN / WAN / Power lights appear to blink in a reasonable sequence, and the LAN light blinks when ever an ARP packet goes out. I have difficulty believing the wap unit is defective, as "it worked before I changed all the addresses..." Suggestions? From owner-freebsd-questions@FreeBSD.ORG Sat Nov 8 21:24:54 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 3622A8CD for <questions@freebsd.org>; Sat, 8 Nov 2014 21:24:54 +0000 (UTC) Received: from www81.your-server.de (www81.your-server.de [213.133.104.81]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id EA004E2B for <questions@freebsd.org>; Sat, 8 Nov 2014 21:24:53 +0000 (UTC) Received: from [77.23.74.131] (helo=michael-think.fritz.box) by www81.your-server.de with esmtpsa (TLSv1:DHE-RSA-AES256-SHA:256) (Exim 4.80.1) (envelope-from <gmx@ross.cx>) id 1XnDUx-0000Vf-B7; Sat, 08 Nov 2014 22:24:43 +0100 Content-Type: text/plain; charset=iso-8859-15; format=flowed; delsp=yes To: "Freebsd Questions" <questions@freebsd.org>, "Gary Aitken" <vagabond@blackfoot.net> Subject: Re: ARP only, no ICMP packets? References: <8c6d3f5dbb1ebe2feac628f7ca52eb22.squirrel@webmail.blackfoot.net> Date: Sat, 08 Nov 2014 22:24:34 +0100 MIME-Version: 1.0 Content-Transfer-Encoding: 7bit From: "Michael Ross" <gmx@ross.cx> Message-ID: <op.xo0y28eig7njmm@michael-think.fritz.box> In-Reply-To: <8c6d3f5dbb1ebe2feac628f7ca52eb22.squirrel@webmail.blackfoot.net> User-Agent: Opera Mail/1.0 (Win32) X-Authenticated-Sender: gmx@ross.cx X-Virus-Scanned: Clear (ClamAV 0.98.4/19601/Sat Nov 8 18:39:13 2014) X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Sat, 08 Nov 2014 21:24:54 -0000 On Sat, 08 Nov 2014 21:33:44 +0100, Gary Aitken <vagabond@blackfoot.net> wrote: > After reconfiguring my internal network to private ip addrs, > I'm trying to reconfigure a DLink wireless access point. > At first I tried using the old IP addrs and configuring my > workstation with an alias on the old network. That didn't > work, so I've reset the wap. The manual says default addr is > 192.168.0.50 netmask 255.255.255.0 > > The box I'm trying to access it from has an ip of 192.168.151.122/24. > I've added an alias to the interface for the 192.168.0 subnet: > > Routing tables > > Internet: > Destination Gateway Flags Refs Use Netif > Expire > default 192.168.151.101 UGS 0 0 re0 > 127.0.0.1 link#10 UH 0 59752 lo0 > 192.168.0.0/24 link#1 U 0 121 re0 > 192.168.0.122 link#1 UHS 0 0 lo0 > 192.168.151.0/24 link#1 U 0 54 re0 > 192.168.151.122 link#1 UHS 0 0 lo0 > > When I attempt to access the WAP, I see only ARP requests, > and it appears not to answer: > > $ arp -n -a > ? (192.168.151.122) at f4:6d:04:78:70:62 on re0 permanent [ethernet] > ? (192.168.0.122) at f4:6d:04:78:70:62 on re0 permanent [ethernet] > ? (192.168.151.101) at 00:01:02:c2:a1:a8 on re0 expires in 339 seconds > [ethernet] > > # tcpdump -flnt -i re0 | grep 192.168.0.50 > tcpdump: verbose output suppressed, use -v or -vv for full protocol > decode > listening on re0, link-type EN10MB (Ethernet), capture size 65535 bytes > ARP, Request who-has 192.168.0.50 tell 192.168.0.122, length 28 No ARP reply... > I have difficulty believing the wap unit is defective, as "it worked > before I changed all the addresses..." Maybe not defective as such, but some DLinks ( mine for example ) ignore everything not originating from their own /24, so unless packets come from 192.168.0.x, they will be silently discarded. Michael From owner-freebsd-questions@FreeBSD.ORG Sat Nov 8 22:27:14 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 702C4402 for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 22:27:14 +0000 (UTC) Received: from mario.brtsvcs.net (mario.brtsvcs.net [199.48.128.182]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 486105F7 for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 22:27:13 +0000 (UTC) Received: from chombo.houseloki.net (c-73-37-112-64.hsd1.or.comcast.net [73.37.112.64]) by mario.brtsvcs.net (Postfix) with ESMTPSA id 00A3C2C160E for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 22:27:05 +0000 (UTC) Received: from [IPv6:2601:7:2580:674:baca:3aff:fe83:bd29] (unknown [IPv6:2601:7:2580:674:baca:3aff:fe83:bd29]) by chombo.houseloki.net (Postfix) with ESMTPSA id 7DF4F197 for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 14:27:03 -0800 (PST) Message-ID: <545E98B1.7080004@bluerosetech.com> Date: Sat, 08 Nov 2014 14:26:57 -0800 From: Darren Pilgrim <list_freebsd@bluerosetech.com> User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:24.0) Gecko/20100101 Thunderbird/24.6.0 MIME-Version: 1.0 To: freebsd-questions@freebsd.org Subject: Cron executing jobs at innacurate times (observing "jitter" of up to 1 hour) Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Sat, 08 Nov 2014 22:27:14 -0000 I recently upgraded a pair of servers from 9.3 to 10.0 via freebsd-update. After the upgrade, I noticed my logs were not rotating on the hour, but at some random time within the hour following the scheduled time (the logs in question were set * for size and $D0 or @T00 for when in newsyslog.conf). Some testing revealed that cron is no longer executing tasks in /etc/crontab on the specified time. For example, a job scheduled to run hourly at the zeroth minute would actually execute sometime within an hour, not on the hour as it used to. I created a simple test to see this behaviour. I have six servers: - catnip (amd64 9.3-p3, freebsd-update only) - chombo (amd64 9.1-P6, source updates only) - pug (amd64 10.0-p10, freebsd-update only) - poodle (amd64 10.0-p10, freebsd-update only) - luigi (i386 10.0-p10, freebsd-update only, Xen VPS) - mario (i386 10.0-p10, freebsd-update only, Xen VPS) The behaviour test: All six have a job in /etc/crontab as follows: * * * * * root date >>/var/log/test/0000 2>&1 That is, log the output of date every minute. For catnip, chombo, pug, and poodle, the logs from 13:50 to 14:05 PST today look like this: Sat Nov 8 13:50:00 PST 2014 Sat Nov 8 13:51:00 PST 2014 Sat Nov 8 13:52:00 PST 2014 Sat Nov 8 13:53:00 PST 2014 Sat Nov 8 13:54:00 PST 2014 Sat Nov 8 13:55:00 PST 2014 Sat Nov 8 13:56:00 PST 2014 Sat Nov 8 13:57:00 PST 2014 Sat Nov 8 13:58:00 PST 2014 Sat Nov 8 13:59:00 PST 2014 Sat Nov 8 14:00:00 PST 2014 Sat Nov 8 14:01:00 PST 2014 Sat Nov 8 14:02:00 PST 2014 Sat Nov 8 14:03:00 PST 2014 Sat Nov 8 14:04:00 PST 2014 Sat Nov 8 14:05:00 PST 2014 This is luigi's: Sat Nov 8 21:51:00 UTC 2014 Sat Nov 8 21:51:55 UTC 2014 Sat Nov 8 21:53:47 UTC 2014 Sat Nov 8 21:54:38 UTC 2014 Sat Nov 8 21:54:59 UTC 2014 Sat Nov 8 21:56:34 UTC 2014 Sat Nov 8 21:57:34 UTC 2014 Sat Nov 8 21:58:29 UTC 2014 Sat Nov 8 22:00:38 UTC 2014 Sat Nov 8 22:00:59 UTC 2014 Sat Nov 8 22:02:47 UTC 2014 Sat Nov 8 22:03:38 UTC 2014 Sat Nov 8 22:04:34 UTC 2014 And this is mario's: Sat Nov 8 21:50:34 UTC 2014 Sat Nov 8 21:51:29 UTC 2014 Sat Nov 8 21:53:34 UTC 2014 Sat Nov 8 21:54:29 UTC 2014 Sat Nov 8 21:56:34 UTC 2014 Sat Nov 8 21:57:34 UTC 2014 Sat Nov 8 21:58:25 UTC 2014 Sat Nov 8 21:59:55 UTC 2014 Sat Nov 8 22:01:51 UTC 2014 Sat Nov 8 22:02:12 UTC 2014 Sat Nov 8 22:03:12 UTC 2014 Sat Nov 8 22:05:00 UTC 2014 Backing off the frequency to every 5 minutes see the variance increase to a couple of minutes. For the production jobs running hourly, variance is 0 to 59 minutes late. This is particularly problematic for things like newsyslog. All machines have ntpd running and synchronized. All of the machines except luigi run cron with the defaults. For luigi, the following is in /etc/rc.conf: cron_dst="NO" cron_flags="-J 1 -o" My HV provider hasn't heard of anything causing this. Before I go reloading things back to 9.3, has anyone observed this? From owner-freebsd-questions@FreeBSD.ORG Sat Nov 8 22:27:30 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id 306DA48E for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 22:27:30 +0000 (UTC) Received: from mario.brtsvcs.net (mario.brtsvcs.net [199.48.128.182]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 084B3605 for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 22:27:30 +0000 (UTC) Received: from chombo.houseloki.net (unknown [IPv6:2601:7:400:e60:21c:c0ff:fe7f:96ee]) by mario.brtsvcs.net (Postfix) with ESMTPSA id 3B8182C165F for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 22:27:29 +0000 (UTC) Received: from [IPv6:2601:7:2580:674:baca:3aff:fe83:bd29] (unknown [IPv6:2601:7:2580:674:baca:3aff:fe83:bd29]) by chombo.houseloki.net (Postfix) with ESMTPSA id D5AC3199 for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 14:27:27 -0800 (PST) Message-ID: <545E98CC.6050809@bluerosetech.com> Date: Sat, 08 Nov 2014 14:27:24 -0800 From: Darren Pilgrim <list_freebsd@bluerosetech.com> User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:24.0) Gecko/20100101 Thunderbird/24.6.0 MIME-Version: 1.0 To: freebsd-questions@freebsd.org Subject: Re: newsyslog oddity after upgrade to 10.0 References: <545D060F.40101@bluerosetech.com> In-Reply-To: <545D060F.40101@bluerosetech.com> Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Sat, 08 Nov 2014 22:27:30 -0000 On 11/7/2014 9:49 AM, Darren Pilgrim wrote: > I have a pair of servers with newsyslog.conf entries scheduling > rotations daily or monthly (on the first), always at midnight. When the > systems were running 9.3, newsyslog would rotate them at exactly > midnight (the archive files would have timestamps of 00:00). After a > freebsd-update upgrade to 10.0, newsyslog is indeed rotating late: > timestamps of 00:58, for example, and the log contents cut off at about > 1 am. > > The fields had been "$D0" or "$M1D0" in 9.3. When I saw this not > working right in 10.0, I switched to "@T00" and "@01T00" instead to see > if there was some kind of bug in the older format. The problem happens > with either specification. > > It seemed oddly timed with the switch from Daylight Savings Time, so I > reset both machines to UTC, rebooted them, confirmed they're running on > UTC, but they both still do it. Strike this. It's a problem with cron. From owner-freebsd-questions@FreeBSD.ORG Sat Nov 8 22:55:55 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id D6294A0E for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 22:55:55 +0000 (UTC) Received: from www81.your-server.de (www81.your-server.de [213.133.104.81]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 957298F6 for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 22:55:54 +0000 (UTC) Received: from [77.23.74.131] (helo=michael-think.fritz.box) by www81.your-server.de with esmtpsa (TLSv1:DHE-RSA-AES256-SHA:256) (Exim 4.80.1) (envelope-from <gmx@ross.cx>) id 1XnEvA-0005Tm-VW for freebsd-questions@freebsd.org; Sat, 08 Nov 2014 23:55:53 +0100 Content-Type: text/plain; charset=iso-8859-15; format=flowed; delsp=yes To: freebsd-questions@freebsd.org Subject: Re: Cron executing jobs at innacurate times (observing "jitter" of up to 1 hour) References: <545E98B1.7080004@bluerosetech.com> Date: Sat, 08 Nov 2014 23:55:44 +0100 MIME-Version: 1.0 Content-Transfer-Encoding: 7bit From: "Michael Ross" <gmx@ross.cx> Message-ID: <op.xo03a6svg7njmm@michael-think.fritz.box> In-Reply-To: <545E98B1.7080004@bluerosetech.com> User-Agent: Opera Mail/1.0 (Win32) X-Authenticated-Sender: gmx@ross.cx X-Virus-Scanned: Clear (ClamAV 0.98.4/19601/Sat Nov 8 18:39:13 2014) X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Sat, 08 Nov 2014 22:55:56 -0000 On Sat, 08 Nov 2014 23:26:57 +0100, Darren Pilgrim <list_freebsd@bluerosetech.com> wrote: > I recently upgraded a pair of servers from 9.3 to 10.0 via > freebsd-update. After the upgrade, I noticed my logs were not rotating > on the hour, but at some random time within the hour following the > scheduled time (the logs in question were set * for size and $D0 or @T00 > for when in newsyslog.conf). > I remembered reading this bug, which is close to what you describe: https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=194236 In short: 10.0-RELEASE on i386 runs cron jobs at wrong time. Reported solved in 10.1, so maybe try this. Michael > Some testing revealed that cron is no longer executing tasks in > /etc/crontab on the specified time. For example, a job scheduled to run > hourly at the zeroth minute would actually execute sometime within an > hour, not on the hour as it used to. > > I created a simple test to see this behaviour. I have six servers: > > - catnip (amd64 9.3-p3, freebsd-update only) > - chombo (amd64 9.1-P6, source updates only) > - pug (amd64 10.0-p10, freebsd-update only) > - poodle (amd64 10.0-p10, freebsd-update only) > - luigi (i386 10.0-p10, freebsd-update only, Xen VPS) > - mario (i386 10.0-p10, freebsd-update only, Xen VPS) > > The behaviour test: > > All six have a job in /etc/crontab as follows: > > * * * * * root date >>/var/log/test/0000 2>&1 > > That is, log the output of date every minute. > > For catnip, chombo, pug, and poodle, the logs from 13:50 to 14:05 PST > today look like this: > > Sat Nov 8 13:50:00 PST 2014 > Sat Nov 8 13:51:00 PST 2014 > Sat Nov 8 13:52:00 PST 2014 > Sat Nov 8 13:53:00 PST 2014 > Sat Nov 8 13:54:00 PST 2014 > Sat Nov 8 13:55:00 PST 2014 > Sat Nov 8 13:56:00 PST 2014 > Sat Nov 8 13:57:00 PST 2014 > Sat Nov 8 13:58:00 PST 2014 > Sat Nov 8 13:59:00 PST 2014 > Sat Nov 8 14:00:00 PST 2014 > Sat Nov 8 14:01:00 PST 2014 > Sat Nov 8 14:02:00 PST 2014 > Sat Nov 8 14:03:00 PST 2014 > Sat Nov 8 14:04:00 PST 2014 > Sat Nov 8 14:05:00 PST 2014 > > This is luigi's: > > Sat Nov 8 21:51:00 UTC 2014 > Sat Nov 8 21:51:55 UTC 2014 > Sat Nov 8 21:53:47 UTC 2014 > Sat Nov 8 21:54:38 UTC 2014 > Sat Nov 8 21:54:59 UTC 2014 > Sat Nov 8 21:56:34 UTC 2014 > Sat Nov 8 21:57:34 UTC 2014 > Sat Nov 8 21:58:29 UTC 2014 > Sat Nov 8 22:00:38 UTC 2014 > Sat Nov 8 22:00:59 UTC 2014 > Sat Nov 8 22:02:47 UTC 2014 > Sat Nov 8 22:03:38 UTC 2014 > Sat Nov 8 22:04:34 UTC 2014 > > And this is mario's: > > Sat Nov 8 21:50:34 UTC 2014 > Sat Nov 8 21:51:29 UTC 2014 > Sat Nov 8 21:53:34 UTC 2014 > Sat Nov 8 21:54:29 UTC 2014 > Sat Nov 8 21:56:34 UTC 2014 > Sat Nov 8 21:57:34 UTC 2014 > Sat Nov 8 21:58:25 UTC 2014 > Sat Nov 8 21:59:55 UTC 2014 > Sat Nov 8 22:01:51 UTC 2014 > Sat Nov 8 22:02:12 UTC 2014 > Sat Nov 8 22:03:12 UTC 2014 > Sat Nov 8 22:05:00 UTC 2014 > > Backing off the frequency to every 5 minutes see the variance increase > to a couple of minutes. For the production jobs running hourly, > variance is 0 to 59 minutes late. This is particularly problematic for > things like newsyslog. All machines have ntpd running and synchronized. > All of the machines except luigi run cron with the defaults. For > luigi, the following is in /etc/rc.conf: > > cron_dst="NO" > cron_flags="-J 1 -o" > > My HV provider hasn't heard of anything causing this. Before I go > reloading things back to 9.3, has anyone observed this? > _______________________________________________ > freebsd-questions@freebsd.org mailing list > http://lists.freebsd.org/mailman/listinfo/freebsd-questions > To unsubscribe, send any mail to > "freebsd-questions-unsubscribe@freebsd.org" From owner-freebsd-questions@FreeBSD.ORG Sat Nov 8 23:34:56 2014 Return-Path: <owner-freebsd-questions@FreeBSD.ORG> Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [8.8.178.115]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by hub.freebsd.org (Postfix) with ESMTPS id ADFADDED for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 23:34:56 +0000 (UTC) Received: from fly.radel.com (fly.radel.com [70.184.242.170]) (using TLSv1 with cipher RC4-SHA (128/128 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 3FDEBC46 for <freebsd-questions@freebsd.org>; Sat, 8 Nov 2014 23:34:55 +0000 (UTC) X-CGP-ClamAV-Result: CLEAN X-VirusScanner: Niversoft's CGPClamav Helper v1.16.8 (ClamAV engine v0.97.8) Received: from [2001:470:880a:4389:386a:8119:d296:57fd] (account jon@radel.com HELO gravenstein.local) by radel.com (CommuniGate Pro SMTP 6.0.4 _community_) with ESMTPSA id 460363; Sat, 08 Nov 2014 23:34:48 +0000 Message-ID: <545EA898.90103@radel.com> Date: Sat, 08 Nov 2014 18:34:48 -0500 From: Jon Radel <jon@radel.com> User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.9; rv:24.0) Gecko/20100101 Thunderbird/24.6.0 MIME-Version: 1.0 To: freebsd-questions@freebsd.org Subject: Re: ARP only, no ICMP packets? References: <8c6d3f5dbb1ebe2feac628f7ca52eb22.squirrel@webmail.blackfoot.net> In-Reply-To: <8c6d3f5dbb1ebe2feac628f7ca52eb22.squirrel@webmail.blackfoot.net> Content-Type: multipart/signed; protocol="application/pkcs7-signature"; micalg=sha1; boundary="------------ms020602020408010602070807" Cc: vagabond@blackfoot.net X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.18-1 Precedence: list List-Id: User questions <freebsd-questions.freebsd.org> List-Unsubscribe: <http://lists.freebsd.org/mailman/options/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=unsubscribe> List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions/> List-Post: <mailto:freebsd-questions@freebsd.org> List-Help: <mailto:freebsd-questions-request@freebsd.org?subject=help> List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>, <mailto:freebsd-questions-request@freebsd.org?subject=subscribe> X-List-Received-Date: Sat, 08 Nov 2014 23:34:56 -0000 This is a cryptographically signed message in MIME format. --------------ms020602020408010602070807 Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: quoted-printable On 11/8/14, 3:33 PM, Gary Aitken wrote: > I've tried this in a number of ways, all with the same results: > > Both boxes connected to network switch > Boxes connected directly using crossover cable > Both boxes to switch, default (only) ip addr on fbsd box set to > 192.168.0.122/24 > > Have you swept the /24 on the off chance that the manual is fibbing=20 about 192.168.0.50 but not about it being some address in=20 192.168.0.0/24? If that fails, try 192.168.1.0/24. Other addresses=20 D-Link seems to favor as the default: 192.168.0.1 192.168.0.30 192.168.1.1 --Jon Radel jon@radel.com --------------ms020602020408010602070807 Content-Type: application/pkcs7-signature; name="smime.p7s" Content-Transfer-Encoding: base64 Content-Disposition: attachment; filename="smime.p7s" Content-Description: S/MIME Cryptographic Signature MIAGCSqGSIb3DQEHAqCAMIACAQExCzAJBgUrDgMCGgUAMIAGCSqGSIb3DQEHAQAAoIILBDCC BRowggQCoAMCAQICEG0Z6qcZT2ozIuYiMnqqcd4wDQYJKoZIhvcNAQEFBQAwga4xCzAJBgNV BAYTAlVTMQswCQYDVQQIEwJVVDEXMBUGA1UEBxMOU2FsdCBMYWtlIENpdHkxHjAcBgNVBAoT FVRoZSBVU0VSVFJVU1QgTmV0d29yazEhMB8GA1UECxMYaHR0cDovL3d3dy51c2VydHJ1c3Qu Y29tMTYwNAYDVQQDEy1VVE4tVVNFUkZpcnN0LUNsaWVudCBBdXRoZW50aWNhdGlvbiBhbmQg RW1haWwwHhcNMTEwNDI4MDAwMDAwWhcNMjAwNTMwMTA0ODM4WjCBkzELMAkGA1UEBhMCR0Ix GzAZBgNVBAgTEkdyZWF0ZXIgTWFuY2hlc3RlcjEQMA4GA1UEBxMHU2FsZm9yZDEaMBgGA1UE ChMRQ09NT0RPIENBIExpbWl0ZWQxOTA3BgNVBAMTMENPTU9ETyBDbGllbnQgQXV0aGVudGlj YXRpb24gYW5kIFNlY3VyZSBFbWFpbCBDQTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoC ggEBAJKEhFtLV5jUXi+LpOFAyKNTWF9mZfEyTvefMn1V0HhMVbdClOD5J3EHxcZppLkyxPFA GpDMJ1Zifxe1cWmu5SAb5MtjXmDKokH2auGj/7jfH0htZUOMKi4rYzh337EXrMLaggLW1DJq 1GdvIBOPXDX65VSAr9hxCh03CgJQU2yVHakQFLSZlVkSMf8JotJM3FLb3uJAAVtIaN3FSrTg 7SQfOq9xXwfjrL8UO7AlcWg99A/WF1hGFYE8aIuLgw9teiFX5jSw2zJ+40rhpVJyZCaRTqWS D//gsWD9Gm9oUZljjRqLpcxCm5t9ImPTqaD8zp6Q30QZ9FxbNboW86eb/8ECAwEAAaOCAUsw ggFHMB8GA1UdIwQYMBaAFImCZ33EnSZwAEu0UEh83j2uBG59MB0GA1UdDgQWBBR6E04AdFvG eGNkJ8Ev4qBbvHnFezAOBgNVHQ8BAf8EBAMCAQYwEgYDVR0TAQH/BAgwBgEB/wIBADARBgNV HSAECjAIMAYGBFUdIAAwWAYDVR0fBFEwTzBNoEugSYZHaHR0cDovL2NybC51c2VydHJ1c3Qu Y29tL1VUTi1VU0VSRmlyc3QtQ2xpZW50QXV0aGVudGljYXRpb25hbmRFbWFpbC5jcmwwdAYI KwYBBQUHAQEEaDBmMD0GCCsGAQUFBzAChjFodHRwOi8vY3J0LnVzZXJ0cnVzdC5jb20vVVRO QWRkVHJ1c3RDbGllbnRfQ0EuY3J0MCUGCCsGAQUFBzABhhlodHRwOi8vb2NzcC51c2VydHJ1 c3QuY29tMA0GCSqGSIb3DQEBBQUAA4IBAQCF1r54V1VtM39EUv5C1QaoAQOAivsNsv1Kv/av QUn1G1rF0q0bc24+6SZ85kyYwTAo38v7QjyhJT4KddbQPTmGZtGhm7VNm2+vKGwdr+XqdFqo 2rHA8XV6L566k3nK/uKRHlZ0sviN0+BDchvtj/1gOSBH+4uvOmVIPJg9pSW/ve9g4EnlFsjr P0OD8ODuDcHTzTNfm9C9YGqzO/761Mk6PB/tm/+bSTO+Qik5g+4zaS6CnUVNqGnagBsePdIa XXxHmaWbCG0SmYbWXVcHG6cwvktJRLiQfsrReTjrtDP6oDpdJlieYVUYtCHVmdXgQ0BCML7q peeU0rD+83X5f27nMIIF4jCCBMqgAwIBAgIQUaWQdTU6RvxxeOjTUN4DtDANBgkqhkiG9w0B AQUFADCBkzELMAkGA1UEBhMCR0IxGzAZBgNVBAgTEkdyZWF0ZXIgTWFuY2hlc3RlcjEQMA4G A1UEBxMHU2FsZm9yZDEaMBgGA1UEChMRQ09NT0RPIENBIExpbWl0ZWQxOTA3BgNVBAMTMENP TU9ETyBDbGllbnQgQXV0aGVudGljYXRpb24gYW5kIFNlY3VyZSBFbWFpbCBDQTAeFw0xMjAz MjcwMDAwMDBaFw0xNTAzMjcyMzU5NTlaMIH6MQswCQYDVQQGEwJVUzEOMAwGA1UEERMFMjIx NTAxCzAJBgNVBAgTAlZBMRQwEgYDVQQHEwtTcHJpbmdmaWVsZDEaMBgGA1UECRMRNjkxNyBS aWRnZXdheSBEci4xFTATBgNVBAoTDEpvbiBULiBSYWRlbDEyMDAGA1UECxMpSXNzdWVkIHRo cm91Z2ggSm9uIFQuIFJhZGVsIEUtUEtJIE1hbmFnZXIxHzAdBgNVBAsTFkNvcnBvcmF0ZSBT ZWN1cmUgRW1haWwxEjAQBgNVBAMTCUpvbiBSYWRlbDEcMBoGCSqGSIb3DQEJARYNam9uQHJh ZGVsLmNvbTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEBAMuufqoh9QnyjZTH7UdO wpx6XnRz/94zoK1C1SaAepIRMyInXiwOVwT7iXKtkeRGEQA2vwTyqu5JVcvWkGxlTWPACgDW dDE3296Up2K9CFfrm+RKdlc6xfMklR7qQWyNw5ULkeOZZOIoSAlVAJPhjIvHcf0UPxjTqgtP 4JafBBvL8RFhMAm74I1kWltMcFPVm1sLFDR1CDZ48/zqmhK/0ppbiBGapi8vAO382laFgHaN 8ODBFBffom5zjL/I9SggGGAdtwi7Vp2cjzgtuNVyORPv5Jz9zLylVKlhNvyq3VjbWXuJNw0E J03F/UkjQsqsCkQnSdHAxtPkGhoBw/UvqEsCAwEAAaOCAccwggHDMB8GA1UdIwQYMBaAFHoT TgB0W8Z4Y2QnwS/ioFu8ecV7MB0GA1UdDgQWBBR8oxwxzLSB4/equQ4EqdH5Fld3sTAOBgNV HQ8BAf8EBAMCBaAwDAYDVR0TAQH/BAIwADAdBgNVHSUEFjAUBggrBgEFBQcDBAYIKwYBBQUH AwIwRgYDVR0gBD8wPTA7BgwrBgEEAbIxAQIBAwUwKzApBggrBgEFBQcCARYdaHR0cHM6Ly9z ZWN1cmUuY29tb2RvLm5ldC9DUFMwVwYDVR0fBFAwTjBMoEqgSIZGaHR0cDovL2NybC5jb21v ZG9jYS5jb20vQ09NT0RPQ2xpZW50QXV0aGVudGljYXRpb25hbmRTZWN1cmVFbWFpbENBLmNy bDCBiAYIKwYBBQUHAQEEfDB6MFIGCCsGAQUFBzAChkZodHRwOi8vY3J0LmNvbW9kb2NhLmNv bS9DT01PRE9DbGllbnRBdXRoZW50aWNhdGlvbmFuZFNlY3VyZUVtYWlsQ0EuY3J0MCQGCCsG AQUFBzABhhhodHRwOi8vb2NzcC5jb21vZG9jYS5jb20wGAYDVR0RBBEwD4ENam9uQHJhZGVs LmNvbTANBgkqhkiG9w0BAQUFAAOCAQEAJB+JWM2MbG5rR7/RCEm8bQRziBfl/FztfoV6dDGU Y0uTRegiwM2LA/GHGju7xtp49MrcmEciZs6Di2pvGzS5m/v5IBT0gMK6dyplBmBe4BXzwckE 1MH/iui+VstVHds+36SsQqPCtVmFWlX6QN56F6aGSCjI27f2mUYL3NBr6DPsslRIhF9PamKQ Bp4Y25/hnd+paEGIF6AZM3Uv7TvsTdCaBOt3dLrwUIpyQex5yqO8GPKWwgEPKxKiro7uLNNY yZU4dEEenQIi/4SD49XHd9Zqwf60jKVPeZjcrK7QSSQ8dlOYOGH60WBBFVwD1CCBCLSJnglY Dwh5wcgQG9ZRvjGCBBkwggQVAgEBMIGoMIGTMQswCQYDVQQGEwJHQjEbMBkGA1UECBMSR3Jl YXRlciBNYW5jaGVzdGVyMRAwDgYDVQQHEwdTYWxmb3JkMRowGAYDVQQKExFDT01PRE8gQ0Eg TGltaXRlZDE5MDcGA1UEAxMwQ09NT0RPIENsaWVudCBBdXRoZW50aWNhdGlvbiBhbmQgU2Vj dXJlIEVtYWlsIENBAhBRpZB1NTpG/HF46NNQ3gO0MAkGBSsOAwIaBQCgggJFMBgGCSqGSIb3 DQEJAzELBgkqhkiG9w0BBwEwHAYJKoZIhvcNAQkFMQ8XDTE0MTEwODIzMzQ0OFowIwYJKoZI hvcNAQkEMRYEFElriypkB923LoQvceLpAnSpORImMGwGCSqGSIb3DQEJDzFfMF0wCwYJYIZI AWUDBAEqMAsGCWCGSAFlAwQBAjAKBggqhkiG9w0DBzAOBggqhkiG9w0DAgICAIAwDQYIKoZI hvcNAwICAUAwBwYFKw4DAgcwDQYIKoZIhvcNAwICASgwgbkGCSsGAQQBgjcQBDGBqzCBqDCB kzELMAkGA1UEBhMCR0IxGzAZBgNVBAgTEkdyZWF0ZXIgTWFuY2hlc3RlcjEQMA4GA1UEBxMH U2FsZm9yZDEaMBgGA1UEChMRQ09NT0RPIENBIExpbWl0ZWQxOTA3BgNVBAMTMENPTU9ETyBD bGllbnQgQXV0aGVudGljYXRpb24gYW5kIFNlY3VyZSBFbWFpbCBDQQIQUaWQdTU6RvxxeOjT UN4DtDCBuwYLKoZIhvcNAQkQAgsxgauggagwgZMxCzAJBgNVBAYTAkdCMRswGQYDVQQIExJH cmVhdGVyIE1hbmNoZXN0ZXIxEDAOBgNVBAcTB1NhbGZvcmQxGjAYBgNVBAoTEUNPTU9ETyBD QSBMaW1pdGVkMTkwNwYDVQQDEzBDT01PRE8gQ2xpZW50IEF1dGhlbnRpY2F0aW9uIGFuZCBT ZWN1cmUgRW1haWwgQ0ECEFGlkHU1Okb8cXjo01DeA7QwDQYJKoZIhvcNAQEBBQAEggEAOd08 l1R7LEEqv3SUUmqZ+2NSl6LdcfCsXnVEyJfvg3AoYGc91CAtpR7EBkF/X0XFAs/YgyvQz9dC veKnbd14iAymCjNC5BEL+rpdyDDgexejll6vjnRg0lEe12dLqN9317bdoxkSoBwvNyx0q2Ra LUUETuIEyGd+aa3igH4mzKmqVfQM/VbmnbMz/pu+jv3C9QGFjfo6H3WoXZRMSVtzNADMnqqa 8EmaGFv+KkKc6y4OeJLIqXH9I4P57gPX0bz7i839JDtDqB7tAnfJ+lhrYm+Cl9qa3blNuVht ywdU7ifa0UXEjwsG4fZxqax7sZjIgFwesyoCwwXRMnPWJ8Zo/AAAAAAAAA== --------------ms020602020408010602070807--