From owner-freebsd-questions@FreeBSD.ORG Fri Sep 5 15:34:00 2008 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id 7F65A1065673 for ; Fri, 5 Sep 2008 15:34:00 +0000 (UTC) (envelope-from millenia2000@hotmail.com) Received: from bay0-omc1-s3.bay0.hotmail.com (bay0-omc1-s3.bay0.hotmail.com [65.54.246.75]) by mx1.freebsd.org (Postfix) with ESMTP id 6ABF08FC24 for ; Fri, 5 Sep 2008 15:34:00 +0000 (UTC) (envelope-from millenia2000@hotmail.com) Received: from BAY126-W46 ([65.55.131.81]) by bay0-omc1-s3.bay0.hotmail.com with Microsoft SMTPSVC(6.0.3790.3959); Fri, 5 Sep 2008 08:34:00 -0700 Message-ID: X-Originating-IP: [214.4.253.97] From: Sean Cavanaugh To: , Date: Fri, 5 Sep 2008 11:33:59 -0400 Importance: Normal In-Reply-To: <20080905141402.GJ5474@pcjas.obspm.fr> References: <20080905141402.GJ5474@pcjas.obspm.fr> MIME-Version: 1.0 X-OriginalArrivalTime: 05 Sep 2008 15:34:00.0110 (UTC) FILETIME=[D16AECE0:01C90F6C] Content-Type: text/plain; charset="iso-8859-1" Content-Transfer-Encoding: quoted-printable X-Content-Filtered-By: Mailman/MimeDel 2.1.5 Cc: Subject: RE: portsnap in cron and firewall X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 05 Sep 2008 15:34:00 -0000 > Date: Fri=2C 5 Sep 2008 16:14:02 +0200> From: Albert.Shih@obspm.fr> To: f= reebsd-questions@freebsd.org> Subject: portsnap in cron and firewall> > Hi = all> > I've some servers for internal use. On those servers I have some pf = (or> ipfw) rule to deny any connection from inside to outside. > > Long tim= e ago when ports tree is update with cvs=2C I'm using something like> > pf = command to open inside --> outside connection> cvsup > portupgrade --fetch-= only --all> pf command to close inside --> outside connection> > But now wi= th portsnap cron (that's mean random sleep) I don't known when> the system = try to connect outside. > > Do you have any idea how can I make my update u= sing portsnap (I known I can> use cvsup) in a crontab with my network confi= g ? >=20 =20 "portsnap cron" just randomizes the time to download unlike "portsnap fetch= " which says to do it right now. cron was added to help randomize the time = so everyone syncing at midnight UTC arent all hitting at exact same time.=