From owner-freebsd-questions@FreeBSD.ORG Wed Nov 24 11:04:47 2004 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id A493716A4CE for ; Wed, 24 Nov 2004 11:04:47 +0000 (GMT) Received: from 9.hellooperator.net (cpc3-cdif2-3-0-cust202.cdif.cable.ntl.com [81.103.32.202]) by mx1.FreeBSD.org (Postfix) with ESMTP id 1DB2A43D45 for ; Wed, 24 Nov 2004 11:04:47 +0000 (GMT) (envelope-from rasputin@hellooperator.net) Received: from rasputin by 9.hellooperator.net with local (Exim 4.43) id 1CWux4-0000Uv-Bg for freebsd-questions@freebsd.org; Wed, 24 Nov 2004 11:04:46 +0000 Date: Wed, 24 Nov 2004 11:04:46 +0000 From: Dick Davies To: FreeBSD Questions Message-ID: <20041124110446.GD2355@lb.tenfour> References: <200411232158.53865.4711@chello.at> <20041123212208.81596.qmail@web53407.mail.yahoo.com> <20041123212853.GA16215@polands.org> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <20041123212853.GA16215@polands.org> User-Agent: Mutt/1.4.2.1i Sender: Rasputin Subject: Re: How do you "make install" without direct internet access? X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list Reply-To: Dick Davies List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 24 Nov 2004 11:04:47 -0000 * Doug Poland [1129 21:29]: > On Tue, Nov 23, 2004 at 01:22:07PM -0800, Ralph wrote: > > actually, since I was in csh, the setenv FTP_PROXY > > my.internal.proxy:80 worked like a charm, except that, > > for some reason, fetch refuses to work without > > internet DNS resolution. As with our environment, no > > internal hosts have external DNS resolution - how do > > you solve that? > > > If you have ssh access out through the firewall, you can tunnel DNS (and > http/ftp) requests through a *well-connected* Unix host. Well, yeah, but then you might as well not bother with a proxy... That sounds like a bug to me - I guess most people use fetch with proxies so the proxy will cache the distfiles rather than to allow isolated machines to get on the network, which might explain why it's not been spotted before? -- The State is the kind of organization which, though it does big things badly, does small things badly too. - John Kenneth Galbraith Rasputin :: Jack of All Trades - Master of Nuns