openbsd-misc mailing list

FromSubjectsort iconDate
Peter
Is it possible to add pppoe to a bridge?

Even if a bridge is empty it seems impossible to add pppoe to it. This
doesn't change if the first bridge member has an MTU identical to that
of the pppoe interface (thank you to Martin Reindl for a patch
enabling mtu changes on Sun quad ethernet). For my own, and anyone
else's reference, the bridge's own MTU is hardcoded to ETHERMTU (1500).

Now, I can go through the source to if_bridge.c and find the definitive
answer, but I thought I'd ask here in case anyone had an immediate
answer, ev...

Sep 10, 4:20 pm 2008
Toni Mueller
altq on enc0?

Hi,

I've just discovered that this is unsupported.

How difficult would it be to add support for this?

TIA!

Kind regards,
--Toni++

Sep 10, 4:11 pm 2008
Kevin Neff
Patching a SSH 'Weakness'

Hi,

Some secure protocols like SSH send encrypted keystrokes
as they're typed. By doing timing analysis you can figure
out which keys the user probably typed (keys that are
physically close together on a keyboard can be typed
faster). A careful analysis can reveal the length of
passwords and probably some of password itself.

The paper:

http://portal.acm.org/citation.cfm?
id=1267612.1267637&coll=Portal&dl=GUIDE&CFID=1943417&C
FTOKEN=28290455

I'm seriously considerin...

Sep 10, 3:58 pm 2008
Top Shop
Ekskluzivno: Space Bag 7 septembarska ušteda

Top Shop

Ekskluzivna pretprodaja - samo na internetu!

SPECIJALNA JESENJA PONUDA! Space Bag do 30. septembra po

Sep 10, 12:27 pm 2008
O. Griener
Apache lib/link problem

as of

OpenBSD 4.4-current (GENERIC.MP) #1838: Tue Sep 9 16:35:25 MDT 2008
deraadt@amd64.openbsd.org:/usr/src/sys/arch/amd64/compile/GENERIC.MP

I'm having a link error in Apache:

/usr/sbin/httpd:/usr/lib/libssl.so.11.0: /usr/lib/libssl.so.12.0 : WARNING: symb
ol(ssl2_ciphers) size mismatch, relink your program
/usr/sbin/httpd:/usr/lib/libssl.so.11.0: /usr/lib/libssl.so.12.0 : WARNING: symb
ol(ssl3_ciphers) size mismatch, relink your program

Thanks for any suggestion.
--
O. Griener

Sep 10, 8:54 am 2008
Chris Kuethe
Re: Apache lib/link problem

library major version bumps. welcome to tracking -current... it happens.

you probably have something like php with php-mhash or php-mcrypt installed.
your httpd is linked against libssl.12, but the php goo is linked
against libssl.11.

you can either wait for new packages, or build 'em yourself.

--
GDB has a 'break' feature; why doesn't it have 'fix' too?

Sep 10, 12:56 pm 2008
Stuart Henderson
Re: SSH question (4.3)

Does this apply?

If this file, the ~/.ssh directory, or the user's home directory
are writable by other users, then the file could be modified or
replaced by unauthorized users. In this case, sshd will not al-
low it to be used unless the StrictModes option has been set to
``no''. The recommended permissions can be set by executing
``chmod go-w ~/ ~/.ssh ~/.ssh/authorized_keys''.

Specifically, is the user's home d...

Sep 10, 7:57 am 2008
Toni Mueller
Re: SSH question (4.3)

Hi,

no, I've checked this. But I will have to check whether Hannah's hint,
too... (should have had this idea earlier, doh!).

Kind regards,
--Toni++

Sep 10, 10:26 am 2008
Toni Mueller
SSH question (4.3)

Hi,

I've just experienced a strange problem with OpenSSH. Scenario:

/etc/ssh/sshd_config: PermitRootLogin without-password

=> root login with ssh keys works, as expected.

I've created another user, uid 1000, on the same box, and copied root's
authorized_keys file over, adjusted ownership, permissions etc...

=> SSH login (from the same remote user) does _NOT_ work.

I've added that user to the group 'wheel'

=> SSH login works

I've removed said user from the group 'wheel'

=...

Sep 10, 6:55 am 2008
Hannah Schroeter
Re: SSH question (4.3)

Hi!

ls -ld /H /H/admin /H/admin/.ssh /H/admin/.ssh/authorized_keys /H/admin/.ssh/authorized_keys2

(I.e. check whether there's some intervening dir that's not accessible

Kind regards,

Hannah.

Sep 10, 7:56 am 2008
Toni Mueller
Re: SSH question (4.3)

Hi Hannah,

that was the problem, thanks!

Kind regards,
--Toni++

Sep 10, 4:00 pm 2008
list-obsd-misc
Re: Sun M-class hardware denial of service

My understanding of this issue is that it is only likely to be caused by an exploited domain, or running OpenBSD. Both should be a rare event (OpenBSD isn't really production-ready on this hardware). It's acceptable in the majority of cases to just let the domain be unused.

It's a bug, it's irritating, it should be fixed, but it's not a huge problem.

Sep 10, 5:36 am 2008
Theo de Raadt
Re: Sun M-class hardware denial of service

No, it is not just irritating. It is a serious DOS, and a risk that one
does not expect in boxes that cost that much.

You have completely failed to understand.

Sep 10, 12:03 pm 2008
Christopher Vance
Re: NTP offline local server question

Would timed meet your needs?

--
Christopher Vance

Sep 10, 5:14 am 2008
Insan Praja SW
Re: [BUGS or FEATURE] Ifconfig

On Tue, 09 Sep 2008 22:15:39 +0700, Jason Dixon <jason@dixongroup.net>
Hi Misc@,
Just to confirm On 10 sept 2008 kernel the problem was fix.
Thanks,

Insan
--
insandotpraja(at)gmaildotcom

Sep 10, 12:28 pm 2008
sonjaya
Re: halt -p not working in mac mini

halt with option -ph is unknow option , and shutdown -hp now still
not working always restart

--
sonjaya
http://sicute.blogspot.com
http://www.pojokdomain.com(sell & buy domain with free )

Sep 10, 3:20 am 2008
OpenBSD
Re: Wireless

On Mon, 8 Sep 2008 23:24:26 +0200

OK. thanks a lot to all, i'm going to buy one of the recommended cards.
--
OpenBSD <openbbssdd@gmail.com>

Sep 10, 12:39 am 2008
Henning Brauer
Re: ntpd can hang on boot

ntpd -s will time out eventually, but the 'eventually' might be
painfully far away. it's the dns routines that block and cause these
problems. i know how to fix this but haven't found the time to do so
yet. maybe i get a chance on the flight later today. maybe.

--
Henning Brauer, hb@bsws.de, henning@openbsd.org
BS Web Services, http://bsws.de
Full-Service ISP - Secure Hosting, Mail and DNS Services
Dedicated Servers, Rootservers, Application Hosting - Hamburg & Amsterdam

Sep 10, 4:29 am 2008
Giancarlo Razzolini
Re: ntpd can hang on boot

I never believed it wouldn't :-) but, from my experience, rdate timeout
exactly after 2 minutes. Not *that* far away so. Just for curiosity,
what are the dns routines differences between them?

--
Giancarlo Razzolini
http://lock.razzolini.adm.br
Linux User 172199
Red Hat Certified Engineer no:804006389722501
Verify:https://www.redhat.com/certification/rhce/current/
Moleque Sem Conteudo Numero #002
OpenBSD Stable
Ubuntu 8.04 Hardy Heron
4386 2A6F FFD4 4D5F 5842 6EA0 7ABE BBAB 9C0E 6B85

Sep 10, 9:38 am 2008
Henning Brauer
Re: ntpd can hang on boot

ou won't make me read rdate now

--
Henning Brauer, hb@bsws.de, henning@openbsd.org
BS Web Services, http://bsws.de
Full-Service ISP - Secure Hosting, Mail and DNS Services
Dedicated Servers, Rootservers, Application Hosting - Hamburg & Amsterdam

Sep 10, 10:37 am 2008
Giancarlo Razzolini
Re: ntpd can hang on boot

Hahahahahhah... Don't bother. Whatever are the differences (if there are
some), rdate definitely timeout after 2 minutes. Confirmed in a little
openbsd virtual machine of mine. So, for the original poster, i
recommend that you sticky with rdate for now, it will timeout faster
than ntpd -s. When Henning changes the ntpd code (that i expect will be
on both current and 4.4), you get back to ntpd -s.

My regards,

--
Giancarlo Razzolini
http://lock.razzolini.adm.br
Linux User 172199
Red Hat Certif...

Sep 10, 10:56 am 2008
Jordi Espasa Clofent
Re: ntpd can hang on boot

?"DNS routines" means that the problem only appears if you use a ntp
server with DNS? ?Can you avoid the problem if you use an IP directly
instead of DNS record?

--
Thanks,
Jordi Espasa Clofent

Sep 10, 6:00 am 2008
Toni Mueller
Re: Pre-Order 4.4

Hi,

you could get a CVS checkout. The tree has been tagged, as far as I can
see.

Kind regards,
--Toni++

Sep 10, 5:15 pm 2008
previous daytodaynext day
NoneSeptember 10, 2008None