Google Groups no longer supports new Usenet posts or subscriptions. Historical content remains viewable.
Dismiss

freebsd-questions Digest, Vol 71, Issue 12

10 views
Skip to first unread message

freebsd-ques...@freebsd.org

unread,
Aug 5, 2004, 1:01:57 PM8/5/04
to
Send freebsd-questions mailing list submissions to
freebsd-...@freebsd.org

To subscribe or unsubscribe via the World Wide Web, visit
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
or, via email, send a message with subject or body 'help' to
freebsd-ques...@freebsd.org

You can reach the person managing the list at
freebsd-que...@freebsd.org

When replying, please edit your Subject line so it is more specific
than "Re: Contents of freebsd-questions digest..."


Today's Topics:

1. Re: Can i make a CD of the Ports Collection (Giorgos Keramidas)
2. Re: IPFW - Allowed but Denied is shown in my logs
(Arek Czereszewski)
3. Re: SCSI errors with Adaptec 2200S RAID (Andre Albsmeier)
4. Re: Back-up on remote machine (Steve Bertrand)
5. portugrade -aR (except) (Mike Hauber)
6. Re: Back-up on remote machine (Jerry McAllister)
7. Re: portugrade -aR (except) (Radek Kozlowski)
8. Mount name length limit (MNAMELEN) (=?big5?q?Patrick=20Dung?=)
9. Re: portugrade -aR (except) (Randy Pratt)
10. Re: Moving vinum drives to a new system? (David Kelly)
11. Re: portugrade -aR (except) (Mike Hauber)
12. natd -redirect_address (Noone Nothing)
13. Using MPlayer in console (ilich)
14. Re: portugrade -aR (except) (Paul Schmehl)
15. Re: natd -redirect_address (Steve Bertrand)
16. Re: natd -redirect_address (Steve Bertrand)
17. Setting up Olivetti Job-Jet M400 printer on FBSD 5.2.1
(Livhu Tshisikule)
18. RE: IPFW Configuration (JJB)
19. Re: Moving vinum drives to a new system? (David Kelly)
20. Re: portugrade -aR (except) (Mike Hauber)
21. Re: Using MPlayer in console (Radek Kozlowski)
22. Re: Using MPlayer in console (Michael Johnson)
23. [Fwd: Re: natd -redirect_address] (Steve Bertrand)
24. Re: Only root is able to login (Byung-Hee H.)
25. Request for confirmation (Webmaster)
26. Request for confirmation (Webmaster)
27. Re: Only root is able to login (Byung-Hee H.)
28. Welcome to our Mailinglist (www.godonline.co.za crosswalk ezine)
29. clock problem (Ted Unangst)
30. Goodbye from our Mailinglist (www.godonline.co.za crosswalk ezine)
31. Re: clock problem (Ted Unangst)
32. BIND 9 Package Question (Thompson, Jimi)
33. Re: SCSI errors with Adaptec 2200S RAID (Scott Long)


----------------------------------------------------------------------

Message: 1
Date: Thu, 5 Aug 2004 16:10:00 +0300
From: Giorgos Keramidas <kera...@ceid.upatras.gr>
Subject: Re: Can i make a CD of the Ports Collection
To: freebsd-...@freebsd.org
Message-ID: <2004080513...@orion.daedalusnetworks.priv>
Content-Type: text/plain; charset=us-ascii

## Top-posting removed.
## Please do not top-post in the middle of a bottom-posting thread.

On 2004-08-04 23:54, BSDjunkie <gooober3...@yahoo.com> wrote:
>Olaf Hoyer <oho...@ohoyer.de> wrote:
>>On Wed, 4 Aug 2004, Peter Ryan wrote:
>>> I am very new, and have been reinstalling FreeBSD many times to clean
>>> up whatever mess i make and start again.
>>>
>>> I recently used cvsup to update my ports collection for the
>>> 4.10_RELEASE.
>>>
>>> Now, when I reinstall, it takes much longer because i bring in the
>>> updated ports collection rather than the ports collection on the
>>> install CD (which i burnt from an ISO file)
>>
>> The whole portscollection is also available via ftp on ftp2.de.freebsd.org:
>> [snip ftp get example]
>> Simply download the tar.gz, and extract it to /usr/ports
>>
>> On each ISO of a release, like the 4.10R-CD #1, they take a snapshot of
>> the ports tree when the make the assumption that it ist quite
>> consistent. So when you download in say, 3 months a 4.10 ISO, the ports
>> tree therein will be more than 3 months old.
>>
>> In that case, use whether cvsup or method above to get a recent ports
>> tree.
>
> You can also reinstall the ports tree from the iso image.
>
> There's an install script on the cd that you can run if needed to
> reinstall the release version of the ports tree.
>
> Updating should be done through cvsup if possible.

I think that what the original poster meant is a bit different than this.
When the /usr/ports tree is updated, the infrastructure bits that it
contains will download updated, newer or fixed versions of the same ports
if one tries to reinstall them. Since the release CD-ROMs do not contain
the source files for these updated ports, they're downloaded over the
network -- which can take a while if you're using a dialup connection or
something similarly slow.

The answer is that this cannot be avoided, since the source files of the
new, updated versions of the packages were not available when the release
CD-ROMs were prepared.

<hint>

To avoid downloading multiple times the same source files, I usually wait
until one of my machines downloads the source tarballs and then burn a
CD-ROM with the contents of my /usr/ports/distfiles or share this directory
over NFS when that's possible.

Peter,
If you have a fast connection somewhere that can download these source
files for you, you can copy the files from /usr/ports/distfiles from that
machine to any other FreeBSD installation. The next time the ports try to
locate the source tarball it's going to be where they expect it and no
download will be attempted over the network.

</hint>

Giorgos


------------------------------

Message: 2
Date: Thu, 05 Aug 2004 15:21:05 +0200
From: Arek Czereszewski <ar...@wup-katowice.pl>
Subject: Re: IPFW - Allowed but Denied is shown in my logs
To: freebsd-...@freebsd.org
Message-ID: <41123441...@wup-katowice.pl>
Content-Type: text/plain; charset=ISO-8859-1; format=flowed

Srot BULL wrote:

> My apologies, below is my complete ruleset:
> # Flush out EVERYTHING first before starting
> ipfw -q -f flush
>
> # Set rules command prefix
> CMD="ipfw -q add"
> IFN="rl0"
[...]

Hi
I don't see nothing about NAT - mayby this is problem??
How work others connections from 192.168...?
To external POP, SMTP servers?

P.S.
Sorry about my english.

Arek


--
Arek Czereszewski | jid: aro(at)chrome.pl
arek(at)wup-katowice.pl | gg: 1349941
"*nix is like a wigwam:
no windows, no gates, apache inside."


------------------------------

Message: 3
Date: Thu, 5 Aug 2004 15:28:57 +0200
From: Andre Albsmeier <andre.a...@siemens.com>
Subject: Re: SCSI errors with Adaptec 2200S RAID
To: u...@3.am
Cc: FreeBSD ISP List <freeb...@freebsd.org>
Message-ID: <2004080513...@curry.mchp.siemens.de>
Content-Type: text/plain; charset=us-ascii

On Tue, 03-Aug-2004 at 23:31:52 -0400, u...@3.am wrote:
>
> Please cc replies directly to me, as I am not subscribed to the lists.
>
> With some help from here, I was able to get this RAID card to see our
> external DLT (QUANTUM 4000) SCSI tape drive by installing the aacp (pass
> through) driver in addition to the aac driver. camcontrol now works, as
> do basic mt commands and amcheck (amanda check).
>
> However, (amanda) dumps either hang, fail completely or fail after
> transfering very little data. On the console, I see:
>
> (sa0:aacp1:0:4:0): READ(06). CDB8 0 0 0 20 0 0
> (sa0:aacp1:0:4:0): NO SENSE ILI (length mismatch): -24576 csi:0,0,0,1
>
> At this point the device is completely unresponsive, and the only way to
> get the system to see it again is to reboot the whole server. I tried
> ordering a 3 ft cable, thinking I was pushing my luck with the 6 ft (I've
> had this problem with SCSI cables in the past), but the problem persists.
>
> The same drive (which has an active terminator) has been working fine for
> years on a different box using an Intel L440GX+ MB's on-board SCSI port.
>
> Once again, any helpful replies are greatly appreciated!

Are you sure you are running a recent fw on your DLT4k? My DLTs
used to behave badly with early fw revisions. Check out

http://www.quantum.com/am/service_support/downloads/software/dlt4000.htm

You can upgrade it by tape or use my software for updating the fw of
SCSI devices on FreeBSD.

-Andre

>
> James Smallacombe PlantageNet, Inc. CEO and Janitor
> u...@3.am http://3.am
> =========================================================================
>
> _______________________________________________
> freeb...@freebsd.org mailing list
> http://lists.freebsd.org/mailman/listinfo/freebsd-isp
> To unsubscribe, send any mail to "freebsd-isp...@freebsd.org"

--
"Regression testing? What's that? If it compiles,
it is good, if it boots up, it is perfect."
- Linus Torvalds

------------------------------

Message: 4
Date: Thu, 5 Aug 2004 09:32:31 -0400 (EDT)
From: "Steve Bertrand" <iacc...@ibctech.ca>
Subject: Re: Back-up on remote machine
To: "Joost Bekkers" <jo...@jodocus.org>
Cc: freebsd-...@freebsd.org
Message-ID: <2807.209.167.16.15....@209.167.16.15>
Content-Type: text/plain;charset=iso-8859-1

> On Thu, Aug 05, 2004 at 05:58:24PM +0700, Roger Merritt wrote:
>> One example I found on the WWW is: tar -czf - /some/file | \
>> ssh host.name tar -xzf - -C /destination.
>>
>> That's not quite what I want, because I don't see any need to untar
>> everything at the far end, but I can't send a file without using
>> some
>> command to ssh.
>
> If all you need is somthing at the other end capturing the data try
>
> ... | ssh remotehost "cat - > myfile"

Remember though, that the remote file will be a tarball itself. Here
is the command I use frequently, to get exactly what you want...a
tarball of a local file system on a remote machine:

# tar -cvzf - /home/steve | ssh steve@server 'cat > tarball.tar.gz'

Regards,

Steve


>
> --
> greetz Joost
> jo...@jodocus.org
> _______________________________________________
> freebsd-...@freebsd.org mailing list
> http://lists.freebsd.org/mailman/listinfo/freebsd-questions
> To unsubscribe, send any mail to
> "freebsd-questi...@freebsd.org"
>

------------------------------

Message: 5
Date: Thu, 5 Aug 2004 09:56:50 -0400
From: Mike Hauber <m.ha...@mchsi.com>
Subject: portugrade -aR (except)
To: freebsd-...@freebsd.org
Message-ID: <200408050956....@mchsi.com>
Content-Type: text/plain; charset="us-ascii"

Greetings, all.

I am running 4.10-Stable, and I have the following question
about portupgrade.

So far, I have not had a successful build of OpenOffice (on
any version of FreeBSD... ever... so I use their binaries
as they become available), and the samba port is broken
(until I upgrade the system to 5.x).

What I do now is simply grep a list of installed ports with
updates available and send the outbut to a file. (ie, #
portversion | grep "<" > ~/pupdate.sh )

Then I edit ~/pupdate.sh so that every line begins with
"portupgrade -R." (And, of course, I delete the samba and
OpenOffice entries) In other words my file would look
something like this:

>>>
#!/bin/sh
portupgrade -R blip
portupgrade -R blop
portupgrade -R bluey
<<<

make it executable, run it overnight, and fix the small
stuff in the morning.

Obviously, because I like to upgrade my systems every week,
this gets old. Is there any way I can tell portupgrade to
simply portupgrade -aR (except for a specific list of
packages)?

If not, does anyone have a more simple solution?

And again, if not, would this be considered a worthy
suggestion for the developers of /portupgrade?

Thanks


------------------------------

Message: 6
Date: Thu, 5 Aug 2004 09:58:14 -0400 (EDT)
From: Jerry McAllister <jer...@clunix.cl.msu.edu>
Subject: Re: Back-up on remote machine
To: mcro...@stjohn.ac.th (Roger Merritt)
Cc: freebsd-...@freebsd.org
Message-ID: <200408051358...@clunix.cl.msu.edu>
Content-Type: text/plain; charset=us-ascii

Hi,

> I've been playing with this for a while. I need to add a small (4 GB) hard
> drive to one of my servers. Partly because I need more storage space,
> partly because I think there's something wrong with the present hard drive
> -- I get page faults while in kernel mode (fatal signal 12, I think it is)
> and spontaneous reboots when I try to build world on this drive (or make
> index, or upgrade some ports, etc.).
>
> What I want to do is copy my whole /usr/home directory tree to another Free
> BSD machine down the hall, pull the current hard drive (4 GB) out, put the
> new hard drive with a fresh build of Free BSD in the box as the master
> drive, reformat the old drive, and finally, copy the /usr/home directory
> tree back to the old hard drive and mount it separately as /usr/home.

I note that someone else has posted helpful suggestions on how to do
what you say you want. But, I wonder if that is what you really want.
First, a comment: A page fault is not a problem with your disk. It
is just the system discovering that the piece of memory it wants to
access next is not really in memory but paged out on disk - FreeBSD
uses the swap space for this.

But, having said that, a signal 12 can mean that it is having some
hardware problem reading that disk (or some other hardware problem),

If it is getting hard errors reading that disk, then it very likely
means the disk is on its last legs and would be a very bad place to
put your /usr/home directory back on. Modern disks have their own
spare sectors to which they map bad sectors automatically. Once you
start actually seeing unrecovered errors from a disk, it tends to
mean that all the spare sectors are used up and the disk is heading
for a total failure.

So, check the var/log/messages file and see if there are errors
pointing to the disk and if so, get it replaced as soon as possible
and don't bother trying to reuse it. In checking for errors in
the messages file, you may discover the signal 12 errors are not from
the disk, but something else. In that case, you have some other
hardware problem to solve - controller, motherboard, whatever.

////jerry

>
> I've found directions that almost fit my needs, but not quite. What I would
> like to do is tar the directory tree and pipe it to either scp or ssh. What
> I don't want to do, because I don't think I have enough room, is make a tar
> file on the old machine. One example I found on the WWW is: tar -czf -
> /some/file | ssh host.name tar -xzf - -C /destination.
>
> That's not quite what I want, because I don't see any need to untar
> everything at the far end, but I can't send a file without using some
> command to ssh. I thought tar -czf - /some/file | scp -
> name@remotehost:somefile.tar.gz, but it doesn't seem to work. Can anyone
> point out where I'm going wrong? I guess if I have to I can untar the
> directory tree to some temporary place on the remote host -- that one has
> plenty of room on it, but it seems like an inelegant solution. That's
> really my only objection to it.
>
> --
> Roger
>
> _______________________________________________
> freebsd-...@freebsd.org mailing list
> http://lists.freebsd.org/mailman/listinfo/freebsd-questions
> To unsubscribe, send any mail to "freebsd-questi...@freebsd.org"
>


------------------------------

Message: 7
Date: Thu, 5 Aug 2004 16:12:30 +0200
From: Radek Kozlowski <ra...@raadradd.com>
Subject: Re: portugrade -aR (except)
To: Mike Hauber <m.ha...@mchsi.com>
Cc: freebsd-...@freebsd.org
Message-ID: <20040805141230.GB44763@werd>
Content-Type: text/plain; charset=iso-8859-2

On Thu, Aug 05, 2004 at 09:56:50AM -0400, Mike Hauber wrote:
> Obviously, because I like to upgrade my systems every week,
> this gets old. Is there any way I can tell portupgrade to
> simply portupgrade -aR (except for a specific list of
> packages)?

>From man portupgrade:

-x GLOB
--exclude GLOB Exclude packages matching the specified glob pat-
tern. Exclusion is performed after recursing
dependency in response to -r and/or -R, which
means, for example, the following command will
upgrade all the packages depending on XFree86 but
leave XFree86 as it is:

portupgrade -rx XFree86 XFree86

-Radek

------------------------------

Message: 8
Date: Wed, 4 Aug 2004 22:40:19 +0800 (CST)
From: =?big5?q?Patrick=20Dung?= <patri...@yahoo.com.hk>
Subject: Mount name length limit (MNAMELEN)
To: freebsd-...@freebsd.org
Cc: freebsd...@freebsd.org
Message-ID: <2004080414401...@web51805.mail.yahoo.com>
Content-Type: text/plain; charset=big5

Hi

It seems that the constant is in /usr/sys/sys/mount.h.
The limit is already there since the initial import in
1995. (From 4.4BSD?)
I want to know what is the root cause preventing a
larger value.

PS: I have found some interesting links about
MNAMELEN:

http://leaf.dragonflybsd.org/mailarchive/kernel/2003-08/msg00194.html

http://www.secnetix.de/~olli/FreeBSD/mnamelen.hawk

>From Compaq(HP) Tru64 UNIX 5.1 man pages, it seems
that Tru64 UNIX also have a restriction of 90
chars.(They also based on BSD?)
http://h30097.www3.hp.com/docs/base_doc/DOCUMENTATION/V51B_HTML/MAN/MAN2/0114____.HTM

_________________________________________________________
必殺技、飲歌、小星星...
浪漫鈴聲 情心連繫
http://us.rd.yahoo.com/evt=22281/*http://ringtone.yahoo.com.hk/

------------------------------

Message: 9
Date: Thu, 5 Aug 2004 10:22:04 -0400
From: Randy Pratt <rprat...@earthlink.net>
Subject: Re: portugrade -aR (except)
To: m.ha...@mchsi.com
Cc: freebsd-...@freebsd.org
Message-ID: <20040805102204.04...@earthlink.net>
Content-Type: text/plain; charset=US-ASCII

On Thu, 5 Aug 2004 09:56:50 -0400
Mike Hauber <m.ha...@mchsi.com> wrote:

> Greetings, all.
>
> I am running 4.10-Stable, and I have the following question
> about portupgrade.
>
> So far, I have not had a successful build of OpenOffice (on
> any version of FreeBSD... ever... so I use their binaries
> as they become available), and the samba port is broken
> (until I upgrade the system to 5.x).
>
> What I do now is simply grep a list of installed ports with
> updates available and send the outbut to a file. (ie, #
> portversion | grep "<" > ~/pupdate.sh )
>
> Then I edit ~/pupdate.sh so that every line begins with
> "portupgrade -R." (And, of course, I delete the samba and
> OpenOffice entries) In other words my file would look
> something like this:
>
> >>>
> #!/bin/sh
> portupgrade -R blip
> portupgrade -R blop
> portupgrade -R bluey
> <<<
>
> make it executable, run it overnight, and fix the small
> stuff in the morning.
>
> Obviously, because I like to upgrade my systems every week,
> this gets old. Is there any way I can tell portupgrade to
> simply portupgrade -aR (except for a specific list of
> packages)?
>
> If not, does anyone have a more simple solution?
>
> And again, if not, would this be considered a worthy
> suggestion for the developers of /portupgrade?
>
> Thanks

Hi,

I think what you're looking for is /usr/local/etc/pkgtools.conf .

Here is an excerpt from that file:

# HOLD_PKGS: array
#
# This is a list of ports you don't want portupgrade(1) to upgrade,
# portversion(1) to suggest upgrading, or pkgdb(1) to fix.

Its a very handy tool since you can also set make variables which
portupgrade will also honor.

Best regards,

Randy


--

------------------------------

Message: 10
Date: Thu, 5 Aug 2004 09:28:03 -0500
From: David Kelly <dke...@HiWAAY.net>
Subject: Re: Moving vinum drives to a new system?
To: FreeBSD Questions <freebsd-...@freebsd.org>
Message-ID: <A8D2C47A-E6EB-11D8...@HiWAAY.net>
Content-Type: text/plain; charset=US-ASCII; format=flowed


On Aug 5, 2004, at 12:54 AM, Stijn Hoop wrote:

>> # vinum list
>> 2 drives:
>> D vinumdrive1 State: up /dev/ad6s1d A: 156041/156041 MB (100%)
>> D vinumdrive0 State: up /dev/ad4s1d A: 156041/156041 MB (100%)
>>
>> 0 volumes:
>> 0 plexes:
>> 0 subdisks:
>> #
>
> How early in the boot is this? Have you done 'vinum start' yet?

System is multiuser. "vinum start" has already been executed which was
required to run "vinum list" shown above. vinum.ko is/was loaded.

> If that doesn't work, does 'vinum read vinumdrive0 vinumdrive1' work?

No. Vinum replies:
** no additional drives found: No such file or directory
Can't save Vinum config: No such file or directory

> before vinum can create devices. You can force vinum to recreate the
> device
> nodes by doing
>
> vinum makedev

Vinum replies:
makedev is not needed for a DEVFS-based system


Am tempted to rerun "stripe -v /dev/ad4s1d /dev/ad6s1d" again but would
rather not lose the data on the volume.

--
David Kelly N4HHE, dke...@HiWAAY.net
========================================================================
Whom computers would destroy, they must first drive mad.


------------------------------

Message: 11
Date: Thu, 5 Aug 2004 10:25:08 -0400
From: Mike Hauber <m.ha...@mchsi.com>
Subject: Re: portugrade -aR (except)
To: freebsd-...@freebsd.org
Message-ID: <200408051025....@mchsi.com>
Content-Type: text/plain; charset="iso-8859-1"

Whoa. This would definately help with the "in the morning
fixes" as well. lol... I didn't even know that was there.
Thanks so much!


On Thursday 05 August 2004 10:22 am, Randy Pratt proclaimed:
> On Thu, 5 Aug 2004 09:56:50 -0400
>
> Mike Hauber <m.ha...@mchsi.com> wrote:
> > Greetings, all.
> >
> > I am running 4.10-Stable, and I have the following
> > question about portupgrade.
> >
> > So far, I have not had a successful build of OpenOffice
> > (on any version of FreeBSD... ever... so I use their
> > binaries as they become available), and the samba port
> > is broken (until I upgrade the system to 5.x).
> >
> > What I do now is simply grep a list of installed ports
> > with updates available and send the outbut to a file.
> > (ie, # portversion | grep "<" > ~/pupdate.sh )
> >
> > Then I edit ~/pupdate.sh so that every line begins with
> > "portupgrade -R." (And, of course, I delete the samba
> > and OpenOffice entries) In other words my file would
> > look something like this:
> >
> >
> > #!/bin/sh
> > portupgrade -R blip
> > portupgrade -R blop
> > portupgrade -R bluey
> > <<<
> >
> > make it executable, run it overnight, and fix the small
> > stuff in the morning.
> >
> > Obviously, because I like to upgrade my systems every
> > week, this gets old. Is there any way I can tell
> > portupgrade to simply portupgrade -aR (except for a
> > specific list of packages)?
> >
> > If not, does anyone have a more simple solution?
> >
> > And again, if not, would this be considered a worthy
> > suggestion for the developers of /portupgrade?
> >
> > Thanks
>
> Hi,
>
> I think what you're looking for is
> /usr/local/etc/pkgtools.conf .
>
> Here is an excerpt from that file:
>
> # HOLD_PKGS: array
> #
> # This is a list of ports you don't want portupgrade(1)
> to upgrade, # portversion(1) to suggest upgrading, or
> pkgdb(1) to fix.
>
> Its a very handy tool since you can also set make
> variables which portupgrade will also honor.
>
> Best regards,
>
> Randy

------------------------------

Message: 12
Date: Thu, 5 Aug 2004 07:31:19 -0700 (PDT)
From: Noone Nothing <dma_o...@yahoo.com>
Subject: natd -redirect_address
To: freebsd-...@freebsd.org
Message-ID: <2004080514311...@web12902.mail.yahoo.com>
Content-Type: text/plain; charset=us-ascii

Hello all,

I am probably missing something really stupid but here it goes. I've read the man pages, the handbook and even googled the problem to no avail.

I am trying to set up natd to redirect public ips to my private addresses.

This is what I have set up in rc.conf

defaultrouter="24.97.250.201"
gateway_enable="YES"
hostname="gir.visionpayments.net"
ifconfig_rl0="inet 192.168.0.13 netmask 255.255.255.0"
ifconfig_xl0="inet 24.97.250.202 netmask 255.255.255.248"
linux_enable="YES"
sshd_enable="YES"
usbd_enable="YES"
firewall_enabled="YES"
firewall_type="OPEN"
natd_enabled="YES"
natd_interface="xl0"
natd_flags="-f /etc/natd.conf"

This is what I have in natd.conf

redirect_address 192.168.0.10 24.97.250.203

>From what I read in the man pages and handbook this should be all I need, however, I cannot even ping 24.97.250.203. So I typed in

-bash-2.05b$ natd -redirect_address 192.168.0.10 24.97.250.203

and got

natd: aliasing address not given

So I added

ifconfig_xl0_alias0 "inet 24.97.250.203"

to rc.conf and now I am able to ping that public addy but it is doesn't seem to be redirecting me to 192.168.0.10. So I typed in
-bash-2.05b$ natd -redirect_address 192.168.0.10 24.97.250.203
again to see what was happens and got
natd: aliasing address not given
again. am I just being a dumb n00b? wtf am I doing wrong?



---------------------------------
Do you Yahoo!?
New and Improved Yahoo! Mail - 100MB free storage!From owner-freeb...@FreeBSD.ORG Thu Aug 5 14:32:14 2004
Return-Path: <owner-freeb...@FreeBSD.ORG>
Delivered-To: freebsd-...@freebsd.org
Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125])
by hub.freebsd.org (Postfix) with ESMTP id F333A16A4CE
for <freebsd-...@freebsd.org>;
Thu, 5 Aug 2004 14:32:13 +0000 (GMT)
Received: from juergen.edv-winter.de (juergen.edv-winter.de [195.226.65.65])
by mx1.FreeBSD.org (Postfix) with ESMTP id 5AD2D43D55
for <freebsd-...@freebsd.org>;
Thu, 5 Aug 2004 14:32:12 +0000 (GMT) (envelope-from a...@ra23.net)
Received: from localhost (localhost [127.0.0.1])i75EWA0w069748
for <freebsd-...@freebsd.org>;
Thu, 5 Aug 2004 16:32:10 +0200 (CEST) (envelope-from a...@ra23.net)
Date: Thu, 5 Aug 2004 16:32:10 +0200 (CEST)
From: Andre Rein <a...@ra23.net>
X-X-Sender: a...@juergen.edv-winter.de
To: freebsd-...@freebsd.org
Message-ID: <2004080516...@juergen.edv-winter.de>
MIME-Version: 1.0
Content-Type: TEXT/PLAIN; charset=US-ASCII
Subject: problems with php 4.3.8 (long)
X-BeenThere: freebsd-...@freebsd.org
X-Mailman-Version: 2.1.1
Precedence: list
List-Id: User questions <freebsd-questions.freebsd.org>
List-Unsubscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>,
<mailto:freebsd-ques...@freebsd.org?subject=unsubscribe>
List-Archive: <http://lists.freebsd.org/pipermail/freebsd-questions>
List-Post: <mailto:freebsd-...@freebsd.org>
List-Help: <mailto:freebsd-ques...@freebsd.org?subject=help>
List-Subscribe: <http://lists.freebsd.org/mailman/listinfo/freebsd-questions>,
<mailto:freebsd-ques...@freebsd.org?subject=subscribe>

Hi Ml,

I installed php version 4.3.8 from the ports and some extensions. (list at
bottom)
Every CLI script dies with a:
Abort trap (core dumped)
The scripts themself work fine till the end, but then they got a SIGABTR
signal and throw the Abort trap message.
e.g. $php -i
phpinfo()
PHP Version => 4.3.8

System => FreeBSD juergen 4.10-STABLE FreeBSD 4.10-STABLE
#0: Fri May i386
Build Date => Aug 5 2004 13:46:56
Configure Command => './configure' '--enable-versioning'
'--enable-memory-limit' '--with-layout=GNU'
'--with-config-file-scan-dir=/usr/local/etc/php' '--disa
ble-all' '--with-regex=php' '--with-apxs=/usr/local/sbin/apxs'
'--prefix=/usr/local' 'i386-portbld-freebsd4.10'
Server API => Command Line Interface
Virtual Directory Support => disabled
Configuration File (php.ini) Path => /usr/local/etc/php.ini
Scan this dir for additional .ini files => /usr/local/etc/php
additional .ini files parsed => /usr/local/etc/php/extensions.ini

PHP API => 20020918
PHP Extension => 20020429
Zend Extension => 20021010
Debug Build => no
Thread Safety => disabled
Registered PHP Streams => php, http, ftp, compress.bzip2, compress.zlib
...
...
...
This program is distributed in the hope that it will be useful,
but WITHOUT ANY WARRANTY; without even the implied warranty of
MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.

If you did not receive a copy of the PHP license, or have any
questions about PHP licensing, please contact lic...@php.net.
Abort trap (core dumped)


I got trouble with the extension recode too. With this modul I was not
able to
start any php script or apache. Only coredumps are thrown.
I removed this extension, now apache runs fine.
Probably I destroyed something for the CLI?
I've searched a while at google if those problems did occur to anybody
else, but I found nothing similar. :(

here a list of all extensions included in my php:
extension=bz2.so
extension=calendar.so
extension=crack.so
extension=ctype.so
extension=curl.so
extension=dio.so
extension=domxml.so
extension=exif.so
extension=fileinfo.so
extension=filepro.so
extension=ftp.so
extension=gd.so
extension=gettext.so
extension=gmp.so
extension=iconv.so
extension=imagick.so
extension=imap.so
extension=interbase.so
extension=ldap.so
extension=mbstring.so
extension=mcal.so
extension=mcrypt.so
extension=mhash.so
extension=ming.so
extension=mysql.so
extension=ncurses.so
extension=odbc.so
extension=openssl.so
extension=overload.so
extension=pcntl.so
extension=pcre.so
extension=pdf.so
extension=pgsql.so
extension=posix.so
extension=pspell.so
extension=readline.so
extension=session.so
extension=snmp.so
extension=sockets.so
extension=sysvmsg.so
extension=sysvsem.so
extension=sysvshm.so
extension=tokenizer.so
extension=xml.so
extension=xmlrpc.so
extension=xslt.so
extension=zip.so

and a small strace output from $php -i after the licensing thing:
...
munmap(0x28247000, 32768) = 0
munmap(0x2824f000, 180224) = 0
munmap(0x2827b000, 188416) = 0
munmap(0x282a9000, 970752) = 0
munmap(0x28396000, 53248) = 0
munmap(0x283a3000, 192512) = 0
munmap(0x283d2000, 1015808) = 0
sigprocmask(SIG_SETMASK, [], NULL) = 0
sigprocmask(SIG_BLOCK, ~[ILL TRAP ABRT EMT FPE BUS SEGV SYS], []) = 0
sigprocmask(SIG_SETMASK, [], NULL) = 0
sigprocmask(SIG_BLOCK, ~[ILL TRAP ABRT EMT FPE BUS SEGV SYS], []) = 0
munmap(0x28244000, 12288) = 0
sigprocmask(SIG_SETMASK, [], NULL) = 0
sigprocmask(SIG_BLOCK, ~[ILL TRAP ABRT EMT FPE BUS SEGV SYS], []) = 0
sigprocmask(SIG_SETMASK, [], NULL) = 0
sigprocmask(SIG_BLOCK, ~[ILL TRAP ABRT EMT FPE BUS SEGV SYS], []) = 0
munmap(0x28235000, 12288) = 0
munmap(0x28238000, 49152) = 0
sigprocmask(SIG_SETMASK, [], NULL) = 0
sigprocmask(SIG_BLOCK, ~[ILL TRAP ABRT EMT FPE BUS SEGV SYS], []) = 0
sigprocmask(SIG_SETMASK, [], NULL) = 0
sigprocmask(SIG_BLOCK, ~[ILL TRAP ABRT EMT FPE BUS SEGV SYS], []) = 0
munmap(0x2822e000, 28672) = 0
sigprocmask(SIG_SETMASK, [], NULL) = 0
sigprocmask(SIG_BLOCK, ~[ILL TRAP ABRT EMT FPE BUS SEGV SYS], []) = 0
sigprocmask(SIG_SETMASK, [], NULL) = 0
sigprocmask(SIG_BLOCK, ~[ILL TRAP ABRT EMT FPE BUS SEGV SYS], []) = 0
munmap(0x2821a000, 16384) = 0
munmap(0x2821e000, 65536) = 0
sigprocmask(SIG_SETMASK, [], NULL) = 0
sigprocmask(SIG_BLOCK, ~[ILL TRAP ABRT EMT FPE BUS SEGV SYS], []) = 0
sigprocmask(SIG_SETMASK, [], NULL) = 0
sigprocmask(SIG_BLOCK, ~[ILL TRAP ABRT EMT FPE BUS SEGV SYS], []) = 0
munmap(0x2820f000, 45056) = 0
sigprocmask(SIG_SETMASK, [], NULL) = 0
sigprocmask(SIG_SETMASK, ~[ABRT], NULL) = 0
getpid() = 64489 (ppid 64488)
kill(64489, SIGABRT <unfinished ...>
--- SIGABRT (Abort trap) ---
--- SIGABRT (Abort trap) ---

gruss/regards

Andre

--

"And some greetings from the Toaster"
"Plata Verata Nectu"


------------------------------

Message: 13
Date: Thu, 5 Aug 2004 02:45:01 +0400
From: "ilich" <sh...@onego.ru>
Subject: Using MPlayer in console
To: <freebsd-...@freebsd.org>
Cc: <freebsd-...@freebsd.org>
Message-ID: <005a01c47a74$ae629db0$7916213e@axbcomputer>
Content-Type: text/plain; charset="koi8-r"

Hello all.

I want to watch video films in console using MPlayer or other video players.
I have tried to use SVGAlib, but it supports 4 bit per pixel only, but I want more.

What does mean Framebuffer and can it decide my problem?

Help me please!

Thanks, beforehand.

------------------------------

Message: 14
Date: Thu, 05 Aug 2004 09:49:48 -0500
From: Paul Schmehl <pa...@utdallas.edu>
Subject: Re: portugrade -aR (except)
To: m.ha...@mchsi.com, freebsd-...@freebsd.org
Message-ID: <0F464DF12F29...@utd49554.utdallas.edu>
Content-Type: text/plain; charset=us-ascii; format=flowed

--On Thursday, August 05, 2004 09:56:50 AM -0400 Mike Hauber
<m.ha...@mchsi.com> wrote:
>
> So far, I have not had a successful build of OpenOffice (on
> any version of FreeBSD... ever... so I use their binaries
> as they become available), and the samba port is broken
> (until I upgrade the system to 5.x).
>
That's odd. I've had no problem with *any* port of samba, and I've been
running it for over three years now, with numerous upgrades.

What sort of problem are you having?

Paul Schmehl (pa...@utdallas.edu)
Adjunct Information Security Officer
The University of Texas at Dallas
AVIEN Founding Member
http://www.utdallas.edu/ir/security/

------------------------------

Message: 15
Date: Thu, 5 Aug 2004 10:52:29 -0400 (EDT)
From: "Steve Bertrand" <iacc...@ibctech.ca>
Subject: Re: natd -redirect_address
To: "Noone Nothing" <dma_o...@yahoo.com>
Cc: freebsd-...@freebsd.org
Message-ID: <2936.209.167.16.15....@209.167.16.15>
Content-Type: text/plain;charset=iso-8859-1

> Hello all,
>
> I am probably missing something really stupid but here it goes. I've
> read the man pages, the handbook and even googled the problem to no
> avail.
>
> I am trying to set up natd to redirect public ips to my private
> addresses.
>
> This is what I have set up in rc.conf
>
> defaultrouter="24.97.250.201"
> gateway_enable="YES"
> hostname="gir.visionpayments.net"
> ifconfig_rl0="inet 192.168.0.13 netmask 255.255.255.0"
> ifconfig_xl0="inet 24.97.250.202 netmask 255.255.255.248"
> linux_enable="YES"
> sshd_enable="YES"
> usbd_enable="YES"
> firewall_enabled="YES"
> firewall_type="OPEN"
> natd_enabled="YES"
> natd_interface="xl0"
> natd_flags="-f /etc/natd.conf"
>
> This is what I have in natd.conf
>
> redirect_address 192.168.0.10 24.97.250.203
>
>>From what I read in the man pages and handbook this should be all I
>> need, however, I cannot even ping 24.97.250.203. So I typed in
>
> -bash-2.05b$ natd -redirect_address 192.168.0.10 24.97.250.203
>
> and got
>
> natd: aliasing address not given
>
> So I added
>
> ifconfig_xl0_alias0 "inet 24.97.250.203"
>
> to rc.conf and now I am able to ping that public addy but it is
> doesn't seem to be redirecting me to 192.168.0.10. So I typed in
> -bash-2.05b$ natd -redirect_address 192.168.0.10 24.97.250.203
> again to see what was happens and got
> natd: aliasing address not given
> again. am I just being a dumb n00b? wtf am I doing wrong?
>

First off, have you confirmed natd to be functional? Can the internal
machines get out to the net?

At what point of your firewall ruleset are you diverting to natd?

Have you tried this:

redirect_address 192.168.0.10 0.0.0.0

to see if incoming traffic destined to any public IP gets redirected?

Steve

>
>
>
>
> ---------------------------------
> Do you Yahoo!?
> New and Improved Yahoo! Mail - 100MB free storage!
> _______________________________________________
> freebsd-...@freebsd.org mailing list
> http://lists.freebsd.org/mailman/listinfo/freebsd-questions
> To unsubscribe, send any mail to
> "freebsd-questi...@freebsd.org"
>

------------------------------

Message: 16
Date: Thu, 5 Aug 2004 10:56:07 -0400 (EDT)
From: "Steve Bertrand" <iacc...@ibctech.ca>
Subject: Re: natd -redirect_address
To: "Steve Bertrand" <iacc...@ibctech.ca>
Cc: Noone Nothing <dma_o...@yahoo.com>
Message-ID: <2938.209.167.16.15....@209.167.16.15>
Content-Type: text/plain;charset=iso-8859-1

>> Hello all,
>>
>> I am probably missing something really stupid but here it goes.
>> I've
>> read the man pages, the handbook and even googled the problem to no
>> avail.
>>
>> I am trying to set up natd to redirect public ips to my private
>> addresses.
>>
>> This is what I have set up in rc.conf
>>
>> defaultrouter="24.97.250.201"
>> gateway_enable="YES"
>> hostname="gir.visionpayments.net"
>> ifconfig_rl0="inet 192.168.0.13 netmask 255.255.255.0"
>> ifconfig_xl0="inet 24.97.250.202 netmask 255.255.255.248"
>> linux_enable="YES"
>> sshd_enable="YES"
>> usbd_enable="YES"
>> firewall_enabled="YES"
>> firewall_type="OPEN"
>> natd_enabled="YES"
>> natd_interface="xl0"
>> natd_flags="-f /etc/natd.conf"
>>
>> This is what I have in natd.conf
>>
>> redirect_address 192.168.0.10 24.97.250.203
>>
>>>From what I read in the man pages and handbook this should be all I
>>> need, however, I cannot even ping 24.97.250.203. So I typed in
>>
>> -bash-2.05b$ natd -redirect_address 192.168.0.10 24.97.250.203
>>
>> and got
>>
>> natd: aliasing address not given
>>
>> So I added
>>
>> ifconfig_xl0_alias0 "inet 24.97.250.203"
>>
>> to rc.conf and now I am able to ping that public addy but it is
>> doesn't seem to be redirecting me to 192.168.0.10. So I typed in
>> -bash-2.05b$ natd -redirect_address 192.168.0.10 24.97.250.203
>> again to see what was happens and got

>> natd: aliasing address not given

Oh, and to further... when using -redirect_address as above, you must
supply the -i (-interface) or an -alias_address statement. Try this:

# natd -i rl0 -redirect_address 192.168.0.10 0.0.0.0

or this:

# natd -a 24.97.250.203 -redirect_address 192.168.0.10 0.0.0.0

Cheers,

Steve

>> again. am I just being a dumb n00b? wtf am I doing wrong?
>>
>
> First off, have you confirmed natd to be functional? Can the internal
> machines get out to the net?
>
> At what point of your firewall ruleset are you diverting to natd?
>
> Have you tried this:
>
> redirect_address 192.168.0.10 0.0.0.0
>
> to see if incoming traffic destined to any public IP gets redirected?
>
> Steve
>
>>
>>
>>
>>
>> ---------------------------------
>> Do you Yahoo!?
>> New and Improved Yahoo! Mail - 100MB free storage!
>> _______________________________________________
>> freebsd-...@freebsd.org mailing list
>> http://lists.freebsd.org/mailman/listinfo/freebsd-questions
>> To unsubscribe, send any mail to
>> "freebsd-questi...@freebsd.org"
>>
>
>
> _______________________________________________
> freebsd-...@freebsd.org mailing list
> http://lists.freebsd.org/mailman/listinfo/freebsd-questions
> To unsubscribe, send any mail to
> "freebsd-questi...@freebsd.org"
>

------------------------------

Message: 17
Date: Thu, 5 Aug 2004 16:58:39 +0200
From: Livhu Tshisikule <livhu.ts...@telkomsa.net>
Subject: Setting up Olivetti Job-Jet M400 printer on FBSD 5.2.1
To: freebsd-...@freebsd.org
Message-ID: <200408051658.3999...@telkomsa.net>
Content-Type: text/plain; charset="us-ascii"

Hi,

I am trying to install a printer on my machine. It has a USB connector. With
dmesg I can see that the printer has been detected as

ulpt0: Olivetti Job_Jet M400, rev 2.00/1.00, addr 2, iclass 7/1
ulpt0: using bi-directional mode

How can I test the printer?

I tried lptest but it printed garbages.

Regards
Livhu


------------------------------

Message: 18
Date: Wed, 4 Aug 2004 22:33:27 -0400
From: "JJB" <Barb...@adelphia.net>
Subject: RE: IPFW Configuration
To: "Jonathan" <poiso...@optonline.net>,
<freebsd-...@freebsd.org>
Message-ID: <MIEPLLIBMLEEABPDBI...@adelphia.net>
Content-Type: text/plain; charset="us-ascii"

The handbook firewall section is in the process of being updated.
You can get a copy from
http://freebsd.a1poweruser.com:6088/FBSD_firewall/

Everything you wrote about is covered in detail. Give it a look see.

-----Original Message-----
From: owner-freeb...@freebsd.org
[mailto:owner-freeb...@freebsd.org]On Behalf Of Jonathan
Sent: Wednesday, August 04, 2004 10:00 PM
To: freebsd-...@freebsd.org
Subject: IPFW Configuration

Hello, I am sort of a newbie to IPFW for FreeBSD-5.2.1. I have never
used it and need some help with the configuration. Ok here goes if
anyone can help.

I compiled IPFIREWALL into the kernel with the options to DEFAULT TO
ACCEPT ALL and the VERBOSE=50 option. With the support for IPFW in
the
kernel I then added firewall_enable=off to the rc.conf (with some
other
options that are commented out at the moment). The reason for having
the
firewall off right now is because i was told that rc.firewall in
/etc
needed to be configured for my network card (or IP addresses) before
it
will be able to work. My box is located at a datacebter and my box
is
allocated with about 90 IP addresses (and also the main server IP
which
was given to me when i first purchased the line). I would like to
know
how to configure /etc/rc.firewall to support my MAIN ip and also how
to
make sure the other IPS added to my box are recognized and protected
by
the firewall.
Also I noticed in rc.firewall there are different modes to put the
firewall in like simple mode, client mode, etc. (different firewall
powers i guess). It would be greatly appreciated if someone can show
me
how to configure ipfw. I could not thank anyone more for the future
help
i might recieve on this issue.

If you guys need a copy of rc.conf or rc.firewall in order to help
just
email me and i will provide an attachment.

Thamks in advance

Regards,
Jonathan
_______________________________________________
freebsd-...@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to
"freebsd-questi...@freebsd.org"


------------------------------

Message: 19
Date: Thu, 5 Aug 2004 10:11:19 -0500
From: David Kelly <dke...@HiWAAY.net>
Subject: Re: Moving vinum drives to a new system?
To: FreeBSD Questions <freebsd-...@freebsd.org>
Message-ID: <B48FB901-E6F1-11D8...@HiWAAY.net>
Content-Type: text/plain; charset=US-ASCII; format=flowed


On Aug 5, 2004, at 9:28 AM, David Kelly wrote:

> Am tempted to rerun "stripe -v /dev/ad4s1d /dev/ad6s1d" again but
> would rather not lose the data on the volume.

Update: did exactly that described above and my old data survived!

--
David Kelly N4HHE, dke...@HiWAAY.net
========================================================================
Whom computers would destroy, they must first drive mad.


------------------------------

Message: 20
Date: Thu, 5 Aug 2004 11:09:51 -0400
From: Mike Hauber <m.ha...@mchsi.com>
Subject: Re: portugrade -aR (except)
To: freebsd-...@freebsd.org
Message-ID: <200408051109....@mchsi.com>
Content-Type: text/plain; charset="iso-8859-1"

>>>
wizard# uname -a

FreeBSD wizard.valleygate.net 4.10-STABLE FreeBSD
4.10-STABLE #0: Thu Jul 8 19:53:59 EDT 2004
ro...@wizard.valleygate.net:/usr/obj/usr/src/sys/WIZARD
i386

wizard# portupgrade -R samba

** Port marked as IGNORE: net/samba:
"is marked as broken: "ACL support requires a recent
FreeBSD 5.0-CURRENT""
<<<


It's not really that big of a deal for me, though. The
version I have (samba-2.2.8a_2) does what I need it to. Of
course when I _do_ upgrade to 5.x, I'll be excited to see
what the new version has in store.


On Thursday 05 August 2004 10:49 am, Paul Schmehl
proclaimed:
> --On Thursday, August 05, 2004 09:56:50 AM -0400 Mike
> Hauber
>
> <m.ha...@mchsi.com> wrote:
> > So far, I have not had a successful build of OpenOffice
> > (on any version of FreeBSD... ever... so I use their
> > binaries as they become available), and the samba port
> > is broken (until I upgrade the system to 5.x).
>
> That's odd. I've had no problem with *any* port of
> samba, and I've been running it for over three years now,
> with numerous upgrades.
>
> What sort of problem are you having?
>
> Paul Schmehl (pa...@utdallas.edu)
> Adjunct Information Security Officer
> The University of Texas at Dallas
> AVIEN Founding Member
> http://www.utdallas.edu/ir/security/
> _______________________________________________
> freebsd-...@freebsd.org mailing list
> http://lists.freebsd.org/mailman/listinfo/freebsd-questio
>ns To unsubscribe, send any mail to
> "freebsd-questi...@freebsd.org"

------------------------------

Message: 21
Date: Thu, 5 Aug 2004 17:17:24 +0200
From: Radek Kozlowski <ra...@raadradd.com>
Subject: Re: Using MPlayer in console
To: ilich <sh...@onego.ru>
Cc: freebsd-...@freebsd.org
Message-ID: <20040805151724.GB28842@werd>
Content-Type: text/plain; charset=iso-8859-2

On Thu, Aug 05, 2004 at 02:45:01AM +0400, ilich wrote:
> Hello all.
>
> I want to watch video films in console using MPlayer or other video players.
> I have tried to use SVGAlib, but it supports 4 bit per pixel only, but I want more.

You might want to check this article out:
http://www.ezunix.org/modules.php?op=modload&name=Sections&file=index&req=viewarticle&artid=61&page=1

-Radek

------------------------------

Message: 22
Date: Thu, 5 Aug 2004 11:41:22 -0400
From: Michael Johnson <ah...@ahze.net>
Subject: Re: Using MPlayer in console
To: "ilich" <sh...@onego.ru>
Cc: freebsd-...@freebsd.org
Message-ID: <E70C73B2-E6F5-11D8...@ahze.net>
Content-Type: text/plain; charset=US-ASCII; format=flowed

mplayer also supports libcaca (http://sam.zoy.org/projects/libcaca/).
install graphics/libcaca and then remove the line "--disable-libcaca"
in multimedia/mplayer/Makefile and install mplayer.

Michael

On Aug 4, 2004, at 6:45 PM, ilich wrote:

> Hello all.
>
> I want to watch video films in console using MPlayer or other video
> players.
> I have tried to use SVGAlib, but it supports 4 bit per pixel only, but
> I want more.
>
> What does mean Framebuffer and can it decide my problem?
>
> Help me please!
>
> Thanks, beforehand.
>
>
> _______________________________________________
> freebsd-...@freebsd.org mailing list
> http://lists.freebsd.org/mailman/listinfo/freebsd-questions
> To unsubscribe, send any mail to
> "freebsd-questi...@freebsd.org"


------------------------------

Message: 23
Date: Thu, 5 Aug 2004 11:48:05 -0400 (EDT)
From: "Steve Bertrand" <iacc...@ibctech.ca>
Subject: [Fwd: Re: natd -redirect_address]
To: freebsd-...@freebsd.org
Message-ID: <2976.209.167.16.15....@209.167.16.15>
Content-Type: text/plain; charset="iso-8859-1"

OP forgot to Cc: list...

thank you so much. I found that for some reason natd was not loading
at boot so I typed this ipfw -f flush
ipfw add divert natd all from any to any via xl0
ipfw add pass all from any to any
natd -n xl0 -redirect_address 192.168.0.10 24.97.250.203
and it works like a dream

Steve Bertrand <iacc...@ibctech.ca> wrote:
>> Hello all,
>>
>> I am probably missing something really stupid but here it goes. I've
>> read the man pages, the handbook and even googled the problem to no
avail.
>>
>> I am trying to set up natd to redirect public ips to my private
addresses.
>>
>> This is what I have set up in rc.conf
>>
>> defaultrouter="24.97.250.201"
>> gateway_enable="YES"
>> hostname="gir.visionpayments.net"
>> ifconfig_rl0="inet 192.168.0.13 netmask 255.255.255.0"
>> ifconfig_xl0="inet 24.97.250.202 netmask 255.255.255.248"
>> linux_enable="YES"
>> sshd_enable="YES"
>> usbd_enable="YES"
>> firewall_enabled="YES"
>> firewall_type="OPEN"
>> natd_enabled="YES"
>> natd_interface="xl0"
>> natd_flags="-f /etc/natd.conf"
>>
>> This is what I have in natd.conf
>>
>> redirect_address 192.168.0.10 24.97.250.203
>>
>>>From what I read in the man pages and handbook this should be all I
>>> need, however, I cannot even ping 24.97.250.203. So I typed in
>>
>> -bash-2.05b$ natd -redirect_address 192.168.0.10 24.97.250.203
>>
>> and got
>>
>> natd: aliasing address not given
>>
>> So I added
>>
>> ifconfig_xl0_alias0 "inet 24.97.250.203"
>>
>> to rc.conf and now I am able to ping that public addy but it is
doesn't seem to be redirecting me to 192.168.0.10. So I typed in
-bash-2.05b$ natd -redirect_address 192.168.0.10 24.97.250.203
>> again to see what was happens and got

>> natd: aliasing address not given

Oh, and to further... when using -redirect_address as above, you must
supply the -i (-interface) or an -alias_address statement. Try this:

# natd -i rl0 -redirect_address 192.168.0.10 0.0.0.0

or this:

# natd -a 24.97.250.203 -redirect_address 192.168.0.10 0.0.0.0

Cheers,

Steve

>> again. am I just being a dumb n00b? wtf am I doing wrong?
>>
>
> First off, have you confirmed natd to be functional? Can the
internal machines get out to the net?
>
> At what point of your firewall ruleset are you diverting to natd?
>
> Have you tried this:
>
> redirect_address 192.168.0.10 0.0.0.0
>
> to see if incoming traffic destined to any public IP gets redirected?
>
> Steve
>
>>
>>
>>
>>
>> ---------------------------------
>> Do you Yahoo!?
>> New and Improved Yahoo! Mail - 100MB free storage!
>> _______________________________________________
>> freebsd-...@freebsd.org mailing list
>> http://lists.freebsd.org/mailman/listinfo/freebsd-questions
>> To unsubscribe, send any mail to
>> "freebsd-questi...@freebsd.org"
>>
>
>
> _______________________________________________
> freebsd-...@freebsd.org mailing list
> http://lists.freebsd.org/mailman/listinfo/freebsd-questions
> To unsubscribe, send any mail to
> "freebsd-questi...@freebsd.org"
>


_______________________________________________
freebsd-...@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to
"freebsd-questi...@freebsd.org"


---------------------------------
Do you Yahoo!?
New and Improved Yahoo! Mail - Send 10MB messages!
-------------- next part --------------

thank you so much. I found that for some reason natd was not loading
at boot so I typed this

ipfw -f flush

ipfw add divert natd all from any to any via xl0

ipfw add pass all from any to any

natd -n xl0 -redirect_address 192.168.0.10 24.97.250.203

and it works like a dream
Steve Bertrand <iacc...@ibctech.ca> wrote:

>> Hello all,
>>
>> I am probably missing something really stupid but here it goes.
>> I've
>> read the man pages, the handbook and even googled the problem to
no
>> avail.
>>
>> I am trying to set up natd to redirect public ips to my private
>> addresses.
>>
>> This is what I have set up in rc.conf
>>
>> defaultrouter="24.97.250.201"
>> gateway_enable="YES"
>> hostname="gir.visionpayments.net"
>> ifconfig_rl0="inet 192.168.0.13 netmask 255.255.255.0"
>> ifconfig_xl0="inet 24.97.250.202 netmask 255.255.255.248"
>> linux_enable="YES"
>> sshd_enable="YES"
>> usbd_enable="YES"
>> firewall_enabled="YES"
>> firewall_type="OPEN"
>> natd_enabled="YES"
>> natd_interface="xl0"
>> natd_flags="-f /etc/natd.conf"
>>
>> This is what I have in natd.conf
>>
>> redirect_address 192.168.0.10 24.97.250.203
>>
>>>From what I read in the man pages and handbook this should be
all I
>>> need, however, I cannot even ping 24.97.250.203. So I typed in
>>
>> -bash-2.05b$ natd -redirect_address 192.168.0.10 24.97.250.203
>>
>> and got
>>
>> natd: aliasing address not given
>>
>> So I added
>>
>> ifconfig_xl0_alias0 "inet 24.97.250.203"
>>
>> to rc.conf and now I am able to ping that public addy but it is
>> doesn't seem to be redirecting me to 192.168.0.10. So I typed in
>> -bash-2.05b$ natd -redirect_address 192.168.0.10 24.97.250.203
>> again to see what was happens and got
>> natd: aliasing address not given
Oh, and to further... when using -redirect_address as above, you
must
supply the -i (-interface) or an -alias_address statement. Try
this:
# natd -i rl0 -redirect_address 192.168.0.10 0.0.0.0
or this:
# natd -a 24.97.250.203 -redirect_address 192.168.0.10 0.0.0.0
Cheers,
Steve
>> again. am I just being a dumb n00b? wtf am I doing wrong?
>>
>
> First off, have you confirmed natd to be functional? Can the
internal
> machines get out to the net?
>
> At what point of your firewall ruleset are you diverting to natd?
>
> Have you tried this:
>
> redirect_address 192.168.0.10 0.0.0.0
>
> to see if incoming traffic destined to any public IP gets
redirected?
>
> Steve
>
>>
>>
>>
>>
>> ---------------------------------
>> Do you Yahoo!?
>> New and Improved Yahoo! Mail - 100MB free storage!
>> _______________________________________________
>> freebsd-...@freebsd.org mailing list
>> http://lists.freebsd.org/mailman/listinfo/freebsd-questions
>> To unsubscribe, send any mail to
>> "freebsd-questi...@freebsd.org"
>>
>
>
> _______________________________________________
> freebsd-...@freebsd.org mailing list
> http://lists.freebsd.org/mailman/listinfo/freebsd-questions
> To unsubscribe, send any mail to
> "freebsd-questi...@freebsd.org"
>
_______________________________________________
freebsd-...@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to
"freebsd-questi...@freebsd.org"
_________________________________________________________________

Do you Yahoo!?
[1]New and Improved Yahoo! Mail - Send 10MB messages!

References

1. http://us.rd.yahoo.com/mail_us/taglines/10/*http://promotions.yahoo.com/new_mail/static/efficiency.html

------------------------------

Message: 24
Date: Fri, 6 Aug 2004 01:05:14 +0900
From: "Byung-Hee H." <b...@izb.knu.ac.kr>
Subject: Re: Only root is able to login
To: Thomas Krause <f...@chef-ingenieur.de>
Cc: freebsd-...@freebsd.org
Message-ID: <20040805160...@tz3220e.izb.knu.ac.kr>
Content-Type: text/plain; charset=utf-8

Hi,

Thu, Aug 05, 2004 at 10:20:18AM +0200
Thomas Krause <f...@chef-ingenieur.de> wrote:

> Hello,
> I've a big problem, that only root is able to login to a new FreeBSD 5.2.1
> box. Neither login nor su works. I've no local access to the machine.
> A ftp-login is possible for normal users.
>
> mdm-online:/ # su - abc
> su: /bin/sh: Permission denied
>
> mdm-online:/ # login abc
> Password:
> Copyright (c) 1992-2004 The FreeBSD Project.
> Copyright (c) 1979, 1980, 1983, 1986, 1988, 1989, 1991, 1992, 1993, 1994
> The Regents of the University of California. All rights reserved.
>
> FreeBSD 5.2.1-RELEASE-p9 (MDM-ONLINE) #1: Mon Jul 26 22:24:58 CEST 2004
>
> Welcome to FreeBSD!
>
> login: /bin/sh: No such file or directory
>
> mdm-online:/ # ls -l /bin/sh
> -r-xr-xr-x 1 root wheel 753872 Jul 26 10:18 /bin/sh
> mdm-online:/ # pw usershow abc
> abc:*:1003:1003::0:0:User &:/home/abc:/bin/sh
> mdm-online:/ # ls -ld /home/abc
> drwxr-xr-x 2 abc abc 512 Aug 5 09:33 /home/abc
> mdm-online:/ # ls -la /home/abc
> total 20
> drwxr-xr-x 2 abc abc 512 Aug 5 09:33 .
> drwxr-xr-x 7 root wheel 512 Aug 5 09:34 ..
> -rw-r--r-- 1 abc abc 767 Aug 5 09:33 .cshrc
> -rw-r--r-- 1 abc abc 248 Aug 5 09:33 .login
> -rw-r--r-- 1 abc abc 158 Aug 5 09:33 .login_conf
> -rw------- 1 abc abc 373 Aug 5 09:33 .mail_aliases
> -rw-r--r-- 1 abc abc 331 Aug 5 09:33 .mailrc
> -rw-r--r-- 1 abc abc 797 Aug 5 09:33 .profile
> -rw------- 1 abc abc 276 Aug 5 09:33 .rhosts
> -rw-r--r-- 1 abc abc 975 Aug 5 09:33 .shrc
>
> I've not modified any login* file in /etc
>
> I've no idea what's the reason, also as it worked before.
> Any hints would be greatful.
>
> Regards,
> Thomas.
>

Reference to MERGEMASTER(8).

Cheer up!

------------------------------

Message: 25
Date: Thu, 05 Aug 2004 18:05:57 +0200
From: "Webmaster" <in...@godonline.co.za>
Subject: Request for confirmation
To: freebsd-...@freebsd.org
Message-ID: <E1Bskkf-...@server1.red-ns.com>


Almost welcome to our mailinglist(s) ...

Someone, hopefully you, has subscribed your email address to the following mailinglists:

* God Online Crosswalk Ezine


If this is correct, please click this URL to confirm your subscription:

http://www.godonline.co.za/elist/?p=confirm&uid=65e2c823acf38c0212e0ef674e378a2f

If this is not correct, you do not need to do anything, simply delete this message.

Thank you

------------------------------

Message: 26
Date: Thu, 05 Aug 2004 18:06:03 +0200
From: "Webmaster" <in...@godonline.co.za>
Subject: Request for confirmation
To: ques...@freebsd.org
Message-ID: <E1Bskkl-...@server1.red-ns.com>


Almost welcome to our mailinglist(s) ...

Someone, hopefully you, has subscribed your email address to the following mailinglists:

* God Online Crosswalk Ezine


If this is correct, please click this URL to confirm your subscription:

http://www.godonline.co.za/elist/?p=confirm&uid=7aed5fdaa00650c3c07b1e1bb4f0eada

If this is not correct, you do not need to do anything, simply delete this message.

Thank you

------------------------------

Message: 27
Date: Fri, 6 Aug 2004 00:14:10 +0900
From: "Byung-Hee H." <b...@izb.knu.ac.kr>
Subject: Re: Only root is able to login
To: Thomas Krause <f...@chef-ingenieur.de>
Cc: freebsd-...@freebsd.org
Message-ID: <20040805151...@tz3220e.izb.knu.ac.kr>
Content-Type: text/plain; charset=utf-8

Hi,

Thu, Aug 05, 2004 at 10:20:18AM +0200
Thomas Krause <f...@chef-ingenieur.de> wrote:

> Hello,
> I've a big problem, that only root is able to login to a new FreeBSD 5.2.1
> box. Neither login nor su works. I've no local access to the machine.
> A ftp-login is possible for normal users.
>
> mdm-online:/ # su - abc
> su: /bin/sh: Permission denied
>
> mdm-online:/ # login abc
> Password:
> Copyright (c) 1992-2004 The FreeBSD Project.
> Copyright (c) 1979, 1980, 1983, 1986, 1988, 1989, 1991, 1992, 1993, 1994
> The Regents of the University of California. All rights reserved.
>
> FreeBSD 5.2.1-RELEASE-p9 (MDM-ONLINE) #1: Mon Jul 26 22:24:58 CEST 2004
>
> Welcome to FreeBSD!
>
> login: /bin/sh: No such file or directory
>
> mdm-online:/ # ls -l /bin/sh
> -r-xr-xr-x 1 root wheel 753872 Jul 26 10:18 /bin/sh
> mdm-online:/ # pw usershow abc
> abc:*:1003:1003::0:0:User &:/home/abc:/bin/sh
> mdm-online:/ # ls -ld /home/abc
> drwxr-xr-x 2 abc abc 512 Aug 5 09:33 /home/abc
> mdm-online:/ # ls -la /home/abc
> total 20
> drwxr-xr-x 2 abc abc 512 Aug 5 09:33 .
> drwxr-xr-x 7 root wheel 512 Aug 5 09:34 ..
> -rw-r--r-- 1 abc abc 767 Aug 5 09:33 .cshrc
> -rw-r--r-- 1 abc abc 248 Aug 5 09:33 .login
> -rw-r--r-- 1 abc abc 158 Aug 5 09:33 .login_conf
> -rw------- 1 abc abc 373 Aug 5 09:33 .mail_aliases
> -rw-r--r-- 1 abc abc 331 Aug 5 09:33 .mailrc
> -rw-r--r-- 1 abc abc 797 Aug 5 09:33 .profile
> -rw------- 1 abc abc 276 Aug 5 09:33 .rhosts
> -rw-r--r-- 1 abc abc 975 Aug 5 09:33 .shrc
>
> I've not modified any login* file in /etc
>
> I've no idea what's the reason, also as it worked before.
> Any hints would be greatful.
>
> Regards,
> Thomas.
> To unsubscribe, send any mail to "freebsd-questi...@freebsd.org"

Reference to MERGEMASTER(8).


------------------------------

Message: 28
Date: Thu, 05 Aug 2004 18:39:22 +0200
From: "www.godonline.co.za crosswalk ezine" <el...@godonline.co.za>
Subject: Welcome to our Mailinglist
To: freebsd-...@freebsd.org
Message-ID: <E1BslH0-...@server1.red-ns.com>


Welcome to our Mailinglists

Please keep this email for later reference.

Your email address has been added to the following mailinglists:

*God Online Crosswalk Ezine

To unsubscribe please go to http://www.godonline.co.za/elist/?p=unsubscribe&uid=65e2c823acf38c0212e0ef674e378a2f and follow the steps.
To update your details and preferences please go to http://www.godonline.co.za/elist/?p=preferences&uid=65e2c823acf38c0212e0ef674e378a2f.

Thank you

------------------------------

Message: 29
Date: Thu, 05 Aug 2004 09:40:06 -0700
From: Ted Unangst <te...@coverity.com>
Subject: clock problem
To: freebsd-...@freebsd.org
Message-ID: <411262E6...@coverity.com>
Content-Type: text/plain; charset=us-ascii; format=flowed

I have an IBM thinkpad T40 running FreeBSD 4.10. It does not support
apm, and acpi made the system very flaky. This hardly matters, since
the BIOS suspend function still works. However, when I open the lid,
the system clock is set to the same time it was when I closed the lid.
ie, close lid at 6:30pm, open lid at 9:00am next morning, and 'date'
tells me the time is 6:31pm yesterday.

This seems to be a matter of the system time relying on timecounters
only. How do I disable this behavior, or have it use the CMOS clock?

Interesting sysctl values:
machdep.disable_rtc_set: 0
machdep.wall_cmos_clock: 1
machdep.i8254_freq: 1193182
machdep.tsc_freq: 1594833412
kern.timecounter.method: 0
kern.timecounter.hardware: TSC

------------------------------

Message: 30
Date: Thu, 05 Aug 2004 18:46:12 +0200
From: "www.godonline.co.za crosswalk ezine" <el...@godonline.co.za>
Subject: Goodbye from our Mailinglist
To: freebsd-...@freebsd.org
Message-ID: <E1BslNc-...@server1.red-ns.com>


Goodbye from our Mailinglist, sorry to see you go.

You have been unsubscribed from the following mailinglists:
* God Online Crosswalk Ezine


If there is an error in this information, you can re-subscribe:
please go to http://www.godonline.co.za/elist/?p=subscribe and follow the steps.

Thank you

------------------------------

Message: 31
Date: Thu, 05 Aug 2004 09:46:42 -0700
From: Ted Unangst <te...@coverity.com>
Subject: Re: clock problem
To: Ted Unangst <te...@coverity.com>
Cc: freebsd-...@freebsd.org
Message-ID: <4112647...@coverity.com>
Content-Type: text/plain; charset=us-ascii; format=flowed

Ted Unangst wrote:
> This seems to be a matter of the system time relying on timecounters
> only. How do I disable this behavior, or have it use the CMOS clock?

After picking a better search phrase, it seems I'm having this problem:
http://www.freebsd.org/cgi/query-pr.cgi?pr=63431

Any more insight appreciated.

------------------------------

Message: 32
Date: Tue, 3 Aug 2004 18:32:44 -0500
From: "Thompson, Jimi" <Ji...@mail.cox.smu.edu>
Subject: BIND 9 Package Question
To: <freebsd-...@freebsd.org>
Message-ID: <4B3F673172B98D449EBC...@exch4.elcsb.net>
Content-Type: text/plain; charset="US-ASCII"

Hi,

Background - All was well until the boss upgraded the glibc on the
RedHat server which made all kinds of things unhappy. Taking the
opportunity to convert yet another server here to FreeBSD, I built a new
DNS on FreeBSD 4.9.

I have noticed a couple of odd things.

Typing in /usr/sbin/named -v, gets me this:

named 8.3.6-REL Mon Oct 27 14:55:35 GMT 2003

ro...@freebsd-stable.sentex.ca:/usr/obj/usr/src/usr.sbin/named

which totally doesn't look right since it should be bind 9 something or
other. The package was /usr/ports/dns/bind9

which stated in the package description that it would install BIND
version 9. Either the binary doesn't know what version it is or the
package has something funky in it that's yielding the wrong version
number after compilation.

Thanks,

Ms. Jimi Thompson, CISSP

Manager, Web Operations

Cox School of Business

Southern Methodist University

"What kind of peace do we seek? Not a 'Pax Americana' enforced on the
world by American weapons of war. Not the peace of the grave or the
security of a slave. I am talking about genuine peace, the kind of peace
that makes life on earth worth living, the kind that enables men and
nations to grow and to hope and to build a better life for their
children-not merely peace for Americans, but peace for all men and
women; not merely peace in our time, but peace for all time." - John F.
Kennedy


------------------------------

Message: 33
Date: Thu, 05 Aug 2004 10:56:57 -0600
From: Scott Long <sco...@freebsd.org>
Subject: Re: SCSI errors with Adaptec 2200S RAID
To: Andre Albsmeier <andre.a...@siemens.com>
Cc: FreeBSD ISP List <freeb...@freebsd.org>
Message-ID: <411266D9...@freebsd.org>
Content-Type: text/plain; charset=us-ascii; format=flowed

Andre Albsmeier wrote:

> On Tue, 03-Aug-2004 at 23:31:52 -0400, u...@3.am wrote:
>
>>Please cc replies directly to me, as I am not subscribed to the lists.
>>
>>With some help from here, I was able to get this RAID card to see our
>>external DLT (QUANTUM 4000) SCSI tape drive by installing the aacp (pass
>>through) driver in addition to the aac driver. camcontrol now works, as
>>do basic mt commands and amcheck (amanda check).
>>
>>However, (amanda) dumps either hang, fail completely or fail after
>>transfering very little data. On the console, I see:
>>
>>(sa0:aacp1:0:4:0): READ(06). CDB8 0 0 0 20 0 0
>>(sa0:aacp1:0:4:0): NO SENSE ILI (length mismatch): -24576 csi:0,0,0,1
>>
>>At this point the device is completely unresponsive, and the only way to
>>get the system to see it again is to reboot the whole server. I tried
>>ordering a 3 ft cable, thinking I was pushing my luck with the 6 ft (I've
>>had this problem with SCSI cables in the past), but the problem persists.
>>
>>The same drive (which has an active terminator) has been working fine for
>>years on a different box using an Intel L440GX+ MB's on-board SCSI port.
>>
>>Once again, any helpful replies are greatly appreciated!
>
>
> Are you sure you are running a recent fw on your DLT4k? My DLTs
> used to behave badly with early fw revisions. Check out
>
> http://www.quantum.com/am/service_support/downloads/software/dlt4000.htm
>
> You can upgrade it by tape or use my software for updating the fw of
> SCSI devices on FreeBSD.
>
> -Andre
>

This sounds like excellent advice. Note that the error messages that
you are seeing are coming from the Adaptec firmware, not FreeBSD or the
aac driver. Also, the aacp device and backing firmware support are
really just hacks that exist to allow cdroms to be booted and drives to
be flashed with new firmware. I've never heard of anyone running a tape
drive in this fashion, so it will be quite interesting to see if newer
firmware helps.

Scott


------------------------------

_______________________________________________
freebsd-...@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to "freebsd-questi...@freebsd.org"

End of freebsd-questions Digest, Vol 71, Issue 12
*************************************************

0 new messages