TGViewer
Channel Public Channel
OpenBSD

OpenBSD

@openbsd

Сool OpenBSD stuff @openbsd
Feedback obsd@tuta.io

Community:
@openbsd_en
@openbsd_ru
@openbsdbr
@OpenBSD_es

OpenBSDjumpstart https://t.me/joinchat/EzTjLQuG8MdUSVqFS1xA4w

Unofficial channel. Get OpenBSD: https://www.openbsd.org/
Subscribers
1.23K
Photos
38
Videos
2
Links
408

Showing posts older than #39 · Back to latest

Older Posts 19 shown
Post #38 325
The simple web-stack.

The OpenBSD httpd(8) is my obvious choice. It's small, easy to configure and designed from the ground up to use privilege separation. It does however lack a way to add custom HTTP-headers. To solve this problem, I run relayd(8) infront of httpd(8) and lets it handle TLS acceleration and adding proper caching headers...

https://ifconfig.se/simple-web-stack.html

#httpd #relayd
Post #35 334
Configuring mail server on OpenBSD 6.5.

This guide is mostly notes for myself rather than something readable, but it may be useful anyway. It contains an example of working configuration for OpenSMTPD, SpamPD, SpamAssassin, DKIM Proxy and Dovecot with Sieve support on OpenBSD...

https://ch1p.io/blog/11/

#mail #opensmtpd
Post #34 532
CVE-2019-8460.

Reuven Plevinsky and Tal Vainshtein of Check Point Software Technologies Ltd. discovered that OpenBSD kernel (all versions, including 6.5) can be forced to create long chains of TCP SACK holes that cause very expensive calls to tcp_sack_option() for every incoming SACK packet which can lead to a denial of service.

https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-8460

#security #cve
Post #31 302
UTMFW.

UTMFW is a UTM firewall running on OpenBSD. UTMFW is expected to be used on production systems. The UTMFW project provides a Web User Interface (WUI) for monitoring and configuration.

https://github.com/sonertari/UTMFW

#firewall #security #network
Post #30 323
Portable OpenSSH.

This is a port of OpenBSD's OpenSSH to most Unix-like operating systems, including Linux, OS X and Cygwin. Portable OpenSSH polyfills OpenBSD APIs that are not available elsewhere, adds sshd sandboxing for more operating systems and includes support for OS-native authentication and auditing (e.g. using PAM).

https://github.com/openssh/openssh-portable

#ssh
Post #29 330
fnaify 2.0-beta

FNA is a reimplementation of the Microsoft XNA Game Studio 4.0 Refresh libraries. Thanks to the great work by Ethan Lee (flibitijibibo) games using FNA are highly portable and can even run on OpenBSD: https://github.com/rfht/fnaify

* Refer to https://fna-xna.github.io/ for more information about FNA.

#games #fun
Post #27 432
sxxu - a tool to help build OpenBSD siteXX files.

The goals of sxxu are to help you:

- Keep configuration for your systems in a source control
- Recover from a disaster more quickly
- Do a matching install on a secondary system so you can:
- - Upgrade between versions of OpenBSD with the ability to revert
- - Replace aging hardware
- - Build a test environment before pushing changes to a production system

https://github.com/afresh1/sxxu

#github
Post #23 328
OpenBSD stable binary packages.

"We are pleased to announce that we now also provide selected binary packages for the most recent release. These are built from the -stable ports tree which receives security and a few other important fixes..."

https://marc.info/?l=openbsd-announce&m=156577865917831&w=2

#packages #system
Post #19 327
Mini review of tog: the OpenBSD source control system.

tog has log, diff, blame, and tree views. You can start in any of the views by calling tog with appropriate sub-command, or start from default log mode and switch to tree by hitting t, blame (enter), or diff (enter on a line with a hash)...

http://akpoff.com/archive/2019/mini_review_of_tog.html

#tog
Older posts →
Threads Profile ViewerView any public Threads profile without an account.Open ThreadLook →Writing with AI? Make it sound human.Metric37 rewrites AI drafts so they read naturally. Free AI detector, 1,500 words free.Try Metric37 →