summaryrefslogtreecommitdiff
path: root/etc
AgeCommit message (Collapse)Author
2016-08-23syncOkan Demirmen
2016-08-18syncStuart Henderson
2016-08-15syncStuart Henderson
2016-08-11Update moduli file.Darren Tucker
2016-08-10armish handled some early-gen arm machines, which required tons ofTheo de Raadt
workarounds. Some of them will soon stand in the way of armv7. Off to the attic you go.
2016-08-09remove pointless csh placeholder files from /etcAlexander Hall
ok jung@ (some time ago) phessler@
2016-07-30old keys no longer neededTheo de Raadt
2016-07-25add new mirror in Lithuania to examples/pkg.conf, ok deraadtStuart Henderson
2016-07-19Do not consider tap(4) a special interface and start if before otherMartin Pieuchot
pseudo-interfaces. This unbreak vlan(4) on top of tap(4) since the refactoring to turn it MP-safe. ok claudio@, deraadt@
2016-07-16syncTodd C. Miller
2016-07-10Fix detection of /usr/lib on NFS.Robert Peichaer
Found by Frank Scheiner, thanks for reporting this. OK krw, halex 'cool' deraadt
2016-07-05regenVisa Hankala
2016-07-05Add /dev/openprom.Visa Hankala
ok kettenis@ deraadt@ jasper@
2016-07-05syncStuart Henderson
2016-06-26upgrade selected login.conf to use auto rounds for bcrypt. the installerTed Unangst
already does this, so we don't want to go backwards on password changes. ok krw
2016-06-05The ldpd(8) sample config was terribly outdated. Passive interfaces,Renato Westphal
for example, were removed in 2013 because they don't make sense in ldpd. ok deraadt
2016-06-03Add operators =, !=, - (range), >< (exclsive range) to the as-pathSebastian Benoit
filters (AS, peer-as, source-as, transit-as). Add a use case (block illegal AS numbers) to the bgpd.conf example. feedback from claudio, sthen, florian, ok florian@ phessler@
2016-06-01Remove dead 2004 link to list of blacklists, from Sevan Janiyan.Stuart Henderson
Point at wikipedia's list of blacklists instead, some are DNS-only but there are a few rsyncable ones in there (including a good commercial one and some free ones).
2016-06-01increase permitted sizes for daemon and messages. i overflow them tooTed Unangst
frequently for my taste, and disk is cheap. ok deraadt millert
2016-05-29Improve error handling in reorder_libs()Robert Peichaer
- run commands in subshell only if mktemp is successful - on error just leave the for-loop but set _error=true - cleanup tmpdirs afterwards - set _error=true if the ro remount fails - print appropriate final message depending on $_error positive feedback from deraadt OK krw
2016-05-29Stop building u-boot kernel and ramdisk images. The kernel make targetsJonathan Gray
are left for now but umg files are no longer built when building releases.
2016-05-28use efiboot in armv7 miniroot imagesJonathan Gray
2016-05-27No need to show the messages if we skip in case of /usr/lib on nfs.Robert Peichaer
OK deraadt
2016-05-27Add function comments.Robert Peichaer
OK sthen, deraadt
2016-05-27syncStuart Henderson
2016-05-26whitespace found during reviewTheo de Raadt
2016-05-26- rename rebuildlibs() to reorder_libs()Robert Peichaer
- move the info message inside the function - skip reordering if /usr/lib is on a nfs mounted filesystem - temporarily remount rw if /usr/lib is on a ro ffs file-system OK deraadt
2016-05-23build armv7 efibootJonathan Gray
2016-05-22Use the -F flag of install(1) to ensure the file's content is flushed to disk.Robert Peichaer
OK deraadt
2016-05-21regenMark Kettenis
2016-05-21syncTheo de Raadt
2016-05-21Add /dev/openprom.Mark Kettenis
2016-05-21syncTheo de Raadt
2016-05-21Default /dev/video node to root.wheel 600 because this should not beTheo de Raadt
available wide open. there should be some access model either via a group or fbtab. This will cause a decision to be made. ok millert
2016-05-21Copy dtb files to miniroots and install disk. Increase the ramdisk sizeJonathan Gray
and force long filenames on the first mount of fat 16 filesystems so this works. U-boot scripts have not yet been changed to load these files. ok kettenis@
2016-05-14Remove handling of /etc/examples/ files by sysmerge(8). Getting regular messagesAntoine Jacoutot
about pkg.conf isn't really that helpful and if a big syntax change comes along well we have current.html. it was disabled during p2k16 and no one complained so far discussed with and ok deraadt@
2016-05-14add 6.1 firmware keyStuart Henderson
2016-05-14unhphenate the world: re-order -> reorderJason McIntyre
sthen does not object
2016-05-14another ftp:// to http://T.J. Townsend
2016-05-14switch ftp:// mirror to http://T.J. Townsend
2016-05-11remove hppa64 port, which we never got going beyond broken single users.Theo de Raadt
hppa reverse-stack gives us a valuable test case, but most developers don't have a 2nd one to proceed further with this. ok kettenis
2016-05-11add OpenBSD 6.1 packages keyChristian Weisgerber
2016-05-11add openbsd 6.1 base keyTheo de Raadt
2016-05-11crank to 6.0-betaTheo de Raadt
2016-05-11remove uatraps from "all" as wellJonathan Gray
ok beck@
2016-05-11Alas all good things come to an end. The U of A traplist is going away asBob Beck
the University of Alberta moves away from running a spamd fronted MX, so there is no more source for this traplist anymore.
2016-05-05show what we're doing when reordering libraries, otherwise the textStuart Henderson
above it is "starting network", which can make you think something is broken when your machine is as slow as some of mine. "Yeah, that's a pretty crappy machine" deraadt@
2016-05-03listen directive may use a table for authentication, to make this work theJoerg Jung
table has to be defined BEFORE consequently move all tables in the examples to the beginning and before the listen directive to avoid tables not being found no functional change ran into this myself earlier, also reported by cjones via irc ok gilles
2016-05-03signal name should be first, fixes reload; ok deraadt@Otto Moerbeek
2016-04-29Delete invocation of mailq(1) that was present for historical reasons.Ingo Schwarze
On a real mailserver, it's too noisy and may be a privacy concern. On a machine that's not a mailserver, it's pointless. Besides, Theo points out that running subsystems that potentially parse untrusted user data daily, at a predictable time, as root is not a very good idea in the first place. Suggested by millert@; gilles@ matthieu@ deraadt@ sthen@ agree