[Sofi-firewall-devel] Re: sofi installation
Status: Inactive
Brought to you by:
mheily
|
From: Mark H. <ma...@he...> - 2003-01-30 07:52:23
|
On Thu, Jan 30, 2003 at 12:34:58AM -0500, Steve Shockley wrote: > <h1>Network autodetection failed</h1>Could not determine the value of > IF_INTERNET<h3>-e</h3> > > I'd say it's not quite accurate yet, or I didn't do something right... > (Note: this machine only has one interface, so maybe that's the > problem.) > Yes, it failed because it didn't find an interface with a public IP address. Is this machine acting as your firewall, or is it a regular host? You told me your machine runs BIND9 and DHCPD, so it must be a 24x7 host. I will make a few changes to allow you to install SOFI on a single-homed system. It should be trivial to design a test that disables the NAT rules and allows everything else to work. Regrettably, I will not be able to support bind9 or the dhcpd from ports; i hear bind9 will be standard in the next openbsd release (3.3), it'll have to wait till then. > > Looking better! I've attached a quick version that's something like > what I had in mind. Of course, the hard part is coding it for output. > Wow! I like what you've done with it! This will definitely be the basis of the next interface makeover. I especially like the choice of fonts and font sizes. The only change I would make is to add some padding-left so the left edge of the text doesn't touch the border. Thanks so much for doing this. I really tested the hell out of the last release (SOFI 0.4) on my own setup, and hope that all the major bugs are squashed. The next thing I am working on is creating a "plug and play" firewall-on-cd using SOFI, where you literally pop the CD into your existing firewall (be it Linux, *BSD, or Windows), reboot, and have a fully functional OpenBSD/SOFI firewall. I think it would make a great demo for people who want to try OpenBSD but can't get through the install/setup process (or who don't want to blow away their most critical server, the gateway, and install something totally new and foreign). Thus far, I have created a working Live-CD of my existing firewall setup, and if everything goes well I hope to publish an ISO image by the end of the week. After that, I'll start importing your HTML changes. Thanks again, Mark -- Mark Heily <ma...@he...> Work # 703-430-1350 http://heily.com/mark |