<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" encoding="UTF-8" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:sy="http://purl.org/rss/1.0/modules/syndication/" xmlns:admin="http://webns.net/mvcb/" xmlns:atom="http://www.w3.org/2005/Atom/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:googleplay="http://www.google.com/schemas/play-podcasts/1.0" xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd" xmlns:fireside="http://fireside.fm/modules/rss/fireside">
  <channel>
    <fireside:hostname>web01.fireside.fm</fireside:hostname>
    <fireside:genDate>Sun, 10 May 2026 23:13:05 -0500</fireside:genDate>
    <generator>Fireside (https://fireside.fm)</generator>
    <title>BSD Now - Episodes Tagged with “Linux Vs Bsd”</title>
    <link>https://www.bsdnow.tv/tags/linux%20vs%20bsd</link>
    <pubDate>Wed, 08 Oct 2014 08:00:00 -0400</pubDate>
    <description>Created by three guys who love BSD, we cover the latest news and have an extensive series of tutorials, as well as interviews with various people from all areas of the BSD community. It also serves as a platform for support and questions. We love and advocate FreeBSD, OpenBSD, NetBSD, DragonFlyBSD and TrueOS. Our show aims to be helpful and informative for new users that want to learn about them, but still be entertaining for the people who are already pros.
The show airs on Wednesdays at 2:00PM (US Eastern time) and the edited version is usually up the following day. 
</description>
    <language>en-us</language>
    <itunes:type>episodic</itunes:type>
    <itunes:subtitle>A weekly podcast and the place to B...SD</itunes:subtitle>
    <itunes:author>JT Pennington</itunes:author>
    <itunes:summary>Created by three guys who love BSD, we cover the latest news and have an extensive series of tutorials, as well as interviews with various people from all areas of the BSD community. It also serves as a platform for support and questions. We love and advocate FreeBSD, OpenBSD, NetBSD, DragonFlyBSD and TrueOS. Our show aims to be helpful and informative for new users that want to learn about them, but still be entertaining for the people who are already pros.
The show airs on Wednesdays at 2:00PM (US Eastern time) and the edited version is usually up the following day. 
</itunes:summary>
    <itunes:image href="https://media24.fireside.fm/file/fireside-images-2024/podcasts/images/c/c91b88f1-e824-4815-bcb8-5227818d6010/cover.jpg?v=4"/>
    <itunes:explicit>no</itunes:explicit>
    <itunes:keywords>berkeley,freebsd,openbsd,netbsd,dragonflybsd,trueos,trident,hardenedbsd,tutorial,howto,guide,bsd,interview</itunes:keywords>
    <itunes:owner>
      <itunes:name>JT Pennington</itunes:name>
      <itunes:email>feedback@bsdnow.tv</itunes:email>
    </itunes:owner>
<itunes:category text="News">
  <itunes:category text="Tech News"/>
</itunes:category>
<itunes:category text="Education">
  <itunes:category text="How To"/>
</itunes:category>
<item>
  <title>58: Behind the Masq</title>
  <link>https://www.bsdnow.tv/58</link>
  <guid isPermaLink="false">987ec34a-a4f6-4c08-afa9-f39b542e05c5</guid>
  <pubDate>Wed, 08 Oct 2014 08:00:00 -0400</pubDate>
  <author>JT Pennington</author>
  <enclosure url="https://aphid.fireside.fm/d/1437767933/c91b88f1-e824-4815-bcb8-5227818d6010/987ec34a-a4f6-4c08-afa9-f39b542e05c5.mp3" length="54646708" type="audio/mpeg"/>
  <itunes:episodeType>full</itunes:episodeType>
  <itunes:author>JT Pennington</itunes:author>
  <itunes:subtitle>Coming up this week on the show, we'll be talking to Matt Ranney and George Kola about how they use FreeBSD at Voxer, and how to get more companies to switch over. After that, we'll show you how to filter website ads at the gateway level, using DNSMasq. All this week's news and answers to your emails, on BSD Now - the place to B.. SD.</itunes:subtitle>
  <itunes:duration>1:15:53</itunes:duration>
  <itunes:explicit>no</itunes:explicit>
  <itunes:image href="https://media24.fireside.fm/file/fireside-images-2024/podcasts/images/c/c91b88f1-e824-4815-bcb8-5227818d6010/cover.jpg?v=4"/>
  <description>&lt;p&gt;Coming up this week on the show, we'll be talking to Matt Ranney and George Kola about how they use FreeBSD at Voxer, and how to get more companies to switch over. After that, we'll show you how to filter website ads at the gateway level, using DNSMasq. All this week's news and answers to your emails, on BSD Now - the place to B.. SD.&lt;/p&gt;

&lt;h2&gt;This episode was brought to you by&lt;/h2&gt;

&lt;p&gt;&lt;a href="http://www.ixsystems.com/bsdnow" title="iXsystems" target="_blank" rel="nofollow noopener"&gt;&lt;img src="/images/iXlogo2.png" alt="iXsystems - Enterprise servers and storage for open source"&gt;&lt;/a&gt;&lt;a href="http://www.tarsnap.com/bsdnow" title="Tarsnap" target="_blank" rel="nofollow noopener"&gt;&lt;img src="/images/tarsnap1.png" alt="Tarsnap - online backups for the truly paranoid"&gt;&lt;/a&gt;&lt;/p&gt;

&lt;hr&gt;

&lt;h2&gt;Headlines&lt;/h2&gt;

&lt;h3&gt;&lt;a href="https://blog.netbsd.org/tnf/entry/netbsd_developer_summit_at_eurobsdcon" target="_blank" rel="nofollow noopener"&gt;NetBSD's EuroBSDCon report&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;This year's EuroBSDCon had the record number of NetBSD developers attending&lt;/li&gt;
&lt;li&gt;The NetBSD guys had a small devsummit as well, and this blog post details some of their activities&lt;/li&gt;
&lt;li&gt;Pierre Pronchery also talked about EdgeBSD there (also see &lt;a href="http://www.bsdnow.tv/episodes/2014_04_01-edgy_bsd_users" target="_blank" rel="nofollow noopener"&gt;our interview&lt;/a&gt; if you haven't already)&lt;/li&gt;
&lt;li&gt;Hopefully this trend continues, and NetBSD starts to have even more of a presence at the conferences
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://lteo.net/blog/2014/10/01/a-sneak-peek-at-the-upcoming-openbsd-5-dot-6-release/" target="_blank" rel="nofollow noopener"&gt;Upcoming features in OpenBSD 5.6&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;OpenBSD 5.6 is to be released in just under a month from now, and one of the developers wrote a blog post about some of the new features&lt;/li&gt;
&lt;li&gt;The post is mostly a collection of various links, many of which we've discussed before&lt;/li&gt;
&lt;li&gt;It'll be the first version with LibreSSL and many other cool things&lt;/li&gt;
&lt;li&gt;We will, of course, have all the details on the day of release&lt;/li&gt;
&lt;li&gt;There are some good &lt;a href="https://news.ycombinator.com/item?id=8413028" target="_blank" rel="nofollow noopener"&gt;comments&lt;/a&gt; on hacker news about 5.6 as well 
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://www.prnewswire.com/news-releases/cavium-to-sponsor-freebsd-armv8-based-implementation-277724361.html" target="_blank" rel="nofollow noopener"&gt;FreeBSD ARMv8-based implementation&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;The FreeBSD foundation is sponsoring some work to port FreeBSD to the new ThunderX ARM CPU family&lt;/li&gt;
&lt;li&gt;With the potential to have up to 48 cores, this type of CPU might make ARM-based servers a more appealing option&lt;/li&gt;
&lt;li&gt;Cavium, the company involved with this deal, seems to have lots of BSD fans&lt;/li&gt;
&lt;li&gt;This collaboration is expected to result in Tier 1 recognition of the ARMv8 architecture
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="https://marc.info/?l=openbsd-ports&amp;amp;m=141235737615585&amp;amp;w=2" target="_blank" rel="nofollow noopener"&gt;Updating orphaned OpenBSD ports&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;We discussed OpenBSD porting over portscout from FreeBSD a while back&lt;/li&gt;
&lt;li&gt;Their ports team is making full use of it now, and they're also looking for people to help update some unmaintained ports&lt;/li&gt;
&lt;li&gt;A new subdomain, &lt;a href="http://portroach.openbsd.org/" target="_blank" rel="nofollow noopener"&gt;portroach.openbsd.org&lt;/a&gt;, will let you view all the ports information easily&lt;/li&gt;
&lt;li&gt;If you're interested in learning to port software, or just want to help update a port you use, this is a good chance to get involved
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;Interview - Matt Ranney &amp;amp; George Kola - &lt;a href="mailto:mjr@ranney.com" target="_blank" rel="nofollow noopener"&gt;mjr@ranney.com&lt;/a&gt; &amp;amp; &lt;a href="mailto:george.kola@voxer.com" target="_blank" rel="nofollow noopener"&gt;george.kola@voxer.com&lt;/a&gt;
&lt;/h2&gt;

&lt;p&gt;BSD at Voxer, companies switching from Linux, community interaction&lt;/p&gt;

&lt;hr&gt;

&lt;h2&gt;Tutorial&lt;/h2&gt;

&lt;h3&gt;&lt;a href="http://www.bsdnow.tv/tutorials/dnsmasq" target="_blank" rel="nofollow noopener"&gt;Adblocking with DNSMasq &amp;amp; Pixelserv&lt;/a&gt;&lt;/h3&gt;

&lt;hr&gt;

&lt;h2&gt;News Roundup&lt;/h2&gt;

&lt;h3&gt;&lt;a href="http://ghostbsd.org/4.0-release" target="_blank" rel="nofollow noopener"&gt;GhostBSD 4.0 released&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;The 4.0 branch of GhostBSD has finally been released, based on FreeBSD 10&lt;/li&gt;
&lt;li&gt;With it come all the big 10.0 changes: clang instead of gcc, pkgng by default, make replaced by bmake&lt;/li&gt;
&lt;li&gt;Mate is now the default desktop, with different workstation styles to choose from
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://ypnose.org/blog/2014/newbrute-pf.html" target="_blank" rel="nofollow noopener"&gt;Reports from PF about banned IPs&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;If you run any kind of public-facing server, you've probably seen your logs fill up with unwanted traffic&lt;/li&gt;
&lt;li&gt;This is especially true if you run SSH on port 22, which the author of this post seems to&lt;/li&gt;
&lt;li&gt;A lot can be done with just PF and some brute force tables&lt;/li&gt;
&lt;li&gt;He goes through some different options for blocking Chinese IPs and break-in attempts&lt;/li&gt;
&lt;li&gt;It includes a useful script he wrote to get reports about the IPs being blocked via email
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="https://blog.netbsd.org/tnf/entry/netbsd_6_1_5_and" target="_blank" rel="nofollow noopener"&gt;NetBSD 6.1.5 and 6.0.6 released&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;The 6.1 and 6.0 branches of NetBSD got some updates&lt;/li&gt;
&lt;li&gt;They include a number of security and stability fixes - plenty of OpenSSL mentions&lt;/li&gt;
&lt;li&gt;Various panics and other small bugs also got fixed
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="https://lists.mindrot.org/pipermail/openssh-unix-announce/2014-October/000119.html" target="_blank" rel="nofollow noopener"&gt;OpenSSH 6.7 released&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;After a long delay, OpenSSH 6.7 has finally been released&lt;/li&gt;
&lt;li&gt;Major internal refactoring has been done to make part of OpenSSH usable as a library&lt;/li&gt;
&lt;li&gt;SFTP transfers can now be resumed&lt;/li&gt;
&lt;li&gt;Lots of bug fixes, a few more new features - check the release notes for all the details&lt;/li&gt;
&lt;li&gt;This release disables some insecure ciphers by default, so keep that in mind if you connect with legacy clients that use Arcfour or CBC modes
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;Feedback/Questions&lt;/h2&gt;

&lt;ul&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s218tT9C7v" target="_blank" rel="nofollow noopener"&gt;Andriy writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s2WY5R5e0l" target="_blank" rel="nofollow noopener"&gt;Karl writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s20z8MPBVw" target="_blank" rel="nofollow noopener"&gt;Possnfiffer writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s21h2Yx5al" target="_blank" rel="nofollow noopener"&gt;Brad writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;
&lt;a href="http://slexy.org/view/s21xu9U0qt" target="_blank" rel="nofollow noopener"&gt;Solomon writes in&lt;/a&gt;
*** &lt;/li&gt;
&lt;/ul&gt;
</description>
  <itunes:keywords>freebsd, openbsd, netbsd, dragonflybsd, pcbsd, tutorial, howto, guide, bsd, interview, voxer, whatsapp, dnsmasq, pixelserv, ad blocking, adblock plus, advertisements, malware, linux vs bsd, differences, linux, arm, eurobsdcon</itunes:keywords>
  <content:encoded>
    <![CDATA[<p>Coming up this week on the show, we&#39;ll be talking to Matt Ranney and George Kola about how they use FreeBSD at Voxer, and how to get more companies to switch over. After that, we&#39;ll show you how to filter website ads at the gateway level, using DNSMasq. All this week&#39;s news and answers to your emails, on BSD Now - the place to B.. SD.</p>

<h2>This episode was brought to you by</h2>

<p><a href="http://www.ixsystems.com/bsdnow" title="iXsystems"><img src="/images/iXlogo2.png" alt="iXsystems - Enterprise servers and storage for open source" /></a><a href="http://www.tarsnap.com/bsdnow" title="Tarsnap"><img src="/images/tarsnap1.png" alt="Tarsnap - online backups for the truly paranoid" /></a></p>

<hr>

<h2>Headlines</h2>

<h3><a href="https://blog.netbsd.org/tnf/entry/netbsd_developer_summit_at_eurobsdcon" rel="nofollow">NetBSD&#39;s EuroBSDCon report</a></h3>

<ul>
<li>This year&#39;s EuroBSDCon had the record number of NetBSD developers attending</li>
<li>The NetBSD guys had a small devsummit as well, and this blog post details some of their activities</li>
<li>Pierre Pronchery also talked about EdgeBSD there (also see <a href="http://www.bsdnow.tv/episodes/2014_04_01-edgy_bsd_users" rel="nofollow">our interview</a> if you haven&#39;t already)</li>
<li>Hopefully this trend continues, and NetBSD starts to have even more of a presence at the conferences
***</li>
</ul>

<h3><a href="http://lteo.net/blog/2014/10/01/a-sneak-peek-at-the-upcoming-openbsd-5-dot-6-release/" rel="nofollow">Upcoming features in OpenBSD 5.6</a></h3>

<ul>
<li>OpenBSD 5.6 is to be released in just under a month from now, and one of the developers wrote a blog post about some of the new features</li>
<li>The post is mostly a collection of various links, many of which we&#39;ve discussed before</li>
<li>It&#39;ll be the first version with LibreSSL and many other cool things</li>
<li>We will, of course, have all the details on the day of release</li>
<li>There are some good <a href="https://news.ycombinator.com/item?id=8413028" rel="nofollow">comments</a> on hacker news about 5.6 as well 
***</li>
</ul>

<h3><a href="http://www.prnewswire.com/news-releases/cavium-to-sponsor-freebsd-armv8-based-implementation-277724361.html" rel="nofollow">FreeBSD ARMv8-based implementation</a></h3>

<ul>
<li>The FreeBSD foundation is sponsoring some work to port FreeBSD to the new ThunderX ARM CPU family</li>
<li>With the potential to have up to 48 cores, this type of CPU might make ARM-based servers a more appealing option</li>
<li>Cavium, the company involved with this deal, seems to have lots of BSD fans</li>
<li>This collaboration is expected to result in Tier 1 recognition of the ARMv8 architecture
***</li>
</ul>

<h3><a href="https://marc.info/?l=openbsd-ports&m=141235737615585&w=2" rel="nofollow">Updating orphaned OpenBSD ports</a></h3>

<ul>
<li>We discussed OpenBSD porting over portscout from FreeBSD a while back</li>
<li>Their ports team is making full use of it now, and they&#39;re also looking for people to help update some unmaintained ports</li>
<li>A new subdomain, <a href="http://portroach.openbsd.org/" rel="nofollow">portroach.openbsd.org</a>, will let you view all the ports information easily</li>
<li>If you&#39;re interested in learning to port software, or just want to help update a port you use, this is a good chance to get involved
***</li>
</ul>

<h2>Interview - Matt Ranney &amp; George Kola - <a href="mailto:mjr@ranney.com" rel="nofollow">mjr@ranney.com</a> &amp; <a href="mailto:george.kola@voxer.com" rel="nofollow">george.kola@voxer.com</a></h2>

<p>BSD at Voxer, companies switching from Linux, community interaction</p>

<hr>

<h2>Tutorial</h2>

<h3><a href="http://www.bsdnow.tv/tutorials/dnsmasq" rel="nofollow">Adblocking with DNSMasq &amp; Pixelserv</a></h3>

<hr>

<h2>News Roundup</h2>

<h3><a href="http://ghostbsd.org/4.0-release" rel="nofollow">GhostBSD 4.0 released</a></h3>

<ul>
<li>The 4.0 branch of GhostBSD has finally been released, based on FreeBSD 10</li>
<li>With it come all the big 10.0 changes: clang instead of gcc, pkgng by default, make replaced by bmake</li>
<li>Mate is now the default desktop, with different workstation styles to choose from
***</li>
</ul>

<h3><a href="http://ypnose.org/blog/2014/newbrute-pf.html" rel="nofollow">Reports from PF about banned IPs</a></h3>

<ul>
<li>If you run any kind of public-facing server, you&#39;ve probably seen your logs fill up with unwanted traffic</li>
<li>This is especially true if you run SSH on port 22, which the author of this post seems to</li>
<li>A lot can be done with just PF and some brute force tables</li>
<li>He goes through some different options for blocking Chinese IPs and break-in attempts</li>
<li>It includes a useful script he wrote to get reports about the IPs being blocked via email
***</li>
</ul>

<h3><a href="https://blog.netbsd.org/tnf/entry/netbsd_6_1_5_and" rel="nofollow">NetBSD 6.1.5 and 6.0.6 released</a></h3>

<ul>
<li>The 6.1 and 6.0 branches of NetBSD got some updates</li>
<li>They include a number of security and stability fixes - plenty of OpenSSL mentions</li>
<li>Various panics and other small bugs also got fixed
***</li>
</ul>

<h3><a href="https://lists.mindrot.org/pipermail/openssh-unix-announce/2014-October/000119.html" rel="nofollow">OpenSSH 6.7 released</a></h3>

<ul>
<li>After a long delay, OpenSSH 6.7 has finally been released</li>
<li>Major internal refactoring has been done to make part of OpenSSH usable as a library</li>
<li>SFTP transfers can now be resumed</li>
<li>Lots of bug fixes, a few more new features - check the release notes for all the details</li>
<li>This release disables some insecure ciphers by default, so keep that in mind if you connect with legacy clients that use Arcfour or CBC modes
***</li>
</ul>

<h2>Feedback/Questions</h2>

<ul>
<li><a href="http://slexy.org/view/s218tT9C7v" rel="nofollow">Andriy writes in</a></li>
<li><a href="http://slexy.org/view/s2WY5R5e0l" rel="nofollow">Karl writes in</a></li>
<li><a href="http://slexy.org/view/s20z8MPBVw" rel="nofollow">Possnfiffer writes in</a></li>
<li><a href="http://slexy.org/view/s21h2Yx5al" rel="nofollow">Brad writes in</a></li>
<li><a href="http://slexy.org/view/s21xu9U0qt" rel="nofollow">Solomon writes in</a>
***</li>
</ul>]]>
  </content:encoded>
  <itunes:summary>
    <![CDATA[<p>Coming up this week on the show, we&#39;ll be talking to Matt Ranney and George Kola about how they use FreeBSD at Voxer, and how to get more companies to switch over. After that, we&#39;ll show you how to filter website ads at the gateway level, using DNSMasq. All this week&#39;s news and answers to your emails, on BSD Now - the place to B.. SD.</p>

<h2>This episode was brought to you by</h2>

<p><a href="http://www.ixsystems.com/bsdnow" title="iXsystems"><img src="/images/iXlogo2.png" alt="iXsystems - Enterprise servers and storage for open source" /></a><a href="http://www.tarsnap.com/bsdnow" title="Tarsnap"><img src="/images/tarsnap1.png" alt="Tarsnap - online backups for the truly paranoid" /></a></p>

<hr>

<h2>Headlines</h2>

<h3><a href="https://blog.netbsd.org/tnf/entry/netbsd_developer_summit_at_eurobsdcon" rel="nofollow">NetBSD&#39;s EuroBSDCon report</a></h3>

<ul>
<li>This year&#39;s EuroBSDCon had the record number of NetBSD developers attending</li>
<li>The NetBSD guys had a small devsummit as well, and this blog post details some of their activities</li>
<li>Pierre Pronchery also talked about EdgeBSD there (also see <a href="http://www.bsdnow.tv/episodes/2014_04_01-edgy_bsd_users" rel="nofollow">our interview</a> if you haven&#39;t already)</li>
<li>Hopefully this trend continues, and NetBSD starts to have even more of a presence at the conferences
***</li>
</ul>

<h3><a href="http://lteo.net/blog/2014/10/01/a-sneak-peek-at-the-upcoming-openbsd-5-dot-6-release/" rel="nofollow">Upcoming features in OpenBSD 5.6</a></h3>

<ul>
<li>OpenBSD 5.6 is to be released in just under a month from now, and one of the developers wrote a blog post about some of the new features</li>
<li>The post is mostly a collection of various links, many of which we&#39;ve discussed before</li>
<li>It&#39;ll be the first version with LibreSSL and many other cool things</li>
<li>We will, of course, have all the details on the day of release</li>
<li>There are some good <a href="https://news.ycombinator.com/item?id=8413028" rel="nofollow">comments</a> on hacker news about 5.6 as well 
***</li>
</ul>

<h3><a href="http://www.prnewswire.com/news-releases/cavium-to-sponsor-freebsd-armv8-based-implementation-277724361.html" rel="nofollow">FreeBSD ARMv8-based implementation</a></h3>

<ul>
<li>The FreeBSD foundation is sponsoring some work to port FreeBSD to the new ThunderX ARM CPU family</li>
<li>With the potential to have up to 48 cores, this type of CPU might make ARM-based servers a more appealing option</li>
<li>Cavium, the company involved with this deal, seems to have lots of BSD fans</li>
<li>This collaboration is expected to result in Tier 1 recognition of the ARMv8 architecture
***</li>
</ul>

<h3><a href="https://marc.info/?l=openbsd-ports&m=141235737615585&w=2" rel="nofollow">Updating orphaned OpenBSD ports</a></h3>

<ul>
<li>We discussed OpenBSD porting over portscout from FreeBSD a while back</li>
<li>Their ports team is making full use of it now, and they&#39;re also looking for people to help update some unmaintained ports</li>
<li>A new subdomain, <a href="http://portroach.openbsd.org/" rel="nofollow">portroach.openbsd.org</a>, will let you view all the ports information easily</li>
<li>If you&#39;re interested in learning to port software, or just want to help update a port you use, this is a good chance to get involved
***</li>
</ul>

<h2>Interview - Matt Ranney &amp; George Kola - <a href="mailto:mjr@ranney.com" rel="nofollow">mjr@ranney.com</a> &amp; <a href="mailto:george.kola@voxer.com" rel="nofollow">george.kola@voxer.com</a></h2>

<p>BSD at Voxer, companies switching from Linux, community interaction</p>

<hr>

<h2>Tutorial</h2>

<h3><a href="http://www.bsdnow.tv/tutorials/dnsmasq" rel="nofollow">Adblocking with DNSMasq &amp; Pixelserv</a></h3>

<hr>

<h2>News Roundup</h2>

<h3><a href="http://ghostbsd.org/4.0-release" rel="nofollow">GhostBSD 4.0 released</a></h3>

<ul>
<li>The 4.0 branch of GhostBSD has finally been released, based on FreeBSD 10</li>
<li>With it come all the big 10.0 changes: clang instead of gcc, pkgng by default, make replaced by bmake</li>
<li>Mate is now the default desktop, with different workstation styles to choose from
***</li>
</ul>

<h3><a href="http://ypnose.org/blog/2014/newbrute-pf.html" rel="nofollow">Reports from PF about banned IPs</a></h3>

<ul>
<li>If you run any kind of public-facing server, you&#39;ve probably seen your logs fill up with unwanted traffic</li>
<li>This is especially true if you run SSH on port 22, which the author of this post seems to</li>
<li>A lot can be done with just PF and some brute force tables</li>
<li>He goes through some different options for blocking Chinese IPs and break-in attempts</li>
<li>It includes a useful script he wrote to get reports about the IPs being blocked via email
***</li>
</ul>

<h3><a href="https://blog.netbsd.org/tnf/entry/netbsd_6_1_5_and" rel="nofollow">NetBSD 6.1.5 and 6.0.6 released</a></h3>

<ul>
<li>The 6.1 and 6.0 branches of NetBSD got some updates</li>
<li>They include a number of security and stability fixes - plenty of OpenSSL mentions</li>
<li>Various panics and other small bugs also got fixed
***</li>
</ul>

<h3><a href="https://lists.mindrot.org/pipermail/openssh-unix-announce/2014-October/000119.html" rel="nofollow">OpenSSH 6.7 released</a></h3>

<ul>
<li>After a long delay, OpenSSH 6.7 has finally been released</li>
<li>Major internal refactoring has been done to make part of OpenSSH usable as a library</li>
<li>SFTP transfers can now be resumed</li>
<li>Lots of bug fixes, a few more new features - check the release notes for all the details</li>
<li>This release disables some insecure ciphers by default, so keep that in mind if you connect with legacy clients that use Arcfour or CBC modes
***</li>
</ul>

<h2>Feedback/Questions</h2>

<ul>
<li><a href="http://slexy.org/view/s218tT9C7v" rel="nofollow">Andriy writes in</a></li>
<li><a href="http://slexy.org/view/s2WY5R5e0l" rel="nofollow">Karl writes in</a></li>
<li><a href="http://slexy.org/view/s20z8MPBVw" rel="nofollow">Possnfiffer writes in</a></li>
<li><a href="http://slexy.org/view/s21h2Yx5al" rel="nofollow">Brad writes in</a></li>
<li><a href="http://slexy.org/view/s21xu9U0qt" rel="nofollow">Solomon writes in</a>
***</li>
</ul>]]>
  </itunes:summary>
</item>
<item>
  <title>54: Luminary Environment</title>
  <link>https://www.bsdnow.tv/54</link>
  <guid isPermaLink="false">c6ff3386-0834-4798-809e-dd4917c5bc7b</guid>
  <pubDate>Wed, 10 Sep 2014 08:00:00 -0400</pubDate>
  <author>JT Pennington</author>
  <enclosure url="https://aphid.fireside.fm/d/1437767933/c91b88f1-e824-4815-bcb8-5227818d6010/c6ff3386-0834-4798-809e-dd4917c5bc7b.mp3" length="56630740" type="audio/mpeg"/>
  <itunes:episodeType>full</itunes:episodeType>
  <itunes:author>JT Pennington</itunes:author>
  <itunes:subtitle>This week on the show, it's all about Lumina. We'll be giving you a visual walkthrough of the new BSD-exclusive desktop environment, as well as chatting with the main developer. There's also answers to your emails and all the latest news, on BSD Now - the place to B.. SD.</itunes:subtitle>
  <itunes:duration>1:18:39</itunes:duration>
  <itunes:explicit>no</itunes:explicit>
  <itunes:image href="https://media24.fireside.fm/file/fireside-images-2024/podcasts/images/c/c91b88f1-e824-4815-bcb8-5227818d6010/cover.jpg?v=4"/>
  <description>&lt;p&gt;This week on the show, it's all about Lumina. We'll be giving you a visual walkthrough of the new BSD-exclusive desktop environment, as well as chatting with the main developer. There's also answers to your emails and all the latest news, on BSD Now - the place to B.. SD.&lt;/p&gt;

&lt;h2&gt;This episode was brought to you by&lt;/h2&gt;

&lt;p&gt;&lt;a href="http://www.ixsystems.com/bsdnow" title="iXsystems" target="_blank" rel="nofollow noopener"&gt;&lt;img src="/images/iXlogo2.png" alt="iXsystems - Enterprise servers and storage for open source"&gt;&lt;/a&gt;&lt;a href="http://www.tarsnap.com/bsdnow" title="Tarsnap" target="_blank" rel="nofollow noopener"&gt;&lt;img src="/images/tarsnap1.png" alt="Tarsnap - online backups for the truly paranoid"&gt;&lt;/a&gt;&lt;/p&gt;

&lt;hr&gt;

&lt;h2&gt;Headlines&lt;/h2&gt;

&lt;h3&gt;&lt;a href="http://blog.jasper.la/portscout-for-openbsd/" target="_blank" rel="nofollow noopener"&gt;Portscout ported to OpenBSD&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Portscout is a popular utility used in the FreeBSD ports infrastructure&lt;/li&gt;
&lt;li&gt;It lets port maintainers know when there's a new version of the upstream software available by automatically checking the distfile mirror&lt;/li&gt;
&lt;li&gt;Now OpenBSD porters can enjoy the same convenience, as it's been ported over&lt;/li&gt;
&lt;li&gt;You can view the status &lt;a href="http://portscout.jasper.la/" target="_blank" rel="nofollow noopener"&gt;online&lt;/a&gt; to see how it works and &lt;a href="http://portscout.jasper.la/index-total.html" target="_blank" rel="nofollow noopener"&gt;who maintains what&lt;/a&gt;
&lt;/li&gt;
&lt;li&gt;The developer who ported it is working to get all the current features working on OpenBSD, and added a few new features as well&lt;/li&gt;
&lt;li&gt;He decided to &lt;a href="https://jasperla.github.io/portroach/" target="_blank" rel="nofollow noopener"&gt;fork and rename it&lt;/a&gt; a few days later
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="https://www.reddit.com/r/freebsd/comments/2fgb90/you_have_your_windows_in_my_linux_or_why_many/" target="_blank" rel="nofollow noopener"&gt;Sysadmins and systemd refugees flocking to BSD&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;With all the drama in Linux land about the rapid changes to their init system, a lot of people are looking at BSD alternatives&lt;/li&gt;
&lt;li&gt;This "&lt;a href="http://www.infoworld.com/d/data-center/you-have-your-windows-in-my-linux-249483" target="_blank" rel="nofollow noopener"&gt;you got your Windows in my Linux&lt;/a&gt;" article (and accompanying comments) give a nice glimpse into the minds of some of those switchers&lt;/li&gt;
&lt;li&gt;Both server administrators and regular everyday users are switching away from Linux, as more and more distros give them no choice but to use systemd&lt;/li&gt;
&lt;li&gt;Fortunately, the BSD communities are usually very welcoming of switchers - it's pretty nice on this side!
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://www.tedunangst.com/flak/post/OpenBSD-version-numbers" target="_blank" rel="nofollow noopener"&gt;OpenBSD's versioning schemes&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Ted Unangst explains the various versioning systems within OpenBSD, from the base to libraries to other included software&lt;/li&gt;
&lt;li&gt;In contrast to FreeBSD's release cycle, OpenBSD isn't as concerned with breaking backwards compatibility (but only if it's needed to make progress)&lt;/li&gt;
&lt;li&gt;This allows them to innovate and introduce new features a lot more easily, and get those features in a stable release that everyone uses&lt;/li&gt;
&lt;li&gt;He also details the difference between branches, their errata system and lack of "patch levels" for security&lt;/li&gt;
&lt;li&gt;Some other things in OpenBSD don't have version numbers at all, like tmux&lt;/li&gt;
&lt;li&gt;"Every release adds some new features, fixes some old bugs, probably adds a new bug or two, and, if I have anything to say about it, removes some old features."
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="https://www.youtube.com/watch?v=zLsgFPaMPyg" target="_blank" rel="nofollow noopener"&gt;VAXstation 4000 Model 90 booting NetBSD&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;We found a video of NetBSD booting on a 22 year old VAX workstation, circa 1992&lt;/li&gt;
&lt;li&gt;This system has a monstrous 71 MHz CPU and 128MB of ECC RAM&lt;/li&gt;
&lt;li&gt;It &lt;a href="https://www.youtube.com/watch?v=YKzDXKmn66U" target="_blank" rel="nofollow noopener"&gt;continues in part two&lt;/a&gt;, where we learn that it would've cost around $25,000 when it was released!&lt;/li&gt;
&lt;li&gt;The uploader talks about his experiences getting NetBSD on it, what does and doesn't work, etc&lt;/li&gt;
&lt;li&gt;It's interesting to see that such old hardware isn't necessarily obsolete just because newer things have come out since then (but maybe don't try to build world on it...)
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;Interview - Ken Moore - &lt;a href="mailto:ken@pcbsd.org" target="_blank" rel="nofollow noopener"&gt;ken@pcbsd.org&lt;/a&gt;
&lt;/h2&gt;

&lt;p&gt;The Lumina desktop environment&lt;/p&gt;

&lt;hr&gt;

&lt;h2&gt;Special segment&lt;/h2&gt;

&lt;h3&gt;Lumina walkthrough&lt;/h3&gt;

&lt;hr&gt;

&lt;h2&gt;News Roundup&lt;/h2&gt;

&lt;h3&gt;&lt;a href="http://pfsensesetup.com/suricata-intrusion-detection-system-part-one" target="_blank" rel="nofollow noopener"&gt;Suricata for IDS on pfSense&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;While most people are familiar with Snort as an intrusion detection system, Suricata is another choice&lt;/li&gt;
&lt;li&gt;This guide goes through the steps of installing and configuring it on a public-facing pfSense box&lt;/li&gt;
&lt;li&gt;
&lt;a href="http://pfsensesetup.com/suricata-intrusion-detection-system-part-two/" target="_blank" rel="nofollow noopener"&gt;Part two&lt;/a&gt; details some of the configuration steps&lt;/li&gt;
&lt;li&gt;One other cool thing about Suricata - it's compatible with Snort rules, so you can use the same updates&lt;/li&gt;
&lt;li&gt;There's also &lt;a href="http://www.allamericancomputerrepair.com/Blog/Post/29/Install-Snort-on-FreeBSD" target="_blank" rel="nofollow noopener"&gt;another recent post&lt;/a&gt; about snort as well, if that's more your style&lt;/li&gt;
&lt;li&gt;If you run pfSense (or any BSD) as an edge router for a lot of users, this might be worth looking into
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://bsd.slashdot.org/story/14/09/08/0250207/gsoc-project-works-to-emulate-systemd-for-openbsd" target="_blank" rel="nofollow noopener"&gt;OpenBSD's systemd API emulation project&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;This story was pretty popular in the mainstream news this week&lt;/li&gt;
&lt;li&gt;For the Google Summer of Code, a student is writing emulation wrappers for some of &lt;a href="https://twitter.com/blakkheim/status/509092821773848577" target="_blank" rel="nofollow noopener"&gt;systemd's functions&lt;/a&gt;
&lt;/li&gt;
&lt;li&gt;There was consideration from some Linux users to port over the finished emulation back to Linux, so they wouldn't have to run the full systemd&lt;/li&gt;
&lt;li&gt;One particularly interesting Slashdot comment &lt;a href="http://bsd.slashdot.org/comments.pl?sid=5663319&amp;amp;cid=47851361" target="_blank" rel="nofollow noopener"&gt;snippet&lt;/a&gt;: "We are currently migrating a large number (much larger than planned after initial results) of systems from RHEL to BSD - a decision taken due to general unhappiness with RHEL6, but SystemD pushed us towards BSD rather than another Linux distro - and in some cases are seeing throughput gains of greater than 10% on what should be equivalent Linux and BSD server builds. The re-learning curve wasn't as steep as we expected, general system stability seems to be better too, and BSD's security reputation goes without saying."&lt;/li&gt;
&lt;li&gt;It will NOT be in the base system - only in ports, and only installed as a dependency for things like &lt;a href="http://blogs.gnome.org/ovitters/2014/09/07/systemd-in-gnome-3-14-and-beyond/" target="_blank" rel="nofollow noopener"&gt;newer GNOME&lt;/a&gt; that require such APIs&lt;/li&gt;
&lt;li&gt;In the long run, BSD will still be safe from systemd's reign of terror, but will hopefully still be compatible with some third party packages like GNOME that insist on using it
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://www.linuxbsdos.com/2014/05/19/preview-of-ghostbsd-4-0/" target="_blank" rel="nofollow noopener"&gt;GhostBSD 4 previewed&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;The GhostBSD project is moving along, slowly getting closer to the 4 release&lt;/li&gt;
&lt;li&gt;This article shows some of the progress made, and includes lots of screenshots and interesting graphical frontends&lt;/li&gt;
&lt;li&gt;If you're not too familiar with GhostBSD, we &lt;a href="http://www.bsdnow.tv/episodes/2014_03_12-ghost_of_partition" target="_blank" rel="nofollow noopener"&gt;interviewed the lead developer&lt;/a&gt; a little while back
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://rizzoandself.blogspot.com/2014/09/netbsd-on-banana-pi.html" target="_blank" rel="nofollow noopener"&gt;NetBSD on the Banana Pi&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;The Banana Pi is a tasty alternative to the Raspberry Pi, with similar hardware specs&lt;/li&gt;
&lt;li&gt;In this blog post, a NetBSD developer details his experiences in getting NetBSD to run on it&lt;/li&gt;
&lt;li&gt;After studying how the prebuilt Linux image booted, he made some notes and started hacking&lt;/li&gt;
&lt;li&gt;Ethernet, one of the few things not working, is being looked into and he's hoping to get it fully supported for the upcoming NetBSD 7.0&lt;/li&gt;
&lt;li&gt;They're only about $65 as of the time we're recording this, so it might be a fun project to try
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;Feedback/Questions&lt;/h2&gt;

&lt;ul&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s28iKdBEbm" target="_blank" rel="nofollow noopener"&gt;Antonio writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s21Wfnv87h" target="_blank" rel="nofollow noopener"&gt;Garegin writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s2Fzryxhdz" target="_blank" rel="nofollow noopener"&gt;Erno writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;
&lt;a href="http://slexy.org/view/s2ILcqdFfF" target="_blank" rel="nofollow noopener"&gt;Brandon writes in&lt;/a&gt;
*** &lt;/li&gt;
&lt;/ul&gt;
</description>
  <itunes:keywords>freebsd, openbsd, netbsd, dragonflybsd, pcbsd, tutorial, howto, guide, bsd, interview, lumina, desktop environment, window manager, graphical user interface, tiling, floating, gnome3, kde5, kde4, qt5, banana pi, raspberry pi, portscout, vax, vaxstation, linux vs bsd, systemd, portroach, ids, suricata</itunes:keywords>
  <content:encoded>
    <![CDATA[<p>This week on the show, it&#39;s all about Lumina. We&#39;ll be giving you a visual walkthrough of the new BSD-exclusive desktop environment, as well as chatting with the main developer. There&#39;s also answers to your emails and all the latest news, on BSD Now - the place to B.. SD.</p>

<h2>This episode was brought to you by</h2>

<p><a href="http://www.ixsystems.com/bsdnow" title="iXsystems"><img src="/images/iXlogo2.png" alt="iXsystems - Enterprise servers and storage for open source" /></a><a href="http://www.tarsnap.com/bsdnow" title="Tarsnap"><img src="/images/tarsnap1.png" alt="Tarsnap - online backups for the truly paranoid" /></a></p>

<hr>

<h2>Headlines</h2>

<h3><a href="http://blog.jasper.la/portscout-for-openbsd/" rel="nofollow">Portscout ported to OpenBSD</a></h3>

<ul>
<li>Portscout is a popular utility used in the FreeBSD ports infrastructure</li>
<li>It lets port maintainers know when there&#39;s a new version of the upstream software available by automatically checking the distfile mirror</li>
<li>Now OpenBSD porters can enjoy the same convenience, as it&#39;s been ported over</li>
<li>You can view the status <a href="http://portscout.jasper.la/" rel="nofollow">online</a> to see how it works and <a href="http://portscout.jasper.la/index-total.html" rel="nofollow">who maintains what</a></li>
<li>The developer who ported it is working to get all the current features working on OpenBSD, and added a few new features as well</li>
<li>He decided to <a href="https://jasperla.github.io/portroach/" rel="nofollow">fork and rename it</a> a few days later
***</li>
</ul>

<h3><a href="https://www.reddit.com/r/freebsd/comments/2fgb90/you_have_your_windows_in_my_linux_or_why_many/" rel="nofollow">Sysadmins and systemd refugees flocking to BSD</a></h3>

<ul>
<li>With all the drama in Linux land about the rapid changes to their init system, a lot of people are looking at BSD alternatives</li>
<li>This &quot;<a href="http://www.infoworld.com/d/data-center/you-have-your-windows-in-my-linux-249483" rel="nofollow">you got your Windows in my Linux</a>&quot; article (and accompanying comments) give a nice glimpse into the minds of some of those switchers</li>
<li>Both server administrators and regular everyday users are switching away from Linux, as more and more distros give them no choice but to use systemd</li>
<li>Fortunately, the BSD communities are usually very welcoming of switchers - it&#39;s pretty nice on this side!
***</li>
</ul>

<h3><a href="http://www.tedunangst.com/flak/post/OpenBSD-version-numbers" rel="nofollow">OpenBSD&#39;s versioning schemes</a></h3>

<ul>
<li>Ted Unangst explains the various versioning systems within OpenBSD, from the base to libraries to other included software</li>
<li>In contrast to FreeBSD&#39;s release cycle, OpenBSD isn&#39;t as concerned with breaking backwards compatibility (but only if it&#39;s needed to make progress)</li>
<li>This allows them to innovate and introduce new features a lot more easily, and get those features in a stable release that everyone uses</li>
<li>He also details the difference between branches, their errata system and lack of &quot;patch levels&quot; for security</li>
<li>Some other things in OpenBSD don&#39;t have version numbers at all, like tmux</li>
<li>&quot;Every release adds some new features, fixes some old bugs, probably adds a new bug or two, and, if I have anything to say about it, removes some old features.&quot;
***</li>
</ul>

<h3><a href="https://www.youtube.com/watch?v=zLsgFPaMPyg" rel="nofollow">VAXstation 4000 Model 90 booting NetBSD</a></h3>

<ul>
<li>We found a video of NetBSD booting on a 22 year old VAX workstation, circa 1992</li>
<li>This system has a monstrous 71 MHz CPU and 128MB of ECC RAM</li>
<li>It <a href="https://www.youtube.com/watch?v=YKzDXKmn66U" rel="nofollow">continues in part two</a>, where we learn that it would&#39;ve cost around $25,000 when it was released!</li>
<li>The uploader talks about his experiences getting NetBSD on it, what does and doesn&#39;t work, etc</li>
<li>It&#39;s interesting to see that such old hardware isn&#39;t necessarily obsolete just because newer things have come out since then (but maybe don&#39;t try to build world on it...)
***</li>
</ul>

<h2>Interview - Ken Moore - <a href="mailto:ken@pcbsd.org" rel="nofollow">ken@pcbsd.org</a></h2>

<p>The Lumina desktop environment</p>

<hr>

<h2>Special segment</h2>

<h3>Lumina walkthrough</h3>

<hr>

<h2>News Roundup</h2>

<h3><a href="http://pfsensesetup.com/suricata-intrusion-detection-system-part-one" rel="nofollow">Suricata for IDS on pfSense</a></h3>

<ul>
<li>While most people are familiar with Snort as an intrusion detection system, Suricata is another choice</li>
<li>This guide goes through the steps of installing and configuring it on a public-facing pfSense box</li>
<li><a href="http://pfsensesetup.com/suricata-intrusion-detection-system-part-two/" rel="nofollow">Part two</a> details some of the configuration steps</li>
<li>One other cool thing about Suricata - it&#39;s compatible with Snort rules, so you can use the same updates</li>
<li>There&#39;s also <a href="http://www.allamericancomputerrepair.com/Blog/Post/29/Install-Snort-on-FreeBSD" rel="nofollow">another recent post</a> about snort as well, if that&#39;s more your style</li>
<li>If you run pfSense (or any BSD) as an edge router for a lot of users, this might be worth looking into
***</li>
</ul>

<h3><a href="http://bsd.slashdot.org/story/14/09/08/0250207/gsoc-project-works-to-emulate-systemd-for-openbsd" rel="nofollow">OpenBSD&#39;s systemd API emulation project</a></h3>

<ul>
<li>This story was pretty popular in the mainstream news this week</li>
<li>For the Google Summer of Code, a student is writing emulation wrappers for some of <a href="https://twitter.com/blakkheim/status/509092821773848577" rel="nofollow">systemd&#39;s functions</a></li>
<li>There was consideration from some Linux users to port over the finished emulation back to Linux, so they wouldn&#39;t have to run the full systemd</li>
<li>One particularly interesting Slashdot comment <a href="http://bsd.slashdot.org/comments.pl?sid=5663319&cid=47851361" rel="nofollow">snippet</a>: &quot;We are currently migrating a large number (much larger than planned after initial results) of systems from RHEL to BSD - a decision taken due to general unhappiness with RHEL6, but SystemD pushed us towards BSD rather than another Linux distro - and in some cases are seeing throughput gains of greater than 10% on what should be equivalent Linux and BSD server builds. The re-learning curve wasn&#39;t as steep as we expected, general system stability seems to be better too, and BSD&#39;s security reputation goes without saying.&quot;</li>
<li>It will NOT be in the base system - only in ports, and only installed as a dependency for things like <a href="http://blogs.gnome.org/ovitters/2014/09/07/systemd-in-gnome-3-14-and-beyond/" rel="nofollow">newer GNOME</a> that require such APIs</li>
<li>In the long run, BSD will still be safe from systemd&#39;s reign of terror, but will hopefully still be compatible with some third party packages like GNOME that insist on using it
***</li>
</ul>

<h3><a href="http://www.linuxbsdos.com/2014/05/19/preview-of-ghostbsd-4-0/" rel="nofollow">GhostBSD 4 previewed</a></h3>

<ul>
<li>The GhostBSD project is moving along, slowly getting closer to the 4 release</li>
<li>This article shows some of the progress made, and includes lots of screenshots and interesting graphical frontends</li>
<li>If you&#39;re not too familiar with GhostBSD, we <a href="http://www.bsdnow.tv/episodes/2014_03_12-ghost_of_partition" rel="nofollow">interviewed the lead developer</a> a little while back
***</li>
</ul>

<h3><a href="http://rizzoandself.blogspot.com/2014/09/netbsd-on-banana-pi.html" rel="nofollow">NetBSD on the Banana Pi</a></h3>

<ul>
<li>The Banana Pi is a tasty alternative to the Raspberry Pi, with similar hardware specs</li>
<li>In this blog post, a NetBSD developer details his experiences in getting NetBSD to run on it</li>
<li>After studying how the prebuilt Linux image booted, he made some notes and started hacking</li>
<li>Ethernet, one of the few things not working, is being looked into and he&#39;s hoping to get it fully supported for the upcoming NetBSD 7.0</li>
<li>They&#39;re only about $65 as of the time we&#39;re recording this, so it might be a fun project to try
***</li>
</ul>

<h2>Feedback/Questions</h2>

<ul>
<li><a href="http://slexy.org/view/s28iKdBEbm" rel="nofollow">Antonio writes in</a></li>
<li><a href="http://slexy.org/view/s21Wfnv87h" rel="nofollow">Garegin writes in</a></li>
<li><a href="http://slexy.org/view/s2Fzryxhdz" rel="nofollow">Erno writes in</a></li>
<li><a href="http://slexy.org/view/s2ILcqdFfF" rel="nofollow">Brandon writes in</a>
***</li>
</ul>]]>
  </content:encoded>
  <itunes:summary>
    <![CDATA[<p>This week on the show, it&#39;s all about Lumina. We&#39;ll be giving you a visual walkthrough of the new BSD-exclusive desktop environment, as well as chatting with the main developer. There&#39;s also answers to your emails and all the latest news, on BSD Now - the place to B.. SD.</p>

<h2>This episode was brought to you by</h2>

<p><a href="http://www.ixsystems.com/bsdnow" title="iXsystems"><img src="/images/iXlogo2.png" alt="iXsystems - Enterprise servers and storage for open source" /></a><a href="http://www.tarsnap.com/bsdnow" title="Tarsnap"><img src="/images/tarsnap1.png" alt="Tarsnap - online backups for the truly paranoid" /></a></p>

<hr>

<h2>Headlines</h2>

<h3><a href="http://blog.jasper.la/portscout-for-openbsd/" rel="nofollow">Portscout ported to OpenBSD</a></h3>

<ul>
<li>Portscout is a popular utility used in the FreeBSD ports infrastructure</li>
<li>It lets port maintainers know when there&#39;s a new version of the upstream software available by automatically checking the distfile mirror</li>
<li>Now OpenBSD porters can enjoy the same convenience, as it&#39;s been ported over</li>
<li>You can view the status <a href="http://portscout.jasper.la/" rel="nofollow">online</a> to see how it works and <a href="http://portscout.jasper.la/index-total.html" rel="nofollow">who maintains what</a></li>
<li>The developer who ported it is working to get all the current features working on OpenBSD, and added a few new features as well</li>
<li>He decided to <a href="https://jasperla.github.io/portroach/" rel="nofollow">fork and rename it</a> a few days later
***</li>
</ul>

<h3><a href="https://www.reddit.com/r/freebsd/comments/2fgb90/you_have_your_windows_in_my_linux_or_why_many/" rel="nofollow">Sysadmins and systemd refugees flocking to BSD</a></h3>

<ul>
<li>With all the drama in Linux land about the rapid changes to their init system, a lot of people are looking at BSD alternatives</li>
<li>This &quot;<a href="http://www.infoworld.com/d/data-center/you-have-your-windows-in-my-linux-249483" rel="nofollow">you got your Windows in my Linux</a>&quot; article (and accompanying comments) give a nice glimpse into the minds of some of those switchers</li>
<li>Both server administrators and regular everyday users are switching away from Linux, as more and more distros give them no choice but to use systemd</li>
<li>Fortunately, the BSD communities are usually very welcoming of switchers - it&#39;s pretty nice on this side!
***</li>
</ul>

<h3><a href="http://www.tedunangst.com/flak/post/OpenBSD-version-numbers" rel="nofollow">OpenBSD&#39;s versioning schemes</a></h3>

<ul>
<li>Ted Unangst explains the various versioning systems within OpenBSD, from the base to libraries to other included software</li>
<li>In contrast to FreeBSD&#39;s release cycle, OpenBSD isn&#39;t as concerned with breaking backwards compatibility (but only if it&#39;s needed to make progress)</li>
<li>This allows them to innovate and introduce new features a lot more easily, and get those features in a stable release that everyone uses</li>
<li>He also details the difference between branches, their errata system and lack of &quot;patch levels&quot; for security</li>
<li>Some other things in OpenBSD don&#39;t have version numbers at all, like tmux</li>
<li>&quot;Every release adds some new features, fixes some old bugs, probably adds a new bug or two, and, if I have anything to say about it, removes some old features.&quot;
***</li>
</ul>

<h3><a href="https://www.youtube.com/watch?v=zLsgFPaMPyg" rel="nofollow">VAXstation 4000 Model 90 booting NetBSD</a></h3>

<ul>
<li>We found a video of NetBSD booting on a 22 year old VAX workstation, circa 1992</li>
<li>This system has a monstrous 71 MHz CPU and 128MB of ECC RAM</li>
<li>It <a href="https://www.youtube.com/watch?v=YKzDXKmn66U" rel="nofollow">continues in part two</a>, where we learn that it would&#39;ve cost around $25,000 when it was released!</li>
<li>The uploader talks about his experiences getting NetBSD on it, what does and doesn&#39;t work, etc</li>
<li>It&#39;s interesting to see that such old hardware isn&#39;t necessarily obsolete just because newer things have come out since then (but maybe don&#39;t try to build world on it...)
***</li>
</ul>

<h2>Interview - Ken Moore - <a href="mailto:ken@pcbsd.org" rel="nofollow">ken@pcbsd.org</a></h2>

<p>The Lumina desktop environment</p>

<hr>

<h2>Special segment</h2>

<h3>Lumina walkthrough</h3>

<hr>

<h2>News Roundup</h2>

<h3><a href="http://pfsensesetup.com/suricata-intrusion-detection-system-part-one" rel="nofollow">Suricata for IDS on pfSense</a></h3>

<ul>
<li>While most people are familiar with Snort as an intrusion detection system, Suricata is another choice</li>
<li>This guide goes through the steps of installing and configuring it on a public-facing pfSense box</li>
<li><a href="http://pfsensesetup.com/suricata-intrusion-detection-system-part-two/" rel="nofollow">Part two</a> details some of the configuration steps</li>
<li>One other cool thing about Suricata - it&#39;s compatible with Snort rules, so you can use the same updates</li>
<li>There&#39;s also <a href="http://www.allamericancomputerrepair.com/Blog/Post/29/Install-Snort-on-FreeBSD" rel="nofollow">another recent post</a> about snort as well, if that&#39;s more your style</li>
<li>If you run pfSense (or any BSD) as an edge router for a lot of users, this might be worth looking into
***</li>
</ul>

<h3><a href="http://bsd.slashdot.org/story/14/09/08/0250207/gsoc-project-works-to-emulate-systemd-for-openbsd" rel="nofollow">OpenBSD&#39;s systemd API emulation project</a></h3>

<ul>
<li>This story was pretty popular in the mainstream news this week</li>
<li>For the Google Summer of Code, a student is writing emulation wrappers for some of <a href="https://twitter.com/blakkheim/status/509092821773848577" rel="nofollow">systemd&#39;s functions</a></li>
<li>There was consideration from some Linux users to port over the finished emulation back to Linux, so they wouldn&#39;t have to run the full systemd</li>
<li>One particularly interesting Slashdot comment <a href="http://bsd.slashdot.org/comments.pl?sid=5663319&cid=47851361" rel="nofollow">snippet</a>: &quot;We are currently migrating a large number (much larger than planned after initial results) of systems from RHEL to BSD - a decision taken due to general unhappiness with RHEL6, but SystemD pushed us towards BSD rather than another Linux distro - and in some cases are seeing throughput gains of greater than 10% on what should be equivalent Linux and BSD server builds. The re-learning curve wasn&#39;t as steep as we expected, general system stability seems to be better too, and BSD&#39;s security reputation goes without saying.&quot;</li>
<li>It will NOT be in the base system - only in ports, and only installed as a dependency for things like <a href="http://blogs.gnome.org/ovitters/2014/09/07/systemd-in-gnome-3-14-and-beyond/" rel="nofollow">newer GNOME</a> that require such APIs</li>
<li>In the long run, BSD will still be safe from systemd&#39;s reign of terror, but will hopefully still be compatible with some third party packages like GNOME that insist on using it
***</li>
</ul>

<h3><a href="http://www.linuxbsdos.com/2014/05/19/preview-of-ghostbsd-4-0/" rel="nofollow">GhostBSD 4 previewed</a></h3>

<ul>
<li>The GhostBSD project is moving along, slowly getting closer to the 4 release</li>
<li>This article shows some of the progress made, and includes lots of screenshots and interesting graphical frontends</li>
<li>If you&#39;re not too familiar with GhostBSD, we <a href="http://www.bsdnow.tv/episodes/2014_03_12-ghost_of_partition" rel="nofollow">interviewed the lead developer</a> a little while back
***</li>
</ul>

<h3><a href="http://rizzoandself.blogspot.com/2014/09/netbsd-on-banana-pi.html" rel="nofollow">NetBSD on the Banana Pi</a></h3>

<ul>
<li>The Banana Pi is a tasty alternative to the Raspberry Pi, with similar hardware specs</li>
<li>In this blog post, a NetBSD developer details his experiences in getting NetBSD to run on it</li>
<li>After studying how the prebuilt Linux image booted, he made some notes and started hacking</li>
<li>Ethernet, one of the few things not working, is being looked into and he&#39;s hoping to get it fully supported for the upcoming NetBSD 7.0</li>
<li>They&#39;re only about $65 as of the time we&#39;re recording this, so it might be a fun project to try
***</li>
</ul>

<h2>Feedback/Questions</h2>

<ul>
<li><a href="http://slexy.org/view/s28iKdBEbm" rel="nofollow">Antonio writes in</a></li>
<li><a href="http://slexy.org/view/s21Wfnv87h" rel="nofollow">Garegin writes in</a></li>
<li><a href="http://slexy.org/view/s2Fzryxhdz" rel="nofollow">Erno writes in</a></li>
<li><a href="http://slexy.org/view/s2ILcqdFfF" rel="nofollow">Brandon writes in</a>
***</li>
</ul>]]>
  </itunes:summary>
</item>
<item>
  <title>42: Devious Methods</title>
  <link>https://www.bsdnow.tv/42</link>
  <guid isPermaLink="false">95dc548f-e688-476d-9fd7-8e78ff3cd16f</guid>
  <pubDate>Wed, 18 Jun 2014 08:00:00 -0400</pubDate>
  <author>JT Pennington</author>
  <enclosure url="https://aphid.fireside.fm/d/1437767933/c91b88f1-e824-4815-bcb8-5227818d6010/95dc548f-e688-476d-9fd7-8e78ff3cd16f.mp3" length="60629908" type="audio/mpeg"/>
  <itunes:episodeType>full</itunes:episodeType>
  <itunes:author>JT Pennington</itunes:author>
  <itunes:subtitle>Coming up this week, we'll be showing you how to chain SSH connections, as well as some cool tricks you can do with it. Going along with that theme, we also have an interview with Bryce Chidester about running a BSD-based shell provider. News, emails and cowsay turkeys, on BSD Now - the place to B.. SD.</itunes:subtitle>
  <itunes:duration>1:24:12</itunes:duration>
  <itunes:explicit>no</itunes:explicit>
  <itunes:image href="https://media24.fireside.fm/file/fireside-images-2024/podcasts/images/c/c91b88f1-e824-4815-bcb8-5227818d6010/cover.jpg?v=4"/>
  <description>&lt;p&gt;Coming up this week, we'll be showing you how to chain SSH connections, as well as some cool tricks you can do with it. Going along with that theme, we also have an interview with Bryce Chidester about running a BSD-based shell provider. News, emails and cowsay turkeys, on BSD Now - the place to B.. SD.&lt;/p&gt;

&lt;h2&gt;This episode was brought to you by&lt;/h2&gt;

&lt;p&gt;&lt;a href="http://www.ixsystems.com/bsdnow" title="iXsystems" target="_blank" rel="nofollow noopener"&gt;&lt;img src="/images/iXlogo2.png" alt="iXsystems - Enterprise servers and storage for open source"&gt;&lt;/a&gt;&lt;a href="http://www.tarsnap.com/bsdnow" title="Tarsnap" target="_blank" rel="nofollow noopener"&gt;&lt;img src="/images/tarsnap1.png" alt="Tarsnap - online backups for the truly paranoid"&gt;&lt;/a&gt;&lt;/p&gt;

&lt;hr&gt;

&lt;h2&gt;Headlines&lt;/h2&gt;

&lt;h3&gt;&lt;a href="https://www.soldierx.com/news/Position-Independent-Executable-Support-Added-FreeBSD" target="_blank" rel="nofollow noopener"&gt;PIE and ASLR in FreeBSD update&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;A status update for Shawn Webb's ASLR and PIE work for FreeBSD&lt;/li&gt;
&lt;li&gt;One major part of the code, position-independent executable support, has finally been merged into the -CURRENT tree&lt;/li&gt;
&lt;li&gt;"FreeBSD has supported loading PIEs for a while now, but the applications in base weren't compiled as PIEs. Given that ASLR is useless without PIE, getting base compiled with PIE support is a mandatory first step in proper ASLR support"&lt;/li&gt;
&lt;li&gt;If you're running -CURRENT, just add "WITH_PIE=1" to your /etc/src.conf and /etc/make.conf&lt;/li&gt;
&lt;li&gt;The next step is working on the ASLR coding style and getting more developers to look through it&lt;/li&gt;
&lt;li&gt;Shawn will also be at EuroBSDCon (in September) giving an updated version of his BSDCan talk about ASLR
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="https://blog.pfsense.org/?p=1347" target="_blank" rel="nofollow noopener"&gt;Misc. pfSense news&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Couple of pfSense news items this week, including some hardware news&lt;/li&gt;
&lt;li&gt;Someone's gotta test the pfSense hardware devices before they're sold, which involves powering them all on at least once&lt;/li&gt;
&lt;li&gt;To make that process faster, they're building a controllable power board (and include some cool pics)&lt;/li&gt;
&lt;li&gt;There will be more info on that device a bit later on&lt;/li&gt;
&lt;li&gt;On Friday, June 27th, there will be &lt;a href="https://blog.pfsense.org/?p=1367" target="_blank" rel="nofollow noopener"&gt;another video session&lt;/a&gt; (for paying customers only...) about virtualized firewalls&lt;/li&gt;
&lt;li&gt;pfSense &lt;a href="https://blog.pfsense.org/?p=1332" target="_blank" rel="nofollow noopener"&gt;University&lt;/a&gt;, a new paid training course, was also announced&lt;/li&gt;
&lt;li&gt;A single two-day class costs $2000, ouch
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://blog.delphix.com/matt/2014/06/06/zfs-stripe-width/" target="_blank" rel="nofollow noopener"&gt;ZFS stripe width&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;A new blog post from &lt;a href="http://www.bsdnow.tv/episodes/2014_05_14-bsdcanned_goods" target="_blank" rel="nofollow noopener"&gt;Matt Ahrens&lt;/a&gt; about ZFS stripe width&lt;/li&gt;
&lt;li&gt;"The popularity of OpenZFS has spawned a great community of users, sysadmins, architects and developers, contributing a wealth of advice, tips and tricks, and rules of thumb on how to configure ZFS. In general, this is a great aspect of the ZFS community, but I’d like to take the opportunity to address one piece of misinformed advice"&lt;/li&gt;
&lt;li&gt;Matt goes through different situations where you would set up your zpool differently, each with their own advantages and disadvantages&lt;/li&gt;
&lt;li&gt;He covers best performance on random IOPS, best reliability, and best space efficiency use cases&lt;/li&gt;
&lt;li&gt;It includes a lot of detail on each one, including graphs, and addresses some misconceptions about different RAID-Z levels' overhead factor
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="https://lists.freebsd.org/pipermail/freebsd-stable/2014-June/078959.html" target="_blank" rel="nofollow noopener"&gt;FreeBSD 9.3-BETA3 released&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;The third BETA in the 9.3 release cycle is out, we're slowly getting closer to the release&lt;/li&gt;
&lt;li&gt;This is expected to be the final BETA, next will come the RCs&lt;/li&gt;
&lt;li&gt;There have mostly just been small bug fixes since BETA2, but OpenSSL was also updated and the arc4random code was updated to match what's in -CURRENT (but still isn't using ChaCha20)&lt;/li&gt;
&lt;li&gt;The FreeBSD foundation has &lt;a href="http://freebsdfoundation.blogspot.com/2014/06/freebsd-93-beta3-now-available.html" target="_blank" rel="nofollow noopener"&gt;a blog post&lt;/a&gt; about it too&lt;/li&gt;
&lt;li&gt;There's &lt;a href="https://www.freebsd.org/relnotes/9-STABLE/relnotes/article.html" target="_blank" rel="nofollow noopener"&gt;a list of changes&lt;/a&gt; between 9.2 and 9.3 as well, but we'll be sure to cover it when the -RELEASE hits
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;Interview - Bryce Chidester - &lt;a href="mailto:brycec@devio.us" target="_blank" rel="nofollow noopener"&gt;brycec@devio.us&lt;/a&gt; / &lt;a href="https://twitter.com/brycied00d" target="_blank" rel="nofollow noopener"&gt;@brycied00d&lt;/a&gt;
&lt;/h2&gt;

&lt;p&gt;Running a BSD shell provider&lt;/p&gt;

&lt;hr&gt;

&lt;h2&gt;Tutorial&lt;/h2&gt;

&lt;h3&gt;&lt;a href="http://www.bsdnow.tv/tutorials/ssh-chaining" target="_blank" rel="nofollow noopener"&gt;Chaining SSH connections&lt;/a&gt;&lt;/h3&gt;

&lt;hr&gt;

&lt;h2&gt;News Roundup&lt;/h2&gt;

&lt;h3&gt;&lt;a href="https://www.linuxquestions.org/questions/*bsd-17/my-freebsd-adventure-continued-4175508055/" target="_blank" rel="nofollow noopener"&gt;My FreeBSD adventure&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;A Slackware user from the "linux questions" forum decides to try out BSD, and documents his initial impressions and findings&lt;/li&gt;
&lt;li&gt;After &lt;a href="https://www.linuxquestions.org/questions/*bsd-17/pc-bsd-10-0-is-now-available-4175493047/page2.html#post5142465" target="_blank" rel="nofollow noopener"&gt;ruling out&lt;/a&gt; PCBSD due to the demanding hardware requirements and NetBSD due to "politics" (whatever that means, his words) he decides to start off with FreeBSD 10, but also mentions trying OpenBSD later on&lt;/li&gt;
&lt;li&gt;In his forum post, he covers the documentation (and how easy it makes it for a switcher), dual booting, packages vs ports, network configuration and some other little things&lt;/li&gt;
&lt;li&gt;So far, he seems to really enjoy BSD and thinks that it makes a lot of sense compared to Linux&lt;/li&gt;
&lt;li&gt;Might be an interesting, ongoing series we can follow up on later
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://freebsdfoundation.blogspot.com/2014/06/bsdcan-trip-report-li-wen-hsu.html" target="_blank" rel="nofollow noopener"&gt;Even more BSDCan trip reports&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;BSDCan may be over until next year, but trip reports are still pouring in&lt;/li&gt;
&lt;li&gt;This time we have a summary from Li-Wen Hsu, who was paid for by the FreeBSD foundation&lt;/li&gt;
&lt;li&gt;He's part of the "Jenkins CI for FreeBSD" group and went to BSDCan mostly for that&lt;/li&gt;
&lt;li&gt;Nice long post about all of his experiences at the event, definitely worth a read&lt;/li&gt;
&lt;li&gt;He even talks about... the food
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://blather.michaelwlucas.com/archives/2096" target="_blank" rel="nofollow noopener"&gt;FreeBSD disk partitioning&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;For his latest book series on FreeBSD's GEOM system, MWL asked the hackers mailing list for some clarification&lt;/li&gt;
&lt;li&gt;This erupted into a very &lt;a href="https://lists.freebsd.org/pipermail/freebsd-hackers/2014-June/045246.html" target="_blank" rel="nofollow noopener"&gt;long discussion&lt;/a&gt; about fdisk vs gnop vs gpart&lt;/li&gt;
&lt;li&gt;So you don't have to read the 500 mailing list posts, he's summarized the findings in a blog post&lt;/li&gt;
&lt;li&gt;It covers MBR vs GPT, disk sector sizes and how to handle all of them with which tools
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://sourceforge.net/projects/bsdrp/files/BSD_Router_Project/1.51" target="_blank" rel="nofollow noopener"&gt;BSD Router Project version 1.51&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;A new version of the BSD Router Project has been released, 1.51&lt;/li&gt;
&lt;li&gt;It's now based on FreeBSD 10-STABLE instead of 10.0-RELEASE&lt;/li&gt;
&lt;li&gt;Includes lots of bugfixes and small updates, as well as some patches from pfSense and elsewhere&lt;/li&gt;
&lt;li&gt;Check the sourceforge page for the complete list of changes&lt;/li&gt;
&lt;li&gt;Bad news... the minimum disk size requirement has increased to 512MB... getting pretty bloated
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;Feedback/Questions&lt;/h2&gt;

&lt;ul&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s21X4hl28g" target="_blank" rel="nofollow noopener"&gt;Fongaboo writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s20DELplMw" target="_blank" rel="nofollow noopener"&gt;David writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;
&lt;a href="http://slexy.org/view/s2tmazORRN" target="_blank" rel="nofollow noopener"&gt;Kristian writes in&lt;/a&gt;
*** &lt;/li&gt;
&lt;/ul&gt;
</description>
  <itunes:keywords>freebsd, openbsd, netbsd, dragonflybsd, pcbsd, tutorial, howto, guide, bsd, interview, ssh, openssh, chaining, tor, hopping, jump host, tunnel, vpn, cowsay, 9.3, beta, release, pie, aslr, zfs, zpool, matt ahrens, delphix, foundation, devious, devio.us, bcallah is a noob, shell, shell provider, free, hosting, vps, vpn, ixsystems, tarsnap, bsdcan, report, bsd router project, router, pfsense, m0n0wall, openstack, security, linux, slackware, switching, linux vs bsd, netgate, firewall, university, hangout</itunes:keywords>
  <content:encoded>
    <![CDATA[<p>Coming up this week, we&#39;ll be showing you how to chain SSH connections, as well as some cool tricks you can do with it. Going along with that theme, we also have an interview with Bryce Chidester about running a BSD-based shell provider. News, emails and cowsay turkeys, on BSD Now - the place to B.. SD.</p>

<h2>This episode was brought to you by</h2>

<p><a href="http://www.ixsystems.com/bsdnow" title="iXsystems"><img src="/images/iXlogo2.png" alt="iXsystems - Enterprise servers and storage for open source" /></a><a href="http://www.tarsnap.com/bsdnow" title="Tarsnap"><img src="/images/tarsnap1.png" alt="Tarsnap - online backups for the truly paranoid" /></a></p>

<hr>

<h2>Headlines</h2>

<h3><a href="https://www.soldierx.com/news/Position-Independent-Executable-Support-Added-FreeBSD" rel="nofollow">PIE and ASLR in FreeBSD update</a></h3>

<ul>
<li>A status update for Shawn Webb&#39;s ASLR and PIE work for FreeBSD</li>
<li>One major part of the code, position-independent executable support, has finally been merged into the -CURRENT tree</li>
<li>&quot;FreeBSD has supported loading PIEs for a while now, but the applications in base weren&#39;t compiled as PIEs. Given that ASLR is useless without PIE, getting base compiled with PIE support is a mandatory first step in proper ASLR support&quot;</li>
<li>If you&#39;re running -CURRENT, just add &quot;WITH_PIE=1&quot; to your /etc/src.conf and /etc/make.conf</li>
<li>The next step is working on the ASLR coding style and getting more developers to look through it</li>
<li>Shawn will also be at EuroBSDCon (in September) giving an updated version of his BSDCan talk about ASLR
***</li>
</ul>

<h3><a href="https://blog.pfsense.org/?p=1347" rel="nofollow">Misc. pfSense news</a></h3>

<ul>
<li>Couple of pfSense news items this week, including some hardware news</li>
<li>Someone&#39;s gotta test the pfSense hardware devices before they&#39;re sold, which involves powering them all on at least once</li>
<li>To make that process faster, they&#39;re building a controllable power board (and include some cool pics)</li>
<li>There will be more info on that device a bit later on</li>
<li>On Friday, June 27th, there will be <a href="https://blog.pfsense.org/?p=1367" rel="nofollow">another video session</a> (for paying customers only...) about virtualized firewalls</li>
<li>pfSense <a href="https://blog.pfsense.org/?p=1332" rel="nofollow">University</a>, a new paid training course, was also announced</li>
<li>A single two-day class costs $2000, ouch
***</li>
</ul>

<h3><a href="http://blog.delphix.com/matt/2014/06/06/zfs-stripe-width/" rel="nofollow">ZFS stripe width</a></h3>

<ul>
<li>A new blog post from <a href="http://www.bsdnow.tv/episodes/2014_05_14-bsdcanned_goods" rel="nofollow">Matt Ahrens</a> about ZFS stripe width</li>
<li>&quot;The popularity of OpenZFS has spawned a great community of users, sysadmins, architects and developers, contributing a wealth of advice, tips and tricks, and rules of thumb on how to configure ZFS. In general, this is a great aspect of the ZFS community, but I’d like to take the opportunity to address one piece of misinformed advice&quot;</li>
<li>Matt goes through different situations where you would set up your zpool differently, each with their own advantages and disadvantages</li>
<li>He covers best performance on random IOPS, best reliability, and best space efficiency use cases</li>
<li>It includes a lot of detail on each one, including graphs, and addresses some misconceptions about different RAID-Z levels&#39; overhead factor
***</li>
</ul>

<h3><a href="https://lists.freebsd.org/pipermail/freebsd-stable/2014-June/078959.html" rel="nofollow">FreeBSD 9.3-BETA3 released</a></h3>

<ul>
<li>The third BETA in the 9.3 release cycle is out, we&#39;re slowly getting closer to the release</li>
<li>This is expected to be the final BETA, next will come the RCs</li>
<li>There have mostly just been small bug fixes since BETA2, but OpenSSL was also updated and the arc4random code was updated to match what&#39;s in -CURRENT (but still isn&#39;t using ChaCha20)</li>
<li>The FreeBSD foundation has <a href="http://freebsdfoundation.blogspot.com/2014/06/freebsd-93-beta3-now-available.html" rel="nofollow">a blog post</a> about it too</li>
<li>There&#39;s <a href="https://www.freebsd.org/relnotes/9-STABLE/relnotes/article.html" rel="nofollow">a list of changes</a> between 9.2 and 9.3 as well, but we&#39;ll be sure to cover it when the -RELEASE hits
***</li>
</ul>

<h2>Interview - Bryce Chidester - <a href="mailto:brycec@devio.us" rel="nofollow">brycec@devio.us</a> / <a href="https://twitter.com/brycied00d" rel="nofollow">@brycied00d</a></h2>

<p>Running a BSD shell provider</p>

<hr>

<h2>Tutorial</h2>

<h3><a href="http://www.bsdnow.tv/tutorials/ssh-chaining" rel="nofollow">Chaining SSH connections</a></h3>

<hr>

<h2>News Roundup</h2>

<h3><a href="https://www.linuxquestions.org/questions/*bsd-17/my-freebsd-adventure-continued-4175508055/" rel="nofollow">My FreeBSD adventure</a></h3>

<ul>
<li>A Slackware user from the &quot;linux questions&quot; forum decides to try out BSD, and documents his initial impressions and findings</li>
<li>After <a href="https://www.linuxquestions.org/questions/*bsd-17/pc-bsd-10-0-is-now-available-4175493047/page2.html#post5142465" rel="nofollow">ruling out</a> PCBSD due to the demanding hardware requirements and NetBSD due to &quot;politics&quot; (whatever that means, his words) he decides to start off with FreeBSD 10, but also mentions trying OpenBSD later on</li>
<li>In his forum post, he covers the documentation (and how easy it makes it for a switcher), dual booting, packages vs ports, network configuration and some other little things</li>
<li>So far, he seems to really enjoy BSD and thinks that it makes a lot of sense compared to Linux</li>
<li>Might be an interesting, ongoing series we can follow up on later
***</li>
</ul>

<h3><a href="http://freebsdfoundation.blogspot.com/2014/06/bsdcan-trip-report-li-wen-hsu.html" rel="nofollow">Even more BSDCan trip reports</a></h3>

<ul>
<li>BSDCan may be over until next year, but trip reports are still pouring in</li>
<li>This time we have a summary from Li-Wen Hsu, who was paid for by the FreeBSD foundation</li>
<li>He&#39;s part of the &quot;Jenkins CI for FreeBSD&quot; group and went to BSDCan mostly for that</li>
<li>Nice long post about all of his experiences at the event, definitely worth a read</li>
<li>He even talks about... the food
***</li>
</ul>

<h3><a href="http://blather.michaelwlucas.com/archives/2096" rel="nofollow">FreeBSD disk partitioning</a></h3>

<ul>
<li>For his latest book series on FreeBSD&#39;s GEOM system, MWL asked the hackers mailing list for some clarification</li>
<li>This erupted into a very <a href="https://lists.freebsd.org/pipermail/freebsd-hackers/2014-June/045246.html" rel="nofollow">long discussion</a> about fdisk vs gnop vs gpart</li>
<li>So you don&#39;t have to read the 500 mailing list posts, he&#39;s summarized the findings in a blog post</li>
<li>It covers MBR vs GPT, disk sector sizes and how to handle all of them with which tools
***</li>
</ul>

<h3><a href="http://sourceforge.net/projects/bsdrp/files/BSD_Router_Project/1.51" rel="nofollow">BSD Router Project version 1.51</a></h3>

<ul>
<li>A new version of the BSD Router Project has been released, 1.51</li>
<li>It&#39;s now based on FreeBSD 10-STABLE instead of 10.0-RELEASE</li>
<li>Includes lots of bugfixes and small updates, as well as some patches from pfSense and elsewhere</li>
<li>Check the sourceforge page for the complete list of changes</li>
<li>Bad news... the minimum disk size requirement has increased to 512MB... getting pretty bloated
***</li>
</ul>

<h2>Feedback/Questions</h2>

<ul>
<li><a href="http://slexy.org/view/s21X4hl28g" rel="nofollow">Fongaboo writes in</a></li>
<li><a href="http://slexy.org/view/s20DELplMw" rel="nofollow">David writes in</a></li>
<li><a href="http://slexy.org/view/s2tmazORRN" rel="nofollow">Kristian writes in</a>
***</li>
</ul>]]>
  </content:encoded>
  <itunes:summary>
    <![CDATA[<p>Coming up this week, we&#39;ll be showing you how to chain SSH connections, as well as some cool tricks you can do with it. Going along with that theme, we also have an interview with Bryce Chidester about running a BSD-based shell provider. News, emails and cowsay turkeys, on BSD Now - the place to B.. SD.</p>

<h2>This episode was brought to you by</h2>

<p><a href="http://www.ixsystems.com/bsdnow" title="iXsystems"><img src="/images/iXlogo2.png" alt="iXsystems - Enterprise servers and storage for open source" /></a><a href="http://www.tarsnap.com/bsdnow" title="Tarsnap"><img src="/images/tarsnap1.png" alt="Tarsnap - online backups for the truly paranoid" /></a></p>

<hr>

<h2>Headlines</h2>

<h3><a href="https://www.soldierx.com/news/Position-Independent-Executable-Support-Added-FreeBSD" rel="nofollow">PIE and ASLR in FreeBSD update</a></h3>

<ul>
<li>A status update for Shawn Webb&#39;s ASLR and PIE work for FreeBSD</li>
<li>One major part of the code, position-independent executable support, has finally been merged into the -CURRENT tree</li>
<li>&quot;FreeBSD has supported loading PIEs for a while now, but the applications in base weren&#39;t compiled as PIEs. Given that ASLR is useless without PIE, getting base compiled with PIE support is a mandatory first step in proper ASLR support&quot;</li>
<li>If you&#39;re running -CURRENT, just add &quot;WITH_PIE=1&quot; to your /etc/src.conf and /etc/make.conf</li>
<li>The next step is working on the ASLR coding style and getting more developers to look through it</li>
<li>Shawn will also be at EuroBSDCon (in September) giving an updated version of his BSDCan talk about ASLR
***</li>
</ul>

<h3><a href="https://blog.pfsense.org/?p=1347" rel="nofollow">Misc. pfSense news</a></h3>

<ul>
<li>Couple of pfSense news items this week, including some hardware news</li>
<li>Someone&#39;s gotta test the pfSense hardware devices before they&#39;re sold, which involves powering them all on at least once</li>
<li>To make that process faster, they&#39;re building a controllable power board (and include some cool pics)</li>
<li>There will be more info on that device a bit later on</li>
<li>On Friday, June 27th, there will be <a href="https://blog.pfsense.org/?p=1367" rel="nofollow">another video session</a> (for paying customers only...) about virtualized firewalls</li>
<li>pfSense <a href="https://blog.pfsense.org/?p=1332" rel="nofollow">University</a>, a new paid training course, was also announced</li>
<li>A single two-day class costs $2000, ouch
***</li>
</ul>

<h3><a href="http://blog.delphix.com/matt/2014/06/06/zfs-stripe-width/" rel="nofollow">ZFS stripe width</a></h3>

<ul>
<li>A new blog post from <a href="http://www.bsdnow.tv/episodes/2014_05_14-bsdcanned_goods" rel="nofollow">Matt Ahrens</a> about ZFS stripe width</li>
<li>&quot;The popularity of OpenZFS has spawned a great community of users, sysadmins, architects and developers, contributing a wealth of advice, tips and tricks, and rules of thumb on how to configure ZFS. In general, this is a great aspect of the ZFS community, but I’d like to take the opportunity to address one piece of misinformed advice&quot;</li>
<li>Matt goes through different situations where you would set up your zpool differently, each with their own advantages and disadvantages</li>
<li>He covers best performance on random IOPS, best reliability, and best space efficiency use cases</li>
<li>It includes a lot of detail on each one, including graphs, and addresses some misconceptions about different RAID-Z levels&#39; overhead factor
***</li>
</ul>

<h3><a href="https://lists.freebsd.org/pipermail/freebsd-stable/2014-June/078959.html" rel="nofollow">FreeBSD 9.3-BETA3 released</a></h3>

<ul>
<li>The third BETA in the 9.3 release cycle is out, we&#39;re slowly getting closer to the release</li>
<li>This is expected to be the final BETA, next will come the RCs</li>
<li>There have mostly just been small bug fixes since BETA2, but OpenSSL was also updated and the arc4random code was updated to match what&#39;s in -CURRENT (but still isn&#39;t using ChaCha20)</li>
<li>The FreeBSD foundation has <a href="http://freebsdfoundation.blogspot.com/2014/06/freebsd-93-beta3-now-available.html" rel="nofollow">a blog post</a> about it too</li>
<li>There&#39;s <a href="https://www.freebsd.org/relnotes/9-STABLE/relnotes/article.html" rel="nofollow">a list of changes</a> between 9.2 and 9.3 as well, but we&#39;ll be sure to cover it when the -RELEASE hits
***</li>
</ul>

<h2>Interview - Bryce Chidester - <a href="mailto:brycec@devio.us" rel="nofollow">brycec@devio.us</a> / <a href="https://twitter.com/brycied00d" rel="nofollow">@brycied00d</a></h2>

<p>Running a BSD shell provider</p>

<hr>

<h2>Tutorial</h2>

<h3><a href="http://www.bsdnow.tv/tutorials/ssh-chaining" rel="nofollow">Chaining SSH connections</a></h3>

<hr>

<h2>News Roundup</h2>

<h3><a href="https://www.linuxquestions.org/questions/*bsd-17/my-freebsd-adventure-continued-4175508055/" rel="nofollow">My FreeBSD adventure</a></h3>

<ul>
<li>A Slackware user from the &quot;linux questions&quot; forum decides to try out BSD, and documents his initial impressions and findings</li>
<li>After <a href="https://www.linuxquestions.org/questions/*bsd-17/pc-bsd-10-0-is-now-available-4175493047/page2.html#post5142465" rel="nofollow">ruling out</a> PCBSD due to the demanding hardware requirements and NetBSD due to &quot;politics&quot; (whatever that means, his words) he decides to start off with FreeBSD 10, but also mentions trying OpenBSD later on</li>
<li>In his forum post, he covers the documentation (and how easy it makes it for a switcher), dual booting, packages vs ports, network configuration and some other little things</li>
<li>So far, he seems to really enjoy BSD and thinks that it makes a lot of sense compared to Linux</li>
<li>Might be an interesting, ongoing series we can follow up on later
***</li>
</ul>

<h3><a href="http://freebsdfoundation.blogspot.com/2014/06/bsdcan-trip-report-li-wen-hsu.html" rel="nofollow">Even more BSDCan trip reports</a></h3>

<ul>
<li>BSDCan may be over until next year, but trip reports are still pouring in</li>
<li>This time we have a summary from Li-Wen Hsu, who was paid for by the FreeBSD foundation</li>
<li>He&#39;s part of the &quot;Jenkins CI for FreeBSD&quot; group and went to BSDCan mostly for that</li>
<li>Nice long post about all of his experiences at the event, definitely worth a read</li>
<li>He even talks about... the food
***</li>
</ul>

<h3><a href="http://blather.michaelwlucas.com/archives/2096" rel="nofollow">FreeBSD disk partitioning</a></h3>

<ul>
<li>For his latest book series on FreeBSD&#39;s GEOM system, MWL asked the hackers mailing list for some clarification</li>
<li>This erupted into a very <a href="https://lists.freebsd.org/pipermail/freebsd-hackers/2014-June/045246.html" rel="nofollow">long discussion</a> about fdisk vs gnop vs gpart</li>
<li>So you don&#39;t have to read the 500 mailing list posts, he&#39;s summarized the findings in a blog post</li>
<li>It covers MBR vs GPT, disk sector sizes and how to handle all of them with which tools
***</li>
</ul>

<h3><a href="http://sourceforge.net/projects/bsdrp/files/BSD_Router_Project/1.51" rel="nofollow">BSD Router Project version 1.51</a></h3>

<ul>
<li>A new version of the BSD Router Project has been released, 1.51</li>
<li>It&#39;s now based on FreeBSD 10-STABLE instead of 10.0-RELEASE</li>
<li>Includes lots of bugfixes and small updates, as well as some patches from pfSense and elsewhere</li>
<li>Check the sourceforge page for the complete list of changes</li>
<li>Bad news... the minimum disk size requirement has increased to 512MB... getting pretty bloated
***</li>
</ul>

<h2>Feedback/Questions</h2>

<ul>
<li><a href="http://slexy.org/view/s21X4hl28g" rel="nofollow">Fongaboo writes in</a></li>
<li><a href="http://slexy.org/view/s20DELplMw" rel="nofollow">David writes in</a></li>
<li><a href="http://slexy.org/view/s2tmazORRN" rel="nofollow">Kristian writes in</a>
***</li>
</ul>]]>
  </itunes:summary>
</item>
  </channel>
</rss>
