<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" encoding="UTF-8" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:sy="http://purl.org/rss/1.0/modules/syndication/" xmlns:admin="http://webns.net/mvcb/" xmlns:atom="http://www.w3.org/2005/Atom/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:googleplay="http://www.google.com/schemas/play-podcasts/1.0" xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd" xmlns:fireside="http://fireside.fm/modules/rss/fireside">
  <channel>
    <fireside:hostname>app01</fireside:hostname>
    <fireside:genDate>Sat, 27 Jun 2026 11:08:36 +0000</fireside:genDate>
    <generator>Fireside (https://fireside.fm)</generator>
    <title>BSD Now - Episodes Tagged with “Presentation”</title>
    <link>https://www.bsdnow.tv/tags/presentation</link>
    <pubDate>Thu, 07 Oct 2021 03:00:00 -0400</pubDate>
    <description>Created by three guys who love BSD, we cover the latest news and have an extensive series of tutorials, as well as interviews with various people from all areas of the BSD community. It also serves as a platform for support and questions. We love and advocate FreeBSD, OpenBSD, NetBSD, DragonFlyBSD and TrueOS. Our show aims to be helpful and informative for new users that want to learn about them, but still be entertaining for the people who are already pros. The show airs on Wednesdays at 2:00PM (US Eastern time) and the edited version is usually up the following day.</description>
    <language>en-us</language>
    <itunes:type>episodic</itunes:type>
    <itunes:subtitle>A weekly podcast and the place to B...SD</itunes:subtitle>
    <itunes:author>JT Pennington</itunes:author>
    <itunes:summary>Created by three guys who love BSD, we cover the latest news and have an extensive series of tutorials, as well as interviews with various people from all areas of the BSD community. It also serves as a platform for support and questions. We love and advocate FreeBSD, OpenBSD, NetBSD, DragonFlyBSD and TrueOS. Our show aims to be helpful and informative for new users that want to learn about them, but still be entertaining for the people who are already pros. The show airs on Wednesdays at 2:00PM (US Eastern time) and the edited version is usually up the following day.</itunes:summary>
    <itunes:image href="https://media24.fireside.fm/file/fireside-images-2024/podcasts/images/c/c91b88f1-e824-4815-bcb8-5227818d6010/cover.jpg?v=4"/>
    <itunes:explicit>no</itunes:explicit>
    <itunes:keywords>berkeley,freebsd,openbsd,netbsd,dragonflybsd,trueos,trident,hardenedbsd,tutorial,howto,guide,bsd,interview</itunes:keywords>
    <itunes:owner>
      <itunes:name>JT Pennington</itunes:name>
      <itunes:email>feedback@bsdnow.tv</itunes:email>
    </itunes:owner>
<itunes:category text="News">
  <itunes:category text="Tech News"/>
</itunes:category>
<itunes:category text="Education">
  <itunes:category text="How To"/>
</itunes:category>
<item>
  <title>423: RACK the Stack </title>
  <link>https://www.bsdnow.tv/423</link>
  <guid isPermaLink="false">4773f65c-58e5-4661-8a0e-cd636e3a9997</guid>
  <pubDate>Thu, 07 Oct 2021 03:00:00 -0400</pubDate>
  <author>JT Pennington</author>
  <enclosure url="https://aphid.fireside.fm/d/1437767933/c91b88f1-e824-4815-bcb8-5227818d6010/4773f65c-58e5-4661-8a0e-cd636e3a9997.mp3" length="32212584" type="audio/mpeg"/>
  <itunes:episodeType>full</itunes:episodeType>
  <itunes:author>JT Pennington</itunes:author>
  <itunes:subtitle>FreeBSD serves Netflix Video at 400Gb/s, Using the RACK TCP stack, an OpenBSD script to update packages fast, Plasma System Monitor and FreeBSD, TrueNAS vs FreeNAS (and why you should upgrade!), auto lock screen on OpenBSD using xidle and xlock, and more</itunes:subtitle>
  <itunes:duration>51:30</itunes:duration>
  <itunes:explicit>no</itunes:explicit>
  <itunes:image href="https://media24.fireside.fm/file/fireside-images-2024/podcasts/images/c/c91b88f1-e824-4815-bcb8-5227818d6010/cover.jpg?v=4"/>
  <description>&lt;p&gt;FreeBSD serves Netflix Video at 400Gb/s, Using the RACK TCP stack, an OpenBSD script to update packages fast, Plasma System Monitor and FreeBSD, TrueNAS vs FreeNAS (and why you should upgrade!), auto lock screen on OpenBSD using xidle and xlock, and more.&lt;/p&gt;

&lt;p&gt;&lt;strong&gt;&lt;em&gt;NOTES&lt;/em&gt;&lt;/strong&gt;&lt;br&gt;
This episode of BSDNow is brought to you by &lt;a href="https://www.tarsnap.com/bsdnow" rel="nofollow noopener"&gt;Tarsnap&lt;/a&gt;&lt;/p&gt;

&lt;h2&gt;Headlines&lt;/h2&gt;

&lt;h3&gt;&lt;a href="https://people.freebsd.org/%7Egallatin/talks/euro2021.pdf" rel="nofollow noopener"&gt;Serving Netflix Video at 400Gb/s on FreeBSD&lt;/a&gt;&lt;/h3&gt;

&lt;hr&gt;

&lt;h3&gt;&lt;a href="https://klarasystems.com/articles/using-the-freebsd-rack-tcp-stack/" rel="nofollow noopener"&gt;Using the FreeBSD RACK TCP Stack&lt;/a&gt;&lt;/h3&gt;

&lt;hr&gt;

&lt;h2&gt;News Roundup&lt;/h2&gt;

&lt;h3&gt;&lt;a href="https://dataswamp.org/%7Esolene/2021-08-15-openbsd-pkgupdate.html" rel="nofollow noopener"&gt;pkgupdate, an OpenBSD script to update packages fast&lt;/a&gt;&lt;/h3&gt;

&lt;hr&gt;

&lt;h3&gt;&lt;a href="https://euroquis.nl//kde/2021/09/15/systemmonitor.html" rel="nofollow noopener"&gt;Plasma System Monitor and FreeBSD&lt;/a&gt;&lt;/h3&gt;

&lt;hr&gt;

&lt;h3&gt;&lt;a href="https://www.ixsystems.com/blog/truenas-vs-freenas-and-why-you-should-upgrade/" rel="nofollow noopener"&gt;TrueNAS vs FreeNAS (and why you should upgrade!)&lt;/a&gt;&lt;/h3&gt;

&lt;hr&gt;

&lt;h3&gt;&lt;a href="https://dataswamp.org/%7Esolene/2021-07-30-openbsd-xidle-xlock.html" rel="nofollow noopener"&gt;Automatically lock screen on OpenBSD using xidle and xlock&lt;/a&gt;&lt;/h3&gt;

&lt;hr&gt;

&lt;h3&gt;Tarsnap&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;This weeks episode of BSDNow was sponsored by our friends at Tarsnap, the only secure online backup you can trust your data to. Even paranoids need backups.&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;Feedback/Questions&lt;/h2&gt;

&lt;ul&gt;
&lt;li&gt;&lt;a href="https://github.com/BSDNow/bsdnow.tv/blob/master/episodes/423/feedback/Ben%20-%20LightDM%20with%20Slick-Greeter.md" rel="nofollow noopener"&gt;Ben - LightDM with Slick-Greeter.md&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://github.com/BSDNow/bsdnow.tv/blob/master/episodes/423/feedback/Dave%20-%20Cloned%20Interface.md" rel="nofollow noopener"&gt;Dave - Cloned Interface.md&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://github.com/BSDNow/bsdnow.tv/blob/master/episodes/423/feedback/MJ%20Rodriguez%20-%20Sony.md" rel="nofollow noopener"&gt;MJ Rodriguez - Sony.md&lt;/a&gt;&lt;/li&gt;
&lt;/ul&gt;

&lt;hr&gt;

&lt;ul&gt;
&lt;li&gt;Send questions, comments, show ideas/topics, or stories you want mentioned on the show to &lt;a href="mailto:feedback@bsdnow.tv" rel="nofollow noopener"&gt;feedback@bsdnow.tv&lt;/a&gt;
***&lt;/li&gt;
&lt;/ul&gt;
</description>
  <content:encoded>
    <![CDATA[<p>FreeBSD serves Netflix Video at 400Gb/s, Using the RACK TCP stack, an OpenBSD script to update packages fast, Plasma System Monitor and FreeBSD, TrueNAS vs FreeNAS (and why you should upgrade!), auto lock screen on OpenBSD using xidle and xlock, and more.</p>

<p><strong><em>NOTES</em></strong><br>
This episode of BSDNow is brought to you by <a href="https://www.tarsnap.com/bsdnow" rel="nofollow noopener">Tarsnap</a></p>

<h2>Headlines</h2>

<h3><a href="https://people.freebsd.org/%7Egallatin/talks/euro2021.pdf" rel="nofollow noopener">Serving Netflix Video at 400Gb/s on FreeBSD</a></h3>

<hr>

<h3><a href="https://klarasystems.com/articles/using-the-freebsd-rack-tcp-stack/" rel="nofollow noopener">Using the FreeBSD RACK TCP Stack</a></h3>

<hr>

<h2>News Roundup</h2>

<h3><a href="https://dataswamp.org/%7Esolene/2021-08-15-openbsd-pkgupdate.html" rel="nofollow noopener">pkgupdate, an OpenBSD script to update packages fast</a></h3>

<hr>

<h3><a href="https://euroquis.nl//kde/2021/09/15/systemmonitor.html" rel="nofollow noopener">Plasma System Monitor and FreeBSD</a></h3>

<hr>

<h3><a href="https://www.ixsystems.com/blog/truenas-vs-freenas-and-why-you-should-upgrade/" rel="nofollow noopener">TrueNAS vs FreeNAS (and why you should upgrade!)</a></h3>

<hr>

<h3><a href="https://dataswamp.org/%7Esolene/2021-07-30-openbsd-xidle-xlock.html" rel="nofollow noopener">Automatically lock screen on OpenBSD using xidle and xlock</a></h3>

<hr>

<h3>Tarsnap</h3>

<ul>
<li>This weeks episode of BSDNow was sponsored by our friends at Tarsnap, the only secure online backup you can trust your data to. Even paranoids need backups.</li>
</ul>

<h2>Feedback/Questions</h2>

<ul>
<li><a href="https://github.com/BSDNow/bsdnow.tv/blob/master/episodes/423/feedback/Ben%20-%20LightDM%20with%20Slick-Greeter.md" rel="nofollow noopener">Ben - LightDM with Slick-Greeter.md</a></li>
<li><a href="https://github.com/BSDNow/bsdnow.tv/blob/master/episodes/423/feedback/Dave%20-%20Cloned%20Interface.md" rel="nofollow noopener">Dave - Cloned Interface.md</a></li>
<li><a href="https://github.com/BSDNow/bsdnow.tv/blob/master/episodes/423/feedback/MJ%20Rodriguez%20-%20Sony.md" rel="nofollow noopener">MJ Rodriguez - Sony.md</a></li>
</ul>

<hr>

<ul>
<li>Send questions, comments, show ideas/topics, or stories you want mentioned on the show to <a href="mailto:feedback@bsdnow.tv" rel="nofollow noopener">feedback@bsdnow.tv</a>
***</li>
</ul>]]>
  </content:encoded>
  <itunes:summary>
    <![CDATA[<p>FreeBSD serves Netflix Video at 400Gb/s, Using the RACK TCP stack, an OpenBSD script to update packages fast, Plasma System Monitor and FreeBSD, TrueNAS vs FreeNAS (and why you should upgrade!), auto lock screen on OpenBSD using xidle and xlock, and more.</p>

<p><strong><em>NOTES</em></strong><br>
This episode of BSDNow is brought to you by <a href="https://www.tarsnap.com/bsdnow" rel="nofollow noopener">Tarsnap</a></p>

<h2>Headlines</h2>

<h3><a href="https://people.freebsd.org/%7Egallatin/talks/euro2021.pdf" rel="nofollow noopener">Serving Netflix Video at 400Gb/s on FreeBSD</a></h3>

<hr>

<h3><a href="https://klarasystems.com/articles/using-the-freebsd-rack-tcp-stack/" rel="nofollow noopener">Using the FreeBSD RACK TCP Stack</a></h3>

<hr>

<h2>News Roundup</h2>

<h3><a href="https://dataswamp.org/%7Esolene/2021-08-15-openbsd-pkgupdate.html" rel="nofollow noopener">pkgupdate, an OpenBSD script to update packages fast</a></h3>

<hr>

<h3><a href="https://euroquis.nl//kde/2021/09/15/systemmonitor.html" rel="nofollow noopener">Plasma System Monitor and FreeBSD</a></h3>

<hr>

<h3><a href="https://www.ixsystems.com/blog/truenas-vs-freenas-and-why-you-should-upgrade/" rel="nofollow noopener">TrueNAS vs FreeNAS (and why you should upgrade!)</a></h3>

<hr>

<h3><a href="https://dataswamp.org/%7Esolene/2021-07-30-openbsd-xidle-xlock.html" rel="nofollow noopener">Automatically lock screen on OpenBSD using xidle and xlock</a></h3>

<hr>

<h3>Tarsnap</h3>

<ul>
<li>This weeks episode of BSDNow was sponsored by our friends at Tarsnap, the only secure online backup you can trust your data to. Even paranoids need backups.</li>
</ul>

<h2>Feedback/Questions</h2>

<ul>
<li><a href="https://github.com/BSDNow/bsdnow.tv/blob/master/episodes/423/feedback/Ben%20-%20LightDM%20with%20Slick-Greeter.md" rel="nofollow noopener">Ben - LightDM with Slick-Greeter.md</a></li>
<li><a href="https://github.com/BSDNow/bsdnow.tv/blob/master/episodes/423/feedback/Dave%20-%20Cloned%20Interface.md" rel="nofollow noopener">Dave - Cloned Interface.md</a></li>
<li><a href="https://github.com/BSDNow/bsdnow.tv/blob/master/episodes/423/feedback/MJ%20Rodriguez%20-%20Sony.md" rel="nofollow noopener">MJ Rodriguez - Sony.md</a></li>
</ul>

<hr>

<ul>
<li>Send questions, comments, show ideas/topics, or stories you want mentioned on the show to <a href="mailto:feedback@bsdnow.tv" rel="nofollow noopener">feedback@bsdnow.tv</a>
***</li>
</ul>]]>
  </itunes:summary>
</item>
<item>
  <title>84: pkg remove freebsd-update</title>
  <link>https://www.bsdnow.tv/84</link>
  <guid isPermaLink="false">88c9bd14-b1bf-4d45-96b6-9af12b44d40b</guid>
  <pubDate>Wed, 08 Apr 2015 08:00:00 -0400</pubDate>
  <author>JT Pennington</author>
  <enclosure url="https://aphid.fireside.fm/d/1437767933/c91b88f1-e824-4815-bcb8-5227818d6010/88c9bd14-b1bf-4d45-96b6-9af12b44d40b.mp3" length="53948308" type="audio/mpeg"/>
  <itunes:episodeType>full</itunes:episodeType>
  <itunes:author>JT Pennington</itunes:author>
  <itunes:subtitle>On this week's mini-episode, we'll be talking with Baptiste Daroussin about packaging the FreeBSD base system with pkgng. Is this the best way going forward, or are we getting dangerously close to being Linux-like? We'll find out, and also get to a couple of your emails while we're at it, on BSD Now - the place to B.. SD.</itunes:subtitle>
  <itunes:duration>1:14:55</itunes:duration>
  <itunes:explicit>no</itunes:explicit>
  <itunes:image href="https://media24.fireside.fm/file/fireside-images-2024/podcasts/images/c/c91b88f1-e824-4815-bcb8-5227818d6010/cover.jpg?v=4"/>
  <description>&lt;p&gt;On this week's mini-episode, we'll be talking with Baptiste Daroussin about packaging the FreeBSD base system with pkgng. Is this the best way going forward, or are we getting dangerously close to being Linux-like? We'll find out, and also get to a couple of your emails while we're at it, on BSD Now - the place to B.. SD.&lt;/p&gt;

&lt;h2&gt;This episode was brought to you by&lt;/h2&gt;

&lt;p&gt;&lt;a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"&gt;&lt;img src="/images/1.png" alt="iXsystems - Enterprise Servers and Storage for Open Source"&gt;&lt;/a&gt;&lt;a href="http://www.digitalocean.com/" title="DigitalOcean" rel="nofollow noopener"&gt;&lt;img src="/images/2.png" alt="DigitalOcean - Simple Cloud Hosting, Built for Developers"&gt;&lt;/a&gt;&lt;a href="http://www.tarsnap.com/bsdnow" title="Tarsnap" rel="nofollow noopener"&gt;&lt;img src="/images/3.png" alt="Tarsnap - Online Backups for the Truly Paranoid"&gt;&lt;/a&gt;&lt;/p&gt;

&lt;hr&gt;

&lt;h2&gt;Headlines&lt;/h2&gt;

&lt;h3&gt;&lt;a href="https://svnweb.freebsd.org/ports?view=revision&amp;amp;revision=382965" rel="nofollow noopener"&gt;Xen dom0 in FreeBSD 11-CURRENT&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;FreeBSD has just gotten &lt;a href="http://wiki.xen.org/wiki/Dom0" rel="nofollow noopener"&gt;dom0&lt;/a&gt; support for the Xen hypervisor, something &lt;a href="http://wiki.netbsd.org/ports/xen/howto/#netbsd-dom0" rel="nofollow noopener"&gt;NetBSD has had&lt;/a&gt; for a while now&lt;/li&gt;
&lt;li&gt;The ports tree will now have a Xen kernel and toolstack, meaning that they can be updated much more rapidly than if they were part of base&lt;/li&gt;
&lt;li&gt;It's currently limited to Intel boxes with EPT and a working IOMMU, running a recent version of the -CURRENT branch, but we'll likely see it when 11.0 comes out&lt;/li&gt;
&lt;li&gt;How will this affect interest in Bhyve?
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://blog.anthrobsd.net/044.html" rel="nofollow noopener"&gt;A tale of two educational moments&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Here we have a blog post from an OpenBSD developer about some experiences he had helping people get involved with the project&lt;/li&gt;
&lt;li&gt;It's split into two stories: one that could've gone better, and one that went really well&lt;/li&gt;
&lt;li&gt;For the first one, he found that someone was trying to modify a package from their ports tree to have fewer dependencies&lt;/li&gt;
&lt;li&gt;Experience really showed its worth, and he was able to write a quick patch to do exactly what the other person had been working on for a few hours - but wasn't so encouraging about getting it committed&lt;/li&gt;
&lt;li&gt;In the second story, he discussed updating a different port with a user of a forum, and ended up improving the new user's workflow considerably with just a few tips&lt;/li&gt;
&lt;li&gt;The lesson to take away from this is that we can all help out to encourage and assist new users - everyone was a newbie once
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://saveosx.org/NetBSD7/" rel="nofollow noopener"&gt;What's coming in NetBSD 7&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;We first mentioned NetBSD 7.0 on the show in July of 2014, but it still hasn't been released and there hasn't been much public info about it&lt;/li&gt;
&lt;li&gt;This blog post outlines some of the bigger features that we can expect to see when it actually does come out&lt;/li&gt;
&lt;li&gt;Their total platform count is now over 70, so you'd be hard-pressed to find something that it doesn't run on&lt;/li&gt;
&lt;li&gt;There have been a lot of improvements in the graphics area, particularly with DRM/KMS, including Intel Haswell and Nouveau (for nVidia cards)&lt;/li&gt;
&lt;li&gt;Many ARM boards now have full SMP support&lt;/li&gt;
&lt;li&gt;Clang has also finally made its way into the base system, something we're glad to see, and it should be able to build the base OS on i386, AMD64 and ARM - other architectures are still a WIP&lt;/li&gt;
&lt;li&gt;In the crypto department: their PNRG has switched from the broken RC4 to the more modern ChaCha20, OpenSSL has been updated in base and LibreSSL is in pkgsrc&lt;/li&gt;
&lt;li&gt;NetBSD's in-house firewall, npf, has gotten major improvements since its initial debut in NetBSD 6.0&lt;/li&gt;
&lt;li&gt;Looking to the future, NetBSD hopes to integrate a stable ZFS implementation later on
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="https://www.youtube.com/watch?v=mS4bfbEq46I" rel="nofollow noopener"&gt;OpenZFS office hours&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;We mentioned a couple weeks back that the OpenZFS office hours series was starting back up&lt;/li&gt;
&lt;li&gt;They've just uploaded the recording of their most recent freeform discussion, with &lt;a href="http://www.bsdnow.tv/episodes/2015_03_11-the_pcbsd_tour_ii" rel="nofollow noopener"&gt;Justin Gibbs&lt;/a&gt; being the main presenter&lt;/li&gt;
&lt;li&gt;In it, they cover how Justin got into ZFS, running in virtualized environments, getting patches into the different projects, getting more people involved, reviewing code, spinning disks vs SSDs, defragging, speeding up resilvering, zfsd and much more
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;Interview - Baptiste Daroussin - &lt;a href="mailto:bapt@freebsd.org" rel="nofollow noopener"&gt;bapt@freebsd.org&lt;/a&gt;&lt;/h2&gt;

&lt;p&gt;Packaging the FreeBSD base system with pkgng&lt;/p&gt;

&lt;hr&gt;

&lt;h2&gt;Discussion&lt;/h2&gt;

&lt;h3&gt;Packaging the FreeBSD base system with pkgng (follow-up)&lt;/h3&gt;

&lt;hr&gt;

&lt;h2&gt;Feedback/Questions&lt;/h2&gt;

&lt;ul&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s20AWp6Av1" rel="nofollow noopener"&gt;Jeff writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s20QiFcdh8" rel="nofollow noopener"&gt;Anonymous writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s2YzZlswaB" rel="nofollow noopener"&gt;Alex writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s21Mx9TopQ" rel="nofollow noopener"&gt;Joris writes in&lt;/a&gt;
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;Mailing List Gold&lt;/h2&gt;

&lt;ul&gt;
&lt;li&gt;&lt;a href="https://www.marc.info/?l=openbsd-ports&amp;amp;m=142679136422432&amp;amp;w=2" rel="nofollow noopener"&gt;ok feedback@&lt;/a&gt;
*** &lt;/li&gt;
&lt;/ul&gt;
</description>
  <itunes:keywords>freebsd, openbsd, netbsd, dragonflybsd, pcbsd, tutorial, howto, guide, bsd, interview, pkg, poudriere, pkgng, freebsd-update, packaging base, presentation, asiabsdcon, xen, dom0, domu</itunes:keywords>
  <content:encoded>
    <![CDATA[<p>On this week's mini-episode, we'll be talking with Baptiste Daroussin about packaging the FreeBSD base system with pkgng. Is this the best way going forward, or are we getting dangerously close to being Linux-like? We'll find out, and also get to a couple of your emails while we're at it, on BSD Now - the place to B.. SD.</p>

<h2>This episode was brought to you by</h2>

<p><a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"><img src="/images/1.png" alt="iXsystems - Enterprise Servers and Storage for Open Source"></a><a href="http://www.digitalocean.com/" title="DigitalOcean" rel="nofollow noopener"><img src="/images/2.png" alt="DigitalOcean - Simple Cloud Hosting, Built for Developers"></a><a href="http://www.tarsnap.com/bsdnow" title="Tarsnap" rel="nofollow noopener"><img src="/images/3.png" alt="Tarsnap - Online Backups for the Truly Paranoid"></a></p>

<hr>

<h2>Headlines</h2>

<h3><a href="https://svnweb.freebsd.org/ports?view=revision&amp;revision=382965" rel="nofollow noopener">Xen dom0 in FreeBSD 11-CURRENT</a></h3>

<ul>
<li>FreeBSD has just gotten <a href="http://wiki.xen.org/wiki/Dom0" rel="nofollow noopener">dom0</a> support for the Xen hypervisor, something <a href="http://wiki.netbsd.org/ports/xen/howto/#netbsd-dom0" rel="nofollow noopener">NetBSD has had</a> for a while now</li>
<li>The ports tree will now have a Xen kernel and toolstack, meaning that they can be updated much more rapidly than if they were part of base</li>
<li>It's currently limited to Intel boxes with EPT and a working IOMMU, running a recent version of the -CURRENT branch, but we'll likely see it when 11.0 comes out</li>
<li>How will this affect interest in Bhyve?
***</li>
</ul>

<h3><a href="http://blog.anthrobsd.net/044.html" rel="nofollow noopener">A tale of two educational moments</a></h3>

<ul>
<li>Here we have a blog post from an OpenBSD developer about some experiences he had helping people get involved with the project</li>
<li>It's split into two stories: one that could've gone better, and one that went really well</li>
<li>For the first one, he found that someone was trying to modify a package from their ports tree to have fewer dependencies</li>
<li>Experience really showed its worth, and he was able to write a quick patch to do exactly what the other person had been working on for a few hours - but wasn't so encouraging about getting it committed</li>
<li>In the second story, he discussed updating a different port with a user of a forum, and ended up improving the new user's workflow considerably with just a few tips</li>
<li>The lesson to take away from this is that we can all help out to encourage and assist new users - everyone was a newbie once
***</li>
</ul>

<h3><a href="http://saveosx.org/NetBSD7/" rel="nofollow noopener">What's coming in NetBSD 7</a></h3>

<ul>
<li>We first mentioned NetBSD 7.0 on the show in July of 2014, but it still hasn't been released and there hasn't been much public info about it</li>
<li>This blog post outlines some of the bigger features that we can expect to see when it actually does come out</li>
<li>Their total platform count is now over 70, so you'd be hard-pressed to find something that it doesn't run on</li>
<li>There have been a lot of improvements in the graphics area, particularly with DRM/KMS, including Intel Haswell and Nouveau (for nVidia cards)</li>
<li>Many ARM boards now have full SMP support</li>
<li>Clang has also finally made its way into the base system, something we're glad to see, and it should be able to build the base OS on i386, AMD64 and ARM - other architectures are still a WIP</li>
<li>In the crypto department: their PNRG has switched from the broken RC4 to the more modern ChaCha20, OpenSSL has been updated in base and LibreSSL is in pkgsrc</li>
<li>NetBSD's in-house firewall, npf, has gotten major improvements since its initial debut in NetBSD 6.0</li>
<li>Looking to the future, NetBSD hopes to integrate a stable ZFS implementation later on
***</li>
</ul>

<h3><a href="https://www.youtube.com/watch?v=mS4bfbEq46I" rel="nofollow noopener">OpenZFS office hours</a></h3>

<ul>
<li>We mentioned a couple weeks back that the OpenZFS office hours series was starting back up</li>
<li>They've just uploaded the recording of their most recent freeform discussion, with <a href="http://www.bsdnow.tv/episodes/2015_03_11-the_pcbsd_tour_ii" rel="nofollow noopener">Justin Gibbs</a> being the main presenter</li>
<li>In it, they cover how Justin got into ZFS, running in virtualized environments, getting patches into the different projects, getting more people involved, reviewing code, spinning disks vs SSDs, defragging, speeding up resilvering, zfsd and much more
***</li>
</ul>

<h2>Interview - Baptiste Daroussin - <a href="mailto:bapt@freebsd.org" rel="nofollow noopener">bapt@freebsd.org</a></h2>

<p>Packaging the FreeBSD base system with pkgng</p>

<hr>

<h2>Discussion</h2>

<h3>Packaging the FreeBSD base system with pkgng (follow-up)</h3>

<hr>

<h2>Feedback/Questions</h2>

<ul>
<li><a href="http://slexy.org/view/s20AWp6Av1" rel="nofollow noopener">Jeff writes in</a></li>
<li><a href="http://slexy.org/view/s20QiFcdh8" rel="nofollow noopener">Anonymous writes in</a></li>
<li><a href="http://slexy.org/view/s2YzZlswaB" rel="nofollow noopener">Alex writes in</a></li>
<li><a href="http://slexy.org/view/s21Mx9TopQ" rel="nofollow noopener">Joris writes in</a>
***</li>
</ul>

<h2>Mailing List Gold</h2>

<ul>
<li><a href="https://www.marc.info/?l=openbsd-ports&amp;m=142679136422432&amp;w=2" rel="nofollow noopener">ok feedback@</a>
***</li>
</ul>]]>
  </content:encoded>
  <itunes:summary>
    <![CDATA[<p>On this week's mini-episode, we'll be talking with Baptiste Daroussin about packaging the FreeBSD base system with pkgng. Is this the best way going forward, or are we getting dangerously close to being Linux-like? We'll find out, and also get to a couple of your emails while we're at it, on BSD Now - the place to B.. SD.</p>

<h2>This episode was brought to you by</h2>

<p><a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"><img src="/images/1.png" alt="iXsystems - Enterprise Servers and Storage for Open Source"></a><a href="http://www.digitalocean.com/" title="DigitalOcean" rel="nofollow noopener"><img src="/images/2.png" alt="DigitalOcean - Simple Cloud Hosting, Built for Developers"></a><a href="http://www.tarsnap.com/bsdnow" title="Tarsnap" rel="nofollow noopener"><img src="/images/3.png" alt="Tarsnap - Online Backups for the Truly Paranoid"></a></p>

<hr>

<h2>Headlines</h2>

<h3><a href="https://svnweb.freebsd.org/ports?view=revision&amp;revision=382965" rel="nofollow noopener">Xen dom0 in FreeBSD 11-CURRENT</a></h3>

<ul>
<li>FreeBSD has just gotten <a href="http://wiki.xen.org/wiki/Dom0" rel="nofollow noopener">dom0</a> support for the Xen hypervisor, something <a href="http://wiki.netbsd.org/ports/xen/howto/#netbsd-dom0" rel="nofollow noopener">NetBSD has had</a> for a while now</li>
<li>The ports tree will now have a Xen kernel and toolstack, meaning that they can be updated much more rapidly than if they were part of base</li>
<li>It's currently limited to Intel boxes with EPT and a working IOMMU, running a recent version of the -CURRENT branch, but we'll likely see it when 11.0 comes out</li>
<li>How will this affect interest in Bhyve?
***</li>
</ul>

<h3><a href="http://blog.anthrobsd.net/044.html" rel="nofollow noopener">A tale of two educational moments</a></h3>

<ul>
<li>Here we have a blog post from an OpenBSD developer about some experiences he had helping people get involved with the project</li>
<li>It's split into two stories: one that could've gone better, and one that went really well</li>
<li>For the first one, he found that someone was trying to modify a package from their ports tree to have fewer dependencies</li>
<li>Experience really showed its worth, and he was able to write a quick patch to do exactly what the other person had been working on for a few hours - but wasn't so encouraging about getting it committed</li>
<li>In the second story, he discussed updating a different port with a user of a forum, and ended up improving the new user's workflow considerably with just a few tips</li>
<li>The lesson to take away from this is that we can all help out to encourage and assist new users - everyone was a newbie once
***</li>
</ul>

<h3><a href="http://saveosx.org/NetBSD7/" rel="nofollow noopener">What's coming in NetBSD 7</a></h3>

<ul>
<li>We first mentioned NetBSD 7.0 on the show in July of 2014, but it still hasn't been released and there hasn't been much public info about it</li>
<li>This blog post outlines some of the bigger features that we can expect to see when it actually does come out</li>
<li>Their total platform count is now over 70, so you'd be hard-pressed to find something that it doesn't run on</li>
<li>There have been a lot of improvements in the graphics area, particularly with DRM/KMS, including Intel Haswell and Nouveau (for nVidia cards)</li>
<li>Many ARM boards now have full SMP support</li>
<li>Clang has also finally made its way into the base system, something we're glad to see, and it should be able to build the base OS on i386, AMD64 and ARM - other architectures are still a WIP</li>
<li>In the crypto department: their PNRG has switched from the broken RC4 to the more modern ChaCha20, OpenSSL has been updated in base and LibreSSL is in pkgsrc</li>
<li>NetBSD's in-house firewall, npf, has gotten major improvements since its initial debut in NetBSD 6.0</li>
<li>Looking to the future, NetBSD hopes to integrate a stable ZFS implementation later on
***</li>
</ul>

<h3><a href="https://www.youtube.com/watch?v=mS4bfbEq46I" rel="nofollow noopener">OpenZFS office hours</a></h3>

<ul>
<li>We mentioned a couple weeks back that the OpenZFS office hours series was starting back up</li>
<li>They've just uploaded the recording of their most recent freeform discussion, with <a href="http://www.bsdnow.tv/episodes/2015_03_11-the_pcbsd_tour_ii" rel="nofollow noopener">Justin Gibbs</a> being the main presenter</li>
<li>In it, they cover how Justin got into ZFS, running in virtualized environments, getting patches into the different projects, getting more people involved, reviewing code, spinning disks vs SSDs, defragging, speeding up resilvering, zfsd and much more
***</li>
</ul>

<h2>Interview - Baptiste Daroussin - <a href="mailto:bapt@freebsd.org" rel="nofollow noopener">bapt@freebsd.org</a></h2>

<p>Packaging the FreeBSD base system with pkgng</p>

<hr>

<h2>Discussion</h2>

<h3>Packaging the FreeBSD base system with pkgng (follow-up)</h3>

<hr>

<h2>Feedback/Questions</h2>

<ul>
<li><a href="http://slexy.org/view/s20AWp6Av1" rel="nofollow noopener">Jeff writes in</a></li>
<li><a href="http://slexy.org/view/s20QiFcdh8" rel="nofollow noopener">Anonymous writes in</a></li>
<li><a href="http://slexy.org/view/s2YzZlswaB" rel="nofollow noopener">Alex writes in</a></li>
<li><a href="http://slexy.org/view/s21Mx9TopQ" rel="nofollow noopener">Joris writes in</a>
***</li>
</ul>

<h2>Mailing List Gold</h2>

<ul>
<li><a href="https://www.marc.info/?l=openbsd-ports&amp;m=142679136422432&amp;w=2" rel="nofollow noopener">ok feedback@</a>
***</li>
</ul>]]>
  </itunes:summary>
</item>
<item>
  <title>70: Daemons in the North</title>
  <link>https://www.bsdnow.tv/70</link>
  <guid isPermaLink="false">55684d1a-97da-439b-a037-b02c8d49de70</guid>
  <pubDate>Wed, 31 Dec 2014 08:00:00 -0500</pubDate>
  <author>JT Pennington</author>
  <enclosure url="https://aphid.fireside.fm/d/1437767933/c91b88f1-e824-4815-bcb8-5227818d6010/55684d1a-97da-439b-a037-b02c8d49de70.mp3" length="60663316" type="audio/mpeg"/>
  <itunes:episodeType>full</itunes:episodeType>
  <itunes:author>JT Pennington</itunes:author>
  <itunes:subtitle>It's our last episode of 2014, and we'll be chatting with Dan Langille about the upcoming BSDCan conference. We'll find out what's planned and what sorts of presentations they're looking for. As usual, answers to viewer-submitted questions and all the week's news, coming up on BSD Now - the place to B.. SD.</itunes:subtitle>
  <itunes:duration>1:24:15</itunes:duration>
  <itunes:explicit>no</itunes:explicit>
  <itunes:image href="https://media24.fireside.fm/file/fireside-images-2024/podcasts/images/c/c91b88f1-e824-4815-bcb8-5227818d6010/cover.jpg?v=4"/>
  <description>&lt;p&gt;It's our last episode of 2014, and we'll be chatting with Dan Langille about the upcoming BSDCan conference. We'll find out what's planned and what sorts of presentations they're looking for. As usual, answers to viewer-submitted questions and all the week's news, coming up on BSD Now - the place to B.. SD.&lt;/p&gt;

&lt;h2&gt;This episode was brought to you by&lt;/h2&gt;

&lt;p&gt;&lt;a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"&gt;&lt;img src="/images/iXlogo2.png" alt="iXsystems - Enterprise servers and storage for open source"&gt;&lt;/a&gt;&lt;a href="http://www.tarsnap.com/bsdnow" title="Tarsnap" rel="nofollow noopener"&gt;&lt;img src="/images/tarsnap1.png" alt="Tarsnap - online backups for the truly paranoid"&gt;&lt;/a&gt;&lt;/p&gt;

&lt;hr&gt;

&lt;h2&gt;Headlines&lt;/h2&gt;

&lt;h3&gt;&lt;a href="http://2014.asiabsdcon.org/timetable.html.en" rel="nofollow noopener"&gt;More conference presentation videos&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Some more of the presentation videos from AsiaBSDCon are appearing online&lt;/li&gt;
&lt;li&gt;Masanobu Saitoh, &lt;a href="https://www.youtube.com/watch?v=ApruZrU5fVs" rel="nofollow noopener"&gt;Developing CPE Routers Based on NetBSD&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://www.bsdnow.tv/episodes/2014_09_03-its_hammer_time" rel="nofollow noopener"&gt;Reyk Floeter&lt;/a&gt;, &lt;a href="https://www.youtube.com/watch?v=ufeEP_hzFN0" rel="nofollow noopener"&gt;VXLAN and Cloud-based Networking with OpenBSD&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Jos Jansen, &lt;a href="https://www.youtube.com/watch?v=gOPfRQgTjNo" rel="nofollow noopener"&gt;Adapting OS X to the enterprise&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://www.bsdnow.tv/episodes/2014_04_01-edgy_bsd_users" rel="nofollow noopener"&gt;Pierre Pronchery&lt;/a&gt; &amp;amp; Guillaume Lasmayous, &lt;a href="https://www.youtube.com/watch?v=vh-TjLUj6os" rel="nofollow noopener"&gt;Carve your NetBSD&lt;/a&gt; &amp;lt;!-- skip to 5:06 for henning trolling --&amp;gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://www.bsdnow.tv/episodes/2014_01_22-tendresse_for_ten" rel="nofollow noopener"&gt;Colin Percival&lt;/a&gt;, &lt;a href="https://www.youtube.com/watch?v=jzY3m5Kv7Y8" rel="nofollow noopener"&gt;Everything you need to know about cryptography in 1 hour&lt;/a&gt; (not from AsiaBSDCon)&lt;/li&gt;
&lt;li&gt;The "bsdconferences" YouTube channel has quite a lot of interesting &lt;a href="https://www.youtube.com/user/bsdconferences/videos?sort=da&amp;amp;view=0&amp;amp;flow=grid" rel="nofollow noopener"&gt;older BSD talks&lt;/a&gt; too - you may want to go back and watch them if you haven't already
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="https://www.marc.info/?l=openbsd-cvs&amp;amp;m=141922027318727&amp;amp;w=2" rel="nofollow noopener"&gt;OpenBSD PIE enhancements&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;&lt;a href="https://en.wikipedia.org/wiki/Address_space_layout_randomization" rel="nofollow noopener"&gt;ASLR&lt;/a&gt; and &lt;a href="https://en.wikipedia.org/wiki/Position-independent_executable" rel="nofollow noopener"&gt;PIE&lt;/a&gt; are great security features that OpenBSD has had enabled by default for a long time, in both the base system and ports, but they have one inherent problem&lt;/li&gt;
&lt;li&gt;They only work with &lt;em&gt;dynamic&lt;/em&gt; libraries and binaries, so if you have any static binaries, they don't get the same treatment&lt;/li&gt;
&lt;li&gt;For example, the default shells (and many other things in /bin and /sbin) are statically linked&lt;/li&gt;
&lt;li&gt;In the case of the static ones, you can always predict the memory layout, which is very bad and sort of &lt;a href="https://en.wikipedia.org/wiki/Return-oriented_programming" rel="nofollow noopener"&gt;defeats the whole purpose&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;With this and a few &lt;a href="https://www.marc.info/?l=openbsd-cvs&amp;amp;m=141927571832106&amp;amp;w=2" rel="nofollow noopener"&gt;related commits&lt;/a&gt;, OpenBSD fixes this by introducing &lt;strong&gt;static self-relocation&lt;/strong&gt;&lt;/li&gt;
&lt;li&gt;More and more CPU architectures are being tested and getting support too; this isn't just for amd64 and i386 - VAX users can rest easy&lt;/li&gt;
&lt;li&gt;It'll be available in 5.7 in May, or you can use a &lt;a href="http://www.openbsd.org/faq/faq5.html#BldBinary" rel="nofollow noopener"&gt;-current snapshot&lt;/a&gt; if you want to get a &lt;em&gt;slice&lt;/em&gt; of the action now
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="https://www.freebsdfoundation.org/press/2014dec-newsletter.html" rel="nofollow noopener"&gt;FreeBSD foundation semi-annual newsletter&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;The FreeBSD foundation publishes a huge newsletter twice a year, detailing their funded projects and some community activities&lt;/li&gt;
&lt;li&gt;As always, it starts with a letter from the president of the foundation - this time it's about encouraging students and new developers to get involved&lt;/li&gt;
&lt;li&gt;The article also has a fundraising update with a list of sponsored projects, and they note that the donations meter has changed from dollars to number of donors (since they exceeded the goal already)&lt;/li&gt;
&lt;li&gt;You can read summaries of all the BSD conferences of 2014 and see a list of upcoming ones next year too&lt;/li&gt;
&lt;li&gt;There are also sections about the &lt;a href="http://www.bsdnow.tv/episodes/2014_01_29-journaled_news_updates" rel="nofollow noopener"&gt;FreeBSD Journal&lt;/a&gt;'s progress, a new staff member and a testimonial from NetApp&lt;/li&gt;
&lt;li&gt;It's a very long report, so dedicate some time to read all the way through it&lt;/li&gt;
&lt;li&gt;This year was pretty great for BSD: both the FreeBSD and OpenBSD foundations exceeded their goals and the NetBSD foundation came really close too&lt;/li&gt;
&lt;li&gt;As we go into 2015, consider donating to &lt;a href="https://www.freebsdfoundation.org/donate" rel="nofollow noopener"&gt;whichever&lt;/a&gt; &lt;a href="http://www.openbsdfoundation.org/donations.html" rel="nofollow noopener"&gt;BSD&lt;/a&gt; &lt;a href="https://www.netbsd.org/donations/" rel="nofollow noopener"&gt;you&lt;/a&gt; &lt;a href="http://www.dragonflybsd.org/donations/" rel="nofollow noopener"&gt;use&lt;/a&gt;, it really can make a difference
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="https://www.marc.info/?l=openbsd-cvs&amp;amp;m=141920089614758&amp;amp;w=4" rel="nofollow noopener"&gt;Modernizing OpenSSH fingerprints&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;When you connect to a server for the first time, you'll get what's called a fingerprint of the host's public key - this is used to verify that you're actually talking to the same server you intended to&lt;/li&gt;
&lt;li&gt;Up until now, the key fingerprints have been an MD5 hash, displayed as hex&lt;/li&gt;
&lt;li&gt;This &lt;a href="https://lists.mindrot.org/pipermail/openssh-unix-dev/2014-November/033117.html" rel="nofollow noopener"&gt;can be problematic&lt;/a&gt;, especially for larger key types like RSA that give lots of wiggle room for collisions, as an attacker could generate a fake host key that gives the same MD5 string as the one you wanted to connect to&lt;/li&gt;
&lt;li&gt;This new change replaces the default MD5 and hex with a base64-encoded SHA256 fingerprint&lt;/li&gt;
&lt;li&gt;You can add a "FingerprintHash" line in your ssh_config to force using only the new type&lt;/li&gt;
&lt;li&gt;There's also a &lt;a href="https://www.marc.info/?l=openbsd-cvs&amp;amp;m=141923470520906&amp;amp;w=2" rel="nofollow noopener"&gt;new option&lt;/a&gt; to require users to authenticate with &lt;strong&gt;more than one&lt;/strong&gt; public key, so you can really lock down login access to your servers - also useful if you're not 100% confident in any single key type&lt;/li&gt;
&lt;li&gt;The new options should be in the upcoming 6.8 release
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;Interview - Dan Langille - &lt;a href="mailto:info@bsdcan.org" rel="nofollow noopener"&gt;info@bsdcan.org&lt;/a&gt; / &lt;a href="https://twitter.com/bsdcan" rel="nofollow noopener"&gt;@bsdcan&lt;/a&gt;&lt;/h2&gt;

&lt;p&gt;Plans for the BSDCan 2015 conference&lt;/p&gt;

&lt;hr&gt;

&lt;h2&gt;News Roundup&lt;/h2&gt;

&lt;h3&gt;&lt;a href="https://github.com/bsdphk/Ntimed" rel="nofollow noopener"&gt;Introducing ntimed, a new NTP daemon&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;As we've mentioned before in &lt;a href="http://www.bsdnow.tv/tutorials/ntpd" rel="nofollow noopener"&gt;our tutorials&lt;/a&gt;, there are two main daemons for the Network Time Protocol - ISC's NTPd and OpenBSD's OpenNTPD&lt;/li&gt;
&lt;li&gt;With all the recent security problems with ISC's NTPd, &lt;a href="http://www.bsdnow.tv/episodes/2013_10_16-go_directly_to_jail" rel="nofollow noopener"&gt;Poul-Henning Kamp&lt;/a&gt; has been working on a third NTP daemon&lt;/li&gt;
&lt;li&gt;It's called "ntimed" and you can try out a preview version of it right now - it's &lt;a href="https://www.freshports.org/net/ntimed/" rel="nofollow noopener"&gt;in FreeBSD ports&lt;/a&gt; or on Github&lt;/li&gt;
&lt;li&gt;PHK also has a few &lt;a href="http://phk.freebsd.dk/time/" rel="nofollow noopener"&gt;blog entries&lt;/a&gt; about the project, including status updates
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://mdocml.bsd.lv/openbsd_projects.html" rel="nofollow noopener"&gt;OpenBSD-maintained projects list&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;There was recently a read on the &lt;a href="https://www.marc.info/?t=141961588200003&amp;amp;r=1&amp;amp;w=2" rel="nofollow noopener"&gt;misc mailing list&lt;/a&gt; asking about different projects started by OpenBSD developers&lt;/li&gt;
&lt;li&gt;The initial list had marks for which software had portable versions to other operating systems (OpenSSH being the most popular example)&lt;/li&gt;
&lt;li&gt;A developer compiled a new list from all of the replies to that thread into a nice organized webpage&lt;/li&gt;
&lt;li&gt;Most people are only familiar with things like OpenSSH, OpenSMTPD, OpenNTPD and more recently LibreSSL, but there are quite a lot more&lt;/li&gt;
&lt;li&gt;This page also serves as a good history lesson for BSD in general: FreeBSD and others have ported some things over, while a couple OpenBSD tools were born from forks of FreeBSD tools (mergemaster, pkg tools, portscout)
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="https://forums.freebsd.org/threads/howto-monitor-network-traffic-with-netflow-nfdump-nfsen-on-freebsd.49724/" rel="nofollow noopener"&gt;Monitoring network traffic with FreeBSD&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;If you've ever been curious about monitoring network traffic on your FreeBSD boxes, this forum post may be exactly the thing for you&lt;/li&gt;
&lt;li&gt;It'll show you how to combine the Netflow, NfDump and NfSen suite of tools to get some pretty detailed network stats (and of course put them into a fancy webpage)&lt;/li&gt;
&lt;li&gt;This is especially useful for finding out what was going on at a certain point in time, for example if you had a traffic spike
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://www.protoc.org/blog/2014/12/22/trapping-spammers-with-the-openbsd-spam-deferral-daemon" rel="nofollow noopener"&gt;Trapping spammers with spamd&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;This is a blog post about OpenBSD's &lt;a href="https://en.wikipedia.org/wiki/Spamd" rel="nofollow noopener"&gt;spamd&lt;/a&gt; - a spam email deferral daemon - and how to use it for your mail&lt;/li&gt;
&lt;li&gt;It gives some background on the greylisting approach to spam, rather than just a typical host blacklist&lt;/li&gt;
&lt;li&gt;"Greylisting is a method of defending e-mail users against spam. A mail transfer agent (MTA) using greylisting will "temporarily reject" any email from a sender it does not recognize. If the sender re-attempts mail delivery at a later time, the sender may be allowed to continue the mail delivery conversation."&lt;/li&gt;
&lt;li&gt;The post also shows how to combine it with PF and other tools for a pretty fancy mail setup&lt;/li&gt;
&lt;li&gt;You can find spamd in the OpenBSD &lt;a href="http://www.openbsd.org/cgi-bin/man.cgi/OpenBSD-current/man8/spamd.8" rel="nofollow noopener"&gt;base system&lt;/a&gt;, or use it &lt;a href="https://www.freshports.org/mail/spamd" rel="nofollow noopener"&gt;with FreeBSD&lt;/a&gt; &lt;a href="http://pkgsrc.se/mail/spamd" rel="nofollow noopener"&gt;or NetBSD&lt;/a&gt; via ports and pkgsrc&lt;/li&gt;
&lt;li&gt;You might also want to go back and listen to &lt;a href="https://archive.org/details/bsdtalk068" rel="nofollow noopener"&gt;BSDTalk episode 68&lt;/a&gt;, where Will talks to Bob Beck about spamd
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;Feedback/Questions&lt;/h2&gt;

&lt;ul&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s20rUK9XVJ" rel="nofollow noopener"&gt;Sean writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s20nfzIuT2" rel="nofollow noopener"&gt;Brandon writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s20wCBhFLO" rel="nofollow noopener"&gt;Anders writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s20xGrBIyl" rel="nofollow noopener"&gt;David writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s2QHRaiZJW" rel="nofollow noopener"&gt;Kyle writes in&lt;/a&gt;
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;Mailing List Gold&lt;/h2&gt;

&lt;ul&gt;
&lt;li&gt;&lt;a href="https://www.marc.info/?l=openbsd-tech&amp;amp;m=141903858708123&amp;amp;w=2" rel="nofollow noopener"&gt;NTP code comparison&lt;/a&gt; - &lt;a href="https://www.marc.info/?l=openbsd-tech&amp;amp;m=141905854411370&amp;amp;w=2" rel="nofollow noopener"&gt;192870 vs. 2898&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://lists.freebsd.org/pipermail/freebsd-hackers/2014-December/046741.html" rel="nofollow noopener"&gt;NICs have feelings too&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://www.marc.info/?l=openbsd-ports&amp;amp;m=141998130824977&amp;amp;w=2" rel="nofollow noopener"&gt;Just think about it&lt;/a&gt;
*** &lt;/li&gt;
&lt;/ul&gt;
</description>
  <itunes:keywords>freebsd, openbsd, netbsd, dragonflybsd, pcbsd, tutorial, howto, guide, bsd, interview, bsdcan, call for papers, conference, talk, presentation, vxlan, static, pie, openssh, ntimed, ntp, openntpd</itunes:keywords>
  <content:encoded>
    <![CDATA[<p>It's our last episode of 2014, and we'll be chatting with Dan Langille about the upcoming BSDCan conference. We'll find out what's planned and what sorts of presentations they're looking for. As usual, answers to viewer-submitted questions and all the week's news, coming up on BSD Now - the place to B.. SD.</p>

<h2>This episode was brought to you by</h2>

<p><a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"><img src="/images/iXlogo2.png" alt="iXsystems - Enterprise servers and storage for open source"></a><a href="http://www.tarsnap.com/bsdnow" title="Tarsnap" rel="nofollow noopener"><img src="/images/tarsnap1.png" alt="Tarsnap - online backups for the truly paranoid"></a></p>

<hr>

<h2>Headlines</h2>

<h3><a href="http://2014.asiabsdcon.org/timetable.html.en" rel="nofollow noopener">More conference presentation videos</a></h3>

<ul>
<li>Some more of the presentation videos from AsiaBSDCon are appearing online</li>
<li>Masanobu Saitoh, <a href="https://www.youtube.com/watch?v=ApruZrU5fVs" rel="nofollow noopener">Developing CPE Routers Based on NetBSD</a></li>
<li><a href="http://www.bsdnow.tv/episodes/2014_09_03-its_hammer_time" rel="nofollow noopener">Reyk Floeter</a>, <a href="https://www.youtube.com/watch?v=ufeEP_hzFN0" rel="nofollow noopener">VXLAN and Cloud-based Networking with OpenBSD</a></li>
<li>Jos Jansen, <a href="https://www.youtube.com/watch?v=gOPfRQgTjNo" rel="nofollow noopener">Adapting OS X to the enterprise</a></li>
<li><a href="http://www.bsdnow.tv/episodes/2014_04_01-edgy_bsd_users" rel="nofollow noopener">Pierre Pronchery</a> &amp; Guillaume Lasmayous, <a href="https://www.youtube.com/watch?v=vh-TjLUj6os" rel="nofollow noopener">Carve your NetBSD</a> &lt;!-- skip to 5:06 for henning trolling --&gt;</li>
<li><a href="http://www.bsdnow.tv/episodes/2014_01_22-tendresse_for_ten" rel="nofollow noopener">Colin Percival</a>, <a href="https://www.youtube.com/watch?v=jzY3m5Kv7Y8" rel="nofollow noopener">Everything you need to know about cryptography in 1 hour</a> (not from AsiaBSDCon)</li>
<li>The "bsdconferences" YouTube channel has quite a lot of interesting <a href="https://www.youtube.com/user/bsdconferences/videos?sort=da&amp;view=0&amp;flow=grid" rel="nofollow noopener">older BSD talks</a> too - you may want to go back and watch them if you haven't already
***</li>
</ul>

<h3><a href="https://www.marc.info/?l=openbsd-cvs&amp;m=141922027318727&amp;w=2" rel="nofollow noopener">OpenBSD PIE enhancements</a></h3>

<ul>
<li><a href="https://en.wikipedia.org/wiki/Address_space_layout_randomization" rel="nofollow noopener">ASLR</a> and <a href="https://en.wikipedia.org/wiki/Position-independent_executable" rel="nofollow noopener">PIE</a> are great security features that OpenBSD has had enabled by default for a long time, in both the base system and ports, but they have one inherent problem</li>
<li>They only work with <em>dynamic</em> libraries and binaries, so if you have any static binaries, they don't get the same treatment</li>
<li>For example, the default shells (and many other things in /bin and /sbin) are statically linked</li>
<li>In the case of the static ones, you can always predict the memory layout, which is very bad and sort of <a href="https://en.wikipedia.org/wiki/Return-oriented_programming" rel="nofollow noopener">defeats the whole purpose</a></li>
<li>With this and a few <a href="https://www.marc.info/?l=openbsd-cvs&amp;m=141927571832106&amp;w=2" rel="nofollow noopener">related commits</a>, OpenBSD fixes this by introducing <strong>static self-relocation</strong></li>
<li>More and more CPU architectures are being tested and getting support too; this isn't just for amd64 and i386 - VAX users can rest easy</li>
<li>It'll be available in 5.7 in May, or you can use a <a href="http://www.openbsd.org/faq/faq5.html#BldBinary" rel="nofollow noopener">-current snapshot</a> if you want to get a <em>slice</em> of the action now
***</li>
</ul>

<h3><a href="https://www.freebsdfoundation.org/press/2014dec-newsletter.html" rel="nofollow noopener">FreeBSD foundation semi-annual newsletter</a></h3>

<ul>
<li>The FreeBSD foundation publishes a huge newsletter twice a year, detailing their funded projects and some community activities</li>
<li>As always, it starts with a letter from the president of the foundation - this time it's about encouraging students and new developers to get involved</li>
<li>The article also has a fundraising update with a list of sponsored projects, and they note that the donations meter has changed from dollars to number of donors (since they exceeded the goal already)</li>
<li>You can read summaries of all the BSD conferences of 2014 and see a list of upcoming ones next year too</li>
<li>There are also sections about the <a href="http://www.bsdnow.tv/episodes/2014_01_29-journaled_news_updates" rel="nofollow noopener">FreeBSD Journal</a>'s progress, a new staff member and a testimonial from NetApp</li>
<li>It's a very long report, so dedicate some time to read all the way through it</li>
<li>This year was pretty great for BSD: both the FreeBSD and OpenBSD foundations exceeded their goals and the NetBSD foundation came really close too</li>
<li>As we go into 2015, consider donating to <a href="https://www.freebsdfoundation.org/donate" rel="nofollow noopener">whichever</a> <a href="http://www.openbsdfoundation.org/donations.html" rel="nofollow noopener">BSD</a> <a href="https://www.netbsd.org/donations/" rel="nofollow noopener">you</a> <a href="http://www.dragonflybsd.org/donations/" rel="nofollow noopener">use</a>, it really can make a difference
***</li>
</ul>

<h3><a href="https://www.marc.info/?l=openbsd-cvs&amp;m=141920089614758&amp;w=4" rel="nofollow noopener">Modernizing OpenSSH fingerprints</a></h3>

<ul>
<li>When you connect to a server for the first time, you'll get what's called a fingerprint of the host's public key - this is used to verify that you're actually talking to the same server you intended to</li>
<li>Up until now, the key fingerprints have been an MD5 hash, displayed as hex</li>
<li>This <a href="https://lists.mindrot.org/pipermail/openssh-unix-dev/2014-November/033117.html" rel="nofollow noopener">can be problematic</a>, especially for larger key types like RSA that give lots of wiggle room for collisions, as an attacker could generate a fake host key that gives the same MD5 string as the one you wanted to connect to</li>
<li>This new change replaces the default MD5 and hex with a base64-encoded SHA256 fingerprint</li>
<li>You can add a "FingerprintHash" line in your ssh_config to force using only the new type</li>
<li>There's also a <a href="https://www.marc.info/?l=openbsd-cvs&amp;m=141923470520906&amp;w=2" rel="nofollow noopener">new option</a> to require users to authenticate with <strong>more than one</strong> public key, so you can really lock down login access to your servers - also useful if you're not 100% confident in any single key type</li>
<li>The new options should be in the upcoming 6.8 release
***</li>
</ul>

<h2>Interview - Dan Langille - <a href="mailto:info@bsdcan.org" rel="nofollow noopener">info@bsdcan.org</a> / <a href="https://twitter.com/bsdcan" rel="nofollow noopener">@bsdcan</a></h2>

<p>Plans for the BSDCan 2015 conference</p>

<hr>

<h2>News Roundup</h2>

<h3><a href="https://github.com/bsdphk/Ntimed" rel="nofollow noopener">Introducing ntimed, a new NTP daemon</a></h3>

<ul>
<li>As we've mentioned before in <a href="http://www.bsdnow.tv/tutorials/ntpd" rel="nofollow noopener">our tutorials</a>, there are two main daemons for the Network Time Protocol - ISC's NTPd and OpenBSD's OpenNTPD</li>
<li>With all the recent security problems with ISC's NTPd, <a href="http://www.bsdnow.tv/episodes/2013_10_16-go_directly_to_jail" rel="nofollow noopener">Poul-Henning Kamp</a> has been working on a third NTP daemon</li>
<li>It's called "ntimed" and you can try out a preview version of it right now - it's <a href="https://www.freshports.org/net/ntimed/" rel="nofollow noopener">in FreeBSD ports</a> or on Github</li>
<li>PHK also has a few <a href="http://phk.freebsd.dk/time/" rel="nofollow noopener">blog entries</a> about the project, including status updates
***</li>
</ul>

<h3><a href="http://mdocml.bsd.lv/openbsd_projects.html" rel="nofollow noopener">OpenBSD-maintained projects list</a></h3>

<ul>
<li>There was recently a read on the <a href="https://www.marc.info/?t=141961588200003&amp;r=1&amp;w=2" rel="nofollow noopener">misc mailing list</a> asking about different projects started by OpenBSD developers</li>
<li>The initial list had marks for which software had portable versions to other operating systems (OpenSSH being the most popular example)</li>
<li>A developer compiled a new list from all of the replies to that thread into a nice organized webpage</li>
<li>Most people are only familiar with things like OpenSSH, OpenSMTPD, OpenNTPD and more recently LibreSSL, but there are quite a lot more</li>
<li>This page also serves as a good history lesson for BSD in general: FreeBSD and others have ported some things over, while a couple OpenBSD tools were born from forks of FreeBSD tools (mergemaster, pkg tools, portscout)
***</li>
</ul>

<h3><a href="https://forums.freebsd.org/threads/howto-monitor-network-traffic-with-netflow-nfdump-nfsen-on-freebsd.49724/" rel="nofollow noopener">Monitoring network traffic with FreeBSD</a></h3>

<ul>
<li>If you've ever been curious about monitoring network traffic on your FreeBSD boxes, this forum post may be exactly the thing for you</li>
<li>It'll show you how to combine the Netflow, NfDump and NfSen suite of tools to get some pretty detailed network stats (and of course put them into a fancy webpage)</li>
<li>This is especially useful for finding out what was going on at a certain point in time, for example if you had a traffic spike
***</li>
</ul>

<h3><a href="http://www.protoc.org/blog/2014/12/22/trapping-spammers-with-the-openbsd-spam-deferral-daemon" rel="nofollow noopener">Trapping spammers with spamd</a></h3>

<ul>
<li>This is a blog post about OpenBSD's <a href="https://en.wikipedia.org/wiki/Spamd" rel="nofollow noopener">spamd</a> - a spam email deferral daemon - and how to use it for your mail</li>
<li>It gives some background on the greylisting approach to spam, rather than just a typical host blacklist</li>
<li>"Greylisting is a method of defending e-mail users against spam. A mail transfer agent (MTA) using greylisting will "temporarily reject" any email from a sender it does not recognize. If the sender re-attempts mail delivery at a later time, the sender may be allowed to continue the mail delivery conversation."</li>
<li>The post also shows how to combine it with PF and other tools for a pretty fancy mail setup</li>
<li>You can find spamd in the OpenBSD <a href="http://www.openbsd.org/cgi-bin/man.cgi/OpenBSD-current/man8/spamd.8" rel="nofollow noopener">base system</a>, or use it <a href="https://www.freshports.org/mail/spamd" rel="nofollow noopener">with FreeBSD</a> <a href="http://pkgsrc.se/mail/spamd" rel="nofollow noopener">or NetBSD</a> via ports and pkgsrc</li>
<li>You might also want to go back and listen to <a href="https://archive.org/details/bsdtalk068" rel="nofollow noopener">BSDTalk episode 68</a>, where Will talks to Bob Beck about spamd
***</li>
</ul>

<h2>Feedback/Questions</h2>

<ul>
<li><a href="http://slexy.org/view/s20rUK9XVJ" rel="nofollow noopener">Sean writes in</a></li>
<li><a href="http://slexy.org/view/s20nfzIuT2" rel="nofollow noopener">Brandon writes in</a></li>
<li><a href="http://slexy.org/view/s20wCBhFLO" rel="nofollow noopener">Anders writes in</a></li>
<li><a href="http://slexy.org/view/s20xGrBIyl" rel="nofollow noopener">David writes in</a></li>
<li><a href="http://slexy.org/view/s2QHRaiZJW" rel="nofollow noopener">Kyle writes in</a>
***</li>
</ul>

<h2>Mailing List Gold</h2>

<ul>
<li><a href="https://www.marc.info/?l=openbsd-tech&amp;m=141903858708123&amp;w=2" rel="nofollow noopener">NTP code comparison</a> - <a href="https://www.marc.info/?l=openbsd-tech&amp;m=141905854411370&amp;w=2" rel="nofollow noopener">192870 vs. 2898</a></li>
<li><a href="https://lists.freebsd.org/pipermail/freebsd-hackers/2014-December/046741.html" rel="nofollow noopener">NICs have feelings too</a></li>
<li><a href="https://www.marc.info/?l=openbsd-ports&amp;m=141998130824977&amp;w=2" rel="nofollow noopener">Just think about it</a>
***</li>
</ul>]]>
  </content:encoded>
  <itunes:summary>
    <![CDATA[<p>It's our last episode of 2014, and we'll be chatting with Dan Langille about the upcoming BSDCan conference. We'll find out what's planned and what sorts of presentations they're looking for. As usual, answers to viewer-submitted questions and all the week's news, coming up on BSD Now - the place to B.. SD.</p>

<h2>This episode was brought to you by</h2>

<p><a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"><img src="/images/iXlogo2.png" alt="iXsystems - Enterprise servers and storage for open source"></a><a href="http://www.tarsnap.com/bsdnow" title="Tarsnap" rel="nofollow noopener"><img src="/images/tarsnap1.png" alt="Tarsnap - online backups for the truly paranoid"></a></p>

<hr>

<h2>Headlines</h2>

<h3><a href="http://2014.asiabsdcon.org/timetable.html.en" rel="nofollow noopener">More conference presentation videos</a></h3>

<ul>
<li>Some more of the presentation videos from AsiaBSDCon are appearing online</li>
<li>Masanobu Saitoh, <a href="https://www.youtube.com/watch?v=ApruZrU5fVs" rel="nofollow noopener">Developing CPE Routers Based on NetBSD</a></li>
<li><a href="http://www.bsdnow.tv/episodes/2014_09_03-its_hammer_time" rel="nofollow noopener">Reyk Floeter</a>, <a href="https://www.youtube.com/watch?v=ufeEP_hzFN0" rel="nofollow noopener">VXLAN and Cloud-based Networking with OpenBSD</a></li>
<li>Jos Jansen, <a href="https://www.youtube.com/watch?v=gOPfRQgTjNo" rel="nofollow noopener">Adapting OS X to the enterprise</a></li>
<li><a href="http://www.bsdnow.tv/episodes/2014_04_01-edgy_bsd_users" rel="nofollow noopener">Pierre Pronchery</a> &amp; Guillaume Lasmayous, <a href="https://www.youtube.com/watch?v=vh-TjLUj6os" rel="nofollow noopener">Carve your NetBSD</a> &lt;!-- skip to 5:06 for henning trolling --&gt;</li>
<li><a href="http://www.bsdnow.tv/episodes/2014_01_22-tendresse_for_ten" rel="nofollow noopener">Colin Percival</a>, <a href="https://www.youtube.com/watch?v=jzY3m5Kv7Y8" rel="nofollow noopener">Everything you need to know about cryptography in 1 hour</a> (not from AsiaBSDCon)</li>
<li>The "bsdconferences" YouTube channel has quite a lot of interesting <a href="https://www.youtube.com/user/bsdconferences/videos?sort=da&amp;view=0&amp;flow=grid" rel="nofollow noopener">older BSD talks</a> too - you may want to go back and watch them if you haven't already
***</li>
</ul>

<h3><a href="https://www.marc.info/?l=openbsd-cvs&amp;m=141922027318727&amp;w=2" rel="nofollow noopener">OpenBSD PIE enhancements</a></h3>

<ul>
<li><a href="https://en.wikipedia.org/wiki/Address_space_layout_randomization" rel="nofollow noopener">ASLR</a> and <a href="https://en.wikipedia.org/wiki/Position-independent_executable" rel="nofollow noopener">PIE</a> are great security features that OpenBSD has had enabled by default for a long time, in both the base system and ports, but they have one inherent problem</li>
<li>They only work with <em>dynamic</em> libraries and binaries, so if you have any static binaries, they don't get the same treatment</li>
<li>For example, the default shells (and many other things in /bin and /sbin) are statically linked</li>
<li>In the case of the static ones, you can always predict the memory layout, which is very bad and sort of <a href="https://en.wikipedia.org/wiki/Return-oriented_programming" rel="nofollow noopener">defeats the whole purpose</a></li>
<li>With this and a few <a href="https://www.marc.info/?l=openbsd-cvs&amp;m=141927571832106&amp;w=2" rel="nofollow noopener">related commits</a>, OpenBSD fixes this by introducing <strong>static self-relocation</strong></li>
<li>More and more CPU architectures are being tested and getting support too; this isn't just for amd64 and i386 - VAX users can rest easy</li>
<li>It'll be available in 5.7 in May, or you can use a <a href="http://www.openbsd.org/faq/faq5.html#BldBinary" rel="nofollow noopener">-current snapshot</a> if you want to get a <em>slice</em> of the action now
***</li>
</ul>

<h3><a href="https://www.freebsdfoundation.org/press/2014dec-newsletter.html" rel="nofollow noopener">FreeBSD foundation semi-annual newsletter</a></h3>

<ul>
<li>The FreeBSD foundation publishes a huge newsletter twice a year, detailing their funded projects and some community activities</li>
<li>As always, it starts with a letter from the president of the foundation - this time it's about encouraging students and new developers to get involved</li>
<li>The article also has a fundraising update with a list of sponsored projects, and they note that the donations meter has changed from dollars to number of donors (since they exceeded the goal already)</li>
<li>You can read summaries of all the BSD conferences of 2014 and see a list of upcoming ones next year too</li>
<li>There are also sections about the <a href="http://www.bsdnow.tv/episodes/2014_01_29-journaled_news_updates" rel="nofollow noopener">FreeBSD Journal</a>'s progress, a new staff member and a testimonial from NetApp</li>
<li>It's a very long report, so dedicate some time to read all the way through it</li>
<li>This year was pretty great for BSD: both the FreeBSD and OpenBSD foundations exceeded their goals and the NetBSD foundation came really close too</li>
<li>As we go into 2015, consider donating to <a href="https://www.freebsdfoundation.org/donate" rel="nofollow noopener">whichever</a> <a href="http://www.openbsdfoundation.org/donations.html" rel="nofollow noopener">BSD</a> <a href="https://www.netbsd.org/donations/" rel="nofollow noopener">you</a> <a href="http://www.dragonflybsd.org/donations/" rel="nofollow noopener">use</a>, it really can make a difference
***</li>
</ul>

<h3><a href="https://www.marc.info/?l=openbsd-cvs&amp;m=141920089614758&amp;w=4" rel="nofollow noopener">Modernizing OpenSSH fingerprints</a></h3>

<ul>
<li>When you connect to a server for the first time, you'll get what's called a fingerprint of the host's public key - this is used to verify that you're actually talking to the same server you intended to</li>
<li>Up until now, the key fingerprints have been an MD5 hash, displayed as hex</li>
<li>This <a href="https://lists.mindrot.org/pipermail/openssh-unix-dev/2014-November/033117.html" rel="nofollow noopener">can be problematic</a>, especially for larger key types like RSA that give lots of wiggle room for collisions, as an attacker could generate a fake host key that gives the same MD5 string as the one you wanted to connect to</li>
<li>This new change replaces the default MD5 and hex with a base64-encoded SHA256 fingerprint</li>
<li>You can add a "FingerprintHash" line in your ssh_config to force using only the new type</li>
<li>There's also a <a href="https://www.marc.info/?l=openbsd-cvs&amp;m=141923470520906&amp;w=2" rel="nofollow noopener">new option</a> to require users to authenticate with <strong>more than one</strong> public key, so you can really lock down login access to your servers - also useful if you're not 100% confident in any single key type</li>
<li>The new options should be in the upcoming 6.8 release
***</li>
</ul>

<h2>Interview - Dan Langille - <a href="mailto:info@bsdcan.org" rel="nofollow noopener">info@bsdcan.org</a> / <a href="https://twitter.com/bsdcan" rel="nofollow noopener">@bsdcan</a></h2>

<p>Plans for the BSDCan 2015 conference</p>

<hr>

<h2>News Roundup</h2>

<h3><a href="https://github.com/bsdphk/Ntimed" rel="nofollow noopener">Introducing ntimed, a new NTP daemon</a></h3>

<ul>
<li>As we've mentioned before in <a href="http://www.bsdnow.tv/tutorials/ntpd" rel="nofollow noopener">our tutorials</a>, there are two main daemons for the Network Time Protocol - ISC's NTPd and OpenBSD's OpenNTPD</li>
<li>With all the recent security problems with ISC's NTPd, <a href="http://www.bsdnow.tv/episodes/2013_10_16-go_directly_to_jail" rel="nofollow noopener">Poul-Henning Kamp</a> has been working on a third NTP daemon</li>
<li>It's called "ntimed" and you can try out a preview version of it right now - it's <a href="https://www.freshports.org/net/ntimed/" rel="nofollow noopener">in FreeBSD ports</a> or on Github</li>
<li>PHK also has a few <a href="http://phk.freebsd.dk/time/" rel="nofollow noopener">blog entries</a> about the project, including status updates
***</li>
</ul>

<h3><a href="http://mdocml.bsd.lv/openbsd_projects.html" rel="nofollow noopener">OpenBSD-maintained projects list</a></h3>

<ul>
<li>There was recently a read on the <a href="https://www.marc.info/?t=141961588200003&amp;r=1&amp;w=2" rel="nofollow noopener">misc mailing list</a> asking about different projects started by OpenBSD developers</li>
<li>The initial list had marks for which software had portable versions to other operating systems (OpenSSH being the most popular example)</li>
<li>A developer compiled a new list from all of the replies to that thread into a nice organized webpage</li>
<li>Most people are only familiar with things like OpenSSH, OpenSMTPD, OpenNTPD and more recently LibreSSL, but there are quite a lot more</li>
<li>This page also serves as a good history lesson for BSD in general: FreeBSD and others have ported some things over, while a couple OpenBSD tools were born from forks of FreeBSD tools (mergemaster, pkg tools, portscout)
***</li>
</ul>

<h3><a href="https://forums.freebsd.org/threads/howto-monitor-network-traffic-with-netflow-nfdump-nfsen-on-freebsd.49724/" rel="nofollow noopener">Monitoring network traffic with FreeBSD</a></h3>

<ul>
<li>If you've ever been curious about monitoring network traffic on your FreeBSD boxes, this forum post may be exactly the thing for you</li>
<li>It'll show you how to combine the Netflow, NfDump and NfSen suite of tools to get some pretty detailed network stats (and of course put them into a fancy webpage)</li>
<li>This is especially useful for finding out what was going on at a certain point in time, for example if you had a traffic spike
***</li>
</ul>

<h3><a href="http://www.protoc.org/blog/2014/12/22/trapping-spammers-with-the-openbsd-spam-deferral-daemon" rel="nofollow noopener">Trapping spammers with spamd</a></h3>

<ul>
<li>This is a blog post about OpenBSD's <a href="https://en.wikipedia.org/wiki/Spamd" rel="nofollow noopener">spamd</a> - a spam email deferral daemon - and how to use it for your mail</li>
<li>It gives some background on the greylisting approach to spam, rather than just a typical host blacklist</li>
<li>"Greylisting is a method of defending e-mail users against spam. A mail transfer agent (MTA) using greylisting will "temporarily reject" any email from a sender it does not recognize. If the sender re-attempts mail delivery at a later time, the sender may be allowed to continue the mail delivery conversation."</li>
<li>The post also shows how to combine it with PF and other tools for a pretty fancy mail setup</li>
<li>You can find spamd in the OpenBSD <a href="http://www.openbsd.org/cgi-bin/man.cgi/OpenBSD-current/man8/spamd.8" rel="nofollow noopener">base system</a>, or use it <a href="https://www.freshports.org/mail/spamd" rel="nofollow noopener">with FreeBSD</a> <a href="http://pkgsrc.se/mail/spamd" rel="nofollow noopener">or NetBSD</a> via ports and pkgsrc</li>
<li>You might also want to go back and listen to <a href="https://archive.org/details/bsdtalk068" rel="nofollow noopener">BSDTalk episode 68</a>, where Will talks to Bob Beck about spamd
***</li>
</ul>

<h2>Feedback/Questions</h2>

<ul>
<li><a href="http://slexy.org/view/s20rUK9XVJ" rel="nofollow noopener">Sean writes in</a></li>
<li><a href="http://slexy.org/view/s20nfzIuT2" rel="nofollow noopener">Brandon writes in</a></li>
<li><a href="http://slexy.org/view/s20wCBhFLO" rel="nofollow noopener">Anders writes in</a></li>
<li><a href="http://slexy.org/view/s20xGrBIyl" rel="nofollow noopener">David writes in</a></li>
<li><a href="http://slexy.org/view/s2QHRaiZJW" rel="nofollow noopener">Kyle writes in</a>
***</li>
</ul>

<h2>Mailing List Gold</h2>

<ul>
<li><a href="https://www.marc.info/?l=openbsd-tech&amp;m=141903858708123&amp;w=2" rel="nofollow noopener">NTP code comparison</a> - <a href="https://www.marc.info/?l=openbsd-tech&amp;m=141905854411370&amp;w=2" rel="nofollow noopener">192870 vs. 2898</a></li>
<li><a href="https://lists.freebsd.org/pipermail/freebsd-hackers/2014-December/046741.html" rel="nofollow noopener">NICs have feelings too</a></li>
<li><a href="https://www.marc.info/?l=openbsd-ports&amp;m=141998130824977&amp;w=2" rel="nofollow noopener">Just think about it</a>
***</li>
</ul>]]>
  </itunes:summary>
</item>
<item>
  <title>64: Rump Kernels Revisited</title>
  <link>https://www.bsdnow.tv/64</link>
  <guid isPermaLink="false">b5100d19-f472-4a18-93f7-72e1494ce394</guid>
  <pubDate>Wed, 19 Nov 2014 08:00:00 -0500</pubDate>
  <author>JT Pennington</author>
  <enclosure url="https://aphid.fireside.fm/d/1437767933/c91b88f1-e824-4815-bcb8-5227818d6010/b5100d19-f472-4a18-93f7-72e1494ce394.mp3" length="81755572" type="audio/mpeg"/>
  <itunes:episodeType>full</itunes:episodeType>
  <itunes:author>JT Pennington</itunes:author>
  <itunes:subtitle>This time on the show, we'll be talking with Justin Cormack about NetBSD rump kernels. We'll learn how to run them on other operating systems, what's planned for the future and a lot more. As always, answers to viewer-submitted questions and all the news for the week, on BSD Now - the place to B.. SD.</itunes:subtitle>
  <itunes:duration>1:53:32</itunes:duration>
  <itunes:explicit>no</itunes:explicit>
  <itunes:image href="https://media24.fireside.fm/file/fireside-images-2024/podcasts/images/c/c91b88f1-e824-4815-bcb8-5227818d6010/cover.jpg?v=4"/>
  <description>&lt;p&gt;This time on the show, we'll be talking with Justin Cormack about NetBSD rump kernels. We'll learn how to run them on other operating systems, what's planned for the future and a lot more. As always, answers to viewer-submitted questions and all the news for the week, on BSD Now - the place to B.. SD.&lt;/p&gt;

&lt;h2&gt;This episode was brought to you by&lt;/h2&gt;

&lt;p&gt;&lt;a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"&gt;&lt;img src="/images/iXlogo2.png" alt="iXsystems - Enterprise servers and storage for open source"&gt;&lt;/a&gt;&lt;a href="http://www.tarsnap.com/bsdnow" title="Tarsnap" rel="nofollow noopener"&gt;&lt;img src="/images/tarsnap1.png" alt="Tarsnap - online backups for the truly paranoid"&gt;&lt;/a&gt;&lt;/p&gt;

&lt;hr&gt;

&lt;h2&gt;Headlines&lt;/h2&gt;

&lt;h3&gt;&lt;a href="http://2014.eurobsdcon.org/talks-and-schedule/" rel="nofollow noopener"&gt;EuroBSDCon 2014 talks and tutorials&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;The 2014 EuroBSDCon videos have been online for over a month, but unannounced - keep in mind these links may be temporary (but we'll mention their new location in a future show and fix the show notes if that's the case)
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;Arun Thomas, &lt;a href="https://va.ludost.net/files/eurobsdcon/2014/Rodopi/03.Saturday/01.BSD-ARM%20Kernel%20Internals%20-%20Arun%20Thomas.mp4" rel="nofollow noopener"&gt;BSD ARM Kernel Internals&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;Ted Unangst, &lt;a href="https://va.ludost.net/files/eurobsdcon/2014/Rodopi/03.Saturday/02.Developing%20Software%20in%20a%20Hostile%20Environment%20-%20Ted%20Unangst.mp4" rel="nofollow noopener"&gt;Developing Software in a Hostile Environment&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;Martin Pieuchot, &lt;a href="https://va.ludost.net/files/eurobsdcon/2014/Rodopi/03.Saturday/03.Taming%20OpenBSD%20Network%20Stack%20Dragons%20-%20Martin%20Pieuchot.mp4" rel="nofollow noopener"&gt;Taming OpenBSD Network Stack Dragons&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;Henning Brauer, &lt;a href="https://va.ludost.net/files/eurobsdcon/2014/Rodopi/03.Saturday/04.OpenBGPD%20turns%2010%20years%20-%20%20Henning%20Brauer.mp4" rel="nofollow noopener"&gt;OpenBGPD turns 10 years&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;Claudio Jeker, &lt;a href="https://va.ludost.net/files/eurobsdcon/2014/Rodopi/03.Saturday/05.vscsi(4)%20and%20iscsid%20-%20iSCSI%20initiator%20the%20OpenBSD%20way%20-%20Claudio%20Jeker.mp4" rel="nofollow noopener"&gt;vscsi and iscsid iSCSI initiator the OpenBSD way&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;Paul Irofti, &lt;a href="https://va.ludost.net/files/eurobsdcon/2014/Rodopi/03.Saturday/06.Making%20OpenBSD%20Useful%20on%20the%20Octeon%20Network%20Gear%20-%20Paul%20Irofti.mp4" rel="nofollow noopener"&gt;Making OpenBSD Useful on the Octeon Network Gear&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;Baptiste Daroussin, &lt;a href="https://va.ludost.net/files/eurobsdcon/2014/Rodopi/04.Sunday/01.Cross%20Building%20the%20FreeBSD%20ports%20tree%20-%20Baptiste%20Daroussin.mp4" rel="nofollow noopener"&gt;Cross Building the FreeBSD ports tree&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;Boris Astardzhiev, &lt;a href="https://va.ludost.net/files/eurobsdcon/2014/Rodopi/04.Sunday/02.Smartcom%e2%80%99s%20control%20plane%20software,%20a%20customized%20version%20of%20FreeBSD%20-%20Boris%20Astardzhiev.mp4" rel="nofollow noopener"&gt;Smartcom’s control plane software, a customized version of FreeBSD&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;Michał Dubiel, &lt;a href="https://va.ludost.net/files/eurobsdcon/2014/Rodopi/04.Sunday/03.OpenStack%20and%20OpenContrail%20for%20FreeBSD%20platform%20-%20Micha%c5%82%20Dubiel.mp4" rel="nofollow noopener"&gt;OpenStack and OpenContrail for FreeBSD platform&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;Martin Husemann &amp;amp; Joerg Sonnenberger, &lt;a href="https://va.ludost.net/files/eurobsdcon/2014/Rodopi/04.Sunday/04.(Tool-)chaining%20the%20Hydra%20The%20ongoing%20quest%20for%20modern%20toolchains%20in%20NetBSD%20-%20Martin%20Huseman%20&amp;amp;%20Joerg%20Sonnenberger.mp4" rel="nofollow noopener"&gt;Tool-chaining the Hydra, the ongoing quest for modern toolchains in NetBSD&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;Taylor R Campbell, &lt;a href="https://va.ludost.net/files/eurobsdcon/2014/Rodopi/04.Sunday/05.The%20entropic%20principle:%20dev-u%3frandom%20and%20NetBSD%20-%20Taylor%20R%20Campbell.mp4" rel="nofollow noopener"&gt;The entropic principle: /dev/u?random and NetBSD&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;Dag-Erling Smørgrav, &lt;a href="https://va.ludost.net/files/eurobsdcon/2014/Rodopi/04.Sunday/06.Securing%20sensitive%20&amp;amp;%20restricted%20data%20-%20Dag-Erling%20Sm%c3%b8rgrav.mp4" rel="nofollow noopener"&gt;Securing sensitive &amp;amp; restricted data&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;Peter Hansteen, &lt;a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/01.Thursday/01.Building%20The%20Network%20You%20Need%20With%20PF%20-%20Peter%20Hansteen.mp4" rel="nofollow noopener"&gt;Building The Network You Need&lt;/a&gt; &lt;a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/01.Thursday/02.Building%20The%20Network%20You%20Need%20With%20PF%20-%20Peter%20Hansteen.mp4" rel="nofollow noopener"&gt;With PF&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;Stefan Sperling, &lt;a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/01.Thursday/03.Subversion%20for%20FreeBSD%20developers%20-%20Stefan%20Sperling.mp4" rel="nofollow noopener"&gt;Subversion for FreeBSD developers&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;Peter Hansteen, &lt;a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/02.Friday/01.Transition%20to%20OpenBSD%205.6%20-%20Peter%20Hansteen.mp4" rel="nofollow noopener"&gt;Transition to&lt;/a&gt; &lt;a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/02.Friday/02.Transition%20to%20OpenBSD%205.6%20-%20Peter%20Hansteen.mp4" rel="nofollow noopener"&gt;OpenBSD 5.6&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;Ingo Schwarze, &lt;a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/02.Friday/03.Let%e2%80%99s%20make%20manuals%20more%20useful%20-%20Ingo%20Schwarze.mp4" rel="nofollow noopener"&gt;Let’s make manuals&lt;/a&gt; &lt;a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/02.Friday/04.Let%e2%80%99s%20make%20manuals%20more%20useful%20-%20Ingo%20Schwarze.mp4" rel="nofollow noopener"&gt;more useful&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;Francois Tigeot, &lt;a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/03.Saturday/01.Improving%20DragonFly%e2%80%99s%20performance%20with%20PostgreSQL%20-%20Francois%20Tigeot.mp4" rel="nofollow noopener"&gt;Improving DragonFly’s performance with PostgreSQL&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;Justin Cormack, &lt;a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/03.Saturday/02.Running%20Applications%20on%20the%20NetBSD%20Rump%20Kernel%20-%20Justin%20Cormack.mp4" rel="nofollow noopener"&gt;Running Applications on the NetBSD Rump Kernel&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;Pierre Pronchery, &lt;a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/03.Saturday/04.EdgeBSD,%20a%20year%20later%20-%20%20Pierre%20Pronchery.mp4" rel="nofollow noopener"&gt;EdgeBSD, a year later&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;Peter Hessler, &lt;a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/03.Saturday/05.Using%20routing%20domains%20or%20tables%20in%20a%20production%20network%20-%20%20Peter%20Hessler.mp4" rel="nofollow noopener"&gt;Using routing domains or tables in a production network&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;Sean Bruno, &lt;a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/03.Saturday/06.QEMU%20user%20mode%20on%20FreeBSD%20-%20%20Sean%20Bruno.mp4" rel="nofollow noopener"&gt;QEMU user mode on FreeBSD&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;Kristaps Dzonsons, &lt;a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/04.Sunday/01.Bugs%20Ex%20Ante%20-%20Kristaps%20Dzonsons.mp4" rel="nofollow noopener"&gt;Bugs Ex Ante&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;Yann Sionneau, &lt;a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/04.Sunday/02.Porting%20NetBSD%20to%20the%20LatticeMico32%20open%20source%20CPU%20-%20Yann%20Sionneau.mp4" rel="nofollow noopener"&gt;Porting NetBSD to the LatticeMico32 open source CPU&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;Alexander Nasonov, &lt;a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/04.Sunday/03.JIT%20Code%20Generator%20for%20NetBSD%20-%20Alexander%20Nasonov.mp4" rel="nofollow noopener"&gt;JIT Code Generator for NetBSD&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;Masao Uebayashi, &lt;a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/04.Sunday/04.Porting%20Valgrind%20to%20NetBSD%20and%20OpenBSD%20-%20Masao%20Uebayashi.mp4" rel="nofollow noopener"&gt;Porting Valgrind to NetBSD and OpenBSD&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;Marc Espie, &lt;a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/04.Sunday/05.parallel%20make:%20working%20with%20legacy%20code%20-%20Marc%20Espie.mp4" rel="nofollow noopener"&gt;parallel make, working with legacy code&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;Francois Tigeot, &lt;a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/04.Sunday/06.Porting%20the%20drm-kms%20graphic%20drivers%20to%20DragonFly%20-%20Francois%20Tigeot.mp4" rel="nofollow noopener"&gt;Porting the drm-kms graphic drivers to DragonFly&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;&lt;strong&gt;The following talks (from the Vitosha track room) are all currently missing:&lt;/strong&gt;&lt;/li&gt;
&lt;li&gt;Jordan Hubbard, FreeBSD, Looking forward to another 10 years (but we have another recording)&lt;/li&gt;
&lt;li&gt;Theo de Raadt, Randomness, how arc4random has grown since 1998 (but we have another recording)&lt;/li&gt;
&lt;li&gt;Kris Moore, Snapshots, Replication, and Boot-Environments&lt;/li&gt;
&lt;li&gt;Kirk McKusick, An Introduction to the Implementation of ZFS&lt;/li&gt;
&lt;li&gt;John-Mark Gurney, Optimizing GELI Performance&lt;/li&gt;
&lt;li&gt;Emmanuel Dreyfus, FUSE and beyond, bridging filesystems&lt;/li&gt;
&lt;li&gt;Lourival Vieira Neto, NPF scripting with Lua&lt;/li&gt;
&lt;li&gt;Andy Tanenbaum, A Reimplementation of NetBSD Based on a Microkernel&lt;/li&gt;
&lt;li&gt;Stefano Garzarella, Software segmentation offloading for FreeBSD&lt;/li&gt;
&lt;li&gt;Ted Unangst, LibreSSL&lt;/li&gt;
&lt;li&gt;Shawn Webb, Introducing ASLR In FreeBSD&lt;/li&gt;
&lt;li&gt;Ed Maste, The LLDB Debugger in FreeBSD&lt;/li&gt;
&lt;li&gt;Philip Guenther, Secure lazy binding
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="https://www.marc.info/?l=openbsd-tech&amp;amp;m=141614801713457&amp;amp;w=2" rel="nofollow noopener"&gt;OpenBSD adopts SipHash&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Even more DJB crypto somehow finds its way into OpenBSD's base system&lt;/li&gt;
&lt;li&gt;This time it's &lt;a href="https://131002.net/siphash/" rel="nofollow noopener"&gt;SipHash&lt;/a&gt;, a family of pseudorandom functions that's resistant to hash bucket flooding attacks while still providing good performance&lt;/li&gt;
&lt;li&gt;After an &lt;a href="http://cvsweb.openbsd.org/cgi-bin/cvsweb/src/sys/crypto/siphash.c?rev=1.1&amp;amp;content-type=text/x-cvsweb-markup" rel="nofollow noopener"&gt;initial import&lt;/a&gt; and some &lt;a href="https://www.marc.info/?l=openbsd-cvs&amp;amp;m=141604896822253&amp;amp;w=2" rel="nofollow noopener"&gt;clever early usage&lt;/a&gt;, a few developers agreed that it would be better to use it in a lot more places&lt;/li&gt;
&lt;li&gt;It will now be used in the filesystem, and the plan is to utilize it to protect &lt;strong&gt;all kernel hash functions&lt;/strong&gt;&lt;/li&gt;
&lt;li&gt;Some &lt;a href="http://www.bsdnow.tv/episodes/2013_12_18-cryptocrystalline" rel="nofollow noopener"&gt;other places&lt;/a&gt; that Bernstein's work can be found in OpenBSD include the ChaCha20-Poly1305 authenticated stream cipher and Curve25519 KEX used in SSH, ChaCha20 used in the RNG, and Ed25519 keys used in &lt;a href="http://www.bsdnow.tv/episodes/2014_02_05-time_signatures" rel="nofollow noopener"&gt;signify&lt;/a&gt; and SSH
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="https://www.freebsd.org/releases/10.1R/announce.html" rel="nofollow noopener"&gt;FreeBSD 10.1-RELEASE&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;FreeBSD's &lt;a href="http://www.bsdnow.tv/episodes/2013-09-11_engineering_powder_kegs" rel="nofollow noopener"&gt;release engineering team&lt;/a&gt; likes to troll us by uploading new versions just a few hours after we finish recording an episode&lt;/li&gt;
&lt;li&gt;The first maintenance update for the 10.x branch is out, improving upon a lot of things found in 10.0-RELEASE&lt;/li&gt;
&lt;li&gt;The vt driver was merged from -CURRENT and can now be enabled with a loader.conf switch (and can even be used on a PlayStation 3)&lt;/li&gt;
&lt;li&gt;Bhyve has gotten quite a lot of fixes and improvements from its initial debut in 10.0, including boot support for ZFS&lt;/li&gt;
&lt;li&gt;Lots of new ARM hardware is supported now, including SMP support for most of them&lt;/li&gt;
&lt;li&gt;A new kernel selection menu was added to the loader, so you can switch between newer and older kernels at boot time&lt;/li&gt;
&lt;li&gt;10.1 is the first to support UEFI booting on amd64, which also has serial console support now&lt;/li&gt;
&lt;li&gt;Lots of third party software (OpenSSH, OpenSSL, Unbound..) and drivers have gotten updates to newer versions&lt;/li&gt;
&lt;li&gt;It's a worthy update from 10.0, or a good time to try the 10.x branch if you were avoiding the first .0 release, so &lt;a href="http://ftp.freebsd.org/pub/FreeBSD/ISO-IMAGES-amd64/10.1/" rel="nofollow noopener"&gt;grab an ISO&lt;/a&gt; or &lt;a href="https://www.freebsd.org/cgi/man.cgi?query=freebsd-update" rel="nofollow noopener"&gt;upgrade&lt;/a&gt; today&lt;/li&gt;
&lt;li&gt;Check the &lt;a href="https://www.freebsd.org/releases/10.1R/relnotes.html" rel="nofollow noopener"&gt;detailed release notes&lt;/a&gt; for more information on all the changes&lt;/li&gt;
&lt;li&gt;Also take a look at some of the &lt;a href="https://www.freebsd.org/releases/10.1R/errata.html#open-issues" rel="nofollow noopener"&gt;known problems&lt;/a&gt; to see &lt;a href="https://forums.freebsd.org/threads/segmentation-fault-while-upgrading-from-10-0-release-to-10-1-release.48977/" rel="nofollow noopener"&gt;if&lt;/a&gt; &lt;a href="https://lists.freebsd.org/pipermail/freebsd-stable/2014-October/080599.html" rel="nofollow noopener"&gt;you'll&lt;/a&gt; &lt;a href="https://forums.freebsd.org/threads/10-0-10-1-diocaddrule-operation-not-supported-by-device.49016/" rel="nofollow noopener"&gt;be&lt;/a&gt; &lt;a href="https://www.reddit.com/r/freebsd/comments/2mmzzy/101release_restart_problems_anyone/" rel="nofollow noopener"&gt;affected&lt;/a&gt; by any of them&lt;/li&gt;
&lt;li&gt;PC-BSD was also &lt;a href="http://wiki.pcbsd.org/index.php/What%27s_New/10.1" rel="nofollow noopener"&gt;updated accordingly&lt;/a&gt; with some of their own unique features and changes
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="https://www.youtube.com/watch?v=aWmLWx8ut20" rel="nofollow noopener"&gt;arc4random - Randomization for All Occasions&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Theo de Raadt gave an updated version of his EuroBSDCon presentation at Hackfest 2014 in Quebec&lt;/li&gt;
&lt;li&gt;The presentation is mainly about OpenBSD's arc4random function, and outlines the overall poor state of randomization in the 90s and how it has evolved in OpenBSD over time&lt;/li&gt;
&lt;li&gt;It begins with some interesting history on OpenBSD and how it became a security-focused OS - in 1996, their syslogd got broken into and "suddenly we became interested in security"&lt;/li&gt;
&lt;li&gt;The talk also touches on how low-level changes can shake up the software ecosystem and third party packages that everyone uses&lt;/li&gt;
&lt;li&gt;There's some funny history on the name of the function (being called arc4random despite not using RC4 anymore) and an overall status update on various platforms' usage of it&lt;/li&gt;
&lt;li&gt;Very detailed and informative presentation, and the slides can be found &lt;a href="http://www.openbsd.org/papers/hackfest2014-arc4random/index.html" rel="nofollow noopener"&gt;here&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;A great quote from the beginning: "We consider ourselves a community of (probably rather strange) people who work on software specifically for the purpose of trying to make it better. We take a 'whole-systems' approach: trying to change everything in the ecosystem that's under our control, trying to see if we can make it better. We gain a lot of strength by being able to throw backwards compatibility out the window. So that means that we're able to do research and the minute that we decide that something isn't right, we'll design an alternative for it and push it in. And if it ends up breaking everybody's machines from the previous stage to the next stage, that's fine because we'll end up in a happier place."
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;Interview - Justin Cormack - &lt;a href="mailto:justin@netbsd.org" rel="nofollow noopener"&gt;justin@netbsd.org&lt;/a&gt; / &lt;a href="https://twitter.com/justincormack" rel="nofollow noopener"&gt;@justincormack&lt;/a&gt;&lt;/h2&gt;

&lt;p&gt;NetBSD on Xen, rump kernels, various topics&lt;/p&gt;

&lt;hr&gt;

&lt;h2&gt;News Roundup&lt;/h2&gt;

&lt;h3&gt;&lt;a href="http://freebsdfoundation.blogspot.com/2014/11/freebsd-foundation-announces-generous.html" rel="nofollow noopener"&gt;The FreeBSD foundation's biggest donation&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;The FreeBSD foundation has a new blog post about the largest donation they've ever gotten&lt;/li&gt;
&lt;li&gt;From the CEO of WhatsApp comes a whopping one million dollars in a single donation&lt;/li&gt;
&lt;li&gt;It also has some comments from the donor about why they use BSD and why it's important to give back&lt;/li&gt;
&lt;li&gt;Be sure to donate to the foundation of whatever BSD you use when you can - every little bit helps, especially for &lt;a href="http://www.openbsd.org/donations.html" rel="nofollow noopener"&gt;OpenBSD&lt;/a&gt;, &lt;a href="https://www.netbsd.org/donations/" rel="nofollow noopener"&gt;NetBSD&lt;/a&gt; and &lt;a href="http://www.dragonflybsd.org/donations/" rel="nofollow noopener"&gt;DragonFly&lt;/a&gt; who don't have huge companies supporting them regularly like FreeBSD does
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://open-zfs.org/wiki/OpenZFS_Developer_Summit" rel="nofollow noopener"&gt;OpenZFS Dev Summit 2014 videos&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Videos from the recent OpenZFS developer summit are being uploaded, with speakers from different represented platforms and companies
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://www.bsdnow.tv/episodes/2014_05_14-bsdcanned_goods" rel="nofollow noopener"&gt;Matt Ahrens&lt;/a&gt;, &lt;a href="https://www.youtube.com/watch?v=XnTzbisLYzg" rel="nofollow noopener"&gt;opening keynote&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;Raphael Carvalho, &lt;a href="https://www.youtube.com/watch?v=TJLOBLSRoHE" rel="nofollow noopener"&gt;Platform Overview: ZFS on OSv&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;Brian Behlendorf, &lt;a href="https://www.youtube.com/watch?v=_MVOpMNV7LY" rel="nofollow noopener"&gt;Platform Overview: ZFS on Linux&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;Prakash Surya, &lt;a href="https://www.youtube.com/watch?v=UtlGt3ag0o0" rel="nofollow noopener"&gt;Platform Overview: illumos&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;Xin Li, &lt;a href="https://www.youtube.com/watch?v=xO0x5_3A1X4" rel="nofollow noopener"&gt;Platform Overview: FreeBSD&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;All platforms, &lt;a href="https://www.youtube.com/watch?v=t4UlT0RmSCc" rel="nofollow noopener"&gt;Group Q&amp;amp;A Session&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;Dave Pacheco, &lt;a href="https://www.youtube.com/watch?v=BEoCMpdB8WU" rel="nofollow noopener"&gt;Manta&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;Saso Kiselkov, &lt;a href="https://www.youtube.com/watch?v=TZF92taa_us" rel="nofollow noopener"&gt;Compression&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://www.bsdnow.tv/episodes/2013_12_04-zettabytes_for_days" rel="nofollow noopener"&gt;George Wilson&lt;/a&gt;, &lt;a href="https://www.youtube.com/watch?v=deJc0EMKrM4" rel="nofollow noopener"&gt;Performance&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;Tim Feldman, &lt;a href="https://www.youtube.com/watch?v=b1yqjV8qemU" rel="nofollow noopener"&gt;Host-Aware SMR&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;Pavel Zakharov, &lt;a href="https://www.youtube.com/watch?v=-4c4gsLi1LI" rel="nofollow noopener"&gt;Fast File Cloning&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;The audio is &lt;a href="https://twitter.com/OpenZFS/status/534005125853888512" rel="nofollow noopener"&gt;pretty poor&lt;/a&gt; on all of them unfortunately
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://bsdtalk.blogspot.com/2014/11/bsdtalk248-dragonflybsd-with-matthew.html" rel="nofollow noopener"&gt;BSDTalk 248&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Our friend Will Backman is still busy getting BSD interviews as well&lt;/li&gt;
&lt;li&gt;This time he sits down with Matthew Dillon, the lead developer of DragonFly BSD&lt;/li&gt;
&lt;li&gt;We've never had Dillon on the show, so you'll definitely want to give this one a listen&lt;/li&gt;
&lt;li&gt;They mainly discuss all the big changes coming in DragonFly's upcoming 4.0 release
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="https://www.meetbsd.com/" rel="nofollow noopener"&gt;MeetBSD 2014 videos&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;The presentations from this year's MeetBSD conference are starting to appear online as well
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://www.bsdnow.tv/episodes/2013-10-02_stacks_of_cache" rel="nofollow noopener"&gt;Kirk McKusick&lt;/a&gt;, &lt;a href="https://www.youtube.com/watch?v=DEEr6dT-4uQ" rel="nofollow noopener"&gt;A Narrative History of BSD&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://www.bsdnow.tv/episodes/2013_11_27-bridging_the_gap" rel="nofollow noopener"&gt;Jordan Hubbard&lt;/a&gt;, &lt;a href="https://www.youtube.com/watch?v=Mri66Uz6-8Y" rel="nofollow noopener"&gt;FreeBSD: The Next 10 Years&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;Brendan Gregg, &lt;a href="https://www.youtube.com/watch?v=uvKMptfXtdo" rel="nofollow noopener"&gt;Performance Analysis&lt;/a&gt;
&amp;lt;!-- i wonder if freebsdnews will rip our html again and repost it &lt;sup&gt;_^&lt;/sup&gt; --&amp;gt;&lt;/li&gt;
&lt;li&gt;The slides can be found &lt;a href="https://www.meetbsd.com/agenda/" rel="nofollow noopener"&gt;here&lt;/a&gt; 
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;Feedback/Questions&lt;/h2&gt;

&lt;ul&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s20PXjp55N" rel="nofollow noopener"&gt;Dominik writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s2LwEYT3bA" rel="nofollow noopener"&gt;Steven writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s2ubK8vQVt" rel="nofollow noopener"&gt;Florian writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s216Eq8nFG" rel="nofollow noopener"&gt;Richard writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s21D2ugDUy" rel="nofollow noopener"&gt;Kevin writes in&lt;/a&gt;
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;Mailing List Gold&lt;/h2&gt;

&lt;ul&gt;
&lt;li&gt;&lt;a href="https://www.marc.info/?t=141600819500004&amp;amp;r=1&amp;amp;w=2" rel="nofollow noopener"&gt;Contributing without code&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://lists.mindrot.org/pipermail/openssh-unix-dev/2014-November/033176.html" rel="nofollow noopener"&gt;Compression isn't a CRIME&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="https://www.marc.info/?t=141616714600001&amp;amp;r=1&amp;amp;w=2" rel="nofollow noopener"&gt;Securing web browsers&lt;/a&gt;
*** &lt;/li&gt;
&lt;/ul&gt;
</description>
  <itunes:keywords>freebsd, openbsd, netbsd, dragonflybsd, pcbsd, tutorial, howto, guide, bsd, interview, rump kernels, xen, userspace, networking, siphash, 10.1, review, 10.1 review, openzfs, zfs, devsummit, hackfest, arc4random, meetbsd, presentation</itunes:keywords>
  <content:encoded>
    <![CDATA[<p>This time on the show, we'll be talking with Justin Cormack about NetBSD rump kernels. We'll learn how to run them on other operating systems, what's planned for the future and a lot more. As always, answers to viewer-submitted questions and all the news for the week, on BSD Now - the place to B.. SD.</p>

<h2>This episode was brought to you by</h2>

<p><a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"><img src="/images/iXlogo2.png" alt="iXsystems - Enterprise servers and storage for open source"></a><a href="http://www.tarsnap.com/bsdnow" title="Tarsnap" rel="nofollow noopener"><img src="/images/tarsnap1.png" alt="Tarsnap - online backups for the truly paranoid"></a></p>

<hr>

<h2>Headlines</h2>

<h3><a href="http://2014.eurobsdcon.org/talks-and-schedule/" rel="nofollow noopener">EuroBSDCon 2014 talks and tutorials</a></h3>

<ul>
<li>The 2014 EuroBSDCon videos have been online for over a month, but unannounced - keep in mind these links may be temporary (but we'll mention their new location in a future show and fix the show notes if that's the case)
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Arun Thomas, <a href="https://va.ludost.net/files/eurobsdcon/2014/Rodopi/03.Saturday/01.BSD-ARM%20Kernel%20Internals%20-%20Arun%20Thomas.mp4" rel="nofollow noopener">BSD ARM Kernel Internals</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Ted Unangst, <a href="https://va.ludost.net/files/eurobsdcon/2014/Rodopi/03.Saturday/02.Developing%20Software%20in%20a%20Hostile%20Environment%20-%20Ted%20Unangst.mp4" rel="nofollow noopener">Developing Software in a Hostile Environment</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Martin Pieuchot, <a href="https://va.ludost.net/files/eurobsdcon/2014/Rodopi/03.Saturday/03.Taming%20OpenBSD%20Network%20Stack%20Dragons%20-%20Martin%20Pieuchot.mp4" rel="nofollow noopener">Taming OpenBSD Network Stack Dragons</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Henning Brauer, <a href="https://va.ludost.net/files/eurobsdcon/2014/Rodopi/03.Saturday/04.OpenBGPD%20turns%2010%20years%20-%20%20Henning%20Brauer.mp4" rel="nofollow noopener">OpenBGPD turns 10 years</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Claudio Jeker, <a href="https://va.ludost.net/files/eurobsdcon/2014/Rodopi/03.Saturday/05.vscsi(4)%20and%20iscsid%20-%20iSCSI%20initiator%20the%20OpenBSD%20way%20-%20Claudio%20Jeker.mp4" rel="nofollow noopener">vscsi and iscsid iSCSI initiator the OpenBSD way</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Paul Irofti, <a href="https://va.ludost.net/files/eurobsdcon/2014/Rodopi/03.Saturday/06.Making%20OpenBSD%20Useful%20on%20the%20Octeon%20Network%20Gear%20-%20Paul%20Irofti.mp4" rel="nofollow noopener">Making OpenBSD Useful on the Octeon Network Gear</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Baptiste Daroussin, <a href="https://va.ludost.net/files/eurobsdcon/2014/Rodopi/04.Sunday/01.Cross%20Building%20the%20FreeBSD%20ports%20tree%20-%20Baptiste%20Daroussin.mp4" rel="nofollow noopener">Cross Building the FreeBSD ports tree</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Boris Astardzhiev, <a href="https://va.ludost.net/files/eurobsdcon/2014/Rodopi/04.Sunday/02.Smartcom%e2%80%99s%20control%20plane%20software,%20a%20customized%20version%20of%20FreeBSD%20-%20Boris%20Astardzhiev.mp4" rel="nofollow noopener">Smartcom’s control plane software, a customized version of FreeBSD</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Michał Dubiel, <a href="https://va.ludost.net/files/eurobsdcon/2014/Rodopi/04.Sunday/03.OpenStack%20and%20OpenContrail%20for%20FreeBSD%20platform%20-%20Micha%c5%82%20Dubiel.mp4" rel="nofollow noopener">OpenStack and OpenContrail for FreeBSD platform</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Martin Husemann &amp; Joerg Sonnenberger, <a href="https://va.ludost.net/files/eurobsdcon/2014/Rodopi/04.Sunday/04.(Tool-)chaining%20the%20Hydra%20The%20ongoing%20quest%20for%20modern%20toolchains%20in%20NetBSD%20-%20Martin%20Huseman%20&amp;%20Joerg%20Sonnenberger.mp4" rel="nofollow noopener">Tool-chaining the Hydra, the ongoing quest for modern toolchains in NetBSD</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Taylor R Campbell, <a href="https://va.ludost.net/files/eurobsdcon/2014/Rodopi/04.Sunday/05.The%20entropic%20principle:%20dev-u%3frandom%20and%20NetBSD%20-%20Taylor%20R%20Campbell.mp4" rel="nofollow noopener">The entropic principle: /dev/u?random and NetBSD</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Dag-Erling Smørgrav, <a href="https://va.ludost.net/files/eurobsdcon/2014/Rodopi/04.Sunday/06.Securing%20sensitive%20&amp;%20restricted%20data%20-%20Dag-Erling%20Sm%c3%b8rgrav.mp4" rel="nofollow noopener">Securing sensitive &amp; restricted data</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Peter Hansteen, <a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/01.Thursday/01.Building%20The%20Network%20You%20Need%20With%20PF%20-%20Peter%20Hansteen.mp4" rel="nofollow noopener">Building The Network You Need</a> <a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/01.Thursday/02.Building%20The%20Network%20You%20Need%20With%20PF%20-%20Peter%20Hansteen.mp4" rel="nofollow noopener">With PF</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Stefan Sperling, <a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/01.Thursday/03.Subversion%20for%20FreeBSD%20developers%20-%20Stefan%20Sperling.mp4" rel="nofollow noopener">Subversion for FreeBSD developers</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Peter Hansteen, <a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/02.Friday/01.Transition%20to%20OpenBSD%205.6%20-%20Peter%20Hansteen.mp4" rel="nofollow noopener">Transition to</a> <a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/02.Friday/02.Transition%20to%20OpenBSD%205.6%20-%20Peter%20Hansteen.mp4" rel="nofollow noopener">OpenBSD 5.6</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Ingo Schwarze, <a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/02.Friday/03.Let%e2%80%99s%20make%20manuals%20more%20useful%20-%20Ingo%20Schwarze.mp4" rel="nofollow noopener">Let’s make manuals</a> <a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/02.Friday/04.Let%e2%80%99s%20make%20manuals%20more%20useful%20-%20Ingo%20Schwarze.mp4" rel="nofollow noopener">more useful</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Francois Tigeot, <a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/03.Saturday/01.Improving%20DragonFly%e2%80%99s%20performance%20with%20PostgreSQL%20-%20Francois%20Tigeot.mp4" rel="nofollow noopener">Improving DragonFly’s performance with PostgreSQL</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Justin Cormack, <a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/03.Saturday/02.Running%20Applications%20on%20the%20NetBSD%20Rump%20Kernel%20-%20Justin%20Cormack.mp4" rel="nofollow noopener">Running Applications on the NetBSD Rump Kernel</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Pierre Pronchery, <a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/03.Saturday/04.EdgeBSD,%20a%20year%20later%20-%20%20Pierre%20Pronchery.mp4" rel="nofollow noopener">EdgeBSD, a year later</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Peter Hessler, <a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/03.Saturday/05.Using%20routing%20domains%20or%20tables%20in%20a%20production%20network%20-%20%20Peter%20Hessler.mp4" rel="nofollow noopener">Using routing domains or tables in a production network</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Sean Bruno, <a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/03.Saturday/06.QEMU%20user%20mode%20on%20FreeBSD%20-%20%20Sean%20Bruno.mp4" rel="nofollow noopener">QEMU user mode on FreeBSD</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Kristaps Dzonsons, <a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/04.Sunday/01.Bugs%20Ex%20Ante%20-%20Kristaps%20Dzonsons.mp4" rel="nofollow noopener">Bugs Ex Ante</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Yann Sionneau, <a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/04.Sunday/02.Porting%20NetBSD%20to%20the%20LatticeMico32%20open%20source%20CPU%20-%20Yann%20Sionneau.mp4" rel="nofollow noopener">Porting NetBSD to the LatticeMico32 open source CPU</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Alexander Nasonov, <a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/04.Sunday/03.JIT%20Code%20Generator%20for%20NetBSD%20-%20Alexander%20Nasonov.mp4" rel="nofollow noopener">JIT Code Generator for NetBSD</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Masao Uebayashi, <a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/04.Sunday/04.Porting%20Valgrind%20to%20NetBSD%20and%20OpenBSD%20-%20Masao%20Uebayashi.mp4" rel="nofollow noopener">Porting Valgrind to NetBSD and OpenBSD</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Marc Espie, <a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/04.Sunday/05.parallel%20make:%20working%20with%20legacy%20code%20-%20Marc%20Espie.mp4" rel="nofollow noopener">parallel make, working with legacy code</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Francois Tigeot, <a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/04.Sunday/06.Porting%20the%20drm-kms%20graphic%20drivers%20to%20DragonFly%20-%20Francois%20Tigeot.mp4" rel="nofollow noopener">Porting the drm-kms graphic drivers to DragonFly</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li><strong>The following talks (from the Vitosha track room) are all currently missing:</strong></li>
<li>Jordan Hubbard, FreeBSD, Looking forward to another 10 years (but we have another recording)</li>
<li>Theo de Raadt, Randomness, how arc4random has grown since 1998 (but we have another recording)</li>
<li>Kris Moore, Snapshots, Replication, and Boot-Environments</li>
<li>Kirk McKusick, An Introduction to the Implementation of ZFS</li>
<li>John-Mark Gurney, Optimizing GELI Performance</li>
<li>Emmanuel Dreyfus, FUSE and beyond, bridging filesystems</li>
<li>Lourival Vieira Neto, NPF scripting with Lua</li>
<li>Andy Tanenbaum, A Reimplementation of NetBSD Based on a Microkernel</li>
<li>Stefano Garzarella, Software segmentation offloading for FreeBSD</li>
<li>Ted Unangst, LibreSSL</li>
<li>Shawn Webb, Introducing ASLR In FreeBSD</li>
<li>Ed Maste, The LLDB Debugger in FreeBSD</li>
<li>Philip Guenther, Secure lazy binding
***</li>
</ul>

<h3><a href="https://www.marc.info/?l=openbsd-tech&amp;m=141614801713457&amp;w=2" rel="nofollow noopener">OpenBSD adopts SipHash</a></h3>

<ul>
<li>Even more DJB crypto somehow finds its way into OpenBSD's base system</li>
<li>This time it's <a href="https://131002.net/siphash/" rel="nofollow noopener">SipHash</a>, a family of pseudorandom functions that's resistant to hash bucket flooding attacks while still providing good performance</li>
<li>After an <a href="http://cvsweb.openbsd.org/cgi-bin/cvsweb/src/sys/crypto/siphash.c?rev=1.1&amp;content-type=text/x-cvsweb-markup" rel="nofollow noopener">initial import</a> and some <a href="https://www.marc.info/?l=openbsd-cvs&amp;m=141604896822253&amp;w=2" rel="nofollow noopener">clever early usage</a>, a few developers agreed that it would be better to use it in a lot more places</li>
<li>It will now be used in the filesystem, and the plan is to utilize it to protect <strong>all kernel hash functions</strong></li>
<li>Some <a href="http://www.bsdnow.tv/episodes/2013_12_18-cryptocrystalline" rel="nofollow noopener">other places</a> that Bernstein's work can be found in OpenBSD include the ChaCha20-Poly1305 authenticated stream cipher and Curve25519 KEX used in SSH, ChaCha20 used in the RNG, and Ed25519 keys used in <a href="http://www.bsdnow.tv/episodes/2014_02_05-time_signatures" rel="nofollow noopener">signify</a> and SSH
***</li>
</ul>

<h3><a href="https://www.freebsd.org/releases/10.1R/announce.html" rel="nofollow noopener">FreeBSD 10.1-RELEASE</a></h3>

<ul>
<li>FreeBSD's <a href="http://www.bsdnow.tv/episodes/2013-09-11_engineering_powder_kegs" rel="nofollow noopener">release engineering team</a> likes to troll us by uploading new versions just a few hours after we finish recording an episode</li>
<li>The first maintenance update for the 10.x branch is out, improving upon a lot of things found in 10.0-RELEASE</li>
<li>The vt driver was merged from -CURRENT and can now be enabled with a loader.conf switch (and can even be used on a PlayStation 3)</li>
<li>Bhyve has gotten quite a lot of fixes and improvements from its initial debut in 10.0, including boot support for ZFS</li>
<li>Lots of new ARM hardware is supported now, including SMP support for most of them</li>
<li>A new kernel selection menu was added to the loader, so you can switch between newer and older kernels at boot time</li>
<li>10.1 is the first to support UEFI booting on amd64, which also has serial console support now</li>
<li>Lots of third party software (OpenSSH, OpenSSL, Unbound..) and drivers have gotten updates to newer versions</li>
<li>It's a worthy update from 10.0, or a good time to try the 10.x branch if you were avoiding the first .0 release, so <a href="http://ftp.freebsd.org/pub/FreeBSD/ISO-IMAGES-amd64/10.1/" rel="nofollow noopener">grab an ISO</a> or <a href="https://www.freebsd.org/cgi/man.cgi?query=freebsd-update" rel="nofollow noopener">upgrade</a> today</li>
<li>Check the <a href="https://www.freebsd.org/releases/10.1R/relnotes.html" rel="nofollow noopener">detailed release notes</a> for more information on all the changes</li>
<li>Also take a look at some of the <a href="https://www.freebsd.org/releases/10.1R/errata.html#open-issues" rel="nofollow noopener">known problems</a> to see <a href="https://forums.freebsd.org/threads/segmentation-fault-while-upgrading-from-10-0-release-to-10-1-release.48977/" rel="nofollow noopener">if</a> <a href="https://lists.freebsd.org/pipermail/freebsd-stable/2014-October/080599.html" rel="nofollow noopener">you'll</a> <a href="https://forums.freebsd.org/threads/10-0-10-1-diocaddrule-operation-not-supported-by-device.49016/" rel="nofollow noopener">be</a> <a href="https://www.reddit.com/r/freebsd/comments/2mmzzy/101release_restart_problems_anyone/" rel="nofollow noopener">affected</a> by any of them</li>
<li>PC-BSD was also <a href="http://wiki.pcbsd.org/index.php/What%27s_New/10.1" rel="nofollow noopener">updated accordingly</a> with some of their own unique features and changes
***</li>
</ul>

<h3><a href="https://www.youtube.com/watch?v=aWmLWx8ut20" rel="nofollow noopener">arc4random - Randomization for All Occasions</a></h3>

<ul>
<li>Theo de Raadt gave an updated version of his EuroBSDCon presentation at Hackfest 2014 in Quebec</li>
<li>The presentation is mainly about OpenBSD's arc4random function, and outlines the overall poor state of randomization in the 90s and how it has evolved in OpenBSD over time</li>
<li>It begins with some interesting history on OpenBSD and how it became a security-focused OS - in 1996, their syslogd got broken into and "suddenly we became interested in security"</li>
<li>The talk also touches on how low-level changes can shake up the software ecosystem and third party packages that everyone uses</li>
<li>There's some funny history on the name of the function (being called arc4random despite not using RC4 anymore) and an overall status update on various platforms' usage of it</li>
<li>Very detailed and informative presentation, and the slides can be found <a href="http://www.openbsd.org/papers/hackfest2014-arc4random/index.html" rel="nofollow noopener">here</a></li>
<li>A great quote from the beginning: "We consider ourselves a community of (probably rather strange) people who work on software specifically for the purpose of trying to make it better. We take a 'whole-systems' approach: trying to change everything in the ecosystem that's under our control, trying to see if we can make it better. We gain a lot of strength by being able to throw backwards compatibility out the window. So that means that we're able to do research and the minute that we decide that something isn't right, we'll design an alternative for it and push it in. And if it ends up breaking everybody's machines from the previous stage to the next stage, that's fine because we'll end up in a happier place."
***</li>
</ul>

<h2>Interview - Justin Cormack - <a href="mailto:justin@netbsd.org" rel="nofollow noopener">justin@netbsd.org</a> / <a href="https://twitter.com/justincormack" rel="nofollow noopener">@justincormack</a></h2>

<p>NetBSD on Xen, rump kernels, various topics</p>

<hr>

<h2>News Roundup</h2>

<h3><a href="http://freebsdfoundation.blogspot.com/2014/11/freebsd-foundation-announces-generous.html" rel="nofollow noopener">The FreeBSD foundation's biggest donation</a></h3>

<ul>
<li>The FreeBSD foundation has a new blog post about the largest donation they've ever gotten</li>
<li>From the CEO of WhatsApp comes a whopping one million dollars in a single donation</li>
<li>It also has some comments from the donor about why they use BSD and why it's important to give back</li>
<li>Be sure to donate to the foundation of whatever BSD you use when you can - every little bit helps, especially for <a href="http://www.openbsd.org/donations.html" rel="nofollow noopener">OpenBSD</a>, <a href="https://www.netbsd.org/donations/" rel="nofollow noopener">NetBSD</a> and <a href="http://www.dragonflybsd.org/donations/" rel="nofollow noopener">DragonFly</a> who don't have huge companies supporting them regularly like FreeBSD does
***</li>
</ul>

<h3><a href="http://open-zfs.org/wiki/OpenZFS_Developer_Summit" rel="nofollow noopener">OpenZFS Dev Summit 2014 videos</a></h3>

<ul>
<li>Videos from the recent OpenZFS developer summit are being uploaded, with speakers from different represented platforms and companies
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li><a href="http://www.bsdnow.tv/episodes/2014_05_14-bsdcanned_goods" rel="nofollow noopener">Matt Ahrens</a>, <a href="https://www.youtube.com/watch?v=XnTzbisLYzg" rel="nofollow noopener">opening keynote</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Raphael Carvalho, <a href="https://www.youtube.com/watch?v=TJLOBLSRoHE" rel="nofollow noopener">Platform Overview: ZFS on OSv</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Brian Behlendorf, <a href="https://www.youtube.com/watch?v=_MVOpMNV7LY" rel="nofollow noopener">Platform Overview: ZFS on Linux</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Prakash Surya, <a href="https://www.youtube.com/watch?v=UtlGt3ag0o0" rel="nofollow noopener">Platform Overview: illumos</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Xin Li, <a href="https://www.youtube.com/watch?v=xO0x5_3A1X4" rel="nofollow noopener">Platform Overview: FreeBSD</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>All platforms, <a href="https://www.youtube.com/watch?v=t4UlT0RmSCc" rel="nofollow noopener">Group Q&amp;A Session</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Dave Pacheco, <a href="https://www.youtube.com/watch?v=BEoCMpdB8WU" rel="nofollow noopener">Manta</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Saso Kiselkov, <a href="https://www.youtube.com/watch?v=TZF92taa_us" rel="nofollow noopener">Compression</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li><a href="http://www.bsdnow.tv/episodes/2013_12_04-zettabytes_for_days" rel="nofollow noopener">George Wilson</a>, <a href="https://www.youtube.com/watch?v=deJc0EMKrM4" rel="nofollow noopener">Performance</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Tim Feldman, <a href="https://www.youtube.com/watch?v=b1yqjV8qemU" rel="nofollow noopener">Host-Aware SMR</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Pavel Zakharov, <a href="https://www.youtube.com/watch?v=-4c4gsLi1LI" rel="nofollow noopener">Fast File Cloning</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>The audio is <a href="https://twitter.com/OpenZFS/status/534005125853888512" rel="nofollow noopener">pretty poor</a> on all of them unfortunately
***</li>
</ul>

<h3><a href="http://bsdtalk.blogspot.com/2014/11/bsdtalk248-dragonflybsd-with-matthew.html" rel="nofollow noopener">BSDTalk 248</a></h3>

<ul>
<li>Our friend Will Backman is still busy getting BSD interviews as well</li>
<li>This time he sits down with Matthew Dillon, the lead developer of DragonFly BSD</li>
<li>We've never had Dillon on the show, so you'll definitely want to give this one a listen</li>
<li>They mainly discuss all the big changes coming in DragonFly's upcoming 4.0 release
***</li>
</ul>

<h3><a href="https://www.meetbsd.com/" rel="nofollow noopener">MeetBSD 2014 videos</a></h3>

<ul>
<li>The presentations from this year's MeetBSD conference are starting to appear online as well
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li><a href="http://www.bsdnow.tv/episodes/2013-10-02_stacks_of_cache" rel="nofollow noopener">Kirk McKusick</a>, <a href="https://www.youtube.com/watch?v=DEEr6dT-4uQ" rel="nofollow noopener">A Narrative History of BSD</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li><a href="http://www.bsdnow.tv/episodes/2013_11_27-bridging_the_gap" rel="nofollow noopener">Jordan Hubbard</a>, <a href="https://www.youtube.com/watch?v=Mri66Uz6-8Y" rel="nofollow noopener">FreeBSD: The Next 10 Years</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Brendan Gregg, <a href="https://www.youtube.com/watch?v=uvKMptfXtdo" rel="nofollow noopener">Performance Analysis</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>The slides can be found <a href="https://www.meetbsd.com/agenda/" rel="nofollow noopener">here</a> 
***</li>
</ul>

<h2>Feedback/Questions</h2>

<ul>
<li><a href="http://slexy.org/view/s20PXjp55N" rel="nofollow noopener">Dominik writes in</a></li>
<li><a href="http://slexy.org/view/s2LwEYT3bA" rel="nofollow noopener">Steven writes in</a></li>
<li><a href="http://slexy.org/view/s2ubK8vQVt" rel="nofollow noopener">Florian writes in</a></li>
<li><a href="http://slexy.org/view/s216Eq8nFG" rel="nofollow noopener">Richard writes in</a></li>
<li><a href="http://slexy.org/view/s21D2ugDUy" rel="nofollow noopener">Kevin writes in</a>
***</li>
</ul>

<h2>Mailing List Gold</h2>

<ul>
<li><a href="https://www.marc.info/?t=141600819500004&amp;r=1&amp;w=2" rel="nofollow noopener">Contributing without code</a></li>
<li><a href="https://lists.mindrot.org/pipermail/openssh-unix-dev/2014-November/033176.html" rel="nofollow noopener">Compression isn't a CRIME</a></li>
<li><a href="https://www.marc.info/?t=141616714600001&amp;r=1&amp;w=2" rel="nofollow noopener">Securing web browsers</a>
***</li>
</ul>]]>
  </content:encoded>
  <itunes:summary>
    <![CDATA[<p>This time on the show, we'll be talking with Justin Cormack about NetBSD rump kernels. We'll learn how to run them on other operating systems, what's planned for the future and a lot more. As always, answers to viewer-submitted questions and all the news for the week, on BSD Now - the place to B.. SD.</p>

<h2>This episode was brought to you by</h2>

<p><a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"><img src="/images/iXlogo2.png" alt="iXsystems - Enterprise servers and storage for open source"></a><a href="http://www.tarsnap.com/bsdnow" title="Tarsnap" rel="nofollow noopener"><img src="/images/tarsnap1.png" alt="Tarsnap - online backups for the truly paranoid"></a></p>

<hr>

<h2>Headlines</h2>

<h3><a href="http://2014.eurobsdcon.org/talks-and-schedule/" rel="nofollow noopener">EuroBSDCon 2014 talks and tutorials</a></h3>

<ul>
<li>The 2014 EuroBSDCon videos have been online for over a month, but unannounced - keep in mind these links may be temporary (but we'll mention their new location in a future show and fix the show notes if that's the case)
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Arun Thomas, <a href="https://va.ludost.net/files/eurobsdcon/2014/Rodopi/03.Saturday/01.BSD-ARM%20Kernel%20Internals%20-%20Arun%20Thomas.mp4" rel="nofollow noopener">BSD ARM Kernel Internals</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Ted Unangst, <a href="https://va.ludost.net/files/eurobsdcon/2014/Rodopi/03.Saturday/02.Developing%20Software%20in%20a%20Hostile%20Environment%20-%20Ted%20Unangst.mp4" rel="nofollow noopener">Developing Software in a Hostile Environment</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Martin Pieuchot, <a href="https://va.ludost.net/files/eurobsdcon/2014/Rodopi/03.Saturday/03.Taming%20OpenBSD%20Network%20Stack%20Dragons%20-%20Martin%20Pieuchot.mp4" rel="nofollow noopener">Taming OpenBSD Network Stack Dragons</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Henning Brauer, <a href="https://va.ludost.net/files/eurobsdcon/2014/Rodopi/03.Saturday/04.OpenBGPD%20turns%2010%20years%20-%20%20Henning%20Brauer.mp4" rel="nofollow noopener">OpenBGPD turns 10 years</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Claudio Jeker, <a href="https://va.ludost.net/files/eurobsdcon/2014/Rodopi/03.Saturday/05.vscsi(4)%20and%20iscsid%20-%20iSCSI%20initiator%20the%20OpenBSD%20way%20-%20Claudio%20Jeker.mp4" rel="nofollow noopener">vscsi and iscsid iSCSI initiator the OpenBSD way</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Paul Irofti, <a href="https://va.ludost.net/files/eurobsdcon/2014/Rodopi/03.Saturday/06.Making%20OpenBSD%20Useful%20on%20the%20Octeon%20Network%20Gear%20-%20Paul%20Irofti.mp4" rel="nofollow noopener">Making OpenBSD Useful on the Octeon Network Gear</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Baptiste Daroussin, <a href="https://va.ludost.net/files/eurobsdcon/2014/Rodopi/04.Sunday/01.Cross%20Building%20the%20FreeBSD%20ports%20tree%20-%20Baptiste%20Daroussin.mp4" rel="nofollow noopener">Cross Building the FreeBSD ports tree</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Boris Astardzhiev, <a href="https://va.ludost.net/files/eurobsdcon/2014/Rodopi/04.Sunday/02.Smartcom%e2%80%99s%20control%20plane%20software,%20a%20customized%20version%20of%20FreeBSD%20-%20Boris%20Astardzhiev.mp4" rel="nofollow noopener">Smartcom’s control plane software, a customized version of FreeBSD</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Michał Dubiel, <a href="https://va.ludost.net/files/eurobsdcon/2014/Rodopi/04.Sunday/03.OpenStack%20and%20OpenContrail%20for%20FreeBSD%20platform%20-%20Micha%c5%82%20Dubiel.mp4" rel="nofollow noopener">OpenStack and OpenContrail for FreeBSD platform</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Martin Husemann &amp; Joerg Sonnenberger, <a href="https://va.ludost.net/files/eurobsdcon/2014/Rodopi/04.Sunday/04.(Tool-)chaining%20the%20Hydra%20The%20ongoing%20quest%20for%20modern%20toolchains%20in%20NetBSD%20-%20Martin%20Huseman%20&amp;%20Joerg%20Sonnenberger.mp4" rel="nofollow noopener">Tool-chaining the Hydra, the ongoing quest for modern toolchains in NetBSD</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Taylor R Campbell, <a href="https://va.ludost.net/files/eurobsdcon/2014/Rodopi/04.Sunday/05.The%20entropic%20principle:%20dev-u%3frandom%20and%20NetBSD%20-%20Taylor%20R%20Campbell.mp4" rel="nofollow noopener">The entropic principle: /dev/u?random and NetBSD</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Dag-Erling Smørgrav, <a href="https://va.ludost.net/files/eurobsdcon/2014/Rodopi/04.Sunday/06.Securing%20sensitive%20&amp;%20restricted%20data%20-%20Dag-Erling%20Sm%c3%b8rgrav.mp4" rel="nofollow noopener">Securing sensitive &amp; restricted data</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Peter Hansteen, <a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/01.Thursday/01.Building%20The%20Network%20You%20Need%20With%20PF%20-%20Peter%20Hansteen.mp4" rel="nofollow noopener">Building The Network You Need</a> <a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/01.Thursday/02.Building%20The%20Network%20You%20Need%20With%20PF%20-%20Peter%20Hansteen.mp4" rel="nofollow noopener">With PF</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Stefan Sperling, <a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/01.Thursday/03.Subversion%20for%20FreeBSD%20developers%20-%20Stefan%20Sperling.mp4" rel="nofollow noopener">Subversion for FreeBSD developers</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Peter Hansteen, <a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/02.Friday/01.Transition%20to%20OpenBSD%205.6%20-%20Peter%20Hansteen.mp4" rel="nofollow noopener">Transition to</a> <a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/02.Friday/02.Transition%20to%20OpenBSD%205.6%20-%20Peter%20Hansteen.mp4" rel="nofollow noopener">OpenBSD 5.6</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Ingo Schwarze, <a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/02.Friday/03.Let%e2%80%99s%20make%20manuals%20more%20useful%20-%20Ingo%20Schwarze.mp4" rel="nofollow noopener">Let’s make manuals</a> <a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/02.Friday/04.Let%e2%80%99s%20make%20manuals%20more%20useful%20-%20Ingo%20Schwarze.mp4" rel="nofollow noopener">more useful</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Francois Tigeot, <a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/03.Saturday/01.Improving%20DragonFly%e2%80%99s%20performance%20with%20PostgreSQL%20-%20Francois%20Tigeot.mp4" rel="nofollow noopener">Improving DragonFly’s performance with PostgreSQL</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Justin Cormack, <a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/03.Saturday/02.Running%20Applications%20on%20the%20NetBSD%20Rump%20Kernel%20-%20Justin%20Cormack.mp4" rel="nofollow noopener">Running Applications on the NetBSD Rump Kernel</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Pierre Pronchery, <a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/03.Saturday/04.EdgeBSD,%20a%20year%20later%20-%20%20Pierre%20Pronchery.mp4" rel="nofollow noopener">EdgeBSD, a year later</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Peter Hessler, <a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/03.Saturday/05.Using%20routing%20domains%20or%20tables%20in%20a%20production%20network%20-%20%20Peter%20Hessler.mp4" rel="nofollow noopener">Using routing domains or tables in a production network</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Sean Bruno, <a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/03.Saturday/06.QEMU%20user%20mode%20on%20FreeBSD%20-%20%20Sean%20Bruno.mp4" rel="nofollow noopener">QEMU user mode on FreeBSD</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Kristaps Dzonsons, <a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/04.Sunday/01.Bugs%20Ex%20Ante%20-%20Kristaps%20Dzonsons.mp4" rel="nofollow noopener">Bugs Ex Ante</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Yann Sionneau, <a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/04.Sunday/02.Porting%20NetBSD%20to%20the%20LatticeMico32%20open%20source%20CPU%20-%20Yann%20Sionneau.mp4" rel="nofollow noopener">Porting NetBSD to the LatticeMico32 open source CPU</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Alexander Nasonov, <a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/04.Sunday/03.JIT%20Code%20Generator%20for%20NetBSD%20-%20Alexander%20Nasonov.mp4" rel="nofollow noopener">JIT Code Generator for NetBSD</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Masao Uebayashi, <a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/04.Sunday/04.Porting%20Valgrind%20to%20NetBSD%20and%20OpenBSD%20-%20Masao%20Uebayashi.mp4" rel="nofollow noopener">Porting Valgrind to NetBSD and OpenBSD</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Marc Espie, <a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/04.Sunday/05.parallel%20make:%20working%20with%20legacy%20code%20-%20Marc%20Espie.mp4" rel="nofollow noopener">parallel make, working with legacy code</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Francois Tigeot, <a href="https://va.ludost.net/files/eurobsdcon/2014/Pirin/04.Sunday/06.Porting%20the%20drm-kms%20graphic%20drivers%20to%20DragonFly%20-%20Francois%20Tigeot.mp4" rel="nofollow noopener">Porting the drm-kms graphic drivers to DragonFly</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li><strong>The following talks (from the Vitosha track room) are all currently missing:</strong></li>
<li>Jordan Hubbard, FreeBSD, Looking forward to another 10 years (but we have another recording)</li>
<li>Theo de Raadt, Randomness, how arc4random has grown since 1998 (but we have another recording)</li>
<li>Kris Moore, Snapshots, Replication, and Boot-Environments</li>
<li>Kirk McKusick, An Introduction to the Implementation of ZFS</li>
<li>John-Mark Gurney, Optimizing GELI Performance</li>
<li>Emmanuel Dreyfus, FUSE and beyond, bridging filesystems</li>
<li>Lourival Vieira Neto, NPF scripting with Lua</li>
<li>Andy Tanenbaum, A Reimplementation of NetBSD Based on a Microkernel</li>
<li>Stefano Garzarella, Software segmentation offloading for FreeBSD</li>
<li>Ted Unangst, LibreSSL</li>
<li>Shawn Webb, Introducing ASLR In FreeBSD</li>
<li>Ed Maste, The LLDB Debugger in FreeBSD</li>
<li>Philip Guenther, Secure lazy binding
***</li>
</ul>

<h3><a href="https://www.marc.info/?l=openbsd-tech&amp;m=141614801713457&amp;w=2" rel="nofollow noopener">OpenBSD adopts SipHash</a></h3>

<ul>
<li>Even more DJB crypto somehow finds its way into OpenBSD's base system</li>
<li>This time it's <a href="https://131002.net/siphash/" rel="nofollow noopener">SipHash</a>, a family of pseudorandom functions that's resistant to hash bucket flooding attacks while still providing good performance</li>
<li>After an <a href="http://cvsweb.openbsd.org/cgi-bin/cvsweb/src/sys/crypto/siphash.c?rev=1.1&amp;content-type=text/x-cvsweb-markup" rel="nofollow noopener">initial import</a> and some <a href="https://www.marc.info/?l=openbsd-cvs&amp;m=141604896822253&amp;w=2" rel="nofollow noopener">clever early usage</a>, a few developers agreed that it would be better to use it in a lot more places</li>
<li>It will now be used in the filesystem, and the plan is to utilize it to protect <strong>all kernel hash functions</strong></li>
<li>Some <a href="http://www.bsdnow.tv/episodes/2013_12_18-cryptocrystalline" rel="nofollow noopener">other places</a> that Bernstein's work can be found in OpenBSD include the ChaCha20-Poly1305 authenticated stream cipher and Curve25519 KEX used in SSH, ChaCha20 used in the RNG, and Ed25519 keys used in <a href="http://www.bsdnow.tv/episodes/2014_02_05-time_signatures" rel="nofollow noopener">signify</a> and SSH
***</li>
</ul>

<h3><a href="https://www.freebsd.org/releases/10.1R/announce.html" rel="nofollow noopener">FreeBSD 10.1-RELEASE</a></h3>

<ul>
<li>FreeBSD's <a href="http://www.bsdnow.tv/episodes/2013-09-11_engineering_powder_kegs" rel="nofollow noopener">release engineering team</a> likes to troll us by uploading new versions just a few hours after we finish recording an episode</li>
<li>The first maintenance update for the 10.x branch is out, improving upon a lot of things found in 10.0-RELEASE</li>
<li>The vt driver was merged from -CURRENT and can now be enabled with a loader.conf switch (and can even be used on a PlayStation 3)</li>
<li>Bhyve has gotten quite a lot of fixes and improvements from its initial debut in 10.0, including boot support for ZFS</li>
<li>Lots of new ARM hardware is supported now, including SMP support for most of them</li>
<li>A new kernel selection menu was added to the loader, so you can switch between newer and older kernels at boot time</li>
<li>10.1 is the first to support UEFI booting on amd64, which also has serial console support now</li>
<li>Lots of third party software (OpenSSH, OpenSSL, Unbound..) and drivers have gotten updates to newer versions</li>
<li>It's a worthy update from 10.0, or a good time to try the 10.x branch if you were avoiding the first .0 release, so <a href="http://ftp.freebsd.org/pub/FreeBSD/ISO-IMAGES-amd64/10.1/" rel="nofollow noopener">grab an ISO</a> or <a href="https://www.freebsd.org/cgi/man.cgi?query=freebsd-update" rel="nofollow noopener">upgrade</a> today</li>
<li>Check the <a href="https://www.freebsd.org/releases/10.1R/relnotes.html" rel="nofollow noopener">detailed release notes</a> for more information on all the changes</li>
<li>Also take a look at some of the <a href="https://www.freebsd.org/releases/10.1R/errata.html#open-issues" rel="nofollow noopener">known problems</a> to see <a href="https://forums.freebsd.org/threads/segmentation-fault-while-upgrading-from-10-0-release-to-10-1-release.48977/" rel="nofollow noopener">if</a> <a href="https://lists.freebsd.org/pipermail/freebsd-stable/2014-October/080599.html" rel="nofollow noopener">you'll</a> <a href="https://forums.freebsd.org/threads/10-0-10-1-diocaddrule-operation-not-supported-by-device.49016/" rel="nofollow noopener">be</a> <a href="https://www.reddit.com/r/freebsd/comments/2mmzzy/101release_restart_problems_anyone/" rel="nofollow noopener">affected</a> by any of them</li>
<li>PC-BSD was also <a href="http://wiki.pcbsd.org/index.php/What%27s_New/10.1" rel="nofollow noopener">updated accordingly</a> with some of their own unique features and changes
***</li>
</ul>

<h3><a href="https://www.youtube.com/watch?v=aWmLWx8ut20" rel="nofollow noopener">arc4random - Randomization for All Occasions</a></h3>

<ul>
<li>Theo de Raadt gave an updated version of his EuroBSDCon presentation at Hackfest 2014 in Quebec</li>
<li>The presentation is mainly about OpenBSD's arc4random function, and outlines the overall poor state of randomization in the 90s and how it has evolved in OpenBSD over time</li>
<li>It begins with some interesting history on OpenBSD and how it became a security-focused OS - in 1996, their syslogd got broken into and "suddenly we became interested in security"</li>
<li>The talk also touches on how low-level changes can shake up the software ecosystem and third party packages that everyone uses</li>
<li>There's some funny history on the name of the function (being called arc4random despite not using RC4 anymore) and an overall status update on various platforms' usage of it</li>
<li>Very detailed and informative presentation, and the slides can be found <a href="http://www.openbsd.org/papers/hackfest2014-arc4random/index.html" rel="nofollow noopener">here</a></li>
<li>A great quote from the beginning: "We consider ourselves a community of (probably rather strange) people who work on software specifically for the purpose of trying to make it better. We take a 'whole-systems' approach: trying to change everything in the ecosystem that's under our control, trying to see if we can make it better. We gain a lot of strength by being able to throw backwards compatibility out the window. So that means that we're able to do research and the minute that we decide that something isn't right, we'll design an alternative for it and push it in. And if it ends up breaking everybody's machines from the previous stage to the next stage, that's fine because we'll end up in a happier place."
***</li>
</ul>

<h2>Interview - Justin Cormack - <a href="mailto:justin@netbsd.org" rel="nofollow noopener">justin@netbsd.org</a> / <a href="https://twitter.com/justincormack" rel="nofollow noopener">@justincormack</a></h2>

<p>NetBSD on Xen, rump kernels, various topics</p>

<hr>

<h2>News Roundup</h2>

<h3><a href="http://freebsdfoundation.blogspot.com/2014/11/freebsd-foundation-announces-generous.html" rel="nofollow noopener">The FreeBSD foundation's biggest donation</a></h3>

<ul>
<li>The FreeBSD foundation has a new blog post about the largest donation they've ever gotten</li>
<li>From the CEO of WhatsApp comes a whopping one million dollars in a single donation</li>
<li>It also has some comments from the donor about why they use BSD and why it's important to give back</li>
<li>Be sure to donate to the foundation of whatever BSD you use when you can - every little bit helps, especially for <a href="http://www.openbsd.org/donations.html" rel="nofollow noopener">OpenBSD</a>, <a href="https://www.netbsd.org/donations/" rel="nofollow noopener">NetBSD</a> and <a href="http://www.dragonflybsd.org/donations/" rel="nofollow noopener">DragonFly</a> who don't have huge companies supporting them regularly like FreeBSD does
***</li>
</ul>

<h3><a href="http://open-zfs.org/wiki/OpenZFS_Developer_Summit" rel="nofollow noopener">OpenZFS Dev Summit 2014 videos</a></h3>

<ul>
<li>Videos from the recent OpenZFS developer summit are being uploaded, with speakers from different represented platforms and companies
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li><a href="http://www.bsdnow.tv/episodes/2014_05_14-bsdcanned_goods" rel="nofollow noopener">Matt Ahrens</a>, <a href="https://www.youtube.com/watch?v=XnTzbisLYzg" rel="nofollow noopener">opening keynote</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Raphael Carvalho, <a href="https://www.youtube.com/watch?v=TJLOBLSRoHE" rel="nofollow noopener">Platform Overview: ZFS on OSv</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Brian Behlendorf, <a href="https://www.youtube.com/watch?v=_MVOpMNV7LY" rel="nofollow noopener">Platform Overview: ZFS on Linux</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Prakash Surya, <a href="https://www.youtube.com/watch?v=UtlGt3ag0o0" rel="nofollow noopener">Platform Overview: illumos</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Xin Li, <a href="https://www.youtube.com/watch?v=xO0x5_3A1X4" rel="nofollow noopener">Platform Overview: FreeBSD</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>All platforms, <a href="https://www.youtube.com/watch?v=t4UlT0RmSCc" rel="nofollow noopener">Group Q&amp;A Session</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Dave Pacheco, <a href="https://www.youtube.com/watch?v=BEoCMpdB8WU" rel="nofollow noopener">Manta</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Saso Kiselkov, <a href="https://www.youtube.com/watch?v=TZF92taa_us" rel="nofollow noopener">Compression</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li><a href="http://www.bsdnow.tv/episodes/2013_12_04-zettabytes_for_days" rel="nofollow noopener">George Wilson</a>, <a href="https://www.youtube.com/watch?v=deJc0EMKrM4" rel="nofollow noopener">Performance</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Tim Feldman, <a href="https://www.youtube.com/watch?v=b1yqjV8qemU" rel="nofollow noopener">Host-Aware SMR</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Pavel Zakharov, <a href="https://www.youtube.com/watch?v=-4c4gsLi1LI" rel="nofollow noopener">Fast File Cloning</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>The audio is <a href="https://twitter.com/OpenZFS/status/534005125853888512" rel="nofollow noopener">pretty poor</a> on all of them unfortunately
***</li>
</ul>

<h3><a href="http://bsdtalk.blogspot.com/2014/11/bsdtalk248-dragonflybsd-with-matthew.html" rel="nofollow noopener">BSDTalk 248</a></h3>

<ul>
<li>Our friend Will Backman is still busy getting BSD interviews as well</li>
<li>This time he sits down with Matthew Dillon, the lead developer of DragonFly BSD</li>
<li>We've never had Dillon on the show, so you'll definitely want to give this one a listen</li>
<li>They mainly discuss all the big changes coming in DragonFly's upcoming 4.0 release
***</li>
</ul>

<h3><a href="https://www.meetbsd.com/" rel="nofollow noopener">MeetBSD 2014 videos</a></h3>

<ul>
<li>The presentations from this year's MeetBSD conference are starting to appear online as well
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li><a href="http://www.bsdnow.tv/episodes/2013-10-02_stacks_of_cache" rel="nofollow noopener">Kirk McKusick</a>, <a href="https://www.youtube.com/watch?v=DEEr6dT-4uQ" rel="nofollow noopener">A Narrative History of BSD</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li><a href="http://www.bsdnow.tv/episodes/2013_11_27-bridging_the_gap" rel="nofollow noopener">Jordan Hubbard</a>, <a href="https://www.youtube.com/watch?v=Mri66Uz6-8Y" rel="nofollow noopener">FreeBSD: The Next 10 Years</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>Brendan Gregg, <a href="https://www.youtube.com/watch?v=uvKMptfXtdo" rel="nofollow noopener">Performance Analysis</a>
&lt;!-- i wonder if freebsdnews will rip our html again and repost it <sup>_^</sup> --&gt;</li>
<li>The slides can be found <a href="https://www.meetbsd.com/agenda/" rel="nofollow noopener">here</a> 
***</li>
</ul>

<h2>Feedback/Questions</h2>

<ul>
<li><a href="http://slexy.org/view/s20PXjp55N" rel="nofollow noopener">Dominik writes in</a></li>
<li><a href="http://slexy.org/view/s2LwEYT3bA" rel="nofollow noopener">Steven writes in</a></li>
<li><a href="http://slexy.org/view/s2ubK8vQVt" rel="nofollow noopener">Florian writes in</a></li>
<li><a href="http://slexy.org/view/s216Eq8nFG" rel="nofollow noopener">Richard writes in</a></li>
<li><a href="http://slexy.org/view/s21D2ugDUy" rel="nofollow noopener">Kevin writes in</a>
***</li>
</ul>

<h2>Mailing List Gold</h2>

<ul>
<li><a href="https://www.marc.info/?t=141600819500004&amp;r=1&amp;w=2" rel="nofollow noopener">Contributing without code</a></li>
<li><a href="https://lists.mindrot.org/pipermail/openssh-unix-dev/2014-November/033176.html" rel="nofollow noopener">Compression isn't a CRIME</a></li>
<li><a href="https://www.marc.info/?t=141616714600001&amp;r=1&amp;w=2" rel="nofollow noopener">Securing web browsers</a>
***</li>
</ul>]]>
  </itunes:summary>
</item>
<item>
  <title>57: The Daemon's Apprentice</title>
  <link>https://www.bsdnow.tv/57</link>
  <guid isPermaLink="false">fe6cb8d4-b1ab-4260-a466-435ed66e003f</guid>
  <pubDate>Wed, 01 Oct 2014 08:00:00 -0400</pubDate>
  <author>JT Pennington</author>
  <enclosure url="https://aphid.fireside.fm/d/1437767933/c91b88f1-e824-4815-bcb8-5227818d6010/fe6cb8d4-b1ab-4260-a466-435ed66e003f.mp3" length="65007508" type="audio/mpeg"/>
  <itunes:episodeType>full</itunes:episodeType>
  <itunes:author>JT Pennington</itunes:author>
  <itunes:subtitle>We're back from EuroBSDCon! This week we'll be talking with Steve Wills about mentoring new BSD developers. If you've ever considered becoming a developer or helping out, it's actually really easy to get involved. We've also got all the BSD news for the week and answers to your emails, on BSD Now - the place to B.. SD.</itunes:subtitle>
  <itunes:duration>1:30:17</itunes:duration>
  <itunes:explicit>no</itunes:explicit>
  <itunes:image href="https://media24.fireside.fm/file/fireside-images-2024/podcasts/images/c/c91b88f1-e824-4815-bcb8-5227818d6010/cover.jpg?v=4"/>
  <description>&lt;p&gt;We're back from EuroBSDCon! This week we'll be talking with Steve Wills about mentoring new BSD developers. If you've ever considered becoming a developer or helping out, it's actually really easy to get involved. We've also got all the BSD news for the week and answers to your emails, on BSD Now - the place to B.. SD.&lt;/p&gt;

&lt;h2&gt;This episode was brought to you by&lt;/h2&gt;

&lt;p&gt;&lt;a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"&gt;&lt;img src="/images/iXlogo2.png" alt="iXsystems - Enterprise servers and storage for open source"&gt;&lt;/a&gt;&lt;a href="http://www.tarsnap.com/bsdnow" title="Tarsnap" rel="nofollow noopener"&gt;&lt;img src="/images/tarsnap1.png" alt="Tarsnap - online backups for the truly paranoid"&gt;&lt;/a&gt;&lt;/p&gt;

&lt;hr&gt;

&lt;h2&gt;Headlines&lt;/h2&gt;

&lt;h3&gt;&lt;a href="http://mail-index.netbsd.org/netbsd-advocacy/2014/09/26/msg000669.html" rel="nofollow noopener"&gt;NetBSD at Hiroshima Open Source Conference&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;NetBSD developers are hard at work, putting NetBSD on everything they can find&lt;/li&gt;
&lt;li&gt;At a technology conference in Hiroshima, some developers brought their exotic machines to put on display&lt;/li&gt;
&lt;li&gt;As usual, there are lots of pictures and a nice report from the conference
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="https://svnweb.freebsd.org/ports?limit_changes=0&amp;amp;view=revision&amp;amp;revision=368845" rel="nofollow noopener"&gt;FreeBSD's Linux emulation overhaul&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;For a long time, FreeBSD's emulation layer has been based on an ancient Fedora 10 system&lt;/li&gt;
&lt;li&gt;If you've ever needed to install Adobe Flash on BSD, you'll be stuck with all this extra junk&lt;/li&gt;
&lt;li&gt;With some recent work, that's been replaced with a recent CentOS release&lt;/li&gt;
&lt;li&gt;This opens up the door for newer versions of Skype to run on FreeBSD, and maybe even Steam someday
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="https://blog.pfsense.org/?p=1449" rel="nofollow noopener"&gt;pfSense 2.2-BETA&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Big changes are coming in pfSense land, with their upcoming 2.2 release&lt;/li&gt;
&lt;li&gt;We &lt;a href="http://www.bsdnow.tv/episodes/2014_02_19-a_sixth_pfsense" rel="nofollow noopener"&gt;talked to the developer&lt;/a&gt; a while back about future plans, and now they're finally out there&lt;/li&gt;
&lt;li&gt;The 2.2 branch will be based on FreeBSD 10-STABLE (instead of 8.3) and include lots of performance fixes&lt;/li&gt;
&lt;li&gt;It also includes some security updates, lots of package changes and updates and much more&lt;/li&gt;
&lt;li&gt;You can check the &lt;a href="https://doc.pfsense.org/index.php/2.2_New_Features_and_Changes" rel="nofollow noopener"&gt;full list of changes&lt;/a&gt; on their wiki
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://www.cambus.net/netbsd-on-the-raspberry-pi/" rel="nofollow noopener"&gt;NetBSD on the Raspberry Pi&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;This article shows how you can install NetBSD on the ever-so-popular Raspberry Pi&lt;/li&gt;
&lt;li&gt;As of right now, you'll need to use a -CURRENT snapshot to do it&lt;/li&gt;
&lt;li&gt;It also shows how to grow the filesystem to fill up an SD card, some pkgsrc basics and how to get some initial things set up&lt;/li&gt;
&lt;li&gt;Can anyone find something that you can't install NetBSD on?
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;Interview - Steve Wills - &lt;a href="mailto:swills@freebsd.org" rel="nofollow noopener"&gt;swills@freebsd.org&lt;/a&gt; / &lt;a href="https://twitter.com/swills" rel="nofollow noopener"&gt;@swills&lt;/a&gt;&lt;/h2&gt;

&lt;p&gt;Mentoring new BSD developers&lt;/p&gt;

&lt;hr&gt;

&lt;h2&gt;News Roundup&lt;/h2&gt;

&lt;h3&gt;&lt;a href="http://www.midnightbsd.org/notes/" rel="nofollow noopener"&gt;MidnightBSD 0.5 released&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;We don't hear a whole lot about MidnightBSD, but they've just released version 0.5&lt;/li&gt;
&lt;li&gt;It's got a round of the latest FreeBSD security patches, driver updates and various small things&lt;/li&gt;
&lt;li&gt;Maybe one of their developers could come on the show sometime and tell us more about the project
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://sourceforge.net/projects/bsdrp/files/BSD_Router_Project/1.52/" rel="nofollow noopener"&gt;BSD Router Project 1.52 released&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;The newest update for the BSD Router Project is out&lt;/li&gt;
&lt;li&gt;This version is based on a snapshot of 10-STABLE that's very close to 10.1-RELEASE&lt;/li&gt;
&lt;li&gt;It's mostly a bugfix release, but includes some small changes and package updates
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://www.dragonflydigest.com/2014/09/19/14751.html" rel="nofollow noopener"&gt;Configuring a DragonFly BSD desktop&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;We've done tutorials on how to set up a FreeBSD or OpenBSD desktop, but maybe you're more interested in DragonFly&lt;/li&gt;
&lt;li&gt;In this post from Justin Sherrill, you'll learn some of the steps to do just that&lt;/li&gt;
&lt;li&gt;He pulled out an old desktop machine, gave it a try and seems to be pleased with the results&lt;/li&gt;
&lt;li&gt;It includes a few Xorg tips, and there are some comments about the possibility of making a GUI DragonFly installer
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://pakitong.blogspot.com/2014/09/jetway-j7f2-four-lan-mini-itx-for.html" rel="nofollow noopener"&gt;Building a mini-ITX pfSense box&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Another week, another pfSense firewall build post&lt;/li&gt;
&lt;li&gt;This time, the author is installing to a Jetway J7F2, a mini-ITX device with four LAN ports&lt;/li&gt;
&lt;li&gt;He used to be a m0n0wall guy, but wanted to give the more modern pfSense a try&lt;/li&gt;
&lt;li&gt;Lots of great pictures of the hardware, which we always love
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;Feedback/Questions&lt;/h2&gt;

&lt;ul&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s2184TfOKD" rel="nofollow noopener"&gt;Damian writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s20uAdTwLv" rel="nofollow noopener"&gt;Jan writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s20es52IgZ" rel="nofollow noopener"&gt;Dale writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s2mjulpac6" rel="nofollow noopener"&gt;Joe writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s2BvNC8cgi" rel="nofollow noopener"&gt;Bostjan writes in&lt;/a&gt;
*** &lt;/li&gt;
&lt;/ul&gt;
</description>
  <itunes:keywords>freebsd, openbsd, netbsd, dragonflybsd, pcbsd, tutorial, howto, guide, bsd, interview, eurobsdcon, 2014, presentation, talk, steve wills, mentoring, developers, community, ports, bsdrp, bash, linux, exploit, pfsense, devsummit, shellshock</itunes:keywords>
  <content:encoded>
    <![CDATA[<p>We're back from EuroBSDCon! This week we'll be talking with Steve Wills about mentoring new BSD developers. If you've ever considered becoming a developer or helping out, it's actually really easy to get involved. We've also got all the BSD news for the week and answers to your emails, on BSD Now - the place to B.. SD.</p>

<h2>This episode was brought to you by</h2>

<p><a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"><img src="/images/iXlogo2.png" alt="iXsystems - Enterprise servers and storage for open source"></a><a href="http://www.tarsnap.com/bsdnow" title="Tarsnap" rel="nofollow noopener"><img src="/images/tarsnap1.png" alt="Tarsnap - online backups for the truly paranoid"></a></p>

<hr>

<h2>Headlines</h2>

<h3><a href="http://mail-index.netbsd.org/netbsd-advocacy/2014/09/26/msg000669.html" rel="nofollow noopener">NetBSD at Hiroshima Open Source Conference</a></h3>

<ul>
<li>NetBSD developers are hard at work, putting NetBSD on everything they can find</li>
<li>At a technology conference in Hiroshima, some developers brought their exotic machines to put on display</li>
<li>As usual, there are lots of pictures and a nice report from the conference
***</li>
</ul>

<h3><a href="https://svnweb.freebsd.org/ports?limit_changes=0&amp;view=revision&amp;revision=368845" rel="nofollow noopener">FreeBSD's Linux emulation overhaul</a></h3>

<ul>
<li>For a long time, FreeBSD's emulation layer has been based on an ancient Fedora 10 system</li>
<li>If you've ever needed to install Adobe Flash on BSD, you'll be stuck with all this extra junk</li>
<li>With some recent work, that's been replaced with a recent CentOS release</li>
<li>This opens up the door for newer versions of Skype to run on FreeBSD, and maybe even Steam someday
***</li>
</ul>

<h3><a href="https://blog.pfsense.org/?p=1449" rel="nofollow noopener">pfSense 2.2-BETA</a></h3>

<ul>
<li>Big changes are coming in pfSense land, with their upcoming 2.2 release</li>
<li>We <a href="http://www.bsdnow.tv/episodes/2014_02_19-a_sixth_pfsense" rel="nofollow noopener">talked to the developer</a> a while back about future plans, and now they're finally out there</li>
<li>The 2.2 branch will be based on FreeBSD 10-STABLE (instead of 8.3) and include lots of performance fixes</li>
<li>It also includes some security updates, lots of package changes and updates and much more</li>
<li>You can check the <a href="https://doc.pfsense.org/index.php/2.2_New_Features_and_Changes" rel="nofollow noopener">full list of changes</a> on their wiki
***</li>
</ul>

<h3><a href="http://www.cambus.net/netbsd-on-the-raspberry-pi/" rel="nofollow noopener">NetBSD on the Raspberry Pi</a></h3>

<ul>
<li>This article shows how you can install NetBSD on the ever-so-popular Raspberry Pi</li>
<li>As of right now, you'll need to use a -CURRENT snapshot to do it</li>
<li>It also shows how to grow the filesystem to fill up an SD card, some pkgsrc basics and how to get some initial things set up</li>
<li>Can anyone find something that you can't install NetBSD on?
***</li>
</ul>

<h2>Interview - Steve Wills - <a href="mailto:swills@freebsd.org" rel="nofollow noopener">swills@freebsd.org</a> / <a href="https://twitter.com/swills" rel="nofollow noopener">@swills</a></h2>

<p>Mentoring new BSD developers</p>

<hr>

<h2>News Roundup</h2>

<h3><a href="http://www.midnightbsd.org/notes/" rel="nofollow noopener">MidnightBSD 0.5 released</a></h3>

<ul>
<li>We don't hear a whole lot about MidnightBSD, but they've just released version 0.5</li>
<li>It's got a round of the latest FreeBSD security patches, driver updates and various small things</li>
<li>Maybe one of their developers could come on the show sometime and tell us more about the project
***</li>
</ul>

<h3><a href="http://sourceforge.net/projects/bsdrp/files/BSD_Router_Project/1.52/" rel="nofollow noopener">BSD Router Project 1.52 released</a></h3>

<ul>
<li>The newest update for the BSD Router Project is out</li>
<li>This version is based on a snapshot of 10-STABLE that's very close to 10.1-RELEASE</li>
<li>It's mostly a bugfix release, but includes some small changes and package updates
***</li>
</ul>

<h3><a href="http://www.dragonflydigest.com/2014/09/19/14751.html" rel="nofollow noopener">Configuring a DragonFly BSD desktop</a></h3>

<ul>
<li>We've done tutorials on how to set up a FreeBSD or OpenBSD desktop, but maybe you're more interested in DragonFly</li>
<li>In this post from Justin Sherrill, you'll learn some of the steps to do just that</li>
<li>He pulled out an old desktop machine, gave it a try and seems to be pleased with the results</li>
<li>It includes a few Xorg tips, and there are some comments about the possibility of making a GUI DragonFly installer
***</li>
</ul>

<h3><a href="http://pakitong.blogspot.com/2014/09/jetway-j7f2-four-lan-mini-itx-for.html" rel="nofollow noopener">Building a mini-ITX pfSense box</a></h3>

<ul>
<li>Another week, another pfSense firewall build post</li>
<li>This time, the author is installing to a Jetway J7F2, a mini-ITX device with four LAN ports</li>
<li>He used to be a m0n0wall guy, but wanted to give the more modern pfSense a try</li>
<li>Lots of great pictures of the hardware, which we always love
***</li>
</ul>

<h2>Feedback/Questions</h2>

<ul>
<li><a href="http://slexy.org/view/s2184TfOKD" rel="nofollow noopener">Damian writes in</a></li>
<li><a href="http://slexy.org/view/s20uAdTwLv" rel="nofollow noopener">Jan writes in</a></li>
<li><a href="http://slexy.org/view/s20es52IgZ" rel="nofollow noopener">Dale writes in</a></li>
<li><a href="http://slexy.org/view/s2mjulpac6" rel="nofollow noopener">Joe writes in</a></li>
<li><a href="http://slexy.org/view/s2BvNC8cgi" rel="nofollow noopener">Bostjan writes in</a>
***</li>
</ul>]]>
  </content:encoded>
  <itunes:summary>
    <![CDATA[<p>We're back from EuroBSDCon! This week we'll be talking with Steve Wills about mentoring new BSD developers. If you've ever considered becoming a developer or helping out, it's actually really easy to get involved. We've also got all the BSD news for the week and answers to your emails, on BSD Now - the place to B.. SD.</p>

<h2>This episode was brought to you by</h2>

<p><a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"><img src="/images/iXlogo2.png" alt="iXsystems - Enterprise servers and storage for open source"></a><a href="http://www.tarsnap.com/bsdnow" title="Tarsnap" rel="nofollow noopener"><img src="/images/tarsnap1.png" alt="Tarsnap - online backups for the truly paranoid"></a></p>

<hr>

<h2>Headlines</h2>

<h3><a href="http://mail-index.netbsd.org/netbsd-advocacy/2014/09/26/msg000669.html" rel="nofollow noopener">NetBSD at Hiroshima Open Source Conference</a></h3>

<ul>
<li>NetBSD developers are hard at work, putting NetBSD on everything they can find</li>
<li>At a technology conference in Hiroshima, some developers brought their exotic machines to put on display</li>
<li>As usual, there are lots of pictures and a nice report from the conference
***</li>
</ul>

<h3><a href="https://svnweb.freebsd.org/ports?limit_changes=0&amp;view=revision&amp;revision=368845" rel="nofollow noopener">FreeBSD's Linux emulation overhaul</a></h3>

<ul>
<li>For a long time, FreeBSD's emulation layer has been based on an ancient Fedora 10 system</li>
<li>If you've ever needed to install Adobe Flash on BSD, you'll be stuck with all this extra junk</li>
<li>With some recent work, that's been replaced with a recent CentOS release</li>
<li>This opens up the door for newer versions of Skype to run on FreeBSD, and maybe even Steam someday
***</li>
</ul>

<h3><a href="https://blog.pfsense.org/?p=1449" rel="nofollow noopener">pfSense 2.2-BETA</a></h3>

<ul>
<li>Big changes are coming in pfSense land, with their upcoming 2.2 release</li>
<li>We <a href="http://www.bsdnow.tv/episodes/2014_02_19-a_sixth_pfsense" rel="nofollow noopener">talked to the developer</a> a while back about future plans, and now they're finally out there</li>
<li>The 2.2 branch will be based on FreeBSD 10-STABLE (instead of 8.3) and include lots of performance fixes</li>
<li>It also includes some security updates, lots of package changes and updates and much more</li>
<li>You can check the <a href="https://doc.pfsense.org/index.php/2.2_New_Features_and_Changes" rel="nofollow noopener">full list of changes</a> on their wiki
***</li>
</ul>

<h3><a href="http://www.cambus.net/netbsd-on-the-raspberry-pi/" rel="nofollow noopener">NetBSD on the Raspberry Pi</a></h3>

<ul>
<li>This article shows how you can install NetBSD on the ever-so-popular Raspberry Pi</li>
<li>As of right now, you'll need to use a -CURRENT snapshot to do it</li>
<li>It also shows how to grow the filesystem to fill up an SD card, some pkgsrc basics and how to get some initial things set up</li>
<li>Can anyone find something that you can't install NetBSD on?
***</li>
</ul>

<h2>Interview - Steve Wills - <a href="mailto:swills@freebsd.org" rel="nofollow noopener">swills@freebsd.org</a> / <a href="https://twitter.com/swills" rel="nofollow noopener">@swills</a></h2>

<p>Mentoring new BSD developers</p>

<hr>

<h2>News Roundup</h2>

<h3><a href="http://www.midnightbsd.org/notes/" rel="nofollow noopener">MidnightBSD 0.5 released</a></h3>

<ul>
<li>We don't hear a whole lot about MidnightBSD, but they've just released version 0.5</li>
<li>It's got a round of the latest FreeBSD security patches, driver updates and various small things</li>
<li>Maybe one of their developers could come on the show sometime and tell us more about the project
***</li>
</ul>

<h3><a href="http://sourceforge.net/projects/bsdrp/files/BSD_Router_Project/1.52/" rel="nofollow noopener">BSD Router Project 1.52 released</a></h3>

<ul>
<li>The newest update for the BSD Router Project is out</li>
<li>This version is based on a snapshot of 10-STABLE that's very close to 10.1-RELEASE</li>
<li>It's mostly a bugfix release, but includes some small changes and package updates
***</li>
</ul>

<h3><a href="http://www.dragonflydigest.com/2014/09/19/14751.html" rel="nofollow noopener">Configuring a DragonFly BSD desktop</a></h3>

<ul>
<li>We've done tutorials on how to set up a FreeBSD or OpenBSD desktop, but maybe you're more interested in DragonFly</li>
<li>In this post from Justin Sherrill, you'll learn some of the steps to do just that</li>
<li>He pulled out an old desktop machine, gave it a try and seems to be pleased with the results</li>
<li>It includes a few Xorg tips, and there are some comments about the possibility of making a GUI DragonFly installer
***</li>
</ul>

<h3><a href="http://pakitong.blogspot.com/2014/09/jetway-j7f2-four-lan-mini-itx-for.html" rel="nofollow noopener">Building a mini-ITX pfSense box</a></h3>

<ul>
<li>Another week, another pfSense firewall build post</li>
<li>This time, the author is installing to a Jetway J7F2, a mini-ITX device with four LAN ports</li>
<li>He used to be a m0n0wall guy, but wanted to give the more modern pfSense a try</li>
<li>Lots of great pictures of the hardware, which we always love
***</li>
</ul>

<h2>Feedback/Questions</h2>

<ul>
<li><a href="http://slexy.org/view/s2184TfOKD" rel="nofollow noopener">Damian writes in</a></li>
<li><a href="http://slexy.org/view/s20uAdTwLv" rel="nofollow noopener">Jan writes in</a></li>
<li><a href="http://slexy.org/view/s20es52IgZ" rel="nofollow noopener">Dale writes in</a></li>
<li><a href="http://slexy.org/view/s2mjulpac6" rel="nofollow noopener">Joe writes in</a></li>
<li><a href="http://slexy.org/view/s2BvNC8cgi" rel="nofollow noopener">Bostjan writes in</a>
***</li>
</ul>]]>
  </itunes:summary>
</item>
<item>
  <title>49: The PC-BSD Tour</title>
  <link>https://www.bsdnow.tv/49</link>
  <guid isPermaLink="false">ccc19842-ae62-43a9-8f82-44f3f281de42</guid>
  <pubDate>Wed, 06 Aug 2014 08:00:00 -0400</pubDate>
  <author>JT Pennington</author>
  <enclosure url="https://aphid.fireside.fm/d/1437767933/c91b88f1-e824-4815-bcb8-5227818d6010/ccc19842-ae62-43a9-8f82-44f3f281de42.mp3" length="59661652" type="audio/mpeg"/>
  <itunes:episodeType>full</itunes:episodeType>
  <itunes:author>JT Pennington</itunes:author>
  <itunes:subtitle>Coming up this week on the show, we've got something special for you! We'll be giving you an in-depth look at all of the graphical PC-BSD utilities. That's right, BSD doesn't have to be commandline-only anymore! There's also the usual round of answers to your emails and all the latest headlines, on BSD Now - the place to B.. SD.</itunes:subtitle>
  <itunes:duration>1:22:51</itunes:duration>
  <itunes:explicit>no</itunes:explicit>
  <itunes:image href="https://media24.fireside.fm/file/fireside-images-2024/podcasts/images/c/c91b88f1-e824-4815-bcb8-5227818d6010/cover.jpg?v=4"/>
  <description>&lt;p&gt;Coming up this week on the show, we've got something special for you! We'll be giving you an in-depth look at all of the graphical PC-BSD utilities. That's right, BSD doesn't have to be commandline-only anymore! There's also the usual round of answers to your emails and all the latest headlines, on BSD Now - the place to B.. SD.&lt;/p&gt;

&lt;h2&gt;This episode was brought to you by&lt;/h2&gt;

&lt;p&gt;&lt;a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"&gt;&lt;img src="/images/iXlogo2.png" alt="iXsystems - Enterprise servers and storage for open source"&gt;&lt;/a&gt;&lt;a href="http://www.tarsnap.com/bsdnow" title="Tarsnap" rel="nofollow noopener"&gt;&lt;img src="/images/tarsnap1.png" alt="Tarsnap - online backups for the truly paranoid"&gt;&lt;/a&gt;&lt;/p&gt;

&lt;hr&gt;

&lt;h2&gt;Headlines&lt;/h2&gt;

&lt;h3&gt;&lt;a href="https://www.freebsdfoundation.org/press/2014jul-newsletter" rel="nofollow noopener"&gt;FreeBSD foundation semi-annual newsletter&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;The FreeBSD foundation published their semi-annual newsletter, complete with a letter from the president of the foundation&lt;/li&gt;
&lt;li&gt;"In fact after reading [the president's] letter, I was motivated to come up with my own elevator pitch instead of the usual FreeBSD is like Linux, only better!"&lt;/li&gt;
&lt;li&gt;It talks about the &lt;a href="http://www.bsdnow.tv/episodes/2014_01_29-journaled_news_updates" rel="nofollow noopener"&gt;FreeBSD journal&lt;/a&gt; as being one of the most exciting things they've launched this year, conferences they funded and various bits of sponsored code that went into -CURRENT&lt;/li&gt;
&lt;li&gt;The full list of funded projects is included, also with details in the financial reports&lt;/li&gt;
&lt;li&gt;There are also a number of conference wrap-ups: NYCBSDCon, BSDCan, AsiaBSDCon and details about the upcoming EuroBSDCon &lt;/li&gt;
&lt;/ul&gt;
</description>
  <itunes:keywords>freebsd, openbsd, netbsd, dragonflybsd, pcbsd, tutorial, howto, guide, bsd, interview, intel nuc, nuc, gui, ssl, tls, libressl, openssl, foundation, bafug, talk, presentation, recording, bhyve, libvirt, rss, netmap, opensmtpd</itunes:keywords>
  <content:encoded>
    <![CDATA[<p>Coming up this week on the show, we've got something special for you! We'll be giving you an in-depth look at all of the graphical PC-BSD utilities. That's right, BSD doesn't have to be commandline-only anymore! There's also the usual round of answers to your emails and all the latest headlines, on BSD Now - the place to B.. SD.</p>

<h2>This episode was brought to you by</h2>

<p><a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"><img src="/images/iXlogo2.png" alt="iXsystems - Enterprise servers and storage for open source"></a><a href="http://www.tarsnap.com/bsdnow" title="Tarsnap" rel="nofollow noopener"><img src="/images/tarsnap1.png" alt="Tarsnap - online backups for the truly paranoid"></a></p>

<hr>

<h2>Headlines</h2>

<h3><a href="https://www.freebsdfoundation.org/press/2014jul-newsletter" rel="nofollow noopener">FreeBSD foundation semi-annual newsletter</a></h3>

<ul>
<li>The FreeBSD foundation published their semi-annual newsletter, complete with a letter from the president of the foundation</li>
<li>"In fact after reading [the president's] letter, I was motivated to come up with my own elevator pitch instead of the usual FreeBSD is like Linux, only better!"</li>
<li>It talks about the <a href="http://www.bsdnow.tv/episodes/2014_01_29-journaled_news_updates" rel="nofollow noopener">FreeBSD journal</a> as being one of the most exciting things they've launched this year, conferences they funded and various bits of sponsored code that went into -CURRENT</li>
<li>The full list of funded projects is included, also with details in the financial reports</li>
<li>There are also a number of conference wrap-ups: NYCBSDCon, BSDCan, AsiaBSDCon and details about the upcoming EuroBSDCon</li>
</ul>]]>
  </content:encoded>
  <itunes:summary>
    <![CDATA[<p>Coming up this week on the show, we've got something special for you! We'll be giving you an in-depth look at all of the graphical PC-BSD utilities. That's right, BSD doesn't have to be commandline-only anymore! There's also the usual round of answers to your emails and all the latest headlines, on BSD Now - the place to B.. SD.</p>

<h2>This episode was brought to you by</h2>

<p><a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"><img src="/images/iXlogo2.png" alt="iXsystems - Enterprise servers and storage for open source"></a><a href="http://www.tarsnap.com/bsdnow" title="Tarsnap" rel="nofollow noopener"><img src="/images/tarsnap1.png" alt="Tarsnap - online backups for the truly paranoid"></a></p>

<hr>

<h2>Headlines</h2>

<h3><a href="https://www.freebsdfoundation.org/press/2014jul-newsletter" rel="nofollow noopener">FreeBSD foundation semi-annual newsletter</a></h3>

<ul>
<li>The FreeBSD foundation published their semi-annual newsletter, complete with a letter from the president of the foundation</li>
<li>"In fact after reading [the president's] letter, I was motivated to come up with my own elevator pitch instead of the usual FreeBSD is like Linux, only better!"</li>
<li>It talks about the <a href="http://www.bsdnow.tv/episodes/2014_01_29-journaled_news_updates" rel="nofollow noopener">FreeBSD journal</a> as being one of the most exciting things they've launched this year, conferences they funded and various bits of sponsored code that went into -CURRENT</li>
<li>The full list of funded projects is included, also with details in the financial reports</li>
<li>There are also a number of conference wrap-ups: NYCBSDCon, BSDCan, AsiaBSDCon and details about the upcoming EuroBSDCon</li>
</ul>]]>
  </itunes:summary>
</item>
<item>
  <title>48: Liberating SSL</title>
  <link>https://www.bsdnow.tv/48</link>
  <guid isPermaLink="false">e0c8ab6b-dd19-4778-8dc2-4b02bd2ae809</guid>
  <pubDate>Wed, 30 Jul 2014 08:00:00 -0400</pubDate>
  <author>JT Pennington</author>
  <enclosure url="https://aphid.fireside.fm/d/1437767933/c91b88f1-e824-4815-bcb8-5227818d6010/e0c8ab6b-dd19-4778-8dc2-4b02bd2ae809.mp3" length="43106548" type="audio/mpeg"/>
  <itunes:episodeType>full</itunes:episodeType>
  <itunes:author>JT Pennington</itunes:author>
  <itunes:subtitle>Coming up in this week's episode, we'll be talking with one of OpenBSD's newest developers - Brent Cook - about the portable version of LibreSSL and how it's developed. We've also got some information about the FreeBSD port of LibreSSL you might not know. The latest news and your emails, on BSD Now - the place to B.. SD.</itunes:subtitle>
  <itunes:duration>59:52</itunes:duration>
  <itunes:explicit>no</itunes:explicit>
  <itunes:image href="https://media24.fireside.fm/file/fireside-images-2024/podcasts/images/c/c91b88f1-e824-4815-bcb8-5227818d6010/cover.jpg?v=4"/>
  <description>&lt;p&gt;Coming up in this week's episode, we'll be talking with one of OpenBSD's newest developers - Brent Cook - about the portable version of LibreSSL and how it's developed. We've also got some information about the FreeBSD port of LibreSSL you might not know. The latest news and your emails, on BSD Now - the place to B.. SD.&lt;/p&gt;

&lt;h2&gt;This episode was brought to you by&lt;/h2&gt;

&lt;p&gt;&lt;a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"&gt;&lt;img src="/images/iXlogo2.png" alt="iXsystems - Enterprise servers and storage for open source"&gt;&lt;/a&gt;&lt;a href="http://www.tarsnap.com/bsdnow" title="Tarsnap" rel="nofollow noopener"&gt;&lt;img src="/images/tarsnap1.png" alt="Tarsnap - online backups for the truly paranoid"&gt;&lt;/a&gt;&lt;/p&gt;

&lt;hr&gt;

&lt;h2&gt;Headlines&lt;/h2&gt;

&lt;h3&gt;&lt;a href="https://www.freebsd.org/news/status/report-2014-04-2014-06.html" rel="nofollow noopener"&gt;FreeBSD quarterly status report&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;FreeBSD has gotten quite a lot done this quarter&lt;/li&gt;
&lt;li&gt;Changes in the way release branches are supported - major releases will get at least five years over their lifespan&lt;/li&gt;
&lt;li&gt;A new automounter is in the works, hoping to replace amd (which has some issues)&lt;/li&gt;
&lt;li&gt;The CAM target layer and RPC stack have gotten some major optimization and speed boosts&lt;/li&gt;
&lt;li&gt;Work on ZFSGuru continues, with a large status report specifically for that&lt;/li&gt;
&lt;li&gt;The report also mentioned some new committers, both source and ports&lt;/li&gt;
&lt;li&gt;It also covers GNATS being replaced with Bugzilla, the new core team, 9.3-RELEASE, GSoC updates, UEFI booting and lots of other things that we've already mentioned on the show&lt;/li&gt;
&lt;li&gt;"Foundation-sponsored work resulted in &lt;strong&gt;226 commits&lt;/strong&gt; to FreeBSD over the April to June period"
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://undeadly.org/cgi?action=article&amp;amp;sid=20140724094043" rel="nofollow noopener"&gt;A new OpenBSD HTTPD is born&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Work has begun on a new HTTP daemon in the OpenBSD base system&lt;/li&gt;
&lt;li&gt;A lot of people are &lt;a href="http://www.reddit.com/r/BSD/comments/2b7azm/openbsd_gets_its_own_http_server/" rel="nofollow noopener"&gt;asking&lt;/a&gt; "why?" since OpenBSD includes a chrooted nginx already - will it be removed? Will they co-exist?&lt;/li&gt;
&lt;li&gt;Initial responses seem to indicate that nginx is getting bloated, and is a bit overkill for just serving content (this isn't trying to be a full-featured replacement)&lt;/li&gt;
&lt;li&gt;It's partially based on the relayd codebase and also comes from the author of relayd, Reyk Floeter&lt;/li&gt;
&lt;li&gt;This has the added benefit of the usual, easy-to-understand syntax and privilege separation &lt;/li&gt;
&lt;li&gt;There's a very brief &lt;a href="http://www.openbsd.org/cgi-bin/man.cgi/OpenBSD-current/man8/httpd.8" rel="nofollow noopener"&gt;man page&lt;/a&gt; online already&lt;/li&gt;
&lt;li&gt;It supports vhosts and can serve static files, but is still in very active development - there will probably be even more new features by the time this airs&lt;/li&gt;
&lt;li&gt;Will it be named OpenHTTPD? Or perhaps... LibreHTTPD? (I hope not)
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="https://lists.freebsd.org/pipermail/freebsd-ports-announce/2014-July/000084.html" rel="nofollow noopener"&gt;pkgng 1.3 announced&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;The newest version of FreeBSD's second generation &lt;a href="http://www.bsdnow.tv/tutorials/pkgng" rel="nofollow noopener"&gt;package management system&lt;/a&gt; has been released, with lots of new features&lt;/li&gt;
&lt;li&gt;It has a new "real" solver to automatically handle conflicts, and dynamically discover new ones (this means the annoying -o option is deprecated now, hooray!)&lt;/li&gt;
&lt;li&gt;Lots of the code has been sandboxed for extra security&lt;/li&gt;
&lt;li&gt;You'll probably notice some new changes to the UI too, making things more user friendly&lt;/li&gt;
&lt;li&gt;A few days later &lt;a href="https://svnweb.freebsd.org/ports?view=revision&amp;amp;sortby=date&amp;amp;revision=362996" rel="nofollow noopener"&gt;1.3.1&lt;/a&gt; was released to fix a few small bugs, then &lt;a href="https://svnweb.freebsd.org/ports?view=revision&amp;amp;revision=363108" rel="nofollow noopener"&gt;1.3.2&lt;/a&gt; shortly thereafter and &lt;a href="https://svnweb.freebsd.org/ports?view=revision&amp;amp;revision=363363" rel="nofollow noopener"&gt;1.3.3&lt;/a&gt; yesterday
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://twisteddaemon.com/post/92921205276/freebsd-installed-your-next-five-moves-should-be" rel="nofollow noopener"&gt;FreeBSD after-install security tasks&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;A number of people have written in to ask us "how do I secure my BSD box after I install it?"&lt;/li&gt;
&lt;li&gt;With this blog post, hopefully most of their questions will finally be answered in detail&lt;/li&gt;
&lt;li&gt;It goes through locking down SSH with keys, patching the base system for security, installing packages and keeping them updated, monitoring and closing any listening services and a few other small things&lt;/li&gt;
&lt;li&gt;Not only does it just list things to do, but the post also does a good job of explaining why you should do them&lt;/li&gt;
&lt;li&gt;Maybe we'll see some more posts in this series in the future
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;Interview - Brent Cook - &lt;a href="mailto:bcook@openbsd.org" rel="nofollow noopener"&gt;bcook@openbsd.org&lt;/a&gt; / &lt;a href="https://twitter.com/busterbcook" rel="nofollow noopener"&gt;@busterbcook&lt;/a&gt;&lt;/h2&gt;

&lt;p&gt;LibreSSL's portable version and development&lt;/p&gt;

&lt;hr&gt;

&lt;h2&gt;News Roundup&lt;/h2&gt;

&lt;h3&gt;&lt;a href="https://www.tiltedwindmillpress.com/?product=freebsd-mastery-storage-essentials" rel="nofollow noopener"&gt;FreeBSD Mastery - Storage Essentials&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;&lt;a href="http://www.bsdnow.tv/episodes/2013_11_06-year_of_the_bsd_desktop" rel="nofollow noopener"&gt;MWL&lt;/a&gt;'s new book about the FreeBSD storage subsystems now has an early draft available&lt;/li&gt;
&lt;li&gt;Early buyers can get access to an in-progress draft of the book before the official release, but keep in mind that it may go through a lot of changes&lt;/li&gt;
&lt;li&gt;Topics of the book will include GEOM, UFS, ZFS, the disk utilities, partition schemes, disk encryption and maximizing I/O performance&lt;/li&gt;
&lt;li&gt;You'll get access to the completed (e)book when it's done if you buy the early draft&lt;/li&gt;
&lt;li&gt;The suggested price is $8
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://www.reddit.com/r/BSD/comments/2buea5/why_bsd_and_not_linux_or_why_linux_and_not_bsd/" rel="nofollow noopener"&gt;Why BSD and not Linux?&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Yet another thread comes up asking why you should choose BSD over Linux or vice-versa&lt;/li&gt;
&lt;li&gt;Lots of good responses from users of the various BSDs&lt;/li&gt;
&lt;li&gt;Directly ripping a quote: "Features like Ports, Capsicum, CARP, ZFS and DTrace were stable on BSDs before their Linux versions, and some of those are far more usable on BSD. Features like pf are still BSD-only. FreeBSD has GELI and ipfw and is "GCC free". DragonflyBSD has HAMMER and kernel performance tuning. OpenBSD have upstream pf and their gamut of security features, as well as a general emphasis on simplicity."&lt;/li&gt;
&lt;li&gt;And "Over the years, the BSDs have clearly shown their worth in the nix ecosystem by pioneering new features and driving adoption of others. The most recent on OpenBSD were 2038 support and LibreSSL. FreeBSD still arguably rules the FOSS storage space with ZFS."&lt;/li&gt;
&lt;li&gt;Some other users share their switching experiences - worth a read
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://undeadly.org/cgi?action=article&amp;amp;sid=20140724161550" rel="nofollow noopener"&gt;More g2k14 hackathon reports&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Following up from last week's &lt;a href="http://www.bsdnow.tv/episodes/2014_07_23-des_challenge_iv" rel="nofollow noopener"&gt;huge list&lt;/a&gt; of hackathon reports, we have a few more&lt;/li&gt;
&lt;li&gt;&lt;a href="http://undeadly.org/cgi?action=article&amp;amp;sid=20140724161550" rel="nofollow noopener"&gt;Landry Breuil&lt;/a&gt; spent some time with Ansible testing his infrastructure, worked on the firefox port and tried to push some of their patches upstream&lt;/li&gt;
&lt;li&gt;&lt;a href="http://undeadly.org/cgi?action=article&amp;amp;sid=20140728122850" rel="nofollow noopener"&gt;Andrew Fresh&lt;/a&gt; enjoyed his first hackathon, pushing OpenBSD's perl patches upstream and got tricked into rewriting the adduser utility in perl&lt;/li&gt;
&lt;li&gt;&lt;a href="http://undeadly.org/cgi?action=article&amp;amp;sid=20140729070721" rel="nofollow noopener"&gt;Ted Unangst&lt;/a&gt; did his usual "teduing" (removing of) old code - say goodbye to asa, fpr, mkstr, xstr, oldrdist, fsplit, uyap and bluetooth&lt;/li&gt;
&lt;li&gt;Luckily we didn't have to cover 20 new ones this time!
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://bsdtalk.blogspot.com/2014/07/mandoc-with-ingo-schwarze.html" rel="nofollow noopener"&gt;BSDTalk episode 243&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;The newest episode of &lt;a href="http://www.bsdnow.tv/episodes/2014_03_05-bsd_now_vs_bsdtalk" rel="nofollow noopener"&gt;BSDTalk&lt;/a&gt; is out, featuring an interview with Ingo Schwarze of the OpenBSD team&lt;/li&gt;
&lt;li&gt;The main topic of discussion is mandoc, which some users might not be familiar with&lt;/li&gt;
&lt;li&gt;mandoc is a utility for formatting manpages that OpenBSD and NetBSD use (DragonFlyBSD and FreeBSD include it in their source tree, but it's not built by default)&lt;/li&gt;
&lt;li&gt;We'll catch up to you soon, Will!
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;Feedback/Questions&lt;/h2&gt;

&lt;ul&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s2xLRQytAZ" rel="nofollow noopener"&gt;Thomas writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s21AYng20n" rel="nofollow noopener"&gt;Stephen writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s2DwLRdQDS" rel="nofollow noopener"&gt;Sha'ul writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s2E05L31BC" rel="nofollow noopener"&gt;Florian writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s21Nmg3Jrk" rel="nofollow noopener"&gt;Bob Beck writes in&lt;/a&gt; - and note the "Caution" section that was added to &lt;a href="http://www.libressl.org/" rel="nofollow noopener"&gt;libressl.org&lt;/a&gt;
*** &lt;/li&gt;
&lt;/ul&gt;
</description>
  <itunes:keywords>freebsd, openbsd, netbsd, dragonflybsd, pcbsd, tutorial, howto, guide, bsd, interview, openssl, libressl, portable, openssh, security, linux, arc4random, intrinsic functions, rng, prng, status report, pkgng, openhttpd, relayd, httpd, web server, zfsguru, zfs, freebsd mastery, book, storage, ufs, geom, disks, presentation, talk, comparison, mandoc</itunes:keywords>
  <content:encoded>
    <![CDATA[<p>Coming up in this week's episode, we'll be talking with one of OpenBSD's newest developers - Brent Cook - about the portable version of LibreSSL and how it's developed. We've also got some information about the FreeBSD port of LibreSSL you might not know. The latest news and your emails, on BSD Now - the place to B.. SD.</p>

<h2>This episode was brought to you by</h2>

<p><a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"><img src="/images/iXlogo2.png" alt="iXsystems - Enterprise servers and storage for open source"></a><a href="http://www.tarsnap.com/bsdnow" title="Tarsnap" rel="nofollow noopener"><img src="/images/tarsnap1.png" alt="Tarsnap - online backups for the truly paranoid"></a></p>

<hr>

<h2>Headlines</h2>

<h3><a href="https://www.freebsd.org/news/status/report-2014-04-2014-06.html" rel="nofollow noopener">FreeBSD quarterly status report</a></h3>

<ul>
<li>FreeBSD has gotten quite a lot done this quarter</li>
<li>Changes in the way release branches are supported - major releases will get at least five years over their lifespan</li>
<li>A new automounter is in the works, hoping to replace amd (which has some issues)</li>
<li>The CAM target layer and RPC stack have gotten some major optimization and speed boosts</li>
<li>Work on ZFSGuru continues, with a large status report specifically for that</li>
<li>The report also mentioned some new committers, both source and ports</li>
<li>It also covers GNATS being replaced with Bugzilla, the new core team, 9.3-RELEASE, GSoC updates, UEFI booting and lots of other things that we've already mentioned on the show</li>
<li>"Foundation-sponsored work resulted in <strong>226 commits</strong> to FreeBSD over the April to June period"
***</li>
</ul>

<h3><a href="http://undeadly.org/cgi?action=article&amp;sid=20140724094043" rel="nofollow noopener">A new OpenBSD HTTPD is born</a></h3>

<ul>
<li>Work has begun on a new HTTP daemon in the OpenBSD base system</li>
<li>A lot of people are <a href="http://www.reddit.com/r/BSD/comments/2b7azm/openbsd_gets_its_own_http_server/" rel="nofollow noopener">asking</a> "why?" since OpenBSD includes a chrooted nginx already - will it be removed? Will they co-exist?</li>
<li>Initial responses seem to indicate that nginx is getting bloated, and is a bit overkill for just serving content (this isn't trying to be a full-featured replacement)</li>
<li>It's partially based on the relayd codebase and also comes from the author of relayd, Reyk Floeter</li>
<li>This has the added benefit of the usual, easy-to-understand syntax and privilege separation </li>
<li>There's a very brief <a href="http://www.openbsd.org/cgi-bin/man.cgi/OpenBSD-current/man8/httpd.8" rel="nofollow noopener">man page</a> online already</li>
<li>It supports vhosts and can serve static files, but is still in very active development - there will probably be even more new features by the time this airs</li>
<li>Will it be named OpenHTTPD? Or perhaps... LibreHTTPD? (I hope not)
***</li>
</ul>

<h3><a href="https://lists.freebsd.org/pipermail/freebsd-ports-announce/2014-July/000084.html" rel="nofollow noopener">pkgng 1.3 announced</a></h3>

<ul>
<li>The newest version of FreeBSD's second generation <a href="http://www.bsdnow.tv/tutorials/pkgng" rel="nofollow noopener">package management system</a> has been released, with lots of new features</li>
<li>It has a new "real" solver to automatically handle conflicts, and dynamically discover new ones (this means the annoying -o option is deprecated now, hooray!)</li>
<li>Lots of the code has been sandboxed for extra security</li>
<li>You'll probably notice some new changes to the UI too, making things more user friendly</li>
<li>A few days later <a href="https://svnweb.freebsd.org/ports?view=revision&amp;sortby=date&amp;revision=362996" rel="nofollow noopener">1.3.1</a> was released to fix a few small bugs, then <a href="https://svnweb.freebsd.org/ports?view=revision&amp;revision=363108" rel="nofollow noopener">1.3.2</a> shortly thereafter and <a href="https://svnweb.freebsd.org/ports?view=revision&amp;revision=363363" rel="nofollow noopener">1.3.3</a> yesterday
***</li>
</ul>

<h3><a href="http://twisteddaemon.com/post/92921205276/freebsd-installed-your-next-five-moves-should-be" rel="nofollow noopener">FreeBSD after-install security tasks</a></h3>

<ul>
<li>A number of people have written in to ask us "how do I secure my BSD box after I install it?"</li>
<li>With this blog post, hopefully most of their questions will finally be answered in detail</li>
<li>It goes through locking down SSH with keys, patching the base system for security, installing packages and keeping them updated, monitoring and closing any listening services and a few other small things</li>
<li>Not only does it just list things to do, but the post also does a good job of explaining why you should do them</li>
<li>Maybe we'll see some more posts in this series in the future
***</li>
</ul>

<h2>Interview - Brent Cook - <a href="mailto:bcook@openbsd.org" rel="nofollow noopener">bcook@openbsd.org</a> / <a href="https://twitter.com/busterbcook" rel="nofollow noopener">@busterbcook</a></h2>

<p>LibreSSL's portable version and development</p>

<hr>

<h2>News Roundup</h2>

<h3><a href="https://www.tiltedwindmillpress.com/?product=freebsd-mastery-storage-essentials" rel="nofollow noopener">FreeBSD Mastery - Storage Essentials</a></h3>

<ul>
<li><a href="http://www.bsdnow.tv/episodes/2013_11_06-year_of_the_bsd_desktop" rel="nofollow noopener">MWL</a>'s new book about the FreeBSD storage subsystems now has an early draft available</li>
<li>Early buyers can get access to an in-progress draft of the book before the official release, but keep in mind that it may go through a lot of changes</li>
<li>Topics of the book will include GEOM, UFS, ZFS, the disk utilities, partition schemes, disk encryption and maximizing I/O performance</li>
<li>You'll get access to the completed (e)book when it's done if you buy the early draft</li>
<li>The suggested price is $8
***</li>
</ul>

<h3><a href="http://www.reddit.com/r/BSD/comments/2buea5/why_bsd_and_not_linux_or_why_linux_and_not_bsd/" rel="nofollow noopener">Why BSD and not Linux?</a></h3>

<ul>
<li>Yet another thread comes up asking why you should choose BSD over Linux or vice-versa</li>
<li>Lots of good responses from users of the various BSDs</li>
<li>Directly ripping a quote: "Features like Ports, Capsicum, CARP, ZFS and DTrace were stable on BSDs before their Linux versions, and some of those are far more usable on BSD. Features like pf are still BSD-only. FreeBSD has GELI and ipfw and is "GCC free". DragonflyBSD has HAMMER and kernel performance tuning. OpenBSD have upstream pf and their gamut of security features, as well as a general emphasis on simplicity."</li>
<li>And "Over the years, the BSDs have clearly shown their worth in the nix ecosystem by pioneering new features and driving adoption of others. The most recent on OpenBSD were 2038 support and LibreSSL. FreeBSD still arguably rules the FOSS storage space with ZFS."</li>
<li>Some other users share their switching experiences - worth a read
***</li>
</ul>

<h3><a href="http://undeadly.org/cgi?action=article&amp;sid=20140724161550" rel="nofollow noopener">More g2k14 hackathon reports</a></h3>

<ul>
<li>Following up from last week's <a href="http://www.bsdnow.tv/episodes/2014_07_23-des_challenge_iv" rel="nofollow noopener">huge list</a> of hackathon reports, we have a few more</li>
<li><a href="http://undeadly.org/cgi?action=article&amp;sid=20140724161550" rel="nofollow noopener">Landry Breuil</a> spent some time with Ansible testing his infrastructure, worked on the firefox port and tried to push some of their patches upstream</li>
<li><a href="http://undeadly.org/cgi?action=article&amp;sid=20140728122850" rel="nofollow noopener">Andrew Fresh</a> enjoyed his first hackathon, pushing OpenBSD's perl patches upstream and got tricked into rewriting the adduser utility in perl</li>
<li><a href="http://undeadly.org/cgi?action=article&amp;sid=20140729070721" rel="nofollow noopener">Ted Unangst</a> did his usual "teduing" (removing of) old code - say goodbye to asa, fpr, mkstr, xstr, oldrdist, fsplit, uyap and bluetooth</li>
<li>Luckily we didn't have to cover 20 new ones this time!
***</li>
</ul>

<h3><a href="http://bsdtalk.blogspot.com/2014/07/mandoc-with-ingo-schwarze.html" rel="nofollow noopener">BSDTalk episode 243</a></h3>

<ul>
<li>The newest episode of <a href="http://www.bsdnow.tv/episodes/2014_03_05-bsd_now_vs_bsdtalk" rel="nofollow noopener">BSDTalk</a> is out, featuring an interview with Ingo Schwarze of the OpenBSD team</li>
<li>The main topic of discussion is mandoc, which some users might not be familiar with</li>
<li>mandoc is a utility for formatting manpages that OpenBSD and NetBSD use (DragonFlyBSD and FreeBSD include it in their source tree, but it's not built by default)</li>
<li>We'll catch up to you soon, Will!
***</li>
</ul>

<h2>Feedback/Questions</h2>

<ul>
<li><a href="http://slexy.org/view/s2xLRQytAZ" rel="nofollow noopener">Thomas writes in</a></li>
<li><a href="http://slexy.org/view/s21AYng20n" rel="nofollow noopener">Stephen writes in</a></li>
<li><a href="http://slexy.org/view/s2DwLRdQDS" rel="nofollow noopener">Sha'ul writes in</a></li>
<li><a href="http://slexy.org/view/s2E05L31BC" rel="nofollow noopener">Florian writes in</a></li>
<li><a href="http://slexy.org/view/s21Nmg3Jrk" rel="nofollow noopener">Bob Beck writes in</a> - and note the "Caution" section that was added to <a href="http://www.libressl.org/" rel="nofollow noopener">libressl.org</a>
***</li>
</ul>]]>
  </content:encoded>
  <itunes:summary>
    <![CDATA[<p>Coming up in this week's episode, we'll be talking with one of OpenBSD's newest developers - Brent Cook - about the portable version of LibreSSL and how it's developed. We've also got some information about the FreeBSD port of LibreSSL you might not know. The latest news and your emails, on BSD Now - the place to B.. SD.</p>

<h2>This episode was brought to you by</h2>

<p><a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"><img src="/images/iXlogo2.png" alt="iXsystems - Enterprise servers and storage for open source"></a><a href="http://www.tarsnap.com/bsdnow" title="Tarsnap" rel="nofollow noopener"><img src="/images/tarsnap1.png" alt="Tarsnap - online backups for the truly paranoid"></a></p>

<hr>

<h2>Headlines</h2>

<h3><a href="https://www.freebsd.org/news/status/report-2014-04-2014-06.html" rel="nofollow noopener">FreeBSD quarterly status report</a></h3>

<ul>
<li>FreeBSD has gotten quite a lot done this quarter</li>
<li>Changes in the way release branches are supported - major releases will get at least five years over their lifespan</li>
<li>A new automounter is in the works, hoping to replace amd (which has some issues)</li>
<li>The CAM target layer and RPC stack have gotten some major optimization and speed boosts</li>
<li>Work on ZFSGuru continues, with a large status report specifically for that</li>
<li>The report also mentioned some new committers, both source and ports</li>
<li>It also covers GNATS being replaced with Bugzilla, the new core team, 9.3-RELEASE, GSoC updates, UEFI booting and lots of other things that we've already mentioned on the show</li>
<li>"Foundation-sponsored work resulted in <strong>226 commits</strong> to FreeBSD over the April to June period"
***</li>
</ul>

<h3><a href="http://undeadly.org/cgi?action=article&amp;sid=20140724094043" rel="nofollow noopener">A new OpenBSD HTTPD is born</a></h3>

<ul>
<li>Work has begun on a new HTTP daemon in the OpenBSD base system</li>
<li>A lot of people are <a href="http://www.reddit.com/r/BSD/comments/2b7azm/openbsd_gets_its_own_http_server/" rel="nofollow noopener">asking</a> "why?" since OpenBSD includes a chrooted nginx already - will it be removed? Will they co-exist?</li>
<li>Initial responses seem to indicate that nginx is getting bloated, and is a bit overkill for just serving content (this isn't trying to be a full-featured replacement)</li>
<li>It's partially based on the relayd codebase and also comes from the author of relayd, Reyk Floeter</li>
<li>This has the added benefit of the usual, easy-to-understand syntax and privilege separation </li>
<li>There's a very brief <a href="http://www.openbsd.org/cgi-bin/man.cgi/OpenBSD-current/man8/httpd.8" rel="nofollow noopener">man page</a> online already</li>
<li>It supports vhosts and can serve static files, but is still in very active development - there will probably be even more new features by the time this airs</li>
<li>Will it be named OpenHTTPD? Or perhaps... LibreHTTPD? (I hope not)
***</li>
</ul>

<h3><a href="https://lists.freebsd.org/pipermail/freebsd-ports-announce/2014-July/000084.html" rel="nofollow noopener">pkgng 1.3 announced</a></h3>

<ul>
<li>The newest version of FreeBSD's second generation <a href="http://www.bsdnow.tv/tutorials/pkgng" rel="nofollow noopener">package management system</a> has been released, with lots of new features</li>
<li>It has a new "real" solver to automatically handle conflicts, and dynamically discover new ones (this means the annoying -o option is deprecated now, hooray!)</li>
<li>Lots of the code has been sandboxed for extra security</li>
<li>You'll probably notice some new changes to the UI too, making things more user friendly</li>
<li>A few days later <a href="https://svnweb.freebsd.org/ports?view=revision&amp;sortby=date&amp;revision=362996" rel="nofollow noopener">1.3.1</a> was released to fix a few small bugs, then <a href="https://svnweb.freebsd.org/ports?view=revision&amp;revision=363108" rel="nofollow noopener">1.3.2</a> shortly thereafter and <a href="https://svnweb.freebsd.org/ports?view=revision&amp;revision=363363" rel="nofollow noopener">1.3.3</a> yesterday
***</li>
</ul>

<h3><a href="http://twisteddaemon.com/post/92921205276/freebsd-installed-your-next-five-moves-should-be" rel="nofollow noopener">FreeBSD after-install security tasks</a></h3>

<ul>
<li>A number of people have written in to ask us "how do I secure my BSD box after I install it?"</li>
<li>With this blog post, hopefully most of their questions will finally be answered in detail</li>
<li>It goes through locking down SSH with keys, patching the base system for security, installing packages and keeping them updated, monitoring and closing any listening services and a few other small things</li>
<li>Not only does it just list things to do, but the post also does a good job of explaining why you should do them</li>
<li>Maybe we'll see some more posts in this series in the future
***</li>
</ul>

<h2>Interview - Brent Cook - <a href="mailto:bcook@openbsd.org" rel="nofollow noopener">bcook@openbsd.org</a> / <a href="https://twitter.com/busterbcook" rel="nofollow noopener">@busterbcook</a></h2>

<p>LibreSSL's portable version and development</p>

<hr>

<h2>News Roundup</h2>

<h3><a href="https://www.tiltedwindmillpress.com/?product=freebsd-mastery-storage-essentials" rel="nofollow noopener">FreeBSD Mastery - Storage Essentials</a></h3>

<ul>
<li><a href="http://www.bsdnow.tv/episodes/2013_11_06-year_of_the_bsd_desktop" rel="nofollow noopener">MWL</a>'s new book about the FreeBSD storage subsystems now has an early draft available</li>
<li>Early buyers can get access to an in-progress draft of the book before the official release, but keep in mind that it may go through a lot of changes</li>
<li>Topics of the book will include GEOM, UFS, ZFS, the disk utilities, partition schemes, disk encryption and maximizing I/O performance</li>
<li>You'll get access to the completed (e)book when it's done if you buy the early draft</li>
<li>The suggested price is $8
***</li>
</ul>

<h3><a href="http://www.reddit.com/r/BSD/comments/2buea5/why_bsd_and_not_linux_or_why_linux_and_not_bsd/" rel="nofollow noopener">Why BSD and not Linux?</a></h3>

<ul>
<li>Yet another thread comes up asking why you should choose BSD over Linux or vice-versa</li>
<li>Lots of good responses from users of the various BSDs</li>
<li>Directly ripping a quote: "Features like Ports, Capsicum, CARP, ZFS and DTrace were stable on BSDs before their Linux versions, and some of those are far more usable on BSD. Features like pf are still BSD-only. FreeBSD has GELI and ipfw and is "GCC free". DragonflyBSD has HAMMER and kernel performance tuning. OpenBSD have upstream pf and their gamut of security features, as well as a general emphasis on simplicity."</li>
<li>And "Over the years, the BSDs have clearly shown their worth in the nix ecosystem by pioneering new features and driving adoption of others. The most recent on OpenBSD were 2038 support and LibreSSL. FreeBSD still arguably rules the FOSS storage space with ZFS."</li>
<li>Some other users share their switching experiences - worth a read
***</li>
</ul>

<h3><a href="http://undeadly.org/cgi?action=article&amp;sid=20140724161550" rel="nofollow noopener">More g2k14 hackathon reports</a></h3>

<ul>
<li>Following up from last week's <a href="http://www.bsdnow.tv/episodes/2014_07_23-des_challenge_iv" rel="nofollow noopener">huge list</a> of hackathon reports, we have a few more</li>
<li><a href="http://undeadly.org/cgi?action=article&amp;sid=20140724161550" rel="nofollow noopener">Landry Breuil</a> spent some time with Ansible testing his infrastructure, worked on the firefox port and tried to push some of their patches upstream</li>
<li><a href="http://undeadly.org/cgi?action=article&amp;sid=20140728122850" rel="nofollow noopener">Andrew Fresh</a> enjoyed his first hackathon, pushing OpenBSD's perl patches upstream and got tricked into rewriting the adduser utility in perl</li>
<li><a href="http://undeadly.org/cgi?action=article&amp;sid=20140729070721" rel="nofollow noopener">Ted Unangst</a> did his usual "teduing" (removing of) old code - say goodbye to asa, fpr, mkstr, xstr, oldrdist, fsplit, uyap and bluetooth</li>
<li>Luckily we didn't have to cover 20 new ones this time!
***</li>
</ul>

<h3><a href="http://bsdtalk.blogspot.com/2014/07/mandoc-with-ingo-schwarze.html" rel="nofollow noopener">BSDTalk episode 243</a></h3>

<ul>
<li>The newest episode of <a href="http://www.bsdnow.tv/episodes/2014_03_05-bsd_now_vs_bsdtalk" rel="nofollow noopener">BSDTalk</a> is out, featuring an interview with Ingo Schwarze of the OpenBSD team</li>
<li>The main topic of discussion is mandoc, which some users might not be familiar with</li>
<li>mandoc is a utility for formatting manpages that OpenBSD and NetBSD use (DragonFlyBSD and FreeBSD include it in their source tree, but it's not built by default)</li>
<li>We'll catch up to you soon, Will!
***</li>
</ul>

<h2>Feedback/Questions</h2>

<ul>
<li><a href="http://slexy.org/view/s2xLRQytAZ" rel="nofollow noopener">Thomas writes in</a></li>
<li><a href="http://slexy.org/view/s21AYng20n" rel="nofollow noopener">Stephen writes in</a></li>
<li><a href="http://slexy.org/view/s2DwLRdQDS" rel="nofollow noopener">Sha'ul writes in</a></li>
<li><a href="http://slexy.org/view/s2E05L31BC" rel="nofollow noopener">Florian writes in</a></li>
<li><a href="http://slexy.org/view/s21Nmg3Jrk" rel="nofollow noopener">Bob Beck writes in</a> - and note the "Caution" section that was added to <a href="http://www.libressl.org/" rel="nofollow noopener">libressl.org</a>
***</li>
</ul>]]>
  </itunes:summary>
</item>
<item>
  <title>43: Package Design</title>
  <link>https://www.bsdnow.tv/43</link>
  <guid isPermaLink="false">d4b10034-d20a-44a6-a918-a57335debcae</guid>
  <pubDate>Wed, 25 Jun 2014 08:00:00 -0400</pubDate>
  <author>JT Pennington</author>
  <enclosure url="https://aphid.fireside.fm/d/1437767933/c91b88f1-e824-4815-bcb8-5227818d6010/d4b10034-d20a-44a6-a918-a57335debcae.mp3" length="62389876" type="audio/mpeg"/>
  <itunes:episodeType>full</itunes:episodeType>
  <itunes:author>JT Pennington</itunes:author>
  <itunes:subtitle>It's a big show this week! We'll be interviewing Marc Espie about OpenBSD's package system and build cluster. Also, we've been asked many times "how do I keep my BSD box up to date?" Well, today's tutorial should finally answer that. Answers to all your emails and this week's headlines, on BSD Now - the place to B.. SD.</itunes:subtitle>
  <itunes:duration>1:26:39</itunes:duration>
  <itunes:explicit>no</itunes:explicit>
  <itunes:image href="https://media24.fireside.fm/file/fireside-images-2024/podcasts/images/c/c91b88f1-e824-4815-bcb8-5227818d6010/cover.jpg?v=4"/>
  <description>&lt;p&gt;It's a big show this week! We'll be interviewing Marc Espie about OpenBSD's package system and build cluster. Also, we've been asked many times "how do I keep my BSD box up to date?" Well, today's tutorial should finally answer that. Answers to all your emails and this week's headlines, on BSD Now - the place to B.. SD.&lt;/p&gt;

&lt;h2&gt;This episode was brought to you by&lt;/h2&gt;

&lt;p&gt;&lt;a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"&gt;&lt;img src="/images/iXlogo2.png" alt="iXsystems - Enterprise servers and storage for open source"&gt;&lt;/a&gt;&lt;a href="http://www.tarsnap.com/bsdnow" title="Tarsnap" rel="nofollow noopener"&gt;&lt;img src="/images/tarsnap1.png" alt="Tarsnap - online backups for the truly paranoid"&gt;&lt;/a&gt;&lt;/p&gt;

&lt;hr&gt;

&lt;h2&gt;Headlines&lt;/h2&gt;

&lt;h3&gt;&lt;a href="http://2014.eurobsdcon.org/talks-and-schedule/" rel="nofollow noopener"&gt;EuroBSDCon 2014 talks and schedule&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;The talks and schedules for EuroBSDCon 2014 are finally revealed&lt;/li&gt;
&lt;li&gt;The opening keynote is called "FreeBSD, looking forward to another 10 years" by jkh&lt;/li&gt;
&lt;li&gt;Lots of talks spanning FreeBSD, OpenBSD and PCBSD, and we finally have a few about NetBSD and DragonflyBSD too! Variety is great&lt;/li&gt;
&lt;li&gt;It looks like Theo even has a talk, but the title isn't on the page... how mysterious&lt;/li&gt;
&lt;li&gt;There are also days dedicated to some really interesting tutorials&lt;/li&gt;
&lt;li&gt;Register now, the conference is on September 25-28th in Bulgaria&lt;/li&gt;
&lt;li&gt;If you see Allan and Kris walking towards you and you haven't given us an interview yet... well you know what's going to happen&lt;/li&gt;
&lt;li&gt;Why aren't the videos up from last year yet? Will this year also not have any?
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://arstechnica.com/information-technology/2014/06/the-ars-nas-distribution-shootout-freenas-vs-nas4free/" rel="nofollow noopener"&gt;FreeNAS vs NAS4Free&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;More mainstream news covering BSD, this time with an article about different NAS solutions&lt;/li&gt;
&lt;li&gt;In a possibly excessive eight-page article, Ars Technica discusses the pros and cons of both FreeNAS and NAS4Free&lt;/li&gt;
&lt;li&gt;Both are based on FreeBSD and ZFS of course, but there are more differences than you might expect&lt;/li&gt;
&lt;li&gt;Discusses the different development models, release cycles, features, interfaces and ease-of-use factor of each project&lt;/li&gt;
&lt;li&gt;"One is pleasantly functional; the other continues devolving during a journey of pain" - uh oh, who's the loser?
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="https://queue.acm.org/detail.cfm?id=2636165" rel="nofollow noopener"&gt;Quality software costs money, heartbleed was free&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;&lt;a href="http://www.bsdnow.tv/episodes/2013_10_16-go_directly_to_jail" rel="nofollow noopener"&gt;PHK&lt;/a&gt; writes an article for ACM Queue about open source software projects' funding efforts&lt;/li&gt;
&lt;li&gt;A lot of people don't realize just how widespread open source software is - TVs, printers, gaming consoles, etc&lt;/li&gt;
&lt;li&gt;The article discusses ways to convince your workplace to fund open source efforts, then goes into a little bit about FreeBSD and Varnish's funding&lt;/li&gt;
&lt;li&gt;The latest heartbleed vulnerability should teach everyone that open source projects are critical to the internet, and need people actively maintaining them&lt;/li&gt;
&lt;li&gt;On that subject, "Earlier this year the OpenSSL Heartbleed bug laid waste to Internet security, and there are still hundreds of thousands of embedded devices of all kinds—probably your television among them—that have not been and will not ever be software-upgraded to fix it. The best way to prevent that from happening again is to avoid having bugs of that kind go undiscovered for several years, and the only way to avoid that is to have competent people paying attention to the software"&lt;/li&gt;
&lt;li&gt;Consider donating to your favorite BSD foundation (or buying cool shirts and CDs!) and keeping the ecosystem alive
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="https://matt.bionicmessage.net/blog/2014/06/21/Advanced%20Geoblock%20evasion%20with%20OpenBSD%20pf%20and%20rdomain%27s" rel="nofollow noopener"&gt;Geoblock evasion with pf and OpenBSD rdomains&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Geoblocking is a way for websites to block visitors based on the location of their IP&lt;/li&gt;
&lt;li&gt;This is a blog post about how to get around it, using pf and rdomains&lt;/li&gt;
&lt;li&gt;It has the advantage of not requiring any browser plugins or DNS settings on the users' computers, you just need to be running OpenBSD on your router (hmm, if only a website had &lt;a href="http://www.bsdnow.tv/tutorials/openbsd-router" rel="nofollow noopener"&gt;a tutorial about that&lt;/a&gt;...)&lt;/li&gt;
&lt;li&gt;In this post, the author wanted to get an American IP address, since the service he was using (Netflix) is blocked in Australia&lt;/li&gt;
&lt;li&gt;It's got all the details you need to set up a VPN-like system and bypass those pesky geographic filters
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;Interview - Marc Espie - &lt;a href="mailto:espie@openbsd.org" rel="nofollow noopener"&gt;espie@openbsd.org&lt;/a&gt; / &lt;a href="https://twitter.com/espie_openbsd" rel="nofollow noopener"&gt;@espie_openbsd&lt;/a&gt;&lt;/h2&gt;

&lt;p&gt;OpenBSD's package system, building cluster, various topics&lt;/p&gt;

&lt;hr&gt;

&lt;h2&gt;Tutorial&lt;/h2&gt;

&lt;h3&gt;&lt;a href="http://www.bsdnow.tv/tutorials/upgrade" rel="nofollow noopener"&gt;Keeping your BSD up to date&lt;/a&gt;&lt;/h3&gt;

&lt;hr&gt;

&lt;h2&gt;News Roundup&lt;/h2&gt;

&lt;h3&gt;&lt;a href="https://www.imperialviolet.org/2014/06/20/boringssl.html" rel="nofollow noopener"&gt;BoringSSL and LibReSSL&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Yet another OpenSSL fork pops up, this time from Google, called BoringSSL&lt;/li&gt;
&lt;li&gt;Adam Langley has a blog post about it, why they did it and how they're going to maintain it&lt;/li&gt;
&lt;li&gt;You can easily browse &lt;a href="https://boringssl.googlesource.com/" rel="nofollow noopener"&gt;the source code&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Theo de Raadt also &lt;a href="http://marc.info/?l=openbsd-tech&amp;amp;m=140332790726752&amp;amp;w=2" rel="nofollow noopener"&gt;weighs in&lt;/a&gt; with how this effort relates to LibReSSL&lt;/li&gt;
&lt;li&gt;More eyes on the code is good, and patches will be shared between the two projects
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://lists.nycbug.org/pipermail/tor-bsd/2014-June/000129.html" rel="nofollow noopener"&gt;More BSD Tor nodes wanted&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Friend of the show bcallah posts some news to the Tor-BSD mailing list about monoculture in the Tor network being both bad and dangerous&lt;/li&gt;
&lt;li&gt;&lt;a href="https://lists.torproject.org/pipermail/tor-relays/2014-June/004699.html" rel="nofollow noopener"&gt;Originally discussed&lt;/a&gt; on the Tor-Relays list, it was made apparent that having such a large amount of Linux nodes weakens the security of the whole network&lt;/li&gt;
&lt;li&gt;If one vulnerability is found, a huge portion of the network would be useless - we need more variety in the network stacks, crypto, etc.&lt;/li&gt;
&lt;li&gt;The EFF is also holding a &lt;a href="https://www.eff.org/torchallenge/" rel="nofollow noopener"&gt;Tor challenge&lt;/a&gt; for people to start up new relays and keep them online for over a year&lt;/li&gt;
&lt;li&gt;Check out our &lt;a href="http://www.bsdnow.tv/tutorials/tor" rel="nofollow noopener"&gt;Tor tutorial&lt;/a&gt; and help out the network, and promote BSD at the same time!
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="https://raymii.org/s/tutorials/FreeBSD_10.0-release_Openstack_Image.html" rel="nofollow noopener"&gt;FreeBSD 10 OpenStack images&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;OpenStack, to quote Wikipedia, is "a free and open-source software cloud computing platform. It is primarily deployed as an infrastructure as a service (IaaS) solution."&lt;/li&gt;
&lt;li&gt;The article goes into detail about creating a FreeBSD instant, installing and converting it for use with "bsd-cloudinit"&lt;/li&gt;
&lt;li&gt;The author of the article is a regular listener and emailer of the show, hey!
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="https://lists.freebsd.org/pipermail/freebsd-advocacy/2014-June/004465.html" rel="nofollow noopener"&gt;BSDday 2014 call for papers&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;BSD Day, a conference not so well-known, is going to be held August 9th in Argentina&lt;/li&gt;
&lt;li&gt;It was created in 2008 and is the only BSD conference around that area&lt;/li&gt;
&lt;li&gt;The "call for papers" was issued, so if you're around Argentina and use BSD, consider submitting a talk&lt;/li&gt;
&lt;li&gt;Sysadmins, developers and regular users are, of course, all welcome to come to the event
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;Feedback/Questions&lt;/h2&gt;

&lt;ul&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s20nTYO2w1" rel="nofollow noopener"&gt;Maruf writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s21cvV6mRP" rel="nofollow noopener"&gt;Solomon writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s2MK8sbea0" rel="nofollow noopener"&gt;Silas writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s2Yz97YlzI" rel="nofollow noopener"&gt;Bert writes in&lt;/a&gt;
*** &lt;/li&gt;
&lt;/ul&gt;
</description>
  <itunes:keywords>freebsd, openbsd, netbsd, dragonflybsd, pcbsd, tutorial, howto, guide, bsd, interview, ports, packages, cluster, building, pkg_add, freenas, ixsystems, tarsnap, eurobsdcon, bulgaria, 2014, talks, presentation, slides, Poul-Henning Kamp, phk, schedule, freenas, nas4free, nas, geoblock, evasion, bypassing, ip ban, pf, firewall, rdomains, glusterfs, marc espie, boringssl, openssl, libressl, upgrades, how to upgrade, update, rebuild, tor, tor nodes, relays, exit node, eff, tor challenge, aslr, pie, security, bsdday, openstack, bsd-cloudinit, cloud computing</itunes:keywords>
  <content:encoded>
    <![CDATA[<p>It's a big show this week! We'll be interviewing Marc Espie about OpenBSD's package system and build cluster. Also, we've been asked many times "how do I keep my BSD box up to date?" Well, today's tutorial should finally answer that. Answers to all your emails and this week's headlines, on BSD Now - the place to B.. SD.</p>

<h2>This episode was brought to you by</h2>

<p><a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"><img src="/images/iXlogo2.png" alt="iXsystems - Enterprise servers and storage for open source"></a><a href="http://www.tarsnap.com/bsdnow" title="Tarsnap" rel="nofollow noopener"><img src="/images/tarsnap1.png" alt="Tarsnap - online backups for the truly paranoid"></a></p>

<hr>

<h2>Headlines</h2>

<h3><a href="http://2014.eurobsdcon.org/talks-and-schedule/" rel="nofollow noopener">EuroBSDCon 2014 talks and schedule</a></h3>

<ul>
<li>The talks and schedules for EuroBSDCon 2014 are finally revealed</li>
<li>The opening keynote is called "FreeBSD, looking forward to another 10 years" by jkh</li>
<li>Lots of talks spanning FreeBSD, OpenBSD and PCBSD, and we finally have a few about NetBSD and DragonflyBSD too! Variety is great</li>
<li>It looks like Theo even has a talk, but the title isn't on the page... how mysterious</li>
<li>There are also days dedicated to some really interesting tutorials</li>
<li>Register now, the conference is on September 25-28th in Bulgaria</li>
<li>If you see Allan and Kris walking towards you and you haven't given us an interview yet... well you know what's going to happen</li>
<li>Why aren't the videos up from last year yet? Will this year also not have any?
***</li>
</ul>

<h3><a href="http://arstechnica.com/information-technology/2014/06/the-ars-nas-distribution-shootout-freenas-vs-nas4free/" rel="nofollow noopener">FreeNAS vs NAS4Free</a></h3>

<ul>
<li>More mainstream news covering BSD, this time with an article about different NAS solutions</li>
<li>In a possibly excessive eight-page article, Ars Technica discusses the pros and cons of both FreeNAS and NAS4Free</li>
<li>Both are based on FreeBSD and ZFS of course, but there are more differences than you might expect</li>
<li>Discusses the different development models, release cycles, features, interfaces and ease-of-use factor of each project</li>
<li>"One is pleasantly functional; the other continues devolving during a journey of pain" - uh oh, who's the loser?
***</li>
</ul>

<h3><a href="https://queue.acm.org/detail.cfm?id=2636165" rel="nofollow noopener">Quality software costs money, heartbleed was free</a></h3>

<ul>
<li><a href="http://www.bsdnow.tv/episodes/2013_10_16-go_directly_to_jail" rel="nofollow noopener">PHK</a> writes an article for ACM Queue about open source software projects' funding efforts</li>
<li>A lot of people don't realize just how widespread open source software is - TVs, printers, gaming consoles, etc</li>
<li>The article discusses ways to convince your workplace to fund open source efforts, then goes into a little bit about FreeBSD and Varnish's funding</li>
<li>The latest heartbleed vulnerability should teach everyone that open source projects are critical to the internet, and need people actively maintaining them</li>
<li>On that subject, "Earlier this year the OpenSSL Heartbleed bug laid waste to Internet security, and there are still hundreds of thousands of embedded devices of all kinds—probably your television among them—that have not been and will not ever be software-upgraded to fix it. The best way to prevent that from happening again is to avoid having bugs of that kind go undiscovered for several years, and the only way to avoid that is to have competent people paying attention to the software"</li>
<li>Consider donating to your favorite BSD foundation (or buying cool shirts and CDs!) and keeping the ecosystem alive
***</li>
</ul>

<h3><a href="https://matt.bionicmessage.net/blog/2014/06/21/Advanced%20Geoblock%20evasion%20with%20OpenBSD%20pf%20and%20rdomain%27s" rel="nofollow noopener">Geoblock evasion with pf and OpenBSD rdomains</a></h3>

<ul>
<li>Geoblocking is a way for websites to block visitors based on the location of their IP</li>
<li>This is a blog post about how to get around it, using pf and rdomains</li>
<li>It has the advantage of not requiring any browser plugins or DNS settings on the users' computers, you just need to be running OpenBSD on your router (hmm, if only a website had <a href="http://www.bsdnow.tv/tutorials/openbsd-router" rel="nofollow noopener">a tutorial about that</a>...)</li>
<li>In this post, the author wanted to get an American IP address, since the service he was using (Netflix) is blocked in Australia</li>
<li>It's got all the details you need to set up a VPN-like system and bypass those pesky geographic filters
***</li>
</ul>

<h2>Interview - Marc Espie - <a href="mailto:espie@openbsd.org" rel="nofollow noopener">espie@openbsd.org</a> / <a href="https://twitter.com/espie_openbsd" rel="nofollow noopener">@espie_openbsd</a></h2>

<p>OpenBSD's package system, building cluster, various topics</p>

<hr>

<h2>Tutorial</h2>

<h3><a href="http://www.bsdnow.tv/tutorials/upgrade" rel="nofollow noopener">Keeping your BSD up to date</a></h3>

<hr>

<h2>News Roundup</h2>

<h3><a href="https://www.imperialviolet.org/2014/06/20/boringssl.html" rel="nofollow noopener">BoringSSL and LibReSSL</a></h3>

<ul>
<li>Yet another OpenSSL fork pops up, this time from Google, called BoringSSL</li>
<li>Adam Langley has a blog post about it, why they did it and how they're going to maintain it</li>
<li>You can easily browse <a href="https://boringssl.googlesource.com/" rel="nofollow noopener">the source code</a></li>
<li>Theo de Raadt also <a href="http://marc.info/?l=openbsd-tech&amp;m=140332790726752&amp;w=2" rel="nofollow noopener">weighs in</a> with how this effort relates to LibReSSL</li>
<li>More eyes on the code is good, and patches will be shared between the two projects
***</li>
</ul>

<h3><a href="http://lists.nycbug.org/pipermail/tor-bsd/2014-June/000129.html" rel="nofollow noopener">More BSD Tor nodes wanted</a></h3>

<ul>
<li>Friend of the show bcallah posts some news to the Tor-BSD mailing list about monoculture in the Tor network being both bad and dangerous</li>
<li><a href="https://lists.torproject.org/pipermail/tor-relays/2014-June/004699.html" rel="nofollow noopener">Originally discussed</a> on the Tor-Relays list, it was made apparent that having such a large amount of Linux nodes weakens the security of the whole network</li>
<li>If one vulnerability is found, a huge portion of the network would be useless - we need more variety in the network stacks, crypto, etc.</li>
<li>The EFF is also holding a <a href="https://www.eff.org/torchallenge/" rel="nofollow noopener">Tor challenge</a> for people to start up new relays and keep them online for over a year</li>
<li>Check out our <a href="http://www.bsdnow.tv/tutorials/tor" rel="nofollow noopener">Tor tutorial</a> and help out the network, and promote BSD at the same time!
***</li>
</ul>

<h3><a href="https://raymii.org/s/tutorials/FreeBSD_10.0-release_Openstack_Image.html" rel="nofollow noopener">FreeBSD 10 OpenStack images</a></h3>

<ul>
<li>OpenStack, to quote Wikipedia, is "a free and open-source software cloud computing platform. It is primarily deployed as an infrastructure as a service (IaaS) solution."</li>
<li>The article goes into detail about creating a FreeBSD instant, installing and converting it for use with "bsd-cloudinit"</li>
<li>The author of the article is a regular listener and emailer of the show, hey!
***</li>
</ul>

<h3><a href="https://lists.freebsd.org/pipermail/freebsd-advocacy/2014-June/004465.html" rel="nofollow noopener">BSDday 2014 call for papers</a></h3>

<ul>
<li>BSD Day, a conference not so well-known, is going to be held August 9th in Argentina</li>
<li>It was created in 2008 and is the only BSD conference around that area</li>
<li>The "call for papers" was issued, so if you're around Argentina and use BSD, consider submitting a talk</li>
<li>Sysadmins, developers and regular users are, of course, all welcome to come to the event
***</li>
</ul>

<h2>Feedback/Questions</h2>

<ul>
<li><a href="http://slexy.org/view/s20nTYO2w1" rel="nofollow noopener">Maruf writes in</a></li>
<li><a href="http://slexy.org/view/s21cvV6mRP" rel="nofollow noopener">Solomon writes in</a></li>
<li><a href="http://slexy.org/view/s2MK8sbea0" rel="nofollow noopener">Silas writes in</a></li>
<li><a href="http://slexy.org/view/s2Yz97YlzI" rel="nofollow noopener">Bert writes in</a>
***</li>
</ul>]]>
  </content:encoded>
  <itunes:summary>
    <![CDATA[<p>It's a big show this week! We'll be interviewing Marc Espie about OpenBSD's package system and build cluster. Also, we've been asked many times "how do I keep my BSD box up to date?" Well, today's tutorial should finally answer that. Answers to all your emails and this week's headlines, on BSD Now - the place to B.. SD.</p>

<h2>This episode was brought to you by</h2>

<p><a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"><img src="/images/iXlogo2.png" alt="iXsystems - Enterprise servers and storage for open source"></a><a href="http://www.tarsnap.com/bsdnow" title="Tarsnap" rel="nofollow noopener"><img src="/images/tarsnap1.png" alt="Tarsnap - online backups for the truly paranoid"></a></p>

<hr>

<h2>Headlines</h2>

<h3><a href="http://2014.eurobsdcon.org/talks-and-schedule/" rel="nofollow noopener">EuroBSDCon 2014 talks and schedule</a></h3>

<ul>
<li>The talks and schedules for EuroBSDCon 2014 are finally revealed</li>
<li>The opening keynote is called "FreeBSD, looking forward to another 10 years" by jkh</li>
<li>Lots of talks spanning FreeBSD, OpenBSD and PCBSD, and we finally have a few about NetBSD and DragonflyBSD too! Variety is great</li>
<li>It looks like Theo even has a talk, but the title isn't on the page... how mysterious</li>
<li>There are also days dedicated to some really interesting tutorials</li>
<li>Register now, the conference is on September 25-28th in Bulgaria</li>
<li>If you see Allan and Kris walking towards you and you haven't given us an interview yet... well you know what's going to happen</li>
<li>Why aren't the videos up from last year yet? Will this year also not have any?
***</li>
</ul>

<h3><a href="http://arstechnica.com/information-technology/2014/06/the-ars-nas-distribution-shootout-freenas-vs-nas4free/" rel="nofollow noopener">FreeNAS vs NAS4Free</a></h3>

<ul>
<li>More mainstream news covering BSD, this time with an article about different NAS solutions</li>
<li>In a possibly excessive eight-page article, Ars Technica discusses the pros and cons of both FreeNAS and NAS4Free</li>
<li>Both are based on FreeBSD and ZFS of course, but there are more differences than you might expect</li>
<li>Discusses the different development models, release cycles, features, interfaces and ease-of-use factor of each project</li>
<li>"One is pleasantly functional; the other continues devolving during a journey of pain" - uh oh, who's the loser?
***</li>
</ul>

<h3><a href="https://queue.acm.org/detail.cfm?id=2636165" rel="nofollow noopener">Quality software costs money, heartbleed was free</a></h3>

<ul>
<li><a href="http://www.bsdnow.tv/episodes/2013_10_16-go_directly_to_jail" rel="nofollow noopener">PHK</a> writes an article for ACM Queue about open source software projects' funding efforts</li>
<li>A lot of people don't realize just how widespread open source software is - TVs, printers, gaming consoles, etc</li>
<li>The article discusses ways to convince your workplace to fund open source efforts, then goes into a little bit about FreeBSD and Varnish's funding</li>
<li>The latest heartbleed vulnerability should teach everyone that open source projects are critical to the internet, and need people actively maintaining them</li>
<li>On that subject, "Earlier this year the OpenSSL Heartbleed bug laid waste to Internet security, and there are still hundreds of thousands of embedded devices of all kinds—probably your television among them—that have not been and will not ever be software-upgraded to fix it. The best way to prevent that from happening again is to avoid having bugs of that kind go undiscovered for several years, and the only way to avoid that is to have competent people paying attention to the software"</li>
<li>Consider donating to your favorite BSD foundation (or buying cool shirts and CDs!) and keeping the ecosystem alive
***</li>
</ul>

<h3><a href="https://matt.bionicmessage.net/blog/2014/06/21/Advanced%20Geoblock%20evasion%20with%20OpenBSD%20pf%20and%20rdomain%27s" rel="nofollow noopener">Geoblock evasion with pf and OpenBSD rdomains</a></h3>

<ul>
<li>Geoblocking is a way for websites to block visitors based on the location of their IP</li>
<li>This is a blog post about how to get around it, using pf and rdomains</li>
<li>It has the advantage of not requiring any browser plugins or DNS settings on the users' computers, you just need to be running OpenBSD on your router (hmm, if only a website had <a href="http://www.bsdnow.tv/tutorials/openbsd-router" rel="nofollow noopener">a tutorial about that</a>...)</li>
<li>In this post, the author wanted to get an American IP address, since the service he was using (Netflix) is blocked in Australia</li>
<li>It's got all the details you need to set up a VPN-like system and bypass those pesky geographic filters
***</li>
</ul>

<h2>Interview - Marc Espie - <a href="mailto:espie@openbsd.org" rel="nofollow noopener">espie@openbsd.org</a> / <a href="https://twitter.com/espie_openbsd" rel="nofollow noopener">@espie_openbsd</a></h2>

<p>OpenBSD's package system, building cluster, various topics</p>

<hr>

<h2>Tutorial</h2>

<h3><a href="http://www.bsdnow.tv/tutorials/upgrade" rel="nofollow noopener">Keeping your BSD up to date</a></h3>

<hr>

<h2>News Roundup</h2>

<h3><a href="https://www.imperialviolet.org/2014/06/20/boringssl.html" rel="nofollow noopener">BoringSSL and LibReSSL</a></h3>

<ul>
<li>Yet another OpenSSL fork pops up, this time from Google, called BoringSSL</li>
<li>Adam Langley has a blog post about it, why they did it and how they're going to maintain it</li>
<li>You can easily browse <a href="https://boringssl.googlesource.com/" rel="nofollow noopener">the source code</a></li>
<li>Theo de Raadt also <a href="http://marc.info/?l=openbsd-tech&amp;m=140332790726752&amp;w=2" rel="nofollow noopener">weighs in</a> with how this effort relates to LibReSSL</li>
<li>More eyes on the code is good, and patches will be shared between the two projects
***</li>
</ul>

<h3><a href="http://lists.nycbug.org/pipermail/tor-bsd/2014-June/000129.html" rel="nofollow noopener">More BSD Tor nodes wanted</a></h3>

<ul>
<li>Friend of the show bcallah posts some news to the Tor-BSD mailing list about monoculture in the Tor network being both bad and dangerous</li>
<li><a href="https://lists.torproject.org/pipermail/tor-relays/2014-June/004699.html" rel="nofollow noopener">Originally discussed</a> on the Tor-Relays list, it was made apparent that having such a large amount of Linux nodes weakens the security of the whole network</li>
<li>If one vulnerability is found, a huge portion of the network would be useless - we need more variety in the network stacks, crypto, etc.</li>
<li>The EFF is also holding a <a href="https://www.eff.org/torchallenge/" rel="nofollow noopener">Tor challenge</a> for people to start up new relays and keep them online for over a year</li>
<li>Check out our <a href="http://www.bsdnow.tv/tutorials/tor" rel="nofollow noopener">Tor tutorial</a> and help out the network, and promote BSD at the same time!
***</li>
</ul>

<h3><a href="https://raymii.org/s/tutorials/FreeBSD_10.0-release_Openstack_Image.html" rel="nofollow noopener">FreeBSD 10 OpenStack images</a></h3>

<ul>
<li>OpenStack, to quote Wikipedia, is "a free and open-source software cloud computing platform. It is primarily deployed as an infrastructure as a service (IaaS) solution."</li>
<li>The article goes into detail about creating a FreeBSD instant, installing and converting it for use with "bsd-cloudinit"</li>
<li>The author of the article is a regular listener and emailer of the show, hey!
***</li>
</ul>

<h3><a href="https://lists.freebsd.org/pipermail/freebsd-advocacy/2014-June/004465.html" rel="nofollow noopener">BSDday 2014 call for papers</a></h3>

<ul>
<li>BSD Day, a conference not so well-known, is going to be held August 9th in Argentina</li>
<li>It was created in 2008 and is the only BSD conference around that area</li>
<li>The "call for papers" was issued, so if you're around Argentina and use BSD, consider submitting a talk</li>
<li>Sysadmins, developers and regular users are, of course, all welcome to come to the event
***</li>
</ul>

<h2>Feedback/Questions</h2>

<ul>
<li><a href="http://slexy.org/view/s20nTYO2w1" rel="nofollow noopener">Maruf writes in</a></li>
<li><a href="http://slexy.org/view/s21cvV6mRP" rel="nofollow noopener">Solomon writes in</a></li>
<li><a href="http://slexy.org/view/s2MK8sbea0" rel="nofollow noopener">Silas writes in</a></li>
<li><a href="http://slexy.org/view/s2Yz97YlzI" rel="nofollow noopener">Bert writes in</a>
***</li>
</ul>]]>
  </itunes:summary>
</item>
<item>
  <title>41: Commit This Bit</title>
  <link>https://www.bsdnow.tv/41</link>
  <guid isPermaLink="false">0017fbdd-17f8-464f-8bd5-94c6070bbd9a</guid>
  <pubDate>Wed, 11 Jun 2014 08:00:00 -0400</pubDate>
  <author>JT Pennington</author>
  <enclosure url="https://aphid.fireside.fm/d/1437767933/c91b88f1-e824-4815-bcb8-5227818d6010/0017fbdd-17f8-464f-8bd5-94c6070bbd9a.mp3" length="48292564" type="audio/mpeg"/>
  <itunes:episodeType>full</itunes:episodeType>
  <itunes:author>JT Pennington</itunes:author>
  <itunes:subtitle>This week in the big show, we'll be interviewing Benedict Reuschling of the FreeBSD documentation team, and he has a special surprise in store for Allan. As always, answers to your questions and all the latest news, on BSD Now - the place to B.. SD.</itunes:subtitle>
  <itunes:duration>1:07:04</itunes:duration>
  <itunes:explicit>no</itunes:explicit>
  <itunes:image href="https://media24.fireside.fm/file/fireside-images-2024/podcasts/images/c/c91b88f1-e824-4815-bcb8-5227818d6010/cover.jpg?v=4"/>
  <description>&lt;p&gt;This week in the big show, we'll be interviewing Benedict Reuschling of the FreeBSD documentation team, and he has a special surprise in store for Allan. As always, answers to your questions and all the latest news, on BSD Now - the place to B.. SD.&lt;/p&gt;

&lt;h2&gt;This episode was brought to you by&lt;/h2&gt;

&lt;p&gt;&lt;a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"&gt;&lt;img src="/images/iXlogo2.png" alt="iXsystems - Enterprise servers and storage for open source"&gt;&lt;/a&gt;&lt;a href="http://www.tarsnap.com/bsdnow" title="Tarsnap" rel="nofollow noopener"&gt;&lt;img src="/images/tarsnap1.png" alt="Tarsnap - online backups for the truly paranoid"&gt;&lt;/a&gt;&lt;/p&gt;

&lt;hr&gt;

&lt;h2&gt;Headlines&lt;/h2&gt;

&lt;h3&gt;&lt;a href="https://lists.freebsd.org/pipermail/freebsd-announce/2014-June/001559.html" rel="nofollow noopener"&gt;FreeBSD moves to Bugzilla&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Historically, FreeBSD has used the old GNATS system for keeping track of bug reports&lt;/li&gt;
&lt;li&gt;After years and years of wanting to switch, they've finally moved away from GNATS to Bugzilla&lt;/li&gt;
&lt;li&gt;It offers a lot of advantages, is much more modern and actively maintained and &lt;/li&gt;
&lt;li&gt;There's a new &lt;a href="http://people.freebsd.org/%7Eeadler/bugrelocation/workflow.html" rel="nofollow noopener"&gt;workflow chart&lt;/a&gt; for developers to illustrate the new way of doing things&lt;/li&gt;
&lt;li&gt;The old "send-pr" command will still work for the time being, but will eventually be phased out in favor of native Bugzilla reporting tools (of which there are multiple in ports)&lt;/li&gt;
&lt;li&gt;This will hopefully make reporting bugs a lot less painful
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://blog.brianmoses.net/2014/06/diy-nas-econonas-2014.html" rel="nofollow noopener"&gt;DIY NAS: EconoNAS 2014&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;We previously covered this blog last year, but the 2014 edition is up&lt;/li&gt;
&lt;li&gt;More of a hardware-focused article, the author details the parts he's using for a &lt;strong&gt;budget&lt;/strong&gt; NAS&lt;/li&gt;
&lt;li&gt;Details the motherboard, RAM, CPU, hard drives, case, etc&lt;/li&gt;
&lt;li&gt;With a set goal of $500 max, he goes just over it - $550 for all the parts&lt;/li&gt;
&lt;li&gt;Lots of nice pictures of the hardware and step by step instructions for assembly, as well as software configuration instructions
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://www.shiningsilence.com/dbsdlog/2014/06/04/14122.html" rel="nofollow noopener"&gt;DragonflyBSD 3.8 released&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;&lt;a href="http://www.bsdnow.tv/episodes/2013_11_13-the_gateway_drug" rel="nofollow noopener"&gt;Justin&lt;/a&gt; announced the availability of DragonflyBSD 3.8.0&lt;/li&gt;
&lt;li&gt;Binaries in /bin and /sbin are dynamic now, enabling the use of PAM and NSS to manage user accounts&lt;/li&gt;
&lt;li&gt;It includes a new HAMMER FS backup script and lots of FreeBSD tools have been synced with their latest versions&lt;/li&gt;
&lt;li&gt;Work continues on for the Intel graphics drivers, but it's currently limited to the HD4000 and Ivy Bridge series&lt;/li&gt;
&lt;li&gt;See &lt;a href="http://www.dragonflybsd.org/release38/" rel="nofollow noopener"&gt;the release page&lt;/a&gt; for more info and check the link for source-based upgrade instructions
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://www.open-zfs.org/wiki/Publications#2014_OpenZFS_European_Conference" rel="nofollow noopener"&gt;OpenZFS European conference 2014&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;There was an OpenZFS conference held in Europe recently, and now the videos are online for your viewing pleasure&lt;/li&gt;
&lt;li&gt;Matt Ahrens, &lt;a href="http://www.youtube.com/watch?v=Mk1czZs6vkQ" rel="nofollow noopener"&gt;Introduction&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Michael Alexander, &lt;a href="http://www.youtube.com/watch?v=Ak1HB507-xY" rel="nofollow noopener"&gt;FhGFS performance on ZFS&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Andriy Gapon, &lt;a href="http://www.youtube.com/watch?v=oB-QDwVuBH4" rel="nofollow noopener"&gt;Testing ZFS on FreeBSD&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Luke Marsden, &lt;a href="http://www.youtube.com/watch?v=ISI9Ppj3kTo" rel="nofollow noopener"&gt;HybridCluster: ZFS in the cloud&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Vadim Comănescu, &lt;a href="http://www.youtube.com/watch?v=1xK94v0BedE" rel="nofollow noopener"&gt;Syneto: continuously delivering a ZFS-based OS&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Chris George, &lt;a href="http://www.youtube.com/watch?v=ScNHjWBQYQ8" rel="nofollow noopener"&gt;DDRdrive ZIL accelerator: random write revelation&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Grenville Whelan, &lt;a href="http://www.youtube.com/watch?v=tiTYZykCeDo" rel="nofollow noopener"&gt;High-Availability&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Phil Harman, &lt;a href="https://www.youtube.com/watch?v=ApjkrBVlPXk" rel="nofollow noopener"&gt;Harman Holistic&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Mark Rees, &lt;a href="http://www.youtube.com/watch?v=41yl23EACns" rel="nofollow noopener"&gt;Storiant and OpenZFS&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Andrew Holway, &lt;a href="http://www.youtube.com/watch?v=b4L0DRvKJxo" rel="nofollow noopener"&gt;EraStor ZFS appliances&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Dan Vâtca, &lt;a href="http://www.youtube.com/watch?v=pPOW8bwUXxo" rel="nofollow noopener"&gt;Syneto and OpenZFS&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Luke Marsden, &lt;a href="http://www.youtube.com/watch?v=uSM1s1aWlZE" rel="nofollow noopener"&gt;HybridCluster and OpenZFS&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Matt Ahrens, &lt;a href="http://www.youtube.com/watch?v=UaRdzUOsieA" rel="nofollow noopener"&gt;Delphix and OpenZFS&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Check the link for slides and other goodies
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;Interview - Benedict Reuschling - &lt;a href="mailto:bcr@freebsd.org" rel="nofollow noopener"&gt;bcr@freebsd.org&lt;/a&gt;&lt;/h2&gt;

&lt;p&gt;BSD documentation, getting commit access, unix education, various topics&lt;/p&gt;

&lt;hr&gt;

&lt;h2&gt;News Roundup&lt;/h2&gt;

&lt;h3&gt;&lt;a href="http://blogs.freebsdish.org/portmgr/2014/06/04/getting-to-know-your-portmgr-steve-wills/" rel="nofollow noopener"&gt;Getting to know your portmgr, Steve Wills&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;"It is my pleasure to introduce Steve Wills, the newest member of the portmgr team"&lt;/li&gt;
&lt;li&gt;swills is an all-round good guy, does a lot for ports (especially the ruby ports)&lt;/li&gt;
&lt;li&gt;In this interview, we learn why he uses FreeBSD, the most embarrassing moment in his FreeBSD career and much more&lt;/li&gt;
&lt;li&gt;He used to work for Red Hat, woah
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://bsdtalk.blogspot.com/2014/06/bsdtalk242-pfsense-with-chris-buechler.html" rel="nofollow noopener"&gt;BSDTalk episode 242&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;This time on BSDTalk, Will interviews &lt;a href="http://www.bsdnow.tv/episodes/2014_02_19-a_sixth_pfsense" rel="nofollow noopener"&gt;Chris Buechler&lt;/a&gt; from pfSense&lt;/li&gt;
&lt;li&gt;Topics include: the heartbleed vulnerability and how it affected pfSense, how people usually leave their firewalls unpatched for a long time (or even forget about them!), changes between major versions, the upgrade process, upcoming features in their 10-based version, backporting drivers and security fixes&lt;/li&gt;
&lt;li&gt;They also touch on recent concerns in the pfSense community about their license change, that they may be "going commercial" and closing the source - so tune in to find out what their future plans are for all of that
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://www.pcworld.com/article/2243748/turn-old-pc-hardware-into-a-killer-home-server-with-freenas.html" rel="nofollow noopener"&gt;Turn old PC hardware into a killer home server&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Lots of us have old hardware lying around doing nothing but collecting dust&lt;/li&gt;
&lt;li&gt;Why not turn that old box into a modern file server with FreeNAS and ZFS?&lt;/li&gt;
&lt;li&gt;This article goes through the process of setting up a NAS, gives a little history behind the project and highlights some of the different protocols FreeNAS can use (NFS, SMB, AFS, etc)&lt;/li&gt;
&lt;li&gt;Most of our users are already familiar with all of this stuff, nothing too advanced&lt;/li&gt;
&lt;li&gt;Good to see BSD getting some well-deserved attention on a big mainstream site
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="https://blog.netbsd.org/tnf/entry/unbloating_the_vax_install_cd" rel="nofollow noopener"&gt;Unbloating the VAX install CD&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;After a discussion on the VAX mailing list, something very important came to the attention of the developers...&lt;/li&gt;
&lt;li&gt;You can't boot NetBSD on a VAX box with 16MB of RAM from the CD image&lt;/li&gt;
&lt;li&gt;This blog post goes through the developer's adventure in trying to fix that through emulation and stripping various things out of the kernel to make it smaller&lt;/li&gt;
&lt;li&gt;In the end, he got it booting - and now all three VAX users who want to run NetBSD can do so on their systems with 16MB of RAM...
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;Feedback/Questions&lt;/h2&gt;

&lt;ul&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s211mNScBr" rel="nofollow noopener"&gt;Thomas writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s21JA8BVmZ" rel="nofollow noopener"&gt;Reynold writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s2kwS3ncTY" rel="nofollow noopener"&gt;Bostjan writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s2VgjXUfW9" rel="nofollow noopener"&gt;Paul writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s202AAQUXt" rel="nofollow noopener"&gt;John writes in&lt;/a&gt;
*** &lt;/li&gt;
&lt;/ul&gt;
</description>
  <itunes:keywords>freebsd, openbsd, netbsd, dragonflybsd, pcbsd, tutorial, howto, guide, bsd, interview, gnats, send-pr, sendbug, bugzilla, bug tracker, iso, cdr, dvd, patches, applied, commit bit, documentation, bsdcan, 2014, 9.3-RELEASE, 9.3, release, stable, advocacy, openssl, libressl, security, vulnerability, bsdtalk, pfsense, license, openzfs, zfs, presentation, talk, matthew ahrens, delphix, hybridcluster, freenas</itunes:keywords>
  <content:encoded>
    <![CDATA[<p>This week in the big show, we'll be interviewing Benedict Reuschling of the FreeBSD documentation team, and he has a special surprise in store for Allan. As always, answers to your questions and all the latest news, on BSD Now - the place to B.. SD.</p>

<h2>This episode was brought to you by</h2>

<p><a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"><img src="/images/iXlogo2.png" alt="iXsystems - Enterprise servers and storage for open source"></a><a href="http://www.tarsnap.com/bsdnow" title="Tarsnap" rel="nofollow noopener"><img src="/images/tarsnap1.png" alt="Tarsnap - online backups for the truly paranoid"></a></p>

<hr>

<h2>Headlines</h2>

<h3><a href="https://lists.freebsd.org/pipermail/freebsd-announce/2014-June/001559.html" rel="nofollow noopener">FreeBSD moves to Bugzilla</a></h3>

<ul>
<li>Historically, FreeBSD has used the old GNATS system for keeping track of bug reports</li>
<li>After years and years of wanting to switch, they've finally moved away from GNATS to Bugzilla</li>
<li>It offers a lot of advantages, is much more modern and actively maintained and </li>
<li>There's a new <a href="http://people.freebsd.org/%7Eeadler/bugrelocation/workflow.html" rel="nofollow noopener">workflow chart</a> for developers to illustrate the new way of doing things</li>
<li>The old "send-pr" command will still work for the time being, but will eventually be phased out in favor of native Bugzilla reporting tools (of which there are multiple in ports)</li>
<li>This will hopefully make reporting bugs a lot less painful
***</li>
</ul>

<h3><a href="http://blog.brianmoses.net/2014/06/diy-nas-econonas-2014.html" rel="nofollow noopener">DIY NAS: EconoNAS 2014</a></h3>

<ul>
<li>We previously covered this blog last year, but the 2014 edition is up</li>
<li>More of a hardware-focused article, the author details the parts he's using for a <strong>budget</strong> NAS</li>
<li>Details the motherboard, RAM, CPU, hard drives, case, etc</li>
<li>With a set goal of $500 max, he goes just over it - $550 for all the parts</li>
<li>Lots of nice pictures of the hardware and step by step instructions for assembly, as well as software configuration instructions
***</li>
</ul>

<h3><a href="http://www.shiningsilence.com/dbsdlog/2014/06/04/14122.html" rel="nofollow noopener">DragonflyBSD 3.8 released</a></h3>

<ul>
<li><a href="http://www.bsdnow.tv/episodes/2013_11_13-the_gateway_drug" rel="nofollow noopener">Justin</a> announced the availability of DragonflyBSD 3.8.0</li>
<li>Binaries in /bin and /sbin are dynamic now, enabling the use of PAM and NSS to manage user accounts</li>
<li>It includes a new HAMMER FS backup script and lots of FreeBSD tools have been synced with their latest versions</li>
<li>Work continues on for the Intel graphics drivers, but it's currently limited to the HD4000 and Ivy Bridge series</li>
<li>See <a href="http://www.dragonflybsd.org/release38/" rel="nofollow noopener">the release page</a> for more info and check the link for source-based upgrade instructions
***</li>
</ul>

<h3><a href="http://www.open-zfs.org/wiki/Publications#2014_OpenZFS_European_Conference" rel="nofollow noopener">OpenZFS European conference 2014</a></h3>

<ul>
<li>There was an OpenZFS conference held in Europe recently, and now the videos are online for your viewing pleasure</li>
<li>Matt Ahrens, <a href="http://www.youtube.com/watch?v=Mk1czZs6vkQ" rel="nofollow noopener">Introduction</a></li>
<li>Michael Alexander, <a href="http://www.youtube.com/watch?v=Ak1HB507-xY" rel="nofollow noopener">FhGFS performance on ZFS</a></li>
<li>Andriy Gapon, <a href="http://www.youtube.com/watch?v=oB-QDwVuBH4" rel="nofollow noopener">Testing ZFS on FreeBSD</a></li>
<li>Luke Marsden, <a href="http://www.youtube.com/watch?v=ISI9Ppj3kTo" rel="nofollow noopener">HybridCluster: ZFS in the cloud</a></li>
<li>Vadim Comănescu, <a href="http://www.youtube.com/watch?v=1xK94v0BedE" rel="nofollow noopener">Syneto: continuously delivering a ZFS-based OS</a></li>
<li>Chris George, <a href="http://www.youtube.com/watch?v=ScNHjWBQYQ8" rel="nofollow noopener">DDRdrive ZIL accelerator: random write revelation</a></li>
<li>Grenville Whelan, <a href="http://www.youtube.com/watch?v=tiTYZykCeDo" rel="nofollow noopener">High-Availability</a></li>
<li>Phil Harman, <a href="https://www.youtube.com/watch?v=ApjkrBVlPXk" rel="nofollow noopener">Harman Holistic</a></li>
<li>Mark Rees, <a href="http://www.youtube.com/watch?v=41yl23EACns" rel="nofollow noopener">Storiant and OpenZFS</a></li>
<li>Andrew Holway, <a href="http://www.youtube.com/watch?v=b4L0DRvKJxo" rel="nofollow noopener">EraStor ZFS appliances</a></li>
<li>Dan Vâtca, <a href="http://www.youtube.com/watch?v=pPOW8bwUXxo" rel="nofollow noopener">Syneto and OpenZFS</a></li>
<li>Luke Marsden, <a href="http://www.youtube.com/watch?v=uSM1s1aWlZE" rel="nofollow noopener">HybridCluster and OpenZFS</a></li>
<li>Matt Ahrens, <a href="http://www.youtube.com/watch?v=UaRdzUOsieA" rel="nofollow noopener">Delphix and OpenZFS</a></li>
<li>Check the link for slides and other goodies
***</li>
</ul>

<h2>Interview - Benedict Reuschling - <a href="mailto:bcr@freebsd.org" rel="nofollow noopener">bcr@freebsd.org</a></h2>

<p>BSD documentation, getting commit access, unix education, various topics</p>

<hr>

<h2>News Roundup</h2>

<h3><a href="http://blogs.freebsdish.org/portmgr/2014/06/04/getting-to-know-your-portmgr-steve-wills/" rel="nofollow noopener">Getting to know your portmgr, Steve Wills</a></h3>

<ul>
<li>"It is my pleasure to introduce Steve Wills, the newest member of the portmgr team"</li>
<li>swills is an all-round good guy, does a lot for ports (especially the ruby ports)</li>
<li>In this interview, we learn why he uses FreeBSD, the most embarrassing moment in his FreeBSD career and much more</li>
<li>He used to work for Red Hat, woah
***</li>
</ul>

<h3><a href="http://bsdtalk.blogspot.com/2014/06/bsdtalk242-pfsense-with-chris-buechler.html" rel="nofollow noopener">BSDTalk episode 242</a></h3>

<ul>
<li>This time on BSDTalk, Will interviews <a href="http://www.bsdnow.tv/episodes/2014_02_19-a_sixth_pfsense" rel="nofollow noopener">Chris Buechler</a> from pfSense</li>
<li>Topics include: the heartbleed vulnerability and how it affected pfSense, how people usually leave their firewalls unpatched for a long time (or even forget about them!), changes between major versions, the upgrade process, upcoming features in their 10-based version, backporting drivers and security fixes</li>
<li>They also touch on recent concerns in the pfSense community about their license change, that they may be "going commercial" and closing the source - so tune in to find out what their future plans are for all of that
***</li>
</ul>

<h3><a href="http://www.pcworld.com/article/2243748/turn-old-pc-hardware-into-a-killer-home-server-with-freenas.html" rel="nofollow noopener">Turn old PC hardware into a killer home server</a></h3>

<ul>
<li>Lots of us have old hardware lying around doing nothing but collecting dust</li>
<li>Why not turn that old box into a modern file server with FreeNAS and ZFS?</li>
<li>This article goes through the process of setting up a NAS, gives a little history behind the project and highlights some of the different protocols FreeNAS can use (NFS, SMB, AFS, etc)</li>
<li>Most of our users are already familiar with all of this stuff, nothing too advanced</li>
<li>Good to see BSD getting some well-deserved attention on a big mainstream site
***</li>
</ul>

<h3><a href="https://blog.netbsd.org/tnf/entry/unbloating_the_vax_install_cd" rel="nofollow noopener">Unbloating the VAX install CD</a></h3>

<ul>
<li>After a discussion on the VAX mailing list, something very important came to the attention of the developers...</li>
<li>You can't boot NetBSD on a VAX box with 16MB of RAM from the CD image</li>
<li>This blog post goes through the developer's adventure in trying to fix that through emulation and stripping various things out of the kernel to make it smaller</li>
<li>In the end, he got it booting - and now all three VAX users who want to run NetBSD can do so on their systems with 16MB of RAM...
***</li>
</ul>

<h2>Feedback/Questions</h2>

<ul>
<li><a href="http://slexy.org/view/s211mNScBr" rel="nofollow noopener">Thomas writes in</a></li>
<li><a href="http://slexy.org/view/s21JA8BVmZ" rel="nofollow noopener">Reynold writes in</a></li>
<li><a href="http://slexy.org/view/s2kwS3ncTY" rel="nofollow noopener">Bostjan writes in</a></li>
<li><a href="http://slexy.org/view/s2VgjXUfW9" rel="nofollow noopener">Paul writes in</a></li>
<li><a href="http://slexy.org/view/s202AAQUXt" rel="nofollow noopener">John writes in</a>
***</li>
</ul>]]>
  </content:encoded>
  <itunes:summary>
    <![CDATA[<p>This week in the big show, we'll be interviewing Benedict Reuschling of the FreeBSD documentation team, and he has a special surprise in store for Allan. As always, answers to your questions and all the latest news, on BSD Now - the place to B.. SD.</p>

<h2>This episode was brought to you by</h2>

<p><a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"><img src="/images/iXlogo2.png" alt="iXsystems - Enterprise servers and storage for open source"></a><a href="http://www.tarsnap.com/bsdnow" title="Tarsnap" rel="nofollow noopener"><img src="/images/tarsnap1.png" alt="Tarsnap - online backups for the truly paranoid"></a></p>

<hr>

<h2>Headlines</h2>

<h3><a href="https://lists.freebsd.org/pipermail/freebsd-announce/2014-June/001559.html" rel="nofollow noopener">FreeBSD moves to Bugzilla</a></h3>

<ul>
<li>Historically, FreeBSD has used the old GNATS system for keeping track of bug reports</li>
<li>After years and years of wanting to switch, they've finally moved away from GNATS to Bugzilla</li>
<li>It offers a lot of advantages, is much more modern and actively maintained and </li>
<li>There's a new <a href="http://people.freebsd.org/%7Eeadler/bugrelocation/workflow.html" rel="nofollow noopener">workflow chart</a> for developers to illustrate the new way of doing things</li>
<li>The old "send-pr" command will still work for the time being, but will eventually be phased out in favor of native Bugzilla reporting tools (of which there are multiple in ports)</li>
<li>This will hopefully make reporting bugs a lot less painful
***</li>
</ul>

<h3><a href="http://blog.brianmoses.net/2014/06/diy-nas-econonas-2014.html" rel="nofollow noopener">DIY NAS: EconoNAS 2014</a></h3>

<ul>
<li>We previously covered this blog last year, but the 2014 edition is up</li>
<li>More of a hardware-focused article, the author details the parts he's using for a <strong>budget</strong> NAS</li>
<li>Details the motherboard, RAM, CPU, hard drives, case, etc</li>
<li>With a set goal of $500 max, he goes just over it - $550 for all the parts</li>
<li>Lots of nice pictures of the hardware and step by step instructions for assembly, as well as software configuration instructions
***</li>
</ul>

<h3><a href="http://www.shiningsilence.com/dbsdlog/2014/06/04/14122.html" rel="nofollow noopener">DragonflyBSD 3.8 released</a></h3>

<ul>
<li><a href="http://www.bsdnow.tv/episodes/2013_11_13-the_gateway_drug" rel="nofollow noopener">Justin</a> announced the availability of DragonflyBSD 3.8.0</li>
<li>Binaries in /bin and /sbin are dynamic now, enabling the use of PAM and NSS to manage user accounts</li>
<li>It includes a new HAMMER FS backup script and lots of FreeBSD tools have been synced with their latest versions</li>
<li>Work continues on for the Intel graphics drivers, but it's currently limited to the HD4000 and Ivy Bridge series</li>
<li>See <a href="http://www.dragonflybsd.org/release38/" rel="nofollow noopener">the release page</a> for more info and check the link for source-based upgrade instructions
***</li>
</ul>

<h3><a href="http://www.open-zfs.org/wiki/Publications#2014_OpenZFS_European_Conference" rel="nofollow noopener">OpenZFS European conference 2014</a></h3>

<ul>
<li>There was an OpenZFS conference held in Europe recently, and now the videos are online for your viewing pleasure</li>
<li>Matt Ahrens, <a href="http://www.youtube.com/watch?v=Mk1czZs6vkQ" rel="nofollow noopener">Introduction</a></li>
<li>Michael Alexander, <a href="http://www.youtube.com/watch?v=Ak1HB507-xY" rel="nofollow noopener">FhGFS performance on ZFS</a></li>
<li>Andriy Gapon, <a href="http://www.youtube.com/watch?v=oB-QDwVuBH4" rel="nofollow noopener">Testing ZFS on FreeBSD</a></li>
<li>Luke Marsden, <a href="http://www.youtube.com/watch?v=ISI9Ppj3kTo" rel="nofollow noopener">HybridCluster: ZFS in the cloud</a></li>
<li>Vadim Comănescu, <a href="http://www.youtube.com/watch?v=1xK94v0BedE" rel="nofollow noopener">Syneto: continuously delivering a ZFS-based OS</a></li>
<li>Chris George, <a href="http://www.youtube.com/watch?v=ScNHjWBQYQ8" rel="nofollow noopener">DDRdrive ZIL accelerator: random write revelation</a></li>
<li>Grenville Whelan, <a href="http://www.youtube.com/watch?v=tiTYZykCeDo" rel="nofollow noopener">High-Availability</a></li>
<li>Phil Harman, <a href="https://www.youtube.com/watch?v=ApjkrBVlPXk" rel="nofollow noopener">Harman Holistic</a></li>
<li>Mark Rees, <a href="http://www.youtube.com/watch?v=41yl23EACns" rel="nofollow noopener">Storiant and OpenZFS</a></li>
<li>Andrew Holway, <a href="http://www.youtube.com/watch?v=b4L0DRvKJxo" rel="nofollow noopener">EraStor ZFS appliances</a></li>
<li>Dan Vâtca, <a href="http://www.youtube.com/watch?v=pPOW8bwUXxo" rel="nofollow noopener">Syneto and OpenZFS</a></li>
<li>Luke Marsden, <a href="http://www.youtube.com/watch?v=uSM1s1aWlZE" rel="nofollow noopener">HybridCluster and OpenZFS</a></li>
<li>Matt Ahrens, <a href="http://www.youtube.com/watch?v=UaRdzUOsieA" rel="nofollow noopener">Delphix and OpenZFS</a></li>
<li>Check the link for slides and other goodies
***</li>
</ul>

<h2>Interview - Benedict Reuschling - <a href="mailto:bcr@freebsd.org" rel="nofollow noopener">bcr@freebsd.org</a></h2>

<p>BSD documentation, getting commit access, unix education, various topics</p>

<hr>

<h2>News Roundup</h2>

<h3><a href="http://blogs.freebsdish.org/portmgr/2014/06/04/getting-to-know-your-portmgr-steve-wills/" rel="nofollow noopener">Getting to know your portmgr, Steve Wills</a></h3>

<ul>
<li>"It is my pleasure to introduce Steve Wills, the newest member of the portmgr team"</li>
<li>swills is an all-round good guy, does a lot for ports (especially the ruby ports)</li>
<li>In this interview, we learn why he uses FreeBSD, the most embarrassing moment in his FreeBSD career and much more</li>
<li>He used to work for Red Hat, woah
***</li>
</ul>

<h3><a href="http://bsdtalk.blogspot.com/2014/06/bsdtalk242-pfsense-with-chris-buechler.html" rel="nofollow noopener">BSDTalk episode 242</a></h3>

<ul>
<li>This time on BSDTalk, Will interviews <a href="http://www.bsdnow.tv/episodes/2014_02_19-a_sixth_pfsense" rel="nofollow noopener">Chris Buechler</a> from pfSense</li>
<li>Topics include: the heartbleed vulnerability and how it affected pfSense, how people usually leave their firewalls unpatched for a long time (or even forget about them!), changes between major versions, the upgrade process, upcoming features in their 10-based version, backporting drivers and security fixes</li>
<li>They also touch on recent concerns in the pfSense community about their license change, that they may be "going commercial" and closing the source - so tune in to find out what their future plans are for all of that
***</li>
</ul>

<h3><a href="http://www.pcworld.com/article/2243748/turn-old-pc-hardware-into-a-killer-home-server-with-freenas.html" rel="nofollow noopener">Turn old PC hardware into a killer home server</a></h3>

<ul>
<li>Lots of us have old hardware lying around doing nothing but collecting dust</li>
<li>Why not turn that old box into a modern file server with FreeNAS and ZFS?</li>
<li>This article goes through the process of setting up a NAS, gives a little history behind the project and highlights some of the different protocols FreeNAS can use (NFS, SMB, AFS, etc)</li>
<li>Most of our users are already familiar with all of this stuff, nothing too advanced</li>
<li>Good to see BSD getting some well-deserved attention on a big mainstream site
***</li>
</ul>

<h3><a href="https://blog.netbsd.org/tnf/entry/unbloating_the_vax_install_cd" rel="nofollow noopener">Unbloating the VAX install CD</a></h3>

<ul>
<li>After a discussion on the VAX mailing list, something very important came to the attention of the developers...</li>
<li>You can't boot NetBSD on a VAX box with 16MB of RAM from the CD image</li>
<li>This blog post goes through the developer's adventure in trying to fix that through emulation and stripping various things out of the kernel to make it smaller</li>
<li>In the end, he got it booting - and now all three VAX users who want to run NetBSD can do so on their systems with 16MB of RAM...
***</li>
</ul>

<h2>Feedback/Questions</h2>

<ul>
<li><a href="http://slexy.org/view/s211mNScBr" rel="nofollow noopener">Thomas writes in</a></li>
<li><a href="http://slexy.org/view/s21JA8BVmZ" rel="nofollow noopener">Reynold writes in</a></li>
<li><a href="http://slexy.org/view/s2kwS3ncTY" rel="nofollow noopener">Bostjan writes in</a></li>
<li><a href="http://slexy.org/view/s2VgjXUfW9" rel="nofollow noopener">Paul writes in</a></li>
<li><a href="http://slexy.org/view/s202AAQUXt" rel="nofollow noopener">John writes in</a>
***</li>
</ul>]]>
  </itunes:summary>
</item>
<item>
  <title>39: The Friendly Sandbox</title>
  <link>https://www.bsdnow.tv/39</link>
  <guid isPermaLink="false">4ae1b0f5-7c6f-486f-bdcf-c71ec415269c</guid>
  <pubDate>Wed, 28 May 2014 08:00:00 -0400</pubDate>
  <author>JT Pennington</author>
  <enclosure url="https://aphid.fireside.fm/d/1437767933/c91b88f1-e824-4815-bcb8-5227818d6010/4ae1b0f5-7c6f-486f-bdcf-c71ec415269c.mp3" length="45004756" type="audio/mpeg"/>
  <itunes:episodeType>full</itunes:episodeType>
  <itunes:author>JT Pennington</itunes:author>
  <itunes:subtitle>This time on the show we'll be talking with Jon Anderson about Capsicum and Casper to securely sandbox processes. After that, our tutorial will show you how to encrypt all your DNS lookups, either on a single system or for your whole network. News, emails and all the usual fun, on BSD Now - the place to B.. SD.</itunes:subtitle>
  <itunes:duration>1:02:30</itunes:duration>
  <itunes:explicit>no</itunes:explicit>
  <itunes:image href="https://media24.fireside.fm/file/fireside-images-2024/podcasts/images/c/c91b88f1-e824-4815-bcb8-5227818d6010/cover.jpg?v=4"/>
  <description>&lt;p&gt;This time on the show we'll be talking with Jon Anderson about Capsicum and Casper to securely sandbox processes. After that, our tutorial will show you how to encrypt all your DNS lookups, either on a single system or for your whole network. News, emails and all the usual fun, on BSD Now - the place to B.. SD.&lt;/p&gt;

&lt;h2&gt;This episode was brought to you by&lt;/h2&gt;

&lt;p&gt;&lt;a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"&gt;&lt;img src="/images/iXlogo2.png" alt="iXsystems - Enterprise servers and storage for open source"&gt;&lt;/a&gt;&lt;a href="http://www.tarsnap.com/bsdnow" title="Tarsnap" rel="nofollow noopener"&gt;&lt;img src="/images/tarsnap1.png" alt="Tarsnap - online backups for the truly paranoid"&gt;&lt;/a&gt;&lt;/p&gt;

&lt;hr&gt;

&lt;h2&gt;Headlines&lt;/h2&gt;

&lt;h3&gt;&lt;a href="https://www.bsdcan.org/2014/schedule/" rel="nofollow noopener"&gt;BSDCan 2014 talks and reports&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;The majority of the BSDCan talks are finally uploaded, so prepare to be flooded with links&lt;/li&gt;
&lt;li&gt;Karl Lehenbauer's &lt;a href="https://www.youtube.com/watch?v=13LiyjnTGsQ" rel="nofollow noopener"&gt;keynote&lt;/a&gt; (he's on next week's episode)&lt;/li&gt;
&lt;li&gt;Mariusz Zaborski and Pawel Jakub Dawidek,
&lt;a href="https://www.youtube.com/watch?v=0la06FHbdvg" rel="nofollow noopener"&gt;Capsicum and Casper&lt;/a&gt; (relevant to today's interview)&lt;/li&gt;
&lt;li&gt;Luigi Rizzo,
&lt;a href="https://www.youtube.com/watch?v=Lr5o1VQMtgA" rel="nofollow noopener"&gt;In-kernel OpenvSwitch on FreeBSD&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Dwayne Hart, &lt;a href="https://www.youtube.com/watch?v=AVuF9eFeVWs" rel="nofollow noopener"&gt;Migrating from Linux to FreeBSD for Backend Data Storage&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Warner Losh, &lt;a href="https://www.youtube.com/watch?v=lj0XAE6C6-k" rel="nofollow noopener"&gt;NAND Flash and FreeBSD&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Simon Gerraty, &lt;a href="https://www.youtube.com/watch?v=4s0UY0sg6vI" rel="nofollow noopener"&gt;FreeBSD bmake and Meta Mode&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Bob Beck, &lt;a href="https://www.youtube.com/watch?v=oM6S7FEUfkU" rel="nofollow noopener"&gt;LibreSSL - The First 30 Days&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Henning Brauer, &lt;a href="https://www.youtube.com/watch?v=cP8AW111IKg" rel="nofollow noopener"&gt;OpenBGPD Turns 10 Years Old&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Arun Thomas, &lt;a href="https://www.youtube.com/watch?v=ZAM7fqhGRr8" rel="nofollow noopener"&gt;BSD ARM Kernel Internals&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Peter Hessler, &lt;a href="https://www.youtube.com/watch?v=i8UAVswpagA" rel="nofollow noopener"&gt;Using BGP for Realtime Spam Lists&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Pedro Giffuni, &lt;a href="https://www.youtube.com/watch?v=HMeTxViulgo" rel="nofollow noopener"&gt;Features and Status of FreeBSD's Ext2 Implementation
&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Matt Ahrens, &lt;a href="https://www.youtube.com/watch?v=EjGqVdCOIhM" rel="nofollow noopener"&gt;OpenZFS Upcoming Features and Performance Enhancements&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Daichi Goto, &lt;a href="https://www.youtube.com/watch?v=MsRu0xIawaA" rel="nofollow noopener"&gt;Shellscripts and Commands&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Benno Rice, &lt;a href="https://www.youtube.com/watch?v=jZp-ciB6mAg" rel="nofollow noopener"&gt;Keeping Current&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Sean Bruno, &lt;a href="https://www.youtube.com/watch?v=LZjoFSfIv3k" rel="nofollow noopener"&gt;MIPS Router Hacking&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;John-Mark Gurney, &lt;a href="https://www.youtube.com/watch?v=2qicD0tv_tI" rel="nofollow noopener"&gt;Optimizing GELI Performance&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Patrick Kelsey, &lt;a href="https://www.youtube.com/watch?v=LhIx8q8_7YY" rel="nofollow noopener"&gt;Userspace Networking with libuinet&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Massimiliano Stucchi, &lt;a href="https://www.youtube.com/watch?v=WZoQzUZKaeo" rel="nofollow noopener"&gt;IPv6 Transitioning Mechanisms&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Roger Pau Monné, &lt;a href="https://www.youtube.com/watch?v=q6l9qtjlNXU" rel="nofollow noopener"&gt;Taking the Red Pill&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Shawn Webb, &lt;a href="https://www.youtube.com/watch?v=jo8ObzR1tKQ" rel="nofollow noopener"&gt;Introducing ASLR in FreeBSD&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;There's also a &lt;a href="http://undeadly.org/cgi?action=article&amp;amp;sid=20140519164127" rel="nofollow noopener"&gt;trip report&lt;/a&gt; from Peter Hessler and &lt;a href="http://julipedia.meroh.net/2014/05/bsdcan-2014-summary.html" rel="nofollow noopener"&gt;one from Julio Merino&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;The latter report also talks about how, unfortunately, NetBSD basically had no presence in the event at all (and how that's a recurring trend)
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://networkfilter.blogspot.com/2014/05/defend-your-network-and-privacy-vpn.html" rel="nofollow noopener"&gt;Defend your network and privacy with a VPN and OpenBSD&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;After all the recent news about spying, backdoored routers, deep packet inspection and everything else, you might want to start taking steps at getting some privacy back&lt;/li&gt;
&lt;li&gt;This article describes how to set up a secure network gateway and VPN using OpenBSD and related crypto utilities&lt;/li&gt;
&lt;li&gt;There are bits for DHCP, DNS, OpenVPN, DNSCrypt and a watchdog script to make sure your tunnel is always being used&lt;/li&gt;
&lt;li&gt;You can transparently tunnel all your outbound traffic over the VPN with this configuration, nothing is needed on any of the client systems - this could also be used with Tor (but it would be very slow)&lt;/li&gt;
&lt;li&gt;It also includes a few general privacy tips, recommended browser extensions, etc&lt;/li&gt;
&lt;li&gt;The intro to the article is especially great, so give the whole thing a read&lt;/li&gt;
&lt;li&gt;He mentions our &lt;a href="http://www.bsdnow.tv/tutorials/openbsd-router" rel="nofollow noopener"&gt;OpenBSD router guide&lt;/a&gt; and other tutorials being a big help for this setup, so hello if you're watching!
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://blog.pascalj.com/article/you-should-try-freebsd/" rel="nofollow noopener"&gt;You should try FreeBSD&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;In this blog post, the author talks a bit about how some Linux people aren't familiar with the BSDs and how we can take steps to change that&lt;/li&gt;
&lt;li&gt;He goes into some FreeBSD history specifically, then talks about some of the apparent (and not-so-apparent) differences between the two&lt;/li&gt;
&lt;li&gt;Possibly the most useful part is how to address the question "my server already works, why bother switching?"&lt;/li&gt;
&lt;li&gt;"Stackoverflow’s answers assume I have apt-get installed"&lt;/li&gt;
&lt;li&gt;It includes mention of the great documentation, stability, ports, improved security and much more&lt;/li&gt;
&lt;li&gt;A takeaway quote for would-be Linux switchers: "I like to compare FreeBSD to a really tidy room where you can find everything with your eyes closed. Once you know where the closets are, it is easy to just grab what you need, even if you have never touched it before"
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://hacklog.in/openbsd-and-the-little-mauritian-contributor/" rel="nofollow noopener"&gt;OpenBSD and the little Mauritian contributor&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;This is a story about a guy from &lt;a href="https://en.wikipedia.org/wiki/Mauritius" rel="nofollow noopener"&gt;Mauritius&lt;/a&gt; named Logan, one of OpenBSD's newest developers&lt;/li&gt;
&lt;li&gt;Back in 2010, he started sending in patched for OpenBSD's "mg" editor, among other small things, and eventually added file transfer resume support for SFTP&lt;/li&gt;
&lt;li&gt;The article talks about his journey from just a guy who submits a patch here and there to joining the developer ranks and even getting his picture taken with Theo at a recent hackathon&lt;/li&gt;
&lt;li&gt;It really shows how easy it is to get involved with the different BSDs and contribute back to the software ecosystem&lt;/li&gt;
&lt;li&gt;Congrats to Logan, and hopefully this will inspire more people to start helping out and contributing code back
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;Interview - Jon Anderson - &lt;a href="mailto:jonathan@freebsd.org" rel="nofollow noopener"&gt;jonathan@freebsd.org&lt;/a&gt;&lt;/h2&gt;

&lt;p&gt;Capsicum and Casperd&lt;/p&gt;

&lt;hr&gt;

&lt;h2&gt;Tutorial&lt;/h2&gt;

&lt;h3&gt;&lt;a href="http://www.bsdnow.tv/tutorials/dnscrypt" rel="nofollow noopener"&gt;Encrypting DNS lookups&lt;/a&gt;&lt;/h3&gt;

&lt;hr&gt;

&lt;h2&gt;News Roundup&lt;/h2&gt;

&lt;h3&gt;&lt;a href="http://i.imgur.com/f0qg6Ss.jpg" rel="nofollow noopener"&gt;FreeBSD Journal, May 2014 issue&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;The newest issue of the &lt;a href="http://www.bsdnow.tv/episodes/2014_01_29-journaled_news_updates" rel="nofollow noopener"&gt;FreeBSD Journal&lt;/a&gt; is out, following the bi-monthly release cycle&lt;/li&gt;
&lt;li&gt;This time the topics include: a letter from the foundation, a ports report, some 9.3-RELEASE plans, an events calendar, an overview of ipfw, exploring network activity with dtrace, an article about kqueue, data distribution with dnssec and finally an article about TCP scaling&lt;/li&gt;
&lt;li&gt;Pick up your (digital) copy at Amazon, Google Play or on iTunes and have a read
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://insanecoding.blogspot.com/2014/05/libressl-porting-update.html" rel="nofollow noopener"&gt;LibreSSL porting update&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Since the last LibreSSL post we covered, a couple unofficial "portable" versions have died off&lt;/li&gt;
&lt;li&gt;Unfortunately, people still think they can just port LibreSSL to other BSDs and Linux all willy-nilly - stop doing that!&lt;/li&gt;
&lt;li&gt;This post reiterates that LibreSSL currently relies on a lot of OpenBSD-specific security functions that are not present in other systems, and also gives a very eye-opening example&lt;/li&gt;
&lt;li&gt;Please wait for an official portable version instead of wasting time with these dime-a-dozen github clones that do more harm than good
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://bsdmag.org/magazine/1862-meteorjs-on-freebsd-11-may-bsd-issue" rel="nofollow noopener"&gt;BSDMag May 2014 issue is out&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;The usual monthly release from BSDMag, covering a variety of subjects&lt;/li&gt;
&lt;li&gt;This time around the topics include: managing large development projects using RCS, working with HAMMER FS and PFSes, running MeteorJS on FreeBSD 11, another bhyve article, more GIMP tutorials and a few other things&lt;/li&gt;
&lt;li&gt;It's a free PDF, go grab it
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://bsdtalk.blogspot.com/2014/05/bsdtalk241-bob-beck.html" rel="nofollow noopener"&gt;BSDTalk episode 241&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;A new episode of &lt;a href="http://www.bsdnow.tv/episodes/2014_03_05-bsd_now_vs_bsdtalk" rel="nofollow noopener"&gt;BSDTalk&lt;/a&gt; is out, this time with Bob Beck&lt;/li&gt;
&lt;li&gt;He talks about the OpenBSD foundation's recent activities, his own work in the project, some stories about the hardware in Theo's basement and a lot more&lt;/li&gt;
&lt;li&gt;The interview itself isn't about LibreSSL at all, but they do touch on it a bit too&lt;/li&gt;
&lt;li&gt;Really interesting stuff, covers a lot of different topics in a short amount of time
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;Feedback/Questions&lt;/h2&gt;

&lt;ul&gt;
&lt;li&gt;We got a number of replies about last week's VPN question, so thanks to everyone who sent in an email about it - the &lt;a href="https://www.freshports.org/security/vpnc/" rel="nofollow noopener"&gt;vpnc&lt;/a&gt; package seems to be what we were looking for&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s20MK7bTyc" rel="nofollow noopener"&gt;Tim writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s2OWREQdUA" rel="nofollow noopener"&gt;AJ writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s202obAqbT" rel="nofollow noopener"&gt;Peter writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s21Kye2jAc" rel="nofollow noopener"&gt;Thomas writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s2zqFVqwxN" rel="nofollow noopener"&gt;Martin writes in&lt;/a&gt;
*** &lt;/li&gt;
&lt;/ul&gt;
</description>
  <itunes:keywords>freebsd, openbsd, netbsd, dragonflybsd, pcbsd, tutorial, howto, guide, bsd, interview, casper, casperd, the friendly ghost, capsicum, sandbox, application, jails, isolation, isolated, chroot, virtual machine, exploit, vpn, security, ssh, tunnel, encryption, bsdcan, presentation, talk, video, recordings, dnscrypt, opendns, dnscurve, lookups, dns, dnssec, gateway, vpn, vps, journal, bsdmag, bsdtalk, libressl</itunes:keywords>
  <content:encoded>
    <![CDATA[<p>This time on the show we'll be talking with Jon Anderson about Capsicum and Casper to securely sandbox processes. After that, our tutorial will show you how to encrypt all your DNS lookups, either on a single system or for your whole network. News, emails and all the usual fun, on BSD Now - the place to B.. SD.</p>

<h2>This episode was brought to you by</h2>

<p><a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"><img src="/images/iXlogo2.png" alt="iXsystems - Enterprise servers and storage for open source"></a><a href="http://www.tarsnap.com/bsdnow" title="Tarsnap" rel="nofollow noopener"><img src="/images/tarsnap1.png" alt="Tarsnap - online backups for the truly paranoid"></a></p>

<hr>

<h2>Headlines</h2>

<h3><a href="https://www.bsdcan.org/2014/schedule/" rel="nofollow noopener">BSDCan 2014 talks and reports</a></h3>

<ul>
<li>The majority of the BSDCan talks are finally uploaded, so prepare to be flooded with links</li>
<li>Karl Lehenbauer's <a href="https://www.youtube.com/watch?v=13LiyjnTGsQ" rel="nofollow noopener">keynote</a> (he's on next week's episode)</li>
<li>Mariusz Zaborski and Pawel Jakub Dawidek,
<a href="https://www.youtube.com/watch?v=0la06FHbdvg" rel="nofollow noopener">Capsicum and Casper</a> (relevant to today's interview)</li>
<li>Luigi Rizzo,
<a href="https://www.youtube.com/watch?v=Lr5o1VQMtgA" rel="nofollow noopener">In-kernel OpenvSwitch on FreeBSD</a></li>
<li>Dwayne Hart, <a href="https://www.youtube.com/watch?v=AVuF9eFeVWs" rel="nofollow noopener">Migrating from Linux to FreeBSD for Backend Data Storage</a></li>
<li>Warner Losh, <a href="https://www.youtube.com/watch?v=lj0XAE6C6-k" rel="nofollow noopener">NAND Flash and FreeBSD</a></li>
<li>Simon Gerraty, <a href="https://www.youtube.com/watch?v=4s0UY0sg6vI" rel="nofollow noopener">FreeBSD bmake and Meta Mode</a></li>
<li>Bob Beck, <a href="https://www.youtube.com/watch?v=oM6S7FEUfkU" rel="nofollow noopener">LibreSSL - The First 30 Days</a></li>
<li>Henning Brauer, <a href="https://www.youtube.com/watch?v=cP8AW111IKg" rel="nofollow noopener">OpenBGPD Turns 10 Years Old</a></li>
<li>Arun Thomas, <a href="https://www.youtube.com/watch?v=ZAM7fqhGRr8" rel="nofollow noopener">BSD ARM Kernel Internals</a></li>
<li>Peter Hessler, <a href="https://www.youtube.com/watch?v=i8UAVswpagA" rel="nofollow noopener">Using BGP for Realtime Spam Lists</a></li>
<li>Pedro Giffuni, <a href="https://www.youtube.com/watch?v=HMeTxViulgo" rel="nofollow noopener">Features and Status of FreeBSD's Ext2 Implementation
</a></li>
<li>Matt Ahrens, <a href="https://www.youtube.com/watch?v=EjGqVdCOIhM" rel="nofollow noopener">OpenZFS Upcoming Features and Performance Enhancements</a></li>
<li>Daichi Goto, <a href="https://www.youtube.com/watch?v=MsRu0xIawaA" rel="nofollow noopener">Shellscripts and Commands</a></li>
<li>Benno Rice, <a href="https://www.youtube.com/watch?v=jZp-ciB6mAg" rel="nofollow noopener">Keeping Current</a></li>
<li>Sean Bruno, <a href="https://www.youtube.com/watch?v=LZjoFSfIv3k" rel="nofollow noopener">MIPS Router Hacking</a></li>
<li>John-Mark Gurney, <a href="https://www.youtube.com/watch?v=2qicD0tv_tI" rel="nofollow noopener">Optimizing GELI Performance</a></li>
<li>Patrick Kelsey, <a href="https://www.youtube.com/watch?v=LhIx8q8_7YY" rel="nofollow noopener">Userspace Networking with libuinet</a></li>
<li>Massimiliano Stucchi, <a href="https://www.youtube.com/watch?v=WZoQzUZKaeo" rel="nofollow noopener">IPv6 Transitioning Mechanisms</a></li>
<li>Roger Pau Monné, <a href="https://www.youtube.com/watch?v=q6l9qtjlNXU" rel="nofollow noopener">Taking the Red Pill</a></li>
<li>Shawn Webb, <a href="https://www.youtube.com/watch?v=jo8ObzR1tKQ" rel="nofollow noopener">Introducing ASLR in FreeBSD</a></li>
<li>There's also a <a href="http://undeadly.org/cgi?action=article&amp;sid=20140519164127" rel="nofollow noopener">trip report</a> from Peter Hessler and <a href="http://julipedia.meroh.net/2014/05/bsdcan-2014-summary.html" rel="nofollow noopener">one from Julio Merino</a></li>
<li>The latter report also talks about how, unfortunately, NetBSD basically had no presence in the event at all (and how that's a recurring trend)
***</li>
</ul>

<h3><a href="http://networkfilter.blogspot.com/2014/05/defend-your-network-and-privacy-vpn.html" rel="nofollow noopener">Defend your network and privacy with a VPN and OpenBSD</a></h3>

<ul>
<li>After all the recent news about spying, backdoored routers, deep packet inspection and everything else, you might want to start taking steps at getting some privacy back</li>
<li>This article describes how to set up a secure network gateway and VPN using OpenBSD and related crypto utilities</li>
<li>There are bits for DHCP, DNS, OpenVPN, DNSCrypt and a watchdog script to make sure your tunnel is always being used</li>
<li>You can transparently tunnel all your outbound traffic over the VPN with this configuration, nothing is needed on any of the client systems - this could also be used with Tor (but it would be very slow)</li>
<li>It also includes a few general privacy tips, recommended browser extensions, etc</li>
<li>The intro to the article is especially great, so give the whole thing a read</li>
<li>He mentions our <a href="http://www.bsdnow.tv/tutorials/openbsd-router" rel="nofollow noopener">OpenBSD router guide</a> and other tutorials being a big help for this setup, so hello if you're watching!
***</li>
</ul>

<h3><a href="http://blog.pascalj.com/article/you-should-try-freebsd/" rel="nofollow noopener">You should try FreeBSD</a></h3>

<ul>
<li>In this blog post, the author talks a bit about how some Linux people aren't familiar with the BSDs and how we can take steps to change that</li>
<li>He goes into some FreeBSD history specifically, then talks about some of the apparent (and not-so-apparent) differences between the two</li>
<li>Possibly the most useful part is how to address the question "my server already works, why bother switching?"</li>
<li>"Stackoverflow’s answers assume I have apt-get installed"</li>
<li>It includes mention of the great documentation, stability, ports, improved security and much more</li>
<li>A takeaway quote for would-be Linux switchers: "I like to compare FreeBSD to a really tidy room where you can find everything with your eyes closed. Once you know where the closets are, it is easy to just grab what you need, even if you have never touched it before"
***</li>
</ul>

<h3><a href="http://hacklog.in/openbsd-and-the-little-mauritian-contributor/" rel="nofollow noopener">OpenBSD and the little Mauritian contributor</a></h3>

<ul>
<li>This is a story about a guy from <a href="https://en.wikipedia.org/wiki/Mauritius" rel="nofollow noopener">Mauritius</a> named Logan, one of OpenBSD's newest developers</li>
<li>Back in 2010, he started sending in patched for OpenBSD's "mg" editor, among other small things, and eventually added file transfer resume support for SFTP</li>
<li>The article talks about his journey from just a guy who submits a patch here and there to joining the developer ranks and even getting his picture taken with Theo at a recent hackathon</li>
<li>It really shows how easy it is to get involved with the different BSDs and contribute back to the software ecosystem</li>
<li>Congrats to Logan, and hopefully this will inspire more people to start helping out and contributing code back
***</li>
</ul>

<h2>Interview - Jon Anderson - <a href="mailto:jonathan@freebsd.org" rel="nofollow noopener">jonathan@freebsd.org</a></h2>

<p>Capsicum and Casperd</p>

<hr>

<h2>Tutorial</h2>

<h3><a href="http://www.bsdnow.tv/tutorials/dnscrypt" rel="nofollow noopener">Encrypting DNS lookups</a></h3>

<hr>

<h2>News Roundup</h2>

<h3><a href="http://i.imgur.com/f0qg6Ss.jpg" rel="nofollow noopener">FreeBSD Journal, May 2014 issue</a></h3>

<ul>
<li>The newest issue of the <a href="http://www.bsdnow.tv/episodes/2014_01_29-journaled_news_updates" rel="nofollow noopener">FreeBSD Journal</a> is out, following the bi-monthly release cycle</li>
<li>This time the topics include: a letter from the foundation, a ports report, some 9.3-RELEASE plans, an events calendar, an overview of ipfw, exploring network activity with dtrace, an article about kqueue, data distribution with dnssec and finally an article about TCP scaling</li>
<li>Pick up your (digital) copy at Amazon, Google Play or on iTunes and have a read
***</li>
</ul>

<h3><a href="http://insanecoding.blogspot.com/2014/05/libressl-porting-update.html" rel="nofollow noopener">LibreSSL porting update</a></h3>

<ul>
<li>Since the last LibreSSL post we covered, a couple unofficial "portable" versions have died off</li>
<li>Unfortunately, people still think they can just port LibreSSL to other BSDs and Linux all willy-nilly - stop doing that!</li>
<li>This post reiterates that LibreSSL currently relies on a lot of OpenBSD-specific security functions that are not present in other systems, and also gives a very eye-opening example</li>
<li>Please wait for an official portable version instead of wasting time with these dime-a-dozen github clones that do more harm than good
***</li>
</ul>

<h3><a href="http://bsdmag.org/magazine/1862-meteorjs-on-freebsd-11-may-bsd-issue" rel="nofollow noopener">BSDMag May 2014 issue is out</a></h3>

<ul>
<li>The usual monthly release from BSDMag, covering a variety of subjects</li>
<li>This time around the topics include: managing large development projects using RCS, working with HAMMER FS and PFSes, running MeteorJS on FreeBSD 11, another bhyve article, more GIMP tutorials and a few other things</li>
<li>It's a free PDF, go grab it
***</li>
</ul>

<h3><a href="http://bsdtalk.blogspot.com/2014/05/bsdtalk241-bob-beck.html" rel="nofollow noopener">BSDTalk episode 241</a></h3>

<ul>
<li>A new episode of <a href="http://www.bsdnow.tv/episodes/2014_03_05-bsd_now_vs_bsdtalk" rel="nofollow noopener">BSDTalk</a> is out, this time with Bob Beck</li>
<li>He talks about the OpenBSD foundation's recent activities, his own work in the project, some stories about the hardware in Theo's basement and a lot more</li>
<li>The interview itself isn't about LibreSSL at all, but they do touch on it a bit too</li>
<li>Really interesting stuff, covers a lot of different topics in a short amount of time
***</li>
</ul>

<h2>Feedback/Questions</h2>

<ul>
<li>We got a number of replies about last week's VPN question, so thanks to everyone who sent in an email about it - the <a href="https://www.freshports.org/security/vpnc/" rel="nofollow noopener">vpnc</a> package seems to be what we were looking for</li>
<li><a href="http://slexy.org/view/s20MK7bTyc" rel="nofollow noopener">Tim writes in</a></li>
<li><a href="http://slexy.org/view/s2OWREQdUA" rel="nofollow noopener">AJ writes in</a></li>
<li><a href="http://slexy.org/view/s202obAqbT" rel="nofollow noopener">Peter writes in</a></li>
<li><a href="http://slexy.org/view/s21Kye2jAc" rel="nofollow noopener">Thomas writes in</a></li>
<li><a href="http://slexy.org/view/s2zqFVqwxN" rel="nofollow noopener">Martin writes in</a>
***</li>
</ul>]]>
  </content:encoded>
  <itunes:summary>
    <![CDATA[<p>This time on the show we'll be talking with Jon Anderson about Capsicum and Casper to securely sandbox processes. After that, our tutorial will show you how to encrypt all your DNS lookups, either on a single system or for your whole network. News, emails and all the usual fun, on BSD Now - the place to B.. SD.</p>

<h2>This episode was brought to you by</h2>

<p><a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"><img src="/images/iXlogo2.png" alt="iXsystems - Enterprise servers and storage for open source"></a><a href="http://www.tarsnap.com/bsdnow" title="Tarsnap" rel="nofollow noopener"><img src="/images/tarsnap1.png" alt="Tarsnap - online backups for the truly paranoid"></a></p>

<hr>

<h2>Headlines</h2>

<h3><a href="https://www.bsdcan.org/2014/schedule/" rel="nofollow noopener">BSDCan 2014 talks and reports</a></h3>

<ul>
<li>The majority of the BSDCan talks are finally uploaded, so prepare to be flooded with links</li>
<li>Karl Lehenbauer's <a href="https://www.youtube.com/watch?v=13LiyjnTGsQ" rel="nofollow noopener">keynote</a> (he's on next week's episode)</li>
<li>Mariusz Zaborski and Pawel Jakub Dawidek,
<a href="https://www.youtube.com/watch?v=0la06FHbdvg" rel="nofollow noopener">Capsicum and Casper</a> (relevant to today's interview)</li>
<li>Luigi Rizzo,
<a href="https://www.youtube.com/watch?v=Lr5o1VQMtgA" rel="nofollow noopener">In-kernel OpenvSwitch on FreeBSD</a></li>
<li>Dwayne Hart, <a href="https://www.youtube.com/watch?v=AVuF9eFeVWs" rel="nofollow noopener">Migrating from Linux to FreeBSD for Backend Data Storage</a></li>
<li>Warner Losh, <a href="https://www.youtube.com/watch?v=lj0XAE6C6-k" rel="nofollow noopener">NAND Flash and FreeBSD</a></li>
<li>Simon Gerraty, <a href="https://www.youtube.com/watch?v=4s0UY0sg6vI" rel="nofollow noopener">FreeBSD bmake and Meta Mode</a></li>
<li>Bob Beck, <a href="https://www.youtube.com/watch?v=oM6S7FEUfkU" rel="nofollow noopener">LibreSSL - The First 30 Days</a></li>
<li>Henning Brauer, <a href="https://www.youtube.com/watch?v=cP8AW111IKg" rel="nofollow noopener">OpenBGPD Turns 10 Years Old</a></li>
<li>Arun Thomas, <a href="https://www.youtube.com/watch?v=ZAM7fqhGRr8" rel="nofollow noopener">BSD ARM Kernel Internals</a></li>
<li>Peter Hessler, <a href="https://www.youtube.com/watch?v=i8UAVswpagA" rel="nofollow noopener">Using BGP for Realtime Spam Lists</a></li>
<li>Pedro Giffuni, <a href="https://www.youtube.com/watch?v=HMeTxViulgo" rel="nofollow noopener">Features and Status of FreeBSD's Ext2 Implementation
</a></li>
<li>Matt Ahrens, <a href="https://www.youtube.com/watch?v=EjGqVdCOIhM" rel="nofollow noopener">OpenZFS Upcoming Features and Performance Enhancements</a></li>
<li>Daichi Goto, <a href="https://www.youtube.com/watch?v=MsRu0xIawaA" rel="nofollow noopener">Shellscripts and Commands</a></li>
<li>Benno Rice, <a href="https://www.youtube.com/watch?v=jZp-ciB6mAg" rel="nofollow noopener">Keeping Current</a></li>
<li>Sean Bruno, <a href="https://www.youtube.com/watch?v=LZjoFSfIv3k" rel="nofollow noopener">MIPS Router Hacking</a></li>
<li>John-Mark Gurney, <a href="https://www.youtube.com/watch?v=2qicD0tv_tI" rel="nofollow noopener">Optimizing GELI Performance</a></li>
<li>Patrick Kelsey, <a href="https://www.youtube.com/watch?v=LhIx8q8_7YY" rel="nofollow noopener">Userspace Networking with libuinet</a></li>
<li>Massimiliano Stucchi, <a href="https://www.youtube.com/watch?v=WZoQzUZKaeo" rel="nofollow noopener">IPv6 Transitioning Mechanisms</a></li>
<li>Roger Pau Monné, <a href="https://www.youtube.com/watch?v=q6l9qtjlNXU" rel="nofollow noopener">Taking the Red Pill</a></li>
<li>Shawn Webb, <a href="https://www.youtube.com/watch?v=jo8ObzR1tKQ" rel="nofollow noopener">Introducing ASLR in FreeBSD</a></li>
<li>There's also a <a href="http://undeadly.org/cgi?action=article&amp;sid=20140519164127" rel="nofollow noopener">trip report</a> from Peter Hessler and <a href="http://julipedia.meroh.net/2014/05/bsdcan-2014-summary.html" rel="nofollow noopener">one from Julio Merino</a></li>
<li>The latter report also talks about how, unfortunately, NetBSD basically had no presence in the event at all (and how that's a recurring trend)
***</li>
</ul>

<h3><a href="http://networkfilter.blogspot.com/2014/05/defend-your-network-and-privacy-vpn.html" rel="nofollow noopener">Defend your network and privacy with a VPN and OpenBSD</a></h3>

<ul>
<li>After all the recent news about spying, backdoored routers, deep packet inspection and everything else, you might want to start taking steps at getting some privacy back</li>
<li>This article describes how to set up a secure network gateway and VPN using OpenBSD and related crypto utilities</li>
<li>There are bits for DHCP, DNS, OpenVPN, DNSCrypt and a watchdog script to make sure your tunnel is always being used</li>
<li>You can transparently tunnel all your outbound traffic over the VPN with this configuration, nothing is needed on any of the client systems - this could also be used with Tor (but it would be very slow)</li>
<li>It also includes a few general privacy tips, recommended browser extensions, etc</li>
<li>The intro to the article is especially great, so give the whole thing a read</li>
<li>He mentions our <a href="http://www.bsdnow.tv/tutorials/openbsd-router" rel="nofollow noopener">OpenBSD router guide</a> and other tutorials being a big help for this setup, so hello if you're watching!
***</li>
</ul>

<h3><a href="http://blog.pascalj.com/article/you-should-try-freebsd/" rel="nofollow noopener">You should try FreeBSD</a></h3>

<ul>
<li>In this blog post, the author talks a bit about how some Linux people aren't familiar with the BSDs and how we can take steps to change that</li>
<li>He goes into some FreeBSD history specifically, then talks about some of the apparent (and not-so-apparent) differences between the two</li>
<li>Possibly the most useful part is how to address the question "my server already works, why bother switching?"</li>
<li>"Stackoverflow’s answers assume I have apt-get installed"</li>
<li>It includes mention of the great documentation, stability, ports, improved security and much more</li>
<li>A takeaway quote for would-be Linux switchers: "I like to compare FreeBSD to a really tidy room where you can find everything with your eyes closed. Once you know where the closets are, it is easy to just grab what you need, even if you have never touched it before"
***</li>
</ul>

<h3><a href="http://hacklog.in/openbsd-and-the-little-mauritian-contributor/" rel="nofollow noopener">OpenBSD and the little Mauritian contributor</a></h3>

<ul>
<li>This is a story about a guy from <a href="https://en.wikipedia.org/wiki/Mauritius" rel="nofollow noopener">Mauritius</a> named Logan, one of OpenBSD's newest developers</li>
<li>Back in 2010, he started sending in patched for OpenBSD's "mg" editor, among other small things, and eventually added file transfer resume support for SFTP</li>
<li>The article talks about his journey from just a guy who submits a patch here and there to joining the developer ranks and even getting his picture taken with Theo at a recent hackathon</li>
<li>It really shows how easy it is to get involved with the different BSDs and contribute back to the software ecosystem</li>
<li>Congrats to Logan, and hopefully this will inspire more people to start helping out and contributing code back
***</li>
</ul>

<h2>Interview - Jon Anderson - <a href="mailto:jonathan@freebsd.org" rel="nofollow noopener">jonathan@freebsd.org</a></h2>

<p>Capsicum and Casperd</p>

<hr>

<h2>Tutorial</h2>

<h3><a href="http://www.bsdnow.tv/tutorials/dnscrypt" rel="nofollow noopener">Encrypting DNS lookups</a></h3>

<hr>

<h2>News Roundup</h2>

<h3><a href="http://i.imgur.com/f0qg6Ss.jpg" rel="nofollow noopener">FreeBSD Journal, May 2014 issue</a></h3>

<ul>
<li>The newest issue of the <a href="http://www.bsdnow.tv/episodes/2014_01_29-journaled_news_updates" rel="nofollow noopener">FreeBSD Journal</a> is out, following the bi-monthly release cycle</li>
<li>This time the topics include: a letter from the foundation, a ports report, some 9.3-RELEASE plans, an events calendar, an overview of ipfw, exploring network activity with dtrace, an article about kqueue, data distribution with dnssec and finally an article about TCP scaling</li>
<li>Pick up your (digital) copy at Amazon, Google Play or on iTunes and have a read
***</li>
</ul>

<h3><a href="http://insanecoding.blogspot.com/2014/05/libressl-porting-update.html" rel="nofollow noopener">LibreSSL porting update</a></h3>

<ul>
<li>Since the last LibreSSL post we covered, a couple unofficial "portable" versions have died off</li>
<li>Unfortunately, people still think they can just port LibreSSL to other BSDs and Linux all willy-nilly - stop doing that!</li>
<li>This post reiterates that LibreSSL currently relies on a lot of OpenBSD-specific security functions that are not present in other systems, and also gives a very eye-opening example</li>
<li>Please wait for an official portable version instead of wasting time with these dime-a-dozen github clones that do more harm than good
***</li>
</ul>

<h3><a href="http://bsdmag.org/magazine/1862-meteorjs-on-freebsd-11-may-bsd-issue" rel="nofollow noopener">BSDMag May 2014 issue is out</a></h3>

<ul>
<li>The usual monthly release from BSDMag, covering a variety of subjects</li>
<li>This time around the topics include: managing large development projects using RCS, working with HAMMER FS and PFSes, running MeteorJS on FreeBSD 11, another bhyve article, more GIMP tutorials and a few other things</li>
<li>It's a free PDF, go grab it
***</li>
</ul>

<h3><a href="http://bsdtalk.blogspot.com/2014/05/bsdtalk241-bob-beck.html" rel="nofollow noopener">BSDTalk episode 241</a></h3>

<ul>
<li>A new episode of <a href="http://www.bsdnow.tv/episodes/2014_03_05-bsd_now_vs_bsdtalk" rel="nofollow noopener">BSDTalk</a> is out, this time with Bob Beck</li>
<li>He talks about the OpenBSD foundation's recent activities, his own work in the project, some stories about the hardware in Theo's basement and a lot more</li>
<li>The interview itself isn't about LibreSSL at all, but they do touch on it a bit too</li>
<li>Really interesting stuff, covers a lot of different topics in a short amount of time
***</li>
</ul>

<h2>Feedback/Questions</h2>

<ul>
<li>We got a number of replies about last week's VPN question, so thanks to everyone who sent in an email about it - the <a href="https://www.freshports.org/security/vpnc/" rel="nofollow noopener">vpnc</a> package seems to be what we were looking for</li>
<li><a href="http://slexy.org/view/s20MK7bTyc" rel="nofollow noopener">Tim writes in</a></li>
<li><a href="http://slexy.org/view/s2OWREQdUA" rel="nofollow noopener">AJ writes in</a></li>
<li><a href="http://slexy.org/view/s202obAqbT" rel="nofollow noopener">Peter writes in</a></li>
<li><a href="http://slexy.org/view/s21Kye2jAc" rel="nofollow noopener">Thomas writes in</a></li>
<li><a href="http://slexy.org/view/s2zqFVqwxN" rel="nofollow noopener">Martin writes in</a>
***</li>
</ul>]]>
  </itunes:summary>
</item>
<item>
  <title>38: A BUG's Life</title>
  <link>https://www.bsdnow.tv/38</link>
  <guid isPermaLink="false">01510b66-38e5-40ac-a282-9bff71cb55d9</guid>
  <pubDate>Wed, 21 May 2014 08:00:00 -0400</pubDate>
  <author>JT Pennington</author>
  <enclosure url="https://aphid.fireside.fm/d/1437767933/c91b88f1-e824-4815-bcb8-5227818d6010/01510b66-38e5-40ac-a282-9bff71cb55d9.mp3" length="63768244" type="audio/mpeg"/>
  <itunes:episodeType>full</itunes:episodeType>
  <itunes:author>JT Pennington</itunes:author>
  <itunes:subtitle>We're back from BSDCan! This week on the show we'll be chatting with Brian Callahan and Aaron Bieber about forming a local BSD users group. We'll get to hear their experiences of running one and maybe encourage some of you to start your own! After that, we've got a tutorial on the basics of NetBSD's package manager, pkgsrc. Answers to your emails and the latest headlines, on BSD Now - the place to B.. SD.</itunes:subtitle>
  <itunes:duration>1:28:34</itunes:duration>
  <itunes:explicit>no</itunes:explicit>
  <itunes:image href="https://media24.fireside.fm/file/fireside-images-2024/podcasts/images/c/c91b88f1-e824-4815-bcb8-5227818d6010/cover.jpg?v=4"/>
  <description>&lt;p&gt;We're back from BSDCan! This week on the show we'll be chatting with Brian Callahan and Aaron Bieber about forming a local BSD users group. We'll get to hear their experiences of running one and maybe encourage some of you to start your own! After that, we've got a tutorial on the basics of NetBSD's package manager, pkgsrc. Answers to your emails and the latest headlines, on BSD Now - the place to B.. SD.&lt;/p&gt;

&lt;h2&gt;This episode was brought to you by&lt;/h2&gt;

&lt;p&gt;&lt;a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"&gt;&lt;img src="/images/iXlogo2.png" alt="iXsystems - Enterprise Servers and Storage For Open Source"&gt;&lt;/a&gt;&lt;a href="http://www.tarsnap.com/bsdnow" title="Tarsnap" rel="nofollow noopener"&gt;&lt;img src="/images/tarsnap1.png" alt="Tarsnap - online backups for the truly paranoid"&gt;&lt;/a&gt;&lt;/p&gt;

&lt;hr&gt;

&lt;h2&gt;Headlines&lt;/h2&gt;

&lt;h3&gt;&lt;a href="http://blather.michaelwlucas.com/archives/2053" rel="nofollow noopener"&gt;FreeBSD 11 goals and discussion&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Something that actually happened at BSDCan this year...&lt;/li&gt;
&lt;li&gt;During the FreeBSD devsummit, there was some discussion about what changes will be made in 11.0-RELEASE&lt;/li&gt;
&lt;li&gt;Some of MWL's notes include: the test suite will be merged to 10-STABLE, more work on the MIPS platforms, LLDB getting more attention, UEFI boot and install support&lt;/li&gt;
&lt;li&gt;A large list of possibilities was also included and open for discussion, including AES-GCM in IPSEC, ASLR, OpenMP, ICC, in-place kernel upgrades, Capsicum improvements, TCP performance improvements and A LOT more&lt;/li&gt;
&lt;li&gt;There's also some notes from the &lt;a href="http://blather.michaelwlucas.com/archives/2060" rel="nofollow noopener"&gt;devsummit virtualization session&lt;/a&gt;, mostly talking about bhyve&lt;/li&gt;
&lt;li&gt;Lastly, he also provides some notes about &lt;a href="http://blather.michaelwlucas.com/archives/2065" rel="nofollow noopener"&gt;ports and packages&lt;/a&gt; and where they're going
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://securit.se/2014/05/how-to-install-kippo-ssh-honeypot-on-openbsd-5-5-with-chroot/" rel="nofollow noopener"&gt;An SSH honeypot with OpenBSD and Kippo&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Everyone loves messing with script kiddies, right?&lt;/li&gt;
&lt;li&gt;This blog post introduces &lt;a href="https://code.google.com/p/kippo/" rel="nofollow noopener"&gt;Kippo&lt;/a&gt;, an SSH honeypot tool, and how to use it in combination with OpenBSD&lt;/li&gt;
&lt;li&gt;It includes a step by step (or rather, command by command) guide and some tips for running a honeypot securely&lt;/li&gt;
&lt;li&gt;You can use this to get new 0day exploits or find weaknesses in your systems&lt;/li&gt;
&lt;li&gt;OpenBSD makes a great companion for security testing tools like this with all its exploit mitigation techniques that protect all running applications
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="https://www.netbsd.org/foundation/reports/financial/2013.html" rel="nofollow noopener"&gt;NetBSD foundation financial report&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;The NetBSD foundation has posted their 2013 financial report&lt;/li&gt;
&lt;li&gt;It's a very "no nonsense" page, pretty much only the hard numbers&lt;/li&gt;
&lt;li&gt;In 2013, they got $26,000 of income in donations&lt;/li&gt;
&lt;li&gt;The rest of the page shows all the details, how they spent it on hardware, consulting, conference fees, legal costs and everything else&lt;/li&gt;
&lt;li&gt;Be sure to donate to whichever BSDs you like and use!
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://www.geektechnique.org/projectlab/796/how-to-build-a-fully-encrypted-nas-on-openbsd.html" rel="nofollow noopener"&gt;Building a fully-encrypted NAS with OpenBSD&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Usually the popular choice for a NAS system is FreeNAS, or plain FreeBSD if you know what you're doing&lt;/li&gt;
&lt;li&gt;This article takes a look at the OpenBSD side and &lt;a href="http://www.geektechnique.org/projectlab/797/openbsd-encrypted-nas-howto.html" rel="nofollow noopener"&gt;explains how&lt;/a&gt; to build a NAS with security in mind&lt;/li&gt;
&lt;li&gt;The NAS will be fully encrypted, no separate /boot partition like FreeBSD and FreeNAS require - this means the kernel itself is even protected&lt;/li&gt;
&lt;li&gt;The obvious trade-off is the lack of ZFS support for storage, but this is an interesting idea that would fit most people's needs too&lt;/li&gt;
&lt;li&gt;There's also a bit of background information on NAS systems in general, some NAS-specific security tips and even some nice graphs and pictures of the hardware - fantastic write up!
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;Interview - Brian Callahan &amp;amp; Aaron Bieber - &lt;a href="mailto:admin@lists.nycbug.org" rel="nofollow noopener"&gt;admin@lists.nycbug.org&lt;/a&gt; &amp;amp; &lt;a href="mailto:admin@cobug.org" rel="nofollow noopener"&gt;admin@cobug.org&lt;/a&gt;&lt;/h2&gt;

&lt;p&gt;Forming a local BSD Users Group&lt;/p&gt;

&lt;hr&gt;

&lt;h2&gt;Tutorial&lt;/h2&gt;

&lt;h3&gt;&lt;a href="http://www.bsdnow.tv/tutorials/pkgsrc" rel="nofollow noopener"&gt;The basics of pkgsrc&lt;/a&gt;&lt;/h3&gt;

&lt;hr&gt;

&lt;h2&gt;News Roundup&lt;/h2&gt;

&lt;h3&gt;&lt;a href="http://deranfangvomende.wordpress.com/2014/05/11/freebsd-periodic-mails-vs-monitoring/" rel="nofollow noopener"&gt;FreeBSD periodic mails vs. monitoring&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;If you've ever been an admin for a lot of FreeBSD boxes, you've probably noticed that you get a lot of email&lt;/li&gt;
&lt;li&gt;This page tells about all the different alert emails, cron emails and other reports you might end up getting, as well as how to manage them&lt;/li&gt;
&lt;li&gt;From bad SSH logins to Zabbix alerts, it all adds up quickly&lt;/li&gt;
&lt;li&gt;It highlights the periodic.conf file and FreeBSD's periodic daemon, as well as some third party monitoring tools you can use to keep track of your servers
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://www.skogsrud.net/?p=44" rel="nofollow noopener"&gt;Doing cool stuff with OpenBSD routing domains&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;A blog post from our viewer and regular emailer, Kjell-Aleksander!&lt;/li&gt;
&lt;li&gt;He manages some internally-routed IP ranges at his work, but didn't want to have equipment for each separate project&lt;/li&gt;
&lt;li&gt;This is where OpenBSD routing domains and pf come in to save the day&lt;/li&gt;
&lt;li&gt;The blog post goes through the process with all the network details you could ever dream of&lt;/li&gt;
&lt;li&gt;He even &lt;a href="http://i.imgur.com/penYQFP.jpg" rel="nofollow noopener"&gt;named his networking equipment... after us&lt;/a&gt;
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://insanecoding.blogspot.com/2014/04/libressl-good-and-bad.html" rel="nofollow noopener"&gt;LibreSSL, the good and the bad&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;We're all probably familiar with OpenBSD's fork of OpenSSL at this point&lt;/li&gt;
&lt;li&gt;However, "for those of you that don't know it, OpenSSL is at the same time the best and most popular SSL/TLS library available, and utter junk"&lt;/li&gt;
&lt;li&gt;This article talks about some of the cryptographic development challenges involved with maintaining such a massive project&lt;/li&gt;
&lt;li&gt;You need cryptographers, software engineers, software optimization specialists - there are a lot of roles that need to be filled&lt;/li&gt;
&lt;li&gt;It also mentions some OpenSSL alternatives and recent LibreSSL progress, as well as some downsides to the fork - the main one being their aim for backwards compatibility
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://blog.pcbsd.org/2014/05/weekly-feature-digest-28-photos-of-the-new-appcafe-re-design/" rel="nofollow noopener"&gt;PCBSD weekly digest&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Lots going on in PCBSD land this week, AppCafe has been redesigned&lt;/li&gt;
&lt;li&gt;The PBI system is being replaced with pkgng, PBIs will be automatically converted once you update&lt;/li&gt;
&lt;li&gt;In the more &lt;a href="http://blog.pcbsd.org/2014/05/weekly-feature-digest-29-pbing/" rel="nofollow noopener"&gt;recent post&lt;/a&gt;, there's some further explanation of the PBI system and the reason for the transition&lt;/li&gt;
&lt;li&gt;It's got lots of details on the different ways to install software, so hopefully it will clear up any possible confusion
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;Feedback/Questions&lt;/h2&gt;

&lt;ul&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s2UbEhgjce" rel="nofollow noopener"&gt;Antonio writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s21XU0y3JP" rel="nofollow noopener"&gt;Daniel writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s2QQtuawFl" rel="nofollow noopener"&gt;Sean writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s20XrT5Q8U" rel="nofollow noopener"&gt;tsyn writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s2ayZ1nsdv" rel="nofollow noopener"&gt;Chris writes in&lt;/a&gt;
*** &lt;/li&gt;
&lt;/ul&gt;
</description>
  <itunes:keywords>freebsd, openbsd, netbsd, dragonflybsd, pcbsd, tutorial, howto, guide, bsd, interview, pkgsrc, bug, bsd user group, users group, community, lug, uug, unix users group, packages, signing, binary, source, compile, ports, nycbug, nycbsdcon, cobug, colorado, new york, conference, presentation, 11.0, ssh, honeypot, script kiddies, kippo, foundation, financial report, encrypted, nas, network attached storage, full disk encryption, periodic, routing domains, pf, the book of pf, third edition, 3rd edition, cron, monitoring, openssl, libressl</itunes:keywords>
  <content:encoded>
    <![CDATA[<p>We're back from BSDCan! This week on the show we'll be chatting with Brian Callahan and Aaron Bieber about forming a local BSD users group. We'll get to hear their experiences of running one and maybe encourage some of you to start your own! After that, we've got a tutorial on the basics of NetBSD's package manager, pkgsrc. Answers to your emails and the latest headlines, on BSD Now - the place to B.. SD.</p>

<h2>This episode was brought to you by</h2>

<p><a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"><img src="/images/iXlogo2.png" alt="iXsystems - Enterprise Servers and Storage For Open Source"></a><a href="http://www.tarsnap.com/bsdnow" title="Tarsnap" rel="nofollow noopener"><img src="/images/tarsnap1.png" alt="Tarsnap - online backups for the truly paranoid"></a></p>

<hr>

<h2>Headlines</h2>

<h3><a href="http://blather.michaelwlucas.com/archives/2053" rel="nofollow noopener">FreeBSD 11 goals and discussion</a></h3>

<ul>
<li>Something that actually happened at BSDCan this year...</li>
<li>During the FreeBSD devsummit, there was some discussion about what changes will be made in 11.0-RELEASE</li>
<li>Some of MWL's notes include: the test suite will be merged to 10-STABLE, more work on the MIPS platforms, LLDB getting more attention, UEFI boot and install support</li>
<li>A large list of possibilities was also included and open for discussion, including AES-GCM in IPSEC, ASLR, OpenMP, ICC, in-place kernel upgrades, Capsicum improvements, TCP performance improvements and A LOT more</li>
<li>There's also some notes from the <a href="http://blather.michaelwlucas.com/archives/2060" rel="nofollow noopener">devsummit virtualization session</a>, mostly talking about bhyve</li>
<li>Lastly, he also provides some notes about <a href="http://blather.michaelwlucas.com/archives/2065" rel="nofollow noopener">ports and packages</a> and where they're going
***</li>
</ul>

<h3><a href="http://securit.se/2014/05/how-to-install-kippo-ssh-honeypot-on-openbsd-5-5-with-chroot/" rel="nofollow noopener">An SSH honeypot with OpenBSD and Kippo</a></h3>

<ul>
<li>Everyone loves messing with script kiddies, right?</li>
<li>This blog post introduces <a href="https://code.google.com/p/kippo/" rel="nofollow noopener">Kippo</a>, an SSH honeypot tool, and how to use it in combination with OpenBSD</li>
<li>It includes a step by step (or rather, command by command) guide and some tips for running a honeypot securely</li>
<li>You can use this to get new 0day exploits or find weaknesses in your systems</li>
<li>OpenBSD makes a great companion for security testing tools like this with all its exploit mitigation techniques that protect all running applications
***</li>
</ul>

<h3><a href="https://www.netbsd.org/foundation/reports/financial/2013.html" rel="nofollow noopener">NetBSD foundation financial report</a></h3>

<ul>
<li>The NetBSD foundation has posted their 2013 financial report</li>
<li>It's a very "no nonsense" page, pretty much only the hard numbers</li>
<li>In 2013, they got $26,000 of income in donations</li>
<li>The rest of the page shows all the details, how they spent it on hardware, consulting, conference fees, legal costs and everything else</li>
<li>Be sure to donate to whichever BSDs you like and use!
***</li>
</ul>

<h3><a href="http://www.geektechnique.org/projectlab/796/how-to-build-a-fully-encrypted-nas-on-openbsd.html" rel="nofollow noopener">Building a fully-encrypted NAS with OpenBSD</a></h3>

<ul>
<li>Usually the popular choice for a NAS system is FreeNAS, or plain FreeBSD if you know what you're doing</li>
<li>This article takes a look at the OpenBSD side and <a href="http://www.geektechnique.org/projectlab/797/openbsd-encrypted-nas-howto.html" rel="nofollow noopener">explains how</a> to build a NAS with security in mind</li>
<li>The NAS will be fully encrypted, no separate /boot partition like FreeBSD and FreeNAS require - this means the kernel itself is even protected</li>
<li>The obvious trade-off is the lack of ZFS support for storage, but this is an interesting idea that would fit most people's needs too</li>
<li>There's also a bit of background information on NAS systems in general, some NAS-specific security tips and even some nice graphs and pictures of the hardware - fantastic write up!
***</li>
</ul>

<h2>Interview - Brian Callahan &amp; Aaron Bieber - <a href="mailto:admin@lists.nycbug.org" rel="nofollow noopener">admin@lists.nycbug.org</a> &amp; <a href="mailto:admin@cobug.org" rel="nofollow noopener">admin@cobug.org</a></h2>

<p>Forming a local BSD Users Group</p>

<hr>

<h2>Tutorial</h2>

<h3><a href="http://www.bsdnow.tv/tutorials/pkgsrc" rel="nofollow noopener">The basics of pkgsrc</a></h3>

<hr>

<h2>News Roundup</h2>

<h3><a href="http://deranfangvomende.wordpress.com/2014/05/11/freebsd-periodic-mails-vs-monitoring/" rel="nofollow noopener">FreeBSD periodic mails vs. monitoring</a></h3>

<ul>
<li>If you've ever been an admin for a lot of FreeBSD boxes, you've probably noticed that you get a lot of email</li>
<li>This page tells about all the different alert emails, cron emails and other reports you might end up getting, as well as how to manage them</li>
<li>From bad SSH logins to Zabbix alerts, it all adds up quickly</li>
<li>It highlights the periodic.conf file and FreeBSD's periodic daemon, as well as some third party monitoring tools you can use to keep track of your servers
***</li>
</ul>

<h3><a href="http://www.skogsrud.net/?p=44" rel="nofollow noopener">Doing cool stuff with OpenBSD routing domains</a></h3>

<ul>
<li>A blog post from our viewer and regular emailer, Kjell-Aleksander!</li>
<li>He manages some internally-routed IP ranges at his work, but didn't want to have equipment for each separate project</li>
<li>This is where OpenBSD routing domains and pf come in to save the day</li>
<li>The blog post goes through the process with all the network details you could ever dream of</li>
<li>He even <a href="http://i.imgur.com/penYQFP.jpg" rel="nofollow noopener">named his networking equipment... after us</a>
***</li>
</ul>

<h3><a href="http://insanecoding.blogspot.com/2014/04/libressl-good-and-bad.html" rel="nofollow noopener">LibreSSL, the good and the bad</a></h3>

<ul>
<li>We're all probably familiar with OpenBSD's fork of OpenSSL at this point</li>
<li>However, "for those of you that don't know it, OpenSSL is at the same time the best and most popular SSL/TLS library available, and utter junk"</li>
<li>This article talks about some of the cryptographic development challenges involved with maintaining such a massive project</li>
<li>You need cryptographers, software engineers, software optimization specialists - there are a lot of roles that need to be filled</li>
<li>It also mentions some OpenSSL alternatives and recent LibreSSL progress, as well as some downsides to the fork - the main one being their aim for backwards compatibility
***</li>
</ul>

<h3><a href="http://blog.pcbsd.org/2014/05/weekly-feature-digest-28-photos-of-the-new-appcafe-re-design/" rel="nofollow noopener">PCBSD weekly digest</a></h3>

<ul>
<li>Lots going on in PCBSD land this week, AppCafe has been redesigned</li>
<li>The PBI system is being replaced with pkgng, PBIs will be automatically converted once you update</li>
<li>In the more <a href="http://blog.pcbsd.org/2014/05/weekly-feature-digest-29-pbing/" rel="nofollow noopener">recent post</a>, there's some further explanation of the PBI system and the reason for the transition</li>
<li>It's got lots of details on the different ways to install software, so hopefully it will clear up any possible confusion
***</li>
</ul>

<h2>Feedback/Questions</h2>

<ul>
<li><a href="http://slexy.org/view/s2UbEhgjce" rel="nofollow noopener">Antonio writes in</a></li>
<li><a href="http://slexy.org/view/s21XU0y3JP" rel="nofollow noopener">Daniel writes in</a></li>
<li><a href="http://slexy.org/view/s2QQtuawFl" rel="nofollow noopener">Sean writes in</a></li>
<li><a href="http://slexy.org/view/s20XrT5Q8U" rel="nofollow noopener">tsyn writes in</a></li>
<li><a href="http://slexy.org/view/s2ayZ1nsdv" rel="nofollow noopener">Chris writes in</a>
***</li>
</ul>]]>
  </content:encoded>
  <itunes:summary>
    <![CDATA[<p>We're back from BSDCan! This week on the show we'll be chatting with Brian Callahan and Aaron Bieber about forming a local BSD users group. We'll get to hear their experiences of running one and maybe encourage some of you to start your own! After that, we've got a tutorial on the basics of NetBSD's package manager, pkgsrc. Answers to your emails and the latest headlines, on BSD Now - the place to B.. SD.</p>

<h2>This episode was brought to you by</h2>

<p><a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"><img src="/images/iXlogo2.png" alt="iXsystems - Enterprise Servers and Storage For Open Source"></a><a href="http://www.tarsnap.com/bsdnow" title="Tarsnap" rel="nofollow noopener"><img src="/images/tarsnap1.png" alt="Tarsnap - online backups for the truly paranoid"></a></p>

<hr>

<h2>Headlines</h2>

<h3><a href="http://blather.michaelwlucas.com/archives/2053" rel="nofollow noopener">FreeBSD 11 goals and discussion</a></h3>

<ul>
<li>Something that actually happened at BSDCan this year...</li>
<li>During the FreeBSD devsummit, there was some discussion about what changes will be made in 11.0-RELEASE</li>
<li>Some of MWL's notes include: the test suite will be merged to 10-STABLE, more work on the MIPS platforms, LLDB getting more attention, UEFI boot and install support</li>
<li>A large list of possibilities was also included and open for discussion, including AES-GCM in IPSEC, ASLR, OpenMP, ICC, in-place kernel upgrades, Capsicum improvements, TCP performance improvements and A LOT more</li>
<li>There's also some notes from the <a href="http://blather.michaelwlucas.com/archives/2060" rel="nofollow noopener">devsummit virtualization session</a>, mostly talking about bhyve</li>
<li>Lastly, he also provides some notes about <a href="http://blather.michaelwlucas.com/archives/2065" rel="nofollow noopener">ports and packages</a> and where they're going
***</li>
</ul>

<h3><a href="http://securit.se/2014/05/how-to-install-kippo-ssh-honeypot-on-openbsd-5-5-with-chroot/" rel="nofollow noopener">An SSH honeypot with OpenBSD and Kippo</a></h3>

<ul>
<li>Everyone loves messing with script kiddies, right?</li>
<li>This blog post introduces <a href="https://code.google.com/p/kippo/" rel="nofollow noopener">Kippo</a>, an SSH honeypot tool, and how to use it in combination with OpenBSD</li>
<li>It includes a step by step (or rather, command by command) guide and some tips for running a honeypot securely</li>
<li>You can use this to get new 0day exploits or find weaknesses in your systems</li>
<li>OpenBSD makes a great companion for security testing tools like this with all its exploit mitigation techniques that protect all running applications
***</li>
</ul>

<h3><a href="https://www.netbsd.org/foundation/reports/financial/2013.html" rel="nofollow noopener">NetBSD foundation financial report</a></h3>

<ul>
<li>The NetBSD foundation has posted their 2013 financial report</li>
<li>It's a very "no nonsense" page, pretty much only the hard numbers</li>
<li>In 2013, they got $26,000 of income in donations</li>
<li>The rest of the page shows all the details, how they spent it on hardware, consulting, conference fees, legal costs and everything else</li>
<li>Be sure to donate to whichever BSDs you like and use!
***</li>
</ul>

<h3><a href="http://www.geektechnique.org/projectlab/796/how-to-build-a-fully-encrypted-nas-on-openbsd.html" rel="nofollow noopener">Building a fully-encrypted NAS with OpenBSD</a></h3>

<ul>
<li>Usually the popular choice for a NAS system is FreeNAS, or plain FreeBSD if you know what you're doing</li>
<li>This article takes a look at the OpenBSD side and <a href="http://www.geektechnique.org/projectlab/797/openbsd-encrypted-nas-howto.html" rel="nofollow noopener">explains how</a> to build a NAS with security in mind</li>
<li>The NAS will be fully encrypted, no separate /boot partition like FreeBSD and FreeNAS require - this means the kernel itself is even protected</li>
<li>The obvious trade-off is the lack of ZFS support for storage, but this is an interesting idea that would fit most people's needs too</li>
<li>There's also a bit of background information on NAS systems in general, some NAS-specific security tips and even some nice graphs and pictures of the hardware - fantastic write up!
***</li>
</ul>

<h2>Interview - Brian Callahan &amp; Aaron Bieber - <a href="mailto:admin@lists.nycbug.org" rel="nofollow noopener">admin@lists.nycbug.org</a> &amp; <a href="mailto:admin@cobug.org" rel="nofollow noopener">admin@cobug.org</a></h2>

<p>Forming a local BSD Users Group</p>

<hr>

<h2>Tutorial</h2>

<h3><a href="http://www.bsdnow.tv/tutorials/pkgsrc" rel="nofollow noopener">The basics of pkgsrc</a></h3>

<hr>

<h2>News Roundup</h2>

<h3><a href="http://deranfangvomende.wordpress.com/2014/05/11/freebsd-periodic-mails-vs-monitoring/" rel="nofollow noopener">FreeBSD periodic mails vs. monitoring</a></h3>

<ul>
<li>If you've ever been an admin for a lot of FreeBSD boxes, you've probably noticed that you get a lot of email</li>
<li>This page tells about all the different alert emails, cron emails and other reports you might end up getting, as well as how to manage them</li>
<li>From bad SSH logins to Zabbix alerts, it all adds up quickly</li>
<li>It highlights the periodic.conf file and FreeBSD's periodic daemon, as well as some third party monitoring tools you can use to keep track of your servers
***</li>
</ul>

<h3><a href="http://www.skogsrud.net/?p=44" rel="nofollow noopener">Doing cool stuff with OpenBSD routing domains</a></h3>

<ul>
<li>A blog post from our viewer and regular emailer, Kjell-Aleksander!</li>
<li>He manages some internally-routed IP ranges at his work, but didn't want to have equipment for each separate project</li>
<li>This is where OpenBSD routing domains and pf come in to save the day</li>
<li>The blog post goes through the process with all the network details you could ever dream of</li>
<li>He even <a href="http://i.imgur.com/penYQFP.jpg" rel="nofollow noopener">named his networking equipment... after us</a>
***</li>
</ul>

<h3><a href="http://insanecoding.blogspot.com/2014/04/libressl-good-and-bad.html" rel="nofollow noopener">LibreSSL, the good and the bad</a></h3>

<ul>
<li>We're all probably familiar with OpenBSD's fork of OpenSSL at this point</li>
<li>However, "for those of you that don't know it, OpenSSL is at the same time the best and most popular SSL/TLS library available, and utter junk"</li>
<li>This article talks about some of the cryptographic development challenges involved with maintaining such a massive project</li>
<li>You need cryptographers, software engineers, software optimization specialists - there are a lot of roles that need to be filled</li>
<li>It also mentions some OpenSSL alternatives and recent LibreSSL progress, as well as some downsides to the fork - the main one being their aim for backwards compatibility
***</li>
</ul>

<h3><a href="http://blog.pcbsd.org/2014/05/weekly-feature-digest-28-photos-of-the-new-appcafe-re-design/" rel="nofollow noopener">PCBSD weekly digest</a></h3>

<ul>
<li>Lots going on in PCBSD land this week, AppCafe has been redesigned</li>
<li>The PBI system is being replaced with pkgng, PBIs will be automatically converted once you update</li>
<li>In the more <a href="http://blog.pcbsd.org/2014/05/weekly-feature-digest-29-pbing/" rel="nofollow noopener">recent post</a>, there's some further explanation of the PBI system and the reason for the transition</li>
<li>It's got lots of details on the different ways to install software, so hopefully it will clear up any possible confusion
***</li>
</ul>

<h2>Feedback/Questions</h2>

<ul>
<li><a href="http://slexy.org/view/s2UbEhgjce" rel="nofollow noopener">Antonio writes in</a></li>
<li><a href="http://slexy.org/view/s21XU0y3JP" rel="nofollow noopener">Daniel writes in</a></li>
<li><a href="http://slexy.org/view/s2QQtuawFl" rel="nofollow noopener">Sean writes in</a></li>
<li><a href="http://slexy.org/view/s20XrT5Q8U" rel="nofollow noopener">tsyn writes in</a></li>
<li><a href="http://slexy.org/view/s2ayZ1nsdv" rel="nofollow noopener">Chris writes in</a>
***</li>
</ul>]]>
  </itunes:summary>
</item>
<item>
  <title>35: Puffy Firewall</title>
  <link>https://www.bsdnow.tv/35</link>
  <guid isPermaLink="false">203904d9-509c-4727-918f-d5e6a6276cf8</guid>
  <pubDate>Wed, 30 Apr 2014 08:00:00 -0400</pubDate>
  <author>JT Pennington</author>
  <enclosure url="https://aphid.fireside.fm/d/1437767933/c91b88f1-e824-4815-bcb8-5227818d6010/203904d9-509c-4727-918f-d5e6a6276cf8.mp3" length="57157492" type="audio/mpeg"/>
  <itunes:episodeType>full</itunes:episodeType>
  <itunes:author>JT Pennington</itunes:author>
  <itunes:subtitle>We're back again! On this week's packed show, we've got one of the biggest tutorials we've done in a while. It's an in-depth look at PF, OpenBSD's firewall, with some practical examples and different use cases. We'll also be talking to Peter Hansteen about the new edition of "The Book of PF." Of course, we've got news and answers to your emails too, on BSD Now - the place to B.. SD.</itunes:subtitle>
  <itunes:duration>1:19:23</itunes:duration>
  <itunes:explicit>no</itunes:explicit>
  <itunes:image href="https://media24.fireside.fm/file/fireside-images-2024/podcasts/images/c/c91b88f1-e824-4815-bcb8-5227818d6010/cover.jpg?v=4"/>
  <description>&lt;p&gt;We're back again! On this week's packed show, we've got one of the biggest tutorials we've done in a while. It's an in-depth look at PF, OpenBSD's firewall, with some practical examples and different use cases. We'll also be talking to Peter Hansteen about the new edition of "The Book of PF." Of course, we've got news and answers to your emails too, on BSD Now - the place to B.. SD.&lt;/p&gt;

&lt;h2&gt;This episode was brought to you by&lt;/h2&gt;

&lt;p&gt;&lt;a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"&gt;&lt;img src="/images/iXlogo2.png" alt="iXsystems - Enterprise Servers and Storage For Open Source"&gt;&lt;/a&gt;&lt;/p&gt;

&lt;hr&gt;

&lt;h2&gt;Headlines&lt;/h2&gt;

&lt;h3&gt;&lt;a href="http://undeadly.org/cgi?action=article&amp;amp;sid=20140419151959" rel="nofollow noopener"&gt;ALTQ removed from PF&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Kicking off our big PF episode...&lt;/li&gt;
&lt;li&gt;The classic packet queueing system, ALTQ, was recently removed from OpenBSD -current&lt;/li&gt;
&lt;li&gt;There will be a transitional phase between 5.5 and 5.6 where you can still use it by replacing the "queue" keyword with "oldqueue" in your pf.conf&lt;/li&gt;
&lt;li&gt;As of 5.6, due about six months from now, you'll have to change your ruleset to the new syntax if you're using it for bandwidth shaping&lt;/li&gt;
&lt;li&gt;After more than ten years, bandwidth queueing has matured quite a bit and we can finally put ALTQ to rest, in favor of the new queueing subsystem&lt;/li&gt;
&lt;li&gt;This doesn't affect FreeBSD, PCBSD, NetBSD or DragonflyBSD since all of their PFs are older and maintained separately.
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="https://www.freebsd.org/news/status/report-2014-01-2014-03.html" rel="nofollow noopener"&gt;FreeBSD Quarterly Status Report&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;The quarterly status report from FreeBSD is out, detailing some of the project's ongoing tasks&lt;/li&gt;
&lt;li&gt;Some highlights include the first "stable" branch of ports, ARM improvements (including SMP), bhyve improvements, more work on the test suite, desktop improvements including the new vt console driver and UEFI booting support finally being added&lt;/li&gt;
&lt;li&gt;We've got some specific updates from the cluster admin team, core team, documentation team, portmgr team, email team and release engineering team&lt;/li&gt;
&lt;li&gt;LOTS of details and LOTS of topics to cover, give it a read
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://undeadly.org/cgi?action=article&amp;amp;sid=20140417184158" rel="nofollow noopener"&gt;OpenBSD's OpenSSL rewrite continues with m2k14&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;A mini OpenBSD &lt;a href="http://www.openbsd.org/hackathons.html" rel="nofollow noopener"&gt;hackathon&lt;/a&gt; begins in Morocco, Africa&lt;/li&gt;
&lt;li&gt;You can follow the changes in &lt;a href="http://www.openbsd.org/cgi-bin/cvsweb/src/lib/libssl/src/ssl/" rel="nofollow noopener"&gt;the -current CVS log&lt;/a&gt;, but &lt;a href="http://undeadly.org/cgi?action=article&amp;amp;sid=20140418063443" rel="nofollow noopener"&gt;a lot of work&lt;/a&gt; is mainly going towards the OpenSSL cleaning&lt;/li&gt;
&lt;li&gt;We've got two &lt;a href="http://undeadly.org/cgi?action=article&amp;amp;sid=20140429121423" rel="nofollow noopener"&gt;trip&lt;/a&gt; &lt;a href="http://undeadly.org/cgi?action=article&amp;amp;sid=20140425115340" rel="nofollow noopener"&gt;reports&lt;/a&gt; so far, hopefully we'll have some more to show you in a future episode&lt;/li&gt;
&lt;li&gt;You can see some of the &lt;a href="http://opensslrampage.org/" rel="nofollow noopener"&gt;more interesting quotes&lt;/a&gt; from the tear-down or &lt;a href="http://freshbsd.org/commit/openbsd/e5136d69ece4682e6167c8f4a8122270236898bf" rel="nofollow noopener"&gt;see everything&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://undeadly.org/cgi?action=article&amp;amp;sid=20140423045847" rel="nofollow noopener"&gt;Apparently&lt;/a&gt; they are going to call the fork "&lt;a href="https://news.ycombinator.com/item?id=7623789" rel="nofollow noopener"&gt;LibreSSL&lt;/a&gt;" ....&lt;/li&gt;
&lt;li&gt;&lt;a href="http://freshbsd.org/commit/openbsd/e5136d69ece4682e6167c8f4a8122270236898bf" rel="nofollow noopener"&gt;What were the OpenSSL developers thinking&lt;/a&gt;? The RSA private key was used to seed the entropy!&lt;/li&gt;
&lt;li&gt;We also got &lt;a href="http://www.zdnet.com/openbsd-forks-prunes-fixes-openssl-7000028613/" rel="nofollow noopener"&gt;some mainstream news coverage&lt;/a&gt; and &lt;a href="http://www.tedunangst.com/flak/post/origins-of-libressl" rel="nofollow noopener"&gt;another post from Ted&lt;/a&gt; about the history of the fork&lt;/li&gt;
&lt;li&gt;Definitely consider &lt;a href="http://www.openbsdfoundation.org/donations.html" rel="nofollow noopener"&gt;donating to the OpenBSD foundation&lt;/a&gt;, this fork will benefit all the other BSDs too
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="https://blog.netbsd.org/tnf/entry/netbsd_6_1_4_and" rel="nofollow noopener"&gt;NetBSD 6.1.4 and 6.0.5 released&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;New updates for the 6.1 and 6.0 branches of NetBSD, focusing on bugfixes&lt;/li&gt;
&lt;li&gt;The main update is - of course - the heartbleed vulnerability&lt;/li&gt;
&lt;li&gt;Also includes fixes for other security issues and even a kernel panic... on Atari&lt;/li&gt;
&lt;li&gt;Patch your Ataris right now, this is serious business
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;Interview - Peter Hansteen - &lt;a href="mailto:peter@bsdly.net" rel="nofollow noopener"&gt;peter@bsdly.net&lt;/a&gt; / &lt;a href="https://twitter.com/pitrh" rel="nofollow noopener"&gt;@pitrh&lt;/a&gt;&lt;/h2&gt;

&lt;p&gt;The Book of PF: 3rd edition&lt;/p&gt;

&lt;hr&gt;

&lt;h2&gt;Tutorial&lt;/h2&gt;

&lt;h3&gt;&lt;a href="http://www.bsdnow.tv/tutorials/pf" rel="nofollow noopener"&gt;BSD Firewalls: PF&lt;/a&gt;&lt;/h3&gt;

&lt;hr&gt;

&lt;h2&gt;News Roundup&lt;/h2&gt;

&lt;h3&gt;&lt;a href="https://svnweb.freebsd.org/ports?view=revision&amp;amp;revision=351411" rel="nofollow noopener"&gt;New Xorg now the default in FreeBSD&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;For quite a while now, FreeBSD has had two versions of X11 in ports&lt;/li&gt;
&lt;li&gt;The older, stable version was the default, but you could install a newer one by having "WITH_NEW_XORG" in /etc/make.conf&lt;/li&gt;
&lt;li&gt;They've finally made the switch for 10-STABLE and 9-STABLE&lt;/li&gt;
&lt;li&gt;Check &lt;a href="https://wiki.freebsd.org/Graphics" rel="nofollow noopener"&gt;this wiki page&lt;/a&gt; for more info
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="https://www.google-melange.com/gsoc/org2/google/gsoc2014/openbsdfoundation" rel="nofollow noopener"&gt;GSoC-accepted BSD projects&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;The Google Summer of Code team has got the list of accepted project proposals uploaded so we can see what's planned&lt;/li&gt;
&lt;li&gt;OpenBSD's list includes DHCP configuration parsing improvements, systemd replacements, porting capsicum, GPT and UEFI support, and modernizing the DHCP daemon&lt;/li&gt;
&lt;li&gt;The &lt;a href="https://www.google-melange.com/gsoc/org2/google/gsoc2014/freebsd" rel="nofollow noopener"&gt;FreeBSD list&lt;/a&gt; was also posted&lt;/li&gt;
&lt;li&gt;Theirs includes porting FreeBSD to the Android emulator, CTF in the kernel debugger, improved unicode support, converting firewall rules to a C module, pkgng improvements, MicroBlaze support, PXE fixes, bhyve caching, bootsplash and lots more&lt;/li&gt;
&lt;li&gt;Good luck to all the students participating, hopefully they become full time BSD users
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://www.hybridcluster.com/blog/complexity-freebsd-vfs-using-zfs-example-part-2/" rel="nofollow noopener"&gt;Complexity of FreeBSD VFS using ZFS as an example&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;HybridCluster posted the second part of their VFS and ZFS series&lt;/li&gt;
&lt;li&gt;This new post has lots of technical details once again, definitely worth reading if you're a ZFS guy&lt;/li&gt;
&lt;li&gt;Of course, also watch &lt;a href="http://www.bsdnow.tv/episodes/2014_02_12-the_cluster_the_cloud" rel="nofollow noopener"&gt;episode 24&lt;/a&gt; for our interview with HybridCluster - they do really interesting stuff
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://blog.pcbsd.org/2014/04/weekly-feature-digest-26-the-lumina-project-and-preload/" rel="nofollow noopener"&gt;PCBSD weekly digest&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Preload has been ported over, it's a daemon that prefetches applications&lt;/li&gt;
&lt;li&gt;PCBSD is developing their own desktop environment, Lumina (&lt;a href="http://blog.pcbsd.org/2014/04/quick-lumina-desktop-faq/" rel="nofollow noopener"&gt;there's also an FAQ&lt;/a&gt;)&lt;/li&gt;
&lt;li&gt;It's still in active development, but you can try it out by installing from ports&lt;/li&gt;
&lt;li&gt;We'll be showing a live demo of it in a few weeks (when development settles down a bit)&lt;/li&gt;
&lt;li&gt;Some kid in Australia &lt;a href="https://www.youtube.com/watch?v=ETxhbf3-z18" rel="nofollow noopener"&gt;subjects his poor mother to being on camera&lt;/a&gt; while she tries out PCBSD and gives her impressions of it
*** &lt;/li&gt;
&lt;/ul&gt;
</description>
  <itunes:keywords>freebsd, openbsd, netbsd, dragonflybsd, pcbsd, tutorial, howto, guide, bsd, interview, pf, firewall, pfsense, ipfw, ipfilter, router, packet filter, book of pf, third edition, 3rd, bsdcan, presentation, security, peter hansteen, peter n.m. hansteen, pitrh, iptables, npf, nostarch, no starch press, m2k14, hackathon, libressl, openssl, fork</itunes:keywords>
  <content:encoded>
    <![CDATA[<p>We're back again! On this week's packed show, we've got one of the biggest tutorials we've done in a while. It's an in-depth look at PF, OpenBSD's firewall, with some practical examples and different use cases. We'll also be talking to Peter Hansteen about the new edition of "The Book of PF." Of course, we've got news and answers to your emails too, on BSD Now - the place to B.. SD.</p>

<h2>This episode was brought to you by</h2>

<p><a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"><img src="/images/iXlogo2.png" alt="iXsystems - Enterprise Servers and Storage For Open Source"></a></p>

<hr>

<h2>Headlines</h2>

<h3><a href="http://undeadly.org/cgi?action=article&amp;sid=20140419151959" rel="nofollow noopener">ALTQ removed from PF</a></h3>

<ul>
<li>Kicking off our big PF episode...</li>
<li>The classic packet queueing system, ALTQ, was recently removed from OpenBSD -current</li>
<li>There will be a transitional phase between 5.5 and 5.6 where you can still use it by replacing the "queue" keyword with "oldqueue" in your pf.conf</li>
<li>As of 5.6, due about six months from now, you'll have to change your ruleset to the new syntax if you're using it for bandwidth shaping</li>
<li>After more than ten years, bandwidth queueing has matured quite a bit and we can finally put ALTQ to rest, in favor of the new queueing subsystem</li>
<li>This doesn't affect FreeBSD, PCBSD, NetBSD or DragonflyBSD since all of their PFs are older and maintained separately.
***</li>
</ul>

<h3><a href="https://www.freebsd.org/news/status/report-2014-01-2014-03.html" rel="nofollow noopener">FreeBSD Quarterly Status Report</a></h3>

<ul>
<li>The quarterly status report from FreeBSD is out, detailing some of the project's ongoing tasks</li>
<li>Some highlights include the first "stable" branch of ports, ARM improvements (including SMP), bhyve improvements, more work on the test suite, desktop improvements including the new vt console driver and UEFI booting support finally being added</li>
<li>We've got some specific updates from the cluster admin team, core team, documentation team, portmgr team, email team and release engineering team</li>
<li>LOTS of details and LOTS of topics to cover, give it a read
***</li>
</ul>

<h3><a href="http://undeadly.org/cgi?action=article&amp;sid=20140417184158" rel="nofollow noopener">OpenBSD's OpenSSL rewrite continues with m2k14</a></h3>

<ul>
<li>A mini OpenBSD <a href="http://www.openbsd.org/hackathons.html" rel="nofollow noopener">hackathon</a> begins in Morocco, Africa</li>
<li>You can follow the changes in <a href="http://www.openbsd.org/cgi-bin/cvsweb/src/lib/libssl/src/ssl/" rel="nofollow noopener">the -current CVS log</a>, but <a href="http://undeadly.org/cgi?action=article&amp;sid=20140418063443" rel="nofollow noopener">a lot of work</a> is mainly going towards the OpenSSL cleaning</li>
<li>We've got two <a href="http://undeadly.org/cgi?action=article&amp;sid=20140429121423" rel="nofollow noopener">trip</a> <a href="http://undeadly.org/cgi?action=article&amp;sid=20140425115340" rel="nofollow noopener">reports</a> so far, hopefully we'll have some more to show you in a future episode</li>
<li>You can see some of the <a href="http://opensslrampage.org/" rel="nofollow noopener">more interesting quotes</a> from the tear-down or <a href="http://freshbsd.org/commit/openbsd/e5136d69ece4682e6167c8f4a8122270236898bf" rel="nofollow noopener">see everything</a></li>
<li><a href="http://undeadly.org/cgi?action=article&amp;sid=20140423045847" rel="nofollow noopener">Apparently</a> they are going to call the fork "<a href="https://news.ycombinator.com/item?id=7623789" rel="nofollow noopener">LibreSSL</a>" ....</li>
<li><a href="http://freshbsd.org/commit/openbsd/e5136d69ece4682e6167c8f4a8122270236898bf" rel="nofollow noopener">What were the OpenSSL developers thinking</a>? The RSA private key was used to seed the entropy!</li>
<li>We also got <a href="http://www.zdnet.com/openbsd-forks-prunes-fixes-openssl-7000028613/" rel="nofollow noopener">some mainstream news coverage</a> and <a href="http://www.tedunangst.com/flak/post/origins-of-libressl" rel="nofollow noopener">another post from Ted</a> about the history of the fork</li>
<li>Definitely consider <a href="http://www.openbsdfoundation.org/donations.html" rel="nofollow noopener">donating to the OpenBSD foundation</a>, this fork will benefit all the other BSDs too
***</li>
</ul>

<h3><a href="https://blog.netbsd.org/tnf/entry/netbsd_6_1_4_and" rel="nofollow noopener">NetBSD 6.1.4 and 6.0.5 released</a></h3>

<ul>
<li>New updates for the 6.1 and 6.0 branches of NetBSD, focusing on bugfixes</li>
<li>The main update is - of course - the heartbleed vulnerability</li>
<li>Also includes fixes for other security issues and even a kernel panic... on Atari</li>
<li>Patch your Ataris right now, this is serious business
***</li>
</ul>

<h2>Interview - Peter Hansteen - <a href="mailto:peter@bsdly.net" rel="nofollow noopener">peter@bsdly.net</a> / <a href="https://twitter.com/pitrh" rel="nofollow noopener">@pitrh</a></h2>

<p>The Book of PF: 3rd edition</p>

<hr>

<h2>Tutorial</h2>

<h3><a href="http://www.bsdnow.tv/tutorials/pf" rel="nofollow noopener">BSD Firewalls: PF</a></h3>

<hr>

<h2>News Roundup</h2>

<h3><a href="https://svnweb.freebsd.org/ports?view=revision&amp;revision=351411" rel="nofollow noopener">New Xorg now the default in FreeBSD</a></h3>

<ul>
<li>For quite a while now, FreeBSD has had two versions of X11 in ports</li>
<li>The older, stable version was the default, but you could install a newer one by having "WITH_NEW_XORG" in /etc/make.conf</li>
<li>They've finally made the switch for 10-STABLE and 9-STABLE</li>
<li>Check <a href="https://wiki.freebsd.org/Graphics" rel="nofollow noopener">this wiki page</a> for more info
***</li>
</ul>

<h3><a href="https://www.google-melange.com/gsoc/org2/google/gsoc2014/openbsdfoundation" rel="nofollow noopener">GSoC-accepted BSD projects</a></h3>

<ul>
<li>The Google Summer of Code team has got the list of accepted project proposals uploaded so we can see what's planned</li>
<li>OpenBSD's list includes DHCP configuration parsing improvements, systemd replacements, porting capsicum, GPT and UEFI support, and modernizing the DHCP daemon</li>
<li>The <a href="https://www.google-melange.com/gsoc/org2/google/gsoc2014/freebsd" rel="nofollow noopener">FreeBSD list</a> was also posted</li>
<li>Theirs includes porting FreeBSD to the Android emulator, CTF in the kernel debugger, improved unicode support, converting firewall rules to a C module, pkgng improvements, MicroBlaze support, PXE fixes, bhyve caching, bootsplash and lots more</li>
<li>Good luck to all the students participating, hopefully they become full time BSD users
***</li>
</ul>

<h3><a href="http://www.hybridcluster.com/blog/complexity-freebsd-vfs-using-zfs-example-part-2/" rel="nofollow noopener">Complexity of FreeBSD VFS using ZFS as an example</a></h3>

<ul>
<li>HybridCluster posted the second part of their VFS and ZFS series</li>
<li>This new post has lots of technical details once again, definitely worth reading if you're a ZFS guy</li>
<li>Of course, also watch <a href="http://www.bsdnow.tv/episodes/2014_02_12-the_cluster_the_cloud" rel="nofollow noopener">episode 24</a> for our interview with HybridCluster - they do really interesting stuff
***</li>
</ul>

<h3><a href="http://blog.pcbsd.org/2014/04/weekly-feature-digest-26-the-lumina-project-and-preload/" rel="nofollow noopener">PCBSD weekly digest</a></h3>

<ul>
<li>Preload has been ported over, it's a daemon that prefetches applications</li>
<li>PCBSD is developing their own desktop environment, Lumina (<a href="http://blog.pcbsd.org/2014/04/quick-lumina-desktop-faq/" rel="nofollow noopener">there's also an FAQ</a>)</li>
<li>It's still in active development, but you can try it out by installing from ports</li>
<li>We'll be showing a live demo of it in a few weeks (when development settles down a bit)</li>
<li>Some kid in Australia <a href="https://www.youtube.com/watch?v=ETxhbf3-z18" rel="nofollow noopener">subjects his poor mother to being on camera</a> while she tries out PCBSD and gives her impressions of it
***</li>
</ul>]]>
  </content:encoded>
  <itunes:summary>
    <![CDATA[<p>We're back again! On this week's packed show, we've got one of the biggest tutorials we've done in a while. It's an in-depth look at PF, OpenBSD's firewall, with some practical examples and different use cases. We'll also be talking to Peter Hansteen about the new edition of "The Book of PF." Of course, we've got news and answers to your emails too, on BSD Now - the place to B.. SD.</p>

<h2>This episode was brought to you by</h2>

<p><a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"><img src="/images/iXlogo2.png" alt="iXsystems - Enterprise Servers and Storage For Open Source"></a></p>

<hr>

<h2>Headlines</h2>

<h3><a href="http://undeadly.org/cgi?action=article&amp;sid=20140419151959" rel="nofollow noopener">ALTQ removed from PF</a></h3>

<ul>
<li>Kicking off our big PF episode...</li>
<li>The classic packet queueing system, ALTQ, was recently removed from OpenBSD -current</li>
<li>There will be a transitional phase between 5.5 and 5.6 where you can still use it by replacing the "queue" keyword with "oldqueue" in your pf.conf</li>
<li>As of 5.6, due about six months from now, you'll have to change your ruleset to the new syntax if you're using it for bandwidth shaping</li>
<li>After more than ten years, bandwidth queueing has matured quite a bit and we can finally put ALTQ to rest, in favor of the new queueing subsystem</li>
<li>This doesn't affect FreeBSD, PCBSD, NetBSD or DragonflyBSD since all of their PFs are older and maintained separately.
***</li>
</ul>

<h3><a href="https://www.freebsd.org/news/status/report-2014-01-2014-03.html" rel="nofollow noopener">FreeBSD Quarterly Status Report</a></h3>

<ul>
<li>The quarterly status report from FreeBSD is out, detailing some of the project's ongoing tasks</li>
<li>Some highlights include the first "stable" branch of ports, ARM improvements (including SMP), bhyve improvements, more work on the test suite, desktop improvements including the new vt console driver and UEFI booting support finally being added</li>
<li>We've got some specific updates from the cluster admin team, core team, documentation team, portmgr team, email team and release engineering team</li>
<li>LOTS of details and LOTS of topics to cover, give it a read
***</li>
</ul>

<h3><a href="http://undeadly.org/cgi?action=article&amp;sid=20140417184158" rel="nofollow noopener">OpenBSD's OpenSSL rewrite continues with m2k14</a></h3>

<ul>
<li>A mini OpenBSD <a href="http://www.openbsd.org/hackathons.html" rel="nofollow noopener">hackathon</a> begins in Morocco, Africa</li>
<li>You can follow the changes in <a href="http://www.openbsd.org/cgi-bin/cvsweb/src/lib/libssl/src/ssl/" rel="nofollow noopener">the -current CVS log</a>, but <a href="http://undeadly.org/cgi?action=article&amp;sid=20140418063443" rel="nofollow noopener">a lot of work</a> is mainly going towards the OpenSSL cleaning</li>
<li>We've got two <a href="http://undeadly.org/cgi?action=article&amp;sid=20140429121423" rel="nofollow noopener">trip</a> <a href="http://undeadly.org/cgi?action=article&amp;sid=20140425115340" rel="nofollow noopener">reports</a> so far, hopefully we'll have some more to show you in a future episode</li>
<li>You can see some of the <a href="http://opensslrampage.org/" rel="nofollow noopener">more interesting quotes</a> from the tear-down or <a href="http://freshbsd.org/commit/openbsd/e5136d69ece4682e6167c8f4a8122270236898bf" rel="nofollow noopener">see everything</a></li>
<li><a href="http://undeadly.org/cgi?action=article&amp;sid=20140423045847" rel="nofollow noopener">Apparently</a> they are going to call the fork "<a href="https://news.ycombinator.com/item?id=7623789" rel="nofollow noopener">LibreSSL</a>" ....</li>
<li><a href="http://freshbsd.org/commit/openbsd/e5136d69ece4682e6167c8f4a8122270236898bf" rel="nofollow noopener">What were the OpenSSL developers thinking</a>? The RSA private key was used to seed the entropy!</li>
<li>We also got <a href="http://www.zdnet.com/openbsd-forks-prunes-fixes-openssl-7000028613/" rel="nofollow noopener">some mainstream news coverage</a> and <a href="http://www.tedunangst.com/flak/post/origins-of-libressl" rel="nofollow noopener">another post from Ted</a> about the history of the fork</li>
<li>Definitely consider <a href="http://www.openbsdfoundation.org/donations.html" rel="nofollow noopener">donating to the OpenBSD foundation</a>, this fork will benefit all the other BSDs too
***</li>
</ul>

<h3><a href="https://blog.netbsd.org/tnf/entry/netbsd_6_1_4_and" rel="nofollow noopener">NetBSD 6.1.4 and 6.0.5 released</a></h3>

<ul>
<li>New updates for the 6.1 and 6.0 branches of NetBSD, focusing on bugfixes</li>
<li>The main update is - of course - the heartbleed vulnerability</li>
<li>Also includes fixes for other security issues and even a kernel panic... on Atari</li>
<li>Patch your Ataris right now, this is serious business
***</li>
</ul>

<h2>Interview - Peter Hansteen - <a href="mailto:peter@bsdly.net" rel="nofollow noopener">peter@bsdly.net</a> / <a href="https://twitter.com/pitrh" rel="nofollow noopener">@pitrh</a></h2>

<p>The Book of PF: 3rd edition</p>

<hr>

<h2>Tutorial</h2>

<h3><a href="http://www.bsdnow.tv/tutorials/pf" rel="nofollow noopener">BSD Firewalls: PF</a></h3>

<hr>

<h2>News Roundup</h2>

<h3><a href="https://svnweb.freebsd.org/ports?view=revision&amp;revision=351411" rel="nofollow noopener">New Xorg now the default in FreeBSD</a></h3>

<ul>
<li>For quite a while now, FreeBSD has had two versions of X11 in ports</li>
<li>The older, stable version was the default, but you could install a newer one by having "WITH_NEW_XORG" in /etc/make.conf</li>
<li>They've finally made the switch for 10-STABLE and 9-STABLE</li>
<li>Check <a href="https://wiki.freebsd.org/Graphics" rel="nofollow noopener">this wiki page</a> for more info
***</li>
</ul>

<h3><a href="https://www.google-melange.com/gsoc/org2/google/gsoc2014/openbsdfoundation" rel="nofollow noopener">GSoC-accepted BSD projects</a></h3>

<ul>
<li>The Google Summer of Code team has got the list of accepted project proposals uploaded so we can see what's planned</li>
<li>OpenBSD's list includes DHCP configuration parsing improvements, systemd replacements, porting capsicum, GPT and UEFI support, and modernizing the DHCP daemon</li>
<li>The <a href="https://www.google-melange.com/gsoc/org2/google/gsoc2014/freebsd" rel="nofollow noopener">FreeBSD list</a> was also posted</li>
<li>Theirs includes porting FreeBSD to the Android emulator, CTF in the kernel debugger, improved unicode support, converting firewall rules to a C module, pkgng improvements, MicroBlaze support, PXE fixes, bhyve caching, bootsplash and lots more</li>
<li>Good luck to all the students participating, hopefully they become full time BSD users
***</li>
</ul>

<h3><a href="http://www.hybridcluster.com/blog/complexity-freebsd-vfs-using-zfs-example-part-2/" rel="nofollow noopener">Complexity of FreeBSD VFS using ZFS as an example</a></h3>

<ul>
<li>HybridCluster posted the second part of their VFS and ZFS series</li>
<li>This new post has lots of technical details once again, definitely worth reading if you're a ZFS guy</li>
<li>Of course, also watch <a href="http://www.bsdnow.tv/episodes/2014_02_12-the_cluster_the_cloud" rel="nofollow noopener">episode 24</a> for our interview with HybridCluster - they do really interesting stuff
***</li>
</ul>

<h3><a href="http://blog.pcbsd.org/2014/04/weekly-feature-digest-26-the-lumina-project-and-preload/" rel="nofollow noopener">PCBSD weekly digest</a></h3>

<ul>
<li>Preload has been ported over, it's a daemon that prefetches applications</li>
<li>PCBSD is developing their own desktop environment, Lumina (<a href="http://blog.pcbsd.org/2014/04/quick-lumina-desktop-faq/" rel="nofollow noopener">there's also an FAQ</a>)</li>
<li>It's still in active development, but you can try it out by installing from ports</li>
<li>We'll be showing a live demo of it in a few weeks (when development settles down a bit)</li>
<li>Some kid in Australia <a href="https://www.youtube.com/watch?v=ETxhbf3-z18" rel="nofollow noopener">subjects his poor mother to being on camera</a> while she tries out PCBSD and gives her impressions of it
***</li>
</ul>]]>
  </itunes:summary>
</item>
<item>
  <title>31: Edgy BSD Users</title>
  <link>https://www.bsdnow.tv/31</link>
  <guid isPermaLink="false">00e67148-6432-475e-a473-fa50bef3a29d</guid>
  <pubDate>Tue, 01 Apr 2014 08:00:00 -0400</pubDate>
  <author>JT Pennington</author>
  <enclosure url="https://aphid.fireside.fm/d/1437767933/c91b88f1-e824-4815-bcb8-5227818d6010/00e67148-6432-475e-a473-fa50bef3a29d.mp3" length="49769716" type="audio/mpeg"/>
  <itunes:episodeType>full</itunes:episodeType>
  <itunes:author>JT Pennington</itunes:author>
  <itunes:subtitle>This week we'll be talking to Richard Stallman about the upcoming GPLv4 and how it will protect our software from being stolen. After that, we'll show you how to recover from those pesky ZFS on Linux corruption issues, as well as some tips on how to explain to your boss that all the production boxes were compromised. Your questions and all the latest GNUs, on Linux Now - the place to Lin.. ux.</itunes:subtitle>
  <itunes:duration>1:09:07</itunes:duration>
  <itunes:explicit>no</itunes:explicit>
  <itunes:image href="https://media24.fireside.fm/file/fireside-images-2024/podcasts/images/c/c91b88f1-e824-4815-bcb8-5227818d6010/cover.jpg?v=4"/>
  <description>&lt;p&gt;This week we'll be talking to Richard Stallman about the upcoming GPLv4 and how it will protect our software from being stolen. After that, we'll show you how to recover from those pesky ZFS on Linux corruption issues, as well as some tips on how to explain to your boss that all the production boxes were compromised. Your questions and all the latest GNUs, on Linux Now - the place to Lin.. ux.&lt;/p&gt;

&lt;h2&gt;This episode was brought to you by&lt;/h2&gt;

&lt;p&gt;&lt;a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"&gt;&lt;img src="/images/iXlogo2.png" alt="iXsystems - Enterprise Servers and Storage For Open Source"&gt;&lt;/a&gt;&lt;/p&gt;

&lt;hr&gt;

&lt;h2&gt;Headlines&lt;/h2&gt;

&lt;h3&gt;&lt;a href="http://www.amazon.com/gp/aw/d/0321968972/" rel="nofollow noopener"&gt;Preorders for cool BSD stuff&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;The 2nd edition of The Design and Implementation of the FreeBSD Operating System is up for preorder&lt;/li&gt;
&lt;li&gt;We &lt;a href="http://www.bsdnow.tv/episodes/2014_01_29-journaled_news_updates" rel="nofollow noopener"&gt;talked to GNN&lt;/a&gt; briefly about it, but he and &lt;a href="http://www.bsdnow.tv/episodes/2013-10-02_stacks_of_cache" rel="nofollow noopener"&gt;Kirk&lt;/a&gt; have apparently finally finished the book&lt;/li&gt;
&lt;li&gt;"For many years, The Design and Implementation of the FreeBSD Operating System has been recognized as the most complete, up-to-date, and authoritative technical guide to FreeBSD's internal structure. Now, this definitive guide has been extensively updated to reflect all major FreeBSD improvements between Versions 5 and Versions 11"&lt;/li&gt;
&lt;li&gt;&lt;a href="https://https.openbsd.org/cgi-bin/order" rel="nofollow noopener"&gt;OpenBSD 5.5 preorders&lt;/a&gt; are also up, so you can buy a CD set now&lt;/li&gt;
&lt;li&gt;You can help support the project, and even get the -release of the OS before it's available publicly&lt;/li&gt;
&lt;li&gt;5.5 is a huge release with lots of big changes, so now is the right time to purchase one of these - tell Austin we sent you!
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://mail-index.netbsd.org/pkgsrc-users/2014/03/18/msg019424.html" rel="nofollow noopener"&gt;pkgsrcCon 2014 CFP&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;This year's pkgsrcCon is in London, on June 21st and 22nd&lt;/li&gt;
&lt;li&gt;There's a Call For Papers out now, so you can submit your talks&lt;/li&gt;
&lt;li&gt;Anything related to pkgsrc is fine, it's pretty informal&lt;/li&gt;
&lt;li&gt;Does anyone in the audience know if the talks will be recorded? This con is relatively unknown
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://bsdmag.org/magazine/1860-deploying-netbsd-on-the-cloud-using-aws-ec2-march-bsd-issue" rel="nofollow noopener"&gt;BSDMag issue for March 2014&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;The monthly BSD magazine releases its newest issue&lt;/li&gt;
&lt;li&gt;Topics this time include: deploying NetBSD using AWS EC2, creating a multi-purpose file server with NetBSD, DragonflyBSD as a backup server, more GIMP lessons, network analysis with wireshark and a general security article&lt;/li&gt;
&lt;li&gt;The Linux article trend seems to continue... hmm
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://blog.brianmoses.net/2014/03/why-i-chose-non-ecc-ram-for-my-freenas.html" rel="nofollow noopener"&gt;Non-ECC RAM in FreeNAS&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;We've gotten a few questions about ECC RAM with ZFS&lt;/li&gt;
&lt;li&gt;Here we've got a surprising blog post about why someone &lt;strong&gt;did not&lt;/strong&gt; go with ECC RAM for his NAS build&lt;/li&gt;
&lt;li&gt;The article mentions the benefits of ECC and admits it is a better choice in nearly all instances, but unfortunately it's not very widespread in consumer hardware motherboards and it's more expensive&lt;/li&gt;
&lt;li&gt;Regular RAM also has "special" issues with ZFS and pool corruption&lt;/li&gt;
&lt;li&gt;Long post, so check out the whole thing if you've been considering your memory options and weighing the benefits
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;Interview - Pierre Pronchery - &lt;a href="mailto:khorben@edgebsd.org" rel="nofollow noopener"&gt;khorben@edgebsd.org&lt;/a&gt; / &lt;a href="https://twitter.com/khorben" rel="nofollow noopener"&gt;@khorben&lt;/a&gt;&lt;/h2&gt;

&lt;p&gt;&lt;a href="https://www.youtube.com/watch?v=_D_iaad5rPo" rel="nofollow noopener"&gt;EdgeBSD&lt;/a&gt; (&lt;a href="http://ftp.netbsd.org/pub/NetBSD/misc/khorben/asiabsdcon2014/" rel="nofollow noopener"&gt;slides&lt;/a&gt;)&lt;/p&gt;

&lt;hr&gt;

&lt;h2&gt;Tutorial&lt;/h2&gt;

&lt;h3&gt;&lt;a href="http://www.bsdnow.tv/tutorials/the-desktop-obsd" rel="nofollow noopener"&gt;Building an OpenBSD desktop&lt;/a&gt;&lt;/h3&gt;

&lt;hr&gt;

&lt;h2&gt;News Roundup&lt;/h2&gt;

&lt;h3&gt;&lt;a href="http://blogs.freebsdish.org/portmgr/2014/03/25/getting-to-know-your-portmgr-lurker-frederic-culot" rel="nofollow noopener"&gt;Getting to know your portmgr-lurkers&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;This week we get to hear from Frederic Culot, colut@&lt;/li&gt;
&lt;li&gt;Originally an OpenBSD user from France, Frederic joined as a ports committer in 2010 and recently joined the portmgr lurkers team&lt;/li&gt;
&lt;li&gt;"FreeBSD is also one of my sources of inspiration when it comes to how
organizations behave and innovate, and I find it very interesting to compare FreeBSD with
the for-profit companies I work for"&lt;/li&gt;
&lt;li&gt;We get to find out a little bit about him, why he loves FreeBSD and what he does for the project
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="https://blog.netbsd.org/tnf/entry/the_playstation2_port_is_back" rel="nofollow noopener"&gt;NetBSD on the Playstation 2&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Who doesn't want to run NetBSD on their old PS2?&lt;/li&gt;
&lt;li&gt;The PS2 port of NetBSD was sadly removed in 2009, but it has been revived&lt;/li&gt;
&lt;li&gt;It's using a slightly unusual MIPS CPU that didn't have much GCC support&lt;/li&gt;
&lt;li&gt;Hopefully a bootable kernel will be available soon
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://www.thelinuxcauldron.com/2014/03/24/freebsd-challenge-day-22-30/" rel="nofollow noopener"&gt;The FreeBSD Challenge update&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Our friend from the Linux Foundation continues his FreeBSD switching journey&lt;/li&gt;
&lt;li&gt;This time he starts off by discovering virtual machines suck at keeping accurate time, and some ports weren't working because of his clock being way off&lt;/li&gt;
&lt;li&gt;After polling the IRC for help, he finally learns the difference between ntpdate and ntpd and both of their use cases&lt;/li&gt;
&lt;li&gt;Maybe he should've just read our &lt;a href="http://www.bsdnow.tv/tutorials/ntpd" rel="nofollow noopener"&gt;NTP tutorial&lt;/a&gt;!
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://blog.pcbsd.org/2014/03/pc-bsd-weekly-feature-digest-23/" rel="nofollow noopener"&gt;PCBSD weekly digest&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;The mount tray icon got lots of updates and fixes&lt;/li&gt;
&lt;li&gt;The faulty distribution server has finally been tracked down and... destroyed&lt;/li&gt;
&lt;li&gt;New language localization project is in progress&lt;/li&gt;
&lt;li&gt;Many many updates to ports and PBIs, new -STABLE builds
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;Feedback/Questions&lt;/h2&gt;

&lt;ul&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s27d69qHJW" rel="nofollow noopener"&gt;Antonio writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s21FhLCHbB" rel="nofollow noopener"&gt;Patrick writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s20Hisk3Yw" rel="nofollow noopener"&gt;Chris writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s20rBZyTLC" rel="nofollow noopener"&gt;Ron writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s2s4CxE4gd" rel="nofollow noopener"&gt;Tyler writes in&lt;/a&gt;
*** &lt;/li&gt;
&lt;/ul&gt;
</description>
  <itunes:keywords>freebsd, openbsd, netbsd, dragonflybsd, pcbsd, tutorial, howto, guide, bsd, interview, edgebsd, april fools, zfs, on linux, zpool, zol, zfsonlinux, gnu, linux, rms, richard stallman, gpl, copyright, copyleft, license, debian, centos, gentoo, ubuntu, arch, security, worst puns, desktop, gnome, xfce, gnome3, gnome-shell, ixsystems, ps2, mips, cpu, playstation 2, sony, edgebsd, fosdem, presentation, talk</itunes:keywords>
  <content:encoded>
    <![CDATA[<p>This week we'll be talking to Richard Stallman about the upcoming GPLv4 and how it will protect our software from being stolen. After that, we'll show you how to recover from those pesky ZFS on Linux corruption issues, as well as some tips on how to explain to your boss that all the production boxes were compromised. Your questions and all the latest GNUs, on Linux Now - the place to Lin.. ux.</p>

<h2>This episode was brought to you by</h2>

<p><a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"><img src="/images/iXlogo2.png" alt="iXsystems - Enterprise Servers and Storage For Open Source"></a></p>

<hr>

<h2>Headlines</h2>

<h3><a href="http://www.amazon.com/gp/aw/d/0321968972/" rel="nofollow noopener">Preorders for cool BSD stuff</a></h3>

<ul>
<li>The 2nd edition of The Design and Implementation of the FreeBSD Operating System is up for preorder</li>
<li>We <a href="http://www.bsdnow.tv/episodes/2014_01_29-journaled_news_updates" rel="nofollow noopener">talked to GNN</a> briefly about it, but he and <a href="http://www.bsdnow.tv/episodes/2013-10-02_stacks_of_cache" rel="nofollow noopener">Kirk</a> have apparently finally finished the book</li>
<li>"For many years, The Design and Implementation of the FreeBSD Operating System has been recognized as the most complete, up-to-date, and authoritative technical guide to FreeBSD's internal structure. Now, this definitive guide has been extensively updated to reflect all major FreeBSD improvements between Versions 5 and Versions 11"</li>
<li><a href="https://https.openbsd.org/cgi-bin/order" rel="nofollow noopener">OpenBSD 5.5 preorders</a> are also up, so you can buy a CD set now</li>
<li>You can help support the project, and even get the -release of the OS before it's available publicly</li>
<li>5.5 is a huge release with lots of big changes, so now is the right time to purchase one of these - tell Austin we sent you!
***</li>
</ul>

<h3><a href="http://mail-index.netbsd.org/pkgsrc-users/2014/03/18/msg019424.html" rel="nofollow noopener">pkgsrcCon 2014 CFP</a></h3>

<ul>
<li>This year's pkgsrcCon is in London, on June 21st and 22nd</li>
<li>There's a Call For Papers out now, so you can submit your talks</li>
<li>Anything related to pkgsrc is fine, it's pretty informal</li>
<li>Does anyone in the audience know if the talks will be recorded? This con is relatively unknown
***</li>
</ul>

<h3><a href="http://bsdmag.org/magazine/1860-deploying-netbsd-on-the-cloud-using-aws-ec2-march-bsd-issue" rel="nofollow noopener">BSDMag issue for March 2014</a></h3>

<ul>
<li>The monthly BSD magazine releases its newest issue</li>
<li>Topics this time include: deploying NetBSD using AWS EC2, creating a multi-purpose file server with NetBSD, DragonflyBSD as a backup server, more GIMP lessons, network analysis with wireshark and a general security article</li>
<li>The Linux article trend seems to continue... hmm
***</li>
</ul>

<h3><a href="http://blog.brianmoses.net/2014/03/why-i-chose-non-ecc-ram-for-my-freenas.html" rel="nofollow noopener">Non-ECC RAM in FreeNAS</a></h3>

<ul>
<li>We've gotten a few questions about ECC RAM with ZFS</li>
<li>Here we've got a surprising blog post about why someone <strong>did not</strong> go with ECC RAM for his NAS build</li>
<li>The article mentions the benefits of ECC and admits it is a better choice in nearly all instances, but unfortunately it's not very widespread in consumer hardware motherboards and it's more expensive</li>
<li>Regular RAM also has "special" issues with ZFS and pool corruption</li>
<li>Long post, so check out the whole thing if you've been considering your memory options and weighing the benefits
***</li>
</ul>

<h2>Interview - Pierre Pronchery - <a href="mailto:khorben@edgebsd.org" rel="nofollow noopener">khorben@edgebsd.org</a> / <a href="https://twitter.com/khorben" rel="nofollow noopener">@khorben</a></h2>

<p><a href="https://www.youtube.com/watch?v=_D_iaad5rPo" rel="nofollow noopener">EdgeBSD</a> (<a href="http://ftp.netbsd.org/pub/NetBSD/misc/khorben/asiabsdcon2014/" rel="nofollow noopener">slides</a>)</p>

<hr>

<h2>Tutorial</h2>

<h3><a href="http://www.bsdnow.tv/tutorials/the-desktop-obsd" rel="nofollow noopener">Building an OpenBSD desktop</a></h3>

<hr>

<h2>News Roundup</h2>

<h3><a href="http://blogs.freebsdish.org/portmgr/2014/03/25/getting-to-know-your-portmgr-lurker-frederic-culot" rel="nofollow noopener">Getting to know your portmgr-lurkers</a></h3>

<ul>
<li>This week we get to hear from Frederic Culot, colut@</li>
<li>Originally an OpenBSD user from France, Frederic joined as a ports committer in 2010 and recently joined the portmgr lurkers team</li>
<li>"FreeBSD is also one of my sources of inspiration when it comes to how
organizations behave and innovate, and I find it very interesting to compare FreeBSD with
the for-profit companies I work for"</li>
<li>We get to find out a little bit about him, why he loves FreeBSD and what he does for the project
***</li>
</ul>

<h3><a href="https://blog.netbsd.org/tnf/entry/the_playstation2_port_is_back" rel="nofollow noopener">NetBSD on the Playstation 2</a></h3>

<ul>
<li>Who doesn't want to run NetBSD on their old PS2?</li>
<li>The PS2 port of NetBSD was sadly removed in 2009, but it has been revived</li>
<li>It's using a slightly unusual MIPS CPU that didn't have much GCC support</li>
<li>Hopefully a bootable kernel will be available soon
***</li>
</ul>

<h3><a href="http://www.thelinuxcauldron.com/2014/03/24/freebsd-challenge-day-22-30/" rel="nofollow noopener">The FreeBSD Challenge update</a></h3>

<ul>
<li>Our friend from the Linux Foundation continues his FreeBSD switching journey</li>
<li>This time he starts off by discovering virtual machines suck at keeping accurate time, and some ports weren't working because of his clock being way off</li>
<li>After polling the IRC for help, he finally learns the difference between ntpdate and ntpd and both of their use cases</li>
<li>Maybe he should've just read our <a href="http://www.bsdnow.tv/tutorials/ntpd" rel="nofollow noopener">NTP tutorial</a>!
***</li>
</ul>

<h3><a href="http://blog.pcbsd.org/2014/03/pc-bsd-weekly-feature-digest-23/" rel="nofollow noopener">PCBSD weekly digest</a></h3>

<ul>
<li>The mount tray icon got lots of updates and fixes</li>
<li>The faulty distribution server has finally been tracked down and... destroyed</li>
<li>New language localization project is in progress</li>
<li>Many many updates to ports and PBIs, new -STABLE builds
***</li>
</ul>

<h2>Feedback/Questions</h2>

<ul>
<li><a href="http://slexy.org/view/s27d69qHJW" rel="nofollow noopener">Antonio writes in</a></li>
<li><a href="http://slexy.org/view/s21FhLCHbB" rel="nofollow noopener">Patrick writes in</a></li>
<li><a href="http://slexy.org/view/s20Hisk3Yw" rel="nofollow noopener">Chris writes in</a></li>
<li><a href="http://slexy.org/view/s20rBZyTLC" rel="nofollow noopener">Ron writes in</a></li>
<li><a href="http://slexy.org/view/s2s4CxE4gd" rel="nofollow noopener">Tyler writes in</a>
***</li>
</ul>]]>
  </content:encoded>
  <itunes:summary>
    <![CDATA[<p>This week we'll be talking to Richard Stallman about the upcoming GPLv4 and how it will protect our software from being stolen. After that, we'll show you how to recover from those pesky ZFS on Linux corruption issues, as well as some tips on how to explain to your boss that all the production boxes were compromised. Your questions and all the latest GNUs, on Linux Now - the place to Lin.. ux.</p>

<h2>This episode was brought to you by</h2>

<p><a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"><img src="/images/iXlogo2.png" alt="iXsystems - Enterprise Servers and Storage For Open Source"></a></p>

<hr>

<h2>Headlines</h2>

<h3><a href="http://www.amazon.com/gp/aw/d/0321968972/" rel="nofollow noopener">Preorders for cool BSD stuff</a></h3>

<ul>
<li>The 2nd edition of The Design and Implementation of the FreeBSD Operating System is up for preorder</li>
<li>We <a href="http://www.bsdnow.tv/episodes/2014_01_29-journaled_news_updates" rel="nofollow noopener">talked to GNN</a> briefly about it, but he and <a href="http://www.bsdnow.tv/episodes/2013-10-02_stacks_of_cache" rel="nofollow noopener">Kirk</a> have apparently finally finished the book</li>
<li>"For many years, The Design and Implementation of the FreeBSD Operating System has been recognized as the most complete, up-to-date, and authoritative technical guide to FreeBSD's internal structure. Now, this definitive guide has been extensively updated to reflect all major FreeBSD improvements between Versions 5 and Versions 11"</li>
<li><a href="https://https.openbsd.org/cgi-bin/order" rel="nofollow noopener">OpenBSD 5.5 preorders</a> are also up, so you can buy a CD set now</li>
<li>You can help support the project, and even get the -release of the OS before it's available publicly</li>
<li>5.5 is a huge release with lots of big changes, so now is the right time to purchase one of these - tell Austin we sent you!
***</li>
</ul>

<h3><a href="http://mail-index.netbsd.org/pkgsrc-users/2014/03/18/msg019424.html" rel="nofollow noopener">pkgsrcCon 2014 CFP</a></h3>

<ul>
<li>This year's pkgsrcCon is in London, on June 21st and 22nd</li>
<li>There's a Call For Papers out now, so you can submit your talks</li>
<li>Anything related to pkgsrc is fine, it's pretty informal</li>
<li>Does anyone in the audience know if the talks will be recorded? This con is relatively unknown
***</li>
</ul>

<h3><a href="http://bsdmag.org/magazine/1860-deploying-netbsd-on-the-cloud-using-aws-ec2-march-bsd-issue" rel="nofollow noopener">BSDMag issue for March 2014</a></h3>

<ul>
<li>The monthly BSD magazine releases its newest issue</li>
<li>Topics this time include: deploying NetBSD using AWS EC2, creating a multi-purpose file server with NetBSD, DragonflyBSD as a backup server, more GIMP lessons, network analysis with wireshark and a general security article</li>
<li>The Linux article trend seems to continue... hmm
***</li>
</ul>

<h3><a href="http://blog.brianmoses.net/2014/03/why-i-chose-non-ecc-ram-for-my-freenas.html" rel="nofollow noopener">Non-ECC RAM in FreeNAS</a></h3>

<ul>
<li>We've gotten a few questions about ECC RAM with ZFS</li>
<li>Here we've got a surprising blog post about why someone <strong>did not</strong> go with ECC RAM for his NAS build</li>
<li>The article mentions the benefits of ECC and admits it is a better choice in nearly all instances, but unfortunately it's not very widespread in consumer hardware motherboards and it's more expensive</li>
<li>Regular RAM also has "special" issues with ZFS and pool corruption</li>
<li>Long post, so check out the whole thing if you've been considering your memory options and weighing the benefits
***</li>
</ul>

<h2>Interview - Pierre Pronchery - <a href="mailto:khorben@edgebsd.org" rel="nofollow noopener">khorben@edgebsd.org</a> / <a href="https://twitter.com/khorben" rel="nofollow noopener">@khorben</a></h2>

<p><a href="https://www.youtube.com/watch?v=_D_iaad5rPo" rel="nofollow noopener">EdgeBSD</a> (<a href="http://ftp.netbsd.org/pub/NetBSD/misc/khorben/asiabsdcon2014/" rel="nofollow noopener">slides</a>)</p>

<hr>

<h2>Tutorial</h2>

<h3><a href="http://www.bsdnow.tv/tutorials/the-desktop-obsd" rel="nofollow noopener">Building an OpenBSD desktop</a></h3>

<hr>

<h2>News Roundup</h2>

<h3><a href="http://blogs.freebsdish.org/portmgr/2014/03/25/getting-to-know-your-portmgr-lurker-frederic-culot" rel="nofollow noopener">Getting to know your portmgr-lurkers</a></h3>

<ul>
<li>This week we get to hear from Frederic Culot, colut@</li>
<li>Originally an OpenBSD user from France, Frederic joined as a ports committer in 2010 and recently joined the portmgr lurkers team</li>
<li>"FreeBSD is also one of my sources of inspiration when it comes to how
organizations behave and innovate, and I find it very interesting to compare FreeBSD with
the for-profit companies I work for"</li>
<li>We get to find out a little bit about him, why he loves FreeBSD and what he does for the project
***</li>
</ul>

<h3><a href="https://blog.netbsd.org/tnf/entry/the_playstation2_port_is_back" rel="nofollow noopener">NetBSD on the Playstation 2</a></h3>

<ul>
<li>Who doesn't want to run NetBSD on their old PS2?</li>
<li>The PS2 port of NetBSD was sadly removed in 2009, but it has been revived</li>
<li>It's using a slightly unusual MIPS CPU that didn't have much GCC support</li>
<li>Hopefully a bootable kernel will be available soon
***</li>
</ul>

<h3><a href="http://www.thelinuxcauldron.com/2014/03/24/freebsd-challenge-day-22-30/" rel="nofollow noopener">The FreeBSD Challenge update</a></h3>

<ul>
<li>Our friend from the Linux Foundation continues his FreeBSD switching journey</li>
<li>This time he starts off by discovering virtual machines suck at keeping accurate time, and some ports weren't working because of his clock being way off</li>
<li>After polling the IRC for help, he finally learns the difference between ntpdate and ntpd and both of their use cases</li>
<li>Maybe he should've just read our <a href="http://www.bsdnow.tv/tutorials/ntpd" rel="nofollow noopener">NTP tutorial</a>!
***</li>
</ul>

<h3><a href="http://blog.pcbsd.org/2014/03/pc-bsd-weekly-feature-digest-23/" rel="nofollow noopener">PCBSD weekly digest</a></h3>

<ul>
<li>The mount tray icon got lots of updates and fixes</li>
<li>The faulty distribution server has finally been tracked down and... destroyed</li>
<li>New language localization project is in progress</li>
<li>Many many updates to ports and PBIs, new -STABLE builds
***</li>
</ul>

<h2>Feedback/Questions</h2>

<ul>
<li><a href="http://slexy.org/view/s27d69qHJW" rel="nofollow noopener">Antonio writes in</a></li>
<li><a href="http://slexy.org/view/s21FhLCHbB" rel="nofollow noopener">Patrick writes in</a></li>
<li><a href="http://slexy.org/view/s20Hisk3Yw" rel="nofollow noopener">Chris writes in</a></li>
<li><a href="http://slexy.org/view/s20rBZyTLC" rel="nofollow noopener">Ron writes in</a></li>
<li><a href="http://slexy.org/view/s2s4CxE4gd" rel="nofollow noopener">Tyler writes in</a>
***</li>
</ul>]]>
  </itunes:summary>
</item>
<item>
  <title>29: P.E.F.S.</title>
  <link>https://www.bsdnow.tv/29</link>
  <guid isPermaLink="false">4af36dea-3dd3-4ac1-9ee9-a2e34dd54e3a</guid>
  <pubDate>Wed, 19 Mar 2014 08:00:00 -0400</pubDate>
  <author>JT Pennington</author>
  <enclosure url="https://aphid.fireside.fm/d/1437767933/c91b88f1-e824-4815-bcb8-5227818d6010/4af36dea-3dd3-4ac1-9ee9-a2e34dd54e3a.mp3" length="82610606" type="audio/mpeg"/>
  <itunes:episodeType>full</itunes:episodeType>
  <itunes:author>JT Pennington</itunes:author>
  <itunes:subtitle>We're back from AsiaBSDCon! This week we'll be chatting with Gleb Kurtsou about some a filesystem-level encryption utility called PEFS. After that, we'll give you a step by step guide on how to actually use it. There's also the usual round of your questions and we've got a lot of news to catch up on, so stay tuned to BSD Now - the place to B.. SD.</itunes:subtitle>
  <itunes:duration>1:54:44</itunes:duration>
  <itunes:explicit>no</itunes:explicit>
  <itunes:image href="https://media24.fireside.fm/file/fireside-images-2024/podcasts/images/c/c91b88f1-e824-4815-bcb8-5227818d6010/cover.jpg?v=4"/>
  <description>&lt;p&gt;We're back from AsiaBSDCon! This week we'll be chatting with Gleb Kurtsou about some a filesystem-level encryption utility called PEFS. After that, we'll give you a step by step guide on how to actually use it. There's also the usual round of your questions and we've got a lot of news to catch up on, so stay tuned to BSD Now - the place to B.. SD.&lt;/p&gt;

&lt;h2&gt;This episode was brought to you by&lt;/h2&gt;

&lt;p&gt;&lt;a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"&gt;&lt;img src="/images/iXlogo2.png" alt="iXsystems - Enterprise Servers and Storage For Open Source"&gt;&lt;/a&gt;&lt;/p&gt;

&lt;hr&gt;

&lt;h2&gt;Headlines&lt;/h2&gt;

&lt;h3&gt;&lt;a href="http://neocri.me/documentation/using-ssh-certificate-authentication/" rel="nofollow noopener"&gt;Using OpenSSH Certificate Authentication&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;SSH has a not-so-often-talked-about authentication option in addition to passwords and keys: certificates - you can add certificates to any current authentication method you're using&lt;/li&gt;
&lt;li&gt;They're not really that complex, there just isn't a lot of documentation on how to use them - this post tries to solve that&lt;/li&gt;
&lt;li&gt;There's the benefit of not needing a known_hosts file or authorized_users file anymore&lt;/li&gt;
&lt;li&gt;The post goes into a fair amount of detail about the differences, advantages and implications of using certificates for authentication
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://www.duckland.org/2014/03/back-to-freebsd-aka-day-1#more" rel="nofollow noopener"&gt;Back to FreeBSD, a new series&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Similar to the "FreeBSD Challenge" blog series, one of our listeners will be writing about his switching BACK to FreeBSD journey&lt;/li&gt;
&lt;li&gt;"So, a long time ago, I had a box which was running FreeBSD 4, running on a Pentium. 14 years later, I have decided to get back into FreeBSD, now at FreeBSD 10"&lt;/li&gt;
&lt;li&gt;He's starting off with PCBSD since it's easy to get working with dual graphics&lt;/li&gt;
&lt;li&gt;Should be a fun series to follow!
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://undeadly.org/cgi?action=article&amp;amp;sid=20140307130554" rel="nofollow noopener"&gt;OpenBSD's recent experiments in package building&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;If you'll remember back to our &lt;a href="http://www.bsdnow.tv/tutorials/poudriere" rel="nofollow noopener"&gt;poudriere tutorial&lt;/a&gt;, it lets you build FreeBSD binary packages in bulk - OpenBSD's version is called &lt;a href="http://www.bsdnow.tv/tutorials/dpb" rel="nofollow noopener"&gt;dpb&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Marc Espie recently got some monster machines in russia to play with to help improve scaling of dpb on high end hardware&lt;/li&gt;
&lt;li&gt;This article goes through some of his findings and plans for future versions that increase performance&lt;/li&gt;
&lt;li&gt;We'll be showing a tutorial of dpb on the show in a few weeks
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://jafdip.com/securing-freebsd-2fa-two-factor-authentication/" rel="nofollow noopener"&gt;Securing FreeBSD with 2FA&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;So maybe you've set up two-factor authentication with gmail or twitter, but have you done it with your BSD box?&lt;/li&gt;
&lt;li&gt;This post walks us through the process of locking down an &lt;a href="http://www.bsdnow.tv/tutorials/ssh-tmux" rel="nofollow noopener"&gt;ssh server&lt;/a&gt; with 2FA&lt;/li&gt;
&lt;li&gt;With just a mobile phone and a few extra tools, you can enable two-factor auth on your BSD box and have just that little extra bit of protections
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;Interview - Gleb Kurtsou - &lt;a href="mailto:gleb.kurtsou@gmail.com" rel="nofollow noopener"&gt;gleb.kurtsou@gmail.com&lt;/a&gt;&lt;/h2&gt;

&lt;p&gt;PEFS (security audit results &lt;a href="https://defuse.ca/audits/pefs.htm" rel="nofollow noopener"&gt;here&lt;/a&gt;)&lt;/p&gt;

&lt;hr&gt;

&lt;h2&gt;Tutorial&lt;/h2&gt;

&lt;h3&gt;&lt;a href="http://www.bsdnow.tv/tutorials/pefs" rel="nofollow noopener"&gt;Filesystem-based encryption with PEFS&lt;/a&gt;&lt;/h3&gt;

&lt;hr&gt;

&lt;h2&gt;News Roundup&lt;/h2&gt;

&lt;h3&gt;&lt;a href="https://www.bsdcan.org/2014/registration.php" rel="nofollow noopener"&gt;BSDCan 2014 registration&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Registration is finally open!&lt;/li&gt;
&lt;li&gt;The prices are available along with a full list of presentations&lt;/li&gt;
&lt;li&gt;Tutorial sessions for various topics as well&lt;/li&gt;
&lt;li&gt;You have to go
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://undeadly.org/cgi?action=article&amp;amp;sid=20140314080734" rel="nofollow noopener"&gt;Big changes for OpenBSD 5.6&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Although 5.5 was just frozen and the release process has started, 5.6 is already looking promising&lt;/li&gt;
&lt;li&gt;OpenBSD has, for a long time, included a heavily-patched version of Apache based on 1.3&lt;/li&gt;
&lt;li&gt;They've also imported nginx into base a few years ago, but now have finally removed Apache&lt;/li&gt;
&lt;li&gt;Sendmail is also no longer the default MTA, OpenSMTPD &lt;a href="http://undeadly.org/cgi?action=article&amp;amp;sid=20140313052817" rel="nofollow noopener"&gt;is the new default&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Will BIND be removed next? &lt;a href="http://marc.info/?l=openbsd-cvs&amp;amp;m=139492163427518&amp;amp;w=2" rel="nofollow noopener"&gt;Maybe so&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;They've also discontinued the hp300, mvme68k and mvme88k ports
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://blogs.freebsdish.org/portmgr/2014/03/11/getting-to-know-your-portmgr-lurker-alexy-dokuchaev/" rel="nofollow noopener"&gt;Getting to know your portmgr lurkers&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;The "getting to know your portmgr" series makes its return&lt;/li&gt;
&lt;li&gt;This time we get to talk with danfe@ (probably most known for being the nVidia driver maintainer, but he does a lot with ports)&lt;/li&gt;
&lt;li&gt;How he got into FreeBSD? He "wanted a unix system that I could understand and that would not get bloated as time goes by"&lt;/li&gt;
&lt;li&gt;Mentions why he's still heavily involved with the project and lots more
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://blog.pcbsd.org/2014/03/pc-bsd-weekly-feature-digest-20/" rel="nofollow noopener"&gt;PCBSD weekly digest&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Work has started to port Pulseaudio to PCBSD 10.0.1&lt;/li&gt;
&lt;li&gt;There's a new "pc-mixer" utility being worked on for sound management as well&lt;/li&gt;
&lt;li&gt;New PBIs, GNOME/Mate updates, Life Preserver fixes and a lot more&lt;/li&gt;
&lt;li&gt;PCBSD 10.0.1 &lt;a href="http://blog.pcbsd.org/2014/03/pc-bsd-weekly-feature-digest-21-pcbsd-10-0-1-released/" rel="nofollow noopener"&gt;was released&lt;/a&gt; too
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;Feedback/Questions&lt;/h2&gt;

&lt;ul&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s2QwjHkL2n" rel="nofollow noopener"&gt;Alex writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s2wLGlHF15" rel="nofollow noopener"&gt;Ben writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s21JsgRjMU" rel="nofollow noopener"&gt;Nick writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s2UX4sYdHy" rel="nofollow noopener"&gt;Sami writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s26z60Qd6z" rel="nofollow noopener"&gt;Christopher writes in&lt;/a&gt;
*** &lt;/li&gt;
&lt;/ul&gt;
</description>
  <itunes:keywords>freebsd, openbsd, netbsd, dragonflybsd, pcbsd, tutorial, howto, guide, bsd, interview, encryption, pefs, fde, disk, asiabsdcon, 2014, asiabsdcon2014, presentation, talk, video, recording, openssh, certificate, authentication, dpb, two factor, 2fa, yubikey</itunes:keywords>
  <content:encoded>
    <![CDATA[<p>We're back from AsiaBSDCon! This week we'll be chatting with Gleb Kurtsou about some a filesystem-level encryption utility called PEFS. After that, we'll give you a step by step guide on how to actually use it. There's also the usual round of your questions and we've got a lot of news to catch up on, so stay tuned to BSD Now - the place to B.. SD.</p>

<h2>This episode was brought to you by</h2>

<p><a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"><img src="/images/iXlogo2.png" alt="iXsystems - Enterprise Servers and Storage For Open Source"></a></p>

<hr>

<h2>Headlines</h2>

<h3><a href="http://neocri.me/documentation/using-ssh-certificate-authentication/" rel="nofollow noopener">Using OpenSSH Certificate Authentication</a></h3>

<ul>
<li>SSH has a not-so-often-talked-about authentication option in addition to passwords and keys: certificates - you can add certificates to any current authentication method you're using</li>
<li>They're not really that complex, there just isn't a lot of documentation on how to use them - this post tries to solve that</li>
<li>There's the benefit of not needing a known_hosts file or authorized_users file anymore</li>
<li>The post goes into a fair amount of detail about the differences, advantages and implications of using certificates for authentication
***</li>
</ul>

<h3><a href="http://www.duckland.org/2014/03/back-to-freebsd-aka-day-1#more" rel="nofollow noopener">Back to FreeBSD, a new series</a></h3>

<ul>
<li>Similar to the "FreeBSD Challenge" blog series, one of our listeners will be writing about his switching BACK to FreeBSD journey</li>
<li>"So, a long time ago, I had a box which was running FreeBSD 4, running on a Pentium. 14 years later, I have decided to get back into FreeBSD, now at FreeBSD 10"</li>
<li>He's starting off with PCBSD since it's easy to get working with dual graphics</li>
<li>Should be a fun series to follow!
***</li>
</ul>

<h3><a href="http://undeadly.org/cgi?action=article&amp;sid=20140307130554" rel="nofollow noopener">OpenBSD's recent experiments in package building</a></h3>

<ul>
<li>If you'll remember back to our <a href="http://www.bsdnow.tv/tutorials/poudriere" rel="nofollow noopener">poudriere tutorial</a>, it lets you build FreeBSD binary packages in bulk - OpenBSD's version is called <a href="http://www.bsdnow.tv/tutorials/dpb" rel="nofollow noopener">dpb</a></li>
<li>Marc Espie recently got some monster machines in russia to play with to help improve scaling of dpb on high end hardware</li>
<li>This article goes through some of his findings and plans for future versions that increase performance</li>
<li>We'll be showing a tutorial of dpb on the show in a few weeks
***</li>
</ul>

<h3><a href="http://jafdip.com/securing-freebsd-2fa-two-factor-authentication/" rel="nofollow noopener">Securing FreeBSD with 2FA</a></h3>

<ul>
<li>So maybe you've set up two-factor authentication with gmail or twitter, but have you done it with your BSD box?</li>
<li>This post walks us through the process of locking down an <a href="http://www.bsdnow.tv/tutorials/ssh-tmux" rel="nofollow noopener">ssh server</a> with 2FA</li>
<li>With just a mobile phone and a few extra tools, you can enable two-factor auth on your BSD box and have just that little extra bit of protections
***</li>
</ul>

<h2>Interview - Gleb Kurtsou - <a href="mailto:gleb.kurtsou@gmail.com" rel="nofollow noopener">gleb.kurtsou@gmail.com</a></h2>

<p>PEFS (security audit results <a href="https://defuse.ca/audits/pefs.htm" rel="nofollow noopener">here</a>)</p>

<hr>

<h2>Tutorial</h2>

<h3><a href="http://www.bsdnow.tv/tutorials/pefs" rel="nofollow noopener">Filesystem-based encryption with PEFS</a></h3>

<hr>

<h2>News Roundup</h2>

<h3><a href="https://www.bsdcan.org/2014/registration.php" rel="nofollow noopener">BSDCan 2014 registration</a></h3>

<ul>
<li>Registration is finally open!</li>
<li>The prices are available along with a full list of presentations</li>
<li>Tutorial sessions for various topics as well</li>
<li>You have to go
***</li>
</ul>

<h3><a href="http://undeadly.org/cgi?action=article&amp;sid=20140314080734" rel="nofollow noopener">Big changes for OpenBSD 5.6</a></h3>

<ul>
<li>Although 5.5 was just frozen and the release process has started, 5.6 is already looking promising</li>
<li>OpenBSD has, for a long time, included a heavily-patched version of Apache based on 1.3</li>
<li>They've also imported nginx into base a few years ago, but now have finally removed Apache</li>
<li>Sendmail is also no longer the default MTA, OpenSMTPD <a href="http://undeadly.org/cgi?action=article&amp;sid=20140313052817" rel="nofollow noopener">is the new default</a></li>
<li>Will BIND be removed next? <a href="http://marc.info/?l=openbsd-cvs&amp;m=139492163427518&amp;w=2" rel="nofollow noopener">Maybe so</a></li>
<li>They've also discontinued the hp300, mvme68k and mvme88k ports
***</li>
</ul>

<h3><a href="http://blogs.freebsdish.org/portmgr/2014/03/11/getting-to-know-your-portmgr-lurker-alexy-dokuchaev/" rel="nofollow noopener">Getting to know your portmgr lurkers</a></h3>

<ul>
<li>The "getting to know your portmgr" series makes its return</li>
<li>This time we get to talk with danfe@ (probably most known for being the nVidia driver maintainer, but he does a lot with ports)</li>
<li>How he got into FreeBSD? He "wanted a unix system that I could understand and that would not get bloated as time goes by"</li>
<li>Mentions why he's still heavily involved with the project and lots more
***</li>
</ul>

<h3><a href="http://blog.pcbsd.org/2014/03/pc-bsd-weekly-feature-digest-20/" rel="nofollow noopener">PCBSD weekly digest</a></h3>

<ul>
<li>Work has started to port Pulseaudio to PCBSD 10.0.1</li>
<li>There's a new "pc-mixer" utility being worked on for sound management as well</li>
<li>New PBIs, GNOME/Mate updates, Life Preserver fixes and a lot more</li>
<li>PCBSD 10.0.1 <a href="http://blog.pcbsd.org/2014/03/pc-bsd-weekly-feature-digest-21-pcbsd-10-0-1-released/" rel="nofollow noopener">was released</a> too
***</li>
</ul>

<h2>Feedback/Questions</h2>

<ul>
<li><a href="http://slexy.org/view/s2QwjHkL2n" rel="nofollow noopener">Alex writes in</a></li>
<li><a href="http://slexy.org/view/s2wLGlHF15" rel="nofollow noopener">Ben writes in</a></li>
<li><a href="http://slexy.org/view/s21JsgRjMU" rel="nofollow noopener">Nick writes in</a></li>
<li><a href="http://slexy.org/view/s2UX4sYdHy" rel="nofollow noopener">Sami writes in</a></li>
<li><a href="http://slexy.org/view/s26z60Qd6z" rel="nofollow noopener">Christopher writes in</a>
***</li>
</ul>]]>
  </content:encoded>
  <itunes:summary>
    <![CDATA[<p>We're back from AsiaBSDCon! This week we'll be chatting with Gleb Kurtsou about some a filesystem-level encryption utility called PEFS. After that, we'll give you a step by step guide on how to actually use it. There's also the usual round of your questions and we've got a lot of news to catch up on, so stay tuned to BSD Now - the place to B.. SD.</p>

<h2>This episode was brought to you by</h2>

<p><a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"><img src="/images/iXlogo2.png" alt="iXsystems - Enterprise Servers and Storage For Open Source"></a></p>

<hr>

<h2>Headlines</h2>

<h3><a href="http://neocri.me/documentation/using-ssh-certificate-authentication/" rel="nofollow noopener">Using OpenSSH Certificate Authentication</a></h3>

<ul>
<li>SSH has a not-so-often-talked-about authentication option in addition to passwords and keys: certificates - you can add certificates to any current authentication method you're using</li>
<li>They're not really that complex, there just isn't a lot of documentation on how to use them - this post tries to solve that</li>
<li>There's the benefit of not needing a known_hosts file or authorized_users file anymore</li>
<li>The post goes into a fair amount of detail about the differences, advantages and implications of using certificates for authentication
***</li>
</ul>

<h3><a href="http://www.duckland.org/2014/03/back-to-freebsd-aka-day-1#more" rel="nofollow noopener">Back to FreeBSD, a new series</a></h3>

<ul>
<li>Similar to the "FreeBSD Challenge" blog series, one of our listeners will be writing about his switching BACK to FreeBSD journey</li>
<li>"So, a long time ago, I had a box which was running FreeBSD 4, running on a Pentium. 14 years later, I have decided to get back into FreeBSD, now at FreeBSD 10"</li>
<li>He's starting off with PCBSD since it's easy to get working with dual graphics</li>
<li>Should be a fun series to follow!
***</li>
</ul>

<h3><a href="http://undeadly.org/cgi?action=article&amp;sid=20140307130554" rel="nofollow noopener">OpenBSD's recent experiments in package building</a></h3>

<ul>
<li>If you'll remember back to our <a href="http://www.bsdnow.tv/tutorials/poudriere" rel="nofollow noopener">poudriere tutorial</a>, it lets you build FreeBSD binary packages in bulk - OpenBSD's version is called <a href="http://www.bsdnow.tv/tutorials/dpb" rel="nofollow noopener">dpb</a></li>
<li>Marc Espie recently got some monster machines in russia to play with to help improve scaling of dpb on high end hardware</li>
<li>This article goes through some of his findings and plans for future versions that increase performance</li>
<li>We'll be showing a tutorial of dpb on the show in a few weeks
***</li>
</ul>

<h3><a href="http://jafdip.com/securing-freebsd-2fa-two-factor-authentication/" rel="nofollow noopener">Securing FreeBSD with 2FA</a></h3>

<ul>
<li>So maybe you've set up two-factor authentication with gmail or twitter, but have you done it with your BSD box?</li>
<li>This post walks us through the process of locking down an <a href="http://www.bsdnow.tv/tutorials/ssh-tmux" rel="nofollow noopener">ssh server</a> with 2FA</li>
<li>With just a mobile phone and a few extra tools, you can enable two-factor auth on your BSD box and have just that little extra bit of protections
***</li>
</ul>

<h2>Interview - Gleb Kurtsou - <a href="mailto:gleb.kurtsou@gmail.com" rel="nofollow noopener">gleb.kurtsou@gmail.com</a></h2>

<p>PEFS (security audit results <a href="https://defuse.ca/audits/pefs.htm" rel="nofollow noopener">here</a>)</p>

<hr>

<h2>Tutorial</h2>

<h3><a href="http://www.bsdnow.tv/tutorials/pefs" rel="nofollow noopener">Filesystem-based encryption with PEFS</a></h3>

<hr>

<h2>News Roundup</h2>

<h3><a href="https://www.bsdcan.org/2014/registration.php" rel="nofollow noopener">BSDCan 2014 registration</a></h3>

<ul>
<li>Registration is finally open!</li>
<li>The prices are available along with a full list of presentations</li>
<li>Tutorial sessions for various topics as well</li>
<li>You have to go
***</li>
</ul>

<h3><a href="http://undeadly.org/cgi?action=article&amp;sid=20140314080734" rel="nofollow noopener">Big changes for OpenBSD 5.6</a></h3>

<ul>
<li>Although 5.5 was just frozen and the release process has started, 5.6 is already looking promising</li>
<li>OpenBSD has, for a long time, included a heavily-patched version of Apache based on 1.3</li>
<li>They've also imported nginx into base a few years ago, but now have finally removed Apache</li>
<li>Sendmail is also no longer the default MTA, OpenSMTPD <a href="http://undeadly.org/cgi?action=article&amp;sid=20140313052817" rel="nofollow noopener">is the new default</a></li>
<li>Will BIND be removed next? <a href="http://marc.info/?l=openbsd-cvs&amp;m=139492163427518&amp;w=2" rel="nofollow noopener">Maybe so</a></li>
<li>They've also discontinued the hp300, mvme68k and mvme88k ports
***</li>
</ul>

<h3><a href="http://blogs.freebsdish.org/portmgr/2014/03/11/getting-to-know-your-portmgr-lurker-alexy-dokuchaev/" rel="nofollow noopener">Getting to know your portmgr lurkers</a></h3>

<ul>
<li>The "getting to know your portmgr" series makes its return</li>
<li>This time we get to talk with danfe@ (probably most known for being the nVidia driver maintainer, but he does a lot with ports)</li>
<li>How he got into FreeBSD? He "wanted a unix system that I could understand and that would not get bloated as time goes by"</li>
<li>Mentions why he's still heavily involved with the project and lots more
***</li>
</ul>

<h3><a href="http://blog.pcbsd.org/2014/03/pc-bsd-weekly-feature-digest-20/" rel="nofollow noopener">PCBSD weekly digest</a></h3>

<ul>
<li>Work has started to port Pulseaudio to PCBSD 10.0.1</li>
<li>There's a new "pc-mixer" utility being worked on for sound management as well</li>
<li>New PBIs, GNOME/Mate updates, Life Preserver fixes and a lot more</li>
<li>PCBSD 10.0.1 <a href="http://blog.pcbsd.org/2014/03/pc-bsd-weekly-feature-digest-21-pcbsd-10-0-1-released/" rel="nofollow noopener">was released</a> too
***</li>
</ul>

<h2>Feedback/Questions</h2>

<ul>
<li><a href="http://slexy.org/view/s2QwjHkL2n" rel="nofollow noopener">Alex writes in</a></li>
<li><a href="http://slexy.org/view/s2wLGlHF15" rel="nofollow noopener">Ben writes in</a></li>
<li><a href="http://slexy.org/view/s21JsgRjMU" rel="nofollow noopener">Nick writes in</a></li>
<li><a href="http://slexy.org/view/s2UX4sYdHy" rel="nofollow noopener">Sami writes in</a></li>
<li><a href="http://slexy.org/view/s26z60Qd6z" rel="nofollow noopener">Christopher writes in</a>
***</li>
</ul>]]>
  </itunes:summary>
</item>
<item>
  <title>26: Port Authority</title>
  <link>https://www.bsdnow.tv/26</link>
  <guid isPermaLink="false">0e208963-5f59-446a-902e-9876d96c8f3f</guid>
  <pubDate>Wed, 26 Feb 2014 08:00:00 -0500</pubDate>
  <author>JT Pennington</author>
  <enclosure url="https://aphid.fireside.fm/d/1437767933/c91b88f1-e824-4815-bcb8-5227818d6010/0e208963-5f59-446a-902e-9876d96c8f3f.mp3" length="65589845" type="audio/mpeg"/>
  <itunes:episodeType>full</itunes:episodeType>
  <itunes:author>JT Pennington</itunes:author>
  <itunes:subtitle>On today's show we have an interview with Joe Marcus Clark, one of the original portmgr members in FreeBSD, and one of the key GNOME porters. Keeping along with that topic, we have a FreeBSD ports tutorial for you as well. The latest news and answers to your BSD questions, right here on BSD Now - the place to B.. SD.</itunes:subtitle>
  <itunes:duration>1:31:05</itunes:duration>
  <itunes:explicit>no</itunes:explicit>
  <itunes:image href="https://media24.fireside.fm/file/fireside-images-2024/podcasts/images/c/c91b88f1-e824-4815-bcb8-5227818d6010/cover.jpg?v=4"/>
  <description>&lt;p&gt;On today's show we have an interview with Joe Marcus Clark, one of the original portmgr members in FreeBSD, and one of the key GNOME porters. Keeping along with that topic, we have a FreeBSD ports tutorial for you as well. The latest news and answers to your BSD questions, right here on BSD Now - the place to B.. SD.&lt;/p&gt;

&lt;h2&gt;This episode was brought to you by&lt;/h2&gt;

&lt;p&gt;&lt;a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"&gt;&lt;img src="/images/iXlogo2.png" alt="iXsystems - Enterprise Servers and Storage For Open Source"&gt;&lt;/a&gt;&lt;/p&gt;

&lt;hr&gt;

&lt;h2&gt;Headlines&lt;/h2&gt;

&lt;h3&gt;&lt;a href="http://multixden.blogspot.com/2014/02/tailoring-openbsd-for-old-strange.html" rel="nofollow noopener"&gt;Tailoring OpenBSD for an old, strange computer&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;The author of this article had an &lt;a href="http://hpmuseum.net/display_item.php?hw=233" rel="nofollow noopener"&gt;OmniBook 800CT&lt;/a&gt;, which comes with a pop-out mouse, black and white display, 32MB of RAM and a 133MHz CPU&lt;/li&gt;
&lt;li&gt;Obviously he had to install some kind of BSD on it!&lt;/li&gt;
&lt;li&gt;This post goes through all his efforts of trimming down OpenBSD to work on such a limited device&lt;/li&gt;
&lt;li&gt;He goes through the trial and error of "compile, break it, rebuild, try again"&lt;/li&gt;
&lt;li&gt;After cutting a lot out from the kernel, saving a precious megabyte here and there, he eventually gets it working
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://www.pkgsrc.org/pkgsrcCon/2014/" rel="nofollow noopener"&gt;pkgsrcCon and BSDCan&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;pkgsrccon is "a technical conference for people working on the NetBSD Packages Collection, focusing on existing technologies, research projects, and works-in-progress in pkgsrc infrastructure"&lt;/li&gt;
&lt;li&gt;This year it will be on June 21st and 22nd&lt;/li&gt;
&lt;li&gt;The &lt;a href="http://www.pkgsrc.org/pkgsrcCon/2014/schedule.html" rel="nofollow noopener"&gt;schedule&lt;/a&gt; is still being worked out, so if you want to give a talk, submit it&lt;/li&gt;
&lt;li&gt;BSDCan's &lt;a href="https://www.bsdcan.org/2014/schedule/events.en.html" rel="nofollow noopener"&gt;schedule&lt;/a&gt; was also announced&lt;/li&gt;
&lt;li&gt;We'll be having presentations about ARM on NetBSD and FreeBSD, PF on OpenBSD, Capsicum and casperd, ASLR in FreeBSD, more about migrating from Linux to BSD, FreeNAS stuff and much more&lt;/li&gt;
&lt;li&gt;Kris' presentation was accepted!&lt;/li&gt;
&lt;li&gt;Tons of topics, look forward to the recorded versions of all of them hopefully!
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://www.tedunangst.com/flak/post/login-pushover" rel="nofollow noopener"&gt;Two factor auth with pushover&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;A new write-up from our friend &lt;a href="http://www.bsdnow.tv/episodes/2014_02_05-time_signatures" rel="nofollow noopener"&gt;Ted Unangst&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Pushover is "a web hook to smartphone push notification gateway" - you sent a POST to a web server and it sends a code to your phone&lt;/li&gt;
&lt;li&gt;His post goes through the steps of editing your login.conf and setting it all up to work&lt;/li&gt;
&lt;li&gt;Now you can get a two factor authenticated login for ssh!
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://undeadly.org/cgi?action=article&amp;amp;sid=20140219085851" rel="nofollow noopener"&gt;The status of GNOME 3 on BSD&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;It's no secret that the GNOME team is a Linux-obsessed bunch, almost to the point of being hostile towards other operating systems&lt;/li&gt;
&lt;li&gt;OpenBSD keeps their GNOME 3 ports up to date very well, and Antoine Jacoutot writes about his work on that and how easy it is to use&lt;/li&gt;
&lt;li&gt;This post goes through the process of how simple it is to get GNOME 3 set up on OpenBSD and even includes &lt;a href="https://www.bsdfrog.org/tmp/undeadly-gnome.webm" rel="nofollow noopener"&gt;a screencast&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;A few &lt;a href="http://blogs.gnome.org/mclasen/2014/02/19/on-portability/" rel="nofollow noopener"&gt;recent&lt;/a&gt; &lt;a href="http://blogs.gnome.org/desrt/2014/02/19/on-portability/" rel="nofollow noopener"&gt;posts&lt;/a&gt; from some GNOME developers show that they're finally working with the BSD guys to improve portability&lt;/li&gt;
&lt;li&gt;The FreeBSD and OpenBSD teams are working together to bring the latest GNOME to all of us - it's a beautiful thing&lt;/li&gt;
&lt;li&gt;This goes right along with our interview today!
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;Interview - Joe Marcus Clark - &lt;a href="mailto:marcus@freebsd.org" rel="nofollow noopener"&gt;marcus@freebsd.org&lt;/a&gt;&lt;/h2&gt;

&lt;p&gt;The life and daily activities of portmgr, GNOME 3, Tinderbox, portlint, various topics&lt;/p&gt;

&lt;hr&gt;

&lt;h2&gt;Tutorial&lt;/h2&gt;

&lt;h3&gt;&lt;a href="http://www.bsdnow.tv/tutorials/ports" rel="nofollow noopener"&gt;The FreeBSD Ports Collection&lt;/a&gt;&lt;/h3&gt;

&lt;hr&gt;

&lt;h2&gt;News Roundup&lt;/h2&gt;

&lt;h3&gt;&lt;a href="http://bugs.dragonflybsd.org/versions/4" rel="nofollow noopener"&gt;DragonflyBSD 3.8 goals and 3.6.1 release&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;The Dragonfly team is thinking about what should be in version 3.8&lt;/li&gt;
&lt;li&gt;On their bug tracker, it lists some of the things they'd like to get done before then&lt;/li&gt;
&lt;li&gt;In the meantime, &lt;a href="http://lists.dragonflybsd.org/pipermail/commits/2014-February/199294.html" rel="nofollow noopener"&gt;3.6.1&lt;/a&gt; was released with lots of bugfixes
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://www.informit.com/blogs/blog.aspx?uk=NYCBSDCon-2014-Rocked-a-Cold-February-Weekend" rel="nofollow noopener"&gt;NYCBSDCon 2014 wrap-up piece&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;We've got a nice wrap-up titled "NYCBSDCon 2014 Heats Up a Cold Winter Weekend"&lt;/li&gt;
&lt;li&gt;The author also interviews &lt;a href="http://www.bsdnow.tv/episodes/2014_01_29-journaled_news_updates" rel="nofollow noopener"&gt;GNN&lt;/a&gt; about the conference&lt;/li&gt;
&lt;li&gt;There's even a little "beginner introduction" to BSD segment&lt;/li&gt;
&lt;li&gt;Includes a mention of the recently-launched journal and lots of pictures from the event
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="https://www.youtube.com/watch?&amp;amp;v=5mv_oKFzACM#t=418" rel="nofollow noopener"&gt;FreeBSD and Linux, a comparative analysis&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;GNN in yet another story - he gave a presentation at the NYLUG about the differences between FreeBSD and Linux&lt;/li&gt;
&lt;li&gt;He mentions the history of BSD, the patch set and 386BSD, the lawsuit, philosophy and license differences, a complete system vs "distros," development models, BSD-only features and technologies, how to become a committer, overall comparisons, different hats and roles, the different bsds and their goals and actual code differences&lt;/li&gt;
&lt;li&gt;Serves as a good introduction you can show your Linux friends
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://blog.pcbsd.org/2014/02/call-for-testers-new-major-upgrade-methodology/" rel="nofollow noopener"&gt;PCBSD CFT and weekly digest&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Upgrade tools have gotten a major rewrite&lt;/li&gt;
&lt;li&gt;You have to help test it, there is no choice! Read more &lt;a href="http://blog.pcbsd.org/2014/02/pc-bsd-weekly-feature-digest-18/" rel="nofollow noopener"&gt;here&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;How dare Kris be "unimpressed with" freebsd-update and pkgng!?&lt;/li&gt;
&lt;li&gt;Various updates and fixes
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;Feedback/Questions&lt;/h2&gt;

&lt;ul&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s213KxUdVj" rel="nofollow noopener"&gt;Jeffrey writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s20lwkjLVK" rel="nofollow noopener"&gt;Shane writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s21DqJs77g" rel="nofollow noopener"&gt;Ferdinand writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s20eXKEqJc" rel="nofollow noopener"&gt;Curtis writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s21XMVFuVu" rel="nofollow noopener"&gt;Clint writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s20Xk05MHe" rel="nofollow noopener"&gt;Peter writes in&lt;/a&gt;
*** &lt;/li&gt;
&lt;/ul&gt;
</description>
  <itunes:keywords>freebsd, openbsd, netbsd, dragonflybsd, pcbsd, tutorial, howto, guide, bsd, interview, portmgr, ports, pkgng, packages, portsnap, make.conf, tinderbox, portlint, gnome, gnome 3, gnome-shell, omnibook, 800ct, ixsystems, pkgsrc, pkgsrccon, pushover, two factor authentication, bsdcan, 2014, dragonfly mail agent, dma, sendmail, postfix, ssmtp, flashrd, nylug, linux, differences, switching to bsd, presentation, lug, uug, bug, gnu, gpl, fsf, license, debate, nycbsdcon</itunes:keywords>
  <content:encoded>
    <![CDATA[<p>On today's show we have an interview with Joe Marcus Clark, one of the original portmgr members in FreeBSD, and one of the key GNOME porters. Keeping along with that topic, we have a FreeBSD ports tutorial for you as well. The latest news and answers to your BSD questions, right here on BSD Now - the place to B.. SD.</p>

<h2>This episode was brought to you by</h2>

<p><a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"><img src="/images/iXlogo2.png" alt="iXsystems - Enterprise Servers and Storage For Open Source"></a></p>

<hr>

<h2>Headlines</h2>

<h3><a href="http://multixden.blogspot.com/2014/02/tailoring-openbsd-for-old-strange.html" rel="nofollow noopener">Tailoring OpenBSD for an old, strange computer</a></h3>

<ul>
<li>The author of this article had an <a href="http://hpmuseum.net/display_item.php?hw=233" rel="nofollow noopener">OmniBook 800CT</a>, which comes with a pop-out mouse, black and white display, 32MB of RAM and a 133MHz CPU</li>
<li>Obviously he had to install some kind of BSD on it!</li>
<li>This post goes through all his efforts of trimming down OpenBSD to work on such a limited device</li>
<li>He goes through the trial and error of "compile, break it, rebuild, try again"</li>
<li>After cutting a lot out from the kernel, saving a precious megabyte here and there, he eventually gets it working
***</li>
</ul>

<h3><a href="http://www.pkgsrc.org/pkgsrcCon/2014/" rel="nofollow noopener">pkgsrcCon and BSDCan</a></h3>

<ul>
<li>pkgsrccon is "a technical conference for people working on the NetBSD Packages Collection, focusing on existing technologies, research projects, and works-in-progress in pkgsrc infrastructure"</li>
<li>This year it will be on June 21st and 22nd</li>
<li>The <a href="http://www.pkgsrc.org/pkgsrcCon/2014/schedule.html" rel="nofollow noopener">schedule</a> is still being worked out, so if you want to give a talk, submit it</li>
<li>BSDCan's <a href="https://www.bsdcan.org/2014/schedule/events.en.html" rel="nofollow noopener">schedule</a> was also announced</li>
<li>We'll be having presentations about ARM on NetBSD and FreeBSD, PF on OpenBSD, Capsicum and casperd, ASLR in FreeBSD, more about migrating from Linux to BSD, FreeNAS stuff and much more</li>
<li>Kris' presentation was accepted!</li>
<li>Tons of topics, look forward to the recorded versions of all of them hopefully!
***</li>
</ul>

<h3><a href="http://www.tedunangst.com/flak/post/login-pushover" rel="nofollow noopener">Two factor auth with pushover</a></h3>

<ul>
<li>A new write-up from our friend <a href="http://www.bsdnow.tv/episodes/2014_02_05-time_signatures" rel="nofollow noopener">Ted Unangst</a></li>
<li>Pushover is "a web hook to smartphone push notification gateway" - you sent a POST to a web server and it sends a code to your phone</li>
<li>His post goes through the steps of editing your login.conf and setting it all up to work</li>
<li>Now you can get a two factor authenticated login for ssh!
***</li>
</ul>

<h3><a href="http://undeadly.org/cgi?action=article&amp;sid=20140219085851" rel="nofollow noopener">The status of GNOME 3 on BSD</a></h3>

<ul>
<li>It's no secret that the GNOME team is a Linux-obsessed bunch, almost to the point of being hostile towards other operating systems</li>
<li>OpenBSD keeps their GNOME 3 ports up to date very well, and Antoine Jacoutot writes about his work on that and how easy it is to use</li>
<li>This post goes through the process of how simple it is to get GNOME 3 set up on OpenBSD and even includes <a href="https://www.bsdfrog.org/tmp/undeadly-gnome.webm" rel="nofollow noopener">a screencast</a></li>
<li>A few <a href="http://blogs.gnome.org/mclasen/2014/02/19/on-portability/" rel="nofollow noopener">recent</a> <a href="http://blogs.gnome.org/desrt/2014/02/19/on-portability/" rel="nofollow noopener">posts</a> from some GNOME developers show that they're finally working with the BSD guys to improve portability</li>
<li>The FreeBSD and OpenBSD teams are working together to bring the latest GNOME to all of us - it's a beautiful thing</li>
<li>This goes right along with our interview today!
***</li>
</ul>

<h2>Interview - Joe Marcus Clark - <a href="mailto:marcus@freebsd.org" rel="nofollow noopener">marcus@freebsd.org</a></h2>

<p>The life and daily activities of portmgr, GNOME 3, Tinderbox, portlint, various topics</p>

<hr>

<h2>Tutorial</h2>

<h3><a href="http://www.bsdnow.tv/tutorials/ports" rel="nofollow noopener">The FreeBSD Ports Collection</a></h3>

<hr>

<h2>News Roundup</h2>

<h3><a href="http://bugs.dragonflybsd.org/versions/4" rel="nofollow noopener">DragonflyBSD 3.8 goals and 3.6.1 release</a></h3>

<ul>
<li>The Dragonfly team is thinking about what should be in version 3.8</li>
<li>On their bug tracker, it lists some of the things they'd like to get done before then</li>
<li>In the meantime, <a href="http://lists.dragonflybsd.org/pipermail/commits/2014-February/199294.html" rel="nofollow noopener">3.6.1</a> was released with lots of bugfixes
***</li>
</ul>

<h3><a href="http://www.informit.com/blogs/blog.aspx?uk=NYCBSDCon-2014-Rocked-a-Cold-February-Weekend" rel="nofollow noopener">NYCBSDCon 2014 wrap-up piece</a></h3>

<ul>
<li>We've got a nice wrap-up titled "NYCBSDCon 2014 Heats Up a Cold Winter Weekend"</li>
<li>The author also interviews <a href="http://www.bsdnow.tv/episodes/2014_01_29-journaled_news_updates" rel="nofollow noopener">GNN</a> about the conference</li>
<li>There's even a little "beginner introduction" to BSD segment</li>
<li>Includes a mention of the recently-launched journal and lots of pictures from the event
***</li>
</ul>

<h3><a href="https://www.youtube.com/watch?&amp;v=5mv_oKFzACM#t=418" rel="nofollow noopener">FreeBSD and Linux, a comparative analysis</a></h3>

<ul>
<li>GNN in yet another story - he gave a presentation at the NYLUG about the differences between FreeBSD and Linux</li>
<li>He mentions the history of BSD, the patch set and 386BSD, the lawsuit, philosophy and license differences, a complete system vs "distros," development models, BSD-only features and technologies, how to become a committer, overall comparisons, different hats and roles, the different bsds and their goals and actual code differences</li>
<li>Serves as a good introduction you can show your Linux friends
***</li>
</ul>

<h3><a href="http://blog.pcbsd.org/2014/02/call-for-testers-new-major-upgrade-methodology/" rel="nofollow noopener">PCBSD CFT and weekly digest</a></h3>

<ul>
<li>Upgrade tools have gotten a major rewrite</li>
<li>You have to help test it, there is no choice! Read more <a href="http://blog.pcbsd.org/2014/02/pc-bsd-weekly-feature-digest-18/" rel="nofollow noopener">here</a></li>
<li>How dare Kris be "unimpressed with" freebsd-update and pkgng!?</li>
<li>Various updates and fixes
***</li>
</ul>

<h2>Feedback/Questions</h2>

<ul>
<li><a href="http://slexy.org/view/s213KxUdVj" rel="nofollow noopener">Jeffrey writes in</a></li>
<li><a href="http://slexy.org/view/s20lwkjLVK" rel="nofollow noopener">Shane writes in</a></li>
<li><a href="http://slexy.org/view/s21DqJs77g" rel="nofollow noopener">Ferdinand writes in</a></li>
<li><a href="http://slexy.org/view/s20eXKEqJc" rel="nofollow noopener">Curtis writes in</a></li>
<li><a href="http://slexy.org/view/s21XMVFuVu" rel="nofollow noopener">Clint writes in</a></li>
<li><a href="http://slexy.org/view/s20Xk05MHe" rel="nofollow noopener">Peter writes in</a>
***</li>
</ul>]]>
  </content:encoded>
  <itunes:summary>
    <![CDATA[<p>On today's show we have an interview with Joe Marcus Clark, one of the original portmgr members in FreeBSD, and one of the key GNOME porters. Keeping along with that topic, we have a FreeBSD ports tutorial for you as well. The latest news and answers to your BSD questions, right here on BSD Now - the place to B.. SD.</p>

<h2>This episode was brought to you by</h2>

<p><a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"><img src="/images/iXlogo2.png" alt="iXsystems - Enterprise Servers and Storage For Open Source"></a></p>

<hr>

<h2>Headlines</h2>

<h3><a href="http://multixden.blogspot.com/2014/02/tailoring-openbsd-for-old-strange.html" rel="nofollow noopener">Tailoring OpenBSD for an old, strange computer</a></h3>

<ul>
<li>The author of this article had an <a href="http://hpmuseum.net/display_item.php?hw=233" rel="nofollow noopener">OmniBook 800CT</a>, which comes with a pop-out mouse, black and white display, 32MB of RAM and a 133MHz CPU</li>
<li>Obviously he had to install some kind of BSD on it!</li>
<li>This post goes through all his efforts of trimming down OpenBSD to work on such a limited device</li>
<li>He goes through the trial and error of "compile, break it, rebuild, try again"</li>
<li>After cutting a lot out from the kernel, saving a precious megabyte here and there, he eventually gets it working
***</li>
</ul>

<h3><a href="http://www.pkgsrc.org/pkgsrcCon/2014/" rel="nofollow noopener">pkgsrcCon and BSDCan</a></h3>

<ul>
<li>pkgsrccon is "a technical conference for people working on the NetBSD Packages Collection, focusing on existing technologies, research projects, and works-in-progress in pkgsrc infrastructure"</li>
<li>This year it will be on June 21st and 22nd</li>
<li>The <a href="http://www.pkgsrc.org/pkgsrcCon/2014/schedule.html" rel="nofollow noopener">schedule</a> is still being worked out, so if you want to give a talk, submit it</li>
<li>BSDCan's <a href="https://www.bsdcan.org/2014/schedule/events.en.html" rel="nofollow noopener">schedule</a> was also announced</li>
<li>We'll be having presentations about ARM on NetBSD and FreeBSD, PF on OpenBSD, Capsicum and casperd, ASLR in FreeBSD, more about migrating from Linux to BSD, FreeNAS stuff and much more</li>
<li>Kris' presentation was accepted!</li>
<li>Tons of topics, look forward to the recorded versions of all of them hopefully!
***</li>
</ul>

<h3><a href="http://www.tedunangst.com/flak/post/login-pushover" rel="nofollow noopener">Two factor auth with pushover</a></h3>

<ul>
<li>A new write-up from our friend <a href="http://www.bsdnow.tv/episodes/2014_02_05-time_signatures" rel="nofollow noopener">Ted Unangst</a></li>
<li>Pushover is "a web hook to smartphone push notification gateway" - you sent a POST to a web server and it sends a code to your phone</li>
<li>His post goes through the steps of editing your login.conf and setting it all up to work</li>
<li>Now you can get a two factor authenticated login for ssh!
***</li>
</ul>

<h3><a href="http://undeadly.org/cgi?action=article&amp;sid=20140219085851" rel="nofollow noopener">The status of GNOME 3 on BSD</a></h3>

<ul>
<li>It's no secret that the GNOME team is a Linux-obsessed bunch, almost to the point of being hostile towards other operating systems</li>
<li>OpenBSD keeps their GNOME 3 ports up to date very well, and Antoine Jacoutot writes about his work on that and how easy it is to use</li>
<li>This post goes through the process of how simple it is to get GNOME 3 set up on OpenBSD and even includes <a href="https://www.bsdfrog.org/tmp/undeadly-gnome.webm" rel="nofollow noopener">a screencast</a></li>
<li>A few <a href="http://blogs.gnome.org/mclasen/2014/02/19/on-portability/" rel="nofollow noopener">recent</a> <a href="http://blogs.gnome.org/desrt/2014/02/19/on-portability/" rel="nofollow noopener">posts</a> from some GNOME developers show that they're finally working with the BSD guys to improve portability</li>
<li>The FreeBSD and OpenBSD teams are working together to bring the latest GNOME to all of us - it's a beautiful thing</li>
<li>This goes right along with our interview today!
***</li>
</ul>

<h2>Interview - Joe Marcus Clark - <a href="mailto:marcus@freebsd.org" rel="nofollow noopener">marcus@freebsd.org</a></h2>

<p>The life and daily activities of portmgr, GNOME 3, Tinderbox, portlint, various topics</p>

<hr>

<h2>Tutorial</h2>

<h3><a href="http://www.bsdnow.tv/tutorials/ports" rel="nofollow noopener">The FreeBSD Ports Collection</a></h3>

<hr>

<h2>News Roundup</h2>

<h3><a href="http://bugs.dragonflybsd.org/versions/4" rel="nofollow noopener">DragonflyBSD 3.8 goals and 3.6.1 release</a></h3>

<ul>
<li>The Dragonfly team is thinking about what should be in version 3.8</li>
<li>On their bug tracker, it lists some of the things they'd like to get done before then</li>
<li>In the meantime, <a href="http://lists.dragonflybsd.org/pipermail/commits/2014-February/199294.html" rel="nofollow noopener">3.6.1</a> was released with lots of bugfixes
***</li>
</ul>

<h3><a href="http://www.informit.com/blogs/blog.aspx?uk=NYCBSDCon-2014-Rocked-a-Cold-February-Weekend" rel="nofollow noopener">NYCBSDCon 2014 wrap-up piece</a></h3>

<ul>
<li>We've got a nice wrap-up titled "NYCBSDCon 2014 Heats Up a Cold Winter Weekend"</li>
<li>The author also interviews <a href="http://www.bsdnow.tv/episodes/2014_01_29-journaled_news_updates" rel="nofollow noopener">GNN</a> about the conference</li>
<li>There's even a little "beginner introduction" to BSD segment</li>
<li>Includes a mention of the recently-launched journal and lots of pictures from the event
***</li>
</ul>

<h3><a href="https://www.youtube.com/watch?&amp;v=5mv_oKFzACM#t=418" rel="nofollow noopener">FreeBSD and Linux, a comparative analysis</a></h3>

<ul>
<li>GNN in yet another story - he gave a presentation at the NYLUG about the differences between FreeBSD and Linux</li>
<li>He mentions the history of BSD, the patch set and 386BSD, the lawsuit, philosophy and license differences, a complete system vs "distros," development models, BSD-only features and technologies, how to become a committer, overall comparisons, different hats and roles, the different bsds and their goals and actual code differences</li>
<li>Serves as a good introduction you can show your Linux friends
***</li>
</ul>

<h3><a href="http://blog.pcbsd.org/2014/02/call-for-testers-new-major-upgrade-methodology/" rel="nofollow noopener">PCBSD CFT and weekly digest</a></h3>

<ul>
<li>Upgrade tools have gotten a major rewrite</li>
<li>You have to help test it, there is no choice! Read more <a href="http://blog.pcbsd.org/2014/02/pc-bsd-weekly-feature-digest-18/" rel="nofollow noopener">here</a></li>
<li>How dare Kris be "unimpressed with" freebsd-update and pkgng!?</li>
<li>Various updates and fixes
***</li>
</ul>

<h2>Feedback/Questions</h2>

<ul>
<li><a href="http://slexy.org/view/s213KxUdVj" rel="nofollow noopener">Jeffrey writes in</a></li>
<li><a href="http://slexy.org/view/s20lwkjLVK" rel="nofollow noopener">Shane writes in</a></li>
<li><a href="http://slexy.org/view/s21DqJs77g" rel="nofollow noopener">Ferdinand writes in</a></li>
<li><a href="http://slexy.org/view/s20eXKEqJc" rel="nofollow noopener">Curtis writes in</a></li>
<li><a href="http://slexy.org/view/s21XMVFuVu" rel="nofollow noopener">Clint writes in</a></li>
<li><a href="http://slexy.org/view/s20Xk05MHe" rel="nofollow noopener">Peter writes in</a>
***</li>
</ul>]]>
  </itunes:summary>
</item>
<item>
  <title>24: The Cluster &amp; The Cloud</title>
  <link>https://www.bsdnow.tv/24</link>
  <guid isPermaLink="false">4472f6f6-5fb3-4ee9-b20c-04e927cf1299</guid>
  <pubDate>Wed, 12 Feb 2014 08:00:00 -0500</pubDate>
  <author>JT Pennington</author>
  <enclosure url="https://aphid.fireside.fm/d/1437767933/c91b88f1-e824-4815-bcb8-5227818d6010/4472f6f6-5fb3-4ee9-b20c-04e927cf1299.mp3" length="50214172" type="audio/mpeg"/>
  <itunes:episodeType>full</itunes:episodeType>
  <itunes:author>JT Pennington</itunes:author>
  <itunes:subtitle>This week on BSD Now... a wrap-up from NYCBSDCon! We'll also be talking to Luke Marsden, CEO of HybridCluster, about how they use BSD at large. Following that, our tutorial will show you how to securely share files with SFTP in a chroot. The latest news and answers to your questions, of course it's BSD Now - the place to B.. SD.</itunes:subtitle>
  <itunes:duration>1:09:44</itunes:duration>
  <itunes:explicit>no</itunes:explicit>
  <itunes:image href="https://media24.fireside.fm/file/fireside-images-2024/podcasts/images/c/c91b88f1-e824-4815-bcb8-5227818d6010/cover.jpg?v=4"/>
  <description>&lt;p&gt;This week on BSD Now... a wrap-up from NYCBSDCon! We'll also be talking to Luke Marsden, CEO of HybridCluster, about how they use BSD at large. Following that, our tutorial will show you how to securely share files with SFTP in a chroot. The latest news and answers to your questions, of course it's BSD Now - the place to B.. SD.&lt;/p&gt;

&lt;h2&gt;This episode was brought to you by&lt;/h2&gt;

&lt;p&gt;&lt;a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"&gt;&lt;img src="/images/iXlogo2.png" alt="iXsystems - Enterprise Servers and Storage For Open Source"&gt;&lt;/a&gt;&lt;/p&gt;

&lt;hr&gt;

&lt;h2&gt;Headlines&lt;/h2&gt;

&lt;h3&gt;&lt;a href="http://www.pantz.org/software/pf/use_freebsd_10_as_a_pf_firewall.html" rel="nofollow noopener"&gt;FreeBSD 10 as a firewall&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Back in 2012, the author of this site wrote an article stating you should avoid FreeBSD 9 for a firewall and use OpenBSD instead&lt;/li&gt;
&lt;li&gt;Now, with the release of 10.0, he's apparently changed his mind and switched back over&lt;/li&gt;
&lt;li&gt;It mentions the SMP version of pf, general performance advantages and more modern features&lt;/li&gt;
&lt;li&gt;The author is a regular listener of BSD Now, hi Joe!
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://bsdly.blogspot.com/2014/02/effective-spam-and-malware.html" rel="nofollow noopener"&gt;Network Noise Reduction Using Free Tools&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Really long blog post, based on a BSDCan presentation, about fighting spam with OpenBSD&lt;/li&gt;
&lt;li&gt;Peter Hansteen, author of the book of PF, goes through how he uses OpenBSD's spamd and other security features to combat spam and malware&lt;/li&gt;
&lt;li&gt;He goes through his experiences with content filtering and disappointment with a certain proprietary vendor&lt;/li&gt;
&lt;li&gt;Not totally BSD-specific, lots of people can enjoy the article - lots of virus history as well
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://0xfeedface.org/blog/lattera/2014-02-02/freebsd-aslr-patch-submitted-upstream" rel="nofollow noopener"&gt;FreeBSD ASLR patches submitted&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;So far, FreeBSD hasn't had Address Space Layout Randomization&lt;/li&gt;
&lt;li&gt;ASLR is a nice security feature, &lt;a href="https://en.wikipedia.org/wiki/Address_space_layout_randomization" rel="nofollow noopener"&gt;see wikipedia&lt;/a&gt; for more information&lt;/li&gt;
&lt;li&gt;With a giant patch from Shawn Webb, it might be integrated into a future version (after a vicious review from the security team of course)&lt;/li&gt;
&lt;li&gt;We might have Shawn on the show to talk about it, but he's also giving a presentation at BSDCan about his work with ASLR
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://blogs.freebsdish.org/portmgr/2014/02/03/time-to-bid-farewell-to-the-old-pkg_-tools/" rel="nofollow noopener"&gt;Old-style pkg_ tools retired&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;At last the old pkg_add tools are being retired in FreeBSD&lt;/li&gt;
&lt;li&gt;&lt;a href="http://www.bsdnow.tv/tutorials/pkgng" rel="nofollow noopener"&gt;pkgng&lt;/a&gt; is a huge improvement, and now portmgr@ thinks it's time to cut the cord on the legacy toolset&lt;/li&gt;
&lt;li&gt;Ports aren't going away, and probably never will, but for binary package fans and new users that are used to things like apt, pkgng is the way to go&lt;/li&gt;
&lt;li&gt;All pkg_ tools will be considered unsupported on September 1, 2014 - even on older branches
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;Interview - Luke Marsden - &lt;a href="mailto:luke@hybridcluster.com" rel="nofollow noopener"&gt;luke@hybridcluster.com&lt;/a&gt; / &lt;a href="https://twitter.com/lmarsden" rel="nofollow noopener"&gt;@lmarsden&lt;/a&gt;&lt;/h2&gt;

&lt;p&gt;BSD at HybridCluster&lt;/p&gt;

&lt;hr&gt;

&lt;h2&gt;Tutorial&lt;/h2&gt;

&lt;h3&gt;&lt;a href="http://www.bsdnow.tv/tutorials/chroot-sftp" rel="nofollow noopener"&gt;Filesharing with chrooted SFTP&lt;/a&gt;&lt;/h3&gt;

&lt;hr&gt;

&lt;h2&gt;News Roundup&lt;/h2&gt;

&lt;h3&gt;&lt;a href="http://pellaeon.github.io/bsd-cloudinit/" rel="nofollow noopener"&gt;FreeBSD on OpenStack&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;&lt;a href="https://en.wikipedia.org/wiki/OpenStack" rel="nofollow noopener"&gt;OpenStack&lt;/a&gt; is a cloud computing project&lt;/li&gt;
&lt;li&gt;It consists of "a series of interrelated projects that control pools of processing, storage, and networking resources throughout a datacenter, able to be managed or provisioned through a web-based dashboard, command-line tools, or a RESTful API."&lt;/li&gt;
&lt;li&gt;Until now, there wasn't a good way to run a full BSD instance on OpenStack&lt;/li&gt;
&lt;li&gt;With a project in the vein of &lt;a href="http://www.bsdnow.tv/episodes/2014_01_22-tendresse_for_ten" rel="nofollow noopener"&gt;Colin Percival&lt;/a&gt;'s AWS startup scripts, now that's no longer the case! 
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="https://fosdem.org/2014/schedule/track/bsd/" rel="nofollow noopener"&gt;FOSDEM BSD videos&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;This year's FOSDEM had seven BSD presentations&lt;/li&gt;
&lt;li&gt;The videos are &lt;a href="https://video.fosdem.org/2014/" rel="nofollow noopener"&gt;slowly being uploaded&lt;/a&gt; for your viewing pleasure&lt;/li&gt;
&lt;li&gt;Not all of the BSD ones are up yet, but by the time you're watching this they might be!&lt;/li&gt;
&lt;li&gt;Check &lt;a href="https://video.fosdem.org/2014/AW1121/Saturday/" rel="nofollow noopener"&gt;this directory&lt;/a&gt; for most of 'em&lt;/li&gt;
&lt;li&gt;The BSD dev room was full, lots of interest in what's going on from the other communities
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://www.thelinuxcauldron.com/2014/02/05/freebsd-challenge-returns-day-11-30/" rel="nofollow noopener"&gt;The FreeBSD challenge finally returns!&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Due to prodding from a certain guy of a certain podcast, the "FreeBSD Challenge" series has finally resumed&lt;/li&gt;
&lt;li&gt;Our friend from the Linux foundation picks up with &lt;a href="http://www.thelinuxcauldron.com/2014/02/05/freebsd-challenge-day-11-30/" rel="nofollow noopener"&gt;day 11&lt;/a&gt; and &lt;a href="http://www.thelinuxcauldron.com/2014/02/09/freebsd-challenge-day-12-30/" rel="nofollow noopener"&gt;day 12&lt;/a&gt; on his switching from Linux journey&lt;/li&gt;
&lt;li&gt;This time he outlines the upgrade process of going from 9 to 10, using freebsd-update&lt;/li&gt;
&lt;li&gt;There's also some notes about different options for upgrading ports and some extra tips
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://blog.pcbsd.org/2014/02/pc-bsd-weekly-feature-digest-16/" rel="nofollow noopener"&gt;PCBSD weekly digest&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;After the big 10.0 release, the PCBSD crew is focusing on bug fixes for a while&lt;/li&gt;
&lt;li&gt;During their "fine tuning phase" users are encouraged to submit any and all bugs via the trac system&lt;/li&gt;
&lt;li&gt;Warden got some fixes and the package manager got some updates as well&lt;/li&gt;
&lt;li&gt;Huge size reduction in PBI format
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;Feedback/Questions&lt;/h2&gt;

&lt;ul&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s21nbJKYmb" rel="nofollow noopener"&gt;Derrick writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s2yhziVsBP" rel="nofollow noopener"&gt;Sean writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s20PuccWbo" rel="nofollow noopener"&gt;Patrick writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s22PL0SbUO" rel="nofollow noopener"&gt;Peter writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s20dkbjuOK" rel="nofollow noopener"&gt;Sean writes in&lt;/a&gt;
*** &lt;/li&gt;
&lt;/ul&gt;
</description>
  <itunes:keywords>freebsd, openbsd, netbsd, dragonflybsd, pcbsd, tutorial, howto, guide, bsd, interview, cluster, cloud, cloud computing, hybridcluster, jails, scaling, virtualization, zfs, big data, provisioning, webhosting, instances, web hosting, chroot, sftp, filesharing, file sharing, shell, linux, switching to bsd, linux user, smp, pkg_add, pkg, pkgng, binary packages, openstack, open stack, httperf, performance, http, vpn, nycbsdcon, nycbug, nyc, conference, convention, talks, presentation, keynote, ssh</itunes:keywords>
  <content:encoded>
    <![CDATA[<p>This week on BSD Now... a wrap-up from NYCBSDCon! We'll also be talking to Luke Marsden, CEO of HybridCluster, about how they use BSD at large. Following that, our tutorial will show you how to securely share files with SFTP in a chroot. The latest news and answers to your questions, of course it's BSD Now - the place to B.. SD.</p>

<h2>This episode was brought to you by</h2>

<p><a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"><img src="/images/iXlogo2.png" alt="iXsystems - Enterprise Servers and Storage For Open Source"></a></p>

<hr>

<h2>Headlines</h2>

<h3><a href="http://www.pantz.org/software/pf/use_freebsd_10_as_a_pf_firewall.html" rel="nofollow noopener">FreeBSD 10 as a firewall</a></h3>

<ul>
<li>Back in 2012, the author of this site wrote an article stating you should avoid FreeBSD 9 for a firewall and use OpenBSD instead</li>
<li>Now, with the release of 10.0, he's apparently changed his mind and switched back over</li>
<li>It mentions the SMP version of pf, general performance advantages and more modern features</li>
<li>The author is a regular listener of BSD Now, hi Joe!
***</li>
</ul>

<h3><a href="http://bsdly.blogspot.com/2014/02/effective-spam-and-malware.html" rel="nofollow noopener">Network Noise Reduction Using Free Tools</a></h3>

<ul>
<li>Really long blog post, based on a BSDCan presentation, about fighting spam with OpenBSD</li>
<li>Peter Hansteen, author of the book of PF, goes through how he uses OpenBSD's spamd and other security features to combat spam and malware</li>
<li>He goes through his experiences with content filtering and disappointment with a certain proprietary vendor</li>
<li>Not totally BSD-specific, lots of people can enjoy the article - lots of virus history as well
***</li>
</ul>

<h3><a href="http://0xfeedface.org/blog/lattera/2014-02-02/freebsd-aslr-patch-submitted-upstream" rel="nofollow noopener">FreeBSD ASLR patches submitted</a></h3>

<ul>
<li>So far, FreeBSD hasn't had Address Space Layout Randomization</li>
<li>ASLR is a nice security feature, <a href="https://en.wikipedia.org/wiki/Address_space_layout_randomization" rel="nofollow noopener">see wikipedia</a> for more information</li>
<li>With a giant patch from Shawn Webb, it might be integrated into a future version (after a vicious review from the security team of course)</li>
<li>We might have Shawn on the show to talk about it, but he's also giving a presentation at BSDCan about his work with ASLR
***</li>
</ul>

<h3><a href="http://blogs.freebsdish.org/portmgr/2014/02/03/time-to-bid-farewell-to-the-old-pkg_-tools/" rel="nofollow noopener">Old-style pkg_ tools retired</a></h3>

<ul>
<li>At last the old pkg_add tools are being retired in FreeBSD</li>
<li><a href="http://www.bsdnow.tv/tutorials/pkgng" rel="nofollow noopener">pkgng</a> is a huge improvement, and now portmgr@ thinks it's time to cut the cord on the legacy toolset</li>
<li>Ports aren't going away, and probably never will, but for binary package fans and new users that are used to things like apt, pkgng is the way to go</li>
<li>All pkg_ tools will be considered unsupported on September 1, 2014 - even on older branches
***</li>
</ul>

<h2>Interview - Luke Marsden - <a href="mailto:luke@hybridcluster.com" rel="nofollow noopener">luke@hybridcluster.com</a> / <a href="https://twitter.com/lmarsden" rel="nofollow noopener">@lmarsden</a></h2>

<p>BSD at HybridCluster</p>

<hr>

<h2>Tutorial</h2>

<h3><a href="http://www.bsdnow.tv/tutorials/chroot-sftp" rel="nofollow noopener">Filesharing with chrooted SFTP</a></h3>

<hr>

<h2>News Roundup</h2>

<h3><a href="http://pellaeon.github.io/bsd-cloudinit/" rel="nofollow noopener">FreeBSD on OpenStack</a></h3>

<ul>
<li><a href="https://en.wikipedia.org/wiki/OpenStack" rel="nofollow noopener">OpenStack</a> is a cloud computing project</li>
<li>It consists of "a series of interrelated projects that control pools of processing, storage, and networking resources throughout a datacenter, able to be managed or provisioned through a web-based dashboard, command-line tools, or a RESTful API."</li>
<li>Until now, there wasn't a good way to run a full BSD instance on OpenStack</li>
<li>With a project in the vein of <a href="http://www.bsdnow.tv/episodes/2014_01_22-tendresse_for_ten" rel="nofollow noopener">Colin Percival</a>'s AWS startup scripts, now that's no longer the case! 
***</li>
</ul>

<h3><a href="https://fosdem.org/2014/schedule/track/bsd/" rel="nofollow noopener">FOSDEM BSD videos</a></h3>

<ul>
<li>This year's FOSDEM had seven BSD presentations</li>
<li>The videos are <a href="https://video.fosdem.org/2014/" rel="nofollow noopener">slowly being uploaded</a> for your viewing pleasure</li>
<li>Not all of the BSD ones are up yet, but by the time you're watching this they might be!</li>
<li>Check <a href="https://video.fosdem.org/2014/AW1121/Saturday/" rel="nofollow noopener">this directory</a> for most of 'em</li>
<li>The BSD dev room was full, lots of interest in what's going on from the other communities
***</li>
</ul>

<h3><a href="http://www.thelinuxcauldron.com/2014/02/05/freebsd-challenge-returns-day-11-30/" rel="nofollow noopener">The FreeBSD challenge finally returns!</a></h3>

<ul>
<li>Due to prodding from a certain guy of a certain podcast, the "FreeBSD Challenge" series has finally resumed</li>
<li>Our friend from the Linux foundation picks up with <a href="http://www.thelinuxcauldron.com/2014/02/05/freebsd-challenge-day-11-30/" rel="nofollow noopener">day 11</a> and <a href="http://www.thelinuxcauldron.com/2014/02/09/freebsd-challenge-day-12-30/" rel="nofollow noopener">day 12</a> on his switching from Linux journey</li>
<li>This time he outlines the upgrade process of going from 9 to 10, using freebsd-update</li>
<li>There's also some notes about different options for upgrading ports and some extra tips
***</li>
</ul>

<h3><a href="http://blog.pcbsd.org/2014/02/pc-bsd-weekly-feature-digest-16/" rel="nofollow noopener">PCBSD weekly digest</a></h3>

<ul>
<li>After the big 10.0 release, the PCBSD crew is focusing on bug fixes for a while</li>
<li>During their "fine tuning phase" users are encouraged to submit any and all bugs via the trac system</li>
<li>Warden got some fixes and the package manager got some updates as well</li>
<li>Huge size reduction in PBI format
***</li>
</ul>

<h2>Feedback/Questions</h2>

<ul>
<li><a href="http://slexy.org/view/s21nbJKYmb" rel="nofollow noopener">Derrick writes in</a></li>
<li><a href="http://slexy.org/view/s2yhziVsBP" rel="nofollow noopener">Sean writes in</a></li>
<li><a href="http://slexy.org/view/s20PuccWbo" rel="nofollow noopener">Patrick writes in</a></li>
<li><a href="http://slexy.org/view/s22PL0SbUO" rel="nofollow noopener">Peter writes in</a></li>
<li><a href="http://slexy.org/view/s20dkbjuOK" rel="nofollow noopener">Sean writes in</a>
***</li>
</ul>]]>
  </content:encoded>
  <itunes:summary>
    <![CDATA[<p>This week on BSD Now... a wrap-up from NYCBSDCon! We'll also be talking to Luke Marsden, CEO of HybridCluster, about how they use BSD at large. Following that, our tutorial will show you how to securely share files with SFTP in a chroot. The latest news and answers to your questions, of course it's BSD Now - the place to B.. SD.</p>

<h2>This episode was brought to you by</h2>

<p><a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"><img src="/images/iXlogo2.png" alt="iXsystems - Enterprise Servers and Storage For Open Source"></a></p>

<hr>

<h2>Headlines</h2>

<h3><a href="http://www.pantz.org/software/pf/use_freebsd_10_as_a_pf_firewall.html" rel="nofollow noopener">FreeBSD 10 as a firewall</a></h3>

<ul>
<li>Back in 2012, the author of this site wrote an article stating you should avoid FreeBSD 9 for a firewall and use OpenBSD instead</li>
<li>Now, with the release of 10.0, he's apparently changed his mind and switched back over</li>
<li>It mentions the SMP version of pf, general performance advantages and more modern features</li>
<li>The author is a regular listener of BSD Now, hi Joe!
***</li>
</ul>

<h3><a href="http://bsdly.blogspot.com/2014/02/effective-spam-and-malware.html" rel="nofollow noopener">Network Noise Reduction Using Free Tools</a></h3>

<ul>
<li>Really long blog post, based on a BSDCan presentation, about fighting spam with OpenBSD</li>
<li>Peter Hansteen, author of the book of PF, goes through how he uses OpenBSD's spamd and other security features to combat spam and malware</li>
<li>He goes through his experiences with content filtering and disappointment with a certain proprietary vendor</li>
<li>Not totally BSD-specific, lots of people can enjoy the article - lots of virus history as well
***</li>
</ul>

<h3><a href="http://0xfeedface.org/blog/lattera/2014-02-02/freebsd-aslr-patch-submitted-upstream" rel="nofollow noopener">FreeBSD ASLR patches submitted</a></h3>

<ul>
<li>So far, FreeBSD hasn't had Address Space Layout Randomization</li>
<li>ASLR is a nice security feature, <a href="https://en.wikipedia.org/wiki/Address_space_layout_randomization" rel="nofollow noopener">see wikipedia</a> for more information</li>
<li>With a giant patch from Shawn Webb, it might be integrated into a future version (after a vicious review from the security team of course)</li>
<li>We might have Shawn on the show to talk about it, but he's also giving a presentation at BSDCan about his work with ASLR
***</li>
</ul>

<h3><a href="http://blogs.freebsdish.org/portmgr/2014/02/03/time-to-bid-farewell-to-the-old-pkg_-tools/" rel="nofollow noopener">Old-style pkg_ tools retired</a></h3>

<ul>
<li>At last the old pkg_add tools are being retired in FreeBSD</li>
<li><a href="http://www.bsdnow.tv/tutorials/pkgng" rel="nofollow noopener">pkgng</a> is a huge improvement, and now portmgr@ thinks it's time to cut the cord on the legacy toolset</li>
<li>Ports aren't going away, and probably never will, but for binary package fans and new users that are used to things like apt, pkgng is the way to go</li>
<li>All pkg_ tools will be considered unsupported on September 1, 2014 - even on older branches
***</li>
</ul>

<h2>Interview - Luke Marsden - <a href="mailto:luke@hybridcluster.com" rel="nofollow noopener">luke@hybridcluster.com</a> / <a href="https://twitter.com/lmarsden" rel="nofollow noopener">@lmarsden</a></h2>

<p>BSD at HybridCluster</p>

<hr>

<h2>Tutorial</h2>

<h3><a href="http://www.bsdnow.tv/tutorials/chroot-sftp" rel="nofollow noopener">Filesharing with chrooted SFTP</a></h3>

<hr>

<h2>News Roundup</h2>

<h3><a href="http://pellaeon.github.io/bsd-cloudinit/" rel="nofollow noopener">FreeBSD on OpenStack</a></h3>

<ul>
<li><a href="https://en.wikipedia.org/wiki/OpenStack" rel="nofollow noopener">OpenStack</a> is a cloud computing project</li>
<li>It consists of "a series of interrelated projects that control pools of processing, storage, and networking resources throughout a datacenter, able to be managed or provisioned through a web-based dashboard, command-line tools, or a RESTful API."</li>
<li>Until now, there wasn't a good way to run a full BSD instance on OpenStack</li>
<li>With a project in the vein of <a href="http://www.bsdnow.tv/episodes/2014_01_22-tendresse_for_ten" rel="nofollow noopener">Colin Percival</a>'s AWS startup scripts, now that's no longer the case! 
***</li>
</ul>

<h3><a href="https://fosdem.org/2014/schedule/track/bsd/" rel="nofollow noopener">FOSDEM BSD videos</a></h3>

<ul>
<li>This year's FOSDEM had seven BSD presentations</li>
<li>The videos are <a href="https://video.fosdem.org/2014/" rel="nofollow noopener">slowly being uploaded</a> for your viewing pleasure</li>
<li>Not all of the BSD ones are up yet, but by the time you're watching this they might be!</li>
<li>Check <a href="https://video.fosdem.org/2014/AW1121/Saturday/" rel="nofollow noopener">this directory</a> for most of 'em</li>
<li>The BSD dev room was full, lots of interest in what's going on from the other communities
***</li>
</ul>

<h3><a href="http://www.thelinuxcauldron.com/2014/02/05/freebsd-challenge-returns-day-11-30/" rel="nofollow noopener">The FreeBSD challenge finally returns!</a></h3>

<ul>
<li>Due to prodding from a certain guy of a certain podcast, the "FreeBSD Challenge" series has finally resumed</li>
<li>Our friend from the Linux foundation picks up with <a href="http://www.thelinuxcauldron.com/2014/02/05/freebsd-challenge-day-11-30/" rel="nofollow noopener">day 11</a> and <a href="http://www.thelinuxcauldron.com/2014/02/09/freebsd-challenge-day-12-30/" rel="nofollow noopener">day 12</a> on his switching from Linux journey</li>
<li>This time he outlines the upgrade process of going from 9 to 10, using freebsd-update</li>
<li>There's also some notes about different options for upgrading ports and some extra tips
***</li>
</ul>

<h3><a href="http://blog.pcbsd.org/2014/02/pc-bsd-weekly-feature-digest-16/" rel="nofollow noopener">PCBSD weekly digest</a></h3>

<ul>
<li>After the big 10.0 release, the PCBSD crew is focusing on bug fixes for a while</li>
<li>During their "fine tuning phase" users are encouraged to submit any and all bugs via the trac system</li>
<li>Warden got some fixes and the package manager got some updates as well</li>
<li>Huge size reduction in PBI format
***</li>
</ul>

<h2>Feedback/Questions</h2>

<ul>
<li><a href="http://slexy.org/view/s21nbJKYmb" rel="nofollow noopener">Derrick writes in</a></li>
<li><a href="http://slexy.org/view/s2yhziVsBP" rel="nofollow noopener">Sean writes in</a></li>
<li><a href="http://slexy.org/view/s20PuccWbo" rel="nofollow noopener">Patrick writes in</a></li>
<li><a href="http://slexy.org/view/s22PL0SbUO" rel="nofollow noopener">Peter writes in</a></li>
<li><a href="http://slexy.org/view/s20dkbjuOK" rel="nofollow noopener">Sean writes in</a>
***</li>
</ul>]]>
  </itunes:summary>
</item>
<item>
  <title>20: Bhyve Mind</title>
  <link>https://www.bsdnow.tv/20</link>
  <guid isPermaLink="false">6125c3d9-473a-4557-a429-423dffa36cbf</guid>
  <pubDate>Wed, 15 Jan 2014 08:00:00 -0500</pubDate>
  <author>JT Pennington</author>
  <enclosure url="https://aphid.fireside.fm/d/1437767933/c91b88f1-e824-4815-bcb8-5227818d6010/6125c3d9-473a-4557-a429-423dffa36cbf.mp3" length="60158675" type="audio/mpeg"/>
  <itunes:episodeType>full</itunes:episodeType>
  <itunes:author>JT Pennington</itunes:author>
  <itunes:subtitle>It's our big 20th episode! We're going to sit down for a chat with Neel Natu and Peter Grehan, the developers of bhyve. Not familiar with bhyve? Our tutorial will show you all you need to know about this awesome new virtualization technology. Answers to your questions and all the latest news, here on BSD Now - the place to B.. SD.</itunes:subtitle>
  <itunes:duration>1:23:33</itunes:duration>
  <itunes:explicit>no</itunes:explicit>
  <itunes:image href="https://media24.fireside.fm/file/fireside-images-2024/podcasts/images/c/c91b88f1-e824-4815-bcb8-5227818d6010/cover.jpg?v=4"/>
  <description>&lt;p&gt;It's our big 20th episode! We're going to sit down for a chat with Neel Natu and Peter Grehan, the developers of bhyve. Not familiar with bhyve? Our tutorial will show you all you need to know about this awesome new virtualization technology. Answers to your questions and all the latest news, here on BSD Now - the place to B.. SD.&lt;/p&gt;

&lt;h2&gt;This episode was brought to you by&lt;/h2&gt;

&lt;p&gt;&lt;a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"&gt;&lt;img src="/images/iXlogo2.png" alt="iXsystems - Enterprise Servers and Storage For Open Source"&gt;&lt;/a&gt;&lt;/p&gt;

&lt;hr&gt;

&lt;h2&gt;Headlines&lt;/h2&gt;

&lt;h3&gt;&lt;a href="http://undeadly.org/cgi?action=article&amp;amp;sid=20140106055302" rel="nofollow noopener"&gt;OpenBSD automatic installation&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;A CFT (call for testing) was posted for OpenBSD's new automatic installer process&lt;/li&gt;
&lt;li&gt;Using this new system, you can spin up fully-configured OpenBSD installs very quickly&lt;/li&gt;
&lt;li&gt;It will answer all the questions for you and can put files into place and start services&lt;/li&gt;
&lt;li&gt;Great for large deployments, help test it and report your findings
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="https://www.youtube.com/channel/UCL09rVicvyZrqe-I2LP5Vyg/videos" rel="nofollow noopener"&gt;FreeNAS install guide and blog posts&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;A multipart series on YouTube about installing FreeNAS&lt;/li&gt;
&lt;li&gt;In part 1, the guy (who is possibly Dracula, with his very Transylvanian accent..) builds his new file server and shows off the hardware&lt;/li&gt;
&lt;li&gt;In part 2, he shows how to install and configure FreeNAS, uses IPMI, sets up his pools&lt;/li&gt;
&lt;li&gt;He pronounces gigabytes as jiggabytes and it's hilarious&lt;/li&gt;
&lt;li&gt;We've also got an &lt;a href="http://enoriver.net/index.php/2014/01/11/freenas-works-as-advertised/" rel="nofollow noopener"&gt;unrelated blog post&lt;/a&gt; about a very satisfied FreeNAS user who details his setup&lt;/li&gt;
&lt;li&gt;As well as &lt;a href="http://devinteske.com/freenas-development/" rel="nofollow noopener"&gt;another blog post&lt;/a&gt; from our old pal &lt;a href="http://www.bsdnow.tv/episodes/2013-09-25_teskeing_the_possibilities" rel="nofollow noopener"&gt;Devin Teske&lt;/a&gt; about his recent foray into the FreeNAS development world
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="https://lists.freebsd.org/pipermail/freebsd-stable/2014-January/076800.html" rel="nofollow noopener"&gt;FreeBSD 10.0-RC5 is out&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Another, unexpected RC is out for 10.0&lt;/li&gt;
&lt;li&gt;Minor fixes included, please help test and report any bugs&lt;/li&gt;
&lt;li&gt;You can update via freebsd-update or from source&lt;/li&gt;
&lt;li&gt;Hopefully this will be the last one before 10.0-RELEASE, which has tons of new features we'll talk about&lt;/li&gt;
&lt;li&gt;It's been &lt;a href="https://svnweb.freebsd.org/base?view=revision&amp;amp;revision=260664" rel="nofollow noopener"&gt;tagged -RELEASE&lt;/a&gt; in SVN already too!
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://marc.info/?l=openbsd-cvs&amp;amp;m=138952598914052&amp;amp;w=2" rel="nofollow noopener"&gt;OpenBSD 5.5-beta is out&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Theo updated the branch status to 5.5-beta&lt;/li&gt;
&lt;li&gt;A &lt;a href="http://www.openbsd.org/plus.html" rel="nofollow noopener"&gt;list of changes&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://ftp.openbsd.org/pub/OpenBSD/snapshots/" rel="nofollow noopener"&gt;Help test&lt;/a&gt; and report any bugs you find&lt;/li&gt;
&lt;li&gt;Lots of rapid development with signify (which we mentioned last week), the beta includes some "test keys"&lt;/li&gt;
&lt;li&gt;Does that mean it'll be part of the final release? We'll find out in May.. or when we interview Ted (soon)
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;Interview - Neel Natu &amp;amp; Peter Grehan - &lt;a href="mailto:neel@freebsd.org" rel="nofollow noopener"&gt;neel@freebsd.org&lt;/a&gt; &amp;amp; &lt;a href="mailto:grehan@freebsd.org" rel="nofollow noopener"&gt;grehan@freebsd.org&lt;/a&gt;&lt;/h2&gt;

&lt;p&gt;BHyVe - the BSD hypervisor&lt;/p&gt;

&lt;hr&gt;

&lt;h2&gt;Tutorial&lt;/h2&gt;

&lt;h3&gt;&lt;a href="http://www.bsdnow.tv/tutorials/bhyve" rel="nofollow noopener"&gt;Virtualization with bhyve&lt;/a&gt;&lt;/h3&gt;

&lt;hr&gt;

&lt;h2&gt;News Roundup&lt;/h2&gt;

&lt;h3&gt;&lt;a href="http://blog.djm.net.au/2014/01/hostname-canonicalisation-in-openssh.html" rel="nofollow noopener"&gt;Hostname canonicalisation in OpenSSH&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Blog post from our friend &lt;a href="http://www.bsdnow.tv/episodes/2013_12_18-cryptocrystalline" rel="nofollow noopener"&gt;Damien Miller&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;This new feature allows clients to canonicalize unqualified domain names&lt;/li&gt;
&lt;li&gt;SSH will know if you typed "ssh bsdnow" you meant "ssh bsdnow.tv" with new config options&lt;/li&gt;
&lt;li&gt;This will help clean up some ssh configs, especially if you have many hosts&lt;/li&gt;
&lt;li&gt;Should make it into OpenSSH 6.5, which is "due really soon"
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://www.shiningsilence.com/dbsdlog/2014/01/07/13078.html" rel="nofollow noopener"&gt;Dragonfly on a Chromebook&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Some work has been done by Matthew Dillon to get DragonflyBSD working on a Google Chromebook&lt;/li&gt;
&lt;li&gt;These &lt;a href="http://www.shiningsilence.com/dbsdlog/2014/01/10/13132.html" rel="nofollow noopener"&gt;couple of posts&lt;/a&gt; detail some of the things he's got working so far&lt;/li&gt;
&lt;li&gt;Changes were needed to the boot process, trackpad and wifi drivers needed updating...&lt;/li&gt;
&lt;li&gt;Also includes a guide written by Dillon on how to get yours working
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://kazarka.com/index.php?section=spiderinabox" rel="nofollow noopener"&gt;Spider in a box&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;"Spiderinabox" is a new OpenBSD-based project&lt;/li&gt;
&lt;li&gt;Using a combination of OpenBSD, Firefox, XQuartz and VirtualBox, it creates a secure browsing experience for OS X&lt;/li&gt;
&lt;li&gt;Firefox runs encapsulated in OpenBSD and doesn't have access to OS X in any way&lt;/li&gt;
&lt;li&gt;The developer is looking for testers on other operating systems!
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://blog.pcbsd.org/2014/01/pc-bsd-weekly-feature-digest-3/" rel="nofollow noopener"&gt;PCBSD weekly digest&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;PCBSD 10 has entered into the code freeze phase&lt;/li&gt;
&lt;li&gt;They're focusing on fixing bugs now, rather than adding new features&lt;/li&gt;
&lt;li&gt;The update system got a lot of improvements&lt;/li&gt;
&lt;li&gt;PBI load times reduced by up to 40%! what!!!
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;Feedback/Questions&lt;/h2&gt;

&lt;ul&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s25zbSPtcm" rel="nofollow noopener"&gt;Scott writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s2EarxbZz1" rel="nofollow noopener"&gt;Chris writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s2MWKxtWxF" rel="nofollow noopener"&gt;SW writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s20kzex2qm" rel="nofollow noopener"&gt;Ole writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s2858Ph4o0" rel="nofollow noopener"&gt;Gertjan writes in&lt;/a&gt;
*** &lt;/li&gt;
&lt;/ul&gt;
</description>
  <itunes:keywords>freebsd, openbsd, netbsd, dragonflybsd, pcbsd, tutorial, howto, guide, bsd, interview, bhyve, virtualization, xen, hypervisor, type 2, neel natu, peter grehan, presentation, dom0, domu, automatic install, pxe, pxeboot, freenas, installation, chromebook, edgebsd, spiderinabox, spider in a box, vm</itunes:keywords>
  <content:encoded>
    <![CDATA[<p>It's our big 20th episode! We're going to sit down for a chat with Neel Natu and Peter Grehan, the developers of bhyve. Not familiar with bhyve? Our tutorial will show you all you need to know about this awesome new virtualization technology. Answers to your questions and all the latest news, here on BSD Now - the place to B.. SD.</p>

<h2>This episode was brought to you by</h2>

<p><a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"><img src="/images/iXlogo2.png" alt="iXsystems - Enterprise Servers and Storage For Open Source"></a></p>

<hr>

<h2>Headlines</h2>

<h3><a href="http://undeadly.org/cgi?action=article&amp;sid=20140106055302" rel="nofollow noopener">OpenBSD automatic installation</a></h3>

<ul>
<li>A CFT (call for testing) was posted for OpenBSD's new automatic installer process</li>
<li>Using this new system, you can spin up fully-configured OpenBSD installs very quickly</li>
<li>It will answer all the questions for you and can put files into place and start services</li>
<li>Great for large deployments, help test it and report your findings
***</li>
</ul>

<h3><a href="https://www.youtube.com/channel/UCL09rVicvyZrqe-I2LP5Vyg/videos" rel="nofollow noopener">FreeNAS install guide and blog posts</a></h3>

<ul>
<li>A multipart series on YouTube about installing FreeNAS</li>
<li>In part 1, the guy (who is possibly Dracula, with his very Transylvanian accent..) builds his new file server and shows off the hardware</li>
<li>In part 2, he shows how to install and configure FreeNAS, uses IPMI, sets up his pools</li>
<li>He pronounces gigabytes as jiggabytes and it's hilarious</li>
<li>We've also got an <a href="http://enoriver.net/index.php/2014/01/11/freenas-works-as-advertised/" rel="nofollow noopener">unrelated blog post</a> about a very satisfied FreeNAS user who details his setup</li>
<li>As well as <a href="http://devinteske.com/freenas-development/" rel="nofollow noopener">another blog post</a> from our old pal <a href="http://www.bsdnow.tv/episodes/2013-09-25_teskeing_the_possibilities" rel="nofollow noopener">Devin Teske</a> about his recent foray into the FreeNAS development world
***</li>
</ul>

<h3><a href="https://lists.freebsd.org/pipermail/freebsd-stable/2014-January/076800.html" rel="nofollow noopener">FreeBSD 10.0-RC5 is out</a></h3>

<ul>
<li>Another, unexpected RC is out for 10.0</li>
<li>Minor fixes included, please help test and report any bugs</li>
<li>You can update via freebsd-update or from source</li>
<li>Hopefully this will be the last one before 10.0-RELEASE, which has tons of new features we'll talk about</li>
<li>It's been <a href="https://svnweb.freebsd.org/base?view=revision&amp;revision=260664" rel="nofollow noopener">tagged -RELEASE</a> in SVN already too!
***</li>
</ul>

<h3><a href="http://marc.info/?l=openbsd-cvs&amp;m=138952598914052&amp;w=2" rel="nofollow noopener">OpenBSD 5.5-beta is out</a></h3>

<ul>
<li>Theo updated the branch status to 5.5-beta</li>
<li>A <a href="http://www.openbsd.org/plus.html" rel="nofollow noopener">list of changes</a></li>
<li><a href="http://ftp.openbsd.org/pub/OpenBSD/snapshots/" rel="nofollow noopener">Help test</a> and report any bugs you find</li>
<li>Lots of rapid development with signify (which we mentioned last week), the beta includes some "test keys"</li>
<li>Does that mean it'll be part of the final release? We'll find out in May.. or when we interview Ted (soon)
***</li>
</ul>

<h2>Interview - Neel Natu &amp; Peter Grehan - <a href="mailto:neel@freebsd.org" rel="nofollow noopener">neel@freebsd.org</a> &amp; <a href="mailto:grehan@freebsd.org" rel="nofollow noopener">grehan@freebsd.org</a></h2>

<p>BHyVe - the BSD hypervisor</p>

<hr>

<h2>Tutorial</h2>

<h3><a href="http://www.bsdnow.tv/tutorials/bhyve" rel="nofollow noopener">Virtualization with bhyve</a></h3>

<hr>

<h2>News Roundup</h2>

<h3><a href="http://blog.djm.net.au/2014/01/hostname-canonicalisation-in-openssh.html" rel="nofollow noopener">Hostname canonicalisation in OpenSSH</a></h3>

<ul>
<li>Blog post from our friend <a href="http://www.bsdnow.tv/episodes/2013_12_18-cryptocrystalline" rel="nofollow noopener">Damien Miller</a></li>
<li>This new feature allows clients to canonicalize unqualified domain names</li>
<li>SSH will know if you typed "ssh bsdnow" you meant "ssh bsdnow.tv" with new config options</li>
<li>This will help clean up some ssh configs, especially if you have many hosts</li>
<li>Should make it into OpenSSH 6.5, which is "due really soon"
***</li>
</ul>

<h3><a href="http://www.shiningsilence.com/dbsdlog/2014/01/07/13078.html" rel="nofollow noopener">Dragonfly on a Chromebook</a></h3>

<ul>
<li>Some work has been done by Matthew Dillon to get DragonflyBSD working on a Google Chromebook</li>
<li>These <a href="http://www.shiningsilence.com/dbsdlog/2014/01/10/13132.html" rel="nofollow noopener">couple of posts</a> detail some of the things he's got working so far</li>
<li>Changes were needed to the boot process, trackpad and wifi drivers needed updating...</li>
<li>Also includes a guide written by Dillon on how to get yours working
***</li>
</ul>

<h3><a href="http://kazarka.com/index.php?section=spiderinabox" rel="nofollow noopener">Spider in a box</a></h3>

<ul>
<li>"Spiderinabox" is a new OpenBSD-based project</li>
<li>Using a combination of OpenBSD, Firefox, XQuartz and VirtualBox, it creates a secure browsing experience for OS X</li>
<li>Firefox runs encapsulated in OpenBSD and doesn't have access to OS X in any way</li>
<li>The developer is looking for testers on other operating systems!
***</li>
</ul>

<h3><a href="http://blog.pcbsd.org/2014/01/pc-bsd-weekly-feature-digest-3/" rel="nofollow noopener">PCBSD weekly digest</a></h3>

<ul>
<li>PCBSD 10 has entered into the code freeze phase</li>
<li>They're focusing on fixing bugs now, rather than adding new features</li>
<li>The update system got a lot of improvements</li>
<li>PBI load times reduced by up to 40%! what!!!
***</li>
</ul>

<h2>Feedback/Questions</h2>

<ul>
<li><a href="http://slexy.org/view/s25zbSPtcm" rel="nofollow noopener">Scott writes in</a></li>
<li><a href="http://slexy.org/view/s2EarxbZz1" rel="nofollow noopener">Chris writes in</a></li>
<li><a href="http://slexy.org/view/s2MWKxtWxF" rel="nofollow noopener">SW writes in</a></li>
<li><a href="http://slexy.org/view/s20kzex2qm" rel="nofollow noopener">Ole writes in</a></li>
<li><a href="http://slexy.org/view/s2858Ph4o0" rel="nofollow noopener">Gertjan writes in</a>
***</li>
</ul>]]>
  </content:encoded>
  <itunes:summary>
    <![CDATA[<p>It's our big 20th episode! We're going to sit down for a chat with Neel Natu and Peter Grehan, the developers of bhyve. Not familiar with bhyve? Our tutorial will show you all you need to know about this awesome new virtualization technology. Answers to your questions and all the latest news, here on BSD Now - the place to B.. SD.</p>

<h2>This episode was brought to you by</h2>

<p><a href="http://www.ixsystems.com/bsdnow" title="iXsystems" rel="nofollow noopener"><img src="/images/iXlogo2.png" alt="iXsystems - Enterprise Servers and Storage For Open Source"></a></p>

<hr>

<h2>Headlines</h2>

<h3><a href="http://undeadly.org/cgi?action=article&amp;sid=20140106055302" rel="nofollow noopener">OpenBSD automatic installation</a></h3>

<ul>
<li>A CFT (call for testing) was posted for OpenBSD's new automatic installer process</li>
<li>Using this new system, you can spin up fully-configured OpenBSD installs very quickly</li>
<li>It will answer all the questions for you and can put files into place and start services</li>
<li>Great for large deployments, help test it and report your findings
***</li>
</ul>

<h3><a href="https://www.youtube.com/channel/UCL09rVicvyZrqe-I2LP5Vyg/videos" rel="nofollow noopener">FreeNAS install guide and blog posts</a></h3>

<ul>
<li>A multipart series on YouTube about installing FreeNAS</li>
<li>In part 1, the guy (who is possibly Dracula, with his very Transylvanian accent..) builds his new file server and shows off the hardware</li>
<li>In part 2, he shows how to install and configure FreeNAS, uses IPMI, sets up his pools</li>
<li>He pronounces gigabytes as jiggabytes and it's hilarious</li>
<li>We've also got an <a href="http://enoriver.net/index.php/2014/01/11/freenas-works-as-advertised/" rel="nofollow noopener">unrelated blog post</a> about a very satisfied FreeNAS user who details his setup</li>
<li>As well as <a href="http://devinteske.com/freenas-development/" rel="nofollow noopener">another blog post</a> from our old pal <a href="http://www.bsdnow.tv/episodes/2013-09-25_teskeing_the_possibilities" rel="nofollow noopener">Devin Teske</a> about his recent foray into the FreeNAS development world
***</li>
</ul>

<h3><a href="https://lists.freebsd.org/pipermail/freebsd-stable/2014-January/076800.html" rel="nofollow noopener">FreeBSD 10.0-RC5 is out</a></h3>

<ul>
<li>Another, unexpected RC is out for 10.0</li>
<li>Minor fixes included, please help test and report any bugs</li>
<li>You can update via freebsd-update or from source</li>
<li>Hopefully this will be the last one before 10.0-RELEASE, which has tons of new features we'll talk about</li>
<li>It's been <a href="https://svnweb.freebsd.org/base?view=revision&amp;revision=260664" rel="nofollow noopener">tagged -RELEASE</a> in SVN already too!
***</li>
</ul>

<h3><a href="http://marc.info/?l=openbsd-cvs&amp;m=138952598914052&amp;w=2" rel="nofollow noopener">OpenBSD 5.5-beta is out</a></h3>

<ul>
<li>Theo updated the branch status to 5.5-beta</li>
<li>A <a href="http://www.openbsd.org/plus.html" rel="nofollow noopener">list of changes</a></li>
<li><a href="http://ftp.openbsd.org/pub/OpenBSD/snapshots/" rel="nofollow noopener">Help test</a> and report any bugs you find</li>
<li>Lots of rapid development with signify (which we mentioned last week), the beta includes some "test keys"</li>
<li>Does that mean it'll be part of the final release? We'll find out in May.. or when we interview Ted (soon)
***</li>
</ul>

<h2>Interview - Neel Natu &amp; Peter Grehan - <a href="mailto:neel@freebsd.org" rel="nofollow noopener">neel@freebsd.org</a> &amp; <a href="mailto:grehan@freebsd.org" rel="nofollow noopener">grehan@freebsd.org</a></h2>

<p>BHyVe - the BSD hypervisor</p>

<hr>

<h2>Tutorial</h2>

<h3><a href="http://www.bsdnow.tv/tutorials/bhyve" rel="nofollow noopener">Virtualization with bhyve</a></h3>

<hr>

<h2>News Roundup</h2>

<h3><a href="http://blog.djm.net.au/2014/01/hostname-canonicalisation-in-openssh.html" rel="nofollow noopener">Hostname canonicalisation in OpenSSH</a></h3>

<ul>
<li>Blog post from our friend <a href="http://www.bsdnow.tv/episodes/2013_12_18-cryptocrystalline" rel="nofollow noopener">Damien Miller</a></li>
<li>This new feature allows clients to canonicalize unqualified domain names</li>
<li>SSH will know if you typed "ssh bsdnow" you meant "ssh bsdnow.tv" with new config options</li>
<li>This will help clean up some ssh configs, especially if you have many hosts</li>
<li>Should make it into OpenSSH 6.5, which is "due really soon"
***</li>
</ul>

<h3><a href="http://www.shiningsilence.com/dbsdlog/2014/01/07/13078.html" rel="nofollow noopener">Dragonfly on a Chromebook</a></h3>

<ul>
<li>Some work has been done by Matthew Dillon to get DragonflyBSD working on a Google Chromebook</li>
<li>These <a href="http://www.shiningsilence.com/dbsdlog/2014/01/10/13132.html" rel="nofollow noopener">couple of posts</a> detail some of the things he's got working so far</li>
<li>Changes were needed to the boot process, trackpad and wifi drivers needed updating...</li>
<li>Also includes a guide written by Dillon on how to get yours working
***</li>
</ul>

<h3><a href="http://kazarka.com/index.php?section=spiderinabox" rel="nofollow noopener">Spider in a box</a></h3>

<ul>
<li>"Spiderinabox" is a new OpenBSD-based project</li>
<li>Using a combination of OpenBSD, Firefox, XQuartz and VirtualBox, it creates a secure browsing experience for OS X</li>
<li>Firefox runs encapsulated in OpenBSD and doesn't have access to OS X in any way</li>
<li>The developer is looking for testers on other operating systems!
***</li>
</ul>

<h3><a href="http://blog.pcbsd.org/2014/01/pc-bsd-weekly-feature-digest-3/" rel="nofollow noopener">PCBSD weekly digest</a></h3>

<ul>
<li>PCBSD 10 has entered into the code freeze phase</li>
<li>They're focusing on fixing bugs now, rather than adding new features</li>
<li>The update system got a lot of improvements</li>
<li>PBI load times reduced by up to 40%! what!!!
***</li>
</ul>

<h2>Feedback/Questions</h2>

<ul>
<li><a href="http://slexy.org/view/s25zbSPtcm" rel="nofollow noopener">Scott writes in</a></li>
<li><a href="http://slexy.org/view/s2EarxbZz1" rel="nofollow noopener">Chris writes in</a></li>
<li><a href="http://slexy.org/view/s2MWKxtWxF" rel="nofollow noopener">SW writes in</a></li>
<li><a href="http://slexy.org/view/s20kzex2qm" rel="nofollow noopener">Ole writes in</a></li>
<li><a href="http://slexy.org/view/s2858Ph4o0" rel="nofollow noopener">Gertjan writes in</a>
***</li>
</ul>]]>
  </itunes:summary>
</item>
<item>
  <title>12: Collecting SSHells</title>
  <link>https://www.bsdnow.tv/12</link>
  <guid isPermaLink="false">8552d8d2-0590-4641-9780-81ca0dc91bd1</guid>
  <pubDate>Wed, 20 Nov 2013 08:00:00 -0500</pubDate>
  <author>JT Pennington</author>
  <enclosure url="https://aphid.fireside.fm/d/1437767933/c91b88f1-e824-4815-bcb8-5227818d6010/8552d8d2-0590-4641-9780-81ca0dc91bd1.mp3" length="49103236" type="audio/mpeg"/>
  <itunes:episodeType>full</itunes:episodeType>
  <itunes:author>JT Pennington</itunes:author>
  <itunes:subtitle>This week we'll be talking to Amitai Schlair of the NetBSD foundation about pkgsrc, NetBSD's future plans and much more. After that, if you've ever wondered what all this SSH stuff is about, today's tutorial has got you covered. We'll be showing you the basics of SSH, as well as how to combine it with tmux for persistent sessions. News, feedback and everything else, right here on BSD Now - the place to B.. SD.</itunes:subtitle>
  <itunes:duration>1:08:11</itunes:duration>
  <itunes:explicit>no</itunes:explicit>
  <itunes:image href="https://media24.fireside.fm/file/fireside-images-2024/podcasts/images/c/c91b88f1-e824-4815-bcb8-5227818d6010/cover.jpg?v=4"/>
  <description>&lt;p&gt;This week we'll be talking to Amitai Schlair of the NetBSD foundation about pkgsrc, NetBSD's future plans and much more. After that, if you've ever wondered what all this SSH stuff is about, today's tutorial has got you covered. We'll be showing you the basics of SSH, as well as how to combine it with tmux for persistent sessions. News, feedback and everything else, right here on BSD Now - the place to B.. SD.&lt;/p&gt;

&lt;h2&gt;Headlines&lt;/h2&gt;

&lt;h3&gt;&lt;a href="http://freebsdfoundation.blogspot.com/2013/11/faces-of-freebsd-colin-percival.html" rel="nofollow noopener"&gt;Faces of FreeBSD&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;The FreeBSD foundation is publishing articles on different FreeBSD developers&lt;/li&gt;
&lt;li&gt;This one is about Colin Percival (cperciva@), the ex-security officer&lt;/li&gt;
&lt;li&gt;Tells the story of how he first found BSD, what he contributed back, how he eventually became the security officer&lt;/li&gt;
&lt;li&gt;Running series with more to come
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://www.freebsdnews.net/2013/11/14/eurobsdcon-2013-devsummit-video-recordings/" rel="nofollow noopener"&gt;Lots of BSD presentation videos uploaded&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;EuroBSDCon 2013 dev summit videos, AsiaBSDCon 2013 videos, MWL's presentation video&lt;/li&gt;
&lt;li&gt;Most of us never get to see the dev summit talks since they're only for developers&lt;/li&gt;
&lt;li&gt;&lt;a href="https://www.youtube.com/user/bsdconferences" rel="nofollow noopener"&gt;AsiaBSDCon 2013 videos also up&lt;/a&gt; finally&lt;/li&gt;
&lt;li&gt;List of AsiaBSDCon presentation topics &lt;a href="http://2013.asiabsdcon.org/papers/index.html" rel="nofollow noopener"&gt;here&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Our buddy Michael W Lucas gave an &lt;a href="http://blather.michaelwlucas.com/archives/1879" rel="nofollow noopener"&gt;"OpenBSD for Linux users" talk&lt;/a&gt; at a Michigan Unix Users Group.&lt;/li&gt;
&lt;li&gt;He says "Among other things, I compare OpenBSD to Richard Stallman and physically assault an audience member. We also talk long long time, memory randomization, PF, BSD license versus GPL, Microsoft and other OpenBSD stuff"&lt;/li&gt;
&lt;li&gt;Really informative presentation, pretty long, answers some common questions at the end
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="https://blog.netbsd.org/tnf/entry/call_for_presentations_bsd_devroom" rel="nofollow noopener"&gt;Call for Presentations: FOSDEM 2014 and NYCBSDCon 2014&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;FOSDEM 2014 will take place on 1–2 February, 2014, in Brussels, Belgium&lt;/li&gt;
&lt;li&gt;Just like in the last years, there will be both a BSD booth and a developer's room&lt;/li&gt;
&lt;li&gt;The topics of the devroom include all BSD operating systems. Every talk is welcome, from internal hacker discussion to real-world examples and presentations about new and shiny features.&lt;/li&gt;
&lt;li&gt;If you are in the area or want to go, check the show notes for details&lt;/li&gt;
&lt;li&gt;NYCBSDCon &lt;a href="http://undeadly.org/cgi?action=article&amp;amp;sid=20131119053455" rel="nofollow noopener"&gt;is also accepting papers&lt;/a&gt;.&lt;/li&gt;
&lt;li&gt;It'll be in New York City at the beginning of February 2014&lt;/li&gt;
&lt;li&gt;If anyone wants to give a talk at one of these conferences, go ahead and send in your stuff!
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="https://lists.freebsd.org/pipermail/freebsd-announce/2013-November/001511.html" rel="nofollow noopener"&gt;FreeBSD foundation's year-end fundraising campaign&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;The FreeBSD foundation has been supporting the FreeBSD project and community for over 13 years&lt;/li&gt;
&lt;li&gt;As of today they have raised about half a million dollars, but still have a while to go&lt;/li&gt;
&lt;li&gt;Donations go towards new features, paying for the server infrastructure, conferences, supporting the community, hiring full-time staff members and promoting FreeBSD at events&lt;/li&gt;
&lt;li&gt;They are preparing the debut of a new online magazine, the FreeBSD Journal&lt;/li&gt;
&lt;li&gt;Typically big companies make their huge donations in December, like a couple of anonymous donors that gave around $250,000 each last year&lt;/li&gt;
&lt;li&gt;&lt;a href="http://www.freebsdfoundation.org/donate/" rel="nofollow noopener"&gt;Make your donation today&lt;/a&gt; over at freebsdfoundation.org, every little bit helps&lt;/li&gt;
&lt;li&gt;Everyone involved with BSD Now made a donation last year and will do so again this year
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;Interview - Amitai Schlair - &lt;a href="mailto:schmonz@netbsd.org" rel="nofollow noopener"&gt;schmonz@netbsd.org&lt;/a&gt; / &lt;a href="https://twitter.com/schmonz" rel="nofollow noopener"&gt;@schmonz&lt;/a&gt;&lt;/h2&gt;

&lt;p&gt;The NetBSD Foundation, pkgsrc, future plans&lt;/p&gt;

&lt;hr&gt;

&lt;h2&gt;Tutorial&lt;/h2&gt;

&lt;h3&gt;&lt;a href="http://www.bsdnow.tv/tutorials/ssh-tmux" rel="nofollow noopener"&gt;Combining SSH and tmux&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;&lt;strong&gt;Note: there was a mistake in the video version of the tutorial, please consult the written version for the proper instructions.&lt;/strong&gt;
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;News Roundup&lt;/h2&gt;

&lt;h3&gt;&lt;a href="http://www.theregister.co.uk/2013/11/16/sony_playstation_4_kernel" rel="nofollow noopener"&gt;PS4 released&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Sony's Playstation 4 is finally released&lt;/li&gt;
&lt;li&gt;As previously thought, its OS is heavily based on FreeBSD and uses the kernel among other things&lt;/li&gt;
&lt;li&gt;Link in the show notes contains the &lt;a href="http://www.scei.co.jp/ps4-license/" rel="nofollow noopener"&gt;full list of BSD software they're using&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;Always good to see BSD being so widespread
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://bsdmag.org/magazine/1853-hast-on-freebsd-how-to-make-storage-highly-availble-by-using-hast" rel="nofollow noopener"&gt;BSD Mag November issue&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Free monthly BSD magazine publishes another issue&lt;/li&gt;
&lt;li&gt;This time their topics include: Configuring a Highly Available Service on FreeBSD, IT Inventory &amp;amp; Asset Management Automation, more FreeBSD Programming Primer, PfSense and Snort and a few others&lt;/li&gt;
&lt;li&gt;PDF linked in the show notes
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://mail-index.netbsd.org/pkgsrc-users/2013/11/09/msg018881.html" rel="nofollow noopener"&gt;pbulk builds made easy&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;NetBSD's &lt;a href="https://www.netbsd.org/docs/pkgsrc/bulk.html" rel="nofollow noopener"&gt;pbulk tool&lt;/a&gt; is similar to &lt;a href="http://www.bsdnow.tv/tutorials/poudriere" rel="nofollow noopener"&gt;poudriere&lt;/a&gt;, but for pkgsrc&lt;/li&gt;
&lt;li&gt;While working on updating the documentation, a developer cleaned up quite a lot of code&lt;/li&gt;
&lt;li&gt;He wrote a script that automates pbulk deployment and setup&lt;/li&gt;
&lt;li&gt;The whole setup of a dedicated machine has been reduced to just three commands
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h3&gt;&lt;a href="http://blog.pcbsd.org/2013/11/pc-bsd-weekly-feature-digest-111513/" rel="nofollow noopener"&gt;PCBSD weekly digest&lt;/a&gt;&lt;/h3&gt;

&lt;ul&gt;
&lt;li&gt;Over 200 PBIs have been populated in to the PC-BSD 10 Stable Appcafe&lt;/li&gt;
&lt;li&gt;Many PC-BSD programs received some necessary bug fixes and updates&lt;/li&gt;
&lt;li&gt;Some include network detection in the package and update managers, nvidia graphic detection, security updates for PCDM
***&lt;/li&gt;
&lt;/ul&gt;

&lt;h2&gt;Feedback/Questions&lt;/h2&gt;

&lt;ul&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s21oh3vP7t" rel="nofollow noopener"&gt;Peter writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s21zfqcWMP" rel="nofollow noopener"&gt;Kjell-Aleksander writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s2ZmW77Odb" rel="nofollow noopener"&gt;Jordan writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s2BZq7xiyo" rel="nofollow noopener"&gt;Christian writes in&lt;/a&gt;&lt;/li&gt;
&lt;li&gt;&lt;a href="http://slexy.org/view/s21xrk0M4k" rel="nofollow noopener"&gt;entransic writes in&lt;/a&gt;
*** &lt;/li&gt;
&lt;/ul&gt;
</description>
  <itunes:keywords>freebsd, openbsd, netbsd, dragonflybsd, pcbsd, tutorial, howto, guide, bsd, interview, ssh, openssh, gnu, screen, tmux, presentation, talk, foundation, fundraiser, donations, michael w lucas, linux, amitai schlair, schmonz, pkgsrc, tetris, devsummit, dev, developer, summit, eurobsdcon, eurobsdcon2013, 2013, sony, ps4, launch, playstation, playstation4, orbis os, orbisos, asiabsdcon, pbulk</itunes:keywords>
  <content:encoded>
    <![CDATA[<p>This week we'll be talking to Amitai Schlair of the NetBSD foundation about pkgsrc, NetBSD's future plans and much more. After that, if you've ever wondered what all this SSH stuff is about, today's tutorial has got you covered. We'll be showing you the basics of SSH, as well as how to combine it with tmux for persistent sessions. News, feedback and everything else, right here on BSD Now - the place to B.. SD.</p>

<h2>Headlines</h2>

<h3><a href="http://freebsdfoundation.blogspot.com/2013/11/faces-of-freebsd-colin-percival.html" rel="nofollow noopener">Faces of FreeBSD</a></h3>

<ul>
<li>The FreeBSD foundation is publishing articles on different FreeBSD developers</li>
<li>This one is about Colin Percival (cperciva@), the ex-security officer</li>
<li>Tells the story of how he first found BSD, what he contributed back, how he eventually became the security officer</li>
<li>Running series with more to come
***</li>
</ul>

<h3><a href="http://www.freebsdnews.net/2013/11/14/eurobsdcon-2013-devsummit-video-recordings/" rel="nofollow noopener">Lots of BSD presentation videos uploaded</a></h3>

<ul>
<li>EuroBSDCon 2013 dev summit videos, AsiaBSDCon 2013 videos, MWL's presentation video</li>
<li>Most of us never get to see the dev summit talks since they're only for developers</li>
<li><a href="https://www.youtube.com/user/bsdconferences" rel="nofollow noopener">AsiaBSDCon 2013 videos also up</a> finally</li>
<li>List of AsiaBSDCon presentation topics <a href="http://2013.asiabsdcon.org/papers/index.html" rel="nofollow noopener">here</a></li>
<li>Our buddy Michael W Lucas gave an <a href="http://blather.michaelwlucas.com/archives/1879" rel="nofollow noopener">"OpenBSD for Linux users" talk</a> at a Michigan Unix Users Group.</li>
<li>He says "Among other things, I compare OpenBSD to Richard Stallman and physically assault an audience member. We also talk long long time, memory randomization, PF, BSD license versus GPL, Microsoft and other OpenBSD stuff"</li>
<li>Really informative presentation, pretty long, answers some common questions at the end
***</li>
</ul>

<h3><a href="https://blog.netbsd.org/tnf/entry/call_for_presentations_bsd_devroom" rel="nofollow noopener">Call for Presentations: FOSDEM 2014 and NYCBSDCon 2014</a></h3>

<ul>
<li>FOSDEM 2014 will take place on 1–2 February, 2014, in Brussels, Belgium</li>
<li>Just like in the last years, there will be both a BSD booth and a developer's room</li>
<li>The topics of the devroom include all BSD operating systems. Every talk is welcome, from internal hacker discussion to real-world examples and presentations about new and shiny features.</li>
<li>If you are in the area or want to go, check the show notes for details</li>
<li>NYCBSDCon <a href="http://undeadly.org/cgi?action=article&amp;sid=20131119053455" rel="nofollow noopener">is also accepting papers</a>.</li>
<li>It'll be in New York City at the beginning of February 2014</li>
<li>If anyone wants to give a talk at one of these conferences, go ahead and send in your stuff!
***</li>
</ul>

<h3><a href="https://lists.freebsd.org/pipermail/freebsd-announce/2013-November/001511.html" rel="nofollow noopener">FreeBSD foundation's year-end fundraising campaign</a></h3>

<ul>
<li>The FreeBSD foundation has been supporting the FreeBSD project and community for over 13 years</li>
<li>As of today they have raised about half a million dollars, but still have a while to go</li>
<li>Donations go towards new features, paying for the server infrastructure, conferences, supporting the community, hiring full-time staff members and promoting FreeBSD at events</li>
<li>They are preparing the debut of a new online magazine, the FreeBSD Journal</li>
<li>Typically big companies make their huge donations in December, like a couple of anonymous donors that gave around $250,000 each last year</li>
<li><a href="http://www.freebsdfoundation.org/donate/" rel="nofollow noopener">Make your donation today</a> over at freebsdfoundation.org, every little bit helps</li>
<li>Everyone involved with BSD Now made a donation last year and will do so again this year
***</li>
</ul>

<h2>Interview - Amitai Schlair - <a href="mailto:schmonz@netbsd.org" rel="nofollow noopener">schmonz@netbsd.org</a> / <a href="https://twitter.com/schmonz" rel="nofollow noopener">@schmonz</a></h2>

<p>The NetBSD Foundation, pkgsrc, future plans</p>

<hr>

<h2>Tutorial</h2>

<h3><a href="http://www.bsdnow.tv/tutorials/ssh-tmux" rel="nofollow noopener">Combining SSH and tmux</a></h3>

<ul>
<li><strong>Note: there was a mistake in the video version of the tutorial, please consult the written version for the proper instructions.</strong>
***</li>
</ul>

<h2>News Roundup</h2>

<h3><a href="http://www.theregister.co.uk/2013/11/16/sony_playstation_4_kernel" rel="nofollow noopener">PS4 released</a></h3>

<ul>
<li>Sony's Playstation 4 is finally released</li>
<li>As previously thought, its OS is heavily based on FreeBSD and uses the kernel among other things</li>
<li>Link in the show notes contains the <a href="http://www.scei.co.jp/ps4-license/" rel="nofollow noopener">full list of BSD software they're using</a></li>
<li>Always good to see BSD being so widespread
***</li>
</ul>

<h3><a href="http://bsdmag.org/magazine/1853-hast-on-freebsd-how-to-make-storage-highly-availble-by-using-hast" rel="nofollow noopener">BSD Mag November issue</a></h3>

<ul>
<li>Free monthly BSD magazine publishes another issue</li>
<li>This time their topics include: Configuring a Highly Available Service on FreeBSD, IT Inventory &amp; Asset Management Automation, more FreeBSD Programming Primer, PfSense and Snort and a few others</li>
<li>PDF linked in the show notes
***</li>
</ul>

<h3><a href="http://mail-index.netbsd.org/pkgsrc-users/2013/11/09/msg018881.html" rel="nofollow noopener">pbulk builds made easy</a></h3>

<ul>
<li>NetBSD's <a href="https://www.netbsd.org/docs/pkgsrc/bulk.html" rel="nofollow noopener">pbulk tool</a> is similar to <a href="http://www.bsdnow.tv/tutorials/poudriere" rel="nofollow noopener">poudriere</a>, but for pkgsrc</li>
<li>While working on updating the documentation, a developer cleaned up quite a lot of code</li>
<li>He wrote a script that automates pbulk deployment and setup</li>
<li>The whole setup of a dedicated machine has been reduced to just three commands
***</li>
</ul>

<h3><a href="http://blog.pcbsd.org/2013/11/pc-bsd-weekly-feature-digest-111513/" rel="nofollow noopener">PCBSD weekly digest</a></h3>

<ul>
<li>Over 200 PBIs have been populated in to the PC-BSD 10 Stable Appcafe</li>
<li>Many PC-BSD programs received some necessary bug fixes and updates</li>
<li>Some include network detection in the package and update managers, nvidia graphic detection, security updates for PCDM
***</li>
</ul>

<h2>Feedback/Questions</h2>

<ul>
<li><a href="http://slexy.org/view/s21oh3vP7t" rel="nofollow noopener">Peter writes in</a></li>
<li><a href="http://slexy.org/view/s21zfqcWMP" rel="nofollow noopener">Kjell-Aleksander writes in</a></li>
<li><a href="http://slexy.org/view/s2ZmW77Odb" rel="nofollow noopener">Jordan writes in</a></li>
<li><a href="http://slexy.org/view/s2BZq7xiyo" rel="nofollow noopener">Christian writes in</a></li>
<li><a href="http://slexy.org/view/s21xrk0M4k" rel="nofollow noopener">entransic writes in</a>
***</li>
</ul>]]>
  </content:encoded>
  <itunes:summary>
    <![CDATA[<p>This week we'll be talking to Amitai Schlair of the NetBSD foundation about pkgsrc, NetBSD's future plans and much more. After that, if you've ever wondered what all this SSH stuff is about, today's tutorial has got you covered. We'll be showing you the basics of SSH, as well as how to combine it with tmux for persistent sessions. News, feedback and everything else, right here on BSD Now - the place to B.. SD.</p>

<h2>Headlines</h2>

<h3><a href="http://freebsdfoundation.blogspot.com/2013/11/faces-of-freebsd-colin-percival.html" rel="nofollow noopener">Faces of FreeBSD</a></h3>

<ul>
<li>The FreeBSD foundation is publishing articles on different FreeBSD developers</li>
<li>This one is about Colin Percival (cperciva@), the ex-security officer</li>
<li>Tells the story of how he first found BSD, what he contributed back, how he eventually became the security officer</li>
<li>Running series with more to come
***</li>
</ul>

<h3><a href="http://www.freebsdnews.net/2013/11/14/eurobsdcon-2013-devsummit-video-recordings/" rel="nofollow noopener">Lots of BSD presentation videos uploaded</a></h3>

<ul>
<li>EuroBSDCon 2013 dev summit videos, AsiaBSDCon 2013 videos, MWL's presentation video</li>
<li>Most of us never get to see the dev summit talks since they're only for developers</li>
<li><a href="https://www.youtube.com/user/bsdconferences" rel="nofollow noopener">AsiaBSDCon 2013 videos also up</a> finally</li>
<li>List of AsiaBSDCon presentation topics <a href="http://2013.asiabsdcon.org/papers/index.html" rel="nofollow noopener">here</a></li>
<li>Our buddy Michael W Lucas gave an <a href="http://blather.michaelwlucas.com/archives/1879" rel="nofollow noopener">"OpenBSD for Linux users" talk</a> at a Michigan Unix Users Group.</li>
<li>He says "Among other things, I compare OpenBSD to Richard Stallman and physically assault an audience member. We also talk long long time, memory randomization, PF, BSD license versus GPL, Microsoft and other OpenBSD stuff"</li>
<li>Really informative presentation, pretty long, answers some common questions at the end
***</li>
</ul>

<h3><a href="https://blog.netbsd.org/tnf/entry/call_for_presentations_bsd_devroom" rel="nofollow noopener">Call for Presentations: FOSDEM 2014 and NYCBSDCon 2014</a></h3>

<ul>
<li>FOSDEM 2014 will take place on 1–2 February, 2014, in Brussels, Belgium</li>
<li>Just like in the last years, there will be both a BSD booth and a developer's room</li>
<li>The topics of the devroom include all BSD operating systems. Every talk is welcome, from internal hacker discussion to real-world examples and presentations about new and shiny features.</li>
<li>If you are in the area or want to go, check the show notes for details</li>
<li>NYCBSDCon <a href="http://undeadly.org/cgi?action=article&amp;sid=20131119053455" rel="nofollow noopener">is also accepting papers</a>.</li>
<li>It'll be in New York City at the beginning of February 2014</li>
<li>If anyone wants to give a talk at one of these conferences, go ahead and send in your stuff!
***</li>
</ul>

<h3><a href="https://lists.freebsd.org/pipermail/freebsd-announce/2013-November/001511.html" rel="nofollow noopener">FreeBSD foundation's year-end fundraising campaign</a></h3>

<ul>
<li>The FreeBSD foundation has been supporting the FreeBSD project and community for over 13 years</li>
<li>As of today they have raised about half a million dollars, but still have a while to go</li>
<li>Donations go towards new features, paying for the server infrastructure, conferences, supporting the community, hiring full-time staff members and promoting FreeBSD at events</li>
<li>They are preparing the debut of a new online magazine, the FreeBSD Journal</li>
<li>Typically big companies make their huge donations in December, like a couple of anonymous donors that gave around $250,000 each last year</li>
<li><a href="http://www.freebsdfoundation.org/donate/" rel="nofollow noopener">Make your donation today</a> over at freebsdfoundation.org, every little bit helps</li>
<li>Everyone involved with BSD Now made a donation last year and will do so again this year
***</li>
</ul>

<h2>Interview - Amitai Schlair - <a href="mailto:schmonz@netbsd.org" rel="nofollow noopener">schmonz@netbsd.org</a> / <a href="https://twitter.com/schmonz" rel="nofollow noopener">@schmonz</a></h2>

<p>The NetBSD Foundation, pkgsrc, future plans</p>

<hr>

<h2>Tutorial</h2>

<h3><a href="http://www.bsdnow.tv/tutorials/ssh-tmux" rel="nofollow noopener">Combining SSH and tmux</a></h3>

<ul>
<li><strong>Note: there was a mistake in the video version of the tutorial, please consult the written version for the proper instructions.</strong>
***</li>
</ul>

<h2>News Roundup</h2>

<h3><a href="http://www.theregister.co.uk/2013/11/16/sony_playstation_4_kernel" rel="nofollow noopener">PS4 released</a></h3>

<ul>
<li>Sony's Playstation 4 is finally released</li>
<li>As previously thought, its OS is heavily based on FreeBSD and uses the kernel among other things</li>
<li>Link in the show notes contains the <a href="http://www.scei.co.jp/ps4-license/" rel="nofollow noopener">full list of BSD software they're using</a></li>
<li>Always good to see BSD being so widespread
***</li>
</ul>

<h3><a href="http://bsdmag.org/magazine/1853-hast-on-freebsd-how-to-make-storage-highly-availble-by-using-hast" rel="nofollow noopener">BSD Mag November issue</a></h3>

<ul>
<li>Free monthly BSD magazine publishes another issue</li>
<li>This time their topics include: Configuring a Highly Available Service on FreeBSD, IT Inventory &amp; Asset Management Automation, more FreeBSD Programming Primer, PfSense and Snort and a few others</li>
<li>PDF linked in the show notes
***</li>
</ul>

<h3><a href="http://mail-index.netbsd.org/pkgsrc-users/2013/11/09/msg018881.html" rel="nofollow noopener">pbulk builds made easy</a></h3>

<ul>
<li>NetBSD's <a href="https://www.netbsd.org/docs/pkgsrc/bulk.html" rel="nofollow noopener">pbulk tool</a> is similar to <a href="http://www.bsdnow.tv/tutorials/poudriere" rel="nofollow noopener">poudriere</a>, but for pkgsrc</li>
<li>While working on updating the documentation, a developer cleaned up quite a lot of code</li>
<li>He wrote a script that automates pbulk deployment and setup</li>
<li>The whole setup of a dedicated machine has been reduced to just three commands
***</li>
</ul>

<h3><a href="http://blog.pcbsd.org/2013/11/pc-bsd-weekly-feature-digest-111513/" rel="nofollow noopener">PCBSD weekly digest</a></h3>

<ul>
<li>Over 200 PBIs have been populated in to the PC-BSD 10 Stable Appcafe</li>
<li>Many PC-BSD programs received some necessary bug fixes and updates</li>
<li>Some include network detection in the package and update managers, nvidia graphic detection, security updates for PCDM
***</li>
</ul>

<h2>Feedback/Questions</h2>

<ul>
<li><a href="http://slexy.org/view/s21oh3vP7t" rel="nofollow noopener">Peter writes in</a></li>
<li><a href="http://slexy.org/view/s21zfqcWMP" rel="nofollow noopener">Kjell-Aleksander writes in</a></li>
<li><a href="http://slexy.org/view/s2ZmW77Odb" rel="nofollow noopener">Jordan writes in</a></li>
<li><a href="http://slexy.org/view/s2BZq7xiyo" rel="nofollow noopener">Christian writes in</a></li>
<li><a href="http://slexy.org/view/s21xrk0M4k" rel="nofollow noopener">entransic writes in</a>
***</li>
</ul>]]>
  </itunes:summary>
</item>
  </channel>
</rss>
