passive bandwidth estimation

2011-10-04 Thread Murtaza
Hi everyone, I want to do passive available bandwidth measurement. I was just wandering what tools/techniques people are generally using these days. And is it a good idea to use congestion window as parameter. Ghulam

Re: Nxdomain redirect revenue

2011-10-04 Thread Brian Smith
+1 to the use of CAA/DANE -brian On 09/27/2011 07:34 PM, Rubens Kuhl wrote: On Tue, Sep 27, 2011 at 7:29 PM, David E. Smith wrote: On Tue, Sep 27, 2011 at 17:08, Jimmy Hess wrote: That is, HTTPs should become assumed. As much as that would be wonderful from a security standpoint, IMO it's

Re: Nxdomain redirect revenue

2011-10-04 Thread Brian Smith
On 09/27/2011 07:55 PM, Jimmy Hess wrote: the goal behind this would be integrity, not confidentiality. The objective of using SSL is not to strongly encrypt data to keep it secret, it's to apply whatever is necessary to provide a level of integrity assurance. If all you want is integrit

Re: Over a decade of DDOS--any progress yet?

2011-10-04 Thread Zachary Hanna
The NIST has proposed a framework for operators to notify botnet victims. The call for comments and article discussing it are described here: https://www.infosecisland.com/blogview/17021-Government-Proposes-ISPs-Notif y-Victims-of-Botnets.html#.TotXA6C-16Q.twitter "Comments on the proposed Code

Re: OT: Social Networking, Privacy and Control

2011-10-04 Thread Christian de Larrinaga
You know I don't need Facebook to introduce (broker) me to anyone! I am more than happy managing my own relationships (gradations of trust included!) Oh and my friends are distributed in the real world as well! This works pretty well even without a "social network" or a "system". When the Digi

Re: F.ROOT-SERVERS.NET moved to Beijing?

2011-10-04 Thread Lindqvist Kurt Erik
On 3 okt 2011, at 16:30, Todd Underwood wrote: > > ignoring randy (and others) off-topic comments about hypocrisy, this > situation is fundamentally a situation of bad (or different) network > policy being applied outside of its scope. i would prefer that china > not censor the internet, sure.

[NANOG-announce] NANOG 53 Last Agenda and Registration Reminder

2011-10-04 Thread Betty Burke
Everyone, The last update regarding NANOG 53 Registration and Agenda ! Do not miss out. - Late Registration starting October 4, 2011 (non-member $600, member $575, student $100) - On-Site Registration starting October 9, 2011 (non-member $675, member $650, student $100) - Subm

Re: events

2011-10-04 Thread jeff murphy
http://code.google.com/p/eventlog-to-syslog/ On Oct 4, 2011, at 11:47 AM, Jones, Barry wrote: > A sub question to this would be - is anyone using an app or client that will > forward windows OS events to said collector? I've seen Loglogic and others. > Was just curious if you've used a small sc

RE: events

2011-10-04 Thread Jones, Barry
A sub question to this would be - is anyone using an app or client that will forward windows OS events to said collector? I've seen Loglogic and others. Was just curious if you've used a small scale version to collect security events - log on, log off, etc...? -Original Message- From: H

OT: Social Networking, Privacy and Control

2011-10-04 Thread Jay Ashworth
[ if you were already over this topic, plonk the thread ] - Original Message - > From: "Bill.Pilloud" > Is this not the nature of social media? If you want to make sure something > is secure (sensitive information), Why is it on social media. If you are > worried about it being monetised

RE: Synology Disk DS211J

2011-10-04 Thread Jones, Barry
Thanks everyone for the input. I've seen some very good responses, and this NANOG newbie appreciates the take... :-) -Original Message- From: Nick Olsen [mailto:n...@flhsi.com] Sent: Friday, September 30, 2011 1:05 PM To: nanog@nanog.org Subject: Re: Synology Disk DS211J It's updates,

Re: Facebook insecure by design

2011-10-04 Thread Bill.Pilloud
Is this not the nature of social media? If you want to make sure something is secure (sensitive information), Why is it on social media. If you are worried about it being monetised, I think Google has already done that. - Original Message - From: "Joel jaeggli" To: "Jimmy Hess" Cc: S

Re: events

2011-10-04 Thread Jason LeBlanc
+1 for SEC, minimal hit on the cpu like most parsing tools, the regexp can be painful but it is fairly extensible. Once you get used to it you'll love it. On 10/04/2011 05:58 AM, Ben Roeder wrote: Hi Mike, We have used octopussy ( http://www.8pussy.org/dokuwiki/doku.php?id=home yes it is wo

Re: events

2011-10-04 Thread Leigh Porter
8pussy.org ? -- Leigh Porter On 4 Oct 2011, at 10:59, "Ben Roeder" wrote: > Hi Mike, > We have used octopussy ( http://www.8pussy.org/dokuwiki/doku.php?id=home yes > it is work safe :-) ) with ok results. > Have used sec ( simple event correlator http://simple-evcorr.sourceforge.net/ > ) t

Re: events

2011-10-04 Thread Ben Roeder
Hi Mike, We have used octopussy ( http://www.8pussy.org/dokuwiki/doku.php?id=home yes it is work safe :-) ) with ok results. Have used sec ( simple event correlator http://simple-evcorr.sourceforge.net/ ) to some success in simple cases. Currently having another look at this myself and the foll

Re: events

2011-10-04 Thread Brian Spade
Jeff, When is 1.10 going to be released? thx, /bs On Fri, Sep 30, 2011 at 11:53 AM, Jeff Gehlbach wrote: > -BEGIN PGP SIGNED MESSAGE- > Hash: SHA1 > > On 09/30/2011 09:50 AM, harbor235 wrote: > > > Soalrwinds, splunk, fwanalog, and others come to mind, any other > good ones > > out the