RE: IP DSCP across the Internet

2015-05-06 Thread Charles Wyble
I presume nothing is honored. I just encapsulate everything if I'm crossing networks outside my corporate WAN. Amazing how handy openvpn with no crypto is. :) -Original Message- From: "Mark Tinka" Sent: ‎5/‎6/‎2015 12:39 AM To: "Ramy Hashish" ; "nanog@nanog.org" Subject: Re: IP DSCP

RE: IP DSCP across the Internet

2015-05-06 Thread Charles Wyble
I presume nothing is honored. I just encapsulate everything if I'm crossing networks outside my corporate WAN. Amazing how handy openvpn with no crypto is. :) -Original Message- From: "Mark Tinka" Sent: ‎5/‎6/‎2015 12:39 AM To: "Ramy Hashish" ; "nanog@nanog.org" Subject: Re: IP DSCP

Re: Prism continued

2013-06-12 Thread Charles Wyble
n source route. > >http://logstash.net/ > >-- >Chip Marshall >http://2bithacker.net/ -- Charles Wyble char...@knownelement.com / 818 280 7059 CTO Free Network Foundation (www.thefnf.org)

Re: Prism continued

2013-06-12 Thread Charles Wyble
egrep -v 'term1|term2|term3'" >> or "cat /var/log/router.log | egrep -v 'term1|term2|term3' | less" >> >> >> ;-) >> scott >> >> -- Charles Wyble char...@knownelement.com / 818 280 7059 CTO Free Network Foundation (www.thefnf.org)

Re: chargen is the new DDoS tool?

2013-06-11 Thread Charles Wyble
ate use of >chargen/udp these days? Fortunately I can't, so we're going to drop >19/udp at the border within the next hours. > >Regards, >Bernhard -- Charles Wyble char...@knownelement.com / 818 280 7059 CTO Free Network Foundation (www.thefnf.org)

Re: What hath god wrought?

2013-05-20 Thread Charles Wyble
al >> lawyers salivate. >> >> I'm not trying to call you out, btw. I'm genuinely curious why the >> hosting company itself didn't file suit. You've got a US Government >> agency abusing your resources and acting in a blatantly illegal >> manner.

Re: What hath god wrought?

2013-05-20 Thread Charles Wyble
y kind of retaliation. They don't need to hide. Mike Hale wrote: >"Sue them?" >Uhm...yes? That's why we have courts that we can sue federal agencies >in. > >On Mon, May 20, 2013 at 11:58 AM, Charles Wyble > wrote: >> No proxy needed. No need to hide

Re: What hath god wrought?

2013-05-20 Thread Charles Wyble
>More on the same topic. >http://krebsonsecurity.com/2013/05/ragebooter-legit-ddos-service-or-fed-backdoor/#more-19475 > >Maybe the FBI use this to commit crimes in USA using a foreign company >as proxy so nothing dirty show on the books. That way the FBI can >avoid respecting USA laws

Last mile multihoming

2013-03-24 Thread Charles Wyble
remote personnel in a non bgp enabled sp). Would love to hear what you folks think. -- Charles Wyble char...@thefnf.org / 818 280 7059 CTO Free Network Foundation (www.thefnf.org)

Re: news from Google

2009-12-03 Thread Charles Wyble
That is an Akami error. On Dec 3, 2009, at 6:57 PM, Jorge Amodio wrote: > talking about evil http://www.bing.com/ : > >> Oops >> This isn't the page you wanted! >> >> Try this >> Refresh the page. If you get this message again, please check back later. >> >> Ref A: 7d09ba2186d4448a8dd2b99ad2

Re: news from Google

2009-12-03 Thread Charles Wyble
LOL. One place I worked at hosted a bunch of websites and called them by business unit. so xxx_nnn One business unit was particularly problematic and frequently returned 500 errors. The version in production was xxx_4xx when the next major rev came out we skipped 5xx and went to 6xx. :)

Re: news from Google

2009-12-03 Thread Charles Wyble
8.8.8.8 6.6.6.6 would have been really really funny. :) On Dec 3, 2009, at 10:21 AM, Jorge Amodio wrote: >> now Google DNS, anything more? > > GoogleNation. > > Cheers > Jorge >

Re: port scanning from spoofed addresses

2009-12-03 Thread Charles Wyble
On Dec 3, 2009, at 9:53 AM, Matthew Huff wrote: > The source address appears to be fixed as well as the source port (), > scanning different destinations and ports. > > Some script kiddies found nmap and decided to target you for some reason. It happens. It's annoying.

Re: Flash Media Servers as Open Proxies

2009-12-03 Thread Charles Wyble
H.. This is most interesting. Have you spoken with Adobe about the issue? I don't have an immediate handle on how they have reacted to security issues in the past. Sane defaults would be nice. :( You might want to ping Akami as they have substantial operational experience with flash medi

Re: Policy News

2009-11-18 Thread Charles Wyble
View -> Organize by thread. Then just hit the little circle, which selects all messages. Then delete. On Nov 18, 2009, at 11:13 AM, Matthew Dodd wrote: I think he meant being able to easily delete an entire thread of emails, like you might be able to if you were using Gmail. Sadly I don

Re: Failover how much complexity will it add?

2009-11-09 Thread Charles Wyble
On Nov 8, 2009, at 2:39 PM, a...@baklawasecrets.com wrote: So if my requirements are as follows: - BGP router capable of holding full Internet routing table. (whether I go for partial or full, I think I want something with full capability). - Capable of pushing 100meg plus of mixed tra

Re: Redundant Data Center Architectures

2009-10-28 Thread Charles Wyble
On Oct 28, 2009, at 10:38 AM, Roland Dobbins wrote: On Oct 28, 2009, at 8:26 PM, Stefan Fouant wrote: I'm wondering what are the growing trends in connecting Data Centers for redundancy in DR/COOP environments. 'DR' is an obsolete 40-year-old mainframe concept; it never works, as fundin

Re: Is v6 as important as v4? Of course not [was: IPv6 internet broken, cogent/telia/hurricane not peering]

2009-10-14 Thread Charles Wyble
On 10/14/09 8:11 AM, Patrick W. Gilmore wrote: Typing less does not mean you are actually thinking. You should try the latter before your next pithy post. Or at least read the post to which you are replying. Now now boys and girls. Settle down and be civil. :)

Re: DreamHost admin contacts

2009-10-13 Thread Charles Wyble
On 10/13/09 2:19 PM, Justin Shore wrote: Andy Ringsmuth wrote: Barring that, what recommendations might the NANOG community have for an extremely rock-solid e-mail hosting company? I realize that may mean self-promotion, but hey, bring it on. I would strongly recommend against GoDaddy's host

Re: DreamHost admin contacts

2009-10-13 Thread Charles Wyble
+1 for intermeida. I'm digging it. Though I've yet to find a way to turn off copying the originator of the e-mail when hitting reply all. Anyone know how to fix that? On 10/13/09 1:48 PM, Jeff Saxe wrote: Barring that, what recommendations might the NANOG community have for an extremely rock-

Re: IPv6 internet broken, cogent/telia/hurricane not peering

2009-10-12 Thread Charles Wyble
Matt *note, however, that I also opted to stay in college in 1991, rather than join Cisco because I felt they did not have a workable business model; in 1995, I rejected Mosaic Communications, because the idea of trying to compete with a freely downloadable browser seemed like business suicide;

Re: cross connect reliability

2009-09-17 Thread Charles Wyble
Marshall Eubanks wrote: On Sep 17, 2009, at 5:52 PM, Seth Mattinen wrote: Michael J McCafferty wrote: All, Today I had yet another cross-connect fail at our colo provider. From memory, this is the 6th cross-connect to fail while in service, in 4yrs and recently there was a bad SFP on

Re: Intelligent network monitoring systems (commercial/open source, what have you)

2009-09-11 Thread Charles Wyble
We use Cacti for this purpose, but it still requires creating custom datasources for the vendor-specific SNMP MIBs. +1 for cacti. I think pretty much everything requires bringing in the mibs and setting up mappings etc. I've used Nagios/Cacti/Ganglia/MRTG.

Re: Intelligent network monitoring systems (commercial/open source, what have you)

2009-09-11 Thread Charles Wyble
Drew Weaver wrote: Ah, I was mainly interested in an Orion like system that actually has all of that kind of worked-in. Yeah I got that. I am not aware of anything that does that. Not to say it doesn't exist, but if it does it's somewhat well hidden. http://www.frank4dd.com/howto/nagios/c

Re: Intelligent network monitoring systems (commercial/open source, what have you)

2009-09-11 Thread Charles Wyble
Most of these threads usually result in telling the poster to RTFM with a link to it :) I'm too lazy to link the manual. :) c-nsp has extensive archives with lots of questions about various specific SNMP mibs that weren't immediately evident from RTFM. It all comes down to SNMP to the best of

Re: OT: Voice Operators' Group forming

2009-07-28 Thread Charles Wyble
jamie wrote: puck.nether.net . Right. That's what I meant. way to volunteer someone else's box :-) Good point. My apologies. Google groups then. :)

Re: OT: Voice Operators' Group forming

2009-07-28 Thread Charles Wyble
Hiers, David wrote: Hi NANOG, I'd like to announce the formation of a NANOG-knockoff group for voice operators, the Voice Operators' Group. Very cool! :) Voice network operators share many of the same challenges as IP network operators; we register with registrars (CILLI, OCN, and ACNA a

Re: Recommendations for Hong Kong datacenter, and a sanity check for my geopolitical conclusions ?

2009-07-25 Thread Charles Wyble
Yes, thank you - that was the datacenter I had read about in my own research. What did you think of the height of that building and its location on reclaimed sea land ? It makes me nervous, but as I said in a different message in this thread, it looks like ALL of urban HK is reclaimed s

Re: Open Source / Low Cost NMS for Server Hardware / Application Monitoring

2009-07-23 Thread Charles Wyble
I would disagree; nagios is not limited to small systems... We're currently monitoring about 8500 services on 2834 routers with nagios quite successfully and have been doing so for nearly a decade now -- we started with Netsaint. With custom scripts receiving data from our inventory managemen

Seeking facilities managers at colo facilities

2009-07-20 Thread Charles Wyble
tails available upon request, serious responses only. Thanks. Charles Wyble char...@thewybles.com

Re: Visio diag automations

2009-07-19 Thread Charles Wyble
e the same where a CMDB system was the data source? Rgds, GSH --Original Message-- From: Charles Wyble To: nanog@nanog.org Subject: Re: Visio diag automations Sent: Jul 19, 2009 17:49 This is built into visio. You can link a drawing to an access database. I did that a few years back. Fo

Re: Visio diag automations

2009-07-19 Thread Charles Wyble
This is built into visio. You can link a drawing to an access database. I did that a few years back. For all the desktops and servers. Right click on the icon pulled up all the data. Did layers... had the network jacks, furniture, computers, printers... everything. Peter Hicks wrote: Bo

DDOS Followup

2009-07-12 Thread Charles Wyble
I had a pleasant chat with tier 2 support and they changed my IP range. All is now well. Thanks to all who replied.

Re: Request for contact and procedure information

2009-07-10 Thread Charles Wyble
I spoke with SBC. 2 hours on the phone (all with US based support which was awesome) came down to e-mail ab...@sbcglobal.net. I'll let everyone know how it goes.

Re: Request for contact and procedure information

2009-07-09 Thread Charles Wyble
I did. Still getting pounded. John Peach wrote: Turn off whatever you have listening on port 80. On Thu, 9 Jul 2009 21:25:48 -0400 Mark Price wrote: Turn off your DSL modem for awhile, and hope for a new dynamic IP? Mark On Thu, Jul 9, 2009 at 5:35 PM, Charles Wyble wrote: All, I&#

Re: Request for contact and procedure information

2009-07-09 Thread Charles Wyble
I have a static range. :( Mark Price wrote: Turn off your DSL modem for awhile, and hope for a new dynamic IP? Mark

Request for contact and procedure information

2009-07-09 Thread Charles Wyble
All, I'm currently experiencing a DDOS attack on my home DSL connection. Thousands of requests to port 80. I'm on an SBC business class account. I'm guessing that calling the regular customer support won't get me anywhere. Any suggestions?

Re: Level 3

2009-07-08 Thread Charles Wyble
So. where is all this talent going? NTT? AT&T? Verizon? Dare I say it cogent? :) Also has anyone filed complaints with the FTC or DOJ? Jason LeBlanc wrote: To boot almost all the original Telcove crew we had are gone. They're losing the better people through attrition as they're frus

Re: Possible outage in Camarillo, CA USA

2009-07-06 Thread Charles Wyble
Chaim Rieger wrote: CalTrans went through an major fiber line, What's your source for CalTrans being the culprit?

Re: Possible outage in Camarillo, CA USA

2009-07-06 Thread Charles Wyble
Chaim Rieger wrote: Matthew Black wrote: A colleague reports that Verizon and ATT have a cut cable in Camarillo, CA, in the vacinity of Lewis Road and Dawson. Anyone have more information on this outage? Thanks. confirmed outage CalTrans went through an major fiber line, landlines, T1, Cell

Re: Nanog Webcast Equipment

2009-06-30 Thread Charles Wyble
You can reply off-list if you wish. Would love to see replies and/or summary on list if possible. It's a somewhat complex problem, and there are many solutions out there. Having feedback on what was used and any feedback on it would be great!

Re: Looking for Security / Operational Contact at New York Times

2009-06-26 Thread Charles Wyble
They don't have a 24/7 NOC? Stasiniewicz, Adam wrote: Yup, I have already tried, but it is fairly late in NY. So I was hoping to catch someone tonight, instead of waiting until tomorrow morning when someone cluefull would answer the phone / process online contact forms. -Original Message

Re: tor

2009-06-24 Thread Charles Wyble
This is rapidly heading off topic, and I imagine the MLC will be stepping in shortly. :)

Re: Is your ISP blocking outgoing port 25?

2009-06-18 Thread Charles Wyble
Do you provide your users an SMTP server to use, with some out bound spam filtering? It would seem this is to be expected, as you don't want your IP ranges showing up on RBL filters. Do you force SSL connectivity like AT&T does? Paul Stewart wrote: We still do it and never get any complaint

Re: Is your ISP blocking outgoing port 25?

2009-06-18 Thread Charles Wyble
Zhiyun Qian wrote: It has been long heard that many ISPs block outgoing port 25 for the purpose of reducing spam originated from their network. Well blocking or redirecting to there servers, which have an undocumented filtering policy. All one needs to do in order to bypass that is use a

Re: WISP NMS recommendations

2009-06-18 Thread Charles Wyble
This list is quite active: http://lists.wispa.org/mailman/listinfo/wireless +1 for Wispa. Several knowledgeable people on there, and it's quite active. Lately both NANOG and WISPA have had very high signal. Hopefully it keeps up! :)

Re: Wireless bridge

2009-06-18 Thread Charles Wyble
2.4 and 5GHz license-free Wifi is license free because the frequencies are shared with the ISM (Industrial/Scientific/Medical) services. In an industrial area, competing WiFi is the least of your worries. These frequencies are also used by industrial grade heating units. Got anyone in the neigh

Re: Wireless bridge

2009-06-18 Thread Charles Wyble
+1 for Ubnt gear! Joel Jaeggli wrote: Pair of Ubuquiti power station 2 or 5 bridges, 5 would be preferable, under $200 per end. http://www.ubnt.com/downloads/ps5_datasheet.pdf Peter Boone wrote:

Re: Wireless bridge

2009-06-18 Thread Charles Wyble
Might I suggest Ubnt.com ? Or a vendor that I use http://www.wlanparts.com/category/ubiquiti/ Couple of these http://www.wlanparts.com/product/BULLET2-D13/Ubiquiti_BULLET2_and_13dBi_24GHz_Panel_Antenna__BULLET2D13.html (100.00 per side or so). Peter Boone wrote: Hi NANOG, I'm lookin

Re: Cogent input - no peering with Global Crossing in Europe [Re: NANOG Digest, Vol 17, Issue 46]

2009-06-17 Thread Charles Wyble
Ouch... latency must be awful. I suppose this is based on Cogents reputation but who knows. The whole peering aspect of the networking business is often a mystery. AKK wrote: My main concern for European Cogent users is - no European peering with global crossing - traffic goes via NY JFK. I

IPTV List serv

2009-06-11 Thread Charles Wyble
I know someone was asking about a VOIP list serv the other day. Well IPTV is another big area that could use a list. Check out https://puck.nether.net/pipermail/iptv-users/

3fn shutdown

2009-06-04 Thread Charles Wyble
What do folks think? How were they shutdown? AS stopped from announcing? Physical power? http://voices.washingtonpost.com/securityfix/2009/06/ftc_sues_shuts_down_n_calif_we.html

Re: Fiber cut - response in seconds?

2009-06-02 Thread Charles Wyble
Sounds like a lot of work to me. Wouldn't it be easier to just find the carrier neutral colo facilities where all the peering/transit between major networks happens, and pay them money to put up a fake wall that you can colo your optical taps behind? Yeah it's not like that's ever gonna h

Re: Fiber cut - response in seconds?

2009-06-02 Thread Charles Wyble
David Barak wrote: Paranoia 101 teaches us that any given encryption approach will eventually fall before a brute-force onslaught of sufficient power and duration[1]. Of course. Hence my comment bout the likely hood of success depending on how much computing power they have access to. How

Re: Fiber cut - response in seconds?

2009-06-02 Thread Charles Wyble
David Barak wrote: Encryption is insufficient - if you let someone have physical access for a long enough period, they'll eventually crack anything. Really? I don't think so. I imagine it would be much more dependent on the amount of computing power the attacker has access to. More encrypted

Re: Fiber cut - response in seconds?

2009-06-02 Thread Charles Wyble
Cheaper? To quote sneakers were the united states govt. we don't do that sort of thing. Martin Hannigan wrote: It would also be cheaper to add an additional layer of security with encryption vs. roving teams of gun toting manhole watchers. YMMV, Best! Marty On 6/2/09, Deepak Jain w

Re: Fiber cut - response in seconds?

2009-06-01 Thread Charles Wyble
I do feel this might be the last post from Mr Pooser. :) Your on to them it seems. ;) A very interesting idea. I imagine it wouldn't be hard for foreign actors to get access to the data feed of construction, observe for signs of a cut and then splice in a tap. Though wouldn't that tap be fo

Re: Fiber cut - response in seconds?

2009-06-01 Thread Charles Wyble
Joel Jaeggli wrote: Charles Wyble wrote: Joel Jaeggli wrote: It's pretty trivial if know where all the construction projects on your path are... How so? Setup OTDR traces and watch them? When you lose link on every pair in a bundle, but don't lose any of the buildings you'

Re: Fiber cut - response in seconds?

2009-06-01 Thread Charles Wyble
Joel Jaeggli wrote: It's pretty trivial if know where all the construction projects on your path are... How so? Setup OTDR traces and watch them? I've seen this happen on a university campus several times. no black helicopters were involved. Care to expand on the methodology used? A camp

Fiber cut - response in seconds?

2009-06-01 Thread Charles Wyble
http://www.washingtonpost.com/wp-dyn/content/article/2009/05/30/AR2009053002114_pf.html Not sure if I fully believe the article. Responding to a fiber cut in seconds? I suppose it's possible if $TLA had people monitoring the construction from across the street, and they were in communication

Re: Geo Location and DNS

2009-05-29 Thread Charles Wyble
Check the archives. This gets discussed on a regular basis. Both google and akami have methods in place for this to be corrected. Clue Store wrote: Hi All, I am having a hell of a time trying to figure out who it is I need to contact to get this fixed. I just got a new /21 allocation from ARIN a

Re: two interfaces one subnet

2009-05-11 Thread Charles Wyble
What does two interfaces in one subnet mean? Two NICs? Or virtual interfaces? Mikael Abrahamsson wrote: On Mon, 11 May 2009, Chris Meidinger wrote: I've been looking through RFC's trying to find a clear statement that having two interfaces in the same subnet does not work, but can't find i

Re: DHCPv6 PD chains vs bridging

2009-05-05 Thread Charles Wyble
David W. Hankins wrote: On Tue, May 05, 2009 at 04:22:04PM -0400, Paul Timmins wrote: Sorry for the top post, but as a crazy thought here, why not throw out an RA, and if answered, go into transparent bridge mode? Let the sophisticated users who want routed behavior override it manually. Cu

Re: Where to buy Internet IP addresses

2009-05-05 Thread Charles Wyble
Ricky Beam wrote: On Tue, 05 May 2009 13:28:25 -0400, Charles Wyble wrote: Utility companies utilize Zigbee pretty extensively. So that's millions and millions of addresses right there. But does the entire planet need to talk to those critters? No. Nor should they even be ab

EVDO followup

2009-05-05 Thread Charles Wyble
So I found an article about updating the EVDO modem PRL in Linux (or I should say via a standard AT method) http://kenkinder.com/using-verizon-wireless-evdo-pc5740-and-linux/ I'll let folks know how it goes.

Re: Where to buy Internet IP addresses

2009-05-05 Thread Charles Wyble
([*] according to the wiki, firewire and zigbee are the only things using EUI-64. I don't know of anyone using firewire as a network backbone. (obviously, not that you care.) Zigbee is relatively new and similar to bluetooth; will people use them as a NIC or connect little zigbee gadgets t

Re: Is everyone getting the shimizuhar...@yahoogroups.jp ugliness?

2009-04-28 Thread Charles Wyble
Yes. I'm getting that as well. It's appending weird characters onto every message. I'm getting many messages in duplicate (with and without the characters). Though this message I only received once and without the characters. It appears threads started yesterday are affected. Jack Bates wrote

Re: Broadband Subscriber Management

2009-04-22 Thread Charles Wyble
Quite a bit of overhead. Good article here: http://blog.ioshints.info/2009/03/adsl-overhead.html Curtis Maurand wrote: I don't understand why DSL providers don't just administratively down the port the customer is hooked to rather than using PPPoE which costs bandwidth and has huge manageme

Re: Looking for AT&T / Verizon / Sprint WWAN service impressions- on or off-list replies welcome

2009-04-15 Thread Charles Wyble
What is it about the bloody telcos. You want to spend money, but yet you can't reach the right people to get your questions answered or schedule the service. Gah. I experienced this recently, trying to have some inside wiring work done at my house. They rolled a tech, but then he claimed he "

Re: Looking for AT&T / Verizon / Sprint WWAN service impressions - on or off-list replies welcome

2009-04-15 Thread Charles Wyble
Crooks, Sam wrote: I'm considering use of AT&T / Verizon / Sprint WWAN services and the Cisco 3G router interface cards/integrated module in C880 routers for primary or backup WAN network connectivity for routers. I haven't used the integrated cards with cisco gear. However I do have 300+ c

Re: [OT] Re: Fiber cut in SF area

2009-04-13 Thread Charles Wyble
I sense a thread moderation occurring here shortly. valdis.kletni...@vt.edu wrote: On Mon, 13 Apr 2009 14:39:23 EDT, Izaac said: Do you realize that you're putting trust in the sane action of parties who conclude their reasoning process with destruction and murder? And how is that different

Re: BGP FlowSpec support on provider networks

2009-04-10 Thread Charles Wyble
Fouant, Stefan wrote: Hi folks, I am trying to compile data on which providers are currently supporting BGP Flowspec at their edge, if there are any at all. The few providers I've reached out to have indicated they do not support this and have no intention of supporting this any time in the n

Re: Outside plant protection, fiber cuts, interwebz down oh noes!

2009-04-09 Thread Charles Wyble
multiple operators and seriously disrupted in a given locality. The only difference here is that in the Heart of Geek Territory. Hence the Natives are restless ... Roderick S. Beck Director of European Sales Hibernia Atlantic -Original Message- From: Charles Wyble [mailto:char...@thewyb

Re: Fiber cut in SF area

2009-04-09 Thread Charles Wyble
Jared Mauch wrote: On Apr 9, 2009, at 3:58 PM, Robert M. Enger wrote: That AT&T has stopped provisioning protection fiber for automatic restoral is mind boggling. That our crack (or on crack) govt contracting/emergency-preparedness staff didn't demand protected facilities for 911 is ano

Re: Do we still need Gi Firewall for 3G/UMTS/HSPA network ?

2009-04-09 Thread Charles Wyble
Yep verizon does indeed filter all unsolicated inbound traffic to the EVDO network. It can be a blessing or a curse. :) Skywing wrote: Verizon filters unsolicited inbound traffic for their EVDO customers in my experience. - S -Original Message- From: Roland Dobbins Sent: Thursday, A

Outside plant protection, fiber cuts, interwebz down oh noes!

2009-04-09 Thread Charles Wyble
Seriously though I want to start some discussion around outside plant protection. This isn't the middle of the ocean or desert after all. There were multiple fiber cuts in a major metropolitan area, resulting in the loss of critical infrastructure necessary to many peoples daily lives (though

Re: Fiber cut in SF area

2009-04-09 Thread Charles Wyble
Yep it leads to: Activity Type Code Desc: PROGRESS COMMENTS Activity Type Code: PROG OTDR readings were taken by AT&T West and a cut was located 1600 ft from the San Jose, CA central office. AT&T West technicians are onsite working to isolate the exact location of the cut. There are 4 ca

Re: Fiber cut in SF area

2009-04-09 Thread Charles Wyble
Yeah. It's on outages. Not much useful there. Christopher Morrow wrote: isn't there a mailing list for this sort of thing? outages@ I think it is? (not that I mind, just a little advert for the appropriate forum, and a place that MAY have some useful info on this topic) -chris On Thu, Apr 9, 2

Re: Fiber cut in SF area

2009-04-09 Thread Charles Wyble
Ravi Pina wrote: News coverage: http://cow.org/r/?5459 http://cow.org/r/?545a And not that I expect any useful updates: http://twitter.com/attnews Lots of folks covering the same thing... http://search.twitter.com/search?q=fiber+cut http://search.twitter.com/search?q=outage Also report

Re: attacks on MPLS?

2009-04-09 Thread Charles Wyble
Wayne E. Bouchard wrote: Meh... Sure, it rehashes what we pretty well already know, "If a bad guy can get access to your network or your management tools, you're boned." Naturally. If one gets to the control plane of your routers and/or management network you have big problems. :) However

Re: attacks on MPLS?

2009-04-09 Thread Charles Wyble
Well if we pull apart the article a bit Quote 1) Network infrastructure security has been in the limelight lately, with researchers uncovering big vulnerabilities in the Domain Name System (DNS), the Border Gateway Protocol (BGP), TCP, and in Cisco routers. Wasn't aware of any big vuln

Re: Verizon EVDO Issues

2009-04-08 Thread Charles Wyble
USB dongle (model 720) from the system and place it in his laptop. Came up and worked fine once vzaccess twiddled whatever bits it needed to. Charles Wyble wrote: Been troubleshooting a very strange problem for a couple of weeks now. I have a few hundred systems deployed throughout the Uni

Re: Verizon EVDO Issues

2009-04-08 Thread Charles Wyble
Do they maintain a continuous data link in normal operation (like, say, connectivity for a LAN, or backhaul for a camera or some such), or do they request the data link when they need to send [whatever] (like a discrete SCADA system)? My (user only) experience is that cellular data service

Verizon EVDO Issues

2009-04-07 Thread Charles Wyble
Been troubleshooting a very strange problem for a couple of weeks now. I have a few hundred systems deployed throughout the United States utilizing EVDO connectivity with Verizon as a carrier. They are stationary. Over the past few weeks clusters of them in SF and Lewisville TX and a few othe

Re: shipping pre-built cabinets vs. build-on-site

2009-04-06 Thread Charles Wyble
Sending that one full rack has proven successful for us, but that was specialists with some experience, and it was road only. Every time I see suitcases being thrown around in airports...well... Baggage handlers have nothing on FedEX folks. They literally hurl packages into the truck like b

Re: shipping pre-built cabinets vs. build-on-site

2009-04-06 Thread Charles Wyble
Joe Abley wrote: Hi all, Anybody here have experience shipping pre-built cabinets, with ~20U of routers and servers installed, connected and tested, to remote sites for deployment? Not pre built cabinets, but I have shipped/received over $1,000,000.00 worth of gear (routers/switches/desk

Re: Register.com DNS hosting issues

2009-04-03 Thread Charles Wyble
Seth Mattinen wrote: Jeffrey Negro wrote: No ETA given to me, just the stock line of "We apologize.. blah blah... as soon as possible.. blah blah." This is probably a good time to remind the uninitiated to have some secondary DNS with a totally separate company if your DNS is that important

Re: Google Over IPV6

2009-03-27 Thread Charles Wyble
Steven M. Bellovin wrote: On Fri, 27 Mar 2009 14:46:50 +0100 Daniel Verlouw wrote: On Fri, 2009-03-27 at 09:34 -0400, Steven M. Bellovin wrote: It's working for me, too, though I noticed that tcptraceroute (at least the version I have) doesn't do well with ipv6.google.com. seems to work fi

Re: First steps towards v6 support by ATT?

2009-03-26 Thread Charles Wyble
yea... maybe they do, I don't see that from my view of 7018's routing data (limited as it may be) Interesting. http://www.corp.att.com/gov/solution/network_services/data_nw/ipv6/ Looks like they have established a tunnel in the United States perhaps? how did you gather that? Maybe Tom

Re: First steps towards v6 support by ATT?

2009-03-26 Thread Charles Wyble
Christopher Morrow wrote: On Thu, Mar 26, 2009 at 8:32 PM, Charles Wyble wrote: While researching at&t and ipv6 I came across http://www.feise.com/~jfeise/blogs/index.php?blog=8 and also doesn't that blog basically say: "it's broke Jim..." and that 7018 (really 7132

First steps towards v6 support by ATT?

2009-03-26 Thread Charles Wyble
While researching at&t and ipv6 I came across http://www.feise.com/~jfeise/blogs/index.php?blog=8 and also http://www.corp.att.com/gov/solution/network_services/data_nw/ipv6/ Looks like they have established a tunnel in the United States perhaps? I realize that getting native v6 support to DSL

Re: Akamai wierdness

2009-03-23 Thread Charles Wyble
I usually just call their toll free support number when their are occasional issues. This is from a content provider perspective (using Akamai as a CDN for the sites I support). Never had an issue getting a hold of anyone and getting the issue resolved (two times I have called them, it was iss

Re: Dynamic IP log retention = 0?

2009-03-14 Thread Charles Wyble
Can we please get this thread closed or something? Jim Popovitch wrote: On Sat, Mar 14, 2009 at 23:17, Joe Greco wrote: "Looking around" Rockefeller Center generally isn't a crime. "Looking around" where you're in my back yard and peeking in the windows is, at a minimum, trespass, and if our

Re: Anyone using any Linux SSL proxies?

2009-03-14 Thread Charles Wyble
valdis.kletni...@vt.edu wrote: On Sat, 14 Mar 2009 21:56:26 PDT, Mike Lyon said: Howdy, I am wondering what folks are recommending/using these days for Linux SSL proxies? I need to build a linux box that basically acts as an SSL offloader would (like a BigIP / Cisco ACE / Netscaler would do).

Re: FYI RE: microsoft please contact me off list

2009-03-12 Thread Charles Wyble
What were the traffic characteristics that lead you to believe you were under a DDOS attack? Thomas P. Galla wrote: Here is what I got back OBTW thanx Thomas = Sent: Thursday, March 12, 2009 4:22 PM To: Thomas P. Galla Subject: FW: microsoft please contact m

Re: microsoft please contact me off list

2009-03-12 Thread Charles Wyble
Yes I agree. I forgot to do the *raises an incredulous eyebrow* bit. :) By the way try calling that number and reaching an operator then asking for the NOC. chris.ra...@nokia.com wrote: More likely spoofed sources. Good luck.

Re: microsoft please contact me off list

2009-03-12 Thread Charles Wyble
You are getting dossed from a Microsoft network range? Really? Perhaps they got bit by a worm targeting windows systems? :) Thomas P. Galla wrote: Sorry I am getting dos attacked from below and it would be nice if microsoft working abuse ph# or noc# or a name ? Thomas P Galla t...@bluegra

Re: Redundant Array of Inexpensive ISP's?

2009-03-10 Thread Charles Wyble
This seems similiar to Cisco performance routing. See http://www.cisco.com/en/US/products/ps8787/products_ios_protocol_option_home.html for more. Tim Utschig wrote: Talari Networks -- Charles N Wyble char...@thewybles.com (818)280-7059 http://charlesnw.blogspot.com CTO SocalWiFI.net

Re: Network SLA

2009-03-09 Thread Charles Wyble
What products/services do you use for traffic generation? Also what sort of testing methodology do you use? As for random probes that certainly seems like a nice feature. Holmes,David A wrote: We use BRIX for SLA's by measuring round trip times, jitter, and packet loss across all of our backb

Re: McColo and SPAM

2008-12-05 Thread Charles Wyble
Is that an off the shelf tool or custom built?

  1   2   >