Re: DDoS attack

2019-12-09 Thread Florian Brandstetter via NANOG
Hello, you're forgetting if that was to be amplification, the source addresses would not be within Google or CloudFlare ranges (especially not CloudFlare, as they are not running a vulnerable recursor, and merely authoritative nameservers), the only possibility would be Google as in Google Clou

Re: Request comment: list of IPs to block outbound

2019-10-13 Thread Florian Brandstetter via NANOG
Hi, sorry - but why would you want to block Teredo / 6to4? Florian Brandstetter President & Founder W // https://www.globalone.io (https://link.getmailspring.com/link/5edc7c51-257c-47ac-b303-4b5a7f6e9...@getmailspring.com/0?redirect=https%3A%2F%2Fwww.globalone.io&recipient=bmFub2dAbmFub2cub3Jn)

Re: Elad Cohen

2019-09-19 Thread Florian Brandstetter via NANOG
Ronald, You don’t have to jump into such a defensive position to my comment. I am neither siding with Mr. Cohen on this case nor with your side, I am merely a neutral third sharing his thoughts. > Meanwhile, if I am right and if Mr. Cohen is wrong, then what price will he > pay for his misdeeds,

Re: Elad Cohen

2019-09-19 Thread Florian Brandstetter via NANOG
Hello Ronald, I don’t particularly side with any party here, but as already made clear indirectly by my passive aggressive tone on your trace route (which was nothing but a route loop in cogent’s network), I do certainly disagree with the way you treat Mr. Cohen. This comes due to the nature th

Re: Google DNS Oddity

2019-09-09 Thread Florian Brandstetter via NANOG
Where are you based? I can check if this can be replicated in our backbone, in case we have a PoP close. On Sep. 6 2019, at 11:17 pm, Nick Hilliard wrote: > Nick Hilliard wrote on 06/09/2019 21:19: > > Chip Marshall via NANOG wrote on 06/09/2019 20:11: > > > Hello, I'm seeing an oddity when doin

Re: Cogent & FDCServers: Knowingly aiding and abetting fraud and theft?

2019-09-09 Thread Florian Brandstetter via NANOG
Hello Ronald, if you'd open the traceroute you just sent you'd see that the target is route looping and not actually used by their alleged customer? Since the loop is actually between the FDC aggregation router and Cogent's backbone router. Also, what would the target IP have been in this case,

Re: Google DNS Oddity

2019-09-09 Thread Florian Brandstetter via NANOG
Unable to replicate this in London: ``` ; <<>> DiG 9.11.5-P1-1ubuntu2.5-Ubuntu <<>> @ns1.google.com. www.google.com. ; (2 servers found) ;; global options: +cmd ;; Got answer: ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 61970 ;; flags: qr aa rd; QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADD

Re: BGP Enabled transit in Chicago (River North) and equipment recommendation

2019-09-04 Thread Florian Brandstetter via NANOG
Ubiquiti's EdgeRouter Lite is equipped with 512 MiB of DDR2 memory, of which after startup, roughly 491 MiB can be utilized. 119 MiB of the remaining memory are allocated by the base of the router already, which leaves you with a remainder of 372 MiB memory. Memory usage depends on the architect

Re: BGP Enabled transit in Chicago (River North) and equipment recommendation

2019-09-03 Thread Florian Brandstetter via NANOG
Might be worth to consider running a software router on that scale with perhaps some cheap quad-port GbE PCIe NICs. BIRD would be the BGP daemon to go, or FRRouting if you want an integrated shell. Hardware routers for 100 Mbit egress seem a bit overpowered, however, as scaleable you want to go,