Re: Recent DNS attacks from China?

2011-12-02 Thread Leland Vandervort
Yup.. they're all "ANY" requests. The varying TTLs indicates that they're most likely spoofed. We are also now seeing similar traffic from RFC1918 "source" addresses trying to ingress our network (but being stopped by our border filters). Looks like the kiddies are playing On 2 Dec 201

Recent DNS attacks from China?

2011-11-30 Thread Leland Vandervort
Hi All, I am wondering if anyone else is seeing a sudden increase in DNS attacks emanating from chinese IP addresses? Over the past 24 hours we've seen a sudden rash of chinese IPs attacking our DNS servers in the order of 5 to 10 million PPS for periods of 5 to 10 mins, repeated every 20 to

DNS "Fake" Authority for hidden forwarders?

2010-12-14 Thread Leland Vandervort
Hi All, Apologies if off topic, but hoping that one of you gurus out there might have some tips on this. I have a rather "unusual" application for DNS which I need to figure out a way to make it work, but running into authority issues. Basically, I have a "fake" server running on a private n

perl lib for management of NX-OS ?

2010-09-14 Thread Leland Vandervort
Hi All, I have an XMLRPC server/API that I implemented (written in perl) to manage most of the cisco kit on the network, with most of the "worker" methods using Net::Telnet::Cisco. Our new datacenter, however, has Cisco Nexus equipment which totally breaks the API since Net::Telnet::Cisco do

Re: IPv6 Server Load Balancing - DSR

2010-08-12 Thread Leland Vandervort
hat are present with v4 local address resolution (don't mean to > preach to the chior); I think > most responses here have touched on the primary challenges of DSR with > v6. I'll be exploring > DSR with dual stack v4/6 in the near future, I'll let you know how > that turn

Re: IPv6 Server Load Balancing - DSR

2010-08-12 Thread Leland Vandervort
gt; On Aug 12, 2010, at 6:19 AM, Xavier Beaudouin wrote: > >> Hi Leland, >> >> Le 12 août 2010 à 15:11, Leland Vandervort a écrit : >> >>> OpenSolaris ILB is open solution ;) >>> >>> but yea, that's what we've started looking

Re: IPv6 Server Load Balancing - DSR

2010-08-12 Thread Leland Vandervort
On 12 Aug 2010, at 15:19, Xavier Beaudouin wrote: > >> In the case of ILB, I'm not convinced that it's a problem with the LB >> itself, but rather the idiosyncrasies of ND in IPv6 that is causing the >> problem.. but I may be wrong... at any rate, something's amiss ... > > Maybe on some setup

Re: IPv6 Server Load Balancing - DSR

2010-08-12 Thread Leland Vandervort
OpenSolaris ILB is open solution ;) but yea, that's what we've started looking at -- hence LVM / HAProxy as well.. (though LVM is IPv4 only, and HAProxy is NAT only for IPv6) does relayd support UDP as well as TCP or is it layer7 only like HAProxy ? In the case of ILB, I'm not convinced that it

IPv6 Server Load Balancing - DSR

2010-08-12 Thread Leland Vandervort
Dear Colleagues, I've been scratching my head over this for the past couple of months and have come up with blanks, and several weeks of scouring various resources on the net have not yielded anything more fruitful. I'm looking at server load balancing for IPv6 and specifically need DSR (direc

Re: OT: VSS + MEC - port-channel dynamically cloned?

2009-11-24 Thread Leland Vandervort
ation when the original trunks were two separate etherchannels and then migrated them "live" to MEC... L. On Tue, 2009-11-24 at 13:57 -0500, Ross Vandegrift wrote: > On Tue, Nov 24, 2009 at 07:51:29AM +0100, Leland Vandervort wrote: > > Essentially, for all of the MEC connection

OT: VSS + MEC - port-channel dynamically cloned?

2009-11-23 Thread Leland Vandervort
Hi all.. this one seems to have stumped even the community forums on CCO ;) Anyone else seen this behaviour? (It's not actually a problem as such since the MEC port-channels are actually working fine, just unexpected the way that it has done it...) We have a few paris of VSS running, and having

RE: Cisco VSS-1440 migration query

2009-10-19 Thread Leland Vandervort
Thanks to all on this. I've pretty much mitigated this by creating a VSS-ized version of the interface configs (chassis/slot/port) which I can then re-inject back into the system config after conversion. Shame that switch1 keeps its config and simply renumbers the interfaces, but switch2 just sa

RE: Cisco VSS-1440 migration query

2009-10-19 Thread Leland Vandervort
On Mon, 2009-10-19 at 13:06 -0400, Jason Giles wrote: > >From my test, all physical interfaces configs on switch 2 are factory > >defaulted and SVI interfaces deleted on switch 2 upon running the conversion > >commands. This one is alarming, especially given that there may well be some physical

Cisco VSS-1440 migration query

2009-10-19 Thread Leland Vandervort
Hi All, Trying to find an answer to a single technical point concerning a migration of a fleet of Catalyst 6500's to VSS-1440. I've had a scan through the documentation on CCO (whitepapers, config guides, migration guides, etc.) but cannot find anything dealing with this one specific point. Bac

Re: operations contact @ facebook?

2009-10-05 Thread Leland Vandervort
Thanks Justin... will give it a shot; hopefully they're relatively rapid :) Leland On Mon, 2009-10-05 at 11:31 -0400, Justin M. Streiner wrote: > On Mon, 5 Oct 2009, Leland Vandervort wrote: > > > Would anyone happen to have an operations contact at Facebook by > >

Re: operations contact @ facebook?

2009-10-05 Thread Leland Vandervort
-10-05 at 10:57 -0400, Patrick W. Gilmore wrote: > On Oct 5, 2009, at 10:46 AM, Leland Vandervort wrote: > > > Would anyone happen to have an operations contact at Facebook by > > anychance? Our systems are being overwhelmed by a facebook > > application > > tha

operations contact @ facebook?

2009-10-05 Thread Leland Vandervort
Hi All, Would anyone happen to have an operations contact at Facebook by anychance? Our systems are being overwhelmed by a facebook application that we were neither aware of nor condoned. Thanks in advance. Leland Vandervort Director, Technical Operations Gandi SAS Paris t: +33 1 70 39 37 59