Re: Noisy prefixes in BGP

2025-02-09 Thread Randy Bush
g the update > onwards. I’m not sure what came of this. RFC 9324 and https://archive.psg.com/220214.nanog-rov-no-rr.pdf randy

TA Malfunction??

2025-01-30 Thread Randy Bush
PacketViz reports Possible TA malfunction: 29.17% of the ROAs disappeared from ARIN. Type: ta-malfunction Severity: medium Monitored: ASarin When: 2025-01-30 10:40 UTC randy

Re: ARIN Online update to provide auto-managed IRR objects for RPKI ROAs (Fwd: [arin-announce] New Features Added to ARIN Online)

2025-01-13 Thread Randy Bush
> For those using RPKI, there is now optional functionality in ARIN > Online that allows for automatic syncing of IRR route objects to ROAs thank you for making it optional and giving the op the choice randy

Re: Distributed Router Fabrics

2024-12-26 Thread Randy Bush
r installations? > > one way to think of it is that each pizza box (customer facing ports) > recognizes control plane messages (e.g. port 179) and "punts" them to > the control plane box, aka routing engine. fwiw, that is pretty much what line cards on a big-box fabric do, punt to the RE. randy

Re: Distributed Router Fabrics

2024-12-26 Thread Randy Bush
ions? one way to think of it is that each pizza box (customer facing ports) recognizes control plane messages (e.g. port 179) and "punts" them to the control plane box, aka routing engine. randy

Re: Best way to have redundancy announcing on separate routers

2024-12-25 Thread Randy Bush
ticularly saku among others if i remember aright, helped a lot. randy

Re: Best way to have redundancy announcing on separate routers

2024-12-25 Thread Randy Bush
> IMHO, this is exactly the thing NANOG is here for, helping others run > BGP. where does one go for is-is help? the mtu issie can be painful!!! randy

Re: Best way to have redundancy announcing on separate routers

2024-12-24 Thread Randy Bush
to networkers since dirt was invented. randy

Re: Need Centurylink contact for serious ongoing issue

2024-12-14 Thread Randy (K6RP)
used Starlink in remote areas while overlanding with zero cellular and was able to make/recieve calls and even standard SMS. VZW by the way. --- ~Randy (K6RP)

Re: Implementing Decentralized RPKI with Blockchain Technology

2024-11-18 Thread Randy Bush
i have not seen mention that a single validing roa wins over any number of 'coerced' invalidating roas. this has implications in the space of 'saving' action(s) by an other rir, iana, an alternate registry, etc. randy

Re: Can an IXP sell IP transit?

2024-11-07 Thread Randy Bush
ebug issues[0]. but, as i have gotten older and lazier, and as you say, route servers have gotten quite reliable, i have come over to the route server side. randy [0] - https://datatracker.ietf.org/doc/draft-ietf-idr-rs-bfd/

Re: Hurricane Electric ISP custom routing via BGP communities

2024-11-04 Thread Randy Bush
they should give me transit for free randy

Re: october

2024-10-29 Thread Randy Bush
> There is a memorial fund for his ISOC Service Award, to which > interested people can contribute: don't. the award is formally declared done. randy

october

2024-10-29 Thread Randy Bush
and today in 2007, itojun died. ipv6 samurai, researcher, netbsd, iab, ... a gentle soul and friend to many randy

abja

2024-10-20 Thread Randy Bush
on this day in 2001, abha ahuja, computer scientist, routing geek, and friend to many died. a bit of cheer: tomorrow is rob blokzijl's birthday. october is not all sad. randy

Re: It can be challenging to advise DDoS mitigation subscribers on their RPKI-ROA needs

2024-10-18 Thread Randy Bush
>> what's an as-set? > An IRR object that contains ASNs and other as-sets. Generally used to > represent a network’s customer cone. ahhh. cool. i was worried you meant {1,2,3}, which is pretty much dead. randy

Re: It can be challenging to advise DDoS mitigation subscribers on their RPKI-ROA needs

2024-10-18 Thread Randy Bush
> In some cases, you can identify customers of DDoS mitigation services > by looking at as-sets published by these providers what's an as-set? randy

jon postel

2024-10-16 Thread Randy Bush
dr postel died this day in 1998. october is a bad month for internet hero[ine]s randy

Re: db9f to usb-c serial

2024-10-05 Thread Randy Bush
> https://www.amazon.com/Console-Compatible-Windows-Switch-Router/dp/B08BCQ8LLR/ have that. and the one that goes from rj45m to db9f. it was the usb to db9f for which i hungered. ordered the pink one from china; how could i resist? :) randy

Re: db9f to usb-c serial

2024-09-24 Thread Randy Bush
> https://www.metabee.com/usb-type-c-to-rs-232-serial-db09-female-adapter-cable-with-100cm-round-black-cable.html !

Re: db9f to usb-c serial

2024-09-24 Thread Randy Bush
> Try B0CL4T6NN9 at Amazon looks as closeas i'm gonna get. a bit clunky and thick wires. but i guess i am not in japan where smaller is more appreciated. thanks. randy

Re: db9f to usb-c serial

2024-09-23 Thread Randy Carpenter
Probably not much bulkier to just add a DB9-RJ45 adapter shell like this: https://www.monoprice.com/product?p_id=1153 Then, you can just use your existing USB-C to RJ45 cable and have both options. thanks, -Randy - On Sep 23, 2024, at 9:41 PM, Randy Bush ra...@psg.com wrote: > i k

db9f to usb-c serial

2024-09-23 Thread Randy Bush
lunky keyspan to usb-a; old, clunky, usb-a. i want the equivalent usb-c ftdi (mac compat) to db9f *server* serial console cable. 1-2m. integrated, slick, and sexy. magenta preferred, of course :) know any nice ones? randy

Re: pgp keyservers

2024-07-22 Thread Randy Bush
.pgpkeys.eu/sks-peers yay! i chose randomly, and hkps://pgp.cyberbits.eu worked. thank you! we have been very good at making pgp hard to use. we probably want to not do that so much. randy

Re: pgp keyservers

2024-07-22 Thread Randy Bush
.gnupg/gpg.conf`. probably my fault. randy

Re: pgp keyservers

2024-07-21 Thread Randy Bush
> I think the hipster thing to do now, though, is --auto-locate-key with > the Web Key Distribution or the DNSSEC Key Distribution mechanism. i have done wkd for a fair while. but some folk like to pull keyrings, so i try to keep them updated. randy --- ra...@psg.com `gpg --locate-ex

pgp keyservers

2024-07-21 Thread Randy Bush
are there any old keyservers still working? or only the new hipster ones? i tried three and no love hkps://pgp.mit.edu hkps://pgp.uni-mainz.de hkps://hkps.pool.sks-keyservers randy

Re: HE.net problem

2024-07-04 Thread Randy Bush
play hak whacked me to add http://dns.measurement-factory.com/tools/nagios-plugins/check_zone_rrsig_expiration.html to my nagios deployment. anyone have some known sick in various ways dns zones against which to test? randy

Re: HE.net problem

2024-07-04 Thread Randy Bush
not to distract from everyone diagnosing someone else's problem, but ... what foss dns monitoring tools do folk use to alert of - iminent delegation expiry - inconsistent service (lame, soa mismatches, ...) - dnssec signing and timer issues - etc. randy

Re: Geolocation IP - www.firstinterstatebank.com

2024-07-01 Thread Randy Bush
> https://datatracker.ietf.org/doc/html/rfc8805 https://datatracker.ietf.org/doc/html/rfc9092 will show you how to use 8805 randy

charging for config changess

2024-06-30 Thread Randy Bush
has charging for config changes a la https://www.arelion.com/customer-excellence/customer-support/online-technical-change-pricing become common while i was not looking? admittedly, i have not looked for a long time. randy

Re: comcast v4 in pnw

2024-06-02 Thread Randy Bush
kinda summary: comcast and cogent/sprint very helpful. likely cause a misconfig in cogent norcal when trying to route around a power outage in seattle. fwiw, HE and IIJ IPv6 transit (tyvm) in seattle allowed us to keep working through the outage. randy

comcast v4 in pnw

2024-05-31 Thread Randy Bush
a bunch of us comcast soho folk, and monitoring gear, are seeing v4 breakage in orygon and maybe washington but only for seattle destinations. v6 works. johnb, is comcast going v6-only? :) ryuu.rg.net:/Users/randy> ping r0.iad PING r0.iad.rg.net (198.180.150.120): 56 data bytes 64 bytes f

Re: Geolocation IP help

2024-05-22 Thread Randy Bush
> There is always talk to the local politician route so it gets raised > in the state legislature. this is illinois/chicago. you slip them a $100 bill under youe drivers' license

Re: Geolocation IP help

2024-05-22 Thread Randy Bush
> You could try publishing Geo loc data per RFC8805 > https://datatracker.ietf.org/doc/html/rfc8805 or, more specifically, 9092 randy

Re: Announcing N91 Monday Keynote + New on NANOG TV: "Community Deep Dive"

2024-05-22 Thread Randy Bush
ttps://berthub.eu/articles/posts/cyber-security-pre-war-reality-check/ interesting randy

Re: Q: is RFC3531 still applicable?

2024-05-15 Thread Randy Bush
> The minimum addressable on a LAN is a /64. not really randy

Re: NOAA Space Weather Prediction Center issued a Severe (G4) Geomagnetic Storm Watch

2024-05-10 Thread Randy Bush
> (Low but distinct possibility of effects to radio and transmission > systems) no one will notice as we will all be outside looking at the aurora! randy

Re: 2600:: No longer pings

2024-04-14 Thread Randy Bush
> Wonderful news, this has now been fixed :) > Thank you to Cogent for fixing this indee. otoh, i still can not resist https://www.kame.net/ randy

Re: Anyone got a contact at OpenAI. They have a spider problem.

2024-04-11 Thread Randy Bush
> Amazon's spider got stuck there a month or two ago but fortunately I was > able to find someone to pass the word and it stopped. Got any contacts > at OpenAI? why? you are doing a societal good by ensnaring them. dig a deeper hole. randy

Re: N91 Women mixer on Sunday?

2024-03-29 Thread Randy Bush
en.wikipedia.org/wiki/Ad_hominem anne has been a constructive list participant for years randy

Re: N91 Women mixer on Sunday?

2024-03-29 Thread Randy Bush
we definitely need more men's opinions on what women should want and do randy

Re: NANOG 90 Attendance?

2024-02-19 Thread Randy Bush
in space?” > “How do I comment on an existing IETF document?” > perhaps the internet would benefit more from the inverse, a help desk at the ietf for "what is internet operation and how does it actually work?" randy

Re: Ongoing ARIN consultation on Resource Public Key Infrastructure/BGP intelligence

2024-02-14 Thread Randy Bush
RR > objects whoops! i still code around another RIR doing that. vendors have a long history of thinking they know best what operators should do. some RIRs seem to have such hubris. ok, i can see opening up discussion to reduce foot shooting risks. sorry for skepticism. randy

Re: Ongoing ARIN consultation on Resource Public Key Infrastructure/BGP intelligence

2024-02-14 Thread Randy Bush
john, > Read the full text of the consultation at: > https://www.arin.net/participate/community/acsp/consultations/2024/2024-1/ please explain the need for bureaucrazy to do what RPKI CAs have been doing since dirt was invented. randy

Re: ru tld down?

2024-02-09 Thread Randy Bush
> For taking care of referrals and delegations, ietf has started > preliminary work. More info here - > > https://mailarchive.ietf.org/arch/msg/dd/srNtevzS-jrPzMxYv1nATCY5JkM/ dns is not complex enough that folk have assured careers. need to make it more complex. randy

Re: Backward Compatibility Re: 202401100645.AYC Re: IPv4 address block

2024-01-14 Thread Randy Bush
ed. i guess it has been from the perspective of geologic time. randy

Re: Vint Cerf Re: Backward Compatibility Re: IPv4 address block

2024-01-13 Thread Randy Bush
> Some of us still use pine… i thought most pine users had moved to mutt randy, who uses wanderlust under emacs :)

Re: IPv4 address block

2024-01-13 Thread Randy Bush
ipv4 less palatable. In particular, any effect from a > hard landing compared would have been ephemeral. amen randy

Re: Backward Compatibility Re: 202401100645.AYC Re: IPv4 address block

2024-01-12 Thread Randy Bush
interesting side note: when iij was deploying the v6 backbone in '97, commercial routers did not support dual stack. so it was a parallel backbone built on netbsd with the kame stack, which was developed in iij lab. we remember itojun. randy

okta probing

2024-01-12 Thread Randy Bush
s the clue level is going down as well as the temp. randy

Re: Backward Compatibility Re: 202401100645.AYC Re: IPv4 address block

2024-01-12 Thread Randy Bush
> I go into my cave to finish the todo list for the week, and I come out > to see Mr. Chen : > - Telling Randy Bush he should "read some history" on IPv6 > - Implying that Vint Cerf ever said anything about EzIP > > Fairly impressive sequence of self ownage. but i

Re: Backward Compatibility Re: 202401100645.AYC Re: IPv4 address block

2024-01-12 Thread Randy Bush
tupidities (TLA, NLA, ...) pulled out of the spec. at iij, we rolled ipv6 on the backbone in 1997. randy

Re: 202401100645.AYC Re: IPv4 address block

2024-01-12 Thread Randy Bush
been a bit better thought out. > > What was not intended though was the transition period to last for 30 > years and counting… If things go reasonably well we’re gonna be dual > stack for another 20, at least. like many things about ipv6, it could have been a bit better thought out. randy

Re: 202401100645.AYC Re: IPv4 address block

2024-01-11 Thread Randy Bush
> We don't need to extend IPv4, we need to figure out why we are in this > dual-stack mess, which was never intended, and how to get out of it. it was intended. it was the original transition plan. like many things about ipv6, it could have been a bit better thought out. randy

Re: swedish dns zone enumerator

2023-11-02 Thread Randy Bush
> I might be reading this wrong, but I don't think the point Randy was > trying to make was 'NS queries are an attack', 'UDP packets are an > attack' or 'IP packets are an attack' . I base this on the list of > queries Randy decided to include as re

Re: swedish dns zone enumerator

2023-11-01 Thread Randy Bush
ya, right, and at a whole bunch of other cctld servers from a network called domaincrawler-hosting shall we smoke another? /home/randy> sudo tcpdump -pni vtnet0 -c 500 port 53 and net 193.235.141 tcpdump: verbose output suppressed, use -v or -vv for full protocol decode listening on vtn

swedish dns zone enumerator

2023-10-31 Thread Randy Bush
i have blocked a zone enumerator, though i guess they will be a whack-a-mole others have reported them as well /home/randy> sudo tcpdump -pni vtnet0 -c 10 port 53 and net 193.235.141 tcpdump: verbose output suppressed, use -v or -vv for full protocol decode listening on vtnet0, link-type EN1

itojun

2023-10-29 Thread Randy Bush
this day in 2007 dr jun-ichiro (itojun) hagino died. a gentle soul, an engineer's engineer, the ipv6 samurai, iab member, and fiat 500 lover. the v6 stack you're running could have descended from his netbsd one. http://www.itojun.org/ randy

Re: emily postnews

2023-10-27 Thread Randy Bush
> wish this was included with every subscription to internet services > you did not get it with your AOL CD? ask for a refund. as a bonus, https://neal.fun/internet-artifacts/ randy

emily postnews

2023-10-27 Thread Randy Bush
another old dog doing a search wrote to tell me they really appreciated that i still had some antique advice up. i had long forgotten this one. but found it amusing and still more relevant than i might wish. https://psg.com/emily.html randy

Re: RPKI unknown for superprefixes of existing ROA ?

2023-10-24 Thread Randy Bush
> Believe it or not, Job, there are parts of the internet that exchange > traffic and move packets that are not IXPs. in fact, measurements had shown that the majority of inter-domain traffic is over pnis randy

remembering abha

2023-10-20 Thread Randy Bush
another tragic october death was that of abha ahuja, researcher, operator, and amazing person, this day in 2001. worth a search. jake's http://www.neebu.net/~khuon/abha/ is a start. randy

Re: Acceptance of RPKI unknown in ROV

2023-10-19 Thread Randy Bush
>> has arin not made it easier, lowering the legal insanity, for legacy >> holders to obtain services? > Yes but they need to jump now if they want to take advantage of it, as > I understand it. arin has deep expertise in hurdles randy

Re: Acceptance of RPKI unknown in ROV

2023-10-19 Thread Randy Bush
> For legacy resource holders it is a problem but then it’s a > bureaucratic issue rather technical and technology has a solution > called SLURM. has arin not made it easier, lowering the legal insanity, for legacy holders to obtain services? randy

Re: jon postel

2023-10-16 Thread Randy Bush
think of the folk making careers complicating dns, rpki, bgp, ... randy

jon postel

2023-10-16 Thread Randy Bush
25 years ago, jon postel died. we stand on the shoulders of jon and others, a number of whom died in october. not a cheering month for old timers. randy

Re: ARIN whois contact abuse from ipv4depot aka Silicon Desert International Inc

2023-10-13 Thread Randy Bush
i received an arin board electioneering "vote for me" today. i guess now i have to go vote against then. randy

Re: constraining RPKI Trust Anchors

2023-10-11 Thread Randy Bush
this pain-to-maintain list be distributed? how do i know a copy is authentic not an attack? i am all for a single root of trust. it's just that i thought it was the iana's job. but i am easily confused. randy

Re: Using RFC1918 on Global table as Loopbacks

2023-10-05 Thread Randy Bush
e from the loopback. and, for replies to get back to that loopback, it needs to be in real global space. randy

Re: maximum ipv4 bgp prefix length of /24 ?

2023-09-30 Thread Randy Bush
e have ourselves to blame; but blame does not move packets. randy, who was in the danvers cabal for the /19 agreement

Re: Zayo woes

2023-09-18 Thread Randy Carpenter
one *years* without being complete. There are also currently some breaking-the-entire-regional-network sorts of outages going on currently. I am guessing what clued employees they still have are quite tied up. -Randy - On Sep 18, 2023, at 7:06 PM, JASON BOTHE via NANOG nanog@nanog.org wrot

Re: So what do you think about the scuttlebutt of Musk interfering in Ukraine?

2023-09-14 Thread Randy Bush
perhaps this is not a nanog operational topic

Re: Lossy cogent p2p experiences?

2023-09-09 Thread Randy Bush
i am going to be foolish and comment, as i have not seen this raised if i am running a lag, i can not resist adding a bit of resilience by having it spread across line cards. surprise! line cards from vendor do not have uniform hashing or rotating algorithms. randy

Re: Guest Column: Kentik's Doug Madory, Last Call for Upcoming ISOC Course + More

2023-09-08 Thread Randy Bush
s by default, too: > > https://mailchimp.com/help/about-open-tracking/ as usual, the problem is not technical. there is no need for mailchump at all. nanog management has made a very intentional decision to sell my privacy. nanog has come a long way, not all of it good. randy

Re: Guest Column: Kentik's Doug Madory, Last Call for Upcoming ISOC Course + More

2023-09-07 Thread Randy Bush
> *READ MORE > <https://www.google.com/url?q=https://nanog.us20.list-manage.com/track/click?u%3D4d708401d0e69d9dc73d1c204%26id%3Dd77e95d2fb%26e%3De429f79d5a&source=gmail&ust=1694187666719000&usg=AOvVaw3Cfz_DNu6fUMvOglI_i3nd>Last can we please get URLs without all the invasive tracking? randy

Re: it's mailman time again

2023-09-02 Thread Randy Bush
> Mail in transit is mostly TLS transport these days, yep. mostly. opsec folk are not fond of 'mostly.' > BUT mail in storage and idle state isn't always secured. I'm sure > that most any of us could find a public s3 bucket with an mbox file on > it if we cared to look. sigh randy

it's mailman time again

2023-09-01 Thread Randy Bush
and i just have to wonder about sending passords over the net in cleartext in 2023. really? randy

Re: v6 route mess frm AS266970

2023-08-29 Thread Randy Bush
route origin validation. randy

v6 route mess frm AS266970

2023-08-29 Thread Randy Bush
is a massive route leak not even menntioned when it is only ipv6? the guess i heard was it looked like a classic config reorigination disaster. randy

Re: Internet Exchange Visualization

2023-08-15 Thread Randy Bush
w is one way to visualize ix connectivity, the op's > question. i guess the list does not like graphs. decline of net predicted; news at eleven. if you care, unicast. randy

Re: Internet Exchange Visualization

2023-08-15 Thread Randy Bush
raph below is one way to visualize ix connectivity, the op's question. randy

Re: Dodgy AS327933 ...?

2023-08-10 Thread Randy Bush
> We are seeing some weird routing from them, and the AS2 they are > attached to (University of Delaware) seems odd. classic microtik prepend syntax confusion? randy

Re: malware warning

2023-07-18 Thread Randy Bush
i did not think i was special, and assumed everybody is getting them. but i figured that if i kept one or three people from falling for the trap it was worth the pollution. randy

Re: My first ARIN Experience but probably not the last, unfortunately..

2023-07-16 Thread Randy Bush
we can round off the rough edges where they got caught. randy --- note that i use the first person plural

Re: whois server

2023-07-13 Thread Randy Bush
> the memo: > https://web.archive.org/web/20230523204911/http://www.geektools.com/ 404

whois server

2023-07-13 Thread Randy Bush
``` % host whois.geektools.com Host whois.geektools.com not found: 3(NXDOMAIN) ``` i guess i missed the memo :( randy

Re: [Attendee] Welcome to NANOG 88 - Sunday Edition

2023-06-11 Thread Randy Bush
let's get to the protein. where is the most reasonable parking near the venue? randy, who will soon start driving up from portland

Re: BGP routing ARIN space in APNIC region

2023-06-11 Thread Randy Bush
it at recent RIPE and LACNIC conferences. Supposedly all of > the big geolocation providers support it or are planning on supporting > it. we're working on an small update. see https://datatracker.ietf.org/doc/draft-ymbk-opsawg-9092-update/ randy

Re: 128/9 cite

2023-06-07 Thread Randy Bush
thanks aftab i remember a bit more. the hidden command was there to help debug CEF, which was new at the time. the CEFlapods wanted a large blob of prefixes to push the FIB. it kinda pushed the operational FIBs a bit too far :) randy

128/9 cite

2023-06-07 Thread Randy Bush
into /24s. took uunet down, but not before it propagated. does anyone have a useful cite? randy

Re: Soliciting suggestions and experiences from the community for RPKI-invalid filtering deployment

2023-05-23 Thread Randy Bush
> some ASes may perform RPKI-invalid filtering only at partial > interfaces (e.g., provider interfaces, customer interfaces, and peer > interfaces). i have heard it said that "my customer pays me to propagate their announcement, so i do not apply rov. let my peers filter it." randy

Re: Standard DC rack rail distance, front to back question

2023-04-27 Thread Randy Bush
> It's super annoying, and somewhat terrifying to be banging on a rack > containing a bunch of spinning rust, but all too often it's necessary we just moved a rack's content from the westin to komo plaza [0] and only had one questionable drive. terrifying is the right word.

Re: Standard DC rack rail distance, front to back question

2023-04-27 Thread Randy Bush
> "small mounting shelf" we use mounting shelves for all sorts of recalcitrant devices randy

Re: Reverse DNS for eyeballs?

2023-04-25 Thread Randy Bush
> I would say the absence of reverse DNS tells useful info to receiving > MTAs - to preferably not accept. yep

Re: Spamhaus flags any IP announced by our ASN as a criminal network

2023-03-20 Thread Randy Bush
this company(s) is in the business of spam. they're just trying to game nanog. discussing further a waste of pixels. ranady

Re: Spamhaus flags any IP announced by our ASN as a criminal network

2023-03-20 Thread Randy Bush
>> I don't think any ISP would reject an IP that is on the Spamhaus >> list. > you, clearly, have been living under several rocks for a very long > time. we reject automagically on spamhaus, mail-abuse.org, and sorbs. really appreciate their services. randy

Re: BGP Engines with support to "RTFilter address-family"

2023-02-27 Thread Randy Bush
> RFC4364 ... I believe - Arccus has implemented it (Keyur to confirm) i am not keyur and do not play one on the net, but ...

Re: A straightforward transition plan (was: Re: V6 still not supported)

2023-01-11 Thread Randy Bush
ucceeded. and the ops community has paid an insane penalty ere since. randy

Re: Geoip database update

2022-12-17 Thread Randy Bush
> > darn shame there is no general automatable mechanism for this too many folk have written to ask. here is the clue by four https://www.rfc-archive.org/getrfc?rfc=9092 and note that massimo has a collio toolset https://github.com/massimocandela/geofeed-finder randy

  1   2   3   4   5   6   7   8   9   10   >