and do not forget the ulimit and select limit of maximum open selects -
but can be tuned.
leasetimes could be problematic, when getting low.
What about 802.1x, is that generally being deployed with option82?
more security - but not always supported, I have not yet tested or needed
this feature.
Kind regards,
Ingo Flaschberger
A DDoS affects the
infrastructure of multiple networks, users, other websites, etc., etc. Most people
who read the last sentence thought to themselves that is beyond obvious. It is a
shame you do not understand it.
Put another way, perhaps you should take your own 230gr.
++
Kind re
reading (150Mbps).
Is there a maximum bandwidth it graphs or can this be edited so that I get
proper graphs?
32bit counters run over with 100mbit in less than 5 minutes.
solutions:
run poller every 1 minute & update rrd's heartbeat
or use 64bit counters
Kind regards,
I'm a hosting provider - and I have to pay for upstream.
Perhaps I should setup a rule counting comcast traffic and send them a
bill, because their customers download stuff at my site and generate
costs?
Kind regards,
Ingo Flaschberger
Z and move from 120V 60Hz? (or also 50Hz)
you will need to check each device if it supports 240V, commonly the
specified power ratings are printed at a stricker on the device itself.
Kind regards,
Ingo Flaschberger
label say "100~240v AC". Dell's old
rack mount monitor/KB from 5 years ago even supports 208v (Just wrong
connector.)
Whats the idea behind todo this?
You will also need circuit breakers that both phases are switched of
simultaneous?
Kind regards,
Ingo Flaschberger
and anyone who thinks that the fidonet was not hierarchic is not taking
their meds.
yes, the bad bad node ops :)
bye,
Ingo
"Why do we install 120v instead of 208v?" was asked over a year ago
either here or on cisco-nsp. It generated a long discussion, but it
should have been cut short as early in the thread someone said
all that had to be said: "because we are idiots."
*GG* good old europp
here) you skip the ground wire going into the
panel entirely.
that one looks dangerous.
In europe:
http://img406.imageshack.us/i/verteilerkasten.jpg/
64A 240V 3-Phase input.
Out to Servers single phase, output to airconditioners with 3 phase (not
at this picture).
Kind regards,
Ingo Flaschberger
Precisely the same panel layout I had in my last facility, though we didn't
use any 208V branch circuits; thanks for the pic, Kevin.
good thing is, if you have no neutral you can't break it - to whom knows
whats happen :)
Kind regards,
Ingo Flaschberger
t breaker integrated
in one device; but I try to use the more expensive pulse tolerant ones.
Kind regards,
Ingo Flaschberger
e better.
break current ranges from 10mA (bath) up to 300mA; for servers I use the
30mA with pulse protection (internal delay) to avoid the server
powersupply capacitor loading GFCIs "flip".
Kind regards,
Ingo Flaschberger
datacenter.
aeh.. 230V / 400V is right voltage in technical terms in most european
copuntries.
(years ago it was 220V / 380V, before it was decided to go up with the
voltage)
and in bigger datacenters there are also step down transformers from 10kV
down.
Kind regards,
Ingo
also there.
Kind regards,
Ingo Flaschberger
owns.
only when 2 faults occur the breakers trip.
usually hospitals use such a configuration.
probably hilkar system is similar to this one.
Kind regards,
Ingo Flaschberger
below the limit
of non harmfull voltage.
Thus you have a voltage with less power loss at short transports and a
secure voltage. (creating a short is still not a great idea).
Kind regards,
Ingo Flaschberger
t;0 AS5536 Internet-Egypt
Kind regards,
Ingo Flaschberger
erface up / down and advertise the active default gw via ra.
Kind regards,
Ingo Flaschberger
this.
Kind regards,
Ingo Flaschberger
lowet frequencies.
Details:
http://www.bundesnetzagentur.de/SharedDocs/Downloads/EN/BNetzA/Areas/ElectricityGas/Special%20Topics/Blackout2005/BerichtEnglischeVersionId9347pdf.pdf?__blob=publicationFile
Kind regards,
Ingo Flaschberger
ikes - inverter systems are not.
Kind regards,
Ingo Flaschberger
happened to us a few times before we switched to a delayed
ATS, was a PITA to debug and resolve.
a transformer should be switched to the network when phase is at
highest/lowest point, not at zero.
zero: highist current
highest/lowest point: lowest current
because it's a coil.
Kind regards,
clients per head-end.
high-speed symmetric services can only be offered with new network types
like fiber.
Kind regards,
Ingo Flaschberger
-> socket =
socket(AF_INET6, SOCK_STREAM, IPPROTO_TCP)
It's more work, to build a dual-stack program - then 2 sockets needs to
be opened and handled.
But overall - it's trivial.
y2k: the will be app's that will it never made to ipv6 - but you can do
ipv6->ipv4 translation NAT-PT (RFC2766)
Kind regards,
Ingo Flaschberger
ms
Kind regards,
Ingo Flaschberger
Hi,
can please someone from cox.net contact me?
I receive now since more tha 24 hours a syn-attack from their network -
and abuse contact does not react.
Kind regards,
ingo flaschberger
geschaeftsleitung
crossip communications gmbh
A-1020 Wien
rotectors.
Kind regards,
Ingo Flaschberger
meaning
remarks:n = 0 do not announce to peer
remarks:n = 1 prepend "AS13237"
remarks:n = 2 prepend "AS13237 AS13237"
remarks:n = 3 prepend "AS13237 AS13237 AS13237"
Kind regards,
Ingo Flaschberger
P on a Mikrotik
platform that precludes having the internet connections come in at different
locations?
That depends on the netwoek in between this two locations.
There could be a lot of good reasons why this is no good idea; please
bring some light into this.
Kind regards,
Ingo Flaschberger
Dear Lorell,
We are putting a private PTP metro ethernet (fiber based) link between the
two locations. And both locations will have one internet connection.
this network between should be no problem,
what routing protocols do you use in your network? ospf?
Kind regards,
Ingo
Dear Lorell,
We will implement OSPF.
so what arguments speak against 2 bgp upstreams?
Kind regards,
Ingo Flaschberger
ago, but my BGP sessions are
still flapping and not converging at all. This has been flooding our
logs, and is still going on:
route half or more of the peering-network to Null -> lowering bgp session
up's.
(at the other side, your bgp-router seems to be overloaded).
Kind regards,
able todo this.
Kind regards,
Ingo Flaschberger
h cf-cards (readonly).
Kind regards,
Ingo Flaschberger
.
kind regards,
Ingo Flaschberger
I'm more than interested in developing a much cheaper, hardware
forwarding router..
I think there is a lot of room for innovation - especially at the
target market in this thread.
If anyone wants to work with me on this, just let me know!
I've got a tonne of ideas and a bit of free time..
NetFPGA
But it seems, that NetFPGA has not enough memory to hold a full view
(current 340k routes).
It's just a development platform for prototyping designs, not
something you would use in production...
I want to use it to implement and test ideas that I have, and play
with some different forwarding arc
What's the real-world power consumption and heat like? 455 days shows
some pretty good reliability!
I reached more than 700 days - then power cycle due (planned) power
maintenance works.
i was recently bitten by a cousin of this
research router getting an ebgp multi-hop full feed from 147.28.0.1
(address is relevant)
it is on a lan with a default gateway 42.666.77.11 (address not
relevant), so it has
ip route 0.0.0.0 0.0.0.0 42.666.77.11
massive flapping results.
it seem
-- Forwarded message --
Date: Mon, 04 May 2009 00:38:54 +0300
From: Geert Jan de Groot
To: quagga-us...@lists.quagga.net
Subject: [quagga-users 10587] bgpd crash - apologies
Hello,
I learned today that a BGP announcement for which I am the tech-c,
is causing difficulties with
kind regards,
Ingo Flaschberger
Munin
http://munin.projects.linpro.no/
-> has a "api" to nagios
and cacti: www.cacti.net
(with add-on plugings, ie weathermap)
cricket: http://cricket.sourceforge.net/
munin, cacti and cricket are more graphing than alerting (nagios) systems
Kind regards,
Ingo Flaschberger
Hey,
I should tell my customers that the cross sum of the domains ip
also count to the pagerank, and the ip 255.255.255.255 is the best of all.
bye,
ingo flaschberger
Hi,
it seems, that hotmail send a bare LF in the added signature
(and violates RFC).
qmail drops the connection afterwards:
451 See http://pobox.com/~djb/docs/smtplf.html
no helpfull response from hotmail:
https://windowslivehelp.com/community/t/121824.aspx
Kind regards,
Ingo
Hi,
it seems, that hotmail send a bare LF in the added signature
(and violates RFC).
qmail drops the connection afterwards:
451 See http://pobox.com/~djb/docs/smtplf.html
no helpfull response from hotmail:
https://windowslivehelp.com/community/t/121824.aspx
Kind regards,
Ingo Flaschberger
Hi,
.se statement:
http://www.iis.se/en/2009/10/13/felaktig-dns-information/
Kind regards,
ingo flaschberger
ld be supported?
fastforwarding ?
cons: no multipath routing
Cpu's:
Single-core-cpus performs better at freebsd than multi-core ones
At freebsd-net mailinglist there is a very long thread about
freebsd-routers.
Kind regards,
Ingo Flaschberger
iproute2, you can add multiple gateways with
different/equal weights for a specific prefix
Multipath, yes, but flow-based, not per packet.
There exists a patch for 2.4 kernel, but not for 2.6
Or tinker with iptables.
Kind regards,
Ingo Flaschberger
gets update to remove route 192.168.0.1/24 via ospf
t=4: 192.168.0.1/24 route has disappeared, failover broken.
with ucarp, some special scripts and source code changed I was able
to handle this situation, but not with carp and ospf (at least at
freebsd 6.3)
Kind regards,
Ingo Flaschberger
things like this.
For most important things around here, we use OSPF with stub routes so
the failure of a particular ethernet is not necessarily of great concern,
but it would be nice to see things like this know how to DTRT.
DTRT?
Kind regards,
Ingo Flaschberger
As far I remember, freebsd changed the multicast-interface to
linux-style. Source code seems to be already there, only makefile needs to
be changed, to support freebsd <7 and 7.
Kind regards,
Ingo Flaschberger
freebsd os if quagga is the routing daemon as
quagga runs more stable than on linux.
I have currently 300days uptime at my border routers (2x FW-7550), last
week I had a peak with 230mbit's; no problem to handle.
Kind regards,
ingo flaschberger
page vlans:
102MYVLAN
-
ip: 10.0.1.0/24
ports: sw1: 1+, 2, 3, 24+
sw2: 1+, 4, 5
+ means tagged
kind regards,
Ingo Flaschberger
Hi,
I see this every day at my webservers with a lot of *outdated*
*exploitable* customer websites [I love old joomla's];
but mod_security does a great job nuking sql and various other exploits.
Kind regards,
Ingo Flaschberger
monly used for large scale setups.
but you can also build a network without pppoe and plain ethernet.
Kind regards,
Ingo Flaschberger
]: y
Sweep min size [36]:
Sweep max size [18024]: 1500
Sweep interval [1]:
Kind regards,
Ingo Flaschberger
Dear community,
sharktech.net hosts irc-server for botnets and does not respond to
abuse notifications.
Kind regards,
ingo flaschberger
geschaeftsleitung
---
netstorage-crossip-flat:fee
powered by
crossip communications gmbh
---
sebastian
Hi,
http://www.msk-ix.ru/network/traffic.html
it was 12:00 moscow local time.
Kind regards,
ingo flaschberger
,
ingo flaschberger
w, "straight" rj21 plugs would also solve the problem.
Kind regards,
ingo flaschberger
geschaeftsleitung
crossip communications gmbh
A-1020 Wien, Sebastian Kneipp Gasse 1
Tel: +
/dataw/CN50-VEL
Thanks & kind regards,
Ingo Flaschberger
.
Kind regards,
ingo flaschberger
Hi,
I'm searching a working (if possible) configuration for a cisco 1841 as
pptp-client. 1841 should do an pptp dialin to another cisco via
ethernet-port.
Kind regards,
Ingo Flaschberger
yer 7 firewall wich runs as a apache module.
Kind regards,
Ingo Flaschberger
22
2) http://www.atm.tut.fi/list-archive/nanog/msg04507.html
Kind regards,
Ingo Flaschberger
ong - factor 10 to high.
1gige linerate: 1,9mpps
10gige linerate:19mpps
and intel is proud to achieve 1,6mpps at 2 10gige cards?
I have seen higher values at pc hardware - but still not compareable to
asics.
Kind regards,
Ingo Flaschberger
I'm also searching something cheap software or device to stream audio only
(radio broadcasting, stream from external site to head-office).
Kind regards,
Ingo Flaschberger
to have a 2nd ip and 2nd gateway at all "users"
workstations with explicit routes. (scales very very well, perhaps run some routing
protocol? ospf? :)
bye,
Ingo Flaschberger
The router isn't assigning an address, it's merely telling everyone on the
segment what the local prefix and default route is. As such, there's no
reason why the router should try to register a DNS entry.
1) configure the router without knowing the address?
Kind regard
70 matches
Mail list logo