Re: NetFlow - path from Routers to Collector

2015-09-02 Thread Jared Mauch
> On Sep 2, 2015, at 10:02 AM, Roland Dobbins wrote: > > On 2 Sep 2015, at 20:25, Niels Bakker wrote: > >> Why? Do your customer packets have cooties? > > Because you don't want things which disrupt customer traffic to disrupt your > ability to see what's happening. Just as you don't want i

Re: Software Defined Networking

2015-09-05 Thread Jared Mauch
These disclaimers have been proven to be added by the paranoid. eg: http://articles.chicagotribune.com/2011-08-26/business/ct-biz-0826-chicago-law-20110826_1_disclaimers-legal-obligations-binding Basically, unless you already have an existing written NDA you’re likely not bound. Your company m

internet visualization

2015-09-05 Thread Jared Mauch
accolades. If you hate it, see above disclaimer. If in a country with a holiday on monday, enjoy it safely. - Jared -- Jared Mauch | pgp key available via finger from ja...@puck.nether.net clue++; | http://puck.nether.net/~jared/ My statements are only mine.

Re: internet visualization

2015-09-09 Thread Jared Mauch
Please reply off list to me or Job, is this a useful tool that should be updated with data weekly or monthly? Jared Mauch > On Sep 8, 2015, at 7:16 PM, Jeff Shultz wrote: > > Weirdest thing I've found yet - AS7224, Amazon AS - Amazon, has 1 > indegree - AS724 - DNIC-ASBLK-

Re: WiFI on utility poles

2015-09-10 Thread Jared Mauch
> On Sep 10, 2015, at 9:00 AM, Mike Hammett wrote: > > 5 GHz noise levels affecting people whose primary means of Internet access is > via fixed wireless . > This is a huge deal for those people like myself that depend on fixed wireless for access at home because there is no broadband avail

Re: WiFI on utility poles

2015-09-10 Thread Jared Mauch
> On Sep 10, 2015, at 1:47 PM, Michael Englehorn wrote: > > My issue with the "free" wifi that comcast is forcing into our homes and > businesses is that it's also interfering with our own access points in > the same building! > [resending due to hitting limit on file size to nanog list] This

Re: Frontier flaps -12:15?

2015-09-15 Thread Jared Mauch
The NTT ticket for Ashburn is VNOC-1-1345240005 if you are a customer and need to follow up. - Jared > On Sep 15, 2015, at 12:45 PM, Mr. NPP wrote: > > we lost NTT for a short period in ashburn, so something went on for sure. > > mr.npp > > On Tue, Sep 15, 2015 at 9:31 AM, Matt Hoppes > wro

Re: Synful Knock questions...

2015-09-15 Thread Jared Mauch
> On Sep 15, 2015, at 2:50 PM, Michael Douglas wrote: > > Wouldn't the calculated MD5/SHA sum for the IOS file change once it's > modified (irrespective of staying the same size)? I'd be interested to see > if one of these backdoors would pass the IOS verify command or not. Even > if the backd

Re: Ashburn

2015-09-16 Thread Jared Mauch
If there are ongoing issues at NTT I’m not aware of them, please contact me off-list with details. Happy to follow-up. - Jared > On Sep 16, 2015, at 11:36 AM, Matt Hoppes wrote: > > I heard that yesterday... I can't figure out why NTT having issues is > affecting other carriers that peer in

Re: Ashburn

2015-09-16 Thread Jared Mauch
*chuckle* I did hear rumors of a fiber cut yesterday in the area but no hard details. - Jared > On Sep 16, 2015, at 11:34 AM, Christopher Morrow > wrote: > > removal of nsa taps > > On Wed, Sep 16, 2015 at 10:34 AM, Matt Hoppes > wrote: >> What the world is going on in Ashburn? Over the la

Re: Chile Status?

2015-09-17 Thread Jared Mauch
> On Sep 17, 2015, at 9:55 AM, Colin Johnston wrote: > > anyone tried ripe atlas to see effect :) > If someone wants ripe ATLAS credits please send me a request off-list with your e-mail address registered for RIPE Atlas. - jared

Re: Verizon Wireless LTE/4G and SIP Header Manipulation

2015-09-22 Thread Jared Mauch
> On Sep 22, 2015, at 4:24 PM, Christopher Morrow > wrote: > > On Tue, Sep 22, 2015 at 4:16 PM, Mark Stevens wrote: >> The TAG unique identifier is being changed and this only happens through VZ >> LTE networks, not wired networks or even other cellular data networks >> (Sprint, ATT, T-Mobile)

Re: Broken IPV6 for Enterprise websites

2015-09-23 Thread Jared Mauch
> On Sep 23, 2015, at 2:51 PM, Clinton Work wrote: > > The enterprise.com and enterprise.ca websites advertise records, > but the web servers don't respond to IPV6 HTTP requests. I have tried > to contacting Enterprise several times to correct, but I can't get thru > their layers of custom

Re: Service Providers behaviour for dual homed enterprises

2015-09-23 Thread Jared Mauch
> On Sep 23, 2015, at 5:38 PM, Jason Bullen wrote: > > I've always worked in enterprise only so I thought you guys might be able > to help me with this one. > We are dual homed to Verizon and AT&T. We prepend all our prefixes out > AT&T to make them least preferred. During a recent issue we fo

Re: ARIN Region IPv4 Free Pool Reaches Zero

2015-09-24 Thread Jared Mauch
> On Sep 24, 2015, at 12:49 PM, Dovid Bender wrote: > > The issue now is convincing clients that they need it. The other issue is > many software vendors still don't support it. > Open a ticket with your NOC or the customer support people if they can’t reach sites like http://adsb.nether.net

Re: ARIN Region IPv4 Free Pool Reaches Zero

2015-09-24 Thread Jared Mauch
Let's say it's less than 1Tbit but based on the growth curve in recent weeks I'm not sure it will stay there. Jared Mauch > On Sep 24, 2015, at 11:55 AM, a.l.m.bu...@lboro.ac.uk wrote: > > Hi, > >> IPv6 traffic roughly doubled in my view of the internet in th

Re: ARIN Region IPv4 Free Pool Reaches Zero

2015-09-24 Thread Jared Mauch
> On Sep 24, 2015, at 6:56 PM, Franck Martin via NANOG wrote: > > I think the next requirement for iOS apps: "We ran your app on an IPv6 only > network and it did not work. Your submission to the Apple store is > therefore denied." That’s forthcoming. https://developer.apple.com/videos/wwdc/20

Re: ARIN Region IPv4 Free Pool Reaches Zero

2015-09-24 Thread Jared Mauch
What people often miss is the front end doesn't need to be the same as the backend. The front should be v6, and using a service to do this for you isn't too hard. This is what many CDNs do. Jared Mauch > On Sep 24, 2015, at 6:57 PM, valdis.kletni...@vt.edu wrote: > > On

Re: SNMP - monitoring large number of devices

2015-09-29 Thread Jared Mauch
We built our own system for this purpose and just spawn one process per device being polled. This seems to work out OK and many cores can make this work out. You can also just split the workload horizontally across multiple servers. The challenges are as usual how to report from a dataset like

Re: Inexpensive probes for automated bandwidth testing purposes

2015-10-03 Thread Jared Mauch
If you are going to roll your own something like a raspberry PI would work. You can also build your own measurements with a platform like ripe atlas. It all depends if you want to run iperf3 tests or simple smokeping type of stuff to correlate errors. Jared Mauch > On Oct 3, 2015, at 6:27

Re: the crap mail flood and the nanog culture

2015-10-26 Thread Jared Mauch
> On Oct 25, 2015, at 6:22 PM, Randy Bush wrote: > > you might think that with all the committees, boards, badges, ... that > there was an actual operator in the nanog resume building circle who > would actually do something useful about the crap mail flood now into > its second day. I’ll cert

Re: EyeBall View

2015-10-26 Thread Jared Mauch
> On Oct 25, 2015, at 3:49 PM, Dovid Bender wrote: > > All, > > I had an idea to create a product where we would have a host on every EyeBall > network. Customers could then connect to these hosts and check connectivity > back to their network. For instance you may want to see what the speed

Re: Why is NANOG not being blacklisted like any other provider that sent 500 spam messages in 3 days?

2015-10-26 Thread Jared Mauch
Gopher or Archie anyone? These newfangled things confuse me. http://youtu.be/V8YBuwmtzYE Jared Mauch > On Oct 26, 2015, at 7:33 PM, Alan Buxey wrote: > > I was looking out for the sub-Reddit thread ;) > > alan

Re: Advance notice - H-root address change on December 1, 2015

2015-11-16 Thread Jared Mauch
is EOL from the NTP.org folks. The good news is most people don't need all 13 hints, or more when you consider them dual stacked like all new DNS servers are :-) Either way it's confusing to everyone involved and why I generally track fedora myself. Jared Mauch > On Nov 16, 20

Re: bad announcement taxonomy

2015-11-20 Thread Jared Mauch
Did someone say NAT? https://www.youtube.com/watch?v=v26BAlfWBm8 - Jared > On Nov 19, 2015, at 4:03 PM, Baker, Byrn wrote: > > Don't get on Kens bad side. > > > > -Original Message- > From: NANOG [mailto:nanog-boun...@nanog.org] On Behalf Of Ken Matlock > Sent: Thursday, November 19

Re: IPv6 Cogent vs Hurricane Electric

2015-12-03 Thread Jared Mauch
> On Dec 2, 2015, at 8:38 PM, Ryan Rawdon wrote: > > >> On Dec 1, 2015, at 1:23 PM, Max Tulyev wrote: >> >> Hi All, >> >> we got an issue today that announces from Cogent don't reach Hurricane >> Electric. HE support said that's a feature, not a bug. >> >> So we have splitted Internet again

Re: IPv6 Cogent vs Hurricane Electric

2015-12-03 Thread Jared Mauch
> On Dec 3, 2015, at 7:58 PM, Matthew Petach wrote: > > Or, if you feel that Cogent's stubborn insistence on > partitioning the global v6 internet shouldn't be rewarded > with money, pay someone *other* than cogent for > IPv6 transit and also connect to HE.net; that way > you still have access t

Re: IPv6 Cogent vs Hurricane Electric

2015-12-06 Thread Jared Mauch
> On Dec 6, 2015, at 2:56 AM, William Herrin wrote: > > On Sat, Dec 5, 2015 at 11:49 PM, Owen DeLong wrote: >> Where the definition of Full Table is everything that isn’t exclusively >> behind Cogent. > > I thought that was a full table in IPv4 as well? The disjoint is IPv4 they can reach ea

Re: Looking for VPS providers with BGP session

2015-12-08 Thread Jared Mauch
> > Thanks for your help, > > > > Philippe > > > > [EDSI-Tech Sarl]<http://www.edsi-tech.com> > > Philippe Bonvin, Directeur > > EDSI-Tech S?rl<http://www.edsi-tech.com> > > EPFL Innovation Park, Batiment C, 1015 Lausanne, S

Re: Binge On! - And So This is Net Neutrality?

2015-12-10 Thread Jared Mauch
> On Dec 10, 2015, at 2:32 PM, Chris Adams wrote: > > I could have paid more to get it faster, and some large-scale shippers > have special arrangements that seem to get their packages priority. How > is this different from Internet traffic? For me the better comparison is international postal

Re: Turkey .tr domains un-resolvable over IPv4 ?

2015-12-14 Thread Jared Mauch
I was told this was done due to a DDoS attack that originated outside turkey. I have been unable to locate someone with enough details that they could be assisted to bring this back online. We did look into traffic patterns on-network and saw attack traffic prior to the routes going away but w

Re: reliably detecting the presence of a bridge?

2015-12-15 Thread Jared Mauch
cy to the devices and infer from there. You can always make the latency longer, but making it shorter is much harder :) - Jared -- Jared Mauch | pgp key available via finger from ja...@puck.nether.net clue++; | http://puck.nether.net/~jared/ My statements are only mine.

Re: Nat

2015-12-19 Thread Jared Mauch
ent. After much effort and under duress it seems they are making progress and 2016 will be the year it happens. Jared Mauch > On Dec 19, 2015, at 10:17 AM, Sander Steffann wrote: > > > If the choice is between the IETF having to change standards vs some people > having to learn

Re: de-peering for security sake

2015-12-26 Thread Jared Mauch
> On Dec 25, 2015, at 3:10 PM, Colin Johnston wrote: > > why do the chinese network folks never reply and action abuse reports, normal > slow speed network abuse is tolerated, but not high speed deliberate abuse > albeit compromised machines Biggest reason I’ve seen is the same reason I delet

Re: de-peering for security sake

2015-12-26 Thread Jared Mauch
> On Dec 26, 2015, at 11:14 AM, Joe Abley wrote: > > With respect to ssh scans in particular -- disable all forms of > password authentication and insist upon public key authentication > instead. If the password scan log lines still upset you, stop logging > them. Or if you can’t get users to u

Re: Level3 DNS not resolving for our domains

2015-12-30 Thread Jared Mauch
> On Dec 30, 2015, at 5:12 PM, Alarig Le Lay wrote: > > On Wed Dec 30 15:48:26 2015, Otto Monnig wrote: >> rocketktg.com > > ;; ADDITIONAL SECTION: > ns1.rocketktg.com.244 IN A 68.235.47.109 > ns2.rocketktg.com.244 IN A 68.235.47.110

Re: Another Big day for IPv6 - 10% native penetration

2016-01-04 Thread Jared Mauch
> On Jan 4, 2016, at 11:09 AM, Ca By wrote: > >> On Mon, Jan 4, 2016 at 3:26 AM, Neil Harris wrote: >> >>> On 02/01/16 15:35, Tomas Podermanski wrote: >>> >>> Hi, >>> >>> according to Google's statistics >>> (https://www.google.com/intl/en/ipv6/statistics.html) on 31st December >>> 2015

Re: Another Big day for IPv6 - 10% native penetration

2016-01-05 Thread Jared Mauch
> On Jan 5, 2016, at 11:44 AM, Owen DeLong wrote: > > I bet if more people moved to clouds that have IPv6 support such as: > > Host Virtualvr.org > Softlayer softlayer.com > Linode linode.com > >

Re: SMS gateways

2016-01-09 Thread Jared Mauch
problem I had was setting the AT command to make it default to the right mode vs using usbmodeswitch in Linux, but mostly because this was the first device I used like this in over a decade myself. - Jared -- Jared Mauch | pgp key available via finger from ja...@puck.nether.net clue++; | http://puck.nether.net/~jared/ My statements are only mine.

Re: Looking for Yahoo eMail contact

2016-01-18 Thread Jared Mauch
nthly mailman item as spam. i've taken the approach of removing and blocking the user if I can ID them, but mostly just ignoring the spam report. much easier that way. you can't fix the users sadly, they arrived in a broken state. - jared -- Jared Mauch | pgp key available via finger from ja...@puck.nether.net clue++; | http://puck.nether.net/~jared/ My statements are only mine.

Re: IPv6 traffic percentages?

2016-01-20 Thread Jared Mauch
> On Jan 20, 2016, at 7:14 AM, nanog-...@mail.com wrote: > > Hello all, > > Would those with IPv6 deployments kindly share some statistics on their > percentage of IPv6 traffic? > > Bonus points for sharing top IPv6 sources. Anything else than the usual > suspects, Google/YouTube, Netflix and

Re: IPv6 traffic percentages?

2016-01-20 Thread Jared Mauch
> On Jan 20, 2016, at 9:31 AM, Job Snijders wrote: > > On Wed, Jan 20, 2016 at 11:13:41PM +0900, Randy Bush wrote: >>> I propose the following axiom: the greater the distance over which a >>> packet is forwarded, the less likely it is to be an IPv6 packet. >> >> that is a hypothesis not an axio

Re: RADb Outage?

2016-01-24 Thread Jared Mauch
> On Jan 23, 2016, at 1:50 PM, Max Tulyev wrote: > > People do prefix filtering based on *DB may think twice... Ideally you would have your own local mirror or similar. Since there is the near realtime mirroring that occurs, other servers get the data within 5-30 minutes. This means you can

Re: Programmable SFP+ Transcievers

2016-01-25 Thread Jared Mauch
I've done small runs of boards that can do this and also do the OEO part. Let me know off list if you are interested. Jared Mauch > On Jan 25, 2016, at 5:36 AM, Frederik Kriewitz wrote: > > Or if you prefer the do-it-yourself approach using a Raspberry Pi: > http://eoinpk.

Re: The IPv6 Travesty that is Cogent's refusal to peer Hurricane Electric - and how to solve it

2016-01-25 Thread Jared Mauch
set in the pipeline or released. There are some limited rib-> fib download boxes that could slice traffic in cost effective ways that the price conscious consumer will likely push the market to. Jared Mauch > On Jan 22, 2016, at 3:28 PM, Joe Maimon wrote: > > > I have a pen

Re: Netflix NOC? VPN Mismarked?

2016-01-27 Thread Jared Mauch
> On Jan 26, 2016, at 7:33 PM, Andrey Yakovlev wrote: > > One user had his wife sharing his Netflix account on her iPad while on a > conference to Europe (same account, different countries). Hmm, I seem to think this one might be quite common, so perhaps should be tied closer to the device vs

Re: Netflix NOC? VPN Mismarked?

2016-01-27 Thread Jared Mauch
Having them visit the excellent test-IPv6.com is the best and easiest way to get that info. Jared Mauch > On Jan 27, 2016, at 4:41 PM, Josh Luthman wrote: > > Are you talking about the same people that respond with "What is an IP?" > > > Josh Luthman > Off

Re: Equipment Supporting 2.5gbps and 5gbps

2016-01-29 Thread Jared Mauch
ub-$10 and patch cords for cheap too, so why spend >$50 on DAC cables when you can go fiber and save space and money? Walking into a colo and seeing orange or aqua cables always makes me sad as people overpaid and created themselves a future problem. - Jared -- Jare

Re: Cable Operator List

2016-02-02 Thread Jared Mauch
types of things. https://puck.nether.net/pipermail/cisco-ubr/ I can create a catv or similar list easily. good name suggestions welcome. - jared -- Jared Mauch | pgp key available via finger from ja...@puck.nether.net clue++; | http://puck.nether.net/~jared/ My statements are only mine.

Re: Devices with only USB console port - Need a Console Server Solution

2016-02-02 Thread Jared Mauch
etc.. Maybe they spent more time thinking about this than I am aware, but it's something I've not had a proper solution explained to me for. - Jared -- Jared Mauch | pgp key available via finger from ja...@puck.nether.net clue++; | http://puck.nether.net/~jared/ My statements are only mine.

Re: Cable Operator List

2016-02-02 Thread Jared Mauch
On Tue, Feb 02, 2016 at 02:26:14PM +, Nick Hilliard wrote: > Jared Mauch wrote: > > I can create a catv or similar list easily. good name > > suggestions welcome. > > "There are only two hard things in Computer Science: cache invalidation > and naming t

Re: Devices with only USB console port - Need a Console Server Solution

2016-02-02 Thread Jared Mauch
> On Feb 2, 2016, at 3:56 PM, William Herrin wrote: > > On Tue, Feb 2, 2016 at 9:11 AM, Jared Mauch wrote: >>Yes, but I'm always concerned about what boot messages are lost >> or things you can't quite do properly (like send break, etc) to get into >

Re: algorithm used by (RIPE region) ISPs to generate automatic BGP prefix filters

2016-02-04 Thread Jared Mauch
> On Feb 4, 2016, at 6:58 AM, Henrik Thostrup Jensen wrote: > >> In addition, in case of "as-set", an ISP needs to recursively find all the >> AS numbers from "members" attributes because "as-set" can include other >> "as-sets"? > > Some irrd servers, can expand this automatically (I think).

Re: algorithm used by (RIPE region) ISPs to generate automatic BGP prefix filters

2016-02-04 Thread Jared Mauch
e router and only send a delta, > or do you send the whole acl? We send the whole ACL. (infact, we send the full router config each time). - Jared -- Jared Mauch | pgp key available via finger from ja...@puck.nether.net clue++; | http://puck.nether.net/~jared/ My statements are only mine.

Re: algorithm used by (RIPE region) ISPs to generate automatic BGP prefix filters

2016-02-04 Thread Jared Mauch
trying to wedge something in, or alter a schema from one that works to one that is more technically pure and make it harder to do work. you must also have the culture that works with the tools, it can't be the one tool that $powerUser operates, it has to be part of the busines pro

Re: Cisco ASR9010 vs Juniper MX960

2016-02-18 Thread Jared Mauch
> On Feb 18, 2016, at 10:51 AM, Nick Hilliard wrote: > > In other words, "hitless" does not mean "not service impacting". I would assume any SMU impacts traffic and requires a reboot or a line card reset. There are types of SMUs that touch low level parts and require a reboot, in which case

Re: Thank you, Comcast.

2016-02-25 Thread Jared Mauch
SSDP, DNS and other amplification is a big issue for large consumer networks like Comcast. This is something I’m hoping other vendors take seriously (eg: Netgear) when it comes to their usage of DNSMASQ and other tools on-box and iptables configs that promote spoofing by using IP ranges vs cons

Re: Thank you, Comcast.

2016-02-26 Thread Jared Mauch
osed to. As a community we need to determine if this background radiation and these responses are proper. I think it's a good response since vendors can't do uRPF at line rate and the major purchasers of BCM switches don't ask for it and aren't doing it, so it's not optimiz

Re: Thank you, Comcast.

2016-02-26 Thread Jared Mauch
> On Feb 26, 2016, at 12:42 PM, John Levine wrote: > > Huh. Is it 1998 again? More like NANOG again. - jared

Re: Thank you, Comcast.

2016-02-26 Thread Jared Mauch
Disconnecting the US isn’t a viable solution. > On Feb 26, 2016, at 1:48 PM, Dovid Bender wrote: > > We all know what countries this traffic is coming from. While you can > threaten the local ISP's the ones over seas where the traffic is coming from > won't care.

Consumer Equipment Sucks (Re: Thank you, Comcast.)

2016-02-26 Thread Jared Mauch
> On Feb 26, 2016, at 2:28 PM, Livingood, Jason > wrote: > > I think the bigger culprit is not the stuff ISPs buy but what consumers > buy (aka COAM). I’m certainly not a comcast apologist, (I do wish they would service the communities where they had their call centers, like here in the unser

Re: Duplex negotiation over 100Base fibre

2016-02-29 Thread Jared Mauch
> On Feb 29, 2016, at 11:07 AM, Jason Lixfeld wrote: > > Hello, > > My understanding is that for 1G and 10G optical networks, there is no concept > of half-duplex mode, but I’m unclear about half duplex in the 100M optical > world. Specifically, if I connect two 100Base-LX (or BX) transceive

Re: MetroE and Telephone Taxes

2016-02-29 Thread Jared Mauch
> On Feb 29, 2016, at 7:20 PM, Sam Norris wrote: > > Hey all, > > My provider here in SoCal is charging me 8% or so telephone taxes on our > MetroE > products. This seems fishy to me and I can't find any cut and dry rules about > private Ethernet / MetroE being under these rules. The same pr

Re: 10gig pricing with Verizon crazy?

2016-03-19 Thread Jared Mauch
> On Mar 16, 2016, at 5:48 PM, David Hubbard > wrote: > > Curious if anyone has had similar experience; looking for a 10gig transit > circuit at a colo, contacted VZ as they’re on net in the facility, quoted me > an astronomical amount at 10-20x going rates these days. I’m curious if I > ju

Re: Wireless (WiFi) MOS equivalent?

2016-03-20 Thread Jared Mauch
I've seen some conferences do a virtual participant device that joins the wifi and reports back data. Jared Mauch > On Mar 16, 2016, at 1:54 PM, Jim Wininger wrote: > > Hello all, > > Is there a WiFi equivalent to the VoIP MOS score? > > We are looking for a way t

Re: NTT communications horrible routing, unresponsive NOC

2016-03-24 Thread Jared Mauch
tware upgrade combined with hardware work, but an operational issue like this should have been resolved. I'd like to understand the timeline and what broke down if anything. Thanks, Jared Mauch > On Mar 23, 2016, at 7:39 PM, Paras Jha wrote: > > Hi all, > > I've

Re: Stop IPv6 Google traffic

2016-04-10 Thread Jared Mauch
I don't understand the motive here. You want to provide a partial view of the IPv6 table, but sans Google? Do you as a network do the same for v4? If not, you really need to consider having congruent implementations. - jared > On Apr 10, 2016, at 9:29 AM, Max Tulyev wrote: > > Hi All, > >

Re: GeoIP database issues and the real world consequences

2016-04-11 Thread Jared Mauch
> On Apr 11, 2016, at 1:34 PM, Steve Mikulasik > wrote: > > Just so everyone is clear, Maxmind is changing their default locations. > > " Now that I’ve made MaxMind aware of the consequences of the default > locations it’s chosen, Mather says they’re going to change them. They are > picking

Re: how to deal with port scan and brute force attack from AS 8075 ?

2016-04-11 Thread Jared Mauch
> On Apr 11, 2016, at 2:18 PM, Owen DeLong wrote: > > I could be wrong, IANAL, but I’d be surprised if a mere portscan would > actually be treated as a violation for the reasons cited above. > >> Not that I've ever heard of someone being fined but you're definitely >> in to "something wrong" t

Re: OT: VPS with Routed IP space

2015-02-24 Thread Jared Mauch
> On Feb 24, 2015, at 7:45 PM, William Herrin wrote: > > On Tue, Feb 24, 2015 at 1:18 PM, Alex Buie wrote: >> Anybody know of or have recommendations for providers of small >> VPS-line boxen (or alternative solutions) to serve as GRE endpoints? >> (for a small amount of IP addresses, /29 or /28

Re: [OT] Looking for dhs / fbi contact

2015-02-26 Thread Jared Mauch
Jamie, have you tried calling the local FBI office? I’ve had good luck with this when someone was sending me death threats and wanted them to have some good leads if something happened to me. You know where to find me if you want to ask questions off-list. Also, DHS is a sprawling agency, so

Re: distinguishing eBGP from show ip BGP

2015-03-11 Thread Jared Mauch
fts in traffic. internal tagged routes will have a higher preference when reaching a network, so there are some networks that may reset the origin to influence the policy of a 3rd party network. - Jared -- Jared Mauch | pgp key available via finger from ja...@puck.nether.net clue++; | http://puck.nether.net/~jared/ My statements are only mine.

Re: distinguishing eBGP from show ip BGP

2015-03-11 Thread Jared Mauch
> On Mar 11, 2015, at 2:59 PM, Mark Tinka wrote: > > > > On 11/Mar/15 20:51, Jared Mauch wrote: >> >> NTT (2914) tags routes based on if they are a customer, peer >> and with geographic communities based on where the route enters our >> network. M

Re: Traceroute from within Colombia?

2015-03-20 Thread Jared Mauch
ia, and I’m trying to verify that. > > Much appreciated, and my apologies for using the list this way. > > -Bill > > > > -- Jared Mauch | pgp key available via finger from ja...@puck.nether.net clue++; | http://puck.nether.net/~jared/ My statements are only mine.

Re: 802.11 based WISP hardware

2015-03-27 Thread Jared Mauch
I would also caution those considering ubiquiti for anything fixed right now. They have a number of unaddressed issues with UNII frequencies and DFS. Jared Mauch > On Mar 27, 2015, at 7:33 AM, Mike Hammett wrote: > > Ken Chipps, there's a name I haven't seen in a while.

Re: Usage data from Turkey

2015-03-31 Thread Jared Mauch
for as much as useful network > usage information possible related to Turkey. > You may want to look at the RIPE Atlas project, they jsut did a similar thing on the power outage in The Netherlands. - Jared -- Jared Mauch | pgp key available via finger from ja...

Re: From Europe to Australia via right way

2015-04-02 Thread Jared Mauch
. I am less concerned about another 25-100ms if there is little jitter and zero loss. - Jared [1] - https://twitter.com/jaredmauch/status/583227901555961856 -- Jared Mauch | pgp key available via finger from ja...@puck.nether.net clue++; | http://puck.nether.net/~jared/ My statements are only mine.

Re: From Europe to Australia via right way

2015-04-02 Thread Jared Mauch
> On Apr 2, 2015, at 10:15 AM, Martin Hepworth wrote: > > The new AAE-1 will have 40Tbps connections from Europe to Hong Kong so > hopefully the routes will start to migrate in 2016 and give us an Easterly > route to APAC that has enough capacity to be stable in that direction I think this stab

Re: From Europe to Australia via right way

2015-04-02 Thread Jared Mauch
> On Apr 2, 2015, at 10:27 AM, Mark Tinka wrote: > > > > On 2/Apr/15 16:23, Jared Mauch wrote: >> I think this stability is key, I’ve been watching a testing team go round and >> round with a telco that seems to think that 1 second hits is acceptable >>

Re: Galaxy S6 is IPv6 on all US National Mobile carriers

2015-04-13 Thread Jared Mauch
> On Apr 13, 2015, at 9:02 PM, Christopher Morrow > wrote: > > On Mon, Apr 13, 2015 at 7:30 PM, Will Dean wrote: > >> Reddit started using CloudFlare late last year, so they should able to >> serve content up over v6. >> > > nice! Sorry to rain on your parade: dhcp-7f01:~ jared% host

Re: Galaxy S6 is IPv6 on all US National Mobile carriers

2015-04-13 Thread Jared Mauch
> On Apr 13, 2015, at 9:48 PM, Christopher Morrow > wrote: > > that 'clearly' reddit could have cloudflare serve the endpoint from an > ipv6 address, and thus populate a in reddit.com's domain. > > maybe it's not that simple. Well, it usually really is but just like automation, ipv6 isn’

nanog@nanog.org

2015-05-12 Thread Jared Mauch
; > Paul Lam | Network Administrator > T: +1(613) 224-6738 x257 | M: > www.fuelyouth.com<http://www.fuelyouth.com> -- Jared Mauch | pgp key available via finger from ja...@puck.nether.net clue++; | http://puck.nether.net/~jared/ My statements are only mine.

Re: Usage of Teredo and IPv6 for P2P on Windows 10 and Xbox One

2015-05-18 Thread Jared Mauch
ich are never updated/maintained. I've been looking for a research team that has the time to undertake this effort of documenting things and pushing for broad scale recommendations and fixes. With the desires of the homenet WG at IETF to make the complex layers of networks e

Re: your mail

2015-05-19 Thread Jared Mauch
marc_moderation_action) as it will preserve the thread in a sensible way. I feel it's quite damaging to keep injecting this into the thread. One should also clear the dmarc_wrapped_message_text setting. - Jared -- Jared Mauch | pgp key available via finger from ja...@puck.net

Re: Measuring DNS Performance & Graphing Logs

2015-05-21 Thread Jared Mauch
> On May 21, 2015, at 12:00 PM, char...@thefnf.org wrote: > >> can u suggest some suitable tools that i can measure the performance of the >> dns servers? > > What sort of performance? What metrics are you trying to track? Please > provide more details about exactly what you want. > That will h

Re: bing on v6

2015-05-21 Thread Jared Mauch
> On May 21, 2015, at 3:34 PM, Bajpai, Vaibhav > wrote: > > Dear NANOG, > > We do not see entries for www.bing.com since Sep 2013 anymore [1]. > For sure this is only from our measurement vantage points, so may not > be true globally. Does anybody know the backstory of what happened? > >

Re: Multiple vendors' IPv6 issues

2015-05-27 Thread Jared Mauch
ing the next generation something that doesn't apply anymore. - Jared -- Jared Mauch | pgp key available via finger from ja...@puck.nether.net clue++; | http://puck.nether.net/~jared/ My statements are only mine.

Re: Capacity/transit costs vs growth

2015-05-27 Thread Jared Mauch
ld fiber to me, but it's much cheaper to do something else (yay WISP). Unless there is some risk of business loss due to having a rate, there is no incentive for change. I await someone willing to issue a press release so Comcast or AT&T will take these territories without basic bro

Routing Insecurity (Re: BGP in the Washington Post)

2015-06-01 Thread Jared Mauch
> On Jun 1, 2015, at 10:08 AM, Ca By wrote: > The article left me with the feeling that there was a secure version of BGP > that is available but network operators are too short-term-focused and > foolish to deploy it. > > I believe the situation is more complicated than that, no? There is no >

Re: eBay is looking for network heavies...

2015-06-05 Thread Jared Mauch
> On Jun 5, 2015, at 7:13 PM, John Fraizer wrote: > > Head of line for CCIE / JNCIE but knowledge and experience trumps a piece > of paper every time! Can you please put these at the back of the line? My experience is that the cisco certification (at least) is evidence of the absence of actual

Re: Tunable SFP

2015-06-06 Thread Jared Mauch
They do exist. They tend to have tighter link budgets as compared to XFP tunable optics. Don't expect to go as far due to the receiver sensitivity. Jared Mauch > On Jun 6, 2015, at 1:29 PM, Frank Bulk wrote: > > Anyone know if tunable SFPs exist? I've googled aroun

Re: Tunable SFP

2015-06-06 Thread Jared Mauch
https://www.finisar.com/optical-transceivers/ftlx6872mcc Finisar is now selling direct now. Let me know in private if you need a sales contact there. Jared Mauch > On Jun 6, 2015, at 1:45 PM, Frank Bulk wrote: > > Thanks -- can you point me to any suppliers? > > Frank >

Re: Android (lack of) support for DHCPv6

2015-06-09 Thread Jared Mauch
> On Jun 9, 2015, at 4:40 PM, Doug Clements wrote: > > - Most WPA2-Enterprise schemes are sullied with warnings about traffic > being monitored as a response to private CAs being installed. I had this issue at the last NANOG meeting, I sometimes share my wifi with an embedded platform connecte

Re: Android (lack of) support for DHCPv6

2015-06-09 Thread Jared Mauch
> On Jun 9, 2015, at 4:43 PM, Mikael Abrahamsson wrote: > > On Tue, 9 Jun 2015, Joel Maslak wrote: > >> Agreed - apparently the solution is to implement SLAAC + DNS advertisements >> *AND* DHCPv6. Because you need SLAAC + DNS advertisements for Android, and >> you need DHCPv6 for Windows. >>

Re: Android (lack of) support for DHCPv6

2015-06-10 Thread Jared Mauch
> On Jun 10, 2015, at 8:06 AM, Lorenzo Colitti wrote: > > On Wed, Jun 10, 2015 at 8:30 PM, Karl Auer wrote: > >> Seems to me that N will vary depending on what you are trying to do. > > > Remember, what I'm trying to do is avoid user-visible regressions while > getting rid of NAT. Today in I

Re: Lists of VPN exit addresses?

2015-06-10 Thread Jared Mauch
> On Jun 10, 2015, at 8:08 AM, Roland Dobbins wrote: > > > On 10 Jun 2015, at 18:56, John Levine wrote: > >> I presume there is no need to explain why this would be of interest. > > To keep consumers who've legitimately purchased/rented/subscribed to content > from accessing same when they t

Re: Android (lack of) support for DHCPv6

2015-06-10 Thread Jared Mauch
> On Jun 10, 2015, at 8:48 AM, Chris Adams wrote: > > Except for the ones that don't. Tethering is far from "just works, > period." VPNs, VOIP, and games are things that don't always just work > (behind any kind of NAT). Please don’t bring facts into a discussion about ideologies of IPv6.

Re: Android (lack of) support for DHCPv6

2015-06-10 Thread Jared Mauch
> On Jun 10, 2015, at 11:36 AM, Jeff McAdams wrote: > > There is no other rational way to interpret your statement than to be a > statement of Google's position. As someone who posts from a personal email but my management has told me that I’m well identifiable as who I work for, I’m sympathe

Re: Open letter to Level3 concerning the global routing issues on June 12th

2015-06-12 Thread Jared Mauch
> On Jun 12, 2015, at 1:36 PM, Todd Underwood wrote: > > it's probably far better for everyone in such a situation to simply never > post anything. :-/ Yeah it was a bad move trying to equate those two and causes the exact impact you expect. :( - Jared

Re: Open letter to Level3 concerning the global routing issues on June 12th

2015-06-12 Thread Jared Mauch
> On Jun 12, 2015, at 1:40 PM, jim deleskie wrote: > > Todd, > > One of my few work "regrets" is we where not able to move this forward. > There was/is lots of value in it. There are many of us trying to tilt at these topics in various ways. I know that at $dayjob we try to keep things clean

<    4   5   6   7   8   9   10   11   12   13   >