Re: Routed optical networks

2023-05-15 Thread joel
> On May 13, 2023, at 4:03 AM, Mark Tinka wrote: > > > > On 5/12/23 22:14, Mike Hammett wrote: > >> "I remember 10y ago every presentation started from the claim that 100B of >> IoT would drive XXX traffic. It did not happen" >> >> Often the type of people making these kinds of predictions

Re: Office 365 Calendar support for macOS Calendar App (Mark Tinka)

2023-05-24 Thread joel
I had to do that awhile back as well when I was still on O365. > On May 23, 2023, at 10:49 AM, Kovich Greg via NANOG wrote: > > Long time Mac user and I found the same problem when I updated my computer > and laptop to the latest OS - Ventura. > > While my phone still was able to see and man

Re: U.S. test of national alerts on Oct. 4 at 2:20pm EDT (1820 UTC)

2023-10-04 Thread joel
> On Oct 4, 2023, at 3:27 PM, Matthew Petach wrote: > > On Wed, Oct 4, 2023 at 12:25 PM Sean Donelan > wrote: >> >> Emergency alerts are built into all android, ios and other mobile phones >> sold in almost every country during the last 5 years. GSM standards are >

Re: AWS WAF list

2024-02-20 Thread joel
There are other WAF lists available on AWS besides their native one. Ones that have support. > On Feb 20, 2024, at 16:18, George Herbert wrote: > > This is terrible advice, but you might need another netblock for the > eyeballs. Possibly a small one with enterprise NAT, but something outside

Re: Any info on AT&T Wireless Outage?

2024-02-28 Thread joel
I read it as “someone pushed an ACL that wasn’t properly reviewed and it really screwed things up." > On Feb 27, 2024, at 21:41, Mark Seiden wrote: > > aside from the official pablum that was released about an “incorrect process > used” > (which says exactly nothing) does anyone actually know

Re: Best TAC Services from Equipment Vendors

2024-03-11 Thread joel
hone asked this? > > Admittedly, we are going through a rough patch in terms of support, but it is > not out of line with the past decade's experiences. > > > michael brooks > > On Thu, Mar 7, 2024 at 12:47 PM Joel Esler <mailto:j...@joelesler.net>> wrote: >&

Re: Best TAC Services from Equipment Vendors

2024-03-11 Thread joel
> On Mar 11, 2024, at 12:54, michael brooks - ESC > wrote: > >> It may be a pain in the butt to get Cisco equipment, but their TAC is >> sublime. If something is critical enough, and you push hard enough, Cisco >> will move heaven and earth to solve your issue. > > >This was an amazing l

Re: etiquette for replying to daily digests

2024-11-08 Thread joel
> On Nov 8, 2024, at 15:58, William Herrin wrote: > >> On Nov 8, 2024, at 14:14, Alex Buie > > wrote: >> I (and I'm sure many of you) subscribe to daily digests from NANOG to keep >> things concentrated. However, there are sometimes messages in the digest I'd >> lik

Re: etiquette for replying to daily digests

2024-11-08 Thread joel
Generally speaking, you want to trim the digest to the relevant posts, bottom posting your reponse (if you’re interested in nitpicking). This practice was prevalent until Microsoft Outlook introduced the top post culture. Let’s not go down that rabbit hole. Additionally, editing the subject lin

Re: A plea to ignore abuse reports from "watchdogcyberdefense.com"

2024-11-06 Thread joel
Aww BlackICE. I was talking to Robert not too long ago about this. A simpler time. > On Nov 6, 2024, at 11:01, Warren Kumari wrote: > > So, who here remembers "BlackICE Defender"? > > It was MS Windows software which would watch for and protect against > "attacks", draw pretty charts and gr

Re: Soooo..... Netflix

2024-11-18 Thread joel
Also, how far have we come that 65 MILLION streams were active at the same time and we’re like “omg, so bad!” 5 years ago, never possible. That being said. I watched it on my iPad with no problems whatsoever. Not even one hiccup. Meanwhile I had X open in a side by side and I saw people com

Re: Chairman of Senate Intelligence Committee calls salt typhoon "worst telecom hack in our nation's history"

2024-11-26 Thread joel
> On Nov 26, 2024, at 12:26, Christopher Morrow wrote: > > On Tue, Nov 26, 2024 at 3:57 AM Eric Kuhnke wrote: >> >> Re: compromise of lawful intercept / CALEA related features: > > Uhm, which of course 'no one saw coming'... > >> >> https://archive.is/jZt59 >> >> Original URL: >> https:

Re: New home builders without wires

2024-12-05 Thread joel
If I ever build the next house, I’ll ensure that Ethernet is installed just as extensively as electric wiring. > On Dec 5, 2024, at 10:23, Tom Deligiannis wrote: > > NDI or similar? I don't follow. Cable TV, Cable Internet and sat TV aren't > distributed (to homes) using NDI, they use coax. >

Re: New home builders without wires

2024-12-04 Thread joel
Coaxial cable runs from the street to my house at my most recent purchase. All the “cable boxes” in the house are wireless. They are essentially whitelisted Android TV boxes. — Joel Esler Vice President, Security ThreatSTOP > On Dec 4, 2024, at 16:12, Jerry Cloe wrote: > >

Re: New home builders without wires

2024-12-27 Thread joel
I just wish I had the hook up at my local ISP (Armstrong). They are currently running fiber to replace their Coax infrastructure, but they haven’t done it down my street yet. I wish they would! > On Dec 27, 2024, at 17:56, Mike Hammett wrote: > > "The builder/owner is responsible for constru

Re: Reliable GeoIP database

2025-02-03 Thread joel
100%. We have certain things we do here at ThreatSTOP that isolate some locations based on the upstream provider because all of the GeoIP databases are wrong. If we collectively understand that GeoIP is “best guess” or “best attempt” and not gospel, we’d all be better off. — Joel Esler Vice

Re: TCP torture testing

2025-01-17 Thread joel
If you want to go nuts, check out Scapy > On Jan 17, 2025, at 13:13, Brandon Martin wrote: > > Does anyone know of a good way to simulate oddball TCP happenings like: > > * Out of order delivery > * Variable delivery delays > * (Especially) Unusual segmentation e.g. splitting part of a stream t

Re: Anycast but for egress

2021-08-01 Thread Joel Jaeggli
On 7/27/21 10:54, Vimal wrote: > (Unsure if this is the right forum to ask this question, but here goes:) > > From what I understand, IP Anycast can be used to steer traffic into a > server that's close to the client. > > I am curious if anyone here has/encountered a setup where they use > anycast

Re: Outbound Route Filtering (ORF) vendor support

2021-08-18 Thread Joel Halpern
You may want to examine the IDR lsit archive https://mailarchive.ietf.org/arch/browse/idr/?q=orf for discussion of the orf proposal and the difficulties people have with it. Yours, Joel On 8/18/2021 1:10 PM, Douglas Fischer wrote: Hello! I also found a recent draft(expires Novembre 2021

Re: Hi-Rise Building Fiber Suggestions

2020-02-25 Thread Joel Jaeggli
Sent from my iPhone > On Feb 25, 2020, at 18:34, Norman Jester wrote: > > I’m in the process of choosing hardware > for a 30 story building. If anyone has experience with this I’d appreciate > any tips. > > There are two fiber pairs running up the building riser. I need to put a POE > swi

Re: understanding IPv6

2020-06-07 Thread Joel Halpern
ggest difference between this and earlier changes along this line is that the wireless broadcast problem provides motivation for the change, where earlier efforts were more ~wouldn't it just be simpler if...~ Yours, Joel Halpern On 6/7/2020 2:28 PM, Etienne-Victor Depasquale wrote: What I'm a

Re: Network card with relay in case of power failure

2020-06-17 Thread Joel Jaeggli
> On Jun 17, 2020, at 13:14, Dovid Bender wrote: > > Hi, > > I am sorry if this is off topic.I was once demoed a network device that had > two interfaces. The traffic would go through the device. If there was a power > cut or some other malfunction there would be a relay that would physical

Re: 60 ms cross-continent

2020-06-20 Thread Joel Jaeggli
Sent from my iPhone > On Jun 20, 2020, at 9:27 AM, William Herrin wrote: > > Howdy, > > Why is latency between the east and west coasts so bad? Speed of light > accounts for about 15ms each direction for a 30ms round trip. Where > does the other 30ms come from and why haven't we gotten rid

DNS & IP address management

2021-09-22 Thread Joel Sommers
ctice, but we are wondering if there are other operational reasons that might be behind what we observe. Thank you for any insights you have -- please feel free to respond off-list. Regards, Joel Sommers

Re: are underwater routers a thing?

2022-03-17 Thread Joel Jaeggli
On 3/17/22 18:42, Michael Thomas wrote: I was reading an article in the Economist about a new fiber route down the Red Sea from Israel and wondered if there were any branches off of those lines and where the routers were for them. The route kind of made it look like it was completely at sea,

Re: ISP data collection from home routers

2022-03-25 Thread Joel Busch
it. I remember reading some discussion around ISPs selling browsing behavior data that they collect from their subscribers in the tech press during Pai's term as the head of the FCC. It was probably on Ars Technica or Techdirt. Thanks, Giovane Moura Best, Joel -- Joel Busch, Netw

Re: FCC vs FAA Story

2022-06-06 Thread Joel Jaeggli
On 6/6/22 07:55, John R. Levine wrote: Five years ago everyone knew that C band was coming.  A reasonable response would have been for the FAA to work with the FCC to figure out which altimeters might be affected (old cruddy ones, we now know), and come up with a plan and schedule to replace

Carrier Options in Bogota

2022-07-01 Thread Joel Jaeggli
  > On Jul 1, 2022, at 6:50 AM, nanoguser99 via NANOG wrote: >  > Nanog, > > I need good connectivity to local eyeball networks there. I've explored > Cogent, Lumen, and a local clled Telxius and results are all over the map. > Is there a provider that's 'well peered' with all the locals

Re: Jon Postel Re: 202210301538.AYC

2022-11-07 Thread Joel Jaeggli
some minor observations from the vantage point of a former AD inline. On 11/2/22 17:48, Donald Eastlake wrote: On Mon, Oct 31, 2022 at 12:03 PM Vasilenko Eduard wrote: It is believed by many that 2 terms should be the maximum for one position of any chair (if it is a democracy). Although thi

Re: BCP38 For BGP Customers

2022-11-08 Thread Joel Halpern
address the shortcomings in BCP 38.  In fairness, there is distinct disagreement as to what those shortcomings are, and whether the ideas being presented can help.  Input from more operators would be great.  (For completeness, I am a co-chair of that working group.) Yours, Joel On 11/8/2022 9

Re: [EXTERNAL] Re: BCP38 For BGP Customers

2022-11-08 Thread Joel Halpern
-sav-approach On 11/8/2022 12:17 PM, Compton, Rich A wrote: Hi Joel, can you please point us to the IETF draft document that describes how a "combination of ASPA and RPKI can be used to help with DDoS prevention". I was not able to find it. Thanks! -Rich On 11/8/22, 8:05 AM, "

Re: Auth0 geolocation?

2023-04-10 Thread Joel Esler
I bet money it’s maxmind. — Sent from my iPhoneOn Apr 6, 2023, at 20:33, Tim Burke wrote: Anyone know who Auth0 is using for geolocation services? Have a customer reporting that Auth0, Lowes, Bank of America, and some other sites are reporting their IP in the wrong location. Checked the usual

Re: Northern Virginia has had enough with data centers

2023-06-23 Thread Joel Halpern
it is a side-effect of the build itself. Yours, Joel On 6/23/2023 6:17 PM, Sean Donelan wrote: Northern Virginia has about 275 data centers The noise complaints are about HVAC fan noise (24-hour droning) from cooling towers or roof top farms of evaporative condensers. The water complaints

Re: QoS for Office365

2019-07-09 Thread Joel Jaeggli
> On Jul 9, 2019, at 07:19, Mark Tinka wrote: > > > > On 9/Jul/19 16:18, Ross Tajvar wrote: >> I think the difficulty lies in appropriately marking the traffic. Like >> Joe said, the IPs are always changing. > > Does anyone know if they are reasonably static in an Express Route scenario? E

Re: Colo in Africa

2019-07-16 Thread Joel Jaeggli
> On Jul 16, 2019, at 07:33, Ken Gilmour wrote: > > Hi Folks, > > I work for a Security Analytics org and we're looking to build a small POP in > Africa. I am pretty clueless about the region so I was wondering if you could > help guide me in the right direction for research? > > The challe

Re: netstat -s

2019-07-20 Thread Joel Jaeggli
On 7/17/19 17:54, Randy Bush wrote: > do folk use `netstat -s` to help diagnose on routers/switches? I suspect there's an unstated question here of should metrics reported by netstat -s  which includes metrics from the kernel should include metrics derived from from the asic counters. I do / hav

Re: Traffic visibility tools

2019-07-24 Thread Joel Jaeggli
On 7/24/19 09:16, Kenny Taylor wrote: > > Good morning, > >   > > I hate to pull away from the 44/8 fire (KJ6BSQ here, and former > AMPRnet user), but I’d like to get some advice from the community on > traffic visibility tools.. > >   > > We use a pair of appliances called Exinda for traffic shap

Re: Security alert aggregator?

2019-09-16 Thread Joel Whitehouse
ed as an RSS feed: https://www.us-cert.gov/ncas/bulletins -- Joel Whitehouse Software Developer +1.319.521.7762

Re: IPv6 Pain Experiment

2019-10-07 Thread Joel Halpern
of special cases. Yours, Joel On 10/7/2019 10:58 PM, Michel Py wrote: William Herrin wrote : I was out to prove a point. I needed a technique that, at least in theory, would start working as a result of software upgrades alone, needing no configuration changes or other operator intervention

Re: Wikipedia drops support for old Android smartphones; mandates TLSv1.2 to read

2019-12-31 Thread joel jaeggli
On 12/31/19 07:10, Seth Mattinen wrote: > On 12/31/19 12:50 AM, Ryan Hamel wrote: >> Just let the old platforms ride off into the sunset as originally >> planned like the SSL implementations in older JRE installs, XP, etc. >> You shouldn't be holding onto the past. > > > Because poor people anywh

Re: Wikipedia drops support for old Android smartphones; mandates TLSv1.2 to read

2019-12-31 Thread joel jaeggli
On 12/31/19 08:25, Seth Mattinen wrote: > On 12/31/19 8:10 AM, joel jaeggli wrote: >> Argumentation on the basis of a tu quoque fallacy doesn't really add >> much to the dicussion. Depreciating potentialy dangerous and definitely >> obsolete protocols does not make you

Re: 5G roadblock: labor

2020-01-02 Thread joel jaeggli
On 1/2/20 06:09, Mike Hammett wrote: > I know there are a couple companies doing it, but compute at the tower > isn't going to go anywhere. It makes very little sense to put it at the > tower when you can put it in one location per metro area. The bottom of a tower is a fantastically expensive pie

Re: Latency, TCP ACKs and upload needs

2016-04-19 Thread joel jaeggli
On 4/19/16 6:29 PM, Jean-Francois Mezei wrote: > As part of the ongoing CRTC hearings, the incumbents' claim that > continued implementation of the current 5/1 standard would make Canada a > world leader for broadband in the future. > > A satellite company who currently can't even deliver its adve

LDP flaps specifically present on ACX Juniper routers (ACX4000 and ACX1100)

2016-04-24 Thread joel ahumuza
time interval on the same ldp enabled interfaces. - setting the ldp session protection setting on the ldp enabled loopback interface. Unfortunately the actions did not yield much since the flaps have been ongoing. Anyone have any Idea on what the problem / solution might be? -- Blessings, Joel

Re: Cost-effectivenesss of highly-accurate clocks for NTP

2016-05-15 Thread joel jaeggli
On 5/15/16 10:05 AM, Eric S. Raymond wrote: > Mel Beckman : >> The upshot is that there are many real-world situations where >> expensive clock discipline is needed. But IT isn't, I don't think, >> one of them, with the exception of private SONET networks (fast >> disappearing in the face of metro

Re: Netflix VPN detection - actual engineer needed

2016-06-05 Thread joel jaeggli
HE's downstream cone does not include a whole lot of residential ISPs. if you further exclude the ones that are multihomed you're left with a pretty small subset. that said they (HE) can be and are a valuable peer both in v4 and v6. Personally I wouldn't single home to anything that looks tier-1is

Re: Netflix VPN detection - actual engineer needed

2016-06-05 Thread joel jaeggli
On 6/5/16 6:23 PM, Josh Reynolds wrote: > Uhm, what? Where do you think ISPs get their transit exactly? They buy from 2 or more wholesale transit providers and in general they opportunistically peer, although scale helps a lot there. > On Jun 5, 2016 8:17 PM, "joel jaeggli&qu

Re: Netflix VPN detection - actual engineer needed

2016-06-07 Thread joel jaeggli
On 6/7/16 6:55 AM, Cryptographrix wrote: > As I said to Netflix's tech support - if they advocate for people to turn > off IPv6 on their end, maybe Netflix should stop supporting it on their end. > > It's in the air whether it's just an HE tunnel issue or an IPv6 issue at > the moment, and if thei

Re: Netflix VPN detection - actual engineer needed

2016-06-08 Thread joel jaeggli
On 6/8/16 9:13 AM, Owen DeLong wrote: > As of last week, I still wasn’t getting an IPv6 address by default on my > iPhone 6S+ > on T-Mobile. turn off mobile hotspot... > Just saying. > > Owen > >> On Jun 7, 2016, at 11:00 AM, Ca By wrote: >> >> On Tuesday, June 7, 2016, Cryptographrix wrote:

Re: Detecting Attacks

2016-06-12 Thread joel jaeggli
On 6/10/16 10:39 PM, subashini hariharan wrote: > Hello, > > I am Subashini, a graduate student. I am interested in doing my project in > Network Security. I have a doubt related to it. > > The aim is to detect DoS/DDoS attacks using the application. I am going to > use ELK (ElasticSearch, Logsta

Re: Link-local v6 and mobile phones

2016-06-15 Thread joel jaeggli
On 6/15/16 8:56 AM, Willy MANGA wrote: > Hello, > > a little question :) > > For mobile operators using v6 on their networks, how do you manage > link-local communication between mobile phones ? the link local address is bound to eps bearer the other end of which is the p-gw. so it's a point-to

Re: 1GE L3 aggregation

2016-06-16 Thread joel jaeggli
On 6/16/16 12:51 AM, Saku Ytti wrote: > Hey, > > I've been bit poking around trying to find reasonable option for 1GE > L3 full BGP table aggregator. It seems vendors are mostly pushing > Satellite/Fusion for this application. > > I don't really like the added complexity and tight coupling > Sate

Re: Quick question regarding: Problematic IPv6 Multicast traffic within an IX.

2016-06-24 Thread joel jaeggli
On 6/24/16 9:27 AM, Bob Evans wrote: > > Is it true that managed Layer2 switches used by IX's can not block IPv6 > multicast ingress port traffic from broadcasting to all ports ? you can filter multicast destination addresses by acl. NDP you kinda need since it replaces ARP RA's you can and sho

Re: Real world power consumption of a 7604-S or 7606-S

2016-06-27 Thread joel jaeggli
On 6/27/16 5:35 PM, Eric Kuhnke wrote: > Yes, very much agreed, part of the reason why I'm looking to do the > watts per linecard calculation is to illustrate how it's not healthy > except in certain places. As an edge aggregation device in a very > small city in a rural western US state where the

Re: akamai abnormal spike

2016-07-19 Thread joel jaeggli
the same PDUs. Either way someones state machine has a bug. joel > > > > - Mike Hammett Intelligent Computing Solutions > http://www.ics-il.com > > > > Midwest Internet Exchange http://www.midwest-ix.com > > > - Original Message - > >

Re: CAIDA selected by FCC for internet performance measurement

2016-08-12 Thread joel jaeggli
On 8/12/16 1:41 PM, Scott Weeks wrote: > > --- s...@donelan.com wrote: > From: Sean Donelan > > CAIDA has submitted to the FCC its initial proposal for > measuring internet interconnection point performance > metrics as part of the AT&T/DirecTV merger conditions. > > http://transition.fcc.gov/Dai

Re: charges for prefix filter updates (was Re: Any ISPs using AS852 for IP Transit?)

2016-09-15 Thread joel jaeggli
oute objects, If it's not part of their service offering; how costs are assigned for service requests is going to be part of contract negotiions. joel > Cogent and HE nor NAC or Yipes or Tata ever did that to us. > > Nickle and diming -- why, cuz transit is a cheap commodity now, go

Re: Providing transit to unallocated networks

2016-09-27 Thread joel jaeggli
On 9/27/16 5:46 PM, Alistair Mackenzie wrote: > Thanks for this, it shows as > > apnic|ZZ|ipv4|103.***.***.0|1024|20160927|reserved||e-stats > > I expect this still stands with it being reserved? I'm not sure why you would bother obscuring it. What purpose does that serve in furthering the discus

Re: nexus N3K-C3064PQ vs juniper ex4500 in order to protect against ddos

2016-10-02 Thread joel jaeggli
On 9/30/16 12:42 PM, Pedro wrote: > > Hello, > > I have some idea to put switch before bgp router in order to terminate > isp 10G uplinks on switch, not router. Main reason is that could be some > kind of 1st level of defence against ddos, second reason, less > important, save cost of router port

Re: nested prefixes in Internet

2016-10-10 Thread joel jaeggli
On 10/10/16 9:04 AM, Roy wrote: > > > The solution proposed allows ISP-B to use both paths at the same time, > needs ISP-C to minimal changes, and has low impact on the global > routing tables.. I have successfully used it in the past and my old > company is still using it today. Having two parti

Re: Dyn DDoS this AM?

2016-10-21 Thread joel jaeggli
On 10/21/16 3:21 PM, David Birdsong wrote: > On Fri, Oct 21, 2016 at 2:58 PM, Randy Bush wrote: > >> anyone who relies on a single dns provider is just asking for stuff such >> as this. >> >> randy >> > I'd love to hear how others are handling the overhead of managing two dns > providers. Every ti

Re: CenturyLink in Advanced Talks to Merge With Level 3 Communications - Interweb is doomed

2016-10-28 Thread joel jaeggli
On 10/28/16 12:18 PM, Mel Beckman wrote: > Level3 hasn't even finished migrating its TWTelecom customers to the L3 AS > yes, and it's been years. So I don't think you can expect any faster > transition for CL. 3549 still exists... > -mel beckman > >> On Oct 28, 2016, at 2:16 PM, Timothy Lister

Re: pay.gov and IPv6

2016-11-21 Thread joel jaeggli
00:02:02.758900 IP6 2601:647:4201:.60962 > 2605:3100:fffd:100::15.443: Flags [S], seq 2375673666, win 65535, options [mss 1440,nop,wscale 5,nop,nop,TS val 568401205 ecr 0,sackOK,eol], length 0 00:02:02.811619 IP6 2605:3100:fffd:100::15.443 > 2601:647:4201:.60962: Flags [S.], seq 2570148804

Re: Voice channels (FTTH, DOCSIS, VoLTE)

2016-11-21 Thread joel jaeggli
On 11/21/16 11:13 AM, Jean-Francois Mezei wrote: > On 2016-11-21 02:53, Mikael Abrahamsson wrote: > >> Typically it travels on another "bearer" compared to Internet traffic. >> >> http://blog.3g4g.co.uk/2013/08/volte-bearers.html >> >> Think of bearers as "tunnels" between the mobile core network a

Re: Voice channels (FTTH, DOCSIS, VoLTE)

2016-11-21 Thread joel jaeggli
On 11/21/16 3:12 PM, Jean-Francois Mezei wrote: > On 2016-11-21 15:18, joel jaeggli wrote: > > >> SRB and URB are the l2 presentation of the tunnels established for user >> and signaling traffic. > OK, so wth LTE, if carrier has 10mhz up and down, this represents a &g

Re: Cogent Router code updates during height of ecommerce season?

2016-12-09 Thread joel jaeggli
On 12/9/16 11:30 AM, Justin Wilson wrote: > Are they not doing these during maintenance windows? Anytime we get a notice > from Cogent, Level3, Att they are always during a maintenance window at least > a week ahead of time. We have yet to see any maintenance window > notifications from Hurrica

Re: Recent NTP pool traffic increase

2016-12-15 Thread joel jaeggli
On 12/15/16 3:07 PM, Dan Drown wrote: > Quoting Jose Gerardo Perales Soto : >> We've recently experienced a traffic increase on the NTP queries to >> NTP pool project (pool.ntp.org) servers. One theory is that some >> service provider NTP infraestructure failed approximately 2 days ago >> and traff

Re: BCM5341x

2016-12-25 Thread Joel Jaeggli
Sent from my iPhone > On Dec 24, 2016, at 15:51, Mike Hammett wrote: > > I've asked Broadcom directly, but being as though I don't have an intent to > buy tens of thousands of chips (or any at all), I don't expect I'll hear > back. I was hoping someone here would have some insight. > > Do

Re: Benefits (and Detriments) of Standardizing Network Equipment in a Global Organization

2016-12-29 Thread joel jaeggli
On 12/29/16 10:22 AM, valdis.kletni...@vt.edu wrote: > On Thu, 29 Dec 2016 07:44:45 -0800, Leo Bicknell said: > >> But I think the question others are trying to ask is a different >> hyptothetical. Say there are two vendors, of of which makes perfectly >> good edge routers and core routers. What

Re: Soliciting your opinions on Internet routing: A survey on BGP convergence

2017-01-09 Thread joel jaeggli
On 1/9/17 2:56 PM, Laurent Vanbever wrote: > Hi NANOG, > > We often read that the Internet (i.e. BGP) is "slow to converge". But how slow > is it really? Do you care anyway? And can we (researchers) do anything about > it? > Please help us out to find out by answering our short anonymous survey

Re: Apple Caching Server question

2017-01-13 Thread joel jaeggli
On 1/13/17 5:43 AM, lane.pow...@swat.coop wrote: > I saw the apple caching server mentioned on an earlier thread. Is this > appropriate/functional/scaleable enough to implement as an ISP? It is an > intriguing idea. From the docs I could find, I couldn't tell if it was only > geared towards home

Re: IPv6 BGP prefix filters

2017-01-16 Thread joel jaeggli
On 1/16/17 2:01 PM, Alistair Mackenzie wrote: > Hi, > > So recently I've come across an issue with a large ISP announcing a /22 and > /25 of IPv6 space. We are currently filtering <28 and >48 which until now > has worked fine for us. > > What are others using as their prefix filters in the DFZ?

Re: External BGP Controller for L3 Switch BGP routing

2017-01-16 Thread joel jaeggli
On 1/16/17 6:53 AM, Tore Anderson wrote: > * Saku Ytti > >> On 16 January 2017 at 14:36, Tore Anderson wrote: >> >>> Put it another way, my «Internet facing» interfaces are typically >>> 10GEs with a few (kilo)metres of dark fibre that x-connects into my >>> IP-transit providers' routers sitting

Re: External BGP Controller for L3 Switch BGP routing

2017-01-16 Thread joel jaeggli
On 1/15/17 11:00 PM, Yucong Sun wrote: > In my setup, I use an BIRD instance to combine multiple internet full > tables, i use some filter to generate some override route to send to my L3 > switch to do routing. The L3 switch is configured with the default route > to the main transit provider , i

Re: Questions on IPv6 deployment

2017-01-17 Thread joel jaeggli
On 1/17/17 1:55 PM, William Herrin wrote: > On Tue, Jan 17, 2017 at 4:07 PM, Matthew Huff wrote: >> The reason for allocating a /64 for a point to point link is due to various >> denial of service attack vectors. if you mean allocating a /127, then... sure. Neighbor discovery on point to point

Re: Passive Optical Network (PON)

2017-01-21 Thread joel jaeggli
On 1/21/17 8:44 AM, Kenneth McRae wrote: > Greeting all, > > Is anyone out there using PON in a campus or facility environment? I am > talking to a few vendors who are pushing PON as a replacement for edge > switching on the campus and in some cases, ToR switch in the DC. Opinions on > this te

Re: Akamai and Instagram Ranges

2017-01-28 Thread joel jaeggli
On 1/28/17 3:22 AM, Shahab Vahabzadeh wrote: > Hello Hello, > Can anybody help me to find out IP Address Ranges of Akamai and Instagram? > I wanna do some optimizations on my cache side? > Thanks > Instagram should be exclusively https since 2014 or so. signature.asc Description: OpenPGP digit

Technical contact at Yahoo

2017-02-06 Thread Joel Pinnow
Sorry for the added noise, but I need to reach out to a technical contact at Yahoo regarding incorrect geolocation on a /24 block. I've had no luck getting in contact with anyone via WHOIS or other contact info. Can someone from Yahoo please private email me at: jpin...@xipe.net Thanks, Joel

Re: IoT security

2017-02-06 Thread joel jaeggli
On 2/6/17 2:31 PM, William Herrin wrote: > This afternoon's panel about IoT's lack of security got me thinking... > > > On the issue of ISPs unable to act on insecure devices because they > can't detect the devices until they're compromised and then only have > the largest hammer (full account ban)

Re: ticketmaster.com 403 Forbidden

2017-02-06 Thread joel jaeggli
On 2/6/17 8:49 AM, Suresh Ramasubramanian wrote: > My guess is you have or had sometime in the long distant past a scalper > operating on your network, using automated ticket purchase bots. > > If you still have that scalper around, you might want to turf him. If he’s > ancient history, saying s

Re: Hulu Peering

2018-04-23 Thread joel jaeggli
On 4/23/18 11:14 AM, craig washington wrote: > Hey all, > > > Just wondering if anyone peers with Hulu at any public exchange. > > I don't see anything on them in the peeringdb or anything that stands out > from a google search besides it looks like they may be doing something with > Equinix. Hu

Re: Curiosity about AS3356 L3/CenturyLink network resiliency (in general)

2018-05-20 Thread joel jaeggli
On 5/17/18 6:24 AM, Mike Hammett wrote: > I often question why\how people build networks the way they do. There's some > industry hard-on with having a few ginormous routers instead of many smaller > ones. I've learned that when building Internet Exchanges, the number of > networks that don't

Re: Need /24 (arin) asap

2018-06-11 Thread Joel Mulkey
urpose that block for internal use only and re-number a few customers. Joel Mulkey Founder and CEO Bigleaf Networks - Cloud-first SD-WAN www.bigleaf.net<http://www.bigleaf.net> On Jun 11, 2018, at 7:32 AM, Stan Ouchakov mailto:st...@imaginesoftware.com>> wrote: Hi Bryan and all,

Re: Time to add 2002::/16 to bogon filters?

2018-06-18 Thread joel jaeggli
I personally would love to see social pressure applied removing this from the internet. certain prominent google search results. e.g. https://getipv6.info/display/IPv6/Linux+or+BSD+6to4+Relays probably also could use some curation given the appropriateness of reling on a anycast translator for you

Re: Time to add 2002::/16 to bogon filters?

2018-06-18 Thread joel jaeggli
On 6/18/18 6:18 PM, Jared Mauch wrote: > I don’t believe most providers are intending to offer 6to4 as a global > service. Even the large providers (eg: Comcast) seem to have disabled it ~4+ > years ago. While I know there’s people on the internet that like to hang on > to legacy things, th

Re: Proving Gig Speed

2018-07-19 Thread joel jaeggli
On 7/19/18 1:30 AM, Mark Tinka wrote: > > On 18/Jul/18 23:56, Keith Stokes wrote: > >> At least in the US, Jane also doesn’t really have a choice of her >> electricity provider, so she’s not getting bombarded with advertising >> from vendors selling “Faster WiFi” than the next guy. I don’t get t

Re: California fires: smart speakers and emergency alerts

2018-07-28 Thread joel jaeggli
On Thu, Jul 26, 2018 at 09:51:04AM -0700, Aaron C. de Bruyn via NANOG wrote: > >> Capitalist solution: Build yet another IoT device that just does emergency >> alerting. >> >> Someone with free time should start a kickstarter or something. I'd >> totally chip in. >> >> -A It would be helpful if it

Re: tcp md5 bgp attacks?

2018-08-14 Thread joel jaeggli
On 8/14/18 2:38 PM, Randy Bush wrote: > so we started to wonder if, since we started protecting our bgp > sessions with md5 (in the 1990s), are there still folk trying to > attack? To recap for the purpose of my own edification and because hopefully someone will relieve me of my assumptions. Th

Re: tcp md5 bgp attacks?

2018-08-14 Thread joel jaeggli
On 8/14/18 7:27 PM, Randy Bush wrote: > > < rathole > > i am not much worried about a mesh which floods unicast. can you even > buy devices which support that any more? a while back, i had to really > dig in the closet to find one at 100mbps so i could shark mid-stream. I'm not actually worrie

Re: Puerto Rico Internet Exchange

2018-09-13 Thread Joel Jaeggli
> On Sep 13, 2018, at 1:27 PM, Mehmet Akcin wrote: > > It has been little over a year and we have been working on launching an > internet exchange in puerto rico but of course hurricane and other things got > in the way of achieving this. > > We now have identified what we believe the right

Re: NAT on a Trident/Qumran(/or other?) equipped whitebox?

2018-10-16 Thread joel jaeggli
On 10/16/18 08:55, Brandon Martin wrote: > On 10/16/18 10:05 AM, James Bensley wrote: >> NAT/PAT is an N:1 swapping (map) though so a state/translation table >> is required to correctly "swap" back the return traffic. MPLS for >> example is 1:1 mapping/action. NAT/PAT state tables tend to fill >> q

Re: Stupid Question maybe?

2018-12-20 Thread Joel Halpern
rrectly. So as a community we decided not to go down that path. Yours, Joel On 12/18/18 5:12 PM, David Edelman wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA1 I seem to remember that before the advent of VLSM and CIDR there was no requirement for the 1 bits in the netmask to be contiguous w

Re: Initial ARIN IPv4 membership and resource request

2019-02-06 Thread Joel Whitehouse
On 2/6/19 2:53 PM, Nathanael Catangay Cariaga wrote: Dear NANOG, does someone here have a breakdown of the initial ARIN fees / cost assuming I'll be requesting an initial block of /22 IPv4 resource? Regards, -nathan See ARIN's official fee schedule at: https://www.arin.net/fees/fee_schedu

Re: Network Speed Testing and Monitoring Platform

2019-02-18 Thread Joel Jaeggli
> On Jan 16, 2019, at 08:52, Colton Conor wrote: > > As an internet service provider with many small business and residential > customers, our most common tech support calls are speed related. Customers > complaining on slow speeds, slowdowns, etc. > > We have a SNMP and ping monitoring plat

Re: ICMPv6 "too-big" packets ignored (filtered ?) by Cloudflare farms

2019-03-05 Thread Joel Jaeggli
Sent from my iPhone > On Mar 4, 2019, at 22:26, Mark Andrews wrote: > > > >> On 5 Mar 2019, at 5:18 pm, Mark Tinka wrote: >> >> >> >>> On 5/Mar/19 00:25, Mark Andrews wrote: >>> >>> >>> Then Cloudflare should negotiate MSS’s that don’t generate PTB’s if >>> they have installed broken

Re: ICMPv6 "too-big" packets ignored (filtered ?) by Cloudflare farms

2019-03-05 Thread Joel Jaeggli
Sent from my iPhone > On Mar 5, 2019, at 01:31, Saku Ytti wrote: > >> On Tue, Mar 5, 2019 at 12:26 AM Mark Andrews wrote: >> >> Then Cloudflare should negotiate MSS’s that don’t generate PTB’s if >> they have installed broken ECMP devices. The simplest way to do that > > Out of curiosity

Re: How threading works (was Re: Root Cause Re: 202401102221.AYC Re: Streamline The CG-NAT Re: 202401100645.AYC Re: IPv4 address block)

2024-01-13 Thread Joel Esler
Things you have to remember.  Not everyone uses thunderbird.  Not every mail client threads like thunderbird.  — Sent from my iPhoneOn Jan 13, 2024, at 17:39, Abraham Y. Chen wrote: Hi, Bryan: 0)    Thank you so much for coming to the rescue!!!

Re: Any info on AT&T Wireless Outage?

2024-03-02 Thread Joel Esler
/me waves my hand dismissingly— Sent from my iPhoneOn Feb 29, 2024, at 14:55, Javier J wrote:Where did you see this? Erik Prince was on the PBD podcast saying he has a 70% chance in his head it was China. I tend to learn towards human error from my experience in the IT biz.- JOn Wed, Feb 28, 2024

Re: Best TAC Services from Equipment Vendors

2024-03-07 Thread Joel Esler
It may be a pain in the butt to get Cisco equipment, but their TAC is sublime.  If something is critical enough, and you push hard enough, Cisco will move heaven and earth to solve your issue.  — Sent from my iPhoneOn Mar 6, 2024, at 13:42, Pascal Masha wrote:For us this has been the experience t

Re: Current diameter of the Internet?

2024-07-19 Thread joel jaeggli
On 7/19/24 15:07, Sean Donelan wrote: What is the current estimated diameter of the Internet? Maximum (worst-case) RTT edge-to-edge? Most public latency data is now edge-to-cloud, not edge-to-edge. Cloud engineers have done a great job, and edge-to-cloud less than 1-sec RTT. Where have the

  1   2   3   4   5   6   7   8   9   10   >