#arpnetworks 2010-09-28,Tue

↑back Search ←Prev date Next date→ Show only urls(Click on time to select a line by its url)

WhoWhatWhen
***awyeah_ has joined #arpnetworks
toddf has quit IRC (Ping timeout: 276 seconds)
awyeah has quit IRC (Ping timeout: 276 seconds)
mike-burns has quit IRC (Ping timeout: 276 seconds)
mike-burns has joined #arpnetworks
ChanServ sets mode: +o mike-burns
toddf has joined #arpnetworks
ChanServ sets mode: +o toddf
schmir has joined #arpnetworks
[00:50]
LT has joined #arpnetworks [01:12]
............... (idle for 1h10mn)
schmir has quit IRC (Ping timeout: 252 seconds) [02:22]
....... (idle for 32mn)
nakano is now known as nakano_ [02:54]
............... (idle for 1h10mn)
nakano_ is now known as nakano [04:04]
schmir has joined #arpnetworks [04:09]
.......... (idle for 49mn)
schmir has quit IRC (Remote host closed the connection)
ziyourenxiang has joined #arpnetworks
[04:58]
.......... (idle for 49mn)
razorluv_ has quit IRC (Quit: leaving) [05:48]
........... (idle for 54mn)
heavysixer has quit IRC (Quit: BAMPF!) [06:42]
.............. (idle for 1h9mn)
awyeah_ is now known as awyeah [07:51]
awyeahAnyone here use any of the desktop search apps? Like copernic or X1? [07:52]
....... (idle for 30mn)
***Lefty has quit IRC (Quit: Lost terminal) [08:22]
....... (idle for 33mn)
heavysixer has joined #arpnetworks
ChanServ sets mode: +o heavysixer
[08:55]
..... (idle for 21mn)
LT has quit IRC (Quit: Leaving)
Lefty has joined #arpnetworks
[09:16]
......... (idle for 40mn)
wallshot has joined #arpnetworks [10:00]
wallshot"submit one traceroute output (ipv6) per day" ... "sorry, you've already submitted an ipv6 traceroute within the last 24 hours"
that's not 1 per day!
unless you script something to drop it in on 24 hours to the second
[10:11]
jpalmerI've crontabbed it. [10:16]
***nakano is now known as nakano_
nakano_ is now known as nakano
[10:16]
jpalmerif it misses one once in a while to being a few seconds too early.. no real loss to me.
I have it automatically getting new IPv6 addresses to use each day. then mark that IP as used, so that is doesn't try to use the same one a second time.
[10:16]
***nakano is now known as nakano_ [10:17]
wallshotyeah i'm thinking a new ipv6 alias and outputs in a cronjob would be nice [10:23]
***ziyourenxiang has quit IRC (Quit: ziyourenxiang) [10:31]
.... (idle for 19mn)
jpalmerwallshot: the basis for the scripts I crontabbed: http://www.tunnelbroker.net/forums/index.php?topic=975.0
I modified the scripts and DB schema slightly. If you try to reuse the same hostname/IP, it gets rejected. so I added a column for "State" which defaults to 0 (unused) and after teh submission script is run.. rather than deleting the entry, it changes "State" to a 1 (used) I also makde the IP column "unique" so I can parse the feed multiple times, and don't get duplicate entries.
[10:50]
wallshotnice
way more complex than i was thinking
[10:52]
jpalmerI parse the feed once a day, for new entries. and run the submission script once a day also. [10:52]
wallshotthought i'd have a script that generated an ip based on how many days it's been since sept 27 or something [10:52]
jpalmerit's not really that complex. very simple DB schema.. and the person who posted the script did all of the real work. [10:52]
wallshotso it just kept incrementing day by day [10:53]
dxtrSubmit traceroute where? [10:54]
wallshothe.net's ipv6 "certification" thing [10:54]
toothIt's in the script. ;-) [10:54]
jpalmerdxtr: ipv6.he.net/certification [10:55]
dxtrOh, right [10:55]
jpalmerfun little ipv6 learnign thing
I learned a bit, and will get a free t-shirt. not bad for something I was interested in anyway.
[10:55]
dxtrwill I get a t-shirt if I live in Sweden? :D [10:56]
***ziyourenxiang has joined #arpnetworks [10:57]
jpalmerI didn't read anything about it being open to only US addresses, but you may want to email ipv6@he.net and ask. but honestly, even without the t-shirt, it's a decent learning tutorial to go through the tasks [10:58]
dxtrI WANT THE T-SHIRT! [10:58]
jpalmerlol [10:58]
dxtr:) [10:58]
toothThere's a TSHIRT?? [10:58]
***ziyourenxiang has quit IRC (Client Quit) [10:59]
jdoejpalmer: they accent non-US addresses, I just expect things will take longer.
jpalmer: ... and if you're in Zimbabwe or something, who the fuck knows.
s/and/though/
[11:00]
jpalmerzimbabwe? i thought that place was fictional :P
j/k
tooth: yeah
[11:00]
jdoeI dunno. They also said like... 4-6 weeks or something, didn't they? [11:01]
jpalmertooth: pictures: http://groups.google.com/group/windows/web/no-bots [11:01]
jdoeoh shit it's tooth [11:01]
toothbuh [11:01]
jpalmerjdoe: So, I'll get my t-shirt around the time my new 60" plasma TV gets delivered. [11:01]
toothjpalmer, link doesn't work for me. [11:02]
jpalmertooth: hah. bad copy/paste. my bad. sec
http://www.tunnelbroker.net/forums/index.php?topic=1069.0
[11:02]
jdoedude, if you think that's bad you need to see the back :P
http://broquea.corp.he.net/v6shirt.png
[11:05]
toothThey have to give them away because nobody would buy it. [11:06]
wallshotdo they tell u when they ship it, or does it just happen all automagically when you hit sage? [11:08]
jdoeyou have to verify your address. [11:08]
wallshotyeah i just did that yesterday
and chose my size
omg excellent nerd shirt!
[11:08]
jdoeyeah, that's it, I think.
not really.
but it might make a great rag :P
[11:09]
wallshoti find that some of the coziest tshirts i have are good rags [11:09]
toothI find that some of my best rags make the coziest shirts. [11:10]
wallshotso i actually punched in the ipv6 address from back of shirt into my browser, and felt a moment of "oh duh" when it pulled up the he.net ipv6 page [11:11]
jdoelol
jdoe golf claps
[11:12]
jpalmerLOL [11:14]
....... (idle for 30mn)
***nakano_ is now known as nakano [11:44]
plundra has quit IRC (Ping timeout: 240 seconds)
plundra has joined #arpnetworks
[11:56]
jpalmerI'm not going to lie. e.net needs more tests. that was kinda enjoyable. we'll have to think up a few, and suggest them. [12:01]
jdoethere aren't really many tests you can do.
do you have a functioning ipv6 mx? check.
do you have a functioning ipv6 dns? check.
does your registrar share the love? check.
oh right, website too.
(check.)
[12:03]
wallshottis true, they got despeate for "more tests" when they made with the 100 daily submisisons thing [12:04]
***shansa has joined #arpnetworks [12:04]
wallshoti think 10 would have been enough [12:04]
***heavysixer has quit IRC (Ping timeout: 276 seconds)
plundra has quit IRC (Ping timeout: 255 seconds)
[12:14]
shansa has quit IRC (Quit: leaving) [12:23]
heavysixer has joined #arpnetworks
ChanServ sets mode: +o heavysixer
plundra has joined #arpnetworks
[12:34]
jpalmerjdoe: yeah, but there are other things you could do, to get more involved. maybe something along the lines of "request that /48, and subnet it" or asking some routing questions so that people get deeper into that aspect of ipv6. I see (and have personally HAD) issues with autoconfig not working right.. so maybe some tests that help you learn and fundamentally understand those aspects
actually, hrm. let me share those ideas with HE. brb
[12:37]
jdoeeh
the problem is that a lot of stuff is still in flux
[12:38]
jpalmersure [12:38]
jdoeie DHCPv6 which is poorly supported at best.
(isc dhcpd only supports it recently, almost no client oses do)
[12:39]
wallshotthe /48 would be fun [12:40]
jpalmerand, some of it is probably a little more outside of HE's scope. I mean, I assume HE's goal behind this is #1) to drive understanding. #2) to help educate the masses, #3) those masses to help educate others (by doing things like asking for reverse delegation, and such) #4) to quantifiably demonstrate that IPv6 is growing (every domain that gets glue, is counted in those adoption rates, helping drive the effort) etc. [12:41]
wallshotseems you can allocate a /48 on he.net's tunnelbroker, for people who aren't already offered one by arpnetworks [12:41]
jpalmerwith that in mind, the routing/subet aspects help with #1, and maybe #2) but not the rest. [12:41]
wallshotjust click "Allocate /48" link on the tunnel details i guess
so he.net should totally have you play with that
[12:41]
RandalSchwartzYeah, I have a half dozen /48's now. [12:42]
jpalmerwallshot: yeah, they already have the infrastructure for it. [12:42]
RandalSchwartz"Let the enumeration of the grains of sand of the beaches commence!" [12:42]
wallshotif each grain had its own IP, we'd have how many trillions of ip's left? :) [12:42]
jpalmerRandalSchwartz: haha [12:43]
toddfthe sad thing is that dhcpv6 is applying a v4 mindset to v6
rtsol can have extensions added, including supplying dns info etc
[12:43]
RandalSchwartzyeah - let them use the MACaddr as prescribed [12:43]
jpalmertoddf: I haven't messed with it much, so.. I can't comment [12:43]
toddfstateless autoconfig vs stateful, rtsol is what I've used for 10+ years
dhcpv6 has only showed up in recent years
though some dhcpv6 proponents like to say 'this is how we will allocate subnets to clients' so maybe there is some merit, I'm not aware of subnet allocations via rtsol...
[12:44]
jpalmeras for the autconfig test, they could do something like "what is the MAC address of your client machine" then, you have to login from that machine, with the autoconfig address, and click the "check" button. littel things like that. [12:45]
***atsen has joined #arpnetworks [12:46]
atsen has quit IRC (Quit: later skater!) [12:57]
..... (idle for 20mn)
awyeahawyeah like the new twitter. [13:17]
toddftoddf just uses the pidgin plugin [13:18]
toothtooth isn't a twit
:D
[13:31]
RandalSchwartzRandalSchwartz is a twit host! [13:33]
jpalmerjpalmer is just a twit carrier.
the truth is, I've never tweeted. and up until the recent iphone jailbreak, I never even READ a tweet.
[13:33]
nestanesta twitches [13:34]
wallshoti once searched twitter for a recent news event
it showed me a bunch of user's tweets. users with penises as their image thumbs
that's what i get for using a work computer to check twitter for the first time
a lesson to not ever visit twitter again
[13:36]
.... (idle for 17mn)
***RandalSchwartz has quit IRC (Quit: rebooting emacs)
RandalSchwartz has joined #arpnetworks
[13:53]
jdoelol emacs irc :( [14:01]
***mattx86 has joined #arpnetworks
NightStar has joined #arpnetworks
[14:04]
NightStarThere are not issued free shell
Here are granted free shell?
[14:07]
RandalSchwartzNightStar - nothing free.
paid-for machines
which run shells yes.
[14:09]
jpalmerNightStar: no, arpnetworks doesn't do free. ;)
though, depending on your needs, they are well worth the price.
[14:09]
NightStarI generally do not have internet money, so I'm looking for a free shell ", if there are not issued free shell, you do not know where to find them? on what channel? [14:11]
jdoethey don't exist.
well the sort of do.
there are still things like sdf.lonestar.org, but they're restricted unless you pay, and they're not likely to tolerate bullshit.
[14:13]
jpalmerNightStar: ask a freind for a shell. one who trusts you implicitely. (which, excludes it being some random guy on IRC) [14:14]
nestathere are a few free shell places left. silenceisdefeat.com [14:15]
***NightStar has quit IRC (Quit: NightStar Script v 1.0 http://Glooz.ru/) [14:15]
shansa has joined #arpnetworks
schmir has joined #arpnetworks
schmir has quit IRC (Remote host closed the connection)
[14:26]
mattx86there's a handful of free shell providers left.. I even came across one that did a free vps service! :)
though, I didn't dare signup hehe
[14:35]
nestawow really
thats funny
[14:38]
mattx86yeah [14:38]
...... (idle for 28mn)
***heavysixer has quit IRC (Quit: BAMPF!) [15:06]
..... (idle for 22mn)
RandalSchwartzheh... a recruiter just asked me "Oh, I have an opening needing Perl... is that somethign you have expertise in." :)
does "Literally, I wrote the book on Perl" mean anything? :)
[15:28]
nukeAFKhi all [15:33]
***nukeAFK is now known as nuke` [15:34]
nuke`anyone wanna point me on the right direction in how to config mail on my vps so i can use alias@mydomains.bla with pop3? [15:36]
mattx86RandalSchwartz :P [15:36]
RandalSchwartznuke` - what operating system? [15:36]
nuke`debian [15:36]
RandalSchwartzOh - no idea then [15:36]
mattx86nuke`: are you just wanting the system mail sent to you? [15:36]
RandalSchwartzI figured you as a freebsd guy. then I can help :) [15:36]
nuke`no i want to be able to use it
like a normal mais
mail*
send receive not just local
[15:37]
mattx86nuke`: check out howtoforge.com - great tutorials [15:37]
nuke`k gonna check ty [15:37]
mattx86I've setup mail servers and antispam boxes for different distros using the different (distro-specific) tutorials there [15:38]
nuke`yeah im checking this one
Setting Up A Mail Server Using Exim4, Clamav, Dovecot, SpamAssassin And Many More On Debian
[15:39]
jdoeboo exim.
RandalSchwartz: lol
[15:39]
mattx86yeah, postfix is best IMHO [15:39]
RandalSchwartzYeah - you won't regret postfix
I'm using cyrus with postfix for pop3/imap
[15:40]
mattx86postfix for SMTP/SMTPS and dovecot for POP3/IMAP [15:40]
RandalSchwartzerr - dovecot yes
sorry, cyrus was the old thing
the tricky part is getting authentication from the right place for pop3/imap
and smtps
[15:40]
jdoeand dovecot for SMTPA ;) [15:41]
mattx86last time I did it, I don't think it was too bad
right I think I used dovecot for that
[15:41]
jdoeRandalSchwartz: now that dovecot can provide auth it's reasonable straightforward.
RandalSchwartz: cyrus-sasl was a PITA.
reasonably.
[15:42]
RandalSchwartzI think my problem is I wanted to use /etc/passwd but my dovecot is chrooted
or wait... it's because postfix is chrooted
so getting it to talk to dovecot properly
[15:42]
nuke`u guys sound like u could do it in 5min instead of me going on for days :P [15:43]
RandalSchwartzfor freebsd, yes [15:43]
jdoeRandalSchwartz: yeah, the 'trick' is getting the path/permissions right for the socket for postfix. [15:43]
RandalSchwartznot a linux user htough [15:43]
jdoehappily it's a one-off, once you figure that out you can stop beating your head against the wall.
... my poor, poor head :(
[15:44]
mattx86nuke`: to get a "perfect" mail server, you could very well be there for days.. me anyways ;) [15:45]
RandalSchwartz"postconf -n" is my friend
"what have I tweaked HERE to copy it over THERE"
[15:45]
mattx86mail servers are a bit of a pain to configure, atleast the way I want one configured
that's why for the time being, I've decided to stay with rackspace for email service
[15:46]
nuke`yeah i guess your right, gonna go sleep and try it tmorrow again
nn all
[15:46]
RandalSchwartzsleep at 4pm? :) [15:46]
mattx86night [15:46]
wallshoti find postfix pretty damn easy
qmail i had to patch up the ass to get the way i wanted, that was a pain
[15:46]
RandalSchwartzqmail also suffers djbism [15:47]
mattx86yeah, postfix is 'easy', and dovecot relatively so [15:47]
RandalSchwartzI can't imagine why anyone would use sendmail (with or without m4) at this point
m4 is its own wtf, anyway :)
[15:48]
mattx86it's when you add in SSL, antispam, antivirus, e-mail signing and so forth is when it gets complicated [15:48]
RandalSchwartzI have postgrey, and amavisd-new (post-queue)
the tricky part was not passing outbound mail through amavisd
[15:49]
mattx86domain-based 'virtual' hosting using a MySQL database isn't exactly straight-forward either [15:49]
RandalSchwartzmysql? ugh.
postgres for the win
friends don't let friends use mysql
[15:49]
mattx86I was gonna ask what ppl use nowadays [15:50]
RandalSchwartzespecially now that oracle is strangling it [15:50]
mattx86lol randal, line up ^ :P [15:50]
wallshotmmm sqlite [15:50]
RandalSchwartzI presume mysql will go the same way as "open"solaris [15:50]
mattx86that's the first thing I assumed would go - not opensolaris [15:51]
RandalSchwartzalready gone [15:51]
jdoeopensolaris hasn't gone, exactly. [15:51]
RandalSchwartzwell, it's not the source of solaris any more [15:51]
jdoewhen oracle fails to release "solaris express", then I'll call it dead. [15:51]
RandalSchwartzit now exists only as a fork [15:51]
mattx86jdoe: ah [15:52]
RandalSchwartzthey've already said no more solaris releeases with source [15:52]
jdoeno they haven't [15:52]
RandalSchwartzso it's done. gone.
oh - source *after the fact* yeah
[15:52]
jdoethey explicitly said source will happen... just not until after a proper solaris release. [15:52]
RandalSchwartzand no community input [15:52]
jdoeyeah
well that's not surprising.
I dunno, I have high hopes for illumos.
(seriously)
[15:52]
mattx86going back to the e-mail for a moment..
RandalSchwartz: why wouldn't you pass outbound mail thru amavisd-new?
[15:54]
jdoebecause when I send a GTUBE I don't want it to bounce? ;)
well I mean, I do
but from the OTHER server.
[15:55]
mattx86unless you don't have massive amounts of users on your mail server
:P
[15:55]
RandalSchwartzone user
and he got mad. :)
[15:55]
jdoemost people don't scan outbound.
google doesn't :P
[15:55]
RandalSchwartzhis legit mail was blocked. [15:55]
mattx86RandalSchwartz: you, I presume? :) [15:56]
RandalSchwartzno.
neil bauman (insightcruises.com)
[15:56]
mattx86ah, fair enough [15:56]
RandalSchwartzso I had to work out how not to scan on port 587 mail
and yet still get tls or sasl to kick in
[15:56]
mattx86ah [15:57]
RandalSchwartzfilter_catchall_pcre contains /^/ FILTER smtp-amavis:[127.0.0.1]:10024
and it's not enabled on submission or smtps
but *is* enabled on 25
... check_sender_access pcre:/usr/local/etc/postfix/filter_catchall_pcre
last step of smtpd_recipient_restrictions in main.cf
I couldn't find any other way to write "filter this sometimes"
great way to kill a few hours on my laptop "sudo port install wine" :)
I think I'm compiling X11. :)
[15:58]
mattx86hm.. says that Neil had the idea basically for insight cruises while reading a perl programming book... was it your book? :) [16:01]
RandalSchwartzYes. [16:01]
mattx86nice :) [16:01]
RandalSchwartzI was his first speaker for the first cruise too
that was about 60 cruises ago for me.
[16:02]
mattx86wow [16:02]
shansacan you actualy feel the whole lot of respect flowing from my keyboard to you? ~_~ [16:02]
mattx86were most of them with insight? [16:03]
RandalSchwartzall of them
well - formerly called geekcruises, yes.
but we're trying to eliminate that name everywhere.
[16:03]
shansaanyone with more than one vps with ARP? are your vpses hosted on he same physical host? [16:04]
RandalSchwartzyes. and no
at least, I imagine they aren't
since I have to use a different console host
[16:04]
shansayes
each one has a different kveXX?
[16:05]
RandalSchwartzyeah [16:05]
shansakvr*
ok. that's safer I guess.
[16:05]
RandalSchwartzwell - considering the huge amount of redundancy, and the MTBF of the hosts, I wouldn't worry
in fact, far better at ARP than many other places.
raid 10 disk, redundant power, redundant net
[16:06]
jdoeRandalSchwartz: the way I would have done it was to add the content filter lines just to inbound, and have unfiltered local/submission ports. [16:06]
RandalSchwartzjdoe - that's what I did [16:07]
jdoeRandalSchwartz: I meant in master.cf, not main.cf [16:08]
RandalSchwartzoh, well, then I'd have to list all 5 other restrictions in master.cf
this way, I could keep the heavy one in main.cf, and the exceptions in master
[16:09]
mattx86RandalSchwartz: that's pretty neat, the cruise thing
I'll have to check that out
[16:10]
jdoeRandalSchwartz: I would have done "-o content_filter=..." etc. and left the rest of the filtering alone, but yeah I dig. I think. [16:11]
RandalSchwartzwell - it's not really a content filter
it's a reject if this thing bitches
so it has to go in the restrictions
and content_filter isn't allowed there
except indirectly
it wasn't obvious to me either... but I found it by googling. :)
[16:11]
jdoeyour setup seems... odd.
but what do I know :)
[16:13]
RandalSchwartzhow would content_filter= trigger a reject at handshake time because it's spammy?
it has to be in a _restriction
not a filter
ahh - maybe it's possible now
I might be able to simplify my setup then
[16:16]
jdoeI'd have to look, I've never bothered with before-queue filters before recently.
... okay, I do have it setup here. And in master.cf too.
can share the config if you'd like.
[16:18]
RandalSchwartzno - I'm now trying to remember why I had to have it in the _restrictions [16:20]
jdoehaha [16:23]
........ (idle for 37mn)
***nakano is now known as nakano_
mattx86 has quit IRC (Read error: Operation timed out)
nakano_ is now known as nakano
[17:00]
heavysixer has joined #arpnetworks
ChanServ sets mode: +o heavysixer
[17:15]
............ (idle for 56mn)
wallshot has quit IRC (Quit: Leaving.) [18:11]
........ (idle for 36mn)
mattx86 has joined #arpnetworks [18:47]
.... (idle for 17mn)
shansa has quit IRC (Quit: leaving) [19:04]
..................................... (idle for 3h3mn)
shansa has joined #arpnetworks [22:07]

↑back Search ←Prev date Next date→ Show only urls(Click on time to select a line by its url)