andol: that traceroute suggests something weird in the path mercutio: this is the ferm version of what we talked about the other day: https://gist.github.com/3697238 mercutio: it works like a charm. i did find i had to explicitly allow DNS to come into my INPUT chain, since w/ connection tracking disabled, the "mod state" ESTABLISHED,RELATED clauses are effectively disabled i happen to use ferm too on linux :) oh you can just do NOTRACK like that i think accept policy is default btw i wonder how to test it out, i don't acutally nkow how to syn flood the closest i know is nmap which can do port scanning, but that's not lots at once mercutio: hping3 oh hmm --rand-source This option enables the random source mode. hping will send packets with random source address. It is interesting to use this option to stress firewall state tables, and other per-ip basis dynamic tables inside the TCP/IP stacks and firewall software. :) oh ncie Just received our 2nd order from an IPv6 address (this one from a university) it's catching on... I stand by what I said the other day there's some, minor, interest from very large entities (some universities, google, facebook) and from enthusiasts, and nothing in between any network staff available please have you put in a ticket or mailed support@? because that's likely what they're going to have you do. ok Yup. support@ is your best bet. sigh trying to create a ticket, and its doing the captcha thing and asks what day comes next, im putting wednesday and it says its not right w t f?? lol are you sure you're not a bot? E-mail requires a captcha? chapcha! I see what you did there. :D ha ha ha Anyone else manage to hit the big red button for a row of racks in their datacenter today? Anyone? Just me? Okay then. lol lol i cant anymore. they dont let me into the datacenter because of things like that (a) not production. (b) switch wasn't covered, AND obstructed by boxes from the Great Recapping. but yeah, not my proudest moment heh hahaha that sinking feeling :/ up_the_irons: you will receive an order over an ipv6 address from me soon =p