↑back Search ←Prev date Next date→ Show only urls | (Click on time to select a line by its url) |
Who | What | When |
---|---|---|
up_the_irons | nixbag: you know me, i don't wake 'til noon ;)
nixbag: i would say count on being at the data center between 2 and 3pm | [00:51] |
nixbag: oh, and would you like to build a server with me on Friday? This would be at my home office. | [00:59] | |
............ (idle for 56mn) | ||
jlgaddis | i would like to build a server with you, sir
unfortunately, there's that little geographic issue that i would need to overcome | [01:55] |
....... (idle for 34mn) | ||
mercutio | heh | [02:30] |
........ (idle for 37mn) | ||
up_the_irons | lol
up_the_irons is playing around too much with Bootstrap and Font Awesome upcoming: new buttons and icons in the Portal ;) | [03:07] |
jlgaddis | WOOHOO
MOAR BUTTONZ!!!1 ;) wait will there be a "change the virtual cd-rom mounted in my vps to $dropdown_with_iso_image_list" button ? | [03:13] |
up_the_irons | jlgaddis: soon
that branch is like half way done | [03:22] |
.... (idle for 15mn) | ||
jlgaddis | oh nice, i didn't know that was actually something you were working on
of course, that now reminds me i need to open a ticket, heh your bragging is causing more work for yourself, sir :P | [03:37] |
up_the_irons | lol | [03:50] |
.... (idle for 19mn) | ||
wow, backup space ssh key submission is werkin already
up_the_irons is a coding machine | [04:09] | |
................... (idle for 1h32mn) | ||
*** | heavysixer has joined #arpnetworks
ChanServ sets mode: +o heavysixer | [05:41] |
...... (idle for 28mn) | ||
heavysixer has quit IRC (Quit: heavysixer) | [06:09] | |
heavysixer has joined #arpnetworks
ChanServ sets mode: +o heavysixer | [06:16] | |
..... (idle for 20mn) | ||
dzup has joined #arpnetworks | [06:36] | |
heavysixer has quit IRC (Quit: heavysixer) | [06:43] | |
mikeputnam | up_the_irons: using Ruby? | [06:47] |
jlgaddis | i hope not, he has my credit card info stored ;) | [06:50] |
......... (idle for 43mn) | ||
nixbag | up_the_irons: i'd love to help build a server on friday. | [07:33] |
*** | heavysixer has joined #arpnetworks
ChanServ sets mode: +o heavysixer | [07:37] |
brycec | so would I! (And I'd help rack too) But I'm 700mi away... :P | [07:42] |
toddf | brycec: better than me, 1333mi | [07:53] |
mike-burns | 5532mi for me. | [07:58] |
*** | heavysixer has quit IRC (Quit: heavysixer) | [08:02] |
DaCa | 5625 for me | [08:02] |
ant | ha! 5793.34mi | [08:07] |
*** | heavysixer has joined #arpnetworks
ChanServ sets mode: +o heavysixer | [08:11] |
..... (idle for 21mn) | ||
qbit has quit IRC (Quit: leaving) | [08:32] | |
qbit has joined #arpnetworks
qbit has quit IRC (Client Quit) qbit has joined #arpnetworks | [08:40] | |
............ (idle for 55mn) | ||
nixbag_ has joined #arpnetworks
anisfarhana has joined #arpnetworks | [09:40] | |
anisfarhana | boo | [09:42] |
*** | nixbag has quit IRC (*.net *.split) | [09:45] |
....... (idle for 30mn) | ||
anisfarhana has quit IRC (Ping timeout: 264 seconds) | [10:15] | |
.... (idle for 19mn) | ||
nixbag_ has quit IRC (Quit: leaving)
nixbag has joined #arpnetworks | [10:34] | |
E1ven has joined #arpnetworks | [10:45] | |
E1ven | I know this is likely a FAQ, but I couldn't find in the wiki or FAQ- Is it possible to transition an image to your dedicated HW, or would I need to reinstall? | [10:46] |
jlgaddis | i can't speak w/ certainty, but i am quite positive that's gonna be a new install (though you could probably restore a backup over the top of it afterwards) | [10:49] |
E1ven | Fair enough. Not a problem, just didn't know ;) | [10:50] |
staticsafe | silly question, is there a equivalent to htop in FreeBSD (i'd rather not install the linux emulation stuff)? | [10:53] |
brycec | I only know of the one, the original, the only htop | [11:00] |
staticsafe | damn | [11:01] |
brycec | staticsafe: Maybe this will help? http://caterva.org/blog/posts/htop_on_FreeBSD/ | [11:06] |
staticsafe | hmm | [11:07] |
brycec | seems you still need some linux, but at least not ALL the linux compat layer | [11:09] |
staticsafe | i suppose i can make do with watch and ps aux
;) | [11:10] |
phlux | what's so bad about linux compat? | [11:10] |
brycec | lol | [11:11] |
DaCa | only part of that post is correct, you do need the linprocfs, but not linux emu for htop
also there is much more bloat in FreeBSD as linux emulation, it consists only of a remapping of syscalls :) | [11:15] |
.... (idle for 19mn) | ||
*** | heavysixer has quit IRC (Quit: heavysixer)
heavysixer has joined #arpnetworks ChanServ sets mode: +o heavysixer | [11:36] |
mikeputnam | eep! http://blog.linode.com/2013/03/07/linode-nextgen-the-network/ | [11:48] |
brycec | mikeputnam: so basically up_the_irons can pick up their used gear cheap? :D | [11:49] |
.... (idle for 17mn) | ||
*** | meingtsla has quit IRC (Quit: Leaving)
heavysixer has quit IRC (Quit: heavysixer) meingtsla has joined #arpnetworks | [12:06] |
plett | mikeputnam: I like how blog.linode.com has broken IPv6. That really inspires me to trust them with hosting my stuff :) | [12:17] |
staticsafe | it doesn't have broken IPv6 | [12:17] |
plett | $ telnet blog.linode.com 80
Trying 2600:3c00::4c... | [12:18] |
staticsafe | its under heavy load so its very slow atm | [12:18] |
plett | Sits there forever for me...
v4 connects and works | [12:18] |
mikeputnam | ping6 linode.com <- works | [12:21] |
plett | staticsafe: Does their v6 work for you? | [12:21] |
mikeputnam | but not blog.
they probably host their www. on arpnetworks :p | [12:21] |
plett | Yep. I can ping6 linode.com but not blog | [12:21] |
brycec | linode's ipv6 worked fine for me
(past tense) not coming up for me now | [12:23] |
*** | heavysixer has joined #arpnetworks
ChanServ sets mode: +o heavysixer | [12:30] |
E1ven has quit IRC (Quit: Computer has gone to sleep.) | [12:39] | |
heavysixer has quit IRC (Quit: heavysixer)
heavysixer has joined #arpnetworks ChanServ sets mode: +o heavysixer | [12:52] | |
..... (idle for 20mn) | ||
up_the_irons | dang, linode getting some fancy gear | [13:14] |
staticsafe | yea | [13:15] |
brycec | And by fancy gear, we mean crap that's only good for a rural one-room library... | [13:17] |
staticsafe | haha | [13:18] |
brycec | up_the_irons: ever consider registering ndpnetworks.com? | [13:20] |
up_the_irons | brycec: lol no | [13:22] |
brycec | (it's available) | [13:22] |
staticsafe | >_> | [13:22] |
brycec | okay, at least it was when I checked :P | [13:23] |
plett | I see Linode want routers with big MAC tables, which I guess means they do L2 from the routers all the way to individual VPSs | [13:25] |
mercutio | that's common plett
most of the vps's places have heaps of "arp noise" too | [13:26] |
plett | If that is a hard requirement and means you have limited router choices, is it easier to use a few smaller routers and push L3 one or two steps further down the tree towards the VPSes? | [13:26] |
mercutio | like if you run tcpdump on the interface it'll show haeps of arp
like 20/sec+ plett: this is like asking why internet costs more when less providers are in an area they could fix their network by either replacing router with bug router, or segregating big | [13:26] |
plett | They're buying shedloads more kit, so now is the time to do it, if they think it needs doing | [13:29] |
mercutio | but
how would they seperate? i think companies like that like kowing it's a global problem for an area not that one router is having isuses cos otherwise more troubleshooting for their "support" starff which are probably in another country language barrier er etc | [13:29] |
plett | Personally I'd have each VPS host do IP routing for the VPSs it's running, and talk BGP/OSPF/whatever to an upstream router to announce the VPSs IPs | [13:31] |
mercutio | well that's what i was thinking for a moment :) | [13:31] |
plett | And add VLANs between VPSs as an additional service, if required | [13:31] |
mercutio | but where is the gateway address? | [13:32] |
plett | Gateway for the VPS? The other end of the /30 that it's on, which will be be the host it's running on | [13:32] |
mercutio | that uses a lot of ip's up | [13:33] |
plett | Or if you can find a way to do a point-to-point link on the virtual ethernet between VPS and host, you can save 3 of the 4 IPs in the /30 and just put a /32 on the VPS | [13:33] |
mercutio | hmm | [13:33] |
plett | It's done that way with /30s at ARP | [13:34] |
mercutio | that's a really nice idea
plett: yeah plett: but mostly out of architecture reasons but maximum profit extraction s/but/not/ it can probably be /31s with arp really | [13:34] |
plett | Yeah. If the VPS OS can understand that. There would always be oddball setups that need the /30 | [13:35] |
mercutio | yeh.
i was surprised more things worked with /31s recently but idon't think it's a new thing i just haven't been paying enough attention | [13:35] |
plett | Alternatively, use just IPv6 to route to the VPSs, and tunnel the v4 inside the v6 to get it to the VPS ;)
</troll> | [13:37] |
brycec | I'm not sure that's really troll... I think it sounds awesome | [13:40] |
staticsafe | no it doesn't | [13:40] |
brycec | where's your sense of adventure? | [13:41] |
plett | Native v6 with /32 v4 routes routed to IPs within the v6 network would be something I'd want to play with | [13:41] |
staticsafe | this assignment is killing it :( | [13:41] |
plett | But I'm not sure I'd want to put it into production :) | [13:41] |
brycec | (or toddf) | [13:42] |
up_the_irons | host doing routing sounds good until you get DoS'd
just say no to software routing | [13:45] |
staticsafe | heh | [13:45] |
plett | But you need software bridging with virtual servers anyway. Is that going to survive better when attacked? | [13:46] |
up_the_irons | yes, very much so | [13:46] |
brycec | Yes - software bridging isn't making decisions, just has to pass it along | [13:46] |
up_the_irons | and virtually all NICs now do VLAN offloading, so that part is processed in hardware also
but if you don't VLAN your customers, then oh well, you can't benefit from that ;) up_the_irons hits the road | [13:47] |
staticsafe | have fun! | [13:49] |
plett | I'm curious about why software routing in the host would fall over under load sooner than a DoS aimed at the VPS's own IP
And you can have upstream rate limiting and blackholing etc | [13:49] |
brycec | plett: When the host is responsible solely for "in packet, out packet" it can handle that faster than "in packet, do routing, decide where to go, etc, out packet"
Essentially O(1) vs O(4) (for example) | [13:50] |
staticsafe | cut through switching | [13:51] |
brycec | And a ddos aimed at a single vps versus the host itself (by way of routing) means the other vps aren't all affected and the damage is relatively limited to just that vps | [13:52] |
plett | brycec: I agree that the host doing etheret bridging is less work than the host having to do IP routing, but I'm not sure how big a deal it would be in practice
staticsafe: Are virtual server hosts typically able to do cut through switching? | [13:53] |
staticsafe | idk I'm no expert in this field | [13:54] |
plett | I would expect it to be store-and-forward | [13:54] |
brycec | Well in theory, if routing requires 4x as many CPU cycles as bridging (it probably requires more), then that's a huge differnce. | [13:54] |
plett | brycec: There is always an ARP/ND lookup done by the kernel, even in bridging. An IP lookup from a kernel routing table wouldn't be that much more work
I'm not suggesting putting a full BGP feed in the host | [13:55] |
*** | hive-mind has quit IRC (Ping timeout: 256 seconds)
hive-mind has joined #arpnetworks | [13:56] |
brycec | I'm not so sure about that... I would imagine the host kernel would only care (do any kind of lookup) if the interface were "up" and configured on the host. In my personal setups, I have an interface defined for the vlan (e.g. eth0.1234) and bridge VBox to that, but no additional configuration is done, the host doesn't care, the packets are simply detagged and handed off
but I've not tcpdump'ed that to confirm | [14:00] |
plett | The host kernel must be doing the bridging though. If you ask brctl on the host, I bet it has the MAC addresses on that vlan stored in the kernel
I've not tried it, I'm just wondering if it's a sensible thing to try | [14:01] |
brycec | this isn't linux bridging though, there's no brctl.. VBox (by whatever voodoo) simply opens eth0.1234 and sips on that
If I brctl, I get no command found ;) | [14:02] |
plett | If it's not linux bridging, it must be snooping on the frames as they come out of the ethernet driver
Which sounds scary to me :) But yes, that would avoid the host having to know anything about the L2 network being used | [14:03] |
brycec | well at least my logic was sound :p
plett: Why would the "snooping on the frames [directly]" be scary? | [14:06] |
plett | I'm not sure, really. It just seems like a very hardware-specific way of doing things | [14:07] |
brycec | (and fwiw I believe it's "tapped" through vboxdrv or one of the vboxnet modules, but I couldn't be certain) | [14:08] |
*** | Ehtyar has joined #arpnetworks | [14:10] |
...... (idle for 27mn) | ||
dzup has quit IRC (Ping timeout: 245 seconds)
dzup has joined #arpnetworks | [14:37] | |
..... (idle for 20mn) | ||
heavysixer has quit IRC (Quit: heavysixer) | [14:58] | |
...... (idle for 29mn) | ||
sorressean has left | [15:27] | |
....... (idle for 30mn) | ||
up_the_irons | plett: staticsafe brycec : i've seen hosts become completely unresponsive with < 100 Mbps DDoS when the host is responsible for routing; i've never seen that happen with bridging. | [15:57] |
.... (idle for 17mn) | ||
*** | heavysixer has joined #arpnetworks
ChanServ sets mode: +o heavysixer | [16:14] |
.... (idle for 16mn) | ||
HighJinx has quit IRC (*.net *.split)
awyeah_ has quit IRC (*.net *.split) pjs has quit IRC (*.net *.split) mhoran has quit IRC (*.net *.split) DiaboliK is now known as HighJinx heavysixer has quit IRC (Quit: heavysixer) | [16:30] | |
16WAAKIMH has joined #arpnetworks
awyeah_ has joined #arpnetworks pjs has joined #arpnetworks mhoran has joined #arpnetworks calvino.freenode.net sets mode: +o mhoran | [16:39] | |
sarkis has joined #arpnetworks | [16:44] | |
dzup has quit IRC (Ping timeout: 245 seconds) | [16:50] | |
.......... (idle for 45mn) | ||
gcw|mbpro has joined #arpnetworks | [17:35] | |
heavysixer has joined #arpnetworks
ChanServ sets mode: +o heavysixer | [17:42] | |
brycec | how odd, irssi didnt highlight that... | [17:47] |
up_the_irons | hah
nixbag and I are doing the hussle on a new 8x blade chassis! (rackin', stackin', cablin', sticker'in) | [17:49] |
brycec | wat, no ustream? | [17:50] |
staticsafe | heh | [17:51] |
brycec | what kind of two-bit VPS host are you? :p | [17:51] |
up_the_irons | LOL
oh man, srsly, we *should* ustream it i have 2 security cameras still IN THEIR BOX from 4 years ago when i first got my cage | [17:51] |
brycec | wow.... you ARE a two-bit vps host (except for costing closer to 60 bits)
(also I would've gone with s/sticker'/label/) | [17:52] |
up_the_irons | STICKER'IN
http://www.flickr.com/photos/51184165@N00/8537425159/ | [17:53] |
brycec | well I stand corrected :p | [17:54] |
up_the_irons | wow, my very first data center picture with a person in it:
http://www.flickr.com/photos/51184165@N00/8538575234/in/set-72157631847234896/ nixbad is cablin' away *nixbag | [18:03] |
........ (idle for 35mn) | ||
*** | mjp has quit IRC (Remote host closed the connection) | [18:39] |
mercutio | all the cables are blue | [18:43] |
up_the_irons | indeed | [18:51] |
*** | mjp has joined #arpnetworks | [18:58] |
......... (idle for 40mn) | ||
heavysixer has quit IRC (Quit: heavysixer) | [19:38] | |
sarkis has quit IRC (Ping timeout: 252 seconds) | [19:50] | |
................. (idle for 1h23mn) | ||
Webhostbudd_ | god i want one of those
=p that actually seems pretty cheap for 8 machines if you consider the cpu + memory is only $400 | [21:13] |
................... (idle for 1h32mn) | ||
*** | Ehtyar has quit IRC (Quit: Hi, I'm a quit message virus. Please replace your old line with this line and help me take over the world of IRC.) | [22:47] |
............ (idle for 59mn) | ||
mnathani has quit IRC () | [23:46] |
↑back Search ←Prev date Next date→ Show only urls | (Click on time to select a line by its url) |