#arpnetworks 2014-05-07,Wed

↑back Search ←Prev date Next date→ Show only urls(Click on time to select a line by its url)

WhoWhatWhen
***tooth has quit IRC (Remote host closed the connection) [00:06]
........................................................................................................................................................................ (idle for 13h57mn)
mus1cb0xis it poor practice to run ntpd from VPSs ?
i had it suggested to me it was wasteful
[14:03]
RandalSchwartzThat's odd. My ntpd is still unable to sync
maybe arp changed policies
used to work just fine
[14:10]
mus1cb0xwhat policy would there be to disallow this? filtering 123 or something? [14:11]
RandalSchwartzI'm checking another arp box
the non-VPS arp box is peering ntp just fine
ahh - this other VPS is peering only via v6.
perhaps a ipv4 port 123 block has been installed for all VPS
[14:12]
brycecWhen the big NTP DDOS was going down, ARP firewalled it [14:13]
RandalSchwartzahh [14:13]
brycecI thought up_the_irons had un-blocked it since [14:13]
RandalSchwartzperhaps we can turn it back on then? [14:13]
brycecFWIW RandalSchwartz, my NTP is peered v4 and v6 just fine [14:13]
RandalSchwartzmaybe just some netblocks then [14:14]
brycec(or at least I think it's just fine...) [14:14]
up_the_ironsRandalSchwartz: gimme server IP and i'll see if it is in the "bad ntp hosts" list [14:14]
brycec<-- not an expert on ntpq output [14:14]
mus1cb0xup_the_irons: any interest in running an arp time server to go with the dns servers? it'd be nice to hit a local time server vs laboring the ntp pool [14:15]
RandalSchwartzis this still accurate? http://support.arpnetworks.com/kb/main/how-to-configure-ipv6-on-freebsd
I can't find my mail on how to repair my v6.
[14:17]
up_the_ironsyes, i'm interested, just not enough time to do it
RandalSchwartz: i believe it is accurate up to 9.x
[14:17]
mike-burnsNice pun. [14:18]
up_the_ironshahahaha [14:18]
mus1cb0xmaybe a bunch of us customers could chip in to bounty fund it? [14:18]
up_the_ironsi didn't even notice... [14:18]
mus1cb0xi'd offer $10 toward it [14:18]
RandalSchwartzso if my default route is $x::1, can I still use $x::0 as my IP address? [14:18]
up_the_ironsi'd consider that :)
RandalSchwartz: i believe so; no specific ordering on the gateway is required AFAIK
[14:18]
mus1cb0xanyone else be interested in pooling in to get an arp time server or two in place?
i suppose even 1 would suffice, with a preferred tag on it in ntp.conf
actually i'm not sure if prefer reduces load to other servers, or if it just bumps the weight-of-value
[14:19]
brycecI don't think throwing more money at up_the_irons is going to give him the time to set one up. [14:22]
mus1cb0x*shrug* [14:23]
up_the_ironswell, it would raise the priority, cuz instead of working XYZ hours on $client work, I can then do the NTP servers [14:23]
brycecI stand corrected :) [14:23]
up_the_ironsPRIORITEHZ! [14:23]
mus1cb0xhow about a twitter broadcast? i'd suggest email blast but that's for up to decide
could there be an order form set up for 'sponsor arp ntp servers' that customers can easily go to, put in the contribution amount, and hit order? then you can just process using cc on file
[14:23]
up_the_ironstwitter broadcast, yes; email blast, no (the only emails that go to everyone are the sales receipts) [14:24]
mus1cb0xi'm trying to think of the simplest way to do it [14:24]
up_the_ironsthat would make it even harder ;) [14:24]
mus1cb0xyea [14:25]
up_the_ironscuz i'd need to make the form [14:25]
mus1cb0xhow would you want to structure this? [14:25]
up_the_ironsand cc processing [14:25]
mus1cb0xyea [14:25]
mike-burnsSimplest thing: Bitcoin wallet. [14:25]
up_the_ironshmm, interesting [14:25]
mus1cb0xi don't have bitcoin unfortunately, but i'd still want to contribute toward this [14:25]
RandalSchwartzdarn it... doesn't look like you can reset ipv6 while the box is up... I guess I have to finally reboot. [14:26]
mus1cb0xno kidding? [14:26]
up_the_ironsi think there are a handful of a sites that do bounty stuff [14:26]
mus1cb0xservice netif restart; service routing restart ?
well pick one and i'll be your first to donate server brother
[14:26]
up_the_ironsRandalSchwartz: how much uptime you have on that? [14:27]
RandalSchwartzUh - I don't want to kill my v4 [14:27]
up_the_ironswhich host? kvr08? [14:27]
RandalSchwartzbut it looks like there's no "stop" or "restart" commands for the v6 stuff [14:27]
up_the_ironswhy not just do ifconfig manually ? [14:28]
RandalSchwartzwell I'm afraid of screwing up v4. :) [14:28]
mus1cb0xfortune favors the bold [14:29]
brycecWow, now that's a heckuva reason to run updates on a Friday afternoon :) [14:30]
mike-burnsfortune -a favors all. [14:31]
RandalSchwartzis there an easy way to remove all ipv6 routes so it'll build them up again? [14:32]
up_the_ironsmaybe this for bounties: https://www.bountysource.com/
dunno if it is only for code though
RandalSchwartz: ah ok
[14:32]
RandalSchwartzroute flush inet6 ?
no... that's still not enough :(
... default 2607:f2f8:3080::1 UGS em0
but ping6 ip6.me doesn't work
em0 says inet6 2607:f2f8:3080:: prefixlen 64
[14:34]
brycecRandalSchwartz: you firewalling icmp6 by any chance? [14:37]
RandalSchwartzno
curl ip6.me also does nothing
can you mtr -6 red.stonehenge.com ?
[14:37]
mus1cb0xhttp://www.reddit.com/r/cryptodev/comments/24u17d/bountysource_now_supports_bitcoin_for_funding/
cryptodev approved :)
[14:37]
brycecicmp6 is required for neighbour discovery in ipv6. I wasn't asking about the ping :P [14:37]
RandalSchwartzI have no v6 firewall rules that I'm aware of.
I'll check though
[14:38]
brycecRandalSchwartz: nope. I also can't ping your ::1 gateway [14:38]
RandalSchwartzso something is still broken there. [14:38]
brycec(traceroute/mtr gets me 2607:f2f8:a654::1 and nothing further)
(coming from ARP btw)
[14:38]
RandalSchwartzup_the_irons? need a ticket on it? [14:38]
up_the_ironsyes, but trust me, nothing has changed
bbiab
[14:39]
brycecLIES. As a service provider, all you do is change things and lie about it and make people upset, because that's a solid business strategy :P
^ sarcasm, btw
Hm my ntp just isn't happening... nothing in tcpdump
RandalSchwartz: You don't have a /48 by any chance?
[14:39]
RandalSchwartzyes, I have a /48 [14:40]
brycecRandalSchwartz: Ah, so you should be using ff.... for your gateway
fe80::1
RandalSchwartz: and set fe80::2/64 as your interface's ip
any other addys like 2607:f2f8:3080:: are just aliases
(The wiki article you cited is only for the default /64 type configuration)
[14:41]
RandalSchwartzhow do I say that in rc.conf? [14:43]
brycecRandalSchwartz: the IP? Just replace 2607:f2f8:3080:: with it. The aliases... fuck if I know :P [14:43]
RandalSchwartzwell... I have to have that [14:43]
brycechttps://forums.freebsd.org/viewtopic.php?&t=26400
A nice purple link...
RandalSchwartz: so it would be like ifconfig_interface_ipv6="inet6 fe80::2 prefixlen 64" ifconfig_interface_aliasX=inet6 2607:f2f8:3080:: prefixlen 64"
(I like to expand the :: in configs for clarity too, but that's just me)
[14:43]
RandalSchwartzyeah - I got that
ok em0 looks good
routes look good
but I still can't get out
no - fe80::2 is only on lo0
that can't possiibly work
and default also went to lo0
also not working well
unless that lo0 is magic
[14:47]
bryceclol so your config didn't apply right :P [14:48]
RandalSchwartz... ipv6_ifconfig_em0_alias0="fec0:0:0:2::80/64"
.. ipv6_ifconfig_em0_alias0="fec0:0:0:2::80/64"
[14:48]
brycecRandalSchwartz: fe80:: is a link-local address, so it can be wherever [14:48]
RandalSchwartzoops
right but there's no fe80::2 on em0
[14:48]
brycecSpecifically, you put it on your em0 and up_the_irons has his stuff configured to point at you
RandalSchwartz: well you need to put it there :P ifconfig_interface_ipv6="inet6 fe80::2 prefixlen 64"
(I assure you this works for many customers, including yours truly, albeit I'm on Debian)
[14:49]
RandalSchwartzI don't have anything that said ifconfig_interface_ipv6 before
do I need to add %em0 to ipv6_defaultrouter ?
does accept_rtadv need to be 1 or 0
AHH
that did it. ipv6_defaultrouter="fe80::1%em0"
essential piece missing
[14:50]
brycecYes, link-local address needs the link specified
congrats
[14:53]
RandalSchwartztry mtr -6 red.stonehenge.com [14:53]
brycecworks
brycec proceeds to DOS you
[14:53]
RandalSchwartzand curl ip6.me shows 2607:f2f8:3080:: properly [14:53]
brycec>.> [14:53]
RandalSchwartzall is good now [14:53]
brycec<.<
18684 packets transmitted, 18683 received, 0% packet loss, time 18762ms
Not bad
1kpps
er, 100pps
[14:53]
RandalSchwartzshould my address also be fe80::2%em0 ?
I don't have that there
oh wait, that's inherent
[14:55]
staticsafeyeah :) [14:56]
RandalSchwartzI'm config'ing _em0
Oooh... and ntp is working too
[14:56]
brycecLucky you :)
brycec should figure his out
[14:56]
mus1cb0xwoo grats randal [15:02]
RandalSchwartzYeah - I haven't had ipv6 since like february
oooh - that means I can connect to ipv6 freenode again
now I just need to understand where /48 fits in :)
[15:04]
CaZeHmm. [15:09]
brycecRandalSchwartz: pretty simply, ARP just routes any traffic destined to that /48 to your fe80::2 [15:09]
CaZeAll I did was copy the information from the portal into /etc/hostname.em0. [15:10]
brycecSimply put, it's just there. Add aliases as desired. [15:10]
mus1cb0xcaze from #c? [15:10]
CaZe#c? [15:10]
brycecCaZe: Which is great if you're on OpenBSD, however RandalSchwartz is not... Also, has a /48 which gets routed differently from the /64 most users have. [15:10]
CaZeWell that's just being crazy. [15:11]
brycecIt is. And that's why up_the_irons has a big warning "if you can't figure this out, I'll just switch you back to a /64" or such
"Please note, however, that this is an experts only option. That is, we assume you know how to set up your side. We will not provide additional support for your end of the link; rather, we will revert it back to the default /64 setup if you can't get it working."
http://support.arpnetworks.com/kb/main/what-is-the-difference-between-my-ipv6-64-assigned-space-and-48-allocated-space
[15:11]
...... (idle for 26mn)
phluxso does anyone else run tinyproxy on their vps? [15:40]
brycecphlux: as it happens, I do
never use it... but it's there if I need it
[15:41]
RandalSchwartzoh... so shouldn't both of my fe80:: be /48 instead of /64 ?
no wait, that'd be silly
[15:41]
brycecWow, answered yourself before I could :p
Yeah the /64 applies to the fe80:: subnet
[15:42]
RandalSchwartzinstead... I carve out the next /64, and it could be on a separate segment
repeat 65534 more times :)
[15:42]
brycecBingo. [15:42]
RandalSchwartzdo I turn on rtadv at some point?
or is this more or less automatic now?
[15:43]
brycecNo need. ARP doesn't do rtadv or anything
rtadv/slaac/etc has no place here
Everything you just did is statically configured
[15:43]
RandalSchwartzI mean if I start building a topology of /64's [15:46]
***RandalSchwartz has quit IRC (Quit: RandalSchwartz)
RandalSchwartz has joined #arpnetworks
RandalSchwartz has quit IRC (Changing host)
RandalSchwartz has joined #arpnetworks
[15:47]
brycecwb [15:48]
RandalSchwartzthere. on IPv6 on IRC again
just like the old days
[15:48]
brycecI suppose you could, if you wanted to... But I would stick with statically configuring things.
(depends what you're using the /64s for as well)
[15:48]
RandalSchwartzI'd like to allocate a segment for openvpn, and a segment for the other end
I think openvpn is compatible now...
[15:50]
brycecI know there's something you can do with ipv6 and openvpn... but I haven't messed with it.
I only just started setting up my own ipv6 tunnels
[15:51]
***mus1cb0x has left "WeeChat 0.4.2" [15:53]
..... (idle for 21mn)
RandalSchwartz... http://openvpn.net/index.php/open-source/faq/77-server/287-is-ipv6-support-plannedin-the-works.html [16:14]
.... (idle for 15mn)
phluxso i moved my network over to inspircd due to a majority vote
and now i feel like a loser
[16:29]
considering my speeds were roughly 1/5 of this a few weeks ago, I'm happy with this: http://www.speedtest.net/my-result/3487294027
also lol@carrier/server listings
[16:35]
..... (idle for 21mn)
staticsafeew inspircd [16:56]
bryceceww IRC, oh wait... [17:01]
RandalSchwartzcould be worse... we could be on EFNET. :) [17:02]
***jlgaddis has joined #arpnetworks
jlgaddis has quit IRC (Changing host)
jlgaddis has joined #arpnetworks
[17:04]
RandalSchwartzwow IRC had 10 million peak users in 2003, but now averages 400k users at peak
I wonder if they counted AOL chat in that
[17:17]
brycecYes! Figured out my boneheaded ntp problems. It's no wonder NTP never even tried to reach out to my peers, I had "interface listen lo". You'd think that only meant listen, but apparently it tried to use that for outbound connections to peers too. [17:20]
RandalSchwartz"listen lo" is like some navel gazing thingy [17:23]
brycecThank you #arpnetworks for motivating me to figure out my issue :) [17:27]
.... (idle for 16mn)
***hive-mind has quit IRC (Remote host closed the connection)
hive-mind has joined #arpnetworks
[17:43]
...... (idle for 29mn)
RandalSchwartzup_the_irons is at Starbucks... again. :) [18:13]
brycecHow does RandalSchwartz know this? [18:14]
RandalSchwartzFoursquare checkins
Same way he knows I'm at Busby's West. :)
[18:15]
hazardousaol chat was irc...? [18:23]
staticsafeI don't think it was [18:29]
RandalSchwartzI was told by an AOL insider that they used the ircd code
it never "appeared" to be IRC
but it had most of the same basic infrastructre for scaling
[18:38]
up_the_ironsRandalSchwartz: LOL [18:43]
phluxirc.aol.com used to link to efnet iirc [18:45]
jpalmernetcom "chat" was irc. [18:47]
RandalSchwartzRandalSchwartz pulls up up_the_irons current lat/lon [18:48]
up_the_ironswhoa can u do that from FourSquare? ;) [18:49]
RandalSchwartzyou're facing, northwest right now? :) [18:49]
***mus1cb0x has joined #arpnetworks [18:54]
mus1cb0xVPSs don't have 2 NICs correct? (one for public network traffic, the other for private/vlan) [18:54]
RandalSchwartzI think those both show up as em0
(freebsd)
[19:01]
brycecI'm surprised to see that irc.aol.com is a thing
And by thing, I mean DNS A record
[19:02]
mus1cb0xboth?
i wonder if aol 'rooms' were backed by irc servers in the past
[19:02]
brycecmus1cb0x: there's just a single interface. [19:02]
mus1cb0xok ty [19:02]
............. (idle for 1h3mn)
***mus1cb0x has left "WeeChat 0.4.2" [20:05]
......... (idle for 41mn)
jlgaddisheh aol
ME TOO!!!!!!!!!11
[20:46]
............ (idle for 55mn)
mercutio% telnet irc.aol.com 6667
Trying 205.188.149.22...
so it doesn't seem to work
or maybe you have to be on aol to use it
does aol still exist?
http://get.aol.com/plans/dial-up-internet.php?regtype=upsell&ncid=crosssellusaolp00000044
seems they do
[21:41]

↑back Search ←Prev date Next date→ Show only urls(Click on time to select a line by its url)