↑back Search ←Prev date Next date→ Show only urls | (Click on time to select a line by its url) |
Who | What | When |
---|---|---|
*** | Hien has quit IRC (Ping timeout: 252 seconds)
Hien has joined #arpnetworks | [04:01] |
grody | is heartbleed still common in the US?
amount of attempts on 443 vs. my entire IP ranges in the UK, am seeing more on my /29 from ARP | [04:07] |
..... (idle for 24mn) | ||
mercutio | never assume hackers are good at targetting
there's been a general increase of scanning in general though not only malicious | [04:31] |
grody | aye, i've seen a lot of "research" companies are contributing the the noise
just glad when i setup this pfsense that i managed to get it's webui to listen on a port other than 443 else i would have probably got admin/admin owned | [04:34] |
cpet | seems like my bank hates me | [04:47] |
*** | cpet has left | [04:56] |
grody | typical.. i tanked my previous CSR/Key for my ssl
i hate revoking | [05:03] |
........................... (idle for 2h10mn) | ||
*** | Guest56962 is now known as qbit | [07:13] |
........... (idle for 53mn) | ||
sjackso has joined #arpnetworks | [08:06] | |
sjackso | up_the_irons: Just saw the new web site, and had to drop by and say congrats. Looks great. | [08:10] |
................ (idle for 1h16mn) | ||
*** | ant has quit IRC (Read error: Connection reset by peer) | [09:26] |
.... (idle for 18mn) | ||
ant has joined #arpnetworks | [09:44] | |
ant has quit IRC (Quit: Leaving) | [09:57] | |
..... (idle for 24mn) | ||
ant has joined #arpnetworks | [10:21] | |
........ (idle for 35mn) | ||
mnathani_ | anyone have some documentation for port knocking and how I would go about setting that up on a Linux system? | [10:56] |
brycec | Like http://linux.die.net/man/1/knockd ?
(There are a handful of promising looking google results) | [10:57] |
mnathani_ | thanks | [11:04] |
brycec | np (and here I didn't think I was being very helpful :p) | [11:12] |
............ (idle for 57mn) | ||
*** | ameise has joined #arpnetworks
ant has quit IRC (Quit: Leaving) ameise is now known as ant grody has quit IRC (Read error: Connection reset by peer) grody has joined #arpnetworks | [12:09] |
..................................................... (idle for 4h21mn) | ||
mercutio | speaking of port knocking / security. with ipv4 ipsec never really took off for casual use because people's ip's are constantly changing, nat etc..
but i wonder with ipv6 having ipsec policies between ip subnets without any vpn or such will become more popular. | [16:34] |
pjs | I'm getting like 2KB/s from ARP | [16:47] |
staticsafe | o_o | [16:48] |
pjs | oh wait, just picked up a bit | [16:48] |
mercutio | 2k/sec?!
it looks normal from here fwiw | [16:48] |
pjs | even using this session for IRC (which is screen'd on an ARP server) is painfully lagged | [16:48] |
staticsafe | mtr please | [16:49] |
mercutio | yeah it's probably the route back to you if it's 2k/sec
but it could be either direction mtr in both directions is good :) | [16:49] |
pjs | Yea, looking like its in the middle | [16:49] |
brycec | You might try http://ipv4.speedtest.cobryce.com/index-php.html too which is hosted on ARP. I just ran it and maxed my VPS/ISP's bandwidth. | [16:50] |
mercutio | middle can mean it's changing paths too
like it returns a good path half way to sending to arp, then hops further along go down a bad path back. | [16:50] |
brycec | brycec should move that to box with GbE one of these days | [16:50] |
mercutio | i'm getting 20/8 from that | [16:51] |
pjs | installing mtr | [16:51] |
brycec | Well it's better than the 2k/s that pjs was getting :P | [16:51] |
mercutio | buut i'm not experiencing issues
use mtr-tiny pjs if ubuntu it doesn't have all the gtk dependency crap | [16:51] |
pjs | mercutio, os x | [16:51] |
mercutio | oh | [16:52] |
brycec | (I got just under 100mbps down from it, and 12mbps up to my speedtest, which is ARP's and my ISP's limits, respectively) | [16:52] |
mercutio | cool. | [16:52] |
pjs | It won't even run for me :) | [16:52] |
mercutio | heh | [16:52] |
pjs | my mtr install seems to have died as well (fetching files) | [16:53] |
mercutio | hmm
pjs: would you mind telling us your ip? | [16:53] |
pjs | probably an issue outside of ARP
no doubt | [16:53] |
mercutio | but yeah sounds like it could be outside arp | [16:53] |
brycec | Agreed. At least it's probably not limited to just your VPS' host machine or subnet. | [16:53] |
mercutio | outages says about verizon dallas routing issues
can't see anything else | [16:54] |
*** | sjackso has quit IRC (Quit: Lost terminal) | [16:54] |
mercutio | are you using verizon pjs?
because my verizon smokeping went off earlier today too | [16:54] |
brycec | I do see a Verizon IP hitting my speedtest
(but not starting a test) from 71.96.0.0/11 | [16:55] |
mercutio | that's dallas isan't it?
well the .1.1 is :) | [16:55] |
pjs | mercutio Yes I am.. FiOS | [16:55] |
mercutio | a /11 is pretty big | [16:56] |
pjs | I'm in LA :) | [16:56] |
mercutio | pjs: yeh i think it's probably just a verizon issuue then i'm sorrey | [16:56] |
brycec | mercutio: It's the netblock whois returned and I didn't want to get too personal with his IP ;P | [16:56] |
mercutio | brycec: understand :) | [16:56] |
pjs | Just my luck.. all good.. whatever | [16:56] |
mercutio | it'll probably clear up soon i imagine
they're talking about issues in NY on outages@ oh and apparently issues on verizon to level3 and ntt both of which arp use | [16:57] |
pjs | thanks dude!
that helps | [17:00] |
brycec | o/ hooray we're a helpful IRC channel. | [17:04] |
mercutio | heh, we usually are brycec
weird, i have a few mtr's running and they seem to be burning heaps of cpu for some reason like 2 to 13% cpu each | [17:05] |
brycec | I've seen mtr do that on long-running instances, eventually grinding to a halt too. | [17:08] |
mercutio | they probably are long running
i have too many shells open again | [17:08] |
brycec | (not even 'R' reset cleans it up) | [17:08] |
mercutio | i was just noticing my load average is a bit high
hmm, i wonder if i should get my window manager tos how how many shells are open i closed a whole lot, and it's down to 245 on grep for zsh :) | [17:09] |
one of tehm shifted to 100% cpu and isn't responding
is that what you meant brycec? | [17:17] | |
brycec | yup | [17:18] |
mercutio | it doesn't even respond to ^C | [17:18] |
brycec | I've had exactly that happen | [17:18] |
mercutio | oh neither does this one
not even ctrl works hmm second one did the same | [17:18] |
brycec | ctrl- ? that's a new one to me... | [17:19] |
mercutio | does a coredump | [17:19] |
brycec | ah, TIL | [17:19] |
mercutio | sometimes works when ^C doesn't | [17:19] |
BryceBot | That's what she said!! | [17:19] |
mercutio | down to 23 shells, taht's a bit more reasonable :) | [17:19] |
.................. (idle for 1h28mn) | ||
*** | toeshred has quit IRC (Read error: Connection reset by peer) | [18:47] |
....... (idle for 32mn) | ||
toeshred has joined #arpnetworks | [19:19] | |
.... (idle for 17mn) | ||
grody | who do i pester about having my /48 routed to me? | [19:36] |
BryceBot | That's what she said!! | [19:36] |
brycec | grody: support@ | [19:37] |
grody | thanks :) | [19:37] |
brycec | And be sure you understand how to configure it on your end. support@ has no patience for that kind of nonsense | [19:38] |
RandalSchwartz | that's what she said. :) | [19:38] |
brycec | twss | [19:38] |
BryceBot | Okay! twss! 'that's what she said. :)' | [19:38] |
brycec | And be sure you understand how to configure it on your end. support@ has no patience for that kind of nonsense
twss | [19:38] |
BryceBot | Okay! twss! 'And be sure you understand how to configure it on your end. support@ has no patience for that kind of nonsense' | [19:38] |
brycec | (at least, that's what the FAQ says) | [19:38] |
RandalSchwartz | I presume ipv6 /48 | [19:38] |
grody | brycec, indeed.. i've been playing with IPv6 for quite a while.. just never needed more than the /64 on ARP til now | [19:38] |
RandalSchwartz | if you have a ipv4 /48... scary | [19:38] |
grody | /48's are easy | [19:39] |
brycec | The /48 gets routed to a link-local address rather than just being made available on the VLAN. It's quite simple really, but comes as a shock to many. | [19:39] |
grody | i do have two /32's advertised... it's a &*%^"*! nightmare | [19:39] |
brycec | v4 or v6 /32? | [19:39] |
RandalSchwartz | heh... v4 /32 is a single address
"come talk to me at 2.3.4.5!" | [19:39] |
grody | brycec, yea.. every IP in the scope simply gets sent to the automagic link-local, my end i choose what /64's i want and via link-local on iface | [19:40] |
brycec | and v6 /32 is ISP-sized subnet
grody: it's a static link-local, but you've got the idea. | [19:40] |
RandalSchwartz | I have something like 5 /48's now | [19:40] |
brycec | (You are fe80::2 and ARP is fe80::1) | [19:41] |
grody | brycec, yea pfsense (freebsd) is piece of piss for networking :)
like teh easiest to get things done impo just wanna experiment with VPN based load-balancing have US/EU/UK IP addresses, but ultimately route to a single server blade | [19:41] |
......................... (idle for 2h0mn) | ||
mercutio | you could run an accelerator in different locations grody?
well for web stuff what would a v4 /48 even be | [21:42] |
RandalSchwartz | confusing :)
"my ip address is 2.3.4.5.00132' | [21:46] |
mercutio | actually port is 2 bytes...
of course that's only tcp/udp | [21:47] |
↑back Search ←Prev date Next date→ Show only urls | (Click on time to select a line by its url) |