#arpnetworks 2015-05-28,Thu

↑back Search ←Prev date Next date→ Show only urls(Click on time to select a line by its url)

WhoWhatWhen
***Hien has quit IRC (Ping timeout: 252 seconds)
Hien has joined #arpnetworks
[04:01]
grodyis heartbleed still common in the US?
amount of attempts on 443 vs. my entire IP ranges in the UK, am seeing more on my /29 from ARP
[04:07]
..... (idle for 24mn)
mercutionever assume hackers are good at targetting
there's been a general increase of scanning in general though
not only malicious
[04:31]
grodyaye, i've seen a lot of "research" companies are contributing the the noise
just glad when i setup this pfsense that i managed to get it's webui to listen on a port other than 443
else i would have probably got admin/admin owned
[04:34]
cpetseems like my bank hates me [04:47]
***cpet has left [04:56]
grodytypical.. i tanked my previous CSR/Key for my ssl
i hate revoking
[05:03]
........................... (idle for 2h10mn)
***Guest56962 is now known as qbit [07:13]
........... (idle for 53mn)
sjackso has joined #arpnetworks [08:06]
sjacksoup_the_irons: Just saw the new web site, and had to drop by and say congrats. Looks great. [08:10]
................ (idle for 1h16mn)
***ant has quit IRC (Read error: Connection reset by peer) [09:26]
.... (idle for 18mn)
ant has joined #arpnetworks [09:44]
ant has quit IRC (Quit: Leaving) [09:57]
..... (idle for 24mn)
ant has joined #arpnetworks [10:21]
........ (idle for 35mn)
mnathani_anyone have some documentation for port knocking and how I would go about setting that up on a Linux system? [10:56]
brycecLike http://linux.die.net/man/1/knockd ?
(There are a handful of promising looking google results)
[10:57]
mnathani_thanks [11:04]
brycecnp (and here I didn't think I was being very helpful :p) [11:12]
............ (idle for 57mn)
***ameise has joined #arpnetworks
ant has quit IRC (Quit: Leaving)
ameise is now known as ant
grody has quit IRC (Read error: Connection reset by peer)
grody has joined #arpnetworks
[12:09]
..................................................... (idle for 4h21mn)
mercutiospeaking of port knocking / security. with ipv4 ipsec never really took off for casual use because people's ip's are constantly changing, nat etc..
but i wonder with ipv6 having ipsec policies between ip subnets without any vpn or such will become more popular.
[16:34]
pjsI'm getting like 2KB/s from ARP [16:47]
staticsafeo_o [16:48]
pjsoh wait, just picked up a bit [16:48]
mercutio2k/sec?!
it looks normal from here fwiw
[16:48]
pjseven using this session for IRC (which is screen'd on an ARP server) is painfully lagged [16:48]
staticsafemtr please [16:49]
mercutioyeah it's probably the route back to you if it's 2k/sec
but it could be either direction
mtr in both directions is good :)
[16:49]
pjsYea, looking like its in the middle [16:49]
brycecYou might try http://ipv4.speedtest.cobryce.com/index-php.html too which is hosted on ARP. I just ran it and maxed my VPS/ISP's bandwidth. [16:50]
mercutiomiddle can mean it's changing paths too
like it returns a good path half way to sending to arp, then hops further along go down a bad path back.
[16:50]
brycecbrycec should move that to box with GbE one of these days [16:50]
mercutioi'm getting 20/8 from that [16:51]
pjsinstalling mtr [16:51]
brycecWell it's better than the 2k/s that pjs was getting :P [16:51]
mercutiobuut i'm not experiencing issues
use mtr-tiny pjs
if ubuntu
it doesn't have all the gtk dependency crap
[16:51]
pjsmercutio, os x [16:51]
mercutiooh [16:52]
brycec(I got just under 100mbps down from it, and 12mbps up to my speedtest, which is ARP's and my ISP's limits, respectively) [16:52]
mercutiocool. [16:52]
pjsIt won't even run for me :) [16:52]
mercutioheh [16:52]
pjsmy mtr install seems to have died as well (fetching files) [16:53]
mercutiohmm
pjs: would you mind telling us your ip?
[16:53]
pjsprobably an issue outside of ARP
no doubt
[16:53]
mercutiobut yeah sounds like it could be outside arp [16:53]
brycecAgreed. At least it's probably not limited to just your VPS' host machine or subnet. [16:53]
mercutiooutages says about verizon dallas routing issues
can't see anything else
[16:54]
***sjackso has quit IRC (Quit: Lost terminal) [16:54]
mercutioare you using verizon pjs?
because my verizon smokeping went off earlier today too
[16:54]
brycecI do see a Verizon IP hitting my speedtest
(but not starting a test)
from 71.96.0.0/11
[16:55]
mercutiothat's dallas isan't it?
well the .1.1 is :)
[16:55]
pjsmercutio Yes I am.. FiOS [16:55]
mercutioa /11 is pretty big [16:56]
pjsI'm in LA :) [16:56]
mercutiopjs: yeh i think it's probably just a verizon issuue then i'm sorrey [16:56]
brycecmercutio: It's the netblock whois returned and I didn't want to get too personal with his IP ;P [16:56]
mercutiobrycec: understand :) [16:56]
pjsJust my luck.. all good.. whatever [16:56]
mercutioit'll probably clear up soon i imagine
they're talking about issues in NY on outages@
oh and apparently issues on verizon to level3 and ntt
both of which arp use
[16:57]
pjsthanks dude!
that helps
[17:00]
bryceco/ hooray we're a helpful IRC channel. [17:04]
mercutioheh, we usually are brycec
weird, i have a few mtr's running and they seem to be burning heaps of cpu for some reason
like 2 to 13% cpu each
[17:05]
brycecI've seen mtr do that on long-running instances, eventually grinding to a halt too. [17:08]
mercutiothey probably are long running
i have too many shells open again
[17:08]
brycec(not even 'R' reset cleans it up) [17:08]
mercutioi was just noticing my load average is a bit high
hmm, i wonder if i should get my window manager tos how how many shells are open
i closed a whole lot, and it's down to 245 on grep for zsh :)
[17:09]
one of tehm shifted to 100% cpu and isn't responding
is that what you meant brycec?
[17:17]
brycecyup [17:18]
mercutioit doesn't even respond to ^C [17:18]
brycecI've had exactly that happen [17:18]
mercutiooh neither does this one
not even ctrl works hmm
second one did the same
[17:18]
brycecctrl- ? that's a new one to me... [17:19]
mercutiodoes a coredump [17:19]
brycecah, TIL [17:19]
mercutiosometimes works when ^C doesn't [17:19]
BryceBotThat's what she said!! [17:19]
mercutiodown to 23 shells, taht's a bit more reasonable :) [17:19]
.................. (idle for 1h28mn)
***toeshred has quit IRC (Read error: Connection reset by peer) [18:47]
....... (idle for 32mn)
toeshred has joined #arpnetworks [19:19]
.... (idle for 17mn)
grodywho do i pester about having my /48 routed to me? [19:36]
BryceBotThat's what she said!! [19:36]
brycecgrody: support@ [19:37]
grodythanks :) [19:37]
brycecAnd be sure you understand how to configure it on your end. support@ has no patience for that kind of nonsense [19:38]
RandalSchwartzthat's what she said. :) [19:38]
brycectwss [19:38]
BryceBotOkay! twss! 'that's what she said. :)' [19:38]
brycecAnd be sure you understand how to configure it on your end. support@ has no patience for that kind of nonsense
twss
[19:38]
BryceBotOkay! twss! 'And be sure you understand how to configure it on your end. support@ has no patience for that kind of nonsense' [19:38]
brycec(at least, that's what the FAQ says) [19:38]
RandalSchwartzI presume ipv6 /48 [19:38]
grodybrycec, indeed.. i've been playing with IPv6 for quite a while.. just never needed more than the /64 on ARP til now [19:38]
RandalSchwartzif you have a ipv4 /48... scary [19:38]
grody/48's are easy [19:39]
brycecThe /48 gets routed to a link-local address rather than just being made available on the VLAN. It's quite simple really, but comes as a shock to many. [19:39]
grodyi do have two /32's advertised... it's a &*%^"*! nightmare [19:39]
brycecv4 or v6 /32? [19:39]
RandalSchwartzheh... v4 /32 is a single address
"come talk to me at 2.3.4.5!"
[19:39]
grodybrycec, yea.. every IP in the scope simply gets sent to the automagic link-local, my end i choose what /64's i want and via link-local on iface [19:40]
brycecand v6 /32 is ISP-sized subnet
grody: it's a static link-local, but you've got the idea.
[19:40]
RandalSchwartzI have something like 5 /48's now [19:40]
brycec(You are fe80::2 and ARP is fe80::1) [19:41]
grodybrycec, yea pfsense (freebsd) is piece of piss for networking :)
like teh easiest to get things done impo
just wanna experiment with VPN based load-balancing
have US/EU/UK IP addresses, but ultimately route to a single server blade
[19:41]
......................... (idle for 2h0mn)
mercutioyou could run an accelerator in different locations grody?
well for web stuff
what would a v4 /48 even be
[21:42]
RandalSchwartzconfusing :)
"my ip address is 2.3.4.5.00132'
[21:46]
mercutioactually port is 2 bytes...
of course that's only tcp/udp
[21:47]

↑back Search ←Prev date Next date→ Show only urls(Click on time to select a line by its url)