#arpnetworks 2015-10-14,Wed

↑back Search ←Prev date Next date→ Show only urls(Click on time to select a line by its url)

WhoWhatWhen
brycecFor those who don't know https://dl.dropboxusercontent.com/u/3167967/screenshot_2015-10-14_00-04-33.png [00:07]
mercutioit does look a bit off [00:11]
brycecOff? In what way? [00:13]
mercutioin that it should say arpnetworks [00:13]
brycecIs that the aforementioned cosmetic change? [00:13]
mercutioyes [00:13]
brycecAH yes, I would agree [00:14]
mercutioyeah the problem is that it's only that change atm, so it hadn't been pushed yet :)
SeaBIOS (version 1.7.4-20150706_011241-arp)
that's what the other one says
[00:14]
https://www.youtube.com/watch?v=k2VXoI3XTq4 [00:24]
BryceBotYouTube video: "Coreboot + Seabios vs Award Bios" by Jonpro03 [00:24]
brycec:/ seems I can't quite do what I want to do, put my VPS on a VLAN in order to put it "behind" a dedicated machine. Something seems to be stripping the tag. And alas, I can't afford any more downtime to fiddle with things. [00:29]
mercutioyou mean vlan inside vlan? [00:29]
brycecyes
(technically)
[00:30]
mercutiowhy not just use internal ip's or such? [00:30]
brycecBecause then I have to nat, for one [00:31]
BryceBotThat's what she said!! [00:31]
brycecBryceBot: no [00:31]
BryceBotOh, okay... I'm sorry. 'Because then I have to nat, for one' [00:31]
mercutioyou can always do ip routing
and route to the internal ip
err route the internet ip to the internal ip
but you'd still have to do proxyarp
[00:31]
brycecYeah, makes rules and such complicated, might have issues with ipsec too, etc [00:31]
mercutioahh
i'm not sure what would be stripping tag
[00:32]
brycecI do see tagged packets on both sides, but it seems like some packets end up stripped [00:32]
mercutioit may be some kind of vlan offload oddity or such
did you try reducing mtu?
[00:32]
brycecmaybe. I'll leave it for some other day [00:33]
mercutiook [00:33]
brycecHm I didn't. But even small ICMP didn't seem to get returned
I did see the ICMP packets arrive on the VPS, on the tagged interface even. But they didn't seem to get returned in the first place.
[00:33]
mercutioit may be a checksum issue [00:34]
brycecbrycec decides to slip in a few more minutes of "maintenance" [00:34]
mercutiojust test on internal ip's first
so that it's not downtime
is it freebsd or linux?
[00:34]
brycecIt's really annoying to debug in such a tiny window, vnc and serial are both 80x25 [00:35]
mercutioor oepnbsd. :) [00:35]
brycecOpenBSD [00:35]
mercutiohmm [00:35]
brycec(And FreeBSD on the router side) [00:35]
mercutiowhich side was not returning packets? [00:35]
brycecthe "inside" OpenBSD box behind the FreeBSD firewall [00:36]
mercutiodid you try pfctl -d for testing? [00:36]
brycecI don't think so
brycec is a bit distracted
[00:36]
mercutioopenbsd doesn't really allow much network tweeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeaking
grr
for some reason got a huge delay, and synergy meant it didn't register key up :0
[00:36]
bryceceeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeeee
lol
[00:36]
mercutioi don't even have a fast repeat rate.
wow wikipedia's ads are over half the page now
saying that less than 1% give
[00:37]
brycecI used to give until the ads/begging got so bad [00:38]
mercutioyeah i'm out of ideas for openbsd already [00:39]
brycecheh [00:39]
mercutiohmm
hwfeatures=16<CSUM_TCPv4,CSUM_UDPv4,VLAN_MTU> hardmtu 16000
[00:39]
brycecDon't fret about it [00:39]
mercutiocan't help it, i'm curious :)
but yeah i'll see if i can figure out anything when the new openbsd comes out
[00:40]
brycecheh sorry for nerd-sniping you [00:40]
mercutioheh it's that thing where you see a problem and you want to know why :) [00:40]
brycecExactly [00:40]
mercutiomost geeks seems to have it :)
at least the ones that stay in IT :)
[00:41]
brycecFor now I'm content having this VM in front of the other VM's on my dedi box [00:41]
mercutiook [00:41]
brycec(makes firewall management much simpler :)) [00:41]
mercutioi'm kind of a fan of firewall per host
but with things like port scans etc it can be nice to block further up
[00:42]
brycecNothing wrong with that. But maintenance (keeping rules/whitelists synchronized) is annoying.
For me though, I don't like firewalling in non-OpenBSD (or non-pf, really) so this covers my Debian VMs)
[00:43]
mercutioahh [00:44]
brycecAlso makes an easy ipsec endpoint for me to bridge networks [00:44]
mercutioare you doing the upgrade to 5.8 soon? [00:45]
brycecOn some hosts, certainly
I have a couple production hosts still on 5.6 - can't handle the risk of extended downtime
[00:45]
mercutioheh
5.6 is recent :)
[00:46]
brycecindeed, it just won't be "current", won't receive errata/patches, etc [00:47]
mercutioyeah depends what it's running [00:47]
brycec(which I can't fault OpenBSD for) [00:47]
mercutioi used to think it was crazy that people would want uptimes of years.
but now i see a lot of sense in it as i grew older :)
although when you have 5 year uptimes the hardware is probably getting pretty old
[00:48]
brycec(In my defense, it's not solid update we need for these services, but the risk is that something will break with the upgrade and cause extended downtime, problems etc. And that's on us, we just don't have a testbed for our stuff right now to try an upgrade) [00:50]
mercutioyeah
i remember a bit of pain with updates back when i used raidframe with openbsd
before i had nice lights out etc :)
raidframe hasn't been included in ages, so it must have been going back a long time.
and openbsd wanted to rebuild the whole raid set before booting.
i haven't actually touched software raid on openbsd in ages, any idea what it's like?
[00:53]
brycecNope 'fraid not [00:56]
"Hurricane Electric is offering existing customers and users a Full 42U cabinet in our data center in Fremont, California, US with 15 amp 120 volt power and 1 Gbps on gige Internet bandwidth for $400/month total."
wow
I mean, 15A isn't *that* much
still, lot you could do with 42U for the price of a few ARP dedi's
[01:02]
mercutioone of their fremont data centres had a lot of power issues
and i doubt power is redundant
but yeah that's damn cheap if you just want to host a whole lot of cheap servers.
[01:03]
brycecyeah I noted that too (non-redundant power feeds, etc) [01:05]
mercutioi've got a friend in santa clara, i'm sure he'd love the idea of me suggesting he do a whole lot of server installs hah
hmm 15 amp in US voltage sucks.
[01:06]
brycecYeah, relatively
eg: Good luck stuffing 42 1U servers in there
[01:07]
mercutio15 amp with NZ voltage (240v) still means you can't go dense. [01:07]
brycec15A over 42U is .02W/U [01:08]
mercutio0.2A you mean? [01:08]
brycec*2.7W/U I meant [01:08]
mercutioahh [01:08]
brycecbrycec missed a decimal :p [01:08]
mercutiohangon that still seems wrong
39.28 watts/u
it's .285 but you never round up when talking about power usage :)
my home server is using 77watts at idle.
speaking of he.net i just got an e-mail from them
[01:08]
brycecYeah you're right, I just redid my math. Not sure where I messed up. [01:10]
mercutiooh
that's the same e-mail you got isn't it :)
[01:10]
brycecpossibly the same email as I :p
Probably
[01:10]
mercutioyeah it has the $400/month thing in it
i wonder how much space they have
it's more expensive than that for colo here even before power and bandwidth
[01:11]
brycecApparently enough to run a special on it :P Overbuilt? [01:12]
***dj_goku_ has joined #arpnetworks [01:12]
mercutioone place is charging $450NZ/month for a cabinet, plus like $200 per killowat of power [01:12]
***dj_goku has quit IRC (Read error: Connection reset by peer) [01:13]
mercutioand then you need bw on top
errr $450 for half a caibnet i meant
[01:13]
brycec@exch 450 NZD USD [01:14]
BryceBot450 NZD -> 302.32142545224 USD (as of Wed, 14 Oct 2015 01:00:10 -0700) [01:14]
mercutioit's $700 for a cabinet
oh and it was actually $400 it seems, but $450 setup fee.
but yeah that's actually on the cheap side here
interesting, they list layer 2 transport pricing now
it's $1000/month on 1 year term from fremont to los angeles
it doesn't go up by much to go to europe though
cheaper just to use ip transit
[01:14]
........................... (idle for 2h12mn)
***tabthorpe has quit IRC (Ping timeout: 265 seconds) [03:33]
.................................................... (idle for 4h15mn)
tabthorpe has joined #arpnetworks [07:48]
........................ (idle for 1h59mn)
JC_Denton_ has joined #arpnetworks [09:47]
awyeah has quit IRC (*.net *.split)
djkrikke-2 has quit IRC (*.net *.split)
mike-burns has quit IRC (*.net *.split)
JC_Denton has quit IRC (*.net *.split)
carvite has quit IRC (*.net *.split)
dwarren has quit IRC (*.net *.split)
JC_Denton_ is now known as JC_Denton
JC_Denton is now known as Guest28266
[09:52]
carvite has joined #arpnetworks
dwarren has joined #arpnetworks
Guest28266 is now known as JC_Denton
[10:02]
carvite has quit IRC (*.net *.split)
dwarren has quit IRC (*.net *.split)
awyeah has joined #arpnetworks
djkrikke-2 has joined #arpnetworks
mike-burns has joined #arpnetworks
ChanServ sets mode: +o mike-burns
carvite has joined #arpnetworks
dwarren has joined #arpnetworks
[10:10]
................................................................................... (idle for 6h50mn)
relrod has quit IRC (Ping timeout: 264 seconds)
relrod_ has joined #arpnetworks
relrod_ has quit IRC (Changing host)
relrod_ has joined #arpnetworks
[17:03]
........................... (idle for 2h12mn)
relrod_ is now known as relrod [19:17]
.... (idle for 15mn)
mnathani_does ARPnetworks accept the American Express credit card? [19:32]
brycecGood question [19:35]
.... (idle for 15mn)
mnathani_The credit card updating page does not specify which cards they accept [19:50]
brycecNor is it addressed in the FAQ or support section [19:50]
mnathani_couldnt find it in the knowledgebase either
yea
[19:50]
mercutioyou could try just sticking it in [19:51]
brycectwss [19:51]
BryceBotOkay! twss! 'you could try just sticking it in' [19:51]
mercutiohahaa [19:51]
mnathani_lol [19:51]
mercutioit does
go to order
you can set visa, mastercard, american express, discover
i don't know what discover is
[19:51]
brycecit's a US credit card company
@wiki Discover Card
[19:52]
BryceBotDiscover Card :: The Discover Card is a credit card, issued primarily in the United States. It was announced by Sears in 1985 and was introduced nationwide the following year. Discover was part of Dean Witter, and then Morgan Stanley, until 2007, when Discover Financial Services became an independent company. Novus was once the major processing center that partnered with the company.... http://en.wikipedia.org/wiki/Discover%20Card [19:52]
mercutioyeah must not have much international spread. [19:52]
brycecmercutio/up_the_irons: How is the image list populated on the signup form? It lists OpenBSD 4.7 for instance, which really should just be deleted. Same with Debian lenny and squeeze. etc [19:54]
mercutioit's manually edited. [19:54]
brycecJust my $.02 but I think the list is way too long as is, and most of that are out of date releases. [19:55]
mercutioopenbsd 4.7 is still available, the rationale being that someone for some unknown reason may want to install an older version for compatibility reasons or such.
yeah
[19:55]
brycecmercutio: sure, that's why the ISO is still around. No reason to keep the image around though.
If someone knows what they're doing...
[19:55]
mercutiohmm over 5 years. [19:55]
brycecYep [19:55]
mercutiotrue. [19:56]
brycecAlso known as: Don't encourage $lusers to install unmaintained releases. [19:56]
mercutioheh [19:56]
brycecAlso, the Debian 7.3 semi-duplicates the 7.8 image, since an apt-get upgrade in the 7.3 will take it to 7.9
*7.8
[19:57]
mercutioso drop freebsd 10.0, 9.0, 7.2, openbsd 4.7 through 5.4, and ubuntu lucid you reckon?
err and debian lenny and squeeze, and centos 6.3. there are a few hmm.
[19:57]
brycecYes, precisely.
(And the page already says "If it's not listed, you can install it yourself" so that angle is covered)
Out of curiosity, do you guys have some parternship deal with "AutumnTECH"?
[19:57]
mercutiono idea [19:59]
brycecMmk. Seems sorta like it - all the other images are just operating systems, but that image is someone's product and it's very clearly at the top (because alphabet, I suspect) [20:00]
....................................... (idle for 3h14mn)
***meingtsla has quit IRC (Ping timeout: 268 seconds)
meingtsla has joined #arpnetworks
[23:14]

↑back Search ←Prev date Next date→ Show only urls(Click on time to select a line by its url)