Re: Leak or legit ? 11/8

2015-08-01 Thread Roland Dobbins

On 1 Aug 2015, at 18:47, Roland Dobbins wrote:


and Telia, as well


Got in touch with some Telia folks who're in-between flight legs - 
they're reaching out internally.


---
Roland Dobbins rdobb...@arbor.net


Re: Leak or legit ? 11/8

2015-08-01 Thread Rafael Possamai
This is interesting, the DoD has a half trillion dollar budget, so not sure
what the motivation was to get rid of a /8.

On Sat, Aug 1, 2015 at 3:24 AM, Jérôme Nicolle jer...@ceriz.fr wrote:

 Hello,

 Just saw something suprising : 11/8 just came live from AS23352
 (ServerCentral)
 http://lg.ring.nlnog.net/prefix_detail/lg01/ipv4?q=11.0.0.0 .

 ARIN's registry didn't change :

 Net Range   11.0.0.0 - 11.255.255.255
 CIDR11.0.0.0/8
 NameDODIIS
 Handle  NET-11-0-0-0-1
 Parent
 Net TypeDirect Allocation
 Origin AS
 OrganizationDoD Network Information Center (DNIC)
 Registration Date   1984-01-19
 Last Updated2007-08-22

 But on ALTDB it's declared as legit :

 http://www.altdb.net/whois.cgi?query=11.0.0.0%2F8

 So it's unlikely a mistake. What do you think happened here ?

 Best regards,

 --
 Jérôme Nicolle



Re: Leak or legit ? 11/8

2015-08-01 Thread Roland Dobbins

On 1 Aug 2015, at 18:47, Roland Dobbins wrote:

I pinged NTT and Telia, as well - it's weekend nighttime in CONUS, and 
holiday season in Scandinavia, so it may take a while for folks to 
respond.


Pinged GTT, as well.

---
Roland Dobbins rdobb...@arbor.net


Re: Leak or legit ? 11/8

2015-08-01 Thread Brian Henson
They could be part of the private cloud initiative that I read about
recently. The DOD is trying to condense down the number of data centers
they have to cut costs and leverage better control over security.

On Sat, Aug 1, 2015 at 11:03 AM, Rafael Possamai raf...@gav.ufsc.br wrote:

 This is interesting, the DoD has a half trillion dollar budget, so not sure
 what the motivation was to get rid of a /8.

 On Sat, Aug 1, 2015 at 3:24 AM, Jérôme Nicolle jer...@ceriz.fr wrote:

  Hello,
 
  Just saw something suprising : 11/8 just came live from AS23352
  (ServerCentral)
  http://lg.ring.nlnog.net/prefix_detail/lg01/ipv4?q=11.0.0.0 .
 
  ARIN's registry didn't change :
 
  Net Range   11.0.0.0 - 11.255.255.255
  CIDR11.0.0.0/8
  NameDODIIS
  Handle  NET-11-0-0-0-1
  Parent
  Net TypeDirect Allocation
  Origin AS
  OrganizationDoD Network Information Center (DNIC)
  Registration Date   1984-01-19
  Last Updated2007-08-22
 
  But on ALTDB it's declared as legit :
 
  http://www.altdb.net/whois.cgi?query=11.0.0.0%2F8
 
  So it's unlikely a mistake. What do you think happened here ?
 
  Best regards,
 
  --
  Jérôme Nicolle
 



Re: Leak or legit ? 11/8

2015-08-01 Thread Roland Dobbins

On 1 Aug 2015, at 17:11, Job Snijders wrote:


I reached out to ServerCentral network engineering to ask.


I pinged NTT and Telia, as well - it's weekend nighttime in CONUS, and 
holiday season in Scandinavia, so it may take a while for folks to 
respond.


---
Roland Dobbins rdobb...@arbor.net


Re: Leak or legit ? 11/8

2015-08-01 Thread Roland Dobbins

On 1 Aug 2015, at 17:11, Job Snijders wrote:


I reached out to ServerCentral network engineering to ask.


ServerCentral say it's legit, and that they have the appropriate 
documentation.


I encouraged them to reply here.

---
Roland Dobbins rdobb...@arbor.net


Re: Leak or legit ? 11/8

2015-08-01 Thread Job Snijders
On Sat, Aug 01, 2015 at 08:15:11PM +0700, Roland Dobbins wrote:
 On 1 Aug 2015, at 17:11, Job Snijders wrote:
 
 I reached out to ServerCentral network engineering to ask.
 
 ServerCentral say it's legit, and that they have the appropriate
 documentation.

I've been in touch with ServerCentral and they told me this is NOT a
misconfiguration. Should anybody have questions I recommend you reach
out to the ServerCentral NOC directly.

Kind regards,

Job


Leak or legit ? 11/8

2015-08-01 Thread Jérôme Nicolle
Hello,

Just saw something suprising : 11/8 just came live from AS23352
(ServerCentral)
http://lg.ring.nlnog.net/prefix_detail/lg01/ipv4?q=11.0.0.0 .

ARIN's registry didn't change :

Net Range   11.0.0.0 - 11.255.255.255
CIDR11.0.0.0/8
NameDODIIS
Handle  NET-11-0-0-0-1
Parent  
Net TypeDirect Allocation
Origin AS   
OrganizationDoD Network Information Center (DNIC)
Registration Date   1984-01-19
Last Updated2007-08-22

But on ALTDB it's declared as legit :

http://www.altdb.net/whois.cgi?query=11.0.0.0%2F8

So it's unlikely a mistake. What do you think happened here ?

Best regards,

-- 
Jérôme Nicolle


Re: Leak or legit ? 11/8

2015-08-01 Thread Job Snijders
On Sat, Aug 01, 2015 at 10:24:10AM +0200, Jérôme Nicolle wrote:
 Just saw something suprising : 11/8 just came live from AS23352
 (ServerCentral)
 http://lg.ring.nlnog.net/prefix_detail/lg01/ipv4?q=11.0.0.0 .
 
 ARIN's registry didn't change :
 
 Net Range 11.0.0.0 - 11.255.255.255
 CIDR  11.0.0.0/8
 Name  DODIIS
 HandleNET-11-0-0-0-1
 Parent
 Net Type  Direct Allocation
 Origin AS 
 Organization  DoD Network Information Center (DNIC)
 Registration Date 1984-01-19
 Last Updated  2007-08-22
 
 But on ALTDB it's declared as legit :
 
 http://www.altdb.net/whois.cgi?query=11.0.0.0%2F8
 
 So it's unlikely a mistake. What do you think happened here ?

I reached out to ServerCentral network engineering to ask.

Kind regards,

Job