capirca : Google Network Filtering Management

2010-04-09 Thread William Duck
   http://code.google.com/p/capirca/
   Developed internally at Google, this system is designed to utilize
   common definitions of networks and services and high-level policy
   files to facilitate the development and manipulation
   of network access control filters (ACLs) for various platforms.
 __

   Get your own *free* email address like this one from www.OwnEmail.com


Re: capirca : Google Network Filtering Management

2010-04-09 Thread Christopher Morrow
On Fri, Apr 9, 2010 at 2:09 PM, William Duck na...@qualitymail.com wrote:
   http://code.google.com/p/capirca/
   Developed internally at Google, this system is designed to utilize
   common definitions of networks and services and high-level policy
   files to facilitate the development and manipulation
   of network access control filters (ACLs) for various platforms.

would be interesting (to the community to get the authors to present
some material about this at a meeting? (a nanog meeting)

-Chris



Re: capirca : Google Network Filtering Management

2010-04-09 Thread Jon Meek
On Fri, Apr 9, 2010 at 5:57 PM, Christopher Morrow
morrowc.li...@gmail.com wrote:
 On Fri, Apr 9, 2010 at 2:09 PM, William Duck na...@qualitymail.com wrote:
   http://code.google.com/p/capirca/
   Developed internally at Google, this system is designed to utilize
   common definitions of networks and services and high-level policy
   files to facilitate the development and manipulation
   of network access control filters (ACLs) for various platforms.

 would be interesting (to the community to get the authors to present
 some material about this at a meeting? (a nanog meeting)

 -Chris

The authors gave an excellent tag-team presentation at USENIX LISA
'09. Video might be available. It would be good at a NANOG meeting.

Jon



Re: capirca : Google Network Filtering Management

2010-04-09 Thread Ravi Pina
On Fri, Apr 09, 2010 at 11:09:09AM -0700, William Duck wrote:
http://code.google.com/p/capirca/
Developed internally at Google, this system is designed to utilize
common definitions of networks and services and high-level policy
files to facilitate the development and manipulation
of network access control filters (ACLs) for various platforms.
  __
 
Get your own *free* email address like this one from www.OwnEmail.com

There is a lot of potential here, however it almost seems like
abandonware.  I've been tinkering with it in house, but ran into
the obstacle of not knowing Python (yet) to fix and improve it
myself.  Thankfully a colleague has been able to write up some
important patches which are available on the issue tracker [1].

-r

[1] http://code.google.com/p/capirca/issues/list



Re: capirca : Google Network Filtering Management

2010-04-09 Thread Christopher Morrow
On Fri, Apr 9, 2010 at 7:55 PM, Jon Meek mee...@gmail.com wrote:
 On Fri, Apr 9, 2010 at 5:57 PM, Christopher Morrow
 morrowc.li...@gmail.com wrote:
 On Fri, Apr 9, 2010 at 2:09 PM, William Duck na...@qualitymail.com wrote:
   http://code.google.com/p/capirca/
   Developed internally at Google, this system is designed to utilize
   common definitions of networks and services and high-level policy
   files to facilitate the development and manipulation
   of network access control filters (ACLs) for various platforms.

 would be interesting (to the community to get the authors to present
 some material about this at a meeting? (a nanog meeting)

 -Chris

 The authors gave an excellent tag-team presentation at USENIX LISA
 '09. Video might be available. It would be good at a NANOG meeting.

they did, so I hear, since the next nanog is in their home-court it'd
be easy to ask them to swing by and re-present :)

(as a user of this system it's really quite nice)

-Chris



Fwd: [c-nsp] capirca : Google Network Filtering Management

2010-04-09 Thread Steve Bertrand
Would someone from Google kindly confirm/deny this claim? I'm as patient
as any other, but I'm beginning to feel for those who have yet (but are
ready to) to trigger the filters...

Thankfully, my 'reasonable' regex knowledge has me ready to list a
heaping pile of filth into the ether,  if the community consensus is
that the person contained in the 'From:' below has never contributed
anything worth value to our community.

...give the word.

 Original Message 

Date: Fri, 09 Apr 2010 20:11:48 +0200
From: Guillaume FORTAINE gforta...@live.com
To: cisco-...@puck.nether.net
Subject: [c-nsp] capirca : Google Network Filtering Management


http://code.google.com/p/capirca/

Developed internally at Google, this system is designed to utilize
common definitions of networks and services and high-level policy
files to facilitate the development and manipulation
of network access control filters (ACLs) for various platforms.

___
cisco-nsp mailing list  cisco-...@puck.nether.net
https://puck.nether.net/mailman/listinfo/cisco-nsp
archive at http://puck.nether.net/pipermail/cisco-nsp/



Re: Fwd: [c-nsp] capirca : Google Network Filtering Management

2010-04-09 Thread William Pitcock
On Fri, 2010-04-09 at 22:10 -0400, Steve Bertrand wrote:
 Would someone from Google kindly confirm/deny this claim? I'm as patient
 as any other, but I'm beginning to feel for those who have yet (but are
 ready to) to trigger the filters...
 
 Thankfully, my 'reasonable' regex knowledge has me ready to list a
 heaping pile of filth into the ether,  if the community consensus is
 that the person contained in the 'From:' below has never contributed
 anything worth value to our community.
 
 ...give the word.

It is a legitimate Google product, but I don't work at Google.

William