RE: Strange public traceroutes return private RFC1918 addresses

2004-02-03 Thread Michael . Dillon
these days? Some people like to do forward planning instead of waiting until an issue hits them in the face. By definition, forward planning will never be dealing with pressing issues. --Michael Dillon

Re: An analysis.

2004-01-30 Thread Michael . Dillon
ring that was either unprotected or both legs cut. After 10 minutes someone manually rerouted the circuits. --Michael Dillon P.S. Larry, what do you think? Leading by example?

Re: Outbound Route Optimization

2004-01-27 Thread Michael . Dillon
reroute. The jury is still out on that. --Michael Dillon

Re: Outbound Route Optimization

2004-01-27 Thread Michael . Dillon
no control over what happens in that AS and, more importantly, you have no control over the peering points bewteen ASes. Your measurements are as meaningless as measurements of an IP over ATM network. --Michael Dillon

Re: Outbound Route Optimization

2004-01-26 Thread Michael . Dillon
with MPLS. But are any of the researchers seriously looking at how to provide a network in which all packets flow through two diverse paths to provide better reliability? --Michael Dillon

Re: sniffer/promisc detector

2004-01-23 Thread Michael . Dillon
that multiple techniques working in synergy is best. --Michael Dillon

Re: sniffer/promisc detector

2004-01-21 Thread Michael . Dillon
against you then you can pay more attention to the much tougher security issues which sometimes can only be resolved through constant vigilance. --Michael Dillon

Re: New IPv4 Allocation to ARIN

2004-01-19 Thread Michael . Dillon
of daily activities. --Michael Dillon

Re: Third Level domains patented?

2004-01-16 Thread Michael . Dillon
is the subject of the Verisign lawsuit. --Michael Dillon

Re: Third Level domains not patented

2004-01-16 Thread Michael . Dillon
/1997-01/msg00017.html Pass it on to anyone else who may be interested. --Michael Dillon

Re: PC Routers (was Re: /24s run amuck)

2004-01-15 Thread Michael . Dillon
that differentiates you from other network operators. In a world where everybody runs C and J networks, there is only one flavor available, vanilla. --Michael Dillon

Re: /24s run amuck

2004-01-14 Thread Michael . Dillon
by a few large brand-name high-margin suppliers there are also several low-margin suppliers offering generic products with minimal handholding. Why don't we see this in the router business? --Michael Dillon

Re: /24s run amuck

2004-01-14 Thread Michael . Dillon
. http://www.imagestream.com/Cisco_Comparison.html How many of you would buy an Imagestream box to evaluate for your next network buildout? --Michael Dillon

Re: Upcoming change to SOA values in .com and .net zones

2004-01-08 Thread Michael . Dillon
. --Michael Dillon

Re: Upcoming change to SOA values in .com and .net zones

2004-01-08 Thread Michael . Dillon
this would even lead to possible future benefits for many of us mice? If you are going to attack Verisign, at least pick a weak point to target with your attack. --Michael Dillon

Re: Root Authority

2003-12-16 Thread Michael . Dillon
confusing it's because, like the Tao, what can be spoken is only a one-sided view of what really is. --Michael Dillon

Re: Authority

2003-12-10 Thread Michael . Dillon
, there was a lot of bottom-up pressure that finally coalesced and ARIN was obviously the right thing to do. --Michael Dillon (one of the original members of the ARIN Advisory Council)

Re: Need Contact at RoadRunner

2003-12-08 Thread Michael . Dillon
organization like CIS? http://www.cisecurity.org/ Suggestions? --Michael Dillon

Re: MTU path discovery and IPSec

2003-12-05 Thread Michael . Dillon
http://www.ipv6-es.com/02/in/i-agenda.htm --Michael Dillon

Re: Does your Certifying Authority have a clue who you are? Do they care?

2003-12-05 Thread Michael . Dillon
. --Michael Dillon

Re: AOL rejecting mail from IP's w/o reverse DNS ?

2003-12-03 Thread Michael . Dillon
rules). Why can't the same principles be applied to email or IM services? --Michael Dillon

Re: AOL rejecting mail from IP's w/o reverse DNS ?

2003-12-03 Thread Michael . Dillon
working for some of the larger users of email. --Michael Dillon

Re: AOL rejecting mail from IP's w/o reverse DNS ?

2003-12-03 Thread Michael . Dillon
-spammer brigade. --Michael Dillon

Re: Server mirroring

2003-11-28 Thread Michael . Dillon
/~brent/rsyncntdoc.html and it has working links to the pieces of Cygwin and MS Resource Kit that are required. --Michael Dillon

Re: WLAN shielding

2003-11-26 Thread Michael . Dillon
that there are no leaks. No guarantees but I'd be interested to hear a report if you try this. --Michael Dillon

Re:

2003-11-20 Thread Michael . Dillon
the homepages of the authors. --Michael Dillon

Re: Portable Cooling

2003-11-12 Thread Michael . Dillon
temperature) and it was much more comfortable than that week with the portable coolers. --Michael Dillon P.S. it would be interesting to know if anyone has some creative solutions to data center design to cope with cooling system failure other than n+1 redundant coolers.

Re: This may be stupid but..

2003-11-11 Thread Michael . Dillon
questions are the ones that don't have a right answer. --Michael Dillon

Re: This may be stupid but..

2003-11-10 Thread Michael . Dillon
for. For example I could have told a recruiter that the answer should mention TTL and echo-reply. If you shop for a recruiter who is willing to learn about your needs and properly select candidates according to *YOUR* requirements I think that recruiters can be much better than hiring directly. --Michael

Re: This may be stupid but..

2003-11-10 Thread Michael . Dillon
that do stuff, he understood what was happening inside the network layers themselves. There are lots of people who know how to use traceroute or Infovista but you wouldn't want them logging into your core routers for troubleshooting. --Michael Dillon

Re: Yankee Group declares core routing obsolete (was Re: Anybody using GBICs?)

2003-10-31 Thread Michael . Dillon
sort of fashion fad? --Michael Dillon

Re: IPv6 NAT

2003-10-31 Thread Michael . Dillon
is time and hard work. We have to put in the effort to address *ALL* the weaknesses until we've raised the bar so high that only the toughest black hats have the time, skills and energy to break the weakest link. --Michael Dillon

Re: IPv6 NAT

2003-10-30 Thread Michael . Dillon
IPv6 firewall function, i.e. IPv6 NAT. It wouldn't be the first time that acronyms have been reinvented, e.g. RED, GSM. --Michael Dillon

Re: ISPs' willingness to take action

2003-10-28 Thread Michael . Dillon
give a traffic ticket to the little old lady doing 30 mph on the freeway. --Michael Dillon

Re: [arin-announce] IPv4 Address Space (fwd)

2003-10-28 Thread Michael . Dillon
people will do IPv6 leaving you in the dust when critical mass finally arrives. It's that simple. --Michael Dillon

RE: ISPs' willingness to take action

2003-10-27 Thread Michael . Dillon
the possibility of secure web mail service is there. Seems to me that you could sell some service and educate the users about safe email practices at the same time. --Michael Dillon

Re: Notice Periods

2003-10-20 Thread Michael . Dillon
. It is not appropriate to require network operators to take actions to adapt to a change that may or may not occur depending on some policy approval process. The two notice periods need to be decoupled so that the policy approval is done first and then the technical notice period begins. --Michael Dillon

Re: Site Finder

2003-10-17 Thread Michael . Dillon
the user why they were diverted to the page, explains the privacy risks of the Verisign diversion, gives them an option to change DNS servers to opt-out of the University's diversion, and provides links to online dictionaries, spell-checking software, keyboarding software, etc. --Michael Dillon

Re: Tomatoes for Verisign at NANOG 29

2003-10-17 Thread Michael . Dillon
. But if you have a good job opening in your company, then get the word out to these people and to their colleagues who did not attend NANOG. --Michael Dillon

Re: more on VeriSign to revive redirect service

2003-10-16 Thread Michael . Dillon
there first so people have formed the habit of buying from them without thinking. --Michael Dillon

Re: Verisign to sell Network Solutions

2003-10-16 Thread Michael . Dillon
and an alias onto Apache. If you want to get rid of the .com domain name then you need some way of identifying which traffic still uses the old .com domain name and then you need some means of notifying the users to change their own records or address books. --Michael Dillon

Re: Extreme BlackDiamond

2003-10-14 Thread Michael . Dillon
and I would be happy to see the list owner come down hard on the perp. Banishment? You should make sure you know who the perp is before making such pronouncements (or maybe it doesn't matter). Not really. It's the list owner who should know who the perp is before taking action. In any case,

RE: Extreme BlackDiamond

2003-10-13 Thread Michael . Dillon
You know what, go and fuck yourself you little whore.. Please don't hesitate to contact us if you have any more questions. Best Regards, Shazad eServers - driving the e into your business. This is the second time recently that a member of this list has dragged their own personal disputes

Block all servers?

2003-10-10 Thread Michael . Dillon
of the technical information about the various broadband routers so that ISPs have an exhaustive and definitive source to refer to. --Michael Dillon P.S. I have always used a router on my Internet connection even when it was only a dialup connection. Back then it was a FreeBSD box running TIS firewalls

Re: Wired mag article on spammers playing traceroute games with trojaned boxes

2003-10-10 Thread Michael . Dillon
default config and un-blocked service. If the user has to intervene in order to enable a server type application to function, that makes it a lot harder for trojan exploits to take hold. --Michael Dillon

Re: Wired mag article on spammers playing traceroute games with trojaned boxes

2003-10-10 Thread Michael . Dillon
these things? The trouble with a mailing list discussion is that it wanders all over the place. But at NANOG you could focus on the network operational issues of these networks of compromised machines. --Michael Dillon

Re: South America NOG ?

2003-10-08 Thread Michael . Dillon
foro de redes has been going on since '91. the mailing list is enredo. And you can find them at http://www.enred.org The mailing list link is in the upper right hand corner. --Michael Dillon

Sitefinder study released

2003-10-08 Thread Michael . Dillon
on the NANOG mailing list. At minimum, you should send copies to both ICANN and to the Berkman Center (read the above paper for a URL). --Michael Dillon

Re: sitefinder technical discussions

2003-10-07 Thread Michael . Dillon
archives, it is at http://lists.elistx.com/archives/sitefinder-tech-discuss/ --Michael Dillon

Re: sitefinder technical discussions

2003-10-07 Thread Michael . Dillon
. --Michael Dillon

Re: Verisign's public opinion play

2003-10-07 Thread Michael . Dillon
publications, then if none of them print it, resubmit it as a letter to the editor. In general, a case study is easier to write up that a paper and it can be used later as raw material by people who are doing research for a more detailed paper. --Michael Dillon

Re: Verisign's public opinion play

2003-10-07 Thread Michael . Dillon
of the matter. And this list is definitely not the place to discuss writing a letter of protest. If political activity is your bag, then try http://www.meetup.com --Michael Dillon

Re: VeriSign Capitulates

2003-10-06 Thread Michael . Dillon
. A number of people who posted messages to this list could rectify that lack of data by writing up their findings in a short paper and presenting it at a conference or publishing it in a magazine or journal. I don't think the fight is over yet. --Michael Dillon

Re: NTP, possible solutions, and best implementation

2003-10-03 Thread Michael . Dillon
is a UNIX box then it is easy to take a simple proxy such as udprelay and extend it to do some application layer checking. --Michael Dillon

Re: NANOG 29 hotels

2003-10-03 Thread Michael . Dillon
cylinder car park tower next door. You can find out more details on their web page http://www.loewshotels.com/hotels/chicago/default.asp but I don't really know about Internet access in the hotel. --Michael Dillon

Re: New AS block allocated to the RIPE NCC

2003-10-02 Thread Michael . Dillon
-parseable source for this information. --Michael Dillon

Re: NTP, possible solutions, and best implementation

2003-10-02 Thread Michael . Dillon
device and the net protects it from abuse, but since this UNIX server is a pass-through device from the point of view of NTP, it does not change the stratum level of the service any more than an IP router does. --Michael Dillon

Re: ARIN policy proposals of interest

2003-10-01 Thread Michael . Dillon
flying to Chicago, why not attend the ARIN members meeting on the 2 1/2 days following NANOG. More info here http://www.arin.net/ARIN-XII/index.html --Michael Dillon

Re: Annoying dynamic DNS updates (was Re: someone from attbi please contact me ...)

2003-09-29 Thread Michael . Dillon
and distribute a tool that fixes the problem. Make sure the tool can run windowless as part of an ISP or corporate install script. Then sit back and watch while MS assimilates the functionality of this new tool in a later release. --Michael Dillon

Yet another address harvesting analysis idea

2003-09-29 Thread Michael . Dillon
and their policies. Bandaid fixes only buy time, they don't fix the problem. --Michael Dillon P.S. ASRG is a good idea because it is systematically collecting and validating a lot of what we know about spam to make it easier for decision makers to understand the issues. http://www.irtf.org/asrg/

Re: ISPs blocking port 53? (was Re: Annoying dynamic DNS updates)

2003-09-29 Thread Michael . Dillon
someone who is also listed as a whois contact. But right now I don't see any good way to systematically identify clueful complainers. --Michael Dillon

Re: Annoying dynamic DNS updates (was Re: someone from attbi please contact me ...)

2003-09-29 Thread Michael . Dillon
to the plate. As much as I don't care for Netgear's products, they did show decent corporate responsibility when UW was able to escalate to the appropriate management at Netgear. Sounds like a great example to put before the judge when you sue Microsoft. Can anyone say class action? --Michael

Re: Verisign Responds

2003-09-25 Thread Michael . Dillon
this point forms an indirect support of Verisign's action by the U.S. government. --Michael Dillon

Independent Technical Review Panel

2003-09-24 Thread Michael . Dillon
implementation. The technical review panel will consist of leading experts in the field. Is he lying about this? If not, where is this panel and who is on it? --Michael Dillon

Re: Verisign Responds

2003-09-24 Thread Michael . Dillon
this point forms an indirect support of Verisign's action by the U.S. government. --Michael Dillon

Re: VeriSign SMTP reject server updated

2003-09-22 Thread Michael . Dillon
and messages. Son of Carnivore? --Michael Dillon

Re: ICANN - Formal Complaint re Verisign

2003-09-18 Thread Michael . Dillon
keyloggers on computers that sniff out Internet banking passwords. This would be far more effective if the keyloggers were installed by a man-in-the-middle so that they were targetted only at the intended victims. --Michael Dillon

Re: ICANN - Formal Complaint re Verisign

2003-09-18 Thread Michael . Dillon
real impact on Verisign. --Michael Dillon

Re: Fun new policy at AOL

2003-09-09 Thread Michael . Dillon
How does this sound for a new mail distribution network. Customers can only send mail through their direct provider ISPs can only send mail to their customers and their upstream provider. Sounds like NIMTP. See Google for more... --Michael Dillon

Re: Microsoft distributes free CDs in Japan to patch Windows

2003-09-09 Thread Michael . Dillon
today? Failing that, why can't they bundle up just the updates onto a CD that is released every few months and shipped out to all of their regular customers along with permission to copy and redistribute. That way more OEM's would ship out fully updated machines. --Michael Dillon

Re: Microsoft distributes free CDs in Japan to patch Windows

2003-09-08 Thread Michael . Dillon
it before, they can do it again. --Michael Dillon

Re: East Coast outage?

2003-08-15 Thread Michael . Dillon
that they never propogate very far from their source AS? --Michael Dillon

Re: testing bandwidth of big internet pipes

2003-08-06 Thread Michael . Dillon
://www.spin.rice.edu/Software/pathChirp/ Both of these websites have documents that you may find useful, or you can google on pathrate or pathchirp to find additional documents. --Michael Dillon

Re: Complaint of the week: Ebay abuse mail (slightly OT)

2003-08-05 Thread Michael . Dillon
everybody does it), bring it on over to '[EMAIL PROTECTED]'. I've just joined the ASRG list and if I can find the time I will try to write this up as a draft architecture and post it. But feel free to copy these emails to ASRG if you feel it would be worth discussing there. --Michael Dillon

Re: Complaint of the week: Ebay abuse mail (slightly OT)

2003-08-04 Thread Michael . Dillon
servers. Users could continue to use authenticated SMTP to initiate the sending of email, but nobody would accept any unauthenticated SMTP servers any more. --Michael Dillon

Re: WANTED: ISPs with DDoS defense solutions

2003-08-01 Thread Michael . Dillon
not hard to think up value-added services that could be provided by such boxes and generate additional revenue. --Michael Dillon

Re: North America not interested in IP V6

2003-08-01 Thread Michael . Dillon
on the observed trends in IPv4 /32's. I'm not sure where one would take this, but I think a lot of people would be interested in seeing some type of well-presented analysis of these questions. --Michael Dillon

Is there a technical solution to SPAM?

2003-07-29 Thread Michael . Dillon
of SPAM and spammers from this mailing list since it is not related to network engineering or operating an IP network. --- Michael Dillon Capacity Planning, Prescot St., London, UK Mobile: +44 7900 823 672Internet: [EMAIL PROTECTED] Phone

Re: Cisco vulnerability and dangerous filtering techniques

2003-07-23 Thread Michael . Dillon
for thought... --Michael Dillon

Re: Backbone Infrastructure and Secrecy

2003-07-09 Thread Michael . Dillon
, wavelengths, circuit boards, chips) and are continually dropping in price. Perhaps it will require government regulations regarding diversity and resilience to change this but wouldn't it be nice if the industry could get together and solve this problem in a self-regulatory fashion? --Michael

Re: Seeking NJ-NYC connectivity

2003-07-09 Thread Michael . Dillon
The situation is that we'd need to take a DS3 backhaul for DSL in northern Jersey somewhere, and find a cheap way to cross the Hudson and have it land at Telehouse. Free space optical, perhaps? http://www.isp-planet.com/cplanet/business/piscitelloaug01.html --Michael Dillon

Re: Backbone Infrastructure and Secrecy

2003-07-09 Thread Michael . Dillon
for evil purposes is not as easy as it looks. --Michael Dillon

Re: National Do Not Call Registry has opened

2003-06-30 Thread Michael . Dillon
written!? --Michael Dillon yawn

AS number consolidation

2003-05-30 Thread Michael . Dillon
Does anyone know of case studies of companies collapsing multiple ASes into one on their network? I have the Allegiance Telecom presentation from NANOG 27 but I would like to hear how other people have done it as well. --Michael Dillon

RE: Curing the BIND pain

2003-04-02 Thread Michael . Dillon
. --Michael Dillon

RE: Curing the BIND pain

2003-04-01 Thread Michael . Dillon
before. It does not impress us. Thanks, --Michael Dillon P.S. No, I'm not the NANOG police; I'm just stating my opinion.

Curing the BIND pain

2003-03-27 Thread Michael . Dillon
then, this is still a string and sealing wax solution. It's situations like this that demonstrate just how primitive our supposedly high technology really is. --Michael Dillon

Re: how to get people to upgrade? (Re: The weak link? DNS)

2003-03-26 Thread Michael . Dillon
networks, who have never heard of NANOG. There is no universal forum anymore. The Internet isn't special anymore. --Michael Dillon

Re: OpenSSL

2003-03-18 Thread Michael . Dillon
random jitter insertion guarantees on such a service to foil people using timing attacks? --Michael Dillon

RE: Gender and other protocol issues

2003-03-13 Thread Michael . Dillon
. ;-) --Michael Dillon

Re: OT: Increasing Cell Phone Signal inside a NOC?

2003-03-12 Thread Michael . Dillon
to work around obstructions like HVAC or racks. --Michael Dillon P.S. of course, my first answer might have been right too... http://www.innmug.org/information/switchview.html Replace the cordless phone system with 802.11b and VOIP and some LDAP servers and this phoneset http://www.symbol.com

Re: Route Supression Problem

2003-03-12 Thread Michael . Dillon
are an amazing TCP/IP guru? MRTG is utterly obsolete; replace it! http://rtg.sourceforge.net And if you can't make it to every NANOG meeting, then do check the website for useful presentations like this one http://www.nanog.org/mtg-0302/ppt/beverly.pdf --Michael Dillon P.S. considering the price of huge

69/8 is harder to fix than it looks at first glance

2003-03-12 Thread Michael . Dillon
are simple and can be solved using a router and some PERL scripts. Some problems are hard technically and socially. These kinds of problems can only be solved if you are willing to look at the big picture as well as the immediate impacts. --Michael Dillon

Re: Move all 9-1-1 to 8-5-5

2003-03-11 Thread Michael . Dillon
the bogon problem. --Michael Dillon

Re: 69/8...this sucks

2003-03-11 Thread Michael . Dillon
and get this on the agenda with them. Technical details can be worked out later, but now we need a commitment from ARIN that they can and will make this data available and keep it up to date. --Michael Dillon

Re: 69/8...this sucks

2003-03-10 Thread Michael . Dillon
network admins which will drive all ISPs and device vendors to fix the problem. If anyone wants to discuss this further, then I suggest that the upcoming ARIN meeting in Memphis is the ideal venue to do so. --Michael Dillon

Re: Building Cited for Housing Fuel Tanks Catches Fire [NYT]

2003-03-10 Thread Michael . Dillon
in routers and switches to identify which bits of the hardware generate the most heat (i.e. consume the most power) and which functions generate the most heat? Maybe there are opportunities for dramatically reducing power consumption by changing the way we configure our networks. --Michael Dillon

RE: 69/8...this sucks -- Centralizing filtering..

2003-03-10 Thread Michael . Dillon
. -- Michael Dillon

RE: 69/8...this sucks -- Centralizing filtering..

2003-03-10 Thread Michael . Dillon
. --Michael Dillon

Re: 69/8...this sucks -- Centralizing filtering..

2003-03-10 Thread Michael . Dillon
be required. Cisco is already a member of ARIN. If anyone out there buys Juniper routers, perhaps you might suggest that they also join ARIN and work together with Cisco and the network operators to move this forward. --Michael Dillon

<    1   2   3   4   5   6   7   >