Re: Looking for ATT / Verizon / Sprint WWAN service impressions - on or off-list replies welcome

2009-04-15 Thread Seth Mattinen
Crooks, Sam wrote: I'm considering use of ATT / Verizon / Sprint WWAN services and the Cisco 3G router interface cards/integrated module in C880 routers for primary or backup WAN network connectivity for routers. My comments are only for Sprint EVDO/1xRTT since that's what I use. I'm

RE: Looking for ATT / Verizon / Sprint WWAN service impressions - on oroff-list replies welcome

2009-04-15 Thread Mike Goldman
I agree do not commit without POC or trial bases. Mike Goldman -Original Message- From: Tony Varriale [mailto:tvarri...@comcast.net] Sent: Tuesday, April 14, 2009 11:49 PM To: nanog@nanog.org Subject: Re: Looking for ATT / Verizon / Sprint WWAN service impressions - on oroff-list

Anyone from Intelligence Network Online?

2009-04-15 Thread Justin Ream
Hi - I wanted to see if anyone is here from Intelligence Network Online - I suspect an old AS number and a /16 of yours is being hijacked by a spam gang operating in downtown LA and wanted to get some confirmation. -Justin

Re: Looking for ATT / Verizon / Sprint WWAN service impressions - on or off-list replies welcome

2009-04-15 Thread Marshall Eubanks
On Apr 15, 2009, at 2:28 AM, Seth Mattinen wrote: Crooks, Sam wrote: I'm considering use of ATT / Verizon / Sprint WWAN services and the Cisco 3G router interface cards/integrated module in C880 routers for primary or backup WAN network connectivity for routers. My comments are only for

Re: Network SLA

2009-04-15 Thread Saqib Ilyas
I talked to the NOC personnel at a small (compared to North American standards) ISP in Pakistan. They said that their core links are operating at less than 50% utilization most of the time. Under such conditions, violating SLA conditions in the core is unlikely. If such is also the case with most

Re: Network SLA

2009-04-15 Thread Saqib Ilyas
Hmmm. Good point. Perhaps the Internet traffic gets only a small share of the link capacity and the rest is reserved for corporate clients' VPN traffic etc. I was thinking more along the lines of corporate SLAs, not for Internet traffic. On Wed, Apr 15, 2009 at 4:05 PM, Rod Beck

Re: Fiber cut in SF area

2009-04-15 Thread Neil Harris
Ong Beng Hui wrote: The problem of been LoS is a big problem in metro as far as I know. You can't just put a pair of FSO gear without going to the building owner to talk about rights and cost. Not forgetting lighting protection and other stuff. Murphy, Brian S CTR USAF ACC 83 NOS/Det 4

RE: [SPAM-HEADER] - Re: Diversity - was: Fiber cut in SF area - Email has different SMTP TO: and MIME TO: fields in the email addresses

2009-04-15 Thread Rod Beck
That service is probably very expensive. There is no known way to provide cheap 10 wave protection. Not carrier grade. Protected 10 GigE service (LAN PHY 10 GigE) will tolerate a very high BER before switching. And the cost of switching STM64 is very high as well. Bottom line is that it

RE: Diversity - was: Fiber cut in SF area

2009-04-15 Thread Frank Bulk
That's funny, because our company is a (very small) LEC and a member of a (small) regional network, and we've been asked by a larger consortium to give them protected 10-Gig waves between two cities. It's not been a problem to find DWDM vendors that can do that. Frank -Original Message-

Re: Diversity - was: Fiber cut in SF area

2009-04-15 Thread Neil Harris
Rod Beck wrote: That service is probably very expensive. There is no known way to provide cheap 10 wave protection. Not carrier grade. Protected 10 GigE service (LAN PHY 10 GigE) will tolerate a very high BER before switching. And the cost of switching STM64 is very high as well. Bottom line

Re: Network SLA

2009-04-15 Thread Martin Hannigan
On Wed, Apr 15, 2009 at 7:10 AM, Saqib Ilyas msa...@gmail.com wrote: Hmmm. Good point. Perhaps the Internet traffic gets only a small share of the link capacity and the rest is reserved for corporate clients' VPN traffic etc. I was thinking more along the lines of corporate SLAs, not for

RE: Diversity - was: Fiber cut in SF area

2009-04-15 Thread Rod Beck
Adjacent cities is not what the long haul providers generally do. My clients want Chicago Equinix to Frankfurt Interxion or Chicago Equinix to 60 Hudson. Not Pittsburgh to Cleveland. The capex for those services is many hundreds of thousands of dollars. Consider all cards required to a

RE: Diversity - was: Fiber cut in SF area

2009-04-15 Thread Rod Beck
And if the 10 gig wave is from 1 Wilshire to 60 Hudson with hundreds of regen huts and 30 POPs in between? How that affect the capex cost? Roderick S. Beck Director of European Sales Hibernia Atlantic 13-15, rue Sedaine, 75011 Paris http://www.hiberniaatlantic.com Wireless: 1-212-444-8829.

Re: Diversity - was: Fiber cut in SF area

2009-04-15 Thread Neil Harris
Rod Beck wrote: And if the 10 gig wave is from 1 Wilshire to 60 Hudson with hundreds of regen huts and 30 POPs in between? How that affect the capex cost? Sure, the capex cost of offering full diversity is substantial; my point was just that the cost of switching STM64 signals at the

RE: Diversity - was: Fiber cut in SF area

2009-04-15 Thread Rod Beck
Agreed. But bear in mind that DWDM infrastructure that does 80 to 120 waves per fiber pair is very expensive. REgards, Roderick S. Beck Director of European Sales Hibernia Atlantic 13-15, rue Sedaine, 75011 Paris http://www.hiberniaatlantic.com Wireless: 1-212-444-8829. French Landline:

RE: ACLs vs. full firewalls

2009-04-15 Thread TJ
MS is doing something very Jerico'ish with DirectAccess ... very loosely, Automagic IPsec + IPv6 (via Teredo when needed) + AD-based auth (MS's previous step was SDI (Server Domain Isolation)) /TJ -Original Message- From: Mark Smith

Re: [SPAM-HEADER] - Re: Diversity - was: Fiber cut in SF area - Email has different SMTP TO: and MIME TO: fields in the email addresses

2009-04-15 Thread Richard A Steenbergen
On Wed, Apr 15, 2009 at 01:38:43PM +0100, Rod Beck wrote: There is no known way to provide cheap 10 wave protection. Not carrier grade. Protected 10 GigE service (LAN PHY 10 GigE) will tolerate a very high BER before switching. And the cost of switching STM64 is very high as well. Bottom

Re: SIP - perhaps botnet? anyone else seeing this?

2009-04-15 Thread Dane
The timing of your email as well as a couple of seemingly unrelated things that I have heard about make me think this might be related to some large toll fraud scheme. Today I heard from someone who says Verizon is telling them they see about 700 calls per hour to Cuba originating from their PRI.

Re: SIP - perhaps botnet? anyone else seeing this?

2009-04-15 Thread Leland E. Vandervort
Managed to get to the bottom of it, and it was indeed a SIP User-Agent brute-force attempt. Interestingly, though, that your mail mentions specifically verizon... the majority of the remote addresses during this brute-force attempt were also behind verizon... coincidence? Hmm.. Regards,

Re: ACLs vs. full firewalls

2009-04-15 Thread Ravi Pina
On Wed, Apr 08, 2009 at 08:32:02AM +1000, Karl Auer wrote: On Wed, 2009-04-08 at 07:04 +0930, Mark Smith wrote: It seems there is a trend towards moving host protection on to the hosts themselves, onto or closer to the resource or entity being protected. It's basically following the cliche,

RE: SIP - perhaps botnet? anyone else seeing this?

2009-04-15 Thread Mike Goldman
ACL's at the perimeter and/or on the gateways might help Thanks, Mike Goldman -Original Message- From: Leland E. Vandervort [mailto:lel...@taranta.discpro.org] Sent: Wednesday, April 15, 2009 11:39 AM To: Dane Cc: nanog@nanog.org Subject: Re: SIP - perhaps botnet? anyone else seeing

RE: Network SLA

2009-04-15 Thread Holmes,David A
From the network operators' standpoint, designing a network that operates at 50% utilization (without using ponderous QoS schemes) assumes that there is no random queuing behavior in the network that can result in dropped packets and large variations in packet arrival jitter. An active measurement

RE: Looking for ATT / Verizon / Sprint WWAN service impressions - on oroff-list replies welcome

2009-04-15 Thread Holmes,David A
My understanding is that ATT uses an MPLS/VRF CE router facing the user such that the resulting network connectivity is a private MPLS VPN. VZW apparently requires the user to implement a GRE/IPSec configuration just to reach their MPLS/VRF layer. The resulting user router config is thus much

Re: SIP - perhaps botnet? anyone else seeing this?

2009-04-15 Thread Andy Davidson
On Wed, Apr 15, 2009 at 11:35:43AM -0500, Dane wrote: Today I heard from someone who says Verizon is telling them they see about 700 calls per hour to Cuba originating from their PRI. Obviously some type of toll fraud. In the same way that it's possible to configure a mail relay as a device

Re: [SPAM-HEADER] - Re: Diversity - was: Fiber cut in SF area - Email has different SMTP TO: and MIME TO: fields in the email addresses

2009-04-15 Thread Martin Hannigan
On Wed, Apr 15, 2009 at 1:37 PM, Rod Beck rod.b...@hiberniaatlantic.comwrote: Hi Richard, I never said that protected LAN PHY 10 GigE was more expensive than two diversely routed waves. However, Hibernia's engineers have advised that route protected LAN PHY 10 GigE will tolerate a relatively

Re: Looking for ATT / Verizon / Sprint WWAN service impressions - on or off-list replies welcome

2009-04-15 Thread Charles Wyble
Crooks, Sam wrote: I'm considering use of ATT / Verizon / Sprint WWAN services and the Cisco 3G router interface cards/integrated module in C880 routers for primary or backup WAN network connectivity for routers. I haven't used the integrated cards with cisco gear. However I do have 300+

RE: [SPAM-HEADER] - Re: Diversity - was: Fiber cut in SF area - Email has different SMTP TO: and MIME TO: fields in the email addresses

2009-04-15 Thread Rod Beck
Hi Martin, That statement is true in the long run. But not the short run. No would argue that current TransAtlantic pricing could justify a new cable system. :) If you look at the last three TransAtlantic builds, they spanned from $600 million to $980 million. No backhaul included.

Re: Looking for ATT / Verizon / Sprint WWAN service impressions - on or off-list replies welcome

2009-04-15 Thread Seth Mattinen
Charles Wyble wrote: Crooks, Sam wrote: I'm considering use of ATT / Verizon / Sprint WWAN services and the Cisco 3G router interface cards/integrated module in C880 routers for primary or backup WAN network connectivity for routers. I haven't used the integrated cards with cisco gear.

Level3 funkiness

2009-04-15 Thread J. Oquendo
Anyone else experience sporadic funkiness via Level3? I can't even reach the main website from who knows how many networks I've tried. Also friends and former colleagues have tried to reach the site to no avail. One of my machines on ATT: # traceroute level3.net traceroute to level3.net

Re: Level3 funkiness

2009-04-15 Thread Charles Mills
Can't get to level3.net 63.211.236.36 or www.level3.net 4.68.95.28 from Pittsburgh either and I peer directly with level3 with a full BGP feed. On Wed, Apr 15, 2009 at 3:35 PM, J. Oquendo s...@infiltrated.net wrote: Anyone else experience sporadic funkiness via Level3? I can't even reach

RE: Level3 funkiness

2009-04-15 Thread Dave Larter
Yes, I die on your hop14 with TWTelecom -Original Message- From: J. Oquendo [mailto:s...@infiltrated.net] Sent: Wednesday, April 15, 2009 3:36 PM To: nanog@nanog.org Subject: Level3 funkiness Anyone else experience sporadic funkiness via Level3? I can't even reach the main website

RE: Level3 funkiness

2009-04-15 Thread Dixon, Justin
-Original Message- From: J. Oquendo [mailto:s...@infiltrated.net] Sent: Wednesday, April 15, 2009 15:36 To: nanog@nanog.org Subject: Level3 funkiness Anyone else experience sporadic funkiness via Level3? I can't even reach the main website from who knows how many networks I've tried.

RE: Level3 funkiness

2009-04-15 Thread Murphy, Jay, DOH
Have you been able to in the past?? The site is used for other purposes, and the front end site that you will see is www.level3.com, not net. So which one? Jay Murphy IP Network Specialist NM Department of Health ITSD - IP Network Operations Santa Fe, New Mexico 87502 Bus. Ph.:

RE: Level3 funkiness

2009-04-15 Thread Jason Bertoch
-Original Message- From: J. Oquendo [mailto:s...@infiltrated.net] Sent: Wednesday, April 15, 2009 3:36 PM To: nanog@nanog.org Subject: Level3 funkiness Anyone else experience sporadic funkiness via Level3? I can't even reach the main website from who knows how many networks

Re: Level3 funkiness

2009-04-15 Thread J. Oquendo
On Wed, 15 Apr 2009, Blake Pfankuch wrote: 2 dvr-edge-05.inet.qwest.net (72.165.27.181) 27.696 ms 27.688 ms 28.022 ms 3 dvr-core-01.inet.qwest.net (205.171.10.89) 28.010 ms 28.001 ms 27.990 ms 4 * * 67.14.2.89 (67.14.2.89) 50.773 ms 5 xe-8-2-0.edge2.dallas3.level3.net

RE: Level3 funkiness

2009-04-15 Thread Murphy, Jay, DOH
Listen the two are different, level3.com, and level3.net, the two are colo'd at the same place, thus the reason for the Denver dying end point. It's .net as you can see; try surfing to 4.6 8.95.11 yes, 4.68.95.28, no...It's just how the DNS PTR for the box is set. It has nothing to do with the

RE: Level3 funkiness

2009-04-15 Thread Richard Golodner
As Brandon had stated earlier: Out of Chicago on RCN onto L3. Tracing route to level3.net [63.211.236.36] over a maximum of 30 hops: 1 1 ms 4 ms 1 ms 10.10.10.1 (My home) 2 7 ms 9 ms 8 ms 10.20.0.1(RCN interior network) 310 ms 8 ms10 ms

Re: Level3 funkiness

2009-04-15 Thread Niels Bakker
* s...@infiltrated.net (J. Oquendo) [Wed 15 Apr 2009, 22:31 CEST]: Yes discovered that then thought about reposting full traceroute feeds. It was the *.com I can get through now from 4 out of like 8 addresses. Actually on the phone with Level3 right now Wait, what? Are you seriously calling

Re: Level3 funkiness

2009-04-15 Thread Martin Hannigan
On Wed, Apr 15, 2009 at 4:07 PM, Alex Thurlow a...@blastro.com wrote: Same result from Cogent in Texas. Dying at ge-6-2.hsa1.Denver1.Level3.net # traceroute level3.net I didn't know that an unreachable A record indicated that (3) was down :-)

Re: [SPAM-HEADER] - Re: Diversity - was: Fiber cut in SF area - Email has different SMTP TO: and MIME TO: fields in the email addresses

2009-04-15 Thread Richard A Steenbergen
On Wed, Apr 15, 2009 at 06:37:36PM +0100, Rod Beck wrote: Hi Richard, I never said that protected LAN PHY 10 GigE was more expensive than two diversely routed waves. Strange, the e-mail from you that I quoted specifically said: Bottom line is that it will cost more than two diversely

RE: Level3 funkiness

2009-04-15 Thread Dave Larter
I don't think you will ever get a true answer, maybe someone just forgot to re-reg the domain ;) -Original Message- From: Niels Bakker [mailto:niels=na...@bakker.net] Sent: Wednesday, April 15, 2009 5:13 PM To: nanog@nanog.org Subject: Re: Level3 funkiness * s...@infiltrated.net (J.

tcptraceroute, traceroute and IP addresses [was]Re: Level3 funkiness

2009-04-15 Thread Scott Weeks
# traceroute level3.net When diagnosing things like this try using the IP address and tcptraceroute or some similar tool. NOT plain old traceroute and a DNS name. Especially when writing to a list with participants as technically involved as those on NANOG. scott

RE: tcptraceroute, traceroute and IP addresses [was]Re: Level3 funkiness

2009-04-15 Thread Dave Larter
I can now get to .com ok, but .net net traces ok but the site doesn't come up in a browser and tr does work. So they have fixed part of the problem, at last from here. C:\Documents and Settings\netmantracert level3.net Tracing route to level3.net [4.68.95.11] over a maximum of 30 hops: 1

Re: Looking for ATT / Verizon / Sprint WWAN service impressions- on or off-list replies welcome

2009-04-15 Thread Charles Wyble
What is it about the bloody telcos. You want to spend money, but yet you can't reach the right people to get your questions answered or schedule the service. Gah. I experienced this recently, trying to have some inside wiring work done at my house. They rolled a tech, but then he claimed he

Re: Looking for ATT / Verizon / Sprint WWAN service impressions- onor off-list replies welcome

2009-04-15 Thread joel . mercado
I am 100 percent with you on this. Some techs arrive to our data center with no tools and they have the same response I just thought it was a simple install. I know they have different levels for techs but you should not have to wait another couple of days to complete a install. They should

Re: Looking for ATT / Verizon / Sprint WWAN service impressions - on or off-list replies welcome

2009-04-15 Thread Eddie
Crooks, Sam wrote: I'm considering use of ATT / Verizon / Sprint WWAN services and the Cisco 3G router interface cards/integrated module in C880 routers for primary or backup WAN network connectivity for routers. I'm looking for information from users of these services on the following: I

ADMIN: List FAQ/Monthly Post.

2009-04-15 Thread NANOG Mail List Committee
This 100-line document contains 62% of what you need to know to avoid annoying 10,000 people in your email to the NANOG list. It also contains pointers to another 23%. Please take 5 minutes to read it before you post [again]. General Information === About NANOG: